Basic steps in creating an authorization group/role?

Hi,
What are the basic steps followed in creating an authorization group and role?

HI,
http://help.sap.com/saphelp_wp/helpdata/en/52/6714b6439b11d1896f0000e8322d00/frameset.htm
Steps,
Go to PFCG
Enter role name say ZSALES ORDER PROCESSING and click on single role
Enter discription and save
Then click on MENU tab,then click on transaction and maintain t-codes like VA01,VA02,VA03 and click on assign transactions and save
Then click on AUTHORIZATION tab and click to Change autorization data,then it will ask for orgz. level maintain orgz.data or click on FULL Authorization
Then you can able to see modules from where the the transaction code belongs(SD)
Expand it to lower level node and maintain autorization for Perticular sales document, sales area
Then save and click on GENEREATE ICON (Shift+F5)
Now go to tab USER and assign users
Click on user comparision >> Complete comparision
Now when the assigned user log in syatem system will display this role for user and he/she may authorization for perticular sales document and sales area depending uppon your authorization provided in this role.
You can see existing roles and copy from existing one
kapil

Similar Messages

  • What are the basic steps for creating a content repository?

    I am trying to create a document store on a file system (fsdb) that will hold files that are ftp's to that location. Is this possible using KM? If so, what are the basic steps for creating a file system repository and using it through KM? I have found stuff on help.sap.com but that only tells you what each component does not what actual steps need to be taken to setup KM, such as user rights , creating an entry point, so that all of KM is not visible, etc...
    If anyone knows of any guides that show a step by step process that would be great too.
    Thanks
    Paul

    Hi Paul
    First of all you need to create a new repository
    Suppose you want to add all the documents under folder Paul under C: Drive
    (Even you can put whole documents of C: drive into Paul)
    Navigate to System Admin -> System Configuration -> Knowledge management -> Content Management -> Repository Manager -> File System Repository
    There you can create a new directory by clicking on button New
    Give the parameters as follows :-
    Name               :           Anything you like
    Description       :           Anything you want
    Prefix (must start with /)  :  Probably same as your repository name like \Paul
    Lookup mode : caseless
    Root Directory   :  C:\Paul
    NOTE:  This is the trick. You need to give the proper path means folder path which you want use as repository)
    Repository Services  :  Any services you want
    Property Search : Managercom.sapportals.wcm.repository.manager.generic.search.SimplePropertySearchManager
    Security Manager         :           AclSecurityManager
    ACL Manager Cache   :           ca_cm_rep_acl
    The save it
    Now see whether the same repository is coming under KM Content or not, if not may be after restart it will come.
    I think the above information will help you. If still you have problem, please feel free to contect me.
    Regards,
    Chamkaur

  • Basic Steps to create a web dynpro program

    Hi Gurus,
    I am an Abaper and i am very much interesting in Webdynpro... i don't have basic knowledge on Web Dynpro...
    So can any one of you provide me the basic steps to create a program or If you have any docs then kindly share with me
    Regards
    Sameer([email protected])

    Hi
    This link will help you
    http://help.sap.com/saphelp_nw04s/helpdata/en/77/3545415ea6f523e10000000a155106/frameset.htm
    you can also search sdn for more helps and examples
    Also check this thread
    https://forums.sdn.sap.com/click.jspa?searchID=9213934&messageID=4627099
    Regards
    Sarath

  • I want to create a authorization group for  cic0 tcode.

    i want to create a authorization group for cic0 tcode.
    in detail...
    in  cic0 tcode  i will enter business partner name
    and press enter it gives me list of  same names..
    i want to restrict as per the region..there...
    for exapmle....
    if i enter name as raja
    it gives me a list of raja in all region
    but i want for a particular region....
    how to create a authori object.....................
    Regards
    Anbu

    https://www.sdn.sap.com/irj/sdn/go/portal/prtroot/docs/library/uuid/a92195a9-0b01-0010-909c-f330ea4a585c
    If you start SU21, find the authorization object and double click on it you should be able to see who the author is.
    Or you can findout through SUIM

  • Need help with basic steps in creating ebook

    I have a confession: I constantly use workarounds instead of stopping and learning the proper way of using Indesign to create ebooks. I wouldn't say I do it because I'm lazy, but rather because I'm simply inept lol. These are some of the basic steps I take:
    1. create new document: include master text frame (because I want page numbers to show)
    2. paste unformatted text into document
    3. adjust size of master frame to give text suitable margins (since its an ebook, right/left margins same on opposing pages.)
    4. highlight all text, adjust before- and after-paragraph spacing to half of the character leading (so bottom of text is at same point for each page)
    5. go to chapter titles; do page-break so title has its own page; highlight title, choose font, size; create new character style; apply style to other chapter titles (is it possible to create a ctrl + number shortcut to apply character styles?). Notice I didn't create a character style for body text. Should I do that first?
    6. insert page number markers on both master pages, then cover page number with white box on first page of chapters.
    7. drop pictures into textbox so that if more text is added, pictures move with the text.
    That's basically what I do when I create an ebook. Any suggestions as to better/proper way to do these things would be very appreciated.

    1. Master text frames have nothing to do with page numbers and in most cases are totally unnecessary. Set the margins appropriately and place your text.
    2. Without knowing what you're starting with it's impossible to tell if that's a good idea or not. My gut says is it's not. See number 1.
    3. See number 1.
    4. This is what paragraph styles are for.
    5. See number 4.
    6. This is what multiple master pages are for. Stop doing that.
    7. Well, you finally got one right. As my people would say...mazel tov.
    Now, it's time for you stop being inept (your word, not mine) and start learning the right way to do this. First thing you do is buy Sandee Cohen's Visual Quick Start Guide. It's the best InDesign book on the market for beginners. http://amzn.to/plsvxy
    Secondly, check out the video training on Lynda.com. This link will get you a free one week trial: http://bit.ly/fcGpiI
    Bob

  • Steps for creating structural authorization profile using trans. OOSP

    Dears,
    Could someone please guide to the steps for creating a structural authorization profile using transaction OOSP, to authorize on the HR Payroll Area.
    Thanks.
    Reda

    Hi,
    There are comprehensive guidelines on help.sap.com for creation of structural authorizations: http://help.sap.com/saphelp_erp2004/helpdata/en/34/49ba3b3bf00152e10000000a114084/content.htm
    However, please bear in mind that you cannot limit access to certain payroll area with structural authorization. For that you should use standard PA authorization object (you can use field organizational key to store Payroll Area VDSK1 in IT0001):
    P_ORGIN  http://help.sap.com/erp2005_ehp_02/helpdata/en/3e/b8b83b5b831f3be10000000a114084/content.htm
    Cheers

  • MSDS Basic steps to create Material safety data sheet

    Dear Friends ,
    currently i am exploring how to create and Maintain MSDS in SAP
    what are the basic steps to do that , and where those MSDS is integrated to other module
    please give some overview , let me start from there
    Thanks & Regards
    Raj

