---
title: Transactions for SAP Roles (and Security Manager)
description: Which are the SAP security transactions that you need to have in your favorites bar? Authorizations management, auditing, configuration, SAP roles and much more!
image: https://www.aglea.com/hubfs/Aglea/Imported_Blog_Media/SAP%20Security%20Favorites-Jun-14-2024-10-11-29-4903-AM.jpg
---

[linkedin](https://www.linkedin.com/company/292350?trk=vsrp_companies_res_name&trkInfo=VSRPsearchId%3A3373431891426179412478%2CVSRPtargetId%3A292350%2CVSRPcmpt%3Aprimary) [YouTube](https://www.youtube.com/c/AgleaSAPSecurity?sub_confirmation=1) [Twitter](https://twitter.com/AgleaItaly?lang=en)

[![Logo-Aglea-horsa-company](https://www.aglea.com/hubfs/Aglea/Aglea_November2018%20Theme/Images/Logo-Aglea-horsa-company.webp) ](https://www.aglea.com/en)

# Transactions for SAP Roles (and Security Manager)

# Transactions for SAP Roles (and Security Manager)

Posted by [Fabio Mambretti](https://www.aglea.com/en/blog/author/fabio-mambretti) on Jan 14, 2022 12:00:00 AM

- [Tweet](https://twitter.com/share)

Which **SAP Security transactions** should you have in your favorites?

 

![SAP Security Favorites](https://www.aglea.com/hs-fs/hubfs/Aglea/Imported_Blog_Media/SAP%20Security%20Favorites-Jun-14-2024-10-11-29-4903-AM.jpg?width=450&name=SAP%20Security%20Favorites-Jun-14-2024-10-11-29-4903-AM.jpg)

 

Transactions for managing SAP Roles, for Profile generator configuration, for SAP auditing. **Some of them are useful in certain moments, some of them daily. **Also keep in mind in some cases is suggested to be used though a firefighter or your emergency users.

## Transaction PFCG

It’s the main transaction used for SAP roles construction. **PFCG means profile generator. **Use it to maintain SAP profiles.

 

Recently SAP introduced two transactions for mass role maintenance: transaction PFCGMASSVAL (maintain values inside the authorizations tab) and transaction PFCGMASSCOLLASSIGN (massive addition and removal of single roles in/from collective roles)

 

![pfcgmasscollassign](https://www.aglea.com/hs-fs/hubfs/Aglea/Imported_Blog_Media/pfcgmasscollassign-Jun-14-2024-10-11-28-9570-AM.png?width=506&name=pfcgmasscollassign-Jun-14-2024-10-11-28-9570-AM.png)

 

There is also a transaction used to distribute roles from a central system to a peripheral one: PFCGROLEDIST

 

![PFCGROLEDIST](https://www.aglea.com/hs-fs/hubfs/Aglea/Imported_Blog_Media/PFCGROLEDIST-Jun-14-2024-10-11-33-8775-AM.png?width=453&name=PFCGROLEDIST-Jun-14-2024-10-11-33-8775-AM.png)

## Transaction SU01 (display) or SU01D

Transaction SU01 allows one to display (if properly segregated) SAP users master data. Transaction SU01D allows one to only display SAP users master data.

 

## Transaction SE93 (authorization start)

**For each SAP transaction it’s possible to define a control by authorization object at the start of the transaction. **If this object is not present in the authorization buffer for the user, the transaction will not be executed. In the image below you can see that transaction MM01 in order to be executed needs the authorization object M_MATE_STA with at least ACTVT (activity) field set to 01 (create)

 

![se93](https://www.aglea.com/hs-fs/hubfs/Aglea/Imported_Blog_Media/se93-Jun-14-2024-10-11-27-7895-AM.jpg?width=369&name=se93-Jun-14-2024-10-11-27-7895-AM.jpg)

 

## Transaction SM01 or SM01_CUS/SM01_DEV

**Transactions SM01* allow one to globally lock an SAP transaction, regardless of the user’s authorizations, **since SAP_BASIS 7.50 release it’s possible to launch the new SM01_* transactions

- SM01 Lock Transactions
- SM01_CUS Local App. Start Lock Maintenance (see image below)
- SM01-DEV Global App. Start Lock Maintenance

