Managing roles using the solution of the OIM/OAM/OID

Dear members

I am faced with confusion while providing the solution about the OAM and OID.

We have the portal WC system where authentication solution implemented using OAM 11 g. We expect authentication based on roles with the help of OID/IOM.

I hear, by authentication based on roles, we're essentially the user roles will find in these roles. So they have will go through SSO system and their landing page will be the same. But the controls and links will be displayed according to their role.

We do not use oracle role manager then manage it using OID.

Is there a possible solution. Please help me its urgent.

Thanks in advance.


Concerning

Arun Kumar Singh

Hi Arun,

In OAM, you can define authorization policies that allow or deny access to resources based on a value of attribute (of the logged in user). For example, you might allow access to the url/admin only to users who have a value of 'Administrator' in an attribute. Another approach is simply to set the attribute as a Variable for header (this is also defined in an OAM authorization policy) so that it is passed to the receiving application, which can then query the value of the attribute and take appropriate action.

In these cases, OAM is only using the values of the attribute or send them to another application. To manage the values (put them properly for users/applications etc.) you would use a tool like the IOM to ensure that they are properly sized.

Kind regards

Colin

Tags: Fusion Middleware

Similar Questions

  • Download Adobe License Server Tools? I want to manage licenses using the internal server

    This ticket https://forums.Adobe.com/message/1329254#1329254 , I'm able to download Adobe License Server Tools? I want to manage licenses using the internal server

    Thank you.

    Hi Carol,.

    Please consult the guide for internal tool of license;

    http://www.Adobe.com/UK/eLicensing/LicenseManagement/Alm/PDFs/server_tools_user_guide.PDF

    Let us know if you need more details about your query.

    Kind regards

    Sarika Behal

  • Create a role using the web client

    Hello team,

    Sorry for the lame question, but I can't find it anywhere:

    connected to vsphere 5.5 Web client

    I wanted to create a custom role to assign to the specific user. I don't see any possibility to create a custom role.

    On vcenter level in manage / I can only use predefined roles permissions. How to create a custom role?

    Thank you

    Please try to use the account "[email protected]".

    André

  • From server managed by using the Node Manager command line

    Hello

    I have configured the Node Manager and it is connected to the administrator of the server without problem. Now, I wanted to start the server managed through the console but it is a failure and my guess is that the syntax of the command line used is not correct.

    My question is, how do I change the command line used to start the Node Manager-managed server? I try to use the configuration tab start the server and it seems that does not. I also try to update the file .properties for the managed server.

    Whenever I look at the managed server logs, it gives me this line...

    NodeManager > < start WebLogic server with command line: <>...

    The command-line in newspapers aren't what I put in the .properties file or on the Server Start tab. She is from somewhere and I don't know where. I just want to set up the command line Node Manager uses to start a managed server.

    If all goes well, I'm clear with my problem and someone might be able to help. Thank you.

    You can try to follow the Option-2) mentioned in the link below: http://jaysensharma.wordpress.com/2010/03/26/nodemanager-based-managedservers-setting-mem_args/

  • With the help of jq waypoints to start the animation if you use the file oam

    OK so y at - it suggestions on how I can use jq waypoints to start various animations when I reached in some places on a page if I have embeded animations using the oam with dreamweaver file?

    in other words, anyone know if I can get the js on the home page to interact with the js within the object

    Well I thought about it I itself.

    on the page of the object html

    function fire(sym,e) {}

    loadedComps ['index 1'] .getStage ().getSymbol('inde').play (0);

    }

    var loadedComps = {};

    {AdobeEdge.bootstrapCallback (function (compId)}

    loadedComps [compId] = AdobeEdge.getComposition (compId);

    now, it is prudent to call and the link to things like...

