Disabled the SAP authentication on BO

Hi,
I´ve installed the sap integration kit on BO XI3.1 SP3, but the SSO by kerberos isn´t running. I´ve disabled the Sap authentication and the user can login with her windows user id and password.
How can return to use the SSO?
More thanks

Hi,
you have to check both.
You have to write back the settings you entered during the configuration of your WindowsAD setup.
These are Environment related to your Environment. Check the Documentation you used for the configuration.
Regards
-Seb.

Similar Messages

  • Portal: Disable the SAP tool bar and enable a pop up in SAP IAC iview

    Hi Experts,
    My requirement:A user will open the ESS->Bank details iview (which uses the standard transaction PZ03) and would like to edit a record. So, he clicks on the change button and a screen to edit the record comes up. Here, he edits information as required and now decides not to save these changes. Then the user clicks on the back button and a pop up dialog box appears which asks the user if he would like to proceed without saving the changes. Once he clicks on OK, he is taken back to the previous screen. Also, in the iview, the SAP tool bar must be invisible.
    I can achieve the dialog pop up to appear using these ITS parameters:
    ~popups = 1
    ~generateddynpro = 1
    In this case, the SAP menu tool bar is very much visible.
    If I give the ITS service parameters as
    ~webgui = 1
    ~webgui_simple_toolbar = 1
    ~popups = 1
    ~webgui_popups = 1
    Here, I'm able to disable the SAP tool bar but my pop up dialog box does not appear.When I click on back button, I continue to remain on the same screen instead of the pop up dialog box getting opened.
    If I give both ~webgui and ~generated dynpro together, it's not helping either.I cant see the pop up again, but able to disable the tool bar.
    Need some inputs to fix this issue.
    We are on EP 7.0, ECC 6.0 and ESS/MSS 50.4
    Thanks,
    M.Maneesha

    Please keep following parameters in the ITS services and your problem will be resolved.
    Make sure you remove all parameters other than below.
    ~AUTOSCROLL     0
    ~GENERATEDYNPRO     1
    ~LANGUAGE                                                                               
    ~LISTSCROLLING     0
    ~LOGIN                                                                               
    ~PASSWORD                                                                               
    ~POPUPS     1
    ~STYLE     DHTML
    ~TRANSACTION     PZ03
    ~WEBTRANSACTIONTYPE     EWT
    Edited by: Barin Desai on May 11, 2010 6:45 PM

  • Error adding entitlment system entry in the sap authentication

    Hi people,
    I could not add entry in the sap authentication. Every time I try to add entry nothing happens. I press button "New", page is reloaded and in the end I do not see anything in the list "Logical system name".
    There are several strings in the CMS trace log:
    2010/06/04 10:10:19.562|>>| | | 7940|6572|{|||||||||||||||IInfoStore_Impl::queryEx3
    2010/06/04 10:10:19.562|>=| | | 7940|6572|{|||||||||||||||CInfoStoreSubsystem::Query
    2010/06/04 10:10:19.562|>=| | | 7940|6572| |||||||||||||||CInfoStoreSubsystem::Query:[UID=12;USID=33837]  : (proc=false,chk=true,srv=false)
    .\InfoStore.cpp:2942: TraceLog message 30613
    2010/06/04 10:10:19.562|>=|E|X| 7940|6572|}|||||||||||||||CInfoStoreSubsystem::Query: 0
    .\osca_i_impl.cpp:612: TraceLog message 30614
    But I can connect to the same R/3 server via Crystal Reports.
    It seems that BOBJ can not add records into the Oracle database.
    My installation: Win 2k3 x64, Oracle 10.2.0.1, BOBJ ENT XI 3.1 SP3, Integration Kit SAP SP3, sapjco-ntintel-2.1.9.zip

    Thank you, John Mrozek.
    Thank you, Ingo Hilgefort.
    It seems very strange to press "Update" button for adding new entry.
    The problem has been resolved

  • SAP authentication plug-in needs to have been selected during the installation

    Can anyone help me with an issue I have with the SAP authentication setup please. Unfortunately our BI 4.0 SP4 installation was installed without the SAP authentication being selected. On the setup document I have it says that the SAP authentication plug-in needs to have been selected during the installation. Does anyone know if it is possible to set this up retrospectively?
    The document can be found on the following link. Setting up the SAP plug-in - Business Intelligence (BusinessObjects) - SCN Wiki
    Thanks
    Simon

    Hi Simon,
        As Sebastian said, this is a default installation, but you must select the correct one that you need, I guess that Enterprise is the default one.
    Regards

  • Need SAP Authentication option when using the Open document URL methos

    Hi Experts,
            I had published a report into the BO Server. I can able to Login to the CMC & Info view through SAP Authentication. But, when I Try to Open the Report through the Open document or viewrpt URL, I am not getting the SAP option in the Authentication Drop down box. Kindly give me the solution to login through the SAP Authentication In the URL Method. Thanks for your support in advance.
    Thanks & Regards,
    Shiva

    Hi,
    the option has been hidden by default.
    Navigate to <BO_INSTALL_DIR>Tomcat55/webapps/openDocument/WEB-INF
    Open the web.xml file and search for "authentication.visible". Set the parameter from "false" to "true".
    Restart your Tomcat and you should be fine.
    Regards
    -Seb.

  • BO SSO with the SAP front end tool

    Hi ,
    I am trying to go with SSO in the BO 3.0 version but i an facing an error when i am trying to create the ticket .... i am pasting the error and the architecture  of the process kindly help me in this issue....
    Please can we have SSO setup in the following envioronments and applications
    BO Systems : B0S/B0D/B0Q/B0P
    EP Systems: S0E/D0E/Q0E/P0E
    Applications: InfoViewApp /CmcApp
    This is required for complete implementation of  Business Objects security model because SAP users do not have passwords
    Problem Description: (Precise description of problem)
    Setup SSO in the following environments and applications :
    BO Systems : B0S/B0D/B0Q/B0P
    EP Systems: S0E/D0E/Q0E/P0E
    Applications: InfoViewApp /CmcApp
    This is required for complete implementation of Business Objects security model because SAP users do not have passwords
    Analysis:
    SAP side u2013 items already complete:
    - on the SAP side the portal needs to generate tickets for the BI system
    - the BI system needs to trust the Portal
    - the BI system needs to accept SSO tickets
    - all the machines need to be in the same domain
    Installation of the complete items can be confirmed by the presents of portal login ticket at these addresses :
    Several issues needs to be checked in the Business Objects environment:
    - the SAP authentication needs to be configured for the SAP system
    - the web.xml for InfoView needs to use secSAPR3 as default setting for the authentication
    - the default system in the SAP authentication options should be configured to use your SAP BI system
    - the Business Objects system needs to be in the same domain
    Analysis of authorization requirements (Mandatory for programs and tables):
    Solution: (Final solution)
    To complete the SSO implementation in the SAP BO environment, these issues should be completed:
    1):  Test that the SAP portals actually accepts portal login tickets:
    https://epproduction-app.statoil.no/irj/portal
    https://epquality-app.statoil.no/irj/portal
    https://epdevelopment-app.statoil.no/irj/portal
    https://epsandbox-app.statoil.no:56201/irj/portal
    2):  Implement and test the following items:
    - the SAP authentication needs to be configured for the SAP system
    - the web.xml for InfoView needs to use secSAPR3 as default setting for the authentication
    - the default system in the SAP authentication options should be configured to use your SAP BI system
    - the Business Objects system needs to be in the same domain
    3): Check that fully qualified URLu2019s for BO systems calls the sso login:
    - This also should be tested and confirmed working by the basis team (EDB) before the task is completed
    - Comparison with production setup today is required
    - Fully operational SSO setup in Prod can be found at:  http://boxi.statoil.no:8080/InfoViewApp/logon.jsp
    Tomcat implementation
    SSO setup implicates these reconfiguration elements:
    -     Update of web.xml for InfoViewApp and CmcApp in Tomcat :
    This is the correct web.xml setup for SSO (gathered from prod env.):
        <!-- Choose whether to let the user change the CMS name -->
        <!-- If it isn't shown the default System from above will be used -->
        <context-param>
            <param-name>cms.visible</param-name>
            <param-value>true</param-value>
        </context-param>
        <!-- You can specify the default Authentication types here -->
        <!-- secEnterprise, secLDAP, secWinAD, secSAPR3 -->
        <context-param>
            <param-name>authentication.default</param-name>
            <param-value>secSAPR3</param-value>
        </context-param>
        <!-- Choose whether to let the user change the authentication type -->
        <!-- If it isn't shown the default authentication type from above will be used -->
        <context-param>
            <param-name>authentication.visible</param-name>
            <param-value>true</param-value>
        </context-param>
        <!-- The default home page -->
        <context-param>
            <param-name>homepage.default</param-name>
            <param-value>/jsp/listing/home.jsp</param-value>
        </context-param>
        <!-- If the locale preference is disabled (only english languages will be used/allowed) -->
        <context-param>
            <param-name>disable.locale.preference</param-name>
            <param-value>false</param-value>
        </context-param>
        <!-- Set to false to disable Siteminder single sign on. -->
        <context-param>
            <param-name>siteminder.enabled</param-name>
            <param-value>false</param-value>
        </context-param>
        <!-- You can specify the siteminder Authentication type here -->
        <!-- secLDAP, secWinAD -->
        <context-param>
            <param-name>siteminder.authentication</param-name>
            <param-value>secLDAP</param-value>
        </context-param>
        <!-- Set to true to enable Vintela single sign on. -->
        <context-param>
            <param-name>vintela.enabled</param-name>
            <param-value>false</param-value>
        </context-param>
        <!-- Set to true to enable other single sign on. -->
        <context-param>
            <param-name>sso.enabled</param-name>
            <param-value>true</param-value>
        </context-param>
        <!-- Set to false to disable logon with token. -->
        <context-param>
            <param-name>logontoken.enabled</param-name>
            <param-value>true</param-value>
        </context-param>
        <!-- For turning persistent cookies on/off for the logon page.  Defaults to true if this is not present -->
        <context-param>
            <param-name>persistentcookies.enabled</param-name>
            <param-value>true</param-value>
        </context-param>
    Kerberos setup:
    Please see separate attached document in C148946.
    Implementation plan
    1)    Implement SSO on Sandbox server st-tw283, and test in cooperation with Migration BO project and Solution Responsible
    2)    Implement SSO on Dev server st-w1024, and test in cooperation with Migration BO project and Solution Responsible
    3)    Implement SSO on clustered servers Q server st-w1023 and Sanbox server st-tw63, and test in cooperation with Migration BO project and Solution Responsible
    4)    When approved by test group, finish test approval doc and prepare for production environment implementation
    can any one guide me in this since this is critical and if any documents are there pls. forward me i will check them
    Thanks & Regards
    Sanjeevkumar.D.Belagal
    09900084312

    Hi Sanjeev,
    It is kind of very hard to go through all the details you have written.
    You have BO 3.0 and SAP in Back End.
    First you have to install BOBJ
    Then install Integration Kit.
    Then you have to take some steps in SAP BI side such as creating RFC.
    Then you will import your roles into BOBJ by going to CMC.
    After that one you will be able to attain SSO.
    Have you done all? If yes then exactly what error or issue you are getting? Be brief please.
    When you mention any problem mention following.
    What version you have?
    What is in the back end?
    What service Pack and Fix Pack you installed?
    What environment you have?
    What error you are getting and on which step?
    Regards,
    Bashir Awan

  • Error after uninstalling the SAP Integration Kit XI 3.0 on Unix

    Hi all,
    I have uninstalled the SAP Integration Kit XI 3.0 on a single solaris server installation. Uninstall was done exactly as instructed in the manual and everything looked ok.
    Now when I try to go to the login page of CMC or InfoView I get an error:
    type Status report
    message /PartnerPlatformService/service/app/logon.do
    description The requested resource (/PartnerPlatformService/service/app/logon.do) is not available.
    Is the login page trying to look for the SAP authentication page that was removed ?
    Is there some configuration still remaining somewhere that needs to be removed so I get the old login page back ?
    Thanks for ideas, Timo

    Thanks for pointing to the right direction. I changed the tomcat webapps web.xml file parameter and it was enought to start working again.
       <context-param>
            <param-name>config.logon.service.context</param-name>
            <param-value>/PlatformServices</param-value>
        </context-param>

  • Problem in CMC login with SAP authentication type

    Hi,
    We have installed the SAP Integration kit successfully for BO XI R2 & when I logon to CMC i am able to enable the SAP authentication and import the roles from the SAP BW system as well. But when I try to login into CMC using the 'Authentication type' as SAP it doesn't display the textboxes for entering  System ID and Client details. Can you please tell me how to fix this?
    Also I see that the CMC & Infoview authentication type drop down list are not the same. The CMC has the authentication types available as 'SAP,LDAP & Enterprise' where as Infoview has 'Enterprise, LDAP & AD'.
    Is this an issue with the Plugins? do i need to do some settings on the Tomcat ?
    Please help me out in this..
    Thanks in advance!
    Phani.

    Thanks for your update Jac...yes thats correct. Also I had to include authPlugExt.properties file in the tomcat/shared/classes, which i did not include previously. The SAP infoview is working fine now.
    Just one more question, in CMC login doesn't the SAP authentication require sap system & client id as its inputs? (in XI R2). I noticed that I was able to login with SAP user id's (without mentioning system details) , that have been added when I have imported the SAP roles to BO.

  • Configure SAP Authentication in CMC ..

    Hello,
    i ve installed a BO Edge Server and realized after Completion of installation, that i only have Enterprise/AD/ ..etc. SAP Authentication is missing.
    Question:
    How can i install the SAP authentication ??

    perfect .. Thanx ..

  • Impliment SAP Authentication for Translation manager BI 4.0

    Hello Experts,
    We are using SAP Authentication type  to logon and to create the reports.The reports are created now.We would need to have these reports translated using Translation Manager (TM) but they have provided a user name on Enterprise login.
    But when we try to import the reports it is getting failed and giving an error "InitInitilization Java" exception .
    As when the clinet tool TM is opened it is not showing the SAP authentication it has (Enterprise,Windows AD,LDAP,Standalone) and no SAP.
    So can you suggest about how to have the SAP login for TM also.We are using BI 4.0 SP 2.7.Reports are created using BEX as back end.
    thanks in advance
    Lekshmi

    Hi Lekshmi,
    In your Translation Manager web.xml look for Authentication.default and set sso.sap.primary and set the values as
    <context-param>
      <param-name>authentication.default</param-name>
      <param-value>secSAPR3</param-value>
      </context-param>
    <context-param>
      <param-name>sso.sap.primary</param-name>
      <param-value>true</param-value>
      </context-param>
    Thanks,
    Sravanthi

  • SAP Authentication doesn't come on CMC and Infoview page

    Hello Guru,
    I am new to BOE installation. I have installed BOEnterprise 3.1, FP 3.5 & SAP IK 3.1, FP 3.5. I am not getting Authentication as "SAP" on CMC and Infoview.
    I don't have PartnerPlatformService in my installation directory as well as the drive where i installed BO Enterprise.
    1. C:\Program Files (x86)\Business Objects\BusinessObjects Enterprise 12.0\warfiles\WebApps
    2. C:\Program Files (x86)\Business Objects\Tomcat55\webapps
    I am not able to find war files and PartnerPlatformService on the above two paths. Is it the main reason behind the SAP Authentication ? What changes do i have do to to get SAP as Authentication ? If i don't have PartnerPlatformService anywhere then from where do i find it and how to deploy it ?
    Regards,
    Komik Shah

    Hi Ingo,
    Thanks!!! I checked SAP JCO file deployment before and it is available on server.
    I also read the document prepared by you for installation of SAP IK. I followed all the steps but still not getting SAP as Authentication.
    What i see as difference is "I don't have PartnerPlatformService" in my BO Enterprise installation directory and that is why it is not seen on the C drive where i installed Business Objects. I have other customers where i have installed BO Edge series and i can see SAP as Authentication and there i could also find PartnerPlatformService in Installation Directory as well as C drive.
    If i don't have "PartnerPlatformService" in my BO Enterprise directory then how should i get it ?
    Thanks again for your help
    Regards,
    Komik Shah

  • SAP Authentication not available

    Hello together!
    on a BOE-System (XI 3.1, SP3, FP 3.5) is the SAP Authentication for the InfoView- and the CMC-logon not available. I think the problem is that they haven't installed the SAPJCO correct or did some other mistakes during the installation and configuration process. Until now I tried the following because to install and configurate the system new is not really a opportunity:
    check if in the CMC the SAP Authentication is enable
    check in the web.xml if the authentication.visible is set to true
    copied the sapjco.jar into the Tomcat55\shared\lib and Tomcat55\common\lib
    copied the two *.dll from the SAPJCO to the windows\system32 folder
    set the classpath
    redeployed the Apps: InfoViewApp, InfoviewAppActions, CmcApp, CmcAppActions, PartnerPlatformServices, SAP, OpenDocument and dswsbobje
    run the partnercafinstall.bat
    and restart the tomcat and the Server Intelligence Agent
    Btw the Integration Kit for SAP works - it's just the problem with the missing authentication method.
    Another question depending on that problem (maybe) regards  the BW Publisher: There is a role for publishing content, this role have the essential rights and the role is added to the corresponding SAP system folder under the SAP structure in the CMC. But if you want to piblish a Crystal Reports report as a BW-User that is a member of the role but is not imported in the CMC you get the error EAS 30001(An error occurred when synchronizing folder hierarchy for role) which means that the user does not have sufficient rights to publish reports. If I put the role to the administrator group everything works fine except that the reports creates a folder structure SAP\2.0\*SYSTEM\New Object11552\New Object11553\REPORT*. Why are the folder "New Object11552" and "New Object11553" created and what's the problem with the rights?
    I appreciate any hints what else I can do - because as I mentioned above a complete new-install is not really a opportunity.
    Thanks in advance!

