Symptom
- A user with the export permission for an MDF object is able to export all records of that MDF object without respecting the target population.
- In Manage Data, permissions are respected and users can only access MDF data within their assigned target population.
Environment
SAP SuccessFactors HCM Suite
Reproducing the Issue
- Configure an MDF Object with RBP so the user has access only to a limited target population.
- In Manage Data, verify the user cannot view records outside of the assigned target population.
- Go to Import and Export Data > Export the MDF object.
- Observe that the export file includes records outside of the user's target population.
Cause
This is the expected behavior. By default, Record-level Permission checks are not enabled for MDF Import and Export.
Resolution
If you require the target population to be respected during MDF Data Export, please follow the guide: Enabling Record level Permission | SAP Help Portal to enable it
See Also
- SAP Help Portal: Expected behavior of MDF objects with Import and Export permission
- SAP Help Portal: Enabling Record level Permission | SAP Help Portal
Keywords
mdf, rbp, record-level permission, export, import and export data, target population, manage data, secured mdf, custom mdf, permission check, data export, successfactors, role-based permissions, mdf export includes all records, data access controls, object definitions, security setting, manage permission role , KBA , LOD-SF-MDF-IMP , Import and Export Issues , Problem
SAP Knowledge Base Article - Public