I blogged on TN3270 and TLS 1.2 and 1.3 See here <https://colinpaice.blog/2022/10/19/using-at-tls-and-pagent-on-z-os-with-adcd/>. It contains the config I used. Colin
On Wed, 19 Jun 2024 at 17:01, Paul Gorlinsky <[email protected]> wrote: > 15.52.06 STC07201 EZZ6034I TN3270 CONN 000005B5 LU **N/A** CONN DROP > ERR 1030 > IP..PORT: 172.31.123.97..59419 EZBTTXPL > > is the entire content of the message. > > These are in the SYSOUT for both TN3270 and TCPIP STCs > > > System SSL: SHA-1 crypto assist is available > System SSL: SHA-224 crypto assist is available > System SSL: SHA-256 crypto assist is available > System SSL: SHA-384 crypto assist is available > System SSL: SHA-512 crypto assist is available > System SSL: DES crypto assist is available > System SSL: DES3 crypto assist is available > System SSL: AES 128-bit crypto assist is available > System SSL: AES 256-bit crypto assist is available > System SSL: AES-GCM crypto assist is available > System SSL: Cryptographic accelerator is not available > System SSL: Cryptographic coprocessor is not available > System SSL: Public key hardware support is not available > System SSL: ECC secure key support is not available. > System SSL: ICSF Secure key PKCS11 support is not available > System SSL: ICSF FMID is HCR77D0 > > > What would help determine the issue ... > > BTW SSL ( TLS 1.0 ) works -- It is on PORT 992 > > We are trying to configure port 2023 for TLS 1.2 TLS 1.3 > > > ---------------------------------------------------------------------- > For IBM-MAIN subscribe / signoff / archive access instructions, > send email to [email protected] with the message: INFO IBM-MAIN > ---------------------------------------------------------------------- For IBM-MAIN subscribe / signoff / archive access instructions, send email to [email protected] with the message: INFO IBM-MAIN
