Transaction List Assigned to Roles
How can i get to text or excel the list o transactions assigned to the user roles which i see in PFCG t.code?
thanx in advance
Dear Friend,
Go to PFCG - Enter Role name & click on Display - Click on Menu Tab Page & you can see the list of T-codes assigned to that Role.
Now, on the right side there is a small Printer icon, click on that Icon & Print All Role Data would be displayed.
Now Click on Print List on the top left of the screen & you will get options - Print or Save to PC file... select spreadsheet & give location of the file on your PC...
Hope this helps..
Give points if useful...
Thanks,
Jignesh Mehta
Similar Messages
-
Generation of assigner list for Admin Role
Hello!
How I can dynamicaly generate the list of assigners ( the users, who could assign the role to other users) ?
I can do it manualy, one by one, but i want create a rule where the list calculates automaticaly.
And it is impossible to insert Rule into AdminRole object. Could you help me to solve the problem?Hi,
Use FBL3N to go for open line items and give the Baseline date. u can find the all the open item which u can prepare for the payment.
Regards
Divya -
Is there any transaction display the which reports assigned the roles
hi gurus,
i would like to find the table & transaction etc to find the reports which is assigned the roles..thanks
ismailyHi Ismail,
Tables AGR_HIER and AGR_HEIRT, these two tables have the text of the RRMX queries.
Table AGR_BUFFI.. this helps you map role to technical name of query.... although its a bit mixed up in the field, its actually in URL field.
Also, You can check out the metadata repository in order to find out information such as query has been assigned to which particular role etc.
Regards,
Nilima -
Cannot trace the transaction code within a role
Hello All,
We, in our project trying to trace out various transaction codes assigned to each of roles.
I have an issue tracing an transaction code FB60. When i searched in suim for transaction codes within the role, I could see FB60 listing in the results.
But when i go to role through pfcg and see in the menu tab i cannot find the transaction code there.
what went wrong here? Now i want to remove the transaction code from the role so that next time when i use suim it wont be listed in the results.
Kindly advice.
Regards,
Brahmeshwar PolojuHERE IS THE OUTPUT.
OBJECT AUTH VARIANT FIELD LOW HIGH
S_TCODE T-DC84003900 TCD SCPE*
S_TCODE T-DC84003900 TCD SDD1* SE03
S_TCODE T-DC84003900 TCD SE07 SE16N
S_TCODE T-DC84003900 TCD SE17 SECQ*
S_TCODE T-DC84003900 TCD SEEF* SI24_12
S_TCODE T-DC84003900 TCD SI2414 SIBU
S_TCODE T-DC84003900 TCD SIC_* SLAT
S_TCODE T-DC84003900 TCD SLG0 SLIB_*
S_TCODE T-DC84003900 TCD SLIN SLXT
S_TCODE T-DC84003900 TCD SM30
S_TCODE T-DC84003900 TCD SM31 SM37
S_TCODE T-DC84003900 TCD SM50
S_TCODE T-DC84003900 TCD SM51
S_TCODE T-DC84003900 TCD SMAR* SMEZ
S_TCODE T-DC84003900 TCD SMTH* SNLS
S_TCODE T-DC84003900 TCD SNRO SO99
S_TCODE T-DC84003900 TCD SOACARRY* SOTR*
S_TCODE T-DC84003900 TCD SP02
S_TCODE T-DC84003900 TCD SCUS* SDCA*
S_TCODE T-DC84003900 TCD /* DA_*
S_TCODE T-DC84003900 TCD DC* PFCF*
S_TCODE T-DC84003900 TCD PFD* RYZ*
S_TCODE T-DC84003900 TCD RZZ* SAIM*
S_TCODE T-DC84003900 TCD SAIO* SAK*
S_TCODE T-DC84003900 TCD SAM* SAPTE*
S_TCODE T-DC84003900 TCD SARJZ* SARTN*
S_TCODE T-DC84003900 TCD SASAPCATT SBEA
S_TCODE T-DC84003900 TCD SBI* SC2_*
S_TCODE T-DC84003900 TCD SCA* SCBZ*
S_TCODE T-DC84003900 TCD SCDO SCI*
S_TCODE T-DC84003900 TCD SCTS* SCU3
S_TCODE T-DC84003900 TCD SWF_TR* SYNT
S_TCODE T-DC84003900 TCD SZG* TRBS
S_TCODE T-DC84003900 TCD TRCM* UR_M*
S_TCODE T-DC84003900 TCD USRM* _Z*
S_TCODE T-DC84003900 TCD SWF_CN* SWF_RE
S_TCODE T-DC84003900 TCD SPEC* SPERS*
S_TCODE T-DC84003900 TCD SPP* SPROJE
S_TCODE T-DC84003900 TCD SQ00 SRT*
S_TCODE T-DC84003900 TCD SSC SSDZ*
S_TCODE T-DC84003900 TCD SST0 ST05*
S_TCODE T-DC84003900 TCD ST14 ST62
