Creating Security Profiles to Enable Mutual Authentication for SAP

Create security profiles and associate them with X.509 server certificates that can be used to establish secure connections between SAP Mobile Server and the SAP EIS.

Prerequisites
Task

To secure connections, create two new security profiles: one for the SAP gateway and one for SAP Mobile Server.

  1. In the SAP Control Center navigation pane, click Configuration.
  2. From the General tab, click SSL Configuration.
  3. Select <ADD NEW SECURITY PROFILE> and create a security profile for SAP servers:
    • Security profile name – for example, TechnicalUser for NetWeaver/DOE connections or Proxy for SAP Gateway connections.
    • Certificate alias – the case-sensitive certificate alias you defined when you imported the certificate into the keystore. For example, doetech, proxy (or whatever value you set the alias to when importing the certificate).
    • Mutual SSL – true
  4. Select <ADD NEW SECURITY PROFILE> and create an SAP Mobile Server security profile:
    • Security profile name – for example, SUPServer.
    • Certificate alias – SUP (or whatever value you set the alias to when importing the certificate).
    • Mutual SSL – true.
  5. Restart SAP Mobile Server.