Re: Create z/VM Layer 2 VLAN / VSwitch
Stefan, you have connected your NIC device to a z/VM virtual LAN. Virt. LAN has no VLAN support nor can it connect to an OSA Adapter. Only the z/VM VSWITCH has both Layer 2 and VLAN support. So if you want to connect to a externel switch via a OSA adapter using VLAN tagging you must use a VSWITCH. I don't know what are the requierments you have, but keep in mind VLAN is IP where Layer 2 is Ethernet. Mit freundlichen Grüßen / Kind regards Joerg Haertel FTSS zSeries, z/VM, z/VSE, Linux on z, Virtualization, Performance IBM Sales Distribution, STG Sales STG Technical Sales Enterprise Systems FSS Phone: +49-89 4504-3240 IBM Deutschland Home: +49 89 1222 9775 Hollerithstr. 1 Mobile: +49-171 30 59 653 81829 München E-Mail: haer...@de.ibm.com Germany IBM Deutschland GmbH / Vorsitzender des Aufsichtsrats: Martin Jetter Geschäftsführung: Martina Koederitz (Vorsitzende), Reinhard Reschke, Dieter Scholz, Michael Diemer, Gregor Pillen Sitz der Gesellschaft: Ehningen / Registergericht: Amtsgericht Stuttgart, HRB 14562 / WEEE-Reg.-Nr. DE 99369940 a virtuelimage/gif
Re: Create z/VM Layer 2 VLAN / VSwitch
Hello Joerg, thanks for the answer. Yes, the NIC is connected to the LAN, the LAN is connected via VSWITCH to the OSA. We also changed from layer 2 to layer 3 (IP), but still no connection to the outside world. i am able to ping another linux within the same vlan. this is how it looks like, but with only one of the two linux started. q lan details LAN SYSTEM VMT1LN01 Type: QDIOConnected: 1Maxconn: INFINITE PERSISTENT UNRESTRICTED IPAccounting: OFF IPTimeout: 5 Isolation Status: OFF Adapter Connections: Adapter Owner: LXDBST22 NIC: 9000.P00 Name: 0 RX Packets: 0 Discarded: 0 Errors: 0 TX Packets: 0 Discarded: 29 Errors: 0 RX Bytes: 0TX Bytes: 0 Device: 9002 Unit: 002 Role: DATA vPort: 0068 Index: 0068 Options: Broadcast Multicast IPv6 IPv4 VLAN Unicast IP Addresses: 172.25.3.101 MAC: 02-FF-FF-E3-22-00 FE80::2FF:FF00:1E3:2200 MAC: 02-FF-FF-E3-22-00 Multicast IP Addresses: 224.0.0.1MAC: 01-00-5E-00-00-01 FF02::1 MAC: 33-33-00-00-00-01 FF02::1:FFE3:2200MAC: 33-33-FF-E3-22-00 VSWITCH SYSTEM VMT1VSW0 Type: VSWITCH Connected: 0Maxconn: INFINITE PERSISTENT RESTRICTEDETHERNET Accounting: OFF VLAN Aware Default VLAN: 0485Default Porttype: Access GVRP: Enabled Native VLAN: 0001VLAN Counters: OFF MAC address: 02-FF-FF-00-00-01 State: Ready IPTimeout: 5 QueueStorage: 8 Isolation Status: OFF RDEV: E606.P00 VDEV: E606 Controller: DTCVSW2 RDEV: E706.P00 VDEV: E706 Controller: DTCVSW1 BACKUP it almost looks the same as an existing lan we have in a different z/MV, except that one is VLAN 0001 ans a name is shown on the Adapter Owner. q lan details LAN SYSTEM VMP3LN01 Type: QDIOConnected: 6Maxconn: INFINITE PERSISTENT UNRESTRICTED IPAccounting: OFF IPTimeout: 5 Isolation Status: OFF Adapter Connections: Adapter Owner: LXDBSP50 NIC: 9000.P00 Name: DGE900 RX Packets: 6 Discarded: 0 Errors: 0 TX Packets: 6 Discarded: 8 Errors: 0 RX Bytes: 1656 TX Bytes: 1656 Device: 9002 Unit: 002 Role: DATA vPort: 0072 Index: 0072 Options: Broadcast Multicast IPv6 IPv4 VLAN Unicast IP Addresses: 192.168.138.40 MAC: 02-FF-FF-00-00-03 Multicast IP Addresses: 224.0.0.1MAC: 01-00-5E-00-00-01 224.0.0.251 MAC: 01-00-5E-00-00-FB 224.0.1.22 MAC: 01-00-5E-00-01-16 239.255.255.253 MAC: 01-00-5E-7F-FF-FD VSWITCH SYSTEM VMP3VSW0 Type: VSWITCH Connected: 0Maxconn: INFINITE PERSISTENT RESTRICTEDETHERNET Accounting: OFF VLAN Aware Default VLAN: 0001Default Porttype: Access GVRP: Enabled Native VLAN: 0001VLAN Counters: OFF MAC address: 02-FF-FF-00-00-01 State: Ready IPTimeout: 5 QueueStorage: 8 Isolation Status: OFF RDEV: E210.P00 VDEV: E210 Controller: DTCVSW1 RDEV: EA10.P00 VDEV: EA10 Controller: DTCVSW2 BACKUP still scratching my head .. i run out of ideas what to change or what to try. Regards, Stefan Joerg Haertel haer...@de.ibm.com Sent by: The IBM z/VM Operating System IBMVM@LISTSERV.UARK.EDU 23.05.2011 12:52 Please respond to The IBM z/VM Operating System IBMVM@LISTSERV.UARK.EDU To IBMVM@LISTSERV.UARK.EDU cc Subject Re: Create z/VM Layer 2 VLAN / VSwitch Stefan, you have connected your NIC device to a z/VM virtual LAN. Virt. LAN has no VLAN support nor can it connect to an OSA Adapter. Only the z/VM VSWITCH has both Layer 2 and VLAN support. So if you want to connect to a externel switch via a OSA adapter using VLAN tagging you must use a VSWITCH. I don't know what are the requierments you have, but keep in mind VLAN is IP where Layer 2 is Ethernet. Mit freundlichen Grüßen / Kind regards Joerg Haertel FTSS zSeries, z/VM, z/VSE, Linux on z, Virtualization, Performance IBM Sales Distribution, STG Sales STG Technical Sales Enterprise Systems FSS Phone: +49-89 4504-3240 IBM Deutschland Home: +49 89 1222 9775 Hollerithstr. 1 Mobile: +49-171 30 59 653 81829 München E-Mail: haer...@de.ibm.com Germany IBM Deutschland GmbH / Vorsitzender des Aufsichtsrats: Martin Jetter Geschäftsführung: Martina Koederitz (Vorsitzende), Reinhard Reschke, Dieter Scholz, Michael Diemer, Gregor Pillen Sitz der Gesellschaft: Ehningen / Registergericht: Amtsgericht Stuttgart, HRB 14562 / WEEE-Reg.-Nr. DE 99369940 a virtuel - Deutsche Börse AG
Re: Create z/VM Layer 2 VLAN / VSwitch
Why are you issuing the DEFINE LAN command? You don't need it. Your NICDEF should be connected to VMT1VSW0 not VMT1LN01. This is why you can't connect anywhere.If you use DEFINE LAN, you're just building an internal to z/VM only lan. You don't need this unless you're doing guest to guest communications. From: Stefan Raabe stefan.ra...@deutsche-boerse.com To: IBMVM@LISTSERV.UARK.EDU Date: 05/23/2011 05:38 AM Subject:Create z/VM Layer 2 VLAN / VSwitch Sent by:The IBM z/VM Operating System IBMVM@LISTSERV.UARK.EDU Hi, i am not a networking expert, but need to build a layer 2 vlan in z/VM 5.4. Linux is Suse SLES 11 SP1. I was told to use layer 2 for VLAN 485 so i used these commands to create vswitch / vlan DEFINE VSWITCH VMT1VSW0 RDEV E606 E706 CONTROLLER * ETHERNET VLAN 485 native 485 DEFINE LAN VMT1LN01 OWNERID SYSTEM TYPE QDIO ETHERNET MAXCONN INFINITE