Symptom
- The "Read users" role in Identity Authentication Service (IAS) does not display the "Groups" tab.
- The "Manage groups" role provides access to read users and groups but also allows deletion of groups, which is not desired.
- Requirement to enable a role or policy that allows read-only access to both users and groups in IAS.
"Image/data in this KBA is from SAP internal systems, sample data, or demo systems. Any resemblance to real data is purely coincidental."
Read more...
Environment
- Identity Authentication Service
Product
SAP Cloud Identity Services all versions
Keywords
IAS, identity authentication service, read users, manage groups, display-only access, authorization policies, view groups, view users, restrict permissions, custom policy, user roles, groups tab, read-only. , KBA , BC-IAM-IDS , Identity Authentication Service , Problem
About this page
This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).Search for additional results
Visit SAP Support Portal's SAP Notes and KBA Search.
SAP Knowledge Base Article - Preview