Security Model Integration

The z/OS security domain differs from the Distributed security domain by several distinguishing features:

  1. Additional global security features

  2. Two types of SSL repertoires

  3. JSSE (JDK SSL)

  4. System SSL (z/OS-native SSL)

  5. Optional use of SAF repository as an alternative to key ring file

  6. ICSF authentication mechanism (based on z/Series HW cryptographic processor)

  7. SAF local OS registry settings

  8. zSAS configuration in place of SAS Inbound/Outbound configuration

Global Security

The z/OS security domain has the following additional configuration options: default remote and local identifies for unauthenticated client requests, and options for application and connector thread identity enablement.

These additional configuration options are ...

Get IBM® WebSphere® System Administration now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.