Portal ESS users without R/3 accounts
Hi,
I'm not sure if this is the correct category to post this question, if not, please advise as where would be the most appropriate place to post this question.
I would like to create portal users (EP 6.0 on WAS 6.40 SP15) for ESS access but the users do not have SAP R/3 accounts (4.7)... is this possible, if so, what would be the best steps to accomplish this.
Thank you.
Eloy
Hi Eloy,
I'm afraid Arun has a point there.
Even though the users from ECC and Portal are different, the ESS iviews get their information from the backend, in our case ECC, through the Jco connections.
We started out by the same thought you had, but we reached a point where we had to connect the Portal users to the ECC employees and there was no escaping from it.
The license is different tho, even though our users are in both systems, the ESS users can only access their information through the Portal and can't get into the SAP GUI. I couldn't give you more details about it cause I'm not sure how it works either.
Hope it helps.
Simone
Similar Messages
-
If I have two users on one itunes account, can I change the payment method on one without loosing the purchases on that user? If so how do I do this?
If so how do I do that
-
Can I add a new phone user to my itunes account without overriding my phone data?
Read this
http://support.apple.com/kb/HT1495 -
How do I do this. Users without FormsCentral accounts or accounts with unverified email addresses cannot receive email notifications. No notifications will be sent until the accounts are created and verified.
Moving this discussion to the FormsCentral forum.
-
Clarification in ESS User Licensing
Dear All,
Greetings!
We are to implement ESS in a R3 4.7 Ext 1.10 system through ITS and SAP NW EP 6.0/SP21.
ESS Users will be using the portal system to verify their personal details and other functionalities. I have used SSO and User Mapping.
As per the settings the user created in the Portal System also needs to be created in the R3 system with the same user name as a dialog user. When I tried creating the user as a communication user I was not able to connect to my R3 backend system from portal using the defined communication user.
Is this because of some configuration problems in SSO and User Mapping or such a scenario is not
possible?
I have a series of questions,
1. If a user is created in R3 and Portal system only with ESS roles, should the user be allowed to login to the R3 system (or) the user logging-in to R3 system violates the ESS license?
2. If the ESS user ids are created in both the R3 and Portal systems, how will the license be calculated?
3. Is there a possibilty of maintaining the R3 ESS user id's as a communication user and not allowing them a login through SAP Logon GUI?
Kindly advice if I am wrong.
Expecting your replies at the earliest.
Thank you
Regards,
Vineethhi
ESS License and SAP R/3 License are different. So if you have e.g. 1000 ESS license and 500 SAP r/3 license, so in total you can have 1500 ESS users in an organisation as the 500 SAP r/3 license will work as ESS users by default. So users from departments like Lisioning, Legal and Admin, to whom you don't want to give access to SAP R/3, you can assign ESS or MSS role accordingly through which they can access ESS MSS services without access to R/3.
But before my strong confirmation I would like to speak with Sales/SAP Concerned person.
regards
Vijay -
ESS Workflow 10000015 Approve request for changing address thru Portal ESS
Hi Experts,
We want to implement ESS workflow 01000015 u201Cchange (infotype 0006) Address will be blocking until approved/rejected by Administratoru201D. The workflow is trigger OK from R3, user creates a new address and IT0006 is blocking till administrator approve or reject.
What we want now is to trigger this workflow from Portal, but here is the problem:
1.- I do not see any option (button) for creating a new address from Portal iView, what else is missing??? I believe creating new address from Portal could trigger this workflow, but I am not sureu2026
2.- If the first option does not work I would like to trigger this workflow by the event u201CChangeu201D, so I need to edit the address. From R3 is blocking IT0006 OK, but from portal is not blocking the address at allu2026 What else is missing??? I do not know if this could be an issue from R3 or Portalu2026.
We already check u201CNote 495971 - Workflow 01000015 is not triggered when changing addressu201D and workflow is working ok only from R3.
Regardsu2026..
