Application Policy Migration

Hi,
I have an Fusion application (ADF Security) deployed onto WLS-1, and the same Application onto WLS-2. My requirement is to migrate application policies from one env to another (i.e. from WLS-1 to WLS-2). After deploying the application onto WLS-1, the Administrator logs into FMWControl (EM) and do some modifications in the policies associated (let us say granted or revoked). And now, I want to migrate these changes onto WLS-2 (thru some WLST Scripts or OPSS).
I used WLS Import/Export utility from WLS Console and it only migrates the user credentials (users & groups, i.e. content from Embedded LDAP and not from system-jazn-data.xml).
I found some WLST script that migrates policies from Code Base onto WLS during deployment. But my requirement is from one WLS to another WLS.
Please help me with some idea/pointers.
Application Policy Migration
Thanks
Raza

Well in this case I'm think that APPWORKSPACEDIR refers to your existing JDeveloper application directory. You may want to ask the JDev forum:
JDeveloper and ADF
In general, I think the teams are very open to constructive feedback on what specifically needs to be improved with the documentation.
[email protected] is the WLS feedback. For JDev, I would contact some of the bloggers like Shay:
http://blogs.oracle.com/shay/
Good luck.

Similar Messages

  • WLS 11 Policy migration during EAR deployment

    We are installing an ADF 11g EAR into our development instance of WLS 10.3.1 and are seeing some strange behavior with the ADF policy migration. During the EAR install from either the WLS console, or using WLST scripts, the ear deployment appears to create entries in our domains system-jazn-data.xml file in the .../config/fmwconfig directory. The policies work fine when testing the application. Users in the various application roles see expected security behavior. If we then start and stop a completely different managed server from the console, the entries that were in the system-jazn-data.xml file disappear, but the our application security continues to work as expected. If we then bounce the server our ear is deployed to, the entries show up again in system-jazn-data.xml.
    Can anyone explain this behavior and verify if this is expected?
    Additional Information: We have followed the enterprise deployment guide when setting up our middleware home directory. We have the following directory structure:
    /opt/oracle/admin/snidomain/aserver
    /opt/oracle/admin/snidomain/mserver
    The aserver directory contains the admin server and the mserver directory contains our managed servers. Each directory contains a config/fmwconfig subdirectory each containing a system-jazn-data.xml file. Each also contains a jps-config.xml file that specifies an XML policy provider pointing at "./system-jazn-data.xml". When we install an EAR that utilizes ADF security, the system-jazn-data.xml file in the mserver directory is updated during deployment, but the one in the aserver directory is not. Each recycle of a managed server appears to replace the contents of the system-jazn-data.xml file in the mserver directory.
    Also, when I bring up Fusion Middleware Control and view the roles/policies of the ear, none are displayed in the UI. If I add a role/policy using Fusion Middleware Control, the new role/policy is placed in the system-jazn-data.xml file in the aserver directory, and the contents of the one in the mserver directory is completely replaced with the same contents as the one in the asever directory, overwriting the ones added during the deployment.

    We are installing an ADF 11g EAR into our development instance of WLS 10.3.1 and are seeing some strange behavior with the ADF policy migration. During the EAR install from either the WLS console, or using WLST scripts, the ear deployment appears to create entries in our domains system-jazn-data.xml file in the .../config/fmwconfig directory. The policies work fine when testing the application. Users in the various application roles see expected security behavior. If we then start and stop a completely different managed server from the console, the entries that were in the system-jazn-data.xml file disappear, but the our application security continues to work as expected. If we then bounce the server our ear is deployed to, the entries show up again in system-jazn-data.xml.
    Can anyone explain this behavior and verify if this is expected?
    Additional Information: We have followed the enterprise deployment guide when setting up our middleware home directory. We have the following directory structure:
    /opt/oracle/admin/snidomain/aserver
    /opt/oracle/admin/snidomain/mserver
    The aserver directory contains the admin server and the mserver directory contains our managed servers. Each directory contains a config/fmwconfig subdirectory each containing a system-jazn-data.xml file. Each also contains a jps-config.xml file that specifies an XML policy provider pointing at "./system-jazn-data.xml". When we install an EAR that utilizes ADF security, the system-jazn-data.xml file in the mserver directory is updated during deployment, but the one in the aserver directory is not. Each recycle of a managed server appears to replace the contents of the system-jazn-data.xml file in the mserver directory.
    Also, when I bring up Fusion Middleware Control and view the roles/policies of the ear, none are displayed in the UI. If I add a role/policy using Fusion Middleware Control, the new role/policy is placed in the system-jazn-data.xml file in the aserver directory, and the contents of the one in the mserver directory is completely replaced with the same contents as the one in the asever directory, overwriting the ones added during the deployment.

