Higher Express Banner-APEX Integration Framework

advertisement
Higher Express Banner-APEX Integration Framework
What is Oracle Application Express?
• “Oracle Application Express (Oracle APEX) is a
rapid web application development tool for the
Oracle database. Using only a web browser and
limited programming experience, you can
develop and deploy professional applications
that are both fast and secure. Oracle APEX is a
fully supported, no cost option of the Oracle
database.”
http://www.oracle.com/technology/products/database/application_express/index.html
Higher Express 2010, 2011
2
Application Express and Banner
• You can create applications in a fraction of the time
– that have the full functionality of Banner
Oracle Forms
– that are more dynamic and useful than the
Self-Service Banner web applications
• Your end users will notice the difference
Higher Express 2010, 2011
3
Application Express and Banner
• Ease of Development
– Uses PL/SQL and SQL – nothing new to learn
– Powerful wizards and features
– No web programming experience needed
– No Java experience needed
• APEX will allow your IT Shop to extend Banner while
at the same time keeping Banner vanilla.
Higher Express 2010, 2011
4
Application Express and Horizon
SunGard is implementing Project Horizon migrating
all Oracle forms to Grails (Java platform)
– SunGard will be incorporating JQuery libraries
• APEX 4.0, the latest release, incorporates JQuery as
Plug-In components. SunGard libraries can be
incorporated within APEX.
– Future API calls will be referenced via Web Services
• APEX has a built in Web Service Component. APEX 4.0 also
incorporates REST Web Services as a standard declarative
component.
APEX will continue to remain an excellent option to
extend the base functionality of Banner as SunGard
migrates to Horizon.
Higher Express 2010, 2011
5
Securing & Administering APEX Applications
• Your institution will need to create authorization
security procedures for your APEX applications
• Why not use Banner security?
– This is already a proven security methodology
– Your institution has already invested time and
resources along with ongoing yearly maintenance
– Leverage Banner security along with APEX security
– APEX applications will coexist within the Banner
Security framework
• One single source of security administration and reporting
• Can be managed by your existing security Administrators
Higher Express 2010, 2011
6
Higher Express Banner-APEX Security Framework
• Integrates Banner and APEX security
– Applications will automatically be secured
• Allows you to focus on application development
• Flexible
– Can extend with your custom business rules
– Add your own layout and style
• No modifications to Banner baseline code
• Consists of two modules:
– Self-Service Banner (SSB) Security Module
– GSASECR Security Module
Higher Express 2010, 2011
7
Self-Service Banner (SSB) Security Module
• Secure - closes all potential security holes
– Cannot be hacked either from within or from without a
valid SSB session
– Algorithmic process securely opens the door to allow
authenticated access than closes the door
– All authentication parameters are encrypted
– Continuously validates the SSB Banner session
– Your existing Web Tailor security settings will
automatically be used
– Nothing is hard coded, no extraneous grants required
Higher Express 2010, 2011
8
SSB Security Module cont’d
• Centralized Administration
– APEX applications are defined within Web Tailor
Administration
– Can be administered by your Web Tailor Administrator
– Your institutions existing Web Tailor security settings
will automatically be detected and used
– SSB APEX applications can be authenticated with
Luminis just as any other SunGard SSB application
Higher Express 2010, 2011
9
GSASECR Security Module
• Uses GSASECR Banner Security Framework
– APEX applications will have the same security as INB
Banner forms and Job Submission processes
– APEX applications are defined within the GSASECR
Banner Security form exactly as any other Banner form
or process
– Allows use of BAN_DEFAULT_M & BAN_DEFAULT_Q to
further secure your applications
– These APEX applications can be administered by your
DBA/GSASECR Security Administrator.
Higher Express 2010, 2011
10
GSASECR Security Module cont’d
• Users can log into their APEX applications via a
single sign on menu
– The menu will consist of only their specific
applications
– Using the menu users will be able to access their
APEX applications without having to re-authenticate
– APEX applications can authenticate against Active
Directory, Oracle, LDAP or other custom
authentication scheme
• No need for LDAP/single sign on functionality.
Higher Express 2010, 2011
11
GSASECR Security Module cont’d
• Two Factor Authentication (Optional)
– Applications can only be accessed from the Main
Menu, can not be accessed directly
– Main Menu must first be accessed via SSB or
Luminis
• Upon successful authentication via SSB/Luminis,
user must log into the Main Menu via the
authentication scheme of your choosing
• This option will ensure that your applications can
not be accessed out side of Luminis/SSB.
Higher Express 2010, 2011
12
Contact
• ed@higherexpress.com
• http://higherexpress.com
Higher Express 2010, 2011
13
Download