The Infrastructure of the CDS Group Eryk Schiller eryk.schiller@inf.unibe.ch Andre Gomes gomes@inf.unibe.ch Bern, 22.2.2016
An overview of the infrastructure 27.11.2018
Cnt… 27.11.2018
To simplify administration… The rule of thumb is that we offload as many services as possible to the University IT Services Examples of services planned to be provided by the University Firewall DNS Wiki ZMS based web page Please notice that the University has a large number of services provided by the IT Services Department (ID) helpdesk@id.unibe.ch iLUB team (Ilias) info@ilub.unibe.ch 27.11.2018
Network Infrastructure provided by ID/Institute (right rack) Two switches provided by the University 130.92.70.0/25 (will be shortly managed by CDS) 130.92.70.128/25 (will be shortly managed by CDS; no firewall!) 130.92.64.0/24 (Peppo Brambilla) 130.92.65.0/24 (Peppo Brambilla) 130.92.66.0/24 (Peppo Brambilla) 27.11.2018
Physical Infrastructure of the CDS Group (left rack) Dell PowerEdge R520 (Used as a CDS XEN server) 32 threads, 192 GB RAM (16 cores, 2 sockets) Dell PowerEdge R530 (Used as an OpenStack compute node) 48 threads, 192 GB RAM (24 cores, 2 sockets) Dell PowerVault ~10 TB HDD Storage Dell N4032 24 10 GbE-T ports each 2 40 GbE stacking ports each Two auxiliary PCs used for the OpenStack installation Mirantis Fuel node – deploys OpenStack automatically (controller, compute node) OpenStack controller node SSD disk for handling images Use the current infrastructure. Deploy physical machines only if permission is granted by Prof. Braun or a responsible person! 27.11.2018
Storage PowerVault MD3800i (Service Tag: HM80S12; Express Service Code 38349028838) Management Interfaces: 130.92.70.30 130.92.70.31 iSCSI Interfaces: 192.168.130.101 192.168.131.101 192.168.130.102 192.168.131.102 SAS-600GB 5 hard drives in RAID 5 1 hard drive as hot spare SAS-3TB 5 hard drives in RAID 6 27.11.2018
XEN Server (Service Tag: G2T3S12; Express Service Code: 34998334886 Supposed to run stable infrastructural deployments supporting the group Etherpad FP7 MCN Project 130.92.66.195 Git FP7 MCN Project 130.92.66.193 Management IP: 130.92.70.3 XEN-Server has access to 130.92.70.0/25 130.92.64-66.0/24 Access To Storage: 192.168.131.201 192.168.130.202 192.168.131.202 192.168.130.201 IDRAC: 130.92.70.2 Old Wiki 130.92.66.160 Jira FP7 MCN Project 130.92.66.192 Nagios 130.92.70.15 OwnCloud FP7 MCN Project 130.92.66.197 Subversion 130.92.66.187 Teampass 130.92.70.14 DNS Server 130.92.70.11 27.11.2018
OpenStack Installation Please ask for login / password Deploy reasonable computing MAX 48 threads, 192 RAM, shared with others! The infrastructure is foreseen to run research / unstable deployments for the group members. If the OpenStack environment breaks, it can be redeployed by Mirantis Fuel Mirantis Deploys a useable OpenStack, but some configuration options shall be introduced manually, e.g., connection to PowerVault Don’t use password authentication on your VMs! http://openstack.cnds.unibe.ch 130.92.70.130 (IDRAC), 130.92.70.131, 130.92.70.132, 130.92.70.133, 130.92.70.134, 130.92.70.135 131 – was fuel, but disconnected at the moment due to security reasons… 136 – 254 allocation pool for VMs for the CDS group members (floating Ips) 27.11.2018
Teampass.cnds.unibe.ch Team-based password management system for the CDS Group A VM hosted on XEN-SERVER with the IP address 130.92.70.14 27.11.2018
NAGIOS Monitoring System A VM hosted on XEN-SERVER http://130.92.70.15/nagios/ 27.11.2018
Ilias CDS Group. https://ilias.unibe.ch/ilias.php?ref_id=942620&cmdClass=ilrepositorygui&cmdNode=q0&baseClass=ilRepositoryGUI https://ilias.unibe.ch/goto.php?target=wiki_942622_Official_Wiki_of_the_CDS_Group 27.11.2018
New Webpage of the CDS Group https://edit.cms.unibe.ch/unibe/portal/fak_naturwis/a_dept_math/c_iinfamath/micro_cds/content/manage_main?lang=eng 27.11.2018
Netadmin of the University http://intern.unibe.ch/dienstleistungen/informatik/dienstleistungen_der_informatikdienste/it_verantwortliche/nuetzliche_tools/index_ger.html - list of university management tools https://vipr.unibe.ch – list of responsible persons for networks Firewall Management of all the Institute Networks 130.92.63-66.0/24, 130.92.70.0/24 Management of the University DNS server for domains unibe.ch inf.unibe.ch iam.unibe.ch cnds.unibe.ch (to be migrated) 27.11.2018
Netadmin screen-shot 27.11.2018
TODO LIST The backup system We consider hybrid (proprietary/opensource) software solution together with Peppo Brambilla Static backup on NAS of the institute LDAP of the institute for all accounts (incl. guest OU) [deadline 1.3.2016] Gitlab managed by the Institute Migration of our SVN to GIT of the Institute Nagios monitoring at the Institute Level Merge our monitoring system with the system of the Institute (physical machine) Documentation 27.11.2018