We have added search box. Key in SAP issue keyword to search
TopBottom

Announcement: wanna exchange links? contact me at sapchatroom@gmail.com.

RE:[sap-security] SAP Security

Posted by Admin at
Share this post:
Ma.gnolia DiggIt! Del.icio.us Yahoo Furl Technorati Reddit

Posted by SAP_Secure(SAP NW Security Consultant)
on 06/18/2009 12:38:00 AM

Hi Taurian
As mentioned, sap_all is like playing with a stick of dynamite since it gives so much access within sap. In addition to restricting PFCG/su01 authorizations, you will also need to pay atention to spro access and OY20 - OY28 tcodes which relate to ID's/roles and for sm59 you can go drill down from the WExx tcodes and get to RFC maintenance without going thru sm59 atleast within ERP2005 versions. You could set up a Display only access but not sure if they would be useful and again, that is still alot of access even for Display only.
Chris sugg
__.____._

Copyright © 2009 CEB Toolbox, Inc. and message author.

Toolbox.com
4343 N. Scottsdale Road
Suite 280
Scottsdale, AZ 85251

0 comments:

Post a Comment

T r a n s l a t e to your language