This is in continuataion to the previous question.
a user is assigned with tcode SA38.how to restrict him to
execute only a few reports,say rsusr003.If you're going to
modify the role(having sa38) assigned to the user,that will
affect other users also because that role might be assigned
to multiple users.I don' want that to happen.so what is the
solution?
Answer Posted / shanu
In that case you need to create and assign authorization
group to report rsusr003. you can also create tcode for
this report and assign it to user in separate role.In the
new role maintain the object S_PROGRAM with specific auth
group.
No need to remove the SA38 from role.
Just make sure the SA38 role should restricted the access
got object S_PROGRAM. It should not be '*'.
Program Check (Object – S_PROGRAM, Values – Execution and
the authorization group).
| Is This Answer Correct ? | 5 Yes | 0 No |
Post New Answer View All Answers
Userdone tasks with ffid n system send log reports to controller in his work inbox but whenever its open its showing blank screen, why?
what is the use of defaults tab in start menu
what things you have to take care before executing run system trace?
How do I change the name of master / parent role keeping the name of derived/child role same? I would like to keep the name of derived /child role same and also the profile associated with the child roles.
Can you explain internet-level security?
Provides online GRC10 online training,covers configuration & suuport activities on all the four components. ARA,ARM,EAM,BRM. SAP Securty covers--R3 Security,BW BI Security,HR Security,SRM Security,CRM Security Practicals on each component in GRC Provides documentation and notes on each component supports resume preparation and certification For more details contact 8499995600.
Explain transport system-level security?
Giving fire call access and extending fire call access by using VIRSA’s VFAT tool? can u brief give the explanation
What is stad?
When would you update a sap table directly?
What are su53 t-codes used for?
What are the uses of an authorization group?
What is the difference between authorization object and authorization object class?
Differentiate between saml token profile and a sap logon ticket
what is the different b/w su10 and su12