Content Server, Certificates error

Hello.
I have an AS ABAP and Content Server.
On the certificates tab (t-code CSADMIN), clicked "Send Certificates" button error occured
Error message : HTTP error : 500 Internal Server Error
SsfCreateProfile error while creating
/sapdb/home/nhccs/security/Z_T_KIM.pse rc=24
Another questions :
  Q1. Creating a repository, I might use IP address or hostname for HTTP Server?
  Q2. (t-code CSADMIN)Setting tab, the first field "Content Storage Host". I want to user my content server to store contents so that I input the IP address instead of "localhost(default value)", is it right?
Thank you.

Database and Web server is alive.
Please see the my error message above.
Error message : HTTP error : 500 Internal Server Error
SsfCreateProfile error while creating
/sapdb/home/nhccs/security/Z_T_KIM.pse rc=24
Also I hope someone answer to my other questions.
Another questions :
Q1. Creating a repository, I might use IP address or hostname for HTTP Server?
Q2. (t-code CSADMIN)Setting tab, the first field "Content Storage Host". I want to user my content server to store contents so that I input the IP address instead of "localhost(default value)", is it right?
Thank you in advance.

Similar Messages

  • Content server certificate verification

    Hello, everybody,
    we would like to use the proxy server as an HTTP-to-HTTPS converter for around 30 URLs/destination servers in a configuration as follows:
    clients (actually another proxy)
    --->HTTP---> web proxy
    --->HTTPS--> firewall
    --->Internet
    We added the forward (http-->https) and reverse (https-->http) mappings in the web proxy already, and they work.
    I'd like to know which certificate/key file is for client requests (not used here, only HTTP), and which is for the outgoing HTTPS requests for content servers, and how exactly content server certificate checking can be manipulated.
    There are:
    (a) a key file in magnus.conf
    (b) a cert database in magnus.conf
    (c) a security setting (on/off) in magnus.conf
    (d) a key file in the Init statement in the obj.conf
    (e) a cert file in the Init statement in the obj.conf
    (f) a security setting (on/off) in the Init statement in the obj.conf
    ...but which is for what?
    The admin document (which I have read up and down) mentions "security" and "encryption", but IMHO fails to state whether the terms refer to incoming requests (which I assume), and which refer to outgoing requests.
    So in more detail:
    1) If I generate a key and put a corresponding certificate into a key file, what is the effect if I mention this file in (a) or (d) above, resp.? Do these entries have to be the same (i.e., do they have to mention the same file)?
    2) In (1), for which connection does the certificate/key apply: to requests incoming from the clients (if HTTPS/SSL were used there), acting as a server certificate, or as client certificate for outgoing requests, or both?
    3) The certificate database in (b) and (e), resp., is it for verifying the client certificates in incoming requests (which is often mentioned), for verifying the content server certificates in outgoing requests (which is hardly ever mentioned), or both? I need to verify the content server certificates, and some of them are issued by strange or own CAs, so I need to add a few CA certificates.
    4) Do I have to add the CA certificates as chain certificates or as CA certificates? "CA certificates" would make sense to me (after all, they are CA certificates), but those are apparently only for client certificate verification, so I added them as chain certificates (a chain of a single element...). Strange that if I click "Do not trust", a certificate that was earlier trusted for client certs is now "only" valid as CA certificate -- as if one was somehow "less" than the other.
    5) With an Equifax server certificate on a certain host, I get a message that the content server allegedly refuses to respond to the connection or may be highly loaded. Using openssl, I can connect from the same host to the content server without problems, in SSL2, SSL3, TLSv1. It makes no difference if the Equifax CA certificate is in the cert database or not, or if "Security" is on or off, or if "Initialize certs only" is checked. Using ssldump, I see that the proxy gives a "bad_certificate" fatal alert to the server. (The list of supported ciphers is a lot shorter with the proxy than with openssl, BTW.) Happens with at least two content servers, both of which can be contacted without problems via openssl, and the server certificates of which can be verified with their corresponding CA certificates I have available.
    6) What does "Security on", "off" and "Initialize certs only" actually do? (...apart from putting a line into obj.conf...)."Security" is such a broad term used in (c) and (f), but does it refer to the client or the content server side? (Yes, I know that SSL provides authentication and encryption, I'm just not sure about how to configure what on the proxy software.) Guess I'm repeating myself here ;-)
    7) I read that there is a tool "certadmin". Is it provided with some other Sun software? (I think with the portal server, right?) I would love to get hold of a tool for really looking into the cert databases (not using the admin server functionality). I also heard of another tool, but don't recall its exact name -- something like idscertutil, or some other *certutil. Does this ring a bell with anybody?
    I'm using proxy 3.6 SP6.
    Any insights are welcome.
    Thanks for your help,
    Stefan

