logo

Are you need IT Support Engineer? Free Consultant

Your Questions Answered: Managing Certificates in …

  • By Sanjay
  • 20/05/2026
  • 6 Views


What a great start to our 2026 Partner Enablement series! So far this May, the SAP Business One Support Organization has hosted three webinars, and the response has been phenomenal. With nearly 600 partners joining us live from around the globe, we are truly humbled, surprised, and encouraged by your engagement and eagerness to learn. 

The series was created to share practical knowledge built from the real-world cases and common issues we see every day. During these live events, the Q&A portion is often as insightful as the presentation itself, but these valuable discussions don't always make it into the final recordings. 

That’s why we’re here today. To ensure everyone benefits, we've compiled all the questions asked during our recent Session #10 – Managing certificates in SAP Business One. 

If you missed the session or want a refresher, you can find the recording and materials for all ten delivered sessions in our central KBA: 3525031 – Central KBA for Partner Enablement Sessions. 

Now, let's dive into your questions. 

Q&A

Q: How is SAP preparing now that SSL is jumping on a stage where certificates will last (even) less than 100 days at some point? 

A: Solution management is evaluating current options.  

 

Q: Are certificates used with developed Add-ons? 

A: It depends what technology is used. SL requires a valid certificate while DI API and UI API do not require it.  

 

Q: Is there a way to update it via .p12 on the SAP business One on prem  directory  not reconfiguration?  Like SAP Business One Browser Access service you can easily update it by overwriting the certificate then restart the services SAP BAS then it will be renewed.  

A: Certificates can be updated in all necessary places with the reconfiguration wizard or manually in each component. 

 

Q: SAP Business One mobile app need ssl certificate? Does Ssl certificate need vpn to be working? 

A: VPN are 3rd party product so this question is rather for VPN providers. Mobile apps require a valid certificate. 

 

Q: How many levels need to be present in a chain? 

A: This is question for CA authorities. 

 

Q: Will we be able to use certificates that have a valid period of more then 2 years? 

A: The conditions for valid certificates are defined by CA authorities. Current trend is shortening the validity period. 

 

Q: Why is service layer ssl in form of (crt  , key) instead of using keystore like sld service, is it related to using apache httpd vs tomcat? 

A: Service layer is build with different technology, it is not a java solution like SLD. 

 

Q: Can we use different certificates for different SAP components? ex. Service Layer different than SLD. 

A: Reconfiguration wizard allows you to import only one certificate. Having different certificates for different B1 services would require manual certificate installation. 

 

Q: Can SSL expiration be captured from the RSP studio? 

A: It would require to build an own scenario. 

 

Q: Do you have more information in notes where the actions are listed to properly provide certificates in order to enable certificate validation?  

A: We have several notes regarding certificates, most of them are mentioned in this session presentation. Please see KBA above for slides.  

 

Q: Is there a way to update the ssl of SLD and Authentication Service without reconfiguring SAP Business One Server Components? Like overwriting the file then restart the services.  

A: Manual certificate installation.  

 

Q: Can we use SBO-mailer to email out alert/warnings about SSL expiry dates? 

A: There is no such a functionality at the moment.  

 

Q: Will SAP implement support for Let’s Encrypt or similar services? 

Q: There's a way to auto-renew certificates within the valid period or use Let's Encrypt? using any tool like certbot, acme, etc? 

A: The possible solutions are evaluated by the solution management. 

 

Q: On HANA, you mentioned that all SAP components must be installed on FQDN – So I have an instance where that is done, however the HANA Hostname is different but the DNS is added to the SAN but it gives validity issues, do you recommend we build the HANA box with the DNS rather? 

A: Hana server also have to have FQDN. 

What's Next? Your Guide to SAP Business One Support Resources 

We hope this Q&A provides the clarity you were looking for. As we continue our webinar series, we are already in the early stages of preparing for our next topic: a deep dive into the Service Layer. This highly anticipated session will be delivered by the expert SDK team under Product Area Lead Balaji Sivaramakrishnan. This is for partners and partner register for free here → SAP Partner Portal | Upcoming Partner Session Delivered by SAP Business One Support Team

In the meantime, don’t forget to leverage these valuable support channels to find answers and stay connected: 

  • The Support Spotlight Blogs: Looking for more tips, tricks, and deep dives from our team? Find our full collection of articles here: Tips from SAP Business One Support. 
  • SAP Business One Community: Have a question or want to share your expertise? Keep the conversation going and interact with peers and experts in the  SAP Business One Community. 

Thank you for your continued partnership and engagement. We look forward to seeing you at the next session 



Source link

Leave a Reply

Your email address will not be published. Required fields are marked *