The SAP Authorization Concept 

Authorization checks allow you to protect any functions or objects you choose within the R/3 System.

The programmer decides which aspects of a function should be checked, and how.

The system administrator creates authorizations, which are assigned to individual users in collections called profiles. Generally speaking, profiles are created using the Profile Generator, although they can also be generated manually.

The following graphic shows the authorization components and explains their relationship. You can display an explanation by clicking on one of the components. Examples in the explanations relate to the Authorization Check Scenario.

 

For details about the graphic, see the following explanations:

User Master Records

Profiles

Authorizations

Authorization Objects

Fields

 

For more information, see:

Assigning Authorizations

Authorization Checks

Authorization Check Scenario