Assigning Role Collections in SAP BTP Cockpit
Tutorials that teach this
- Tutorial Add Cloud Foundry App to Portal Site
- Tutorial Configure Authentication and Authorization on SAP BTP
- Tutorial Use the SAP Content Agent Service UI to Start the Transport
- Tutorial Set Up SAP Build Apps on SAP BTP Trial Account
- Tutorial Create Schema for Custom Documents
- Tutorial Create an MTA project for the Multitenant Application using SAP Business Application Studio
- Tutorial Create an SAP Fiori App and Deploy it to SAP BTP, ABAP Environment
- Tutorial Create an Application with Cloud Foundry Node.js Buildpack
- Tutorial Enable Migration Assessment Application
- Tutorial Use Trial to Subscribe to the SAP Document AI Basic UI
- Tutorial 8 - Create a Work Zone Site and Embed Your App
- Tutorial Create an Application with SAP Java Buildpack 2
- Tutorial Launch SAP GUI for Windows Applications in the Cloud with SAP Business Client
- Tutorial Set Up SAP Build Work Zone, standard edition Using the Free Tier Model for SAP BTP
- Tutorial Get Started with an SAP Cloud Application Programming Model Project in SAP Continuous Integration and Delivery
- Tutorial Add Federated SAP S/4HANA Roles to Your SAP Build Work Zone Site
- Tutorial Integrate Your Application Deployed in SAP BTP, Kyma Runtime with SAP Build Work Zone, Standard Edition
- Tutorial Get Started with an SAP Fiori Project in SAP Continuous Integration and Delivery
- Tutorial Configure SAP Build Work Zone, Standard Edition
- Tutorial Assign the User Roles
- Tutorial SAP Build: Event-Based Processes CodeJam – Prerequisites
- Tutorial Start Using SAP HANA Cloud Free Tier Service in SAP BTP Cockpit
- Tutorial Create Queues and Queue Subscriptions for SAP Event Mesh
- Tutorial Subscribe to SAP Build Process Automation
- Tutorial Subscribe Your First Consumer to the SaaS Application
- Tutorial Integrate Your UI Integration Card from the Content Package Into Your Site
- Tutorial Integrate Your Application with SAP Build Work Zone, Standard Edition
- Tutorial Set Up a CI/CD Pipeline for SAP BTP, Cloud Foundry Runtime
Prerequisites
- Concept Configuring SAML Trust Between SAP BTP Subaccount and Identity Provider Configuring SAML trust between an SAP BTP subaccount and an identity provider establishes a federated authentication relationship that allows users to log in to BTP-hosted applications using an external identity provider. A developer uses this configuration to enable single sign-on (SSO) by registering the identity provider as a trusted SAML entity within the subaccount. As described in [Set Up Trust Between SAP Cloud Identity Services and SAP BTP Subaccount](https://developers.sap.com/tutorials/set-up-trust-between-sap-cloud-identity-services-and-sap-btp-subaccount.html), this trust can be established between SAP BTP and SAP Cloud Identity Services, or between SAP BTP and an on-premise system such as SAP S/4HANA.
- Concept Creating an SAP Build Work Zone Site
- Concept SAP BTP Cockpit Navigation
- Concept OIDC Trust and Federation with SAP Cloud Identity Services
- Concept Creating an SAP Cloud Identity Services Tenant
- Concept Full-Stack Application Development with CAP and SAP Fiori Elements
- Concept SAP BTP Subaccount Security Configuration
- Concept SAP BTP Service Marketplace Navigation and Subscription
- Concept SAP Build Work Zone / Cloud Portal Site
- Concept Role Collections for Platform Access A role collection is a named grouping of individual roles that an administrator assigns to platform users — such as developers, administrators, or operators — to grant them the permissions they need to deploy, administer, and access resources on SAP BTP. Administrators can [add roles to a role collection](https://help.sap.com/docs/btp/sap-business-technology-platform/e3130fb95aa64970b07d4dc65b24df1a?locale=en-US&state=PRODUCTION&version=Cloud) from global accounts, directories, and subaccounts, and then assign those collections to users or [map them dynamically to user attributes](https://help.sap.com/docs/btp/sap-business-technology-platform/b3fbb1a9232d4cf99967a0b29dd85d4c?locale=en-US&state=PRODUCTION&version=Cloud). Adding a member to a subaccount involves assigning the appropriate role collections so that the user can access the relevant resources and services.
- Concept SAP BTP Cloud Foundry Runtime Deployment and Operations
- Concept CAP Multi-Target Application (MTA) Deployment
- Concept Creating a Subaccount in SAP BTP Global Account
- Concept Creating and Configuring Destinations in SAP BTP Cockpit
- Concept CDS-based Authorization Annotations in CAP
- Concept Running a Transport in SAP Integration Suite
- Concept BTP Subaccount Entitlements and Quotas
- Concept BTP Trust Configuration
- Concept Subscribing to SAP Build Work Zone, Standard Edition
Concepts that build on this
- Concept SAP Event Mesh Queues and Subscriptions
- Concept SAP HANA Cloud Central Administration
- Concept Creating a Content Provider in SAP BTP Launchpad Service
- Concept Enabling Capabilities in SAP Integration Suite
- Concept Configuring SAML Trust Between SAP BTP Subaccount and Identity Provider
- Concept MTA Project Structure in SAP Business Application Studio
- Concept Building and Deploying a Content Package for SAP Build Work Zone
- Concept Subscribing to a Multi-Tenant Application from a Consumer Subaccount
- Concept Launching SAP GUI for Windows Apps via SAP Build Work Zone in SAP Business Client
- Concept Creating an SAP Build Work Zone Site
- Concept SAP Build Process Automation Desktop Agent Setup and Configuration
- Concept Creating a Schema for SAP Document AI
- Concept Testing a Deployed CAP Service via BAS Terminal and Destination
- Concept Setting Up SAP Document AI Service on SAP BTP
- Concept Assigning Roles to Apps in SAP Build Work Zone
- Concept xs-security.json Security Descriptor (Scopes, Role Templates, XSUAA Service Binding)
- Concept SAP BTP Cockpit Navigation
- Concept Setting Up SAP Continuous Integration and Delivery Service
- Concept Building a Digital Center of Excellence for Low-Code/Citizen Developers
- Concept SAP Build Work Zone / Cloud Portal Site
- Concept Creating and Publishing Custom Themes in SAP Build Work Zone
- Concept Connecting SAP CI/CD Service to Corporate Git via SAP Connectivity Service
- Concept SAP Integration Suite Migration Assessment Application
- Concept Setting Up SAP Integration Suite Source Subaccount for Transport