Show TOC

Maintain Authorizations

This step explains which authorization objects are defined for the individual functions of the application in the standard SAP R/3 System. For these objects, you can maintain authorizations in the SAP System.

You can display the corresponding fields for each authorization object. The contents of these fields are checked by the SAP System during the authorization check . If the contents do not agree with the value in the authorization object for the user, then it is not possible for the user to edit the object.

Authorizations can be best maintained using roles.

Note that maintaining authorizations using roles is a new function.

This step is used to createActivity groups an generate authorization profiles using the Profile Generator.

Activities

To assign an authorization profile to a user, do the following:

1. Create an activity group
2. Enter a description
3. Select transactions
4. Create and edit authorizations
5. Assigns users and compare the user master (in doing so, the profile is entered in the user's master record)
6. Transport activity groups, if desired

Detailed documentation

For more information about the procedures, see transaction documentation

Note

You can also use authorization profiles you created manually or were delivered by SAP, in activity groups. You can create an activity group without a menu and include the corresponding profile in the authorization data of the activity group.

In the fourth step, choose "Edit -> Add authorization -> From profile" to add the authorization profile data to the activity group.

The following is information for the previous procedure up version 4.0.

Authorization objects

The following authorization objects are checked when the individual functions of the Logistics Information System (LIS) are carried out.

Standard analyses

Functions for ... Authorization object
Info structure MRP controller M_IS_DISPO
Info structure
Purchasing organization M_IS_EKORG
Info structure
Purchasing group M_IS_EKGRP
Info structure key figure M_IS_KENNZ
Info structure
Warehouse number M_IS_LGNUM
Info structure
Material type M_IS_MTART
Info structure division M_IS_SPART
Info structure
Sales office M_IS_VKBUR
Info structure
Sales organization M_IS_VKORG
Info structure
Distribution channel M_IS_VTWEG
Info structure
Material group M_IS_MATKL
Info structure plant M_IS_WERKS
Selection versions M_IS_SELVS
General hierarchy M_HIER_MCK

Flexible analyses

Functions for ... Authorization object
Evaluation structure/
Application M_INFO_MCC
Evaluation structure/
DD Table M_DDIC_DOB
Evaluation/
Application M_AUSW_MCC
Evaluation/
Evaluation structure M_INFO_MCB
Planning
Functions for ... Authorization object
Info structure/
Version M_INFO_MCD
Object class "Materials Management - master data":
Material master:
Maintenance status M_MATE_STA
Material master:
Plant M_MATE_WRK
Object class "Production Planning":
Sales and Operations Planning
(SOP): Version C_PLAN_SOP
Sales and Operations Planning
(SOP): Application C_APPL_SOP

Information systems

Functions for ... Authorization object
Early Warning System M_MCYA_EWS

Logistics Information Library (LIL)

Functions for ... Authorization object
Info set calls M_LIBI_IST
Info sets M_LIBI_INS
Key figures M_LIBI_KNZ
Key figure retrieval M_LIBI_KZS
Key figure retrieval via info sets M_LIBI_KSI
Key figure retrieval via
classification M_LIBI_KSK
Key figure retrieval using
text strings M_LIBI_KST

Logistics Data Warehouse

Functions for ... Authorization object
Define updating:
Application/Info structure M_INFO_UPD
Field catalog/
Application M_FCAT_ANL
Update formula/conditions:
application M_INFO_FOR
Generation: info structures/
update definition M_INFO_GEN
Info structure/
Application M_INFO_ANL
Statistical setup info structure/
Application M_NEUA_AUS

Customizing in Logistics Information System (LIS)

Functions for ... Authorization object
Update parameters/
Application M_CUFO_MCS
Applications M_APPL_ANL
LIS Inbound interface M_EVNT_ANL
Settings for standard analyses/
Application M_CUST_MCS
Logistics
Information Library M_LIBI_CUS

Standard settings

In the standard R/3 System, authorizations are supplied for all of the authorization objects of the application.

You will find maintenance authorizations and display authorizations for the authorization objects.

The standard authorizations apply to all organizational units.

Activities

1. Check whether the standard authorizations meet your requirements.
Proceed as follows:
a) Select the object class of the application.
The list of the authorization objects will be displayed.
b) Select an authorization object.
The list of the authorizations for this object will be displayed.
2. Create new authorizations based on your requirements where necessary.
Proceed as follows:
a) Choose Authorization -> Create.
b) Enter the authorization and a short text.
c) Select a field to maintain the individual field values.
d) Save your settings.
e) Activate the new authorization.

Notes for transport

To transfer authorizations, proceed as follows:

1. Select the function Authorization -> Transfer in the object list.
The list of transferable authorizations is shown.
2. Mark the authorizations that you want to transfer into the productive system.
3. Confirm your entry using ENTER and specify a correction number.

If technical names of the separate authorization objects are also displayed in the object list, proceed as follows:

1. Select an authorization object in the object list.
You now branch to the list of authorizations for the selected authorization object.
2. Select Authorization -> Transfer.
The list of transferable authorizations is displayed.
3. Mark the authorizations that you wish to transfer to the productive system.
4. Confirm your entry using ENTER and specify a correction number.