[Last Call] Learn how to a build a cloud-first strategyRegister Now

x
  • Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 518
  • Last Modified:

Intermittent Problem....Default Gateway??

Running HPUX 11
I will try and explain this incredibly odd problem like this..........say you set up a ping OUTSIDE of you network (ie after firewall) and it works fine, but then it stops(after about 2 minutes) the only way to get it to work again(besides rebooting) is to go into the SAM -> Networking and Communications -> Hosts -> Actions -> Configure DF Gateway And hit Ok. And magically the ping continue's. At first i thought dup IP but its not. Oh yeah and for the really weird part when you cant ping outside you can still ping everything inside the firewall. Its a checkpoint firewall and it DOES NOT show anything getting dropped in my "Blackout" period, and it does show my packets getting out when it works. Please if you have any idea's im tapped iv tried everything.
0
ziggy_9mm
Asked:
ziggy_9mm
  • 5
  • 3
  • 2
  • +2
1 Solution
 
gheistCommented:
probably your default router (checkpoint) should respond to pings and allow nameserver access
0
 
tfewsterCommented:
Presumably the default route you are setting is via the firewall/gateway - And HP-UX is dropping that every couple of minutes.

What does netstat -r show as the default gateway before and after the failures?

I suspect that GateD is running, which will override the default you've set up unless it's specifically configured in gated.conf; GateD relies on routers advertising what routes they can reach - Which the firewall probably doesn't do
0
 
neteducationCommented:
I agree with tfewster that it must have something to do with routing protocols. The time it takes until it stops (2 minutes) sounds a little like a RIP thing. maybe some other device (not the firewall) is doing rip-announcements that are taken up by your hpux.

To solve, I'd disable gated if it's running (you most probably dont need it anyway) or configure it correctly (/etc/gated.conf)
0
Concerto Cloud for Software Providers & ISVs

Can Concerto Cloud Services help you focus on evolving your application offerings, while delivering the best cloud experience to your customers? From DevOps to revenue models and customer support, the answer is yes!

Learn how Concerto can help you.

 
ziggy_9mmAuthor Commented:
netstat -r shows
default            10.210.86.2           UG          0        lan0           0

which the IP adx is correct.

and /ect/gated.conf shows just
rip yes;

How do you disable gated? Sorry im a WIN2K guy. Thanks for the help.

0
 
gheistCommented:
rip no;

if not obvious  ...
0
 
ziggy_9mmAuthor Commented:
Yeah Gee thanks you must be an expert. But anyway I tried rip no; and I tried adding this to gated.conf

static {
           default gateway 10.210.86.2 retain ;
};

then i stopped and started it, same thing. Any other ideas?
0
 
gheistCommented:
probably /etc/rc.config.d/netconf can be edited to not start gated
0
 
neteducationCommented:
another thing to try....

can you make a

traceroute www.google.com

when it is not working, and post the output here ?

0
 
tfewsterCommented:
I reckon that http:#13964032 , http:#13972561 and http:#13975847 identified the problem and gave a solution (unless ziggy_9mm actually needs gated running?)
0
 
ziggy_9mmAuthor Commented:
I fixed it, what I did was I pointed the server straight at my cisco cataylst and made the switch act as a default gateway for the server, not sure why it worked but it did. Thanks for the idea's I tried them all but no joy.
0
 
gheistCommented:
Dear Ziggy - this basically means that you put up incomplete picture in question.
0
 
gheistCommented:
fine by me
0
 
moduloCommented:
PAQed with points refunded (250)

modulo
Community Support Moderator
0

Featured Post

Vote for the Most Valuable Expert

It’s time to recognize experts that go above and beyond with helpful solutions and engagement on site. Choose from the top experts in the Hall of Fame or on the right rail of your favorite topic page. Look for the blue “Nominate” button on their profile to vote.

  • 5
  • 3
  • 2
  • +2
Tackle projects and never again get stuck behind a technical roadblock.
Join Now