How configure SAP IDM as EP Portal UME?

Hi,
I'm doing a proof of concept on the identity management 7.1
I have established a LDAP connection using the Virtual Directory Server with another machine that contains an Active Directory, in this active directory I created users and groups that thanks to LDAP connection can be seen from the Virtual Directory Server.
Also I have on another machine EP Portal 7.02, I got to integrate into the Portal 7.02 Identity management tab, but this is not the functionality we want to achieve.
I want to get IDM to function as EP Portal 7.02 UME, is this possible? You have any idea how this could be done?
Regards

Not sure if I've understood correctly as English is not my 1st language, but..
1) Set up a VDS service that exposes IdM data over a LDAP interface. In VDS go to "New / SAP Netweaver 7.x / Idm VDS UME 7x.xml" finish the wizard and verify the settings, set the configuration as windows service and start it, test the connectivity with LDAP browser.
2) Once the connectivity exists and you're happy with the results, configure the Portal UME to use this datasource.

Similar Messages

  • SAP IDM - User Sync to UME Not Working

    Hi All,
    Currently we're planning to implement IDM 7.1 SP05 for ESS/MSS user Password provisioning. We're done the basic configuration as per the guides and HR Employers has sync to VDS and then to SAP Master Identity Store.
    Now we wanted to sync these users back to IDM UI for setup Password provisioning as per guide 'User management for the Identity Management User Interfaceu2019.
    However every times we assign the PRIV:UME Role to users it called the Global Task Event 'Modified User'. However as we understand it should call Create UME User, Modified UME User or Delete UME user task and which will create users in IDM UME.
    Therefore users not created IDM UME and system also does not show enough log to analyse it. We've assign correct Privilege Task under PRIV:UME and it point to Create, Modified and Delete UME task as well.
    Appreciate the support on same.
    Thanks.

    Dinesh
    Thanks for the response.
    But all you mentioned has been checked.
    keys.ini is fine (I had a problem with that before), the provisioning option is set, all tasks are checked that they're enabled.
    Simply when I assign PRIV:UME to a user a "ModifyUser" log entry appears of the corresponding (ssuccesfully) IDM user modification -> but that's it. Nothing else. Not other job log, no system log, nothing in the log of the java stack. Simply nothing. I don't know why the UME provisioning tasks are neither triggered nor ANY log entry appears. It's hard to continue analyzing when a system appears alike a black box and absolutely no informations are returned.
    I also failed at several attempts to call these tasks directly/from manual created tasks.
    These tasks "simply" do not react any more ..
    Regards
    Stefan

  • ActiveDirectory - SAP IDM integration in Identity Life cycle Management

    Hi Experts
    In our landscape SAP HCM is supposed to be  the  leading data source and SAP IDM takes identity information from SAP HCM.  From SAP IDM it will provision into Active directory and other third party systems, Sap systems.
    Here are the questions
    1) How  can we leverage on the investment on Active directory after  SAP IDM -Active directory investment ?  I mean after SAP IDM comes to a landscape,  Active directory will only be used to login to domain and for authentication if for java system Active directory have been set as user data source.  What are the other advantages of Active directory- SAP IDM integration as Active directory will not be leading data source and identity information will be in identity store.?
    2) After the user details are taken from SAP HCM system, will  the user record will be created in SAP IDM on Identity store ?  Is it where we actually assign the SAP IDM business role and the related technical role  to the  user? 
    3) Suppose if we assign a business role " employee " , will IDM actually create user id in all target system and assign all the technical roles? . Or we have to manually select each repository for target system in Identity center and  select the privileges and provision it ?  Will there be any automated feature that after assigning the business role to identity in identity store users and roles get automatically provisioned on all the target systems?
    Thank you in advance for your help.

