Difference between revisions of "Operations Bulletin Latest"

From GridPP Wiki
Jump to: navigation, search
()
()
 
(706 intermediate revisions by 17 users not shown)
Line 5: Line 5:
 
{| width="100%" cellspacing="0" cellpadding="0" style="background-color: #ffffff; border: 1px solid silver; border-collapse: collapse; width: 100%; margin: 0 0 1em 0;"
 
{| width="100%" cellspacing="0" cellpadding="0" style="background-color: #ffffff; border: 1px solid silver; border-collapse: collapse; width: 100%; margin: 0 0 1em 0;"
 
|-
 
|-
| style="background-color: #d8e8ff; border-bottom: 1px solid silver; text-align: center; font-size: 1em; font-weight: bold; margin-top: 0; margin-bottom: 0; padding-top: 0.1em; padding-bottom: 0.1em;" | Week commencing Monday 12th February 2018
+
| style="background-color: #d8e8ff; border-bottom: 1px solid silver; text-align: center; font-size: 1em; font-weight: bold; margin-top: 0; margin-bottom: 0; padding-top: 0.1em; padding-bottom: 0.1em;" | Week commencing Monday 25th February 2019
 
|}
 
|}
  
Line 27: Line 27:
 
====== ======
 
====== ======
 
<!-- *********************************************************** ----->
 
<!-- *********************************************************** ----->
<!-- ***********************Start General text*********************** ----->'''
+
'''Tuesday 18th June'''
'''Monday 12th February'''
+
* DPM Workshop last week - come to this week's storage meeting for an in-depth look.
* Dan: New rack PDUs
+
** https://indico.cern.ch/event/776832/
* Rajan: SL7 UI Machine
+
* DIRAC downtime this week due to the move to Slough - good luck!
* EGI A/R
+
* EGI Ops meeting this week.
* [https://indico.cern.ch/event/699602/ DPM workshop 2018 at CESNET] 31st May - 2nd June.
+
** https://wiki.egi.eu/wiki/Agenda-2019-06-17
* Brian: Approaching end of support for dCache v2.16, v3.0 & v3.1
+
** HTCondorCE commissioning ongoing, SRM decommissioning survey
* Spectre/Meltdown experiment VM updates
+
** State of SRM usage at DPM sites?
* Thematic CERN School of Computing 2018 - [https://indico.cern.ch/e/tCSC-2018 applications are open]
+
* Notes from the [https://twiki.cern.ch/twiki/bin/view/LCG/WLCGOpsMeetingWeek180212 WLCG ops meeting on Monday].
+
* The February GDB is on Wednesday 14th with [https://indico.cern.ch/event/651350/ this agenda].
+
* There was a [https://indico.cern.ch/event/651338/ pre-GDB on 2nd February looking at HPC utilization].
+
* Tuesday 13th there is a [https://indico.cern.ch/event/689511/ pre-GDB discussion about GPU utilisation].
+
  
'''Monday 5th February'''
 
* Chris B: IPv6 and Data Transfer Zones.
 
* Steve’s & Duncan’s view on [http://pprc.qmul.ac.uk/~lloyd/gridpp/ukgrid.html GridPP IPv6 enablement]
 
* Sites are now being ticketed in respect of Meltdown/Spectre. [https://wiki.egi.eu/wiki/SVG:Meltdown_and_Spectre_Vulnerabilities EGI overview page] has been updated.
 
* EGI ([https://operations-portal.egi.eu/broadcast/archive/1949 Operations Broadcast of 2nd February])
 
** NGIs argus servers to update
 
** webdav probes in the ARGO_MON_OPERATORS monitoring profile
 
** UMD 4.6.0 regular release
 
* WLCG VOBOX available for CentOS/EL7
 
* Rod Tickets and Broken Tests
 
* [https://www.escience2018.com 14th IEEE E-Sicence conference] which will be held in Amsterdam in October 2018. There is one session on Exascale Computing for High Energy Physics, see the Call for  Contribution tab in the conference page.
 
* [https://twiki.cern.ch/twiki/bin/view/LCG/WLCGOpsMeetingWeek180205 Minutes from Monday's WLCG operations] call are available.
 
  
 +
'''Tuesday 11th June'''
  
'''Tuesday 30th January'''
+
* Technical Meeting last week about the New JSON based Information System:  https://indico.cern.ch/event/821105/
* [https://twiki.cern.ch/twiki/bin/view/LCG/WLCGOpsMeetingWeek180129 WLCG Monday operations meeting minutes] are available.
+
* This week we will get round to looking at the outcome of the Security Day (and HEPSYSMAN).
* John/Liverpool: WAN woes.
+
* The DPM Workshop is this week: https://indico.cern.ch/event/776832/ There's a Vidyo Room planned for people to listen in.
* Kashif: DPM upgrade and migration to CS7. Are there any summary pages?
+
* CentOS7 Migration https://twiki.cern.ch/twiki/bin/view/AtlasComputing/CentOS7Deployment
* Ivan: CPU comparisons/benchmarks - Xeon 6126, Xeon 6130, Xeon E5-2683v4, EPYC 7501. Is [https://www.gridpp.ac.uk/wiki/HEPSPEC06 this page] up-to-date for your site?
+
<!-- ***********************Start General text*********************** ----->'''
* Tom/Catalin investigating "confidential" CVFMS software repository on the RAL Stratum 0.
+
'''Tuesday 4th June 2019'''
 +
* The Security Day  + HEPSYSMAN was on t'other week: https://indico.cern.ch/event/721692/
 +
* Please can sites review their GOCDB information: https://ggus.eu/?mode=ticket_info&ticket_id=141296
 +
* iris.ac.uk VO - Andrew explained this.
 +
* New(-ish) HEPOSLib release - 7.2.9 https://twiki.cern.ch/twiki/bin/view/LCG/WLCGBaselineTable
 +
* Gareth's query about the WS interface to ARC on TB-SUPPORT
 +
* Anything else?
  
