Keres: Difference between revisions

From Federal Burro of Information
Jump to navigationJump to search
Line 11: Line 11:
== Todo ==
== Todo ==


* OS
* OS - DONE - centos 7
* firewalld - kicked out , not good logging features, so now have iptables back in and firewalld disabled.
* firewalld - kicked out , not good logging features, so now have iptables back in and firewalld disabled.
* Wifi - none - disabled for now.
* snmp
* powertop tuning


* Wifi
* services
* services
** web
*** wiki
*** cacti
**** hosts: esx freenas fortigate
*** pagespeed - https://developers.google.com/speed/pagespeed/module


** snmp
 
** mysql
 
** dns
* web apps:
*** mostly done, need to swap on the FW.
** wiki - DONE
** ntp - done, swing over services.
** pagespeed - https://developers.google.com/speed/pagespeed/module - DONE
* acpi
 
* Local monitoring
* rancid:
* rancid:
** rancid installed : done
** rancid installed : done
Line 34: Line 31:
** CVSROOT=/home/rancid/var/rancid/CVS
** CVSROOT=/home/rancid/var/rancid/CVS
** one module: firewall  ( /home/rancid/var/rancid/firewall )
** one module: firewall  ( /home/rancid/var/rancid/firewall )
**
 
* snmp
* snmp
* acpi
* acpi
*


* https://collectd.org/wiki/index.php/Iptables
* https://collectd.org/wiki/index.php/Iptables
* backups
from local disk to freenas
** wiki - done
** mysql done
** system config ( etc etc? )


== Done ==
== Done ==

Revision as of 15:54, 12 January 2016

This machine will put Athena out of service

E45M1 - I Deluxe - Mobo - from Martin McCourt - what a guy.

  • AMD
  • centos 7


Todo

  • OS - DONE - centos 7
  • firewalld - kicked out , not good logging features, so now have iptables back in and firewalld disabled.
  • Wifi - none - disabled for now.
  • snmp
  • powertop tuning


  • services


  • snmp
  • acpi
  • backups

from local disk to freenas

    • wiki - done
    • mysql done
    • system config ( etc etc? )

Done

  • nfs setup / data exported

athena -> keres data sync

time /usr/bin/rsync -avzr /etc/ /mnt/keres/data/athena/etc --stats
time /usr/bin/rsync -avzr /var/bind/ /mnt/keres/data/athena/var/bind --stats



Firewalld

OLD: disabled, firewalld needs more work before I'll use it . (No default deny log rules : d'uh )

[root@keres etc]# firewall-cmd --permanent --zone=public --add-service=dns
success
[root@keres etc]# firewall-cmd --permanent --zone=public --add-service=https
success
[root@keres etc]# firewall-cmd --permanent --zone=public --add-service=nfs
success
[root@keres etc]# firewall-cmd --permanent --zone=public --add-service=ntp
success
[root@keres etc]# firewall-cmd --reload
success
[root@keres etc]#  firewall-cmd --zone=public --list-all
public (default, active)
  interfaces: enp3s0 wlp2s0
  sources:
  services: dhcpv6-client dns https nfs ntp ssh
  ports:
  masquerade: no
  forward-ports:
  icmp-blocks:
  rich rules:

[root@keres etc]#

hfs plus

mac Files ystem stupport

Software outside of YUM

See Also