Self-Request Modify resource deleting groups

I have a Database Application Table connector setup with a child table. I have the self-request dataset configured so that the child form is embedded into the self-request form to enable requesting multiple groups similar to AD User form for groups. I can add additional groups with no problems, but when I have 2 or more groups and I try to delete one of those group, it deletes both of the groups.
Is this a Oracle bug or I'm doing something wrong?
Edited by: user11186333 on Jul 25, 2011 7:00 AM

Hi,
You can make the manager part of a group that has menu item "Requests" --> "Resources". It will allow the manager to create, enable, disable and revoke accounts for a user.
You can do the following for the approval process:
1) create a second workflow(approval) for a specific resource.
2) create a business rule of type 'process determination' and subtype
'approval' , Add an Element 'Request Object Action == Revoke'
Go to resource object Under the approval process , select the above
business rule created in step2 and the workflow created in step 1
Now when you try to revoke this resource from a user this workflow
should get called.
thanks
Chandra

Similar Messages

  • User self request for a RESOURCE

    Hi Experts,
    I am facing the problem to self request the user for AD resource and getting the below error
    Exception java.lang.ClassCastException: java.lang.String was thrown in adapter "ADCS Create User". The Adapter Response was "java.lang.String" .Setting task status... "java.lang.String" does not correspond to a known Response Code. Using "UNKNOWN".
    But in the admin console when user request for the AD resource through AccessPolicy/Resource Profile user can able to provisioning into the AD resource.
    Thanks and regards,
    Santosh

    Hi
    1) In process form i checked the auto populate and autosave option in this scenario administrator can easily provisioned into the AD resource and in the object form m populating organization filed.If i wont do this then i have to edit the the process form and save it, then only user can provisioned in to AD.
    2) If i am not populate the fields then i am not getting the error which was sent in earlier post but showing pending status(without approval) and user not provisioned in AD.
    3) In self request you don't populate the field, it stays null which results in the class cast exception in the provisioning code. as u said , in this case if i want to provision the user through Adminconsole and as well as user self request for Provisioning in AD Resource case a) From adminconsole user provisioned
    b) User self request not working and showing status as pending.
    Thanks and Regards,
    Santosh

  • Cannot install IPA on my ios 5 devices."A signed resource has been added, modified, or deleted."

    Hi guys..
    I've spent the last 3 hours wrestling with this.
    I'm using flexbuilder 4.6 on pc, with air 3.1.
    I'm using my mac to do the installation on the device.
    I used to be able to deploy the ipa files output by flashbuilder 4.6 to my ipad, and iphone. I cannot anymore. I don't know if it's because of ios 5, or lion, or what..
    I could never install the ipas in windows,
    I always used the iphone configuration utility in os x to install; but now I get "A signed resource has been added, modified, or deleted." every time I try.
    Same thing happens in xcode organizer.
    If I try via itunes it just creates the app icon on my ipad in loading state and never finishes.
    Things I've done:
    I've created entirely new provisioning profiles and app ids,
    I've verified that the profiles are indeed valid: I did this by changing app identifiers for some of my cocoa/xcode projects),
    I've turned on/off devices/computers etc.
    I can't tell you how utterly frustrating a night it has been, especially seeing as the turn around time to verify in xcode for cocoa apps is about 20 seconds, but the workflow with air is like 5 mintues a time. and each time ends with no hint whatsoever as to what is wrong.
    Is there anyone else out there who's had this and worked around it - or someone who can put me out of my misery.
    I literally can't do any testing at all right now... wtf..

    Hi George:
    Answers to following will help.
    1. Can you confirm that this is iOS 5 specific? (I mean do you see app being installed on iOS 4.X but not on iOS 5?)
    2. Can you tell us what all things are you packaging along with App Descriptor and App SWF?(And overall size of assets?)
    3. your mobileprovision file is not modified. If you havent done this already, you can try by downloading the provision again from store.

  • OIM 11G : Selecting Multiple RO's in Single "Self Request Resource" Failing

    Hello Everyone,
    OIM 11G : End User "Self Request Resource" failing when user selects 2 or more resources in a Single Self Request Resource Request
    1) On OIM 11G, I have created 2 resource objects, workflow, process forms.
    2) Created the separate request dataset xml and imported into OIM repository
    3) Now if an end user creates a request , "Self Request Resource" and selects one of the resource
    4) Form defined as per request dataset shows up perfectly for the application on Resource Attributes page which comes next.
    5) Only Problem that I am seeing is when End User selects 2 resources in one single request
    Both the resource request dataset has been correctly configured because selecting only 1 works not both when both are selected in same request.
    Thanks,
    Deepak

    Hello Experts,
    on OIM 11G
    I am getting the above issue when an end user does a "self request resource" and selects 2 Resource Objects.
    On the Next Page, attribute form defined as per the request dataset.xml does not show up.
    Both the RO's are seen on top breadcrumbs but with a blank form. I can navigate to the next RO Resource Data Details again with a blank form.
    Though the attribute form as per request dataset comes up properly if I select any 1 of the 2 RO's and make "self request resource". everything goes fine.
    I have followed the documentation thoroughly to import the datasets etc and can see request dataset in MDS_PATHS table (DEV_MDS user).
    If anybody has also faced a similar issue or tested that selecting 2 RO's in 1 single "self request resource" works , pls let me know.
    Thanking in advance,
    Deepak

  • Self-Request Resource Fails At Operational Level

    Hi,
    In our application, we have a Self-Request for a particular resource.
    When a user raises a request for this resource, the request failed with no error message. No approvals are required in the request level.
    On clicking “view details”, a blank pop up appears! From the request details I found that the request is in failed state. The request fails in the request level.
    Please help as to how to figure out the root cause of the issue?
    Any pointers to this would be helpful.
    Regards.
    Edited by: Sudipto S on Oct 18, 2012 6:26 PM

    Hi,
    In our application, we have a Self-Request for a particular resource.
    When a user raises a request for this resource, the request failed with no error message. No approvals are required in the request level.
    On clicking “view details”, a blank pop up appears! From the request details I found that the request is in failed state. The request fails in the request level.
    Please help as to how to figure out the root cause of the issue?
    Any pointers to this would be helpful.
    Regards.
    Edited by: Sudipto S on Oct 18, 2012 6:26 PM

  • PasswordField at request "Modify Provisioned Resource"

    Hi, I'm using OIM 11g R1
    I have a resource with a field Password (masked=true on the request dataset and PasswordField on the form).
    When I do a request "Modify Provisioned Resource" without modify the field Password and modifiing just an other field, the request send the value "********" on the password field and this call the task "Passowd Updated".
    How I fix it?
    TKS

    This is the code of my ModifyValidation plugin:
                                for (RequestBeneficiaryEntityAttribute attribute :
                                     requestBeneficiaryEntityAttributes) {
                                    if (attribute.getName().equals("Login")) {
                                        String requestLogin = (String)attribute.getValue();
                                        validateLogin(requestLogin);
                                    } else if (attribute.getName().equals("Password")) {
                                        String requestPassword = (String)attribute.getValue(); // Here, if I don't change the Password field, I get the value "********" instead of the old value of the password field
                                        validatePassword(requestPassword);
    And if the request send the value "********" on the password field and this call the task "Passowd Updated" with this value...
    I put que attribute masked="false" at this field on request Dataset and when I open the request, the field value already is "*********" and the value of the password field was "12121212".
    Tks

  • EBusiness Suite User "Auto-provisioning" and  "Self-Request" Problem

    I have two types of OIM User, Staff and Contingent
    Staff (Role = Full-Time)
    Contingent (Role = Contractor / Role = Consultant)
    Resource Object: eBusiness Suite User
    Here's my RO configuration:
    Auto Pre-populate: true
    Allow Multiple: true
    Self Request Allowed: true
    Allow All: true
    Auto-Launch: true
    EBS Connector, by default has two forms:
    UD_EBS_UO: Object Form
    UD_EBS_USER: Process Form
    I have requirement which will auto-provision eBusiness Suite User resource to Staff users.
    Originally, UD_EBS_OU is the table name used by the RO. For auto-provisioning to work, I have implemented it this way:
    First, I have defined a User Group for Staff and assign an Access Policy to it (for users with Role == Full-Time).
    Then, I have detached Object Form UD_EBS_UO from the RO. This way, when Staff user is created in OIM, it is automatically provisioned with eBusiness Suite User, though it won't have a Resource Form, only a Process Form. Process Form fields are automatically pre-populated with values (via my Pre-populate adapters).
    Now my problem is during Self-Request. Contingent user doesn't get auto-provisioned with EBS RO, but he can self-request for it. Problem is, since I detached the Object Form from the RO, user is not seeing any form during request. And I have a requirement that approver of the request should also be able to view/modify the details of the request form. But that is not possible now that Object Form does not exist for this RO.
    Is it possible that Self-Request and Auto-Provisioning works both ways under the same Resource Object? How do I configure that? Appreciate your quick response and help. :)
    Edited by: user10202544 on Feb 10, 2010 3:27 AM

    Yes I have set permissions to all users for the Object Form.
    It is required for me to have both Self Request and Auto-provisioning work for eBusiness Suite RO.
    During approval, however, the approver needs to see the Object Form (where he can view/modify its values before approving it). That's impossible for me since I detached the Object Form from the Resource Object. I need do to this for auto-provisioning to work.
    It seems that it doesn't work both ways. Any other suggestions?

  • Can't delete groups in Address Book

    I have a couple of local groups in my Address Book that refuse to delete. Even though the "Delete Group" dialog pops up when I highlight the group and press the Delete-key, they are still there after hitting the OK button.
    When I create new groups (plus-button) I can delete them but not some of the old groups that were carried over from an older OS version.
    I have been playing around with Entourage and Outlook a lot so that might have had something to do with it.
    Is there a way to modify the Address Book database directly to get rid of these groups ?
    Or reinstall Address Book ?
    I already tried to swipe all Address Book related plist files - that didn't do it.

    Ok, I have solved the problem: I had to reset my SyncServices folder.
    Here's the description: http://support.apple.com/kb/ts1627
    After that I was finally able to delete the unwanted groups.

  • Can't delete group by REST API

    I use this URL for delete a group: https://graph.windows.net/<domain>/groups/<objectId>/?api-version=1.5 (ref: https://msdn.microsoft.com/en-us/library/azure/dn151608.aspx)
    but I can't do it. I set full permission for application (I can create/update). How deleted group via REST Api?
    This is requonse:
    odata.error: 
    code: "Authorization_RequestDenied"
    message: 
    lang: "en"
    value: "Insufficient privileges to complete the operation."

    Hi,
    Are you using this link to delete the group
    https://graph.windows.net/<domain>/groups/<objectId>/?api-version=1.5
    the method states that it has used the date, not the version of API as mentioned below.
    https://graph.windows.net/mytenantdomain/groups/<objectId>?api-version=2013-04-05
    The Sample request also has the date, not the exact version of the API
    DELETE https://graph.windows.net/contoso.onmicrosoft.com/groups/bc0001a2-5b96-4073-a5be-6b80528a17ad?api-version=2013-04-05
    HTTP/1.1
    Authorization: Bearer eyJ0eX ... FWSXfwtQ
    Content-Type: application/json
    Host: graph.windows.net
    Hope this helps you.
    Girish Prajwal

  • Self de-provision resource

    Hi all.
    I'm trying to get a Resource self de-provisioned from users, but I'm not able to reach this goal. The resource I'm using is without connectors, it is only a logical resource. Note that I've created approval policies to get auto approved (both at request and operational level) the "Self de-provision resource" template request raised, but after all the status of the request is always "Post Operation Processing Initiated".
    Now, I would like to know how can I have a task in the provisioning process triggered after the approval process for a "Self de-provision resource" request type. Is this possible?
    Thank you all for your help.
    Regards,
    Giuseppe.

    Post Operation Processing Initiated status
    After the actual requested operation is completed, if there exists any additional operation that needs to be executed as post-processing, the request engine moves the request to the Post Operation Processing Initiated stage, before initiating those operations. This happens after Operation Completed status.
    it means the request is already approved and completed. but some task which is already initiated and same has to be completed. verify the open task if any task in pending status.
    --nayan                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                           

  • How to use tcRequestOperationsIntf API to create a self-request?

    According to documentation, I can use tcRequestOperationsIntf API methods to create and manage requests.
    How can I use these methods to initiate a self-request (for provisioning user a new resource)?
    Because when I create a usual request, it's equivalent to direct provisioning the resource (from the user's resource profile) then all approval processes are bypassed :(

    While tcUserOperationsIntf.provisionResource would provision the resource to the user bypassing the approval, tcRequestOperationsIntf can be used to raise a request to provision a user with a resource along with approval, if approval is defined for that resource in the approval process.
    Here is a sample code for raising a request to provision user (lUserKey) with resource object (lObjectKey)
    ///Created the request object for provisioning the RO
    requestObj = (tcRequestOperationsIntf) utilFactory.getUtility("Thor.API.Operations.tcRequestOperationsIntf");
    HashMap reqMap = new HashMap();
    reqMap.put("Requests.Target Type", "U");
    reqMap.put("Requests.Object Request Type", "Add");
    reqMap.put("Requests.Type", "U");
    lRequestKey = requestObj.createRequest(reqMap);
    //Adding user to be provisioned for
    requestObj.addRequestUser(lRequestKey, lUserKey);
    //Adding object to be provisioned
    requestObj.addRequestObject(lRequestKey, lObjectKey);
    //create the request
    requestObj.completeRequestCreation(lRequestKey);
    Hope it helps,
    Rgds, Ajay

  • How to trigger approval request for resources after assigning role

    Hi,
    We have a use case where we need to assign resources to user via assigning roles.
    In order to achive this use case
    1. we have created a role and assigned the access policy to it which contain the resources to be provisioned once the role is assigned to the user.
    2. Created a SOA composite having manager approval and assigned this composite to a approval policy of type 'Assign Role'.
    3. I am already having the approval policy for the resources which are present in roles. The approval policy of resources is of type "Provision Resource".
    4. Also the SOA composite for resource apporal is deployed in OIM and assigned to the approval policy.
    5. Now when I am raising the request from OIM of type "Assign Role" the approval defined in the SOA composite for Role approval gets triggered. After approving the role request the role is assigned to the user and also the resources defined in the access policy gets provisioned to teh user account.
    Now I want to trigger the resource approval process after the role approval instead of directly provisioning the resources. So that once the role is approved the individual Approval Process of resources part of roles should also gets invoked. Based on the approval or rejection of resources approval, the resource gets assigned to the user.
    Please let me know how to achieve the above use case.
    Thanks in advance

    Access policy is saying whoever gets xyz role, will get this abc resource. Now once a user gets xyz role, you are stopping to get abc resource? both are contradictory. Don't go through access policy. User is anyway going to request for roles. Modify your flow and make user request for resource. Have your composite and approval policy attached. User will get resource once it is approved.
    regards,
    GP

  • How can I o create, modify or delete users using OIM 11g web services?

    Hi,
    I have a requirement to create, modify or delete users using OIM 11g web services.
    The end users will be signing on to the online application, a user interface to request ids online. The user interface is the home grown application to request ids.
    I want to integrate this user interface with OIM 11g. I generated the java classes using the out of the box wsdl file as mentioned in the Developer’s Guide for Oracle Identity Manager 11g. But I need to know how to create users using web server client from a given wsdl file? Is there a sample web service client program to create a user in OIM?
    If you know of any document which I can follow or if you can give any details I really appreciate.
    Thanks and Regards,
    Viraf

    Hi Chong,
    Were you able to figure out the approach? I am facing the same issue like this. I have created a web service where the input values are no. of days to extend user's end date and user's employee ID. Output will be true or false. But I am getting error while searching user in OIM DB. I think my web service is not to query OIM DB
    Please let me know if you have worked on this senario.
    Thanks,
    Kalpana.

