<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic SAP_All in Application Development and Automation Discussions</title>
    <link>https://community.sap.com/t5/application-development-and-automation-discussions/sap-all/m-p/5453311#M1249843</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;How to create SAP_all  profile by removing few t-code say like SPRO.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;My question here is whether it is possible to edit the  existing SAP_All  profile ?&lt;/P&gt;&lt;P&gt;If possible I need to know how to do it?&lt;/P&gt;&lt;P&gt;Apperciate if you give other option without distrubing SAP_All.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cheers!&lt;/P&gt;&lt;P&gt;Naveen&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 31 Mar 2009 07:37:52 GMT</pubDate>
    <dc:creator>Former Member</dc:creator>
    <dc:date>2009-03-31T07:37:52Z</dc:date>
    <item>
      <title>SAP_All</title>
      <link>https://community.sap.com/t5/application-development-and-automation-discussions/sap-all/m-p/5453311#M1249843</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;How to create SAP_all  profile by removing few t-code say like SPRO.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;My question here is whether it is possible to edit the  existing SAP_All  profile ?&lt;/P&gt;&lt;P&gt;If possible I need to know how to do it?&lt;/P&gt;&lt;P&gt;Apperciate if you give other option without distrubing SAP_All.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cheers!&lt;/P&gt;&lt;P&gt;Naveen&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 31 Mar 2009 07:37:52 GMT</pubDate>
      <guid>https://community.sap.com/t5/application-development-and-automation-discussions/sap-all/m-p/5453311#M1249843</guid>
      <dc:creator>Former Member</dc:creator>
      <dc:date>2009-03-31T07:37:52Z</dc:date>
    </item>
    <item>
      <title>Re: SAP_All</title>
      <link>https://community.sap.com/t5/application-development-and-automation-discussions/sap-all/m-p/5453312#M1249844</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Naveen,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;editing SAP_ALL is not advisable, as SAP_ALL shall contain &lt;U&gt;all&lt;/U&gt; authorizations. Furthermore it is regenerated atuomatically from time to time 8for instance after import of new authorization objects, etc.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;More advisable is to create a copy of sap_all and modify its sub-profiles, or you create a sap_all-role by inserting the authorization data of sap_all into the empty profile of that role and modify then the values as per your needs.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I hope this information helps.&lt;/P&gt;&lt;P&gt;b.rgds, Bernhard&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;P.S.: if you search this forum for 'SAP_ALL' for instance, you will get some more useful information in the hits displayed.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Edited by: Bernhard Hochreiter on Mar 31, 2009 9:54 AM     entered the 'P.S:'&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 31 Mar 2009 07:51:20 GMT</pubDate>
      <guid>https://community.sap.com/t5/application-development-and-automation-discussions/sap-all/m-p/5453312#M1249844</guid>
      <dc:creator>Bernhard_SAP</dc:creator>
      <dc:date>2009-03-31T07:51:20Z</dc:date>
    </item>
    <item>
      <title>Re: SAP_All</title>
      <link>https://community.sap.com/t5/application-development-and-automation-discussions/sap-all/m-p/5453313#M1249845</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Use transaction su02 and copy the sap_all profile and edit as per requirement.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Gowrinadh&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 31 Mar 2009 16:05:58 GMT</pubDate>
      <guid>https://community.sap.com/t5/application-development-and-automation-discussions/sap-all/m-p/5453313#M1249845</guid>
      <dc:creator>Former Member</dc:creator>
      <dc:date>2009-03-31T16:05:58Z</dc:date>
    </item>
    <item>
      <title>Re: SAP_All</title>
      <link>https://community.sap.com/t5/application-development-and-automation-discussions/sap-all/m-p/5453314#M1249846</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I have a another suggestion&lt;/P&gt;&lt;P&gt;Instead of assigning profile to users why donu2019t we create role for SAP_ALL profile and then assign to user why because now we are following role based authorization we are not using profile based authorization after r/3 version 4.7&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Go to T-Code PFCG&lt;/P&gt;&lt;P&gt;Directly go to authorization tab change authorization popup window will display from that select Profile SAP_ALL&lt;/P&gt;&lt;P&gt;Then restrict the authorization through objects we canu2019t remove T-Codes why because object S_TCODE contain *  if we remove * we have to add all T-Codes ,so better restrict the authorizations through objects&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 01 Apr 2009 11:06:07 GMT</pubDate>
      <guid>https://community.sap.com/t5/application-development-and-automation-discussions/sap-all/m-p/5453314#M1249846</guid>
      <dc:creator>Former Member</dc:creator>
      <dc:date>2009-04-01T11:06:07Z</dc:date>
    </item>
    <item>
      <title>Re: SAP_All</title>
      <link>https://community.sap.com/t5/application-development-and-automation-discussions/sap-all/m-p/5453315#M1249847</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Isn't that exactly what Bernhard suggested when he wrote:&lt;/P&gt;&lt;P&gt;&amp;gt; or you create a sap_all-role by inserting the authorization data of sap_all into the empty profile of that role and modify then the values as per your needs.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Edited by: Jurjen Heeck on Apr 1, 2009 1:09 PM&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 01 Apr 2009 11:08:26 GMT</pubDate>
      <guid>https://community.sap.com/t5/application-development-and-automation-discussions/sap-all/m-p/5453315#M1249847</guid>
      <dc:creator>jurjen_heeck</dc:creator>
      <dc:date>2009-04-01T11:08:26Z</dc:date>
    </item>
    <item>
      <title>Re: SAP_All</title>
      <link>https://community.sap.com/t5/application-development-and-automation-discussions/sap-all/m-p/5453316#M1249848</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Apperciate all for  your valuable advise.I had a doubt while doing as per your advise.After copying the SAP_All,I have to eliminate the SPRO access now.So,I checked in SU24 what are the authorization object connected with SPRO.It displays a long list.I struck here which one need to considered or not.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Help me out of this!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cheers!&lt;/P&gt;&lt;P&gt;Naveen&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 01 Apr 2009 11:39:24 GMT</pubDate>
      <guid>https://community.sap.com/t5/application-development-and-automation-discussions/sap-all/m-p/5453316#M1249848</guid>
      <dc:creator>Former Member</dc:creator>
      <dc:date>2009-04-01T11:39:24Z</dc:date>
    </item>
    <item>
      <title>Re: SAP_All</title>
      <link>https://community.sap.com/t5/application-development-and-automation-discussions/sap-all/m-p/5453317#M1249849</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;OK, first of all, let me question the basic idea here (I can see some moderator colleagues rolling on the floor already...).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;From what I read, you're ok with people being able to modify tables and run arbitrary reports, let alone mess up all business transactions, as long as they don't have access to customizing?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sorry, but that makes no sense at all.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Constructive approach: what is that role supposed tobe used for...?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Frank.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 01 Apr 2009 12:42:20 GMT</pubDate>
      <guid>https://community.sap.com/t5/application-development-and-automation-discussions/sap-all/m-p/5453317#M1249849</guid>
      <dc:creator>koehntopp</dc:creator>
      <dc:date>2009-04-01T12:42:20Z</dc:date>
    </item>
  </channel>
</rss>

