<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Problem importing a certificate using Strust in Application Development and Automation Discussions</title>
    <link>https://community.sap.com/t5/application-development-and-automation-discussions/problem-importing-a-certificate-using-strust/m-p/8321494#M1637329</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;check note 1468249.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cheers&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 22 Nov 2011 20:15:32 GMT</pubDate>
    <dc:creator>mvoros</dc:creator>
    <dc:date>2011-11-22T20:15:32Z</dc:date>
    <item>
      <title>Problem importing a certificate using Strust</title>
      <link>https://community.sap.com/t5/application-development-and-automation-discussions/problem-importing-a-certificate-using-strust/m-p/8321493#M1637328</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'm trying to import a signed wildcard certificate form Comodo onto Web Application server using Transaction STRUST&lt;/P&gt;&lt;P&gt;My plan is to replace the self signed one wiht a certificate that does not propmt a security warning from the web browser.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;to be more exact I want to use the SSL for BSP web pages and Web services.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Currently If we try to have a .Net client call the Sap Web service we get the following error in .NET code&lt;/P&gt;&lt;PRE&gt;&lt;CODE&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;System.InvalidOperationException: General Error &lt;A href="https://server.domain.com/sap/bc/srt/wsdl/bndg_E10C782F9C42E4F199F3001A64362F30/wsdl11/allinone/standard/document?sap-client=020" target="test_blank"&gt;https://server.domain.com/sap/bc/srt/wsdl/bndg_E10C782F9C42E4F199F3001A64362F30/wsdl11/allinone/standard/document?sap-client=020&lt;/A&gt; ---&amp;gt; System.Net.WebException: There was an error downloading 'https:/server.domain.com/sap/bc/srt/wsdl/bndg_E10C782F9C42E4F199F3001A64362F30/wsdl11/allinone/standard/document?sap-client=020'. ---&amp;gt; System.Net.WebException: The underlying connection was closed: Could not establish trust relationship for the SSL/TLS secure channel. ---&amp;gt; System.Security.Authentication.AuthenticationException: The remote certificate is invalid according to the validation procedure.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/CODE&gt;&lt;/PRE&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;But when I try to import the COMODO certificate via STRUST I get the error &lt;/P&gt;&lt;PRE&gt;&lt;CODE&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;Issuer certificate missing in database:CN=AddTrust External CA Root, OU=AddTrust External&lt;/P&gt;&lt;P&gt;Message no. TRUST057&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/CODE&gt;&lt;/PRE&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;Can anyone tell me the exact steps to add this certificate into SAP. despite goggling around a lot I have not been able to make it work&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Best regards&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 22 Nov 2011 16:03:41 GMT</pubDate>
      <guid>https://community.sap.com/t5/application-development-and-automation-discussions/problem-importing-a-certificate-using-strust/m-p/8321493#M1637328</guid>
      <dc:creator>Sigurdur</dc:creator>
      <dc:date>2011-11-22T16:03:41Z</dc:date>
    </item>
    <item>
      <title>Re: Problem importing a certificate using Strust</title>
      <link>https://community.sap.com/t5/application-development-and-automation-discussions/problem-importing-a-certificate-using-strust/m-p/8321494#M1637329</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;check note 1468249.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cheers&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 22 Nov 2011 20:15:32 GMT</pubDate>
      <guid>https://community.sap.com/t5/application-development-and-automation-discussions/problem-importing-a-certificate-using-strust/m-p/8321494#M1637329</guid>
      <dc:creator>mvoros</dc:creator>
      <dc:date>2011-11-22T20:15:32Z</dc:date>
    </item>
    <item>
      <title>Re: Problem importing a certificate using Strust</title>
      <link>https://community.sap.com/t5/application-development-and-automation-discussions/problem-importing-a-certificate-using-strust/m-p/8321495#M1637330</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am having the same problem trying to import the "issuer certificate" into a database.&lt;/P&gt;&lt;P&gt;Here is what I have been doing so far:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1. I generated a PSE.&lt;/P&gt;&lt;P&gt;2. I made a certificate request.&lt;/P&gt;&lt;P&gt;3. I ordered the new certificate from the Thawte.&lt;/P&gt;&lt;P&gt;4. I imported the certificate response of Thawte.&lt;/P&gt;&lt;P&gt;&amp;nbsp; a. If I import the certificate response to the "own certificate" import button "Import Certification Respond", then an error occurs: "Issuer certificate missing in database:CN=thawte Extended Validation SSL CA, OU=Terms of"&lt;/P&gt;&lt;P&gt;&amp;nbsp; b. I can only import "certificate" section under "Import certification" and add to Certification list. However I doubt that this is the correct way.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I tried following the note 1468249 and I have a question.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The three certificates, that I put to the Certification box are:&lt;/P&gt;&lt;P&gt;1. "Import Certification Respond" - respond to the certificate that I order from Thawte.&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;2. Thawte root certification: &lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="https://www.thawte.com/roots/thawte_Primary_Root_CA.pem"&gt;https://www.thawte.com/roots/thawte_Primary_Root_CA.pem&lt;/A&gt;&lt;SPAN&gt;.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;3. What is the intermediate certification? I have no knowledge about it.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I would be grateful if somebody could explain what the intermediate certificate is.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Best regards&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 03 Apr 2013 16:26:14 GMT</pubDate>
      <guid>https://community.sap.com/t5/application-development-and-automation-discussions/problem-importing-a-certificate-using-strust/m-p/8321495#M1637330</guid>
      <dc:creator>Former Member</dc:creator>
