SAP GRC Access Control uses UME roles to control the user authorization in the system. An administrator can use actions which represent the smallest entity of UME role that a user can use to build access rights.
One UME role can contain actions from one or more applications. You have to assign UME roles to users in User Management Engine (UME).
When a user does not have access to a certain tab, the tab will not display upon user logon when the user tries to access that tab. When a UME action for a tab is assigned to that particular user, only then he will be able to access that function.
All available standard UME actions for CC tabs can be found in the tab “Assigned Actions” of the Admin User.
You should create an administrator role and this role should be assigned to Superuser to perform SAP compliance calibrator related activities. There are various CC roles that can be created under SAP GRC Access control at the time of implementation −
Description − Compliance Calibrator Display and Reporting
Description − Compliance Calibrator Rule Maintenance
Description − Compliance Calibrator Mitigation Maintenance
Description − Compliance Calibrator Administration and Basis Configuration
Using UME, you can perform various key activities under Access Control −
To open UME, you should use the following URL −
http://<hostname>:<port>/useradmin