SUS CUA USERS

We are in SRM 5.0 and we have SUS. We also use CUA for creating users in SRM and ECC.
When use tx bbp_sp_supp_ini in SRM the user of supplier is create in SUS and CUA, but is a user system not dialog.
The id user is create like id registration and without password.
Is this correct?
Greatly appreciate any inputs.

Hi Raul,
Check the
Note 895217 - SUS30: SUS not integrated with CUA currently
I hope this helps you.
Regards,
José Luis D.
Please reward points for helpful answers

Similar Messages

  • Migrate my Suse Linux users account  to mac os x moutain lion?

    Can someone tell me how to migrate my Suse Linux user accounts, including mail, to mac os x moutain lion?

    You need write a script to map your /etc/passwd database to the values in MacOS. Use the dscl command like here: http://www.deadmarshes.com/Blog/20111105010130.html or here: http://hintsforums.macworld.com/showthread.php?t=141798
    You can't take the /etc/shadow, because MacOS encrypts the passwords other than Linux.
    Your users need to change their password:
    - via Webinterface from Mountain Lion
    - or via Server.app
    - or on a linux client using the OpenDirectory (LDAP) from ML
    Each mail user needs to belong to the group com.apple.access_mail. You can configure with ML-tools any forwards. Tools: Server.app (Appstore), WorkGroupManager (http://support.apple.com/kb/dl1567)
    I'm migrated/migrating my users from Solaris LDAP. I'm using this technology.
    Migrating the Mail system is an other task.

  • CUA: User & Role Master Data Change Document

    Hi Team,
    I would like to know is there any way to find out CUA user master & role assignment change document data from CUA Central System & All Targets Systems.
    I am looking for user friendly tool similar to SUIM.
    I have looked into other methods of CUA change document tips and tools but it is not so fruitful to convenes my Audit team.
    FYI.  System Users (CUA_ADMIN) is not the user which i want to see in my change document window, i want to know actual security consultant ids within that.
    Kindly get back to me.
    Appreciate, for your response.
    Regards,
    Asif

    HI Matt:  Your understanding is correct for CUA Tier2 Setup.
    FYI.
    We have successfully configured trusted relationships between SAP Systems with the help of my BASIS & UNIX team.
    To do this:  We have performed following actions:
    u2022     Trusted System trust relationships for the RFC Connection has been maintained from the Central to the Child System and from All Child to Central System via transaction code SMT1.
    u2022     UNIX Database level trusted relationship entries has also been added with the help of UNIX Team
    u2022     RFC Destinations has been reconfigured with Current user option (SM59).
    u2022     For Security Administrator special authorizations has been provided in order to get trusted relationship RFC authorizations. 
    Note:
    I have added Full Authorizations under these new special objects S_RFC, S_ICF, S_RFCACL, & S_RFCADM  and same was assigned to all our Security Administrators.  Remote Logon & Trusted Connectivity is working fine for all of us.
    We are 4 Security Administrator here, And for All of us this new concept of Trusted RFC for CUA is working fine.
    New Authorizations updated on both CUA and the Child System.
    Our ids are replicating as a log in the last change by field of SU01 and change document of SUIM. Happy to see this. 
    But unfortunately there are strange ABAP dumps are started generating from CUA (SolMan) System soon after this Implementation.
    When we look into ST22, runtime errors CALL_FUNCTION_SINGLE_LOGIN_REJ &  CALL_FUNCTION_SYSCALL_ONLY are keep generating.
    Following are the example of dump logs and all the dump are with similar fashion but with different user-ids within that.:
    Short text:  No authorization to logon as trusted system (Trusted RC=0).
    What happened?  : Error in the ABAP Application Program The current ABAP program "SAPMSSY1" had to be terminated because it has come across a statement that unfortunately cannot be executed.
    Error analysis:  An RFC call (Remote Function Call) was sent with the invalid user ID "(End user user-ids)".  Or the calling system is not registered as trusted system in the target system.
    How to correct the error: The error code of the trusted system was 0.
    Meaning: 0    Correct logon as trusted system mode
    1 No trusted system entry for the calling system "BIP " (like other child System) or the  security key entry for the system "BIP " is invalid
    2 User "111552 " (Type of End user) does not have RFC authorization (authorization object
         (S_RFCACL) for user "End User id " witl client 100.
    3    The timestamp of the logon data is invalid
    The error code of the SAP logon procedure was 6. (6    No external user check)
    My Point: I think All these End users are trying to connect CUA Trusted RFC connections through individual different child Systems..
    Why they need to Connect to CUA and for what reason they need special Trusted RFCu2019s authorization???
    Pls help me to fix this problem.
    I have gone through the old SDN posts related to the same topic and few SAP notes and help link but it wont help.
    Note 1579570 - Problem with trust relationship after using HMAC
    Note 128447 - Trusted/trusting systems
    Note 131387 - No authorization to log on as a trusted system
    Note 986707 - No authorization to log on as a trusted system (RC=1)
    Few More SAP Notes: 986707, 333441, 1151790 & 128447
    http://help.sap.com/saphelp_nw04/helpdata/en/8b/0010519daef443ab06d38d7ade26f4/frameset.htm
    We donu2019t see any logs under SCUL, BD87 & ST01.
    Please anyone can assist me on this.
    Regards,
    Asif

