4.3.2 ADS OPC to Integrated App Migration

Integrated App Migration enables an existing DFCS-PBSM Application Data Services (ADS) subscription that uses the legacy OPC App authentication model to use an Integrated App authentication model.

For legacy tenants, the OPC App and its client credentials were created during tenant provisioning. In the Integrated App model, a dedicated Integrated App is configured in the Oracle Identity Domain and its Client ID and Client Secret are used by the PBSM Data Services Subscription.

Note:

The ADS OPC to Integrated App Migration feature is available from release 26B and later versions.

The migration is enabled in PBSM from Admin Tools > Data Foundation Integration > Data Services Subscriptions.

Before enabling Integrated App Migration on the PBSM subscription:

  • Create a Confidential (Integrated) App in the Oracle Identity Domain (OCI Console → Identity & Security → Domains → Integrated Applications).
  • Bind the required resource (the DFCS resource server) to the new Confidential App, with its OAuth configuration — grant types, token issuance policy, and the DFCS resource scope — set up correctly.
  • Enable the Confidential App User Authentication flow in the ADS Subscriber UI.
  • Confirm the tenant is mapped in OPC Support, and obtain the Client Id and Client Secret for the Confidential App from OPC Support.
  • An Integrated Application must be created and active in the Oracle Identity Domain (accessible through Oracle Cloud Infrastructure > Identity & Security > Domains > Integrated Applications), with its OAuth configuration properly set up including the DFCS resource scope.