![SM01](https://www.aglea.com/hs-fs/hubfs/Aglea/Imported_Blog_Media/SM01-Jun-14-2024-10-11-24-1538-AM.jpg?width=508&name=SM01-Jun-14-2024-10-11-24-1538-AM.jpg)

 

It then becomes possible to specify the motivation for the transaction lock, see image below:

 

![SM01_CUS](https://www.aglea.com/hs-fs/hubfs/Aglea/Imported_Blog_Media/SM01_CUS-Jun-14-2024-10-11-32-8930-AM.jpg?width=485&name=SM01_CUS-Jun-14-2024-10-11-32-8930-AM.jpg)

 

Through transaction RSAUDITC_BCE it’s possible to display if one or more SAP transactions are locked.

 

Do transactions for locking belong to systems or security area? Write a comment down below!

 

## Transaction SE97

This transaction allows one to maintain the behavior of called back transactions through the ABAP Statement CALL_TRANSACTION, see image below. With transaction MM01 it’s possible to display all transactions that can be called back and the relative control on the S_TCODE authorization object during the “Check indicator” call-back

 

![SE97](https://www.aglea.com/hs-fs/hubfs/Aglea/Imported_Blog_Media/SE97-Jun-14-2024-10-11-26-0345-AM.jpg?width=590&name=SE97-Jun-14-2024-10-11-26-0345-AM.jpg)

## Transaction SUIM

Transaction SUIM in reality is a call-back menu to other sub-transactions (see image below). It is the **SAP Security Reporting on roles, users, authorizations, profiles, change documents (Basis Security SAP area)**.

 

However the transaction also offers the possibility to do users/roles comparisons. Last but not least the possibility to add controls on the SAP critical authorizations (a sort of Critical Action or Critical Permission from SAP GRC Access Control)

![SUIM](https://www.aglea.com/hs-fs/hubfs/Aglea/Imported_Blog_Media/SUIM-Jun-14-2024-10-11-33-2141-AM.jpg?width=369&name=SUIM-Jun-14-2024-10-11-33-2141-AM.jpg)

 

Did you know that there is a report for displaying users that haven’t accessed SAP for n days? See SUIM – Users à By Logon Date and Password Change.

 

Another reporting functionality, unfortunately without a specific transaction, is found in the program PRGN_DISPLAY_AUTH which allows one to search for authorization objects in a role, as if it were a query on the AGR_DEFINE, AGR_TEXTS_ AGR_1251 and

AGR_1252 tables.

 

![PRGN_DISPLAY_AUTH](https://www.aglea.com/hs-fs/hubfs/Aglea/Imported_Blog_Media/PRGN_DISPLAY_AUTH-Jun-14-2024-10-11-26-9030-AM.png?width=3257&name=PRGN_DISPLAY_AUTH-Jun-14-2024-10-11-26-9030-AM.png)

## Transaction ST01 or STAUTHTRACE or STUSERTRACE or STRFCTRACE

These are **transactions used to troubleshoot authorizations** in SAP. Many of them exist depending on the trace that needs to be done. See image below for STAUTHTRACE. Transaction STAUTHTRACE.

 

Transaction STAUTHTRACE overcomes the limits of transaction ST01, meaning it is not application server dependent.

 

![STAUTHTRACE](https://www.aglea.com/hs-fs/hubfs/Aglea/Imported_Blog_Media/STAUTHTRACE-Jun-14-2024-10-11-34-8464-AM.jpg?width=569&name=STAUTHTRACE-Jun-14-2024-10-11-34-8464-AM.jpg)

 

Transaction STSIMAUTHCHECK allows one to also check and compare authorizations of a user and an authorization trace.

 

![STSIMAUTHCHECK](https://www.aglea.com/hs-fs/hubfs/Aglea/Imported_Blog_Media/STSIMAUTHCHECK-Jun-14-2024-10-11-35-2062-AM.jpg?width=541&name=STSIMAUTHCHECK-Jun-14-2024-10-11-35-2062-AM.jpg)

## Hey, do you want the full excel list? [Click here](https://www.aglea.com/scarica-le-transazioni-sap-security)!

## Transaction SM20N or RSAU_CONFIG/ RSAU_READ_LOG

With transaction SM20N it’s possible to display the content of a Security Audit Log, see here how to configure and install the SAP Security Audit Log (SAL) LINK

