cancel
Showing results for 
Search instead for 
Did you mean: 

XI3.1 WebIntelligence SSO with SAP BW and Sun Directory Server.

Former Member
0 Kudos

Dear Experts,

We are trying to achieve Single Sign On from Business Objects Infoview to SAP BW/BI systems so that users can log into Infoview with their Sun Directory Server Ldap account and still be able to refresh and use reports based on SAP BW queries/universes.

I have followed all the configurations for Server Side Trust on SAP and BOE systems(as perBusinessObjects XI Integration for SAP Solutions Installation and Administration Guide), imported the roles, aliased SAP users with their Sun Ldap Account in CMC.

I followed the http://wiki.sdn.sap.com/wiki/display/BOBJ/HowtosetupXI3.1WebIntelligenceSSOwithSAPBW

for the configuration. I didn't get error message during any of the configuration steps.

Still getting "Database Error Occurred: UNABLE TO CONNECT SAP BW SERVER INCOMPLETE LOGON DATA" when I try to run a report based on a Universe (based on SAP BW query and which is set to "Use SSO while refreshing report at view time" in the connection parameters)

I am able to log into Infoview with Sun Ldap authentication and i cannot refresh the report.

BOE server: Windows 2008 32bit

BOE XI 3.1 SP2 Hot fix 2.5

SAP Integration Kit SP2 Hot fix 2.5

Enabled SAP Authentication

Configured SAP and BOE Server Side Trust

Imported roles and aliased Users

Is there any troubleshooting methods for sun directory server ldap accomplisment identify the issue behind? In WinAD case we were able to login with domain user and check snc settings in this case what can we do. I have checked some entries on this in the forum, please let me know if somebody has a solution.

Thanks,

Said Bilgen

Accepted Solutions (0)

Answers (1)

Answers (1)

IngoH
Active Contributor
0 Kudos

Hi,

in a scenario where you trying to authenticate the user with LDAP and still achieve SSO to your SAP system you will have to configure SNC on your BusinessObjects landscape. Has SNC been configured ?

thanks

ingo

Former Member
0 Kudos

Hi ingo actually we have followed all the step's pre mentioned but i have doubts about sun directory server since i dont have test environment for "sapgenpse seclogin -p BOE31.pse -l" command.

But in this situations like sun or oracle i think there are other method's to achieve.

Im really looking forward to gain that knowledge.

Thanks Regards.

IngoH
Active Contributor
0 Kudos

if you want to combine LDAP with SAP authentication you will have to deploy SNC as part of the environment.

regards

Ingo

Former Member
0 Kudos

Hello,

In the below statement i think i already supplied snc to my artitechture. Do you have any other snc solution rather than sap crypto?

"To enable server-side trust for BusinessObjects Enterprise using the free

SAP crypto library, you must run the relevant servers under credentials that

are authenticated using a registered Secure Network Communication (SNC)

provider. These credentials are configured within SAP to be allowed to

impersonate without a password. For BusinessObjects Enterprise, you need

to run the servers involved in report-bursting under these SNC credentials,

such as the Crystal Reports Job Server."

IngoH
Active Contributor
0 Kudos

Hi,

so you environment - SAP and BusinessObjects Enterprise - have been configured with SNC ?

ingo

Former Member
0 Kudos

Yes. It is.

I am sorry guys. I did not mean to post this message here..

Edited by: AG on Apr 21, 2010 10:20 PM

Former Member
0 Kudos

Yes Absolutely.

IngoH
Active Contributor
0 Kudos

Hi,

then I would suggest you take screenshots from all the configurations you did and post a document here.

Ingo

Former Member
0 Kudos

its ok we have solved problem with . sap note and adding user to pse file.