sap-btp-cias
Compare original and translation side by side
🇺🇸
Original
English🇨🇳
Translation
ChineseSAP BTP Cloud Integration Automation Service (CIAS)
SAP BTP Cloud Integration Automation Service (CIAS)
Cloud Integration Automation Service provides guided workflows to integrate SAP cloud solutions with on-premise and other SAP cloud solutions. It offers both manual task instructions and automated configuration capabilities.
Cloud Integration Automation Service提供引导式工作流,用于将SAP云解决方案与本地系统及其他SAP云解决方案集成。它同时提供手动任务说明和自动化配置功能。
Related Skills
相关技能
- sap-btp-cloud-platform: Use for subaccount, subscription, entitlement, and role collection setup
- sap-btp-connectivity: Use for destinations, OAuth2 service instances, and Cloud Connector dependencies
- sap-btp-integration-suite: Use when CIAS scenarios produce or depend on Integration Suite artifacts
- sap-btp-cloud-identity-services: Use for identity-provider and trust configuration that affects CIAS access
- sap-btp-cloud-platform:用于子账户、订阅、授权和角色集合设置
- sap-btp-connectivity:用于目标地址、OAuth2服务实例和Cloud Connector依赖项配置
- sap-btp-integration-suite:当CIAS场景生成或依赖Integration Suite工件时使用
- sap-btp-cloud-identity-services:用于影响CIAS访问的身份提供商和信任配置
When to Use This Skill
何时使用此技能
Use this skill when subscribing to CIAS, assigning CIAS role collections, planning guided integration scenarios, working My Inbox tasks, monitoring scenario execution, configuring OAuth2 API access, or troubleshooting CIAS workflow/task failures.
在订阅CIAS、分配CIAS角色集合、规划引导式集成场景、处理My Inbox任务、监控场景执行、配置OAuth2 API访问或排查CIAS工作流/任务故障时,使用此技能。
Table of Contents
目录
Quick Reference
快速参考
Service Plans
服务计划
| Plan | Type | Purpose |
|---|---|---|
| Standard | Application | UI access for scenario planning, task monitoring, integration management |
| OAuth2 | Service | API access for programmatic operations (required for ABAP automation) |
| 计划 | 类型 | 用途 |
|---|---|---|
| Standard | 应用程序 | 用于场景规划、任务监控、集成管理的UI访问 |
| OAuth2 | 服务 | 用于程序化操作的API访问(ABAP自动化必需) |
Role Collections
角色集合
| Role | Collection | Capabilities |
|---|---|---|
| Integration Administrator | | Full access: Plan for Integration, My Inbox, Monitoring; terminate scenarios |
| Integration Expert | | My Inbox access; work on assigned tasks |
| Integration Monitor | | Read-only access to Scenario Execution Monitoring |
| 角色 | 集合 | 权限 |
|---|---|---|
| Integration Administrator | | 完全访问权限:集成规划、My Inbox、监控;终止场景 |
| Integration Expert | | My Inbox访问权限;处理分配的任务 |
| Integration Monitor | | 场景执行监控的只读访问权限 |
Supported Regions
支持的区域
AWS: EU10 (Frankfurt), EU11 (Frankfurt EU Access), US10 (Virginia), AP10 (Sydney), JP10 (Tokyo), CA10 (Montreal)
Azure: EU20 (Netherlands), CN20 (China North 3)
Alibaba: CN40 (Shanghai)
AWS:EU10(法兰克福)、EU11(法兰克福欧盟访问区)、US10(弗吉尼亚)、AP10(悉尼)、JP10(东京)、CA10(蒙特利尔)
Azure:EU20(荷兰)、CN20(中国北方3区)
Alibaba:CN40(上海)
Core Workflows
核心工作流
1. Subscribe to CIAS (Standard Plan)
1. 订阅CIAS(Standard计划)
- Navigate to SAP BTP Cockpit → Global Account → Subaccount
- Go to Services → Service Marketplace
- Filter by "Cloud Integration Automation Service"
- Click tile → Create → Select Standard plan
- Confirm creation
- Access via Instances and Subscriptions → "Go to Application" icon
- 导航至SAP BTP Cockpit → 全局账户 → 子账户
- 进入服务 → 服务市场
- 按“Cloud Integration Automation Service”筛选
- 点击磁贴 → 创建 → 选择Standard计划
- 确认创建
- 通过实例和订阅 → “转到应用程序”图标访问
2. Assign Roles to Users
2. 为用户分配角色
- Navigate to Security → Role Collections in subaccount
- Select role collection (e.g., )
CIASIntegrationAdministrator - Click Edit → Users tab
- Add users by email ID or login user ID
- Save changes
Multiple users can be assigned per role using comma-separated user IDs.
