You must be logged in as an administrator or as a user with the group privilege Manage Connections to manage data store connection definitions.
In this release, when your admin enables the Enhanced Experience user interface, you will see changes to workflows you may have used in previous releases.
- Connections Page
- List Data Store Connections
- Search and Filter Lists
- Add Data Store Connections
- Modify Data Store Connections
- Delete Data Store Connections
- Select a Connection for a Source
- Use User Attributes for Connection Parameters
- Insert Variables for Connection Parameters
Add Data Store Connections
You can add and validate data store connections on the Connections page in the UI for connector servers that are registered in your environment.You must be logged in as a user with the group privilege Manage Connections to maintain data store connection definitions.
Add and Validate a Connection
- Log in as a user with the group privilege Manage Connections.
- Select the Connection card on your home page or Connections from the main menu. The Connections work area appears. The Connections page lists the data store connections you have defined, identifies the number of associated data sources, and other overview information about your existing connections.
- Select Create Connection in the upper right corner of the connection list. The Select a Connection Type dialog appears.
- Select the connection type you want to use for the connection definition. The Add <type> Connection page appears.
- Optionally, change the default name for the connection in the Connection Name field.
- The connection details required to connect to a data store vary by data store. Use the fields in Connection Details to specify the URL and other connection details and, if applicable, authentication credentials (User Name and Password fields) required to connect to the data store. Fields highlighted in red are required. Any connection requirements for a specific data store are described in the connector documentation for that data store. See the Data Connector Reference. You can insert variables for connection parameters, if you have defined any custom attributes in your environment. See Insert Variables for Connection Parameters. Additionally, you can select any user attributes you have defined for connection parameters using the up and down arrows in the connection parameter section. See Use User Attributes for Connection Parameters.
- If the Do As User option is available, optionally specify the custom user attributes you set up to enable user delegation. See Apply User Delegation to a Connection.
- This is an optional step. Each data source configuration specifies refresh settings for the data from the data store. If a data store connection requires special credentials to refresh the data source data, select the Add an Override button under Scheduler Overrides and select an override setting to use. The override settings you can specify mirror the regular data store connection settings (except for the connection definition name) and vary based on the type of data store connector used for the connection. See Data Connector Reference. More than one override setting can be specified. Simply select the Add an Override button again and select a different setting and provide its input value. Repeat this process until all override settings required by the data store have been specified.
- Select Validate to validate the connection. If the connection is valid, you can save the connection. If invalid, make changes, then select Validate again.
- Select Save to save the connection.
Add and Validate a Connection to a Dundas BI Data Source or Data Cube
You can use the Dundas BI Connector to connect to any data source used in that environment, or to connect to a data cube or other warehoused data in that environment. This feature also allows you to leverage data organized in a data cube for integration into your analytics environment.- Log in as a user with the group privilege Manage Connections.
- Select Connections from the main menu. The Connections work area opens. The Connections page lists the data store connections you have defined, identifies the number of associated data sources, and other overview information about your existing connections.
- Select Create Connection in the upper right corner of the connection list. The Select a Connection Type dialog appears.
- Select Managed from the available connection types. An Add Managed Connection work area opens.
- Enter a Connection Name, and the name of the Project to which the data source or data cube you want to use belongs.
-
Select a Credentials option from the drop-down list, usually
User.credentials, unless otherwise specified by your system administrator or tenant administrator. Make theIMPERSONATE_ACCOUNTfield visible. - Select Validate to validate the connection. If the connection is valid, you can save the connection. If invalid, make changes, then select Validate again.
- Select Save to save the validated connection.
Modify Data Store Connections
You can modify data store connections as needed if credentials or addresses change. Once updated, your data sources will automatically reference the new connection configuration.In this release, when your admin enables the Enhanced Experience user interface, you will see changes to workflows you may have used in previous releases.
Modify a Data Store Connection
- Log in as an administrator, or user with the group privilege Manage Connections.
- Select the Connection card on your home page or Connections from the main menu. The Connections work area appears. Search the list of data store connections defined to locate the data store connection definition you want to modify. See Search and Filter Lists.
