User Administration and
Authentication
Composite Application Framework (CAF) uses the user management and authentication mechanisms provided with the SAP NetWeaver platform, in particular the Application Server Java (AS Java). Therefore, the security recommendations and guidelines for user administration and authentication also apply to CAF.
For more information, see: SAP NetWeaver Application Server Java Security Guide
In addition to these guidelines, you need to be familiar with user administration and authentication that specifically applies to CAF.
Integration into Single Sign-On Environments