
Portal users must have roles in R/3 to be able to view or work with R/3 content in the portal. For the content administrator to view or manipulate business objects based on R/3 transactions, or for any user to see iViews based on R/3 transactions, they must have roles defined in the back-end system.
With an R/3 system role, the user can use the Drag&Relate navigation mechanism to click on a field in the content area and execute it with parameters simply by dragging it onto any drag-enabled iView in the navigation panel of the portal.
To assign roles in the SAP R/3 system, there are three possibilities here:
Creating and Maintaining User Roles in the SAP R/3 System
To create a new role:
The role assigned to the portal user must contain at least the following authorizations in order to have access to the SAP R/3 system from the portal and in order to be able to execute Drag&Relate operations:
16FUGRRFC1, RSAN, SDIF, SDIFRUNTIME, SDWZ, SKBW, SPR4, SPRT, SRFC, SSCV, SURL, SUSO, SUSW, SU_USER, SWOR, SYST, SYSU
SPO1
For detailed information about the individual steps, see the SAP NetWeaver documentation underSecurity → Identity Management → Users and Roles (BC-SEC-USR).