Veritas-bu

[Veritas-bu] Using Veritas Netbackup over a firewall

2001-05-22 08:21:03
Subject: [Veritas-bu] Using Veritas Netbackup over a firewall
From: noel AT conxion DOT net (Carawan-Hubin, Noel)
Date: Tue, 22 May 2001 05:21:03 -0700
Netbackup uses the 4-5 dedicated 137.. ports.

In addition, it uses 512 to 1024 for port allocation and window
accessibility.

In addition, it uses 1025 to 5000 either dynamically or incrementally, based
on a setting in your master servers bp.conf  or lack thereof.  These ports
are for the communication interchange.

There is a "beta" doc on the port usage available from your rep at Veritas.

-Noel

-----Original Message-----
From: Miriam Ben-Haim [mailto:miriam AT techunix.technion.ac DOT il]
Sent: Tuesday, May 22, 2001 5:14 AM
To: Christian.Schwarz AT viaginterkom DOT de
Cc: veritas-bu AT mailman.eng.auburn DOT edu
Subject: Re: [Veritas-bu] Using Veritas Netbackup over a firewall


On Tue, 22 May 2001 Christian.Schwarz AT viaginterkom DOT de wrote:

>Hi all,
>
>I am using Veritas Netbackup 3.2 over a firewall.
>I let open the portrange 13700 - 13800 on the firewall for Netbackup.
>
>As I can see with the snoop command (I do not have access to the firewall)
>that on the client and the backupserver Netbackup is not using only the
ports
>13782 etc.
>
>It is also using Ports like 1014, 1015, 1022 etc.
>
>How can I configure these Ports?
>What ports is netbackup using by default? (1011 - 1022)?
>Is there some configuration I can do?
>
>
>Cheers
>Christian
>
>Christian Schwarz
>Interkom Online AG, Technology
>christian.schwarz AT viaginterkom DOT de
>_______________________________________________
>Veritas-bu maillist  -  Veritas-bu AT mailman.eng.auburn DOT edu
>http://mailman.eng.auburn.edu/mailman/listinfo/veritas-bu

We also have firewall, and the backups stopeed working when the firewall
team blocked the 'ping' ability between the machines.

Apparently NBU doesn't only check 13782 but first tries ping in both
directions, which we didn't find documented. When ping was allowed - the
backups worked again.

Our firewall person said that low ports like 1014 etc are opened
dynamically by the clients, are accepted as such by the firewall, and
do not need to be configured.



        Miriam


~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 Miriam Ben-Haim                 E-mail: miriam AT technion.ac DOT il 
 Unix Systems                    Phone : +972-4-8292177         
 Taub Computer Center            Fax   : +972-4-8236212          
 Technion - Israel Institute of Technology, Haifa 32000, ISRAEL  
                                                                         
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

_______________________________________________
Veritas-bu maillist  -  Veritas-bu AT mailman.eng.auburn DOT edu
http://mailman.eng.auburn.edu/mailman/listinfo/veritas-bu

<Prev in Thread] Current Thread [Next in Thread>