Authorization Objects and Roles Used by SAP MDG, Central Governance
The following authorization objects are used by all components of Master Data Governance.
Note
To obtain more detailed information about specific authorization objects proceed as follows:
Choose (Transaction SU21
).
Select the authorization object using
(Find
) and then choose
(Display
).
On the Display authorization object
dialog box choose Display Object Documentation
.
Authorization Object | Description |
|---|---|
| Master Data: Transport |
| Key Mapping |
| Change Request |
| Master Data |
| Hierarchies |
| UI Configuration |
| Authorization for outbound messages for receiver systems |
| Create Outbound Messages |
| Authorization for iViews for personal object worklists |
| Execute Side Panel |
| Usage of Business Context Viewer |
| Data Export |
| Data Import |
| Authority object for SAP SLO Data migration server |
Caution
For information about component specific authorization objects, see the corresponding sections:
Role | Name |
|---|---|
| Master Data Governance Administrator |
This role contains authorizations needed for administrative tasks and for setting up a base configuration in all components of Master Data Governance. Some authorizations enable critical activities. If multiple users in your organization are entrusted with the administration and configuration of Master Data Governance, we recommend that you split the role into several roles, each with its own set of authorizations. The role does not contain the authorizations for the respective master data transactions.
To use the Enterprise Search
users have to be assigned to the role SAP_ESH_SEARCH
Enterprise Search Hub (Composite): Authorizations for searching
.