Attribute Based Access Control (ABAC) – Field Masking Scenario in Change Log (CDPOS table) in SE16 transaction

S/4HANA, SAP GRC

Introduction In this blog post, we will learn how to mask “New Value” and “Old Value” fields based on “Object Class” and “Field Name” field information of table CDPOS in SE16. “New Value” and “Old Value” fields of table CDPOS in SE16 transaction need to be masked where “Object Class” is “MATERIAL” and “Field Name” […]

Continue reading


SAP ECC Material Master data copy by SAP TDMS 4.0

SAP Test Data Migration Server

Introduction: We can use TDMS Business process Library to copy Material master data from production to non-production systems based on business requirements, Business Process Library in SAP TDMS is a collection of specific SAP business processes. That we can use the BPL-Based Transfer migration solution to transfer data relevant to the business processes from the […]

Continue reading


SAP IDM Integration with SAP Access Control

SAP Access Control, SAP Identity Management

SAP Identity Management (IDM) is a key component of the security portfolio of SAP, which is responsible for managing the identity master data of employees, externals, administrator, and other entities. SAP IDM is one central location for managing the user Identities and permission (privileges and Business role), synchronizing data between system and application and maintaining […]

Continue reading


Attribute Based Access Control (ABAC) – Mask Identification Number of Sensitive Business Partners based on Users IP Address

Governance, Risk, Compliance (GRC), and Cybersecurity

Introduction As part of this blog, we will compare logged-in user’s IP Address attribute with attributes of data that logged-in user is trying to access. As example, we have considered a scenario where sensitive Business Partners Identification Number data will be masked for logged-in user if logged-in user’s IP Address is in the blacklist. These […]

Continue reading