BDC for PFCG for deletion of user roles

I need to create a BDC for deleting users from roles in PFCG transaction and after deletion you have to click on User comparison in User tab.
Any idea how to compare and delete theusers from role.
It comes in Table control.
1)delete from table control .
I have not been able to see delete from Table programs.
George

Hi
U should consider PFCG trx is enjoy trx so it's not suitable for BDC, what doesn't mean you can't do a BDC program for that trx but it won't be easy.
Anyway you can know the users assigned to certain profile reading table AGR_USERS. I believe PFCG shows them sorted alphabetical, so you can know the position where an user should be, after u should use PAGE UP and PAGE DOWN command to scroll the table control.
Max

Similar Messages

  • Auth objects required for creating super,power,end user roles

    Hi ,
    I need to create 3 roles according to the below requirement. can you tell me what auth objects req inorder to fulfill customer requirement.
    1.     Super User: 
         Have the access to Create/Modify/Delete own queries
         Can create Variables, CKF, Structures, Formulas & RKF at the cube level (global)
    2.     Power User :
         Have the access to Create/Modify/Delete own queries
         Can create Structures, Formulas at the query level
    3.     End User
         Have the access to run and navigate reports at the local level
    Hope I will get reply soon
    Thanks

    Karunakar -
    Few things you have to keep in mind when you are giving access to the reports and queries.
    S_RS_COMP only will not do.
    have you assigned S_RS_COMP1 and S_RS_MPRO for info areas and multi/info providers.
    and one more auth object S_RS_ICUBE for info cubes. you have to assign what ever the info cubes that you need to give access to the users.
    Then only user will get full access.
    precisely in order you can say,
    S_RS_COMP
    S_RS_COMP1
    S_RS_ICUBE
    and S_RS_MPRO.
    These are main auth objects which are related to info cube, info area access and BEx access.
    Hope this would give you clear pic.

  • Problem in BDC for PFCG

    hi all,
    I want to create a BDC for PFCG to create a new role and the assign Transaction to that role.
    After Recording when iam running through SHDB it works fine in foreground but after transfering that recording to ABAP editor (se38) then it is not running. The Error is....
    there are Role and Description field in header when Ok-code = SAVE appear then it is showing a mandatory Saving dialog box and when i press enter throws me out in se38 bdc but when iam running through SHDB recording bdc and when Ok-code = SAVE appear then it is showing a mandatory Saving dialog box and when i press enter it enter Menu tab and it go ahead and works fine.
    __Is there any BAPI to CREATE ROLE AND ASSIGN TRANSACTION TO THAT ROLE for PFCG.__

    Hello,
    FYI i also had the same req. some months back.
    You can make use of the following FMs: PRGN1251 & PRGN1252 fms to update PFCG.
    These tables directly update AGR_1251 & AGR_1252 tables & write the corres. change docs as well
    BR,
    Suhas

