ibm-information-center/dist/eclipse/plugins/i5OS.ic.rzatj_5.4.0.1/scenario7.htm

422 lines
24 KiB
HTML
Raw Normal View History

2024-04-02 14:02:31 +00:00
<?xml version="1.0" encoding="utf-8"?>
<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en-US" xml:lang="en-us">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=utf-8" />
<meta name="dc.language" scheme="rfc1766" content="en-us" />
<!-- All rights reserved. Licensed Materials Property of IBM -->
<!-- US Government Users Restricted Rights -->
<!-- Use, duplication or disclosure restricted by -->
<!-- GSA ADP Schedule Contract with IBM Corp. -->
<meta name="dc.date" scheme="iso8601" content="2005-09-06" />
<meta name="copyright" content="(C) Copyright IBM Corporation 2004, 2006" />
<meta name="security" content="public" />
<meta name="Robots" content="index,follow"/>
<meta http-equiv="PICS-Label" content='(PICS-1.1 "http://www.icra.org/ratingsv02.html" l gen true r (cz 1 lz 1 nz 1 oz 1 vz 1) "http://www.rsac.org/ratingsv01.html" l gen true r (n 0 s 0 v 0 l 0) "http://www.classify.org/safesurf/" l gen true r (SS~~000 1))' />
<title>Scenario: Configure a PPP connection from a server that provides connectivity
for other systems through an ISP</title>
<link rel="stylesheet" type="text/css" href="ibmidwb.css" />
<link rel="stylesheet" type="text/css" href="ic.css" />
</head>
<body>
<a id="Top_Of_Page" name="Top_Of_Page"></a><!-- Java sync-link -->
<script language = "Javascript" src = "../rzahg/synch.js" type="text/javascript"></script>
<a name="scenario7"></a>
<h3 id="scenario7">Scenario: Configure a PPP connection from a server that provides connectivity
for other systems through an ISP</h3>
<p class="sectionscenariobar"><span class="bold">Situation</span></p>
<p>Suppose you are responsible for maintaining an iSeries&trade; server for
MyCompany, a small manufacturing company in Boone, Iowa. As part of providing
this support, you need to establish a connection between electronic customer
support and MyCompany's iSeries server.</p>
<p>Since MyCompany has an Internet bound network connection, you can create
a connection from your iSeries server through your modem to a dial up point-to-point
(PPP) connection. Because your network includes three other iSeries servers,
you also want to consider providing connectivity to electronic customer services
through the Universal Connection from MyCompany's main server.</p>
<p class="sectionscenariobar"><span class="bold">Solution</span></p>
<p>Create a Universal Connection to IBM&reg; through the a dialup point-to-point connection
over the Internet. In this case, you establish a connection through the Connection
Manager on your local iSeries server through a point-to-point Internet connection
to electronic customer support. In this case, your main server can act as
a connecting point for the other three MyCompany servers in your company that
need to connect to electronic customer support services, as described in <a href="scenario8.htm#scenario8">Configure a multi-hop connection through
a remote server</a>. As part of your server configuration and setup, the wizard
will create an L2TP terminator profile, or you can select an existing L2TP
terminator profile. See <a href="../rzaiy/rzaiyvrtline.htm">L2TP (virtual line)</a> for additional
information about L2TP terminator profiles. In addition, the wizard will configure
the Service and Support proxy.</p>
<p class="sectionscenariobar"><span class="bold">Advantages</span></p>
<p>This scenario provides the following advantages: </p>
<ul>
<li>MyCompany does not need to invest in additional hardware
or software to receive benefit from electronic customer support. You can configure
this connection through the Universal Connection wizard or CL commands.</li>
<li>MyCompany's other three servers can remotely connect to electronic customer
support through a single server. MyCompany would only need a single modem
and dialup ISP connection instead of a separate one for each system or partition.</li></ul>
<p class="sectionscenariobar"><span class="bold">Objectives </span></p>
<p>In this scenario, the customer wants to ensure that IBM can support
the MyCompany system over the network though a point to point connection through
MyCompany's Internet service provider (ISP) connection. The objectives of
this scenario are as follows: </p>
<ul>
<li>To create a secure point-to-point dial-up connection between the MyCompany's
four servers and electronic customer support through MyCompany's ISP.</li>
<li>To automate customer support through electronic customer support and services</li>
<li>To allow electronic customer support to create an electronic hardware
and software inventory of MyCompany's iSeries system</li>
<li>To permit electronic customer support to send software fixes and updates
to MyCompany over the network</li></ul>
<p class="sectionscenariobar"><span class="bold">Details</span></p>
<p>The following diagram illustrates connecting the MyCompany iSeries server to
electronic customer support through an point-to-point ISP connection.</p>
<div class="mmobj">
<img src="rzatj507.gif" alt="Diagram that depicts a PPP connection from a server that provides connectivity for other systems through an ISP" /></div>
<p><span class="bold">Configuring Universal Connection</span></p>
<ul>
<li>iSeries Navigator launches the Universal Connection Wizard to configure
the connection. This only needs to be done once unless some configuration
information needs to be updated.</li></ul>
<p><span class="bold">Using Universal Connection</span></p>
<p>When a Service Application wants to use the Universal Connection to communicate
with IBM the following will occur:</p>
<ul>
<li>If iSeries A needs to connect and the connection to your ISP
is not currently active, the specified profile is started to allow connections
to the Internet. If the service application on iSeries B, C, or D is not providing its own
security, an L2TP tunnel is established to iSeries A. The ISP connection must be active.
If the service application can use a proxy, a HTTP or HTTPS connection is
made through the Service and Support proxy.</li>
<li>A Virtual Private Network (VPN) is established through your
existing Internet connection to a VPN Gateway at IBM if the service application is not providing
its own security.</li>
<li>The service application communicates with the appropriate IBM servers to perform
the requested service.</li></ul>
<a name="scenprereqs7"></a>
<p id="scenprereqs7" class="sectionscenariobar"><span class="bold">Prerequisites
and assumptions</span></p>
<p>The prerequisites for enabling electronic customer support over a point-to-point
ISP connection include:</p>
<div>
<ul>
<li>Ensure that the iSeries Access for Windows&reg; and iSeries Navigator exist on your personal computer,
as described in the <a href="../rzaij/rzaijrzaijinstall.htm">iSeries Access for Windows:
Installation and setup</a> topic.</li>
<li>Ensure that you install all of the latest service packs for iSeries Navigator.
The scenarios show using the V5R4 version of the software.</li>
<li>Ensure that TCP/IP is active. You can start TCP/IP through the Start TCP/IP
(STRTCP) command.</li>
<li>You must have security officer (*SECOFR) authority with *ALLOBJ,
*IOSYSCFG, and *SECADM special authorities in your i5/OS&trade; user profile and *USE authority to WRKCNTINF
in order to configure the connection using the Universal Connection wizard.</li>
<li>You must install the TCP/IP Connectivity Utilities (5722&ndash;TC1).</li>
<li>For the virtual private network (VPN) and SSL to operate,
you must install the Digital Certificate Manager (DCM) (5722-SS1 option 34).</li>
<li>Ensure that the QRETSVRSEC system value is set to 1. You can
check this value with the Display System Value (DSPSYSVAL) command. If this
value is not set to 1, enter a Change System Value (CHGSYSVAL) command. This
allows the account userid and password to be stored on the iSeries server.</li>
<li>If you are using an internal modem such as the 56 Kbps modem
that is provided with the 9793 adapter card, ensure that the network attribute
MDMCNTRYID is set appropriately. You can check this value with the Display
Network Attributes (DSPNETA) command. If this value is not set correctly,
change this value with a Change Network Attributes (CHGNETA) command.</li></ul></div>
<ul>
<li>If connecting for others servers, ensure that the connection to the ISP
is active before connecting to electronic customer support.</li></ul>
<p class="sectionscenariobar"><span class="bold">Current&reg; system configuration steps</span></p>
<p>Assuming that TCP/IP configuration already exists and works, complete the
following steps to set up the Universal Connection when you connect to electronic
customer support when your local server acts as a connection point for the
other three servers in MyCompany:</p>
<ol type="1">
<li><a href="scenario7.htm#step1pppisp2">Complete the planning work sheet.</a></li>
<li><a href="scenario7.htm#step2pppisp2">Start the iSeries Navigator and select the Universal
Connection wizard.</a></li>
<li><a href="scenario7.htm#step3pppisp2">Enter the service, address, and county information
on the Universal Connection wizard dialogs.</a></li>
<li><a href="scenario7.htm#step4pppisp2">Under Connect from current system or partition,
select the ISP connection type.</a></li>
<li><a href="scenario7.htm#step5pppisp2">Select a connection profile for your ISP from
the Select Profile dialog.</a></li>
<li><a href="scenario7.htm#step6pppisp2">Specify that you want this iSeries server to
function as a connecting point through which other servers or partitions connect
to electronic customer support.</a></li>
<li><a href="scenario7.htm#step7pppisp2">Select an interface the other servers use when
connecting to electronic customer support.</a></li>
<li><a href="scenario7.htm#step8pppisp2">Create or select an L2TP terminator profile.</a>You need these profiles to provide the connectivity to other systems that
connect to electronic customer support through your server.</li>
<li><a href="scenario7.htm#step9pppisp2">Configure a Service and Support proxy server.</a></li>
<li><a href="scenario7.htm#step10pppisp2">Review the Summary window to ensure that the
configuration meets your requirements, and click <span class="bold">Finish</span> to
save your configuration.</a></li>
<li>When prompted, <a href="scenario7.htm#step11pppisp2">Test the connection from your
server to electronic customer support.</a></li>
<li><a href="scenario7.htm#step12pppisp2">Configure a Backup configuration.</a></li></ol>
<p><span class="bold">Scenario: Configure a PPP connection from a server that
provides connectivity for other systems through an ISP</span></p>
<p>After you complete the <a href="scenario7.htm#scenprereqs7">prerequisites</a>, you
are ready to begin configuring the Universal Connection through the wizard.</p>
<a name="step1pppisp2"></a>
<p id="step1pppisp2" class="sectionscenariobar"><span class="bold">Step 1: Complete
the planning work sheet. </span></p>
<p>The following planning work sheet illustrates the type of information you
need before configuring the point-to-point ISP connection. You use this information
when running the Universal Connection wizard.</p>
<a name="wq117"></a>
<table id="wq117" width="100%" summary="" border="1" frame="border" rules="all" class="blocksingleborder">
<thead valign="bottom">
<tr class="tablemainheaderbar">
<th id="wq118" width="59%" align="left" valign="top">Planning work sheet</th>
<th id="wq119" width="40%" align="left" valign="top">Answers</th>
</tr>
</thead>
<tbody valign="top">
<tr>
<td headers="wq118"><span class="bold">Service information</span>
<ul>
<li>Company</li>
<li>Contact name</li>
<li>Telephone number</li>
<li>Help desk or pager number</li>
<li>Fax number</li>
<li>Alternate fax number</li></ul></td>
<td align="left" headers="wq119"><span>&nbsp;</span>
<ul>
<li>MyCompany</li>
<li>Tom Smith</li>
<li>515&ndash;870&ndash;9990</li>
<li>515&ndash;870&ndash;9942</li>
<li>515&ndash;870&ndash;5586</li>
<li>515&ndash;870&ndash;5587</li></ul></td>
</tr>
<tr>
<td headers="wq118"><span class="bold">Company address</span>
<ul>
<li>Street address</li>
<li>City or locality</li>
<li>State or province</li>
<li>Country (or region)</li>
<li>Postal code</li>
<li>National language version</li>
<li>Electronic mail address</li>
<li>Alternate electronic mail address</li>
<li>Media for PTFs (fixes)</li></ul></td>
<td align="left" headers="wq119"><span>&nbsp;</span>
<ul>
<li>94 West Proctor St.</li>
<li>Boone</li>
<li>Iowa</li>
<li>United States</li>
<li>55902</li>
<li>English (2924)</li>
<li>myname@company.com</li>
<li>myname@othercompany.com</li>
<li>Automatic selection</li></ul></td>
</tr>
<tr>
<td headers="wq118"><span class="bold">Location</span>
<ul>
<li>Country (or region)</li>
<li>State</li></ul></td>
<td align="left" headers="wq119"><span>&nbsp;</span>
<ul>
<li>United States</li>
<li>Iowa</li></ul></td>
</tr>
<tr>
<td headers="wq118">Connection method</td>
<td align="left" headers="wq119">Through current iSeries server</td>
</tr>
<tr>
<td headers="wq118">Connection type</td>
<td align="left" headers="wq119">Through an existing switched line connection profile
for MyCompany's ISP.</td>
</tr>
<tr>
<td headers="wq118">What is your connection profile?</td>
<td align="left" headers="wq119">DIALPROF</td>
</tr>
<tr>
<td headers="wq118">Interface description for other systems to use as a
connecting point</td>
<td align="left" headers="wq119">Any Interface</td>
</tr>
<tr>
<td headers="wq118">L2TP terminator profile names</td>
<td align="left" headers="wq119">QL2TP00</td>
</tr>
</tbody>
</table>
<p>If you prefer using <a href="../clfinder/finder.htm">CL Commands</a> to
create the configuration, use the Change Contact Information (CHGCNTINF) and
the Create Service Configuration (CRTSRVCFG) commands.</p>
<a name="step2pppisp2"></a>
<p id="step2pppisp2" class="sectionscenariobar"><span class="bold">Step 2: Start
the iSeries Navigator and select the Universal Connection wizard.</span></p>
<div>
<p>To start the Universal Connection wizard and begin establishing your connection:</p>
<ol type="1">
<li>Open iSeries Navigator software.</li>
<li>Select the server under the My Connections folder that you want to configure
for electronic customer support.</li>
<li>Expand <span class="bold">Network</span>.</li>
<li>Expand <span class="bold">Remote Access Services</span>.</li>
<li>Right-click <span class="bold">Originator Connection
Profiles</span>.</li>
<li>Select <span class="bold">Configure IBM Universal Connection</span> to start the Universal Connection wizard. The Welcome dialog appears.</li></ol>
