sap-tutorials / Issues

Creative Commons Attribution 4.0 International
8 stars 5 forks source link

Configure Authentication and Authorization on SAP BTP - Get New Access Token #717

Open mpaltanwale opened 1 year ago

mpaltanwale commented 1 year ago

Having successfully completed following steps of the tutorial -

Generate security descriptor and update application manifest Create instance of the Authorization and Trust Management Service Deploy secured application to SAP BTP

Now next step is to prepare Postman to get access Token so we can test the security of deployed application

Configuring Postman as per steps 2 to 9, these are the key fields in the Postman Authorization tab -

Add auth data to - Request Headers Grant Type - Authorization Code Callback URL - https://bookstore-kind-elephant-ct.cfapps.us10-001.hana.ondemand.com Auth URL - https://cc8558betrial.authentication.us10.hana.ondemand.com/oauth/authorize Access Token URL - https://cc8558betrial.authentication.us10.hana.ondemand.com/oauth/token Client ID - sb-bookstore!t167347 Client Secret - OsR83iNIbcCgYK46a/ERSLc+NN0= Client Authentication - Send client credentials in body

Then clicking - Get New Access Token - results in error

the redirect url has an invalid domain. Authorization Request Error There was an error. The request for authorization was invalid.

here is Application Routes value in the cockpit - https://bookstore-kind-elephant-ct.cfapps.us10-001.hana.ondemand.com/

same has been given as the callback URL Any idea why would it complain about invalid domain

Fishrot commented 4 months ago

I've come to the conclusion that there is no point in spending time and understanding complex things if you don't plan to purposefully pursue it as a profession. A business owner doesn't need to know how to market a business at the same time, because you can easily find a specialist with extensive experience on Upwork https://www.upwork.com/services/product/marketing-law-firm-seo-expert-audit-1748072082812575744 or on LinkedIn, depending on which platform seems most convenient for you to search for.