on ‎2018 May 01 12:00 PM
Hello monsieur/madame,
I want to extract reports for the users who have the access for SAP_ALL & SAP_NEW.
This can be done through SUIM for individual systems.
But I want to know if the report can be pulled out directly from GRC for all the systems.
P.S. : Only access control module has been installed in our system. We cannot use Process Control for now.
Request clarification before answering.
Hi Anirudh,
In case, the profiles were assigned by GRC to plugin system/backend system then you might have an option to use the report from NWBC by navigating Reports and Analytics --> Access Request Reports --> Request by PD/Structural Profiles to get the details
FYI - GRC pulls data only when its functionality needs to be aligned to plugin system, i.e non related data or data where GRC functionality is not involved will be not be fetched by GRC modules
Regards,
Vijay.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
Anirudh,
Colleen is right, you can download it from the Reports and Analytics Tab ==>Role Management reports ==> User to role Relationship ==> Report Source = Backened ==> Search Filter(Profile Name) SAP_ALL and Execute in background.
Thanks
Ramesh
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
There are standard webdynpro reports in one of the work centres for roles assigned to users. Within Access Control, a SAP profile is a type of role. You can limit on the Role type to be PRF (profile) and then search SAP_ALL to get them.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
can you please elaborate. Action usage would be what transactions/actions they have used for the month. Bein SAP_ALL not sure why the report would be useful
When you mean a particular month, are you wanting to know if the user had the access or when the role was assigned. If assignment, I would assume you are looking at ARQ related reports based on specific access requestions and provisioning.
You might find it easier running SUIM Change documents for the specific system. Also, set your security up in a way that users cannot easily obtain standard profiles then you won't have an issue. You could define them to be critical profiles in ARA to report that way and mitigate or generate alerts for the risk.
Regards
Colleen
| User | Count |
|---|---|
| 17 | |
| 8 | |
| 7 | |
| 6 | |
| 2 | |
| 2 | |
| 2 | |
| 2 | |
| 1 | |
| 1 |
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.