    Thanks Heiko and Ingo for your responses!
    @Heiko
    Hi Heiko, I couldn't find the SAP JCO 2.1.9 version to download - so I tried the 2.1.10 version; but still the same problem
    @Ingo
    Hi Ingo,
      >>so the SAP Authentication in the CMC is available and you are able to import the SAP Roles ?
    yes, the SAP Authentication in the CMC is available and I'm able to import SAP roles - that works absolutely fine; it's just that users can't select the SAP-Authentication method for the logon.
      >>EAS 30001
    ok, that was also my idea that it is important that the sap user who want's to publish content is imported in the cmc - but because of the problem that the sap authentication is not available at logon that's currently not possible. So, I think if this problem is solved - the problem with EAS 30001 is also gone.
      >>Make sure the role as descriptions in transaction PFCG in all the languages that you use for publishing
    you're absolutely correct - that was the problem! Thanks Ingo! Could you explain what are the steps I have to do to translate the description of a role in transaction SE63 after I created the role in the transaction PFCG or do you have a link with the HowTo for me? Hope we'll also find a solution for the missing SAP-Authentication method.
    Mario

  • SAP Authentication is not opening in CMC

    Hi Experts,
      My scenario is WIN 2003 64 Bit Server.
                              BO EDGE 3.1 with DI
                              SAP IK ( i used SAP JCO files of "sapjco-ntintel-2.1.9.zip")
                              BO EDGE Service Pack 3.
    SAP Authentication option is reflecting in CMC,But when i click on SAP it is not responding.I Updated Objects from CCM.
    Now not only SAP authentication all other Authentication types are not responding. Can any one give quick response.
    Thanks,
    Bharath

    Hi INGO,
    we used SAP JCO 2.1.9 32 Bit Version. and redeployed tomcat.but still the issue is there.
    what i did is
    1) Uninstalled SAP IK Sp3
    2) Uninstalled BO EDGE Sp3
    3) Uninstalled SAP IK
    we dont have SAP JCO 2.1.8 to download.
    But still the SAP authentication is visible in CMC.What should i do.do i need to remove any files from installation directory.
    Can you please help me on this. <REMOVED_BY_MODERATOR>
    .Thanks for your support and help.
    Thanks,
    Bharath
    Edited by: Pravender on Dec 16, 2010 10:51 AM

  • SAP authentication tab not enabled

    Hi,
    we have installed the bo xi r2 & the integration kit successfully on Unix server but when I log on to the CMC page. The SAP authentication tab doesn't get highlighted. what can we do so that I can edit the SAP authentication settings. Please give me some pointers to resolve this issue.
    Thanks & Regards,
    Phani.

    Ok, the issue you face is usually related to the deployment of your SAP Java connector within your App Server. I recommend to go thru the deployment guide step by step again  and if you still face the issue create a support message with SAP BO support. The support guys from the SAP Int Team should be able to connect remotely to you system and verify the deployment.
    I hope this helps,
    Tim

  • Windows AD SSO pass to SAP authentication

    We have installed and configured SAP Integration 3.1 for BOEXI 3.1.  We have enabled SAP Authentication and can logon to BOE using SAP authentication successfully. We can refresh a Webi report built from a BW universe successfully using the SAP authentication.  However if the user uses Win AD authentication to BOE and this has an SAP alias defined we get "Unable to connect to SAP BW server. Incomplete data" whenthey try to refresh the same report.  My understanding is that by aliasing the SAP/user/role to the Win AD user tha the correct SAP creditials should be passed through.  Any ideas?  BTW the universe connection to BW is set to SSO.

    Hi Vincent,
    in the registry there is a setting for the SAP Integration Kit.
    With the XI 3.1 release in the registry you can find a setting which allows you to use a simplified user name (without a prefix from the SAP system) and in that way in case your Windows AD user and SAP users are identical the mapping will happen automatically.
    The registry value can be found in the branch:
    HKEY_LOCAL_MACHINE\SOFTWARE\Business Objects\Suite 12.0\SAP\Authentication and is called SimpleUsernameFormat. It is a Yes / No value setting.
    Keep in mind that this needs to be configured before you import the SAP users
    hope this makes sense.
    Ingo

Maybe you are looking for