David CortesHi Swamy,
I am a little confused of you requirement. The scenario here is that Person A (Any person using ESS) must not change any of his/her own personal data until Person B Approve/Reject the new Data. For example: if a user A want to change his/her address, personal data etc. must be approve or reject for another person B. This is a validation that most of the companies want to have in order to validate this information. Employees may change their personal data, but how HR area validates if this new information is real or not... One way to verify this new information is a validation for a Person B who will be to approve or reject this information. Now if you do not have this scenario I believe you will not have to do this implementation class because ESS do not have this scenario. The standard ESS functionality is available for change any data without validation and this should be working right now on your Enterprise Portal.
If you want to have a validation for a third User, Person B, you may check these points:
1. Edit 2. New Permanent address
Edit - Will change the record irrespective of dates. This will modify the current record which is valid as of today.
New Permanent address - This will create a new record effective today and previous record will be delimited.
If I use lock functionality in Edit scenario, then in the portal it will dispaly previous record which is not the correct data.
For 2nd case, this will insert the new record, so Lock may work in this case. I will check this.
I believe you will work most of the time with "Edit" button. If Person A edit address, the new register will be created and locked in PA30 Infotype 6 until person B Approve/Reject. How Person B knows if someone has edit his/her address?? You may achieve this using Universal Work List and notification. You may have to create a task for person B with email notification, so person B will be enter into Portal and check his/her new task from the UWL. This task will be ITS UI front end and from here person B decide if approve or reject. If Person B approve, the new register will be unlocked and replace the last one (Also in Portal). If person B reject, the register blocked will be gone and the last one remains.
This should work for any infotype . Check only the type of event generated for any of them in order to trigger the workflow.
Do you have any idea how to achieve this for Personal details where the Lock/Unlock functionality is not available.
Standard ESS works without any lock/unlock functionality. remove the current workflow if you have used any.
Regards
David Corté -
Creation of a normal user without admin rights
Hi,
I am new to oracle apex. Can you please let me know how to create a normal user without admin rights in oracle apex application.
Thanks & Regards,
venkat
Edited by: 866673 on Jun 17, 2011 9:53 AMWelcome to the forum: please read the FAQ and forum sticky threads (if you haven't done so already), and ensure you have updated with your profile with a real handle instead of "866673".
You'll get a faster, more effective response to your questions by including as much relevant information as possible upfront. This should usually include:
<li>Full APEX version
<li>Full DB version and edition
<li>Web server architecture (EPG, OHS or APEX listener)
<li>Browser(s)/version(s) used
<li>Theme
<li>Templates
<li>Region type
(although for your question only the APEX version is necessary).
Assuming you mean a user who can authenticate to an application that uses Application Express Account Credentials?
In APEX 4.0:
1. Go to Home > Application Builder > [Your Application ] > Administration > Create Users and Groups > Create User
2. Enter the User Identification information.
3. In the Account Privileges, specify:
User is a workspace administrator: No
User is a developer: No
4. Complete the rest of the form as necessary. -
AE5.2:Automatic ESS User Set up and email notification to the User
Forum,
In AE, stageless ESS user set up creates the ESS user and sends an email to new user like below...
This is to inform you that your request REQUESTNUMBER provisioning has been done. Your account has been created. Please find the information below.
User ID:
Password:
SAPSystem:
Is it possible to change the wording in the email? Has anyone tried it? I am aware that it is a system generated Email, but is it configurable?
Thanks for any insight.
Edited by: Bhanu Reddy on May 22, 2008 1:26 AMJust an FYI - the free Yahoo accounts do NOT use POP mail...If you want this type of access, you have to pay for the upgraded version of Yahoo Mail...
WyreNut
I am a Volunteer here, not employed by HP.
You too can become an HP Expert! Details HERE!
If my post has helped you, click the Kudos Thumbs up!
If it solved your issue, Click the "Accept as Solution" button so others can benefit from the question you asked! -
Requirement:
How to allow Airwatch MDM access to the Captive-Portal guest users in pre-authentication role for Android and Blackberry devices?
What is Airwatch MDM?
Airwatch MDM is Mobile Device Management. The Airwatch is an enterprise which helps to manage and secure data traveling through the mobile devices like Laptops, Tablets, Android, iPhones, iPads etc.
Solution:
Why we need to allow access to Airwatch MDM?
The network administrator can force the guest users to register to Airwatch MDM before they get authenticated and access the internet. So that the network administrator could manage the guest devices through Airwatch Management tool. This can be achieved by CPPM server. To download the Airwatch MDM app and register with the Airwatch MDM server certain domains should be permitted in the captive portal pre-authentication role. This KB provides the configuration steps to allow the guest users to download the Airwatch MDM app and register with the Airwatch MDM server.
Configuration:
Below is the configuration
Configuration steps:
1. Create the following netdestinations
netdestination Airwatch
name *.awagent.com
name *.awmdm.com
name air-watch.com
netdestination Google-Play
name android.clients.google.com
name .ggpht.com
name gstatic.com
name accounts.google.com
name clients1.google.com
name clients2.google.com
name clients3.google.com
name clients4.google.com
name i.ytimg.com
name google-analytics.com
name .1e100.net
name android.l.google.com
name mtalk.google.com
name clients.l.google.com
name googleapis.com
name gvt1.com
netdestination BlackBerry
name *.blackberry.com
2. Now define the rules in the session acl and map it to the pre-authentication Role of the captive portal.
ip access-list session Airwatch_Access
any alias Airwatch svc-http permit
any alias Airwatch svc-https permit
ip access-list session Google-Play-Store
any alias Google-Play any permit
ip access-list session BlackBerry-Access
any alias BlackBerry any permit
3. Now map the session ACLs to captive-portal pre-authentication Role as follows
user-role Guest-Pre-Auth-Role
access-list session Airwatch_Access
access-list session Google-Play-Store
access-list session BlackBerry-Access
access-list session logon-control
access-list session captiveportal
4. Now whitelist the list of domain names in the Captive Portal profle
aaa authentication captive-portal Airwatch-Captive-Portal-Profile
white-list Airwatch
white-list Google-Play ------------>Netdestinations where you defined the Domains.
white-list BlackBerry
Verification
Now the user will be placed under the "Guest-Pre-Auth-Role" before the authentication. The user can now go the Google Play-Store or BlackBerry Appworld to download the Airwatch MDM and register to Airwatch Management Server.Thanks so much getting these names listed out. I have been working on this very issue for a few weeks and was basing my firewall rules on IP's. It was not going well. Now access is working and testing can commence! Thanks,Chris
-
Delegation of authority through his Employee Portal (ESS)
HI Experts,
We have one scenario where one person gives authority to other to create Travel Request/Expense on his behalf.
Is this scenario possible through ESS?
Here user login with his credentials and create Travel Request/Expense for other employee in his employee portal (ESS).
Regards,
RaviDear Somu,
Based on your reply i have few questions.
1) How All travel request/Expense stored under Assistant name only?
Ravi> how all the travel request/Expenses storted under Assistant name. how can she access other employee trip numbers. can you please pour some light.
2) Whenever the Assistant send for travel request/ Expenses, the assistant has to inform manually (through phone or e-mail).
Ravi> When Assistant send for travel request/Expense with his/her credentials it will create his/her own travel request but not others, here where i'm stucked, i want Assistant to create travel request/expense on behalf of other employee through his/her ESS credentials.
3) Please let me know your system version
Ravi> EHP6
Thanks in advance.
Regards,
Ravi -
Access to User without Password
A temporary employee (now gone forever) set up some workfiles on a non networked Mac in their own User - as the administrator can we access the User without the password (which we have buckley's of getting).
Use the "Accounts" System Preference" from the administrator account. Click the lock at the lower-left to unlock it, select the user's account, and change the password. You can also use Get-Info to change ownership or permissions on the user's files and folders if you click the lock icon in the Get-Info window (click the "Details" triangle at the bottom of the window).
