Add the user to the role during the reconciliation

Hello

I have this scenario:
We have a database resource on which we run reconciliation to bind accounts to our users in IDM.
I also have roles that contains this resource. If the conciliation is running I want to add the user
in this role, instead of directly linking the user to the resource account.

Our problem today is that, if users is related to the resource, and then gets the role, if the role is deleted, the user always has the link to the resource.
Who is?

I guess I need to use "by workflow account" to get there, but I don't know how to write this workflow.

Kind regards

Henrik

Hi Henrik,

You could do during reconciliation with a workflow by account.

Another approach is to use a regular workflow which lists users who have an account on the target resource and treats each of them to remove all unnecessary direct assignments. That's what I went with, and I run the workflow periodically.

Tags: Oracle

Similar Questions

  • Add the portal end-user.

    Hello

    Currently, my requirement is to add a user to a portal to a specific role through registration. I created a registration form and all users can register. But I don't know how to add a user to a role, so that I can show the page accordi ng or relevant information to this role.

    I have a 'DEALER' role, while when the user record itself, in a list of the roles only 'DEALER' role is assigned to this user. Once done, I can show the relevant page or information according to this role.

    I would like to know how to apply it.



    Thank you
    Bharat

    http://download.Oracle.com/docs/CD/E13155_01/WLP/docs103/Javadoc/com/BEA/p13n/security/management/authentication/AtnManagerProxy.html
    http://download.Oracle.com/docs/CD/E13155_01/WLP/docs103/Javadoc/com/BEA/p13n/security/management/authentication/AtnSecurityMgmtHelper.html (for AtnProviderDescription)
    as mentioned, there are easier controls available

    Published by: deepshet on October 19, 2009 20:59

  • Unable to add the user or change the password on the Windows 7 Professional laptop

    This happened to the light while trying to install SQL2012 Standard on my laptop. During installation, I received the message that the password that I had selected for the user his did not meet the requirements of length and complexity. Looking local policies, I found that the length is set to 0 and the requirement of the complexity has been disabled.

    For grins, I tried to add a user to the computer. The result was the same error message.

    Can someone point me in the direction of a resolution? This baffled me and gets in the way of progress!

    Stuart Nottingham

    Hi Stuart,

    Thanks for the reply with the status of the issue.

    I suggest you to restore the computer to a date before you install the updates by using the system to restore the function and check if it helps.

    System Restore:

    http://Windows.Microsoft.com/en-us/Windows7/products/features/system-restore

    For more information, you can consult the following Microsoft Help article.

    http://Windows.Microsoft.com/en-us/Windows/what-do-forget-Windows-password#1TC=Windows-7

    Just reply to the State of the question so that we can help solve you the problem.

  • Unable to add the user to the Dataset for RACF group

    Hello
    I'm trying to add a RACF user to a dataset. I get the following in the log file error. Pls help

    2011-05-27 03:15:04, ERROR 740 (http - 0.0.0.0 - 8080-7) [XELLERATE. API] class/method: tcFormInstanceOperationsBean/addProcessFormChildData some problems: maoErrors: unable to save the calendar, a task to change the child table, annex article failed
    2011-05-27 03:15:04, ERROR 740 (http - 0.0.0.0 - 8080-7) [XELLERATE. "API] class/method: tcFormInstanceOperationsBean/addProcessFormChildData some problems: error occurred during political validation of password"
    2011-05-27 03:15:04, ERROR 740 (http - 0.0.0.0 - 8080-7) [XELLERATE. API] class/method: tcFormInstanceOperationsBean/addProcessFormChildData some problems: unable to save the calendar, a task to change the child table, annex article failed
    Thor.API.Exceptions.tcAPIException: Schedule a task for child table change, calendar item cannot save failed
    at com.thortech.xl.ejb.beansimpl.tcFormInstanceOperationsBean.addProcessFormChildData (unknown Source)
    at com.thortech.xl.ejb.beansimpl.tcFormInstanceOperationsBean.addProcessFormChildData (unknown Source)
    at com.thortech.xl.ejb.beans.tcFormInstanceOperationsSession.addProcessFormChildData (unknown Source)
    at sun.reflect.NativeMethodAccessorImpl.invoke0 (Native Method)
    at sun.reflect.NativeMethodAccessorImpl.invoke(NativeMethodAccessorImpl.java:39)
    at sun.reflect.DelegatingMethodAccessorImpl.invoke(DelegatingMethodAccessorImpl.java:25)
    at java.lang.reflect.Method.invoke(Method.java:597)
    at org.jboss.invocation.Invocation.performCall(Invocation.java:359)
    to org.jboss.ejb.StatelessSessionContainer$ ContainerInterceptor.invoke (StatelessSessionContainer.java:237)
    at org.jboss.resource.connectionmanager.CachedConnectionInterceptor.invoke(CachedConnectionInterceptor.java:158)
    at org.jboss.ejb.plugins.StatelessSessionInstanceInterceptor.invoke(StatelessSessionInstanceInterceptor.java:169)
    at org.jboss.ejb.plugins.CallValidationInterceptor.invoke(CallValidationInterceptor.java:63)
    at org.jboss.ejb.plugins.AbstractTxInterceptor.invokeNext(AbstractTxInterceptor.java:121)
    at org.jboss.ejb.plugins.TxInterceptorCMT.runWithTransactions(TxInterceptorCMT.java:350)
    at org.jboss.ejb.plugins.TxInterceptorCMT.invoke(TxInterceptorCMT.java:181)
    at org.jboss.ejb.plugins.SecurityInterceptor.invoke(SecurityInterceptor.java:168)
    at org.jboss.ejb.plugins.LogInterceptor.invoke(LogInterceptor.java:205)
    at org.jboss.ejb.plugins.ProxyFactoryFinderInterceptor.invoke(ProxyFactoryFinderInterceptor.java:138)
    at org.jboss.ejb.SessionContainer.internalInvoke(SessionContainer.java:648)
    at org.jboss.ejb.Container.invoke(Container.java:960)
    at sun.reflect.GeneratedMethodAccessor123.invoke (unknown Source)
    at sun.reflect.DelegatingMethodAccessorImpl.invoke(DelegatingMethodAccessorImpl.java:25)
    at java.lang.reflect.Method.invoke(Method.java:597)
    at org.jboss.mx.interceptor.ReflectedDispatcher.invoke(ReflectedDispatcher.java:155)
    at org.jboss.mx.server.Invocation.dispatch(Invocation.java:94)
    at org.jboss.mx.server.Invocation.invoke(Invocation.java:86)
    at org.jboss.mx.server.AbstractMBeanInvoker.invoke(AbstractMBeanInvoker.java:264)
    at org.jboss.mx.server.MBeanServerImpl.invoke(MBeanServerImpl.java:659)
