PA30 access restricted to only infotype 105

Hello All,
I am trying to create a role with PA30 and it should have access only to create or change infotypr 105 ( communication)
I tried putting infotype 0105 in the 'infotype' value in auth.obj , but it doesn't seem to work.
Any ideas on how this can be acheived?
Thanks and Regards,
Shobana

it should have access only to create or change infotypr 105 ( communication)
I tried putting infotype 0105 in the 'infotype' value in auth.obj , but it doesn't seem to work.
Create or Change access to Infotype 0105 has to be restricted on auth object P_ORGIN  via following fields:
INFTY= 0105
SUBTY= Specify any subtype of IT0105 you would want to restrict (like 0001 or 9001 etc), in case of full access assign *
AUTHC= Authorization levels W- Write data records, E- Write locked records
PERSA= Personnel area to which user should have access to
EE group
EE Subgroup
VDSK1 (Org key)
Last three fields are further levels of restrictions which can be used based on your design.
To activate check on P_ORGIN, put value of AUTSW ORGIN = 1 in table T77S0 or OOAC tcode.
In case these steps have already been addressed in your case, please provide with more details about the error message users are receiving or what is the issue being encountered.
Thanks!
Sandipan

Similar Messages

  • User Access restriction for certain infotype

    Hi,
    We have a requirement from our management that for some specific user we need to give all infotype view access I mean PA20 but excluding payroll data for 14 grade and above.
    For this requirement I cannot give grade wise authorization because as per the requirement they can view all the hr related infotype except grade 14 and above our user should not view any payroll related infotype but less than 14 they can view the same.
    For this I need to create one object and give it to them but I donu2019t how to find it out?
    Can any one guide me?
    Thanks
    Gudia

    Hi,
    You can create dynamic action for IT 0008 that will copy grade value to field org.key in IT 0001.
    This field can be used in authorization object P_ORGIN.
    Then you can specify 2 P_ORGIN objects in the user role:
    1. IT - all
        Org.key 1-13
    2. IT - non-payroll
        Ogr.key 14 and above.
    Cheers!

  • WRT54G2 and WRT54G locks-up (freezes) when blocking web sites using Access Restrictions

    I am convinced that a few Linksys routers such as WRT54G2 and WRT54G have a major issue when blocking web sites using Access Restrictions (Internet Access Policy). After a few hours of internet access by 15 wired users the Linksys locks-up and blocks all internet web access. The only solution is to restart the power on the router.
    We are currently using a Linksys WRT54G2 v1 (firmware 1.0.04). We upgraded the WRT54G2 v1 firmware to the latest 1.0.04 version which did not resolve the issue.  NOTE: We were previosuly using a a Linksys WRT54G v1.1 (firmware 4.21.1) until the power supply blew a week after we started blocking web sites using Access Restrictions (Internet Access Policy).  
    Basically, we have a T1 internet connection and a hub connected to the Linksys router. We are trying to block several web sites such as facebook, myspace, etc. for 15 wired users. We do not use wireless connections.
    This is the 2nd time it happened with 2 different models.
    Please help ASAP.
    Thank you,
    Lance
    (Mod note: Edited post. Some parts off topic.. Thanks!)

    Also,  you have already upgrade/re-flash the firmware of your Linksys Router you need to reset and reconfigure your router from scratch. Press and hold the reset button for 30 seconds...Release the reset button...Unplug the power cable from your router, wait for 30 seconds and re-connect the power cable...Now re-configure your router...

  • Access restrictions timing off by 1 hour

    I don't know if anyone else is experiencing this problem.  I have set access restrictions on my WRT610N router and they execute an hour earlier than set.
    I checked the time zone settings, the system clock and all seem correct. I have a rule that is supposed to turn off access to the Internet at 11:55pm. However, the rule gets executed at 10:55pm.
    This was happening on my first WRT610N which was also dropping network connections. So, I returned that unit and got a replacement.
    The new unit does not drop connections but has the same timing problem.  The only solution I have found is to change the time zone to the next one that is 1 hour behind my time zone.
    Please let me know if anyone else has experienced this same situation.

    My ISP is on the same town as I am. The information they are supplying appears to be correct as my WRT54G uses the same information and its rules execute properly.
    I think there is a problem with the WRT610N. My solution is temporary I hope that Linksys will fix this problem. 

  • Access Restrictions bug of firmware 1.01.1 for WRT54G V5 V6

    I am using WRT54G V5.
    The Access Restrictions function won't work properly when using firmwares 1.01.1 and 1.01.0. Ports can't be blocked by using the "Blocked Services" in this function.
    Now I have to switch back to 1.00.9 to make the port blocking work, but there is a DHCP server issue which could only be fixed in 1.01.0 or above.... Could someone fix this BIG BUG and roll out a new firmware????
    Thanks a bunch.
    Message Edited by Dennis_Hsu on 01-08-200705:02 PM

    What is your Fragmentation and RTS threshold value? I'm not sure if I'm reading your message right, but it says as far as I can understand 30. The value should be 2304 instead for both.
    Ty changing the wireless channel also to either 1, 6 or 11.

  • Access restriction in Universe

    Hi All,
    In our environment we have 2 domain (US and Europe) and most of the user have id created for both the domain. We have 2 identical databases one in US and other in Europe. US database holds US information and Europe holds Europe data. 
    In our BO environment we have set the ad groups to create new id for each user Alias i.e if the user abcd has access in both US and Europe domain BO creates 2 separate ids for each domain (bo internally creates abcd and abcd0). We have only one universe and set of reports which has connection switching based on the domain user logs into BO (access restriction at connection level). This works absolutely fine, switches database connection depending on the domain user logs in.
    Now we are hearing from our users that they can access the personal reports created under Europe login in US login (this because users has abcd and abcd0). So we decided to create enterprise id and alias the users from AD group (abcd --> alias AD abcd), if we do this the change the connection swap is not happening as the BOUSER always returns abcd as user and universe restriction is only picking the default connection.
    Thanks
    Srinivas

    Hi,
    As you have mentioned in the post that OS is solaris. so for Solaris LAFix has been released by PG for this issue.Below are the details:
    VERSION:     XIR3.0 LAFix0.18
    PLATFORMS:       Solaris Solaris 10
    LANGUAGES:       English
    ADAPT ID:      ADAPT01099598
    Synopsis:     Universe connection override does not work u2013 Error WIS 10901
    WARNING: This LAFix has not been through a full regression test cycle but it has been deemed to fix the problem reported by the customer.  Inadvertent introduction of an unforeseen issue can however not be fully excluded. Before providing this LAFix to the customer, Customer Assurance must perform their own tests to confirm customer issue is solved.
    ADDITIONAL INFORMATION
           Installation Instructions :
    1.     Stop all BO Enterprise services, e.g <BOE_DIR>/bobje/stopservers
    2.     Gunzip and Untar  XI3.0_RHEL_LAFix0.18.tar.gz
    3.     Change directory to <EXTRACTED_LOCATION>/LAFix0.13/DISK_1
    4.     Run install.sh
    5.     Re-start all BOE services, e.g ./startservers
           Uninstall Instructions :
    2. Run uninstallpatch.sh from your system.
         New Behavior :
                The above issue is now resolved.
         Limitations :
                No known limitations
         Component(s):
          libuum.so
    Note: LAFix is released on top of XI 3.0
    To download the or get the LAFix you need to contact to your Sales Account Manager of BusinessObjects.
    Cheers,
    Deepti Bajpai

  • Problem with access restriction

    I have about 50 to 80 users under my internet connection and i used the router 2500 and make there repeater of the single connection but i want to restrict many of the user on interner and some on timely but is not possible with this version of product, what can i do house, or what software do you suggest for me to use with this to restrict the internet access on this network. 
    Again, i try to use switch sf100-24 becos of the numbers of the cable to use that is more than 4 as we have only 4 port on the router for ethernet but if i connect it after few second it will make all the connection saying 'unidentify network' and it will not function again what can i do to solve this problem too please!!! help me house

    Hi, you might perhaps consider getting a gigabit switch in order for those devices to be able to work with access restriction.

  • Access Restriction tab is missing on e3000 web interface

    I am quite sure that this tab has been there before but now its missing - could it be because I have activated  Parent Control on Cisco Connect ?
    If so - how do I 'get It back'
    (I thing parent control in Cisco connect is too limited)
    Regards
    Fleohans
    Solved!
    Go to Solution.

    Yes, the Access Restrictions tab goes away when the Parental Controls section is activated. According to the faqs, a hard reset is the only way to restore it.

  • Cisco ISE Machine Access Restrictions MAR

    I want to test out MAR.  I notice there is a tick box on the ISE for MAR under: Identity Management --> External Identity Sources --> Active Directory --> Advanced Settings --> [tick] Enable Machine Access Restrictions
    but also there is this condition that is to be used in the AuthZ Policy
    Network Access:WasMachineAuthenticated           
    So...
    What does the tick box option do?
    Are they related or refer to different things?
    Are both needed to get a MAR AuthZ to work?
    Any of clarifying or beneficial info?
    thanks

    Hi,
    Your are correct you will have to create an authorization condition that checks if the machine authenticated successfully.
    So...
    What does the tick box option do?
    When you enable MAR globally it lets the ISE know to build a cache  for endpoints that successfully perform machine authentication.
    Are they related or refer to different things?
    They work hand in hand.
    Are both needed to get a MAR AuthZ to work?
    Yes, you will have to create another authorization policy to allow domain computers to connect.
    Any of clarifying or beneficial info?
    When MAR is enabled, you will have to enable machine and user authentication to your laptop, after MAR succeeds ISE builds an entry in its database mapping the endpoint (mac address) to a successful machine authentication, after when a user authenticates not only do they have to provide the correct credentials but the mac address they are authenticating through will have an entry in the "MAR cache", keep in mind that some supplicants only perform machine authentication when logging on and off, and on boot up. If you want to use MAR i suggest using the Anyconnect NAM client, there is a new feature in ISE 1.1.1 and the latest client that allows you to perform eap chaining.
    Thanks,
    Tarik Admani
    *Please rate helpful posts*

