Symptom
- SAML2 SSO is configured for a specific client between the ABAP system, IAS, and a corporate identity provider. But a Windows Security login pop-up appears during or after logon.
- The request URL carries the correct client in the sap-client parameter, however the server response sets the sap-usercontext cookie to a different client, causing an unintended client switch and breaking the SSO flow.
Read more...
Environment
- SAML2 SSO via SAP IAS
Keywords
saml2 sso, ias, azure ad, windows security pop-up, spnego, kerberos, icf, sap-client, sap-usercontext, client switch, fiori launchpad, ui5 manifest, 401 unauthorized, odata, sicf configuration , KBA , CA-UI5-COR , Core and Runtime , Problem
About this page
This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).Search for additional results
Visit SAP Support Portal's SAP Notes and KBA Search.
SAP Knowledge Base Article - Preview