ICM trace on level 3 seems to indicate the principal propagation certificate is accepted: [Thr 139903707502336] HttpHandleCertificate: Client certificate received: with len=1278, subj="CN=sapcc, EMAIL=pieter@xxx.com", issuer="CN=sapcc, EMAIL=pieter...
When the user navigates to "Open Task" and the task is configured to show details in a Web Dynpro ABAP application then the backend system generates a URL pointing to that backend system directly. For a seamless experience, it not only requires that ...
Detected by Fortify rule 3BA42F5B-5082-460F-AA48-98A9F8B1B1CF
Overview: The call to on() in service.js on line 504 sets a callback that could lead to a race condition.
Explanation: Node.js allows developers to assign callbacks to IO-blocked event...
For SAML SSO applications, an IdP-based URL can be used to login to the application.
Doing so allows users not known in the corporate IdP to login to the application using direct IAS credentials.
Is there a similar solution for OIDC SSO applicati...
One to add to the list: SF sales demo systems do not allow changing IAS tenant. As a result, you need to align with the system admin of your S/4HANA Cloud Public Edition TDD if you plan on using it across SF and S/4. The only option is to change the ...
[Invalid value [OAuth2ClientCredentials] for property [Authentication] is not matching the expression [BasicAuthentication]CPI is explicitly requiring BasicAuthentication! I would expect a more robust solution supporting OAuthClientCredentials across...
Hi, I can confirm that it's not available at the moment.It was planned to be available already for quite a while.SAP has not publicly announced any delays or ETA's for when it would become available for partners.Quite disappointing.-- Pieter
I'm happy to report - "Server reached." ✅Some important lessons learned:SM50 security/icf tracing shows more info than ICM (this pointed out that the system was trying to map and that CERTRULE was not being applied)login/certificate_mapping_rulebased...