Table of Contents (exploded view)
About this document
Who should read this document
How to use this document
Where to find more information
Related publications
Other sources of information
IBM discussion area
Internet sources
Abstract for IBM Encryption Facility for z/OS: Planning and Customizing
Summary of changes
Changes made in IBM Encryption Facility for z/OS Version 1 Release 2 as updated June 2014
Changes made in IBM Encryption Facility for z/OS Version 1 Release 2
Overview of IBM Encryption Facility for z/OS
What is Encryption Facility?
Features available with Encryption Facility
Encryption Services
IBM Encryption Facility for z/OS Client
DFSMSdss Encryption
Comparison of Encryption Facility features and functions
Security Server RACF enhancements
Encryption Services CSDFILEN and CSDFILDE
Encryption Facility for OpenPGP
Encryption Facility for z/OS Client
How CSDFILEN and CSDFILDE and the Encryption Facility for z/OS Client work
How Encryption facility for OpenPGP works
How DFSMSdss Encryption works
Hardware and software requirements
Hardware requirements
Software requirements
Getting started
How do I install IBM Encryption Facility for z/OS?
Getting started with Encryption Services
Getting started with ICSF
Getting started with Encryption Facility for z/OS Client
Getting started with DFSMSdss Encryption
Getting started with RACF
Encrypting files through CSDFILEN of Encryption Services
JCL DD statements for CSDFILEN
Control statement keywords for CSDFILEN SYSIN DD
User guidelines and samples for encrypting data
When should I use CLRTDES or ENCTDES?
Using PASSWORD and RSA options
Specifying multiple RSA keys
Using RSA keys and digital certificates
Specifying the ICOUNT value
When should I compress data for encryption?
Verifying encryption files when you archive
Using Encryption Facility and UNIX pipes
Format of the header record for the CSDFILEN output file
Format of the statistics report file for CSDFILEN
Understanding the statistics report
CSDFILEN diagnostics
Compression warnings and errors
ICSF callable services and diagnostics
Return codes for CSDFILEN
JCL Examples for CSDFILEN
ICSF callable services for CSDFILEN
Decrypting files through CSDFILDE of the Encryption Services
JCL DD statements for CSDFILDE
Control statement keywords for CSDFILDE SYSIN DD
User reference information for decrypting data
Format of the statistics report file for CSDFILDE
Understanding the statistics report
CSDFILDE diagnostics
ICSF callable services and diagnostics
Corrupted compression dictionary
Return codes for CSDFILDE
JCL examples for CSDFILDE
ICSF callable services for CSDFILDE
Using Encryption Facility for the Java-based Client
Encryption and decryption functions
Installing the Java code
Using RSA keys and certificates
Considerations using the Java-based Client
Using DFSMSdss Encryption
JCL examples for DFSMSdss Encryption
Using RACF with Encryption Facility
Using RACF to store keys, manage PKDS labels, and send digital certificates
Using the RACDCERT command
Considerations using RACDCERT
User scenarios
Encrypting data using z/OS and decrypting using the Java-based Client
Scenario 1
Scenario 2
Scenario 3
Using the RACDCERT command for key and certificate management of encrypted data
Using ICSF utilities panels for PKDS key management