<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: which the source address in case of SG? in Operating System - HP-UX</title>
    <link>https://community.hpe.com/t5/operating-system-hp-ux/which-the-source-address-in-case-of-sg/m-p/3670869#M554757</link>
    <description>I didn't ask which IP to use from external nodes to access cluster nodes / packages, this is well known.&lt;BR /&gt;&lt;BR /&gt;I asked to know which is the source IP when an application inside a cluster node accesses the external servers.&lt;BR /&gt;This is needed in case of firewalls:&lt;BR /&gt;if a want to allow the applications running in a cluster node (telnet, rlogin, rcp, ...) I need to enable their source IP. Am I sure that the source IP doesn't change when there's a MC/SG package running there?</description>
    <pubDate>Mon, 14 Nov 2005 05:27:14 GMT</pubDate>
    <dc:creator>Enrico Venturi</dc:creator>
    <dc:date>2005-11-14T05:27:14Z</dc:date>
    <item>
      <title>which the source address in case of SG?</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/which-the-source-address-in-case-of-sg/m-p/3670867#M554755</link>
      <description>Hello colleagues,&lt;BR /&gt;we were using Serviceguard.&lt;BR /&gt;Each cluster node can be identified through the physical IP and the virtual IP, the last one only when there's a package running there.&lt;BR /&gt;My question is: the applications running on the node which IP do they use to present themselves to the outside?&lt;BR /&gt;In other words, if a remote node receives an IP connection request from a local application (telnet, rlogin, rcp, .... ) which is the source IP? Is it always the physical address or  it can randomly be the virtual one?&lt;BR /&gt;&lt;BR /&gt;thanks&lt;BR /&gt;Enrico</description>
      <pubDate>Mon, 14 Nov 2005 05:10:54 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/which-the-source-address-in-case-of-sg/m-p/3670867#M554755</guid>
      <dc:creator>Enrico Venturi</dc:creator>
      <dc:date>2005-11-14T05:10:54Z</dc:date>
    </item>
    <item>
      <title>Re: which the source address in case of SG?</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/which-the-source-address-in-case-of-sg/m-p/3670868#M554756</link>
      <description>Hi,&lt;BR /&gt;&lt;BR /&gt;Applications always should bind to the virtual IP of the package which is also called the floating IP, as it is accessible through the node where that particular package is currently running. You should also use the same for telnet, rlogin etc. also but you shall not ignore the status of package ( Which nodes hosts the package) while doing so.&lt;BR /&gt;&lt;BR /&gt;FYI&lt;BR /&gt;Physical address allthough can be more than one to each server, floating IP also will be different for each package. i.e. 10 package running will have 10 seperate IPs.&lt;BR /&gt;&lt;BR /&gt;HTH,&lt;BR /&gt;Devender&lt;BR /&gt;&lt;BR /&gt;HTH,&lt;BR /&gt;Devender</description>
      <pubDate>Mon, 14 Nov 2005 05:18:26 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/which-the-source-address-in-case-of-sg/m-p/3670868#M554756</guid>
      <dc:creator>Devender Khatana</dc:creator>
      <dc:date>2005-11-14T05:18:26Z</dc:date>
    </item>
    <item>
      <title>Re: which the source address in case of SG?</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/which-the-source-address-in-case-of-sg/m-p/3670869#M554757</link>
      <description>I didn't ask which IP to use from external nodes to access cluster nodes / packages, this is well known.&lt;BR /&gt;&lt;BR /&gt;I asked to know which is the source IP when an application inside a cluster node accesses the external servers.&lt;BR /&gt;This is needed in case of firewalls:&lt;BR /&gt;if a want to allow the applications running in a cluster node (telnet, rlogin, rcp, ...) I need to enable their source IP. Am I sure that the source IP doesn't change when there's a MC/SG package running there?</description>
      <pubDate>Mon, 14 Nov 2005 05:27:14 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/which-the-source-address-in-case-of-sg/m-p/3670869#M554757</guid>
      <dc:creator>Enrico Venturi</dc:creator>
      <dc:date>2005-11-14T05:27:14Z</dc:date>
    </item>
    <item>
