Documentation
Back to Security Overview
Security Report & SEC Editor
A complete metadata security report, plus an Excel-native editor for changing security at scale.
The Report
Generates a full picture of your application's security model:
- Dimension security flags — which dimensions have security enabled.
- Member ACL hierarchies — every access control entry, in hierarchy context.
- Effective access — the resolved result of inheritance and group membership: who can actually see and write what.
The Four Tabs
- Object Access — the artifact ACL corpus by type, access level and principal, with every group resolved against a dimension in one pass.
- Effective Access — the answer to "who can see and do what", ready before the auditor asks.
- Security Changes — who changed which permission, and when, read from the audit export. When the export contains no security rows it says so and explains why, instead of showing an empty tab. Note that group and user administration is a separate audit trail in Oracle, so it is not expected here.
- Group Cleanup — which groups can safely be deleted. It has its own guide: Group Cleanup.
Exports: the Editor Sheet, a Formatted Sheet, Report Sheets, PDF, and To Excel on Security Changes, Object Access and Effective Access. A group can be sent straight to Manage Groups from the report.
The SEC Editor Sheet
The report writes an editable SEC Editor worksheet. To change security:
- Mark rows Add, Update, or Remove and edit the assignment values in place.
- Click Submit SEC Sheet in the ribbon (enabled whenever the active sheet is a SEC Editor sheet).
- EPM Commander validates every row first, then runs Oracle's Import Security job for the marked changes.
- Review the job result in the Job Console.
Validation happens before anything touches the environment — malformed rows are flagged, not submitted.