Microsoft Secure Tech Accelerator
Apr 03 2024, 07:00 AM - 11:00 AM (PDT)
Microsoft Tech Community
Azure AD expands integration with SAP Identity Authentication Service
Published Sep 26 2019 09:00 AM 20.3K Views

Howdy folks,

 

I’m excited to share that you can now connect enterprise identities between Microsoft services such as, Azure and Office 365 and the SAP Cloud Platform, so you can build unique cross-cloud experiences! Through our partnership with SAP, you can now configure Azure AD as the trusted corporate identity provider in SAP Identity Authentication Service.

 

SAP Identity Authentication Service is the access management platform of choice for a growing number of SAP Cloud Platform applications including: Concur, SuccessFactors, and Business ByDesign. Through this integration you can now leverage Azure AD to deliver single sign-on (SSO) and Multi-Factor Authentication and apply Conditional Access policies to all your applications connected to SAP Identity Authentication Service.

 

Azure AD expands integration with SAP Identity Authentication Service  1.png

 

Additionally, we worked together to improve identity lifecycle management through a SCIM-based provisioning integration. You can now use the Azure AD provisioning service to automatically create user accounts in SAP Identity Authentication Service. This integration reduces the time administrators and the help desk spend creating accounts and ensures that accounts are revoked when an employee leaves the organization. At the end of the day, employees quickly get access to the SAP apps they need while ensuring access is securely and automatically revoked when not required.

 

To get started, be sure to review our step-by-step integration tutorial.

 

Azure AD expands integration with SAP Identity Authentication Service  2.png

 

Finally, this integration between Azure AD and SAP Identity Authentication Service also allows you to surface data from an application hosted on the SAP Cloud Platform into Microsoft services such as Office 365. For example, in a Purchase Order application hosted on the SAP Cloud Platform, users can perform order processing actions, such as approve and deny, directly within the Outlook app. This is made possible through seamless propagation of identity context between Azure AD and the SAP Cloud Platform Identity Authentication Service.

 

For more details on how you can create these cross-cloud experiences check out our tutorial guide.

 

We always love to hear your feedback and suggestions. Let us know what you think in the comments below. You can also post your suggestions for new capabilities that you would like to see in our Azure AD UserVoice feedback forum or reach out to us on Twitter (@azuread).

 

Best regards,

Alex Simons (@Alex_A_Simons)

Corporate VP of Program Management

Microsoft Identity Division 

Version history
Last update:
‎Jul 24 2020 01:34 AM
Updated by: