2016 Apr 01 11:06 AM
Hi ,
We have multiple company codes in an Utility company.
My requirement is to block all SAP transactions processing for a company code without affecting processing of customers in other company codes.
I am planning to restrict users from accessing any of the SAP transactions for a particular company code via SAP Security.
Is there any efficient way to achieve same ?
Kindly provide experts views.
Cheers,
Manoj K
2016 Apr 01 3:57 PM
Hi,
You might find the following SCN discussion thread useful:
http://scn.sap.com/thread/3885587#
Regards,
Ivor Martin
2016 Apr 03 11:07 AM
Hi Manoj,
The best practice would be to use the authorization object, F_KKVK_BUK, assigned to the User's role profile.
In the Auth. Object, maintain only the Company Code, for which you want to allow the Users to perform the actions in IS-U.
Hope it helps..
Thanks
Amlan
2016 Apr 05 1:20 PM
Thanks ..I have found out that Auth Object and trying to modify roles .
Still I wanted to know if any other efficient way to achieve CoCd restriction.
As I need to extract list of all SAP standard and custom transactions which could be too lengthy.
Also I need to give user a read-only access but not edit access.
I tried creating a test role and restricting only required CoCd , but it didn't allow me to open any of the SAP TCODES...Not even in display mode.
Thanks,
Manoj K
2016 May 12 11:58 AM
Hi, Manoj.
I'm used to work with this auth. object:
F_BKPF_BUK - Accounting Document: Authorization for Company Codes
See if it works for you.
Regards,