For the backend SAP NetWeaver ABAP system to trust the WD client certificate, it must be imported into the PSE. I am not 100% sure about this, as importing the root CA certificate should also do the trick.
Change to edit mode:
Select SSL standard server
Import WD certificate of Client PSE.
The configuration steps to be executed on the HUB system (FND) are detailed at
SAP Help. The steps are for the OData Channel Service for backend system.
Basic configuration activities:
User & Authorization
SAP Gateway to Consumer (FND to SMP3)
Creating a bgRFC destination for outbound queues
SAP Help Registering bgRFC destination for the oubound queue
SAP Help Creating bgRFC supervisor destination
SAP Gateway to SAP Backend (FND to BEP)
Create RFC on SAP Gateway (FND) to SAP backend (BEP)
Define trust between SAP Gateway and SAP backend (FND <-> BEP) SAP Help
Configure SAP backend system (BEP) to accept assertion ticket from SAP Gateway
SAP Help Configure SAP Gateway (FND) to accept assertion ticket from SAP backend (BEP)
SAP Help Configure SAP system alias for applications
SAP Help Activate SAP NetWeaver Gateway
This document explains how to execute step 4.2.
A trust relationship between IWFND and BEP is needed to allow for SSO.
No SPRO activity.
Trust relationship wizard opens
Inform a RFC destination: ECCCLNT001 (created in previous step)
Click continue. Basic connection checks are done
Basis, OData, SAP |
configuration, iwbep, iwfnd, rfc, sapgui, sm59, sso2, strust, trust |