SAP Basis Very good IT knowledge - especially of SAP solutions - SAP Corner

Direkt zum Seiteninhalt
Very good IT knowledge - especially of SAP solutions
SCC3 Log evaluation client copy
In addition to purely administrative tasks, SAP administrators are also responsible for communication tasks. They work with the company's internal support services to find ways to help users solve and avoid problems and pitfalls they may encounter when using SAP solutions. For internal purposes, the SAP administrator also prepares documentation to look for errors and try to address the root causes. If necessary, he communicates with the company's decision makers so that improvements, adjustments and optimizations can be made to the SAP software.

SAP offers a huge toolbox of different technologies to support business processes. The usefulness of their use is essentially determined by the task and its technical requirements. We have gained a lot of valuable experience in the following technologies, which we would like to make available to you.
Homogeneous
User authentication is usually performed by entering a user name and password. This information is called user credentials and should only be known to the user, so that no third party can gain access to the system under a false identity. This post explains how a user's password protection can be circumvented and how to prevent it. SAP system legacy data The login data of a user, including password, are saved in the USR02 database table. However, the password is not in plain text, but encrypted as a hash value. For each user there are not only one but up to three generated password hashes. Different algorithms are used to calculate these values, but only the Salted SHA1 can be considered sufficiently safe. Table deduction USR02 The secure password hash is located in the fifth column of the pictured table deduction with the heading Password hash value. The corresponding data field in the column is called PWDSALTEDHASH. Weak Password Hash Risks You have a good and working permission concept that ensures that no processes or data can be manipulated or stolen. A potential attacker now has the ability to read out your database with the password hashes. The hash values are calculated using password crackers, which are available on the Internet at home, and the attacker now has a long list of user credentials. To damage your system, the user will now search for the appropriate permissions and perform the attack under a false identity. Identifying the actual attacker is virtually impossible. Check if your system is vulnerable too Your system generates the weak hash values if the login/password_downwards_compatibility profile parameter has an unequal value of 0.

Using various user, administration and monitoring tools, the SAP Basis system is controlled and managed by an administrator, who is thus responsible for its trouble-free operation. Many companies hand over these tasks to an external service provider.

Tools such as "Shortcut for SAP Systems" complement missing functions in the SAP basis area.

Note that starting with SPAM/SAINT version 11, you cannot delete the queue after the DDIC_IMPORT step and following.

SAP Basis refers to the administration of SAP system that includes activities like installation and configuration, load balancing, and performance of SAP applications running on Java stack and SAP ABAP. This includes the maintenance of different services related to database, operating system, application and web servers in SAP system landscape and stopping and starting the system. Here you can find some useful information about SAP Basis: www.sap-corner.de.


Although a manual check is possible, it is very time-consuming because the necessary regularizations have to be read, interpreted and technically implemented.
SAP Corner
Zurück zum Seiteninhalt