> For clean Markdown of any page, append .md to the page URL.
> For a complete documentation index, see https://docs.basement.chat/llms.txt.
> For AI client integration (Claude Code, Cursor, etc.), connect to the MCP server at https://docs.basement.chat/_mcp/server.

# Connect a SAP system

## 1. The VPN

After you sign in, the card at the top of **Connections** shows what the app found on your computer:

| The card shows                           | Meaning                                                                                                                            |
| ---------------------------------------- | ---------------------------------------------------------------------------------------------------------------------------------- |
| **FortiClient installed · connected**    | The VPN of the customer is connected. You can create the connection.                                                               |
| **FortiClient installed · disconnected** | The VPN client is installed, but it is not connected. Connect it as you do today. Then click **Check now**.                        |
| **No VPN client found on this computer** | The app did not find a known VPN client. Install the VPN client of the customer. If you use a different client, tell us which one. |

When a connection exists, the card also tests the address of the system through the VPN. The result is "reachable from this computer".

![The VPN card and a connection](/_fern-img/81b5f35f7640a9c6deefd7ceff15235e299134b375824c6f92c29572d2b18acf.webp)

## 2. New connection

Click **New connection…**. Enter the data of the system of the customer. The data is the same as in SAP Logon.

![The New connection sheet with an example system](/_fern-img/bd20aa4f9d2ea947bdbb43f86a8ce5e2597af80beeea58ad6054f452ea5f0672.webp)

| Field                     | What to enter                                                                                                                                                                                                 |
| ------------------------- | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |
| **Customer**              | The name of the customer. It identifies the connection in the list.                                                                                                                                           |
| **SID**                   | The system ID, 3 letters (for example `SBX` or `PRD`).                                                                                                                                                        |
| **Host**                  | The name of the SAP server, as in SAP Logon.                                                                                                                                                                  |
| **Address**               | The IP address or the name that **your computer reaches through the VPN** (for example `10.10.1.149`). The connection goes through this address.                                                              |
| **Instance**              | The instance number, 2 digits (for example `01`). It sets the ports: `33` + instance for RFC.                                                                                                                 |
| **Client**                | The logon client, 3 digits (for example `100`).                                                                                                                                                               |
| **Logon language**        | **EN**. English is installed on all SAP systems. Use `PT` only if the system of the customer has Portuguese installed. If the language is not installed, SAP refuses the logon before it checks the password. |
| **Environment**           | DEV, QAS, PRD or SBX. It identifies the role of the system.                                                                                                                                                   |
| **SAP user and password** | Your user on the system of the customer. The app seals them for the key of the server. The password does not appear again.                                                                                    |

Click **Create and connect**.

If a member of the organization saved this system before, the system is in **Saved systems**. Click **Confirm**. Enter only your user and password. Then connect.

![The Connect sheet: SAP user and password](/_fern-img/10794f65659d82588554eab4156523f35e2150d94c5ee11e878e3fb4c7a19d16.webp)

## 3. The result

The app tries **all** the connection methods. It shows the answer of each method:

![The result for each method after the connection](/_fern-img/abdb064f95af812305367d41dc5ea3b38caca4eb5e858e1b36d96326fb61d960.webp)

| Line                         | Meaning                                                                                                                                                                                                   |
| ---------------------------- | --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |
| **Works**                    | The method answered. The AI can use the tools of this method.                                                                                                                                             |
| **HTTP only, no encryption** | The web server of SAP has only an HTTP port. Code reads work. Table queries and the where-used list need HTTPS. The other two methods do that work.                                                       |
| **Failed**                   | The method did not work. The line shows the cause. **What to do** shows what to enable or to correct. See [Connection types](/sap/connection-types) and [When it does not connect](/sap/troubleshooting). |

The connection is ready when one method works. The last line shows the number of available tools. When RFC works, there are 15 tools. Claude can read the system now. See [Use it with Claude](/sap/claude).

> **Note**
>
> The connection is on your computer and in the organization in which you created it. To use the connection, keep the app open and the VPN connected. If one of them stops, the AI gets "the analyst's computer is offline" or "the VPN is down". When you start them again, the connection works again by itself.

## Reconnect, change the language, remove

* **Reconnect…** asks for the user and the password again. The app never stores the password in clear text. Use **Reconnect…** also to change the logon language of a connection.
* **Remove…** removes the connection from this computer. If the system was saved, it stays in the organization.