SAP_ECC6_EHP7_IDES安装文档ORACLE11G+WINDOWS2012 R2 问题总结
1、注意密码不能带@等特殊符号,否则会报如下错误,因为ORACLE数据是不容许密码带@的。@是一个关键字
2、安装程序权限不足,需要手工创建SAP需要的用户并赋予相应的权限。
否则会报如下错误
解决方案:
①通过命令行方式运行安装程序
C:\soft\EHP7_IDES_SETUP\MASTER\SWPM10SP06_3-20009707>sapinst.exe IS_HOST_LOCAL_U
SING_STRING_COMPARE=true
设置,IS_HOST_LOCAL_USING_STRING_COMPARE=true
如果以上不成功。参考下面设置用户权限在试。
注意重新启动安装的时候一定要选择设置new option
②在本地安全策略中按如下说明设置权限
https://blogs.technet.microsoft.com/lobapps/2010/11/22/sap-user-and-groups-requirements-in-the-active-directory/
以下内容摘自上面链接
Today for an SAP installation on Windows in an existing AD domain, some user and groups requirements are mandatory from SAP.
This article gives an overview of the necessary user and groups including the rights and permission.
Domain or local installation:
Before you install the SAP system, you have to decide whether you want to perform a domain or local installation, since this affects how the user account information is stored and accessed.
Domain Installation
In a domain installation, the user account information is stored centrally in one database on the domain controller and is accessible to all hosts in the system.
You have to perform a domain installation if one of the following applies:
- You install a distributed system (strongly recommended to avoid authorization problems).
- You install a high-availability system with WSFC
- You want to use Single Sign-On.
- You use a common transport host for several SAP systems running on different computers.
Local Installation
In a local installation, all Windows account information is stored locally on one host and is not visible to any other hosts in the system.
- If the SAP system is to run on a single machine (central system), you can perform a local installation.
- If your SAP system was installed as a local installation and you want to later change to a domain installation, you must perform a homogeneous system copy.
Normally in a domain installation, the SAPINST tries to create all the necessary users and groups in the AD, but therefore the user which runs the installations needs to be a domain admin user. If this is not possible you have to go for the following steps:
Performing a Domain Installation without Being a Domain Administrator
You normally perform a domain installation of the SAP system with a user who is a member of the domain Admins group, but if for any reason, the account used for the installation is not a member of the domain Admins group, you can perform the installation with a domain user who is a member of the local Administrators group. In this case, the domain administrator has to prepare the system appropriately for you. The domain administrator can perform the following steps either using SAPinst or manually:
(
- Create the new global group SAP_
- Create the two new SAP system users
- Add the users
For the SAP installation itself (user, which is running the SAPINST program) you need the following rights (User Rights Assignment in Local Security Policy) on the local server:
- SeTcbPrivilege (Act as part of the operating system)—作为操作系统的一部分
- SeIncreaseQuotaPrivilege (Adjust memory quotas for a process)—容许修改内存
- SeAssignPrimaryTokenPrivilege (Replace a process level token)—替换进程令牌
The user, which is running the administration, must be a member of the local admin group of the server.
Overview of the operating system users including rights and permission necessary for an SAP Installation:
This is the SAP system administrator account that enables interactive administration of the system.
Is local with the following rights:
- SeTcbPrivilege (Act as part of the operating system)
- SeIncreaseQuotaPrivilege (Adjust memory quotas for a process)
- SeAssignPrimaryTokenPrivilege (Replace a process level token)
- SeServiceLogonRight (Log on as a Service)—作为服务登录
-
SAPService
This is the user account that is required to start the SAP system.
Not member of the local admin group with the following rights:
- SeServiceLogonRight (Log on as a Service)
- SeNetworkLogonRight (Access this computer from the network)—从网络访问计算机
- SeDenyInteractiveLogonRight (Deny Logon Locally and Deny log on through Terminal Services)
- SeRestorePrivilege (Restore files and directories)
sapadm
Not member of the local admin group with the following rights:
- SeNetworkLogonRight (Access this computer from the network)
- SeServiceLogonRight (Log on as a Service)
- SeDenyInteractiveLogonRight (Deny Logon Locally and Deny log on through Terminal Services)—禁止本地登录和禁止通过远程终端登录
Be careful: The user and group names has to be entered excatly as specified in the correct uppercase an lowercase.
Often this naming conventions conflicts with the requirements of the customer, but it is not possible to change the names of the users and groups, because all the upgrade and installation procedures of SAP a belonging on this convention.
3、要包装有足够的空间,排除安装文件,保留500G的空间,网络上说只要250G就可以了,是远远不够的
④、host的设置要设置为本地IP地址,否则会报如下错误,而且后面安装成功后,如果设置错误,服务会启动不了
Host文件必须本地IP
⑤将51050166_2\EXPORT_7文件夹下面的DATA文件夹里面的所有文件复制到51050166_1下面的DATA_UNITS \ EXPORT_1\DATA文件里。复制完后EXPORT_1的DATA文件夹大约70g
否则会报如下错误:
自己的疏忽,百度等是找不到答案的