SAP AUTHORIZATION BASED ON THE FOUR EYES PRINCIPLE.

Autor: OSACI, Mihaela, CRISTEA, Ana Daniela, GHIUZAN, Daniel, BERDIE, Diana Adela
Předmět:
Zdroj: Annals of the Faculty of Engineering Hunedoara - International Journal of Engineering; May2018, Vol. 16 Issue 2, p43-46, 4p
Abstrakt: Currently, the implementation of the integrated information systems in companies represents a sine qua non condition for providing higher and more reliable accessibility to the information resources. One of the most used integrated platform, which offer the support for ERP (Enterprise Resources Planning, is SAP Netweaver. This platform is multilingual & multitasking, based on the three-tier client-server technology. The development environment is the Application Server ABAP and/or Java. Web Dynpro technology is the present-day standard to develop Web applications in ABAP (or Java) programming SAP environment. Data security is now an issue of great interest. The standard modality to get a SAP Netweaver authorisation is the role-based authorization, having as foundation the RBAC design pattern (Role Based Access Control). For standalone Web Dynpro applications, being not integrated in the portal, the security shall be programmed into the application. The four eyes principle is a control mechanism designed to achieve a high level of security, especially for critical documents and operations. This principle is based on the fact that at least two persons check independently the same request / transaction / document. This paper presents a way to implement the four eyes principle in SAP Netweaver Application Server. [ABSTRACT FROM AUTHOR]
Databáze: Complementary Index