<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: VSCAN routing question in ONTAP Discussions</title>
    <link>https://community.netapp.com/t5/ONTAP-Discussions/VSCAN-routing-question/m-p/134286#M29385</link>
    <description>&lt;P&gt;it wont hit the route table at all, as LIF is in same network.&amp;nbsp; no need for gateway&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;do you have netmask incorrect?&amp;nbsp; looks like should be /25&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;post this if you can, curious now.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;PRE&gt;net int show -address 10.160.128.11|10.160.128.144 -instance&lt;/PRE&gt;</description>
    <pubDate>Wed, 06 Sep 2017 19:37:41 GMT</pubDate>
    <dc:creator>J_curl</dc:creator>
    <dc:date>2017-09-06T19:37:41Z</dc:date>
    <item>
      <title>VSCAN routing question</title>
      <link>https://community.netapp.com/t5/ONTAP-Discussions/VSCAN-routing-question/m-p/133847#M29275</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Can somebody explain how the vscan routing works ? How the Lif Used for connection is chosen ?&lt;/P&gt;&lt;P&gt;For some reason the&amp;nbsp;&lt;SPAN&gt;10.160.128.142 AV server is using wrong public lif to connect to the second SVM.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;vscan connection-status show-connected -instance&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Node: &lt;SPAN&gt;XXX&lt;/SPAN&gt;-np01-02&lt;BR /&gt;Vserver: &lt;SPAN&gt;XXX&lt;/SPAN&gt;-sp170001&lt;BR /&gt;Server: 10.160.128.142&lt;BR /&gt;Vscan Server Vendor: mcafee virusscan enterprise for storage&lt;BR /&gt;Vscan Server Version: 0.0&lt;BR /&gt;Privileged User Used for Connection: EUNET\XXX&lt;BR /&gt;Time When Vscan Server Was Connected: 8/23/2017 09:31:28&lt;BR /&gt;Server Type: primary&lt;BR /&gt;&lt;FONT color="#0000FF"&gt;&lt;STRONG&gt;Vserver LIF Used for Connection: 10.160.128.144 (vscan lif)&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Node: &lt;SPAN&gt;XXX&lt;/SPAN&gt;-np01-02&lt;BR /&gt;Vserver: &lt;SPAN&gt;XXX&lt;/SPAN&gt;-sp170002&lt;BR /&gt;Server: 10.160.128.142&lt;BR /&gt;Vscan Server Vendor: mcafee virusscan enterprise for storage&lt;BR /&gt;Vscan Server Version: 0.0&lt;BR /&gt;Privileged User Used for Connection: EUNET\&lt;SPAN&gt;XXX&lt;/SPAN&gt;&lt;BR /&gt;Time When Vscan Server Was Connected: 8/23/2017 09:31:53&lt;BR /&gt;Server Type: primary&lt;BR /&gt;&lt;FONT color="#0000FF"&gt;&lt;STRONG&gt;Vserver LIF Used for Connection: 10.160.128.11 (public lif)&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;route show&lt;/STRONG&gt;&lt;BR /&gt;Vserver Destination Gateway Metric&lt;BR /&gt;------------------- --------------- --------------- ------&lt;BR /&gt;&lt;SPAN&gt;XXX&lt;/SPAN&gt;-np01&lt;BR /&gt;0.0.0.0/0 10.160.129.1 26&lt;BR /&gt;0.0.0.0/0 10.160.129.129 20&lt;BR /&gt;&lt;SPAN&gt;XXX&lt;/SPAN&gt;-sp170001&lt;BR /&gt;0.0.0.0/0 10.160.128.1 20&lt;BR /&gt;0.0.0.0/0 10.160.128.129 25&lt;BR /&gt;&lt;SPAN&gt;XXX&lt;/SPAN&gt;-sp170002&lt;BR /&gt;0.0.0.0/0 10.160.128.1 20&lt;BR /&gt;0.0.0.0/0 10.160.128.129 25&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks &amp;amp; Regards,&lt;/P&gt;&lt;P&gt;Jakub&lt;/P&gt;</description>
      <pubDate>Wed, 04 Jun 2025 14:41:34 GMT</pubDate>
      <guid>https://community.netapp.com/t5/ONTAP-Discussions/VSCAN-routing-question/m-p/133847#M29275</guid>
      <dc:creator>jbielasz</dc:creator>
      <dc:date>2025-06-04T14:41:34Z</dc:date>
    </item>
    <item>
      <title>Re: VSCAN routing question</title>
      <link>https://community.netapp.com/t5/ONTAP-Discussions/VSCAN-routing-question/m-p/133919#M29293</link>
      <description>&lt;P&gt;It will grab a data LIF that is CIFS enabled, that can reach the vscan server.&amp;nbsp; best practice is to create a seperate network from the data access network, just to be used for vscan.&lt;/P&gt;</description>
      <pubDate>Thu, 24 Aug 2017 20:03:26 GMT</pubDate>
      <guid>https://community.netapp.com/t5/ONTAP-Discussions/VSCAN-routing-question/m-p/133919#M29293</guid>
      <dc:creator>J_curl</dc:creator>
      <dc:date>2017-08-24T20:03:26Z</dc:date>
    </item>
    <item>
      <title>Re: VSCAN routing question</title>
      <link>https://community.netapp.com/t5/ONTAP-Discussions/VSCAN-routing-question/m-p/133931#M29298</link>
      <description>&lt;P&gt;Thanks for the reply.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;CIFS is enabled on all vscan interfaces.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The problem is that it switching on random basis to public lif&amp;nbsp;(e.g. when I do vscan disable/enable).&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Hence, I would like to understand the mechanism. It seems that it is not using Metric, because with current setting it would always pick public lifs.&lt;/P&gt;</description>
      <pubDate>Fri, 25 Aug 2017 07:17:06 GMT</pubDate>
      <guid>https://community.netapp.com/t5/ONTAP-Discussions/VSCAN-routing-question/m-p/133931#M29298</guid>
      <dc:creator>jbielasz</dc:creator>
      <dc:date>2017-08-25T07:17:06Z</dc:date>
    </item>
    <item>
      <title>Re: VSCAN routing question</title>
      <link>https://community.netapp.com/t5/ONTAP-Discussions/VSCAN-routing-question/m-p/134286#M29385</link>
      <description>&lt;P&gt;it wont hit the route table at all, as LIF is in same network.&amp;nbsp; no need for gateway&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;do you have netmask incorrect?&amp;nbsp; looks like should be /25&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;post this if you can, curious now.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;PRE&gt;net int show -address 10.160.128.11|10.160.128.144 -instance&lt;/PRE&gt;</description>
      <pubDate>Wed, 06 Sep 2017 19:37:41 GMT</pubDate>
      <guid>https://community.netapp.com/t5/ONTAP-Discussions/VSCAN-routing-question/m-p/134286#M29385</guid>
      <dc:creator>J_curl</dc:creator>
      <dc:date>2017-09-06T19:37:41Z</dc:date>
    </item>
    <item>
      <title>Re: VSCAN routing question</title>
      <link>https://community.netapp.com/t5/ONTAP-Discussions/VSCAN-routing-question/m-p/134296#M29389</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;SPAN&gt;J_curl,&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;The masks are Ok. Also, both IP ranges are in different VLANs.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;PRE&gt;XXXXXX-np01::&amp;gt; net int show -address 10.160.128.11|10.160.128.144 -instance
  (network interface show)

                    Vserver Name: XXXXXX-sp170001
          Logical Interface Name: vscan_sp170001
                            Role: data
                   Data Protocol: cifs
                       Home Node: XXXXXX-np01-02
                       Home Port: a0a-403
                    Current Node: XXXXXX-np01-02
                    Current Port: a0a-403
              Operational Status: up
                 Extended Status: -
                         Is Home: true
                 Network Address: 10.160.128.144
                         Netmask: 255.255.255.128
             Bits in the Netmask: 25
                     Subnet Name: vscan_403
           Administrative Status: up
                 Failover Policy: broadcast-domain-wide
                 Firewall Policy: mgmt
                     Auto Revert: false
   Fully Qualified DNS Zone Name: none
         DNS Query Listen Enable: false
             Failover Group Name: vscan_403
                        FCP WWPN: -
                  Address family: ipv4
                         Comment: -
                  IPspace of LIF: Default
  Is Dynamic DNS Update Enabled?: true

                    Vserver Name: XXXXXX-sp170002
          Logical Interface Name: public_sp170002
                            Role: data
                   Data Protocol: nfs, cifs
                       Home Node: XXXXXX-np01-02
                       Home Port: a0a-402
                    Current Node: XXXXXX-np01-02
                    Current Port: a0a-402
              Operational Status: up
                 Extended Status: -
