Deactivating Integration With Personnel Administration
HI All,
I need to deactivate the Integration With Personnel Administration for some reason. But i am not sure whether current workflow which related to getting user companycode,getting user Position,
getting user Superior and org assignment are affected since most of the workflow require thease information.
My understanding of deactivation would be that the employess cannot change position are assign them to the new position but current mapping will remain same.
Also WS01000014 and WS01200136 are currently deactivated.
Can anyone please let know the impact on existing workflow if i deactivate the Integration With Personnel Administration.
Thanks in advance..
Thanks and Kind Regards,
Basheer
Hi,<br>
You can do it but you need to check the WF logics if there is any customized logic written.
Deactivate the OM- PA Integration
Maintain IT1008 and position - holder relationships for all positions.
Maintain SAP user id data in OM (Read document in help.sap)
Run the RHINTE Reports at regular intervals (using jobs).
Let me know if I have missed any points and provide fdbk.
Good luck<br><br>
Thanks,
Amosha
<br><br>"Known is a drop & unknown is an OCEAN!"
Similar Messages
-
Change Management integration with Project Administration
Hi,
Could someone help me understand the integration of Change Management and Project Administration within Solution Manager, pls? I would be very grateful for a sample process to demonstrate the complete workflow. Eg.
1) Support Messages is created
2) Change Request is created from Support Message
3) A project is created for the Change Request
4) ??? What about the blueprint, configuration, testing, learning features? How do they integrate with CHARM?
x) at the end, how does the project created for the Change Request integrate with the project that documents the business process? I mean, if the actual processes of an R/3 system are documented in a SolMan project, and a Change Request is processed, how do I modify the general project with the change project?
This is absolutely not clear either in the on-line help or in the book "SAP Solution Manager"
Thanks in advance,
AdamHi,
> 1) Support Messages is created
https://websmp206.sap-ag.de/~sapidb/011000358700000035912008E.sim
> 2) Change Request is created from Support Message
https://websmp206.sap-ag.de/~sapidb/011000358700002931432006E.sim
> 3) A project is created for the Change Request
https://websmp206.sap-ag.de/~sapidb/011000358700005479242006E.sim
> 4) ??? What about the blueprint, configuration, testing, learning features? How do they integrate with CHARM?
> x) at the end, how does the project created for the Change Request integrate with the project that documents the business process? I mean, if the actual processes of an R/3 system are documented in a SolMan project, and a Change Request is processed, how do I modify the general project with the change project?
I am not quite clear what exactly is your requirement here. Change Request Management and Project management are different in their ways. You can handle the documenation tasks through your project management and ChaRM is used for the changes.
https://websmp206.sap-ag.de/~sapidb/011000358700000059722008E
https://websmp206.sap-ag.de/~sapidb/011000358700006819152005E
Rajeev -
HELPP Changes in OM done directly should update in Personnel Administration
Hello Gurus,
My client guy did changes in OM by directly moving persons into different positions and work flow doesnt work now. So is there any report i have to run so as to update the changes from OM to PA.
Thanks,
Raj..Hi Soniya,
Please check if the OM to PA integration is set in the table T77s0. You can check this through the transaction sm30.
Or you can use the img node Organizational Management -> Integration -> Integration with Personnel Administration -> Set Up Integration with Personnel Administration.
Also try using the report RHINTE10 and RHINTE30 to correct the entries in PA.
You can execute these from transaction se38.
Regards,
Santosh -
Integration between organizational management and personnel administration
Dear Sirs/Madams,
I am trying to integrate organizational management and personnel administration to have see positions, jobs, and units which are assigned in PPOME. I made some configuration in T77SO and correct the needed integration in PLOGI position and especially for ORGA.
Nevertheless, the integration problems did not solve. Now, I was wondering if you would mind helping me in this case.
Thanks for your considerations,
Kind Regards,
Mohammad Hassan Salmani.To set up/fix full integration between PA and PD, run below reports in this sequence:
1. RHINTE00 – Transfer PA records into PD positions –batch
2. RHINTE20 – Create OM objects in PA tables – Online
3. RHINTE30 – Bulk update of infotype 0001
4. RHINTECHECK – Program to check PA to PD
5. RHCHECKV - Checks all inverse relationships
Also,It is important to realize that in PA, there are tables that contain objects from OM, i.e. for those items displayed on infotype 0001 Organizational Assignment. Sometimes the tables can get ‘out of step’ with those in PD – table HRP1000. Check those as well. The tables are:
T513,T513S Object type C (Job)
T528B,T528T Object types S (Position) and A (Work center)
T527X Object type O (Organizational unit)
Regards,
Mukesh -
Integration infotype 0022 - 7404 (Personnel Administration and Talent Mngm)
Hi
Do you have any idea how to integrate infotype 0022 from PA - Education with infotype 7404 Education from the new Talent Management in the Portal?
The 7404 is integrated with the Education infotype of E-recruitment, but these two function on the Portal.
The same integration question applies for IT 23 Previous Employers from PA in relationship with the infotype of TM. The Previous employers IT from E-recruitment is also integrated with the corresponding one of TM portal.
I found no information about the backend PA and the Portal TM integration.
It is kind of strange that SAP had not thought of such a basic thing.
Some months ago there was no connection made by sap between these two from what I see in this forum thread of Deepak Mahar Link: [Education in SAP;
Thanks,
AdrianaHi All
1. As off there is no plan to integrate infotype 22 and 23 to Talent management infotypes.
2. You need to write code where function HRTMC_WRITE_POTENTIAL can help.
Ask your developer to refert to HRTMC_WRITE_POTENTIAL and write similar function for 7403 and 7404.
