Business challenge
In IBM Cognos Analytics, a system administrator might need to
- Restrict users or groups who can access the produc
- Prepopulate user's profiles;
- Set Theme, Extension, or other customizations to users;
- Populate membership in Cognos namespace groups;
- Assign permissions and capabilities to users or groups;
- Synchronize membership of Cognos groups with namespace groups
The tasks are tedious and repetitive for multiple users and groups, prone to human error. Out of the box, IBM Cognos Analytics facilitates some tasks by import of multiple users from a .csv file. For more information, see Creating the .csv file.
For any other security synchronization, the Automated Cognos Security Management can help.
For more information and to request a demo, send email to: IBMCognosTools@ibm.com
Automated Solution
- Add or remove membership of Groups and Roles in Cognos namespace
- Remove Membership of Groups and Roles in Cognos namespace
- Add or Remove Capabilities in Cognos Content Store
- Assign permissions to objects in the Content Store
- Synchronize Folder and Group structure in Cognos namespace
- Assign Ownership of objects in the Content Store
- Reassign ScheduledBy properties of Schedules and Jobs
- Update Burst keys and recipients. For example, when email address changes
- Rename Groups and Roles in bulk by using a pattern or mapping
- Update User account properties - user_ID, email with external mapping
The automation can be used with any Cognos supported authentication provider (AD, AccessManager, LDAP, Custom Security Providers, OpenID Connect).
Silent or script version is available for easy integration with other IT automated process and schedules.
Starting with version 11.0.7, IBM Cognos Analytics supports OpenID Connect authentication. One general difference of the functionality between other namespaces and the new type is object synchronization: at start of the Cognos services vs at logon. When the users log on, their names are automatically shown in the namespace.