  • Transport for deletion group module

    Hi
    I try to delete FM from another system by transport task but this delete only some parts of this.
    When I put transport then function group is deleted bu FM is stille exists and after click show me error in group module.
    How to complete delete this. Can I try to create some own transport task deletion manually?
    Thanx for any help

    Hello Kosmo,
    I believe you're not deleting the FM structure - or any other FM object, only the Function Group (R3TR FUGR - Function Group)
    To make sure you've deleted everything related to that FM, include the following objects on the request:
    LIMU  FUGT     Function Group Texts (if applicable)
    LIMU       FUNC     Function Module
    R3TR FUGR     Function Group
    R3TR FUGS     Function Group with Customer Include: SAP Part (if applicable)
    R3TR FUGX     Function Group with Customer Include: Customer Part (if applicable)
    I hope this helps.
    Best regards,
    Tomas Black

  • Permissions for Style Resource Readers Group

    Hello
    I am in the process of cleaning up permissions for my SharePoint 2013 site and looking at this link http://technet.microsoft.com/en-us/library/cc262690.aspx, it states very clearly that the Style Resource Readers group should have permissions such as 'Read
    to the Master Page Gallery and Restricted Read to the Style Library'.
    On my SharePoint 2013 site, I go to Site Settings > People and Groups > Style Resource Readers. I then click Settings > View Group Permissions and I noticed that this group also has "Limited Access" to the homepage, a sub site, the publishedlinks
    folder, Quick Deploy Items and Site Collection Images folders.
    Does the Style Resource Readers group need access to these folders and if not how do I change the permissions for this group?
    Thanks for any suggestions.
    Yoshi

    You do not need to modify anything with Style Resource Reader group unless you are planning on adding users to that group. Personally I will advise against it. 
    Limited Access in SharePoint means that there are permission assigned to a user or group on one or more site artifacts i.e. list, folder, item but no permission is assigned to access site.
    So Style Resource Readers group out of the box has the Read permission to master page gallery. If you read the description it reads.
    "Members of this group are given read permission to the master page gallery and the Restricted read permission to the Style Library. By default,
    all authenticated users are a member of this group."
    So don't worry about this group and leave it as is given SharePoint already assigned required permission at the master page gallery and style library level for this group.
    Amit

Maybe you are looking for

  • Installation Flash cs3 with Windows Vista Ultimate

    I am trying to use Flash on Windows Vista Ultimate. Installing the program tells me a mistake "error in the installation component". I have tried to install in administrator mode and windows account manager Can anyone tell me how to install Flash for

  • Computer Restart itself during intalling Adobe CS3

    Hi I trying to install Adobe Dreamweaver CS3 but my computer is restart itself. Its happen after setup initialization and during setup booting process. Its same also happen when i installing Adobe Photoshop CS3. FYI, i am using P41.7, 512MB RAM, 80GB

  • Restricted key figure with operater symbol depending on characteristic v

    We have a operating income report that shows actual, forecast and budget amounts, the variance and %variance in its columns and revenue and expense items (Hierarchy nodes, expandable) in its rows. The %variance key figure for revenue and expenses is

  • Adding images to iphoto library??

    i was just wondering.. when you push CTRL + MOUSE CLICK ( i dont know what to call it??) on an image on a website, it says "add image to iphoto library"... i notice that these pictures go into my iphoto program.. but where does the file save to? like

  • HTML Web Content overlay - Android

    Hey guys, I am having an issue with a HTML Web Content overly swipe gallery with Native Android viewer. The overlay is the second state of a MSO. The HTML is working as it should, but the 'close' button on the the second state that should make the MS