-
Can the user unlock his AD account in FIM 2010 R2
Hi all
can a user unlock his AD account from FIM portal.
Thanks
TekaHello,
currently not out-of-box, but you can do this by customizing the portal.
MIM vNext will provide Self-Service Account Unlock, you can check the
preview on connect for that.
I currently have Account Unlock through helpdesk but it is possible to change this to self service.
You can use the
powershell activitiy for that for example:
1. Change RCDC for user UI and add a boolean attribute for account unlock.
2. On change of this attribute trigger a MPR with the PS activity that unlocks the account.
3. Reset the unlock account attribute to normal state (false).
4. create approp. permission MPRs to allow users to change only their own account unlock attribute.
thats it.
-Peter
Peter Stapf - ExpertCircle GmbH - My blog:
JustIDM.wordpress.com -
Flash Player Administration - upgrade users without admin privileges
Is this possible? How have you answered this painfully obvious problem in your enterprise?
We have a remote Sales Force which do not connect to our domain. I looked through the Admin Guide - I do not want to disable the auto-update. I want to make the auto-update work for users without admin privileges.Currently, the user does need to be an admin account for an update to occur. However, the good news is that this will change in 11.2. Once 11.2 is installed on Windows (using an admin account), there won't need to be further user interaction for future updates. Users on limited accounts will be updated silently, without admin interaction.
Chris -
IView to show Portal Role User Assignments
Is there a Standard iView which can show what users are assigned to a portal role?
Thanks.
Regards,
Mel Calucin
Bentley SystemsYou can use delegated user administration to control the access
http://wiki.sdn.sap.com/wiki/display/EP/ConfiguringDelegatedUser+Administration
If you want only read-only access
1. Copy the standard User Admin role from Portal Content - Content Provided by SAP - Admin Content - User Administrators
2. Paste it in one your own custom folders
3. Adjust the name and ID and remove unwanted areas in the custom role (like Import and Activity Reports)
4. Go To User Administration and search and select the newly created role.
5. Select the Assigned Actions Tab and remove all the actions and just add the UME action - Read_All
6. Save your role and assign it to a test user (without the user admin standard role) to verify.
Thanks
Prashant -
Please can you advise if there is a way that managers can view their employees records through the portal if the employee does not have a IT0105.
We are getting the following error message:
*"Please assign ESS user to Personel Number *******. Otherwise requested service not possible"hi,
In Mss , if you are using Ecc6 and eportal 7.0 , the managers can see the people under him in the MSS , only thing you need to maintain the Org structure properly.
Regards
sameer
Maybe you are looking for
-
Sample for XMLparser v2 for Java?
Hello, I am new in this field. I tried to generate a HTML document by sending an XML, an XSL document to my java code, which uses Oracle.xml.parser.v2. I always failed. I am getting a little bit frustrated. If you ever got a HTML document from XML an
-
What is the best practice to produce voice-over?
I have made a video that I would like to add an alternative audio track in Chinese to allow my relatives understand the conversations in the main audio track. I have never done this before, and would like to ask for advices as to how to proceed. Can
-
Using RAC One Node as a primary database in a Data Guard configuration
Is it possible to use RAC One Node as a primary database in a Data Guard configuration ? Oracle doc states: "Supports Oracle Data Guard such that you can run physical or logical standby databases on it or even we can NOT run primary databases on it e
-
Adobe CSXS Infrastructure 4 Installation failed. Error Code: U44M1P7
Can't update. Get this error message. Adobe CSXS Infrastructure 4 Installation failed. Error Code: U44M1P7
-
IE7 causes DW8 to forget FTP Connection information
Both the beta versions and final of IE7 cause my Dreamweaver install to forget the FTP Connection information, and then refuse to remember any of them again. Uninstalling IE7 remedies the problem. Anyone else experience this?