When you log on with a client certificate, you can use an X.509 certificate.


  • The appropriate header field is set.

  • The connection for HTTPS is configured.

  • The SSL certificate exists


You can use a client certificate to check logons in two different ways:

  • As part of the standard logon order or an alternative logon order (if selected)

  • As the only logon check (if the SSL Certificate Required option is selected)


If you only want logons for services or services nodes to be performed with a client certificate, proceed as follows:

  1. In transaction SICF, double-click the required service or service node.

  2. Choose Change.

  3. Choose Logon Data.

  4. In the Logon Procedure field, enter the option Mandatory Using SSL Certificate.

    If you make settings in a service node, this data is passed on to all services under this node, unless different data has been entered for them.

  5. Under Service Data/Security Requirements, select the SSL option.

  6. Save your entries with Save.