You are on page 1of 1

) How do I assign roles to a specific group, not to a specific user, and apply t

he roles to all users in that group? This particular group has four users?
Go to suim,enter the user group name in user by complex selection criteria, exec
ute user's list,execute su10 enter list of user's and assign role to them
2) What is fire fighter? When we are using fire fighter?
Fire Fighter is used if you have implemented Virsa/GRC
Fire Fighter is Virsa tool, this used to execute critical tcode when doing confi
guration
Fire fighter is also a normal user ID but having some specific access [Say Su01
or SAP_ALL] as per the needs. User type is kept as "service user'
When it is used: Say, in your project you are security administrator who
Does not have access to direct SU01 but you needs the access urgently.
Then FFID owner/administrator assigns you a FFID for limited period so that you
can perform the task from your login ID and pwd, using tcode /n/virsa/vfat and l
ogin with that FFID.
While logging you will be prompted to give business reason for access.
Everything you perform in that period [Using FFID]gets recorded for auditing.
3) I need to give authorization to a user to su01 tcode but the delete options s
hould not work..i.e. the user should be able to Create, disp, change etc but no
t delete on su01. How cam i do this?
delete the 06 activity from s_user_grp,
4) What are the components in VIRSA tool and GRC?
In GRC we have these tools:
Access Enforcer
Complaince Caliber

You might also like