![SM20N](https://www.aglea.com/hs-fs/hubfs/Aglea/Imported_Blog_Media/SM20N-Jun-14-2024-10-11-31-7479-AM.jpg?width=522&name=SM20N-Jun-14-2024-10-11-31-7479-AM.jpg)

 

**New Functionalities are available with transaction RSAU_CONFIG, se image below**

 

![RSAU_CONFIG](https://www.aglea.com/hs-fs/hubfs/Aglea/Imported_Blog_Media/RSAU_CONFIG-Jun-14-2024-10-11-25-7034-AM.jpg?width=497&name=RSAU_CONFIG-Jun-14-2024-10-11-25-7034-AM.jpg)

## Transaction SU24

It’s the transaction used to configure the behavior of the profile generator

## Transaction SUCOMP

This transaction allows one to create a company at the user master data level. You can define a company master data that you may then associate to a SAP user (with transaction SU01)

![SUCOMP](https://www.aglea.com/hs-fs/hubfs/Aglea/Imported_Blog_Media/SUCOMP-Jun-14-2024-10-11-26-3341-AM.jpg?width=475&name=SUCOMP-Jun-14-2024-10-11-26-3341-AM.jpg)

Inside transaction SU01 you can associate or call the transaction for companies definition.

![SU01_COMPANY](https://www.aglea.com/hs-fs/hubfs/Aglea/Imported_Blog_Media/SU01_COMPANY-Jun-14-2024-10-11-30-6485-AM.jpg?width=517&name=SU01_COMPANY-Jun-14-2024-10-11-30-6485-AM.jpg)

## Transaction PFUD

It’s good practice to plan a periodic job for user comparison. The transaction used to do it is PFUD

![PFUD](https://www.aglea.com/hs-fs/hubfs/Aglea/Imported_Blog_Media/PFUD-Jun-14-2024-10-11-26-5918-AM.jpg?width=521&name=PFUD-Jun-14-2024-10-11-26-5918-AM.jpg)

## Transaction SM30_SSM_CUST

There are various parameters that can be given to the session manager, through this transaction it’s possible to manage them.

![SM30_SSM_CUST](https://www.aglea.com/hs-fs/hubfs/Aglea/Imported_Blog_Media/SM30_SSM_CUST-Jun-14-2024-10-11-24-9369-AM.jpg?width=523&name=SM30_SSM_CUST-Jun-14-2024-10-11-24-9369-AM.jpg)

## Transaction SUPC

This one is useful for profiles mass generation. It allows one to make this activity automatic

![SUPC](https://www.aglea.com/hs-fs/hubfs/Aglea/Imported_Blog_Media/SUPC-Jun-14-2024-10-11-31-3280-AM.jpg?width=483&name=SUPC-Jun-14-2024-10-11-31-3280-AM.jpg)

## RSCSAUTH

Every Sap program can have an authorization group used to protect its execution. With this transaction it’s possible to maintain their values.

![RSCSAUTH](https://www.aglea.com/hs-fs/hubfs/Aglea/Imported_Blog_Media/RSCSAUTH-Jun-14-2024-10-11-34-5680-AM.jpg?width=564&name=RSCSAUTH-Jun-14-2024-10-11-34-5680-AM.jpg)

## Transaction SU20

Makes it possible to display or maintain the definition of authorization fields

![SU20](https://www.aglea.com/hs-fs/hubfs/Aglea/Imported_Blog_Media/SU20-Jun-14-2024-10-11-28-1207-AM.jpg?width=522&name=SU20-Jun-14-2024-10-11-28-1207-AM.jpg)

## Transaction SU21

Makes it possible to display or maintain the definition of authorization objects

## Transaction TU02

Makes it possible to display changes made to the SAP instance profiles

![TU02](https://www.aglea.com/hs-fs/hubfs/Aglea/Imported_Blog_Media/TU02-Jun-14-2024-10-11-32-6378-AM.jpg?width=528&name=TU02-Jun-14-2024-10-11-32-6378-AM.jpg)

## Transaction RSPFPAR

Makes it possible to display all SAP instance profiles and their values

![RSPFPAR](https://www.aglea.com/hs-fs/hubfs/Aglea/Imported_Blog_Media/RSPFPAR-Jun-14-2024-10-11-30-9738-AM.jpg?width=600&name=RSPFPAR-Jun-14-2024-10-11-30-9738-AM.jpg)

