Planning


Before you begin the installation process, make sure that you have the following environment:

  • Supported versions of z/OS and z/OS compatible hardware
  • PC capable of using FTP to transfer the installation file (a binary offload of a TSO XMIT file) to the target z/OS system is required.
    If you cannot use FTP, you can perform the upload by using IND$FILE instead.
  • Standard supported browser with JavaScript enabled
  • TCP/IP port, AT-TLS for a secured HTTPS connection to the web browser for whichever port you choose
  • Secured ZFS directory space for the disk database
  • APF-authorized load library

Resident Security Server (RSS) provides the core components for BMC AMI Security products and must be installed first. To install RSS, see the RSS Installing section.

You will upload the installation package to the z/OS system, unload with the TSO RECEIVE command, and run the supplied INSTALL procedure from the installation data set.

Important

Record the high-level qualifier for the runtime and installation SMP/E data sets. You will use the same high-level qualifier when you execute the supplied INSTALL procedure for

BMC AMI Enterprise Connector for Illumio

.

BMC AMI Enterprise Connector for Illumio requires the following additional system configuration:

  • Defined IPSecConfig and TTLSConfig on a IBM Policy Agent (PAGENT)
  • Configured AT-TLS to force TLS on the outbound connection to the Illumio Policy Compute Engine (PCE)
  • Running IBM traffic regulation and monitoring daemon (TRMD)
  • Running syslog daemon
  • TCP/IP profile or profiles with the following definitions:
    • IPCONFIG IPSECURITY
    • TCPCONFIG TTLS
    • NETMONITOR ON

Important

Turning on IPSECURITY blocks all connections unless they have a valid IPSecConifg file defined and a running policy agent.

Where to go from here

To prepare your system for installation, see Preparing-for-installation.

Related topics

 

Tip: For faster searching, add an asterisk to the end of your partial query. Example: cert*