UNRESTRICTED ACCOUNTING OFF the Linux guest nic is defined in the directory NICDEF 9000 TYPE QDIO DEVICES 3 LAN SYSTEM VMT1LN01 MACID E32200 So after defining / starting everything my system looks like this: q vmlan VMLAN maintenance level: Latest Service: VM64604 VMLAN MAC address assignment: MACADDR Prefix: 02 MACIDRANGE SYSTEM: 01-FF USER: 00-00 VMLAN default accounting status: SYSTEM Accounting: OFF USER Accounting: OFF VMLAN general activity: PERSISTENT Limit: INFINITE Current: 2 TRANSIENT Limit: INFINITE Current: 0 Ready; T=0.01/0.01 11:27:19 q vswitch details VSWITCH SYSTEM VMT1VSW0 Type: VSWITCH Connected: 0Maxconn: INFINITE PERSISTENT RESTRICTEDETHERNET Accounting: OFF VLAN Aware Default VLAN: 0485Default Porttype: Access GVRP: Enabled Native VLAN: 0485VLAN Counters: OFF MAC address: 02-FF-FF-00-00-01 State: Ready IPTimeout: 5 QueueStorage: 8 Isolation Status: OFF RDEV: E606.P00 VDEV: E606 Controller: DTCVSW2 VSWITCH Connection: RX Packets: 0 Discarded: 0 Errors: 0 TX Packets: 0 Discarded: 0 Errors: 0 RX Bytes: 0TX Bytes: 0 Device: E606 Unit: 000 Role: DATA vPort: 0001 Index: 0001 RDEV: E706.P00 VDEV: E706 Controller: DTCVSW1 BACKUP Ready; T=0.01/0.01 11:28:10 q lan details LAN SYSTEM VMT1LN01 Type: QDIOConnected: 1Maxconn: INFINITE PERSISTENT UNRESTRICTED ETHERNET Accounting: OFF IPTimeout: 5 Isolation Status: OFF Adapter Connections: Adapter Owner: LXDBST22 NIC: 9000.P00 Name: 0 RX Packets: 0 Discarded: 0 Errors: 0 TX Packets: 0 Discarded: 81 Errors: 0 RX Bytes: 0TX Bytes: 0 Device: 9002 Unit: 002 Role: DATA vPort: 0065 Index: 0065 Options: Ethernet Broadcast Unicast MAC Addresses: 02-FF-FF-E3-22-00 Multicast MAC Addresses: 01-00-5E-00-00-01 33-33-00-00-00-01 33-33-FF-E3-22-00 VSWITCH SYSTEM VMT1VSW0 Type: VSWITCH Connected: 0Maxconn: INFINITE PERSISTENT RESTRICTEDETHERNET Accounting: OFF VLAN Aware Default VLAN: 0485Default Porttype: Access GVRP: Enabled Native VLAN: 0485VLAN Counters: OFF MAC address: 02-FF-FF-00-00-01 State: Ready IPTimeout: 5 QueueStorage: 8 Isolation Status: OFF RDEV: E606.P00 VDEV: E606 Controller: DTCVSW2 RDEV: E706.P00 VDEV: E706 Controller: DTCVSW1 BACKUP i also performed the proper RACF definitions for vlan 0485 (UACC(UPDATE)) + refresh nic defined in the linux guest using yast with proper ip address. but i can not get any ping to work from / to the linux system. i know this is also related to the routes which are not changed at the moment, but i should be able to see a ping comming in using tcpdump, or not ?!? any hint what is wrong in my configuraiton?!? Regards, Stefan - Deutsche Börse AG Chairman of the Supervisory Board/ Vorsitzender des Aufsichtsrats: Dr. Manfred Gentz Executive Board/Vorstand: Reto Francioni (Chief Executive Officer/Vorsitzender), Andreas Preuss (Deputy Chief Executive Officer/ stellv. Vorsitzender), Frank Gerstenschläger, Michael Kuhn, Gregor Pottmeyer, Jeffrey Tessler. Aktiengesellschaft with registered seat in/mit Sitz in Frankfurt am Main. Commercial register/Handelsregister: Local court/Amtsgericht Frankfurt am Main HRB 32232.
Re: Create z/VM Layer 2 VLAN / VSwitch
Is the native VLAN of the switch really 485? When the guest VLAN is the same as the specified native VLAN, the frame is sent untagged. That will cause the switch to apply the port default VLAN, which is the native VLAN unless it has been overridden. In most cases, the native VLAN is 1. Regards, Alan Altmark IBM Lab Services - Sent from my BlackBerry Handheld. - Original Message - From: Stefan Raabe [stefan.ra...@deutsche-boerse.com] Sent: 05/23/2011 11:39 AM ZE2 To: IBMVM@LISTSERV.UARK.EDU Subject: [IBMVM] Create z/VM Layer 2 VLAN / VSwitch Hi, i am not a networking expert, but need to build a layer 2 vlan in z/VM 5.4. Linux is Suse SLES 11 SP1. I was told to use layer 2 for VLAN 485 so i used these commands to create vswitch / vlan DEFINE VSWITCH VMT1VSW0 RDEV E606 E706 CONTROLLER * ETHERNET VLAN 485 native 485 DEFINE LAN VMT1LN01 OWNERID SYSTEM TYPE QDIO ETHERNET MAXCONN INFINITE UNRESTRICTED ACCOUNTING OFF the Linux guest nic is defined in the directory NICDEF 9000 TYPE QDIO DEVICES 3 LAN SYSTEM VMT1LN01 MACID E32200 So after defining / starting everything my system looks like this: q vmlan VMLAN maintenance level: Latest Service: VM64604 VMLAN MAC address assignment: MACADDR Prefix: 02 MACIDRANGE SYSTEM: 01-FF USER: 00-00 VMLAN default accounting status: SYSTEM Accounting: OFF USER Accounting: OFF VMLAN general activity: PERSISTENT Limit: INFINITE Current: 2 TRANSIENT Limit: INFINITE Current: 0 Ready; T=0.01/0.01 11:27:19 q vswitch details VSWITCH SYSTEM VMT1VSW0 Type: VSWITCH Connected: 0Maxconn: INFINITE PERSISTENT RESTRICTEDETHERNET Accounting: OFF VLAN Aware Default VLAN: 0485Default Porttype: Access GVRP: Enabled Native VLAN: 0485VLAN Counters: OFF MAC address: 02-FF-FF-00-00-01 State: Ready IPTimeout: 5 QueueStorage: 8 Isolation Status: OFF RDEV: E606.P00 VDEV: E606 Controller: DTCVSW2 VSWITCH Connection: RX Packets: 0 Discarded: 0 Errors: 0 TX Packets: 0 Discarded: 0 Errors: 0 RX Bytes: 0TX Bytes: 0 Device: E606 Unit: 000 Role: DATA vPort: 0001 Index: 0001 RDEV: E706.P00 VDEV: E706 Controller: DTCVSW1 BACKUP Ready; T=0.01/0.01 11:28:10 q lan details LAN SYSTEM VMT1LN01 Type: QDIOConnected: 1Maxconn: INFINITE PERSISTENT UNRESTRICTED ETHERNET Accounting: OFF IPTimeout: 5 Isolation Status: OFF Adapter Connections: Adapter Owner: LXDBST22 NIC: 9000.P00 Name: 0 RX Packets: 0 Discarded: 0 Errors: 0 TX Packets: 0 Discarded: 81 Errors: 0 RX Bytes: 0TX Bytes: 0 Device: 9002 Unit: 002 Role: DATA vPort: 0065 Index: 0065 Options: Ethernet Broadcast Unicast MAC Addresses: 02-FF-FF-E3-22-00 Multicast MAC Addresses: 01-00-5E-00-00-01 33-33-00-00-00-01 33-33-FF-E3-22-00 VSWITCH SYSTEM VMT1VSW0 Type: VSWITCH Connected: 0Maxconn: INFINITE PERSISTENT RESTRICTEDETHERNET Accounting: OFF VLAN Aware Default VLAN: 0485Default Porttype: Access GVRP: Enabled Native VLAN: 0485VLAN Counters: OFF MAC address: 02-FF-FF-00-00-01 State: Ready IPTimeout: 5 QueueStorage: 8 Isolation Status: OFF RDEV: E606.P00 VDEV: E606 Controller: DTCVSW2 RDEV: E706.P00 VDEV: E706 Controller: DTCVSW1 BACKUP i also performed the proper RACF definitions for vlan 0485 (UACC(UPDATE)) + refresh nic defined in the linux guest using yast with proper ip address. but i can not get any ping to work from / to the linux system. i know this is also related to the routes which are not changed at the moment, but i should be able to see a ping comming in using tcpdump, or not ?!? any hint what is wrong in my configuraiton?!? Regards, Stefan - Deutsche Börse AG Chairman of the Supervisory Board/ Vorsitzender des Aufsichtsrats: Dr. Manfred Gentz Executive Board/Vorstand: Reto Francioni (Chief Executive Officer/Vorsitzender), Andreas Preuss (Deputy Chief Executive Officer/ stellv. Vorsitzender), Frank Gerstenschläger, Michael Kuhn, Gregor Pottmeyer, Jeffrey Tessler. Aktiengesellschaft with registered seat in/mit Sitz in Frankfurt am Main. Commercial register/Handelsregister: Local court/Amtsgericht Frankfurt am Main HRB 32232. - Diese E-Mail enthaelt vertrauliche oder rechtlich geschuetzte Informationen. Wenn Sie nicht der beabsichtigte Empfaenger sind, informieren Sie bitte sofort den Absender und loeschen Sie diese E-Mail. Das unbefugte Kopieren dieser E-Mail oder die unbefugte Weitergabe der enthaltenen Informationen ist nicht gestattet. The information contained in this message is
Re: Create z/VM Layer 2 VLAN / VSwitch
Hi Stefan, you wrote the Linux guest nic is defined in the directory NICDEF 9000 TYPE QDIO DEVICES 3 LAN SYSTEM VMT1LN01 MACID E32200 So that NIC is connected to LAN VMT1LN01 not a VSWITCH od did I miss something ? What do you mean with Yes, the NIC is connected to the LAN, the LAN is connected via VSWITCH to the OSA how have you connected the virt. LAN to the VSWITCH ? VLAN 001 is the default VLAN-ID most of the real switch put all the traffic not related to a specific VLAN-ID. With other words 0001 will work as if there no VLAN-Tagging at all. Mit freundlichen Grüßen / Kind regards Joerg Haertel FTSS zSeries, z/VM, z/VSE, Linux on z, Virtualization, Performance IBM Sales Distribution, STG Sales STG Technical Sales Enterprise Systems FSS Phone: +49-89 4504-3240 IBM Deutschland Home: +49 89 1222 9775 Hollerithstr. 1 Mobile: +49-171 30 59 653 81829 München E-Mail: haer...@de.ibm.com Germany IBM Deutschland GmbH / Vorsitzender des Aufsichtsrats: Martin Jetter Geschäftsführung: Martina Koederitz (Vorsitzende), Reinhard Reschke, Dieter Scholz, Michael Diemer, Gregor Pillen Sitz der Gesellschaft: Ehningen / Registergericht: Amtsgericht Stuttgart, HRB 14562 / WEEE-Reg.-Nr. DE 99369940 image/gif
Re: Create z/VM Layer 2 VLAN / VSwitch
