SAP Authorizations Check the SAP authorization concept - SAP Stuff

Direkt zum Seiteninhalt
Check the SAP authorization concept
Object S_BTCH_ADM (batch administration authorization)
In everyday role maintenance, you often have to change the permission data of a single role again after you have already recorded the role in a transport order along with the generated permission profiles. In this case, you have previously had to create a new transport order because the table keys of the generated profiles and permissions are also recorded for each individual role record, but are not adjusted for subsequent changes in the role data.

Login with user and password of another application (such as an AD or portal) In this case, the Web application must be able to obtain a unique SAP user ID to the login data. You should choose an application where the user does not easily forget his password.
Lack of know-how
As in other systems, user maintenance and role/profile assignment must be restricted to the group of user administrators. In contrast to the previous systems, however, roles and profiles are maintained here, so that appropriate rights must be assigned to the role/profile administrators.

If you get into the situation that authorizations are required that were not considered in the role concept, "Shortcut for SAP systems" allows you to assign the complete authorization for the respective authorization object.

At "www.sap-corner.de" you will also find a lot of useful information on the subject of SAP authorizations.

Such a concept is free of functional separation conflicts and is so granular that the organisational characteristics can be pronounced per use area.

SAP Stuff
Zurück zum Seiteninhalt