  
Line 78: Line 68:
 
<!-- *********************************************************** ----->
 
<!-- *********************************************************** ----->
 
<!-- ***********************Start ops coord text*********************** ----->
 
<!-- ***********************Start ops coord text*********************** ----->
'''Monday 29th January'''
+
'''Tuesday 11th June'''
* The majority of T1 sites and VOs confirmed that they do use SAM tests from the critical profiles and regularly check A/R reports.
+
 
Suggestions for improvements:
+
* I got stuck (figuratively) in my machine room last Thursday afternoon so missed it. [https://indico.cern.ch/event/823800/ Agenda.] [https://twiki.cern.ch/twiki/bin/view/LCG/WLCGOpsMinutes190606 Minutes.] Ste was there - any observations?
** Propose policy for accepting A/R recalculation requests. The draft should be reviewed at the next meeting.
+
 
** VO should have flexibility in the definition of the critical profile. Though the impact of the changes in the critical profile should be carefully tested by the VO and should be announced in advance to the sites, no approval of the MB is required.
+
'''Tuesday 14th May'''
** Make tests as close as possible to the real production flow. ATLAS is planning some work in this direction.
+
* Next meeting this Thursday.
** The proposal to include real production flows in the critical profile was not supported.
+
 
** Sites which do have local fabric monitoring like Nagios for example, are recommended to use an API to import test results into the local fabric monitoring. **This would help to avoid test failures staying unnoticed for months.
+
'''Tuesday 9th April'''
** Transparent navigation from the SAM UI to the log files is required to facilitate test failure debugging. This feature has to be preserved in the new SAM UI being developed by the monitoring team.
+
* Ops meeting last week: https://twiki.cern.ch/twiki/bin/view/LCG/WLCGOpsMinutes190404
 +
 
 +
 
 +
'''Tuesday 26th March'''
 +
* For information, there was an Ops meeting on the 7th: https://twiki.cern.ch/twiki/bin/viewauth/LCG/WLCGOpsMinutes190307 (I think we might have dicussed this one).
 +
* Next meeting booked for 4th April
 +
 
 +
'''Monday 11th February 2019'''
 +
* There was a WLCG ops coordination meeting last Thursday. You can view the meeting notes [https://twiki.cern.ch/twiki/bin/view/LCG/WLCGOpsMinutes190207 here].
 +
** End of CREAM support Dec 2020.
 +
** Migration from CREAM to be discussed at the EGI conference 6-8 of May in Amsterdam.
 +
** Operational intelligence discussion ([https://indico.cern.ch/event/795889/sessions/302520/attachments/1792600/2920978/Operational_Intelligence_-_WLCG_Ops_Coord-2.pdf see slides]).  
 +
** Experiment updates (see ATLAS discussion on DOMA)
 +
** WG updates (few).
 +
 
  
  
'''Tuesday 23rd January'''
 
* There was a WLCG ops coordination meeting on [https://twiki.cern.ch/twiki/bin/view/LCG/WLCGOpsMinutes180118 18th January].
 
* Theere was a theme of SAM tests and their use in WLCG reporting. The short summary is that there is overwhelming support for use of SAM tests for operational benefits but there is often a gap between the SAM reports and experiment perceptions of site performance. One major concern was the effort required to recompute results given the number of requests where sites are trying to show even small improvements in their performance to their management/funders. A more useful measure would include a reference to job accounting. A proposal will be made to the MB. GridPP may make a statement to the WLCG MB regarding our management use.
 
  
  
Line 110: Line 111:
 
<!-- *********************************************************** ----->
 
<!-- *********************************************************** ----->
 
<!-- ***********************Start T1 text*********************** ----->
 
<!-- ***********************Start T1 text*********************** ----->
'''Tuesday 20th February'''
+
 
Report from the last Tier1 - Experiments Liaison Meeting at on 7th February is [https://www.gridpp.ac.uk/wiki/Tier1_Operations_Report_2018-02-13 here].
+
'''17 June 2019''' Report for the Experiments Liaison Report (17/06/2019) is [https://www.gridpp.ac.uk/wiki/Tier1_Operations_Report_2019-06-17 here].
* Generally a quiet week at RAL.
+
<!-- *********************************************************** ----->
* CMS and Atlas reported failures for writes into Echo, GGUS 133399. This was solved by altering the port range being allocated for incoming and outgoing transfers in the GridFTP config
+
* A problem with condor not starting Atlas jobs was investigated and solved.
+
 
<!-- **********************End T1 text************************** ----->
 
<!-- **********************End T1 text************************** ----->
 +
* Ongoing, we are seeing high outbound packet loss over IPv6.  Central networking performed a firmware update to the border routers but this didn’t resolve the issue.  Plan to move connections to the new border routers in Mid June.  Will do this before trying to debug any further.
 +
 +
'''11 June 2019''' Report for the Experiments Liaison Report (10/06/2019) is [https://www.gridpp.ac.uk/wiki/Tier1_Operations_Report_2019-06-10 here].
 
<!-- *********************************************************** ----->
 
<!-- *********************************************************** ----->
 +
<!-- **********************End T1 text************************** ----->
 +
* Ongoing, we are seeing high outbound packet loss over IPv6.  Central networking performed a firmware update to the border routers but this didn’t resolve the issue.  Plan to move connections to the new border routers in Mid June.  Will do this before trying to debug any further.
 +
* Three certificates were revoked mistakenly on ARGUS on Thursday.  All SAM tests failed until this was fixed the next morning.  Batch farm also did not start any new jobs during this time.  We used this accidental draining to reboot nodes that needed to pick up security patching.
 +
* LHCb Castor instance has been completely disabled for LHCb and will be decommissioned.
 +
* Brian Davies has transferred from his role as GridPP Tier-2 Storage Support Officer and has joined the Tier-1 Production Team.  Although this has happened with immediate effect he will still be available for ad-hoc/informal storage support.
 +
 
|}
 
|}
<!-- ****************End T1****************** ----->
 
  
 
<!-- ****************Start Storage & DM****************** ----->
 
<!-- ****************Start Storage & DM****************** ----->
Line 130: Line 137:
 
<!-- ******************Edit start********************* ----->
 
<!-- ******************Edit start********************* ----->
  
'''[http://storage.esc.rl.ac.uk/weekly/20171206-minutes.txt Wed 06 Dec]'''
+
'''[http://storage.esc.rl.ac.uk/weekly/20191030-minutes.txt Wed 30 Oct]'''
* Another success story - CERN@School running machine learning at QMUL
+
* DOME upgrade problems at Edinburgh
* Technical events coming up - hepsysman and cloud workshop at Crick. We ought to do something Useful or Interesting.
+
* Data management support/development for IRIS users
  
'''[http://storage.esc.rl.ac.uk/weekly/20171115-minutes.txt Wed 15 Nov]'''
+
'''[http://storage.esc.rl.ac.uk/weekly/20191023-minutes.txt Wed 23 Oct]'''
* More xcache progress at some sites; less at others who may be blocking on dependencies or be busy with Other Things(tm)
+
* Rucio reporting
* Some interest in following the non-X.509 authentication/authorisation
+
  
'''[http://storage.esc.rl.ac.uk/weekly/20171108-minutes.txt Wed 08 Nov]'''
+
'''Wed 16 Oct'''
* Not (very) modest at all progress on xcache testing... from Chris at RALPP
+
* CEPH workshop at CERN report
  
'''[http://storage.esc.rl.ac.uk/weekly/20171101-minutes.txt Wed 01 Nov]'''
+
'''[http://storage.esc.rl.ac.uk/weekly/20191002-minutes.txt Wed 02 Oct]'''
* (very) modest progress on xcache testing...
+
* Safe to upgrade to DPM 1.13 but make sure the BDII is working if you support DIRAC
* Except that RALPP has it fully working for dCache - hope to get full report next week
+
* Roadmap for xroot and http TPC for RAL FTS(es)
 +
 
 +
'''[http://storage.esc.rl.ac.uk/weekly/20190925-minutes.txt Wed 25 Sept]'''
 +
* Storage support for IRIS VOs?
 +
 
 +
'''[http://storage.esc.rl.ac.uk/weekly/20190918-minutes.txt Wed 18 Sept]'''
 +
* Report from yesterday's Rucio Face Meeting at Coseners
 +
* Suggestions for following up from yesterday's CEPH day hosted by CERN
 +
 
 +
'''[http://storage.esc.rl.ac.uk/weekly/20190911-minutes.txt Wed 11 Sept]'''
 +
* Storage related stuff at the FNAL (pre-)GDBs
 +
* DOME upgrade tickets for non-DOME DPM sites
 +
 
 +
'''[http://storage.esc.rl.ac.uk/weekly/20190904-minutes.txt Wed 04 Sept]'''
 +
* Banning in SSC not entirely successful in non-DOME DPM, and end of support is nigh; tickets to upgrade will go out shortly.
 +
* Storage-and-data-management-wise, GridPP43 was interesting although no-one volunteered to install the next CEPH.
  
  
Line 160: Line 181:
 
====== ======
 
====== ======
 
<!-- ******************Edit start********************* ----->
 
<!-- ******************Edit start********************* ----->
'''Tuesday 12 Dec'''
+
'''Tuesday 30 Apr 2019'''
* Vcycle updated for Glance API 2.0 and to support Vacuum Pipe VM definitions.
+
* ATLAS CernVM4 VMs (equivalent to CentOS 7.6) being tested
 
+
'''Tuesday 14 Nov'''
+
* Single processor LHCb stoppable Monte Carlo VMs running in a mixture with fixed length 8 processor ATLAS VMs and single processor GridPP VMs. Please get in touch if you are running Vac and want to try this.
+
 
+
  
 
<!-- ******************Edit stop********************* ----->
 
<!-- ******************Edit stop********************* ----->
Line 219: Line 236:
 
<!-- ******************Edit start********************* ----->
 
<!-- ******************Edit start********************* ----->
  
'''Tuesday 22nd Jan 2018'''
+
''' Tue 9th July 2019'''
  
CHANGE TO APPROVED VOs
+
LHCb has added this to their requirements:
**********************
+
  
* New Approved VO
+
Sites not having an SRM installation must provide:
  
A VO, solidexperiment.org, has been included in the GridPP Approved VOs document. Sites are requested to support this experiment, resources permitting.
+
* disk only storage
 +
* a GRIDFPT endpoint (a single dns entry)
 +
* an XROOT endpoint (a single dns entry)
 +
* a way to do the accounting (preferably following the WLCG TF standard: https://twiki.cern.ch/twiki/bin/view/LCG/StorageSpaceAccounting)
  
https://www.gridpp.ac.uk/wiki/GridPP_approved_VOs#Approved_Local_VOs
+
''' Tue 16th April 2019'''
  
* In the Ops Portal, LHCb mentions a new cvmfs mount, /cvmfs/lhcb-condb.cern.ch
+
Minor change to LHCB requirements in Approved VOs:
  
* A voms server for magic, voms02.pic.es, has an updated DN.
+
* Sites having migrated to the Centos7 (including "Cern Centos7") operating system or  later versions are requested to provide support for singularity containers.
  
'''Tuesday 9th Jan 2018'''
+
https://www.gridpp.ac.uk/wiki/GridPP_approved_VOs#VO_Resource_Requirements
Changes to Approved VOs.
+
  
a) VOMS servers for planck, ipv6.hepix.org and enmr are now restored to as they were before the flooding at CNAF.
+
'''Tue 2nd April 2019'''
b) The DN of a VOMS server for magic has changed.
+
  
https://www.gridpp.ac.uk/wiki/GridPP_approved_VOs
+
Changes to Approved for DUNE (and LZ)
  
'''Tuesday 5th Sept 2017'''
+
There is a new "Approved VOs" document showing new settings for DUNE. And, since both LZ's voms servers now show up in the EGI Portal, I've removed the (now spurious) entry for voms.hep.wisc.edu that was formerly being inserted by hand.
  
New Approved VO. SKA European regional data centre, skatelescope.eu
+
https://www.gridpp.ac.uk/wiki/GridPP_approved_VOs
  
 +
I've also created a new set of RPMs (each has all LSC, VOMS, and XML for one VO) for all approved VOs. See Approved VOs doc for details, version is 1.9.
 +
 +
Sites with DUNE services need to update using whatever method they employ.
 +
 +
Special note: Since voms1.fnal.gov changed yesterday, I've updated documentation for that right away. But voms2.fnal.gov remains as it is until 23rd April (3 weeks). I'll update documentation for that when it is closer. Staggering the updates like this gives a time margin, so any particular site can have at least one service properly configured at any time.  But it does mean that two site updates are needed; one now, and one in three weeks. However, since it's sufficient for only one (of the two) voms servers to be configured properly, sites could save effort and wait until (say) 19th April, then update both at once. But I can't dictate what site admins should do. It's your call.
 +
 +
Ste
 +
 +
 +
'''Tuesday 5th Mar 2019'''
 +
New VOMs details for Biomed:
 
https://www.gridpp.ac.uk/wiki/GridPP_approved_VOs
 
https://www.gridpp.ac.uk/wiki/GridPP_approved_VOs
  
This VO is ramping up and has requested support. Andrew McNab is the contact person for GridPP.
+
New VOMs rpms to match.
 +
 
 +
http://hep.ph.liv.ac.uk/~sjones/RPMS.voms/
 +
 
 +
'''Tuesday 12th Feb 2019'''
 +
Documentation done for HTCondor-CE apel accounting.
 +
https://twiki.cern.ch/twiki/bin/view/LCG/HtCondorCeAccounting
 +
 
 +
 
 +
'''Tuesday 12th Feb 2019'''
 +
New CA DN for Biomed
 +
<pre>
 +
< VOMS_CA_DN="'/C=FR/O=CNRS/CN=GRID2-FR' "
 +
---
 +
> VOMS_CA_DN="'/C=FR/O=MENESR/OU=GRID-FR/CN=AC GRID-FR Services' "
 +
</pre>
 +
 
 +
'''Tuesday 5th Feb 2019'''
 +
For enmr, certificate of voms-02.pd.infn.it
 +
 
 +
New DN: /DC=org/DC=terena/DC=tcs/C=IT/L=Frascati/O=Istituto Nazionale di Fisica Nucleare/CN=voms-02.pd.infn.it,
 +
New CA_DN: /C=NL/ST=Noord-Holland/L=Amsterdam/O=TERENA/CN=TERENA eScience SSL CA 3
 +
 
 +
Please check approved VOs: https://www.gridpp.ac.uk/wiki/GridPP_approved_VOs
 +
 
 +
 
  
 
'''General note'''
 
'''General note'''
Line 266: Line 319:
 
===== =====
 
===== =====
 
<!-- ******************Edit start********************* ----->
 
<!-- ******************Edit start********************* ----->
'''Tuesday 30th January'''
 
* The [https://indico.egi.eu/indico/event/3616/ next EGI OMB is this Thursday 2nd February].
 
** we need someone to attend....
 
  
'''Tuesday 23rd January'''
+
''' 14 May 2019 '''
* There was an EGI Operations Meeting last Monday: [https://wiki.egi.eu/wiki/Agenda-2018-01-15 Agenda]
+
* Meeting for May cancelled. Next meeting is on 10th June.
  
* Middleware
+
''' Monday 11th March '''
** Long list of updates in UMD 4.6
+
 
** UMD3 deprecation - start using UMD4 as soon as possible
+
* Agenda: https://wiki.egi.eu/wiki/Agenda-2019-03-11 
** Products missing, let them know - this is a heads up
+
* UMD 4.8.2 released :  ARC 15.03.19 - To address how ARC counts HELD job
 +
* DPM Legacy mode is going to end in June 2019
 +
* EGI will open tickets after June
 +
* HTCondor CE accounting status?
 +
* http://egi.ui.argo.grnet.gr/ : https://ggus.eu/index.php?mode=ticket_info&ticket_id=139877 
 +
 
 +
 
 +
''' Tuesday 12th February '''
 +
* There was an EGI ops meeting yesterday - [https://indico.egi.eu/indico/event/4320/ Agenda]. We were asked to review the IPv6 readiness information ([https://wiki.egi.eu/w/index.php?title=IPV6_Assessment see here]). We should perhaps link in the GridPP IPv6 table for updates status.
 +
 
 +
 
 +
''' Friday 1st February '''
 +
 
 +
* Early adopters needed for HTcondor CE , https://ggus.eu/index.php?mode=ticket_info&ticket_id=139377
 +
 
 +
''' Thursday 17th January EGI OMB meeting '''
 +
 
 +
* CREAMCE to be out of support by Dec 2020
 +
* More effort to fix accounting issue of HTCondor CE
 +
 
 +
''' Monday 14th January 2019 '''
 +
* Agenda https://wiki.egi.eu/wiki/Agenda-2019-01-14
 +
 
 +
* No UK specific issue mentioned.
 +
 
 +
* IPv6 readiness plan is going to be summarized at OMB.
 +
 
 +
'
  
* Operations
 
** <b>New weights in A/R</b>
 
** "Several sites are still missing the necessary information for computing the weights: check on VAPOR the values published by your sites in order to properly publishing in the GLUE2 schema the number of logical CPUs and the Hep-Spec06 benchmark."
 
