Use PI to connect to ext system using kerberos/spnego

Hi
Is it possible to configure PI to call external web service using kerberos/spnego? If so, how is it done?
It is said to be supported, but after looking I find no sign of anyone who has implemented this with PI.
Thank you
regards Ole

Using PI you can connect to external webservice via SOAP adapter.  Please check with SOAP reciever configuration.  For authentication you will use Kerberos. 
Soap receiver adapter [link|http://help.sap.com/saphelp_nw04/helpdata/en/29/5bd93f130f9215e10000000a155106/content.htm]
To know kerberos configuration you might want to see this...
Re: Setting up Kerberos Authentication in Trusted Domain

Similar Messages

  • Unable to connect to ECC system through stand alone JAVA program using JCO.

    Hi All,
    I want to connect to ECC system through standalone JAVA program using jco.while executing my java program it is saying that connection refused.
    I am getting the error as shown below.
    com.sap.mw.jco.JCO$Exception: (102) RFC_ERROR_COMMUNICATION: CMALLC : rc=20 > Co
    nnect from SAP gateway to RFC server failed
    Connect_PM  GWHOST=192.168.10.99, GWSERV=sapgw01, SYSNR=01
    LOCATION    SAP-Gateway on host igm501 / sapgw01
    ERROR       partner '192.168.10.99:sapgw01' not reached
    TIME        Mon Sep  1 15:00:37 2008
    RELEASE     700
    COMPONENT   NI (network interface)
    VERSION     38
    RC          -10
    MODULE      nixxi.cpp
    LINE        2821
    DETAIL      NiPConnect2
    SYSTEM CALL connect
    ERRNO       239
    ERRNO TEXT  Connection refused
    COUNTER     2
            at com.sap.mw.jco.rfc.MiddlewareRFC$Client.nativeConnect(Native Method)
            at com.sap.mw.jco.rfc.MiddlewareRFC$Client.connect(MiddlewareRFC.java:11
    25)
            at com.sap.mw.jco.JCO$Client.connect(JCO.java:3138)
            at JConnector_frmDesk.<init>(JConnector_frmDesk.java:91)
            at JConnector_frmDesk.main(JConnector_frmDesk.java:141)
    I have already configured SAPDP01,SAPGW01 in my services file in windows\system32\drivers\etc\services.
    What else i need to do to connect to ECC system through my JAVA program.Please help me in this regard.
    Regards,
    Ramana.

    Hi !
    Check this to verify that you are correctly using JCO:
    https://www.sdn.sap.com/irj/sdn/go/portal/prtroot/docs/library/uuid/8e7daa90-0201-0010-9499-cd347ffbbf72
    Try to give in ashost="/H/saprouter/H/sap".
    Regards,
    Matias.

  • Suggestion when only able to connect to some services when using Kerberos.

    I had been having problems using Kerberos for authentication for some services. It worked fine when on a LAN and worked when I had a VPN (MS-CHAP). But when trying to connect normally, I was able to get a TGT, but often ran into issues when trying to connect to other services (e.g. IMAP / VPN). What's more, sometimes everything did work, but stopped again soon after.
    My setup has one server providing all the services in question. There were several CNAMES linking the different services (e.g. ichat.mydomain, mail.mydomain etc).
    I found a number of people who seemed to have similar issues, but the threads were archived so I couldn't post a reply. So I'm hoping they come across this message and it helps them.
    Because of an unrelated problem, it was brought to my attention that there were some problems with the DNS records relating to my domain – not on my server, but on the net.
    After some experimenting, I discovered that if I set the DNS (in System Preferences) on my client Mac to the server I was contacting most things worked.
    It seems that the Kerberos system may do a reverse lookup at some point, or something similar.
    When I do a "dig -x <my ip address>" I get different responses over time, and from different DNS servers. When I did "dig @<my own dns> -x <my ip address>" it always came back with the correct server name.
    So perhaps the issue lies with the DNS that your machine is looking up? This would explain why it works on the lan (the DNS is probably your server) and over VPN (again your server is the DNS).
    This may not be the answer to these people's problems, but if you were getting messages such as "Server not found in Kerberos database" in your logs, it may pay to check what is getting return by DNS servers outside your organisation.
    HTH.
    iMac G3   Mac OS X (10.4.8)  

    CharlieJ wrote:
    The problem is this: When any one of the computers is connected to the internet through the DSL none of the others computers is able to connect – I see the message “Connecting through WAN miniport (PPOE)…”, i.e. I am only able to connect to the internet 1 computer at a time.
    As soon as I disconnect from the ‘connected’ computer (desktop or laptop) I am immediately able to successfully connect to the internet on either of the other 2 computers.
    I’ve tried resetting everything – no luck.
    I don’t recall having changed any of the settings and am baffled.
    Any thoughts as to the problem?
    Thanks in advance for any help.
    Charlie
    PS. I haven't called the Verizon DSL Tech Support team yet...but I will soon. I figured on asking here first.
    Ok.
    #1 You must get to the network control panel on your computer.
    One of the ways, for Windows XP is:
    a) Go to Start -> Control Panel -> Network Connections
    b) The screen will look like steps 5 and 6, on http://portforward.com/networking/static-xp.htm
    For Windows Vista:
    a) Go to the globe icon (start button) -> Control Panel -> Network and Sharing Center -> Manage Network Connections.
    b) The screen will look like steps 5, 6, and 7, on
    http://portforward.com/networking/static-vista.htm
    #2 Right click on the WAN miniport (PPPOE), and remove the check mark that says Set as Default Connection.
    ^^
    If you are the original poster (OP) and your issue is solved, please remember to click the "Solution?" button so that others can more easily find it. If anyone has been helpful to you, please show your appreciation by clicking the "Kudos" button.

  • Connecting to a database using Kerberos authentication

    I have a 10gR2 database for which I want to enable connection using Kerberos authenntication. I receive the following error:
    ORA-12637: Packet receive failed.
    In the sqlnet server trace I get the following error:
    nauk5ky_rd_req_decoded: Returning 31: Decrypt integrity check failed.
    Ideas anyone?

    The problem appears to be that one active directory user can act as service principal for only one database server (or one RAC instance).
    If more than one service principals are created (by ktpass utility) for the same AD user, only the last created one can successfully authenticate. Logins to all other servers are unsuccessful and result in ORA-12637 at the client and ORA-07445 [nauk5a3recvclientauth()+568] in the server alert log.
    The workaround is to create a separate AD user account for each database server (or RAC instance) authenticated by the kerberos.
    Edited by: dbr2 on 27-Feb-2009 07:18

  • Steps for connecting ext. system (nonSAP) via tRFC

    Hi i need detailed description on how to connect ext. system (nonSAP) or program to XI.
    I need a RFC-Destination - what type?! TCP/IP?!
    Scenario will be that we send a receive IDoc from this nonSAP-System.
    Can someone provide me with detailed informations?! Which user-type etc., do i need a user....?
    br

    Hi,
    Assuming target system is your R3.
    You need to follow the below configuration:
    Pre-requisites for Inbound IDoc to R/3 from PI:
    Configuration required at Xi side:
    Go to IDX1: configure the port.
    Go to IDX2: load the DOC metadata.
    Go to SM59: Create RFC destination which points to R3 system this is require in the case where your IDOC is sent to R 3 system,
    Configiration required at R3 side:
    Maintain Logical System for XI (transaction SALE)
    Maintain Port (WE21)
    Maintain partner profile for XI. (WE20):
    This is just example you can see the configuration part:
    File To IDOC - Part3 (Steps required in XI and R3):
    https://www.sdn.sap.com/irj/sdn/wiki?path=/display/profile/2007/05/11/fileToIDOC-Part3(StepsrequiredinXIandR3)&
    Thnx
    Chirag

  • How do I use Kerberos Auth in Java 6?