    to org.jboss.invocation.local.LocalInvoker$ MBeanServerAction.invoke (LocalInvoker.java:169)
    at org.jboss.invocation.local.LocalInvoker.invoke(LocalInvoker.java:118)
    at org.jboss.invocation.InvokerInterceptor.invokeLocal(InvokerInterceptor.java:209)
    at org.jboss.invocation.InvokerInterceptor.invoke(InvokerInterceptor.java:195)
    at org.jboss.proxy.TransactionInterceptor.invoke(TransactionInterceptor.java:61)
    at org.jboss.proxy.SecurityInterceptor.invoke(SecurityInterceptor.java:70)
    at org.jboss.proxy.ejb.StatelessSessionInterceptor.invoke(StatelessSessionInterceptor.java:112)
    at org.jboss.proxy.ClientContainer.invoke(ClientContainer.java:100)
    to $Proxy758.addProcessFormChildData (Unknown Source)
    at Thor.API.Operations.tcFormInstanceOperationsClient.addProcessFormChildData (unknown Source)
    at sun.reflect.NativeMethodAccessorImpl.invoke0 (Native Method)
    at sun.reflect.NativeMethodAccessorImpl.invoke(NativeMethodAccessorImpl.java:39)
    at sun.reflect.DelegatingMethodAccessorImpl.invoke(DelegatingMethodAccessorImpl.java:25)
    at java.lang.reflect.Method.invoke(Method.java:597)
    to Thor.API.Base.SecurityInvocationHandler$ 1.run (unknown Source)
    at Thor.API.Security.LoginHandler.jbossLoginSession.runAs (unknown Source)
    at Thor.API.Base.SecurityInvocationHandler.invoke (unknown Source)
    to $Proxy804.addProcessFormChildData (Unknown Source)
    at com.thortech.xl.webclient.actions.UserDefinedFormAction.addChildFormData (unknown Source)
    at sun.reflect.NativeMethodAccessorImpl.invoke0 (Native Method)
    at sun.reflect.NativeMethodAccessorImpl.invoke(NativeMethodAccessorImpl.java:39)
    at sun.reflect.DelegatingMethodAccessorImpl.invoke(DelegatingMethodAccessorImpl.java:25)
    at java.lang.reflect.Method.invoke(Method.java:597)
    at org.apache.struts.actions.DispatchAction.dispatchMethod(DispatchAction.java:280)
    at com.thortech.xl.webclient.actions.tcLookupDispatchAction.execute (unknown Source)
    at com.thortech.xl.webclient.actions.tcActionBase.execute (unknown Source)
    at com.thortech.xl.webclient.actions.tcAction.execute (unknown Source)
    at org.apache.struts.action.RequestProcessor.processActionPerform(RequestProcessor.java:484)
    at org.apache.struts.action.RequestProcessor.process(RequestProcessor.java:274)
    at org.apache.struts.action.ActionServlet.process(ActionServlet.java:1482)
    at org.apache.struts.action.ActionServlet.doPost(ActionServlet.java:525)
    at javax.servlet.http.HttpServlet.service(HttpServlet.java:710)
    at javax.servlet.http.HttpServlet.service(HttpServlet.java:803)
    at org.apache.catalina.core.ApplicationFilterChain.internalDoFilter(ApplicationFilterChain.java:290)
    at org.apache.catalina.core.ApplicationFilterChain.doFilter(ApplicationFilterChain.java:206)
    at com.thortech.xl.webclient.security.CSRFFilter.doFilter (unknown Source)
    at org.apache.catalina.core.ApplicationFilterChain.internalDoFilter(ApplicationFilterChain.java:235)
    at org.apache.catalina.core.ApplicationFilterChain.doFilter(ApplicationFilterChain.java:206)
    at com.thortech.xl.webclient.security.SecurityFilter.doFilter (unknown Source)
    at org.apache.catalina.core.ApplicationFilterChain.internalDoFilter(ApplicationFilterChain.java:235)
    at org.apache.catalina.core.ApplicationFilterChain.doFilter(ApplicationFilterChain.java:206)
    at org.jboss.web.tomcat.filters.ReplyHeaderFilter.doFilter(ReplyHeaderFilter.java:96)
    at org.apache.catalina.core.ApplicationFilterChain.internalDoFilter(ApplicationFilterChain.java:235)
    at org.apache.catalina.core.ApplicationFilterChain.doFilter(ApplicationFilterChain.java:206)
    at org.apache.catalina.core.StandardWrapperValve.invoke(StandardWrapperValve.java:230)
    at org.apache.catalina.core.StandardContextValve.invoke(StandardContextValve.java:175)
    at org.jboss.web.tomcat.security.SecurityAssociationValve.invoke(SecurityAssociationValve.java:182)
    at org.jboss.web.tomcat.security.JaccContextValve.invoke(JaccContextValve.java:84)
    at org.apache.catalina.core.StandardHostValve.invoke(StandardHostValve.java:127)
    at org.apache.catalina.valves.ErrorReportValve.invoke(ErrorReportValve.java:102)
    at org.jboss.web.tomcat.service.jca.CachedConnectionValve.invoke(CachedConnectionValve.java:157)
    at org.apache.catalina.core.StandardEngineValve.invoke(StandardEngineValve.java:109)
    at org.apache.catalina.connector.CoyoteAdapter.service(CoyoteAdapter.java:262)
    at org.apache.coyote.http11.Http11Processor.process(Http11Processor.java:844)
    at org.apache.coyote.http11.Http11Protocol$ Http11ConnectionHandler.process (Http11Protocol.java:583)
    to org.apache.tomcat.util.net.JIoEndpoint$ Worker.run (JIoEndpoint.java:446)
    at java.lang.Thread.run(Thread.java:619)
    2011-05-27 03:15:04, 740 DEBUG (http - 0.0.0.0 - 8080-7) [XELLERATE. Class/method SERVER]: tcDataBase/eventPreInsert entered.
    2011-05-27 03:15:04, 740 DEBUG (http - 0.0.0.0 - 8080-7) [XELLERATE. Class/method SERVER]: tcDataBase/tcDataBase to the left.
    2011-05-27 03:15:04, 740 DEBUG (http - 0.0.0.0 - 8080-7) [XELLERATE. Class/method SERVER]: tcDataBase/eventPreInsert entered.
    2011-05-27 03:15:04, 740 DEBUG (http - 0.0.0.0 - 8080-7) [XELLERATE. Class/method SERVER]: tcDataBase/tcDataBase to the left.
    2011-05-27 03:15:04, ERROR 740 (http - 0.0.0.0 - 8080-7) [XELLERATE. WEBAPP] class/method: UserDefinedFormAction/addChildFormData some problems: unable to save the calendar, a task to change the child table, annex article failed
    Thor.API.Exceptions.tcAPIException: Schedule a task for child table change, calendar item cannot save failed
    at com.thortech.xl.ejb.beansimpl.tcFormInstanceOperationsBean.addProcessFormChildData (unknown Source)
    at com.thortech.xl.ejb.beansimpl.tcFormInstanceOperationsBean.addProcessFormChildData (unknown Source)
    at com.thortech.xl.ejb.beans.tcFormInstanceOperationsSession.addProcessFormChildData (unknown Source)
    at sun.reflect.NativeMethodAccessorImpl.invoke0 (Native Method)
    at sun.reflect.NativeMethodAccessorImpl.invoke(NativeMethodAccessorImpl.java:39)
    at sun.reflect.DelegatingMethodAccessorImpl.invoke(DelegatingMethodAccessorImpl.java:25)
    at java.lang.reflect.Method.invoke(Method.java:597)
    at org.jboss.invocation.Invocation.performCall(Invocation.java:359)

    Published by: JRS on May 27, 2011 02:19

    Follow:

    IOM: Getting an error when you try to add the child table

    http://KR.forums.Oracle.com/forums/thread.jspa?threadID=1066123&TSTART=1365

  • Cannot add the responsibility of the user in 11.5.10.2.

    Hello

    When you try to add the responsibility of the user, we are faced with this problem, please please help us

    Error message:
    ORA-20002: 3825: error 100 - ORA-01403: no data found

    ORA-01403: no data found

    ORA-20002: [WF_INVAL_USER_ROLE]' encountered during execution of the function of rules ' WF_ROLE_HIERARCHY. Cascade_RF' event 'oracle.apps.fnd.wf.ds.userRole.created' with the key ' FND_USR:48257 | UMX:0 | 2455672:36753'.

    ORA-06512: at the 'APPS '. WF_DIRECTORY', line 2361

    ORA-06512: at the 'APPS '. WF_LOCAL_SYNCH', line 1870

    ORA-06512: at line 2.



    Kind regards.

    Please see these documents.

    Could not create the new account user due to the error ORA-25448 [ID 335790.1]
    Create or edit a user with Ora-24033 errors: Wf_inval_user_role [ID 358151.1]

    Thank you
    Hussein

  • 'create file user.js in profile directory' to add the user prefs to enable Mozilla Rich Text editing

    The message of ff for me, is "to protect users information, unprivileged scripts cannot invoke the commands cut, copy, and paste in the Mozilla rich text editor... to activate these features, you must change your browser preferences... "This is an online course. In discussion forums and editing my post for answers - when you slide on a sentence, then rt clk for copy/cut/paste edit options - this is when I get the message to follow the instructions to create a user.js file in my profiles. I followed the instructions to "Change preferences in Firefox" to create a user.js file (didn't have any) to add the features described and specific for this site (which is an .edu site). Since had a "user.js" file open in a text editor to create one I RT. CLK, given 3 options of text document type, choose 'doc RTF' typed then required lines of preference user, saved as .rtf, ff, closed, reopened, returned on the forums of the school, tried the same editing options, but got the same answer. After leaving completely, returning my profile the user.js file, I thought I did wasn't there. I scrolled a lot a lot of useful articles, comments etc here, but nothing specific to this type of file in the profiles? In these instructions, step 3 "open file user.js from this directory in a text editor. "If there is no user.js file, create a. That's what I have to do. Then I'll be ready for the step 4 yay! Thank you.

    As soon as you click on the selected text, the site displays a message about changing the settings of your?

    On this site, you can use the standard Windows keyboard shortcuts for cut, copy and paste: Ctrl + x, Ctrl + c, Ctrl + v?

    If so, I suggest to do this.

    Alternatively, you can the websites stops to replace the context menu showing always menu of Firefox. This can be a bit annoying on certain cases, such as Google Maps, where menu Firefox allows you to hide menu Google. When this happens, you can usually press ESC to remove the Firefox menu and use the site menu. If you want to change this, here's how:

    (1) in a new tab, type or paste Subject: config in the address bar and press ENTER. Click on the button promising to be careful.

    (2) in the search above the list box, type or paste the context and make a pause so that the list is filtered

    (3) double-click the preference dom.event.contextmenu.enabled from true to false.

  • What happens when I add the user?

    Hello

    I want to add a user. I think with administrator privileges.

    How is the Admin differs from the standard?

    It will have access to everything in the two? Fine.

    Nothing will change in appearance in adding a user?

    Excuse my stupidity, but it indicates a base folder will be created with his name. Is that mean a home folder as average with separate applications, desktop, Documents, films, records, etc.?

    best,

    Elmer

    It's for Yosemite, but the same information applies to El Capitan-> OS X Yosemite: Configure users on your Mac will explain the differences between accounts.

  • How to add logic to customization around lockPref() during its use in the .cfg file

    I wanted a way to apply the lockPref only when certain conditions are met and also add customization around the feature lockPref logic. How can I achieve this? An example script to achieve this is greatly appreciated.

    User Agent

    Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; Win64; x 64; Trident/4.0; .NET CLR 2.0.50727; SLCC2; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0)

    Mozilla.cfg is a JavaScript file, then you can try to add the statement to this file to see if it works.
    What kind of customizationlogic you have in mind?

    if (condition) {

    lockPref(prefName, prefValue);
    


    }

  • Valid email required? Failed to add another user to the escan.

    Hi, my printer is HP Photosmart 7520

    I try to add a user who will be my work email address, I get to the Welcome screen, then asked to enter the email address, this is made of sinople carefully and then I get a message "Please enter a valid email address to continue.

    I have re set the settings, look for the updates and tried a dozen times.

    Any ideas very welcome.

    It's what I suspected. Your SMTP server for the email client you are using doesn't have the necessary safety requirement, or it has too many. Some areas would not meet the criteria to be used for this feature, unfortunately. This is probably due to a change in our standards or their standards. I don't know who. But the round of work more accessible is to use another area.

    I'm sorry for the inconvenience this might cause.

    -Spencer

    PS I hope you have a wonderful day!

  • Add a user outside the administrator account

    original title: is it possible for someone to add a user other than Administrator account?

    Somehow an added to user accounts user account and it is not me the administrator?

    Hello

    What operating system is installed on the computer?

    You can create a new user account without being an administrator, but the account will not be a standard user account that has limited privileges.

    Hope that helps.

  • Add the user to the users group in the Users.ini file using c#

    Hello

    Using a c# application, we strive to add/remove a user from the TestStand Users.ini file.

    The CreateDeleteUsers.seq file in the samples of TestStand is used as a reference.

    We have seen that we are able to add the user to the list of user help file

    engine. UsersFile.UserList.SetPropertyObjectByOffset (0, 0 x 1, newUser.AsPropertyObject ());

    However, when we try to add the user to the user group, the sample file CreateDeleteUsers.seq said

    RunState.Engine.GetUserGroup (Locals.GroupName). Members.SetPropertyObjectByOffset (0, 0 x 1, Locals.User.AsUser.LoginName)

    If we try to replicate this in c#, the API seeks the last parameter (which is LoginName in the CreateDeleteUsers.seq file) as an object of property

    engine. GetUserGroup (this.) GroupName). Members.SetPropertyObjectByOffset (0, 0 x 1, newUser.AsPropertyObject ());

    This causes an exception of object reference when we run the application.

    Please advise on how to proceed.

    Thank you

    Arun-

    The members property is an array of string, so the 3rd parameter to SetPropertyObjectByOffset requires a string property object, IE. the user name and not of the user object. From the will of the user object error with '-17308; Specified value is not the expected type. ». The example should really be using SetValStringByOffset to be clearer so that you only specify the user name of the actual string.

  • Performance issuses, impossible to uninstall a program, add another user account, the computer doesn't turn off etc.

    Can anyone help, my vista home 32-bit edition computer is seriously messsed! ??

    I'm unable to download windows updates and I have like 20 of them to download, it just never performs an act he says its download, but it's not I can leave it for hours and nothing happens, this causes problems because my computer does now, because when you do it just says : configuration of updates and can last for hours, so I have to unplug the power to turn it off, which is not good for the computer.

    IM also having problems with other things such as it won't let me uninstall not more programs, I can't do a restore of the system from the control panel or add another user account. freezes Internet too much, slow start. I always get microsft popups saying: "the program has stopped working and not could find solutions to this problem" but I did a system restore in safe mode, but the dates were 3 months back and that didn't help the performance of this computer. I want to return to a closer date now, but I can't. as it doesn't let me do a restore of the system in the menu start control pannel ir.

    I run a scan with malaware had 181 made thereats that were deleted but I still have the same problems as above

    He said also my windows defender is not protected (outdated) more and needs to update, but it will not update

    Help, please

    Hi gandt85,

    1. you remember to make changes to the computer before this problem?

    2. are you able to boot into safe mode without any problem?

    Since you are not able to restore the system to normal mode, I suggest you to do a system restore to a recent date of WinRE using the full version of Windows Vista disk.

    Method 1:

    Do follow link below:

    What are the system recovery options in Windows Vista?

    http://Windows.Microsoft.com/en-us/Windows-Vista/what-are-the-system-recovery-options-in-Windows-Vista

    Method 2:

    You can also try to run a scan using Microsoft Security Essentials.

    Check out the link:

    http://www.Microsoft.com/security/products/MSE.aspx

    Also, try the malicious software removal tool and check.

    http://www.Microsoft.com/security/malwareremove/default.aspx

    Hope this information is useful.

    Jeremy K
    Microsoft Answers Support Engineer
    Visit our Microsoft answers feedback Forum and let us know what you think.

    If this post can help solve your problem, please click the 'Mark as answer' or 'Useful' at the top of this message. Marking a post as answer, or relatively useful, you help others find the answer more quickly.

