Question

Configure SLP Properly for Server to Server name resolution across WAN

Asked by: DSPoole

Title says it all - I've got SLP working per LAN segment where the workstations can resolve SLP to their local servers, but I need servers in different LAN segments to be able to resolve across the WAN.

Right now, SERVER1 in Seattle can't resolve the address of SERVER2 in Sacramento and vice-versa.

SLP has always been dubious for me and I've installed SLP with NetWare 6.5 as it's default installation.

What I need to know how to do now is reconfig SLP for server to server resolution across the WAN.

This Question has been solved and asker verified All Experts Exchange premium technology solutions are available to subscription members.

Subscribe now for full access to Experts Exchange and get

Instant Access to this Solution

  • Plus...
  • 30 Day FREE access, no risk, no obligation
  • Collaborate with the world's top tech experts
  • Unlimited access to our exclusive solution database
  • Never be left without tech help again

Subscribe Now

Asked On
2005-01-20 at 11:27:25ID21282343
Tags

slp

,

netware

Topic

Novell Netware Network Software

Participating Experts
1
Points
500
Comments
23

Trusted by hundreds of thousands everyday for fast, accurate and reliable tech support.

  • "The time we save is the biggest benefit of Experts Exchange to Warner Bros. What could take multiple guys 2 hours or more each to find is accessed in around 15 minutes on Experts Exchange." Mike Kapnisakis, Warner Bros.
  • "Our team likes having a resource that is more secure than just using Google and most experts using this service really know their stuff. It's nice to look here first versus using Google." Dayna Sellner, Lockheed Martin
  • "Anytime that I've been stumped with a problem, 9 out of 10 times Experts Exchange has either the accepted solution or an open discussion of the potential solution to the problem." Kenny Red, eBay Inc.

See what Experts Exchange can do for you.

Got a question?

We've got the answer.

Experts Exchange has been collecting answers to technology questions since 1996…3 million and counting! If you have a question, chances are we already have your answer.

Screenshot of Experts Exchange Knowledgebase

Need individual assistance?

Our experts are ready to help.

If you can't find the exact answer you're looking for, ask our exclusive community of 50,000 experts. You’ll get a personalized answer from a trusted professional.

Screenshot of Experts Exchange Knowledgebase

Want to learn from the best?

Read articles from industry experts.

Thousands of free tech tips, tricks, how-to’s and tutorials are available in our peer reviewed articles section. See for yourself how smart our experts are, no login required.

Screenshot of an Article

Working on a long term project?

Store your work and research.

Save solutions to your questions, answers you’ve discovered through searching plus helpful articles in your personal knowledgebase for easy future access.

Screenshot of Experts Exchange Knowledgebase

Access the answers to your technology questions today.

Subscribe Now

30-day free trial. Register in 60 seconds.

What Makes Experts Exchange Unique?

Members of the expert community talk about why the experience at Experts Exchange is different than what you will find anywhere else.

Trusted by the world's most respected brands.

image of each brand's logo

Faithfully serving IT professionals since 1996.

Experts Exchange Logo

Try it out and discover for yourself.

Subscribe Now

30-day free trial. Register in 60 seconds.

Related Solutions

  1. Late SLP DA state change
    My Netware Client on Win2K machine is 4.90.0.0 SP1a and "Use DHCP for SLP" option is set. The problem is, my Scope settings are not reflected on the clients even though they get Option 78 (SLP DA) addresses right away. Actually, I had the same problem when I w...
  2. netware 6.5 client comes up tree or server not, no slp …
    netware 6.5 client comes up tree or server not, no slp on network, network team shut off multicasting, looking for a work around
  3. SLP SETUP Confirmation
    A couple of months ago I started the process of connecting two Netware 6.5 networks (different trees-9 miles apart) together with a wireless radio connection (10mb plus). At that time, I had posted a thread asking for suggestions. After configuring SLP on both networks and...
  4. Netware 5 SLP/OES
    Hello. A few questions for the Netware experts; please excuse my fragmented thoughts :) I've inherited an old Netware 5.x box. Very likely to be upgraded in the immediate future and I was wondering what everyone's thoughts were on OES Netware 6.5 or SLES 9 (sp2)? I've tri...

Free Tech Articles

  1. WARNING: 5 Reasons why you should NEVER fix a computer for free.
    It is in our nature to love the puzzle. We are obsessed. The lot of us. We love puzzles. We love the challenge. We thrive on finding the answer. We hate disarray. It bothers us deep in our soul. W...
  2. SCCM OSD Basic troubleshooting
    SCCM 2007 OSD is a fantastic way to deploy operating systems, however, like most things SCCM issues can sometimes be difficult to resolve due to the sheer volume of logs to sift through and the dispe...
  3. Migrate Small Business Server 2003 to Exchange 2010 and Windows 2008 R2
    This guide is intended to provide step by step instructions on how to migrate from Small Business Server 2003 to Windows 2008 R2 with Exchange 2010. For this migration to work you will need the fo...
  4. Create a Win7 Gadget
    This article shows you how to create a simple "Gadget" -- a sort of mini-application supported by Windows 7 and Vista. Gadgets can be dropped anywhere on the desktop to provide instant information, ...
  5. Outlook continually prompting for username and password
    There have been a lot of questions recently regarding Outlook prompting for a username and password whilst using Exchange 2007. There are a few reasons why this would happen and I will try to cover t...
  6. Backup Exchange 2010 Information Store using Windows Backup
    There seems to be quite a lot of confusion around the ability to backup Exchange 2010 using the built in Windows Backup feature. This stems from the omission of this feature prior to Exchange 2007 s...

Cloud Class Webinars

  1. Avoiding Bugs in Microsoft Access
    Alison Balter takes and in-depth look at avoiding bugs in Access. In this webinar you will learn about using the immediate window to debug your applications, invoking the debugger, using breakpoints to troubleshoot, stepping through code, setting the next statement to execute, ...
  2. Top 10 Best New Features in Visio 2010
    Scott Helmers gives live demonstrations of the top 10 new features in Visio 2010. This webinar will teach you how to create compelling diagrams by adding shapes to the page with a single click, linking the shapes in a diagram to data in Excel (or SQL Server, or SharePoint), ...
  3. IT Consultant Business Secrets Revealed
    Michael Munger, Experts Exchange tech pro and IT consultant, pulls back the curtain on his very successful businesses and answers question on every IT consultant and business owner should know about. He shares secrets on what he did to solve the 5 most common problems in IT, ...
  4. Disaster Recovery and Business Continuity
    Quest CTO, Mike Billon, gives an overview of the steps involved in building a dunamic disaster recovery plan. Through case studies and an examination of software/hardware tooles for monitoring and testing, you'll gain a better understandin of where you are, where you want ...
  5. Organize Your Visio Diagrams with Containers and Lists
    Scott Helmers uses cross functional flowcharts, wireframe diagrams, data graphic legends and seating charts to teach you: how to ustilize all three new structured diagram components in Visio 2010, the best practices for organizeing shapes in previous version of Visio, how to organize ...
  6. How to Us Objects, Properties, Events and Methods in Microsoft Access
    Alison Dalter gives an in-depbth look at objects, properties, events and methods in Microsoft Access. In this webinar you will learn about using the object browser, referring to objects, working with properties and methods, working with object variables, understanding the ...

Join the Community

Give a Little. Get a Lot.

Join the community of experts here and help other tech pros by answering question in your area of expertise. You can earn FREE access to all Experts Exchange's premium features and resources.

Join the Community

Answers

 

by: ShineOnPosted on 2005-01-20 at 11:50:57ID: 13096731

Do you want to keep folx from each site from seeing the services available at the other site, and only want to do the server-to-server stuff to make sure your replicas stay in sync, or are you using the recommended single-scope model and your servers just don't see each other despite having the same scope?  Do you have a DA on both ends?