      <title>Re: which the source address in case of SG?</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/which-the-source-address-in-case-of-sg/m-p/3670870#M554758</link>
      <description>A package running in a Serviceguard configuration will show the stationary ip address of the node it is running on as it's source address.&lt;BR /&gt;If you need to have the package respond with the relocatable or floating adress, you need to compile the application so that it binds to the floating address.&lt;BR /&gt;See page 377 in Appendix C of &lt;A href="http://docs.hp.com/en/B3936-90079/B3936-90079.pdf" target="_blank"&gt;http://docs.hp.com/en/B3936-90079/B3936-90079.pdf&lt;/A&gt; for more details</description>
      <pubDate>Mon, 14 Nov 2005 05:46:07 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/which-the-source-address-in-case-of-sg/m-p/3670870#M554758</guid>
      <dc:creator>melvyn burnard</dc:creator>
      <dc:date>2005-11-14T05:46:07Z</dc:date>
    </item>
    <item>
      <title>Re: which the source address in case of SG?</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/which-the-source-address-in-case-of-sg/m-p/3670871#M554759</link>
      <description>I cannot explain myself,&lt;BR /&gt;maybe the attached doc. will help you in understanding what I mean</description>
      <pubDate>Mon, 14 Nov 2005 06:24:26 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/which-the-source-address-in-case-of-sg/m-p/3670871#M554759</guid>
      <dc:creator>Enrico Venturi</dc:creator>
      <dc:date>2005-11-14T06:24:26Z</dc:date>
    </item>
    <item>
      <title>Re: which the source address in case of SG?</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/which-the-source-address-in-case-of-sg/m-p/3670872#M554760</link>
      <description>So are you asking the following:&lt;BR /&gt;If an application is started OUTSIDE of SG (i.e. no relocatable ip address involved) what ip address will the application supply as it's source? It will be the stationary ip address of the primary network on the host it is running on.&lt;BR /&gt;</description>
      <pubDate>Mon, 14 Nov 2005 06:37:14 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/which-the-source-address-in-case-of-sg/m-p/3670872#M554760</guid>
      <dc:creator>melvyn burnard</dc:creator>
      <dc:date>2005-11-14T06:37:14Z</dc:date>
    </item>
    <item>
      <title>Re: which the source address in case of SG?</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/which-the-source-address-in-case-of-sg/m-p/3670873#M554761</link>
      <description>yes, and moreover:&lt;BR /&gt;when a package is running on the node and the package IP is set to the LAN 0, does the IP exposed by the applications change (maybe randomly) or not?</description>
      <pubDate>Mon, 14 Nov 2005 07:21:54 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/which-the-source-address-in-case-of-sg/m-p/3670873#M554761</guid>
      <dc:creator>Enrico Venturi</dc:creator>
      <dc:date>2005-11-14T07:21:54Z</dc:date>
    </item>
    <item>
      <title>Re: which the source address in case of SG?</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/which-the-source-address-in-case-of-sg/m-p/3670874#M554762</link>
      <description>Venturi,&lt;BR /&gt;&lt;BR /&gt;no random behaviour is involved here. It's all about routing.&lt;BR /&gt;&lt;BR /&gt;If an application binds to a specific IP address, then the kernel routes outgoing traffic via the corresponding interface. If it is an relocatable IP, then this will be used as source IP address.&lt;BR /&gt;&lt;BR /&gt;If an applikation binds to INADDR_ANY (non-clusteraware applications usually do that), then the kernel's current routing table determines what interface to use, i.e. what source IP address to use.&lt;BR /&gt;&lt;BR /&gt;Melvyn is right... this is usually the stationary address, since it has usually the topmost (network) entry in the routing table.