Ansicht
Dokumentation

DIGSIG_BASIS - Basic Information for Digital Signature

DIGSIG_BASIS - Basic Information for Digital Signature

ROGBILLS - Synchronize billing plans   Vendor Master (General Section)  
This documentation is copyright by SAP AG.
SAP E-Book

The digital signature is implemented in the SAP system by means of the Basis component Digital Signatures and Encryption and is based on Secure Store and Forward (SSF) mechanisms and public-key technology.

To use the digital signature, you must configure the SSF settings for the digital signature. These settings depend on the signature method you want to use. The signature method contains the identity check of the signatory and the digital signature of the data that are sent for approval from the application. The SSF settings for the system signature are included in the standard system.

The following signature methods are available:

  • System signature after verification of the SAP user’s local password
Authentication here uses the SAP user master and the local password of the signatory. This can be the user logged on to the system or another system user. Following a successful identity check, the system provides a digital signature, whereby the name and user ID of the signatory are part of the signed document.
  • System signature after verification of the SAP user’s external password
With this signature method, the signatory identifies himself or herself with his or her SAP user ID and external password. Following a successful identity check, the system provides a digital signature, whereby the name and user ID of the signatory are part of the signed document.
  • System signature after verification of the SAP user’s TOTP password and TOTP passphrase
With this signature method, the signatory uses a process to generate limited one-time passwords (TOTP). The signatory identifies himself or herself using a TOTP password and TOTP passphrase. Following a successful identity check, the system provides a digital signature, whereby the name and user ID of the signatory are part of the signed document.
  • User signature
Authentification is done here using a security product and not the SAP user master. You must integrate the security product in your SAP system with the aid of the component SSF.
Note that you should not store the users' Personal Security Environment (PSE) in the file system, it should be stored on a smart card instead, for example. The PSE software does not fulfill the regulatory requirements for digital signatures.

You decide which signature method you want to use in Customizing for the simple signature for each type of signature object or for the signature strategy.

In addition to the Customizing activities, the digital signature (package DS in SAP_ABA) also provides a standardized programming interface with which you can integrate the digital signature in any application in an SAP system. To be able to integrate the digital signature in an application, you must first make a series of settings and include the programming interface in your application. The settings are described in detail in the Implementation Guide Digital Signature Tool. You will find this guide in Note 700495. Only then can you execute the Customizing activities required for the digital signature.

SSF Settings for System Signature

If you want to use the system signature, you need to check the default settings and change them if required. To do this, execute the following activities in Customizing under SAP NetWeaver → Application Server → System Administration → Maintain the Public Key Information for the System:

SSF Settings for User Signature

If you want to use the user signature, you must execute the activity Maintaining Application-Dependent SSF Information in Customizing under SAP NetWeaver → Application Server → System Administration → Maintain the Public Key Information for the System.

  • For more information about SSF and public-key information, see SAP NetWeaver Library under Digital Signatures and Encryption.





Addresses (Business Address Services)   rdisp/max_wprun_time - Maximum work process run time  
This documentation is copyright by SAP AG.

Length: 5353 Date: 20240523 Time: 171424     sap01-206 ( 105 ms )