  • Unable to create SUS Vendor User ID

    Hi Gurus,
    I've ticked the "Portal Supplier" indicator in BP screen. System triggered XML msg to PI and received successfully in SUS. Unfortunately the processing is failed, XML error msg as below:
      <?xml version="1.0" encoding="UTF-8" standalone="yes" ?>
    - <!--  Call Inbound Proxy
      -->
    - <SAP:Error xmlns:SAP="http://sap.com/xi/XI/Message/30" xmlns:SOAP="http://schemas.xmlsoap.org/soap/envelope/" SOAP:mustUnderstand="">
      <SAP:Category>XIProxy</SAP:Category>
      <SAP:Code area="ABAP">DYNAMIC_CALL_FAILURE</SAP:Code>
      <SAP:P1>UNCAUGHT_EXCEPTION</SAP:P1>
      <SAP:P2>CL_BBPX_TRADING_PARTNER_SUS_IN</SAP:P2>
      <SAP:P3>EXECUTE_ASYNCHRONOUS</SAP:P3>
      <SAP:P4 />
      <SAP:AdditionalText />
      <SAP:ApplicationFaultMessage namespace="" />
      <SAP:Stack>Error during proxy processing An exception with the type CX_BBPX1_STD_MESSAGE_FAULT occurred, but was neither handled locally, nor declared in a RAISING clause Application Error</SAP:Stack>
      <SAP:Retry>M</SAP:Retry>
      </SAP:Error>
    I debugged and found there is missing value in RECEIVER_PARTNER_ID field. I also saw user id generated in SU01 with empty role and proflie.
    Anyone can advice please?
    Thanks,
    Glen

    Dear Glen,
    Have you registered the vendor root organization in the table BBP_MKTP_INFO?
    You need to maintain for the system. We have recently configured the scenario for our client.
    The system should generate one time access details and send the link to the e-mail specified in the supplier master data.
    With the one time access details, the supplier will create an admin user in the SUS portal.
    Thanks and regards,
    Ranjan
    Ranjan Sutradhar

  • CUA   user login is taking so much in child system

    Hi Gurus,
    we have configured the CUA In solution manager, we have configured compleletly, but when i create a user in solman, and adding the user in respective systems Tab  in SU01 , and i am trying to login with the user it's not allowing immediatly..!!! it will taking hell lot of time , can any one help me guys ASAP
    Cheers
    Gopal

