Create a Connection

Before you can build an integration, you must create the connections to the applications with which you want to share data.

Note:

You can also create a connection in the integration canvas. See why working with projects is preferred.

To create a connection in Oracle Integration:

  1. Decide where to start:
    • Work in a project (see why working with projects is preferred).
      1. In the navigation pane, click Projects.
      2. Select the project name.
      3. Click Integrations Integrations icon.
      4. In the Connections section, click Add if no connections currently exist or + if connections already exist. The Create connection panel opens.
    • Work outside a project.
      1. In the navigation pane, click Design, then Connections.
      2. Click Create. The Create connection panel opens.
  2. Select the adapter to use for this connection. To find the adapter, scroll through the list, or enter a partial or full name in the Search field.

  3. Enter the information that describes this connection.
    Element Description
    Name

    Enter a meaningful name to help others find your connection when they begin to create their own integrations.

    Identifier

    Automatically displays the name in capital letters that you entered in the Name field. If you modify the identifier name, don't include blank spaces (for example, SALES OPPORTUNITY).

    Role

    Select the role (direction) in which to use this connection.

    Note: Only the roles supported by the adapter you selected are displayed for selection. Some adapters support all role combinations (trigger, invoke, or trigger and invoke). Other adapters support fewer role combinations.

    When you select a role, only the connection properties and security policies appropriate to that role are displayed on the Connections page. If you select an adapter that supports both invoke and trigger, but select only one of those roles, you'll get an error when you try to drag the adapter into the section you didn't select.

    For example, assume you configure a connection for the Oracle Service Cloud (RightNow) Adapter as only an invoke. Dragging the adapter to a trigger section in the integration produces an error.

    Keywords

    Enter optional keywords (tags). You can search on the connection keywords on the Connections page.

    Description

    Enter an optional description of the connection.

    Share with other projects

    Note: This field only appears if you are creating a connection in a project.

    Select to make this connection publicly available in other projects. Connection sharing eliminates the need to create and maintain separate connections in different projects.

    When you configure an adapter connection in a different project, the Use a shared connection field is displayed at the top of the Connections page. If the connection you are configuring matches the same type and role as the publicly available connection, you can select that connection to reference (inherit) its resources.

    See Add and Share a Connection Across a Project.

  4. Click Create.

    Your connection is created. You're now ready to configure the connection properties, security policies, and (for some connections) access type.

  5. Follow the steps to configure a connection.

    The connection property and connection security values are specific to each adapter. Your connection may also require configuration with an access type such as a private endpoint or an agent group.

  6. Test the connection.

Configure Connection Properties

Enter connection information so your application can process requests.

  1. Go to the Properties section.
  2. In the AS4 service URL field, specify the URL of the trading partner endpoint at which AS4 messages are received.
    This field is only displayed when configuring the AS4 Adapter as an invoke connection. There are no connection properties required when configuring the AS4 Adapter as a trigger connection.
  3. If you selected the Invoke or Trigger and invoke role, optionally select to use two-way SSL connections in the outbound direction. This feature is not available if you select the Trigger role. Ensure that you have first completed all two-way SSL connection prerequisites. See Prerequisites for Creating a Connection.

    Note:

    If you need to use both asynchronous message disposition notifications (MDNs) and two-way SSL, ensure that you selected the Trigger and invoke role when creating the AS4 Adapter connection.
    1. From the Enable two-way SSL for outbound connections list, select Yes if you want to enable two-way SSL for outbound connections. Otherwise, select No.
    2. In the Client identity key alias (two way SSL) field, enter the certificate alias to use to establish client identity during two-way SSL communication.
    If the test connection fails because two-way SSL communication didn't happen correctly, note that different servers may respond differently. See Troubleshoot Two-Way SSL Connections.

Configure Connection Security

Configure security for your AS4 Adapter connection.

  1. Go to the Security section.
  2. Select the security policy and enter the associated credentials.

    Note:

