You are on page 1of 57

Business Objects XI 3.

x Architecture

 

 

Business Objects XI 3 is an Enterprise Software. Business Objects Enterprise includes specialized services like Web Intelligence, Desktop Intelligence, Crystal report components and so on. Business Objects Enterprise is designed for high performance. Is very flexible meaning that one can grow a system with small user group and single application to thousands of users and mutliple applications.

1
1

Business Objects XI 3.x Architecture


  

Modular in design. Can be vertically scaled to provide cost effectiveness Can provide solid reliability and performance when horizontally scaled.

2
2

Enterprise Architecture

3
3

Enterprise Architecture
  

Enterprise Infrastructure provides basic means of communication between the various process/servers. Enterprise Infrastructure is a series of services that communicate via CORBA (Common Object Request Broker Architecture). The Enterprise Infrastructure provides the framework for establishing connections between clients and servers. The Object concept. The Service concept. Examples: Enterprise Web Services, Storage Services,Processing services.

 

4
4

Server Intelligence


What is a node. Server Intelligence is a component of the Central Management Console (CMC) that simplifies administrative procedures previously carried out by the Central Configuration Manager (CCM). archives server process information for easy disaster recoveries.

5
5

BusinessObjects XI 3.X Administration Tools


Central Management Console (CMC)  Web based administrative application  Manages the entire system including:
Users and Groups Folders and Objects Categories, Inboxes, Events, Business Calendars Universes and Connections Servers and Server Groups Business Objects Enterprise Applications Authentication and Authorization rights

Central Configuration Manager (CCM)  Windows based administrative application  Manages services running on a particular server

6
6

Central Management Console (CMC)


The Central Management Console (CMC) is a web-based tool which offers a single interface through which you can perform almost every day-to-day administrative task, including user management, content management, and server management. There are two ways to access the CMC: 1. Browser 2. Start menu.

7
7

To log on to the CMC


1. Type the appropriate URL from your browser : use the BusinessObjects Enterprise Java Administration Launchpad, go to the following page: http://iginsap1.in.intelligroup.com:8080/CmcApp/logon.faces 2. On Windows, navigate to Start > Programs > Business Objects XI 3.1> Business Objects Enterprise > >BusinessObjects Enterprise Java Administration Launchpad.

8
8

CMC Home Page

9
9

User management

In the Users area, you can specify everything required for a user to access BusinessObjects Enterprise. The two default user accounts: Administrator This user belongs to the Administrators and Everyone groups. An administrator can perform all tasks in all BusinessObjects Enterprise applications (for example, the CMC, CCM, Publishing Wizard, and InfoView).  Guest This user belongs to the Everyone group. This account is enabled by default, and is not assigned a password by the system. If you assign it a password, the single sign-on to InfoView will be broken.


10
10

Group management
In the Groups area, you can create groups that give a number of people access to the report or folder. This enables you to make changes in one place instead of modifying each user account individually.  Administrators Members of this group can perform all tasks in all of the BusinessObjects Enterprise applications (CMC, CCM, Publishing Wizard, and InfoView). By default, the Administrator group contains only the Administrator user.  Everyone Each user is a member of the Everyone group. By default, the Evewryone group allows members to access all the reports that are found in the Report Samples folder.  NT users When you install BusinessObjects Enterprise on Windows, BusinessObjects Enterprise creates a BusinessObjects NT Users group. This group is also added to Windows on the local machine and the user who installed BusinessObjects Enterprise is automatically added to this group. By default, members of this group are able to view folders and reports.  Universe Designer users Users who belong to this group are granted access to the Universe Designer folder and the Connections folder. They can control who has access rights to the Designer application. You must add users to this group as needed. By default, no user belongs to this group.
11
11

