Official agent skill

Sdaf Sap System

by Azure in Azure/sap-automation

Deploy SDAF SAP system infrastructure (VMs, disks, load balancers, HA inputs) after the workload zone exists.

OfficialMITAuto-check passedDevOps & Cloud

Install Sdaf Sap System

skills CLI
$ npx skills add Azure/sap-automation --skill sdaf-sap-system -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install Azure/sap-automation sdaf-sap-system --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/Azure/sap-automation.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/sdaf-sap-system .claude/skills/sdaf-sap-system && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
sdaf-sap-system
GitHub stars
145
Token cost
~1k tokens
SKILL.md length
293 words
Files
1
Skills in repo
19
Repo updated
First seen
Licence
MIT

At a glance

Deploy SDAF SAP system infrastructure (VMs, disks, load balancers, HA inputs) after the workload zone exists.

  • Works in 3 steps: Review replacement risk → Run the documented installer → Validate
  • A user says deploy an SAP system
  • SKILL.md covers When to invoke, Preconditions, Recipe and If the run fails, plus 3 more sections
  • Calls terraform; needs DEPLOYER_STATE_KEY and LANDSCAPE_STATE_KEY

What it does

Sdaf Sap System is an agent skill from Azure/sap-automation, published by the product's own GitHub organization. Deploy SDAF SAP system infrastructure (VMs, disks, load balancers, HA inputs) after the workload zone exists. Drives installer.sh --type sapsystem per docs/local/05-00-sap-system.md § Run, reviews replacement risk, and validates the generated <SIDhosts.yaml / sap-parameters.yaml. Use when a user says "deploy an SAP system", "run installer.sh sapsystem", "SAP system infrastructure", "generate the SAP system inventory". Do NOT use for OS/DB/SAP install (sdaf-sap-installation), workload zone (see…

Its SKILL.md is about 1k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in DevOps & Cloud, covering Cloud networking. The repository describes itself as: This is the repository supporting the SAP deployment automation framework on Azure. The licence is MIT.

When your agent uses it

  • A user says deploy an SAP system
  • Run installer.sh sapsystem
  • SAP system infrastructure
  • Generate the SAP system inventory

Example prompts

  • “deploy an SAP system”
  • “run installer.sh sapsystem”
  • “SAP system infrastructure”
  • “/sdaf-sap-system”

Requirements

  • Python 3
  • A credential in DEPLOYER_STATE_KEY
  • A credential in LANDSCAPE_STATE_KEY
  • Pre-approved tools (allowed-tools): shell

Workflow steps

3 steps, taken from the step headings in SKILL.md.

  1. Review replacement risk
  2. Run the documented installer
  3. Validate

What it can do on your machine

Read from SKILL.md and the folder at commit 78835f0. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves these tools, so the agent can use them without asking each time:

    • shell

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • terraform

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names these keys or tokens, usually read from environment variables:

    • DEPLOYER_STATE_KEY
    • LANDSCAPE_STATE_KEY

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Sdaf Sap System loads about 1k tokens when it runs. Until then it costs about 150 tokens; SKILL.md has 293 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~150
When it runs · the whole SKILL.md, loaded when a task matches
~1k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from Azure/sap-automation at commit 78835f0, republished under its MIT licence (© Azure). 293 words, ~1,048 tokens.

Download SKILL.mdSave it as .claude/skills/sdaf-sap-system/SKILL.md (or your agent's skills folder).
name
sdaf-sap-system
description
Deploy SDAF SAP system infrastructure (VMs, disks, load balancers, HA inputs) after the workload zone exists. Drives `installer.sh --type sap_system` per `docs/local/05-00-sap-system.md § Run`, reviews replacement risk, and validates the generated `<SID>_hosts.yaml` / `sap-parameters.yaml`. Use when a user says "deploy an SAP system", "run installer.sh sap_system", "SAP system infrastructure", "generate the SAP system inventory". Do NOT use for OS/DB/SAP install (`sdaf-sap-installation`), workload zone (see sdaf-workload-zone), or software download (`sdaf-media-acquisition`).
allowed-tools
shell
license
MIT

SDAF SAP System

Action-loop skill. Deploys the SAP-system infrastructure strictly per docs/local/05-00-sap-system.md. Installation of OS + DB + SAP is a separate concern owned by sdaf-sap-installation.

When to invoke

Trigger on: "deploy an SAP system", "run installer.sh sap_system", "SAP system infra", "generated hosts.yaml", "generated sap-parameters.yaml".

Do NOT trigger on: control plane, workload zone, software download, install, removal.

Preconditions

  • Workload zone deployed (docs/local/05-00-sap-system.md § Before you begin; SAP system reads deployer + landscape remote state per § What the automation does).
  • SYSTEM tfvars prepared under the documented WORKSPACES layout — see sdaf-workspace-and-tfvars.
  • Host quota / image / topology reviewed (docs/local/05-00-sap-system.md § Before you begin, § Inputs).