  • User Role empty - Cannot connect to DB2

    Hello,
    I'm having trouble with a WLSE 2.13 that we have installed. It doesn't let us access via web to the software; the error that appears when trying to do so is "User role is empty". There also appears a moving banner saying "Database failed to respond correctly" after trying to authenticate the user.
    however, when trying t oaccess through SSH, it works OK.
    This is what I get with a diag all command:
    <<< Executing ALL Diagnostics (except SmartMonTools) >>>
    DIAG: IMAGE -- [Mon Oct 9 08:27:07 UTC 2006]
    (please wait) ... DONE.
    *** PASS: Software image verification passed. ***
    DIAG: BIOS -- [Mon Oct 9 08:28:03 UTC 2006]
    *** Drive model ST340014A, FwRev does not require BIOS patch. ***
    DIAG: DMA -- [Mon Oct 9 08:28:03 UTC 2006]
    Checking disk for DMA errors (please wait) ...
    *** PASS: NO DMA IO errors found. ***
    Checking disk sectors for errors (please wait) ...
    *** PASS: NO disk sector errors found. ***
    DIAG: DB2CLEAN -- [Mon Oct 9 08:32:48 UTC 2006]
    *** PASS: No dump files found. ***
    DIAG: DB2VERIFY -- [Mon Oct 9 08:32:48 UTC 2006]
    *** FAIL: Cannot connect to DB2. Integrity verification failed. ***
    DIAG: SERIALNO -- [Mon Oct 9 08:32:49 UTC 2006]
    *** No Serial Number obtained for this appliance. ***
    So it looks like the DB is corrupt for some reason. We have executed the initdb but no change in the error has been detected.
    This is the result of the show version command:
    (C) Copyright 2006 by Cisco Systems Inc.
    WLSE 1130 Release 2.13.1FCS Mon Aug 14 12:16:20 UTC 2006
    (build number 54)
    Device Limit = 2550
    Build Version (79) Fri Jan 6 23:20:15 UTC 2006
    Uptime: 0 days 0 hours 34 mins
    Linux version 2.4.32-8_WLSEsmp ([email protected]) (gcc version 2.96 20000731 (Red Hat Linux 7.3 2.96-113
    )) #1 SMP Wed Jan 25 13:16:55 PST 2006
    I do think that there may be a sector in the hard drive that is not working (you can see why in the bootlog.txt file that I'm also attaching), but it looks a bit strange that it has only affected the access through the web...
    Any ideas?

    Hi Fernando,
    This might be related to few things:
    - file anisnmp.conf corrupted preventing TomCat to start properly (# reset device-snmp would fix it)
    - database corrupted and not accessible at all
    (... reiniting the db might be the only solution)
    - user roles corrupted
    (would need to delete the user roles to reconstruct them)
    Opening a shell and hit "#show tomcatlog" would give you a more accurate idea.
    In case of broken anisnmp.conf, the error message is pretty explicit.
    In case of other problems, that would need more investigation by TAC.
    Before doing anything, remind to perform backups!
    Pierre

  • Selling my MAC, should I delete my user profile or completely reset?

    Hello all,
    selling my MacBook Pro to my friend. What's the best thing to do to "clean" my MacBook for him? Delete my user or "restore" mac?
    I have "lion" installed so Im pretty sure it wont restore to that, probably the old operating system it had before I installed Lion.
    Thoughts?
    Michael

    steve359 wrote:
    As has been explained to me, you cannot sell a pre-Lion-originally system with your-purchased Lion on it.  You need to retore to the original OS disks and let the new user buy the upgrades.  SL I think is transferrable as an OS-upgrade if the disks travel with it, but not Lion.
    Thanks. I was kind of thinking it might be like that but wasn't sure since it really represents a reversal in how things used to operate. Of course somebody stands to a big advantage since now if, say a Mac makes its way through 3 owners, all 3 have to buy the Lion upgrade. Of course you also now cannot sell an unwanted OS anymore.  And if Apple continues its pattern of no longer selling anything but the last 2 OS versions, all those Macs out there will useless a couple of years down the road since if somebody offered me Michael Drabousky1's Mac 3 years from now and I can no longer get Lion for it, I won't buy it.  Goodie, goodie (for somebody), all those old Macs will soon be unusable and everybody will have to buy more new hardware! 

  • User roles were deleted for the mass change in CUA system.

    Dear Team,
    I have assigned a role to a set of users in CUA via SU10 to a specific child system, as like I have executed the task 3 to 4 times for the assignment of the different roles to a set of users and some users may repeated in each execution .
    And when I check in child system after few hours the old roles were deleted and contains the role which I have assigned in the mass change.
    It was happened only to few users not more than 20 users, then I expected that may be the users who get repeated in SU10 more than one time for the different role assignment it get impacted.
    But that is not a problem, because I verified some of the users who repeated more than one time in child system and they didnu2019t get deleted  the old roles and it was appended with the new role to the existing rights of the user.
    Still some of the IDOC were showing in SCUL transaction with Yellow signal triangle shape
    So please help me out what would be the issue.
    Kindly let me know if need more information....
    SV

    Hi,
    It is a problem related to IDOC issue. Please contact Basis Team regarding pushing of the Idocs. I am giving an over view of the steps that needs to be executed for idoc push. Please contact Basis with the same.
    Run RBDAGAIN report (se38)
    Give Idocs and save as variant.
    Now go to sm36 specify a job name and start.
    This will change the Idoc status from 02 to 30. For 03 to 30 it needs a different report. Please check and let me know if any issue. As long as idocs are not pushed properly it will give an error. At times also check the CUA user is ok or not. It gets locked at times. To know which one is the CUA user->Login to child system->su01->See the change executed by the user->Get the user name.
    Let me know if any issue.
    Regards
    Aveek.

  • RAR: Best strategy for users/roles/profiles synchronization

    Hi all,
    Assuming that:
    1) we will be never interested about profiles risk analysis (just users and roles)
    2) roles risk analysis will be run first and after sometime (threee weeks) we will run it for users.
    and we will run batch risks analysis:
    Question 1) Is it possible to synchronize just roles and do it for users just when we want to execute risk analysis for them? Or is a best practice to synchronize always for users/roles and profiles eventhough risk analysis will not be done for all three?
    Question 2) If we execute just full sync and full risk analysis, users/roles or profiles deleted in backend between executions are also deleted from DB? or removal takes place only when executing incremental sync?
    Many thanks in advance. Best regards,
      Imanol

    Hi Imanol,
    Answer Q1: Yes, you can just select user and roles for the snych and risk analysis. Go to configuration-background jobs - shedule job. If you don't run risk analysis for profiles, you shouldn't sync and select them.
    Answer Q2: Both, the Full risk analysis will alwaly update your DB. I will recommend you, to do this job in some periodic times. The incremental sync job will as well update your DB, if anything changed in the backend system. Normally your are going to run your daily or weekly jobs with this selection.
    Thanks,
    Martin

  • VIRSA tables for users, roles and profiles sync?

    Hello,
    I am in a customer, implementing CC 5.2. At the first time, we tried CC 5.2 in DEV environment, and when everything was OK, we redirect RFC connectors to QA environment.
    After doing user, roles and profiles sync in DEV and in QA environment too, I have 4.500 user (1.100 from DEV + 3.400 from QA) when I recover all users "*" with "user level - risk analysis" from the "Informer" tab.
    It seems that "users, roles, profiles, sync" works like and "APPEND", but I did a COMPLETE syncronization not an INCREMENTAL.
    If I start an analysis for QA environment, CC works properly and only analyse QA users (3.400). But I would like to clean CC tables (users, roles and profiles) in order to have a clean copy of QA in CC.
    Which VIRSA tables (users, roles and profiles) I need to clean?
    It is necessary to do the same with authorization and text objects? Which would be these tables?
    Thanks in advance,
    Victor

    Hi all,
    SAP GRC Support provides a script which allows you to remove a connector since it does delete all data link to it. Anyway, I would recommend a deep analysis of it and find out if it does what you really want to do.
    Víctor, if what you want to do it is just to remove all user, role and profile master data (stored in tables VIRSA_CC_SYSUSR and VIRSA_CC_GENOBJ) you could upload a text file using data extractor functionality with the delete field set to X. Doing so user, role and profile master data will be removed from CC database.
    In order to use data extraction functionlaity you connector must be of type "File Local".
    Be careful about removing data directly from DB since, as Prem states, you might loose the DB consistency.
    Hope it helps. Best regards,
       Imanol

  • Tables for maintenance of end users in end user roles

    hi all
    i have a requirement to find out the tables involved in end user role maintenance based on the business process and step for the transaction solar02.
    thanks & regards
    srinivasulu.j

    Hi,
    As i already told you all the user names are coming from user master record which are stored in table
    USR01.
    Go to se11 enter table name USR01,and view its contents.
    Here you can get the list of all the user's present in solman server.
    normally basis team create users using pfcg or su01.
    Please reward points.

  • FM/BAPI for deleting Equipmet User status

    Hi Guys
    I am looking for a way to delete the equipment user status (the second box in IE02). I used a BDC for setting it and it works fine but I want to delete it now and I have no clue how.
    I checked all the FM's related to STATUS and I found that internal status is the system status and the ext. status is the user status.
    Anyone has experience in Equipment Sales?
    Would appreciate your help.
    Thanks
    Sameer

    Hello,
    The rules, defining user statuses of an equipment, are defined by PM functional consultant (customizing SPRO).
    As i know, it is not possible to delete equipment external status.
    Using IE02, you can change equipment user status as defined by functional consultant.
    In your other thread "How to delete equipment user status?", Pete Atkin has given a lot of interesting informations (for example, to change user status equipment use FM STATUS_CHANGE_EXTERN).
    Cordialement,
    Chaouki.

  • HT201240 This process does not appear to work for me.  I'm running 10.8.3.  I created a new user for a guest staying with me.  They have gone now and I am attempting to either change the password or delete the user.  It won't allow me to choose the user I

    This process does not appear to work for me.  I'm running 10.8.3.  I created a new user for a guest staying with me.  They have gone now and I am attempting to either change the password or delete the user.  It won't allow me to choose the user I created.  I am logged in as myself and it states that I am an "Admin".  The user I'm attempting to change is listed as a "standard" user and there is a white checkmark inside an orange circular background on the user pic in the list of users. 
    Can someone help me?  I am having a hard time believing that OSx will allow me to create users and allow them use of my computer and it's drives, yet it will not allow me to change the password so I can monitor what they might have been doing while logged on?  What if this were my child?  This guest left under sketchy circumstances, and I'd really like to be able to ensure they were not using my computer to do illegal things or to have illegal communications.
    Any help would be appreciated.  (It's odd that it was so simple to "create" a user and set a password for them.......but it's complicated or a little known process to reverse.
    Thanks.

    Here are two screen shots to show you what I am seeing.  The first screen shot shows it allowing me to select (highlighted in blue) my admin user (which is what I am locced in as).  The second screen shot shows it allowing me to select the "Guest" user (highlighted in blue).  However when I click on the user "Orion" nothing happens.  It will not change to highlight that user.

  • Trying to delete two user accounts on my mac book air, it has been deleting them for two days and I am un able to turn my computer off, what should i do?

    How do I go about either stopping a delteing user account that is in action, or How do I reboot my computer? I am stuck not sure what to do! I am in the process of deleting two user accounts but I am stuck and can't turn my computer off reboot, or reverse it. Anyone have any ideas for me?

    Press and hold the power button for a few seconds until the power shuts off, then release, wait a few more seconds, and press it again briefly to restart.

  • Solution Manager 4.0 Solution Monitoring User -Roles-Profiles for Satellite

    Hi All,
    I have installed Solution Manager 4.0 (OS -Linux ,Database - DB2) .
    Now i need to connect solution manager to the R/3 4.6C
    Satellite Systems (DEV, QAS ,PRD) for Solution Monitoring
    and Service level Reporting .
    I have read the configuration guide , but unable to get clear idea .
    1) what users (alos type of user -Dialog , Service, Communication etc) do i need create in DEV , and Test in QAS  for solution Monitoring  .
    2) what exact roles /profiles need to be assigned to these users in satellite systems .
    3) what users/roles /profiles needs to be done in SOLMAN system
    i have applied all the required plug ins and support packs
    in satellite systems and solman 40 ..
    Please advice  . Your response will be a great help for me .
    Satish

