z/OS Cryptographic Services ICSF Administrator's Guide
Previous topic | Next topic | Contents | Index | Contact z/OS | Library | PDF


Key Management on Systems without Coprocessors

z/OS Cryptographic Services ICSF Administrator's Guide
SA22-7521-17

The CKDS can be used to manage clear AES and DES DATA keys on a system that does not have any cryptographic coprocessors or accelerators on z890, z990, z9, z10, and z196 systems.

Note:
z900 systems require the CCF be available for ICSF and do not support this usage.

A CKDS initialized on a system without coprocessors can not be used with a system with coprocessors. ICSF will terminate during initialization and issue the CSFM128E message if you attempt to start ICSF with a CKDS that was initialized on a system without coprocessors. The CKDS can not be updated to support systems with coprocessors.

Starting with release HCR7780, there are two formats of the CKDS: a fixed-length record (supported by all releases of ICSF) and a new, variable-length record (supported by HCR7780 and later releases). Both formats are supported for systems without coprocessors.

Go to the previous page Go to the next page




Copyright IBM Corporation 1990, 2014