Veryl Ellis wrote:

>He is receiving the following message when he attempts to import our public 
>key/certificate into his RACF key ring.

>IRRD126I The certificate contains either a key usage or basic constraint 
>extension indicating that it may not be used as a Certificate Authority 
>certificate.  The certificate is not added.

Please post the RACDCERT commands used.

What do you see if you use CHECKCERT to check the cert out?

>My public key/certificate has been authenticated by Entrust.

Did you imported the Entrust CA cert into RACF?

>I asked our customer to open a PMR with IBM since he is running z/OS 2.1 and 
>we’re not.

Good advice. I would also do the same. What do you see if you repeat the import 
action on your own system?

>I figured it couldn’t hurt to post the issue to the RACF and z/OS LISTSERVs.

Good idea. I now see that on RACF-L.

Groete / Greetings
Elardus Engelbrecht

----------------------------------------------------------------------
For IBM-MAIN subscribe / signoff / archive access instructions,
send email to [email protected] with the message: INFO IBM-MAIN

Reply via email to