{"id":142007,"date":"2024-04-29T08:30:03","date_gmt":"2024-04-29T06:30:03","guid":{"rendered":"http:\/\/e3mag.com\/?p=142007"},"modified":"2024-07-08T04:12:25","modified_gmt":"2024-07-08T02:12:25","slug":"security-for-the-sap-landscape-2","status":"publish","type":"post","link":"https:\/\/e3mag.com\/en\/security-for-the-sap-landscape-2\/","title":{"rendered":"Security for the SAP landscape"},"content":{"rendered":"<p>The second EU Network and Information Security Directive (NIS 2 Directive) was published on December 27, 2022. Member states must transpose the directive into national law by October 2024. With the <a href=\"https:\/\/digital-strategy.ec.europa.eu\/de\/library\/cyber-resilience-act\" target=\"_blank\" rel=\"noreferrer noopener\">Cyber <\/a><a href=\"https:\/\/digital-strategy.ec.europa.eu\/de\/policies\/cyber-resilience-act\" target=\"_blank\" rel=\"noreferrer noopener\">Resilience<\/a><a href=\"https:\/\/digital-strategy.ec.europa.eu\/de\/library\/cyber-resilience-act\" target=\"_blank\" rel=\"noreferrer noopener\"> Act<\/a> of the European Union, regulations for the use of products and software with a digital component are to be harmonized. There is a requirement for due diligence for the entire life cycle of such solutions.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><strong>Suse ensures security with BSI certification<\/strong><\/h2>\n\n\n\n\n\n\n\n<p>Suse Linux Enterprise Server (SLES) and thus the Suse Linux Enterprise Server for SAP Applications (SLES for SAP) has been released in 2021 by the <a href=\"https:\/\/www.bsi.bund.de\/DE\/Das-BSI\/Auftrag\/Gesetze-und-Verordnungen\/NIS-Richtlinie\/nis-richtlinie_node.html\" target=\"_blank\" rel=\"noreferrer noopener\">Federal Office for Information Security<\/a> (BSI) received the Common Criteria EAL 4+ certification. This was based on a comprehensive evaluation of the product and all development and security update processes by atsec information security and BSI officials. The Evaluation Assurance Level 4 Augmented by ALC_FLR.3 (EAL4+) confirms that SLES meets the highest security requirements for the product and the entire supply chain for mission-critical infrastructures - on x86 as well as IBM Z and Arm architectures.<\/p><div id=\"great-2620410882\" class=\"great-fullsize-content-en\" style=\"margin-bottom: 20px;\"><a data-no-instant=\"1\" href=\"https:\/\/www.youtube.com\/watch?v=6ZGXMPyM-nU\" rel=\"noopener\" class=\"a2t-link\" target=\"_blank\" aria-label=\"banner_26-04_29_1200x150\"><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/e3mag.com\/wp-content\/uploads\/2026\/03\/banner_26-04_29_1200x150-1.jpg\" alt=\"\"  srcset=\"https:\/\/e3mag.com\/wp-content\/uploads\/2026\/03\/banner_26-04_29_1200x150-1.jpg 1200w, https:\/\/e3mag.com\/wp-content\/uploads\/2026\/03\/banner_26-04_29_1200x150-1-400x50.jpg 400w, https:\/\/e3mag.com\/wp-content\/uploads\/2026\/03\/banner_26-04_29_1200x150-1-768x96.jpg 768w, https:\/\/e3mag.com\/wp-content\/uploads\/2026\/03\/banner_26-04_29_1200x150-1-100x13.jpg 100w, https:\/\/e3mag.com\/wp-content\/uploads\/2026\/03\/banner_26-04_29_1200x150-1-480x60.jpg 480w, https:\/\/e3mag.com\/wp-content\/uploads\/2026\/03\/banner_26-04_29_1200x150-1-640x80.jpg 640w, https:\/\/e3mag.com\/wp-content\/uploads\/2026\/03\/banner_26-04_29_1200x150-1-720x90.jpg 720w, https:\/\/e3mag.com\/wp-content\/uploads\/2026\/03\/banner_26-04_29_1200x150-1-960x120.jpg 960w, https:\/\/e3mag.com\/wp-content\/uploads\/2026\/03\/banner_26-04_29_1200x150-1-1168x146.jpg 1168w, https:\/\/e3mag.com\/wp-content\/uploads\/2026\/03\/banner_26-04_29_1200x150-1-18x2.jpg 18w, https:\/\/e3mag.com\/wp-content\/uploads\/2026\/03\/banner_26-04_29_1200x150-1-600x75.jpg 600w\" sizes=\"(max-width: 1200px) 100vw, 1200px\" width=\"1200\" height=\"150\"  style=\" max-width: 100%; height: auto;\" \/><\/a><\/div>\n\n\n\n<h2 class=\"wp-block-heading\"><strong>\"Certify once, use many\"<\/strong><\/h2>\n\n\n\n\n\n\n\n<p>Suse follows the Certify once, use many principle when certifying its operating system products. This means that the <a href=\"https:\/\/www.suse.com\/c\/de\/suse-und-zertifizierungen-standards-auf-die-sich-anwender-verlassen-koennen\/\" target=\"_blank\" rel=\"noreferrer noopener\">Certified safety and standards from SLES<\/a> can also be transferred to SLE Micro and SLE BCI (Base Container Images) thanks to the common code base. Customers can rely on independently evaluated security when using these variants. This makes it easier to meet compliance requirements for their entire IT. Organizations also achieve a consistently high level of security in the supply chain when operating edge applications with SLE Micro and when deploying containerized workloads with SLE BCI.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><strong>Suse technologies for SAP security operating concept<\/strong><\/h2>\n\n\n\n\n\n\n\n<p>It is important to be able to react quickly to vulnerabilities on the SAP platform, both for SAP application servers and SAP database servers. Suse provides \"Kernel Live Patching\", which can be used to quickly close vulnerabilities in the Linux kernel. With \"Disc Remote Encryption\", SAP Gana data can be encrypted and backed up on the disc. The expansion in the encryption of communication between RAM and CPU was achieved with Intel in the context of confidential computing.<\/p>\n\n\n\n<p>Furthermore, a local firewall is provided for SAP Hana to improve network security. This is achieved by only opening network ports to external network interfaces that SAP Hana really needs. The Suse Hardening Guide for SLES for SAP Applications 15 provides instructions on which settings can be made and which technologies can be used to increase the hardening level of the Linux platform.<\/p>\n\n\n\n<p>In addition to the pure patch management function (Dev-Test-Prod), the Suse Manager also provides the option of analyzing the status with regard to the CVE situation for the Linux platform (Suse Manager Audit). This means that a CVE gap can be closed promptly with live patching by automatically rolling out the patch via the Suse Manager production channel. Scanning the implementation is possible with OpenScap from the Suse Manager.<\/p>\n\n\n\n<div class=\"wp-block-stackable-divider stk-block-divider stk-block stk-daa3e09\" data-block-id=\"daa3e09\"><hr class=\"stk-block-divider__hr\"\/><\/div>\n\n\n\n<p>Further reading:<\/p>\n\n\n\n<div class=\"wp-block-group is-vertical is-layout-flex wp-container-core-group-is-layout-8cf370e7 wp-block-group-is-layout-flex\">\n<p><a href=\"https:\/\/digital-strategy.ec.europa.eu\/de\/policies\/cyber-resilience-act\" target=\"_blank\" rel=\"noreferrer noopener\">EU Cyber Resilience Act (EU law on cyber resilience) | Shaping Europe's digital future<\/a><\/p>\n\n\n\n<p><a href=\"https:\/\/www.bsi.bund.de\/DE\/Das-BSI\/Auftrag\/Gesetze-und-Verordnungen\/NIS-Richtlinie\/nis-richtlinie_node.html\" target=\"_blank\" rel=\"noreferrer noopener\">BSI - NIS Guideline (bund.de)<\/a><\/p>\n\n\n\n<p><a href=\"https:\/\/www.suse.com\/c\/de\/suse-und-zertifizierungen-standards-auf-die-sich-anwender-verlassen-koennen\/\" target=\"_blank\" rel=\"noopener\">SUSE and certifications: Standards users can rely on | SUSE Communities<\/a><\/p>\n\n\n\n<p><a href=\"https:\/\/documentation.suse.com\/sbp\/sap-15\/html\/OS_Security_Hardening_Guide_for_SAP_HANA_SLES15\/index.html\" target=\"_blank\" rel=\"noreferrer noopener\">SUSE Linux Enterprise Server for SAP Applications 15 GA, SP1 | Operating System Security Hardening Guide for SAP HANA for SUSE Linux Enterprise Server 15 GA and SP1<\/a><\/p>\n\n\n\n<p><a href=\"https:\/\/www.suse.com\/support\/security\/certifications\/\" target=\"_blank\" rel=\"noopener\">Enterprise Linux Security Certifications and Features | SUSE<\/a><\/p>\n<\/div>\n\n\n\n<div class=\"wp-block-stackable-divider stk-block-divider stk-block stk-fabb103\" data-block-id=\"fabb103\"><hr class=\"stk-block-divider__hr\"\/><\/div>\n\n\n\n<p>Click here for the partner entry:<\/p>\n\n\n<div class=\"wp-block-image\">\n<figure class=\"alignleft size-full is-resized\"><a href=\"https:\/\/e3mag.com\/de\/partners\/suse-linux-gmbh\/\" target=\"_blank\" rel=\"noreferrer noopener\"><img loading=\"lazy\" decoding=\"async\" width=\"722\" height=\"172\" src=\"https:\/\/e3mag.com\/wp-content\/uploads\/2024\/04\/suse-logo.jpg\" alt=\"\" class=\"wp-image-142008\" style=\"width:424px;height:auto\" srcset=\"https:\/\/e3mag.com\/wp-content\/uploads\/2024\/04\/suse-logo.jpg 722w, https:\/\/e3mag.com\/wp-content\/uploads\/2024\/04\/suse-logo-400x95.jpg 400w, https:\/\/e3mag.com\/wp-content\/uploads\/2024\/04\/suse-logo-100x24.jpg 100w, https:\/\/e3mag.com\/wp-content\/uploads\/2024\/04\/suse-logo-480x114.jpg 480w, https:\/\/e3mag.com\/wp-content\/uploads\/2024\/04\/suse-logo-640x152.jpg 640w, https:\/\/e3mag.com\/wp-content\/uploads\/2024\/04\/suse-logo-720x172.jpg 720w, https:\/\/e3mag.com\/wp-content\/uploads\/2024\/04\/suse-logo-18x4.jpg 18w, https:\/\/e3mag.com\/wp-content\/uploads\/2024\/04\/suse-logo-600x143.jpg 600w\" sizes=\"auto, (max-width: 722px) 100vw, 722px\" \/><\/a><\/figure>\n<\/div>","protected":false},"excerpt":{"rendered":"<p>The NIS2 Directive and the Cyber Resilience Act are the responses<br \/>\nto the increasing number of cyberattacks. It is helpful here,<br \/>\nto rely on the BSI-certified Suse Linux platform for SAP.<\/p>","protected":false},"author":10,"featured_media":142009,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"pmpro_default_level":"","footnotes":""},"categories":[7,24,43945],"tags":[],"coauthors":[25625],"class_list":["post-142007","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-meinung","category-linux","category-mag-24-05","pmpro-has-access"],"acf":[],"featured_image_urls_v2":{"full":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/04\/2405-54-Suse.jpg",1000,450,false],"thumbnail":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/04\/2405-54-Suse-150x150.jpg",150,150,true],"medium":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/04\/2405-54-Suse-400x180.jpg",400,180,true],"medium_large":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/04\/2405-54-Suse-768x346.jpg",768,346,true],"large":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/04\/2405-54-Suse.jpg",1000,450,false],"image-100":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/04\/2405-54-Suse-100x45.jpg",100,45,true],"image-480":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/04\/2405-54-Suse-480x216.jpg",480,216,true],"image-640":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/04\/2405-54-Suse-640x288.jpg",640,288,true],"image-720":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/04\/2405-54-Suse-720x324.jpg",720,324,true],"image-960":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/04\/2405-54-Suse-960x432.jpg",960,432,true],"image-1168":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/04\/2405-54-Suse.jpg",1000,450,false],"image-1440":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/04\/2405-54-Suse.jpg",1000,450,false],"image-1920":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/04\/2405-54-Suse.jpg",1000,450,false],"1536x1536":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/04\/2405-54-Suse.jpg",1000,450,false],"2048x2048":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/04\/2405-54-Suse.jpg",1000,450,false],"trp-custom-language-flag":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/04\/2405-54-Suse-18x8.jpg",18,8,true],"bricks_large_16x9":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/04\/2405-54-Suse.jpg",1000,450,false],"bricks_large":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/04\/2405-54-Suse.jpg",1000,450,false],"bricks_large_square":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/04\/2405-54-Suse.jpg",1000,450,false],"bricks_medium":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/04\/2405-54-Suse-600x270.jpg",600,270,true],"bricks_medium_square":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/04\/2405-54-Suse-600x450.jpg",600,450,true],"profile_24":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/04\/2405-54-Suse-24x24.jpg",24,24,true],"profile_48":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/04\/2405-54-Suse-48x48.jpg",48,48,true],"profile_96":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/04\/2405-54-Suse-96x96.jpg",96,96,true],"profile_150":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/04\/2405-54-Suse-150x150.jpg",150,150,true],"profile_300":["https:\/\/e3mag.com\/wp-content\/uploads\/2024\/04\/2405-54-Suse-300x300.jpg",300,300,true]},"post_excerpt_stackable_v2":"<p>Die NIS2 Directive und der Cyber Resilience Act sind die Reaktionen<br \/>\nauf die steigende Anzahl von Cyberattacken. Hierbei ist es hilfreich,<br \/>\nauf die vom BSI zertifizierte Suse-Linux-Plattform f\u00fcr SAP zu setzen.<\/p>\n","category_list_v2":"<a href=\"https:\/\/e3mag.com\/en\/category\/opinion\/\" rel=\"category tag\">Die Meinung der SAP-Community<\/a>, <a href=\"https:\/\/e3mag.com\/en\/category\/opinion\/linux\/\" rel=\"category tag\">Linux Kolumne<\/a>, <a href=\"https:\/\/e3mag.com\/en\/category\/mag-24-05\/\" rel=\"category tag\">MAG 24-05<\/a>","author_info_v2":{"name":"Friedrich Krey, Suse","url":"https:\/\/e3mag.com\/en\/author\/friedrich-krey-suse\/"},"comments_num_v2":"1 comment","_links":{"self":[{"href":"https:\/\/e3mag.com\/en\/wp-json\/wp\/v2\/posts\/142007","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/e3mag.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/e3mag.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/e3mag.com\/en\/wp-json\/wp\/v2\/users\/10"}],"replies":[{"embeddable":true,"href":"https:\/\/e3mag.com\/en\/wp-json\/wp\/v2\/comments?post=142007"}],"version-history":[{"count":6,"href":"https:\/\/e3mag.com\/en\/wp-json\/wp\/v2\/posts\/142007\/revisions"}],"predecessor-version":[{"id":142322,"href":"https:\/\/e3mag.com\/en\/wp-json\/wp\/v2\/posts\/142007\/revisions\/142322"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/e3mag.com\/en\/wp-json\/wp\/v2\/media\/142009"}],"wp:attachment":[{"href":"https:\/\/e3mag.com\/en\/wp-json\/wp\/v2\/media?parent=142007"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/e3mag.com\/en\/wp-json\/wp\/v2\/categories?post=142007"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/e3mag.com\/en\/wp-json\/wp\/v2\/tags?post=142007"},{"taxonomy":"author","embeddable":true,"href":"https:\/\/e3mag.com\/en\/wp-json\/wp\/v2\/coauthors?post=142007"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}