SAP Note 1090429 - OKEON: Restrict authorization check to top node only

Component : Master Data - Overhead Cost Controlling

Solution : https://service.sap.com/sap/support/notes/1090429 (SAP Service marketplace login required)

Summary :
Users with authorization object 'K_CCA' for one cost center group face issues when attempting to reorganize subgroups via Drag and Drop in OKEON, KCH5N, or CPH4N. Errors occur due to a misapplied display authorization check (003 action) on the top hierarchy node, despite it not being displayed or edited. In customization (OKKP), if not using the standard hierarchy for checks related to 'K_CCA/K_PCA', the system should use the alternative hierarchy specified. Mischecks occur if this setting is incorrectly maintained, leading to authorization issues when the standard hierarchy is accessed instead of the defined alternative.

Key words :
authorization object k_cca/k_pca, authorized standard hierarchy node, kch5n incorrectly checks, k_pcasaplgsombuf get_parents_in_hierarchyfunction g_set_buf_change_relationk_pca_resp_authority_check, authorization object 'k_cca', authorization object k_cca, top hierarchy node, alternative hierarchy node, cost center group, alternative hierarchy defined

Related Notes :

1256558KCH5N: Problem with area of responsibility
1071558OKEON: Set lock on sets part 3
912553OKEON: Authorization 'K_CCA' when creating groups
370082Authorizations: Information about responsibility area