SAP ABAP IMG Activity /IWFND/DE_ROLE_ADMIN (Define Role for SAP NetWeaver Gateway Administrator)
Hierarchy
SAP_GWFND (Software Component) SAP Gateway Foundation
   OPU-FND-CS (Application Component) IWF Common Services
     /IWFND/COF (Package) GW Framework - Configuration
IMG Activity
ID /IWFND/DE_ROLE_ADMIN Define Role for SAP NetWeaver Gateway Administrator  
Transaction Code /IWFND/50000014   (empty) 
Created on 20090923    
Customizing Attributes /IWFND/DE_ROLE_ADMIN   Define Role for SAL Administrator 
Customizing Activity /IWFND/DE_ROLE_ADMIN   Define Role for SAL Administrator 
Document
Document Class SIMG   Hypertext: Object Class - Class to which a document belongs.
Document Name /IWFND/IMG_DE_ROLE_ADMIN    

Use

In addition to defining a role for a SAP NetWeaver Gateway user you need to create an administrator role. Only users with the appropriate administrator role can carry out custimizing activities for SAP NetWeaver Gateway.

After this role has been created, it must be assigned to users.

Requirements

Roles can only be created and assigned to users by a so-called user administrator.

Details about different SAP user administrator types are available in the SAP NetWeaver Library documentation at http://help.sap.com/nw70 -> SAP NetWeaver 7.0 Including Enhancement Package 2. In the Functional View select SAP NetWeaver by Key Capability -> Security -> Identity Management -> User and Role Administration of AS ABAP -> Configuration of User and Role Administration -> First Installation Procedure -> Setting up User and Authorization Administrators.

Standard settings

Activities

First create an administrator role, then assign the role to users.

Create Administrator Roles

  1. Click on the activity icon. The Role Maintenance screen is displayed.
  2. In the Role field, select one of the standard administrator roles (or enter another relevant role from a previous persona already set up in the system).
  3. Select Copy role to create a copy of the standard role.
  4. In the Query dialog, the name of the old role is entered automatically. You need to enter a name for the new role and then choose Copy all. A new role is now created.
  5. Specify the required authorizations for this new role. On the Authorizations tab choose Change Authorization Data.
  6. From the list of template roles, select /IWFND/RT_ADMIN and choose Adopt reference.

    If the list of templates does not appear, choose Edit -> Insert Authorization(s) -> From template.

  7. Choose Generate to generate the role.

Assign the role to users

  1. On the overview screen for the role, select the User tab.
  2. Enter the names of the users to whom this role should be assigned.
  3. Save your settings.

You can also assign roles to users via transaction SU01.

Example

Business Attributes
ASAP Roadmap ID 209   Establish Authorization Management 
Mandatory / Optional 1   Mandatory activity 
Critical / Non-Critical 2   Non-critical 
Country-Dependency A   Valid for all countries 
Maintenance Objects
Maintenance object type C   Customizing Object 
Assigned objects
Customizing Object Object Type Transaction Code Sub-object Do not Summarize Skip Subset Dialog Box Description for multiple selections
PFCG T - Individual transaction object PFCG  
History
Last changed by/on SAP  20111216 
SAP Release Created in 100