<a name="wq121"></a>
<div class="notetitle" id="wq121">Note:</div>
<div class="notebody">A progress bar indicates that iSeries Navigator
is loading the Universal Connection wizard. If you encounter problems while running the wizard, see <a href="troubleintro.htm#troubleintro">Troubleshoot the Universal Connection wizard</a> for a solution. Run the wizard again after solving the
problem.</div></div>
<a name="step3pppisp2"></a>
<p id="step3pppisp2" class="sectionscenariobar"><span class="bold">Step 3: Enter
the service, address, and county information on the Universal Connection wizard
dialogs. </span></p>
<div>
<p>To enter information about your company and connections:</p>
<ol type="1">
<li>On the Select Configuration dialog, select either <span class="bold">Primary connection configuration</span> or <span class="bold">Backup connection
configuration</span>. The default is primary. Check the <span class="bold">View
and modify contact information</span> box and click <span class="bold">Next</span></li>
<li>On the Service Information dialog, enter the following information about
MyCompany and click <span class="bold">Next</span>:
<ul>
<li>Company &ndash; MyCompany</li>
<li>Contact name &ndash; Tom Smith</li>
<li>Telephone number &ndash; 515&ndash;870&ndash;9990</li>
<li>Help desk or pager number&mdash; 515&ndash;870&ndash;9999</li>
<li>Fax number &mdash; 515&ndash;870&ndash;5586</li>
<li>Alternate fax number &mdash; 515&ndash;870&ndash;9942</li></ul>
<p>If this information exists on your server, the company data already
appears in the fields. For example, if MyCompany previously created a configuration,
the wizard retrieves the data from the existing configuration.</p></li>
<li>On the Company Address dialog, enter MyCompany's address and click <span class="bold">Next</span>.
<ul>
<li>Street address &ndash; 94 West Proctor St.</li>
<li>City or locality &ndash; Boone</li>
<li>State or province &ndash; Iowa</li>
<li>Country or region &ndash; United States</li>
<li>Postal code &ndash; 55902</li>
<li>National language version &ndash; English (2924)</li>
<li>Electronic mail address &ndash; myname@company.com</li>
<li>Alternate electronic mail address &ndash; myname@othercompany.com</li>
<li>Media for PTFs &ndash; Automatic selection</li></ul></li>
<li>On the Location dialog, select the country (or region) and the state or
province where your iSeries server resides and Click <span class="bold">Next</span>.
<ul>
<li>Country (or region) &ndash; United States</li>
<li>State &ndash; Iowa</li></ul></li></ol></div>
<div>
<a name="step4pppisp2"></a>
<p id="step4pppisp2" class="sectionscenariobar"><span class="bold">Step 4: Under
Connect from current system or partition, select the ISP connection type.</span></p>
<p>Select <span class="bold">A connection using an Internet service provider</span> option as your connection type.</p>
<a name="step5pppisp2"></a>
<p id="step5pppisp2" class="sectionscenariobar"><span class="bold">Step 5: Select a connection profile for your ISP from the Select Profile dialog.</span></p>
<p>Select the DIALPROF, a switched line connection type, as the connection
profile.</p>
<a name="step6pppisp2"></a>
<p id="step6pppisp2" class="sectionscenariobar"><span class="bold">Step 6: Specify
that you want this iSeries server to function as a connecting point through
which other servers or partitions connect to electronic customer support.</span></p>
<a name="step7pppisp2"></a>
<p id="step7pppisp2" class="sectionscenariobar"><span class="bold">Step 7: Select
an interface the other servers use when connecting to electronic customer
support.</span></p>
<p>Select the interfaces that the other MyCompany servers will use when connecting
to IBM. Select one of the following options:</p>
<ul>
<li>Click <span class="bold">Any interface</span> to let the Universal connection
accept connections from all TCP/IP interfaces.</li>
<li>Click <span class="bold">Select interfaces</span> to select specific interfaces
to listen for connection requests. The list box becomes active. Select all
appropriate interfaces. The wizard automatically creates an L2TP terminator
for each interface that does not have an associated terminator. If there are
L2TP terminators associated with an interface, the wizard prompts you to select
the one terminator you wish to associate with the interface.
