For digital certificates that are generated by software, and stored
in software, i5/OS SSL
automatically starts using the 2058 Cryptographic Accelerator once the device
is varied-on. The private key processing associated with SSL and TLS session
establishment is off-loaded to the 2058 Cryptographic Accelerator. When the
device is varied-off, i5/OS SSL switches back to software based encryption
for establishing SSL and TLS sessions, thereby placing the private key processing
load back on the server.
Note: This is only true for certificates and private
keys that were not created by the Cryptographic Coprocessor. If a certificate
was generated using the Cryptographic Coprocessor, the Cryptographic Coprocessor
has to be used for those SSL or TLS sessions which use that particular certificate.