You can maintain the following role authorizations in cFolders, cProjects, and xRPM using the SAP Profile Generator.
The following roles are delivered with cFolders:
Role |
Authorization |
User (SAP_CFX_USER)
|
Use cFolders in the Internet browser - create collaborations, objects, status profiles and so on. |
User administrator (SAP_CFX_USER_ADMINISTRATOR) |
Includes standard user authorizations (see SAP_CFX_USER) and authorization to start cFolders for the first time. In addition, authorization to create, change, and delete users, reset their passwords, and also assign all SAP_CFX* roles. |
Network administrator (SAP_CFX_NETWORK_ADMINISTRATOR) |
Includes standard user authorizations (see SAP_CFX_USER) and authorization to change all network settings and release batch jobs (for status and e-mail notifications). |
cFolders administrator (SAP_CFX_CFOLDERS_ADMINISTRATOR) |
Includes standard user authorizations (see SAP_CFX_USER) and authorization to maintain the features and appearance of cFolders (for example, reset system settings and languages). |
Superuser (SAP_CFX_SUPER_USER_ADMIN) |
Includes standard user authorizations (see SAP_CFX_USER) and authorization to manage all collaborations, status profiles, and user groups.
|
Administrator (SAP_CFX_ADMINISTRATOR) |
Includes standard user authorizations (see SAP_CFX_USER) and authorization to administer the cFolders application. |
E-mail system user (SAP_CFX_EMAIL_SYSTEM_USER) |
Authorization to start the jobs for summary e-mails and reminder notifications for status management. Assigned automatically in the background when you create a system user. This role is not assigned to any actual users, it is just for the system user. |
You can use these SAP standard roles or create your own, as required. These can include the SAP_CFX roles or you can define your own authorization objects.
Except for creating roles, you carry out all settings for cFolders in the cFolders application. There are no other Customizing activities to be carried out in the SAP Web AS.
The following single roles are delivered with cProjects:
Role |
Authorization |
SAP_CPR_PROJECT_ADMINISTRATOR |
Create projects (project definitions). |
SAP_CPR_TEMPLATE_ADMINISTRATOR
|
Create, change, read, and delete all templates in cProjects. |
SAP_CPR_USER
|
Use cProjects, but no authorization to perform any activities in a particular project. To do this users need project-specific authorizations, which can be distributed either directly or through their assignment to a role. This role must be included in every cProjects composite role. |
The following composite roles are delivered with cProjects:
Role |
Authorization |
SAP_CPR_DECISON_MAKER |
cProjects decision maker. Contains the role SAP_CPR_USER. |
SAP_CPR_INTERESTED |
cProjects interested party. Contains the role SAP_CPR_USER. |
SAP_CPR_MEMBER |
cProjects team member. Contains the role SAP_CPR_USER. |
SAP_CPR_PROJECT_LEAD |
cProjects project manager. Contains the role SAP_CPR_PROJECT_ADMINISTRATOR and SAP_CPR_USER |
SAP_CPR_TEMPLATE_RESPONSIBLE |
cProjects template responsible. Contains the roles SAP_CPR_TEMPLATE_ADMINISTRATOR and SAP_CPR_USER |
You can use these SAP standard roles or create your own. For more information see the solution management content for cProjects under Solutions → mySAP PLM → Configuration Settings → SAP cProject Suite 4.00 → General Settings → Activating Single Roles for cProjects and Creating Roles for the Project-Specific Authorization Checks.
In cProjects, you carry out Customizing activities in the SAP Web AS. Only system administrators, that is, users with the authorization profile SAP_ALL, are authorized to carry out Customizing for cProjects.
In the xRPM frontend application, SAP delivers one portal role (Portfolio Manager) and three subordinate roles. For more information about the front-end roles, see the Business Package for Project, Portfolio Management and Design Collaboration 4.0 in the SAP Library under SAP xApps → SAP xApp Resource and Portfolio Management.
In the xRPM back-end system, SAP delivers the following roles:
Roles |
Authorization |
SAP_XRPM_ADMINISTRATOR |
Superuser authorization in xRPM. Used to create new portfolios. This role also provides the assigned user full access to all xRPM business objects in the system. |
SAP_XRPM_USER |
General xRPM user. All users should be assigned this role. Has general authorizations to use xRPM, but no specific object access. This access must be assigned to the user via ACLs. |
You can use these SAP standard roles or create your own. For more information about roles in xRPM, see the solution management content for xRPM under Organizational Areas → Product Development and Introduction → Business Processes → Strategic Portfolio Management → Configuration Content for xRPM.