V5 TCP/IP Applications on the IBM eServer iSeries Server

Book description

Building on the cool ideal, this IBM® IBM Redbooks publication describes V5 enhancements to many of the TCP/IP applications. The two book predecessors, combined, have been downloaded over 97,000 times: for V3, Cool Title About the AS/400 and Internet, SG24-4815-01, and V4 TCP/IP for AS/400: More Cool Things Than Ever, SG24-5190-00. Both of these extremely popular books are “aggregators” — a place to bring together many different technologies all in one place to have a common theme; teach the basics. That is, teach what the functions can do, define scenarios, and then implement the scenarios in a how-to fashion. Many of the topics covered in those earlier books, such as HTTP, Digital Certificates, and even TCP/IP have grown to the point now that they require their own Redbooks™ . In this book, we cover Telnet, FTP, IPP, NTP, SMTP, and making VPN connections with the iSeries™ , to and from the Internet.

Please note that the additional material referenced in the text is not available from IBM.

Table of contents

  1. Notices
    1. Trademarks
  2. Preface
    1. The team that wrote this redbook
    2. Become a published author
    3. Comments welcome
  3. Part 1: Defining the applications
    1. Chapter 1: File Transfer Protocol
      1. iSeries FTP server: Support for graphical FTP clients
      2. iSeries FTP server: Configurable subsystem support
      3. Security enhancements
        1. iSeries FTP server: SSL/TLS secure connections
        2. iSeries FTP server: Client authentication
        3. iSeries FTP client: SSL/TLS support
        4. iSeries FTP server and client: New defenses for hacker attacks
      4. Restricting FTP functions via iSeries Navigator (1/2)
      5. Restricting FTP functions via iSeries Navigator (2/2)
      6. TCPL0300 format for FTP server logon exit point
        1. FTP problem determination
    2. Chapter 2: Telnet on the iSeries
      1. Virtual device descriptions
      2. QAUTOVRT system value
      3. Telnet naming conventions for virtual devices/controllers
        1. Unpredictable system-assigned devices
        2. Specifically assigned Telnet session device names
      4. Telnet device initialization and termination exit points
        1. Registering an exit program
      5. Mapping a Virtual device description to an IP address
      6. Other Telnet enhancements
        1. Connection feedback to the Telnet client
        2. Number of servers to start
      7. Extended administrative flexibility
      8. Security (1/2)
      9. Security (2/2)
        1. Prevent Telnet access
        2. Control Telnet client access
        3. Telnet exit program security
      10. Telnet problem determination
      11. More information
    3. Chapter 3: Connecting your iSeries to the Internet
      1. Methods of connecting the iSeries to the Internet
        1. Dial up connection to the Internet
        2. Connect to the Internet from within the private network
        3. Connect to the Internet from DMZ
      2. System security settings (1/3)
      3. System security settings (2/3)
      4. System security settings (3/3)
        1. iSeries Navigator Security Wizard
        2. IBM eServer Security Planner
        3. System values
        4. Other security considerations
        5. Security management
      5. Choosing an ISP
        1. Costing models
        2. Services provided
      6. Resources
    4. Chapter 4: iSeries mail services
      1. Simple Mail Transfer Protocol (SMTP) (1/4)
      2. Simple Mail Transfer Protocol (SMTP) (2/4)
      3. Simple Mail Transfer Protocol (SMTP) (3/4)
      4. Simple Mail Transfer Protocol (SMTP) (4/4)
        1. How SMTP works
        2. Mail objects
        3. Mailbox and address
        4. SMTP commands
        5. SMTP replies
        6. SMTP mail flow
        7. Address resolution and mail handling
        8. SMTP implementation on iSeries server
      5. Post Office Protocol (POP)
        1. How POP3 works
        2. POP3 commands
        3. POP3 responses
        4. POP3 states
        5. POP3 implementation on iSeries server
      6. e-mail problem determination
      7. Lotus Domino on iSeries
