SAP Security Online!
 
Web SAPSecurityOnline.com
 
   
 
 
 
 
 

 
  CUA- Tips

Access to the configuration of Central User Administration (CUA) transactions should be controlled. Consideration should be given to restricting access to only relevant user administration staff to the following CUA Maintenance transactions.

CUA Tcode Name and Description

SALE Display ALE Customizing Used to configure the ALE environment for CUA. This transaction also allows access other ALE and Remote Function Call (RFC) configuration.
SCUA   Central User Administration Transaction used to maintain the CUA landscape.
SCUL   Central User Management Log Transaction used to view CUA audit and error logs.
SCUM   Central User Administration Transaction used to define field distribution for CUA.

Removing Central User Client

Log on Central system and run report RSDELCUA to remove one or more child systems.

  • Execute WE20 and select Partner Type LS. Delete message types CCLONE and USERCLONE for the selected child system.
  • Delete the complete partner model.
  • Execute transaction BD64. In change mode, delete the methods for the deleted child and save the entries.
Then log on to every child system to be deleted.
  • Run report RSDELCUA on the child system.
  • In WE20 if there are any inbound parameters for the child client, delete them.
  • Once this is done the complete partner profile can be deleted.
    It is not recommended to delete the RFC destinations but rather remove CUA administrative access from the communication user’s role.

For Further CUA Troubleshooting follow the link

 

 



 
Copyright © 2005 - 2007 SAP Security Online.com All Rights Reserved.