Storage Display Command Not Accepted by the Stand-Alone Telnet Server The DISPLAY TCPIP,tnproc,TELNET,STOR command is issued to track storage usage by the TN3270 Telnet server when running as a stand-alone address space. After an upgrade to z/OS 1.10, the attempt fails with the following message:[<xmp> EZZ6048I TELNET DISPLAY COMMAND FAILED WITH RCODE 803F</xmp>] |
Abend0c4 in VTAM module ISTPUCCA during application close ACB VTAM abend due to bad RUPE pointer in Register 4. Register 4 is loaded with ACDRUPE from ACDEB. The ACDRUPE field is overlaid with data x'00004800'. |
|
|
Migration Issue for Custom CICS Listener Transactions There is a change in z/OS 1.9 which will affect any customer applications that use a custom listener transaction through the CICS Socket API. The code that locates the Listener Control Area (LCA) for the transaction will at least need to be recompiled using the updated EZACICA macro. If the transaction is deployed to run on multiple z/OS releases, additional code will need to be added to support both. [<b>Note:</b>] If the EZACIC02 module has been copied to another library from earlier rel |
IBM Configuration Assistant for z/OS Communications Server IBM Configuration Assistant for z/OS Communications Server provides centralized configuration of AT-TLS, IP Security, NSS, PBR, QoS, and IDS policies. |
Directory Services Management Exit (DSME) Sample code Sample implementation of a Directory Services Management Exit (DSME). |
SYSTCPDA: z/OS Communications Server TCP/IP Packet Trace Formatter This is a replacement for the z/OS Communication Service Packet Trace Formatter |
z/OS Network Security Configuration Assistant z/OS Network Security Configuration Assistant provides centralized configuration of IP Security and AT-TLS policy for z/OS V1R7. |
|
|
Manage z/OS Intrusion Detection Services events with Tivoli Risk Manager The sample format file provides a mapping of z/OS CommServer Intrusion Detection Services (IDS) syslog messages to Tivoli Risk Manager attributes. |
IBM TCP/IP Configuration Demo for z/OS A configuration tool for creating TCP/IP, FTP, and TN3270 profiles for z/OS. |
eServer IDS Configuration Manager The eServer IDS Configuration Manager enables centralized configuration of Intrusion Detection policy for z/OS. |
CBSample CBSAMPLE is a sample application program that can be used to graphically monitor internal TCP/IP variables on a z/OS host system. |
HIPER Fix List for VTAM in the z/OS Communications Server This document details the HIPER fixes for VTAM and related components on the z/OS Communications Server. A similar list for TCP/IP components can be found in document [<a href="http://www-01.ibm.com/support/docview.wss?rs=852&uid=swg21316935" target="_blank">1316935</a>]. |
|
|
HIPER Fix List for TCP/IP in the z/OS Communications Server This document details the HIPER fixes for TCP/IP and related components on the z/OS Communications Server. A similar list for VTAM components can be found in document [<a href="http://www-01.ibm.com/support/docview.wss?rs=852&uid=swg21316934" target="_blank">1316934</a>]. |
Diagnosing slow logon or logon hangs. In subarea, APPN or mixed subarea and APPN networks, a logon can sometimes hang or take considerable time for the session to setup. There are VTAM start options that can help reduce some of these problems as well as methods to determine what may be causing these issues. |
Tandem LUs become SLU Disabled after change from NCP to APPN DLUR configuration and a session attempt to an application that is not active Tandem LUs that were connected through an NCP were migrated to a SNASwitch router using the DLUR function. The Tandem LUs were attempting a session to an application that was not currently active. Upon the session failure VTAM sent a notify to the Tandem LU with sense code 08570002. At this point the Tandem LU sends a notify to VTAM indicating the SLU is disabled. |
TCP/IP Name Resolution Fails for Long-Running Applications Applications that are long-running or that use multiple tasks fail when performing host name resolution for names (GETHOSTBYNAME or GETADDRINFO) or addresses (GETHOSTBYADDR or GETNAMEINFO). However, other processes work without any problems. Example applications are CICS, IMS, VTAM, or (in some cases) TSO sessions. |
Resolver Calls Fail Even Though Input Files Are Properly Defined Issuing a Resolver call (such as gethostbyname(), gethostbyaddr(), getnameinfo(), or getaddrinfo()) fails with an indication that the name or address could not be found. The /etc/resolv.conf file appears to be configured correctly. |
Sending Files to z/OS Communications Server and Application Time Facility Support How do I send documentation to the z/OS Communications Server (TCP/IP, VTAM) or Application Time Facility (ATF) level 2 team? NOTE: The information presented in this documentation was previously maintained in informational APAR II12030. |
