Page MenuHomePhabricator

cmooney (Cathal Mooney)
SRE (netops)

Today

  • Clear sailing ahead.

Tomorrow

  • Clear sailing ahead.

Monday

  • Clear sailing ahead.

User Details

User Since
May 10 2021, 3:25 PM (184 w, 4 d)
Availability
Available
IRC Nick
topranks
LDAP User
Cathal Mooney
MediaWiki User
CMooney (WMF) [ Global Accounts ]

Recent Activity

Yesterday

cmooney added a comment to T380503: Replace optics in cloudsw1-d5-eqiad et-0/0/52 and cloudsw1-e4-eqiad et-0/0/54.

Thanks @VRiley-WMF! Seems ok so far but we can make a call Monday based on if we see errors on the link or not (clean since the swap).

Fri, Nov 22, 5:59 PM · SRE, ops-eqiad, Cloud-Services, netops, DC-Ops, Infrastructure-Foundations
cmooney added a comment to T380503: Replace optics in cloudsw1-d5-eqiad et-0/0/52 and cloudsw1-e4-eqiad et-0/0/54.

This port bounced again overnight:

cmooney@cloudsw1-d5-eqiad> show log messages.1.gz | match "10.64.147.5|2620:0:861:fe0e::2|et-0/0/52" | match "ifOper" | except ".0$" 
Nov 22 00:22:55  cloudsw1-d5-eqiad mib2d[17046]: SNMP_TRAP_LINK_DOWN: ifIndex 682, ifAdminStatus up(1), ifOperStatus down(2), ifName et-0/0/52
Nov 22 00:22:56  cloudsw1-d5-eqiad mib2d[17046]: SNMP_TRAP_LINK_UP: ifIndex 682, ifAdminStatus up(1), ifOperStatus up(1), ifName et-0/0/52
Nov 22 00:22:58  cloudsw1-d5-eqiad mib2d[17046]: SNMP_TRAP_LINK_DOWN: ifIndex 682, ifAdminStatus up(1), ifOperStatus down(2), ifName et-0/0/52
Nov 22 00:22:59  cloudsw1-d5-eqiad mib2d[17046]: SNMP_TRAP_LINK_UP: ifIndex 682, ifAdminStatus up(1), ifOperStatus up(1), ifName et-0/0/52
Nov 22 00:23:04  cloudsw1-d5-eqiad mib2d[17046]: SNMP_TRAP_LINK_DOWN: ifIndex 682, ifAdminStatus up(1), ifOperStatus down(2), ifName et-0/0/52
Nov 22 00:23:06  cloudsw1-d5-eqiad mib2d[17046]: SNMP_TRAP_LINK_UP: ifIndex 682, ifAdminStatus up(1), ifOperStatus up(1), ifName et-0/0/52
Nov 22 00:23:06  cloudsw1-d5-eqiad mib2d[17046]: SNMP_TRAP_LINK_DOWN: ifIndex 682, ifAdminStatus up(1), ifOperStatus down(2), ifName et-0/0/52
Nov 22 00:23:07  cloudsw1-d5-eqiad mib2d[17046]: SNMP_TRAP_LINK_UP: ifIndex 682, ifAdminStatus up(1), ifOperStatus up(1), ifName et-0/0/52
Nov 22 00:23:11  cloudsw1-d5-eqiad mib2d[17046]: SNMP_TRAP_LINK_DOWN: ifIndex 682, ifAdminStatus up(1), ifOperStatus down(2), ifName et-0/0/52
Nov 22 00:23:13  cloudsw1-d5-eqiad mib2d[17046]: SNMP_TRAP_LINK_UP: ifIndex 682, ifAdminStatus up(1), ifOperStatus up(1), ifName et-0/0/52
Nov 22 00:23:14  cloudsw1-d5-eqiad mib2d[17046]: SNMP_TRAP_LINK_DOWN: ifIndex 682, ifAdminStatus up(1), ifOperStatus down(2), ifName et-0/0/52
Nov 22 00:23:16  cloudsw1-d5-eqiad mib2d[17046]: SNMP_TRAP_LINK_UP: ifIndex 682, ifAdminStatus up(1), ifOperStatus up(1), ifName et-0/0/52
Nov 22 00:23:20  cloudsw1-d5-eqiad mib2d[17046]: SNMP_TRAP_LINK_DOWN: ifIndex 682, ifAdminStatus up(1), ifOperStatus down(2), ifName et-0/0/52
Nov 22 00:23:20  cloudsw1-d5-eqiad mib2d[17046]: SNMP_TRAP_LINK_UP: ifIndex 682, ifAdminStatus up(1), ifOperStatus up(1), ifName et-0/0/52
Nov 22 00:23:21  cloudsw1-d5-eqiad mib2d[17046]: SNMP_TRAP_LINK_DOWN: ifIndex 682, ifAdminStatus up(1), ifOperStatus down(2), ifName et-0/0/52
Nov 22 00:23:22  cloudsw1-d5-eqiad mib2d[17046]: SNMP_TRAP_LINK_UP: ifIndex 682, ifAdminStatus up(1), ifOperStatus up(1), ifName et-0/0/52
Fri, Nov 22, 9:57 AM · SRE, ops-eqiad, Cloud-Services, netops, DC-Ops, Infrastructure-Foundations

