IBM Support

Why are we getting the error message FC2733 ftpAuthAttls: No AT-TLS policy matched connection?

Question & Answer


Question

We have configured our FTP server for AT-TLS. The FTP client system is not configured for AT-TLS. After executing ftp -a tls ftp_server_name (trace from the client, we receive this message:

FC2733 ftpAuthAttls: No AT-TLS policy matched connection. Authentication negotiation failed.

What do we need to do to eliminate this problem?

Answer

When the FTP server is configured for AT-TLS, and the FTP client is not configured for AT-TLS, the TLSMECHANISM statement should be specified with the FTP parameter in the client's FTP.DATA file. If TLSMECHANISM FTP is not coded in the client's FTP.DATA file, the FTP command will fail with the message FC2733 ftpAuthAttls: No AT-TLS policy matched connection. Authentication negotiation failed.

To resolve the problem, first check the client's FTP.DATA file to see if TLSMECHANISM FTP is coded. If it is missing, add TLSMECHANISM FTP to the client's FTP.DATA file. If it is already coded, contact IBM technical support.

[{"Business Unit":{"code":"BU054","label":"Systems w\/TPS"},"Product":{"code":"SSSN3L","label":"z\/OS Communications Server"},"Platform":[{"code":"PF035","label":"z\/OS"}],"Component":"","Version":"","Line of Business":{"code":"LOB35","label":"Mainframe SW"}}]

Product Synonym

ZOSCS COMMSERVER

Document Information

Modified date:
12 August 2015

UID

dwa1207829