Hello, yes we tried that too, and now this is working. so now we use NICDEF - VSWITCH with VLAN 001 What i tried was NICDEF - LAN - VSWITCH with VLNAN 485 which did not work, even when trying with VLAN 001. Is this gerneral not possible? Is the VM LAN for internal commuication only and can not be connected via VSWITCH to the outside world?!? Regards, Stefan Karl Kingston karlkings...@ongov.net Sent by: The IBM z/VM Operating System IBMVM@LISTSERV.UARK.EDU 23.05.2011 13:36 Please respond to The IBM z/VM Operating System IBMVM@LISTSERV.UARK.EDU To IBMVM@LISTSERV.UARK.EDU cc Subject Re: Create z/VM Layer 2 VLAN / VSwitch Why are you issuing the DEFINE LAN command? You don't need it. Your NICDEF should be connected to VMT1VSW0 not VMT1LN01. This is why you can't connect anywhere.If you use DEFINE LAN, you're just building an internal to z/VM only lan. You don't need this unless you're doing guest to guest communications. From:Stefan Raabe stefan.ra...@deutsche-boerse.com To:IBMVM@LISTSERV.UARK.EDU Date:05/23/2011 05:38 AM Subject:Create z/VM Layer 2 VLAN / VSwitch Sent by:The IBM z/VM Operating System IBMVM@LISTSERV.UARK.EDU Hi, i am not a networking expert, but need to build a layer 2 vlan in z/VM 5.4. Linux is Suse SLES 11 SP1. I was told to use layer 2 for VLAN 485 so i used these commands to create vswitch / vlan DEFINE VSWITCH VMT1VSW0 RDEV E606 E706 CONTROLLER * ETHERNET VLAN 485 native 485 DEFINE LAN VMT1LN01 OWNERID SYSTEM TYPE QDIO ETHERNET MAXCONN INFINITE UNRESTRICTED ACCOUNTING OFF the Linux guest nic is defined in the directory NICDEF 9000 TYPE QDIO DEVICES 3 LAN SYSTEM VMT1LN01 MACID E32200 So after defining / starting everything my system looks like this: q vmlan VMLAN maintenance level: Latest Service: VM64604 VMLAN MAC address assignment: MACADDR Prefix: 02 MACIDRANGE SYSTEM: 01-FF USER: 00-00 VMLAN default accounting status: SYSTEM Accounting: OFF USER Accounting: OFF VMLAN general activity: PERSISTENT Limit: INFINITE Current: 2 TRANSIENT Limit: INFINITE Current: 0 Ready; T=0.01/0.01 11:27:19 q vswitch details VSWITCH SYSTEM VMT1VSW0 Type: VSWITCH Connected: 0Maxconn: INFINITE PERSISTENT RESTRICTEDETHERNET Accounting: OFF VLAN Aware Default VLAN: 0485Default Porttype: Access GVRP: Enabled Native VLAN: 0485VLAN Counters: OFF MAC address: 02-FF-FF-00-00-01 State: Ready IPTimeout: 5 QueueStorage: 8 Isolation Status: OFF RDEV: E606.P00 VDEV: E606 Controller: DTCVSW2 VSWITCH Connection: RX Packets: 0 Discarded: 0 Errors: 0 TX Packets: 0 Discarded: 0 Errors: 0 RX Bytes: 0TX Bytes: 0 Device: E606 Unit: 000 Role: DATA vPort: 0001 Index: 0001 RDEV: E706.P00 VDEV: E706 Controller: DTCVSW1 BACKUP Ready; T=0.01/0.01 11:28:10 q lan details LAN SYSTEM VMT1LN01 Type: QDIOConnected: 1Maxconn: INFINITE PERSISTENT UNRESTRICTED ETHERNET Accounting: OFF IPTimeout: 5 Isolation Status: OFF Adapter Connections: Adapter Owner: LXDBST22 NIC: 9000.P00 Name: 0 RX Packets: 0 Discarded: 0 Errors: 0 TX Packets: 0 Discarded: 81 Errors: 0 RX Bytes: 0TX Bytes: 0 Device: 9002 Unit: 002 Role: DATA vPort: 0065 Index: 0065 Options: Ethernet Broadcast Unicast MAC Addresses: 02-FF-FF-E3-22-00 Multicast MAC Addresses: 01-00-5E-00-00-01 33-33-00-00-00-01 33-33-FF-E3-22-00 VSWITCH SYSTEM VMT1VSW0 Type: VSWITCH Connected: 