Find object for roles & authorization.
Hi Gurus,
How can i find the perticular object in SU24?
I need object for "RELEASE FLAG ICON" in IW31,IW32 T.code.
Till the time I have co relate following 2 objects.
I_BETRVORG & I_VORG_ORD and I have maintained both object value as a blank in role.
Still I am not able to control release activity thru that role.
Please guide any thing wrong or missing.
Hi Upesh,
Start the transaction that you like. Just before pressing the key "Release", type "/h" in the transaction code field and press Enter. This will activate the debugger.
Now press the "Release key" - the system will enter the debugger. Once there use the menu "Breakpoints -> Breakpoint at -> Breakpoint as statement" and enter the ABAP command "authority-check". Then browse through the execution of the program using the pushbutton F8 ("Continue"). The debugger will stop at all the objects being checked.
If you don't have a literal (enclosed in apostrophes ') after the keyword OBJECT but a variable, double-click on this variable to see its value.
Good luck!
Raf
Similar Messages
-
Finding Objects for Authorizations
Dear PM Experts,
When we request the basis guy to restrict Authorizations for users we need to provide the objects for each transaction code with the restricted values. (ex-if I'm allowing only order type PM05 in IW31 T-Code for a particular role I need to specify the particular object from the T-Code IW31 and request to allow only PM05 for the particular role).
But the problem is I'm doing it for the first time and I'm not in a position to identity/find the objects of each T-Code. Can anyone help me out by providing a guidance? is there a particular T-Code to get the object of T-Codes?
Cheers
Deepalhi
for PM here are the authorization objects
/MRSS/PB1 Multiresource Planning: Organizational Units
/MRSS/PB2 Multiresource Planning: Orders
I_AER Follow-Up Order Creation
I_ALM_ME Mobile Asset Management
I_AUART PM: Order Type
I_BEGRP PM: Authorization Group
I_BETRVORG PM: Business Operation
I_CCM_ACT Configuration Control authorization object
I_CCM_STRC Structure gap maintenance authority
I_CONFLICT WCM: Checks for Lockout/Tagout
I_FCODE WCM: Function Codes (e.g. Operational Cycle)
I_ILOA Change location- and accounting data in the order
I_INGRP PM: Maintenance Planner Group
I_IWERK PM: Maintenance Planning Plant
I_KOSTL PM: Cost Centers
I_MASS PM: Mass Data Change
I_QMEL PM/QM: Notification Types
I_ROUT PM: Task List
I_ROUT1 PM: Task Lists by PM Planning Plant, Work Scheduler, Status
I_SOGEN PM: Permit
I_SWERK PM: Maintenance Plant
I_TCODE PM: Transaction Code
I_VAL WCM: Valuation of Applications
I_VORG_MEL PM/QM: Business Operation for Notifications
I_VORG_MP PM: Business Operation for Maintenance Planning
I_VORG_ORD PM: Business Operation for Orders
I_WCUSE WCM: Use of WCM Object
regards
thyagarajan -
Authorization Object for role creation for query display?
Hi,
Can Anybody here tell me what is the Authorization object that we use for role creation for query display?
I want to assign a role to the newly designed query! that query does not have any role so far!
Pls suggest me
Thanks,
RaviHi,
I could make the authorization tab green by entering the authorization object!
But user tab still remains red as it is not allowing me to enter my username in the user tab!
in the user tab i am unable to enter my user name?
Any suggestions?
Thanks,
Ravi -
Table for Role & Authorization group
Hi Gurus,
I am looking for a table or FM to get all roles for Authorization group.
I tried in SUIM tcode but could not able to find exact DB table for these.
Giri
P.S.: To Moderator:
My earlier thread was locked for the same question, I was searching in SDN and google from last 3 days and could not able to find enough information on it. AGR_USERS, TBRG, TACT are the tables i found. But still there is a link missed between Role & Authorization Group.Thomas,
My report have selection screen with Auth group and user.
If user provides Auth. Group then need to find all roles linked to auth group and users assigned to that role.
In my investigation, there is link between Auth. Group <--> Auth. object.
Also Auth. Object <--> Role.
but still there is a fine link missing between Auth Group <--> Role.
For Eg: Auth Object S_TABU_DIS will be associated to all Auth. Groups but assigned to only limited roles.
I tried to debug the SUIM transaction multiple times but couldn't find the tables to find the link and not able to find the FM's.
if anybody have any idea to find that link between Auth. Group & Role then it will be helpful....
Giri -
PD - Find objects for qualifications
Dear ALL,
I am new in PD. In t-code PPPE_SEARCH_FOR_Q I want find qualifications for my position. I have a position with qualifications. And I have a person who has profile suitably to my position.
Qualifications tab page I have entered my position and restricted objects (selected only persons). In "restrict further" tab page have selected all persons for my business area. On executing there is blank. I dont know why? Have any idea?
regards
SamirHi Samir,
I didn't go into program details, so not very sure about the cause.
You made my day with your kind gesture, thank you very very much
All the best,
Dilek -
Function module to find users for given authorization object
Hi Experts,
I have to develop new report which display all the users who has authorization object which is given by us. i need some function modules to make my program simple.
Please help me on this..
Thanks and regards,
RajaHi
check the fun modules
SUSR_BAPI_USER_PROFS_GET
or check the tables
AGR_USERS
AGR_1252
UST12
AGR_PROF
AGR_TCODES
check the transactions PFCG and SSUIm and SU53 etc
Regards
Anji -
Authorization object for full authorization for PP consultant
HI Experts
Please suggest me a suitable authorization roles and objects which provides all the transaction codes relevant to PP. Thanks
Kind regards
AyazAyaz,
That is dependent upon which company you are working for, and in which type of client (dev, qual, prod, sandbox, etc.) you are expected to work in.
I have seen everything from 'SAP_ALL' to 'no logon' set for every consultatnt for every client, in different companies. So, speak to the company's authorization specialist. For a basic listing of PP Roles, look at
http://help.sap.com/saphelp_erp60_sp/helpdata/en/c6/239038570de04be10000009b38f8cf/frameset.htm
The bottom line is you must have enough authority to perform the required work. There is no 'standard' set of roles for consultants.
Best Regards,
DB49 -
Implementing Boolean operators during find object for qualification
Hi Team
We would like to maintain requirements profiles for PD object (position,job etc.) in terms of qualifications (Q) using complicated boolean operators , for example :
((Q=English>4 OR (Q=French=5 and Q=Spanish>2)) OR (Q=German=6 and english<3) and Q=education # 2
The complicated boolean operators could be also : range,excluded from the range,equal,not equal,not exits.
We would like to execute the search for qualification ,profile matchup based on this complicated boolean requirments profile.
Is there any custom development or configuration to make this happen ?
Best Regards
DrorIs this still true if the Collection generics elements are an interface type? For example, in the
code I sent earlier, I have:
/** The authorities granted to this account. */
private Set<Authority> authorities;
But Authority is an interface that is implemented by the DefaultAuthority class (maybe others
eventually). I was under the impression that in this situation, the metadata does have to provide
the actual type that will be in the collection.
But even if it works in Kodo, one of the requirements of my project is that the JDO implementation
be swapable with JPOX. When I started working on it, both Kodo and JPOX were at a much earlier stage
of implementing JDO 2, and if I recall correctly, JPOX required the implementation class (though I
don't know if it had to be fully qualified). I'm not sure that requirement has been removed from
JPOX yet, though I haven't checked in a while.
Thanks for your help with the default value settings though. Is there any place where I could have
found that behavior documented (Kodo docs, JDO2 spec, etc.)?
Mark
Abe White wrote:
p.s. You don't need to set the element-type in metadata if you're using
Java 5 generics; we can get the element type from the field declaration.
Also, when you do have to declare an element-type in metadata, you
don't need to fully qualify the class name if the element class is in
the same package as the field's owner (the current <package>), or in
java.util, java.math, java.lang. -
Problem finding object for Custom Object Test
I need to create a custom object test that tests whether a an element is present after a record gets inserted into the database. The script is databanked and each iteration needs to insert a databanked record, then evaluate my custom object test to make sure the record was inserted. The trick is in writing the expression that finds the correct custom object. After one iteration, this is the code that finds the custom object;
RSWApp.om.GetElementByPath "window(index=0).link(text=""Category D"" | href=""javascript:OpenModal('DocumentCategoryAddEdit.aspx?documentCategoryId=377','400');"" | index=19)", element
Instead of always grabbing the object whose text is "Category D", I want to grab the object whose text is <<category>> (ie retrieved from a databank file). Search in the href or index isn't helpful because these will change with each iteration through my script.
I tried to modify the GetElementByPath to this:
RSWApp.om.GetElementByPath "window(index=0).link(text=dbValue|)", element
where dbValue is a local parameter that I set earlier on. When I run this, I get an object not found error.
Any ideas?I much prefer to use RSWAPP.om.findElement. It is much more robust than FindElements.<BR>
RSWApp.GetDatabankValue Is what is needed anytime you want to return Databank values to the VBA environment<BR>
<BR>
Your code should look something like the following:<BR>
<BR>
Dim dbVal as string
<BR>
RSWApp.GetDataBankValue "MyDbVariable", dbVal<BR>
<BR>
This will return the contents of "MyDbVariable" which is defined and bound in the databank wizard to VBA variable dbVal.<BR>
<BR>
You can then use DBVal in your path:
<BR>
RSWApp.om.GetElementByPath "window(index=0).link(text="" & dbVal & "" | href=""javascript:OpenModal('DocumentCategoryAddEdit.aspx?documentCategoryId=377','400');"" | index=19)", element<BR>
<BR>
If you decide to use Find elements instead of GetElementByPath, the syntax would like the following: <BR>
<BR>
Set element = RSWApp.om.FindElement(dbVal, "A", "InnerText") <BR>
As you can see it is much simpler.<BR>
<BR>
Hope this helps! -
How to access sys owned objects for role based web user?