      <dc:date>2013-04-03T16:26:14Z</dc:date>
    </item>
    <item>
      <title>Re: Problem importing a certificate using Strust</title>
      <link>https://community.sap.com/t5/application-development-and-automation-discussions/problem-importing-a-certificate-using-strust/m-p/8321496#M1637331</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;An intermediate certificate is something between the authoritative CA root and the one used to sign your certificate. Simply open the certificate provided by Thawte in a browser and see the certificate chain. The more levels there are in the three, the more likely you have a intermediate certificate. SAP might not be even aware of the new CA root certificates used by Thawte so as long as you import all certificates used in the chain, you should be fine.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 03 Apr 2013 17:48:47 GMT</pubDate>
      <guid>https://community.sap.com/t5/application-development-and-automation-discussions/problem-importing-a-certificate-using-strust/m-p/8321496#M1637331</guid>
      <dc:creator>Former Member</dc:creator>
      <dc:date>2013-04-03T17:48:47Z</dc:date>
    </item>
    <item>
      <title>Re: Problem importing a certificate using Strust</title>
      <link>https://community.sap.com/t5/application-development-and-automation-discussions/problem-importing-a-certificate-using-strust/m-p/8321497#M1637332</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Make sure you have the latest patch level of the ICM server i.e the latest kernel patch&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;also if there is an intermediate certificate, you need to chain them into the same file, a good way to do that is to view the certificate using a browser and export it from there in one file.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 04 Apr 2013 08:59:25 GMT</pubDate>
      <guid>https://community.sap.com/t5/application-development-and-automation-discussions/problem-importing-a-certificate-using-strust/m-p/8321497#M1637332</guid>
      <dc:creator>Sigurdur</dc:creator>
      <dc:date>2013-04-04T08:59:25Z</dc:date>
    </item>
    <item>
      <title>Re: Problem importing a certificate using Strust</title>
      <link>https://community.sap.com/t5/application-development-and-automation-discussions/problem-importing-a-certificate-using-strust/m-p/8321498#M1637333</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thank you that replay.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It’s not working.&lt;/P&gt;&lt;P&gt;I have latest Kernel verson: 7.21 patch 100 and SAP ECC 6 EHP5. OS: Linux&lt;/P&gt;&lt;P&gt;Certificate respond is in me email&lt;/P&gt;&lt;P&gt;CA root certificate: &lt;A href="https://www.thawte.com/roots"&gt;https://www.thawte.com/roots&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Intermeediate certificate: &lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="https://search.thawte.com/support/ssl-digital-certificates/index?page=content&amp;amp;actp=CROSSLINK&amp;amp;id=AR1371"&gt;https://search.thawte.com/support/ssl-digital-certificates/index?page=content&amp;amp;actp=CROSSLINK&amp;amp;id=AR1371&lt;/A&gt;&lt;/P&gt;&lt;P&gt;If I import certificates to certificate list through button „2“ then it is OK. Like shown in the Picture:&lt;/P&gt;&lt;P&gt;&lt;IMG class="migrated-image" src="https://community.sap.com/legacyfs/online/storage/attachments/storage/7/jiveimages/201937" width="450" /&gt;&lt;/P&gt;&lt;P&gt;If I import respond certificate from button „1“ then an error occures that issuer certification isn’t in the certification database. If I tried importing SAP certification (sap free test certification), then the&amp;nbsp; import under button „1“ was fine.&lt;/P&gt;&lt;P&gt;I guess that I must import thawte issuer certificate (N=Thawte DV SSL CA, OU=Domain Validated SSL, O="Thawte, Inc.", C=US) to certificates database (certification -&amp;gt; database). SAP Issuer certificate is already in certificate database. Are there any Notes or guide on how to do this? Or it isn’t possible? I have searched in forum and SAP Notes portal, but i haven’t found any Notes or guide.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I could import respond certificate and intermediate certificate to database, but it didn’t work (certification -&amp;gt; database):&lt;/P&gt;&lt;P&gt;&lt;IMG class="migrated-image" src="https://community.sap.com/legacyfs/online/storage/attachments/storage/7/jiveimages/201959" width="450" /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Best regard, Reemet&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 04 Apr 2013 21:18:03 GMT</pubDate>
      <guid>https://community.sap.com/t5/application-development-and-automation-discussions/problem-importing-a-certificate-using-strust/m-p/8321498#M1637333</guid>
      <dc:creator>Former Member</dc:creator>
      <dc:date>2013-04-04T21:18:03Z</dc:date>
    </item>
    <item>
      <title>Re: Problem importing a certificate using Strust</title>
      <link>https://community.sap.com/t5/application-development-and-automation-discussions/problem-importing-a-certificate-using-strust/m-p/8321499#M1637334</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Just import the root Thawte certificate. If it still doesn't work, combine the Thawte root, intermediate and your certificate in one file and import that.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 04 Apr 2013 21:41:17 GMT</pubDate>
      <guid>https://community.sap.com/t5/application-development-and-automation-discussions/problem-importing-a-certificate-using-strust/m-p/8321499#M1637334</guid>
      <dc:creator>Former Member</dc:creator>
      <dc:date>2013-04-04T21:41:17Z</dc:date>
    </item>
    <item>
      <title>Re: Problem importing a certificate using Strust</title>
      <link>https://community.sap.com/t5/application-development-and-automation-discussions/problem-importing-a-certificate-using-strust/m-p/8321500#M1637335</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Hi&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It work, thanks :-). Sorry for the confusement.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Reemet&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 15 Apr 2013 07:07:54 GMT</pubDate>
      <guid>https://community.sap.com/t5/application-development-and-automation-discussions/problem-importing-a-certificate-using-strust/m-p/8321500#M1637335</guid>
      <dc:creator>Former Member</dc:creator>
      <dc:date>2013-04-15T07:07:54Z</dc:date>
    </item>
  </channel>
</rss>

