SAP Authorizations for SEAL Systems Applications System Description Version 1.3.2 2015-10-15 SEAL Systems Copyright This document and all its parts are protected by copyright. Their use without prior written consent by SEAL Systems is prohibited and subject to prosecution. In particular, this applies to reproduction, translation, microfilming and the storing and processing in electronic systems. Customers that currently own a valid SEAL Systems software license for the product(s) described within the contents of this document, may freely distribute this documentation in electronic form (i. e. CD/File Server or Intranet) for internal usage only. All product names mentioned are the registered trademarks of the associated companies. Copyright 2002-2015 SEAL Systems AG Lohmühlweg 4 D-91341 Röttenbach Germany Contents 3 Contents 1 Introduction...............................................................................................................5 Conventions in this Documentation .....................................................6 Activate the Retrace of your Viewing Path in PDF ...............................7 Overview of Contents...........................................................................8 Description.........................................................................................................9 2 Authorizations - Overview and Import .....................................................................11 2.1 Example Roles From SEAL Systems..................................................................12 2.2 Import of Roles ...............................................................................................14 Upload a Role .....................................................................................15 Generate a Role ..................................................................................16 Execute the Comparison of a Role......................................................18 2.3 Modification and Assignment of Roles ............................................................ 19 Customize the Example Role ..............................................................20 Check Settings Different From the Standard......................................21 Assign a Role.......................................................................................23 Check the Authorization .....................................................................24 2.4 Authorization Trace and Authorization Comparison ........................................ 25 Displaying the Authorization Trace ....................................................26 Compare the Authorizations for Users...............................................28 2.5 Optional Authorizations ..................................................................................29 Reference.........................................................................................................31 3 Authorizations - Reference.......................................................................................33 /SEAL/ROLE_CA_CLASS.......................................................................34 /SEAL/ROLE_DDD_ADM .....................................................................35 /SEAL/ROLE_DDD_APP .......................................................................36 /SEAL/ROLE_DMS_BASE.....................................................................38 /SEAL/ROLE_DMS_CONV....................................................................40 /SEAL/ROLE_EXT_RFC.........................................................................42 /SEAL/ROLE_EXT_XDC ........................................................................43 /SEAL/ROLE_EXT_XMI ........................................................................44 /SEAL/ROLE_EXT_XOM.......................................................................45 /SEAL/ROLE_INST_TCODE ..................................................................46 /SEAL/ROLE_INST_TCODE_ADD .........................................................48 /SEAL/ROLE_RGUI_FULL.....................................................................49 /SEAL/ROLE_RM_ADM .......................................................................51 /SEAL/ROLE_RM_APP.........................................................................52 /SEAL/ROLE_SUPPORT........................................................................53 4 Changes ................................................................................................................... 56 Changes with Release 1.3.2 ................................................................57 Changes with Release 1.3.0 ................................................................58 Changes with Release 1.2.8 ................................................................59 Changes with Release 1.2.6 ................................................................60 Changes with Release 1.2.4 ................................................................61 Changes with Release 1.2.3 ................................................................62 Changes with Release 1.2.2 ................................................................63 Changes with Release 1.2.1 ................................................................64 Bibliography................................................................................................................. 65 SEAL Systems www.sealsystems.com 2015-10-15 Version 1.3.2 SAP Authorizations for SEAL Systems Applications System Description 4 Contents Terminology................................................................................................................. 66 Abbreviations............................................................................................................... 68 Keywords ..................................................................................................................... 69 Index............................................................................................................................ 70 SAP Authorizations for SEAL Systems Applications System Description 2015-10-15 Version 1.3.2 SEAL Systems www.sealsystems.com 1 Introduction 1 5 Introduction ....................................................................................................................................................... The SAP authorization concept is described in help.sap.com. The knowledge of this description is required to understand this documentation. requirement ....................................................................................................................................................... The SEAL Systems SAP integrations require different SAP users with certain authorizations. These authorizations may be fix, for instance the authorization to start the /seal/img transaction, or depend on the customer system, for instance the authorization to display a document of a specific document type. purpose This documentation describes the example roles provided by SEAL Systems and the importing, customizing and assigning of these roles. ....................................................................................................................................................... Certain persons at the customer are responsible for the assignment of authorizations. The templates from SEAL Systems allow an unrestricted access. Therefore they can only serve as examples. The import of the template authorizations must be coordinated with the customer. Caution templates only as example ....................................................................................................................................................... This chapter deals with the following topics: in this chapter Topic Page Conventions in this Documentation 6 Activate the Retrace of your Viewing Path in PDF 7 Overview of Contents 8 ....................................................................................................................................................... SEAL Systems www.sealsystems.com 2015-10-15 Version 1.3.2 SAP Authorizations for SEAL Systems Applications System Description 6 1 Introduction Conventions in this Documentation ....................................................................................................................................................... typography The following table lists the typographical conventions employed in this documentation. Typographical Convention Meaning Consolas File names, paths, commands, menu items, keywords, special values, short scripts and examples Consolas italic Parameters; variables that must be replaced by current values Consolas small More extensive scripts and examples ....................................................................................................................................................... SAP Authorizations for SEAL Systems Applications System Description 2015-10-15 Version 1.3.2 SEAL Systems www.sealsystems.com 1 Introduction 7 Activate the Retrace of your Viewing Path in PDF ....................................................................................................................................................... Adobe Reader provides buttons to retrace your viewing path of PDF pages that you viewed earlier. This makes the reading easier and helps to keep the central theme. description ....................................................................................................................................................... This is how you activate the buttons for retracing your viewing path in the PDF documentation as of Adobe Reader 10: Step Action 1 Activate the following options via the menu: instructions View - Show/Hide - Toolbar Items - Page Navigation • • Previous View: activate Next View: activate ....................................................................................................................................................... Adobe Reader offers the following buttons to allow you jumping forward and backward in the document while showing pages you viewed in the reverse order that you viewed them: result ....................................................................................................................................................... SEAL Systems www.sealsystems.com 2015-10-15 Version 1.3.2 SAP Authorizations for SEAL Systems Applications System Description 8 1 Introduction Overview of Contents ....................................................................................................................................................... structure This documentation has two parts: a description and a reference. The first part describes the functionality and the installation process using figures, step-bystep-procedures and explanatory texts. The second part serves as a detailed reference guide, containing configuration settings, keywords etcetera. ....................................................................................................................................................... description The description deals with the following topics: Chapter 2, Authorizations - Overview and Import, page 11, describes which authorizations are required for which SAP users for the SAP integrations from SEAL Systems. It is explained how the roles, which contain the required authorizations, are imported and how the reason of missing authorizations can be checked. ....................................................................................................................................................... reference The reference contains the following chapters: • Chapter 3, Authorizations - Reference, page 33, with an descriptions of the single and composite roles ....................................................................................................................................................... changes Chapter 4, Changes, page 56, describes the most important changes for each released module version. ....................................................................................................................................................... directories At the end of the documentation, a terminology list, abbreviation list and index are included. ....................................................................................................................................................... SAP Authorizations for SEAL Systems Applications System Description 2015-10-15 Version 1.3.2 SEAL Systems www.sealsystems.com Description 2 Authorizations - Overview and Import 2 11 Authorizations - Overview and Import ....................................................................................................................................................... The example roles provided by SEAL Systems are only intended for configuration purposes during the installation but not for the usage on productive systems. On productive systems, specific instances of the roles have to be defined. Caution - requirement ....................................................................................................................................................... This chapter deals with the following topics: in this chapter Topic Page Example Roles From SEAL Systems 12 Import of Roles 14 Modification and Assignment of Roles 19 Authorization Trace and Authorization Comparison 25 Optional Authorizations 29 ....................................................................................................................................................... SEAL Systems www.sealsystems.com 2015-10-15 Version 1.3.2 SAP Authorizations for SEAL Systems Applications System Description Example Roles From SEAL Systems 2 Authorizations - Overview and Import 12 2.1 Example Roles From SEAL Systems ....................................................................................................................................................... overview, part 1 The following example roles are provided by SEAL Systems: Role Description /SEAL/ROLE_CUST Basis - Customizing Authorizations for DMS, conversion server, class system and installation operations Caution - development tasks: For development tasks, the SAP_BC_DWB_ABAPDEVELOPER role and a developer license (SSCR - SAP Software Change Registration) is needed additionally. /SEAL/ROLE_DDD_CUST DDD - Customizing and Application Authorizations for the SAP user for the installation, starting of and working with SEAL DDD Caution - requirement: In addition to that, the /SEAL/ROLE_CUST role is required. /SEAL/ROLE_EXT Server - System User Authorization for the SAP user for the SEAL server Hint - background knowledge: The system user is used at output and conversion solutions to execute the access from the output/ conversion server to the SAP system. These accesses are performed without dialog with a user of the System type (previously CPIC). The connection is realized by RFC. Therefore additional authorizations are required. The system user requires the authorization to execute the current application for instance the DMS like a user of the SAP GUI. Because the system user executes jobs of various dialog users, the system user requires more comprehensive authorizations as an individual dialog user. ............................................................................................................................. To be continued SAP Authorizations for SEAL Systems Applications System Description 2015-10-15 Version 1.3.2 SEAL Systems www.sealsystems.com Example Roles From SEAL Systems 2 Authorizations - Overview and Import 13 Example Roles From SEAL Systems, Continuation ....................................................................................................................................................... Continuation: overview, part 2 Role Description /SEAL/ROLE_RGUI_FULL DMS Repro GUI Authorizations for the SAP user for starting DMS Repro GUI Caution - requirement: In addition to that, the /SEAL/ROLE_CUST role is required. /SEAL/ROLE_RM_CUST Authorization for Records Management Authorizations for the SAP user for Records Management Caution - requirement: In addition to that, the /SEAL/ROLE_CUST role is required. /SEAL/ROLE_SUPPORT SEAL Systems administrator Authorizations for the SAP administrator of SEAL Systems products Caution - requirement: Additionally, the /seal/role_dms_base and / seal/role_dms_conv from /seal/role_cust and /seal/role_ddd_adm and /seal/ role_ddd_app roles are required. ....................................................................................................................................................... → Authorizations - Reference, page 33 related top- ....................................................................................................................................................... SEAL Systems www.sealsystems.com 2015-10-15 Version 1.3.2 ics SAP Authorizations for SEAL Systems Applications System Description Import of Roles 2 Authorizations - Overview and Import 14 2.2 Import of Roles ....................................................................................................................................................... description SEAL Systems provides the roles as files. You can load these in the SAP system via the profile generator. ....................................................................................................................................................... required actions The following actions are required for the import and activation of the roles: Action Page Upload a Role 15 Generate a Role 16 Execute the Comparison of a Role 18 ....................................................................................................................................................... SAP Authorizations for SEAL Systems Applications System Description 2015-10-15 Version 1.3.2 SEAL Systems www.sealsystems.com Import of Roles 2 Authorizations - Overview and Import 15 Upload a Role ....................................................................................................................................................... First, import the transports from SEAL Systems before you load the roles in order to avoid problems with missing authorizations. requirement .............................................................................................................................. This is how you load roles to the SAP system: Step Action 1 Start the pfcg transaction. 2 Select the menu item instructions Role→Upload 3 Confirm the information. 4 Select the file containing the roles: 1. Pass _seal_role_ext.sap 2. Pass _seal_role_cust.sap 3. Pass if you use products from SEAL Systems in the Records Management environment _seal_role_rm_cust.sap 4. Pass if you use SEAL Document Distribution Director _seal_role_ddd_cust.sap 5. Pass if you use DMS Repro GUI _seal_role_rgui_full.sap 6. Pass for the SAP administrator of SEAL Systems products _seal_role_support.sap Hint - delivery: The role files are located in the main directory of the transport package. 5 Confirm the information. .............................................................................................................................. SEAL Systems www.sealsystems.com 2015-10-15 Version 1.3.2 SAP Authorizations for SEAL Systems Applications System Description Import of Roles 2 Authorizations - Overview and Import 16 Generate a Role ....................................................................................................................................................... requirement → Upload a Role, page 15 ....................................................................................................................................................... purpose Roles have to be generated in order to be available in the SAP backend system. ....................................................................................................................................................... instructions, part 1 This is how you generate a loaded role: Step Action 1 Start the pfcg transaction. 2 Select the menu item Utilities→Mass Generation 3 Activate the following options and execute the activation with • Roles with non-current profiles • Role: /seal/role* • Generate automatically : ............................................................................................................................. To be continued SAP Authorizations for SEAL Systems Applications System Description 2015-10-15 Version 1.3.2 SEAL Systems www.sealsystems.com Import of Roles 2 Authorizations - Overview and Import 17 Generate a Role, Continuation ....................................................................................................................................................... Continuation: Step Action 4 Click online: instructions, part 2 ....................................................................................................................................................... After the generation the list of the processed roles is displayed: result ....................................................................................................................................................... SEAL Systems www.sealsystems.com 2015-10-15 Version 1.3.2 SAP Authorizations for SEAL Systems Applications System Description Import of Roles 2 Authorizations - Overview and Import 18 Execute the Comparison of a Role ....................................................................................................................................................... requirement → Generate a Role, page 16 ....................................................................................................................................................... purpose Roles have to be synchronized in order to apply the changes to the user master data. ....................................................................................................................................................... instructions This is how you start the comparison of the generated role for the assigned user: Step Action 1 Start the pfcg transaction. 2 Select the menu item Utilities→Mass Comparison 3 Activate the following options and execute the mass compare with : • • • • Role: /seal/* Perform User Master Comparison Profile Matchup Composite Role Reconciliation ....................................................................................................................................................... SAP Authorizations for SEAL Systems Applications System Description 2015-10-15 Version 1.3.2 SEAL Systems www.sealsystems.com Modification and Assignment of Roles 2 Authorizations - Overview and Import 2.3 19 Modification and Assignment of Roles ....................................................................................................................................................... → Import of Roles, page 14 requirement ....................................................................................................................................................... The following actions are required after the activation of the roles: required actions Action Page Customize the Example Role 20 Check Settings Different From the Standard 21 Assign a Role 23 Check the Authorization 24 ....................................................................................................................................................... SEAL Systems www.sealsystems.com 2015-10-15 Version 1.3.2 SAP Authorizations for SEAL Systems Applications System Description Modification and Assignment of Roles 2 Authorizations - Overview and Import 20 Customize the Example Role ....................................................................................................................................................... description The example roles provided by SEAL Systems contain all required authorizations without restrictions. You may copy these roles and modify them according to your requirements. ....................................................................................................................................................... instructions This is how you customize the example role from SEAL Systems: Step Action 1 Start the pfcg transaction. 2 Select the desired role and copy it. 3 Customize the copied role in the Authorizations tab with: Change Authorization Data 4 Save and generate the role. ....................................................................................................................................................... related topics → Check Settings Different From the Standard, page 21 ....................................................................................................................................................... SAP Authorizations for SEAL Systems Applications System Description 2015-10-15 Version 1.3.2 SEAL Systems www.sealsystems.com Modification and Assignment of Roles 2 Authorizations - Overview and Import 21 Check Settings Different From the Standard ....................................................................................................................................................... The example roles contain some authorizations that are passed from the standard and have been changed or maintained manually. You may compare these modified settings with the default settings. description ....................................................................................................................................................... This is how you compare the modified settings within the example roles from SEAL Systems with the standard values: Step Action 1 Start the pfcg transaction. 2 Select the desired role. 3 Open the authorizations in the Authorizations tab via: instructions, part 1 Change Authorization Data 4 Modified authorizations are displayed as Maintained ally. The modified values are dark blue colored. or Manu- Select the modified authorization object and open the list of transactions that check this authorization object - the list displays the default values - via Utilities→Authorization Object Assignments. Example: .............................................................................................................................To be continued SEAL Systems www.sealsystems.com 2015-10-15 Version 1.3.2 SAP Authorizations for SEAL Systems Applications System Description Modification and Assignment of Roles 2 Authorizations - Overview and Import 22 Check Settings Different From the Standard, Continuation ....................................................................................................................................................... instructions, part 2 Continuation: Step Action 5 In addition to that, you may display the list of the default values via the su24 transaction and the identified transaction from step 4 with: • Alternative 1: Field Values • Alternative 2: Example: ....................................................................................................................................................... SAP Authorizations for SEAL Systems Applications System Description 2015-10-15 Version 1.3.2 SEAL Systems www.sealsystems.com Modification and Assignment of Roles 2 Authorizations - Overview and Import 23 Assign a Role ....................................................................................................................................................... → Customize the Example Role, page 20 requirement ....................................................................................................................................................... The customized role is assigned to the users that are using the SEAL Systems product. description ....................................................................................................................................................... This is how you assign the role to the users of the SEAL Systems product: Step Action 1 Start the su01 transaction. 2 Select a user who is to administrate the SEAL Systems product or create and process output jobs. 3 Change to the Role tab. 4 Enter the desired role. instructions ....................................................................................................................................................... After the changes, the user has to log on to the SAP system again in order that the changes take effect. hint The authorizations specified for a user can be displayed with the su56 transaction. ....................................................................................................................................................... SEAL Systems www.sealsystems.com 2015-10-15 Version 1.3.2 SAP Authorizations for SEAL Systems Applications System Description Modification and Assignment of Roles 2 Authorizations - Overview and Import 24 Check the Authorization ....................................................................................................................................................... requirement → Assign a Role, page 23 ....................................................................................................................................................... example starting transactions After assigning the role to the user, you may check whether the required authorizations for the users are available. The following instructions describe how you check the availability of authorizations for starting transaction codes. ....................................................................................................................................................... instructions This is how you check if the authorization is available: Step Action 1 Start the su01 transaction. 2 Select the user who is to start the SEAL Systems product. 3 Change to the Profiles tab. 4 Double-click the profile containing the S_TCODE authorization object in order to open the list of authorizations. Example: 5 Check if the required objects have been created for the S_TCODE authorization object. ....................................................................................................................................................... SAP Authorizations for SEAL Systems Applications System Description 2015-10-15 Version 1.3.2 SEAL Systems www.sealsystems.com Authorization Trace and Authorization Comparison 2 Authorizations - Overview and Import 2.4 25 Authorization Trace and Authorization Comparison ....................................................................................................................................................... This chapter deals with the following topics: in this chapter Topic Page Displaying the Authorization Trace 26 Compare the Authorizations for Users 28 ....................................................................................................................................................... SEAL Systems www.sealsystems.com 2015-10-15 Version 1.3.2 SAP Authorizations for SEAL Systems Applications System Description Authorization Trace and Authorization Comparison 2 Authorizations - Overview and Import 26 Displaying the Authorization Trace ....................................................................................................................................................... description Insufficient authorizations can be checked with a authorization trace. ....................................................................................................................................................... instructions This is how you display an authorization trace: Step Action 1 Log on to the application server, where also the program logs on for which the authorizations are missing. 2 Start the st01 transaction. 3 Activate the following options and start the trace with • Authorization check : Hint - restrict: The tracing can be restricted to a certain user via the Edit→Filter→Shared menu. 4 5 6 7 Execute the action which resulted in insufficient authorizations as the corresponding user. Stop the trace with Change to the evaluation with . . Select the trace and start the evaluation with . ............................................................................................................................. To be continued SAP Authorizations for SEAL Systems Applications System Description 2015-10-15 Version 1.3.2 SEAL Systems www.sealsystems.com Authorization Trace and Authorization Comparison 2 Authorizations - Overview and Import 27 Displaying the Authorization Trace, Continuation ....................................................................................................................................................... The trace list is displayed after the evaluation: result ....................................................................................................................................................... All failed checks have a return code not equal to 0, like RC=4. ....................................................................................................................................................... You can display the recent failed authorization per user via the following transaction: su53 hint - return code hint - recent failed authorization ....................................................................................................................................................... SEAL Systems www.sealsystems.com 2015-10-15 Version 1.3.2 SAP Authorizations for SEAL Systems Applications System Description Authorization Trace and Authorization Comparison 2 Authorizations - Overview and Import 28 Compare the Authorizations for Users ....................................................................................................................................................... description If one system has all required authorizations for a user and on another system some authorizations are missing, the authorizations of both systems can be compared. ....................................................................................................................................................... instructions This is how you compare the authorizations for two users on different systems: Step Action 1 Start the su01 transaction. 2 Select the menu item Information→Information System 3 Click at User Information System →Comparisons →From Users Hint - alternative: Start the sa38 transaction with rsusr050 as program. 4 Click Across Systems. 5 Select the RFC destinations of the 3 Connection to ABAP System type and the users from the systems, which you want to compare. 6 Start the comparison with . ....................................................................................................................................................... SAP Authorizations for SEAL Systems Applications System Description 2015-10-15 Version 1.3.2 SEAL Systems www.sealsystems.com Optional Authorizations 2 Authorizations - Overview and Import 2.5 29 Optional Authorizations ....................................................................................................................................................... Access to the archive with ArchiveLink < 4.5: ArchiveLink There are no templates for the authorizations of the S_WFAR_OBJ and S_DATASET authorization objects, because there the path on the applica- hint - no template tion server must be specified which depends on the installation. ....................................................................................................................................................... SEAL Systems www.sealsystems.com 2015-10-15 Version 1.3.2 SAP Authorizations for SEAL Systems Applications System Description Optional Authorizations 2 Authorizations - Overview and Import 30 SAP Authorizations for SEAL Systems Applications System Description 2015-10-15 Version 1.3.2 SEAL Systems www.sealsystems.com Reference 3 Authorizations - Reference 3 33 Authorizations - Reference ....................................................................................................................................................... The following composite and single roles are available: Role overview Authorization For /SEAL/ROLE_CUST (composite role) /SEAL/ROLE_CA_CLASS, page 34 Classification /SEAL/ROLE_DMS_BASE, page 38 DMS transactions /SEAL/ROLE_DMS_CONV, page 40 DMS conversion /SEAL/ROLE_INST_TCODE, page 46 Installation /SEAL/ROLE_INST_TCODE_ADD, page 48 Installation - additionally /SEAL/ROLE_DDD_CUST (composite role) /SEAL/ROLE_DDD_ADM, page 35 SEAL DDD - Configuration /SEAL/ROLE_DDD_APP, page 36 SEAL DDD - Application /SEAL/ROLE_EXT (composite role) /SEAL/ROLE_CA_CLASS, page 34 Classification /SEAL/ROLE_DMS_BASE, page 38 DMS transactions /SEAL/ROLE_DMS_CONV, page 40 DMS conversion /SEAL/ROLE_EXT_RFC, page 42 RFC call /SEAL/ROLE_EXT_XDC, page 43 XDC interface /SEAL/ROLE_EXT_XMI, page 44 XMI interface /SEAL/ROLE_EXT_XOM, page 45 EDC /SEAL/ROLE_RM_CUST (composite role) /SEAL/ROLE_RM_ADM, page 51 Records/Case Management Configuration /SEAL/ROLE_RM_APP, page 52 Records/Case Management Application /SEAL/ROLE_SUPPORT, page 53 SEAL Systems administrator ....................................................................................................................................................... You can display the technical view to the authorization objects, their documentation and authorization classes using the following transaction: hint - technical view su21 ....................................................................................................................................................... SEAL Systems www.sealsystems.com 2015-10-15 Version 1.3.2 SAP Authorizations for SEAL Systems Applications System Description 34 3 Authorizations - Reference /SEAL/ROLE_CA_CLASS ....................................................................................................................................................... description This example role contains authorizations for the classification. ....................................................................................................................................................... transactions The role contains the authorizations for the following transactions inclusive the authorization objects linked to them: • cl30n - Object search in classes ....................................................................................................................................................... additional authorizations The following authorizations for the class systems are provided additionally: • Authorization for Finding Objects (authorization object C_KLAH_BSE) • Authorization for Class Types (authorization object C_TCLA_BKA) • Authorization for Organizational Areas in Classification System (authorization object C_TCLS_BER) ....................................................................................................................................................... display The pfcg transaction presents the following authorization display: ....................................................................................................................................................... SAP Authorizations for SEAL Systems Applications System Description 2015-10-15 Version 1.3.2 SEAL Systems www.sealsystems.com 3 Authorizations - Reference 35 /SEAL/ROLE_DDD_ADM ....................................................................................................................................................... In addition to that, the /SEAL/ROLE_CUST role is required. requirement → Authorizations - Reference, page 33 ....................................................................................................................................................... This example role contains the authorizations for the administrator of SEAL Document Distribution Director. description ....................................................................................................................................................... The role contains the authorizations for the following transactions inclusive the authorization objects linked to them: • /seal/ddd_img - SEAL DDD - Configuration • /seal/ddd_llvl - Activate Log • /seal/ddd_log - Display Logs transactions ....................................................................................................................................................... The pfcg transaction presents the following authorization display: display ....................................................................................................................................................... SEAL Systems www.sealsystems.com 2015-10-15 Version 1.3.2 SAP Authorizations for SEAL Systems Applications System Description 36 3 Authorizations - Reference /SEAL/ROLE_DDD_APP ....................................................................................................................................................... description This example role contains the authorizations for the end-user of SEAL Document Distribution Director. It is assumed that the end user has the authorization to start DMS transactions from which SEAL Document Distribution Director is started. Otherwise, the / SEAL/ROLE_CUST role can be used as template: → Authorizations - Reference, page 33 ....................................................................................................................................................... transactions The role contains the authorizations for the following transactions inclusive the authorization objects linked to them: • /seal/ddd01 - Create Output Job • /seal/ddd02 - Change Output Job • /seal/ddd03 - Display Output Job • /seal/ddd0e - SEAL Document Distribution Director ....................................................................................................................................................... additional authorizations The following authorizations are provided additionally: • Usage of output devices (S_SPO_DEV authorization object) • Adding internal users as recipients (S_OC_SEND authorization object) for the INT, OFF, PRT communication types • Access to the output job depending on its authorization group (J_1XD_BGR authorization object, /seal/agrp field) • Activities on the output job depending on the job type and output status (J_1XD_TCS authorization object, /seal/jact, /seal/jsta, /seal/jtp field) ............................................................................................................................. To be continued SAP Authorizations for SEAL Systems Applications System Description 2015-10-15 Version 1.3.2 SEAL Systems www.sealsystems.com 3 Authorizations - Reference 37 /SEAL/ROLE_DDD_APP, Continuation ....................................................................................................................................................... The pfcg transaction presents the following authorization display: display ....................................................................................................................................................... For the SEAL Document Distribution Director module, the J1XD authorization class is used. ....................................................................................................................................................... Operations allowed for the authorization objects are for example: • 01 Create • 02 Change • 03 Display • 05 Process (output) • 06 Delete • 11 Change structure background knowledge - authorization class background knowledge - possible operations ....................................................................................................................................................... SEAL Systems www.sealsystems.com 2015-10-15 Version 1.3.2 SAP Authorizations for SEAL Systems Applications System Description 38 3 Authorizations - Reference /SEAL/ROLE_DMS_BASE ....................................................................................................................................................... description This example role contains authorizations for DMS transactions. ....................................................................................................................................................... transactions The role contains the authorizations for the following transactions inclusive the authorization objects linked to them: • cv01n - Create Document • cv02n - Change Document • cv03n - Display Document • cv04n - Find Document ....................................................................................................................................................... additional authorizations The following authorizations for the document distribution and logistics are provided additionally: • Create/Change/Display/Delete Object Link (authorization object C_DRAD_OBJ) • Authorization for Authorization Groups (authorization object C_DRAW_BGR) • Authorization for Document Access (authorization object C_DRAW_DOK) • Authorization for Document Status (authorization object C_DRAW_STA) • Authorization for Document Activities (authorization object C_DRAW_TCD) • Status-Dependent Authorizations for Documents (authorization object C_DRAW_TCS) • Authorization Object for CM (authorization object C_LO_CM) ............................................................................................................................. To be continued SAP Authorizations for SEAL Systems Applications System Description 2015-10-15 Version 1.3.2 SEAL Systems www.sealsystems.com 3 Authorizations - Reference 39 /SEAL/ROLE_DMS_BASE, Continuation ....................................................................................................................................................... The pfcg transaction presents the following authorization display: display ....................................................................................................................................................... SEAL Systems www.sealsystems.com 2015-10-15 Version 1.3.2 SAP Authorizations for SEAL Systems Applications System Description 40 3 Authorizations - Reference /SEAL/ROLE_DMS_CONV ....................................................................................................................................................... description This example role contains authorizations for DMS conversions. ....................................................................................................................................................... transactions The role contains the authorizations for the following transactions inclusive the authorization objects linked to them: • conv01 - Display Conversion Application Log • conv02 - Convert Document • conv03 - Convert a BOM Assembly • conv04 - Convert Document Structure ....................................................................................................................................................... additional authorizations The following authorizations are provided additionally: • RFC Access Authorization object S_RFC for the access to the function modules of the following function groups: • CADR • Background Processing - Operations on Background Jobs (authorization object S_BTCH_JOB) • Application Log (authorization object S_APPL_LOG) • Workflow - Work Item Handling (authorization object S_WF_WI) • Personnel Planning (authorization object PLOG) • CS BOM Authorizations (authorization object C_STUE_BER) ............................................................................................................................. To be continued SAP Authorizations for SEAL Systems Applications System Description 2015-10-15 Version 1.3.2 SEAL Systems www.sealsystems.com 3 Authorizations - Reference 41 /SEAL/ROLE_DMS_CONV, Continuation ....................................................................................................................................................... The pfcg transaction presents the following authorization display: display ....................................................................................................................................................... The authorization for the PLOG authorization object has been validated in practice. hint - PLOG ....................................................................................................................................................... SEAL Systems www.sealsystems.com 2015-10-15 Version 1.3.2 SAP Authorizations for SEAL Systems Applications System Description 42 3 Authorizations - Reference /SEAL/ROLE_EXT_RFC ....................................................................................................................................................... authorizations This role contains the following authorizations: • Access to the function modules of the following function groups for the RFC call (authorization object S_RFC): • /DVSREPRO/* • /SEAL/* • BACV • BAPT • CADR • CRFC • CVBAPI • RFC1 • SDIFRUNTIME • SPOK • SYST • SYSU • ZSEP* This role is required for the system user access to the SAP system via RFC using function modules. ....................................................................................................................................................... display The pfcg transaction presents the following authorization display: ....................................................................................................................................................... SAP Authorizations for SEAL Systems Applications System Description 2015-10-15 Version 1.3.2 SEAL Systems www.sealsystems.com 3 Authorizations - Reference 43 /SEAL/ROLE_EXT_XDC ....................................................................................................................................................... This role contains the following authorizations: • RFC Access Authorization object S_RFC for the access to the function modules of the following function groups: • RFC1 • SDIFRUNTIME • SPOD • SYST • Maintenance of output devices Authorization object S_ADMI_FCD for the following activities: • SP01 - Use of sp01 (all users) • SP0R - Spool request management (all users) • Spool - Actions (authorization object S_SPO_ACT) • Spool - Device authorizations (authorization object S_SPO_DEV) authorizations The role is required for the return of the print data within the BC-XDC interface. ....................................................................................................................................................... The pfcg transaction presents the following authorization display: display ....................................................................................................................................................... SEAL Systems www.sealsystems.com 2015-10-15 Version 1.3.2 SAP Authorizations for SEAL Systems Applications System Description 44 3 Authorizations - Reference /SEAL/ROLE_EXT_XMI ....................................................................................................................................................... authorizations This role includes the /SEAL/EX0200 authorization which is derived from the S_XMI_XOM_A SAP profile including the S_RFC and S_XMI_PROD authorization objects. This role contains the following authorizations: • Start the OMS reply function • RFC Access Authorization object S_RFC for the access to the function modules of the following function groups: • SWOR • SXMI • SXOM ....................................................................................................................................................... display The pfcg transaction presents the following authorization display: ....................................................................................................................................................... SAP Authorizations for SEAL Systems Applications System Description 2015-10-15 Version 1.3.2 SEAL Systems www.sealsystems.com 3 Authorizations - Reference 45 /SEAL/ROLE_EXT_XOM ....................................................................................................................................................... This role contains the following authorizations: • Execution of logical operating system commands (used in BC-XOM) Authorization object S_LOG_COM with the commands: • ZOMSSERVER_OFF • ZOMSSERVER_ON • ZOMSSERVER_STATUS • Maintenance of output devices (used in ED) Authorization object S_ADMI_FCD for the following activities: • SPAA - Spool administration (device administration) • SPAD - Cross-client spool administration • RFC Access Authorization object S_RFC for the access to the function modules of the following function groups: • RFC1 • SDIFRUNTIME • SXPT • SYST authorizations ....................................................................................................................................................... The pfcg transaction presents the following authorization display: display ....................................................................................................................................................... SEAL Systems www.sealsystems.com 2015-10-15 Version 1.3.2 SAP Authorizations for SEAL Systems Applications System Description 46 3 Authorizations - Reference /SEAL/ROLE_INST_TCODE ....................................................................................................................................................... transactions The role contains the authorizations for the following transactions inclusive the authorization objects linked to them: • spro - Customizing - Edit Project • sm59 - RFC Destinations (Display/Maintain) • snro - Number Range Objects • se09 - Transport Organizer • scpr20 - BC Sets (Activation) • scpr3 - BC Set (Display/Maintain) • sm34 - View Cluster Maintenance • sm30 - Table Maintenance • /seal/adm - Open Central Configuration - Version Overview • /seal/img - SEAL Systems Configuration • /seal/grp_usr - Assign/Check User Group for a Specific User • /seal/grp_adm - Assign/Check User Group Generally • /seal/log_set - Activate/Deactivate Application Log • /seal/log - Display Application Log ....................................................................................................................................................... background knowledge sm30 and sm34 Via the authorizations for the sm30 and sm34 transactions, the configuration is prohibited or allowed in principle for users of specific authorization groups. In a second step, single table configurations can be restricted to specific authorization groups. By default, all tables may be configured by all authorization groups. In this case, &NC& is entered as authorization group. With the se54 transaction, you change the authorization group for single tables. ....................................................................................................................................................... additional authorizations, part 1 The following authorizations are provided additionally: • RFC Access Authorization object S_RFC for the access to the function modules of the following function groups: • /dvsrepro/* • /seal/* • Network Administration Authorization object S_ADMI_FCD for the following activities: • NADM - Network Administration with the Transactions sm54, sm55, sm58 • Project Management (authorization object S_PROJECT) • Administration Functions in Change and Transport System (authorization object S_CTS_ADMI) ............................................................................................................................. To be continued SAP Authorizations for SEAL Systems Applications System Description 2015-10-15 Version 1.3.2 SEAL Systems www.sealsystems.com 3 Authorizations - Reference 47 /SEAL/ROLE_INST_TCODE, Continuation ....................................................................................................................................................... Continuation: • C Calls in ABAP Programs (authorization object S_C_FUNCT) • Authorization for File Access (authorization object S_DATASET) • Cross-Client Table Maintenance (authorization object S_TABU_CLI) • Table Maintenance via Standard Tools such as sm30 (authorization object S_TABU_DIS) • ABAP Workbench (authorization object S_DEVELOP) • Authorization for Document Maintenance via se61 (authorization object S_DOKU_AUT) • Authorization for the Translation Environment (authorization object S_TRANSLAT) • Transport Organizer (authorization object S_TRANSPRT) • Authorization for BC Set (authorization object S_BCSETS) • Number Range Maintenance (authorization object S_NUMBER) additional authorizations, part 2 ....................................................................................................................................................... SEAL Systems www.sealsystems.com 2015-10-15 Version 1.3.2 SAP Authorizations for SEAL Systems Applications System Description 48 3 Authorizations - Reference /SEAL/ROLE_INST_TCODE_ADD ....................................................................................................................................................... authorizations This role contains the following additional authorizations for installation transactions: • RFC Access Authorization object S_RFC for the access to the function modules of the following function groups: • STPA • Authorization for File Access (authorization object S_DATASET) • Authorization for GUI Activities (authorization object S_GUI) • ALV Standard Layout (authorization object S_ALV_LAYO) • Application Log (authorization object S_APPL_LOG) ....................................................................................................................................................... display The pfcg transaction presents the following authorization display: ....................................................................................................................................................... SAP Authorizations for SEAL Systems Applications System Description 2015-10-15 Version 1.3.2 SEAL Systems www.sealsystems.com 3 Authorizations - Reference 49 /SEAL/ROLE_RGUI_FULL ....................................................................................................................................................... In addition to that, the /SEAL/ROLE_CUST role is required. requirement → Authorizations - Reference, page 33 ....................................................................................................................................................... This example role contains authorizations for DMS Repro GUI. description ....................................................................................................................................................... The role contains the authorizations for the following transactions inclusive the authorization objects linked to them: • /dvsrepro/spad - Start of DMS Repro GUI • /dvsrepro/zrpr - Start of DMS Repro GUI transactions ....................................................................................................................................................... The following authorizations are provided additionally: • Authorization for creating, changing and printing output jobs • Access to the output job depending on its authorization group (J_1XR_BGR authorization object, begru field) • Activities on the output job depending on the job type and output status (J_1XR_STA authorization object, actvt, /seal/par, /seal/past field) The authorization is used in order to avoid that the job is output more than once (00 for not yet printed, 01 for already printed). • Access to the output job depending on its job type (J_1XR_TCD authorization object, actvt, /seal/part fields) additional authorizations .............................................................................................................................To be continued SEAL Systems www.sealsystems.com 2015-10-15 Version 1.3.2 SAP Authorizations for SEAL Systems Applications System Description 50 3 Authorizations - Reference /SEAL/ROLE_RGUI_FULL, Continuation ....................................................................................................................................................... display The pfcg transaction presents the following authorization display: ....................................................................................................................................................... background knowledge - authorization class For the DMS Repro GUI module, the J1XR authorization class is used. background knowledge - possible operations Operations allowed for the authorization objects are for example: • 01 Create or add • 02 Change • 03 Display • 06 Delete • 07 Process (output) ....................................................................................................................................................... ....................................................................................................................................................... SAP Authorizations for SEAL Systems Applications System Description 2015-10-15 Version 1.3.2 SEAL Systems www.sealsystems.com 3 Authorizations - Reference 51 /SEAL/ROLE_RM_ADM ....................................................................................................................................................... In addition to that, the /SEAL/ROLE_CUST role is required. requirement → Authorizations - Reference, page 33 ....................................................................................................................................................... This example role contains authorizations for the customizing of the Records/ Case Management. description ....................................................................................................................................................... The role contains the authorizations for the following transactions inclusive the authorization objects linked to them: • srmregedit - SRM Registry Maintenance transactions ....................................................................................................................................................... The following authorizations are provided additionally: • Authorization for Attributes (authorization object S_SRMGS_PR) • Framework Registry - Area (authorization object S_FRA_AREA) • Framework Registry - Class Role (authorization object S_FRA_CLRO) • Framework Registry - Service Provider (authorization object S_FRA_SP) • Framework Registry - Element Type (authorization object S_FRA_SPS) • Framework Registry - SP Type (authorization object S_FRA_SPTY) • Transport Organizer (authorization object S_TRANSPRT) additional authorizations ....................................................................................................................................................... SEAL Systems www.sealsystems.com 2015-10-15 Version 1.3.2 SAP Authorizations for SEAL Systems Applications System Description 52 3 Authorizations - Reference /SEAL/ROLE_RM_APP ....................................................................................................................................................... requirement In addition to that, the /SEAL/ROLE_CUST role is required. → Authorizations - Reference, page 33 ....................................................................................................................................................... description This example role contains authorizations for the end user of the Records/Case Management. ....................................................................................................................................................... transactions The role contains the authorizations for the following transactions inclusive the authorization objects linked to them: • organizer - Records Management • scase - Case Management ....................................................................................................................................................... additional authorizations The following authorizations are provided additionally: • Case Management (authorization object S_SCMG_CAS) • Case Management - Authorization for Specific Fields (authorization object S_SCMG_FLN) • Case Management - Status (authorization object S_SCMG_STA) • Case Management - Text Entries (authorization object S_SCMG_TXT) • Records Management - Authorizations for Document Content (authorization object S_SRMGS_CT) • Records Management - Authorizations for Documents (authorization object S_SRMGS_DC) • Records Management - Authorizations for Attributes (authorization object S_SRMGS_PR) • Records Management - Authorizations for Versions and Variants (authorization object S_SRMGS_VV) • SRM - Subject Catalog (authorization object S_SRMKCMNT) • SRM - Path (authorization object S_SRMPATH1) • SRM - General Authorization Object (authorization object S_SRMSY_CL) • Authorization for GUI Activities (authorization object S_GUI) • SAPscript - Standard Text (authorization object S_SCRP_TXT) • SAP Spool - Device Authorizations (authorization object S_SPO_DEV) • Application Log (authorization object S_APPL_LOG) ....................................................................................................................................................... SAP Authorizations for SEAL Systems Applications System Description 2015-10-15 Version 1.3.2 SEAL Systems www.sealsystems.com 3 Authorizations - Reference 53 /SEAL/ROLE_SUPPORT ....................................................................................................................................................... The following roles are required additionally: • /SEAL/ROLE_DMS_BASE and /SEAL/ROLE_DMS_CONV from /SEAL/ROLE_- requirement CUST • /SEAL/ROLE_DDD_ADM and /SEAL/ROLE_DDD_APP → Authorizations - Reference, page 33 ....................................................................................................................................................... This example role contains the authorizations for the SAP administrator of SEAL Systems products. description ....................................................................................................................................................... The role contains the authorizations for the following transactions inclusive the authorization objects linked to them: • /dvsrepro/* - Start of transactions in the namespace /dvsrepro/ • /seal/* - Start of transactions in the namespace /seal/ • /seal/adm - Open Central Configuration - Version Overview • /seal/chk - Check Installation • /seal/grp_adm - Assign/Check User Group Generally • /seal/grp_usr - Assign/Check User Group for a Specific User • /seal/img - SEAL Systems Configuration • /seal/log - Display Application Log • /seal/log_set - Activate/Deactivate Application Log • slg1 - Analyze Application Log • sm30 - Table Maintenance • sm34 - View Cluster Maintenance • sm59 - RFC Destinations (Display/Maintain) transactions ....................................................................................................................................................... The following authorizations are provided additionally: • Administration of RFC Destinations Authorization object S_RFC_ADM for the access to RFC destinations of type additional authorizations T • • • System Administration Authorization object S_ADMI_FCD for the following activities: • NADM - Network Administration Using Transactions sm54, sm55, sm58 • PADM - Process Administration Using Transactions sm04, sm50 Authorization object S_GUI for import/export Authorization object S_TABU_CLI for cross-client tables Authorization object S_TABU_DIS for table maintenance using standard tools Translation Environment Authorization object S_TRANSLAT for long and short texts Application Log (authorization object S_APPL_LOG) .............................................................................................................................To be continued SEAL Systems www.sealsystems.com 2015-10-15 Version 1.3.2 SAP Authorizations for SEAL Systems Applications System Description 54 3 Authorizations - Reference /SEAL/ROLE_SUPPORT, Continuation ....................................................................................................................................................... display, part 1 The pfcg transaction presents the following authorization display: ............................................................................................................................. To be continued SAP Authorizations for SEAL Systems Applications System Description 2015-10-15 Version 1.3.2 SEAL Systems www.sealsystems.com 3 Authorizations - Reference 55 /SEAL/ROLE_SUPPORT, Continuation ....................................................................................................................................................... Continuation: display, part 2 ....................................................................................................................................................... SEAL Systems www.sealsystems.com 2015-10-15 Version 1.3.2 SAP Authorizations for SEAL Systems Applications System Description 56 4 Changes 4 Changes ....................................................................................................................................................... in this chapter This chapter describes the most important changes for each released module version: Version Page Changes with Release 1.3.2 57 Changes with Release 1.3.0 58 Changes with Release 1.2.8 59 Changes with Release 1.2.6 60 Changes with Release 1.2.4 61 Changes with Release 1.2.2 63 Changes with Release 1.2.2 63 Changes with Release 1.2.1 64 ....................................................................................................................................................... SAP Authorizations for SEAL Systems Applications System Description 2015-10-15 Version 1.3.2 SEAL Systems www.sealsystems.com 4 Changes 57 Changes with Release 1.3.2 ....................................................................................................................................................... The /seal/role_ext_rfc role contains the following additional authorization: • RFC access (S_RFC) including the execution authorization for the SYSU object. /seal/role_ext_rfc ....................................................................................................................................................... SEAL Systems www.sealsystems.com 2015-10-15 Version 1.3.2 SAP Authorizations for SEAL Systems Applications System Description 58 4 Changes Changes with Release 1.3.0 ....................................................................................................................................................... /seal/role_cust The /seal/role_cust composite role replaces the /seal/role_gui role. It contains the following single roles: • /seal/role_ca_class • /seal/role_dms_base • /seal/role_dms_conv • /seal/role_inst_tcode • /seal/role_inst_tcode_add ....................................................................................................................................................... /seal/ role_ddd_cust The new /seal/role_ddd_cust composite role contains the following single roles: • /seal/role_ddd_adm • /seal/role_ddd_app (this replaces the /seal/role_ddd_full single role) ....................................................................................................................................................... /seal/ role_rm_cust The /seal/role_rm_cust composite role replaces the /seal/role_ca_rm role. It contains the following single roles: • /seal/role_rm_adm • /seal/role_rm_app ....................................................................................................................................................... /seal/role_support The /seal/role_support example role is provided for the SAP administrator of SEAL Systems products for the support. ....................................................................................................................................................... SAP Authorizations for SEAL Systems Applications System Description 2015-10-15 Version 1.3.2 SEAL Systems www.sealsystems.com 4 Changes 59 Changes with Release 1.2.8 ....................................................................................................................................................... The general authorization documentation contains the description of the example roles for DMS Repro GUI and SEAL DDD. example roles for RGUI/DDD ....................................................................................................................................................... The /seal/role_ext_rfc role contains the following additional authorizations: • RFC access (S_RFC) including the execution authorization for the CRFC, SDIFRUNTIME and SPOK object. /seal/role_ext_rfc ....................................................................................................................................................... The /seal/role_ext_xom role contains the following additional authorizations: • RFC access (S_RFC) including the execution authorization for the RFC1, SDIFRUNTIME, SXPT and SYST object. • Execution of logical operating system commands (S_LOG_COM) via the ZOMSSERVER_OFF, ZOMSSERVER_ON and ZOMSSERVER_STATUS commands. /seal/role_ext_xom ....................................................................................................................................................... SEAL Systems www.sealsystems.com 2015-10-15 Version 1.3.2 SAP Authorizations for SEAL Systems Applications System Description 60 4 Changes Changes with Release 1.2.6 ....................................................................................................................................................... /seal/role_ca_rm The /seal/role_ca_rm role has been added. /seal/ role_ddd_adm The /seal/role_ddd_adm role has been added. example roles for RGUI/DDD Hint to the product system descriptions for the example roles of DMS Repro GUI and SEAL DDD has been added. ....................................................................................................................................................... ....................................................................................................................................................... ....................................................................................................................................................... SAP Authorizations for SEAL Systems Applications System Description 2015-10-15 Version 1.3.2 SEAL Systems www.sealsystems.com 4 Changes 61 Changes with Release 1.2.4 ....................................................................................................................................................... The /seal/role_ddd_full role has been added. ....................................................................................................................................................... SEAL Systems www.sealsystems.com 2015-10-15 Version 1.3.2 /seal/ role_ddd_full SAP Authorizations for SEAL Systems Applications System Description 