Approvals/Delegation

If one needs to delegate his/her approvals to somebody does that 'somebody'(the person who is being delegated to) need to have any special capabilities such as having to be setup as an 'Approver'? What are the requirements for somebody to be a delegatee?

Hi
The person who is being delegated to needs to be present in IDM. There must be a user object present for that user. No other requirements.
Thanks

Similar Messages

  • Delegation of Approvals (Approval Workflow in Purchasing Module)

    Hi,
    I am using AME(Approval Management Engine) to generate the list of approvers for all the requisitions.
    My requirement is:
    If a requisiton requires approval of 'ABC'. But ABC is not able to approve it because he is on leave. So the workflow should automatically be delegated to another approver.
    This situation also comes when ABC didn't approve the requisition for a fixed time. After that time limit it will be delegated.
    Regards,
    Sambit

    Sam wrote:
    ABC is not able to approve it because he is on leave. So the workflow should automatically be delegated to another approver.Setup vacation rule for the leave period to delegate the approval notification to someone else.
    This situation also comes when ABC didn't approve the requisition for a fixed time. After that time limit it will be delegated.Setup timeout in the workflow.
    Thanks,
    PS.

  • Delegation function in E-Sourcing

    Does anyone know whether E-Sourcing has a delegation function?  If the approval is on leave, he can assign others to approve on his behalf?  Or when someone is on leave, the administrator can help to put in on behalf for the approver?  This function is available in SRM.  How about in E-Sourcing?  If this function is not available do anyone know whether you can write script to program that to happen?
    Regards
    Lisa

    Hi Lisa,
    You have two options for delegating an approver.  There are many other ways this can be done but with the information provided these are the two most likely choices.. 
    1. The E-Sourcing/ CLM system can allow users with System Administration access to login as a another user and approve on their behalf.  When the workflow is approved or rejected the system logs both user ids.
    2. Do a Group Approval where only one member of the group has to approve.  Include the original approver and their delegated resource in the group.
    Regards,
    James
    Approval Options in E-Sourcing/ CLM are the following:
    Single User Approval
    Group Approval where only one group member needs to approve
    Group Approval where all group members need to approve
    You can have multiple levels of approval.  So for each phase of the approval process you can have an additional set or sets of approvers.  In theory infinite number of approval phases and infinite number of approval steps in each phase.  In practice we usually see 4-8 contract phases with 2-4 being approval phases and each approval phase has 1-3 approvers.  But keep in mind every process is different.
    Approvals based on value matrixes, contract values, Business Units, auto approval Etc. are possible. 
    Because the workflows are XPDL scripting and java based there is a high level of flexibility in how we select the approver change phases, validate document meta data, force loading of pdf contracts, etc..

  • Which databases support 'SSO to the database' via Delegation in XI 3.1?

    SQL Server has been officially supported since XI R2. Oracle I believe has now joined the list.
    Which other database platforms are supported via Windows Delegation in BOE XI 3.1? (And must they reside on Windows too, or can they reside on *NIX?)
    Thanks

    well preliminary findings appear that SAP business warehouse was added. Oracle has always worked on unix it's just not documented internally how to set this up. I have seen at least 2 customers get oracle on unix working for on-demand reporting (sso to the DB).
    If the customer can integrate their oracle DB on nix with AD then we can delegate tickets to it (only tested in unconstrained delegation)
    I haven't found this in the docs yet but rather I checked universe connections in 3.1 to see if they had the sso to the DB option. The only new one was SAP.
    We already supported oracle and SQL.
    To note I was unable to test sybase and DB2 for some reason they appeared to be looking for middleware client components I did not have installed. So they may have been added as well (since I know both can be integrated with AD).
    Regards,
    Tim

  • Any Report for CUP to find Pending Approvals.

    HI,
         Are we having any Standard report in CUP for finding CUP access request is pending with who's approval. From Search Request we are able to see in which stage it is pending  and who approved but it won't tell who's approvals are pending. Is there any way to find who's approvals are pending for any particular request.
    Thanks in Advance.
    Regards,
    Vasa

    Hi,
    This has been issue with CUP request status. Hope SAP will come up with solution for this.
    Good luck.
    Laks

  • Appropriation Request: Status 'In process' after all approvals (IMA11)

    Hello,
    We are using IMA11 and associated workflow tasks to create and approve a appropriation request. Occasionally, the status of the appropriation request wouldn't change to 'Approved' even after all the approvals. When we look at the corresponding workflow, the status of the task "New status for appropriation requests" would be 'In process'. There would be no error messages shown in the workflow log and there won't be any short dumps.
    The same appropriation request, when restarted for the second or third time, would complete without any issues and the status of the appropriation request would change to 'Approved'.
    Can someone let me know what could be the reason for occasional failure of the appropriation request workflow?
    Thanks,
    Surya

    Here is another issue for the same workflow approval process.
    There are 4 approval levels. Identifying the agent and the approval happens in a loop.
    Occasionally, the workitem fails with the message 'Work item XXXXXXXX locked by user XXXXXXX (enqueue error)' The workitem is  getting locked by the previous approver. Is there any specific reason for this lock or do I need to add a wait step for each loop?
    The approver, approves the workitem from his Business Workplace. I checked other threads, but I am not able to figure out a reason. These are all synchronous processes.
    Thanks,
    Surya

  • PO and Requisition approvals

    In R12, if we set the purchasing system to use position hierarchy after defining all the jobs and positions.
    Is it advisable to change back to the employee/supervisor relationships setup later just by unchecking the option in the financial options for that OU? Also does it apply the same to the vice versa too? System doesn't get corrupted right?

    1. Make sure that the approval rules and assignments are done accordingly. For position hierarchy the position is used as for the association; for employee supervisor job is used as key for the association.
    2. For PR approval, the approver list is generated when the requisition is submitted (unless you are using AME for requisition approval). But for PO the next approver is determined on the last approver's response. So the In Process PO Approvals will realize this change immediately; but the In Process PR approvals may have a lag (because of pre determined approval list). Please test the PR approvals once.
    - Shiva

  • Multiple Objects on an Engg Change request & approvals

    Friends,
    Have a question on ECM:
    We have a requirement today, that any Material or BOM change must be preceded by its drawing/document change/approval. We do not want to create 2 separate ECR's for changing the same BOM or matl (one for its drg/doc & other for changing the BOM/matl itself).
    So, I create an ECR, include the drawing/document & the matl/BOM for the approval process & want to get the approvals for the drawing 1st & then the matl/BOM, the system does not allow me to do that. i.e. system asks me to complete the Object changes on both the objects (the drawing/doc + the matl/BOM) before Closing/Releasing the ECO.
    Any idea how I can control this, so that I'm able to complete the approval & changes for the drawing/document first & then be able to make changes to the other object (matl/BOM)?
    Your inputs appreciated
    Cheers

    Hi Heiner,
    The work around that I use is in my maintenance project I have added all the logical components that I will have to work with.(R/3, ECC 6.0, BW etc..) This way, when I created the Maintenance cycle, my task list had all of these systems/clients in it.
    The only hick is that in the CRMD_ORDER transaction, you only can put one ibase component.
    The above mentioned solution works if you combine all your systems into one maintenance cycle.
    let me know if this sheds any light for you.
    Salpi

  • ICal delegation failing after upgrade from Snow Leopard to Lion

    I've just upgraded our Snow Leopard server to run Lion Server.
    I have a problem with iCal Server.
    Individual calendars work OK: can be accessed from iCal / iThings and so on, and via web interface.  But calendar delegation doesn't.
    If I open Accounts / Preferences / Delegation from any version of iCal / Calendar I get this error:
    In the server calendar server error log I see the following:
    [twext.web2.dav.method.report_expand#error] Error reading property (u'http://calendarserver.org/ns/', u'calendar-proxy-read-for') for resource /principals/__uids__/BCDF1D53-4447-40A2-A035-B30F6E2EEDE4/: <StatusResponse 403 Unable to list properties: /Volumes/StorageHD/Library/Server/Calendar and Contacts/Documents>
    Anyone got any ideas what is going on and / or how to fix?
    Thanks in advance for any help available.

