SAP Knowledge Base Article - Public

2595177 - Unable to Access SAP Business ByDesign With SSO Using Safari on MacOS

Symptom

"Image/data in this KBA is from SAP internal systems, sample data, or demo systems. Any resemblance to real data is purely coincidental."

When you try to access the SAP Business ByDesign system through SSO login using Safari browser you receive an error message:

Safari Can't Open the Page https://myXXXXXX-sso.sapbydesign.com because Safari can't establish a secure connection to the server myXXXXXX-sso.sapbydesign.com.

safari_error.jpg

 

 

 

 

Environment

SAP Business ByDesign

Reproducing the Issue

  1. Open Safari browser
  2. Type the URL from your system with SSO enabled: https://myXXXXXX-sso.sapbydesign.com
  3. You will see the error message

Cause

The issue is due to trust between Safari, Business ByDesign (BYD) system and the Identity Provider (IDP) server. BYD system is using DigiCert Baltimore CA and IDP server is using Entrust (or another one) as CA.

Resolution

You need to add the certificates from BYD system and IDP server to the Keychain to allow the access with Safari.

Keywords

Safari, SSO, MacOS , KBA , sso , apple , mac , SRD-CC-IAM , Identity & Access Management , Problem

Product

SAP Business ByDesign all versions