Shorewall issue -Base Command Manager

Dear Nvidia experts,

When we attempted to deploy the Base Command Manager using type1 and type2 topology as well, we were unable to access the head node from the external network due to shorewall. However, when we disabled shorewall, we were able to ping and ssh.

Could you please shed some light on the reason for this issue? Is it possibly related to licensing, since it was not applied?

Thank you in advance for your response.

Best regards,
Shakhizat

Where did you purchase Base Command Manager?

We found shorewall to similarly get in the way of our external networking, in its default configuration by BCM on an ubuntu 22 head node. We simply removed shorewall from the head node.

After disabling autostart, monitoring, and the service themselves on the head node in cmsh, and removing its firewall role, and disabling shorewall linux daemon with systemctl, then flushing iptables… shorewall would still get fired on reboot and reload config(s) that got in the way. We apt purge’d shorewall altogether to solve the problem. Then reinstated NAT on the head node’s externalnet nic with one iptables rule and locked it down with iptables-persistent