    OK - Fixed it. 
    Turns out the cure is to use the Webcal Interface to re-create the delegations.  A bit tedious, but doing this presumably forces a rewrite of the file that previously cannot be accessed.  Means you need to set up the delegation again for each account - but this at least is an improvement over not being able to do anything at all.
    Once fixed, delegation works just fine.
    Hope this helps someone else solve the issue etc.

  • ICal doesn't show delegation, and generates date and time error messages in /var/log/system.log

    I have a problem with my iCal, when I use my caldav account, I can only see my own calendar on my MBA, on my co-workers MBP it works fine with both my account and his. My co-worker can't see other calendars than his own when he uses iCal on my laptop.
    We can reproduce this problem on his computer by setting Location to Automatic rather than Amsterdam, then after deleting iCal's cache files, the caldav account and setting the Location back to Amsterdam solves the problem for him.
    It does not solve the problem for me (or several other co-workers). We've been looking at this for a few weeks, and we can not find any clear pattern why certain machines have this problem and others don't.
    All machines (both affected and unaffected) are running Mac OS 10.7.2 with iCal 5.0.1
    I've spoken to Apple support over the phone (in the Netherlands), unfortunately, they couldn't help with this.
    So far we've tried numerous location and language settings, but on affected machines nothing appears to solve the delegation problem (which we assume to be connected to the error messages iCal generates)
    Starting iCal yeilds the following error messages in /var/log/system.log:
    Jan  5 11:31:05 dhcp-91 [0x0-0x58f58f].com.apple.iCal[23884]: line 1,1: expecting FREQUENCE, found 'BYDAY' as token type 5
    Jan  5 11:31:05 dhcp-91 iCal[23884]: iCalendar recurrence failure BYDAY=-1SU;FREQ=YEARLY;BYMONTH=3
              line 1,6: unexpected char: '='
    Jan  5 11:31:05 dhcp-91 [0x0-0x58f58f].com.apple.iCal[23884]: line 1,1: expecting FREQUENCE, found 'BYDAY' as token type 5
    Jan  5 11:31:05 dhcp-91 iCal[23884]: iCalendar recurrence failure BYDAY=-1SU;FREQ=YEARLY;BYMONTH=10
              line 1,6: unexpected char: '='
    Jan  5 11:31:05 dhcp-91 iCal[23884]: Unexpected EOF, returning last token as fallback
    Jan  5 11:31:05 dhcp-91 iCal[23884]: VTIMEZONE does not match System Time Zone (Europe/Amsterdam) for 20100105T000000 to 20120105T000000: (
                  "interval: 2001-01-01 01:00:00 +0100, offset: 3600"
              ) != (
                  "interval: 2010-03-28 03:00:00 +0200, offset: 7200",
                  "interval: 2010-10-31 02:00:00 +0100, offset: 3600",
                  "interval: 2011-03-27 03:00:00 +0200, offset: 7200",
                  "interval: 2011-10-30 02:00:00 +0100, offset: 3600"
              BEGIN:VTIMEZONE
              X-LIC-LOCATION:Europe/Amsterdam
              TZID:Europe/Amsterdam
              BEGIN:DAYLIGHT
              TZOFFSETFROM:+0100
              TZNAME:CEST
              TZOFFSETTO:+0200
              DTSTART:19700329T020000
              END:DAYLIGHT
              BEGIN:STANDARD
              TZOFFSETFROM:+0200
              TZNAME:CET
              TZOFFSETTO:+0100
              DTSTART:19701025T030000
              END:STANDARD
              END:VTIMEZONE
    Jan  5 11:31:05 dhcp-91 [0x0-0x58f58f].com.apple.iCal[23884]: line 1,1: expecting FREQUENCE, found 'BYDAY' as token type 5
    Jan  5 11:31:05 dhcp-91 iCal[23884]: iCalendar recurrence failure BYDAY=-1SU;FREQ=YEARLY;BYMONTH=3
              line 1,6: unexpected char: '='
    Jan  5 11:31:05 dhcp-91 [0x0-0x58f58f].com.apple.iCal[23884]: line 1,1: expecting FREQUENCE, found 'BYDAY' as token type 5
    Jan  5 11:31:05 dhcp-91 iCal[23884]: iCalendar recurrence failure BYDAY=-1SU;FREQ=YEARLY;BYMONTH=10
              line 1,6: unexpected char: '='
    Jan  5 11:31:05 dhcp-91 iCal[23884]: Unexpected EOF, returning last token as fallback
    Jan  5 11:31:05 dhcp-91 iCal[23884]: VTIMEZONE does not match System Time Zone (Europe/Amsterdam) for 20100105T000000 to 20120105T000000: (
                  "interval: 2001-01-01 01:00:00 +0100, offset: 3600"
              ) != (
                  "interval: 2010-03-28 03:00:00 +0200, offset: 7200",
                  "interval: 2010-10-31 02:00:00 +0100, offset: 3600",
                  "interval: 2011-03-27 03:00:00 +0200, offset: 7200",
        "interval: 2011-10-30 02:00:00 +0100, offset: 3600"
              BEGIN:VTIMEZONE
              X-LIC-LOCATION:Europe/Amsterdam
              TZID:Europe/Amsterdam
              BEGIN:DAYLIGHT
              TZOFFSETFROM:+0100
              TZNAME:CEST
              TZOFFSETTO:+0200
              DTSTART:19700329T020000
              END:DAYLIGHT
              BEGIN:STANDARD
              TZOFFSETFROM:+0200
              TZNAME:CET
              TZOFFSETTO:+0100
              DTSTART:19701025T030000
              END:STANDARD
              END:VTIMEZONE
    And when I close iCal I get:
    Jan  5 11:33:25 dhcp-91 [0x0-0x592592].com.apple.iCal[23894]: token mismatch: 4 != 5

