User role to access configuration management in NWA

Hi,
What USER role is required to create the destination information in configuration management in NWA. When I access NWA, I only have access to SOA management which has only Monitoring tools with role SOA technical ADmin.
I need this to convert IDOC XML to flat file.
thanks
Prashanth

Hi Prasanth,
I am not sure about the exact role but, the ABAP role "SAP_NWA_FULL" & Java role "NWA_SUPERADMIN" will certainly help. This is the role that i had when i was trying a similar scenario.
Please take a look at the following link which might be helpful:
http://help.sap.com/saphelp_nwpi71/helpdata/en/45/c7ca8e89e45592e10000000a1553f7/content.htm
You can infact ask your Basis team to help you out with this.
I hope this helps.
Regards, Gaurav.
Edited by: Kumar Gaurav on Nov 9, 2010 5:57 AM

Similar Messages

  • Message (on one account) when logging in: The user account running the Configuration Manager console has insufficient permissions to read information from the Configuration Manager site database.

    After installing the reportservice/database i cannot use the Configuration Manager Console 2012 anymore with my own AD account. (The accounts of my colleagues are stil working)
    When i login i get the following message:
    The user account running the Configuration Manager console has insufficient permissions to read information from the Configuration Manager site database. The account must belong to a security role in Configuration Manager. The account must also have
    the Windows Server Distributed Component Object Model (DCOM) Remote Activation permission for the computer running the Configuration Manager site server and the SMS Provider.
    I checked the following:
    I am a administrative user in SCCM (Full Administrator)
    I am a member of the administrator group on the server
    Deleted HKEY_CURRENT_USER\Software\Microsoft\ConfigMgr10
    I tried to start it on multiple workstations and deleted my roaming profile
    Any more suggestions?

    Hi,
    Maybe you could have a look on the below blog.
    http://blog.nimbo.com/how-to-disable-user-account-control-in-windows-server-2012/
    (Note: Microsoft provides third-party contact information to help you find technical support. This contact information
    may change without notice. Microsoft does not guarantee the accuracy of this third-party contact information.)
    Best Regards,
    Joyce Li
    We
    are trying to better understand customer views on social support experience, so your participation in this
    interview project would be greatly appreciated if you have time.
    Thanks for helping make community forums a great place.

  • Query user roles and access

    hi,
    How can query user roles and access in whole database? I want to list username, status, rights, and role
    thanks
    P

    Hi,
    The data dictionary view dba_users has one row per user.
    The data dictionary view dab_role_privs has one row for every distinct combination of user and role that actually occurs ion your database,
    Are you interested in system privileges? See dba_sys_privs.
    Are you interested in individual grants, like the privilege to UPDATE a given table, or the privilege to execute a given stored procedure? See dba_tab_privs. (Don't be fooled by the name; it's not just for tables.)
    I hope this answers your question.
    If not, post some CREATE statements, that create tables, roles, and whatever else you want, and some GRANT statmeents that grant privileges on those objects. Pos the results that you would want to get from those objects and grants.

  • Assigning the End User Role for E learning management in Solution Manager

    Hello Team,
    In the E Learning Management in Solution Manager, I have to a assign the End User Role for each Bussiness Process. While assigning the role, I couldn't able to assign the role of type " JOB ". What have I do to get the type as JOB instead of "Organizational Unit" and "User"?
    Regards,
    Shyjith.K

    Hi,
    Have you maintained your Organizational data? Did you assign any job to any user in the organizational hierarchy. You need to maintain you PPOMA_CRM first in order to assign any roles there.
    Hope this helps
    Rajeev

  • Users, Roles, Restricted access

    We have several databases on several different platforms and a multitude of schemas spread across this "grid". We also have several "home grown" web pages that curerently present "read only" information about these databases, their contents (schemas) and connect string information, space available, tablespace usage etc. all driven by cgi scripts and other scripts that query the databases v$views or even have small databases containing specific schema related information to provide this information. The developers have one, the QA folks have a different one, the support group has a different one, but they all present very similar information. Us DBA's use EM.
    I have been tasked to try to "coalese" all these into a single source and was entertaining the concept of using the OEM console as a single point of reference for all this information since it is pretty much available there already or can be included there by creating "custom reports" on the reports tab. I have been able to create some of these reports already and they look good.
    Now, I want to allow many of these users who are not DBA's but who are "developers", QA engineers, Support technicians, to view all this but I do NOT want to allow them to make any kind of DBA type changes directly from their OEM session.
    The way it is right now all I have is the "Super Administrator" SYSMAN account.
    Any ideas on how to limit the functional access to this product without necessarily limiting the "viewing" access. I mean I'd like a developer to be able to see for instance the amount of free space in a tablespace on an instance but NOT change anything...like NOT add a datafile or anything.
    Am I trying to use the EM in a way it was never intended? Is this whole thing a "bad idea". Please give me your opinions?

    import java.io.BufferedReader;
    import java.io.File;
    import java.io.FileReader;
    import java.io.StringReader;
    import javax.xml.parsers.DocumentBuilder;
    import javax.xml.parsers.DocumentBuilderFactory;
    import org.w3c.dom.CharacterData;
    import org.w3c.dom.Document;
    import org.w3c.dom.Element;
    import org.w3c.dom.Node;
    import org.w3c.dom.NodeList;
    import org.xml.sax.InputSource;
    public class XMLParsingProj {
    public static void main(String arg[]) throws Exception {
    String xmlData = "";
    FileReader fileReader = new FileReader(new File("XMLData.xml"));
    BufferedReader bufReader = new BufferedReader(fileReader);
    String xmlLine = "";
    while ((xmlLine = bufReader.readLine()) != null) {
    xmlData += xmlLine;
    System.out.println("String Value is");
    System.out.println(xmlData);
    DocumentBuilder db = DocumentBuilderFactory.newInstance().newDocumentBuilder();
    InputSource is = new InputSource();
    is.setCharacterStream(new StringReader(xmlData));
    Document doc = db.parse(is);
    NodeList nodes = doc.getElementsByTagName("soap:Envelope");
    for (int i = 0; i < nodes.getLength(); i++) {
    Element element = (Element) nodes.item(i);
    NodeList name = element.getElementsByTagName("soap:Body");
    Element line = (Element) name.item(0);
    System.out.println("Name: " + line.getTagName());
    NodeList title = element.getElementsByTagName("lookupResponse");
    line = (Element) title.item(0);
    System.out.println("Status: " + line.getAttribute("status"));
    System.out.println("data node length :" + nodes.getLength());
    }

  • Pull User Role from identity manager in BPM process

    Hi,
    How can I pull user name, user role from different identity manager in order to configure hierarchy workflow in BPM process? can any one guide me on that??
    Regards,
    Amik

    I'm having the same problem on WebLogic 10.3

  • What roles assignments for Rights Management?

    System: Adobe LiveCycle Server ES3 system.
    Question and Issue: I need to create a user that is able to manage the settings via the web administrator (adminui) for:
    1. Policies
    2. Documents
    3. Events
    4. Watermarks
    However this user must not have the abiltiy to change the server configuration, key management, etc that is most of the stuff in the "LiveCycle Rights Management->Configuration" page except for "Watermarks".
    I had assigned this user the following Role Assignments:
    1. Rights Management Policy Set Administrator
    2. Rights Management Invite User
    3. Rights Management End User
    4. Rights Management Manage Invited and Local Users
    The above lists works for most part except this user is unable to configure/manage the Watermarks.  The ability to configure/manage Watermarks is critical in our scenario.
    I found that by assigning this user the "Rights Management Super Administrator" role, it would allow this user the "Watermark" capability; however it also allows the user other capabilities that we do not want the user to manage/configure.  I believe the "Rights Manage Configuration" permission gives this role the ability to configure all aspects of the Rights Management. 
    So is there a permission that just allows the user the ability to configure just the "Watermark"?  Is this configuration even possible?
    Regards,
    TS

    Watermark is in the Configuration part of RM UI so as per current implementation there is no such role defined by which an user can configure the Watermark only.
    It is designed as such because only an administrator can change such configuration and create or modify Watermark.