  • How to do Credential and Policy migration in 10g?

    Hi, I installed BPEL manager 10g on my machine and want to run the embed demos/tutorials. I noticed the demos are using JAZN as identity service but my installation on Weblogic Server does not support it. As a result I couldn't use JDeveloper BPEL UI designer (to add a participant type) since I couldn't find JAZN.com realm and underlying users.
    I found an article regarding how to migrate Credential and Policy to weblogic server:
    http://www.oracle.com/technology/products/jdev/tips/muench/credmig111100/index.html
    Simplified ADF 11g Application Credential and Policy Migration to Standalone WebLogic Servers
    But it is totally different between 11g and 10g.
    How can I do similar job in 10g?

    The way I did it is,
    Created an Execution Mode work repository for the QA purpose and thus only Scenarios & Load Plans were deployed on this QA repo. This had its own Master Repo as well.
    For dev the Dev mode work repo is created where all the interfaces, packages, procedures can be developed or modified as and when required.
    Thus, the testers have access only to the QA environment.
    Otherwise you can assign roles to the users after the installation in the security tab. Give the operator, connect role to the testers.

  • OBIEE 11g - Application role migration from DEV to UAT or to PROD

    Hello All,
    there are blogs which mentioned about application role migration from dev to UAT or Prod..
    Kindly provide the correct path of below two files which we use for application Role migration
    1. system-jazn-data.xml
    2. jps-config.xml
    I have searched these files but noticed there are 3 or 4 files with same name under different paths.
    Kindly help. TIA
    Regards

    if you mess up these files, your system will get corrupted.
    You need to take proper back up and then get it done.
    another way where you can avoid this risk is to manually enter the roles. Creating roles is one time effort unless you keep deleting and creating new roles. If you manually do it you will have more control on migration and you can fix if there an issue easily. Note, the migration of roles does not map the groups to roles . You still have to manually map them.
    OBIEEHOME\user_projects\domains\bifoundation_domain\config\fmwconfig
    1. system-jazn-data.xml
    2. jps-config.xml

  • How does QoS work with WAAS WCCP? What's the interaction between QoS Traffic Classification and WAE Traffic Application Policy?

    How does QoS work with WAAS WCCP? What's the interaction between Router QoS Traffic Classification and WAE Traffic Application Policy?

    By default, WAAS preserves the DSCP marking on intercepted packets.  There is a configuration option to set/override the DSCP value at the global (device), application, and classifier levels.  Currently WAAS provides marking only.  There is no action taken by WAAS based on the DSCP value.
    Regards,
    Zach

  • I'm wanting to migrate certain applications from my MacBook Pro over to my newer Mini, but Migration Assistant doesn't allow doing this by choosing which applications to migrate-how can I pick only certain ones?

    I'm wanting to migrate certain applications from my MacBook Pro over to my newer Mini, but Migration Assistant doesn't allow doing this by choosing which applications to migrate-how can I pick only certain ones?

    You only bought it four months ago, so it's still under warrantly.
    Call Applecare or call your nearest Applestore to make an appointment. Tell them your mac has serious technical issues, describe them shortly.

