z/OS Security Server RACF Messages and Codes
Previous topic | Next topic | Contents | Contact z/OS | Library | PDF


IRRD109I

z/OS Security Server RACF Messages and Codes
SA23-2291-00

IRRD109I
The certificate cannot be added. Profile profile-name is already defined.

Explanation

This certificate exists in the RACF® database for a different user. The profile-name is truncated after 180 characters to fit within a single line of message output.

System action

RACDCERT command processing ends.

User response

Use RACDCERT CHECKCERT to determine if the digital certificate is defined for the correct user. A certificate can only exist for one user. You can perform one of the followings actions:
  • To add the certificate to a different user perform the following steps:
    1. Use RACDCERT EXPORT to export the certificate and its private key, if any, to a data set.
    2. Use RACDCERT DELETE to delete the certificate.
    3. Issue the RACDCERT ADD command for the correct user.
  • To replace the existing certificate, which is typically a self-signed certificate, with a signed copy from your certificate authority, or to replace the existing certificate with a renewed version, issue the RACDCERT ADD command for the correct user.
  • To enable multiple users to use the same certificate for different applications or servers, you must use a key ring. Using a key ring prevents the need to add the same certificate again. See the chapter on RACF digital certificates in z/OS Security Server RACF Security Administrator's Guide for further details.

Go to the previous page Go to the next page




Copyright IBM Corporation 1990, 2014