SAP Cloud Identity Services (Identity Authentication Service or IAS) is a cloud-based identity and access management solution. It verifies user and application identities, using secure credentials and predefined permission scopes. When connecting to the Search Service tenant, IAS ensures the SAP Commerce Cloud instance is authenticated and authorized, confirming its identity and granting necessary access permissions.
After the activation of the Search Service add-on, a Search Service tenant is provisioned and ready to be connected. A welcome email is sent to a designated contact person. This contact person must log in to the SAP Cloud Identity Services administration console to complete the initial IAS setup.
Let's watch the following video to see the detailed steps in action:
Summarizing the video, to establish trust within Cloud Identity Services, follow these steps:
- Locate the prepared Commerce Cloud application.
- Confirm the availability of necessary API permission groups:
- Search Service: Enables read and write access for querying and indexing.
- Search Service Query: Permits search query execution.
- Create a dependent application for the Commerce Cloud application and assign the Search Service API permission groups to it.
- Trigger the secret generation process, producing vital credentials like the token endpoint, client ID, client secret, and resource information needed for Backoffice configuration.
- Edit the dependent application details and set its type to "Other SAP Cloud Solution".
With everything ready, we can now configure Backoffice to connect to the Search Service.