on 2025 Nov 27 10:01 AM
Are there ways in restricting access to SAP Public Cloud using VPN or through IP Address?
Client would like to make sure that their users can access SAP Public Cloud using their company network.
Request clarification before answering.
Dear @JastinC1,
In Public Cloud you generally can’t put the system behind your own VPN the way you would with an IaaS/private landscape. SAP manages the environment and network edge, so you don’t get a customer-controlled network firewall/VPN termination in front of the tenant
More details from SAP Community:
IP-based restriction directly in SAP Cloud Identity Services (IAS) using Risk-Based / Conditional Authentication. IAS supports policies that can use IP ranges as conditions for allow/deny or step-up
SAP community guidance for Public Cloud calls out using IP-range risk-based authentication for this kind of restriction
More details below:
Important practical information:
More details below:
https://community.sap.com/t5/technology-q-a/risk-based-authentication-in-sap-cis/qaq-p/13700362
https://me.sap.com/notes/0003469077
Summary:
If the requirement is users must be on company network implement:
Best Regards,
Dawid
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
| User | Count |
|---|---|
| 6 | |
| 6 | |
| 6 | |
| 5 | |
| 4 | |
| 3 | |
| 3 | |
| 3 | |
| 3 | |
| 2 |
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.