Hi,
we have tables and packages etc owned by test schema user, and we access the applications using mod pl/sql though DAD. we created a webuser role and granted the execute privillages to webuser role. we have some packages that we access sys owned such as dbms_random, which test user has execute privillage. how i can get these privillages to webuser? I dont like to give webuser execute privillages over web. any other thoughts and insights would appreciated.
Thanks for the help!use invokers rights instead of definers rights and you won't need 'direct' grants anymore.
create or replace procedure foo authid current_user is
begin
dbms_random....
end;
Sybrand Bakker
Senior Oracle DBA -
Authorization object for 351 movement type
Dear expert
Please guide me
How to restrict 351 movement type for created STO for self plant in self plant?
for eg : there are 2 plant 1001, 2001.
STO CREATED IN 1001 PLANT
IN THIS suppling plant : 2001 & Recieving plant : 1001
Now, suppling plant has to do 351 movement type & Recieving plant has to do 101 movement type.
Now my doubt is receving plant should not do 351 movement type.
but it shows that my 1001 plant (receving plant) doing 351 MOVEMENT TYP.
Logically it should not do this.
So , How to restrict 351 movement type for created STO for self plant in self plant?
Regards
SANTOSH KADAM.M_MSEG_BMB
M_MSEG_BWA
M_MSEG_BWE
M_MSEG_BWF
M_MSEG_LGO
M_MSEG_WMB
M_MSEG_WWA
M_MSEG_WWE
M_MSEG_WWF
if your 1001 plant never needs a 351 movement, then dont assign the 351 together with 1001 in these objects for roles that are used in 1001 plant.
But if 1001 needs to perform as well a 351 to any other plant, then you cannot use authorization to restirct it. -
How to find a autorization object and roles for paricuu00F6llar documetytpe(DMS
Hello,
I have a question,Its urgent ..#
For a particular document type (for example PPN)..
How to find a authorization object and roles...Please let me know.
In the DIS which autority object and roles they use it for this.
<b><REMOVED BY MODERATOR></b>
Regards
preethi
Message was edited by:
Alvaro Tejada GalindoThis issue seems to be resolved since jDeveloper/ADF 11.1.1.3.
Am I true? -
How to find a autorization object and roles for paricuöllar documetytpe(DMS
Hello,
I have a question,Its urgent ..#
For a particular document type (for example PPN)..
How to find a authorization object and roles...Please let me know.
In the DIS which autority object and roles they use it for this.
Reward with full points
Regards
preethiThis issue seems to be resolved since jDeveloper/ADF 11.1.1.3.
Am I true? -
Roles,Authorization,Authorization objects for APD
Hi Experts,
Can anyone give me the list of roles,authorizations,authorization objects required related to APD.
Its been a problem for us getting stuck at each authorization.
With Regards,
Meiyappan.The Analysis Process Designer allows you to work with a large number of objects. This includes different BW objects such as InfoProviders, InfoObjects or queries, and also other objects such as temporary database tables that are influenced by actions already carried out and are authorization-relevant.
Note 919614 - APD: FAQ authorization -
How to find out Authorization Object for Plant
Hi,
I have to implement an Authorization check for Plant in My Report Program.
Is there any transaction which can help me to find out Authorization Object for any field like Material and plant?
Thanks,
MamtaUsing SU21 u can create Authorisation Object.
The ABAP command AUTHORITY-CHECK is used for performing authorizaton checks in programs.
check f1 help on AUTHORITY-CHECK for the syntax.
check these links
link:[http://www.sdn.sap.com/irj/sdn/go/portal/prtroot/docs/library/uuid/a92195a9-0b01-0010-909c-f330ea4a585c;jsessionid=(J2EE3417500)ID1605942050DB11298929682009193279End]
Maybe you are looking for
-
How to make top level navigation not refresh
Hello Guys, I have a question concerning on my External Facing Portal, my boss wants that when I click on a tab or a link in the Top Level Navigation , to load the content in the Content Area without refreshing the whole page, What I want is that whe
-
Print outs have thin border when -default-background-color is set
Hey everyone. In my application the print out have this very thin border. The -default-background-color is set to #333333 (dark grey) and this is the problem. When I set the color to #FFFFFF (white), the thin borders go away. When I set the defaul
-
Read System Information from the Client
Hi, i am looking for a java native interface that allows me to read the client's system information like it can be done with the sigar lib. http://support.hyperic.com/confluence/display/SIGAR/Home Does anyone know if there are alternative native libr
-
Error while installing web dispatcher NW04S SR2
Hi there, Get this error when installing web dispatcher.... step after selecting the kernel source... Pls help?? ERROR 2007-01-29 14:25:23 MUT-03011 Execution of the command "C:\WINDOWS\TEMP\2\sapinst_exe.6196.1170073192\SAPCAR.exe -x -v -g -i -f D:
-
My iCal alarms are being sent (I can see them in my sent folder in Mail), and they are showing up in my gmail account online. However, they aren't showing up in my inbox in Mail, and I'm not having trouble receiving any other emails. What could be th