    HI Raju,
    For Your question "the difference between Real substance and substance"?
    In EHS terminology we consider each material as a substance.
    In SAP EHS, Specification management is categorized into 5 types.
    Substance
    Agent
    Packaging
    Waste code
    Dangerous goods classification
    In substance (1 of the above 5), once again defined as different specification types like:
    Real Substance
    Listed Substance, etc.,
    Real Substance: A real substance is one that physically exists in a company
    For ex: If you take a pharmaceutical industry.
    For making the Anacin Tablet (Substance), We need substances like ASperine, caffeine, etc.,
    These 2 will be called as 2 real substances (physically existing in the company).
    These 2 real substances can be used in some other substance (Material) preparations.
    Listed Substance: substance whose properties are described in laws and scientific literature.
    listed substances are not manufactured, traded, or procured.
    For Second Question: what is Pharse ? and where it is used?
    Phrase is a Standardized text that can be used in EH&S reports like MSDS & Trem cards, etc.,
    *********************************XXX*************************************XXX*************************
    Now I come to your main question " Basic steps of MSDS Creation"
    MSDS is a form with data regarding the properties of a particular substance.
    We use SAP EH&S, "Product safety" module to maintain the MSDS.
    It is one of the legal requirement to maintain the Information about the chemicals, which are using in the industry.
    There is a standard format with 16 steps using globally For MSDS.
    1. Product and Supplier Identification.
    2. Composition
    3. Hazards Identification
    4. First Aid measures
    5. Fire fighting measures
    6. Accidental measures
    7. Handling storage
    8. Exposure controls
    9. Physical and chemical Properties
    10.Stability & Reactivity
    11.Toxicological Information
    12.Ecological Information
    13.Disposal consideration
    14.Transport Information
    15.Regulatory Information
    16.Other Information
    We need to maintain appropriate data in our database, to retrieve the report as mentioned above.
    Integration:
    Main integration with MM (material Management) Module, by assigning the material with substance.
    Second Integration with SD module, if customer requirement is to extract the MSDS for each delivery.
    (Not necessary for MSDS reporting)
    Regards,
    kamal

  • Hi BSP basic steps to create a BSP

    Hi this is sridhar SAP XI consultant,
    i just need notes to create a BSP and what is views , controller, and page flowlogic with example , and i have work experience in ABAP is it easy to go with BSP ,
    thanking you
    sridhar

    Yes if you know ABAP, you can learn BSP..
    Here you go..
    https://wiki.sdn.sap.com/wiki/display/BSP/Main
    http://www.sapdevelopment.co.uk/webapps/bsp/mvc_example1.htm
    http://help.sap.com/saphelp_nw04/helpdata/en/c8/101c3a1cf1c54be10000000a114084/frameset.htm
    http://help.sap.com/saphelp_47x200/helpdata/en/e5/edae3b59e17646e10000000a11402f/frameset.htm
    http://www.sapdesignguild.org/resources/htmlb_guidance/
    Look at the below links.. Some of them are step by step procedures.
    https://www.sdn.sap.com/irj/sdn/weblogs?blog=/weblogs/topic/24
    http://help.sap.com/saphelp_nw04/helpdata/en/7a/b86041397211d5992200508b6b8b11/frameset.htm
    http://help.sap.com/saphelp_nw04/helpdata/en/7a/b86041397211d5992200508b6b8b11/content.htm
    http://help.sap.com/saphelp_nw04/helpdata/en/4e/ac0b94c47c11d4ad320000e83539c3/content.htm
    https://www.sdn.sap.com/irj/sdn/weblogs
    /people/durairaj.athavanraja/blog/2005/08/21/running-your-first-bsp-application-in-sap-netweaver-04-abap-edition--nsp
    www.thespot4sap.com/Articles/SAP_WAS_BSP_Apps.asp
    www.thespot4sap.com/Articles/SAP_WAS_Overview.asp
    help.sap.com/saphelp_nw04/helpdata/ en/56/e6f3409ade8631e10000000a1550b0/content.htm
    New to BSP
    New to BSP. Where do I start from?
    New to BSP's ....Please Help me.......................
    And also recommend you to go through the BSP Weblogs in the BSP forum...highly Suggested and Helpful
    ;\ New BSP Weblogs
    <i>* Reward each helpful answer</i>
    Raja T

  • Creating Authorization groups for material types

    Hi All,
    I have a requirement to create Authorization groups for different material types we have in our company. Basically these are intended to restric the users from accessing the material master. Different material types needs to be assigned to differnt group of users.
    So if we can create couple of Authorization groups, then I am thinking of assigning the material types to these groups.
    I went to SPRO---Logistics general ---Material master -
    Tools --- Maintain authorization and authorization profiles.                 TCODE : PFCG
    Is this the right path?
    Please advise
    Shane

    Hi All,
    I don't think SPRO---Logistics general -Material master- Tools --- Maintain authorization and authorization profiles is the right path to create new authorization groups.
    Can anyone explain how to create new authorization groups for different material types. The purpose is to create a role and assign this auth. group to this role and provide that security role to specific users.
    Regards
    Shane

