Monitoring Oracle BAM Logs

Managing Oracle Business Activity Monitoring 24-7 Select a role in the Role Name list: Add a member to the role: 24-8 Oracle Fusion Middleware Administrators Guide for Oracle SOA Suite and Oracle BPM Suite Select an available user and move it to the Selected Users list:

24.3.4 Introduction to Oracle BAM Application Roles

Oracle BAM defines the following application-level roles: ■ Administrator: Has access to all features. ■ Report Architect: Has access to features for creating data objects and reports. ■ Report Creator: Has access to features for creating reports. ■ Report Viewer: Has access to features for viewing reports. The application roles determine the permissions granted to specific users or groups. If a user or group is a member of one of these Oracle BAM application roles, then they are granted the associated Oracle BAM permissions. The Oracle BAM application roles are granted the following permissions: Managing Oracle Business Activity Monitoring 24-9 Administrator Permissions ■ Administrator: Has full access to Oracle BAM Administrator application functionality. ■ CreateDataObject: Can create data objects in Oracle BAM Architect. ■ ActiveViewer: Has full access to Oracle BAM Active Viewer application functionality. ■ ActiveStudio: Has full access to Oracle BAM Active Studio application functionality. ■ Architect: Has full access to Oracle BAM Architect application functionality. ■ CreateReport: Can create reports in Oracle BAM Active Studio. ■ CreateAlertRule: Can create alerts in Oracle BAM Architect and Oracle BAM Active Studio. ■ EmailRenderedReport: Can email report attachments to Oracle BAM users. Report Architect Permissions ■ CreateDataObject: Can create data objects in Oracle BAM Architect. ■ ActiveViewer: Has full access to Oracle BAM Active Viewer application functionality. ■ ActiveStudio: Has full access to Oracle BAM Active Studio application functionality. ■ Architect: Has full access to Oracle BAM Architect application functionality. ■ CreateReport: Can create reports in Oracle BAM Active Studio. ■ CreateAlertRule: Can create alerts in Oracle BAM Architect and Oracle BAM Active Studio. ■ EmailRenderedReport: Can email report attachments to Oracle BAM users. Report Creator Permissions ■ ActiveViewer: Has full access to Oracle BAM Active Viewer application functionality. ■ ActiveStudio: Has full access to Oracle BAM Active Studio application functionality. ■ CreateReport: Can create reports in Oracle BAM Active Studio. ■ CreateAlertRule: Can create alerts in Oracle BAM Active Studio. ■ EmailRenderedReport: Can email report attachments to Oracle BAM users. Report Viewer Permissions ■ ActiveViewer: Has full access to Oracle BAM Active Studio application functionality.

24.3.5 Configuring Oracle WebLogic Server Embedded LDAP Server

The Oracle WebLogic Server embedded LDAP server is the default security provider for Oracle WebLogic Server. This section describes the procedures for adding new users and groups to the Oracle WebLogic Server embedded LDAP server. 24-10 Oracle Fusion Middleware Administrators Guide for Oracle SOA Suite and Oracle BPM Suite See Managing the Embedded LDAP Server in Oracle Fusion Middleware Securing Oracle WebLogic Server for information about configuring the embedded LDAP server.

24.3.5.1 Using the Oracle WebLogic Server Administration Console

Oracle WebLogic Server administration is performed using the Oracle WebLogic Server Administration Console at http:host_name:port_numberconsole Oracle WebLogic Server must be running to access the administration console. This console requires the user to log in with Oracle WebLogic Server administrator credentials. After successfully logging in, the user is placed at the Oracle WebLogic Server Administration Console home page.

24.3.5.2 Adding a Group

To add a group:

1. Go to Home Security Realms myrealm Users and Groups in Oracle

WebLogic Server Administration Console.

2. Select the Groups tab, and click New.

3. Enter the group name and description. Do not change the provider.

4. Click OK.

24.3.5.3 Adding a User

To add a user:

1. Go to Home Security Realms myrealm Users and Groups in Oracle

WebLogic Server Administration Console.

2. Select the Users tab, and click New.

3. Enter the user name, description, and login password. Do not change the provider.

4. Click OK.

24.3.5.4 Adding a User to a Group

To add a user to a group:

1. Go to Home Security Realms myrealm Users and Groups in Oracle

WebLogic Server Administration Console.

2. Select the Users tab, and select the user.

3. Select the Groups tab.

4. Move the groups from the Available list to the Chosen list. The Chosen list

represents the list of groups of which the user is now a member.

5. Click Save.

24.3.6 Populating Users in Oracle BAM Administrator

Users are not automatically populated in Oracle BAM Administrator by the security provider. The system administrator must either run the registerusers utility, or have users log in to the Oracle BAM start page by using the provided credentials, before they can be managed in Oracle BAM Administrator.