Show TOC

CO-PA-Specific Authorization Objects

In this activity, you can define your own CO-PA authorization objects to supplement those contained in the standard SAP System.

You can make it easier to define authorizations by activating characteristic derivation during authorization checks. For example, if you want to protect the product group in your reports, it is enough to define authorizations for individual products. When a user runs a report for the product group, the system derives the product group from the product in the authorization. If the user has authorization for the product, he or she can run the report on the product group. This means that the "Product" field and the authorizations attached to it at the product level do not have to be copied to the authorization object.

For more on activating derivation, see the sections on defining the individual CO-PA authorization objects.

Note

Authorization objects created here are automatically considered by the profile generator (see Create Role/Profile and Assign Users ).