What is difference between two sentences 1: " Using SUGR we
allocate user to group ". 2: " In SU01 in Logon data we assign
user to group " So, What is assigning and allocating ?
Answer Posted / rajesh srisailapu
Hi ,
The difference between two sentences is
1: " Using SUGR we allocate user to group ".
By using SUGR ,we can create and allocate user group to
number of users at a time, this is for find the list of
users of a particular user group but we cannot restrict any
user to any region or any location.
2: " In SU01 in Logon data we assign user to group "
If we assign any user to User Group in Logon data of SU01,
then user will restrict to particular user group or region
or location. Whenever user trying to do any activity other
than this user group, then system will show “You are not
authorized to "XXXX user group.” Even though user have the
access for particular activity.
Ex: Let us assume some ABC Project, its having multiple
locations like India(SEC_IN), China (SEC_CN), Australia
(SEC_AU)…etc. Each location having individual security
admin with respective user groups. Now India security admin
trying to do password reset to any cross country user like
China user(as per urgency/requirement)then system will
show “You are not authorized to reset password
to “SEC_CN” user group.” Because India security admin is
assign to SEC_IN user group. like this way we can restrict
the users with User Group in Logon data of SU01.
This is the main deference between two sentences “Using
SUGR we allocate user to group and Using SUGR we allocate
user to group”
| Is This Answer Correct ? | 2 Yes | 0 No |
Post New Answer View All Answers
how do i go on about Developing,maintaining,and implementing a mitigating control strategy and provide SAP authorisations support to users? Please help
How can I do a mass delete of the roles without deleting the new roles?
What are se09 t-codes used for?
How do you check background jobs?
Please also send me details about CRM 5 and CRM 7 security issues and scenarios.
What profile versions?
what is the critical issue u are faced in your previous experience
Hi, Can any one tell me, what is roles and responsibilities for SAP-Security resource in 'Netweaver Identity Management'
how we Custom Authorization Objects and Custom Transaction maintenance and how we do User classification, Running systems measurement reports during license auditing through USMM and SLAW
What are pfud t-codes used for?
how you can delete multiple roles from qa, dev and production system?
how we Restrict the auth groups for table maintain, creating Auth group using SE54 to built new Auth groups to restrict tables via auth object S_TABU_DIS
Can you explain network topology in sap systems?
What are the upgrades happened in GRC 5.3 from GRC 5.2?
Which t-code can be used to delete old security audit logs?