Thu, Nov 21

cmooney added a comment to T379790: Reimage one of the wikikube-worker1240 to wikikube-worker1304 node in eqiad as a replacement for wikikube-ctrl1001.

A 10G connection has been placed into port 25 and connected to wikikube-worker1290.

Thu, Nov 21, 5:04 PM · SRE, DC-Ops, ops-eqiad, Patch-For-Review, Kubernetes, netops, serviceops, Infrastructure-Foundations
cmooney triaged T380503: Replace optics in cloudsw1-d5-eqiad et-0/0/52 and cloudsw1-e4-eqiad et-0/0/54 as High priority.

The Cloud-Services project tag is not intended to have any tasks. Please check the list on https://phabricator.wikimedia.org/project/profile/832/ and replace it with a more specific project tag to this task. Thanks!

Thu, Nov 21, 4:32 PM · SRE, ops-eqiad, Cloud-Services, netops, DC-Ops, Infrastructure-Foundations
cmooney closed T380451: Lumen codfw-ulsfo down (Nov 2024) as Resolved.

From Lumen:

2024-11-21 12:38:45 GMT - Splicing has commenced at the south end. Service affecting alarms are expected to begin clearing.
Thu, Nov 21, 3:14 PM · Infrastructure-Foundations, netops
cmooney added a comment to T380451: Lumen codfw-ulsfo down (Nov 2024).

Seems to be back up:

Nov 21 13:51:02  cr4-ulsfo rpd[29932]: RPD_OSPF_NBRUP: OSPF neighbor 198.35.26.203 (realm ospf-v2 xe-0/1/1.0 area 0.0.0.0) state changed from Exchange to Full due to ExchangeDone (event reason: DBD exchange of slave completed)
Thu, Nov 21, 1:52 PM · Infrastructure-Foundations, netops

Wed, Nov 20

cmooney created P71105 (An Untitled Masterwork).
Wed, Nov 20, 4:57 PM

Tue, Nov 19

cmooney added a project to T379790: Reimage one of the wikikube-worker1240 to wikikube-worker1304 node in eqiad as a replacement for wikikube-ctrl1001: ops-eqiad.

Ok. So I've tested the "move server" script for this host and it's worked as expected. Some values we need to fill in despite the fact they are not changing, such as the switch and the rack unit. The "switch interface" I just picked a free number within a block of 10G ones based on what was already used.

Tue, Nov 19, 6:00 PM · SRE, DC-Ops, ops-eqiad, Patch-For-Review, Kubernetes, netops, serviceops, Infrastructure-Foundations
cmooney created P71101 (An Untitled Masterwork).
Tue, Nov 19, 5:53 PM

Mon, Nov 18

cmooney triaged T379790: Reimage one of the wikikube-worker1240 to wikikube-worker1304 node in eqiad as a replacement for wikikube-ctrl1001 as Medium priority.
Mon, Nov 18, 3:51 PM · SRE, DC-Ops, ops-eqiad, Patch-For-Review, Kubernetes, netops, serviceops, Infrastructure-Foundations
cmooney triaged T379778: Decom prod infra side of the ulsfo-office link as Medium priority.
Mon, Nov 18, 3:48 PM · DC-Ops, ops-ulsfo, netops, Infrastructure-Foundations, procurement, SRE
cmooney added a comment to T379790: Reimage one of the wikikube-worker1240 to wikikube-worker1304 node in eqiad as a replacement for wikikube-ctrl1001.

Cool, thanks. In that case, I randomly picked wikikube-worker1290 and let's take it from there.

Mon, Nov 18, 11:41 AM · SRE, DC-Ops, ops-eqiad, Patch-For-Review, Kubernetes, netops, serviceops, Infrastructure-Foundations

Fri, Nov 15

cmooney added a subtask for T268802: Manage frack switches with Netbox: Unknown Object (Task).
Fri, Nov 15, 3:47 PM · Infrastructure-Foundations, SRE, netops, fundraising-tech-ops
cmooney removed a subtask for T377996: Manage fundraising network elements from Netbox: Unknown Object (Task).
Fri, Nov 15, 3:46 PM · netops, Infrastructure-Foundations, SRE
cmooney closed Restricted Task, a subtask of T377996: Manage fundraising network elements from Netbox, as Resolved.
Fri, Nov 15, 3:46 PM · netops, Infrastructure-Foundations, SRE

Thu, Nov 14

cmooney created P71051 (An Untitled Masterwork).
Thu, Nov 14, 6:07 PM
cmooney created P71048 (An Untitled Masterwork).
Thu, Nov 14, 6:00 PM
cmooney updated subscribers of T371435: Q1:eqiad:frack network upgrade tracking task.

I'd hand this over to either John or Valerie as ops-eqiad for them to remove any devices and cables.

Thu, Nov 14, 12:03 PM · SRE, fundraising-tech-ops, netops, ops-eqiad, Infrastructure-Foundations, DC-Ops
cmooney edited P71040 frdb2004 ss stats.
Thu, Nov 14, 11:56 AM
cmooney edited P71040 frdb2004 ss stats.
Thu, Nov 14, 11:54 AM
cmooney updated the title for P71042 FW/IPsec ping test while db throughput was low / retransmits present from untitled to FW/IPsec ping test while db throughput was low / retransmits present.
Thu, Nov 14, 11:48 AM
cmooney created P71042 FW/IPsec ping test while db throughput was low / retransmits present.
Thu, Nov 14, 11:48 AM
cmooney created P71041 (An Untitled Masterwork).
Thu, Nov 14, 11:44 AM
cmooney created P71040 frdb2004 ss stats.
Thu, Nov 14, 11:22 AM
cmooney edited P71039 (An Untitled Masterwork).
Thu, Nov 14, 11:13 AM
cmooney created P71039 (An Untitled Masterwork).
Thu, Nov 14, 11:05 AM

Wed, Nov 13

cmooney added a comment to T379790: Reimage one of the wikikube-worker1240 to wikikube-worker1304 node in eqiad as a replacement for wikikube-ctrl1001.

Polling Netbox to find what switch each of those are connected to it appears none of them in rows A-D are connected to a 10G capable switch.

