Re: Create z/VM Layer 2 VLAN / VSwitch

2011-05-23 Thread Joerg Haertel
Stefan,
you have connected your NIC device to a z/VM virtual LAN.
Virt. LAN has no VLAN support nor can it connect to an OSA Adapter.
Only the z/VM VSWITCH has both Layer 2 and VLAN support.
So if you want to connect to a externel switch via a OSA adapter using 
VLAN tagging you must use a VSWITCH.
I don't know what are the requierments you have, but keep in mind VLAN is 
IP where Layer 2 is Ethernet.

Mit freundlichen Grüßen / Kind regards

Joerg Haertel

FTSS zSeries, z/VM, z/VSE, Linux on z, Virtualization, Performance
IBM Sales  Distribution, STG Sales
STG Technical Sales Enterprise Systems FSS


Phone:
+49-89 4504-3240
 IBM Deutschland

Home:
+49 89 1222 9775
 Hollerithstr. 1
Mobile:
+49-171 30 59 653
 81829 München
E-Mail:
haer...@de.ibm.com
 Germany


IBM Deutschland GmbH / Vorsitzender des Aufsichtsrats: Martin Jetter
Geschäftsführung: Martina Koederitz (Vorsitzende), Reinhard Reschke, 
Dieter Scholz, Michael Diemer, Gregor Pillen
Sitz der Gesellschaft: Ehningen / Registergericht: Amtsgericht Stuttgart, 
HRB 14562 / WEEE-Reg.-Nr. DE 99369940 
a virtuelimage/gif

Re: Create z/VM Layer 2 VLAN / VSwitch

2011-05-23 Thread Stefan Raabe
Hello Joerg, 

thanks for the answer. Yes, the NIC is connected to the LAN, the LAN is 
connected via VSWITCH to the OSA. We also changed from layer 2 to layer 3 
(IP), but still no connection to the outside world.
i am able to ping another linux within the same vlan.  this is how it 
looks like, but with only one of the two linux started.

q lan details  
LAN SYSTEM VMT1LN01 Type: QDIOConnected: 1Maxconn: INFINITE   
  PERSISTENT  UNRESTRICTED  IPAccounting: OFF  
  IPTimeout: 5  
  Isolation Status: OFF  
  Adapter Connections:  
Adapter Owner: LXDBST22 NIC: 9000.P00 Name: 0  
  RX Packets: 0  Discarded: 0  Errors: 0  
  TX Packets: 0  Discarded: 29 Errors: 0  
  RX Bytes: 0TX Bytes: 0  
  Device: 9002  Unit: 002   Role: DATA   vPort: 0068  Index: 0068  
 
  Options: Broadcast Multicast IPv6 IPv4 VLAN  
Unicast IP Addresses:  
  172.25.3.101 MAC: 02-FF-FF-E3-22-00  
  FE80::2FF:FF00:1E3:2200 MAC: 02-FF-FF-E3-22-00  
Multicast IP Addresses:  
  224.0.0.1MAC: 01-00-5E-00-00-01  
  FF02::1  MAC: 33-33-00-00-00-01  
  FF02::1:FFE3:2200MAC: 33-33-FF-E3-22-00  
VSWITCH SYSTEM VMT1VSW0 Type: VSWITCH Connected: 0Maxconn: INFINITE   
  PERSISTENT  RESTRICTEDETHERNET  Accounting: OFF  
  VLAN Aware  Default VLAN: 0485Default Porttype: Access  GVRP: 
Enabled 
  Native  VLAN: 0001VLAN Counters: OFF  
  MAC address: 02-FF-FF-00-00-01  
  State: Ready  
  IPTimeout: 5 QueueStorage: 8  
  Isolation Status: OFF  
  RDEV: E606.P00 VDEV: E606 Controller: DTCVSW2  
  RDEV: E706.P00 VDEV: E706 Controller: DTCVSW1  BACKUP  


it almost looks the same as an existing lan we have in a different z/MV, 
except that one is
VLAN 0001 ans a name is shown on the Adapter Owner.

q lan details  
LAN SYSTEM VMP3LN01 Type: QDIOConnected: 6Maxconn: INFINITE   
  PERSISTENT  UNRESTRICTED  IPAccounting: OFF  
  IPTimeout: 5  
  Isolation Status: OFF  
  Adapter Connections:  
Adapter Owner: LXDBSP50 NIC: 9000.P00 Name: DGE900
 
  RX Packets: 6  Discarded: 0  Errors: 0  
  TX Packets: 6  Discarded: 8  Errors: 0  
  RX Bytes: 1656 TX Bytes: 1656  
  Device: 9002  Unit: 002   Role: DATA   vPort: 0072  Index: 0072  
 
  Options: Broadcast Multicast IPv6 IPv4 VLAN  
Unicast IP Addresses:  
  192.168.138.40   MAC: 02-FF-FF-00-00-03  
Multicast IP Addresses:  
  224.0.0.1MAC: 01-00-5E-00-00-01  
  224.0.0.251  MAC: 01-00-5E-00-00-FB  
  224.0.1.22   MAC: 01-00-5E-00-01-16  
  239.255.255.253  MAC: 01-00-5E-7F-FF-FD  
VSWITCH SYSTEM VMP3VSW0 Type: VSWITCH Connected: 0Maxconn: INFINITE   
  PERSISTENT  RESTRICTEDETHERNET  Accounting: OFF  
  VLAN Aware  Default VLAN: 0001Default Porttype: Access  GVRP: 
Enabled 
  Native  VLAN: 0001VLAN Counters: OFF  

  MAC address: 02-FF-FF-00-00-01  
  State: Ready  
  IPTimeout: 5 QueueStorage: 8  
  Isolation Status: OFF  
  RDEV: E210.P00 VDEV: E210 Controller: DTCVSW1  
  RDEV: EA10.P00 VDEV: EA10 Controller: DTCVSW2  BACKUP  


still scratching my head .. i run out of ideas what to change or what 
to try.

Regards, Stefan








Joerg Haertel haer...@de.ibm.com 
Sent by: The IBM z/VM Operating System IBMVM@LISTSERV.UARK.EDU
23.05.2011 12:52
Please respond to
The IBM z/VM Operating System IBMVM@LISTSERV.UARK.EDU


To
IBMVM@LISTSERV.UARK.EDU
cc

Subject
Re: Create z/VM Layer 2 VLAN / VSwitch








Stefan, 
you have connected your NIC device to a z/VM virtual LAN. 
Virt. LAN has no VLAN support nor can it connect to an OSA Adapter. 
Only the z/VM VSWITCH has both Layer 2 and VLAN support. 
So if you want to connect to a externel switch via a OSA adapter using 
VLAN tagging you must use a VSWITCH. 
I don't know what are the requierments you have, but keep in mind VLAN is 
IP where Layer 2 is Ethernet.

Mit freundlichen Grüßen / Kind regards 

Joerg Haertel 

FTSS zSeries, z/VM, z/VSE, Linux on z, Virtualization, Performance 
IBM Sales  Distribution, STG Sales 
STG Technical Sales Enterprise Systems FSS 


Phone: 
+49-89 4504-3240 
 IBM Deutschland 

Home: 
+49 89 1222 9775 
 Hollerithstr. 1 
Mobile: 
+49-171 30 59 653 
 81829 München 
E-Mail: 
haer...@de.ibm.com 
 Germany 


IBM Deutschland GmbH / Vorsitzender des Aufsichtsrats: Martin Jetter
Geschäftsführung: Martina Koederitz (Vorsitzende), Reinhard Reschke, 
Dieter Scholz, Michael Diemer, Gregor Pillen
Sitz der Gesellschaft: Ehningen / Registergericht: Amtsgericht Stuttgart, 
HRB 14562 / WEEE-Reg.-Nr. DE 99369940 

a virtuel




-
Deutsche Börse AG

Re: Create z/VM Layer 2 VLAN / VSwitch

2011-05-23 Thread Karl Kingston
Why are you issuing the DEFINE LAN command?  You don't need it.

Your NICDEF should be connected to VMT1VSW0 not VMT1LN01.

This is why you can't connect anywhere.If you use DEFINE LAN, you're 
just building an internal to z/VM only lan.   You don't need this unless 
you're doing guest to guest communications.




From:   Stefan Raabe stefan.ra...@deutsche-boerse.com
To: IBMVM@LISTSERV.UARK.EDU
Date:   05/23/2011 05:38 AM
Subject:Create z/VM Layer 2 VLAN / VSwitch
Sent by:The IBM z/VM Operating System IBMVM@LISTSERV.UARK.EDU




Hi, 

i am not a networking expert, but need to build a layer 2 vlan in z/VM 
5.4. Linux is Suse SLES 11 SP1. 

I was told to use layer 2 for VLAN 485 so i  used these commands to create 
vswitch / vlan 

DEFINE VSWITCH VMT1VSW0 RDEV E606 E706 CONTROLLER * ETHERNET VLAN 485 
native 485 

DEFINE LAN VMT1LN01 OWNERID SYSTEM TYPE QDIO ETHERNET MAXCONN INFINITE 
UNRESTRICTED ACCOUNTING OFF 

the Linux guest nic is defined in the directory 

NICDEF   9000 TYPE QDIO DEVICES 3 LAN SYSTEM VMT1LN01 MACID E32200 

So after defining / starting everything my system looks like this: 

q vmlan   
VMLAN maintenance level: 
  Latest Service: VM64604 
VMLAN MAC address assignment: 
  MACADDR Prefix: 02 
  MACIDRANGE SYSTEM: 01-FF 
 USER:   00-00 
VMLAN default accounting status: 
  SYSTEM Accounting: OFF   USER Accounting: OFF   
VMLAN general activity:   
  PERSISTENT Limit: INFINITE   Current: 2 
  TRANSIENT  Limit: INFINITE   Current: 0 
Ready; T=0.01/0.01 11:27:19   

q vswitch details  
VSWITCH SYSTEM VMT1VSW0 Type: VSWITCH Connected: 0Maxconn: INFINITE

  PERSISTENT  RESTRICTEDETHERNET  Accounting: OFF  

  VLAN Aware  Default VLAN: 0485Default Porttype: Access  GVRP: 
Enabled 
  Native  VLAN: 0485VLAN Counters: OFF  
  MAC address: 02-FF-FF-00-00-01  
  State: Ready  
  IPTimeout: 5 QueueStorage: 8  
  Isolation Status: OFF  
  RDEV: E606.P00 VDEV: E606 Controller: DTCVSW2  
VSWITCH Connection:  
  RX Packets: 0  Discarded: 0  Errors: 0  
  TX Packets: 0  Discarded: 0  Errors: 0  
  RX Bytes: 0TX Bytes: 0  
  Device: E606  Unit: 000   Role: DATA   vPort: 0001  Index: 0001  

  RDEV: E706.P00 VDEV: E706 Controller: DTCVSW1  BACKUP  
Ready; T=0.01/0.01 11:28:10  

q lan details  
LAN SYSTEM VMT1LN01 Type: QDIOConnected: 1Maxconn: INFINITE   
  PERSISTENT  UNRESTRICTED  ETHERNET  Accounting: OFF  
  IPTimeout: 5   
  Isolation Status: OFF  
  Adapter Connections:   
Adapter Owner: LXDBST22 NIC: 9000.P00 Name: 0  
  RX Packets: 0  Discarded: 0  Errors: 0   
  TX Packets: 0  Discarded: 81 Errors: 0   
  RX Bytes: 0TX Bytes: 0   
  Device: 9002  Unit: 002   Role: DATA   vPort: 0065  Index: 0065  
 
  Options: Ethernet Broadcast  
Unicast MAC Addresses:   
  02-FF-FF-E3-22-00  
Multicast MAC Addresses:   
  01-00-5E-00-00-01  
  33-33-00-00-00-01  
  33-33-FF-E3-22-00  
VSWITCH SYSTEM VMT1VSW0 Type: VSWITCH Connected: 0Maxconn: INFINITE   
  PERSISTENT  RESTRICTEDETHERNET  Accounting: OFF  
  VLAN Aware  Default VLAN: 0485Default Porttype: Access  GVRP: 
Enabled 
  Native  VLAN: 0485VLAN Counters: OFF   
  MAC address: 02-FF-FF-00-00-01   
  State: Ready   
  IPTimeout: 5 QueueStorage: 8   
  Isolation Status: OFF  
  RDEV: E606.P00 VDEV: E606 Controller: DTCVSW2  
  RDEV: E706.P00 VDEV: E706 Controller: DTCVSW1  BACKUP   

i also performed the proper RACF definitions for vlan 0485 (UACC(UPDATE)) 
+ refresh 

nic defined in the linux guest using yast with proper ip address. 

but i can not get any ping to work from / to the linux system. i know this 
is also related to the routes which are not changed at the moment, but i 
should be able to see a ping comming in using tcpdump, or not ?!? 

any hint what is wrong in my configuraiton?!? 

