Service providers that delegate authentication to Identity Authentication can protect their applications when using embedded frames, also called overlays, or when allowing user self-registration.
You are assigned the Manage Tenant Configuration role. For more information about how to assign administrator roles, see Edit Administrator Authorizations.
If you want to use overlays in your applications, you must add the domains of these applications as trusted in the administration console for SAP Cloud Identity Services. Otherwise the user will receive an error message when trying to access the overlays of these applications.
You also have to add as trusted the domains for those applications that allow self-registration to the users. For more information about the various access configurations in the administration console for SAP Cloud Identity Services, see Configure User Access to the Application.
It takes 2 minutes for the configuration changes to take place.
-
Sign in to the administration console for SAP Cloud Identity Services.
-
Under Applications and Resources, choose the Tenant Settings tile.
At the top of the page, you can view the administrative and license relevant information of the tenant.
-
Under Customization, choose the Trusted Domains list item.
-
Press the + Add button.
-
Type the URL of the trusted host in the field.
You can type either the full name of the host or you can use the wild card * function.
Be careful when using the wild card * function. Make sure that you trust the domain when you use it.
See the examples:
mycompany.ondemand.com
*.example.com
-
Save your changes.
If the operation is successful the system displays the message Trusted Domains updated.
Related Information
Tenant OpenID Connect Configurations
Change Tenant Texts Via Administration Console
Configure Master Data Texts Via Administration Console
Configure Links Section on Sign-In Screen
Add Instructions Section on Sign-In Screen
Configure X.509 Client Certificates for User Authentication
Configure Allowed Logon Identifiers
Configure User Identifier Attributes
Configure Trust this browser Option
Enable Back-Up Channels to Send Passcode for Deactivation of TOTP Two-Factor Authentication Devices
Enable Users to Recover Password with Security Questions
Enable Users to Recover Password with PIN Code
Configure Initial Password and Email Link Validity
Use Custom Domain in Identity Authentication
Change a Tenant's Display Name
Configure Default Risk-Based Authentication for All Applications in the Tenant
Configure Sinch Service in Administration Console
Configure RADIUS Server Settings (Beta)
Configure Mail Server for Application Processes
Send System Notifications via Emails
Configure Customer-Controlled Encryption Keys in Administration Console (Restricted Availability)
Configure Default Language for End User Screens
Reuse SAP Cloud Identity Services Tenants for Different Customer IDs