Maybe request the BASIS or security team execute SU53 for the defined DS user to determine the necessary authorization objects? there is a list of required authorization objects available in the guides to review. I would suggest checking those as they are very helpful.
↧