2006 Sep 28 9:50 PM
Hi,
would like to change the Maintainance status of Auth obj from "Changed" or "Maintained" to --> "Manual" . Is it possible, without adding the same manually.
planning to do this as during merging, "Manual" auth objs are not disturbed.
Thanks,
Sam
Message was edited by: Sam
2006 Oct 02 3:45 PM
Hi Sam,
It sounds like you are planning to "merge" your roles by inserting
the profiles of the selected roles. While this will accomplish your goal
of getting access for your users - it will be a nightmare to maintain.
As already mentioned, you will be bypassing the functions of profile generator in
the way it was intended to function. If you want to merge 2 roles, then you
should only merge the menu sections of the roles and then allow PG to
select your authorization objects. If you only have profiles, then look
at the values in S_TCODE and insert these into the role menu section.
Regards,
JC
Hi,
would like to change the Maintainance status of Auth obj from "Changed" or "Maintained" to --> "Manual" . Is it possible, without adding the same manually.
planning to do this as during merging, "Manual" auth objs are not disturbed.
Thanks,
Sam
Message was edited by: Sam
2006 Sep 28 10:52 PM
Hi,
simply deactivate (do not delete) the original authentication and add it again. No other way (besides permanently removing it from SU24 of course).
Regards,
Dominik
2006 Sep 29 9:23 AM
Hi Sam,
This does not help you. This way you return to manual maintenance of profiles and you do not use the advantages of PFCG (and SU24). In fact, you should get rid of manually added objects and maintain them through SU24.
The problem you are facing is due to deleting objects from roles or changing objects without creating a copy of the object. <b>Never</b> delete standard objects. They will reappear. Always inactivate objects you do not want in a role - or change SU24 from "check maintain" to "check".
Best regards,
Christian
2006 Oct 02 3:45 PM
Hi Sam,
It sounds like you are planning to "merge" your roles by inserting
the profiles of the selected roles. While this will accomplish your goal
of getting access for your users - it will be a nightmare to maintain.
As already mentioned, you will be bypassing the functions of profile generator in
the way it was intended to function. If you want to merge 2 roles, then you
should only merge the menu sections of the roles and then allow PG to
select your authorization objects. If you only have profiles, then look
at the values in S_TCODE and insert these into the role menu section.
Regards,
JC