[tor-bugs] #33834 [Internal Services/Tor Sysadmin Team]: nevii IP address change planned for Ganeti migration

Tor Bug Tracker & Wiki blackhole at torproject.org
Wed Apr 8 20:32:40 UTC 2020


#33834: nevii IP address change planned for Ganeti migration
-------------------------------------------------+-------------------------
 Reporter:  anarcat                              |          Owner:  anarcat
     Type:  task                                 |         Status:
                                                 |  needs_review
 Priority:  High                                 |      Milestone:
Component:  Internal Services/Tor Sysadmin Team  |        Version:
 Severity:  Major                                |     Resolution:
 Keywords:  tpa-roadmap-march                    |  Actual Points:
Parent ID:  #33082                               |         Points:
 Reviewer:                                       |        Sponsor:
-------------------------------------------------+-------------------------
Changes (by anarcat):

 * status:  accepted => needs_review


Comment:

 step 10 done.

 step 11, final renumbering:

  1. changed IP in LDAP, DNS TTL kept low in case of problems.
  2. changed in puppet (in the secondaries zonefile), ran puppet on puppet
  3. not present in DNS (!), will be changed in puppet for our secondaries,
 changed on the nsnode DNS server
  4. changed in Nagios
  5. reverse DNS added in hetzner
  6. no traces left in /etc/ on host, present in nodes because ud-replicate
 hadn't ran, fixed
  7. ran puppet everywhere
  8. grepped for the old IPs in all of /etc everywhere, found an hardcoded
 `from` on pauli that didn't come from puppet, fixed by hand.

 i'm going to do a few more tests (mostly creating a new entry and check if
 SOAs follow everywhere, along with let's encrypt magic) and this can be
 considered done.

--
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/33834#comment:5>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online


More information about the tor-bugs mailing list