R12 GL - Limiting User Access To Two Accounting Key Flexfield Segments Only

Hi there,
Oracle E-Business Suite R12 RUP 4 - General Ledger
I have a question regarding limiting the Segment values available for data entry to certain Responsibilities or Users. We have 6 segments in our COA. One of the Segments - Campus - has two dependant Segments - Class and Sub-Account.
What we want to achieve is to allow End Users to add and update only these two Dependant segments that pertain to their Campus through the Standard Oracle Forms. i.e. we don't want them to be able to query any of the other 4 segments and make changes to the values there.
Any suggestions on how this could be achieved?
Have a great day.
Kind Regards,
Gary.

Hi Gary,
The question is regarding maintenance of the Value Sets
or
ability of the user to enter values for only these two segments while entering the data?
Gajendra

Similar Messages

  • Two Account key to post taxes in pricing procedure

    Dear Experts,
    My requirement is like this in pricing procedure additional tax tax conditon is there & for posting the same FI requirement is to post in VAT or CST acc key only.
    means if CST is applicable this additional tax should post in MWS1 account key & if VAT is applicable this additional tax should go to J1F key.
    As I have assigned J1F key, can we assign two account keys to post or can we create routine?
    FI people don't want to create any new Acc Key for additional tax.
    Pl. guide.
    Thanks
    Trupti Nadgouda

    Thank you sir for the reply, but how can system determine automatically posting key as per VAT or CST applicable.
    since in pricing procedure i have assigned as per below given
    condition Type                         Acc Key
    ZIN1 - CST                                   MW1
    ZIN2  -VAT                                   J1F
    ZATX - Additional Tax -                MW1 in case of CST is applicable
                                                         J1f in case of VAT
    Pl. guide me how can i assign two account key for ZATX condition.
    Thanks
    Trupti Nadgouda

  • Can multiple users access 1 iCloud account for file sharing?

    I work in a team where everyone has an ios or mac device. Is it possible, if i were to create a new @me.com account, for all team members to use this as their iCloud ID and therefore be able to share documents?
    Would there be a limit as to how many users could do this?

    Ok have just spoken with Apple Support and the guy didn't fill me with confidence in terms of his knowledge.
    He stated that the max users sharing a iCloud account would be 11 (random number IMO). Also that we could only share/edit docs if we were on the same network which kind of defeats the point.
    Can anyone verify or correct me on the above?

  • User Exit to flip Account key  based on incoterm

    HI,
    For a particular condtion type ZCN1 and Incoterm INC1,  account key AC1 has been assigned and this will hit a GL1 account respectively.
    When incoterm changes to INC2, Account key AC2 should be assigned to the same condtion type ZCN1 and as a result this should hit a different GL account GL2.
    Please let me know the user exit in which this can be accomodated.

    instead of changing the account key - you can avail the condition technique for the access sequences in the account determination.
    Use the field incoterms to determine which G/L account should be posted.
    Add incoterms to allowed fields in structure KOMPCV
    Create a new table sales area / incoterms / account key
    Add this to the acc seq for the account determination
    in VKOA maintain the relevant entries.
    Also add the incoterms field to the user exit for RV60AFZZ under include USEREXIT_ACCOUNT_PREP_KOMPCV  .
    Hope this helps
    Regards
    Sai

  • Very limited online access on two occasions

    Folks,
    I'm on an iMac (running SL, up to date) at my worksite, which is part of a university's research organization. The computer is connected via ethernet.
    Last week after waking the computer and logging in to my user account, it would retrieve email from my work account (domain name projects.sdsu.edu), and I was able to load a small number of webpages from the university (in the sdsu.edu domain).
    However, I could not connect to ANYTHING else. My two personal email accounts could not be reached, none of my IM accounts could be reached, nor could I view any other websites, including the one for the university's research organization (www.foundation.sdsu.edu). So while I could access other sites at sdsu.edu I could not get into foundation.sdsu.edu.
    Incidentally, I use Eudora as a mailreader, so it was checking all 3 of my email accounts, and only able to retrieve the one.
    It almost seemed as if someone had installed a block on my computer such that I could only access work-related IPs, but that doesn't explain why I was also unable to get into my employer's main homepage.
    I rebooted the computer a couple times, to no avail. I then canvassed a few colleagues, running both PCs and one using a Mac (running Tiger, I believe), and none of them were experiencing any problems with connectivity, including the aforementioned foundation.sdsu.edu.
    I tried logging into my bare-bones guest user account, but the problem persisted there. That ruled out something screwy with my own user account. I then tried booting from the SnowLeopard DVD. I was hoping to be able to run Safari but the available apps were limited to a few utilities. So I went ahead and repaired permissions from Disk Utility, while still running off of the SL DVD.
    After rebooting, everything was working fine again. I wasn't sure if it was a permissions problem that had been fixed or if it was just coincidental with something else being righted, but I was just happy to be back in business and chalked it up to a freak glitch and went back to work.
    Well, a week later, same thing happened. Woke up the computer, logged in, and I see that nothing is connecting, except for that one email account.
    This time I tried rebooting, and no luck. Then I tried booting in safe mode--and everything connected just fine. Hmm. I then re-booted normally, and everything continued to work.
    Any idea what might be up here? I realize that with only 2 data points, it's not much to go on. It seems the only commonality between the two events is that the problem was fixed after I had rebooted into something other than the two user accounts on the computer. Although I was technically in my user account when I booted in safe mode.
    Sorry for the long-winded story, but I didn't want to omit a possibly important detail.
    TIA!

