The issue was strangely due to incorrect binding on /sap/bc/srt/idoc . I have deactivated and reactivated SRTIDOC and issue is gone now. Thus HCI to ECC works.
Now the other way around ECc to HCI I have the following error ICM_HTTP_CONNECTION_FAILED .
I have downloaded the certificates from the worker node of HCI and installed all the certificates in STRUST however I have the following issue.
IcmJ2EEScheduleFunc: Connection to osiris.bocm.com:5222 failed - please check host configuration ==> starngely I have no clue what is osiris.bocm.com
--------------------------------------------------------------------------------
| ICM Trace File (dev_icm) |
--------------------------------------------------------------------------------
---------------------------------------------------
trc file: "dev_icm", trc level: 1, release: "721"
---------------------------------------------------
sysno 22
sid PH2
systemid 390 (AMD/Intel x86_64 with Linux)
relno 7210
patchlevel 0
patchno 333
intno 20020600
make multithreaded, ASCII, 64 bit, optimized
profile /usr/sap/PH2/SYS/profile/PH2_DVEBMGS22_osiris
pid 20796
[Thr 182894226624] Sun Nov 15 18:17:49 2015
[Thr 182894226624] TRACE FILE TRUNCATED
[Thr 1086359904] Sun Nov 15 18:18:11 2015
[Thr 1086359904] *** WARNING => Connection request from (18/20956/0) to host: iflmapgbt108h0400avttaio-h0400.intaas.hana.ondeman
[Thr 1086359904] RM-T18, U20956, 030 ABADA, srvdcnlcxxa03, 18:18:06, M0, W11, SM59, 4/2 {000200a2} [icxxconn_mt.c 2108]
[Thr 1082661216] Sun Nov 15 18:18:12 2015
[Thr 1082661216] *** ERROR during SecudeSSL_SessionStart() from SSL_connect()==SSL_ERROR_SSL
[Thr 1082661216] session uses PSE file "/usr/sap/PH2/DVEBMGS22/sec/SAPSSLC.pse"
[Thr 1082661216] SecudeSSL_SessionStart: SSL_connect() failed --
[Thr 1082661216] secude_error 536872221 (0x2000051d) = "Failed to verify peer certificate. Peer not trusted."
[Thr 1082661216] >> ---------- Begin of Secude-SSL Errorstack ---------- >>
[Thr 1082661216] 0x2000051d | SAPCRYPTOLIB | SSL_connect
[Thr 1082661216] SSL API error
[Thr 1082661216] Failed to verify peer certificate. Peer not trusted.
[Thr 1082661216] 0xa0600203 | SSL | ssl_verify_peer_certificates
[Thr 1082661216] Peer not trusted
[Thr 1082661216] 0xa0600297 | SSL | ssl_cert_checker_verify_certificates
[Thr 1082661216] peer certificate (chain) is not trusted
[Thr 1082661216] Certificate:
[Thr 1082661216] Certificate:
[Thr 1082661216] Subject :CN=osiris.bocm.com, OU=I0720001338, OU=SAP Web AS, O=SAP Trust Community, C=DE
[Thr 1082661216] Issuer :CN=osiris.bocm.com, OU=I0720001338, OU=SAP Web AS, O=SAP Trust Community, C=DE
[Thr 1082661216] Serial number:0x0a20151019132901
[Thr 1082661216] Validity:
[Thr 1082661216] Not before :Mon Oct 19 14:29:01 2015
[Thr 1082661216] Not after :Fri Jan 1 01:00:01 2038
[Thr 1082661216] Key:
[Thr 1082661216] Key type :rsaEncryption (1.2.840.113549.1.1.1)
[Thr 1082661216] Key size :2048
[Thr 1082661216] PK_Fingerprint_MD5:E48F 66D7 7FF2 57C5 FEEB 8649 9B08 0B2B
[Thr 1082661216] Signature algorithm:sha1WithRsaEncryption (1.2.840.113549.1.1.5)
[Thr 1082661216] Fingerprint_MD5:AD:CE:CF:1D:06:35:33:71:96:46:AF:32:80:14:80:57
[Thr 1082661216] Fingerprint_SHA1:24B6 BB48 B9A8 60F9 E70C 6757 C069 B096 CDF1 6A84
[Thr 1082661216] Verification result:
[Thr 1082661216] Status :Not successful
[Thr 1082661216] Profile :1.3.6.1.4.1.694.2.2.2.2
[Thr 1082661216] DirectlyTrusted:Not successful
[Thr 1082661216]
[Thr 1082661216] << ---------- End of Secude-SSL Errorstack ----------
[Thr 1082661216] SSL_get_state() returned 0x00002131 "SSLv3 read server certificate B"
[Thr 1082661216] SSL NI-sock: unix domain socket="/tmp/.sapicm5222"
[Thr 1082661216] <<- ERROR: SapSSLSessionStart(sssl_hdl=0xf78f50)==SSSLERR_PEER_CERT_UNTRUSTED
[Thr 1082661216] *** ERROR => IcmConnInitClientSSL: SapSSLSessionStart failed (-102): SSSLERR_PEER_CERT_UNTRUSTED {000200a5} [ic
[Thr 1082661216] *** ERROR => IcmJ2EEScheduleFunc: Connection to osiris.bocm.com:5222 failed - please check host configuration (