I have a very good documented process for using gskkyman to create a self signed certificate which out TN3270 and FTP servers use. We haven't had problems with it until we wanted to use TLS to transfer a file from one mainframe to another. Most FTP clients have an option telling them what to do if they can't validate the certificate, and we have to set to use it anyway. However, the mainframe FTP client doesn't have that option, so it won't transfer the files. Hence, I am going to try a real certificate from verisign.
I went into gskkyman and created a new database, and a certificate request. I sent that request to verisign and received a cert. I loaded that cert into the HFS but can't get it loaded into the key ring. I get messages like: Unable to import certificate. Status 0x03353024 - Issuer certificate not found. Or Label is not unique in request and key databases. When I try the various options. I am so close, but wondering what steps I missed. Dennis ---------------------------------------------------------------------- For IBM-MAIN subscribe / signoff / archive access instructions, send email to [EMAIL PROTECTED] with the message: GET IBM-MAIN INFO Search the archives at http://bama.ua.edu/archives/ibm-main.html