<p>As an option,
you can select multiple interfaces with the CTRL key.</p></li></ul>
<a name="wq123"></a>
<div class="notetitle" id="wq123">Note:</div>
<div class="notebody">In addition, the wizard configures the Service
and Support HTTP Proxy to start with TCP and to listen for connection requests
on the interfaces you select.</div>
<p>In this case, MyCompany selects the Any Interface option so that connections
will be accepted from all active TCP/IP interfaces.</p>
<a name="step8pppisp2"></a>
<p id="step8pppisp2" class="sectionscenariobar"><span class="bold">Step 8: Create
or select an L2TP terminator profile.</span></p>
<div>
<p></p>
<ol type="1">
<li>Select an L2TP terminator profile for each of your selected interfaces.
Choose one of the following options:
<ul>
<li>Click <span class="bold">Create a new profile named QL2TP</span><span class="bold-italic">nn</span> where <span><span class="bold-italic">nn</span></span> represents a number from 00 to 99. With this selection, the wizard
creates, names, and consecutively numbers the new L2TP profile.</li>
<li>Click <span class="bold">Select an existing profile</span> to choose a specific
L2TP profile for the associated interface.</li></ul>
<p>In this case, MyCompany lets the Universal Connection wizard create
an L2TP profile.</p></li>
<li>Ensure that the <span class="bold">Start selected L2TP terminator profiles
when TCP/IP is started</span> check box is checked. MyCompany wishes to start
this profile when starting TCP/IP.
<a name="wq125"></a>
<div class="notetitle" id="wq125">Note:</div>
<div class="notebody">By starting the selected
L2TP terminator profile when the system starts TCP/IP, all other L2TP terminator
profiles for this interface will be modified not to start with TCP/IP.
<p>If you specify that you do not want to start the selected L2TP terminator
profiles when TCP/IP is started, you must manually start the L2TP terminator
before using the connection to the systems.</p></div></li></ol></div>
<a name="step9pppisp2"></a>
<p id="step9pppisp2" class="sectionscenariobar"><span class="bold">Step 9: Configure
a Service and Support proxy server.</span></p>
<div>
<p>To configure a service and support proxy server</p>
<ol type="1">
<li>Fill in the <span class="bold">Server port</span> field.</li>
<li>If desired, check the <span class="bold">Require HTTP basic
authentication</span> box and fill in the <span class="bold">User name</span> and <span class="bold">Password</span> fields. Authentication is optional. If specified,
all other partitions or systems using this proxy must provide these security
credentials.</li>
<li>Click <span class="bold">Next</span> and proceed to the next Step.</li></ol></div>
<a name="step10pppisp2"></a>
<p id="step10pppisp2" class="sectionscenariobar"><span class="bold">Step 10:
Review the Summary window to ensure that the configuration meets your requirements,
and click <span class="bold">Finish</span> to save your configuration.</span></p>
<div>
<p>To complete and save your server configuration:</p>
<ol type="1">
<li>Review the configuration summary. Click <span class="bold">Back</span> if you need to change a value on any of the wizard dialogs.</li>
<li>When the configuration is correct, click <span class="bold">Finish</span> to save the configuration. A progress bar indicates that the wizard
is in the process of saving the configuration.</li></ol></div>
<a name="step11pppisp2"></a>
<p id="step11pppisp2" class="sectionscenariobar"><span class="bold">Step 11:
Test the connection from your server to electronic customer support.</span></p>
<div>
<p>To test the configuration:</p>
<ol type="1">
<li>Click <span class="bold">Yes</span> when the wizard prompts you to test the
configuration. The Verify Universal Connection dialog appears.</li>
<li>Make note of any problems as the wizard displays verification progress.</li>
<li>Click <span class="bold">OK</span> when the wizard indicates that verification
is complete.</li>
<li>If the wizard finds errors, restart the Universal Connection wizard, make
necessary corrections, save, and retest the corrected configuration.</li></ol></div>
<a name="step12pppisp2"></a>
<p id="step12pppisp2" class="sectionscenariobar"><span class="bold">Step 12: Configure a backup configuration.</span></p>
<div>
<p>If an additional connection method is available to you, it is suggested
that you rerun the wizard to configure a backup. This backup will be used
automatically in the event that the primary connection fails.</p></div></div>
<a id="Bot_Of_Page" name="Bot_Of_Page"></a>
</body>
</html>