2009 Jan 27 3:57 PM
hi frds,
i have 2 structural Authorizations and role assigned to an employee.
One structural Authorization is his personnel area org structure and the other is a common org structure..
For his personnel area he is able to view and maintain his employees...........
For the other Org structure he is able to view the structure but not the employees in it. Now my requirement how can the Authorization objects be defined, so that he can view only Infotype 0002 for the the common org structure.
2009 Jan 27 9:06 PM
Hi
Look into using context authorisations in your design concept. This is achieved by using P_ORGINCON (field PROFL) in your design - you maintain the PROFL field with the name of the structural profile used for the common org structure - by creating this link between the role and the structural profile you can prevent an overlap of activities.
For your solution you will need 2 individual roles for your user. Each role should be maintained with P_ORGINCON as described above. (This is just an example) One role should contained infotype 0002 for view/maintain access and another role should contain also contain infotype 0002 for view access only.
Also check that the swtiches are activated for context authorisations else it won't work.
There's loads of information and documentation about this so it worth using google and searching this forum.
Regards
Charmaine
Hi
Look into using context authorisations in your design concept. This is achieved by using P_ORGINCON (field PROFL) in your design - you maintain the PROFL field with the name of the structural profile used for the common org structure - by creating this link between the role and the structural profile you can prevent an overlap of activities.
For your solution you will need 2 individual roles for your user. Each role should be maintained with P_ORGINCON as described above. (This is just an example) One role should contained infotype 0002 for view/maintain access and another role should contain also contain infotype 0002 for view access only.
Also check that the swtiches are activated for context authorisations else it won't work.
There's loads of information and documentation about this so it worth using google and searching this forum.
Regards
Charmaine
2009 Jan 27 9:06 PM
Hi
Look into using context authorisations in your design concept. This is achieved by using P_ORGINCON (field PROFL) in your design - you maintain the PROFL field with the name of the structural profile used for the common org structure - by creating this link between the role and the structural profile you can prevent an overlap of activities.
For your solution you will need 2 individual roles for your user. Each role should be maintained with P_ORGINCON as described above. (This is just an example) One role should contained infotype 0002 for view/maintain access and another role should contain also contain infotype 0002 for view access only.
Also check that the swtiches are activated for context authorisations else it won't work.
There's loads of information and documentation about this so it worth using google and searching this forum.
Regards
Charmaine
2009 Jan 28 1:00 AM
THANKS FOR UR REPLY. WAHT IS THE PURPOSE OF CREATING TWO ROLES IF WE ARE GIVING VIEW ONLY ACCESS.?
2009 Jan 28 11:39 PM
It depends on the business requirement - if all the transactions in the existing role apply to both structures then use the existing role, if not - then create a new one,
| User | Count |
|---|---|
| 3 | |
| 2 | |
| 2 | |
| 1 | |
| 1 | |
| 1 | |
| 1 | |
| 1 | |
| 1 | |
| 1 |