cancel
Showing results for 
Search instead for 
Did you mean: 

BO Admin can see the Users Password? Is it possible ?

Former Member
0 Kudos

Hi ,

I am really confused here and I am new to BO and would like to know, is it possible for the BO admin to see the Users Password?

if yes, how is it possible ?

Please let me know, if you have info on this.

Cheers,

Suhas Chowdary

Accepted Solutions (1)

Accepted Solutions (1)

amitrathi239
Active Contributor
0 Kudos

It's not possible to see the password.

check attached link for more information.

https://archive.sap.com/discussions/thread/3510828

Former Member
0 Kudos

Is it possible to see "LDAP/Windows AD/Windows NT" users password ?

Answers (2)

Answers (2)

BasicTek
Advisor
Advisor
0 Kudos

As BO admin you can change the password for any enterprise user but it should not be possible to view any of them

Former Member
0 Kudos

So, bo admin cannot see users password, if user had " Enterprise" authentication ?

And , Admin can see the passwords of the users who are having authentication like " LDAP/Windows AD...etc?

BasicTek
Advisor
Advisor
0 Kudos

absolutely not, AD and LDAP passwords do not usually pass into BI. for instance when AD SSO is enabled the negotiation occurs on the client machine, the TGS request is sent with the service account, the user logged in, and Ad session created. With manual logon or LDAP the request is sent from the web/app to LDAP/AD and BI is not actually involved in the authentication just the session creation after the response from the external directory.

So unlike BI enterprise users where BI authenticates the job of performing this is done by the external direcotry servers themselves.

denis_konovalov
Active Contributor
0 Kudos

No it is not possible. Seeing user passwords would be a security violation.
What gave you the idea that it is possible ?

Former Member
0 Kudos

My BO team had this kind of discussion and i just want to know, that its possible or not.

denis_konovalov
Active Contributor
0 Kudos

but what the confusion is then ?
for confusion there has to be something that says one things and something that says the other.

BOE administrators cannot see any passwords, enterprise/AD/LDAP/SAP.
It is industry default standard that no one can see users passwords.
Breaking that goes against every security principle ever.