** http://operations-portal.egi.eu/vapor/resources/GL2ResSummary
 
** <b>IPv6</b>
 
** https://wiki.egi.eu/w/index.php?title=IPV6_Assessment
 
** <b>webdav probes in production</b>
 
** "During the January OMB we are going to discuss the inclusion of the probes in the operators and in the critical profile" [may be superceded]
 
** <b>Storage accounting deployment</b>
 
** "IMPORTANT: be sure to have installed the star-accounting.py script v1.0.4"
 
  
* Next meeting: https://indico.egi.eu/indico/event/3564/
 
 
<!-- ******************Edit stop********************* ----->
 
<!-- ******************Edit stop********************* ----->
 
<!-- *********************************************************** ----->
 
<!-- *********************************************************** ----->
Line 333: Line 399:
 
===== =====
 
===== =====
 
<!-- ******************Edit start********************* ----->
 
<!-- ******************Edit start********************* ----->
'''Monday 29th January'''
+
'''Tuesday 5th February'''
* There were a couple of alarms which showed up on the dashboard, but not on the corresponding nagios.
+
* Birmingham decommissioning of SRM and BDII still going on so tickets are on hold.
* DB got fed up with Imperial failing the job-cancel test for CREAM -- the CE is just busy and returns the cancelled state about 30 s after the test 'fails' -- so she filed a ticket questioning the usefulness of the test: https://ggus.eu/?mode=ticket_info&ticket_id=133004.
+
* Few availability tickets on hold
 +
* Lancaster has WebDav ticket on hold which seems to be effect of DOME rollout
 +
 
 +
'''Tuesday 14th August'''
 +
* A couple of new availability tickets (QMUL and Lancaster), both for well-publicised reasons. Otherwise quiet. AM on shift this week.
  
'''Monday 20th November'''
 
* Generally quiet. There are three outstanding tickets: low availability at Birmingham, one at Liverpool which might just have gone green, and out-of-date IGTF CAs at Sheffield.
 
  
 
<!-- ******************Edit stop********************* ----->
 
<!-- ******************Edit stop********************* ----->
Line 379: Line 447:
  
 
===== =====
 
===== =====
'''Tuesday 6th February on 2018'''
+
'''Tuesday 11th June
* Update on Meltdown/Spectre
+
* Security Team meeting this afternoon
+
 
+
'''Tuesday 30th January 2018'''<br />
+
 
+
The security team would to address the on-going Meltdown/Spectre saga.
+
* [https://wise-community.org/ WISE will meet at Coseners House at the end of Feb].
+
 
+
'''Tuesday 23rd January 2018'''<br />
+
 
+
On-going Meltdown/Spectre - dominated work so far this year.
+
 
+
EGI CSIRT F2F next week at CERN.
+
 
+
Plan to improve/update some of the GridPP security wiki pages in coming weeks.
+
 
+
 
+
'''Tuesday 12th December'''<br />
+
 
+
* Nothing new to report.
+
 
+
'''Tuesday 5th December'''<br />
+
 
+
Nothing to report concerning the UK.
+
 
+
DI4R conference was last week, https://indico.egi.eu/indico/event/3455/
+
 
+
Plans for integration/co-operation between various projects security teams during EOSC (European Open Science Cloud) project presented
+
 
+
https://indico.egi.eu/indico/event/3455/session/12/contribution/77
+
 
+
 
+
* GGUS tickets and the trust anchor. Who to ticket result?
+
 
+
* List of Root CAs used on the Grid: https://www.gridpp.ac.uk/wiki/GridRootCertificates
+
 
+
'''Tuesday 28th November'''<br />
+
 
+
* Nothing new to report (tracking update from last week - remember you can check your site!)
+
 
+
'''Tuesday 21st November'''<br />
+
 
+
A few sites have showed up in [https://pakiti.egi.eu/ pakiti] with high risk vulnerabilities. If you haven't been prodded about this already then expect an email from someone in the security team soon.
+
 
+
'''Monday 30th October'''
+
* EGI SVG ALERT [TLP:WHITE] Up to 'CRITICAL' risk, kernel exploit CVE-2017-7184 and others [EGI-SVG-CVE-2017-7184]
+
* <i>Upcoming meetings </i>
+
** Details and registration for SOC WG Workshop in December: [https://wlcg-soc-wg.web.cern.ch/content/workshop-cern-11th-12th-december-2017 Advert] [https://indico.cern.ch/event/676160/ Indico]
+
 
+
  
 +
* NTR
  
 
|}
 
|}
Line 442: Line 462:
 
{| style="background-color: #ffffff; border: 1px solid silver; border-collapse: collapse; width: 100%; margin: 0em 0 0 0.3em;"
 
{| style="background-color: #ffffff; border: 1px solid silver; border-collapse: collapse; width: 100%; margin: 0em 0 0 0.3em;"
 
|-
 
|-
| style="background-color: #b7f1ce; border-bottom: 1px solid silver; text-align: left; font-size: 1em; font-weight: bold; margin-top: 0; margin-bottom: 0; padding-left: 0.4em; padding-top: 0.1em; padding-bottom: 0.1em;" | Services - [http://psmad.grid.iu.edu/maddash-webui/index.cgi?dashboard=UK%20Config PerfSonar production dashboard] |[http://maddash.aglt2.org/maddash-webui/index.cgi?dashboard=UK%20Config PerfSonar development dashboard] | [https://voms.gridpp.ac.uk:8443/vomses/ GridPP VOMS]
+
| style="background-color: #b7f1ce; border-bottom: 1px solid silver; text-align: left; font-size: 1em; font-weight: bold; margin-top: 0; margin-bottom: 0; padding-left: 0.4em; padding-top: 0.1em; padding-bottom: 0.1em;" | Services - [https://psmad.opensciencegrid.org/maddash-webui/index.cgi?dashboard=UK%20Mesh%20Config PerfSonar production dashboard] |[https://psetf.opensciencegrid.org/etf/check_mk/index.py?start_url=%2Fetf%2Fcheck_mk%2Fview.py%3Fhostgroup%3DUK%26opthost_group%3DUK%26view_name%3Dhostgroup PerfSonar ETF] | [http://opensciencegrid.org/networking/ OSG Networking and perfSONAR pages] | [https://voms.gridpp.ac.uk:8443/vomses/ GridPP VOMS]
 
|-
 
|-
 
| style="padding: 0.4em 0.4em 0.4em 0.4em;" |
 
| style="padding: 0.4em 0.4em 0.4em 0.4em;" |
Line 450: Line 470:
 
- This includes notifying of (inter)national services that will have an outage in the coming weeks or will be impacted by work elsewhere. (Cross-check the Tier-1 update).
 
