02.05.2013 Views

MKS Implementer 2006 Administration Guide

MKS Implementer 2006 Administration Guide

MKS Implementer 2006 Administration Guide

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Setting Up for TCP/IP Distribution<br />

<strong>MKS</strong> recommends you use <strong>Implementer</strong>’s default TCP/IP port, 30005, on both the host<br />

and remote systems; although this is not a requirement.<br />

<strong>MKS</strong> recommends you set all OS/400 TCP/IP attributes to the IBM recommended<br />

defaults.<br />

Firewall Considerations<br />

For TCP/IP to work successfully with <strong>Implementer</strong>, certain external conditions must be met.<br />

The following information on using TCP/IP with a firewall may be helpful to your Network<br />

Administrator, or any other person responsible for the setup and maintenance of your<br />

communications and network.<br />

When using <strong>Implementer</strong> on a system with a firewall, the firewall must be completely<br />

transparent to <strong>Implementer</strong>. Thus, when targeting external iSeries systems with remote<br />

promotions, configure the network firewall to allow traffic through a predefined, userconfigured<br />

TCP/IP port on the remote system. Specify the port in <strong>Implementer</strong>’s Network<br />

Configuration. Uncompromising to your security, <strong>Implementer</strong> ensures that the program<br />

monitoring the port only responds to <strong>Implementer</strong>-specific requests. If needed, you can<br />

restrict activity on the port to specific Internet addresses by establishing firewall rules.<br />

To avoid the possibility of remote system tampering, <strong>Implementer</strong> accepts only certain<br />

requests through TCP/IP. The request information is handled using a token passed from the<br />

host system. The remote system interprets the token to identify which remote function to<br />

invoke. Any requests that present an invalid token are ignored.<br />

For outbound communications of bulk files transfers, <strong>Implementer</strong> uses standard FTP<br />

services that process with the default user profile MWIPROD. This requires the standard FTP<br />

ports 20 and 21 enabled. In addition, for proper authorization and authority to perform the<br />

FTP operation, the MWIPROD user profile must have the Limit Capabilities parameter set to<br />

*NO, as well as have authority to use the following commands on the remote system:<br />

CLRSAVF (Clear Save File)<br />

CRTSAVF (Create Save File)<br />

CRTLIB (Create Library)<br />

DLTLIB (Delete Library)<br />

IMPORTANT Due to the variety of FTP proxy servers and their protocols, the use of<br />

proxy servers is not supported.<br />

OS/400 FTP Service<br />

You must start the standard OS/400 FTP service to use bulk file transfers.<br />

175

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!