Show TOC

Procedure documentationConfiguring a Trust Relationship for SAML Token Profiles Without Logon Ticket Configuration Locate this document in the navigation structure

 

If you do not want to use logon tickets in your system landscape, you need to manually configure the trust relationship between the systems and exchange the certificates.

Prerequisites

  • The X.509 client certificates for the WS Security PSEs have been signed by a Certification Authority, so that encryption can be used. The certificate contains the CA v3 extension Subject Key Identifier.

Procedure

  1. Export the WS provider system certificate.

    More information:

  2. Import the WS provider system certificate into the WS consumer system.

  3. Export the WS consumer system certificate.

    More information:

  4. Import the WS consumer system certificate into the WS provider system.

  5. Include the imported certificates in the access control lists of systems, if necessary