Wed, Nov 13, 6:41 PM · SRE, DC-Ops, ops-eqiad, Patch-For-Review, Kubernetes, netops, serviceops, Infrastructure-Foundations
cmooney updated subscribers of T371435: Q1:eqiad:frack network upgrade tracking task.

@RobH the migration work is now done, all that remains is to remove the old devices and any cables connecting to them and make sure netbox is updated to match. Not sure on the exact process for that?

Wed, Nov 13, 6:28 PM · SRE, fundraising-tech-ops, netops, ops-eqiad, Infrastructure-Foundations, DC-Ops
cmooney closed T377381: Frack eqiad network upgrade: design, installation and configuration as Resolved.

@Jclark-ctr I've erased the config on all the old devices now, so feel free to remove at any point. I'll check what the normal process if on that in terms of tasks etc, for now I'll close this one as the work is complete.

Wed, Nov 13, 6:26 PM · DC-Ops, ops-eqiad, fundraising-tech-ops, netops, Infrastructure-Foundations, SRE
cmooney closed T377381: Frack eqiad network upgrade: design, installation and configuration, a subtask of T371435: Q1:eqiad:frack network upgrade tracking task, as Resolved.
Wed, Nov 13, 6:26 PM · SRE, fundraising-tech-ops, netops, ops-eqiad, Infrastructure-Foundations, DC-Ops
cmooney added a comment to T379283: IPv6 support in cloud-private.

I skimmed through T187929: Cloud IPv6 subnets but couldn't see these mentioned specifically. Did you plan something for these already or do we need to figure them out here?

Wed, Nov 13, 12:52 PM · User-aborrero, IPv6, Cloud-VPS, cloud-services-team

Tue, Nov 12

cmooney added a comment to T377381: Frack eqiad network upgrade: design, installation and configuration.

Migration work is now complete, bastion and all hosts are reachable again following the moves. BGP is established to both core routers from the new firewall pair and everything looks good. Management is reachable directly from the firewalls on reth1, IPsec tunnel to codfw is working with the config built by automation also.

Tue, Nov 12, 4:23 PM · DC-Ops, ops-eqiad, fundraising-tech-ops, netops, Infrastructure-Foundations, SRE
cmooney added a comment to T377381: Frack eqiad network upgrade: design, installation and configuration.

@Jgreen @Dwisehaupt I think we have broadly two options for how to proceed today:

Tue, Nov 12, 12:37 PM · DC-Ops, ops-eqiad, fundraising-tech-ops, netops, Infrastructure-Foundations, SRE
cmooney added a comment to T347411: Drive host network config from Netbox, and move away from ifupdown.

Another complication I see is that on a SuperMicro device there is no ID_NET_NAME_ONBOARD populated, whereas on a Dell there is (though we can perhaps disable with above BIOS toggle). See P71018.

Tue, Nov 12, 11:17 AM · User-aborrero, Infrastructure-Foundations, SRE
cmooney created P71018 (An Untitled Masterwork).
Tue, Nov 12, 11:15 AM
cmooney created P71016 Go go gadget NIC .
Tue, Nov 12, 11:04 AM
cmooney added a comment to T347411: Drive host network config from Netbox, and move away from ifupdown.

Certain NICs in our estate are not seen as 'onboard', and expose no 'acpi index'. This results in no ID_NET_NAME_ONBOARD being populated for them, in which case the system does use ID_NET_NAME_PATH for the name

Tue, Nov 12, 10:41 AM · User-aborrero, Infrastructure-Foundations, SRE
cmooney created P71010 udevadm net link info.
Tue, Nov 12, 10:20 AM
cmooney added a comment to T379549: Extend sre.network.configure-switch-interfaces cookbook to add sflow and qos config.

I discussed this briefly with @ayounsi on irc and while this is probably a good idea it won't, as things stand, prevent us getting emails from the automated homer diff. Reason being the order of commands causes a diff and homer will apply them in a different order (it makes no difference to device operation).

