Here you will find some information concerning
SAP® Security and Controls.
In the different sections there are articles, notes,
linktips , links to my publications, the eBook Shop
as well as the eBook versions of
Praxisleitfaden für SAP® CO , Practical Guide for SAP® Security
and Practical Guide for SAP® Security 2nd Edition
for you to read or even download for free.
Maybe you will find some of this being helpful
to understand, or even improve the security in your
SAP® system landscape
Kind regards,
Marie-Luise Wagener
PS:
For questions, suggestions or comments
you can send me a Mail or use the contact form.
SAP® Security and Controls.
In the different sections there are articles, notes,
linktips , links to my publications, the eBook Shop
as well as the eBook versions of
Praxisleitfaden für SAP® CO , Practical Guide for SAP® Security
and Practical Guide for SAP® Security 2nd Edition
for you to read or even download for free.
Maybe you will find some of this being helpful
to understand, or even improve the security in your
SAP® system landscape
Kind regards,
Marie-Luise Wagener
PS:
For questions, suggestions or comments
you can send me a Mail or use the contact form.
Auf diesen Seiten finden Sie Informationen
rund um das Themengebiet SAP® Security and Controls.
In den verschiedenen Sektionen sind Fachartikel, Arbeitshinweise ,
Linktipps , Links zu meinen Bucherscheinungen, dem eBook Shop
rund um das Themengebiet SAP® Security and Controls.
In den verschiedenen Sektionen sind Fachartikel, Arbeitshinweise ,
Linktipps , Links zu meinen Bucherscheinungen, dem eBook Shop
What hunger is in relation to food, zest is in relation to life...
Bertrand Russell [1872-1970]

The 2nd Edition of the Practical Guide for SAP® Security is
now available as e-book for free download.
Your kind feedback mails that I have received over time
[and hopefully responded to ;-)]
have definitely encouraged me to continue.
As promised I have added now a few more chapters [EP, BI, HR]
and significantly updated the How to Chapter.
The following 8 Chapters are provided:
1. Introduction to the general authorization concept of SAP®
2. Detail view: Components of the authorization concept
3. Basic mode of operations
4. Evaluation tools
5. How to and background information [updated and extended]
6. Enterprise Portal [NEW]
7. BI [NEW]
8. HR [NEW]
If you have any questions, I would be more than happy to answer them.
Please feel free to send me a mail.
This book is free for download, see attachments .

This little book shall help you to understand the various elements of
SAP® security and their interaction.
Wir freuen uns Ihnen einen kleinen Webshop
anbieten zu können, der es Ihnen ermöglicht, die von Ihnen
so häufig angefragten Bücher:
Praxisleitfaden für SAP® FI als persönlich lizenzierte Ausgabe
zum Preis von 69,90€
Praxisleitfaden für SAP® MM als persönlich lizenzierte Ausgabe
zum Preis von 69,90€
nunmehr käuflich zu erwerben.
Hier gelangen Sie zu unserem eBook Webshop.
For all English speaking vistors:
I have to apologize but the two books are currently not available
in English.
As soon as they are available, there will be a separate announcement.
Thanks for your patience,
Marie-Luise Wagener
anbieten zu können, der es Ihnen ermöglicht, die von Ihnen
so häufig angefragten Bücher:
Praxisleitfaden für SAP® FI als persönlich lizenzierte Ausgabe
zum Preis von 69,90€
Praxisleitfaden für SAP® MM als persönlich lizenzierte Ausgabe
zum Preis von 69,90€
nunmehr käuflich zu erwerben.
Hier gelangen Sie zu unserem eBook Webshop.
For all English speaking vistors:
I have to apologize but the two books are currently not available
in English.
As soon as they are available, there will be a separate announcement.
Thanks for your patience,
Marie-Luise Wagener
NOTE JANUARY 2012
How to create a transportable BRF+flat initiator rule for MSMP in GRC 10.0
The BRF (Business Rule Framework)+ is a strong tool when it comes to the
definition of ABAP rules to reflect business scenarios.
In the GRC 10.0 MSMP (Multi-Stage Multi-Path) workflow a business rule
can be utilized for different purposes as in the following example where we want to create a transportable initiator rule.
Step 1 -Creation of a development package:
The transaction SE21 is to be called and a desired name for the new package
to be entered. The development package is to be associated with a transport layer.
The creation results in a workbench request.
The software component is GRCFND_A.
NOTE SEPTEMBER 2011
Organization Rules in GRC AC 10
Organizational rules allow you to filter „false positives” from the risk analysis.
What does that mean?
You have a role concept with master derived roles, where e.g.
the leading organizational level is the company code with
a corresponding organizational value set.
Role_A_0001 for Company Code 0001 – (FB60)
Organization Rules in GRC AC 10
Organizational rules allow you to filter „false positives” from the risk analysis.
What does that mean?
You have a role concept with master derived roles, where e.g.
the leading organizational level is the company code with
a corresponding organizational value set.
Role_A_0001 for Company Code 0001 – (FB60)
NOTE AUGUST 2011
How to customize an AC10 access request form
The Access Request (AR) form can be called via the NWBC -->
Access Management --> Access Request

The individual fields in this form can be customized.
To do this - go to the IMG (transaction SPRO)-->Governance, Risk
How to customize an AC10 access request form
The Access Request (AR) form can be called via the NWBC -->
Access Management --> Access Request

The individual fields in this form can be customized.
To do this - go to the IMG (transaction SPRO)-->Governance, Risk





