Standard roles in BW (SU01) to use BPC 10.1?

Hi experts,
I'm currently working on BPC 10.1 and I'm trying to figure out which roles are necessary in tc SU01 to use BPC 10.1. The 10.0 security guide specified two standard roles needed for the users, /POA/BUI_FLEX_CLIENT and /POA/BUI_UM_USER. However the 10.1 security guide does not say anything about standard roles so I'm wondering if it's the same roles as in 10.0...
Please advise
Best regards,
Lars

Hi Shekar,
The solution provided by the Note 2068917 can resolve the issue.
It worked for me. Just create an ABAP program with the following code and execute it.
Please provide the appropriate 'username' and '_AppsetName'  as per your requirement.
DELETE FROM RSBPC_WEB_UP WHERE user_id = 'username' AND NAME = 'colSeq' AND CATEGORY = 'members_AppsetName'.
WRITE SY-SUBRC  .

Similar Messages

  • SAP Standard Roles

    Hello everyone.
    What is SAP's best practice for using (customizing) the SAP standard roles? I have always used the standard roles as templates to customize for my customers. Is there a stated SAP best practice for this?
    If I use a standard role, customize it and copy it to the company namespace and the standard role it is customized off of changes, does my customized role change?
    How do release upgrades affect the standard SAP roles?
    Thanks!
    Todd

    Hi Todd,
    If you copy the roles to a your own namespace then they won't be touched during upgrade.
    I can't comment on what happens to standard roles during upgrade as I tend to avoid them.
    There is no accepted best practice around using standard roles, though there is reasonably wide belief that developing your own from the ground up is a better way to develop roles to meet your customers business processes. 
    I find that where standard roles have been used, the end user roles have generally a lot of unused transactions.  Functional & business people see a large list & choose most of them rather than building up from a subset of inscope transactions which are also used for training, BPP's etc.
    There is also the consideration that using standard roles guides you to building in the same way.  That's not to say it is a bad way, just can limit flexibility if you build down to a task level (nasty, nasty, nasty) or higher at a job or function level.
    Cheers
    Alex

  • Consolidation logic error..We are using BPC 7.5 NW SP7.

    Hi Experts,
    We are using BPC 7.5 NW SP7.
    We are running the consolidation for 2011.NOVEMBER as a first month and  there is no data for previous months except 2011.MAR. My financial year starts on 2011.APR.
    When we are running consolidation using standard consolidation logic it is considering the 2011.MAR values for automatic data sources. it is considering automatic data source and F_999 AND F_100 flows.
    After running the consolidation F_999 flow is becoming as F_100  AND agin F_999 is adding the present month F_999 flow values.
    Example
    acct1                auto1datasrc       2011.mar     f_999         100
    After running standard consolidation logic in nov,
    acct1                auto1datasrc       2011.NOV     f_100         100
    acc1                auto1datasrc       2011.NOV     f_999         130   (100+30)...........[this is wrong, ideally we should have present mont value 30]
    1. why is it considering previous year values
    2. How to control restrict closeing bal not to add to current year closing balance.
    Please Share your expertise.
    Thanks,
    Raj

    Hello Raj, Im facing the same issue and also my problem is due to FLOW_TYPE maintainance. Could you please share your knowledge about the usage and behaviour of this property ?.
    Regards,
    Aldrin

  • 'Standard Role' 'User' 'Business Partner' and 'Internet User'

    hii
    Currently I m working on E-Recruitment 6.0 BSP's..
    Can somebody explain me....
    1)
    'Role' 'User' 'Business Partner' and 'Internet User'
    Kindly help me undertand the relation between the above mentioned IDs and there creation
    2)
    I have created Business Partner(External Person) ID using BP(txn)...Kindly let me know how to create the 'Internet ID' and 'PW'
    So that I can use it for HRRCF_StART_EXT (BSP)
    kindly explian...or mail me any documention related to
    E-recruitment to my id [email protected]
    Looking for a immediate reply
    Regards,
    Raghav

    Role - is the same as the concept of role in R3. SAP Delivers some pre confogured authorisation profiles for some standard roles.
    Roles are assigned to user depending on the client's requirement.
    Business Partner is the same as BP in CRM. basically, the following will be BPs in ur system:
    Each independent user of the recruitment process - as BP Branch.
    All third party recruitment vendors as BP Type Agency.
    All employees will also be BP in the system.
    All external applicants.
    You can create internet user using the t code SU05. You can also use the R3 sytem user credentials to log on to the url application by configuring the system to use the SAP login. (this is done thru t code SICF)
    Hope this helps.

  • Standard roles, groups, profiles of a rfc-user

    hi,
    can anybody tell me please, which are the standard roles, groups and profiles of a rfc-user in our sap xi-system?
    thanks.
    regards
    Stefan

    Hi,
    Check the links for authorizations.
    http://www.erpgenie.com/sap/netweaver/xi/xiauthorizations.htm
    also check if your user have this roles in abap stack TECODE su01
    SAP_XI_ADMINISTRATOR
    SAP_XI_CONFIGURATOR
    SAP_XI_CONTENT_ORGANIZER
    SAP_XI_DEVELOPER
    SAP_XI_DISPLAY_USER
    SAP_XI_MONITOR
    SAP_ALM_ADMINISTRATOR
    SAP_J2EE_ADMIN
    SAP_SLD_ADMINISTRATOR
    SAP_SLD_CONFIGURATOR
    SAP_SLD_DEVELOPER
    SAP_XI_ADMINISTRATOR_ABAP
    SAP_XI_ADMINISTRATOR_J2EE
    SAP_XI_CONFIGURATOR_ABAP
    SAP_XI_CONFIGURATOR_J2EE
    SAP_XI_ID_SERV_USER
    SAP_XI_IR_SERV_USER
    SAP_XI_RWB_SERV_USER
    SAP_ALM_CUSTOMIZER
    SAP_BC_BASIS_ADMIN
    SAP_BC_BASIS_MONITORING
    ARG_XI_DEV
    Thanks,
    Vijaya.
    Edited

  • Quicklink for Pages in Standard Roles

    Hi All,
    I have developed custom top level navigation(with dropdonlist). As per my requirements, I have to use quick links for all pages. So that my custom toplevel navigation only supports for quick link.
    Now, I want to add  Custom Admin and User Admin roles to some users. These roles are not having quick links as default. So that we have to change in standard roles. Is it correct way that I am doing?
    While transporting content, we canu2019t transport standard roles. Because, it may affect destination server, if SP or patch level is different.
    Is there any other solution to solve this issue?
    Regards,
    Venkatesh R

    Hi Michael and Raghu,
    Thanks for your quick reply.
    @ Michael, Sorry I am not getting your question.
    I have tried already as you told. I have duplicated content admin, content administration workset role and portal content page. In that, I have added quick link and assigned to a user.
    And also, I have given permission to portal content folder. But It shows a runtime error in Portal Content Page.
    Note: If I add Standard Content Admin role to this user, this duplicted portal content page is working. I have added this role in system princple also. Is there any other special permissions need to be given for this duplicated role.
    Thanks,
    Venkatesh R

  • Disabled standard role com.sap.pct.pdk.JavaDeveloper

    Hi - I've logged an OSS but if anyone can help me quicker it ould be most appreciated;
    the role com.sap.pct.pdk.JavaDeveloper can be found in the portal
    content location
    pcd:portal_content/com.sap.pct/platform_add_ons/com.sap.pct.pdk/Roles/com.sap.pct.pdk.JavaDeveloper
    when i double click on that role it shows only one Workset called
    Examples and within it a workset called OBN Examples
    I searched the SDN and found this post:
    /community [original link is broken]
    forumID=53&threadID=19464&messageID=162992
    which sounded exactly right. sure enough the role was assigned to the
    administrator.once i removed it, the role is now not working for any of
    my logons - test users or Administrator.
    in addition we do not have the object com.sap.pdk.JavaDeveloper in our
    system.
    help
    andy

    sorry, probably haven't explained it well enough.
    it used to have lots of entry points, yes. but none of them were visible in the portal catalogue, except one "Examples"
    the linked post describes exactly the same problems. when i followed the recommended steps "remove the role from the Administrator account" in that post, the role stopped working, apart from the "Examples" workset. Apparently we are not using NWDI and apparently this has some relevance, in that we can't create the system alias for the webDynpro as the post also recommends.
    to recap - the standard role, since unassigning it from the administrator account, now does not function for any user. only the workset "Examples" is visible in the role. this was the case before. trying to view the other objects in the role is the reason I was working on it., since we have a requirement to add the Portal Logviewer in to the content developer role, without giving them the whole of the PDK/PRT  maintenance applications. it now transpires that they were not displaying and were hidden becasue they are not Iviews, but are components accessed directly.
    Does it need to be rebuilt? if so , how?
    thanks ,
    andy

  • Issue while making duplicate roles from standard roles.

    Hi Expert,
    I have copied ESS and MSS role to a Z_ESS and Z_MSS role and assigned this role in
    permission->set this under medium_security .
    Portal Links donot get open when i click on it, it shows "page not available or not found".
    But if i assign Standard roles(ESS and MSS)  then it is working fine.
    Please assist what needs to done to make it copy roles as standard roles

    Hi rishavsharma,
    you are referring with  medium_security to the Security Zones, but the roles need to set the PCD Pemission setting correct in the permission area of the PCD itself (Content Admin and in the menu you should see persmissions) and don't forget the enduser flag for the user/group who use the role.
    Also ESS/ MSS Role changes need also changes in the backend if Webdynpro ABAP is used.
    Regards,
    Kai

  • Modifying standard roles

    Hi!
    We are going to use standard roles as much as possible. However, we are in the need of modifying them somewhat. Does anyone have information/documentation containing how to best do this, what is not suggested etc...
    I would really appreciate if anyone would help me with this.
    Sincerely
    Anders Öhrling

    Anders,
    Could you give more information on this? I understand you are looking towards using a standard template but will only update certain fields according to your requirements. Are you working from a post migration of 3.5 perspective?

  • Deletion of SAP standard roles

    I have been asked by the client if we could delete all of the SAP standard roles. I think there are many good reasons not to delete them, but does anyone know what SAP's official recommendation would be to that question and could you point me to the documentation or SAP Note where that recommendations is written?
    So far all I have found is the following documentation(http://help.sap.com/saphelp_47x200/helpdata/en/52/67164b439b11d1896f0000e8322d00/frameset.htm) saying that:
    Do not change the delivered standard roles (SAP_), but rather only the copies of these roles (Z_). Otherwise, the standard roles that you have modified will be overwritten by newly delivered standard roles during a later upgrade or release change.
    But it does not say that you should never delete them.
    Br,
    Jon

    Christensen Jon Jagd wrote:>
    > The client want's to "clean up" the authorizations concept by deleting all of the unused roles. And all the SAP_* roles are not assigned to any users (and not generated neither).
    I've seen that before, the urge to clean up...... unused roles aren't the worst thing to happen on a system, as long as they're part of the concept.
    Come to think of it. I'd delete them from my test and prod systems to avoid confusion and/or (mis)use, but not from dev. On dev the majority of roles is not assigned to users anyway........
    > But I would like to know if for example "SAP recommends that you do NOT delete system delivered roles".
    I don't think such advice exists. Try to convince the client they should be kept on dev for future reference. Delete them on the other systems to clean up. Everybody happy.
    Jurjen
    Edited by: Jurjen Heeck on Feb 12, 2008 10:16 AM

  • Creating standard roles transaction

    Hello,
    Please let me know transaction code of standard roles creation in SAP Business Workflow.
    Regards,
    Amey

    Create Roles 
    The role also contains the authorizations users need to access the transactions, reports, web-based applications and so on, contained in the menu.
    You can assign a role to an unlimited number of users.
    Procedure
    To create a single role:
    1.     Choose the pushbutton Create role or the transaction PFCG in the initial transaction SAP Easy Access. You go to the role maintenance.
    2.     Specify a name for the role.
    The roles delivered by SAP have the prefix 'SAP_'. Do not use the SAP namespace for your user roles.
    SAP does not distinguish between the names of simple and composite roles. You should adopt your own naming convention to distinguish between simple and composite roles.
    3.     Choose Basic maintenance (in the Profile, Other objects menu).
    4.     Choose Create.
    5.     Enter a meaningful role description text. You can describe the activities in the role in detail.
    You may use an existing role as a reference.
    6.     Assign transactions, programs and/or web addresses to the role in the Menu tab. The user menu which you create here is called automatically when the user to whom this role is assigned logs on to the SAP System. You can create the authorizations for the transactions in the role menu structure in the authorizations tab.
    If you want to call the transactions in a role in another system, enter the RFC destination of the other system in the Target system field.
    You should only use RFC destinations which were created using the Trusted System concept () to guarantee that the same user is used in the target system. This is only necessary if you want to navigate via the Easy Access Menu in the SAPgui.
    If you use the Workplace Web Browser, you can use any destination containing a logical system with the same name.
    If the Target system field is empty, the transactions are called in the system in which the user is logged on.
    You can also specify a variable which refers to an RFC destination. Variables are assigned to the RFC destinations in the transaction SM30_SSM_RFC.
    To distribute the role into a particular target system, specify the target system (its Release must be 4.6C) and choose Distribute. This function is most useful when you use the Workplace.
    You can create the user menu:
    o     from the SAP menu
    You can copy complete menu branches from the SAP menu by clicking on the cross in front of it in the user menu. Expand the menu branch if you want to put lower-level nodes or individual transactions/programs in the user menu.
    o     from a role
    this function copies a defined role menu structure in the same system into the current role. You can also copy the menu structure of a role delivered by SAP. Click on the menu branches and copy them.
    o     from an area menu
    You can copy area menus (SAP Standard and your own) into a role menu. Choose an area menu from the list of menus and copy the transactions you want.
    o     Import from file
    See Upload/Download roles.
    o     Transaction
    You can put a transaction code in the user menu directly.
    o     Program
    This function puts programs, transaction variants or queries in the user menu. They need not be given a transaction code.
    ABAP Report
    Choose a report and a variant. You can skip the selection screen.
    You can generate a transaction code automatically and copy the report description by setting checkboxes.
    SAP Query
    Enter a user group and query name. If the query has a variant, you can specify it. You can also specify a global query. See  Query work areas.
    Transactions with variants
    The system administrator can create transaction variants in the SAP System  Personalization. Transaction variants adjust complex SAP System transactions to customer business processes, by e.g. hiding superfluous information and adding other information such as pushbuttons, text or graphics. You can put a transaction variant call in a user menu by entering the transaction code and variant which you created in the transaction SHD0.
    BW report
    Include a Business Information Warehouse report. Enter the report ID.
    ReportWriter, Search, Report
    These function put other application-specific report types in the user menu.
    o     Others
    Enter other objects:
    Web address or file
    Enter internet/intranet links with a descriptive text and the web address. You can enter a file name if the browser can call an application.
    Drag and relate component
    Enter the component name.
    Knowledge Warehouse link
    Use the Document field possible entries help. Choose the information object type. You go to a selection screen in which you can search for the object in the Knowledge Warehouse.
    There are other pushbuttons for editing the user menu. Choose a menu entry with the cursor before you call one of the following functions.
    Function:     Meaning
      Create folder
    Group transactions, programs, etc. in a folder
      Change node text
    Change a menu entry text
      Move down
    Move a menu entry down one place
      Move up
    Move a menu entry up one place
      Delete nodes
    Delete a menu entry
    Any subnodes are also deleted.
      Delete all nodes
    Delete the complete role menu
      Translate node
    Translate a menu entry
      Documentation
    Display the documentation of transactions, programs, etc.
      Find doc.
    Find programs
    You can restructure the menu by Drag & Drop.
    The Menu tab status is red if no menu nodes are assigned. If at least one menu node is assigned, the status is green.
    You can assign Implementation Guide (IMG) projects or project views to a role under Utilities  Customizing auth. Do this to generate IMG activity authorization and assign users. The authorization to perform all activities in the assigned IMG projects/project views is generated in profile generation. You make the assignments in a dialog box. Choose Information to display more information on using this option.
    7.     Save your entries.
    You have created a role.

  • SAP standard roles for Mii inside of objects?

