Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations SkipVought on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Use a specific route address 1

Status
Not open for further replies.

wachuna

Technical User
Mar 10, 2004
14
0
0
US
We have a 280R Solaris9 running Apache that extracts Oracle data from V880, for extra security, we want to put the 280R in a Cisco DMZ.

For this to work our network person asked that we changed the IP of the 280R to 10.6.1.4 and tell it to use gateway of 10.6.1.1 Address to V880 has been mapped on the DMZ. Once setup, this server will be moved to 10.6 port on the switch. I've tried using defaultrouter file, route add command, and gateways, none worked.

When using defaultrouter the netstat -rn command shows:
Routing Table: IPv4
Destination Gateway Flags Ref Use Interface
-------------------- -------------------- ----- ----- ------ ---------
default 10.6.1.1 u 1 3
10.0.0.0 10.6.1.4 U 1 3 eri0
224.0.0.0 10.6.1.4 U 1 0 eri0
127.0.0.1 127.0.0.1 UH 2 6 lo0
Why is the Interface column for default blank?

Using the "route add net 10.6.0.0 10.6.1.1" command
Routing Table: IPv4
Destination Gateway Flags Ref Use Interface
-------------------- -------------------- ----- ----- ------ ---------
10.6.0.0 10.6.1.1 u 1 3
10.0.0.0 10.6.1.4 U 1 3 eri0
224.0.0.0 10.6.1.4 U 1 0 eri0
127.0.0.1 127.0.0.1 UH 2 6 lo0
Why is the Interface column for 10.6.0.0 blank?


I think what I'm trying to achive is:
Routing Table: IPv4
Destination Gateway Flags Ref Use Interface
-------------------- -------------------- ----- ----- ------ ---------
default 10.6.1.1 u 1 3 eri0
224.0.0.0 10.6.1.1 U 1 0 eri0
127.0.0.1 127.0.0.1 UH 2 6 lo0

How do I set the server to route using only the DMZ router (10.6.1.1)?
 
Looks like your eri0 is running with a class A netmask 255.0.0.0 and you should have class B 255.255.0.0. Ask your network guys.
Only local networks show the interface in the last column.
 
Thanks huebs, changing the netmasks to class B allows the 280R to communicate in the DMZ like we wanted.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top