S_TCODE T-DC84003900 TCD STCU STKZ*
S_TCODE T-DC84003900 TCD SV* SWF_BA
S_TCODE T-DC84003900 TCD SURAD SURVEY
S_TCODE T-DC84003900 TCD SU50 SU52
S_TCODE T-DC84003900 TCD SU3
S_TCODE T-DC84003900 TCD SU2
S_TCODE T-DC84003900 TCD SU0
S_TCODE T-DC84003900 TCD STS* STYLE*
Regards -
Transactions available to different roles
Hi all,
I've been asked to do some research on the transactions available to different roles and would greatly appreciate any help anyone can give.
What I am looking for is a full list of transactions/rights attached to
SAP_CA_AUDITOR_SYSTEM user
SAP* user
DDIC user
If anyone could point me in the right direction that'd be greatAs far as i know...T.Code --> SUIM should give you your desired results.
I am working on 4.6 B so change the nomanclature of Authorization Group as Roles in your system.
Just follow the path
SUIM --> Activity Groups --> By Activity Group Name --> enter your activity group "SAP_CA_AUDITOR_SYSTEM" --> Execute (F8) --> then click on "User Assignment" option.
Reward Points if it helps,
Regards,
N -
Assigning database roles on SQL Server db
I am trying to set up a SQL Server adapter (not a database table adapter for SQL tables) to manage role assignment on a database 'test1' on my sql server ( 2000) 'sqlserver1' using IdM 7.1. I am trying to assign role1 to user tuser1 on test1. I am using 'sa' account so permissions should not be an issue.
Per resource reference document, I mapped:
userNametest1 <-> userNametest1
rolestest1 <-> rolestest1
My login for user 'tuser1' gets created on the SQL server. However the database and role assignment is not happening. I do not get any errors in the IdM admin pages from where I am testing this. Hence I am assuming I am not setting something right in the resource schema. I have tried different ways such as
userNametest1 <->userName
rolestest1 <-> roles
and some more combination but none seem to work. How can i find out what my resource attribute mapping should be? If anyone has done this, can you please share how you got it work?
Thanks in advance.Some more info.
I have set up the out of the box MS SQL server adapter to connect to MSDE version of SQL server running on my local machine. I used the MSSQLServer Form provided in the samples folder and assigned it to an admin user and turned on the trace.
I am able to create logins by assigning the resource to a user. Using the admin user I am able to see in the trace that the server Roles are also being retrieved fine. What I am not able to get is assigning a database to the user and then assigning db roles.
Following the documentation (Resource Reference guide for IdM 7.1) I have created following attributes on the left hand side of schema.
defaultDB,serverRoles,domain, userNameMyTestDb,rolesMyTestDb.
No matter what I map the last two attribute I am not able to assign a db and dbroles to a user. I turned on sql profiler and then again used the admin user to view a test user using MSSqlServer form and it appears that the procedure sp_databases is not being called at all. I have decompiled the sql server class file and it appears there might be an issue with the way list of databases is being retrieved.
Has any one seen this before? If you were able to get it to work, can you please give me information on the resource schema and any other settings you had to make to get it to work?
Thanks in advance. -
Portal Runtime error in assigning a role to a user by UME
Hi ALL,
I am assigning a role to a user through UME using this piece of code:
String uids = userFactory.getUserByUniqueName("Shilpa").getUniqueID();
String roleid = roleFact.getRoleByUniqueName("pcd:portal_content/administrator/content_admin/content_admin_role").getUniqueID();
roleFact.addUserToRole(uids,roleid);
The userid and role is beinf fetched successfully but at the assignment of the role to the user , I am gettign Portal runtime error.
