<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>Question Re: Difference between SAP Access Control and IDM in Technology Q&amp;A</title>
    <link>https://community.sap.com/t5/technology-q-a/difference-between-sap-access-control-and-idm/qaa-p/10542714#M3832306</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Ali,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;That's a good question, but a tough one.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;While both applications can do most of what the other can do, it's a matter of specialization in my opinion.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Access Control is all about managing and controlling access to SAP system roles and has the ability to report on role conflicts for compliance and reporting purposes. (I'm sure I'm leaving a lot out, but maybe a GRC / AC expert can fill in more details)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;SAP IDM is about managing the user life cycle with regards to landscape and enterprise systems. It will handle the creation, update and ultimately the removal (or de-provisioning) of users in SAP ABAP, SAP JAVA, LDAP, JDBC, and API based applications.&amp;nbsp; It will also do Role Management through a web based UI (User management is web based as well). and as of the latest Service pack for SAP IDM 7.2, it will do attestation (limited certification) as well. It is a definite upgrade to CUA as it will work with a greater variety of systems, include workflows and approvals.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;GRC will do some provisioning, but it's somewhat limited, as is IDM's compliance abilities.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The applications are designed to work together, however it does not have a great track record and the integration is typically heavily modified to work as desired.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you have specific questions, feel free to post / DM.&amp;nbsp; Obviously I am more knowledgeable about IDM, but I'll be happy to help you in any way possible.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Matt&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Sat, 23 Aug 2014 16:22:30 GMT</pubDate>
    <dc:creator>former_member2987</dc:creator>
    <dc:date>2014-08-23T16:22:30Z</dc:date>
    <item>
      <title>Difference between SAP Access Control and IDM</title>
      <link>https://community.sap.com/t5/technology-q-a/difference-between-sap-access-control-and-idm/qaq-p/10542713</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Expert, &lt;/P&gt;&lt;P&gt;I have one question What is the difference between SAP Access Control and SAP Identity Management ? &lt;SPAN __jive_emoticon_name="info" __jive_macro_name="emoticon" class="jive_macro_emoticon jive_emote jive_macro" src="https://community.sap.com/994/images/emoticons/info.gif"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt; &lt;/SPAN&gt;&lt;/P&gt;&lt;H2 style="margin: 0 0 15px; font-weight: normal; color: #333333; background: #ffffff;"&gt;&lt;/H2&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 23 Aug 2014 14:29:25 GMT</pubDate>
      <guid>https://community.sap.com/t5/technology-q-a/difference-between-sap-access-control-and-idm/qaq-p/10542713</guid>
      <dc:creator>Former Member</dc:creator>
      <dc:date>2014-08-23T14:29:25Z</dc:date>
    </item>
    <item>
      <title>Re: Difference between SAP Access Control and IDM</title>
      <link>https://community.sap.com/t5/technology-q-a/difference-between-sap-access-control-and-idm/qaa-p/10542714#M3832306</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Ali,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;That's a good question, but a tough one.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;While both applications can do most of what the other can do, it's a matter of specialization in my opinion.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Access Control is all about managing and controlling access to SAP system roles and has the ability to report on role conflicts for compliance and reporting purposes. (I'm sure I'm leaving a lot out, but maybe a GRC / AC expert can fill in more details)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;SAP IDM is about managing the user life cycle with regards to landscape and enterprise systems. It will handle the creation, update and ultimately the removal (or de-provisioning) of users in SAP ABAP, SAP JAVA, LDAP, JDBC, and API based applications.&amp;nbsp; It will also do Role Management through a web based UI (User management is web based as well). and as of the latest Service pack for SAP IDM 7.2, it will do attestation (limited certification) as well. It is a definite upgrade to CUA as it will work with a greater variety of systems, include workflows and approvals.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;GRC will do some provisioning, but it's somewhat limited, as is IDM's compliance abilities.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The applications are designed to work together, however it does not have a great track record and the integration is typically heavily modified to work as desired.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you have specific questions, feel free to post / DM.&amp;nbsp; Obviously I am more knowledgeable about IDM, but I'll be happy to help you in any way possible.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Matt&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 23 Aug 2014 16:22:30 GMT</pubDate>
      <guid>https://community.sap.com/t5/technology-q-a/difference-between-sap-access-control-and-idm/qaa-p/10542714#M3832306</guid>
      <dc:creator>former_member2987</dc:creator>
      <dc:date>2014-08-23T16:22:30Z</dc:date>
    </item>
  </channel>
</rss>