Copy the function mentioned above and change the respective structures and tables for 7404 from 7408. Make sure while calling method "insert_infty" and "modify_infty" you pass hrtnnnn_tab = lt_hrtnnnn as changing parameter where hrt7404 is the type of lt_hrtnnnn.
Please note that 7404 doesn't allow dialog update hence you may have issues even after writing codes.BTW same goes for 7403 and IT22 integration too.
thank you
barin
Edited by: Barin Desai on Nov 1, 2011 10:53 AM
Edited by: Barin Desai on Nov 1, 2011 10:58 AM -
ACS Express integration with Active Directory
Hello,
I have ACS Express version 5.0.1 installed on Cisco ADE; I'm trying to get it integreated with an Active Directory without sucess.
I did packet captures on the ASA that is in between and I can see communication going thru just fine. I ran a diagnostic on the ACS express and got this:
DIAGNOSTIC USING THE IP ADDRESS OF THE DOMAIN CONTROLLER:
/* Style Definitions */
table.MsoNormalTable
{mso-style-name:"Tabla normal";
mso-tstyle-rowband-size:0;
mso-tstyle-colband-size:0;
mso-style-noshow:yes;
mso-style-priority:99;
mso-style-qformat:yes;
mso-style-parent:"";
mso-padding-alt:0cm 5.4pt 0cm 5.4pt;
mso-para-margin:0cm;
mso-para-margin-bottom:.0001pt;
mso-pagination:widow-orphan;
font-size:11.0pt;
font-family:"Calibri","sans-serif";
mso-ascii-font-family:Calibri;
mso-ascii-theme-font:minor-latin;
mso-fareast-font-family:"Times New Roman";
mso-fareast-theme-font:minor-fareast;
mso-hansi-font-family:Calibri;
mso-hansi-theme-font:minor-latin;
mso-bidi-font-family:"Times New Roman";
mso-bidi-theme-font:minor-bidi;}
Output of AD Domain Diagnostics:
IP Diagnostics
Local host name: he-zfm-acs-01
Local IP Address: 172.31.67.10
Not found in DNS!Make sure it is in Reverse Lookup Zone.
FQDN host name:he-zfm-acs-01.clarocr.americamovil.ca1
Domain Diagnostics:
Domain: 172.24.2.93
Subnet site:
WARNING! Unable to locate computer's subnet site in Active Directory.
Ask your Active Directory administrator to add this computer's subnet
to the appropriate site.
DNS query for: _ldap._tcp.172.24.2.93
Found no SRV records!
Computer Account Diagnostics
Not joined to any domain
AD Agent Process Status: Not joined to any domain
DIAGNOSTIC USING THE AD REALM:
/* Style Definitions */
table.MsoNormalTable
{mso-style-name:"Tabla normal";
mso-tstyle-rowband-size:0;
mso-tstyle-colband-size:0;
mso-style-noshow:yes;
mso-style-priority:99;
mso-style-qformat:yes;
mso-style-parent:"";
mso-padding-alt:0cm 5.4pt 0cm 5.4pt;
mso-para-margin:0cm;
mso-para-margin-bottom:.0001pt;
mso-pagination:widow-orphan;
font-size:11.0pt;
font-family:"Calibri","sans-serif";
mso-ascii-font-family:Calibri;
mso-ascii-theme-font:minor-latin;
mso-fareast-font-family:"Times New Roman";
mso-fareast-theme-font:minor-fareast;
mso-hansi-font-family:Calibri;
mso-hansi-theme-font:minor-latin;
mso-bidi-font-family:"Times New Roman";
mso-bidi-theme-font:minor-bidi;}
Output of AD Domain Diagnostics:
IP Diagnostics
Local host name: he-zfm-acs-01
Local IP Address: 172.31.67.10
FQDN host name:he-zfm-acs-02.clarocr.americamovil.ca1
Domain Diagnostics:
Domain: CLAROCR.AMERICAMOVIL.CA1
Subnet site: TELECOM
DNS query for: _ldap._tcp.CLAROCR.AMERICAMOVIL.CA1
Found SRV records:
rom-pro-dc-03.clarocr.americamovil.ca1:389
Testing Active Directory connectivity:
Domain Controller: rom-pro-dc-03.clarocr.americamovil.ca1
ldap: 389/tcp - good
ldap: 389/udp - good
smb: 445/tcp - good
kdc: 88/tcp - good
kpasswd: 464/tcp - good
ntp: 123/udp - good
Domain Controller: rom-pro-dc-03.clarocr.americamovil.ca1:389
Domain controller type: Windows 2003
Domain Name: CLAROCR.AMERICAMOVIL.CA1
isGlobalCatalogReady: TRUE
domainFunctionality:
forestFunctionality: 0 = (DS_BEHAVIOR_WIN2000)
domainControllerFunctionality: 2 = (DS_BEHAVIOR_WIN2003)
Forest Name: AMERICAMOVIL.CA1
DNS query for: _gc._tcp.AMERICAMOVIL.CA1
Testing Active Directory connectivity:
Global Catalog: rom-des-dc-01.desa1sv.americamovil.ca1
gc: 3268/tcp - timeout
No TCP LDAP response, giving up on rom-des-dc-01.desa1sv.americamovil.ca1
Global Catalog: rom-amv-dc-02.americamovil.ca1
gc: 3268/tcp - good
Global Catalog: rom-tlc-dc-01.telecom.americamovil.ca1
gc: 3268/tcp - good
Global Catalog: rom-pro-dc-03.clarocr.americamovil.ca1
gc: 3268/tcp - good
Global Catalog: rom-tlc-dc-02.telecom.americamovil.ca1
gc: 3268/tcp - good
Global Catalog: rom-amv-dc-01.americamovil.ca1
gc: 3268/tcp - good
Domain Controller: rom-amv-dc-02.americamovil.ca1:3268
Domain controller type: Windows 2003
Domain Name: AMERICAMOVIL.CA1
isGlobalCatalogReady: TRUE
domainFunctionality:
forestFunctionality: 0 = (DS_BEHAVIOR_WIN2000)
domainControllerFunctionality: 2 = (DS_BEHAVIOR_WIN2003)
Domain Controller: rom-tlc-dc-01.telecom.americamovil.ca1:3268
Domain controller type: Windows 2003
Domain Name: TELECOM.AMERICAMOVIL.CA1
isGlobalCatalogReady: TRUE
domainFunctionality:
forestFunctionality: 0 = (DS_BEHAVIOR_WIN2000)
domainControllerFunctionality: 2 = (DS_BEHAVIOR_WIN2003)
Domain Controller: rom-pro-dc-03.clarocr.americamovil.ca1:3268
Domain controller type: Windows 2003
Domain Name: CLAROCR.AMERICAMOVIL.CA1
isGlobalCatalogReady: TRUE
domainFunctionality:
forestFunctionality: 0 = (DS_BEHAVIOR_WIN2000)
domainControllerFunctionality: 2 = (DS_BEHAVIOR_WIN2003)
Domain Controller: rom-tlc-dc-02.telecom.americamovil.ca1:3268
Domain controller type: Windows 2003
Domain Name: TELECOM.AMERICAMOVIL.CA1
isGlobalCatalogReady: TRUE
domainFunctionality:
forestFunctionality: 0 = (DS_BEHAVIOR_WIN2000)
domainControllerFunctionality: 2 = (DS_BEHAVIOR_WIN2003)
Domain Controller: rom-amv-dc-01.americamovil.ca1:3268
Domain controller type: Windows 2003
Domain Name: AMERICAMOVIL.CA1
isGlobalCatalogReady: TRUE
domainFunctionality:
forestFunctionality: 0 = (DS_BEHAVIOR_WIN2000)
domainControllerFunctionality: 2 = (DS_BEHAVIOR_WIN2003)
Forest Name: AMERICAMOVIL.CA1
Computer Account Diagnostics
Not joined to any domain
AD Agent Process Status: Not joined to any domainDennis,
TIme in sync on the ACS and AD servers?
Faisal -
IOP 11.1.2.0 integration with Shared Services (User Provisioning)
In the IOP 11.1.2.0 install guide, the Admin and Admin provisioning roles are provisioned through Shared Services.
"Provision Integrated Operational Planning Administrator and Integrated Operational Planning
Provisioning Manager roles for the Integrated Operational Planning instance to the Admin user through
Oracle's Hyperion® Shared Services Console
a. Connect to the Oracle's Hyperion® Shared Services Console; for example, http://
hss_server:hssserver_port/interop.
b. Log in as the administrator.
c. Expand User Directories and Native Directory.
d. Select Users and click Search.
e. Right-click the Admin user and select Provision.
f. Expand Default Application Group.
g. Expand the Integrated Operational Planning instance created.
h. Highlight IOP Administrator and Provisioning Manager.
i. Click the right arrow in the middle of the two windows to select the roles.
j. Click Save, and then click OK."
The users and groups are defined in Shared Services, per the IOP 11.1.2.0 admin guide (p. 144).
Is there an IOP user provisioning example in the shared services user's guide, and which version of the guide would I find that in?
Access priveledges are controlled from the Admin workbench for IOP users, per p.145 of the IOP 11.1.2.00 user's guide.
Thank you.IOP Roles are listed in the 11.1.2 Shared Services User and Role Security Guide, on page 158:
Integrated Operational Planning Roles
Table 39 Integrated Operational Planning Roles
Roles Tasks per Role
Provisioning Manager Provisions users and groups with Disclosure Management roles
IOP Administrator Administers Oracle Integrated Operational Planning, Fusion Edition. IOP Administrators can modify models, access
ACL pages, and perform all Integrated Operational Planning tasks
IOP User P erforms Oracle Integrated Operational Planning, Fusion Edition actions as a normal user -
Process flow - Active Directory integration with Enterprise Portal
Hi
I have seen number of documents/forum discussions on integrating Microsoft Active Directory (LDAP) with Enterprise Portal, but unable to find out the process flow for achieving the same.
I have installed Enterprise Portal 6 (SP13) running on Web AS 640 (J2EE Standalone). The UME is currently configured to use Java database. (i.e datasourceconfiguration_database_only.xml)
I intend to proceed as below for integrating with Active Directory and integrate with Windows authentication:
1) Configure UME to use an LDAP Server as Data Source using Config Tool
http://help.sap.com/saphelp_erp2004/helpdata/en/cc/cdd93f130f9115e10000000a155106/frameset.htm
2) Configure Enterprise Portal UME i.e http://<host name>:50000/irj - System Administration - System Configuration - UM Configuration
<b>Should I configure Data Sources & LDAP Server here as I have already configured these using J2EE Config tool (point no.1).</b>
3) Integrate Windows authentication with EP using IISProxy module.