  • Assigning of authorization object to authorization group

    I have created an authorization object and I have assigned this to already exsiting authorization group.I would like to assign the authorization object to a new  authorization group.Please confirm how to create an authorizaton group and assigning a authorization object to this new authorization group.

    hi,
    I have got a pdf related to this.
    I shall send that to you if i can get ur mail id.
    I too havent tried this. I dont have any authorizations to do with my server.
    Plz follow the following steps:
    1. Create a user (for example for SAP DEV, TEST, or PRD systems).
    2. Open the SAP Profile Generator (transaction PFCG) available in SAP R/3 versions 4.6 and above.
    3. Create an Activity group (Role since SAP 4.6C), for example ZBODI_ROLE.
    4. Enter a description for the role.
    5. Go to the Authorizations tab and click Change authorization data.
    6. On the Change Role: Authorizations screen, click the Manually,toolbar icon.
    7. The Manual Selection of Authorizations window opens.
    8. Type in the following authorization objects.
    S_ADMI_FCD*
    S_BTCH_JOB
    S_DEVELOP*
    S_DATASET
    S_PATH
    S_RFC
    S_TABU_DIS
    S_TCODE
    S_RS_ADMWB — for SAP BW
    9. Click OK
    10. Return to the Change Role: Authorizations screen.
    11. Manually configure components by entering the values  that support Data Integrator operations include:
    • Administration
    • Batch
    • BW loading
    • Development
    • File access
    • File system access
    • RFC calls
    • RFC calls in BW
    • Table source access
    • Transactions
    12. To complete the security profile, click the Back icon (or press F3), select
    the User tab, enter your SAP user ID for Data Integrator and click the Save icon.
    Regards,
    Sailaja.

  • Regarding ABAP Query authorization group

    Hi Team,
    This is regarding ABAP Query!
    I have created one authorization group, for testing i have assigned my id in authorization group.
    After creation of ABAP query,standard program got generated. Now i have created one transaction code at the last for the ABAP Query.
    Now the isse is even though i have deleted my id from the authorization group. I am able to execute the query from SQ01 and with the Transaction code .
    It should not happen...i want who soever id is mapped to the transaction code ...that member should only be able to run that query, otherwise there is no use of authorization group.
    Please help me out in this case.
    Thanks & Regards,
    Anil Kumar Sahni

    Are you sure that you don't have access to that authorisation group? Execute report RSUSR002. In the 'Authorization Object 1' block inform  S_TABU_DIS in 'Auth.Object' and accept. Then inform Activity=03 and Auth.Gruop= your group.
    You will get a list of all the users which, theoretically, will be able to execute the query. If you press 'Roles' or 'Profiles' in the toolbar of the listing you will get to know why you have authorisation. May be you have the SAP_ALL profile.
    Also, one more thing to take into account: how have you created your transaction? Is it referring directly to the generated report? Then it is an error, you should execute program SAP_QUERY_CALL. Read this post: [Relate transaction to query;

  • Authorization groups in MM01

    I'm trying to restrict material creation by material type, but with no positive results.
    First I created an authorization group via SE54 and then asigned it to the material type via T134. Then I add the authorization group in object M_MATE_MAR to the role but this didn't work.
    I appreciate your help!
    Thanks in advance.
    Rosina Fernandez

    Hi Rosina,
    Just to clarify, do you want for the role in question to only allowed creation of material of type "WERB" in group "ZMM1" and no other material types?
    if so, the other materials types also need to be added to a authorisation group. If no authorisation group is assigned to a material type, that material type will not be checked for M_MATE_MAR access.
    i.e. assign materials types that shouldn't be created by this role in group ZMM0 and provide access to this group in roles that should be allowed.
    Hope this make sense.
    John.

  • Authorization Group in Campaign and Marketing plan

    Hi,
    I have a requirement as campaigns assigned with "X" authorization group, should be viewed/changed by certain set of users. How can I do this? I have created 3 authorization group and assigned to user's PFCG role and also in 3 different campaigns viz  but system allowing user to make changes in all of them. Am I missing something?
    Please suggest.
    Regards,
    Nikhil

    Hi PP,
    I have campaign type lets say "Brand Promotion". User should be able to change/view/delet/create it. But if the authorization group  say XXXX assigned to this campaign and if user is not give authorization for this auth group in role under object CRM_CPGAGR ,then user should not be allowed to make changes in the campaign.  How can I achieve both of these functionality together? which are all auth objects involved in this?
    I want to restict user from changing campaign if not allowed for XXXX authorization group. Even if he is allowed for campaign type "Brand Promotion".
    Regards,
    Nikhil

  • Authorization Group in CV01n Document Data tab

    Hi SAP Gurus,
    I went on to Configure the Authorization groups at  spro / Document Management / Approval Tab,
    but the same is not appearing in CV01N create document, Basic data tab. Screen......
    can any one explain how to configure this Authorization Group and make use of this Authorization Group
    i tried in PFCG, at object C_DRAW_BGR, also but the authorization groups i have created is not displayed at all.
    what is the Configuration missing and to work with Authorization groups.
    please Advice
    Points Awaiting
    Thanks and Regards
    Kumar

    Dear Punam,
    Thanks for ur reply. i have created the authorization groups in SPRO at the approval Tab,
    and also can see the Field Authorization Group in CV01N basic data Field but
    By pressing F4 or searching i could not find my Auth groups created there,
    Nor i could find them at PFCG, at  C_DRAW_BGR objects, at BEGRU
    where has my created Auth group gone,
    please explain how to work with Auth groups. where and all it has to be assigned and linked.
    How to use Authorization Groups for Digital signatures and restrict users For accessing Documents And Original files specifically.
    Thanks and regards
    Kumar

  • Assigning Authorization group to ZTcode

    Hi All,
    I have created one Authorization group to one Zprogram by running the program RSCSAUTH and want to assign it to custom ZTcode.
    But if we go to SE93 there it asking Authorization object, wt is Auth.object and how can i assign Auth.group to ZTcode.
    Anybody help me in this....
    Balu.
    Edited by: Bala Chandar on Sep 2, 2008 4:46 PM
    Edited by: Bala Chandar on Sep 2, 2008 5:01 PM

    How can i create a role and assign Auth.object to it using PFCG tcode, can u explain in detail plz..
    We can create Auth.object from SU21.than assign Auth.object  to specific role which can be maintain with PFCG.Often we need not to create many roles as SAP already provide Roles we just need to use them and assign to our Authorization obj which created by SU21
    For more help just go thru SAP help which is already there for PFCG just press Ctrl+F3 in PFCG.
    Amit.

Maybe you are looking for

  • 802.1X with IP Phone is posible with Nortel??

    Hello, My Scenary is that I have configured 802.1X in Cisco Swithches C3750/C3560/C2960, I configured 802.1x in the all Switches, but i have 100 IP Phone Nortel with 2 ports one port connected to Switch and the other port connected to PC. I know that

  • No Connection to database server

    Hi, I want to get access from an application server to an oracle database server via a web application (jsp file). Therefore I use Oracle 10g JDeveloper. So I have installed Apache Tomcat (version 5.5.15) at the application server and then I built a

  • Configuration of ESR in CE- restart Problem

    We executed the ESR configuration by selecting the ESR configuration profile in ConfigTool. But due to some error the configuration task failed and as a result the ESR-SLD linkage was not configured properly. Now we have the local SLD of NW CE SP03 u

  • Formating table

    I use a table on a template to format web pages. For example the table is used to structure the site evenly throughout, but it is invisible at run time. Tables are a problem with accessability. W3C recommend using a style sheet. I do not know how to

  • Why, after all these years, can't Thunderbird auto-detect character encoding

    judging by all the existing messages and complaints about this, not to mention erroneous posts that say the problem is solved when it isn't, I have to conclude Mozilla either doesn't believe this is a problem or doesn't care to fix it. The bottom lin