Previous topic |
Next topic |
Contents |
Contact z/OS |
Library |
PDF
EZD1388E z/OS Communications Server: IP Messages Volume 2 (EZB, EZD) SC27-3655-01 |
|
EZD1388E ICSF FIPS mode services are currently unavailable to
the NSS daemon ExplanationThe network security services (NSS) server is configured in Federal Information Processing Standards (FIPS) mode, and the server detected that Integrated Cryptographic Services Facility (ICSF) FIPS mode services are unavailable. The NSS server uses ICSF FIPS mode services for various cryptographic functions. When ICSF FIPS mode services are not correctly enabled, the NSS server will not be fully functional to NSS clients. See the information about network security services inz/OS Communications Server: IP Configuration Guide for information about which NSS server functions require ICSF. See the information about the network security services (NSS) server information in z/OS Communications Server: IP Configuration Reference for information about the FIPS140 keyword. System actionThe NSS server continues to run, but cannot provide the services that rely on ICSF FIPS mode services. Operator responseContact the system programmer. System programmer responseConfigure and start ICSF with FIPS mode enabled. The NSS server automatically detects when ICSF FIPS mode services become available. See the z/OS Cryptographic Services ICSF Administrator's Guide for more information. Alternatively, change the NSS server configuration to disable FIPS mode, and restart the NSS server. User responseNot applicable. Problem determinationNot applicable. Sourcez/OS® Communications Server TCP/IP: Network Security Server ModuleNssAnchor.cpp Routing code3 Descriptor code3 AutomationThis message goes to the console and to syslog. Example
|
Copyright IBM Corporation 1990, 2014
|