Activity
From 10/31/2019 to 11/29/2019
11/29/2019
- 11:02 PM hack4glarus-2019-winter Task #7382 (Closed): Monitoring at a different level (BPF/Suricata/Cilium)
- Traditional pull based monitoring (nagios et al) is DEAD>
Push based (partly Prometheus, Riemann) is cooler.
But ... - 10:49 PM hack4glarus-2019-winter Task #7381 (Closed): Monitor lorawan temperature sensors with prometheus + grafana
- * For conrod
- 10:37 PM hack4glarus-2019-winter Task #7380 (Closed): Checking out BorgBackup
- Learn to work with the deduplicating archiver with compression and encryption called *BorgBackup (short: Borg)*: http...
- 08:10 PM hack4glarus-2019-winter Task #7373: make a mozilla WebThings Framework
- box
- 08:09 PM hack4glarus-2019-winter Task #7373 (In Progress): make a mozilla WebThings Framework
- Does not work with ipv6 out of the boy
- 04:36 PM hack4glarus-2019-winter Task #7373 (Closed): make a mozilla WebThings Framework
- https://iot.mozilla.org/framework/
- 06:36 PM hack4glarus-2019-winter Task #7378: Document / explore on how to sensibly run docker with a /64
- Is that related to https://redmine.ungleich.ch/issues/7359 ?
- 06:08 PM hack4glarus-2019-winter Task #7378 (Closed): Document / explore on how to sensibly run docker with a /64
- h2. draft 1: "https only"
* Block everything incoming besides https
* Reasoning:
** containers by default insecu... - 06:28 PM Open Infrastructure Task #7377: Create an active-active NAT64 gateway
- ping
- 06:01 PM Open Infrastructure Task #7377 (Rejected): Create an active-active NAT64 gateway
- * session sync & co.
* I'd recommend jool + joold, but open to options - 06:24 PM hack4glarus-2019-winter Task #7366: Finish the first levels of the ungleich-game
- Hints:
* you have an IPv6 address on your computer
* if you let nico know the address, we can route a /64 - 04:31 PM hack4glarus-2019-winter Task #7366: Finish the first levels of the ungleich-game
- Nico Schottelius wrote:
> * Probably for Marc & Den
Den's here. I think I can work more on the task. At least I'v... - 11:53 AM hack4glarus-2019-winter Task #7366 (Closed): Finish the first levels of the ungleich-game
- * Probably for Marc & Den
The story:...
* smallest network: /64 -> 64 bit
* there is a (web)server
h2. step... - 06:09 PM hack4glarus-2019-winter Task #7379 (Closed): Explore an "any name DNS service"
- ... and probably have it as an self hosted offer, too
* similar to "what three words"? - 05:53 PM hack4glarus-2019-winter Task #7376 (Closed): Packer+Vagrant for OpenBSD (cont'd)
- Continuing https://redmine.ungleich.ch/issues/6736
- 04:44 PM hack4glarus-2019-winter Task #7372 (In Progress): make a mozilla WebThings gateway
- 04:36 PM hack4glarus-2019-winter Task #7372 (Closed): make a mozilla WebThings gateway
- https://iot.mozilla.org/gateway/
- 04:39 PM hack4glarus-2019-winter Task #7375 (Closed): make a mozilla WebThings notifier (telegram bot)
- https://hacks.mozilla.org/2019/08/using-webthings-gateway-notifications-as-a-warning-system-for-your-home/
- 04:37 PM hack4glarus-2019-winter Task #7374 (Closed): make a mozilla WebThings UI extension
- https://hacks.mozilla.org/2019/11/ui-extensions-webthings-gateway/
- 04:35 PM hack4glarus-2019-winter Task #7371 (Closed): mozilla iot
- mozilla iot, but they mean wot, they are not exatly sure about it...
you can build a gateway and connect some things... - 04:34 PM hack4glarus-2019-winter Task #7359: Define how to properly use docker in ipv6 only networks
- Nico Schottelius wrote:
> * How to do https?
> * How to do firewalling?
> * How to incorporate letsencrypt?
I c... - 11:58 AM hack4glarus-2019-winter Task #7368 (Closed): Setup an ARM64 virtualisation server with alpine
- * Running ucloud (?)
