SAP Knowledge Base Article - Preview

3703837 - Evaluation Order of icm/HTTP/auth_<xx>

Symptom

HTTP requests are unexpectedly allowed or denied due to unclear evaluation order between generic and system-specific icm/HTTP/auth_<xx> permfiles.

For example you define generic and system-specific permfiles :

  • icm/HTTP/auth_0=PREFIX=/,PERMFILE=permfile1.txt,FILTER=SAP
  • icm/HTTP/auth_1=PREFIX=/,PERMFILE=permfile2.txt,FILTER=SAP,SYSTEM=ALX

where permfile1.txt contains,

P * * *

and permfile2.txt contains,

D /sap/public/ping/deny
P * * *

You would like to know how the rules in the permfiles are evaluated.


Read more...

Environment

  • SAP NetWeaver                                              
  • SAP NetWeaver Application Server for SAP S/4HANA      
  • ABAP PLATFORM - Application Server ABAP                    
  • Operating System independent
  • Database independent

Product

ABAP platform all versions ; SAP NetWeaver all versions ; SAP Web Application Server for SAP S/4HANA all versions ; SAP Web Dispatcher 7.93

Keywords

access restrictions in SAP Web Dispatcher, allow list, block list , KBA , BC-CST-IC , Internet Communication Manager , BC-CST-WDP , Web Dispatcher , How To

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.