Provisioning in essbase

Hi,
When I provision an user for Planning as planner or Administrator or Interactive user, then what type of access comes to him related to essbase.
i.e. if I have provisioned an user as planner then what provisioning will he get for Essbase by default.

Hi,
I have gone through the document but I dint get the required info.
I have tried the same on one of our demo server i.e. I have made one user as Administrator for Planning application and then logged into the EAS and I was able to login there and also I was able to edit the corresponding essbase application outline of the same Hyperion Planning application.
It means some provisioning related to Essbase comes up by default to the Planning application administrator.
The same may be the case for planner and Interactive user.
thanks
Yashwant

Similar Messages

  • Sync Shared Services External users & Provisioning for Essbase Applications

    Hi Experts !!
    i have externalised user authentication in Shared services . I provisioned all users for Essbase and refresh the security from Essbase ,So all users are working fine
    and can login in Essbase and "Excel add-in" as well..
    but there is one user who is still not working for "Excel Add in"..
    Error is "Login failed due to invalid login credentials"
    Please suugest me the solutions
    Thank you.

    Hi John !
    Yes, User can login in EAS .
    Also User is available under Users in EAS ,But no applications are displaying in Analytic Server , While I have given Administration Privileges for Essbase app.
    But still error while login in Excel add in ..
    Error : Login failed due to invalid login Credentials.
    Also ,After Provisioning , How Can we Sync all all Externalized users from Shared Services itself for All hyperion Projects ???
    Thank you

  • Non-admin user cannot access Essbase server level variables

    Version 11.1.1.3
    Essbase Substitution variables are created at server level. Users are getting error in FR report that uses the Subsitution Variable -- Essbase Error(1051085): You do not have sufficient access to get this substitution variable. Also, users cannot access Substitution variable in SmartView. However, users can access variables created at database level. Users are provisioned as "Server Access" to Essbase and filter access to ASO application "MGTRPTG", where MGTRPTG is an ASO essbase application for reporting. We tried the same provisioning in two other environments and it seems to be working fine.
    User is type "Essbase and Planning" provisioned with essbase "server access", application mgtrptg "filter", Reporting and Analysis "analyst", "dynamic viewer" and "Explorer". In addition, it is given a filter "REP_DME_GALB" which restricts 2 dimensions (Division and Geography).
    Steps taken to resolve:
    1. Existing users were deprovisioned and reprovisioned with no effect.
    2. Created brand new identically provisioned users in Prod and QA. QA user can access the server level var and Prod user cannot
    3. Created a brand new server level variable in Prod and this cannot be accessed.
    4. All services have already been restarted several times.
    5. SR has been opened.
    Temporary workaround:
    By creating a duplicate of the same set of variables at the database level, the reports work. This can only be a temporary workaround as the client cannot be expected to maintain two sets of substitution variables since there are 3 applications using these server level variables.
    Thank you for any ideas!
    Jennifer

    You have stumbled on a defect which is resolved in the Hyperion Planning 9.3.1 patch 6 and above. If you have your planning preferences set to indent members it will cause forms which have page selections to show as invalid in SmartView.
    You can either patch Planning or turn off the preference. The patches are available from http://metalink3.oracle.com and require account which has been associated with your client ID.
    P.S. Usually it's not a good practice to use the admin id.
    Regards,
    -John
    Edited by: Jbooth on Nov 3, 2008 2:12 PM

  • Essbase 9.3.1 and problem with LDAP users

    Essbase 9.3.1 users externalized to Shared Services. Windows boxes. LDAP users set in Shared users. Provisioned with Essbase rights (administration and speciific cube access). Then in EAS have refreshed security from Shared Services. LDAP users show up now in EAS.
    However when attempting to connect through excel add-in or through EAS or through Financial reports to any Essbase app receving and error message that "login fails due to invalid credentials".
    Users setup in Shared services as Native Users are able to access Essbase apps.
    any ideas?