- 导航至子账户中的安全 → 角色集合
- 选择角色集合(例如)
CIASIntegrationAdministrator - 点击编辑 → 用户标签页
- 通过邮箱ID或登录用户ID添加用户
- 保存更改
可使用逗号分隔的用户ID为单个角色分配多个用户。
3. Plan Integration Scenario
3. 规划集成场景
- Access CIAS application from Instances and Subscriptions
- Open Plan for Integration tile
- Browse available solutions in Solutions tab
- Select scenario and scenario option
- Choose systems for integration (by customer number)
- Specify:
- Target subaccount for workflow
- SAP BTP Workflow Users (must have subaccount access)
- Transaction name for monitoring
- Confirm workflow generation
- Access tasks in My Inbox tile
- 从实例和订阅中访问CIAS应用程序
- 打开集成规划磁贴
- 在解决方案标签页中浏览可用解决方案
- 选择场景及场景选项
- 选择要集成的系统(按客户编号)
- 指定:
- 工作流的目标子账户
- SAP BTP工作流用户(必须拥有子账户访问权限)
- 用于监控的事务名称
- 确认工作流生成
- 在My Inbox磁贴中访问任务
4. Work with Tasks (My Inbox)
4. 处理任务(My Inbox)
- Open My Inbox tile (requires Administrator or Expert role)
- Click Claim to lock task for your user
- Follow instructions in Task Instructions tab
- For automation tasks: Configure parameters → Click Execute Step
- Click Task Completed when done
- Click Refresh to display next task
- Repeat until viewing Execution Summary
- 打开My Inbox磁贴(需要管理员或专家角色)
- 点击申领为您的用户锁定任务
- 按照任务说明标签页中的指示操作
- 对于自动化任务:配置参数 → 点击执行步骤
- 完成后点击任务完成
- 点击刷新显示下一个任务
- 重复操作直至查看执行摘要
5. Create Destination for Automation
5. 为自动化创建目标地址
- In My Inbox → Confirm System Components task
- Click Create Destination link
- Configure:
- Name: Valid identifier
- Description: Purpose description
- URL: Target system host URL
- Authentication: Method + credentials
- Type: HTTP (default)
- Save configuration
Always use HTTPS for secure communication.
- 在My Inbox → 确认系统组件任务
- 点击创建目标地址链接
- 配置:
- 名称:有效的标识符
- 描述:用途说明
- URL:目标系统主机URL
- 认证:方法 + 凭证
- 类型:HTTP(默认)
- 保存配置
始终使用HTTPS进行安全通信。
6. Monitor Scenario Execution
6. 监控场景执行
- Open Scenario Execution Monitoring tile (requires Administrator or Monitor role)
- Filter workflows by status: Running, Completed, Canceled
- View tabs: Task Details, Targets, Roles and Users, Scope, Support Information
- Use Terminate Execution to remove scenarios permanently
- Access Logs tab for automation execution details
- 打开场景执行监控磁贴(需要管理员或监控角色)
- 按状态筛选工作流:运行中、已完成、已取消
- 查看标签页:任务详情、目标、角色与用户、范围、支持信息
- 使用终止执行永久删除场景
- 访问日志标签页查看自动化执行详情
Service Limitations
服务限制
- Maximum 15 active workflows per subaccount
- No self-service data deletion (submit ticket to component )
BC-INS-CIT-RT - Logs retained for 90 days
- OAuth2 certificate maximum validity: 1 year
- Execution scope cannot be changed after confirmation
- Destination cannot be changed if already used in automation task
- Supported browsers: Google Chrome, Microsoft Edge (Chromium), Mozilla Firefox, Apple Safari (macOS)
- 每个子账户最多15个活跃工作流
- 无自助数据删除功能(需提交工单至组件)
BC-INS-CIT-RT - 日志保留90天
- OAuth2证书最长有效期:1年
- 执行范围确认后无法更改
- 若目标地址已用于自动化任务,则无法更改
- 支持的浏览器:Google Chrome、Microsoft Edge(Chromium内核)、Mozilla Firefox、Apple Safari(macOS)
Security Architecture
安全架构
CIAS comprises six core components:
- Runtime: Backbone framework rendering integration tasks
- Planning: UI for planning integration scenarios
- Inbox: UI for end-user task access
- Monitoring: UI for scenario implementation monitoring
- Managed System: System configured during integration
- Automation Runtime: Calls configuration APIs of managed systems
Security features:
- Role-based access via SAP BTP authorization framework
- XSRF protection for backend connectivity calls
- Identity provider integration (SAML assertion Name ID attribute supported)
- Credentials stored in Credential Store service (inaccessible to external parties)
CIAS包含六个核心组件:
- Runtime:渲染集成任务的骨干框架
- Planning:用于规划集成场景的UI
- Inbox:供终端用户访问任务的UI
- Monitoring:用于监控场景实施的UI
- Managed System:集成期间配置的系统
- Automation Runtime:调用受管系统的配置API
安全特性:
- 通过SAP BTP授权框架实现基于角色的访问
- 针对后端连接调用的XSRF保护
- 身份提供商集成(支持SAML断言Name ID属性)
- 凭证存储在Credential Store服务中(外部方无法访问)
Common Error Patterns
常见错误模式
Empty Destination Dropdown
目标地址下拉框为空
Symptom: Destination dropdown shows no options during task execution.
Cause: No destinations exist matching the tenant's Host Base URL.
Solution:
- Create destination manually following Destination Creation steps
- Ensure destination URL matches tenant Host Base URL exactly
- Refresh the dropdown after creation
症状:任务执行期间目标地址下拉框无选项。
原因:不存在与租户主机基础URL匹配的目标地址。
解决方案:
- 按照目标地址创建步骤手动创建目标地址
- 确保目标地址URL与租户主机基础URL完全匹配
- 创建后刷新下拉框
Workflow Conflict Lock
工作流冲突锁定
Symptom: Cannot proceed with task; execution lock activated.
Cause: Multiple integration workflows exist with identical system components.
Solutions:
- Proceed: Continue without resolving (manual resolution later)
- Terminate: End selected conflicting instances
- Terminate Current Instance: Stop active workflow only
- Cancel: Halt operation entirely
症状:无法继续任务;执行锁定已激活。
原因:存在多个具有相同系统组件的集成工作流。
解决方案:
- 继续:不解决冲突继续执行(后续手动解决)
- 终止:结束选定的冲突实例
- 终止当前实例:仅停止活跃工作流
- 取消:完全中止操作
Application Access Denied After IdP Change
IdP更改后应用程序访问被拒绝
Symptom: Users cannot access CIAS application after identity provider change.
Cause: Users not managed by newly configured identity provider.
Solution:
- Add users to new identity provider
- Reassign role collections in subaccount Security settings
- Verify user IDs exist in configured IdP
症状:身份提供商更改后用户无法访问CIAS应用程序。
原因:用户未由新配置的身份提供商管理。
解决方案:
- 将用户添加到新的身份提供商
- 在子账户安全设置中重新分配角色集合
- 验证用户ID是否存在于已配置的IdP中
Task Marked as Reserved
任务标记为已预留
Symptom: Cannot claim task; shows "Reserved" status.
Cause: Another assigned user has already claimed the task.
Solution: Coordinate with team; only one user can work on claimed task at a time.
症状:无法申领任务;显示“已预留”状态。
原因:另一位已分配的用户已申领该任务。
解决方案:与团队协调;同一时间仅一位用户可处理已申领的任务。
Support Channels
支持渠道
| Issue Type | Component | Action |
|---|---|---|
| General CIAS support | | Create support ticket |
| Manual task instructions | Check Support Information tab | Submit incident to listed component |
| Data deletion request | | Include email ID and subaccount name |
| Service availability | Consumer account | Check Service Availability feature |
| 问题类型 | 组件 | 操作 |
|---|---|---|
| 通用CIAS支持 | | 创建支持工单 |
| 手动任务说明 | 查看支持信息标签页 | 向列出的组件提交事件 |
| 数据删除请求 | | 包含邮箱ID和子账户名称 |
| 服务可用性 | 消费者账户 | 查看服务可用性功能 |
OAuth2 API Access
OAuth2 API访问
For programmatic access (required for ABAP automation):
- Navigate to subaccount → Services → Service Marketplace
- Select Cloud Integration Automation Service → Create
- Choose OAuth2 plan
- Select runtime: "Other" or "Cloud Foundry"
- Provide instance name → Create
对于程序化访问(ABAP自动化必需):
- 导航至子账户 → 服务 → 服务市场
- 选择Cloud Integration Automation Service → 创建
- 选择OAuth2计划
- 选择运行时:“Other”或“Cloud Foundry”
- 提供实例名称 → 创建
Create Service Key (for API calls)
创建服务密钥(用于API调用)
With mTLS (Certificate):
json
{
"xsuaa": {
"credential-type": "x509",
"x509": {
"key-length": 2048,
"validity": 365,
"validity-type": "DAYS"
}
}
}Without Certificate: Create with name only.
Use generated client ID and client secret to create OAuth JWT token for API authentication.
使用mTLS(证书):
json
{
"xsuaa": {
"credential-type": "x509",
"x509": {
"key-length": 2048,
"validity": 365,
"validity-type": "DAYS"
}
}
}不使用证书:仅输入名称创建。
使用生成的客户端ID和客户端密钥创建OAuth JWT令牌用于API认证。
Data Protection
数据保护
- Email IDs and subaccount names stored in service database
- System/tenant selection data preserved for workflow execution
- Logs do not store user-related personal data
- Audit logs follow SAP BTP Audit Log retention policy
- Sensitive data stored in Credential Store service
- 邮箱ID和子账户名称存储在服务数据库中
- 系统/租户选择数据为工作流执行而保留
- 日志不存储用户相关的个人数据
- 审计日志遵循SAP BTP审计日志保留策略
- 敏感数据存储在Credential Store服务中
Glossary
术语表
| Term | Definition |
|---|---|
| Personal Data | Any information relating to identified/identifiable natural person |
| Sensitive Personal Data | Racial/ethnic origin, political opinions, religious beliefs, genetic/biometric data |
| Residence Period | Time between business end and end-of-purpose when data remains accessible |
| Retention Period | Time from last business activity through data deletion |
| Blocking | Restricting access to data whose primary business purpose has ended |
| 术语 | 定义 |
|---|---|
| Personal Data | 与已识别或可识别自然人相关的任何信息 |
| Sensitive Personal Data | 种族/民族出身、政治观点、宗教信仰、遗传/生物识别数据 |
| Residence Period | 业务结束到数据不再可访问的目的结束之间的时间 |
| Retention Period | 从最后一次业务活动到数据删除的时间 |
| Blocking | 限制对主要业务目的已结束的数据的访问 |
Task UI Controls Quick Reference
任务UI控件快速参考
Automation Task Controls
自动化任务控件
| Control | Function |
|---|---|
| Refresh | Update automation statuses |
| Expand All | Show all parameter panels |
| Collapse All | Hide all parameter panels |
