Adding authorization object for "Function Group"s ?
Is it possible to add any authorization object for any function group ?
We have an issue i.e. whenever user "XYZ" is getting some Windows Excel related error whenever trying call an excel report from BW server. System log related to "XYZ" user shows that -> User "XYZ" has no RFC authorization for the function group "ABCD". The RFC authorization object is S_RFC.
Function Group you can check through SE37->GoTO->Display Function Group
Now is it possible to add authorization for any "Function Group" ?
You give authorisation for all function groups by giving auth object S_RFC a * value in field RFC_NAME
However I do not recommend this as giving wide access to RFC's can bypass a lot of the security you have implemented for the users.
In this case, add only the function group that the user requires in this instance into S_RFC
Similar Messages
-
Is there any table for see Authorization object for Function code?
Hi,
I am facing problem in finding autho. object for function code.
My problem is, in tcode cor2 there is function Approval (in Menubar->process order->function->approval), I want to restrict this to some users.
So is there any way or table to see function code's authorization object..
Thanks...Hi ,
I such scenario the best way is to run trace (ST01) and analyse to find used/missing authorization objects.
Regards, -
Authorization Object for Purchase Group while GRN
HI all,
We wanted to restrict the specific users from doing GRN with ML81N & MIGO_GR against specific Purchase Group. Which authorization object can be used to restrict the user from processing others Pur. groups for which he is not authorised.
Is there any std. object available, if not then what I need to do while creation of customized authorization object (in SU21), how system will call this authorization object in MIGO & ML81N. more detailed answers will be more useful.
Thanks...closed...
-
User PI_JCO_RFC has no RFC authorization for function group ERFC
I am doing IDOC-File scenario between newly installed PI and ECC 6.0 systems.
I have done all the configurations on XI and R/3 end.
When I TEST to send an IDOC from WE19, I could do it successfully and the status is 03 in we02.
But when I go and check SM58, I get the said error: User PI_JCO_RFC has no RFC authorization for function group ERFC.
From that I understand RFC in R/3 end require some authorizations. Am I right? If so, what objects need to be added my user role?
Please advise.
Thanks
ShivaHi,
Try to add the following authorization object to the role(s) of the RFC user:
S_RFC
Set the following authorizations:
RFC_TYPE = FUGR (function group)
RFC_NAME = <name of the function group containing the BAPI>
ACTVT = 16 (execute)
Regards
Seshagiri -
User has no authorization for function group SWRS
Dear SRM Gurus,
We are facing an issue u201CUser has no authorization for function group SWRSu201D.
Hope the user has no authorization to access function group SWRS and this function group is saying that workflow substitution.
Can you any one have any idea what scenario are we using Workflow substitution?
Is there any Roles need to be assigned?
I would be appreciating if you could let us know more detail on this.
Thanks.
Regards,
Magesh Basavaraj.Hi,
The authorization object is 'S_WF_SUBST' for substitute role..try to assign this object and check..
Saravanan -
User has no authorization for Function group SYST
Hi,
We are starting to make customisation to B2B application. I have just created a new project for B2B_XXXX application and deployed it on the server. When I run this custom application, I am not able to login using the same user that is working fine for the standard B2B application.
Following is the error I am getting
ERROR 1 - RFC_ERROR_LOGON_FAILURE: User INTUSER05 has no RFC authorization for function group SYST
ERROR 2- The application was not able to switch to a stateful connection......
Strange thing is that the same user works very well for standard B2B.
Any clue? All I have done is created a CUSTCRMPRJ for B2B ERP (SHRWEB, SHRAPP). Please help.
Best regards,
-Tarun
Edited by: Tarun Bakshi on Nov 10, 2011 7:37 PMHi Shanto,
The problem is still occuring. Even If I give s_rfc authorisation the order is not being created.
I compared the source code for b2b and b2b_custom application, I have pasted below the component info
sap.com CORE-TOOLS 7.00 SP14 (1000.7.00.14.0.20071210170909) SAP AG SAP AG 20080125132852
sap.com SAP_JTECHF 7.00 SP14 (1000.7.00.14.0.20071210172424) SAP AG SAP AG 20080125132853
sap.com BASETABLES 7.00 SP14 (1000.7.00.14.0.20071210170411) SAP AG SAP AG 20080125132853
sap.com SAP-JEECOR 7.00 SP14 (1000.7.00.14.0.20071210172300) SAP AG SAP AG 20080125132852
sap.com JLOGVIEW 7.00 SP14 (1000.7.00.14.0.20071210160700) SAP AG SAP AG 20080125132853
sap.com SAP-JEE 7.00 SP14 (1000.7.00.14.0.20071210172039) SAP AG SAP AG 20080125132853
sap.com SAP_JTECHS 7.00 SP14 (1000.7.00.14.0.20071210172719) SAP AG SAP AG 20080125133813
sap.com BI_UDI 7.00 SP14 (1000.7.00.14.0.20071210170522) SAP AG SAP AG 20080125133909
sap.com BI_MMR 7.00 SP14 (1000.7.00.14.0.20071210170459) SAP AG SAP AG 20080125133230
sap.com UMEADMIN 7.00 SP14 (1000.7.00.14.0.20071210164800) SAP AG MAIN_APL70VAL_C 20080125140341
sap.com LM-TOOLS 7.00 SP14 (1000.7.00.14.1.20080124101556) SAP AG MAIN_APL70P14_C 20080125134809
sap.com SAP-SHRWEB 6.0 SP0 (1000.6.0.0.2.20080129095806) SAP AG MAIN_CRM70PAT_C 20110608153828
sap.com SAP-SHRAPP 6.0 SP0 (1000.6.0.0.2.20080128172843) SAP AG MAIN_CRM70PAT_C 20110608154506
b2b_custom application has been created by using code from the following SCs that were added to the track
SAPSHRWEB10_7-20003522.SCA
SAPSHRAPP10_7-20003520.SCA
SAPCRMWEB10_7-20003518.SCA
SAPCRMAPP10_7-20003516.SCA
SAPCRMDIC10_0-20003519.SCA
STRUTS01_0-10003646.SCA
SAPIPCMSA10_0-20003515.SCA
SAPCRMJAV10_7-20003517.SCA
SAPSHRJAV10_7-20003521.SCA
TEALEAF00_0-20001451.SCA
SAPBUILDT14_0-10003479.SCA
Any help would be great... -
No RFC authorization for function group RFC2
When I am trying to import RFCs/IDOCs from ECC to XI in the integration repository, I am getting this error:
User has no RFC authorization for function group RFC2.
Any input is appreciated.
Thanks,
tnvHi tnv,
I guess you have to use an authorization object S_RFC with parameters.. In your case, you would need to set
RFC_TYPE=FUGR
RFC_NAME=RFC2
See this link
http://help.sap.com/saphelp_nw04/helpdata/en/6b/af429b12e9214d9a2d6cba921b162f/frameset.htm
Hope this solves ur problem!
cheers
Prashanth
P.S Please mark helpful answers -
Has no RFC authorization for function group ZRFC_XI
Hi All,
I have a scenario where I am calling RFC inside the BPM. When I execute I got the errror as
User SKXXXXX has no RFC authorization for function group ZRFC_XI
I have gone though the form
no RFC authorization for function group RFC2
User abcd has no RFC authorization for function group SYST
and I understood that we need to set authroization object S_RFC with RFC_TYPE = FUGR, RFC_NAME = SYST and ACTVT = 16. I think we need to set this to XIISUSER and the password and for PI7.0 user PIISUSER and its password
But not able to understand where we need to do this activity. I request you to kindly let me know how to assign this object... do we need to assign in SAP system or in XI system. please help me out on this problem.
Regards,
DhillDhil,
I never worked on these stuffs. But I found some useful stuff ,I think surely it will help u.
http://sap.ittoolbox.com/groups/technical-functional/sap-basis/please-how-to-create-an-authorization-object-386391
https://www.sdn.sap.com/irj/servlet/prt/portal/prtroot/docs/library/uuid/a92195a9-0b01-0010-909c-f330ea4a585c
Best regards,
raj. -
User CRYSTAL has no RFC authorization for function group BDL5
I am getting this error. Can anybody help.
T:40527 Error in program 'boe_cmsd': ======> User CRYSTAL has no RFC authorization for function group BDL5.
