z/OS Security Server RACF Messages and Codes
Previous topic | Next topic | Contents | Contact z/OS | Library | PDF


IRRD118I

z/OS Security Server RACF Messages and Codes
SA23-2291-00

IRRD118I
Unsupported encryption algorithm. {Certificate added with TRUST status. | Certificate added with NOTRUST status. | Certificate not created. | Certificate signature not verified.}

Explanation

You are trying to add or generate a certificate from a certificate request, or you are trying to check if the specified data set contains a valid chain of certificates. RACF® cannot validate the signature because the algorithm that was used to generate the certificate's signature or the certificate request's signature is not supported by RACF.

System action

If you are adding a certificate, the certificate is added with the trust status that you specified. If you did not specify a trust status, the certificate is added with NOTRUST status. If you are generating a certificate, the certificate is not created. If you are checking a certificate chain in a data set, the signing algorithm entry of the certificate with the unsupported algorithm is displayed as 'UNKNOWN'.

User response

Acquire a certificate or certificate request with a signature algorithm that is supported by RACF and reissue the RACDCERT ADD or RACDCERT GENCERT command. If the certificate was added, delete the old certificate. For a list of supported algorithms, see RACDCERT ADD in z/OS Security Server RACF Command Language Reference.

Go to the previous page Go to the next page




Copyright IBM Corporation 1990, 2014