Viewing restriction to specific group of items

Hi Experts,
Is it possible to restrict a group of items for a specific user. To give you a better picture of the scenario, here are the other details:
1. There are 3 item groups set-up: Raw materials, Finished goods, and Work-in process
2. The user stationed at the warehouse should not be allowed to view the Work-in process group.
How to go about with this?
Thanks,
Yvette

Hi Yvtte........
through SDk its absolutely possible...............
Regards,
Rahul

Similar Messages

  • Restricting end user to one specific group with anyconnect

    Hello all
    I just started configuring AnyConnect with ASA 5520 that uses Cisco SecureACS to pass radius authentication.  I configured two profiles with different split tunnel restrictions and what I discovered is that when the client connects to the ASA, they are provided a choice of these two groups (I guess there is no way to restrict this) and I can log into either one with any user account.  How do I restrict this so that the user can only use one profile?  Currently users capable of VPN would be placed in one specifc AD group so that is what SecureACS checks.  Is there a sample configuration guide to handle multiple profiles with different levels of access?

    Alternatively, you can use Radius authorization to place user into a specific group-policy:
    - Configure the Group-Policy attribute under Radius to be OU=
    http://www.cisco.com/en/US/docs/security/asa/asa91/configuration/vpn/vpn_extserver.html#wp1605475
    On  the ASA, just configure 1 tunnel-group, and depending on the  authentication, the user will be placed into the correct group-policy  specified under the ACS server.

  • Replacing Home Space with a specific Group Space.

    Hi,
    We have a Webcenter Spaces 11.8 environment.
    We are trying to completely bypass the home space and take the user to a specific space.
    While this is possible to do it through the initial redirection based on application/enterprise role, some re-directions are causing the user to land in the home space.
    Also, the user can get to the home space pages by typing in the url. We want to restrict the user from viewing the home space altogether and replace it completely with our group space.
    Approach1 : Page Links -
    We tried to bring in pages from the group space into the home space navigation model as page links. Even if the group space is public, we cannot link to its pages as we cannot see the pages in the page link popup. Only home space pages are shown. Is this expected? How do we bring in pages from a specific group space into the home page navigation?
    Approach 2: Group Space Pages Query -
    We can bring all the pages from the "Default Navigation Model" of the group space into the home space navigation model. However, the landing page upon login needs to be a visible page in the home space. How do we get the user redirected to a specific page in a group space and make that node as selected once the user logs in.
    Thanks in advance.

    Hi,
    Check this code.
    data : role(10) type c value 'crick ter',
           role1(10) type c,
           role2(10) type c.
    write: / role.
    SPLIT role AT space INTO role1 role2.
    concatenate role1 role2 into role separated by '_'.
    write: / role.
    <REMOVED BY MODERATOR>
    Regards.
    Edited by: Alvaro Tejada Galindo on Mar 10, 2008 7:25 PM

  • Collaboration - Creating rooms and displaying to a specific group

    Hi,
    I am new to enterprise portals. Can anybody guide me in this context?
    I want to create some collaboration rooms which would be specific to groups. Eg. The Students should be able to see rooms specific to their subject. The professionals should be able to view the collaboration specific to subjects that they have selected in their profile. Administrator should be the only user who can create rooms and manage it.
    I see about the roles in the book but i am a bit confused.
    How do i do that?

    Ramachandran Reddy,
    Just goign through the forums found the question unanswered. i have done the process what you have asked for.
    1)      If you want to create Collaboration Rooms and assigning member's to the room created you should have a role assigned to you i.e. eu_role.
    2)      To assign those roles go to User Management and assign to your User or can ask the System Administrator to do it.
    3)      After assigning the role you will see New WorkSet assigned to you in the Portal i.e. Home.
    4)      In the top Navigational area go to Content Administration. Click it
    5)      Go to Collaboration Content. Click it.
    6)      On the left side Detailed Navigational area you will find Room Creation link. Click it.
    7)      That will open a New view on right side panel where you provide the details to create a Collaboration Room like
                 a) Name : Collaboration Room Name
                 b) Description : Give some description about the room you are creating
                 c) Owner: Generally as you are logged in, so the Owner will be you, but if you want to change the user you can also do it.
                d) Categories: Select any one of the categories.
                e) Template: There are Meeting templates, Project Template & Team template, depending upon the requirement you select the required template.
                    You can also create your own template
    Process to Create Room Template: On left side navigational area you will find a link "Room Template Administration". Click it.
                  I. You will see a New Template tab, click it
                  II.      A view is displayed where you need to give the details for the creation of Room template. In the Workset option box choose the option where you want to create the template. Click next.
                 III.      Add the role and give the required page permissions. Click next.
                 IV.      Incase you want to extent the then you can also extent the template. Here you can select the user's who can use the template you have created.
                 f) Choose the Room Type, it can be a Public, Private and Restricted and also in the add the members.
                 g)      When you click the Select button a new window is opened, just enter the user's name and add them to the room created. Click next.
    8)      A New Collaboration room is created and members are added to them.
    9)      Now if you want to send some messages or documents to the member's then go to the Top level Navigational and there you will find Home tab. Click it
    10)  Goto the Work in the navigation panel select the room you have created.
    11)  Choose the member from the memberlist , now depending upon the requirement send email or instant message to the user.
    if you feel the process is useful please reward points.
    regards
    Anil Dichpally

  • How to create a view to show files Group By Title and Version

    Hi,
    I am trying to create a view in a document library as follows.
    1. Group by File Title.
    2. Group by Version.
    like following image
    - In this image i want to replace "Version:" with file name.
    - In next line, DocV1 has 3 versions. Then it should be displayed in a stacked version with latest version at top and next 2 versions below it.
    Please tell me how could i do that?

    check this link
    http://stefan-stanev-sharepoint-blog.blogspot.in/2009/08/how-to-display-all-versions-in.html
    Latest approved version
    http://stackoverflow.com/questions/1366242/find-latest-approved-version-of-an-splistitem
    http://office.microsoft.com/en-in/sharepoint-server-help/view-the-version-history-of-an-item-or-file-in-a-list-or-library-HA101853104.aspx
    SPListItem listItem =
    // wherever you are getting this from
    SPListItemVersionCollection listItemVersions = listItem.Versions;
    if (listItemVersions !=
    null && listItemVersions.Count
    > 0)
        foreach (SPListItemVersion item
    in listItemVersions)
            foreach
    (SPField field in item.Fields)
                // Do Something to get latest

  • All "Site Content and Structure" default views incorrectly showing "There are no items to show in this view"

    Hi All,
    On my SharePoint Online site (Office 365) all my “Site Content and Structure” default views are showing “There are no items to show in this view”. For example the “Checked out To Me” view shows “There are no items to show in this view” (shown in screenshot
    below). I know this is incorrect and should show at least ten items that have been checked out to me for over two months. I am also a member of the Site Collection Administration and Owner groups.
    What I am trying to do is view all the "Checked Out items" within a Site Collection including it's sub-sites.
    Is there a feature that needs to be activated to get the correct information from the “Site Content and Structure” default views?
    I hope you can help
    Colin

    Hi Colin,
    As I understand, all “Site Content and Structure” default views are showing “There are no items to show in this view” in your SharePoint online site.
    Check things below:
    1. Go to site content and structure logs in site setting to check if there is correct information.
    2. Create a new site collection to check if there are items in Site Content and Structure.
    3. Switch another computer to check if it can work.
    If the issue still exists, I recommend you to post it in the O365 forum.
    http://community.office365.com/en-us/f/default.aspx
    The reason why we recommend posting appropriately is you will get the most qualified pool of respondents, and other partners who the forums regularly can either share their knowledge or learn from your interaction with us. Thank you for your understanding.
    Best regards,
    Sara Fan
    TechNet Community Support
    Please remember to mark the replies as answers if they help, and unmark the answers if they provide no help. If you have feedback for TechNet Support, contact
    [email protected]

  • XK03 can be restricted by account group in order to prevent general users

    Hello Gurus,
    Please advise, if XK03 can be restricted by account group in order to prevent general user population from displaying employee data ?
    I understand that XK03 has auth object  F_LFA1_GRP for account group in which I restricted with 03 and particular account groups but still the test is failing because the test user is able to view employee data.
    Please suggest..
    Regard's
    Salman

    Hi Alex,
    Thank you !
    By your last update, do you mean auth group or account group? If you are talking about auth group then this auth object F_LFA1_BEK (XK03) has auth group.
    I checked the F_LFA1_GRP  is active in SU24. Is there something which i need to look in F_LFA1_BEK for particular auth group after restricting the auth object F_LFA1_GRP with account group ?
    Thank you for your valuable suggestions
    Regard's
    Salman

  • Deleting all inherit sub-folders permission and reassigning to specific group

    Hi,
    i am trying to assign sub-folders level permission in sharepoint document library. Want to delete all previous inherit permission first and then assign  sub-folders permission to specific group. i am having problem with following code, cannot make a
    call to the function. Could you tell me what should i modify the code to work properly.
    Thanks in advanced
    using System;
    using System.Collections.Generic;
    using System.Linq;
    using System.Text;
    using Microsoft.SharePoint;
    namespace ManageFolderLevelPermission
        class FolderLeverPermission
            static void Main(string[] args)
                //Connect to Sharepoint Site
                SPSite oSPSite = new SPSite("http://nyc01d1sp:8080/");
                //Open Sharepoint Site
                SPWeb web = oSPSite.OpenWeb("/hr/DI/");
                //Get the Sharepoint list item for giving permission
                foreach(SPFolder folder in web.GetFolder("http://nyc01d1sp:8080/hr/DI/docs/").SubFolders);
                setPermissions();
            private static void setPermissions(SPFolder folder,SPSite oSPSite, SPWeb web)
                SPGroupCollection spc = web.SiteGroups;
                //Break the role inheritance in order to assign individual rights on folders
                if (!folder.Item.HasUniqueRoleAssignments)
                    folder.Item.BreakRoleInheritance(true);
                while (folder.Item.RoleAssignments.Count > 0)
                    try
                        folder.Item.RoleAssignments.Remove(0);
                    catch (Exception)
                        break;
                //Role Assignment For the Current User
                SPUser CurrentUser = SPContext.Current.Web.CurrentUser;
                SPGroup group = spc["GroupName"];
                SPRoleAssignment roleAssignment = new SPRoleAssignment((SPPrincipal)CurrentUser);
                roleAssignment.RoleDefinitionBindings.Add(web.RoleDefinitions.GetByType(SPRoleType.Administrator));
                folder.Item.RoleAssignments.Add(roleAssignment);
                //Role Assignment for the Group "Contentteam - Management"
                roleAssignment = new SPRoleAssignment((SPPrincipal)group);
                roleAssignment.RoleDefinitionBindings.Add(web.RoleDefinitions.GetByType(SPRoleType.Administrator));
                folder.Item.RoleAssignments.Add(roleAssignment);            
                oSPSite.AllowUnsafeUpdates = true;
                folder.Item.Update();

    Hi Hemendra,
    Thanks for your reply. Actually i am trying to do two things here. First i am creating sub-folders using following code. And then trying to assign individual group permission on these sub-folders using following Powershell script. Now problem is when i am
    creating sub-folders, its also inheriting all the parent permission. Lets say i have customer folder name "Pepsi" and it has 4 sub-folders (like Account Management, Legal Drafts, Executed.. etc) . Now i want to assign individual group permission to each Sub-folder
    but root folder (Pepsi) should remain all the parent permissions. i did try to remove the permission first and then assigned permission to sub-folders. i was able to assign individual group permission to sub-folders but problem is, its also assigning Limited
    Access to the root folder. so basically i cannot see the folder as the root folder has limited access. Please let me know how can achieve that.
    using System;
    using System.Collections.Generic;
    using Microsoft.SharePoint;
    namespace Add_SubFolders
        class CreateFolders
            static void Main(string[] args)
                var foldersList=new List<string>();
                SPSecurity.RunWithElevatedPrivileges(delegate()
                    try
                        using (SPSite site = new SPSite("http://nyc01d1sp:8080/"))
                            using (SPWeb web = site.OpenWeb("/lel/DB/"))
                                web.AllowUnsafeUpdates = true;
                                    foreach (SPFolder folder in web.GetFolder("http://nyc01d1sp:8080/lel/DB/docs").SubFolders)
                                        if (folder.Url.ToString() != "/docs/Forms" && folder.Url.ToString() != "/docs/")
                                            foldersList.Add(folder.Url);
                                            SPFolder subFolder = web.GetFolder(folder.Url);
                                            Console.WriteLine("SubFolder is creating.....");
                                            subFolder.SubFolders.Add("Account Management");
                                            subFolder.SubFolders.Add("Legal Drafts");
                                            subFolder.SubFolders.Add("Executed");
                                            subFolder.SubFolders.Add("Sales");
                                        folder.Update();
                                        Console.WriteLine("SubFolder has been created");
                                    web.AllowUnsafeUpdates = false;
                    catch (Exception ex)
                        ex.Message.ToString();
      Power Shell Script to assign individual group to specific folders:
    Add-PSSnapin Microsoft.SharePoint.PowerShell -erroraction SilentlyContinue
      #$site = new-object Microsoft.SharePoint.SPSite("http://nyc01d1sp:8080/lel/DB/")
      #$site = Get-SPSite ("http://nyc01d1sp:8080/")
      $web= Get-SPWeb("http://nyc01d1sp:8080/")
      #$web = $site.OpenWeb()
      function GrantGroupPermission($groupName)
       [Microsoft.SharePoint.SPGroupCollection]$spgroups = $web.SiteGroups
       [Microsoft.SharePoint.SPGroup]$spgroup = $spgroups[$groupName]
       Write-Host $spgroup.Name -ForegroundColor Red
       $sproleass=new-object Microsoft.SharePoint.SPRoleAssignment([Microsoft.SharePoint.SPPrincipal]$spgroup)
       $folder.BreakRoleInheritance("true")
       $sproleass.RoleDefinitionBindings.Add($web.RoleDefinitions["Contribute"])
       $folder.RoleAssignments.Add($sproleass);
       Write-Host "Permission provided for group ", $groupName
      $doclib=[Microsoft.SharePoint.SPDocumentLibrary]$web.Lists["Shared Documents"]
      $foldercoll=$doclib.Folders;
      foreach($folder in $foldercoll)
       Write-Host $folder.Name
       if($folder.Name.Equals("Account Management"))
        GrantGroupPermission("Test Group")
       if($folder.Name.Equals("Executed"))
        GrantGroupPermission("Legal Group")
       if($folder.Name.Equals("Legal Drafts"))
        GrantGroupPermission("Legal Group")
       if($folder.Name.Equals("Sales"))
        GrantGroupPermission("Sales Group")
      Write-Host "Completed...."
      $web.Close()
      $web.Dispose()
      #$site.Dispose()

  • Restriction in Material Document Line item

    Dear SAP Gurus,
    I am new to SAP. Please let me know is there any way by which i able to restrict no of line item in Purchase order (for specific Purchase order type) document? Your help will be appreciated.

    Hi Soumen,
    You can only control the screen elements till "HDRO" (Hide, Display, Required, Optional) from Standard configurations, where as you cannot control /restrict the number of line items. You have to use a user exit for this. Check this Exit. "MM06E004  Control import data screens in purchase order".
    From a Standard Practice, it is always better to educate the user not create too many line items in a purchase order. A Manual and process oriented control is always better in this case than direct control from the system.
    Moreover, if you can also define the exact problem you are facing, SAP guru's can give you a better solution.
    Thanks & regards
    Hameed Parvez

  • *General item Category Group*      vs    *Item Category Group*

    Hi,
    What's the difference for the General item Category Group and Item Category Group in the material master?
    Thanks.

    Hi,
    General item category grp is used in the sales processes like BOM, where we have higher item category and the default item
    categories.  
    General item category grp would refer to the higher level item category and item category grp would refer to the default item category
    General Item category Group is an extension item category group. Example: if one select item catagory group as NORM, but under item category group, NORM can further be classified as Service item, packagaing item or Normal
    item using "general item category group". 
    Also, General item category group is maintained at client level, this field can be maintain from Basic Data View of Material Master. Thus in case item category group is missing, then general item category group is used for item category determination.
    Item category group determines how a material is processed in the sales order. When processing sales and distribution
    documents, the system uses the item category group to determine the item category and proposes it in the respective document. Item category group is defined in the Sales Org View 2 of Material Master Record.  
    Example, in the standard SAP System, the item category group NORM is defined for materials kept in stock and the group DIEN for services and non-stock material
    Best Regards,
    Amit.
    rewards, if helpful.