    I'm seeing the same thing, and I can't even find where OS X stores calendars on disk anymore...

  • Why cant i change user password or pwdlastset after delegation for only certain users in an ou?

    I remembered a while ago I used delegate control to assign the ability to reset pwd and reset change on next logon.  It seems to work for some users but not others in same ou.  effective permissions shows I have write access to the attribute for
    the user; see imgur link below.  the box for change pwd at next logon is gray.  attribute editor tab doesn't allow me to edit it either.  domain admins can change it.  I'm wondering what else I should check out cus everything I know says
    I have the right to change it.
    forest / domain level 2003
    http://imgur.com/1VHuh7h
    mydomain\Allow Reset Win Pwd   was used for delegation and the user trying to change the password is a part of that group. they are also a member of account operators
    Owner: mydomain\Domain Admins
    Group: mydomain\Domain Admins
    Access list:
    Allow BUILTIN\Pre-Windows 2000 Compatible Access
                                          SPECIAL ACCESS
                                          READ PERMISSONS
                                          LIST CONTENTS
                                          READ PROPERTY
                                          LIST OBJECT
    Allow BUILTIN\Pre-Windows 2000 Compatible Access
                                          SPECIAL ACCESS
                                          READ PERMISSONS
                                          LIST CONTENTS
                                          READ PROPERTY
                                          LIST OBJECT
    Allow mydomain\Domain Admins          SPECIAL ACCESS
                                          READ PERMISSONS
                                          WRITE PERMISSIONS
                                          CHANGE OWNERSHIP
                                          CREATE CHILD
                                          DELETE CHILD
                                          LIST CONTENTS
                                          WRITE SELF
                                          WRITE PROPERTY
                                          READ PROPERTY
                                          LIST OBJECT
                                          CONTROL ACCESS
    Allow mydomain\Enterprise Admins      SPECIAL ACCESS
                                          READ PERMISSONS
                                          WRITE PERMISSIONS
                                          CHANGE OWNERSHIP
                                          CREATE CHILD
                                          DELETE CHILD
                                          LIST CONTENTS
                                          WRITE SELF
                                          WRITE PROPERTY
                                          READ PROPERTY
                                          LIST OBJECT
                                          CONTROL ACCESS
    Allow BUILTIN\Administrators          SPECIAL ACCESS
                                          DELETE
                                          READ PERMISSONS
                                          WRITE PERMISSIONS
                                          CHANGE OWNERSHIP
                                          CREATE CHILD
                                          DELETE CHILD
                                          LIST CONTENTS
                                          WRITE SELF
                                          WRITE PROPERTY
                                          READ PROPERTY
                                          LIST OBJECT
                                          CONTROL ACCESS
    Allow NT AUTHORITY\Authenticated Users
                                          SPECIAL ACCESS
                                          READ PERMISSONS
                                          LIST CONTENTS
                                          READ PROPERTY
                                          LIST OBJECT
    Allow NT AUTHORITY\SYSTEM             FULL CONTROL
    Allow mydomain\Allow Reset Win Pwd    SPECIAL ACCESS   <Inherited from parent>
                                          READ PROPERTY
    Allow BUILTIN\Pre-Windows 2000 Compatible Access
                                          SPECIAL ACCESS   <Inherited
    from parent>
                                          READ PERMISSONS
                                          LIST CONTENTS
                                          READ PROPERTY
                                          LIST OBJECT
    Allow BUILTIN\Terminal Server License Servers
                                          SPECIAL ACCESS   <Inherited
    from parent>
                                          READ PERMISSONS
                                          LIST CONTENTS
                                          WRITE SELF
                                          WRITE PROPERTY
                                          READ PROPERTY
