Difference between revisions of "Operations Bulletin Latest"

From GridPP Wiki
Jump to: navigation, search
()
 
(1,546 intermediate revisions by 21 users not shown)
Line 5: Line 5:
 
{| width="100%" cellspacing="0" cellpadding="0" style="background-color: #ffffff; border: 1px solid silver; border-collapse: collapse; width: 100%; margin: 0 0 1em 0;"
 
{| width="100%" cellspacing="0" cellpadding="0" style="background-color: #ffffff; border: 1px solid silver; border-collapse: collapse; width: 100%; margin: 0 0 1em 0;"
 
|-
 
|-
| style="background-color: #d8e8ff; border-bottom: 1px solid silver; text-align: center; font-size: 1em; font-weight: bold; margin-top: 0; margin-bottom: 0; padding-top: 0.1em; padding-bottom: 0.1em;" | Week commencing Monday 14th November 2016
+
| style="background-color: #d8e8ff; border-bottom: 1px solid silver; text-align: center; font-size: 1em; font-weight: bold; margin-top: 0; margin-bottom: 0; padding-top: 0.1em; padding-bottom: 0.1em;" | Week commencing Monday 25th February 2019
 
|}
 
|}
  
Line 27: Line 27:
 
====== ======
 
====== ======
 
<!-- *********************************************************** ----->
 
<!-- *********************************************************** ----->
<!-- ***********************Start General text*********************** ----->'''
+
'''Tuesday 18th June'''
 +
* DPM Workshop last week - come to this week's storage meeting for an in-depth look.
 +
** https://indico.cern.ch/event/776832/
 +
* DIRAC downtime this week due to the move to Slough - good luck!
 +
* EGI Ops meeting this week.
 +
** https://wiki.egi.eu/wiki/Agenda-2019-06-17
 +
** HTCondorCE commissioning ongoing, SRM decommissioning survey
 +
** State of SRM usage at DPM sites?
  
'''Monday 7th November'''
 
* [https://indico.cern.ch/event/559673/ DPM workshop 23rd/24th November 2016 at LPNHE (Paris)] - Reminder - Speakers and participants are kindly invited to register.
 
* Tom notes that he has re-written the GridPP [http://www.gridpp.ac.uk/userguide UserGuide] to use Ganga as the User Interface.
 
* Sharing of RPMs.
 
  
'''Monday 31st October'''
+
'''Tuesday 11th June'''
* Please [http://hepwww.rl.ac.uk/sysman/Nov2016/main.html register] for the HEPSYSMAN meeting next week. [https://indico.cern.ch/event/577279/ Agenda].
+
* The APEL team has scheduled a down time for 10:30am - 12:30pm (UTC) on the 1st November. This is to allow us to upgrade our machines with a new kernel.
+
* There is an extension of the paper call for the [http://event.twgrid.org/isgc2017 International Symposium on Grids and Clouds (ISGC) 2017].
+
* The next WLCG GDB is on 9th November. The [https://indico.cern.ch/event/394788/ agenda can be found here].
+
* GridPP website: AM informs us the web server VM and the hypervisor are now running shiny new kernels. He undertook some preliminary checks and the pages, Wiki, database etc all look ok, but we should inform him of any issues observed.
+
* Thread related to: Change to Approved VOs (and RPMs). What were the conclusions?
+
  
 +
* Technical Meeting last week about the New JSON based Information System:  https://indico.cern.ch/event/821105/
 +
* This week we will get round to looking at the outcome of the Security Day (and HEPSYSMAN).
 +
* The DPM Workshop is this week: https://indico.cern.ch/event/776832/ There's a Vidyo Room planned for people to listen in.
 +
* CentOS7 Migration https://twiki.cern.ch/twiki/bin/view/AtlasComputing/CentOS7Deployment
 +
<!-- ***********************Start General text*********************** ----->'''
 +
'''Tuesday 4th June 2019'''
 +
* The Security Day  + HEPSYSMAN was on t'other week: https://indico.cern.ch/event/721692/
 +
* Please can sites review their GOCDB information: https://ggus.eu/?mode=ticket_info&ticket_id=141296
 +
* iris.ac.uk VO - Andrew explained this.
 +
* New(-ish) HEPOSLib release - 7.2.9 https://twiki.cern.ch/twiki/bin/view/LCG/WLCGBaselineTable
 +
* Gareth's query about the WS interface to ARC on TB-SUPPORT
 +
* Anything else?
  
  
'''Monday 15th November'''
 
I've started an FAQ [1] and wrote a small script to extract numbers from the ATLAS and APEL portals avoiding the SSB. the FAQ has a lot of information I gave at the HEPSYSMAN but not everyone was there or following. The script allows people to make their spreadsheets painlessly and directly from the source. It can also be used to setup alerts or people can modify it for that.  I hope these will help to make it  routine for sites to check their accounting timely. About monthly revision best time is on the second Tuesday of the month to allow for APEL to sync with the portal avoiding almost a full month to pass. October numbers are there now.
 
 
[1] https://twiki.cern.ch/twiki/bin/view/LCG/AccountingFAQ
 
'''Monday 24th October'''
 
* Message to GridPP CB regarding Tier-2 hardware spend allocations. GridPP will use the [http://pprc.qmul.ac.uk/~lloyd/gridpp/metrics2.html second table].
 
* [https://twiki.cern.ch/twiki/bin/view/LCG/WLCGDailyMeetingsWeek161024 Minutes are available from today's WLCG ops meeting].
 
* The APEL team have notified us that: The APEL Accounting Repository has been doing some internal data processing of its cloud data so to enable this to process at maximum speed the summarising of grid sites has been suspended. This is reflected in the portal not being updated and the Apel.Pub tests showing several days since your site last published.
 
* HEPiX took place last week. See the [https://indico.cern.ch/event/531810/timetable/#all.detailed detailed agenda] for more information.
 
* Request for Grid Engine site to test a new implementation of the machine job features plug-in.
 
 
 
'''Monday 17th October'''
 
* US: PNNL LHCONE system outage planned October 17-21
 
* There will be an Operations Portal OTAG meeting to discuss new requirements between now and the end of EGI-Engage.
 
* APEL Accounting - Please Schedule Republishing: The APEL Service is having problems caused by sites republishing large numbers of jobs. This can either be due to conscious gap publishing or to fixing a problem that had existed for some time (eg out of date certificate, parser cron not running).
 
* On a general note... The UK HPC facility (Archer) is labelled in production to accept ATLAS jobs but is not in general use. This inconsistency has been [https://ggus.eu/?mode=ticket_info&ticket_id=122653 discussed elsewhere] and was passed to ATLAS for discussion.
 
* ECDF tests: As the site is now exclusively SL7 they are failing some of the SAM probes that were not designed for this OS. The problematic probe is "org.lhcb.WN-sft-lcg-rm-gfal”. Other sites may be hit in a similar way. It affected LHCb production results.
 
* T2 reliability & availability for September 2016:
 
** ALICE: http://wlcg-sam.cern.ch/reports/2016/201609/wlcg/WLCG_All_Sites_ALICE_Sep2016.pdf
 
***All okay.
 
** ATLAS: http://wlcg-sam.cern.ch/reports/2016/201609/wlcg/WLCG_All_Sites_ATLAS_Sep2016.pdf
 
*** Sheffield: 81%:81%
 
*** Oxford: 82%:93%
 
** CMS: http://wlcg-sam.cern.ch/reports/2016/201609/wlcg/WLCG_All_Sites_CMS_Sep2016.pdf
 
*** All okay.
 
** LHCb: http://wlcg-sam.cern.ch/reports/2016/201609/wlcg/WLCG_All_Sites_LHCB_Sep2016.pdf
 
*** Sheffield: 81%:81%
 
*** ECDF: 16%:16%.
 
* There was a report that the "UI WN Tarball" was "Missing vomses config in CVMFS UI". Matt has fixed it.
 
* Duncan circulated a request to update https://www.gridpp.ac.uk/wiki/IPv6_site_status
 
* There will be a [https://www.jisc.ac.uk/events/campus-network-engineering-for-data-intensive-science-workshop-19-oct-2016 Campus Network Engineering for Data Intensive Science workshop], 19th October, in London.
 
* ATLAS - APEL accounting records comparison from Alessandra: The accounting TF has now established [http://wlcg-mon-dev.cern.ch/dashboard/request.py/siteview#currentView=ACCOUNTING_VALIDATION&search_0=UKI-&sorting_Site+Name=asc a dashboard to compare results] from the experiments accounting records with the APEL results. This contains all the experiments latest values which are updated each month with the numbers of the previous finished month. There is also a [http://tinyurl.com/gvuxue2 historical view] these are the UK sites from January until August.
 
* The WLCG workshop took place last week - [https://indico.cern.ch/event/555063/timetable/#all.detailed agenda]
 
* HEPiX takes place this week - [https://indico.cern.ch/event/531810/timetable/#all.detailed agenda].
 
 
 
'''Monday 26th September'''
 
* There is the [http://www.digitalinfrastructures.eu/programme Digital Infrastructure for Research (DI4R) conference in Krakow], Poland this week.
 
  
 
<!-- **********************End General text************************** ----->
 
<!-- **********************End General text************************** ----->
Line 98: Line 68:
 
<!-- *********************************************************** ----->
 
<!-- *********************************************************** ----->
 
<!-- ***********************Start ops coord text*********************** ----->
 
<!-- ***********************Start ops coord text*********************** ----->
'''Monday 7th November'''
+
'''Tuesday 11th June'''
* [https://twiki.cern.ch/twiki/bin/view/LCG/MWReadinessMeetingNotes20161102#Discussions_around_EL7_following Minutes from the November 2nd 2016] at 4pm CET: MW Readiness WG meeting
+
* There was a WLCG ops coordination meeting last wee. [ https://indico.cern.ch/event/540423/ Agenda] | [https://twiki.cern.ch/twiki/bin/view/LCG/WLCGOpsMinutes161103 Minutes].
+
** The theme of the next meeting on Dec. 1st will be the results of the Lightweight Site survey. There will be a sub-topic on HTCondor Accounting.
+
  
'''Tuesday 25th October'''
+
* I got stuck (figuratively) in my machine room last Thursday afternoon so missed it. [https://indico.cern.ch/event/823800/ Agenda.] [https://twiki.cern.ch/twiki/bin/view/LCG/WLCGOpsMinutes190606 Minutes.] Ste was there - any observations?
* The next middleware readiness meeting will be on 2nd November. [ http://indico.cern.ch/e/MW-Readiness_19 Agenda].
+
 
 +
'''Tuesday 14th May'''
 +
* Next meeting this Thursday.
 +
 
 +
'''Tuesday 9th April'''
 +
* Ops meeting last week: https://twiki.cern.ch/twiki/bin/view/LCG/WLCGOpsMinutes190404
 +
 
 +
 
 +
'''Tuesday 26th March'''
 +
* For information, there was an Ops meeting on the 7th: https://twiki.cern.ch/twiki/bin/viewauth/LCG/WLCGOpsMinutes190307 (I think we might have dicussed this one).
 +
* Next meeting booked for 4th April
 +
 
 +
'''Monday 11th February 2019'''
 +
* There was a WLCG ops coordination meeting last Thursday. You can view the meeting notes [https://twiki.cern.ch/twiki/bin/view/LCG/WLCGOpsMinutes190207 here].
 +
** End of CREAM support Dec 2020.
 +
** Migration from CREAM to be discussed at the EGI conference 6-8 of May in Amsterdam.
 +
** Operational intelligence discussion ([https://indico.cern.ch/event/795889/sessions/302520/attachments/1792600/2920978/Operational_Intelligence_-_WLCG_Ops_Coord-2.pdf see slides]).
 +
** Experiment updates (see ATLAS discussion on DOMA)
 +
** WG updates (few).
  
'''Monday 3rd October'''
 
* There was a WLCG ops coordination meeting last week: [https://indico.cern.ch/event/540422/ Agenda]. (Good to review in the ops meeting).
 
  
'''Monday 26th September'''
 
* There is a [https://indico.cern.ch/event/540422/ WLCG ops coordination meeting on 29th]. The theme is 'lightweight sites'.
 
  
'''Monday 19th September'''
 
* There was a [https://indico.cern.ch/event/562629/ WLCG Throughput call] on 15th.
 
* The [https://indico.cern.ch/event/540422/ next ops meeting is on 29th]. Theme suggestions welcome.
 
  
  
Line 133: Line 111:
 
<!-- *********************************************************** ----->
 
<!-- *********************************************************** ----->
 
<!-- ***********************Start T1 text*********************** ----->
 
<!-- ***********************Start T1 text*********************** ----->
'''Tuesday 8th November'''
+
 
A reminder that there is a weekly [http://www.gridpp.ac.uk/wiki/RAL_Tier1_Experiments_Liaison_Meeting Tier-1 experiment liaison meeting]. Notes from the last meeting [https://www.gridpp.ac.uk/wiki/Tier1_Operations_Report_2016-11-02 here]
+
'''17 June 2019''' Report for the Experiments Liaison Report (17/06/2019) is [https://www.gridpp.ac.uk/wiki/Tier1_Operations_Report_2019-06-17 here].
* Still some mopping up after CVE-2016-5195
+
<!-- *********************************************************** ----->
* The CVMFS Stratum0 server has been replaced with newer hardware.
+
* Intervention by Oracle on the Tier1 tape library went OK last Wednesday.
+
* Owing to staff availability the upgrade of Castor to version 2.1.15 is being scheduled to tale place in January.
+
 
<!-- **********************End T1 text************************** ----->
 
<!-- **********************End T1 text************************** ----->
 +
* Ongoing, we are seeing high outbound packet loss over IPv6.  Central networking performed a firmware update to the border routers but this didn’t resolve the issue.  Plan to move connections to the new border routers in Mid June.  Will do this before trying to debug any further.
 +
 +
'''11 June 2019''' Report for the Experiments Liaison Report (10/06/2019) is [https://www.gridpp.ac.uk/wiki/Tier1_Operations_Report_2019-06-10 here].
 
<!-- *********************************************************** ----->
 
<!-- *********************************************************** ----->
 +
<!-- **********************End T1 text************************** ----->
 +
* Ongoing, we are seeing high outbound packet loss over IPv6.  Central networking performed a firmware update to the border routers but this didn’t resolve the issue.  Plan to move connections to the new border routers in Mid June.  Will do this before trying to debug any further.
 +
* Three certificates were revoked mistakenly on ARGUS on Thursday.  All SAM tests failed until this was fixed the next morning.  Batch farm also did not start any new jobs during this time.  We used this accidental draining to reboot nodes that needed to pick up security patching.
 +
* LHCb Castor instance has been completely disabled for LHCb and will be decommissioned.
 +
* Brian Davies has transferred from his role as GridPP Tier-2 Storage Support Officer and has joined the Tier-1 Production Team.  Although this has happened with immediate effect he will still be available for ad-hoc/informal storage support.
 +
 
|}
 
|}
<!-- ****************End T1****************** ----->
 
  
 
<!-- ****************Start Storage & DM****************** ----->
 
<!-- ****************Start Storage & DM****************** ----->
Line 154: Line 137:
 
<!-- ******************Edit start********************* ----->
 
<!-- ******************Edit start********************* ----->
  
'''Wednesday 09 Nov'''
+
'''[http://storage.esc.rl.ac.uk/weekly/20191030-minutes.txt Wed 30 Oct]'''
* Storage related issues from hepsysman?
+
* DOME upgrade problems at Edinburgh
* ...
+
* Data management support/development for IRIS users
 +
 
 +
'''[http://storage.esc.rl.ac.uk/weekly/20191023-minutes.txt Wed 23 Oct]'''
 +
* Rucio reporting
 +
 
 +
'''Wed 16 Oct'''
 +
* CEPH workshop at CERN report
 +
 
 +
'''[http://storage.esc.rl.ac.uk/weekly/20191002-minutes.txt Wed 02 Oct]'''
 +
* Safe to upgrade to DPM 1.13 but make sure the BDII is working if you support DIRAC
 +
* Roadmap for xroot and http TPC for RAL FTS(es)
  
'''Wednesday 02 Nov'''
+
'''[http://storage.esc.rl.ac.uk/weekly/20190925-minutes.txt Wed 25 Sept]'''
* Big picture: an attempt to explain where GridPP fits with other things such as "UKT0" and other infrastructures
+
* Storage support for IRIS VOs?
  
'''Wednesday 26 Oct'''
+
'''[http://storage.esc.rl.ac.uk/weekly/20190918-minutes.txt Wed 18 Sept]'''
* Feedback from WLCHEPiXG - don't miss it!
+
* Report from yesterday's Rucio Face Meeting at Coseners
 +
* Suggestions for following up from yesterday's CEPH day hosted by CERN
  
'''[http://storage.esc.rl.ac.uk/weekly/20161019-minutes.txt Wednesday 19 Oct]'''
+
'''[http://storage.esc.rl.ac.uk/weekly/20190911-minutes.txt Wed 11 Sept]'''
* Long list of loose ends - accounting and information systems, IPv6 surprising successes
+
* Storage related stuff at the FNAL (pre-)GDBs
 +
* DOME upgrade tickets for non-DOME DPM sites
  
'''[http://storage.esc.rl.ac.uk/weekly/20161012-minutes.txt Wednesday 12 Oct]'''
+
'''[http://storage.esc.rl.ac.uk/weekly/20190904-minutes.txt Wed 04 Sept]'''
* Initial impressions from WLCG workshop and CHEP-so-far
+
* Banning in SSC not entirely successful in non-DOME DPM, and end of support is nigh; tickets to upgrade will go out shortly.
* Coming events where GridPP storage-and-data-management could be, will be, or should be (re)presented.
+
* Storage-and-data-management-wise, GridPP43 was interesting although no-one volunteered to install the next CEPH.
  
