Users Authorization Users must be setup and roles

  • Slides: 12
Download presentation
Users & Authorization Users must be setup and roles assigned to user master records

Users & Authorization Users must be setup and roles assigned to user master records before you can use the SAP System. A user can only log on to the system if he or she has a user master record. A user menu and authorizations are also assigned to the user master record via one or more roles.

Application Server Present. Server Users in the R/3 Environment Operating System R/3 User Operating

Application Server Present. Server Users in the R/3 Environment Operating System R/3 User Operating System Dispatcher D B V Database Server OS User Admin. User . . . Operating System OS User DB User

The User Master Record All user data required for R/3 System access is stored

The User Master Record All user data required for R/3 System access is stored in the user master record in eight categories

Types of users

Types of users

Authorization Concept User master record Profile Authorization for Task A Authorization for Task B

Authorization Concept User master record Profile Authorization for Task A Authorization for Task B Action Transaction permitted? Authorizations assigned? Objects needing protection Vendor Company code Material Plant

Authorization Check SAP GUI Dynpro Authority Check User Context OK? No Yes Processing Message

Authorization Check SAP GUI Dynpro Authority Check User Context OK? No Yes Processing Message

Authorization object Object class Financial Accounting Object: Customer company code Company Code Activity Customer

Authorization object Object class Financial Accounting Object: Customer company code Company Code Activity Customer company code: Authorization A 0001 -0009 display, change Customer company code: Authorization B * display

User Administration Authorizations Object User Master Maintenance: Authorizations (S_USER_AUT) Fields ACTIVITY Value 01 02

User Administration Authorizations Object User Master Maintenance: Authorizations (S_USER_AUT) Fields ACTIVITY Value 01 02 03 06 07 08 22 24 Meaning Create Change Display Delete Activate Display change documents Assign authorization profiles Archive AUTH Limited name space for the assignment of authorization names OBJECT Authorization objects

Central User Administration With central user administration, the creation and maintenance of all user

Central User Administration With central user administration, the creation and maintenance of all user master data is performed in a single R/3 System Client 100 Client 200 QAS System Client 100 Client 200 Client 300 PRD System DEV System Client 100

Information System

Information System