Skip to Content

Navigate directly to app (during login)

I am trying to link directly to a split app via url in an email.

The url is like this

https://sapfiori.xxx.com/sap/bc/ui2/flp#semobj-action

This works if user is already logged in via sso.

However, if the user is not logged in, the user is prompted to login via sso, and then taken to

https://sapfiori.xxx.com/sap/bc/ui2/flp#shell-home

Anyone else experience this? Any ideas?

The app doesnt matter. We have okta sso (dont think that matters). We have ui add on 750 sp06. 1.38.19

Thanks

Tim

Add comment
10|10000 characters needed characters exceeded

  • Get RSS Feed

2 Answers

  • Mar 28, 2017 at 07:12 PM

    Hi, Timothy.

    I'm not personally familiar with Okta but if it's a SAML2 SSO then it likely falls into a known limitation where SAML2 will lose the hash fragment on redirect. There are some steps that can be taken to try and work around this but the core limitation is in the protocol. Details on the workarounds available can be found here:

    2051210 - Fragments in HTTP URLS are not handled after SAML 2.0 authentication

    Thanks,

    Keith Nunn
    SAP Product Support

    Add comment
    10|10000 characters needed characters exceeded

  • Mar 31, 2017 at 06:42 PM

    Thanks for the info. OKTA is SAML 2.0, and our GW Hub SAML configuration was already defined as described in note 2051210. As I said, direct navigation works on requests issued AFTER the initial SAML login. But the FIRST request, which prompts for SAML login does not. I think there is still a bug here.

    Add comment
    10|10000 characters needed characters exceeded