cancel
Showing results for 
Search instead for 
Did you mean: 

SSO & Integration between MS AzureAD - SAP IDM - SAP HANA - SAP GRC

former_member609210
Discoverer
0 Kudos

Hi Experts,

I am an Security Consultant. In our project, we need to integrate Microsoft Azure AD with SAP IDM and from SAP IDM to SAP GRC & SAP ABAP systems, SAP HANA DB.... with Single Sign-On (SSO) in place.

Plan is like, new user will be created in Azure and then synchronized to IDM. In IDM, should be possible to select the ABAP systems which user need access for and also SAP authorization roles. After approval flow, users should be automatically created in intended systems. In GRC, scope is not finalized but at this stage ARA in scope and GRC to be connected with IDM to do risk analysis.

Need support in below.

1. Please help with what could the best approach and what type of connections needed between different systems

2. From authorization team perspective, what should be considered.

3. Is it possible to create Users in Hana Database from SAP IDM?

4. How do we implement SSO in this integration?

Thanks in advance for the valuable suggestions and comments.

former_member516460
Discoverer
0 Kudos

Hi Harish, We are exploring a similar kind of approach and would you mind sharing more details please.

Thanks and Regards,

Naga.

Accepted Solutions (0)

Answers (1)

Answers (1)

yogananda
Product and Topic Expert
Product and Topic Expert
0 Kudos

Hi 10995919

you can follow the instructions from lot many articles related to IAS/IPS for solution


ABAP

https://blogs.sap.com/2019/05/01/using-identity-authentication-and-provisioning-service-to-provision...


Documentation on IAS (Admin console for setting up SSO and managing)

https://help.sap.com/viewer/product/IDENTITY_AUTHENTICATION/Cloud/en-US

Documentation on IPS (Sync process)

https://help.sap.com/viewer/product/IDENTITY_PROVISIONING/Cloud/en-US