Use the SecureKeysOnly attribute to secure keys globally.
To secure keys globally
Specify the following attribute in the StartupOptions attributes section of the parmlib:
SecureKeysOnly=Y
All encryption and decryption activity is routed through ICSF to an IBM PCI cryptographic coprocessor. Selecting this option forces newly-generated keys to be stored in the ICSF CKDS regardless of how the KeysDatabase attribute is defined.
| Copyright © 2011 CA. All rights reserved. | Tell Technical Publications how we can improve this information |