                         Is Home: true
                 Network Address: 10.160.128.11
                         Netmask: 255.255.255.128
             Bits in the Netmask: 25
                     Subnet Name: public_402
           Administrative Status: up
                 Failover Policy: system-defined
                 Firewall Policy: data1
                     Auto Revert: false
   Fully Qualified DNS Zone Name: none
         DNS Query Listen Enable: false
             Failover Group Name: public_402
                        FCP WWPN: -
                  Address family: ipv4
                         Comment: -
                  IPspace of LIF: Default
  Is Dynamic DNS Update Enabled?: false
2 entries were displayed.&lt;/PRE&gt;</description>
      <pubDate>Thu, 07 Sep 2017 07:11:08 GMT</pubDate>
      <guid>https://community.netapp.com/t5/ONTAP-Discussions/VSCAN-routing-question/m-p/134296#M29389</guid>
      <dc:creator>jbielasz</dc:creator>
      <dc:date>2017-09-07T07:11:08Z</dc:date>
    </item>
    <item>
      <title>Re: VSCAN routing question</title>
      <link>https://community.netapp.com/t5/ONTAP-Discussions/VSCAN-routing-question/m-p/134332#M29398</link>
      <description>&lt;P&gt;very interesting.&amp;nbsp; Is the subnet mask correct on the vscan server?&lt;/P&gt;</description>
      <pubDate>Thu, 07 Sep 2017 21:46:18 GMT</pubDate>
      <guid>https://community.netapp.com/t5/ONTAP-Discussions/VSCAN-routing-question/m-p/134332#M29398</guid>
      <dc:creator>J_curl</dc:creator>
      <dc:date>2017-09-07T21:46:18Z</dc:date>
    </item>
    <item>
      <title>Re: VSCAN routing question</title>
      <link>https://community.netapp.com/t5/ONTAP-Discussions/VSCAN-routing-question/m-p/134333#M29399</link>
      <description>&lt;P&gt;does the vscan server have a default route specified for the it's 10.160.128.142 interface?&amp;nbsp; Is that interface in the same vlan?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;remove the default routes for vscan network on the NetApp, and also remove the gateway for the .142 interface on the server&lt;/P&gt;</description>
      <pubDate>Thu, 07 Sep 2017 21:57:03 GMT</pubDate>
      <guid>https://community.netapp.com/t5/ONTAP-Discussions/VSCAN-routing-question/m-p/134333#M29399</guid>
      <dc:creator>J_curl</dc:creator>
      <dc:date>2017-09-07T21:57:03Z</dc:date>
    </item>
    <item>
      <title>Re: VSCAN routing question</title>
      <link>https://community.netapp.com/t5/ONTAP-Discussions/VSCAN-routing-question/m-p/134348#M29406</link>
      <description>&lt;P&gt;The server is in the same vlan as NAS. They can see&amp;nbsp;each other as sometimes it switches to the proper lif and everything works fine.&lt;/P&gt;&lt;P&gt;It&amp;nbsp;has only 1 interface wih the following routing configured. I'm affraid I won't be able to log in to the server anymore, if I remove the default gateway.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Jakub&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;PRE&gt;C:\Users\adm_b&amp;gt;route print
===========================================================================
Interface List
 13...00 50 56 a5 6f ba ......vmxnet3 Ethernet Adapter
  1...........................Software Loopback Interface 1
 12...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter #2
===========================================================================

IPv4 Route Table
===========================================================================
Active Routes:
Network Destination        Netmask          Gateway       Interface  Metric
          0.0.0.0          0.0.0.0   10.160.128.129   10.160.128.141    261
   10.160.128.128  255.255.255.128         On-link    10.160.128.141    261
   10.160.128.141  255.255.255.255         On-link    10.160.128.141    261
   10.160.128.255  255.255.255.255         On-link    10.160.128.141    261
        127.0.0.0        255.0.0.0         On-link         127.0.0.1    306
        127.0.0.1  255.255.255.255         On-link         127.0.0.1    306
