Rogério,
Chapter 7 "Verification for usage of library libica to access CPACF" in "
First experiences with hardware cryptographic support for OpenSSH with
Linux for System z" at
http://www-03.ibm.com/support/techdocs/atsmastr.nsf/WebIndex/WP101690
provides a suggestion.
Mike O'Reilly
IBM Linux Change Team
Rogério Soares
<rogerio.soares@g
mail.com> To
Sent by: Linux on [email protected]
390 Port cc
<[email protected]
ist.edu> Subject
crypto with sshd
02/11/2011 05:56
PM
Please respond to
Linux on 390 Port
<[email protected]
ist.edu>
Hello dears,
I have set up a test machine to use crpto card... my wish is using that
with sshd... so, i installed :
• openssh
• openssl
• openssl-ibmca
• libica
• z90crypt
made changes on openssl.cnf to use libica engine, load z90crypt module and
after that i get openssh from source rpm and rebuild then with --ssl-engine
, and then made a rpm -Uvhm restart the daemon..
on SLES10SP3 i don't have the icastats command, so, how can i be sure that
crypto card is used by openssh ?
i made several connections and take a look on /proc/driver/z90crypt, but
the
number don't change... are this process is correct or i missing something?
Thanks again. :)
----------------------------------------------------------------------
For LINUX-390 subscribe / signoff / archive access instructions,
send email to [email protected] with the message: INFO LINUX-390 or
visit
http://www.marist.edu/htbin/wlvindex?LINUX-390
----------------------------------------------------------------------
For more information on Linux on System z, visit
http://wiki.linuxvm.org/