    Hello Satish,
    Just clarify, if u have meant connecting the satellite systems for EWA reports to be precise. Early watch Reports. If its is the case, then repond so that i can putin my inputs which may be helpful for you in this config.
    Rgds,
    Sri

  • Best Practice for Deleted AD Users

    In our environment, we are not using AD groups. Users are being added individually. We are running User Profile Service but I am aware that when a user is deleted in AD, they stay in the content database in the UserInfo table so that some metadata can be
    retained (created by/modified by/etc).
    What are best practices for whether or not to get rid of them from the content database(s)?
    What do some of you consultants/admins out there do about this? It was brought up as a concern to me that they are still being seen in some list permissions/people picker, etc.
    Thank you!

    Personally I would keep them to maintain metadata consistency (Created By etc as you say). I've not had it raised as a concern anywhere I've worked.
    However, there are heaps of resources online to delete such users (even in bulk via Powershell). As such, I am unaware of cases of deleting them causing major problems.
    w: http://www.the-north.com/sharepoint | t: @JMcAllisterCH | YouTube: http://www.youtube.com/user/JamieMcAllisterMVP

  • Request Offerings not showing up for custom User role in SMPortal

    Hello All,
    I've created a custom End User role and scoped it to the domain users group.
    To this role I want to show a specific set of Request Offerings on the portal
    For that Purpose I created a new Service Offering and added these Request Offerings to it.
    I then went on to create a Catalog Group and added the Service Offering to it.
    I then created the custom user role based on the EndUser role and allowed them to see all Forms, all Queues, All CI's and on the Catalog group I select that they could only see the Catalog Group which I just created.
    I then logged in into the SMPortal and was expecting that my Service Offering would be shown to them.
    However, they don't see the service offering.
    What could cause this?
    Is there something I'm missing?
    Thanks in advance!
    Filip

    You have to add the Service Offerings and the Request Offerings in the Catalog Group. Nesting doesn't work because Service Offerings and Request Offerings are different types of objects.
    This offers the option the manage the access to Service Offerings and Request Offerings very granular if needed. For instance you can control access to a Service Offering in one Catalog Group related to one user role (A) and use two additional Catalog Groups
    with different Request Offerings related to other user roles (B) and (C). Result will lead to:
    User in Role A and B -> Can see Service Offerings A containing Request Offerings B
    User in Role A and C -> Can see Service Offerings A containing Request Offerings C
    User in Role A, B and C -> Can see Service Offerings A containing Request Offerings B and C
    User in Role A only -> Don's see anything because of the missing permission on any Request Offering. So the "empty" Service Request won't show up in the portal.
    Hope his helps.
    Andreas Baumgarten | H&D International Group

Maybe you are looking for

  • How to change the url of "Add New Item" of a particular list in SharePoint 2013???

    Hi Guys, How to change the url of "Add New Item" of a particular list in SharePoint 2013??? I need to redirect it into the page where I have created my Visual web part. Please suggest Warm Regards, Tony Joy

  • R/3 ISA B2B:  Catalog Views

    Hello experts in the group, I need to create catalog views for R/3 ISA B2B application. I have to use cross division 00 to handle multiple sales areas and I want to address these divisions using catalog views. I already have one of the four product c

  • Linking text boxes dynamically

    I'm working on the layout of a large (more than 2,000 page) document. Each page has two text boxes that together fill the entire page. The top text box contains the document text and the bottom text box contains footnote material. I'd like to be able

  • Problem when saving the outline

    Hello: We're working with Essbase 9.3.1. When saving an outline with EAS, the message windows "Starting save of outline" appears and it never close (even if the modification is as simple as adding an alias or an UDA). We've found that If we make Ctrl

  • After effects multicore settings advice

    Hi guys, I just got cs6 master collection working on my 64 bit machine. I remember when I installed cs4 on this machine I had to go into preferences in After Effects and enable multicore editing or such to take advantage of all my 16gb ram and i7 pro