Registering the Client Computers that were Behind a Firewall in the Source CommCell Environment

To register the client computers that were behind a firewall on the source CommCell environment, you must configure a network gateway topology. In this configuration, a network gateway server exists between a client computer group that contains the destination CommServe computer, a client computer group that contains the source CommServe computer, client computers that you want to migrate and a client computer group that contains a network gateway server.

Before You Begin

Procedure

  1. Install a client computer with File System core package on the destination CommCell environment to act as the network gateway server. The network gateway server must be accessible to both source and destination CommCell environments.

    For instructions, see Client Installations.

  2. Log on to the destination CommCell environment.

  3. Create the following client computer groups:

    • A client computer group that contains the destination CommServe computer. For example, CCM – Destination CommCell.

    • A client computer group that contains all the clients that are behind a firewall on the source CommCell environment. For example, CCM -Source CommCell.

      After CommCell registration, the system automatically creates the source CommServe computer client on the destination CommCell environment. You must also add that client to this client computer group.

    • A client computer group that contains the network gateway server that you created earlier. For example, CCM – Network Gateway.

    For instructions, see Creating a Client Computer Group.

  4. Create a network gateway topology for the client computer groups with the following parameters:

    • Topology Type: Via network gateway

    • Laptops or Servers: Select the destination CommServe client computer group (CCM – Destination CommCell)

    • DMZ gateways: Select the client computer group that contains the network gateway server (CCM – Network Gateway).

    • Infrastructure machines: Select the client computer group that contains the clients that you want to migrate. (CCM -Source CommCell).

    For more information, see Setting Up Network Gateway Connections Using a Predefined Network Topology.

  5. Run the qlogin command to log on to the destination CommServe computer.

  6. Execute the following command.

    qoperation execscript -sn QS_SetFirewallConfigOnClient.sql -si cg=”CCM -Source CommCell”
  7. Run the qlogout command to log off the destination CommServe computer.

  8. From the CommCell Browser, right-click the network topology that you configured, click Push Network Configuration, and then click OK.

  9. Log on to the source CommCell environment.

  10. Create a dummy network gateway server with the client name and hostname of the network gateway server that is used in the destination CommCell environment.

  11. Create the following client computer groups:

    • A client computer group that contains the destination CommServe computer. For example, CCM – Destination CommCell.

      After CommCell registration, the system automatically creates the destination CommServe computer client on the source CommCell environment. You must add that client to this client computer group.

    • A client computer group that contains all the clients that are behind a firewall on the source CommCell environment. You must also add the source CommCell client to this client computer group. For example, CCM -Source CommCell.

    • A client computer group that contains the dummy network gateway server. For example, CCM – Network Gateway.

  12. Create a network gateway topology for the client computer groups with the following parameters:

    • Topology Type: Via network gateway

    • Laptops or Servers: Select the client computer group that contains all the clients that you want to migrate. (CCM – Source CommCell)

    • DMZ gateways: Select the client computer group that contains the dummy network gateway server. (CCM – Network Gateway)

    • Infrastructure machines: Select the destination CommServe client computer group. (CCM – Destination CommCell)

  13. For more information, see Setting Up Network Gateway Connections Using a Predefined Network Topology.

  14. From the CommCell Browser, right-click the network topology that you configured, click Push Network Configuration, and then click OK.

  15. On the destination CommCell environment, add the clients that you want to migrate as the remote clients. The remote CommServe computer must be in the same version as the local CommServe computer.

    For instructions, see Adding a Remote Client.

    This procedure creates a certificate of the destination CommServe computer on the remote clients, so that the network gateway server can communicate with the remote clients.

  16. On the destination CommServe computer, right-click one of the clients to migrate, and then click Properties > Network.

  17. On the Network Summary tab, you can view the routes configured between the destination CommServe computer and the client computer through the network gateway server.

  18. To ensure that the network gateway server can communicate with the remote clients that are behind firewall, verify that the cvfwd.log file located at <software-installation-directory>/logs directory on the network gateway server contains log lines in the following format.

    2812 0f54 01/07 04:31:15 TN:00001 ######## Initialized new DYNAMIC tunnel from "proxy_clientname" to "destinationCS" via (172.20.60.249, 172.20.61.9)
    2812 0f54 01/07 04:31:21 TN:00002 ######## Initialized new DYNAMIC tunnel from "proxy_clientname" to "sourceCS" via (172.20.60.249, 172.20.60.38)
  19. On the destination CommServe computer, verify that the source CommServe computer is online. Complete the following steps:

    1. Right-click the CommServe node, point to All Tasks, and then click CommCell Registration.

    2. Right-click the registered CommCell, and then click CommCell Properties.

    3. The Remote CommCell Properties dialog box appears.

    4. Click Check Connectivity.

    5. Click OK.

  20. Register one client computer initially. After successful registration of one client computer, register the remaining client computers in batches.

    For instructions, see Registering the Migrated Client Computers.

Loading...