Only want to transport security objects in BPC

Hi,
I only want to transport Security objects in BPC from DEV to QAS
Is it possible ?
I setup the UJT_TRANS_CHG table entries in DEV the following way -
- Security - Development
- All others  - Production
Will that work ? Is it going to mess up anything in QAS system ?
Do I need to have the same setup in QAS system also ?
Any help would be highly appreciated.
thanks
J

Basically what it is saying is that you always need to have the following TLOGO objects in the UJT_TRANS_CHG table set to "Development".  This is required by the framework,  If they are not set this way, you run the risk of messing up the objects in the target system.  Also, I bellieve that as of SP7 and above, you don't have to worry about this, as these 4 TLOGO are harded coded in the framework to always be triggered regardless of the setting in the UJT_TRANS_CHG table.
ASET
APPM
DIME
DIMA
So again, all you need to do is make sure that these TLOGOs are set to Development, as well as the security ones, and the security data will be transported successfully.  Remember that you must transport your UJT_TRANS_CHG records to the target system before transporting the AppSet.
Regards,
Rich Heilman

Similar Messages

  • Transport of Security objects in BPC 7.5NW

    As a part of NW BPC transports, changed the entries in table UJT_TRANS_CHG. For the 1st transport (from DEV to QA)wanted to transport ALL objects including Security and Teams. So, selected 'Development' for ALL objects under this table.
    After the transport collection via tcode UJBPCTR and importing into QA, found that 'Users', 'Teams'  and 'Task Profiles' did NOT transport. 'Member Access Profiles' did transport to QA.
    I expected 'Users', 'Teams'  and 'Task Profiles' also to be transported. We are on SAP BPC 7.5NW, SP4.
    Am I missing something here ?
    Thanks in Advance.

    Hi
    we had the same problem and didn't know if Security objects could be transported, but we found the BPC User Mass Management Tool.
    http://www.sdn.sap.com/irj/scn/index?rid=/library/uuid/d0cdbccf-0def-2d10-298d-f4223de9a6ed&overridelayout=true
    This could help you to export the security objects in DEV and import the objects in PRD.
    The transports you need for the ZUJE_MASS_USER_MGMT   Programm you found on page 46 in the document mentioned above.
    Please let me know if we could help you.

  • How to display events of only one IPS in Security Monitor?

    Hello,
    i searched the forum with no result. I have CW 2.2 with IDSMC 2.1. I got two IPS and 2 IDSM-2 (4.x is in production / 5.x is in test) which have all their four interfaces sniffing in different network segments. Now i am flooded by the thousands of messages from the internet with no possibilty to just concentrate my view on the events generated on only one special interface of a single IPS.
    To temporarily focus only one one interface of a single IPS how can i filter the events in Security Monitor to only display the events of a this device and a single interface?
    This would be extremly helpfull for to simulate attacks in an test environment with shuning/blocking. I have rare possiblities to set up a second CW IDSMC on another machine. And after all, i would appreciate to focus (filter) in that way for later examining my network to tune signatures and events.
    Furthermore, on IEV 4.1 i was able to get a real time dashboard showing 'real time' events. I did not see this functionality for IPS 5.x and IDSMC. How can i view real time data there to see my networks reaction to simulated attacks.
    Any ideas how to only display only wanted data in Security-Monitor?
    Thanks in advance, Gerhard

    As far as I know, you cannot display the events of only one IPS in Sec Mon.

  • Want to transport Zsapscript in local objects  to  quality server ?

    Hi all,
    I want to transport Zsapscript which is stored in my local objects to quality server ? can you tel people
    tel me how to do it ?
    thanks,
    Siva.

    Hi Siva,
    Local objects can't be tranportable.
    you have to assign a tranport request to the local object.
    steps to assing the tranport request to local object
    1) go to SE80
    2)Search with the Local objects from the drop down in the Repository Broweser
    3) selct your script and right click on that, then go to  Other funtions--> Change package assginment
    4) here you can create or assign the tranport request.
    Regards!

  • TS1398 I only want my secured network wifi but keeps searching for others.  Tried turning on an off wifi and on and off secured networks and ignore other networks, but keep coming back. Any suggestions.

    I only want my secured network wifi but keeps searching for others.  Tried turning on an off wifi and on and off secured networks and ignore other networks, but keep coming back. Any suggestions.

    That's not the way wifi works.
    You may see the other networks but you are not connected to them in any way.

  • Deactivated objects after transport of Analytics Security Object

    Hello Experts,
    We made a release Upgrade to 7.3. To garantee the access to our reports I implemented a lot new Analytics Security Objects. In our development system they are all activated. After transporting them into the quality system, all of them are deactived and not usable.
    Do you have any ideas?
    kind regards
    Frederike

    Hi Sujai,
    Just check is your ODS object Locked or any process job is running on it.
    Was your transport successful.
    Thanks
    CK

  • Security Objects Migration(UJT_TRANS_CHG)

    Hello All,
    In BPC 7.5NW, during appset migration, does only security objects, Task profiles and member access profiles get migrated? Do teams and users do not get migrated? Also in UJT_TRANS_CHG, if I set TLOGO:SECU to P, will it not transport even the member access profiles & task profiles?
    Is the best practise to maintain them in Prod Environment? I also see that a HTG exists to mass download and upload security information across landscapes. I can probably use that for teams & users.
    Please advise.

