Difference between revisions of "Operations Bulletin 100717"

From GridPP Wiki
Jump to: navigation, search
(Created page with "Bulletin archive __NOTOC__ {| width="100%" cellspacing="0" cellpadding="0" style="background-color: #ffffff; border: 1px solid silver; border...")
(No difference)

Revision as of 09:29, 10 July 2017

Bulletin archive

Week commencing Monday 3rd July 2017
Task Areas
General updates

  • The EGI RP/RC A/R Report for June 2017 is available on the following link:


  • A draft document linking to the report has been published here:


  • The link can also be found via:


  • GPU queues.

Monday 3rd July

  • July 2017 GDB and pre-GDB. Draft agenda available. Container technologies working group pre-GDB contact Gavin McCance to get involved.
  • Winnie: Do sites need lcg-CA installed?
  • EGI: Usage of ops VO. Is anyone still using it for UK tests?
  • June T2 reports:
    • ALICE
      • All okay.
    • ATLAS
      • Lancaster: 84%:85%
    • CMS
      • All okay
    • LHCb
      • Lancaster: 83%:84%
      • Oxford: 70%:100%
  • The agenda of the WLCG ops meeting held on Monday is available.

Monday 26th June

  • GOCDB has received a new service type request for: ‘eu.egi.storage.accounting’: - authorising the site/SE to publish the storage accounting data - making the site/SE appear in the portal - monitoring that the accounting data are regularly published.
  • The registration to the next LHCOPN/LHCONE meeting is now open. LHCONE meeting agenda: https://indico.cern.ch/event/646629/.
  • HEPiX Fall 2017 meeting will be held at KEK, Tsukuba, Japan, from 16th to 20th October. HEPiX registration page: http://hepix-fall-2017.kek.jp/registration.html.
  • Chris B: Gotcha when upgrading ArcCEs to htcondor 8.6
  • EGI: new nagios probes appdbsync and OCCI-Categories for testing cloud services
  • Dan: cvmfs versions. It seems others are running 2.3 and 2.4 versions.
  • LSST: submission from panda is now working at Lancs, Manc and RAL. The plan (only sketched for now) is to run a data challenge. GridPP is behind this and said we should give a high priority to this effort. At the moment the initial plan is to use 16,000 cores for a month. This is a significant chunk of resources and will require organisation and much testing to get it running smoothly. Though using panda LSST doesn't have all the resubmission features ATLAS has, they also use the storage tools slightly differently privileging xrootd which is not as well supported as gridftp.

Monday 5th June

  • Migration of the UI/WN tarball repositories.
  • EGI RP/RC A/R Report available. UK is fine but dropped in April.
  • Tier-1 noted pool accounts for "quiet" VOs. The question, is it worth spending time getting the VO active:
    • camont - no. This collaboration ended some years ago.
    • cdf - no
    • dzero - no
    • esr - no, but they might.
    • magic - no, but they might
    • neiss - no
    • supernemo - They will be soon. Discussions started.
  • Winnie: Pool account UIDs/GIDs. Looks like it is best to work towards having consistent pool accounts.
  • lusc-gridpp mailing list for LSST now created. A while back Alessandra also set up a wiki page for LSST.
  • Alastair: Site feedback for network session at WLCG workshop.
  • The EMI repositories will be shut down on the 15th of June 2017. You should be on the preview repo now. h Third party repo is here.
  • 29th May: EGI Trust Anchor release 1.83-1.
  • Two WLCG ops meeting reports to review: 29th May and 5th June.

WLCG Operations Coordination - AgendasWiki Page
  • Agenda from Thursday's meeting.

Tuesday 4th July

  • There will be a WLCG ops coordination meeting this week on Thursday at 14:30 BST. Agenda. The theme is 'providing reliable storage'. Minutes will be available.

Monday 5th June

  • The next meeting in this series is 6th July (i.e. after the workshop).

Monday 22nd May

  • WLCG ops coordination took place last Thursday with a theme of "providing reliable storage" : Agenda | Minutes.

Tier-1 - Status Page

Tuesday 11th July A reminder that there is a weekly Tier-1 experiment liaison meeting. Notes from the last meeting here

  • The SOAP interface to the FTS3 service will be stopped on Monday 17th July. This will allow us to update FTS3 to the latest version.
  • The OPN link to CERN was upgraded to 3 * 10Gbit on Wednesday (28th June). So far so good.
  • EGI have announced withdrawal of support for the WMS at the end of 2017 (as announced elsewhere).
  • We are working to get jobs for LSST and LIGO running here. The VOs have been enabled before, but issues of actually running jobs successfully are being worked through.
Storage & Data Management - Agendas/Minutes

Wednesday 05 July

  • Continuing the WLCG workshop follow up, specifically looking at accounting and inforamtion publishing.
  • On a related note, started looking at Swordfish again, more closely. Also provides REST-JSON API. Maybe we can do something Interesting(tm).

