Show TOC

 Example: Administrator Should Not Be Allowed to Edit Own Data

Requirement

An administrator should not be able to edit his or her own salary or other salary-relevant data stored under his or her own personnel number. For this reason, you want to deny all administrators who may have access to their own personnel number write access to their own personnel number.

Realization

  • The AUTSW PERNR main switch must be activated for the authorization check by personnel number to take place.

  • The user assignment for the corresponding administrator must be maintained in infotype 0105.

  • Each employee affected is granted the following P_PERNR authorization:

AUTHC = W, S, D, E

PSIGN = E

INFTY = *

SUBTY = *