Beruflich Dokumente
Kultur Dokumente
• Why SSO
• Install Options
• Log Locations
• EBS Cloning Considerations
• Disaster Recovery Considerations
• Monitoring Options
• Case Study Overview
• Future Directions / References
User Account Challenges
• Navigate to:
http://<hostname>.<domain>:<port>/oaiddas
or
http://<load_balance_address>/oaiddas
• Create a test id
• Log in with new id
Verify Installation
• Registration Types
– Default (Simple)
– Advanced
Registration Types
Default (Simple)
• 10.1.3 Oracle Home Registration
– Registers AS 10.1.3 Oracle Home in OID before OSSO or
OID registration
– 10.1.3 Oracle Home registration will happen only once per
E-Business Suite deployment
• SSO
– Single SSO partner application
– Listener Token is set to site level of APPS_DATABASE_ID
profile option
• OID
– Uses Bidirectional provisioning
– Can’t have changed the default OID password policy
Registration Types
Advanced > Register EBS with SSO
txkrun.pl -script=SetSSOReg -registersso=Yes
Enter the host name where Oracle iAS Infrastructure database
is installed ?
Enter the Oracle iAS Infrastructure database port number ?
Enter the Oracle iAS Infrastructure database SID ?
Enter Oracle E-Business apps database user password ?
Enter Oracle iAS Infrastructure database ORASSO schema
password ?
Enter Oracle E-Business SYSTEM database user password ?
Enter E-Business Suite existing SSOSDK schema password or
choose a password to use with the new SSOSDK schema if the
schema does not exist ?
Registration Types
Advanced > Register EBS with OID
txkrun.pl -script=SetSSOReg -registeroid=Yes –
provtmp=<template>
Enter the host name where Oracle iAS Infrastructure database
is installed ?
Enter the LDAP Port on Oracle Internet Directory server ?
Enter Oracle E-Business apps database user password ?
Enter the Oracle Internet Directory Administrator (orcladmin)
Bind password ?
Enter the instance password that you would like to register this
application instance with ?
Information needed to register
• Hostname of OAS Infrastructure database
• Port of OAS Infrastructure database
• SID of OAS Infrastructure database
• LDAP port of OID
• Provision type
• Passwords:
– EBS apps
– OAS Infrastructure database orasso user
– EBS system
– EBS ssosdk
– OID admin user (orcladmin)
– EBS registration
Provisioning Types
• Bidirectional
• Inbound - Instance to OID Server
• Outbound - OID Server to Instance
• Bidirectional No Creation
• Custom Provisioning using oidprovtool
EBS Profile Updates
• Applications SSO Type
• Applications SSO Auto Link User
• Applications SSO Login Types
• Application SSO LDAP Synchronization
• Applications SSO Enable OID Identity Add
Event
• Link Applications user with OID user with
same username
• Applications SSO Allow Multiple Accounts
Product Specific Patches
• Two Methods
– authenticate (HttpServletRequest)
– getUserCredentialPage(HttpServletRequest,
String)
EBS Integration with 3rd Party
LDAP
• EBS cannot be integrated directly with a third-
party LDAP
• User information in 3rd party LDAP must be
synchronized with OID
• Synchronization can happen with either
Oracle Directory Integration Platform or bulk-
load
Oracle Directory Integration
Platform
• Uses directory synchronization profile
– Direction
– Type of interface
– Mapping rules
– Connection details of the connected directory
• OID uses change log to determine what
changes to send
• 3rd party changes are synced automatically or
are written to a file in LDIF format
Log Locations
• ORACLE_HOME/j2ee/OC4J_SECURITY/log
• ORACLE_HOME/ldap/log
• ORACLE_HOME/sso/log
• ORACLE_HOME/Apache/Apache/logs
• ORACLE_HOME/Apache/modplsql/logs
• ORACLE_HOME/opmn/logs
EBS Cloning Considerations
Reference
975182.1 - Integrating Oracle E-Business Suite with
Oracle Access Manager using Oracle E-Business
Suite AccessGate
References
233436.1 - Installing Oracle Application
Server 10g with Oracle E-Business Suite
Release 11i
376811.1 - Integrating Oracle E-Business
Suite Release 12 with Oracle Internet
Directory and Oracle Single Sign-On
300436.1 - Setting Up OID Replication in
10.1.2 / 10.1.4
Oracle Application Server Single Sign-On
Administrator's Guide
Oracle Identity Management Integration
Guide
Final Slide
Presentation available on
www.fieldappsdba.com