Symptom
After enabling Elliptic Curve algorithms support in NetWeaver Application Server Java and following exception in the logs can be observed :
No connection to the directory server could be established
[EXCEPTION]
java.security.PrivilegedActionException: javax.naming.CommunicationException: <host>:<port> [Root exception is iaik.security.ssl.SSLException:
Error decoding ECDH public key: java.lang.Exception: Cannot decode EC public key. No implementation available!]
at java.security.AccessController.doPrivileged(Native Method)
at com.sap.security.core.persistence.datasource.imp.LDAPDataSourceConnectionPool$Connector.run(LDAPDataSourceConnectionPool.java:1115)
at com.sap.security.core.persistence.datasource.imp.LDAPDataSourceConnectionPool$Connector$1.run(LDAPDataSourceConnectionPool.java:1117)
... more
Caused by: iaik.security.ssl.SSLException: Error decoding ECDH public key: java.lang.Exception: Cannot decode EC public key. No implementation available!
at iaik.security.ssl.ao.a(SourceFile:452)
at iaik.security.ssl.n.b(SourceFile:1145)
at iaik.security.ssl.n.a(SourceFile:1569)
at iaik.security.ssl.y.d(SourceFile:798)
at iaik.security.ssl.SSLTransport.startHandshake(SourceFile:592)
at iaik.security.ssl.SSLTransport.getInputStream(SourceFile:679)
at iaik.security.ssl.SSLSocket.getInputStream(SourceFile:417)
at com.sun.jndi.ldap.Connection.<init>(Connection.java:221)
Read more...
Environment
NetWeaver Application Server Java
Product
Keywords
ECC, SSLContext.properties, Elliptic Curve, TLS1.2, SSL, EC public key , KBA , BC-JAS-SEC , Security, User Management , Problem
About this page
This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).Search for additional results
Visit SAP Support Portal's SAP Notes and KBA Search.