I hope the above will enable me to logon to Portal without supplying username and password once you are logged on to the PC using your Windows user name and password.
Also, any schema updates required to Activie Directory i.e What additional data is stored in A.D.
I would appreciate your guidance on this.
Thanks in advance,
ChanduHi Chandau,
you wanted that some users are not taken into account by the User Management Engine (UME).
This behavior can be established by specifying the
ume.ldap.negative_user_filter property for the LDAP data sources in the data source configuration file. Using this property one can define that all users and accounts that
match the defined conditions are filtered out by the UME API.
A detailed documentation can be found in the SAP Online Help:
http://help.sap.com/saphelp_nw04/helpdata/en/9a/f43541b9cc4c0de10000000a1550b0/
content.htm
In the following example of a data source configuration file for Microsoft Active Directory
Server the attribute userPrincipalName is used as Logon ID of a portal user id (j_user).
Here the user accounts that have one of the following Logon IDs (index_service,
notificator_service and cmadmin_service ) are filtered out.
<dataSources>
</dataSource>
<dataSource id="CORP_LDAP">
<privateSection>
<ume.ldap.negative_user_filter>
userPrincipalName=[index_service,notificator_service,cmadmin_service]
</ume.ldap.negative_user_filter>
</privateSection>
</dataSource>
</dataSources> -
Facing issue when LDAPSync is enabled for OIM-AD integration with SSL enabled
Hi
We are performing LDAPSync for OIM AD real time sync.We have done all configuration as per oracle documentation on LDAPSync for OIM 11gR2 : http://docs.oracle.com/cd/E27559_01/integration.1112/e27123/oid_oim.htm The OIM environment we tested is the latest OIM version OIM 11gR2 PS1 (11.1.2.1.0).
WE have performed LDAPSync enablement on postinstallation of OIM .So we dont have OVD , we have configured libOVD as mentioned in this doc.
We have performed following steps mentioned in this document in our OIM environment.
3.1 Enabling Post installation LDAP Synchronization
3.3 Creating Identity Virtualization Library (libOVD) Adapters and Integrating With Oracle Identity Manager
As attribute like password might be not getting updated in AD from OIM , we have configured SSL enabled integration in LDAP sync as mentioned in above document.
We implemented this step 3.4.1 Enabling SSL Between Identity Virtualization Library (libOVD) and Microsoft Active Directory,
but here it is not properly mentioned that about how to import public key certificate of AD into OIM envirioment for SSL.
We are getting following error message in logs : Looking at logs it looks like the import of AD SSL certificate did not happen properly in OIM environment. But ,we have imported it using keytool and OVD keystore ...please let us know if we are missing any configuration in this process.Above oracle document is not pretty clear on this.
<Dec 7, 2013 12:22:53 AM IST> <Warning> <oracle.ods.virtualization.engine.backend.jndi.LDAP2.BackendJNDI> <OVD-40118> <Could not automatically detect binary attribute list: simple bind failed: 10.88.164.231:636.>
<Dec 7, 2013 12:22:53 AM IST> <Warning> <oracle.ods.virtualization.engine.backend.jndi.LDAP2.JNDIConnectionPool> <OVD-60024> <Connection error: simple bind failed: 10.88.164.231:636.>
<Dec 7, 2013 12:22:53 AM IST> <Error> <oracle.ods.virtualization.engine.backend.jndi.LDAP2.BackendJNDI> <OVD-60143> <[#LDAP2] Unable to create connection to ldap://[10.88.164.231]:636 as null.
javax.naming.CommunicationException: simple bind failed: 10.88.164.231:636 [Root exception is javax.net.ssl.SSLException: java.lang.RuntimeException: Unexpected error: java.security.InvalidAlgorithmParameterException: the trustAnchors parameter must be non-empty]
at com.sun.jndi.ldap.LdapClient.authenticate(LdapClient.java:195)
at com.sun.jndi.ldap.LdapCtx.connect(LdapCtx.java:2720)
at com.sun.jndi.ldap.LdapCtx.<init>(LdapCtx.java:296)
at com.sun.jndi.ldap.LdapCtxFactory.getUsingURL(LdapCtxFactory.java:175)
at com.sun.jndi.ldap.LdapCtxFactory.getUsingURLs(LdapCtxFactory.java:193)
at com.sun.jndi.ldap.LdapCtxFactory.getLdapCtxInstance(LdapCtxFactory.java:136)
at com.sun.jndi.ldap.LdapCtxFactory.getInitialContext(LdapCtxFactory.java:66)
at javax.naming.spi.NamingManager.getInitialContext(NamingManager.java:667)
at javax.naming.InitialContext.getDefaultInitCtx(InitialContext.java:288)
at javax.naming.InitialContext.init(InitialContext.java:223)
at javax.naming.ldap.InitialLdapContext.<init>(InitialLdapContext.java:134)
at oracle.ods.virtualization.engine.backend.jndi.JNDIConnectionPool.createCtx(JNDIConnectionPool.java:463)
at oracle.ods.virtualization.engine.backend.jndi.JNDIConnectionPool.create(JNDIConnectionPool.java:494)
at oracle.ods.virtualization.engine.backend.jndi.JNDIConnectionPool.<init>(JNDIConnectionPool.java:156)
at oracle.ods.virtualization.engine.backend.jndi.RemoteServer.getJNDIConnectionPool(RemoteServer.java:163)
at oracle.ods.virtualization.engine.backend.jndi.BackendJNDI.getLDAPContext(BackendJNDI.java:984)
at oracle.ods.virtualization.engine.backend.jndi.BackendJNDI.getConnection(BackendJNDI.java:927)
at oracle.ods.virtualization.engine.backend.jndi.ConnectionHandle.getHolder(ConnectionHandle.java:415)
at oracle.ods.virtualization.engine.backend.jndi.ConnectionHandle.search(ConnectionHandle.java:250)
at oracle.ods.virtualization.engine.backend.jndi.JNDIEntrySet.initialize(JNDIEntrySet.java:219)
at oracle.ods.virtualization.engine.backend.jndi.BackendJNDI.get(BackendJNDI.java:728)
at oracle.ods.virtualization.engine.chain.Chain.nextGet(Chain.java:303)
at oracle.ods.virtualization.engine.chain.BasePlugin.get(BasePlugin.java:89)
at oracle.ods.virtualization.engine.chain.Chain.nextGet(Chain.java:314)
at oracle.ods.virtualization.engine.chain.BasePlugin.get(BasePlugin.java:89)
at oracle.ods.virtualization.engine.chain.plugins.usermanagement.UserManagement.get(UserManagement.java:742)
at oracle.ods.virtualization.engine.chain.Chain.nextGet(Chain.java:314)
at oracle.ods.virtualization.engine.chain.PluginChain.runGet(PluginChain.java:211)
at oracle.ods.virtualization.engine.chain.PluginManager.runGet(PluginManager.java:351)
at oracle.ods.virtualization.engine.chain.PluginManager.runGet(PluginManager.java:316)
...more
Caused By: javax.net.ssl.SSLException: java.lang.RuntimeException: Unexpected error: java.security.InvalidAlgorithmParameterException: the trustAnchors parameter must be non-empty
at com.sun.net.ssl.internal.ssl.Alerts.getSSLException(Alerts.java:190)
at com.sun.net.ssl.internal.ssl.SSLSocketImpl.fatal(SSLSocketImpl.java:1731)
at com.sun.net.ssl.internal.ssl.SSLSocketImpl.fatal(SSLSocketImpl.java:1692)
at com.sun.net.ssl.internal.ssl.SSLSocketImpl.handleException(SSLSocketImpl.java:1675)
at com.sun.net.ssl.internal.ssl.SSLSocketImpl.handleException(SSLSocketImpl.java:1601)
at com.sun.net.ssl.internal.ssl.AppOutputStream.write(AppOutputStream.java:94)
at java.io.BufferedOutputStream.flushBuffer(BufferedOutputStream.java:65)
at java.io.BufferedOutputStream.flush(BufferedOutputStream.java:123)
at com.sun.jndi.ldap.Connection.writeRequest(Connection.java:414)
at com.sun.jndi.ldap.Connection.writeRequest(Connection.java:387)
at com.sun.jndi.ldap.LdapClient.ldapBind(LdapClient.java:332)
at com.sun.jndi.ldap.LdapClient.authenticate(LdapClient.java:190)
at com.sun.jndi.ldap.LdapCtx.connect(LdapCtx.java:2720)
at com.sun.jndi.ldap.LdapCtx.<init>(LdapCtx.java:296)
at com.sun.jndi.ldap.LdapCtxFactory.getUsingURL(LdapCtxFactory.java:175)
at com.sun.jndi.ldap.LdapCtxFactory.getUsingURLs(LdapCtxFactory.java:193)
at com.sun.jndi.ldap.LdapCtxFactory.getLdapCtxInstance(LdapCtxFactory.java:136)
at com.sun.jndi.ldap.LdapCtxFactory.getInitialContext(LdapCtxFactory.java:66)
at javax.naming.spi.NamingManager.getInitialContext(NamingManager.java:667)
at javax.naming.InitialContext.getDefaultInitCtx(InitialContext.java:288)
at javax.naming.InitialContext.init(InitialContext.java:223)
at javax.naming.ldap.InitialLdapContext.<init>(InitialLdapContext.java:134)
at oracle.ods.virtualization.engine.backend.jndi.JNDIConnectionPool.createCtx(JNDIConnectionPool.java:463)
at oracle.ods.virtualization.engine.backend.jndi.JNDIConnectionPool.create(JNDIConnectionPool.java:494)
at oracle.ods.virtualization.engine.backend.jndi.JNDIConnectionPool.<init>(JNDIConnectionPool.java:156)
at oracle.ods.virtualization.engine.backend.jndi.RemoteServer.getJNDIConnectionPool(RemoteServer.java:163)
at oracle.ods.virtualization.engine.backend.jndi.BackendJNDI.getLDAPContext(BackendJNDI.java:984)
at oracle.ods.virtualization.engine.backend.jndi.BackendJNDI.getConnection(BackendJNDI.java:927)
...more
Caused By: java.lang.RuntimeException: Unexpected error: java.security.InvalidAlgorithmParameterException: the trustAnchors parameter must be non-empty
at sun.security.validator.PKIXValidator.<init>(PKIXValidator.java:57)
at sun.security.validator.Validator.getInstance(Validator.java:161)
at com.sun.net.ssl.internal.ssl.X509TrustManagerImpl.getValidator(X509TrustManagerImpl.java:108)
at com.sun.net.ssl.internal.ssl.X509TrustManagerImpl.checkServerTrusted(X509TrustManagerImpl.java:204)
at oracle.ods.virtualization.engine.util.OVDTrustManager.checkServerTrusted(OVDTrustManager.java:99)
at com.sun.net.ssl.internal.ssl.ClientHandshaker.serverCertificate(ClientHandshaker.java:1198)
at com.sun.net.ssl.internal.ssl.ClientHandshaker.processMessage(ClientHandshaker.java:136)
at com.sun.net.ssl.internal.ssl.Handshaker.processLoop(Handshaker.java:593)
at com.sun.net.ssl.internal.ssl.Handshaker.process_record(Handshaker.java:529)
at com.sun.net.ssl.internal.ssl.SSLSocketImpl.readRecord(SSLSocketImpl.java:925)
at com.sun.net.ssl.internal.ssl.SSLSocketImpl.performInitialHandshake(SSLSocketImpl.java:1170)
at com.sun.net.ssl.internal.ssl.SSLSocketImpl.writeRecord(SSLSocketImpl.java:637)
at com.sun.net.ssl.internal.ssl.AppOutputStream.write(AppOutputStream.java:89)
at java.io.BufferedOutputStream.flushBuffer(BufferedOutputStream.java:65)
Let us know for any helpful pointers on this
Thanks in advance,
RPB25Use the steps given below to perform import public key certificate of AD into OIM envirioment for SSL
Obtain the AD Certificates from the AD Administrator.
Copy the AD Certificates to the directory /jrockit-jdk1.6.0_20/jre/lib/security
Run the following command to import all the certificates
/jrockit-jdk1.6.0_20/bin/keytool -import -alias <provide_alias> -file <file-name> -keystorecacerts -storepasschangeit
4. The CA certificates are now present in the trust store. -
[Fwd: Re: Integration with CM Systems ...]
-------- Original Message --------
Subject: Re: Integration with CM Systems ...
Date: Thu, 10 Aug 2000 15:47:21 -0600
From: Cindy Eldenburg <[email protected]>
Organization: BEA Systems, Inc.
Newsgroups: weblogic.developer.interest.personalization
References: <398f3c55$[email protected]>
Prashanth,
The are a lot of differences in what the Documentum does as compared to
Interwoven Teamsite. Comparing these items is like comparing apples and
oranges.
Normally in Teamsite, during the document capture process, a Teamsite
user
categorizes documents by specifying the documents' metadata attributes
using
Teamsite templates. Once the documents are captured, the Interwoven
OpenDeploy
workflow mechanism is used to publish the content to the WLCS database.
Unlike Interwoven Teamsite, Documentum products manage the metadata and
documents in their own repositories. Thus, with this integration, WLCS
queries
the Documentum system at runtime via a specialized JDBC driver supplied
by
Documentum. Once the Documentum user captures a document and tags it
with
metadata attributes, the document may be immediately available to WLCS
(depending on administrative options in Documentum, such as whether
staging is
involved).
Please contact your sales person for a more detailed overview of what
these two
products do and how they interface to WLPS.
Cindy Eldenburg
Prashanth A wrote:
Can anyone explain to me clearly what does Weblogic mean when it says it
integrated with Interwoven and Documentum. Is there any difference in the
way it interacts with Interwoven as compared to Documentum. As in a run-time
interaction with Documentum whereas a static integration with InterwovenPrashanth,
The are a lot of differences in what the Documentum does as compared to
Interwoven Teamsite. Comparing these items is like comparing apples and
oranges.
Normally in Teamsite, during the document capture process, a Teamsite
user
categorizes documents by specifying the documents' metadata attributes
using
Teamsite templates. Once the documents are captured, the Interwoven
OpenDeploy
workflow mechanism is used to publish the content to the WLCS database.
Unlike Interwoven Teamsite, Documentum products manage the metadata and
documents in their own repositories. Thus, with this integration, WLCS
queries
the Documentum system at runtime via a specialized JDBC driver supplied
by
Documentum. Once the Documentum user captures a document and tags it
with
metadata attributes, the document may be immediately available to WLCS
(depending on administrative options in Documentum, such as whether
staging is
involved).
Please contact your sales person for a more detailed overview of what
these two
products do and how they interface to WLPS.
Cindy Eldenburg
Prashanth A wrote:
Can anyone explain to me clearly what does Weblogic mean when it says it
integrated with Interwoven and Documentum. Is there any difference in the
way it interacts with Interwoven as compared to Documentum. As in a run-time
interaction with Documentum whereas a static integration with Interwoven -
E-Business Suite Integration with Oracle Business Intelligence
Hi,
To integrate E-Business Suite with Oracle Business Intelligence I have done all the configurations as specified in DocId. *552735.1* of Metalink. I have tested the configurations by logging in from EBS and navigating to OBIEE Presentation Services. I'm able to navigate with no errors but not able to view Subject Areas in the Answers link. I'm testing this with 'Administrator' user. When I directly login to Presentation Serivices with the Administrator user I'm able to see the Subject Areas.
Can anyone have idea what is the problem?
Thanks in Advance,Hi,
Think I spotted the problem - probably specific to OBIA 7.9.5.
There is no "Authorization" initialization block: in previous incarnations (e.g. OBIA 7.9.4 and earlier I guess) there was a FndGetResp intialization block that assigned a value to the OBIEE "GROUP" system variable.
So I did the following and now I'm getting Subject Areas and Answers answers, but Dashboards still not working for me - maybe another issue.
1. Create system variable GROUP, temporarily with initialization block "Authentication"
2. Create initialization block "EBS Responsibility to Group" with query (note I've modified based on new session variable name RESP_ID goes to OLTP_EBS_RESP_ID in 7.9.5):
SELECT RESPONSIBILITY_KEY
FROM FND_RESPONSIBILITY
WHERE RESPONSIBILITY_ID = 'valueof(NQ_SESSION.OLTP_EBS_RESP_ID)'
Set the execution precendence to include EBS Security Context and EBS Single Sign-On Integration
NB: Had to create dummy variable GROUP_TMP for the "OK" button to come up, will replace that with real GROUP in next steps
3. Go back and edit System variable GROUP and change initialization block to EBS Responsibility to Group
4. Go back and edit initialization block EBS Responsibility to Group and remove variable GROUP_TMP
5. Created an OBIEE Group with name = responsibility key e.g. for my "SBA Administrator" responsibility, key = "SBA_ADMIN_KEY", so I created group named "SBA_ADMIN_KEY"
6. Made your new group (e.g. SBA_ADMIN_KEY) a member of the Administrators Group
7. Copy across rpd and restart sa / saw
Still awaiting response from Oracle Support ... so no guarantees this is correct and no guarantees that it won't break something else that Oracle suggests later!
Regards,
Gareth -
Dispute Case Integration with FI-AR
Hi all,
Does anyone know whether there is a standard scenario to be able to create a dispute case in the Interaction Centre and for this to transfer to FI-AR or FSCM. In the documentation it seems to indicate that this is only available with FI-CA.
PaulHi,
Thank you very mutch for the information , I have check no 1 and that is OK, regarding number 2, I would like to do some settings in our IDES environement to try some features, but there the "Integration with Contract Accounting" is set, as I read this can not be deactivated, is there any meens for this.... please advice in that case.
Reagarding the last issue, we are not using Agency Business and SRM functionality, hope that will minor the non working part. Thy do not need contract agreement either.
BR
Eli
There are a few things you have to do, if you want to use FI-AR instead of FI-CA.
1. Replicate BP in CRM to customer in ERP. Set up FI-AR as active accounting in IMG -> CRM -> Master Data -> Business Partner -> Business Agreement -> Define Basic Settings.
2. Deactivate feature ACC_FICA (Integration with Contract Accounting) in Billing engine via IMG -> CRM -> Billing -> Configure Application.
You should note that lot of Leasing functionality with CRM releases higher than 5.0 are based on FI-CA as the active accouting system. These may not work if you use FI-AR. -
MeetingPlace Video Integration with 3515MCU problem
Hi,
I am trying to setup MeetingPlace Video Integration with a Cisco 3515 MCU and cannot get it to work. The eventlog for MeetingPlace Gateway is giving me errors about the initialization problems. A couple of such errors are:
MPAgent (0x0150) Warning: Conference technology provider initialization failed (0x80040201). err=1
MPVidSvc MPVideo 11:05:52-> CMcuController::processCmdRegAuthorize() Register as administrator failed. UNregistering....
MPVidSvc MPVideo 11:06:02-> CMcuController::uninitialize() Uninitializing CMcuController.......
Both MeetingPlace and MCU conferencing are working as they should, but I can't get the Video Integration working. From what I can tell by these messages, MeetingPlace cannot talk to the MCU to administer conferences. I have setup and configured a user on the MCU for MeetingPlace to use.
Has anyone got MeetingPlace working with a 3515 MCU?
Thanks,
Richard.Richard,
I'm having the same problem but with MCU 3540. This problem begin occur after I change the service number 70. My scenario is 2 sites. Each site have 1 cluster?s CCM, 1 MCU?s 3540 and the main site I have 1 MP system with 1 MP IP gateway and web conference in the same server. What the version of MP and MCU you are using ? I'm using MP V 5.3.333.0 and MCU V 4.2.10. -
Table entries for Personnel administration and organisation management
Hi ,
For a functional consultant do we need to remember the table entries where the employee infotypes saved or where the table entries is useful as far as Personnel administration and organisation management is concerned.....
and one more thing how to create a custom Infotype (employee) detail documentation required ...
keep me posted
Thankshi,
it is really helpful if you rember the table name which holds the information about the infotypes
table starting with <b>PA</b> contains all the personnel information data
like <b>PA0001</b> holds the information of<b> infoty0001</b>
similary you can check for other info types
and hr haster table like<b> HRP1000</b> or<b> HRP1001</b> hold all the other hr objects including your personnel objects as well as organizational related objects
<b>infotype numbers</b>
Four digit number nnnn
Unique identification
<b>9000 to 9999 reserved for customer infotypes</b>
<b>naming convention
0000 to 0999 HR Master data / Applicant data
1000 to 1999 Organizational Management
2000 to 2999 Time data
4000 to 4999 Applicant data
9000 to 9999 Customer defined</b>
defination of infotypes
<b>Each infotype nnnn requires at least two structures and one table</b>:
<b>Structure PSnnnn</b>
Structure PSnnnn contains all of the infotype data fields.
<b>Structure Pnnnn</b>
Structure Pnnnn contains infotype key fields and all of the data fields
from structure PSnnnn .
<b>Transparent table</b> PAnnnn and/or transparent table PBnnnn
<b>infotype module pool</b>
A module pool should be used with each infotype. This module pool is the main program for the maintenance interface for the info type.
The name of the program is MPnnnn00. Where P stands for Human Resources (personnel) and nnnn is the four-digit info type number.
Transparent table PAnnnn is required if you want to use an infotype within Personnel Administration.
If you want to use an infotype within Recruitment, transparent table PBnnnn is required.
In accordance with the distribution of infotype name ranges, objects P9nnn , PS9nnn , PA9nnn and PB9nnn are assigned to the customer name range.
<b>infotype screen</b>
An initial screen
A single screen
A list screen
<b>Initial screen</b> is used as technical interface
Screen 1000 is used for all info types
Processed in background and not displayed
Performs general initialization procedures
<b>A single screen</b>
Its an interface between the system and the user.
It enables to create, display or maintain data records.
Screen 2000 is used for single screen.
<b>list screen</b>
Unable to list all records in info type
Screen 3000 is used for list screen
<b>infotype time constrains</b>
A time constraint indicates whether more than one infotype record may be available at one time. The following time constraint indicators are permissible:
A Only one record may exist, valid from 01/01/1800 to 12/31/9999. Splitting and deletion is not permissible.
B Only one record may exist, valid from 01/01/1800 to 12/31/9999. Splitting is not permissible, but may be deleted.
T The time constraint varies depending on the subtype.
Z Refers to time management infotypes.
<b>
to create infotype</b>
Transaction code
<b>PM01.</b>
<b>enhancing PA infotype</b>
Start the Personnel Administration info type copier (PM01)
Enter the info type number.
Choose Enhance info type.
Start transaction PM01
You access the Create Info type screen:
Choose Enhance Info types.
In the Info type no. field, enter the four-digit number of the info type you want to create. When you specify the info type number, please remember to enter any leading zeros.
In the Sub-Objects group box, flag CI Include.
Choose Create. The Dictionary: Initial Screen is displayed.
Create the Cl include.
Choose Activate.
Return to the Create Info type screen.
Choose Create All.
hope this information will help you..
and don't forget to reward points -
SPM integration with CUP 5.3
All the issues regarding SPM integration with CUP is resolved, with the exception of one which is mentioned below:
Any user can go and raise a request for the FF ID from CUP Super User Access workflow, and are created in the backend, but they do not get the access to FF ID when trying to Login.
My query: is there any means to capture the user detail much in advance while the request is processed in the workflow and reject the request before it could be created and stored in backend.
Ideally The user not having minimum privilege of u201C/VIRSA/Z_VFAT_FIREFIGHTERu201D should not Login with the FF ID, which is met here, but this is checked only after the user get the access to FF ID and try to LOG into FF ID using his Login detail.
Please put some clarity on this.
Thanks,
Abhimanu SinghHi Sabita,
Thanks for the reply but this do not answer my question. Let me come in detail on this topic:
SAP Backend:
We have FF ID Owner, FF ID Controller, FF ID and Firefighters in the Backend.
FF ID owner has the minimun role required for becoimng the owner is /VIRSA/Z_VFAT_ID_OWNER.
FF ID Controller created with the minimum role /VIRSA/Z_VFAT_ID_OWNER for the monitoring purpose of all the reports.
FF ID is defined with the defined task in the role being assigned to it.
Firefighter is created with the minimum role /VIRSA/Z_VFAT_FIREFIGHTER to get the access to FF ID for the limited period as defined by the FF ID Owner.
For example:
FF ID Owner: User ID is FFO
FF ID Controller: User ID is FFC
FF ID: User ID is FID
Firefighter: User ID is FFS
Now the Question is from
SAP Frontend Java stack
I can see that the users(other than FFS) who are not defined as firefighter in the backend can still go and put a request for the FF ID access and gets provisioned.
When you go and check in the backend with the firefighter Owner ID/FF Administrator ID you can see the requested user listed there with the limited time period in the firefighter list.
Now comes the real picture: when this user(other than FFS) tries to login using his user ID he will not get the FF ID Login link on the page which is ideally correct. This is because any user not defined as firefighter in the backend with the minimum role /VIRSA/Z_VFAT_FIREFIGHTER should not get the access to FF ID.
My question comes here:
Is there any option in the frontend which could inform the user (other than FFS) much in advance and stop him requesting for the FF ID which has no meaning since it is finally not going to get the access in the backend to the FF ID.
Please get back to me if you require some more information.
Thanks,
Abhimanu Singh
Maybe you are looking for
-
My iPod classic 160 GB late 2009 is not recognized by my computer, nor iTunes. Please advise
-
Deleting rows in a database using a date-condition
Hi - Can someone help me with this? I wan't to delete old data from a database. More specific, delete all data from ex 2002.(the year to be deleted is coming from a textfield) The date is stored in the database like this; dd.mm.yyyy. So a delete stat
-
Kiosk with Front Row???
Is it possible to create a Kiosk app using Front Row? I want the ability to allow the user to start various websites (on localhost) from a Kiosk interface. Hopefully the user is then locked out of the main HD directories.... Any help/direction apprec
-
Time machine errors 20,17,60
So recently i tired time machine with my brand new time capsule and it didn't work... I get 2 different error messages, If i start clean in the time machine i get errors 20,60 but if i try again i get errors 17,20 or the text below: 1st Try: 11/16/13
-
How much longer will delivery take?
I ordered a phone off the website 10 days ago and I still have not received an email with the tracking number. I'm getting kind of frustrated and I would just like to find out where it is and when it is going to be delivered. My order number is METHW