SSL Certificate errors and sysval ssl settings

Jim Franz <[email protected]> Thu, 2 Jan 2025 09:48:42 -0500
Newsgroups gmane.comp.systems.as400.web
Message-ID <CAEVZ15NVK+V8v3AAZSy1mVQ8Xvybs1SNSWxaAPZiqbS1w9GMtQ@mail.gmail.com>
v7r5 w latest groups and cume
Apache log shows ssl format errors every day, but some customers today
reporting connection fails (like some browser updates maybe not accepting
older version???)

ibm_ssl:error] [pid 133:tid 00000030] ZSRV_MSG0281: SSL: 190.242.0.222.

ibm_ssl:error] [pid 133:tid 00000030] ZSRV_MSG0214: Improperly formated
certificate or

sysval  QSSLCSLCTL = *OPSYS    (and always has been this value)
sysval QSSLPCL =
Protocols
*TLSV1.2
*TLSV1.1
*TLSV1

do i have to manually add TLSV1.3 ?  I always thought *OPSYS would handle
this...but obviously not. working my way thru this doc:
https://www.ibm.com/docs/en/i/7.5?topic=settings-cipher-suite-configuration


Jim Franz
-- 
This is the Web Enabling the IBM i (AS/400 and iSeries) (WEB400) mailing list
To post a message email: [email protected]
To subscribe, unsubscribe, or change list options,
visit: https://lists.midrange.com/mailman/listinfo/web400
or email: [email protected]
Before posting, please take a moment to review the archives
at https://archive.midrange.com/web400.