If your site runs a production system with cryptographic keys stored in the ICSF CKDS, and you want to add another system, but that system does not support CKDS, you need to modify your CA Tape Encryption configuration. This is a situation where you are adding another system that shares DASD with the existing production system, and the new system does not have a cryptographic coprocessor. Therefore, it cannot support CKDS. If you have all your keys in CKDS, the new system will not be able to use them. You can modify your configuration as follows:
Note: For information about modifying parmlib, see the chapter “Defining System Options in Parmlib.”
| Copyright © 2011 CA. All rights reserved. | Tell Technical Publications how we can improve this information |