  
Line 186: Line 181:
 
====== ======
 
====== ======
 
<!-- ******************Edit start********************* ----->
 
<!-- ******************Edit start********************* ----->
'''Tuesday 8 November'''
+
'''Tuesday 30 Apr 2019'''
* Agreement with ETF about how to implement SAM probes for VMs, initially for LHCb. (We will use an external service provided by LHCb which the probes inside the VMs will report to.)
+
* ATLAS CernVM4 VMs (equivalent to CentOS 7.6) being tested
* Enabling DataCentred and StackHPC to run skatelescope.eu jobs in GridPP DIRAC VMs. i.e. two OpenStack providers with academic links.
+
* Vcycle at 1.0 prerelease, and now includes an Admin Guide.
+
 
+
'''Monday 24th October'''
+
* Started HTCvcm (HTCondor Vacuum VM), using ATLAS VMs as the starting point, to provide a generic HTCondor client VM that will connect to HTCondor pools run by the local site, experiments, or larger sites.
+
* Merging LHCb multipayload VM code into DIRAC Pilots repo.
+
* CernVM team updated CernVM to use kernel with fix for CVE-2016-5195 ("DirtyCOW")
+
 
+
'''Monday 17th October'''
+
* Validation of APEL accounting of VM resources and VM-only sites has been completed.
+
* From 4th October: A [https://twiki.cern.ch/twiki/bin/view/LCG/LightweightSites Lightweight sites] questionnaire for WLCG sites has been circulated. The aim is to get to a "matrix" of approaches that sites can choose from, depending on criteria that is covered in the [http://wlcg-survey.web.cern.ch/survey/lightweight-sites questionnaire].
+
 
+
'''Tue 10 Oct'''
+
* Vac-in-a-Box 00.34 supports Vac 01.00 itself rather than pre-release (note that upgrading to 01.00 requires a reboot due to network layout changes)
+
* "Vacuum Platform" specification published as HSF-TN-2016-04
+
 
+
'''Wed 05 Oct'''
+
* Lightweight sites WLCG questionnaire: http://wlcg-survey.web.cern.ch/survey/lightweight-sites
+
  
 
<!-- ******************Edit stop********************* ----->
 
<!-- ******************Edit stop********************* ----->
Line 222: Line 199:
 
===== =====
 
===== =====
 
<!-- ******************Edit start********************* ----->
 
<!-- ******************Edit start********************* ----->
 +
'''Tuesday 6th February'''
 +
* HEPSPEC06 on recent Intel CPUs. [https://www.gridpp.ac.uk/wiki/HEPSPEC06 GridPP benchmarking page]
 +
 +
 +
'''Tuesday 30th January'''
 +
* Please keep updating the [https://www.gridpp.ac.uk/wiki/HEPSPEC06 GridPP benchmarking page].
 +
 +
'''Tuesday 24th Oct'''
 +
* A talk on end-to-end validation of any site's APEL accounting was presented at the WLCG Accountuing Taskforce meeting, 19th Oct. There slides exist here: https://indico.cern.ch/event/673843/contributions/2756986/attachments/1542818/2420233/blackBoxAccTesting.pdf
 +
 +
 +
'''Monday 16th January'''
 +
* The discussion topic for next week will be accounting comparisons. Please note Alessandra's comments last week.
 +
 
'''Monday 14th November'''
 
'''Monday 14th November'''
* Alessandra has written an [https://twiki.cern.ch/twiki/bin/view/LCG/AccountingFAQ FAQ] to extract numbers from ATLAS and APEL avoinding the SSB.
+
* Alessandra has written an [https://twiki.cern.ch/twiki/bin/view/LCG/AccountingFAQ FAQ] to extract numbers from ATLAS and APEL avoiding the SSB.
  
 
'''Monday 26th September'''
 
'''Monday 26th September'''
Line 245: Line 236:
 
<!-- ******************Edit start********************* ----->
 
<!-- ******************Edit start********************* ----->
  
'''Tue 1 Nov'''
+
''' Tue 9th July 2019'''
  
Publishing tutorial updated to use new wording for various measurements.
+
LHCb has added this to their requirements:
  
https://www.gridpp.ac.uk/wiki/Publishing_tutorial#Accounting_transmissions
+
Sites not having an SRM installation must provide:
  
 +
* disk only storage
 +
* a GRIDFPT endpoint (a single dns entry)
 +
* an XROOT endpoint (a single dns entry)
 +
* a way to do the accounting (preferably following the WLCG TF standard: https://twiki.cern.ch/twiki/bin/view/LCG/StorageSpaceAccounting)
  
'''Tue 20th Sept'''
+
''' Tue 16th April 2019'''
GridPP Approved VOs now has link to RPM versions of the VOMS records. They are available for now via the [http://hep.ph.liv.ac.uk/~sjones/RPMS.voms/ VOMS RPMS Yum Repository]. The latest version, which is consistent with the Yaim records in the Approved VOs doc, is 1.0-1. Plan is that when VO records change, Approved VOs doc version will be incremented, and RPMs of changed VOs (only those) will be released carrying the same version stamp as the document. Thus a site that upgrades to "latest" will get the records compatible with the newest version of the GridPP [https://www.gridpp.ac.uk/wiki/GridPP_approved_VOs Approved VOs document].
+
  
Note: A typical RPM contains as so:
+
Minor change to LHCB requirements in Approved VOs:
  
  [sjones@hep169]$ rpm -qlp gridpp-voms-dteam-1.0-1.noarch.rpm
+
* Sites having migrated to the Centos7 (including "Cern Centos7") operating system or later versions are requested to provide support for singularity containers.
/etc/grid-security/vomsdir/dteam
+
/etc/grid-security/vomsdir/dteam/voms.hellasgrid.gr.lsc
+
/etc/grid-security/vomsdir/dteam/voms2.hellasgrid.gr.lsc
+
/etc/vomses/dteam-voms.hellasgrid.gr
+
/etc/vomses/dteam-voms2.hellasgrid.gr
+
/root/vo_xml/dteam.xml
+
  
The vomsdir (lsc) files (which list the DNs and CA DNs of acceptable certificates) and the vomses files (which give the coordinates of VOMS servers of various VOs) are provided, as if they were created by YAIM in the normal locations. No other features of YAIM are facilitaed by these RPMs. Thus they are useful for migrating from YAIM, but do not provide all the functions of YAIM such as setting SW dirs or other ENV vars etc.
+
https://www.gridpp.ac.uk/wiki/GridPP_approved_VOs#VO_Resource_Requirements
  
'''Tue 6th Sept'''
+
'''Tue 2nd April 2019'''
Benchmarking procedure. Contains instructions for ARC/Condor, CREAM/Torque, VAC. Needs to be updated for use with other systems.
+
  
https://www.gridpp.ac.uk/wiki/Benchmarking_procedure
+
Changes to Approved for DUNE (and LZ)
  
'''Mon 1st Aug'''
+
There is a new "Approved VOs" document showing new settings for DUNE. And, since both LZ's voms servers now show up in the EGI Portal, I've removed the (now spurious) entry for voms.hep.wisc.edu that was formerly being inserted by hand.
LZ VO now up to date in portal, and will be updated in Approved VOs automatically from now on. Sites supporting LZ are advised to read LZ VOMS settings section of https://www.gridpp.ac.uk/wiki/GridPP_approved_VOs (which is between LSST and MAGIC!)
+
  
'''Tue 26th July'''
+
https://www.gridpp.ac.uk/wiki/GridPP_approved_VOs
  
Elena has provided VOMS info for DUNE. I'm maintaining it by hand, at present, similarly for LZ.
+
I've also created a new set of RPMs (each has all LSC, VOMS, and XML for one VO) for all approved VOs. See Approved VOs doc for details, version is 1.9.
  
Both should be present and correct in the Operations Portal, but are not.
+
Sites with DUNE services need to update using whatever method they employ.
  
