Re: GPMSERVE Certificate/Ring define....

2023-04-28 Thread Colin Paice
A practical guide to getting z/OSMF working.

also mentions certificates and keyrings

Colin

On Fri, 28 Apr 2023 at 12:52, Shaffer, Terri <
017d5f778222-dmarc-requ...@listserv.ua.edu> wrote:

> Hi,
>   So my certificate knowledge is lacking and I can normally find samples
> to change the text and define them.
>
> So I was trying a few more functions out in z/OSMF and System Status
> Failed due to GPMSERVE 5003 errors.
>
> I found the pagent definitions and added them but apparently I never
> defined the Keyring or certificates required.
>
> I already have a CA defined that I can use. But need the Server and Server
> private key definitions?
>
> I was wondering if anyone could send me a sample job for the RACDCERT
> commands needed?
>
> According to the manual.
>
> TTLSKeyringParms: Keyring
> Specifies the key ring name of the RMF DDS server, which is
> DDSServerKeyring in the example. The key ring must contain the server
> certificate, the associated server private key, and the certificate of the
> trusted Certificate Authority (CA).
>
> Thank You
>
> Ms Terri E Shaffer
> Senior Systems Engineer,
> z/OS Support:
> ACIWorldwide – Telecommuter
> H(412-766-2697) C(412-519-2592)
> terri.shaf...@aciworldwide.com
>
> 
>  [https://go.aciworldwide.com/rs/030-ROK-804/images/aci-footer.jpg] <
> http://www.aciworldwide.com>
> This email message and any attachments may contain confidential,
> proprietary or non-public information. The information is intended solely
> for the designated recipient(s). If an addressing or transmission error has
> misdirected this email, please notify the sender immediately and destroy
> this email. Any review, dissemination, use or reliance upon this
> information by unintended recipients is prohibited. Any opinions expressed
> in this email are those of the author personally.
>
> --
> For IBM-MAIN subscribe / signoff / archive access instructions,
> send email to lists...@listserv.ua.edu with the message: INFO IBM-MAIN
>

--
For IBM-MAIN subscribe / signoff / archive access instructions,
send email to lists...@listserv.ua.edu with the message: INFO IBM-MAIN


Re: GPMSERVE Certificate/Ring define....

2023-04-28 Thread Colin Paice
I've just posted  Setting up z/OS for TLS clients

and Setting
up Linux to z/OS certificates


If you get stuck, please feel free to contact me offline

Colin

On Fri, 28 Apr 2023 at 12:52, Shaffer, Terri <
017d5f778222-dmarc-requ...@listserv.ua.edu> wrote:

> Hi,
>   So my certificate knowledge is lacking and I can normally find samples
> to change the text and define them.
>
> So I was trying a few more functions out in z/OSMF and System Status
> Failed due to GPMSERVE 5003 errors.
>
> I found the pagent definitions and added them but apparently I never
> defined the Keyring or certificates required.
>
> I already have a CA defined that I can use. But need the Server and Server
> private key definitions?
>
> I was wondering if anyone could send me a sample job for the RACDCERT
> commands needed?
>
> According to the manual.
>
> TTLSKeyringParms: Keyring
> Specifies the key ring name of the RMF DDS server, which is
> DDSServerKeyring in the example. The key ring must contain the server
> certificate, the associated server private key, and the certificate of the
> trusted Certificate Authority (CA).
>
> Thank You
>
> Ms Terri E Shaffer
> Senior Systems Engineer,
> z/OS Support:
> ACIWorldwide – Telecommuter
> H(412-766-2697) C(412-519-2592)
> terri.shaf...@aciworldwide.com
>
> 
>  [https://go.aciworldwide.com/rs/030-ROK-804/images/aci-footer.jpg] <
> http://www.aciworldwide.com>
> This email message and any attachments may contain confidential,
> proprietary or non-public information. The information is intended solely
> for the designated recipient(s). If an addressing or transmission error has
> misdirected this email, please notify the sender immediately and destroy
> this email. Any review, dissemination, use or reliance upon this
> information by unintended recipients is prohibited. Any opinions expressed
> in this email are those of the author personally.
>
> --
> For IBM-MAIN subscribe / signoff / archive access instructions,
> send email to lists...@listserv.ua.edu with the message: INFO IBM-MAIN
>

--
For IBM-MAIN subscribe / signoff / archive access instructions,
send email to lists...@listserv.ua.edu with the message: INFO IBM-MAIN


GPMSERVE Certificate/Ring define....

2023-04-28 Thread Shaffer, Terri
Hi,
  So my certificate knowledge is lacking and I can normally find samples to 
change the text and define them.

So I was trying a few more functions out in z/OSMF and System Status Failed due 
to GPMSERVE 5003 errors.

I found the pagent definitions and added them but apparently I never defined 
the Keyring or certificates required.

I already have a CA defined that I can use. But need the Server and Server 
private key definitions?

I was wondering if anyone could send me a sample job for the RACDCERT commands 
needed?

According to the manual.

TTLSKeyringParms: Keyring
Specifies the key ring name of the RMF DDS server, which is DDSServerKeyring in 
the example. The key ring must contain the server certificate, the associated 
server private key, and the certificate of the trusted Certificate Authority 
(CA).

Thank You

Ms Terri E Shaffer
Senior Systems Engineer,
z/OS Support:
ACIWorldwide – Telecommuter
H(412-766-2697) C(412-519-2592)
terri.shaf...@aciworldwide.com


 [https://go.aciworldwide.com/rs/030-ROK-804/images/aci-footer.jpg] 

This email message and any attachments may contain confidential, proprietary or 
non-public information. The information is intended solely for the designated 
recipient(s). If an addressing or transmission error has misdirected this 
email, please notify the sender immediately and destroy this email. Any review, 
dissemination, use or reliance upon this information by unintended recipients 
is prohibited. Any opinions expressed in this email are those of the author 
personally.

--
For IBM-MAIN subscribe / signoff / archive access instructions,
send email to lists...@listserv.ua.edu with the message: INFO IBM-MAIN