REQUIRED FOLDER LEVEL AND APPLICATION ACCESS

Dear Expert,
I am new in SAP BO admin, I want folder level access and application level access.
My senario as below
FOLDER ABC HAVING 3 SUB FOLDER LIKE FOLDER 1 , FOLDER 2 AND FOLDER 3.AND ALL THE FOLDER HAVE SOME DASHBOARD INSIDE.
I have created 3 users
USER 1 CAN VEW ONLY FOLDER 1 DASHBOARD
USER 2 CAN VIEW ONLY FOLDER 2 DASHBOARD
USER 3 CAN VIEW FOLDER 2 AND FOLDER 3 DASHBOARD.
Please share me step by step guide.
Many Many Thanks In Advance.
Regards,
Divyesh Patel

Hi Patel,
pls check the below threads
Folder Level authorisations
Folder level authorization in BO 4.0
Securing Business Objects Content – Folder Level, Top Level and Application Security
User Authorisations
User Authorization in CMC?
Note: after assigning access to  sub-Folders ,we need to assign access to root folder also to users.
Hope this Helps,
Sundar Kumar

Similar Messages

  • Co-existence of OS-level and application level cluster

    hiI will be buying pre-configured Linux cluster from Compaq which uses SteelEye's Lifekeeper techology.This cluster is required for File systems,applications and processes.Now i need to make a cluster of Weblogic application Server on top of it,which is forEJB clustering.Will it be possible for Weblogic cluster to work on top of Steeleye's LifeKeeper clustering technology.can they co-exist?regardssanjay
              

    Hi,
    They can't co-exist on the same machine. The older version is uninstalled and the new installed.
    You could try unistalling CR and then check registry and remove entries: search on "Business Objects", then reinstall CR 11.5.
    You existing apps should now work.
    Hope this helps
    Jacques

  • Is there any possibility to block emails of subscriptions we are about to create in 2008 (folder level) and enable back the emails once we are done creating the subscriptions

    Hi,
    We are migrating our Reporting Server from 2005 to 2008 and we have around 3500 timed subscriptions which are scheduled daily/weekly/monthly.
    It takes around 1 week to recreate all these subscriptions in 2008 reporting server as we are using C# Code (to get the new subscriptionID from 2008 for further use). In this 1 week the subscription emails will be duplicated as they are sent from both
    2005 and 2008 (created) to end user but we can't disable the SMTP for the 2008 report server as there are other projects (separated at folder level) working on it.
    The Question here is, "Is there any possibility to block emails of subscriptions we are about to create in 2008 (only to our folder) and enable back the emails once we are done migrating to 2008?".
    Regards,
    Prabhat Y.

    Hi Prabhat Y,
    Per my understanding that you are doing the migration from SSRS 2005 to SSRS 2008 and now you are re-creating the 3500 subscriptions in the SSRS 2008, so you want to the new created subscription in SSRS 2008 will be pause and not execute at this time, right?
    Generally, we have several method to pause the subscription processing, please reference to details information below:
    When you created an subscription, an new Sql Server Agent job will be created too, so you can you can just uncheck the 'enabled' checkbox in the job properties as below to disable the execution of the job,you can also  stop the SQL Server Agent Services
    manually, all your subscriptions will stop running:
    More information, Please reference to: 
    How to temporarily stop SSRS subscriptions
    You can also disable a Shared Data Source, pause a Shared Schedule to pause the subscription processing.
    Pause Report and Subscription Processing
    If you still have any problem, please feel free to ask.
    Regards,
    Vicky Liu
    Vicky Liu
    TechNet Community Support

  • Required - Battery Level and network signal strent...

    It would be very useful if there was a Battery Level and network signal strenth indicators in OVi Suite. IMO even free mobile management apps have this useful feature.So it shouldnt be a problem for Nokia to add this to Ovi suite.

     When I connect my N8 to the PC I get the below window pop up.
     So it seems the function you describe already exists.
    Thanks
    Ray 

  • Number of folder sub-levels and characters

    Does anyone know:
    a) how many levels of folders are permissible in Mac OS X
    b) how many characters are allowed for file or folder names?
    I have recently switched over to the Mac system from Windows where the I believe the maximum number of "folders within folders" (levels in the hierarchy) is 8, and the maximum number of characters for naming files or folders is 64. My main concern is that backups in Windows are truncated beyond these limits.
    I've searched for answers in Apple tutorials, forums, books (etc.), and even AppleCare was not able to answer these questions.
    Thank you very much!

    Thank you. Surprising that there is absolutely no limit on the number of folder levels and greatly appreciate the specific 255 characters information.
    There is a path length of 1024 as specified by the pathconf() function:
    PC_PATHMAX == 1024
    What this means is if you are going to pass a path to a kernel function (and many library routines), the total string length may not exceed 1024 characters.
    However, if you do something like
    mkdir a
    cd a
    mkdir b
    cd b
    mkdir c
    cd c
    mkdir d
    cd d
    etc...
    you can continue as deep as you wish, you will just need to make sure that when you access any files at the deeper levels that the string specified as the path does not exceed 1024 bytes.