T:40527 Error in program 'boe_cmsd': <* RfcReceive [3] : returns 3:RFC_SYS_EXCEPTION
T:40527 Error in program 'boe_cmsd': <* RfcCallReceive [3] : returns 3:RFC_SYS_EXCEPTIONPlease post this query to the Business Objects Enterprise Administration forum:
BI Platform
That forum is monitored by qualified technicians and you will get a faster response there.
Thank you for your understanding,
Ludek
Edited by: Ludek Uher on Sep 29, 2008 8:38 PM -
User abcd has no RFC authorization for function group SYST
hi,
We are trying to http<>XI<>RFC scenario.
When we are sending request from http to xI.
We got the followin response.
<b>"User abcd has no RFC authorization for function group SYST"</b>
Kindly let me know what authorization to be given to the user abcd.
Regards,
Nishitayou need to give that user auth. object S_RFC for FUGR SYST and activity *.
You can double check in transaction SU53 of the target system which check failed for the respective user. There it should show the auth. object mentioned above.
Regards
Christine -
IDOC Scenario - User has no RFC authorization for function group EDIN
Hi all,
I'm trying to configure an IDOC scenario from ECC to XI.
RFC's, ports and destinations already configured. On WE19 I'm creating an IDOC for testing the scenario. The IDOC is sent successfully, and it stops on TRFC Monitor with error "User PIRFCUSER has no RFC authorization for function group EDIN." .
Some of you knows what authorization is needed? Basis team said the roles are the same at DEV environment, and there this scenario works fine.
Thanks for your help.
regards.
RobertiHi,
Check with PIRFCUSER user , that is having the right authorization or not ..
And make sure that this user is present in the system & it should not locked.
to check that user is present or not-----goto su01 of the system & check
Regards
Seshagiri -
No RFC authorization for function group AGS_TAO_REQUEST_MGMT_FGR
Hi,
I'm trying to build a connection between SAP TAO 2.0 and SolMan. I recevied following error message: for one of my user:
2010-12-21 16:28:24:577 : ERROR : SAPTAO.exe : Thread04 (SelfCheckWorker) : SAP.TAO.Common.Rfc.RequestListener.TaoCommonReqListProxy : SearchSoftwareComponents(): an error occured: SAP.TAO.Common.Rfc.SapAgentAgentException: CallBackend(RfcRequest): a call to the backend system failed: SAPAGENT_RFC_CALL_DETAILS(RFC_SYS_EXCEPTION) ---> SAP.TAO.Common.Rfc.SapAgentAgentException: SAPAGENT_RFC_CALL_DETAILS(RFC_SYS_EXCEPTION) ---> System.Exception: User GCRIBB has no RFC authorization for function group AGS_TAO_REQUEST_MGMT_FGR
Please help. Thanks in advance.
SubodhHello ,
You have mentioned you have received one of your user? rest of the users is it working?
Looks like i also received this error message when i did not instlal my ST-400 ..TAO Agent..i saw the same error message in the log.
Did you follow the this note to install SAP TAO - agent properly (OSS note - 1368112) ?
When you did self check are you getting any warning messages?
1440074 - Check this note also for RFC authorizations
Good luck.
Ram -
No RFC authorization for function group HRXSS_SER
Hi,
after implementing portal (EP 7.0), when the end user tries to access the ESS functionalities, the following error occurs,
com.sap.tc.webdynpro.services.exceptions.WDRuntimeException: ComponentUsage(FPMConfigurationUsage): Active component must exist when getting interface controller. (Hint: Have you forgotten to create it with createComponent()? Should the lifecycle control of the component usage be "createOnDemand"?
in default trace, i found the following error,
com.sap.tc.webdynpro.modelimpl.dynamicrfc.WDDynamicRFCExecuteException: User AG1780 has no RFC authorization for function group HRXSS_SER
when i give SAP_ALL access to this user, then everything is working fine, but i cant give so.
help me regarding this...Hi Ajay,
simply do what the exception tells you: provide RFC authorization in the backend for function group HRXSS_SER to user AG1780.
Cheers, Anja -
SMD_RFC has no RFC authorization for function group SPF.
