cancel
Showing results for 
Search instead for 
Did you mean: 

Digital Certificates type A3 with Token for GRC NFE

Former Member
0 Kudos

Hi,

I need configure a digital certificate in XI for comunication of XI x SEFAZ, but the digital certificate is type A3 with token.

How can I solve this "problem"?

Best Regards.

Accepted Solutions (1)

Accepted Solutions (1)

Former Member
0 Kudos

Hi,

If your scenario is PI to SEFAZ, then PI will act as a client. You just need to add in the CA certificate that sign the SEFAZ digital certificate into PI, regardless whether the digital certificate is type A1 or A3.

Currently I am not sure if PI can support generation of certificate type A3.

Regards,

Lim...

Answers (2)

Answers (2)

henrique_pinto
Active Contributor
0 Kudos

Actually it's a platform issue, not related to the application (GRC NFE).

It is the J2EE Key Store that is not able to integrate with the Operating System Key Store, where A3 certificate will be stored.

Best,

Henrique.

deidre_logan
Participant
0 Kudos

Hello there,

We are getting this error on the signing of a document in PI 7.1.

Delivering the message to the application using connection SOAP_http://sap.com/xi/XI/System failed, due to: com.sap.engine.interfaces.messaging.api.exception.MessagingException: iaik.security.ssl.SSLCertificateException: Peer certificate rejected by ChainVerifier. Setting message to status failed.

We have the certificates loaded and they are showing with green light in the Key Storage.

Do you all know how to correct this issue?

Former Member
0 Kudos

SAP Support replied that's not supported in GRC-NFE. Regards.