  • Unable to authorize user using AccessControlService and user.roles and user.privileges are not set properly

    Hi,
    I am trying to enable/disable a feature based on user.roles.
    Added a constraint for that feature as below,
        <adfmf:constraints>
          <adfmf:constraint property="user.roles" operator="contains" value="manager" id="c1"/>
        </adfmf:constraints>
    In this case, Users have manager role should be able to access this feature.
    My AccessControlService response is
    {"userId" : "sales_mgr","roles" : [ "manager","MOO_OPPORTUNITY_SALES_MANAGER_DUTY","ZBS_ENT_SALES_MANAGER_DUTY"],"privileges" : [ "managerPriv","ZSF_DEFINE_SALES_FORECAST_PRIV","MOO_MANAGE_OPPORTUNITY_GROUP_SPACE_PRIV"]}
    Repsonse has "manager" as one such role.
    After adding constraint to the feature, am unable to access it.
    I tried many possibilities like  operator="contains" or "not" or "equal", but no use.
    I don't know what is going wrong. Appreciate you help.
    Thanks.

    If you are on 11.5.10 or greater or standalone 2.6.4 if you pass the responder value to wf_notification.respond API it should be updated in wf_notifications.responder column. The comments is now updated in wf_comments table against the notification id and not wf_notifications.user_comment column.
    Thanks, Vijay

  • SQL Server Configuration Manager

    Hello,
    I have a SQL 2008 SP3 install on Server 2012.  It is clustered active/active.  When opening SQL Server Configuration Manager > SQL Server Services, I receive the following message: The server threw an exception [0x80010105]
    I have tried restarting WMI and this didn't resolve the issue as many posts and blogs have suggested.
    I found this article: http://support.microsoft.com/kb/2849344 but it only applies to SQL Server 2008R2 not 2008 that we have installed.
    It states to grab a msclus.dll out of %windir%\syswow64 on a Windows 2008R2 box.  A 32bit msclus.dll file or a 64bit file does not exist on a 2008R2 box in this directory.  There is one in %windir%\system32 directory but the article clearly states
    it exists in the Syswow64 folder.
    Any help would be appreciated.
    Thanks,
    zWindows

    Hi zWindows,
    According to your description, the msclus.dll does exist in %windir%\system32 directory in your Windows Server 2008R2. I check this file in my cluster environment, it does exist in %windir%\winsxs directory. Personally, it belongs to system files, and maybe
    saved in different system path due to the system version and bit. The different path will not affect to copy this file to the related directory. Then, register this .dll file on each node of the cluster.
    About this exception [0x80010105], we need to verify if you change service account to a new domain user by SQL Server Configuration Manager in a clustered SQL Server instance. If yes, you need to ensure that Everyone is added to "Remote Launch" and "Remote
    Activation" DCOM permissions, and new domain user account have read rights in WMI.
    For more information about exception 0x80010105, you can review the following article.
    http://blogs.msdn.com/b/sql_server_reflections/archive/2012/08/28/unable-to-change-the-service-account-of-a-clustered-sql-server-instance-the-server-threw-exception-0x80010105.aspx
    Regards,
    Sofiya Li
    Sofiya Li
    TechNet Community Support

