In this tutorial, you learn how to assign a role collection in the SAP BTP subaccount.
- You've deployed your application in either the SAP BTP, Cloud Foundry runtime or the SAP BTP, Kyma runtime:
- For deploying in the SAP BTP, Cloud Foundry runtime, follow the steps in the Deploy in SAP BTP, Cloud Foundry Runtime tutorial that is part of the Deploy a Full-Stack CAP Application in SAP BTP, Cloud Foundry Runtime Following SAP BTP Developer's Guide tutorial group.
- For deploying in the SAP BTP, Kyma runtime, follow the steps in the Deploy in SAP BTP, Kyma Runtime tutorial that is part of the Deploy a Full-Stack CAP Application in SAP BTP, Kyma Runtime Following SAP BTP Developer's Guide tutorial group.
- You have an enterprise global account in SAP BTP. To use services for free, you can sign up for an SAP BTPEA (SAP BTP Enterprise Agreement) or a Pay-As-You-Go for SAP BTP global account and use the free tier services only. See Using Free Service Plans.
- You have a platform user. See User and Member Management.
- You're an administrator of the global account in SAP BTP.
- You have a subaccount in SAP BTP to deploy the services and applications.
- You have a tenant of SAP Cloud Identity Services. See Get Your Tenant for details how to get a tenant of SAP Cloud Identity Services if you don't have one yet.
- You've established trust between your tenant of SAP Cloud Identity Services and your SAP BTP account. This established trust allows you to use your SAP Cloud Identity Services tenant as an identity provider or a proxy to your own identity provider hosting your business users. See Establish Trust and Federation Between SAP Authorization and Trust Management Service and SAP Cloud Identity Services.
- You have one of the following browsers that are supported for working in SAP Business Application Studio:
- Mozilla Firefox
- Google Chrome
- Microsoft Edge
This tutorial follows the guidance provided in the SAP BTP Developer's Guide.
-
Choose Security → Users, and then choose a user from the list.
-
Under Role Collections on the right, choose Assign Role Collection.
The role collections admin and support are automatically generated during deployment.
-
In the Assign Role Collection dialog, select the support role collection and choose Assign Role Collection.
You've assigned the role collection to your user.
Log out and log back in to make sure your new role collection is considered.