    You may need to speak to the IT department.

  • SOAP Basic Authentication - How to create a limited user access

    Hello
    I have a lots of scenarios that use XI´s WebService for integration. For the 3rd party systems be able to use the WebServices, they need an authentication in Web Application Server.
    The question is: How can I create a user with LIMITED access to ONLY ONE Webservice in XI ?
    For example, I want a user called webservice1 that can access only http://myserver:50100/XISOAPAdapter/MessageServlet?channel=:SERVICE:SOAP_Sender_CC.
    I don´t wanna use HTTPS because the 3rd party systems are very limited and they don´t have HTTPS support.
    Thanks

    Yes, I have up the user in the Send Agreement. My SOAP Adapter Communication Chanel is configured there.
    I´m using the correct user in webservice authentication. Its the same I created in SU01.
    Without those authentication configurations (when All users can use the webservice), I can log in with this user. But when I restrict by doing the configurations, it doesn´t work.
    I just made a test by restricting the service for another user and the error message is different.
    When I log with a different user than the configured one, the error is:
    java.security.AccessControlException: USER has no permission for accessing party service :SYSTEM_TEST...
    When I log with the configured user authentication, the error is:
    com.sap.aii.af.ra.ms.api.DeliveryException: XIServer:NO_EXEC_PERMISSION:....
    Seems there´s still some missing configuration.
    Thanks

  • Domain access issue with limited user access

    Hi all,
    I have to deploy a flex site (without the flex data services,
    unless essential) that acesses xml data from servlets that arent
    neccessarily under the same domain, and some will be physically
    located on different servers.
    I am using the cross-domain policy file, and this works fine
    provided the server is logged in with Administrative privlidges.
    However if it is logged in under a domain (with some limited
    access) I can no longer access the required data. This data is
    still available if I access it direct by typing the location into
    the browser address bar. So there is definately something stopping
    me from accessing the data within flex.
    If anyone has encountered similar problems and come up with
    solutions (which does not involve forwarding data using additional
    servlets) then your tips and advice would be much appreciated.
    Thanks!

    It was issue due to some configurations in 'External Facing Extension Service' inside configuraton-content management-global service.

  • How can pine users access their iPlanet account without identifying first to login, and then when they run pine?

    At University we have just completed migration to iPlanet Messaging Server 5.2. Users of UNIX and pine now have to identify twice to get email. As stated in the question, they have to login to their shell, and then pine forces another login. Each additional time they run pine to check email it requires a new login.
    Is there any way to get rid of the additional authorizations required to read email after someone is successfully authenticated to our own student/faculty servers? Perhaps adding some sort of Kerberos ticket system?
    Thank You

    At University we have just completed migration to iPlanet Messaging Server 5.2. Users of UNIX and pine now have to identify twice to get email. As stated in the question, they have to login to their shell, and then pine forces another login. Each additional time they run pine to check email it requires a new login.
    Is there any way to get rid of the additional authorizations required to read email after someone is successfully authenticated to our own student/faculty servers? Perhaps adding some sort of Kerberos ticket system?
    Thank You

  • Limiting user access to field FPLA-AUTKOR in Billing Plan

    Hi,
    I have a wish to regulate the use of the above field in our Billing Plans.
    I have done quite a lot searching without luck on this topic.
    Will I have to do it via Authorizations or perhaps via a User Exit ?
    Any Help is appreciated.
    Peter

    Hi venkeeg     
    im facing with a similar issue than yours, im trying to update fpla-perio and fpla-horiz, can you help me?
    i Will try with your solution.

  • Why don't java applets run when using Firefox 4.0 in a windows limited user account?

    Java applications will not run in Firefox 4.0 when the windows user/process only has limited user access rights. The systems, I see this behaviour on have Windows XP Pro SP3, Firefox 4.0 and JRE 1.6.0_24 installed. The java application will run when when full administrative rights are present. This issue did not occur with the 3.6 firefox version that was previously installed.

    The problem also exists with the newer Firefox 4.0.1 and Java 1.6.0_25 versions.
    Enabling administrative rights resolves the issue ... though this defeats the purpose of using a limited user.
    The underlying bug appears to be in the Firefox java plugin detection code. The issue is related to the detection code requiring write access to the HKLM\SOFTWARE\mozilla.org windows registry key. The limited user only has read access for this registry key. The behaviour was identified using the Sysinternals ProcessMonitor utility ... showed firefox calling an interface to create the registry key and getting an access denied response in the limited user case.
    A more targeted workaround for the issue is to grant the limited user write access on the HKLM\SOFTWARE\mozilla.org windows registry key. This avoids the need to grant administrative rights to the user and enables the java plugin to be detected. That is, it works on the 2 XP systems where the java plugin wasn't being detected in limited user accounts.

  • Using SSDs to limit user access to hosts

    I have a question about limiting user access to a host using SSDs. Is there any reason I should not do the following?:
    In the profile for the ldap client, myhost:
    serviceSearchDescriptor: passwd: ou=People,dc=example,dc=com?sub(|(host=myhost)(host=production)(host=ALL))
    Then in the users account:
    dn: uid=juser, ou=People,dc=example,dc=com
    host: myhost <---------------------------------------------------------------
    loginShell: /bin/ksh
    gecos: Joe User
    cn: juser
    uidNumber: 5555
    gidNumber: 5555
    homeDirectory: /export/home/juser
    objectClass: posixAccount
    objectClass: shadowAccount
    objectClass: account
    objectClass: top
    uid: juser
    etc
    I can add a single host, an environment (production), or all hosts for admins by editing user account. It seems to work fine in testing. I just don't want to get blind-sided by some glitch later. I am using Solaris 8,9, and 10 native clients and SunONE 5.2 DS with TLS.

    Thanks Gary. I sent you an email before I posted here. I wasn't sure if this is where you "hang out". :)
    I was thinking after posting here that I might want to do it with shadow instead of passwd so that permissions of files still showed the owner instead of id even if the owner were not allow to login. A somewhat rare situation, but it happens.

  • Two different versions of iTunes on a mac with two accounts?

    Let's say two people share one computer and person A likes what he hears about iTunes 9 and wants to down it, but person B hates it and wants to keep iTunes 8 on the computer. I know it can't be done with one account but can it be done with two accounts if there is only one computer?

    Good question. I'd say +back up your computer+ and give it a try. Put the copies of iTunes in Applications folders in each account, not in the common Applications folder at the main level of the directory.
    Some of this may depend upon how you currently have it arranged with music files and libraries. I'm assuming you have it all sorted out as to accessing music files, unless you each have your own collection.
    I don't know the full workings of itunes9 but as long as you don't share a common library (which is version-specific) or preferences files then I don't see why different versions won't work. Again, I'd make a backup in case anything funny happens, then try.

  • Same GL accounts in OBYC accounting keys

    Requirement : in OBYC settings for valuation class 8621 the business needs to use GL A/c 2400.86130 for accounting key BSX AND GBB u2013 PDC as the SAP standard will not allow to use same gl account for the two accounting keys, how I can do this to meet the requirement.

    HI Prakash,
    It can be done through user Exit.
    one of my friends done for this requirement.but now not in touch.
    By user exit you can assign same GL to multiple Transaction keys.

  • Need clarification on Rebate condition account keys

    Hi Guys,
    I need some clarification on Rebate condition account keys .Question is why rebate condition type has two account keys eg.ERB & ERU and why not we make it seperately as other conditions .APPreciate your comments on this .
    Thanks and regards
    Amar

    ERB: is the account key for Rebate Rate
    ERU: *is the account key for the Accrual Rate*
    As you know both these Account Keys are assigned to the Rebate Condition Type in the pricing procedure. All the Rebate &
    Accruals are posted in the separate G/L Account for the Rebates. So, ERB for rebate this account key posted to revenue a/c
    ERU is price this is posted amount to accrual a/c
    To further explain it.
    ERB acct key which is used to record the sales deductions amount.
    System will keep the track of billing documents relevant for rebate processing. System automatically posts the accruals so that accounting has an overview of the accumulate value for the rebate..the value will posted in the G/L account based on ERU.
    Hope it can assist you.
    Thanks & Regards
    JP

  • Pricing- Accounting key and accruals effect

    Dear Friend,
    I am having Import pricing procedure , there are total 100 condition types . This is made by earlier consultant. Now my client wants that he will put data in only few condition type.
    But my question is that most of the conditions are there where account key is assigned and accruals is assigned. though i am not putting data in conditions . will it make any effect on accounting.???
    Regards,
    Mahesh.
    Edited by: mahesh A on Aug 10, 2011 6:49 PM

    Hi,
    No it does not effect.If you are not using.
    Accruals means which accumulates over a time period. For statistical analysis of certain condition type like freight we maintain it as accrual in control data of the condition type in M/08 in pricing procedure. As soon as we mark it as accrual it is posted to an account for statistical analysis and not loaded on material account  for that we set a transaction/event key and assign account in OBYC settings.Account Keys are used only when you activate the purcahse account for your company code.

Maybe you are looking for