NOC Tools Donal O’Cearbhaill HEAnet Ltd.. Ireland’s National Education and Research Network Provides Internet services to Irish Universities 2005 - Broadband.

Slides:



Advertisements
Similar presentations
NAGIOS AND CACTI NETWORK MANAGEMENT AND MONITORING SYSTEMS.
Advertisements

Point Protection 111. Check List AAA to the Network Devices Controlling Packets Destined to the Network Devices Config Audits.
Overview of network monitoring development at AMRES Slavko Gajin.
Bangkok, Thailand An Introduction intERLab at AIT Network Management Workshop March – Bangkok, Thailand Hervey Allen & Phil Regnauld.
1 CHEP 2000, Roberto Barbera Roberto Barbera (*) Grid monitoring with NAGIOS WP3-INFN Meeting, Naples, (*) Work in collaboration with.
Network Management Workshop intERlab at AIT Thailand March 11-15, 2008 Network Operations and Network Management.
HEAnet & The Schools Network Presentation to HEAnet National Networking Conference by Ronan Byrne & Tim Maher 10 th November 2005.
MONITORING TOOLS Open Source Security Tools to monitor your network.
Building a Home Web Server Grant Root
Nada Abdulla Ahmed.  SmoothWall Express is an open source firewall distribution based on the GNU/Linux operating system. Designed for ease of use, SmoothWall.
Cold Fusion High Availability “Taking It To The Next Level” Presenter: Jason Baker, Digital North Date:
Cacti Workshop Tony Roman Agenda What is Cacti? The Origins of Cacti Large Installation Considerations Automation The Current.
5/12/011 eircom net IP Network Karl Jeacle
Monitoring backbone networks Manuel ubredu, Valeriu Vraciu – RoEduNet Chiinău, September 9, 2014.
Academic Network - retrospective. Academic Network – University of Montenegro MREN’s technical body is Center of Information System (CIS) of University.
Bangkok, Thailand Smokeping & Cacti intERLab at AIT Workshop March – Bangkok, Thailand Hervey Allen.
Securing Schools Firewalling and Filtering on the Broadband for Schools Network. Liam Kennedy Network Engineer HEAnet Ltd.
Microsoft Virtual Academy Module 4 Creating and Configuring Virtual Machine Networks.
PacNOG 6: Nadi, Fiji Dealing with DDoS Attacks Hervey Allen Network Startup Resource Center.
These materials are licensed under the Creative Commons Attribution-Noncommercial 3.0 Unported license (
Shoes R’ Us Denean Delmundo & Jeremy Steele CST 412 Spring 2014.
Module 18 Monitoring SQL Server 2008 R2. Module Overview Monitoring Activity Capturing and Managing Performance Data Analyzing Collected Performance Data.
Virtual Company Group 8 Presentation Date: June /04/2017
Papeete, French Polynesia Measuring Delay with PacNOG5 – 17 June 2009 Papeete, French Polynesia Hervey Allen.
1 Network Statistic and Monitoring System Wayne State University Division of Computing and Information Technology Information Technology.
NOC TOOLS rancid AfNOG Cairo, SI-E, 4 of 5 Sunday Folayan.
Josh Riggs Utilizing Open Source Network Monitoring.
© 2006 Cisco Systems, Inc. All rights reserved.Cisco Public 1 Version 4.0 Identifying Application Impacts on Network Design Designing and Supporting Computer.
Hsu Chun-Hung Network Benchmarking Lab
Taipei, Taiwan Smokeping & Cacti APRICOT 2008 Workshop February – Taipei, Taiwan Hervey Allen.
Ramiro Voicu December Design Considerations  Act as a true dynamic service and provide the necessary functionally to be used by any other services.
RANCID / WebSVN AfNOG 12, Dar Es Salaam, Tanzania.
TELE 301 Lecture 10: Scheduled … 1 Overview Last Lecture –Post installation This Lecture –Scheduled tasks and log management Next Lecture –DNS –Readings:
workshop eugene, oregon What is network management? System & Service monitoring  Reachability, availability Resource measurement/monitoring.
ASNET network activity during 2011 E. Prokhorenko Yerevan 2012, March 21.
2  Supervisor : MENG Sreymom  SNA 2012_Group4  Group Member  CHAN SaratYUN Sinot  PRING SithaPOV Sopheap  CHUT MattaTHAN Vibol  LON SichoeumBEN.
Graphing and statistics with Cacti AfNOG 11, Kigali/Rwanda.
Maintaining and Updating Windows Server Monitoring Windows Server It is important to monitor your Server system to make sure it is running smoothly.
Network Monitoring at HEAnet HEAnet Conference 2006 Ann Harding Network Operations Manager.
Cisco 3 - Switch Perrine. J Page 111/6/2015 Chapter 5 At which layer of the 3-layer design component would users with common interests be grouped? 1.Access.
New Delhi, India Smokeping/Cacti/Munin SANOG 10 Workshop August 29-Sep 2 – New Delhi, India Hervey Allen.
CCNA4 v3 Module 6 v3 CCNA 4 Module 6 JEOPARDY K. Martin.
CIT 470: Advanced Network and System AdministrationSlide #1 CIT 470: Advanced Network and System Administration System Monitoring.
Network Monitoring and Management Conclusions AfNOG 11, Kigali/Rwanda.
Network Management Workshop Apricot 2010 Kuala Lumpur Managing network configuration with RANCID.
Manchester University Tiny Network Element Monitor (MUTiny NEM) A Network/Systems Management Tool Dave McClenaghan, Manchester Computing George Neisser,
Network design Topic 2 Existing network infrastructure.
Peter Kurtz Manager, Network Operations Centre.
April 2003 Iosif Legrand MONitoring Agents using a Large Integrated Services Architecture Iosif Legrand California Institute of Technology.
PPDG February 2002 Iosif Legrand Monitoring systems requirements, Prototype tools and integration with other services Iosif Legrand California Institute.
SmokePing.
Network management Network management refers to the activities, methods, procedures, and tools that pertain to the operation, administration, maintenance,
workshop eugene, oregon Measuring Delay with PacNOG 6 Nadi, Fiji
These materials are licensed under the Creative Commons Attribution-Noncommercial 3.0 Unported license (
WINS Monthly Meeting 06/05/2003 WINS Monthly Meeting 06/05/2003.
Complete Control Over Every Aspect of Hosting with Dedicated Hosting.
2008 Taipei, Taiwan An Introduction APRICOT 2008 Network Management Workshop February – Taipei, Taiwan Hervey Allen & Phil.
NetFlow Analyzer Best Practices, Tips, Tricks. Agenda Professional vs Enterprise Edition System Requirements Storage Settings Performance Tuning Configure.
Network Monitoring Sebastian Büttrich, NSRC / IT University of Copenhagen Last edit: February 2012, ICTP Trieste
Torrus software: Overview of challenges and new features Stanislav Sinyagin SwiNOG-16, May 14th 2008, Bern.
'08 Rabat Smokeping & Cacti Network Monitoring & Management Tutorial June 1, 2008 – AfNOG 2008 Hervey Allen.
The GrangeNet NOC Greg Wickham. Contents Goals Design Features Architecture Implementation Future Conclusion.
OPEN SOURCE NETWORK MANAGEMENT TOOLS
Network Management Workshop March – Bangkok, Thailand
Network Operations and Network Management
INFNGRID Monitoring Group report
Delivering a Network Services Portfolio to Ireland’s Schools Network
Smokeping/Cacti/Munin
SUBMITTED BY: NAIMISHYA ATRI(7TH SEM) IT BRANCH
AWS Cloud Computing Masaki.
Presentation transcript:

NOC Tools Donal O’Cearbhaill HEAnet Ltd.

Ireland’s National Education and Research Network Provides Internet services to Irish Universities Broadband for Schools

Free ‘always on’ broadband connectivity to Schools 3 Year Agreement –Dept of Education/Dept of Communication/TIF 3,925+ Schools 7 Access Providers HEAnet backbone network Onward connectivity to Internet & Educational Networks HEAnet Managed Services: Network; Security; Broadband for Schools

Challenges 4,000 schools Highly contended links A lot of satellite connections SLA/Contract enforcement

Installation Rate

Monitoring/ISP Infrastructure 28 Debian/Ubuntu servers 4 Fibrenetix disk arrays –Disk based backup –rsync & application level dumps –Syslog nodes PostgreSQL database Aggregation Routers –7301 –PPPoE –GRE Border/Services Routers –6500, 3750

Tools SmokePing Nagios Rancid Cacti Netflow

SmokePing Latency measurement tool Runs probes in parallel >3,800 hosts RRD backend –Reporting Historical view Acceptance testing Tuning –FPing timeouts decreased –Total number of probes reduced –Satellite frequency reduced

Nagios 4,131 services on 3,905 hosts Top 5 number of hosts on nagios.org Populated by SmokePing and memcache –Nagios runs checks serially –>1 hour vs. 15 mins Nagios populates –sidebar alarms –Schools Up Graph

Rancid Really Awesome New Cisco confIg Differ 3,296 Router configs Maintains history of changes –Mails changes

Cacti 3,900 hosts Data gathering –SNMP –External Perl scripts Graph templating Database driven Cricket: 27 mins –Perl Cacti: <5 mins –Cactid –Custom multithreaded C application

Cacti Weathermap

Interconnects

Netflow NfSen is a graphical web based front end for the nfdump netflow tools Query abuse reports Usage reporting

Reporting Daily Reports DNS log reporting Report infected PCs –Top MX lookups –Misconfigurations –Active Directory Netflow –IPs –Schools usage Gigabytes downloaded by schools on 22/03/07: 332 Gigabytes uploaded by schools on 22/03/07 : 48 Total MegaBytes downloaded for Digiweb Satellite: Total MegaBytes uploaded for Digiweb Satellite: 1202 Total MegaBytes downloaded for Digiweb Wireless: Total MegaBytes uploaded for Digiweb Wireless: Total MegaBytes downloaded for ESATBT ADSL: Total MegaBytes uploaded for ESATBT ADSL: 6632 Total MegaBytes downloaded for HSData Wireless: 3047 Total MegaBytes uploaded for HSData Wireless: 575 …..

Logging Syslog server per PoP –Servers –Routers Logcheck –Logfile scanner IP to school identifier –Mapping IP to school

Server Monitoring SSH keys –Sharing keys/fingerprints –High overhead SNMP –Less configurable Memcache –Local Perl script –Easy to rollout –Load –Disk Space –Monitor Processes

Memcache Distributed memory caching system Low overhead Speed up dynamic database-driven websites by caching data and objects in memory Developed for LiveJournal –Slashdot –Wikipedia –SourceForge Schools –Nagios –Maps –Server status

Subversion Modern replacement for CVS Provisioning System –Configs ViewCVS Checkins get mailed Schools-noc –Scripts stored on every server –Automatically updated –cron.d

Sidebar Nagios polled every minute Populated into memcache Sidebar alarms Pubcookie single sign-on

Provisioning System Services provisioned –CPE router config –Nagios –RADIUS –Cacti –Cisco ACS (TACACS+) –SmokePing –Fortigate (Content filtering) –Maps –DNS –Webhosting

Provisioning System Text::Template templating system Data stored in authoritative database PostgreSQL’s INET type is brilliant! Perl scripts generate configlets Added to Subversion Perl/Shell provisioning agents handle service restarts etc. Ability to stop all provisioning

Provisioning System Structure

Google Maps

Random things we’ve encountered Predictable traffic levels Smokeping, Nagios and Cricket/Cacti take a lot of tuning to monitor our network Difficult to achieve high bandwidth and high level of reliability in transparent content filter