cancel
Showing results for 
Search instead for 
Did you mean: 

End User Logon

mamoonr
Active Participant
0 Kudos

Hi Experts,

We have a issue with End user logon link.End user link is embedded in

portal. We have maintained guest user as well with all respective web-

services enabled. Data source is LDAP and authentication is NO.

Let me explain the scenario as:

1)When user1 clicks on link to raise any access request , it gives

error as attached. Although user1 exist in LDAP and has account in

GRC system with GRC base roles. It gives error as attached

(1st Image).There are 2 screenshot in attachment.

2)But when I assign SAP_ALL to this user1 in GRC , it clears the

authentication page without any issue.

3)When user is in LDAP, but has no account in GRC , it gives error as

attached(2nd Image)

4)Testing the webservice GRAC_UIB_ENDUSER works fine and any user

existing in LDAP able to authenticate the login.

We are in GRCAC 10.0 SP13.

Guest user has been given SAP_ALL. Appreciate your thoght on this

Thnaks,

Mamoon

Accepted Solutions (0)

Answers (3)

Answers (3)

mamoonr
Active Participant
0 Kudos

Hi Prasant/Colleen,

We have tried SAP_ALL and S_LDAP authorization to guest user. But problem still persist.

Although testing the enduser link from SICF works fine without any issue. But the same link when embedded in portal throws error.

Any suggestion here...

Thanks,

Mamoon

Colleen
Advisor
Advisor
0 Kudos

possibly look at portal configuration back to the GRC component to see if the issue is there

If the LDAP transaction and SICF test webservice works then that probably rules out GRC configuration. I do recall a job has to keep running to keep the LDAP connection open (not sure what it is as I went and had my Basis friend help me on that one)

Regards

Colleen

Colleen
Advisor
Advisor
0 Kudos

Hi Mamoom

Please test your LDAP connection (transaction LDAP) if user has the S_LDAP auth already.

You should be able to search for LDAP configuration setup as this is not specific to GRC

Regards

Colleen

mamoonr
Active Participant
0 Kudos
Former Member
0 Kudos

Hello Rashid,

Please assign the LDAP roles in GRC Server to the test1 and also let me know have you configured workflow for user creation.

Thanks and Regards,

Visu

mamoonr
Active Participant
0 Kudos

Hi Visu,

What is name of LDAP role? Also we are planning that user need not to be in GRC to create any access request.He will use enduser link to get it.

Workflow has already been configured.

Thanks,

Mamoon

Former Member
0 Kudos

Hello Rashid,

Check the *LDAP* SAP Standard roles, copy to z roles and assign to the test1. let me know procedure how you configured the workflow and SSO, so that I can help you.

Thanks,

Visu

former_member193066
Active Contributor
0 Kudos

Hello,

Please provide full access to guest user.

this is common authentication issue where Guest user should have full acecss to S_LDAP objects.

Regards,

Prasant