Skip links
Picture of Vahagn Vardanian

Vahagn Vardanian

Co-founder and CTO of RedRays

Virus scan interface (NW-VSI) Changes and releases, SAP security note 797108

SAP Note 797108

SAP security note 797108, “Virus scan interface (NW-VSI): Changes and releases”, is a note. Below are the reason and prerequisites, SAP recommended solution, references and affected software components.

Description

Solution

If you do not yet have an external scan product, you will find more information on the SAP Service Marketplace under Security Partners, Partner for Virus Scan Interface (NW-VSI). For more information, see Note 786179.

The interface ‘Virus-Scan-Interface’ is known as NW-VSI externally and as VSI internally. Currently, VSI Version 1.7 is supported.

SAP supports VSI in the following components (executables):

  • Virus Scan Server (vscan_rfc): see Note 782963
  • AS ABAP (disp+work)
  • AS JAVA (jlaunch or jstart)

If problems occur with VSI in one of these components, send an OSS message to BC-SEC-VIR with the version details from the component. This can be determined using the option -v, for example: jlaunch -v and vscan_rfc -v.

These components are available from Kernel 6.40 and are detailed in the following notes:

Use Note 817623 to integrate NW-VSI into your SAP environments using external AV products.

Reason and prerequisites

Prerequisites:

  • You are using an SAP R/3 Enterprise system or an SAP NetWeaver’04 (or higher) system.
  • You already have an external, SAP certified anti-virus security solution (see Note 786179).
  • You are using the latest version of VSI.

References

Affected components

  • SAP_BASIS (620 to 640+)
  • SAP_BASIS (700 to 700)

Full note on SAP: SAP Support Launchpad note 797108

Detailed exploitation and proof-of-concept material for this note is maintained in the RedRays Security Platform. For access, contact [email protected].

Explore More