    • All credential fields are optional by default. However, they are required for achieving various levels of message security. See the Comments column in the tables below.
    • Import the partner certificates and private keys described in this section on the Certificates page available by selecting Settings, and then Certificates. Upload of only the X.509 (SSL transport) type is supported. See Upload a Certificate to Connect with External Services.
    1. If you select AS4 Advanced Username Password Token Policy:
      This security policy provides finer control and flexibility for using separate certificates and keys for different operations (for example, encrypt, decrypt, sign, and sign verify). This security policy enables you to specify separate user names and passwords for AS4 authentication.
      Login Credentials Comments
      • Username (Async Receipt): Enter the user name used by a trigger connection for authentication while sending an outbound receipt.
      • Password (Async Receipt): Enter the password used by a trigger connection for authentication while sending an outbound receipt.
      These are optional fields, but are required for authentication while sending an outbound receipt.
      • Private Key Alias (AS4 Decryption): Enter the private key alias used by a trigger connection for inbound data decryption. This is the same key that you upload for the Identity category of the X.509 (SSL transport) type by selecting Settings, and then Certificates.
      • Key Password (AS4 Decryption): Enter the password for the private key used by a trigger connection for inbound data decryption.
      These are optional fields, but are required for inbound data decryption of business messages.
      • Private Key Alias (Receipt Signature): Enter the private key used by a trigger connection to deliver a signed receipt. This is the same key that you upload for the Identity category of the X.509 (SSL transport) type by selecting Settings, and then Certificates.
      • Key Password (Receipt Signature): Enter the password associated with the private key to deliver a signed receipt.
      These are optional fields, but are required for inbound signed receipt delivery of business messages.
      • Certificate Alias (Inbound AS4 Sign Verify): Enter the partner public certificate used by a trigger connection for inbound AS4 signature verification. This is the same certificate that you upload for the Trust category of the X.509 (SSL transport) type by selecting Settings, and then Certificates.
      This is an optional field, but is required for inbound signature verification of business messages.
      • Certificate Alias (Inbound Receipt Sign Verify): Enter the partner public certificate used by a trigger connection for inbound receipt signature verification. This is the same certificate that you upload for the Trust category of the X.509 (SSL transport) type by selecting Settings, and then Certificates.
      This is an optional field, but is required for inbound receipt signature verification of business messages.
      • Username (AS4 endpoint): Enter the username used by an invoke connection for sending an AS4 message to a protected partner endpoint.
      • Password (AS4 endpoint): Enter the password required for sending the AS4 message to the protected partner endpoint.
      These are optional fields, but are required for sending business messages to a partner's secured endpoint.
      • Private key alias (AS4 signature): Enter the private key used by an invoke connection to send a signed AS4 message. This is the same key that you upload for the Identity category of the X.509 (SSL transport) type by selecting Settings, and then Certificates.
      • Key password (AS4 signature): Enter the password associated with the private key (AS4 signature) uploaded on the Certificates page by selecting Settings, and then Certificates.
      These are optional fields, but are required for outbound signature generation of business messages.
      • Certificate Alias (Outbound AS4 Encrypt): Enter the partner public certificate used by an invoke action for outbound AS4 message encryption. This is the same certificate that you upload for the Trust category of the X.509 (SSL transport) type by selecting Settings, and then Certificates.
      This is an optional field, but is required for outbound data encryption of business messages.
      • Certificate Alias (Response Receipt Sign Verify): Enter the partner public certificate used by an invoke action for outbound response receipt certificate verification. This is the same certificate that you upload for the Trust category of the X.509 (SSL transport) type by selecting Settings, and then Certificates.
      This is an optional field, but is required for outbound response receipt certificate verification.
    2. If you select AS4 Basic Username Password Token Policy.
      This security policy requires you to specify minimal configuration details to work in an integration.
      Login Credentials Comments
      • Username: Enter the username used for HTTP authentication of the trading partner's protected endpoint.
      • Password: Enter the password used for HTTP authentication.

      These are optional fields, but are required for sending business messages and asynchronous MDN acknowledgments to a partner's secured endpoint.

      • Private key alias: Enter the private key used for inbound data decryption and outbound signature generation. This is the same key that you upload for the Identity category of the X.509 (SSL transport) type by selecting Settings, and then Certificates.
      • Key password: Enter the password associated with the private key that you upload on the Certificates page by selecting Settings, and then Certificates.
      These are optional fields, but are required for inbound data decryption of business messages and outbound signature generation for business messages and MDN acknowledgments.
      • Partner certificate alias: Enter the partner certificate used for outbound data encryption and inbound signature verification. This is the same key that you upload for the Trust category of the X.509 (SSL transport) type by selecting Settings, and then Certificates.

      This is an optional field, but is required for outbound data encryption of business messages, signature verification of synchronous MDN responses in adapter invoke operations, and inbound signature verification of business messages and MDN acknowledgments.

Test the Connection

Test your connection to ensure that it's configured successfully.

  1. In the page title bar, click Test. What happens next depends on whether your adapter connection uses a Web Services Description Language (WSDL) file. Only some adapter connections use WSDLs.
    If Your Connection... Then...

    Doesn't use a WSDL

    The test starts automatically and validates the inputs you provided for the connection.

    Uses a WSDL

    A dialog prompts you to select the type of connection testing to perform:

    • Validate and Test: Performs a full validation of the WSDL, including processing of the imported schemas and WSDLs. Complete validation can take several minutes depending on the number of imported schemas and WSDLs. No requests are sent to the operations exposed in the WSDL.

    • Test: Connects to the WSDL URL and performs a syntax check on the WSDL. No requests are sent to the operations exposed in the WSDL.

  2. Wait for a message about the results of the connection test.
    • If the test was successful, then the connection is configured properly.
    • If the test failed, then edit the configuration details you entered. Check for typos and verify URLs and credentials. Continue to test until the connection is successful.
  3. When complete, click Save.