You define user roles to grant authorizations (such as create, delete, or edit) for a set of objects in the ES Repository.
You have activated the com.sap.aii.util.server.auth.activation exchange profile parameter.
For more information about activating authorization checks, see Creating Users with Data-Dependent Authorizations
Log on to the ES Builder.
To create a new role or modify an existing role, follow the steps below:
To create a new user role, choose
.To edit an existing user role, follow the steps below:
Choose
.Select the user role you want to modify and choose Open.
In the Authorizations screen area, choose Add Authorization.
In the Selection Path and Objects column, specify the objects for which you want to define or restrict authorizations.
In the Actions column, select from the following authorizations:
Modify Base Objects
Use this option to modify objects of underlying-software component versions.
Fully Edit
Create Objects
Change Objects
Delete Objects
Use this option to modify objects of the selected software component version.
Choose Save.
Choose Activate.
After defining user roles in the ES Builder, assign them to users or user groups in the AS Java Identity Management.
More information: Creating Users with Data-Dependent Authorizations