The Hitachi ID Identity and Access Management Suite ships with connectors for all three major Oracle ERP application families, including eBusines Suite (EBS), PeopleSoft and JD Edwards (both client/server and iSeries versions).

Oracle eBusiness Suite

Hitachi ID Identity and Access Management Suite can manage passwords on Oracle eBusiness Suite by connecting to the Oracle Database server using SQL*Net and using the existing stored procedures on the server to update accounts.

No agent software is installed on the Oracle Applications server or the back end database.

Hitachi ID Identity and Access Management Suite connectors can create, delete, enable, disable, modify and rename Oracle eBusiness Suite accounts in one or more instances of the Oracle eBusiness system. All the basic operations are supported by calling the appropriate PLSQL user management stored procedures included by default in all Oracle Applications installations.

Oracle PeopleSoft ERP and HR

Hitachi ID Identity and Access Management Suite uses the native PeopleSoft component interface to validate current PeopleSoft passwords, to administratively reset PeopleSoft passwords and to make other updates. Bulk reading, for example to enumerate users who can sign into PeopleSoft, is done via SQL, for example by scanning the PSOPRDEFN table.

Hitachi ID Identity and Access Management Suite connectors can create, delete, enable, disable and modify login accounts on a PeopleSoft application instance as well as assign and revoke entitlements.

Direct database access is required (and used) to enumerate PeopleSoft / PeopleTools accounts and roles. Login users are defined in the PSOPRDEFN table while available roles come from the PSROLEDEFN. User assignment of entitlements within PeopleSoft is via the PSROLEUSER table, where roles expand out to permission lists, which in turn grant access to components, pages, and other areas of the system.

A separate Hitachi ID Identity and Access Management Suite connector can also be used to monitor PeopleSoft HR for employees (i.e., from the PS_EMPLOYEES table) -- as a system of record to provide authoritative attribute data and to trigger requests for onboarding, deactivation, transfers, etc.

Oracle JD Edwards World (on iSeries)

Hitachi ID Identity and Access Management Suite manages J.D. Edwards World passwords by establishing a Telnet or TN5250 session from the Hitachi ID Identity and Access Management Suite server to the OS/400 server where J.D. Edwards World is installed, logging in with an administrator password and issuing a password reset command.

No agent software is installed on the J.D. Edwards server.

The same mechanisms are used by the Hitachi ID Identity and Access Management Suite connector to create new accounts, modify identity attributes and deactivate/delete accounts.

Oracle JD Edwards OneWorld (client/server)

Hitachi ID Identity and Access Management Suite can integrate with J.D. Edwards OneWorld by binding to its remote application programming interface (API) (normally with the COM binding) and listing accounts, validating current passwords and administratively resetting passwords.

No agent software is installed on the J.D. Edwards OneWorld server.

The same mechanisms are used by the Hitachi ID Identity and Access Management Suite connector to create accounts, modify identity attributes and deactivate/delete accounts.