<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: SPRO Access in Application Development and Automation Discussions</title>
    <link>https://community.sap.com/t5/application-development-and-automation-discussions/spro-access/m-p/6727778#M1456570</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I tried this with a project I created in SPRO_ADMIN.&lt;/P&gt;&lt;P&gt;The User can access SPRO, thats right. But can he really &lt;STRONG&gt;execute&lt;/STRONG&gt; other functions than the allowed? The user can see them, thats right, but can he execute?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Julia&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 16 Mar 2010 07:40:33 GMT</pubDate>
    <dc:creator>Former Member</dc:creator>
    <dc:date>2010-03-16T07:40:33Z</dc:date>
    <item>
      <title>SPRO Access</title>
      <link>https://community.sap.com/t5/application-development-and-automation-discussions/spro-access/m-p/6727775#M1456567</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I had similar situation as in the below link:&lt;/P&gt;&lt;P&gt;&lt;A class="jive_macro jive_macro_thread" href="https://community.sap.com/" __jive_macro_name="thread" modifiedtitle="true" __default_attr="1621708"&gt;&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have a requirement to assign only SAP Utilities-&amp;gt;Intercompany Data Exchange to the user&lt;/P&gt;&lt;P&gt;I did as per Julia, but in my case, the user is able to access other nodes in SAP Utilities also, but not other than SAP Utilities(eg:Enterprise Structure, Real Estate etc)&lt;/P&gt;&lt;P&gt;I added only SAP Utilities-&amp;gt;Intercompany Data Exchange in the new Project via SPRO_ADMIN &amp;amp; created role by adding that new Project, but still the user is able to access other nodes present in SAP Utilities (eg: Device Mgmt, Contract Billing etc)&lt;/P&gt;&lt;P&gt;Can anyone tell me, why this is happening?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Sid&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 12 Mar 2010 12:18:27 GMT</pubDate>
      <guid>https://community.sap.com/t5/application-development-and-automation-discussions/spro-access/m-p/6727775#M1456567</guid>
      <dc:creator>Former Member</dc:creator>
      <dc:date>2010-03-12T12:18:27Z</dc:date>
    </item>
    <item>
      <title>Re: SPRO Access</title>
      <link>https://community.sap.com/t5/application-development-and-automation-discussions/spro-access/m-p/6727776#M1456568</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;This is happening because the project is containing access to TCode SPRO along with the node you selected only. Make sure that you are building the project and the role without SPRO while using such option to assign in the role.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Dipanjan&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 14 Mar 2010 09:52:39 GMT</pubDate>
      <guid>https://community.sap.com/t5/application-development-and-automation-discussions/spro-access/m-p/6727776#M1456568</guid>
      <dc:creator>sdipanjan</dc:creator>
      <dc:date>2010-03-14T09:52:39Z</dc:date>
    </item>
    <item>
      <title>Re: SPRO Access</title>
      <link>https://community.sap.com/t5/application-development-and-automation-discussions/spro-access/m-p/6727777#M1456569</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks. But then how would the user be able to access IMG?&lt;/P&gt;&lt;P&gt;If we remove SPRO from the role, then the user need to know/remember all the T Codes related to the node for which the user needs access. The user wont be able to access IMG. This should not be the case&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 15 Mar 2010 09:18:50 GMT</pubDate>
      <guid>https://community.sap.com/t5/application-development-and-automation-discussions/spro-access/m-p/6727777#M1456569</guid>
      <dc:creator>Former Member</dc:creator>
      <dc:date>2010-03-15T09:18:50Z</dc:date>
    </item>
    <item>
      <title>Re: SPRO Access</title>
      <link>https://community.sap.com/t5/application-development-and-automation-discussions/spro-access/m-p/6727778#M1456570</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I tried this with a project I created in SPRO_ADMIN.&lt;/P&gt;&lt;P&gt;The User can access SPRO, thats right. But can he really &lt;STRONG&gt;execute&lt;/STRONG&gt; other functions than the allowed? The user can see them, thats right, but can he execute?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Julia&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 16 Mar 2010 07:40:33 GMT</pubDate>
      <guid>https://community.sap.com/t5/application-development-and-automation-discussions/spro-access/m-p/6727778#M1456570</guid>
      <dc:creator>Former Member</dc:creator>
      <dc:date>2010-03-16T07:40:33Z</dc:date>
    </item>
    <item>
      <title>Re: SPRO Access</title>
