cancel
Showing results for 
Search instead for 
Did you mean: 
Read only

Principal propagation through AWS Application Load Balancer (ALB)

SAPSupport
Employee
Employee
0 Kudos
613

Hello,

Can you please help in answering the following questions.

  1. The prerequisites mention that for identity propagation, mutual authentication (mTLS) is mandatory, then how is the case 1 of SAP note 3482634 applicable when mtls is disabled on the load balancer.
  2. "As per SAP note 3482634, If SAP Cloud Connector version is lower than 2.17.0, we need to disable ECDHE, DHE ciphersuites using property jdk.tls.disabledAlgorithms in file $JAVA_HOME/jre/lib/security/java.security (on unix/linux). Can you please help me understand why this is required?" 

------------------------------------------------------------------------------------------------------------------------------------------------
Learn more about the SAP Support user and program here.

Accepted Solutions (1)

Accepted Solutions (1)

SAPSupport
Employee
Employee
0 Kudos

Hello,

Can you please help in answering the following questions.

  1. The prerequisites mention that for identity propagation, mutual authentication (mTLS) is mandatory, then how is the case 1 of SAP note 3482634 applicable when mtls is disabled on the load balancer.
  2. "As per SAP note 3482634, If SAP Cloud Connector version is lower than 2.17.0, we need to disable ECDHE, DHE ciphersuites using property jdk.tls.disabledAlgorithms in file $JAVA_HOME/jre/lib/security/java.security (on unix/linux). Can you please help me understand why this is required?" 

Answers (0)