Encrypting the connection between the Z connector and the server started task

An overview of encrypting the connection between the Z connector and the server started task.

SSL encryption can be enabled to protect communication between the Z connector and the IBM Z Workload Scheduler server started task.

To enable the use of the SSL default certificates provided with IBM Z Workload Scheduler or your own certificates, you must:
  1. On the UNIX System Services of the z/OS system where the server runs, use the gskkyman utility of z/OS® Cryptographic Services System SSL to create the keystore database and generate the password file. Following this, you can import the default SSL certificates from the Z connector or from the Dynamic Workload Console.
  2. Configure IBM Z Workload Scheduler by specifying the TCPOPTS statement for the server started task.

For details, see Security for TCP/IP connections.