Symptom
- When assigning rights to manage other groups to 3rd party mapped groups (LDAP/AD/NT) the rights do not get propagated to their 3rd party members.
- When assigning rights to manage other objects (folders, universes, connection, applications, etc) to 3rd party mapped groups (LDAP/AD/NT) the right do get propagated to their 3rd party members
- in the Central Management Console, Windows AD, LDAP, or Windows NT users imported into the system do not inherit User Security from their Windows AD group parents when the parents are assigned to manage other groups in CMC > users and groups > group properties or CMC > Groups > Group properties (in XIR2)
- This issue affects the ability to provide delegated administration to members of 3rd party groups only, other permissions such as reporting (viewing, running, scheduling, etc) are not affected
Read more...
Environment
This is currently by design in XIR2, XI 3.x and older versions of XI and CE as well.
Product
SAP BusinessObjects Business Intelligence platform R2 ; SAP BusinessObjects Enterprise XI 3.0 ; SAP BusinessObjects Enterprise XI 3.1
Keywords
propagate right, inherit right, mapped groups, AD group, LDAP group, NT group, security, inheritancezie 00891683 891683 , KBA , BI-BIP-ADM , BI Servers, security, Crystal Reports in Launchpad , BI-BIP-AUT , Authentication, ActiveDirectory, LDAP, SSO, Vintela , Product Enhancement
About this page
This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).Search for additional results
Visit SAP Support Portal's SAP Notes and KBA Search.