<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: over authorization in Application Development and Automation Discussions</title>
    <link>https://community.sap.com/t5/application-development-and-automation-discussions/over-authorization/m-p/12150075#M1976961</link>
    <description>&lt;P&gt;Many thanks &lt;SPAN class="mention-scrubbed"&gt;veselina.peykova&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;I will go through your mentioned refrences&lt;/P&gt;&lt;P&gt;best regards&lt;BR /&gt;                            &lt;/P&gt;</description>
    <pubDate>Wed, 04 Mar 2020 09:59:01 GMT</pubDate>
    <dc:creator>bashayreh</dc:creator>
    <dc:date>2020-03-04T09:59:01Z</dc:date>
    <item>
      <title>over authorization</title>
      <link>https://community.sap.com/t5/application-development-and-automation-discussions/over-authorization/m-p/12150073#M1976959</link>
      <description>&lt;P&gt;Hi everyone&lt;/P&gt;
  &lt;P&gt;in order to give access for a user on a fiori tile, I created a Role that contains the Technical Catalogue of that tile. the result is that the user is able to add new tiles and use them while he should not be able to do so. for example a sales representative is getting access to changing the cost price of items!&lt;/P&gt;
  &lt;P&gt;please advise what is the best way to solve my issue&lt;/P&gt;
  &lt;P&gt;best regards&lt;/P&gt;</description>
      <pubDate>Tue, 03 Mar 2020 15:18:34 GMT</pubDate>
      <guid>https://community.sap.com/t5/application-development-and-automation-discussions/over-authorization/m-p/12150073#M1976959</guid>
      <dc:creator>bashayreh</dc:creator>
      <dc:date>2020-03-03T15:18:34Z</dc:date>
    </item>
    <item>
      <title>Re: over authorization</title>
      <link>https://community.sap.com/t5/application-development-and-automation-discussions/over-authorization/m-p/12150074#M1976960</link>
      <description>&lt;P&gt;You are not supposed to use technical catalogs directly for creating user roles.&lt;/P&gt;&lt;P&gt;The recommended approach is to create business catalogs referencing technical catalogs with only the needed apps, then you create groups (well thought out groups can make the life of users a bit easier) and use these when you create the PFCG roles.&lt;/P&gt;&lt;P&gt;For more information - refer to the official help documentation: &lt;A href="https://help.sap.com/viewer/d4650bf68a9f4f67a1fda673f09926a9/753.04/en-US/af35d42e7d4f49d7b8e46080cd01c299.html"&gt;Best Practices for Managing Catalogs&lt;/A&gt;.&lt;/P&gt;&lt;P&gt;There is also a nice self-paced openSAP course where this topic is really well explained: &lt;A href="https://open.sap.com/courses/s4h14/items/3qhRV1obs2Ay0y2MnZf4Rl"&gt;Key Technical Topics in a System Conversion to SAP S/4HANA&lt;/A&gt;. Enrolling is free of charge.&lt;/P&gt;</description>
      <pubDate>Wed, 04 Mar 2020 06:09:56 GMT</pubDate>
      <guid>https://community.sap.com/t5/application-development-and-automation-discussions/over-authorization/m-p/12150074#M1976960</guid>
      <dc:creator>VeselinaPeykova</dc:creator>
      <dc:date>2020-03-04T06:09:56Z</dc:date>
    </item>
    <item>
      <title>Re: over authorization</title>
      <link>https://community.sap.com/t5/application-development-and-automation-discussions/over-authorization/m-p/12150075#M1976961</link>
      <description>&lt;P&gt;Many thanks &lt;SPAN class="mention-scrubbed"&gt;veselina.peykova&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;I will go through your mentioned refrences&lt;/P&gt;&lt;P&gt;best regards&lt;BR /&gt;                            &lt;/P&gt;</description>
      <pubDate>Wed, 04 Mar 2020 09:59:01 GMT</pubDate>
      <guid>https://community.sap.com/t5/application-development-and-automation-discussions/over-authorization/m-p/12150075#M1976961</guid>
      <dc:creator>bashayreh</dc:creator>
      <dc:date>2020-03-04T09:59:01Z</dc:date>
    </item>
    <item>
      <title>Re: over authorization</title>
      <link>https://community.sap.com/t5/application-development-and-automation-discussions/over-authorization/m-p/12150076#M1976962</link>
      <description>&lt;P&gt;If its  sandbox or dev, I dont see any issue with this approach, but for going forward into DEV, QA and PRD you should follow what Veselina has said. &lt;/P&gt;</description>
      <pubDate>Wed, 04 Mar 2020 12:02:21 GMT</pubDate>
      <guid>https://community.sap.com/t5/application-development-and-automation-discussions/over-authorization/m-p/12150076#M1976962</guid>
      <dc:creator>former_member612251</dc:creator>
      <dc:date>2020-03-04T12:02:21Z</dc:date>
    </item>
  </channel>
</rss>

