54 lines
2.9 KiB
HTML
54 lines
2.9 KiB
HTML
|
<?xml version="1.0" encoding="utf-8"?>
|
||
|
<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
|
||
|
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
|
||
|
<html xmlns="http://www.w3.org/1999/xhtml" lang="en-US" xml:lang="en-us">
|
||
|
<head>
|
||
|
<meta http-equiv="Content-Type" content="text/html; charset=utf-8" />
|
||
|
<meta name="dc.language" scheme="rfc1766" content="en-us" />
|
||
|
<!-- All rights reserved. Licensed Materials Property of IBM -->
|
||
|
<!-- US Government Users Restricted Rights -->
|
||
|
<!-- Use, duplication or disclosure restricted by -->
|
||
|
<!-- GSA ADP Schedule Contract with IBM Corp. -->
|
||
|
<meta name="dc.date" scheme="iso8601" content="2005-10-03" />
|
||
|
<meta name="copyright" content="(C) Copyright IBM Corporation 1998, 2006" />
|
||
|
<meta name="security" content="public" />
|
||
|
<meta name="Robots" content="index,follow"/>
|
||
|
<meta http-equiv="PICS-Label" content='(PICS-1.1 "http://www.icra.org/ratingsv02.html" l gen true r (cz 1 lz 1 nz 1 oz 1 vz 1) "http://www.rsac.org/ratingsv01.html" l gen true r (n 0 s 0 v 0 l 0) "http://www.classify.org/safesurf/" l gen true r (SS~~000 1))' />
|
||
|
<title>Session-level security for APPN and HPR</title>
|
||
|
<link rel="stylesheet" type="text/css" href="ibmidwb.css" />
|
||
|
<link rel="stylesheet" type="text/css" href="ic.css" />
|
||
|
</head>
|
||
|
<body>
|
||
|
<a id="Top_Of_Page" name="Top_Of_Page"></a><!-- Java sync-link -->
|
||
|
<script language = "Javascript" src = "../rzahg/synch.js" type="text/javascript"></script>
|
||
|
|
||
|
|
||
|
<a name="rzahjseslev"></a>
|
||
|
<h3 id="rzahjseslev">Session-level security for APPN and HPR</h3>
|
||
|
<p>Session-level security is achieved by specifying a password on the LOCPWD
|
||
|
parameter during configuration. The iSeries system uses the password to validate
|
||
|
the identity of the remote system during session establishment. The password
|
||
|
must match the password specified on the remote system, or the connection
|
||
|
is not allowed.</p>
|
||
|
<p>If the remote system does not support session level security (Series/1
|
||
|
RPS version 7.1, CICS/VS release 1.6):</p>
|
||
|
<ul>
|
||
|
<li>Specify LOCPWD(*NONE) to establish the connection, and provide the necessary
|
||
|
physical security</li></ul>
|
||
|
<p>There is a security concern when you create device descriptions with APPN(*YES),
|
||
|
and when APPN automatically creates and varies on a device description with
|
||
|
the same remote network ID, location name, and local location name as the
|
||
|
APPN remote location configuration list entry. To compensate for remote locations
|
||
|
using an independent device description with APPN(*YES):</p>
|
||
|
<ul>
|
||
|
<li>Add an entry to the APPN remote location configuration list that includes
|
||
|
security information</li></ul>
|
||
|
<a name="wq97"></a>
|
||
|
<div class="notetitle" id="wq97">Note:</div>
|
||
|
<div class="notebody">In order to avoid using security information that cannot
|
||
|
be predicted, ensure that all the device descriptions, as described above,
|
||
|
contain exactly the same security information.</div>
|
||
|
<a id="Bot_Of_Page" name="Bot_Of_Page"></a>
|
||
|
</body>
|
||
|
</html>
|