Affiliation Platform: start earning Money with your Blog today!
 
 
 
0

Configure Single Sign-On (SSO) on the Portal and the ERP

Recently I’ve concluded successfully a full installation of the SAP Netweaver Developer Workplace on a local laptop. This installation was tricky and to work properly and as I expected, I also had to perform additional configurations, like the Single Sign-On (SSO), to connect it to the existing ERP system. Please note that this configuration worked for me and I did it in the sequence of installing a local portal on my laptop.

Assuming that you have full control over your systems, i.e., you’re an Administrator for your local Netweaver Portal and have SAP_ALL and SAP_NEW profiles in your backend user, here are the steps necessary to enable the SSO:

1. I started by exporting the Portal’s digital certificate, to later import it in the backend system. Logon to the Visual Administrator tool and browse to Server > Services > Key Storage;

2.    Choose Ticket Store > SAPLogonTicketKeypair-cert and click on Export to save the certificate locally:

Configure Single Sign-On

3. Save the certificate (.CRT) locally on a directory that you can easily find:

Configure Single Sign-On

4. Logon the ERP backend system and execute transaction code strustsso2;

5. On the main screen, double click on the “Owner” own certificate and on the “Certificate” block, choose the “Import Certificate” option:

Configure Single Sign-On

6. Browse for the previously saved certificate (.CRT):

Configure Single Sign-On

7. After the certificate is imported, it has to be added to the “Certificate list” and the “ACL list”. Click on “Add to certificate list” and “Add to ACL”

Configure Single Sign-On

8. When adding to the certificate list, the following message should appear:

Configure Single Sign-On

9. When adding to the ACL list, you need to fill in the following data:

Configure Single Sign-On

Note that for this installation, the system ID is defined as “N21″.

10. Click on “Save” to commit your changes

11. Next we must export the ERP backend certificate, in order to import it in the Visual Administrator. Double click the “Own Certificate – Owner” to display the details below the “Certificate” section:

Configure Single Sign-On

Configure Single-On

12. Click on the “Export Certificate” button, choose the path and CRT filename to save it locally;

13. Go back to the Visual Administrator tool and click on the “Load” button:

Configure Single Sign-On

14. Choose the exported CRT file. The certificate details will appear:

Configure Single Sign-On

The Single Sign-On should now be enabled, which means that you can now create the necessary Java Connectors (JCO), using as the logon method “SAPLogonTicket”.

Author : webmaster

Author's Website | Articles from webmaster

Working as an Information Systems Consultant for over 10 years now, I've found that working with SAP brought me added value on how to deal and manage IT and Information Systems Projects. More than a hobby, this blog is aimed to propagate SAP knowledge exchange and help other SAP technology or functional Consultants finding any piece of useful information. Please participate with your comments and opinions, it will help enrich the SAP community. Thanks!

Like this post? Share it!

  • Tweet
  • Facebook
  • Diggit
  • Delicious
  • Diggit
  • Diggit
  • Diggit
  • Diggit
  • Diggit

Related Posts



Affiliate Banner


Community Feeds

Submit More
;;