EZA2562W with errcode 970C and reason code 42B4 An attempt to FTP a dataset to the z/OS system results in the following message: [<pre> EZA2562W Allocation of dsn failed (error code 970C info code 0000 S99ERSN 000042B4)</pre>]dsn is the name of the dataset having the allocation failure. |
IST663I BFTERM REQUEST FROM ISTPUS RECEIVED, SENSE=08050000 APPC session fails for session LIMIT with sense 08050000. |
MVS KEYRING support restored After moving to z/OS Communications Server V1R9 from an earlier release, Telnet initialization flagged the MVS keyword on the SECUREPORT statement as invalid. |
Session setup hangs in PSEST/B-P over EE LU issues a LOGON to an application on an adjacent CP over an EE connection. The session at the application host hangs with a status of PSEST/B-P PSEST waiting on the HPR pipe to complete setup. |
Sense codes 40090000 and 40190000 are being set intermittently on LU to LU conversations Sessions are being terminated by a remote partner with sense codes 40090000 and 40190000. |
IST663I INIT Other Request fails with sense 087D0001 and 087F0001 After migration to z/OS V1R9, LU to LU sessions are failing to get a session. Sessions are failing to ISTAPNCP with sense 087f0001. |
Activation of an EE XCA major node fails with 08100024 sense code Activation of an EE XCA major nodes fails with the 08100024 sense code. The 08100024 sense code will be displayed in the IST1683I message indicating that an activation of an EE connection has failed. |
Abend0C4 in TTCP106 (TMON for TCPIP) Abend0C4's in modules TTCP106 +2DA and IEAVTRG1 +01C4. |
The sendmail command fails after a z/OS upgrade Attempts to use the sendmail client command fail after upgrading to a new z/OS release. |
How to determine whether CP-CP sessions are using Enterprise Extender How do I determine whether CP-CP sessions in my network are using Enterprise Extender? |
Unable to Start TCPIP After Maintenance System was IPLed using an updated system (either PTF maintenance or a z/OS upgrade). The initial attempt to (automatically) start TCPIP failed with an S047 ABEND (module not authorized), which was subsequently corrected by dynamically adding the correct SEZALOAD data set to the APF list. However, subsequent attempts also fail with EZZ4203I messages. |
CSQX213E =MQSB CSQXRCTL Communications error, 539 channel A session between two applications intermittently unbinds when sending data on the session. The UNBIND contains sense code 800A0000 for PIU too large. |
What is the maximum number of OPEN ACBs allowed on a VTAM host? In assessing our application capacity, we need to know the maximum number of OPEN ACBs allowed on a VTAM host. |
DFHZC2481 Sense code 1001 82E3 Print file sent by CICS stops printing in the middle of the print job. |
DFHZC2404 RIDS/DFHZNAC PRCS/00000001 PCSS/VTAM#RETUR PCSS/N#CODE#145 PCSS/5 After migrating to z/OS V1R9, CICS issues DFHZC2404 message for a SIMLOGON failure with RTNCD FDB2 1455. This occurs when the CICS user attempts to ACQUIRE a printer LU. |
Using IPSec to secure Enterprise Extender demo A demo showing how you can configure IPSec to secure Enterprise Extender connections. |
Securing an SNA environment for the 21st century In today's ever expanding business environment, securing an IT Enterprise takes center stage in an overall business strategy. However, over the past 10 years as the IT industry has enhanced security defenses and best practices for IP networks, configuring secure SNA environments has not been pursued with the same zeal for some organizations. |
Redbooks - Communications Server for z/OS V1R9 TCP/IP Implementation Volume 4: Security and Policy-Based Networking This Communications Server (CS) for z/OS TCP/IP Implementation series provides easy-to-understand, step-by-step how-to guidance on enabling the most commonly used and important functions of CS for z/OS TCP/IP. With the advent of TCP/IP and the Internet, network security requirements have become more stringent and complex. Because many transactions come from untrusted networks such as the Internet, and from unknown users, careful attention must be given to host and user authentication, data privacy, data origin authentication, and data integrity. In addition, there are certain applications shipped with TCP/IP such as File Transfer Protocol (FTP) that, without proper configuration and access controls in place, could allow unauthorized users access to system resources and data. This IBM Redbooks publication explains how to set up security for your z/OS networking environment. For more specific information about CS for z/OS base functions, standard applications, and high availability, refer to the other volumes in the series. These are: - Communications Server for z/OS V1R9 TCP/IP Implementation, Volume 1: Base Functions, Connectivity, and Routing, SG24-7532 - Communications Server for z/OS V1R9 TCP/IP Implementation, Volume 2: Standard Applications, SG24-7533 - Communications Server for z/OS V1R9 TCP/IP Implementation, Volume 3: High Availability, Scalability, and Performance, SG24-7534 |
APPN Configurations: Recommendations And Limitations This document provides APPN configuration information and considerations when implementing an APPN network. |
