How to give an user permission to access centain Transformations?

I would like to know how to give an user permission to access centain Transformations in one InfoArea only. I already limited the selection in one InfoArea now. I want users can only Display Transformations for all the InfoObjects under this InfoArea. Does anyone know the detail steps? Thanks!

HI,
are you working under Analysis Auth (BI7) or Reporting Auth (BW 3.X)?
If you work with the new concept you can restrict your authorization by using theinfoobjet: 0TCAIFAREA.
before you Add 0TCAIFAREA as an external hierarchy characteristic to 0INFOPROV also when you restrict your auth by infoprovider you can choose the infoarea hierarchy
hope it help
Regard's

Similar Messages

  • How to give a user just the acess to its order services/affectations ?

    Hello experts,
    Do you know how to give a user just the acess to its order services/affectations ?
    Thanks for your answer,
    Best regards,
    Alexandre Dupont

    For order services, contracts and activities set object CRM_ORD_OP as I said.
    For Ibase use CRM_IBASE but with this one it is not possible to set authorizations only for own ibases. Maybe there is some other object for ibases.
    Also for business partner there is no such authorization object to shown only own partners. You have 2 options. To play with object B_BUPA_GRP but that means you will have to maintain group for each responsible employee. Or you implement logic in badi BADI_CRM_BP_UIU_AUTHORITY.

  • How to set End User Permission to an iView?

    Hi experts,
    can someone tell me how I can set End User Permission to enabled to an iView?

    Hi there,
    From what I have read you want a user to access an iView without an account. To do this you need to configure the J2EE engine for an anonymous user access and set the iView property for authentication to anonymous.
    Because the user has no account you have to assign any roles you want to use for permissions to the anonymous user account configured for anonymous access.
    There is documentation on help.sap.com on how to configure anonymous access.
    Hope this helps.
    Regards
    Christiaan

  • How to Restrict a user to a access a particular table

    HI ,
    how to restrict an user to a one particular table and he should have only dispaly authorization for that , can anyone suggest me how to do this.

    Hi,
    Is it a standard table ? S_TABU_DIS (Client Dependant) and S_TABU_CLI (Cross client) are the the authorization objects that controls table maintenance. With Authorization group and activity 03, you can give user access only to Display.
    You can look at table TDDAT to find the authorization group of the table. If it is a custom table for which original t-code is SM30 ( You can look at SU24 to verify that) and it does not have authorization group assigned to it, then you can ask your developer to assign authorization group to the table using t-code SE54. then again make use of S_tabu_dis with activity 03 and Auth group as designed to restrict access.
    Also something to look for is Note 1481950 - New authorization check for generic table access using new auth object S_TABU_NAM. Remember Bernhard talking about it.
    Edited by: Nishant Sourabh on Oct 1, 2010 8:13 PM

  • How a normal designer user gain RAU access privilege

    Hi,
    We have installed Oracle 9i Designer in our setup.Today we got a requirement that a normal Designer user wants to access Repository Admin Utility(RAU)(Normaly a repository owner alone have the permission to get into RAU).
    What is the procedure to be followed to provide RAU access privilege while login in to Oracle 9i Designer as a Normal Designer user.
    Help me to solve this call.
    Thanks
    Rajan.

    Why does a normal user require RAU permission? I think this is a dangerous thing to do. Unless you trust this person not to trash your repository (accidently or otherwise), in which case just give them the existing RAU password.
    But I think you would be better off finding out what it is they want to do that requires administrator privileges and doing it yourself. In my experience it is quite easy enough to shag a designer repository when we know what we are supposed to be doing without allowing normal users to have RAU access as well.
    Cheers, APC

  • How to set the user who can access to repository

    Hi,
    I know we can create user and group in the tools->security.And if this users is belong to Administrators Group, it can access to RPD and do some modify..
    Can we create group or user who can access RPD in some situation(like mentioned in HELP, A can access to repository on Mondays and Wednesdays, B can access to repository on Saturdays and Sundays) and how to set the privilege..
    Thanks
    anne

    Hi Anne,
    The example specified in Help is about restricting query execution on weekdays/weekends for a particular webgroup. Inorder to configure such access ,
    Double click on the web group name -> Query Limits tab ->Click on Restrict button provided against the physical connection pool ->Select Allow/Disallow by selecting a particular time period.
    Rgds,
    Dpka

  • How to give Remote Login permission for hw_services in BPEL

    Hi,
    We are using the Oracle SOA suite 10.1.3.1. May I know how to give the Remote login permission for hw_services which is deployed in BPEL manager. After changing to OID we are unable to call the remote worklist api using REMOTE_CLIENT. It throws the error Not Authorised to login .
    Thanks,
    -

    Hi Fresh,
    You have design the solution using Data replication functionality with WFSC. Probable solution could be as seen below
    Refer below link for information on the solution
    http://download.microsoft.com/download/3/6/1/36117F2E-499F-42D7-9ADD-A838E9E0C197/SiteRecoveryWhitepaper_final_120309.pdf
    Regards,
    Deepak Kori.

  • How to revoke a user from having access to a table

    Hi,
    what is the syntax to revoke a user from having access to a certain table ??
    I want to revoke SELECT, UPDATE, INSERT, and DELETE ?
    thanks,

    Hi,
    Try this:
    revoke select, update, delete, insert on your_table from some_user;You can find more info at the docs:
    http://download.oracle.com/docs/cd/E11882_01/server.112/e10592/statements_9020.htm

  • How to give a user access to just 2 fields in a user account properties

    Is it possible to create a user that has basic access rights in Active Directory but give it access to just the users name and telephone number of every user in Active Directory?  We have a Windows 2003 AD level at the moment.
    Thanks.

    Sure, by default a user you create in Active Directory is going to be apart of Domain Users.  This user will be an Authenticated User and will have Read permissions over all other users in AD, meaning they can see all other users information.
    If you want you can delegate control to a user or group and limit or expand what the user can do.  For instance you can right-click the name of your domain in Active Directory Users and Computers and click Delegate Control then click Next.  Click
    add to add a user or test user, then click Next. Click the Create a custom task to delegate then click Next, select Only the following objects in the folder, then select account objects and click Next. Click Property-specific and there you'll find things like
    Read displayName.  Check Read displayName and Click next then click Finish.  So you've delegated that to that user or group. 
    How to Delegate Basic Server Administration To Junior Administrators. 
    http://support.microsoft.com/kb/555986
    Best Practices for Delegating Active Directory Administration 
    http://technet.microsoft.com/en-us/library/cc773318%28v=ws.10%29.aspx
    If it answered your question, remember to “Mark as Answer”.
    If you found this post helpful, please “Vote as Helpful”.
    Postings are provided “AS IS” with no warranties, and confers no rights.
    Active Directory: Ultimate Reading Collection

  • How to give a user rights to create tables etc

    I have 2 users for my database 'pmi'
    First user is 'sys' which connects as 'SYSDBA'
    Second user is 'user1' which connects as 'Normal'
    I see that with the user 'sys' I am able to create a table in the database. Also insert row, read it, delete it and drop table.
    But with 'user1' I am unable to do any of the operations above. If I try to create a table it gives an error saying 'ORA-01031: insufficient privileges'
    when I login to the Enterprise Manager webpage using the 'sys' login as SYSDBA, I see that in 'Administration' tab-> Users & Privileges->Users->SYS->System Privileges, it has the system privilages like create table, with Admin Option set to 'Y'
    But when I check for 'user1' in the 'sys' login only, I see that there is only one system privilege, 'SELECT ANY DICTIONARY' which is set to 'Y'.
    How do I give rights to 'user1' so that it can use the create, insert, select, delete and drop API(s).
    Please help, it is urgent.

    The obvious reason why you not able to create table and other operations because of user1 does not have the appropriate privilages to do so.so grant
    user1 appropriate privilages so that, he can perform basic operations against your database.
    the below given command will get this for you.
    sql > grant select any table to user1;
    sql > grant create any table to user1 ;
    sql > grant delete table to user1 ;
    hare krishna
    Alok

  • How to determine which user has an Access 2013 databse open

    How can I tell which user / PC has opened a Backend Access database?

    If the file is stored on a server and you have access to it, you could check in Computer Management, then go into System Tools, Shared Folders, Open Files, and you should find the file listed there along with which user has it open currently.

  • How to give another pc permission to pass apps

    i sync whit 3 pcs, the 1st pc i sync (the only one that can pass apps) got broken and now i cant pass apps anymore
    how can i give permission to another pc

    Huh?
    The ipod touch will sync with ONE and only one computer at a time. If you sync to another, it will erase the itunes content from the ipod and replace with content from the new computer.

  • How can give the user defined parameter in alv report

    Hi experts
      I have created one alv report for Sale Order statement.In this alv report have different input parameters
      My problem is in this alv i have two input field Sales Orgaization and Plant.When I set this parameter value in user details it snot affected in my alv report.But it is affected in the standard alv report.How can
    i rectify this
    Regards
    Manoj

    hi
    i think don't use set parameter value,  use there SUBMIT & RETURN statement and write in USER_COMMAND function.
    FORM USER_COMMAND  USING P_UCOMM    LIKE SY-UCOMM
                             P_SELFIELD TYPE SLIS_SELFIELD.
      SUBMIT program name AND RETURN
      WITH <selection-screen field> IN <selection-screen field>
      WITH WERKS IN WERKS .
    ENDFORM .
    Regards,
    Abhi

  • How to grant new user permission when the acct is created from application?

    Our application team will randomly create users in DB. But the new user need to have the permission of "execute on DBMS_SNAPSHOT, DBMS_STAT, DBMS_SYSTEM" being granted from sys. We need to grant it automatically after the user is created. I was thinking about using DDL "create" trigger or just DDL database trigger. Once the trigger is fired off, issue the grant statement. We can capture the create even for the user, but got error when running the grant in the trigger or from the procedure called by trigger. My guess is that the "grant" is a DDL and DDL trigger cannot start another DDL statement. I also think about put the insert trigger on the sys.user$. But oracle would not let trigger being created on the sys tables or views.
    What can we do now? The other option, I am wondering if there is a system package that can call external program (like Unix shell script) from the DDL trigger, to let the shell script do the grant, since this may not be considered as the same execution tree. Do we have such package to call from database to the UNIX shell script? Or for such need, do we have any other option?
    Thanks for help!
    Edited by: user5973955 on Oct 6, 2010 3:51 PM

    The application teams do not have the sys permission. If the application has privileges to CREATE USER, it can then issue GRANT
    Change the privileges.
    But they want this being resolved from DBA.DBA did NOT make this problem.
    The flawed application created the problem.
    Alternatively CREATE PROCEDURE that can issue GRANT & have application call this new procedure.

  • Give OD Users local admin access

    Is it possible to give an OD user local administrative rights to a computer so they can install programs without having to know the local computer's admin credentials?

    Create "Domain Users" group
    Add SMBRID = 513 to that group
    Add Domain Users to the Power Users group on the computers in question
    Of course it is not much more secure than giving them the local admin passwords but you can revoke their rights by removing them from Domain Users group.

Maybe you are looking for

  • Solution for BBDM Mac sync

    I had several problems using BBDM for MAC as have so many others and followed the advice of one the posts on this board. I now cannot find that post so can't give credit to the poster but the solution worked for me and follows: Delete all prior sync

  • Ess/mss best practice

    When implementing employee self service and manager self service what are the best practices when creating ids.  Do most use active directory. Or employee Ids and or generated numbers.  I would like to know what the best methods some may recommend. T

  • File storage issue

    Cannot store a Numbers file into an iDisk folder, although I can store a Pages file into a folder. How to overcome this issue? Thanks

  • Startup problems with Mac OS X 10.5 on intel based iMac

    When starting op de iMac the starting up proces won't go further than the white screen with the Apple logo and the time clock... Any ideas what to problem could be?

  • Doesn't start / doesn't show up anything?

    Well, first of all, Hello. I'm using 'Ipod Touch 2nd generation' and I have a big problem. When I want to start it, it doesn't do anything, even not a error message. So I charged it for maybe, 48 hours, and it still doesn't starting. But my USB cable