Regards, Stefan 











-
Deutsche Börse AG
Chairman of the Supervisory Board/
Vorsitzender des Aufsichtsrats:
Dr. Manfred Gentz
Executive Board/Vorstand:
Reto Francioni (Chief Executive Officer/Vorsitzender),
Andreas Preuss (Deputy Chief Executive Officer/
stellv. Vorsitzender), Frank Gerstenschläger,
Michael Kuhn, Gregor Pottmeyer, Jeffrey Tessler.
Aktiengesellschaft with registered seat in/mit Sitz in
Frankfurt am Main.
Commercial register/Handelsregister:
Local court/Amtsgericht Frankfurt am Main HRB 32232.

Re: Create z/VM Layer 2 VLAN / VSwitch

2011-05-23 Thread Alan Altmark
Is the native VLAN of the switch really 485?  When the guest VLAN is the same 
as the specified native VLAN, the frame is sent untagged.  That will cause the 
switch to apply the port default VLAN, which is the native VLAN unless it has 
been overridden.

In most cases, the native VLAN is 1.


Regards,

Alan Altmark
IBM Lab Services

-
Sent from my BlackBerry Handheld.


- Original Message -
From: Stefan Raabe [stefan.ra...@deutsche-boerse.com]
Sent: 05/23/2011 11:39 AM ZE2
To: IBMVM@LISTSERV.UARK.EDU
Subject: [IBMVM] Create z/VM Layer 2 VLAN / VSwitch



Hi,

i am not a networking expert, but need to build a layer 2 vlan in z/VM
5.4. Linux is Suse SLES 11 SP1.

I was told to use layer 2 for VLAN 485 so i  used these commands to create
vswitch / vlan

DEFINE VSWITCH VMT1VSW0 RDEV E606 E706 CONTROLLER * ETHERNET VLAN 485
native 485

DEFINE LAN VMT1LN01 OWNERID SYSTEM TYPE QDIO ETHERNET MAXCONN INFINITE
UNRESTRICTED ACCOUNTING OFF

the Linux guest nic is defined in the directory

NICDEF   9000 TYPE QDIO DEVICES 3 LAN SYSTEM VMT1LN01 MACID E32200

So after defining / starting everything my system looks like this:

q vmlan
VMLAN maintenance level:
  Latest Service: VM64604
VMLAN MAC address assignment:
  MACADDR Prefix: 02
  MACIDRANGE SYSTEM: 01-FF
 USER:   00-00
VMLAN default accounting status:
  SYSTEM Accounting: OFF   USER Accounting: OFF
VMLAN general activity:
  PERSISTENT Limit: INFINITE   Current: 2
  TRANSIENT  Limit: INFINITE   Current: 0
Ready; T=0.01/0.01 11:27:19

q vswitch details
VSWITCH SYSTEM VMT1VSW0 Type: VSWITCH Connected: 0Maxconn: INFINITE
  PERSISTENT  RESTRICTEDETHERNET  Accounting: OFF
  VLAN Aware  Default VLAN: 0485Default Porttype: Access  GVRP:
Enabled
  Native  VLAN: 0485VLAN Counters: OFF
  MAC address: 02-FF-FF-00-00-01
  State: Ready
  IPTimeout: 5 QueueStorage: 8
  Isolation Status: OFF
  RDEV: E606.P00 VDEV: E606 Controller: DTCVSW2
VSWITCH Connection:
  RX Packets: 0  Discarded: 0  Errors: 0
  TX Packets: 0  Discarded: 0  Errors: 0
  RX Bytes: 0TX Bytes: 0
  Device: E606  Unit: 000   Role: DATA   vPort: 0001  Index: 0001

  RDEV: E706.P00 VDEV: E706 Controller: DTCVSW1  BACKUP
Ready; T=0.01/0.01 11:28:10

q lan details
LAN SYSTEM VMT1LN01 Type: QDIOConnected: 1Maxconn: INFINITE
  PERSISTENT  UNRESTRICTED  ETHERNET  Accounting: OFF
  IPTimeout: 5
  Isolation Status: OFF
  Adapter Connections:
Adapter Owner: LXDBST22 NIC: 9000.P00 Name: 0
  RX Packets: 0  Discarded: 0  Errors: 0
  TX Packets: 0  Discarded: 81 Errors: 0
  RX Bytes: 0TX Bytes: 0
  Device: 9002  Unit: 002   Role: DATA   vPort: 0065  Index: 0065

  Options: Ethernet Broadcast
Unicast MAC Addresses:
  02-FF-FF-E3-22-00
Multicast MAC Addresses:
  01-00-5E-00-00-01
  33-33-00-00-00-01
  33-33-FF-E3-22-00
VSWITCH SYSTEM VMT1VSW0 Type: VSWITCH Connected: 0Maxconn: INFINITE
  PERSISTENT  RESTRICTEDETHERNET  Accounting: OFF
  VLAN Aware  Default VLAN: 0485Default Porttype: Access  GVRP:
Enabled
  Native  VLAN: 0485VLAN Counters: OFF
  MAC address: 02-FF-FF-00-00-01
  State: Ready
  IPTimeout: 5 QueueStorage: 8
  Isolation Status: OFF
  RDEV: E606.P00 VDEV: E606 Controller: DTCVSW2
  RDEV: E706.P00 VDEV: E706 Controller: DTCVSW1  BACKUP

i also performed the proper RACF definitions for vlan 0485 (UACC(UPDATE))
+ refresh

nic defined in the linux guest using yast with proper ip address.

but i can not get any ping to work from / to the linux system. i know this
is also related to the routes which are not changed at the moment, but i
should be able to see a ping comming in using tcpdump, or not ?!?

any hint what is wrong in my configuraiton?!?

Regards, Stefan












-
Deutsche Börse AG
Chairman of the Supervisory Board/
Vorsitzender des Aufsichtsrats:
Dr. Manfred Gentz
Executive Board/Vorstand:
Reto Francioni (Chief Executive Officer/Vorsitzender),
Andreas Preuss (Deputy Chief Executive Officer/
stellv. Vorsitzender), Frank Gerstenschläger,
Michael Kuhn, Gregor Pottmeyer, Jeffrey Tessler.
Aktiengesellschaft with registered seat in/mit Sitz in
Frankfurt am Main.
Commercial register/Handelsregister:
Local court/Amtsgericht Frankfurt am Main HRB 32232.
-
Diese E-Mail enthaelt vertrauliche oder rechtlich geschuetzte Informationen.
Wenn Sie nicht der beabsichtigte Empfaenger sind, informieren Sie bitte
sofort den Absender und loeschen Sie diese E-Mail. Das unbefugte Kopieren
dieser E-Mail oder die unbefugte Weitergabe der enthaltenen Informationen
ist nicht gestattet.

The information contained in this message is 

Re: Create z/VM Layer 2 VLAN / VSwitch

2011-05-23 Thread Joerg Haertel
Hi Stefan,
you wrote

the Linux guest nic is defined in the directory 

NICDEF   9000 TYPE QDIO DEVICES 3 LAN SYSTEM VMT1LN01 MACID E32200 

So that NIC is connected to LAN VMT1LN01 not a VSWITCH od did I miss 
something ?

What do you mean with

Yes, the NIC is connected to the LAN, the LAN is connected via VSWITCH to 
the OSA

how have you connected the virt. LAN to the VSWITCH ?

VLAN 001 is the default VLAN-ID most of the real switch put all the 
traffic not related to a specific VLAN-ID.
With other words 0001 will work as if there no VLAN-Tagging at all. 


Mit freundlichen Grüßen / Kind regards

Joerg Haertel

FTSS zSeries, z/VM, z/VSE, Linux on z, Virtualization, Performance
IBM Sales  Distribution, STG Sales
STG Technical Sales Enterprise Systems FSS


Phone:
+49-89 4504-3240
 IBM Deutschland

Home:
+49 89 1222 9775
 Hollerithstr. 1
Mobile:
+49-171 30 59 653
 81829 München
E-Mail:
haer...@de.ibm.com
 Germany


IBM Deutschland GmbH / Vorsitzender des Aufsichtsrats: Martin Jetter
Geschäftsführung: Martina Koederitz (Vorsitzende), Reinhard Reschke, 
Dieter Scholz, Michael Diemer, Gregor Pillen
Sitz der Gesellschaft: Ehningen / Registergericht: Amtsgericht Stuttgart, 
HRB 14562 / WEEE-Reg.-Nr. DE 99369940 
image/gif

Re: Create z/VM Layer 2 VLAN / VSwitch

2011-05-23 Thread Stefan Raabe
Hello, 

yes we tried that too, and now this is working. 

so now we use   NICDEF - VSWITCH  with VLAN 001 

What i tried was NICDEF - LAN - VSWITCH with VLNAN 485  which did not 
work, even when trying with VLAN 001.  Is this gerneral not possible? Is 
the VM LAN for internal commuication only and can not be connected via
VSWITCH to the outside world?!?

Regards, Stefan








Karl Kingston karlkings...@ongov.net 
Sent by: The IBM z/VM Operating System IBMVM@LISTSERV.UARK.EDU
23.05.2011 13:36
Please respond to
The IBM z/VM Operating System IBMVM@LISTSERV.UARK.EDU


To
IBMVM@LISTSERV.UARK.EDU
cc

Subject
Re: Create z/VM Layer 2 VLAN / VSwitch







Why are you issuing the DEFINE LAN command?  You don't need it. 

Your NICDEF should be connected to VMT1VSW0 not VMT1LN01. 

This is why you can't connect anywhere.If you use DEFINE LAN, you're 
just building an internal to z/VM only lan.   You don't need this unless 
you're doing guest to guest communications. 




From:Stefan Raabe stefan.ra...@deutsche-boerse.com 
To:IBMVM@LISTSERV.UARK.EDU 
Date:05/23/2011 05:38 AM 
Subject:Create z/VM Layer 2 VLAN / VSwitch 
Sent by:The IBM z/VM Operating System IBMVM@LISTSERV.UARK.EDU 




Hi, 

i am not a networking expert, but need to build a layer 2 vlan in z/VM 
5.4. Linux is Suse SLES 11 SP1. 

I was told to use layer 2 for VLAN 485 so i  used these commands to create 
vswitch / vlan 

DEFINE VSWITCH VMT1VSW0 RDEV E606 E706 CONTROLLER * ETHERNET VLAN 485 
native 485 

DEFINE LAN VMT1LN01 OWNERID SYSTEM TYPE QDIO ETHERNET MAXCONN INFINITE 
UNRESTRICTED ACCOUNTING OFF 

the Linux guest nic is defined in the directory 

NICDEF   9000 TYPE QDIO DEVICES 3 LAN SYSTEM VMT1LN01 MACID E32200 

So after defining / starting everything my system looks like this: 

q vmlan   
VMLAN maintenance level: 
 Latest Service: VM64604 
VMLAN MAC address assignment: 
 MACADDR Prefix: 02 
 MACIDRANGE SYSTEM: 01-FF 
USER:   00-00 
VMLAN default accounting status: 
 SYSTEM Accounting: OFF   USER Accounting: OFF   
VMLAN general activity:   
 PERSISTENT Limit: INFINITE   Current: 2 
 TRANSIENT  Limit: INFINITE   Current: 0 
Ready; T=0.01/0.01 11:27:19   

q vswitch details  
VSWITCH SYSTEM VMT1VSW0 Type: VSWITCH Connected: 0Maxconn: INFINITE

 PERSISTENT  RESTRICTEDETHERNET  Accounting: OFF 
 VLAN Aware  Default VLAN: 0485Default Porttype: Access  GVRP: Enabled 

 Native  VLAN: 0485VLAN Counters: OFF  
 MAC address: 02-FF-FF-00-00-01  
 State: Ready  
 IPTimeout: 5 QueueStorage: 8  
 Isolation Status: OFF 
 RDEV: E606.P00 VDEV: E606 Controller: DTCVSW2 
   VSWITCH Connection: 
 RX Packets: 0  Discarded: 0  Errors: 0  
 TX Packets: 0  Discarded: 0  Errors: 0  
 RX Bytes: 0TX Bytes: 0  
 Device: E606  Unit: 000   Role: DATA   vPort: 0001  Index: 0001   
 
 RDEV: E706.P00 VDEV: E706 Controller: DTCVSW1  BACKUP 
Ready; T=0.01/0.01 11:28:10  

q lan details  
LAN SYSTEM VMT1LN01 Type: QDIOConnected: 1Maxconn: INFINITE   
 PERSISTENT  UNRESTRICTED  ETHERNET  Accounting: OFF  
 IPTimeout: 5  
 Isolation Status: OFF  
 Adapter Connections:  
   Adapter Owner: LXDBST22 NIC: 9000.P00 Name: 0  
 RX Packets: 0  Discarded: 0  Errors: 0  
 TX Packets: 0  Discarded: 81 Errors: 0  
 RX Bytes: 0TX Bytes: 0  
 Device: 9002  Unit: 002   Role: DATA   vPort: 0065  Index: 0065   
 