    Gerd,
    Don't know which version of fetchmail comes with 10.3.x and 10.4.x respectively.
    However, older versions would check for an SSL certificate in an opportunistic way and still go ahead if there wasn't one. More recent versions will interrupt comunications.
    In other words, since you do not use SSL you must disable it in fetchmail. If I remember correctly (not 100% sure), you must add:
    sslproto ''
    to .fetchmailrc
    Alex

  • I am getting a Invalid Server Certificate error when I go to secure web sites.

    I am getting an Invalid Server Certificate error in Safari when I go to https web sites. I am running Snow Leopard 10.6.8. My time and date are correct on my computer. I have no problem accessing non-https web sites.
    Any suggestions on why this is happening are appreciated.

    Launch the Activity Monitor application by entering the first few letters of its name into a Spotlight search. Select “All Processes” from the popup menu in the toolbar, if not already selected. Enter "ocspd" (without the quotes) in the "Filter" text field. Does a process with that name appear in the table below?
    If not, see this thread:
    ocspd crashing after 10.6.8 update on...: Apple Support Communities

  • HT201320 since upgrade to iOS 6.1.2 On Ipad i am getting email server certificate errors

    since upgrade to iOS 6.1.2 On Ipad i am getting email server certificate errors
    Is there a fix for this?

    Reach out to your provider. They would be responsible for maintaining any certificates associated with the account.

  • Wifi Sync "server certificate error"

    When I try to sync my music it says "server certificate error" How do I do this?
    I have a 9360 curve
    And I've done a software update

    Hey JenniiYiadom,
    Welcome to the BlackBerry Support Community Forums.
    Thanks for the question.
    Follow the steps in this KB article to resolve the issue: www.blackberry.com/btsc/KB15204
    Let me know if you have any more questions.
    Cheers.
    -ViciousFerret
    Come follow your BlackBerry Technical Team on Twitter! @BlackBerryHelp
    Be sure to click Like! for those who have helped you.
    Click  Accept as Solution for posts that have solved your issue(s)!

  • Content server config - error?

    While creating content repository in OAC0,after filling all necessary fileds and trying to send the certificate,the below mentioned error occurs.
    <b>Error in HTTP access : If_HTTP_client>receive 1
    ICM_HTTP_CONNECTION_FAILED</b>.
    Help me how to rectify...
    Regards,
    John.

    Hi John,
    if you don't see any errors around the same point in time in the MaxDB / SAP DB files dbm.prt and/or knldiag.err (both found in the Rundirectory, normally <drive>\sapdb\data\wrk\<SID> on Windows systems), then it's very probably not a MaxDB / SAP DB issue, but a general Content Server issue. In that case, this forum (MaxDB/liveCache) would be the wrong one.
    So, please let me know if you find something in the mentioned files.
    Regards,
    Roland

  • Content Server HTTP Error 500

    Hi
    We've installed Content Server 6.40 according to installation guide SAP Content Server for windows (SAP Netweaver 2004s)
    We've created a repository via tcode CSADMIN.
    We see server status running when we use url
    http://192.168.100.121:1090/ContentServer/ContentServer.dll?serverInfo
    When we try to test content repository via report RSCMST and after report RSCMSTH0 we get error
    x-errordescription: "ContRep ZMYREPOSITORY or Storage entry not defined"
    And also we see the error
    HTTP error: 500 (Internal Server Error)  "ContRep ZMYREPOSITORY or Storage entry not defined"
    at tcode SCMSMO
    How can we correct this error?
    Best Regards...

