SAP Knowledge Base Article - Preview

1325901 - When assigning rights to 3rd party mapped groups (LDAP/AD/NT) to manage other groups in the CMC > Groups, the rights do not get propagated to their 3rd party members

Symptom

  • When assigning rights to manage other groups to 3rd party mapped groups (LDAP/AD/NT) the rights do not get propagated to their 3rd party members.
  • When assigning rights to manage other objects (folders, universes, connection, applications, etc) to 3rd party mapped groups (LDAP/AD/NT) the right do get propagated to their 3rd party members 
  • in the Central Management Console, Windows AD, LDAP, or Windows NT users imported into the system do not inherit User Security from their Windows AD group parents when the parents are assigned to manage other groups in CMC > users and groups > group properties or CMC > Groups > Group properties (in XIR2)
  • This issue affects the ability to provide delegated administration to members of 3rd party groups only, other permissions such as reporting (viewing, running, scheduling, etc) are not affected


Read more...

Environment

This is currently by design in XIR2, XI 3.x and older versions of XI and CE as well.

Product

SAP BusinessObjects Business Intelligence platform R2 ; SAP BusinessObjects Enterprise XI 3.0 ; SAP BusinessObjects Enterprise XI 3.1

Keywords

propagate right, inherit right, mapped groups, AD group, LDAP group, NT group, security, inheritancezie 00891683 891683 , KBA , BI-BIP-ADM , BI Servers, security, Crystal Reports in Launchpad , BI-BIP-AUT , Authentication, ActiveDirectory, LDAP, SSO, Vintela , Product Enhancement

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.