on 04-04-2012 10:44 AM
Hi Experts,
I use SAP Solution Manager 7.1 on my landscape.
I have RFC authorization errors on my clients systems.
For example, job SM:SELFDIAGNOSIS generates RFC authorization errors on client :
User "SMTMSMP" has no RFC authorization for function group "SDTX".
But SMTMSMP has S_RFC autorization, both on SSM and client system :
Z_SOLMAN_READ
Z_SOLMAN_TMW
Same problem with user SM_SMP :
User "SM_SMP" has no RFC authorization for function group "OCS_CRM".
Thanks for your help.
Regards
Chris
Hi,
I did it.
I have added SAP_S_RFCACL role to the user in each systems, but I had to generate profil for this role and did a user comparison on each system too.
Now it works.
Thanks.
Regards
Chris
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
OK
How can I do that?
I can't find this option.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
Hi,
Thanks.
it seems to be OK. There are no RFC error this morning.
Now, I try to understand how trusted RFC works because when I try to use on to remote logon to client system, it fails.
"You are not authorized to logon to this system"
Regards
Chris
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
Hi Chris,
Please assign authorisation object S_RFCACL object to the role for the user which is trying to login..
For example .. If your user id in Solman is "AAA" and in the backend system "AAA" then AAA should have the role which contains authorisation object S_RFCACL.. then you will not get that error in the trusted RFC..
Thanks,
Jagadish.
Hi,
I have added SDTX and OCS_CRM and job SM:SELFDIAGNOSIS doesn't generate RFC error anymore.
So, Is it better to add these two values on role Z_SOLMAN_READ for each system or to add S_RFC?
Why Solution Manager doesn't assign these values ?
Regards
Chris
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
Hi,
in auth object S_RFC, I can find :
ACTVT : 16
RFC_NAME : ....a long list of values
RFC_TYPE : FUGR
I don't know how to insert authorization S_RFCACL in this role that is a role provided by Solution Manger, I don't think it is necessary to change it.
Regards
Chris
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
In the RFC_NAME long list of values .. do u have the names SDTX and OCS_CRM... If not please add them
Or in PFCG .. you can click on the button Manual where you can insert an auth object manually..
and give S_RFC and put * in all the fields and activate the profile..
Check if it is working or not??
Hi Chris,
Can you check all of the below fields in auth object S_RFC are marked as *
ACTVT
RFC_NAME
RFC_TYPE
Moreover can u check assigning S_RFCACL to the role and check.
Thanks,
Jagadish.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
User | Count |
---|---|
83 | |
10 | |
10 | |
9 | |
7 | |
6 | |
5 | |
5 | |
4 | |
4 |
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.