Upgrade Considerations

SAP has introduced SCIM based APIs for the S/4HANA Public Cloud ,which now support group aggregation.

Currently, the connector uses a file-upload based functionality for role aggregation. However, SailPoint recommends migrating to direct role aggregation in future.

To migrate from file-based aggregation to direct aggregation, refer to Migration from CSV Role Aggregation to Direct Role Aggregation.

Configuration Parameters for Upgraded Application

To configure the upgraded application , the following parameters must be set:

  • URL- The URL to connect to the S/4HANA Cloud system.

  • User Name- The S/4HANA Cloud communication user with required permissions.

  • Password- The password for the communication user.

  • Page Size- The number of records to fetch in a single page.

  • Direct Role Aggregation- To enable to use SCIM API in order to fetch the roles from S4 HANA public cloud.

  • Role Details File Path- Specify the name of the CSV file that has the details of roles Business UUID and Business ID.

  • Create Business User Account- To create a new business user on S4HANA Cloud System.

  • Worker ID API- Enter the API URL for detecting the Worker based on the FirstName, LastName and Email. When not provided, Worker ID needs to be passed in provisioning plan to create the Business User on S4 HANA public cloud.

Schema Attributes for Upgraded Application

For Schema Attributes, the following updates are necessary:

Account Attributes

  • User Date Valid From- Valid From Date of the Business User

  • User Date Valid To- Valid To Date of the Business User

Group Attributes

Note
The Group attributes will continue to be - Business Role UUID and Business Role ID.

Create Business User Account

For the existing application , manually add a provisioning policy to enable business user account creation.

For reference on how to configure the policy, refer to Create Business User on S/4HANA Cloud Public.