cancel
Showing results for 
Search instead for 
Did you mean: 
Read only

Need information on migrating from SAML protocol to OIDC

Sri436
Discoverer
0 Kudos
464

Hi,

Could anyone provide the information on the below that would be helpful.

We are planning to migrate the Trust configuration between the SAP BTP account and Cloud Identity services from SAML to OIDC.

If we migrate does the new change will have effect on the current XSUAA service being utilized in developing the SAP BTP UI5 and CAPM Apps.

Accepted Solutions (0)

Answers (2)

Answers (2)

martijndeboer
Product and Topic Expert
Product and Topic Expert
0 Kudos

BTP has a manual process allowing to switch from SAML to OIDC and keeping the origin. This will involve a short downtime, see the documentation at https://help.sap.com/docs/btp/sap-business-technology-platform/migration-from-saml-trust-to-openid-c...

ThomasRauen
Explorer
0 Kudos

I guess with the switch you'll have to create a new "Custom Identity Provider for Applications" as you can't just switch the protocol. With that I guess you'll loose the user - role-collection assignments as the users are created for dedicated IDPs... 

Beside that i couldn't find a dedicated relation between UI5 apps and the dedicated Custom Identity Provider for Apps... therefor i guess the App / Role Template / Role / Role Collections structures shouldn't be affected...