cancel
Showing results for 
Search instead for 
Did you mean: 

HTTP Error

Former Member
0 Kudos

Hi,

I am trying to configure HR Content( E-fIling), but I get an ICM_HTTP_CONNECTION_FAILED when testing the connection in SM59. My settings in SM59 look something like this:

RFC Destination GH...

Connection Type G HTTPS Connexion...

...

Target Host ip-adress

Service No. 443

Path Prefix /submission

I use also the http proxy option with :

Proxy host name or ip-adress

port 8080

When i look at the log in SMICM, i have the following errors :

[Thr 10] Mon Mar 3 10:54:50 2008

[Thr 10] *** ERROR => NiPConnect2: SiPeekPendConn failed for hdl 26 / sock 33

(SI_ECONN_REFUSE/239; I4; ST; 147.189.170.1:8080) [nixxi.cpp 2821]

[Thr 10] *** WARNING => Connection request from (22/21523/0) to host: proxy, service: 8080 failed (NIECONN_REFUSED)

RM-T22, U21523, 001 PISUPER, c02048, 10:54:50, M0, W0, SM59, 2/2 [icxxconn_mt.c 2321]

Any suggestions what is wrong? Is the problem coming from my configuration or the client proxy ?

Thanks.

Jean-Philippe

Accepted Solutions (1)

Accepted Solutions (1)

Former Member
0 Kudos

Hi,

Go to SM59 and create a RFC destination with the connection type G and service no as 80 and website name in the target host field and approipriate path prefix in path prefix field.

Ex:https://www.sdn.sap.com/sdn/collaboration.sdn should be in target host and /sdn/collaboration.sdn in path prefix.

check in R/3:

SCIF: Is the service sap/xi/engine activated?

SU01: Is user XIAFUSER not blocked and has suitable rights?

check your communication channel:

Did you put the right target computer?

Did you put path: /sap/xi/engine?type=receiver ?

Did you put well logon parameter for R/3 system?

Please look at these...

Check out this SAP Note- 824554

Also this links

Cache Refresh~

https://websmp201.sap-ag.de/~sapdownload/011000358700003163902004E/HowTo_handle_XI_30_Caches.pdf

Thanks

Swarup

Former Member
0 Kudos

Thanks for the answers.

Now, i am facing this problem(ICM_HTTP_SSL_ERROR). I think there is a problem with SSL certificate of the PSE System :

[Thr 4] Mon Mar 3 11:44:47 2008

[Thr 4] *** ERROR during SecudeSSL_SessionStart() from SSL_connect()==SSL_ERROR_SSL

[Thr 4] session uses PSE file "/usr/sap/PID/DVEBMGS00/sec/SAPSSLA.pse"

[Thr 4] SecudeSSL_SessionStart: SSL_connect() failed

secude_error 9 (0x00000009) = "the verification of the server's certificate chain failed"

[Thr 4] >> Begin of Secude-SSL Errorstack >>

[Thr 4] ERROR in ssl3_get_server_certificate: (9/0x0009) the verification of the server's certificate chain failed

ERROR in af_verify_Certificates: (24/0x0018) Chain of certificates is incomplete : "CN=Entrust.net Secure Server Certification A

ERROR in get_path: (24/0x0018) Can't get path because the chain of certificates is incomplete

[Thr 4] << End of Secude-SSL Errorstack

[Thr 4] SSL_get_state() returned 0x00002131 "SSLv3 read server certificate B"

[Thr 4] SSL NI-sock: local=ip-adress, peer=ip-adress:443

[Thr 4] <<- ERROR: SapSSLSessionStart(sssl_hdl=0x6000000005e4c210)==SSSLERR_SSL_CONNECT

[Thr 4] *** ERROR => IcmConnInitClientSSL: SapSSLSessionStart failed (-57): SSSLERR_SSL_CONNECT [icxxconn_mt.c 2012]

Thanks by advance for any help,

JP

Edited by: Jean-Philippe PAIN on Mar 3, 2008 12:11 PM

Edited by: Jean-Philippe PAIN on Mar 3, 2008 12:11 PM

Former Member
0 Kudos

Hi

Refer below discussion where this SSL settings have discussed in details

Answer by Wolfgang Janzen

Please can you check if this is of any help.

