Cryptographic Services new functions to consider
This topic describes new Cryptographic Services functions in z/OS®.
- Enable PKI Services to sign the Online Certificate Status Protocol (OCSP) responses
- PKI Services 64 bit support
- PKI Services support NxM authorization
- System SSL: Cache session identification
- System SSL: OCSP support and CRL updates
- System SSL: PKCS #12 certificate store
- ICSF: AES counter mode encryption support
- ICSF: CPACF RNG support
- ICSF: Format preserving encryption
- ICSF: KDS key archiving
- ICSF: Key material validity
- ICSF: New functionality in the Crypto Express5
- ICSF: Support architecture for greater than 16 domains
- ICSF: UDX exit support
- PKI Services: Enterprise PKCS#11 secure key support
- PKI Services: RFC 5280 and 4523 currency
- PKI Services: Extended Validation (EV) certificate
- PKI Services: Certificate administration support
- System SSL: Transport Layer Security (TLS) protocol version 1.2
- System SSL: Suite B Cryptography
- System SSL: Enhanced DSA Support
- System SSL: RFC 5280 PKIX certificate and CRL profile currency
- System SSL: SAF key ring validation
- System SSL: Enterprise PKCS#11 hardware security module
- System SSL: gskkyman certificate creation menus refined
Parent topic: What is new in z/OS (V2R1 - V2R2)