SAP Knowledge Base Article - Preview

2805774 - Objects privileges being removed from role/user

Symptom

When a catalog object privilege is granted to a user or role in following ways:

  • Defined table level restrictions as shown below in a repository role defination:
    catalog sql object "schema_name"."catalog_object_name": SELECT;
  • In HDI scenario, runtime objects are from external containers, and the object privileges are add to .hdbrole
  • The runtime objects are defined in ABAP dictionary, E.g. in SE11/SE14, or like BW objects ADSOs, CDS views. And the object privileges are add to a role or user.

The object privileges are assigned to this role. But the object privileges may get disappear some time later.


Read more...

Environment

SAP HANA, platform edition

Product

SAP HANA 1.0, platform edition ; SAP HANA, platform edition 2.0

Keywords

transport, deactivated, ide, role, roles, cds, views, ADSO, HDI, hdbrole, object, privilege, SE11, SE14, dropped, insufficient, deploy , KBA , HAN-DB-SEC , SAP HANA Security & User Management , Problem

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.