- This includes notifying of (inter)national services that will have an outage in the coming weeks or will be impacted by work elsewhere. (Cross-check the Tier-1 update).
  
'''Monday 19th February'''
+
'''Monday 5th March'''
 +
* Next LHCOPN and LHCONE meeting: [https://indico.cern.ch/event/772031/ Umeå, Sweden, 4-5 Jun 2019]. Registration required.
  
Please could sites upgrade their perfsonar hosts to CentOS7. Instructions are [https://opensciencegrid.github.io/networking/perfsonar/installation/ here]. Current OS versions [https://tinyurl.com/y9eode2b here].
+
'''Monday 10th September'''
 +
* Please check perfSONAR status [https://psetf.opensciencegrid.org/etf/check_mk/index.py?start_url=%2Fetf%2Fcheck_mk%2Fview.py%3Ffilled_in%3Dfilter%26host_regex%3Duk%26view_name%3Dsearchhost here] especially the mesh URL (should be http://psconfig.opensciencegrid.org/pub/auto/FQDN)
  
'''Monday 5th February'''
+
'''Monday 2nd July'''
* 'Campus network engineering for data-intensive science workshop' in October 2016, had this [https://www.jisc.ac.uk/events/campus-network-engineering-for-data-intensive-science-workshop-19-oct-2016 agenda]. Note particularly the Imperial and Cambridge overviews.
+
* Next LHCOPN and LHCONE meeting: [https://indico.cern.ch/event/725706/ Fermilab, Batavia US, 30-31October 2018]. Registration required.  
* There is a [https://community.jisc.ac.uk/groups/janet-end-end-performance-initiative/document/network-expectations-data-intensive-science JISC document] which seeks to help set expectations for what the network can deliver.
+
  
 +
'''Monday 30th April'''
 +
* The [https://indico.cern.ch/event/725706/ next LHCOPN and LHCONE joint meeting] will take place on Tuesday the 30th and Wednesday the 31st of October 2018
  
 +
'''Monday 19th February'''
  
'''Monday 22nd January'''
+
Please could sites upgrade their perfsonar hosts to CentOS7. Instructions are [https://opensciencegrid.github.io/networking/perfsonar/installation/ here]. Current OS versions [https://tinyurl.com/y9eode2b here].
* Registration is open for the [http://www.cvent.com/d/xtq4sy next LHCOPN and LHCONE meeting: RAL, Abingdon UK, 6-7 March 2018].
+
 
+
'''Monday 20th November'''
+
* perfSONAR: No news.
+
* GridPP DIRAC: DPM & xrootd version. Upgrade due 16th November.
+
* RIPE ATLAS probes: Status & tests TBC
+
* The next LHCOPN/LHCONE meeting will be at [https://indico.cern.ch/event/681168/ RAL 6-7th March 2018]. The UK position on LHCONE is being reviewed. RAL T1 will (likely) connect via the LHCOPN in the coming months. T2s watch this space!
+
 
+
 
+
'''Monday 23rd October'''
+
* The LHCOPN/ONE meeting took place last week at KEK, co-hosted with the HEPiX Fall meeting.
+
** You can find a short report of the meeting [https://indico.cern.ch/event/646629/attachments/1544349/2423256/LHCOPNE-20171017-Tsukuba-meeting-report.pdf here.]
+
** All the slides presented are available in the [https://indico.cern.ch/event/646629/ agenda.]
+
 
+
'''Tuesday 4th July'''
+
* Pete C is preparing another networking forward look document. Note that figures presented in the Manchester workshop were for a Tier-2 (not always a single site).
+
 
+
[http://www.perfsonar.net/release-notes/version-4-0/ here]
+
  
 
* Duncan has recreated the UK perfSONAR mesh. [http://maddash.aglt2.org/maddash-webui/index.cgi?dashboard=UK%20Config Link here]!
 
* Duncan has recreated the UK perfSONAR mesh. [http://maddash.aglt2.org/maddash-webui/index.cgi?dashboard=UK%20Config Link here]!
Line 495: Line 501:
 
===== =====
 
===== =====
 
<!-- ******************Edit start********************* ----->
 
<!-- ******************Edit start********************* ----->
'''Monday 19th February 2018, 15.30 GMT'''<br />
 
35 Open UK Tickets this week.
 
 
'''IPv6 Tickets.'''<br />
 
A quick skim over these - does anyone have anything they want to add?
 
 
'''Bristol'''<br />
 
[https://ggus.eu/?mode=ticket_info&ticket_id=133508 133508] (14/2)
 
CMS sites have been asked to set up Rucio test areas - this one hasn't been spotted yet. The Brunel equivalent ([https://ggus.eu/?mode=ticket_info&ticket_id=133506 133506] contains possibly useful information. Assigned (14/2)
 
 
'''Tier 1'''<br />
 
[https://ggus.eu/?mode=ticket_info&ticket_id=133421 133421] (12/2)
 
This Sno+ transfer ticket looks like it can be closed, the VO reports that things are fixed. In progress (14/2)
 
 
'''QMUL'''<br />
 
[https://ggus.eu/?mode=ticket_info&ticket_id=132713 132713] (4/1)
 
One of the last hyperk support tickets, Daniela had a suggestion but no news on the ticket since. In progress (6/2)
 
 
'''DURHAM'''<br />
 
[https://ggus.eu/?mode=ticket_info&ticket_id=133338 133338] (7/2)
 
This atlas jobs failure ticket has been reopened, with atlas still seeing issues but not sure about the cause (the jobs complain with "cat: output.list: No such file or directory"). Reopened tickets can often sneak by us so I thought I'd bring this one up. Reopened (17/2)
 
 
  
 +
32 Open Tickets this week, which is an in depth a look as I've been able to take.
  
