Computer Associates SQLSTQ99000600 Diagnostics Guide - Page 35

Firewall Considerations, for example, Windows Firewall in Windows XP Professional SP2, you must - international

Page 35 highlights

Apply the Cure and Document the Solution For Remote Control, keep in mind that: „ computers are not migrated on an enterprise manager „ computer groups are only migrated once - deleted groups on pre r11 managers will not be synchronized „ migration of address book information can pull from either of two sources - local address book or global address book. Only one can be selected per migration job. When all the migration phases have been completed, the components of the old environment can be uninstalled. At that point you can use the available mechanisms - replacement scripts using the r11 agent installer, uninstallation using the USD jobs, manual uninstallation using the add/remove programs controls or any uninstall icons available in the start menu. Firewall Considerations A full list of required ports can be found in the Implementation Guide, however, in general, Unicenter DSM only requires two ports to be opened to accommodate a majority of the inter-component communications. These are: „ 4104 - UDP (for CAM) „ 4104 - TCP (for bulk stream traffic) Certain features within the product can be configured to use file shares. In this event, the appropriate file share ports will also need to be opened. To enable deployment of agents to target computers that run firewall software, for example, Windows Firewall in Windows XP Professional SP2, you must perform the following actions manually: 1. Change Security Policy "Network Acess: Sharing and security model for local accounts" from "Guest only - local users authenticate as Guest" to "Classic- local users authenticate as themselves" (applies to Windows XP) For more information see the web page "Network access: sharing and security model for local accounts" in the Windows product documentation. 2. Configure the following firewall settings. For the Internal - NOS download method: - Allow File and Printer Sharing - Open UDP Port 4104 - Open TCP Port 7 For the DTS - NOS-less download method additionally: - Open TCP Port 1234 - Open TCP Port 4728 Chapter 5: Troubleshooting Installation and Migration 5-5

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70

Apply the Cure and Document the Solution
For Remote Control, keep in mind that:
computers are not migrated on an enterprise manager
computer groups are only migrated once - deleted groups on pre r11
managers will not be synchronized
migration of address book information can pull from either of two sources -
local address book or global address book.
Only one can be selected per
migration job.
When all the migration phases have been completed, the components of the
old environment can be uninstalled.
At that point you can use the available
mechanisms - replacement scripts using the r11 agent installer, uninstallation
using the USD jobs, manual uninstallation using the add/remove programs
controls or any uninstall icons available in the start menu.
Firewall Considerations
A full list of required ports can be found in the
Implementation Guide
,
however, in general, Unicenter DSM only requires two ports to be opened to
accommodate a majority of the inter-component communications.
These are:
4104 – UDP (for CAM)
4104 – TCP (for bulk stream traffic)
Certain features within the product can be configured to use file shares.
In
this event, the appropriate file share ports will also need to be opened.
To enable deployment of agents to target computers that run firewall software,
for example, Windows Firewall in Windows XP Professional SP2, you must
perform the following actions manually:
1.
Change Security Policy “Network Acess: Sharing and security model for
local accounts” from “Guest only – local users authenticate as Guest” to
“Classic- local users authenticate as themselves” (applies to Windows XP)
For more information see the web page “Network access: sharing and
security model for local accounts” in the Windows product documentation.
2.
Configure the following firewall settings.
For the Internal - NOS download method:
Allow File and Printer Sharing
Open UDP Port 4104
Open TCP Port 7
For the DTS - NOS-less download method additionally:
Open TCP Port 1234
Open TCP Port 4728
Chapter 5: Troubleshooting Installation and Migration
5–5