The error log is following.
<b> java.lang.NoClassDefFoundError: com/sap/abc/network/util/InfEPLog
at UserListeners.userAssigned(UserListeners.java:27)</b>
at com.sap.security.core.imp.RoleFactory.assignUserPerformed(RoleFactory.java:1466)
at com.sap.security.core.persistence.imp.DistributedTransaction.doCacheUpdateAndNotificationForMembers(DistributedTransaction.java:565)
at com.sap.security.core.persistence.imp.DistributedTransaction.doCacheUpdateAndNotificationForMembers(DistributedTransaction.java:815)
at com.sap.security.core.persistence.imp.DistributedTransaction.doCacheUpdateAndNotification(DistributedTransaction.java:465)
at com.sap.security.core.persistence.imp.DistributedTransaction.afterCompletion(DistributedTransaction.java:252)
at com.sap.engine.services.ts.jta.impl.TransactionImpl.commit(TransactionImpl.java:414)
at com.sap.engine.services.ts.jta.impl.TransactionManagerImpl.commit(TransactionManagerImpl.java:316)
at com.sap.engine.services.ts.transaction.TxManager.commitLevel(TxManager.java:581)
at com.sap.engine.services.ts.transaction.TxManagerImpl.commitLevel(TxManagerImpl.java:63)
at com.sap.transaction.TxManager.commitLevel(TxManager.java:237)
at com.sap.security.core.persistence.imp.DistributedTransaction.commit(DistributedTransaction.java:2742)
at com.sap.security.core.imp.Role.commit(Role.java:337)
at com.sap.security.core.imp.RoleFactory.addUserToRole(RoleFactory.java:1338)
at com.sap.user.UserAdded.doContent(UserAdded.java:63)
at com.sapportals.portal.prt.component.AbstractPortalComponent.doPreview(AbstractPortalComponent.java:240)
at com.sapportals.portal.prt.component.AbstractPortalComponent.serviceDeprecated(AbstractPortalComponent.java:168)
at com.sapportals.portal.prt.component.AbstractPortalComponent.service(AbstractPortalComponent.java:114)
at com.sapportals.portal.prt.core.PortalRequestManager.callPortalComponent(PortalRequestManager.java:328)
at com.sapportals.portal.prt.core.PortalRequestManager.dispatchRequest(PortalRequestManager.java:136)
at com.sapportals.portal.prt.core.PortalRequestManager.dispatchRequest(PortalRequestManager.java:189)
at com.sapportals.portal.prt.component.PortalComponentResponse.include(PortalComponentResponse.java:215)
at com.sapportals.portal.prt.pom.PortalNode.service(PortalNode.java:645)
at com.sapportals.portal.prt.core.PortalRequestManager.callPortalComponent(PortalRequestManager.java:328)
at com.sapportals.portal.prt.core.PortalRequestManager.dispatchRequest(PortalRequestManager.java:136)
at com.sapportals.portal.prt.core.PortalRequestManager.dispatchRequest(PortalRequestManager.java:189)
at com.sapportals.portal.prt.core.PortalRequestManager.runRequestCycle(PortalRequestManager.java:753)
at com.sapportals.portal.prt.connection.ServletConnection.handleRequest(ServletConnection.java:240)
at com.sapportals.portal.prt.dispatcher.Dispatcher$doService.run(Dispatcher.java:524)
at java.security.AccessController.doPrivileged(Native Method)
at com.sapportals.portal.prt.dispatcher.Dispatcher.service(Dispatcher.java:407)
at javax.servlet.http.HttpServlet.service(HttpServlet.java:853)
at com.sap.engine.services.servlets_jsp.server.servlet.InvokerServlet.service(InvokerServlet.java:156)
at javax.servlet.http.HttpServlet.service(HttpServlet.java:853)
at com.sap.engine.services.servlets_jsp.server.HttpHandlerImpl.runServlet(HttpHandlerImpl.java:401)
at com.sap.engine.services.servlets_jsp.server.HttpHandlerImpl.handleRequest(HttpHandlerImpl.java:266)
at com.sap.engine.services.httpserver.server.RequestAnalizer.startServlet(RequestAnalizer.java:386)
at com.sap.engine.services.httpserver.server.RequestAnalizer.startServlet(RequestAnalizer.java:364)
at com.sap.engine.services.httpserver.server.RequestAnalizer.invokeWebContainer(RequestAnalizer.java:1039)
at com.sap.engine.services.httpserver.server.RequestAnalizer.handle(RequestAnalizer.java:265)
at com.sap.engine.services.httpserver.server.Client.handle(Client.java:95)
at com.sap.engine.services.httpserver.server.Processor.request(Processor.java:175)
at com.sap.engine.core.service630.context.cluster.session.ApplicationSessionMessageListener.process(ApplicationSessionMessageListener.java:33)
at com.sap.engine.core.cluster.impl6.session.MessageRunner.run(MessageRunner.java:41)
at com.sap.engine.core.thread.impl3.ActionObject.run(ActionObject.java:37)
at java.security.AccessController.doPrivileged(Native Method)
at com.sap.engine.core.thread.impl3.SingleThread.execute(SingleThread.java:102)
at com.sap.engine.core.thread.impl3.SingleThread.run(SingleThread.java:172)
Please tell me where I am wrong.
