Hi Everyone,

I'm hoping someone can clear up some confusion I'm having.

I'm trying to test SSL with Telnet, at the moment I'm getting the error "25406 - An IO error occurred on a data read or write" when I try to connect. I have tried the following:


1) Deleted and recreated the local CA

2) Deleted the *SYSTEM certificate store and recreated with a new certificate, trusting the local CA

3) Assigned this certificate to the server application i5/OS TCP/IP Telnet Server.

4) Downloaded the CA to the Client Access key database.

I have also tried the above steps using a Digicert wildcard certificate and CA.

Anyway, I guess my question is do I need to secure the client side? That is, can I just do what I've done above, allow the Telnet server to start both secure and non-secure and then control which users use SSL by the relevant configuration setting on the 5250 session (and if yes, what am I missing above?), or do I also have to secure the QIBM_QTV_TELNET_CLIENT side with the certificate and generate a user certificate?

Thanks

Adam Driver
IBM Certified Systems Administrator - System i
Consultant - Infrastructure Technician
Exacta Corporation
608.661.6697 ext 2581
adriver@xxxxxxxxxxxx<mailto:adriver@xxxxxxxxxxxx>
Please consider your environmental responsibility before printing this e-mail.



[Like us on Facebook!]<http://on.fb.me/t7A5KE>

- WEA Trust Confidentiality Notice -

This electronic mail message and any files transmitted with it are confidential and are intended solely for the use of the individual or entity to whom they are addressed. Dissemination, forwarding, printing, or copying of this electronic mail without the consent of the sender is strictly prohibited. If you are not the intended recipient or the person responsible for delivering the electronic mail to the intended recipient, be advised that you have received this electronic mail in error; please immediately notify the sender by return mail.

As an Amazon Associate we earn from qualifying purchases.

This thread ...

Follow-Ups:

Follow On AppleNews
Return to Archive home page | Return to MIDRANGE.COM home page

This mailing list archive is Copyright 1997-2024 by midrange.com and David Gibbs as a compilation work. Use of the archive is restricted to research of a business or technical nature. Any other uses are prohibited. Full details are available on our policy page. If you have questions about this, please contact [javascript protected email address].

Operating expenses for this site are earned using the Amazon Associate program and Google Adsense.