HP-UX IPSec and MC/ServiceGuard

Step 4: Configuring Authentication Records for Preshared Keys

Node1 (10.1.1.1 and 15.1.1.1)

Node2 (10.2.2.2 and 15.2.2.2)

Node3 (10.3.3.3 and 15.3.3.3)

The 10.*.*.* network is a dedicated heartbeat LAN. The 15.*.*.* network is a shared heartbeat and data LAN.

The cluster also has two packages:

pkgA (15.98.98.98)

pkgB (15.99.99.99)

There are two package clients:

Client1 (15.4.4.4)

Client2 (15.5.5.5)

HP-UX IPSec is securing the traffic between the clients and the package addresses.

Preshared Keys Configuration on Cluster Nodes

Each cluster node has the following preshared keys configured:

Remote IP AddressKey

 

 

15.4.4.4 (Client1)

client1_key

 

 

15.5.5.5 (Client2)

client2_key

 

 

Preshared Keys Configuration on Client1

Client1 has the following preshared keys configured:

Remote IP Address

Key

 

 

16.98.98.98 (pkgA)

client1_key

 

 

16.99.99.99 (pkgB)

client1_key

 

 

Preshared Keys Configuration on Client2

Client2 has the following preshared keys configured:

Chapter 8

259