# Security Role Import

IT-Conductor NW (ABAP) interface interacts with the SAP System via Remote Function Module calls (RFC). The IT-Conductor SAP Monitoring account requires explicit authorizations to perform the RFCs. IT-Conductor supplies an importable SAP Security role that bundles all the necessary authorizations to simplify the account setup.

1. Download the SAP NW Monitoring Role file in [**Support → Downloads → SAP Security Download**](https://service.itconductor.com/objectSavedSearch?OBJECT_Id=5930548857087850).

| Name                         | Description                                         | Version |
| ---------------------------- | --------------------------------------------------- | ------- |
| SAP J2EE Monitoring Role     | SAP J2EE Monitoring Role Import File                | 6.62    |
| SAP NW BATCH Scheduling Role | SAP NW BATCH Scheduling Role Import File            | 6.67    |
| SAP NW Monitoring Role       | SAP NW BCSEN Monitoring Role Import File            | 6.71    |
| SAP NW SLT Monitoring Role   | SAP NW SLT Monitoring Role Import File              | 6.73    |
| SAP NW STMS Management Role  | SAP NW Transport System Management Role Import File | 6.74    |

2. Upload it into the SAP client using Profile Generator (transaction PFCG) to create the role.
3. Review the Authorization Objects. Remove/modify those violating your security policies, then generate the profile and assign it to the account.

![Figure 2: SAP Authorization Objects](https://377464071-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FXhp08OmU8050PePmMgDt%2Fuploads%2FMANl21jfZiw7WYmUgKPv%2F1893433358?alt=media)
