Thursday, 12 June 2014

Expiry of Saprouter Certificate


Backup old copy of pse file:

D:\saprouter\usr\sap\local.pse
 
C:\Users\sm1adm\sec\local.pse
 
Go to the http://service.sap.com/saprouter-sncadd

Click “Apply Now”

 

   
Copy & Paste the following highlighted text and use it as the [Distinguished name] parameter in the sapgenpse program running on your SAProuter to create the Personal Security Environment (PSE) and Certificate Signing Request (CSR).






In Server Pop_saprouter,

D:\usr\sap\saprouter\nt-x86_64>

sapgenpse gen_pse -p local.pse "CN=Pop_saprouter, OU=0000299200, OU=SAProuter, O=SAP, C=DE "

Please enter PIN: <enter>

Please reenter PIN:<enter>

PKCS#10 certificate request for "C:\Users\sm1adm\sec\local.pse":






Copy the Certificate Request generated with sapgenpse from the text file.

 
Insert the Certificate Request in the following text field.

 
Choose Request Certificate.


 


Copy the certificate to D:\usr\sap\saprouter\nt-x86_64\cert.txt

D:\saprouter\nt-x86_64>sapgenpse import_own_cert -p local.pse -c " D:\usr\sap\saprouter\nt-x86_64\cert.txt "

Please enter PIN:

CA-Response successfully imported into PSE "C:\Users\sm1adm\sec\local.pse"


To verify:

D:\saprouter\nt-x86_64>sapgenpse get_my_name -n validity SSO for USER "sm1adm"
                with PSE file "C:\Users\sm1adm\sec\local.pse"

Validity  -  NotBefore:   Mon Jun 06 16:30:49 2011 (110606083049Z)
                                NotAfter:   Wed Jun 06 16:30:49 2012 (120606083049Z)

Copy the files to d:\saprouter\usr\sap

Verify connection in SM59 SAPOSS
 



No comments:

Post a Comment