02-27-2013 2:30 AM
Hello,
While creating rfc READ user SM_SID1 on managed system SID2 by using standard user SM_ADMIN_SID1 which has required roles, the user SM_SID1 gets created in managed system SID2 but the recommended roles does not get assigned to SM_SID1.
Z_SOLMAN_READ
Z_SOLMAN_READ_70
Z_SOLMAN_READ_620
I get this error in solman_setup screen :
READ-Destination SM_SID2CLNT100_READ with User SM_SID1 created with Errors
You do not have authorization for this action
On checking the managed system SID 2 I noticed there is one dump created by user SM_ADMIN_SID1
And after assigning SAP_ALL to SM_ADMIN_SID1 it works fine. But since in our prod system I cannot assign SAP_ALL on temporary basis I would like to know how SM_ADMIN_SID1 automatically assign these roles to SM_SID1 in managed system using solman_setup.
Z_SOLMAN_READ
Z_SOLMAN_READ_70
Z_SOLMAN_READ_620
Thanks
Shradha
03-04-2013 10:51 AM
Hello Shrada,
if it works with SAP_ALL assigned...., I suggest the standard approach:
Remove SAP_ALL again and activate the auth-trace in ST01 for the remote user.
Probably some s_rfc-, s_develop-, etc. auths are missing...
b.rgds, Bernhard
03-04-2013 8:09 PM
Hi Shradha,
Hopefully note 994415 will help overcome this situation.
Best regards,
Felipe Fonseca.
03-05-2013 9:27 PM
Thanks Felipe !! But we don't have a CUA so this note is note valid for us & my SAP_BASIS is at SAPKB70010.