ibm-information-center/dist/eclipse/plugins/i5OS.ic.rzamu_5.4.0.1/rzamuconfigureclients.htm

89 lines
6.0 KiB
HTML

<?xml version="1.0" encoding="UTF-8"?>
<!DOCTYPE html
PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html lang="en-us" xml:lang="en-us">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=utf-8" />
<meta name="security" content="public" />
<meta name="Robots" content="index,follow" />
<meta http-equiv="PICS-Label" content='(PICS-1.1 "http://www.icra.org/ratingsv02.html" l gen true r (cz 1 lz 1 nz 1 oz 1 vz 1) "http://www.rsac.org/ratingsv01.html" l gen true r (n 0 s 0 v 0 l 0) "http://www.classify.org/safesurf/" l gen true r (SS~~000 1))' />
<meta name="DC.Type" content="task" />
<meta name="DC.Title" content="Configure a VPN connection on iSeries A for remote clients" />
<meta name="DC.Relation" scheme="URI" content="rzamumobilesteps.htm" />
<meta name="DC.Relation" scheme="URI" content="rzamustartreceiver.htm" />
<meta name="DC.Relation" scheme="URI" content="rzamuupdatevpn.htm" />
<meta name="copyright" content="(C) Copyright IBM Corporation 2004, 2006" />
<meta name="DC.Rights.Owner" content="(C) Copyright IBM Corporation 2004, 2006" />
<meta name="DC.Format" content="XHTML" />
<meta name="DC.Identifier" content="rzamuconfigureclients" />
<meta name="DC.Language" content="en-us" />
<!-- All rights reserved. Licensed Materials Property of IBM -->
<!-- US Government Users Restricted Rights -->
<!-- Use, duplication or disclosure restricted by -->
<!-- GSA ADP Schedule Contract with IBM Corp. -->
<link rel="stylesheet" type="text/css" href="./ibmdita.css" />
<link rel="stylesheet" type="text/css" href="./ic.css" />
<title>Configure a VPN connection on iSeries A for remote clients</title>
</head>
<body id="rzamuconfigureclients"><a name="rzamuconfigureclients"><!-- --></a>
<!-- Java sync-link --><script language="Javascript" src="../rzahg/synch.js" type="text/javascript"></script>
<h1 class="topictitle1">Configure a VPN connection on iSeries A for remote clients</h1>
<div><div class="section"><p>After configuring and starting the L2TP receiver connection profile
for iSeries™ A,
the administrator needs to configure a VPN to protect the connection between
remote clients and the network in branch sales office. </p>
<p>To configure
a VPN for remote clients, complete these steps:</p>
<div class="important"><span class="importanttitle">Important:</span> IP
addresses used in this scenario are meant for example purposes only. They
do not reflect an IP addressing scheme and should not be used in any actual
configuration. Use your own IP addresses when completing these tasks.</div>
</div>
<ol><li><span>In iSeries Navigator,
expand <span class="menucascade"><span class="uicontrol">iSeries A</span> &gt; <span class="uicontrol">Network</span> &gt; <span class="uicontrol">IP Policies</span></span>.</span></li>
<li><span>Right-click <span class="uicontrol">Virtual Private Networking</span> and
select <span class="uicontrol">New Connection</span> to start the VPN New Connection
wizard. Review the Welcome page for information about what objects the wizard
creates.</span></li>
<li><span>Click <span class="uicontrol">Next</span> to go to the Connection Name
page. </span></li>
<li><span>In the <span class="uicontrol">Name</span> field, enter <samp class="codeph">SalestoRemote</samp>.</span></li>
<li><strong>Optional: </strong><span> Specify a description for this connection
group. Click <span class="uicontrol">Next</span>.</span></li>
<li><span>On the Connection Scenario page, select <span class="uicontrol">Connect your
host to another host</span>. Click <span class="uicontrol">Next</span></span></li>
<li><span>On the Internet Key Exchange Policy page, select <span class="uicontrol">Create
a new policy</span>, and then select <span class="uicontrol">Highest security, lowest
performance</span>. Click <span class="uicontrol">Next</span>.</span></li>
<li><span>On the Certificate for Local Connection Endpoint page, select <span class="uicontrol">No</span>.
Click <span class="uicontrol">Next</span>.</span></li>
<li><span>On the Local Key Server page, select <span class="uicontrol">Version
4 IP address</span> as the identifier type. The associated IP address
should be 192.168.1.2. Click <span class="uicontrol">Next</span>.</span></li>
<li><span>On the Remote Key Server page, select <span class="uicontrol">Any IP address</span> in
the Identifier type field. In the <span class="uicontrol">Pre-shared key</span> field,
enter <samp class="codeph">mycokey</samp>. Click <span class="uicontrol">Next</span>.</span></li>
<li><span>On the Data Services page, enter <samp class="codeph">1701</samp> for the
local port, select <samp class="codeph">1701</samp> for the remote port, and select UDP
for the protocol. Click <span class="uicontrol">Next</span>.</span></li>
<li><span>On the Data Policy page, select <span class="uicontrol">Create a new policy</span> and
then select <span class="uicontrol">Highest security, lowest performance</span>. Click <span class="uicontrol">Next</span>.</span></li>
<li><span>On the Applicable Interfaces page, select <span class="uicontrol">ETHLINE</span>.
Click <span class="uicontrol">Next</span>.</span></li>
<li><span>On the Summary page, review the objects that the wizard will create
to ensure they are correct.</span></li>
<li><span>Click <span class="uicontrol">Finish</span> to complete
the configuration. When the <span class="wintitle">Activate Policy Filters</span> dialog
box window appears, select <span class="uicontrol">No, packet rules will be activated at
a later time</span>. Click <span class="uicontrol">OK</span>.</span></li>
</ol>
</div>
<div>
<div class="familylinks">
<div class="parentlink"><strong>Parent topic:</strong> <a href="rzamumobilesteps.htm">Configure VPN connection to remote users</a></div>
<div class="previouslink"><strong>Previous topic:</strong> <a href="rzamustartreceiver.htm">Start receiver connection profile</a></div>
<div class="nextlink"><strong>Next topic:</strong> <a href="rzamuupdatevpn.htm">Update VPN policies for remote connections from Windows XP clients</a></div>
</div>
</div>
</body>
</html>