Tue, Nov 12, 10:11 AM · Infrastructure-Foundations, netops, SRE
cmooney added a comment to T362392: Routed Ganeti: Add support for VM BGP.

Adding the BFD statement works fine for v4, but on the hypervisor side I don't think it can be added for v6 in the current state of things.

Tue, Nov 12, 9:30 AM · Patch-For-Review, Ganeti

Mon, Nov 11

cmooney edited P71000 (An Untitled Masterwork).
Mon, Nov 11, 9:22 PM
cmooney created P71000 (An Untitled Masterwork).
Mon, Nov 11, 9:03 PM
cmooney claimed T377996: Manage fundraising network elements from Netbox.
Mon, Nov 11, 7:04 PM · netops, Infrastructure-Foundations, SRE
cmooney added a subtask for T377996: Manage fundraising network elements from Netbox: Unknown Object (Task).
Mon, Nov 11, 7:04 PM · netops, Infrastructure-Foundations, SRE
cmooney claimed T379549: Extend sre.network.configure-switch-interfaces cookbook to add sflow and qos config.
Mon, Nov 11, 11:48 AM · Infrastructure-Foundations, netops, SRE
cmooney triaged T379549: Extend sre.network.configure-switch-interfaces cookbook to add sflow and qos config as Low priority.
Mon, Nov 11, 11:45 AM · Infrastructure-Foundations, netops, SRE

Fri, Nov 8

cmooney added a comment to T377381: Frack eqiad network upgrade: design, installation and configuration.

I'd a chat with @Jgreen on irc about the above and he confirmed all those hosts are decommed. We're a little perplexed as to what the switch ports are plugged into that makes them show "up", ad the hosts don't appear to be in the rack, but for now we will plan to not migrate those ports to the new switches.

Fri, Nov 8, 3:15 PM · DC-Ops, ops-eqiad, fundraising-tech-ops, netops, Infrastructure-Foundations, SRE
cmooney added a comment to T377381: Frack eqiad network upgrade: design, installation and configuration.

@Jgreen @Dwisehaupt I was doing some prep work on T377996 - looking at step 1 to import the existing data into Netbox (step 2 will be to get the new server provisioning flow in place which I'll tackle next).

Fri, Nov 8, 1:43 PM · DC-Ops, ops-eqiad, fundraising-tech-ops, netops, Infrastructure-Foundations, SRE

Thu, Nov 7

cmooney updated the task description for T377381: Frack eqiad network upgrade: design, installation and configuration.
Thu, Nov 7, 6:21 PM · DC-Ops, ops-eqiad, fundraising-tech-ops, netops, Infrastructure-Foundations, SRE
cmooney added a comment to T377381: Frack eqiad network upgrade: design, installation and configuration.

@Jclark-ctr as discussed I believe we should have a load of copper SFPs from T369557.

Thu, Nov 7, 5:34 PM · DC-Ops, ops-eqiad, fundraising-tech-ops, netops, Infrastructure-Foundations, SRE

Wed, Nov 6

cmooney added a comment to T377381: Frack eqiad network upgrade: design, installation and configuration.

These two switches have been removed from racks.
asw2-d5-eqiad
cloudsw2-c8-eqiad

Wed, Nov 6, 8:54 PM · DC-Ops, ops-eqiad, fundraising-tech-ops, netops, Infrastructure-Foundations, SRE
cmooney added a comment to T377381: Frack eqiad network upgrade: design, installation and configuration.

All, just to be aware I hit another snag this evening which may be problematic.

Wed, Nov 6, 7:21 PM · DC-Ops, ops-eqiad, fundraising-tech-ops, netops, Infrastructure-Foundations, SRE
cmooney added a comment to T377381: Frack eqiad network upgrade: design, installation and configuration.
Wed, Nov 6, 6:28 PM · DC-Ops, ops-eqiad, fundraising-tech-ops, netops, Infrastructure-Foundations, SRE
cmooney added a comment to T377381: Frack eqiad network upgrade: design, installation and configuration.

@Jclark-ctr could you also let me know what ports on the fmsw these two were plugged into?

Wed, Nov 6, 5:33 PM · DC-Ops, ops-eqiad, fundraising-tech-ops, netops, Infrastructure-Foundations, SRE
cmooney added a comment to T364092: Upgrade core routers to Junos 23.4R2.

codfw will be the primary during that set of dates, it should NOT be depooled.

Wed, Nov 6, 5:30 PM · netops, Infrastructure-Foundations, SRE
cmooney added a comment to T379164: BGP settings for liberica.

I personally don't think the current config is a bad thing to have in general (we have a lower pref/normal pref/higher pref community defined). None of the community assignments were specifically created for this use case.

Wed, Nov 6, 3:17 PM · netops, Traffic, Infrastructure-Foundations
cmooney added a comment to T379154: openstack: vxlan: potential changes to cloudvirt MTU to enable jumbo frames.

Yeah there is a potential problem for cloud VMs talking to UDP (or other non-TCP) services on the internet. For instance if an internet server sends a 1500-byte packet to a VM with do-not-fragment set, and somewhere on the internet path there is an ICMP "blackhole" (preventing path mtu discovery working), the packet won't get back to the machine.

Wed, Nov 6, 1:51 PM · cloud-services-team (FY2024/2025-Q1-Q2), User-aborrero, Cloud-VPS
cmooney added a comment to T379072: sre.netbox.update-extras hits KeyError with logging.

and I guess server_time is not defined outside of django web app when when we run the manage.py syncdatasource command.

Wed, Nov 6, 9:24 AM · Infrastructure-Foundations, SRE

Tue, Nov 5

cmooney added a comment to T336485: Setup zero touch provisioning (ZTP) for network devices.

I used the cookbook to provision the two new frack switches in eqiad this evening.

Tue, Nov 5, 8:54 PM · Patch-For-Review, SRE, Infrastructure-Foundations, netops, SRE-tools
cmooney added a comment to T377381: Frack eqiad network upgrade: design, installation and configuration.

@cmooney fyi i have 10x of the 100g green handled optics

Tue, Nov 5, 7:40 PM · DC-Ops, ops-eqiad, fundraising-tech-ops, netops, Infrastructure-Foundations, SRE
cmooney closed T378751: Netbox: ImportPuppetDB uses wrong netmask for some hosts as Resolved.
Tue, Nov 5, 6:07 PM · Infrastructure-Foundations, netbox
cmooney added a comment to T347411: Drive host network config from Netbox, and move away from ifupdown.
Tue, Nov 5, 3:06 PM · User-aborrero, Infrastructure-Foundations, SRE
cmooney triaged T379072: sre.netbox.update-extras hits KeyError with logging as Low priority.
Tue, Nov 5, 1:36 PM · Infrastructure-Foundations, SRE
cmooney edited P70925 Logging errors running cookbook sre.netbox.update-extras.
Tue, Nov 5, 1:16 PM
cmooney created P70925 Logging errors running cookbook sre.netbox.update-extras.
Tue, Nov 5, 1:16 PM
cmooney updated subscribers of T378824: Evaluate alternatives to Broadcom NICs.

Thanks for the task Brian.

Tue, Nov 5, 12:55 PM · DC-Ops, Data-Platform-SRE, Infrastructure-Foundations
cmooney added a comment to T347411: Drive host network config from Netbox, and move away from ifupdown.
Tue, Nov 5, 12:11 PM · User-aborrero, Infrastructure-Foundations, SRE

Mon, Nov 4

cmooney created P70863 (An Untitled Masterwork).
Mon, Nov 4, 1:10 PM

Fri, Nov 1

cmooney closed T378809: ganeti1025 VMs unresponsive Nov 1 2024 as Resolved.

I'm pretty confident this is the same as T348730, and I think it would be okay to return ganeti1025 to service and close this task as a dup

Fri, Nov 1, 2:35 PM · Infrastructure-Foundations, netops, SRE
cmooney added a comment to T378751: Netbox: ImportPuppetDB uses wrong netmask for some hosts.

Yeah this is an odd one. And tbh I'm not sure I 100% understand the original reasoning for this and if we still need it.

Fri, Nov 1, 2:01 PM · Infrastructure-Foundations, netbox
cmooney added a comment to T348730: repeated Ganeti VMs deadlocks due to DRBD bug on bullseye.

We seen this (or at least something similar) today, see T378809.

Fri, Nov 1, 1:44 PM · Infrastructure-Foundations, SRE
cmooney updated the task description for T378809: ganeti1025 VMs unresponsive Nov 1 2024.
Fri, Nov 1, 1:34 PM · Infrastructure-Foundations, netops, SRE
cmooney created P70842 ganeti1025 kernel log messages.
Fri, Nov 1, 1:30 PM
cmooney triaged T378809: ganeti1025 VMs unresponsive Nov 1 2024 as Medium priority.
Fri, Nov 1, 1:05 PM · Infrastructure-Foundations, netops, SRE
cmooney added a comment to T334751: Cassandra instances use host IP interface in outgoing messages.

Just stumbled on this task Eric thanks for filing.

Fri, Nov 1, 11:45 AM · Cassandra
cmooney added a comment to T360297: Take advantage of 10Gb NICs in the new network stack.

@cmooney @Papaul What do you think of:

  1. Keeping the new script presented previously for the "easy" usecases
Fri, Nov 1, 10:42 AM · Infrastructure-Foundations, DC-Ops, netops

Mon, Oct 28

cmooney added a comment to T377381: Frack eqiad network upgrade: design, installation and configuration.

@cmooney @Jclark-ctr There has been a request to push our maintenance week back one week if possible. Would you all be ok with doing the work on the following week (Nov 11-15)?

Mon, Oct 28, 2:31 PM · DC-Ops, ops-eqiad, fundraising-tech-ops, netops, Infrastructure-Foundations, SRE
cmooney closed T378070: Automate interface configuration for pfw firewalls using Netbox data, a subtask of T377996: Manage fundraising network elements from Netbox, as Resolved.
Mon, Oct 28, 2:27 PM · netops, Infrastructure-Foundations, SRE
cmooney closed T378070: Automate interface configuration for pfw firewalls using Netbox data as Resolved.
Mon, Oct 28, 2:27 PM · Infrastructure-Foundations, netops, SRE
cmooney triaged T378346: Create cookbook to set up ganeti host network as Low priority.
Mon, Oct 28, 11:27 AM · netops, Infrastructure-Foundations, SRE
cmooney added a comment to T378335: Ganeti network config results in additional auto-conf IPv6 address.

There might be some edge cases, but I think ideally we should disable the autoconf on all hosts as they're supposed to be statically configured.

Mon, Oct 28, 11:26 AM · Infrastructure-Foundations, netops, SRE
cmooney renamed T378335: Ganeti network config results in additional auto-conf IPv6 address from Ganeti network config results in additional a6uto-conf IPv6 address to Ganeti network config results in additional auto-conf IPv6 address.
Mon, Oct 28, 11:26 AM · Infrastructure-Foundations, netops, SRE
cmooney updated the task description for T378335: Ganeti network config results in additional auto-conf IPv6 address.
Mon, Oct 28, 11:26 AM · Infrastructure-Foundations, netops, SRE
cmooney added a comment to T378335: Ganeti network config results in additional auto-conf IPv6 address.

It seems that changing the "ip token" command from "pre-up" to "up" in /etc/network/interfaces makes things work as expected.