  127.255.255.255  255.255.255.255         On-link         127.0.0.1    306
        224.0.0.0        240.0.0.0         On-link         127.0.0.1    306
        224.0.0.0        240.0.0.0         On-link    10.160.128.141    261
  255.255.255.255  255.255.255.255         On-link         127.0.0.1    306
  255.255.255.255  255.255.255.255         On-link    10.160.128.141    261
===========================================================================
Persistent Routes:
  Network Address          Netmask  Gateway Address  Metric
          0.0.0.0          0.0.0.0   10.160.128.129  Default &lt;/PRE&gt;</description>
      <pubDate>Fri, 08 Sep 2017 13:21:10 GMT</pubDate>
      <guid>https://community.netapp.com/t5/ONTAP-Discussions/VSCAN-routing-question/m-p/134348#M29406</guid>
      <dc:creator>jbielasz</dc:creator>
      <dc:date>2017-09-08T13:21:10Z</dc:date>
    </item>
    <item>
      <title>Re: VSCAN routing question</title>
      <link>https://community.netapp.com/t5/ONTAP-Discussions/VSCAN-routing-question/m-p/134349#M29407</link>
      <description>&lt;P&gt;Routing of the second server:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;PRE&gt;C:\Users\adm_b&amp;gt;route print
===========================================================================
Interface List
 14...00 50 56 a5 a8 f9 ......vmxnet3 Ethernet Adapter
  1...........................Software Loopback Interface 1
 13...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter
===========================================================================

IPv4 Route Table
===========================================================================
Active Routes:
Network Destination        Netmask          Gateway       Interface  Metric
          0.0.0.0          0.0.0.0   10.160.128.129   10.160.128.142    261
   10.160.128.128  255.255.255.128         On-link    10.160.128.142    261
   10.160.128.142  255.255.255.255         On-link    10.160.128.142    261
   10.160.128.255  255.255.255.255         On-link    10.160.128.142    261
        127.0.0.0        255.0.0.0         On-link         127.0.0.1    306
        127.0.0.1  255.255.255.255         On-link         127.0.0.1    306
  127.255.255.255  255.255.255.255         On-link         127.0.0.1    306
        224.0.0.0        240.0.0.0         On-link         127.0.0.1    306
        224.0.0.0        240.0.0.0         On-link    10.160.128.142    261
  255.255.255.255  255.255.255.255         On-link         127.0.0.1    306
  255.255.255.255  255.255.255.255         On-link    10.160.128.142    261
===========================================================================
Persistent Routes:
  Network Address          Netmask  Gateway Address  Metric
          0.0.0.0          0.0.0.0   10.160.128.129  Default&lt;/PRE&gt;</description>
      <pubDate>Fri, 08 Sep 2017 13:24:55 GMT</pubDate>
      <guid>https://community.netapp.com/t5/ONTAP-Discussions/VSCAN-routing-question/m-p/134349#M29407</guid>
      <dc:creator>jbielasz</dc:creator>
      <dc:date>2017-09-08T13:24:55Z</dc:date>
    </item>
    <item>
      <title>Re: VSCAN routing question</title>
      <link>https://community.netapp.com/t5/ONTAP-Discussions/VSCAN-routing-question/m-p/134437#M29427</link>
      <description>&lt;P&gt;vscan servers only have the single IP, so no need to change anything there.&amp;nbsp; Those should be fine as they are&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I would be curious to see if it works if you delete the route to .129 for the vserver, as well as remove the gateway from the vscan_403 subnet.&amp;nbsp; i think one of those is causing this.&amp;nbsp; Just a theory though.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;you may have to toggle vscan off/on after the change&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 12 Sep 2017 21:26:05 GMT</pubDate>
      <guid>https://community.netapp.com/t5/ONTAP-Discussions/VSCAN-routing-question/m-p/134437#M29427</guid>
      <dc:creator>J_curl</dc:creator>
      <dc:date>2017-09-12T21:26:05Z</dc:date>
    </item>
  </channel>
</rss>

