Deleted User recreation - Connected Profile Parameter
When I try to create a user which was deleted I get a pop-up message "old sapoffice data found for this user name. do you want to copy this data to the new user? "
1. I get this message only in some systems but not in all systems. What controls this pop-up message ? Is there a profile parameter or a system setting which controls this?
2. In CUA setup, would this message pop-up ?
Hi,
When you try to create a user which existed in the system in past and was deleted, then SAP automatically prompts you to check if you want to copy the old settings for that user. User history is stored in USH* tables.
So you will not have this message everywhere in your landscape, only if that user id existed in the system in past.
Cheers !!
Zaheer
Similar Messages
-
Users Cannot Connect to Messeneger after recreation
Hi,
I have Installed Oracle Collaboration Suite 10g (10.1.2) on two machines ( OEL 4 Update 5 , 64 Bit)
all of my users can connect to my portal server through the web. These users can also connect
to Oracle Messenger; But whenever I delete a user and recreate it, that user can connect
to Oracle Portal Server but it can not connect to Oracle Messenger.
Any comments will be appreciated in advance.Do you deprovision users before deleting them ?
There is a "how to delete and clean user data" procedure somewhere in the OCS documentation. -
User Profile Parameter ID KVS not work
Hi,
I've got some troubles with parameter id KVS. I set it in my user profile,
parameter = KVS
value = B2
description = Version (CO)
when I call report GPCQE53LSADXCC16KZ1R96N5156001, there are two fields with this parameter,
and their value remain "0" instead of "B2".
I need to put the parameter value on one of this two fields, how can I do?
Could someone help me?
thank you in advance,
FedeYou can run Incremental Sync from user profile 3-4 times. This will delete the user profile from SharePoint UPA.
Now, we need to run UPA clean job timer job available in Job Definition inside central administration.
This is a by design issue which you have raised. But, to get it done on the same day you need to follow above mentioned steps. This would be done in some hour and cannot be achieved in 4-5 minutes. So, your original request is a by design issue and can be
done i some hours.
Thank You, Pallav S. Srivastav ----- If this helped you resolve your issue, please mark it Answered. -
Anybody had an issues with mail since upgrading to mountain lion? Can't get emails from one account, tried deleting and recreating but to no avail. Set up a new user and it works fine. Macbook pro 13" mid 2010 model.
Anybody had an issues with mail since upgrading to mountain lion? Can't get emails from one account, tried deleting and recreating but to no avail. Set up a new user and it works fine. Macbook pro 13" mid 2010 model.
-
Is it possible to restrict access to specific IOS apps based on the WIFI profile that a user has connected to?
you might be able to block it if the app uses Internet access
and depending on your wireless you might be able to block a specific user
accessing the backend host that the app uses
some firewalls offer application filtering but I'm not aware of any that work with ios apps -
Profile Parameter to execute Abap Program at user logon.
Hi Experts
I've written a small printer selection program to change the users profile parameter.
Is there another profile parameter that can be given to execute this program automatically
when the user logs on.....The reason why I'm looking for a profile parameter to do this is, that only
certain users need to have this happen at logon.
Kind Regards
VicHi Javi,
I don't think you need a custom process chain for this. You can use delivered Process Chain for logic and hard-code your script name in the package. In that script you can call BADI that has your ABAP program inside.
You can find guides how to build BADI here:[How to Pass Parameters to Custom Logic BADI using START_BADI|http://www.sdn.sap.com/irj/scn/go/portal/prtroot/docs/library/uuid/20f4252d-98ca-2b10-e689-f85085ae2d12] or here [Creating Custom Script Logic Keyword BADI's - BPC NW|Creating Custom Script Logic Keyword BADI's - BPC NW;.
Method IF_UJ_CUSTOM_LOGIC~EXECUTE has IT_CV as one of parameters. In your script you probably have to use *XDIM_MEMBERSET to get parameters from DM prompt. IT_CV will have all XDIM members.
Please let me know if you have any other questions.
Regards,
Gersh -
I work at a school where we have multiple Mac Carts that have 30 MacBooks per cart. We image the macs every summer to delete the older user profiles but we are looking for way to possible have this done automatically through out the year to help with HDD space. What is the best way to delete user profiles after...say 180 days.... of inactivity automatically? I am open to login hooks, bash scripts, etc. Anything to get the job done. Thanks for any help or advice.