    Hi,
    It is our practice to rename SAP standard roles we plan to use "as is" to our company's naming convention.  I am being told by an Mii implementer that Mii uses the standard role names in objects and that by changing these names to our convention, I will create "complications" in their implementation process.  I find this hard to believe, it would be a departure from what (little) I know about SAP and how they handle authorizations and roles.  It also seems to be very limiting when it comes to customization in the future.
    Is this true?  Does Mii name standard roles inside of objects? (These "objects" were not clearly defined to me and I plan on calling a meeting so they may show me examples.)
    Anyone else on Mii have this issue?

    As far as I know, in Mii a user typically needs at least one of these roles:
    SAP_XMII_User
    SAP_XMII_Developer
    SAP_XMII_Administrator
    You can of course add additional roles with the authorization the different users require using your own naming convention.
    I think this is what the Mii implementer is talking about.
    Good luck!

  • Standard Role for 000000 for role category MKK is not permitted

    Hello SAP Gurus,
    I am working on RM-CA and was trying to create a business partner using T-code FPP1 and BUP1.
    I was trying to create a business partner as an organization.
    WHen I try to save the record I get the error "Standard Role for 000000 for role category MKK is not permitted" Msg P082.
    I've checked the view V_TB003 and I see that the Standard Role is assigned to the MKK category.
    Has anyone encountered this problem before? What is the fix for this? What am I missing?
    Thanks

    Hi Jamal,
    Please check the following steps:
    1. In view V_TB003, please check if the BP role category "MKK" is assigned to the BP role "MKK".
    2. In view V_TB109, please check if the BP role category "MKK" is assigned to the transaction code FPP1
    I hope it helps!
    Regards,
    Gabriel Santana

  • Standard Role to Middleware (data exchange)

    Hello
    We have a SAP CRM Project where customer is very restrictive with authorizations management in productive systems .
    We can’t assign a SAP_ALL   to connection user (RFCUSER)  for data exchange and we are trying to find a standard role pfcg with all necessary authorization in SAP CRM & SAP ECC to exchange master data & ERP customizing.
    I’m worried about this because if I use a trace (ST01) to identify authorization objects I could create an incomplete role.
    Does anybody have any information about this issue?  Do you Know a standard role to fullfil this security requirement?
    Thanks in advance,
    Pilar.

    I see to many variables here to solve this with the standard roles
    You can analyze the users who have roles in both systems for the objects that will be integrated and assign those roles to the RFC users...I don't know, just an idea

  • Standard roles & profiles

    Hi All,
    FICO , SD and MM standard roles and profiles avaliable
    please help me
    Regards
    siva

    If you go to transactiun SUIM and look for the reports about roles you'll find one which shows roles by role name.
    All standard roles begin with the letters SAP.
    Here you may find the ones you need, copy them to your own namespace and use the copies.
    Do expect some extra effort on your behalf as the standard roles will not copletely fit your needs. You will need to adjust them.
    Jurjen

Maybe you are looking for

  • Help with sort

    So I have a class called Token and a class called TokenArray. I have a sort function to sort an array of Tokens. I'm pretty new to java so I assumed a sort function would work the same as in C but for some reason it deletes the data instead of switch

  • How to create file form servlet in our virtual directory

    hi.... I want to create a file form my servlet in my virtual directory.. my directory name ia vps it cconatin vps -> WEB-INF -> classes-> servTest servTest is servlet.... and i want to create file from servTest in vps directory.. actually i am trying

  • IPod won't charge via USB

    I've lost my AC charger and normally wouldn't bother charging with the USB cord, but I had to. Anyway, I'm on a MacBook with all of the updates, iTunes 7.0.1 (haven't had problems with that yet), 20gb 4G iPod. When I try to charge with the USB cord,

  • How to create table with list/map value binding

    I need to display few values in a tabular format. Is it possible to create adf table without having value binding to a VO object. Can I make a table with some list/map combination. I want to change the display format with minimum change in the applic

  • B2B Process Model Examples

    Hello All, currently i'm writing a seminar paper about correct semantic business process modeling for b2b. Therefor i'm looking for reference models concerning b2b and standards like EDI, CDIX, RosettaNet and so on. Especially the interfaces of partn