For the SCS address space to use System SSL, the PDSE member GSKSSL must be accessible to the program by one of two methods:
Note: For more information about setting up System SSL, see the IBM guide, z/OS Cryptographic Service System Secure Sockets Layer Programming.
Go to the SCS address space configuration XML and enable SSL in the address space.
Once you have created the certificate authority certificate and server certificate, modify the parameter file that is named MSMCPARM for the SCS address space.
Default: MSMCPARM
Locate the SSL tag in the XML document, and set the keyring attribute to the key store/database file. Set the stashfile attribute to the equivalent stash file.
Update the SCS address space configuration XML by setting the keyring and stashfile in the SSL element of the XML document to point to the keystore database and password stash file.
|
Copyright © 2014 CA.
All rights reserved.
|
|