- Select the data store connection definition you want to modify. The Connection Details tab opens.
- Select the name at the top of the work area to make the field editable. Change the name and select Save.
- Use the fields on the Connection Details tab to alter the URL and other connection details and, if applicable, the authentication credentials (User Name and Password fields) required to connect to the data store. Any connection requirements for a specific data store are described in the connector documentation for that data store. See the Data Connector Reference. You can insert variables for connection parameters, if you have defined any custom attributes in your environment. See Insert Variables for Connection Parameters. Additionally, you can select any user attributes you have defined for connection parameters using the up and down arrows in the connection parameter section. See Use User Attributes for Connection Parameters.
- If the Do As User option is available, optionally specify the custom user attributes you set up to enable user delegation. See Apply User Delegation to a Connection.
- This is an optional step. Each data source configuration specifies refresh settings for the data from the data store. If a data store connection requires special credentials to refresh the data source data, select the Add an Override button under Scheduler Overrides and select an override setting to use. The override settings you can specify mirror the regular data store connection settings (except for the connection definition name) and vary based on the type of data store connector used for the connection. See Data Connector Reference. More than one override setting can be specified. Simply select the Add an Override button again and select a different setting and provide its input value. Repeat this process until all override settings required by the data store have been specified.
- Select Validate to validate the connection. If the connection is valid, you can save the connection. If invalid, make changes, then select Validate again.
- Select Save to save the connection.
- To see the data source configuration definitions that use this connection definition, select the Data Sources tab.
- Select Back at the top of the page to return to the Connections work area that lists the connection definitions.
Connect to a Dundas BI Data Store
If you are transitioning from an earlier release of Symphony, complete these steps as you work with technical support to reconnect to the data in your Dundas BI environment.- Register the Dundas BI (formerly Managed) connector server, then add the connector. See Register the Dundas BI (Managed) Connection Server and Define a New Connector.
- Add the credentials to a new connection using the Managed connector. See Add Data Store Connections.
- If you are reconnecting to a Dundas BI data store, update your existing sources to use the new connection.
- Create and validate a new Managed connection. You will need to provide the
PROJECTinformation associated with the data source, your Dundas BI credentials, and make theIMPERSONATE_ACCOUNTfield visible. See Add Data Store Connections. - Navigate to your Sources page, then select each Managed source to update it to use the new connection. The Folder and Entity you select must match your original configuration. See Edit a Data Source.
- Save your changes. Once updated, your data sources will automatically reference the new connection configuration.
Delete Data Store Connections
A data store connection cannot be deleted if it is used by any data source configurations. You must first remove it from the data source configurations before you can delete it.You must be logged in as an administrator or as a user with the group privilege Manage Connections to maintain data store connection definitions.
- Log in as an administrator or as a user with the group privilege Manage Connections.
- Select the Connection card on your home page or Connections from the main menu. The Connections work area appears. The Connections page appears. The Connections page lists the data store connections you have defined and identifies how many data source configurations each connection uses.
- Highlight (hover over) the row listing the data store connection you want to delete. You can search the list to locate the connection definition. See Search and Filter Lists.
-
Select the delete icon (
) in the Actions column for the associated row.
A warning dialog appears.
- Select Delete on the warning dialog. The connection is deleted.
If you try to delete a visual, filter snippet, dashboard, self service report, dashboard link, source, or source field, Self-Service Analytics displays an error message naming any objects dependent on the item you’re trying to delete. You can delete the item after you’ve removed the association from the dependent object. See Fields Usage.
List Data Store Connections
You can list data store connection definitions on the Connections page in the user interface.You must be logged in as a user with the group privilege Manage Connections to maintain data store connection definitions.
- Log in as a user with the group privilege Manage Connections.
- Select the Connection card on your home page or Connections from the main menu. The Connections work area appears. The Connections page appears. The Connections page lists the data store connections you have defined and identifies how many data source configurations each connection uses.