 
<!-- ******************Edit stop********************* ----->
 
<!-- ******************Edit stop********************* ----->

Latest revision as of 14:09, 30 October 2019

Bulletin archive


Week commencing Monday 25th February 2019
Task Areas
General updates

Tuesday 18th June


Tuesday 11th June

Tuesday 4th June 2019


WLCG Operations Coordination - AgendasWiki Page

Tuesday 11th June

  • I got stuck (figuratively) in my machine room last Thursday afternoon so missed it. Agenda. Minutes. Ste was there - any observations?

Tuesday 14th May

  • Next meeting this Thursday.

Tuesday 9th April


Tuesday 26th March

Monday 11th February 2019

  • There was a WLCG ops coordination meeting last Thursday. You can view the meeting notes here.
    • End of CREAM support Dec 2020.
    • Migration from CREAM to be discussed at the EGI conference 6-8 of May in Amsterdam.
    • Operational intelligence discussion (see slides).
    • Experiment updates (see ATLAS discussion on DOMA)
    • WG updates (few).




Tier-1 - Status Page

17 June 2019 Report for the Experiments Liaison Report (17/06/2019) is here.

  • Ongoing, we are seeing high outbound packet loss over IPv6. Central networking performed a firmware update to the border routers but this didn’t resolve the issue. Plan to move connections to the new border routers in Mid June. Will do this before trying to debug any further.

11 June 2019 Report for the Experiments Liaison Report (10/06/2019) is here.

  • Ongoing, we are seeing high outbound packet loss over IPv6. Central networking performed a firmware update to the border routers but this didn’t resolve the issue. Plan to move connections to the new border routers in Mid June. Will do this before trying to debug any further.
  • Three certificates were revoked mistakenly on ARGUS on Thursday. All SAM tests failed until this was fixed the next morning. Batch farm also did not start any new jobs during this time. We used this accidental draining to reboot nodes that needed to pick up security patching.
  • LHCb Castor instance has been completely disabled for LHCb and will be decommissioned.
  • Brian Davies has transferred from his role as GridPP Tier-2 Storage Support Officer and has joined the Tier-1 Production Team. Although this has happened with immediate effect he will still be available for ad-hoc/informal storage support.
Storage & Data Management - Agendas/Minutes

Wed 30 Oct

  • DOME upgrade problems at Edinburgh
  • Data management support/development for IRIS users

Wed 23 Oct

  • Rucio reporting

Wed 16 Oct

  • CEPH workshop at CERN report

Wed 02 Oct

  • Safe to upgrade to DPM 1.13 but make sure the BDII is working if you support DIRAC
  • Roadmap for xroot and http TPC for RAL FTS(es)

Wed 25 Sept

  • Storage support for IRIS VOs?

Wed 18 Sept

  • Report from yesterday's Rucio Face Meeting at Coseners
  • Suggestions for following up from yesterday's CEPH day hosted by CERN

Wed 11 Sept

  • Storage related stuff at the FNAL (pre-)GDBs
  • DOME upgrade tickets for non-DOME DPM sites

Wed 04 Sept

  • Banning in SSC not entirely successful in non-DOME DPM, and end of support is nigh; tickets to upgrade will go out shortly.
  • Storage-and-data-management-wise, GridPP43 was interesting although no-one volunteered to install the next CEPH.


Tier-2 Evolution - GridPP JIRA

Tuesday 30 Apr 2019

  • ATLAS CernVM4 VMs (equivalent to CentOS 7.6) being tested


Accounting - UK Grid Metrics HEPSPEC06 Atlas Dashboard HS06

Tuesday 6th February


Tuesday 30th January

Tuesday 24th Oct


Monday 16th January

  • The discussion topic for next week will be accounting comparisons. Please note Alessandra's comments last week.

Monday 14th November

  • Alessandra has written an FAQ to extract numbers from ATLAS and APEL avoiding the SSB.

Monday 26th September

  • A problem with the APEL Pub and Sync tests developed last Tuesday and was resolved on Wednesday. This had a temporary impact on the accounting portal.
Documentation - KeyDocs

Tue 9th July 2019

LHCb has added this to their requirements:

Sites not having an SRM installation must provide:

Tue 16th April 2019

Minor change to LHCB requirements in Approved VOs:

  • Sites having migrated to the Centos7 (including "Cern Centos7") operating system or later versions are requested to provide support for singularity containers.

https://www.gridpp.ac.uk/wiki/GridPP_approved_VOs#VO_Resource_Requirements

Tue 2nd April 2019

Changes to Approved for DUNE (and LZ)

There is a new "Approved VOs" document showing new settings for DUNE. And, since both LZ's voms servers now show up in the EGI Portal, I've removed the (now spurious) entry for voms.hep.wisc.edu that was formerly being inserted by hand.

https://www.gridpp.ac.uk/wiki/GridPP_approved_VOs

I've also created a new set of RPMs (each has all LSC, VOMS, and XML for one VO) for all approved VOs. See Approved VOs doc for details, version is 1.9.

Sites with DUNE services need to update using whatever method they employ.

Special note: Since voms1.fnal.gov changed yesterday, I've updated documentation for that right away. But voms2.fnal.gov remains as it is until 23rd April (3 weeks). I'll update documentation for that when it is closer. Staggering the updates like this gives a time margin, so any particular site can have at least one service properly configured at any time. But it does mean that two site updates are needed; one now, and one in three weeks. However, since it's sufficient for only one (of the two) voms servers to be configured properly, sites could save effort and wait until (say) 19th April, then update both at once. But I can't dictate what site admins should do. It's your call.

Ste


Tuesday 5th Mar 2019 New VOMs details for Biomed: https://www.gridpp.ac.uk/wiki/GridPP_approved_VOs

New VOMs rpms to match.

http://hep.ph.liv.ac.uk/~sjones/RPMS.voms/

Tuesday 12th Feb 2019 Documentation done for HTCondor-CE apel accounting. https://twiki.cern.ch/twiki/bin/view/LCG/HtCondorCeAccounting


Tuesday 12th Feb 2019 New CA DN for Biomed

< VOMS_CA_DN="'/C=FR/O=CNRS/CN=GRID2-FR' "
---
> VOMS_CA_DN="'/C=FR/O=MENESR/OU=GRID-FR/CN=AC GRID-FR Services' "

Tuesday 5th Feb 2019 For enmr, certificate of voms-02.pd.infn.it

New DN: /DC=org/DC=terena/DC=tcs/C=IT/L=Frascati/O=Istituto Nazionale di Fisica Nucleare/CN=voms-02.pd.infn.it, New CA_DN: /C=NL/ST=Noord-Holland/L=Amsterdam/O=TERENA/CN=TERENA eScience SSL CA 3

Please check approved VOs: https://www.gridpp.ac.uk/wiki/GridPP_approved_VOs


General note

See the worst KeyDocs list for documents needing review now and the names of the responsible people.

Interoperation - EGI ops agendas Indico schedule

14 May 2019

  • Meeting for May cancelled. Next meeting is on 10th June.

Monday 11th March


Tuesday 12th February

  • There was an EGI ops meeting yesterday - Agenda. We were asked to review the IPv6 readiness information (see here). We should perhaps link in the GridPP IPv6 table for updates status.


Friday 1st February

Thursday 17th January EGI OMB meeting

  • CREAMCE to be out of support by Dec 2020
  • More effort to fix accounting issue of HTCondor CE

Monday 14th January 2019

  • No UK specific issue mentioned.
  • IPv6 readiness plan is going to be summarized at OMB.

'


Monitoring - Links MyWLCG

Tuesday 4th July

  • There were a number of useful links provided in the monitoring talks at the WLCG workshop in Manchester - especially those in the Wednesday sessions.

Monday 13th February

  • This category is pretty much inactive. Are there any topics under "monitoring" that anyone wants reported at this ops meeting? If not we will remove this section from the regular updates area of the bulletin and just leave the main links.

Tuesday 1st December


Tuesday 16th June

  • F Melaccio & D Crooks decided to add a FAQs section devoted to common monitoring issues under the monitoring page.
  • Feedback welcome.


On-duty - Dashboard ROD rota

Tuesday 5th February

  • Birmingham decommissioning of SRM and BDII still going on so tickets are on hold.
  • Few availability tickets on hold
  • Lancaster has WebDav ticket on hold which seems to be effect of DOME rollout

Tuesday 14th August

  • A couple of new availability tickets (QMUL and Lancaster), both for well-publicised reasons. Otherwise quiet. AM on shift this week.


Rollout Status WLCG Baseline

Monday 20th November



Historical References


Security - Incident Procedure Policies Rota

Tuesday 11th June

  • NTR


Services - PerfSonar production dashboard |PerfSonar ETF | OSG Networking and perfSONAR pages | GridPP VOMS

- This includes notifying of (inter)national services that will have an outage in the coming weeks or will be impacted by work elsewhere. (Cross-check the Tier-1 update).

Monday 5th March

Monday 10th September

Monday 2nd July

Monday 30th April

Monday 19th February

Please could sites upgrade their perfsonar hosts to CentOS7. Instructions are here. Current OS versions here.

  • Duncan has recreated the UK perfSONAR mesh. Link here!


Tickets

32 Open Tickets this week, which is an in depth a look as I've been able to take.

Tools - MyEGI Nagios

Monday 20th November

Tuesday 18th July

  • Following our ops discussion last week, Steve will focus his tests on supporting the GridPP DIRAC area and decommission the other tests.


VOs - GridPP VOMS VO IDs Approved VO table

Monday 20th November

  • Tom Whyntie has requested (and been granted) access to the GridPP VO to get some pipelines working for large-scale processing and analysis of MRI scans associated with the UK Biobank project.
  • All VOs in the incubation page being prompted for updates by the end of November (required input for OC documents).
  • QMUL (Steve L) is following up on the biomed MoU. GridPP want to be cited in research papers for the support our resources/sites provide.


Site Updates

Date



Meeting Summaries
Project Management Board - MembersMinutes Quarterly Reports

Empty

GridPP ops meeting - Agendas Actions Core Tasks

Empty


RAL Tier-1 Experiment Liaison Meeting (Wednesday 13:30) Agenda Meeting takes place on Vidyo.

Highlights from this meeting are now included in the Tier1 report farther up this page.

WLCG Grid Deployment Board - Agendas MB agendas

Empty



NGI UK - Homepage CA

Empty

Events
UK ATLAS - Shifter view News & Links

Atlas S&C week 2-6 Feb 2015

Production

• Prodsys-2 in production since Dec 1st

• Deployment has not been transparent , many issued has been solved, the grid is filled again

• MC15 is expected to start soon, waiting for physics validations, evgen testing is underway and close to finalised.. Simulation expected to be broadly similar to MC14, no blockers expected.

Rucio

• Rucio in production since Dec 1st and is ready for LHC RUN-2. Some fields need improvements, including transfer and deletion agents, documentation and monitoring.

Rucio dumps available.

Dark data cleaning

files declaration . Only Only DDM ops can issue lost files declaration for now, cloud support needs to fill a ticket.

• Webdav panda functional tests with Hammercloud are ongoing

Monitoring

Main page

DDM Accounting

space

Deletion

ASAP

• ASAP (ATLAS Site Availability Performance) in place. Every 3 months the T2s sites performing BELOW 80% are reported to the International Computing Board.


UK CMS

Empty

UK LHCb

Empty

UK OTHER
  • N/A
To note

  • N/A