Skip to Content
0

Navigate directly to app (during login)

Mar 28, 2017 at 12:38 AM

54

avatar image

I am trying to link directly to a split app via url in an email.

The url is like this

https://sapfiori.xxx.com/sap/bc/ui2/flp#semobj-action

This works if user is already logged in via sso.

However, if the user is not logged in, the user is prompted to login via sso, and then taken to

https://sapfiori.xxx.com/sap/bc/ui2/flp#shell-home

Anyone else experience this? Any ideas?

The app doesnt matter. We have okta sso (dont think that matters). We have ui add on 750 sp06. 1.38.19

Thanks

Tim

10 |10000 characters needed characters left characters exceeded
* Please Login or Register to Answer, Follow or Comment.

2 Answers

Keith Nunn
Mar 28, 2017 at 07:12 PM
0

Hi, Timothy.

I'm not personally familiar with Okta but if it's a SAML2 SSO then it likely falls into a known limitation where SAML2 will lose the hash fragment on redirect. There are some steps that can be taken to try and work around this but the core limitation is in the protocol. Details on the workarounds available can be found here:

2051210 - Fragments in HTTP URLS are not handled after SAML 2.0 authentication

Thanks,

Keith Nunn
SAP Product Support

Share
10 |10000 characters needed characters left characters exceeded
Timothy Hughes Mar 31, 2017 at 06:42 PM
0

Thanks for the info. OKTA is SAML 2.0, and our GW Hub SAML configuration was already defined as described in note 2051210. As I said, direct navigation works on requests issued AFTER the initial SAML login. But the FIRST request, which prompts for SAML login does not. I think there is still a bug here.

Share
10 |10000 characters needed characters left characters exceeded