cancel
Showing results for 
Search instead for 
Did you mean: 

Consolidate log EAM Audit Review Approval

former_member735409
Participant
0 Kudos

Hi Experts, I have urgent requirement.

Once user get a FFID, he can login and work using that FFID and a session will get generated and then he logoff and login back again using the same FFID and another session will get generated, it will go on like this. if the user login 10 times then 10 sessions will get generated.

When ever execute the workflow sync report we are getting 10 workitems for the 10 session. But our requirement is, we need to consolidate all this 10 session and send it as a single workitem.

If any one came across this type requirement. Please help me to fix this.

Thanks

Justin

Accepted Solutions (0)

Answers (1)

Answers (1)

madhusap
Active Contributor
0 Kudos

Hi Justin,

This is one of the common question raised by every client when we are implementing SAP GRC EAM module for them. As per SAP GRC system design, a workflow is generated for every Firefighter ID session login and logout.

Hence, if a Firefighter ID is used 10 times then there will be 10 Firefighter Log review workflows. Few options you can consider:

a. Do no trigger Log review workflow for empty sessions - Config Parameter 4020 (Generate EAM log for Firefighter sessions with no activity)

b. Limit the Firefighter ID assignment duration (max one day) and you have to do a bit of change management to Firefighter ID users to avoid logging in multiple times

c. Once the Firefighter ID is used, there are 3 notification options on how the log review can be triggered to the controller for that respective Firefighter ID usage. If any of the Firefighter IDs are excessively being used then you can explore below options to avoid triggering many workflows for controllers

Email: GRC will send an email notification to the Firefighter ID Controller. Notification email will have a link to the Firefighter session logs.

Workflow: GRC will create a log review workflow request and routes to the Firefighter ID controller for review.

Log Display: In this option, the Firefighter ID Controller is expected to personally run the consolidated log report and perform review.

d. Last option is to customize and build a report where the controllers can perform log review approval easily without going into individual workflow requests but by doing required review. If you are going in this direction, I can share some inputs to your development team on how to achieve this.

Regards,

Madhu

former_member856305
Discoverer
0 Kudos

Hi Madhu,

Is there any blog detailing the last option?

Thanks & Regards,

Harish