Application Development Discussions
Join the discussions or start your own on all things application development, including tools and APIs, programming models, and keeping your skills sharp.
cancel
Showing results for 
Search instead for 
Did you mean: 

HR Authorization issue for specfic User

Former Member
0 Kudos

Dear all,

One of the HR user , he can run payroll on particular site ,

i have assigned Org key of site to master data on the particular role .

User tried to run payroll using pa30 with personnel no (one of store user) .

but system is not take any value and its not showing any error also .

For example pls check below detail i have tried my user id and system has shows below details of the user (below details is one of the store user ).

Personnel no. 2941

Name A Mohammed Younus

Personnel ar ZOSO EE group A

Subarea STCH EE subgrp 3E

Kindly suggest to resolve the issue

Note : 1, i have deleted the user and i have recreated role .

2, i have copied another user role (he can run payroll) to effected user ,even though he cant able to run payroll.

Edited by: satheesh0812 on Dec 17, 2010 9:29 AM

1 ACCEPTED SOLUTION

former_member524429
Active Contributor
0 Kudos

Hi,

but system is not take any value and its not showing any error also .

Provide Existing Auth. settings of P_ORGIN Auth. Object.

The User who is executing PA30, Does he/she having sufficient authorization in Authorization Levels (like.. E, M, R, W...),Organizational Key, Infotype, Personnel Area atuh. object. filed P_ORGIN Auth. Object ?

Regards,

Bhavik G. Shroff

11 REPLIES 11

Former Member
0 Kudos

Hi,

I infer that the authorization setup is not correct. Do you assign PBS or Structural authorizations? Also, verify P_ORGIN. It has lots of fields other than the Authorization level like Infotype, sub type etc. You need to identify the appropriate levels and restrict there.

If you feel that the authorization is correctly maintained, enable ST01 trace and identify what you are missing?

Rgds,

Raghu

0 Kudos

Dear

I thing i forgot Structural authorizations to define , could u pls suggets how to use OOSP,OOSB on the this issue

Kindly suggets

0 Kudos

Dear all,

Pls check the HR: Master data ,

Changed HR: Master Data

Authorization level E, M, R, W

Infotype *

Personnel Area *

Employee Group *

Employee Subgroup *

Subtype *

Organizational Key 20000127, 20000151, 20000156, 20000157, 20000201

We are assigned Structural authorizations.

I have checked P_ORGIN Auth Object

Object P_ORGIN HR: Master Data

Field Name VDSK1 Organizational Key

20000127

20000151

20000156

20000157

20000201

Kindly suggets

0 Kudos

Hi,

We are assigned Structural authorizations.

Since you mentioned that Structural authorizations are in place, did you check the evaluation path and object ID mentioned in the structural profile? You have to ensure correct evaluation path is defined in OOSP as per your requirement and correct object ID is assigned (to profile in case of static profiles and to Position in case of dynamic profiles where values are selected via Function Modules).

Incase above steps are already taken care of, please run report RSBAUS02, RSBAUS00 to regenerate the Structural buffering in INDX.

Hope this helps

Sandipan

former_member524429
Active Contributor
0 Kudos

Hi,

but system is not take any value and its not showing any error also .

Provide Existing Auth. settings of P_ORGIN Auth. Object.

The User who is executing PA30, Does he/she having sufficient authorization in Authorization Levels (like.. E, M, R, W...),Organizational Key, Infotype, Personnel Area atuh. object. filed P_ORGIN Auth. Object ?

Regards,

Bhavik G. Shroff

0 Kudos

Hi,

P_PCR is also important authorization to run the payroll.

Please check if the user has the appropriate authorizations related to this object.

Thanks,

sanketh.

Former Member
0 Kudos

we can get all others employee details except only one employee ,personnal data we cant get ...

System is also not giving any error of particular employee ...

Pls check the below Su53 log...

Evaluation of Last Failed Authorization Check of User SUK

Description Auth

User Name SUK Authorization Object

System IRP Client 320

Date 19.01.2011 Time 13:05:48

Instnce PRDCIXI Profile Parameter auth/new buffering 4

The last authorization check was successful

Failed HR Structure Authorizations

Date 19.01.2011 13:05:41 Plan Version 01 Obj. Type P Object ID 00004018 Start Date 01.01.1800 End Date 31.12.9999 Action DISP

Date 19.01.2011 13:05:41 Plan Version 01 Obj. Type P Object ID 00004018 Start Date 01.01.1800 End Date 31.12.9999 Action INSE

Date 19.01.2011 13:05:41 Plan Version 01 Obj. Type P Object ID 00004018 Start Date 01.01.1800 End Date 31.12.9999 Action DISP

Date 19.01.2011 13:05:41 Plan Version 01 Obj. Type P Object ID 00004018 Start Date 01.01.1800 End Date 31.12.9999 Action INSE

Note i have tried same thing from SAP id ,its working , i got the below personnel details ...

Personnel no. 4018

Name Abduk Kather A

Personnel ar ZOSO EE group P

Subarea STCH EE subgrp 8E

But user not get the above details ....

Kindly suggest

Edited by: satheesh0812 on Jan 19, 2011 10:06 AM

0 Kudos

Dear all,

I dont thing so there is no issue with Role ,only issue with Structure Auth..

Becoz pls check below Authorization Object.

Changed HR: Master Data

Authorization level E, M, R, W

Infotype *

Personnel Area *

Employee Group *

Employee Subgroup *

Subtype *

Organizational Key 20000156, 20000157, 20000201

In OOSP for particular Org key .

Auth profile Auth.Profile name

CTHR_CHENNAI CTHR_Chen

Auth profile No Plan Vers Obj Type Object I Maint Eval.path Status vec

CTHR_CHENNAI 1 01 O 20000156 O-S-P 12

CTHR_CHENNAI 2 01 O 20000157 O-S-P 12

CTHR_CHENNAI 3 01 O 20000201 O-S-P 12

In OOSB details

IN OOSB I have assigned Authorization profile to UserXXX, user can see all employee details in PA30 except one employee details , can

User name Autho.profile Start date End date Exclustion Display Objects

XXXX CTHR_CHENNAI 01.01.2005 31.12.9999

If i give Autho.profile --> all instead of CTHR_CHENNAI ..

HR executive can able see all employee details in PA30 ...

Let me know where exactly issue is there ...

Kindly suggest...

0 Kudos

Auth profile Auth.Profile name

CTHR_CHENNAI CTHR_Chen

Auth profile No Plan Vers Obj Type Object I Maint Eval.path Status vec

CTHR_CHENNAI 1 01 O 20000156 O-S-P 12

CTHR_CHENNAI 2 01 O 20000157 O-S-P 12

CTHR_CHENNAI 3 01 O 20000201 O-S-P 12

Can you check if the org unit to which that excluded person belongs to is one of the org units mention in your auth profile ( field 'object'). If not, check if the org unit to which the excluded person belongs reports to any of the three org units specified in your auth profile via tcode PPSS or PPOSE.

In case both the checks are negative, you would need to add that value of org unit to your auth profile and run RSBAUS00/02 to regenerate buffering of structural profiles in INDX table.

Also, let me know the value under 'Period' field of your auth profile and whether if excluded person's assigment to his org unit has end date > current date i.e if the relationship is valid as of date.

Thanks

Sandipan

Former Member
0 Kudos

Answered

Former Member
0 Kudos

Hello,

Can you please let us know what is the solution for this issue as we are also facing same Problem.User is unable to see any other personnel number not even in PA20 search help expect his own data . And there is no PD profile assigment done as user should have Global access.

Any input related to this issue is highly appreciated.

Regards,

kitchlu