SAP_ECC6_EHP7_IDES安装文档ORACLE11G+WINDOWS2012 R2 题目总结
副问题[/!--empirenews.page--]
SAP_ECC6_EHP7_IDES安装文档ORACLE11G+WINDOWS2012 R2 题目总结1、留意暗码不能带@等非凡标记,不然会报如下错误,由于ORACLE数据是不允许暗码带@的。@是一个要害字 2、安装措施权限不敷,必要手工建设SAP必要的用户并赋予响应的权限。 不然会报如下错误 办理方案: ①通过呼吁行方法运行安装措施 C:softEHP7_IDES_SETUPMASTERSWPM10SP06_3-20009707>sapinst.exe IS_HOST_LOCAL_U SING_STRING_COMPARE=true 配置,IS_HOST_LOCAL_USING_STRING_COMPARE=true 假如以上不乐成。参考下面配置用户权限在试。 留意从头启动安装的时辰必然要选择配置new option ②在当地安详计策中按如下声名配置权限 https://blogs.technet.microsoft.com/lobapps/2010/11/22/sap-user-and-groups-requirements-in-the-active-directory/ 以下内容摘自上面链接 Today for an SAP installation on Windows in an existing AD domain,some user and groups requirements are mandatory from SAP. This article gives an overview of the necessary user and groups including the rights and permission. Domain or local installation: Before you install the SAP system,you have to decide whether you want to perform a domain or local installation,since this affects how the user account information is stored and accessed. Domain Installation In a domain installation,the user account information is stored centrally in one database on the domain controller and is accessible to all hosts in the system. You have to perform a domain installation if one of the following applies: - You install a distributed system (strongly recommended to avoid authorization problems). - You install a high-availability system with WSFC - You want to use Single Sign-On. - You use a common transport host for several SAP systems running on different computers. Local Installation In a local installation,all Windows account information is stored locally on one host and is not visible to any other hosts in the system. - If the SAP system is to run on a single machine (central system),you can perform a local installation. - If your SAP system was installed as a local installation and you want to later change to a domain installation,you must perform a homogeneous system copy. Normally in a domain installation,the SAPINST tries to create all the necessary users and groups in the AD,but therefore the user which runs the installations needs to be a domain admin user. If this is not possible you have to go for the following steps: Performing a Domain Installation without Being a Domain Administrator You normally perform a domain installation of the SAP system with a user who is a member of the domain Admins group,but if for any reason,the account used for the installation is not a member of the domain Admins group,you can perform the installation with a domain user who is a member of the local Administrators group. In this case,the domain administrator has to prepare the system appropriately for you. The domain administrator can perform the following steps either using SAPinst or manually: - Create the new global group SAP_<SAPSID>_GlobalAdmin. - Create the two new SAP system users <sapsid>adm and SAPService<SAPSID>. - Add the users <sapsid>adm and SAPService<SAPSID> to the newly created group SAP_<SAPSID>_GlobalAdmin. For the SAP installation itself (user,which is running the SAPINST program) you need the following rights (User Rights Assignment in Local Security Policy) on the local server: - SeTcbPrivilege (Act as part of the operating system)—作为操纵体系的一部门 - SeIncreaseQuotaPrivilege (Adjust memory quotas for a process)—允许修改内存 - SeAssignPrimaryTokenPrivilege (Replace a process level token)—替代历程令牌 The user,which is running the administration,must be a member of the local admin group of the server. Overview of the operating system users including rights and permission necessary for an SAP Installation: <sapsid>adm This is the SAP system administrator account that enables interactive administration of the system. Is local with the following rights: - SeTcbPrivilege (Act as part of the operating system) - SeIncreaseQuotaPrivilege (Adjust memory quotas for a process) - SeAssignPrimaryTokenPrivilege (Replace a process level token) - SeServiceLogonRight (Log on as a Service)—作为处事登录 - SAPService<SAPSID> This is the user account that is required to start the SAP system. Not member of the local admin group with the following rights: - SeServiceLogonRight (Log on as a Service) - SeNetworkLogonRight (Access this computer from the network)—从收集会见计较机 - SeDenyInteractiveLogonRight (Deny Logon Locally and Deny log on through Terminal Services) - SeRestorePrivilege (Restore files and directories) sapadm Not member of the local admin group with the following rights: - SeNetworkLogonRight (Access this computer from the network) - SeServiceLogonRight (Log on as a Service) - SeDenyInteractiveLogonRight (Deny Logon Locally and Deny log on through Terminal Services)—榨取当地登录和榨取通过长途终端登录 Be careful: The user and group names has to be entered excatly as specified in the correct uppercase an lowercase. (编辑:湖南网) 【声明】本站内容均来自网络,其相关言论仅代表作者个人观点,不代表本站立场。若无意侵犯到您的权利,请及时与联系站长删除相关内容! |