SAP Identity Authentication Service (IAS) and Secure Login Service (SLS) are cloud-based solutions designed to provide secure authentication and single sign-on (SSO) capabilities for SAP and non-SAP applications. It enhances security and user experience by integrating strong authentication methods and centralizing access management. They become the nature successor of the existing on-premise SAP SSO solutions and offer the following key benefits:
- Lower costs: Simple software roll-out. Short time-to-value without any additional on-premise server components
- Fast deployment: Rely on a lean cloud service and can reuse existing authentication infrastructure in the cloud or on-premise
- More secure: Offer two-factor and risk-based authentication for critical systems in a zero-trust setup
- Various integration options: Support any existing corporate identity provider via SAML/OIDC such as Microsoft Azure Active Directory and Okta, leveraging their authentication capabilities
Here is the reference architecture: