Wednesday, April 29, 2009

Structural Authorizations


Regular role authorisation is used for regular authorization. for example Transaction codes : PA20, PR20, CAT2, CADO, PPMDT, PR05 - It is done based on role assigned by Security group.

The user id mentioned in IT 0105 is assigned to the TC PFCG

The structural authorization has both benefits of positive and negative tests. Benefit being as soon as the manager moves from 1 position to another, he can no longer access his old team's information. Disadvantage being the maintenance and initial design needs to be well thought out. also the Org management has to be defined in advance and any modifications later on can cause headaches.

Steps to do Structural Authorization:

Step1 : TC OOAC
Activate the Structural Authorization switch

Step 2 : TC OOSP
Create Structural Authorization profiles

Step 3 : Assign Structural Authorization profile to user Id
TC : SE38 and assign report RHRPROFL0 enter object id for example ( Org unit )

Assign regular Role authorization..



1 comment: