cancel
Showing results for 
Search instead for 
Did you mean: 

Access HANA via WD using HTTPS

Former Member
0 Kudos

Hi !

I'm able to access my xs Engine using https://hana host:4310

I need to get this working using a Web Dispatcher HTTPS port.

I'm able to access http://<WD host>:<WD port for HANA> just fine...but when I try to change HTTP to HTTPS in the WD profile, it fails with the below error:

Checking external server https://Hana host:4310...[Thr 140069963814752] *** ERROR during SecuSSL_SessionStart() from SSL_connnect()==SSL_ERROR_SSL

[Thr 140069963814752]    session uses PSE file "/usr/sap/WED/W02/sec/SAPSSLA.pse"

[Thr 140069963814752] SecuSSL_SessionStart: SSL_connnect() failed  (536872221/0x2000051d)

[Thr 140069963814752]    => "SSL API error"

[Thr 140069963814752] >> ---------- Begin of Secu-SSL Errorstack ---------- >>

[Thr 140069963814752] 0x2000051d | SAPCRYPTOLIB | SSL_connect

[Thr 140069963814752] SSL API error

[Thr 140069963814752] Failed to verify peer certificate. Peer not trusted.

[Thr 140069963814752] 0xa0600203 | SSL | ssl_verify_peer_certificates

[Thr 140069963814752] Peer not trusted

[Thr 140069963814752] 0xa0600297 | SSL | ssl_cert_checker_verify_certificates

[Thr 140069963814752] peer certificate (chain) is not trusted

[Thr 140069963814752]   Verification result:

[Thr 140069963814752]     Status      :Not successful

[Thr 140069963814752]     Profile     :1.3.6.1.4.1.694.2.2.2.2

[Thr 140069963814752]     DirectlyTrusted:Not successful

[Thr 140069963814752] << ---------- End of Secu-SSL Errorstack ----------

[Thr 140069963814752]   SSL_get_state()==0x2131 "SSLv3 read server certificate B"

[Thr 140069963814752]   SSL NI-hdl 6: local=xyz:51952  peer=xyz:4310

[Thr 140069963814752] <<- ERROR: SapSSLSessionStart(sssl_hdl=0x1dec450)==SSSLERR_PEER_CERT_UNTRUSTED

[Thr 140069963814752] *** ERROR => IcrConnOpen: SapSSLSessionStart failed (-102): SSSLERR_PEER_CERT_UNTRUSTED [icxxcheckcon 2700]

ERROR: Connection to server HANA host:4310 failed

My WD profile looks as below:

icm/server_port_2 = PROT=HTTPS,HOST=HANA host,PORT=8099,TIMEOUT=900,PROCTIMEOUT=900

wdisp/system_2 = SID=HANA SID, EXTSRV=https://HANA host:4310, SRCSRV=*:8099, SRCURL=/

When the items in bold are made HTTP, I can access http://WD host:8099 for the xs engine just fine.

For HTTPS in the WD profile, The browser says: 503 Service Unavailable

Do I need to import some certificate from HANA to the WD ?

HANA & WD lie on the same host.

Please help advise...

Thanks a lot !

saba.

Accepted Solutions (1)

Accepted Solutions (1)

isaias_freitas
Advisor
Advisor
0 Kudos

Hello Saba


Do I need to import some certificate from HANA to the WD ?

Exactly!

If the server certificate of the HANA is a self-signed certificate, you need to import it at the WD.

If it is a CA (Certification Authority) signed certificate, you need to import the "certificate chain" of the CA that signed the certificate instead of the server certificate itself.

The "certificate chain" is the CA root certificate and the certificates of any intermediary CAs in the certification path.

Based on the error entries provided above, you should import the certificate at the "SAPSSLA.pse" (anonymous client PSE) file from the WD.

However, importing it at the "SAPSSLC.pse" (non-anonymous client PSE) file would not do any harm, and might be required anyway.

Regards,

Isaías

Former Member
0 Kudos

Hi Isaias !

How are you

I did import the certificate (in all 3 pse's) but the 503 persists...

However, now the check profile says successful & the WD log with level 3 says:

[Thr 140116326360832] *** ERROR during secussl_read() from SSL_read()==SSL_ERROR_SSL

[Thr 140116326360832]    session uses PSE file "/usr/sap/WD5/W02/sec/SAPSSLS.pse"

[Thr 140116326360832] secussl_read: SSL_read() failed  (536875078/0x20001046)

[Thr 140116326360832]    => "received a fatal SSLv3 certificate unknown alert message from the peer"

[Thr 140116326360832] >> ---------- Begin of Secu-SSL Errorstack ---------- >>

[Thr 140116326360832] 0x20001046 | SAPCRYPTOLIB | SSL_read

[Thr 140116326360832] SSL API error

[Thr 140116326360832] received a fatal SSLv3 certificate unknown alert message from the peer

[Thr 140116326360832] 0xa0600263 | SSL | ssl3_read_bytes

[Thr 140116326360832] received a fatal SSLv3 certificate unknown alert message from the peer

[Thr 140116326360832] 0xa0600263 | SSL | ssl3_read_bytes

[Thr 140116326360832] received a fatal SSLv3 certificate unknown alert message from the peer

[Thr 140116326360832] << ---------- End of Secu-SSL Errorstack ----------

[Thr 140116326360832]   SSL_get_state()==0x21d0 "SSLv3 read finished A"

[Thr 140116326360832]   Server's List of trusted CAs (from initial CertRequest message):

[Thr 140116326360832]     #1  "CN=Server Name"

[Thr 140116326360832] <<- ERROR: SapSSLSessionStartNB(sssl_hdl=7f6f54008020)==SSSLERR_SSL_READ

[Thr 140116326360832] ->> SapSSLErrorName(rc=-58)

[Thr 140116326360832] Fri Feb  5 03:48:14 2016

[Thr 140116326360832] <<- SapSSLErrorName()==SSSLERR_SSL_READ

Please help advise...

By the way, its a self signed certificate for HANA & I took it from the browser...

Thanks a lot !

saba.

isaias_freitas
Advisor
Advisor
0 Kudos

Hello Saba,

I'm fine, thanks .

How about you?

About these new entries you have posted, are they related to your browser connecting to the Web Dispatcher?

You can verify these a few lines before. It will show something similar to the below:

[Thr 10236] REQUEST:

    Type: ACCEPT_CONNECTION    Index = 5

[Thr 10236] CONNECTION (id=0/5):

    used: 1, type: default, role: Server(1), stateful: 0

    NI_HDL: 53, protocol: HTTPS()

    local host:  WDhost:WDport ()

    remote host: RemoteHost:RemotePort ()

    status: NOP

    connect time: 05.02.2016 09:55:29

If yes, it would mean that your browser does not "trust" the Web Dispatcher certificate. You will need to import the Web Dispatcher certificate (or the CA certificate) at your browser.

Regards,

Isaías

Former Member
0 Kudos

Hi Isaias,

Thanks for the quick response...here is what I see:

Fri Feb  5 09:13:12 2016

[Thr 140106272236298]  in/out: ... ni_hdl = 74

[Thr 140106272236298] NiICloseHandle: shutdown and close hdl 74/sock 18

[Thr 140106272236298] IcmIConnPoolAllocEntry: no entry for pool 7f6f480009d0 found: 0, timeout: 0

[Thr 140106272236298] DUMP of used conn-entries:

[Thr 140106272236298] DUMP of free list:

[Thr 140106272236298] ICR: IcrAttachToServer: retry (1) connect to same server in 80 milliseconds.

[Thr 140106272236298] IcmIConnPoolAllocEntry: try to create new entry for pool 7f6f480009d0

[Thr 140106272236298] IcmConnPoolAllocSlot: allocated entry 7f6f48000ac0[0] of pool 7f6f480009d0

[Thr 140106272236298] NiHLGetNodeAddr: found hostname 'server.abc.com' in cache (valid-address/name)

[Thr 140106272236298] NiIGetNodeAddr: hostname 'server.abc.com' = addr 10.40.10.29

[Thr 140106272236298] NiIGetServNo: servicename '4310' = port 4310

[Thr 140106272236298] NiICreateHandle: hdl 75 state NI_INITIAL_CON

[Thr 140106272236298] NiIInitSocket: set default settings for new hdl 75/sock 18 (UD; ST)

[Thr 140106272236298] NiIBlockMode: set blockmode for hdl 75 FALSE

[Thr 140106272236298] NiIConnectSocket: hdl 75 is connecting to /tmp/.sapicm4310 (timeout=5000)

[Thr 140106272236298] NiHLGetHostName: found address 10.40.10.29 in cache (valid-address/name)

[Thr 140106272236298] NiHLGetHostName: retrying to get hostname for '10.40.10.29'

[Thr 140106272236298] *** ERROR => NiPConnect: SiConnect failed for hdl 75/sock 18

    (SI_ECONN_REFUSE/13; UD; ST; /tmp/.sapicm4310) [nixxi.cpp    2988]

[Thr 140106272236298] NiIInitSocket: set default settings for new hdl 75/sock 18 (I4; ST)

[Thr 140106272236298] NiIBlockMode: set blockmode for hdl 75 FALSE

[Thr 140106272236298] NiIConnectSocket: hdl 75 is connecting to 10.40.10.29:4310 (timeout=5000)

[Thr 140106272236298] SiPeekPendConn: connection of sock 18 established

[Thr 140106272236298] NiICheckPendConnection: connection of hdl 75 to 10.40.10.29:4310 established

[Thr 140106272236298] NiIConnect: hdl 75 took local address 10.40.10.29:54612

[Thr 140106272236298] NiIConnect: state of hdl 75 NI_CONNECTED

[Thr 140106272236298] IcmConnPoolConnect: Connection to host: XYZ.abc.com, service: 4310 established (nihdl=75)

[Thr 140106272236298] ->> SapSSLSessionInit(&sssl_hdl=7f6f5ca1ced8, role=1 (CLIENT), auth_type=3 (USE_CLIENT_CERT))

[Thr 140106272236298] <<- SapSSLSessionInit()==SAP_O_K

[Thr 140106272236298]      in: args = "role=1 (CLIENT), auth_type=3 (USE_CLIENT_CERT)"

[Thr 140106272236298]     out: sssl_hdl = 7f6f440184c0

[Thr 140106272236298] ->> SapSSLSetNiHdl(sssl_hdl=7f6f440184c0, ni_hdl=75)

[Thr 140106272236298]   SSL NI-hdl 75: local=10.40.10.29:54612  peer=10.40.10.29:4310

[Thr 140106272236298] <<- SapSSLSetNiHdl(sssl_hdl=7f6f440184c0, ni_hdl=75)==SAP_O_K

[Thr 140106272236298] ->> SapSSLSetSessionCredential(sssl_hdl=7f6f440184c0, &cred_name=7f6f48027c30)

[Thr 140106272236298]   SapISSLComposeFilename(): Filename = "/usr/sap/WD5/W02/sec/SAPSSLS.pse"

[Thr 140106272236298] <<- SapSSLSetSessionCredential(sssl_hdl=7f6f440184c0)==SAP_O_K

[Thr 140106272236298]      in: cred_name = "/usr/sap/WD5/W02/sec/SAPSSLS.pse"

[Thr 140106272236298] ->> SapSSLSetTargetHostname(sssl_hdl=7f6f440184c0, &hostname=7f6f48027c80)

[Thr 140106272236298] <<- SapSSLSetTargetHostname(sssl_hdl=7f6f440184c0)==SAP_O_K

[Thr 140106272236298]      in: hostname = "XYZ.abc.com"

[Thr 140106272236298] Fri Feb  5 09:13:12 2016

[Thr 140106272236298] <<- SapSSLTargetMatchParam(sssl_hdl=7f6f440184c0)==SAP_O_K

[Thr 140106272236298]      in: matchparam = "NONE"

[Thr 140106272236298] ->> SapSSLSessionStartNB(sssl_hdl=7f6f440184c0, flags=00000000, timeout=80000, &IOstat=7f6f5ca1ce58)

[Thr 140106272236298] NiIBlockMode: leave blockmode for hdl 75 FALSE

[Thr 140106272236298] NiIHdlGetStatus: hdl 75/sock 18 ok, no data pending

[Thr 140106272236298]   SapISSLUseSessionCache(): Creating NEW session (0 cached)

[Thr 140106272236298]   SSL:SiSend(sock=  18)== 0 (SI_OK)       (out=60 of 60)

[Thr 140106272236298]   SSL:SiRecv(sock=  18)==13 (SI_ETIMEOUT) (in=0, max=16)

[Thr 140106272236298]   --> SSL:SiPoll(sock=18, evt=R, timeout=80000 ms)

[Thr 140106272236298]   <-- SSL:SiPoll(sock=18, evt=R, slept  =   0 ms) Ready

[Thr 140106272236298]   SSL:SiRecv(sock=  18)== 0 (SI_OK)       (in=16, max=16)

[Thr 140106272236298]   SSL:SiRecv(sock=  18)== 0 (SI_OK)       (in=80, max=80)

[Thr 140106272236298]   SSL:SSL_read(netin=   86) handshake, processed=   86

[Thr 140106272236298]   SSL:SiRecv(sock=  18)== 0 (SI_OK)       (in=704, max=704)