  • HOW TO CONFIGURE MANAGER or APPROVER USER IN ACCESS REQUEST MANAGEMENT TO APPROVE OR REJECT REQUEST

    hi sap gurus,
    i configured grc 10 system successfully. I created one user: GR_AR_APP001 and assign following roles:
    SAP_GRAC_ACCESS_APPROVER
    SAP_GRAC_ACCESS_REQUEST_ADMIN
    SAP_GRC_FN_BASE
    SAP_GRC_FN_NUSINESS_USER
    and I maintained GR_AR_APP001 in access control owners as "POINT OF CONTACT", "SECURITY LEAD" and "WORKFLOW ADMINISTRATOR"
    but when i am creating access request for new user and defining MANAGER under user details tab as GR_AR_APP001.
    the user GR_AR_APP001 is not receiving any request for APPROVE or REJECT in his WORK INBOX.
    can u please guide me how to configure APPROVER or MANAGER to approve or reject request.
    I will be very much thankful if you guide me successfully.

    Hi Colleen,
    thanks a lot for your time.
    PIC1: I created one user: GR_AR_APP001
    and assigned all the GRC ROLES.
    PIC2: I assigned owner type to GR_AR_APP001 user : POINT OF CONTACT, SECURITY LEAD and WORKFLOW ADMINISTRATOR in NWBC ACCESS CONTROL OWNERS
    PIC3: I created one EUP 980 (copied from default EUP)
    PIC4: I maintained default manager as GR_AR_APP001 user in 980 EUP
    PIC5: I selected SAP_GRAC_ACCESS_REQUEST process id
    PIC6: I created one agent id as ZGRAC_MANAGER11 in which I added approver user id: GR_AR_APP001
    PIC7: I saved agent id
    PIC8: I added agent id as ZGRAC_MANAGER11 in stage5 in manager stage.
    PIC9: I saved
    PIC10: I maintained EUP 980 (in which I configured manager as GR_AR_APP001 user) in stage 5 task settings
    PIC11: Maintain Route Mapping, I clicked on next
    PIC12 and PIC13: I saved and activated.
    After this process I created one request for new account and selected the manager as GR_AR_APP001 and one request is created with request no 9000000030.
    now I logged into system by user GR_AR_APP001 and checked, there is no request under his work inbox.
    please guide me at least one procedure, how to receive request in approver work inbox so that I can learn other procedures to configure approver as per our organization requirement.
    thanks for your support Colleen.

  • App designer go menu access to configuration manager

    Hello
    I was wondering how to control access to configuration manager link inside app designer's go menu.
    I see options like datamover and object definition security is handled via permission list, where as "configuration manager" and "replay app server cache" are not there.
    Interesting thing is when i take the "Peoplesoft Administrator" role off of user profile, the 2 items - config manager and app server cache links are gone from the go menu.
    Is there any other way you can control access to these links, other than "peoplesoft administrator role"
    thanks
    Subhash

    Hi,
    "PeopleSoft Administrator"is a reserved role and will not even able to open in the PIA.
    select distinct CLASSID
    from PSAUTHITEM
    where MENUNAME in ('REPLAYAPPCRASH','CONFIGMENU');
    Result:
    HCSPTOOLS
    Please attach the above menu to some permission list and Roles and try access the same,
    Thanks
    Soundappan

  • Solution Manager 4.0 Solution Monitoring User -Roles-Profiles for Satellite

    Hi All,
    I have installed Solution Manager 4.0 (OS -Linux ,Database - DB2) .
    Now i need to connect solution manager to the R/3 4.6C
    Satellite Systems (DEV, QAS ,PRD) for Solution Monitoring
    and Service level Reporting .
    I have read the configuration guide , but unable to get clear idea .
    1) what users (alos type of user -Dialog , Service, Communication etc) do i need create in DEV , and Test in QAS  for solution Monitoring  .
    2) what exact roles /profiles need to be assigned to these users in satellite systems .
    3) what users/roles /profiles needs to be done in SOLMAN system
    i have applied all the required plug ins and support packs
    in satellite systems and solman 40 ..
    Please advice  . Your response will be a great help for me .
    Satish

    Hello Satish,
    Just clarify, if u have meant connecting the satellite systems for EWA reports to be precise. Early watch Reports. If its is the case, then repond so that i can putin my inputs which may be helpful for you in this config.
    Rgds,
    Sri

  • Kerberos Configuration Manager for SQL Server: Access of system information failed!

    I'm trying to use the new Kerberos Configuration Manager for SQL Server tool that was released recently to verify SPN on several SQL Servers, but any time I attempt to connect to a server I get the following error in the log:
    6/24/2013 3:48:22 PM Info: Connect to WMI, \\<HOSTNAME>\root\cimv2
    6/24/2013 3:48:25 PM Error: Access of system information failed System.DirectoryServices.AccountManagement.PrincipalOperationException: An error (1332) occurred while enumerating the group membership.  The member's SID could not be resolved.
       at System.DirectoryServices.AccountManagement.SAMMembersSet.IsLocalMember(Byte[] sid)
       at System.DirectoryServices.AccountManagement.SAMMembersSet.MoveNextLocal()
       at System.DirectoryServices.AccountManagement.SAMMembersSet.MoveNext()
       at System.DirectoryServices.AccountManagement.FindResultEnumerator`1.MoveNext()
       at System.Linq.Enumerable.Contains[TSource](IEnumerable`1 source, TSource value, IEqualityComparer`1 comparer)
       at KerberosCM.WMIHelper.isUserLocalAdmin(SystemInfo si, UserPrincipal user)
       at KerberosCM.WMIHelper.getUserInfo(SystemInfo mi)
    6/24/2013 3:48:25 PM Error: Error System.Exception: Access of system information failed!
       at KerberosCM.WMIHelper.getUserInfo(SystemInfo mi)
       at KerberosCM.SystemInfo.GetInfo()
       at KerberosConfigMgr.Utility.Login(String serverName, String login, String password, Boolean isCmdLine, Form uiForm)
    Things I have tried to resolve this:
    1. Verified that my account is a Domain Admin.
    2. Attempt to connect locally without inputting any information for server/user/pw
    3. Attempt to connect remotely using server/user/pw
    I always receive the same error message and log: Access of system information failed!
    Has anyone else run into this issue?

    Update to this:
    There were some invalid user accounts added to the Local Administrators group only showing up as a GUID. This caused the enumeration of the group to fail and generate the error in my original post. Removing those user accounts from the Administrators group
    got past the enumeration error.
    However, now when attempting to connect to the servers (locally or remotely) I get this error:
    6/27/2013 10:24:24 AM Info: Connect to WMI, \root\cimv2
    6/27/2013 10:24:38 AM Error: Access of system information failed System.Runtime.InteropServices.COMException (0x80070035): The network path was not found.
       at System.DirectoryServices.DirectoryEntry.Bind(Boolean throwIfFail)
       at System.DirectoryServices.DirectoryEntry.Bind()
       at System.DirectoryServices.DirectoryEntry.get_AdsObject()
       at System.DirectoryServices.PropertyValueCollection.PopulateList()
       at System.DirectoryServices.PropertyValueCollection..ctor(DirectoryEntry entry, String propertyName)
       at System.DirectoryServices.PropertyCollection.get_Item(String propertyName)
       at System.DirectoryServices.AccountManagement.SAMStoreCtx.ResolveCrossStoreRefToPrincipal(Object o)
       at System.DirectoryServices.AccountManagement.SAMMembersSet.MoveNextForeign()
       at System.DirectoryServices.AccountManagement.SAMMembersSet.MoveNext()
       at System.DirectoryServices.AccountManagement.FindResultEnumerator`1.MoveNext()
       at System.Linq.Enumerable.Contains[TSource](IEnumerable`1 source, TSource value, IEqualityComparer`1 comparer)
       at KerberosCM.WMIHelper.isUserLocalAdmin(SystemInfo si, UserPrincipal user)
       at KerberosCM.WMIHelper.getUserInfo(SystemInfo mi)
    6/27/2013 10:24:38 AM Error: Error System.Exception: Access of system information failed!
       at KerberosCM.WMIHelper.getUserInfo(SystemInfo mi)
       at KerberosCM.SystemInfo.GetInfo()
       at KerberosConfigMgr.Utility.Login(String serverName, String login, String password, Boolean isCmdLine, Form uiForm)

  • User Specific catalog UI configuration - Custom catalog user role

    Hi all,
    We need different user specific layout settings for each user. i have duplicated catalog user role for each user and maintained specific named search for that particular user in constraint. but when we want to configure specific layout for individual user. its not showing that catalog user in the catalog config UI for the layout configuration. please advice. if it shows that specific user then we would configure each specific user layout with individual look and feel ( like shopping lists, search fields, images, etc., ). thanks for your inputs.
    Your help would be highly appreciated!!!!!!!!!!!!!

    Hi Smartsoft General user,
    I guess you are on SRM-MDM Catalog 3.0
    We have the same business scenario as yours. Its working perfectly for us.
    1. Donot copy Catalog User role. SRM-MDM UI Config only accepts users assigned under std Catalog User role. You dont need mutiple copies of Catalog user role, anyways it wont work.
    2. Create multiple webservices for each Named search. Provide one User (like User1, User2...or your own created ones) and one Named Search as following parameters in each webservice.
              http://<your server:port>/SRM-MDM/SRM_MDM
    username     User<n>
    password     <password>
    server     <your server>
    repositoryType     M ( for Master ) S (for Slave)  - Make sure you are pointing to right repo if you have master/slave
    catalog     <provide Repository name- make sure you are giving right repository name, I provided it wrong first time>
    port     <your port>
    uilanguage     SY-LANGU
    datalanguage     SY-LANGU
    mask     < keep blank if you want dynamic search>                                                                               
    namedsearch     <Provide exact Named search name as you provided in Data Manager>
    HOOK_URL                                                                               
    returntarget     _parent
    If you are creating 5 different Named searches, create 5 different webservice definitions as above.
    3. Now for each Catalog user, you can perform separate search UI layout as you wish.
    Let me know if this helps or have any questions. If this worked for me, we will make it work for you.
    ~Pravin

  • BPM user role access

    Hi Experts,
    Who all can access the BPM process? Is it possible to set the userrole access to the BPM process?
    Scenario :
    Through webservice, I have to call BPM process..But the BPM process should be accessed by particular user.
    For example, Manager related BPM process should not be accessable to the Developers.
    How to set/give the BPM user role access?
    Regards
    Sara

    It is not possible, if sender application has an athorization to send the message to XI the process will be instantiated using Receive step.
    Thanks
    Farooq.

Maybe you are looking for

  • Software does not find the Database server

    Hi all, We are going to move database from old server MSSQL 2005 Express to the MSSQL 2008 R2 STD. For test I backuped DB from old server then restored at the new one. For some reason the software does not find the new server. I checked everything as

  • 2 Step Stock Transfer Using WM Transport Order??

    Dear SAP expertes, I have a problem, I think a lot of you too; that is stock transfer in 2 steps from one storage location to another (mov. types 313-315), but using o referencing a reservation. SAP says that is not possible create reservations for 2

  • Ctrl/Alt click to activate link closes current document

    We just upgraded from Framemaker 7.2 to 12, and there's a behavior I can't figure out. I have a book file with cross-references between FM documents. Before, in FM 7.2, when I used Ctrl/Alt+click to activate a cross-reference link and follow the mark

  • List web part column alignment: how to change?

    I have a wide list web part but all the three columns are aligned to left. So there is a huge white area on the right. Was it like this also in 2010? Can I change it so that the columns would be spread also to right?

  • Flexing tool to piano parts in Logic Express 9

    Can you help me solve the problem with flexing acoustic piano parts using the flex tool. I've tried all the functions, slicing, mono, poly, etc.  and still get clicks and blurbs when I move them. Am I going about this the wrong way. I just want to mo