cancel
Showing results for 
Search instead for 
Did you mean: 

SAP GRC Access Control: Web Dynpro and Rule set

reza_ahoui2
Participant
0 Kudos

Hi

Our SAP GRC rule set has flagged few SRM risks within a non SRM role in a non SRM system. They are SOD risks and the conflicting tcodes are of web dynpro type. However when the role is explored in AGR_TCODES and AGR_HIER tables such web dynpro tcodes can be found. Any idea why the are coming in the Access Risk Analysis?

Here is the list in ARA report for the role but not in the role.

[WDY]POWL Personal Object Work List

[WDY]/SAPSRM/IBO_WDAC_INBOX Personal Object Work List

[WDY]/SAPSRM/WDAC_I_FPM_OIF_PO_PURCH Personal Object Work List

[WDY]/SAPSRM/WDAC_I_FPM_OIF_SC_PROF Personal Object Work List

[WDY]/SAPSRM/WDAC_FPM_GAF_SC Personal Object Work List

[WDY]/SAPSRM/WDAC_I_FPM_OVP_CONF Personal Object Work List

[WDY]/SAPSRM/WDA_POWL_SC Personal Object Work List

[WDY]IBO_WDA_INBOX Lean Workflow Inbox Application

[WDY]/SAPSRM/WDAC_I_FPM_OIF_SC_PROF Lean Workflow Inbox Application

[WDY]/SAPSRM/WDAC_I_FPM_OIF_PO_PURCH Lean Workflow Inbox Application

[WDY]POWL Personal Object Work List

[WDY]/SAPSRM/IBO_WDAC_INBOX Lean Workflow Inbox Application

[WDY]/SAPSRM/WDAC_FPM_GAF_SC Lean Workflow Inbox Application

[WDY]/SAPSRM/WDA_POWL_SC Lean Workflow Inbox Application

[WDY]/SAPSRM/WDAC_I_FPM_OVP_CONF Lean Workflow Inbox Application

Thanks

Reza Ahoui

Accepted Solutions (0)

Answers (1)

Answers (1)

former_member692917
Participant
0 Kudos

Reza,

Please verify whether correct ruleset selected (global / custom) for risk analysis also check whether its shows as High / Critical as risk type. Same way check for standard and custom Risk / Function ID's. If above conditions are correct then you will need to get into Risk ID, Function, Rule id and finally get into roles and tcode / object level analysis to find the cause.

Regards,

Mahendran R