cancel
Showing results for 
Search instead for 
Did you mean: 
Read only

Question: How to restrict access to EnableNow in regards to licensing (SuccessFactors & EnableNow)

amarx74
Discoverer
0 Likes
916

Hello everyone, 

We have the issue that we want to roll out EnableNow for a limited population only. Yet, in regards to licenses, we do not see any clean solution to restrict users in SuccessFactors not to access EnableNow (via SSO), so users outside the population do not generate costs just by accidentally opening the SAP Companion via the question mark button at the top. 
Is there any technical solution to this issue?

Accepted Solutions (1)

Accepted Solutions (1)

Anton_Mavrin1
Product and Topic Expert
Product and Topic Expert
0 Likes

This could be done via Single Sign-On configuration. You can create a group in you corporate Identity provider (e.g. MS Entra ID) and assign this group to the SAP Enable Now application, so that only users who are members of this group can access SAP Enable Now.

amarx74
Discoverer
0 Likes

Whe thought of that too, but we noticed that as soon as EnableNow is connected with SF, users get this login popup if they are not set up for the SSO with EnableNow. Will this disappear once the grouping in IAS (our identity provider) is set up? Currently, only a small population will use EnableNow and we want to avoid all the others getting this popup when opening SuccessFactors.

amarx74
Discoverer
0 Likes
Whe thought of that too, but we noticed that as soon as EnableNow is connected with SF, users get this login popup if they are not set up for the SSO with EnableNow. Will this disappear once the grouping in IAS (our identity provider) is set up? Currently, only a small population will use EnableNow and we want to avoid all the others getting this popup when opening SuccessFactors.
Anton_Mavrin1
Product and Topic Expert
Product and Topic Expert
What you can try is to add these parameters to the SAP Companion settings in SFSF. enableExternalUsage=true;externalUsageTimeout=<time in seconds required for employees to complete the SSO authentication> This trick prevents the failed authentication popup from appearing if the SSO authentication against the IdP fails in the background. The parameters were designed for external content consumption scenarios via SAP Companion, but they have also proven useful as workarounds for cases like yours.
amarx74
Discoverer
0 Likes
Thank you so much for your quick help 🙂
Kevin_Norris
Explorer
0 Likes
Are their similar parameters that can be utilised to prevent the failed Authentication pop up in SAP WorkZone ?

Answers (0)