A search here turned up this post Deleting inactive users
It appears that the script posted will do as advertised though I would test it out on your systems and under your conditions to see if it does do what you need.
regards
Message was edited by: Frank Caggiano - That script looks for users over 21 days. To look for ones over 180 days change the 21 to 180 in the find command. -
Deleting user status profile in equipment master
Hello experts,
can anyone tell if it's possible to delete a user status profile. Once we used an user status profile in an equipment i cannot find i way to delete or change the profile to another profile.Hi,
You can only change the user status profile in the equipment provided no status value has been set. Once a status value is set (maybe as intital status) the field is closed for input and no change can be made to the profile.
-Paul
Please use [Enterprise Asset Management (EAM)|Enterprise Asset Management (SAP EAM); forum for PM/CS specific topics -
Error U9KP7Q94 when logged in with the deleted user after its recreation...
Hi All,
How to get default screen for the deleted user when we recreate the same user with same name?
i have deleted the user for ex. 'XYZ' (from the catalog user group managemet) and when again i am trying to browse the obiee with the same user i.e. XYZ (after passing the authentication using some LDAP) then i am getting the error like 'Error U9KP7Q94'.
can anyone help me in this..
thanks
Edited by: user10946827 on Apr 26, 2009 4:32 AMI don't really see your problem. Do you have any error message ?
You may have may be a security problem.
Have you see in the catalog manager if you have the right / grant for the user on the report.
You can log as administrator / go to the catalog manager / shared folder / catalog root / users /
- on your user / in the items properties, set the owner ship to the administrator
- go to the security icon of the directory user
- give the access to the administrator
and then you have access to the directory
To see the grant of each file, you must do the same manipulation (become the owner, change the security, ...)
Success
Nico -
Delete user profiles on multiple computers using ARD
Hi Everyone,
I was wondering if there is a way to delete user profiles on all of my remote clients (250+) using ARD.
Or if anyone knows about a script which can do this and some more.
This is what I am trying to do:
I wanted to delete any user profile which exceeds the size of 300 MBs or older than 1 month.
All of my clients are Intel Macs using newest version of ARD and Leopard.
Thanks,finding folders by size is pretty easy, modification date is a bit harder.
Here is a script that will list all user folders over 300mb.
I will leave it to you to test and modify to delete those folders.
#!/bin/bash
#list all folders larger than 300MB in /Users
#will exclude administrator and Shared
for user in $(ls -1 /Users | grep -v "Shared" | grep -v "administrator")
do
homeSize=$(du -sm /Users/$user | cut -d"/" -f1)
if [[$homeSize -gt 300]]; then
echo "/Users/$user"
fi
done -
I downloaded IOS 6 a week ago and just last night the server connection fails when I try to send an email. I tried deleting and recreating the email account several times, but it still doen't work. Any ideas?
Are you using yahoo? If so, wait it out. Yahoo has had a lot of issues lately and you just have to wait for them to fix it.
-
Error in RFx with user-specified status profile
Hi experts,
I am having an issue in SRM 7.0 creating status profile for RFx.
When I try to create a new RFx, I get an error screen with message "Status profile ZCCP is not allowed for "Bidding Header""
In order to configure this, I went through the steps described in SAP Library:
1- Define user-specified status profiles in Customizing for Supplier Relationship Management under SRM Server->Cross-Industry Functions->Application Settings->User-Specified Status->Create Status Profile for User-Specified Status:
I created status profile ZCCP with the following data:
10 SUSP Suspended 10 90 1 1
90 HABI Abilities 10 90 1 1
and I assigned the status profile to object type "Bid Invitation Header (PS_BBP)"
2- Assign user-specified status profiles to procurement documents in Customizing for Supplier Relationship Management under SRM Server->Cross-Industry Functions->Application Settings->User-Specified Status->Assign User-Specified Status Profiles to Purchasing Documents
I created a new entry with:
BUS2200 H Header 0 ZCCP
3- Assign user-specified status profiles for each transaction type in Customizing for Supplier Relationship Management under SRM Server->Cross-Application Basic Settings->Define Transaction Types
I assigned the status profile ZCCP to all relevant operation types of obj. type BUS2200.
Does anyone know where this went wrong??
Thanks in advance!
Regards,
JoãHi joa
http://help.sap.com/saphelp_srm70/helpdata/EN/e8/70ff4187526430e10000000a1550b0/frameset.htm
You can use Status Management for records and documents. In Customizing, define the status values and the permitted sequence of these values. Users can then set these status values as attributes for records or documents.
The following Customizing steps need to be performed for Status Management:
· Status value definition
To perform this step, choose IMG activity Customizing for Status Management -> Define Status For more information, see the online documentation for the IMG activity.
Status profile definition
To perform this step, choose IMG activity Customizing for Status Management -> Define Status Profile. For more information, see the online documentation for the IMG activity.
Status network definition
To perform this step, choose IMG activity Customizing for Status Management -> Define Status Network. For more information, see the online documentation for the IMG activity.
· Assignment of a status profile to an element type
For element types whose elements you want to use Status Management for, assign an existing status profile to connection parameter STATE_PROFILE_ID. (The connection parameter is only offered for records and documents.)
Subsequently, users will be offered the attribute Status in the attribute maintenance dialog box whenever they edit the elements in question. Input help contains the status values that you have created.
If you want to use Status Management for the API, you require the following authorization objects: S_SRM_STAT, S_SRM_ST_P and S_SRM_ST_N.
br
muthu -
Profile parameter for passwords - conflicting documentations.
Greetings!
I've encountered an issue with profile parameter login/password_max_idle_productive
Integrated help in SU01 says:
You can use the profile parameter login/password_max_idle_productive to define the point as of which the validity of the productive password ends. The time is calculated from the date of the last password change plus the number of days specified in the profile parameter. Password-based logon is then not possible from this point.
This makes this parameter redundant (we have login/password_expiration_time ).
SAP Library says (see link below):
Specifies the maximum period for which a productive password (a password chosen by the user) remains valid if it is not used.
Which suggests that the time after which passwords are considered expired is calculated from last logon date plus whatever is the parameter value.
SU01 help specifies explicitly how this parameter works but it conflicts with a more ambiguous description found in the SAP Library. The observed system behavior on logon is in line with SU01 help, but report RSUSR200 does not list the user as having an expired productive password.
We're on ECC 6.0, release 701 with support package 3. I could not find any SAP notes relating to this issue.
Has anyone encountered this issue before or have I just run into an odd glitch?
[SAP Library|http://help.sap.com/saphelp_nw70ehp1/helpdata/en/22/41c43ac23cef2fe10000000a114084/frameset.htm]It sounds like you have a requirement to set the expiration time (when the user has to change the password) which is for a different user group than those for which you want to disable an idle password. Currently, both are global settings and affect both user groups (actually, all users of type DIALOG and COMMUNICATION - only SERVICE and SYSTEM type users are not affected).
In that there is an option for you... but be aware of license implications... or you can upgrade to 7.02 early next year (I think this is the correct release, time and release "alias" for it..) and then the config your security policies client dependently!
Currently, your best option is to not set these two global parameters illogically and monitor the user group manually from RSUSR200.
In the wild, many folks use the user type difference to workaround this, but that is also global to the user type so they are excepted from the expiration time as well. Additionally, not all functionality is available to them on the client side (e.g. SAP Logon Tickets won't work) and the authority-checks are even slightly different on some special cases.
Personally, I don't understand why users with authorizations to make purchase requests only should change their passwords more often (expiration time) or be more active (idle time) than those with SAP_ALL etc.
> I hadn't considered SSO since we do not currently use it.
SSO solves several of these problems by deleting the password completely...
Cheers,
Julius
Edited by: Julius Bussche on Oct 8, 2009 9:59 PM -
Creating a Perl script for SAP sytem profile parameter
Hi,
I need to create a perl script for all th eprofile parameter to check as a security directive ,so that whenever the system is started it checks for this profile parameter.
As per my company sap directive ,these are the profile parameter i need to set.
Can anyone let me know how to write the scripts.
login/min_password_lng Minimum password length for user password 320 Min.
8
login/password_expiration_t
ime
Number of days between forced password change. 0 Max.
35
login/fails_to_session_end Number of invalid logon attempts allowed before the
SAP GUI is disconnected.
3 Max.
3
login/fails_to_user_lock Number of invalid logon attempts before the user id is
automatically locked by the system.
12 Max.
6
rdisp/gui_auto_logout Time, in seconds, that SAPGUI is automatically disconnected
because of in-activity.
0 60-
7200
21
auth/test_mode Jump into report RSUSR400 at every authority check N N22
auth/system_access_check_
off
Switch off automatic authority check for special ABAP
commands
0 0
auth/no_check_in_some_ca
ses
Special authorization checks turned off by customer.
