Symptom
- The Security parameter under General Parameters in SAP CPQ "Allowed origins for the CORS filter" is not functioning as expected.
- Despite leaving this field empty or specifying a particular URL, it does not block any API HTTP requests originating from the script workbench in CPQ.
- Expectation is that an empty field should not allow any API HTTP requests, and specifying a URL should only allow API calls from that specific tenant.
Read more...
Environment
Sales Cloud CPQ
Product
SAP CPQ all versions
Keywords
SAP CPQ, CORS filter, API HTTP requests, allowed origins, security parameter, tenant, server-side requests, JavaScript requests, Script Workbench. , KBA , CEC-SAL-CPQ , Sales Cloud CPQ , Problem
About this page
This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).Search for additional results
Visit SAP Support Portal's SAP Notes and KBA Search.
SAP Knowledge Base Article - Preview