cancel
Showing results for 
Search instead for 
Did you mean: 
Read only

How to limit OData API to only POST method ?

kacper1
Participant
0 Likes
1,109

Dear Experts,

I wonder if it is possible in SAP Cloud For Customer to limit standard or custom OData to only POST method ? So I don't want somebody to have method GET available. I only want to grant access for this API to POST data. I know that it is possible through custom Web Service or SCPI, but do you know if I can achieve it in standard way in C4C ?

Can you please help me and advise ? Thank you in advance.

Best regards,

Kacper

Accepted Solutions (0)

Answers (1)

Answers (1)

leonardo_felini
Product and Topic Expert
Product and Topic Expert
0 Likes

Hello Kacper,

Since the Odata operations are executed by business users, it utilizes the access rights framework that is also in place in the C4C UI.

Considering this, by standard it would not be possible to restrict users to only create data, the same way that it is not possible to set a business user with only write access and no read access to a certain object.

The only possible way to limit the operations that are made via Odata would be to use it through communication arrangements that use technical users. However this would require a different setup depending on your business landscape.

Kind regards,

Leonardo

Support Consultant | SAP Product Support

Community:

SAP Business ByDesign: https://www.sap.com/community/topics/business-bydesign.html

SAP Cloud for Customer: https://www.sap.com/community/topics/cloud-for-customer.html