Author Topic: FA Network schematics  (Read 1219 times)

Kindrift

  • Logik und Idiotie
  • ***
  • Posts: 346
  • E-points: +29/-4
    • View Profile
FA Network schematics
« on: December 08, 2009, 03:56:23 pm »
Quote from: yak
For simplicity's sake I'd like to keep even IPs for servers themselves (or for the use of the server's primary function), and the following odd ones for their RACs
Assuming we get /28, we have 14 IPs at our disposal.
+Trogdor, +Novastorm, +Tiamat, +Bahamut, +the new hosting server and +Sirkain are our hardware.
 
For exampe, using the typical 192.168.1.x net:
 
70.33.186.196  Trogdor
70.33.186.197  Trogdor RAC
70.33.186.198  Tiamat
70.33.186.199  [reserved] Tiamat RAC
70.33.186.200  Bahamut
70.33.186.201  [reserved] Bahamut RAC
70.33.186.202  Novastorm primary
70.33.186.203  Novastorm RAC
70.33.186.204  [reserved] Hosting server primary
70.33.186.205  [reserved] Hosting server RAC
----------------------------------------------------
70.33.186.206  |
70.33.186.207  |
70.33.186.208  | Novastorm VM dedicated IPs
70.33.186.209  | Hosting server additional
70.33.186.210  | etc.
70.33.186.211  |
70.33.186.212  |
70.33.186.213  |
70.33.186.214  |
70.33.186.215  |
70.33.186.216  |
70.33.186.217  |
70.33.186.218  |
70.33.186.219  |
70.33.186.220  |
70.33.186.221  | Trogdor second IP for facdn.net
------------------------------------
70.33.186.222  |   Sirkain
 
 
 
All servers have 2 NICs.
One of them should be plugged into the colo's switch, the other to our 1Gbps LAN hub. Sirkain server stays separated from our LAN.
Thus all servers should have both the 1Gbps LAN and the shared 100Mbps WAN connectivity.
 
I do not know how would we need to go around about assigning these IPs to our servers, but I imagine it will be something like:
Dragoneer and net-cat bring in the servers, install them and plug them in. Then net-cat is given a keyboard and a monitor to locally log in and assign the IPs/netmasks/gateways/dns servers to the interfaces.
Check that the links are up and accessible from the outside.
 
Case-by-case basis:
* RACs on Nova and Trogdor can be assigned an IP address from the BIOS, as far as I remember.
* Trogdor: local login and change, or postpone and do it later over the virtual KVM from within the RAC
* Tiamat: local login
* Bahamut: doesn't have an external IP. Either local login and assign, or postpone and do it later over LAN.
* Novastorm: Virtual KVM from within RAC.
* Sirkain: I do not know how it has been handled between Sirkain and Dragoneer.
What if the pentagon has stored lost data of porn and yiff in it's data, has anyone over there saved about millions of porn data and art in it's computer drive? tell me more about the facts what they have in your opinions!

Pi

  • POOR IMPULSE CONTROL
  • Postcount ate Whippany, NJ
  • ****
  • Posts: 614
  • E-points: +40/-10
  • <blink>yes hello</blink>
    • View Profile
    • Clan Spum userpage
Re: FA Network schematics
« Reply #1 on: December 08, 2009, 04:02:34 pm »
Their insistence on calling one of their servers "facdn.net" is a little baffling to me. A content distribution network implies more than one fucking box.

Also I guess nmap's gonna be getting a workout tonight. >:3

Action update:
Quote from: FA twitter
We have named our new 24 port Cisco 3750 "Switchthulu". Welcome to the FA family, you shiny thing you.

Idiotic name. Overpriced equipment. Clearly chosen just for the shiny factor.

DOUBLE-ACTION-UPDATE:
Quote from: FA twitter
@two_pi_r @eevee The hardware was free, we'll put the best hardware we have available to good use. The Cisco gear is solid, dependable.
I stand corrected.
« Last Edit: December 08, 2009, 08:28:59 pm by Pi »
"we did farts.  now we do sperm.  we are cutting edge." — Theo DeRaadt

ProvincialTwit

  • Abuse Dept.
  • Postcount ate Whippany, NJ
  • ****
  • Posts: 774
  • E-points: +72/-33
    • View Profile
Re: FA Network schematics
« Reply #2 on: December 08, 2009, 09:05:38 pm »
I'm lolling my ass off that

1: They are assuming they will just be -given- a /28.
2: They are using real route-able IPs for their out-of-band network.

This is all kinds of hilariously inept, and effectively setting themselves up for failure both immediate and in the future.

There is seriously no reason they would ever need more than a /30 for this; they are now officially wastes of space, wastes of bandwidth, AND wastes of IPv4.