    Hi,
    To speedup the export/import process you can think of the following options
    1) Table splitting : Split larger tables into smaller chunks of multiple sizes
    2) Package splitting: Splitting SAP export packages into multiple chunks of smaller sizes
    3) Increase R3load process: Increase the number of R3load processes until CPU utilization reaches around 80%
    4) Use Distribution monitor to utilize CPU resources available on Application server. You can add up R3load processes on Application server.
    5) Ensure that System statistics, Oracle Dictionary statistics and missing statistics are updated before performing export/import.
    6) Increase the size of Redo log files to 250 GB.
    7) Increase the number of redo log group members to atleast 16.
    Ensure that above recommendations are implemented during the migration project. If not, you will land up in issues like export and import taking more time.
    In case you have already considered above recommendations, please check alert_<SID>.log file for more details. Monitor log swicth operation in the log file.
    Additionally monitor CPU usage and increase R3load processes accordingly.
    Regards,
    Deepak Kori

  • CUA users in child

    Hi, I have created bunch of users in the Central system. How do I copy these users to the child systems? Please let me know.
    Thanks
    Seelan

    Hi,
    If you have created users in CUA.
    Make sure you choose the child system in CUA and set the password and assign the role to the user.
    Login from child and test your user
    To Add
    If you want to create multiple users in CUA for the child system with the same role(s) then SU10 would  be handy else write an ECatt script to do so.
    Rakesh
    Edited by: Rakesh Kulkarni on Sep 30, 2008 9:20 PM

  • CUA - Users not created in Central System

    Hi -  Just put in CUA into a Solution Manager 4.0 client - and have the following issue.
    After performing SCUG - the users are brought into the central system BUT not created into the central system.
    For example:
    Child system is CLNT100
    Parent system is CLNT200
    In CUA - if I search on the user - I can see it exists in CLNT100, but no entry is created in CLNT200.
    This is an issue as I can't use SU10 in CUA - to do mass changes as the users don't exist in this client.
    I am pretty experienced with CUA - but have not seen this before - is there some new settitng that I need to make to create the users in the CUA client when performing SCUG?
    Thanks

    Hi - you only need to perform SCUG in the central system.
    I have brought all the users accross from each child system.
    I think I may have incorrectly analysed the error.
    What I am trying to do is use SU10 in the Central system to make changes on users in the child systems.  Issue is that none of the users that are in the child system only show up in SU10.
    I therefore think that this is an issue with SU10 in CUA parent - as it is only picking up uses if they exist in this CUA parent client (i.e. not if they only exist in the child systems)
    Is there any way to change the behaviour of SU10?

  • CUA user master table updates from child system

    Hi Experts,
    In my system although there are roles assigned to users in child system they are not showing up in CUA for few user.
    Is there any program in CUA which i can use to  update the user master tables for only a limited set of users from child systems.
    Regards,
    Sandeep

    Hi Sandeep,
    Just want to check below queries....if this solves your problem..
    Is these are the new systems assigned to CUA or moved from other CUA as you said that role assignment is available in child system but not in CUA ? Another  thing that  I want you to check the User Group  assigned to user in child system and in CUA.If user gorups assigned to users are different in CUA and child system or particular group is missing in any one of the system then idoc will not move. Also check the Output device type along with address data...Any mismatch of these will stop the idoc.
    After that run the SCUG for all users, in CUA as suggested by akshay, this you can run for all 10 child system from CUA, no need to go in every child system.....

  • "Business Partner Does Not Exist" SUS admin user registration

    We are currently using SUS.
    After business partner is transfered from EBP to SUS via XI, an email is generated to the vendor with a registration ID that allows him/her to use SRMSUS_SELFREG to register an admin user for that company.
    When the user registers based on the auto-generated registration ID, the screen outputs "Business Partner Does Not Exist".
    I am very stuck at this stage and can't find more places for an error log or any leads.
    Please help.

    Hi Derek Xu
    I saw your message about the problem and hope you have solved the problem, I would like to ask you a help to solve a problem that I have.
    I am configuring the SUS-EBP on version 5.5 they are in the same client, and my process must rum as follow:
    Acepted vendors can be transfered from EBP to SUS in this moment the vendor must receive an e-mail with user and password to acces the SUS and create a user .
    The problem is e-mails are not generated and I think the URLs in img Make Settings for Business Partners:
    URL for UM  I have doubt about what is the correct URL
    URL for Notification   I have doubt about what is the correct URL
    Could you send me an example of these URLs
    Thanks
    Nilson Fonseca
    [email protected]

  • New role in CUA user record not getting pushed to child system

    I added a new child system to our CUA setup.  I've confirmed that the RFC connections from both sides are working properly (test connection succeeds) and I've successfully completed the user transfer function in SCUG.  All exisitng roles assigned to the users in the child system are now appearing in the CUA central system as expected.  I added a new role to a user via SU01 in the central system to this child system, but when I go to the child system, it does not appear in the user's SU01 record.  Any ideas why this would not be syncing properly?
    Thanks,
    Michael

    Hi,
    Whenever you create a new role in child system, it has to be sync up with the central system.
    To sync up with the central system, login to central system goto su01>enter any user name>go to roles tab- click on Text comparision from chiled system. Its navigate to another screen, there you have to mention the child system and click on execute. it syncs up with child sytem. Hope it will help you out to resolve the issue.
    If still you are getting the same issue login to the central system.. goto SE38-- enter the program name as "RSCCUSND" and click on execute there mention the user name and the logical system id of the Child system name, select the parameters which you wanted to distribute to child system and execute it.
    Best Regards
    Mani

  • CUA-User does not exist in Child system

    Hi All,
    User has been created in  child system through central system,and respective roles also assigned through central system.Now,the issue is when user is trying to log in child system,it's showing user does not exist.
    I did Text comparison also,status is okay.
    Kindly help!
    Regards,
    Naveen

    Hi,
    Could you just login to the child system and view the userid created through su01?
    1. In case you are unable to do the same, there is certainly a problem  with idoc distribution for which you can find the reasons in SCUL.
    2. In case the userid exists in child syatem, you need to check if address data for the userid is being maintained in child system or not.
    In case you get an error message " Address data not maintained"  while viewing the userid through su01 in the child system, then you need to execute report RSADRCK2 in the child system.
    You may refer to the following link in this case:
    http://help.sap.com/saphelp_sm32/helpdata/en/85/91cd3b11571962e10000000a11402f/frameset.htm

  • SUS user data not replicated to SRM

    In service SRMSUS in the SUS system, we have user w/ role  SAP_EC_SUS_ADMIN_VENDOR.
    When this user modifies his own user data such as name/email/time zone, the change in user data is NOT replicated to the SRM system. The SRM user data still contains the original user information.
    I believe user data update is done via a RFC call, and not XI. I've checked for security auth object and there are no authorization issues.
    Are there any additional configs we're missing?
    We're on SRM 4.0 / SAPKIBKS10 / SAPKB64019
    I've already checked all the OSS Notes including, but they don't help, or pertain to my situation:
    Note 893714 - SUS30: Replication of bidding users from SUS to EBP
    Note 919070 - SUS-UM: User settings are not stored correctly

    Hi,
    you need to maintain the system details where the changed data needs to be replicated at the following customizing in SUS
    1) Transaction SPRO --->
    2) Path ---> Supplier Relationship Management ---> Supplier Self Services --->
    Master Data --->Maintain Systems For Synchronization of User Data
    ( check help available with the customizing for more details ).
    3) Maintain New Entry for the external systems ---> this should be your SRM system and then use the following data .
    F. Mod.: Create User BAPI_USER_CREATE  
    F. Mod.: Change User BAPI_USER_CHANGE  
    F. Mod.: Delete User BAPI_USER_DELETE 
    4) save data
    5) once you hav done this , when you make changes , data will be synchrozed with SRM

  • CUA- Deleting user IDs from Child systems

    Is there a possibility of configuring CUA in such a way that user IDs can be created and access can be updated from CUA but deleting user IDs should be taking place only in the child system (Not in all the child systems)?

    Generally good advice to keep the uniqueness of UIDs over time, also after Elvis has left the building
    What you could consider is a CUA RFC user which is not authorized to delete UID's and schedule a purge job for those IDOCs which deleted only them.
    However these sorts of "workaround" solutions are not the best advise, to be honest. What happens it someone temporarily assigns SAP_ALL because there is a big problem and authorizations should be excluded as the cause to get it working again?
    Also, every time a new child system is added to the CUA you will be flooded.
    My advice: Rather change your procedure (as discribed by Jurgen).
    What would be interesting to test is whether you are authorized to move a user (change the authorization relevevant group which they currently have) to a group which the CUA user is no long able to subsequently administrate? But theen you will still be hunting down IDOCs from time to time, most likely.
    If your shop is big enough to have these systems you have described, then you might want to consider an IdM system to replace your CUA at some time.
    If you wish, I will move this thread to the IdM forum.
    Cheers,
    Julius
    ps: Please do not cross-post.

  • Transferring users to new CUA without transferring parameters

    Greetings, we are in the process of moving our CUA users from our current (4.6) system to our new CUA (Web AS 7.0) system.
    We would like to transfer the users from the old CUA (4.6) to the new CUA (7.0). After we add the old CUA to the new CUA distribution model, is there a way to transfer the users from the old CUA to the new CUA without transferring the user's parameters?
    Right now, from transaction SCUA (Central User Administration Distribution Model) -> Environment -> Transfer User, we choose users, it transfers everything including the parameters. We only need the users.
    Any suggestions?? Thanks in advanced!

    Hi Margie,
    Not sure if this would work, since I have not tried to import users without parameters before.
    Have you tried to set the field settings in SCUM before doing the transfer? If you set the field attributes for Parameters to local before you import the users.
    Regards
    Sujeet

  • CUA restore user data after system refresh

    We recently copied our PRD ECC6 system to DEV.  In the new DEV, a client (client 301) was created by way of a client copy to replicate the environment prior to the refresh.  This new client has only one user - the CUA user for the CUA RFC.
    Our CUA resides in an independent system.  The user and authorisation data for client 301 exists in the CUA.  How do I, or even can I push the user and authorisation data from CUA to client 301 on DEV?

    Report RSCCUSND in the CUA system will allow you to push out data to the child system.  You may need to manually re-create user groups in the child system for this to work.

Maybe you are looking for

  • How to only update existing records when loading master data ?

    Hello experts, I need your lights one more time. Here is my need : I have created an infoobject (IO) which is a very simple version of 0material, let's call it Znewmat --> Znewmat has material type and trademark as attributes, those two fields are av

  • Upgrade ASA Compatibility 8.4 to 9.1

    Hi Does anybody knows if it is posible to have a mismatch in configuration if I upgrade from 8.4.5 to 9.1.5, this because the bug said that 8.4.7.15 and prior are vulnerable. This bug says that 8.4.7.6 is the fix, but I can find that in the download

  • RESTORE iCLOUD BACK UP TO iTUNES

    I have a 4S iPhone and recently backup the iPHone using iTunes and iCloud.  My Windows laptop crashed and I lost all my data.  How do I take my recent iCloud back up and restore it to my new laptop and new iTunes.  I want to restore all my music from

  • Changing passwords of OS Users

    Hi Experts!! I need to change passwords of OperativeSystem users (<instance>adm & SAPService_<instance>), the question is if it could affect portal functionally ?? Or there is something that I have to change into the portal? Thanks in advance! Yoland

  • Depuis l'installation de l'IOS7 sur mon iphon4 j'ai des problème de lenteur pour ecrire les sms et mail.

    depuis l'installation de l'IOS7 sur mon iphon4 j'ai des problème de lenteur pour ecrire les sms et mail.