Wednesday 28 June

  • Lots of good blog posts!
  • Lots of good presentations and discussions at both hepsysman and the WLCG workshop. Even if we didn't finish all the things...

Wednesday 17 May

  • Lots of opportunities to contribute to WLCG workshop (if we could finish all the stuff we've got cooking)

Wednesday 19 Apr

  • Case for (re)testing CVMFS for T2s? (and non-LHC VOs?)
  • Other storage related issues arising from use of containers?

Tier-2 Evolution - GridPP JIRA

Tuesday 4 Jul

  • Cambridge Vac site set up and being tested for LHCb. ATLAS and GridPP to follow.
  • GridPP DIRAC VMs using Pilot 3.0 now running at UCL, Imperial, Liverpool, Manchester, Glasgow, Oxford.

Accounting - UK Grid Metrics HEPSPEC06 Atlas Dashboard HS06

Monday 16th January

  • The discussion topic for next week will be accounting comparisons. Please note Alessandra's comments last week.

Monday 14th November

  • Alessandra has written an FAQ to extract numbers from ATLAS and APEL avoiding the SSB.

Monday 26th September

  • A problem with the APEL Pub and Sync tests developed last Tuesday and was resolved on Wednesday. This had a temporary impact on the accounting portal.
Documentation - KeyDocs

Tuesday 4th July

  • A round of reminders is coming!
  • Need to ensure decisions captured regarding supported other VOs.

Tue 23rd May As part of the process of moving everything to Centos7 (or some other form of RHEL7), I've written up how we build nodes at Liverpool for our ARC/Condor system.


I hope it's also a decent cheatsheet for Puppet3/Hiera. It's a draft, and I need to put in some more details, but it should be usable.

Tue 7th Mar

I want to get rid of following stale docs...

  • Ten Easy Network Questions
  • GridPP Answers to 10 Easy Network Questions
  • SL5 status
  • Glasgow Middleware Operations Logbook
  • London Tier2 Shares
  • 23rd June 2010 Special Topic: NGS Technical Roadmap - Pete Gronbech
  • SAM availability: Monthly summary table
  • Transfer Tests Birmingham Endpoints
  • EVO Tips and Tricks
  • BaBar: bbrbsub270

Monday 13th Feb

  • Please check the keydocs page. Would all owners please review their pages and prepare a short note on how they will bring things up-to-date in the coming months. This will be discussed at a core ops meeting (poll to be circulated shortly).
  • There are several EGI operations document updates out for review. Please make comments to Jeremy by 20th Febraury for inclusion in the UK feedback:

Monday 30th January

The fusion VO has been removed from GridPP Approved VOs.

Monday 9th January

  • Tom put these together:
    • A snapshot of the GridPP UserGuide is now available as an offline document in the Zenodo repository:
    • ...and the v1.0 release of the LaTeX code used to compile it is here.
    • There are some minor differences (mainly hyperlink-related) to the online version [1], which has also had a v1.0 release here.

Tue 22nd Nov

  • More on Accounting audit tools

The process for ARC, Toque and VAC is now documented here.


General note

See the worst KeyDocs list for documents needing review now and the names of the responsible people.

Interoperation - EGI ops agendas

Tuesday 4th July

  • There was an EGI OMB last Thursday. Agenda.
  • Membership of the ops VO is being reduced.

Tuesday 16th May

  • There was an EGI ops meeting yesterday. Agenda.

Tuesday 2nd May

Tuesday 21st March

Monitoring - Links MyWLCG

Tuesday 4th July

  • There were a number of useful links provided in the monitoring talks at the WLCG workshop in Manchester - especially those in the Wednesday sessions.

Monday 13th February

  • This category is pretty much inactive. Are there any topics under "monitoring" that anyone wants reported at this ops meeting? If not we will remove this section from the regular updates area of the bulletin and just leave the main links.

Tuesday 1st December

Tuesday 16th June

  • F Melaccio & D Crooks decided to add a FAQs section devoted to common monitoring issues under the monitoring page.
  • Feedback welcome.

On-duty - Dashboard ROD rota

6th June

  • There are issues with the ARC CE tests again, so the ARC sites have not have any results in days and the corresponding availability tickets are going nowhere.
  • New rota being compiled.

Tuesday 2nd May

  • Generally quiet. A few low availability tickets.
Rollout Status WLCG Baseline

Monday 13th February

  • Please can we hear something from Raul and Sam (or others contributing to the middleware readiness work) about news in this area at the ops meeting next week? Thank you.
  • Does anyone want specific questions in this area tackled in a roundtable discussion?

Tuesday 7th December

  • Raul reports: validation of site BDII on Centos 7 done.

Tuesday 15th September

Tuesday 12th May

  • MW Readiness WG meeting Wed May 6th at 4pm. Attended by Raul, Matt, Sam and Jeremy.


Security - Incident Procedure Policies Rota

Tuesday 4th July

  • No advisories issued this week.
  • Expect an update for EGI-SVG-CVE-2017-1000364 - Stack Clash - likely to remain as HIGH risk

Monday 26th June

  • Updated IGTF distribution 1.84 certificate authorities [1]
  • EGI CSIRT Heads-Up [TLP:AMBER] security incident reported from one site concerning compromised VM in EGI Fed Cloud
  • EGI SVG Heads-Up [TLP:WHITE] Stack clash memory allocation vulnerability CVE-2017-1000364 [EGI-SVG-CVE-2017-1000364] [2]
  • EGI SVG Advisory [TLP:WHITE] 'Moderate' risk - sudo local root vulnerability CVE-2017-1000367 [3]
  • EGI SVG Advisory [TLP:WHITE] 'HIGH' risk NSS out of bounds write flaw CVE-2017-5461[4]

Tuesday 6th June

  • EGI SVG Advisory [TLP:WHITE] up to 'HIGH' risk Qemu and Xen guest escape issues CVE-2016-9603 and others [EGI-SVG-CVE-2016-9603] [5]
  • 'HEADS-UP' on the escalation of privilege vulnerability in Intel AMT [EGI-SVG-CVE-2017-5689].

Services - PerfSonar production dashboard |PerfSonar development dashboard | GridPP VOMS

- This includes notifying of (inter)national services that will have an outage in the coming weeks or will be impacted by work elsewhere. (Cross-check the Tier-1 update).

Tuesday 4th July

  • Pete C is preparing another networking forward look document. Note that figures presented in the Manchester workshop were for a Tier-2 (not always a single site).

Tuesday 6th June

  • An update from the DIRAC workshop? GridPP is still the only true multi-VO instance, so we will continue to see issues with this. release quality of dirac has improved within the past year. gfal2/EL7 problems seem to be coming to an end after being cooped up with all authors for 3 days on end. The Imperial GridPP module now has integrated testing. It was also noted that every dirac instance has it's own special module to adapt to their community on top of main dira. We are trying to push as much of out special functionality back into the main dirac branch.

Tuesday 25th April

  • perfSONAR version 4 was released on 17th April. Sites with auto-update on should have been automatically upgraded. Note perfSONAR 4.0 requires more CPU than previous versions as a result of some of the increased functionality. Full details here
  • Duncan has recreated the UK perfSONAR mesh. Link here!


Monday 3rd July 15.00 BST
36 Open UK Tickets this month.

122772 (11/7/16)
Start with a golden oldie, the Sussex webdav/xrootd ticket. No news since some promising progress a few months back. As Alessandra asks in the ticket, any news on this? In progress (9/5)

127767 (18/4)
An availability ticket, hopefully the stats will be green enough to close this in a week or two. On hold (26/6)

129312 (3/7)
Fresh this morning, an lhcb ticket about one of the ARC CEs not responding (heplnv147). Assigned (3/7)

129316 (3/7)
A ROD ticket about the same server. My powers of deduction suggest that it's a bit poorly. Assigned (3/7)

129201 (27/6)
A glue2 ROD ticket. Kashif sees an intermittent failure and had no joy debugging it so will close the ticket shortly. In progress (29/6)

129187 (26/6)
One of the "check your storage accounting" tickets, just waiting on word back from JG to try out a new gocdb related to this. Waiting for reply (28/6)

126864 (28/2)
Enabling LZ (and friends) and Bristol. Things are coming along nicely, and after giving helpful advice about glexec Daniela is primed to send test jobs. In progress (15/6) Update, Winnie has got back reporting that LZ, Dune and LSST are ready for testing. Sweet!

124052 (25/9/16)
LHCB ticket regarding publishing ARC at Glasgow (aka the Cursed Ticket). Gareth has updated the ticket with two prongs of hope - one is that a CE at Glasgow has been updated to a version of ARC with the hopeful fix in it, and the other is that VAC use by LHCB at Glasgow could make the issue moot. Both need feedback to confirm. Waiting for reply (30/6)

129185 (25/6)
The ECDF edition of the storage accounting tickets. Waiting on Andy's return from hols to confirm the figures. In progress (26/6)

129230 (28/6)
Atlas transfers failing with time outs - Elena noted a rogue disk server and hopefully has kicked it into shape soon. In progress (3/7)

129054 (19/6)
Atlas mcore jobs being killed a Sheffield. At first glance Elena suspected the jobs hit the time limit, but CREAM errors have been spotted. Let us know if you need a hand debugging this. In progress (21/6)

129296 (30/6)
LHCB wondering why they're not seeing more jobs at Liverpool. John politely reported on the state of the Liverpool AC. Hope things stay cool(ish). In progress (30/6)

