Start of Navigation Tree
Start Level 1 Node SAP Web Application Server Security GuideSAP Web Application Server Security GuideEnd Level 1 Node SAP Web Application Server Security Guide
   Start Level 2 Node SAP Web AS Network and Communication SecuritySAP Web AS Network and Communication SecurityEnd Level 2 Node SAP Web AS Network and Communication Security
   Start Level 2 Node SAP Web AS Security Guide for ABAP TechnologySAP Web AS Security Guide for ABAP TechnologyEnd Level 2 Node SAP Web AS Security Guide for ABAP Technology
      Start Level 3 Node User AuthenticationUser AuthenticationEnd Level 3 Node User Authentication
         Start Level 4 Node Authentication and Single Sign-OnAuthentication and Single Sign-OnEnd Level 4 Node Authentication and Single Sign-On
            Start Level 5 Node Logon and Password Security in the SAP SystemLogon and Password Security in the SAP SystemEnd Level 5 Node Logon and Password Security in the SAP System
               Start Level 6 Node Password RulesPassword RulesEnd Level 6 Node Password Rules
               Start Level 6 Node Security Measures Related to Password RulesSecurity Measures Related to Password RulesEnd Level 6 Node Security Measures Related to Password Rules
               Start Level 6 Node Password Storage and TransportPassword Storage and TransportEnd Level 6 Node Password Storage and Transport
               Start Level 6 Node Profile Parameters for Logon and Password (Login Parameters)Profile Parameters for Logon and Password (Login Parameters)End Level 6 Node Profile Parameters for Logon and Password (Login Parameters)
            Start Level 5 Node Secure Network Communications (SNC)Secure Network Communications (SNC)End Level 5 Node Secure Network Communications (SNC)
            Start Level 5 Node Client CertificatesClient CertificatesEnd Level 5 Node Client Certificates
            Start Level 5 Node SAP Logon TicketsSAP Logon TicketsEnd Level 5 Node SAP Logon Tickets
            Start Level 5 Node Pluggable Authentication ServicesPluggable Authentication ServicesEnd Level 5 Node Pluggable Authentication Services
         Start Level 4 Node User TypesUser TypesEnd Level 4 Node User Types
         Start Level 4 Node Protecting Standard UsersProtecting Standard UsersEnd Level 4 Node Protecting Standard Users
            Start Level 5 Node Defining a New Superuser and Deactivating SAP*Defining a New Superuser and Deactivating SAP*End Level 5 Node Defining a New Superuser and Deactivating SAP*
         Start Level 4 Node Preventing Unauthorized LogonsPreventing Unauthorized LogonsEnd Level 4 Node Preventing Unauthorized Logons
         Start Level 4 Node Recognizing and Preventing Multiple Dialog User LogonsRecognizing and Preventing Multiple Dialog User LogonsEnd Level 4 Node Recognizing and Preventing Multiple Dialog User Logons
         Start Level 4 Node Security Measures When Using SAP ShortcutsSecurity Measures When Using SAP ShortcutsEnd Level 4 Node Security Measures When Using SAP Shortcuts
         Start Level 4 Node Additional Information on User AuthenticationAdditional Information on User AuthenticationEnd Level 4 Node Additional Information on User Authentication
      Start Level 3 Node SAP Authorization ConceptSAP Authorization ConceptEnd Level 3 Node SAP Authorization Concept
         Start Level 4 Node OverviewOverviewEnd Level 4 Node Overview
         Start Level 4 Node Organizing Authorization AdministrationOrganizing Authorization AdministrationEnd Level 4 Node Organizing Authorization Administration
            Start Level 5 Node Organization if You Are Using the Profile GeneratorOrganization if You Are Using the Profile GeneratorEnd Level 5 Node Organization if You Are Using the Profile Generator
               Start Level 6 Node Setting Up AdministratorsSetting Up AdministratorsEnd Level 6 Node Setting Up Administrators
               Start Level 6 Node Setting Up Role MaintenanceSetting Up Role MaintenanceEnd Level 6 Node Setting Up Role Maintenance
               Start Level 6 Node Authorization Objects Checked in Role MaintenanceAuthorization Objects Checked in Role MaintenanceEnd Level 6 Node Authorization Objects Checked in Role Maintenance
            Start Level 5 Node Organization without the Profile GeneratorOrganization without the Profile GeneratorEnd Level 5 Node Organization without the Profile Generator
               Start Level 6 Node Creating and Maintaining Authorizations/Profiles ManuallyCreating and Maintaining Authorizations/Profiles ManuallyEnd Level 6 Node Creating and Maintaining Authorizations/Profiles Manually
         Start Level 4 Node Authorization ChecksAuthorization ChecksEnd Level 4 Node Authorization Checks
            Start Level 5 Node Reducing the Scope of Authorization ChecksReducing the Scope of Authorization ChecksEnd Level 5 Node Reducing the Scope of Authorization Checks
               Start Level 6 Node Searching for Deactivated Authority ChecksSearching for Deactivated Authority ChecksEnd Level 6 Node Searching for Deactivated Authority Checks
            Start Level 5 Node Globally Deactivating Authorization ChecksGlobally Deactivating Authorization ChecksEnd Level 5 Node Globally Deactivating Authorization Checks
         Start Level 4 Node Protective Measures for Special ProfilesProtective Measures for Special ProfilesEnd Level 4 Node Protective Measures for Special Profiles
            Start Level 5 Node Authorization Profile SAP_ALLAuthorization Profile SAP_ALLEnd Level 5 Node Authorization Profile SAP_ALL
            Start Level 5 Node Authorization Profile SAP_NEWAuthorization Profile SAP_NEWEnd Level 5 Node Authorization Profile SAP_NEW
         Start Level 4 Node User Information SystemUser Information SystemEnd Level 4 Node User Information System
         Start Level 4 Node Central User AdministrationCentral User AdministrationEnd Level 4 Node Central User Administration
            Start Level 5 Node Security Aspects of the CUASecurity Aspects of the CUAEnd Level 5 Node Security Aspects of the CUA
         Start Level 4 Node Additional Information About the SAP Authorization ConceptAdditional Information About the SAP Authorization ConceptEnd Level 4 Node Additional Information About the SAP Authorization Concept
      Start Level 3 Node Network Security for SAP Web AS ABAPNetwork Security for SAP Web AS ABAPEnd Level 3 Node Network Security for SAP Web AS ABAP
      Start Level 3 Node Protecting Your Productive System (Change & Transport System)Protecting Your Productive System (Change & Transport System)End Level 3 Node Protecting Your Productive System (Change & Transport System)
         Start Level 4 Node The SAP System LandscapeThe SAP System LandscapeEnd Level 4 Node The SAP System Landscape
            Start Level 5 Node The Three-Tier System LandscapeThe Three-Tier System LandscapeEnd Level 5 Node The Three-Tier System Landscape
            Start Level 5 Node The Common Transport DirectoryThe Common Transport DirectoryEnd Level 5 Node The Common Transport Directory
            Start Level 5 Node Using the TMS Quality Assurance Approval ProcedureUsing the TMS Quality Assurance Approval ProcedureEnd Level 5 Node Using the TMS Quality Assurance Approval Procedure
         Start Level 4 Node Configuring the System Landscape for ChangesConfiguring the System Landscape for ChangesEnd Level 4 Node Configuring the System Landscape for Changes
            Start Level 5 Node Release 3.1Release 3.1End Level 5 Node Release 3.1
            Start Level 5 Node As of Release 4.0As of Release 4.0End Level 5 Node As of Release 4.0
         Start Level 4 Node Defining the Transport ProcessDefining the Transport ProcessEnd Level 4 Node Defining the Transport Process
            Start Level 5 Node Transport RoutesTransport RoutesEnd Level 5 Node Transport Routes
            Start Level 5 Node The Transport ProcessThe Transport ProcessEnd Level 5 Node The Transport Process
         Start Level 4 Node Responsibilities and Their Corresponding AuthorizationsResponsibilities and Their Corresponding AuthorizationsEnd Level 4 Node Responsibilities and Their Corresponding Authorizations
            Start Level 5 Node Roles and ResponsibilitiesRoles and ResponsibilitiesEnd Level 5 Node Roles and Responsibilities
            Start Level 5 Node AuthorizationsAuthorizationsEnd Level 5 Node Authorizations
         Start Level 4 Node Security for the RFC ConnectionsSecurity for the RFC ConnectionsEnd Level 4 Node Security for the RFC Connections
