David, If you are using client connections, this APAR might be of interest to you. It describes how to enable/disable the use of one certificate for multiple clients.
http://www-1.ibm.com/support/docview.wss?rs=1045&context=SSFKSJ&dc=DB550 &dc=D100&q1=ssl+multiple&uid=swg1IC50156&loc=en_US&cs=UTF-8&lang=all -Bridgette Beardsley -----Original Message----- From: MQSeries List [mailto:[EMAIL PROTECTED] On Behalf Of Dave Corbett Sent: Thursday, October 19, 2006 11:21 AM To: [email protected] Subject: Multiple certificates for a QMGR not allowed? All, I have a question regarding MQ and certificates. We are just getting into the SSL world of MQ, and it seems that when we generate a certificate for a QMGR, and then assign that certificate, that we can only have one certificate per QMGR. Is this the SSL model that is expected when using SSL MQ channels? The issue is that we have a requirement from an organization where they will be the CA for all traffic between us & them, and yet we will want to use our credentials (where someone else - say verisign acts as the CA) to talk to other entities. It looks like in order to accomplish our goal we may need to insert an MQ proxy server in tier 2 to handle the credentials from this organization so that we can then use our credentials to get to our real back end systems. I suppose this a good thing anyway. Does anyone else have any thoughts on this? All comments are welcome and appreciated. Thanks, David Corbett IBM Certified System Administrator -- WebSphere MQ V6.0 IBM Certified Solution Designer -- WebSphere MQ V6.0 ------------------------------------------------------------------------ ------ Electronic Privacy Notice. This e-mail, and any attachments, contains information that is, or may be, covered by electronic communications privacy laws, and is also confidential and proprietary in nature. If you are not the intended recipient, please be advised that you are legally prohibited from retaining, using, copying, distributing, or otherwise disclosing this information in any manner. Instead, please reply to the sender that you have received this communication in error, and then immediately delete it. Thank you in advance for your cooperation. ======================================================================== ====== To unsubscribe, write to [EMAIL PROTECTED] and, in the message body (not the subject), write: SIGNOFF MQSERIES Instructions for managing your mailing list subscription are provided in the Listserv General Users Guide available at http://www.lsoft.com Archive: http://listserv.meduniwien.ac.at/archives/mqser-l.html To unsubscribe, write to [EMAIL PROTECTED] and, in the message body (not the subject), write: SIGNOFF MQSERIES Instructions for managing your mailing list subscription are provided in the Listserv General Users Guide available at http://www.lsoft.com Archive: http://listserv.meduniwien.ac.at/archives/mqser-l.html
