You might review a presentation by Wai Choi. It does a nice job of explaining what is needed for certificate verification server and client.
ftp://ftp.software.ibm.com/eserver/zseries/zos/racf/pdf/r05_racf_digital_certificate.pdf Sometimes just keeping all the certificate "who's signing who" straight is helpful when trying to solve these types of problems. Rob Schramm Sirius Computer Solutions ---------------------------------------------------------------------- For IBM-MAIN subscribe / signoff / archive access instructions, send email to [EMAIL PROTECTED] with the message: GET IBM-MAIN INFO Search the archives at http://bama.ua.edu/archives/ibm-main.html

