Security & GRC
What is SAP_ALL?
An SAP profile granting all authorizations in the system, intended only for emergencies.
Granting SAP_ALL in production is a major audit finding. Testing only with SAP_ALL hides authorization defects until go-live. Emergency access tools should replace its use.
Related terms
Firefighter (Emergency Access)
A temporary, logged elevated-access ID used for emergency fixes, managed by GRC Emergency Access Management.
Role Testing
Testing that users with production-equivalent roles can perform their tasks and are blocked from unauthorized actions.
Authorization Concept
The design of roles, authorization objects, and user assignment that controls what each user can do in SAP.
More in Security & GRC
Planning an S/4HANA move?
Read the field guides on testing an ECC to S/4HANA migration and grab the free template library.