IBM Support

DFHAM4928 certificate does not have a private key when installing a TCPIPSERVICE

Question & Answer


Question

When I am trying to install a TCPIPSERVICE definition in CICS Transaction Server for z/OS (CICS TS), I receive message:

DFHAM4928 E Install of TCPIPSERVICE servicename failed because the specified certificate certname does not have a private key.

I entered a RACDCERT LIST command to look at my certificate and it does show that there is no private key. What is the best way to resolve this problem?

Answer

To save time and effort I would suggest that you delete the current certificate and generate a new certificate and private key, then install the new certificate into the key ring owned by the region userid.

For additional information see Using the RACDCERT command to administer certificates.

[{"Business Unit":{"code":"BU058","label":"IBM Infrastructure w\/TPS"},"Product":{"code":"SSGMGV","label":"CICS Transaction Server"},"Platform":[{"code":"PF035","label":"z\/OS"}],"Component":"SSL","Version":"","Line of Business":{"code":"LOB35","label":"Mainframe SW"}}]

Product Synonym

CICS/TS CICSTS CICS TS CICS Transaction Server

Document Information

Modified date:
09 February 2017

UID

dwa1355355