    Hi Matt,
    Thank you very much.
    Only change we have is before approval it should go to GRC AC check all the compliance   and only after that it is approved and it should come back to SAP IDM  .
    I am actually looking for a tutorial which actually shows how you assign a business role and the whole procedure of SAP IDM automatically provisioning to target systems which you have just explained.  I suppose there is no such exact tutorial and I want to know how we can configure this on SAP IDM . Any  specific clues?
    Also  I am describing the exact steps that will follow . Correct me if I am wrong.
    1) User id will be created on AD with same user name and password as it is in Identity store. Will be assigned AD groups
    2) Create same user in Portal and make the user data source as AD and will assign the technical role portal as per the business role definition
    3) create same user in all abap systems and set abap database as user data source and assign the technical role needed as per the business role definition
    4) Create same user in third party systems  and with the privileges on their target systems as per the business role definition.
    With this provisioning stops. I suppose all the above steps will be automatically done by SAP IDM with no manual interaction required after final approval. Correct me if I am wrong.
    So some other information i wanted is
    1) When you assign business role at work flow,  how exactly SAP IDM  know about the target systems that user should be created and  assigned roles and made their authentication source.
    for eg:- for  a  business role "employee"  should get  access to ERP with role X,  AD with group Y, Portal with role Z.  So in work flow when business role employee is assigned  how SAP IDM will know that user should be created on to ERP with role X,  AD with group Y, Portal with role Z. Can you explain technically along with  detail steps? Or how exactly we configure a business role which knows the target systems and their techical roles.
    Thank you once again for the fabulous help . You/Matthew is a tremendous  help in understanding SAP IDM better.

  • Sap idm

    Hi all,
    kindly suggest can we implement or configure sap idm for  r/3 ecc5 on windows 2003 and dabase sql.if yes whats the procedure and what are the prerequsites for it  and if  no why.

    Hello Anil,
    please have a look at the following link:
    https://www.sdn.sap.com/irj/sdn/nw-identitymanagement
    Here you can find the releasenotes and also tutorials for SAP IDM.
    Please reward points if the provided information is useful for you.
    Regards,
      Juergen

  • How to configure HR IdM to include persons whose start date is in the futur

    I am exporting employees from HCM 6.0 to IdM 7.0 via LDAP export and VDS.
    How can I configure the export to include also persons whose start date is in the future?
    There is a need to import persons to IdM who start in the future so that the set of default rights would be in place before the user starts.

    >
    Holger Flocken wrote:
    > Are you sure that the users are not exported?
    >
    I can see that by comparing running the SAP Query in HCM and checking out the Staging ID Store in IdM 7.0 Monitoring.
    The query picks up the users but either the ABAP extract program or something in VDS looses the users whose start date is in the future.
    >
    Holger Flocken wrote:
    > You can either try changing the export (I have no clue how that can be achieved) or you adapt the tasks in the HCM_Staging_Area to ignore the validity dates (but you should only do that if you are sure that you do not have multiple values or that you pick the first one).
    > Holger
    AFAIK there is nothing in IdM 7.0 side that could be configured as IdM touches the records after they have been staged.

  • How can SAP be configured to prevent users from consuming locks?

    How can SAP be configured to prevent users from consuming locks?
    The issue is that we want to prevent users to use upto maximum locks and so that we will not get lock table overflow issue. I know that we can assign parameter "enque/table_size" a good amount of value. But it is not for any specific user.
    Also want to alert in CCMS if any user reaches to its maximum speficified limit of locks.
    Thanks
    Gopesh

    You cannot set a limit of locks per user. There are two ways to reduce/control the number of locks:
    - change fewer records within one transaction
    - cover more records with one lock using wildcards
    Basically it is an application / development issue.
    Best regards, Michael

  • SAP IDM 7.2: How to setup SSO functionality for WebUI of CRM and GRC?