  • Alter express code to include views and unions for top dim items

    If a user selects a dimension item at the top most level, the explain plan shows that it does a full table scan of the fact table instead of using the materialized views. If we add the highlighted information(see below) to the osa generated sql, then the explain plan does what we want it to do.
    Do you know if it is possible to alter the express code to include the views and unions for the dimension items that are at the top most level in the hierarchy? I think that I need to alter how the sq.query.drv program figures out what to include in the sql. But this is beyond my express comfort level.
    The query below is generated by the osa cube and we want to include the highlighted information in the sql that is generated which will force it to use the correct query rewrite and return data in a reasonable time frame.
    Is this possible and has anyone tried this before?
    SELECT 'B4' || lt2.acct_lvl_4_id
    , 'C2' || lt6.cust_grpng_id
    , 'G1000'
    , 'L1000'
    , 'O190012880'
    , 'P1000000000'
    , 'R100001'
    , 'T3' || lt25.mth_id
    , 'E190'
    , SUM (ft34.usd_curr_pl_amt)
    FROM osa_fivcas_mth_ifct_gbl_992 ft34
    , osa_fivcas_acct_992 lt2
    , osa_fivcas_cal_mastr lt25
    , osa_fivcas_cust_898_000 lt6
    -- Extra Tables
    , osa_fivcas_geo_942 lt20
    , osa_fivcas_org_817 lt22
    , osa_fivcas_prod_710 lt23
    WHERE lt2.acct_lvl_9_skid = ft34.acct_lvl_9_skid
    AND lt6.cust_lvl_10_skid = ft34.cust_lvl_10_skid
    AND lt25.mth_skid = ft34.mth_skid
    -- Extra Join Conditions
    AND lt20.geo_lvl_8_skid = ft34.geo_lvl_8_skid
    AND lt22.org_lvl_12_skid = ft34.org_lvl_12_skid
    AND lt23.fpc_skid = ft34.fpc_skid
    AND lt2.acct_lvl_4_id IN ('81013286')
    AND lt6.cust_grpng_id IS NOT NULL
    AND lt25.mth_id IN ('AUG08')
    GROUP BY 'B4' || lt2.acct_lvl_4_id
    , 'C2' || lt6.cust_grpng_id
    , 'G1000'
    , 'L1000'
    , 'O190012880'
    , 'P1000000000'
    , 'R100001'
    , 'T3' || lt25.mth_id
    , 'E190';

    David,
    When u add a field to a header table. U can use the User data source to bind it. Even if u add the DBDatasource the Coulmn needs to be present in the DB at the time of setting the data source to the Field in the UI.
    Actually if u add a header filed to the DB it pops up on the User-Fields Form i guess u can use it as no extra code is needed. To view the UDF form VIEW--User Defined Fields.
    Hope it helps,
    Vasu Natari.

  • Difference bet'n item cat group & gen item cat group .

    can anyone know about difference bet'n item cat group & gen item cat group in material sales view?

    Dear,
    Considerting the remaining answers above, Please have a look:
    General item category grp is used in the sales processes like BOM, where we have higher item category and the default item
    categories.  
    General item category grp would refer to the higher level item category and item category grp would refer to the default item category
    General Item category Group is an extension item category group. Example: if one select item catagory group as NORM, but under item category group, NORM can further be classified as Service item, packagaing item or Normal
    item using "general item category group". 
    Also, General item category group is maintained at client level, this field can be maintain from Basic Data View of Material Master. Thus in case item category group is missing, then general item category group is used for item category determination.
    Item category group determines how a material is processed in the sales order. When processing sales and distribution
    documents, the system uses the item category group to determine the item category and proposes it in the respective document. Item category group is defined in the Sales Org View 2 of Material Master Record.  
    Example, in the standard SAP System, the item category group NORM is defined for materials kept in stock and the group DIEN for services and non-stock material
    In Simple:
    Item Category determines the processing of any Item/material that we enter in a sales order and in this way it also effects the procesing of any sales doc in which it is used.
    Item Category Group is one of the component which along with the Sales Doc Type, The Item Usage and Higher Level Item Category decide about the Item Category in a sales doc.
    As per definition General Item Category Group & Item Category Group both are to detrmine Item Category in Sales Document.
    the Item Category Group is used to determine Item Category.
    General item category is a broader term and used other than SD processes
    Regards,
    Syed Hussain.

