In SAP Project system, you use access control list to assign authorizations for specific Project system objects. The Access control list function should be activated in project profile or network profile.
Authorization can be assigned for the following PS objects −
You have the following different authorization types available −
In SAP PS system, you can assign different types of authorizations.
Authorization | Allowed activity |
---|---|
Read |
Display PS Object |
Write |
Display PS Object Change PS Object |
Administration |
Display PS Object Change PS Object Create PS Object Delete PS Object Create access control lists Edit access control lists Delete access control lists |
No Authorization |
No activity allowed |
In SAP system, highest possible authorization always applies to a user. If a higher authorization applies for a user or PS object, the system overwrites the inherited authorization.
Consider user A is assigned to user group 1 that has read authorization for a PS object and the user has change authorization for PS object. The user gets change authorization in this scenario.
To create an access control list, navigate to the PS object for which you want to assign authorizations.
Step 1 − Go to the ACL tab page. Select insert line button to enter the new data.
Step 2 − Click Save to save the entry.
Step 1 − To delete access control list for a project, use T-code: CNACLD
Step 2 − In next screen, you have to select the project/network for which you want to delete the ACL.
Step 3 − To display the access control lists, click the Display button.
Step 4 − To delete the access control lists, click the Delete button.