cancel
Showing results for 
Search instead for 
Did you mean: 

SAP MDG BP XK01 Security

Former Member
0 Kudos

What security configuration restricts a user from creating a supplier in ECC, but allows them to create a new ERP Vendor in MDG?  If we restrict XK01, it disables ability to create ERP Vendor in MDG.

Accepted Solutions (1)

Accepted Solutions (1)

former_member206605
Active Contributor

Hello Michael

The authorizations depends upon the authorization objects + Roles that you configured in MDG. Example - USMD_MDAT / USMD_CREQ. You can check the security guide for more details on all these objects.

When you create a supplier in MDG, a particular role is assigned to that user (PFCG / SU01) so that the user can create the supplier in MDG. Check the roles for supplier through PFCG - (SAP_MDGS_VL_MENU_04). Once the supplier is created, the same is replicated to ECC. You need to assign the authorization objects of the Data replication framework.

The user which is used to create supplier or customer in MDG is - MDGREMOTE. This user will have the required access to transfer the data from MDG to ECC and create supplier. All your other users won't have create or change access.

For more details on security, you can go through the MDG security guide.

Thanks

Kiran

Answers (2)

Answers (2)

Former Member
0 Kudos

Thank you for the input Kiran and Jochen,  I am looking into your responses now.  I am hoping this does not require a BADI configuration as this requirement should be achievable through standard security role authorization configuration.

former_member206605
Active Contributor
0 Kudos

BADI is not required. You can use the standard roles and objects to achieve this.

Kiran

Former Member
0 Kudos

Hello Michael,

please check BAdI 'VENDOR_EXTENSION_AUTH_CHECK'.

Here you can specify the transaction codes you don't want to have checked when creating a supplier via MDG.

Best regards,

Jochen