Use the information from your worksheets to configure VPN on System-E
as follows:
- In iSeries™ Navigator, expand
your .
- Right-click Virtual Private Networking and
select New Connection to start the Connection wizard.
- Review the Welcome page for information
about what objects the wizard creates.
- Click Next to go to the Connection
Name page.
- In the Name field, enter CHIgw2MINhost.
- Optional: Specify a description for this connection group.
- Click Next to go to the Connection
Scenario page.
- Select Connect your host to another gateway .
- Click Next to go to the Internet
Key Exchange Policy page.
- Select Create a new policy and then select Balanced
security and performance.
Note: If you get an error
message stating "The certificate request could not be processed" you can ignore
it because you are not using certificates for the key exchange.
- Optional: If you have certificates installed you will see the Certificate
for Local Connection Endpoint page. Select No to indicate that
you will be using certificates to authenticate the connection.
- Click Next to go to the Local
Key Server page.
- Select IP version 4 address as the Identifier
type field.
- Select 56.172.1.1 from the IP address field.
- Click Next to go to the Remote
Key Server page.
- Select IP version 4 address in the Identifier
type field.
- Enter 129.42.105.17 in the Identifier field.
Note: If the Firewall-C IP address is unknown, you can use
*ANYIP as the identifier for the remote key server.
- Enter topsecretstuff in the Pre-shared
key field
- Click Next to go to the Remote
Data Endpoint page.
- Select IP version 4 subnet from the Identifier
type field.
- Enter 10.8.11.0 in the Identifier field.
- Enter 255.255.255.0 in the Subnet mask field.
- Click Next to go to the Data
Services page.
- Accept the default values, and then click Next to
go to the Data Policy page.
- Select Create a new policy and then select Balanced
security and performance.
- Click Next to go to the Applicable
Interfaces page.
- Select TRLINE from the Line table.
- Click Next to go to the Summary page.
- Review the objects that the wizard will create to ensure they are
correct.
- Click Finish to complete the configuration.
- When the Activate Policy Filters dialog
box appears, select Yes, activate the generated policy
filters then select Permit all other traffic.
- Click OK to complete the configuration.