| Show/Hide Read-Only Parameters | Toggle read-only visibility |
| Save Parameters | Preserve current values |
| Logs | View execution records |
| Information | Parameter descriptions |
| Execute Step | Run automation (async) |
| 控件 | 功能 |
|---|---|
| 刷新 | 更新自动化状态 |
| 全部展开 | 显示所有参数面板 |
| 全部折叠 | 隐藏所有参数面板 |
| 显示/隐藏只读参数 | 切换只读参数的可见性 |
| 保存参数 | 保留当前值 |
| 日志 | 查看执行记录 |
| 信息 | 参数说明 |
| 执行步骤 | 运行自动化(异步) |
Error Recovery
错误恢复
After automation failure:
- Only Failed Automations - Retry failed steps only
- All Automations - Retry entire sequence
自动化失败后:
- 仅失败的自动化 - 仅重试失败的步骤
- 所有自动化 - 重试整个序列
Bundled Resources
捆绑资源
Reference Files
参考文件
- - Complete subscription, OAuth2, and destination configuration procedures
references/setup-guide.md - - Security architecture, identity provider configuration, and role management
references/security-guide.md - - Full list of 100+ supported integration scenarios with codes (1M1, 22K, 4A1, etc.)
references/integration-scenarios.md - - Detailed error resolution procedures and common issues
references/troubleshooting.md - - Maintenance Planner integration guide and workflow invocation
references/maintenance-planner.md - - Complete task UI controls, tabs, behaviors, and automation steps
references/task-ui-guide.md - - Complete release notes from 2021-2025 with feature updates
references/whats-new.md
- - 完整的订阅、OAuth2和目标地址配置流程
references/setup-guide.md - - 安全架构、身份提供商配置和角色管理指南
references/security-guide.md - - 100+支持的集成场景完整列表及代码(1M1、22K、4A1等)
references/integration-scenarios.md - - 详细的错误解决流程和常见问题
references/troubleshooting.md - - Maintenance Planner集成指南和工作流调用说明
references/maintenance-planner.md - - 完整的任务UI控件、标签页、行为和自动化步骤说明
references/task-ui-guide.md - - 2021-2025年完整的版本说明及功能更新
references/whats-new.md
Template Files
模板文件
- - Destination configuration templates by target system type
templates/destination-config.md - - Role assignment procedures and checklists for different scenarios
templates/role-assignment.md
- - 按目标系统类型分类的目标地址配置模板
templates/destination-config.md - - 不同场景下的角色分配流程和检查表
templates/role-assignment.md
Documentation Sources
文档来源
Primary:
- GitHub: https://github.com/SAP-docs/btp-cloud-integration-automation-service/tree/main/docs
- SAP Help Portal: https://help.sap.com/docs/cloud-integration-automation-service
Related:
- Maintenance Planner: https://maintenanceplanner.cfapps.eu10.hana.ondemand.com
- Credential Store: https://help.sap.com/viewer/601525c6e5604e4192451d5e7328fa3c/Cloud/en-US/02e8f7d1016740b8adf68690f36df142.html
- SAP BTP Destinations: https://help.sap.com/docs/btp/sap-business-technology-platform/destination
主要来源:
- GitHub: https://github.com/SAP-docs/btp-cloud-integration-automation-service/tree/main/docs
- SAP Help Portal: https://help.sap.com/docs/cloud-integration-automation-service
相关来源:
- Maintenance Planner: https://maintenanceplanner.cfapps.eu10.hana.ondemand.com
- Credential Store: https://help.sap.com/viewer/601525c6e5604e4192451d5e7328fa3c/Cloud/en-US/02e8f7d1016740b8adf68690f36df142.html
- SAP BTP Destinations: https://help.sap.com/docs/btp/sap-business-technology-platform/destination