on 12-04-2015 12:37 AM
here is a scenario
Info provider: ZHRPYO01 (standard DSO) within this DSO there is a characteristic which is set as authorization relevant – 0EMPLSGROUP
Roles assigned: ZS:BW-DAT-SAL-PAYROLL-1
Query technical name: SECURITY_TEST_2 built on top of the DSO ZHRPYO01.
Authorization objects in the role ZS:BW-DAT-SAL-PAYROLL-1:
S_RS_AUTH – ZEMPL1
S_RS_COMP- all access
S_RS_COMP1 – all access
S_RFC – all access
Analysis authorization ZEMPL1 details:
0TCAACTVT – all access
0TCAIPROV - 0EMPLSGROUP, ZHRPYO01
0TCAKYFNM – all access
0TCAVALID – all access
Based on the above technical details, when I run RSRT and execute the query “SECURITY_TEST_2” I get the below error message. If I assign 0BI_ALL the query runs without any issue. What am I missing ?
Hi Rahul,
Since the characteristic "0EMPLSGROUP" is auth relevant, make sure you maintain the same in the Analysis Authorization ZEMPL1.
So your Analysis Authorizaiton ZEMPL1 will look like below
0TCAACTVT – all access
0TCAIPROV - ZHRPYO01
0TCAKYFNM – all access
0TCAVALID – all access
0EMPLSGROUP - ( * or : etc., depending on how you want to restrict).
If 0EMPLSGROUP is not a restricted field, you cna give * else you may give only " : " value.
Thanks,
Kalpana.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
User | Count |
---|---|
89 | |
10 | |
10 | |
10 | |
7 | |
6 | |
6 | |
5 | |
4 | |
3 |
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.