SAP Security & GRC Training

SAP Security & GRC Training Training provided in the field of SAP Security and SAP GRC (Governance Risk & Compliance).

Online and Instructor lead training is imparted by instructor with more than a decade of professional experience in consulting and other industries.

SAP Quick Tip : PFCG_CREATE_STD_ROLEIn addition to generating the SAP_ALL profile, you can use this application to gener...
01/12/2021

SAP Quick Tip : PFCG_CREATE_STD_ROLE
In addition to generating the SAP_ALL profile, you can use this application to generate a full authorization profile SAP_APP or a role.

The selection screen has two basic methods for determining the objects to be taken into account.

- Selection screen parameter "Do not include Basis objects" : If you select this checkbox, authorization objects starting with S_ are not included in the authorizations.

- Selection screen parameter "Do not include HCM objects" - If you select this checkbox, authorization objects starting with P_ and PLOG are not included in the authorizations.

SAP Quick Tip : RDDIT076 - Change Transport Status- User the program to change Transport request from Released to Modifi...
28/10/2021

SAP Quick Tip : RDDIT076 - Change Transport Status
- User the program to change Transport request from Released to Modifiable
- Once the request is imported to any other system, do not use this. Import buffers may have problems
- Double click on Task and change the Status from 'R' to 'D', and save it for all the task and request.

SAP Quick Tip - RSAU_TRANSFER- File-based transfer of an audit profile- Configuration done in RSAU_CONFIG can be downloa...
18/10/2021

SAP Quick Tip - RSAU_TRANSFER
- File-based transfer of an audit profile
- Configuration done in RSAU_CONFIG can be downloaded and uploaded from Test system to production environment
- A text file can be downloaded and modified below uploading
- Better way than re-configuring all settings again

SAP Quick Tip : Program RSCCUSND- - You can use the report RSCCUSND from the central system of Central User Administrati...
12/10/2021

SAP Quick Tip : Program RSCCUSND
- - You can use the report RSCCUSND from the central system of Central User Administration (CUA) to synchronize the master data of selected users with a child system of the CUA.
- The report sends the master data (including role and profile assignments) to a child system of the CUA.
- In the Receiving System field, specify the child system to which you want to send the user data.
- You can use the fields User and User Group to restrict the number of users.
- Specify the data that you want to distribute under Distribution Options.

SAP Quick Tip - S00- S00 is a transaction code used for Short Message in SAP.- In order to test the email functionality,...
07/10/2021

SAP Quick Tip - S00
- S00 is a transaction code used for Short Message in SAP.
- In order to test the email functionality, t-code can be used to send emails to recipient
- Subject and text can be provided in in the respective fields
- Recipient's email addressees needs to be maintained with type as "Internet Address"

SAP Quick Tip : LDAPMAP- SAP authentication can be done thru Active Directory and for same, additional config is require...
21/09/2021

SAP Quick Tip : LDAPMAP
- SAP authentication can be done thru Active Directory and for same, additional config is required
- T-code LDAPMAP allows mapping of SAP fields with Active Directory fields

SAP Quick Tip : transaction SHMM- provides an overview of the area instances in the shared objects memory of the current...
13/09/2021

SAP Quick Tip : transaction SHMM
- provides an overview of the area instances in the shared objects memory of the current application server, and offers selected functions for it
- The monitor provides four overviews that follow on from each other i.e. Areas, Area instances, Versions, Locks
- Double-clicking a row in the current overview takes you to the next overview, for example, from the overview of area instances to the list of versions of this area instance.
- From the instance overview, you can display the list of locks on a parallel tab page.

GRC - Transaction STZAC- In case of firefighting, logs are being fetched from plugin system to GRC host system- Many a t...
07/09/2021

GRC - Transaction STZAC
- In case of firefighting, logs are being fetched from plugin system to GRC host system
- Many a times, the logs are missed while generating the FF logs for controller's review
- System hosting GRC application should have the same time zone as plugin system
- STZAC can be used to verify the settings

SAP Fiori - PRGN_COMPARE_ROLE_MENU-  Use report/program PRGN_COMPARE_ROLE_MENU to identify role menus which are not sync...
01/09/2021

SAP Fiori - PRGN_COMPARE_ROLE_MENU
- Use report/program PRGN_COMPARE_ROLE_MENU to identify role menus which are not synchronized with the Fiori group and catalog design
- Said report provides a tabular view of all the assigned catalogs and services/applications assigned to a role
- The Adapt Menu (within the report) function updates all selected application groups automatically

GRC - Parameters 4007- Firefighter module gathers activities performed by FF IDs and generates logs for FF controller's ...
30/08/2021

GRC - Parameters 4007
- Firefighter module gathers activities performed by FF IDs and generates logs for FF controller's review

- Set the value to YES and the application sends email notifications or executes workflow when a user chooses the Update Firefighter Log button or when the program GRAC_SPM_LOG_SYNC_UPDATE is executed. It needs parameter 4009 as 'YES' to complete the task

- Set the value to NO and the application only collects the logs when a user chooses the Update Firefighter Log button or when the program GRAC_SPM_LOG_SYNC_UPDATE is executed. The application sends the e-mail notifications or executes the workflow when the GRAC_SPM_WORKFLOW_SYNC program is executed.

GRC - ARA: User Permission Violation Table- In Access Risk analysis, user level permissions violations are stored in tab...
26/08/2021

GRC - ARA: User Permission Violation Table
- In Access Risk analysis, user level permissions violations are stored in table GRACUSERPRMVL
- However, table shown as empty
- There is another table GRACUSERPRMVLEXT which is holding the data
- Risks needs to be generated and batch risk analysis needs to run for table population

SAP Quick Tip - SUPC- Mass generation of profiles for the roles can be performed by SUPC- Imagine a scenario where roles...
23/08/2021

SAP Quick Tip - SUPC
- Mass generation of profiles for the roles can be performed by SUPC
- Imagine a scenario where roles gets corrupt in development system due to patching
- Now, the roles are being downloaded and uploaded from production environment
- To generate the multiple roles, t-code SUPC can be used
- Select the generate automatically check box to generate the profiles in one go
- Program can be scheduled as a background job or in dialog processing

Address

Brisbane, QLD
4000

Website

Alerts

Be the first to know and let us send you an email when SAP Security & GRC Training posts news and promotions. Your email address will not be used for any other purpose, and you can unsubscribe at any time.

Share