Central note for WS Security on 7.10

[] [] [] []

Symptom
This notes describes issues related to security processing for Web service messages.
Reason and Prerequisites
With 710 SP6 or lower:
You receive error message: CX_SY_MESSAGE_IN_PLUGIN_MODE:Message E 1S 110You receive canonicalization errors.
With 710 SP8 or lower:
You are using ESR services generated with 6.40 or 7.00 < SP14 and have issues with authorization checks. Due to changed services names, [...]

Central note for WS Security on 7.00

[] [] [] []

Symptom
This notes describes issues related to security processing for Web service messages.
Reason and Prerequisites
With 700:
You receive error message: CX_SY_MESSAGE_IN_PLUGIN_MODE:Message E 1S 110You receive canonicalization errors.You are using ESR services generated with 6.40 or 7.00 < SP14 and have issues with authorization checks. Due to changed services names, existing roles using old service names [...]

SAPCRYPTOLIB 555pl26: bugfixes and WS-Security update

[] [] [] [] [] [] [] [] [] [] [] []

Symptom
SAPCRYPTOLIB bugfixes and WS-Security Update
The following covers changes for pl25 (SAP-internal only) plus pl26:
1. New: Additional functionality required by SAP WebServicesSecurity2. Fix for crash in SSL-Server (icman/sapwebdisp) when trying to use an SSL-Server certificate that has a keyUsage without digitalSignature.3. Fix for crash when processing certificates with empty structures in CertificatePolicy attributes.4. Fix for [...]

Central note for WS Security on 7.11

[] [] []

Symptom
This notes describes issues related to security processing for Web service messages.
Reason and Prerequisites
With 7.11 SP1:
You are using ESR services generated with 6.40 or 7.00 < SP14 and have issues with authorization checks. Due to changed services names, existing roles using older service names may not be correct. Corrected per note.Solution
ABAP Kernel 711_REL
ST22 [...]

WS Security processing improvements

[] [] [] []

Symptom
WS Security has the following processing issues:
1) Timestamps in the wsse:Security header containig milliseconds are sporadically rejected due to rounding errors.
2) Secure Conversation fails sporadically, as the system could not connect to shared memory in a timely fashon.
3) Unsufficient error messages, when signature verification failed.
4) X.509 XML Signature: In addition to a BinarySecurityToken, a [...]