Steps: Create Workday Credentials in Adaptive Planning
- Sync your integration system user (ISU).
- For headcount planning with a workforce planning configuration manager, work with a Workday-certified implementer to set up the feature. If you don't have access to an implementer, contact your Customer Success Manager to engage Professional Services.
- Enable theOAuth 2.0 Clientsetting on theEdit Tenant Setup - Securitytask.
- Security:
- Data Designerpermission in Adaptive Planning.
- Integration Operatorpermission in Adaptive Planning.
- Set Up Tenant Setup - Securitydomain in the System functional area.
- Security Administrationdomain in the System functional area.
- For headcount planning with a workforce planning configuration manager, ensure the integration system security group (ISSG) for your ISU includes Modify access to theSet Up: Adaptive Planningdomain in the System functional area.
You can create a credential to authenticate a specific Workday tenant and ISU with a Workday data source in an Adaptive Planning instance. A Workday credential must exist to:
- Create a Workday data source in Adaptive Planning.
- Activate a Workday Adaptive Planning instance in the workforce planning configuration manager in Workday.
- Create loaders to import data and metadata from Workday to Adaptive Planning.
- Create a Workday external system for drillback into Workday.
- Publish plans from Adaptive Planning to Workday.
If you use workforce planning in Adaptive Planning, we create a Workday credential for you. You must edit the credential so that you can use it.
- In Adaptive Planning, go to .
- Create or edit your Workday credential in theCredentialssection of theComponent Library.If you create a new Workday credential, name your credential so you can identify the Workday tenant it connects to.If you use workforce planning, we already created a credential named Workday Credential for you to edit.We automatically populate theClient Grant TypewithJwt Bearer Grant. To publish plans, we require your credential to use theJwt Bearer Grantclient type.
- We automatically populate theConnectionwithLocal.Localindicates that this credential matches the Adaptive Planning instance initially paired to a Workday tenant by the Provisioning team. Only local connections let you set up Workday external systems for drilling and publishing plans from Adaptive Planning.To create a credential for a different Workday tenant, selectExternal.As you create the connection to a different Workday tenant, consider:SelectingExternalprevents you from using a credential for publishing plans and drilling from Adaptive Planning to Workday.
选项 描述 Remote Tenant IDCopy over the text after the last / in the Workday REST API endpoint.Remote UI URLCopy over the fully qualified domain name withouthttps://from the Workday Authorization Endpoint.Don't include any of the characters following the .com.Remote Rest URLCopy over the fully qualified domain name withouthttps://from the Workday REST API Endpoint.Don't include any of the characters following the .com. - ClickView Certificateand copy the x.509 certificate.Use this certificate in theRegister API Clienttask in Workday.Don't close this web browser.
- As you complete the task, consider:
选项 描述 Client NameEnter a client name that indicates this client connects with Adaptive Planning.Client Grant TypeSelectJWT Bearer Grant.x509 CertificatePaste the certificate that you copied from Adaptive Planning.Access Token TypeSelectBearer.Scope (Functional Areas)SelectTenant Non-configurable.If you want to access the Location dimension from Workday in Adaptive Planning, also selectOrganizations and Roles. Configure the security group forView Only AccessandGet and Puton the domainSet Up: Organization.When you use workforce planning configuration managers, select the functional areas for all data sources and report fields on your planning application. - Copy theClient ID.Don't browse away from theRegister API Clienttask before copying theClient ID.
- Return to the web browser for Adaptive Planning and paste theClient ID.
- Enter theISUassociated with this credential.Workday recommends using an ISU for access and security to make credential maintenance and management easier.
- (Optional) ClickTest Connectionin theActionspane to verify that the connection succeeded .
- Save the credential.Authorization StatusandConfiguration Statusupdate to indicate that the configuration completed.
- For headcount planning with a workforce planning configuration manager, clickRegister Orchestration.When you register orchestration, you make this instance available in theSelect Instance & Activatepage in the workforce planning configuration manager in Workday.
For headcount planning with a workforce planning configuration manager, access the
Manage Workforce Planning Configuration
task to automatically create:
- Levels hierarchies.
- Dimensions and dimension values.
- Attributes and attribute values.
- Plan versions.
- Personnel modeled sheet and data.
- Modeled accounts for FTE, Headcount, and Cost of Workforce.
- Integration data sources.
- Integration metadata and data loaders.
- Orchestation tasks.
- Integration tasks with metadata and data refresh schedules.
- Workday external systems.
For financial planning and headcount planning without a workforce planning configuration manager, create an integration system user (ISU) and API client so that you can create your Workday data source.