Restart of SAP after Renewal of SNC certificates

Hi All,
Can some body help me on the below Question.
After renewal of SNC certificates, do we really require restart of SAP (CI & App servers) or is there any other way via online activity which we can do this with our restarting( no downtime)
Thanks
Raj

Hello,
If you use the CommonCryptoLib or Secure Login Library 2.0 as SNC library on the server and you manage your PSEs with STRUST, you do not have to restart the server for a PSE update.
best regards
Alexander Gimbel

Similar Messages

  • Is it necessary to restart the J2EE after I have imported certificates?

    Hi guys,
    I have imported certificates into the keystore. Is it necessary to restart the J2EE to make them available?
    Thanks, Olian

    Hi Olian,
    Not necessary to restart the server.
    If you have imported server certificates, then you can check it by assigning the certificates to https port in SSL provider and acces the server through https://<server name (FQDN):<https port>.
    The explorer should show you the imported certificate.
    If you have imported any other certificates , then also its not necessary to restart. You can directly check the functionality for which you have imported the certificates.
    Cheers....,
    Raghu

  • Error while importing SAP Router renew Certificate

    Hi Gurus,
    My sap router certificate got expired and got mail from SAP to renew, so I decided to renew it and followed link http://wiki.sdn.sap.com/wiki/display/Basis/HowtorenewtheSAPRouterlicense to renew saprouter certificate. All the steps were executed fine But I got below error while importing certificate from srcert file.
    C:\saprouter>sapgenpse import_own_cert -c srcert -p local.pse
    Please enter PIN:
    import_own_cert: Installation of certificate failed
    ERROR in ssf_install_CA_response: (1280/0x0500) No certficate with your
    public key found
    Please advise me to solve this issue.
    Thanks,
    Venkat

    Hi Deepak,
    thanks for your reply.
    yes i have entered correct Pin and in the first step i have moved local.pse and cred_v2, certreq, srcert files to C:/saprouter/backup folder
    After executing import command it has given error first time so i copied local.pse file to C:\saprouter folder and executed but same error result.
    please help me to solve it.
    Thanks,
    Venkat

  • [solved] dovecot errors after renewing SSL certificate

    System:
    OS X Server (Mountain Lion) 2.2
    Using a single SSL Certificate for all services.
    Symptom:
    Users can't log into their IMAP accounts hosted on OS X Server (Mountain Lion) after renewing SSL Certificate
    Diagnostics:
    Give you an indication whether it's this problem. Some or all may apply:
    Log shows all kinds of dovecot errors. e.g.
    dovecotd[nnn]: master: Error: service(config): command startup failed, throttling
    config: Fatal: Error in configuration file /Library/Server/Mail/Config/dovecot/dovecot.conf: ssl enabled, but ssl_cert not set
    dovecotd[nnn]: master: Error: service(config): command startup failed, throttling
    /Library/Server/Mail/Config/dovecot/conf.d/10-ssl.conf shows commented out lines:
    ssl_cert
    ssl_key
    ssl_ca
    Solution:
    Go to the Certificates pane of the Server App  and choose Secure Services Using: Custom
    Set IMAP and POP server certificates to to None
    Keep an eye on what the server App is doing to /Library/Server/Mail/Config/dovecot/conf.d/10-ssl.conf
    Now set Secure Services Using: <My single SSL Certificate for all services>
    Keep an eye on what the server App is doing to /Library/Server/Mail/Config/dovecot/conf.d/10-ssl.conf and you should now see all the ssl* settings as you would expect, and pointing to the correct SSL certificate  in /etc/certificates
    Hope this works for you too!

    I had something similar happen. When I do anything with SSL certificates it deletes any regular websites. Only the sites that are setup for https are listed.
    Couldn't understand why my website wasn't working and it turned out that the system had deleted it. The web server had multiple host set and I had to rebuild all the ones that had used port 80. All the ones that use 443 were fine.
    Hope this helps.

