Symptom
- Identity Authentication acts as a proxy to delegate the authentication to Azure Entra ID as corporate identity provider.
- The application for SAP Identity Authentication Service in Azure Entra ID is using OIDC
- During SP-Initiated login, after redirected to Azure Entra ID, the following error occurs:
- AADSTS50011: The redirect URI 'https://<tenant ID>.accounts.cloud.sap/oauth2/callback' specified in the request does not match the redirect URIs configured for the application 'xxxxxxxx-xxxx-xxxx-xxxx-xxxxxxxxx'. Make sure the redirect URI sent in the request matches one added to your application in the Azure portal. Navigate to https://aka.ms/redirectUriMismatchError to learn more about how to fix this.
Read more...
Environment
SAP Cloud Identity Services
Product
SAP Cloud Identity Services all versions ; SAP SuccessFactors Platform all versions
Keywords
IAS, AADSTS50011, Azure, Entra, ID, Microsoft, CSD, Common Super Domain, Identity Authentication, error, fail, AD, active directory , KBA , BC-IAM-OID , OIDC/OAUTH2 component in SAP Cloud Identity Services , Problem
About this page
This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).Search for additional results
Visit SAP Support Portal's SAP Notes and KBA Search.
SAP Knowledge Base Article - Preview