    Hi Hande,
                         It seems your installation is completed but not configuration. Have you defined content repository ZMYREPOSITORY with tcode SCMSMO
    Regards,
    Hari.

  • DMS Content Server installation error

    Dear all:
    We're now installing our SAP Content Server 640 for our DMS solution. The environment is Windows 2003 x64 Enterprise Edition SP2, SAP Content Server 640, and MaxDB 7.6. In the installtion initial screen, we choose the option to install the content server, the system reports an error even before it starts the installtaion process. The error message is
    "FCO-00011  The step changeUserInstall with step key |SAP_CONTENT_SERVER|ind|ind|ind|ind|0|0|Preinstall|ind|ind|ind|ind|0|0|changeUserInstall was executed with status ERROR " in step "initial password manager".
    Please help.

    hi
    download patch for "SAPInst.exe" from Note 929929
    May be it will help you.
    regards,
    nitin
    award point if useful

  • Content server communication error

    Hi,
    In an integration scenario using XI we need to send a scanned invoice (image) to a content server.
    Ideally, the call to the content server would be done directly from XI, however, the call to the content server requires query string arguments which is not supported by XI’s HTTP adapter. Therefore the content is first sent to R/3 using proxy communication and then the actual HTTP call to the content server is handled by the R/3 system.
    The content server is quite unstable which results in a vast amount of error messages as the communication to the content server is synchronous.  We want XI to recover gracefully when stopping and restarting the content server for whatever reason.
    The content server is version 6.30.0046 and runs on Win2000 Enterprise, IIS 5.0. Our R/3 system is 4.7 Enterprise, WAS 6.20, BASIS support package level 55 and PI_BASIS support package level 10.
    Has anyone experienced similar problems? Did you come up with any good solutions?
    Best Regards,
    Teddy K.

    Hi,
    In an integration scenario using XI we need to send a scanned invoice (image) to a content server.
    Ideally, the call to the content server would be done directly from XI, however, the call to the content server requires query string arguments which is not supported by XI’s HTTP adapter. Therefore the content is first sent to R/3 using proxy communication and then the actual HTTP call to the content server is handled by the R/3 system.
    The content server is quite unstable which results in a vast amount of error messages as the communication to the content server is synchronous.  We want XI to recover gracefully when stopping and restarting the content server for whatever reason.
    The content server is version 6.30.0046 and runs on Win2000 Enterprise, IIS 5.0. Our R/3 system is 4.7 Enterprise, WAS 6.20, BASIS support package level 55 and PI_BASIS support package level 10.
    Has anyone experienced similar problems? Did you come up with any good solutions?
    Best Regards,
    Teddy K.

  • Content server 401 error while creating content repository

    Hi All
    I have installed Content server 640 on SUSE Linux 10 SP2 without selecting the SAP DB option as i wanted to store all my files on FILE SYSTEM.
    My filesystem is as below
    ======================================================================================================
    kmdqp:~ # df -h
    Filesystem Size Used Avail Use% Mounted on
    /dev/sda1 9.9G 3.1G 6.3G 34% /
    udev 18G 88K 18G 1% /dev
    /dev/sda3 286G 260M 271G 1% /usr/sap
    ======================================================================================================
    kmdqp:/usr/sap # ls -ltr
    total 36
    drwx------ 2 root root 16384 Nov 18 23:47 lost+found
    drwxr-xr-x 2 root root 4096 Nov 19 03:12 dmscs
    drwxr-xr-x 2 root root 4096 Nov 19 03:18 dmscsc
    drwxr-xr-x 9 root root 4096 Nov 19 15:17 apache_1.3.27
    drwxrwxrwx 14 dqpcs sapsys 4096 Nov 19 22:55 dqpcs
    drwxrwxrwx 14 dqpcs sapsys 4096 Nov 19 22:55 dqpcsc
    ====================================================================================================
    Now my question are
    1) DO i need to install SAPDB(MaxDB), it is mandatory or can i store my documents at the file sytem level without the SAP DB.
    2) When i run the tx-code CSadmin and goto any TAB it asks me for a userid and passwd, i give <sid>cs and <sid>csc user and their respective passwords, but i get the below error
    HTTP error: 401 Authorization Required Bad local password for user dqpcs
    Message no. CMS025
    Diagnosis
    Error in accessing via HTTP
    401 Authorization Required
    Bad local password for user dqpcs
    ======================================================================================================
    Can you please help in this.
    And my dqpcs and dqpcsc users home directory is changed to /usr/sap in the etc/default/useradd file during the installation.
    Can anyone help on this please.
    Thanks and regards
    Prasad K

    Hi
    We have solved the issue by setting the Adminsecurity parameter as o.
    Regards
    Prasad K

  • UCM Content Server Service Error.

    Hi All,
    I'm querying the Content server using the RIDC API as follows:
    setClientObject();
    dataBinder.putLocal("IdcService", "GET_SEARCH_RESULTS");
    dataBinder.putLocal("QueryText","dInDate >= `01/03/10 12:00 AM`");
    dataBinder.putLocal("ResultCount", "1000");
    ServiceResponse response =
    m_client.sendRequest(m_userContext, dataBinder);
    responseDatabinder = response.getResponseAsBinder();
    DataBinder responseData = getSearchResultsServiceCS(queryText);
    int Size= responseData.getResultSet("SearchResults").getRows().size();
    but its throwing an error-stack trace as follows:
    oracle.stellent.ridc.protocol.ServiceException: Unable to retrieve search results. Parsing error at character 9 in query: "( dInDate+%3E%3D+%6001%2F03%2F10+12%3A00+AM%60 )".
         at oracle.stellent.ridc.protocol.ServiceResponse.getResponseAsBinder(ServiceResponse.java:125)
         at oracle.stellent.ridc.protocol.ServiceResponse.getResponseAsBinder(ServiceResponse.java:101)
    I tried to Encode the date using the following line of code :String queryText = URLEncoder.encode("dInDate >= `01/03/10 12:00 AM`",UTF_8); ,but this is also not working ..
    Kindly help me out resolve this asap.
    TIA....

    Did you try this
    dataBinder.putLocal("QueryText","dInDate *\*>= `01/03/10 12:00 AM`");
    Character ">" is not parsed correctly I think.

