Telnet-SSL Questions



G'day,

I have successfully configured a 'telnet-ssl' session by using DCM to
create a *SYSTEM Certicate Store, associate the Certificate with
Telnet, restart the Telnet Server, copy the Certificate to a PC &
import it into the PC's PCOMM Key database using the "IBM Key
Management" utility under Client Access. I have then changed the PCOMM
5250 Emulator to use Port 992 & "enabled Security". In summary, all is
good: I can establish a 992 telnet-ssl session between a PC (actually,
the PC Console PC!) & the iSeries (820) Server.

My next step is to attempt the same connection from another PC to the
same iSeries Server. I have taken the same Key, copied it to another
PC, imported it into the PCOMM Key Database, updated the PCOMM 5250
session (as above), but my 5250 session just hangs saying (at the foot
of the emulator): "Secure Socket is connect to remote server/host
xxx.xxx.xxx.xxx using port 992..." with a blank screen.

If I display the jobog to a QTVTELNET job on the Host, I get the
following messages:
"A remote host did not respond within the timeout period."
"SSL Handshake exceeded timeout limit for client 10.19.99.166 port
1068"

What am I doing wrong? Have I missed something? Am I looking at it too
simply? With 27 iSeries machines to support, I'd ideally like to use
just the one CA for all PC & Servers. Creating multiple CAs & importing
them onto every PC would be a nightmare!

Any assistance would be greatly appreciated.
Thanks, Tony Covelle.

.



Relevant Pages

  • Re: Telnet-SSL Questions
    ... The client doesn't need a certificate, it needs a Certificate Authority. ... I have successfully configured a 'telnet-ssl' session by using DCM to ... Telnet, restart the Telnet Server, copy the Certificate to a PC & ... PC, imported it into the PCOMM Key Database, updated the PCOMM 5250 ...
    (comp.sys.ibm.as400.misc)
  • Re: RWW Timing
    ... I understand that you want to monitor when and how ... > to an internal Windows XP or Terminal Server computer. ... SBS creates a connection to the internal client on port 3389 which is ... But it can not tell which one session from the RWW, ...
    (microsoft.public.windows.server.sbs)
  • Re: Restricting TS USers
    ... MCSE, CCEA, Microsoft MVP - Terminal Server ... Terminal Services and Microsoft Windows Server 2003 Service Pack ... the remote session does not end immediately. ...
    (microsoft.public.windows.terminal_services)
  • Re: ASP sessionstate
    ... :>: so it is a clientside issue. ... ASP doesn't know or care what browser it ... but then it is not a new session. ... :> How can a Response.Write write to the server screen? ...
    (microsoft.public.inetserver.asp.general)
  • Re: ASP sessionstate
    ... ASP doesn't know or care what browser it ... ticket number given when the first item is added to the cart. ... How can a Response.Write write to the server screen? ... :> delete the cart file and set the session ...
    (microsoft.public.inetserver.asp.general)