IBM MQ Advanced Message Security for z/OS
IBM® MQ Advanced Message Security for z/OS® (AMS) is a separately licensed enabling product that extends IBM MQ to provide a high level of protection for sensitive data flowing through the IBM MQ network using a public key cryptography model.
Installing AMS
IBM MQ Advanced Message Security for z/OS is installed separately using SMP/E by following the process documented in its program directory.
Enabling AMS
IBM MQ Advanced Message Security for z/OS is enabled separately for each queue manager by completing additional customization tasks described at Customizing IBM MQ for z/OS.
The following tasks are relevant when adding AMS support to a queue manager:
- Task 2: APF authorize the IBM MQ load libraries
- Task 3: Update the z/OS link list and LPA
- Task 4: Update the z/OS program properties table
- Task 13: Customize the initialization input data sets
- Task 17: Tailor your system parameter module
- Task 23: Create procedures for Advanced Message Security
- Task 24: Set up the started task user Advanced Message Security
- Task 25: Grant RACDCERT permissions to the security administrator for Advanced Message Security
- Task 26: Grant users resource permissions for WebSphere®MQ Advanced Message Security
You also need to configure certificates and policies, which are described in