z/OS Cryptographic Services PKI Services Guide and Reference
Previous topic | Next topic | Contents | Contact z/OS | Library | PDF


Before you begin

z/OS Cryptographic Services PKI Services Guide and Reference
SA23-2286-00

Important: Update and run IKYSETUP only if you have not done so previously for an earlier release (or if you are changing the value of one or more variables).

The RACF® administrator needs to decide the values of variables in IKYSETUP and to record these values for future reference. Review and update as necessary the following three variables tables. There are three tables because there are three categories of variables:
  • Variables whose values you are required to change, such as ones containing your company name
  • Variables whose values you might want to change, depending based on how you are setting up PKI Services
  • Variables whose values you can optionally change.
There is some overlap between the three types of variables, for example, if you are already using the RACF sample Web application, PKISERV.
Guideline: If you are running IKYSETUP for the first time, at a minimum, you need to complete the following tasks:
  • Fill in Table 1
  • Fill in Table 1
  • Fill in the rows of Table 1 concerning z/OS UNIX level security:
    • unix_sec
    • bpx_userid. and pgmcntl_dsn. (if z/OS® level security is already set up)
  • Review the default values in all the tables.

Several values described in this topic, particularly for variables in Table 1 and Table 1, can be qualified with a ca_domain value based on whether you implement multiple CA domains. For information about implementing multiple CA domains, see Adding a new CA domain.

Go to the previous page Go to the next page




Copyright IBM Corporation 1990, 2014