22.12.2012 Views

Front cover - IBM Redbooks

Front cover - IBM Redbooks

Front cover - IBM Redbooks

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

12.8 Conclusion<br />

STEP and firewalls<br />

STEP can be installed on the same server as Sametime or on a different server.<br />

However, STEP must be installed outside your organization's firewall. For extra<br />

protection, it is possible to install the STEP server in a zone between two<br />

firewalls, one between the STEP server and the rest of the organization, the<br />

other between the STEP server and the Internet.<br />

If the Sametime server is inside the organization's firewall, it is necessary to<br />

either move it outside the firewall, or to use a separate server for STEP. STEP<br />

must be installed on a Domino server, so if Sametime is not on a Domino server,<br />

you must use a separate server for STEP.<br />

If STEP is on a different server than Sametime it is necessary to create a local<br />

replica of the Secrets database (STAUTHS.NSF) and the Tokens database<br />

(STAUTHT.NSF) on the STEP server.<br />

STEP and multiple Domino domains<br />

If STEP is placed on a separate server from Sametime, you must next decide<br />

whether it should be in the same Domino domain. It may be wise to put the STEP<br />

server in a different Domino domain so that there is another level of separation<br />

between the Sametime server and the outside world.<br />

If STEP is in a separate domain from the Sametime and mail servers, the<br />

following steps must be undertaken:<br />

1. Cross-certify the STEP server with the Sametime server.<br />

2. Create a connection document between the STEP server and the Sametime<br />

server.<br />

3. Enable Directory Assistance so the STEP server can find your organization's<br />

address book.<br />

This completes our discussion on the security features of Lotus products other<br />

than Notes and Domino. We provided an overview of these other members of the<br />

Lotus software family of collaborative products, the security mechanisms they<br />

offer, and the best manner to configure them securely.<br />

In this chapter, we <strong>cover</strong>ed the following collaborative products:<br />

► Lotus Team Workplace (QuickPlace)<br />

► Lotus Web Conferencing and Instant Messaging (Sametime)<br />

► Lotus Domino Web Access (iNotes)<br />

Chapter 12. Security features of other Lotus products 577

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!