Skip to Content
avatar image
Former Member

How to restrict T-Code SPRO, which only allow user to perform configuration in IMG with no access to sensitive HR Master Data.

Dear all,

May I know how can I create a configuration role with T-Code SPRO, which allow user to perform configuration in IMG but not allow to access to sensitive HR Master Data. This role will be assigned to the Data Migration Team for data loading before go-live.

Thank you.

With regards,

DERRICK

Add comment
10|10000 characters needed characters exceeded

  • Get RSS Feed

2 Answers

  • avatar image
    Former Member
    Feb 06, 2013 at 09:22 PM

    Are they going to be expected to migrate "sensitive" HR master data as well?

    Which tool you are using for migrations will also determine which access that tool provides to migrated data....

    For SPRO you can use SPRO_ADMIN for creating views and import these into role menus, then use report RSUSR008_009_NEW or GRC or your own inventions to scan them for HR access in what the project generated for proposals.

    Cheers,

    Julius

    Add comment
    10|10000 characters needed characters exceeded

  • avatar image
    Former Member
    Feb 08, 2013 at 10:13 AM

    Can you try in auth object S_TABU_DIS  remove values for  field  "Authorization Group" starting with p.Dont leave any * there

    Add comment
    10|10000 characters needed characters exceeded