Data Domain: HA create command fails due to issue communicating with the peer node

Summary: HA create command fails with either of these two errors: **** Failed to configure HA: unable to communicate with the peer node via the interconnect. Or **** Failed to configure HA: Communication with the peer node timed out. ...

This article applies to This article does not apply to This article is not tied to any specific product. Not all product versions are identified in this article.

Symptoms

The error 'unable to communicate with the peer node via the interconnect' occurs when the passive node is missing process names for commld (port 3011), dd_ha, or both.
The error 'Communication with the peer node timed out' occurs when the active node is missing process names for commld (port 3011), the dd_ha process, or both.
 

Error 1:

# ha create peer datadomain-0.local ha-name datadomain

For adding the mutual trust with "datadomain-0.local", enter "datadomain-0.local's" sysadmin password:
As part of this operation:
the HA System name will be set to datadomain
the configuration of this node will overwrite many configuration options on the peer node.
This operation will also perform orchestrated reboot on both nodes.
Do you want to proceed? (yes|no) [yes]: yes

HA configuration is in progress...
**** Failed to configure HA: unable to communicate with the peer node via the interconnect.
 
# net show stats listening detailed
...
tcp        0      0 d:d:d:d:d:abcd:123:aabb:42275 :::*         LISTEN      -
tcp        0      0 d:d:d:d:d:abcd:123:aabb:3011 :::*         LISTEN      -
...
 
These ports are missing in the net filter auto rules:
# net filter show kernel chain dd_auto_in ipversion ipv6
Get filters succeeded with 1 records

          There are 10 lines to display IPv6 rules
dd_auto_in
Chain dd_auto_in (1 references)
num   pkts bytes target     prot opt in     out     source               destination
1        0     0 dd_accept  tcp      *      *       ::/0                 ::/0                 tcp dpt:22 /* Func 115 Auto rule */
2        0     0 dd_accept  tcp      *      *       ::/0                 ::/0                 tcp dpt:445 /* Func 119 Auto rule */
3        0     0 dd_accept  tcp      *      *       ::/0                 ::/0                 tcp dpt:652 /* Func 123 Auto rule */
4        0     0 dd_accept  tcp      *      *       ::/0                 ::/0                 tcp dpt:653 /* Func 125 Auto rule */
5        0     0 dd_accept  tcp      *      *       ::/0                 ::/0                 tcp dpt:111 /* Func 127 Auto rule */
6        0     0 dd_accept  tcp      *      *       ::/0                 ::/0                 tcp dpt:723 /* Func 130 Auto rule */
7        0     0 dd_accept  tcp      *      *       ::/0                 ::/0                 tcp dpt:111 /* Func 136 Auto rule */
8        0     0 dd_accept  tcp      *      *       ::/0                 ::/0                 tcp dpt:999 /* Func 137 Auto rule */
 

Error 2:

# ha create peer datadomain-0.local ha-name datadomain
For adding the mutual trust with "datadomain-0.local", enter "datadomain-0.local's" sysadmin password:
As part of this operation:
the HA System name will be set to datadomain
the configuration of this node will overwrite many configuration options on the peer node.
This operation will also perform orchestrated reboot on both nodes.
Do you want to proceed? (yes|no) [yes]: yes

HA configuration is in progress...
**** Failed to configure HA: Communication with the peer node timed out.
 
# net show stats listening detailed
...
tcp 0 0 d:d:d:d:d:abcd:123:aabb:42275 :::* LISTEN -
tcp 0 0 d:d:d:d:d:abcd:123:aabb:3011 :::* LISTEN –
...
 
These ports are missing in net filter auto rules:
#  net filter show kernel chain dd_auto_in ipversion ipv6

There are 10 lines to display IPv6 rules
Chain dd_auto_in (1 references)
num pkts bytes target prot opt in out source destination
1 0 0 dd_accept tcp * * ::/0 ::/0 tcp dpt:22 /* Func 115 Auto rule */
2 0 0 dd_accept tcp * * ::/0 ::/0 tcp dpt:445 /* Func 119 Auto rule */
3 0 0 dd_accept tcp * * ::/0 ::/0 tcp dpt:652 /* Func 123 Auto rule */
4 0 0 dd_accept tcp * * ::/0 ::/0 tcp dpt:653 /* Func 125 Auto rule */
5 0 0 dd_accept tcp * * ::/0 ::/0 tcp dpt:111 /* Func 127 Auto rule */
6 0 0 dd_accept tcp * * ::/0 ::/0 tcp dpt:723 /* Func 130 Auto rule */
7 0 0 dd_accept udp * * ::/0 ::/0 udp dpt:111 /* Func 136 Auto rule */
8 0 0 dd_accept udp * * ::/0 ::/0 udp dpt:999 /* Func 137 Auto rule */

Cause

The absence of net filter auto rules results in the passive node rejecting the request from the active node. This causes the request to time out.

Resolution

The resolution for this issue is to manually clear iptables on both nodes. Contact your contracted support provider for assistance with this, as bash mode access is required.

Additional Information

This issue is present in all releases except for the ones below:
  • DDOS 7.2.0.90
  • DDOS 7.7.x or later releases

Products

Data Domain, Data Domain
Article Properties
Article Number: 000190882
Article Type: Solution
Last Modified: 20 آذار 2026
Version:  2
Find answers to your questions from other Dell users
Support Services
Check if your device is covered by Support Services.