  • SSPR registration and reset started to fail after renewing the certificates

    Hi,
    On our FIM 2010 R2 environment (version 4.1.3599.0), after renewing the certificates used on FIM Service/Portal and Password Reset/Registration servers two days back, both the password registration and reset no longer work but instead fails on the  last
    step of the process. So for example when user browse to https://passwordreset.domain.com and fills in their domain\username and click next, FIM will send a security code (SMS OTP) to user´s mobile phone and once user then fills in code and click Next, the
    Communication error 3008 is shown to user. Same happens in the last step of the registration where user reviews that the mobile number is correct before clicking finally next. Once clicked the same error as is with Reset portal is shown to user. 
    Other changes than renewing the certificates have not been done to the environment after it was working last time two days ago. Synchronization of users/groups create in FIM Portal works normally towards AD.
    All servers within FIM environment are on same domain and subnet and firewall is off on all servers.
    The following error message as an example is recorded on FIM app log on either of the SSPR servers (two in NLB):
    The error page was displayed to the user.
    Details:
    Title: Communication Error
    Message: An error has occurred. Please try again, and if the problem persists, contact your help desk or system administrator. (Error 3008)
    Source: 
    Attributes: 
    Details: Microsoft.IdentityManagement.CredentialManagement.Portal.Exceptions.GenericCommunicationException: An error occurred while receiving the HTTP response to http://fimservice.domain.com:5726/ResourceManagementService/SecurityTokenService/Registration.
    This could be due to the service endpoint binding not using the HTTP protocol. This could also be due to an HTTP request context being aborted by the server (possibly due to the service shutting down). See server logs for more details. ---> System.ServiceModel.CommunicationException:
    An error occurred while receiving the HTTP response to http://fimservice.domain.com:5726/ResourceManagementService/SecurityTokenService/Registration. This could be due to the service endpoint binding not using the HTTP protocol. This could also be due to an
    HTTP request context being aborted by the server (possibly due to the service shutting down). See server logs for more details. ---> System.Net.WebException: The underlying connection was closed: An unexpected error occurred on a receive. ---> System.IO.IOException:
    Unable to read data from the transport connection: An existing connection was forcibly closed by the remote host. ---> System.Net.Sockets.SocketException: An existing connection was forcibly closed by the remote host
    The following error message as an example is recorded on FIM app log on either of the FIM Service/Portal servers (two in NLB):
    Microsoft.ResourceManagement.Service: System.NullReferenceException: Object reference not set to an instance of an object.
       at Microsoft.ResourceManagement.WebServices.SecurityTokenService.TokenIssuer.IssueSecurityToken(Message requestMessage, Object request, Claim[] claims)
       at Microsoft.ResourceManagement.WebServices.SecurityTokenService.Challenger.IssueAuthenticationChallenge(Message requestMessage, Object requestBody, Nullable`1 requestContext, UniqueIdentifier authenticationProcessIdentifier, List`1 accumulatedClaims,
    Nullable`1& currentWorkflowInstanceIdentifier, AuthenticationChallengeType[]& currentChallenges)
       at Microsoft.ResourceManagement.WebServices.SecurityTokenService.ProcessRequest(Message requestMessage, Object requestBody)
       at Microsoft.ResourceManagement.WebServices.SecurityTokenService.RequestSecurityTokenResponse(Message requestMessage)
    Both http://fimservice.domain.com:5726 or http://fimservice.domain.com:5725 can be accessed ok using web browser from the SSPR servers. The url of http://fimservice.domain.com:5726/ResourceManagementService/SecurityTokenService/Registration gives http 400 bad
    request which is ok.
    At least the following fixes provided on urls below have been tried out or were in place already but did not fix the issue:
    http://social.technet.microsoft.com/wiki/contents/articles/24629.fim-troubleshooting-sspr-registration-error-3008-an-error-occurred-while-receiving-the-http-response.aspx
    https://social.technet.microsoft.com/Forums/en-US/ae16496e-413a-45b7-a0d1-b39652c6478a/fim-password-registration-portal-error-3008-communication-error?forum=ilm2 (we have exactly the same three errors on FIM app log as mentioned in this post)
    https://social.technet.microsoft.com/Forums/en-US/aa14cff7-6b93-4413-8c75-737dd08bd25f/error-when-resetting-password-on-sspr?forum=ilm2
    https://social.technet.microsoft.com/Forums/en-US/aab6d5ef-667a-4ea9-876d-415c56852da9/sspr-password-reset-failure?forum=ilm2 (no such lines on FIMService config files)
    Can anyone help us with this and provide some tips what to check next on the environment? As the most weird thing here is that everything was working just fine before the certificates were renewed on all servers and no other changes were done on the environment. 
    -Pappa75

    Hi,
    Have you Stop-Start the FIM Service? If not then try this after performing this step. Also, there may be a possibility that the service won't be able to start if there is issue with the certificate.
    The SSPR issue is related to certificate only, which might have some missmatch in the thumbprint value or some other problem.
    If there is a problem with thumbprint of certificate, then you might see error in the Event Viewer and which can be resolved by making the certificate's thumbprint same within registry.
    Regards,
    Manuj Khurana

  • Connection could be validated error in production after renewing FAST Certificate

    I have renew the FAST certificate in admin and non admin servers and copied to Sharepoint Application server and ran the 
    PS C:\> .\SecureFASTSearchConnector.ps1 –certPath “C:\FASTSearchCert.pfx” –ssaName “ ” –username “DOMAIN\SP_Farm”
    It error out: Connection to contentdistributor fast.contoso.com:13391 could not be validated.
    Check your certificates and ssa configuration and make sure that instance of FAST Search Server backend is running.
    And I try to run 
    Ping-SPEnterpriseSearchContentService –HostName "FQDN"
    The ConnectionSuccess value for FASTSearchCert should show "True" if the certificate is configured
    properly.
    Connection success is always false. 
    I have done IISreset and tried to renew the certificates couple of times. But no user. 
    Can anyone please try to point me in right direction.
    Thanks

    Hello
    KPallela,
    Can you confirm the below items?
    What service pack and CU do 
    you have applied to your Fast Search for SharePoint 2010 environment?
    Are you putting the port 13991 in your Ping-SPEnterpriseSearchContentService command? 
    For example: Ping-SPEnterpriseSearchContentService domain.com:13391
    Can you confirm that your %fastsearch%\etc\Contentdistributor.cfg has the correct port number 13990
    Can you confirm that the Fast Content SSA content distributor section is configured with the correct port number 13991 in the UI?
    Can you confirm that the certificate is found in the MMC on the SharePoint crawler node is not showing expired (since you have renewed it)
    Can you confirm that the Search Service account is a member of the FastSearchAdministrators group
    Can you check if the thumbprint for the contentdistributor in %fastsearch%\etc\nodeconf.xml matches what is in %fastsearch%\etc\node.xml (note: It is not recommended
    to update these files manually)
    Can you confirm that the
    steps you followed to generate the new certificate match the TechNet article
    http://technet.microsoft.com/en-us/library/ff381244(v=office.14).aspx
    Can you verify that when you ran
    .\SecureFASTSearchConnector.ps1 –certPath “C:\FASTSearchCert.pfx” –ssaName “ ” –username “DOMAIN\SP_Farm” that the –ssaName did not contain the “ “ as the parameter, but rather
    the actual name of  your SSA (example: “Fast Content SSA”)
    Can 
    you confirm that there is not a special character in your search service account, such as a dollar sign?
    Let us know your findings, and if you have any questions on the above.
    Thanks!
    Rob Vazzana | Sr Support Escalation Engineer | US Customer Service & Support
    Customer Service   & Support                         
      Microsoft| Services

  • Exchange 2010 / Outlook 2010 after renewing ssl cert outlook throws errors saying using old certificate

    I recently renewed my ssl certificate, but when I did outlook starting throwing me the security alert saying that the certificate is expired and the names do not match.  When I click view certificate it shows my old certificate from like 3 years ago,
    so like 2 certificates back.
    I went into mmc, and it wasn't there, I looked in IIs and the certificate outlook is referencing is still not there.
    my autodiscover and oof isn't working now either.
    When i go to look at what exchange powershell is doing it shows the correct information, but that doesn't seem to be making it down to the clients.
    [PS] C:\Windows\system32>Get-ExchangeCertificate | fl
    AccessRules        : {System.Security.AccessControl.CryptoKeyAccessRule, System.Security.AccessControl.CryptoKeyAccessR
                         ule, System.Security.AccessControl.CryptoKeyAccessRule}
    CertificateDomains : {example.org, www.example.org, autodiscover.example.org, examplesv1.example.org, mail.example.org}
    HasPrivateKey      : True
    IsSelfSigned       : False
    Issuer             : CN=Go Daddy Secure Certificate Authority - G2, OU=http://certs.godaddy.com/repository/, O="GoDaddy
                         .com, Inc.", L=Scottsdale, S=Arizona, C=US
    NotAfter           : 12/29/2015 7:19:39 AM
    NotBefore          : 12/29/2014 7:19:39 AM
    PublicKeySize      : 2048
    RootCAType         : ThirdParty
    SerialNumber       : 46CC4C3A784B17B5
    Services           : IMAP, POP, IIS, SMTP
    Status             : Valid
    Subject            : CN=example.org, OU=Domain Control Validated
    Thumbprint         : AD79A6B42835A7F79C8517E9C543661C3072A79C
    [PS] C:\Windows\system32>get-exchangecertificate
    Thumbprint                                Services   Subject
    AD79A6B42835A7F79C8517E9C543661C3072A79C  IP.WS.     CN=example.org, OU=Domain Control Validated
    so then i ran
    [PS] C:\Windows\system32>Get-ClientAccessServer | fl name,autodiscoverserviceinternaluri
    Name                           : exampleSV1
    AutoDiscoverServiceInternalUri : https://example.org/Autodiscover/autodiscover.xml
    when I use the outlook test email auto configuration it shows that it is trying to connect using that autodiscover url, but it fails, so i'm not sure what is going on.
    email is working, user just get that annoying popup every few minutes and oof can't be set up.

    Here is the error I get when I run that command...
    [PS] C:\Windows\system32>Set-ClientAccessServer -Identity ServerName -AutodiscoverServiceInternalUrl https://mail.example.org/autodiscover/autodiscover.xml
    A positional parameter cannot be found that accepts argument '-AutodiscoverServiceInternalUrl'.
        + CategoryInfo          : InvalidArgument: (:) [Set-ClientAccessServer],
    ParameterBindingException
        + FullyQualifiedErrorId : PositionalParameterNotFound,Set-ClientAccessServer
    Here are the analyzer results...
    The Microsoft Connectivity Analyzer is attempting to test Autodiscover for [email protected].
    Testing Autodiscover failed.
    https://testconnectivity.microsoft.com/Images/Minus.gif
    Additional Details
    Elapsed Time: 2001 ms.
    https://testconnectivity.microsoft.com/Images/Minus.gif
    Test Steps
    https://testconnectivity.microsoft.com/Images/Error.png
    Attempting each method of contacting the Autodiscover service.
    The Autodiscover service couldn't be contacted successfully by any method.
    https://testconnectivity.microsoft.com/Images/Plus.gif
    Additional Details
    https://testconnectivity.microsoft.com/Images/Minus.gif
    Test Steps
    https://testconnectivity.microsoft.com/Images/Error.png
    Attempting to test potential Autodiscover URL https://example.org:443/Autodiscover/Autodiscover.xml
    Testing of this potential Autodiscover URL failed.
    https://testconnectivity.microsoft.com/Images/Plus.gif
    Additional Details
    https://testconnectivity.microsoft.com/Images/Minus.gif
    Test Steps
    https://testconnectivity.microsoft.com/Images/Success.png
    Attempting to resolve the host name example.org in DNS.
    The host name resolved successfully.
    https://testconnectivity.microsoft.com/Images/Plus.gif
    Additional Details
    https://testconnectivity.microsoft.com/Images/Success.png
    Testing TCP port 443 on host example.org to ensure it's listening and open.
    The port was opened successfully.
    https://testconnectivity.microsoft.com/Images/Plus.gif
    Additional Details
    https://testconnectivity.microsoft.com/Images/SuccessWarn.png
    Testing the SSL certificate to make sure it's valid.
    The certificate passed all validation requirements.
    https://testconnectivity.microsoft.com/Images/Plus.gif
    Additional Details
    https://testconnectivity.microsoft.com/Images/Minus.gif
    Test Steps
    https://testconnectivity.microsoft.com/Images/Success.png
    The Microsoft Connectivity Analyzer is attempting to obtain the SSL certificate from remote server example.org on port 443.
    The Microsoft Connectivity Analyzer successfully obtained the remote SSL certificate.
    https://testconnectivity.microsoft.com/Images/Plus.gif
    Additional Details
    https://testconnectivity.microsoft.com/Images/Success.png
    Validating the certificate name.
    The certificate name was validated successfully.
    https://testconnectivity.microsoft.com/Images/Plus.gif
    Additional Details
    https://testconnectivity.microsoft.com/Images/SuccessWarn.png
    Certificate trust is being validated.
    The certificate is trusted and all certificates are present in the chain.
    https://testconnectivity.microsoft.com/Images/Plus.gif
    Test Steps
    https://testconnectivity.microsoft.com/Images/Success.png
    Testing the certificate date to confirm the certificate is valid.
    Date validation passed. The certificate hasn't expired.
