Invalid Client Certificate for CA SMP/E Internet Service Retrieval
search cancel

Invalid Client Certificate for CA SMP/E Internet Service Retrieval

book

Article ID: 100621

calendar_today

Updated On:

Products

COMMON SERVICES FOR Z/OS Common Services

Issue/Introduction

I am setting up CA SMP/E Internet Service Retrieval. I download the SMPE Client Certificate ca-receive-order.cer and then ftp in binary mode into dataset TS.CA.DCERT.PFX.

The RACDCERT ADD commands fails:

RACDCERT ID(DC351) ADD('TS.CA.DCERT.PFX') WITHLABEL('SMPE Client Certificate') TRUST
The input data set does not contain a valid certificate. 

 

Environment

Release: N/A
Component: RCVORD

Resolution

Verify that the LRECL for the dataset is correct. Otherwise truncation may occur making the certificate invalid. For this client certificate LRECL=2048 is long enough and use ASCII mode for the download.

The first line in the dataset after the download should be:
-----BEGIN CERTIFICATE-----
 
The last line should be:
-----END CERTIFICATE-----

Please refer ro link: 
Import a User Certificate from Broadcom Support Site

The link for the user certificate download is in step 2.