Previous topic |
Next topic |
Contents |
Contact z/OS |
Library |
PDF
Certificates z/OS Cryptographic Services System SSL Programming SC14-7495-00 |
|
When executing in FIPS mode, System SSL can only use certificates that use the algorithms and key sizes shown in Table 1. During X.509 certificate validation (including CA certificates from untrusted data sources, that is, certificates flowing during the SSL/TLS handshake), if an algorithm that is incompatible with FIPS mode is encountered, then the certificate cannot be used and is treated as not valid. |
Copyright IBM Corporation 1990, 2014
|