12.07.2015 Views

eTrust CA-Top Secret Security for z/OS and OS ... - SupportConnect

eTrust CA-Top Secret Security for z/OS and OS ... - SupportConnect

eTrust CA-Top Secret Security for z/OS and OS ... - SupportConnect

SHOW MORE
SHOW LESS
  • No tags were found...

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

z/<strong>OS</strong> <strong>and</strong> <strong>OS</strong>/390 <strong>Security</strong> Server SupportIf CFSKEYS is defined to support masking <strong>and</strong> you want to allow ALL access,CFSKEYS(**) must be used. This allows the correct entity to be picked up. If thisis not done <strong>and</strong> an audit record is cut the resource name will be blank.CSFSERV—This class is used to secure the various cryptographic services,needed to encrypt data <strong>and</strong> manage keys. The services are listed in the <strong>OS</strong>/390Integrated Cryptographic Service Facility: Administrator’s Guide.Note: If the certificate’s private key resides in an ICSF storage facility <strong>and</strong> the<strong>for</strong>mat of PKCS12DER or PKCS12B64 is specified in the TSS EXPORT comm<strong>and</strong>,the comm<strong>and</strong> is rejected. A TSS0533E message is issued.Also, in order to use ICSF, you must have cyptrographic hardware installed <strong>and</strong>enabled on your system. ICSF is the interface to the Cryptographic hardware onz/<strong>OS</strong> <strong>and</strong> <strong>OS</strong>/390.1–100 Cookbook

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!