    Hello IDM-experts,
    where can my customer find information about
    SAP IDM 7.2: How to setup SSO functionality for WebUI of CRM and GRC?
    Customer situation description:
    The situation is that we are using SAP IDM 7.2. We are using a functionality to allow our users to access a webpage from where they can gain
    SSO access to the Abap systems via the SAPGui. See screenshot as an example.
    Now what we want is to access the CRM and GRC WebUI also with the same SSO possibility. We cannot find any guide/best practice on how to do
    this or if it is possible via SAP IDM 7.2.
    You can see a weblink in the first screenshot but it does not work. It will ask you for a username and password, see second screenshot.
    Kind regards,
    Daniela

    Do you know how the SAP GUI SSO is setup ? Is it using SNC/Kerberos ?
    If it is (I suspect it is), then you will need to use similar method of authentication for the ICF Services. These cannot use SNC since they are accessed via browser, but what you want is possible.
    Thanks
    Tim

  • How to install and configure "SAP MAPI Service Provider" in 470(basis 620)?

    Hi everyone,
    Requse:
    Send E-mail from SAP and Recive E-mail from MS outlook2003.
    My question:
    How to install and configure "SAP MAPI Service Provider" in 470(basis 620)?
    For example:
    Which setting need to do in R/3 server?
    Which parameters need to select when install 620gui?
    Which setting need to mark in MS outlook2003?
    Thanks and Regards,
    Colin.

    Hi Colin,
    For SAP MAPI read,
    http://help.sap.com/saphelp_46c/helpdata/en/04/81dd4ebf2811d2897f0000e8216438/frameset.htm
    For Sending mail from SAP,
    http://help.sap.com/saphelp_46c/helpdata/en/55/a8b538891b11d2a25a00a0c943858e/frameset.htm
    For Receiving mails read,
    http://help.sap.com/saphelp_nw04/helpdata/en/af/73563c1e734f0fe10000000a114084/frameset.htm
    <b>Which parameters need to select when install 620gui?</b>
    Don't get this question...
    <b>Which setting need to mark in MS outlook2003?</b>
    None
    Regards
    Juan
    Please reward with points if helpful

  • How to Install and configure SAP Java GUI on windows 2003 sp1.

    Dear All,
    Can I step-by-step on how to install and configure SAP GUI for Java on windows 2003 sp1.
    Pls come with brief as I am completely new to Java and I am practicing the same on my home system first. I have latest SAP Java Pack with me.
    Regards,
    Dillu

    hi,
    Please check this link and install accordingly
    SAP GUI Family
    Regards,
    Naveen.

  • How to install and configure SAP Router

    Dear SAP Expert !
    I want to install SAP Router but i dont know the SAP router package is allocated on DVD ? what is the DVD number ?
    If you already configure SAP router please let me know how to configure ?

