Project

General

Profile

Activity

From 01/10/2020 to 02/08/2020

02/08/2020

02:03 PM Task #7689: Update certbot on several VMs
Updated:... Dominique Roux

02/06/2020

05:56 PM Task #7696 (Closed): Alping v3.10 template bug: ntdp uses v4 only, and it breaks clock sync
Test alpine v3.11 if clock sync works out of the box && remove alpine v3.10 template.
Check if there are vm-s/servi...
ll nu
04:13 PM Task #7653: Move VMs with routed /64 into their own /64 [was: Instructions for adding /64 to VM]
So in order to prevent my VM breaking on reboot, should I remove /etc/one-context.d/loc-11-dns ? Moris Jones

02/04/2020

05:28 PM Task #7688: Disable rp_filter on router2.place5 (alpine sets =1 on .all and .default)
Added the following to our internal cdist:... Nico Schottelius
05:19 PM Task #7688 (In Progress): Disable rp_filter on router2.place5 (alpine sets =1 on .all and .default)
Nico Schottelius
05:15 PM Task #7688 (Closed): Disable rp_filter on router2.place5 (alpine sets =1 on .all and .default)
... Nico Schottelius
05:24 PM Task #7689 (Seen): Update certbot on several VMs
Dominique Roux
05:24 PM Task #7689 (Rejected): Update certbot on several VMs
From Mail (letsencrypt):... Dominique Roux

02/03/2020

12:58 PM Task #7108 (Seen): Document / update ceph documentation to bootstrap from zero
ll nu

01/31/2020

07:16 PM Task #7649: Sketch a VM backup & restore
The functionality part is complete beside `ungleich-cli` and can be found at https://code.ungleich.ch/ahmedbilal/vm-c... Ahmed Bilal
07:13 PM Task #7650: Synchronise opennebula VMs with etcd
I changed the whole engine, so it is not slow anymore. Previously, I am using pyone library provided by OpenNebula th... Ahmed Bilal
04:16 PM Task #7304 (Rejected): Test NAT64 with distributed routers with joold on alpine
Active-passive Nico Schottelius
04:16 PM Task #7377 (Rejected): Create an active-active NAT64 gateway
Going active-passive. Nico Schottelius

01/28/2020

02:38 PM Task #7650: Synchronise opennebula VMs with etcd
Nico its done. https://code.ungleich.ch/ungleich-public/ungleich-tools/tree/master/opennebula-vm-etcd
1. Putting V...
Ahmed Bilal
10:36 AM Task #7654: Get VMs info from Opennebula and save it in etcd
ping sre team Nico Schottelius
10:35 AM Task #7654: Get VMs info from Opennebula and save it in etcd
clearly a cron job.
Let's create a new (IPv6 only) service VM based on Alpine, which is
dedicated for running statel...
Nico Schottelius
09:31 AM Task #7654: Get VMs info from Opennebula and save it in etcd
We can run it either as cron job or put a sleep in the code.... Ahmed Bilal

01/27/2020

09:29 PM Task #7654: Get VMs info from Opennebula and save it in etcd
Where does it run / update every 10 minutes? Nico Schottelius
05:37 PM Task #7654: Get VMs info from Opennebula and save it in etcd
Done Ahmed Bilal
10:59 AM Task #7654 (Rejected): Get VMs info from Opennebula and save it in etcd
Create a service that gets VMs' information from OpenNebula and save it in etcd.
It should also update/sync this inf...
Ahmed Bilal
04:58 PM Task #7632: Setup rados / s3 storage on ceph
... ll nu
01:25 PM Task #7650: Synchronise opennebula VMs with etcd
I actually created this ticket some time ago Nico Schottelius

01/26/2020

05:56 PM Task #7641: create images for uncloud
* The image definition scripts are defined in: https://code.ungleich.ch/uncloud/images
* The images have been upload...
Timothée Floure
10:02 AM Task #7653 (In Progress): Move VMs with routed /64 into their own /64 [was: Instructions for adding /64 to VM]
Good point.
Timothee, can you create a new network for VMs with routed networks so that we can again decide on DNS...
Nico Schottelius

01/25/2020

05:01 PM Task #7653 (Closed): Move VMs with routed /64 into their own /64 [was: Instructions for adding /64 to VM]
Document process for moving VM to /64 rather than /128.
Importantly: customer should modify their name server conf...
Moris Jones

