Change Role Owner in CUP

Experts, recently few of the role owners have left the company and we have new owners in their place. All the requests are still going to the old owners for approval. Each of them own about 100s of roles. Is it only possible change ownership to the roles one at a time or is there a much more efficient way of doing this? If so, please guide on the procedure. Awaiting your expert advice.
Thank you.

You should be able to do a mass upload using excel.
Thanks,
Chinmaya

Similar Messages

  • Role Owner in CUP

    Dear Experts,
    Could you please help me in the below scenario:
    I want to configure such a way that ROLEOWNER should not be able to approve the role that he owns for himself.
    Eg:
    Role1 approver is ROLEOWNER1.
    If someone/Roleowner1 raises a request to assign the ROLE1 to ROLEOWNER1 then the roleowner1 should not be able to approve as the request is raised for himself. Instead it should go to some alternate approver.
    Please advise. I will appreciate your help.
    Thanks,
    Raj

    Hi Raj,
    Set the visibility to NO. That should meet your requirement.
    CUP-->Request Form Customization > Approve/Reject Own Requests>Visible=NO
    Mandatory and Editable will be Grayed out. As these do not show up in Request form.
    Regards,
    Ajesh Raju.

  • GRAC AC 10 CUP E-Mail Notification for Role Owner to approve

    Hello Experts ,
    I have my CUP working in such a way that role owners are able to go to their Inbox in UI>My Home . However I would like to send E-mail into their Inbox . Right now we are getting the e-mail only at the end of the request when the request is completed.
    What should be configured in MSMP ?  Following notification events defined for Process ID Access Request Approval Workflow
    Notification Event : END_OF_REQUEST Template ID : GRAC_AR_SUBMIT Recipient ID: Requestor
    For the stage Config ID GRAC_ROLEOWNER notification settings are :
    Not .Event : NEW_WORK_ITEM  Template ID : GRAC_AR_NEW_WORK_ITEM Recipient ID : Current Approvers .
    What else do I have to do .
    Reg,
    Anthony

    Hi,
    You will need to make sure that the submission and new work item notifications are activated in MSMP at the various stages and also make sure that the approvers are marked for both approval and notification at the agent assignments.
    I would also check to make sure that their emaill addresses are maintained correctly in the GRC system (the data sources will not pick up the approver email addresses automatically).
    Cheers, Simon
    Edited by: Simon Persin on Jan 25, 2012 6:27 PM

  • Is it Possible to Create a Role Owner Group in CUP

    Currently has a workflow that has each role owner to approve a role request.  Would like to create to have two differenct role owners to have to  approve the same role but with these to role owners want to have one of the role owners to have two people were only one of them has to approve.  Can this be done in CUP?  Hope it makes sense,.  Thanks.
    Laura Kacal

    Hi Laura,
    I think now I understand your challenge, correct me if i'm wrong.
    one role, 2 approvers (A, B), both need to approve, but:
    Approver A = single user
    Approver B = group of users
    not possible. you can only setup the approval to be all need to approve or at least one.
    I would recommend a 2 stage workflow. 1st stage single user approval, 2st stage group approval (CAD).
    good luck.
    N

  • Unable to change document owner

    Hi All,
    I am trying to change document owner of Master Agreement via Contracts.xls file.
            I am getting below error:
            # Record 1. Warning: the item Rama Kishore referenced in column DOC_OWNER_USER could not be found
    Also, I went through various posts and as mentioned in one of the post to assign "Document Owner" role using "user account.xls". But still I was not able to see this role in Security Tab of my user account.
    Another post says to use a template with following fields
           # Field
           # CLASS_NAME
           # PARENT_EXTERNAL_ID
           # PARENT_UNIQUE_DOC_NAME
           # LOOKUP_PRINCIPAL
           # LOOKUP_COLLABORATOR_TYPE
           # LOOKUP_COLLABORATOR_ROLE
           # PRINCIPAL
           # COLLABORATOR_TYPE
           # COLLABORATOR_ROLE
           # REPRESENTING
           # USAGE
           # SILENT
           but it gives error:
           # Failed: object 1: The object referenced in column DOC_TYPE could not be found.
    Please guide me on how to change document owner of an Master Agreement.
    Thanks,
    Saloni

