cancel
Showing results for 
Search instead for 
Did you mean: 

Authorization objects

Former Member
0 Kudos

Hi,

We have created the following roles for the below activities wherein we will assign the users

1. Creator - CV01n

2.Approver,Reviewer - CV02n

3. Users - CV03n,CV04n

Could you please tell me which Authorization objects need to be maintained for these roles for these activities mentioned

Accepted Solutions (1)

Accepted Solutions (1)

christoph_hopf
Advisor
Advisor

Hi Lisbeth,

for restricting some transaction codes for your users you can use object S_TCODE and define the allowed transactions for an user.

With the help of the authorization trace in transaction ST01 you can also find out which authorization objects are checked during specific steps in the DMS transactions. The result of this trace should also help you to create a profile which allows your users only specific functionalities.

Best regards,

Christoph

Answers (3)

Answers (3)

Former Member
0 Kudos

You may also explore using Authorization group field (4 Char) in CV01N.The values can be sorted based on Document type using BADI.Using BADI, you can have document type wise filter for Authorization group. For this, maintain a transparent table instead of fixed value for BEGRU and have your own logic for filtering value based on Document types.

Regards,

Pradeepkumar Haragoldavar

Former Member
0 Kudos

Hi Lisbeth,

Follow followin steps:

1. First maintain t-codes in cross-application component in each role

2. Classification as 017 (DMS)

3.Maintain the objects C_DRAW_DOK for document types,C_DRAW_BGR for authorization groups,C_DRAW_TCD for activities like create,change,display etc.

I hope this will resolve the query.

Regards,

Ravindra

Former Member
0 Kudos

[Authorization Objects in DMS|http://wiki.sdn.sap.com/wiki/display/PLM/Authorization%2BObjects%2Bin%2BDMS]