61 lines
3.6 KiB
HTML
61 lines
3.6 KiB
HTML
|
<?xml version="1.0" encoding="utf-8"?>
|
||
|
<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
|
||
|
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
|
||
|
<html xmlns="http://www.w3.org/1999/xhtml" lang="en-US" xml:lang="en-us">
|
||
|
<head>
|
||
|
<meta http-equiv="Content-Type" content="text/html; charset=utf-8" />
|
||
|
<meta name="dc.language" scheme="rfc1766" content="en-us" />
|
||
|
<!-- All rights reserved. Licensed Materials Property of IBM -->
|
||
|
<!-- US Government Users Restricted Rights -->
|
||
|
<!-- Use, duplication or disclosure restricted by -->
|
||
|
<!-- GSA ADP Schedule Contract with IBM Corp. -->
|
||
|
<meta name="dc.date" scheme="iso8601" content="2005-09-13" />
|
||
|
<meta name="copyright" content="(C) Copyright IBM Corporation 1998, 2006" />
|
||
|
<meta name="security" content="public" />
|
||
|
<meta name="Robots" content="index,follow"/>
|
||
|
<meta http-equiv="PICS-Label" content='(PICS-1.1 "http://www.icra.org/ratingsv02.html" l gen true r (cz 1 lz 1 nz 1 oz 1 vz 1) "http://www.rsac.org/ratingsv01.html" l gen true r (n 0 s 0 v 0 l 0) "http://www.classify.org/safesurf/" l gen true r (SS~~000 1))' />
|
||
|
<title>Create a connection security configuration object</title>
|
||
|
<link rel="stylesheet" type="text/css" href="ibmidwb.css" />
|
||
|
<link rel="stylesheet" type="text/css" href="ic.css" />
|
||
|
</head>
|
||
|
<body>
|
||
|
<a id="Top_Of_Page" name="Top_Of_Page"></a><!-- Java sync-link -->
|
||
|
<script language = "Javascript" src = "../rzahg/synch.js" type="text/javascript"></script>
|
||
|
|
||
|
<img src="delta.gif" alt="Start of change" />
|
||
|
<a name="rzahqcreateaconsecobj"></a>
|
||
|
<h4 id="rzahqcreateaconsecobj">Create a connection security configuration object</h4>
|
||
|
<p>A connection security network server configuration (NWSCFG subtype CNNSEC)
|
||
|
object must be created to define the IP security (IPSec) rules that are used
|
||
|
to secure the storage and virtual Ethernet data flows over the iSCSI network
|
||
|
between the iSeries™ and xSeries® or IBM® BladeCenter™ blade servers.</p>
|
||
|
<a name="wq201"></a>
|
||
|
<div class="notetitle" id="wq201">Note:</div>
|
||
|
<div class="notebody">If the iSCSI HBA hardware on either the iSeries or xSeries or IBM BladeCenter side
|
||
|
of the iSCSI connection does not support IPSec, then IPSec cannot be used
|
||
|
to secure the data flows over the iSCSI network. If the iSCSI HBA hardware
|
||
|
does not support IPSec, then a connection security object still needs to be
|
||
|
created, but do not define any IP security rules.</div>
|
||
|
<p>To create a connection security configuration using iSeries Navigator,
|
||
|
follow these steps:</p>
|
||
|
<ol type="1">
|
||
|
<li>Expand <span class="bold">Integrated Server Administration</span>.</li>
|
||
|
<li>Expand <span class="bold">iSCSI Connections</span>.</li>
|
||
|
<li>Right-click <span class="bold">Connection Security</span>.</li>
|
||
|
<li>Select <span class="bold">New Connection Security Configuration</span>.</li>
|
||
|
<li>On the <span class="bold">General</span> tab:
|
||
|
<ul>
|
||
|
<li>Enter the <span class="bold">Name</span> and <span class="bold">Description</span>.</li>
|
||
|
<li>Select the <span class="bold">Object authority</span></li></ul></li>
|
||
|
<li>On the <span class="bold">IP Security Rules</span> tab:
|
||
|
<ul>
|
||
|
<li>If your iSCSI HBA hardware supports IPSec, define the IP security rules
|
||
|
that will be used to secure the storage and virtual Ethernet data flows over
|
||
|
the iSCSI network.</li>
|
||
|
<li>Otherwise, do not define any IP security rules.</li></ul></li>
|
||
|
<li>Click <span class="bold">OK</span>.</li></ol>
|
||
|
<p>If you want to use CL commands, see CRTNWSCFG or WRKNWSCFG.</p><img src="deltaend.gif" alt="End of change" />
|
||
|
<a id="Bot_Of_Page" name="Bot_Of_Page"></a>
|
||
|
</body>
|
||
|
</html>
|