Show TOC

Creating PSEs and Maintaining the PSE InfrastructureLocate this document in the navigation structure

Use the functions described below to maintain the PSE infrastructure, which includes creating, replacing, or deleting the various PSEs, and checking their status.

Prerequisites

The PSE is one of the following:

  • System PSE
  • SNC PSE (if the SAP Cryptographic Library is used as the security product, see SAP Note 1848999 Information published on SAP site)
  • SSL server PSE (if the SAP Cryptographic Library is used as the security product)
  • SSL client PSE (if the SAP Cryptographic Library is used as the security product)
  • WS-Security PSE (if the SAP Cryptographic Library is used as the security product)
  • S/MIME identity PSE (if the SAP Cryptographic Library is used as the security product)
  • File PSE
  • SSF application PSE (if the SAP Cryptographic Library is used as the security product)
Procedure

To access the trust manager, use the transaction STRUST. The following functions for maintaining the PSE infrastructure are then available from the Trust Manager screen.

Note

The context menu (right mouse button) only shows the functions that are active for the PSE that you select.

Function Choose What you should know

Check the status of a single PSE

Context menu: Check

This function only applies to PSEs that are stored in the database and distributed to the application servers.

The PSE node must be expanded to be checked. Expanding the node also automatically initiates the check.

For more information, see Checking the Local Status of Distributed PSEs.

Create a PSE

Context menu: Create

This function creates a PSE and initiates distribution (if applicable).

See also Creating or Replacing a PSE.

Distribute a PSE

Context menu: Distribute

This function distributes the selected PSE to the system's application servers. Depending on the PSE type, the system distributes either a single PSE to all servers (for example, the system PSE), or it distributes a server-dependent PSE (the SSL server PSE).

Replace a PSE

Context menu: Replace

This function generates a new PSE and distributes it automatically to the servers.

Delete a PSE

Context menu: Delete

If the PSE is stored in the database and distributed, then the local copies of the PSE are also deleted.

Change PSEs

Context menu: Change

For the SSL server PSE only:

  • Create new PSEs or assign existing PSEs on individual servers where a PSE is missing (for example, if you have installed a new application server for the system).
  • Change the current configuration (for example, reassign which servers receive individual PSEs and which receive the default PSE). 

Import a PSE

Menu: Start of the navigation path PSE Next navigation step Import End of the navigation path

Import a PSE from the file system.

Export a PSE

Menu: Start of the navigation path PSE  Next navigation step Export End of the navigation path

Export a PSE to the file system.

Save a PSE as a different PSE

Menu: Start of the navigation path PSE Next navigation step Save As... End of the navigation path

You can save a PSE as:

  • The system PSE
  • An SSF application PSE
  • A file PSE (export)

Check the status of all local PSEs (for all expanded nodes)

Menu: Start of the navigation path PSE  Next navigation step Check All PSEs End of the navigation path

This function also only applies to PSEs that are stored in the database and distributed to the application servers.

For more information, see Checking the Local Status of Distributed PSEs.

Distribute all PSEs

Menu: Start of the navigation path PSE Next navigation step Distribute All PSEs End of the navigation path

This function distributes all of the PSEs to the system's application servers.