consolut Authorization for SAP
Easy Authorization Management for SAP

CRM_SSCORG - Organization Data Authorization Object for SSC

BAL_S_LOG - Application Log: Log header data   Vendor Master (General Section)  
This documentation is copyright by SAP AG.

Definition

This authorization object is used to determine the authorization to process service requests within the Employee Interaction Center (EIC).

Defined fields

  • Allowed activity (ACTVT)
  • Create (01)

  • Modify (02)

  • Read (03)

  • Delete (06)

  • All(*)

Note: The authorization for Create and Modifyalso allows Read. However, the authorization for Create does not grant the authorization for Modify.

  • Organization unit of the employee (SSC_ORGUNT).
Agents in the EIC application are usually assigned to specific organization units to process employees' service requests. In addition, the value * indicates no restriction.
  • Company code of the employee (SSC_CCODE).
Agents in the EIC application are usually assigned to specific company codes to process employees' service requests. In addition, the value *indicates no restriction.
  • Country code of the employee (COUNTRY).
Agents in the EIC application are usually assigned to specific country codes to process employees' service requests. In addition, the value * indicates no restriction.

Note: SAP recommends activating the implementation CRM_SSC_AUTH_CAT_ORG of BAdI CRM_ORDER_AUTH_CHECK. Once this implementation is activated you do not need to activate Access Control Engine (ACE) rules.

Restrict to one set of values per activity for the decision fields of the authorization object if the following applies:

  • BAdI implementation CRM_SSC_AUTH_CAT_ORG is not active.
  • ACE rule SSC_ORG_UNIT is active
  • ACE rule SSC_CON_CODE is active
  • ACE rule SSC_ORG_UNIT is active

You can activate ACE rules in Customizing for Customer RelationshipManagement under Basic Functions-> Access Control Engine.

Note: If authorization is based on both organization data (authorization object CRM_SSCORG) and categorydata (authorization object CRM_SSCCAT), SAP recommends activating only the above BAdI implementation. In other cases it is sufficient to activate only ACE rules.




consolut Authorization for SAP
Easy Authorization Management for SAP


BAL_S_LOG - Application Log: Log header data   SUBST_MERGE_LIST - merge external lists to one complete list with #if... logic for R3up  
This documentation is copyright by SAP AG.


Length: 3014 Date: 20120526 Time: 185038     triton ( 93 ms )