Data Domain: HA create command fails due to issue communicating with the peer node
Summary: HA create command fails with either of these two errors: **** Failed to configure HA: unable to communicate with the peer node via the interconnect. Or **** Failed to configure HA: Communication with the peer node timed out. ...
This article applies to
This article does not apply to
This article is not tied to any specific product.
Not all product versions are identified in this article.
Symptoms
The error '
unable to communicate with the peer node via the interconnect' occurs when the passive node is missing process names for commld (port 3011), dd_ha, or both.
The error '
Communication with the peer node timed out' occurs when the active node is missing process names for commld (port 3011), the dd_ha process, or both.
Error 1:
# ha create peer datadomain-0.local ha-name datadomain
For adding the mutual trust with "datadomain-0.local", enter "datadomain-0.local's" sysadmin password:
As part of this operation:
the HA System name will be set to datadomain
the configuration of this node will overwrite many configuration options on the peer node.
This operation will also perform orchestrated reboot on both nodes.
Do you want to proceed? (yes|no) [yes]: yes
HA configuration is in progress...
**** Failed to configure HA: unable to communicate with the peer node via the interconnect.
# net show stats listening detailed
...
tcp 0 0 d:d:d:d:d:abcd:123:aabb:42275 :::* LISTEN -
tcp 0 0 d:d:d:d:d:abcd:123:aabb:3011 :::* LISTEN -
...
These ports are missing in the net filter auto rules:
# net filter show kernel chain dd_auto_in ipversion ipv6
Get filters succeeded with 1 records
There are 10 lines to display IPv6 rules
dd_auto_in
Chain dd_auto_in (1 references)
num pkts bytes target prot opt in out source destination
1 0 0 dd_accept tcp * * ::/0 ::/0 tcp dpt:22 /* Func 115 Auto rule */
2 0 0 dd_accept tcp * * ::/0 ::/0 tcp dpt:445 /* Func 119 Auto rule */
3 0 0 dd_accept tcp * * ::/0 ::/0 tcp dpt:652 /* Func 123 Auto rule */
4 0 0 dd_accept tcp * * ::/0 ::/0 tcp dpt:653 /* Func 125 Auto rule */
5 0 0 dd_accept tcp * * ::/0 ::/0 tcp dpt:111 /* Func 127 Auto rule */
6 0 0 dd_accept tcp * * ::/0 ::/0 tcp dpt:723 /* Func 130 Auto rule */
7 0 0 dd_accept tcp * * ::/0 ::/0 tcp dpt:111 /* Func 136 Auto rule */
8 0 0 dd_accept tcp * * ::/0 ::/0 tcp dpt:999 /* Func 137 Auto rule */
Error 2:
# ha create peer datadomain-0.local ha-name datadomain
For adding the mutual trust with "datadomain-0.local", enter "datadomain-0.local's" sysadmin password:
As part of this operation:
the HA System name will be set to datadomain
the configuration of this node will overwrite many configuration options on the peer node.
This operation will also perform orchestrated reboot on both nodes.
Do you want to proceed? (yes|no) [yes]: yes
HA configuration is in progress...
**** Failed to configure HA: Communication with the peer node timed out.
# net show stats listening detailed
...
tcp 0 0 d:d:d:d:d:abcd:123:aabb:42275 :::* LISTEN -
tcp 0 0 d:d:d:d:d:abcd:123:aabb:3011 :::* LISTEN –
...
These ports are missing in net filter auto rules:
# net filter show kernel chain dd_auto_in ipversion ipv6
There are 10 lines to display IPv6 rules
Chain dd_auto_in (1 references)
num pkts bytes target prot opt in out source destination
1 0 0 dd_accept tcp * * ::/0 ::/0 tcp dpt:22 /* Func 115 Auto rule */
2 0 0 dd_accept tcp * * ::/0 ::/0 tcp dpt:445 /* Func 119 Auto rule */
3 0 0 dd_accept tcp * * ::/0 ::/0 tcp dpt:652 /* Func 123 Auto rule */
4 0 0 dd_accept tcp * * ::/0 ::/0 tcp dpt:653 /* Func 125 Auto rule */
5 0 0 dd_accept tcp * * ::/0 ::/0 tcp dpt:111 /* Func 127 Auto rule */
6 0 0 dd_accept tcp * * ::/0 ::/0 tcp dpt:723 /* Func 130 Auto rule */
7 0 0 dd_accept udp * * ::/0 ::/0 udp dpt:111 /* Func 136 Auto rule */
8 0 0 dd_accept udp * * ::/0 ::/0 udp dpt:999 /* Func 137 Auto rule */Cause
The absence of net filter auto rules results in the passive node rejecting the request from the active node. This causes the request to time out.
Resolution
The resolution for this issue is to manually clear iptables on both nodes. Contact your contracted support provider for assistance with this, as bash mode access is required.
Additional Information
This issue is present in all releases except for the ones below:
-
DDOS 7.2.0.90
-
DDOS 7.7.x or later releases
Products
Data Domain, Data DomainArticle Properties
Article Number: 000190882
Article Type: Solution
Last Modified: 20 آذار 2026
Version: 2
Find answers to your questions from other Dell users
Support Services
Check if your device is covered by Support Services.