Regards,
Shilpa.Hi Shilpa,
The error "java.lang.NoClassDefFoundError" means that your classpath is not set correctly. This is likely due to a missing reference. The class file may be in the jar, but at runtime the component (your component) needs to have access to the jar file which contains the class.
Try adding the servlet.jar, activation.jar file in your project and also through your ADd external libraries at 'java build path'. also please ensure tht WAS and NWDS at the same SP level.
Hope this might help you.
Regards,
Shaila -
Task List Access Manager Role in Shared Services
Hi
The documentation says this role "Assigns task lists and tasks to other users". I have assigned this role to a group (in Shared Services), I have given that group Manage and Assign access to the Task List (in Planning), and have even done a security Refresh.
Yet, when I go in as a user who is in that group, I do not see the Assign Access button in Manage Task Lists.
Is this a bug or have I missed a step?
We are on 11.1.2.1
Thanks!Hi,
Have you tried generating a provisioning report in Shared Services, have a read of :- http://download.oracle.com/docs/cd/E10530_01/doc/epm.931/html_cas_help/provrep.htm
If that doesn't suit your requirements then you could always have a look at using CSSImportExportUtility to export provisioning to a csv file. The utility is located in hyperion\common\utilities and has a pdf on instructions how to use it.
Cheers
John
http://john-goodwin.blogspot.com/ -
Custom Report: the list of IT ROLES of one or more users
Hi all,
I want to do a custom report that gives me the list of IT ROLES of one or more users. Anyone could give me some guidelines?
Thanksaccording to the docs... if I interpret them right
getRoles returns roles assigned to the context given, this is wise since it is usualy used to check if the current user invoking the call has the rights in a form, workflow or similiar...
Adding the "accountId" string as a second argument would invoke this form of the getRoles
getRoles
public static java.util.List getRoles(LighthouseContext s, java.lang.String current) throws WavesetException
This variant allows a specific name to be included in the returned list. Used to ensure that the current value of a role may continue to be assigned even though the current admin may not have access to that role.
I believe you should get the users view and get your info from there...
if you try using the debug page and getObject User and the accountId, you will see the user in its full glory...
there you can see what you might want to do I hope -
Web/UME Services to fetch list of Portal Roles??
Hi All,
Are there any out of the box Web or UME services available which can fetch list of Portal Roles based on certain criteria.
Basically I am looking for a service that will fetch list of all Portal Roles (PCD & UME) and will take couple of input parameters, a Role Name/ID & the permission property "Role Assigner"
Thanks
SandipThanks for your reply.
But I guess these forums shows how to retrieve roles & its sub-ordinates for a particular user. Where as I am trying to retrieve all PCD roles for which I have "Role Assigner" permission.
Basically I am building a delegated admin functionality on Portal using custom coding. It is the same as Portal out of box Del User Admin but I am not using it because of some other enhancements.
I will have many user admins and the roles they can assign to users are determined by the "Role Assigner" permission. So its like, User_Admin_RoleA has access to 5 Portal Roles, User_Admin_RoleB has access to some other 5 roles and so on.
So just wanted to know if there are standard Portal service (like we have for KM) available to do this.
Thanks
Sandip -
Hi All,
I am new to SOA and I want to know how to assign application roles (Not global roles) through EM Console. As, I am unable to assign the roles through BPM workspace. I can go to the administrator tab and assign the roles to me. But in the task list I am unable to get the task.
Thanks and Regards,
RamHi Ram,
Refer this doc:
http://docs.oracle.com/cd/E24628_01/doc.121/e36415/sec_features.htm#CJADDBGA
HTH
Mani -
How to include a favorit list into a role?
We need to assign a role to some users so that the users can have
a favorit list that is included in the role.
It's easy to include iViews into a role. But I have tried very hard to include
a favorit list into a role without success.
Points guaranteed. Thx.<u>Portal Favorites is an iView.</u> Open a role in which you want to add Portal Favorites. Then goto <i>PCD->Containt Provided by SAP->End User Containt->Standard Portal Users->iView->com.sap.km.iView.</i> Right click Portal Favorites iview and then Click "Add iView to Role" -> Delta link.
Regards,
Nitin -
Assigning authorization role to position in PP02 (SRM 5.0) not working
Hi,
We've run into a problem in our SRM 5.0 system that we're not sure how to solve.
We defined a role where we only set the BBP_APPROVAL_LIMIT attribute in the Personalization tab. It has no other transaction authorizations.
When we assign this role to the user directly the user inherits the BBP_APPROVAL_LIMIT as expected.
When we attempt to assign this same role to a position through PP02 and run the PFUD, the attribute values are not transferred to the user personalization attributes. Doesn't matter what we do, we can't seem to be able to get it to work.
Does anyone one have any experience with this that they could share?
Regards,
Jerry MartinekHello Yann,
Thank you for the reply.
This is one of the things that I'm trying to confirm which is whether it can be done. I was told that it does work and that they use PP02. But as we can't get it to work I wanted to know if anyone else is using this process and if yes, how do you do it.
If people mainly use the explicit user assignment via PFCG, do they manage it manually or systematically?
Thanks,
Jerry -
Indirect pfcg role assignment - no roles in SU01
Hi experts,
I would like to assign PFCG roles via indirect assignment, this means i would assign roles with the organisational model (transation ppomw).
I did the assignment and i executed the transaction pfud for user master data reconciliation. But the pfcg roles are not assigned to the user (see roles in transaction SU01). Usually the roles should be displayed (in blue and with xflag for indirect assignment).
Are there any customizing configurations i have to keep in mind?
Hope you can help as fast as possible.
Thanks a lot and best regards,
NataliRun PFUD if this is still an issue.
-
When I query based on Tcode, using SUIM , I am getting a list of Roles.
But I could see, some other Tcodes are also present in authorizations. which is the exhustive way to list all the Roles, based on Tcode. Should I use AGR_1251 table? is it complete?
Thanks,
SamTry specifying criteria as -
in green single value, specify the TCODE you are looking for (e.g. SE16)
in red ranges, specify two tcode ranges that will include every tcode in the system before and after your transaction code. For example VRD-SE15 and SE17-Z_*.
This will restrict your search -
include tcode SE16
exclude every other transaction.
Maybe you are looking for
-
I got a message that " iphone software version 5.0 is available" for my iphone. After i updated it, i got a message that my iphone could not be activated and to try to connect to itunes which i did, but i got a message that my phone has no sim card.
-
Can we show 2 queries in a single query ?
Hi experts, We require an output of a bex query. But the output is coming in two different queries. Is it possible to show two queries in a single query ? Regards, Nishuv.
-
Hi, My places.sqlite file size is 30,720 KB have I reached the maximum size, is there even a maximum size for this. Suddenly the visited links are no longer changing font color, as I am preparing for an exam I need visited questions to change color,
-
Strange graphical glitch in Select Columns
I've noticed a strange graphical glitch in the Select Columns region of an interactive report when using IE7 or 8. When a column is selected (other than the first or last) and sent to the Bottom or Top the change doesn't actually show until the mouse
-
Hi, I have three tables ,'sales','purc','stock', all having structure as itemcode number, itemname varchar2(20), itemqty number. i have defined triggers as follows: 1. create trigger on_purc before insert on purc for each row begin insert into stock