Using the SAP Cryptographic Library for SNC
Scenarios
Scenario 1: Using a Single PSE for ALL Components
Scenario 2: Using Individual PSEs for Components
Configuring the Use of the SAP Cryptographic Library for SNC
The SAP Cryptographic Library Installation Package
Recommended Locations of Files
Configuring SNC for Using the SAPCRYPTOLIB on the SAP Web AS
Installing the SAP Cryptographic Library on the SAP Web AS
Creating the SNC PSE
Importing the SNC PSE
Exporting the SNC PSE
Exchanging Public-Key Certificates Starting on the SAP Web AS
Exporting the SAP Web AS's Public-Key Certificate
Importing Public-Key Certificates on the SAP Web AS
Connection-Specific Configurations
Making the Access Control List Entries on the Application Server
Setting the Profile Parameters
Configuring SNC for Using the SAPCRYPTOLIB on the AGate
Installing the SAP Cryptographic Library on the AGate
Loading the SAP Cryptographic Library on the AGate
Creating a PSE on the AGate
Installing a PSE on the AGate
Creating Credentials for the AGate
Exporting the AGate's PSE
Exchanging Public-Key Certificates Starting on the AGate
Exporting the AGate's Public-Key Certificate
Importing Public-Key Certificates on the AGate
Configuring SNC for the Connection to the Application Server
Checking the SNC Configuration on the Application Server
Specifying the Application Server’s SNC Information on the AGate
Testing the Connection
Configuring SNC for Using the SAPCRPYTOLIB Using SAPGENPSE
Installing the SAP Cryptographic Library on an Arbitrary Server
Creating a PSE for the Server Using SAPGENPSE
Creating the Server's Credentials Using SAPGENPSE
Checking the Application Server's User (Windows)
Checking the AGate's User (Windows)
Checking the WGate's User (Windows)
Exchanging Public-Key Certificates
Exporting the Server's Certificate Using SAPGENPSE
Maintaining the Server's Certificate List Using SAPGENPSE
Example: Exchanging Public-Key Certificates
Connection-Specific Configurations
Additional Functions
Deleting the Server's Credentials
Changing the PIN
Renewing the Server's Certificate
The Configuration Tool's Generic Command Line Options