background image

Configuring the Secure Gateway

Configuring Secure Gateway for SSL

Intellisync Mobile Suite Secure Gateway Administrator’s Guide

2–8

URL routing destinations

WebURLRouting[uniqueNumber]=source,destination,flag 

is defined as the following:

source

 is the first folder in the URL 

destination

 is defined as [protocol]address[:port]

flag

 is used for specifying this is a virtual folderName and the name 

should be stripped from the URL before being routed

Examples: 

WebURLRouting1=/,http://localhost:8840,0

http://www.securegateway.com/ routes to http://localhost

WebURLRouting2=en,http://localhost:8840,0

http://www.securegateway.com/en/login.asp routes to http://localhost/en/login.asp

WebURLRouting3=intranet,http://intranet,1

http://www.securegateway.com/intranet routes to http://intranet

Configuring Secure Gateway for SSL

SSL support is available in Secure Gateway and provides a default key file; 
however, you can override this value by using a provided keytool Java utility, 
which enables you to administer public/private key pairs and associated 
certificates. The keytool utility stores the keys and certificates in a keystore. The 
default implements the keystore as a file. It protects private/public keys with a 
password. These properties help configure Secure Gateway for SSL.

When you define your keystore file, you can generate a Certification Signing 
Request (CSR). With this CSR, you can obtain a digital certificate from a 
Certification Authority (CA), such as Verisign. After you have created your 
keystore file, you can use the Secure Gateway Admin Console to insert the 
encrypted values into the securegateway.properties file.

For more information about Java Key and Certification Management keytool, 
refer to http://java.sun.com/j2se/1.4.2/docs/tooldocs/windows/keytool.html 
for documentation.

Summary of Contents for INTELLISYNC MOBILE SUITE 7.0

Page 1: ...Intellisync Mobile Suite Secure Gateway Administrator s Guide Version 7 0 April 2006...

Page 2: ...blication Synchrologic Mobile Suite RealSync and Intellisync are trademarks of Nokia Corporation Acrobat Reader Copyright 1987 2006 Adobe Systems Incorporated All rights reserved Adobe and Acrobat are...

Page 3: ...re Gateway cluster 1 7 2 Configuring the Secure Gateway Using the Secure Gateway Admin Console 2 2 Configuring the Secure Gateway properties file 2 3 Authentication and encryption 2 3 Debugging and lo...

Page 4: ...er contains instructions for installing the Secure Gateway and provides a diagram of the recommended configuration Overview 1 2 Recommended Secure Gateway configuration 1 2 Installing the Secure Gatew...

Page 5: ...rnet Recommended Secure Gateway configuration Nokia recommends using the Secure Gateway configuration within your network The Secure Gateway offers secure and scalable communications between mobile de...

Page 6: ...Installing Secure Gateway Recommended Secure Gateway configuration Intellisync Mobile Suite Secure Gateway Administrator s Guide 1 3 Recommended Secure Gateway Configuration...

Page 7: ...s 3 To install to a location other than the default folder click Change Otherwise click Next The Secure Gateway Service User screen appears 4 Complete the following fields Username Enter the name for...

Page 8: ...Mobile Suite and then choose Admin Console The Intellisync Mobile Suite control appears 2 Select Intellisync Mobile Suite in the console tree 3 From the Action menu choose Properties The Intellisync...

Page 9: ...e Gateway server name in the following fields z Website Server Name z Sync Server Name z Network Push Server this applies only to the IMS server 9 Click OK The Intellisync Mobile Suite Properties dial...

Page 10: ...shared path will contain a file sgsharedprop properties which contains the cluster server names This file is automatically created after you have added each server s to the cluster Modifying the secur...

Page 11: ...file 2 Define the Secure Gateway cluster servers by entering the following property fore each server SecureGatewayAddress 1 N DNS hostname or IP address 3 Restart the Secure Gateway service on each se...

Page 12: ...ers information for configuring the Secure Gateway after installation Using the Secure Gateway Admin Console 2 2 Configuring the Secure Gateway properties file 2 3 Configuring Secure Gateway to route...

Page 13: ...e enter the following URL or enter sgadmin from a local server z http localhost sgadmin admin html or localhost sgadmin Secure Gateway Admin Console The Secure Gateway Admin Console allows the followi...

Page 14: ...o 0 zero for no challenge Set value to 1 for basic challenge WebCommonDomainName Shares authentication session credentials for multiple DNS names If this property is not set every DNS name is challeng...

Page 15: ...tion log directory The Secure Gateway server automatically picks up the change in two minutes LoggingLevel property can be set from 1 basic information to 10 detailed information SecureGatewayLogExpir...

Page 16: ...ettings for a Secure Gateway default values shown Property Description SecureGatewaySharedPropertiesPath Defines the path of the sgsharedprops properties file Used for Secure Gateway clusters Property...

Page 17: ...following steps 1 From the Intellisync Mobile Suite Admin Console launch WebAdmin 2 Enter the Administrator name and password and then click Login 3 Enter the URL http localhost admin diag and then cl...

Page 18: ...the Secure Gateway and to the Web browser You can set the following property to override this error To set this property enter the following WebRoutingAllowUnknownSSLCertifications 1 DNS routing dest...

Page 19: ...Gateway for SSL SSL support is available in Secure Gateway and provides a default key file however you can override this value by using a provided keytool Java utility which enables you to administer...

Page 20: ...3 Confirm the information entered by entering Yes at the prompt 4 Enter the password for Web server name or press return if this password is the same as your keystore password Generate a CSR 1 Genera...

Page 21: ...rints Configure the SSL properties for Secure Gateway 1 Place the keystore file into the following directory or the location of your securegateway properties file C Program Files Secure Gateway Commsv...

Page 22: ...CHAPTER 3 Troubleshooting Secure Gateway This chapter contains helpful hints for troubleshooting Secure Gateway issues Troubleshooting Secure Gateway issues 3 2...

Page 23: ...esolves to the Secure Gateway server To view information on the Secure Gateway server click the Secure Gateway tab 6 Click OK 7 From the Intellisync Mobile Suite server use Telnet to verify you can co...

Page 24: ...rify that netstat a returns correct and expected values Verify firewall router configuration 1 Verify that any nodes usually firewalls and load balancers between the Internet and the Secure Gateway se...

Reviews: