Quantcast
Channel: SCN : All Content - Security
Browsing all 2858 articles
Browse latest View live

HMAC SHA256 result SAP vs Java

Hello I'm getting different HMAC code for the same input data and secret key comparing CL_ABAP_HMAC=>CALCULATE_HMAC_FOR_CHAR (using SHA256 algorithm) with result of javax.crypto.Mac (using...

View Article


Web Dispatcher / NetWeaver 7.3 / URL Filter, permission table

Hi allWe want to use the SAP Web Dispatcher 720P113 to secure our external facing NetWeaver 7.3 Portal.The Web Dispatcher can of course filter parts of the URL.With this we would like to restrict the...

View Article


Analysis and Recommended Settings of the Security Audit Log (SM19 / SM20)

This document was generated from the following discussion: Recommended Settings for the Security Audit Log (SM19 / SM20) This blog had started to give recommendations about settings for the Security...

View Article

Migration SU05 ITS users to SU01Users in ECC 6.0 (ERP 700)

We are going to migrate our SU05 ITS no-employee internet users to SU01 users in ECC 6.0 (ERP 700) systems. We have researched and asked SAP and got the information and suggestions like to use the FM...

View Article

Image may be NSFW.
Clik here to view.

LCHR data type in USR10

Dear Colleagues There are profiles in System, which are not generated. They assigned to users directly (without roles). There are tables in SAP to analyze it like UST*, USR*. But only one table Shows...

View Article


Image may be NSFW.
Clik here to view.

Not generated profile analysis

Dear Colleagues I have to analyze thousends of not generated single profiles.  I know that I can check each Profile on field values levelBut for such a big amount of profiles I Need table. Which table...

View Article

OOSB - SAP* - ALL

Hello, In Structural Authorization, if there is an entry for user SAP* in OOSB, then all user inherit access to the Authorization profile. Suppose we have 2 custom Authorization profiles - Z_HR and...

View Article

Does objects in the custom transport (roles) will import to QA from Dev when...

Hi All, Please help. I Have created on TR in Dev system to transport the roles to QA. Its ended with return code =8. When i checked the logs in SE09 the ERROR is "Profile T-XXXXXXX for role...

View Article


How to find out who deleted a user in HANA

Hi, We've had an incident in our project where a user's account was deleted from HANA and our requirement is to find out who deleted that id. Is there any table where we can find out the change history...

View Article


CUA - Troubleshooting guide

Looking for trouble shooting help? Please refer to the trouble shooting document at the Security and Identity Managment WIKI page: Direct Link to the   CUA  - Troubleshooting guide

View Article

Is SAPcryptolib supported for standalone JCo RFC client?

Hi there, I need to use SNC in a standalone JCo client for network security reasons. I am specifically not looking for end-to-end authentication involving Kerberos or some such. However, I need to...

View Article

VL02N - Security around Outbound Delivery

Hello Gurus, I have a situation, where one of the user been able to change/update the Outbound delivery for other location or plant. Here is the situation : User A is located in North America and he...

View Article

Encrypted (SNC) communication with print (server)

Hello Folks In the past we used SAPLPD with the Secude SNC library to secure the communication to a print server. Since SAPLPD is not supported anymore, i was trying to use its successor SAPSPRINT....

View Article


SAP user login time

Hello I need a information:  How i can restrict the time to login SAP for a users? Example:User1, can login system at 8:00am at 5:00pm Exists any configuration to do this? Thanks

View Article

Image may be NSFW.
Clik here to view.

User Logoff event not recorded in SM20 for Logon type=A

Hi Security Guys, We are recording the audit logs for Dialog logon. The problem is the User Logoff event between two consecutive logons is not getting recorded sometimes for almost all users.Kindly...

View Article


Transaction, USOBX, USOBXT, OK-FLAG = 'X'

Hi Guys, i have a problem with adding transactions to roles via menu.  If I add transaction FPAR to a new role, the auth objects S_ADMI_FCD, S_BTCH_JOB and S_BTCH_NAM are opened although the objects...

View Article

Image may be NSFW.
Clik here to view.

SU24 "authorization object are inactive for all TCODES"

Dear Gurus, Our DEV system is ok with su24 maintained tcodes related to auth. objects are green. Unfortunately, for QA system all tcodes in SU24 auth. objects are inactive for all client in the system....

View Article


How do I configure RFCs for SNC communication?

Hello Everyone, I'm an Oracle DBA / Basis Admin and am new to configuring SNC.  So far I've been able to configure SAPgui sessions to communicate with systems using SNC but am having difficulty...

View Article

Types/Uses for Context Structural Authorizations

Hello AllI'm looking to get some additional information around Contextual Structural Authorizations, and how to apply this to my current scenario: HR Manager's primary responsibility is to be able to...

View Article

Image may be NSFW.
Clik here to view.

SAP CUA clean up

Dear Members, P.S: I am a Basis consultant. Knowledge on security topics are limited. So, sorry for being naïve. I was asked to configure CUA for 3 different business entities. So, in total 9 systems...

View Article
Browsing all 2858 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>