SAP Knowledge Base Article - Preview

3582800 - Identity Directory API error "Unable to manage policy group of type [Authorization] because caller is not authorized policy admin"

Symptom

There is a need to make a PUT request to update an SAP Cloud Identity Services (IAS) authorization policy group, following the Identity Directory API in https://api.sap.com/api/IdDS_SCIM/path/updateGroup.

The API call returns the following error when making the PUT request: 

{
  "schemas": [
    "urn:ietf:params:scim:api:messages:2.0:Error"
  ],
  "status": "403",
  "detail": "Unable to manage policy group of type [Authorization] because caller is not authorized policy admin.",
  "scimType": "sensitive"
}

Image/data in this KBA is from SAP internal systems, sample data, or demo systems. Any resemblance to real data is purely coincidental.


Read more...

Environment

SAP Cloud Identity Services

Product

Identity Authentication 1.0

Keywords

IAS, SCIM API, Identity Directory API, PUT request, 403 error, authorization policy, policy group , KBA , BC-IAM-IDS , Identity Authentication Service , Problem

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.