Pls check the OSS Note 554174

SAP Note- 852688

&

/people/thomas.jung3/blog/2005/05/13/calling-webservices-from-abap-via-https

thanks

swarup

rodrigoalejandro_pertierr
Active Contributor
0 Kudos

hi,

do you need SSL?? go to sm59-->http destination .... -->access at your RFC. go to logon and security tab and check the options for SSL. if you need if refer to post before, if not, desactive the SSL security.

did you try with anonymous logon for SSL, select if from logon and security tab.

hope it helps,

Former Member
0 Kudos

Thanks all for the answers and links.

I successfully send my request but now i have a HTTP 200 error code.

I've read this blog and the suggested note but it don't really now where the problem is except i a m sending a "empty" request

/people/krishna.moorthyp/blog/2006/07/23/http-errors-in-xi

Any suggestions ?

Thanks by advance,

JP

Former Member
0 Kudos

Problem resolved.

Code HTTP 200 is normal.

Thanks for help

Former Member
0 Kudos

Hi Jean,

can you please provide the RFC configuration details you did to make it work? Gateway server address etc.

And is it must to have digital certificate for government.gov.uk or it can be worked out with User ID and password too?

Thanks in advance .

Arundeep

Former Member
0 Kudos

Hi JP,

I am facing the similar problem, can you please help me with the solution, I am breaking my head to resolve this...

Your help will be highly appreciated as this is production isse..

Thr 9488] *** ERROR during SecudeSSL_SessionStart() from SSL_connect()==SSL_ERROR_SSL

Thr 9488] session uses PSE file "H:\usr\sap\P49\DVEBMGS00\sec\SAPSSLC.pse"

Thr 9488] SecudeSSL_SessionStart: SSL_connect() failed

secude_error 9 (0x00000009) = "the verification of the server's certificate chain failed"

Thr 9488] >> Begin of Secude-SSL Errorstack >>

Thr 9488] ERROR in ssl3_get_server_certificate: (9/0x0009) the verification of the server's certificate chain failed #

RROR in af_verify_Certificates: (24/0x0018) Chain of certificates is incomplete : "CN=Entrust.net Secure Server Certification A

RROR in get_path: (24/0x0018) Can't get path because the chain of certificates is incomplete #

Thr 9488] << End of Secude-SSL Errorstack

Thr 9488] SSL_get_state() returned 0x00002131 "SSLv3 read server certificate B"

Thr 9488] SSL socket: local=20.137.179.35:3638 peer=64.14.127.126:443

Thr 9488] <<- ERROR: SapSSLSessionStart(sssl_hdl=0000000015F5D870)==SSSLERR_SSL_CONNECT

Thr 9488] *** ERROR => IcmConnInitClientSSL: SapSSLSessionStart failed (-57): SSSLERR_SSL_CONNECT [icxxconn.c 1825]

Thanking you in advance.

Former Member
0 Kudos

You need all certificates in the chain.

Not just one.

There will be two additional certificates.

When you got the certificate you have, open it in Windows and check the certificate path, then download the other certificates in the path and import them into the PSE aswell.

Answers (2)

Answers (2)

former_member198774
Active Participant
0 Kudos

Hi Team,

while executing Odata services in embedded  system we are getting an issue (attached).

Please check screenshot and let me know how to reproduce the issue.

Thanks&regards

Vijay.

Former Member
0 Kudos

Hi,

Check this

/people/krishna.moorthyp/blog/2006/07/23/http-errors-in-xi

Regards

Seshagiri

Former Member
0 Kudos

Hi,

I have already read it.

i have no answers except ICM_HTTP_CONNECTION_FAILED.

And i don't find solutions in the suggested notes...

others suggestions plz ?

Regards,

JP

Edited by: Jean-Philippe PAIN on Mar 3, 2008 11:11 AM