ADSM-L

Re: Firewall Issues:

2004-08-26 12:30:32
Subject: Re: Firewall Issues:
From: Marc Levitan <marc.levitan AT PFPC DOT COM>
To: ADSM-L AT VM.MARIST DOT EDU
Date: Thu, 26 Aug 2004 12:29:58 -0400
The issue was that I was using:

 "managedservices schedule webclient" in the dsm.sys
AND
 dsmsched in the startup script!!!

Once I removed the dsmsched from the startup script and bounced the client,
everything worked...


Thanks,
Marc Levitan
Storage Management
PFPC Global Funds Services


|---------+--------------------------->
|         |           "Prather, Wanda"|
|         |           <Wanda.Prather@j|
|         |           huapl.edu>      |
|         |                           |
|         |           08/26/2004 11:21|
|         |           AM              |
|         |                           |
|---------+--------------------------->
  
>-----------------------------------------------------------------------------------------------------------------------------|
  |                                                                             
                                                |
  |        To:      "'ADSM: Dist Stor Manager'" <ADSM-L AT VM.MARIST DOT EDU>   
                                                       |
  |        cc:      "'marc.levitan AT PFPC DOT COM'" <marc.levitan AT PFPC DOT 
COM>                                                           |
  |        Subject: RE: Firewall Issues:                                        
                                                |
  
>-----------------------------------------------------------------------------------------------------------------------------|



I've got Windows clients running through a firewall at 5.2.0.2 and 5.2.2.5,
no issues.
Polling mode works fine, and the only port you need open for the scheduler
to work is 1500.

However, I'm not using managed services (dsmcad), just the regular old
scheduler.
I'm not sure what the effect is of using dsmcad.

It's interesting though, that in your dsmerror.log, the client RECOGNIZED
that you were trying to get a connection from the server; that means
something got THROUGH the firewall to your client, yes?  Being able to back
up via the GUI also means you're getting through the firewall.

What I would try next is to simplify the interaction by dropping "managed
services", and just using the standard scheduler, and see if you get
different results.

Wanda Prather
"I/O, I/O, It's all about I/O"  -(me)



-----Original Message-----
From: ADSM: Dist Stor Manager [mailto:ADSM-L AT VM.MARIST DOT EDU] On Behalf Of
Marc Levitan
Sent: Tuesday, August 24, 2004 11:17 PM
To: ADSM-L AT VM.MARIST DOT EDU
Subject: Firewall Issues:


I am having an issue trying to backup a client through a firewall.
I can run a manual backup from the client but cannot get the scheduled
backup to work.
I changed to Polling mode and opened firewall ports 1500 and 1581 between
server and client.

Server:  TSM 5.2.2.4 on AIX 5.1
Client: TSM 5.2.2.0 on Solaris 5.8

<<dsm.sys on client:>>
SErvername XXXXXX
ERRORLOGNAME "/var/tivoli/dsmerror.log"
NODENAME YYYYYYY
SCHEDLOGNAME "/var/tivoli/dsmsched.log"
   COMMmethod            TCPip
   TCPPort            1500
   TCPServeraddress   XXXXXXX
PASSWORDACCESS GENERATE
schedlogretention 5 d
errorlogretention 5 d
schedmode          polling
queryschedperiod   1
managedservices    schedule webclient

<<dsmerror.log>>
Error -50 accepting inbound connection
TCP/IP received rc 4 trying to accept connection from server

Has anyone been in this situation???

Thanks,
Marc Levitan
Storage Management
PFPC Global Funds Services



-----------------------------------------
The contents of this email are the property of PNC. If it was not addressed
to you, you have no legal right to read it. If you think you received it in
error, please notify the sender. Do not forward or copy without permission
of the sender.






-----------------------------------------
The contents of this email are the property of PNC. If it was not addressed to 
you, you have no legal right to read it. If you think you received it in error, 
please notify the sender. Do not forward or copy without permission of the 
sender.

<Prev in Thread] Current Thread [Next in Thread>