Skip to Content

Archived discussions are read-only. Learn more about SAP Q&A

Authorization object S_DATASET

Hello friends,

I have a question..(may be silly one )

If i have a auth object say S_DATASET available in 2 roles with different values.

S_DATASET

Activity 33, 34 ACTVT

Physical file name /transfer/C11/order/aus FILENAME

Program Name with Search Help * PROGRAM

S_DATASET

Activity 33, 34, A6, A7 ACTVT

Physical file name * FILENAME

Program Name with Search Help ZP1, ZP2, ZP3 PROGRAM

Now what happens when both roles are assigned to a single user. Does he get S_DATASET with activity merged ?? means will he have auth lieke this :

S_DATASET

Activity 33, 34, A6, A7 ACTVT

Physical file name * FILENAME

Program Name with Search Help * PROGRAM

thanks

ashish

Former Member
Former Member replied

Yes you are correct, but it does depend on what those 3 programs do and which import parameters / selection screens they have.

Why do you want to put * into the program name of the first role though?

Can the user create a file in the order directory with the name permitted, then use ZP1 to move it to a different directory and rename it and execute it?

The mix seems suspect to me because of the combined access from building roles using different techniques, but they are not merged!

Cheers,

Julius

0 View this answer in context
Not what you were looking for? View more on this topic or Ask a question