&lt;BR /&gt;&lt;BR /&gt;Here's a small example:&lt;BR /&gt;&lt;BR /&gt;Machine nero has stationary IP 15.140.11.19 and a relocatable one 15.140.8.63:&lt;BR /&gt;&lt;BR /&gt;15.140.11.19[nero]:/ # netstat -in&lt;BR /&gt;IPv4:&lt;BR /&gt;Name      Mtu  Network         Address         Ipkts   Ierrs Opkts   Oerrs Coll&lt;BR /&gt;lan0      1500 15.140.8.0      15.140.11.19    79587867 0     73777210 0     0&lt;BR /&gt;lan0:1    1500 15.140.8.0      15.140.8.63     12278061 0     11839431 0     0&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;Routing to network 15.140.8.0 goes through the stationary IP:&lt;BR /&gt;&lt;BR /&gt;15.140.11.19[nero]:/ # netstat -rn&lt;BR /&gt;IPv4 Routing tables:&lt;BR /&gt;Destination           Gateway            Flags   Refs Interface  Pmtu&lt;BR /&gt;15.140.11.19          15.140.11.19       UH        0  lan0       4136&lt;BR /&gt;15.140.8.63           15.140.8.63        UH        0  lan0:1     4136&lt;BR /&gt;15.140.8.0            15.140.11.19       U         3  lan0       1500 &amp;lt;&amp;lt;&amp;lt;&amp;lt;&lt;BR /&gt;15.140.8.0            15.140.8.63        U         3  lan0:1     1500&lt;BR /&gt;&lt;BR /&gt;So when I access machine lola on 15.140.8.65 then lola's netstat output shows my stationary UP as source address:&lt;BR /&gt;&lt;BR /&gt;15.140.11.19[nero]:/ # remsh 15.140.8.65 netstat -an | grep '514 .*ESTABLISHED'&lt;BR /&gt;tcp        0      0  15.140.8.65.514        15.140.11.19.1005       ESTABLISHED&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;Now I add an host route through my relocatable address:&lt;BR /&gt;&lt;BR /&gt;15.140.11.19[nero]:/ # route add host 15.140.8.65 15.140.8.63 0&lt;BR /&gt;add host 15.140.8.65: gateway 15.140.8.63&lt;BR /&gt;&lt;BR /&gt;Please note that host routes precede network routes... so routing to lola goes through lan0:1 now, using my relocatable address:&lt;BR /&gt;&lt;BR /&gt;15.140.11.19[nero]:/ # netstat -rn&lt;BR /&gt;IPv4 Routing tables:&lt;BR /&gt;Destination           Gateway            Flags   Refs Interface  Pmtu&lt;BR /&gt;15.140.11.19          15.140.11.19       UH        0  lan0       4136&lt;BR /&gt;15.140.8.63           15.140.8.63        UH        0  lan0:1     4136&lt;BR /&gt;15.140.8.65           15.140.8.63        UH        0  lan0:1        0 &amp;lt;&amp;lt;&amp;lt;&amp;lt;&lt;BR /&gt;15.140.8.0            15.140.11.19       U         3  lan0       1500&lt;BR /&gt;15.140.8.0            15.140.8.63        U         3  lan0:1     1500&lt;BR /&gt;&lt;BR /&gt;This can also be seen in lola's netstat output:&lt;BR /&gt;&lt;BR /&gt;15.140.11.19[nero]:/ # remsh 15.140.8.65 netstat -an | grep '514 .*ESTABLISHED'&lt;BR /&gt;tcp        0      0  15.140.8.65.514        15.140.8.63.1005        ESTABLISHED&lt;BR /&gt;&lt;BR /&gt;qed.&lt;BR /&gt;&lt;BR /&gt;Best regards...&lt;BR /&gt;Dietmar.&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;</description>
      <pubDate>Mon, 14 Nov 2005 08:44:15 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/which-the-source-address-in-case-of-sg/m-p/3670874#M554762</guid>
      <dc:creator>Dietmar Konermann</dc:creator>
      <dc:date>2005-11-14T08:44:15Z</dc:date>
    </item>
    <item>
      <title>Re: which the source address in case of SG?</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/which-the-source-address-in-case-of-sg/m-p/3670875#M554763</link>
      <description>SG floating IP addresses are virtual IP addresses. They are subject to their main IP address and looking carefully at the source IP will let you know which node you are working on.&lt;BR /&gt;&lt;BR /&gt;EX:&lt;BR /&gt;Mainip 192.168.0.90 lan0&lt;BR /&gt;&lt;BR /&gt;floater 192.168.0.91 lan0:1&lt;BR /&gt;&lt;BR /&gt;Traffic from the floater will actually come out of the main interface.&lt;BR /&gt;&lt;BR /&gt;In theory that is. That is what I believe you'll see if you use ethereal or tcpdump to look at the traffic across the lan.&lt;BR /&gt;&lt;BR /&gt;SEP</description>
      <pubDate>Mon, 14 Nov 2005 09:20:05 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/which-the-source-address-in-case-of-sg/m-p/3670875#M554763</guid>
      <dc:creator>Steven E. Protter</dc:creator>
      <dc:date>2005-11-14T09:20:05Z</dc:date>
    </item>
    <item>
      <title>Re: which the source address in case of SG?</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/which-the-source-address-in-case-of-sg/m-p/3670876#M554764</link>