            Start Level 5 Node DefaultDefaultEnd Level 5 Node Default
            Start Level 5 Node TMS Trusted ServicesTMS Trusted ServicesEnd Level 5 Node TMS Trusted Services
            Start Level 5 Node Secure Network CommunicationsSecure Network CommunicationsEnd Level 5 Node Secure Network Communications
         Start Level 4 Node Protecting Security-Critical ObjectsProtecting Security-Critical ObjectsEnd Level 4 Node Protecting Security-Critical Objects
            Start Level 5 Node Protecting the System Profile Parameter FilesProtecting the System Profile Parameter FilesEnd Level 5 Node Protecting the System Profile Parameter Files
            Start Level 5 Node Protecting the Table for Maintaining System Clients (Table T000)Protecting the Table for Maintaining System Clients (Table T000)End Level 5 Node Protecting the Table for Maintaining System Clients (Table T000)
            Start Level 5 Node Protecting Other Security-Critical ObjectsProtecting Other Security-Critical ObjectsEnd Level 5 Node Protecting Other Security-Critical Objects
         Start Level 4 Node Emergency Changes in the Productive SystemEmergency Changes in the Productive SystemEnd Level 4 Node Emergency Changes in the Productive System
         Start Level 4 Node Additional Information on the Change and Transport SystemAdditional Information on the Change and Transport SystemEnd Level 4 Node Additional Information on the Change and Transport System
      Start Level 3 Node Secure Store & Forward Mechanisms (SSF) and Digital SignaturesSecure Store & Forward Mechanisms (SSF) and Digital SignaturesEnd Level 3 Node Secure Store & Forward Mechanisms (SSF) and Digital Signatures
         Start Level 4 Node General InformationGeneral InformationEnd Level 4 Node General Information
         Start Level 4 Node Protecting KeysProtecting KeysEnd Level 4 Node Protecting Keys
         Start Level 4 Node Protecting the Application Server’s KeysProtecting the Application Server’s KeysEnd Level 4 Node Protecting the Application Server’s Keys
         Start Level 4 Node Additional Information on SSF and Digital SignaturesAdditional Information on SSF and Digital SignaturesEnd Level 4 Node Additional Information on SSF and Digital Signatures
      Start Level 3 Node Special TopicsSpecial TopicsEnd Level 3 Node Special Topics
         Start Level 4 Node Logical Operating System CommandsLogical Operating System CommandsEnd Level 4 Node Logical Operating System Commands
            Start Level 5 Node Restrict Authorizations for Maintaining External CommandsRestrict Authorizations for Maintaining External CommandsEnd Level 5 Node Restrict Authorizations for Maintaining External Commands
            Start Level 5 Node Restrict Authorizations for Executing External CommandsRestrict Authorizations for Executing External CommandsEnd Level 5 Node Restrict Authorizations for Executing External Commands
            Start Level 5 Node Additional Information on Logical Operating System CommandsAdditional Information on Logical Operating System CommandsEnd Level 5 Node Additional Information on Logical Operating System Commands
         Start Level 4 Node Batch InputBatch InputEnd Level 4 Node Batch Input
            Start Level 5 Node An Overview of the Batch Input ProcessAn Overview of the Batch Input ProcessEnd Level 5 Node An Overview of the Batch Input Process
            Start Level 5 Node Protecting the Batch Input SessionsProtecting the Batch Input SessionsEnd Level 5 Node Protecting the Batch Input Sessions
         Start Level 4 Node Protecting Disclosure of the SAPconnect RFC UserProtecting Disclosure of the SAPconnect RFC UserEnd Level 4 Node Protecting Disclosure of the SAPconnect RFC User
         Start Level 4 Node Preventing or Logging List DownloadsPreventing or Logging List DownloadsEnd Level 4 Node Preventing or Logging List Downloads
         Start Level 4 Node Internet Graphics Service SecurityInternet Graphics Service SecurityEnd Level 4 Node Internet Graphics Service Security
   Start Level 2 Node SAP Web AS Security Guide for Java TechnologySAP Web AS Security Guide for Java TechnologyEnd Level 2 Node SAP Web AS Security Guide for Java Technology
      Start Level 3 Node Overview of Security for J2EE Application TypesOverview of Security for J2EE Application TypesEnd Level 3 Node Overview of Security for J2EE Application Types
      Start Level 3 Node Users and User ManagementUsers and User ManagementEnd Level 3 Node Users and User Management
         Start Level 4 Node Users and PasswordsUsers and PasswordsEnd Level 4 Node Users and Passwords
         Start Level 4 Node Standard Users and GroupsStandard Users and GroupsEnd Level 4 Node Standard Users and Groups
         Start Level 4 Node Storing the Password for the AdministratorStoring the Password for the AdministratorEnd Level 4 Node Storing the Password for the Administrator
         Start Level 4 Node Users Changing Their Own DataUsers Changing Their Own DataEnd Level 4 Node Users Changing Their Own Data
         Start Level 4 Node User AuthenticationUser AuthenticationEnd Level 4 Node User Authentication
         Start Level 4 Node Protecting Sessions SecurityProtecting Sessions SecurityEnd Level 4 Node Protecting Sessions Security
         Start Level 4 Node Monitoring and Logging of User InformationMonitoring and Logging of User InformationEnd Level 4 Node Monitoring and Logging of User Information
      Start Level 3 Node AuthorizationsAuthorizationsEnd Level 3 Node Authorizations
      Start Level 3 Node Network Security for the J2EE EngineNetwork Security for the J2EE EngineEnd Level 3 Node Network Security for the J2EE Engine
      Start Level 3 Node Java Virtual Machine SecurityJava Virtual Machine SecurityEnd Level 3 Node Java Virtual Machine Security
      Start Level 3 Node Disabling Optional Services on the J2EE EngineDisabling Optional Services on the J2EE EngineEnd Level 3 Node Disabling Optional Services on the J2EE Engine
      Start Level 3 Node Security Aspects for the Database ConnectionSecurity Aspects for the Database ConnectionEnd Level 3 Node Security Aspects for the Database Connection
      Start Level 3 Node Security on the JMS ServiceSecurity on the JMS ServiceEnd Level 3 Node Security on the JMS Service
      Start Level 3 Node Security Guide for the SAP System Landscape DirectorySecurity Guide for the SAP System Landscape DirectoryEnd Level 3 Node Security Guide for the SAP System Landscape Directory
         Start Level 4 Node Securing HTTP(S) Connections to the SLDSecuring HTTP(S) Connections to the SLDEnd Level 4 Node Securing HTTP(S) Connections to the SLD
         Start Level 4 Node Securing RFC/JCo Connections to the SLDSecuring RFC/JCo Connections to the SLDEnd Level 4 Node Securing RFC/JCo Connections to the SLD
         Start Level 4 Node Network Topology for the SLD ServerNetwork Topology for the SLD ServerEnd Level 4 Node Network Topology for the SLD Server
         Start Level 4 Node Using Logon Tickets for Single Sign-OnUsing Logon Tickets for Single Sign-OnEnd Level 4 Node Using Logon Tickets for Single Sign-On
      Start Level 3 Node Security Aspects When Using Remote AdministrationSecurity Aspects When Using Remote AdministrationEnd Level 3 Node Security Aspects When Using Remote Administration
      Start Level 3 Node Security Aspects When Using HTTP and Web Container TracingSecurity Aspects When Using HTTP and Web Container TracingEnd Level 3 Node Security Aspects When Using HTTP and Web Container Tracing
   Start Level 2 Node Internet Transaction Server SecurityInternet Transaction Server SecurityEnd Level 2 Node Internet Transaction Server Security
      Start Level 3 Node Defining SAP Transactions as Internet ApplicationsDefining SAP Transactions as Internet ApplicationsEnd Level 3 Node Defining SAP Transactions as Internet Applications
      Start Level 3 Node The Architecture of the Internet Transaction Server (ITS)The Architecture of the Internet Transaction Server (ITS)End Level 3 Node The Architecture of the Internet Transaction Server (ITS)
      Start Level 3 Node A Secure Network Infrastructure for the ITSA Secure Network Infrastructure for the ITSEnd Level 3 Node A Secure Network Infrastructure for the ITS
      Start Level 3 Node Protecting the Server and Network ComponentsProtecting the Server and Network ComponentsEnd Level 3 Node Protecting the Server and Network Components
