Operations Bulletin Latest

From GridPP Wiki
Jump to: navigation, search

Bulletin archive


Week commencing Monday 3rd July 2017
Task Areas
General updates

Monday 3rd July

  • July 2017 GDB and pre-GDB. Draft agenda available. Container technologies working group pre-GDB contact Gavin McCance to get involved.
  • Winnie: Do sites need lcg-CA installed?
  • EGI: Usage of ops VO. Is anyone still using it for UK tests?


Monday 26th June

  • GOCDB has received a new service type request for: ‘eu.egi.storage.accounting’: - authorising the site/SE to publish the storage accounting data - making the site/SE appear in the portal - monitoring that the accounting data are regularly published.
  • The registration to the next LHCOPN/LHCONE meeting is now open. LHCONE meeting agenda: https://indico.cern.ch/event/646629/.
  • HEPiX Fall 2017 meeting will be held at KEK, Tsukuba, Japan, from 16th to 20th October. HEPiX registration page: http://hepix-fall-2017.kek.jp/registration.html.
  • Chris B: Gotcha when upgrading ArcCEs to htcondor 8.6
  • EGI: new nagios probes appdbsync and OCCI-Categories for testing cloud services
  • Dan: cvmfs versions. It seems others are running 2.3 and 2.4 versions.
  • LSST: submission from panda is now working at Lancs, Manc and RAL. The plan (only sketched for now) is to run a data challenge. GridPP is behind this and said we should give a high priority to this effort. At the moment the initial plan is to use 16,000 cores for a month. This is a significant chunk of resources and will require organisation and much testing to get it running smoothly. Though using panda LSST doesn't have all the resubmission features ATLAS has, they also use the storage tools slightly differently privileging xrootd which is not as well supported as gridftp.


Monday 5th June

  • Migration of the UI/WN tarball repositories.
  • EGI RP/RC A/R Report available. UK is fine but dropped in April.
  • Tier-1 noted pool accounts for "quiet" VOs. The question, is it worth spending time getting the VO active:
    • camont - no. This collaboration ended some years ago.
    • cdf - no
    • dzero - no
    • esr - no, but they might.
    • magic - no, but they might
    • neiss - no
    • supernemo - They will be soon. Discussions started.
  • Winnie: Pool account UIDs/GIDs. Looks like it is best to work towards having consistent pool accounts.
  • lusc-gridpp mailing list for LSST now created. A while back Alessandra also set up a wiki page for LSST.
  • Alastair: Site feedback for network session at WLCG workshop.
  • The EMI repositories will be shut down on the 15th of June 2017. You should be on the preview repo now. h Third party repo is here.
  • 29th May: EGI Trust Anchor release 1.83-1.
  • Two WLCG ops meeting reports to review: 29th May and 5th June.


WLCG Operations Coordination - AgendasWiki Page

Monday 5th June

  • The next meeting in this series if 6th July (i.e. after the workshop).

Monday 22nd May

  • WLCG ops coordination took place last Thursday with a theme of "providing reliable storage" : Agenda | Minutes.


Tier-1 - Status Page

Tuesday 4th July A reminder that there is a weekly Tier-1 experiment liaison meeting. Notes from the last meeting here

  • There are still some issues for CMS access to Castor - these can be seen in timeouts affecting the CMS SRM SAM tests.
  • The new version of FTS3 installed on our "test" FTS service (used by Atlas) no longer supports the SOAP API. There are still some access to our "production" FTS3 service via this API (mainly SNO+ and MICE). We will wish to upgrade the production FTS3 service - and need VOs to move to the rest API provided with the newer versions of FTS. Would will set deadline when we upgrade the "production" instance and hence no longer support the SOAP API.
  • The OPN link to CERN was upgraded to 3 * 10Gbit last Wednesday (28th June).
  • EGI have announced withdrawal of support for the WMS at the end of 2017 (as announced elsewhere).
Storage & Data Management - Agendas/Minutes

Wednesday 28 June

  • Lots of good blog posts!
  • Lots of good presentations and discussions at both hepsysman and the WLCG workshop. Even if we didn't finish all the things...

Wednesday 17 May

  • Lots of opportunities to contribute to WLCG workshop (if we could finish all the stuff we've got cooking)

Wednesday 19 Apr

  • Case for (re)testing CVMFS for T2s? (and non-LHC VOs?)
  • Other storage related issues arising from use of containers?

Wednesday 12 Apr

  • Musings on the outcome of last week's GridPP meeting
  • Discussion of which of a selection of coming events to aim to do something for. If that makes sense, gramatically.
Tier-2 Evolution - GridPP JIRA

Tuesday 16 May

  • Updated GridPP DIRAC VMs. Passing with some tests jobs but still investigating some failures.

Tuesday 2nd May


Accounting - UK Grid Metrics HEPSPEC06 Atlas Dashboard HS06

Monday 16th January

  • The discussion topic for next week will be accounting comparisons. Please note Alessandra's comments last week.

Monday 14th November

  • Alessandra has written an FAQ to extract numbers from ATLAS and APEL avoiding the SSB.

Monday 26th September

  • A problem with the APEL Pub and Sync tests developed last Tuesday and was resolved on Wednesday. This had a temporary impact on the accounting portal.
Documentation - KeyDocs

Tue 23rd May As part of the process of moving everything to Centos7 (or some other form of RHEL7), I've written up how we build nodes at Liverpool for our ARC/Condor system.

https://www.gridpp.ac.uk/wiki/Centos7_Adoption

I hope it's also a decent cheatsheet for Puppet3/Hiera. It's a draft, and I need to put in some more details, but it should be usable.

Tue 7th Mar

I want to get rid of following stale docs...

  • Ten Easy Network Questions
  • GridPP Answers to 10 Easy Network Questions
  • SL5 status
  • Glasgow Middleware Operations Logbook
  • London Tier2 Shares
  • 23rd June 2010 Special Topic: NGS Technical Roadmap - Pete Gronbech
  • SAM availability: Monthly summary table
  • Transfer Tests Birmingham Endpoints
  • EVO Tips and Tricks
  • BaBar: bbrbsub270

Monday 13th Feb

  • Please check the keydocs page. Would all owners please review their pages and prepare a short note on how they will bring things up-to-date in the coming months. This will be discussed at a core ops meeting (poll to be circulated shortly).
  • There are several EGI operations document updates out for review. Please make comments to Jeremy by 20th Febraury for inclusion in the UK feedback:


Monday 30th January

The fusion VO has been removed from GridPP Approved VOs.

Monday 9th January

  • Tom put these together:
    • A snapshot of the GridPP UserGuide is now available as an offline document in the Zenodo repository:
    • ...and the v1.0 release of the LaTeX code used to compile it is here.
    • There are some minor differences (mainly hyperlink-related) to the online version [1], which has also had a v1.0 release here.


Tue 22nd Nov

  • More on Accounting audit tools

The process for ARC, Toque and VAC is now documented here.

https://github.com/gridpp/audit/wiki


General note

See the worst KeyDocs list for documents needing review now and the names of the responsible people.

Interoperation - EGI ops agendas

Tuesday 16th May

  • There was an EGI ops meeting yesterday. Agenda.

Tuesday 2nd May

Tuesday 21st March

Monday 13th February

  • There was an ops meeting on 13th February. Agenda
    • frontier-squid-3 in UMD 4.4.0 - changes to config
    • Assess IPv6 readiness:
      • Resource Centres: assess the IPv6 readiness of the site infrastructure (real machines, cloud managers)
      • NGIs/ROCs please start discussing with sites and provide suggestions for the overall plan
    • Decommissioning of dCache 2.10
    • Discussed stale ARGO results; being discussed with Product Teams.

Monday 16th January

  • There was an ops meeting on 9th January. Agenda.


