Symptom
- When accessing a custom application using a custom domain in Cloud Foundry, get the error: "The redirect_uri has an invalid domain." or "The request for authorization was invalid."
- When accessing a custom application in Cloud Foundry without custom domain, get the error:
--------------
OpenID provider cannot process the request due to configuration issues. Please contact your system administrator.
Authorization Request Error
There was an error. The request for authorization was invalid.
--------------
as following image.
Note:
The error happens no matter SAP Identity Provider(SAPIDS) or custom application identity provider (such as Identity Authentication Service) is used.
For same custom application running on different BTP CF regions, it works for region like EU10, while has the error for region like EU22.
"Image/data in this KBA is from SAP internal systems, sample data, or demo systems. Any resemblance to real data is purely coincidental."
Read more...
Environment
SAP Business Technology Platform, Cloud Foundry environment
Product
BTP all versions
Keywords
CF, application, route, identity provider, azure, custom idp, trust, SAML token, UAA, XSUAA, Authorization Request Error - The redirect_uri has an invalid domain, btp scp,sap cloud platform , KBA , BC-CP-CF-SEC-IAM , UAA, Authentication, Authorization, Trust Mgmnt , BC-CP-CF-SEC-DOM , Custom Domain Certificates , Problem
About this page
This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).Search for additional results
Visit SAP Support Portal's SAP Notes and KBA Search.
SAP Knowledge Base Article - Preview