<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: ECC6 SE16N vulnerability and logging &#8211; UPDATED</title>
	<atom:link href="http://www.basissap.com/2009/10/ecc6-se16n-vulnerability-and-logging/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.basissap.com/2009/10/ecc6-se16n-vulnerability-and-logging/</link>
	<description>The place to come when they say it's a BASIS problem</description>
	<lastBuildDate>Tue, 31 Aug 2010 09:15:00 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.1</generator>
	<item>
		<title>By: leonsteinhardt</title>
		<link>http://www.basissap.com/2009/10/ecc6-se16n-vulnerability-and-logging/comment-page-1/#comment-113</link>
		<dc:creator>leonsteinhardt</dc:creator>
		<pubDate>Tue, 13 Oct 2009 18:51:48 +0000</pubDate>
		<guid isPermaLink="false">http://www.basissap.com/?p=233#comment-113</guid>
		<description>I strongly disagree.  SE16N is an essential developer tool, in all systems including production.&lt;br&gt;SE16N is not a danger as long as authorization is display only.  An attempt to use @SAP_EDIT then results in an authorization failure; the SU53 shows&lt;br&gt;&lt;br&gt;Authorization Obj. S_DEVELOP   ABAP Workbench&lt;br&gt;    Object Class BC_C Basis - Development Environment&lt;br&gt;         Activity                                                   02&lt;br&gt;         Package                                                  &lt;Dummy&gt;&lt;br&gt;         Object name                                           &lt;Dummy&gt;&lt;br&gt;         Object type                                              DEBUG&lt;br&gt;         Authorization group ABAP/4 program     &lt;Dummy&gt;&lt;br&gt;&lt;br&gt;Properly structuring authorizations is the appropriate response to the potential danger - not removing the tool.</description>
		<content:encoded><![CDATA[<p>I strongly disagree.  SE16N is an essential developer tool, in all systems including production.<br />SE16N is not a danger as long as authorization is display only.  An attempt to use @SAP_EDIT then results in an authorization failure; the SU53 shows</p>
<p>Authorization Obj. S_DEVELOP   ABAP Workbench<br />    Object Class BC_C Basis &#8211; Development Environment<br />         Activity                                                   02<br />         Package                                                  &lt;Dummy&gt;<br />         Object name                                           &lt;Dummy&gt;<br />         Object type                                              DEBUG<br />         Authorization group ABAP/4 program     &lt;Dummy&gt;</p>
<p>Properly structuring authorizations is the appropriate response to the potential danger &#8211; not removing the tool.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: leonsteinhardt</title>
		<link>http://www.basissap.com/2009/10/ecc6-se16n-vulnerability-and-logging/comment-page-1/#comment-108</link>
		<dc:creator>leonsteinhardt</dc:creator>
		<pubDate>Tue, 13 Oct 2009 11:51:48 +0000</pubDate>
		<guid isPermaLink="false">http://www.basissap.com/?p=233#comment-108</guid>
		<description>I strongly disagree.  SE16N is an essential developer tool, in all systems including production.&lt;br&gt;SE16N is not a danger as long as authorization is display only.  An attempt to use @SAP_EDIT then results in an authorization failure; the SU53 shows&lt;br&gt;&lt;br&gt;Authorization Obj. S_DEVELOP   ABAP Workbench&lt;br&gt;    Object Class BC_C Basis - Development Environment&lt;br&gt;         Activity                                                   02&lt;br&gt;         Package                                                  &lt;Dummy&gt;&lt;br&gt;         Object name                                           &lt;Dummy&gt;&lt;br&gt;         Object type                                              DEBUG&lt;br&gt;         Authorization group ABAP/4 program     &lt;Dummy&gt;&lt;br&gt;&lt;br&gt;Properly structuring authorizations is the appropriate response to the potential danger - not removing the tool.</description>
		<content:encoded><![CDATA[<p>I strongly disagree.  SE16N is an essential developer tool, in all systems including production.<br />SE16N is not a danger as long as authorization is display only.  An attempt to use @SAP_EDIT then results in an authorization failure; the SU53 shows</p>
<p>Authorization Obj. S_DEVELOP   ABAP Workbench<br />    Object Class BC_C Basis &#8211; Development Environment<br />         Activity                                                   02<br />         Package                                                  &lt;Dummy&gt;<br />         Object name                                           &lt;Dummy&gt;<br />         Object type                                              DEBUG<br />         Authorization group ABAP/4 program     &lt;Dummy&gt;</p>
<p>Properly structuring authorizations is the appropriate response to the potential danger &#8211; not removing the tool.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