129184 (26/6)
The Liverpool storage accounting check ticket - John provided some good feedback. In progress (30/6)

129288 (30/6)
Duncan spotted a problem with the Liverpool perfsonar results. John reports a full root partition and has resized it. Hopefully nothing go fubared, playing the wait and see game. In progress (30/6)

129183 (25/6)
The Red Rose edition of the Storage Accounting Check. I was hoping to close this today, but my dpns-du is still going. In progress (27/6)

129242 (29/6)
Availability ticket after a rocky few weeks, on the road to recovery now. On hold (3/7)

129287 (30/6)
Another ticket from Duncan, the Lancaster perfsonars hadn't initialised their IPv6 address properly after a reboot. Fixed, but needs investigating. In progress (30/6)

129223 (28/6)
In its continued decommissioning, Daniela has asked that vo.londongrid.ac.uk be removed from the site. Govind just has the SE to go. In progress (28/6)

129221 (28/6)
A similar vo.londongrid.ac.uk decommissioning ticket for QM. Not spotted yet? Assigned (28/6)

129155 (26/6)
LHCB having issues accessing files over xroot at QM. This has only been tried in anger for atlas before, so it looks like some teething troubles are being seen. Daniela has asked for a handy CMS file to try out just in case. In progress (3/7)

129182 (25/6)
The Imperial storage accounting ticket, Simon replied and just waiting on the gocdb thing now. Waiting for reply (28/6)

128555 (30/6)
Mysterious CMS gfal problems in jobs at IC. It looks like this is still very much under investigation, although the site is drained of jobs in the meantime. In progress (3/7)

129222 (28/6)
Just an londongrid vo decommissioning ticket here, progressing nicely. In progress (1/7)

Have 4 tickets, only one properly fielded:

129299 (3/7)
A CMS user spotted errors trying to pull data from RAL. Looks like checksum differences - the user has got back and it looks like the file is corrupt. In progress (3/7)

129211 (27/6)
Atlas transfer failures to Tokyo - they seem to be gone now, despite nothing being fixed or found to be wrong. If still fixed the ticket can be closed. In progress (29/6)

129059 (20/6)
LHCB spotted timeouts, which look to have since been resolved. Just waiting on confirmation of this before closing the ticket. Waiting for reply (28/6)

129098 (22/6)
Another atlas transfer ticket, thanks to Alastair and Gareth for trying to clear things up between the two issues. Are these globus errors still occuring?. In progress (29/6)

129228 (28/6)
A CMS ticket for low xroot success rates for HC jobs. A restart of xrootd redirectors seems to have fixed a few issues for Andrew at least, waiting on user feedback. Waiting for reply (30/6)

127597 (7/4)
A CMS ticket checking on site networking at RAL, waiting on a update from the RAL networking team. On hold (14/6)

128991 (16/6)
solidexperiment.org requesting tape support at RAL. Passed on to the castor team. In progress (16/6)

124876 (7/11/2016)
ROD ticket for echo, due to the probes not using the correct paths. Still no movement on the counter-ticket 125026. On hold (1/1)

117683 (18/11/15)
Glue2 publishing for Castor. Some progress, but no news for a few months. On hold (10/5)

Tools - MyEGI Nagios

29th November 2016

LSST monitoring is available through vo-nagios


13th September 2016

VOs - GridPP VOMS VO IDs Approved VO table
Site Updates


Meeting Summaries
Project Management Board - MembersMinutes Quarterly Reports


GridPP ops meeting - Agendas Actions Core Tasks


RAL Tier-1 Experiment Liaison Meeting (Wednesday 13:30) Agenda Meeting takes place on Vidyo.

Highlights from this meeting are now included in the Tier1 report farther up this page.

WLCG Grid Deployment Board - Agendas MB agendas


NGI UK - Homepage CA


UK ATLAS - Shifter view News & Links

Atlas S&C week 2-6 Feb 2015


• Prodsys-2 in production since Dec 1st

• Deployment has not been transparent , many issued has been solved, the grid is filled again

• MC15 is expected to start soon, waiting for physics validations, evgen testing is underway and close to finalised.. Simulation expected to be broadly similar to MC14, no blockers expected.


• Rucio in production since Dec 1st and is ready for LHC RUN-2. Some fields need improvements, including transfer and deletion agents, documentation and monitoring.

Rucio dumps available.

Dark data cleaning

files declaration . Only Only DDM ops can issue lost files declaration for now, cloud support needs to fill a ticket.

• Webdav panda functional tests with Hammercloud are ongoing


Main page

DDM Accounting




• ASAP (ATLAS Site Availability Performance) in place. Every 3 months the T2s sites performing BELOW 80% are reported to the International Computing Board.





  • N/A
To note

  • N/A