GRC AC and IDM integration
Hello community, Someone knows if web can configure the IDM role requests workflow (configured at the IDM side) to use Role Assigner and Role Content Approval configured at the GRC AC side? Regards,SAP...
View ArticleRe: GRC AC and IDM integration
Hi, Please refer SAP BusinessObjects GRC 10.0 Integration Guide – Access Control 10.0 and NetWeaver Identity Management RegardsDilip
View ArticleRe: GRC AC and IDM integration
Legend,In addition to Dilip's suggestion, you can also refer to:SAP Access Control 10.0 Interface for Identity Management...
View ArticleRe: GRC AC and IDM integration
Hello, Role content approver is required when you need approval for changes in Role definition. I think this will not be used in IDM.just a thought . Coming to your query . IDM workflow or GRC...
View ArticleRe: connecting sap system over LDAP - Automatic user provisioning
Check read authorization.. and always use Fully qualified name in sap server under LDAP instead of ip address. to check go to se38 and run role repository sync. there you can see msg if its able to...
View ArticleRe: connecting sap system over LDAP - Automatic user provisioning
Thanks. A couple of things. The server config in the GRC 10 system for LDAP is the same as the one in the current GRC 5.3 system. The GRC 5.3 system appears to be working while I'm having issues in...
View ArticleRe: connecting sap system over LDAP - Automatic user provisioning
to check this, please go to spro. run sync job . check for role sync.. do you have any issue there all will come 0, please chk if anywhere it says read auth failure. and ensure your base entry is...
View ArticleRe: connecting sap system over LDAP - Automatic user provisioning
They came back 0. Profile sync, obviously, failed, but role sync and user sync came back 0. No mention (that I could see) about read auth failure. Base entry is correct, I think, because it's the...
View ArticleRe: connecting sap system over LDAP - Automatic user provisioning
is the user id has S_LDAP auth object assigned? Check in LDAP tcode as well by logging is and find .. Regards,Prasant
View ArticleRe: connecting sap system over LDAP - Automatic user provisioning
also check 4. Refer to SAP Note "1755767 - Repository object sync from LDAP fails".
View ArticleRe: connecting sap system over LDAP - Automatic user provisioning
What string is used while searching users in LDAP. Execute LDAP tcode and find the users with default string. for example ...(&(objectclass=*)(samaccountname = a*)). If you have some different...
View ArticleRe: connecting sap system over LDAP - Automatic user provisioning
attach screen shot of SPro rep obj sync and slg1 log
View ArticleGRC10 Firefighter - Role-based & ID-based
GRC Gurus, I am looking for a solution or at least theoretical discussion about a scenario in which GRC 10 system is connected to more than 1 target system and in one system I want to use FFID-based...
View ArticleIs it not a myth that roles should not be assigned!
Is it not a myth that roles should not be assigned (auto provisioned) via GRC if user ids are locked? My understanding is roles will get assigned (auto provisioned) to user ids irrespective of user id...
View ArticleRe: GRC 10 - Mitigating controls are not seen in NWBC
I have full access Colleen. Yes, I am looking from controls screen directly not from organization level. Is there any way by we can check in NWBC, where ALL mitigating control stored?
View ArticleRe: GRC 10 - Mitigating controls are not seen in NWBC
Dear Shailesh, Did you check directly in Mitigation Controls link in NWBC? With RegardsTrinadh Bokka
View ArticleRe: Dear all I only get result for one rule id and not with others what...
To test the results, run the Risk Analysis for one user/system at one time, in Foreground and see the results. Now compare these results with what Alexander mentioned above to see if the rules have...
View ArticleRe: Mass role risk analysis issue
does the role has the tcodes mentioned in mass risk analysis. the report is not at object level hence object is deactivated in role does not matter. Regards,Prasant
View ArticleRe: EAM ID based or Role based? Why settle for just one?
Leo,What is stopping us is the development time required to make that happen. It doesn't work that way today to allow both; therefore the options are for the customer to do some heavy customization to...
View ArticleRe: Users not coming in Search from LDAP in GRC AC 10.0
Hi everyone, Having read this thread, I have a unique problem that's closely related to what you have discussed. As noted, I have checked my config, the corresponding notes and my base entry. When I...
View Article