IPSTACK - IP stack display
The IP stack display lists the TCP/IP stack configuration settings.
The data for this report is only available if a CKFREEZE file has been created
during an APF-authorized run of zSecure Collect (CKFCOLL) with option
TCPIP=YES. For information about creating this file, see zSecure Collect for z/OS.
Detailed field information is available by pressing PF1 on an IP report selection panel or on any field within a panel. Descriptions are also provided in zSecure CARLa SELECT/LIST Fields:
- For the IP configuration data field names and descriptions for IP* NEWLIST types, see
IP: Information about TCP/IP configuration
. - For information about the IP configuration data fields used for SMF event reporting (SMF record 119, subtype 4), see .
The batch report to review the IP stack is CKALSIP. The interactive report is called CKADSIP.
Sample overview and detail display panels for the IP stack report are shown in Figure 1 and Figure 2.
IP stack display Line 1 of 3
Command ===> _________________________________________________ Scroll===> CSR
28 Jul 2021 23:45
Complex Sysplex Syst Stack Audit concerns Priority
__ PLEX1 PLEX1 ZS19 TCPIP 1 31
__ PLEX1 PLEX1 ZS21 TCPIP 1 31
__ PL87 PLEX1 ZS14 TCPIP 1 28
******************************* Bottom of Data ********************************
IP stack display Line 1 of 94
Command ===> _________________________________________________ Scroll===> CSR_
Complex Sysplex Syst Stack Audit concerns Priority
PLEX1 PLEX1 ZS19 TCPIP 1 28
Pri Stack Start date and time Data set name (member)
28 TCPIP 29Apr2021 17:35:09.76
System identification
Complex name PLEX1
System SMF ID ZS19
Sysplex name PLEX1
Sysplex group name EZBTCPCS
IP stack data
_ Stack name TCPIP
TCP low ports restricted Yes
UDP low ports restricted Yes
Start date/time 29Apr2021 17:35:09.76
Last change date and time
_ Data set name (member)
TCP/IP stack source VIPA
VIPA interface name (IPv6)
Global configuration data
QDIO VLAN id 0
Terminate if MLS check fails No
VTAM XCF group EZBTCP suffix
zERT enabled Yes
zERT aggregation Yes
zERT aggregation interval (h) 23
zERT aggregation ref. time 12:34
IPSEC data SACONFIG data
Allow VIPA distr for tunnel No OSASF subagent port 0
Honor IPSEC rule log setting Yes SNMP subagent port 161
Log implicit default rules Yes Unsafe default SNMP password Yes
SMF record 119 logging NETMON data
SMF 119-1 TCP connection init Yes Enable IPSEC NMI Yes
SMF 119-2 TCP termination Yes Enable PROFILE NMI Yes
SMF 119-3 FTP client Yes Enable SMF NMI Yes
SMF 119-5 TCPIP statistics Yes Enable zERT NMI No
SMF 119-6 Interf. statistics Yes Minimum seconds TCP life NMI 0
SMF 119-7 port statistics Yes Enable TCP connection NMI No
SMF 119-8 IP stack start/stop Yes Enable packet trace NMI No
SMF 119-10 UDP termination Yes Enable OSAENTA trace NMI No
SMF 119-11 zERT details Yes zERT service by policy NMI Yes
SMF 119-11 zERT detail policy Yes
SMF 119-12 zERT summary No
SMF 119-22:23 TN3270 client Yes
SMF 119-32:37 Dynamic VIPAs No
SMF 119-38 SMCD link stats No
SMF 119-39:40 SMCD link No
SMF 119-41 SMCR group stats No
SMF 119-42:43 SMCR link No
SMF 119-77:80 IP security Yes
IPCONFIG data
IPv4 configuration NODATAGRAMFWD
IPv4 configuration NODYNAMICXCF
IPv4 configuration FORMAT LONG
IPv4 configuration IPSECURITY
IPv4 configuration NOIQDIOROUTING
IPv4 configuration NOMULTIPATH
IPv4 configuration NOPATHMTUDDISCOVERY
IPv4 configuration SOURCEVIPA
IPv4 configuration NOSYSPLEXROUTING
IPv4 configuration NOQDIOACCELERATOR
V4 filtering and IPSEC tunnel Yes
IPv6 configuration DATAGRAMFWD NOFWDMULTIPATH
IPv6 configuration NODYNAMICXCF
IPv6 configuration NOIGNOREROUTERHOPLIMIT
IPv6 configuration IPSECURITY
IPv6 configuration NOMULTIPATH
IPv6 configuration NOSOURCEVIPA
IPv6 configuration NOTEMPADDRS
V6 filtering and IPSEC tunnel Yes
Dynamics XCF interface data
Dynamic XCF interface ID
Dyn XCF secur. class (IPv6) 0
Dynamic XCF IPv4 subnet mask
Dynamic XCF IP address (IPv4)
Dyn XCF prefix length (IPv4) 0
Dyn XCF secur. class (IPv4) 0
Dynamic XCF IP address (IPv6)
Dyn XCF prefix length (IPv6) 0
Dyn XCF src VIPA interface
Audit concern
## audit concern masked ##