one tcode,say sa38, is assigned to 10 diffrent users
through a same role.I want to restrict one of those 10
users to execute only a few reports in sa38 but not all
reports.what are the possible ways of getting it done?
Answer Posted / rax
Hi all,
Generally all roles (containing t-codes) are planned and
created depending on an individuals position (ex- sales mgr)
during implementation. So, the above situation never arises.
According to me this question is just to know the
interviewee's knowledge....
For this particular scenario the answer would be ....
The end user to access reports or programs he needs to have
access to authorization object S_PROGRAM. So,we first
manually add this authorization object to his existing role.
This object has an authorization field called AUTHORIZATION
GROUP in which we can maintain all programs or reports he
has to be given access to....
| Is This Answer Correct ? | 3 Yes | 4 No |
Post New Answer View All Answers
You want to remove a developer's and developer keys from a system. How would you do that?
what is hypercare and go live support?
what are the issues you faced with UME?
You wan to transport user groups from transaction sugr? Would this impact the groups tab in su01? What would you do?
What are the uses of an authorization group?
Explain x-glueb and its use in sap security.
Differentiate between saml token profile and a sap logon ticket
What are the upgrades happened in GRC 5.3 from GRC 5.2?
how we can see FFID if firefighter not able to see FFids ?
Authorization check on s_btch_job failed. What would happen now?
How can sap security be improved?
how we Completely designed and implemented methodology for controlling end user access to plants, cost centers, etc. and how we Applied to both R/3 and BW environments.
what things you have to take care before executing run system trace?
How to insert missing authorization?
What does user compare do?