 +
Special note: Since voms1.fnal.gov changed yesterday, I've updated documentation for that right away. But voms2.fnal.gov remains as it is until 23rd April (3 weeks). I'll update documentation for that when it is closer. Staggering the updates like this gives a time margin, so any particular site can have at least one service properly configured at any time.  But it does mean that two site updates are needed; one now, and one in three weeks. However, since it's sufficient for only one (of the two) voms servers to be configured properly, sites could save effort and wait until (say) 19th April, then update both at once. But I can't dictate what site admins should do. It's your call.
 +
 +
Ste
 +
 +
 +
'''Tuesday 5th Mar 2019'''
 +
New VOMs details for Biomed:
 
https://www.gridpp.ac.uk/wiki/GridPP_approved_VOs
 
https://www.gridpp.ac.uk/wiki/GridPP_approved_VOs
 +
 +
New VOMs rpms to match.
 +
 +
http://hep.ph.liv.ac.uk/~sjones/RPMS.voms/
 +
 +
'''Tuesday 12th Feb 2019'''
 +
Documentation done for HTCondor-CE apel accounting.
 +
https://twiki.cern.ch/twiki/bin/view/LCG/HtCondorCeAccounting
 +
 +
 +
'''Tuesday 12th Feb 2019'''
 +
New CA DN for Biomed
 +
<pre>
 +
< VOMS_CA_DN="'/C=FR/O=CNRS/CN=GRID2-FR' "
 +
---
 +
> VOMS_CA_DN="'/C=FR/O=MENESR/OU=GRID-FR/CN=AC GRID-FR Services' "
 +
</pre>
 +
 +
'''Tuesday 5th Feb 2019'''
 +
For enmr, certificate of voms-02.pd.infn.it
 +
 +
New DN: /DC=org/DC=terena/DC=tcs/C=IT/L=Frascati/O=Istituto Nazionale di Fisica Nucleare/CN=voms-02.pd.infn.it,
 +
New CA_DN: /C=NL/ST=Noord-Holland/L=Amsterdam/O=TERENA/CN=TERENA eScience SSL CA 3
 +
 +
Please check approved VOs: https://www.gridpp.ac.uk/wiki/GridPP_approved_VOs
 +
  
  
Line 294: Line 313:
 
{| style="background-color: #ffffff; border: 1px solid silver; border-collapse: collapse; width: 100%; margin: 0 0.5em 1em 0;"
 
{| style="background-color: #ffffff; border: 1px solid silver; border-collapse: collapse; width: 100%; margin: 0 0.5em 1em 0;"
 
|-
 
|-
| style="background-color: #b7f1ce; border-bottom: 1px solid silver; text-align: left; font-size: 1em; font-weight: bold; margin-top: 0; margin-bottom: 0; padding-left: 0.4em; padding-top: 0.1em; padding-bottom: 0.1em;" | Interoperation - [https://wiki.egi.eu/wiki/Operations_Meeting EGI ops agendas]
+
| style="background-color: #b7f1ce; border-bottom: 1px solid silver; text-align: left; font-size: 1em; font-weight: bold; margin-top: 0; margin-bottom: 0; padding-left: 0.4em; padding-top: 0.1em; padding-bottom: 0.1em;" | Interoperation - [https://wiki.egi.eu/wiki/Operations_Meeting EGI ops agendas] [https://indico.egi.eu/indico/category/32/ Indico schedule]
 
|-
 
|-
 
| style="padding: 0.4em 0.4em 0.4em 0.4em;" |
 
| style="padding: 0.4em 0.4em 0.4em 0.4em;" |
Line 301: Line 320:
 
<!-- ******************Edit start********************* ----->
 
<!-- ******************Edit start********************* ----->
  
'''Monday 7th November'''
+
''' 14 May 2019 '''
 +
* Meeting for May cancelled. Next meeting is on 10th June.
  
* There was an EGI Ops meeting today: [https://wiki.egi.eu/wiki/Agenda-07-11-2016 agenda]
+
''' Monday 11th March '''
  
* UMD 3.14.5 released today
+
* Agenda: https://wiki.egi.eu/wiki/Agenda-2019-03-11 
** VOMS 3.5.0, which makes RFC proxies the default for voms-proxy-init
+
* UMD 4.8.2 released :  ARC 15.03.19 - To address how ARC counts HELD job
 +
* DPM Legacy mode is going to end in June 2019
 +
* EGI will open tickets after June
 +
* HTCondor CE accounting status?
 +
* http://egi.ui.argo.grnet.gr/ : https://ggus.eu/index.php?mode=ticket_info&ticket_id=139877 
  
* UMD 4.3.0 'October' release, release candidate ready, to be released by end of this week, including:
 
** ARC, GFAL2, XROOT, Davix, dCache, ARGUS, Gridsite, edg-mkgrid, umd-release for CentOS7
 
  
* please start using UMD4/SL6 or UMD4/CentOS7 instead of UMD3/SL6 & please don't use anymore EMI3
+
''' Tuesday 12th February '''
** (think there may be a campaign around this soon)
+
* There was an EGI ops meeting yesterday - [https://indico.egi.eu/indico/event/4320/ Agenda]. We were asked to review the IPv6 readiness information ([https://wiki.egi.eu/w/index.php?title=IPV6_Assessment see here]). We should perhaps link in the GridPP IPv6 table for updates status.
  
* Downtimes due to the vulnerability CVE-2016-5195: request an A/R recomputation
 
** All the resource centres that were affected by the vulnerability CVE-2016-5195 and that declared a downtime between 2016-10-20 16:00 UTC and 2016-10-31 18:00 UTC are invited to request a recomputation of A/R figures for the days in which the downtime was ongoing.
 
  
* ARGO proposal to use GOCDB as the only source of topology information
+
''' Friday 1st February '''
** https://indico.egi.eu/indico/event/3092/contribution/2/material/0/0.pdf
+
 
 +
* Early adopters needed for HTcondor CE , https://ggus.eu/index.php?mode=ticket_info&ticket_id=139377
 +
 
 +
''' Thursday 17th January EGI OMB meeting '''
 +
 
 +
* CREAMCE to be out of support by Dec 2020
 +
* More effort to fix accounting issue of HTCondor CE
 +
 
 +
''' Monday 14th January 2019 '''
 +
* Agenda https://wiki.egi.eu/wiki/Agenda-2019-01-14
 +
 
 +
* No UK specific issue mentioned.
 +
 
 +
* IPv6 readiness plan is going to be summarized at OMB.
 +
 
 +
'
  
* VAPOR 2.1 released in September, it replaces GSTAT
 
** each NGI should review the information provided by their sites and let us know any inconsistency: http://operations-portal.egi.eu/vapor/resources/GL2ResSummary
 
  
* Next meeting: Dec 5th, 2016 [https://indico.egi.eu/indico/category/32/ meeting calendar]
 
 
<!-- ******************Edit stop********************* ----->
 
<!-- ******************Edit stop********************* ----->
 
<!-- *********************************************************** ----->
 
<!-- *********************************************************** ----->
Line 338: Line 370:
 
===== =====
 
===== =====
 
<!-- ******************Edit start********************* ----->
 
<!-- ******************Edit start********************* ----->
 +
'''Tuesday 4th July'''
 +
* There were a number of useful links provided in the monitoring talks at the WLCG workshop in Manchester - especially those in the [https://indico.cern.ch/event/609911/timetable/#20170621 Wednesday sessions].
 +
 +
'''Monday 13th February'''
 +
* This category is pretty much inactive. Are there any topics under "monitoring" that anyone wants reported at this ops meeting? If not we will remove this section from the regular updates area of the bulletin and just leave the main links.
 +
 
'''Tuesday 1st December'''
 
'''Tuesday 1st December'''
 
* Sites are kindly invited to update the monitoring status page at https://www.gridpp.ac.uk/wiki/Site_monitoring_status
 
* Sites are kindly invited to update the monitoring status page at https://www.gridpp.ac.uk/wiki/Site_monitoring_status
Line 348: Line 386:
  
  
''' Tuesday 31st March
 
 
* Glasgow Graphite/Grafana documentation: http://www.scotgrid.ac.uk/graphite/
 
 
'''Monday 7th December
 
 
* Meeting last Friday - agenda: https://indico.cern.ch/event/356853/ minutes: https://indico.cern.ch/event/356853/material/minutes/1.pdf
 
* This was the wrap-up meeting of the consolidation TF; the mailing list will remain extant for a while yet.
 
