Hello,
we are re-using our SAP BW authorizations roles for folder authorizations in SAP BO.
Therefore we import roles from SAP BW source system and add these roles to different BO-Groups. Folder authorizations are maintained for these BO Groups.
Import of roles works - but all imported roles / Groups start with a prefix "<SYS-ID>~<CLNT>@"
So if we promote groups/authorizations to qa and prod system we have to add BW roles in each system.
E.g.
DEV-System:
DEV~001@BW_ROLE --> added to BO Group "BW"
Promotion to QA-System:
BO Group contains Role DEV~001@BW_ROLE and QA~002@BW_ROLE has to be added.
How to avoid this?
There is a similar issue with user which has been resolved by maintaing registry setting.
HKLM\SOFTWARE\SAP BusinessObjects\Suite XI 4.0\Enterprise\Auth Plugins\secSAPR3\SimpleUsernameFormat
Thanks and best regards,
Christian
P.S. we are using BI 4.1