Skip to Content
Author's profile photo Former Member

Who Has Read Your Sensitive Information?

You are concerned with security? You have done everything to make sure the connections to your system are as secure as possible? Connections will be made and these connections will be used by authorized users. Maybe some users abuse trust and look at data that they should not.

 

How is this relevant to Web services or RFC? The new Read Access Logging (RAL) capability logs access that has occurred through certain so-called channels. Many channels are used to access data but, important to note, the three channels that are currently supported are Web services, various flavors of RFC, and Web Dynpro. So, if it is important for you to know who has read your sensitive information, you need to take RAL into account when planning connections to that data.

I have presented a very narrow view of RAL but, if this blog wakes your interest, check out the documentation on Read Access Logging and then engage with the experts in the Security space.

Assigned Tags

      2 Comments
      You must be Logged on to comment or reply to a post.
      Author's profile photo Tobias Trapp
      Tobias Trapp

      Hi Martin,

      thanks for sharing this! I only knew RAL in the context of web applications: http://help.sap.com/saphelp_nw74/helpdata/en/b4/571c51d4b22614e10000000a44176d/content.htm

      Is it available in NW 7.4 or is a downport to lower releases planned?

      Best Regards,

      Tobias

      Author's profile photo Former Member
      Former Member
      Blog Post Author

      Hi Tobias,

      [apply usual disclamer ...]

      Downports of the RAL NW7.4 SP4 functionality are planned. I would hope to see:

      • NW7.31 in Q4 2013
      • NW7.30, 7.02, & 7.11 in Q1 2014

      Best regards,
      Martin