Show TOC

Authentication at HTTP Transport LevelLocate this document in the navigation structure

If you use authentication at HTTP transport level for Web services, the authentication data is contained in the HTTP header. With this approach, the authentication mechanisms for consuming and providing WS for SAP NetWeaver components are based on the authentication infrastructure for Web-based access over HTTP.

Authentication at HTTP transport level allows you to use point-to-point security and authentication that was designed for the client/server connection pattern for Web-based access over the HTTP connection protocol. Authentication at HTTP transport level for SAP NetWeaver uses the same connection channel for the access and authentication infrastructure as for Web-based access, and similar security aspects therefore also apply.

The table below provides an overview of the authentication and SSO mechanisms that you can use for authentication at HTTP transport level for providing and consuming Web services on SAP NetWeaver Application Server.

  • Standard Authentication (User ID and Password)

  • X.509 Certificates

  • Logon Tickets