    Hello Thao
    what is th exact issue that are u facing.
    The account must be the administartor of the machine where u are installing SAPROUTER.Make sure you are following the correct steps as follows:
    Downloading necessary software components from SAP Service Marketplace
    1. Login to the SAP Service Marketplace with the Service Marketplace at using
    the USERID/PASSWORD which was assigned for your installation.
    2. Change the alias to www.service.sap.com/tcs to downloaded the SAP
    cryptographic software. Select the correct SAPcrptographic software
    depending on your saprouter operating system as shown below.
    3. You must have the sapcar.exe in order to extract the SAP cryptographic
    software file.
    4. With the command of u201Csapcar -xvf xxxxxxx.saru201D, /ntintel directory would be
    created and the following files would be extracted.
    (Example C:/saprouter/ntintel)
    ( when the Microsoft Windows NT Intel version is downloaded)
    C:/saprouter/ntintel/sapcrypto.dll
    C:/saprouter/ntintel/sapgenpse.exe
    C:/saprouter/ticket
    Issue of Electronic Certificate
    5. It is necessary to define the environment variable for u201CSECUDIRu201D and
    u201CSNC_LIBu201D under system account.
    Window NT environment variable setup :
    Right-clicked the icon of you computer
    Property -> details -> environment variable
    SECUDIR = < Directory name >
    Example. Variable name : SECUDIR
    Variable value
    : C:/saprouter/SNC_LIB = < Directory name >
    Example. Variable name : SNC_LIB
    Variable value : C:/saprouter/ntintel/sapcrypto.dll
    UNIX
    <path_to_libsecude>/<name_of_sapcrypto_library>
    Windows
    NT,
    <drive>:/<path_to_libsecude>/<name_of_sapcrypto_library>
    Windows
    2000
    6. Check if the environment of the user running saprouter contains the
    environment variable SNC_LIB.
    UNIX
    Printenv
    Windows NT
    System environment Variable
    7. You may now apply for a SAProuter certificate from the SAP Trust Center
    Service of SAP service marketplace
    http://service.sap.com/tcs
    > SAP Trust Center Service in Detail
    > SAProuter Certificates
    SAProuter Certificate "Apply Now"
    Click the button.
    8. Please take note of your "Distinguished Name"
    Please refer to the example above
    -SAPRouter Name
    : JPL50020586
    -Distinguished Name
    CN=JPL50020586, OU=0000036946, OU=SAProuter, O=SAP, C=DE
    Then, clicked the "Continue" button.
    9. Execute the following command in the /saprouter/ntintel
    directory in order to generate your certificate to be exchanged with SAP.
    sapgenpse get_pse -v -r certreq -p local.pse "Distinguished Name"
    Example
    sapgenpse get_pse u2013v -r certreq -p local.pse "CN=JPL50020586, OU=0000036946,
    OU=SAProuter, O=SAP, C=DE"
    Enter the PIN number. (you may enter any PIN Number you wish.)
    Please enter PIN :
    Please re-enter PIN :
    <- you must use the same PIN Number as the above.
    10. The "certreq" file is created in the /saprouter/ntintel directory.
    11. Use a notepad to open the "certreq" file and copy the displayed information
    (From the -BEGIN .to the END -)
    12.You now have to paste the above copy content into the space provided
    shown below. After you have pasted the text, click the u201CRequest certificateu201D
    button to submit your request.
    13. Once you click on the u201CRequest Certificateu201D a new screen will be displaying
    your certificate issued by SAP CA (Certification Authority).
    14. Using a notepad to copy the content (From u2013Beingu2026 to -END) and save it
    as u201Csrcertu201D into /saprouter/ntintel/srcert.
    Note :
    - Please rename srcert.txt into srcert without any extension.
    15. You then need to import this certificate into SAProuter using the following
    command.
    Please run on /saprouter/ntintel directory.
    sapgenpse import_own_cert -c srcert -p local.pse
    Please enter PIN : (same as point 9)
    16. Execute the following command in the /saprouter/ntintel directory.
    sapgenpse seclogin -p local.pse
    Please enter PIN : (same as point 9)
    This will create a file "cred_v2" in the same directory.
    17. Please check whether the certificate has been imported correctly.
    Execute this command in /saprouter/ntintel directory.
    sapgenpse get_my_name -v -n Issuer
    The result should be "CN=SAProuter CA, OU=SAProuter, O=SAP, C=DE".
    18. When the above results are not obtained , please delete local.pse and
    cred_v2 and work again from steps 9. Please seek the assistance from your
    local SAP helpdesk or create an OSS message via component XX-SER-NET-
    OSS, if you are not able to obtain the above-mentioned result after you have
    repeated the above steps.
    Route permission table (saprouttab)
    19. The corresponding file ./saprouttab should contain at least the following
    entries.
    Example : by SNC connection, when connecting to sapserv2
    (194.39.131.34) the following entries need to be indicated by saprouttab.,
    SNC-connection to SAP
    KT "p:CN=sapserv2, OU=SAProuter, O=SAP, C=DE" 194.39.131.34
    SNC-connection from SAP to local R/3-System for Support
    KP "p:CN=sapserv2, OU=SAProuter, O=SAP, C=DE" <R/3-Server> <R/3-Instance>
    SNC-connection from SAP to local R/3-System for pcANYWHERE, if it is needed
    KP "p:CN=sapserv2, OU=SAProuter, O=SAP, C=DE" <R/3-Server> 5631
    SNC-connection from SAP to local R/3-System for NetMeeting, if it is needed
    KP "p:CN=sapserv2, OU=SAProuter, O=SAP, C=DE" <R/3-Server> 1503
    SNC-connection from SAP to local R/3-System for saptelnet, if it is needed
    KP "p:CN=sapserv2, OU=SAProuter, O=SAP, C=DE" <R/3-Server> 23
    Access from the local Network to SAPNet - R/3 Frontend (OSS)
    P <IP-addess of a local PC> 194.39.131.34 3299
    deny all other connections
    D * * *
    Start the SAProuter with the following command.
    Saprouter -r -S <port> -K
    "p: <Your Distingiushed Name>"
    -K tells the saprouter to start with loading the SNC library.
    Example: saprouter -r -S 3299 u2013K "p:CN=JPL50020586, OU=0000036946,
    OU=SAProuter, O=SAP, C=DE"
    Additional Note
    -You may refer to SAP note: 30289 in the SAP service marketplace for detail
    information with regards to SAProuter
    http://www.service.sap.com/note

