cancel
Showing results for 
Search instead for 
Did you mean: 

structural authorization

Former Member
0 Kudos

hi HR experts,

The user has been assigned a new role with a PD-profile ALL(removed from UNIT). During testing, he has still no access to the whole structure. After running the program RHBAUS00, he has the correct access.

My question is: it seems if the user receives a new role with a different structural profile, we have to always run the program RHBAUS00 to regenerate the structural profile manually. Is it right? By the way, the user exists in T77UU.

Thanks,

CW

Accepted Solutions (0)

Answers (2)

Answers (2)

Former Member
0 Kudos

Thanks, Ashish!

Inactive indexes? Is it also applicable for the user with changing of PD-profiles?

Former Member
0 Kudos

Christin: The report RHPROFL0 takes the profile or its changes and maintains these for the User Id (assignment).

The next report to run is RHBAUS02 which moves the employee into the table mentioned previously: T77UU.

Lastly the report RHBAUS00 is run to update the Index with all current users and their profiles.

Your security team needs to schedule these as background jobs that run each day.

At a minimum you likely want to run each job as follows:

RHPROFL0 = twice daily

RHBAUS02 = twice daily

RHBAUS00 = 4 times daily

Of course this depends heavily on the geography of your company. Just trying to give a baseline recommendation.

Cheers, Al

AshishBhati
Contributor
0 Kudos

CW -

The Report RHBAUS00 is used only to regenrate all the inactive indexes in structure authorizations. And this report will only run if the user exists in T77UU table. Everytime you have to run this report to regenerate the Indexes.

-Ashish