    AdobeEdge.Symbol.bindTimelineAction (compId, 'stage', "Default editing", "complete", fire (sym, e))

    })

    on the page that the object is embeded in

    {$('.sectwo').waypoint (function (dir)}

    Window [0]. Fire()

    });

    As far as I can tell
    the object is injected into the dom window by window key [0] [1] a window [2], etc...

    then by changing the bonding time line to call a function preregisted
    I can control the animation of objects aside the embeded object

    hope this helps someone

  • OVD adapter Question using the model ' OAM/ADAM adapter with map.

    I'm creating adapter to ADAM using model 'OAM/ADAM adapter with map' in 11.1.1.7.0 using DOHADOVD.

    obpasswordhistory, obpasswordexpirydate, obLoginTrycount, and obLockouttime fields are not displayed in TPM. They are present in the ADAM instance.

    Any thoughts on how to add these missing fields in TPM?

    You must extend the schema of the OVD as well. You can refer to the documentation of production

    http://docs.Oracle.com/CD/E27559_01/admin.1112/e27239/shared.htm#CFFEJEEE

  • leave the animation to a new web page (using the file .oam Edge in MUSE)

    Hello

    Ok. Here's the situation. I have a Web page that was made in MUSE, on this page, there is a click of the mouse button that starts an animation on board.

    Once the animation is completed, I want a (automatic) action that displays a new Web page on the same website.

    I tried implementing a "timeline stop" action on the main stage

    window.open ("http://homie0106.businesscatalyst.com/menu-1.html");

    No dice. Any ideas?

    Thanks in advance

    Bob

    I have it.  The method I posted worked there... once I corrected my mistake of hyperlinking.

  • Lenovo Energy Management using the NVIDIA GPU

    How can I disable lenovo energy management to use the nvidia gpu? At the time, lenovo energy management has not used the nvidia gpu. Thank you.

    Already done with the problem. But my solution was however little stupid. I just used onekey recovery to return to the initial state and not to update my GeForce driver, now I use the stock 295.93 version.

  • "The system cannot find the specified file" error when you try to install a hotfix/cab package using the DISM tool Package Manager

    I'm testing the integrity of the addon ".cab" packages and patches by installing using the Package Manager (pkgmgr.exe), or alternatively, the Deployment Image Servicing and Management Tool (DISM.exe) for Windows 7.  To do this, I am aware that I have to call a tool through the command line.

    In the Package Manager, I use the syntax

    Command prompt > pkgmgr.exe /ip /m:C:\Test\test.cab

    Otherwise, I might add the path in quotes:

    "Command prompt > pkgmgr.exe /ip /m:"C:\Test\test.cab.

    The error returned in pkgmgr is:

    Operation failed with 0 x 80070002.  The system cannot find the specified file.

    My first impression was that my syntax is incorrect, although I can't have room for error.  The path points to "test.cab" which is a renamed windows addon that contains the necessary file "svcpack" and the file "entries_XX.ini".  I used several different ".cab" file, that which some I know to be genuine, hopefully exclude the possibility of a corrupted or incompatible file.  I also tried this procedure on different computers and received the same error code, so I doubt that the tool pkgmgr istelf is corrupt.

    Finally, I tried an alternative Windows 7/8 DISM tool to try to achieve essentially the same task by using the following syntax in a command prompt:

    "Commnand prompt > DISM.exe / Online /PackagePath:"C:\Test\test.cab Add-Package ".

    This produces a similar error:

    An error occurred trying to open it - C:\Test\test.cab error: 0 x 80070002
    Error: 2
    The system cannot find the specified file.
    The DISM log file can be found at C:\Windows\Logs\DISM\dism.log

    I'm really not sure why I produce these errors.  Any idea is appreciated.

    Hello

    Thanks for posting your question on the Microsoft Forum.

    I suggest you to ask your question in the TechNet forums.

    https://social.technet.Microsoft.com/forums/Windows/en-us/home?Forum=w7itpronetworking&filter=AllTypes&sort=lastpostdesc

    TechNet is watched by other computing professionals who would be more likely to help you.

