Symptom
User with no permissions is able to update/correct fields set as view only via Data Model or BCUI (Manage Business Configuration)
"Image/data in this KBA is from SAP internal systems, sample data, or demo systems. Any resemblance to real data is purely coincidental.“
Environment
Employee Central - Workflow
Reproducing the Issue
- Define an EC field as read only in Manage Business Configuration
- Create a workflow with "Respect Permissions " is set to "No" and Edith with or without reout change for an approver
- Trigger the workflow
- Proxy as approver
- Update workflow
- Approver is able to edit the field which should be read only
Cause
As "Respect Permissions " is set to "No" permissions are not taken into account.
The field visibility as defined in Manage Business Configuration or Succession Data Model, is only respected in the hire wizard.
The following logic is allied to other UIs:
- On a users profile RBP takes prescient.
- On the workflow update page:
"Respect Permissions " is set to "Yes" = RBP takes prescient
"Respect Permissions " is set to "No" = the read only status is ignored, and all fields are editable
Resolution
Set "Respect Permissions " to "Yes" in the given workflow.
Then the Approvers permissions will be taken into account.
See 2080181 - Respect Permission Functionality in Workflow Configurations - EC
Guide: Employee Central Workflows: Implementation and Administration
See Also
- 2646054 - Role-Based Permissions take preference over field level visibility
- 2080722 - How to manage & modify a Workflow that is in progress - Employee Central
- 2412557 - Workflow does not respect permissions
- 2487801 - Job Code is visible in My Workflow request page even though no RBP permission is provided
- 2080181 - Respect Permission Functionality in Workflow Configurations - EC
- 2720480 - Does Manage Workflow Requests Respect Permissions?
- 2616208 - Workflows: How to enable the "View Completed Workflows" permission in Role-Based Permissions (Data Blocking)
Keywords
Workflow, RBP, Approve, View Only, Update, edit, field, visibility, manage workflow request page, permission , KBA , LOD-SF-EC-WFL , Workflows - Configuration, Tools, Objects & Rules , LOD-SF-EC-RBP , Roles & Permissions (EC Core only) , Problem