Authorizations for Data Replication

To retrieve business data from SAP S/4HANA through Cloud Data Integration (CDI), a technical user is required. This user requires a role with at least the following authorization object contained and configured as follows:

Authorization Object

Field

Activities

S_DHCDCCDS

ACTVT

  • 01 – Add or Create

  • 02 - Change

  • 03 - Display

  • 06 - Delete

DHCDCSBTYP

ODP

DHCDCCDSRS

C1

DHCDCCDSNM

*

S_DHCDCSTP

DHCDCSBTYP

ODP

ACTVT

  • 01 - Add or Create

  • 03 - Display

  • 06 - Delete

S_RS_CDS_X

DDLXTRNAME

*

DDLXTRPART

Data

DDLXTRRELS

C1

ACTVT

03 - Display

S_START

AUTHPGMID

R3TR

AUTHOBJTYP

G4BA

AUTHOBJNAM

CDI_CDS

S_BTCH_ADM

BTCADMIN

Y – Background Administrator Authorization

S_BTCH_JOB

JOBACTION

RELE - Release Jobs (Released Automatically When Scheduled)

JOBGROUP

*

Troubleshooting

If there are issues accessing the published OData V2 or V4 services (for example, missing basic authorizations for SAP Gateway), we recommend conducting an authorization trace. Use transaction STAUTHTRACE for the trace, with a system-wide trace being preferred. Afterward, extend the authorization profile of the technical user by adding the missing authorizations.