Skip to content
Release: Australia · Updated: 2026-03-12 · Official documentation · View source

Establish an SAP connection using OAuth 2.0

Create a connection profile to establish a connection between your SAP system and your ServiceNow instance using OAuth 2.0 authentication.

Before you begin

Before establishing a connection between SAP and your ServiceNow instance, make sure that the following conditions are met:

  • Verify if your SAP system network is accessible to external applications like ServiceNow.
  • If external connections are blocked, install a MID Server. A MID Server enables communication and data movement between a ServiceNow instance and external applications or data sources. For instructions, see Installing the MID Server.

If you already have a MID Server installed in the network and connected to your ServiceNow instance, this SAP connection automatically uses it.

Role required: sam_admin

Procedure

  1. Navigate to All > SAP Compliance and Optimization > Connection Setup and select New.

  2. On the form, fill in the fields.

FieldDescription
NameName of connection profile.
Default price listDefault price list that should be considered for reconciliation.
Connection typeValues include:- Basic Auth - OAuth 2.0
Connection URLThe base URL to connect to the SAP instance.
OAuth Client IDClient ID for your SAP connection.
OAuth Client SecretClient secret for your SAP connection.
**Note:** You can get the OAuth Client ID and Client Secret at the time of registering your SAP application.
  1. Select Submit.

    The initial connection is established.

  2. Select the SAP connection and review the fields on the record.

FieldDescription
NameName of the connection profile. The value is generated in the SAP Connection Setup form.
Default price listDefault price list that should be considered for reconciliation. The value is generated in the SAP Connection Setup form.
Use USMM Role OptimizationThe option to specify USMM role-based optimization that must be applied during reconciliation.
Last runDate and time when the data was last pulled for the SAP connection.
REST messageREST message that contains the SAP API information.
OAuth entity profileThe OAuth entity profile that contains the credentials for the connection.
ActiveOption that indicates that the SAP connection is active.
Connection typeThis field is automatically populated based on your connection type.
User Mapping
SAP user fieldSAP users across different clients that are mapped to a corresponding ServiceNow user.
User fieldServiceNow user field.Important: Changing the values in the User Mapping fields after data is pulled results in the loss of the mapping between discovered users and system users. The mapping between discovered users and the Rights used by and Rights needed by fields is also lost.
Configuration
Fetch rolesControls the data pull from SAP for roles data.
Fetch engine usageControls the data pull from SAP for engine usage data.
Fetch digital access usageControls the data pull from SAP for digital access usage data.
Fetch activityControls the data pull from SAP for user activity and web activity data.
Fetch user transactionsControls the data pull from SAP for user transaction activity data.
  1. Generate an access token by selecting the Get OAuth Token related link.

    Note: You must be in the local network of SAP to generate the access token.

    1. Log in using your SAP credentials.

    2. In the Access Permission Request dialog box, select Allow for the scopes that you had added during the application registry.

      A message is displayed on the SAP Connection form indicating that the OAuth refresh token is available.

  2. If you're running the latest version of the ABAP program, test your SAP connection by selecting the Test SAP Connection and Version related link.

    Note: If you upgrade your ServiceNow instance, you must download and deploy the compatible version of the ABAP program and reconfigure a service provider with the SOA Manager.

  3. Send a request to the custom ABAP program to collect the SAP data into the custom tables again by selecting the Refresh data in SAP related link.

  4. If the SAP data you pulled is corrupted, view current data by selecting the Pull all SAP Data to ServiceNow related link.

    SAP data is scheduled to be pulled regularly.

  5. Update connection information by selecting the Update connection related link.

  6. Select Submit.

  7. View SAP clients in the SAP Clients related list.

    The SAP clients are generated when SAP data is pulled during the scheduled job.

  8. Select Update.

Result

The SAP connection is established.

What to do next

You can start creating software models and entitlements.

Parent Topic:Software Asset Management publisher pack for SAP

Related topics

Tables installed with the SAP publisher pack

Set up SAP integration to establish a connection with SAP

Establish an SAP connection using basic authentication

Create entitlements for SAP

Create software models for SAP

Create a custom SAP named user type

Map a role to a named user type

Create custom SAP price lists

Import custom SAP named user types

Import custom SAP price lists

SAP USMM-based optimization

User transaction activity for named user types

Self-declaring SAP engine license usage

Software Publisher Analytics dashboard for SAP in Software Asset Management classic

Publisher overview for SAP in the Software Asset Workspace