SAP Enterprise Portal Reencrypted
- Last Updated: June 24, 2024
- 2 minute read
- LoadMaster
- LoadMaster GA
- Documentation
To configure a reencrypted Virtual Service for SAP Enterprise Portal, follow the steps below:
- In the main menu of the LoadMaster WUI, go to Virtual Services > Add New.
- Enter a Virtual Address.
- Enter 50001 in the Port text box.Note: The port may differ depending on the SAP Portal environment. To ensure you use the correct port, consult your SAP administrator.
- Enter a recognisable Service Name, for example SAP Enterprise Portal Reencrypt.
- Ensure that tcp is set as the Protocol.
- Click Add This Virtual Service.
- Configure the settings as shown in the following table:Note: * Information about managing LoadMaster certificates can be found in the SSL Accelerated Services, Feature Description.
Section
Option
Value
Comment Basic Properties Service Type HTTP/HTTPS SSL Properties SSL Acceleration Enabled Reencrypt Enabled Certificates Select the certificate previously imported. Click the > button to assign the certificate. * Require SNI hostname Disabled Supported Protocols TLS1.1, TLS1.2, and TLS1.3 enabled Client Certificates No Client Certificates required Standard Options
Persistence Mode Active Cookie Persistence Timeout 8 Hours Cookie name Enter a unique cookie name. Click Set Cookie. Idle Connection Timeout 1800 Click Set Idle Timeout. Real Servers
Real Server Check Method HTTPS Protocol Use HTTP/1.1 Enabled HTTP Method HEAD - Add the Real Servers:
- Click the Add New button.
- Enter the Real Server Address.
- Enter the correct Port.Note: Please use the IP Address and Port of the backend server.Note: The Forwarding method and the Weight values are set, by default, to those shown in the above image. If required these settings may be altered.
- Click Add this Real Server.
- Repeat steps b) to d) above to add any
additional Real Servers as needed, based on environment.
- Set the Reencryption Client Certificate to be used in the Virtual
Service:Note: Reencyption Client Certificate is the client certificate the LoadMaster presents when connecting to an HTTPS Real Server. This is only needed if the Real Server requires it.
- In the main menu of the LoadMaster WUI, go to Certificates & Security > SSL Certificates.
- Click the Reencryption Usage button for the client certificate installed earlier.
- Select the IP Address for the CRM Virtual Service and click the > button to move the IP address to the Assigned VSs box.
- Click Save Changes.