  • How to set application access type for list of users

    Hi everybody,
    I've an requirement to automise the application access type setting in shared services.
    When i searhed to do with MaxL scripts.I'm able to set the application access type for a single user using
    alter user 'username' add application access type essbase
    alter user 'username' add application access type planning
    But,i've to perform this as a daily activity updating for list of users.Is there away to do it..??..i want to pass the list of users to the above alter user command.??
    Please help me.
    Cheers
    Saran
    Edited by: user11396937 on Aug 27, 2010 2:09 AM

    I discovered that changing "Image interpolation" optioon in general preferences of Photoshop has direct influence on smart object interpolation type. You can even reinterpolate smart object after changing image interpolation in preference. Just click ctrl + t and enter.

  • Delete and Write Access for PA infotypes

    Hi Gurus,
    Our clients require managing Write and Delete access separately for PA infotypes. Example, an employee can have Write access (able to save values in infotypes) but s/he will not be able to Delete this infotype record one it has been Saved.
    How do we implement this?
    In the standard authorizatio object for HR master data, P_ORGIN you only have M, R and W. If an employee was given a W access, s/he'll also have Delete access.
    Is there a way on how to do this?
    <removed by moderator>.
    Thanks.
    Olekan Babatonde
    Edited by: Suresh Datti on Dec 28, 2009 6:21 PM

    Olekan,
    First of all, if your managing PA Infotypes, you're also using the P_PERNR object authorization.
    Next, you're right. For SAP, the Write and Delete permissions are the same authorization level (W).
    To avoid build a "Z" solution, i suggest you use the "block" permission in one of these ways:
    1) assign the S authorization level (Symmetric) for write access using the Symmetric Double Verification Principle; that is, user 1 do changes to an infotype and data is saved with "blocked" status, then user 2 save or delete data entered by user 1. Another day, user 2 do changes to an infotype, then data is saved with "blocked" status and only user 1 will be able to save or delete data entered by user 1.
    2) assign the E and D authorization level for write access using the Asymmetrical Double Verification Principle; that is, if user 1 has E, and user 2 has D, then the user 1 ever maintain data with "blocked" status and never will be able to save or delete data. And user 2 ever will be able to "unblocked" data (for save or delete) and never will be able to maintain data without "blocked" status.
    Check this links ([1|http://help.sap.com/saphelp_erp60_sp/helpdata/en/fd/4bba3b3bf00152e10000000a114084/content.htm] y [2|http://help.sap.com/saphelp_erp60_sp/helpdata/en/d3/4bba3b3bf00152e10000000a114084/content.htm]) to find out more information about these principles.
    Kind regards

  • Mailbox and Client Access on the same servers for CAS HA (L4 LB) and Mailbox DAG

    Hi, I would like to ask this question.
    I'm reading all sort of documentation that I'm finding on the internet, but I can't understand if what I'm thinking to do is possible.
    I would like to setup a basic environment configuring only two Exchange 2013 on two Win 2012 R2 servers. Both servers will be Mailbox (MBX) and Client Access (CAS). I will create a two-member DAG using File Share Witness or Disk Witness for the Dynamic Quorum.
    Then I will setup Outlook Anywhere with internal and external namespace for CAS redundancy and layer 4 load balancing.
    In this scenario I will not need to install a third part load balancer.
    Am I doing right or I watching a movie?
    Thanks in advance

    Hi ,
    You could need to have the HLB or virtual load balancers for redundancy.
    Disadvantages of some load balancing methods :
    If you use Windows NLB then it can provide redundancy on server level failure and not on application level.
    In case if we use the windows round robin method for load balancing then it wouldn't provide server level and application level redundancy during the failures.At the Same time we need to manually adjust the DNS records during the server failure but on the
    client end dns caches will create the issues.
    Lets consider you are having the internal and external names for outlook anywhere like below .
    internal and external outlook anywhere name :
    mail.domain.com
    For the above name just configure the HOST A record in windows DNS and map it to load balancer ip.Then the second step would be to configure your exchange servers in LB .So all the internal and external outlook client connectivity will happen via LB to exchange
    servers.In that case if anyone of the server is down then LB will automatically make the outlook client to get connected to the server which is alive and at the same time none of the request from outlook client to LB will get forward to the server which is
    in down state.
    Note : Make sure you are having the redundancy for LB devices also otherwise it would be a single point of failure on the LB end . 
    Please reply me if anything is unclear.
    Thanks & Regards S.Nithyanandham

  • Difference Between central instance And application instance

    Hi every body can any one tell me that
    what is the difference between Central instance and Application instance.
    If i am using 4.7 ee with orcale data base.

