Single-Sign on From Portal EP6 to r/3 ECC 5.0


We have implemented ESS 60.2 on EP6SP13 (WAS 6.40).I am are trying to configure Single-Sign-On from Portal to R/3 (ECC 5.0) system. We have

an integrated ITS (within WAS 6.40). I have created and Ess user and a portal user. Both have the same username

The portal is the ticket-issuing system

Now I have to Configure SAP System to Accept and Verify SAP Logon

Tickets.I Have done the following steps for this:

a) Add Portal Server to ACL of component system - maintained table

TWPSSO2ACL with transaction SM30.

b) Downloaded the public-key certificate of the portal server

(verify.der file) using KeyStore Administration tool. Then I logon to

transaction STRUSTSSO2 and try to add the file using the 'ADD TO

CERTIFICATE LIST' tab. But i get an error saying 'Error during Import'.

c) Exported the J2EE signing certificate to Cluster-> Server -> Services->Key Storage->Runtime->

TicketKeystore->SAPLogonTicketKeypair–cert. Then I imported this file successfully into R/3 (ECC 5.0) using STRUSTSSO2.

d) Set the profile parameter login/accept_sso2_ticket to the value 1 in every instance profile

e) Also set the fully qualified domain name of the server in transaction RZ10

Then i test the JCo connection in Content Administration tool for which I get an error 'RFC_ERROR_LOGON_FAILURE : Name or Password is incorect'.

My question is are the steps mentioned above right ? If so, how do i test the SSO connectivity between EP and R/3 ?

Also, I am facing errors in step (b) and while testing JCO connectivity...

Could anyone please advise on the same

Thanks and Regards