      <description>Steven,&lt;BR /&gt; &lt;BR /&gt;only SG talks about stationary and relocatable/virtual addresses.&lt;BR /&gt;&lt;BR /&gt;From the networking stack's point of view you have just a bunch of indexed IP addresses assigned to the interface. You could e.g. just bring lan0:4 and lan0:5 up... and leave lan0 (aka lan0:0) down.&lt;BR /&gt; &lt;BR /&gt;As I already said, the used route determines what source address shows up. No matter, if you look with tcpdump or ethereal or just look at netstat.&lt;BR /&gt;&lt;BR /&gt;Best regards...&lt;BR /&gt;Dietmar.</description>
      <pubDate>Mon, 14 Nov 2005 09:39:15 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/which-the-source-address-in-case-of-sg/m-p/3670876#M554764</guid>
      <dc:creator>Dietmar Konermann</dc:creator>
      <dc:date>2005-11-14T09:39:15Z</dc:date>
    </item>
    <item>
      <title>Re: which the source address in case of SG?</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/which-the-source-address-in-case-of-sg/m-p/3670877#M554765</link>
      <description>However, applications probably SHOULD NOT rely on a given order of interfaces/IPs in the routing tables given them a specific IP address.  &lt;BR /&gt;&lt;BR /&gt;Any application where you want it to use a specific IP address for outbound traffic should make the calls to bind() to bind to a specific local IP address.  Service Guard or no.</description>
      <pubDate>Mon, 14 Nov 2005 20:18:29 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/which-the-source-address-in-case-of-sg/m-p/3670877#M554765</guid>
      <dc:creator>rick jones</dc:creator>
      <dc:date>2005-11-14T20:18:29Z</dc:date>
    </item>
    <item>
      <title>Re: which the source address in case of SG?</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/which-the-source-address-in-case-of-sg/m-p/3670878#M554766</link>
      <description>Not all the applications use the bind(); most of them use connection oriented communication, so the bind() isn't needed.</description>
      <pubDate>Tue, 15 Nov 2005 04:11:06 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/which-the-source-address-in-case-of-sg/m-p/3670878#M554766</guid>
      <dc:creator>Enrico Venturi</dc:creator>
      <dc:date>2005-11-15T04:11:06Z</dc:date>
    </item>
    <item>
      <title>Re: which the source address in case of SG?</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/which-the-source-address-in-case-of-sg/m-p/3670879#M554767</link>
      <description>True, bind isn't required for applications calling connect(), but it is recommended in order to have control over what IP address is used as the source for outbound connection requests. This is documented in the Managing Serviceguard manual under Designing Applications to Run on Multiple Systems ----&amp;gt; Bind to Relocatable Address / Calling bind() before connect(). See:&lt;BR /&gt;&lt;BR /&gt;&lt;A href="http://docs.hp.com/en/B3936-90079/apcs03.html#d0e21794" target="_blank"&gt;http://docs.hp.com/en/B3936-90079/apcs03.html#d0e21794&lt;/A&gt; &lt;BR /&gt;&lt;BR /&gt;There are some unsupported tricks in route configuration to cope with this. For example, if the applications connects to hosts on a remote subnet, and the router leading to that subnet supports proxy arp, then a route can be added in the user defined commands section of the package script, as :&lt;BR /&gt;&lt;BR /&gt;route add net &lt;REMOTE subnet=""&gt; &lt;PACKAGE ip=""&gt; 0&lt;BR /&gt;&lt;BR /&gt;This will cause connections about from this node to go out with the package IP as the source. the route should be deleted when the package is brought down, also in the user defined commands section of the package script. &lt;BR /&gt;&lt;BR /&gt;One of the problems with this routing trickery is that now ALL connections outbound to that remote subnet use the package IP, whether part of the package or not. Also, there is no way to use this trick for more than one package, unless the remote users for different pacakages are all on different remote subnets. &lt;BR /&gt;&lt;BR /&gt;Best to bind in the application if possible. &lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/PACKAGE&gt;&lt;/REMOTE&gt;</description>
      <pubDate>Tue, 15 Nov 2005 07:59:15 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/which-the-source-address-in-case-of-sg/m-p/3670879#M554767</guid>
      <dc:creator>Jim Keeble</dc:creator>
      <dc:date>2005-11-15T07:59:15Z</dc:date>
    </item>
  </channel>
</rss>

