SAP Knowledge Base Article - Public

2699481 - Approver Able to Update View Only Fields In Workflow

Symptom

User with no permissions is able to update/correct fields set as view only via Data Model or BCUI (Manage Business Configuration)

"Image/data in this KBA is from SAP internal systems, sample data, or demo systems. Any resemblance to real data is purely coincidental.“

Environment

Employee Central - Workflow

Reproducing the Issue

  1. Define an EC field as read only in Manage Business Configuration
  2. Create a workflow with "Respect Permissions " is set to "No" and Edith with or without reout change for an approver
  3. Trigger the workflow
  4. Proxy as approver
  5. Update workflow
  6. Approver is able to edit the field which should be read only

Cause

As "Respect Permissions " is set to "No" permissions are not taken into account.

The field visibility as defined in Manage Business Configuration or Succession Data Model, is only respected in the hire wizard.

The following logic is allied to other UIs:

  • On a users profile RBP takes prescient.
  • On the workflow update  page:
    "Respect Permissions " is set to "Yes" = RBP takes prescient
    "Respect Permissions " is set to "No" =  the read only status is ignored, and all fields are editable

Resolution

Set "Respect Permissions " to "Yes" in the given workflow.

Then the Approvers permissions will be taken into account.

See 2080181 - Respect Permission Functionality in Workflow Configurations - EC

Guide:  Employee Central Workflows: Implementation and Administration

See Also

  • 2646054 - Role-Based Permissions take preference over field level visibility
  • 2080722 - How to manage & modify a Workflow that is in progress - Employee Central 
  • 2412557 - Workflow does not respect permissions
  • 2487801 - Job Code is visible in My Workflow request page even though no RBP permission is provided
  • 2080181 - Respect Permission Functionality in Workflow Configurations - EC
  • 2720480 - Does Manage Workflow Requests Respect Permissions?
  • 2616208 - Workflows: How to enable the "View Completed Workflows" permission in Role-Based Permissions (Data Blocking)

Keywords

Workflow, RBP, Approve, View Only, Update, edit, field, visibility, manage workflow request page, permission , KBA , LOD-SF-EC-WFL , Workflows - Configuration, Tools, Objects & Rules , LOD-SF-EC-RBP , Roles & Permissions (EC Core only) , Problem

Product

SAP SuccessFactors Employee Central all versions