Monitoring - Links MyWLCG

Monday 13th Febraury

  • This category is pretty much inactive. Are there any topics under "monitoring" that anyone wants reported at this ops meeting? If not we will remove this section from the regular updates area of the bulletin and just leave the main links.

Tuesday 1st December


Tuesday 16th June

  • F Melaccio & D Crooks decided to add a FAQs section devoted to common monitoring issues under the monitoring page.
  • Feedback welcome.


On-duty - Dashboard ROD rota

6th June

  • There are issues with the ARC CE tests again, so the ARC sites have not have any results in days and the corresponding availability tickets are going nowhere.
  • New rota being compiled.

Tuesday 2nd May

  • Generally quiet. A few low availability tickets.
Rollout Status WLCG Baseline

Monday 13th February

  • Please can we hear something from Raul and Sam (or others contributing to the middleware readiness work) about news in this area at the ops meeting next week? Thank you.
  • Does anyone want specific questions in this area tackled in a roundtable discussion?

Tuesday 7th December

  • Raul reports: validation of site BDII on Centos 7 done.

Tuesday 15th September

Tuesday 12th May

  • MW Readiness WG meeting Wed May 6th at 4pm. Attended by Raul, Matt, Sam and Jeremy.


References


Security - Incident Procedure Policies Rota

Tuesday 4th July

  • No advisories issued this week.
  • Expect an update for EGI-SVG-CVE-2017-1000364 - Stack Clash - likely to remain as HIGH risk

Monday 26th June

  • Updated IGTF distribution 1.84 certificate authorities [1]
  • EGI CSIRT Heads-Up [TLP:AMBER] security incident reported from one site concerning compromised VM in EGI Fed Cloud
  • EGI SVG Heads-Up [TLP:WHITE] Stack clash memory allocation vulnerability CVE-2017-1000364 [EGI-SVG-CVE-2017-1000364] [2]
  • EGI SVG Advisory [TLP:WHITE] 'Moderate' risk - sudo local root vulnerability CVE-2017-1000367 [3]
  • EGI SVG Advisory [TLP:WHITE] 'HIGH' risk NSS out of bounds write flaw CVE-2017-5461[4]

Tuesday 6th June

  • EGI SVG Advisory [TLP:WHITE] up to 'HIGH' risk Qemu and Xen guest escape issues CVE-2016-9603 and others [EGI-SVG-CVE-2016-9603] [5]
  • 'HEADS-UP' on the escalation of privilege vulnerability in Intel AMT [EGI-SVG-CVE-2017-5689].



Services - PerfSonar production dashboard |PerfSonar development dashboard | GridPP VOMS

- This includes notifying of (inter)national services that will have an outage in the coming weeks or will be impacted by work elsewhere. (Cross-check the Tier-1 update).

Tuesday 6th June

  • An update from the DIRAC workshop? GridPP is still the only true multi-VO instance, so we will continue to see issues with this. release quality of dirac has improved within the past year. gfal2/EL7 problems seem to be coming to an end after being cooped up with all authors for 3 days on end. The Imperial GridPP module now has integrated testing. It was also noted that every dirac instance has it's own special module to adapt to their community on top of main dira. We are trying to push as much of out special functionality back into the main dirac branch.

Tuesday 25th April

  • perfSONAR version 4 was released on 17th April. Sites with auto-update on should have been automatically upgraded. Note perfSONAR 4.0 requires more CPU than previous versions as a result of some of the increased functionality. Full details here

Monday 6th March

  • Last week it was noted that some ATLAS RIPE probes (the USB ones) have had hardware errors. If you need a replacement and RIPE are slow to respond then contact Jeremy.
  • Is anyone running any tests with their RIPE probe?

Tuesday 14th February

  • The development dashboard is now operational again. However the production dashboard is not currently displaying latency results (OSG ticket submitted).
  • Birmingham pS host had lost its entire network connection and both Lancaster's hosts their IPv6 connection. Durham results are incomplete, GGUS ticket submitted (#126587).