    Hi,
    I have a problem with the Kerberos authentication. I have a simple class that tries to connect to an LDAP server using Kerberos. It works great when I use java 5, but with java 6 it fails.
    Here is part of the code:
            System.setProperty("java.security.auth.login.config", "/etc/login.conf");
            System.setProperty("java.security.krb5.conf", "/etc/krb5.conf");
            System.out.println("Trying to login using kerberos...");
            KerberosCallbackHandler kerberosCallbak = new KerberosCallbackHandler();
            LoginContext loginContext = new LoginContext(loginContextName, kerberosCallbak);
            loginContext.login();
            System.out.println("Login succeeded");
            //Login succeeds on both java 5 and java 6
            Subject.doAs(loginContext.getSubject(), new JndiAction());
            System.out.println("Connected through Kerberos successfully");The failure happens in the JndiAction:
        public class JndiAction implements PrivilegedExceptionAction<Integer>
            public Integer run() throws Exception
                String username = user + "@" + domain;
                System.out.println("User to connect to Kerberos is " + username);
                System.out.println("Provider URL is: " + url);
                Hashtable<String, String> env = new Hashtable<String, String>();
                env.put(Context.INITIAL_CONTEXT_FACTORY, "com.sun.jndi.ldap.LdapCtxFactory");
                env.put("java.naming.ldap.derefAliases", "finding");
                env.put(Context.PROVIDER_URL, url);
                env.put(Context.SECURITY_AUTHENTICATION, "GSSAPI");
                System.out.println("Trying to create context...");
                new InitialLdapContext(env, null);
                return 0;
        }An exception occures when calling new InitialLdapContext:
    Exception in thread "main" java.security.PrivilegedActionException: javax.naming.AuthenticationException: GSSAPI [Root exception is javax.security.sasl.SaslException: GSS initiate failed [Caused by GSSException: No valid credentials provided (Mechanism level: Server not found in Kerberos database (7))]]
            at java.security.AccessController.doPrivileged(Native Method)
            at javax.security.auth.Subject.doAs(Unknown Source)
            at KerberosAuth.connectKerberos(KerberosAuth.java:71)
            at KerberosAuth.main(KerberosAuth.java:29)
    Caused by: javax.naming.AuthenticationException: GSSAPI [Root exception is javax.security.sasl.SaslException: GSS initiate failed [Caused by GSSException: No valid credentials provided (Mechanism level: Server not found in Kerberos database (7))]]
            at com.sun.jndi.ldap.sasl.LdapSasl.saslBind(Unknown Source)
            at com.sun.jndi.ldap.LdapClient.authenticate(Unknown Source)
            at com.sun.jndi.ldap.LdapCtx.connect(Unknown Source)
            at com.sun.jndi.ldap.LdapCtx.<init>(Unknown Source)
            at com.sun.jndi.ldap.LdapCtxFactory.getUsingURL(Unknown Source)
            at com.sun.jndi.ldap.LdapCtxFactory.getUsingURLs(Unknown Source)
            at com.sun.jndi.ldap.LdapCtxFactory.getLdapCtxInstance(Unknown Source)
            at com.sun.jndi.ldap.LdapCtxFactory.getInitialContext(Unknown Source)
            at javax.naming.spi.NamingManager.getInitialContext(Unknown Source)
            at javax.naming.InitialContext.getDefaultInitCtx(Unknown Source)
            at javax.naming.InitialContext.init(Unknown Source)
            at javax.naming.ldap.InitialLdapContext.<init>(Unknown Source)
            at KerberosAuth$JndiAction.run(KerberosAuth.java:155)
            at KerberosAuth$JndiAction.run(KerberosAuth.java:1)
            ... 4 more
    Caused by: javax.security.sasl.SaslException: GSS initiate failed [Caused by GSSException: No valid credentials provided (Mechanism level: Server not found in Kerberos database (7))]
            at com.sun.security.sasl.gsskerb.GssKrb5Client.evaluateChallenge(Unknown Source)
            ... 18 more
    Caused by: GSSException: No valid credentials provided (Mechanism level: Server not found in Kerberos database (7))
            at sun.security.jgss.krb5.Krb5Context.initSecContext(Unknown Source)
            at sun.security.jgss.GSSContextImpl.initSecContext(Unknown Source)
            at sun.security.jgss.GSSContextImpl.initSecContext(Unknown Source)
            ... 19 more
    Caused by: KrbException: Server not found in Kerberos database (7)
            at sun.security.krb5.KrbTgsRep.<init>(Unknown Source)
            at sun.security.krb5.KrbTgsReq.getReply(Unknown Source)
            at sun.security.krb5.internal.CredentialsUtil.serviceCreds(Unknown Source)
            at sun.security.krb5.internal.CredentialsUtil.acquireServiceCreds(Unknown Source)
            at sun.security.krb5.Credentials.acquireServiceCreds(Unknown Source)
            ... 22 more
    Caused by: KrbException: Identifier doesn't match expected value (906)
            at sun.security.krb5.internal.KDCRep.init(Unknown Source)
            at sun.security.krb5.internal.TGSRep.init(Unknown Source)
            at sun.security.krb5.internal.TGSRep.<init>(Unknown Source)
            ... 27 moreI want to emphasize that the login function did succeed, and that I try to connect to the same server with the same username and password and same configuration. With java 5 it works, with java 6 it does not.
    Does anybody know what I should do to solve this problem?
    TIA,
    Dikla

