Users for logging on to receiver systems

Hi,
The user name and the password that the IS needs for logging on to a receiver system to deliver a message are kept in the database of the Integration Directory and cached in the IS.
According to the documentation, the passwords are stored in the secure store of the directory server and in an obfuscated form in the persistent cache on the IS.
Anyone knows what mechanisms are used to make the secure store of the directory server secure?
And does any of you know in what form are the passwords stored in the IS cache? (I suppose that means what hashing algorithms are used?)
Thanks,
Greg

If you don't install the security libraries (during the WebAS install) your secure store passwords will be hashed (one-way)...
If you installed the securitiy libraries then you can encrypt the secure store (the security libraries are also require if you're going to use https)...
The best way to protect your secure store is to protect/secure the filesystem where it resides (/sapmnt/<SID>/global)

Similar Messages

  • A program to trace when a user is logged in/out the system

    Hi,
    How would I write an ABAP to determine when the user is logged into a SAP system, what transaction code has been launched by the user, and when the user exits or changes a transaction code?
    Or is there a FM that provides this information?
    Thanks,
    RT
    Message was edited by: Rob  Thomas

    Hi,
    You can find some information in STAT and STAD transactions. But these information will be only available for programs with atleast some screens
    either a report list screen or a selection screen or a module dialog.
    There are also quite a no of BAPIS related to User logons.
    Cheers
    VJ

  • Deploy user for automatic deployment on development system

    Hi everybody,
    I am not sure what user to configure in the "Runtime Systems" tab of my track configurations.
    We use AS Javas of the Version 7.1 EHP1 as runtime systems. Thus we use the deploy controller for deploying. So far we just have used the personal user of whoever created the track as deploy user. Is this the recommended way? Or should we better use some technical user for automatic deployment? If yes, which permissions should this user have?
    Thanks in advance for your help!
    Tobias

    Hi Satya
    Thanks for the quick answer. Do you happen to know if a separate technical user for CMS deployment ist the "standard"/best practice?
    Best regards,
    Tobias

  • No authorization for backgroung user for log deletion

    Hello,
    I have included program SBAL_DELETE in a process chain in order to delete expired application logs periodically. But it doesn't work because I get always this message from backgroung monitor: "You do not have authorization to delete all these logs".
    If I run program manually via SLG2 it works correctly.
    The background user has profile S_BI-WHM_RFC.
    Can anybody advice what am I missing?
    Thank you.
    Branislav

    Hi Branislav
    For the administration processes that are bundled in a process chain, you require authorization for authorization object S_RS_ADMWB.
    To work with process chains, you require authorization for authorization object S_RS_PC
    Check this link
    http://help.sap.com/saphelp_nw04s/helpdata/en/e3/e60138fede083de10000009b38f8cf/frameset.htm
    Regards,
    Naveen

  • DB user for logging into OEM

    Hi All,
    We have few users in DB for scheduling and monitoring jobs. Inorder for these users to login into OEM Grid Control , we are having another user who is having admin privilages on the DB. That is we are having two levels of login.
    Can anybody tell , if there is a way for the DB user to directly login OEM? We want these DB users to only access jobs through OEM.
    Pls help if any of you have idea abt this.
    Regards,
    mallee

    By adding the users in Administrators of OEM, they will be able to change DB settings? No this gives the capability to connect to the Console.It is required....
    What they can do....is what they have been granted to do....!!!!!
    So , in db give as sys the required and only these system roles/privileges to users so as they can only administer the schedules/jobs ...
    Greetings...
    Sim

  • Unable to create new user when logged as SYS or SYSTEM user. Oracle 11g

    Hello I installed oracle 11g databse. The installation went OK.
    But when I tried to create a new user or alter an existing I always got "ORA-01031: insufficient privileges".
    However I was able to alter SYS user when I was loged in as SYS or SYSTEM user when I was loged in as SYSTEM.
    I am also able to create new tables, drop tables, query tables, create and drop synonyms and all other things except manipulate with users;
    Can anybody tell me where could be the problem?
    Thanks a lot in advance.
    Message was edited by:
    user609545

    I have checked the roles DBA, RESOURCE..(I am sorry byt I dont know what is role CREATE). SYS user has all these roles with admin option and default checked.
    I am using oracle Enterprise manager, but I dont know where should I click on the red mark? Where can I find it?

  • Getting the No of Users logged in the SAP system

    Hi Experts ,
    I have the requirement of finding the No of Users ( User Ids) logged into the SAP system.
    Is there any database table or FM to retrieve this information.
    Regards,
    Abhishek Kokate

    Hi Abhishek,
    Check out transparent table : USR41 (User master: Additional data) This may be the table you want to use.
    Or
    You can use SUBMIT command with the above stated report (RSM04000_ALV) - export the output( ALV data) to memory and then retrieve to use it as you want (as an internal table).
    example :
    DATA  BEGIN OF itab_list OCCURS 0.
            INCLUDE STRUCTURE abaplist.
    DATA  END OF itab_list
    SUBMIT RSM04000_ALV
      via selection-screen
        EXPORTING LIST TO MEMORY
          AND RETURN.
    * To read from the memory
    CALL FUNCTION 'LIST_FROM_MEMORY'
      TABLES
        listobject = itab_list
      EXCEPTIONS
        not_found  = 4
        OTHERS     = 8.
    Hope this is help full to you  !!
    Salil.

