SAP Knowledge Base Article - Preview

3623897 - Calling SAP FSM APIs Securely from SAP Build Apps: CORS and Destination Configuration

Symptom

When calling SAP Field Service Management APIs from a custom application—such as one developed using SAP Build Apps—you may encounter CORS (Cross-Origin Resource Sharing) errors during API requests.

Typical error messages may include:

  • Access to fetch at '<API_URL>' from origin '<your_app_domain>' has been blocked by CORS policy.
  • No 'Access-Control-Allow-Origin' header is present on the requested resource.

These errors indicate that the browser is blocking the API call due to cross-origin restrictions, which are enforced for security reasons.


Read more...

Environment

  • SAP Field Service Management (FSM)
  • SAP Build Apps

Product

SAP Field Service Management 1.0

Keywords

CORS, error, SAP, Field Service Management, Build Apps, HTML, Frontend, Backend, Destination, secure, connection, BTP, Cross-Origin Resource Sharing  , KBA , CEC-SRV-FSM-API , FSM API , BC-CP-CF-HTML5 , HTML5 Application Repository Service , CA-LCA-ACP , SAP Build Apps , Known Error

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.