SAP Authorizations Authorizations - SAP Corner

Direkt zum Seiteninhalt
Authorizations
Change management
One way of gaining direct access to downstream systems from the development system and possibly performing unauthorized activities there is to use incorrectly configured interfaces. In principle, interfaces within a transport landscape should be avoided with regard to the criticality of the systems "uphill", i.e. from an "unsafe" to a "safe" system (e.g. E system to Q or P system). However, this cannot always be implemented; for example, such interfaces are needed within the transportation system. Without going too deeply into the subject, however, critical interfaces can be characterized by the following properties. Critical interfaces refer to a critical system and a critical client, contain an interface user with critical authorizations in the target client, contain its deposited password.

For this very reason, there is a solution to automate the checking of authorizations with regard to critical authorizations and segregation of duties by means of tool support. This gives the authorization administrators more time to correct any errors that occur instead of having to search for them first.
SAP FICO Authorizations
This also implies that the change documents must be kept in Excel. The Excel file must not be lost or damaged.

Various activities, such as changes to content or the assignment of roles, are made traceable via change documents. This authorization should only be assigned to an emergency user.

"Shortcut for SAP systems" is a tool that enables the assignment of authorizations even if the IdM system fails.

This reduces your administrative overhead for maintaining functional permissions and reduces maintenance work for role derivations to fit the so-called organisational fields.

At www.sap-corner.de you will also find a lot of useful information on the subject of SAP authorizations.


A central basis for extensively digitized processes are structured specifications that regulate system access and control access rights.
SAP Corner
Zurück zum Seiteninhalt