Contents
1 Introduction
- Overview of Securing Oracle Fusion Cloud SCM
- Roles-Based Applications Security
- Role Types
- Role Inheritance
- Duty Role Components
- Aggregate Privileges
- Guidelines for Configuring Security in Oracle Applications Cloud
- Role-based Security in Oracle Fusion Cloud SCM
- Security Setup in Oracle Fusion Cloud SCM
- How You Get Started with Security Implementation in Oracle Fusion Cloud SCM
2 Security Console
- Overview of Security Console
- Configure the Security Console
- Security Visualizations
- Options for Viewing a Visualization Graph
- Visualization Table Display Options
- Generate a Visualization
- Simulate Navigator Menus in the Security Console
- Analytics for Roles
- Analytics for Data Resources
- FAQs for Using the Security Console
3 Setting Up Application Security
- Overview of Applications Security Setup Tasks
- User-Name Formats
- Password Policy
- Configure a Custom Password Policy
- Role Preferences
- User Categories
- Enable Notifications
- Add Users to a User Category
- User-Name and Password Notifications
- How can I enable notifications for pending workers?
- Why don't I see my user name in the forgot password email notification?
- Why don't I see my user name in the forgot user name email notification?
- Create a Notification Template
- Schedule the Import User and Role Application Security Data Process
- Schedule the Import User Login History Process
- Why You Should Run the Send Pending LDAP Requests Process
- Schedule the Send Pending LDAP Requests Process
- Retrieve Latest LDAP Changes
4 Bridge for Microsoft Active Directory
- Overview of Bridge for Microsoft Active Directory
- Active Directory Synchronization
- User Account Attribute Mapping
- Using the Bridge for Microsoft Active Directory
- FAQs on Working with the Bridge for Microsoft Active Directory
5 Implementation Users
- Creating Implementation Users
- Implementation Users
- Overview of Implementation Users
- Overview of Creating SCM Implementation Users
- User Accounts
- User Account Details
- Add User Accounts
- Assign Roles to an Existing User
- Compare Users
- Reset Passwords
- Copy Roles from One User to Another
- Delete User Accounts
- Get User Sign-in Sign-out Information
- Create Notification Templates
- Synchronize User and Role Information
- Assigning Roles to Implementation Users
- Managing User Categories
- Overview of User Categories
- Add Users to a User Category
- How can I direct users to a specific application or website after password reset?
- Copy Roles from One User to Another
- Configure a Custom Password Policy
- How can I enable or disable notifications for users?
- How can I enable notifications for pending workers?
- Why don't I see my user name in the forgot password email notification?
- Why don't I see my user name in the forgot user name email notification?
6 Application User Setup
- Overview of Application Users
- User and Role-Provisioning Setup Options
- User Account Creation Option
- User Account Role Provisioning Option
- User Account Maintenance Option
- Set the User and Role Provisioning Options
- Provision Abstract Roles to Users Automatically
- FAQs for Preparing for Application Users
7 Application User Management
- Creating Users
- Managing Users
- Manage HCM User Accounts
- User Names
- Why You Send Personal Data to Identity Store
- How You Manage an Incomplete Request for an HCM User Account
- How User Accounts Are Suspended
- User Details System Extract Report Parameters
- View Locked Users and Unlock Users
- User Password Changes Audit Report
- Password Expiry Report
- FAQs for Creating and Managing Application Users
- Where do default user names come from?
- Why did some roles appear automatically?
- How can I create a user?
- What happens when I autoprovision roles for a user?
- Why is the user losing roles automatically?
- Why can't I see the roles that I want to assign to a user?
- What happens if I deprovision a role from a user?
- What happens if I edit a user name?
- What happens if I send the user name and password?
- How can I notify users of their user names and passwords?
8 Role-Provisioning
- Role Mappings
- Create a Role Mapping
- Role Provisioning and Deprovisioning
- Autoprovisioning
- User History Report
- Data Access
- Assign Data Access to Users
- Create a Custom Role with Limited Access
- View Role Information Using Security Dashboard
- Roles That Give Workflow Administrators Access
- FAQs for Provisioning Roles to Application Users
9 Reporting on Application Users and Roles
- Run the User Details System Extract Report
- User Details System Extract Report Parameters
- User Details System Extract Report
- Person User Information Reports
- User History Report
- View Role Information Using Security Dashboard
- LDAP Request Information Reports
- Inactive Users Report
- User and Role Access Audit Report
- User Role Membership Report
- User and Role Access Audit Report
- User Password Changes Audit Report
- View Locked Users and Unlock Users
- FAQs for Reporting on Application Users and Roles
10 Location-Based Access
- Overview of Location-Based Access
- How Location-Based Access Works
- Enable and Disable Location-Based Access
- FAQs for Location Based Access
- What is allowlisting?
- Why can't I see the Location Based Access tab on the Administration page?
- How can I make a role public?
- How can I ensure that I always have access to the Security Console?
- How can I disable Location-based Access when I am not signed in to the application?
- How can I disable Location-based Access when I am locked out of the application?
11 Single Sign-On
- Oracle Applications Cloud as the Single Sign-On (SSO) Service Provider
- Configure Single Sign-On
- FAQs on Single Sign-On
- Does the service provider store user passwords?
- Can I set up an identity provider without enabling it?
- How can I allow my users to sign in using their company's credentials?
- What should I do to extend the validity of certificates provided by the identity provider?
- How can the identity provider obtain renewed certificates from the service provider?
- How can I disable Single Sign-On when I am not signed in to the application?
- How can I disable Single Sign-On when I am locked out of the application?
- What are the different events and notifications associated with the Single Sign-On functionality?
12 API Authentication
- Configure Outbound API Authentication Using JWT Custom Claims
- Enable OAuth Three-Legged Authentication for Creating External Client Application
13 Export and Import of Security Setup Data
- Export and Import of Security Console Data
- Export and Import of HCM Custom Roles and Security Profiles
14 Security Configuration
- Managing Data Security Policies
- FAQs for Configuring Security
15 Roles and Role Assignments
16 Role Configuration Using the Security Console
- Creating Custom Roles
17 Certificates and Keys
- Overview of Certificates
- Types of Certificates
- Sign a X.509 Certificate
- Import and Export X.509 Certificates
- Import and Export PGP Certificates
- Delete Certificates