background image

Configuring the Secure Gateway

Configuring Secure Gateway for SSL

Intellisync Mobile Suite Secure Gateway Administrator’s Guide

2–9

To configure Secure Gateway for SSL, complete the following steps:

Create a keystore file

1. Generate the keystore file by running the keytool utility with the following 

parameters where 

<name>

.key is a the keystore file you define:

C:\Program Files\Secure Gateway\jre1.5.0_01\bin\keytool -genkey -keyalg 
RSA -alias <

Web server name

> -keystore <

name>

.key

2. Enter your keystore password, and then enter the information at the following 

prompts:

What is your first and lastname?

What is the name of your organizational unit?

What is the name of your organization?

What is the name of your City or Locality?

What is the name of your State or Province?

What is the two-letter country code for this unit?

3. Confirm the information entered by entering “Yes” at the prompt.

4. Enter the password for <

Web server name

>, or press return if this password is 

the same as your keystore password.

Generate a CSR 

1.

Generate a CSR.

 Run the keytool utility located with the following 

parameters where 

<name>

.csr is the name of the CSR (for sending to a CA):

C:\Program Files\Secure Gateway\jre1.5.0_01\bin\keytool -certreq -alias 
<

Web server name

> -keyalg RSA -file 

<name>

.csr -keystore 

<name>

.key.

2. Send the CSR file to a CA via e-mail. The CA authenticates the certificate 

requestor and returns a .cer file, a digitally signed certificate, via e-mail.

Import the digital certificate

1.

Import the .cer file.

 Run the keytool utility with the following parameters 

where 

<name>

.cer is the digital certificate received from the CA:

C:\Program Files\Secure Gateway\jre1.5.0_01\bin\keytool -import -alias 
<

Web server name>

-trustcacerts -file 

<name>

.cer -keystore 

<name>

.key

2. Enter your keystore password at the prompt. The .cer file imports and a 

confirmation message appears.

Содержание INTELLISYNC MOBILE SUITE 7.0

Страница 1: ...Intellisync Mobile Suite Secure Gateway Administrator s Guide Version 7 0 April 2006...

Страница 2: ...blication Synchrologic Mobile Suite RealSync and Intellisync are trademarks of Nokia Corporation Acrobat Reader Copyright 1987 2006 Adobe Systems Incorporated All rights reserved Adobe and Acrobat are...

Страница 3: ...re Gateway cluster 1 7 2 Configuring the Secure Gateway Using the Secure Gateway Admin Console 2 2 Configuring the Secure Gateway properties file 2 3 Authentication and encryption 2 3 Debugging and lo...

Страница 4: ...er contains instructions for installing the Secure Gateway and provides a diagram of the recommended configuration Overview 1 2 Recommended Secure Gateway configuration 1 2 Installing the Secure Gatew...

Страница 5: ...rnet Recommended Secure Gateway configuration Nokia recommends using the Secure Gateway configuration within your network The Secure Gateway offers secure and scalable communications between mobile de...

Страница 6: ...Installing Secure Gateway Recommended Secure Gateway configuration Intellisync Mobile Suite Secure Gateway Administrator s Guide 1 3 Recommended Secure Gateway Configuration...

Страница 7: ...s 3 To install to a location other than the default folder click Change Otherwise click Next The Secure Gateway Service User screen appears 4 Complete the following fields Username Enter the name for...

Страница 8: ...Mobile Suite and then choose Admin Console The Intellisync Mobile Suite control appears 2 Select Intellisync Mobile Suite in the console tree 3 From the Action menu choose Properties The Intellisync...

Страница 9: ...e Gateway server name in the following fields z Website Server Name z Sync Server Name z Network Push Server this applies only to the IMS server 9 Click OK The Intellisync Mobile Suite Properties dial...

Страница 10: ...shared path will contain a file sgsharedprop properties which contains the cluster server names This file is automatically created after you have added each server s to the cluster Modifying the secur...

Страница 11: ...file 2 Define the Secure Gateway cluster servers by entering the following property fore each server SecureGatewayAddress 1 N DNS hostname or IP address 3 Restart the Secure Gateway service on each se...

Страница 12: ...ers information for configuring the Secure Gateway after installation Using the Secure Gateway Admin Console 2 2 Configuring the Secure Gateway properties file 2 3 Configuring Secure Gateway to route...

Страница 13: ...e enter the following URL or enter sgadmin from a local server z http localhost sgadmin admin html or localhost sgadmin Secure Gateway Admin Console The Secure Gateway Admin Console allows the followi...

Страница 14: ...o 0 zero for no challenge Set value to 1 for basic challenge WebCommonDomainName Shares authentication session credentials for multiple DNS names If this property is not set every DNS name is challeng...

Страница 15: ...tion log directory The Secure Gateway server automatically picks up the change in two minutes LoggingLevel property can be set from 1 basic information to 10 detailed information SecureGatewayLogExpir...

Страница 16: ...ettings for a Secure Gateway default values shown Property Description SecureGatewaySharedPropertiesPath Defines the path of the sgsharedprops properties file Used for Secure Gateway clusters Property...

Страница 17: ...following steps 1 From the Intellisync Mobile Suite Admin Console launch WebAdmin 2 Enter the Administrator name and password and then click Login 3 Enter the URL http localhost admin diag and then cl...

Страница 18: ...the Secure Gateway and to the Web browser You can set the following property to override this error To set this property enter the following WebRoutingAllowUnknownSSLCertifications 1 DNS routing dest...

Страница 19: ...Gateway for SSL SSL support is available in Secure Gateway and provides a default key file however you can override this value by using a provided keytool Java utility which enables you to administer...

Страница 20: ...3 Confirm the information entered by entering Yes at the prompt 4 Enter the password for Web server name or press return if this password is the same as your keystore password Generate a CSR 1 Genera...

Страница 21: ...rints Configure the SSL properties for Secure Gateway 1 Place the keystore file into the following directory or the location of your securegateway properties file C Program Files Secure Gateway Commsv...

Страница 22: ...CHAPTER 3 Troubleshooting Secure Gateway This chapter contains helpful hints for troubleshooting Secure Gateway issues Troubleshooting Secure Gateway issues 3 2...

Страница 23: ...esolves to the Secure Gateway server To view information on the Secure Gateway server click the Secure Gateway tab 6 Click OK 7 From the Intellisync Mobile Suite server use Telnet to verify you can co...

Страница 24: ...rify that netstat a returns correct and expected values Verify firewall router configuration 1 Verify that any nodes usually firewalls and load balancers between the Internet and the Secure Gateway se...

Отзывы: