Authorization for Create Only - No change

Hi,
I need to give certain users authorization to Create an Infotype. Change will not be given to these users.
In Authorization Level, I think we can only specify R (other variations of R like M etc.) or W.
Please let me know on how this can be achieved.
PS: I have looked into using BAPI HRPAD00AUTH_CHECK, but I am not sure on how to implement this for just one infotype.
Thanks for all your help in advance.
Regards,
Ani

Thanks Pavani and Anil for your answers.
Pavani, the basis folks have told that they can give either R/M which are for read authorization or W which is for write. They cannot restrict to just change.
Anil,  what is the authorization level? Does specifying that to 'T', allow for Creating an infotype and "Disallow changes".
Our Authorizations are mostly,
Authorization level - R, M
InfoTtype - 0001,0007
PersonnelArea - *
Employee Group - *

Similar Messages

  • *NO AUTHORIZATIONS FOR CREATING ACCOUNTS IN COMPANY CODE*

    HI
    NO AUTHORIZATIONS FOR CREATING ACCOUNTS IN COMPANY CODE
    SYSTEM MESSAGE:
    No authorization for creating accounts in company code 3333
    Message no. F2305
    System Response
    You cannot access the requested data.
    Procedure for System Administration
    If necessary, include an entry in the user's authorization profile for the authorization object and parameters specified below.
    Authorization object:
    F_KNA1_BUK
    Parameter:
    Company code: 3333
    Actions: 01
    KINDLY THROW UR IDEAS

    Hi,
    You have not been authorized for this transaction. Please speak with your BASIS guy he will give you the authorization.
    Regards,
    Abhee.

  • How to give authorization for create and change particular Condition Type

    Hi...
       In my requirement is , Only one user can be authorized to create and change a particular condition type 'ZABC' in vk11 and vk12 .
    For remaining condition type can be used as in normal .
    How to do this ? How to give authorization for a particular user for particular condition type ?
    Plz guide me ..
    Thanks in advance .
    Deepa .

    Hi Deepa ,
    u can check A.Object V_KOND_VEA, in user profile u can assign condition type or tables.
    have a word with ur basis guy , so he can help u in better way.
    aand also ref FM SD_COND_AUTH_CHECK
    Regards
    Prabhu

  • Authorization for creating Jobs

    Hi everybody,
    which profile or role in su01 is necessary for creating jobs by a program? Until now i can only generate jobs with sap_all.
    regards,
    Sid

    You'll find them through SU03.
    Look at these Authorizations objects
    S_BTCH_ADM, S_BTCH_JOB and S_BTCH_NAM.

  • Authorization for Create a Query

    hi all!
    I need that the users can have access to create queries but I don't have the authorization for this, could you tell me which object i need?
    Thanks!

    Hi Carlo,
    adding to Venkat, there is an other object called:
    <b>S_RS_FOLD</b>
    Display authorization for folder. This object is new in SAP BW 3.0.
    With this the reporting user should only be able to see their Favorites folder and their assigned roles. They cannot look at other InfoAreas to which they have not been granted access.
    Hope it helps.
    Please award points if it is useful.
    Thanks & Regards,
    Santosh

  • Authorization for display only in tx MIGO

    Dear Guru's,
    can we give an authorization for display (i.e.Display material document ) only in Tcode MIGO for particular user ,
    if possible please let us know the authorization object for the same.
    Thanks,
    Ashish.

    Hi,
    Create a custom profile via tcode PFCG.
    Add the required tcode 'MIGO' to the 'Menu' tab.
    Then goto 'Authorizations' and open expert mode for authorization. Here you can control the field values for authorization object. Once done, generate the profile and assign user to role along with user master comparison run.
    Regards,
    Srikishan

  • Authorization for creating activity journal template

    I have log on with salespro role in CRM 7.0.When I try to click the link in UI for creating activity journal template.
    It said that I don't have authorization.
    Could I ask where to control this authorization?
    I thought this should include in the authorization for salespro.
    Thanks

    Hi Jiao,
    Just Check the PFCG role assigned to Salespro role is having authorization for object CRM_ACTJNL
    Regards,
    Dipesh.

  • Authorizations for creating change request in ALRTCATDEF

    Hi all,
    Can any one tell me, what are the roles I should have to create a transport request (change request or task) for saving alert category in ALRTCATDEF transaction in SAP XI?
    Thanks in advance.
    Regards,
    Prasad Babu.

    Hi Prasad,
                       If you have SAP_ALL authorization it will do.
    Regards,
    Vamshi

  • No authorization for creating mapping format

    Hello,
    I want to create a mapping format in the WebUI at the marketing profile (marketing u2013 create u2013 mapping format) and an external list (marketing u2013 create u2013 external list). But I canu2019t create a mapping format or a external list. There is an information u201CYou do not have authorization to createu201D
    Follow things I have done before:
    Tx SU01: I had the necessary roles and profiles
    Tx OOCU:
    - I activated in CRM-MKT-EAL the WF 14000129 (BUS20410  PROCESSWITHERROR and BUS20410  PROCESSWITHOUTERROR)
    - Then I assigned agents. I assigned my user to WS 14000029 and to WS 14000129.
    - Last I defined the WS 14000029 as general task.
    Does anybody know, what else I can do?
    Thank you in advance.
    Best regards, Jasmin

    Hello Jasmin,
    You can use ST01 to perform a system trace and list all the authorization you need to create a mapping format.
    1) Go to ST01 and select only Authorization check then click on Trace on button
    2) Launch the WEB UI and try to create a mapping format again.
    3) Once the message 'You do not have authorization to createu201D  is displayed again, go back to ST01.
    4) Click on Trace off Button and then on Analysis button.
    5) Enter your username and select only Authorization check in the Trace Records
    6) Change the From time to 5 min before you made your test and add 5 min to the Time to
    7) Execute, you will see the list of all actions you performed and the authorization objects required for these actions.
    8) Pay more attention to the lines where the RC code is different to 0. You will then find what authorization object is missing.
    Hope it helps.
    Best Regards.

