Solved

Query on clustering and IP addresses

Posted on 2009-04-09
7
342 Views
Last Modified: 2012-05-06
Hi Forum,

I have installed a Windows 2008 2-node cluster for SMTP purposes.

Node1: 192.168.1.1
Node2: 192.168.1.2
Cluster1: 192.168.1.3

Cluster1 is the clustered address/hostname. All three are registered in DNS.

Applications on our network will be configured to use an SMTP server of: Cluster1 (or 192.168.1.3 if we need to specify an IP).

We have some ports of the network that are not accessible due a firewall being placed between that subnet and the rest. So, for example, Server1 in a restricted subnet needs to send SMTP mail. We'll need to open port 25, but to what destination, 192.168.1.1 and 192.168.1.2, or those AND 192.168.1.3, or just 192.168.1.3 only?

Thanks in advance.
0
Comment
Question by:kam_uk
  • 4
  • 2
7 Comments
 
LVL 6

Expert Comment

by:page1985
ID: 24110142
You should be able to open the firewall to point to the cluster address only being as the nodes in the cluster will listen on the cluster IP for all clustered traffic.
0
 
LVL 7

Expert Comment

by:dolomiti
ID: 24110193
hi,
I believe you need another name/address: the application one

node1, points to node1
node2, points to node3
cluster is just to manage it from you
Application1   192.168.1.4

Now you have to use cluster: build a resource group as Fileserver, SMTP, SQL server,...
and depending of type, give networkname,ipadress,resourcedisk,...
and inform users, firewall, dns, ecc about Application1 and/or  192.168.1.4

Then will be a problem of MSCS to run Applicatio01 on node1 or 2.

bye
vic
0
 
LVL 6

Expert Comment

by:page1985
ID: 24110219
This is true.  I was assuming you had already clustered the application and the IP was the application's cluster IP.
0
Netscaler Common Configuration How To guides

If you use NetScaler you will want to see these guides. The NetScaler How To Guides show administrators how to get NetScaler up and configured by providing instructions for common scenarios and some not so common ones.

 
LVL 3

Author Comment

by:kam_uk
ID: 24114388
Sorry guys - I should have mentioned, this is Windows 2008 NLB clustering I am using, not the hardware type clustering where you have resource groups, networkname etc
0
 
LVL 6

Accepted Solution

by:
page1985 earned 500 total points
ID: 24142180
The cluster address should still receive the traffic because if you send traffic to the node addresses one of two (or both) things will happen:
1) Only the node will receive the traffic
2) Neither node will receive the traffic because it's a Unicast cluster and the node addresses are management only.
0
 
LVL 3

Author Comment

by:kam_uk
ID: 24171187
Yep it's set up as a Unicast cluster.

So the only IP I need to open up on my firewall is the cluster address? Just to confirm :)
0
 
LVL 6

Expert Comment

by:page1985
ID: 24246918
Correct.  Only open the cluster address.
0

Featured Post

Does Powershell have you tied up in knots?

Managing Active Directory does not always have to be complicated.  If you are spending more time trying instead of doing, then it's time to look at something else. For nearly 20 years, AD admins around the world have used one tool for day-to-day AD management: Hyena. Discover why

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
How to resolve user quota error? 13 65
Dns issues 4 35
Unable to add new user to AD 2 22
Need Script to resolve IPs to Public DNS Names 5 22
Network ports are the threads that hold network communication together. They are an essential part of networking that can be easily ignore or misunderstood, my goals is to show those who don't have a strong network foundation how network ports opera…
Resolve DNS query failed errors for Exchange
This tutorial will walk an individual through locating and launching the BEUtility application and how to execute it on the appropriate database. Log onto the server running the Backup Exec database. In a larger environment, this would generally be …
This tutorial will show how to configure a new Backup Exec 2012 server and move an existing database to that server with the use of the BEUtility. Install Backup Exec 2012 on the new server and apply all of the latest hotfixes and service packs. The…

786 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question