cancel
Showing results for 
Search instead for 
Did you mean: 

Virsa CC: Organizational Rules

former_member184114
Active Contributor
0 Kudos

Hi,

Following is the scenario:

We have almost 10-15 company codes as:

1000

2000

3000

4000

5000

As per SODs, a person having access to a company code 1000 should not have access to other company codes for the assigned TCODES.

Lets say, if a user(User1) has access to company code 1000 should not have access to other company codes....2000,3000...

If I create org. rule for the same in CC, I would create in the following way:

-select the risk

-specify the Org level (here company code BUKRS)

-From :company code

-To: company code

-Search Type: condition (Not, AND, OR)

-Status:Enable / Disable

Following is the table looks like:

=============================================

Risk Org Level From To Srch Type Status

=============================================

Risk1 Company Code(BUKRS)1000 AND Enable

Risk1 Company Code(BUKRS)2000 OR Enable

Risk1 Company Code(BUKRS)3000 OR Enable

Risk1 Company Code(BUKRS)4000 OR Enable

Risk1 Company Code(BUKRS)5000 OR Enable

Then the same process continues for company code 2000

=============================================

Risk Org Level From To Srch Type Status

=============================================

Risk1 Company Code(BUKRS)2000 AND Enable

Risk1 Company Code(BUKRS)1000 OR Enable

Risk1 Company Code(BUKRS)3000 OR Enable

Risk1 Company Code(BUKRS)4000 OR Enable

Risk1 Company Code(BUKRS)5000 OR Enable

That means, for one company code you have to write remaining 4 records (1:4).

Is there any way by which can make this process easier since this is quite laberously job.

That would be a great help if I can do in this way.

Regards,

Faisal

Accepted Solutions (0)

Answers (1)

Answers (1)

former_member366047
Contributor
0 Kudos

Faisal-

I have implemented org rules for 2 of my clients, and I have not found an easier way to do what is required. You are doing it correctly to ensure the org rules are implemented right.

Yes, it is a very labor-intensive procedure...

Ankur

GRC Consultant

Former Member
0 Kudos

I think this is the only way even i have learnt, although am very new to GRC implementation but so far i have not came across any work around to setup organizational Rules.

may be this process can be automated with ecatt, rather testing we can go for real scenarios. just an idea.

Best Regards,

Amol

former_member366047
Contributor
0 Kudos

Since created org rules in done in CC 5.2 in NW, and used for reporting purposes, eCATT scripts cannot be used...

Ankur

GRC Consultant

Former Member
0 Kudos

Yeah you are right, may be of some help in CC 4.0, and in CC 5.2 we have to put in, some manual efforts.

former_member184114
Active Contributor
0 Kudos

So can I confirm that by now I have to do this job manually?

Also, can you suggest me should I raise any OSS with SAP, will they respond?

I think they will not. Since they only answer product error queries!

Regards,

Faisal

former_member366047
Contributor
0 Kudos

Faisal-

Yes, you will have to do it manually. I don't think there is a way to automate this process, if you want to make sure every org rule is implemented correctly.

If you post an OSS note, they will tell you to do it manually...

Ankur

GRC Consultant