<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Structural authorisation in HR-PD in Application Development and Automation Discussions</title>
    <link>https://community.sap.com/t5/application-development-and-automation-discussions/structural-authorisation-in-hr-pd/m-p/2034414#M417785</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi there,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can somebody kindly advise how I can set up the following authorisation in PD.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In the Qualification Catalog OOQA, we are giving a display authorisation to the PD administrators to see the entire structure in the qualification master data catalog. We created a profile for Q and QK, along with evaluation paths Q-Q and QK-QK defined for each of them, and this works fine.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Now the question is that, we would like to retrict the admin's access in PPPM so that,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1) when they assign qualification to Position profile, they can only pick up a certain qualification from the qualification structure. Those that are no supposed to be picked, should be hidden (or the "checkbox" should not be visible)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2) When they assign qualification to Person profile, they are allowed to pick-up nearly all the qualification available in the qualification catalog, except for one specific qualification group.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If I restricted objects Q and QK with some specific object IDs, then the view in OOQA will also be affected.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I currently have two authorisation profiles for Q&amp;amp;QK. One without the Object IDs so that the user gets full display access to the whole structure in OOQA; the other one with Object IDs defined. I also tried it with PLOG_CON and still couldn't get it to work.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Does anyone have any solution for this?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I've been fighting with this issue for weeks now, I will REALLY REALLY appreciate your advise.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 27 Mar 2007 16:57:26 GMT</pubDate>
    <dc:creator>Former Member</dc:creator>
    <dc:date>2007-03-27T16:57:26Z</dc:date>
    <item>
      <title>Structural authorisation in HR-PD</title>
      <link>https://community.sap.com/t5/application-development-and-automation-discussions/structural-authorisation-in-hr-pd/m-p/2034414#M417785</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi there,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can somebody kindly advise how I can set up the following authorisation in PD.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In the Qualification Catalog OOQA, we are giving a display authorisation to the PD administrators to see the entire structure in the qualification master data catalog. We created a profile for Q and QK, along with evaluation paths Q-Q and QK-QK defined for each of them, and this works fine.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Now the question is that, we would like to retrict the admin's access in PPPM so that,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1) when they assign qualification to Position profile, they can only pick up a certain qualification from the qualification structure. Those that are no supposed to be picked, should be hidden (or the "checkbox" should not be visible)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2) When they assign qualification to Person profile, they are allowed to pick-up nearly all the qualification available in the qualification catalog, except for one specific qualification group.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If I restricted objects Q and QK with some specific object IDs, then the view in OOQA will also be affected.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I currently have two authorisation profiles for Q&amp;amp;QK. One without the Object IDs so that the user gets full display access to the whole structure in OOQA; the other one with Object IDs defined. I also tried it with PLOG_CON and still couldn't get it to work.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Does anyone have any solution for this?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I've been fighting with this issue for weeks now, I will REALLY REALLY appreciate your advise.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 27 Mar 2007 16:57:26 GMT</pubDate>
      <guid>https://community.sap.com/t5/application-development-and-automation-discussions/structural-authorisation-in-hr-pd/m-p/2034414#M417785</guid>
      <dc:creator>Former Member</dc:creator>
      <dc:date>2007-03-27T16:57:26Z</dc:date>
    </item>
    <item>
      <title>Re: Structural authorisation in HR-PD</title>
      <link>https://community.sap.com/t5/application-development-and-automation-discussions/structural-authorisation-in-hr-pd/m-p/2034415#M417786</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I dont have much idea about Qual Objects with respect to Structural Authorization. But there is an option to put-in a Function module with the structural profile. Why dont you explore that option if you dont get a straight forward solution? In that way you can determine how and which objects are selected and authorised to view. Write your own function module (on the likes of RH_GET_MANAGER_ASSIGNMENT) and assign it to the profile.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;Chandra&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 18 Apr 2007 16:56:03 GMT</pubDate>
      <guid>https://community.sap.com/t5/application-development-and-automation-discussions/structural-authorisation-in-hr-pd/m-p/2034415#M417786</guid>
      <dc:creator>former_member66268</dc:creator>
      <dc:date>2007-04-18T16:56:03Z</dc:date>
    </item>
    <item>
      <title>Re: Structural authorisation in HR-PD</title>
