Quantcast
Channel: SCN: Message List - Security
Browsing all 5338 articles
Browse latest View live

How to restrict users for create to PM notification and order 1 months earlier?

Hi everyone,i have requirement as follow;the users should not create any notification or order before one months earlier. How can perform it?

View Article


Re: How to restrict users for create to PM notification and order 1 months...

Hi, I don't think that standard authorization model allows you to limit authorization to notification based on time. So you will have to talk to developers and implement some custom check. Cheers

View Article


Re: how to restrict bypassing of authentication

Hi Patrick,  Thanks for the reply ,  even though the connections are based on ssl ,when we have a proxy server all our systems request are all passed via proxy server,the proxy administrator has an...

View Article

Re: Authorization groups in MM01

Thank you John, problem solved. Regards. Rosina

View Article

Re: How to restrict the Request and Response process in that cookies should...

I don't really understand the question, maybe the HttpOnly attribute is what you are looking for. You are running an old version of the portal, consider upgrading to at least 7.3 for better cookie and...

View Article


Image may be NSFW.
Clik here to view.

Re: Job role design - transaction role and auth object role

You can bill a lot for such a monster, right? How many roles you end up with? 10 000? 100 000? How do you do it? Manually? I doubt it. Direct updates on standard tables? Good luck

View Article

Re: Job role design - transaction role and auth object role

This caught my eye: Cons: Create more roles to satisfy segregation of duties Is it possible that you started this concept from the GRC side and not from the PFCG/ SU24 side? I am also very much...

View Article

Re: Job role design - transaction role and auth object role

This idea often comes from externals that can see that the project can cost less time (which they either don't tell and bill the full monster or they can't sell with a price over XX) and by the time...

View Article


Re: Job role design - transaction role and auth object role

I Only learned about split role concepts when I arrived at a client site to clean the mess up

View Article


Re: Job role design - transaction role and auth object role

Yes. I always attempt to push as much deliverables into project side to get a good solution as support budgets can't afford it! I've worked the support side enough to see the mess that was cheap,...

View Article

Re: Job role design - transaction role and auth object role

Were us professionals insufficient or did you want more professionals to contribute? Or did you want someone to support your proposal?

View Article

Re: Job role design - transaction role and auth object role

That is exactly my 'drive'. I got to know SAP as an administrator at first and went on with consulting & projects later. I know what the burden of low-budget projects can cause for the support...

View Article

Re: Firewall between SAP application and database.

Hello,  We are too planning to add firewall in between SAP and Database instances. So was this issue resolved already ?If yes did you face any performance issue after adding firewall between SAP &...

View Article


Image may be NSFW.
Clik here to view.

webservice call failed during execution (SSL and certificates) on NetWeaver 7.30

Hey experts, i need your help! We make webservice calls to sap me with our own software. We connect to our software via SSL and certificates e.g. https://host:50001/XMII/CM/POD/MEDialogsWeb.irptAt the...

View Article

Re: Job role design - transaction role and auth object role

Jurjen Heeck wrote:  I am afraid this concept is moving too far away from the SAP standards. I've actually known SAP to recommend this design strategy. On a previous project we had 2 SAP authorization...

View Article


Re: Job role design - transaction role and auth object role

It is very tempting to ask you to give us their names... ;-) But we all learn from mistakes. PwC in Germany and Switzerland also tried it based on ppt. file success for a while but have distanced them...

View Article

Re: webservice call failed during execution (SSL and certificates) on...

Hi, the authentication for the second call is failing. Have you tried suggest log level from note 880896 - Web Service authentication failure? I would also try to use something like SoapUI to test if...

View Article


Re: Job role design - transaction role and auth object role

Brent Van Dyck wrote: Keep in mind the project was for an HCM implementation where there's already hardly any connection between tcodes and authorization values so it may have made more sense in that...

View Article

Re: Job role design - transaction role and auth object role

I also wonder if in the HCM solution it was more than likely ESS/MSS and they were relying on P_PERNR to exclude user activity on own account. Still sounds like a headache to restrict PLOG and P_ORGIN*...

View Article

Re: Job role design - transaction role and auth object role

All the people recommending this approach I've met in my life (ok, I am not around for 15 years...) were salespeople or "consultants" working for companies that provide tools to build these things. So...

View Article
Browsing all 5338 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>