Previous Topic: Add Encryption Keys to the Server ID

Next Topic: Enable SSL between Lotus Domino and CA IAM CS

Configure Remote Access to the Domino Server

This procedure is for the Lotus Domino administrator.

Follow these steps:

  1. Verify that the Domino server accessible through the network, using TCP/IP. You must be able to ping the server using its Internet host name.
  2. Enable the HTTP and DIIOP tasks on the Domino server, in one of these ways:
  3. Use Domino Administrator to modify the server document to allow and restrict access as desired. The following are some suggested settings:
    1. On the Security tab, in the Server Access section:
      • Access server – All users can access this server
      • Not access server – blank
      • Create new databases – blank (= everyone)
      • Create replica databases – LocalDomainAdmins, LocalDomainServers, and the Domino Administrator account used by the LND Connector if that account is not a member of LocalDomainAdmins
    2. On the Security tab, in the Programmability Restrictions section:
      • Run unrestricted methods and operations – the Domino server name, the Domino Administrator account used by the LND Connector
      • Run restricted LotusScript Java agents – the Domino Administrator account used by the LND Connector
    3. On the Security tab, in the Internet Access section:
      • Internet authentication – Few name variations with higher security
    4. On the Ports tab, under Internet Ports, for DIIOP:
      • Authentication options
      • Name & password - Yes
      • Anonymous - Yes
    5. On the Internet Protocols tab, under HTTP, in the R5 Basics section
      • Allow HTTP clients to browse databases – Yes
Sign the Agents Used by the Connector

This procedure is for the Lotus Domino administrator.

Before you acquire the endpoint for the first time, sign the agents that the connector uses. Use the keys discussed in Add Encryption Keys to the Server ID.

Follow these steps:

  1. Copy the regarchv.ntf and regcerts.ntf database templates from this location:
    cs_home\resources\lnd
    
  2. Place the copies in the data folder of the Domino Server endpoint:
  3. Log in to Domino Designer using the account used by the connector.
  4. Update the regarchv.ntf database template:
    1. Open the regarchv.ntf database template.
    2. In the Database View window on the right, expand Shared Code and click Agents.

      A list of agents located in each template is displayed.

    3. For each agent, select the agent then click Sign.

      This signs each of the agents that the connector is deployed within your environment.

  5. Repeat step 4 for the regcerts.ntf database template.

    If the regarc.nsf and regcert.nsf databases have not already been created, skip to the last step.

    If these databases have already been created, follow the next steps to refresh the database designs.

  6. Switch to the file view in Domino Designer.
  7. Select regarc.nsf and click File, Database, Refresh Design.
  8. Select regcert.nsf and click File, Database, Refresh Design.

    The designs for these databases have been refreshed.

  9. Close Domino Designer.