    Note: This thread was originally posted in the [Java Secure Socket Extension  (JSSE)|http://forums.sun.com/forum.jspa?forumID=2] forum, but moved to this forum for closer topic alignment.

  • CALL_FUNCTION_OPEN_ERROR in CRM while trying to connect to ECC system

    Hi All,
    We are having issues while connecting to ECC system from CRM at specific point of time.
    It occurred only once yesterday . Since it is a production system, we need to investigate the cause of the issue.
    Upon checking the logs, I can see dumps in ST22 stating CALL_FUNCTION_OPEN_ERROR while trying to connect to ECC.
    This issue has been faced by multiple users at the same time.
    Both CRM and ECC are in the same server . There are no errors in ECC system ,
    The error description says
    Error opening RFC connection
    Error text........... "Group USER not found"
    Description.......... "LgIGroupX"
    The response time is fine for the system and during the time when the error occurred.
    Both the systems are in kernel 720 patch level 416.
    There are no errors in dev_rd and dev_ms as well.
    The errors in trace file also give information that ECC system cannot be reached.
    However our ECC system was available , up and running and there were no issues at that time with ECC.
    I have attached the dump, kernel and patch level details , work process trace files and the response times.
    Please suggest.
    Thanks,
    Sowmya.

    LB: Hostname or service of the message server unknown#DEST =PUCCLNT220#MSHOST
    =puc.apps.eon.com#R3NAME =PUC#GROUP =USER"
    disp+work information
    kernel release 720
    kernel make variant 720_EXT_REL
    compiled on Linux GNU SLES-11 x86_64 cc4.3.4 use-pr121116 for linuxx86_64
    compiled for 64 BIT
    compilation mode UNICODE
    compile time Feb 16 2013 02:50:12
    update level 0
    patch number 416
    source id 0.416
    Error from work process trace file
    A  reached MAX_RUDILOCKS for (user: L13526      , ta:                     ), sending RUDILOCK_RESET
    A  reached MAX_RUDILOCKS for (user: L13526      , ta:                     ), sending RUDILOCK_RESET
    A  reached MAX_RUDILOCKS for (user: L13526      , ta:                     ), sending RUDILOCK_RESET
    A  reached MAX_RUDILOCKS for (user: L13526      , ta:                     ), sending RUDILOCK_RESET
    A  reached MAX_RUDILOCKS for (user: L13526      , ta:                     ), sending RUDILOCK_RESET
    A  reached MAX_RUDILOCKS for (user: L13526      , ta:                     ), sending RUDILOCK_RESET
    A  reached MAX_RUDILOCKS for (user: L13526      , ta:                     ), sending RUDILOCK_RESET
    A  reached MAX_RUDILOCKS for (user: L13526      , ta:                     ), sending RUDILOCK_RESET
    A  reached MAX_RUDILOCKS for (user: L13526      , ta:                     ), sending RUDILOCK_RESET
    A  reached MAX_RUDILOCKS for (user: L13526      , ta:                     ), sending RUDILOCK_RESET
    A  reached MAX_RUDILOCKS for (user: L13526      , ta:                     ), sending RUDILOCK_RESET
    A  reached MAX_RUDILOCKS for (user: L13526      , ta:                     ), sending RUDILOCK_RESET
    A  reached MAX_RUDILOCKS for (user: L13526      , ta:                     ), sending RUDILOCK_RESET
    A  reached MAX_RUDILOCKS for (user: L13526      , ta:                     ), sending RUDILOCK_RESET
    A  reached MAX_RUDILOCKS for (user: L13526      , ta:                     ), sending RUDILOCK_RESET
    A  reached MAX_RUDILOCKS for (user: L13526      , ta:                     ), sending RUDILOCK_RESET
    A  reached MAX_RUDILOCKS for (user: L13526      , ta:                     ), sending RUDILOCK_RESET
    A  reached MAX_RUDILOCKS for (user: L13526      , ta:                     ), sending RUDILOCK_RESET
    A  reached MAX_RUDILOCKS for (user: L13526      , ta:                     ), sending RUDILOCK_RESET
    M
    M Mon Apr 20 15:48:09 2015
    M  ThPlgTimeout: ThPlgTimeout for plugin T144/U17974
    A
    A Mon Apr 20 15:58:59 2015
    A  *** ERROR => RFC Error RFCIO_ERROR_SYSERROR in abrfcpic.c : 2825
    LB: Hostname or service of the message server unknown
    DEST =PUCCLNT220
    MSHOST =puc.apps.eon.com
    R3NAME =PUC
    GROUP =USER
    [abrfcio.c    9213]
    A {root-id=441EA15C8F181ED4B9E4168F16E66417}_{conn-id=441EA15C8F181ED4B9E416A941234417}_1
    A  TH VERBOSE LEVEL FULL
    A  ** RABAX: end RX_GET_MESSAGE
    A
    A Mon Apr 20 15:59:02 2015
    A  *** ERROR => RFC Error RFCIO_ERROR_SYSERROR in abrfcpic.c : 2825
    LB: Hostname or service of the message server unknown
    DEST =PUCCLNT220
    MSHOST =puc.apps.eon.com
    R3NAME =PUC
    GROUP =USER
    [abrfcio.c    9213]
    A  {root-id=441EA15C8F181ED4B9E4168F16E66417}_{conn-id=441EA15C8F181ED4B9E416A941234417}_1
    A  *** ERROR => RFC Error RFCIO_ERROR_SYSERROR in abrfcpic.c : 2825
    LB: Hostname or service of the message server unknown
    DEST =PUCCLNT220
    MSHOST =puc.apps.eon.com
    R3NAME =PUC
    GROUP =USER
    [abrfcio.c    9213]
    A {root-id=441EA15C8F181ED4B9E4168F16E66417}_{conn-id=441EA15C8F181ED4B9E416A941234417}_1
    A  *** ERROR => RFC Error RFCIO_ERROR_SYSERROR in abrfcpic.c : 2825
    LB: Hostname or service of the message server unknown
    DEST =PUCCLNT220
    MSHOST =puc.apps.eon.com
    R3NAME =PUC
    GROUP =USER
    [abrfcio.c    9213]
    A {root-id=441EA15C8F181ED4B9E4168F16E66417}_{conn-id=441EA15C8F181ED4B9E416A941234417}_1

  • Connecting to BW system through VPN in Design Studio

    Hi Experts,
    I tried to connect to my client BW system through VPN and used the URL in my Design studio, but when I connect like that the Design Studio is working very slowly and hanging several times,  If I connect to the same system via Lumira it is working fast.
    Can you please suggest me what are the cautions I need to take when I connect to BW system via VPN to make my Design Studio work fast with out hanging several times on my local system.
    Thank you,
    Hari

    Hello Hari
    remember that Design Studio is a live connection and in Lumira you can use a BW offline connection which downloads the data.
    regards
    Ingo Hilgefort, Visual BI

  • Crystal Report connecting Multple ECC systems

    Hi,
    I am working on crystal where I compare the data between to two diffrent databases(ECC tables). I am using SAP Table, function mudule option to create connection.
    I have built a main report against ECC system A and imported a sub report built on ECC system B. Now I see that connection in my main report is overwrting the connection in the sub report. If I change the connection in the subreport with set data source location it changes the connection of both sub report and main report. After I deploy this report to infoview, in cmc I see only one database connection.
    Is this a bug or can we have only one connection to ECC system per one crystal report even if it has sub reports?
    Thanks

    Yes that happens automatically, I just checked the same logic with universes built against oracle data source, I could see two coonections in the CMC. Its like its there is this issue when I am connecting to sap tables directly

  • Boot Camp Assistant says There is no USB drive connected to the system

    I have a mid-2012 11” Macbook Air and a USB Superdrive. I am trying to use Boot Camp Assistant but it is not letting me proceed. With the Superdrive plugged and Windows 7 (full version) DVD in the drive, I get the message “No USB Drive” – “There is no USB drive connected to the system. Please insert a USB drive to continue.”
    I checked using Finder and Go->Computer and there is the Windows 7 installation DVD mounted properly. The Superdrive spins up when I plug it in. I tried both USB ports. I tried re-booting with the Superdrive attached. The laptop is plugged in and there is an internet connection. It is running Mac OS X 10.8.3. I read the Installation and Setup PDF guide and there was no mention of the problem. I searched these forums and found that two other people are/have experienced the same problem, but there is no posted solution.

    Randall Venhola wrote:
    At the second step in the wizard, there is a dialog with three check-boxes. The only way I can proceed is if I uncheck the option "Download the latest Windows support software from Apple". When checked, I get the "No USB drive" message. Checking or unchecking the other two options does not change the behavior ("Create a Windows 7 or later install disk" and "Install Windows 7 or later"). I have tried with the Superdrive attached with Window 7 in the drive, with a blank DVD and without the Superdrive.
    You are not following the Boot Camp instructions. Did you select the option to read the instructions? When running Boot Camp Assistant you are given the option to download the support software. If this is selected you must connect a usb stick that is correctly formatted per the instructions. At this point in the process you sshould not have your superdrive or Windows dvd connected.
    Read the instructions.

  • Steps to connect a CRM system with MDM

    Hi everybody,
    I've got a problem here : I should build a connection between a CRM system and MDM (get the data in several tables in the CRM system, normalize them in MDM and then put them back in the CRM).
    What would the steps I've got to do to achieve that ? Do I need XI between the two systems ? Do I have to map the tables before sending them in MDM (and how could I do that ?)
    Thank you for all the help you can give me
    Seb

    Hi
    The Universal Worklist (UWL) iView is part of the KMC (Knowledge Management and Collaboration), capability of SAP NetWeaver. The integration of the SAP NetWeaver MDM workflow with UWL will be provided with SP04. This will provide the ability to expose SAP NetWeaver MDM workflow steps in the SAP Universal Work List (UWL). These jobs may run from the BPM process or can be launched inform within SAP NetWeaver MDM. UWL is defined as the main consolidated ”Inbox“ for SAP users, being the main location to monitor jobs directly activated in SAP NetWeaver MDM, or connected to a process that integrates with SAP NetWeaver MDM.
    Using the SAP NetWeaver Portal UI, show a summarized list of all workflow (WF) jobs/tasks from all systems of SAP NetWeaver MDM Landscape per user - one single UI for all my tasks. The UWL is already integrated with other major SAP products, like R/3, SAP CRM, mySAP ERP, etc.
    https://sapportal.wdf.sap.corp/irj/servlet/prt/portal/prtroot/com.sap.km.cm.docs/infocenters/ws%20ptg/ptg/platform%20ecosystem/industry%20standards/projects%20and%20programs/business%20process%20management/index.html
    First of all, you must set a RFC connectivity between CRM and backend system:
    o     Create system users for remote connection (RFC_CONN). This user must have SAP_ALL authorization.
    o     Create RFC connections in CRM system.
    Go to transaction SM59 on CRM side and click on 'create' button. Set RFC destination name to the back-end system <sid>CLNT<client> (eg. R3DCLNT200), connection type to 3 (abap / R/3 connection) and fill the target host to your back-end system. On the Logon/Security tab, add the RFC_CONN user created in the previous step. Save your settings.
    o     Create RFC connections in the back-end system.
    Go to transaction SM59 on the back end and click on 'create' button. Set the RFC destination name to CRM system <sid>CLNT<client> (eg. CR1CLNT300), connection type to 3 (abap / R/3 connection) and fill in the target host to your back-end system. On the Logon/Security tab, add the RFC_CONN user created in the previous step. Save your settings.
    o     Create a logical system name in CRM.
    Go to transaction SPRO -> SAP Implementation Guide -> Customer Relationship Management -> CRMServer -> Technical Basic Settings -> ALE Settings -> Distribution -> Basic Settings -> Logical Systems -> Define Logical System Add a new value:
    Save your settngs.
    o     Create a logical system name in the back end.
    Go to transaction SPRO -> SAP Customizing Implementation Guide -> SAP Web Application Server -> Application Ling Enabling -> Sending and Receiving Systems -> Logical Systems -> Define Logical System Add a new value:
    Save your settngs.
    2.     
    3.     Middleware parameters setup Go to transaction SM30 on backend system and choose table CRMCONSUM. Add the following values:
    4.     Next, choose CRMSUBTAB for subscription table for the Up and Download Object and add the following values
    User     ObjectName     U/D     Obj. Class     Function     Obj. Type     Funct. Name
    CRM     empty     Download     Material     empty     empty     CRS_MATERIAL_EXTRACT
    CRM     empty     Download     Material     empty     empty     CRS_CUSTOMIZING_EXTRACT
    CRM     empty     Download     Material     empty     empty     CRS_SERVICE_EXTRACT
    Next, choose CRMRFCPAR for definitions of RFC Connections and add the following values
    User     ObjectName     Destination     Load Type     INFO     InQueue Flag     Send XML
    CRM     *     SR1CLNT300     Initial Download     SR1CLNT300     X     Send XML
    CRM     *     SR1CLNT300     Request     SR1CLNT300     X     Send XML
    CRM     MATERIAL     SR1CLNT300     Initial Download     SR1CLNT300     X     Send XML
    Leave all other field empty.
    Now, configure filtering for the material master:
    Choose the CRMPAROLTP table for CRM OLTP Parameters and add the following values:
    Parameter name     Param. Name 2     Param. Name 3     User     Param. Value     Param. Value 2
    CRM_FILTERING_ACTIVE     MATERIAL     empty     CRM     X     empty
    Now we must edit the table for the application indicator. Go to transaction SE16N on the back-end side and choose table TBE11. Search or add an application component BC-MID and edit activity settings (field AKTIV = X).
    Save your settings.
    8.     Enterprise buyer with/without CRM In this activity, you define whether you are running the Enterprise Buyer and CRM in the same system. This might accelerate the Master Data download performance. If you are using CRM in the client, then skip this activity.
    In the CRM system run transaction BBP_PRODUCT_SETTINGS, deselect 'Test mode' and choose the Execute button.
    The system generates a report containing all tables that have been deactivated.
    9.     Generate repository objects With this procedure, you generate the middleware function modules (BDoc Object Type) for the material master.
    Go to transaction SMOGGEN and choose object PRODUCT_MAT and PRODUCT_SRV. Generate services for all object categories.
    Please let me know your email id, i shall send you this document
    Regarsd
    Rehman
    Reward Points if Useful

  • Configuration check error: The SMD Agent is not able to connect the Satellite System (J2EE stack)

    Hi friends,
    Getting the below error in step 10 (configuration check) in managed system configuration.
    The SMD Agent is not able to connect the Satellite System (J2EE stack).
    Please check the JAVA Connect Parameters provided in the Managed System Setup Wizard for this
    System.
    java.rmi.RemoteException.P4 Connection failed -
    P4AuthorizationException -
    com.sap.smdagent.plugins.connectors.p4.exceptions.P4AuthorizationException:
    Access is denied to SAP System sid [XYZ/null]: check the connection
    credentials.More details about the error in agent 'xyz' log file
    (SMDAgentApplication.X.log).; nested exception is:
    com.sap.engine.services.security.exceptions.BaseLoginException: Cannot
    authenticate the user.
    The SMD log file referred to in the log above gives the same information and not anything much useful.
    Any idea what could be the reason for the above error?
    Thanks,
    Arindam

