IBM Support

IT40348: SUPPORT OF KEY-RING DURING DECRYPTION WITH NATIVE PGP

Subscribe to this APAR

By subscribing, you receive periodic emails alerting you to the status of the APAR, along with a link to the fix after it becomes available. You can track this item individually or track all items by product.

Notify me when this APAR changes.

Notify me when an APAR for this component changes.

 

APAR status

  • Closed as new function.

Error description

  • When a PGP key is configured in a SFG community, it would not be
    able to decrypt the files encrypted with other PGP keys part of
    the same key-ring. Errors are encountered if the configured PGP
    key didn?t match to the key being used to encrypt the files.
    
    The error in the pgp log is:
    [2021-11-24 08:01:12.434] ERROR 000000000000 GLOBAL_SCOPE
    [PGPDecryptorImpl] pgpDecrypt() - PGPException occurred
    org.bouncycastle.openpgp.PGPException: Document is not encrypted
    with configured Key Id ? 0xBBBBBBB, but its encrypted with:
    0xCCCCCCCCCC
               at com.sterlingcommerce.woodstock.services.pgp.PGPDe
    cryptorImpl.pgpDecrypt(PGPDecryptorImpl.java:158)
               at com.sterlingcommerce.woodstock.services.pgp.PGPSe
    rvice.pgpOperation(PGPService.java:1246)
               at com.sterlingcommerce.woodstock.services.pgp.PGPSe
    rvice.processDocs(PGPService.java:1106)
    

Local fix

  • B2BISFG-61470
    Enhancement is done on Native PGP that would now allow to
    decrypt the encrypted files, if the key used for encryption
    belongs to the same key-ring as that of configured key.
    

Problem summary

  • Users Affected:
    All
    
    Problem Description:
    Symantec or SDS PGP servers support key ring for decryption, but
    B2Bi Native PGP didn?t have this feature. The B2Bi community had
    a 1-1 mapping for PGP keys when doing the decryption for
    encrypted document sent by the partners. As a result, when
    migrated from Symantec to Native PGP, decryption started failing
    for a few partners who were using the other keys in the keyring
    for encryption, other than what is configured in the SFG
    community profile.
    
    Platforms Affected:
    All
    

Problem conclusion

  • Resolution Summary:
    Native PGP in B2Bi has enhanced to support keyring for
    Decryption Process.
    
    Delivered in:
    6010102
    All future Fix Packs can be found in the Release Timeline Matrix
    - https://www.ibm.com/support/pages/node/6194265
    

Temporary fix

Comments

APAR Information

  • APAR number

    IT40348

  • Reported component name

    STR B2B INTEGRA

  • Reported component ID

    5725D0600

  • Reported release

    600

  • Status

    CLOSED PER

  • PE

    NoPE

  • HIPER

    NoHIPER

  • Special Attention

    NoSpecatt / Xsystem

  • Submitted date

    2022-03-22

  • Closed date

    2023-02-10

  • Last modified date

    2023-02-10

  • APAR is sysrouted FROM one or more of the following:

  • APAR is sysrouted TO one or more of the following:

Fix information

  • Fixed component name

    STR B2B INTEGRA

  • Fixed component ID

    5725D0600

Applicable component levels

[{"Business Unit":{"code":"BU059","label":"IBM Software w\/o TPS"},"Product":{"code":"SS3JSW","label":"Sterling B2B Integrator"},"Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"600","Line of Business":{"code":"LOB59","label":"Sustainability Software"}}]

Document Information

Modified date:
10 February 2023