CAP Authorization and Access Control
The concept name was not provided (marked as "undefined"), and the supplied source snippets do not contain enough specific, attributable detail about a single named concept to produce an accurate, grounded definition. A definition cannot be written without a clearly identified concept and sufficient source content to support it.
Tutorials that teach this
- Tutorial Add User Authentication to Your Application (SAP HANA Cloud)
- Tutorial Use mocking to embrace auth in your domain model from the outset
- Tutorial Add Authorization
- Tutorial Create a CAP Service with BAS Productivity Tools
- Tutorial Learn About Selected CAP Conventions
- Tutorial Add Security to the SAP SuccessFactors Extension
- Tutorial Add Authentication and Authorization to the Application
Docs explaining this concept
Prerequisites
- Concept CAP OData V4 Service Development The concept provided is **undefined**, and the supplied sources do not describe a specific, identifiable SAP developer concept that can be accurately defined. No definition can be responsibly written without a clearly stated concept name and supporting source content.
- Concept OData Capabilities Vocabulary (DeleteRestrictions, InsertRestrictions, UpdateRestrictions) The concept name was not provided, so a specific definition cannot be generated. Please supply a valid concept name along with the relevant source snippets so that an accurate, source-grounded definition can be written.
- Concept CAP Domain Modeling No definition can be provided because the concept supplied is **undefined** and the available source snippets do not contain sufficient grounded information to describe a specific SAP developer concept. Please supply a valid concept name and relevant source material so that an accurate, source-grounded definition can be written.
- Concept CAP Node.js Development The provided sources do not contain enough grounded detail to write a precise, factually supported definition for an unnamed or undefined concept. Based on the available source snippets, these materials collectively relate to the [SAP Cloud Application Programming Model (CAP)](https://help.sap.com/docs/btp/sap-business-technology-platform/bc8d5c0598774f87a54cb63cb6abecc6?locale=en-US&state=PRODUCTION&version=Cloud) and development on SAP Business Technology Platform, covering topics such as building business applications with Node.js, consuming web services, and integrating with SAP HANA Cloud. Developers use these resources to build, extend, and expose services within the SAP BTP ecosystem.
- Concept CDS-based Authorization Annotations The concept name is not defined in the provided source snippets, and no factual claims about it can be grounded in the available material. Insufficient source information was provided to produce a reliable definition.
- Concept Basic Authentication The concept name was not provided, but based on the sources, this appears to relate to **inbound communication authentication** in SAP BTP, ABAP environment. A Communication User is a technical user configured to enable inbound communication, allowing external clients to authenticate and connect to SAP BTP services. Developers use it alongside authentication methods such as [Basic Authentication](https://help.sap.com/docs/btp/sap-business-technology-platform/4e1761cecbdd47f6b93e1dfd9d254281?locale=en-US&state=PRODUCTION&version=Cloud) or OAuth to secure [inbound communication channels](https://help.sap.com/docs/btp/sap-business-technology-platform/7e73616a62e0455dab6574ead2073383?locale=en-US&state=PRODUCTION&version=Cloud). When using Basic Authentication, the client supplies the credentials of the Communication User to gain access to the system.
- Concept CAP service development The concept provided is **undefined** and no valid concept name was supplied. Without a specific SAP developer concept to define, and with the available sources covering topics such as CAP services, SAP Build Actions, SAP Business Application Studio, and SAP SuccessFactors extensions, it is not possible to generate an accurate, source-grounded definition. Please provide a valid concept name so a precise definition can be written.
- Concept CAP Framework (Cloud Application Programming Model) The concept name was not provided, so a precise definition cannot be determined. Based on the available sources, [SAP Business Technology Platform (SAP BTP)](https://help.sap.com/docs/btp/sap-business-technology-platform/c2fec62b49fa43b8bd945c85ecc2e5bd?locale=en-US&state=PRODUCTION&version=Cloud) is a platform on which developers build and run business applications, choosing from development environments, tools, APIs, and [programming models](https://help.sap.com/docs/btp/sap-business-technology-platform/042061da2e964b7eab3c7ec2a5cc7ece?locale=en-US&state=PRODUCTION&version=Cloud) such as ABAP Cloud and the SAP Cloud Application Programming Model (CAP). Developers use it to create full-stack business applications, following best practices to select the approach that best suits their requirements.
- Concept CAP for Node.js The provided sources do not contain sufficient information to define this concept. The sources consist only of tutorial titles and a references page URL, with no descriptive content grounded in the concept of "undefined." A meaningful definition cannot be written without factual source material.
- Concept CAP Java application development The concept name is not defined and the provided sources contain insufficient detail to construct a grounded definition — they consist only of tutorial titles and a brief navigation label from the [SAP BTP documentation](https://help.sap.com/docs/btp/sap-business-technology-platform/bc8d5c0598774f87a54cb63cb6abecc6?locale=en-US&state=PRODUCTION&version=Cloud), with no explanatory prose about a specific concept. A meaningful, source-grounded definition cannot be written without a valid concept name and supporting source content.
- Concept Role-Based Access Control The concept submitted is **undefined**, so no specific SAP developer concept was provided to define. Based on the available sources, the closest identifiable topic is **Identity and Access Management (IAM)** on SAP Business Technology Platform. [Identity and Access Management (IAM)](https://help.sap.com/docs/btp/sap-business-technology-platform/f25f9108740442c3804370f2d88a9bdd?locale=en-US&state=PRODUCTION&version=Cloud) enables developers to control who can access applications and what actions they are permitted to perform. The [SAP Authorization and Trust Management Service](https://help.sap.com/docs/btp/sap-business-technology-platform/649961f8d4ad463daca33b3a20deba4c?locale=en-US&state=PRODUCTION&version=Cloud) is a core component of this, allowing developers to manage user authorizations and establish trust with identity providers in the Cloud Foundry environment. Developers use these capabilities to secure applications by defining roles, assigning permissions, and controlling access at both the organization and application level.
- Concept CAP Service Modeling The concept name provided is "undefined," so no specific SAP developer concept can be identified or defined from the available sources. The sources cover topics such as [CAP services with Node.js](https://developers.sap.com/tutorials/appstudio-cap-nodejs-create.html) and SAP HANA stored procedures, but without a valid concept name, a grounded definition cannot be produced. Please provide a specific concept name to generate an accurate reference definition.
Concepts that build on this
- Concept XSUAA Service Instance Configuration (xs-security.json)
- Concept Automated Testing
- Concept CAP Service Modeling
- Concept CAP Cloud Deployment
- Concept CAP Mocked Authentication Strategy
- Concept xs-security.json Authorization Configuration
- Concept Application Security Descriptor File (xs-security.json)