This is in continuataion to the previous question.
a user is assigned with tcode SA38.how to restrict him to
execute only a few reports,say rsusr003.If you're going to
modify the role(having sa38) assigned to the user,that will
affect other users also because that role might be assigned
to multiple users.I don' want that to happen.so what is the
solution?
Answer Posted / shanu
In that case you need to create and assign authorization
group to report rsusr003. you can also create tcode for
this report and assign it to user in separate role.In the
new role maintain the object S_PROGRAM with specific auth
group.
No need to remove the SA38 from role.
Just make sure the SA38 role should restricted the access
got object S_PROGRAM. It should not be '*'.
Program Check (Object – S_PROGRAM, Values – Execution and
the authorization group).
| Is This Answer Correct ? | 5 Yes | 0 No |
Post New Answer View All Answers
What are se09 t-codes used for?
HI FRIENDS... I WANT TO KNOW FEW TICKETS ON SECURITY WITH SOLUTION.
What is t code?
Can you explain protecting public keys?
What is the difference between authorization object and authorization object class?
Can you explain internet-level security?
Which tables will you use for making customizing setting for security administration?
What are st01 t-codes used for?
how to do Reporting and Analysis authorizations
What is sap cryptographic library?
How to do SAP R/3 Security configuration, design, development, testing, implementation and production support.
how we Restrict the auth groups for table maintain, creating Auth group using SE54 to built new Auth groups to restrict tables via auth object S_TABU_DIS
what is user buffer?
Can you explain network topology in sap systems?
Is it possible to change role template? How?