Jurassic Networking: SNA applications in an IP world Like the mainframe, many people have predicted the death of SNA networking. Join us as we examine the current state of SNA networking and applications. We'll explore the reasons why many enterprises are choosing to maintain their investment in SNA applications. We'll also take a look at some of the alternatives available for transporting your SNA data across an IP network. |
Redbooks - Communications Server for z/OS V1R9 TCP/IP Implementation Volume 3: High Availability, Scalability, and Performance This Communications Server (CS) for z/OS TCP/IP Implementation series provides easy-to-understand, step-by-step guidance on enabling the most commonly used and important functions of CS for z/OS TCP/IP. In this IBM Redbooks publication we begin with a discussion of Virtual IP Addressing (VIPA), a TCP/IP high-availability approach introduced by the z/OS Communications Server, both with and without using a dynamic routing protocol. Then we discuss a number of different workload balancing approaches that can be used with the z/OS Communications Server. Finally, we explain the optimized Sysplex Distributor intra-sysplex load balancing. This function is an improved multitier application support using optimized local connections together with weight values from extended WLM interfaces. For more specific information on CS for z/OS base functions, standard applications, and security, refer to the other volumes in the series. These are: - Communications Server for z/OS V1R9 TCP/IP Implementation Volume 1: Base Functions, Connectivity, and Routing, SG24-7532 - Communications Server for z/OS V1R9 TCP/IP Implementation Volume 2: Standard Applications6 Font, SG24-7533 - Communications Server for z/OS V1R9 TCP/IP Implementation Volume 4: Security and Policy-Based Networking, SG24-7535 |
z/OS V1R9.0 Communications Server: IP Configuration Reference (SC31-8776-13) Contains syntax information used in configuration tasks. |
z/OS V1R9.0 Communications Server: IP Configuration Guide (SC31-8775-12) Contains concepts and procedures with examples. Describes how to get the stack running, how to tune for performance, availability and multi-stack use. |
z/OS Communications Server detailed system requirements The list below identifies the supported releases of z/OS® Communications Server from which you can select specific detailed system requirements. |
Security presentations and papers This document contains a list of z/OS Communications Server presentations, papers, and Redbooks. |
Publication changes for APARs OA25593 and PK68195 APARs OA25593 and PK68195 collectively provide support for the Migration Health Checker for Communication Server function that checks for functions which will be removed in a future release of z/OS Communication Server. This includes the following functions that Statement of Directions (SODs) have been issued for: 1. Boot Information Negotiation Layer (BINL) 2. Berkeley Internet Name Domain (BIND) 4.9.3 3. Dynamic Host Configuration Protocol (DHCP) |
Publication changes for APARs PK64880 and OA24882 APARs PK64880 and OA24882 collectively add a new function to z/OS V1R9 Communications Server called "HiperSockets multiple write facility". This technote documents the associated changes to z/OS V1R9 Communications Server publications. |
OA26185: SESSION SET UP FAILS WITH 087F0008 SENSE CODE. NJE sessions originating at an EN fail after a network node server was migrated from 1.7 to 1.9. |
PK70380: FTP MUST GO THROUGH A TLS SHUTDOWN WHEN USING THE CCC COMMAND FTP must go through TLS shutdown processing when the CCC command is issued. Some client services that are not RFC4217 |
PK70195: TCP/IP DOES NOT GENERATE A RESET WHEN AN INVALID ACK IS RECEIVED IN RESPONSE TO A SYN. In an environment where many short lived connections are opened and closed using the same set of local and remote ports, it is |
PK71554: DYNAMIC VPN TUNNELS NOT ACTIVATING WHEN AUTOACTIVATE IS SET TO YES When using IPSEC to configure Dynamic VPN tunnels in a host to gateway environment, all tunnels are not activating. In this |
PK71436: AMODE64 SUPPORT FOR EZBTMIC2 Amode64 version is required for C programs linked as XPLINK programs |
PK70053: ENDLESS LOOP IN SHAREPORT LOAD BALANCING LOGIC A TCPIP port is configured for two (or more) address spaces to have a listen socket open at the same time (the SHAREPORT |
PK70658: IPSEC TRAFFIC HANGS WHEN ZIIP PROCESSOR IS ENABLED IPsec traffic can hang when you have enabled the zIIP(s) processing to offload cpu cycles for encrypting/decrypting |
OA26356: VTAM TRACE CANNOT BE STARTED WITH THE MODIFY TRACE COMMAND. TRACE ACB is not getting posted after ABEND; it cannot be restarted. |
OA26324: STIMER IN APPLICATION IS GETTING DELETED BY A 2ND STIMER THAT IS BEING ISSUED OUT OF IKTVTPUT Customer application has a STIMER issued before issuing a TPUT to send data to the terminal. A STIMER was added to IKTVTPUT in |
II12161: GDPS/RCMF INFORMATION APAR GDPS/RCMF INFORMATION APAR |