This capability enhances the ICSF utilities panel, option 6 PKDSKEYS,
to provide PKDS key management capability. This new function gives
customers the ability to:
- Generate an RSA key pair PKDS record
- Delete an existing PKDS record
- Export an existing public key to an X.509 certificate stored in
an MVS physically sequential data set
- Import a public key from an X.509 certificate stored in an MVS
physically sequential data set.
These functions are intended for use with the Encryption Facility,
but may be used for other purposes.
To use the full function of the ICSF PKDS Key Management panels,
you must have a CCA coprocessor and the RSA master key must be
active. If you do not have one of these coprocessors, you cannot
generate key pairs using the panels.