one tcode,say sa38, is assigned to 10 diffrent users
through a same role.I want to restrict one of those 10
users to execute only a few reports in sa38 but not all
reports.what are the possible ways of getting it done?
Answer Posted / rax
Hi all,
Generally all roles (containing t-codes) are planned and
created depending on an individuals position (ex- sales mgr)
during implementation. So, the above situation never arises.
According to me this question is just to know the
interviewee's knowledge....
For this particular scenario the answer would be ....
The end user to access reports or programs he needs to have
access to authorization object S_PROGRAM. So,we first
manually add this authorization object to his existing role.
This object has an authorization field called AUTHORIZATION
GROUP in which we can maintain all programs or reports he
has to be given access to....
| Is This Answer Correct ? | 3 Yes | 4 No |
Post New Answer View All Answers
What is the procedure for role modifications?
How we schedule and administering background jobs?
Is there a table for authorizations where I can quickly see the values entered in a group of fields?
Giving fire call access and extending fire call access by using VIRSA’s VFAT tool? can u brief give the explanation
How do I change the name of master / parent role keeping the name of derived/child role same? I would like to keep the name of derived /child role same and also the profile associated with the child roles.
What does user compare do?
How to insert missing authorization?
Differentiate between usobx_c and usobt_c
What authorization are required to create and maintain user master records?
What does the account assessment category specify in a purchasing order in SAP Materials Management?
what is the process to find that one consultant had removed a table from sap tables
In Agr_1251 we are able to see 100 roles but in SUIM we are able to see 120 roles what's the reason behind this ? why is the difference between the SUIM and the AGR table ?
what are the pre-requisites that should be taken before assigning sap_all to a user even there is an approval from authorization controllers?
the company needs to expand its region to another country which the same authorizations had previously what approach you will take
What does the profile generator do?