I have a customer who is running z/OS 2.1 with RACF.


He is receiving the following message when he attempts to import our public
key/certificate into his RACF key ring.





IRRD126I The certificate contains either a key usage or basic constraint
extension indicating that it may not be used as a Certificate Authority
certificate.  The certificate is not added.





My public key/certificate has been authenticated by Entrust.



We do not see this type of problem when importing our public
key/certificate into an OMVS keystore.



I asked our customer to open a PMR with IBM since he is running z/OS 2.1
and we’re not.



I figured it couldn’t hurt to post the issue to the RACF and z/OS LISTSERVs.



If anyone has an idea on what is causing this, please respond.



Thanks,



S. Veryl Ellis ▪ Senior Systems Engineer ▪ Sungard Availability Services

401 North Broad Street, Philadelphia, Pa 19108 ▪ office 215-351-1303 ▪
Mobile 267-640-4192 ▪ [email protected] ▪ www.sungardas.com

----------------------------------------------------------------------
For IBM-MAIN subscribe / signoff / archive access instructions,
send email to [email protected] with the message: INFO IBM-MAIN

Reply via email to