Quantcast
Channel: SCN: Message List - Security
Viewing all 5338 articles
Browse latest View live

Re: Role design issue in regarding SU01 and UserGroups

$
0
0

Create groups & assign that in role you are creating.Once this is assigned to the test id ,then the test id can action only on groups in that role.


Re: Role design issue in regarding SU01 and UserGroups

$
0
0

As you suggested,I have created a role with only one tcode  SU01 and for S_USER_GRP I have given in the following way:

Activity: 05

Group name: Test_Group

and assigned this to user(Test1).

We have other groups like Test_Group1,Test_Group2 etc. But User(Test1) still able to do changes for Test_Group1 and T_Group2 rather than Test_Group

Re: Log Out Activity Report

$
0
0

Thank you so much.  This is what I was looking for! 

Re: Log Out Activity Report

$
0
0

Thanks for helping me.  It is greatly appreciated!

Re: Change Long Text in a SAP Role? - SE63

$
0
0

In Note 854311 "SE63: Translation of role texts fails" you can find something about the logic of the original role language (fixed in table AGR_FLAGS, FLAG_TYPE=MASTER_LAN). Maybe you've got to change it with Z_ROLE_SET_MASTERLANG.

Re: Error while creating user - not authorized to assign profiles or roles

$
0
0

Please Add these T-Code it will work

 

S_BCE_68001393

S_BCE_68001394

S_BCE_68001395

S_BCE_68001396

S_BCE_68001397

S_BCE_68001398

S_BCE_68001399

S_BCE_68001400

S_BCE_68001401

S_BCE_68001402

S_BCE_68001403

S_BCE_68001404

S_BCE_68001405

S_BCE_68001406

S_BCE_68001407

S_BCE_68001408

S_BCE_68001409

S_BCE_68001410

S_BCE_68001411

S_BCE_68001412

S_BCE_68001413

S_BCE_68001414

S_BCE_68001415

S_BCE_68001416

S_BCE_68001417

S_BCE_68001418

S_BCE_68001419

S_BCE_68001420

S_BCE_68001421

S_BCE_68001422

S_BCE_68001423

S_BCE_68001424

S_BCE_68001425

S_BCE_68001426

S_BCE_68001427

S_BCE_68001428

S_BCE_68001429

S_BCE_68001430

S_BCE_68001431

S_BCE_68001432

S_BCE_68001433

S_BCE_68001439

S_BCE_68001440

S_BCE_68001441

S_BIE_59000197

S_BIE_59000198

S_BIE_59000199

Re: FD32--Some fields need to restricted for some users only..

$
0
0

This is great

 

Did you check this? I didn't check in this node. It must work for FD32. Check this and update your findings.

 

Thank$

Re: FBL1N issue Paymenet block and unblock option not coming

$
0
0

Thanks Wolfard its working with FB02, just want to know how you find the solution


Re: Remove Auto Log Off for a specific user

$
0
0

Hi Hershey,

 

Not possible, any change to profile parameter affects all the user id !!!

 

Good Luck !!!

Re: Remove Auto Log Off for a specific user

$
0
0

Logically it is impossible to implement this but if it must be done for a certain group of people then here is a workaround for this.

 

1.     Change the parameter rdisp/gui_auto_logout for a partcular application server and set it to 0 so that auto logout gets deactivated for that application server only.

 

2.      Create a logon group and include this server only in that logon group and ask the users to use this group only for the logon or you can provide the information directly to them and say them to use the application server for the logon.

 

Auto logout is disabled for them now.

 

As I already mentioned it is not the exact soultion but just a wrokaround.

 

Let me know if more information is needed.

 

I hope it works for you.

 

 

Anand

 

Can any explain about the value combinations in role comparision

$
0
0

Can any explain about the value combinations in role comparision

Re: FBL1N issue Paymenet block and unblock option not coming

$
0
0

Hi Raghav,

how I found the information:

FBL1N , set up a vendor_line_item_display-list

system -> status -> double-click on GUI status ALV_ITEMS_AR to see which characters are used for edit-option = CHNG.

system -> status -> double-click on Program (GUI) SAPLFI_ITEMS and search for (binoculars buttom! at the top, not Ctrl+F) 'CHNG'. The first place shows the dependence of the switch x_change.

Started FB1LN again in debug mode and created a watchpoint for x_change.

 

 

Much easier: SAP notes, search for fbl1N and authorization.

workflow tasks in derived roles

$
0
0

Hello,

 

I am involved in a EHS Product Compliance project that uses workflow.

 

In PFCG I assign a standard workflow task to a role under the workflow tab.  If I go to tcode PFTC, type in the workflow task number then navigate to: Additional Data->Agent assignment->Display, the user account assigned to the role is listed and clicking the Overall View button I see the role assignment.

 

The problem is when I derive the role.  In this case the tasks show up under the workflow tab, but the derived role is not listed under PFCT and this role does not allow my end user to process workflows.

 

Are there any known limitations using workflows in derived roles?

Re: FD32--Some fields need to restricted for some users only..

$
0
0

Respected Moazzam

 

I already tried as suggested--but stucked at the place of assigning field groups.(so raised in scn)

i already followed your second link--may be after creation of field groups followed by authorization check in next column --some authorization objects will start showing it's own effects...(still i have a doubt here)

 

let us see what i am missing??

 

Phanikumar

Re: SU24 - Changing SU24 after many years.

$
0
0

If I am not wrong we can't do changes in SU22 as its a SAP Default tables and more over if we do changes in SU24 and its Cross Client then what will be the result? Correct Answer will be appreciated. Thanks in Advance.


Restricting Users access to BW Query based on Criteria

$
0
0

Hello Experts ,

 

I am new to Security and haven't found much help with the implementation documents , i have been given a objective to create Profiles/roles and which would be used only for  reporting on 1 single Cube by users from multiple departments.

 

************************************

Scenario :

Create profile/Roles and provide access to users for BW Query ZREP_C0_1 .

 

User belonging to comp_code1 & region4 & plant6 should be able to view only his data and none other  even if the user wishes to see Compcode2 & region3 & plant4. 

( Reporting with restrictions over the User authorizations  on Region/Compcode )

************************************

Creating the Role has been the easy as it was just to provide access to the infoarea , cubes, infobjects , query and authorization objects to execute query.   However i am stuck on how to proceed further on the above scenario  regarding restricting the users.

 

Any help is much appreciated .

 

Regards

Raja

Re: Cost center restrictions for KB15N - Manual Cost Allocation

$
0
0

Could the user exit EXIT_SAPLKBER_002 of the Extension COCCA002 be a solution?

 

I will appreciate your opinions very much!

 

Robert

Re: Multiple Logon Disable in SAP

$
0
0

Hi Savitha,

 

There is SAP version issue because some other are showing options in same parameter setting.Its very head tic every time they call to basis person to kill the session.

 

In this option user can select the first option & terminate the other sesion.

 

Rgds

Sudarshan

Re: workflow tasks in derived roles

$
0
0

Hi Kerry,

To get the derived role listed under PFTC, go to transaction PFTC_CHG and manually add the role assignment.

Regards,Savitha

Re: Tracking of user login in Portal and R3 with same ID

$
0
0

Prem,

 

If you go in portal and search for the user, what is the data source where the ID is coming from ?

 

Regards,
Shivraj

Viewing all 5338 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>