QSSLPCL should be *OPSYS too.

On Thu, Jan 2, 2025 at 8:48 AM Jim Franz <franz9000@xxxxxxxxx> wrote:

v7r5 w latest groups and cume
Apache log shows ssl format errors every day, but some customers today
reporting connection fails (like some browser updates maybe not accepting
older version???)

ibm_ssl:error] [pid 133:tid 00000030] ZSRV_MSG0281: SSL: 190.242.0.222.

ibm_ssl:error] [pid 133:tid 00000030] ZSRV_MSG0214: Improperly formated
certificate or

sysval QSSLCSLCTL = *OPSYS (and always has been this value)
sysval QSSLPCL =
Protocols
*TLSV1.2
*TLSV1.1
*TLSV1

do i have to manually add TLSV1.3 ? I always thought *OPSYS would handle
this...but obviously not. working my way thru this doc:
https://www.ibm.com/docs/en/i/7.5?topic=settings-cipher-suite-configuration


Jim Franz
--
This is the Web Enabling the IBM i (AS/400 and iSeries) (WEB400) mailing
list
To post a message email: WEB400@xxxxxxxxxxxxxxxxxx
To subscribe, unsubscribe, or change list options,
visit: https://lists.midrange.com/mailman/listinfo/web400
or email: WEB400-request@xxxxxxxxxxxxxxxxxx
Before posting, please take a moment to review the archives
at https://archive.midrange.com/web400.



As an Amazon Associate we earn from qualifying purchases.

This thread ...

Follow-Ups:
Replies:

Follow On AppleNews
Return to Archive home page | Return to MIDRANGE.COM home page

This mailing list archive is Copyright 1997-2025 by midrange.com and David Gibbs as a compilation work. Use of the archive is restricted to research of a business or technical nature. Any other uses are prohibited. Full details are available on our policy page. If you have questions about this, please contact [javascript protected email address].

Operating expenses for this site are earned using the Amazon Associate program and Google Adsense.