Remote certificate expiration monitoring support provides the capability for the z/TPF system to collect information about remote TLS certificates and notify you when a certificate is nearing expiration.
The
z/TPF system stores information about a remote
TLS certificate after a session is successfully established. The collected data includes the following information:
- Remote IP address
- Server port number
- Certificate serial number
- Certificate subject name
- Certificate issuance and expiration dates
To display a summary of remote TLS certificate information, use the ZDCOM command with the REMCERT and SUMMARY parameters. This support provides a mechanism to notify you when a remote TLS certificate is nearing expiration. You can control notifications based on the number of days remaining until expiration for each certificate by using the RCERTEX parameter on the ZNKEY command or SNAKEY macro.
For more information about APAR PJ48215, see the APEDIT.