Defining User Roles
Prerequisites
You have activated the com.sap.aii.util.server.auth.activation exchange profile parameter.
For more information about activating authorization checks, see:
-
PI: Creating Users with Data-Dependent Authorizations
Context
You define user roles to grant authorizations (such as create, delete, or edit) for a set of objects in the ES Repository.
Procedure
-
Log on to the ES Builder.
-
To create a new role or modify an existing role, follow the steps below:
-
To create a new user role, choose .
-
To edit an existing user role, follow the steps below:
-
Choose .
-
Select the user role you want to modify and choose Open .
-
-
-
In the Authorizations screen area, choose Add Authorization .
-
In the Selection Path and Objects column, specify the objects for which you want to define or restrict authorizations.
-
In the Actions column, select from the following authorizations:
-
Modify Base Objects
Use this option to modify objects of underlying-software component versions.
-
Fully Edit
-
Create Objects
-
Change Objects
-
Delete Objects
Use this option to modify objects of the selected software component version.
-
-
-
Choose Save .
-
Choose Activate .
Results
After defining user roles in the ES Builder, assign them to users or user groups in the AS Java Identity Management.

