You are browsing a read-only backup copy of Wikitech. The live site can be found at wikitech.wikimedia.org

Portal:Cloud VPS/Admin/notes/Service predictions for cross realm situation

From Wikitech-static
< Portal:Cloud VPS‎ | Admin
Revision as of 17:04, 3 March 2021 by imported>Andrew Bogott
Jump to navigation Jump to search

This page contains information and some predictions on how cloud-related services will go when we migrate them for compliance with the Cross-Realm_traffic_guidelines.

What Current model Predicted future model Comments
Cloud rec DNS cloudservices servers in cloud-support production VLAN, with public IPv4. Cloud egress NAT exception. case 4
Cloud auth DNS cloudservices servers in cloud-support production VLAN, with public IPv4. Cloud egress NAT exception. case 4
Toolforge project NFS labstore servers in cloud-support production VLAN, with private IPv4. Cloud egress NAT exception. case 4
Toolforge home NFS labstore servers in cloud-support production VLAN, with private IPv4. Cloud egress NAT exception. case 4
Toolforge scratch NFS labstore servers in cloud-support production VLAN, with private IPv4. Cloud egress NAT exception. case 4
Dumps NFS Yes Done case 2 compliant --- Recently done, see https://phabricator.wikimedia.org/T272397
Metrics services cloudmetrics servers in cloud-support production VLAN, with private IPv4. Cloud egress NAT exception. case 1
Wiki replicas case 2 compliant case 4 Might move to case 4 in next iteration
openstack APIs cloudcontrol servers in production public VLAN, with public IPv4. Cloud egress NAT exception. case 4
Cloudelastic (Elasticsearch) cluster TODO TODO Talk to Eric, search team. This is basically like a wiki-replicas setup, exposed to cloud services.
cloud hypervisors (cloudvirt servers) Yes Done case 4 compliant ---
cloud network (cloudnet & cloudgw servers) Yes Done case 4 compliant ---
ceph storage farm TODO TODO
horizon labweb servers in production public VLAN with public IPv4. case 3
LDAP LDAP servers in production public VLAN with public IPv4. Cloud egress NAT exception. case 2
NFS backups cloudbackup servers in production private VLAN with private IPv4. TODO TODO
Gerrit gerrit.wikimedia.org & gerrit-replica.wikimedia.org servers in production public VLAN with public IPv4. Cloud egress NAT exception. case 2
APT repositories apt1001.wikimedia.org & apt1002.wikimedia.org & sodium.wikimedia.org, servers in production public VLAN with public IPv4. Cloud egress NAT exception. case 2
kraz kraz.wikimedia.org and irc.wikimedia.org, servers in production public VLAN with public IPv4. Manages the recent changes irc feed. Cloud egress NAT exception. case 2
Maps NFS cloudstore1008/cloudstore1009, servers in production public VLAN with public IPv4. Cloud egress NAT exception. case 2
What Current model Predicted future model Comments

See also

Phabricator ticket T207536: Move various support services for Cloud VPS currently in prod into their own instances