Regarding end user permission

Hi Gurus,
I have three iviews (v1,v2,v3)assigned to a role(RoleAll) which will be assigned to user. The requirement is: certain user can only see certain iviews.
my notion is:
another three roles(role1, role2, role3) created, and set the iviews' end user permission enabed to respective role(v1--->role1, v2>role2, v3--->role3), what I expected is : the user with role RoleAll and role1 will see v1.
user with role RoleAll, role1 and rol2 will see v1 and v2.
when I implement  like this, the behavior is not as expected.
Can anyone body guide me?
Best regards,
John

>
John Wu wrote:
> I have three iviews (v1,v2,v3)assigned to a role(RoleAll) which will be assigned to user.
>The requirement is: certain user can only see certain iviews.
> my notion is:
> another three roles(role1, role2, role3) created, and set the iviews' end user permission
>enabed to respective role(v1--->role1, v2>role2, v3--->role3), what I expected is :
>the user with role RoleAll and role1 will see v1.
> user with role RoleAll, role1 and rol2 will see v1 and v2.
>
Hello,
Assign iView 1 to Role1, iView2 to Role2 & iView3 to Role3.
Assign RoleAll to those users who should see atleast one of these iViews.
Then Assign Role1 to the users who should see iView1. Similarly assign
Role2 and Role3 to respective users.
Now use Role Merging concept. Give same merge IDs to all the roles. For
the user having  two of these roles (for e.g, RoleAll + Role1), will see
only one merged role...and one iView.
refer:
http://help.sap.com/saphelp_nw70/helpdata/EN/53/89503ede925441e10000000a114084/content.htm
May be you could give it a shot.
Regards,
Anagha

Similar Messages

  • End user permission ignored

    Hello,
    I have a problem with an end user permission that seems to get ignored: I wanted to demonstrate the usage of the end user permission and assigned a role to a User (for simplicity's sake as an entry point, no worksets, pages etc. involved) and enabled end user permission on the role for that particular user.
    Now when that user logs in he gets to see the according entry in the navigation bar as expected. However if I disable the end user permission, log out and again log in the user, he stills sees the link. The end user permission setting is simply ignored. Can someone shed light onto this, could there be something wrong with the installation)?
    I don't think this is an issue of permission inheritance (the role permissions are set explicitly anyway) or overlapping permissions due to membership in several groups - the user is only member of the single standard  group 'authenticated users'.
    Regards,
    Sebastian
    P.S. What's the use of a role assignment to a user without end user permission anyway (I mean why the option)? What happens if you don't add permissions on a Role for a certain user at all (I tried it, but the effect is the same as described above - end user permission seem to be irrelevant)?

    Hi Robert,
    thanks for your answer and for the link (and I thought I had read everything). I am not so sure however if I really understand the term 'runtime environment' for a user. I thought runtime vs. design-time meant the difference between the content a user sees when he is actually using the portal and the content an administrator has access to in the portal content catalog, i.e. a meta-environment accessible only through certain tools like the permission editor or similar.
    I don't understand what you want to express with "<i>It's used to restrict ... end user runtime environment</i>" and why the "Page Personalization" is an example.
    I realize that for roles the availability for a user is solely defined by the assignment of that role to the user - end user permissions have no effect on this. Confusing, because I tought this availability (i.e. showing links in the toplevel or detailed navigation) was what was meant by 'runtime environment' but I seem to be wrong here.
    The docu says "<i>for roles the end user permission setting does enable you to define which users/groups/roles are able to preview the role content using the portal design-time tools</i>". Again, I am confused, I thought this was exactly the meaning of design-time environment.
    Great if you or someone else could comment on this..
    Regards,
    Sebastian

  • How to set End User Permission to an iView?

    Hi experts,
    can someone tell me how I can set End User Permission to enabled to an iView?

    Hi there,
    From what I have read you want a user to access an iView without an account. To do this you need to configure the J2EE engine for an anonymous user access and set the iView property for authentication to anonymous.
    Because the user has no account you have to assign any roles you want to use for permissions to the anonymous user account configured for anonymous access.
    There is documentation on help.sap.com on how to configure anonymous access.
    Hope this helps.
    Regards
    Christiaan

  • Administrator and End user Permission

    Hello Everybody,
    How <b>Administrator permission</b> is different from <b>End user permission</b>, i cannot see any major changes if i assign or revoke those.
    2. If i have assigned <b>role assigner permission</b> to a user who does not User administrator or any other administrator rights, how he is able to assign role to other user.
    I have read on help.sap.com, but unable to understand.
    regards
    Santosh

    Hi Santhosh,
    1. The Name itself tells us the Difference .
        "Administrator" ->
           There r 3 types of Admn here
        a) "Content Admn" ( he is the one Who can create Iview / Role ..)
        b) "User Admn" ( he is the one who can Create Users and Assign Roles to the Users)
        c) "System Admn" ( he can change the System Properties ..Like Layout ,sys alias etc )
    and End User is the one who doesn't have any of the Admn Roles . A default user may contain Only EU_ROLE
    2.
       If u r a developer u must have Content Admn
       and for the basis guys must have User Admn and Sys   admn.
    Hope it helps .
    Regds,
    J

  • FPN - End user permission

    Namaste all,
    I have followed
    https://www.sdn.sap.com/irj/scn/go/portal/prtroot/docs/library/uuid/70191d1e-2bd1-2a10-d9b7-ba19500da527
    for setting up FPN. But I didn't understand how to assign end-user permission for a person at the consumer portal. Can somebody guide me how to search for a consumer portal user in the producer portal?
    Regards,
    Krishna Murthy

    You should just be able to navigate to User Administration tab in either portal to see the user. You can assign permissions via the PCD explorer. Locate the PCD object you wish to assign permissions to and right click and choose open --> permissions.
    This [help guide|http://help.sap.com/saphelp_nw70/helpdata/EN/f6/2604f005fd11d7b84200047582c9f7/frameset.htm] explains it in more details.
    Hope this answers your question.
    BRgds,
    Simon

  • Regarding end user role

    Hi all:
          Is there a standard role called end user role which can not be found in our system ? if yes, can you please tell me what actions should be assigned to the role?
    thank you very much
    Edited by: jingying Sony on May 11, 2010 4:01 AM

    Hi,
    You can assign Standard User (eu_role) or Every User Core (eu_core_role).
    Check the documentation here.
    http://help.sap.com/saphelp_nw70/helpdata/EN/47/f0f7415e639c39e10000000a155106/content.htm
    Regards,
    Sandeep Tudumu

  • Regarding end user ?

    dear guru's
    i have 5 month experience in PM Module so where i work PM module is implemented but end user not working yet so i m new in this to handle all so tell in which way i can start my PM MOdule and also to track them a right place so plz do needfully
    regards
    Atul sharma
    9909973893

    dear sir
    ok sir thanks for help
    regards
    Edited by: atul.sharma on Feb 13, 2012 5:17 PM

  • Unable to see ESS content with an end user

    Hi All,
    When I try to see my ESS content with an end user, it is giving me the following error:
    com.sap.xss.config.FPMConfigurationException: Read of object with ID portal_content/com.sap.pct/srvconfig/com.sap.pct.erp.srvconfig.ess.employee_self_service/com.sap.pct.erp.srvconfig.skills/com.sap.pct.erp.srvconfig.fpmapplications/com.sap.pct.erp.srvconfig.skillsapplication failed.
    Part of the stack trace also says,
    Caused by: com.sapportals.portal.pcd.gl.PermissionControlException: Access denied (Object(s): portal_content/com.sap.pct/srvconfig/com.sap.pct.erp.srvconfig.ess.employee_self_service/com.sap.pct.erp.srvconfig.skills/com.sap.pct.erp.srvconfig.fpmapplications/com.sap.pct.erp.srvconfig.skillsapplication)
    It is coming for all the applications in ESS.
    I think it is a permission issue, so i gave the end user permission to the user in the PCD as well in the directory where all my ess contents have been kept.But still it doesn't work.
    And only when I assign the end user with Admin right, it works which should not be the case.
    Kindly suggest a possible solution for this.Your efforts will be appreciated.
    Regards.

