Previous topic |
Next topic |
Contents |
Contact z/OS |
Library |
PDF
EZD1107I z/OS Communications Server: IP Messages Volume 2 (EZB, EZD) SC27-3655-01 |
|
EZD1107I IKE detected a NAT while initiating a narrow Security Association
negotiation for a new dynamic tunnel with a non-z/OS peer ExplanationThe Internet Key Exchange (IKE) daemon is attempting to initiate a narrow phase 2 Security Association (SA) for a new dynamic tunnel with a non-z/OS peer. The SA traverses a NAT. A narrow SA is an SA negotiated for specific ports, protocol, or both. Interoperability issues might exist with the non-z/OS peer when z/OS® initiates a narrow phase 2 SA. z/OS is providing NAT Traversal support for a defined group of configurations where z/OS is running the IKE daemon. See the information about IP security in z/OS Communications Server: IP Configuration Guide for a description of the supported configurations. System actionThe SA negotiation continues. Operator responseIf the SA negotiation fails, contact the system programmer. System programmer responseIf the SA negotiation fails, see the information about IP security in z/OS Communications Server: IP Configuration Guide to determine if there is an interoperability concern that caused the phase 2 SA negotiation to fail. Contact the remote peer's administrator to understand any interoperability considerations for the non-z/OS platform. Moduleoakley_phaseII.cpp Procedure nameNone. |
Copyright IBM Corporation 1990, 2014
|