    5. Chapter 5: Time protocols and applications
      1. Simple Network Time Protocol (SNTP) on iSeries
        1. Configuration of SNTP client
      2. More information
  4. Part 2: Scenarios
    1. Chapter 6: Transferring files between systems
      1. Sharing files between iSeries servers using QFileSvr.400 (1/2)
      2. Sharing files between iSeries servers using QFileSvr.400 (2/2)
        1. Plan the configuration
        2. Start the subsystem QSERVER on both AS23 and AS24
        3. Create a directory in QFileSvr.400 on AS23
        4. Create a symbolic link on AS23
        5. Test the configuration
        6. Review, conclusions, and references
      3. Sharing files between systems using NFS (1/2)
      4. Sharing files between systems using NFS (2/2)
        1. Plan the configuration
        2. Create the netgroup AS24_allowed_clients
        3. Export the directory through NFS on AS24
        4. Start the NFS server on AS24
        5. Mount the directory on AS23
        6. Test the configuration
        7. Review and conclusions
      5. Sharing files with Windows systems by using the NetServer (1/3)
      6. Sharing files with Windows systems by using the NetServer (2/3)
      7. Sharing files with Windows systems by using the NetServer (3/3)
        1. Plan the configuration
        2. Create the group profiles
        3. Secure the directory
        4. Configure the NetServer
        5. Share the directory
        6. Start the iSeries NetServer
        7. Configure the clients to access the shared directory
        8. Test the configuration
        9. Reviews and conclusions
      8. Transferring files using secure FTP (1/6)
      9. Transferring files using secure FTP (2/6)
      10. Transferring files using secure FTP (3/6)
      11. Transferring files using secure FTP (4/6)
      12. Transferring files using secure FTP (5/6)
      13. Transferring files using secure FTP (6/6)
        1. Plan the configuration of the local Certificate Authority
        2. Plan the configuration of the server certificate
        3. Create the local Certificate Authority on NewYork.ABCCo.com
        4. Create the *SYSTEM certificate store and server certificate
        5. Configure the FTP server to listen for secure connections
        6. Export the Certificate Authority certificate to IFS
        7. Create a *SYSTEM certificate store on the Houston iSeries
        8. Import the CA certificate into the Houston.ABCCo.com certificate store
        9. Configure the FTP client to trust the Certificate Authority
        10. Test the configuration
      14. Configuring client authentication for the FTP server (1/4)
      15. Configuring client authentication for the FTP server (2/4)
      16. Configuring client authentication for the FTP server (3/4)
      17. Configuring client authentication for the FTP server (4/4)
        1. Configure the FTP server to require client certificates
        2. Defining the FTP server’s Certificate Authority trust list
        3. Issuing user certificates
    2. Chapter 7: Securing Telnet sessions
      1. iSeries Telnet server support with client authentication (1/8)
      2. iSeries Telnet server support with client authentication (2/8)
      3. iSeries Telnet server support with client authentication (3/8)
      4. iSeries Telnet server support with client authentication (4/8)
      5. iSeries Telnet server support with client authentication (5/8)
      6. iSeries Telnet server support with client authentication (6/8)
      7. iSeries Telnet server support with client authentication (7/8)
      8. iSeries Telnet server support with client authentication (8/8)
    3. Chapter 8: Connecting your iSeries to the Internet: Scenarios
      1. Connecting to Internet from behind a firewall: HTTP Server (1/4)
      2. Connecting to Internet from behind a firewall: HTTP Server (2/4)
      3. Connecting to Internet from behind a firewall: HTTP Server (3/4)
      4. Connecting to Internet from behind a firewall: HTTP Server (4/4)
        1. Planning worksheet for connecting to the Internet
        2. Configure iSeries server AS24 via Internet Connection Wizard
        3. Implement security setting on iSeries server AS24
        4. Test the configuration
        5. Review, conclusions, and references
      5. Connecting to the Internet from DMZ: Host to host VPN (1/6)
      6. Connecting to the Internet from DMZ: Host to host VPN (2/6)
      7. Connecting to the Internet from DMZ: Host to host VPN (3/6)
      8. Connecting to the Internet from DMZ: Host to host VPN (4/6)
      9. Connecting to the Internet from DMZ: Host to host VPN (5/6)
      10. Connecting to the Internet from DMZ: Host to host VPN (6/6)
        1. Planning worksheet for configuring a host to host VPN connection
        2. Configure iSeries server AS24 for the initiating VPN connection
        3. Configure iSeries server AS25 for the receiving VPN connection
        4. Implement IP Packet filter rules for iSeries server AS25
        5. Test the configuration
      11. Connecting to the Internet from DMZ: Host to gateway VPN (1/7)
      12. Connecting to the Internet from DMZ: Host to gateway VPN (2/7)
      13. Connecting to the Internet from DMZ: Host to gateway VPN (3/7)
      14. Connecting to the Internet from DMZ: Host to gateway VPN (4/7)
      15. Connecting to the Internet from DMZ: Host to gateway VPN (5/7)
      16. Connecting to the Internet from DMZ: Host to gateway VPN (6/7)
      17. Connecting to the Internet from DMZ: Host to gateway VPN (7/7)
        1. Planning worksheet for configuring a host to gateway VPN connection
        2. Configure iSeries server AS24 for the gateway VPN connection
        3. Configure iSeries server AS25 for the host VPN connection
        4. Test the configuration
    4. Chapter 9: Using iSeries mail services
      1. Creating a simple mail infrastructure (1/5)
      2. Creating a simple mail infrastructure (2/5)
      3. Creating a simple mail infrastructure (3/5)
      4. Creating a simple mail infrastructure (4/5)
      5. Creating a simple mail infrastructure (5/5)
      6. Extending the mail infrastructure to multiple domains (1/2)
      7. Extending the mail infrastructure to multiple domains (2/2)
      8. Using a mail relay to access the Internet (1/4)
      9. Using a mail relay to access the Internet (2/4)
      10. Using a mail relay to access the Internet (3/4)
      11. Using a mail relay to access the Internet (4/4)
      12. Monitoring QSYSOPR message queue and sending e-mail (1/2)
      13. Monitoring QSYSOPR message queue and sending e-mail (2/2)
    5. Chapter 10: Time synchronization scenario
      1. Synchronize iSeries system clock using Management Central
      2. Synchronize a single iSeries system clock
      3. More information
    6. Chapter 11: Internet printing scenarios
      1. Internet printing protocol (IPP)
        1. IPP clients, servers and printers
        2. IPP on the iSeries
        3. Security
      2. Configuring IPP (1/3)
      3. Configuring IPP (2/3)
      4. Configuring IPP (3/3)
        1. Configure the iSeries IPP server
        2. Start the IPP server
        3. Configure the Windows 2000 based client to use this IPP printer.
        4. Test the configuration
      5. Configuring the IPP client on the iSeries
        1. Configure the iSeries IPP client
        2. Test the configuration
      6. Securing the IPP server (1/3)
      7. Securing the IPP server (2/3)
      8. Securing the IPP server (3/3)
        1. Configure the iSeries IPP server to use SSL
        2. Create a Certificate Authority, *SYSTEM store, and a server certificate
        3. Configure the client for secure connections
        4. Test the configuration
    7. Appendix A: Additional material
      1. Locating the Web material
      2. Using the Web material
        1. How to use the Web material
    8. Related publications
      1. IBM Redbooks
      2. Other publications
      3. Online resources
      4. How to get IBM Redbooks
      5. Help from IBM
    9. Index (1/2)
    10. Index (2/2)
    11. Back cover

Product information

  • Title: V5 TCP/IP Applications on the IBM eServer iSeries Server
  • Author(s): Gary Lakner, Brian Smith, Pallav Agrawala, Mihai Badea, Jay Johnson, Tom Vernaillen, Allyn Walsh
  • Release date: May 2004
  • Publisher(s): IBM Redbooks
  • ISBN: None