X-Posted IBM-MAIN and MVS-OE.


I am trying to load a certificate and key into a FIPS-140 GSK database. I am
getting Status 0x03353003 - Cryptographic algorithm is not supported. How
would I know exactly what algorithm it is complaining about? Here's an
extract from the certificate and key:




        Version: 3 (0x2)

        Serial Number: 33 (0x21)

    Signature Algorithm: sha512WithRSAEncryption


            Not Before: Nov  6 22:23:23 2017 GMT

            Not After : Nov  6 22:23:23 2018 GMT

        Subject Public Key Info:

            Public Key Algorithm: rsaEncryption

                Public-Key: (2048 bit)

                Exponent: 65537 (0x10001)

        X509v3 extensions:

            X509v3 Basic Constraints:


            X509v3 Extended Key Usage:

                TLS Web Server Authentication, TLS Web Client Authentication

            Netscape Comment:

                OpenSSL Generated Certificate


    Signature Algorithm: sha512WithRSAEncryption


It loads into a non-FIPS-140 certificate database, so everything about the
format and so forth is fine - it's just that some algorithm is out of date.






For IBM-MAIN subscribe / signoff / archive access instructions,
send email to lists...@listserv.ua.edu with the message: INFO IBM-MAIN

Reply via email to