    Allow mydomain\Enterprise Admins      FULL CONTROL   <Inherited from parent>
    Allow BUILTIN\Pre-Windows 2000 Compatible Access
                                          SPECIAL ACCESS   <Inherited
    from parent>
                                          LIST CONTENTS
    Allow BUILTIN\Administrators          SPECIAL ACCESS   <Inherited from parent>
                                          DELETE
                                          READ PERMISSONS
                                          WRITE PERMISSIONS
                                          CHANGE OWNERSHIP
                                          CREATE CHILD
                                          LIST CONTENTS
                                          WRITE SELF
                                          WRITE PROPERTY
                                          READ PROPERTY
                                          LIST OBJECT
                                          CONTROL ACCESS
    Allow mydomain\Delegate-Join-Domain-Rights
                                          SPECIAL ACCESS for computer  
    <Inherited from parent>
                                          CREATE CHILD
    Allow Everyone                        SPECIAL ACCESS for computer   <Inherited from parent>
                                          CREATE CHILD
    Allow BUILTIN\Pre-Windows 2000 Compatible Access
                                          SPECIAL ACCESS for Account Restrictions
                                          READ PROPERTY
    Allow BUILTIN\Pre-Windows 2000 Compatible Access
                                          SPECIAL ACCESS for Account Restrictions
                                          READ PROPERTY
    Allow BUILTIN\Pre-Windows 2000 Compatible Access
                                          SPECIAL ACCESS for Logon Information
                                          READ PROPERTY
    Allow BUILTIN\Pre-Windows 2000 Compatible Access
                                          SPECIAL ACCESS for Logon Information
                                          READ PROPERTY
    Allow BUILTIN\Pre-Windows 2000 Compatible Access
                                          SPECIAL ACCESS for Group Membership
                                          READ PROPERTY
    Allow BUILTIN\Pre-Windows 2000 Compatible Access
                                          SPECIAL ACCESS for General Information
                                          READ PROPERTY
    Allow BUILTIN\Pre-Windows 2000 Compatible Access
                                          SPECIAL ACCESS for General Information
                                          READ PROPERTY
    Allow BUILTIN\Pre-Windows 2000 Compatible Access
                                          SPECIAL ACCESS for Remote Access Information
                                          READ PROPERTY
    Allow BUILTIN\Pre-Windows 2000 Compatible Access
                                          SPECIAL ACCESS for Remote Access Information
                                          READ PROPERTY
    Allow mydomain\Cert Publishers        SPECIAL ACCESS for userCertificate
                                          WRITE PROPERTY
                                          READ PROPERTY
    Allow BUILTIN\Windows Authorization Access Group
                                          SPECIAL ACCESS for tokenGroupsGlobalAndUniversal
                                          READ PROPERTY
    Allow BUILTIN\Terminal Server License Servers
                                          SPECIAL ACCESS for terminalServer
                                          WRITE PROPERTY
                                          READ PROPERTY
    Allow mydomain\Allow Reset Win Pwd    SPECIAL ACCESS for pwdLastSet   <Inherited from parent>
                                          WRITE PROPERTY
    Allow BUILTIN\Pre-Windows 2000 Compatible Access
                                          SPECIAL ACCESS for Account Restrictions  
    <Inherited from parent>
                                          READ PROPERTY
    Allow BUILTIN\Pre-Windows 2000 Compatible Access
                                          SPECIAL ACCESS for Logon Information  
    <Inherited from parent>
                                          READ PROPERTY
    Allow BUILTIN\Pre-Windows 2000 Compatible Access
                                          SPECIAL ACCESS for Group Membership  
    <Inherited from parent>
                                          READ PROPERTY
    Allow BUILTIN\Pre-Windows 2000 Compatible Access
                                          SPECIAL ACCESS for General Information  
    <Inherited from parent>
                                          READ PROPERTY
    Allow BUILTIN\Pre-Windows 2000 Compatible Access
                                          SPECIAL ACCESS for Remote Access Information  
    <Inherited from parent>
                                          READ PROPERTY
    Allow BUILTIN\Terminal Server License Servers
                                          SPECIAL ACCESS for accountExpires  
    <Inherited from parent>
                                          WRITE PROPERTY
    Allow BUILTIN\Terminal Server License Servers
                                          SPECIAL ACCESS for Terminal Server
    License Server   <Inherited from parent>
                                          WRITE PROPERTY
                                          READ PROPERTY
    Allow NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERS
                                          SPECIAL ACCESS for tokenGroups  
    <Inherited from parent>
                                          READ PROPERTY
    Allow NT AUTHORITY\SELF               SPECIAL ACCESS for Private Information   <Inherited from parent>
                                          WRITE PROPERTY
                                          READ PROPERTY
                                          CONTROL ACCESS
    Allow Everyone                        Change Password
    Allow NT AUTHORITY\SELF               Change Password
    Allow mydomain\Allow Reset Win Pwd    Reset Password   <Inherited from parent>
    Permissions inherited to subobjects are:
    Inherited to all subobjects
    Allow mydomain\Enterprise Admins      FULL CONTROL   <Inherited from parent>
    Allow BUILTIN\Pre-Windows 2000 Compatible Access
                                          SPECIAL ACCESS   <Inherited
    from parent>
                                          LIST CONTENTS
    Allow BUILTIN\Administrators          SPECIAL ACCESS   <Inherited from parent>
                                          DELETE
                                          READ PERMISSONS
                                          WRITE PERMISSIONS
                                          CHANGE OWNERSHIP
                                          CREATE CHILD
                                          LIST CONTENTS
                                          WRITE SELF
                                          WRITE PROPERTY
                                          READ PROPERTY
                                          LIST OBJECT
                                          CONTROL ACCESS
    Allow mydomain\Delegate-Join-Domain-Rights
                                          SPECIAL ACCESS for computer  
    <Inherited from parent>
                                          CREATE CHILD
    Allow Everyone                        SPECIAL ACCESS for computer   <Inherited from parent>
                                          CREATE CHILD
    Allow NT AUTHORITY\SELF               SPECIAL ACCESS for Private Information   <Inherited from parent>
                                          WRITE PROPERTY
                                          READ PROPERTY
                                          CONTROL ACCESS
    Inherited to group
    Allow NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERS
                                          SPECIAL ACCESS for tokenGroups  
    <Inherited from parent>
                                          READ PROPERTY
    Inherited to computer
    Allow NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERS
                                          SPECIAL ACCESS for tokenGroups  
    <Inherited from parent>
                                          READ PROPERTY
    Inherited to group
    Allow BUILTIN\Pre-Windows 2000 Compatible Access
                                          SPECIAL ACCESS   <Inherited
    from parent>
                                          READ PERMISSONS
                                          LIST CONTENTS
                                          READ PROPERTY
                                          LIST OBJECT
    Inherited to inetOrgPerson
    Allow BUILTIN\Pre-Windows 2000 Compatible Access
                                          SPECIAL ACCESS   <Inherited
    from parent>
                                          READ PERMISSONS
                                          LIST CONTENTS
                                          READ PROPERTY
                                          LIST OBJECT
    Allow BUILTIN\Pre-Windows 2000 Compatible Access
                                          SPECIAL ACCESS for Remote Access Information  
    <Inherited from parent>
                                          READ PROPERTY
    Allow BUILTIN\Pre-Windows 2000 Compatible Access
                                          SPECIAL ACCESS for General Information  
    <Inherited from parent>
                                          READ PROPERTY
    Allow BUILTIN\Pre-Windows 2000 Compatible Access
                                          SPECIAL ACCESS for Group Membership  
    <Inherited from parent>
                                          READ PROPERTY
    Allow BUILTIN\Pre-Windows 2000 Compatible Access
                                          SPECIAL ACCESS for Logon Information  
    <Inherited from parent>
                                          READ PROPERTY
    Allow BUILTIN\Pre-Windows 2000 Compatible Access
                                          SPECIAL ACCESS for Account Restrictions  
    <Inherited from parent>
                                          READ PROPERTY
    The command completed successfully

    I think this is a problem with the user object rather than the ou.  Reasoning is that I can reset a password for a user in the same OU but not for another user in the same OU.  Two users, same ou.  I can reset one but not the other.  
    Effective Permissions shows I am granted permisiion to do so.
    I believe the error was access denied when we tried to change the password via vbscript.
    @seansobey - I applied the delegation at a ou higher in the tree.  I forget how I had it apply down the tree but I confirmed that the acl is correct
    and applied to the user
    @Travis Vogel - It looks like the user with this problem is a part of Domain Users.  I think the ACL is applied to the user because it shows in
    the security window and effective permissions shows I have permission to reset the password.  However, I see this other user is a part iof the builtin user group and the problematic user account is not.  I may try adding the problematic user account
    to that group and testing.  It'll have to wait until tomorrow though.

  • Google Calendar alarms not working in iCal when synced via delegation

    If I set up syncing to my shared Google calendars using Google's Calaboration app, I get a half dozen or more "Request Error, Calendar could not be found" messages a day along with the annoying bouncing iCal icon in the dock.
    If I set up syncing via the delegation method — as per Google's general syncing instructions (http://www.google.com/support/calendar/bin/answer.py?answer=99358#ical) as well as this Google Calendar forums thread (http://www.google.com/support/forum/p/Calendar/thread?tid=210c119ea4d2d37e&hl=en) — iCal fails to display event alarms (i.e., the pop-up alert window).
    I need the alarms, so the only thing I can think to do is to tell iCal to sync with gCal less frequently.

    Hi Guys,
    Having something similar here with Google and ical, seems to be related to when using Google Enterprise Apps for me and a third party provider is in use. In this case a SAML provider. It allows me to get to a login page and asks me which Apps I would like to allow to access my Google Calendar. Once I have made my selections and hit ok it then gives me a pop up message saying that authentication has failed. This is strange as I have had to authenticate with Google to be able to access the application sync in the first place.

  • Problem in creating a delegation

    Hi Everybody,
    I am facing a very wiered problem.I have created my custom bus object with supertype as BUS2010010 .But when I am creating a delegation for this bus object it is saying select a valid delegation type...
    Any thoughts on this error...
    Regards,
    Narsingh

    Hi Narsingh,
    Pls have a look at following thread, looks like your problem is similar to this one!
    https://forums.sdn.sap.com/click.jspa?searchID=1421067&messageID=3085273
    Hope this helps.
    Regds,
    Akshay Bhagwat
    PS: Some points would be nice if it helps
    Link will open as Re: Need to assign the supertype BO to subtype BO? in browser, please remove last '?' , and you will be able to see the content. Still if you could not refer it, let me know.
    Message was edited by:
            Akshay Bhagwat

  • IPv6 Delegated Prefixes no longer working?

    ATTENTION PeterGrace
    Your post was removed to a secure area out of public view because it violates forum posting guidelines.
    Forum Guidelines state >>> clickable link http://forums.comcast.com/t5/Forum-Guidelines/Posting-Guidelines/td-p/866289 which everyone should read BEFORE making a first post
    Please don't;
    Post personal information in the forums
    Please do your best to keep your identity and personal information safe. This includes:
    Your full name
    Your telephone number
    Your Physical/Mailing Address
    Email addresses
    Credit Card numbers
    Account numbers
    Personal public IP addresses
    Modem MAC address and / or serial number <<<<<<<<<<<<<<<<<<<<<
    Active phishing links
    Other personally identifiable information
    Here is your post with the information removed;
    Hi there!
    Has Comcast stopped assigning delegated prefixes for users who request them? I had my router setup to request a /60 via IA-PD but just today it appears to have stopped. I'm still getting an ipv6 address on the dhcpv6 solicit, but no more delegated prefixes. Thinking that the problem might be solved with a firewall software update, I upgraded to the latest release version but the same problem persists. Here's my IAID/DUID to aid in tracking down the issue.
    IAID: XXXXXXXXX
    DUID: XXXXXXXXXXXXXXXXXXXXXXXXXXX
    EDIT: Cablemodem HFC MAC: XXXXXXXXXXXXXXXX (found on surfboard diagnostic page)
    Let me know what other info I might provide to aid in diagnostics.
    Thanks in advance!

    Check my PM, I see PD being assigned to your device.
    -Chirag

  • To many security approvals need to use my Google maps! (Running KitKat)

    Now that my Verizon S3 phone has been updated to KitKat the number of security boilerplate approvals needed to use anything related to maps or GPS is unacceptable.
    I can't leave the GPS on as it drains that battery. So here is the problem:  I'm driving along and I need to see my maps, before I would just hit the map button and I would see the map in the approximate area, no GPS required.  Now when I do the same, I get a box for settings, I click on that and it sends me to a Location page where I need to turn on the GPS, now I need to Agree that I have turned on the GPS, now I get another box to Agree that Google apps are collecting my location info, at this point I need back step out to the map app to see where I'm at.
    Most users of the maps app will use it while driving (even if you don't think it's a good idea).  I don't think going from 1 step to 5 is making the situation any safer, it's now takes many more seconds of not looking at the road to getting the app working then it had before.
    If you have a fix for this, that would be great!

    Thanks for it, I was too looking for the hello world example
    of using externalInterface to load a Google Map into Flash using
    AS2, I had asked this question many here, but did not get proper
    answer, when I had googled I had got this page, I got the answer.
    Thanks again & hope I will get more info from this forum.

Maybe you are looking for

  • How can netweaver to integrate with IC WebClient

    Hi, all, I have installed netweaver 2004s SP16. I want to mockup a call center environment. I have read some document. But I still have some questions: 1) Where can I have IC WebClient? Does netweaver have one with it? I know mySAP has, BUT I can not

  • Airport Express and Linksys WAG200g

    Hi, I have the above. A PC connected via THe Airport Express is set to WPA-Mixed. I have a MacBook which I'm using to attempt to extend the network to play iTunes via the AE. Both Mac and PC have open iTunes. I use the Mac utility to set the password

  • Re-register a second/third hand product

    Hi, i have bought a Macbook Pro third hand. I can't register it, because it maybe is still tied to the Apple ID of the original first owner, whom i have no contact to. I have no other proof of purchase than it's appearance in my iCloud and that i am

  • Cant create bookmarks in the bookmarks toolbar panel

    Hi guys I cannot create any bookmarks in the bookmarks toolbar panel. When ever I add a website to the bookmark toolbar panel, it is not displayed in the bookmarks toolbar panel. If I go to bookmarks menu and check under bookmarks toolbar, all the we

  • Why are the two firewire ports on the back of my iMac diffferent?

    I currently have an external hard drive plugged in to one firewire port. But I noticed that I cannot fit my iPod connector into the other firewire port. Why? Intel-Based iMac 24" Mac OS X (10.4.10)