Re: Custom transaction for SE16
SE16 is never recommendable in HCM for standard end users. Use SAP Ad-hoc queries instead to work in the reporting database with all authorization checks you may require (like PERSA)....
View ArticleRe: S_RFCACL - RFC_SYSID values transport or maintain directly in each system?
Hi Jurjen,So, you actually then modify the roles in each system, in TEST and in PROD?Do you create separate roles with the separate S_RFCACL values for each of the systems? Or do you create one role,...
View ArticleRe: S_RFCACL - RFC_SYSID values transport or maintain directly in each system?
Hi Anja, I use the second option, one role with multiple instances. An alternative could be to create a separate role for each system and work with a naming convention to avoid assignment on the...
View ArticleRe: Restict the user from changing the default printer set in User master
Thiruthiru, First of all you need to understand what transaction the user is executing to get to the user defaults page. If you are not the SAP Security administrator then you should direct this...
View ArticleRe: S_RFCACL - RFC_SYSID values transport or maintain directly in each system?
The transport process is not incidental and you should definitely not be updating roles in your downstream environments. Doing this causes numerous negative consequences when you need to make future...
View ArticleRe: S_RFCACL - RFC_SYSID values transport or maintain directly in each system?
I understand what you are saying;However, practically, this means then that all users in our QAS and DEV environment would have to be assigned different roles than in PRD; as we use a trusted RFC from...
View ArticleRe: S_RFCACL - RFC_SYSID values transport or maintain directly in each system?
Anja, Yes you do have to manage the users separately sometimes in your differing systems, but if the only difference is the RFC connectivity then you only need to create a single role with that...
View ArticleRe: S_RFCACL - RFC_SYSID values transport or maintain directly in each system?
On a side note: Can your developers not configure these secondary system queries to use a secure system account and pass through the users request and credentials to the CRM system for authorizations...
View ArticleAuthorization object K_ORDER
Hi experts, I’d like to manage authorizations to see order (order type ‘RM01’) in transaction S_ALR_87012993. I want that users of division 5000 (for example) can see orders of division 5000 only....
View ArticleRe: Not able to change field names attributes in SCUM transaction for CUA
Hi, it seems, that one of your admins was 'wise' and hacked the values. As they are set now incorrectly for global lock/unlock, you cannot undo the change in SCUM. SAP note 306706 descibes the...
View ArticleRe: Not able to change field names attributes in SCUM transaction for CUA
Hi Berhard, Your above solution is outdated. I noticed that, according to note: 306706, there is no table USRFLDVAL in transaction SM30 in order to correct the settings for field names in "lock" tab of...
View ArticleRe: Not able to change field names attributes in SCUM transaction for CUA
Sreenivasa, Please use SE16 to view table USRFLDSEL and to validate that the fields are set properly there. I am assuming your table has the Lock_Global_remove and/or Lock_global_Set values set for L...
View ArticleRe: Anyone can tell appropriate definitions for those critical authorizations?
Have you tried pressing F1 on any of the above objects?
View ArticleRe: Not able to change field names attributes in SCUM transaction for CUA
Hi Michael, It is strange, I changed according to your above screenshot. But, I am able to lock and unlock the users in CUA system and also in child system. My requirement is, only to lock and unlock...
View ArticleRe: Not able to change field names attributes in SCUM transaction for CUA
Sreenivasa, Sorry I only gave the attributes for the Global Setting but I highlighted the fields for all of them. For the LOCK_LOCAL_SET it should be G (Get lock Globally only) and if you want to...
View ArticleRe: Not able to change field names attributes in SCUM transaction for CUA
Hi Michael, Thank you fro your quick response. I have set the log fields "LOCK_GLOBAL_REMOVE", "LOCK_GLOBAL_SET", "LOCK_LOCAL_REMOVE", "LOCK_LOCAL_SET" and "LOCK_WRONG_LOGON_REMOVE" to Global "G" in...
View ArticleRe: Authorization object K_ORDER
Unfortunately there is no such direct thing. The KAH3 order groups themselves are not authorization relevant. You can however add your vote to http://scn.sap.com/thread=3298966 if you want a standard...
View ArticleRe: S_RFCACL - RFC_SYSID values transport or maintain directly in each system?
This is correct. You can use a fixed SYSTEM user for the connection as long as there are no dialogs involved. In some earlier system releases the screen calls were programmed into the search help RFC...
View ArticleAuthorization object for SAP PO price change
Hi Experts, Our customer has a requirement regarding PO Price change. The user should be able to create PO, Change the PO except the PO price once it putted. What is the authorization object and...
View ArticleRe: Authorization object for SAP PO price change
Dear Asaduzzaman.,I Think The below link may help u to resolve your issueMM Related Authorization Objects - How to Find out & Assign Rgds.,Ganesh
View Article