         Start Level 4 Node Protecting the Web ServerProtecting the Web ServerEnd Level 4 Node Protecting the Web Server
         Start Level 4 Node Protecting the AGate ServerProtecting the AGate ServerEnd Level 4 Node Protecting the AGate Server
         Start Level 4 Node Protecting the SAP system Application ServersProtecting the SAP system Application ServersEnd Level 4 Node Protecting the SAP system Application Servers
         Start Level 4 Node TCP Ports Used by the ITSTCP Ports Used by the ITSEnd Level 4 Node TCP Ports Used by the ITS
         Start Level 4 Node Using the SAProuterUsing the SAProuterEnd Level 4 Node Using the SAProuter
         Start Level 4 Node Using Other Firewall ComponentsUsing Other Firewall ComponentsEnd Level 4 Node Using Other Firewall Components
      Start Level 3 Node Example Network SetupExample Network SetupEnd Level 3 Node Example Network Setup
         Start Level 4 Node An Example Network Setup (with Client LAN)An Example Network Setup (with Client LAN)End Level 4 Node An Example Network Setup (with Client LAN)
      Start Level 3 Node Using Additional Security Mechanisms / Providing PrivacyUsing Additional Security Mechanisms / Providing PrivacyEnd Level 3 Node Using Additional Security Mechanisms / Providing Privacy
      Start Level 3 Node Authenticating UsersAuthenticating UsersEnd Level 3 Node Authenticating Users
         Start Level 4 Node Authenticating Internet Users (Service Users)Authenticating Internet Users (Service Users)End Level 4 Node Authenticating Internet Users (Service Users)
         Start Level 4 Node Authenticating Named Users With User ID and PasswordAuthenticating Named Users With User ID and PasswordEnd Level 4 Node Authenticating Named Users With User ID and Password
         Start Level 4 Node Authenticating Named Users Using X.509 Client CertificatesAuthenticating Named Users Using X.509 Client CertificatesEnd Level 4 Node Authenticating Named Users Using X.509 Client Certificates
            Start Level 5 Node Security Measures When Using Client CertificatesSecurity Measures When Using Client CertificatesEnd Level 5 Node Security Measures When Using Client Certificates
         Start Level 4 Node Authenticating Named Users with Single Sign-OnAuthenticating Named Users with Single Sign-OnEnd Level 4 Node Authenticating Named Users with Single Sign-On
      Start Level 3 Node Protecting Session IntegrityProtecting Session IntegrityEnd Level 3 Node Protecting Session Integrity
      Start Level 3 Node Security-Relevant Settings for IACsSecurity-Relevant Settings for IACsEnd Level 3 Node Security-Relevant Settings for IACs
      Start Level 3 Node SAP Web AS with Integrated ITSSAP Web AS with Integrated ITSEnd Level 3 Node SAP Web AS with Integrated ITS
      Start Level 3 Node Additional Information on SAP Internet Applications and the ITSAdditional Information on SAP Internet Applications and the ITSEnd Level 3 Node Additional Information on SAP Internet Applications and the ITS
   Start Level 2 Node SAP Interactive Forms by Adobe Security GuideSAP Interactive Forms by Adobe Security GuideEnd Level 2 Node SAP Interactive Forms by Adobe Security Guide
      Start Level 3 Node Technical System LandscapeTechnical System LandscapeEnd Level 3 Node Technical System Landscape
      Start Level 3 Node User Administration and AuthenticationUser Administration and AuthenticationEnd Level 3 Node User Administration and Authentication
         Start Level 4 Node User ManagementUser ManagementEnd Level 4 Node User Management
      Start Level 3 Node AuthorizationsAuthorizationsEnd Level 3 Node Authorizations
      Start Level 3 Node Network and Communication SecurityNetwork and Communication SecurityEnd Level 3 Node Network and Communication Security
         Start Level 4 Node Communication Channel SecurityCommunication Channel SecurityEnd Level 4 Node Communication Channel Security
         Start Level 4 Node Communication DestinationsCommunication DestinationsEnd Level 4 Node Communication Destinations
      Start Level 3 Node Data Storage SecurityData Storage SecurityEnd Level 3 Node Data Storage Security
      Start Level 3 Node Other Security-Relevant InformationOther Security-Relevant InformationEnd Level 3 Node Other Security-Relevant Information
      Start Level 3 Node Trace and Log FilesTrace and Log FilesEnd Level 3 Node Trace and Log Files
   Start Level 2 Node Security Aspects with SAP Web AS System ManagementSecurity Aspects with SAP Web AS System ManagementEnd Level 2 Node Security Aspects with SAP Web AS System Management
      Start Level 3 Node Security Guide for the Solution Manager DiagnosticsSecurity Guide for the Solution Manager DiagnosticsEnd Level 3 Node Security Guide for the Solution Manager Diagnostics
         Start Level 4 Node Technical System Landscape: Security-Relevant InterfacesTechnical System Landscape: Security-Relevant InterfacesEnd Level 4 Node Technical System Landscape: Security-Relevant Interfaces
         Start Level 4 Node User Authorization and Client AuthenticationUser Authorization and Client AuthenticationEnd Level 4 Node User Authorization and Client Authentication
         Start Level 4 Node Users and RolesUsers and RolesEnd Level 4 Node Users and Roles
         Start Level 4 Node Trace and Log FilesTrace and Log FilesEnd Level 4 Node Trace and Log Files
      Start Level 3 Node Background ProcessingBackground ProcessingEnd Level 3 Node Background Processing
         Start Level 4 Node Defining Users for Background ProcessingDefining Users for Background ProcessingEnd Level 4 Node Defining Users for Background Processing
         Start Level 4 Node Specifying the Execution of External Programs from Job StepsSpecifying the Execution of External Programs from Job StepsEnd Level 4 Node Specifying the Execution of External Programs from Job Steps
         Start Level 4 Node Authorizations Used in Background ProcessingAuthorizations Used in Background ProcessingEnd Level 4 Node Authorizations Used in Background Processing
      Start Level 3 Node Security Guide for ADK-Based Data ArchivingSecurity Guide for ADK-Based Data ArchivingEnd Level 3 Node Security Guide for ADK-Based Data Archiving
      Start Level 3 Node Security Guide for XML-Based Data ArchivingSecurity Guide for XML-Based Data ArchivingEnd Level 3 Node Security Guide for XML-Based Data Archiving
      Start Level 3 Node Auditing and LoggingAuditing and LoggingEnd Level 3 Node Auditing and Logging
         Start Level 4 Node The Audit Info System (AIS)The Audit Info System (AIS)End Level 4 Node The Audit Info System (AIS)
         Start Level 4 Node The Security Audit LogThe Security Audit LogEnd Level 4 Node The Security Audit Log
            Start Level 5 Node Example FiltersExample FiltersEnd Level 5 Node Example Filters
         Start Level 4 Node The System LogThe System LogEnd Level 4 Node The System Log
         Start Level 4 Node Statistic Records in CCMSStatistic Records in CCMSEnd Level 4 Node Statistic Records in CCMS
         Start Level 4 Node Logging of Specific ActivitiesLogging of Specific ActivitiesEnd Level 4 Node Logging of Specific Activities
            Start Level 5 Node Application LoggingApplication LoggingEnd Level 5 Node Application Logging
            Start Level 5 Node Logging Workflow ExecutionLogging Workflow ExecutionEnd Level 5 Node Logging Workflow Execution
            Start Level 5 Node Logging Using Change DocumentsLogging Using Change DocumentsEnd Level 5 Node Logging Using Change Documents
            Start Level 5 Node Logging Changes to Table DataLogging Changes to Table DataEnd Level 5 Node Logging Changes to Table Data
            Start Level 5 Node Logging Changes Made Using the Change & Transport SystemLogging Changes Made Using the Change & Transport SystemEnd Level 5 Node Logging Changes Made Using the Change & Transport System
            Start Level 5 Node Logging Changes Made to User and Authorization InformationLogging Changes Made to User and Authorization InformationEnd Level 5 Node Logging Changes Made to User and Authorization Information
         Start Level 4 Node Additional Information on Auditing and LoggingAdditional Information on Auditing and LoggingEnd Level 4 Node Additional Information on Auditing and Logging
   Start Level 2 Node Virus Protection and SAP GUI Integrity ChecksVirus Protection and SAP GUI Integrity ChecksEnd Level 2 Node Virus Protection and SAP GUI Integrity Checks