on 02-11-2015 3:27 AM
Hi Experts!
I need their divine help:
I'm seting the Password Self Service in GRC. My System Satellital is a CUA, here I'm configuring the service, I executed all the steps defined in this guide:
But when I test the service GRAC_UIBB_END_USERLOGIN, I can loggin me, I can define a question and an answer secret, but I Can't select a system for the reset, because in the windows not shown any system. When I seach a systems, appear the error message:
"No records found for the search criteria selected"
I put this value in the field of system: *GRD* because I configured the systema GRD100 for test the service.
What do I need activate for fix this issue?
Thanks!!!!
HI Amparo,
it seems that the connector has not been activated for PSS. Goto SPRO >IMG > GRC > AC > Maintain Connector Settings and activate the PSS flag for the connector you would like to see in PSS.
Let us know if it works.
Best regards,
Alessandro
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
on a very strange off chance, ensure that your SCUM setting in CUA has the password field as everywhere (I haven't configure PSS for CUA so not sure if the function module goes to the CUA system or straight to the satellite)
The other one - does the user actually have an account for that satellite system? They will only appear on the system list if they have access
Finally, have you checked and tested your connector to make sure it's all set up correctly (including logical system to rfc mapping)?
Hi Colleeen,
Thanks for your response! I reviewed in the SCUM and the password field is EveryWhere. The user test, exists in the satellite system, but I'm not sure that have the complete authorizations and I don't grant the SAP_ALL
For the test and check the connector, We created a communication user with the roles:
We set this user in the Logon Data tab for the service GRAC_UIBB_END_USERLOGIN in the SICF. But the user RFC configurated in SM59, for the conections between CUA and Children systems is other. Could be this topic, the real problem?
Thanks!!!
the RFC connections between the CUA and children systems. We have a user type System: RFCGRD, this user exists in all de children systems connected to the CUA.
The user RFCGRD have SAP_ALL. But this user isn't configured in the SICF, We used other called RFCPSS without SAP_ALL, only has the roles
SAP_GRAC_ACCESS_REQUESTER
SAP_GRAC_END_USER
We'll test put the user RFCGRD in the ten servicies for de PSS.
HI Amparo
I would go through the following checks:
I haven't done PSS with CUA. However, with the requirement that SCUM setting be set to everyone - it makes me think the GRC system will call the API in the satellite/child system and not go via the CUA. This makes me wonder if the SICF user needs access in satellite/child. I assume that will depend on your RFC connection definition in GRC and use of trusted systems.
Regards
Colleen
Hi Amparo,
Can you also ensure the following:
1. Full User sync has been performed successfully
2. In SPRO, which system do you have maintained in the User Authentication Data Source? Ensure the user you are logging with is available in this system. in PSS first level of authentication takes place from the Authentication Source.
Let us know.
Thanks
Sammukh
Hi Guys!!
Thanks for your responses, all the tips was valuables for us. We could fixed the problem executed the Sync jobs. The system configurated appears!!!
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.