background image

Installing Secure Gateway

Overview

Intellisync Mobile Suite Secure Gateway Administrator’s Guide

1–2

Overview

Your company policy may dictate how you deploy Nokia’s technology within 
your network configuration. There are several configuration options available; 
however, Nokia recommends the configuration described in this chapter using a 
demilitarized zone (DMZ), or screened subnet. The DMZ is a computer or small 
subnetwork that sits between a trusted internal network, such as a corporate 
private LAN, and an untrusted external network, such as the public Internet. 

Recommended Secure Gateway configuration

Nokia recommends using the Secure Gateway configuration within your network. 
The Secure Gateway offers secure and scalable communications between mobile 
devices and servers and consists of an HTTP listener and communications 
services.

The Secure Gateway intercepts the HTTP requests from mobile devices to the 
Intellisync Mobile Suite server and can route the requests in three ways:

z

Push requests through TCP/IP port 3102

z

Sync requests through ports 80 and 443

z

Web requests through ports 80 and 443

The following diagram illustrates the recommended configuration for the Secure 
Gateway. In this scenario, all Intellisync Mobile Suite components and enterprise 
servers are behind the corporate inner firewall.

Содержание INTELLISYNC MOBILE SUITE 7.0

Страница 1: ...Intellisync Mobile Suite Secure Gateway Administrator s Guide Version 7 0 April 2006...

Страница 2: ...blication Synchrologic Mobile Suite RealSync and Intellisync are trademarks of Nokia Corporation Acrobat Reader Copyright 1987 2006 Adobe Systems Incorporated All rights reserved Adobe and Acrobat are...

Страница 3: ...re Gateway cluster 1 7 2 Configuring the Secure Gateway Using the Secure Gateway Admin Console 2 2 Configuring the Secure Gateway properties file 2 3 Authentication and encryption 2 3 Debugging and lo...

Страница 4: ...er contains instructions for installing the Secure Gateway and provides a diagram of the recommended configuration Overview 1 2 Recommended Secure Gateway configuration 1 2 Installing the Secure Gatew...

Страница 5: ...rnet Recommended Secure Gateway configuration Nokia recommends using the Secure Gateway configuration within your network The Secure Gateway offers secure and scalable communications between mobile de...

Страница 6: ...Installing Secure Gateway Recommended Secure Gateway configuration Intellisync Mobile Suite Secure Gateway Administrator s Guide 1 3 Recommended Secure Gateway Configuration...

Страница 7: ...s 3 To install to a location other than the default folder click Change Otherwise click Next The Secure Gateway Service User screen appears 4 Complete the following fields Username Enter the name for...

Страница 8: ...Mobile Suite and then choose Admin Console The Intellisync Mobile Suite control appears 2 Select Intellisync Mobile Suite in the console tree 3 From the Action menu choose Properties The Intellisync...

Страница 9: ...e Gateway server name in the following fields z Website Server Name z Sync Server Name z Network Push Server this applies only to the IMS server 9 Click OK The Intellisync Mobile Suite Properties dial...

Страница 10: ...shared path will contain a file sgsharedprop properties which contains the cluster server names This file is automatically created after you have added each server s to the cluster Modifying the secur...

Страница 11: ...file 2 Define the Secure Gateway cluster servers by entering the following property fore each server SecureGatewayAddress 1 N DNS hostname or IP address 3 Restart the Secure Gateway service on each se...

Страница 12: ...ers information for configuring the Secure Gateway after installation Using the Secure Gateway Admin Console 2 2 Configuring the Secure Gateway properties file 2 3 Configuring Secure Gateway to route...

Страница 13: ...e enter the following URL or enter sgadmin from a local server z http localhost sgadmin admin html or localhost sgadmin Secure Gateway Admin Console The Secure Gateway Admin Console allows the followi...

Страница 14: ...o 0 zero for no challenge Set value to 1 for basic challenge WebCommonDomainName Shares authentication session credentials for multiple DNS names If this property is not set every DNS name is challeng...

Страница 15: ...tion log directory The Secure Gateway server automatically picks up the change in two minutes LoggingLevel property can be set from 1 basic information to 10 detailed information SecureGatewayLogExpir...

Страница 16: ...ettings for a Secure Gateway default values shown Property Description SecureGatewaySharedPropertiesPath Defines the path of the sgsharedprops properties file Used for Secure Gateway clusters Property...

Страница 17: ...following steps 1 From the Intellisync Mobile Suite Admin Console launch WebAdmin 2 Enter the Administrator name and password and then click Login 3 Enter the URL http localhost admin diag and then cl...

Страница 18: ...the Secure Gateway and to the Web browser You can set the following property to override this error To set this property enter the following WebRoutingAllowUnknownSSLCertifications 1 DNS routing dest...

Страница 19: ...Gateway for SSL SSL support is available in Secure Gateway and provides a default key file however you can override this value by using a provided keytool Java utility which enables you to administer...

Страница 20: ...3 Confirm the information entered by entering Yes at the prompt 4 Enter the password for Web server name or press return if this password is the same as your keystore password Generate a CSR 1 Genera...

Страница 21: ...rints Configure the SSL properties for Secure Gateway 1 Place the keystore file into the following directory or the location of your securegateway properties file C Program Files Secure Gateway Commsv...

Страница 22: ...CHAPTER 3 Troubleshooting Secure Gateway This chapter contains helpful hints for troubleshooting Secure Gateway issues Troubleshooting Secure Gateway issues 3 2...

Страница 23: ...esolves to the Secure Gateway server To view information on the Secure Gateway server click the Secure Gateway tab 6 Click OK 7 From the Intellisync Mobile Suite server use Telnet to verify you can co...

Страница 24: ...rify that netstat a returns correct and expected values Verify firewall router configuration 1 Verify that any nodes usually firewalls and load balancers between the Internet and the Secure Gateway se...

Отзывы: