on 05-18-2008 10:57 AM
Dear All,
i want to get your advice regarding this matter
i want to integrate MS Active directory to SAP systems, i have ERP "DEV(2 clients), QAS(3 clients),PRD(1 client)" and BI "DEV (1 client),PRD(1client)"
but not all the users have authorization to all the systems
i mean some of them has authorization for all the system and the others have authorization for some of the systems.
i don't have till now Centgral User administration.
first question:
can i make the integration betweenthe active directory with my SAP landscape or i have first to configure the SAP Central User Adminstration then integrate it with MS active directory?
second question:
will all SAP roles be mapped to the active directory or i have to login to the SAP systems to assign the roles to the users
i mean, if i create a new user in the active directory can i assign roles to him from the active directory or should i login to the systems and assign roles manually?
please help
thanks
Sherif
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
first question:
can i make the integration between the active directory with my SAP landscape or i have first to configure the SAP Central User Adminstration then integrate it with MS active directory?
As far as i know you don't have to configure CUA to intergrate a system with LDAP... Systems can be configured individually to use LDAP as a datasource.
second question:
will all SAP roles be mapped to the active directory or i have to login to the SAP systems to assign the roles to the users
i mean, if i create a new user in the active directory can i assign roles to him from the active directory or should i login to the systems and assign roles manually?
You need to do the role assigment from SAP.... AD will provide the the user but the role/profile assigment and all user details will be kept on the SAP side.
Regards
Juan
Thanks Juan,
I did the following steps
1- create RFC connection for the LDAP_RFC from SM59
2- create connector for that RFC from LDAP t-code
3- create System User to be used during connection to the Active directory
4- create server using the settings of the physical active directory server
Result: I can reach to the active directory from SAP.
Problem
i'm following the SAP Help but when in
[Generate Schema Extension |http://help.sap.com/saphelp_nw2004s/helpdata/en/57/b30c3c30a85b4ee10000000a11402f/content.htm]
step i get the LDF file successfully but when i'm importing it into Active Directory it says done but i can't recognize the result
i mean there is no new attributes added to the Active directory.
so could you please tell me why this happan?
thanks
sherif
User | Count |
---|---|
86 | |
10 | |
10 | |
9 | |
6 | |
6 | |
6 | |
5 | |
4 | |
3 |
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.