Tuesday 25th October

  • Duncan has recreated the UK perfSONAR mesh. Link here!


Tickets

Monday 3rd July 15.00 BST
36 Open UK Tickets this month.

SUSSEX
122772 (11/7/16)
Start with a golden oldie, the Sussex webdav/xrootd ticket. No news since some promising progress a few months back. As Alessandra asks in the ticket, any news on this? In progress (9/5)

127767 (18/4)
An availability ticket, hopefully the stats will be green enough to close this in a week or two. On hold (26/6)

RALPP
129312 (3/7)
Fresh this morning, an lhcb ticket about one of the ARC CEs not responding (heplnv147). Assigned (3/7)

129316 (3/7)
A ROD ticket about the same server. My powers of deduction suggest that it's a bit poorly. Assigned (3/7)

OXFORD
129201 (27/6)
A glue2 ROD ticket. Kashif sees an intermittent failure and had no joy debugging it so will close the ticket shortly. In progress (29/6)

CAMBRIDGE
129187 (26/6)
One of the "check your storage accounting" tickets, just waiting on word back from JG to try out a new gocdb related to this. Waiting for reply (28/6)

BRISTOL
126864 (28/2)
Enabling LZ (and friends) and Bristol. Things are coming along nicely, and after giving helpful advice about glexec Daniela is primed to send test jobs. In progress (15/6)

GLASGOW
124052 (25/9/16)
LHCB ticket regarding publishing ARC at Glasgow (aka the Cursed Ticket). Gareth has updated the ticket with two prongs of hope - one is that a CE at Glasgow has been updated to a version of ARC with the hopeful fix in it, and the other is that VAC use by LHCB at Glasgow could make the issue moot. Both need feedback to confirm. Waiting for reply (30/6)

EDINBURGH
129185 (25/6)
The ECDF edition of the storage accounting tickets. Waiting on Andy's return from hols to confirm the figures. In progress (26/6)

SHEFFIELD
129230 (28/6)
Atlas transfers failing with time outs - Elena noted a rogue disk server and hopefully has kicked it into shape soon. In progress (3/7)

129054 (19/6)
Atlas mcore jobs being killed a Sheffield. At first glance Elena suspected the jobs hit the time limit, but CREAM errors have been spotted. Let us know if you need a hand debugging this. In progress (21/6)

LIVERPOOL
129296 (30/6)
LHCB wondering why they're not seeing more jobs at Liverpool. John politely reported on the state of the Liverpool AC. Hope things stay cool(ish). In progress (30/6)

129184 (26/6)
The Liverpool storage accounting check ticket - John provided some good feedback. In progress (30/6)

129288 (30/6)
Duncan spotted a problem with the Liverpool perfsonar results. John reports a full root partition and has resized it. Hopefully nothing go fubared, playing the wait and see game. In progress (30/6)

LANCASTER
129183 (25/6)
The Red Rose edition of the Storage Accounting Check. I was hoping to close this today, but my dpns-du is still going. In progress (27/6)

129242 (29/6)
Availability ticket after a rocky few weeks, on the road to recovery now. On hold (3/7)

129287 (30/6)
Another ticket from Duncan, the Lancaster perfsonars hadn't initialised their IPv6 address properly after a reboot. Fixed, but needs investigating. In progress (30/6)

RHUL
129223 (28/6)
In its continued decommissioning, Daniela has asked that vo.londongrid.ac.uk be removed from the site. Govind just has the SE to go. In progress (28/6)

QMUL
129221 (28/6)
A similar vo.londongrid.ac.uk decommissioning ticket for QM. Not spotted yet? Assigned (28/6)

129155 (26/6)
LHCB having issues accessing files over xroot at QM. This has only been tried in anger for atlas before, so it looks like some teething troubles are being seen. Daniela has asked for a handy CMS file to try out just in case. In progress (3/7)