[Thr 140106272236298]   SSL:SSL_read(netin=  694) handshake, processed=  694

[Thr 140106272236298]   SSL:SiRecv(sock=  18)== 0 (SI_OK)       (in=29, max=32)

[Thr 140106272236298]   SSL:SSL_read(netin=   39) handshake, processed=   39

[Thr 140106272236298]   SSL:SSL_read(netin=    9) handshake, processed=    9

[Thr 140106272236298]   SSL:SiSend(sock=  18)== 0 (SI_OK)       (out=1297 of 1297)

[Thr 140106272236298]   SSL:SiRecv(sock=  18)==13 (SI_ETIMEOUT) (in=0, max=16)

[Thr 140106272236298]   --> SSL:SiPoll(sock=18, evt=R, timeout=80000 ms)

[Thr 140106272236298]   <-- SSL:SiPoll(sock=18, evt=R, slept  =   0 ms) Ready

[Thr 140106272236298]   SSL:SiRecv(sock=  18)== 0 (SI_OK)       (in=7, max=16)

[Thr 140106272236298]   SSL:SSL_read(netin=    7) handshake, processed=    7

[Thr 140106272236298] *** ERROR during secussl_read() from SSL_read()==SSL_ERROR_SSL

[Thr 140106272236298]    session uses PSE file "/usr/sap/WD5/W02/sec/SAPSSLS.pse"

[Thr 140106272236298] secussl_read: SSL_read() failed  (536875078/0x20001046)

[Thr 140106272236298]    => "received a fatal SSLv3 certificate unknown alert message from the peer"

[Thr 140106272236298] >> ---------- Begin of Secu-SSL Errorstack ---------- >>

[Thr 140106272236298] 0x20001046 | SAPCRYPTOLIB | SSL_read

[Thr 140106272236298] SSL API error

[Thr 140106272236298] received a fatal SSLv3 certificate unknown alert message from the peer

[Thr 140106272236298] 0xa0600263 | SSL | ssl3_read_bytes

[Thr 140106272236298] received a fatal SSLv3 certificate unknown alert message from the peer

[Thr 140106272236298] 0xa0600263 | SSL | ssl3_read_bytes

[Thr 140106272236298] received a fatal SSLv3 certificate unknown alert message from the peer

[Thr 140106272236298] << ---------- End of Secu-SSL Errorstack ----------

[Thr 140106272236298]   SSL_get_state()==0x21d0 "SSLv3 read finished A"

[Thr 140106272236298]   Server's List of trusted CAs (from initial CertRequest message):

[Thr 140106272236298]     #1  "CN=Server"

[Thr 140106272236298] <<- ERROR: SapSSLSessionStartNB(sssl_hdl=7f6f440184c0)==SSSLERR_SSL_READ

[Thr 140106272236298] ->> SapSSLErrorName(rc=-58)

[Thr 140106272236298] <<- SapSSLErrorName()==SSSLERR_SSL_READ

[Thr 140106272236298] *** ERROR => IcmConnPoolConnect: SapSSLSessionStartNB failed (-58): SSSLERR_SSL_READ [icxxpool.c   2329]

[Thr 140106272236298] ->> SapSSLSessionDoneNB(&sssl_hdl=7f6f5ca1ced8)

[Thr 140106272236298] <<- SapSSLSessionDoneNB()==SAP_O_K

I imported the WD cert in the browser too, but its the same...

The HTTPS port for HANA is 4310 & the local link works great.

Thanks a ton

Happy Friday !

-s.

isaias_freitas
Advisor
Advisor
0 Kudos

Hello Saba,

OK. These entries reveal that the issue is actually between the external WD and the HANA WD.

It seems that the HANA WD is not accepting the external WD certificate.

The external WD would be using its server PSE file (SAPSSLS.pse) to perform the SSL connection to the HANA WD, when normally it should use the client or anonymous PSE.

Can you attach to this thread the complete profile from the external WD?

Happy Friday to you too .

Regards,

Isaías

Former Member
0 Kudos

Hi Isaias,

Here's the WD profile:

SAPSYSTEMNAME = ABC

SAPSYSTEM = 02

INSTANCE_NAME = W02

DIR_CT_RUN = $(DIR_EXE_ROOT)$(DIR_SEP)$(OS_UNICODE)$(DIR_SEP)linuxx86_64

DIR_EXECUTABLE = $(DIR_CT_RUN)

DIR_PROFILE = $(DIR_INSTALL)/profile

_PF = $(DIR_PROFILE)/ABC_W02_XYZ

SETENV_00 = DIR_LIBRARY=$(DIR_LIBRARY)

SETENV_01 = LD_LIBRARY_PATH=$(DIR_LIBRARY):%(LD_LIBRARY_PATH)

SETENV_02 = SHLIB_PATH=$(DIR_LIBRARY):%(SHLIB_PATH)

SETENV_03 = LIBPATH=$(DIR_LIBRARY):%(LIBPATH)

SETENV_04 = PATH=$(DIR_EXECUTABLE):%(PATH)

#-----------------------------------------------------------------------

# Back-end system configuration

#-----------------------------------------------------------------------

#wdisp/system_0 = SID=PQR, MSHOST=XYZ, MSPORT=8101, SSL_ENCRYPTION=2

#-----------------------------------------------------------------------

# Configuration of maximum number of concurrent connections

#-----------------------------------------------------------------------

icm/max_conn = 2000

#-----------------------------------------------------------------------

# Tuning parameters that usually do not need to be adjusted

#-----------------------------------------------------------------------

rdisp/TRACE = 3

icm/max_sockets = ($(icm/max_conn) * 2)

icm/req_queue_len = 500

icm/min_threads = 10

icm/max_threads = 50

mpi/total_size_MB = (min(0.06 * $(icm/max_conn) + 50, 2000))

mpi/max_pipes = ($(icm/max_conn) * 2)

wdisp/HTTP/max_pooled_con = ($(icm/max_conn))

wdisp/HTTPS/max_pooled_con = ($(icm/max_conn))

ssl/server_cache_size = (min($(icm/max_conn) * 4, 100000))

#-----------------------------------------------------------------------

# SAP Web Dispatcher Ports

#-----------------------------------------------------------------------

icm/server_port_0 = PROT=HTTP,HOST=XYZ.domain.com,PORT=8055,TIMEOUT=300,PROCTIMEOUT=300

icm/server_port_1 = PROT=HTTPS,HOST=XYZ.domain.com,PORT=8077,TIMEOUT=900,PROCTIMEOUT=900

icm/server_port_2 = PROT=HTTPS,HOST=XYZ.domain.com,PORT=8099,TIMEOUT=900,PROCTIMEOUT=900

icm/HTTPS/verify_client = 0

wdisp/ssl_encrypt = 0

wdisp/ssl_certhost = XYZ.domain.com

wdisp/ssl_ignore_host_mismatch = TRUE

#wdisp/filter_xs_internal_uri = false

#-----------------------------------------------------------------------

# SAP Web Dispatcher Administration

#-----------------------------------------------------------------------

icm/HTTP/admin_0 = PREFIX=/sap/wdisp/admin,DOCROOT=$(DIR_DATA)$(DIR_SEP)icmandir,AUTHFILE=$(icm/authfile)

#-----------------------------------------------------------------------

# Start webdispatcher

#-----------------------------------------------------------------------

_WD = wd.sap$(SAPSYSTEMNAME)_$(INSTANCE_NAME)

Execute_00 = local rm -f $(_WD)

Execute_01 = local ln -s -f $(DIR_EXECUTABLE)/sapwebdisp$(FT_EXE) $(_WD)

Restart_Program_00 = local $(_WD) pf=$(_PF)

SETENV_05 = SECUDIR=$(DIR_INSTANCE)/sec

ssl/server_pse = /usr/sap/ABC/W02/sec/SAPSSLS.pse

wdisp/ssl_cred = /usr/sap/ABC/W02/sec/SAPSSLS.pse

wdisp/system_conflict_resolution = 2

wdisp/system_1 = SID=PQR, MSHOST=XYZ.domain.com, MSPORT=8101, SRCSRV=*:8077, SRCURL=/sap/

wdisp/system_2 = SID=STU, EXTSRV=https://XYZ.domain.com:4310, SRCSRV=*:8099, SRCURL=/sap/

I haven't done anything on the HANA WD...

Just want the HANA links to open with the WD host : 8099.

Thanks a lot !

saba.

isaias_freitas
Advisor
Advisor
0 Kudos

OK. Your WD is using the server PSE because you have defined this through the parameter "wdisp/ssl_cred".

Removing this parameter might help.

In case it doesn't, you need to import the WD client certificate at the HANA WD server PSE file (and keep that parameter not set).

Regards,

Isaías

Former Member
0 Kudos

Hi Isaias,

I imported the WD cert in the HANA WD (all PSE's)...also removed the parameter.

Now, I see the below:

IcmLockVhostTable: -> 0

[Thr 139655687530240] IcmLookupVhostTable: 3970c70 vhost=xyz.company.com, vport=8099, phost=10.40.10.37, pport=8099, urlprefix=/favicon.ico, lock=1 -> rc=-15

[Thr 139655687530240] IcrFindTargetSystem: No system found for vhost: xyz.company.com addr: 10.40.10.37:8099 url: /favicon.ico

[Thr 139655687530240] HttpGetRouteTargetSystem: no system available, rc=-2

[Thr 139655687530240] HTR: HtrCleanupConnection -> 0

[Thr 139655687530240] HttpSrvHdlRequest: Error return: 701

[Thr 139655687530240] IcmPlCheckRetVal: Plugin retval: PLUGIN_RET_ERROR (701)

[Thr 139655687530240] IcmHandleNetRead(id=0/32): read_len: 329, HandleNetData returned: 701

[Thr 139655687530240] IcmHandleNetRead(id=0/32): PlugInHandleNetData failed (rc=701)

[Thr 139655687530240] MPI<10>1#6 Cancel 7 -> MPI_OK

[Thr 139655687530240] MPI<11>0#3 Cancel 7 -> MPI_OK

[Thr 139655687530240] Thu Feb 11 09:04:38 2016

[Thr 139655687530240] PlugInStopConn: role: Server(1), error: No system found(-51), write_err: 1

[Thr 139655687530240] PlugInStopConn: write error response

[Thr 139655687530240] HttpPlugInWriteErrorText: return static error for "No system found" (-51)

[Thr 139655687530240] HttpPlugInWriteErrorText: templ_path: /usr/sap/WDD/W02/data/icmandir/error_templ, err_idx: -1

[Thr 139655687530240] ICT: IctIHttpOpenMessage: 7f04100035f0 typ=2

[Thr 139655687530240] HttpParseResponseHeader: no transfer-encoding set

[Thr 139655687530240] HttpParseResponseHeader: Version: 1000

[Thr 139655687530240] HttpParseResponseHeader: Keep-Alive: 0

[Thr 139655687530240] HTTP response (raw) [0/32/1]:

[Thr 139655687530240]   HTTP/1.0 503 Service Unavailable

[Thr 139655687530240]   date: Thu, 11 Feb 2016 14:04:38 GMT

[Thr 139655687530240]   pragma: no-cache

[Thr 139655687530240]   connection: close

[Thr 139655687530240]   content-length: 160

[Thr 139655687530240]   content-type: text/html

[Thr 139655687530240]   x-sap-icm-err-id: ICMENOSYSTEMFOUND

[Thr 139655687530240] Connection Info: role=Server, local=xyz.company.com:8099, peer=10.30.37.64, protocol=HTTPS

[Thr 139655687530240] HttpSrvHdlResponse: body_complete: 1, native: 0, follow_up: 0

Check Profile says:

Checking external servers with URL "/":

Checking external server https://xyz.company.com:4310...Successful

I'm not sure why its unable to start on my external WD 8099 now

GOD bless you...you've been a big help btw

Thanks !

saba.

isaias_freitas
Advisor
Advisor
0 Kudos

Hello Saba,

You are welcome! And thank you for the kind words .

The error now shows that the WD received a request at its port 8099 but it could not determine which is the target system that should receive this request:


[Thr 139655687530240] IcrFindTargetSystem: No system found for vhost: xyz.company.com addr: 10.40.10.37:8099 url: /favicon.ico

[Thr 139655687530240] HttpGetRouteTargetSystem: no system available, rc=-2

Did you change anything at the wdisp/system_X parameters?

You could post the current / updated profile .

Regards,

Isaías

Former Member
0 Kudos

Hello Isaias,

I was checking something incorrectly...it worked !!!

La di lah

You're the best !

Thanks !!!

-s.

isaias_freitas
Advisor
Advisor
0 Kudos

Thanks for sharing the good news!

former_member188396
Participant
0 Kudos

Hi Isaias,

I am having similar issue but not exactly the same. I have opened another discussion. If you can look into that, it would be really helpful.

thread -

We are getting 503 error and log says below error.

x-sap-icm-err-id: ICMENOSYSTEMFOUND



Thanks,

Bhavik

isaias_freitas
Advisor
Advisor
0 Kudos

Hello Bhavik,

Sure! I'll take a look .

Regards,

Isaías

former_member188396
Participant
0 Kudos

Thank you.

Answers (0)