Secure Storage of Data on Device
Local storage of data is a common vulnerability of mobile apps. SAP Fiori Client provides several measures to ensure the security of persistent data on the device.
In this section:
Application Passcode
SAP Fiori Client allows users to set an application passcode, as required by SAP
security standards. When SAP Mobile Platform Server or
SAP HCP, mobile service for development and operations is used with SAP Fiori Client, the administrator
can modify the passcode policy remotely.
Fingerprint Authentication
(Android, iOS) Beginning in SP14, kapsel applications and SAP Fiori Client support
fingerprint authentication. Fingerprint authentication can be used to unlock the datavault
instead of the passcode.
Logon Plugin Data Vault
The Data Vault is the reusable component for storing sensitive data securely on-device.
Each instance of the Data Vault is protected with an application passcode.
Encrypted Storage
SAP Fiori Client includes the Encrypted Storage plugin, which allows data to be stored
securely on the device so that the application does not have to retrieve the data from the
server every time the application is opened.
Attachment Handling
The Attachment Viewer plugin enables secure and seamless handling of attachments opened
from within SAP Fiori Client.
Privacy Screen
iOS and Android devices have app switchers that display screenshots of your apps. This
is a possible privacy risk for apps that display sensitive information. To enhance the
security of on-device data, SAP Fiori Client includes the Privacy Screen plugin, which hides
application content in the app switcher.