  • Authorization for creating position

    Hi Experts,
    End user is authorised to create positions.Our basis expert locked the production client ( only display).He told If they want to create positions first they have to create in development then test in quality then to production.
    If so they have to create TR then they have to maintain the tables also.It will be problem for them. Is there any better solution for this.
    Thanks in advance

    In general once the system is being used by the client OM Part will be configured in Production client , so please request ur PM to grant authorisation to the user for the same

  • AUTHORIZATION FOR DISPLAY ONLY

    Hi Friends,
    As per your advices I have copied the SAP_ALL_DISPLAY and changed the ACTVT field to 03 for having the Display mode for all the transactions used..
    But still there are sone transaction where the user can change like FB 02 ,schedule background jobs etc..
    When I have checked the SU24 for the Auth objects...
    Some contain the ACTVT fileds as display but some objects does not have the ACTVT fields they have some other things containing the field values as * with full authorization..
    My question is can we change this to 3 - for display or any other procedure to track the transactions which are not in display mode and change it accordingly..
    Regds,
    Satyanarayana N.

    Hi Satyanarayana,
    Unfortunately your best shot will be checking the whole role manually using PFCG and ensure that the role doesn't contain any additional authorizations. Do this by reviewing all the authorization objects.
    Regards
    Juan

  • Authorization for creating Aggregation Level

    Hi Gurus,
    i cant create AL in the planning modeler, i was reading some notes and i got the next questions:
    1- I got in my profile the next auth objects, but still exist the problem, now appears something about Authorization templates for Integrated planning, where i can get this Auth objects? i do this or a Portal or basis Consultant?
    S_RS_PL_ADMIN
    S_RS_PL_PLANNER
    S_RS_PL_PLANMOD_D----
    > Planning modeler(Dev System)
    You need following auth objects
    S_RS_ALVL --> aggregation levels
    S_RS_PLSE -->planning functions
    S_RS_PLSQ-->planning sequences
    S_RS_PLST-->planning function types
    S_RS_PLENQ-->maintain and display lock settings
    A portal role is required to use the planning modeler.
    2- I read this note and said about import the support packages, this who can do it? me? a basis?
    IP: Content-transferring aggregation levels
    SAP Note Number: 913852
    Support Packages
    Add to Basket Software Component Release Package Name Download
      SAP_BW 700 SAPKW70007 
      SAP_BW 71 710 
      SAP_BW_VIRTUAL_COMP 700 SAPK-70007INVCBWTECH
    Solution
    Import the specified Support Package or implement the attached corrections into your system
    Support Packages
    Add to Basket Software Component Release Package Name Download
      SAP_BW 700 SAPKW70007 
      SAP_BW 71 710 
      SAP_BW_VIRTUAL_COMP 700 SAPK-70007INVCBWTECH
    3- i think applying these 2 solutions i can solve the problem, i asked because i want to be sure to open a case to the related groups to apply this corrections to continue working, thanks Gurus i will really appreciate it

    x

  • Giving grant for creating temporary table only

    hi...
    i want to give grant for creating only temporary tables to a schema.
    no other grants should not be there strictly...
    I have created the following user widout any grants...plss suggest me how can i give the grants for creating only temporary tables..
    create user user_name
    identified by password
    default tablespace table_space
    temporary tablespace TEMP
    profile DEFAULT
    quota unlimited on table_space;
    grant select on V_$SESSION to user_name;
    thanks...
    Edited by: user12780416 on Mar 25, 2011 8:32 AM

    As has been pointed out, it would be **extremely** unusual to want to have a user that could create global temporary tables but not permanent tables. I'm very hard-pressed to imagine a scenario where that would make sense.
    However, if you grant the user the CREATE TABLE privilege but do not grant the user quota on any permanent tablespace, they would be unable to create permanent tables but should be able to create global temporary tables. You'll have to make sure that you don't grant the user UNLIMITED TABLESPACE which would give them unlimited quota on all tablespaces. If you are using 11g and you have enabled deferred segment creation, the users would actually be able to create tables in tablespaces they have no quota on though they would not be able to insert any data in those tables.
    Justin

  • Authorization for super user

    I want to create a super user on the production server who can create and save the queries only (no other authorization). He can save queries only under $TMP.
    For that I have already created role for super user in the transaction PFCG and in business content S_RS_COMP and S_RS_COMP1 I have given all authorization.
    Now User is able to create the query, but when He is going to save it the Error message is coming- 'No authorization for create and change'.
    Please suggest what I am missing.
    Regards,
    Dheeraj

    Hi Dheeraj,
    Have you given auth as per http://help.sap.com/saphelp_nw04/helpdata/en/41/05453caff4f703e10000000a114084/content.htm : Analyst3?

  • Need authorization for business document services attachment list with user status in ps claim for clm2 and clm3

    Dear Friends,
    client wants to restrict the attachment list changing, deletion after the user status sets to close in PS Claims for transaction clm2 and clm3.
    Currently any one can attach documents as GOS and delete even the claim is completed and status is closed.
    How can we restrict all users even who created the claim can not change create and delete attachment list documents once the claim is completed and approved and user status sets to closed.

    HI,
    what is the claim creation transaction in that 01 is for creation 02 is for edit and 03 for display so with the help of basis consultant you can assigned transaction in user's assigned role accordingly.
    But user who is authorize for create claim can not modified or edit once he save the job. this would be limitation.
    Regards,
    Sanjeev

Maybe you are looking for