Configure admin roles for SAP Netweaver ABAP
Early Access release
Note:
On-prem Connector is available on a subscription basis. Contact your Okta representative for more information.
On-prem Connector requires that you configure a certain set of permissions and admin roles in your SAP Netweaver ABAP app. Ensure that your app has each of the following permissions configured.
| Authorization | Field | Value |
|---|---|---|
| S_USER_GRP | Activity (ACTVT) |
|
| User Group (CLASS) |
|
|
| S_RFC | Activity (ACTVT) |
Execute (16)
|
| Type of RFC (RFC_TYPE) |
Function Group (FUGR)
|
|
| Name of RFC (RFC_NAME) |
|
|
| S_USER_AGR
|
Activity (ACTVT) |
|
| Role Name (ACT_GROUP) |
|
|
| S_USER_SAS | Activity (ACTVT) |
Assign (22)
|
| User Group (CLASS) |
|
|
| Receiving System (SUBSYSTEM) |
|
|
| Role Name (ACT_GROUP) |
|
|
| Auth Profile (PROFILE) |
Enter a pattern that follows your naming convention for profiles assigned by role. For example, if these profiles all begin with the letter T, then enter
T*. Note:
While Okta never attempts to assign profiles directly, it's important that this pattern doesn't match either SAP_ALL or SAP_NEW. |
|
| S_USER_UID | Activity (ACTVT) |
Display (03)
|
| User Group (CLASS) |
|
|
| External UID Type (EXTUID_TYP) |
Global User ID (GU)
|
Related topics