Application Security Descriptor File (xs-security.json)
Tutorials that teach this
- Tutorial Add Scopes and Create Role Collection Mapping
- Tutorial Deploy CAP Java App to SAP Business Technology Platform
- Tutorial Create an Application with SAP Java Buildpack 2
- Tutorial Prepare for Production
- Tutorial Add User Authentication to Your Application (SAP HANA Cloud)
- Tutorial Create an Application with Cloud Foundry Python Buildpack
- Tutorial Configure Authentication and Authorization on SAP BTP
- Tutorial Deploy CAP with SAP HANA Cloud project as MTA
- Tutorial Secure a Basic Node.js App with the Authorization and Trust Management Service (XSUAA)
- Tutorial HANA Native, Add User Authentication to Your Application
- Tutorial Add Security to the SAP SuccessFactors Extension
- Tutorial Create an Application with Cloud Foundry Node.js Buildpack
- Tutorial Develop the SAP Fiori Elements Application for the SAP SuccessFactors Extension
Docs explaining this concept
- Doc 400 Error: Call to /oauth/token Was Not Successful
- Doc Attributes
- Doc Authorization Entities
- Doc Binding Parameters of SAP Authorization and Trust Management Service
- Doc Building Roles and Role Collections for Applications
- Doc Compatible Changes in the Security Descriptor File
- Doc Configuration Options for the SAP Authorization and Trust Management Service
- Doc Configure Token Policy for SAP Authorization and Trust Management Service
Prerequisites
Concepts that build on this
- Concept Managed Application Router
- Concept Scopes and Role Templates in SAP BTP
- Concept SAP SaaS Provisioning Service Instance Creation in Kyma
- Concept Role and Role Collection Management
- Concept Multitenancy with SaaS Provisioning Service
- Concept Role Collections and Authorization Artifacts
- Concept SAP Authorization and Trust Management (XSUAA) Authentication
- Concept Node.js Application Authentication on SAP BTP
- Concept MTA Project with Application Router Configuration
- Concept UAA (User Account and Authentication) Service
- Concept xs-security.json Authorization Configuration
- Concept OAuth2 Scopes and Role Templates
- Concept XSUAA Role Collections
- Concept Cloud Foundry deployment
- Concept Cloud Foundry application deployment on SAP BTP