CommPower CP-145 Installation And Administration Manual Download Page 89

ACP-145 Installation and Administration Manual 

A-6 

/cpe/cp-145/adm/004 (07/14) 

string 

TAG

 = String describing the option (typically a very short description). 

VALUE

  = string made up of the following elements: 

Classification Word(s), Class Char, Security Policy OID, Language Label 
Classification Word(s)

 - Message security as it would appear in Format Line 

12a. 

Class Char

 - Classification character equivalence of Format Line 12a. 

Security Policy OID - 

OID string value of associated security policy or 

NONE.

 

Language Label - 

2 character language value or NONE 

Listed below are three examples: 

1:MFG:STRING:1:"CLEAR" U NONE NONE 
2:MFG:STRING:2:"NATO UNCLAS" U 1.3.26.0.4406.0.5.0 NONE 
3:MFG:STRING:3:"N A T O R E S T R I C T E D" R 1.3.26.0.4406.0.5.0 

FR 

Listed below are the system default values: 

Security Spelling

 

 

 

Class Char 

Sec Policy OID 

Language 

UNCLAS 

 

 

 

'U' 

 

NONE   

 

NONE 

NATO UNCLAS  

 

 

'U' 

 

1.3.26.0.4406.0.5.0 

NONE 

UNCLAS E F T O 

 

 

'E' 

 

NONE   

 

NONE 

C O N F I D E N T I A L   

 

'C' 

 

NONE   

 

NONE 

N A T O C O N F I D E N T I A L   

'C' 

 

1.3.26.0.4406.0.5.0 

NONE 

R E S T R I C T E D 

 

 

'R' 

 

NONE   

 

NONE 

N A T O R E S T R I C T E D 

 

'R' 

 

1.3.26.0.4406.0.5.0 

NONE 

S E C R E T 

 

 

 

'S' 

 

NONE   

 

NONE 

N A T O S E C R E T 

 

 

'S' 

 

1.3.26.0.4406.0.5.0 

NONE 

T O P S E C R E T 

 

 

'T' 

 

NONE   

 

NONE 

N A T O T O P S E C R E T 

 

'T' 

 

1.3.26.0.4406.0.5.0 

NONE 

Processing of these options is as follows: 

 

JANAP/ACP128/ACP127 to P772 Message Conversions: 
The FL 12a Classification Word(s) of the input 

JANAP/ACP128/ACP127 message is looked up in a security array. The 

security array is created at system startup by combining the options listed 

in this file and the system default values. When a Classification Word(s) 

match is found in the security array, the associated classification 

character, Security Policy OID (if any), and Language Label (if any) are 

Summary of Contents for CP-145

Page 1: ...US e Mail CommPower CP 145 Gateway Installation and Administration Manual Document Part cpe cp 145 adm 004 C O M M P O W E R...

Page 2: ...ner Communications Power Engineering Inc Copyright infringement is a serious matter under the United States and foreign Copyright Laws Any copyrighted software that accompanies this document is licens...

Page 3: ...14 CHAPTER 3 BASIC MTA ACP 145 CONFIGURATION 3 1 3 1 BASIC DCL MTA CONFIGURATION 3 1 3 2 BASIC CP 145 LOCAL AND CP 145 FOREIGN CONFIGURATION AND SETUP 3 10 3 2 1 CP 145 Offline Configuration 3 11 3 2...

Page 4: ...Option File cs A 2 A 1 3 Error Message Options File er A 3 A 1 4 Routing Options File fp A 4 A 1 5 I O Options File io A 4 A 1 6 Message Conversion Options File mc A 4 A 1 7 Month Labels Options File...

Page 5: ...PPENDIX E MESSAGE RECOVERY UTILITY E 1 E 1 MESSAGE RECOVERY UTILITY E 1 E 1 1 Find Message Option E 3 E 1 2 Save Message List to File Option E 4 APPENDIX F CACHE UTILITY F 1 F 1 CACHE UTILITY STARTUP...

Page 6: ...ructions and strategies Unfortunately true globalization of such services has not and probably cannot be realized due to differences in national implementations and the lack of a common end to end sec...

Page 7: ...ese tables are loaded from a configurable location on disk Message flow within the Gateway between the discrete Elements is accomplished via XML services that promote standardization commerciality and...

Page 8: ...figuration supplied with the system and how to use the utility to create or modify system configuration parameters Appendix A CP 145 Configuration Files This appendix describes the contents of the CP...

Page 9: ...of three components each installed separately 2 Microsoft XML Core services 3 dot Net Framework 4 CP 145 Gateway software NOTE Always restart the system when instructed to make certain that configura...

Page 10: ...letter for the largest drive available on the system and select OK 7 If prompted to create this folder select Yes on the Setup window The Select Components window is displayed 8 Select Next and the En...

Page 11: ...ADUA msi The Welcome window is displayed 3 Select Next and the Select Installation Folder window is displayed 4 Select Browse and enter the Path as D Program Files Data Connection DC Directory Admin o...

Page 12: ...Configure First Server Step 2 of 3 window is displayed 6 Select Next and the DC Directory Admin Configure First Server Step 3 of 3 window is displayed 7 Enter the Administrator Name as mtaadmin and th...

Page 13: ...ogram Files Data Connection DC Config where D represents the drive letter for the largest drive available on the system on the Choose Directory window and then select OK If asked to create the folder...

Page 14: ...ires that the Microsoft NET Framework English v1 1 be installed for all functionality to properly work To determine if this software package is installed look for the following entry in Start Settings...

Page 15: ...s file is set to run as a domain 3 All Windows applications are closed 4 The DCL MTA is loaded on the system 5 Version 1 1 Net Framework 6 MSXML4 dll s 2 1 2 1 1 Microsoft Visual C Redistributable Fil...

Page 16: ...ct the Add button and then select the OK button The Select Users or Groups window is closed 8 Select the OK button in the Local Security Policy Setting window The Local Security Policy Setting window...

Page 17: ...on Drive window is displayed 5 Enter the drive letter of the drive to be used for the CP 145 L installation The default drive will be drive C Once the drive has been entered select the Next button The...

Page 18: ...zation is desired enter a primary and secondary host to be used for CP 145 F time synchronization You may also enter a time interval This interval specifies how often in minutes the time synchronizati...

Page 19: ...l CommPower Cron Startup Type set to Automatic Commpower DBServer Startup Type set to Manual Commpower DQM Startup Type set to Manual CommPower NTPSync Startup Type set to Automatic Commpower vCacheSe...

Page 20: ...Windows Start menu ACP 145 Local Gateway menu which opens up to list Configure CP 145 Online Manual Start CP 145 Stop CP 145 Tools menu which opens up to list Address Book Clear Logs Map System Messag...

Page 21: ...n exe CommPower servceSpawn cronNT CommPower Cron DBServer exe CommPower DB Server vCacheServer exe CommPower vCacheServer cpeNTPSync exe CommPower NTPSync postgress exe PostgreSQL Server 9 1 after sy...

Page 22: ...Procedures After installing both the MTA and the CP 145 Gateway software configure both in accordance with the procedures described in Chapter 3 Basic MTA CP 145 Gateway Configuration When all softwar...

Page 23: ...System Name in the Directory Server field if not already displayed 3 Enter c us cn mtaadmin in the User Name field 4 Enter the password used during the Bootstrapping procedure in Chapter 2 in the Pass...

Page 24: ...Select MTA dialog This will invoke the DC Config main window for the MTA that was installed with the ACP 145 6 Select the Message Transfer Agents dialog within the DC Config main window The Message Tr...

Page 25: ...m name appears in the Bind Name and Bind Credentials fields You will observe that standard NIST Timeout values are displayed in the respective fields These can be left as is or changed depending upon...

Page 26: ...llows Parameter Value Format PSAP A300 ASCII SSAP A200 ASCII TSAP A100 ASCII 11 If the system is not using Dynamic Host Configuration Protocol DHCP verify that the value for the Server Address is corr...

Page 27: ...should be displayed and accepted 13 Accept the default values for the fields in the Association Parameters and Address Transformation tabs 14 Select the OK button at the bottom of the Home Message Tra...

Page 28: ...Remote MTA dialog The Routing Entry dialog is displayed 18 Enter the appropriate route so that the MTA P1 Gateway will pass X 400 messages to the ACP 145 This typically entails entering a ACP 145 ORAd...

