Data Security in the Help Center

Use

The Help Center for SAP Business Suite applications offers users the following options in the context of the respective application:

  • Create personal notes

  • Call answers to frequently asked questions by using links to the questions provided by process experts

  • Call information by using links to files provided by process experts

The security-relevant aspects of the information provided are explained below.

Help Center Data Area

Comments on Data Security

Notes

Authorizations in the Help Center

Notes are user-specific. Each user can create, change, or delete their own notes for the application. The Help Center only displays the user's own notes in the Help Center, they cannot be accessed by other users.

Repository for Notes

Notes are saved as objects in the database of the SAP system. System administrators can control access to Help Center notes by using access rights.

Frequently asked questions

Authorizations in the Help Center

Only process experts with the necessary authorization can create, change, and delete frequently asked questions in the Help Center. The questions and answers can be accessed by any user who calls the Help Center of an application. Users of the applications do not have authorization to change frequently asked questions.

Repository for Frequently Asked Questions

Frequently asked questions are saved as objects in the database of the SAP system.

Links to files saved on a shared network folder

Authorizations in the Help Center

Only process experts with the necessary authorization can create, change, and delete links to files in the Help Center. Application users call the files using links and are not authorized to make changes.

Security Settings in the File System

The authorizations for links in the Help Center are independent of the authorizations for access to the files. The security settings for the file system must control access to the files as follows:

  • Only authors or process experts responsible for providing Help Center content have write access to the network folder.

  • Application users only have read access to the files, and not to the folders.

    Background: It must not be possible for a user to change the address of a file and open the superordinate folder.

  • Execution rights are assigned for all superordinate folders. These rights release the path to the file for users.

Separate Administration of Files

If you want to manage the files of different organizational units separately in the shared network folder, you can create a separate subfolder for each organizational unit. If you need to manage different language versions of the content, you must have the same subfolder structure for each language.

Virus Protection

A virus scanner must be installed on each local PC.

Links to files saved in the repository of the Solution Manager system

Authorizations in the Help Center

Only process experts with the necessary authorization can create, change, and delete links to these files in the Help Center. Application users call the files using links.

RFC Connections

The repository of the Solution Manager system is accessed using special RFC connections for process experts and users. The RFC connections are defined for communication users, who (unlike dialog users) have no direct access to the Solution Manager system.

Setting Security

Files in the special Help Center repository of the Solution Manager system are only intended for use in the Help Center. You cannot access these files using the search function of the Solution Manager system. Access to the files can be controlled using the security settings of the Knowledge Warehouse application integrated in the Solution Manager system.

Revision Security

In the application for the central administration of Help Center content you can see for each entry (question or link) the user who created or last changed the entry and the respective date.