Courseiva

C_CPI Integration Suite Development Practice Question

An integration developer is building a Cloud Integration flow that connects to an external REST API requiring OAuth 2.0 client credentials authentication. The developer needs to ensure that the access token is cached efficiently across multiple concurrent message processing threads without repeatedly invoking the token endpoint. Which configuration step fulfills this requirement?

⚠ Common exam trap

Candidates often choose to implement custom Groovy scripts to manage token retrieval and caching, mistakenly believing that native adapter capabilities are insufficient for complex OAuth 2.0 token lifecycle management in high-concurrency scenarios.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

✓

Define an OAuth2 Client Credentials artifact in the runtime keystore settings and select the OAuth2 Client Credentials authentication type directly within the configuration settings of the HTTP Receiver adapter.

Configuring the OAuth2 Client Credentials credential object in the Cloud Integration Keystore and referencing it inside the HTTP Receiver adapter ensures that SAP Integration Suite automatically manages the lifecycle, caching, and concurrent request handling of access tokens securely without custom scripting. This prevents rate-limiting issues on the authorization server and optimizes overall integration performance.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • ✗

    Store the client secret as a secure parameter in the Partner Directory and write a custom Groovy script using the Apache Oltu library to manually fetch and cache tokens in the global variable space.

    Why it's wrong here

    Writing custom scripts for token management introduces unnecessary maintenance overhead and potential thread-safety bugs. SAP Cloud Integration provides native infrastructure capabilities inside the adapter and Keystore to handle OAuth flows securely and efficiently out of the box.

  • ✗

    Configure a Content Modifier step at the very beginning of the integration flow to call the token endpoint using a POST method, then store the resulting bearer token inside a message header for subsequent adapter calls.

    Why it's wrong here

    Storing tokens in message headers fails to share them across concurrent executions and different worker nodes effectively. Furthermore, calling the token endpoint on every single message processing run degrades performance and risks hitting provider rate limits.

  • ✓

    Define an OAuth2 Client Credentials artifact in the runtime keystore settings and select the OAuth2 Client Credentials authentication type directly within the configuration settings of the HTTP Receiver adapter.

    Why this is correct

    Storing the OAuth2 Client Credentials artifact in the tenant keystore lets the HTTP Receiver adapter reuse a single cached token across concurrent threads, so the token endpoint is not invoked per message. This directly satisfies the requirement to cache efficiently without repeated token calls.

  • ✗

    Deploy a separate timer-triggered integration flow that fetches the OAuth token every minute, writes it to a Data Store entry, and configure the main integration flow to read this Data Store entry prior to calling the target API.

    Why it's wrong here

    A timer flow polling the token endpoint each minute introduces a separate scheduled process and Data Store reads, and cannot guarantee token freshness or thread-safe caching across concurrent threads. It is tempting because Data Store persists values between flows, but Cloud Integration's OAuth2 credential artefact caches and refreshes tokens natively per security material.

About these practice questions

This C_CPI question is part of Courseiva's 218-question bank — original exam-style content with full explanations and wrong-answer analysis, never real exam questions or exam dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written and reviewed by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

Last reviewed September 2026 · checked against the official SAP exam blueprint

This C_CPI practice question is part of Courseiva's free SAP certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the C_CPI exam.