Managing Mobile App Integrations and Security

Objective

After completing this lesson, you will be able to manage app integrations and security settings for smooth connectivity and data protection

Set Up the SAP Sales Cloud Mobile Application

After downloading the mobile app, follow the process to log in to the app:

The SAP Sales Cloud window shows how to log in by entering the URL, Username, and Password.
  • Enter the tenant URL, Username, and Password.
  • Choose Sign In.
  • Set up a passcode for the application, and choose Continue. Make sure the passcode is easy to remember.
  • Confirm it, and choose Done.
  • Optional: Enable biometrics (Face ID/ Touch ID) based on the device. Use this every time you log in.

Note

You need a valid, active SAP Sales Cloud Version 2 account to log in to the mobile app.

Security in SAP Sales Cloud Mobile Application

The SAP Sales Cloud Version 2 mobile application connects to SAP Sales Cloud Version 2 in the same way desktop clients do. The system uses the same URL, username, and password for authentication. The Business Roles assigned by the administrator apply to mobile devices. The mobile client adheres to the server's password policy. The system enables access from mobile devices and connects to the back-end system using the HTTPS2.

The following are some of the security features for the mobile app:

Passcode Policy

Unlike desktops, mobile devices are more likely to be lost or stolen. Use the mobile device's security features and prevent illegal access to its data.

Use a longer PIN (Personal Identification Number) to lock the device. Make sure there's adequate protection for the business data. Use a strong password for device access. As an extra security measure, the system encrypts the application with a passcode.

The Passcode needs to:

  • Have a minimum length of 8 characters.
  • Have at least one letter in lower case, one in upper case, and a number.

This passcode enables Biometrics (Face ID or Touch ID) on the device to protect the securely stored login data. If you're unable to log in, use Face ID or Touch ID. Also, enter the passcode.

Personal Data

The system stores all users' personal data (username) on the device. Uninstalling the application removes all personal information. Also, it includes deleting JWT tokens.

You can't access the application on jailbroken devices.

The SAP Sales Cloud window shows how to log in by entering the URL and Sign in with SSO as another option.

Single Sign-On (SSO)

  • Enter the system URL.
  • Enable the Use Single-Sign-On switch.
  • Select the Go to Single Sign-On button.
  • Your Identity Provider prompts you to choose or allows the app to load the certificates installed on your device.

  • Your Identity Provider directs you to a page where you can enter your username and password for authentication.

  • Your Identity Provider redirects you to the app.

Summary

In this lesson, you learned these key security setup procedures:

  • App Download and Login: Download the SAP Sales Cloud Mobile app from the App Store or Google Play, then log in using the tenant URL, username, and password.
  • Passcode and Biometrics: Upon first login, set a safe passcode of at least eight characters, including upper/lowercase letters and a number, and optionally enable biometrics (Face ID/Touch ID) for added security.
  • Consistent Security Policies: The mobile app uses the same authentication (URL, username, password) and business roles as the desktop client, following the server’s password policy and using HTTPS connections.
  • Device and Data Security: The system stores and removes all user data on the device. It happens when the app is uninstalled. The system doesn't work on jailbroken devices.
  • Single Sign-On (SSO): The app supports SSO, allowing authentication through the organization’s Identity Provider. It uses certificate-based or form-based authentication methods.
  • Improved Protection: Security features, such as passcode encryption, strong device PINs, and biometric access, help protect the business data against illegal access on mobile devices.