SAP NetWeaver Process Integration Security GuideLocate this document in the navigation structure

Use

About This Guide

This security guide explains the security features of SAP NetWeaver Process Integration (SAP NetWeaver PI) and recommends how to apply these features to protect data and to maximize the confidentiality of data that passes through a PI landscape.

The security guide

  • describes recommended deployment scenarios

  • explains the data protection options offered by each component

  • contains a description of how to configure each component for secure communication

The security guide lists the tools that can be used to configure the various security features, but does not include detailed instructions on how to use these tools. However, more detailed information can be accessed via links.

Target Groups

  • Technical consultants

  • System administrators

Security guides are not only relevant for a certain phase of the software life cycle, but provide information that is relevant for all time frames.

Why Is Security Necessary?

SAP NetWeaver PI facilitates the integration of business processes that span different departments, organizations, or companies. Communication between the involved communication partners is accomplished by the exchange of XML messages. The messages contain the business data exchanged between the systems involved in an integration scenario.

As the central infrastructure for exchanging business documents, PI has to make sure that the involved processes can be executed in a secure manner. Particular security requirements have to be considered if business partners communicate over the Internet.

XML messages may contain confidential business data. To protect them against eavesdropping and unauthorized access, the communication lines as well as the storage locations of XML messages need to be made secure.

In addition to the business data exchanged using PI, the various components of PI need to communicate with each other on a technical level to keep the infrastructure running. Security requirements apply to these technical communications as well, because confidential information such as user names and passwords may have to be sent or stored, or both.

Installation Options

There are different installation options for SAP NetWeaver PI.

The standard installation of SAP NetWeaver PI provides the complete functional range of SAP NetWeaver PI and is technically based on AS ABAP and AS Java. Besides the standard installation, there is an additional installation option, the Advanced Adapter Engine Extended (AEX), that offers the mediation capabilities of the Advanced Adapter Engine and is based on AS Java only.

More information: Installation and Connectivity Options

This guide provides the security-relevant information related to the complete functional range of SAP NetWeaver PI. When there are features that don't apply for an AEX installation, it is mentioned in the corresponding section of the guide.

Related Information

For an introduction into the main procedures and key concepts relevant for SAP NetWeaver PI, see SAP NetWeaver Process IntegrationSAP NetWeaver Process Integration .