cancel
Showing results for 
Search instead for 
Did you mean: 

Storage Location User Authorisation restriction

former_member198492
Contributor
0 Kudos

Hi All

I have reviewed some of the answers on this forum but I just wish to check if I have understood the settings I need to activate.

My requirement is to restrict a user at goods receipt for PO for a particular plant and Sloc. I have generated plant specific user job roles and have even generated a role specific for goods receipt for POs.

I understand that I need now to activate Authorisation check at storage location level in SPRO but will that mean generating separate job roles for all plant/sloc combinations and then allocate to individual users?

Probably easier to show an example!

UIser has following goods receipt for PO authorisations

Plant A, Sloc 1 - GR yes

Plant A, Sloc 2 - GR yes

Plant A, Sloc 3 - GR yes

Plant B, Sloc 1 - GR no

Plant B, Sloc 2 - GR yes

I want user to be able to goods receipt all of Plant A deliveries and Plant B, Sloc 2 only

User has Plant A goods receipt auth for all Slocs and I have added Plant B with Sloc 2 but he is still able to book in to Plant B and Sloc 1.

So I read that if I activate the Storage Location authorisation in SPRO and users with '*' in the Sloc auth M_MSEG_LGO will still be able to book in to all Sloc but where I have specified a Sloc (in this example its Sloc 2 at plant B) then the user will only be able to book in to Sloc B (as I have already restricted the plant authorisation).

Am I right in assuming the above?

If I activate storage location authorisation for a single plant/Sloc combination in SPRO can I just create a job role for that only?

Any help or direction would be greatly appreciated

Darren

Accepted Solutions (1)

Accepted Solutions (1)

BijayKumarBarik
Active Contributor
0 Kudos

Hi,

You need to create two different roles ie.....One role for allowing  Plant B, Sloc 1  and Another role for allowing Plant B, Sloc 2 - Plant A, Sloc 1- Plant A, Sloc 2 and Plant A, Sloc 3.

Assign the role to user based on requirement-Discuss with Basis consultant.

Regards,

Biju K

former_member198492
Contributor
0 Kudos

Thanks Bijay for fast response

OK, kind of makes sense.

So if I activate only Plant B Sloc 1 for storage location authorisation in SPRO, I have to generate a separate role with that Plant/SLoc only.

Then remove the all (*) selection from all of the roles and with the SLoc auth object and replace with the available Slocs minus Sloc 1.

Is this correct?

BijayKumarBarik
Active Contributor
0 Kudos

Hi,

Yes, you need to remove ( * ) and allow only respective parameters for that role only but these activities will be carried by Basis consultant.

Regards,

Biju K

former_member198492
Contributor
0 Kudos

Many thanks Bijay

I will generate the new roles in our test client then test and transport through.

I am part of the basis team and have created and managed the job roles for our IM/WM team for last few years but have never had to activate SLoc auth check.

Thank you for clarifying my issue

Regards

Darren

Answers (0)