Oracle - Role/Responsibility Assignment Management
The Role/Responsibility Assignment Management request enables you to:
- Change the validity period of the responsibilities assigned to a specific user
- Change the validity period of the user
- Assign new responsibilities to a user
-
Revoke an existing role or responsibility.
When an existing role or responsibility is revoked in a request, the role or the responsibility still remains assigned to the user in Oracle. However, the valid to date of the role or the responsibility is set to expired.
- Modify additional user attributes, if enabled
To create an Oracle - Role/Responsibility Assignment Management :
-
Provide details on the
following panels
-
General Information: Use this panel to provide the following general information about
the request.
- Request Name: Provide a unique name to identify the request .
- Request Priority: From the drop-down list, select a priority for the request .
-
Connections: Provide the connection for which
the request is being created. You can set this connection as default from
Preferences page. To select a connection, type in a part of the connection
name. All connections matching your search criteria are displayed. Select the
desired connection. Alternatively, browse and select the desired connection and
click
. The selected
connection appears in the
Connections field.
Note: In case of secured connections, users signed into Infor Risk & Compliance will be able to view and use only those connections that they have access to
-
Select User: Select the user who is to be
assigned new responsibilities. To select a user, type in part of the user name.
All users from the selected connection and matching your search criteria are
displayed. Select the desired user name. Alternatively, browse and select the
desired user and click
. The selected
user appears in the
Select User field .
Note: If a request for the same user is already pending, Infor Risk & Compliance displays a message alerting you about the duplicate assignment. You have the option to continue the request, cancel it or select a different user.
If the request is continued, then, during the approval process, the approver will see the message in the Previous Comments section. After you select a user the screen will display the responsibilities already assigned to the selected user and will allow you to add or remove responsibilities. If the connection selected is a mapped connection then the list of responsibilities assigned to the user from the other connections are also displayed.
-
Valid From: The
Valid From text box
enables you to provide a date from which the selected user is valid.
- If a valid from date is already selected for the user, that date will appear in the text box. Click the Date of Approval if the validity period is to begin from the date of approval of the request. icon to modify the date or select the
- If a valid from
date is not set for the selected user, click the
Date of
Approval.
Note: Date of Approval will be replaced with the actual approval date when the request is completed and write-back is successful.
icon
to either select a specific date or select
-
Valid Through: The
Valid Through
text box enables you to provide a date till the selected user is valid.
- If a valid through date is already selected for the user, that date will appear in the text box. Click the Never Expires. icon to modify the date or select
- If a valid through date is not set for the selected user, you can click the Never Expires. icon to either select a specific date or select
Note: The Valid Through date can either be the current date or a future date.
-
Approval Manager: Select the name of the Infor
Risk & Compliance user who will be an approver for the this request if the
user's manager is unable to approve the request. For example, if the approval
template has Manager of User as the approver at one or more stages but the
manager is out of office
Note: The Approval Manager field will be enabled only if the option 'Allow user to redirect request' is selected on the Access Management section on the Configuration page.To select an Approval Manager, type in a part of the user name. All users from the selected connection that match your search criteria are displayed. Alternatively, browse and select the desired user and click .
- Assign Roles/Responsibilities as another User: Specify the name of the user whose roles/responsibilities you want to assign to the existing user. To select a user, type in a part of the user name. All users from the selected connection and matching your search criteria are displayed. Select the desired user name. Alternatively, browse and select the desired user and click . The selected user appears in the Assign Roles/Responsibilities as another User field.
-
Additional User Attributes: Select additional
user attributes if required and provide values for them. User attributes can be
configured for the connection in which the user is present and should be
enabled through the AdditionalUserAttributes_Orcl.xml file so that they are
displayed on the request creation page.
For details, refer to the Oracle - Configuration Settings Guide.
- New Roles to be
Assigned: This panel enables you to assign new roles to the selected user. If
you have selected an existing user in the
Assign Roles/Responsibilities as
another user field, this panel will also list the roles belonging
to that user .
- Add New Roles :
- To select a role, type in part of the role names from the selected connection and matching the search criteria are displayed. Select the desired role name. Alternatively, browse and select the desired role and click Add New Roles field identified with an icon. . The selected role appears in the
- In the Valid From field, click the date link to change the validity period of the role. Click the Calendar icon to select a date from the calendar.
- In the Valid through field, click the date link to change the expiry date of the existing role . Click the Calendar icon to select a date from the calendar.
Note: Select the check box All to apply the same validity dates across all roles.
- Add New Roles :
- New Responsibilities to
be Assigned: This panel enables you to assign new responsibilities to the
selected user. If you have selected an existing user in the
Assign Roles/Responsibilities as
another user field, this panel will also list the responsibilities
belonging to that user .
- Add New
Responsibilities :
- To select a responsibility, type in part of the responsibility name from the selected connection and matching the search criteria are displayed. Select the desired responsibility name. Alternatively, browse and select the desired responsibility and click Add New Responsibilities field identified with an icon. . The selected responsibility appears in the
- In the Valid From field, click the date link to change the validity period of the responsibility. Click the Calendar icon to select a date from the calendar.
- In the Valid through field, click the date link to change the expiry date of the existing responsibility. Click the Calendar icon to select a date from the calendar.
Note: Select the check box All to apply the same validity dates across all responsibilities.
- Add New
Responsibilities :
- Already Assigned Roles
and Responsibilities: These are the roles or responsibilities already assigned
to the selected user. If a mapped connection is selected for this request, this
panel will also list the roles or responsibilities that are assigned to this
user from the other connections.
-
Revoke existing roles or responsibilities: To
revoke an existing roles or responsibilities:
- Select the roles or responsibilities you want to revoke.
- In the Valid from field, click the date link to change the validity period of the role or responsibility. Click the Calendar icon to select a date from the calendar.
- In the
Valid Through
field, click the date link to change the expiry date of the existing role or
responsibility. Click the Calendar icon to select a date from the calendar.
Note: Select the check box All to apply the same validity dates across all roles or responsibilities.
- Click
By default, all existing roles or responsibilities assignments can be revoked through this request. This means that users can have zero roles or responsibilities assignments. You can modify this default setting in the AMSConfig.xml file to ensure that all existing roles or responsibilities are not revoked. For details refer to the Access Manager for Oracle document.
. The
roles or responsibilities will be revoked after the request undergoes the
approval process.
Note: Click Undo to reset the revoked roles or responsibilities. - More Details
- Comments: Provide additional information about the request through comments. Comments are mandatory if the Infor Risk & Compliance option check box on the Access Management section of the Configuration page is selected.
- E-mail settings: This tab
enables you to send email notifications to request participants or other users
at specific stages of a request.
- Select any of the request status check boxes next to a user. Email notifications will be sent to that user when the request reaches that status. The option Approval Email Notification ensures that a user is notified whenever a request is posted to that user's inbox.
- Select the check box Display comments in email notifications, if you want the application to display comments in the notification.
- Other users can be notified by selecting the option Others. Provide the email address for the other users in the Other emails text box and click the Add icon.
Note: Email settings are enabled and may be changed only if the check box Override this Option is selected in the Options panel of the Approval Process Template page. - Approval Stages : This panel provides details of the approval stages of the request and its present status .
-
Revoke existing roles or responsibilities: To
revoke an existing roles or responsibilities:
-
General Information: Use this panel to provide the following general information about
the request.
- Click . The request is sent to the specified approvers and is displayed on the Requests home page. Click the request link to view the request details and take further action.
Role/Responsibility Assignment Management request can also be generated from the What-if analysis for Oracle - Role/Responsibility Assignment Management