Goal: Unblock the unarchiving of BI objects (Web Intelligence documents, folders, etc.) when removing the 360Archive access level in the 360View security matrix fails with error ACL011, by correcting the BusinessObjects permissions that deny the Edit right on the archived objects.
Target audience: Admin (SAP BusinessObjects administrator / 360Suite administrator)
Estimated time: 15–30 minutes (plus the unarchiving time itself, which depends on the number of objects)
Warning: Unarchiving is a security change performed on the object: 360Suite removes the 360Archive access level from it. Therefore the account doing it must be able to edit the object in BusinessObjects. The 360ArchiveAdmin access level only grants the right to see archived objects — it does not grant Edit and therefore does not override other rights that deny Edit. On recent SAP BOBJ support packs the implicit "Administrator bypass" has been removed, so even the Administrator account is subject to these deny rules.
Impact if skipped: Every attempt to unarchive (single object or bulk via the security matrix) fails with ACL011. The objects stay invisible to end users, and no other 360Suite / Wiiisdom feature can act on them (including restore, which also requires editing the object).
Before you start, confirm:
Administrator account, or with a user explicitly declared as an archive administrator in 360View.360ArchiveAdmin access level exists in the CMC and is granted on the archived objects.Useful background — BOBJ rights precedence (highest to lowest):
A deny always wins over an allow at the same priority level. This is why adding an allow through 360ArchiveAdmin is enough in some cases, and not in others.
Choose the option that matches your situation. Identify the situation first by opening the object's security in the CMC (right-click the object > User Security) and checking, for the Administrator account: is 360ArchiveAdmin present? Is Edit denied, and is that deny inherited or explicit?
In the CMC, go to Manage > Access Levels, select 360ArchiveAdmin, then Actions > Included Rights.
Expected result: You see the rights currently carried by the access level — essentially the View right on the archived content.
Note: This does not create a security exposure: archived objects remain hidden from everyone except the accounts that hold 360ArchiveAdmin (Administrator and the users declared in 360View).
360Archive access level (bulk selection is supported, which is the recommended approach for large volumes such as several hundred documents).Tip: Test on a single object first, then run the bulk operation once the fix is confirmed.
How to confirm success:
Administrator > View Security.
Expected output: Edit this object is Granted, and no remaining deny is listed for that right.360Archive from a single test object through the security matrix.
Expected output: The operation completes without ACL011; the 360Archive access level no longer appears on the object.Success criteria: The full batch of objects can be unarchived from the security matrix with no ACL011 error, the objects are visible to their intended audience, and the security model has been restored to its intended state (temporary changes reverted where applicable).