    https://testconnectivity.microsoft.com/Images/Plus.gif
    Additional Details
    https://testconnectivity.microsoft.com/Images/Success.png
    Checking the IIS configuration for client certificate authentication.
    Client certificate authentication wasn't detected.
    https://testconnectivity.microsoft.com/Images/Plus.gif
    Additional Details
    https://testconnectivity.microsoft.com/Images/Error.png
    Attempting to send an Autodiscover POST request to potential Autodiscover URLs.
    Autodiscover settings weren't obtained when the Autodiscover POST request was sent.
    https://testconnectivity.microsoft.com/Images/Plus.gif
    Additional Details
    https://testconnectivity.microsoft.com/Images/Minus.gif
    Test Steps
    https://testconnectivity.microsoft.com/Images/Error.png
    The Microsoft Connectivity Analyzer is attempting to retrieve an XML Autodiscover response from URL https://example.org:443/Autodiscover/Autodiscover.xml
    for user [email protected].
    The Microsoft Connectivity Analyzer failed to obtain an Autodiscover XML response.
    https://testconnectivity.microsoft.com/Images/Plus.gif
    Additional Details
    https://testconnectivity.microsoft.com/Images/Error.png
    Attempting to test potential Autodiscover URL https://autodiscover.example.org:443/Autodiscover/Autodiscover.xml
    Testing of this potential Autodiscover URL failed.
    https://testconnectivity.microsoft.com/Images/Plus.gif
    Additional Details
    https://testconnectivity.microsoft.com/Images/Minus.gif
    Test Steps
    https://testconnectivity.microsoft.com/Images/Error.png
    Attempting to resolve the host name autodiscover.example.org in DNS.
    The host name couldn't be resolved.
    https://testconnectivity.microsoft.com/Images/GreenRtArrow.jpg Tell me more about this issue and how to resolve it
    https://testconnectivity.microsoft.com/Images/Plus.gif
    Additional Details
    https://testconnectivity.microsoft.com/Images/Error.png
    Attempting to contact the Autodiscover service using the HTTP redirect method.
    The attempt to contact Autodiscover using the HTTP Redirect method failed.
    https://testconnectivity.microsoft.com/Images/Plus.gif
    Additional Details
    https://testconnectivity.microsoft.com/Images/Minus.gif
    Test Steps
    https://testconnectivity.microsoft.com/Images/Error.png
    Attempting to resolve the host name autodiscover.example.org in DNS.
    The host name couldn't be resolved.
    https://testconnectivity.microsoft.com/Images/GreenRtArrow.jpg Tell me more about this issue and how to resolve it
    https://testconnectivity.microsoft.com/Images/Plus.gif
    Additional Details
    https://testconnectivity.microsoft.com/Images/Error.png
    Attempting to contact the Autodiscover service using the DNS SRV redirect method.
    The Microsoft Connectivity Analyzer failed to contact the Autodiscover service using the DNS SRV redirect method.
    https://testconnectivity.microsoft.com/Images/Plus.gif
    Additional Details
    https://testconnectivity.microsoft.com/Images/Minus.gif
    Test Steps
    https://testconnectivity.microsoft.com/Images/Error.png
    Attempting to locate SRV record _autodiscover._tcp.example.org in DNS.
    The Autodiscover SRV record wasn't found in DNS.
    https://testconnectivity.microsoft.com/Images/GreenRtArrow.jpg Tell me more about this issue and how to resolve it
    https://testconnectivity.microsoft.com/Images/Plus.gif
    Additional Details

  • Login error in Portal after importing a new certificate into BI

    Hi Experts,
    Our certificate in BI expired last month and we were unable to login to the BEx reports due to this.
    I have created a new certificate using Visual Administrator and imported that certificate into BI using STRUSTSSO2 after deleting the old certificate from the system PSE.
    After which I have added this new certificate to the ACL for Single Sign On.
    Then rebooted the JAVA stack for the changes to take effect.
    Now, when I want to login to view reports on the Portal created by BEx Analyzer, I am getting this RFC_ERROR_LOGON_FAILURE exception.
    When checked in SM50, it shows SsfVerify failed and SSF_API_NOCERTIFICATE errors.
    Please help me out resolving this. Did I miss out on any of the steps?
    Also when I ran the report, RSPOR_SETUP, the step 5 shows SID_certificate.crt is not existing and the step 12 shows that BI certificate not imported, SAP BI User is not mapped to SAP EP User.
    Regards,

    Hi,
    Have a look at this [thread|The URL http://xxx was not called due to an error; as well as the [Wiki Link|http://wiki.sdn.sap.com/wiki/display/BSP/Logon].
    Hope this will be helpful for you.
    Regards,
    Varadharajan M

  • Exchange 2010: How to renew an SSL certificate?

    Hi all.  I have done some reading but it seems I can't find just a simple step-by-step on how to renew an SSL certificate issued by a 3rd party CA for Exchange 2010.  I really don't want to mess this one up by cobbling together partial answers
    from various forums and end up omitting something, then being stuck unable to figure out why I broke email while the CEO flips out. 
    This is a standard GoDaddy 5-domain UCC certificate.  There is only one Exchange server, SP3 (I don't think I have Rollup 6 on yet).  The existing certificate expires in a month or so. 
    I have some specific questions but perhaps these would be answered via what I hope will be a step by step instruction set in your reply :) Sorry to appear lazy by asking for the full instructions just that so far no single forum post nor MS TechNet article
    has addressed all my concerns, or in some cases information conflicts.  So my concerns for example are:  can you do a renewal for a certificate before the old one expires?  It is actually a renewal, or are you adding a 2nd certificate? 
    Do you have to do anything in IIS or does EMC or EMS do all that for you? 
    Thank you. 

    -->Can you do a renewal for a certificate before the old one expires? 
    Yes. Normally 3rd party CA allows you to renew certificate before the current one expires.
    -->It is actually a renewal, or are you adding a 2nd certificate? 
    You have to renew the certificate and a new/second certificate will be added to your server certificate store. Please check below for detailed step of Godaddy renewal. http://stevehardie.com/2013/10/how-to-renew-a-godaddy-exchange-2010-ssl-certificate/
    -->Do you have to do anything in IIS or does EMC or EMS do all that for you? 
    You will have to do it from MMC or EMS. No need to do anything from IIS.
    Follow the steps below to make your work easy or follow the video in this site site.http://www.netometer.com/video/tutorials/Exchange-2010-how-to-renew-SSL-certificate/
    1. Run this command from EMS to generate CSR. You can see the CSR named "newcsr.txt" in C:\CSR
    folder
    Set-Content -path "C:\CSR\newcsr.txt" -Value (New-ExchangeCertificate -GenerateRequest -KeySize 2048 -SubjectName "c=US, s=WA, l=Bellavue, o=Contoso, cn=commonname.domain.com" -DomainName autodiscover.domain.com -PrivateKeyExportable $True)
    2. Renew the certificate from Godaddy (from Godaddy portal) using the new CSR (i.e. newcsr.txt). Download the certificate from Godaddy after renewal.
    3. Open Exchange MMC. Go to Server configuration. Right click on the pending request.  Click on complete pending request and browse to the newly downloaded certificate. Make sure you have internet when doing this.
    4. Assign services using the steps in the below site. Make sure you have selected the new certificate. You will see the thumbprint just before completion http://exchangeserverpro.com/how-to-assign-an-ssl-certificate-to-exchange-server-2010-services/
    5.Delete the old one certificate from MMC.
    From EMS use this command 
    Remove-ExchangeCertificate -Thumbprint <old cert thumprint>
    You can see the the certificate thumprints using Get-ExchangeCertificate command
    MAS. Please dont forget to mark as answer if it helped.

  • Invalid Credential - when attempt to restart the SAP App. Server in sapmmc

    Hi community,
    I have successfully installed SAP NetWeaver 7.01 ABAP Developer edition on vista 32bit and when i open sapmmc the SAP Application Server is appear green and I able to connect it. However, after i've restarted my laptop the sap application server appear as grey status.
    Therefore, I attempted to restart the sap application server in sapmmc, it prompted me a webservice authentication and I have entered the master password that I specified during the installation but it seems not working .
    I get the error message "start failed: 2 - Invalid Credential" . Is there a specific SAP user name and password or any other userid and password that i require to key in in order to start the application server again? or is a configuration problem? need your advise. Many thanks in advance!

