Authorization object for InfoArea access
Hi,
what authorization object should i use to give access to just a few InfoAreas on workbench and Bex ?
thx
Hi,
As you are having S_RS_ICUBE in your role, drill down the complete tree, now you can see Info cube, Info area, activity etc options. at info area level give the info area name and if you want to restrict for few info cubes, you can give cube names as well. now goto activity tab Display (03), Refresh(66) and maintain(23), this depends on your requirment. same you can give in S_RS_ODSO and S_RS_COMP and S_RS_COMP1, if you have * here, it will overwrite the restrictions of other object.
Similar Messages
-
Authorization object for BW access from BOBJ
Hi gurus,
I have the following error
I log in to BOBJ using BW ID (Single Sign On enabled) and execute a WebI report. This return error WIS 10901. This error eliminated once i add SAP_ALL to the user
Can anyone advice what are object that the user should be granted in the BW side in order to execute the report
Thank you
BRHi
I have created a variable (user exit) for object 0COMP_CODE which will return the list of company code that the user have authorization to using the following codes for the variable
CALL FUNCTION 'RSEC_GET_AUTH_FOR_USER'
EXPORTING
I_IOBJNM = '0COMP_CODE'
I_UNAME = 'BOBJ1'
IMPORTING
E_T_RANGESID = lt_RANGE.
LOOP AT lt_RANGE into ls_RANGE.
MOVE ls_RANGE-low to wa_range-low.
MOVE ls_RANGE-high to wa_range-high.
wa_range-sign = ls_RANGE-sign.
wa_range-opt = ls_RANGE-opt.
APPEND wa_range TO e_t_range.
When I execute the query using analyzer , I have the query result returns without any errors but in BOBJ WebI report Iu2019m getting the following error
Query 1 - GLConsol - SSO
u201CA database error occured. The database error text is: Error in MDDataSetBW.GetCellData. You do not have sufficient authorization. (WIS 10901)u201D
When I change the list of company code that this user have access to * (all company code using the tcode rsecadmin) this error disappear and Iu2019m able to run the WebI report perfectly with all company code listed
Please advice what am I missing
Thanking you in advance -
Authorization object for Object services
Hello together,
I want to know if there is an authorization object for Generic object services functionilty especially the WF options like WF overview, start WF, Archieve WF..............................
My understanding is any user who has access to a particular Business object, can user GOS to view WF stuff..................Is my understanding correct or should we have extra functions.....................
RegardsCheck authorization objects S_OC_ROLE and, for recent releases, S_GOS_ATT.
Regards,
Raymond -
Authorization object for PLANNING PLANT
Hi all,
My client has different Planning plant & Production plant.
If I need to give access to GR for order (MB31), how do I know the authorization object for the Planning plant.
User should be given access to MB31 to the Planning plant & NOT to the Production plannt.
Any idea where we could find the authoriz. objects for a particular field?
Pls advise.Goods Receipt for Production Order: Movement Type M_MSEG_BWF
Goods Receipt for Production Order: Plant M_MSEG_WWF
these are the authorisation objects with activities as ACTVT and WERKS
Maintaine the values for ACTVT as
01 Create or generate,
02 Change
03 Display
04 Print, edit messages
and maintaine the values WERKS (ur plants 4 which u want to give authorisations)
and BWAR ( movement types 4 which u want to give authorisations) -
Adding authorization object for "Function Group"s ?
Is it possible to add any authorization object for any function group ?
We have an issue i.e. whenever user "XYZ" is getting some Windows Excel related error whenever trying call an excel report from BW server. System log related to "XYZ" user shows that -> User "XYZ" has no RFC authorization for the function group "ABCD". The RFC authorization object is S_RFC.
Function Group you can check through SE37->GoTO->Display Function Group
Now is it possible to add authorization for any "Function Group" ?You give authorisation for all function groups by giving auth object S_RFC a * value in field RFC_NAME
However I do not recommend this as giving wide access to RFC's can bypass a lot of the security you have implemented for the users.
In this case, add only the function group that the user requires in this instance into S_RFC -
Authorization Object for Transaction code XSLT_TOOL
Hi Friends
When i try to use transaction xslt_tool the following error appears "You are not authorized to use transaction xslt_tool".
Can anyone give the Authorization object for transaction xslt_tool,
Regards.
WishvaGive access to the transaction in PFCG.
Then use SU53 to highlight any additional access required. -
Authorization Object for Event
Hi,
Could you please let me know if there is an authorization object for restricting based on Event name.