  • Content Server 5 error

    Hi, can someone help me with this error message below. It is appearing in our pcserr.log. We are using CS 5.02
    Thanks very much.
    Lars
    java.lang.StringIndexOutOfBoundsException: String index out of range: -37776
    at java.lang.String.substring(String.java:1480)
    at com.plumtree.content.interchange.impl.ImageTagParser.parseImageTags(ImageTagParser.java:787)
    at com.plumtree.content.interchange.impl.ImageTagParser.parseDocument(ImageTagParser.java:607)
    at com.plumtree.content.interchange.impl.ImageTagParser.fixPathReferences(ImageTagParser.java:567)
    at com.plumtree.content.publish.base.TargetedPublisher.publish(TargetedPublisher.java:168)
    at com.plumtree.content.publish.base.TargetedContent.publish(TargetedContent.java:96)
    at com.plumtree.content.publish.LegacyPublisher.publishItem(LegacyPublisher.java:706)
    at com.plumtree.content.publish.LegacyPublisher.publishRelatedItems(LegacyPublisher.java:747)
    at com.plumtree.content.publish.LegacyPublisher.publishItem(LegacyPublisher.java:714)
    at com.plumtree.content.publish.LegacyPublisher.publishItem(LegacyPublisher.java:657)
    at com.plumtree.content.publish.LegacyPublisher.publishFolder(LegacyPublisher.java:618)
    at com.plumtree.content.publish.LegacyPublisher.publishFolder(LegacyPublisher.java:610)
    at com.plumtree.content.publish.LegacyPublisher.publish(LegacyPublisher.java:346)
    at com.plumtree.content.publish.LegacyPublisher.publish(LegacyPublisher.java:166)
    at com.plumtree.content.data.impl.RdbiDirectoryObject.publish(RdbiDirectoryObject.java:1925)
    at com.plumtree.content.data.impl.RdbiDirectoryObject.publish(RdbiDirectoryObject.java:1918)
    at com.plumtree.content.client.http.pcportlets.GeneratedPortlet.commit(GeneratedPortlet.java:82)
    at com.plumtree.content.client.http.content_gadget.PortletClient.executeActions(PortletClient.java:349)
    at com.plumtree.content.client.http.HttpClient.processRequest(HttpClient.java:214)
    at com.plumtree.content.client.http.PortalClient.processRequest(PortalClient.java:149)
    at com.plumtree.content.client.http.HttpClient.getHttpPage(HttpClient.java:161)
    at com.plumtree.content.client.http.PortalClient.getHttpPage(PortalClient.java:104)
    at com.plumtree.content.client.http.content_gadget.PortletClient.getPortletPage(PortletClient.java:131)
    at org.apache.jsp.createGadget_jsp._jspService(createGadget_jsp.java:90)
    at org.apache.jasper.runtime.HttpJspBase.service(HttpJspBase.java:137)
    at javax.servlet.http.HttpServlet.service(HttpServlet.java:853)
    at org.apache.jasper.servlet.JspServletWrapper.service(JspServletWrapper.java:210)
    at org.apache.jasper.servlet.JspServlet.serviceJspFile(JspServlet.java:295)
    at org.apache.jasper.servlet.JspServlet.service(JspServlet.java:241)
    at javax.servlet.http.HttpServlet.service(HttpServlet.java:853)
    at org.apache.catalina.core.ApplicationFilterChain.internalDoFilter(ApplicationFilterChain.java:247)
    at org.apache.catalina.core.ApplicationFilterChain.doFilter(ApplicationFilterChain.java:193)
    at org.apache.catalina.core.StandardWrapperValve.invoke(StandardWrapperValve.java:256)
    at org.apache.catalina.core.StandardPipeline$StandardPipelineValveContext.invokeNext(StandardPipeline.java:643)
    at org.apache.catalina.core.StandardPipeline.invoke(StandardPipeline.java:480)
    at org.apache.catalina.core.ContainerBase.invoke(ContainerBase.java:995)
    at org.apache.catalina.core.StandardContextValve.invoke(StandardContextValve.java:191)
    at org.apache.catalina.core.StandardPipeline$StandardPipelineValveContext.invokeNext(StandardPipeline.java:643)
    at org.apache.catalina.core.StandardPipeline.invoke(StandardPipeline.java:480)
    at org.apache.catalina.core.ContainerBase.invoke(ContainerBase.java:995)
    at org.apache.catalina.core.StandardContext.invoke(StandardContext.java:2416)
    at org.apache.catalina.core.StandardHostValve.invoke(StandardHostValve.java:180)
    at org.apache.catalina.core.StandardPipeline$StandardPipelineValveContext.invokeNext(StandardPipeline.java:643)
    at org.apache.catalina.core.StandardPipeline$StandardPipelineValveContext.invokeNext(StandardPipeline.java:641)
    at org.apache.catalina.valves.ErrorReportValve.invoke(ErrorReportValve.java:172)
    at org.apache.catalina.core.StandardPipeline$StandardPipelineValveContext.invokeNext(StandardPipeline.java:641)
    at org.apache.catalina.core.StandardPipeline.invoke(StandardPipeline.java:480)
    at org.apache.catalina.core.ContainerBase.invoke(ContainerBase.java:995)
    at org.apache.catalina.core.StandardEngineValve.invoke(StandardEngineValve.java:174)
    at org.apache.catalina.core.StandardPipeline$StandardPipelineValveContext.invokeNext(StandardPipeline.java:643)
    at org.apache.catalina.core.StandardPipeline.invoke(StandardPipeline.java:480)
    at org.apache.catalina.core.ContainerBase.invoke(ContainerBase.java:995)
    at org.apache.coyote.tomcat4.CoyoteAdapter.service(CoyoteAdapter.java:223)
    at org.apache.coyote.http11.Http11Processor.process(Http11Processor.java:601)
    at org.apache.coyote.http11.Http11Protocol$Http11ConnectionHandler.processConnection(Http11Protocol.java:392)
    at org.apache.tomcat.util.net.TcpWorkerThread.runIt(PoolTcpEndpoint.java:565)
    at org.apache.tomcat.util.threads.ThreadPool$ControlRunnable.run(ThreadPool.java:619)
    at java.lang.Thread.run(Thread.java:536)

    I installed Content Server 5.0.4 over my 5.0.3 installation, uninstalled from Add/Remove Programs, then did a clean install of 5.0.4 and everything works perfectly now.

