-
Notifications
You must be signed in to change notification settings - Fork 23
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
x.509 certificate principal propagation #50
Comments
Hi @ottfro1, |
Dear @ottfro1, |
Dear Peter,
The blog is not helpful at all because it is a different scenario. The blog does not describe principal propagation using mTLS.
Från: Peter Gutsche ***@***.***>
Skickat: den 16 april 2024 13:10
Till: SAP-docs/btp-integration-suite ***@***.***>
Kopia: Frost, Otto ***@***.***>; Mention ***@***.***>
Ämne: Re: [SAP-docs/btp-integration-suite] x.509 certificate principal propagation (Issue #50)
Dear @ottfro1<https://github.com/ottfro1>,
Sorry for getting back to your issue with this delay.
Please let me first ask to understand your use case better.
Do you think of a setup that is described in the following blog- with API Management "talking" to SAP Cloud Integration:
SAP API Management: Discover Integration Flows fro... - SAP Community<https://community.sap.com/t5/technology-blogs-by-sap/sap-api-management-discover-integration-flows-from-cpi-tenants-and-auto/ba-p/13441919>
I am not sure if the blog already answers parts of your questions. Just let me know if this is the setup you have in mind and then I will evaluate further.
Thank you and best regards,
Peter
-
Reply to this email directly, view it on GitHub<#50 (comment)>, or unsubscribe<https://github.com/notifications/unsubscribe-auth/ASYVSHZMCUJFRT72FMIEA63Y5UBI3AVCNFSM6AAAAABEUFA3ASVHI2DSMVQWIX3LMV43OSLTON2WKQ3PNVWWK3TUHMZDANJYHAZTGMZWGM>.
You are receiving this because you were mentioned.Message ID: ***@***.******@***.***>>
|
Dear @ottfro1 |
Issue description
Dear SAP,
In our current setup - mutual ssl
API manager -> webdispatcher -> ICM SAP PO
The API manger terminates the ssl and forwards the x509 certificate to the webdispatcher as http header
the webdispatchert forwards the certificate as http header to the icm
Because of the trust setup the authentication works.
Our new scenario
API manager -> SAP CI
The API manger terminates the ssl and forwards the x509 certificate to SAP CI as http header
In sap CI - how to setup the trust so the certificate in the http header can be accepted?
The setup needs to be documented.
Feedback Type (Optional)
content gaps
Page Title on SAP Help Portal (prefilled)
Client Certificate Authentication for Integration Flow Processing
Page URL on SAP Help Portal (prefilled)
https://help.sap.com/docs/cloud-integration/sap-cloud-integration/client-certificate-authentication-for-integration-flow-processing
The text was updated successfully, but these errors were encountered: