How do you setup FTP Server and Client Authentication with a TOP SECRET generated self-signed Digital Certificate?
FTP SERVER AUTHENTICATION with a TOP SECRET generated self-signed Digital Certificate.
NOTE: The following are example commands and may vary depending on your naming conventions and environment. Please adjust them accordingly to your site standards and environment.
TSS GENCERT(FTPS) DIGICERT(FTPSCERT) -
SUBJECTN('o="COMPANYA" CN="FTPS certificate" -
OU="SYSTEMS" C="US" ')
TSS ADD(FTPS) KEYRING(FTPSRING) LABLRING(FTPSRING)
Note: No blank spaces in the LABLRING.
TSS ADD(FTPS) KEYRING(FTPSRING) RINGDATA(FTPS, FTPSCERT) -
DEFAULT USEAGE(PERSONAL)
TSS EXPORT(FTPS) DIGICERT(FTPSCERT)-
DCDSN('FTPS.SERVER.CERT')
Note: Dataset should not be formatted. It is automatically created and cataloged.
TSS ADD(USERA) KEYRING(USRARING) -
RINGDATA(FTPS,FTPSCERT) DEFAULT USAGE(PERSONAL)
TSS PER(FTPS) IBMFAC(IRR.DIGTCERT.GENCERT) ACC(UPDATE)
TSS PER(FTPS) IBMFAC(IRR.DIGTCERT.LISTRING) ACC(UPDATE)
TSS PER(FTPS) IBMFAC(IRR.DIGTCERT.LIST) ACC(UPDATE)
TSS PER(USRA) IBMFAC(IRR.DIGTCERT.GENCERT) ACC(UPDATE)
TSS PER(USRA) IBMFAC(IRR.DIGTCERT.LISTRING) ACC(UPDATE)
TSS PER(USRA) IBMFAC(IRR.DIGTCERT.LIST) ACC(UPDATE)
The following example shows how to setup FTP CLIENT AUTHENTICATION with a TOP SECRET generated self-signed Digital Certificate
NOTE: The following are example commands and may vary depending on your naming conventions and environment. Please adjust them accordingly to your site standards and environment.
TSS GENCERT(USERA) DIGICERT(USRACERT) -
SUBJECTN('o="COMPANYA" CN="USERA self-signed ftp cert"
OU="DEPTA" - C="US"') LABELCERT('USERACERT') TRUST
TSS ADD(USERA) KEYRING(USRARING) LABLRING(USRARING)
TSS ADD(USERA) KEYRING(USRARING) -
RINGDATA(USERA,USRACERT) DEFAULT USEAGE(PERSONAL)
TSS ADD(FTPS) KEYRING(FTPSRING) RINGDATA(USERA,USRACERT) -
DEFAULT USEAGE(CERTAUTH)
TSS ADD(USERA) KEYRING(USRARING) -
RINGDATA(FTPS,FTPSCERT) USAGE(PERSONAL)