cancel
Showing results for 
Search instead for 
Did you mean: 

Restricting BP Grouping field via authorization

Former Member
0 Kudos

Hi Gurus,

I have a requirement where in we want to create an authorisation for creating a particular BP Grouping in CRM Web UI. Can anyone suggest how to influence the display of the BP groupings dropdown via authorization? The requirement is that user A can only 'see/create' the grouping he is authorized to. And user B can only see/create the grouping he is authorized to.

Your help would be highly appreciated. 

Thanks & Regards

Rahul Sharma

Accepted Solutions (0)

Answers (4)

Answers (4)

Former Member
0 Kudos

hi rahul,

We can give proper authorisation to particular group. For this we have to create a authorisartion role which contains a certain authorization profile (PFCG profile) that defines the necessary authorizations. You assign this authorization role to your business role. You maintain authorizations in transaction PFCG.

Go through the below links for understanding the authorisation profiles and assigning roles.

http://help.sap.com/saphelp_crm70/helpdata/en/98/55a23574994fc887b76381dd351593/content.htm

http://help.sap.com/saphelp_crm60/helpdata/en/44/d9acfe7a012754e10000000a1553f6/frameset.htm 

www.sap-press.com/downloadattachment/86

Hope these links will give you a clear idea.

Regards,

HCL ZENITH.

VishnAndr
Active Contributor
0 Kudos

HCL ZENITH,

what is the relation between general knowledge about authorization in SAP (your answer) and particular BP field 'grouping' (the question here)?

Former Member
0 Kudos

Hello HCL Zenith,

I want to create authorization from restricting the user to be able to create an account in a particular group. I tried to create the Z authorization type and also created an authorization profile but it is not working. Any suggestions

Former Member
0 Kudos

RCK is role configuration key, so  you create 2business roles and two RCK assign to them in this way u'll be able to acheive

Former Member
0 Kudos

Bhargav,

I have already defined the Role Config key and assigned it to the business role. But my issue is that I want to give access to certain user who have proper authrisation to be able to create a prospect in a particular grouping. For example I have 2 different types of groupings for  prospects (say prospect A and prospect B) but I want to allow only selective users to be able to create a account for grouping prospect B. Hope I have been able to explain my issue better now. Please let me know if you have any idea how we can achieve this.

VishnAndr
Active Contributor
0 Kudos

Hello, Rahul.

There is no standard direct authorization object to restrict what you want.

I'd suggest to create your own one and check it during creation of BP. For instance, restrict values for grouping field in WebUI according to this z-authorization object.

Former Member
0 Kudos

Hello Andrei,

Thanks for your reply, I tried creating a Z authorization type and selected authorization object BUT000-AUGROUP, then assigned it to the PFCG role and only allowed the user to be able to display the particular grouping but it is not working. I am still able to create/edit account for all the groupings. Any suggestion what I may be doing wrong?

Thanks & Regards

Rahul

Former Member
0 Kudos

RCK is role configuration key, so  you create 2business roles and two RCK assign to them in this way u'll be able to acheive

Former Member
0 Kudos

Hi rahul,

use different RCK for different user

Regards,

bhargav.

Former Member
0 Kudos

Hi Bhargav,

Thanks for your revert. Can you explain what do you mean by RCK. If possible can you give me detailed steps.

I have tried to create authorisation using Object types but it is not helping.

Thanks & Regards

Rahul