‎2009 Jun 25 1:22 PM
For one user required structural authorizations given, but he is not able to see in pa20 the end user details. in SU53 it's showing faile HR structural authorizations.
Please throw some light on this
‎2009 Jun 25 2:06 PM
Hi,
HR authorization related is normally connected with object P_ORGIN.
SU53 dump may not work for the problem related HR authorization as SU53 dump always provides last failed authorization object and values. For identifying the correct authorization object, and field values ST01 trace should be taken aginst the user..
This will show total aurization checked details.. where authorization check will be failed, it will show with value, Return code 4 (RC=4).
Assign role as per RC=4 values, where it is trying to get maximum values in object P_ORGIN.
e.g.
You may find some check failed, where it is trying get the value as ' ', and some where it is trying to get value as * in the same field.
So you have to assign role where it is defined as * in that perticular field..
Regards,
Sandip.
‎2009 Jun 25 2:57 PM
Hi,
Please check the settings for authorization objects P_ORGIN and P_PERNR. Kindly take the st01 trace and analyse the missing authorizations for the P_* auth objects.
You may refer to the following link to know about the various authorization checks:
http://help.sap.com/erp2005_ehp_02/helpdata/en/34/49ba3b3bf00152e10000000a114084/frameset.htm
‎2009 Jun 25 3:44 PM
Hi Sreenivasu,
What structural switch are on ?? See if you have P_ORGINCON or P_ORGXX failing on.
Also you may have to check if you have assigned PD profile in T77UA table.
Let us know
Thanks
Santoah kumar
‎2009 Jun 25 4:01 PM
Hi..
We generally assign company standard structural authorization, according to given list of users.
the user pa20 screen shot its showing " results incomplete due to missing authorization"
Where as in su53 for user its showing failed structural authorization.
below is su53 error
Date 24.06.2009 14:17:04 Plan Version 01 Obj. Type P Object ID 11085138 Start Date 01.01.1800 End Date 31.12.9999 Action DISP
Date 24.06.2009 14:17:04 Plan Version 01 Obj. Type O Object ID 00001237 Start Date 16.01.2009 End Date 31.12.9999 Action DISP
Date 24.06.2009 14:17:04 Plan Version 01 Obj. Type P Object ID 11085138 Start Date 01.01.1800 End Date 31.12.9999 Action INSE
Date 24.06.2009 14:17:04 Plan Version 01 Obj. Type O Object ID 00001237 Start Date 16.01.2009 End
please throw some light on this
‎2009 Jun 25 4:53 PM
Hi
Based on the Structural SU53 you need to check the PD Profile and the evaluation path.
Check the PD profile for that user in OOSB by clicking the blue I button and see if the Org and Person is listed. If not then user is trying to access employee from other Org. Actions will be controlled by PLOG.
Let us know
thanks
santosh