    Hi Friend,
    Could please let me know , how you have solved this issue.
    I am alos facing the same
    " com.sap.xss.config.FPMConfigurationException: Read of object with ID portal_content/com.sap.pct/srvconfig/com.sap.pct.erp.srvconfig.ess.employee_self_service/com.sap.pct.erp.srvconfig.skills/com.sap.pct.erp.srvconfig.fpmapplications/com.sap.pct.erp.srvconfig.skillsapplication failed"
    Thanks in advance
    Seranjeeve

  • End User Permissions

    Hi all,
    can someone please explain to me the meaning or function of the "End-User Flag" in the permission editor of a system which is setup in the portal?
    I'm not sure about the effect of this value.
    Thanks a lot,
    Regards,
    Andreas

    Hi
    End User permissions are available to the user at runtime. This determines what user can see at runtime. To see any object user must have End-user permissions enabled.
    End-user permission affects two area:
    Detail Navigation - If user have end-user permission for an iView then that iView/Page will be visible to user at runtime in Detail Navigation.
    Personalise Option: If user have end-user permission for an iView then that iView is visible to the user in the personalize option available to user through page personalization.
    Regards,
    Ganesh N

  • SAP HR End User Manual

    Dear All,
    Myself Darshan Palkar from Pune completed MBA-HR from PUMBA.
    This is my first posting to this forum
    Currently i am pursuing SAP HR - End User training at Pune.
    Can any one send me the end user manual for HR
    If anybody is having openings for SAP HR End User then please let me know & any information regarding End User also welcome
    Thanks in advance
    Regards
    Darshan Palkar

    Dear Darshan
    You would get user manual for SAP HR course with training institutes. They do not have any soft copy. You could also get notes from some small institutes conducted SAP HR courses.
    Regards
    Chintan J

  • SCSM 2012 SSP Permission for End users

    Hello Experts,
    I have an issues with SSP - SCSM 2012 SP1.
    As an admin user, I can see theOfferings, see the pending requests, can see the requests I have submitted, Approve them etc. But when I am an end user, browsing from my laptop, I see a blank Home page. I dont see the Service offerings in the
    homepage..even I dont see the Need Help? text. What is the issue? FYI : Silver light is already installed on my laptop.
    Interestingly, I see the Need Help? text with the same end user credential when I am opening the browser inside the server wher SSP is installed.
    But, in both the cases, whether I browse in the server or from my laptop, I dont see the service offerings anywhere when i am an end user. I followed the below article..but no success.. :(
    http://systemcentertech.com/2012/06/28/scsm-2012-portal-service-catalog-empty-for-end-users/
    Please help...
    Thanks!
    Thanks

    Hi,
    Did you add the Service Offerings and Request Offerings to the Catalog Group? Here is another good blog on this you can reference:
    http://www.concurrency.com/blog/scsmportalpermisions/
    My Blog | www.buchatech.com | www.systemcenterportal.com
    If you found this post helpful, please give it a "Helpful" vote. If it answered your question, remember to mark it as an "Answer". This posting is provided "AS IS" with no warranties and confers no rights! Always test ANY suggestion
    in a test environment before implementing!

