Skip to main content

zERT TLS Summary

This report lists zERT entries and encryption attributes for TLS connections.

Entries are grouped by local IP address, server port and cryptographic attributes.

The report is divided into Server and Client tabs.

Report Parameters

ParameterDescription
SystemThe SMF ID of the system that wrote the record.
JobnameLocal job name.
UseridLocal userid.
IP AddressLocal or remote IP address
PortServer port
Exclude LoopbackExclude connections to the loopback address 127.0.0.1 or ::1 from the report.
TLS LevelFilter by TLS protocol version.
CipherFilter by cipher suite.
Enc AlgFilter by symmetric encryption algorithm.
Msg AuthFilter by message authentication algorithm.
Kex AlgFilter by key exchange algorithm.
Sig MethodFilter by signature method (server or client certificate, server or client handshake).
Cert Enc MethodFilter by certificate encryption method (server or client).
Cert Digest AlgFilter by certificate digest algorithm (server or client).
Key TypeFilter by key type (server or client).

Columns

ColumnDescription
SystemThe system that wrote the record.
Server IPIP Address of the server end of the connection.
Client IPIP Address of the client end of the connection.
PortThe server port for the connection, or the starting value of the port range.
Port EndThe end value of the port range.
Active FTPThe entries represent an outbound connection from the server for active mode FTP (as opposed to passive mode FTP).
TLS LevelTLS protocol version.
CipherNegotiated cipher suite.
EntriesThe number of entries in this grouping.
JobnameThe z/OS job name associated with the socket.
UseridThe z/OS userid associated with the socket.
FromThe start time of the first grouped interval.
ToThe end time of the last grouped interval.
ConnectionsThe count of connections in the group - the end connection count minus start connection count for each interval.
Short ConnectionsThe count of short connections (less than 10 seconds).
Partial ConnectionsThe count of partial connections: connections where the connection existed before or continued to exist after the security session.
Enc AlgSymmetric encryption algorithm.
Msg Auth AlgMessage authentication algorithm.
Kex AlgKey exchange algorithm.
Server Cert Sig MethodServer certificate signature method.
Server Cert Enc MethodServer certificate encryption method.
Server Cert Digest AlgServer certificate digest algorithm.
Server Cert Key TypeServer certificate key type.
Server Cert Key LenServer certificate key length.
Server Handshake Sig MethodServer handshake signature method (TLS 1.2 and later).
Client Cert Sig MethodClient certificate signature method.
Client Cert Enc MethodClient certificate encryption method.
Client Cert Digest AlgClient certificate digest algorithm.
Client Cert Key TypeClient certificate key type.
Client Cert Key LenClient certificate key length.
Client Handshake Sig MethodClient handshake signature method (TLS 1.2 and later).
Negotiated Key ShareNegotiated key share.
SourceSource of the information: Observation or Provider.