  • REGARDING RESTRICT THE DELETION OF LINE ITEM FROM CONFIRMATION SCREEN

    Dear All,
    Plz let me know how can we restrict to delete the line item(components) from the goods movement screen of confirmation of order(Cor6n) screen.
    Thanks & Regards,
    Arvind S

    Hi Aravind
    i just want to restrict the deletion only for particular user id's.
    I know we can do through authorization by creating authorization object.. am i right??
    I am not sure bout any authorization object can help you. However you can have the transaction variant for COR6N with quantity field as output also note this can be user specific.
    So you have no need to have custom transaction or development.
    Regards,
    R.Brahmankar

  • Restriction of sales group for users

    Hello,
    I need to restrict the sales group to different user using VA05,I tried so many ways but i am able
    to see the others data.
    We already created one authorization object and assigned in role.But we are not able to restrict
    the users.
    In our scenario the user named like dealers. one dealer can see the other dealers data.
    Please guide how to restrict the users at sales group.
    Thanks,
    Sivaprasad

    Hello,
    What I understand from your post is that you want to restrict the users to view the list of sales order - report using VA05 just for their sales group and not for others, as in your case your dealers are your end users and you want each dealer to be able to view for only his sales orders and not that have been issued to other dealers. Is that correct?
    You have created a custom object using field VKGRP on the basis of which you want to restrict the report. The object has to be defined in the standard program for VA05 for authority check and then included in the role. In this case you may have to create one role for each user or group of users for each sales group.

  • Why do I not receive iCloud e-mails when there is a specific group of "To:" addresses in the body of an e-mail

    I noticed this when I started my iCloud e-mail account a few months ago. I am not receiving iCloud e-mails when there is a specific group of "To:" addresses in the body of an e-mail. I can receive the e-mail on my outlook & local cable providor e-mail accounts with all of the addresses listed. If I strip out the "To:" addresses and send it from my local cable providor e-mail account to my iCloud e-mail account than I will receive the e-mail in my iCloud account (minus all of the "To:" addresses that are in the body of the e-mail. This has caused me to miss a lot of e-mails.
    Following is one of the e-mail that I can send from my cable providor account and not receive it in iCloud. If I strip out all of the "To:" addresses I will receive it in iCloud. I have a case open with Apple but it is not going anywhere. This occurs from multiple sending internet service providors (ISP's) so I think it's an Apple iCloud e-mail processing issue.

    I've been having a very similar problem to what ziemsen describes, for about a week now. The Mail app has stopped delivering new messages to the Inbox, even though I can view the newly incoming messages on the server via Webmail. I am able to send email through Mail with this email account, and as for the other email accounts that I have on Mail (which are also hosted by the same server), I am able to both receive and send email with no problem.
    None of the mail settings have been changed, so how this happened all of a sudden is very puzzling. I have checked Account Info on the problem account - Mail recognizes that there are messages that are on the server yet to be downloaded, but it won't download them.
    I've checked what other users have suggested here in the Discussions Forum, and tried: 1) deleting the problem Mail account from Mail and re-adding it; 2) creating a new machine User account and setting up Mail with that User; 3) setting up Mail on another machine; 4) archiving and re-installing OS, and even 5) wiping the HD entirely and reinstalling the OS. None of these have worked.
    Ernie, your suggestion of deleting the MessageUidsAlreadyDownloaded file sounded like the solution to the problem, so I just tried it - but to no avail. Mail delivers messages that are on the server to my Inbox up until the same point that it always stops at, and there are almost 1000 new messages since then.
    I am pretty lost at this point - I have no idea what else I can possibly do to resolve this problem. The strange thing is, when I tested my email accounts on Microsoft Entourage and Mozilla Thunderbird, they don't have this problem - both deliver all of my incoming mail. I may have no choice but to switch to one or the other at this point, but I'm attached to Mail and would really like to continue using it if I can. Any advice would be much much appreciated.
    very best,
    biteringo

Maybe you are looking for