z/OS Cryptographic Services System SSL Programming
Previous topic | Next topic | Contents | Contact z/OS | Library | PDF


03353048

z/OS Cryptographic Services System SSL Programming
SC14-7495-00

03353048
Diffie-Hellman group parameters are not valid.

Explanation

The Diffie-Hellman group parameters are not valid. The subprime Q must be greater than 1 and less than the prime P. The base G must be greater than 1 and less than the prime P. See RFC 2631: Diffie-Hellman Key Agreement Method for more information about how the Diffie-Hellman parameters are generated.

User response

Verify that the correct parameters are supplied when calling the failing routine. Contact the certification authority if the Diffie-Hellman group parameters are obtained from an X.509 certificate. Otherwise, collect a System SSL trace and then contact your service representative.

Go to the previous page Go to the next page




Copyright IBM Corporation 1990, 2014