cancel
Showing results for 
Search instead for 
Did you mean: 

SAP Solution Manager 7.1 : no RFC authorization for function group "SDTX"

Former Member
0 Kudos

Hi Experts,

I use SAP Solution Manager 7.1 on my landscape.

I have RFC authorization errors on my clients systems.

For example, job SM:SELFDIAGNOSIS generates RFC authorization errors on client :

User "SMTMSMP" has no RFC authorization for function group "SDTX".

But SMTMSMP has S_RFC autorization, both on SSM and client system :

Z_SOLMAN_READ

Z_SOLMAN_TMW

Same problem with user SM_SMP :

User "SM_SMP" has no RFC authorization for function group "OCS_CRM".

Thanks for your help.

Regards

Chris

Accepted Solutions (1)

Accepted Solutions (1)

Former Member
0 Kudos

Hi,

I did it.

I have added SAP_S_RFCACL role to the user in each systems, but I had to generate profil for this role and did a user comparison on each system too.

Now it works.

Thanks.

Regards

Chris

Former Member
0 Kudos

Hi Chris,

Cool... Please mark the thread as answered if it fixed your issue.

Thanks,

Jagadish.

Answers (5)

Answers (5)

Former Member
0 Kudos

OK

How can I do that?

I can't find this option.

Former Member
0 Kudos

Hi,

Thanks.

it seems to be OK. There are no RFC error this morning.

Now, I try to understand how trusted RFC works because when I try to use on to remote logon to client system, it fails.

"You are not authorized to logon to this system"

Regards

Chris

Former Member
0 Kudos

Hi Chris,

Please assign authorisation object S_RFCACL object to the role for the user which is trying to login..

For example .. If your user id in Solman is "AAA" and in the backend system "AAA" then AAA should have the role which contains authorisation object S_RFCACL.. then you will not get that error in the trusted RFC..

Thanks,

Jagadish.

Former Member
0 Kudos

Hi,

I have added SDTX and OCS_CRM and job SM:SELFDIAGNOSIS doesn't generate RFC error anymore.

So, Is it better to add these two values on role Z_SOLMAN_READ for each system or to add S_RFC?

Why Solution Manager doesn't assign these values ?

Regards

Chris

Former Member
0 Kudos

Check which Role contains S_RFC object for the users above and assign these objects in the role.

Thanks,

Jagadish.

Former Member
0 Kudos

Hi,

in auth object S_RFC, I can find :

ACTVT : 16

RFC_NAME : ....a long list of values

RFC_TYPE : FUGR

I don't know how to insert authorization S_RFCACL in this role that is a role provided by Solution Manger, I don't think it is necessary to change it.

Regards

Chris

Former Member
0 Kudos

In the RFC_NAME long list of values .. do u have the names SDTX and OCS_CRM... If not please add them

Or in PFCG .. you can click on the button Manual where you can insert an auth object manually..

and give S_RFC and put * in all the fields and activate the profile..

Check if it is working or not??

Former Member
0 Kudos

Hi Chris,

Can you check all of the below fields in auth object S_RFC are marked as *

ACTVT

RFC_NAME

RFC_TYPE

Moreover can u check assigning S_RFCACL to the role and check.

Thanks,

Jagadish.

OttoGold
Active Contributor
0 Kudos

Please don`t use * for S_RFC. Don`t advise that to others either. That is dangerous! Otto