Identity Provider (IdP) Trust Configuration
The concept provided is undefined, and the available source snippets do not contain sufficient grounded content to produce a reliable, accurate definition. All sources relate to trust configuration, SAP BTP setup tutorials, or SAP Document AI — none of which define a specific named developer concept. Without a valid concept name and supporting source material, a documentation-quality definition cannot be responsibly generated.
Tutorials that teach this
- Tutorial Use Trial to Subscribe to the SAP Document AI Basic UI
- Tutorial Establish Trust Configuration between SAP S/4HANA On-premise and SAP BTP
- Tutorial Reconfigure Trust Relationships on SAP HANA XS Systems
- Tutorial Set Up Trust Between SAP Cloud Identity Services and SAP BTP Subaccount
- Tutorial Set Up Application Frontend service in your BTP trial account
- Tutorial Establish Trust Configuration between SAP S/4HANA Cloud, public edition and SAP BTP Subaccount
- Tutorial Get Access to the SAP Document AI Workspace
- Tutorial Enable Multi-User Mode for iOS Application
- Tutorial Access Protected SAP Analytics Cloud Resources with OAuth Two-Legged Flow
- Tutorial Use Free Tier to Subscribe to SAP Document AI Basic UI
Docs explaining this concept
Prerequisites
- Concept SAP BTP Subaccount and Entitlement Setup The provided sources do not contain sufficient information to define this concept. The concept name is "undefined" and none of the source snippets supply grounded content that could be used to write an accurate, sourced definition.
- Concept Identity Authentication (IAS) Tenant Configuration The provided sources do not contain sufficient information to define a specific SAP developer concept — the concept name is listed as "undefined" and the source snippets consist primarily of tutorial titles and troubleshooting symptom headers without substantive explanatory content. A accurate, source-grounded definition cannot be produced from these materials.
- Concept BTP Subaccount Entitlements and Service Plans The provided sources do not contain enough information to define a specific SAP developer concept, as the concept name is listed as "undefined" and the source snippets cover a range of unrelated topics (audit log retention, Kyma environment plans, Cloud Foundry migration, and various tutorials) without a clear shared concept to define. A meaningful, source-grounded definition cannot be produced.
- Concept SAP Cloud Identity Services Setup The concept provided is **undefined**, so no specific SAP developer concept has been identified to define. Based on the available sources, the closest coherent topic is **Trust and Federation with Identity Providers on SAP BTP** — a mechanism that allows developers and administrators to configure SAP Business Technology Platform (SAP BTP) subaccounts to delegate authentication to external identity providers (IdPs) using protocols such as SAML or OpenID Connect. Developers use it to enable single sign-on (SSO), manage user provisioning, and control access across SAP BTP accounts by establishing trust relationships with services such as [SAP Cloud Identity Services](https://help.sap.com/docs/btp/sap-business-technology-platform/cb1bc8f1bd5c482e891063960d7acd78?locale=en-US&state=PRODUCTION&version=Cloud). It also supports [migration from SAML-based trust to OpenID Connect trust](https://help.sap.com/docs/btp/sap-business-technology-platform/d097ce26cb2d4b8fa9a597a5381cb3cb?locale=en-US&state=PRODUCTION&version=Cloud) to align with modern authentication standards.
- Concept Custom Identity Service Setup The provided sources do not contain enough information to write a grounded definition for an **undefined** concept. Please supply a valid concept name and relevant source snippets so that a precise, source-grounded definition can be produced.
- Concept Subaccount Management The concept name was not provided, but based on the sources, the subject appears to be **SAP BTP Subaccounts**. A subaccount is a structural unit within a global account on SAP Business Technology Platform (SAP BTP) that developers and administrators use to organize resources, environments, and users. Using the [SAP BTP cockpit](https://help.sap.com/docs/btp/sap-business-technology-platform/55d0b6d8b96846b8ae93b85194df0944?locale=en-US&state=PRODUCTION&version=Cloud), you can manage subaccounts by configuring [entitlements and quotas](https://help.sap.com/docs/btp/sap-business-technology-platform/5ba357b4fa1e4de4b9fcc4ae771609da?locale=en-US&state=PRODUCTION&version=Cloud), enabling environments such as Cloud Foundry, adding users, and viewing usage analytics. Subaccounts support multi-environment setups, allowing developers to enable or create environment instances and create orgs in order to use Cloud Foundry within a subaccount.
- Concept SAP BTP Cockpit The concept name was not provided and the supplied source snippets do not define or describe a single, identifiable SAP developer concept — they cover a range of unrelated SAP BTP topics such as Kyma environment setup, Cloud Foundry org deletion, subaccount management, and service instances. A focused definition cannot be grounded solely in these sources without a clearly stated concept to define.
- Concept BTP Subaccount Security Tab The provided sources do not contain sufficient grounded content to write a reliable 2–4 sentence definition for an **undefined** concept. The snippets reference tutorial titles and a troubleshooting symptom, but none supply substantive explanatory text about a clearly named concept. Please provide a valid concept name and richer source snippets so an accurate, grounded definition can be written.
- Concept Cloud Identity Services Integration SAP Document AI is a service that enables developers to extract structured data from business documents automatically. Developers use it to process documents such as invoices or receipts by subscribing to the service through SAP BTP Trial and accessing its capabilities via the [SAP Document AI Basic UI](https://developers.sap.com).
- Concept Roles in the Cloud Foundry Environment The concept name was not provided, so a precise definition cannot be generated from the available sources. Based on the sources, the closest identifiable concept appears to be a **Cloud Foundry Space** — a logical environment within a Cloud Foundry org on SAP BTP that developers use to deploy and manage applications and services. As described in [Managing Spaces](https://help.sap.com/docs/btp/sap-business-technology-platform/5209d55d8dd84228897112b0655d999b?locale=en-US&state=PRODUCTION&version=Cloud), spaces contain resources such as apps and service instances, and access is controlled by assigning roles to space members. Developers can manage space membership — including adding or removing users and their roles — directly in the SAP BTP cockpit, as outlined in [Delete Space Members](https://help.sap.com/docs/btp/sap-business-technology-platform/78b20cf8ae584498822dbd5c30e75b52?locale=en-US&state=PRODUCTION&version=Cloud).
Concepts that build on this
- Concept Custom Identity Provider for BTP
- Concept SAP Cloud Identity Services – Authorization Management
- Concept Role Collections and Authorization Artifacts
- Concept Role Collection with Attribute Values
- Concept BTP Role Collection Assignment
- Concept SAP Integration Suite Advanced Event Mesh setup and UI
- Concept Custom Domain Management on SAP BTP
- Concept SAP BTP Cloud Foundry Deployment via MTA
- Concept SAP S/4HANA Cloud system connectivity and data retrieval
- Concept Org Member Management
- Concept Custom Identity Providers for Platform Users
- Concept SAML Bearer Assertion Provider Configuration
- Concept SAP Build Work Zone configuration
- Concept SAP Document AI Service Setup and Subscription
- Concept Corporate Identity Provider Delegation
- Concept SAML Identity Provider Trust Configuration
- Concept Outbound Authentication for External Systems
- Concept Trust Configuration between SAP S/4HANA and SAP Cloud Identity Services
- Concept Role and Role Collection Management
- Concept Role Collection Assignment
- Concept BTP Space Member Management
- Concept Role Collection Mapping
- Concept Communication Arrangements (ABAP API)
- Concept Application Frontend Service Setup and Configuration