SlideShare a Scribd company logo
1 of 13
CONTACT US:
SPECTO TRAINING
INDIA +91-9533456356
info@spectoittraining.com
www.spectoittraining.com
http://www.saponlinetraining.in/sap-
security-online-training/
 Sap apo online training in usa
 Sap apo online training in uk
 Sap apo online training in australia
 Sap apo online training in canada
 Sap apo online training in pune
 Sap apo online training in singapore
 Sap apo online training in south africa
 Sap apo online training in dubai
 Sap apo online training in malaysia
 Sap apo online training in india
 Sap apo online training in mumbai
 Online classes on sap security in uk
 Live classes on sap security in usa
 Training classes on sap security in australia
 Learn best tutorial on sap security in london
 The best training course on sap security in usa
 Best tutorials on sap security training in canada
 Sap security training classes by real time
experts
 Sap security training in hyderabad
Introduction
 What is Security
 Building blocks
 Common terminologies used Most Common
 tools in Security
 CUA
www.spectoittraining.com
www.spectoittraining.com
What is Security?
Security concept is same around the globe like in your normal life, security
means removing or restricting unauthorized access to your belongings. For
example your Car, laptop or cared cards etc
IT Security?
Information security (sometimes shortened to InfoSec) is the practice
defending information from unauthorized access, use, disclosure,
disruption,
modification, perusal, inspection, recording or destruction. It is a general
term
that can be used regardless of the form the data may take (electronic,
physical,
etc...)
SAP Security?
In the same context of InfoSec. SAP security have the same meaning… or in
other words - who can do what in SAP?
www.spectoittraining.com
 Building Blocks
 User Master
 Record Roles
 Profiles Authorization
 Objects
www.spectoittraining.com
User Master Record?
A User initially has no access in SAP
 When we create access in system it defines UMR User Master Record
information includes:
 Name, Password, Address, User type, Company information
 User Group
 Roles and Profiles
 Validity dates (from/to)
 User defaults (logon language, default printer, date format, etc)
 User Types: Dialog – typical for most users System – cannot be used
for dialog login, can communicate between systems and start
background jobs Communications Data – cannot be used for dialog
login, can communicate between systems but cannot start background
jobs Reference – cannot log in, used to assign additional
Authorizations
www.spectoittraining.com
 Roles and Profiles Roles is group of tcode (s), which is used to
perform a specific business task.
 Each role requires specific privileges to perform a function in
SAP that is called AUTHORIZATIONS There are 3 types of
Roles:
 Single – an independent Role
 Derived – has a parent and differs only in Organization Levels.
Maintain Transactions, Menu, Authorizations only at the parent
level
 Composite – container that contains one or more Single or
Derived Roles
www.spectoittraining.com
Authorization Objects
• Authorization Objects are the keys to SAP security
• When you attempt actions in SAP the system checks to
see whether you have the appropriate Authorizations
• The same Authorization Objects can be used by
different Transactions
www.spectoittraining.com
User Buffer?
• When a User logs into the system, all of the Authorizations that
the User has are loaded into a special place in memory called the
User Buffer
• As the User attempts to perform activities, the system checks
whether the user has the appropriate Authorization Objects in
the User Buffer.
• You can see the buffer in Transaction .
www.spectoittraining.com
Executing a Transaction (Authorization Checks)
1) Does the Transaction exist? All Transactions have an entry in table
TSTC
2) Is the Transaction locked? Transactions are locked using
Transaction SM01 Once locked, they cannot be used in any client
3) Can the User start the Transaction? Every Transaction requires that
the user have the Object S_TCODE=Transaction Name Some
Transactions also require another Authorization Object to start
(varies depending on the Transaction)
4) What can the User do in the Transaction? The system will check to
see if the user has additional Authorization Objects as necessary
www.spectoittraining.com
CONTACT US:
SPECTO TRAINING
INDIA +91-9533456356
info@spectotraining.com
www.spectoittraining.com

More Related Content

Viewers also liked

El concepto enfermedad y su evolución
El concepto enfermedad y su evoluciónEl concepto enfermedad y su evolución
El concepto enfermedad y su evoluciónBeluu G.
 
Como crear pagina Jimdo
 Como crear pagina Jimdo  Como crear pagina Jimdo
Como crear pagina Jimdo paola sailema
 
2014 11 romeinenmeeting
2014 11 romeinenmeeting2014 11 romeinenmeeting
2014 11 romeinenmeetingRené Voorburg
 
How to Reduce Canker Sore Swelling
How to Reduce Canker Sore SwellingHow to Reduce Canker Sore Swelling
How to Reduce Canker Sore Swellingclairewilson001
 
Mecanismos de participacion en el diseño de politicas publicas
Mecanismos de participacion en el diseño de politicas publicasMecanismos de participacion en el diseño de politicas publicas
Mecanismos de participacion en el diseño de politicas publicasCarlos Fernando Villacreses
 

Viewers also liked (8)

El concepto enfermedad y su evolución
El concepto enfermedad y su evoluciónEl concepto enfermedad y su evolución
El concepto enfermedad y su evolución
 
1013 2.1
1013 2.11013 2.1
1013 2.1
 
NHS_White_Paper_TOD_2015
NHS_White_Paper_TOD_2015NHS_White_Paper_TOD_2015
NHS_White_Paper_TOD_2015
 
Como crear pagina Jimdo
 Como crear pagina Jimdo  Como crear pagina Jimdo
Como crear pagina Jimdo
 
2014 11 romeinenmeeting
2014 11 romeinenmeeting2014 11 romeinenmeeting
2014 11 romeinenmeeting
 
Nakornratchsrima
NakornratchsrimaNakornratchsrima
Nakornratchsrima
 
How to Reduce Canker Sore Swelling
How to Reduce Canker Sore SwellingHow to Reduce Canker Sore Swelling
How to Reduce Canker Sore Swelling
 
Mecanismos de participacion en el diseño de politicas publicas
Mecanismos de participacion en el diseño de politicas publicasMecanismos de participacion en el diseño de politicas publicas
Mecanismos de participacion en el diseño de politicas publicas
 

Recently uploaded

Activity 01 - Artificial Culture (1).pdf
Activity 01 - Artificial Culture (1).pdfActivity 01 - Artificial Culture (1).pdf
Activity 01 - Artificial Culture (1).pdfciinovamais
 
Presentation by Andreas Schleicher Tackling the School Absenteeism Crisis 30 ...
Presentation by Andreas Schleicher Tackling the School Absenteeism Crisis 30 ...Presentation by Andreas Schleicher Tackling the School Absenteeism Crisis 30 ...
Presentation by Andreas Schleicher Tackling the School Absenteeism Crisis 30 ...EduSkills OECD
 
POINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptx
POINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptxPOINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptx
POINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptxSayali Powar
 
How to Make a Pirate ship Primary Education.pptx
How to Make a Pirate ship Primary Education.pptxHow to Make a Pirate ship Primary Education.pptx
How to Make a Pirate ship Primary Education.pptxmanuelaromero2013
 
Mastering the Unannounced Regulatory Inspection
Mastering the Unannounced Regulatory InspectionMastering the Unannounced Regulatory Inspection
Mastering the Unannounced Regulatory InspectionSafetyChain Software
 
Grant Readiness 101 TechSoup and Remy Consulting
Grant Readiness 101 TechSoup and Remy ConsultingGrant Readiness 101 TechSoup and Remy Consulting
Grant Readiness 101 TechSoup and Remy ConsultingTechSoup
 
Measures of Central Tendency: Mean, Median and Mode
Measures of Central Tendency: Mean, Median and ModeMeasures of Central Tendency: Mean, Median and Mode
Measures of Central Tendency: Mean, Median and ModeThiyagu K
 
