cancel
Showing results for 
Search instead for 
Did you mean: 

GRC10 - Password Self Sercice - Cannot find the system/user

Former Member
0 Kudos


Hello

I am trying to setup Password Self Service for AC10 component. I have completed the following:

1. Maintain Data Source Configuration - As per SU01 on the Plug-In system

2. Define the ABAP Connector

3. Maintain Password Self Service Configuration - Challenge questions and attempts.

I have then registered my Security Questions and responses. When I try to reset my password, the system prompts properly for the Challenge questions and takes me to the next screen to select the system.

That is where it generates error message - "No records found for the search criteria entered."

The RFC Connector works perfectly well in Emergency Access and Risk Analysis.

I apprecaite your help and thank you for taking time to answer this issue.

Snehal Pandya

Accepted Solutions (1)

Accepted Solutions (1)

Colleen
Advisor
Advisor
0 Kudos

Under your connector settings did you tick the box for PSS as you need to specify which ones are. Also  did you run the user sync job?

Former Member
0 Kudos

Thanks Colleen - It was so small setting that I just didnt see it towards the end of the screen.  It immediately resolved the issue.


Colleen
Advisor
Advisor
0 Kudos

It's amazing how many issues are resolved by fixing one small setting! Very easy to miss as you have to scroll across that screen to see the column at the end.

Glad to hear you have it working.

Former Member
0 Kudos

Hi Colleen

On the same subject, I was wondering if you are aware of any configuration guide that describes how to use PSS for re-setting passwords but without creating users on GRC. In our situation, we have close to 500 ECC production users and are thinking of deploying PSS but it means we will have to create all 500 users on GRC for them to use PSS.  This might defeat the purpose.

Any thoughts of any alternative solutions?

Thanks

Snehal Pandya


Colleen
Advisor
Advisor
0 Kudos

Hi Snehal

Have a read of the following thread where this has been discussed:

Your options:

  1. Connect to another Datasource - like AD/LDAP if you can somehow link your User Ids for network account to ERP
  2. Switch off the verification (I spell out the risk and more reliance on challenge response)
  3. Make each user a GRC user which means they then need to know their GRC password as well which puts you back in the same issue on a different system (what happens if user forgets ERP and then GRC password). This is really a different flavour of option1 as you are making GRC your data source. If each user is a GRC user then also little added value in using End User Login Functionality.

Your catch-22 to include authentication is that your users cannot authenticate with ERP password as they are using this functionality because they forgot it.

Regards

Colleen

Answers (0)