Skip to Content
avatar image
Former Member

Authoriztion for a function module

Hi all,

I am having problem assigning authorization for the RFC function Module Z_GET_META_OO that requires both S_TABU_DIS and Z_EIP_TABL.

The below given values provide the least possible restrictions for S_TABU_DIS, which allow users to view metadata for any table in the system.

ACTVT: 03

DICBERCLS: *

How can I assign this authorization to a user?

Regards,

Praveen.K.O

Add comment
10|10000 characters needed characters exceeded

  • Get RSS Feed

2 Answers

  • avatar image
    Former Member
    Nov 14, 2008 at 02:54 PM

    Hi Praveen,

    You need to give the Authorizations to the RFC function module via the Auth Object S_RFC.

    Also when a remote call of a function module is made, an automatic authorization check is performed, provided that the profile parameter auth/rfc_authority_check is set to 1.

    The authorization check uses the authorization object S_RFC to check whether the user defined in the destination has RFC authorization for the function group of the called function module.

    So I think you need to add S_RFC in the role along with S_TABU_DIS

    Regards,

    Kiran Kandepalli.

    Add comment
    10|10000 characters needed characters exceeded

  • avatar image
    Former Member
    Nov 14, 2008 at 03:29 PM

    Try assigning only dicbercls 'SC' and any specific table group your application wants to read (or it will become visible) and see whether that works.

    => [SAP Note 1012218|https://service.sap.com/sap/support/notes/1012218]

    Cheers,

    Julius

    Add comment
    10|10000 characters needed characters exceeded