If it's the latter, then do you have firewalls in-between?  If yes to the firewall thing, make sure there are filter exceptions in place for SLP as well as NCP, DNS, etc.

If you aren't firewalling, just routing between the sites, make sure there is a static route to each site's SLP DA from the other site's SLP DA.  That way, the SLP traffic won't get blocked by the router quite so easily.

If you have a Seattle scope and a Sacramento scope, do you have the Seattle DA's IP in the SLP.CFG of the Sacramento DA server and vice-versa?

 

by: DSPoolePosted on 2005-01-20 at 13:53:41ID: 13097964

okay - each site has it's own scope.  No, I haven't touched the SLP.CFG.  Don't care about the users seeing services across the WAN because some of them roam.  They can resolve via NDS anyways.  There is a firewall but it's not filtering private stuff (only DMZ and Public).

Each office has at least one server.  That server (at least one) has a DA.  The DA's are default installs from NetWare 6.5 - I believe they are scoped.

My problem is this:

unless I use the IP address of the Primary Time Server (x.x.x.x:123) the servers cannot resolve.  They don't see the server names (I get the 11001 error about unable to resolve).

In addition, I just tried to do something in which a POA had to access the file system of another server in another segment.  I discovered thru trial and error the POA couldn't resolve the shortname of the server (because all I can do is enter it in a UNC format) and thus the POA couldn't access the server (8912 error I think) to get to the file system.

Since this is not a problem with servers still running IPX/SAP I realized that my IP/SLP configuration is not addressing the issue of being able to resolve server names across the WAN.  Which also explains the 11001 errors I get in DSREPAIR when I do a Full Repair (in which the servers can't resolve names there either).

So basically, I need to reconfig SLP so the servers see each other.  I'm not too thrilled about having to modify an SLP.CFG file - that sounds so LMHOSTS too me ;)

I am assuming there is a way to do it via NDS/eDir without doing file modifications.

 

by: ShineOnPosted on 2005-01-20 at 14:31:24ID: 13098371

Kinda like that "metadirectory" discussion we had about not leveraging NDS to solve the DNS issue with Zen 6.5.  Ya'd THINK they'd use the directory ;)

The directory holds the discovered services, but I don't see anywhere in the server object's config for any SLP settings.  Which does make SOME sense, since you can't do other "pure IP" server configuration in eDirectory - things like default gateway, routing, resolver config, IP address binds to the NICs, and so on.  If you do have to modify SLP.CFG, it should only have to be done on the DA servers.

Is each location's scope in the other location's scope list on the DA servers?   If not, maybe as a test you could add Seattle's scope to Syracuse's scope list and vice versa...  I don't know if that'll make a difference, and if it doesn't, try the SLP.CFG.  If it works with SLP.CFG, then make a "common" SLP.CFG containing all the DA servers and push it out with ZFS...

 

by: ShineOnPosted on 2005-01-20 at 14:34:04ID: 13098394

(I'm just assuming you're in Syracuse, of course. You might want to use Sacramento instead...)

 

by: DSPoolePosted on 2005-01-20 at 15:20:18ID: 13098795

"Is each location's scope in the other location's scope list on the DA servers?"

No.

"If not, maybe as a test you could add Seattle's scope to Syracuse's scope list and vice versa..."

Okay - how do I add the scope of Seattle to Sacramento (or Syracuse in your case) and vice versa

btw:  Happy Inauguration Day!

 

by: ShineOnPosted on 2005-01-20 at 15:22:54ID: 13098814

I don't know if you'd want to totally redesign your SLP configuration, but another possible way around it is to have a single, global SLP scope, which is the Novell-recommended way.  I'm thinking Novell recommends that because it would let all of the servers in the scope know where all the other servers in the scope are, through eDirectory.   There's a TID somewhere that I remember reading when I was doing this a year or 2 ago.  I think this might be it: http://support.novell.com/cgi-bin/search/searchtid.cgi?/10062474.htm

Do a KB search for "SLP design."  Maybe something more suited to your situation will catch your eye.

