RACF does not speak PKCS that I am aware of.  

Also you can create a program that the only diffidence are the calls


Sent from my iPhone

No one said I could type with one thumb 

> On Apr 14, 2023, at 14:21, Keith Gooding 
> <0000034af3894af4-dmarc-requ...@listserv.ua.edu> wrote:
> 
> Does gsk_export_certificate do what you need ?. It is documented in z/os 
> Cryptographic Services System SSL Programming. There are several functions 
> for handling certificates.
> 
> Sent from my iPad
> 
>> On 14 Apr 2023, at 20:07, Isabel <andreaisa...@gmail.com> wrote:
>> Hello, thanks for your answers, but I think I was not clear about what we
>> want.
>> 
>> We need to build a CICS Transaction to create a PKCS #7 (pkcs7-signedData)
>> containing a signature. We were thinking of using ICSF's PKCS #11 callable
>> services, but we don't have the TKDS keystore.
>> 
>> Thanks in advance!
>> 
>> 
>> 
>> On Fri, Apr 14, 2023 at 2:20 AM Matthew Donald <matthew.b.don...@gmail.com>
>> wrote:
>> 
>>>> We need to build a CICS Transaction to obtain a PKCS #7 (token) to
>>>> authenticate a user.
>>>> I am confused if I have to use a RACF certificate, ICSF or both.
>>> 
>>> 
>>> If you mean 2FA for CICS: see
>>> 
>>> https://www.ibm.com/docs/en/cics-ts/5.6?topic=securing-support-multi-factor-authentication-using-racf
>>> 
>>> Matthew
>>> 
>>>> On Wed, 5 Apr 2023 at 00:16, Isabel <andreaisa...@gmail.com> wrote:
>>> 
>>>> Hello!

----------------------------------------------------------------------
For IBM-MAIN subscribe / signoff / archive access instructions,
send email to lists...@listserv.ua.edu with the message: INFO IBM-MAIN

Reply via email to