SAP CRM Negative Authorization test on CRM_ORD_LP

Test setup

PFCG role in QGS/300: role ZCRM_ORD_LP_01_SRVOthis

User ORDLP01_srvo assigned to this role:spa


since in DCL modelling I use 03 for ACTVT field value, so the expected behavior is that this user can NEVER read any data from CDS view.
Test report : CRMS4_SEARCH_ORDER_DESCRIPTION
The user WANGJER with full authorization could get 100 search results returned.
And for this user: 0 search resultblog


Another negative test

User: ORDLP03_SRVOip

When I search via the following parameters, it works as expected, because in QGS/300 there are lots of orders with description containing "Jerry" and transaction type ="SRVO":rem


Another test: search by description containing "i042416"
And there are two candidate entries with different transaction type in DB table:get

it is expected only 1 record found:it

Works as expected:io



要獲取更多Jerry的原創文章,請關注公衆號"汪子熙":
table

相關文章
相關標籤/搜索