<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Problem using HTTPS in Application Development and Automation Discussions</title>
    <link>https://community.sap.com/t5/application-development-and-automation-discussions/problem-using-https/m-p/4237360#M1011663</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Still not resolved.  I had a play around with the parameters you suggested, but it made no difference.  I also had a play around with different options in the ssf/ssf_* parameters and that didn't get it to work either.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Jason&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 07 Aug 2008 21:06:36 GMT</pubDate>
    <dc:creator>Former Member</dc:creator>
    <dc:date>2008-08-07T21:06:36Z</dc:date>
    <item>
      <title>Problem using HTTPS</title>
      <link>https://community.sap.com/t5/application-development-and-automation-discussions/problem-using-https/m-p/4237357#M1011660</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I am trying to post a message using HTTPS in XI.  I have defined a RFC connection to an external HTTPs partner and when I test the connection I am getting errors (the full log from dev_icm is below).  I am using client certificates and have created a PSE for it.  The third party has added my certificate to their trusted store.  The third party gets a message about non matching ciphers when I try to do the test connection.  Does anyone have any suggestions on things I can try to get this to work?  Our SAP SSL library is at the latest level.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Jason&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;[Thr  7] NiICheckPendConnection: connection of hdl 18 to 156.134.6.212:443 established&lt;/P&gt;&lt;P&gt;[Thr  7] NiIConnect: hdl 18 took local address 14.134.160.97:64558&lt;/P&gt;&lt;P&gt;[Thr  7] NiIConnect: state of hdl 18 NI_CONNECTED&lt;/P&gt;&lt;P&gt;[Thr  7] &amp;lt;&amp;lt;- SapSSLSessionInit()==SAP_O_K&lt;/P&gt;&lt;P&gt;[Thr  7]      in: args = "role=1 (CLIENT), auth_type=3 (USE_CLIENT_CERT)"&lt;/P&gt;&lt;P&gt;[Thr  7]     out: sssl_hdl = 0x600000000097b3a0&lt;/P&gt;&lt;P&gt;[Thr  7] NiIBlockMode: set blockmode for hdl 18 TRUE&lt;/P&gt;&lt;P&gt;[Thr  7]   SSL NI-sock: local=14.134.160.97:64558  peer=124.148.6.212:443&lt;/P&gt;&lt;P&gt;[Thr  7] &amp;lt;&amp;lt;- SapSSLSetNiHdl(sssl_hdl=0x600000000097b3a0, ni_hdl=18)==SAP_O_K&lt;/P&gt;&lt;P&gt;[Thr  7]   SapISSLComposeFilename(): Filename = "/usr/sap/XID/DVEBMGS55/sec/SAPSSLTESTCL.pse"&lt;/P&gt;&lt;P&gt;[Thr  7] &amp;lt;&amp;lt;- SapSSLSetSessionCredential(sssl_hdl=0x600000000097b3a0)==SAP_O_K&lt;/P&gt;&lt;P&gt;[Thr  7]      in: cred_name = "/usr/sap/XID/DVEBMGS55/sec/SAPSSLTESTCL.pse"&lt;/P&gt;&lt;P&gt;[Thr  7] &amp;lt;&amp;lt;- SapSSLSetTargetHostname(sssl_hdl=0x600000000097b3a0)==SAP_O_K&lt;/P&gt;&lt;P&gt;[Thr  7]      in: hostname = "esmart.test.com.au"&lt;/P&gt;&lt;P&gt;[Thr  7] *** ERROR during SecudeSSL_SessionStart() from SSL_connect()==SSL_ERROR_SSL&lt;/P&gt;&lt;P&gt;[Thr  7]    session uses PSE file "/usr/sap/XID/DVEBMGS55/sec/SAPSSLTESTCL.pse"&lt;/P&gt;&lt;P&gt;[Thr  7] SecudeSSL_SessionStart: SSL_connect() failed --&lt;/P&gt;&lt;P&gt;  secude_error 536875072 (0x20001040) = "received a fatal SSLv3 handshake failure alert message from the peer"&lt;/P&gt;&lt;P&gt;[Thr  7] &amp;gt;&amp;gt; -&lt;/P&gt;&lt;HR originaltext="---------" /&gt;&lt;P&gt; Begin of Secude-SSL Errorstack -&lt;/P&gt;&lt;HR originaltext="---------" /&gt;&lt;P&gt; &amp;gt;&amp;gt;&lt;/P&gt;&lt;P&gt;[Thr  7] WARNING in ssl3_read_bytes: (536875072/0x20001040) received a fatal SSLv3 handshake failure alert message from the peer&lt;/P&gt;&lt;P&gt;[Thr  7] &amp;lt;&amp;lt; -&lt;/P&gt;&lt;HR originaltext="---------" /&gt;&lt;P&gt; End of Secude-SSL Errorstack -&lt;/P&gt;&lt;HR originaltext="---------" /&gt;&lt;P&gt;[Thr  7]   SSL_get_state() returned 0x00002120 "SSLv3 read server hello A"&lt;/P&gt;&lt;P&gt;[Thr  7]   No certificate request received from Server&lt;/P&gt;&lt;P&gt;[Thr  7] &amp;lt;&amp;lt;- ERROR: SapSSLSessionStart(sssl_hdl=0x600000000097b3a0)==SSSLERR_SSL_CONNECT&lt;/P&gt;&lt;P&gt;[Thr  7] &amp;lt;&amp;lt;- SapSSLErrorName()==SSSLERR_SSL_CONNECT&lt;/P&gt;&lt;P&gt;[Thr  7] *** ERROR =&amp;gt; IcmConnInitClientSSL: SapSSLSessionStart failed (-57): SSSLERR_SSL_CONNECT &lt;SPAN __jive_macro_name="00015091"&gt;&lt;/SPAN&gt; [icxxconn_mt.c 2012]&lt;/P&gt;&lt;P&gt;[Thr  7] &amp;lt;&amp;lt;- SapSSLSessionDone(sssl_hdl=0x600000000097b3a0)==SAP_O_K&lt;/P&gt;&lt;P&gt;[Thr  7] IcmConnConnect(id=1/20625): free MPI request blocks&lt;/P&gt;&lt;P&gt;[Thr  7] MPI&amp;lt;55b&amp;gt;2#7 GetInbuf -1 1a6ca0 306 (1) -&amp;gt; 6&lt;/P&gt;&lt;P&gt;[Thr  7] MPI&amp;lt;55a&amp;gt;3#4 GetOutbuf -1 1c6d20 65536 (0) -&amp;gt; 0xc0000001ac1c6d40 0&lt;/P&gt;&lt;P&gt;[Thr  7] NiIGetServNo: servicename '8055' = port 1F.77/8055&lt;/P&gt;&lt;P&gt;[Thr  7] MPI&amp;lt;55a&amp;gt;3#5 FlushOutbuf l-1 1 1 1c6d20 2168 6 -&amp;gt; 0xc0000001ac1c6d20 0&lt;/P&gt;&lt;P&gt;[Thr  7] NiICloseHandle: shutdown and close hdl 18 / sock 30&lt;/P&gt;&lt;P&gt;[Thr  7] IcmConnFreeContext: context 1 released&lt;/P&gt;&lt;P&gt;[Thr  7] IcmServDecrRefCount: xidsapci.test.local:8056 - serv_ref_count: 1&lt;/P&gt;&lt;P&gt;[Thr  7] IcmWorkerThread: Thread 3: Waiting for event&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 06 Aug 2008 00:18:30 GMT</pubDate>
      <guid>https://community.sap.com/t5/application-development-and-automation-discussions/problem-using-https/m-p/4237357#M1011660</guid>
      <dc:creator>Former Member</dc:creator>
      <dc:date>2008-08-06T00:18:30Z</dc:date>
    </item>
    <item>
      <title>Re: Problem using HTTPS</title>
      <link>https://community.sap.com/t5/application-development-and-automation-discussions/problem-using-https/m-p/4237358#M1011661</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Jason,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I believe the possible issue could be due to incorrect values to the following profile parameter&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;snc/permit_insecure_start&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If SNC is activated (parameter snc/enable = 1 ), by default the&lt;/P&gt;&lt;P&gt;gateway does not start any programs that communicate without&lt;/P&gt;&lt;P&gt;SNC.&lt;/P&gt;&lt;P&gt;This is allowed with snc/permit_insecure_start.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please check the instance profile parameter for the same. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cheers&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 06 Aug 2008 14:11:01 GMT</pubDate>
      <guid>https://community.sap.com/t5/application-development-and-automation-discussions/problem-using-https/m-p/4237358#M1011661</guid>
      <dc:creator>Former Member</dc:creator>
      <dc:date>2008-08-06T14:11:01Z</dc:date>
    </item>
    <item>
      <title>Re: Problem using HTTPS</title>
      <link>https://community.sap.com/t5/application-development-and-automation-discussions/problem-using-https/m-p/4237359#M1011662</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Jason, &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I could still see this question is not answered. Do you have still have the issue?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cheers,&lt;/P&gt;&lt;P&gt;Satish.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 07 Aug 2008 13:35:39 GMT</pubDate>
      <guid>https://community.sap.com/t5/application-development-and-automation-discussions/problem-using-https/m-p/4237359#M1011662</guid>
      <dc:creator>Former Member</dc:creator>
      <dc:date>2008-08-07T13:35:39Z</dc:date>
    </item>
    <item>
      <title>Re: Problem using HTTPS</title>
      <link>https://community.sap.com/t5/application-development-and-automation-discussions/problem-using-https/m-p/4237360#M1011663</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Still not resolved.  I had a play around with the parameters you suggested, but it made no difference.  I also had a play around with different options in the ssf/ssf_* parameters and that didn't get it to work either.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Jason&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 07 Aug 2008 21:06:36 GMT</pubDate>
      <guid>https://community.sap.com/t5/application-development-and-automation-discussions/problem-using-https/m-p/4237360#M1011663</guid>
      <dc:creator>Former Member</dc:creator>
      <dc:date>2008-08-07T21:06:36Z</dc:date>
    </item>
    <item>
      <title>Re: Problem using HTTPS</title>
      <link>https://community.sap.com/t5/application-development-and-automation-discussions/problem-using-https/m-p/4237361#M1011664</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The error trace indicates that the requested encryption cipher is not supported by the server so the server closes the connection. Find out what ciphers your server requires and see if there is a matchhing cipher on the SAP system. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This is likely to be a server side configuration issue trather than a SAP configuration issue. Some admins restrict ciphers and TLS protocols (TLS,SSLv2,SSLv3) to lock down their servers.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 08 Aug 2008 07:56:53 GMT</pubDate>
      <guid>https://community.sap.com/t5/application-development-and-automation-discussions/problem-using-https/m-p/4237361#M1011664</guid>
      <dc:creator>Former Member</dc:creator>
      <dc:date>2008-08-08T07:56:53Z</dc:date>
    </item>
  </channel>
</rss>

