From: jamal <hadi@cyberus.ca>
To: Henrik Nordstrom <hno@marasystems.com>
Cc: Martin Mares <mj@ucw.cz>, Zdenek Radouch <zdenek@rcn.com>,
Steve Iribarne <steve.iribarne@dilithiumnetworks.com>,
Eran Mann <emann@mrv.com>, Thomas Graf <tgraf@suug.ch>,
Andi Kleen <ak@muc.de>,
netdev@oss.sgi.com, linux-net@vger.kernel.org
Subject: Re: Do you know the TCP stack? (127.x.x.x routing)
Date: 09 Mar 2005 07:39:22 -0500 [thread overview]
Message-ID: <1110371962.1088.90.camel@jzny.localdomain> (raw)
In-Reply-To: <Pine.LNX.4.61.0503090009120.6780@filer.marasystems.com>
Zdenek - This includes a response to your email as well.
On Wed, 2005-03-09 at 04:09, Henrik Nordstrom wrote:
> On Tue, 8 Mar 2005, jamal wrote:
>
> > Henrik, so what is the difference between this and using any random
> > block of addresses?;-> If the packets never leave the box i can use
> > IBM's block of addresses if i wanted - no need to sweat this far (with
> > hacking the kernel).
>
> Not if you want to maintain sane routing tables within the box and still
> be able for IBM to connect the box to their network. Some components of
> the box will need to sit both in the external and internal environments.
>
For the record i have built or helped build many many such boxes...
I am afraid this 127.x panacea is begining to sound like the tale of
some insane emperor who was naked but people around him sucking up to
him telling him how fine his clothes looked. I am having a very hard
time seeing the rationale - infact its driving me nuts, so please bear
with me.
Lets list the options and assume there are two sets of addresses those
for inside the chasis and those for outside:
1) Addresses for intra-chasis communication.
The addresses used by the blades are intrachasis relevant only and the
packets never leave the box. The blades are interconnected via some
L2/VLAN/bridge within the chasis.
Conclusion:
If these packets never leave the box - no ARP will ever see them and no
dynamic routing protocol will ever advertise them - therefore no IP
address collision. You can use _whatever_ address you want, private
public, IBMs, intels etc. Do we agree on this? In other words hack not
needed here.
2) The addresses for chasis-outside world communication. You have one or
more dedicated gateways to connect between the outside of the chasis to
inside.
There are many tricks you could use to somehow get the packets to/from
the internal blades: NAT, forward, have aliases inside the chasis which
get forwarded etc. Lets not discuss about how the the packets finaly
make it outside, rather just assume these packets make it outside the
chasis then lets explore using either 127.x or RFC1918 addresses.
a) using private addresses implies possibility of conflict of addresses
within customer's network. To quote Zdenek:
You couldn't walk in the NOC and tell them: "You can't use the 10.x
net to manage your equipment - my box is already using that net".
Conclusion:
You walk into the NOC and say "can i use 10.0.0.x/22 subnet" they say "no
thats going to collide use 10.0.0.0/28"
Summary: You may need to go to your box and reconfigure its external looking
addresses.
a') Using 127.x addresses. You -> NOC "can i use 127.0.0.x/22 subnet"
they say either "sorry, our routers cant route 127.x" or "no Zdenek
was here before you, thats going to collide use 127.0.0.0/28"
Same conclusion as 2a)
Do you see the problem? I dont see the difference between 2a) and 2a')
I also dont see the reason you need 127.x for 1) since you could have
used any address for the intra-chasis (I have seen people use many differrent
addresses).
So tell me what i am missing!
cheers,
jamal
next prev parent reply other threads:[~2005-03-09 12:39 UTC|newest]
Thread overview: 52+ messages / expand[flat|nested] mbox.gz Atom feed top
2005-03-06 2:20 Do you know the TCP stack? (127.x.x.x routing) Zdenek Radouch
2005-03-06 9:56 ` Martin Mares
2005-03-06 17:01 ` Zdenek Radouch
2005-03-06 17:12 ` alex
2005-03-06 17:31 ` Thomas Graf
2005-03-06 19:48 ` Zdenek Radouch
2005-03-06 20:19 ` alex
2005-03-06 20:19 ` Andi Kleen
2005-03-06 20:45 ` Thomas Graf
2005-03-06 21:30 ` Andi Kleen
2005-03-06 21:50 ` Thomas Graf
2005-03-06 21:50 ` Zdenek Radouch
2005-03-07 7:01 ` Sumit Pandya
2005-03-07 8:05 ` Eran Mann
2005-03-07 12:14 ` jamal
2005-03-07 23:50 ` jamal
2005-03-08 3:15 ` Zdenek Radouch
2005-03-08 13:34 ` jamal
2005-03-08 13:51 ` Martin Mares
2005-03-08 13:58 ` jamal
2005-03-08 14:03 ` Martin Mares
2005-03-08 14:17 ` jamal
2005-03-08 14:20 ` Martin Mares
2005-03-08 18:40 ` Henrik Nordstrom
2005-03-08 21:17 ` jamal
2005-03-09 9:09 ` Henrik Nordstrom
2005-03-09 12:39 ` jamal [this message]
2005-03-09 13:39 ` Zdenek Radouch
2005-03-09 14:18 ` jamal
2005-03-09 16:46 ` Jason Lunz
2005-03-10 10:10 ` Henrik Nordstrom
2005-03-09 17:52 ` Matt Mackall
2005-03-10 6:57 ` Catalin(ux aka Dino) BOIE
2005-03-09 22:34 ` Henrik Nordstrom
2005-03-10 1:47 ` Jamie Lokier
2005-03-08 18:34 ` Henrik Nordstrom
2005-03-09 5:33 ` Zdenek Radouch
2005-03-08 14:02 ` Thomas Graf
-- strict thread matches above, loose matches on Subject: below --
2005-03-08 15:07 Steve Iribarne
2005-03-09 15:01 Steve Iribarne
2005-03-09 16:00 ` jamal
2005-03-10 6:48 ` Catalin(ux aka Dino) BOIE
2005-03-09 17:33 Steve Iribarne
2005-03-09 19:40 ` jamal
2005-03-09 21:57 Steve Iribarne
2005-03-10 0:11 ` jamal
2005-03-09 23:51 Boian Bonev
2005-03-10 0:23 ` Jason Lunz
2005-03-10 14:35 Steve Iribarne
2005-03-10 14:49 ` Dmitry Torokhov
2005-03-10 15:04 Steve Iribarne
2005-03-10 15:25 ` Catalin(ux aka Dino) BOIE
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=1110371962.1088.90.camel@jzny.localdomain \
--to=hadi@cyberus.ca \
--cc=ak@muc.de \
--cc=emann@mrv.com \
--cc=hno@marasystems.com \
--cc=linux-net@vger.kernel.org \
--cc=mj@ucw.cz \
--cc=netdev@oss.sgi.com \
--cc=steve.iribarne@dilithiumnetworks.com \
--cc=tgraf@suug.ch \
--cc=zdenek@rcn.com \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox