Unsolved
1 Rookie
•
6 Posts
0
1356
February 7th, 2023 00:00
PowerScale / Isilon show intermittent "failed" status in Secure Connect Gateway
Hi I have deployed a fresh clustered install of Secure Connect Gateway 5.14.00.12 with a Policy Server.
I have joined our two PowerScale/ Isilon clusters from the PowerScale CLI to SCG.
In SCG the status sometimes shows up as "failed" and sometimes shows up as "success" but only for the PowerScale devices.
I have tried disabling the ESRS config from the PowerScale CLI, restarting the "isi_esrs_d" and "isi_rsapi_d" service and re-registering with SCG but I still have this intermittent problem.
Anyone else have this issue?
No Events found!
Dell-Martin S
Moderator
•
3.5K Posts
0
February 7th, 2023 05:00
Hi,
what PowerScale did you use and did you update their firmware?
Do you try to reinstall SCG?
Do you have any further questions?
Regards Martin
CASDownload
1 Rookie
•
6 Posts
0
February 7th, 2023 18:00
I did a fresh install of SCG from scratch when I installed it, I didn't upgrade it so there should be no reason to reinstall SCG.
We use H500 PowerScale/Isilon with code 9.2.1.14 with the latest firmware from 5 months ago.
DELL-Joey C
Moderator
•
3.9K Posts
0
February 8th, 2023 00:00
Hi @CASDownload,
This is your first time configuring SCG 5? Is there any screenshots of what you have mentioned the status show of Failed and Success?
I've heard that some ports that are used in SRS might not be the same as SCG, mind checking if they are allowed in the firewall? I'm leaning towards where there is communication issue between SCG and PowerScale devices.
https://dell.to/3YtxLLI
CASDownload
1 Rookie
•
6 Posts
0
February 9th, 2023 18:00
Hi there is no firewall between SCG and PowerScale devices so this is definitely not the problem.
The screenshot below shows the "failed" status of the PowerScale device, it happens on both our PowerScale devices which seems to suggest there is some bug in Powerscale or in SCG. The Status will change over time between "failed" and "sucess" but only for the PowerScale devices not others.
DELL-Joey C
Moderator
•
3.9K Posts
0
February 10th, 2023 01:00
Hi @CASDownload,
Thanks for the screenshot. Since there is no firewall in between and basic troubleshooting has been done, and the issue still persist, I may suggest to contact SCG support to check the application logs in why they are appearing Fail and Success. The support may need to remote into the appliance to troubleshoot more.
rgmule05
1 Rookie
•
5 Posts
0
February 20th, 2023 07:00
I am having a similar issue, also with an H500. I will go through the reset steps for the H500, it will show show Successful but then after some amount of time will changed to Failed. But I also have an A2000 which has not experienced anything similar. SCG is v5.14.00.12. I have not opened a case with Support.
CASDownload
1 Rookie
•
6 Posts
0
February 26th, 2023 21:00
I updated to SCG 5.14.00.16 and it made no difference, support has not been much help they just get me to remove and readd the devices (I've done this about 5 times now ). I logged a call with the Isilon team and they pointed me to the SCG team which are now pointing me back to Isilon team, I have asked them to escalate it.
It's good to know its only happening with your H500, it's happening on both my H500 but I don't have any other type of Powerscale to test.
I have today just run the following on both H500 clusters as I haven't been getting much out of support
"isi esrs modify --connectivity-check-period=300" which changed it from the default 3600 seconds
I will see how this goes
DELL-Joey C
Moderator
•
3.9K Posts
0
February 26th, 2023 23:00
Hi @CASDownload,
I tried to look at any reported case similar to yours. I did find one which is similar. In the case logs, after PowerScale support have confirmed (with running a few commands) that the device, is actually connected to SCG/ESRS, they conclude that it's SCG which is having a bug that needed to be improved.
Hence, to my opinion, try reaching out to PowerScale support. Check if the device is connected to SCG/ESRS. Once they have proper information, they can escalate/feedback to SCG team.
CASDownload
1 Rookie
•
6 Posts
0
March 1st, 2023 17:00
"isi esrs modify --connectivity-check-period=300" which changed it from the default 3600 seconds seems to be a workaround.
I tried up to 1200 seconds but the issue kept occurring, so I have now set them to 400 seconds.
@rgmule05 could you please try this setting on your H500 to see if it also works for you?
rgmule05
1 Rookie
•
5 Posts
0
March 3rd, 2023 12:00
Thank you for the reply.
Checking SCG just now, my H500 had a status of Success but changed to Failed as I am writing this. I will try the 400 setting now and check next week to see if it helped.
rgmule05
1 Rookie
•
5 Posts
0
March 10th, 2023 07:00
In the past week since I made the change, it appears to have worked. I have seen a Failed status once but several other times it has maintained the Success status. So far, so good. Thanks!