Quantcast
Channel: SCN : Discussion List - Security
Viewing all articles
Browse latest Browse all 2353

Interpretation of authorization provided

$
0
0

Dear Experts,

 

I am trying to identify users who have access to specific transaction codes. 


Considering T.Code ME11 (Create Purchase Information Record) as an example, following are the queries that i have.  Kindly advise.

 

a) Does an user need to have Field "ACTVT" updated as 01 (Create) for ALL the below authorization objects OR would the user be able to create with ANY ONE of the objects ?

 

Authorization ObjectAuthorization Object Text
M_EINF_EKGPurchasing Group in Purchasing Info Record
M_EINF_EKOPurchasing Organization in Purchasing Info Record
M_EINF_WRK Plant in Purchasing Info Record
V_KOND_VEACondition: Auth. For Use/Appl./Cond.Type/Table
V_KONH_EKOPurchasing Organization in Master Condition
V_KONH_VKSCondition: Authorization For Condition Types

 

b) If the Field "ACTVT" is updated as * (Wildcard) - Does this mean that the user has access to all the activities (including create) ?

 

c) If the user is given access to the above authorization object (Ex. M_EINF_EKG) , BUT field (Ex. EKGRP (Purchasing Group)) is not updated ie., BLANK, would that mean that the user would not be able to create info record even though he has access to ME11 ?

 

d) If the respective field (for ex) EKGRP is given a value of * (Wildcard) - Would this mean that the user would have access to all the purchasing groups ?

 

Appreciate your time for reading this query and your response.  Please let me know if i am not clear on my query.

 

Thanks !

Uday


Viewing all articles
Browse latest Browse all 2353

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>