Previous topic |
Next topic |
Contents |
Contact z/OS |
Library |
PDF
IKYS019I z/OS Cryptographic Services PKI Services Guide and Reference SA23-2286-00 |
|
IKYS019I The CA certificate does not have path length
constraint capabilities ExplanationThe EnablePathLenConstraint keyword
was specified in the pkiserv.conf configuration file,
but the PKI Services CA certificate does not meet the requirements
for establishing path length constraint. One or more of the following
conditions is true for the CA certificate:
System actionPKI Services stops.
System programmer responseEither choose another CA certificate
that has the appropriate basic constraints extension, or turn off
the EnablePathLenConstraint keyword in pkiserv.conf.
For more information about the EnablePathLenConstraint keyword,
see (Optional) Steps for updating the configuration file.
|
Copyright IBM Corporation 1990, 2014
|