Cognos Security Replication

IBM Cognos Security Replication

Automated update of authentication sources in Cognos BI or Cognos Analytics

Technical challenges

Some of the significant challenges that occur when a move to a new authentication source is required:

  1. The Unique Security Object ID (CAMID) for Account, Role, Group is tied to the namespace configuration

  2. Change in Configuration introduces inconsistency in the Security setup in the Cognos Content Store

  3. The task of converting to the new authentication source is not trivial

  4. Manual updates to security could introduce errors

  5. Merge multiple security namespaces. 

Automated Solution


  • Replicate User Profiles, Content, Preferences, Notifications, Distribution Lists, Contact Information
  • Add/Replace Membership of Groups and Roles in Cognos namespace
  • Add/Replace Capabilities in Cognos Content Store
  • Update Permissions to all objects in the Content Store
  • Update Ownership of all objects in the Content Store
  • Update Contacts of all objects in the Content Store 
  • Update ScheduledBy properties of Schedules and Jobs
  • Update User reference for Emails in Schedule and Jobs
  • Update members of DistributionLists
  • Update Security in Framework Manager Models
  • Update security in PowerPlay Transformer Models
  • Groups and Roles names can be mapped to different names in the target namespace
  • User accounts are matched by different properties - user ID, email, osSignon, basicSignon, through external mapping
  • Any supported namespace source and target are supported, regardless of the Authentication provider (AD, Series 7 AccessManager, LDAP, Custom Authentication Providers, OpenID Connect)
  For more information please contact your Account Representative or send email to Expert Labs Services at: IBMCognosTools@ibm.com