Huawei OceanStor 2000 V3 Series Features Manual page 73

Hypermetro feature guide for block
Hide thumbs Also See for OceanStor 2000 V3 Series:
Table of Contents

Advertisement

OceanStor V3 Series
HyperMetro Feature Guide for Block
3.
4.
Issue 05 (2018-01-30)
RX bytes:2916916679 (2781.7 Mb)
eth2
Link encap:Ethernet
inet addr: 192.168.7.31
inet6 addr: fe80::a00:27ff:fe2e:fba7/64 Scope:Link
UP BROADCAST RUNNING MULTICAST
RX packets:43285954 errors:0 dropped:5051127 overruns:0 frame:0
TX packets:5819 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:1000
RX bytes:2916916679 (2781.7 Mb)
Configure a port ID for the firewall of the quorum server.
Enter the CLI of the quorum server, go to any directory, run the vi /etc/sysconfig/
iptables command in any directory to open the firewall configuration file and add the
port ID to 30002.
NOTE
If you want to enable other ports for the firewall, add the port IDs to the -I INPUT –p XXX –-
dport=XXX –j ACCEPT configuration item. For example, -I INPUT -p tcp --dport=22 -j
ACCEPT.
XXX@Linux:~# vi /etc/sysconfig/iptables
*filter
:INPUT ACCEPT [0:0]
:FORWARD ACCEPT [0:0]
:OUTPUT ACCEPT [0:0]
-I INPUT -p tcp --dport=30002 -j ACCEPT
COMMIT
NOTE
If /etc/sysconfig/iptables does not exist or is empty, write all the preceding content into the
configuration file.
If /etc/sysconfig/iptables has content, add -I INPUT –p tcp –-dport=30002 –j ACCEPT at the
beginning of COMMIT.
If you want to enable other ports for the firewall, add the port IDs to the -I INPUT –p XXX –-
dport=XXX –j ACCEPT configuration item. For example, if you want to enable port 22, type -I
INPUT –p tcp –-dport=22 –j ACCEPT.
If a virtual machine (VM) is used to deploy the arbitration software, enable the firewall port of the
physical machine where the VM is deployed.
Check whether the firewall configuration of the quorum server takes effect.
Enter the CLI of the quorum server, go to any directory, run the service iptables restart
command in any directory to restart the firewall. Then run the iptables -L command to
check whether the firewall configuration takes effect. If the ACCEPT tcp -- anywhere
anywhere tcp dpt:pago-services2 information is displayed in the command output, the
firewall configuration takes effect.
XXX@Linux:~# iptables -L
ACCEPT
tcp
--
anywhere
Huawei Proprietary and Confidential
Copyright © Huawei Technologies Co., Ltd.
TX bytes:720809 (703.9 Kb)
HWaddr 08:00:27:45:7A:EB
Bcast:192.168.255.255
MTU:1500
TX bytes:720809 (703.9 Kb)
.
.
.
.
.
.
anywhere
tcp dpt:pago-services2
.
.
.
.
.
.
4 Configuration
Mask:255.255.255.0
Metric:1
65

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents