In order to use hardware encryption (ICSF) for FTPS does the server certificate in addition to being in ACF2 need to be exported out and placed in ICSF somehow.
Release : 16.0
Component : ACF2 for z/OS
ACF2's involvement with the certificates/keyrings/ICSF is as a repository.
The connection with ICSF is to send the private key to icsf for storage in the PKDS if needed
and retain connecting information like pkdslabel.
ACF2 does not actually process any handshakes or encryption of traffic.
This would be a question for IBM or FTPS support.