    Hi Vernon,
    Please enter your window userid and password when starting server node in SAP MMC.
    Hope it will helps
    Regards
    Arun Jaiswal

  • Renew enterprise CA certificate

    Hi Guys,<o:p></o:p>
    I have two windows 2012 R2 with enterprise CA and Subordinate CA and the certificates is about to expire, so I need to renew before the
    expiration date.<o:p></o:p>
    Can I renew It now? What will happen to my other certificates <o:p></o:p>
    Should I renew the subordinate immediately after <o:p></o:p>
    Should I ask a new or the same private Key <o:p></o:p>
    Many thanks <o:p></o:p>
    Regards<o:p></o:p>
    HO<o:p></o:p>

    thanks a lot for the quick answer.
    So, resuming this articles, if I need to maintain my actual certificates, I need to renew with the same key pair;
    When you generate a new key pair for a CA that is being renewed, a new certificate revocation list (CRL) distribution point is
    also created. This is to ensure that the key used to sign a certificate issued by the CA also matches the key used to sign the CRL
    And everything will be maintained until the expiration date.

  • I am unable to install extensions, they show up with "will be installed after you restart Firefox" even after I restart.

    Hi,
    I am unable to install extensions, they show up with "will be installed after you restart Firefox" even after I restart.
    The "Staged" folder is present and remains after a restart, but the extensions do not get installed. They show in the extensions page with the "will be installed after you restart Firefox" message and remain like this no matter how many times I restart.
    Any Idea's?
    Running Firefox 24.0 on Windows 8.1
    Many Thanks,
    BD
    P.S. Just tried to install the "troubleshooter" add-on before posting the question and I got an error saying it cannot install because it cannot modify the needed file. (I did it manually instead)

    It is possible that there is a problem with the file(s) that store the extensions registry.
    Delete the extensions.* files (e.g. extensions.sqlite, extensions.ini) and compatibility.ini in the Firefox profile folder to reset the extensions registry.
    *https://support.mozilla.org/kb/Profiles
    New files will be created when required.
    See "Corrupt extension files":
    *http://kb.mozillazine.org/Unable_to_install_themes_or_extensions
    *https://support.mozilla.org/kb/Unable+to+install+add-ons
    If you see disabled or not compatible extensions in "Firefox/Tools > Add-ons > Extensions" then click the Tools button at the left end side of the Search Bar to check if there is a compatibility update available.
    If this hasn't helped then also delete the addons.sqlite file.

  • Windows 2003 R2 Gray Screen Hang on HP DL380 G5 when restarting or shutdown after Nov/Dec 2011 Windows Update

    I’ve 4 identical HP DL 380 G5 Servers with Windows 2003 R2 Std.  The 4 machines have the same Windows driver version and motherboard BIOS version.  2 have no problem.  2 have problems after Nov/Dec 2011 Windows Update!
    After running for a few days from power-up, the 2 problem servers will hang at gray screen during restart.  After clicking for restart,
    - The Event Log service will stop normally so there is no more error log can be seen!
    - The IP ping to the server can still work.  The mouse pointer in Windows can still be moved.
    - The Windows shutdown gray screen can be shown.
    - [Ctrl-Alt-Del] has stopped to function.
    Then the system just freezes at that status.  I can only cold-boot the system!
    After power-up again, I can do the Windows restart / shutdown normally!  But after a few day of running, the above symptom repeats!  The symptom happened since I installed the Windows Update in Dec 2011.  It didn’t happen before that!
    Anyone can give a hint on how to diagnose it?

    Hi,
    In order to troubleshoot the server hang issue, you can first preform a clean boot on the problematic system.
    Steps:
    ====================
     1. Click Start->Run…->type
    msconfig and press Enter
    2. Click Services tab and select Hide All Microsoft Services
    and Disable All third party Services
    3. Click Startup tab and Disable All startup items
    4. Click OK and choose Restart
    5. After reboot, check whether the problem still occurs
    If the server hang on issue still continues in clean boot mode, for the further troubleshooting, you may check in the Task Manager to see which process takes the memory resources.
    Meanwhile, you can also use reliability and performance Monitor to track down what cause the performance issue.
    Windows Reliability and Performance Monitor
    http://technet.microsoft.com/en-us/library/cc755081(WS.10).aspx
    Windows Performance Monitor
    http://technet.microsoft.com/en-us/library/cc749249.aspx
    Best Regards,
    Aiden
    Aiden Cao
    TechNet Community Support

