SAP Knowledge Base Article - Preview

1846213 - Risk Analysis in Role Approval workflow (SAP_GRAC_ROLE_APPR)

Symptom

Once a role is sent for approval to Role Approval workflow, the approver must re-run the risk analysis and mitigate risks.

However, due to the design of the Role Approval workflow, customers will observe the following scenario: 

  1. The risk analysis performed in the methodology step prior to submitting the role for approval, has been done for some risk types (Example: only for Critical Permission risk type), but not for all types of risk.
     
    kba_1.gif
     
     
     
     
     
  2. The role is then submitted for approval.
  3. The approver reviews the request click on role link to open the role contents.
  4. In the role screen, approver goes to methodology phase "Analyze Access Risks" and is unable to perform new risk analysis on other risk types, as all the options are disabled. 
  5. Also, the in the "View Results For" section, only analysis for risktype done prior to submitting the role for approval will be shown (Step 1). The approver will not see any results in the other risk types when changing the value in the "Type" drop down list.

 


Read more...

Environment

SAP GRC Access Control 10.0

SAP GRC Access Control 10.1

Product

SAP Access Control 10.0 ; SAP Access Control 10.1

Keywords

Role Approval workflow, disabled, risk analysis, redo, re-do, re-run, rerun, violations, not able, other types, critical permission, critical action, action, permission, SAP_GRAC_ROLE_APPR, security role administrator, role admin, perform risk analysis during the approval of the role, check risk , KBA , GRC-SAC-BRM , Business Role Management , How To

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.