SAP Cloud Identity Services (IAS) Authorization Policies for CAP
Tutorials that teach this
Prerequisites
- Concept CDS-based Authorization Annotations in CAP
- Concept Full-Stack Application Development with CAP and SAP Fiori Elements
- Concept Configuring SAML Trust Between SAP BTP Subaccount and Identity Provider Configuring SAML trust between an SAP BTP subaccount and an identity provider establishes a federated authentication relationship that allows users to log in to BTP-hosted applications using an external identity provider. A developer uses this configuration to enable single sign-on (SSO) by registering the identity provider as a trusted SAML entity within the subaccount. As described in [Set Up Trust Between SAP Cloud Identity Services and SAP BTP Subaccount](https://developers.sap.com/tutorials/set-up-trust-between-sap-cloud-identity-services-and-sap-btp-subaccount.html), this trust can be established between SAP BTP and SAP Cloud Identity Services, or between SAP BTP and an on-premise system such as SAP S/4HANA.
- Concept SAP Cloud Identity Services