Default
With the default scenario, the user TMSADM is set up as the RFC user to use for those transport administration tasks that are not security-critical. You should only assign this user authorizations for read access and non-critical changes so that it cannot obtain uncontrolled access from one system to another. Thereby, you can manage systems with differing security requirements in a transport domain without the "non-secure" systems endangering the "secure'" systems.
Because the user TMSADM has only limited authorizations, the administrator needs to use his or her own user account when performing more critical operations that TMSADM is not allowed to do. In this case, he or she must log on with user ID and password each time he or she uses TMS to perform these operations.