cancel
Showing results for 
Search instead for 
Did you mean: 

User search not pulling any users

Former Member
0 Kudos

Hi All

I have mapped the LDAP with my GRC Qualit box.But strange thing is when I try to create a request with my userid I am able to pull the users from LDAP in the Access Request Creation whereas same doesn't work when I try with a test user.

Please guide me how to resolve this issue.

Am I missing something here?

Regards

Pradeep

Accepted Solutions (1)

Accepted Solutions (1)

Colleen
Advisor
Advisor
0 Kudos

Hi Pradeep

Are you logged in under the test user? Perhaps you could show some screen shots between the two scenarios?

Also, have you compared authorisation access between your Id and the test user (unless you are using End User Login functionality)?

Former Member
0 Kudos

Hi Colleen

There is a huge difference in terms of authorization between mine and the test userid. Please guide me what authorization should be provided to the test user to make it work.

Regards

Pradeep

Colleen
Advisor
Advisor
0 Kudos

HI Pradeep

Like your other posts - ST01 will help you

If you are prototyping and want to get it up and running quickly, assign SAP_ALL temporarily of build a role with full access to the GRAC* objects. With SAP_ALL you'll know straight away if it's an authorisation issue.

Regards

Colleen

Former Member
0 Kudos

Hi Colleen

Thanks for the reply.I have already SAP_ALL assigned to my userid and it works perfectly.But now we are moving into QA testing  and for that we are creating test users with actual authorization and roles.

However ,the user could not create a access request since it is not able to pull up the user search from LDAP in QA box.

That's strange to me so I thought it should be an authorization issue.

Also I just checked after assigning SAP_ALL to the test user it works.therefore it should be some particular auth object which is missing.

So I thought you must be knowing about that particular auth object  or Role required  for the same.

Additionally I will try to find from my side by using ST01.Hope I find something useful.

Regards

Pradeep

Colleen
Advisor
Advisor
0 Kudos

Sorry Pradeep, I don't have access to a GRC system at the moment so I'm doing this all from memory

ST01 will show if it works for one user and not the other. Run the trace and you'll get the full listings. If not, look at SUIM > Auth Objects for GRAC* and you might find one based on description. I think there is a GRAC_REQ* for request so you can limit Request types, etc.

Regards

Colleen

Former Member
0 Kudos

Hi Colleen

I have resolved this issue now. Auth object S_LDAP  with activity 51 and 03 is required.After assigning this authorization it started working.

Thanks for the help.

Regards

Pradeep

Colleen
Advisor
Advisor
0 Kudos

ofcourse - completely forgot about that auth

Thanks for the update

Cheers

Colleen

Answers (1)

Answers (1)

saksham
Advisor
Advisor
0 Kudos

Hi Pradeep,


Kindly also check SAP note '1907393-No users are shown when using LDAP as data source' and the

reference notes attached with this note.


Hope it helps.


Kind Regards,

Saksham