Symptom
- You've established trust relationship between BTP CF global account/subaccount and IAS, so IAS is acted as IDP of your BTP global account or subaccount (No corporate IDP is used).
- Instead of directly assigning role collections to IAS IDP user in BTP Cockpit, you want to assign role collections to the group of IAS, so all the IAS IDP users belong to this group will include the role collection.
- After assigning the role collection to IAS IDP group, you find it doesn't take effect.
Read more...
Environment
- SAP Business Technology Platform - Cloud Foundry environment
- SAP Cloud Identity service
Product
BTP all versions ; SAP Cloud Identity Services all versions
Keywords
platform idp, role collection mapping, group mapping, role mapping, btp cockpit, reflect, not working, role assignment, custom idp, establish trust, group name , KBA , BC-CP-CF-SEC-IAM , UAA, Authentication, Authorization, Trust Mgmnt , BC-IAM-IDS , Identity Authentication Service , Problem
About this page
This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).Search for additional results
Visit SAP Support Portal's SAP Notes and KBA Search.