 Options: Ethernet Broadcast  
   Unicast MAC Addresses:  
 02-FF-FF-E3-22-00  
   Multicast MAC Addresses:  
 01-00-5E-00-00-01  
 33-33-00-00-00-01  
 33-33-FF-E3-22-00  
VSWITCH SYSTEM VMT1VSW0 Type: VSWITCH Connected: 0Maxconn: INFINITE   
 PERSISTENT  RESTRICTEDETHERNET  Accounting: OFF  
 VLAN Aware  Default VLAN: 0485Default Porttype: Access  GVRP: Enabled 
 
 Native  VLAN: 0485VLAN Counters: OFF  
 MAC address: 02-FF-FF-00-00-01  
 State: Ready  
 IPTimeout: 5 QueueStorage: 8  
 Isolation Status: OFF  
 RDEV: E606.P00 VDEV: E606 Controller: DTCVSW2  
 RDEV: E706.P00 VDEV: E706 Controller: DTCVSW1  BACKUP   

i also performed the proper RACF definitions for vlan 0485 (UACC(UPDATE)) 
+ refresh 

nic defined in the linux guest using yast with proper ip address. 

but i can not get any ping to work from / to the linux system. i know this 
is also related to the routes which are not changed at the moment, but i 
should be able to see a ping comming in using tcpdump, or not ?!? 

any hint what is wrong in my

Re: Create z/VM Layer 2 VLAN / VSwitch

2011-05-23 Thread Joerg Haertel
Hi Stefan,
yes this is the case virt. LAN is only for internal use, as I stated 
first..

Mit freundlichen Grüßen / Kind regards

Joerg Haertel

FTSS zSeries, z/VM, z/VSE, Linux on z, Virtualization, Performance
IBM Sales  Distribution, STG Sales
STG Technical Sales Enterprise Systems FSS


Phone:
+49-89 4504-3240
 IBM Deutschland

Home:
+49 89 1222 9775
 Hollerithstr. 1
Mobile:
+49-171 30 59 653
 81829 München
E-Mail:
haer...@de.ibm.com
 Germany


IBM Deutschland GmbH / Vorsitzender des Aufsichtsrats: Martin Jetter
Geschäftsführung: Martina Koederitz (Vorsitzende), Reinhard Reschke, 
Dieter Scholz, Michael Diemer, Gregor Pillen
Sitz der Gesellschaft: Ehningen / Registergericht: Amtsgericht Stuttgart, 
HRB 14562 / WEEE-Reg.-Nr. DE 99369940 




Stefan Raabe stefan.ra...@deutsche-boerse.com 
Sent by: The IBM z/VM Operating System IBMVM@LISTSERV.UARK.EDU
23.05.2011 14:51
Please respond to
The IBM z/VM Operating System IBMVM@LISTSERV.UARK.EDU


To
IBMVM@LISTSERV.UARK.EDU
cc

Subject
Re: Create z/VM Layer 2 VLAN / VSwitch







Hello, 

yes we tried that too, and now this is working. 

so now we use   NICDEF - VSWITCH  with VLAN 001 

What i tried was NICDEF - LAN - VSWITCH with VLNAN 485  which did not 
work, even when trying with VLAN 001.  Is this gerneral not possible? Is 
the VM LAN for internal commuication only and can not be connected via 
VSWITCH to the outside world?!? 

Regards, Stefan 







Karl Kingston karlkings...@ongov.net 
Sent by: The IBM z/VM Operating System IBMVM@LISTSERV.UARK.EDU 
23.05.2011 13:36 

Please respond to
The IBM z/VM Operating System IBMVM@LISTSERV.UARK.EDU


To
IBMVM@LISTSERV.UARK.EDU 
cc

Subject
Re: Create z/VM Layer 2 VLAN / VSwitch









Why are you issuing the DEFINE LAN command?  You don't need it. 

Your NICDEF should be connected to VMT1VSW0 not VMT1LN01. 

This is why you can't connect anywhere.If you use DEFINE LAN, you're 
just building an internal to z/VM only lan.   You don't need this unless 
you're doing guest to guest communications. 




From:Stefan Raabe stefan.ra...@deutsche-boerse.com 
To:IBMVM@LISTSERV.UARK.EDU 
Date:05/23/2011 05:38 AM 
Subject:Create z/VM Layer 2 VLAN / VSwitch 
Sent by:The IBM z/VM Operating System IBMVM@LISTSERV.UARK.EDU 




Hi, 

i am not a networking expert, but need to build a layer 2 vlan in z/VM 
5.4. Linux is Suse SLES 11 SP1. 

I was told to use layer 2 for VLAN 485 so i  used these commands to create 
vswitch / vlan 

DEFINE VSWITCH VMT1VSW0 RDEV E606 E706 CONTROLLER * ETHERNET VLAN 485 
native 485 

DEFINE LAN VMT1LN01 OWNERID SYSTEM TYPE QDIO ETHERNET MAXCONN INFINITE 
UNRESTRICTED ACCOUNTING OFF 

the Linux guest nic is defined in the directory 

NICDEF   9000 TYPE QDIO DEVICES 3 LAN SYSTEM VMT1LN01 MACID E32200 

So after defining / starting everything my system looks like this: 

q vmlan   
VMLAN maintenance level: 
Latest Service: VM64604 
VMLAN MAC address assignment: 
MACADDR Prefix: 02 
MACIDRANGE SYSTEM: 01-FF 
   USER:   00-00 
VMLAN default accounting status: 
SYSTEM Accounting: OFF   USER Accounting: OFF   
VMLAN general activity:   
PERSISTENT Limit: INFINITE   Current: 2 
TRANSIENT  Limit: INFINITE   Current: 0 
Ready; T=0.01/0.01 11:27:19   

q vswitch details  
VSWITCH SYSTEM VMT1VSW0 Type: VSWITCH Connected: 0Maxconn: INFINITE

PERSISTENT  RESTRICTEDETHERNET  Accounting: OFF
VLAN Aware  Default VLAN: 0485Default Porttype: Access  GVRP: Enabled  
  
Native  VLAN: 0485VLAN Counters: OFF  
MAC address: 02-FF-FF-00-00-01  
State: Ready  
IPTimeout: 5 QueueStorage: 8  
Isolation Status: OFF
RDEV: E606.P00 VDEV: E606 Controller: DTCVSW2
  VSWITCH Connection:
RX Packets: 0  Discarded: 0  Errors: 0  
TX Packets: 0  Discarded: 0  Errors: 0  
RX Bytes: 0TX Bytes: 0  
Device: E606  Unit: 000   Role: DATA   vPort: 0001  Index: 0001

RDEV: E706.P00 VDEV: E706 Controller: DTCVSW1  BACKUP
Ready; T=0.01/0.01 11:28:10  

q lan details  
LAN SYSTEM VMT1LN01 Type: QDIOConnected: 1Maxconn: INFINITE   
PERSISTENT  UNRESTRICTED  ETHERNET  Accounting: OFF  
IPTimeout: 5 
Isolation Status: OFF  
Adapter Connections: 
  Adapter Owner: LXDBST22 NIC: 9000.P00 Name: 0  
RX Packets: 0  Discarded: 0  Errors: 0 
TX Packets: 0  Discarded: 81 Errors: 0 
RX Bytes: 0TX Bytes: 0 
Device: 9002  Unit: 002   Role: DATA   vPort: 0065  Index: 0065  
Options: Ethernet Broadcast  
  Unicast MAC Addresses: 
02-FF-FF-E3-22-00  
  Multicast MAC Addresses: 
01

Re: Create z/VM Layer 2 VLAN / VSwitch

2011-05-23 Thread Alan Altmark
On Monday, 05/23/2011 at 08:52 EDT, Stefan Raabe 
stefan.ra...@deutsche-boerse.com wrote:
 yes we tried that too, and now this is working. 
 
 so now we use   NICDEF - VSWITCH  with VLAN 001 
 
 What i tried was NICDEF - LAN - VSWITCH with VLNAN 485  which did not 
work, 
 even when trying with VLAN 001.  Is this gerneral not possible? Is the 
VM LAN 
 for internal commuication only and can not be connected via 
 VSWITCH to the outside world?!? 

Please look at the diagrams in Chapter 4 of the z/VM Connectivity manual. 
They illustrate the difference between the Guest LAN and the Virtual 
Switch.

Guest LANs are isolated LAN segments.  Virtual Switches are bridged LAN 
segments.

(Your problem with VLAN 1 vs. VLAN 485 is described in my previous post.)

Alan Altmark

z/VM and Linux on System z Consultant
IBM System Lab Services and Training 
ibm.com/systems/services/labservices 
office: 607.429.3323
mobile; 607.321.7556
alan_altm...@us.ibm.com
IBM Endicott