
182 MergePoint 5224/5240 Service Processor Manager Installer and Administrator Guide
Why define private subnets?
At least one private subnet must be defined on the SP manager for the following purposes:
• To define a private address for the SP manager and target devices to use when communicating.
• To enable communications between remote user’s workstations on the Internet or local user’s
on the same LAN and target devices on the private management network, via the SP manager’s
native IP access facility.
The private Ethernet ports are accessed through the priv0 interface on the SP manager, which
interacts with target devices through an internal switch.
The SP manager attempts to reach a target device that does not have a private subnet assigned by
attempting to contact it through the SP manager’s default route. Therefore, unless the administrator
defines a private subnet and assigns it to each target device, the target device cannot be reached
unless the target device is on the public side of the SP manager. In almost all cases, target devices
are on the private side of the SP manager and therefore they are unreachable without a private
subnet.
The following should be kept in mind when planning the addressing scheme:
• When the target devices’ addresses are all within the same range, only one private subnet
is required.
• The administrator should assign IP addresses to all service processors from the same block of
addresses, if possible, to make it possible to administer the IP addresses using only a single
private subnet.
• When the target devices’ addresses are already configured in multiple ranges and the addresses
cannot be changed, or when for some other reason, target devices must have addresses in
multiple address ranges, multiple private subnets must be created. (To simplify routing for
PPTP VPN connections, multiple private subnets may also require configuration of a virtual
network, as described in Why define virtual (DNAT) addresses? on page 192.)
• The priv0 interface, which is used for all the private Ethernet ports, is not assigned an IP
address unless a private subnet is configured.
The following screen example shows the default ifconfig output for priv0, which shows no
IP address.
priv0 Link encap:Ethernet HWaddr 00:60:2E:BB:AA:AA
UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1
RX packets:0 errors:0 dropped:0 overruns:0 frame:0
TX packets:0 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:100
RX bytes:0 (0.0 B) TX bytes:0 (0.0 B)
Base address:0xe000
Commenti su questo manuale