    Hi,
    The security profiles overall don't get transported properly. Some of the suggestions could be:
    - You could have the setting in UJT_TRANS_CHG as 'D'
    Like you mentioned about the mass user management guide, if you have all the users, teams and the required profiles ready with you, you could add them in your development system , test them thoroughly and use the tool mentioned in the guide to transport across.
    - There is also some inconsistencies if you want to transport reports & schedules assigned to the team folders. Not everyhting gets transported. You need to check the settings in the config table UJT_TRANS_FIL.
    If you look at this table, this may probably have nothing for 'SECU'. This probably explains to some extent about the security related incosistencies.
    Better option would to maintain them in P if you dont have all the secuirty related things ready now. For testing some task profiles and member access profiles, you could create them in D and can also use the tool to transport.
    Note: Please refer to the latest version of the user management guide.
    Thanks

  • Problem in transporting authorization object

    Hi,
    I am facing a problem in transporting the authorization object. We have an existing cube in development and production. In production the object has 3 authorization objects checked. Now I want to change the authorization object assignment in my cube. So I changed the assignment in the development, but when I tried to transport the authorization object it collected all the cubes where the authorization object is used.
    I want to transport only the authorization object associated with that cube, not all. I understand that logically if we are transporting the authorization object from RSSM, it takes all the assignments. But I don't want to do that because there may be some inconsistencies between the system.
    Can you tell me weather we have any other way, so that the authorization object is transported only for one particular cube assignment not all.
    Thanks in advance
    Prashant

    Hi,
    I tried that but not getting anything.
    Can you please tell me the steps.
    Steps I have done are as follows.
    1. Go to RSSM and select the authorization object.
    2. We have a button which says transport authorization object. I clicked on that.
    3. I got a list of all the authorization objects there. I selected my authorization objects and clicked on Transfer Object button.
    4. Then I get the hierarchy authorization objects.
    5. After that I selected a request and everything is included in that request. I didn't got your above mentioned option.
    Do you want me to go to the table RSSTOBJDIR and delete all the other entries??
    It would be great if you can tell me the steps to do that.
    Thanks in advance
    prashant

  • How to select the cost center we want to transport with OKEON?

    Hi everybody!
    I have 200 cost centers but i want only put in the transport order 4 of them.
    How do you do that with OKEON?
    Thanks a lot,
    AnneSo

    Hi experts,
    I found!
    1. create an Order of transport for all center of cost
    2. se01 : modify the objet directly.
    <SID>E004*
    ex : if you want to transport all center of cost containing a "K"
    <SID>E004K
    ex : if you want to transport all center of cost begining by "000"
    <SID>E004000*
    and so on.
    2. then save.
    3. Then return in the object because it will add automatically a new line with SIDE004*.
    Erase it.
    That's the only way//
    Anne-so

  • DMS security object c_drad_obj

    Hi DMS Gurus,
    I'm hoping someone can help me.  I've been testing different scenarios all day and just did a web search to see if anyone has posted anything about this in the past.  I came up with zero on both counts.
    We are new to DMS at my company.  Our objective is to give some users full access to DMS and others no access.  I have found that our existing user roles already pull in Document Management security object CV, I think because the user has access MM03.  For example our sales role has the c_drad_obj object assigned, but we don't want this role to have access to DMS.  No matter what I change the options to in the security object, it doesn't have any effect.
    I was under the impression that I can restrict the activity / document type / linked SAP object / document status in the c_drad_obj object.  But as I previously said, no matter what I set these to, even to disable the object itself, it doesn't seem to matter.
    Thanks for your consideration.
    Regards,
    Julie

    You do realize that C_DRAD_OBJ is relevant only for Object Links stored in table DRAD? Not all documents will have Object Links. See Authorization Objects for Documents - Document Management - SAP Library for details on DMS authorizations. The main table for documents is DRAW.

  • How to transport Minor changes in BPC 7.0 to other client

    Hi,
    I am very new to BPC and got an ticket to do a minor change in script logic. We are in BPC 7.0.
    I am not sure how I can transport this minor change from Dev to other client.
    My question is:
    1. Do we need to make system offline while making changes to Script logic in BPC Admin or it is required only at the time of collecting transport request in BI using tcode: UJBPCTR?
    It would be kind enough if any one could let me know What are all the activities we need to consider/take care before transporting objects from BPC DEV to BPC QUALITY
    Thanks in Advance.
    Regards, Trine

    You only need to take it offline when executing UJBPCTR and when importing in the target system.  The system willl collect all of the appset and transport it, but will do a delta calculation on the target system to determine if any structure changes are required.  The script logic data should simply be overwritten.
    Cheers,
    Rich Heilman

  • Query created in BW dev, modified in BW Q and want to transport from Q to P

    Hello all,
    I have created query in BW dev and then transported to BW qa, we had to modifed the query in BWqa system. There are a lot of queries we have done like this.
    Now I want to transport only the queries (BEX objects) from Qa to Prod staright away, can that we done. If yes, do we have to create new package for transporting the bex objects.
    Also how do we change the assigned packages on the elements which are not modified/created in QA since they already have package assigned to them wheich was created in BW dev.?
    Thanks in advance,
    Raj

    What K J is trying to say is that the usual and recommendable transport path is
    Dev to Quality -- Test the changes throughly
    if satisfactory
    DEV to Prod (the same transport needs to be imported into Prod)
    else
    go back to Dev and make the required changes and go back to the above step of testing in Q until sucessful.
    By moving the same transport across the systems, you can ensure that all the systems are in sync. Lets say you started a query in Dev, moved it into Q and realized that you didnt add a field. Instead of coming back to Dev to do this, if you start making changes in Q (many clients do not allow this, but I've heard of some which do), collect the transport and move it into Prod...then the Q and Dev systems are out of sync! The query in Dev and that in Q are not the same.
        Assign pts if helpful.

  • How to transport bi objects in to r/3 production

    sr,
    i have created one dso along with the transformation,infopackage, reports,infoobjects etc,
    now i want to transport all these objects in to production,kinldy tell me the steps to transport them into production also what are the precautions to be taken because it is production server.
    thanks
    abhay

    Hi,
    Certainly, I can explain.
    1. Go to transaction RSA1
    2. Click 'Transport Connection' pane on left side of screen
    3. Click 'Object Types'
    4. Make sure that you have selected 'Only necessary objects' in 'Grouping' drop down menu.
    5. Select for example DataStore Object and select your DSO
    6. Click 'Transfer Selections'
    7. Click 'Transport Objects' (assign to a package - some other BW guys will know which one)
    8. Give a description and click ok (a traffic light will tell you if objects are locked in other transports)
    9. Go to transaction se01 and release the transport
    10. If there is automatic import to test system, see the transport log.
    11. If there isn't automatic import, please ask basis guys to transport.
    Br,
    Sonni

  • Importance of "Source System Assignment While transporting the objects

    Hi Friends,
    What is the Importance of "Source System Assignment While transporting the objects. And when do we select this icon. what is the exatly significance for this.
    Thanks in advance for all......
    Regards,
    Ramesh.

    HI Rameshpennabadi ,
    This option is only enable for object like  transfer rule, data source and IP if  you want them  to assign source systems,other wise the dialog box Choose Source system by Default? appears.
    Thanks,
    Deepak

  • UME security vs ABAP security object level

    We installed Virsa Compliance Calibrator & Access Enforcer and trying to configure security in UME to control user access so that besides action level security, we need further restriction on for example, Functional Area, cost center & department access. Does UME have lower level authorization restriction capabilities similar to that of ABAP authorization object level security? If not, how can we utilize ABAP Virsa security objects to control JAVA front end access?
    Your advice is much appreciated.
    Thanks,

    I'm not aware of a way to limit requestor access (you can request anything visible); however, you can provide direction by populating an attribute field (i.e. company) with valid company values for each role.  When a requestor searches for a role, if they filter by the appropriate company, they will only see valid roles for the request.  I did, however, point the request authentification towards a 'fake LDAP'.  This prevents individuals without specific UME credentials from submitting a request.
    However, you can restrict approvers using a custom approver/determinator.  In my case, I wanted to use a combination of "role" and "usergroup" to determine approver, rather than use one approver set for all requests.  I have implemented and confirmed this works.  The unfortunate side affect, is that you have to maintain a seperate file for this custom A/D (which you have to refer to /append for any request for role approver information).

Maybe you are looking for

  • Connection to iStore failure (10,2,1,1)

    I am unable to get or browse for content on my PC at present. I did the Diagnostic tests, connection to internet and itunes fine, could not connect to istore, error code 11222 given for certain operations. NO FURTHER INFORMATION AVAILABLE as iTunes n

  • Problem with Viewing Camera Raw/Photoshop Edited Files in Microsoft Applications

    Hi When I edit my portraits in Camera Raw or Photoshop and save as sRGB JPEGS they all look fine when viewed in Bridge, Camera Raw and Photoshop. If I view the portraits in Microsoft Picture Viewer or create a web age of the portraits within Photosho

  • Has CR086758 been reintroduced in 8.1

              I found the following CR's in the documentation for both 6.0 and 7.0.           We are running on 8.1 and experiencing the same error.           CR086758           In a multi-tier implementation, after ten hours of stress testing, the web t

  • Importing files from version cs 2 to PS 5

    Hello, I'm working with potoshop cs 2 for longtime, without any problems as " profesional" so lately i 've installed the photoshop PS 5 , and then all the file that i 've saved before as JPEG when i open them , it's seems to be a color over them ( re

  • Error during Equipment Creation

    Hi, I am trying to create a fleet object with equipment category 'V' i.e. Vehicle. When I am trying to save the equipment, I am getting error stating "The object already exists, assign another key". "Message no. ITOB316". Has anyone come across such