cancel
Showing results for 
Search instead for 
Did you mean: 

Problem with SSO between EP and ECC

anil_kumar259
Active Contributor
0 Kudos

Hi Experts,

  I have implemented the SSO between ep 7.4 and Ecc 6.0 with .

But,when i try to test SSO with the tcode its asking for the username&password,

When i logoff and login its not asking the username and password(first time its asking the Uname&pwd).

When i close the browser and open the browser once again, the SSO fails.

Can any one tell me how to trouble shoot the issue??

Regards,

Anil

Accepted Solutions (1)

Accepted Solutions (1)

anil_kumar259
Active Contributor
0 Kudos

Issue fixed by myself.....

thanks for your support.

Regards,

Anil

Answers (2)

Answers (2)

SG05
Explorer
0 Kudos

Hi Anil,

We have implemented EHP7 and getting the same error in portal.

When I am trying to acces any WDA application from portal I am getting the error SSO login problem.

Can you please specify how could you solve it?

I am in a great trouble,so plz reply asap.

Thanks in advance.

Regards,

Sumana

Message was edited by: Julius von dem Bussche

anil_kumar259
Active Contributor
0 Kudos

Hi Sumana,

what exact problem your facing.Can you please the share the screen shot of NWA and STRUSTSSO2.

Regards,

Anil

cathal_ohare
Employee
Employee
0 Kudos

Hi Anil,

The first place to start is by reproducing the issue while running the troubleshooting wizard on the portal system (explained in note 1332726) here you can see if the login ticket was created ok.

Then on the backend you can check if the it recieved and accepted the ticket via an SM50 security trace. It should hopefully show the ticket recieved and give an error why SSO failed.

Httpwatch trace is also usfull to track the login ticket (MYSAPSSO2 cookie).

Also usual checks are to make sure the system are in the same domain and that the user exists on both systems.

Hope this help find the root problem.

Kind regards,

Cathal

anil_kumar259
Active Contributor
0 Kudos

Hi Cathal,

   Thanks for the reply.

As per your suggestion i have checked the trace in the NWA.I can't see any trace regarding SSO failure.

I have checked the browser cookie MYSAPSSO2, it has created in the browser.

Can you please tell me how to check the security trace in the SM50, i didnt find any trace in the sm50.

 

Please help me on this i am trying to fix this issue from so many days.....

Regards,

Anil

cathal_ohare
Employee
Employee
0 Kudos

Hi Anil,

Here is a template that explain how to get the SM50 traces.

1. Call transaction SM50 (process list):
2. Process -> Trace -> Reset -> Workprocess Files
3. Key combination: F5 (select all), CTRL-Shift-F7 => Dialog box;
4. Set trace level=3 and ONLY(!) check the "Security" component;

  If necessary, you must repeat these steps for each server (see
  transaction SM51), unless you can use a specific server for
  reproducing the error (for example, by excluding the load
  distribution).

The traces will be in the dev_wX files in the work directory

Get a screenshot of STRUSTSSO2, that shows the J2EE Engine certificate import into the certificate list and the ACL. I can double check for you if you imported it ok.

Hope this helps,
Cathal

anil_kumar259
Active Contributor
0 Kudos

Hi Cathal ,

Sorry for the very late reply.

Here is my strustsso2 screenshot.

Below is my nwa-->sso2 screen shot

Please let me know where i have done the mistake???

REgards,

Anil