Tivoli Enterprise Monitoring Server on z/OS starts normally in a system without the Integrated Cryptographic Service Facility but does not connect to the Tivoli Enterprise Portal Server

Although Integrated Cryptographic Service Facility (ICSF) provides robust password encryption, you are not required to use it because the ICSF can affect compatibility with the z/OS® OMEGAMON® monitoring products.

Before you begin

The following messages are displayed when the portal server cannot connect to the monitoring server:

Call to KLE_CryptoGetFP failed with exit code 8. Cannot get CSNBXAE function pointer Logon validation did not complete - system error. User:username keyfile:key ip:ip_address

About this task

If you see these failed connection messages, perform the following steps so that the Tivoli® Enterprise Portal Server can connect to the Tivoli Enterprise Monitoring Server.

Procedure

  1. Using PARMGEN to configure the TEMS, ensure that the value N is specified for the Integrated Cryptographic Service Facility (ICSF) installed? field.
  2. After the Tivoli Enterprise Monitoring Server configuration is complete and the server is running, you must modify the portal server configuration to use an older, less robust encoding algorithm by performing the following steps:
    1. Edit the kfwenv file in install_dir\CNPS (where install_dir is C:\IBM\ITM by default) using a text editor.
    2. On a separate line, enter the following text:

      USE_EGG1_FLAG=1

    3. Save the file and exit.
    4. Restart the Tivoli Enterprise Portal Server, if it is running.