    Check these links
    http://oreilly.com/catalog/sapadm/chapter/ch01.html
    Basically these terms comes when you are working on live servers where all the users log into to do their daily work.
    We says when we want to distribute the workload on servers we requires central instance and application servers.
    Normally it is not known to common users where they are logging into...but they can login directly usign the specific Instance details of servers.
    Please see this also
    http://help.sap.com/saphelp_nw2004s/helpdata/en/c4/3a64e8505211d189550000e829fbbd/frameset.htm

  • Permit SharePoint group to have contribute access at Folder level only and read permission at library level.

    Is it possible to Permit SharePoint group to have contribute access at Folder level only and read permission at library level.
    Ashish Baranwal To know what you know and what you do not know, that is true knowledge

    Hi Ashish,
    You can have special permissions for individual lists or libraries (or folders within a library) what you have to do is to go
    to the manage permissions list or document library for the appropriate item or folder and stop inheriting permissions from Parent and then you can add any sorts of permissions you want uniquely to that item or folder.
    Check for further reference.
    http://social.technet.microsoft.com/wiki/contents/articles/18203.sharepoint-2013-break-document-library-permissions-inheritance.aspx
    you have to break the inheriting permission of document library and assign the permission you want again you have to set the same for folder
    level.
    For your better understaning the concept check here
    http://blog.pentalogic.net/2010/11/sharepoint-permissions-what-why-and-how-part-1-basic-principles/
    While you probably won't come across this in your case, be careful when breaking security permission inheritance on the items in a a document
    library or list. There are big performance hits. If you have inherited permissions on a library or list SharePoint only has to do one permissions check for all the contents. If you have unique permissions SharePoint has to check every document's permissions
    before returning the contents of the library.  This tends to become an issue when you have thousands of items, rather than
    hundreds.
    Krishana Kumar http://www.mosstechnet-kk.com
    Please mark the replies and Proposed as answer if they help and solve your issue

  • Help creating apple script to create folder and set access levels

    I'm trying to create folders in FileMaker Pro using apple script and need some help in setting the access level for the folders.  I want to set both Staff and everyone to Read and Write access.   Secondly I would like to have a function key set on the desktop to create new folders and set that same access level.  The default access is Read and I can not find a way to change that.
    Thanks

    I'm trying to create folders in FileMaker Pro using apple script and need some help in setting the access level for the folders.  I want to set both Staff and everyone to Read and Write access.   Secondly I would like to have a function key set on the desktop to create new folders and set that same access level.  The default access is Read and I can not find a way to change that.
    Thanks

  • My itunes app was working fine then all of a sudden I'm getting an error - The Itunes application could not be opened.  The required folder cannot be found.  But it doesn't tell me what folder.

    I am using Windows Vista.  My itunes launched fine until now.  Now I get an error - "The Itunes application could not be opened.  The required folder cannot be found".  I have no idea what file it is looking for.  Has anyone seen this error? 
    I have also tried to uninstall the package and I get the error Could not access network location %APPDATA%\.  And it won't uninstall.  I don't know why it's complaining in both cases. 
    Itunes was working 3 weeks ago with no problem.
    HELP!!! 

    hey did u ever get you itunes fixed?

  • Oracle UCM folder level access on the fly

    Our requirement is like this. We have a folder named Projects.
    One user with Project Manager role will create a new folder within the Projects folder and give access to this new folder to one user from the Project Team Member role. No other member from the Project Team Member role will have access to that folder.
    Hence the access is not based on role or group but to an individual who will be selected on the fly.
    If someone can help me resolve the issue, that would be of immense help.
    Thanks,
    Deep.

    Well thanks again for your support. I saw you have given some detailed steps in another of my post. I have tried the ntk meanwhile in my own way and found something is working but not exactly what I want.
    Let me tell you this is for a demo that needs to shown to the client in a couple of days and I have jumped into this thing shortly to help out but I am not an expert of UCM.
    The requirement is like this -
    There is a virtual folder called Projects.
    The project manager will create another virtual folder under Projects and will give access it's access to only one of the project team members.
    There are two roles PROJECT_MANAGER and PROJECT_TEAM_MEMBER.
    If a user is either of these two roles s/he will see this folder. This works.
    I have installed the ntk component and set SpecialAuthGroups=restricted under the General Configuration.
    Added a new metadata DisclosureQuery.
    In the Content Security Configuration Information page of NTK Administration, under the Read Options section set Yes for both Use Security and Limit Access and in the script area wrote
    <$if isDisclosureQuery(xDocDisclosureQuery)$>
    <$isNTKReadAccess=1$>
    <$endif$>
    Say the user XXX has role PROJECT_MANAGER. He creates a folder say Project X under the folder Projects and mark the security group as Restricted. And in the DisclosureQuery filed wrote
    (UserName like 'ABC')
    Now say there are two users ABC and JKL with role PROJECT_TEAM_MEMBER. They both can see the Projects folder. The ABC can further see the folder Project X under Projects where JKL does not see any folder under Projects folder.
    But when ABC clicks on the Project X folder and tries to go inside it, the error message is thrown "Can not read folder".
    PROJECT_TEAM_MEMBER has RW access on Restricted security group.
    I even tried to put PROJECT_TEAM_MEMBER in the Query Role and Update Role select boxes in the Hit List Roles Configuration Information page. Not sure if I really need this.
    This link helped me a lot - http://selvam2day.blogspot.com/2010/10/sample-step-by-step-implementation.html
    But I am not able to resolve the last part.
    You can help that will be much appreciated.

  • I have installed Adobe Lightroom CC.  In the process of launching, a popup appears, that says:  "AN INTERNAL ERROR HAS OCCURRED.  Cannot create the required folder:  /Users/(my user name)/Library/Application Support/Adobe/Lightroom/Develop Presets."  So e

    I have installed Adobe Lightroom CC.  In the process of launching, a popup appears, that says:  "AN INTERNAL ERROR HAS OCCURRED.  Cannot create the required folder:  /Users/(my user name)/Library/Application Support/Adobe/Lightroom/Develop Presets."  So even though Lightroom CC is installed, it will not launch.  What do I need to do to allow it to launch?

    The problem was solved today.  Here's the full story.  I'm a Mac user.  At first I installed Lightroom CC on my iMac (desktop).  I had this problem so I called Adobe, and was referred to a "special unit" .  After about an hour the tech solved it for me ... we did a screen sharing and she took control of my computer for a loooong time.  Because of language difficulties, at first I wondered if she knew what she was doing but she eventually solved it.  Although she couldn't explain exactly what she was doing, she summarized it by saying "it was a permissions problem."  I asked if I would have the same issue later when I installed it on my laptop (Macbook Air).  She said probably not.
    But I did.  The same internal error popup arose on launch and launch did not complete on my laptop.  I tried chat but no joy so I eventually called Apple Care.  I had noticed that on my laptop (and the iMac for that matter), that there was no Library folder after my user name.  The Apple tech explained that the Library folder is actually there but it is hidden because it's very easy for users to do some very nasty things to their computer by going astray while in the Library folder.  The folder is actually there, but they hide it.  I did remember seeing that the tech helping me with my iMac had typed the work "Library" while she was controlling my computer.  Basically she had activated the hidden Library folder so she could open the path that Lightroom was trying to follow to create that "Develop Presets" folder.  For some reason, the inability to create that folder in the launch process was preventing launch from being completed.  The Apple tech said she didn't actually have to do that and activated the Library folder by use of the Go selection on the menu bar.  Anyway, once that complete path was replicated and opened, the next step was to go to the Lightroom Permissions field and add my user name to the user categories already there and enable "read and write" permissions to my user name.  Once done, I shut down my laptop, and then rebooted.  I launched Lightroom and then boom, voila, heavens to betsy, etc. it launched and suddenly a dismal weekend turned into a great one. 
    I am not a geek, so I hope this makes some sense.  I also hope Lightroom launches again tomorrow and beyond! 

  • Do I need OS 9 System Folder and Applications?

    I am running low on space and am looking at things to remove from my internal hard drive. Is there any risk to removing the OS 9 folders? I have a 200G external harddrive with lots of space. Is moving the folders there a better option than deleting them or does moving them cause problems also if I might need them in the future?
    Thanks,
    Sande
    powerbook   Mac OS X (10.3.9)   12 in

    Hi, asinhk. The disk space you'd regain by deleting your OS 9 System Folder and Applications Folder is likely to be less, maybe far less, than one gigabyte. Check the sizes of those folders using the Finder's Get Info command to see how much space you're actually talking about.
    If you have no need at all to run Classic applications — you never do so in your day-to-day work, and you have no old, stored documents that you'll ever need to access in Classic mode — then you can safely delete OS 9 and its applications. It would also be OK to transfer the two major OS 9-related folders to your external drive, if you do need to run Classic sometimes, and if you'll have the external drive connected to the Powerbook whenever you need to use Classic. If you do that, you'll need to re-specify the new location of the System Folder to use for Classic in the Classic pane of System Preferences.
    But ultimately, if you are so pressed for hard drive space that removing OS 9 from your internal drive is going to make any significant difference, then you'll need a new, larger internal hard drive very soon even if you do delete OS 9. If you ever need to perform an Archive & Install of OS X, or you ever want to burn a DVD, you'll need at least 5GB of available space on your internal hard drive to do so. If you can't free up that much space on your HD right now without making agonizing choices about what to keep, you already need a bigger drive.

Maybe you are looking for