      <link>https://community.sap.com/t5/application-development-and-automation-discussions/structural-authorisation-in-hr-pd/m-p/2034416#M417787</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi BT,&lt;/P&gt;&lt;P&gt;what values did u use for the PLOG_CON object?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You might want to use more than one instance of PLOG_CON object &lt;/P&gt;&lt;P&gt;with difference in values&lt;/P&gt;&lt;P&gt;PLOG_CON1:&lt;/P&gt;&lt;P&gt;Object Type (S) Position&lt;/P&gt;&lt;P&gt;Authorization Profile field (restricted PD Profile)&lt;/P&gt;&lt;P&gt;PLOG_CON2:&lt;/P&gt;&lt;P&gt;with Object type P (person)&lt;/P&gt;&lt;P&gt;Authorization  Profile (giving full access)&lt;/P&gt;&lt;P&gt;Both however need to have corresponding required Infotypes and subtype read/write access which should be same.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope this helps&lt;/P&gt;&lt;P&gt;Let me know if it works&lt;/P&gt;&lt;P&gt;Cheers&lt;/P&gt;&lt;P&gt;Manohar&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 18 Apr 2007 19:07:24 GMT</pubDate>
      <guid>https://community.sap.com/t5/application-development-and-automation-discussions/structural-authorisation-in-hr-pd/m-p/2034416#M417787</guid>
      <dc:creator>manohar_kappala2</dc:creator>
      <dc:date>2007-04-18T19:07:24Z</dc:date>
    </item>
    <item>
      <title>Re: Structural authorisation in HR-PD</title>
      <link>https://community.sap.com/t5/application-development-and-automation-discussions/structural-authorisation-in-hr-pd/m-p/2034417#M417788</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks Chandra and Manohar!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I coldn't get PLOG_CON to work. It seems like the system still looks for PLOG during the authorisation check. I tried to activate PLOGI-PDCON via table T77S0 (not sure if this is relevant), but the same error persists.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We are running on ECC 6.0, and the documentation in SAP for PLOG_CON says - "IMPORTANT: Do NOT use this authorization object. It does not work." Any advice, Manohar?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Chandra, could you also explain in detail where/how I can define the function module for my case?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks and appreciate your time!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 19 Apr 2007 05:50:46 GMT</pubDate>
      <guid>https://community.sap.com/t5/application-development-and-automation-discussions/structural-authorisation-in-hr-pd/m-p/2034417#M417788</guid>
      <dc:creator>Former Member</dc:creator>
      <dc:date>2007-04-19T05:50:46Z</dc:date>
    </item>
    <item>
      <title>Re: Structural authorisation in HR-PD</title>
      <link>https://community.sap.com/t5/application-development-and-automation-discussions/structural-authorisation-in-hr-pd/m-p/2034418#M417789</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yeah thats true the object is not working properly.&lt;/P&gt;&lt;P&gt;Customization is the only other option i can see.&lt;/P&gt;&lt;P&gt;As the PLOG control the HR Objects but is not capable to distinguish between them.&lt;/P&gt;&lt;P&gt;For eg: you can control whether this role provides access to position type objects but it cannot be controlled which positions (in a given planversion) he can access.&lt;/P&gt;&lt;P&gt;Perhaps you can try to see if a function module exists or else custom create one.&lt;/P&gt;&lt;P&gt;So that you can add that while creating the PD profile.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 19 Apr 2007 13:46:36 GMT</pubDate>
      <guid>https://community.sap.com/t5/application-development-and-automation-discussions/structural-authorisation-in-hr-pd/m-p/2034418#M417789</guid>
      <dc:creator>manohar_kappala2</dc:creator>
      <dc:date>2007-04-19T13:46:36Z</dc:date>
    </item>
    <item>
      <title>Re: Structural authorisation in HR-PD</title>
      <link>https://community.sap.com/t5/application-development-and-automation-discussions/structural-authorisation-in-hr-pd/m-p/2034419#M417790</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello&lt;/P&gt;&lt;P&gt;You need to make sure that the context specific switcher (Tcode OOAC) are appropriately turned on. Once these switchers (ORGPD, INCON) are turned on, PLOG_CON will be checked. You would also like to change the status of this object in SU24 from not checked to Checked and maintained. Once this is done, try the same profiles. It should be fine.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Snehal Pandya&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 19 Apr 2007 23:53:37 GMT</pubDate>
      <guid>https://community.sap.com/t5/application-development-and-automation-discussions/structural-authorisation-in-hr-pd/m-p/2034419#M417790</guid>
      <dc:creator>Former Member</dc:creator>
      <dc:date>2007-04-19T23:53:37Z</dc:date>
    </item>
    <item>
      <title>Re: Structural authorisation in HR-PD</title>
      <link>https://community.sap.com/t5/application-development-and-automation-discussions/structural-authorisation-in-hr-pd/m-p/2034420#M417791</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi &lt;/P&gt;&lt;P&gt;The switches through OOAC are infact entries in table T77S0.&lt;/P&gt;&lt;P&gt;Once they are activated the checks for these objects come into play but &lt;/P&gt;&lt;P&gt;in SU21, when you see the documentation for PLOG_CON there is an SAP message saying &lt;/P&gt;&lt;P&gt;NOTE: Do NOT use this authorization object. It does not work.&lt;/P&gt;&lt;P&gt;Sneha can you please let us know the release and the patches where you are able to use the PLOG_CON?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks Regards,&lt;/P&gt;&lt;P&gt;Manohar&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 20 Apr 2007 01:24:22 GMT</pubDate>
      <guid>https://community.sap.com/t5/application-development-and-automation-discussions/structural-authorisation-in-hr-pd/m-p/2034420#M417791</guid>
      <dc:creator>manohar_kappala2</dc:creator>
      <dc:date>2007-04-20T01:24:22Z</dc:date>
    </item>
  </channel>
</rss>

