SAP Cloud Identity Services Setup
The concept provided is undefined, so no specific SAP developer concept has been identified to define. Based on the available sources, the closest coherent topic is Trust and Federation with Identity Providers on SAP BTP — a mechanism that allows developers and administrators to configure SAP Business Technology Platform (SAP BTP) subaccounts to delegate authentication to external identity providers (IdPs) using protocols such as SAML or OpenID Connect. Developers use it to enable single sign-on (SSO), manage user provisioning, and control access across SAP BTP accounts by establishing trust relationships with services such as SAP Cloud Identity Services. It also supports migration from SAML-based trust to OpenID Connect trust to align with modern authentication standards.
Tutorials that teach this
- Tutorial Use Trial to Subscribe to the SAP Document AI Basic UI
- Tutorial Set Up SAP Build Apps on SAP BTP Trial Account
- Tutorial Get Access to the SAP Document AI Workspace
- Tutorial Set Up Prerequisites for SAP Build CodeJam
- Tutorial Set Up Application Frontend service in your BTP trial account
- Tutorial Use Free Tier to Subscribe to SAP Document AI Basic UI
- Tutorial Set Up SAP Build Work Zone, standard edition Using a Trial Account
Learning journeys covering this
Docs explaining this concept
- Doc Authentication Strategies
- Doc Establish a central entry point with SAP Build Work Zone
- Doc Identity and Access Management for SAP Joule
- Doc Joule Landscape Recommendation
- Doc SAP IAM integration with SAP Cloud Identity Services
- Doc Client Libraries for SAP BTP Security Services
- Doc Introduction to Identity and Access Management on SAP BTP
- Doc Maintain SAML 2.0 Configuration
Discovery missions teaching this
Code samples embodying this
Prerequisites
- Concept SAP BTP Trial Accounts The concept name was not provided and the supplied source snippets do not define a specific SAP developer concept — they cover trial account setup, subaccount creation, entitlements, and environment onboarding on SAP BTP, but do not describe a single named concept. A definition cannot be accurately written without a clearly identified concept grounded in the sources.
- Concept SAP BTP trial and free tier account setup The concept name was not provided (marked as "undefined"), and the supplied sources do not converge on a single, clearly identifiable SAP developer concept. The sources reference a variety of topics — [Trial Accounts and Free Tier](https://help.sap.com/docs/btp/sap-business-technology-platform/046f127f2a614438b616ccfc575fdb16?locale=en-US&state=PRODUCTION&version=Cloud) and [Getting Started with SAP BTP](https://help.sap.com/docs/btp/sap-business-technology-platform/144e1733d0d64d58a7176e817fa6aeb3?locale=en-US&state=PRODUCTION&version=Cloud) — without a shared concept to define. A valid concept name is required to produce an accurate, grounded definition.
- Concept SAML 2.0 Trust and Federation Configuration The concept name is not defined in the provided sources, and no specific SAP developer concept is identified in the supplied snippets beyond general references to SAML identity provider trust and federation on SAP Business Technology Platform. Based on the available sources, a **SAML Identity Provider (IdP)** is an external system that authenticates business users and asserts their identity to SAP BTP via the SAML protocol. Developers and administrators [establish trust and federation with UAA using a SAML identity provider](https://help.sap.com/docs/btp/sap-business-technology-platform/2ce3938c66d94479848bff3090999027?locale=en-US&state=PRODUCTION&version=Cloud) so that users can log on to BTP services through their organization's identity system. Federation attributes can be [configured for default SAML federation](https://help.sap.com/docs/btp/sap-business-technology-platform/6d073332bc5743fdb7f7f06bde499ab7?locale=en-US&state=PRODUCTION&version=Cloud) to control how user attributes from the IdP are mapped to BTP business users.
- Concept Identity Provider Configuration The concept name was not provided, and the supplied sources cover a range of SAP BTP Identity and Access Management topics — including backup configuration for SAP Authorization and Trust Management Service, trust setup, identity provider switching, role collection assignment, and auditing — without a single, clearly isolated concept to define. A precise, source-grounded definition cannot be produced without knowing which specific concept is intended.
- Concept SAP BTP Service Marketplace The concept provided is **undefined**, and the supplied sources do not contain sufficient information to construct a grounded, accurate reference definition for any clearly identified SAP developer concept. The sources reference topics such as [subscribing to SAP Business Application Studio](https://help.sap.com/docs/btp/sap-business-technology-platform/0a9b42e8795d4f7b8fc196a6fde0b3f2?locale=en-US&state=PRODUCTION&version=Cloud) and [creating an ABAP system](https://help.sap.com/docs/btp/sap-business-technology-platform/50b32f144e184154987a06e4b55ce447?locale=en-US&state=PRODUCTION&version=Cloud), but without a named concept to define, no accurate prose definition can be produced. Please provide a specific concept name to generate a valid definition.
- Concept BTP Subaccount Entitlements and Service Plans The provided sources do not contain enough information to define a specific SAP developer concept, as the concept name is listed as "undefined" and the source snippets cover a range of unrelated topics (audit log retention, Kyma environment plans, Cloud Foundry migration, and various tutorials) without a clear shared concept to define. A meaningful, source-grounded definition cannot be produced.
- Concept SAP BTP Cockpit The concept name was not provided and the supplied source snippets do not define or describe a single, identifiable SAP developer concept — they cover a range of unrelated SAP BTP topics such as Kyma environment setup, Cloud Foundry org deletion, subaccount management, and service instances. A focused definition cannot be grounded solely in these sources without a clearly stated concept to define.
- Concept SAP BTP Subaccount and Entitlement Setup The provided sources do not contain sufficient information to define this concept. The concept name is "undefined" and none of the source snippets supply grounded content that could be used to write an accurate, sourced definition.
Concepts that build on this
- Concept Trust configuration between SAP Cloud Identity Services and SAP BTP
- Concept Role Collections and Access Management
- Concept Custom Identity Provider Trust Setup
- Concept Identity Provider (IdP) Trust Configuration
- Concept SAP Cloud Identity Services – Authorization Management
- Concept Custom Identity Provider Integration
- Concept Custom Identity Provider for BTP
- Concept SAML Identity Provider Trust Configuration
- Concept Custom Domain Management on SAP BTP
- Concept SAP Build Work Zone configuration
- Concept SAP Identity Authentication Service Trust Setup
- Concept SAP Document AI Service Setup and Subscription