  • How to configure sap to use gmail as smtp server?

    Hi experts,
    I need to know how to configure gmail as my smtp server. In the scot transaction I don't see anywhere where to specify whether it is a ssh connection, ports for secure smtp, username, password.
    Does anyone know how to configure sap to use gmail as the smtp server?
    I've seen some similar threads about this, but they are of no help. Although they are classified as answered, in most cases the reason they are answered is because the person who made the query dropped the cause trying to make it work. I'd like to know for sure is this is possible or not.

    Hi Camilo,
    You can't set up gmail as your smtp server to handle this. gmail is an email server which generally are based on POP protocol. now for SAP to send mail to gmail, you would need one SMTP capable server which can relay those message received from SAP to configured email address.
    As of WAS 6.10 SAP kernel supports SMTP without more components. i.e e-mails can be sent (or received) from the SAP system to each SMTP-compatible mail server. see SAP note 455140 for more details.
    Hope this clarifies your doubt.
    http://en.wikipedia.org/wiki/SMTP_server
    Regards,
    Debasis.

  • How can I configure SAP Library

    Dear Experts,
    I would like to configure SAP Library OFFLINE on my server can somebody guide me step-by-step.
    Regards,
    Prashant Chauhan

    > Hi Reiner,
    > Thank you very much for response, this is helpful
    > information.
    If you consider an answer as helpfull, please mark it with the button on the left side :-).
    > My options are pretty much limited,
    > I can't use NTLM since, AIX will not accept trust
    > -- NTLM Auth will not work with AIX
    > -- Kerberos auth have to have third party tool like
    > CyberSafe for SNC trust relationship.
    As I wrote, you can use any SNC provider. Especially Secude would be interesting, as it is available on all platforms.
    > I planning to try using SSO as mentioned in "Enabling
    > Single Sign-On for ASP.NET Applications in Enterprise
    > Portal 6"
    > Is this approach works with EP 5.0?
    This is a completely different approach: In the stuff I was writing to you before I was assuming that IIS would do the authentication. The other approach is that SAP Portal does it. This also works - EP 5.0 should be fine - but it works completely different. E.g. you doesn't need a trusted connection for SSO with MYSAPSSO2 ticket.
    > If any one has "sapsecu.dll" please send me at
    > [email protected] with same size as stated in
    > this document.
    This DLL is not allowed to be exported into some countries because it contains strong cryptography. You usually get it via your local SAP subsiduary.
    > My SSO ticket did not get created after following
    > steps in document, I am suspecting either sapsecu.dll
    > or veryfy.pse is wrong?
    Did you find a MYSAPSSO2 cookie in the request?

  • How to configure sap maxdb client to connect to SAP ERP system (SAP HR)

    Hello all,
    I am currently installing live cache for SAP ERP HR application(Idoc), can anybody tell me the sequence to proceed to configure SAP livecache with SAP ERP system. i am doing following steps
    1. Install SAP DB using installation MAXDB CDs
    2. Install SAP Livecache and standalone server SCM 5.0 using SAP ERP master and Livecache dvds.
    3. install Livecache client fromSAP ERP master and livecache dvds between SAP ERP and livecache server.
    4. configure in LC10, tcode.
    but when i press on livecache monitoring in LC10 it gives me following error.
    Command: DBMRFC
    Parameter: -gsapfive -xsapgw00
    SY-SUBRC: 8
    Return Code
    sap maxdb client

    i tried the said things and after that i am getting following error in DB59, first three steps are successful but 4 one is failing.
    Test Scope
    1. Execute an external operating system command (DBMCLI)
    2. Determine status using TCP/IP connection SAPDB_DBM (DBMRFC command mode)
    3. Determine status using TCP/IP connection SAPDB_DBM_DAEMON (DBMRFC session mode)
    4. Test the SQL connection (Native SQL at CON_NAME)
    Application Server:  <hostname>_<SID>_00                           ( Windows NT )
    1. Connect. test with "dbmcli db_state"                         Successful
    2. Connect. test with command mode "dbmrfc db_state"            Successful
    3. Connect. test with session mode "dbmrfc db_state"            Successful
    4. Connect. test with "native SQL"  ( LCA )                     No connection
       SQL Code: 4008
        POS(1) Unknown user name/password combination
       For detailed information, see the developer trace for work process:            1
    please see trace from file dev_rfc and dev_w0 below
    log for dev_rfc
    **** Trace file opened at 20110107 174356 Eastern Standard Time, SAP-REL 701,0,14 RFC-VER U 3 1016574 MT-SL
    ======> CPIC-CALL: 'ThSAPOCMINIT' : cmRc=2 thRc=679
    Transaction program not registered                                      
    ABAP Programm: SAPLARFC (Transaction: )
    User: MKUMAR (Client: 800)
    Destination: IDOCTEST (handle: 2, , )
    SERVER> RFC Server Session (handle: 1, 45030386, {9BAF1AE0-E29B-F1A3-9406-0019B9E204CC})
    SERVER> Caller host:
    SERVER> Caller transaction code:  (Caller Program: SAPLQOWK)
    SERVER> Called function module: ARFC_RUN_NOWAIT
    Error RFCIO_ERROR_SYSERROR in abrfcpic.c : 1501
    CPIC-CALL: 'ThSAPOCMINIT' : cmRc=2 thRc=679
    Transaction program not registered                                      
    DEST =IDOCTEST
    HOST =%%RFCSERVER%%
    PROG =IDOCTEST
    Log from dev_w0
    A  RFC 1485  CONVID 47150684i tried the said things and after that i am getting following error in DB59, first three steps are successfuk but 4 one is failing
    trace from file dev_rfc is below
    **** Trace file opened at 20110107 174356 Eastern Standard Time, SAP-REL 701,0,14 RFC-VER U 3 1016574 MT-SL
    ======> CPIC-CALL: 'ThSAPOCMINIT' : cmRc=2 thRc=679
    Transaction program not registered                                      
    ABAP Programm: SAPLARFC (Transaction: )
    User: ABC (Client: 800)
    Destination: IDOCTEST (handle: 2, , )
    SERVER> RFC Server Session (handle: 1, 45030386, {9BAF1AE0-E29B-F1A3-9406-0019B9E204CC})
    SERVER> Caller host:
    SERVER> Caller transaction code:  (Caller Program: SAPLQOWK)
    SERVER> Called function module: ARFC_RUN_NOWAIT
    Error RFCIO_ERROR_SYSERROR in abrfcpic.c : 1501
    CPIC-CALL: 'ThSAPOCMINIT' : cmRc=2 thRc=679
    Transaction program not registered                                      
    DEST =IDOCTEST
    HOST =%%RFCSERVER%%
    PROG =IDOCTEST
    A  RFC 1485  CONVID 47150684
    A   * CMRC=2 DATA=0 STATUS=0 SAPRC=679 ThSAPOCMINIT
    A  RFC> ABAP Programm: SAPLARFC (Transaction: )
    A  RFC> User: abc (Client: 800)
    A  RFC> Destination: IDOCTEST (handle: 2, , )
    A  RFC SERVER> RFC Server Session (handle: 1, 47149684, {FDB31AE0-D203-F1C0-9406-0019B9E204CC})
    A  RFC SERVER> Caller host:
    A  RFC SERVER> Caller transaction code:  (Caller Program: SAPLQOWK)
    A  RFC SERVER> Called function module: ARFC_RUN_NOWAIT
    A  TH VERBOSE LEVEL FULL
    A  ** RABAX: end RX_GET_MESSAGE

