SAP Basis Two ways to use Security Automation - SAP Corner

Direkt zum Seiteninhalt
Two ways to use Security Automation
INTRODUCTION OF RELEASE AND PATCH MANAGEMENT
In the SAP Business Objects environment, you can extend the control of permissions using the CMC tab configuration. The tab configuration allows you to easily show or hide specific tabs for users or groups. Enable CMC Tab Configuration By default, the CMC Tab Configuration feature is set to "Don't Limit" and is disabled. For you to be able to use the tab configuration at all, you will need to enable it for now. Note: If you enable the tab configuration, all users that are not under the default Administrators group will not see tabs for the time being. This is because access is denied by default through the CMC tab configuration. Therefore, once enabled, you must maintain tabs for all existing groups. Therefore, make sure you have an account associated with the Administrators Group! To do this, go to Applications, right-click Central Management Console, and select Configure Access to the CMC tab: The CMC can be found under Applications. Now enable the configuration by selecting the Restrict option. Use Restrictions to enable the option. Hide/show tabs If you are now logging in with a user that is not in the default Administrators group, you will not see applications/tabs on the CMC home page. Initially no applications/tabs are visible To display the desired tabs for the groups again, switch to users and groups with your administrator account, right-click on the desired group, and select CMC tab configuration. Enter the tab configuration. In the dialogue that appears, you see that all tabs are denied access by default.

If a company chooses to tackle the area of e-learning itself and also to create the content for it itself, there is a certain challenge. The most obvious point here is that the above-mentioned initial effort is borne by the company. This means that employees spend their time creating videos, preparing presentations and/or creating questionnaires. This not to be underestimated effort must of course be borne by the company initially. On the other hand, a self-created e-learning offer offers the possibility to design it completely by itself and tailor it to the company's own needs. In addition, a company can decide whether it will use the e-learning offer itself only for its own employees (for internal training purposes) or whether it will also present the offer externally. This can be used, for example, for advertising purposes, as a know-how presentation or as a further source of income. Use the external sources: This is a very pleasant way for the company to improve the internal processes through ELearning. By acquiring external e-learning content, the company can purchase valuable know-how for comparatively low money. This know-how is in most cases already well prepared, that this can only be passed on to the employees and they can then independently acquire new knowledge or consolidate already known topics.
Creating users, assigning roles, locking and unlocking users, etc
The Precalculation Server is a standalone application that allows you to generate and distribute Excel workbooks based on SAP BI data. Are you already using the Precalculation Server or would you like to take advantage of it in the future? I would be happy to explain the steps from installing the Precalculation Server to finally starting the instances on the target system so that you can use the Precalculation Server for your purposes. As a reader of our blog, you are certainly interested in tricks and tricks that will make your SAP system easier to handle. You may be familiar with the situation where you want to install a Precalculation Server yourself. Here you will learn how this task can be implemented in the SAP environment. Prerequisites For example, you need a Windows 7 or a Windows Server 2012 instance on which the Precalculation Server is installed to operate the Precalculation Server. Both 32 and 64-bit versions can be used. In addition, the machine requires a .NET installation to run the Precalculation Server in addition to a Microsoft Excel installation (32-bit version is essential). Download the installation files In advance, you should download the latest installation files from the official SAP website to the target computers. Cleanup Phase If you already have an existing installation on the system, the first thing you need to do is uninstall all items to use a clean host for the Precalculation Server. You can do this by calling the Windows Control Panel: The order must be followed according to the SAP documentation. Therefore, apply the following procedure for uninstallation, no installation of SAP should be visible anymore: Order: 1) SAP BW Precalculation Service 2) SAP Business Explorer 3) SAP GUI for Windows XY Note: During the installation and uninstallation of individual components, the progress bar status may be suspended at certain locations. This is not a cause for concern, but a normal behaviour. Often, it will stand at 92% or 95% for about 10 minutes.

The SAP NetWeaver Application Server Add-on for Code Vulnerability Analysis tool, also known as Code Vulnearability Analyzer (CVA), is a tool that performs a static analysis of user-defined ABAP source code to detect possible security risks. The tool is available in the NetWeaver ABAP stack and is based on versions from: 7.0 NetWeaver: in EHP2 SP 14 or higher / 7.0 NetWeaver: in EHP3 SP 09 or higher / 7.3 NetWeaver: in EHP1 SP 09 or higher / 7.4 NetWeaver: in SP05 or higher To use the CVA tool, the execution of system-wide security controls must be enabled with the RSLIN_SEC_LICENSE_SETUP report. Afterwards, the security checks are available in standard ABAP code checking tools such as ABAP Test Cockpit (ATC) or Code Inspector (SCI). The option of these checks is usually referred to as "security analysis in extended program check". Note that the use of the security check feature for custom code separation is licensed and incurs additional costs. The older program that has been around for years is Virtual Forge's "Code Profiler". It is one of the first products in this segment of SAP security and was used by SAP itself for many years. It is very comprehensive and is also able to track individual variables across the entire control flow. This leads to very precise statements and a reduction of false positives.

"Shortcut for SAP Systems" simplifies tasks in the area of the SAP basis and complements missing functions of the standard.

FME = One of these special characters may occur at any position in the user name (this corresponds to the default setting, i.e. as if no entry was maintained in PRGN_CUST for the switch).

SAP Basis refers to the administration of SAP system that includes activities like installation and configuration, load balancing, and performance of SAP applications running on Java stack and SAP ABAP. This includes the maintenance of different services related to database, operating system, application and web servers in SAP system landscape and stopping and starting the system. Here you can find some useful information about SAP Basis: www.sap-corner.de.


It is precisely these challenges that are important to me, so that I can continue to learn and develop professionally on a daily basis.
SAP Corner
Zurück zum Seiteninhalt