cancel
Showing results for 
Search instead for 
Did you mean: 

SAML2 configuration with multiple Service Providers

Former Member
0 Kudos

Dear Support,

We are trying to configure SSO with SAML2 with multiple Service Provider however it is not working

SSO with SAML2 between SAP Java portal(NW7.4) as Identity Provider and SuccessFactor as Service Provider and It works fine for one companyID.

We have different companyID's all are hosting on SuccessFactor and We would like configure SSO with SAML2 between SAP java portal(Identity Provider) and SuccessFactor(Service Provider) for multiple companyID's hosting on same successfactor instance with different CompanyID's.

Any suggestion/advice how to configure  SSO with multiple service providers for same instance(successfactor) ?

Is it possible to configure multiple Identity Provider in SAP JAVA portal(NW7.40) ? so that we can configure 1:1 (Identity provider : SuccessFactor for each companyID).

Please help.

Thank you.

Attached is the screen shot

Regards

Sadanand Depala

Accepted Solutions (1)

Accepted Solutions (1)

Former Member
0 Kudos

it is solved

Answers (1)

Answers (1)

former_member182254
Active Participant
0 Kudos

Hi,

You can create multiple IDPs by accessing the standalone SAML2 configuration UI, e.g. /saml2/cfg?provider=<idpname>, where "<idpname>" shall be the unique name of the IDP. However you won't be able to use them simultaneously in a single browser session unless they are accessed with different host name.

The easiest way would be to use IDP-initiated SSO with parameter "saml2endpointindex" - for details see Performing Identity Provider-Initiated Single Sign-On - Identity Provider for SAP Single Sign-On and..... Example URL for the second company - https://portal.acme.com/saml2/idp/sso?saml2sp=https%3a%2f%2fwww.successfactors.com&saml2endpointinde....

Regards,

Dimitar

Former Member
0 Kudos

Hi Dimitar,

Thank you for the response.

1) I'm not sure how to add another "Identity Provider" and didn't find any option in the below link.

NWA - Security - Authentication and Single Sign-On: SAML 2.0 - SAML 2.0 - Local Provider ? how to add another IDP

2) If I change IDP Endpoint URL : Still It works for only one companyID(trusted provider) and how we can enable for another companyID(trusted provider) parallel ?

Thank you.

Regards

Sadanand Depala

former_member182254
Active Participant
0 Kudos

Hi,

1. Example URL to access standalone SAML2 configuration and create additional IDP on the same system: https://portal.acme.com/saml2/cfg?provider=<idpname>

2. Have you read the documentation that I have provided you? Have you tested it?

I would recommend you to try approach #2.

Regards,

Dimitar