Sunteți pe pagina 1din 11

Profile Generator

Learning Objectives
Security Introduction of PFCG Types of Roles Authorization About Tutorial Getting Started

SECURITY
The purpose of security is to protect an organizations information by restricting access to those that need to know. Defense against financial failure: Measures taken as a precaution against theft, sabotage or espionage. Princeton University Do not leave security to chance as unauthorized execution can lead to fraud, collusion or other illegal activities. These risks can be mitigated through proper security controls.

Why To Have Security?


Reasons Cooperate espionage Sabotage Disgruntled employees Hackers Fraudulent activities (remove temptation)

Security Expectations
Protection of Data Laws (Personal information HR, Sarbanes Oxley) Agreements (Between vendors and suppliers) Policies enforceable Cost Benefit Relation Security comes at a cost Impossible to make system 100 percent secure Be Transparent Minimise obstruction of companies business processes

Types OF Security

PFCG
An SAP delivered tool that is used to develop role based security Each user would have roles that provide access to the activities that he or she needs to perform Each role contains authorizations that the user is allowed to perform For example, the Credit Manager would have a different set of access for Accounts Receivable data than a Accounts Receivable clerk. Both need access to A/R, but they perform different update tasks. These tasks are stored in roles.

User, Role and Authorization


Users, Roles, and Authorizations
Employees have roles with specific functions and need authorizations for these functions Employees have roles with specific functions and need authorizations for these functions Create purchase requisition (ME51)

Karen

Employee Service representative Employee Service representative Manager

Authorization to create purchase requisitions

Procurement

Susan

Release purchase requisition (ME54) Order purchase requisition (ME58)

Authorization to release purchase requisitions

Employee Purchaser John

Authorization to create purchase orders

SAP AG 1999

Types of Roles in PFCG


ROLE: Roles define static collections of privileges that define broad user access rights and definitions. There are 2 types of roles in PFCG: 1. Single role Profile 2. Composite role Profile

Types of Roles in PFCG (cont.)


Single Role Profile:
Single profile is the simple set up which links the activities within the roles to a profile. The single profile will have access to a set of specific systems under authorization for that user.

Composite Role Profile:


Composite profiles refer to the various employee roles available in the corporation. A composite profile may encapsulate another composite profile or profiles.

Authorization
Authorization is the process of giving someone permission to do or have something. Authorization is the process of assigning values of the fields present in authorization objects. In SAP, access to all systems functionality is achieved through a complex array of authorizations. Authorizations are the key building blocks of SAP security.

S-ar putea să vă placă și