- 11:57 AM hack4glarus-2019-winter Task #7367 (Closed): Setup ARM64 IPv6 only netbooting
- * With the ARM64 dev servers
- 11:52 AM hack4glarus-2019-winter Task #7365 (Closed): Create an IPv6 only bootable network
- * bridging with ipxe/usb stick
* get 2 devices for netbooting
* get 4 usb sticks
* install ipxe to the usb stick
... - 11:50 AM hack4glarus-2019-winter Task #7364: Crash course in cdist
- /descr
- 11:39 AM hack4glarus-2019-winter Task #7364: Crash course in cdist
- ehem: https://cdi.st
- 11:35 AM hack4glarus-2019-winter Task #7364 (Closed): Crash course in cdist
- Shortish session generally addressing these questions:
- What is cdist?
https://cdi.st is a cross-platform provis... - 11:47 AM hack4glarus-2019-winter Task #7363 (Rejected): cdist crash course (~30m)
- Duplicate
- 11:30 AM hack4glarus-2019-winter Task #7363 (Rejected): cdist crash course (~30m)
- For anyone who is interested in learning about a shell based configuration management system
- 11:18 AM hack4glarus-2019-winter Task #7358: Compare mastodon servers && create cdist manifest of the easier one
- From an operational viewpoint Pleroma comes highly recommended, e.g.: https://blog.soykaf.com/post/what-is-pleroma/
... - 12:37 AM hack4glarus-2019-winter Task #7356: Provide the most awesome self hosted apps
- Cool stuff:
* https://github.com/pinry/pinry
11/28/2019
- 11:53 PM hack4glarus-2019-winter Task #7359 (Closed): Define how to properly use docker in ipv6 only networks
- * How to do https?
* How to do firewalling?
* How to incorporate letsencrypt? - 11:52 PM hack4glarus-2019-winter Task #7358 (Closed): Compare mastodon servers && create cdist manifest of the easier one
- 11:50 PM hack4glarus-2019-winter Task #7356 (Closed): Provide the most awesome self hosted apps
- * Loosely based on https://github.com/awesome-selfhosted/awesome-selfhosted.git/
* VMs with /64 provided by Balazs
... - 10:56 PM hack4glarus-2019-winter Task #7354 (Closed): Create a NAT4664 PoC
- Idea:...
- 08:33 PM Open Infrastructure Task #6872 (Closed): Create ucloud-vm
- 08:32 PM Open Infrastructure Task #6871 (Closed): Create ucloud-api
- 08:28 PM Open Infrastructure Task #6914 (Closed): ucloud-image-scanner
- 08:25 PM Open Infrastructure Task #6875 (Closed): Create ucloud-scheduler
- 04:01 PM hack4glarus-2019-winter Task #7352 (Closed): Find a way to update mikrotik routers in IPv6 only networks
- * Download packets && scp && ssh?
- 03:41 PM hack4glarus-2019-winter Task #7350 (Closed): Add automatic / scheduled configuration support to cdist
- To update list of hosts automatically
- 03:39 PM hack4glarus-2019-winter Task #7349 (Closed): Create a wifi bridge from Diesbach to Luchsingen
- * Using 6 access points
- 03:38 PM hack4glarus-2019-winter Task #7348 (Closed): Create a devuan ucloud image
- 03:38 PM hack4glarus-2019-winter Task #7347 (Closed): Create an Alpine ucloud image
- * Maybe packer?
- 03:37 PM hack4glarus-2019-winter Task #7346 (Closed): Create an OpenBSD ucloud image
- 03:36 PM Open Infrastructure Task #7345 (Closed): Cleanup & upstream matrix-related types
- * So that we can offer matrix-as-a-service
* Consider if it is possible to run matrix on a v6 only VM and proxy into... - 03:36 PM hack4glarus-2019-winter Task #7344 (Closed): Create a matrix/mattermost bridge to chat.ungleich.ch and a cdist type for it
- 01:48 PM hack4glarus-2019-winter Task #7343 (Closed): Create an automated routing daemon (IPv6)
- * User A wants to have a network
* Gets a new network
* Routers will update their routes
** maybe using bgp/bird?
... - 01:45 PM hack4glarus-2019-winter Task #7342 (Closed): Create an RFC for adding DoT and DoH options to IPv6 router advertisements
- 01:45 PM hack4glarus-2019-winter Task #7341 (Closed): Port ucloud to OpenBSD
11/27/2019
- 06:37 PM Open Infrastructure Task #7337 (Rejected): Import network documentation to Netbox
- 11:40 AM Open Infrastructure Task #7335 (Rejected): Add alpine ceph install/helper scripts to ungleich-tools
- Need to revise/polish before adding
11/25/2019
- 11:58 AM Open Infrastructure Task #7112 (Closed): Userguide for ucloud
- 11:58 AM Open Infrastructure Task #7283 (Closed): Cleanups for ucloud 0.0.2
11/20/2019
- 09:14 AM Open Infrastructure Task #7283 (Resolved): Cleanups for ucloud 0.0.2
11/17/2019
- 02:34 PM Open Infrastructure Task #7318 (Closed): Upgrade Alpine Linux to 3.10
- * UPdated django & pushed out.
11/16/2019
- 02:17 PM Open Infrastructure Task #7318: Upgrade Alpine Linux to 3.10
- * Adding Alpine 3.10 to ipv6onlyhosting
** add entry in the db
* updating vm template list... - 02:04 PM Open Infrastructure Task #7318: Upgrade Alpine Linux to 3.10
- * ensuring that opennebula permissions are ok
** use to group/other of the new template
** use to group/other of th... - 02:03 PM Open Infrastructure Task #7318: Upgrade Alpine Linux to 3.10
- * Image upgrade and saved in place5
Transferring to place6:... - 01:22 PM Open Infrastructure Task #7318 (Closed): Upgrade Alpine Linux to 3.10
- 01:21 PM Open Infrastructure Task #7161 (Rejected): Create APKBUILD for jool, submit jool to alpine
11/15/2019
- 03:59 PM Open Infrastructure Task #7317 (Rejected): Create placeA @Diesbach
- To seperate the datacenter and hackernet.
- Router: BPG, RA, ipv6 only, secured, dns
11/14/2019
- 07:10 PM Open Infrastructure Task #7304: Test NAT64 with distributed routers with joold on alpine
- Adding selected addresses instead of using only the existing one:...
- 07:01 PM Open Infrastructure Task #7304: Test NAT64 with distributed routers with joold on alpine
- Sessions w/ tcp visible:...
- 06:37 PM Open Infrastructure Task #7304: Test NAT64 with distributed routers with joold on alpine
- Testing from the 2nd router (locally created packets don't work):...
- 06:30 PM Open Infrastructure Task #7304: Test NAT64 with distributed routers with joold on alpine
- ...
- 06:20 PM Open Infrastructure Task #7304: Test NAT64 with distributed routers with joold on alpine
- ...
11/11/2019
- 02:51 PM Open Infrastructure Task #7312 (Rejected): Ensure that all available disks are correctly used in ceph
- 1. Create a graph / promotheus query to list the disk sizes of each host
2. Create a graph / promotheus query to lis...
11/09/2019
- 05:29 PM Open Infrastructure Task #7307 (Closed): Update __ungleich_bgp_router for IPv6 based multip bgp
- * This can remove the dependency on IPv4 internally
- 03:59 PM Open Infrastructure Task #7306: Phase in new routers
- ...
- 03:53 PM Open Infrastructure Task #7306 (Rejected): Phase in new routers
- * This will replace router{1,2}.place5
* Based on alpine, no keepalived
h2. Features / steps
* create initial ...
11/07/2019
- 12:12 PM Open Infrastructure Task #7304 (Rejected): Test NAT64 with distributed routers with joold on alpine
- To replace tayga
* place5:
** map outgoing traffic to 185.203.112.1 (?)
* place6:
** map outgoing traffic to ... - 12:01 PM Open Infrastructure Task #7303 (Closed): Change place5 coworking to IPv6 only
- Restarted dhcpd, reconnected with a client, all good.
- 11:58 AM Open Infrastructure Task #7303: Change place5 coworking to IPv6 only
- Added coworking IPv6 network to dns64 translations...
- 11:54 AM Open Infrastructure Task #7303 (In Progress): Change place5 coworking to IPv6 only
- Commented out the dhcp / ipv4 network:...
- 11:51 AM Open Infrastructure Task #7303 (Closed): Change place5 coworking to IPv6 only
- * Currently NAT44 has an issue.
* Instead of fixing it, change the network to IPv6 only + NAT64
11/06/2019
- 11:53 AM queue Task #6686 (Rejected): Implement game challenges 7-
- will create another task for this later
11/04/2019
- 09:56 PM Open Infrastructure Task #7296: Test cpanel on IPv6 only infrastructure (cpanel 84.0.6)
- cpanel not to be continued / not to be supported for longer time:...
- 12:18 PM Open Infrastructure Task #7296 (Closed): Test cpanel on IPv6 only infrastructure (cpanel 84.0.6)
- Currently does not work on IPv6 only VMs. Send a report to cpanel via Twitter:
https://twitter.com/ungleich/status... - 02:20 PM Open Infrastructure Task #7187 (Resolved): Configure prometheus blackbox exporter to monitor heise.de via IPv4 and IPv6
- Sorry, forgot to update the ticket...
The blackbox exporter now checks devuan.org and heise.de via http one time v...
11/03/2019
- 05:47 PM Open Infrastructure Task #7296: Test cpanel on IPv6 only infrastructure (cpanel 84.0.6)
- Works on dual stack, but not IPv6 only.
- 04:31 PM Open Infrastructure Task #7296: Test cpanel on IPv6 only infrastructure (cpanel 84.0.6)
- Trying on a dual stack VM: continues to install further
- 04:22 PM Open Infrastructure Task #7296: Test cpanel on IPv6 only infrastructure (cpanel 84.0.6)
- Try 2 w/ centos7:...
