cancel
Showing results for 
Search instead for 
Did you mean: 

Problem: Cannot get access to self services tab (SAP Netweaver IdM 7.1)

Former Member
0 Kudos

Hi,

i have problems to get any user to access the self services tab on IdM user interface...´

(i habe SAP Netweaver 7.0 and SAP IdM 7.1 with MS SQL 2005 and installed latest patches for

Designtime and the UI)

The documentation explains that i have to create a role and assign it to all authenticated users. Then a action must be assigned to the role (idm authenticated, which should put the following service into action: sap.com_tcidmjmx~ump). After that the self service tab should appear for all authenticated users...but it doesn´t...

I have read in the documentation that the users must have an entry in the identity center with an MSKEYVALUE that is identitcal to the userID in the UME...i don´t really know how to realize that.

Any help on that topic would be much appreciated!

Thanks in advance!

Florian

Accepted Solutions (0)

Answers (5)

Answers (5)

Former Member
0 Kudos

You should search as

*idm*

(with astericks, without spaces).

Edited by: AlexCrane on Feb 1, 2010 10:34 AM

Former Member
0 Kudos

HI!

I'm following the installation guide for IDM UI.

At page 44 there is:

Initial configuration

Authentication of the users logging on to the Identity Management User Interface is done by the

User Management Engine (UME). What parts of the Identity Management User Interface is

available depends on which UME actions are assigned to the user. The UME action

sap.com_tcidmjmx~ump.idm_authenticated gives general access to the application and

enables the tab "Self Services".

Before running the User Interface a role needs to be created, giving any authenticated user a

general access to the Identity Management User Interface. To do so, you must have a user that

has a permission to create and assign roles when logged-on the UME.

For details, see SAP NetWeaver Identity Management Security Guide.

Adding user to the identity store

Users must also have an entry in the Identity Center's identity store with an MSKEYVALUE

identical to the user ID in the UME. Whether this user is created in the Identity Center before or

after the role creation is not of importance.

But on my NW 7.1 EHP1 (MS SQL 2005) there is not the UME action called sap.com_tcidmjmx~ump.idm_authenticated

How can I go on ??

And then... How can I access to my Identity Store ?

regards

PiCo

Former Member
0 Kudos

I´m afraid I can´t help you as I have SAP NetWeaver AS Java as of Release 7.0 and not the EHP1...anything that was missing in my configuration (template, class, etc) was available after an update with the current service packs..

Former Member
0 Kudos

Many thanks for your help!

@Christian: It did the trick, thanks!

Former Member
0 Kudos

Florian,

The other thing to consider is the access rights for the task in question that you wish to make Self Service.

Make sure that the access controls are set for:

Allow access for --> Logged-in user or identity store entry

ID Store --> As needed

On behalf of : User or identity store entry

The access control grid will then read:

Accesstype Value On behalf of Value

Logged in All Self All users (self-Service)

I checked this in 7.0 and 7.1. (BTW 7.1 also allows the "self" relationship)

Hope this helps!

Matt

Former Member
0 Kudos

Hello

Go to your Identity Store

Click the General Tab

Click Add user

Entry Type: MX_PERSON

User name: <Your User>

This should do the trick.