    It came down to a Novell E Directory LDAP setting. ID Attribute. We had it set to CN (based on a recommendation by a LDAP resource, although the default is GUID and GUID is recommended by the documentation).
    Turns out that Essbase when authenticating the LDAP user was forcing it back to GUID and causing some sort of mismatch.
    Setting the ID Attribute in the LDAP Configuration back to GUID resolved the issue.

  • Grant the Essbase application permission to user in Shared Services

    Hi,
    We got a problem in granting the Essbase permission to user using Shared Services. We are using Hyperion 9.3.1.
    (1) We created an Essbase application + database through Essbase Administration Console, say TBC.Sales.
    (2) Provision the Essbase "Server Access" + Essbase Application "Read" roles to a user.
    (3) In Essbase Admin Console, we "Refresh Security from Shared Services".
    However, the user still cannot see the Essbase Database in SmartView. Does anyone know how to fix the problem?

    The problem is fixed with Essbase 9.3.1.3.0.5.

  • Essbase - Shared Services security problem

    In a Shared services enabled Essbase server,
    For a user/group can we define different access levels (say Read on one & Write on the other) to different databases belonging to the same application (BSO)?
    If not, Is there any alternative?
    Appreciate your thoughts.
    Thanks,
    Ethan.

    Of course you can.
    If you're on v11, the steps are as follows:
    1) Create a group (I am going to assume groups and usernames).
    2) Provision the group Essbase server access and Read access to My Very Favorite Essbase Database In The Whole Wide World (MVFEDITWWW) -- Sample.Basic. You could get fancy and create a two level group hierachy with the upper level group provisioned ot Essbase server access and the second group Read access to Sample.Basic if you wanted to.
    3) Expand the application groups and drill into Sample. Right click on Sample and pick Assign Access Control.
    4) An Application tab will open up with a Database drop down. Select Basic and check off the box that relates to your group. It will have the role of Read.
    You have just assigned access to Sample.Basic.
    Follow the same steps for Sample.Intl, etc., etc.
    Regards,
    Cameron Lackpour
    P.S. I believe the above holds true for 9.3.1 but the interface looks a little different. I never did it there -- all of my System 9 work was, alas, Planning only.

  • Essbase Studio Login

    Hi There,
    I just install Essbase 11.1.1.3, and try to login to Essbase Studio, what user and password I need to use, what is the default user name and password, I try admin and password, and it gives me error.
    "Network communication with the server failed Connection refused: connect"
    Thanks
    Edited by: user8091395 on Mar 30, 2010 3:25 PM
    Edited by: user8091395 on Mar 30, 2010 3:25 PM

    If you want to give Admin rights, right click on the Admin ID in shared services and select provision. You should see Essbase studio as an option in the left hand pane. Expand it and select the access you want to give the ID. If this is Dev, I would just select all of them and move them to the right pane. I would also provision the Essbase server the same way. IF you want to create a new native user, in expand native and gight click on users and select new user. Once created, you can provision it just like Admin

  • Could not connect to the OLAP server web analysis hyperion

    I created a document report in Web Analysis with an administrator user then I created a user in the shared services console and granted him access to the report, but entering with this user I can access the report, but receive the following error message: Could not connect to the OLAP server web analysis hyperion.

    Is the user having correct provisioning in Essbase? Which version? (older versions, you'll have to synchronize Essbase with HSS)
    Regards
    Celvin
    http://www.orahyplabs.com

  • Shared Services: Role Assignment

    When I try to assign the privilege of "Server Access" from Shared Services to a user, clicking on
    Essbase:servername:1 -> Essbase:servername:1 the tree does not open, but opens Default Application Group -> Essbase:servername:1.
    If I add the privilege of "Server Access" by:
    Default Application Group -> Essbase:servername:1 -> Administrator -> Create/Delete Application -> Server Access
    user can't access to Essbase from Excel.
    in addition Essbase can not see the users created through Shared Services. Only the admin user is displayed.

