Quantcast
Channel: SCN: Message List - Security
Browsing all 5338 articles
Browse latest View live

Re: strustsso2 - cannot analyze certificate

Thank you for your update. I have updated to latest cryptographic version and it worked.

View Article


how to list concurrent users

Hello All,  I am running a report CCUINIT to check for concurrent users on a day basis.  when i look for results using CCUEVAL report it show only 15 users. Where in total number users logged on are...

View Article


SAP user type Communication versus System and impacts

Dear all, I know that user type communication (C) are no more used in SAP systems. Now we have to use System user type. (B)...

View Article

Authorization group changes for Security reason

In Production sometimes I have to give access to "table" transaction like SM30 in modification.When the authorization group is restricted to few tables, I can give access.But some transactions are...

View Article

Re: Authorization group changes for Security reason

Hi Melanie Another option is to avoid granting SM30/SM31/SM34 in Production by building a custom transaction code to access the table or view that skips the SM30 screen. Also, check if such a...

View Article


Re: Authorization group changes for Security reason

Thanks Colleen. It's works for ECC6 version. But for 4.7 version... ? There are a SAP note to add this authorization object S_TABU_NAM ?

View Article

Re: Authorization group changes for Security reason

4.7 is too old for that object. You would need to look at Z transaction code instead so you can avoid granting SM30 (pretty sure but haven't been on a 4.7 system recently to confirm).

View Article

Re: Recommended Settings for the Security Audit Log (SM19 / SM20)

I got a question about "How to track changes on the settings of the Security Audit Log" and as the answer grew and grew during analysis I decided to move away from this "discussion thread" to a...

View Article


Image may be NSFW.
Clik here to view.

Re: Authorization group changes for Security reason

We don't give SM30 authorization to the business users at all and found that using custom transactions that allow for additional authorization checks (e.g. by an organization code) works better for us....

View Article


Re: Can we find the auth method used after a user has authenticated ?

Do you run these functions with SE37 or have you developed a custom report?  Also these functions don't seem to exist in our ECC 6.0 system.   Tim, it would be interesting to learn more details about...

View Article

Re: USMM System Measurement number

No, no effect at all. There's a short-time lock on the user data, but that's of no impact to the end-user.

View Article

Re: USMM System Measurement number

thanks Mylene for your quick responses. Appreciate your help and expert advise

View Article

Re: How to check user history of logon.

Hi, SM19 & SM20 is the best option to check the 1 week ago used t-codes by user but before that SM19 should be in active for that user and you will get the audit log in SM20. Usually in support...

View Article


Re: How to check user history of logon.

Yes, and make absolutely sure, you contacted your Basis-guys beforehand. Not out of politeness, but just to avoid being decapitated the next time you show up on their territory. SM19 and SM20 for a...

View Article

Re: How to check user history of logon.

?I don't see the problem.I have activated SM19 in whole landscape. With multiple application servers. For almost all audit events.It's great - especially when auditors wants login times for set of...

View Article


Re: How to check user history of logon.

If you do it for security purposes, that might be alright. But you don't monitor the work performance of one/every employee with every transaction (and time-stamps on that) without the consent of...

View Article

Re: How to check user history of logon.

SM20 transaction times executions don't give you exact performance - you don't know how long he was there. More such data you can take from ST03N - steps, utilizations, times. The have clear hands you...

View Article


Re: How to check user history of logon.

Well, no - they do not have clear hands, in case the corporate policy allows to collect personal data. Not even if the authorized unit agrees.  There is something like law that forbids expressly the...

View Article

Re: Web services through sharepoint stopped working after QA system refresh

Hi Sonali, Did you find the solution? We are facing the same issue. We have bunch of web services setup with SAML 1.1 authentication but after we refreshed our Quality system from production system,...

View Article

Re: How to check user history of logon.

It’s my last post in this topic I have nothing to add to help Manjappa If  you have law/moral objections  against monitoring use of transactions – ok.Not all countries have the same legislations.In...

View Article
Browsing all 5338 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>