Enabling of Profile Generator
N/Y23 Y
login/ext_security Security access controlled by external software. N N24
auth/rfc_authority_check Permission for remote function calls from within ABAP
programs
0 1
login/failed_user_auto_unlo
ck
Enable system function for automatic unlock of users
at midnight. (0 = locks remain)
0 0
login/
no_automatic_user_sapstar
(as of 3.1h)
login/no_automatic_user_sa
p* (prior to 3.1h)
Disable ability to logon as SAP* with PASS as password
when SAP* deleted.
0 125,26
auth/tcodes_not_checked TCode checking for SU53 & SU56 analysis disabled (empty
"SU5
3
Regards,
Chetan.Here's a simple perl script that should help you get what it is you're looking for - you can add all the parameters you want to search for, I just took a few of them:
#!/usr/bin/perl -w
use strict;
use sapnwrfc;
SAPNW::Rfc->load_config;
my $rfc = SAPNW::Rfc->rfc_connect;
my @parms = ( "login/min_password_lng",
"login/password_expiration_time",
"login/fails_to_session_end",
"login/fails_to_user_lock" );
for my $x (0 .. $#parms) {
my $rcc = $rfc->function_lookup("SXPG_PROFILE_PARAMETER_GET");
my $slr = $rcc->create_function_call;
$slr->PARAMETER_NAME($parms[$x]);
$slr->invoke;
print "Value for $parms[$x] is: ".$slr->PARAMETER_VALUE."\n";
$rfc->disconnect();
And running it, you'll get:
[dhull@397 scripts]$ ./read-profile.pl
Value for login/min_password_lng is: 7
Value for login/password_expiration_time is: 90
Value for login/fails_to_session_end is: 3
Value for login/fails_to_user_lock is: 6
[dhull@397 scripts]$
If you need to get your perl environment read to make RFC calls to your SAP system, check my series of blogs on how to do so here:
https://www.sdn.sap.com/irj/scn/weblogs?blog=/pub/u/251752730
Cheers,
David. -
Deleted User forlder reappears with TextHarvester.dat Microsoft file
I deploy Win7 x64 Enterprise build, and before I run sysprep, I delete a folder from a deleted network login. However, when the image is deployed on all the machines, that folder reappears. That user should not exist on the machine. When
I go to User management, that username does not appear. When I delete that Username folder, Windows recreates it.
C:\Users\Username\AppData\Local\Microsoft\InputPersonalizaion\TextHarvester\TextHarvester.dat
How can I prevent Windows 7 from creating that file and that folder structure? Also, why is it being created, and where is that info stored?
Thanks!This one stung me as well, and took ages to locate the problem.
The issue is the Windows Search Service, which is actually recreating this folder on shutdown. To highlight this, delete the folders, then stop the search service and voila they come back again. I thought it might be a problem with the search index and under
Control Panel, I rebuilt the index and once again these files from the deleted user profiles re-appeared.
My solution was to uninstall the Windows Search feature, reboot and then reinstall it. Testing so far shows that the problem is not reoccuring.
Why did it happen? In my case, possible because the Windows 7 image we are building has the User profiles moved to D:\Users, and in the unattend.xml this is done after the Search Service is installed, so perhaps the fault lies there. By default the
Search Service is set to not index the AppData in the Users folder.
Hope this helps others.
This solution works great!
Uninstalling Windows Search and the re-installing it solves the problem. :)
Maybe you are looking for
-
How to update the Delivering plant in sales order
Hi Guru's I have a scenario where the delivering plant(RV45A-DWERK) in the sales order overview is not updated. I have maintained the VD51 customer info record in customer master and also in material master. Even if i update manually in the sales ord
-
Vba convert multiple MS Word files to signle PDF
I am creating an automation script that I will integrate into an application. I am trying to convert multiple MS Word files that are listed in a database (with their names and file locations) into a single PDF. I have Adobe X Pro version. I tried
-
Hi, I'm having the following configuration: K8Dmaster F, dual AMD opteron 1,60 GHZ, 1 GB RAM, serial ATa Adaptech 1210 SA card, Seagata 110 GB, CDROM. When I try to install Win2000/XP, after I format the partition from setup, I got the same error alw
-
Enter and tab keys no longer work
Good morning. My enter and tab keys are no longer working within a text box. Could it be the result of installing "Deke Shortcuts" on my system? I never had a problem before the installation.... Any suggestions would be welcome. Thank you.
-
Replaying a Test Script in the Developer Studio
hi The following is the error I am getting I am able to start and stop recording. But when press Start Replay Button i am getting this error in the lower text area where messages area; ERROR: Invalid Xml document received from the Xml Client. WindowI