 
<!-- ******************Edit stop********************* ----->
 
<!-- ******************Edit stop********************* ----->
 
|}
 
|}
Line 369: Line 399:
 
===== =====
 
===== =====
 
<!-- ******************Edit start********************* ----->
 
<!-- ******************Edit start********************* ----->
'''Monday 17th October'''
+
'''Tuesday 5th February'''
* Mostly quiet.  We've got six outstanding tickets, four of which have been there for a while. There's one new ticket against Liverpool's ARC-CEs.  The final one is there purely to silence the availability alarm at EFDA-JET until the decommissioning process is complete.
+
* Birmingham decommissioning of SRM and BDII still going on so tickets are on hold.
 +
* Few availability tickets on hold
 +
* Lancaster has WebDav ticket on hold which seems to be effect of DOME rollout
  
'''Monday 19th September'''
+
'''Tuesday 14th August'''
* Fairly quiet week, with just the usual suspects.
+
* A couple of new availability tickets (QMUL and Lancaster), both for well-publicised reasons. Otherwise quiet. AM on shift this week.
* ROD responses received.  
+
  
'''Monday 22nd August'''
 
* Unusually quiet week. Nothing significant.
 
* Portal very slow at times though.
 
* New rota meet-o-matic request circulated - ROD team members please respond this week!
 
 
'''Monday 28th June'''
 
* The ROD rota needs to be updated.
 
  
 
<!-- ******************Edit stop********************* ----->
 
<!-- ******************Edit stop********************* ----->
Line 395: Line 419:
 
===== =====
 
===== =====
 
<!-- ******************Edit start********************* ----->
 
<!-- ******************Edit start********************* ----->
'''Tuesday 7th December'''
+
'''Monday 20th November'''
* Raul reports: validation of site BDII on Centos 7 done.
+
* IPv6: https://www.gridpp.ac.uk/wiki/IPv6_site_status (up-to-date as of November)
 +
* Batch systems and WN moves to SL7/CentOS7: https://www.gridpp.ac.uk/wiki/Batch_system_status (added column for date of last update)
  
'''Tuesday 15th September'''
 
* [http://repository.egi.eu/2015/09/10/release-umd-3-13-3/ UMD 3.13.3 is available].
 
  
'''Tuesday 12th May'''
 
* MW Readiness WG meeting Wed May 6th at 4pm. Attended by Raul, Matt, Sam and Jeremy.
 
  
  
'''References'''
+
'''Historical References'''
  
 
* Staged Rollout pages (now separated into EMI1 & 2), and the page listing the deployed versions is extractable from the bdii, so they should all be reasonably up-to-date:
 
* Staged Rollout pages (now separated into EMI1 & 2), and the page listing the deployed versions is extractable from the bdii, so they should all be reasonably up-to-date:
Line 421: Line 442:
 
{| style="background-color: #ffffff; border: 1px solid silver; border-collapse: collapse; width: 100%; margin: 0 0.5em 1em 0;"
 
{| style="background-color: #ffffff; border: 1px solid silver; border-collapse: collapse; width: 100%; margin: 0 0.5em 1em 0;"
 
|-
 
|-
| style="background-color: #b7f1ce; border-bottom: 1px solid silver; text-align: left; font-size: 1em; font-weight: bold; margin-top: 0; margin-bottom: 0; padding-left: 0.4em; padding-top: 0.1em; padding-bottom: 0.1em;" | Security - [http://www.gridpp.ac.uk/security/inchand/Incident.html Incident Procedure] [http://www.gridpp.ac.uk/security/policies/index.html Policies] [https://www.gridpp.ac.uk/wiki/SD_rota Rota]
+
| style="background-color: #b7f1ce; border-bottom: 1px solid silver; text-align: left; font-size: 1em; font-weight: bold; margin-top: 0; margin-bottom: 0; padding-left: 0.4em; padding-top: 0.1em; padding-bottom: 0.1em;" | Security - [https://www.gridpp.ac.uk/wiki/Report_Security_Incident Incident Procedure] [https://wiki.egi.eu/wiki/SPG:Documents Policies] [https://www.gridpp.ac.uk/wiki/SD_rota Rota]
 
|-
 
|-
 
| style="padding: 0.4em 0.4em 0.4em 0.4em;" |
 
| style="padding: 0.4em 0.4em 0.4em 0.4em;" |
  
 
===== =====
 
===== =====
'''Tuesday 8th November'''
+
'''Tuesday 11th June
* UK now showing clear of both CVE-2016-5195 (D.Cow) and EGI-SVG-2016-11476 (canl-c) on EGI monitoring.
+
* Talks at Hepsysman [https://indico.cern.ch/event/577279/]
+
** Matt - soundings for interest in UK pakiti instance [https://indico.cern.ch/event/577279/contributions/2357488/attachments/1367075/2071416/hepsysman1116_pakiti.pdf]
+
** David - overview of authentication using Federated Identities [https://indico.cern.ch/event/577279/contributions/2357497/attachments/1367203/2071627/WLCG_FA_HEPSYSMAN.pdf]
+
* GDB tomorrow (9th Nov) "Facilitating campus and grid security teams working on the same threats - Romain & Liviu" [https://indico.cern.ch/event/394788/]
+
* EGI Security Policy Group last week [https://indico.egi.eu/indico/event/3133/] See SPG Drafts - [https://wiki.egi.eu/wiki/SPG]
+
** Top Level Security Policy
+
** EGI AAI CheckIn Service. Example of FIM - David's hepsysman talk, see also DI4R presentation [https://www.digitalinfrastructures.eu/content/egi-aai-checkin-service]
+
** Policies around FedCloud - responsibility as root user etc.
+
  
'''Tuesday 1st November'''
+
* NTR
* Dirty COW vulnerability - CVE-2016-5195
+
** Small number of sites still showing in the EGI monitoring after the deadline. Please check the OPS Portal and acknowledge ticket promptly if you get one with explanation and plan for update.
+
* The Dutch cybersecurity center (CERT of Dutch government) just published its [https://www.ncsc.nl/english/current-topics/Cyber+Security+Assessment+Netherlands/cyber-security-assessment-netherlands-2016.html annual threat assessment report]. It gives a very good overview of trends in threats and actors, highly recommended reference material!
+
* EGI Security Policy Group meeting this week [https://indico.egi.eu/indico/event/3133/]
+
 
+
'''Tuesday 25th of October'''
+
* Dirty COW vulnerability - CVE-2016-5195
+
** Sites are asked to act to mitigate this as soon as possible - see the [https://wiki.egi.eu/wiki/SVG:Advisory-SVG-CVE-2016-5195 advisory]. Hopefully by the time the meeting comes we'll have more information on an SL fix (SL7 is available) - when this comes sites will have 7 days to update. Sites not able or wanting to apply mitigation before official patches are available have the option to go into Downtime, without penalty of loss of availability (until 3 days after official patches are available, agreed by EGI Operations).
+
*  EGI-SVG-2016-11476 (canl-c)
+
** One or two sites still popping up on the monitoring each week.
+
 
+
'''Monday 17th October'''
+
* Due to problems with pattern matching filters, Pakiti was not complaining about some instances until recently. This was in connection to vulnerability EGI-SVG-2016-11476.
+
* There was an EGI Trust Anchor release 1.78-1. Please upgrade by 2016.10.18 at your earliest convenience. Please check the [https://wiki.egi.eu/wiki/EGI_IGTF_Release release notes] for more details
+
* FedCloud Sites have received a 'Heads Up'.
+
* We are down to a few SL5 services.
+
 
+
'''Tuesday 4th October'''
+
* Sites not upgrading for EGI-SVG-2016-11476 have now been ticketed by EGI CSIRT. Although WNs not thought to be vulnerable they are asked to be upgraded as indicator of compliance elsewhere. No UK sites have been ticketed _BUT_ it looks like the monitoring is only working through CREAM CEs so there may be ARC CE installations that would show "vulnerable" if/when the monitoring is fixed. Please check.
+
* Some randon stuff from [http://www.digitalinfrastructures.eu/programme DI4R]
+
** [http://www.digitalinfrastructures.eu/content/opening-plenary Keynotes] (again) on European Open Science Cloud and Human Brain Project
+
** Good run through of pilots/plans for "Enabling federated login to WLCG" [http://www.digitalinfrastructures.eu/content/enabling-federated-login-wlcg]
+
** Anybody developing software might like to look at OSG's Rob Quick's presentation on the Software Assurance Marketplace [https://www.mir-swamp.org/# SWAMP], a free software QA tool which can help improve code quality and security.
+
** Summary of the [http://www.digitalinfrastructures.eu/content/wise-people-take-action-security "WISE people take action on Security" workshop]
+
** High level stuff on activities around procurement of infrastructure from public cloud providers [http://www.digitalinfrastructures.eu/content/cloud-procurement]
+
** Bruce Becker gave a good/amusing/thoughtful lightening talk on managing distributed infrastructure in Africa [http://www.digitalinfrastructures.eu/content/executable-infrastructure-africa-and-arabia]
+
 
+
 
+
The EGI [https://operations-portal.egi.eu/csiDashboard security dashboard].
+
  
 
|}
 
|}
Line 479: Line 462:
 
{| style="background-color: #ffffff; border: 1px solid silver; border-collapse: collapse; width: 100%; margin: 0em 0 0 0.3em;"
 
{| style="background-color: #ffffff; border: 1px solid silver; border-collapse: collapse; width: 100%; margin: 0em 0 0 0.3em;"
 
|-
 
|-
| style="background-color: #b7f1ce; border-bottom: 1px solid silver; text-align: left; font-size: 1em; font-weight: bold; margin-top: 0; margin-bottom: 0; padding-left: 0.4em; padding-top: 0.1em; padding-bottom: 0.1em;" | Services - [http://psmad.grid.iu.edu/maddash-webui/index.cgi?dashboard=UK%20Config PerfSonar production dashboard] |[http://maddash.aglt2.org/maddash-webui/index.cgi?dashboard=UK%20Config PerfSonar development dashboard] | [https://voms.gridpp.ac.uk:8443/vomses/ GridPP VOMS]
+
| style="background-color: #b7f1ce; border-bottom: 1px solid silver; text-align: left; font-size: 1em; font-weight: bold; margin-top: 0; margin-bottom: 0; padding-left: 0.4em; padding-top: 0.1em; padding-bottom: 0.1em;" | Services - [https://psmad.opensciencegrid.org/maddash-webui/index.cgi?dashboard=UK%20Mesh%20Config PerfSonar production dashboard] |[https://psetf.opensciencegrid.org/etf/check_mk/index.py?start_url=%2Fetf%2Fcheck_mk%2Fview.py%3Fhostgroup%3DUK%26opthost_group%3DUK%26view_name%3Dhostgroup PerfSonar ETF] | [http://opensciencegrid.org/networking/ OSG Networking and perfSONAR pages] | [https://voms.gridpp.ac.uk:8443/vomses/ GridPP VOMS]
 
|-
 
|-
 
| style="padding: 0.4em 0.4em 0.4em 0.4em;" |
 
| style="padding: 0.4em 0.4em 0.4em 0.4em;" |
Line 487: Line 470:
 
- This includes notifying of (inter)national services that will have an outage in the coming weeks or will be impacted by work elsewhere. (Cross-check the Tier-1 update).
 
- This includes notifying of (inter)national services that will have an outage in the coming weeks or will be impacted by work elsewhere. (Cross-check the Tier-1 update).
  
Tuesday 25th October
+
'''Monday 5th March'''
* Duncan has recreated the UK perfSONAR mesh. [http://maddash.aglt2.org/maddash-webui/index.cgi?dashboard=UK%20Config Link here]!
+
* Next LHCOPN and LHCONE meeting: [https://indico.cern.ch/event/772031/ Umeå, Sweden, 4-5 Jun 2019]. Registration required.
  
 +
'''Monday 10th September'''
 +
* Please check perfSONAR status [https://psetf.opensciencegrid.org/etf/check_mk/index.py?start_url=%2Fetf%2Fcheck_mk%2Fview.py%3Ffilled_in%3Dfilter%26host_regex%3Duk%26view_name%3Dsearchhost here] especially the mesh URL (should be http://psconfig.opensciencegrid.org/pub/auto/FQDN)
  
'''Monday 19th September'''
+
'''Monday 2nd July'''
* UK eScience CA - certificate issuance problems. Jens reported that on 15th a partial but significant database corruption occurred on the signing system for the CA. Data was restored from (offline) backups but the rebuild was not correctly configured.
+
* Next LHCOPN and LHCONE meeting: [https://indico.cern.ch/event/725706/ Fermilab, Batavia US, 30-31October 2018]. Registration required.  
  
* A large number of site admins and other GridPP supporters appeared to be suspended from the dteam VO last week. “During a planned  upgrade operation of VOMS service, a system malfunction occurred. As a result, some users received false notification about membership expiration. We are in contact with the software development team in order to identify the cause.
+
'''Monday 30th April'''
 +
* The [https://indico.cern.ch/event/725706/ next LHCOPN and LHCONE joint meeting] will take place on Tuesday the 30th and Wednesday the 31st of October 2018
 +
 
 +
'''Monday 19th February'''
 +
 
 +
Please could sites upgrade their perfsonar hosts to CentOS7. Instructions are [https://opensciencegrid.github.io/networking/perfsonar/installation/ here]. Current OS versions [https://tinyurl.com/y9eode2b here].
 +
 
 +
* Duncan has recreated the UK perfSONAR mesh. [http://maddash.aglt2.org/maddash-webui/index.cgi?dashboard=UK%20Config Link here]!
  
  
Line 509: Line 501:
 
===== =====
 
===== =====
 
<!-- ******************Edit start********************* ----->
 
<!-- ******************Edit start********************* ----->
'''Friday 11th November 2016, 15.30 GMT'''<br />
 
30 Open UK Tickets at the moment - keeping the review light:
 
 
'''CMS want their Storage Dumps from RAL'''<br />
 
https://ggus.eu/?mode=ticket_info&ticket_id=124606<br />
 
They've upped the urgency on this request for the storage consistency checks - please can someone from the Tier 1 sooth them?
 
 
'''WMS for na62'''<br />
 
[https://ggus.eu/?mode=ticket_info&ticket_id=124478 124478] (RAL)<br />
 
[https://ggus.eu/?mode=ticket_info&ticket_id=124241 124241] (IC)<br />
 
I might be misunderstanding things by lumping these tickets together, but in the IC ticket Daniela notes that bug listed in [https://ggus.eu/index.php?mode=ticket_info&ticket_id=124499 124499]has been fixed and the fix rolled out, so has asked if na62 want to try it again. Daniela also adds some suggestions to the RAL ticket to help debug things. Thanks Daniela!
 
 
'''REOPENED CMS Tickets'''<br />
 
[https://ggus.eu/?mode=ticket_info&ticket_id=124785 124785] - TIER 1<br />
 
[https://ggus.eu/?mode=ticket_info&ticket_id=124848 124848] - RHUL<br />
 
For information - these two tickets have been reopened/re-assigned, and we know from experience that tickets in these states have a habit of sneaking past our collective guard.
 
 
'''THE 5 AFS TICKETS'''<br />
 
I won't list them, but I would regard these tickets as quite closable one you've forwarded the issue onto the local admins (if you are the local admin too feel free to keep them open for your convenience though!)
 
  
Finally, [http://tinyurl.com/nwgrnys the link to all the UK Tickets].  
+
32 Open Tickets this week, which is an in depth a look as I've been able to take.
  
 
<!-- ******************Edit stop********************* ----->
 
<!-- ******************Edit stop********************* ----->
Line 544: Line 517:
 
===== =====  
 
===== =====  
 
<!-- ******************Edit start********************* ----->
 
<!-- ******************Edit start********************* ----->
''' 13th September 2016 '''
+
'''Monday 20th November'''
 +
* The WLCG dashboard is available here: http://dashboard.cern.ch/.
 +
* Please review the results on [http://pprc.qmul.ac.uk/~lloyd/gridpp/ Steve's test pages].
  
* New wiki page has been created for ARGO Nagios https://www.gridpp.ac.uk/wiki/ARGO_Nagios_Monitoring. I will add some more information to it later.
+
'''Tuesday 18th July'''
* Removed old wiki links about sam nagios from gridpp wiki page.
+
* Following our ops discussion last week, Steve will focus [http://pprc.qmul.ac.uk/~lloyd/gridpp/ his tests] on supporting the GridPP DIRAC area and decommission the other tests.
* VO nagios still exist and working. I have opened a ticket to explore ARGO VO Nagios,  https://ggus.eu/index.php?mode=ticket_info&ticket_id=123604
+
  
  
''' 19th July '''
 
 
Both instances of gridppnagios at Oxford and Lancaster has been decommissioned.
 
 
''' 12th July 2016 '''
 
 
Central ARGO monitoring service  has started from 1st of July. All grid resources are monitored through two Nagios instances
 
 
https://argo-mon.egi.eu/nagios/
 
 
https://argo-mon2.egi.eu/nagios/
 
 
It has same interface as gridppnagios. Alarms from these instances goes to Operational Dashboard
 
 
http://argo.egi.eu/ is a web interface which provides availability/reliability figures and site status. It is equivalent of old myegi interface with some additional services.
 
 
I am planning to decommission both instances of gridppnagios in coming weeks. I have stopped nagios  and httpd on both instances so it will not send tests to grid resources in UK.  I will also decommission storage-monit.physics.ox.ac.uk which was only used for storage replication test. 
 
 
We will keep vo-nagios.physics.ox.ac.uk running until we get a replacement for vo-monitoring.
 
 
 
'''Monday 13th June'''
 
* Active Nagios instance moved to Lancaster
 
 
''' Tuesday 5th April 2016 '''
 
 
Oxford had a scheduled network warning so active nagios instance was moved from Oxford to Lancaster. I am not planning to move it back to Oxford for the time being.
 
 
 
''' Tuesday 26th Jan 2016 '''
 
 
One of the message broker was in downtime for almost three days. Nagios probes picks up a random message broker and failover is not working so a lot of ops jobs hanged for long time. Its a known issue and unlikely to be fixed as SAM Nagios is in its last leg. Monitoring is moving to ARGO and many things are not clear at the moment.
 
 
'''Monday 30th November'''
 
* The SAM/ARGO team has created a [https://wiki.egi.eu/wiki/Service_Level_Target_-_Availability_Reliability document] describing Availability reliability calculation in ARGO tool.
 
  
 
<!-- ******************Edit stop********************* ----->
 
<!-- ******************Edit stop********************* ----->
Line 594: Line 533:
 
{| style="background-color: #ffffff; border: 1px solid silver; border-collapse: collapse; width: 100%; margin: 1em 0 0 0.3em;"
 
{| style="background-color: #ffffff; border: 1px solid silver; border-collapse: collapse; width: 100%; margin: 1em 0 0 0.3em;"
 
|-
 
|-
| style="background-color: #b7f1ce; border-bottom: 1px solid silver; text-align: left; font-size: 1em; font-weight: bold; margin-top: 0; margin-bottom: 0; padding-left: 0.4em; padding-top: 0.1em; padding-bottom: 0.1em;" | VOs - [https://voms.gridpp.ac.uk:8443/vomses/ GridPP VOMS] [http://operations-portal.egi.eu/vo VO IDs] [https://www.gridpp.ac.uk/wiki/GridPP_approved_VOs Approved] [http://pprc.qmul.ac.uk/~walker/votable.html VO table]
+
| style="background-color: #b7f1ce; border-bottom: 1px solid silver; text-align: left; font-size: 1em; font-weight: bold; margin-top: 0; margin-bottom: 0; padding-left: 0.4em; padding-top: 0.1em; padding-bottom: 0.1em;" | VOs - [https://voms.gridpp.ac.uk:8443/vomses/ GridPP VOMS] [http://operations-portal.egi.eu/vo VO IDs] [https://www.gridpp.ac.uk/wiki/GridPP_approved_VOs Approved] [http://pprc.qmul.ac.uk/~lloyd/gridpp/votable.html VO table]
 
|-
 
|-
 
| style="padding: 0.4em 0.4em 0.4em 0.4em;" |
 
| style="padding: 0.4em 0.4em 0.4em 0.4em;" |
Line 600: Line 539:
 
===== =====
 
===== =====
 
<!-- ******************Edit start********************* ----->
 
<!-- ******************Edit start********************* ----->
'''Tuesday 19th May'''
 
* There is a current priority for enabling/supporting our joining communities.
 
  
'''Tuesday 5th May'''
+
'''Monday 20th November'''
* We have a number of VOs to be removed. Dedicated follow-up meeting proposed.
+
* Tom Whyntie has requested (and been granted) access to the GridPP VO to get some pipelines working for large-scale processing and analysis of MRI scans associated with the [http://www.ukbiobank.ac.uk/ UK Biobank project].
 +
* All VOs in the incubation page being prompted for updates by the end of November (required input for OC documents).
 +
* QMUL (Steve L) is following up on the biomed MoU. GridPP want to be cited in research papers for the support our resources/sites provide.
  
'''Tuesday 28th April'''
 
* For SNOPLUS.SNOLAB.CA, the port numbers for voms02.gridpp.ac.uk  and voms03.gridpp.ac.uk  have both been updated from 15003 to 15503.
 
 
'''Tuesday 31st March'''
 
* LIGO are in need of additional support for debugging some tests.
 
* LSST now enabled on 3 sites. No 'own' CVMFS yet.
 
  
 
* Impact
 
* Impact
Line 629: Line 562:
 
===== =====
 
===== =====
 
<!-- ******************Edit start********************* ----->
 
<!-- ******************Edit start********************* ----->
'''Tuesday 23rd February'''
+
'''Date'''
 
+
* For January:
+
[http://wlcg-sam.cern.ch/reports/2016/201601/wlcg/WLCG_All_Sites_ALICE_Jan2016.pdf ALICE]:
+
All okay.
+
 
+
* [http://wlcg-sam.cern.ch/reports/2016/201601/wlcg/WLCG_All_Sites_ATLAS_Jan2016.pdf ATLAS]:
+
RHUL 89%:89%
+
Lancaster 0%:0%
+
 
+
* [http://wlcg-sam.cern.ch/reports/2016/201601/wlcg/WLCG_All_Sites_CMS_Jan2016.pdf CMS]:
+
RALPP: 80%::80%
+
 
+
* [http://wlcg-sam.cern.ch/reports/2016/201601/wlcg/WLCG_All_Sites_LHCB_Jan2016.pdf LHCb]:
+
RALPP: 77%:77%
+
 
+
* Site responses:
+
 
+
** RHUL: The largest problem was related to the SRM. The DPM version was upgraded and it took several weeks to get it working again (13 Jan onwards). Several short-lived occurrences of running out of space on the SRM for non-ATLAS VOs. For around 3 days (15-17 Jan) the site suffered from a DNS configuration error by their site network manager which removed their SRM from the DNS, causing external connections such as tests and transfers to fail. For one day (25 Jan) the site network was down for upgrade to the 10Gb link to JANET. Some unexpected problems occurred extending the interruption from an hour to a day. The link has been successfully commissioned.
+
 
+
** Lancaster: The ASAP metric for Lancaster for January is 97.5 %. There is a particular problem with ATLAS SAM tests which doesn’t affect the site activity in production and analysis and this relates to the path name being too long. A re-calculation has been performed.
+
 
+
** RALPP: Both CMS and LHCb low figures are due to specific CMS jobs overloading the site SRM head node. The jobs should have stopped now.
+
  
  

Latest revision as of 14:09, 30 October 2019

Bulletin archive


Week commencing Monday 25th February 2019
Task Areas
General updates

Tuesday 18th June


Tuesday 11th June

Tuesday 4th June 2019


WLCG Operations Coordination - AgendasWiki Page

Tuesday 11th June

  • I got stuck (figuratively) in my machine room last Thursday afternoon so missed it. Agenda. Minutes. Ste was there - any observations?

Tuesday 14th May

  • Next meeting this Thursday.

Tuesday 9th April


Tuesday 26th March

Monday 11th February 2019

  • There was a WLCG ops coordination meeting last Thursday. You can view the meeting notes here.
    • End of CREAM support Dec 2020.
    • Migration from CREAM to be discussed at the EGI conference 6-8 of May in Amsterdam.
    • Operational intelligence discussion (see slides).
    • Experiment updates (see ATLAS discussion on DOMA)
    • WG updates (few).




Tier-1 - Status Page

17 June 2019 Report for the Experiments Liaison Report (17/06/2019) is here.

  • Ongoing, we are seeing high outbound packet loss over IPv6. Central networking performed a firmware update to the border routers but this didn’t resolve the issue. Plan to move connections to the new border routers in Mid June. Will do this before trying to debug any further.

11 June 2019 Report for the Experiments Liaison Report (10/06/2019) is here.

  • Ongoing, we are seeing high outbound packet loss over IPv6. Central networking performed a firmware update to the border routers but this didn’t resolve the issue. Plan to move connections to the new border routers in Mid June. Will do this before trying to debug any further.
  • Three certificates were revoked mistakenly on ARGUS on Thursday. All SAM tests failed until this was fixed the next morning. Batch farm also did not start any new jobs during this time. We used this accidental draining to reboot nodes that needed to pick up security patching.
  • LHCb Castor instance has been completely disabled for LHCb and will be decommissioned.
  • Brian Davies has transferred from his role as GridPP Tier-2 Storage Support Officer and has joined the Tier-1 Production Team. Although this has happened with immediate effect he will still be available for ad-hoc/informal storage support.
Storage & Data Management - Agendas/Minutes

Wed 30 Oct

  • DOME upgrade problems at Edinburgh
  • Data management support/development for IRIS users

Wed 23 Oct

  • Rucio reporting

Wed 16 Oct

  • CEPH workshop at CERN report

Wed 02 Oct

  • Safe to upgrade to DPM 1.13 but make sure the BDII is working if you support DIRAC
  • Roadmap for xroot and http TPC for RAL FTS(es)

Wed 25 Sept

  • Storage support for IRIS VOs?

