Hello Experts,We provision users from Azure -> IAS -> Enable Now using IPS.If a user for example: test1) is removed/deleted from the group in Azure/ IAS, and an IPS Job runs afterward, the user (test1) is not deleted in Enable Now; only their roles ...
Hi Experts,I’m using IPS to provision users from IAS to SAP Enable Now.When I remove a user from the IAS group, they are not deleted from Enable Now after the IPS job runs.Is there a way to automatically delete users in Enable Now via IPS?Many Thanks...
Hello Experts,I’m using Azure as IdP and IAS as a proxy.In Azure, I have created groups which are then provisioned to cloud applications via IAS. In IPS I have set up a source system for Azure.My requirement is to provision only specific groups and t...
Hello Experts,I have the following scenario: Azure as the IdP, IAS as a proxy, and SAP Analytics Cloud (SAC).My want is to implement IAS in a way that Azure AD groups are mapped to SAC teams, and then assign the corresponding SAC roles via SAML mappi...
Dear SAP Community,We want to use SAP IPS for user provisioning to Cloud Apps (SAC, Enable Now...)What happens to the content of users when these users are automatically deleted (e.g., in SAC) via IPS in these apps?Thank you in advance.Best Regards
Hello @ThomasRauen Thanks a lot for your help.I have also deleted the users under Server Housekeeping (in Enable Now), but I still receive this error during re-provisioning.Does this mean that users who were once provisioned to Enable Now and then de...
Hello @Matthew_Shaw ,Thank you for this blog and the useful information.I have a question: we want to use IPS for user provisioning to SAC. In SAC, we have different teams (about 20 teams). Users within these teams should receive different roles. In ...
Hello @Yogananda Thank you for your explanation, it clarifies the process well.But there are situations where, for example, a user stays in the company and should remain in Azure AD, but their access to SAC should be revoked.I cannot deactivate this ...
Hello @Yogananda thanks for your reply!We do it the same way: defining groups in Azure (e.g., sac_admins), provisioning them to IAS, and filtering them to cloud apps like SAC.There are three options to manage users in Azure:Remove the user from the ...
Hi, @William_Yu thank you very much for your response.But if I enable SSO and select USER ID under Choose a user attribute to map your Identity Providers - then the user is identified by the USER ID, and the USER ID must match the one in the IdP. Or ...