Steps: Enable Planning Data Sources After User Sync
- Security Admin or Implementer permissions.
A Planning data source in Adaptive Planning requires a Workday credential to function following
your initial user sync. Make a new Workday credential by generating an ISU through
the Public APIs tenant setup and registering a new API client with JWT Bearer.
Creating a separate Workday credential prevents interference with your other Workday
data sources in the Workday Data Management setup.
- Create an ISU in Workday.Access the report. SelectAdaptive Planningand thePublic APItab.SelectRefresh Public APIs Setup.Creating the ISU pushes the user to Adaptive Planning without requiring a user sync.SelectCreate ISU.
- Grant the ISU access in Adaptive Planning.Navigate to in Adaptive Planning and edit the ISU user.As you edit the ISU user, consider:OptionDescriptionRoleSelectAdministrator.LevelSelect the topmost level.Update in Adaptive Planning and give the ISU user edit access to:
- The top level.
- All Dimensions.
- All Accounts.
- Create an ISSG in Workday.Access theCreate Security Grouptask.Add theIntegration Systems User.Add theseDomain Security Policy Permissions:OperationDomain Security PolicyView and ModifyAdaptive Planning IntegrationView and ModifySet Up: Adaptive Planning API AccessView OnlySet Up: Adaptive PlanningGet and PutSet Up: Adaptive PlanningGet and PutSet Up: Adaptive Planning API Access
- Create a new Workday credential in Adaptive Planning.Open a new browser tab and navigate to .SetClient Grant TypetoJWT Bearer Grant.Enter the ISU you created in the previous steps.SelectView Certificatein the Actions pane and copy all of the pop-up content.
- Register a new API client in Workday for the ISU.As you complete the task, consider:OptionDescriptionClient NameEnterAdaptive Plan Data Source.Client Grant TypeSelectJWT Bearer Grant.x509 CertificatePaste the certificate you copied from Adaptive Planning.Access Token TypeSelectBearer Tokens.Redirection URICopy and paste in theRedirection URIfrom Adaptive Planning.The Workday API client won’t call this URI.Scope (Functional Areas)Select
- Adaptive Planning
- Adaptive Planning for Financial Plans
- Adaptive Planning for the Workforce
- Tenant Non-Configurable
Copy theClient IDand paste it in Adaptive Planning. Save the credential in Adaptive Planning and selectTest Connection. - Create a new Planning Data Source in Adaptive Planning and select the Workday Credential you just created.SelectManage Sources. IfManage Sourcesbecomes gray, verify:
- The ISU pushed to Adaptive Planning when you created it in Workday.
- You granted the ISU user access to all of the permissions, levels, and required access rules in Adaptive Planning.
- You added the Domains for the ISSG, including the get/put and view/modify access.
- You validated that the credential connects from Adaptive Planning.
- You set the correct scopes for the API client.