Configuring a z/OS client or server system

On each z/OS system where a server or client application is to implement AT-TLS security, you need to perform these basic tasks:

  1. Create a key ring

  2. Create Policy Agent files

  3. Add AT-TLS configuration

  4. Add statements to the TTLSConfig policy file

  5. Set up InitStack access control

  6. Enable AT-TLS.

The following subsections present an example of configuration tasks performed to ensure SSL secure communication for the following network participants, all of which use self-signed digital certificates: