on 11-06-2014 11:27 AM
Dear All,
Facing a strange issue with ARM module of AC 10.1
System setup :
GRC AC 10.1 SP 06
CUA System (USER SEARCH AND DETAILS SOURCE)
Target system : ECC
All user provisioning actions performed via CUA to ECC.
Issue details - 01
When i submit a user creation request for ECC , request fails and gives following errors/warnings in SLG1
When I check in target system (ECC) user got created from CUA but password details were not sent to user.
What I checked so far :
CUA Settings active.
SAP_ALL authorizations given
AC connector settings are fine, synch job runs fine.
Issue details - 02
When i submit a change user request for role removal in ECC , request fails and gives following errors/warnings in SLG1 and request ends without doing action.
Issue 02 - raised to SAP already a month back but 0 progress with all incorrect suggestions.
Issue details : 03
When i select the user ID on request it doesn't automatically populates user name, last name and email address, though user details source configured correctly.
Would appreciate if anyone share your ideas, troubleshooting skills to resolve above issue?
Greetings,
Jay
Hi Jay,
has there been any progress with regarding your provisioning problems? I wonder, because we are struggeling with the exact same issues here:
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
Hello
I have an identical issue . applied note SAP 1616121 . as Integrated AD with GRC 10.1 and SAP NW 7.4 portal.
However SAP recommended to remove Target CUA connectors to bring in SAP NW portals Systems.
On doing this , request gets provisioned only if the id exist in CUA .For a new account GRC cannot process this request .
Any suggestions on this
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
Hello,
is your issue resolved or you need help?
still trying to understand does sap message says fake or you have mentioned it as fake?
Regards,
Prasant
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
Hi Jaya,
Can you please refer: http://service.sap.com/sap/support/notes/2072086
And check your CUA configurations for GRC: http://service.sap.com/sap/support/notes/1616121
How about the user sync job, did it run successfully. Try to run this job in full sync and let us know if you still have any issues.
Regards,
Ameet
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
Hi Jay,
Could you run RFC authorization test?
Run trace for CUA-RFC user and to the calling system as well.
You are trying to submit user create/change request for one user or multiple user accounts?
Can you please paste snap shots of your SCUM configurations, i need to be sure if this is set as Global or Local and the respective configurations.
Regards,
Ameet
Hi Ameet,
RFC - authorization test to CUA is fine.
SAP_ALL - Authorizations are given.
Attached SCUM settings, as i said are global.
Point here is GRC can change user in CUA i.e. creates/assign the role but request ends with errors,messages. If it is a authorization error then GRC can't modify the user in CUA system.
Greetings,
Jay
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.