## Transaction SE16T000

Makes it possible to display the SAP client status

![T000](https://www.aglea.com/hs-fs/hubfs/Aglea/Imported_Blog_Media/T000-Jun-14-2024-10-11-25-2191-AM.jpg?width=389&name=T000-Jun-14-2024-10-11-25-2191-AM.jpg)

## RZ11

As transaction RSPFPAR, but in this case makes it possible to display attached documentation for a single SAP instance profile

![RZ11](https://www.aglea.com/hs-fs/hubfs/Aglea/Imported_Blog_Media/RZ11-Jun-14-2024-10-11-30-2943-AM.jpg?width=502&name=RZ11-Jun-14-2024-10-11-30-2943-AM.jpg)

 

## Transaction ST22

Even if this one is not strictly an SAP Security transaction, in some cases, for example when there is a deficiency of authorizations on writing files in the application server, it can be useful to display the authorization cause of the errors

 

## Transaction AL08/SM04

These transactions allow one to display users that are currently logged into the application server (SM04 can also cancel sessions) or into the system (AL08)

## Transaction SM51

Even if it’s a system transaction, it can prove itself useful, especially in the releases in which transaction STAUTHTRACE does not exist yet, to move from an application server to the other.

## Transaction AUTH_DISPLAY_OBJECTS

This one is useful for verifying the status (active/inactive) of SAP authorization objects

![AUTH_DISPLAY_OBJECTS](https://www.aglea.com/hs-fs/hubfs/Aglea/Imported_Blog_Media/AUTH_DISPLAY_OBJECTS-Jun-14-2024-10-11-23-8462-AM.jpg?width=513&name=AUTH_DISPLAY_OBJECTS-Jun-14-2024-10-11-23-8462-AM.jpg)

## SU25 SACF

Essential during first installation and system upgrades. It contains a series of callbacks to other transactions for the activation of ulterior functions, for example, Switchable Authorization Checks SACF

![SU25](https://www.aglea.com/hs-fs/hubfs/Aglea/Imported_Blog_Media/SU25-Jun-14-2024-10-11-28-5914-AM.jpg?width=454&name=SU25-Jun-14-2024-10-11-28-5914-AM.jpg)

During an SAP upgrade, support package update or migration to S/4HANA, do not forget about SAP authorizations.

 

## Transaction PA20 (Infotype 0105)

When the HR module is used for the Sap users management, the display of infotype 0105 subtype 0001 allows one do see which USERID is associated to a CID

## Transaction PPOMW

When the HR module is used for the attribution of roles to users, transaction PPOMW allows one to manage the attribution of roles and users to organizational positions.

 

## Transaction SE16N (Security)

Useful to explore SAP security tables

## Transactions OOSB, OOSP

In the case of organizational structure HR segregation the use of structural profiles becomes essential.  With these transactions it's possible to define structural profiles (PD profile) and assign them to users 

 

## Transaction SACM Access Control Management (CDS/DDL)

It is used to analyze for the control of authorizations in the CDS Views

![SACM](https://www.aglea.com/hs-fs/hubfs/Aglea/Imported_Blog_Media/SACM-Jun-14-2024-10-11-33-5088-AM.png?width=521&name=SACM-Jun-14-2024-10-11-33-5088-AM.png)

## Transaction SACMSEL (ACM Runtime Simulator)

Used to run simulations on the Access Controls

![SACMSEL](https://www.aglea.com/hs-fs/hubfs/Aglea/Imported_Blog_Media/SACMSEL-Jun-14-2024-10-11-32-1059-AM.png?width=492&name=SACMSEL-Jun-14-2024-10-11-32-1059-AM.png)

## /UI2/FLP SAP Fiori Launchpad

This transaction allows one to execute the Fiori Launchpad while in the ABAP Front End Server part (Read more on SAP FIORI Here) if you don’t know the web link.

Remember that if you execute transaction that start with / inside the SAP GUI, you have to put /N before the transaction name

 

## /UI2/FLPD_CONF and /UI2/FLPD_CUST

These transactions allow one to manage the creation and change of groups and/or catalogues in SAP Fiori, respectively cross client, or client dependent.

 

 

 Topics: [sap cyber security](https://www.aglea.com/en/blog/tag/sap-cyber-security), [SAP Transactions](https://www.aglea.com/en/blog/tag/sap-transactions), [SAP Consulting](https://www.aglea.com/en/blog/tag/sap-consulting)

### Subscribe Here!

### Blog Aglea, cosa puoi trovare?

Ogni mercoledì pubblichiamo articoli, interviste e documenti relativi alla security SAP.

Cosa puoi trovare:

- Suggerimenti su come mettere in sicurezza i sistemi SAP
- Come fare a … (How To)
- Checklist
- Gli errori comuni che spesso vengono fatti in ambito Security SAP
- Interviste con esperti del settore
- Chi è AGLEA quale è la nostra vision security SAP

### Recent Posts

### Post By Topic

- [SAP Security (12)](https://www.aglea.com/en/blog/tag/sap-security)
- [SAP GRC (11)](https://www.aglea.com/en/blog/tag/sap-grc)
- [pfcg (8)](https://www.aglea.com/en/blog/tag/pfcg)
- [gdpr (7)](https://www.aglea.com/en/blog/tag/gdpr)
- [SAP GDPR (5)](https://www.aglea.com/en/blog/tag/sap-gdpr)
- [Segregation of duties (5)](https://www.aglea.com/en/blog/tag/segregation-of-duties)
- [governance (5)](https://www.aglea.com/en/blog/tag/governance)
- [sod (5)](https://www.aglea.com/en/blog/tag/sod)
- [SAP ECC (4)](https://www.aglea.com/en/blog/tag/sap-ecc)
- [audit sap (4)](https://www.aglea.com/en/blog/tag/audit-sap)
- [auditing (4)](https://www.aglea.com/en/blog/tag/auditing)
- [sap consulenza security (4)](https://www.aglea.com/en/blog/tag/sap-consulenza-security)
- [sap password (4)](https://www.aglea.com/en/blog/tag/sap-password)
- [HANA (3)](https://www.aglea.com/en/blog/tag/hana)
- [SAP HR (3)](https://www.aglea.com/en/blog/tag/sap-hr)
- [UI logging (3)](https://www.aglea.com/en/blog/tag/ui-logging)
- [rfc security (3)](https://www.aglea.com/en/blog/tag/rfc-security)
- [sap cyber security (3)](https://www.aglea.com/en/blog/tag/sap-cyber-security)
- [sap hana (3)](https://www.aglea.com/en/blog/tag/sap-hana)
- [sap_all (3)](https://www.aglea.com/en/blog/tag/sap_all)
- [security audit log (3)](https://www.aglea.com/en/blog/tag/security-audit-log)
- [sicurezza sap (3)](https://www.aglea.com/en/blog/tag/sicurezza-sap)
- [su53 (3)](https://www.aglea.com/en/blog/tag/su53)
- [HANA Security (2)](https://www.aglea.com/en/blog/tag/hana-security)
- [ISO (2)](https://www.aglea.com/en/blog/tag/iso)
- [Profiles (2)](https://www.aglea.com/en/blog/tag/profiles)
- [SAP FIORI Security (2)](https://www.aglea.com/en/blog/tag/sap-fiori-security)
- [SAP audit (2)](https://www.aglea.com/en/blog/tag/sap-audit)
- [Secure programming (2)](https://www.aglea.com/en/blog/tag/secure-programming)
- [UCON (2)](https://www.aglea.com/en/blog/tag/ucon)
- [UI Masking (2)](https://www.aglea.com/en/blog/tag/ui-masking)
- [access management (2)](https://www.aglea.com/en/blog/tag/access-management)
- [authorization concept (2)](https://www.aglea.com/en/blog/tag/authorization-concept)
- [autorizzazioni sap (2)](https://www.aglea.com/en/blog/tag/autorizzazioni-sap)
- [consulenti (2)](https://www.aglea.com/en/blog/tag/consulenti)
- [corso (2)](https://www.aglea.com/en/blog/tag/corso)
- [e-learning (2)](https://www.aglea.com/en/blog/tag/e-learning)
- [password policy (2)](https://www.aglea.com/en/blog/tag/password-policy)
- [patch (2)](https://www.aglea.com/en/blog/tag/patch)
- [programmazione sicura (2)](https://www.aglea.com/en/blog/tag/programmazione-sicura)
- [quality (2)](https://www.aglea.com/en/blog/tag/quality)
- [rfc (2)](https://www.aglea.com/en/blog/tag/rfc)
- [ruoli (2)](https://www.aglea.com/en/blog/tag/ruoli)
- [sap access control (2)](https://www.aglea.com/en/blog/tag/sap-access-control)
- [sap custom (2)](https://www.aglea.com/en/blog/tag/sap-custom)
- [sap etd (2)](https://www.aglea.com/en/blog/tag/sap-etd)
- [sap gui (2)](https://www.aglea.com/en/blog/tag/sap-gui)
- [sap query (2)](https://www.aglea.com/en/blog/tag/sap-query)
- [sap security guidelines (2)](https://www.aglea.com/en/blog/tag/sap-security-guidelines)
- [sap siem (2)](https://www.aglea.com/en/blog/tag/sap-siem)
- [sap standard role (2)](https://www.aglea.com/en/blog/tag/sap-standard-role)
- [sap super user (2)](https://www.aglea.com/en/blog/tag/sap-super-user)
- [sap vulnerability (2)](https://www.aglea.com/en/blog/tag/sap-vulnerability)
- [se16 (2)](https://www.aglea.com/en/blog/tag/se16)
- [security ams (2)](https://www.aglea.com/en/blog/tag/security-ams)
- [siem (2)](https://www.aglea.com/en/blog/tag/siem)
- [soar (2)](https://www.aglea.com/en/blog/tag/soar)
- [supporto sap ams (2)](https://www.aglea.com/en/blog/tag/supporto-sap-ams)
- [test system (2)](https://www.aglea.com/en/blog/tag/test-system)
- [threat detection (2)](https://www.aglea.com/en/blog/tag/threat-detection)
- [upgrade (2)](https://www.aglea.com/en/blog/tag/upgrade)
- [312 (1)](https://www.aglea.com/en/blog/tag/312)
- [ABAP (1)](https://www.aglea.com/en/blog/tag/abap)
- [AI (1)](https://www.aglea.com/en/blog/tag/ai)
- [CVA (1)](https://www.aglea.com/en/blog/tag/cva)
- [DPO (1)](https://www.aglea.com/en/blog/tag/dpo)
- [FIORI Security (1)](https://www.aglea.com/en/blog/tag/fiori-security)
- [HANA Roles (1)](https://www.aglea.com/en/blog/tag/hana-roles)
- [PFCG SAP transaction (1)](https://www.aglea.com/en/blog/tag/pfcg-sap-transaction)
- [SAP Cloud Security (1)](https://www.aglea.com/en/blog/tag/sap-cloud-security)
- [SAP Consulting (1)](https://www.aglea.com/en/blog/tag/sap-consulting)
- [SAP DLP (1)](https://www.aglea.com/en/blog/tag/sap-dlp)
- [SAP Fraud Management (1)](https://www.aglea.com/en/blog/tag/sap-fraud-management)
- [SAP IDM (1)](https://www.aglea.com/en/blog/tag/sap-idm)
- [SAP LOG (1)](https://www.aglea.com/en/blog/tag/sap-log)
- [SAP Security Documentation (1)](https://www.aglea.com/en/blog/tag/sap-security-documentation)
- [SAP Table (1)](https://www.aglea.com/en/blog/tag/sap-table)
- [SAP Transactions (1)](https://www.aglea.com/en/blog/tag/sap-transactions)
- [SPOOL (1)](https://www.aglea.com/en/blog/tag/spool)
- [Security Analyzer (1)](https://www.aglea.com/en/blog/tag/security-analyzer)
- [Statistiche security SAP (1)](https://www.aglea.com/en/blog/tag/statistiche-security-sap)
- [Trace autorizzazioni SAP (1)](https://www.aglea.com/en/blog/tag/trace-autorizzazioni-sap)
- [User Access Management (1)](https://www.aglea.com/en/blog/tag/user-access-management)
- [aglea (1)](https://www.aglea.com/en/blog/tag/aglea)
- [audit (1)](https://www.aglea.com/en/blog/tag/audit)
- [authorization model (1)](https://www.aglea.com/en/blog/tag/authorization-model)
- [biometric (1)](https://www.aglea.com/en/blog/tag/biometric)
- [chatGPT (1)](https://www.aglea.com/en/blog/tag/chatgpt)
- [codice sicuro SAP (1)](https://www.aglea.com/en/blog/tag/codice-sicuro-sap)
- [consulenti sap security (1)](https://www.aglea.com/en/blog/tag/consulenti-sap-security)
- [consulenza sap security (1)](https://www.aglea.com/en/blog/tag/consulenza-sap-security)
- [crittografia SAP (1)](https://www.aglea.com/en/blog/tag/crittografia-sap)
- [custom transactions (1)](https://www.aglea.com/en/blog/tag/custom-transactions)
- [cyber security (1)](https://www.aglea.com/en/blog/tag/cyber-security)
- [data loss prevention (1)](https://www.aglea.com/en/blog/tag/data-loss-prevention)
- [data privacy (1)](https://www.aglea.com/en/blog/tag/data-privacy)
- [documentazione sap security (1)](https://www.aglea.com/en/blog/tag/documentazione-sap-security)
- [emergency users (1)](https://www.aglea.com/en/blog/tag/emergency-users)
- [gxp (1)](https://www.aglea.com/en/blog/tag/gxp)
- [identity management system (1)](https://www.aglea.com/en/blog/tag/identity-management-system)
- [idm (1)](https://www.aglea.com/en/blog/tag/idm)
- [log sap (1)](https://www.aglea.com/en/blog/tag/log-sap)
- [mail security sap (1)](https://www.aglea.com/en/blog/tag/mail-security-sap)
- [microsoft (1)](https://www.aglea.com/en/blog/tag/microsoft)
- [parameter sap (1)](https://www.aglea.com/en/blog/tag/parameter-sap)
- [processi security (1)](https://www.aglea.com/en/blog/tag/processi-security)