    HI Saloni,
    Try to import the sample workbook  with your Data which I have sent to your email id. While importing select the object type as Master Agreement. Also make sure the user which you are trying to update should be available in the System.
    Let me know if it works.
    Thanks,
    Kushagra A

  • GRC AC V10 - one approval step for manager and role owner

    Hello Community,
    I have one, perhaps easy, question. Where is it possible to maintain the solution of one approval step for manager and roleowner, if both are unique.
    E.g.:
    simple approval workflow: manager stage afterwards roleowner stage afterwards auto-provisioning
    So if the request is routed to the manager and the manager is also the roleowner of the requested authorization role (same UserID). The user has to approve one and the same request twice.
    Is it possible in V.10 to change the config that the user has only to approve the request once? And then to decide on which relevant stage settings are valid for this process.
    Thanks,
    Alexa

    Hi Alexa,
    We have had a similar questions raised in a project. In an ideal world, a single "Sign-off approval" would be a great functionality where the same user has to approve the same consecutive stages, but the reason for different stages would entail that the responsibilities entailed per stage differ, e.g. Line Manager would just check the over request, and the role owner etc may be reviewing the elegibility of a specifc role etc.
    If it is likely to be the same person reviewing the 2 consecutive stages, maybe a single stage workflow would be sufficient to cover this scenario.
    I think the logic you are trying to configure in the workflow is possible but will require alot of work with knowing how to create a clever custom workflow with BRF+ or the actual WF stuff in SAP itself.

  • Change job owner for job owned by a report server process

    Question on a SQL 2008 Enterprise Edition (64-bit)
    I have changed the owner of a couple of jobs (owned by a report server process) using Management Studio. The new user has sysadmin role just like the previous one had.
    Then I kept thinking on the job's legend: "This job is owned by a report server process. Modifying this job could result in database incompatibilities. Use Report Manager or Management Studio to update this job."    
    Did I do it at the right place or I had to do it at the Report Manager?
    I went to report manager and I was not able to find where I could change this.
    So, Did I do it at the right place by doing it at Management Studio?
    Thanks!
    Paulino

    Hi Paulino PP,
    According to your description, you want to know some information about changing owner of jobs in SQL Agent. Right?
    In this scenario, you did the right thing. We should edit it in SQL Server Manager Studio. Since the new owner has same permission and authority, so the job will be also executed. For some detail information, please refer to the link below:
    http://msdn.microsoft.com/en-us/library/ms178031.aspx
    If you have any question, please feel free to ask.
    Best Regards,
    Simon Hou

  • OIA : Assign Role Owner

    Hi,
    In OIA : Identity warehouse -> Roles -> New Role -> Ownership tab - > Add Owners.
    Here at Add Owners step I can see only users which are imported from OIM (global users / end user)
    And if I assign end user as owner of a role -> role membership approval task still goes to rabcxadmin.
    Can we select OIA users as a Role Owner?
    Is there any way to log in in OIA using global user/end user?
    Please help me to understand this scenario.
    Thanks,
    Pallavi Chaudhari

    Thanks user13285646
    What changes you did into : security-config-context.xml for certification user creation. I am n OIA 11.1.1.5.0 for me certifier user is getting created in rbacx-user-* tables without doing any change in security-config-context.xml file.
    OTB role assigned to user :
    <!-- OTB Roles assigned at the time we auto create accounts -->
    <property name="otbCertificationManagerRole">
    <value>CRTMGR</value>
    </property>
    <property name="otbPolicyViolationRemediator">
    <value>PVRM</value>
    </property>
    <property name="otbPolicyOwner">
    <value>IDAPLCOW</value>
    </property>
    but there is not any such information related role owner creation.

  • Sql Azure - Change Database Owner

    Is it possible to change the owner of a database in SQL Azure? I have a database that I'm trying to make a copy of, which I am not the owner of. My research seems to show that only the account that created the database (the owner) is allowed to run a command
    such as CREATE DATABASE ... AS COPY OF ...

    Hi lexk,
    According to your description, currently, personally, there is only one login which acts as the administrator. Usually, when you create a server in SQL Azure, you will create this login at the same time, which has access to all databases in the Server. You
    may create other login, however, they are less privileges than the administrator. So only the administrator can execute the create database ..as copy of .. command in SQL Azure database.
    This command requires that you must connect to master database, and also you must have the create database permission in the copy database. Even if you create a login and user in master database, and grant dbmanager permission to this user, when you execute
    the following command after connecting to master database, it will still show error 262.
    Create database <newname> as copy of < exist database>
    Msg 262, Level 16, State 1, Line 1
    CREATE DATABASE permission denied in database ' exist database '.
    If you just want to run create database command in SQL Azure database, you can ask the administrator to grant dbmanager role to your own login. For more information, see:
    http://msdn.microsoft.com/en-us/library/azure/ee336235.aspx
    Regards,
    Sofiya Li
    Sofiya Li
    TechNet Community Support

  • How to change application owner of EPM11 planning application ?

    Hi Gurus,
    How to change application owner of EPM11 planning application ?

    Using this query i can find the application owner in backend :
    SELECT A.OBJECT_NAME AS APPLICATION_OWNER
    FROM HSP_OBJECT A, HSP_USERS B
    WHERE A.OBJECT_ID = B.USER_ID
    AND B.ROLE = 3;
    now i want to change Application owner ....please share if you know

  • Error while changing the owner of an object in Discoverer

    Hi All,
    I have a problem in Discoverer folders.
    I have a folder whcih is based on a view in schema in A, now i have created the same view in schema B and want to change the owner of the view in Discoverer to B.
    But when i do that it gives me an error as -
    'An error occured with the darabse transaction because the underlying object has been changed'
    I am not able to understand this.
    If anyone can help me this it would be really helpful.
    Regards,
    Shruti

    Well, this is something not talked about in the Administration training class. My hunch is that you are trying to do something that Oracle never intended you to do. I think when you edit the folder and want to change the Owner property, the idea maybe is that you are trying to change the owner on the original table. Here you have said that you recreated the view in schema B (so technically a different table object). But in Discoverer you are still dealing with the view in schema A as the basis for the folder, not the view in schema B. Though I would think if you can see the new owner's name in the database/user list and thus can pick it, it should let you change the owner property, even if that may not be quite what you intended. Discoverer does store things under the cover (such as unique ids), so maybe something is going on that is not visible. My suggestion would be to open up a service request with Oracle support on this. The idea of dropping the folder and then readding it may be okay, but that would be something you would want to test in some kind of test environment and see what happens (not sure what impact that may have on workbooks using the original folder). Of course it may be possible that you have uncovered an Oracle bug.
    John Dickey

  • What is the procedure to change the owner of the BW jobs.

    Hi Gurus,
    Version- BW 3.5
    I need to change few jobs Owners which are collected from the SM37 from a individual User to generic account(ALEREMOTE).
    Will any body help me out with the procedure to change the owner of the BW jobs.
    Thnaks in advanace..
    With Regards,
    MBS

    in SM37, take all release jobs by giving JOb name as "" and user as "".
    When you get the release job details then follow the steps.
    1. Select theJob --> Menu Bar --> JOB --> Change --> here you will get the details of the job and Clieck on STEP just above the job name.
    In the next screen select the job and click on Change ICON.  here you can see the user name in change mode and you can update the user to ALEREMOTE. And then save the job.
    Once done then the job will be on the new user.
    Hope this helps..

  • How do you change the owner of a folder?

    Hello,
    I'm having a very difficult time finding an answer to this question. I have a brand new xserve (10.5.2) up and running fine with a single web site with wikis and blogs enabled. I can get to the web page and the wikis with no problems.
    The problem is, the default folder for the web home page and the wiki information are on the system drive. I need to have those folders on another partition. I created a folder called /Collaboration and one called /Webdocs on the partition on which I need these folders.
    When I put a copy of index.html into the webdocs folder, the web site shows up fine in a browser window. Wikis show as being "disabled" though. The folder for the wiki files has me as the owner since I created it. I've read on a few posts in these forums that the owner of that Collaboration folder needs to be "teamserver" however, I am unable to change to that using Get Info, like I could with a Tiger machine.
    Could someone please tell me how to do this? Thanks.

    I've got a similar problem:
    I'm attempting to follow the directions in the Upgrading and Migrating Guide for Leopard. The Mac has two hard drives in it. Batman contains the active server running 10.4.11. Magic is the hard drive that will run 10.5.2.
    Since I'm moving from one hard disk to another (as opposed to an entirely different Mac), things ought to be fairly easy. But not for me. ;(
    What I'm trying to do: Migrate the mail database. (I have managed to import users and groups; only the mail service will run on this machine.)
    Problem: I can't change the owner and group settings on the various files in the var/imap and var/spool/imap folders (for example, so that they are owned by system or _cyrus, with group wheel or mail and everyone set to read only).
    The owner and/or group often shows up as unknown (which is to be expected with the migration to a different hard drive). But how can I change these permissions?
    Or is there a way to use a command to copy them from one disk to another? I tried ditto, but didn't get the syntax right (the files were copied to the same level as the imap folder rather than within it) and now I have a bunch of files owned by nobody that I can't delete because I can't change the owner.
    TIA,
    mm

  • GRC AC 10.0: Info about rejected roles in the CUP Email

    Hello all,
    the GRC componetent CUP seems to be technically mature in comparison to Role Management component, but there is one thing where I am not sure, is it an error or did I miss some config parameters:
    When the CUP Request ist closed, the user gets an email (Template ID: GRAC_AR_CLOSE). Not all of the roles were approved, some of the roles were rejected. But the user gets an email where only the approved roles are listed:
    We would like to inform the user about the status of all roles in the CUP requests: which roles were approved and which roles were rejected. Is it possible to configure in MSMP Workflow?
    Right now we have the following setting:
    Thanks,
    regards Sabrina

    Hi Sabrina,
    To notify the requester for the roles which got rejected, you can try with Email notification template: GRAC_MSMP_ERM_REJECTED for the for the message class.
    You can create custom version of this template. For more understanding on how to customize the Email notification template, you can refer to: http://www.sdn.sap.com/irj/scn/go/portal/prtroot/docs/library/uuid/605077fc-3577-2e10-e1a6-a743514d4eb3?QuickLink=index&…
    Hope this helps, Let us know if you face any issues.
    Regards,
    Ameet

  • Is it possible to change role's sort priority dynamically?

    Dear repliers,
    I want to implement menu personalization.
    I mean i want user to change their menu structure dynamically in webdynpro java.
    Is there any way or code to do this?
    If it isn't, is there any way to change role's sort priority dynamically in webdynpro java?
    Please let me know if u have any information about it..
    Yours Regards,
    JS Park

    we can change pages/workset/roles sort priority dynamically. But it will affect all users. There only one copy of pages/workset/roles exists.
    The work around could be... You can develop a custom application in which you have predefine set of possible values.
    example :
    role (sort Priority)
    1) employee (100)
    2) Manager (200)
    3) Sales Manager (300)
    Create copy of Each role with different sort priority for all roles
    for eg.
    1) Employee (200)
    2) Employee (300).
    And in your web dynpro application assign roles according to users choice.
    But It would be difficult to maintain roles. Because if you need to perform one change you need to apply them to their copies as well.

Maybe you are looking for