Types of certification:
- User Certification (Supports multiPhases: Business reviewer and Technical certifier)
- Role Certification
- Application Instance Certification
- Entitlement Certification
Configuring Certifications:
- Marking a Catalog Item as Certifiable
- Setting the Certifier in the Request Catalog
- Setting User Manager and Organization Certifier
- Setting User Attributes for Certification Snapshot
- Setting Risk Levels for Individual Entities
- Tagging Attributes: Entitlement -ITResource -AccountName
- Configuring the Availability of Identity Certification:
Identity Auditor Feature Set Availability
system property is set to TRUE
. When the value of this property is TRUE
, role lifecycle management, Segregation of Duties (SoD), and identity certification are enabled.Create Certification Definition
More details can be found @ Oracle® Fusion Middleware Performing Self Service Tasks with Oracle Identity Manager
Certification Event Listener
"The Event Listener mechanism detects specific business events and stores
the event details for certification. The stored event details are
called Certification Event Triggers, and these are processed into
certifications by the Certification Event Trigger Task, running as a
scheduled job. The business events currently detected by event listeners
are modifications of Oracle Identity Manager users, either individually
or in bulk."
This feature enable customers to define business events that
require certifications, and generate these certifications automatically via Certification Event Trigger Task
Certification Reports
Certification reports required to integrate with BI Publisher which is shipped by default with Oracle Identity Manager 11g Release 2 (11.1.2.3.0)
Enabling OIM Reports Export in Identity Certification Details page.
-
Log in to Oracle Identity Self Service Console.
-
Click the Compliance tab.
-
Click the Identity Certification box, and select Certification Configuration. The Certification Configuration page is displayed.
-
Select the Enable Certification Reports option.
- Click Save.
Troubleshooting
Identity Certification Logger via EM console
Tips:
- When the job running slow. Some index maybe required.
- When the job ran but no certification created, please ensure:
- All the certification configuration steps have been performed
- Ensure that all required SOA patches are applied.
Purging Identity Certification Tables
OIM Certification Purge Job will be purging the data of the following tables. Please contact oracle support to request the patch that contains this tool.CERT_xxx
CERTD_xxx
CERTDS_xxx
CERTS_xxx
Based on the requirement set the value for following job parameters or use the default values provided.
- Cert Campaigns for Purge
- Maximum Purge Run Duration(in Mins)
- Purge Retention Period(in days)
- Purge Criteria
- Run the job
This is very great thinks. It was very comprehensive post and powerful concept. Thanks for your sharing with us. Keep it up..
ReplyDeleteOracle Training in Chennai | Oracle Training Institutes in Chennai
What is called re-certification?
ReplyDeleteCan you please explain
Nice and good article. It is very useful for me to learn and understand easily. oracle training in chennai
ReplyDelete