119 lines
7.1 KiB
HTML
119 lines
7.1 KiB
HTML
|
<?xml version="1.0" encoding="utf-8"?>
|
||
|
<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
|
||
|
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
|
||
|
<html xmlns="http://www.w3.org/1999/xhtml" lang="en-US" xml:lang="en-us">
|
||
|
<head>
|
||
|
<meta http-equiv="Content-Type" content="text/html; charset=utf-8" />
|
||
|
<meta name="dc.language" scheme="rfc1766" content="en-us" />
|
||
|
<!-- All rights reserved. Licensed Materials Property of IBM -->
|
||
|
<!-- US Government Users Restricted Rights -->
|
||
|
<!-- Use, duplication or disclosure restricted by -->
|
||
|
<!-- GSA ADP Schedule Contract with IBM Corp. -->
|
||
|
<meta name="dc.date" scheme="iso8601" content="2005-09-06" />
|
||
|
<meta name="copyright" content="(C) Copyright IBM Corporation 2004, 2006" />
|
||
|
<meta name="security" content="public" />
|
||
|
<meta name="Robots" content="index,follow"/>
|
||
|
<meta http-equiv="PICS-Label" content='(PICS-1.1 "http://www.icra.org/ratingsv02.html" l gen true r (cz 1 lz 1 nz 1 oz 1 vz 1) "http://www.rsac.org/ratingsv01.html" l gen true r (n 0 s 0 v 0 l 0) "http://www.classify.org/safesurf/" l gen true r (SS~~000 1))' />
|
||
|
<title>Configure a multi-hop connection</title>
|
||
|
<link rel="stylesheet" type="text/css" href="ibmidwb.css" />
|
||
|
<link rel="stylesheet" type="text/css" href="ic.css" />
|
||
|
</head>
|
||
|
<body>
|
||
|
<a id="Top_Of_Page" name="Top_Of_Page"></a><!-- Java sync-link -->
|
||
|
<script language = "Javascript" src = "../rzahg/synch.js" type="text/javascript"></script>
|
||
|
|
||
|
|
||
|
<a name="cfgmultihop"></a>
|
||
|
<h3 id="cfgmultihop">Configure a multi-hop connection</h3>
|
||
|
<p> Use the following Universal Connection wizard procedure to
|
||
|
create a Universal Connection to any of the following services through a remote
|
||
|
multi-hop connection over the Internet.</p>
|
||
|
<ul>
|
||
|
<li>Electronic customer support</li>
|
||
|
<li>Electronic service agent</li>
|
||
|
<li>Information Center Update</li></ul>
|
||
|
<a name="wq157"></a>
|
||
|
<div class="notetitle" id="wq157">Note:</div>
|
||
|
<div class="notebody">See <a href="scenario8.htm#scenario8">Scenario: Configure a multi-hop connection through a remote server</a> for a specific
|
||
|
configuration example.</div>
|
||
|
<p class="sectionscenariobar"><span class="bold">Prerequisites and assumptions</span></p>
|
||
|
<p>The prerequisites for enabling electronic customer support over a remote
|
||
|
multi-hop connection include:</p>
|
||
|
<ul>
|
||
|
<li>The iSeries™ server must have IP connectivity to the VPN multi-hop gateway.</li>
|
||
|
<li>Ensure that the iSeries Access for Windows® and iSeries Navigator exist on your personal computer,
|
||
|
as described in the <a href="../rzaij/rzaijrzaijinstall.htm">iSeries Access for Windows:
|
||
|
Installation and setup</a> topic.</li>
|
||
|
<li>Ensure that you install all of the latest service packs for iSeries Navigator.
|
||
|
The scenarios show using the V5R4 version of the software.</li>
|
||
|
<li>Ensure that TCP/IP is active. You can start TCP/IP through the Start TCP/IP
|
||
|
(STRTCP) command.</li>
|
||
|
<li>You must have security officer (*SECOFR) authority with *ALLOBJ,
|
||
|
*IOSYSCFG, and *SECADM special authorities in your i5/OS™ user profile and *USE authority to WRKCNTINF
|
||
|
in order to configure the connection using the Universal Connection wizard.</li>
|
||
|
<li>You must install the TCP/IP Connectivity Utilities (5722–TC1).</li>
|
||
|
<li>You must install the Digital Certificate Manager (DCM) (5722-SS1
|
||
|
option 34).</li>
|
||
|
<li>Ensure that the QRETSVRSEC system value is set to 1. You can check this
|
||
|
value with the Display System Value (DSPSYSVAL) command. If this value is
|
||
|
not set to 1, enter a Change System Value (CHGSYSVAL) command.</li>
|
||
|
<li>Ensure your default TCP/IP route, or a host route, directs traffic out
|
||
|
the appropriate TCP/IP interface to the Internet to allow the VPN to be established
|
||
|
to IBM®. For details, see <a href="detvpnaddy.htm#detvpnaddy">Determine the IBM VPN Gateway addresses</a> and <a href="detsdaddy.htm#detsdaddy">Determine the IBM Service Destination addresses</a>.</li></ul>
|
||
|
<p><span class="bold">Configure a multi-hop connection over a remote server</span></p>
|
||
|
<p>Assuming that TCP/IP configuration already exists and works, complete the
|
||
|
following steps to set up the Universal Connection if you connect to electronic
|
||
|
customer support through another server or partition:</p>
|
||
|
<ol type="1">
|
||
|
<li>Start iSeries Navigator and select the Universal Connection wizard.</li>
|
||
|
<li>Select either primary or backup connection configuration. The default
|
||
|
is primary.</li>
|
||
|
<li>Check the box to view and modify contact information.</li>
|
||
|
<li>Enter the service, address, and country (or region) information on the
|
||
|
Universal Connection wizard dialogs.</li>
|
||
|
<li>Connect from another system or partition using a multi-hop VPN connection
|
||
|
to the Internet as a connection type.</li>
|
||
|
<li>Check the box if you want to configure a proxy.</li>
|
||
|
<li>Enter a VPN Gateway address or host name to make the multi-hop VPN connection
|
||
|
to IBM.</li>
|
||
|
<li>If you chose to configure a proxy, fill out the proxy information. If
|
||
|
not, skip to the next step.</li>
|
||
|
<li>Indicate that this system does not provide connectivity for other systems
|
||
|
or partitions.</li>
|
||
|
<li>Review the Summary window to ensure that the configuration meets your
|
||
|
requirements, and click <span class="bold">Finish</span> to save your configuration.</li>
|
||
|
<li>When prompted, test the connection from your server to electronic customer
|
||
|
support.</li></ol>
|
||
|
<p><span class="bold">Configure a multi-hop connection from a server that acts
|
||
|
as a connecting point for other servers </span></p>
|
||
|
<p>Complete the following steps to set up the Universal Connection if you
|
||
|
connect to electronic customer support through another server or partition:</p>
|
||
|
<ol type="1">
|
||
|
<li>Start the iSeries Navigator and select the Universal Connection wizard.</li>
|
||
|
<li>Select either primary or backup connection configuration. The default
|
||
|
is primary.</li>
|
||
|
<li>Check the box to view and modify contact information.</li>
|
||
|
<li>Enter the service, address, and country (or region) information on the
|
||
|
Universal Connection wizard screens.</li>
|
||
|
<li>Connect from another system or partition using a multi-hop VPN connection
|
||
|
to the Internet as a connection type.</li>
|
||
|
<li>Check the box if you want to configure a proxy.</li>
|
||
|
<li>Enter a VPN Gateway address or host name to make the multi-hop VPN connection
|
||
|
to IBM.</li>
|
||
|
<li>If you chose to configure a proxy, fill out the proxy information. If
|
||
|
not, skip to the next step.</li>
|
||
|
<li>Specify that you want this iSeries server to function as a connecting
|
||
|
point through which other servers or partitions connect to IBM customer support.</li>
|
||
|
<li>Select an interface or interfaces through which the other servers or partitions
|
||
|
will be allowed to connect to electronic customer support.</li>
|
||
|
<li>Create or select an L2TP terminator profile. You need this profile to
|
||
|
recognize the other systems or servers that connect to IBM customer support
|
||
|
through your server.</li>
|
||
|
<li>Configure a Service and Support proxy server.</li>
|
||
|
<li>Review the Summary window to ensure that the configuration meets your
|
||
|
requirements, and click <span class="bold">Finish</span> to save your configuration.</li>
|
||
|
<li>When prompted, test the connection from your server to IBM customer support.</li></ol>
|
||
|
<a id="Bot_Of_Page" name="Bot_Of_Page"></a>
|
||
|
</body>
|
||
|
</html>
|