Results for “cert_id”
50+ results
AI-generated from documented ETRM metadata — verify critical details on the linked pages.
Overview
WF_DIG_CERTS is a table owned by the APPLSYS schema within the Oracle E-Business Suite Application Object Library (FND) product family. It stores the digital certificates used by the Oracle Workflow notification and security infrastructure, most notably the certificates that underpin digital signatures on workflow notifications and e-mail–based approvals. Each row represents a distinct certificate, identified by a surrogate primary key and carrying attributes that describe the certificate itself, its owner, its validity, and its position within a chain of intermediate or parent certificates.
Under the heuristic Data Vault classification mined from the foreign-key structure, this table is modeled as a standalone object — that is, it is not naturally a hub, link, or satellite. The classification is presented as a modeling suggestion only. Because the table’s key is a surrogate identifier (CERT_ID) rather than a composite of business attributes, and because its relationships to other business entities are sparse, it is best treated as an independent reference table in a Data Vault or dimensional model, with the security group membership captured as a degenerate or auxiliary attribute rather than through a formal link structure. In EBS 12.1.1 and 12.2.2 the object is documented as VALID, and the physical schema exposes 13 columns.
Key Information Stored
The documented columns capture the identity, classification, and lifecycle of each certificate. The most operationally significant are:
- CERT_ID — the surrogate primary key, enforced by the WF_DIG_CERTS_PK constraint. This is the column joined by dependent tables.
- CERT — the certificate payload itself (the stored certificate body).
- CERT_TYPE — the classification of the certificate.
- PARENT_CERT_ID — self-referencing pointer to a parent certificate, supporting certificate hierarchies and chains.
- OWNER_ID and OWNER_DOMAIN — identify the owner of the certificate and the domain in which that owner is defined.
- SUBJECTDN — the distinguished name of the certificate subject, typically used for matching identities in PKI operations.
- FINGERPRINT — the certificate fingerprint, used for uniqueness checks and verification.
- EXPIRE — the expiry timestamp governing certificate validity.
- VALID — the validity indicator for the stored record.
- SOT_FLAG (signature-of-trust flag) and INTERMEDIATE_FLAG — control flags indicating whether the certificate participates in the signature-of-trust model and whether it acts as an intermediate certificate in a chain.
- SECURITY_GROUP_ID — the foreign key to FND_SECURITY_GROUPS, scoping the record to a security group (multi-org access control).
The unique index documentation lists SYS_IL0000241109C00001$$, an index associated with a LOB column, rather than a traditional business-key unique constraint. As such, the practical business-key candidate for joins remains CERT_ID; no composite natural key is documented beyond that.
Common Use Cases and Queries
Typical usage centers on certificate inventory, expiry monitoring, and signature-chain validation. A common operational query lists certificates approaching expiry, filtered by security group and validity:
- SELECT CERT_ID, SUBJECTDN, OWNER_ID, EXPIRE FROM APPLSYS.WF_DIG_CERTS WHERE VALID = 'Y' AND EXPIRE < SYSDATE + 30;
- Joining on SECURITY_GROUP_ID → FND_SECURITY_GROUPS to segregate certificates by operating unit or security group.
- Resolving signature records by joining WF_DIG_SIGS.CERT_ID = WF_DIG_CERTS.CERT_ID to determine which certificate produced a given signature.
- Following PARENT_CERT_ID recursively to reconstruct chains involving INTERMEDIATE_FLAG rows.
Reporting use cases include PKI compliance dashboards, audit reports on which certificates are marked as source of trust, and reconciliation of certificates referenced by performance or HR certification records.
Related Objects
The most significant related objects, based on documented foreign-key relationships, are:
- FND_SECURITY_GROUPS — referenced by WF_DIG_CERTS.SECURITY_GROUP_ID; scopes certificates to security groups.
- WF_DIG_SIGS — references WF_DIG_CERTS.CERT_ID; stores digital signatures produced by certificates.
- GHR_PERF_CERT — references WF_DIG_CERTS.CERT_ID; links performance certification records to their certificates.
- WF_DIG_CERTS_PK — the primary-key constraint on CERT_ID, used in all joins.
- SYS_IL0000241109C00001$$ — the documented unique/LOB index supporting the certificate payload column.
Together these define the certificate-centric core of Oracle Workflow’s digital-signature subsystem, with WF_DIG_CERTS acting as the authoritative master record for every certificate consumed elsewhere in the EBS security model.
-
digital certificates table
-
digital certificates table
-
Performance Certification table
-
digital signatures table
-
Performance Certification table
-
digital signatures table
-
VIEW: APPLSYS.WF_DIG_CERTS# 12.2.2
-
VIEW: SYS.V_$WALLET 12.1.1
-
VIEW: APPLSYS.WF_DIG_SIGS# 12.2.2
-
VIEW: HR.GHR_PERF_CERT# 12.2.2
-
VIEW: SYS.GV_$WALLET 12.2.2
-
VIEW: SYS.V_$WALLET 12.1.1
-
TABLE: HR.GHR_PERF_CERT 12.2.2
-
VIEW: SYS.V_$WALLET 12.2.2
-
VIEW: SYS.GV_$WALLET 12.1.1
-
VIEW: SYS.GV_$WALLET 12.2.2
-
VIEW: APPLSYS.WF_DIG_SIGS# 12.2.2
-
TABLE: APPLSYS.WF_DIG_SIGS 12.2.2
-
TABLE: HR.GHR_PERF_CERT 12.1.1
-
VIEW: SYS.V_$WALLET 12.2.2
-
VIEW: SYS.GV_$WALLET 12.1.1
-
VIEW: APPLSYS.WF_DIG_CERTS# 12.2.2
-
VIEW: HR.GHR_PERF_CERT# 12.2.2
-
TABLE: APPLSYS.WF_DIG_SIGS 12.1.1
-
TABLE: APPLSYS.WF_DIG_CERTS 12.2.2
-
TABLE: APPLSYS.WF_DIG_CERTS 12.1.1