Secure custom developer programs and transactions

Hi Guys,
I am given a task in my company to maintain authority check for all costom developed programs and transaction.
In combination TADIR, TRDIR & TSTC i found more then 1000 transactions and 1500 programs custom developed.
So now I am having difficulty in finding authority check at program level for all the custom programs and transactions. I tried to use RSABAPSC but this gives for each program/ transaction.
Can you guys help me to find a best way to get the list for the whol transactions and good approach to complete the task at ace and good way.
Please comment your best practices and approaches for this.
Let me know if you guys need any more information from me to make the above more clear.
Thanks.

Hi Amit
I do not think you will find any relevant standard report/functionality in the SAP System, that could scan your Z-Report and find out if it's correctly secured with authorizations checks. Many of those checks could hide in called functionmodules, Methods etc.
And you still have need to define and check each SAP report for your companies specific security requirement.
With 1000/1500 Z-transactions/reports, my guess is, that a lot of them might be obsolete, never used, temp programs for dataloads etc. So mayby you do not have to focus on all of them, so I think that my approach would be, to try to limit the number of report that I needed to investigate thoroughly, and then take the reports one by one.
The steps involved would be something like:
1. Find out which of your Z-reports/T-codes thats actually used. You should be able to se that in SM20(if you have activated the secure audit log with the correct filters), ST03N etc. Report/T-codes that are not used could be locked in SM01.
2. Investigate the used reports one by one, Check the Source-Code, do an Authorisation trace etc - Remember that if your Z-Report used BAPI and other SAP Standard functionality, Or if i reads from at DATASET etc.. you might not be able to spot the Authority-check statement in your source code
3. Implement and test the relevant and requirered additional authorization check
4. Document in SU24
5. Adjust the roles
And your ready for test.
And yes I know,,,  It can be a hugh job, but I do not think that you can find a quick-fix for this.
Regards
Morten Nielsen

Similar Messages

  • I want to create an app.  Can you tell me the difference between iOS developer program and the mac developer program?

    I want to create an app.  Can you tell me the difference between iOS developer program and the mac developer program?
    Is the difference the device you're creating your app on, or for?

    iOS Developer Program is only for those who wish to develop iDevice apps. Mac program is for those only developing Mac applications. If you wish to do both, then you need to enroll in both programs.

  • I cant get on my phone it saids i have to registered as a iphone developer program and i dont want to do that but i cant cancel and i cant get back on my phone can someone help me

    i cant get on my phone it saids i have to registered as a iphone developer program and i dont want to do that but i cant cancel and i cant get back on my phone can someone help me

    Were you running iOS 7 beta?  If so, as a developer you need to log into the Developer forum for assistance.
    Not a developer and running iOS 7 beta?  Then you've stolen Apple's software and will receive absolutely no assistance from this forum.  Enjoy your iBrick!

  • How to find custom Tcodes,programs and enhancement.. for a specific country

    hi...
    Is there any way in ABAP to find the Custom Tcodes, programs and enhancements only for specific country in our present system.

    Hi Srujan,
    Use the table name TSTC to find the custom program and t-code.
    To find the custom enhancement use t-code : CMOD.
    Regards
    Dev

  • For count of times execution of program and transaction

    Hi all.
    IS there any report or transction which give us  number of count of any program and transaction execution?
    Please help me out.
    thanks
    chetan vishnoi

    Hi,
    When ever u execute ur report/Transaction u update a Ztable with the counter incrimented by 1.
    U can get the max counter value by the select statement.
    SELECT MAX( Counter ) INTO w_counter FROM ZCOUNTER.
    Make sure that u update the Ztable only at the end of ur code. Because your program may exit because of some errors in the middle.
    Hope u got my point:-)
    Thanks,
    Vinod.

