SAP Knowledge Base Article - Public

3659339 - Status check fails when connecting SAP Datasphere hosted on AWS to Azure Data Lake using Microsoft Azure ADLS2

Symptom

You want to establish a connection between Datasphere hosted on AWS to Azure data lake, but connection status check failed for HTTP::OAuth2ClientCredentials. Possible causes of error:  Detailed error message (forbidden).

Environment

SAP Datasphere

Reproducing the Issue

  1. Create a Microsoft Azure Data Lake Storage Gen2 connection in SAP Datasphere hosted on AWS.
  2. Attempt to validate the connection.
  3. Observe the error message: "Connection status check failed for HTTP::OAuth2ClientCredentials. Possible causes of error: Detailed error message (forbidden)."

Cause

Network settings in place for Azure ADLS Gen2 are limiting access from SAP Datasphere hosted on AWS. Currently, Azure ADLS Gen2 can be reached only through the internal network, private link, or peering.

Resolution

The access from SAP Datasphere hosted on AWS is currently unavailable. This is because Azure ADLS Gen2 can only be accessed through the internal network. Refer to the SAP Datasphere product roadmap for 2026, which plans to leverage SAP Cloud Connector to establish a tunnel into the Azure network. SAP Road Map Explorer 

See Also

For SAP Notes, Community and SAP Help, we use the below:

Keywords

sap datasphere, aws, azure data lake, microsoft azure data lake store gen2, connection validation error, forbidden error, network restrictions, private link, ADLS2 , KBA , DS-DI-CON , Connections , Problem

Product

SAP Datasphere all versions