Request-Based Role Grants Oracle Fusion Middleware Online Documentation Library

13-2 Oracle Fusion Middleware Users Guide for Oracle Identity Manager The functional description of the organization services and the UI components that support these services are described in the following sections: ■ Organization Entity Definition ■ Organization Management Tasks ■ Organization Management Authorization

13.1 Organization Entity Definition

In Oracle Identity Manager, attributes are defined by default for the organization entity. These attributes are the same for all entities, such as user, organization, role, role hierarchy, and role membership. For a list of attributes defined for the entities, see User Entity Definition on page 11-3. Table 13–1 lists the default attributes of the organization entity:

13.2 Organization Management Tasks

The tasks related to organization management are performed in the Organization Management section of Oracle Identity Management Administration. The tasks are described in the following sections: ■ Searching Organizations ■ Browsing Organizations ■ Creating an Organization Table 13–1 Default Attributes of the Organization Entity Attribute Name Category Type Data Type Display Type Properties Organization Name Basic Single String Single line text Required: Yes System-Can-Default: No System-Controlled: No Encryption: Clear User-Searchable: Yes Type Basic Single String LOV Required: Yes System-Can-Default: Yes System-Controlled: Yes Encryption: Clear User-Searchable: Yes Parent Organization Basic Single String Single line text Required: No System-Can-Default: No System-Controlled: No Encryption: Clear User-Searchable: Yes Status Basic Single String Single line text Required: Yes System-Can-Default: Yes System-Controlled: Yes Encryption: Clear User-Searchable: Yes Managing Organizations 13-3 ■ Viewing and Modifying Organizations ■ Disabling and Enabling Organizations ■ Deleting an Organization

13.2.1 Searching Organizations

Oracle Identity Administration allows you to perform the following types of organization search operations: ■ Performing Simple Search ■ Performing Advanced Search

13.2.1.1 Performing Simple Search

The simple search operation lets you search organization entities based on the search strings that you specify as search attributes. This operation is also referred to as simple search or quick search. To perform a simple search for organizations: 1. Login to Oracle Identity Administration. 2. In the Administration tab on the left pane, from the drop-down list, select Organizations . 3. In the Search field, enter an organization name as a search criterion. You can include wildcard characters in your search criterion. For performance reasons, initial prefix wildcards will be removed. However, a trailing prefix wildcard will be added to all searches. 4. Click the search icon. In the Search Results tab, the search result is displayed in a table that shows the organization names that matched the search criterion. Figure 13–2 shows the search results table: Figure 13–2 Organization Search Result Note: The organizations that are displayed in the search result when you search for organizations, is controlled by the XL.EnableOrgPermissionCheck system property. See System Properties in Oracle Identity Manager in the Oracle Fusion Middleware Administrators Guide for Oracle Identity Manager for information about this system property. 13-4 Oracle Fusion Middleware Users Guide for Oracle Identity Manager

13.2.1.2 Performing Advanced Search

Advanced search for organizations allows you to specify more complex search criteria than the simple search operation. The results are displayed in search results table. To perform advanced search for organizations:

1. Login to Oracle Identity Administration.

2. In the Welcome page, under Organizations, click Advanced Search -

Organizations . The Advanced Search page is displayed on the right pane.

3. Select any one of the following:

■ All: Search is performed with the AND condition. This means that the search operation is successful only when all the search criteria specified are matched. ■ Any: Search is performed with the OR condition. This means that the search operation is successful when any search criterion specified is matched.

4. In the Organization Name field, enter the organization name search attribute that

you want to search. To do so, select a search comparator. The default search comparator is Begins With. The comparator Equals is available in the pulldown list as an alternative. See Search Comparators on page 11-33 for more information about search comparators. You can use wildcard characters to specify the organization name.

5. From the Organization Customer Type list, select the organization type. The

organization type can be Branch, Department, or Company.

6. From the Add Fields button, select Organization Status.

7. From the Organization Status list, select the organization status, which can be

Active, Deleted, or Disabled.

8. Click Search. The results are displayed in the search results table, as shown in

Figure 13–3 . The search results table displays the organization name, parent organization, organization customer type, and organization status. Figure 13–3 Advanced Search Managing Organizations 13-5

13.2.2 Browsing Organizations

You can browse data in the Organizations section in Oracle Identity Manager Administration. The browse functionality is available in the left pane of the UI. Using the browse operation, you can navigate through the organization tree in the system, starting at the root organization. If there are multiple organization trees, then all the trees are displayed. Each tree starts at a root organization node, which has no parent organization. The users defined in the organization are not displayed as nodes in the tree. To browse through organizations, in the left pane of Oracle Identity Manager Administration, under the Browse tab, click Organization. All the organizations in Oracle Identity Manager are displayed in the browse list, as shown in Figure 13–4 : Figure 13–4 Organization Browse List The organization browse list shows the organizations trees with the root and child organizations. In the organization browse list, you can perform the following: ■ Create an organization. See Creating an Organization on page 13-5. ■ Open the details of an organization. See Viewing and Modifying Organizations on page 13-7. ■ Delete an organization. See Deleting an Organization on page 13-13. ■ Manage administrative roles: See Managing Administrative Roles on page 13-11.

13.2.3 Creating an Organization

You create an organization by using the Create Organization page. You can access this page only if you are authorized to create an organization. To create an organization: 1. Open the Create Organization page. To do so, perform any one of the following: ■ In the Welcome page of Oracle Identity Manager Administration, under Organizations, click Create New Organization. ■ In the left pane, click the Browse tab. Under Organizations, from the Action menu, select Create. You can also click the Create icon on the toolbar. Note: You are allowed to create an organization only if you have the Create Organization privilege for one or more organizations.