X-Posted IBM-MAIN and MVS-OE.

 

I am trying to load a certificate and key into a FIPS-140 GSK database. I am
getting Status 0x03353003 - Cryptographic algorithm is not supported. How
would I know exactly what algorithm it is complaining about? Here's an
extract from the certificate and key:

 

Certificate:

    Data:

        Version: 3 (0x2)

        Serial Number: 33 (0x21)

    Signature Algorithm: sha512WithRSAEncryption

        Validity

            Not Before: Nov  6 22:23:23 2017 GMT

            Not After : Nov  6 22:23:23 2018 GMT

        Subject Public Key Info:

            Public Key Algorithm: rsaEncryption

                Public-Key: (2048 bit)

                Exponent: 65537 (0x10001)

        X509v3 extensions:

            X509v3 Basic Constraints:

                CA:FALSE

            X509v3 Extended Key Usage:

                TLS Web Server Authentication, TLS Web Client Authentication

            Netscape Comment:

                OpenSSL Generated Certificate

                82:7D:1F:EF:53:DB:3D:E1:14:62:03:49:34:16:A2:92:D9:46:51:1E

    Signature Algorithm: sha512WithRSAEncryption

 

It loads into a non-FIPS-140 certificate database, so everything about the
format and so forth is fine - it's just that some algorithm is out of date.

 

Thanks,

 

Charles 

 


----------------------------------------------------------------------
For IBM-MAIN subscribe / signoff / archive access instructions,
send email to lists...@listserv.ua.edu with the message: INFO IBM-MAIN

Reply via email to