Professional Documents
Culture Documents
com
User Administration:
BASIS - System Admin - Installation
BW - Modeling
User types:
Would be assigned with PUBLIC Role ( without PUBLIC role, user cant
login into HANA Studio)
Purpose:
Scenario1:
Ex,,
Scenario2:
Ex,, Team Wise we create one TECH account, and this is used whenever
they want to create/edit data. Entire team knows the password.
Solution:
Every User has only one account with FULL Access. But when they are
maintaining Data, it has to be treated /created as REPOSITORY DATA.
Ownership of Data:
User1 is creating Role1, Role2. User1 is the owner for Role 1 ad Role 2.
Grantable to Others:
YES - The User can assign the same access what he has to other users.
NO - The User cannot assign the same access what he has to other users.
A to Z
0-9
Underscore ‘_’
HANA Studio
Only when this is selected, User who is assigned with this role, can assign this role to some other user,
even without having ROLE ADMIN access in HANA.
TL - SCHEMA1
DEVELOPER1
DEVELOPER2
DEVELOPER3
Solution1:
Ask Security team to give Create Table under SCHEMA1 to all 3 developers
TL
Object Privilege
Sridhar Gajulapalli sridhar.gajulapalli@gmail.com
DEVELOPER1
Object Privilege
User Deletion:
RESTRICT option will delete the user only when all the objects/DATA
under his SCHEMA are owned by the user himself.
CASCADE option will delete the user and also remove all objects owned
by the user and revoke all privileges granted by the user. (It does not
check for dependant objects/data)
Examples:
Scenario 1:
SCHEMA1:USER1
DATA1 - USER1
DATA2 - USER1
DATA3 - USER1
Scenario 2:
SCHEMA1:USER1
DATA1 – USER1
DATA2 - USER2
DATA3 - USER3
Schema: SYS ---- > VIEWS ---- > Apply filter for “USER” word
USERS PARAMETERS
_SYS_REPO
SYSTEM
SYS
http://<sap_hana_hostname>:80<Instance_number>/sap/hana/ide/security
http://hanabox:8004/sap/hana/ide/security
Or
https://<sap_hana_hostname>:43<Instance_number>/sap/hana/ide/security
http://sec.st.com:8000/sap/hana/ide/security
sap.hana.ide.roles::SecurityAdmin
3. SQL Statements
To create user