  • Unable to save PDF file to local drive from sap after Above reader XI update.(Not as sap issue ,this is related to Adobe)

    Hi All,
    Users are unable to download/save file from sap after a adobe XI update.(no pop comes to save/open)
    Surprisingly,i am able to do so on my system without any adobe plug ins disabled or any registry editing.
    This is a strange behaviour and need to be resolved Asap....
    I contacted sap..this is not sap issue..this is a pure adobe reader bug.
    Please need help on this experts
    Feel free to comment for further details
    kind Regards,
    Sumit
    Mail me at [email protected]

    Hi ,
    Please tell us a lot more.
    - Is SAP running a local process, or something in a web browser?
       sap is running via SAPGUI ,no java system
    - What system?
      Users facing issue in all system
    - What browser?
    IE 9.0.28
    - Can PDFs from other sources be downloaded?
    Yes,they are downloaded.
    More Details-I did some tricks below which resulted in open/save popup......tht is not recomended by IT team...i need a permanent solution
    In IE, goto menu Options -> "Manage
    Addons", select in box "Show:" "Run without
    permission", then you see the Adobe PDF plugin
      Ichanged status to "Disabled
    Also, if i change the registry key settings for users as
    HKEY_CLASSES_ROOT\AcroExch.Document.11
    Value: EditFlags
    Changed: 0x00000100
    to 0x00000000
    (Remove the "Open always with this
    program" option)
    ITS WORKING.....
    But,in my system i need not to do all this settings and surprisingly it is working  only for me,rest all users are facing this issue.....
    If any one using Lync ,communicator ..do let me know..i wil show  the actual scnerio.
    Kind Regards,
    Sumit

  • How clusterware restarts on automatically after server reboot in 11g R2

    Hi,
    I would like to know how the cluster restarts on automatically after the server reboot in 11g R2 RAC . The oracle restart feature in 11g R2 help to restart the components like databases, ASM in case of abnormal failure. But how the clusterware starts on own after the server reboot? can you share any documents or notes is really appreciated.
    Thanks,
    Robin.

    At Grid Infrastructure installation time system configuration is modified so that UNIX init daemon restarts OHASD: http://docs.oracle.com/cd/E11882_01/rac.112/e16794/intro.htm#BABIDEFI. For example with Oracle Linux 5 and Oracle RAC 11.2.0.1 you have following line in /etc/inittab:
    h1:35:respawn:/etc/init.d/init.ohasd run >/dev/null 2>&1 </dev/nulland:
    [root@rac1 ~]# head /etc/init.d/init.ohasd
    #!/bin/sh
    # Copyright (c) 2001, 2009, Oracle and/or its affiliates. All rights reserved.
    # init.ohasd - Control script for the Oracle HA services daemon
    # This script is invoked by the init system
    ORA_CRS_HOME=/u01/app/11.2.0/grid
    export ORA_CRS_HOMEEdited by: P. Forstmann on 11 févr. 2013 18:45

Maybe you are looking for

  • Unable to open existing project in idvd

    I have saved a project in Idvd (dvdproj. file), I can locate the project however when I try to open it, it opens a blank project.  I am using idvd ver. 7.04. What am I doing wrong as I don't want to re-create as I have several hours invested in the I

  • 3.1.3

    I have a gen 1 ipod touch that I have not used for a while, I want to u/g to 3.1.3 however when I try I get the message that "the ipod update server cannot be contacted" my connection is fine as I have downloaded other purchases today. Any help is aq

  • How can i shoulD use 'select' for ALV

    Hello guys,Please Help how can i summation as date   with alv. how can i  use 'group by' in select statement. Normally my alv table like this. I want to this.

  • Auto renewing contract with no notification receiv...

    Hi I recently called to cancel BT's telephone services as we're moving house and was informed that my contract has auto renewed and that I should have received a notification giving me the opportunity to cancel it. As we knew we'd be moving out in le

  • Not staying connected to my internet

    not sure if this is the right forum, but hopefully someone can help. i just bought a new imac yesterday and have it all set up and running great. my only problem is, is that my imac will not stay connected to the wireless network in our house. myself