SAP Knowledge Base Article - Preview

3663505 - How to configure the Enriched Token Claims when using EntraID as corporate IdP(OIDC)

Symptom

  • Users are being authenticated incorrectly in SAP SuccessFactors (SF) due to email-based mapping in the Identity Authentication Service (IAS) and Azure integration.
  • When user A's email is changed to user B's email in IAS, logging in with user A's email on the Azure interface results in access to user B's SF account.


Read more...

Environment

  • Identity Authentication Service (IAS)
  • SAP SuccessFactors (SF)
  • Azure Active Directory

Product

SAP Cloud Identity Services all versions

Keywords

IAS, SAP SuccessFactors, Azure integration, SAML 2.0, user authentication, email mapping, custom field, user identification, enriched token claims, login issue, identity provider configuration. , KBA , BC-IAM-IDS , Identity Authentication Service , Problem

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.