Re: APEX developer login question

From: Ilmar Kerm <ilmar.kerm_at_gmail.com>
Date: Thu, 15 Oct 2020 16:33:36 +0200
Message-ID: <CAKnHwtcjVWY_R3Lcd=6xY39Ndm2C-a5gYbgto1ZE0H-nZk8thQ_at_mail.gmail.com>



Yes, this feature was added quite a few years ago. Works good and supports all the same built in authentication mechanisms as authentication for apps. I've been using LDAP and HTTP header authentication for workspace login. But you need to add users to the workspace first, with the same username as the authentication scheme returns.
You need to create workspace users in each workspace on the APEX side - on LDAP side they are of course the same user.

Quick google returned a few tutorials:
http://info.aimstar.com/blog/configuring-ldap-authentication-for-oracle-apex-workspaces How to Configure LDAP Authentication for Workspaces in APEX 5.0 (Doc ID 2035320.1)

On Thu, Oct 15, 2020 at 4:14 PM Jeff Chirco <backseatdba_at_gmail.com> wrote:

> We have AD authentication working for our Apps. But I was referring to
> Workspace login to develop the app.
>
> On Wed, Oct 14, 2020 at 10:51 AM Noveljic Nenad <
> nenad.noveljic_at_vontobel.com> wrote:
>
>> Hi Jeff,
>>
>>
>>
>> We run Apex on Tomcat. We’ve configured the Kerberos authentication
>> according to the Tomcat manual, for example
>> https://tomcat.apache.org/tomcat-8.0-doc/windows-auth-howto.html.
>>
>>
>>
>> Then we configured the Kerberos authentication scheme in the application
>> builder/shared components.
>>
>>
>>
>> This is an external authentication, so no user administration in Apex.
>> User name will be stored in v('APP_USER') which you can use in the
>> authorization scheme.
>>
>>
>>
>> Best regards,
>>
>>
>>
>> Nenad
>>
>>
>>
>> https://nenadnoveljic.com/blog/
>>
>>
>>
>>
>>
>> *From:* oracle-l-bounce_at_freelists.org <oracle-l-bounce_at_freelists.org> *On
>> Behalf Of *Jeff Chirco
>> *Sent:* Mittwoch, 14. Oktober 2020 17:50
>> *To:* oracle-l-freelist <oracle-l_at_freelists.org>
>> *Subject:* APEX developer login question
>>
>>
>>
>> Is it possible for the APEX developer login to a workspace be
>> authenticated via database or Active Directory accounts instead of an APEX
>> account? I couldn't find any documentation on this.
>>
>> Part 2 - can an account be shared among different work spaces? Right now
>> I am creating two accounts to use for two different workspaces.
>>
>>
>>
>> Thanks,
>>
>>
>>
>> Jeff
>>
>> ____________________________________________________
>>
>> Please consider the environment before printing this e-mail.
>>
>> Bitte denken Sie an die Umwelt, bevor Sie dieses E-Mail drucken.
>>
>>
>> Important Notice
>> This message is intended only for the individual named. It may contain
>> confidential or privileged information. If you are not the named addressee
>> you should in particular not disseminate, distribute, modify or copy this
>> e-mail. Please notify the sender immediately by e-mail, if you have
>> received this message by mistake and delete it from your system.
>> Without prejudice to any contractual agreements between you and us which
>> shall prevail in any case, we take it as your authorization to correspond
>> with you by e-mail if you send us messages by e-mail. However, we reserve
>> the right not to execute orders and instructions transmitted by e-mail at
>> any time and without further explanation.
>> E-mail transmission may not be secure or error-free as information could
>> be intercepted, corrupted, lost, destroyed, arrive late or incomplete. Also
>> processing of incoming e-mails cannot be guaranteed. All liability of
>> Vontobel Holding Ltd. and any of its affiliates (hereinafter collectively
>> referred to as "Vontobel Group") for any damages resulting from e-mail use
>> is excluded. You are advised that urgent and time sensitive messages should
>> not be sent by e-mail and if verification is required please request a
>> printed version. Please note that all e-mail communications to and from the
>> Vontobel Group are subject to electronic storage and review by Vontobel
>> Group. Unless stated to the contrary and without prejudice to any
>> contractual agreements between you and Vontobel Group which shall prevail
>> in any case, e-mail-communication is for informational purposes only and is
>> not intended as an offer or solicitation for the purchase or sale of any
>> financial instrument or as an official confirmation of any transaction.
>> The legal basis for the processing of your personal data is the
>> legitimate interest to develop a commercial relationship with you, as well
>> as your consent to forward you commercial communications. You can exercise,
>> at any time and under the terms established under current regulation, your
>> rights. If you prefer not to receive any further communications, please
>> contact your client relationship manager if you are a client of Vontobel
>> Group or notify the sender. Please note for an exact reference to the
>> affected group entity the corporate e-mail signature. For further
>> information about data privacy at Vontobel Group please consult
>> www.vontobel.com.
>>
>

-- 
Ilmar Kerm

--
http://www.freelists.org/webpage/oracle-l
Received on Thu Oct 15 2020 - 16:33:36 CEST

Original text of this message