Creating an RFC Connection on SAP GRC System
The following steps are used to create an RFC connection, which can be used as a Request Initiation System to indicate IdentityIQ connection virtually at the SAP GRC server:
-
Execute TCODE SM59 or go to SPRO > SAP Reference IMG > Governance Risk and Compliance > Common Component Settings > Integration Framework > Create Connectors and execute it.
The Configuration of RFC Connections page is displayed.
-
Go to ABAP Connections and select the create icon.
-
Give a name to the RFC Destination in the new screen and provide the connection type as 3 means ABAP connection.
-
Enter the details in Technical Settings, Logon, and Security. Select Test Connection and then save the changes.
-
Go to SPRO > SAP Reference IMG > Governance Risk and Compliance > Common Component Settings > Integration Framework > Maintain Connectors and Connection Types and execute it.
-
In the new screen, select Define Connectors. In the right-hand section with the name Connection type definition, select SAP and double-click on Define Connectors again in the left-hand side section.
-
In the new screen, select New Entries.
-
Select the Target Connector from the dropdown list that was defined in Step 3. The name of the Source Connector and Logical Port must be the same as that of Target Connector. For Connection Type, select SAP.
-
Select the newly created entry and select Define Connector Groups in the left-hand section. Select New Entries.
-
Provide a name for the new connector group in the Conn Group column in the left-side screen.
-
Provide any Connector Group Text and Con. Type as SAP and save it.
-
Select the created Define Connector Group and double-click on Assign Connector Group to Group Types in the left side of the same screen.
-
In the new screen, select New Entries and provide the Connector Group Type as Logical Group on the right side of the screen.
-
Select the created Connector Group Type and double-click on the Assign Connectors to Connector Group section in left side of the screen.
-
In the new screen, select New Entries and provide the same name that was defined in Step 3 under the Target Connector column in right side screen. Provide Connection Type as SAP in the same screen and save it.
-
Go to SPRO > SAP Reference IMG > Governance Risk and Compliance > Common Component Settings > Integration Framework > Maintain Connection Setting and execute it.
-
A new window (Determine Work Area Entry) is displayed. In this window, select the Integration Scenario as Auth and select Continue (Enter).
-
Select Sub-Scenario as AUTH and double-click on Scenario-Connector Link in the left side of the screen.
-
Select New Entries. In the new screen on the right side, select Target Connector name that is same as that mentioned in Step 3.
-
Repeat Step 16 to Step 20 for selecting the different Integration Scenario types as PROV, ROLMG, and SUPMG.
-
Go to SPRO > SAP Reference IMG > Governance Risk and Compliance > Access Control > Maintain Connection Settings and execute it.
-
Select Maintain Connector Settings select New Entries.
-
On the right side of the screen, select Target Connector as the name defined in Step 3 and select App Type as 1. Select the Environment as required and PATH ID as B012.
-
Go to SPRO > SAP Reference IMG > Governance Risk and Compliance > Access Control > Maintain Mapping for Actions and Connector Groups and execute it.
-
Select Maintain Connector Group Status and select New Entries in the left side of the screen.
-
In the new screen on the right side, provide Conn. Group as the same name defined in Step 10. Select Appl Type as 001 and enable the Active checkbox for the respective Conn.Group.
-
In the left side of the screen, double-click Assign Default Connector To Connector Group and select New Entries.
-
Select Conn.Group as defined in Step 10. Select the Target Connector as defined in Step 3. Enable the Default checkbox.
Note
Perform the above step for all the actions and save it. -
To verify whether connector is added successfully or not, go to SPRO > SAP Reference IMG > Governance Risk and Compliance > Access Control > Synchronization Job > Authorization Sync and see whether this new connector is listed in the dropdown of connector or not.