- 04:14 PM Open Infrastructure Task #7296: Test cpanel on IPv6 only infrastructure (cpanel 84.0.6)
- Debian 10 not supported:...
- 04:11 PM Open Infrastructure Task #7296 (Closed): Test cpanel on IPv6 only infrastructure (cpanel 84.0.6)
- As far as I remember they used to have IPv4 addresses hardcoded -- let's see if that's still the case.
11/02/2019
- 04:56 PM Open Infrastructure Task #7191: Setup time servers and monitor time differences
- Please verify whether the alerts are correct according to above mentioned criteria https://monitoring.place6.ungleich...
- 04:38 PM Open Infrastructure Task #7283: Cleanups for ucloud 0.0.2
- Now, using process instead of threads.
- 01:22 PM Open Infrastructure Task #7283: Cleanups for ucloud 0.0.2
- We can create new ones, but suppose we want to change some parameters i.e passing certificates path when opening conn...
- 11:43 AM Open Infrastructure Task #7283: Cleanups for ucloud 0.0.2
- Not sure if I agree with you in terms of sharing - why would we want to
share the etcd_client handle and not realloca... - 10:12 AM Open Infrastructure Task #7283: Cleanups for ucloud 0.0.2
- Nico Schottelius wrote:
> * host/main.py: do not hard code /var/vm -> read this from a key in etcd
> ** Not sure if... - 01:00 AM Open Infrastructure Task #7295 (Rejected): Flow 10: as a sysadmin, I want to be able to see statistics
- * how many vms running
* how many vms on which server running
* how much ram used (/per server)
* how much money i... - 12:59 AM Open Infrastructure Task #7294 (Rejected): Flow 9: as a user I want to have an overview of my spendings and bills
- 12:58 AM Open Infrastructure Task #7293 (Rejected): Flow 8: As a user I want to be able to order a new network and use it
- * variant1: layer 2 only
* variant2: ipam
* variant3: ipam+routing (default)
A user can assign/add it to any amo... - 12:54 AM Open Infrastructure Task #7292 (Rejected): Flow 7: as a sysadmin I want to be able to migrate VMs
- * for whatever reason
* live migration
* non-live migration - 12:53 AM Open Infrastructure Task #7291 (Rejected): Flow 6: as a sysadmin I want to know / install all requirements
- * router
** for networks, firewall, etc.
** for nat64
** at least 1
** n at maximum
* server
** at least 1
** ... - 12:51 AM Open Infrastructure Task #7290 (Rejected): Flow 5: as a user I want to map an IPv4 address to another VM
- * Change the assignment / mapping
* Will require change in jool - 12:50 AM Open Infrastructure Task #7289 (Rejected): Flow 4: As a user I want to have a dualstack reachable VM
- * Order a dual stack VM
** Creates NAT64 mapping additional
** Need to expose the information to the user
* Ensure... - 12:49 AM Open Infrastructure Task #7288 (Rejected): Flow 3: As a user I want to order a VM with my own OS (IPv6 only)
- * Image format
* How to upload
* How to create an image/bootable from it
* What to change in the image (ssh, metad... - 12:48 AM Open Infrastructure Task #7287 (Rejected): Flow 2: As a user I want to order an IPv6 only VM (via cli) (existing OS)
- * create account on uotp enabled server
* Add credit card (?)
* go to website (?)
* Order VM via cli
* User can l... - 12:46 AM Open Infrastructure Task #7286 (Closed): Flow 1: as a sysadmin, I want to setup ucloud w/o ceph and run a VM
- Write doc/check it's there
* How to get all components
* What to prepare outside of ucloud
* all steps until 1 V... - 12:43 AM Open Infrastructure Task #7285 (Rejected): Flows to implement and do document for go live (parent)
11/01/2019
- 10:05 PM Open Infrastructure Task #7284 (Closed): router1.place6 phase back in
- h2. Step 1: routing setup
* Accept all networks from upstreams and ungleich peers
* don't announce any network
*... - 09:14 PM Open Infrastructure Task #7283 (Closed): Cleanups for ucloud 0.0.2
- * host/main.py: do not hard code /var/vm -> read this from a key in etcd
** Not sure if we want to use threading or ...
10/31/2019
- 07:42 PM Open Infrastructure Task #7191: Setup time servers and monitor time differences
- -I think that the prometheus query @node_ntp_offset@ would be the one we needed. For more details, please look https:...
- 06:56 PM Open Infrastructure Task #7191: Setup time servers and monitor time differences
- -Install ntp-
-apt install ntp-
-service ntp start-
-To enable, ntp collector run the following command on t... - 09:19 AM Open Infrastructure Task #7278: Define how networking works in ucloud
- Currently, I setup ucloud with bridged networking (radvd + rdnssd).
Also available in: Atom