SAP Note 927637 - Web service authentication in sapstartsrv as of Release 7.00

Component : Startup Service -

Solution : https://service.sap.com/sap/support/notes/927637 (SAP Service marketplace login required)

Summary :
SAP Note addresses authentication issues with the sapstartsrv Web service interface, crucial for operations such as starting or stopping SAP instances. The server requires OS user verification on the target host. If user credentials are correct, additional checks for execute rights over sapstartsrv-related files are conducted. The note lists specific patches that introduce enhanced capacity to specify admin users and groups, enhancing security by detailing user access rights. Known issues with PAM on UNIX systems are discussed, alongside potential solutions including manual settings changes. Additionally, configurations for protected web methods are elaborated, highlighting the security implications for various settings.

Key words :
customer component bc-cst-sts startup service priority recommendations / additional info category release planning information validity software componentfrom rel, subsequentsap_basis640640 700702 710730 731731 72l804 740740 741741  support packages & patches support package patchessoftware componentsupport packagepatch levelsap kernel 6, grep /dev/mapper/vg_sys_r1-usr_x/dev/mapper/vg_sys_r1-usr_x, /bootstrap/scripts return error 1565645   sap composite note, sap lvm / acc 1630050   sap netweaver landscape virtualization management 1, 1 pi / adaptive computing controller collective note 995116   backward porting, vulndisco vulnerabilities 1527538   sap netweaver landscape virtualization management 1, grey/wrong 1527538   sap netweaver landscape virtualization management 1, sapstartsrv user authentication 1834579   os level login dialog appears, sap management console 958253   suse linux enterprise server 10

Related Notes :

1904523
1857007IBM i: sapstartsrv user authentication
1834579OS level login dialog appears in SAP MC (Developer Studio)
1798556SAP NetWeaver Landscape Virtualization Management 2.0
1783702SAP NetWeaver Landscape Virtualization Management 2.0
1771916Metrics collected via SAPStartSrv are grey/wrong
1709155System Provisioning with SAP Landscape Virtualization Management
1650797Prevent overwriting of sapuxuserchk during update/upgrade
1631616Log Viewer displays message "Log files are not loaded yet"
1630050SAP NetWeaver Landscape Virtualization Management 1.0 - Std
1588682
1565645SAP composite note: sapcontrol
1552929
1527538SAP NetWeaver Landscape Virtualization Management 1.0
1474866Instance Agent Security settings for SAP LVM / ACC
1462332ACC 7.3 - Adaptive Computing Controller Collect. Note
1439348Extended security settings for sapstartsrv
1401712JSPM/SAPJup/SAPehpi/SUM cannot detect all cluster instances
1393207Configuring SAP BusinessObjects Edge 3.1 Monitoring
1375863ACC 7.2 - Adaptive Computing Controller Collect. Note
1330017CE update fails during patch of kernel binaries
1287407Invalid credentials trying to stop the system
1244581Disabling Access of Guest Account to Web Service Interface
1140980sapstartsrv user authentication on AIX
1113545Problems with SAP Host Agent
1063897sapstartsrv user authentication on HP-UX
1008828ACC 7.1 PI / Adaptive Computing Controller Collective Note
995116Backward porting of sapstartsrv for earlier releases
992907sapstartsrv user authentication on Solaris
992016TREX 7.0: Cannot start/stop TREX by SAP Management Console
958253SUSE LINUX Enterprise Server 10: Installation notes
953763Installation of SAP NetWeaver Composition Environment 7.1
877795Problems with sapstartsrv from Release 7.00 and 6.40 patch 169
797084SUSE LINUX Enterprise Server 9: Installation notes
1924710AS Java System overview shows incorrect number of started nodes - 0 of 0
1443834Central SAP Note JSPM 7.2
1600846JSPM/SUM calls sapcontrol without user credentials
1147119Central SAP Note JSPM 7.1
1249503Further Notes about Installation of MDM 7.1