Download as pdf or txt
Download as pdf or txt
You are on page 1of 1

Unit 7

Lesson 3
Illustrating SAP Authorization and Trust
Management Service (XSUAA)

LESSON OBJECTIVES
After completing this lesson, you will be able to:
● Illustrate SAP Authorization and Trust Management Service (XSUAA)
● Describe App Router

SAP Authorization and Trust Management Service (XSUAA)

Figure 82: XSUAA: Overview

The XSUAA service, inside of the SAP BTP, handles the authorization flow between users,
identity providers, and the applications or services. The XSUAA service is an internal
development from SAP dedicated for the SAP BTP. In the Cloud Foundry project, there is an
open-source component called UAA. UAA is an OAuth provider which takes care of
authentication and authorization. SAP used the base of UAA and extended it with SAP specific
features to be used in SAP BTP.
Learn more about the Cloud Foundry UAA here: https://docs.cloudfoundry.org/concepts/
architecture/uaa.html
The XSUAA service takes care of authentication and authorization in SAP BTP, Cloud Foundry
to give business users permission through business roles. The XSUAA service does not store
users data or user records. The XSUAA service needs a trusted connection to an identity

© Copyright. All rights reserved. 159

You might also like