cancel
Showing results for 
Search instead for 
Did you mean: 

Any IDP that can be used to set up SSO for Cloud (C4C) and On-Premise(S/4Hana)​?

spvamsi
Explorer

Is there any IDP that we can use to set up SSO between C4C and S/4Hana (On-Premise)?

Scenario:

User login to C4C and then access GUI . We need to setup SSO such that the user login page will not be shown while accessing GUI through mashup.

Accepted Solutions (0)

Answers (2)

Answers (2)

praveen333604
Advisor
Advisor
0 Kudos

Hi Phani,

You can achieve your requirement if your S/4 Hana and C4C are using same IDP server,and regarding IDP server you can use any IDP which uses SAML2.0 and above authentication process.

Regards

Praveen

former_member87164
Active Contributor
0 Kudos

Hi Phani,

Pls can you try this !

Kindly go through the documentation in C4C HelpCenter, search for the keyword: "Configure Your Solution for Single Sign-On" & "Front End Single Sign-On"

https://blogs.sap.com/2017/01/30/configurations-for-sso-with-saml2.0-between-sap-cloud-for-customer-...

BR,

Keshav

spvamsi
Explorer
0 Kudos

Hi Keshav,

Can we use the SAML assertions for Web-GUI (SAP GUI HTML) for S/4 also?

Can we use SAP Single Sing-On for C4C and SAP Web-GUI where user would be accessing S/4 Web GUI from C4C application for configuring SSP?

Regards,

Vamsi

former_member87164
Active Contributor
spvamsi
Explorer

Hi Keshav,

Thanks for the link. We are not preferring to use SAP Cloud Platform Identity authentication service as we have to configure SSO between C4C and SAP S/4 Web-GUI (SAP GUI for HTML).

As we have one on-premise solution, we are thinking about SAP Single Sign-On(latest version-3) using X.509 certificate based authentication(As SAML based authentication is for Cloud based application or for Fiori launch pad applications). Is there any way to configure trust between C4C and SAP Single Sign-On using X.509 authentication. We are also looking for configuring trust between SAP Single Sign-On and SAP S/4.

Regards,

Vamsi

former_member87164
Active Contributor

Thanks you, now I got it you're requirement. give me some time & i will get back to you on this. how to archive into that your functionality.

Br,

Keshav

former_member183326
Active Contributor
0 Kudos

I also would like more information on this.

My scenario is similar, Azure AD IDP. User logs into C4C (SAML), in C4C there will be some Fiori Applications which expose ISU on premise. Has anyone else ever done this?