0Maxconn: INFINITE PERSISTENT RESTRICTEDETHERNET Accounting: OFF VLAN Aware Default VLAN: 0485Default Porttype: Access GVRP: Enabled Native VLAN: 0485VLAN Counters: OFF MAC address: 02-FF-FF-00-00-01 State: Ready IPTimeout: 5 QueueStorage: 8 Isolation Status: OFF RDEV: E606.P00 VDEV: E606 Controller: DTCVSW2 RDEV: E706.P00 VDEV: E706 Controller: DTCVSW1 BACKUP i also performed the proper RACF definitions for vlan 0485 (UACC(UPDATE)) + refresh nic defined in the linux guest using yast with proper ip address. but i can not get any ping to work from / to the linux system. i know this is also related to the routes which are not changed at the moment, but i should be able to see a ping comming in using tcpdump, or not ?!? any hint what is wrong in my
Re: Create z/VM Layer 2 VLAN / VSwitch
Hi Stefan, yes this is the case virt. LAN is only for internal use, as I stated first.. Mit freundlichen Grüßen / Kind regards Joerg Haertel FTSS zSeries, z/VM, z/VSE, Linux on z, Virtualization, Performance IBM Sales Distribution, STG Sales STG Technical Sales Enterprise Systems FSS Phone: +49-89 4504-3240 IBM Deutschland Home: +49 89 1222 9775 Hollerithstr. 1 Mobile: +49-171 30 59 653 81829 München E-Mail: haer...@de.ibm.com Germany IBM Deutschland GmbH / Vorsitzender des Aufsichtsrats: Martin Jetter Geschäftsführung: Martina Koederitz (Vorsitzende), Reinhard Reschke, Dieter Scholz, Michael Diemer, Gregor Pillen Sitz der Gesellschaft: Ehningen / Registergericht: Amtsgericht Stuttgart, HRB 14562 / WEEE-Reg.-Nr. DE 99369940 Stefan Raabe stefan.ra...@deutsche-boerse.com Sent by: The IBM z/VM Operating System IBMVM@LISTSERV.UARK.EDU 23.05.2011 14:51 Please respond to The IBM z/VM Operating System IBMVM@LISTSERV.UARK.EDU To IBMVM@LISTSERV.UARK.EDU cc Subject Re: Create z/VM Layer 2 VLAN / VSwitch Hello, yes we tried that too, and now this is working. so now we use NICDEF - VSWITCH with VLAN 001 What i tried was NICDEF - LAN - VSWITCH with VLNAN 485 which did not work, even when trying with VLAN 001. Is this gerneral not possible? Is the VM LAN for internal commuication only and can not be connected via VSWITCH to the outside world?!? Regards, Stefan Karl Kingston karlkings...@ongov.net Sent by: The IBM z/VM Operating System IBMVM@LISTSERV.UARK.EDU 23.05.2011 13:36 Please respond to The IBM z/VM Operating System IBMVM@LISTSERV.UARK.EDU To IBMVM@LISTSERV.UARK.EDU cc Subject Re: Create z/VM Layer 2 VLAN / VSwitch Why are you issuing the DEFINE LAN command? You don't need it. Your NICDEF should be connected to VMT1VSW0 not VMT1LN01. This is why you can't connect anywhere.If you use DEFINE LAN, you're just building an internal to z/VM only lan. You don't need this unless you're doing guest to guest communications. From:Stefan Raabe stefan.ra...