cancel
Showing results for 
Search instead for 
Did you mean: 

Disable Risk Analysis Role Provision for Particular System

0 Kudos

Hi All ,

Is there an option to have to disable to risk analysis prior assigning role . I have multiple ECC environment where risk analysis is mandatory but now we would like to connect non-ecc for these system wherer no rule set will be required  thus how to disable this option so that role could be provision without an analysis and assigned based on the role owner .

Regards

Kumar

View Entire Topic
alessandr0
Active Contributor
0 Kudos

Dear Kumar,

several approaches can be considered. I suggest to think about the following two:

1) MSMP routing to a different path for particular systems (this can be achieved by setting up a decision table). In different paths you can define and configure different stages whereas in one is the risk analysis not mandatory.

2) Remove the system from the SOD connector group, so that it is mandatory to run the risk analysis, but since no rules are defined for a particular system the results will be empty and hence no conflict will show up.

Keep us posted if you need further inputs.

Regards,

Alessandro

0 Kudos

Hi Alessandro ,

Thanks you I have adopted  the 2nd solution and its  working since we want to have a quick solution . Your 1st proposal seems to be a right the solution we will adopt this at a later stage


Thank you

mhughes2
Participant
0 Kudos
alessandr0

I know this is a very old question but I am now having the same issue in that we have been running GRC 10.1 to provision users to all SAP systems but until we had a new IT user come online I didn't know the ruleset for our audited systems was scanning our non-audited systems.

Support people in some of our non-audited systems have more access that would not be allowed in the audited systems.

I want to use your "Solution 2" but I am not sure where to look for the "SOD Connector Group" as that is not a term i see in my SPRO config.

Are you referring to the AC Configuration settings Param ID = 1080 for Risk Analysis - Risk Terminator? (I think you are but I want to confirm before I make a change in our Dev system and test it)

- Sorry for the old question bump