Unix Technical Forum

HACMP persistent IP address and default route based on service address

This is a discussion on HACMP persistent IP address and default route based on service address within the AIX Operating System forums, part of the Unix Operating Systems category; --> Greeting: I had configured a rotating resource group using IP aliasing and pesistent IP address on each node. However, ...


Go Back   Unix Technical Forum > Unix Operating Systems > AIX Operating System

FAQ Members List Calendar Search Today's Posts Mark Forums Read
  #1 (permalink)  
Old 01-05-2008, 08:21 AM
Thomas.tyho@gmail.com
 
Posts: n/a
Default HACMP persistent IP address and default route based on service address

Greeting:
I had configured a rotating resource group using IP aliasing and
pesistent IP address on each node.

However, I find that the default route was based on my persistent IP
address such that my firewall has to configured the source address of
my node to be the persistent addresses which should be my intention. (I
want the source address of every traffic comming from my node to be the
service IP address)

Is there any way to change the default route based on my service
address, such that the remote machine can know that I am using the
service address to connect to it and the firewall rules can be more
make sense.

Thanks in advance.

Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #2 (permalink)  
Old 01-05-2008, 08:22 AM
Jesper James
 
Posts: n/a
Default Re: HACMP persistent IP address and default route based on service address

Hi,

I think your problem might be related to the way aix creates outgoing
connections. If you have two adapters on the same subnet, aix will
alternate between these when making outgoing connections, so unless you
can bind your application to the service address you will need to open
up for both. In case of a server-only application it should be no
problem.

>From a HACMP FAQ:


"...in AIX 5.1 multiple interfaces can have a route to the same subnet.
This is sometimes referred to as multipath routing or route striping
and when this situation exists, AIX will multiplex outgoing packets
destined for a particular subnet across all interfaces with a route to
that subnet."

As you really have no control over on which interface your persistent
and service addresses will end up, you will easily end up in this
situation, and have to plan your network setup accordingly.

see:
http://www-03.ibm.com/servers/eserve...s/ha/faq5.html

regards,
Jesper James

Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #3 (permalink)  
Old 01-05-2008, 08:22 AM
Greg
 
Posts: n/a
Default Re: HACMP persistent IP address and default route based on service address

In addition, you can always add a static route to a specific host.
This has solved similar problems for me in the past, esp. when sending
data to outside vendors through routers with ACLs, and with ftp to
hosts via passive mode.

-Greg

Jesper James wrote:
> Hi,
>
> I think your problem might be related to the way aix creates outgoing
> connections. If you have two adapters on the same subnet, aix will
> alternate between these when making outgoing connections, so unless you
> can bind your application to the service address you will need to open
> up for both. In case of a server-only application it should be no
> problem.
>
> >From a HACMP FAQ:

>
> "...in AIX 5.1 multiple interfaces can have a route to the same subnet.
> This is sometimes referred to as multipath routing or route striping
> and when this situation exists, AIX will multiplex outgoing packets
> destined for a particular subnet across all interfaces with a route to
> that subnet."
>
> As you really have no control over on which interface your persistent
> and service addresses will end up, you will easily end up in this
> situation, and have to plan your network setup accordingly.
>
> see:
> http://www-03.ibm.com/servers/eserve...s/ha/faq5.html
>
> regards,
> Jesper James


Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Reply


Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On
Forum Jump


All times are GMT. The time now is 11:56 AM.


Powered by vBulletin® Version 3.6.5
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
SEO by vBSEO 3.2.0
www.UnixAdminTalk.com