Recipe

Step 1 — Review replacement risk

Re-read the SYSTEM tfvars once, checking for anything that will cause a resource replacement (docs/local/05-00-sap-system.md § Review before execution; see also docs/local/troubleshooting.md § Terraform proposes unexpected replacement).

Step 2 — Run the documented installer

From the system parameter directory, exactly per docs/local/05-00-sap-system.md § Run:

bash
set -e
cd "$CONFIG_REPO_PATH/WORKSPACES/SYSTEM/<SAP_SYSTEM>"
ARM_SUBSCRIPTION_ID="<WORKLOAD_SUBSCRIPTION_ID>" \
"$SAP_AUTOMATION_REPO_PATH/deploy/scripts/installer.sh" \
    --type sap_system \
    --parameterfile "<SAP_SYSTEM>.tfvars" \
    --control_plane_name "<CONTROL_PLANE>" \
    --deployer_tfstate_key "<DEPLOYER_STATE_KEY>" \
    --landscape_tfstate_key "<LANDSCAPE_STATE_KEY>" \
    --storageaccountname "<STATE_STORAGE_ACCOUNT>" \
    --state_subscription "<STATE_SUBSCRIPTION_ID>" || {
  rc=$?
  echo "SAP system exit=$rc — route to sdaf-failure-triage"
  exit "$rc"
}
Step 3 — Validate

docs/local/05-00-sap-system.md § Validate and § Outcome:

  • SAP-system infra deployed.
  • Generated <SID>_hosts.yaml and sap-parameters.yaml exist (docs/local/05-00-sap-system.md § Validate, § Outcome).
  • Config and metadata uploaded to the state account's tfvars container (§ What the automation does).

If the run fails

Route to sdaf-failure-triage. Stage-owned preventive checks (kept here rather than in triage):

  • Filename / directory / basename mismatch — fix before rerun (docs/local/troubleshooting.md § A parameter file is not found).
  • Do not delete .progress markers to force a rerun (docs/local/06-00-software-and-installation.md § Safe retry).

Hard rules

  • Documented behaviour only (D19).
  • Do not deploy before the workload zone exists.
  • Do not pass --auto-approve (docs/local/05-00-sap-system.md § Review before execution).
  • Repo-wide rules apply: do not run terraform fmt and follow the Terraform / Ansible / Python guidance in .github/copilot-instructions.md.

What this skill does NOT do

  • Does not run OS / DB / SAP installation playbooks.
  • Does not download SAP media.
  • Does not tear down or repair state.

See also

  • sdaf-workload-zone, sdaf-workspace-and-tfvars, sdaf-bom-selection, sdaf-media-acquisition, sdaf-sap-installation, sdaf-state-management, sdaf-plan-and-test-semantics, sdaf-failure-triage.
  • docs/local/05-00-sap-system.md, docs/local/troubleshooting.md, .github/copilot-instructions.md.

© Azure, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in skills/sdaf-sap-system of Azure/sap-automation.

Open the folder on GitHubat commit 78835f0

Compare with similar skills

Sdaf Sap System next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Sdaf Sap System compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Sdaf Sap System this skillAzure/sap-automation145—~1kAutomated safety check: PassMIT
Kubeshark KFL2 Filter Referencekubeshark/kubeshark12k—~3.6kAutomated safety check: PassApache-2.0
Nginx To Higress Migrationhigress-group/higress9.5k—~3.9kAutomated safety check: PassApache-2.0
Bfe Rd Workflowbfenetworks/bfe6.3k—~1.3kAutomated safety check: PassApache-2.0
NGINX Ingress Controller Feature Checklistsnginx/kubernetes-ingress5.1k—~1.4kAutomated safety check: PassApache-2.0
NGINX Ingress Policy CRD Guidenginx/kubernetes-ingress5.1k—~2kAutomated safety check: PassApache-2.0

Similar skills

  • Syntax reference for KFL2, the CEL-based display filter language used to search Kubernetes network traffic captured by Kubeshark, loaded before any filter is written.

    12k GitHub stars~3.6k tokensUpdated yesterday
    DevOps & CloudAuto-check passed
  • Nginx To Higress Migration

    higress-group/higress

    Migrate from ingress-nginx to Higress in Kubernetes environments.

    9.5k GitHub stars~3.9k tokensUpdated 4 days ago
    DevOps & CloudAuto-check passed
  • Bfe Rd Workflow

    bfenetworks/bfe

    引导用户在 bfe 代码库中完成一次完整的功能研发流程,包括需求对齐、文档修改、代码实现、集成测试与回归验证. An agent skill from bfenetworks/bfe.

    6.3k GitHub stars~1.3k tokensUpdated today
    DevOps & CloudAuto-check passed
  • Gives step-by-step checklists for adding Ingress annotations, VirtualServer fields and Helm values to the NGINX Kubernetes Ingress Controller, with common gotchas.

    5.1k GitHub stars~1.4k tokensUpdated today
    DevOps & CloudAuto-check passed
  • NGINX Ingress Policy CRD Guide

    nginx/kubernetes-ingress

    Step-by-step checklist for adding a new Policy CRD type to the NGINX Ingress Controller, from the Go types and validation to config generation and templates.

    5.1k GitHub stars~2k tokensUpdated today
    DevOps & CloudAuto-check passed
  • ArvanCloud API Operator

    erfnzdeh/arvancloud-agent-skill

    Drives ArvanCloud's REST APIs for CDN, DNS, cloud servers, object storage and more, with helper scripts for calls, account inventory and certificates.

    135 GitHub stars~3.9k tokensUpdated 10 days ago
    DevOps & CloudAuto-check passed

More from Azure/sap-automation

All 19 skills in this repo
  • Sdaf Bom Selection

    Azure/sap-automation

    Official

    Pick the right SDAF BOM for a target SAP product / release / DB platform / version / kernel / topology.

    145 GitHub stars~1.6k tokensUpdated yesterday
    Auto-check passed
  • Sdaf Orientation And Surface

    Azure/sap-automation

    Official

    Orient a newcomer to the SAP Deployment Automation Framework (SDAF): explain the spine (control plane → workload zone → SAP system → software → install → operate/remove), summarise the three…

    145 GitHub stars~1.6k tokensUpdated yesterday
    Auto-check passed
  • Sdaf Quality Assurance

    Azure/sap-automation

    Official

    Validate a deployed SDAF SAP system through the SDAF-owned QA entry points: the local quality-assurance menu and the documented Azure DevOps pipeline 13 path.

    145 GitHub stars~1.6k tokensUpdated yesterday
    Auto-check passed
  • Sdaf Sap Installation

    Azure/sap-automation

    Official

    Guide SDAF operating-system, database, and SAP installation after the SAP-system workspace and reviewed media are ready.

    145 GitHub stars~1.5k tokensUpdated yesterday
    Auto-check passed
  • Sdaf Sovereign Cloud

    Azure/sap-automation

    Official

    Explain the current SDAF sovereign-cloud deltas without inventing a generic "all sovereigns" runbook.

    145 GitHub stars~1.4k tokensUpdated yesterday
    Auto-check passed
  • Sdaf State Management

    Azure/sap-automation

    Official

    Inspect and repair SDAF Terraform state safely before any reviewed import/remove.

    145 GitHub stars~1.7k tokensUpdated yesterday
    Auto-check passed

Categories

Questions about Sdaf Sap System

What does Sdaf Sap System do?

Deploy SDAF SAP system infrastructure (VMs, disks, load balancers, HA inputs) after the workload zone exists. Sdaf Sap System is an agent skill from Azure/sap-automation, published by the product's own GitHub organization. Deploy SDAF SAP system infrastructure (VMs, disks, load balancers, HA inputs) after the workload zone exists.

When should I use Sdaf Sap System?

Sdaf Sap System fits situations like: A user says deploy an SAP system; run installer.sh sapsystem; SAP system infrastructure; generate the SAP system inventory.

How do I install Sdaf Sap System in Claude Code?

Run `npx skills add Azure/sap-automation --skill sdaf-sap-system -a claude-code`. Or copy the skill folder (skills/sdaf-sap-system in Azure/sap-automation) into .claude/skills/sdaf-sap-system in your project. Claude Code loads it when a task matches its description.

How do I install Sdaf Sap System in Codex?

Run `npx skills add Azure/sap-automation --skill sdaf-sap-system -a codex`. Or copy the skill folder (skills/sdaf-sap-system in Azure/sap-automation) into .agents/skills/sdaf-sap-system in your project. Codex loads it when a task matches its description.

Can I use Sdaf Sap System in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add Azure/sap-automation --skill sdaf-sap-system -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/sdaf-sap-system, .gemini/skills/sdaf-sap-system, .github/skills/sdaf-sap-system and .opencode/skills/sdaf-sap-system in your project.

What does Sdaf Sap System need to run?

Going by SKILL.md and its folder, Sdaf Sap System needs the command-line tools its instructions call (terraform) and credentials named DEPLOYER_STATE_KEY and LANDSCAPE_STATE_KEY. Our summary lists: Python 3; A credential in DEPLOYER_STATE_KEY; A credential in LANDSCAPE_STATE_KEY. Its frontmatter pre-approves these tools: shell.

Does Sdaf Sap System access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Sdaf Sap System safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Sdaf Sap System use?

Sdaf Sap System is published under the MIT licence (declared in SKILL.md). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Sdaf Sap System use?

About 1k tokens (SKILL.md is roughly 4.2k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Sdaf Sap System?

Skills that share tags, products or a category with Sdaf Sap System: Kubeshark KFL2 Filter Reference (kubeshark/kubeshark, 12k stars), Nginx To Higress Migration (higress-group/higress, 9.5k stars), Bfe Rd Workflow (bfenetworks/bfe, 6.3k stars) and NGINX Ingress Controller Feature Checklists (nginx/kubernetes-ingress, 5.1k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Sdaf Sap System?

Azure (a GitHub organization, an official publisher) maintains it in Azure/sap-automation, which has 145 GitHub stars. The repository holds 19 skills in this directory. The repository was last updated on October 7, 2026.

Source: Azure/sap-automation on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.