    I faced the same issue with the server access role. If I provision an Essbase Application role , the User can access the particular application. However the user can access the application by just provisioning the Application Role anyway. Then why is there such a role called Server Access? I am using 11.1.2.0 version.

  • Changing to a new Active Directory

    We are synchronising Shared Services to Microsoft Active Directory to create our main user directory. We add the AD accounts to native groups, which are provisioned with Essbase and Planning roles. We apply security filters for our Planning cubes directly to the AD accounts.
    We will soon be switching to a new hosting provider and they will maintain the Active Directory. We are expecting them to create a brand new AD, but with the same usernames as the old one.
    The question is, if we point Shared Services to a brand new AD that has all the same usernames, will the user/group links and the security filters be retained?
    Does the username act as the identifier, or is there another hidden identifier that might be different in a new AD account and therefore mean Shared services does not recognise it?
    Does anybody have any experiences to share from going through a similar process?

    Hi,
    perform homogeneous system copy if you migrate from one server to other.
    find document at service.sap.com/systemcopy
    if you just add you local system to domain then look following
    Domain name change for an existing SAP System
    regards,
    kaushal

  • Externalise Users

    Hi All,
    We are facing some issues while externalizing the users in EAS console, these are the steps we followed ,help us in solving the issue.
    1.We have tried to externalize the users using admin user but after this admin(planning user) became as an Essbase user because of which we were unable to login to planning.
    2.We reverted back to the normal position by replacing the old backup.
    3.Again we created new user in shared services and with the same name we created an Essbase user and tried to externalize with that user, but after that the Essbase administrator became inactive and we were unable to login to both EAS console and Planning.
    4.Again we reverted back.
    I have one concern with exactly which user we need to externalise the user is it a planning or Essbase user.
    Please share any documents or views regarding the externalizing users from Essbase to shared services.
    thanks,
    Anil

    Hi,
    there might be a provisioning problem or not externalized users on essbase,If you already configured planning and essbase successfully and externalized users, then provision user with all access which you want, like essbase and planning with admin access and try to login planning application,refresh security filters and refresh from EAS.
    Kumar: create new user and provide provisioning for planning and essbase as admin access from shared services and externalize user if it successful,refresh from EAS,if not works, otherwise first provide provision for essbase and externlize users then provide provision for planning. then it may work.
    Thanks,
    :-) :-)

  • Essbase drillback to FDM - Error: 2067 - Shared Services Provisioning

    Working with EPM 11.1.1.3. Trying to get Essbase Studio to drillback to FDM. Getting the following error:
    Error: An error occurred logging on to the system using single sign-on. Please contact your administrator:
    Error: 2067 - You do not have access to the application!
    I've reviewed and re-reviewed FDM setup, DCOM config, and Shared Service provisioning. Everything appears correct. Including Provisioning FDM Users using Shared Services:
    http://download.oracle.com/docs/cd/E12825_01/epm.111/fdm_config_help/frameset.htm?ch10s02.html
    Anyone else run in to this? Any solutions?
    Thanks,
    Bob

    Hi,
    I am facing the same issue.
    Can you please list down your solution in stepwise manner.It would be of great help.
    Thank You!

  • Automagic User Provisioning Essbase + Shared Services

    Hello All,
    I have recently been able to figure out how to use the Shared Services API for 11.1.2 in a previous post:
    Shared Service API Working 11.1.2
    However, all of the user management and provisioning examples work with native users. Has anyone used this API with active directory or LDAP users? Is there some other way (export/import utility)?
    My problem is that I need to be able to script the user management with shared services and have not been able to find much help. In the past, we ran Essbase in standalone mode and were able to handle this via MaxL generating essbase native user accounts. This will no longer work since we want to use shared services when upgrading to Essbase 11.

    After your comments I looked a bit more closely at the DDL for create user. It looks like i need "type external";
    MAXL> create user 'someuser' type external;
    OK/INFO - 1056060 - User [jdp5209] created.
    This is what i want!
    MAXL> create user 'someuser' identified by 'somepass';
    OK/INFO - 1056060 - User [someuser] created.
    This is not what i want, creates Shared Services native user.
    It seems obvious now, but before, shared services (CSS module to essbase) was "external" so the old external is the new native.
    Sorry, new to shared services! This works. Thanks all

  • User Provisioning - Planning to essbase

    Hello,
    I have done user-provisioning in shared services for Planning and it gives them access to their respective costcenters in planning. However when I am connecting to smartview for adhoc analysis with essbase connection, it has no security.
    Any quick fixes or suggestion to pass on the security to essbase?
    Thanks,
    XXX

    Hello Rinku,
    I provisioned this User as a planner to use planning application with restricted access. The next step was to refresh the essbase filters through planning 'Manage Database' option with security filters & shared members selected.
    I refreshes successfully.
    How and where do I check in essbase as to if these users are created and provisioned accordingly.
    Thanks,
    XXX

  • User Provisioning Issue in Essbase 11.1.2.2

    Hi Experts,
    We have done migration from 11.1.1 to 11.1.2.2 version.Everything went fine but got problem with User provisioning.
    All our users provisioning are managed via Native Groups
    Eg: FIJI_READ,FIJI_WRITE are the Native Groups.
    What we have done is created the Native group provisioned the group with the roles and added the user to the group.
    The problem is the users assigned to these groups “lose” their permissions after sometime. They do still appear to be part of the group when we check in Shared Services, but when we run a MAXL command for a user, say VIBIN:
    DISPLAY USER PRIVILEGE VIBIN;
    It shows the user has having none. The user doesn’t see any cubes on logging in too. From what we’ve seen so far, we can trust the MAXL command output, but not what we see in Shared Services. The user VIBIN still shows as being part of the group FIJI_READ which is provisioned with READ role for the FIJI database. This is very inconsistent behavior.
    The only workaround so far is to directly provision users (i.e.  bypass provisioning via Groups):
    GRANT READ ON DATABASE FIJI.CONSOL TO VIBIN;
    This isn’t very manageable but the ONLY option that seems to be “sticky”. Have anyone gone through this issue  before? Any idea/advice?
    Regards,
    Naveen

    I  exported the Sec file from Security and when i see the content i cant see any groups which are created in Shared Services but only all the applications,databases  and some of the Administrators of the applications only i can see. But normal users who are added in Shared Services to the group i cant able to see.Is there any thing wrong in it.
    Regards,
    Naveen

Maybe you are looking for

  • Acrobat 9 Interface Glitches

    These probably don't rise to the level of a bug, but they are annoying.  I'm working with multipage documents that need to be resorted into separate documents.  This is a recurring task with periodic additions to existing documents. 1. In the Pages P

  • Can't open a file in premiere 2014

    I downloaded the last upgrade but everytime i'm trying to open a specific project file it's telling me that the file has been saved on a newer version of premiere and it can't open it.

  • User Exit issue after upgrade from 4.6c to ECC 6.0

    Hi Experts, After upgrade we are facing some issues regarding user exit. In 4.6c we have implemented several user exit to do customization in several module like SD,FI and HR. But after upgrade it has been identified that SAP has already provided thi

  • OmniPortlet - SQL query

    When I click the "edit connection"button when trying to do an sql query in omni portlet I keep getting a message "Cannot store connection information in the repository because the repository has not been configured. Click Help for more information."

  • Problems witch acs 4.2 replication

    i installed the primary and secondary server. i see only one problem in the logs. when i try to replicate i get this : cisco acs 01/04/2012 23:50:58 NTVMEM73 INFO Outbound replication cycle starting...01/04/2012 23:40:25 NTVMEM73 INFO Outbound replic