IMPERIAL
129182 (25/6)
The Imperial storage accounting ticket, Simon replied and just waiting on the gocdb thing now. Waiting for reply (28/6)

128555 (30/6)
Mysterious CMS gfal problems in jobs at IC. It looks like this is still very much under investigation, although the site is drained of jobs in the meantime. In progress (3/7)

BRUNEL
129222 (28/6)
Just an londongrid vo decommissioning ticket here, progressing nicely. In progress (1/7)

100IT
Have 4 tickets, only one properly fielded:
128976
129023
128095
129156

THE TIER 1
129299 (3/7)
A CMS user spotted errors trying to pull data from RAL. Looks like checksum differences - the user has got back and it looks like the file is corrupt. In progress (3/7)

129211 (27/6)
Atlas transfer failures to Tokyo - they seem to be gone now, despite nothing being fixed or found to be wrong. If still fixed the ticket can be closed. In progress (29/6)

129059 (20/6)
LHCB spotted timeouts, which look to have since been resolved. Just waiting on confirmation of this before closing the ticket. Waiting for reply (28/6)

129098 (22/6)
Another atlas transfer ticket, thanks to Alastair and Gareth for trying to clear things up between the two issues. Are these globus errors still occuring?. In progress (29/6)

129228 (28/6)
A CMS ticket for low xroot success rates for HC jobs. A restart of xrootd redirectors seems to have fixed a few issues for Andrew at least, waiting on user feedback. Waiting for reply (30/6)

127597 (7/4)
A CMS ticket checking on site networking at RAL, waiting on a update from the RAL networking team. On hold (14/6)

128991 (16/6)
solidexperiment.org requesting tape support at RAL. Passed on to the castor team. In progress (16/6)

124876 (7/11/2016)
ROD ticket for echo, due to the probes not using the correct paths. Still no movement on the counter-ticket 125026. On hold (1/1)

117683 (18/11/15)
Glue2 publishing for Castor. Some progress, but no news for a few months. On hold (10/5)

Tools - MyEGI Nagios

29th November 2016

LSST monitoring is available through vo-nagios

https://vo-nagios.physics.ox.ac.uk/nagios/cgi-bin/status.cgi?servicegroup=lsst&style=detail

13th September 2016


VOs - GridPP VOMS VO IDs Approved VO table
Site Updates

Date



Meeting Summaries
Project Management Board - MembersMinutes Quarterly Reports

Empty

GridPP ops meeting - Agendas Actions Core Tasks

Empty


RAL Tier-1 Experiment Liaison Meeting (Wednesday 13:30) Agenda Meeting takes place on Vidyo.

Highlights from this meeting are now included in the Tier1 report farther up this page.

WLCG Grid Deployment Board - Agendas MB agendas

Empty



NGI UK - Homepage CA

Empty

Events
UK ATLAS - Shifter view News & Links

Atlas S&C week 2-6 Feb 2015

Production

• Prodsys-2 in production since Dec 1st

• Deployment has not been transparent , many issued has been solved, the grid is filled again

• MC15 is expected to start soon, waiting for physics validations, evgen testing is underway and close to finalised.. Simulation expected to be broadly similar to MC14, no blockers expected.

Rucio

• Rucio in production since Dec 1st and is ready for LHC RUN-2. Some fields need improvements, including transfer and deletion agents, documentation and monitoring.

Rucio dumps available.

Dark data cleaning

files declaration . Only Only DDM ops can issue lost files declaration for now, cloud support needs to fill a ticket.

• Webdav panda functional tests with Hammercloud are ongoing

Monitoring

Main page

DDM Accounting

space

Deletion

ASAP

• ASAP (ATLAS Site Availability Performance) in place. Every 3 months the T2s sites performing BELOW 80% are reported to the International Computing Board.


UK CMS

Empty

UK LHCb

Empty

UK OTHER
  • N/A
To note

  • N/A