Hi,
http://pw200-3.fcc.XXXXXXX.com:50000/smd ->Diagnostics Setup ->Setup Wizard - Step 1 receives an error message like . .
The value of profile parameter login/accept_sso2_ticket could not be checked
Attached the below error message
<< >>
Sat Nov 08 12:19:07 2008 SSO The value of profile parameter login/accept_sso2_ticket could not be checked
Step SSO Details
Found SID for SSO ACL entry : PW3
Found login.ticket_client for SSO ACL entry : 000
The Read entry permission on TicketKeystore/SAPLogonTicketKeypair-cert was given to sap.com/tcwebadministratorsolmandiag/servlet_jsp/smd/root/WEB-INF/lib/SetupLib.jar
The TicketKeystore/SAPLogonTicketKeypair-cert was succesfully read (619 bytes)
SSO ticket certificate of PW3 was imported in ABAP PSE of localhost (client 001) : remove_certificate_failed
The ticket certificate is already in ABAP PSE, but could not be updated. You might need to check whether the certificate is up to date in STRUSTSSO2
The value of profile parameter login/accept_sso2_ticket could not be checked
!! Exception : An exception occured during the execution of this function 'PFL_GET_PROFILE_LIST'.(cause=com.sap.mw.jco.JCO$Exception User SMD_RFC has no RFC authorization for function group SPFL.)
Thanks
Thirumal
Edited by: Thiru Thirumal on Nov 8, 2008 4:33 AM
Edited by: Thiru Thirumal on Nov 10, 2008 5:49 AMHi All,
Check the authorizations of user SMD_RFC as described in[ this guide|https://websmp106.sap-ag.de/~sapdownload/011000358700000178012009E/RCA_User_Adminguide_SP18.pdf], refer to section 2.3.3 [SOLMAN.ABAP.RFCCOM]: Internal RFC System User.
Also check notes 1170859 and 1371222.
1170859 - SMD_RFC: running RCA without SAP_ALL profile
1371222 - Additonal authorizations for E2E RCA EhP1 SP20
I hope this help.
BR,
Allam -
UWL : User J2EE_ADMIN has no RFC authorization for function group SYST
Dear All,
When I am trying to register the system in universal Worklist Administration, It gives the following error,
System <>: Fri Jul 11 18:58:11 IST 2008
(Connector) :com.sap.netweaver.bc.uwl.connect.ConnectorExc eption:Fri Jul 11 18:58:11 IST 2008
(Connector) :com.sap.mw.jco.JCO$Exception:User J2EE_ADMIN has no RFC authorization for function group SYST.
I have tried by giving the role SAP_ALL to J2EE_ADMIN , then also i am getting the same error. Can anybody through some light on this....
Helpful tips will be rewarded...
SanojSanoj,
check these threads
https://forums.sdn.sap.com/click.jspa?searchID=13972376&messageID=5489621
https://forums.sdn.sap.com/click.jspa?searchID=13972376&messageID=5267551
https://forums.sdn.sap.com/click.jspa?searchID=13972376&messageID=5636365
reward points if helpful
Maybe you are looking for
-
Change the List Headings in the ALV output
Hi, I am trying to bind dynamic attributes to a dynamically created Node. The code is as follows build a structure description from the list of single fields comp-name = 'CARRID'. comp-type ?= cl_abap_datadescr=>describe_by_name( 'S_CARR_ID' ).
-
Error in generating the pdf form:HR_F_6559
Hi Gurus, I canu2019t create W2s out , i have the message Error in generating the pdf form: HR_F_6559 HR_F_W2_07
-
Error while importing Sales Order
Hi All, I am getting error" Customer record not found Application defined or object defined error65171." The customer code exists in SAP. Please let me know why the cause of this error so that the import process can be carried out. Thanks, Joseph
-
Not all photos in Event got synced
I found that not all photos in my events were synced into my iPhone recently, but it used to be ok. I have already selected to sync "Selected albums......include ALL event" options in iTunes. The event folder itself was synced but not all photo in th
-
Instalation DVD with Leopard+iWork09+iLife09 and latest updates
I want to install original leopard DVD + iWork09 + iLife09 then apply all updates my mac and from this point make a new installation DVD for future reinstallation's on this machine. is this possible or not ? If yes how? best regards, Paulo