  • SP2013 WF works for admin but not end-users

    A simple SP2013 WF calls a SP2010 WF to send email, simple.  Works for me (admin) but when a SP user edits an item on the list (which fires the WF), the WF gets to the 2010 call, and fails with this error...
    RequestorId: f8c56627-e4e5-5a26-0000-000000000000. Details: An unhandled exception occurred during the execution of the workflow instance. Exception details: System.ApplicationException: HTTP 401 {"Transfer-Encoding":["chunked"],"X-SharePointHealthScore":["0"],"X-SP-SERVERSTATE":["ReadOnly=0"],"SPClientServiceRequestDuration":["61"],"SPRequestGuid":["f8c56627-e4e5-5a26-97ee-ad70ca4d3291"],"request-id":["f8c56627-e4e5-5a26-97ee-ad70ca4d3291"],"X-FRAME-OPTIONS":["SAMEORIGIN"],"MicrosoftSharePointTeamServices":["16.0.0.2930"],"X-Content-Type-Options":["nosniff"],"X-MS-InvokeApp":["1;
    RequireReadOnly"],"Cache-Control":["max-age=0, private"],"Date":["Wed, 25 Jun 2014 02:44:54 GMT"],"P3P":["CP=\"ALL IND DSP COR ADM CONo CUR CUSo IVAo IVDo PSA PSD TAI TELo OUR SAMo CNT COM INT
    NAV ONL PHY PRE PUR UNI\""],"Server":["Microsoft-IIS\/7.5"],"WWW-Authenticate":["NTLM"],"X-AspNet-Version":["4.0.30319"],"X-Powered-By":["ASP.NET"]} at System.Activities.Statements.Throw.Execute(CodeActivityContext
    context) at System.Activities.CodeActivity.InternalExecute(ActivityInstance instance, ActivityExecutor executor, BookmarkManager bookmarkManager) at System.Activities.Runtime.ActivityExecutor.ExecuteActivityWorkItem.ExecuteBody(ActivityExecutor executor, BookmarkManager
    bookmarkManager, Location resultLocation) Exception from activity Throw If Sequence Sequence TryCatch Sequence Microsoft.SharePoint.WorkflowServices.Activities.RetryForDurationPolicy HTTPPost_WorkflowInterop_EnableEvents WorkflowInterop DynamicActivity<Guid>
    Then If Working Sequence Flowchart Sequence RCSEmailCst.WorkflowXaml_4f7b53dc_968d_4e22_a812_3178e7b01bad
    Spent an hour on phone with M$ support, only to be told it's my fault and I have to re-design my WF...if my WF gets any simpler I'll have to use carrier pigeons to get messages to customers!
    I've Googled the error message, results suggest that User Profile Syn is out of whack but M$ support swears up & down our sync is working fine.
    Anyone?
    Edit to add: we have a hosted implementation of SP2013, NOT on-prem

    Hi  ,
    According to your description, my understanding is that the SharePoint workflow 2013 does not work for end-users in your environment.
    For your issue, it can be a permission for the user initiating the workflow. Please make sure  site feature Workflows can use app permissions is activated. Go to Site actions > Site Settings >
    Site features > Workflows can use app permissions.  Make sure the user is one member of a SharePoint Group.
    Also please  provide more detail information about the error message  to determine the exact cause of the error. You can have a look at the blog:
    http://ranaictiu-technicalblog.blogspot.com/2013/03/sharepoint-2013-workflow-debugdiagnosis.html
    Best Regards,
    Eric
    Eric Tao
    TechNet Community Support

  • DPM 2012 Failed to update permissions used in end-user recovery

    Hello everyone,
    I'm going to try the clearest way possible to describe the problem.
    Our test server is Windows Server 2012 with DPM 2012 SP1 CU2 (BKP-SRV01) with a Remote SQL server 2012 (PBASC)
    I protected a share folder on a DC on Windows Server 2008 R2 (PAD)
    When I activate End-User Recovery I get a warning in the monitor tab that say this
    Failed to update permissions used for end-user recovery on pad. Permissions update failed for the following reason: (ID 3123)
    DPM is unable to enumerate contents in pad_PartageTest on the protected computer BKP-SRV01. Recycle Bin, System Volume Information folder, non-NTFS volumes, DFS links, CDs, Quorum Disk (for cluster) and other removable media cannot be protected. (ID 38 Details:
    the end user recovery is working, but i do not know if it affect other things. I also get that message when i try to browse on the DPM server when creating a protection group
    When I go see the DPM Server / File and Storage Services / Shares on Server Manager i get  "Failed to retrieve folder permission" in the properties of the Protected server share.
    I tried to search for almost 2 days without finding anything about that particular issue.
    Is there a way (clean way) to fix the issue?
    Thanks in advance for the help!

    Closing for housekeeping.
    Please remember to click “Mark as Answer” on the post that helps you, and to click “Unmark as Answer” if a marked post does not actually answer your question. This can be beneficial to other community members reading the thread. Regards, Mike J. [MSFT] This
    posting is provided "AS IS" with no warranties, and confers no rights.
    That's not very helpful. I've got the same issue :(
    Comes up for servers where a protection group related to it errors out (recovery point failure usually).

  • How to present a Webpage composer content to an end user

    Hi Gurus,
        please give me solution to this.
    how to present an article created in WPC to an end user with proper permission settings.
    Thanks & Regards
        Vipin

    Vipin,
    Following would be some key stpes in order to publish article created in WPC to end user.
    1. Create a WebSite
    Navigate to one of the following folders as appropriate
    To create a Web site: /Web Content/Sites
    To create a subordinate Web site: /Web Content/Sites/<MyWebSite>
    You must create all Web sites in the folder structure beneath /Web Content/Sites
    2. Create Web Component
    Navigate to /Sites/WPC Site/Web Page
    3. Web Page will appear under Sites/WPC Site/Web Pages
    4. Adding Web Content (e.g. article) to Web Page
    Right click on WPC Page and choose Edit Page.User will be presented with default layout of Web Page. This can be changed according to requirements.To Add content, place cursor on pencil icon ( ) and choose Add.Navigate to a folder containing shared content (for example, Site Content), or create new Web content to be displayed exclusively on this page.In the Web content browser, click the icon for an item and use Drag &Drop to drag it into container.
    5. Publishing Web Pages
    Go to the /Web Content/Sites/WPC Site/Site Navigation folder
    Choose New --> Navigation Node.
    Publish the site navigation structure.
    Go to the /Web Content/Sites/WPC Site folder.
    From the context menu for the Site Navigation folder, choose Publish Site Navigation.
    In the Web Page Composer, navigate to the Web site that you want to integrate into the portal navigation, and open the Site Navigation folder there.To copy the path of the navigation.wpc file to the clipboard, choose Copy Path from the context menu for the file.
    Choose Content Administration --> Portal Content
    Open a role for editing and create a folder in that role, beneath which you want to display the navigation structure of the Web site. Select the folder beneath which you want to display the navigation structure of the Web site. Choose the Navigation property category. For the property External Connector, enter the prefix wpcnavigation:// and insert the path from the clipboard.
    The Web site is contained in the role immediately once you have saved it.
    ~Cheers,
    Vivek

  • Is there a way for an end user to see who has membership in a security group

    Windows Server 2008 R2
    Active Directory Domain
    Windows 7 workstations
    I am looking for a way that my end users can look at a folder security tab and then discover who has membership in the security groups listed.
    Is that possible? Any drawbacks or concerns?

    Hi Tod,
    Based on my research, other than viewing group membership in ADUC, we can use this PowerShell cmdlet
    Get-ADGroupMember GroupName and Net Group GroupName to view members in a group:
    However, these commands can only be used on Domain Controllers or when connecting to DCs remotely. That’s because accounts and account membership are stored on Domain Controllers, therefore we can only view group membership on DCs.
    More information for you:
    Viewing the Direct Members of a Group
    http://technet.microsoft.com/en-us/library/dd391915(v=WS.10).aspx
    Net group
    http://technet.microsoft.com/en-us/library/cc754051.aspx
    Best Regards,
    Amy

Maybe you are looking for

  • 5600 - No Sound when trying to capture analog video

    Hi all, hope someone can help me on this one cause i have no clue here... I try to capure from my analog camcorder, but I have no sound when connect the  RCA or S-video video cable. The moment i disconnect the video cable the sound come back ....   I

  • How to create a clickable hyperlink on a freestanding image?

    I have a small part time business doing all kinds of image editing.  I get most of my work on a particular site that facilitates the meeting of clients and freelancers I just recently was awarded a job and accepted the job.  Right AFTER that, there w

  • Aspect ratio for textures

    I'm a novice at Live Type... I've imported a texture into FCE but it's showing in the canvas in 4:3 but the project is 16:9. How do I change this please?

  • How to see workbook in the browser

    Hi i have created a structure according to user . and saved in the workbook . now user want to see the same workbook structure in browser . is there any way to see the workbook in browser. i tried to save a workbook in web browser. and try to open it

  • Do we have to use iCloud?

    Is iCloud important to have or does it make it easier to store things on there for extra space?