Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations strongm on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

AIX Routing problem

Status
Not open for further replies.

rneve

MIS
Oct 11, 2002
51
EU
I have got a routing problem withing the AIX system. On the NIC I have defined two IP-address. One dedicated and a alias. Both IP-adresses are in the same subnet.

Routing tables
Destination Gateway Flags Refs Use If PMTU Exp Groups

en0: flags=7e080863,40<UP,BROADCAST,NOTRAILERS,RUNNING,SIMPLEX,MULTICAST,GROUPRT,64BIT,CHECKSUM_OFFLOAD,CHECKSUM_SUPPORT,PSEG>
inet 10.32.14.102 netmask 0xffffff00 broadcast 10.32.14.255
inet 10.32.14.105 netmask 0xffffff00 broadcast 10.32.14.255
tcp_sendspace 131072 tcp_recvspace 65536


When I start a sessons from the AIX to another system de IP-address 10.32.14.102 will be used. But for a specific server (10.122.163.18) I want to do this from 10.32.14.105.

How can I do this???

I thought to add an static route for this specifix server. My routing table looks something like this.

Routing tables
Destination Gateway Flags Refs Use If PMTU Exp Groups

Route tree for Protocol Family 2 (Internet):
default 10.32.14.1 UGc 0 0 en0 - -
10.32.14/24 10.32.14.102 U 14 75366 en0 - - =>
10.122.163.18 10.32.14.105 UHA 0 2218 en0 - -

I see that packages are sent via this route. But I do not get an connection...

Please advice.

RN




 
Can you reach the host 10.122.163.18 without this route?

Can you traceroute to 10.122.163.18? paste output please

HTH,

p5wizard
 
Traceroute with static route:
#traceroute 10.122.163.18
trying to get source for 10.122.163.18
source should be 10.32.14.105
traceroute to 10.122.163.18 (10.122.163.18) from 10.32.14.105 (10.32.14.105), 30 hops max
outgoing MTU = 1500
1 * * *
2 * * *

Traceroute without static route:
#traceroute 10.122.163.18
trying to get source for 10.122.163.18
source should be 10.32.14.102
traceroute to 10.122.163.18 (10.122.163.18) from 10.32.14.102 (10.32.14.102), 30 hops max
outgoing MTU = 1500
1 ccaz-ra2159.xxx.com (10.32.14.3) 1 ms 0 ms 0 ms
2 ccaz-ra2100.xxx.com (10.124.223.81) 0 ms 0 ms 0 ms
3 ccaz-rn2010.xxx.com (10.119.173.4) 1 ms 1 ms 1 ms
4 ccaz-rn2140.xxx.com (10.122.20.132) 1 ms 1 ms 1 ms
Blocked by firewall.
 
I can't reach it because it is blocked by the firewall.. The firewall will ony let 10.32.14.105 pass and not 10.32.14.102.

But as you can see with the traceroute I get on to the network. When I add the static route I'm not getting on the network but stay in the aix box.
 
Check your static route setup with a local destination, without a firewall being in the way. Your route seems correctly set up, as seen by the choice of source address in both traceroute outputs.

So your problem is not in the AIX box. I believe you have a problem with allowed/denied traffic in your router/firewall.

I also think you can't pass 10-addresses out of a firewall and onto the internet (private network only). Or perhaps you have set up a VPN on your router/firewall?

HTH,

p5wizard
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top