on 07-11-2016 11:43 AM
Hi Expert,
I try to configure an trusted IdP in the SAML 2.0 configuration of the AS ABAP (TA SAML2). The AS JAVA IDP is using a self-signed certificate, which i have exported beforehand incl. its Metadata.
I always get the error message "some certificates of the selected trusted provider where not parsed" on step Signature and Encryption. I can't finish the configuration on step Authentication Requirements due error message "new trusted provider can not be saved. certificate cannot be saved in Address Book. Cannot analyze certificate".
Already tried to put the certificate in STRUST which works but no success.
Can anyone provide me other suggestions on that?
Ups, my SAP CryptoLib on the AS JAVA seems to be too old (2011) just updated and now try again...
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
Hi Carsten,
Please notice that in order to import a certificate in the AS ABAP system you must ensure that the certificate is either binary or Base64 encoded (.cer or .crt file extension).
Usually the "Cannot analyze certificate" error happens when trying to import an unsupported certificate format.
Cheers,
Filipe Santos
Hi Carsten,
Thank you for the screenshots provided.
The issue does not seems to be related with SAML 2.0, it seems to be related with the SSF ABAP classes that are used to handle the X509 certificates.
Therefore can you check if the SAP Notes below can be implemented in your system:
1824896 - Sporadic error in methods of claass CL_ABAP_X509_CERTIFICATE
1910826 - Error in validity methods of class CL_ABAP_X509_CERTIFICATE
After implementing both SAP Notes, check if the issue is still happening.
Cheers,
Filipe Santos
User | Count |
---|---|
98 | |
11 | |
11 | |
10 | |
10 | |
8 | |
6 | |
5 | |
4 | |
4 |
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.