Page 29: ...the X 400 network Select Add MTA from the MTAs menu at the top of the DC Config main window The Basic tab of the Remote MTA Properties New Remote MTA window is displayed Typical data for connection t...

Page 30: ...ACP 145 Installation and Administration Manual 3 8 cpe cp 145 adm 004 07 14...

Page 31: ...c setups this route can be made empty as seen below This will be known as the Default route for the MTA when no entries are present Note that the Entity Type is Message Transfer Agent and the Entity N...

Page 32: ...P 145 Foreign offline and online configuration For more detailed information on offline and online configuration including pictures of both CP 145 Local and CP 145 Foreign windows and dialogs please r...

Page 33: ...start up by selecting the OFF or ON radio button If ON select the Map System output format by selecting the TXT or CSV radio button 3 Enable and or set the level of Windows Application Event Reporting...

Page 34: ...se button to return to the CP 145 Configuration main screen 3 2 1 2 4 Network Access 18 Select the Network Access button in either CP 145 Configuration Utility main window The Network Access window is...

Page 35: ...ngs are only configured on the CP 145 L server 3 2 1 2 9 CP 145 Settings 32 Select the CP 145 Settings button in the CP 145 L Configuration Utility main window The CP 145 Settings window is displayed...

Page 36: ...5 Select the Virus Checking button in the CP 145 F Configuration Utility main window The Virus Check Settings window is displayed 46 To enable Virus Checking select On in the Scanning Files section En...

Page 37: ...l Domain values by entering the Country ADMD and PRMD fields 56 Select the OK button to return to the CP 145 F Configuration main screen 3 2 1 3 Define Security Parameters 1 Select the Security tab in...

Page 38: ...Control Panel window The System Properties window is displayed 3 Select the Environment Variables button on the Advanced tab and verify that the system variables are set as follows DCIGWAYERDIR C cpe...

Page 39: ...hannel Number field enter one of the channel numbers configured in Define Channel Configuration Parameters above 3 Once the channel number has been entered select the Setup button in the Channel Opera...

Page 40: ...ers for the appropriate channel types JANAP and XML for the CP 145 L and X 400 and XML for the CP 145 F 3 Select the OK button in the Default Routings dialog The Default Routings dialog is closed 3 2...

Page 41: ...Chapter 3 Basic MTA ACP 145 Configuration cpe cp 145 adm 004 07 14 3 19 C O M M P O W E R...

Page 42: ...the mouse and selecting User Interface from the resulting pop up menu If the ACP 145 Gateway startup is unsuccessful the ACP 145 Gateway Status Indicator will continue to flash and an Error dialog wi...

Page 43: ...Server DC IMS Monitor Daemon if not already started after starting the DC IMS Server DC IMS Routing Daemon if not already started after starting the DC IMS Server DC IMS P1 File Gateway 4 2 2 DCL MTA...

Page 44: ...tartup of the utility the installed configuration files are read and the associated data is displayed in a series of windows The windows can be used to view the current system configuration data or to...

Page 45: ...CP 145 is selected from the Windows Start Menu the CP 145 Configuration Utility main window is displayed Select the File menu from the menu bar to access the Install and Exit options Select Install to...

Page 46: ...es type Select the Network Access button to display a window that provides the capability to specify the username password and domain associated with the user account that is to be given access to a c...

Page 47: ...tion Event Reporting and Network Time Protocol Map System Under this category the Create Map System Report at Start Up radio buttons allow for a Map System report to be generated during the system sta...

Page 48: ...3 15 The Interval field is the length of time entered as integer minutes which the CP 145 is set to poll the authorized time source s It is imperative that the system time and time zone of the CP 145...

Page 49: ...set to ON the Map System Output Format radio buttons allow for the operator to select whether the file format of the report is to be in txt or csv format The generated Map System file is placed under...

Page 50: ...o the ACP 145 Gateway Configuration Utility main window The changes are not permanently saved to the appropriate configuration file until Install is selected from the File Menu Select the Cancel butto...

Page 51: ...e domain account For local users enter just the username Up to 10 different user accounts can be configured Under the Users window Select the OK button to save the usernames and return to the CP 145 C...

Page 52: ...essage Type values will be valid in each country The Message Translation Rules allow the user to configure the actions the CP 145 will take when a value is encountered that is not defined or invalid o...

Page 53: ...the translation rule that will occur when a received X 400 message contains a Precedence value that should be converted to another value before being transmitted to the next Gateway For example the Un...

Page 54: ...ished such as Primary None Reject NDN then a 2nd rule could not be added like Both None Add as this rule would conflict with the Reject NDN action for the Primary recipient in the first rule 5 1 3 2 M...

Page 55: ...re Rejected NDN or Add Integer Use this option to define the translation rule that will occur when a received X 400 message contains a Message Type value that should be converted to another value befo...

Page 56: ...ble 5 1 4 Network Access When the Network Access button is selected in the ACP 145 Configuration Utility main window the Network Access window is displayed This window is provided to supply the system...

Page 57: ...ows user account changes then this window must also be updated 5 1 5 Message Purge Password When the Purge Password button is selected in the ACP 145 Gateway Configuration Utility main window the Chan...

Page 58: ...on window is displayed Default Classification Value This field defines the classification value to be used when a default security label is created for a message The value must be an integer that corr...

Page 59: ...tem software module specific configuration options Module This field selects the two three letter designator of each system software module that has specific configuration options The available design...

Page 60: ...sent a unique configuration option for the module Each line of configuration option information is entered in the following format ID REPORT TYP TAG VALUE Where ID Configuration Option ID REPORT Strin...

Page 61: ...on to undo changes that have not been permanently saved via selection of Install in the File Menu Select the Close button to close the File Editing window and return to the CP 145 Configuration Utilit...

Page 62: ...Domain Identifier within the MTSID of messages that the gateway creates Domain Identifier Administration Name The field defines the ADMD value that will used for the Global Domain Identifier within t...

Page 63: ...ge Error Queue MEQ 5 1 9 3 Enter the JANAP 128 Service Processing Similarly JANAP 128 Service Processing has two options Service messages arriving at the CP 145 L can be converted to XML and sent out...

Page 64: ...ayed Enter the desired string in the DN field If you select Auto Append DN Item which is the default then the editor automatically appends the next item to the string once you have entered an item i e...

Page 65: ...full DN string appears in the DN Name window select the OK button The DN Entry window is closed and the DN is transferred to the DN field in the CP 145 Settings window 5 1 9 5 Enter the Gateway s OR N...

Page 66: ...is field defines the OrganizationName element in an OR Name It can be up to 64 characters optional Private Domain This field defines the PrivateDomainName element in an OR Name It can be up to 16 char...

Page 67: ...e Select SPST File window is opened Browse the local server to the data file and select Open The remaining 5 entries are loaded in the same manner Select the OK button to save the Security Table data...

Page 68: ...haracters Service Message OSRI This field defines the originator RI for all JANAP128 service messages generated by the CP 145 L It can be up to 7 characters Select the OK button to save modified syste...

Page 69: ...path variable Action to take on virus detection This field allows the user to have the rejected message either sent back to the originator or allow the message to path through the system without the i...

Page 70: ...ed with one or more Trust Point Certificate files Public Certificate File This field is used to browse a local or network file system to a cer Trust Point certificate file NOTE The CP 145 F requires t...

Page 71: ...Point certificate file will not be used by the CP 145 F This could cause the CP 145 F to fail SMIME certificate path validation checks and result in messages being non delivered Under the Trust Point...

Page 72: ...or pfx file extension The file s can reside on either a local or network file system If both encryption and signature key usages are incorporated into a single p12 certificate file then configure thi...

Page 73: ...are used to enter the password of the corresponding p12 files Save This button is used to check the entered password and import the configured Gateway Certificate s into the local computer SPC Certifi...

Page 74: ...computer Intermediate Certification Authorities certificate store Under the SMIME Security Gateway Certificate window Select the OK button to save the modified Gateway Certificate parameters and retur...

Page 75: ...y When the X400 button is selected in the CP 145 Gateway Configuration Utility main window the Edit X 400 Gateway Assignments window is displayed This window is used to display define X 400 parameters...

Page 76: ...the appropriate configuration file until Install is selected from the File Menu Select the Cancel button to exit this window without saving changes 5 2 SECURITY CONFIGURATION When the Security tab is...