  • WRT54GS Access Restriction for WiFi Connected Devices

    I have the WRT54GS v4 running with the latest Firmware Version: v1.06.3 -- I am attempting to add Access Restrictions for a few MAC addresses and IP addresses (my kids iPod Touch and laptop).   
    I am simply wanting to deny total internet access from 9pm to 7am.   I have gotten it to work but ONLY for computers that are actually plugged into the router (cat 5 internet cables).  All the computers/devices that connect to the router via wifi do not seem to be restricted at all.   I am thinking this is an issue with the router in that it ONLY seems to apply the Access Restriction rules to those devices that are actually directly connected by hardwire.
    Has any one else noticed this issue for WiFi connected devices?  Access Restrictions do not seem to apply to WiFi connected devices.
    Please help -- I would hate to have to buy another router.

    Are you sure you have enter the correct MAC address or IP address? Wired connections use different MAC and IP addresses then wireless connection...

  • No Internet with Multiple Access Restrictions

    Hi,
    I have a WRT54Gv5 and have setup the following Access Restrictions for an Ipod Touch.  Having a single AR works fine but adding another kills internet for that user.  I am using the MAC filter for that user.
    M-F: 6am-7:30am, allow Internet but block MSN.com, live.com and facebook.com
    M-Th: 2:45pm-7:30pm, allow all
    F-Sa: 6am-8:30pm, allow all
    Su: 6am-7:30pm, allow all
    I was thinking of using block instead of allow but that would make a lot of block windows (or maybe that is the only solution).
    Thanks

    Make sure that your router is running on latest firmware.
    If not then try to upgrade/re-flash the firmware on your router.
    Download the latest firmware from Linksys website and save it on your computer. Open the setup page of the router and upgrade the firmware. After upgrading the firmware on your router, reset the router and reconfigure it.

  • E1000 Access Restrictions Issue

    I attempted to create a rule to limit access only to specific URLs during a specific time of day.  However, it seems to have blocked all of the internet for the user at that MAC address, outside of the times I had chosen.  I double-checked to make sure that the radio button next to 'Allow' was selected in the section that reads:  "Internet access during selected days and hours."  I don't know what I'm doing wrong.   How is the time of day determined by the router?  Is there a clock which needs to be set to my time zone somewhere?  If so, I've yet to find it.  Also, why is it blocking all access to the internet?  It should only be blocking 3 URLs.

    The Access Restrictions feature of a Linksys router allows you to limit Internet access on your network.  You can deny certain computers’ Internet access or block certain applications and services.  This article will provide instructions on how to set up Access Restrictions by blocking certain days or hours.
    Here is the link for the same: http://www6.nohold.net/Cisco2/ukp.aspx?vw=1&docid=20b29e54474a4a17aff594cb659747ea_4041.xml&pid=80&r...
    The time zone on your router should be set correctly according to the time zone in your current location.  This is to ensure that the Parental controls feature will block Internet access on the exact time you specified.  To configure the time zone on your router, access your router’s web-based setup page, then go to Basic Setup sub tab under the Setup tab.  Click the Time Zone drop-down menu and select the appropriate time zone.  Once done, click Save Settings.

  • "Access Restrictions" change to "Access Policy"

    can someone tell me what happen to my router linksys e1200, after i update the firmware to the latest version "Access Restrictions" is change to "Access Policy". how can i revert it back to "Access Restrictions" do i need to downgrade the firmware? 
    Thanks!

    You updated it to the latest firmware. That’s how it works with the updated firmware. Is there any reason why you upgrade your router? It’s only recommended to update the router if needed if not then its not advisable to do so. Downgrading it to the old firmware version may have a chance to brick your router.

  • E4200 guest network access restrictions

    I have the E4200 router with fw v1.0.01.
    I need to provide guest access and limit the hours it is available.
    I am not able to use access restrictions because when I attempt to enter the range of IP addresses it forces me to use 192.168.1 and the guest subnet is 192.168.33, therefore it never gets a match when the cutoff time comes. I do not know the MAC addresses of the guests and  cannot force them to use predefined static IP addresses, so the range of addresses seems to be my only option. It's just that it won't let me input the "33" where it is needed.
    Perhaps I am misunderstanding something or perhaps there is some other way to accomplish this.
    Please advise.
    Thank you,
    -Marty

    Thanks for the reply. I'm pretty sure you're right, at least it looks that way. That's a little too open for me. I suppose I could change the config when I want to cut off access, it would just be nice to have it automated.

  • Allow one URL in Access Restriction?

    I'd like to allow internet access for lunch hour only for a group of computers. I've assigned the IP's and set up two access restrictions to DENY for morning and afternoon. Is there a way to allow those computers to have access to just one URL (www.gmail.com) all day long?
    Is there a link where these access restrictions have been explained a little more fully than what's available in the WRT610N help screen?
    Thank you.
    Solved!
    Go to Solution.

    I am afraid, you cannot allow those computers to have access to just one URL (www.gmail.com) all day long if you have denied them for Internet Access for Morning and Afternoon...

Maybe you are looking for