SAP BTP
Federation & Advanced Authentication
31 flashcards · answers and review in the app
What are the common methods of two-factor authentication?
What are the default-action options for a risk-based authentication rule, and when does the default apply?
What conditions can a conditional authentication rule match on?
What is risk-based authentication?
What are the three parts of a JSON Web Token (JWT)?
What second-factor methods can a risk-based rule in Identity Authentication enforce?
In SAML, what is the difference between an identity provider and a service provider?
What factors can risk-based authentication use to assess the risk of a login?
What is conditional authentication used for?
What is SAML 2.0 and what is its primary use?
What are the four roles defined by OAuth 2.0?
Within Identity Authentication, where is two-factor authentication configured?
When integrating Microsoft Entra ID into Identity Authentication via SAML, what role does each system play?
What is two-factor authentication (2FA)?
What does OAuth 2.0 do?
What is the difference between service-provider-initiated and identity-provider-initiated SSO in SAML?
Why did the SAP BTP Neo environment rely exclusively on SAML 2.0?
Who maintains the SAML standard, and when was SAML 2.0 published?
What is OpenID Connect (OIDC), and what is it built on?
How are multiple authentication rules evaluated in Identity Authentication?
Which two protocols can be used to integrate Microsoft Entra ID into Identity Authentication?
After authenticating a user, what does the identity provider return in a SAML flow?
Why does the login screen show only the email/username field first when conditional authentication is active?
In the Cloud Foundry environment, which protocol connects Identity Authentication as platform and application identity provider?
Which attack scenarios does two-factor authentication help defend against?
What is the core difference between OAuth 2.0 and OpenID Connect?
What are the four grant types in OAuth 2.0?
In conditional authentication, what is the Default Authenticating Identity Provider?
Which two-factor method does SAP advise against, and what should you use instead?
What is the advantage of using Identity Authentication as a proxy to a third-party identity provider?
Where is OIDC used in the multicloud SAP BTP environment?