David,

If you are using client connections, this APAR might be of interest to
you.  It describes how to enable/disable the use of one certificate for
multiple clients.

http://www-1.ibm.com/support/docview.wss?rs=1045&context=SSFKSJ&dc=DB550
&dc=D100&q1=ssl+multiple&uid=swg1IC50156&loc=en_US&cs=UTF-8&lang=all

-Bridgette Beardsley

-----Original Message-----
From: MQSeries List [mailto:[EMAIL PROTECTED] On
Behalf Of Dave Corbett
Sent: Thursday, October 19, 2006 11:21 AM
To: [email protected]
Subject: Multiple certificates for a QMGR not allowed?

All,

I have a question regarding MQ and certificates.  We are just getting
into
the SSL world of MQ, and it seems that when we generate a certificate
for a
QMGR, and then assign that certificate, that we can only have one
certificate per QMGR.  Is this the SSL model that is expected when using
SSL MQ channels?

The issue is that we have a requirement from an organization where they
will be the CA for all traffic between us & them, and yet we will want
to
use our credentials (where someone else - say verisign acts as the CA)
to
talk to other entities.

It looks like in order to accomplish our goal we may need to insert an
MQ
proxy server in tier 2 to handle the credentials from this organization
so
that we can then use our credentials to get to our real back end
systems.

I suppose this a good thing anyway.  Does anyone else have any thoughts
on
this?  All comments are welcome and appreciated.

Thanks,
David Corbett
IBM Certified System Administrator -- WebSphere MQ V6.0
IBM Certified Solution Designer -- WebSphere MQ V6.0


------------------------------------------------------------------------
------
Electronic Privacy Notice. This e-mail, and any attachments, contains
information that is, or may be, covered by electronic communications
privacy laws, and is also confidential and proprietary in nature. If you
are not the intended recipient, please be advised that you are legally
prohibited from retaining, using, copying, distributing, or otherwise
disclosing this information in any manner. Instead, please reply to the
sender that you have received this communication in error, and then
immediately delete it. Thank you in advance for your cooperation.
========================================================================
======

To unsubscribe, write to [EMAIL PROTECTED] and,
in the message body (not the subject), write: SIGNOFF MQSERIES
Instructions for managing your mailing list subscription are provided in
the Listserv General Users Guide available at http://www.lsoft.com
Archive: http://listserv.meduniwien.ac.at/archives/mqser-l.html

To unsubscribe, write to [EMAIL PROTECTED] and,
in the message body (not the subject), write: SIGNOFF MQSERIES
Instructions for managing your mailing list subscription are provided in
the Listserv General Users Guide available at http://www.lsoft.com
Archive: http://listserv.meduniwien.ac.at/archives/mqser-l.html

Reply via email to