Overview
This article consolidates all authorizations required in Syniti Knowledge Platform (SKP) or ADMM implementations when using a Remote Function Call (RFC) connection.
The following Authorization Objects must be assigned to the user depending on the SAP environment and type of data extraction:
ECC Environment
Read Table Function
The following authorizations are required for RFC Extraction:
Authorization Object | Authorization Field | Authorization Value |
S_RFC | RFC_NAME | /BOA/SDRM_READ_TABLE /BOA/SRTT_GET_TABLE_SIZE_RFC RFC_METADATA RFC_METADATA_GET RFC_FUNCTION_SEARCH GET_SYSTEM_TIME_REMOTE DDIF_FIELDINFO_GET PERF_TRA_DIA RFCPING (Optional, not required for all ECC versions) |
RFC_TYPE | FUNC or FUGR | |
ACTVT | 16 | |
/BOA/SDRMF | RFC_NAME | /BOA/SDRM_READ_TABLE |
ACTVT | 16 (Execute) | |
S_TABU_NAM | TABLE | <Name of Tables in scope> |
ACTVT | 03 (Display) | |
S_TABU_DIS | DICBERCLS | <Authorization Group of Tables in scope> |
ACTVT | 03 (Display) | |
S_TABU_CLI | CLIIDMAINT | Allowed |
Streaming Function
Authorization Object | Authorization Field | Authorization Value |
S_RFC | RFC_NAME | /BOA/STREAM_READ_TABLE /BOA/SDRM_TABL_CALLBACK /BOA/SDRM_READ_TABLE /BOA/SRTT_GET_TABLE_SIZE_RFC RFC_METADATA RFC_METADATA_GET RFC_FUNCTION_SEARCH GET_SYSTEM_TIME_REMOTE DDIF_FIELDINFO_GET PERF_TRA_DIA RFCPING (Optional, not required for all ECC versions) |
RFC_TYPE | FUNC or FUGR | |
ACTVT | 16 | |
/BOA/SDRMF | RFC_NAME | /BOA/SDRM_READ_TABLE |
ACTVT | 16 (Execute) | |
S_TABU_NAM | TABLE | <Name of Tables in scope> |
ACTVT | 03 (Display) | |
S_TABU_DIS | DICBERCLS | <Authorization Group of Tables in scope> |
ACTVT | 03 (Display) | |
S_TABU_CLI | CLIIDMAINT | Allowed |
Read Text Function
Authorization Object | Authorization Field | Authorization Value |
S_RFC | RFC_TYPE | FUNC |
ACTVT | 16 (Execute) | |
RFC_NAME | /BOA/*, RFC_READ_TABLE RFCPING DDIF_FIELDINFO_GET RFC_GET_FUNCTION_INTERFACE RSAQ_REMOTE_QUERY_CALL_CATALOG RSAQ_REMOTE_QUERY_FIELDLIST /OSP/GET_DECIMAL_NOTATION | |
S_RFC | RFC_TYPE | FUGR |
ACTVT | 16 (Execute) | |
RFC_NAME | AQRC | |
S_DEVELOP | DEVCLASS | SQUE |
OBJTYPE | FUGR | |
OBJNAME | AQRC | |
P_GROUP | ||
ACTVT | 16 | |
S_PROGNAM | P_PROGNAM | AQZZ/BOA/QUERY==BOAQ_READ_TEXT |
S_TABU_NAM | TABLE | AQGQCAT, DD01T, DD02L, DD02T, DD03L, DD03T, DD04L, DD04T, DD05Q, DD07L, DD07T, TCDOB |
ACTVT | 03 (Display) | |
S_TABU_DIS | DICBERCLS | &NC&, SS |
ACTVT | 03 (Display) |
Metadata Scanning (ECC)
Authorization Object | Field | Value |
|---|---|---|
S_RFC | RFC_TYPE | FUNC (Function Module) |
RFC_NAME | RFCPING /SDF/SYSTEM_INFO DDIF_FIELDINFO_GET RFC_GET_FUNCTION_INTERFACE RFC_READ_TABLE | |
ACTVT | 16 (Execute) | |
