Symptom
Reason and Prerequisites
- Giving full authorisation (*) on the name of the object to be secured (RFC_Name field) which is a function group (FUGR) would enable the user to execute all the function groups including critical groups.
- Full authorisation also presents a security risk not just for the system concerned but for the whole landscape including the production system.
- Audit requirement or advisory.
Read more...
Environment
- SAP NetWeaver
- SAP NetWeaver Application Server for SAP S/4HANA
- ABAP PLATFORM - Application Server ABAP
Product
ABAP platform all versions ; SAP NetWeaver all versions ; SAP Web Application Server for SAP S/4HANA all versions
Keywords
Possible RFC_Name field values, Authorization object S_RFC, authorisations, RFC, Asynchronous RFC, Transactional RFC, qRFC, bgRFC, RFC_GDPR , KBA , BC-MID-RFC , RFC , BC-CTS-TLS , Transport Tools , BC-CUS-TOL-CST , Customizing Cross-System Tools , How To
About this page
This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).Search for additional results
Visit SAP Support Portal's SAP Notes and KBA Search.
SAP Knowledge Base Article - Preview