Skip to Content
author's profile photo Former Member
Former Member

IF_HTTP_CLIENT->RECEIVE 1 ICM_HTTP_SSL_ERROR

Dear,

I have an issue with the SSL connectivity in tcode OAC0.

When I send the certificate it gives me the "Certificate sent succesfully"

When I try to test the connection though, it gives me:

Error in HTTP Access: IF_HTTP_CLIENT->RECEIVE 1 ICM_HTTP_SSL_ERROR

I got a bit stuck on this as all the ssl is configured

Any ideas what to check (or check again)

Add a comment
10|10000 characters needed characters exceeded

Related questions

2 Answers

  • author's profile photo Former Member
    Former Member
    Posted on Nov 09, 2011 at 12:43 PM

    more information on this issue:

    [Thr 5016] >> -


    Begin of Secude-SSL Errorstack -


    >>

    [Thr 5016] ERROR in ssl3_get_server_certificate: (9/0x0009) the verification of the server's certificate chain failed

    ERROR in af_verify_Certificates: (27/0x001b) Chain of certificates is incomplete : "CN=Certificate Manager, OU=Active HS e-Servi

    ERROR in get_path: (27/0x001b) Found root certificate of <CN=Certificate Manager, OU=Active HS e-Services, O=***, L=Ap

    ERROR in verify_with_PKs: (27/0x001b) Found root certificate of <CN=Certificate Manager, OU=Active HS e-Services, O=***, L=Ap

    [Thr 5016] << -


    End of Secude-SSL Errorstack -


    [Thr 5016] SSL_get_state() returned 0x00002131 "SSLv3 read server certificate B"

    [Thr 5016] SSL NI-sock: local=<SAP IP adress>:3619 peer=<server IP adres>:8090

    [Thr 5016] <<- ERROR: SapSSLSessionStart(sssl_hdl=000000000055B930)==SSSLERR_SSL_CONNECT

    [Thr 5016] *** ERROR => IcmConnInitClientSSL: SapSSLSessionStart failed (-57): SSSLERR_SSL_CONNECT [icxxconn.c 2031]

    [Thr 5384] Wed Nov 09 11:24:00 2011

    [Thr 5384] *** ERROR during SecudeSSL_SessionStart() from SSL_connect()==SSL_ERROR_SSL

    [Thr 5384] session uses PSE file "E:\usr\sap\***\DVEBMGS00\sec\SAPSSLC.pse"

    [Thr 5384] SecudeSSL_SessionStart: SSL_connect() failed --

    secude_error 9 (0x00000009) = "the verification of the server's certificate chain failed"

    [Thr 5384] >> -


    Begin of Secude-SSL Errorstack -


    >>

    [Thr 5384] ERROR in ssl3_get_server_certificate: (9/0x0009) the verification of the server's certificate chain failed

    ERROR in af_verify_Certificates: (27/0x001b) Chain of certificates is incomplete : "CN=Certificate Manager, OU=Active HS e-Servi

    ERROR in get_path: (27/0x001b) Found root certificate of <CN=Certificate Manager, OU=Active HS e-Services, O=****, L=Ap

    ERROR in verify_with_PKs: (27/0x001b) Found root certificate of <CN=Certificate Manager, OU=Active HS e-Services, O=****, L=Ap

    [Thr 5384] << -


    End of Secude-SSL Errorstack -


    Add a comment
    10|10000 characters needed characters exceeded

  • Posted on Nov 09, 2011 at 02:43 PM

    Hi,

    When I try to test the connection though, it gives me:

    Error in HTTP Access: IF_HTTP_CLIENT->RECEIVE 1 ICM_HTTP_SSL_ERROR

    Please check your content server is running or not. Also check in IIS -> properties and ensure full permission is given to all users.

    Also check the following link for your issue.

    Setup of content server: IF_HTTP_CLIENT->RECEIVE 1 ICM_HTTP_SSL_ERROR

    Hope this helps,

    Regards,

    Deepak Kori

    Edited by: deepakkori on Nov 9, 2011 8:23 PM

    Add a comment
    10|10000 characters needed characters exceeded

Before answering

You should only submit an answer when you are proposing a solution to the poster's problem. If you want the poster to clarify the question or provide more information, please leave a comment instead, requesting additional details. When answering, please include specifics, such as step-by-step instructions, context for the solution, and links to useful resources. Also, please make sure that you answer complies with our Rules of Engagement.
You must be Logged in to submit an answer.

Up to 10 attachments (including images) can be used with a maximum of 1.0 MB each and 10.5 MB total.