Other Security-Relevant
Information
With the field Access Auth. (Access Authorization) in Table V_T582A (Infotype attributes (Customizing)), you can control access to an infotype record depending on whether the record belongs to the area of responsibility of a person responsible on the current date. For more information, see the Implementation Guide for Personnel Management under Personnel Administration ® Customizing Procedures ® Infotypes ® Infotypes. Note in particular the help for the Access Authorization field.
The following technical utilities read data without the user’s authorizations being checked. You should therefore only assign relevant report authorizations to roles containing system administrator functions.
● Reports with the prefix RHDBST*: Database statistics
● Reports with the prefix RHCHECK*: Consistency checks for Organizational Managementand Personnel Development data.
If required, you can use the following reports (developed for SAP internal use) for testing purposes. However, SAP does not accept any responsibility for these reports:
● Report RPCHKCONSISTENCY: (Consistency check for HR master data)
● Report RPUSCNTC (Find Inconsistencies in Time Constraints)
The views in the Implementation Guide for HR Administrative Services are protected separately by a grouping for the authorization check to prevent users without authorization maintaining person-related data. Under the field name DICBERCLS (Authorization Group), you can set the following in the authorization object S_TABU_DIS:
● Switch PASC: Authorization check for all views of HR Administrative Services in which no Customizing settings were made that affect authorization checks for the users of HR Administrative Services.
● Switch PASA: Additional authorization check for the views that may possibly affect the authorization check for users of HR Administrative Services.