I blogged on TN3270 and TLS 1.2 and 1.3  See here
<https://colinpaice.blog/2022/10/19/using-at-tls-and-pagent-on-z-os-with-adcd/>.
It contains the config I used.
Colin

On Wed, 19 Jun 2024 at 17:01, Paul Gorlinsky <[email protected]> wrote:

> 15.52.06 STC07201  EZZ6034I TN3270 CONN 000005B5 LU **N/A**  CONN DROP
>  ERR 1030
>   IP..PORT: 172.31.123.97..59419                             EZBTTXPL
>
> is the entire content of the message.
>
> These are in the SYSOUT for both TN3270 and TCPIP STCs
>
>
> System SSL: SHA-1 crypto assist is available
> System SSL: SHA-224 crypto assist is available
> System SSL: SHA-256 crypto assist is available
> System SSL: SHA-384 crypto assist is available
> System SSL: SHA-512 crypto assist is available
> System SSL: DES crypto assist is available
> System SSL: DES3 crypto assist is available
> System SSL: AES 128-bit crypto assist is available
> System SSL: AES 256-bit crypto assist is available
> System SSL: AES-GCM crypto assist is available
> System SSL: Cryptographic accelerator is not available
> System SSL: Cryptographic coprocessor is not available
> System SSL: Public key hardware support is not available
> System SSL: ECC secure key support is not available.
> System SSL: ICSF Secure key PKCS11 support is not available
> System SSL: ICSF FMID is HCR77D0
>
>
> What would help determine the issue ...
>
> BTW SSL ( TLS 1.0 ) works -- It is on PORT 992
>
> We are trying to configure port 2023 for TLS 1.2 TLS 1.3
>
>
> ----------------------------------------------------------------------
> For IBM-MAIN subscribe / signoff / archive access instructions,
> send email to [email protected] with the message: INFO IBM-MAIN
>

----------------------------------------------------------------------
For IBM-MAIN subscribe / signoff / archive access instructions,
send email to [email protected] with the message: INFO IBM-MAIN

Reply via email to