cancel
Showing results for 
Search instead for 
Did you mean: 

How to integrate SAP IDM with SAP Portal

former_member198652
Active Participant
0 Kudos

Hi All,

We need to integrate SAP IDM with SAP Netweaver Portal,

So can you please share the essential documents or suggest me how to do that.

Regards,

Jaya

Accepted Solutions (1)

Accepted Solutions (1)

terovirta
Active Contributor
0 Kudos

For the UME-integration topics google for document with key words "sap idm system landscape configuration guide".

If you want to deploy the IdM UI to the Portal then the installation guides help you.

regards, Tero

former_member198652
Active Participant
0 Kudos


Hi Tero,

Thank you for your response.

Actually I need briefly  how IDM, VDS and Portal are connected.

Can  you guide me please.

Regards,

Jaya

former_member190695
Participant
0 Kudos

Hi Jaya,

You need to create a group in your Portal (e.g. SPMLReader) and assign the SPMLReader action to it. Assign this group to a technical portal user that you want to use in ID.

Go to IDM and create a repository for this portal system.

Provide all the connection information and setup the plug-ins correctly.

Create a normal job (Initial Load) for your system and test If the connection is working.

VDS is not required to connect IDM to an SAP Portal.

Good luck.

Regards,

Ridouan

former_member198652
Active Participant
0 Kudos

Hi Ridouan,

Thank you very much for your information.

Can you share any links or documents for more details.

Regards,

Jaya

former_member198652
Active Participant
0 Kudos

Hi Ridouan,

Then Where UME comes in to picture.

Regards,

Jaya

former_member190695
Participant
0 Kudos

Hi Jaya,

Because the IDM application is deployed on the Portal, it uses the UME to authenticate.

All users needs the Portal Role IDM.users, otherwise you will get an error message when trying to log into IDM.

This is a good starting point:

Regards,

Ridouan

former_member198652
Active Participant
0 Kudos

Hi Ridouan,

This is my understaning, please check and correct me if am wrong.

1. we have to install SAP IDM and related dispatcher, jobs etc..

2. install SAP Portal.

3.UME is by default in Portal or Portal team will configure UME in AS JAVA.

4. We need to create a group in  Portal i.e.  SPMLReader

5. assign the SPMLReader action to it.

6. Assign this group to a technical portal user that you want to use in IDM.

when a user was assigned with SPMLReader group(IDM ROLE) user can able to access IDM.?

7.Go to IDM and create a repository for this portal system.

8.Provide all the connection information and setup the plug-ins correctly.

9.Create a normal job (Initial Load) for your system and test If the connection is working.

And i have to doubt. Whether we need to create any roles, so that if we assign role to a particular person will get acess to portal.

Thanks in Advance,

Regards,

Jaya

former_member190695
Participant
0 Kudos

Hi Jaya,

1. Install IDM e.g. Database, Runtime, Design Time, VDS, etc..

2. Install SAP NW Portal or AS JAVA (preferably 7.3 EhP1 or higher)

3. Deploy SAP IDM Webdynpro Application

4. Deploy the DB drivers and create a data source for IDM (IDM_DataSource) in Application Resources.

5. Create a Portal role and assign Spml_Write_Action to it and assign it to a technical user that can be used to connect from IDM.

6. Create a repository for your Portal system and provide all required information.

7. Create an Initial Job for your Portal system based on NW AS JAVA (DB/LDAP).

8. Run the initial Job to load users, roles and groups.

9. Create a Business Role in IDM and assign it the IDM_User Portal role for example.

10. Assign the newly created business role to a new user and this user should be created in your portal.

Regards,

Ridouan

former_member198652
Active Participant
0 Kudos

Hi Ridouan,

Thank you very much for your guidance.

But can you elaborate me regarding from 8 th point to 10 one.

We have AD as data source, i mean all the data regarding users are in AD.

Can you explain me how data flow will be.

i.e. between AD, IDM and portal.

Regards.

Jaya

former_member190695
Participant
0 Kudos

Hi Jaya,

Is the Portal UME connected to the same data source (LDAP) as well?

Regards,

Ridouan

Answers (1)

Answers (1)

former_member198652
Active Participant
0 Kudos

Hi Ridouan,

Yes, Portal UME is conneted to AD.

Regards,

jaya

former_member190695
Participant
0 Kudos

Hi Jaya,

In that case you don't have to integrate the portal.

I don't know your requirements but If its just to authenticate users you could do the following:

1 - Create an Universal Security Group in AD, This group should appear in the Portal UME

2 - Assign the Portal Role IDM_Users to this newly created AD group (Assignment in Portal)

3 - Perform an Initial/Update load for Active Directory, the group should appear in IDM as a privilege and group

4 - Add the privilege to a new or existing Business Role in IDM UI or MMC

Please let me know If you have still any doubts.

Regards,

Ridouan