Showing posts with label SAPGUI. Show all posts
Showing posts with label SAPGUI. Show all posts

User Types in R/3 Security



Characterization of user types


  • Dialog user 'A‘ Individual system access (personalized)
  • Logon with SAPGUI is possible. The user is therefore interaction-capable with the SAPGUI.
  •  Expired or initial passwords are checked.
  • Users have the option of changing their own passwords.
  • Multiple logon is possible but we can restrict by parameter
    Ex : End users, Support users etc.
  •    Service user 'S‘    Shared system access (anonymous)
  •  Logon with SAPGUI is possible. The user is therefore interaction-capable with the SAPGUI.
  •  The passwords are not subject to the password change requirement, that is, they cannot be initial or expired.
  •  Only a user administrator can change the password.
  •  Multiple logon is permitted.
    Ex : Fire Fighter Id
System user 'B‘ System-dependent and system-internal operations
  • Logon with SAPGUI is not possible. The user is therefore not interaction-capable with the SAPGUI.
  • The passwords are not subject to the password change requirement, that is, they cannot be initial or expired.
  • Only an administrator user can change the password.
  •  It is used to communicate within the system.
  • Ex : Internal RFC, background processing, external RFC (for example, ALE, workflow, TMS, CUA)
  • Communication user 'C‘ :
  • Logon with SAPGUI is not possible. The user is therefore not interaction-capable with the SAPGUI.
  • It is also one type of background user and communicates between the systems.
  • Ex : external RFC , CUA
  • Reference user 'L' Authorization enhancement
  • No dialog logon is possible.
  • Reference users are used for providing extra privileges of a user who is going on vacation or leave to existing users.
    Ex : Internet users with identical authorizations 
         For more information visit www.keylabstraining.com