cancel
Showing results for 
Search instead for 
Did you mean: 
Read only

Configuration steps for JavaScript Web Client on Secure Login Server

asif_rahmetulla
Participant
2,441

Hello all,

We are trying to configure JavaScript Web Client such that it can redirect to a web service in backend SAP system after getting authenticated and issued X.509 certificate using Secure Login.

The steps described in section Providing X.509 Certificates to Secure Login Client Using JavaScript Web Client | SAP Help Portal, of SAP Single Sign-On implementation guide were followed, however, we are looking for blog that would describe the configuration steps clearly.

Appreciate your assistance

Regards,

Asif

View Entire Topic
asif_rahmetulla
Participant

Hello Tobias,

Thank you for detailed explanation! We followed your recommendation as suggested but still getting prompted for credentials be the backend system.

Questions:

1- Is there a way we can troubleshoot what could be causing this to not work?

Other observations:

1- We are using Microsoft Edge as browser and getting prompted for credentials twice. After the first login prompt the second authentication form reads "secure login web client". Why there are two login prompts and is there a way we can avoid the first one? This does not happen in Chrome.

2- After the successful login, the browser shows list of certificate to choose for accessing backend. Can this be suppressed and use the certificate generated by the web client profile automatically?

3- Activating the parameter login/certificate_mapping_rulebased for certificate based mapping, will it impact with any of the existing authentication for web application access via enterprise portal etc.,?

Regards,

Asif

0 Likes

Hi Asif,

I am facing the same challenge now.

  1. I log in using the web adapter profile in the browser.
  2. The SLC logs in successfully then.
  3. The browser redirects me to the backend (OData).
  4. It displays a list of certificates where I can choose one. After choosing a cert, I get access to the backend.

How can I bypass step 4? I mean, it should be done automatically by the adapter profile I logged in to.

It seems you have successfully implemented this. Could you kindly help me out? 

Thanks a lot!

Hikmat