Skip to Content
Author's profile photo Former Member

Align SAP BW with SAP BO authorizations (automatically)

Currently my customer is in the middle of a migration from SAP BW7.x towards SAP BW on HANA.

This is not a database migration, but the implementation of a new (greenfield) SAP BW system based on best practices.

One of the best practices we’re currently implementing is the alignment of SAP BW and SAP BO authorizations.

When authorizations need to be assigned for SAP BW and SAP BO, this assignment needs to be executed in both systems separately.

Needless to say that simplification of this process would be a great time saver in case many users require (updated) authorization.

Pieter Verstraeten , on of the members of ‘my’ migration team, came up with a great manual. This manual explains how to align SAP BW and SAP BO authorization, based upon an example containing the following 3 different type of users:

– End Users : able to execute reports (BW and BO) within a specific subarea

– Expert Users : able to create BEx queries and BO reports within a specific subarea

– Key Users : able to create BEx queries and BO reports within a specific area

When I aroused your interest in how to assign SAP BW roles to users and have them automatically access the SAP BO environment, feel free to download Pieter’s manual here

Assigned Tags

      1 Comment
      You must be Logged on to comment or reply to a post.
      Author's profile photo Nitesh Gupta
      Nitesh Gupta

      Hi Sven,

      Thanks for sharing the document. I am working in BW Security and interested to learn BO Security as well. Please confirm if my understanding below is correct:

      - We would import a BW role into BO CMC. This in turn also imports all users from BW who have that role assigned in BW (with prefix BI~100@<user_id>).

      - Because that imported role is associated to a user group in BO, all associated users would automatically get the BO access as per the user group?

      So this means, in ongoing scenario, we just need to assign appropriate roles in BW. BO authorizations would automatically be assigned, and no manual activity is required in BO?