SAP Knowledge Base Article - Preview

3403253 - IPS Job Fail with 403 Forbidden Error When Provisioning from Azure AD

Symptom

IPS job fails with 403 Forbidden error when provisioning users from Azure AD source system.

com.sap.cloud.ips.runtime.exception.ProvisioningException: Can not read entities from source system: 'Azure_ActiveDirectory: XXX'
Caused by: com.sap.cloud.ips.connectors.api.ConnectorException: HTTP operation failed invoking https://graph.misrosoft.com/v1.0/users?%24top=100&%24count=true&%24select= with statusCode: 403 and body <html><body><h1>403 Forbidden</h1>
Request forbidden by administrative rules.
</body></html>


Read more...

Environment

  • Identity Provisioning
  • Microsoft Azure Active Directory

Product

Identity Provisioning 1.0

Keywords

KBA , BC-IAM-IPS , Identity Provisioning Service (IPS) , Problem

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.