Online User Management
To manage online users, several facilities must be configured:
Maintain users within the Oracle Cloud Infrastructure Identity and Access Management (IAM) as per the Create User Accounts instructions.
Activate the users within IAM to enable their access. Conversely, deactivating users within IAM disables access to the service.
Map IAM groups to product template users as outlined in User Provisioning for Oracle Utilities Cloud Services of the Cloud Service Administration Guide.
Attach user groups to Application Services to define the subset of service and actions valid for that group of users. Refer to Define User Groups to Application Services for more details of this process.
Attach data access groups to the users to define the subset of data that the user has access. Refer to Define Users to Data Access Groups for more details of this process.
Attach users to the appropriate user groups to define the subset services and valid actions the users can perform within the Oracle Utilities Cloud Service. Refer to Define Users to User Groups for more details of this process.
User Management
This section describes the User object from the Oracle Utilities Cloud Service. All information is inherited from the User definition in Oracle Cloud Infrastructure Identity and Access Management (IAM). The User object records the security information used for identification of the users and their permissions.
See User - Main in the online help provided with your service for information about user identity attributes.
Template Users
By default, portal preferences and favorites are set at an individual user level. It is possible to inherit the portal and favorites from other users to reduce the maintenance effort for security information. Changes to the profile user are automatically inherited to any users where the profile user is attached.
See User - Main in the online help provided with your service for information about creating template users.
Assign To Do Types
The Oracle Utilities Cloud Service generates To Do records for any function or error condition that requires human intervention. The To Do record contains a type and role to be used assist in assigning the appropriate resources to work on the condition indicated by the To Do.
See User - Main in the online help provided with your service for information about associated To Do Types with users and user groups.
Assign User Portal Preferences
The Oracle Utilities Cloud Service user interface is made up of portals containing individual zones. Each portal and zone can be associated with an Application Service for security purposes. Users attached to the User Groups and Application Services can view and use the portals and zones.
See User - Portal Preferences in the online help provided with your service for information about managing user portal preferences.
Assign Bookmarks
You can attach bookmarks to your user profile to access pages including the context of the pages. You can use the Bookmark button to define bookmarks that attach the page and context to the user profile.
See User - Bookmarks in the online help provided with your service for information about managing bookmarks.
Assign Favorite Links
Users can set several favorite functions or menu items that they can access using keyboard shortcuts or via the Favorites zone on the Dashboard.
See User - Favorite Links in the online help provided with your service for information about managing favorite links.
Assign Favorite Scripts
Users can set several Favorite BPA Scripts that they can access using the Favorite Scripts zone of the Dashboard.
See User - Favorite Scripts in the online help provided with your service for information about managing favorite scripts.
Assign User Characteristics
Oracle Utilities Cloud Service can extend objects within Oracle Utilities Cloud Service with Characteristics, which act as additional data attributes for providing more information or custom algorithms for processing.
See User - Characteristics in the online help provided with your service for information about managing user characteristics.
Define Users to User Groups
Access to Oracle Utilities Cloud Service services requires User Group connections that are connected to Application Services. The connections define the linkage for functions that are accessible to users.
The attributes of the user-user group links are as follows:
The link is subject to an expiry date to allow representation of transient security configurations.
Each link is owned and subject to Data Ownership Rules. By default, all site-created links are owned as Customer Modifications.
User groups are set up according to site preferences. These can be job related, organization level-related, or a combination of factors.
A user must be a member of user group to access the system. A user can be a member of multiple user groups.
Users can be members of user groups with overlapping permissions to Application Services. In cases of overlapping permissions, the highest valid permission is used.
See User - Main in the online help provided with your service for information about managing user groups for a user.
Define User Groups to Application Services
One of the fundamental Oracle Utilities Cloud Service security configuration is to define user groups to Application Services. The Application Service can represent an Oracle Utilities Cloud Service service, a menu, or an object. Linking a user group to a service allows Access Mode configuration, which defines the valid actions that the user group can perform against the service.
See Defining User Groups in the online help provided with your service for information about managing relationships between user groups and application services.
Application Service Portal
The Application Service portal enables you to define an application service, set the access modes for the Application Service, and specify the user groups to which to connect the Application Service.
See Defining Application Services in the online help provided with your service for information about managing application services.
User Group Maintenance
The User Group Maintenance allows you to define the Application Services that user groups can access and to connect users to user groups.
See Defining User Groups in the online help provided with your service for information about managing user groups.
Define Users to Data Access Groups
Data Access Groups define the subset of data objects that are accessible to the users.
See Data Access Role - Access Group in the online help provided with your service for information about managing data access groups.
User Enable and Disable
One feature of security is to attach user records to some objects (automatic or configurable) for audit purposes. You cannot delete a user record if the user performs any work in Oracle Utilities Cloud Service and is attached to some audit objects across Oracle Utilities Cloud Service.
See User - Main in the online help provided with your service for information about enabling or disabling users.