  • Find out how many remote users are login in to my system.

    Hi
    i just want to know how many no of remote users are logged in to my system and their information.
    how can i restrict them. how to limit the remote connections.
    how many ftp user's are connected to my system.
    can any one send me documents which contain brief information for about questions.

    use rusers and finger commands to check the users remotely login
    form limitint the access of user u need to create $HOME/hosts.equiv and $HOME/.rhosts and making entry for those users who u want to allow

  • I have an imac and I set up additional user accounts.  When I start up or restart the computer it only shows me the option of logging on as the system administrator and it does not show the other accounts for my wife and kids.

    When I start up my additional user accounts do not show so I can log onto them.   The same thing happens when I log out as the system admin.  How do I get to the additional accounts that I have set up on my imac so I can log in under them.   Thanks

    There is zero advantage to partitioning a HD for the purpose you have described. I recommend that you take your machine to an AASP, describe the problem and they will help you get it back working. Partitioning a HD is a 1990's approach and is of no value what-so-ever unless you installing multiple operating systems on the HD. In that case it would be valuable.
    Good luck.

  • User is not logged on, but the system thinks it did!

    Hi,
    We're having a problem with one user. When you try to log on with his userid and password, this notification screan comes up: You have already logged in. Do you want to logout and login to a different Organization? "YES" "NO"
    Trying again, doesn't work.
    When you watch the logged on sessions with the admin console, you will see that there is a session with the user and that he is indeed logged on!
    BUT this is not how it is for real, cause he is NOT logged on, doesn't get further then this notification screen!!
    Someone knwos what's wrong? We still have to try to restart everything, but it's a production system so we'll have to wait till nobody is logged on :-S
    Thanks!
    Greetz,
    Miranda

    - it is possible to terminate the session and the user is logged of (also get's the message)
    - when the users answers no (to log of and log in to a new organization) you stay at the same screen notification
    and the admin console shows the user as logged on
    - when the users answers yes (to log of and log in to a new organization) it get's the logon screen (default logon screen)
    and the admin console shows the user as logged off
    - when i inactivate the user and it is logged on, it get's after trying to logon new this message: This user is not active.
    Contact your system administrator, but it stays logged on .. shows the admin console
    - i also can delete the user from the organization (after one time logged on it has a profile under the users from the logged on organization)

  • Not all users are displayed for log on after a reboot or startup...

    Problem summary: Not all users are displayed for log on after a reboot or startup...
    This problem only occurs after a fresh start-up or restart. The only users displayed are the initial (admin user) and "Guest". Two other (non-admin) users are not shown for log on.
    To work around this problem and get them to log on we have to log on as the admin user, then we can see the other users in the Fast User Switching menu (top right-hand corner of the screen), listed under the current logged on user. After selecting the non-admin user we can log in and use the laptop as normal.
    If we lock the screen, use fast user switching or log out all users; all users are available for log in, until a reboot is done; at which point the non-admin users disappear again and we have to log in as the admin user and use fast user switching again.
    The laptops are both brand new MacBook Airs. The initial configuration of Mac OS X Yosemite was done using the Apple ID of the purchaser (parent) and then the OS was patched, immediately, through the App store (no further updates available as of the date of this posting). After this Family Sharing was activated and new users set up for the two children who will be using these laptops.
    Has anybody else experienced this problem with Yosemite?
    Cheers,
    David.

    David,
    Users not enabled for FileVault unlock are only able to log into the computer after an unlock-enabled user has started or unlocked the drive. Once unlocked, the drive remains unlocked and available to all users, until the computer is restarted.
    FileVault has to be On.
    To Enable the users to be able to unlock FileVault Go to:
    System Preferences > Security & Privacy > FileVault ( Tab ) > Click the Lock in the bottom left > Put in your administrator password > Should see an option to Enable Users > Enable User.
    Hope that helps,
    Weston
    Supporting Articles,
    OS X: About FileVault 2 - Apple Support

  • SAPinst Error--Phase 2--Creation of User for SAP System

    Hi,
    I am installing SOLMAN 7.0 on Red Hat Linux 5 with IBM Java SDK version 1.4.2_10
    When I run the SAPinst it gives ERROR in the 2nd phase of Creating users for SAP system.
    The SAPinst log file shows as below:-
    WARNING[E] 2008-06-07 17:49:28.362
    FSL-01002  Unable to create account user="orasmd". useradd: cannot create directory /oracle/SMD (return code 12)
    WARNING[E] 2008-06-07 17:49:28.363
    MUT-03025  Caught ESyException in Modulecall: ESAPinstException: error text undefined.
    ERROR 2008-06-07 17:49:28.427
    FCO-00011  The step createAccounts with step key |NW_Onehost|ind|ind|ind|ind|0|0|NW_Onehost_System|ind|ind|ind|ind|2|0|NW_Users_Create_Do|ind|ind|ind|ind|5|0|createAccounts was executed with status ERROR .
    Please suggest and help me in resolving this error asap.
    Regards,
    Abhijeet K

    Hi,
    Thnx a lot for the suggestion Markus
    I have created the directories required.
    The SAP installation has started, but now I am getting the message as below during the ORACLE DB Installation phase,when I run the Oracle ./RUNINSTALLER in Bash Unix:-
    [orasmd@SOLMAN SAP]$ ./RUNINSTALLER
    oracle_stage is not set (OK)
    oracle_base is not set (OK)
    oracle_home is not set (OK)
    oracle_sid is not set (OK)
    oracle_home_name is not set (OK)
    oracle_inst_group is not set (OK)
    from_location is not set (OK)
    tmp_netca_file is not set (OK)
    tmp_dbca_file is not set (OK)
    Working in /oracle/stage/102_64/database/SAP ...
    The environment variable ORACLE_HOME is not set! abort ...
    I have set the ORACLE_HOME env variable as below:-
    ORACLE_HOME=/oracle/SMD/102_64
    export ORACLE_HOME
    But I get the same message again as above.
    Do we need to set the ORACLE_HOME env variable in the BASH_PROFILE directly??? Coz I heard that if we set it with the Export command then the env is set only for the current instance and not permanently.
    If so what is the exact entry I need to make in the BASH_PROFILE???
    Rgds,
    Abhijeet K

  • Is there a script or a secure program that I could use to remove profiles after a given user logs off from the system?

    I am trying to do this on a network for a specific lab that uses Active Directory. I would like to accomplish this on each individual iMac. The only account that would not be removed after logging off would be the Administrators.
    Thanks.

    Also, If I created a default profile on each system, could each user log in and be redirected to that profile and all of their network resources be readily available, and once they log out of the system, they are disconnected and all of their information is removed? (Hope this makes sense.)

  • How to create a new user id in OID for Oracle Collab suite File System

    Dear Friends,
    I want to know how to create a new user id in the oracle internet directory where i can use that user for the new subscription of the oracle collabration suite file system..
    Please do the needfull and thanks in advance...
    With warm regards
    R.Prasad

    Hi!
    The way you suggest should not be used.
    A CS user will be created as a normal OID user and will receive the CS attributes in a different subtree later during the provisioning.
    For creating CS users use oesuser and uniuser. Files provisioning will work in a different manner anyway.
    cu
    Andreas

  • Could not find coding page for receiving system

    Hi,
    We have set up the configuration of RFC connections in SM59. We want to send an IDoc from a Unicode to a non-Unicode system. Message 'Could not find coding page for receiving system' appears. We activated some solutions described in OSS notes and added the required authorization to the communication user but it still doesn't work. What else can cause (solve) this problem?
    Regards, Jan

    Hello Jan,
    I had the following situation:
    After seup of an ALE/IDOC scenario with another SAP but Non unicode system sometimes the outbound PROJECT idocs failed with the error message "Could not find code page for receiving system". Status of Idoc was 02. When reprocessed some minutes later with report RBDAGAIN it worked.
    It turned out that for what'o'ever reason the connectivity was down for a very short time but long enough to get the Idocs failed.
    That's what I meant with the error text could be misleading.
    We solved this problem with a daily job with report RBDAGAIN for reprocessing.
    Regards
    Michael

Maybe you are looking for

  • Image Capture launches every time I connect my iPhone or iPad to my MacBook Pro.

    Is there a way to disable this? There doesn't seem to be a Preferences pane for it.

  • Classic synchronizing problem

    My Classic is a couple of years old and has been restored about three times now. For some reason(s) it crashes and have to go thru the resoration stages for it to work properly. Now it connects to iTunes but but has trouble synchronizing when music f

  • Find my iPhone in iCloud is not able to find my devices

    I have upgraded all my apple devices (including my iPad , iPhone to iOS 5 and my macbook air to 10.7.2) to the latest software. When I use find my iPhone feature in icloud.com its not able to find any of my devices. Is anyone else also facing the sam

  • FindBy method in CMP

    Hi I would like to know if there is a way of get case insensitive results from database using CMP findBy methods ? Thanks Lavanya

  • Photoshop CS4 Trial version install error

    Hello. I've downloaded the trial version of Photoshop CS4 Extended. When I click the setup.exe it starts running and works until it reaches the loading setup menu. Then a error pops up. The title of the message box is "Windows Internet Explorer" and