Download presentation
Presentation is loading. Please wait.
Published byHoratio Stanley Modified over 9 years ago
1
Infrastructure Unit George, Ian, Toby
2
Infrastructure Unit: Areas ● Network ● Server rooms ● Authentication ● Directory services ● Account management
3
Network: infrastructure ● Switches – 7 core switch/routers – 200+ edge switches – 6000+ connected ports – Configuration and monitoring tools – Overall management ● Routers – 12 Linux edge routers
4
Network: services ● DNS – Local zones, DNSSEC-validating resolvers ● NTP ● OpenVPN ● DHCP ● Routing – OSPF, router-discovery
5
Server rooms ● Physical infrastructure – Racks – Power bars ● Consoles – Serial, IPMI ● Monitoring ● E&B and IS liaison
6
Authentication ● Kerberos – INF.ED.AC.UK and FRIEND.INF.ED.AC.UK realms – Cross-realm trust with EASE and other realms – 6000+ user principals – 10k+ host and service principals ● Cosign – Web applications ● kx509 – Not much used now
7
Directory services ● OpenLDAP – User data – Authorization data – Sundry other stuff ● Netgroups ● Automounter maps – Around 25k entries
8
Account management ● Automatic creation and deletion – Tools (prometheus) – Database feeds – Manual configuration files – Kerberos, LDAP and AFS entries created – Lifecycle: accounts gracefully expired and deleted ● (coming shortly!)
Similar presentations
© 2025 SlidePlayer.com. Inc.
All rights reserved.