Difference between Change Mode and Expert Mode in PFCG?
Answer / itsgaurav151
Change mode : If a new t-code is added to a role it will pull the auth obj corresponding to that t-code but not any of those which was deleted by us earlier, provided that obj is not related to newly added t-code. Or we can say that change mode will compare the auth in the role for newly added t-code with su24 and and will add all the necessary objects.
Expert mode : it have three options .
1. Delete all auh and create new profile- it will delete all auth data except org level and we have to create new authorizations in role corresponding to all t-codes in role.
2.Edit old status - it will give u chance to edit last saved authorizations only, no matter if u added any t-code to role. it will not pull the auth obj for new t-code from su24.
3. Edit old status and merge with he new - this will compare the auth of all t-codes in role with the records in su24 and will pull the objects corresponding to newly added t-code as well the missing object for any other t-code present in role and was deleted earlier.The newly pulled auth objects are marked as new and old ones are marked old.The auth objects in which auth values are added/changed gets the staus updated.
Is This Answer Correct ? | 56 Yes | 4 No |
What is the benefits of ticketing tool?
what does user compare do in sap security?
Hi, I want to import my Transport request from DEV. to Test system (from STMS buffer of DEV.(domain only) but I don’t want Login/PWD screen while importing from DEV to Test System. But I need login/pwd screen while importing TR from Test to PRD system. Presently I have activated all systems as a non trusted systems. If any one has idea please let me know. Thanks in advance! Regards, Raj Chavan.
what is central user administration?
How to find the already locked users list before a particular date. Example: list of users already locked before 25.03.2010
two company codes ex 1001,1002 and two users ,one user need to access both company codes and another user need to access only one company code need to access by giving same role (one role ) to both of them.how can give access or restrict company codes in one role?
What are pfud t-codes used for?
What are su01d t-codes used for?
In which table you can see authorization group for table and which table to see authorization group for program?
what is use of derived roles and where it is used?
what is role matrix
why we should not check " Generate automatically " option in SUPC?