    M  *****************************************************************************
    M  *
    M  *  LOCATION    SAP-Gateway on host <HOSTNAME> / sapgw00
    M  *  ERROR       program IDOCTEST not registered
    M  *
    M  *  TIME        Fri Jan 07 18:15:25 2011
    M  *  RELEASE     701
    M  *  COMPONENT   SAP-Gateway
    M  *  VERSION     2
    M  *  RC          679
    M  *  MODULE      gwr3cpic.c
    M  *  LINE        1778
    M  *  DETAIL      TP IDOCTEST not registered
    M  *  COUNTER     715
    M  *
    M  *****************************************************************************

    A  RFC 1485  CONVID 47152747
    A   * CMRC=2 DATA=0 STATUS=0 SAPRC=679 ThSAPOCMINIT
    A  RFC> ABAP Programm: SAPLARFC (Transaction: )
    A  RFC> User: ABC (Client: 800)
    A  RFC> Destination: IDOCTEST (handle: 2, , )
    A  RFC SERVER> RFC Server Session (handle: 1, 47151731, {FDB31AE0-D203-F1C1-9406-0019B9E204CC})
    A  RFC SERVER> Caller host:
    A  RFC SERVER> Caller transaction code:  (Caller Program: SAPLQOWK)
    A  RFC SERVER> Called function module: ARFC_RUN_NOWAIT
    A  TH VERBOSE LEVEL FULL
    A  ** RABAX: end RX_GET_MESSAGE
    Mani

  • Portal UME in ABAP asking user mapping???

    Hi all,
    I've decided to configure portal UME beeing the ABAP UME in backend system. I Can create users in portal and SU01 and i can logon in both systems with the same user. Now i've a system to connect the MSS/ESS iviews and portal asks me for user credentials in R/3, why ? It is the same user !! Have I to configure anything more?
    Thanks for replys,
    Best Regards,
    Pedro Rodrigues.

    Hi Pedro,
    To my knowledge ESS/MSS iViews are connecting ICM server on ABAP side and, thus, BSP iViews (at least, some of them). To avoid requests for user credentials from ICM server you need to configure SSo between your J2EE (where Portal is installed) and ABAP systems.
    Here is the link that might be helpful for you:
    http://help.sap.com/saphelp_erp2005/helpdata/en/89/6eb8e7af2f11d5993700508b6b8b11/frameset.htm
    Also you can search in the SDN Weblogs for steps on how to configure SSO.
    Regards,
    Mike

  • Revertion of Portal UME from LDAP to DB Only

    Hello All Portal Gurus,
    I have one query. Can i revert back my Portal UME database from LDAP read only + DB configuration to DB only. I know the default configuration of the UME after installation remains DB only. But if we change it to LDAP ADS readonly, then can we change it back to DB only by any means or by any action?
    Need the suggestions from Portal Gurus...
    Thanks in Advance
    Regards
    Srinivas

    Hi Srinivas,
    how did you try to reset the UME settings? Using portal system administration?
    If yes, go for the config tool. For further help see:
    [Configuring UME|http://help.sap.com/saphelp_nw70/helpdata/EN/eb/00954081efb90ee10000000a155106/frameset.htm]
    HTH,
    Carsten

Maybe you are looking for