Wed 18 Sept

  • Report from yesterday's Rucio Face Meeting at Coseners
  • Suggestions for following up from yesterday's CEPH day hosted by CERN

Wed 11 Sept

  • Storage related stuff at the FNAL (pre-)GDBs
  • DOME upgrade tickets for non-DOME DPM sites

Wed 04 Sept

  • Banning in SSC not entirely successful in non-DOME DPM, and end of support is nigh; tickets to upgrade will go out shortly.
  • Storage-and-data-management-wise, GridPP43 was interesting although no-one volunteered to install the next CEPH.


Tier-2 Evolution - GridPP JIRA

Tuesday 30 Apr 2019

  • ATLAS CernVM4 VMs (equivalent to CentOS 7.6) being tested


Accounting - UK Grid Metrics HEPSPEC06 Atlas Dashboard HS06

Tuesday 6th February


Tuesday 30th January

Tuesday 24th Oct


Monday 16th January

  • The discussion topic for next week will be accounting comparisons. Please note Alessandra's comments last week.

Monday 14th November

  • Alessandra has written an FAQ to extract numbers from ATLAS and APEL avoiding the SSB.

Monday 26th September

  • A problem with the APEL Pub and Sync tests developed last Tuesday and was resolved on Wednesday. This had a temporary impact on the accounting portal.
Documentation - KeyDocs

Tue 9th July 2019

LHCb has added this to their requirements:

Sites not having an SRM installation must provide:

Tue 16th April 2019

Minor change to LHCB requirements in Approved VOs:

  • Sites having migrated to the Centos7 (including "Cern Centos7") operating system or later versions are requested to provide support for singularity containers.

https://www.gridpp.ac.uk/wiki/GridPP_approved_VOs#VO_Resource_Requirements

Tue 2nd April 2019

Changes to Approved for DUNE (and LZ)

There is a new "Approved VOs" document showing new settings for DUNE. And, since both LZ's voms servers now show up in the EGI Portal, I've removed the (now spurious) entry for voms.hep.wisc.edu that was formerly being inserted by hand.

https://www.gridpp.ac.uk/wiki/GridPP_approved_VOs

I've also created a new set of RPMs (each has all LSC, VOMS, and XML for one VO) for all approved VOs. See Approved VOs doc for details, version is 1.9.

Sites with DUNE services need to update using whatever method they employ.

Special note: Since voms1.fnal.gov changed yesterday, I've updated documentation for that right away. But voms2.fnal.gov remains as it is until 23rd April (3 weeks). I'll update documentation for that when it is closer. Staggering the updates like this gives a time margin, so any particular site can have at least one service properly configured at any time. But it does mean that two site updates are needed; one now, and one in three weeks. However, since it's sufficient for only one (of the two) voms servers to be configured properly, sites could save effort and wait until (say) 19th April, then update both at once. But I can't dictate what site admins should do. It's your call.

Ste


Tuesday 5th Mar 2019 New VOMs details for Biomed: https://www.gridpp.ac.uk/wiki/GridPP_approved_VOs

New VOMs rpms to match.

http://hep.ph.liv.ac.uk/~sjones/RPMS.voms/

Tuesday 12th Feb 2019 Documentation done for HTCondor-CE apel accounting. https://twiki.cern.ch/twiki/bin/view/LCG/HtCondorCeAccounting


Tuesday 12th Feb 2019 New CA DN for Biomed

< VOMS_CA_DN="'/C=FR/O=CNRS/CN=GRID2-FR' "
---
> VOMS_CA_DN="'/C=FR/O=MENESR/OU=GRID-FR/CN=AC GRID-FR Services' "

Tuesday 5th Feb 2019 For enmr, certificate of voms-02.pd.infn.it

New DN: /DC=org/DC=terena/DC=tcs/C=IT/L=Frascati/O=Istituto Nazionale di Fisica Nucleare/CN=voms-02.pd.infn.it, New CA_DN: /C=NL/ST=Noord-Holland/L=Amsterdam/O=TERENA/CN=TERENA eScience SSL CA 3

Please check approved VOs: https://www.gridpp.ac.uk/wiki/GridPP_approved_VOs


General note

See the worst KeyDocs list for documents needing review now and the names of the responsible people.

Interoperation - EGI ops agendas Indico schedule

14 May 2019

  • Meeting for May cancelled. Next meeting is on 10th June.

Monday 11th March


Tuesday 12th February

  • There was an EGI ops meeting yesterday - Agenda. We were asked to review the IPv6 readiness information (see here). We should perhaps link in the GridPP IPv6 table for updates status.


Friday 1st February

Thursday 17th January EGI OMB meeting

  • CREAMCE to be out of support by Dec 2020
  • More effort to fix accounting issue of HTCondor CE

Monday 14th January 2019

  • No UK specific issue mentioned.
  • IPv6 readiness plan is going to be summarized at OMB.

'


Monitoring - Links MyWLCG

Tuesday 4th July

  • There were a number of useful links provided in the monitoring talks at the WLCG workshop in Manchester - especially those in the Wednesday sessions.

Monday 13th February

  • This category is pretty much inactive. Are there any topics under "monitoring" that anyone wants reported at this ops meeting? If not we will remove this section from the regular updates area of the bulletin and just leave the main links.

Tuesday 1st December


Tuesday 16th June

  • F Melaccio & D Crooks decided to add a FAQs section devoted to common monitoring issues under the monitoring page.
  • Feedback welcome.


On-duty - Dashboard ROD rota

Tuesday 5th February

  • Birmingham decommissioning of SRM and BDII still going on so tickets are on hold.
  • Few availability tickets on hold
  • Lancaster has WebDav ticket on hold which seems to be effect of DOME rollout

Tuesday 14th August

  • A couple of new availability tickets (QMUL and Lancaster), both for well-publicised reasons. Otherwise quiet. AM on shift this week.


Rollout Status WLCG Baseline

Monday 20th November



Historical References


Security - Incident Procedure Policies Rota

Tuesday 11th June

  • NTR


Services - PerfSonar production dashboard |PerfSonar ETF | OSG Networking and perfSONAR pages | GridPP VOMS

- This includes notifying of (inter)national services that will have an outage in the coming weeks or will be impacted by work elsewhere. (Cross-check the Tier-1 update).

Monday 5th March

Monday 10th September

Monday 2nd July

Monday 30th April

Monday 19th February

Please could sites upgrade their perfsonar hosts to CentOS7. Instructions are here. Current OS versions here.

  • Duncan has recreated the UK perfSONAR mesh. Link here!


Tickets

32 Open Tickets this week, which is an in depth a look as I've been able to take.

Tools - MyEGI Nagios

Monday 20th November

Tuesday 18th July

  • Following our ops discussion last week, Steve will focus his tests on supporting the GridPP DIRAC area and decommission the other tests.


VOs - GridPP VOMS VO IDs Approved VO table

Monday 20th November

  • Tom Whyntie has requested (and been granted) access to the GridPP VO to get some pipelines working for large-scale processing and analysis of MRI scans associated with the UK Biobank project.
  • All VOs in the incubation page being prompted for updates by the end of November (required input for OC documents).
  • QMUL (Steve L) is following up on the biomed MoU. GridPP want to be cited in research papers for the support our resources/sites provide.


Site Updates

Date



Meeting Summaries
Project Management Board - MembersMinutes Quarterly Reports

Empty

GridPP ops meeting - Agendas Actions Core Tasks

Empty


RAL Tier-1 Experiment Liaison Meeting (Wednesday 13:30) Agenda Meeting takes place on Vidyo.

Highlights from this meeting are now included in the Tier1 report farther up this page.

WLCG Grid Deployment Board - Agendas MB agendas

Empty



NGI UK - Homepage CA

Empty

Events
UK ATLAS - Shifter view News & Links

Atlas S&C week 2-6 Feb 2015

Production

• Prodsys-2 in production since Dec 1st

• Deployment has not been transparent , many issued has been solved, the grid is filled again

• MC15 is expected to start soon, waiting for physics validations, evgen testing is underway and close to finalised.. Simulation expected to be broadly similar to MC14, no blockers expected.

Rucio

• Rucio in production since Dec 1st and is ready for LHC RUN-2. Some fields need improvements, including transfer and deletion agents, documentation and monitoring.

Rucio dumps available.

Dark data cleaning

files declaration . Only Only DDM ops can issue lost files declaration for now, cloud support needs to fill a ticket.

• Webdav panda functional tests with Hammercloud are ongoing

Monitoring

Main page

DDM Accounting

space

Deletion

ASAP

• ASAP (ATLAS Site Availability Performance) in place. Every 3 months the T2s sites performing BELOW 80% are reported to the International Computing Board.


UK CMS

Empty

UK LHCb

Empty

UK OTHER
  • N/A
To note

  • N/A