Deciding the value of key_backup
Use the following decision table to determine the value of key_backup in Table 1.
The key_backup variable determines whether the PKI
Services CA certificate and private key should be backed up to an
encrypted data set.
If … | Then … | Notes |
---|---|---|
You want to back up your CA's certificate and private key to a passphrase encrypted data set … | Do not change the default key_backup=1 | When you use IKYSETUP, you need to enter a passphrase whose display is not inhibited, it appears on the screen in the clear. You cannot back up PCICC keys (key_type=2) and hardware ECC keys (key_type=6 or key_type=7). |
You do not want to back up your CA's certificate and private key to a passphrase encrypted data set … | Set key_backup=0 | — |