cancel
Showing results for 
Search instead for 
Did you mean: 

SSL Server PSE - loading existing certificate via STRUST

Former Member
0 Kudos

We are configuring XI ABAP stack (via transaction STRUST) to use HTTP adapter for secure communication with business partners for inbound communication (SAP WAS will take a role of SSL server).

We would like to re-use SSL Global Server certificate purchased and installed already on our XI JAVA stack for RNIF adapter (can this be done at all?), but importing/installing it via STRUST in SSL Server PSE is so confusing… and it does not work. How can we load server’s private/public keys in STRUST?

We used Replace function to change default SAP cert in SSL Server PSE to our own server cert, entered all possible CNs, OUs and Os, however little popup screen during Replace does not allow to enter all needed values according to the naming convention of CA we are using, default SAP CA uses less information, can this create a problem?

We installed Intermediate and Root certs in IE, but still getting message that server certificate is not trusted when trying https from the browser.

Any help will be appreciated.

Thanks!

Margaret

Accepted Solutions (0)

Answers (1)

Answers (1)

Former Member
0 Kudos

We just went through a similar situation. We are switching from external to internal ITS. We also tried to "import" an existing certificate - unsuccessfully. We opened an OSS note and were told this funcitionality was not meant for this use - you have to create a new certificate. You can however use the root certificates in the SAP database - if the one you use is in the list. Click on "certificates" in transaction STRUST and then import.

Hope this helps.