SUIM T-code in SAP GCR Security | Careermod

SUIM T-code in SAP GCR Security | Careermod

 SUIM in SAP – The Most Underrated Power Tool Every Basis & Security Consultant Must Know
SUIM in SAP – The Most Underrated Power Tool Every Basis & Security Consultant Must Know
If you work in SAP Basis / Security, one T-code you’ll use almost every day is SUIM — the User Information System.
But many people still don’t know how powerful it actually is.



🔹 What is SUIM?
A central dashboard to search, analyze, and audit anything related to:
✔ Users
✔ Roles
✔ Profiles
✔ Authorizations
✔ Transactions
Think of it as the Google of SAP Security.

🔹 Why is SUIM Important?
Because it helps you answer questions like:
👤 “Who has access to this T-code?”
🔐 “Which roles contain this authorization?”
📝 “Who changed this user yesterday?”
🧩 “Why is a user getting an authorization error?”

🔹 Top Things You Can Do in SUIM

1️⃣ Find users who have a T-code
Path:
SUIM → Roles → By Transaction Assignment
➡ Enter T-code → Execute → Check Users tab

2️⃣ Find all roles of a use
Path:
SUIM → Users → By Roles
➡ Enter User ID → Execute

3️⃣ Find authorization object values
Path:
SUIM → Authorizations → By Object
➡ Enter object (e.g., M_BEST_BSA) → Execute

4️⃣ See who changed a user/role (Audit log)
Path:
SUIM → Change Documents → For Users / For Roles
➡ Shows all changes with date + admin name

5️⃣ Find which roles contain a T-code
Path:
SUIM → Roles → By Transaction Assignment
➡ Enter T-code → Execute

6️⃣ Find users with a specific profile
Path:
SUIM → Profiles → By User Assignment
➡ Enter profile → Execute

7️⃣ Find roles assigned to no users (Orphan roles)
Path:
SUIM → Roles → Roles by User Assignment
➡ Select: “Without Users” → Execute

8️⃣ Check critical access (like SAP_ALL)
Path:
SUIM → Users → By Profile
➡ Enter SAP_ALL / SAP_NEW → Execute

9️⃣ Compare two users’ access
Path:
SUIM → Users → Comparison
➡ Enter User A + User B → Execute

🔟 Find users by any combination (complex search)
Path:
SUIM → Users → By Complex Selection Criteria
➡ Add fields like role + department + validity → Execute

SUIM = Speed + Control + Visibility
If you master SUIM, solving access issues becomes 10× easier

If you work in SAP Basis / Security, one T-code you’ll use almost every day is SUIM — the User Information System.
But many people still don’t know how powerful it actually is.

🔹 What is SUIM?
A central dashboard to search, analyze, and audit anything related to:
✔ Users
✔ Roles
✔ Profiles
✔ Authorizations
✔ Transactions
Think of it as the Google of SAP Security.

🔹 Why is SUIM Important?
Because it helps you answer questions like:
👤 “Who has access to this T-code?”
🔐 “Which roles contain this authorization?”
📝 “Who changed this user yesterday?”
🧩 “Why is a user getting an authorization error?”

🔹 Top Things You Can Do in SUIM

1️⃣ Find users who have a T-code
Path:
SUIM → Roles → By Transaction Assignment
➡ Enter T-code → Execute → Check Users tab

2️⃣ Find all roles of a use
Path:
SUIM → Users → By Roles
➡ Enter User ID → Execute

3️⃣ Find authorization object values
Path:
SUIM → Authorizations → By Object
➡ Enter object (e.g., M_BEST_BSA) → Execute

4️⃣ See who changed a user/role (Audit log)
Path:
SUIM → Change Documents → For Users / For Roles
➡ Shows all changes with date + admin name

5️⃣ Find which roles contain a T-code
Path:
SUIM → Roles → By Transaction Assignment
➡ Enter T-code → Execute

6️⃣ Find users with a specific profile
Path:
SUIM → Profiles → By User Assignment
➡ Enter profile → Execute

7️⃣ Find roles assigned to no users (Orphan roles)
Path:
SUIM → Roles → Roles by User Assignment
➡ Select: “Without Users” → Execute

8️⃣ Check critical access (like SAP_ALL)
Path:
SUIM → Users → By Profile
➡ Enter SAP_ALL / SAP_NEW → Execute

9️⃣ Compare two users’ access
Path:
SUIM → Users → Comparison
➡ Enter User A + User B → Execute

🔟 Find users by any combination (complex search)
Path:
SUIM → Users → By Complex Selection Criteria
➡ Add fields like role + department + validity → Execute

SUIM = Speed + Control + Visibility
If you master SUIM, solving access issues becomes 10× easier

Previous Post Next Post