z/OS Communications Server: IP Messages Volume 2 (EZB, EZD)
Previous topic | Next topic | Contents | Contact z/OS | Library | PDF


EZD1030I

z/OS Communications Server: IP Messages Volume 2 (EZB, EZD)
SC27-3655-01

EZD1030I
The IKE daemon is not set up to support RSA signature mode of authentication for stack stackname using the local keyring

Explanation

The Internet Key Exchange (IKE) daemon encountered an error while processing certificates located on the specified SAF key ring.

In the message text:
stackname
The name of the stack for which RSA signature mode of authentication is not available.

System action

The IKE daemon will not support RSA signature mode of authentication for the stack indicated by the stackname value; the IKE daemon continues.

Operator response

Contact the system programmer.

System programmer response

If RSA signature authentication is to be used, verify that the key ring database name is correct.

When configured without the IBM® Configuration Assistant for z/OS® Communications Server, the key ring database setting is specified on the IkeConfig statement with the KeyRing parameter. See the information about the IKE daemon in z/OS Communications Server: IP Configuration Reference for more information about the IkeConfig statement and the IKE daemon configuration file.

When configured with the IBM Configuration Assistant for z/OS Communications Server, the key ring database name is configured on the IPSec: IKE Daemon Settings panel. See the online helps in the GUI for additional information.

User response

Not applicable.

Problem determination

None.

Source

z/OS Communications Server TCP/IP: IKE daemon

Module

cert_mgr.cpp

Routing code

10

Descriptor code

12

Example

EZD1030I The IKE daemon is not set up to support RSA signature mode of authentication  for stack TCPCS 
    using the local keyring

Go to the previous page Go to the next page




Copyright IBM Corporation 1990, 2014