cancel
Showing results for 
Search instead for 
Did you mean: 

What authorization is required for transaction FB01

Former Member
0 Kudos

Hello All,

What are the minimum required authorizations for transaction FB01 for a user to be able to post documents?

When i assign FB01 and FB02 transaction to a role, with default authorizations a user is able to execute FB02 however i get an authorization missing error in case of FB01.

Is it required to maintain all authorizations for FB01?

Please help!

Thanks in advance.

Best Regards,

Amol Bharti

Accepted Solutions (1)

Accepted Solutions (1)

former_member184114
Active Contributor
0 Kudos

I think its company code you need to maintain for the TCODE FB01..

Just check this.

Regards,

Faisal

Former Member
0 Kudos

I have a role named "ZCCROLE2"

in Authorization tab i have following things:

[ooo] Standard (Cross-application Authorization Objects)

+----


TCode -- [FB01, FB02]

[ooo] Changed (Controlling)

|__

(Transfer price valuations)

|__Activity__________[Change, Display, Post]

|__Controling Area___[ABCD]

|__Valuation View____[Legal Valuation]

[ooo] Financial Accounting

|__

F_BKPF_BED

|__Activity (03)

|__Auth Group (ABCD)

F_BKPF_BEK

|__Activity (01, 02)

|__Auth Group (ABCD)

F_BKPF_BES

|__Activity (03)

|__Auth Group (ABCD)

F_BKPF_BLA

|__Activity (03)

|__Auth Group (ABCD)

F_BKPF_BUK

|__Activity (02)

|__Auth Group (ABCD)

F_BKPF_GSB

|__Activity (03)

|__Auth Group (ABCD)

F_BKPF_KOA

|__Activity (03)

|__Account Type ($KOART)

F_BKPF_LDR

|__Activity (03)

|__Comp Code (ABCD)

|__Ledger ( )

|__Record Type ( )

|__Version ( )

F_BKPF_SEG

|__Activity (03)

|__Record Type ( )

|__Segment of Segmental Reporting ( )

This is what i have, now you can have more clear idea what is my current situation here.

Best Regards,

Amol Bharti

Former Member
0 Kudos

I have maintained company code everywhere, still a user is not able to execute FB01. Yes one more thing if i give full authorization in all then the user is able to execute FB01 absolutely fine.

But this is not the right approach to give full authorization, so i am looking for the minimum requirement for FB01 to work for a user.

former_member184114
Active Contributor
0 Kudos

In Activity field you can maintain values like 01(create), 02 (Change), 03 (Display) and so on.

So, It is quite clear to put these values. However, the other authorization field like Authorization Group should be filled inline with functional person.

Hope this helps you. Pls let me know if you have any query

Regards,

Faisal

Former Member
0 Kudos

Hi Faisal,

I have already maintaned Activity and Organizational Groups, You can check my previous reply with what i have maintained.

You will find Create and change (01, 02) permissions given in F_BKPF_BEK and organizational code given as "ABCD"

(02) permission given in F_BKPF_BUK

and in rest i have given (03) display permission only with company code "ABCD"

in case of F_BKPF_KOA i have given following:

F_BKPF_KOA

|__Activity (03)

|__Account Type ($KOART)

and for F_BKPF_LDR

F_BKPF_LDR

|__Activity (03)

|__Comp Code (ABCD)

|__Ledger ( )

|__Record Type ( )

|__Version ( )

Now what is missing. what authorizations or permissions are required specifically for FB01?

Best Regards,

Amol Bharti

former_member366047
Contributor
0 Kudos

Amol-

Try changing:

F_BKPF_BUK

F_BKPF_KOA

F_BKPF_LDR

with Activity 03 (display)

to Activity 01 (create)...

Ankur

GRC Consultant

Former Member
0 Kudos

Hi Ankur,

This has resolved the issue, Thanks a lot for you help!

Full points given! Also Faisal thanks for looking into the issue.

Best Regards,

Amol Bharti

Answers (0)