Skip to Content
0
Jan 20, 2023 at 01:21 AM

IAS with Azure AD UUID problem

910 Views Last edit Jan 20, 2023 at 11:22 AM 3 rev

Hi,

I configured Azure AD to work with IAS to provide SSO to our users in SAP BTP Cloud Foundry.

I followed guide below:

https://microlearning.opensap.com/media/Azure+AD+as+IdP+and+SAP+Identity+Authentication+Service+as+SAML+Federation+Proxy/1_i0kmu1x0

It is working fine, I mean I am able to autenticate to Cloud Foundry Applications using SSO, but I have one issue, I need the IAS UUID to be propagate in the SAML because my application, which is SAP Task Center, needs it.

When I check the data that is in SAML I can see that:

image.png

I understand that it is right because I configured Azure AD as IdP and IAS as Federation Proxy, so it looks ok that it is not using the data from my Identity Directory in IAS.

But I need the UUID from IAS to be in externalID attribute, I do not know how to make that happen.

In another words I want the SAML issued by Azure AD to be complemented with information from IAS before send it to my SAP BTP Application.

And indeed there is a configuration in IAS in Corporate Identity Providers / Identity Federation where I can tell that I want to "Use Identity Authentication user store", I flag it but nothing happened.

Does anyone have any ideal please?

Regards

Mauricio

Attachments

image.png (68.1 kB)