Prepare Workday
Before connecting to Workday Financials, you must configure your Workday connection settings.
Configuring Workday Financials involves the following tasks.
Retrieving the Workday URL containing your host and tenant names
Complete the following steps to retrieve the URL containing your host and tenant name:
- Log in and access your Workday console.
- Type Public Web Services in the search bar and press Enter.
- Scroll down or click on the applicable filters in the Web Service column to access Financial Management (Public).
- Click the Related Actions ellipse icon next to Financial Management (Public).
- Select Web Service > View WSDL.
- Search for the URL containing the host and tenant names in the WSDL file.
For example,
<wsdl:service name="Financial_ManagementService">
<wsdl:port name="Financial_Management" binding="wd-wsdl:Financial_ManagementBinding">
<soapbind:address location="https://wd2-impl-services1.workday.com/ccx/service/zuora_dpt1/Financial_Management/v44.0"/>
</wsdl:port>
</wsdl:service>
You will need the URL containing your host and tenant names (in the example above, https://wd2-impl-services1.workday.com/ccx/service/zuora_dpt to configure the Zuora Connector for Workday Financials. In this example, the tenant name is zuora_dpt.
Creating a Journal Source for Zuora
Complete the following steps to create a journal source for Zuora:
- Login and access the Workday console using your administrator credentials.
- Type Maintain Journal Sources in the search bar and press Enter.
- Press the + icon and type Zuora Billing in the Journal Source Name field.
- Check the Accounting Source checkbox.
- Click OK.
Creating Workday ISUs for Zuora
Integration System Users (ISUs) must be created and maintained in the Workday environment. This action allows the connector to work and authenticate.
Complete the following steps to create two ISUs for Zuora:
-
Log in and access the Workday console using your administrator credentials.
-
Type Create Integration System User in the search bar and press Enter.
-
Enter appropriate values for the following fields:
-
User Name: ISU_Zuora_Get
-
New Password
-
New Password Verify
-
Check the Do Not Allow UI Sessions box.
-
-
Click OK.
-
Repeat the above steps to create one more ISU with the user name '\ISU_Zuora_Put'.
Creating a Workday Security Group and assigning your ISUs
After creating the ISUs, you should assign the users to a Workday Security Group.
Complete the following steps to create a Workday Security Group and assign your ISU:
-
Log in and access the Workday console using your administrator credentials.
-
Type Create Security Group in the search bar and press Enter.
-
Select Integration System Security Group (Unconstrained) from the Type of Tenanted Security Group drop-down field.
-
Type ISSG_Zuora in the Name field.
-
Click OK to access the Edit Integration System Security Group (Unconstrained) section.
-
Type ISU_Zuora_Get in the Integration System Users field and press Enter.
-
Type ISU_Zuora_Put in the Integration System Users field and press Enter.
-
Click OK.
-
Click Done.
Assigning domain security policy permissions
You must assign domain security policies after creating a Workday Security Group.
Complete the following steps to assign domain security permissions:
-
Log in and access the Workday console using your administrator credentials.
-
Type View Security Group in the search bar and press Enter.
-
Click on the View Security Group report.
-
Type ISSG_Zuora as the security group name in the Security Group field and press Enter.
-
Click OK.
-
Click the ellipse and click on the Security Group > Maintain Domain Permissions for Security Group action.
-
Enter the following values under Integration Permissions for the Domain Security Policies permitting Put access:
-
Type Process: Journals (NEW) and press Enter.
-
Type Process: Journals - Core and press Enter.
-
-
Enter the following values under Integration Permissions for the Domain Security Policies, permitting Get access:
-
Type Integration Build and press Enter.
-
Type Create: Cost Center and press Enter.
-
Type Set Up: Maintain Custom Worktags and press Enter.
-
-
Click Done.
The permissions listed in Security Permissions for Accounting Journal features cover all of the standard Zuora fields.
If a customer requests an extended field from a Zuora-supported Workday data object through data mapping, appropriate permissions must be updated to enable Zuora to access the field.
Assigning business process security policy permissions
-
Type Edit Business Process Security Policy and press Enter.
-
Type Accounting Journal Event in the Business Process Type field and press Enter.
-
In the Initiating Action section of Import Accounting Journal (WS Background Process), type ISSG_Zuora in the Security Groups field and press Enter.
Activating your security policy changes
-
Log in and access the Workday console using your administrator credentials.
-
Type Activate Pending Security Policy Changes in the search bar and press Enter.
-
Type Approved in the Comment field and click OK.
-
Check the Confirm checkbox and click OK.
Security Permissions for Accounting Journal features
The permissions listed below cover all of the standard Zuora fields.
Domain Security Policy Permissions
Operation |
Domain Security Policy |
Domain Security Policies Inheriting Permission |
Functional Areas |
---|---|---|---|
Get and Put |
Process: Journals (NEW) |
Process: Journals - Add/Change Attachment Process: Journals - Add Attachment Process: Journals - Cancel Process: Journals - Copy Process: Journals - View |
Financial Accounting |
Get and Put |
Process: Journals - Core |
N/A |
Financial Accounting |
Get Only |
Set Up: Maintain Custom Worktags |
N/A |
Common Financial Management Worktags |
Get Only |
Integration Build |
N/A |
Integration |
Get Only |
Create: Cost Center |
N/A |
Organizations and Roles |
Business Process Security Policy Permissions
Business Process |
Initiating Action |
Functional Areas |
---|---|---|
Accounting Journal Event |
Import Accounting Journal (WS Background Process) |
Financial Accounting |