  • Switch framework for Abap development (Program and FM)

    Hello All, I have requirement to deliver some code (in a custom Add-on) which is using some program /FMs based upon a particular country/industry specific software particularly EA-DFPS. I am planning to create a switch for this code's package(from tcode SFW1/2/3) and by default disable this switch (in SFW5). I am not sure if this is the right way; can anybody confirm if this will work on a system where i don't have software component EA-DFPS.
    Thanks in advance
    Mani

    any answer to this?
    Mani

  • Security list maintainence program and use

    What is the difference between following conc. request programs when run from the HRMS super user resp. also what is the importance of this program execution.
    Security List Maintenance
    Security List Maintenance (Obsolete)
    Thank you.

    Hi,
    If you go by general meaning, you should not use "Security List Maintenance (Obsolete)"
    Also, in short, if you want all your responsibility to work as per the security method attached with them, you need to run the Program "Security List Maintenance" on regular basis.
    Thanks,
    Avinash

  • HT201210 my phone says that i am not registered as developer program and now my phone wont work

    what do i do now

    If you're a developer, go ask your question in the Developer Forum.
    If you're not a developer you've stolen Apple's software and are a thief.  You will get no help here.

  • Writing to a custom developer's trace file

    Is it possible to create a custom dev trace file and write to it from a custom abap program?  We've developed a custom ABAP program and we'd like to write errors to a custom dev trace file that can be monitored in ST11.  I know we can write to the SLOG using FM RSLG_WRITE_SYSLOG_ENTRY, but I don't want to fill up the SLOG in transaction SM21.  I'd rather write to a custom log file in ST11.  Is it possible to create your own dev trace log file?
    Thanks,

    OK, I was able to get it to compile, but it does not write it to the log in SLG1.  There are no error message when it runs.  Sy-Subrc = 0.
    DATA: go_msglist        TYPE REF TO if_reca_message_list.
      data: gs_msg type RECAMSG.
      DEFINE mac_build_msg.
        clear: gs_msg.
        gs_msg-msgty = &5.
        gs_msg-msgid = 'ZZ'.
        gs_msg-msgno = '000'.
        gs_msg-msgv1 = &1.
        gs_msg-msgv2 = &2.
        gs_msg-msgv3 = &3.
        gs_msg-msgv4 = &4.
        gs_msg-detlevel = &6.
      END-OF-DEFINITION.
      go_msglist = cf_reca_message_list=>create( ).
      mac_build_msg 'MyMessage' space
                     space space 'I' '1'.
      go_msglist->add( is_message = gs_msg ).

  • Testing custom ABAP program in GRC PC 3.0

    We have developed few custom ABAP program and linked it to Rule Script and Rule in GRC PC 3.0. When we schedule a job to test this control, we are not getting any hyperlink to results in Job monitor.
    In other words, test result in job monitor is blank.
    Please help

    Hello Atul,
    please create an OSS message for this problem.
    Best, Jürgen

  • Error when activating my iPhone Developer Program membership

    Ive just paid 99 dollars for my iphone developer program, and recieved an email containing the activation code. As you probably know, youre supposed to click on this activation-code and it links you to another site. But instead of activation I recieve this error-message on this site:
    "We are unable to activate your iPhone Developer Program membership because we are unable to successfully verify your identity. Please contact us and reference Enrollment ID# XXXXXXXXXX for further assistance."
    There was no problem verifying my identity when I paid for it. How come thats an issue now?
    Since people seem to have to wait for enormous periods of time to get even the simplest questions answered by Apple regarding the Dev Program, I thought I post this here to see if someone else have come across this, and what to do about it (except for waiting indefinitely).

    Mine got activated after a few days with no need for further information from me so if you get that same message you probably don't need to worry.

  • Can we update BW infocube from SAP using Custom ABAP program ?

