Step 1: Creating a New Key Storage View
This view is the location where you build and work with the certificates and private
keys that you manage in Key Storage.
- Call the SAP NetWeaver Administrator.
- Choose the Configuration tab.
- Choose the Certificates and Keys link.
- Open the Key Storage tab.
- Choose Create View.
- Specify the keystore view properties:
- Name (Mandatory) - for example, My_keystore_view .
- Description (Optional) - for example, a tutorial keystore
view. .
- PSE image (Optional).
- Finally, choose Create.
Step 2: Generating the New Key and Certificate:
- Select the view - for example, My_keystore_view - from the
Key Storage Views.
- In the View Entries tab, choose
Create.
- Define the settings for the new entry.
- In the Entry Name field, specify the name of the newly
generated keypair.
- Choose the RSA certificate algorithm from the
Algorithm.
- Leave the default certificate key length in Key
Length.
- Specify a certificate validity period in the Valid
From and Valid To fields.
Note
The date must be in the format mm/dd/yyyy .
- Choose Next.
- Specify the properties of the certificate:
- countryName - specify your country two-letter code. For example:
US .
- commonName - specify a common name for the certificate. For example:
my_cert .
- Choose Next.
- Do not change the settings here. Choose Next.
- Check your settings and choose Finish.
You have successfully generated a new
keypair entry in Key Storage. You can see the generated key and certificate in the
Details of entry <name> view.
Step 3: If you want to sign the certificate with a CA, export the certificate
to the file system as a certificate signing request (CSR).
- Choose the newly generated private key entry from the View
Entries list.
- Choose Generate CSR Request button.
- As a format, choose Base64 PKCS#10.
- Download and save your file.
Step 4: Send the file to a CA for signing.
Step 5: Import the received certificate signing response to the same private
key entry by choosing the Import CSR Response
button.