Symptom
Changes to authorizations are always expected during upgrades. There are many reasons why IAM objects need to be updated according to each release:
- New features and enhancements require updates to authorization objects, restriction types, and business catalogs to enable access to new functionality. Each SAP S/4HANA Cloud Public Edition release introduces innovations that necessitate new business catalogs, IAM apps, or restriction types to grant users access to these capabilities.
- Outdated or redundant authorization objects are deprecated and replaced with more efficient successors to streamline authorization management
- Changes to underlying authorization logic, such as modifications to restriction type access categories (e.g., from "Read" to "Write"), ensure authorizations remain aligned with business processes
- SAP refines authorization structures to improve usability, reduce complexity, and support best practices in business role design
- Business role templates and business catalogs are updated to reflect SAP's recommended authorization models for specific business scenarios
SAP S/4HANA Cloud Public Edition operates as a fully managed cloud service with a continuous innovation approach and this also means that authorization changes are mandatory and cannot be deferred.
Then, how to identify all of the changes made to the Business Catalogs and Restrictions assigned to Business Roles as part of an upgrade to SAP S/4HANA Cloud Public Edition?
Read more...
Environment
SAP S/4HANA Cloud Public Edition
Product
Keywords
business role, changes, business catalogs, restrictions, upgrade, s/4hana cloud, update, hotfix, manage, IAM , KBA , BC-SRV-APS-IAM , Identity and Access Management , How To
About this page
This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).Search for additional results
Visit SAP Support Portal's SAP Notes and KBA Search.
SAP Knowledge Base Article - Preview