ADM950. Secure SAP System Management COURSE OUTLINE. Course Version: 15 Course Duration: 2 Day(s)

Similar documents
ADM950. Secure SAP System Management COURSE OUTLINE. Course Version: 10 Course Duration: 2 Day(s)

ADM900 SAP System Security Fundamentals

EWM125. Labor Management in SAP EWM COURSE OUTLINE. Course Version: 16 Course Duration: 4 Hours

BIT460. SAP Process Integration Message Mapping COURSE OUTLINE. Course Version: 15 Course Duration: 3 Day(s)

PLM210. Master Data Configuration in SAP Project System COURSE OUTLINE. Course Version: 15 Course Duration: 2 Day(s)

BC100. Introduction to Programming with ABAP COURSE OUTLINE. Course Version: 15 Course Duration: 2 Day(s)

MDG100 Master Data Governance

NET311. Advanced Web Dynpro for ABAP COURSE OUTLINE. Course Version: 10 Course Duration: 4 Day(s)

BC430 ABAP Dictionary

DS50. Managing Data Quality with SAP Information Steward COURSE OUTLINE. Course Version: 10 Course Duration: 2 Day(s)

AC507. Additional Functions of Product Cost Planning COURSE OUTLINE. Course Version: 15 Course Duration: 2 Day(s)

ADM100 AS ABAP - Administration

BOCE20. SAP Crystal Reports for Enterprise: Advanced Report Design COURSE OUTLINE. Course Version: 15 Course Duration: 3 Day(s)

BOC320. SAP Crystal Reports - Business Reporting and Report Processing Strategies COURSE OUTLINE. Course Version: 15 Course Duration: 3 Day(s)

DEV523 Customizing and Extending PowerDesigner

BC480 PDF-Based Print Forms

GRC100. GRC Principles and Harmonization COURSE OUTLINE. Course Version: 10 Course Duration: 2 Day(s)

BC404. ABAP Programming in Eclipse COURSE OUTLINE. Course Version: 15 Course Duration: 3 Day(s)

BC410. Programming User Dialogs with Classical Screens (Dynpros) COURSE OUTLINE. Course Version: 10 Course Duration: 3 Day(s)

BOC310. SAP Crystal Reports: Fundamentals of Report Design COURSE OUTLINE. Course Version: 15 Course Duration: 2 Day(s)

BC400. ABAP Workbench Foundations COURSE OUTLINE. Course Version: 15 Course Duration: 5 Day(s)

TBIT44 PI Mapping and ccbpm

HA150 SQL Basics for SAP HANA

BC490 ABAP Performance Tuning

ADM960. SAP NetWeaver Application Server Security COURSE OUTLINE. Course Version: 15 Course Duration: 5 Day

BC400 Introduction to the ABAP Workbench

ADM920 SAP Identity Management

BC405 Programming ABAP Reports

ADM960. SAP NetWeaver Application Server Security COURSE OUTLINE. Course Version: 10 Course Duration: 5 Day(s)

EDB358. System and Database Administration: Adaptive Server Enterprise COURSE OUTLINE. Course Version: 10 Course Duration: 5 Day(s)

EDB116. Fast Track to SAP Adaptive Server Enterprise COURSE OUTLINE. Course Version: 15 Course Duration: 5 Day(s)

EP350. Innovated Content Management and Collaboration COURSE OUTLINE. Course Version: 10 Course Duration: 5 Day(s)

EDB785 SAP IQ Administration

BW310. BW - Enterprise Data Warehousing COURSE OUTLINE. Course Version: 10 Course Duration: 5 Day(s)

EDB367. Powering Up with SAP Adaptative Server Enterprise 15.7 COURSE OUTLINE. Course Version: 10 Course Duration: 2 Day(s)

AFA461 SAP Afaria 7.0 System Administration (SP03)

EDB377. Fast Track to SAP Replication Server Administration COURSE OUTLINE. Course Version: 15 Course Duration: 5 Day(s)

BC401. ABAP Objects COURSE OUTLINE. Course Version: 15 Course Duration: 5 Day(s)

SMP541. SAP Mobile Platform 3.0 Native and Hybrid Application Development COURSE OUTLINE. Course Version: 15 Course Duration: 5 Day(s)

EP200. SAP NetWeaver Portal: System Administration COURSE OUTLINE. Course Version: 10 Course Duration: 5 Day(s)

NET312. UI Development with Web Dynpro for ABAP COURSE OUTLINE. Course Version: 10 Course Duration: 4 Day(s)

SMP521. SAP Mobile Platform - Native and Hybrid Application Development COURSE OUTLINE. Course Version: 10 Course Duration: 5 Day(s)

TBW60. BW: Operations and Performance COURSE OUTLINE. Course Version: 10 Course Duration: 5 Day(s)

TBIT40 SAP NetWeaver Process Integration

TBW30 SAP BW Modeling & Implementation

Duet Enterprise: Tracing Reports in SAP, SCL, and SharePoint

SAP NetWeaver Identity Management Identity Center Minimum System Requirements

HA200 SAP HANA Installation & Operations SPS10

SAP BusinessObjects Predictive Analysis 1.0 Supported Platforms

Single Sign-on For SAP NetWeaver Mobile PDA Client

SAP AddOn Quantity Distribution. by Oliver Köhler, SAP Germany

Manual Activities of SAP Note Globalization Services, 2012/06/05

How to Find Suitable Enhancements in SAP Standard Applications

Configuring relay server in Sybase Control Center

Duplicate Check and Fuzzy Search for Accounts and Contacts. Configuration with SAP NetWeaver Search and Classification (TREX) in SAP CRM WebClient UI

How to Handle the System Message in SAP NetWeaver Mobile 7.1

How to Enable Single Sign-On for Mobile Devices?

Visual Composer Modeling: Data Validation in the UI

Enterprise Search Extension for SAP Master Data Governance

Visual Composer for SAP NetWeaver Composition Environment - Connectors

Crystal Reports 2008 FixPack 2.4 Known Issues and Limitations

Quick View Insider Microblog: Why Is There No Inbox?

How to Download Software and Address Directories in SAP Service Marketplace

Visual Composer Modeling: Migrating Models from 7.1.X to 7.2.0

Installing SAP NetWeaver Mobile Client (eswt) on a Storage Card

How to reuse BRFplus Functions Similar to R/3 Function Modules using BRF+ Expression Type Function Call

BW Text Variables of Type Replacement Path

How to Set Up Data Sources for Crystal Reports Layouts in SAP Business One, Version for SAP HANA

Testing Your New Generated SAP NetWeaver Gateway Service

Quick View Insider: Understanding Quick View Configuration

Quick View Insider: How Can I Change the Colors? (SNC 7.0)

Using JournalEntries and JournalVouchers Objects in SAP Business One 6.5

Using Default Values in Backend Adapter

Message Alerting for SAP NetWeaver PI Advanced Adapter Engine Extended

SAP Plant Connectivity 2.2

SAP Afaria Post- Installation Part 1

Visual Composer s Control Types

How to Check or Derive an Attribute Value in MDG using BRFPlus

LO Extraction - Part 6 Implementation Methodology

SAP BusinessObjects Dashboards 4.0 SAP Crystal Dashboard Design 2011 SAP Crystal Presentation Design 2011

Web Dynpro: Column Coloring in ALV

How to Guide to create Sample Application in IOS using SUP ODP 2.2

Remote Monitoring User for IBM DB2 for LUW

How to Work with Analytical Portal

The Dbmlsync API. A whitepaper from Sybase ianywhere Author: Joshua Savill, Product Manager Date: October 30 th, 2008

SAP ME Build Tool 6.1

Upgrade MS SQL 2005 to MS SQL 2008 (R2) for Non-High-Availability NW Mobile ABAP System

Quick View Insider: How Do I Set Quick View as SNC s Entry Screen?

Working with Data Sources in the SAP Business One UI API

Building a Real-time Dashboard using Xcelsius and Data Integrator

How to Integrate Google Maps into a Web Dynpro ABAP Application Using the Page Builder

Obtain Configuration Parameters for LPD_CUST Provide the base path of your BSP application (1/2)

Business Objects Integration Scenario 2

How to Integrate Microsoft Bing Maps into SAP EHS Management

What s New / Release Notes SAP Strategy Management 10.1

Business Reasons For Mobilizing Oracle Databases Using SQL Anywhere. A whitepaper from Sybase ianywhere

BIT601. SAP Workflow - Build and Use COURSE OUTLINE. Course Version: 15 Course Duration: 5 Day(s)

How to do a Manual Kernel Upgrade of an SAP Server

Overview of Caffeine ABAP to Go

Extending DME Transfer Files According to Spanish Banking Control Council to Support Non- Euro Payments

Transcription:

ADM950 Secure SAP System Management. COURSE OUTLINE Course Version: 15 Course Duration: 2 Day(s)

SAP Copyrights and Trademarks 2015 SAP SE. All rights reserved. No part of this publication may be reproduced or transmitted in any form or for any purpose without the express permission of SAP SE. The information contained herein may be changed without prior notice. Some software products marketed by SAP SE and its distributors contain proprietary software components of other software vendors. Microsoft, Windows, Excel, Outlook, and PowerPoint are registered trademarks of Microsoft Corporation. IBM, DB2, DB2 Universal Database, System i, System i5, System p, System p5, System x, System z, System z10, System z9, z10, z9, iseries, pseries, xseries, zseries, eserver, z/vm, z/os, i5/os, S/390, OS/390, OS/400, AS/400, S/390 Parallel Enterprise Server, PowerVM, Power Architecture, POWER6+, POWER6, POWER5+, POWER5, POWER, OpenPower, PowerPC, BatchPipes, BladeCenter, System Storage, GPFS, HACMP, RETAIN, DB2 Connect, RACF, Redbooks, OS/2, Parallel Sysplex, MVS/ESA, AIX, Intelligent Miner, WebSphere, Netfinity, Tivoli and Informix are trademarks or registered trademarks of IBM Corporation. Linux is the registered trademark of Linus Torvalds in the U.S. and other countries. Adobe, the Adobe logo, Acrobat, PostScript, and Reader are either trademarks or registered trademarks of Adobe Systems Incorporated in the United States and/or other countries. Oracle is a registered trademark of Oracle Corporation UNIX, X/Open, OSF/1, and Motif are registered trademarks of the Open Group. Citrix, ICA, Program Neighborhood, MetaFrame, WinFrame, VideoFrame, and MultiWin are trademarks or registered trademarks of Citrix Systems, Inc. HTML, XML, XHTML and W3C are trademarks or registered trademarks of W3C, World Wide Web Consortium, Massachusetts Institute of Technology. Java is a registered trademark of Sun Microsystems, Inc. JavaScript is a registered trademark of Sun Microsystems, Inc., used under license for technology invented and implemented by Netscape. SAP, R/3, SAP NetWeaver, Duet, PartnerEdge, ByDesign, SAP BusinessObjects Explorer, StreamWork, and other SAP products and services mentioned herein as well as their respective logos are trademarks or registered trademarks of SAP SE in Germany and other countries. Business Objects and the Business Objects logo, BusinessObjects, Crystal Reports, Crystal Decisions, Web Intelligence, Xcelsius, and other Business Objects products and services mentioned herein as well as their respective logos are trademarks or registered trademarks of Business Objects Software Ltd. Business Objects is an SAP company. Sybase and Adaptive Server, ianywhere, Sybase 365, SQL Anywhere, and other Sybase products and services mentioned herein as well as their respective logos are trademarks or registered trademarks of Sybase, Inc. Sybase is an SAP company.

All other product and service names mentioned are the trademarks of their respective companies. Data contained in this document serves informational purposes only. National product specifications may vary. These materials are subject to change without notice. These materials are provided by SAP SE and its affiliated companies ("SAP Group") for informational purposes only, without representation or warranty of any kind, and SAP Group shall not be liable for errors or omissions with respect to the materials. The only warranties for SAP Group products and services are those that are set forth in the express warranty statements accompanying such products and services, if any. Nothing herein should be construed as constituting an additional warranty. Copyright. All rights reserved. iii

iv Copyright. All rights reserved.

Typographic Conventions American English is the standard used in this handbook. The following typographic conventions are also used. This information is displayed in the instructor s presentation Demonstration Procedure Warning or Caution Hint Related or Additional Information Facilitated Discussion User interface control Example text Window title Example text Copyright. All rights reserved. v

vi Copyright. All rights reserved.

Contents ix Course Overview 1 Unit 1: Introduction to Internal Security Auditing 1 Lesson: Describing Security Auditing 3 Unit 2: Audit Information System (AIS) and the Audit Information System Cockpit 3 Lesson: Configuring and Using the AIS 3 Lesson: Performing a System Audit Using the Audit Cockpit 5 Unit 3: User and Authorization Audit 5 Lesson: Customizing the Role Maintenance Tool 5 Lesson: Analyzing and Securing Users 5 Lesson: Describing Segregation of Duties and Critical Authorization 5 Lesson: Securing the System by Login-Related Parameters 5 Lesson: Describing the User Management Engine (UME) in SAP NetWeaverAS for Java 7 Unit 4: Logs in AS ABAP 7 Lesson: Configuring and Using the Security Audit Log 7 Lesson: Monitoring AS ABAP Using Logs 9 Unit 5: Security in System Administration Tasks 9 Lesson: Securing System Administration Services 11 Unit 6: Security in Change Management 11 Lesson: Securing Change Management 13 Unit 7: Security Assessment 13 Lesson: Optimizing Security Using SAP Security Optimizaton Self- Service 13 Lesson: Consulting SAP Security Notes 13 Lesson: Implementing and Checking Technical Security Recommendations Copyright. All rights reserved. vii

viii Copyright. All rights reserved.

Course Overview TARGET AUDIENCE This course is intended for the following audiences: System Administrator Technology Consultant Copyright. All rights reserved. ix

x Copyright. All rights reserved.

UNIT 1 Introduction to Internal Security Auditing Lesson 1: Describing Security Auditing Describe security auditing Describe the basics of SAP Identity Management and SAP Solutions for Governance, Risk, and Compliance (GRC) Copyright. All rights reserved. 1

Unit 1: Introduction to Internal Security Auditing 2 Copyright. All rights reserved.

UNIT 2 Audit Information System (AIS) and the Audit Information System Cockpit Lesson 1: Configuring and Using the AIS Configure the Audit Information System (AIS) Perform a system audit using the AIS Lesson 2: Performing a System Audit Using the Audit Cockpit Describe the audit structure Perform a system audit using the Audit Cockpit Display the audit logs Copyright. All rights reserved. 3

Unit 2: Audit Information System (AIS) and the Audit Information System Cockpit 4 Copyright. All rights reserved.

UNIT 3 User and Authorization Audit Lesson 1: Customizing the Role Maintenance Tool Describe authorizations generated by the role maintenance tool Verify the authorization default values for the role maintenance tool Lesson 2: Analyzing and Securing Users Display users and user groups Analyze user authorizations Secure user SAP* Lesson 3: Describing Segregation of Duties and Critical Authorization Describe segregation of duties and critical authorization Lesson 4: Securing the System by Login-Related Parameters Check login-related parameters Lesson 5: Describing the User Management Engine (UME) in SAP NetWeaverAS for Java Copyright. All rights reserved. 5

Unit 3: User and Authorization Audit Describe the User Management Engine (UME) and UME groups 6 Copyright. All rights reserved.

UNIT 4 Logs in AS ABAP Lesson 1: Configuring and Using the Security Audit Log Describe the Security Audit Log Check the configuration of the Security Audit Log Lesson 2: Monitoring AS ABAP Using Logs Monitor applications in AS ABAP Monitor the WebFlow (or workflow) log Monitor data changes in tables Monitor transports in the change and transport system Monitor changes in user and authorizations Monitor read access Copyright. All rights reserved. 7

Unit 4: Logs in AS ABAP 8 Copyright. All rights reserved.

UNIT 5 Security in System Administration Tasks Lesson 1: Securing System Administration Services Secure background job scheduling Secure spool and other administration services Copyright. All rights reserved. 9

Unit 5: Security in System Administration Tasks 10 Copyright. All rights reserved.

UNIT 6 Security in Change Management Lesson 1: Securing Change Management Describe change management Configure the system and client change settings Verify security settings in transports and change management Copyright. All rights reserved. 11

Unit 6: Security in Change Management 12 Copyright. All rights reserved.

UNIT 7 Security Assessment Lesson 1: Optimizing Security Using SAP Security Optimizaton Self- Service Use the SAP Security Optimization Self-Service Lesson 2: Consulting SAP Security Notes Consult SAP Security Notes Lesson 3: Implementing and Checking Technical Security Recommendations Implement and check technical security recommendations using SAP Solution Manager Copyright. All rights reserved. 13