Quantcast
Channel: SCN : All Content - All Communities
Viewing all articles
Browse latest Browse all 8908

SAP GRC 10.0 EAM access

$
0
0

We have provided Owner / User- FF / Controller / Admin access in  GRC system.  User – FF access in Backend system.

Role: ZSAP_GRAC_SPM_FFID was available for Parameter 4010 in config of SPRO in GRC.

The same provided in backend sys for Both IDs. Along with ZSAP_GRAC_NWBS and ZSAP_GRAC_BASE as default access for User-FF Id.

Here are  the roles provided accordingly to Systems inbackend and GRC system  users.

Systems

 

User type

GRC system

Backend system

D08

User

User Type

 

Dialog

ZSAP_GRAC_SUPER_USER_MGMT_OWNR

ZSAP_GRAC_SPM_FFID

ZSAP_GRAC_SUPER_USER_MGMT_USER

 

Service

 

Service

ZSAP_GRAC_SUPER_USER_MGMT_USER

Provided for dialog IDs

 

 

 

 

 

 

 

 

 

 

 

Dialog

ZSAP_GRAC_SUPER_USR_MGMT_CNTLR

 

 

 

 

 

 

Maintained Email ID for Controller ID

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

Dialog

ZSAP_GRAC_SUPER_USR_MGMT_ADMIN

 

ZSAP_GRAC_SUPER_USR_MGMT_ADMIN

 

Dialog

 

 

Executed below 4 Jobs for synchronization between G10 and D08.

 

  1. Job: GRAC_PFCG_AUTHORIZATION_SYNC executed Successfully.

 

 

  1. Job: GRAC_REPOSITORY_OBJECT_SYNC executed Successfully.

 

 

  1. 03.    275 UserIds sync from D08 to G10. Job:  GRAC_ACTION_USAGE_SYNC scheduled in G10.

 

  1. 04.    Job: GRAC_ROLE_USAGE_SYNC completed.

 

 

We have done the below process before executing these jobs and there is no difference in the result screen.

 

We go to NWBC -> Access Management -> EAM ( Firefighters)

 

 

Selecting this User as Firefighter.

2.JPG

 

Adding Firefighter ID

 

FFID.JPG

 

Here no Fire fighter IDs are found for the Backend System.

 

 

Here it is still showing that No records are found. We are searching for this solution since yesterday. The jobs synchronization is done after providing the authorizations for OWNER / User – FFID / Controller but this didn’t help us solving the issue.

 

We have gone through below links for this solution, where they have mentioned to do the same. But this solution didn’t work.

 

http://scn.sap.com/docs/DOC-33099Configure Emergency Access (EAM) in GRC 10

http://scn.sap.com/thread/2109294FF Owner Assigment : GRC 10.0

 

http://scn.sap.com/thread/3368058GRC AC 10.0 EAM : Fire-Fighter ID Not Visible

http://scn.sap.com/thread/2102778Firefighter IDs Not Populating in GRC 10

 

Here is the Note suggested:-

 

1585079 - GRC AC10 - No Firefighter Id available in SPM

 

Symptom

 

No Firefighter ID is available when performing the Owner to Firefighter ID assignment.

 

Other Terms

FFID, GRC Access Controls 10, Superuser Privilege Management, FFID Owner, Firefighters, Controllers

Reason and Prerequisites

Not all necessary configuration is in place, see solution section below.

Solution


Please make sure that you have performed following configuration steps:

1. Integration Scenarios are configured as explained in note 1562760

2. Please make sure the Firefighter role is assigned to Firefighter IDs in the corresponding client system and that the same role has been given as parameter value for configuration parameter 4010. Configuration parameters can be configured in the transaction code SPRO => Governance, Risk & Compliance => Access Control => Maintain Configuration Settings

3. Run User/Role/Profile/Auth synchronization jobs. The Link to run these jobs can be found Under transaction code SPRO => Governance, Risk & Compliance => Access Control => Synchronization Jobs.



Thank you in Advance. Pl suggest.


Viewing all articles
Browse latest Browse all 8908

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>