/SDF/E2E | ACTVT | 03 (Display) |
S_TABU_NAM | ACTVT | 03 (Display) |
TABLE | DD01T, DD02L, DD02T, DD03L, DD03T, DD04L, DD04T, DD07L, DD07T, DD05S and DD08L | |
S_SDCC | SDCC_DEV | READ |
SDCC_RUN | ADMIN, READ, WRITE | |
S_SDCC_ADD | SDCC_DEV_N | READ |
SDCC_RUN_N | ADMIN, READ, WRITE |
S/4HANA Environment
Read Table Function
Authorization Object | Authorization Field | Authorization Value |
S_RFC | RFC_NAME | /BS4/SDRM_READ_TABLE /BS4/SRTT_GET_TABLE_SIZE_RFC RFC_METADATA_GET RFC_FUNCTION_SEARCH RFC_GET_FUNCTION_INTERFACE GET_SYSTEM_TIME_REMOTE DDIF_FIELDINFO_GET PERF_TRA_DIA RFCPING RFC1 |
RFC_TYPE | FUNC or FUGR | |
ACTVT | 16 | |
/BS4/SDRMF | RFC_NAME | /BS4/SDRM_READ_TABLE |
ACTVT | 16 (Execute) | |
S_TABU_NAM | TABLE | <Name of Tables in scope> |
ACTVT | 03 (Display) | |
S_TABU_DIS | DICBERCLS | <Authorization Group of Tables in scope> |
ACTVT | 03 (Display) | |
S_TABU_CLI | CLIIDMAINT | Allowed |
Streaming Function
Authorization Object | Authorization Field | Authorization Value |
S_RFC | RFC_NAME | /BS4/SDRM_READ_TABLE /BS4/STREAM_READ_TABLE /BS4/SRTT_GET_TABLE_SIZE_RFC /BS4/SDRM_TABL_CALLBACK RFC_METADATA_GET RFC_FUNCTION_SEARCH RFC_GET_FUNCTION_INTERFACE GET_SYSTEM_TIME_REMOTE DDIF_FIELDINFO_GET PERF_TRA_DIA RFCPING RFC1 |
RFC_TYPE | FUNC or FUGR | |
ACTVT | 16 | |
/BS4/SDRMF | RFC_NAME | /BS4/SDRM_READ_TABLE |
ACTVT | 16 (Execute) | |
S_TABU_NAM | TABLE | <Name of Tables in scope> |
ACTVT | 03 (Display) | |
S_TABU_DIS | DICBERCLS | <Authorization Group of Tables in scope> |
ACTVT | 03 (Display) | |
S_TABU_CLI | CLIIDMAINT | Allowed |
Read Text Function
Authorization Object | Authorization Field | Authorization Value |
S_RFC | RFC_TYPE | FUNC |
ACTVT | 16 (Execute) | |
RFC_NAME | /BOA/* RFC_READ_TABLE, RFCPING DDIF_FIELDINFO_GET RFC_GET_FUNCTION_INTERFACE RSAQ_REMOTE_QUERY_CALL_CATALOG RSAQ_REMOTE_QUERY_CALL RSAQ_REMOTE_QUERY_FIELDLIST /OSP/GET_DECIMAL_NOTATION | |
S_RFC | RFC_TYPE | FUGR |
ACTVT | 16 (Execute) | |
RFC_NAME | AQRC | |
S_DEVELOP | DEVCLASS | SQUE |
OBJTYPE | FUGR | |
OBJNAME | AQRC | |
P_GROUP | ||
ACTVT | 16 | |
S_PROGNAM | P_PROGNAM | AQZZ/BOA/QUERY==BOAQ_READ_TEXT |
Metadata Scanning (S/4HANA)
Authorization Object | Field | Value |
|---|---|---|
S_RFC | RFC_TYPE | FUNC (Function Module) |
RFC_NAME | RFCPING /SDF/SYSTEM_INFO DDIF_FIELDINFO_GET RFC_GET_FUNCTION_INTERFACE RFC_READ_TABLE | |
ACTVT | 16 (Execute) | |
/SDF/E2E | ACTVT | 03 (Display) |
S_TABU_NAM | ACTVT | 03 (Display) |
TABLE | DD01T, DD02L, DD02T, DD03L, DD03T, DD04L, DD04T, DD07L, DD07T, DD05S and DD08L | |
S_SDCC | SDCC_DEV | READ |
SDCC_RUN | ADMIN, READ, WRITE | |
S_SDCC_ADD | SDCC_DEV_N | READ |
SDCC_RUN_N | ADMIN, READ, WRITE |
