How to activate authorization profile in ERP 6.0

Hi,
Could you give me a hint please.
In ERP 6.0 system, I copied a authorization profile from &_SAP_ALL_13, and changed it.(saved successfully)
But clicking activation, message "Unable to activate, authorizations missing: ..." is shown in pop-up.
What happend in this process.
In R/3 46C system, such a message is not shown.
authorization profile activation process changed in ERP 6.0?
I did following actions;
T-CD: SU02
- Profile: &_SAP_ALL_13 / With any options off  -> Create work area for profiles
- -> Copy Profile
- Copy profile From &_SAP_ALL_13 To Z_SAP_ALL_13 -> Execute
T-CD: SU02
- Profile: Z_SAP_ALL_13 / With any options off  -> Create work area for profiles
- change some objects in the profile (include delete line) -> Save -> Activate
regards,
Katsumi

Dear Katsumi,
Go to change authorization data and check weather every node is in green.If not expand every node and check anything in yellow or red that should come in green.Then generate that profile Shift+F5.
Now after generating your profile make sure to click on User Comparison.
Also there might be a possibility that user must not be having enough authorization.In that case :
From the user login wherever this message authorization faliure is coming type /nsu53 and see for missing authorization.
Now go to your login(considering that you have full authorization) use tcode PFCG and role in which use tcode is residing.Add manually the missing object which reflects on the SU53.Again generate and make user comparision.
Now come back to user login and again try .If that is still not coming repeat the above 2 steps.
Regards,
Ashutosh
Edited by: ashutosh singh on Aug 13, 2008 7:53 AM
Edited by: ashutosh singh on Aug 13, 2008 7:54 AM

Similar Messages

  • How to activate this profiling function

    Hi Pros,
          I can't use profiling function, because it is greyed, do you know how to activate this function?

    Hi,
    what do you mean by profiling Function. Is it BODS column Profiling?.
    If you want to BODS profiling, 1st you should you need to login in profiling server.
    Steps:Tools-->profiler server login-->give user name and Pasword then you can select the profiling repository
    Pre Requisites:  Profiler repoistory should be created 1st.
    Thanks,
    Deepa

  • Acitivate authorization profile

    I have no authorization to do SU02,
    Is there a BAPI or FM that can be used to activate authorization profile?
    Edited by: Heyman52 on Jul 8, 2010 4:07 AM

    Hi,
    Use tcode: OOSP Authorization Profiles
    The authorization profiles are specified in the T77PR table (Definition of Authorization Profiles).

  • How to create and allocate authorization profiles?

    How to create and allocate authorization profiles? please issue step by step and usage of  TC:PFCG.

    Hi Srinivas,
    I would like to try to explain how to create an authorization profile.
    1. you have to create a user with the Tcode SU01 at first
    2. run Tcode /nPFCG.
    3. enter a name for the role (naming convention is here very important) which you want to create and then click on "create Role".
    4. enter a short description for the role and then click on Authorization tab.
    5. now you are required to save the role. Click on it and continue.
    6. click on the tab "change authorization data" and select the authorization template what you need.
    7.change the authorization field value.
    8.click on button "Generate".
    9.click on button Back
    10. click on Tab user to assign the role to the user which you created in step one
    11.click on button User comparison and then complete comparison
    Hope this helps

  • Re how to activate release creation profil

    Dear Sap experts, 
    please advise me how to activate release creation profile as i have already trasanction code
    OMSG but in which vendor gorup we have to go...
    Thanks
    Mohit

    You need to select 0001- vendor.
    To activate in ht e vendor master goto - purchasing view-extras-
    give the plant, check data retention at plant level, SAVE
    Now again goto purchasing view, extrasà alternate data,for a plant
    In default material data, u find this Release creation profile

  • How to Check authorizations (user profiles) using eCATT?

    Hi All,
    Please tell me how to Check authorizations (user profiles) using eCATT?
    Thanks in advance.
    Regards
    Kalyani

    Hello ,
    Create a script for SU02 transaction in the SAPGUI mode, in the script move to the profiles tab and GETGUI the first profile and loop to all the profiles assigned to the user until you find your required profile.
    Other way is to identify the table where the profiles are stored and then create script using GETTAB , pass the user name and retreive all the profiles assigned to tht particular user, loop through profiles untill you find your required profile.
    Thanks & Best regards,
    Ajay

  • How to get all authorization objects for a certain authorization profile

    Hi ABAP experts,
    I have the following problem: for a certain authorization profile of a role (created with transaction PFCG) I would like to get all contained authorization objects: e.g. for the contained object PLOG I would like to know/read all corresponding parameter values.
    So:
    - where are these values stored (dictionary table)?
    - is there already a FM or a report to read all authoriation values for a certain authorization profile?
    Thanks in advance.
    Best regards,
    Oliver

    Hi,
    check the following it might useful for you:
    https://www.sdn.sap.com/irj/sdn/go/portal/prtroot/docs/library/uuid/a92195a9-0b01-0010-909c-f330ea4a585c
    if helpful reward points are appreciated

  • How to make changes in Authorization profile?

    Dear Guru's
                    In R/3 4.7 i used to change authorization profile in tcode SU02.where as in ecc 6.0 i dont find any change option it shows "Generated profile can only be displayed"
           I want to remove the particular tcode from that authorization profile.please help.
    Regards
    AKI

    Aki
    In new SAP versions, they have replaced direct profile generation with Roles concept and all the new profiles are attached to the roles. Follow this link and read it completely and understand the concept.
    http://help.sap.com/saphelp_bw21c/helpdata/en/52/6714b6439b11d1896f0000e8322d00/content.htm
    You cannot change a profile directly, instead you will have to insert authorization from the existing profile into a new role and generate a new profile for that role.
    Goto PFCG, create some new Z role. Save it, then goto authorizations tab, in the profile text box enter the profile name you want to edit authorization of. Goto change authorization Data. make the required changes. Then in the menu on top left hand side you will see a red and white ball press that and generate profile. Now you have a new role with required authorization. You can attach the role to required users.
    Rahul

  • How to create authorization base on comp. code in BW

    Now I want to create one authorization for people who can only see the comp. code under ' 9000' . Pls info how to create it in BW side. Could we upload authorization profile for that person from ERP side?

    Hi Awa,
    In BI or BW go to the object Company Code n change more under Business explorer mark Check the authorization relevant field.
    Now go to basis guy or if u have the authorization in BI for RSECADMIN(T-CODE)
    Under which Authorization n maintenance Tab.
    Create Authorization Relevant Object. Like ZN_CCODE n in which select 0COMP_CODE. After selecting the Company code double click on that n under which u can give restriction for the particular company code.
    It will surely help you.
    Assign Points if it helps.
    Regards,
    sandeep

  • How to activate the IS-Retail in ECC 6.0 R/3 system

    Dear Guru's...........
    Can any one tell me how to activate the IS-Retail in ECC 6.0 R/3 system.
    I have IDES system in my home I donu2019t know how to activate retail settings.
    Please suggest me how to do that.
    Regards
    dnr

    Dear DNR,
    SPRO --> IMG --> Activate SAP ECC Extensions (Or, T. Code: SFW5)
    Go to Tab: Industry Business Function
    Select Business Function Set: ISR_RETAIL - SAP Retail
    A new line will be appeared below.
    Current Status will be OFF. Click within Field: Current Status. It will pop-up a list. Select "X - ON".
    Important: I've read somewhere - Once Activated, cannot Roll-back.
    Best Regards,
    Amit
    Note: For more, go to - http://help.sap.com
    Follow the menu tree: SAP for Industries/SAP for Retail
    Click on the link for "SAP industry Specific Components"
    Choose the document "Business Function Set Retail"
    Also,
    Check https://websmp103.sap-ag.de/erp-upgrade --> mySAP ERP 2005: Updated upgrade FAQs, there you will find the list of Industry solutions which are supported by mySAP ERP.
    https://websmp103.sap-ag.de/~sapidb/011000358700006168472006/
    You must this thread in to [Forum: SAP Enhancement Packages|/community [original link is broken]; OR [Forum: Enterprise Resource Planning (ERP)|Enterprise Resource Planning (SAP ERP); as Nowhere, it is related to SAP SD.

  • Query related to Authorization profile.

    Hi Professionals,
    Please help me out as I'm not a BASIS consultant but PP.....
    We've created Users profile and assigned them profiles that contain a particular bunch of Transaction codes module wise.
    Now we want to to create and assign such a Authorization profile to Users which will contain all Display transaction codes either related to all modules OR that particular module only say PP, MM, FI, CO etc.....
    For example
    MM03- Display material master
    CS03- Display material BOM
    CR03- Display work center
    ME53N- Display Purchase requisition etc.
    Is there any standard profile for that that are already provided by SAP? If it's there, how do we know that are related to what module?
    Suppose if we assign such profiles, what will be implications related to future and user discipline?
    Thanks & Regards,
    Abu Arbab

    Hi Abu, don't worry about being a PP consultant, most of us here are not Basis either, rather we focus on security.
    There are no standard roles delivered by SAP which give this.  There are standard SAP display roles but none will include all the display transactions for a module.
    What you should do is get each functional team to list the dispay transactions which are used by the business processes which they have configured.  There is no point in creating a display role with 500 transactions if the business processes only requires 30 transactions.  Access is more usually required for business processes rather than module so you would often need to combine your modular display roles to cover a single process.
    By building the roles to include the transactions you use rather than are available, you also avoid one of the mistakes often seen with using standard SAP roles - users having wider authorisations than they require to perform their job.

  • How to give authorization for create and change particular Condition Type

    Hi...
       In my requirement is , Only one user can be authorized to create and change a particular condition type 'ZABC' in vk11 and vk12 .
    For remaining condition type can be used as in normal .
    How to do this ? How to give authorization for a particular user for particular condition type ?
    Plz guide me ..
    Thanks in advance .
    Deepa .

    Hi Deepa ,
    u can check A.Object V_KOND_VEA, in user profile u can assign condition type or tables.
    have a word with ur basis guy , so he can help u in better way.
    aand also ref FM SD_COND_AUTH_CHECK
    Regards
    Prabhu

  • ISE Authorization Profile Question

    Hi,
    We are implementing ISE at a university and using dynamic VLAN allocation to segment the traffic into vlans of a manageable size - we do not want to use geographically based vlans for a number of reasons. However there is one scenario which I am struggling with.
    A number of students will be living in university owned houses which are not directly connected to the university network. In these houses an ISP will provide an ADSL circuit. These ADSL circuits will be aggregated back at the university data centre and will connect down one piece of wire to the university network. I haven't completed my testing yet but the general theory is that we can use multi-auth to allow them on to the network and apply appropriate access restrictions (these restrictions will differ from those applied to those applied when they connect "on campus") . However, in order to do this, I will need to create an authorization policy based on where they are coming from (ie what switch and what port). I can see how I can use Identity Groups to identify which switch the traffic is coming from but for the life of me I have no idea how I would identify the port.
    Anyone have any ideas how I might achieve my goal?
    Thanks
    Alan              

    Hi
    Cisco ISE allows for a wide range of variables within authorization policies to ensure that only authorized users can access the appropriate resources when they access the network. The initial release of Cisco ISE supports only RADIUS-governed access to the internal network and its resources. The authorization policy result is Cisco ISE assigning an authorization profile that might also involve a downloadable ACL specifying traffic management on the network policy enforcement device. The downloadable ACL specifies the RADIUS attributes that are returned during authentication and that define the user access privileges granted once authenticated by Cisco ISE.
    An authorization profile acts as a container where a number of specific permissions allow access to a set of network services. The authorization profile is where you define a set of permissions to be granted for a network access request and can include:
    • A profile name
    • A profile description
    • An associated DACL
    • An associated VLAN
    • An associated SGACL
    • Any number of other dictionary-based attributes

  • ISE Authorization profile

    I am trying to create an authorization profile in ISE. My vlan for that profile is 50. When I try to add the Tag ID as 50 it is not allowing me to do so.
    The message I am getting is : “Tag ID should contain only numerical value and in the range 0-31. How can the vlan be 0”. How to deal with this issue when my vlan ids are higher then 31.
    I was wondering if anyone else had similar issue? Or am I missing anything.
    Ds

  • How to activate HTTP port in R3 system?

    Hi All
    In SMICM transaction i am not getting Http port. I think its not activated.
    Can anyone please tell me how to activate HTTP port in R3.
    Please help me?
    Regards
    Sowmya

    Hi,
    You just have to set the profile parameters that are described in the documentation that you should have read.
    Regards,
    Olivier

Maybe you are looking for

  • How can I open a pdf attachment in Mozilla Thunderbird?

    In my Thunderbird email account, I checked a box for MSWord to open all attachments, but I would like to reverse that decision since I got a pdf attachment, and MSWord doesn't open that. How do I change it back to the way it was so the pdf attachment

  • Save drag and drop layout

    Hi Folks, Can anyone tell me the best way to do this. I need to save the layout of my page: http://www.sandwell.nhs.uk/test/test.html I'd like to store the page layout in a database, but I dont understand how to capure the DOM, would I need to save t

  • When opening a webpage (such as sky news) always opens on a new tab.

    So i search for a web page such as sky news and this bring up a list as normal, however, when i click on the webpage I would expect the webpage to open on the same tab. But it does not, it opens it on a new tab!!??

  • Last ditch question about The older version of iTunes cannot be removed...

    I've spent two weeks trying to upgrade iTunes. The error is always the same: "The older version of iTunes cannot be removed. Contact your technical support group." I went through every step in the detailed documents on the Apple Web site except one:

  • Help!!Adobe Reader 10.1.2 wont Install (Erorr msg) Saying

    (No Valid sequence could be found for the set of patces) I am runing XP Home with fire fox, google chrome, Enternet explore, I have tryed all 3 and Adobe reader will down load and open to install when installing It stops and shows this msg I have try