Security features of OBIEE 12c

New security features in Oracle BI EE 12c (12.2.1) include:

BISystemUser and BISystem Removed
User GUIDs Removed
Database Security Store
Easier SSL Configuration
Migrating Catalog Groups to Application Roles
BISystemUser and BISystem Removed

To simplify administration and configuration in this release Oracle Business Intelligence no longer requires a real user called BISystemUser (or equivalent) for internal communication. The system user concept is now deemed "virtual" and is represented by the credential oracle.bi.system/system.user, for which the values are securely randomly generated by the Configuration Assistant. Oracle BI components continue to use this credential for internal communication, backed by Oracle BI Security. The application role BISystem is also no longer present in the Policy Store, and will be removed from any upgraded 11g environment.

User GUIDs Removed

In this release user GUIDs have been removed to make administration easier. GUIDs are replaced with user names. There is no longer any need to refresh GUIDs as part of lifecycle operations. Your administrator is now responsible for ensuring that users leaving the system are cleaned up from Oracle Business Intelligence.

Database Security Store

In this release the Security Store (Policy and Credential Stores) is configured in a relational database rather than in a file. The database is the same as used by RCU. This change makes scaling easier, and makes clusters more reliable.

Easier SSL Configuration.

In this release configuring SSL end to end is now less complex and uses offline commands.

No comments:

Post a Comment