CO Authorization in Comany Code

Dear experts,
I created a role for CO module, I assigned T-code KE52 and want to assign only one Company Code to this role
But when I maintain Profit Center: T-Code KE52 -> Master Data -> In the tab Company Code, all Company Code are displayed and can be checked. I don't know how to specify only 01 Company Code for this, please help me!
Thanks in advanced
Edited by: LuongDK on Nov 26, 2010 9:49 AM

Hi,
Profit Center is under Controlling Area and not Company Code.But you can still give authorization according to Controlling Area.
Create a Single Role with the Authorization Object K_PCA and there are 3 Authorization fields to be filled
1.CO_ACTION  = * (All)
2.KSTAR          = * (All)
3.RESPAREA   =  Tab:Profit Center Group, Cat:PCH, Controlling Area: Controlling Area Code,Value:*(All)  u2192 This is Authorization field for Controlling area in Profit Center master Transactions
Assign this role to the composite role of the user accordingly
~Andrew

Similar Messages

  • Error : while creating record in infotypes for specific comany code

    I am using custom infotype 9025 and 9028 for bonus scheme info for some comany code. E.G. 0004,0010 etc.
    when I am takin an employee og comany code 0002 its not allowing to create data for that an giving error "No authorization to maintain &IT TEXT exists" .
    So can any body help me out what is problem for that.

    than delete the existing infotype
    by PU00 and ITXXX here xx stands for the number of the infotype
    and add the custom wage tpe u had created
    sikndar

  • Assignment of same chart of account to the comany code having diff currency

    Dear Experts,
    At presently we are having three company codes and all three company codes are using single Chart of account. All the new existing three company codes are using currency INR. Now we would like implement sap for two new location. we are looking for two new company codes. One location is USA and another UK. Therefore for USA company code the currency would be USD and GBP in case of UK location.
    Now I would like to know can I use the same chart of account for the two new comany codes which we are already using for the three company codes?
    Regards
    Paul

    Hello,
    You will get the report in local currency.
    You may please run the report in F.01, you will find the difference. You can pick up currency in the layout from hidden fields to visible fields.
    Please note that normally P&L and BS is presented per company code.
    Regards,
    Ravi

  • Comany code vs company

    Hi all,
    Can anybody share your experience with assigning multiple company codes to a "company"?  I understand that usually a company code represent a legal entity and in most of the time that company code and company has one to one relationship, has anyone configured it in a way that the relationship between them is many to one(company code to company)? Any problems with this kind of setup? We are in a midst of rolling out the SAP HR module globally and there is a need to create  some additional comany codes in FI for employees in other countries but legally report to a existing company code in US. (US dollor is the local currency). Currently our mapping from company code to company is 1:1. Would like to know the impact of changing our existing configuration from 1:1 to X:1. (company code assignment to company). Any downstream impact? Any trading partner impact?
    Any suggestions/comments are welcome.
    Thanks and kind regards,
    Nancy

    Hi
    Yes, only company codes are legal and any number can be assigned to a company.
    There is no impact on HR rollout and creation of new company codes and assigning to the main company. Even if there is a difference in company code currency.
    Reg
    Suresh
    Any problems with this kind of setup? We are in a midst of rolling out the SAP HR module globally and there is a need to create some additional comany codes in FI for employees in other countries but legally report to a existing company code in US. (US dollor is the local currency). Currently our mapping from company code to company is 1:1. Would like to know the impact of changing our existing configuration from 1:1 to X:1. (company code assignment to company). Any downstream impact? Any trading partner impact?

  • Stock transfer in Projects from One Comany Code to Another Company Code

    Dear All,
    In my project scenario, having two wbs elements with two diffrent comany codes & two diffrent business area which falls under one company.
    In this i have to transfer project stock from one wbs to another wbs element.
    With above mentioned condition is it possible to transfer the project stock.
    Kindly confirm me & also give a procedure for transferring the stock.
    Thanks in Advance.
    Regard's
    Sandeep N.Theurkar

    Hi,
    I think it is possible.. im not sure if we have same scenario but we did something similar in previous project...
    reservation is done in one project but the plant indicated belongs to the other project. and the transfer type (goods issuance) done is project to project kind of transfer(Movement type 221Q).. the two projects belong to diffenent company codes and business area but same controlling area..
    regards..
    Edited by: Ekta Gurudutt on Jul 8, 2008 5:21 AM

  • SAP Authorizations: ST01 - return code 12 (RC=12)

    Hi All!
    re: SAP Authorizations: ST01 - return code 12 (RC=12)
    When using ST01 to trace SAP authorizations and you come accross a return code 12 (RC=12), how do change the authorization object to check?
    Thanks for your help.

    Hi - some standard ST01 info I follow
    Main RC codes
    RC =0 Successful (user is authorised)
    RC =4 Failed - user does not have authorisastions but does have the authorisation object in their buffer (different authorisation combination though)
    RC = 12 Failed - user does not have the authorisation AND does not have not have the authorisation object in their buffer
    With RC =0 it can be due to:
    1. The user has access via authorisations
    2. SU25 has switched the object off system wide
    3. SU24 has switched the object off for the transaction
    As a note with RC=12 - I find these fails can identify a misleading authorisation check. That is, the user is not meant to have access. Take care on RC=12, especially for object S_ALV_LAYO, S_DEVELOP, S_CTS_AMDI, S_USER_GRP and when investigating a typical end user.
    IF the missing authorisation (RC=12) is required, you will need to fix the PFCG role and generate the authorisations so the user receives it. If the user has the access you will need to check user buffer or role generation/corruption issues.

  • How to authorize a transaction code for a user?

    Hello,
    How can I authorize the user for a specific transaction code and how can I block it?
    I would appreciate if you can give some insight.
    Thank you.
    Hakan

    Hi Hakan,
    We can achieve this by using two T.Code SU01 and SUIM.
    First check in SUIM,the T.Code that you want to block  T.Code is belongs to which role.
    For finding it Click on roles.Click on transaction assignment.Enter your T.code and execute.
    After finding this goto SU01 and unassign that role for that user.
    In this way we can block the user to use one particular T.Code.
    For providing authorisation,add the role to the user id in SU01 T.Code.
    Run SU53 T.Code after running the failure T.Code to know all the errors.
    Please contact your BASIS person for all these.
    Regards,
    Krishna.

  • Infotype authorizations at Company Code level

    The project I am working on has two company codes 1000 & 1100.  The user requirement is that a person working in one company should be able to make changes only to employee data of employee's in his/her company and to have only read authorizations for employee data from the other company.
    I've tried creating a role for Company 1000's employees where the authorization object P_ORGIN has Personnel Areas for that company code itself and all permissions (read, write etc.) and another role with read access to all Personnel Areas.  However, when assigned to a user, they are still able to access data from the other company (i.e. the company whose personnel areas were not listed in the first role). 
    Any ideas what I am doing wrong and how I can resolve them?

    Authorization level            *
    Infotype                       *
    Personnel Area                 1000's Personnel Areas
    Employee Group                 *
    Employee Subgroup              *
    Subtype                        *
    Organizational Key             *
    Authorization level            R
    Infotype                       *
    Personnel Area                 1100's Personnel Areas
    Employee Group                 *
    Employee Subgroup              *
    Subtype                        *
    Organizational Key             *
    This config should work.
    Or can you post the values you entered in all the HR authorization objects in your role so that we can check. (P_ORGIN, PLOGI, P_PERNR etc)

  • Authorization at Company Code Level for table FEBKO

    Hello Experts,
    I need to add authorization check on my report program that accesses and displays data from table FEBKO. However the user should only be able to access the data of table FEBKO particular only for their company code. How can I apply this? Thanks in advance for all your responses!
    Best Regards,
    Kurtt

    Hi,
    if it is in your own report, you can define your own authorization object with field for company code. Check transaction SU21 or ask your security guy. Then you will check if an user have authorization for this object.
    Cheers

  • No authorization for company code in MRBR

    Transaction MRBR is currently wide open. Anyone with authorization to this transaction can unblock invoices in any company code.
    Standard security profiles can only restrict users at universal (*) or purchasing group level. We require control on company code.
    OSS 399953 suggests creating validation rule (GGB0) to test user authorizations for transaction MRBR and authorization object F_BKPF_BUK.
    Can anyone supply the validation coding to solve this security problem?
    Is anyone familiar with this problem ? Do you have a solution ? also None standard SAP solutions are welcome
    Thanks in advance
    Greetings,
    Vincent

    Hi Vincent
    Another option could be to implement an authorization check in the BAdI MRM_RELEASE_CHECK - this is, of course not Standard.
    The code could look somthing like this:
    DATA: wa_rbkp_blocked TYPE mrm_tab_rbkp_blocked.
      LOOP AT i_rbkp_blocked INTO wa_rbkp_blocked.
        AUTHORITY-CHECK OBJECT 'F_BKPF_BUK'
                 ID 'BUKRS' FIELD wa_rbkp_blocked-bukrs
                 ID 'ACTVT' FIELD '02'.
        IF sy-subrc EQ 0.
          APPEND wa_rbkp_blocked TO e_rbkp_blocked.
          CLEAR wa_rbkp_blocked.
        ENDIF.
      ENDLOOP.
    Regards
    Morten Nielsen

  • Error from BAPI_ALM_CONF_CREATE - "YOU HAVE NO AUTHORIZATION FOR T-CODE"

    Hi guys.
    I am getting an error message from the BAPI_ALM_CONF_CREATE with the DETAIL_RETURN returning "You have no authorization for the t-code".
    The error is arising from the form AUTH_CHECK_TYPE.
      AUTHORITY-CHECK OBJECT 'C_AFKO_ATY'
           ID 'ACTVT' FIELD tmp_actvt
           ID 'AUTYP' FIELD act_autyp.
    Thanks in advance.

    Hi,
    This might be beacuase you do not have authorization to that Tcode.
    Go to SU53 tcode and check authorizations You have for your User name. Ask Basis people to provide authorization to the Tcode for your User id.
    Regards,
    Karuna

  • T-code CJ88 role authorization  using company code?

    Hi expert!
    who can tell me how to control  CJ88 T-code using company code .
    the business is below:
    1, the user have 10 company code  and only one control ares.
    2, one employee cannot use CJ88 to settlement the project of the other company code.
    can any one tell me how can i control
    Please explain me all the steps to be required.
    Thanks in advance!

    I am not sure about CoCode wise authorization for CJ88...you said you have 10Cocodes, if the Person Responsible of the projects are different for each cocode, then use authorization object C_PROJ_VNR (Project Manager for Proj Def) or C_PRPS_VNR(project manager for WBSE) for running CJ88, so that person repsonsible of other company code project cannot run settlement of other projects.

  • Resultant user authorization of t-codes with a common Auth. Object

    Hi,
    I'm re-posting this question because the first time it was rejected and according to the Rules of Engagement, it seems it's because I did not post my photo, however, dear Moderator, if for any other reason, I mean not to be indecent, kindly let me know if there's anything violating the content rules.
    I'm trying to control access to t-code AS02 using Asset Views (Auth. Object A_A_VIEW), so while looking around I noticed that this Object A_A_VIEW is present in other t-codes/roles assigned to some users.
    My question is (pardon my basic terminology), if a I create a role that has a t-code with certain authorization values defined in its Authorization Objects, and assigned it to a user that has those Authorization Objects in his profile but from totally different t-codes in different roles, will the most explicit/resultant authorization take precedence in all the t-codes? or will the t-codes be accessed as per the authorization provided in their respective roles?

    Hi  Saleh
    Lack of photo would not have been the reason.
    Is SAP security your background? What do you know of generated profiles, user buffer and the concept of cross-inheritance (or cross-talk)?
    If you are asking if a user has Transaction AS02 from one role and A_A_VIEW from another would they be authorised or not then that is a basic question (fundamental of SAP authorisation concept). Basic questions are not allowed in SCN as you can obtain the answer via searching, sap help and basic training.
    If you are trying to understand some specifics of the A_A_VIEW authorisation that the SAP Help (and also IMG configuration for Asset Views) did not provide then you might need to clarify your question.
    Regards
    Colleen
    Ps - I did alert the moderator to your question as I thought it was basic question relating to the SAP authorisation concept that is covered in SAP help, Google and the ADM940 training course.

  • Authorization for t-code

    hi friends,
    I have created parameter transaction using se93 for table display (SM30) and then created an authorization object
    using t-code su21. this authorization object contain only 2 ctivities i'e change and display(02 and 03)
    now i want to attach this authorization object to tis t-code.
    how can i do this.
    there is no report for this t-code so i cannot use authority-ceck key word in program.
    kindly suggest
    <removed_by_moderator>
    Regards
    Edited by: Bernhard Hochreiter on May 6, 2010 9:07 AM

    Pankaj,
    authority-check object 'S_TCODE'
    id 'TCD'
    field 'SM35'.
    if sy-subrc ne 0.
    User does not have authority for transaction SM35!!!
    endif.
    or
    Try FM AUTHORITY_CHECK_TCODE

  • USER AUTHORIZATION FOR T-CODE OB52 & OKP1

    Hi Experts,
    I would like to know if there is a t-code that assigns USER to open another t-code.
    OB52 & OKP1?
    I want to restrict this t-code for only few users....
    Is it possible?
    Need advice plese
    Rey

    Hi Rey,
        As per my knowledge the authorizations will be done by BASIS consultants.
    R.K

Maybe you are looking for