The data encryption level is negotiated in the BIND and BIND response for each session. The session's data encryption level is determined by the ENCR parameter on the LUs' APPL definition statements, the ENCR parameter on the logmode table entry, and the MODIFY ENCR operator command.
For more information about coding the ENCR parameter, refer to z/OS Communications Server: SNA Resource Definition Reference. For more information about the MODIFY ENCR command, refer to z/OS Communications Server: SNA Operation. For additional information about session level cryptography, refer to z/OS Communications Server: SNA Programming.
The partner LU can negotiate the data encryption to a higher level, but it cannot negotiate it to a lower level. On completion of either an APPCCMD CONTROL=ALLOC, or APPCCMD CONTROL=RCVFMH5 macro, the RPL6CRYP field of the RPL6 will indicate the data encryption level of the session allocated to the conversation.
Primary LU, from |
Secondary LU, from |
Logon Mode |
Level of Cryptography |
---|---|---|---|
Required |
Required |
Required |
A required session is established. |
Selective |
Required |
||
None, |
Required |
||
None, and not |
Required |
The request for session establishment |
|
Selective |
Required |
Required |
A required session is established. |
Selective |
Required |
A required session is established. |
|
Selective |
A selective session is established. |
||
None, but capable |
Required |
A required session is established. |
|
Selective |
A selective session is established. |
||
None, and not |
Required |
The request for session establishment |
|
Conditional |
Required |
Required |
A required session is established. |
Selective |
Required |
||
None, |
Required |
||
None, and not |
Required |
The request for session establishment |
|
None |
A session is established without |
||
Optional or |
Required |
Required |
A required session is established. |
Selective |
Required |
A required session is established. |
|
Selective |
A selective session is established. |
||
None, |
Required |
A required session is established. |
|
Selective |
A selective session is established. |
||
None |
A session is established without |
||
None, and not |
Required |
The request for session establishment |
|
None |
A session is established without |