[OpenAFS] AFS & Firewalls

Michael Aldrich maldrich@reserveamerica.com
Fri, 27 Dec 2002 09:49:33 -0500


Hi all,
Please tell me if this does not make sense and I will try to clarify:
Primary and backup AFS servers housed in a DMZ.
I have created a second DMZ environment, hoping to add a third AFS server=
=2E I=20
am trying to configure it as a client first.
In my CellServDB file on the new client machine, I have two translated IP=
=20
address for the established servers. I can ping, ssh, etc. to these IP=20
addresses. I also have a translation to the new client from the existing=20
servers.=20
My problem is, when I try to start the client on the new machine, I get t=
he=20
'Cannot mount /afs' error. Tailing /var/log/messages, I see the actual IP=
s of=20
the existing servers instead of the translated ones. Does the AFS server =
send=20
back a response that includes its' IP address according to the network=20
interfaces? Is there a way around this?
I tried /usr/afs/local/NetInfo with no luck. All servers and clients are=20
running OpenAFS 1.2.7 & RedHat 7.3.
TIA
Mike