Quantcast
Channel: SCN : All Content - Governance, Risk and Compliance (SAP GRC)
Viewing all 5097 articles
Browse latest View live

Error while creating Planner

$
0
0

Hello Experts,

 

When we are trying to create a "Activity Survey" planner, we are getting an error message as shown in screen shot.

 

 

Could anyone suggest, what should be the configuration to overcome this issue.

 

Regards,

Ramakrishna Chaitanya


GRC AC V10 - Deletion of connectors (incl. data from GRAC-Tables)

$
0
0

Hey,

 

does anybody have an idea how to delete connector AND relating data (e.g. from risk analysis).

 

Thanks!

Bianca

GRC rule set tips for sensitive t-codes?

$
0
0

We are currently running GRC v5.3 with plans to upgrade to v10 soon. Beyond our custom/modified GRC rule set we would like to gain better control over sensitive t-codes.

Do you know if SAP released/releases updates regarding sensitive t-codes and how to better restrict and control them? And/or helpful updates, tips and tweaks we can apply to our GRC ruleset(s)?

Mitigation control table in backend

$
0
0

Hi Guru's

 

I have come across a strange issue while updating MC, let me explain what has happen:

 

I created 3 Mitigation controls IDs initially in GRC PRD System and out of which one id i wanted to make some changes hence i deleted that ID to recreate it again, i selected that id and clicked on delete and all 3 MC ids got removed from frontend along with selected one, so i thought all 3 got deleted and tried to create again. The 1st MC ID which i selected and deleted i was able to create it again, but the other 2 IDs when i tried to create with same id name i got a message saying MC id must be unique, but i was unable to see these ids at frontend. So, i searched for the table at backend which will help me and found HRP5354 table which stored all MC information, but there i can only see those 2 ids are available but i can just see the details but i am unable to delete the entries of MC which are not visible at frontend.

 

Can someone  Please guide me how to delete the MC ids from backend(any other table name which stores this MC info) and considering my strange case where i cant see those IDs at frontend but can see at backend table.


Note:As these IDs are finalized for PRD i need to create Mitigation control ids with same name.

 

Thanks for the support.

 

Regards

Maltesh Jangwad

Perform Automatic Workflow Customizing

$
0
0

Hello experts,

 

Why we need to Perform Automatic Workflow Customizing &  Task-Specific Customizing in GRC 10.0 Post installation activities.

Please explain in depth.

 

Regards,

Subramanyam

How to find list of users based on expired date in GRC 10

$
0
0

Hi all,

Do we have a report in GRC 10 to find the list of users based on expired date?

 

Thanks

LAK

Task-specific customizing for Access Control is not visible in IMG

$
0
0

Unable to get “Assign Agents” and “Activate event linking” linkages

------------------------------------------------------------------------------------------------

 

Hello,

 

We had implemented the GRC 10 Post-installation tasks, however we are still not able to see “Assign Agents” and “Activate event linking” linkages .

 

Would you please help?

 

Thank you very much indeed.

 

Abderrahim

asapsap@yahoo.com

 

PS:  SPRO -> Governance, Risk and Compliance -> General Settings -> Workflow -> Perform Task-Specific Customizing

Bulk Load of Users

$
0
0

Hi Experts,

 

 

Have you used bulk load of users with GRC10 for SAP go-live activities.

Here at my project we seem to have intermittent issues and of course are at GRC 10 SP8 latest available is SP13.

For some business roles it seems to work fine for some it refuses to load even for 5 users.

 

Are there logs that can be turned on to get to the depth of the issue. Also is there a way to check if business roles were created properly and no consistency issues


Thanks

Maltesh J


No violation found in GRC 5.3

$
0
0

Hello All,

 

I am getting a strange message in GRC 5.3 (SP 16) as 'No violations found' for many users (not all users though) when I am running organisation level risk analysis for users who do have all the risks. For instance - A user has SAP_ALL still I get 'No violation found' message (please note I have not ignored SAP_ALL under Critical roles/profiles), another user has all the business related risk tcodes still the risk analysis shows 'No violation found'.

 

I believe there is no ruleset configuration issues as for few users I do get the report OK. I also generated the rules as background job which completed successfully, so rule shouldn't be the reason?!

 

Would really appreciate if you can share your experience, please help.

 

Thank you all for reading this.

 

Regards,

Preethi G

Access Restriction to target systems in GRC 10

$
0
0

Hi,

 

I need some advice on restricting the target system access.

 

Currently my GRC 10 is connected to 3 different ERM systems. We have 3 different support group users and would like to restrict them to perform RAR for a particular system.

 

eg. User A only can perform ARA & EAM in System A with Ruleset A, User B only can perform ARA & EAM in System B with Ruleset B  & etc

 

I've tried to restrict all the auth obj field GRAC_SYSID & GRAC_RSET for User A & User B.

However, the restriction only reflected on Access Dashboard. The Users still can access to all system & all ruleset when they perform User level RAR & User Level Simulation etc.

 

Please advise how can do the restriction on system & ruleset access?

 

Thank You.

GRAC Synchronization Jobs Period

$
0
0

Dear Experts,

We want to see the all updates in GRC systems at the same time with SAP ECC.

For example if I add any tcode in the role in ECC system, I should do the risk analysis after adding and because of that I set the Synchronization Jobs for every 5 minutes but it causes the spool problem and we are executing standard deletion process from SPAD manually.

Do we have any chance to solve it?

GRC10 - Import Portal or UME Roles

$
0
0

Hello all,

 

How can we import portal or UME roles into GRC. There is no application type option for EP or UME on the import screen. Completed all the steps in the post installation document and created the connectors and run synch jobs successfully. Now I need to import portal roles into GRC.

User default Configuration

$
0
0

I need to configure user defaults# for different production connectors, but in event of doing so i am getting error "An entry exist with same key" in GRC->User Provisioning->Maintain User Defaults, I verified that there is no duplicate entries in the system.Is it possible to maintain the same user defaults for different connectors?

Request Type Restriction (Role / System) Selection

$
0
0

Hello, we have built a custom request type and would like to restrict user from selecting “role” from system access > Add. Similar to unlock where you can only select system.

 

Any ideas out there?

GRC AC 10 SP13 - Naming Standard Mis-Match Error when trying to release transport

$
0
0

Hello

 

I am trying to release a transport that includes custom notification templates as well as related background jobs. Whenever I try to release the transport I receive the following error:

 

Naming standard mis-match DEVC Z_GRAC_CUSTOM_NOTIF_TEMP ; Pattern ZRRGL+(IFRS|LGM|STAT)+

Message no. /SDR/MI_CI006

 

I think this is related to my custom package because it has the same name as that called out in the error (e.g. GRAC_CUSTOM_NOTIF_TEMP). But I am unable to find any information related to the error and haven't had issues with other custom packages.

 

I've attached a screen shot of the error from SE09. Any help is appreciated.


After submitting the access request is not coming in Workinbox in GRC AC10.

$
0
0

Dear All,

 

I can create the access request and also can submit but when it comes to approval the request doesn't come in GRC Work inbox of the approver.

 

I can search the request and shows me pending with the approvers ID but the approver cant see in his work inbox to approve the request.

 

Any steps missed can anyone suggest...???

 

Regards,

Abhisshek

Batch risk analysis job is cancelled automatically ABAP dump RAISE_EXCEPTION

$
0
0


Dear Friends,

 

We are in GRC ACCESS CONTROL Implementation. below are mentioned patch levels.

 

GRC      SERVER

 

ADDON              REL          LEVEL

GRCFND_A    V1000          0012

ABAP                    731          0008

BASIS                  731          0008

PIBASIS              731          0008

SAP_BW              731          0008

 

ECC SERVER

 

GRCPIERP    V1000_700    0013

GRCPINW      V1000_731    0004

 

Here problem is when I scheduled the batch risk analysis job in background then the job automatically cancelled with in 10 minutes  (ABAP Dump).

every time I am getting different abap dumps when scheduled the batch risk analysis job.

 

Thanks for your help.

GRC 10 - Problem with Dashboard Reports

$
0
0

Hi Gurus

 

we recently update on SP Level 13 on our GRC System and since then we have couple of issues :-)

grc.jpg

One issue that is bothering me and didnt found a solution : The above 2 reports cant be started. Actually i get a blank screen when clicking on them.  The name of the reports (Webdypros) are GRAC_DAB_CUPAR and GRAC_DAB_CUPPV.

 

On our test system GRC which is on the same SP level i can start the 2 reports and see the Dashboards and the Results.

 

Do you any ideas?

 

much appreciated for any help,

David

GRC 10.0 - Transport Connector Relevant Settings

$
0
0

Hi Gurus,

 

Many of you have already completetd GRC 10.0 implementaion. One of the Key advantage of GRC 10.0 stated as "Changes can be transported".

 

While carrying out configuration settings under nodes SPRO -->GRC --> Common Component Settings --> Integration Framework and other Subsequent nodes in Access Control, we find many steps involve Connector, Connector Mappings, Actions related Settings which are connector dependent.

 

Further, there are relevant sub-nodes viz. User Defaults, User data sources, HR Triggers etc., which involve connector values as part of configuration steps.

 

We have created Back end test / Development related connectors and carried out the relevant configuration settings. We find that all these settings are getting collected in the transport request.

 

Once we move this transport request to GRC QAS / Production landscape all the back-end Test / Development /QAS related connector settings will also move. Further this will also call for defining back-end Production systems related Connector Settings in GRC Development System itself.

 

Looking forward for inputs with respect best practices for managing the GRC 10.0 config / workflow related transports across Dev / QAS / landscape.

 

Regards

Hemant

clarification of GRFNMW_BATCH_EMAIL_REMINDER

$
0
0


I have set up an escalation within the MSMP to be sent to the approvers after 5 days of the request pending.

 

I then want a daily reminder email to be sent thereafter using GRFNMW_BATCH_EMAIL_REMINDER

 

What value should P_PERIOD - Period (in days) be?

Viewing all 5097 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>