      <link>https://community.sap.com/t5/application-development-and-automation-discussions/spro-access/m-p/6727779#M1456571</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Sid,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;tx SPRO is definitely necessary - that's not the problem. It is possible to restrict access to project IMGs by using authorization object S_PROJECT. It is NOT possible to restrict access to the refernce IMG as long as the user has the SPRO. That means that every user mith SPRO can SEE other nodes. Which nodes he can execute depends on the individual authorization checks of each node and the individual authorizations within your role. In my opinion the only solution for your problem is, if possible, to more restrict the autorization parameters within the role.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Dirk&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 16 Mar 2010 08:06:53 GMT</pubDate>
      <guid>https://community.sap.com/t5/application-development-and-automation-discussions/spro-access/m-p/6727779#M1456571</guid>
      <dc:creator>42</dc:creator>
      <dc:date>2010-03-16T08:06:53Z</dc:date>
    </item>
    <item>
      <title>Re: SPRO Access</title>
      <link>https://community.sap.com/t5/application-development-and-automation-discussions/spro-access/m-p/6727780#M1456572</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Julia,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Yes. He is able to access(execute) other sub-nodes other than the sub-node for which I created the Project &amp;amp; created the role&lt;/P&gt;&lt;P&gt;Seeing other nodes is not a problem, but the user should not be able to access(execute) other nodes&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sid&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Edited by: Siddhartha Varma on Mar 16, 2010 2:39 PM&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 16 Mar 2010 13:39:29 GMT</pubDate>
      <guid>https://community.sap.com/t5/application-development-and-automation-discussions/spro-access/m-p/6727780#M1456572</guid>
      <dc:creator>Former Member</dc:creator>
      <dc:date>2010-03-16T13:39:29Z</dc:date>
    </item>
    <item>
      <title>Re: SPRO Access</title>
      <link>https://community.sap.com/t5/application-development-and-automation-discussions/spro-access/m-p/6727781#M1456573</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Dirk,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Seeing the other nodes is not a problem, but the user should not be able to execute them.&lt;/P&gt;&lt;P&gt;When you try to add the only selected path in the Project, it should only allow to execute that path only (I mean nodes in the path), but its allowing to execute other sub-nodes also&lt;/P&gt;&lt;P&gt;But what I do not understand is that why the system allows to execute other sub-nodes- logically, it shoudn't!!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sid&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 16 Mar 2010 13:46:39 GMT</pubDate>
      <guid>https://community.sap.com/t5/application-development-and-automation-discussions/spro-access/m-p/6727781#M1456573</guid>
      <dc:creator>Former Member</dc:creator>
      <dc:date>2010-03-16T13:46:39Z</dc:date>
    </item>
    <item>
      <title>Re: SPRO Access</title>
      <link>https://community.sap.com/t5/application-development-and-automation-discussions/spro-access/m-p/6727782#M1456574</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&amp;gt; &lt;/P&gt;&lt;PRE&gt;&lt;CODE&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;gt; Thanks. But then how would the user be able to access IMG?&lt;/P&gt;&lt;P&gt;&amp;gt; If we remove SPRO from the role, then the user need to know/remember all the T Codes related to the node for which the user needs access. The user wont be able to access IMG. This should not be the case&lt;/P&gt;&lt;/CODE&gt;&lt;/PRE&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;please check the below link to get more information on SPRO. It is not required to give access to SPRO to give access to some part of the IMG. You need to enhance / customize the IMG while defining the project. Let me know for any confusion.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards, Dipanjan&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 16 Mar 2010 20:51:20 GMT</pubDate>
      <guid>https://community.sap.com/t5/application-development-and-automation-discussions/spro-access/m-p/6727782#M1456574</guid>
      <dc:creator>sdipanjan</dc:creator>
      <dc:date>2010-03-16T20:51:20Z</dc:date>
    </item>
    <item>
      <title>Re: SPRO Access</title>
      <link>https://community.sap.com/t5/application-development-and-automation-discussions/spro-access/m-p/6727783#M1456575</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Check whether prior to using the project views you had granted * for S_PROJECT in some other role of older manual profile, because you were not using it back then.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cheers,&lt;/P&gt;&lt;P&gt;Julius&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 16 Mar 2010 22:04:10 GMT</pubDate>
      <guid>https://community.sap.com/t5/application-development-and-automation-discussions/spro-access/m-p/6727783#M1456575</guid>
      <dc:creator>Former Member</dc:creator>
      <dc:date>2010-03-16T22:04:10Z</dc:date>
    </item>
  </channel>
</rss>

