Re: APEX developer login question

From: Jeff Chirco <backseatdba_at_gmail.com>
Date: Tue, 20 Oct 2020 11:57:21 -0700
Message-ID: <CAKsxbLo-ZCiLkKP-BCYf57dkCCfpWPfNG8M-iwN4yPKrkrAM3g_at_mail.gmail.com>



Thanks for your help. I decided to go with Database level logins as all our developers have database accounts anyways.

On Thu, Oct 15, 2020 at 7:33 AM Ilmar Kerm <ilmar.kerm_at_gmail.com> wrote:

> Yes, this feature was added quite a few years ago. Works good and supports
> all the same built in authentication mechanisms as authentication for apps.
> I've been using LDAP and HTTP header authentication for workspace login.
> But you need to add users to the workspace first, with the same username
> as the authentication scheme returns.
> You need to create workspace users in each workspace on the APEX side - on
> LDAP side they are of course the same user.
>
> Quick google returned a few tutorials:
>
> http://info.aimstar.com/blog/configuring-ldap-authentication-for-oracle-apex-workspaces
> How to Configure LDAP Authentication for Workspaces in APEX 5.0 (Doc ID
> 2035320.1)
>
>
> On Thu, Oct 15, 2020 at 4:14 PM Jeff Chirco <backseatdba_at_gmail.com> wrote:
>
>> We have AD authentication working for our Apps. But I was referring to
>> Workspace login to develop the app.
>>
>> On Wed, Oct 14, 2020 at 10:51 AM Noveljic Nenad <
>> nenad.noveljic_at_vontobel.com> wrote:
>>
>>> Hi Jeff,
>>>
>>>
>>>
>>> We run Apex on Tomcat. We’ve configured the Kerberos authentication
>>> according to the Tomcat manual, for example
>>> https://tomcat.apache.org/tomcat-8.0-doc/windows-auth-howto.html.
>>>
>>>
>>>
>>> Then we configured the Kerberos authentication scheme in the application
>>> builder/shared components.
>>>
>>>
>>>
>>> This is an external authentication, so no user administration in Apex.
>>> User name will be stored in v('APP_USER') which you can use in the
>>> authorization scheme.
>>>
>>>
>>>
>>> Best regards,
>>>
>>>
>>>
>>> Nenad
>>>
>>>
>>>
>>> https://nenadnoveljic.com/blog/
>>>
>>>
>>>
>>>
>>>
>>> *From:* oracle-l-bounce_at_freelists.org <oracle-l-bounce_at_freelists.org> *On
>>> Behalf Of *Jeff Chirco
>>> *Sent:* Mittwoch, 14. Oktober 2020 17:50
>>> *To:* oracle-l-freelist <oracle-l_at_freelists.org>
>>> *Subject:* APEX developer login question
>>>
>>>
>>>
>>> Is it possible for the APEX developer login to a workspace be
>>> authenticated via database or Active Directory accounts instead of an APEX
>>> account? I couldn't find any documentation on this.
>>>
>>> Part 2 - can an account be shared among different work spaces? Right now
>>> I am creating two accounts to use for two different workspaces.
>>>
>>>
>>>
>>> Thanks,
>>>
>>>
>>>
>>> Jeff
>>>
>>> ____________________________________________________
>>>
>>> Please consider the environment before printing this e-mail.
>>>
>>> Bitte denken Sie an die Umwelt, bevor Sie dieses E-Mail drucken.
>>>
>>>
>>> Important Notice
>>> This message is intended only for the individual named. It may contain
>>> confidential or privileged information. If you are not the named addressee
>>> you should in particular not disseminate, distribute, modify or copy this
>>> e-mail. Please notify the sender immediately by e-mail, if you have
>>> received this message by mistake and delete it from your system.
>>> Without prejudice to any contractual agreements between you and us which
>>> shall prevail in any case, we take it as your authorization to correspond
>>> with you by e-mail if you send us messages by e-mail. However, we reserve
>>> the right not to execute orders and instructions transmitted by e-mail at
>>> any time and without further explanation.
>>> E-mail transmission may not be secure or error-free as information could
>>> be intercepted, corrupted, lost, destroyed, arrive late or incomplete. Also
>>> processing of incoming e-mails cannot be guaranteed. All liability of
>>> Vontobel Holding Ltd. and any of its affiliates (hereinafter collectively
>>> referred to as "Vontobel Group") for any damages resulting from e-mail use
>>> is excluded. You are advised that urgent and time sensitive messages should
>>> not be sent by e-mail and if verification is required please request a
>>> printed version. Please note that all e-mail communications to and from the
>>> Vontobel Group are subject to electronic storage and review by Vontobel
>>> Group. Unless stated to the contrary and without prejudice to any
>>> contractual agreements between you and Vontobel Group which shall prevail
>>> in any case, e-mail-communication is for informational purposes only and is
>>> not intended as an offer or solicitation for the purchase or sale of any
>>> financial instrument or as an official confirmation of any transaction.
>>> The legal basis for the processing of your personal data is the
>>> legitimate interest to develop a commercial relationship with you, as well
>>> as your consent to forward you commercial communications. You can exercise,
>>> at any time and under the terms established under current regulation, your
>>> rights. If you prefer not to receive any further communications, please
>>> contact your client relationship manager if you are a client of Vontobel
>>> Group or notify the sender. Please note for an exact reference to the
>>> affected group entity the corporate e-mail signature. For further
>>> information about data privacy at Vontobel Group please consult
>>> www.vontobel.com.
>>>
>>
>
> --
> Ilmar Kerm
>

--
http://www.freelists.org/webpage/oracle-l
Received on Tue Oct 20 2020 - 20:57:21 CEST

Original text of this message