<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Context sensitive authorization in Application Development and Automation Discussions</title>
    <link>https://community.sap.com/t5/application-development-and-automation-discussions/context-sensitive-authorization/m-p/2724274#M632175</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;hi netra,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I can't think of a reason to use ORGIN and ORGINCON simultaneously.  &lt;/P&gt;&lt;P&gt;what's the use of using both types of objects when you can use P_ORGINCON without specifying a PROFL.  this will be identical to the P_ORGIN object.&lt;/P&gt;&lt;P&gt;have you SU24-ed the P_ORGINCON checks yet?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;also, in your test-environment have you specified structural profiles at all? I would like to know whether that's working correctly as well.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 17 Aug 2007 13:15:24 GMT</pubDate>
    <dc:creator>former_member74904</dc:creator>
    <dc:date>2007-08-17T13:15:24Z</dc:date>
    <item>
      <title>Context sensitive authorization</title>
      <link>https://community.sap.com/t5/application-development-and-automation-discussions/context-sensitive-authorization/m-p/2724273#M632174</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi all:&lt;/P&gt;&lt;P&gt;I am looking at whether Context sensitive authorization check is worth implementing in my organization.  I have read sap help and some other documentation and all of them seem to suggest that when turning Context switch AUTSW-INCON to 1 we should turn off HR master data switch off AUTSW-ORGIN to 0.  They can't be implemented simultenously.  However in my case I think I could use if both of these switches are on so I can use context for some roles and not for others.  When I tested this in a test client, it seems to be working fine with both switches set to 1.  My question to you is: Is this possible and what are some impacts that I my encounter because of this? I would appreciate your input.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Netra&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 16 Aug 2007 22:51:44 GMT</pubDate>
      <guid>https://community.sap.com/t5/application-development-and-automation-discussions/context-sensitive-authorization/m-p/2724273#M632174</guid>
      <dc:creator>Former Member</dc:creator>
      <dc:date>2007-08-16T22:51:44Z</dc:date>
    </item>
    <item>
      <title>Re: Context sensitive authorization</title>
      <link>https://community.sap.com/t5/application-development-and-automation-discussions/context-sensitive-authorization/m-p/2724274#M632175</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;hi netra,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I can't think of a reason to use ORGIN and ORGINCON simultaneously.  &lt;/P&gt;&lt;P&gt;what's the use of using both types of objects when you can use P_ORGINCON without specifying a PROFL.  this will be identical to the P_ORGIN object.&lt;/P&gt;&lt;P&gt;have you SU24-ed the P_ORGINCON checks yet?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;also, in your test-environment have you specified structural profiles at all? I would like to know whether that's working correctly as well.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 17 Aug 2007 13:15:24 GMT</pubDate>
      <guid>https://community.sap.com/t5/application-development-and-automation-discussions/context-sensitive-authorization/m-p/2724274#M632175</guid>
      <dc:creator>former_member74904</dc:creator>
      <dc:date>2007-08-17T13:15:24Z</dc:date>
    </item>
    <item>
      <title>Re: Context sensitive authorization</title>
      <link>https://community.sap.com/t5/application-development-and-automation-discussions/context-sensitive-authorization/m-p/2724275#M632176</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks Dimitri,&lt;/P&gt;&lt;P&gt;I understand what you are saying but the roles here are already setup and functioning with P_ORGIN and most of these have manually inserted objects.  If I implement just Context then I will need to change all the roles to replace ORGIN with ORGINCON.  I think that is a quite a bit of work.  If I can have them activated simultaneously then I can only change few roles where the solution is needed.  No, I have not started working on SU24 yet and I am not sure how helpful it will be maintain this as most roles have manually inserted objects.  And also in my test environment I have str. profile setup and i have specified them in my context object.  &lt;/P&gt;&lt;P&gt;I appreciate your thoughts.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Netra&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 17 Aug 2007 15:19:38 GMT</pubDate>
      <guid>https://community.sap.com/t5/application-development-and-automation-discussions/context-sensitive-authorization/m-p/2724275#M632176</guid>
      <dc:creator>Former Member</dc:creator>
      <dc:date>2007-08-17T15:19:38Z</dc:date>
    </item>
    <item>
      <title>Re: Context sensitive authorization</title>
      <link>https://community.sap.com/t5/application-development-and-automation-discussions/context-sensitive-authorization/m-p/2724276#M632177</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;hi again Netra,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I understand that it will be quite some work changing all P_ORGIN roles to P_ORGINCON.  as a matter of fact I'm in the middle of doing so myself...&lt;/P&gt;&lt;P&gt;what I can tell you however, is that leaving the situation as you describe above, will result in poorer performance because now both objects will be checked at runtime. &lt;/P&gt;&lt;P&gt;I don't think you will notice on the testenvironment, but it could have a significant impact in a live productive system. &lt;/P&gt;&lt;P&gt;anyway, good luck on your project and let me know how things work out for you!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks,&lt;/P&gt;&lt;P&gt;dimitri&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 20 Aug 2007 09:53:42 GMT</pubDate>
      <guid>https://community.sap.com/t5/application-development-and-automation-discussions/context-sensitive-authorization/m-p/2724276#M632177</guid>
      <dc:creator>former_member74904</dc:creator>
      <dc:date>2007-08-20T09:53:42Z</dc:date>
    </item>
    <item>
      <title>Re: Context sensitive authorization</title>
      <link>https://community.sap.com/t5/application-development-and-automation-discussions/context-sensitive-authorization/m-p/2724277#M632178</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks Dimitri.  I did not really think about performance issues, thanks!  I am going to include ORGINCON and disable ORGIN as you suggested. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks again,&lt;/P&gt;&lt;P&gt;Netra&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 20 Aug 2007 15:58:31 GMT</pubDate>
      <guid>https://community.sap.com/t5/application-development-and-automation-discussions/context-sensitive-authorization/m-p/2724277#M632178</guid>
      <dc:creator>Former Member</dc:creator>
      <dc:date>2007-08-20T15:58:31Z</dc:date>
    </item>
    <item>
      <title>Re: Context sensitive authorization</title>
      <link>https://community.sap.com/t5/application-development-and-automation-discussions/context-sensitive-authorization/m-p/2724278#M632179</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;As soon as P_ORGINCON is switched on, old roles using P_ORGIN doesn't work even if P_ORGIN is on too. System starts complaining like "No read authorization for...".&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So how can you use both at the same time? Roles need to be change? Am I missing something? Help will be appreciated.&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Sukhbir Singh&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 03 Mar 2008 18:47:46 GMT</pubDate>
      <guid>https://community.sap.com/t5/application-development-and-automation-discussions/context-sensitive-authorization/m-p/2724278#M632179</guid>
      <dc:creator>sukhbir_singh3</dc:creator>
      <dc:date>2008-03-03T18:47:46Z</dc:date>
    </item>
  </channel>
</rss>