Page 77: ...Highest and Lowest Security fields Double click a security classification to save modified system parameters and return to the Security window Select the Cancel button to exit this window without savi...

Page 78: ...classified Confidential Secret or Top Secret for the system Select a security type from this list The highest security classification is Top Secret the lowest security classification is Unclassified N...

Page 79: ...r Top Secret Select a security type from this list The highest security classification is Top Secret the lowest security classification is Unclassified The default value is Not Configured Channel Devi...

Page 80: ...sified EFTO Restricted Confidential Secret or Top Secret Select a security type from this list The highest security classification is Top Secret the lowest security classification is Unclassified The...

Page 81: ...oftware module when attempting to communicate with the DBServer software module are logged in this file DQM log Log file for the DQM process module Information and error messages generated during DQM...

Page 82: ...enerated by the SEP modules relating to Event Message processing and report generation are logged in this file ss log Log file for Startup Shutdown At system startup as each ACP 145 Gateway process is...

Page 83: ...ACP 145 Gateway Installation and Administration Manual 5 40 cpe cp 145 adm 004 07 14 C O M M P O W E R...

Page 84: ...les are read only at startup A 1 1 Security Category Options File cat The records in this options file define how the X 400 Security Label ACP JANAP Format Line FL 4 and ACP JANAP FL 12 Classification...

Page 85: ...ormation is used as is If the d definition is N the a definition is used for FL 12 This data is augmented per the c definition as follows If the c definition is PRE the X 400 Security Label informatio...

Page 86: ...in the file SYS BOTH TYP String describing the TYPE of the VALUE field STRING INTEGER BOOLEAN etc TAG String describing the option typically a very short description VALUE Value of the variable NOTE O...

Page 87: ...art Programs Accessories WordPad Currently none of the options in this file are applicable to the ACP 145 A 1 6 Message Conversion Options File mc The records in this options file specify conversion o...

Page 88: ...sage is received with a security spelling defined in this file the translated X 400 message will be created with the associated privacy mark A 1 9 Security Labels Options File sec To facilitate securi...

Page 89: ...ues Security Spelling Class Char Sec Policy OID Language UNCLAS U NONE NONE NATO UNCLAS U 1 3 26 0 4406 0 5 0 NONE UNCLAS E F T O E NONE NONE C O N F I D E N T I A L C NONE NONE N A T O C O N F I D E...

Page 90: ...ty array match is then used in FL 12a of the converted ACP127 message If no match is found the message conversion is halted A 1 10 System Configuration Options File sys The records in this options fil...

Page 91: ...Options File trc The records in this options file define the JANAP ACP128 Transmission Release Code TRC validation rules Processing of these options is as follows With no options in the trc_flags file...

Page 92: ...rsion request 27 Unable to build security value 28 Conflicting security in xml message 29 No security in xml message 30 XML attachment file not found 31 Exceeded maximum XML attachments 32 Exceeded ma...

Page 93: ...d message 59 More than 10 RI errors 60 Cannot derive an output channel 61 MCDT lookup failed 63 Too many SIC codes 64 Invalid SIC code format 65 Incomplete category data for acp120 66 Missing Subject...

Page 94: ...is unused 94 X 400 Gateway is rejecting 95 Unknown address error 96 PLA error 97 Message expired 98 XMT processing error 100 Narrative message in a control queue 101 Recipient DN s not supported by AC...

Page 95: ...error 166 Failed MSP processing 170 MSP error 171 Invalid revoked certificate 172 Invalid revoked cert policy ID 173 Invalid revoked ICRL 174 Invalid revoked CKL 175 MLA Loop Detected 200 Invalid sta...

Page 96: ...CSC has issued an invalid event number that the sep_elp was unable to process Check the log se for details 217 File I O error Check the log se log file for details 218 Error during buffer flush An int...

Page 97: ...iptor file update The channel descriptor table on a processor could not be updated because of a UNIX file I O error This error is very serious because the processor s which reported the failed conditi...

Page 98: ...M log file for details The failed FEP log ss file contains details 314 Invalid event for current state The finite state machine has rejected a specific operator SCP command or an illegal operation has...

Page 99: ...405 Message active can NOT purge 600 Illegal parameter in a control message detected This error is serious because either a software bug s or corruption of AM has occurred Check the event log report f...

