SAP.New user types system, services, reference

來源:互聯網
上載者:User
Goller.CN SAP Education 贊助商連結
www.goller.cn  

New user types as of Release 4.6C
SAP Note Number: 327917 
https://www.sdn.sap.com/irj/servlet/prt/portal/prtroot/com.sap.km.cm.docs/oss_notes/sdn_oss_bc_sec/~form/handler{5f4150503d3030323030363832353030303030303031393732265f4556454e543d444953504c4159265f4e4e554d3d333237393137}
 
Symptom
In Release 4.6C, the user types that can be selected in user maintenance were reorganized and, in some cases, enhanced. The following user types, which contain all of the previous user types, are now available. This restructuring is fully downward-compatible. Data conversion is not required.

Characterization of user types (see also note 622464):

Dialog user 'A'
Individual system access (personalized)

Logon with SAPGUI is possible. The user is therefore interaction-capable with the SAPGUI.
Expired or initial passwords are checked.
Users have the option of changing their own passwords.
Multiple logon is checked.

Usage: For individual human users (also Internet users)

System user 'B'
System-dependent and system-internal operations

Logon with SAPGUI is not possible. The user is therefore not interaction-capable with the SAPGUI.
The passwords are not subject to to the password change requirement, that is, they cannot be initial or expired.
Only an administrator user can change the password.
Multiple logon is permitted.

Usage: Internal RFC, background processing, external RFC (for example, ALE, workflow, TMS, CUA)

Communication user 'C'
Individual system access (personalized)

Logon with SAPGUI is not possible. The user is therefore not interaction-capable with the SAPGUI.
Expired or initial passwords are checked but the conversion of the password change requirement that applies in principle to all users depends on the caller (interactive/not interactive). (*)
Users have the option of changing their own passwords.

Usage: external RFC (individual human users)

Service user 'S'
Shared system access (anonymous)

Logon with SAPGUI is possible. The user is therefore interaction-capable with the SAPGUI.
The passwords are not subject to the password change requirement, that is, they cannot be initial or expired.
Only a user administrator can change the password.
Multiple logon is permitted.

Usage: Anonymous system access (for example, public Web services)

Reference user 'L'
Authorization enhancement

No logon possible.
Reference users are used for authorization assignment to other users.

Usage: Internet users with identical authorizations

Remarks:
(*) With all non-interactive system accesses (that is, not using the SAPGUI), the password change rule (which exists for all users except for system and service users when passwords are initial or have expired) is not enforced by the system if there is no interaction option. However, provided that you can execute a password update dialog with the user (=> middleware, such as SAP ITS, for example,), RFC client programs should recognize the need to change a password and initiate the subsequent password change by calling special function modules (=> see note 145715) or RFC-API functions (as of 4.6C).
The user interaction (including handling error and exceptional situations) is provided here with the middleware (= RFC client).

Other terms
SU01

聯繫我們

該頁面正文內容均來源於網絡整理,並不代表阿里雲官方的觀點,該頁面所提到的產品和服務也與阿里云無關,如果該頁面內容對您造成了困擾,歡迎寫郵件給我們,收到郵件我們將在5個工作日內處理。

如果您發現本社區中有涉嫌抄襲的內容,歡迎發送郵件至: info-contact@alibabacloud.com 進行舉報並提供相關證據,工作人員會在 5 個工作天內聯絡您,一經查實,本站將立刻刪除涉嫌侵權內容。

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.