On 7/21/20 12:19 AM, Timothy Sipples wrote:
Another possible option is to configure an IKEv2/IPsec tunnel between
z/OS and Microsoft Windows Server, then run your message traffic over
the encrypted IPsec connection.
Why not use "transport" mode vs "tunnel" mode?
Wouldn't tunnel require more IPs and routing changes? Conversely
transport would just encrypt the traffic via policy targeting, much like
AT-TLS does.
--
Grant. . . .
unix || die
----------------------------------------------------------------------
For IBM-MAIN subscribe / signoff / archive access instructions,
send email to [email protected] with the message: INFO IBM-MAIN