Symptom
HTTP requests are unexpectedly allowed or denied due to unclear evaluation order between generic and system-specific icm/HTTP/auth_<xx> permfiles.
For example you define generic and system-specific permfiles :
- icm/HTTP/auth_0=PREFIX=/,PERMFILE=permfile1.txt,FILTER=SAP
- icm/HTTP/auth_1=PREFIX=/,PERMFILE=permfile2.txt,FILTER=SAP,SYSTEM=ALX
where permfile1.txt contains,
P * * *
and permfile2.txt contains,
D /sap/public/ping/deny
P * * *
You would like to know how the rules in the permfiles are evaluated.
Read more...
Environment
- SAP NetWeaver
- SAP NetWeaver Application Server for SAP S/4HANA
- ABAP PLATFORM - Application Server ABAP
- Operating System independent
- Database independent
Product
ABAP platform all versions ; SAP NetWeaver all versions ; SAP Web Application Server for SAP S/4HANA all versions ; SAP Web Dispatcher 7.93
Keywords
access restrictions in SAP Web Dispatcher, allow list, block list , KBA , BC-CST-IC , Internet Communication Manager , BC-CST-WDP , Web Dispatcher , How To
About this page
This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).Search for additional results
Visit SAP Support Portal's SAP Notes and KBA Search.
SAP Knowledge Base Article - Preview