01/24/2020

11:18 AM Task #7649: Sketch a VM backup & restore
h2. OpenNebula testing... Nico Schottelius
11:16 AM Task #7649: Sketch a VM backup & restore
Snapshotting:... Nico Schottelius
10:49 AM Task #7649: Sketch a VM backup & restore
h2. Ceph
It seems ceph even has a limit support:...
Nico Schottelius
10:16 AM Task #7649 (Rejected): Sketch a VM backup & restore
* User wants to have possibility to roll back in time
h2. Implementation
* We can use ceph snapshots
* We migh...
Nico Schottelius
11:08 AM Task #7650 (Rejected): Synchronise opennebula VMs with etcd
* etcd prefix: /opennebula
*
h2. What to synchronise
* /opennebula/vm/<VM id>
** all information about the V...
Nico Schottelius
10:03 AM Task #7636: Find out current retention period for monitoring servers and ensure that data is kept for 5 years
Go with it
redmine@ungleich.ch writes:
Nico Schottelius

01/23/2020

10:57 PM Task #7636: Find out current retention period for monitoring servers and ensure that data is kept for 5 years
it's configured in __dcl_monitoring_server type... Dominique Roux
05:53 PM Task #7632: Setup rados / s3 storage on ceph
Note for production checking: what happens/is required to do if the
certificate is replaced with a new one?
redmine...
Nico Schottelius
05:46 PM Task #7632: Setup rados / s3 storage on ceph
updated conf with ssl
[client.rgw.rgw]
host = rgw
#rgw socket path = /var/run/ceph/ceph.radosgw.gateway.fastcgi....
ll nu
05:30 PM Task #7632: Setup rados / s3 storage on ceph
Radosgw is running. The correct way to start is1:
/usr/bin/radosgw --cluster ceph --name client.rgw.`hostname ...
ll nu
01:41 PM Task #7632: Setup rados / s3 storage on ceph
using this manual the radosgw is configured at rgw.llnu.at
https://access.redhat.com/documentation/en-us/red_hat_c...
ll nu

01/22/2020

03:33 PM Task #7630: Cleanup the DNS64 situation
No. If somebody does not want that, they should remove the appropriate
script below /etc/one-contex.d
redmine@u...
Nico Schottelius
02:00 PM Task #7630: Cleanup the DNS64 situation
What can we do about that the /etc/resolv.conf is rewritten at every reboot?
Would the best be to advise:
chattr +i...
ll nu
09:11 AM Task #7630 (Closed): Cleanup the DNS64 situation

Thanks!
redmine@ungleich.ch writes:
Nico Schottelius

01/21/2020

09:42 PM Task #7632: Setup rados / s3 storage on ceph

redmine@ungleich.ch writes:
Nico Schottelius
07:55 PM Task #7632 (Seen): Setup rados / s3 storage on ceph
ll nu
07:55 PM Task #7631 (Seen): Report details about pleroma problems to upstream
ll nu
02:16 PM Task #7641 (In Progress): create images for uncloud
Timothée Floure
12:38 PM Task #7641 (Closed): create images for uncloud
First images should be the latest alpine, fedora, ubuntu, debian.
How should they be configured:
they should ge...
Sanghee Kim
10:57 AM Task #7545 (In Progress): Switch production LDAPs to cdist-managed alpine
Timothée Floure
10:32 AM Task #7483 (In Progress): Update the __consul cdist type for alpine
I got the same issue with `__consul_agent` on Debian, which I am currently fixing upstream.
https://code.ungleich....
Timothée Floure

01/20/2020

05:11 PM Task #7630 (Feedback): Cleanup the DNS64 situation
See https://redmine.ungleich.ch/projects/open-infrastructure/wiki/The_ungleich_DNS_infrastructure. Timothée Floure
12:06 PM Task #7630 (Seen): Cleanup the DNS64 situation
Timothée Floure
11:03 AM Task #7630 (Closed): Cleanup the DNS64 situation
h2. Old situation
* bind nameservers on routers decide based on source IPv6 address whether to give out NAT64 or n...
Nico Schottelius
03:19 PM Task #7636 (Closed): Find out current retention period for monitoring servers and ensure that data is kept for 5 years
* Looking at monitoring.place6 I see data for less than 90 days.
* My expectation is to be able to zoom out to 5 ye...
Nico Schottelius
03:06 PM Task #7635 (Closed): Create a simple page explaining DNS64/NAT64 for customers
* So that we can reference it in support tickets.
* Include exapmles, how to reach github, show the AAAA record reso...
Nico Schottelius
12:06 PM Task #6694 (Closed): Setup matrix server and bridge matermost into it
Relevant channels have been bridged. Closing. Timothée Floure
12:05 PM Task #7560 (In Progress): Document DNS64 setup for VMs
Timothée Floure
12:05 PM Task #7496 (Closed): Create 2 new IPv6 only unbound based resolving DNS servers providing DNS64
Unbound DNS(64) servers are now monitored by the prometheus blackbox exporter. Closing. Timothée Floure
11:35 AM Task #7632 (Closed): Setup rados / s3 storage on ceph
* Including permissions
* Document the setup
* Document how to use it
Nico Schottelius
11:04 AM Task #7631 (Closed): Report details about pleroma problems to upstream
Follow up with https://git.pleroma.social/pleroma/pleroma-support/issues/10#note_49605
* Create an IPv6 only VM
*...
Nico Schottelius
09:27 AM Task #7629 (Rejected): Add referral link system in dynamicweb (DCL, IPv6OnlyHosting etc)
Referral links are used to reward user/(reviewing website) whenever someone purchase VM (or other service) using thei... Ahmed Bilal

