z/OS Cryptographic Services ICSF Administrator's Guide
Previous topic | Next topic | Contents | Index | Contact z/OS | Library | PDF


Refreshing the PKDS at any time

z/OS Cryptographic Services ICSF Administrator's Guide
SA22-7521-17

When you initialize a PKDS for the first time, you can copy the disk copy of the PKDS to create other PKDSs for the system. You can use the dynamic PKDS update callable services to add or update the disk copy of the current in-storage PKDS. For information on using the dynamic PKDS callable services, refer to the z/OS Cryptographic Services ICSF Application Programmer’s Guide. You can refresh the in-storage PKDS with an updated or different disk copy of the PKDS by using these steps. You can refresh the PKDS at any time without disrupting cryptographic functions.

Note:
Prior to refreshing a PKDS, consider temporarily disallowing PKDS write, create and delete services using the ICSF Administrative Control Functions panel.

  1. Enter option 2, MASTER KEY MGMT, on the ICSF Primary Menu panel to access the Master Key Management Panel.
  2. Enter option 5, INIT/REFRESH/UPDATE PKDS to access the PKDS Initialize/Refresh panel.
  3. In the New PKDS field, specify the name of the disk copy of the PKDS that you want ICSF to read into storage. ICSF places the disk copy of the specified PKDS into storage. A REFRESH does not disrupt any applications that are running on ICSF. A message that states that the PKDS was refreshed appears on the right of the top line on the panel.
  4. Press END to return to the Primary Menu panel.

Go to the previous page Go to the next page




Copyright IBM Corporation 1990, 2014