Connections Page
The Connections page allows you to review and maintain the connection definitions used by Self-Service Analytics connectors. Access the Connections page- Log in as an administrator or as a user with the Manage Connections privilege.
- Select the Connection card on your home page or Connections from the main menu. The Connections work area appears. The Connections page appears.
Select Create Connection to add a new connection definition.
If there are many connections listed, you may need to search for the connection you need. Use the search bar to search for a connection in the list. See Search and Filter Lists.
Use User Attributes for Connection Parameters
User attributes (variables) can be used for the connection parameters in a connection definition. Attributes can be defined for the full connection string, the host name, the port number, the cluster name, the user name, or the password, and any other parameters supported by the connector. The attributes are passed to the connection string via custom attributes specified in the user definition or dynamically in the custom attributes specified in the SAML or LDAP configurations for your environment. This topic describes how to set up this functionality.- Step 1: Review and Select Connector Parameters for Which Attributes Can Be Used
- Step 2: Define Custom Attributes
- Step 3: Define Connections Using User Attributes
Step 1: Review and Select Connector Parameters for Which Attributes Can Be Used
Review and select connector parameters for which user attributes can be used- Log in as a system admin or a member of the Supervisors group.
- Select Tools > Connectors from the main menu. The Manage Connector Services page appears.
- In the Connectors section of the page, select connector parameters to review. Alternatively, you can create a new connector definition and review and modify the parameters in the new definition. See Define a New Connector. Either the Edit Connector or the Create New Connector page for the connector appears.
- Review the connector parameters that appear at the bottom of the Edit Connector or Create New Connector page.
-
In the following Impala connector definition, the User Attribute checkbox is selected for the USER_NAME and PASSWORD parameters. The user definitions in this instance must include custom attributes for these parameters (see Step 2) and the connection definitions for this Impala connector must select the appropriate custom attributes as user credentials (see Step 3).

-
Alter the other connector parameters, as needed.
- If a connector parameter is required, make sure its Required checkbox is selected. Depending on the connector server, some parameters are already selected because they are required.
- If a connector parameter should be visible (especially if the parameter is required) when the connection definition is created, make sure its Visible checkbox is selected.
- Select Save to save the connector parameters.
Step 2: Define Custom Attributes
A custom attribute must be defined for every connector parameter for which you selected the User Attribute checkbox in Step 1. The only exceptions are the context variables${User.composerUserName}, ${User.accountId}, and ${User.credentials}. These built-in attributes which automatically exist and can be used connect the currently logged in user.
${User.composerUserName},${User.accountId}: include to insert the name or account ID of the user that is currently logged in.${User.credentials}: include to pass the session ID or trusted access token (in embedded environments) of the user.
- Individually for every user who needs to create data sources from a connection or using the connector. If you use this method, the variable names must be the same for each user. See Specify Custom User Attributes.
- Dynamically in the LDAP or SAML configurations for your Self-Service Analytics instance. See Use Lightweight Directory Access Protocol (LDAP) and Configure Self-Service Analytics to Support SAML.
JavaScript and HTML Source files used for embedding must be encoded in UTF-8 without BOM.
Step 3: Define Connections Using User Attributes
Define connections using user attributes- Log in as an system admin.
- Create or edit a connection using the connector you updated in Step 1. See Add Data Store Connections and Modify Data Store Connections.
-
If a connection parameter is identified as a user attribute, up and down arrows appear in the connection parameter field on the Connections and Connection Details work areas. Use these arrows to select the custom attribute you want to use for the connection from list shown in the Select Custom Attribute drop-down menu.
If the connector associated with the connection type for the connection definition has not been defined with the User Attribute checkbox selected (the User Attribute checkbox was selected in Step 1) for the USER_NAME or PASSWORD parameters, the Select Custom Attribute drop-down menu is not available and you must manually enter the custom attribute in${User.<custom-attribute-name>}format. See Insert Variables for Connection Parameters. Note that the custom attributes in this case do not use the same format as when you select them from the drop-down menu. - Select Validate to validate the connection. If the connection is valid, you can save the connection. If invalid, make changes, then select Validate again.
- Select Save to save the connection.
Insert Variables for Connection Parameters
Variables can be inserted for any connection parameter in a connection definition. The variables are passed to the connection string via custom attributes specified in the user definition or dynamically in the custom attributes specified in the SAML or LDAP configurations for your environment. You can also specify user attributes for use in the connection parameters of a connection definition. See Use User Attributes for Connection Parameters.Step 1: Define Custom Attributes for the Variables
A custom attribute must be defined for every variable you want to use. The only exceptions are the Self-Service Analytics context variables${User.composerUserName}, ${User.accountId}, and ${User.credentials}. These built-in attributes which automatically exist and can be used connect the currently logged in user.
You can define custom attributes in several ways:
- Individually for every user. If you use this method, the variable names must be the same for every user. See Specify Custom User Attributes.
- Dynamically in the LDAP or SAML configurations for your Self-Service Analytics instance. See Use Lightweight Directory Access Protocol (LDAP) and Configure Self-Service Analytics to Support SAML.
Step 2: Define Connections Using Variables
Define connections using variables- Log in as an system admin.
- Create or edit a connection definition. See Add Data Store Connections and Modify Data Store Connections.
-
If custom attributes have been defined, they can be directly entered in a connection parameter field on the Connections page using the following syntax:
The same custom attribute key name must be defined and used in all the user definitions of the users expected to use this connection. For example:
If the connector associated with the connection type for the connection definition has been defined with the User Attribute checkbox selected for the USER_NAME or the PASSWORD parameters, a custom user attribute must be defined for the user creating the connection and for any users using the connection. In this scenario, the Add Connection screen allows you to select the custom user attribute from a Select Custom Attribute drop-down menu, as shown below. Note that the custom attributes in this case are not shown using the same format as when you specify them manually. For complete information, see Use User Attributes for Connection Parameters.
- Select Validate to validate the connection. If the connection is valid, you can save the connection. If invalid, make changes, then select Validate again.
- Select Save to save the connection.
Create a Symmetric Key to Encrypt Data Source Passwords
Self-Service Analytics provides a suite of prebuilt connectors that connect the Self-Service Analytics server directly to your data source. If a data store requires a connection password to access the data, the credential information is saved in Self-Service Analytics’s storage repository - PostgreSQL. Self-Service Analytics uses symmetric encryption to store the credential information so that it can access the data store, as needed, while providing a level of security for the saved information. Administrators can generate their own KeyStore using a symmetric key algorithm. This capability provides an additional level of security in the connection to and access of the data sources. A symmetric key can be generated using Oracle’s keytool program, which is a key and certificate management tool. This tool manages a keystore (database) of cryptographic keys, X.509 certificate chains, and trusted certificates. Refer to Oracle documentation for additional details about this keytool program. Use the latest Java SDK to install the keytool program (as older versions of the SDK may require different installation steps).Remember that this user-generated keystore should be provided to Self-Service Analytics after a new installation, prior to any connections being stored in Self-Service Analytics. If a new user-generated key is provided after some connections are already stored, the passwords for these connections have to be resupplied to Self-Service Analytics after the new key is provided.
Generate a Keystore with a Symmetric Key
- Install the keytool program. Use the latest Java SDK to install the keytool program.
-
Enter the following command line to generate your symmetric key.
- Create a keystore password and press Enter to continue.
- Create a key password and press Enter to continue.
-
Store the keystore file in a location where the Self-Service Analytics Server can access. For example:
Next, you need to edit the
zoomdata.propertiesfile to add in the parameters needed for Self-Service Analytics to integrate your symmetric key. If you have already logged into Self-Service Analytics, be sure to log out first and close the browser. -
Edit (or create) the Self-Service Analytics configuration file (
zoomdata.properties):If the configuration file does not exist, this command creates it. -
Incorporate instructions for accessing your newly generated keystore file into the .properties file as provided below:
- Restart Self-Service Analytics Server. This ensures that the new keystore file is enabled and active within Self-Service Analytics. For the appropriate Linux commands, see Restart Microservices.