62 4 Changes Changes with Release 1.2.3 ....................................................................................................................................................... /seal/role_ext_xdc Missing authorization for the /seal/role_ext_xdc role are added. /seal/role_ext_xom The /seal/role_ext_xom role has been added. ....................................................................................................................................................... ....................................................................................................................................................... SAP Authorizations for SEAL Systems Applications System Description 2015-10-15 Version 1.3.2 SEAL Systems www.sealsystems.com 4 Changes 63 Changes with Release 1.2.2 ....................................................................................................................................................... The /SEAL/ROLE_EXT_XDC role with the S_ADMI_FCD authorization was defined and inserted in the /SEAL/ROLE_EXT composite role. /SEAL/ROLE_EXT_XDC ....................................................................................................................................................... SEAL Systems www.sealsystems.com 2015-10-15 Version 1.3.2 SAP Authorizations for SEAL Systems Applications System Description 64 4 Changes Changes with Release 1.2.1 ....................................................................................................................................................... /SEAL/ROLE_EXT_RFC The /SEAL/ROLE_EXT_RFC role with the authorization for the BACV and RFC1 function group was defined. ....................................................................................................................................................... SAP Authorizations for SEAL Systems Applications System Description 2015-10-15 Version 1.3.2 SEAL Systems www.sealsystems.com Bibliography 65 Bibliography .............................................................................................................................................................................................. [DMS_RGUI_TEC] DMS Repro GUI, System Description, SEAL Systems [SAP_DDD_TEC] Document Distribution Director, System Description, SEAL Systems .............................................................................................................................................................................................. SEAL Systems www.sealsystems.com 2015-10-15 Version 1.3.2 SAP Authorizations for SEAL Systems Applications System Description 66 Terminology Terminology ............................................................................................................................................................................................... The following section explains the most important terms that are used in this documentation. Terms iden fied by → refer to other terms in this sec on. BC Set BC Sets (Business Configuration Set) provide functions to document and analyze customizing settings to simplify the customizing. Authorization Instance of an →authoriza on object, that means a combina on of allowed values for each authorization field of the authorization object. An authorization allows to execute a specific action in the SAP system. Authorization group Specified names that can be used in authorization objects in order to check against them. Authorization object Abstract object that will be checked in the programs with the current values. Authorization objects are divided into authorization classes. Customizing Configuring the SAP system CV<XX>, CV<XX>N →Transaction used for document search and management within the context of document management in SAP DMS (refer to the SAP online documentation) CV04, CV04N →Transaction to start the search function in SAP DMS Document →Document information record Document information recordA master record in the →DMS system containing management data for a document and original files. To each document information record, a identification key is assigned, consisting of four partial keys: type, number, part and version. Document management system →DMS DMS Here, the →document information records and their assigned files are managed. Single role A single role is created by the profile generator. A single role allows the automatic generation of an authorization profile. The role contains the authorization date and the logon menu for the user. Development class Development project comprising the source code, user interface, table, and so on Developer license Key giving an SAP user development privileges Generated authorization profile An authorization profile is generated based on the role data within the role maintenance. Class Various SAP objects can be assigned to classes. These classes are described by properties Class type Classes are compiled into class types for various areas of special interest. Client A unit within an SAP system that is independent with regard to action, organization, and data functions. It also has separate master records in a table within the SAP system ..............................................................................................................................To be continued SAP Authorizations for SEAL Systems Applications System Description 2015-10-15 Version 1.3.2 SEAL Systems www.sealsystems.com Terminology 67 Terminology, Continuation .............................................................................................................................................................................................. Naming convention Namespace Object name Package Composite role System user Transaction Transaction code Transport Agreement regarding name assignment for development purposes, for example all developments in a system should be given a prefix of X, Y, or Z as these prefixes have been reserved for customers by SAP. Protected namespaces can be reserved upon request by SAP. The namespace for SEAL Systems is /SEAL/, /SEALC/ (for customer development) or /DVSREPRO/ (old). Names of programs, tables, documents, and so on New name for →development class as of SAP 4.7 (Enterprise) A composite role consists of as many →single roles as desired. User, who is used by the output management system for the access to the SAP system. These accesses are performed without dialog with a user of the System type (previously CPIC). Means of executing programs Identifier naming a →transaction in the SAP system Exporting/importing data between SAP systems .............................................................................................................................................................................................. SEAL Systems www.sealsystems.com 2015-10-15 Version 1.3.2 SAP Authorizations for SEAL Systems Applications System Description 68 Abbreviations Abbreviations ............................................................................................................................................................................................... BAPI DIR DIS DMS DVS GUI OSS Business Application Programming Interface Document Information Record (meta or master data related to a document) German equivalent of DIR Document Management System German equivalent of DMS Graphical User Interface Online Support Service PLOSSYS® RFC Product family by SEAL Systems Remote Function Call ............................................................................................................................................................................................... SAP Authorizations for SEAL Systems Applications System Description 2015-10-15 Version 1.3.2 SEAL Systems www.sealsystems.com Keywords 69 Keywords Symbols _seal_role_cust.sap 15 _seal_role_ddd_cust.sap 15 _seal_role_ext.sap 15 _seal_role_rgui_full.sap 15 _seal_role_rm_cust.sap 15 _seal_role_support.sap 15 /SEAL/ROLE_CA_CLASS 34 /SEAL/ROLE_DDD_ADM 35 /SEAL/ROLE_DDD_APP 36 /SEAL/ROLE_DMS_BASE 38 /SEAL/ROLE_DMS_CONV 40 /SEAL/ROLE_EXT_RFC 42 /SEAL/ROLE_EXT_XDC 43 /SEAL/ROLE_EXT_XMI 44 /SEAL/ROLE_EXT_XOM 45 /SEAL/ROLE_INST_TCODE 46 /SEAL/ROLE_INST_TCODE_ADD 48 /SEAL/ROLE_RGUI_FULL 49 /SEAL/ROLE_RM_ADM 51 /SEAL/ROLE_RM_APP 52 /SEAL/ROLE_SUPPORT 53 J1XR 50 O OSS 68 P PLOSSYS 68 PNG 68 R RFC 68 S su21 33 su24 22 su53 27 Systembenutzer 67 A ASCII 68 B BAPI 68 BC 68 D DIR 68 DIS 68 DMS 68 DPF 68 DVS 68 F FHM 68 G GUI 68 J J_1XD_BGR 36 J_1XD_TCS 36 J_1XR_BGR 49 J_1XR_STA 49 J_1XR_TCD 49 J1XD 37 SEAL Systems www.sealsystems.com 2015-10-15 Version 1.3.2 SAP Authorizations for SEAL Systems Applications System Description 70 Index Index A ArchiveLink, authorization objects 29 authorization authorization class 37 authorization class, display 33 BC Set 46 check modified settings 21 checking with trace 26 compare 28 DDD composite role 12 DDD - administrator 35 DDD - end user 36 definition 66 development user 12 displaying the recent failed 27 DMS Repro GUI 13 documentation 33 for starting, check 24 installation 12 Records Management 13 requirement, consultation 5 support - SAP administrator 13 system user 12 technical view 33 authorization group definition 66 authorization object definition 66 authorization profile, generated, definition 66 B BC Set 66 authorizations 46 C class 66 class type 66 client 66 composite role definition 67 overview 33 CPIC user, see system user customizing 66 cvxx transaction 66 D DDD authorizations SAP Authorizations for SEAL Systems Applications System Description administrator 35 composite role 12 end user 36 developer license 66 development class 66 development user authorizations 12 DMS 66 DMS Repro GUI authorization for creating and changing output jobs 49 authorization for starting 49 authorizations 13 document 66 document information record 66 document management system 66 I installation authorizations 12 N namespace 67 naming convention 67 O object name 67 P Package 67 PDF button for retrace the viewing path, as of Adobe Reader 10 7 R Records Management authorizations 13 requirement consultation prior to the import 5 role comparison 18 generate 16 upload 15 S single role /seal/role_ca_class 34 /seal/role_ddd_adm 35 /seal/role_ddd_app 36 /seal/role_dms_base 38 2015-10-15 Version 1.3.2 SEAL Systems www.sealsystems.com Index 71 /seal/role_dms_conv 40 /seal/role_ext_rfc 42 /seal/role_ext_xdc 43 /seal/role_ext_xmi 44 /seal/role_ext_xom 45 /seal/role_inst_tcode 46 /seal/role_inst_tcode_add 48 /seal/role_rgui_full 49 /seal/role_rm_adm 51 /seal/role_rm_app 52 /seal/role_support 53 definition 66 overview 33 support authorizations 13 system user authorizations 12 T Transaction 67 transaction code 67 transport 67 SEAL Systems www.sealsystems.com 2015-10-15 Version 1.3.2 SAP Authorizations for SEAL Systems Applications System Description