SAP BusinessObjects Central Management Console User Security.
Friday, February 12, 2016
Tags: Access Levels, business objects, Central Management Console, CMC, sap, User Security
Here you can find how to set up your security on Central Management Console of SAP Business Objects
- Users and Groups (First we create the user(s) and group(s) to set authentication and authorization levels later on)
- New Group
- New User
- Authentication Type: Enterprise / LDAP
- Connection Type: Named User (this user can access BO anytime) / Concurrent User (this user can access BO as long as the concurrent connected user limit has not been reached)
- Join Group
- Select the group(s) for the user to be a member of
- Folders (We grant access to the folders for the group(s) and/or user(s))
- User must have access to the root folder
- We will Add Principals through User Security
- Add and Assign Security to Group or User. I will add the group so I can manage multiple Users at once
- Next we will choose the Access Level for the group
- Close the User Security window
- Next if you want the Group to access only one sub folder, you need to remove access from every other subfolder
- You will go to User Security of those folders
- Select the group name and go to Assign Security
- Here either click on Remove Access or uncheck both of the Inherit check boxes and click OK
- So far, we adjusted the group’s access levels to folder(s) and report(s). Now we will set Access rights to Universe if you want the user to be able to refresh or change the prompts and re-run the reports. Otherwise, you will have an error like "You do not have the right to access data returned by this universe. Error WIS 00504"
- Best practice to handle this (in my opinion) is to do it through Universes
- Find your related universe find all relations
- Find the Web Intelligence, you will be able to see your already assigned roles, so you will not need to change anything here
- Find the folder of the universe and go to User Security
- Add Principals for your Group here Add and Assign Security
- Choose your Access Level for the Universe from here
- Next find the Relational Connection for the Universe and go to User Security
- And add your group and assign the roles like in step 4d and 4e
- From Universes
- Go to Universe Security to add your group to Universe as well
- Click on Add and choose your group
- Then you will close the pop up window from the x on the upper right corner
- Finally you can adjust user rights at Applications level
- Here as I use Web Intelligence, I edit User Security for Web Intelligence
- Here we Add Principals just like in other steps
- If you want to adjust the roles or create a new one, you will need to go to Access Levels
- Go to Included Rights and adjust the rights for the role as you wish