The ability to run Oracle Business Intelligence (OBI) financial reports is controlled by grants given in Authority Manager, which has a number of choices to be made about type of privilege, organizational scope and data limits.
Grant OBI Finance Reporting Authority
Before You Start
- You must have the specific authority you are granting and it must be checked Grantable.
- To grant Report Viewer Salary Data for an org, you must have Report Viewer Salary Data for that org as grantable.
- Grantable Ad Hoc does not provide the ability to grant Report Viewer, as there is no inheritance on granting.
- If you do not have OBI grantable authority, you may Request Authority for someone by an authorized grantor.
- You need to understand the authority model of OBI so that you can make choices about the privilege, limits and scope of what you want to grant. Refer to OBI Financial Reporting Authority Model for more information.
- Enter authority.stanford.edu in the browser
- Log in using SUNet ID and password
- Select the Grant Authority tile on the Home page
- Begin entering a SUNet ID or a Name in the search field
A list of viable options will display. Refine the search as needed to find the correct person.
- Select the employee's name from the search results
- Under Enterprise Reporting, select the combination of Financial Reporting business function and the privilege that you want to grant.
Privilege | Capability |
---|---|
Report Viewer |
|
Intermediate Ad Hoc User |
|
If a user has been granted Report Viewer for multiple orgs/awards/projects/PI, to later add Ad Hoc, only one grant is needed for Ad Hoc to apply to all the previous grants.
- Enter an Org Name or 4-character Org Code in the search field. An Organization Hierarchy for the specified organization at the lowest level is displayed.
- Select the Org Name from the displayed list or select an Org Name at a higher level.
- Select limits for PTA or principal owner scope. Options include:
- This option allows for reporting access to all projects and awards for the organization selected.
- Select from the displayed list of Projects/Tasks for the specified organization.
- Select from the displayed list of Awards for the specified organization.
Projects, project-tasks and awards can only be granted at the scope of the project, project-task or award owning org (designated by a leaf in Authority Manager) and not at parent org levels.
- Select from the displayed list of Awards for the specified organization.
Awards can only be granted at the scope of the award owning org (designated by a leaf in Authority Manager) and not at parent org levels.
- Select from the displayed list of Principal Owners for the specified organization.
The grantee will be able to see all accounts owned by the principal owner regardless of the organization scope specified.
- Select one or more Data Access limits:
Data Access | Description |
Basic Data |
|
Timecard Data |
Basic Data limits are inherited. |
Salary Data |
Timecard Data and Basic Data limits are inherited. |
If you need to give somebody a grantable privilege, please make sure you choose each data access individually. Grantable privilege is not inherited; for example, a user with grantable privilege of Salary data will only be able to grant others with Salary data. They will not be able to grant someone with Basic or Timecard data privilege. Therefore, a grantor will only be able to grant others the data access which they have been granted with grantable privilege.
- Select one or more Subject Areas:
Subject Area | Description |
---|---|
Payroll and Labor |
|
Funds and Expenditures |
|
Reference Data and Inquiry Only |
|
- Select whether the person Can or Cannot or Can Only grant the privilege to others
If you need to give somebody a grantable privilege, please make sure you choose each data access individually. Grantable privilege is not inherited; for example, a user with grantable privilege of Salary data will only be able to grant others with Salary data. They will not be able to grant someone with Basic or Timecard data privilege. Therefore, a grantor will only be able to grant others the data access which they have been granted with grantable privilege.
- Select an Effective Start Date of today or up to 60 days in the future
- Select an Expiration Date if appropriate
- By default, privilege expires on the day of termination
- Enter Comments, if appropriate
- Click on Grant Authority
- Reporting authority for OBI will be enabled after all prerequisites have been recorded as complete in STARS.
- Every night, new authority assignments and changes to existing assignments are sent to OBI.
- Reminder emails will be sent to the employee until the Confidentiality Agreement pre-requisite has been met.
- If prerequisites are not cleared within 300 days the authority will become stuck and will need to be revoked and regranted to allow access once prerequisites are cleared.
- To revoke or update authority grants, refer to Authority Manager.