Manage Oracle APEX in Autonomous Database
Learn about functionality only available in Oracle APEX in Autonomous Database.
Note:
To learn more about Autonomous Database instance lifecycle operations, see Lifecycle Operations in Using Oracle Autonomous Database Serverless.- About Document Generator
Learn about privileges required to configure Document Generator and how to configure Document Generator for an APEX instance.
Parent topic: Manage Oracle APEX
About Document Generator
Learn about privileges required to configure Document Generator and how to configure Document Generator for an APEX instance.
The Document Generator Function pre-built function enables you to generate documents based on Office templates and JSON data. You can configure the Document Generator Function for APEX from the OCI Console.
For more information about the pre-built function, see Document Generator Function.
- IAM Policies and Oracle Database Privileges
Learn more about OCI permissions the OCI user requires in order to configure Document Generator. - Configure Document Generator
Learn how to configure Document Generator.
Parent topic: Manage Oracle APEX in Autonomous Database
IAM Policies and Oracle Database Privileges
Learn more about OCI permissions the OCI user requires in order to configure Document Generator.
Required IAM Policies
Policy Statement | Justification |
---|---|
allow group '<identity_domain_name>'/'<group_name>' to read autonomous-database-family in compartment <compartment> | Required to navigate to the APEX Instance Details page |
allow group '<identity_domain_name>'/'<group_name>' to manage virtual-network-family in compartment <compartment> | Required to create a Database Tools Private Endpoint |
allow group '<identity_domain_name>'/'<group_name>' to manage vaults in compartment <compartment> | Required to create a Vault |
allow group '<identity_domain_name>'/'<group_name>' to manage keys in compartment <compartment> | Required to create a Key |
allow group '<identity_domain_name>'/'<group_name>' to manage secret-family in compartment <compartment> | Required to create Vault Secrets |
allow group '<identity_domain_name>'/'<group_name>' to manage database-tools-family in compartment <compartment> | Required to create Database Tools Connection and Private Endpoint and make use of them |
allow group '<identity_domain_name>'/'<group_name>' to read function-family in compartment <compartment> | Required to select Application, Function, and PbfListing |
allow group '<identity_domain_name>'/'<group_name>' to read object-family in compartment <compartment> | Required to get the Object Storage namespace |
allow group '<identity_domain_name>'/'<group_name>' to manage policies in compartment <compartment> | Required to manage Policies |
Oracle Database Privileges
ADMIN
user of an APEX Instance (Autonomous Database Serverless) already has these grants:
Grant Statement | Justification |
---|---|
GRANT CREATE SESSION TO <user> | Required to create a session (log in to the database) |
GRANT EXECUTE ON DBMS_CLOUD_ADMIN TO <user> EXEC DBMS_CLOUD_ADMIN.ENABLE_RESOURCE_PRINCIPAL(username => '<user>', grant_option => TRUE) |
Required to enable/disable the ADB-S Resource Principal |
GRANT APEX_ADMINISTRATOR_ROLE TO <user> | Required to execute APEX_INSTANCE_ADMIN.{GET,SET}_PARAMETER |
GRANT SELECT ON SYS.DBA_CREDENTIALS TO <user> GRANT SELECT ON SYS.DBA_TAB_PRIVS TO <user> |
Required to obtain the enabled status of the ADB-S Resource Principal |
Parent topic: About Document Generator
Configure Document Generator
Learn how to configure Document Generator.
To configure Document Generator:
In the Configure Document Generator page:
Parent topic: About Document Generator