on 01-22-2014 3:13 PM
Hi PI Gurus/ Friends ,
I am working on SFTP to SFTP file transfer via PI 7.11 AAE.
My Scenario
I have 3 Buisness systems Connected to PI.
Let us that take 3 Interface from from Buisness system A , 2 Interface from Buisness system Band 4 Interface for Buisness system C.
1. Its a Key Based Authentication , Private and Public key Concept with Certificate exchange.
Now my question is :-
Since this is the first time Buisness systems will be connected to PI system.
Do i need to generate the Certificates everytime for each Interface.
Now main question is Does Private Key in SFTP channel setting will be different for Individual Interfaces ( of a Particular Buisness system - for ex all three interface of buisness system A will have have their own private key .) Or it is only the One time Settings. Please help i am new to SAP PI.
P.S Folder from where the file willbe picked is different for all 4 Interfaces.
Hi Rohit,
The Key pair is based on system. so for system A you need to have public key from the system and use that in all interfaces related to that system.
In your case
When PI send the message it encrypt the message with public key of receiver and sign the message with own private key. When receiver receive the message first it authenticate the message (who is sender) then decrypt using own private key.
check the below blog for detail
Hope this help.
regards,
Harish
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
Hi Hareesh & Harish,
Thanks for your reply so this means that only one time the Certificates need to be exchanged between PI system and System , not every time when a new Interface is being built connecting two system. Please correct me if i am wrong.
if suppose i have 4 channels connecting to System A ( Different folders ), what will be the Private key will it be same in all the channels. since you have mentioned that only one time the private -public key pair is generated.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
Hi Rohit - AFAIK - Yes. It is host specific and you might need interface specific key as the locations are different.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
User | Count |
---|---|
91 | |
10 | |
10 | |
9 | |
9 | |
7 | |
6 | |
5 | |
5 | |
4 |
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.