EPICS Controls Argonne National Laboratory

Experimental Physics and
Industrial Control System

1994  1995  1996  1997  1998  1999  2000  2001  2002  2003  2004  2005  2006  2007  2008  2009  2010  2011  2012  2013  2014  2015  2016  2017  2018  2019  2020  2021  2022  2023  <2024 Index 1994  1995  1996  1997  1998  1999  2000  2001  2002  2003  2004  2005  2006  2007  2008  2009  2010  2011  2012  2013  2014  2015  2016  2017  2018  2019  2020  2021  2022  2023  <2024
<== Date ==> <== Thread ==>

Subject: Re: Practical way to force the IOC to talk with one client
From: Ralph Lange via Tech-talk <tech-talk at aps.anl.gov>
To: EPICS Tech Talk <tech-talk at aps.anl.gov>
Date: Mon, 18 Mar 2024 15:22:58 +0100
I would say: It depends on what exactly you want to achieve...

If you want the Gateway to only contact specific IOCs - that's what Paul pointed out. Configure the Gateway (client side) to not broadcast name resolution requests and send them to the specific IOCs only.

If you want specific IOCs to only be contacted by the Gateway, there are multiple options:
ACFs: Limit read or write (or both) access to the Gateway user on the Gateway host. You played with that.
Move ports: Configure the IOCs to use a different port on their CA server and the Gateway to use that port on the client side. This will make the whole setup "invisible" to normal clients that don't know the special port number, but it doesn't provide access limitations.
Firewall: Configure the IOC host to only allow incoming CA name resolution traffic from the Gateway host.

Cheers,
~Ralph


Replies:
RE: Practical way to force the IOC to talk with one client Abdalla Ahmad via Tech-talk
References:
Practical way to force the IOC to talk with one client Abdalla Ahmad via Tech-talk
Re: Practical way to force the IOC to talk with one client Paul Sichta via Tech-talk

Navigate by Date:
Prev: Re: Practical way to force the IOC to talk with one client Paul Sichta via Tech-talk
Next: 2024 Spring EPICS Collaboration Meeting : Encouragement to submit abstracts 조우성(빔운영팀) via Tech-talk
Index: 1994  1995  1996  1997  1998  1999  2000  2001  2002  2003  2004  2005  2006  2007  2008  2009  2010  2011  2012  2013  2014  2015  2016  2017  2018  2019  2020  2021  2022  2023  <2024
Navigate by Thread:
Prev: Re: Practical way to force the IOC to talk with one client Paul Sichta via Tech-talk
Next: RE: Practical way to force the IOC to talk with one client Abdalla Ahmad via Tech-talk
Index: 1994  1995  1996  1997  1998  1999  2000  2001  2002  2003  2004  2005  2006  2007  2008  2009  2010  2011  2012  2013  2014  2015  2016  2017  2018  2019  2020  2021  2022  2023  <2024
ANJ, 19 Mar 2024 Valid HTML 4.01! · Home · News · About · Base · Modules · Extensions · Distributions · Download ·
· Search · EPICS V4 · IRMIS · Talk · Bugs · Documents · Links · Licensing ·