01/19/2020

02:48 PM Task #7543 (Closed): Write image definition script for ubuntu 19.10
The image has been deployed in ONE and configured for the `public-Ubuntu 19.10` and `ipv6only-Ubuntu 19.10` templates... Timothée Floure

01/18/2020

07:39 PM Task #7496: Create 2 new IPv6 only unbound based resolving DNS servers providing DNS64
It's deployed: there's just monitoring to setup before it can be closed. Timothée Floure
01:35 PM Task #7625: Manually fix consul+node_exporter on new router1.place6
... Nico Schottelius
01:27 PM Task #7625: Manually fix consul+node_exporter on new router1.place6
... Nico Schottelius
01:26 PM Task #7625: Manually fix consul+node_exporter on new router1.place6
Use alpine's init script:... Nico Schottelius
01:02 PM Task #7625 (Rejected): Manually fix consul+node_exporter on new router1.place6
... Nico Schottelius

01/15/2020

07:28 PM Task #6671: Setup mastodon/pleroma for ungleich
could we have a 13373r name? ll nu

01/13/2020

07:30 PM Task #7604 (In Progress): Find out why ciara2 was not automatically detected to be offline
* ciara2 is half correctly outside of the consul cluster
** It should actually still be inside the cluster, but mark...
Nico Schottelius
07:28 PM Task #7604 (Rejected): Find out why ciara2 was not automatically detected to be offline
* Consul status / prometheus / alert manager should have noticed Nico Schottelius
06:37 PM Task #7186: Add support for general VPN including IPv4
Errrr what is it with your VPN pricing? Did you go skiing and get altitude sickness?
Market price for VPN services i...
Moris Jones
05:52 PM Task #7544: Write "beginner's guide" for datacenterlight customers
-IPv6 and IPv4: making the services on my IPv6 VM visible to the IPv4 world
-Guido to VM Management tools: dashboard...
Moris Jones
12:01 PM Task #7602 (Rejected): Align dynamicweb / opennebula with uncloud
Stuff that we can & should export from our current setup to etcd in an uncloud alike format:
Prefix for everything...
Nico Schottelius
11:57 AM Task #7601: Setup an SSH jump host
Proxycommand w/ windows exists in putty and usually uses plink - more details soon. Nico Schottelius
11:54 AM Task #7601 (Seen): Setup an SSH jump host
* I am familiar with LDAP-backed auth with nslcd.
* ProxyCommand is standard for SSH bastions, it is even available ...
Timothée Floure
11:12 AM Task #7601 (Rejected): Setup an SSH jump host
* Authenticated against our ldap
* Allows user to connect to our IPv6 networks
The ways for users to use it:
*...
Nico Schottelius
08:37 AM Task #7555 (Closed): Setup uncloud at server11 and server12
Ahmed Bilal
03:14 AM Task #7582 (Closed): Add hostname in uncloud file scanning
Ahmed Bilal
03:14 AM Task #7519 (Closed): uncloud test run 2019-12-21
The above mentioned things were fixed. Ahmed Bilal

01/12/2020

09:18 PM Task #7580: Preparing for matrix-as-a-service
channels that can be exported to IRC or matrix:
* ipv6
* foss
* hacking-and-learning
* Town Square
* datacente...
Nico Schottelius
09:11 PM Task #7580 (In Progress): Preparing for matrix-as-a-service
Timothée Floure
09:10 PM Task #7580: Preparing for matrix-as-a-service
* Synapse and Matrix Cdist types are (almost) OK.
- I missed one small thing in my __postgres upstream cdist patch...
Timothée Floure
09:12 PM Task #6694: Setup matrix server and bridge matermost into it
Everything's in place, we just have to choose the channels to be bridged. Timothée Floure
 

Also available in: Atom