    I hope this helps.

    _________________

    Thank you best regards &,.

    Isha Soni

  • Apple TV 9.2 using the keyboard to type the first few letters in library home sharing

    Hello community,

    Someone managed to use the keyboard to type the first letters of a movie/tv/music show in their home sharing library?

    I was able to do this on the old ATV but can't make it work on the new ATV.

    To explain more in detail - the reason why I want to do it is to spend in that capacity that I'm looking rather than slowly scroll down the list of titles. It is a useful time saver.

  • How to use the battery and the power cord in a smart way?

    Is it possible to do a power management, that use the battery as long as there is power in the battery and the first when there is no more power use the external power supply, which has been active all the time without loss of battery charge?

    Batteries wear out with use.  And they can wear out more when you do not use unless you physically remove them.  If you travel a lot, you will have to bite the bullet and buy new batteries every two years.  If you are usually connected to a power outlet, remove the battery and it will last much longer.  For more details, refer to the User Guide.  Different brands and models my vary in their recommendations.

    Good luck.

  • Type cast using the Console Design

    Hi all

    I am using the function java.util.Hastable.put (key, value) using the OIM design console. The function expects two objects as parameters to the card. I want to map a string to a string. While the string is a subclass of the object, IOM design concole does no direct mapping. Variables of type other object will simply not available in the menu dropdown.

    Q: How have the input parameters when the expected type is a superclass of the real parameters, using the console of design ?

    Kind regards

    Jan Willem

    There are com.thortech.xl.util.adapters.tcUtilHashTableOperations utilities that can help you to create and add values in a hash table. You can find the documentation in the java docs included in the location SDK\javadocs\util.

    -Kevin

  • How can we use, "Create trigger and replace" using the oracle form

    Hi all
    How can we use the following creation or replacing the trigger in the form of oracle?
    Please help me.

    CREATE OR REPLACE TRIGGER app_user.after_logon_trg
    AFTER LOGON WE app_user. SCHEMA
    BEGIN
    DBMS_APPLICATION_INFO.set_module (USER, "Initialized");
    EXECUTE IMMEDIATE 'ALTER SESSION SET current_schema = SCHEMA_OWNER';
    END;

    Sarah

    user434854:

    Your information is good enough about the use of roles. This is the model of security that our customers use. Only assign us a password for roles and issues of connection of users shape the grant sql role using the password is used since in the form.

    However, I agree with Andreas on the hard coding schema owner. We have several clients, and each of them has a different name for the owner of the schema. By creating a public synonym for access to our forms tables, our forms work well at all sites.

    And after 325 posts, why don't give you yourself a real name on the forum?

  • How to use the Weblogic user in my WebCenter application?

    Hello

    I'm doing my first Webcenter application. I have configured my wiki and weblogic server to connect, forum (discussions) with my users OID. So now any user OID can connect to this application.

    In my custom application Webcenter I configured JAAS security, now I would like to know how to use the same users OID in my application. Is this possible? Can someone help me? I tried Oracle Developers Guide, but it doesn't help me.

    Sorry for my bad English...

    Thank you

    Nelson

    You need to register a new provider of authentication on WLS. Please see this link http://www.oracle.com/technology/products/jdev/tips/fnimphius/oidconfig/index.html.

  • OIM/OAM 11 g load balancing

    Hello

    I want to configure a load balancer for OIM/OAM 11 g access servers. Please let me know the steps or provide me with any document if someone.

    Thanks in advance,

    Srikanth

    Hello
    You must use Oracle HTTP Server (mod_wls_ohs) for load balancing between the OIM/OAM and Web tear. Please see this link http://docs.oracle.com/cd/E17904_01/core.1111/e10106/imha.htm.

    If you want to use load balancing between OSH and the user using a Virtual host/IP then you have user or traffic Director/HA Proxy Oracle hardware load balancer.

    Thank you
    Tamim Khan

Maybe you are looking for