Like a User should be access only one Event in SM64. Remaining Events should not be accessable.
Thanks,
Sai.Hi Sai,
Check this link:
http://help.sap.com/saphelp_nw04/helpdata/en/80/1a6859e07211d2acb80000e829fbfe/frameset.htm
Bye
Dinesh -
Authorization Object for using Object Services
Can you tell me how to limit a users authorization to create or delete attachements using the object services functionality? We'd like to control the addition and deletion of the attachments. Is there a specific authorization object for this functionality?
Thank you, JulieHi julie;
I hope that following are the solution for you problem. Check wheather this is helpful to you or not.
Authorization Object C_DRAW_BGR (Authorization Group)
The following table shows authorization object C_DRAW_BGR. This authorization object allows you to limit access to individual documents.
Fields Possible Values Description
BEGRU (Authorization group) 0000 - ZZZZ Used to restrict the authorizations for document maintenance further.
Authorization object C_DRAW_BGR can be used to restrict access to individual documents. It works like a simple on/off switch. If the check of object C_DRAW_BGR is fine, the user's authorization can be further restricted by checking C_DRAW_TCD (check only based on the document type) or C_DRAW_TCS (check of the
combination of document type and status). At the fifth level there is a BADI called DOCUMENT_AUTH01, which you can use to design your own authority check.
Authorization Object C_DRAW_DOK (Document Access)
The following table shows authorization object C_DRAW_DOK. This authorization object controls which original data of a specific document type there are access authorizations for.
Fields Possible Values Description
ACTVT (Activity) 52 53 54 55 56 57 Change application start Display application start Display archive application Change archive application Display archive Store archive
DOKAR (Document type) Here you enter the document type that access to original data is allowed for.
Authorization Object C_DRAD_OBJ (Object Link)
The following table shows authorization object C_DRAD_OBJ. This object controls which users can process which document info records, based on a combination of activity, object, and status.
Fields Possible Values Description
ACTVT (Activity) 01 02 03 06 Create Change Display Delete
DOKOB (Object) You must enter the data base table for the objects here (for example, MARA for material record).
STATUS (Document status)
if useful rewards points.
Regards,
nitin
Edited by: nitin bhagat on Feb 18, 2008 6:23 AM -
Authorization Object for Cost center
Hi Experts;
We are using SRM 7, classic scenario.
We are copying SRM tcode: BBP_BW_SC4 to a Z report and modify it. The users will be given the access to display the status of thier SC.
How can I restrict the user from displaying the SC of other department's? Is there an authorization object for cost center in SRM? is there any other away to restrict the users from displaying SC related to other depts.
Appreciate your helpby the way, why are you not using the standard SAP powl queries? they anyways restrict you from viewing others SCs except your team
any ways, if you are copying that report this BBP_BW_SC4, then change this
PARAMETERS pa_coce TYPE kostl OBLIGATORY DEFAULT lv_costcenter.
to
PARAMETERS pa_coce TYPE kostl OBLIGATORY DEFAULT lv_costcenter no-display.
Edited by: Soumyaprakash Mishra on Jan 31, 2012 3:48 PM -
Authorization Objects for GL, AP, and PCA
Hi,
What is the difference in:
1. Authorization Objects
2. Facility Objects
3. Profit Center Objects
Where can I find the above objects related to:
1. GL
2. AP
3. PCA (Profit Center Accounting)
Please give me the answer, I will assign points to you.
Thanks in advance.Hi,
1) Make the characterstics like Company code, Controlling Area, Proficenter ..etc as authorization relevent (RSA1)
2) Create the Respective Authorization objects for each of the above Characterstics (RSSM).
3) And assign the Cubes and ODS es to the Authorization Object RSSM
4) Create and use the Authorization variables on the above characterstics in reports
5) maitain the access for all users through the roles by including and maintaining the AOs (created in step 2)
With rgds,
Anil Kumar Sharma .P -
Authorization object for plant on selection-screen
Hi All,
I need to cehck the authorization object for plant on sleection screen..the palnt is select-options.
I have written the code
Declaration of local constants.
CONSTANTS : lc_i(1) TYPE c VALUE 'I',
lc_eq(2) TYPE c VALUE 'EQ'.
REFRESH : r_werks.
LOOP AT s_werks.
IF s_werks-low IS NOT INITIAL.
AUTHORITY-CHECK OBJECT 'M_MATE_WRK' "Check if the user has autorization for the plant.
ID 'ACTVT' FIELD '03'
ID 'WERKS' FIELD s_werks-low.
IF sy-subrc NE 0.
r_werks-sign = lc_i.
r_werks-option = lc_eq.
r_werks-low = s_werks-low.
APPEND r_werks.
ENDIF.
ENDIF.
ENDLOOP.
LOOP AT s_werks.
IF s_werks-high IS NOT INITIAL.
AUTHORITY-CHECK OBJECT 'M_MATE_WRK' "Check if the user has autorization for the plant.
ID 'ACTVT' FIELD '03'
ID 'WERKS' FIELD s_werks-high.
IF sy-subrc NE 0.
r_werks-sign = lc_i.
r_werks-option = lc_eq.
r_werks-low = s_werks-high.
APPEND r_werks.
ENDIF.
ENDIF.
ENDLOOP.
My doubt is will the authorization will check the plants in between 1001 and 2001..suppose i have pplants 1001,1002,1003,1004,2001..Now will the above code will check for all the plants or only 1001 and 2001 if i specify in the select-options.
Regards,
rajHi Raj
First no need to LOOP AT s_werks and check s_werks-high as it will always be present only once in the table s_werks.
Do this
SELECT werks FROM t001w INTO li_werks
WHERE werks IN s_werks.
LOOP AT li_werks.
*check your authority thing here and fill the range
ENDLOOP.
Pushpraj -
Authorization Object for Marketing Attributes
Hi Experts,
We are working with CRM 2007 and use in BP Marketing Attributes. Does someone know if there are any authorization objects for Marketing Attributes? We would like to restrict some of users to see some Attribute sets!
Thank you in advance,
RoulaHi Roula,
Thank you so much for awarding points.
Please note that in Transaction PFCG you have to assign the appropriate three digit attribute set key under the authorization group BGKRL to the authorization object C_KLAH_BKL for assigning attribute sets and to the authorization object C_KLAH_BKP for editing attribute sets.
Please have a look at the Note in the bottom of the page at the following link for further information.
http://help.sap.com/saphelp_crm60/helpdata/en/46/3517cc86e01421e10000000a1553f6/frameset.htm
Regards,
Deepak -
Kindly tell me authorization object for MRP type
Hi friends,
Kind tell me what is the authorization object for MRP type in material master.
Your help is considered more important.
thanks in advance
willaimsHi Willaim,
There is no standard authorization object for MRP type.
Regards,
Alexander -
Kindly give authorization object for mrp type in material master
Hi friends,
Kind tell me what is the authorization object for MRP type in material master.
Your help is considered more important.
thanks in advance
willaimshi,
check your authorisation objects here:
Go to PFCG --> Environment (at menu bar) --> authorization objects --> Display...
Here see for MRP and MM for material managament in the tree structure...
Regards
Priyanka.P -
Mandatory Authorization object for the BO user
Dear All
I am facing some problem for the BO user.
can you let me know what are mandatory Authorization object for BO user to run the dashboard without error.
Fast reply appreciate.
Thanks
HajiDear All
i am working for Analysis Authorization.
i included Analysis Authorisation object to the user.
S_RS_AUTH BI Analysis Authorizations in Role.
when i checked in the BW side its working fine.
when i checked the user in the BO side.
filter values are coming correct, but the values in the column are not showing.
its throwing an error.
kindly help me to solve this issue.
Thanks
Haji
Maybe you are looking for
-
Hi, I am getting a strange problem in RoboHelp CHM file. I am using RoboHelp X5. After compiling the CHM I placed in a network folder for others to access. In this CHM I have only "Contents" tab and "Search" tab. No other check boxes are selected in
-
How to determine which camera took a picture?
Hi, My parents both have Canon Rebel digital cameras and they travel to national parks and other places where they take a lot of pictures. Inevitably, their pictures get jumbled up on their hard drives and then they argue about who took the picture.
-
KT4 Endless reboot.... HELP!!!
i was working and all of a sudden my comp froze and rebooted. i mean i've been having this kind of problem since the beginning. i couldn't get this thing stable. i changed the psu to thermaltake 420w, heatsink to speeze and lowered my temp. and w
-
I have Adobe XI., and someone sent me a document that I want to make changes to. What software do I need?
-
I use yahoo email on my iPhone. I find that it will resend the same email 3 to 5 times, they arrive about 2 minutes apart. Any idea why it would send more than one of the same email and how do I stop it from resending multiple emails??? Thanks, Andy