Application Development Discussions
Join the discussions or start your own on all things application development, including tools and APIs, programming models, and keeping your skills sharp.
cancel
Showing results for 
Search instead for 
Did you mean: 

autrzn restriction

Former Member
0 Kudos

hi

IN BS52 i created autrzn key creat1 & appr1 & assigned to status profile in BS02

10 create - autrzn obj creat1

20 reject - appr1

30 approve -appr1

in pfcg i created role & in change authorizn data i selected B_USERSTAT & maintained autrzn key/status profile & in su01 i assigned profile to user 1 ( who can create/reject/approve)

BUt for user2 i din;t assign any profile/role but still system allowing to chnage status from create to reject/approve

Pl suggest

1 ACCEPTED SOLUTION

sdipanjan
Active Contributor
0 Kudos

>

> hi

> IN BS52 i created autrzn key creat1 & appr1 & assigned to status profile in BS02

> 10 create - autrzn obj creat1

> 20 reject - appr1

> 30 approve -appr1

>

> in pfcg i created role & in change authorizn data i selected B_USERSTAT & maintained autrzn key/status profile & in su01 i assigned profile to user 1 ( who can create/reject/approve)

>

You assigned role and Not profile..

> BUt for user2 i din;t assign any profile/role but still system allowing to chnage status from create to reject/approve

>

check in SUIM whether User2 has access to any of the following object with * as field value in STSMA and in BERSL.

B_USERST_T Status Management: Set/Delete User Status using Transaction

B_USERSTAT Status Management: Set/Delete User Status

Regards,

Dipanjan

4 REPLIES 4

Bernhard_SAP
Employee
Employee
0 Kudos

Hi sapsd,

if possible, kindly use proper english, to make your posts understandable (pls refer to rules of engagement).

Thank you,

b.rgds, Bernhard

sdipanjan
Active Contributor
0 Kudos

>

> hi

> IN BS52 i created autrzn key creat1 & appr1 & assigned to status profile in BS02

> 10 create - autrzn obj creat1

> 20 reject - appr1

> 30 approve -appr1

>

> in pfcg i created role & in change authorizn data i selected B_USERSTAT & maintained autrzn key/status profile & in su01 i assigned profile to user 1 ( who can create/reject/approve)

>

You assigned role and Not profile..

> BUt for user2 i din;t assign any profile/role but still system allowing to chnage status from create to reject/approve

>

check in SUIM whether User2 has access to any of the following object with * as field value in STSMA and in BERSL.

B_USERST_T Status Management: Set/Delete User Status using Transaction

B_USERSTAT Status Management: Set/Delete User Status

Regards,

Dipanjan

Former Member
0 Kudos

hi,

thx for replyin

i hope u understood my query -what i'm trying to do is user1 will have full access to change status in va02 -header -stastus tab.

But user2 should not have authorization for any change in stastus tab in va02. (setting what i've done i've stated in earlier post)

*pl suggest in suim where i need to chk object with * as field value in STSMA and in BERSL.*

sdipanjan
Active Contributor
0 Kudos

Hi,

Please do not search in SUIM. As much as I understood, you want to find out the update value for User2.

1st you download the list of Roles assigned to user2 from AGR_USERS table.

Then go to table AGR_1251 and put these roles there by multiple selection..

In Object field .. put the Objects (USERT) I mentioned in the last post... Execute..

Download the list .. open it in excel and see in the values in From and To fields to find out the update values.

Regards,

Dipanjan