  • Add the text by the user field

    I am struggling to find the js code for a form required to add the text field by the user when necessary. in fact I have a form that has a text field name, the address, phone etc, and sometimes there is more than one person so, I need java script to add text more filled in by the user.

    Here is the link of the same shape it please help me I am new to coding js and not a lot of knowledge in this area.

    Dropbox - Master_Listing_Agreement_070316.pdf

    Thank you

    Jenny

    You write the code, using the method documented in the JavaScript API like addField. If you have any trouble finding or understanding of this document, please let us know if we help you learn how to write your code. Please do not expect to do for you, job in us asking you to write the code for you.

  • Need your advice - the user name and roles

    We are the OEM deployment within our Organization.  There is a special requirement on business unit to have several names for the same person, with different roles.    Which means 'employee_1' will be 3 id for several roles such as employee_1_Administrator, employee_1_Operator, employee_1_Monitor!    Is - this recommended by Oracle? or it companies set up such a system? (I know it's technically feasible, but I'm confused as it is a best practice).

    Any suggestions or pointers are really appreciated.

    Vijay

    No, it sounds like a recipe for chaos for me I recommend several ROLES by user.  But if you have several users, they will constantly be logged in and out based on what targets that they manage and which kind of defeated the purpose of having a "Enterprise Manager" tool in my opinion.

    The way in which users EM are roles assigned, allows you to provide multiple roles functionality that can easily be revoked should change responsibilities.

    So create 3 roles:

    Administrator

    Operator

    Monitor

    Give the 3 roles employee_1

    I'd be interested to hear the conditions for this... but the only case that I heard in other companies is for a small number of people who have administrator-level privileges.  UserA was UserA account + userA_Admin.  Must not use their account "admin" for normal each daily tasks (management db, work planning, etc.) but only when necessary for higher level privileges.   Again, it is possible, but difficult.   Only 1 of about 40 clients that I worked with it.

  • Adding a user to a role, you see only not the role permissions

    Hi all

    Simple question HERE and frustrating because it seems so easy... Oracle 11 G 64-bit (11.2.0.3) on Windows

    I created a role and a user as follows:

    CREATE USER TEST_USER
      IDENTIFIED BY <password>
      DEFAULT TABLESPACE USERS
      TEMPORARY TABLESPACE M_TEMP
      PROFILE DEFAULT
      ACCOUNT UNLOCK;
      -- 1 Role for TEST_USER 
      GRANT INTELLIWAVE TO TEST_USER;
      ALTER USER TEST_USER DEFAULT ROLE NONE;
      -- 1 System Privilege for TEST_USER 
      GRANT CREATE SESSION TO TEST_USER;
    

    The role is:

    CREATE ROLE INTELLIWAVE NOT IDENTIFIED;
    -- Object privileges granted to INTELLIWAVE
    GRANT SELECT ON SCHEMA1.ERROR_LOG TO INTELLIWAVE;
    -- Grantees of INTELLIWAVE
    GRANT INTELLIWAVE TO TEST_USER;
    GRANT INTELLIWAVE TO SYS WITH ADMIN OPTION;
    

    Now when I use the Toad and sign in using the TEST_USER user, I can connect fine but if I try to choose among this SCHEMA1. Table ERROR_LOG, reads table/view does not exist. And when I check the tree of the scheme under the scheme, I don't see this table under that user. It is there.

    What Miss me?

    Thanks in advance!

    It seems likely that the new role is not enabled in the session. Try

    SELECT * FROM SESSION_ROLES;

    While signed in as a user. The new role appears?

    I don't see EDIT USER by DEFAULT ALL ROLE; in your script CREATE USER.

    I don't see EDIT USER by DEFAULT ROLE INTELLIWAVE;

    For example, if the role is not one of the default roles for the user (via one of the above) then you will need to deliver the VALUE ROLE INTELLIWAVE. or the ROLE ALL VALUE; to access privileges granted to this role. The SET ROLE command affects only the current session.

Maybe you are looking for