Required hardware
Certain IBM SEL functions require specific hardware.
To personalize generic IBM Secure Execution Linux (SEL) guests with the help of retrievable secrets, support of retrievable secrets is required. Support of retrievable secrets is available as of IBM® z17 ™ or IBM LinuxONE 5.
KVM guests that run in IBM SEL mode on IBM z16 or IBM LinuxONE 4 with firmware bundle S30 (use bundle S31b or later to install S30) can use Crypto Express domains. A maximum of 12 AP queues per secure guest can be configured.
You can use Crypto Express8S adapters:
- Configured in accelerator mode.
- Configured in Enterprise PKCS #11 coprocessor mode. You require Enterprise PKCS #11 version 5.8.30.