Creating an user account


1. Go to the Users management area of the CMC. 2. Click New User. 3. Type the account name, full name, email, and description information. 4. Specify the password information and settings. 5. Select the connection type; the options are Concurrent User and Named User. Choose Concurrent user if this user belongs to a license agreement that states the number of users allowed to be connected at one time. Choose Named user if this user belongs to a license agreement that associates a specific user with a license. Named user licenses are useful for people who require access to BusinessObjects Enterprise regardless of the number of other people who are currently connected. 6. Click OK. The user is added to the system and is automatically added to the Everyone group. An inbox is automatically created for the user.
12
12

Creating a group
Groups are collections of users who share the same account privileges; therefore, you may create groups that are based on department, role, or location. Groups enable you to change the rights for users in one place (a group) instead of modifying the rights for each user account individually. Also, you can assign object rights to a group or groups. After creating a new group, you can add users, add subgroups, or specify group membership so that the new group is actually a subgroup. To create a new group 1. Go to the Groups management area of the CMC. 2. Click New Group. 3. On the Properties tab, enter the group name and description. 4. Click OK.

13
13

Adding Users to groups


There are two ways to add users to groups: In the Users management area, Add a user to one or more groups. In the Groups management area, Add one or more users to a group. To add a user to one or more groups 1. Go to the Users management area of the CMC. 2. Under Account Name, click the link to the user whose properties you want to change. 3. Click the Member of tab to specify the group or groups the user should belong to. 4. Click the Member of button to view the available groups. 5. In the Available groups area, select the group(s) that the new user should be a member of. Use SHIFT+click or CTRL+click to select multiple groups. 6. Click the > arrow to add the group(s); click the < arrow to remove the group(s). 7. Click OK. The Member of tab appears and lists the groups in which the user is a member.
14
14

Q&A

15
15

Adding or more usersgroups users to to a group To add one


1. In the Groups management area of the CMC, click the link for the group. 2. Click the Users tab. 3. Click Add Users. 4. Select the users to add to the group; then click the > arrow. Tip: To select multiple users, use the SHIFT+click or CTRL+click combination. Tip: To search for a specific user, use the Look For field.

16
16

Demonstration Users & Groups

17
17

CMC Essentials Security Basics


Terminology


Principal a user or group Rights override -a rights behavior in which rights that are set on child objects override the rights set on parent objects
18
18

General Global Rights access rights

Accessislevels by Access Control  Security managed


Lists (ACLs)


ACL: list of rights for a User or a Group over an Object (application, server, universe, report, folder, category, server, user, group). Access levels are based on a model of increasing rights: beginning with No Access and ending with Full Control, each

19
19

Pre-defined Access Levels Access Rights involved


level
No Access View Schedule Cannot access the object. View objects View document instances View Access Level rights, plus: Schedule the document to run Define server groups to process jobs Copy objects to another folder Schedule to destinations

20
20

Access level
View On Demand Full Control

Rights involved
Schedule Access Level rights, plus: Refresh the reports data All available advanced rights, including: Add objects to the folder Edit objects Modify rights users have to objects Delete objects

21
21

Advanced Rights


Granular view of the rights that make up the access levels To provide you with full control over object security, the CMC allows you to set Advanced object rights. These Advanced settings provide increased flexibility as you define security levels for objects that you have published to BusinessObjects Enterprise.

22
22

Advance Rights List




Inherited the right was assigned at a higher level Explicitly Granted the right is granted at this level

Explicitly Denied the right is denied at this level This is a very powerful right. If a right is

23
23

Navigating the Rights tab

Administrators use Rights tabs in the CMC to view and change the object rights that principals have to any folder, report, or other BusinessObjects Enterprise object.

24
24

Columns in the Rights tab


Colum Description n
Name Lists all principals who have been given rights to an object. Click Add/Remove to add or remove a user or group to this object. Shows whether the principal is a user or a group. Shows how each principals rights are determined. You can change the rights for a principal by selecting a 25

Object Access Level

25

Object Inheritance
Global Security Default security set for the entire system


Folder Security Inherits rights from the global level, security set at this level overrides the global level security that is inherited.
 

Object Security

26
26

Demonstration Folders and Content

27
27

Object Inheritance Rules

28
28

Object Inheritance Rules

29
29

Group Membership Rules

30
30

Group MemberShip Rules

31
31

Group Membership Rules

32
32

Deneid!


The explicitly Denied right can only be granted through Advanced rights The Denied right overrides all other rights. If a user has been Denied a right at any level, the user will not be able to access that right at that level or any lower level. To grant a right that has been Denied at a
33
33

Content Management Recommendations




Assign security at the folder level to groups whenever possible. Avoid setting rights for specific users on specific objects. This reduces the complexity of your security model.
34
34

Content Management Recommendations




Use predefined access levels whenever possible. Avoid setting Advanced rights. This reduces the complexity of your security model.
35
35

Name Users License


 

Named Users License: Administrator explicitly determines which users consume a license Concurrent Users Specify number of Users who can connect to BOE at the same time. In XI, after migration from 6x,users need to be explictly set as Named Users in the CMC.

36
36

Publishing Profiles


Publishing profiles allow the content of desktop Intelligence publications to be personalized for the recipient Formally called single-pass report bursting Schedule once and deliver the appropriate data to each user on the distribution list
37
37

Publishing Profiles
Three steps to creating a publishing profile that uses a universe object


Define the profile Define the profile targets Assign profile values to users/groups
38
38

Define the profile Profiles Publishing  Select profiles from the CMC main menu  Choose new profile  Enter an appropriate name and description

39
39

Define the profile targets Publishing Profiles  Select profiles from the CMC main menu  Select a profile  Click the profile targets tab  Select new

40
40

Publishing Profiles
Define the profile targets (continued)  Select a universe  Enter a class name (case sensitive)  Enter an object name (case sensitive)

41
41

Assign profile values for users/groups Publishing Profiles  Select profiles from the CMC main Menu  Select a profile  Click the profile Values tab  Select New Value

42
42

Publishing Profiles
Assign profile values for users/groups (continued)  Add users and/or groups  Assign a value (usually in the form of =value or list(value1,value2,)

43
43

Server Groups
Server groups allow servers with common properties to be associated together Servers might be grouped based on:  Geography  Business units  Hardware capabilities  Etc.
44
44

Creating a server group Server Groups  Select Server Groups from the CMC main Menu  Choose New Server Group  Name your new group

45
45

Server Groups
Creating a server group (continued)  Select the Servers tab and associate the appropriate server/services with the new group  Note: The Subgroups and Member of tabs allow the creation of a hierarchical relationship between server groups!

46
46

Calendars and Events


Calendars
Allow scheduled jobs to be easily associated with complexschedules 1. Exclude holidays 2. Process on important corporate fiscal dates 3. Irregular schedules
47
47

Calendars and Events


Calendars (continued)
From the CMC they can select calendars and easily create a new calendar that includes their special holidays

48
48

Calendars and Events


Calendars (continued) Custom schedule are easily accommodated

49
49

Calendars and Events


Events
Fine grain control of when schedule jobs run Three types of events: 1. File events 2. Schedule events 3. Custom events Monitored by the event server

50
50

Calendars and Events


Events
Creating a new Event

51
51

Central Configuration Manager




The Central Configuration Manager (CCM for short) partially replaces the Admin Console used in previous versions of Business Objects. The primary function of the CCM is to provide a status of the various servers needed to keep an XI implementation up and running.

52
52

CCM Overview


As you can see, the CCM provides a list of the servers in the deployment, and gives a status and description of each server:

53
53

Additional Info
Folders:
BOE XI introduces the folder concept, which is similar to the document and universe domains in Classic Business Objects.  All published content is stored in a folder  All content is stored in only one folder  Ideally, the folder structure should mirror


54
54

Additional Info
Categories:
Categories help users to classify published objects (universes, reports, etc.)  An item can be stored in multiple categories  Categories can be thought of as an alternative organizational structure

55
55

Additional Info
Key Concepts:
Children (sub-groups, sub-folders) inherit the rights of their parents by default.  Advanced Rights override inherited rights.  Denied Rights override granted rights.

56
56

Thank you
57
57

You might also like