Application Development Discussions
Join the discussions or start your own on all things application development, including tools and APIs, programming models, and keeping your skills sharp.
cancel
Showing results for 
Search instead for 
Did you mean: 

pfcg Authorization for ois2

Former Member
0 Kudos

Hi friends,

I want to give authorization for OIS2 transaction without directly giving it in the PFCG role assignment of transaction... so I searched for the roles for this t-code ois2 but there is no specific role for this, as this is done in the SPRO.

Can u please help me, is there any other way so that I can give authorization for this transaction... This there any other way to assign a particular transaction which belongs to SPRO...

thank you....

1 ACCEPTED SOLUTION

jurjen_heeck
Active Contributor
0 Kudos

All transaction assignments are done through roles and profiles.

Can you tell us why you are looking for another way?

What is wrong with building a role and assigning it to the user?

10 REPLIES 10

jurjen_heeck
Active Contributor
0 Kudos

All transaction assignments are done through roles and profiles.

Can you tell us why you are looking for another way?

What is wrong with building a role and assigning it to the user?

0 Kudos

hi Jurjen Heeck

First I thank you for your approach...

I am searching for other way b'cos I am not able to find the role for it. and there are some more transactions reported like this as they are configured directly from the SPRO. So I am not able to assign each transaction to every user. So if I am able to find a role or profile for this, I will be able to assign them in a group, then to the user directly...

I think I cleared your doubt for going to a new methodology.

thank you...

0 Kudos

> I am searching for other way b'cos I am not able to find the role for it.

Well, if there is no existing role for it you'll have to build one yourself. I'm afraid that's the only way to assign the proper authorizations to your user(s).

0 Kudos

Hi Kings,

it is possible to create customizing roles.

Therefore create a customizing project containing the (SPRO-) (trans)actions. then create a customizing role assigning your customizing project to that role. The corresponding SPRO-transactions will be inserted to the role then and you can maintain the appropriate authorizaitons then and assign this role to the users.

I hope this information will help a bit.

b.rgds, Bernhard

0 Kudos

To followup on Berhard's point - you will need to create a role, go to the menu tab and then go to the "utilities" drop down - you will find a "customizing auth" option there. You will need a project view created first though. This will insert all of the tcodes of the nodes that are associated with SPRO.

0 Kudos

Hi JC ,

Thank you for your valuable suggestion... will I get the note how to do this configuration/customization.. As I tried I m not able to do exactly what I need.

If I could get the steps involved to do the configuration/customization for the "customizing auth" it will be the most useful.

Your ans is more valuable to me.

thank you.

0 Kudos

Hi Kings,

first you have to define your project (I am sure, you know hotw to... )

Then :

pfcg: create new role

Choose Utilities --> Customizing auth. from the Menu tab.

Choose whether you want to insert IMG activities from a Customizing project or a project view into the role with the Insert key.

The transaction codes and other authorization objects required to maintain tables for this Customizing project (view) are determined automatically and imported into the role.

Save->edit authorizations as usually

clear?

Do you need more details?

b.rgds, Bernhard

0 Kudos

Hi Bernhard Hochre,

Thank you for your help...

I m not able to get the work done... I have created a project, and have assigned the project to a role as you helped me. But I am not able to make it....

I like to tell u what I have done...

1. created a project in SPRO and saved it.

2. created a role in PFCG and assigned the customizing auth.

3.Generated the authorization profile with full authorization.

4.Assigned a single user to it.

But the user is not able to access the OIS2 t-code/ or the path from the IMG...

I think I m missing some steps but not sure what is it.. can u please help me. Do I have to do any customizing in the project which I have created.

Thank You....

0 Kudos

Hi Kings,

please run ST01 for the users who still cannot execute ois2. Maybe there are some additional checks, which are not covered by the SU24 defaults for the transactiosn contained in the menu of your role....

b.rgds, Bernhard

0 Kudos

Hi ,

When you create a project you need to assign the mobules u need this project to have (for eg finance, Controlling etc) and generate it once done when you pull the customizing auth from this project u will get the subsequent authorization in the role.

Thanks,

Manohar