User contributions for Plinich
Jump to navigation
Jump to search
20 Haziran 2022
- 14:1014:10, 20 Haziran 2022 diff hist +2,466 Install and configure techdocs server No edit summary
- 14:0214:02, 20 Haziran 2022 diff hist 0 Install and configure techdocs server No edit summary
- 14:0114:01, 20 Haziran 2022 diff hist +4,360 N Install and configure techdocs server Created page with "== Host OS installation == # Do minimal Debian Bullseye install # Disable IPv6 in /etc/default grub * Install updates and set hostname # Ensure unattended-upgrades package is installed # Allow root access via SSH key == Security == The firewall rules (i.e., AWS security group) allow: # Ping, SSH and HTTPs from 129.94.0.0/16 and 149.171.0.0/16 # HTTP from anywhere (to allow certbot to renew the Let's Encrypt SSL certificate # Everything else is blocked == Initial web..."
- 11:4911:49, 20 Haziran 2022 diff hist +33 AWS EFS home directories →Old world implementation (K17, conform)
- 11:4911:49, 20 Haziran 2022 diff hist +31 Main Page →Topics
- 11:4811:48, 20 Haziran 2022 diff hist +7,236 N AWS EFS home directories Created page with "== Basics == Hosts which can currently access AWS EFS: nw-syd-vx1, nw-syd-vx2, vx2, vx3, vx4, vx5, vx6, vx7, vx8, zappa, williams, wagner, weber, weaver. (11nov2021) * Amazon’s EFS service provides an unquotaed, unlimited, NFS-accessible file storage service. * Only NFS version 4 (4.1) is available. * When configured an EFS service appears as a host (IP address) on a subnetwork. * The EFS “host” only responds to connections on TCP port 2049. * There is no separat..."
- 11:2211:22, 20 Haziran 2022 diff hist +83 Main Page →Topics
- 11:2111:21, 20 Haziran 2022 diff hist +1,151 N Policies and principles Created page with "In all design and implementation choices: * Prefer obviousness over cleverness, even if longer or more complex, * Assume those who come after you aren't as expert as you, * If there's the remotest possibility that it may be misunderstood, add comments, * Bad grammar, bad spelling, bad punctuation and/or bad layout are better than no documentation. * Install the minimum software and configuration on a host or server to achieve desired functionality. This increases securi..."
- 11:1811:18, 20 Haziran 2022 diff hist +54 Main Page →Topics
- 11:1811:18, 20 Haziran 2022 diff hist +816 N UNSW reserved network block for CSE AWS hosting Created page with "== Email from Andy Sun (Central IT) allocating address block for New World infrastructure == From: Andy Sun <andy.sun@unsw.edu.au> To: Peter Linich <p.linich@unsw.edu.au> CC: CASD Maileater <casd-maileater@unsw.edu.au>, <ss@cse.unsw.edu.au> Subject: Request 3143026 - Notify - Request for IPv4 address block (RFC 1918) Date: Mon, 1 Mar 2021 16:59:22 +1100 Hi Peter, I have deployed the new block as: VLAN418 is KENS - CSE Virtual Infrastructure (10.197.80.0/20..." current
- 11:1411:14, 20 Haziran 2022 diff hist 0 Lifecycle management of accounts (draft notes) No edit summary
- 11:1311:13, 20 Haziran 2022 diff hist +1,550 N Lifecycle management of accounts (draft notes) Created page with "[1:59 pm] Zain Rahmat FYI: While classifying accounts and home directories as part of the project to eventually move homes into the cloud, I was reminded that we have a large number of old accounts in the new/old UDB that are in transit (In fact I remember Philip Rodwell telling me this a while ago, and asking why they hadn't been removed). I have run an old script written a while ago to purge accounts in transit more than 8 years old (/home/ss/accounts/bin/transit purge..."
- 11:0311:03, 20 Haziran 2022 diff hist +33 Main Page No edit summary
- 11:0211:02, 20 Haziran 2022 diff hist +56 Main Page →The light-touch approach
- 10:4910:49, 20 Haziran 2022 diff hist +1 Installing a lab computer →What you do on the lab computer
- 10:4910:49, 20 Haziran 2022 diff hist −138 Installing a lab computer No edit summary
- 10:4410:44, 20 Haziran 2022 diff hist +3,244 N Installing a lab computer Created page with "== What you do on the lab computer == Configuration of an out-of-the-box lab computer is done using an off-the-shelf Debian minimal/network install CD/DVD. This was <code>debian-10.10.0-amd64-netinst.iso</code> at time of writing. <ol> <li>Connect the lab computer/host to the network.</li> <li>Boot from the install media.</li> <li>At the installer selection menu, press the ESC key. If that doesn't give you a <code>boot:</code> prompt, go to step 5.</li> <li>At the <cod..."
- 10:4210:42, 20 Haziran 2022 diff hist −14 DNS (Doman Name Service) →DNS server setup (building it) current
- 10:4110:41, 20 Haziran 2022 diff hist −30 DNS (Doman Name Service) →DNS server setup (building it)
- 10:4010:40, 20 Haziran 2022 diff hist +2,501 N Initial setup of a Debian AMI instance Created page with "== Initial connection must be as user "admin" == # <code># ssh -l admin -A <IP address></code>. This step will [usually] require the SSH user has access to the AWS-known SSH keys (<code>*.pem</code>) allocated to the VM when it was created. E.g., <code>Amazon-CSE-key.pem</code> (Sydney) or <code>Amazon-CSE-SNG-key.pem</code> (Singapore). These keys are instantiated in the VM's <code>authorized_keys</code> file when it is created but may be overwritten with CSE's own key..." current
- 10:2910:29, 20 Haziran 2022 diff hist −48 DNS (Doman Name Service) No edit summary
- 10:2810:28, 20 Haziran 2022 diff hist +38 N DNS Plinich moved page DNS to DNS (Doman Name Service) current Tag: New redirect
- 10:2810:28, 20 Haziran 2022 diff hist 0 m DNS (Doman Name Service) Plinich moved page DNS to DNS (Doman Name Service)
- 10:2610:26, 20 Haziran 2022 diff hist +33 DNS (Doman Name Service) No edit summary
- 10:2510:25, 20 Haziran 2022 diff hist +2,409 N DNS (Doman Name Service) Created page with "== DNS (Domain Name Service) == === DNS servers === Each site has its own local DNS server(s). There are a few reasons for this, one of which is subtle but important: # Have master zone files and be able to respond authoritatively for CSE DNS zones. # The important but subtle reason: all DNS queries regarding “unsw.edu.au” are redirected to UNSW's own '''internal''' DNS servers so that these queries appear to be coming from hosts inside UNSW.<p>This is so that the..."
18 Haziran 2022
- 07:5907:59, 18 Haziran 2022 diff hist +35 Main Page →Topics
15 Haziran 2022
- 13:4513:45, 15 Haziran 2022 diff hist +978 QEMU/KVM No edit summary current
- 13:3513:35, 15 Haziran 2022 diff hist +22 N Vmimages Redirected page to QEMU/KVM current Tag: New redirect
- 13:3213:32, 15 Haziran 2022 diff hist +42 Main Page →Introduction
- 12:1812:18, 15 Haziran 2022 diff hist +13 Cfengine →cfengine components
- 12:1712:17, 15 Haziran 2022 diff hist +13 Cfengine No edit summary
- 11:1811:18, 15 Haziran 2022 diff hist +2,668 N Cfengine Created page with "cfengine is the configuration management tool used in New World. Here is cfengine's [https://www.cfengine.com website] where you can find full documentation. cfengine is a standard Debian package so it is auto-updated along with all other packages on New World systems. Here are the main differences between cfengine and Old World's conform: * cfengine, as used in New World, does not install software packages. Instead, it mainly installs configuration files..."
14 Haziran 2022
- 15:1615:16, 14 Haziran 2022 diff hist +359 N QEMU/KVM Created page with "In the Old World virtualisation of servers in the CSE data centre and on lab computers was done using VMware products (ESXi, vSphere, VMware Workstation, etc.). To homogenise the IT environment and reduce the number of technologies CSG needs to support, New World uses QEMU/KVM for all machine virtualisation. Category:Pages needing work"
- 14:3714:37, 14 Haziran 2022 diff hist +184 Check and install promises No edit summary
- 14:3114:31, 14 Haziran 2022 diff hist +706 N Check and install promises Created page with "Type: file, executable script Location: <code>/usr/local/administration/check_and_install_promises</code> on the cfengine hub. <code>check_and_install_promises</code> is a shell script which runs <code>m4</code> to process the <code>/var/lib/cfengine/masterfiles/promises.m4</code> to create <code>promises.cf</code> from component <code>*.inc</code> in the same directory. Once created, the script runs <code>cf-promises</code> to validate the new <co..."
- 14:2014:20, 14 Haziran 2022 diff hist +651 N Config.inc Created page with "Type: file Location: <code>/var/lib/cfengine/masterfiles/config.inc</code> on the cfengine hub. <code>config.inc</code> is one of the component files used by the <code>check_and_install_promises</code> on the cfengine hub to create cfengine's <code>promises.cf</code> file. The file is included very early on in <code>promises.cf</code> where it takes a more general host class, such as vlabserver, and uses this to define additional host c..."
- 14:1214:12, 14 Haziran 2022 diff hist +13 Hostlist.csv No edit summary
- 13:3113:31, 14 Haziran 2022 diff hist +455 Host class No edit summary
- 13:2513:25, 14 Haziran 2022 diff hist +18 Hostlist.csv No edit summary
- 12:2712:27, 14 Haziran 2022 diff hist 0 MediaWiki:Common.css No edit summary
- 12:2612:26, 14 Haziran 2022 diff hist +1 Host class No edit summary
- 12:2612:26, 14 Haziran 2022 diff hist +1 Host class No edit summary
- 12:2612:26, 14 Haziran 2022 diff hist +589 N Host class Created page with "Host classes for each host may be set in <code>[[hostlist.csv]</code> or may be set in <code>config.inc</code>. Host classes set in <code>hostlist.csv</code> are available to both host generator scripts and to cfengine promises. Host classes set in <code>config.inc</code> are not available to host generator scripts. {| !Class name !Where specified !Description |- |userlogin |<code>config.inc</code> |Indicates that ordinary users will log in to this host..."
- 12:2512:25, 14 Haziran 2022 diff hist +17 MediaWiki:Common.css No edit summary
- 12:1812:18, 14 Haziran 2022 diff hist +42 Main Page No edit summary
- 12:1512:15, 14 Haziran 2022 diff hist +26 Main Page →Topics
- 12:0912:09, 14 Haziran 2022 diff hist +4 Hostlist.csv No edit summary
- 12:0812:08, 14 Haziran 2022 diff hist +1,137 N Hostlist.csv Created page with "Type: file Location: <code>/usr/local/administration/hosts/hostlist.csv</code> on the cfengine hub. hostlist.csv is a CSV-formatted (comma-separated variable) file containing a list of all hosts known to cfengine. Each line of the file contains the following fields: {| !Field number !Contents !Examples !Description |- |1 |Host name |nw-k17-login1, nw-syd-cfengine-hub, williams |The network name of the host minus any domain components. |- |2 |IPv4 address |10...."
- 11:5711:57, 14 Haziran 2022 diff hist +15 Main Page →Topics
- 11:5411:54, 14 Haziran 2022 diff hist +51 Main Page →Topics