@deutsche-boerse.com To:IBMVM@LISTSERV.UARK.EDU Date:05/23/2011 05:38 AM Subject:Create z/VM Layer 2 VLAN / VSwitch Sent by:The IBM z/VM Operating System IBMVM@LISTSERV.UARK.EDU Hi, i am not a networking expert, but need to build a layer 2 vlan in z/VM 5.4. Linux is Suse SLES 11 SP1. I was told to use layer 2 for VLAN 485 so i used these commands to create vswitch / vlan DEFINE VSWITCH VMT1VSW0 RDEV E606 E706 CONTROLLER * ETHERNET VLAN 485 native 485 DEFINE LAN VMT1LN01 OWNERID SYSTEM TYPE QDIO ETHERNET MAXCONN INFINITE UNRESTRICTED ACCOUNTING OFF the Linux guest nic is defined in the directory NICDEF 9000 TYPE QDIO DEVICES 3 LAN SYSTEM VMT1LN01 MACID E32200 So after defining / starting everything my system looks like this: q vmlan VMLAN maintenance level: Latest Service: VM64604 VMLAN MAC address assignment: MACADDR Prefix: 02 MACIDRANGE SYSTEM: 01-FF USER: 00-00 VMLAN default accounting status: SYSTEM Accounting: OFF USER Accounting: OFF VMLAN general activity: PERSISTENT Limit: INFINITE Current: 2 TRANSIENT Limit: INFINITE Current: 0 Ready; T=0.01/0.01 11:27:19 q vswitch details VSWITCH SYSTEM VMT1VSW0 Type: VSWITCH Connected: 0Maxconn: INFINITE PERSISTENT RESTRICTEDETHERNET Accounting: OFF VLAN Aware Default VLAN: 0485Default Porttype: Access GVRP: Enabled Native VLAN: 0485VLAN Counters: OFF MAC address: 02-FF-FF-00-00-01 State: Ready IPTimeout: 5 QueueStorage: 8 Isolation Status: OFF RDEV: E606.P00 VDEV: E606 Controller: DTCVSW2 VSWITCH Connection: RX Packets: 0 Discarded: 0 Errors: 0 TX Packets: 0 Discarded: 0 Errors: 0 RX Bytes: 0TX Bytes: 0 Device: E606 Unit: 000 Role: DATA vPort: 0001 Index: 0001 RDEV: E706.P00 VDEV: E706 Controller: DTCVSW1 BACKUP Ready; T=0.01/0.01 11:28:10 q lan details LAN SYSTEM VMT1LN01 Type: QDIOConnected: 1Maxconn: INFINITE PERSISTENT UNRESTRICTED ETHERNET Accounting: OFF IPTimeout: 5 Isolation Status: OFF Adapter Connections: Adapter Owner: LXDBST22 NIC: 9000.P00 Name: 0 RX Packets: 0 Discarded: 0 Errors: 0 TX Packets: 0 Discarded: 81 Errors: 0 RX Bytes: 0TX Bytes: 0 Device: 9002 Unit: 002 Role: DATA vPort: 0065 Index: 0065 Options: Ethernet Broadcast Unicast MAC Addresses: 02-FF-FF-E3-22-00 Multicast MAC Addresses: 01
Re: Create z/VM Layer 2 VLAN / VSwitch
On Monday, 05/23/2011 at 08:52 EDT, Stefan Raabe stefan.ra...@deutsche-boerse.com wrote: yes we tried that too, and now this is working. so now we use NICDEF - VSWITCH with VLAN 001 What i tried was NICDEF - LAN - VSWITCH with VLNAN 485 which did not work, even when trying with VLAN 001. Is this gerneral not possible? Is the VM LAN for internal commuication only and can not be connected via VSWITCH to the outside world?!? Please look at the diagrams in Chapter 4 of the z/VM Connectivity manual. They illustrate the difference between the Guest LAN and the Virtual Switch. Guest LANs are isolated LAN segments. Virtual Switches are bridged LAN segments. (Your problem with VLAN 1 vs. VLAN 485 is described in my previous post.) Alan Altmark z/VM and Linux on System z Consultant IBM System Lab Services and Training ibm.com/systems/services/labservices office: 607.429.3323 mobile; 607.321.7556 alan_altm...@us.ibm.com IBM Endicott