Symptom
After enabling Elliptic Curve algorithms support in NetWeaver Application Server Java and following exception in the logs can be observed :
No connection to the directory server could be established
[EXCEPTION]
java.security.PrivilegedActionException: javax.naming.CommunicationException: <host>:<port> [Root exception is iaik.security.ssl.SSLException:
Error decoding ECDH public key: java.lang.Exception: Cannot decode EC public key. No implementation available!]
at java.security.AccessController.doPrivileged(Native Method)
at com.sap.security.core.persistence.datasource.imp.LDAPDataSourceConnectionPool$Connector.run(LDAPDataSourceConnectionPool.java:1115)
at com.sap.security.core.persistence.datasource.imp.LDAPDataSourceConnectionPool$Connector$1.run(LDAPDataSourceConnectionPool.java:1117)
... more
Caused by: iaik.security.ssl.SSLException: Error decoding ECDH public key: java.lang.Exception: Cannot decode EC public key. No implementation available!
at iaik.security.ssl.ao.a(SourceFile:452)
at iaik.security.ssl.n.b(SourceFile:1145)
at iaik.security.ssl.n.a(SourceFile:1569)
at iaik.security.ssl.y.d(SourceFile:798)
at iaik.security.ssl.SSLTransport.startHandshake(SourceFile:592)
at iaik.security.ssl.SSLTransport.getInputStream(SourceFile:679)
at iaik.security.ssl.SSLSocket.getInputStream(SourceFile:417)
at com.sun.jndi.ldap.Connection.<init>(Connection.java:221)
Read more...
Environment
NetWeaver Application Server Java
Product
Keywords
ECC, SSLContext.properties, Elliptic Curve, TLS1.2, SSL, EC public key , KBA , BC-JAS-SEC , Security, User Management , Problem
About this page
This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).Search for additional results
Visit SAP Support Portal's SAP Notes and KBA Search.
SAP Knowledge Base Article - Preview