 

by: ShineOnPosted on 2005-01-20 at 15:26:25ID: 13098839

In monitor, server parameters, service location protocol, slp scope list.  You can put more than one scope there.

 

by: DSPoolePosted on 2005-01-20 at 15:42:37ID: 13098955

"In monitor, server parameters, service location protocol, slp scope list.  You can put more than one scope there."

.default.slpdefault.sacramento.acme

?

"but another possible way around it is to have a single, global SLP scope, which is the Novell-recommended way."

Finding info on it...

that TID looks good!

 

by: ShineOnPosted on 2005-01-20 at 16:11:53ID: 13099127

?

comma-delimited list.  

If your scope for sacramento is what you listed, assuming it's the same naming for Seattle's scope object, then the scope list would be:

.default.slpdefault.sacramento.acme,.default.slpdefault.seattle.acme

Mine is just the common name, but that doesn't mean the scopes can't be full context, I 'spose.

 

by: DSPoolePosted on 2005-01-20 at 16:22:57ID: 13099180

how do you have the common names in place?  If ALL the common names are the same (as configured by default by NetWare installation) then how could it tell one scope from another without the full context?

 

by: ShineOnPosted on 2005-01-21 at 03:08:17ID: 13101664

I actually created scopes and gave them their names...

 

by: DSPoolePosted on 2005-01-21 at 08:03:21ID: 13103721

ok - I am going to work on that - the global scope (once I figure how in the heck to do that) and then will post results once I have an answer.  If I vape on this question for a week or so, don't freak - just very busy.

 

by: ShineOnPosted on 2005-01-21 at 08:21:17ID: 13103927

NP.  

I've got lotsa stuff going now, too..  Testing OES beta on SLES9.  Fixing our private DNS (previous admin had multiple authoritative primary SOA's - 2 on NT4 and one on NetWare. Leaving NT DNS for zone on Exchange alone for now, but NT DNS for zone on NT4 PDC also is primary SOA for other zones in the corp so I can't just blow it away - the "gotcha" to straightening it out is that NT4 DNS won't take zone xfers from BIND 9.x servers.  Big srprise there, hey?), Worrying about the push to migrate to "ADS" (which isn't even installed yet - just more vaporware... "if we had ADS we could do x."), and how to "executive summarize" reasons not to....

Has your org experimented with OES on SLES yet?  I could use some insights... 'specially on Linux user mgmt support for non-NDS-aware stuff. (will post a separate Q of course.)

 

by: DSPoolePosted on 2005-01-21 at 08:44:06ID: 13104184

haven't touched OES yet - not too impressed with it - it's just NetWare 6.5SP3 and/or SLES 9.1

I'll wait until:

1)  it's out of beta
2)  it's in production for 3 months
3)  the first Support Pack is released

Then I'll consider it.

The thing about bleeding edge technology is finding out you are a hemopheliac

 

by: ShineOnPosted on 2005-01-21 at 09:47:28ID: 13104914

Wee..ee..elll... it's not "just" SLES 9.1, from what I've seen so far. "Just" SLES 9.1 doesn't host NSS volumes, or act as an NCP server, to name just a couple...

I don't care much about the enhancements to NW6.5, like the BASH shell, for instance, but the enhancements to Linux have definite promise, especially in an environment that uses Linux/Unix to run core business systems like ERP.

 

by: DSPoolePosted on 2005-01-21 at 10:17:24ID: 13105222

""Just" SLES 9.1 doesn't host NSS volumes, or act as an NCP server, to name just a couple... "


it does with Nterprise Linux Services

http://www.novell.com/linux/nterprise_linux_services.html

and look - you don't need SuSE SLES 9.x to run it...

http://www.novell.com/products/linuxservices/sysreqs.html

 

by: ShineOnPosted on 2005-01-21 at 10:41:59ID: 13105450

Sorry, dude, but NSS wasn't part of Nterprise Linux Services.  It's new with OES.  
Acting as an NCP server wasn't part of it either - you couldn't map drives from a Novell client to a Linux box with Nterprise Linux Services.  You can with OES.


The only "file services" Nterprise Linux Services provides is iFolder.

 

by: DSPoolePosted on 2005-01-21 at 10:47:01ID: 13105502

my bad.

BrainShare 2005 is budgeted.

 

by: ShineOnPosted on 2005-01-21 at 11:03:47ID: 13105672

It's supposed to be for me, too, but that is now in question, because they're buying a big punch-press, dammit!

 

by: DSPoolePosted on 2005-01-27 at 09:53:31ID: 13154976

here's what I did:

1)  I have a DA running on a server that holds the master replica's of all my partitions - don't freak, it's a backup server that doesn't do anything until the backups launch at night when everyone is gone - so basically it's running around doing nothing most of the time except eDir sync.

2) I modified the SLP.CFG on the backup server to reflect it's IP address:
    DA IPV4, 10.100.140.7

3)  Then I ran SLP RESET from Server Parameters > Service Location Protocol

4)  I have multiple DA's in my tree, every partition that contains a server, at least ONE of those servers has a DA

5)  For servers that have their own DA, I added their IP address to their SLP.CFG along with the IP address of the backup server:
    DA IPV4, 10.100.xxx.7
    DA IPV4, 10.100.140.7

So, no server has more than two DA entries in the SLP.CFG file

6)  Then I did the SLP RESET

7)  For servers that don't have a DA, I simply modified their SLP.CFG file and added the backup server IP address as in Step 2) above

8)  did the SLP RESET on that server

9)  I ended up rebooting the backup server to get the SCOPE modifications I made in Monitor to kick in (I think I don't need those now)

10)  ran a DSREPAIR > Advanced Options > Servers known to this database > Repair All Server's Address

In which all the 11001 errors disappeared except on ONE server - it's a NetWare 4.2 box running IPX and IP.  However, since it only does NCP over IPX, I am not too worried.

11)  Changed the TIMESYNC Time Sources from the IP address of my Primary Time Server to it's NCP name and did a TIMESYNC Restart Flag - TIMESYNC now resolves the name/service properly instead of the 11001 error I used to get.

So, I'm happy...


 

by: DSPoolePosted on 2005-01-27 at 09:55:23ID: 13154997

however, after doing a DISPLAY SLP SERVICES at the console, I may go back into the SLP.CFG files and set up some sort of service filtering...

but I am still happy!

 

by: ShineOnPosted on 2005-01-27 at 09:58:17ID: 13155028

Groovy.  Glad it's workin'.

 

by: ShineOnPosted on 2005-01-27 at 10:12:05ID: 13155150

Dave, if you have a sec, can you look at my Q: http://www.experts-exchange.com/Networking/Netware/Q_21289604.html

20120131-EE-VQP-002

3 Ways to Join

30-Day Free Trial

The Experts

98% positive feedback on 31,087 answers since March 2000. angeliii is a Microsoft Most Valuable Professional for his work with MS SQL Server & Develoment.

He has also proven his knowledge of Visual Basic Programming, PHP Scripting and Oracle Databases.

The Experts

97% positive feedback on 10,752 answers since July 2000. lrmoore has more than 18 years experience in the networking industry.

The six-time Mircosoft MVPs specialties include firewalls, virtual private networking, and network management.

Testimonials

"...and excellent source for support... Kind of like having your very own IT dept." Electriciansnet

Testimonials

"I was apprehensive at signing up at first. However... it has already made my life as an IT administrator much easier." JaCrews

Testimonials

"WOW! You guys have great, active, and knowledgeable people on here." moore50

Business Clients

Business Clients

In the Press

"If you’ve got a question... Experts Exchange can supply an answer.”

In the Press

"...an invaluable aid for both IT professionals and those who require tech support."

In the Press

"where IT professionals provide quick answers on just about any topic"

Business Account Plans

Loading Advertisement...