I have downloaded the latest 2811 page document. In the product enhancements 
section, on page 98: 

Data Set Encryption Support (RO97892)

New z/OS DFSMS capabilities for data encryption require key labels when 
allocating encrypted data
sets. These labels identify a protected data key in the ICSF key repository 

A new field (DSKEY) in ACIDs contains the ICSF key label to use for encryption. 
The following
keywords are now available for managing keys and labels:

SYMCPACFWRAP (see page 742) makes keys eligible to be rewrapped (protected) by 
CP Assist for
Cryptographic Functions (CPACF).

SYMCPACFRET (see page 741) determines whether ICSF can return a key in a 
wrapped (protected)

DSKEY (see page 518) specifies the key label that encrypts/decrypts data in the 
ICSF cryptographic
key data set (CKDS).

CRITERIA (see page 489) (used with PERMIT) defines criteria to determine a 
user's access to a
resource (such as a key label).

Tom Chicklon


> Probably need to pull the latest TSS doc and look for changes in there.

This e-mail transmission contains information that is confidential and may be 
privileged.   It is intended only for the addressee(s) named above. If you 
receive this e-mail in error, please do not read, copy or disseminate it in any 
manner. If you are not the intended recipient, any disclosure, copying, 
distribution or use of the contents of this information is prohibited. Please 
reply to the message immediately by informing the sender that the message was 
misdirected. After replying, please erase it from your computer system. Your 
assistance in correcting this error is appreciated.

For IBM-MAIN subscribe / signoff / archive access instructions,
send email to lists...@listserv.ua.edu with the message: INFO IBM-MAIN

Reply via email to