|
|
All AS/400 Tip Categories
/
Client Access
/
Client Access through the Public Internet
Question:
Has anyone ever used Client Access through a public ISP to their AS/400? If so, what pitfalls do I need to look out for?
Answer(s):
Access our production system thru a 170 system with an integrated firewall.
All of our users are set up in the shop. Auto create of virtual devices is
turned off so that only those systems defined are allowed in.
Next, we give all users the same user name and password to the initial system.
When the signon is correct, it passes them thru to the production system. It
takes 2-3 passwords to make this happen, but it works great for us.
We don't have critical information on our site like credit card numbers, etc.
because of the type of business we are. This would affect your decision, of
course.
The biggest security hole on the 400 is allowing ANYTHING to be automatically
created. Keep the device descriptions in house.
Yes, there is a firewall. According to IBM, they do not support this, but they
told me it should work. I opened up ports
23,449,8470,8471,8472,8473,8474,8475,8476. This is the list that IBM
supplied.
If you're using a firewall (I hope so), it's an issue of opening the
correct ports on the firewall. Further, there are no pitfalls, except for
security as one of the ports is the TELNET port (passwords get sent in clear text unless SSL is used. I suggest taking a look at the SSL TELNET server from IBM.
Nothing, it works great!
Other tips in this category:
Click here to see all categories.
Capturing RMTCMD Results
How to omit the first user/password under NT
How To Get Rid Of Client Access Network Drives
SYSTEM32 folder opening after CA install
Can't get rid of Personal Communications (PCOM)!
Installing Client Access For NT Workstation Users
Validating password against OS/400
How to omit the first user/password under NT
Enabling print screen key
How to copy 5250 screens into MS Word
Operations Navigator - File Systems Not Displaying
Data Transfer, WinNT 4.0, Novell Client for NT
Client Access through the Public Internet
Selective Setup keeps coming up
What ports do I open for Client Access?
Client access password dialog - go away!
How to get Client Access from AS/400 to PC
Client Access download of DBF files
File transfer using CA and TCP/IP
Scheduling file transfers
Client Access device descriptions
DDS and Client Access (PC5250)
Client Access Through A Proxy
Client Access Lockup
DLC Driver location
Automated File Transfer
Changing max # of sessions in CA
Exchanging Word documents with OfficeVision
Client Access Win95/98 Shutdown problems
cwbnw6101-error: network drives could not.....
RUNRMTCMD not working
Connection Error CWBSY1000 Discussion
NT Remote Command password problems
Single Signon Possible?
Troubleshooting connections
Automated NT to AS/400 xfer
Transferring DBF files
CA/400 DOS Security problems
Accessing Network drives hangs PC
SNA Connection Troubleshooting
RMTCMD to a specific PC
SNA Server Over Twinax
Windows 95 OSR2
CA95/NT Password Incorrect
Client Access File transfer all x'40'
Telnet5250 (TN5250) wanted for Win 95/NT
Windows AS/400 Access via RAS
No Client Access Signon! Help!
PC5250: As shipped - no file transfer?
Client Access connect brings up Dialup
Client Access and IE4.0
ODBC Problem SQL0104 - Token * not valid
CA Receives Illegal Operation In DIAGSVR
Accessing The "I:" drive from CA 95/NT
How to download all file members at once
Transferring AS/400 spool files to the PC
PC5250 Crashes On Exit!
Hiding AS/400 In Network Neighborhood
Client Access ODBC Performance
Win95/AS400 Print Screen Problems
Client Access TCP/IP Setup Troubleshooting
Client Access IFS Security
Creating Client Access Install Diskettes
Stop Netsoft Log File Growth
|