, tcp wrappers, etc. mentioned above.
Mike
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
.
Mike
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
On 10/23/06, Roshan Perera [EMAIL PROTECTED] wrote:
zonecfg:sz44bsdvapdqc02:net set address=10.165.20.35/23
That should be:
set address=10.165.20.35
You will then need an entry in the global zone's /etc/netmasks to
ensure that the netmask is set properly as the zone is booted.
Mike
--
Mike
for everyone?
Perhaps if zoneadmd is running in a debug or verbose mode (selected by
zonecfg(1M) property or /etc/default/zones?) then it could log
detailed state transition info to daemon.debug.
Mike
--
Mike Gerdts
http://mgerdts.blogspot.com
of
What if zoneadm monitor -a (all zones) had the ability to spit
syslog entries and/or SNMP traps? Perhaps if the SNMP route is taken,
a subagent to snmpd(1M) would be the right approach.
Mike
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss
been a big part of introducing the new features that come with Solaris
10.
Mike
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
forward to possibly including blastwave in standard images,
I am thinking that Chris' approach of inherit-pkg-dir of /opt/csw (and
any other kinda big directories in /opt) is the more proper way to go.
Mike
--
Mike Gerdts
http://mgerdts.blogspot.com
. That is, it adds an
attribute (or multiple) that includes the information about the
interface and removes the net resource(s). I then have an uncomment
function that reverses the work done by the comment function.
Mike
--
Mike Gerdts
http://mgerdts.blogspot.com
am looking for are available
through kstat (thank you!). Is there some more user-friendly tool
(already or coming) to use inside the zone?
Oh, and the question that everyone at work will ask when I tell them
about this - when will it find its way into Solaris? :)
Mike
--
Mike Gerdts
http
On 2/6/07, Paul Davis [EMAIL PROTECTED] wrote:
SVM with soft partitions is not an option and there will be no SAN
attached storage to mount small slices for zonepaths. Other than the
obvious issue of zones sharing a single partition (disk slice), are
there any other concerns with this
/rdsk/d$i
i=`expr $i + 1`
done
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
to other subnets.
When using the test above, be consistent in the use of hostnames or IP
addresses. That is, don't test route get with hostname but ping by
IP address. This will just compound your confusion in the event that
you have bad DNS entries.
Mike
--
Mike Gerdts
http
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
down substantially when ZFS
clones are involved, but it does provide interesting food for thought.
Mike
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
. At this point it is
UFS, not NFS and can be lofs mounted into the non-global zone.
Surely I am missing something else. What is it? Any interesting
complications with patching and/or live upgrade?
Mike
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
.
Perhaps you should be looking at either two systems or looking at an
M4000 with two domains.
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
others to benchmark
other systems would be very helpful. Perhaps in the future ISV's
would say more meaningful things like 1 - 8 threads with at least 17
ZPUs and 6 GB RAM.
Mike
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
into
problems with the system running a large number of zones.
Mike
[1] This assumes that you buy into the idea that a 4 processor system
with 8GB of RAM is modest - I may be a bit spoiled.
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss
a related physical interface. However, as soon as you try to
communicate with a non-existent IP address (UDP in my test case) you
can crash Nevada or hang the process in S10.
Mike
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones
at the unapplied patches or through a
web service that just provides the required scripts. A web service
may be a lot of work for what should be a relatively short term
problem.
Mike
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones
change log is not terribly
revealing.
Mike
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
to total outage time in my initial tests.)
Mike
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
On 6/4/07, Jeff Victor [EMAIL PROTECTED] wrote:
Wee Yeh Tan wrote:
On 6/5/07, Mike Gerdts [EMAIL PROTECTED] wrote:
With hundreds of zones in production today, it is feeling like later
is already here. Worst case patching is well over 24 hours in single
user mode. (I have developed my own
On 6/4/07, Wee Yeh Tan [EMAIL PROTECTED] wrote:
On 6/5/07, Mike Gerdts [EMAIL PROTECTED] wrote:
With hundreds of zones in production today, it is feeling like later
is already here. Worst case patching is well over 24 hours in single
user mode. (I have developed my own workarounds to make
On 6/29/07, [EMAIL PROTECTED] [EMAIL PROTECTED] wrote:
No, you can't do that except by upgrading to a later Solaris 10 release.
It seems to me that what is really needed is a fix for 4966416[1]. It
looks to me as though the current rev of the zones patch[2] has this.
Of course the dependency
terms. When I tried to use the jive interface I found it to be an
overall unrewarding experience. Of course subscribing to a bunch of
lists has its own drawbacks too.
Mike
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones
that I ran into or could see as likely failure modes when
trying to get VCS (and similar service groups in VAD) to work with
zones.
Mike
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
of trying things that aren't in the book because that's when
you tend to learn the most.
Mike
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
[EMAIL PROTECTED]
Try this:
zonecfg -z labv490-01z5 delete -F
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
that is not part of this community.
2. Or v12n-discuss to not chew up the entire subject line.
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
bits twice -- once as packages
(for regular upgrades of global-zone-only systems) and then again as a
set of patches (for Ashanti upgrades of systems with non-global
zones). It wasn't sustainable.
Is this the purpose of the UpgradePatches directory on S10 media?
--
Mike Gerdts
http
/005474.html.
The short answer is that if you don't have an IP address on that
subnet in the global zone, you will have to resort to hackery to get
the default route added in the global zone after the zone's IP address
is up.
Mike
--
Mike Gerdts
http://mgerdts.blogspot.com
what can be done to
improve it, but the wait is getting to be quite long.
Mike
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
.
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
migration and causes confusion for those that are already struggling
with zones and inherited directories.
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
.
How about a variant of:
ps -o zone,user,pid,args -u fred
This may produce ugly yet correct output (assuming that all zones use
the same name service - may break anyway if ps is too smart). You
can adjust the columns to match the -flZ output if desired.
--
Mike Gerdts
http://mgerdts.blogspot.com
by the fact that rsh
hostname really uses the rlogin protocol and rsh hostname command
uses the rsh protocol. I wish I had a dime for every time I had to
explain this to someone that was trying to get rsh or rcp to work.
--
Mike Gerdts
http://mgerdts.blogspot.com
zone.
- Patching and upgrades can be done to one or many zones at a time.
That is, we would no longer be stuck with the current method that
forces all zones on a box to be patched serially during one long
outage to all zones on that box.
--
Mike Gerdts
http://mgerdts.blogspot.com
mean that critical operations stand less of a chance of
getting messed up by the system running short of memory during
patching operations. Perhaps a ramdisk would be better suited, but I
assume that the ram part of the name implies bad things on systems
without a lot of RAM.
--
Mike Gerdts
http
patch was released), I found similar behavior when running JASS via
zlogin. When I caused JASS to dramatically reduce its output (to
almost nothing) the problem went away. I don't know if this is
related or not - lots has changed in the code since then.
--
Mike Gerdts
http://mgerdts.blogspot.com
.
Certainly there are other strategies that could be applied (move many
zones at once, use zfs send | something | zfs receive, AVS, etc.).
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
as though printers.conf could point to localhost in the
master zone and the clones would then also point to their respective
selves. Is there something broken with that approach?
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
On 10/31/07, Norm Jacobs [EMAIL PROTECTED] wrote:
Mike Gerdts wrote:
It seems as though printers.conf could point to localhost in the
master zone and the clones would then also point to their respective
selves. Is there something broken with that approach?
Not that we don't see
in how
NPIV works and would appreciate any pointers to concise info to help
bring me up to speed.
Mike
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
of
this memory.
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
for their working set will not give suitable
interactive performance (and even batch performance would be
miserable).
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
explains that that multi-platform flash was supposed to
work but cautions that there may be dragons.
http://www.opensolaris.org/jive/message.jspa?messageID=29843#30095
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss
time. I really think that update on attach would
also solve the issue at hand, now that I think about it.
http://www.opensolaris.org/os/community/arc/caselog/2007/621/
Mike
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones
draft I read of the
update on attach spec that I read did not support this. I would not
expect it to support it in the future either, as downgrade in
Solaris and pretty much every other OS has traditionally be restore.
--
Mike Gerdts
http://mgerdts.blogspot.com
for that.
For configuring IP addresses on the typical machine bolted to a rack
or sitting on a desk, /etc/netmasks is quite manageable, stable, and
desirable.
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
to people
that have a fear of it because they assume that every address
allocated will be from a dynamic address range or that anything that
plugs into the network will automatically get an IP address.
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones
forget
which Nevada build) have all the required bits in place.
http://mail.opensolaris.org/pipermail/install-discuss/2007-March/004266.html
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
take this on in the future. I've got a
couple other things I want to work on before this one, though.
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
partitions. When the time is right, new LUNs
would be allocated for ZFS and data will be migrated. Any SVM disk
sets will be destroyed in favor of using ZFS.
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss
On Fri, Feb 15, 2008 at 12:50 PM, Ben Rockwood [EMAIL PROTECTED] wrote:
Mike Gerdts wrote:
My understanding is that:
[...]
- In the next release of Solaris, zones will have to be on ZFS due to
expected changes in packaging, patching, and installation.
I am aware of no such change
, double the
number of physical networks.
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
, the
latest rev of 119254 may hit:
6668239 patchadd -M might fail after intalling 119254-49 or later
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
://mail.opensolaris.org/pipermail/zfs-discuss/2006-August/033717.html
(prstat and rcapd are much better about counting memory
now, but I would still contend that if rcapd has to do any
work it will induce poor performance across all workloads)
--
Mike Gerdts
http://mgerdts.blogspot.com
Groups/Zones between nodes.
Again with freeze/unfreeze.
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
zone:
# cd /proc
# pfiles *
Option 2: use lsof in the global zone
In my opinion, neither option is a great option.
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
be backed out.
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
the -P option makes sense.
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
them back.
zoneadm -z $zone attach -u
Since you say you require a patch, I'm guessing you are running S10.
My understanding is that update on attach will come in S10u6. If you
can hold on a few months, you will be in good shape. :/
--
Mike Gerdts
http://mgerdts.blogspot.com
= B_TRUE;
1118
My thought is that if the package name is SUNWsolnm,
infop-zpi_all_zones should be B_TRUE.