  • How to bind  "application policy"  to Security Module

    hi,
    1. Oracle 11.2g, WLS 10.3.5. OES 11.1.1.1.5 clean install of all components.
    2. Created OES Policy after reading the documentation
    Oracle® Fusion Middleware Administrator's Guide for Oracle Entitlements Server
    11g Release 1 (11.1.1)
    Part Number E14096-04
    3. PROBLEM/QUESTION [8.2.2 Binding an Application to a Security Module]
    After creating a Security Module in System Configuration tab from the Home area, cannot bind application-policy to this SM ???!!!
    Here are steps:
    8.2.2 Binding an Application to a Security Module
    To bind an Application to a Security Module, proceed as follows.
    Select the System Configuration tab from the Home area.
    Double-click Security Modules in the Navigation Panel.+ <<<<< problem is here, the OES ADM console does not have this ??!!
    Alternately, right-click Security Modules and select Open. The Security Modules page is displayed.
    Select the name of the Security Module definition from the table.
    Click Add in the Bound to Applications table., either cor select Add from the Actions menu.
    Alternately, select Add from the Bound to Applications Actions menu. The Add Applications dialog displays.
    Enter a search string in the text box and click the arrow to search.
    Alternately, click the arrow with no search string to return all available Applications.
    Select one or more applications from the list returned.
    Click Add.

    Alternately, right-click Security Modules and select Open. The Security Modules page is displayed. <<<< yes SM is there
    Select the name of the Security Module definition from the table. <<<<< yes SM is selected from the table
    Click Add in the Bound to Applications table., either cor select Add from the Actions menu. <<<<< NO "Add in the Bound to Applications table" !!!!!!! please assist
    Alternately, select Add from the Bound to Applications Actions menu. The Add Applications dialog displays.

  • Afaria Application Policy for Agentry - not the latest version

    Hi,
    we are installing the Agentry Application as a standard application on the iPhones. We have created an application policy, which is linked to a group. The application is installed correct, but the version of the application is not the latest. The latest version is the 6.0.44.1. This is what Afaria shows in the details of the application policy. But the policy always installs the 6.0.42 version.
    Did you hade a similar issue as well?
    Regards,
    Christian
    Message was edited by: Michael Appleby

    You may need to do it the same way that you can get Mountain Lion. Call the Apple online store and tell them that you wish to buy Mt Lion Server. The online store should be able to sell you Mt Lion Server and in a day or two another part of Apple will e-mail you the password for a locked PDF. And then a second e-mail with the locked PDF, that you use the password to open and retrieve your redemption code for Mt. Lion Server. You can use the redemption code with the Mac App Store.

  • Application Credential and Policy Migration

    Hi,
    I'm trying to accomplish this: http://www.oracle.com/technology/products/jdev/tips/muench/credmig111100/index.html
    What is APPWORKSPACEDIR? The document does not provide any info how it's defined. Is this the folder under AdminServer/tmp/_WL_user/?
    If so, there is no src folder under application folder...
    In general, I find ADF/WLS documentation very very VERY incomplete :-(

    Well in this case I'm think that APPWORKSPACEDIR refers to your existing JDeveloper application directory. You may want to ask the JDev forum:
    JDeveloper and ADF
    In general, I think the teams are very open to constructive feedback on what specifically needs to be improved with the documentation.
    [email protected] is the WLS feedback. For JDev, I would contact some of the bloggers like Shay:
    http://blogs.oracle.com/shay/
    Good luck.

  • How-To: server-based... application policy management

    Hi all,
    I am at the end of me rope here.
    I have a system with an intended client-server architecture - although the server component is not developed/functioning yet.
    I have partially integrated JAAS into the system as I need authentication and authorization within my application. It is currently built into the client component for testing purposes, but should be distributed over both at deployemnt time.
    And hence my problem: I have developed a database implementation of both the Policy and Configuration classes. These are a part of the server component. I do not want any configuration to be called for on the client -side i.e. preconfiguring of policy files and permissions. I just want an instance of the policy and configuration to be 'downloaded' and installed on the client prior to the security manager being switched on and authentication. This is of course given that runtime authorization occurs on the client.
    I would really love to do all this the Java advocated way. I have tried to make sense of Sun Directory Server and Access Manager.... but I am wondering if this is overkill; there is so much talk of what these products can do, but it leaves me with no idea if they are appropriate for the 'little' I want done.
    The last thing I want to do is implement my own solution... something I have already researched with a combination of web services, JAX-RPC and SOAP... but it's a big unnecassary headache.
    Please advise... anyone.
    See also http://forum.java.sun.com/thread.jspa?threadID=576476&tstart=0

    Ok,
    I solved the problems I described earlier and I have a fully funtional policy implementation. The main features are:
    (1) It is distributed to accomodate client-server architectures
    (2) Transmitted over the wire with an arbitrary protocol
    (3) Is populated from a database
    (4) Fully supports JAAS
    There are a few glitches with regard to refresh; this maybe due to the fact that my client-server comms is SOAP based.
    I can't post code due to contract blah blah... but the least I can do is help troubleshoot; since completing it I can see how stupid my mistakes were and would like to help others avoid the same 'I'M GONNA SCREW YOU PROJECT SCHEDULE' pitfalls that I did ran into.
    One word of advice I offer now is to ignore the fact that only getPermissions(CodeSource cs) andrefresh() are abstract - reimplement what ever you need to - it's clear the new PolicyFile implementation has abandoned some/alot of the concepts of the pre 1.4 version and hence the interface is a bit misleading.
    Kind regards,
    Darren B

  • Can 9.2 HFM/Planning applications be migrated to 11.1.2

    Hi,
    Can the HFM and Planning applications on 9.2 version be migrated into a newly installed 11.1.2 Hypeiron environment? The reason for not doing a in-place upgrade has been to do the clean install and optimize the intall and configurations..
    Any help would be appreciated...
    - Anu

    JohnGoodwin wrote:
    One option is to create a blank classic app in 11.1.2.2, copy the relational database from 11.1.1.3 to 11.1.2.2 then upgrade the planning app, once upgraded convert to EPMA.
    Cheers
    John
    http://john-goodwin.blogspot.com/
    I have taken backup from 11.1.1.3(sql server 2005) and restored it into 11.1.2.2(sql server 2008 R2).
    I followed your blog and upgraded planning application too.
    but i didn't see any change in the planning application. How can we get forms, rules, scripts from 11.1.1.3 version to 11.1.2.2?
    In epm_install_1112200 doc, we have about about upgrade, can you briefly explain us about this upgrade concept?
    Thanks,
    mady
    Edited by: mady on Jan 12, 2013 7:33 PM

  • Migrate planning application without migrating Provisioning information

    Hi,
    Is it possible to migrate just Planning application and other Hyperion objects without provisioning information. which we can assign as per new requirement.
    will it work or need to migrate provisioning information first then we can change later as per our requirement.
    This time MSAD Provider should connect with different host.
    Please advice.

    I understand that planning application contain provisioning information of Planning application in shared services and should be migrated along with Planning.
    My question was:
    Is it possible to migrate planning application only and then i should able to either re provisioning everything from scratch for migrated planning as we had bad experience with existing provisioning.
    though i have seen some option of update/delete in CSSImport (importexport.properties)
    please advice.

  • Application content migration manually from EP 6.0 to EP 7.0 EHP1

    Hi All,
    We have EP 6.0 portal system running on windows 2003 server and oracle .We have another EP7.0 EHP1 portal system installed on AIX 6.1 and oracle. The present portal is connected to BW, CRM and ECC systems and
    also lot of customization is done in NWDI. The customer is requesting for manual migration of Iviews, user, roles, customized applications etc. from EP6.0 to EP7.0 EHP1.
    Is it possible to go ahead and do?
    Any implication are there?
    Please provide your valuable suggestions and feedback in this regards.
    Thanks & regards,
    Vidyadhar K

    Hi,
    I don't think so it is possible because version of both the portals are different. So, might be you can face some issue.
    Thanks
    Sunny

  • Oracle Application 10g migration

    Hi,
    Currently we are using 10g Application server. I just want to create the roadmap for our product. So I want to know, whether we can migrate 10g forms/reports on 11g forms/reports and deploy on Oracle application server 11g?
    Oracle application server 11g, supports to forms and reports server?
    Regards,
    Jaymala

    Yes you will be able to do that (migrate/upgrade your 10g Forms & Reports applications to 11g Forms & Reports) and deploy on Oracle Fusion Middleware 11g.
    Note that FMW 11g release having Forms & Reports is not yet out. I am not sure about the exact time frame but it is expected to be out sometime this calendar year.
    Thanks
    Shail

  • Oracle Application Hardware Migration using Acronis

    Hi,
    I’m an Oracle Applications DBA and would really appreciate some other DBA input on the following question.
    I have a customer that uses Acronis to backup,restore and image Oracle Applications. Their current instance (11.5.6) is running on really old kit. As a test the windows guys have restored oracle Apps onto a brand new server and started the services. This has worked, which is to be expected (that’s what Acronis does).
    My question is “Does Oracle support this method of hardware migration using Acronis”. My understanding is that for hw migration either autoconfig or export+import were the only Supported options.
    I know that 11.5.6 is unsupported and come to mention it so is their OS and the fact that they use images as clones. This aside I would be interested in other opinions on weather Acronis is strictly for restoring/imaging a duff system or in fact weather it would be supported by Oracle for Hardware migration. ( With some reasoning please).
    I have checked metalink with only one hit (643276.992) but this does not directly answer my question
    Thanks in advance to anyone who can reply to this.
    Cheers
    James

    Yes you will be able to do that (migrate/upgrade your 10g Forms & Reports applications to 11g Forms & Reports) and deploy on Oracle Fusion Middleware 11g.
    Note that FMW 11g release having Forms & Reports is not yet out. I am not sure about the exact time frame but it is expected to be out sometime this calendar year.
    Thanks
    Shail

Maybe you are looking for

  • Slate 500 Windows install problem

    I format my HP Slate 500 64 GB SSD.  Now i select Disk 0 Partition 2 ( 59.2 GB free space. Primary) but is not start and this message in the screen   " setup was unable to create a new system partition or locate an existing system partition. See the

  • I can't get iTunes to open on my computer

    I got a new computer recently and i need to transfer my itunes (music,apps,pics,etc) but my old computer is very buggy and wont open itunes at all. Ive tried restarting and plugging my ipod into it but nothings worked. PLEASE HELP ME!!!!!!!!!! thanks

  • Migration.  Just some comments.

    Ok, this is a dupe post.  Admins, if you want to pull this go ahead.  But, some things have to be out in the open before someone thinks this is the mother of all short cuts to EP6 SP9. I ranted: Swell, Everyone read the docs on this? Hold on, it's go

  • Video problems in DVD SP burned DVDs - FCP frame rate issue?

    Please help! We have a 99 minute feature project that we shot in 24p (NOT 24pa) on a DVX100, imported the footage into FCP in 29.97fps, and edited in a 24fps sequence timeline. When we exported the sequence through compressor (DVD High Quality 120min

  • Captivate 6 to 5.5 Backwards Compatibility

    Hello, I've searched under my subject line (in a few different derivations) and can't seem to find a clear answer. What (if any) are the backwards compatibility options from Captivate 6 to 5.5? I know there are a lot of new features in 6, but if I de