C_SEC_2405 · Question #79
What can be assigned directly to a user when using the SAP Launchpad service in SAP BTP?
The correct answer is D. Role collections. In SAP BTP, role collections are the authorization objects that can be assigned directly to users, groups, or identity provider attributes. Role collections bundle together individual roles, and assigning them to a user grants that user the permissions defined within…
Question
What can be assigned directly to a user when using the SAP Launchpad service in SAP BTP?
Options
- ASpaces
- BLaunchpad roles
- CCatalogs
- DRole collections
How the community answered
(51 responses)- A2% (1)
- B2% (1)
- C4% (2)
- D92% (47)
Explanation
In SAP BTP, role collections are the authorization objects that can be assigned directly to users, groups, or identity provider attributes. Role collections bundle together individual roles, and assigning them to a user grants that user the permissions defined within - including access to Launchpad content and functionality.
Why the distractors are wrong:
- A. Spaces - Spaces are organizational units within Cloud Foundry environments, not authorization objects assigned to users in the Launchpad service.
- B. Launchpad roles - Individual roles (like
Launchpad_Admin) exist, but they cannot be assigned directly to users; they must first be bundled into a role collection. - C. Catalogs - Catalogs group apps/tiles for content management purposes and are assigned to roles, not directly to users.
Memory tip: Think of role collections as a "permission bundle." In SAP BTP identity and access management, the rule is consistent everywhere - you always assign role collections to users, never raw roles or platform constructs like spaces or catalogs. If the question asks "what goes directly to a user," the answer is always role collections.
Topics
Community Discussion
No community discussion yet for this question.