Separation of Lanthanides/ Lanthanides and Actinides
Separation of Lanthanides/ Lanthanides and ActinidesSeparation of Lanthanides/ Lanthanides and Actinides
Separation of Lanthanides/ Lanthanides and ActinidesFatimaKhan178732
 
Advanced Views - Calendar View in Odoo 17
Advanced Views - Calendar View in Odoo 17Advanced Views - Calendar View in Odoo 17
Advanced Views - Calendar View in Odoo 17Celine George
 
Student login on Anyboli platform.helpin
Student login on Anyboli platform.helpinStudent login on Anyboli platform.helpin
Student login on Anyboli platform.helpinRaunakKeshri1
 
Paris 2024 Olympic Geographies - an activity
Paris 2024 Olympic Geographies - an activityParis 2024 Olympic Geographies - an activity
Paris 2024 Olympic Geographies - an activityGeoBlogs
 
The basics of sentences session 2pptx copy.pptx
The basics of sentences session 2pptx copy.pptxThe basics of sentences session 2pptx copy.pptx
The basics of sentences session 2pptx copy.pptxheathfieldcps1
 
Introduction to AI in Higher Education_draft.pptx
Introduction to AI in Higher Education_draft.pptxIntroduction to AI in Higher Education_draft.pptx
Introduction to AI in Higher Education_draft.pptxpboyjonauth
 
1029-Danh muc Sach Giao Khoa khoi 6.pdf
1029-Danh muc Sach Giao Khoa khoi  6.pdf1029-Danh muc Sach Giao Khoa khoi  6.pdf
1029-Danh muc Sach Giao Khoa khoi 6.pdfQucHHunhnh
 
Q4-W6-Restating Informational Text Grade 3
Q4-W6-Restating Informational Text Grade 3Q4-W6-Restating Informational Text Grade 3
Q4-W6-Restating Informational Text Grade 3JemimahLaneBuaron
 
18-04-UA_REPORT_MEDIALITERAСY_INDEX-DM_23-1-final-eng.pdf
18-04-UA_REPORT_MEDIALITERAСY_INDEX-DM_23-1-final-eng.pdf18-04-UA_REPORT_MEDIALITERAСY_INDEX-DM_23-1-final-eng.pdf
18-04-UA_REPORT_MEDIALITERAСY_INDEX-DM_23-1-final-eng.pdfssuser54595a
 
URLs and Routing in the Odoo 17 Website App
URLs and Routing in the Odoo 17 Website AppURLs and Routing in the Odoo 17 Website App
URLs and Routing in the Odoo 17 Website AppCeline George
 
Hybridoma Technology ( Production , Purification , and Application )
Hybridoma Technology  ( Production , Purification , and Application  ) Hybridoma Technology  ( Production , Purification , and Application  )
Hybridoma Technology ( Production , Purification , and Application ) Sakshi Ghasle
 
Kisan Call Centre - To harness potential of ICT in Agriculture by answer farm...
Kisan Call Centre - To harness potential of ICT in Agriculture by answer farm...Kisan Call Centre - To harness potential of ICT in Agriculture by answer farm...
Kisan Call Centre - To harness potential of ICT in Agriculture by answer farm...Krashi Coaching
 

Recently uploaded (20)

Activity 01 - Artificial Culture (1).pdf
Activity 01 - Artificial Culture (1).pdfActivity 01 - Artificial Culture (1).pdf
Activity 01 - Artificial Culture (1).pdf
 
Presentation by Andreas Schleicher Tackling the School Absenteeism Crisis 30 ...
Presentation by Andreas Schleicher Tackling the School Absenteeism Crisis 30 ...Presentation by Andreas Schleicher Tackling the School Absenteeism Crisis 30 ...
Presentation by Andreas Schleicher Tackling the School Absenteeism Crisis 30 ...
 
POINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptx
POINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptxPOINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptx
POINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptx
 
How to Make a Pirate ship Primary Education.pptx
How to Make a Pirate ship Primary Education.pptxHow to Make a Pirate ship Primary Education.pptx
How to Make a Pirate ship Primary Education.pptx
 
Mastering the Unannounced Regulatory Inspection
Mastering the Unannounced Regulatory InspectionMastering the Unannounced Regulatory Inspection
Mastering the Unannounced Regulatory Inspection
 
Grant Readiness 101 TechSoup and Remy Consulting
Grant Readiness 101 TechSoup and Remy ConsultingGrant Readiness 101 TechSoup and Remy Consulting
Grant Readiness 101 TechSoup and Remy Consulting
 
Measures of Central Tendency: Mean, Median and Mode
Measures of Central Tendency: Mean, Median and ModeMeasures of Central Tendency: Mean, Median and Mode
Measures of Central Tendency: Mean, Median and Mode
 
Separation of Lanthanides/ Lanthanides and Actinides
Separation of Lanthanides/ Lanthanides and ActinidesSeparation of Lanthanides/ Lanthanides and Actinides
Separation of Lanthanides/ Lanthanides and Actinides
 
Advanced Views - Calendar View in Odoo 17
Advanced Views - Calendar View in Odoo 17Advanced Views - Calendar View in Odoo 17
Advanced Views - Calendar View in Odoo 17
 
Student login on Anyboli platform.helpin
Student login on Anyboli platform.helpinStudent login on Anyboli platform.helpin
Student login on Anyboli platform.helpin
 
Paris 2024 Olympic Geographies - an activity
Paris 2024 Olympic Geographies - an activityParis 2024 Olympic Geographies - an activity
Paris 2024 Olympic Geographies - an activity
 
The basics of sentences session 2pptx copy.pptx
The basics of sentences session 2pptx copy.pptxThe basics of sentences session 2pptx copy.pptx
The basics of sentences session 2pptx copy.pptx
 
Introduction to AI in Higher Education_draft.pptx
Introduction to AI in Higher Education_draft.pptxIntroduction to AI in Higher Education_draft.pptx
Introduction to AI in Higher Education_draft.pptx
 
1029-Danh muc Sach Giao Khoa khoi 6.pdf
1029-Danh muc Sach Giao Khoa khoi  6.pdf1029-Danh muc Sach Giao Khoa khoi  6.pdf
1029-Danh muc Sach Giao Khoa khoi 6.pdf
 
Q4-W6-Restating Informational Text Grade 3
Q4-W6-Restating Informational Text Grade 3Q4-W6-Restating Informational Text Grade 3
Q4-W6-Restating Informational Text Grade 3
 
18-04-UA_REPORT_MEDIALITERAСY_INDEX-DM_23-1-final-eng.pdf
18-04-UA_REPORT_MEDIALITERAСY_INDEX-DM_23-1-final-eng.pdf18-04-UA_REPORT_MEDIALITERAСY_INDEX-DM_23-1-final-eng.pdf
18-04-UA_REPORT_MEDIALITERAСY_INDEX-DM_23-1-final-eng.pdf
 
URLs and Routing in the Odoo 17 Website App
URLs and Routing in the Odoo 17 Website AppURLs and Routing in the Odoo 17 Website App
URLs and Routing in the Odoo 17 Website App
 
TataKelola dan KamSiber Kecerdasan Buatan v022.pdf
TataKelola dan KamSiber Kecerdasan Buatan v022.pdfTataKelola dan KamSiber Kecerdasan Buatan v022.pdf
TataKelola dan KamSiber Kecerdasan Buatan v022.pdf
 
Hybridoma Technology ( Production , Purification , and Application )
Hybridoma Technology  ( Production , Purification , and Application  ) Hybridoma Technology  ( Production , Purification , and Application  )
Hybridoma Technology ( Production , Purification , and Application )
 
Kisan Call Centre - To harness potential of ICT in Agriculture by answer farm...
Kisan Call Centre - To harness potential of ICT in Agriculture by answer farm...Kisan Call Centre - To harness potential of ICT in Agriculture by answer farm...
Kisan Call Centre - To harness potential of ICT in Agriculture by answer farm...
 

