Function return codes

Table 1 lists the new and updated function return codes. See z/OS Cryptographic Services System SSL Programming for more detailed information.

Table 1. Summary of changes to function return codes
Function code Release Description Reason for change
10 z/OS® V1R12 Changed: ASN processing error. Documentation clarification
13 z/OS V1R13 New: Size specified for supplied structure is too small. Release update
14 z/OS V1R13 New: Required gsk_all_cipher_suites structure not supplied. Elliptic Curve Cryptography for TLS
202 z/OS V2R1 Changed: Error detected while opening the certificate database. Documentation clarification
402 z/OS V2R1 Changed: No SSL cipher specifications. Documentation clarification
z/OS V1R13 Changed: No SSL cipher specifications. Documentation clarification
407 z/OS V2R1 Changed: Key label does not exist. Documentation clarification
422 z/OS V1R13 Changed: SSL V3 cipher is not valid. Elliptic Curve Cryptography for TLS
428 z/OS V1R13 Changed: Key entry does not contain a private key. Documentation clarification
432 z/OS V1R13 Changed: Session renegotiation is not allowed. Documentation clarification
z/OS V1R12 Changed: Session renegotiation is not allowed. RFC 5746 renegotiation
440 z/OS V2R1 Changed: Incorrect key usage. gskkyman menu restructuring - updated menu titles
z/OS V1R13 Changed: Incorrect key usage. Elliptic Curve Cryptography for TLS
z/OS V1R12 Changed: Incorrect key usage. Documentation clarification
451 z/OS V1R13 New: Elliptic Curve is not supported. Elliptic Curve Cryptography for TLS
452 z/OS V1R13 New: EC Parameters not supplied. Elliptic Curve Cryptography for TLS
453 z/OS V1R13 New: Signature not supplied. Elliptic Curve Cryptography for TLS
454 z/OS V1R13 New: Elliptic curve parameters are not valid. Elliptic Curve Cryptography for TLS
455 z/OS V2R1 Changed: ICSF services are not available. Documentation clarification
z/OS V1R13 New: ICSF services are not available. Elliptic Curve Cryptography for TLS
456 z/OS V1R13 New: ICSF callable service returned an error. Elliptic Curve Cryptography for TLS
457 z/OS V1R13 New: ICSF PKCS #11 not operating in FIPS mode. Elliptic Curve Cryptography for TLS
458 z/OS V1R13 New: The SSL V3 expanded cipher is not valid. Elliptic Curve Cryptography for TLS
459 z/OS V1R13 New: Elliptic Curve is not supported in FIPS mode. Elliptic Curve Cryptography for TLS
460 z/OS V1R12 New: Required TLS Renegotiation Indication not received. RFC 5746 renegotiation
461 z/OS V1R13 New: EC domain parameter format is not supported. Elliptic Curve Cryptography for TLS
462 z/OS V1R13 New: Elliptic curve point format is not supported. Elliptic Curve Cryptography for TLS
463 z/OS V1R13 New: Cryptographic hardware does not support service or algorithm. Elliptic Curve Cryptography for TLS
464 z/OS V1R13 New: Elliptic curve list is not valid. Elliptic Curve Cryptography for TLS
465 z/OS V2R1 New: ICSF PKCS #11 services are disabled. FIPS 140-2 Support
466 z/OS V1R13 with APAR OA39422 New: Signature algorithm pairs list is not valid. TLS V1.2
467 z/OS V1R13 with APAR OA39422 New: Signature algorithm not in signature algorithm pairs list. TLS V1.2
468 z/OS V1R13 with APAR OA39422 New: Certificate key algorithm not in signature algorithm pairs list. TLS V1.2
469 z/OS V2R1 New: Incorrect key attribute. Support for secure private keys in a PKCS #11 token
470 z/OS V2R1 New: Certificate does not meet Suite B requirements. Suite B for TLS
471 z/OS V2R1 New: Secure private key cannot be used with a fixed ECDH key exchange. Support for secure private keys in a PKCS #11 token
472 z/OS V2R1 New: Clear key support not available because of ICSF key policy. Release update
601 z/OS V1R13 with APAR OA39422 Changed: Protocol is not SSL V3, TLS V1.0, TLS V1.1, or TLS V1.2. TLS V1.2
603 z/OS V1R12 New: Specified function enumerator is not valid. Release update
604 z/OS V1R12 New: Send sequence number is near maximum value. Release update