Skip to Content
0
Feb 15, 2022 at 02:08 PM

Using customer Microsoft ADFS as Identity Provider for subaccount in SAP BTP Cloud Foundry ?

303 Views Last edit Feb 15, 2022 at 02:13 PM 3 rev

Hi,

Has anyone configured Microsoft ADFS as an Identity Provider in Cloud Foundry for a subaccount ? We have a Cloud Integration SF edition plan and I am trying to configure this to give external consultants access to the applications without having to use SAP specific user ID's.

The documentation for the above is scarce or maybe I just can't find it with all the name changes from SAP and changing of environments, feature sets etc which is making learning all the more difficult.

I have got the basics working by doing it manually in the Trust Configuration and importing our ADFS server metadata file, configuring Relying Party Trust etc. The issue I am seeing is the user account information for First Name, Last Name and email address in BTP is being populated with "this default was not configured invalid". I want to know how to get this information specifically or whether there is very specific documentation to make my life easier. I've trying mapping the attributes in the claim rules but then this appears to break SAML.

If someone has this specific information or if they can point me in the right direction I would very much appreciate it.

Thank you kindly.

Regards, Nelis