Sap security online training | spectotraining

  • 1. CONTACT US: SPECTO TRAINING INDIA +91-9533456356 info@spectoittraining.com www.spectoittraining.com http://www.saponlinetraining.in/sap- security-online-training/
  • 2.  Sap apo online training in usa  Sap apo online training in uk  Sap apo online training in australia  Sap apo online training in canada  Sap apo online training in pune  Sap apo online training in singapore  Sap apo online training in south africa  Sap apo online training in dubai  Sap apo online training in malaysia  Sap apo online training in india  Sap apo online training in mumbai
  • 3.  Online classes on sap security in uk  Live classes on sap security in usa  Training classes on sap security in australia  Learn best tutorial on sap security in london  The best training course on sap security in usa  Best tutorials on sap security training in canada  Sap security training classes by real time experts  Sap security training in hyderabad
  • 4. Introduction  What is Security  Building blocks  Common terminologies used Most Common  tools in Security  CUA www.spectoittraining.com
  • 6. What is Security? Security concept is same around the globe like in your normal life, security means removing or restricting unauthorized access to your belongings. For example your Car, laptop or cared cards etc IT Security? Information security (sometimes shortened to InfoSec) is the practice defending information from unauthorized access, use, disclosure, disruption, modification, perusal, inspection, recording or destruction. It is a general term that can be used regardless of the form the data may take (electronic, physical, etc...) SAP Security? In the same context of InfoSec. SAP security have the same meaning… or in other words - who can do what in SAP? www.spectoittraining.com
  • 7.  Building Blocks  User Master  Record Roles  Profiles Authorization  Objects www.spectoittraining.com
  • 8. User Master Record? A User initially has no access in SAP  When we create access in system it defines UMR User Master Record information includes:  Name, Password, Address, User type, Company information  User Group  Roles and Profiles  Validity dates (from/to)  User defaults (logon language, default printer, date format, etc)  User Types: Dialog – typical for most users System – cannot be used for dialog login, can communicate between systems and start background jobs Communications Data – cannot be used for dialog login, can communicate between systems but cannot start background jobs Reference – cannot log in, used to assign additional Authorizations www.spectoittraining.com
  • 9.  Roles and Profiles Roles is group of tcode (s), which is used to perform a specific business task.  Each role requires specific privileges to perform a function in SAP that is called AUTHORIZATIONS There are 3 types of Roles:  Single – an independent Role  Derived – has a parent and differs only in Organization Levels. Maintain Transactions, Menu, Authorizations only at the parent level  Composite – container that contains one or more Single or Derived Roles www.spectoittraining.com
  • 10. Authorization Objects • Authorization Objects are the keys to SAP security • When you attempt actions in SAP the system checks to see whether you have the appropriate Authorizations • The same Authorization Objects can be used by different Transactions www.spectoittraining.com
  • 11. User Buffer? • When a User logs into the system, all of the Authorizations that the User has are loaded into a special place in memory called the User Buffer • As the User attempts to perform activities, the system checks whether the user has the appropriate Authorization Objects in the User Buffer. • You can see the buffer in Transaction . www.spectoittraining.com
  • 12. Executing a Transaction (Authorization Checks) 1) Does the Transaction exist? All Transactions have an entry in table TSTC 2) Is the Transaction locked? Transactions are locked using Transaction SM01 Once locked, they cannot be used in any client 3) Can the User start the Transaction? Every Transaction requires that the user have the Object S_TCODE=Transaction Name Some Transactions also require another Authorization Object to start (varies depending on the Transaction) 4) What can the User do in the Transaction? The system will check to see if the user has additional Authorization Objects as necessary www.spectoittraining.com
  • 13. CONTACT US: SPECTO TRAINING INDIA +91-9533456356 info@spectotraining.com www.spectoittraining.com