SAP Knowledge Base Article - Public

2405158 - OAuth2 authentication via google chrome extension - SuccessFactors OData


You would like to use the OAuth2 in the SucessFactors OData. This KBA will share one example how to use it.


SAP SuccessFactors OData


  • Admin Center->Manage OAuth2 Client Applications-> Register
  • Application name: Test Deepa; Application URL: https://localhost/
  • Generate X509 certificate
  • Common Name(CN): SF and then “Generate”
  • Download the .pem file. It contains private key and certificate. (Can be seen in notepad++)
  • Save the configuration
  • Now go back to Postman REST Client for SAML Assertion and create a new http POST call. Set the url to ''. Set Authorization = 'no Auth', goto Body, select the media type as 'x-www-form-urlencoded' and then you can enter values in key-values format. Enter the values in it as follow:

    • client ID: OAuth Client ID: API Key generated (YTJlZGJlMDUwYWMzYmViZDI2MGRhYWNiZDYxOA)

    • user_id = admin3
    • token_url =
    • private_key = everything between -----BEGIN ENCRYPTED PRIVATE KEY----- and -----END ENCRYPTED PRIVATE KEY----- in the Certificate.pem file.


  • POST 
    • grant_type: urn:ietf:params:oauth:grant-type:saml2-bearer
    • company_id:ace89z
    • assertion:PD94....
  • click on send. It generates token.
  • Copy the access token
  • Execute:   GET'cgrant1')?select=userId, firstName Parameter:

    • Authorization: Bearer <access token>

    • Accept: application/json


See Also

2800150 - How to test OAuth authentication via Postman - SuccessFactors Integrations


OAuth authentication, /oauth/token, /odata/v2/oauth/idp, assertion, Oauth token, token_url, OAuth2, SuccessFactors OData , KBA , LOD-SF-INT-ODATA , OData API Framework , LOD-SF-INT , Integrations , LOD-SF-INT-API , API & Adhoc API Framework , How To


SAP SuccessFactors HXM Suite all versions