AT-TLS policy for the Tomcat server used by the CA VIEW webviewer.
search cancel

AT-TLS policy for the Tomcat server used by the CA VIEW webviewer.

book

Article ID: 218032

calendar_today

Updated On:

Products

COMMON SERVICES FOR Z/OS

Issue/Introduction

Customer is installing CA-View Webviewer and installing the Apache Tomcat server distributed with Common Services.
If I am using AT-TLS for the SSL Connection, are there any recommendations for specifying any possible polcies?  

 

 

 

Environment

Release : Common Services r15.0

Component : APACHE TOMCAT

Cause

Question on "best practices" policy (policies) for use with AT-TLS 

Resolution

There are no specific policies for use with AT-TLS.  The only required setups are:

  • The server certificate KEYSIZE should be 2048 to use the current level of TLS in Tomcat.
  • If using SAF key rings, the cert should be added to the key ring with USAGE(PERSONAL).
  • Configure any policies as per site requirements
  • Configure the TOMCAT region as Non-Secure to allow AT-TLS to handle any security 

Additional Information

Review the Common Services r15.0 documentation for details on configuring the TOMCAT region for use with AT-TLS.