- [profili (1)](https://www.aglea.com/en/blog/tag/profili)
- [profili sap (1)](https://www.aglea.com/en/blog/tag/profili-sap)
- [progetti security sap (1)](https://www.aglea.com/en/blog/tag/progetti-security-sap)
- [quotazione borsa (1)](https://www.aglea.com/en/blog/tag/quotazione-borsa)
- [rfc destination (1)](https://www.aglea.com/en/blog/tag/rfc-destination)
- [role translation (1)](https://www.aglea.com/en/blog/tag/role-translation)
- [s_tabu_dis (1)](https://www.aglea.com/en/blog/tag/s_tabu_dis)
- [s_tabu_nam (1)](https://www.aglea.com/en/blog/tag/s_tabu_nam)
- [s_tabu_rfc (1)](https://www.aglea.com/en/blog/tag/s_tabu_rfc)
- [sap FIORI (1)](https://www.aglea.com/en/blog/tag/sap-fiori)
- [sap btp (1)](https://www.aglea.com/en/blog/tag/sap-btp)
- [sap data masking (1)](https://www.aglea.com/en/blog/tag/sap-data-masking)
- [sap dati personali (1)](https://www.aglea.com/en/blog/tag/sap-dati-personali)
- [sap developer (1)](https://www.aglea.com/en/blog/tag/sap-developer)
- [sap earlywatch (1)](https://www.aglea.com/en/blog/tag/sap-earlywatch)
- [sap grc 12 (1)](https://www.aglea.com/en/blog/tag/sap-grc-12)
- [sap grc tables (1)](https://www.aglea.com/en/blog/tag/sap-grc-tables)
- [sap gui history (1)](https://www.aglea.com/en/blog/tag/sap-gui-history)
- [sap gui security (1)](https://www.aglea.com/en/blog/tag/sap-gui-security)
- [sap gxp compliance (1)](https://www.aglea.com/en/blog/tag/sap-gxp-compliance)
- [sap ilm gdpr (1)](https://www.aglea.com/en/blog/tag/sap-ilm-gdpr)
- [sap license auditing (1)](https://www.aglea.com/en/blog/tag/sap-license-auditing)
- [sap logon (1)](https://www.aglea.com/en/blog/tag/sap-logon)
- [sap patch (1)](https://www.aglea.com/en/blog/tag/sap-patch)
- [sap security blog (1)](https://www.aglea.com/en/blog/tag/sap-security-blog)
- [sap security teal (1)](https://www.aglea.com/en/blog/tag/sap-security-teal)
- [sap sos (1)](https://www.aglea.com/en/blog/tag/sap-sos)
- [sap splunk (1)](https://www.aglea.com/en/blog/tag/sap-splunk)
- [sap sso (1)](https://www.aglea.com/en/blog/tag/sap-sso)
- [sap tabelle custom (1)](https://www.aglea.com/en/blog/tag/sap-tabelle-custom)
- [sap tdms (1)](https://www.aglea.com/en/blog/tag/sap-tdms)
- [sap_all_only_view (1)](https://www.aglea.com/en/blog/tag/sap_all_only_view)
- [se16n (1)](https://www.aglea.com/en/blog/tag/se16n)
- [secpol (1)](https://www.aglea.com/en/blog/tag/secpol)
- [secure coding sap (1)](https://www.aglea.com/en/blog/tag/secure-coding-sap)
- [secure operation map (1)](https://www.aglea.com/en/blog/tag/secure-operation-map)
- [security awareness (1)](https://www.aglea.com/en/blog/tag/security-awareness)
- [security bridge (1)](https://www.aglea.com/en/blog/tag/security-bridge)
- [sentinel (1)](https://www.aglea.com/en/blog/tag/sentinel)
- [sicurezza codice ABAP (1)](https://www.aglea.com/en/blog/tag/sicurezza-codice-abap)
- [sicurezza dei dati sap (1)](https://www.aglea.com/en/blog/tag/sicurezza-dei-dati-sap)
- [slaw (1)](https://www.aglea.com/en/blog/tag/slaw)
- [social engineering (1)](https://www.aglea.com/en/blog/tag/social-engineering)
- [sost (1)](https://www.aglea.com/en/blog/tag/sost)
- [sql (1)](https://www.aglea.com/en/blog/tag/sql)
- [su25 (1)](https://www.aglea.com/en/blog/tag/su25)
- [super utenti sap (1)](https://www.aglea.com/en/blog/tag/super-utenti-sap)
- [system users (1)](https://www.aglea.com/en/blog/tag/system-users)
- [tabelle (1)](https://www.aglea.com/en/blog/tag/tabelle)
- [tabelle SAP grc access control (1)](https://www.aglea.com/en/blog/tag/tabelle-sap-grc-access-control)
- [ticket management system (1)](https://www.aglea.com/en/blog/tag/ticket-management-system)
- [training (1)](https://www.aglea.com/en/blog/tag/training)
- [transazioni sap (1)](https://www.aglea.com/en/blog/tag/transazioni-sap)
- [userid (1)](https://www.aglea.com/en/blog/tag/userid)
- [usmm (1)](https://www.aglea.com/en/blog/tag/usmm)
- [ust04 (1)](https://www.aglea.com/en/blog/tag/ust04)
- [zero trust security (1)](https://www.aglea.com/en/blog/tag/zero-trust-security)

[See all](https://www.aglea.com/en/blog/transactions-for-sap-roles-and-security-manager#)

## [SAP Security Blog AGLEA RSS Feed](https://www.aglea.com/blog/rss.xml)

Aglea s.r.l. P. IVA: IT 03868780960 - 2026  | Copy | [Note legali](https://cdn2.hubspot.net/hubfs/4422290/Aglea_November2018%20Theme/Pdfs/Privacy-policy-AGLEA.pdf)

```json
{
  "@context" : "https://schema.org",
  "@type" : "BlogPosting",
  "author" : {
    "@type" : "Person",
    "name" : "Fabio Mambretti",
    "url" : "https://www.aglea.com/en/blog/author/fabio-mambretti"
  },
  "dateModified" : "2024-06-14T10:13:26.215Z",
  "datePublished" : "2022-01-13T23:00:00.000Z",
  "headline" : "Transactions for SAP Roles (and Security Manager)",
  "image" : [ "https://www.aglea.com/hubfs/Aglea/Imported_Blog_Media/SAP%20Security%20Favorites-Jun-14-2024-10-11-29-4903-AM.jpg" ],
  "mainEntityOfPage" : {
    "@id" : "https://www.aglea.com/en/blog/transactions-for-sap-roles-and-security-manager",
    "@type" : "WebPage"
  },
  "publisher" : {
    "@type" : "Organization",
    "logo" : {
      "@type" : "ImageObject"
    },
    "name" : "Horsa S.p.A."
  }
}
```