    Hi,
    My requiremnet is to update the infocube using data from R/3 .
    I have a custom report program and users want this data in BW.
    Let me if there are any FM? from which we can call via RFC or any other alternatives?
    Rgds
    Praveen

    report must be an ABAP program in ECC I guess...Why dont you look forward for generic extraction...
    Check this one:
    https://www.sdn.sap.com/irj/sdn/go/portal/prtroot/docs/library/uuid/a0f46157-e1c4-2910-27aa-e3f4a9c8df33

  • We are unable to activate your Apple Developer Program membership.

    I already pay Developer Program and after two days I receive this email:
    Apple Developer Program Activation Code
    Dear emilia h figueiredo/Fagmer feitosa,
    To complete your purchase and access your Apple Developer Program benefits, please click on the activation code below.
    Activation Code 
    Part Number
    iOS Developer Program
    XXX-XXX-XXX-XXXX
    XXXXX/A
    If you need further assistance, please contact us.
    Best regards,
    Apple Developer Program Support
    My program dont is a Company, but solo developer. "Emilia h figueiredo" is my wife, and I paid with CC it.
    This is a problem? Pay with my wife CC ?
    When I click at Activation Code and put my password, I got this message:
    We are unable to activate your Apple Developer Program membership.
    We have received your purchase information and will email you shortly to verify additional details.

    Same problem! What should I do?

  • Activation of Developer Program

    I have purchased and I have been billed in my credit card U$99 for one year Apple Developer Program and I received this confirmation at 21st February.
    I have received a link with the activation code but it is not working - when i click in the link  i see the following message:
    We are unable to activate your Apple Developer Program membership.
    We have received your purchase information and will email you shortly to verify additional details.
    I have never received that email!!
    I have contacted twice the support reporting that problem 4 days ago but till now I have not received any answer. Can anyone help. There is a way to solve this problem??
    Yours
    Gualberto Rabay

    Hi there awilli2015,
    You may find the troubleshooting steps in the article below helpful. Note: These troubleshooting steps will apply to the iPad as well as the iPhone
    iPhone: Troubleshooting activation issues
    http://support.apple.com/kb/TS3424
    -Griff W. 

  • Do I automatically obtain a license after signing in the iOS Developer Program

    Do I automatically obtain a license after signing in the iOS Developer Program? Is there a maximum number of licenses that can be obtained in the iOS Program?

    Welcome to the Apple Support Communities
    With one Apple ID, you can obtain one license for the iOS Developer Program, Mac Developer Program and Safari Developer Program. If you want more for other people, these people will have to register on the iOS Developer Program with their own Apple ID. You will get the license for the iOS Developer Program during the next 24 hours after submitting the request, depending on the time it takes to Apple to check the credit card

Maybe you are looking for

  • Delete songs from iTunes library from "recently added" playlist

    can you please add a function that removes songs from both the entire library and the recently added playlist by simply right clicking a song while in the "Recently Added" playlist that has the "Delete" function. this is very simple and would make iT

  • Dns error when trying to start ssgd 4.4

    Hi, I get the following error when trying to start a fresh install of SSGD 4.4 on sun solaris 10 sparc machine bash-3.00# /opt/tarantella/bin/tarantella start Starting Secure Global Desktop server (version 4.40.917). Please wait... 2008/05/12 18:34:4

  • To Assign role and flavor in SAP PERSONA 2.0

    In SAP Screen Persona 2.0, through t-code /persos/admin_ui -> I'm trying to assign a flavor to the user only to view. To do this, I created a group under Group maintenance -> included the user name under user tab -> given the flavor name under shared

  • Process Chain Terminates without errors

    Hi Experts, I'm facing a strange situation; my process chain terminates half way though. Loops are not completed till the end. e.g. it runs the Info Package and DTP then stop there, in some loops only the Info Package is run. There are no error messa

  • Two part q: sysman login and clearing alerts

    Oracle 11.2.0.1.0 SE-One on OL 5.6 64bit Just got this configured a few days ago. Opened dbcontrol this morning and found a boat-load of messages about failed log on attempts (ie: 170 failed attempts in last 30 minutes) Checked DBA_AUDIT_LOG and see