    Hi All,
    Thaks for your suggestions. I chcked the note 182020, but the issue described in the note is for error byte code adapter installation whcih is not my case. The byte cde adapter intallation has been successful in our solman system All the steps from 1 to 9 are green. Only in step 10, check cniguration I am getting the above error.
    The logon test wth the user id in step 3 "Enter system parameters" is successful. The message server port is also correct.
    Hi Khaja,
    I went to the links as suggestedby you but there its about a ifferent error message "Invalid Response Code: (401) Unauthorized.". I am not getting any such kind of error.
    All I am getting is this -
    The SMD Agent is not able to connect the Satellite System (J2EE stack).
    Please check the JAVA Connect Parameters provided in the Managed System Setup Wizard for this System.
    java.rmi.RemoteException.P4 Connection failed -
    P4AuthorizationException -
    com.sap.smdagent.plugins.connectors.p4.exceptions.P4AuthorizationException:
    Access is denied to SAP System sid [XYZ/null]: check the connection
    credentials.More details about the error in agent 'xyz' log file
    (SMDAgentApplication.X.log).; nested exception is:
    com.sap.engine.services.security.exceptions.BaseLoginException: Cannot
    authenticate the user.
    Thanks,
    Arindam

  • Possible to connect multiple R3/Systems to one XI?

    Hi,
    is it possible to connect mutiple R3-Systems to one XI?
    How does it work?
    Regards
    Stefan

    Stefan,
    You can certainly connect multiple R/3 systems to one XI.
    1. If your R/3 system release is 4.7 then use point 8 from the configuration guide. (RZ70 transaction collects the system data and creates a technical system in the SLD)
    2. If your R/3 system release is < 4.7 (means 46c or 46B, 40B) then you should create a technical system in the SLD.
    3. For any other SAP product with ABAP stack (including R/3 47 system), you should check the SAP_BASIS release if it is 6.20 you should apply XI Add-on to use XI Proxy adapter. For SAP_BASIS < 620 you cannot have XI Proxy adapter. For SAP_BASIS > 6.20 you do not need any add-ons (from this point onwards it is NetWeaver)
    To find SAP_BASIS release -> SPAM Transaction -> Click on Package Level.
    Then create a business systems for each one of them and import them into the Int. Directory when needed.
    Regards
    Shravan

  • How to get the health , performance information and about the services run on devices that have connected to the system center?

    Hi All,
    I want to know how to get the health , performance information and about the services run on devices that have connected to the system center to my c# application. Also I need to know about the information of databases that have connected to system center.
    I will appreciate your feedback
    Thank you

    Hi,
    You can configure service monitor for the required service on the server
    refer below link for how to configure service monitoring
    http://www.bictt.com/blogs/bictt.php/2011/03/17/scom-monitoring-a-service-part3
    You can use SCOM SDK to connect to the scom server using c# and get required information
    http://msdn.microsoft.com/en-us/library/hh329086.aspx
    you can find the database in below registry path on management server
    HKLM:\SOFTWARE\Microsoft\Microsoft Operations Manager\3.0\Setup\DatabaseName
    Regards
    sridhar v

  • Using Kerberos as a password store?

    We are looking at using Kerberos as a backend
    password store for all enterprise systems (SunOne LDAP, AD, OID/Oracle). Is it possible (via external plugin/application or other means) to have OID pass the
    authentication part off to a Kerberos server?
    It is know that we can integrate SunOne's LDAP server with OID, however, the password is actually stored in OID in this situation. That may not work if LDAP
    uses an external source for authentication (?). We also know we can integrate AD with OID. This situation causes SSO to check OID. If OID doesn't have the info, then OID passes the authentication to AD (which then goes against
    kerberos). We don't see this as a viable solution though as all users would end up in AD; We don't know if AD can handle the traffic which would be generated; We don't like the number of steps (OID -> OID to AD -> AD to Kerberos) which are needed.
    Our goal would be to directly connect OID and kerberos for authentication. Is this connection possible? Any documents which explain the process (and expectations)?

    See the following page at Roddy's iWeb for Musicians site for starters: ECommerce.
    OT

Maybe you are looking for