Authorizations

Use

A special assignment of authorizations is required to ensure the consistency of the maintenance data in a distributed landscape, and to restrict the processes within this system landscape to the users responsible.

Integration

All authorizations, together with their respective user assignments, are mapped through central user administration.

The standard Plant Maintenance authorization checks are used. The system checks whether a user has authorization to create, change, or display a maintenance order or maintenance notification, for example.

Prerequisites

You are using the central user administration of the SAP system. You use component-specific authorization objects.

Features

The authorization concept functions as follows:

  1. The standard authorization check is run. The system checks whether a user has authorization to create, change, or display a maintenance order or maintenance notification, for example.

  2. From this standard authorization, the system checks whether the user has been directly assigned the authorization for the relevant reference object or the assigned, responsible work center in the user master.

  3. If this is not the case, the system also checks whether the user has the authorization for a weapon system for which that user is responsible as the usage manager . This authorization can be derived either from the authorization for a top-level reference location of a reference structure or, preferably, from the authorization for a particular construction type that is represented in a weapon system.

    In this case, you can inherit the authorization for a construction type or weapon system through a reference location or specify it for a functional location or piece of equipment directly.

  4. If this functional authorization is not found, the system checks whether a user is responsible for a particular structure. In this case, the system reads the structure of the force element step by step from the bottom up until it finds a responsible work center for which the user has been assigned higher-level authorization.

From a combination of (3) and (2) or (3) and (4), you can also restrict the authorization for the technical objects of a force element or a complete structure to a weapon system.

The user can only execute the transaction if one of the authorizations exists in this sequence.