Skip to Content

Security Issues in PPM

Hi

We are faced with a strange issue and it seems to us security related.

We ran a security trace which did not give us more information.

The issues are as follows:

When I view the table /RPM/V_PSITPT which is the confirguration table of PPM, I cannot see the assigned project definitions. Another user withe exactly the same role assigned to can view the Project Definition, decsription in that very same table.

From SPRO, if I reach the same table, results are the same.

And as expected, when I am trying to create a Project from PPM Item, I am not able to select the project template from teh dropdown list.

Has anybody experienced something like this before?

There is a similar one which I found in SCN:

https://scn.sap.com/thread/3852542

We are not using DPR_ATTRIBUTE

But the information there does not help at all.

Regards

Savas

Add a comment
10|10000 characters needed characters exceeded

Related questions

2 Answers

  • Best Answer
    Posted on Jul 11, 2016 at 02:55 PM

    Hello Savas,

    Could you confirm that both users are allowed to carry out RFC calls to the target system? This mapping involves linkage of the PPM and ERP systems, so when fetching the information for this customizing table the PPM system carries out several RFC call to the ERP target system. Maybe you can check this in transaction SM59 by testing the "remote logon" to the RFC destination.

    Regards
    Francesco

    Add a comment
    10|10000 characters needed characters exceeded

    • Hi Francesco

      What you have suggested is corret. We found a temporary solution to this - if you change the user settings with SU01 --> SNC tab --> "Permit Password Logon" should be unselected. Now we know the issue is caused by RFC connections but our Securiity Team could not find a better solution then this at the moment.

      regards

      Savas

  • author's profile photo Former Member
    Former Member
    Posted on Jul 12, 2016 at 04:44 AM

    Hi Savas,

    In addition to the check requested by Francesco, please also check whether you have appropriate authorization of PS objects like Project Type, etc. This is because the view you are trying to access is the mapping of Portfolio Item and PS Project Def.

    Best Regards

    Aditya Kotak

    Add a comment
    10|10000 characters needed characters exceeded

Before answering

You should only submit an answer when you are proposing a solution to the poster's problem. If you want the poster to clarify the question or provide more information, please leave a comment instead, requesting additional details. When answering, please include specifics, such as step-by-step instructions, context for the solution, and links to useful resources. Also, please make sure that you answer complies with our Rules of Engagement.
You must be Logged in to submit an answer.

Up to 10 attachments (including images) can be used with a maximum of 1.0 MB each and 10.5 MB total.