Disclaimer: The insights shared in this blog are based on my personal observations and learning. They may not apply universally, and I encourage readers to conduct their own research and make an informed decision before using this content for productive use.
In the previous part of this series, we demonstrated how to build and deploy custom Joule Skills and integrate them into SAP Build Work Zone sites. However, a critical aspect of deploying these skills in a real-world environment is access control deciding who can use your custom skills and how to share them securely.
By default, only users who are explicitly granted Execute or Admin access in the shared environment can consume your deployed Joule Skills. If other users attempt to interact with the skill, they receive a generic fallback response from Joule, which doesn't reflect the actual skill functionality.
Let’s walk through how to share your Joule Skills securely and effectively using SAP Build and SAP Cloud Identity Services.
Understanding the Access Control Behaviour
SAP Build's environment sharing works as follows:
Option 1: Open Access for Everyone
If your use case allows, you can make the skill available to all users within your organization:
This method makes the skill available to all users with access to the environment. Use with caution if the skill exposes sensitive operations or data.
Option 2: Controlled Access Using User Groups
For better governance and security, use user groups from your Cloud Identity Services (CIS) tenant:
Refresh & Redeploy Access
Once you’ve shared with user groups:
It may take a few minutes for the redeployment to complete. Use Refresh to monitor the status.
Final Verification
After successful redeployment:
When users click Open from the response message, they will be directed to the associated application screen (if configured).
Conclusion
Access management is a vital step in rolling out custom Joule Skills at scale. Whether you want to expose your skill to all users or control access via user groups, SAP Build offers the flexibility to do both. Properly sharing and redeploying your skill ensures the right people get the right experience and keeps your environment secure and manageable.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
| User | Count |
|---|---|
| 46 | |
| 41 | |
| 38 | |
| 35 | |
| 30 | |
| 28 | |
| 27 | |
| 24 | |
| 24 | |
| 23 |