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
by rcapd. I suspect that you really want physical at 1 gig
and swap at 1224M (1G + 200M).
I really wish that swap didn't have multiple meanings.
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
-? mention zfs?
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
/*
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
18K /share
I'm done with scope creep now. :)
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
punished. There may be
circumstances where this outcome is desirable but server
virtualization using zones is likely not one of them.
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
: $ip
done
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
/globalzonename. I'll be
changing that shortly to use lofs mounts so that it automatically
handles things right with zoneadm detach + attach.
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
should not be
upgraded in the non-global zone.
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
feedback if needed when I get a chance to
test it. It is a great start and I can't wait to see it progress.
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
the impact of these taskq tasks could help
administrators understand the relative impact of things like zfs
crypto and zfs compression.
Dtrace can give the answers above but it shouldn't be that hard for
the end user.
--
Mike Gerdts
http://mgerdts.blogspot.com
:
zone.cpu-cap system 4294967295 inf deny -
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
user of JASS, this methodology is appreciated. It has
made the software continue to be quite useful long after Sun stopped
providing updates. (Any news on open sourcing it?)
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
contract decorations).
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
the implementation of some future v2p (e.g. zone to ldom
or xen) transition? Or is it believed that the typical packages that
are not appropriate for non-global zones lack configuration that would
be interesting in a p2v - v2p world?
--
Mike Gerdts
http://mgerdts.blogspot.com
in turn gets installed/attached as an
unbranded zone.
I bet I can write a script to make that look like a single command.
Then, with time Jerry will follow up with a more elegant solution than
duct-tape and chewing gum one I come up with. :)
--
Mike Gerdts
http://mgerdts.blogspot.com
/* /zones/new/root
p2v it, with sys-unconfig
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
On Fri, Dec 12, 2008 at 6:45 PM, Jerry Jelinek gerald.jeli...@sun.com wrote:
Mike Gerdts wrote:
On Mon, Dec 8, 2008 at 9:43 AM, Jerry Jelinek gerald.jeli...@sun.com
wrote:
The native brand installer will accept the following new arguments:
-a {path} - specifies a path to an archive
721 do
722 pgrep -z $ZONENAME sulogin /dev/null 21 break
723 sleep 3
724 done
725
726 if [[ $i -eq 9 ]]; then
727 verbose $e_nosmf
728 fi
Wasted final sleep. 726 should pgrep again.
--
Mike Gerdts
http
: 137137-09
That all looks OK (aside from the debatable /etc/release - it is
update not upgrade...).
Are you sure that the zone you are dealing with was attached properly?
Was it maybe attached with -F (force, ignoring broken stuff) rather
than -u (update on attach)?
--
Mike Gerdts
http
article.
http://mail.opensolaris.org/pipermail/install-discuss/2006-March/002515.html
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
.
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
...@ipkg:~# svcadm restart manifest-import
Beyond this I got into a fair amount of trial and error, specifically
related to getting AI and DHCP to work. This isn't really needed for
a generic ipkg zone, however.
--
Mike Gerdts
http://mgerdts.blogspot.com
is an
acceptable prerequisite.
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
On Tue, May 12, 2009 at 8:02 AM, Jerry Jelinek gerald.jeli...@sun.com wrote:
Mike Gerdts wrote:
Any thoughts on supporting live upgrade? That is, I would like live
upgrade within the branded zone to work as it does for a S10 global
zone. I don't care about it from the upgrade standpoint
in the make Live Upgrade work camp. If the zfs
userland components can be made to work in the solaris9 brand, there's
benefit for it as well.
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
]
---
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
.
In a business situation, there are several other use cases.
Longer term, management of zones (e.g. applying software updates)
takes extra effort. As such, I wouldn't break things up into separate
zones any more than makes sense to satisfy your needs.
--
Mike Gerdts
http://mgerdts.blogspot.com
.
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
need to be able to access tagged VLANs. I don't care
much as to whether this happens by creating vnic's in the global zone
or some other method.
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
this as software written out of spite. I like
that. :)
You might get other insights at sysadmin-discuss as well.
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
. This is
discussed in my reply to Ed's proposal to do this in May.
http://mail.opensolaris.org/pipermail/zones-discuss/2009-May/005031.html
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
the global zone.
Option 2: Create /data in z1, lofs mount to z2
z1# mkdir /data
global# zonecfg -z z2
add fs
set dir=/data
set special=/data
set type=lofs
end
exit
Reboot z2 or issue the appropriate mount command from the global zone.
--
Mike Gerdts
http://mgerdts.blogspot.com
to this was changed to cause known and is now
related to 6857294.
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
the bulk of
the workload.
I've solved this, but in code I sadly can't share. All the info
needed to recreate it is linked from:
http://www.opensolaris.org/jive/thread.jspa?threadID=82217#306092
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones
on
smf-discuss if you care about the stability of this mechanism.
--
Mike Gerdts
http://mgerdts.blogspot.com/
___
zones-discuss mailing list
zones-discuss@opensolaris.org
1 - 100 of 171 matches
Mail list logo