Quantcast
Channel: SCN: Message List - Security
Browsing all 5338 articles
Browse latest View live

Re: Custom transaction for SE16

SE16 is never recommendable in HCM for standard end users. Use SAP Ad-hoc queries instead to work in the reporting database with all authorization checks you may require (like PERSA)....

View Article


Re: S_RFCACL - RFC_SYSID values transport or maintain directly in each system?

Hi Jurjen,So, you actually then modify the roles in each system, in TEST and in PROD?Do you create separate roles with the separate S_RFCACL values for each of the systems? Or do you create one role,...

View Article


Re: S_RFCACL - RFC_SYSID values transport or maintain directly in each system?

Hi Anja, I use the second option, one role with multiple instances. An alternative could be to create a separate role for each system and work with a naming convention to avoid assignment on the...

View Article

Re: Restict the user from changing the default printer set in User master

Thiruthiru,  First of all you need to understand what transaction the user is executing to get to the user defaults page.      If you are not the SAP Security administrator then you should direct this...

View Article

Re: S_RFCACL - RFC_SYSID values transport or maintain directly in each system?

The transport process is not incidental and you should definitely not be updating roles in your downstream environments. Doing this causes numerous negative consequences when you need to make future...

View Article


Re: S_RFCACL - RFC_SYSID values transport or maintain directly in each system?

I understand what you are saying;However, practically, this means then that all users in our QAS and DEV environment would have to be assigned different roles than in PRD; as we use a trusted RFC from...

View Article

Re: S_RFCACL - RFC_SYSID values transport or maintain directly in each system?

Anja, Yes you do have to manage the users separately sometimes in your differing systems, but if the only difference is the RFC connectivity then you only need to create a single role with that...

View Article

Re: S_RFCACL - RFC_SYSID values transport or maintain directly in each system?

On a side note:   Can your developers not configure these secondary system queries to use a secure system account and pass through the users request and credentials to the CRM system for authorizations...

View Article


Image may be NSFW.
Clik here to view.

Authorization object K_ORDER

Hi experts,  I’d like to manage authorizations to see order (order type ‘RM01’) in transaction S_ALR_87012993. I want that users of division 5000 (for example) can see orders of division 5000 only....

View Article


Re: Not able to change field names attributes in SCUM transaction for CUA

Hi, it seems, that one of your admins was  'wise' and hacked the values. As they are set now incorrectly for global lock/unlock, you cannot undo the change in SCUM. SAP note 306706 descibes the...

View Article

Re: Not able to change field names attributes in SCUM transaction for CUA

Hi Berhard, Your above solution is outdated. I noticed that, according to note: 306706, there is no table USRFLDVAL in transaction SM30 in order to correct the settings for field names in "lock" tab of...

View Article

Image may be NSFW.
Clik here to view.

Re: Not able to change field names attributes in SCUM transaction for CUA

Sreenivasa, Please use SE16 to view table USRFLDSEL and to validate that the fields are set properly there.  I am assuming your table has the Lock_Global_remove and/or Lock_global_Set values set for L...

View Article

Re: Anyone can tell appropriate definitions for those critical authorizations?

Have you tried pressing F1 on any of the above objects? 

View Article


Re: Not able to change field names attributes in SCUM transaction for CUA

Hi Michael, It is strange, I changed according to your above screenshot. But, I am able to lock and unlock the users in CUA system and also in child system. My requirement is, only to lock and unlock...

View Article

Re: Not able to change field names attributes in SCUM transaction for CUA

Sreenivasa, Sorry I only gave the attributes for the Global Setting but I highlighted the fields for all of them.    For the LOCK_LOCAL_SET it should be G (Get lock Globally only) and if you want to...

View Article


Re: Not able to change field names attributes in SCUM transaction for CUA

Hi Michael, Thank you fro your quick response. I have set the log fields "LOCK_GLOBAL_REMOVE", "LOCK_GLOBAL_SET", "LOCK_LOCAL_REMOVE", "LOCK_LOCAL_SET" and "LOCK_WRONG_LOGON_REMOVE" to Global "G" in...

View Article

Re: Authorization object K_ORDER

Unfortunately there is no such direct thing. The KAH3 order groups themselves are not authorization relevant. You can however add your vote to http://scn.sap.com/thread=3298966 if you want a standard...

View Article


Re: S_RFCACL - RFC_SYSID values transport or maintain directly in each system?

This is correct. You can use a fixed SYSTEM user for the connection as long as there are no dialogs involved. In some earlier system releases the screen calls were programmed into the search help RFC...

View Article

Authorization object for SAP PO price change

Hi Experts, Our customer has a requirement regarding PO Price change. The user should be able to create PO, Change the PO except the PO price once it putted. What is the authorization object and...

View Article

Re: Authorization object for SAP PO price change

Dear Asaduzzaman.,I Think The below link may help u to resolve your issueMM Related Authorization Objects - How to Find out & Assign   Rgds.,Ganesh

View Article
Browsing all 5338 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>