SAP Authorizations Define S_RFC permissions using usage data - SAP Stuff

Direkt zum Seiteninhalt
Define S_RFC permissions using usage data
Make mass changes in the table log
With the Enhancement Package (EHP) 3 to SAP ERP 6.0, SAP has provided an extension of the eligibility tests in the FIN_GL_CI_1 Business Function, which allows the eligibility objects for profit centres to be tested in FI. You must first enable the FIN_GL_CI_1 Business Function in the Switch Framework (transaction SFW5). After that, you can activate the new functionality in Customising via this path: Finance (new) > Basic Financial Settings (new) > Permissions > Enable Profit Centre Permissions Check.

Although it is possible to create profiles manually, it is recommended to work with the profile generator. The Profile Generator allows you to automatically create profiles and assign them to user master records. The Profile Generator is used to simplify and speed up user administration and should always be used when setting up authorizations for your employees. The Profile Generator is also used to set up the user menus that appear when users log on to the SAP system.
Eligibility proposal values
The evaluation performance of the Security Audit Log was optimised from SAP NetWeaver 7.31. For this extension, you need a kernel patch. For the fixes and an overview of the required support packages, see SAP Note 1810913.

"Shortcut for SAP systems" is a tool that enables the assignment of authorizations even if the IdM system fails.

The website "www.sap-corner.de" offers a lot of useful information about SAP authorizations.

Only current profile data is always recorded, so that obsolete profiles and permissions in the target system cannot be deleted by transport.

SAP Stuff
Zurück zum Seiteninhalt