Page 100: ...g file name are normally the same as the first two letters of the process name i e if rp_mstr died look at the rp log file If it is determined or suspected that the startup problem may be related to t...

Page 101: ...Files and The Message Archive To purge the CP 145 event log files statistics log files and Message Archive perform the following Via a Windows Explorer navigate to the cpe csci mfg bin folder on the...

Page 102: ...em window is displayed Select the OK button to close the window When Start All Programs ACP 145 Gateway Tools Map System is selected while the CP 145 is NOT running the CommPower MapSystem Utility win...

Page 103: ...ist All Map System Utility output data is intended to help resolve CP 145 start up and messaging issues The Map System file and the copied log files should be collected and sent to a CommPower represe...

Page 104: ...as not selected the following window is displayed If an Output folder was selected then the Map System Utility runs Progress is displayed in the Status portion of the CommPower MapSystem Utility windo...

Page 105: ...ed in the specified output folder A Data folder within the specified output folder will be created by the Map System Utility and contain a copy of all CP 145 error logs and a copy of the CSWORK folder...

Page 106: ...or known viruses The system can be configured to either reject infected messages or to pass the message along with a replacement attachment notifying the recipient that the message contained a virus D...

Page 107: ...the XML Channel for the Gateway Option 2 Allow messages to pass without the attachment With this option set the message will sent to the recipient with a replacement attachment text file that notifie...

Page 108: ...Open button to scan the file for know viruses If the file is not infected the following dialog is displayed If a virus is found the following dialog is displayed If the CP 145 F cannot connect to the...

Page 109: ...is infected with virus filename Acp145 u1 d cpe csci mfg logs XMLin attachment A001000032 001 Aug 25 14 54 30 E 2 P 0 C 11 Virus Checking Error Message UID 1125006870 2 2 20 Channel 2 ICSN 1 Prec R Cl...

Page 110: ...N 0 Prec O Classification S Header DMS EXCHNTBOX 050825220320Z 78 Output Chan 2 OCSN 129 Aug 25 14 54 32 E 22 P 0 C 5 Message received by input Message UID 1125006870 2 2 0 Channel 2 ICSN 1 Prec O Cla...

Page 111: ...essage UID 1125007550 2 1 20 Channel 2 ICSN 1 Prec R Classification S Header DMS EXCHNTBOX 050825220827Z 79 CSC Info Infected attachment file was replaced with the standard warning file filename Acp14...

Page 112: ...ges that CP 145 has not completed all necessary processing At startup all active messages set for recovery are processed in their entirety as if they have just entered the system As a result it s poss...

Page 113: ...sage Highlighting one or more messages will make the Don t Recover and Recover buttons selectable These buttons can be used to change the Status of the message s to the desired setting A right mouse c...

Page 114: ...Message Option To search for a specific active message within the list of messages select the Find Message option from the File Menu This will cause the Find Message dialog to be displayed Enter the f...

Page 115: ...lect the OK button in the popup dialog to return to the Message Recovery Utility E 1 2 Save Message List to File Option To create a text file that contains the list of messages displayed in the Messag...

Page 116: ...nformation File SPIF user name UN Security Policy Selection Table SPST and Security Policy Translation Table SPTT CP 145 disk based and memory based cache databases F 1 CACHE UTILITY STARTUP AND OPERA...

Page 117: ...TE Information can only be accessed in memory based cache while the CP 145 is running Select the Disk Object tab to view disk objects and insert the disk objects into the applicable cache database See...

Page 118: ...e above radio buttons the requested information is retrieved from the database and displayed in the top data view pane Select a SPIF in the top Current Database Records pane and information for that S...

Page 119: ...pane Select a SPIF in the top Current Database Records pane and information for that SPIF is displayed in the bottom pane To view a detailed list of certificate attributes for a specific SPIF perform...

Page 120: ...14 F 5 Select the Browse button to open an Explorer window and navigate to the desired object Click on the radio button to choose the type of object and then the Decode button to display the object s...

Page 121: ...07 14 If desired select the Load Disck Object Into cache button to insert the object into disk based cache database NOTE Objects cannot be loaded while the CP 145 is running If the CP 145 is running a...

Reviews: