2017 Sep 25 8:38 PM
I would like to create an authorization group for t-code SE38 - that excludes a handful of programs.
so for example it would give the user access to all SE38 reports - except the few listed.
2017 Sep 26 4:07 AM
Hi Shane
Each program would need to be in auth group. Read up on S_PROGRAM/S_PROGNAM authorisations
It might be more pain than worth. If you change auth groups on standard programs then you might have issues with your security access and have to go through to update SU24 for impacted transactions
Generally, avoiding SE38 being granted to users in production and then build custom transactions when you want to provide access as you won't know if you have excluded all critical/risk programs that you need to.
Regards
Colleen
I would like to create an authorization group for t-code SE38 - that excludes a handful of programs.
so for example it would give the user access to all SE38 reports - except the few listed.
2017 Sep 26 4:07 AM
Hi Shane
Each program would need to be in auth group. Read up on S_PROGRAM/S_PROGNAM authorisations
It might be more pain than worth. If you change auth groups on standard programs then you might have issues with your security access and have to go through to update SU24 for impacted transactions
Generally, avoiding SE38 being granted to users in production and then build custom transactions when you want to provide access as you won't know if you have excluded all critical/risk programs that you need to.
Regards
Colleen
2017 Sep 26 4:35 PM
normally - I agree - except I'm the system administrator - so I need SE38. But our auditors don't want me running two specific programs that could delete audit logs. I'm not sure how else to do that.
2017 Sep 26 5:58 PM
2017 Oct 11 4:34 PM
SE38 is very powerful Tcode, as you able to modify any program, Please go with SA38.
| User | Count |
|---|---|
| 3 | |
| 2 | |
| 2 | |
| 1 | |
| 1 | |
| 1 | |
| 1 | |
| 1 | |
| 1 | |
| 1 |