Creating an SAP Cloud Identity Services Tenant
Tutorials that teach this
Docs explaining this concept
- Doc Establish Trust and Federation Between SAP Authorization and Trust Management Service and SAP Cloud Identity Services
- Doc Establish Trust and Federation of Custom Identity Providers for Platform Users
- Doc Log On with a Custom Identity Provider to the Cloud Foundry Environment Using the Cloud Foundry Command-Line Interface
- Doc Safely Switching to Another Identity Provider
Prerequisites
- Concept SAP BTP Trial Account Setup
- Concept SAP BTP Accounts and Subaccounts
- Concept Configuring SAML Trust Between SAP BTP Subaccount and Identity Provider Configuring SAML trust between an SAP BTP subaccount and an identity provider establishes a federated authentication relationship that allows users to log in to BTP-hosted applications using an external identity provider. A developer uses this configuration to enable single sign-on (SSO) by registering the identity provider as a trusted SAML entity within the subaccount. As described in [Set Up Trust Between SAP Cloud Identity Services and SAP BTP Subaccount](https://developers.sap.com/tutorials/set-up-trust-between-sap-cloud-identity-services-and-sap-btp-subaccount.html), this trust can be established between SAP BTP and SAP Cloud Identity Services, or between SAP BTP and an on-premise system such as SAP S/4HANA.
Concepts that build on this
- Concept Identity Provider Group to Role Collection Mapping
- Concept SAP BTP Trust Configuration
- Concept SAP Application Frontend Service Deployment
- Concept Assigning Role Collections in SAP BTP Cockpit
- Concept Subscribing to SAP Build Work Zone, Standard Edition
- Concept SAP Cloud Identity Services User Groups
- Concept BTP Trust Configuration
- Concept SAML Trust Setup
- Concept SAP BTP Kyma Environment Instance Setup