7

SAP GRC Access Control: Rule Set Transport and Generate, and Mitigation Control...

 1 year ago
source link: https://answers.sap.com/questions/13156904/sap-grc-access-control-rule-set-transport-and-gene.html
Go to the source link to view the article. You can view the picture content, updated content and better typesetting reading experience. If the link is broken, please click the button below to view the snapshot at that time.
neoserver,ios ssh client
Oct 07, 2020 at 07:35 AM

SAP GRC Access Control: Rule Set Transport and Generate, and Mitigation Control Assignment

206 Views Last edit Oct 07, 2020 at 07:35 AM 2 rev

We have to update our rule set from time to time for few risk definitions. We would like to have same rule IDs in all the prod and no prod GRC systems. In prod, we also assign a mitigation control to specific rule ID of an access risk (e.g. rule ID 00M1 rather than * during mitigation of a risk). If we update rule set in Dev and regenerate the updated part only, then transport the entire rule set from Dev all the way to Prod, do we have to generate the entire rule set in prod after the transport reaches the Prod?

If so, I am going to get different rule ID in prod than Dev. This means my mitigation controls assigned to risks at the level of rule IDs will be completely messed up s rule IDs will be different this time!

In summary; any advice on the best practice for 1) rule set update and 2) mitigation control assignment would be a great help.

Thanks

Reza Ahoui


About Joyk


Aggregate valuable and interesting links.
Joyk means Joy of geeK