SAP Knowledge Base Article - Public

2344584 - How to add access to Role-Based Permission Admin features (Manage RBP Admin and Super Admin Access, RBP Troubleshooting, Manage Permission Roles, Manage Permission Groups and User Role Search)

Symptom

  • How do I grant the permission for a new admin user to the following admin features:
    • Manage Permission Groups;
    • Manage Permission Roles;
    • User Role Search;
    • RBP Troubleshooting;
  • How to grant administrator permission to user?
  • How to access the admin tool "Manage RBP Admin and Super Admin Access"?

Image/data in this KBA is from SAP internal systems, sample data, or demo systems. Any resemblance to real data is purely coincidental.

Environment

SAP SuccessFactors HCM Suite

Resolution

To access the features "Manage Permission Groups", "Manage Permission Roles", "User Role Search" and "RBP Troubleshooting", users must be added to the group of users allowed to access the feature "Manage RBP Admin and Super Admin Access". Please follow the below steps to add the users to the group:

  1. Go to Admin Center
  2. Search for "Manage RBP Admin and Super Admin Access" or search it directly from Action Search
  3. Click in the Add User button and select the users you want to add



  4. Once selected user is added, the added user will have the access to View Group, View Role, Edit Group and Edit Role enabled by default. You can see from the screenshot below that the checkbox is already checked after adding the user. User will now have access to use the four features:

    • Manage Permission Groups
    • Manage Permission Roles
    • RBP Troubleshooting
    • User Role Search

    Note: You can only have access to all four features or none at all.

This is what the access will look like from Admin Center if you only enable View GroupView Role, Edit Group and Edit Role from Manage RBP Admin and Super Admin Access:


Manage RBP Admin and Super Admin Access by default is only visible and accessible for users who were created from Provisioning. For example SFADMIN, adminsf etc. Access to Manage RBP Admin and Super Admin Access tool can be restricted by adding and removing users as per the instructions discussed above but with additional step of also enabling the Allow Access to This Page.



Any users granted with Allow Access to This Page will have access to add or remove other users from this admin tool. As a security precaution, the system would require that there is at least one user with access to this page. Also, you will not be able to remove your own access to the page. 

As of the 2H 2025 Release, the Manage RBP Admin and Super Admin Access page has been enhanced with the addition of two new columns: Allow Access to Manage Provisioning Access Page and Super Admin. If the Super Admin option is selected, administrator users will be granted super admin privileges, which include access to the Manage Provisioning Access admin tool:

Starting from the 2H 2025 Release, the Manage RBP Admin and Super Admin Access tool allows for the creation and management of super administrators. It is also possible to grant these super administrators access to the Manage Provisioning Access page. Super administrators created in the Manage RBP Admin and Super Admin Access tool after the 2H 2025 Release will automatically receive access to the Manage Provisioning Access tool. However, super administrators created prior to the 2H 2025 Release will not automatically have this access and will need to be manually granted these permissions.

Notes:

  • The RBP Troubleshooting replaces View User Permissions and consolidates/improves existing functions; View User Permissions reached End of Maintenance on November 15, 2024 and was deleted on May 16, 2025.
  • If "Allow access to Manage Provisioning Access Page" is grayed out, but Super admin is flagged, unflagging it and flagging it again will also flag the Allow access to Manage Provisioning Access Page" option.
  • This permissions will cover RBP API too.
  • Only active users can be added to this, if a user who has access to Manage RBP Admin and Super Admin Access is changed to inactive status, the user will be automatically removed from Manage RBP Admin and Super Admin Access. If the user is later set back to active, they will need to be manually added again to Manage RBP Admin and Super Admin Access.
  • As of the 2H 2025 Release, the admin tool previously known as Manage Role-Based Permission Access has been renamed to Manage RBP Admin and Super Admin Access. More details can be found in Manage RBP Admin and Super Admin Access

See Also

Keywords

RBP administrator permission, sfadmin, IPSadmin, view user permission, manage permission roles , KBA , LOD-SF-PLT-RBP , Role Based Permissions , LOD-SF-PLT-PRVR , Issues with Manage Provisioning Access Tool , How To

Product

SAP SuccessFactors HCM Suite all versions