Mon, Oct 28, 10:45 AM · Infrastructure-Foundations, netops, SRE
cmooney updated the task description for T378335: Ganeti network config results in additional auto-conf IPv6 address.
Mon, Oct 28, 10:41 AM · Infrastructure-Foundations, netops, SRE
cmooney triaged T378335: Ganeti network config results in additional auto-conf IPv6 address as Medium priority.
Mon, Oct 28, 9:59 AM · Infrastructure-Foundations, netops, SRE

Oct 24 2024

cmooney updated the task description for T371468: Renumber frack server mgmt IPs in codfw .
Oct 24 2024, 10:02 AM · ops-codfw, SRE, DC-Ops
cmooney added a subtask for T377996: Manage fundraising network elements from Netbox: Unknown Object (Task).
Oct 24 2024, 9:21 AM · netops, Infrastructure-Foundations, SRE
cmooney added a subtask for T377996: Manage fundraising network elements from Netbox: T378070: Automate interface configuration for pfw firewalls using Netbox data.
Oct 24 2024, 9:21 AM · netops, Infrastructure-Foundations, SRE
cmooney added a parent task for T378070: Automate interface configuration for pfw firewalls using Netbox data: T377996: Manage fundraising network elements from Netbox.
Oct 24 2024, 9:21 AM · Infrastructure-Foundations, netops, SRE
cmooney triaged T378070: Automate interface configuration for pfw firewalls using Netbox data as Medium priority.
Oct 24 2024, 9:12 AM · Infrastructure-Foundations, netops, SRE
cmooney added a comment to T377467: Decision Request - How to do the Cloud VPS VXLAN/IPv6 migration.

Would it be possible to (centrally / scripted) create a new security group for all projects that does nothing but drop all IPv6 traffic, then assign the new v6 IPs to instances and then tell users they should decide themselves when to edit or disable this group?

Since there is no IPv6 now we should be able to assume it can't break anything existing to drop all IPv6 traffic?

Oct 24 2024, 9:09 AM · Cloud Services Proposals, cloud-services-team (FY2024/2025-Q1-Q2), User-aborrero, Cloud-VPS
cmooney added a comment to T377996: Manage fundraising network elements from Netbox.

It's quite a big task overall, splitting it into several well defined sub-tasks will make it easier to accomplish. For example splitting the IP side from the vlan side.

Oct 24 2024, 8:16 AM · netops, Infrastructure-Foundations, SRE

Oct 23 2024

cmooney added a comment to T377381: Frack eqiad network upgrade: design, installation and configuration.

@cmooney all cables have been connected for Step 2: Initial cabling for the new devices for switches and firewalls. Ping me if anything else comes up or is needed

Oct 23 2024, 9:05 PM · DC-Ops, ops-eqiad, fundraising-tech-ops, netops, Infrastructure-Foundations, SRE
cmooney updated the task description for T377381: Frack eqiad network upgrade: design, installation and configuration.
Oct 23 2024, 8:58 PM · DC-Ops, ops-eqiad, fundraising-tech-ops, netops, Infrastructure-Foundations, SRE
cmooney updated the task description for T377381: Frack eqiad network upgrade: design, installation and configuration.
Oct 23 2024, 8:48 PM · DC-Ops, ops-eqiad, fundraising-tech-ops, netops, Infrastructure-Foundations, SRE
cmooney created P70572 (An Untitled Masterwork).
Oct 23 2024, 5:46 PM
cmooney updated the task description for T377996: Manage fundraising network elements from Netbox.
Oct 23 2024, 5:03 PM · netops, Infrastructure-Foundations, SRE
cmooney updated the task description for T377996: Manage fundraising network elements from Netbox.
Oct 23 2024, 5:02 PM · netops, Infrastructure-Foundations, SRE
cmooney renamed T377996: Manage fundraising network elements from Netbox from Manange fundraising network eleemnts from Netbox to Manange fundraising network elements from Netbox.
Oct 23 2024, 5:01 PM · netops, Infrastructure-Foundations, SRE