  • Content Server Access Error

    Hi
    I am using Ecc 6 , windows OS.
    I installed Content Server 6.4.  with MAXDB 7.6
    While configuring .. it throw an error  "
    HTTP error: 401 (unauthorized)  "Permission
    denied: adminContRep&configSet"
    i applied followed notes.
    658442
    514500
    301352
    851146,
    it ask username & password ..
    i gave   username : SAPR3
    password             :  SAP
    but it doesn't work,
    582765  -- >  THIS notes tell abt creation of SAPR3 user.. but  due to exsisting of SAPR3 user .. it gives error...
    -- Lee

    hi,
    i created the repositoy  of Content Server.
    How to upload the document to CS.
    Pls send me the document.
    [email protected]

  • Content Server - HTTP Error 400

    Good morning. I've just installed Apache and Content Server. I've created my Content Repositories in SAP and everything checks out Online in CSADMIN and via SE38 - Report RSCMST.
    However, from the Browser when I enter: http://<hostname>:1090/ContentServer/ContentServer.dll?serverinfo
    I'm getting an HTTP 400 page not found error.
    This is installed on Unix - AIX 5.3 - Content Server Version 6.30
    Apache is working as I get a web page and I get the "Parent" directory when I enter only: http://<hostname>:1090
    Any ideas ?

    Our Content Server is installed on a Standalone system. It's not on the same host as the SAP systems we're connecting to.
    Yes, I'm able to create Content repositories and that's how I have them defined in CSADMIN. I created the CR's in OAC0 and then specified them in CSADMIN and done further configuration to them there. Our users have been able to use the CR defined in CSADMIN to archive data into the Content Server.
      My CDADMIN definition is online, active and working,,, All green lights and being used. So I'm getting my error when I attempt
    to access via http://<ContenServer_Hostname>:1090/ContentServer/ContentServer.dll?serverinfo.
    Here's my CDADMIN definistion for My CR:
    Content Repository: CS
    HTTP Server: sap01dad.<client>.com   This is my Content Server Hostname,,, Not the SAP system where it's defined in CSADMIN
    Port: 1090
    HTTP Script: ContentServer/ContentServer.dll
    Version: 0046

  • Content Server: Connect Error: Connect to Host/Port error: NIECONN_REFUSED

    Hi
    I am monitoring my Content Server on CCMS and I constantly receive the
    following error:
    10.07.2007 15:21:07 Requests ContRep:ZP User:APALACIO HTTP_GET_FILE
    Connect Error: Connect to Host 10.201.1.128 Port 1090 error:
    NIECONN_REFUSED
    That does <b>not</b> mean that the Content Server is not working but those
    messages are <b>constantly appearing</b> and I receive the user complaints.
    Content server info:
    Version: 640
    Build: 16
    pVersion: 0046
    Any help is appreciated, I have no idea of what do I need to check.
    Extra info: I have the same problem on the development platform, and the content server is placed on a diffferent server!! sounds weird !!!
    Regards
    Mario

    Hi
    I am monitoring my Content Server on CCMS and I constantly receive the
    following error:
    10.07.2007 15:21:07 Requests ContRep:ZP User:APALACIO HTTP_GET_FILE
    Connect Error: Connect to Host 10.201.1.128 Port 1090 error:
    NIECONN_REFUSED
    That does <b>not</b> mean that the Content Server is not working but those
    messages are <b>constantly appearing</b> and I receive the user complaints.
    Content server info:
    Version: 640
    Build: 16
    pVersion: 0046
    Any help is appreciated, I have no idea of what do I need to check.
    Extra info: I have the same problem on the development platform, and the content server is placed on a diffferent server!! sounds weird !!!
    Regards
    Mario

Maybe you are looking for