An unauthorized user, who manages to access a system under a known user in the system, can proceed to do whatever is possible under this known user. If the known user happens to have access to critical information, then the impersonator also has access to the same information. Therefore, providing secure authentication protects the availability, integrity, and privacy of your system at every level.
We describe how the SAP Web AS ABAP systems facilitate secure authentication in the following topics.
● Authentication Mechanisms Available in SAP Systems
○ Logon and Password Security in the SAP System
■ Security Measures Related to Password Rules
■ Password Storage and Transport
■ Profile Parameters for Logon and Password (Login Parameters)
○ Secure Network Communications (SNC)
○ Defining a New Superuser and Deactivating SAP*
● Preventing Unauthorized Logons
● Recognizing and Preventing Multiple Dialog User Logons
● Security Measures When Using SAP Shortcuts
● Additional Information on User Authentication