Difference between revisions of "Operations Bulletin Latest"

From GridPP Wiki
Jump to: navigation, search
Line 173: Line 173:
'''Monday 8 Feb'''
'''Monday 8 Feb'''
* Cloud Init ATLAS VMs successfully running production jobs at Manchester. Looking at logging and VM lifetime.
* Cloud Init ATLAS VMs successfully running production jobs at Manchester. Looking at logging and VM lifetime.
'''Monday 25 Jan'''
* Vac 00.20.00 released. Emulates OpenStack environment for VMs, Cloud Init, contextualization from HTTP.
* Restarted testing of Cloud Init ATLAS VMs, and now getting jobs running to Finished state.
'''Tuesday 19 Jan'''
* Vcycle now supports EC2 API, and preparing to test with Open Nebula at RAL Tier1
* Next Vac release (00.20) being tested with LHCb production. This removes the need to have an internal NFS server and supports VMs using Cloud Init.
* Some work last month on revised ATLAS VMs; hoping to converge with VMs run at CERN and on HLT.
* Vac-in-a-Box updated for Vac 00.20 and NFS-less operation, and numerous feature requests (e.g. bulk adding of hypervisors)
<!-- ******************Edit stop********************* ----->
<!-- ******************Edit stop********************* ----->

Revision as of 14:21, 29 February 2016

Bulletin archive

Week commencing Monday 29th February 2016
Task Areas
General updates

Tuesday 23rd February

  • site advice on how to deal with umbrella VOs
  • gridpp.ac.uk has no AAAA record
  • From the 29th Feb the WLCG Operation meeting will be held only on Monday (the Thursday meeting will be cancelled). In addition sites are asked to pre-fill their report or to send an email to the SCOD list.
  • The WLCG MB has decided to stop further deployment of glexec. Current deployments are expected to continue with support.
  • Steve's tests - are they still useful... could they be made more relevant?
  • Reminder: Registration for GridPP36 is now open.
  • Lisbon follow-up. Ian Bird's MB summary.

Tuesday 16th February

Tuesday 9th February

  • The WLCG Collaboration meeting took place last week: Agenda.
  • Alessandra: Changes of memory settings in panda
  • CHEP2016 first bulletin.
  • NOTICE: Java upgrade impacts experiment activities - a recent set of java 6-7-8 openjdk upgrades on SL5/SL6/SL7 disable support for the MD5 hash algorithm in certificates and proxies requiring sysadmin intervention.
  • RIPE Academic Cooperation Initiative.
  • voms2 for lsst

WLCG Operations Coordination - AgendasWiki Page

Tuesday 23rd February

  • There was an ops coordination meeting on Thursday 18th.
  • The new Experiments Test Framework (ETF) will be tentatively ready in April. It will contain few user changes.
  • The WLCG workshop and the MB decided to freeze the gLExec deployment.
  • LHCb to discuss with Multicore deployment TF experts about the future of the TF and advise the sites.
  • The T0 and T1s to install the patches for the critical vulnerability https://wiki.egi.eu/wiki/SVG:Advisory-SVG-CVE-2015-7547 announced Wednesday.

Tuesday 9th February

  • The next ops coordination meeting will be on 18th February.

Tuesday 26th January

Tuesday 19th January

  • The next WLCG MW readiness group meeting will be on 27th January: Agenda at 15:00 UTC.
  • There is an ops coordination meeting this Thursday at 14:30 UTC: Agenda.

Tier-1 - Status Page

Tuesday 23rd February A reminder that there is a weekly Tier-1 experiment liaison meeting. Notes from the last meeting here

  • Usage of our OPN link (to CERN and other Tier1s) is still high - but not quite so high as a couple of weeks ago.
  • We are working a refresh of the database system behind the LFC.
  • We are preparing to put a HAProxy load-balancer in front of the FTS service. Initially this will be for our "test" FTS3 service (used by Atlas).
  • Lots of patching ongoing (Castor, FTS today).
  • 'At Risk' on the site for a replacement of the NIS master delayed until next Tuesday (1st March) owing to ongoing patching.
Storage & Data Management - Agendas/Minutes

Wednesday 24 Feb

  • Snoplus data model. Looks a lot like DiRAC? (so far?)

Wednesday 17 Feb

  • Report from the secret ATLAS meeting on Monday
    • Sites to run cache with RUCIO and ARC CEs?
    • Dynafed or RUCIO redirect?
  • Which goals if any should we set for achieving interesting things to be reported at GridPP36?

Wednesday 10 Feb

  • Duncan and Sam reporting from the WLCG workshop, Elena from ATLAS Jamboree
    • Grid as object store, fewer SRM endpoints
    • Caching and metadata management implementations/strategies

Wednesday 20 Jan

  • Operational issues (DPM database errors) and kablooie
  • hepsysman report
  • Gathering site issues and thoughts in prep'n for the coming WLCG workshop and ATLAS jamboree
Tier-2 Evolution - GridPP JIRA

Monday 29 Feb

  • Vac 00.21 released, with new MJF
  • EGI operations MB presentation positively received

Tuesday 23 Feb

  • Vacuum Platform draft HSF technical note, setting out interfaces between VMs and VM lifecycle managers, in particular user_data templates, the $JOBOUTPUTS mechanism, and the VacQuery UDP protocol.
  • Submitted first step of Vacuum Platform as an EGI community platform. Slot at EGI Operations MB this week.
  • Next Vac release (00.21) with new MJF ready for release.

Monday 8 Feb

  • Cloud Init ATLAS VMs successfully running production jobs at Manchester. Looking at logging and VM lifetime.

Accounting - UK Grid Metrics HEPSPEC06 Atlas Dashboard HS06

Tuesday 9th February

  • 4th Feb: The data from the APEL summariser that was fixed yesterday has now propagated through the data pipeline and the Accounting Portal views and the Sync and Pub tests are all working again.
  • Sheffield is slightly behind other sites (but looks normal) and so is QMUL.

Tuesday 24th November

  • Slight delay for Sheffield.

Tuesday 3rd November

  • APEL delay (normal state) Lancaster and Sheffield.

Tuesday 20th October The WLCG MB decided to create a Benchmarking Task force led by Helge Meinhard see talk

Documentation - KeyDocs

Tuesday 23rd February

  • Tom has converted (most of) the DIRAC tutorial on job submission to work with the GridPP DIRAC service. You can find the guide here.

Tuesday 9th February

  • Guidelines for using the DIRAC command line tools and the DIRAC File Catalog metadata functionality to the UserGuide.

Tuesday 12th January

  • The VOID cards (and hence the Yaim records) for CDF, PLANCK, SUPERBVO, LSST, MAGIC and ENMR have changed a bit. Sites that support any of these may want to have a look. See the GridPP approved VOs page.

General note

See the worst KeyDocs list for documents needing review now and the names of the responsible people.

Interoperation - EGI ops agendas

Monday 8th January

Monitoring - Links MyWLCG

Tuesday 1st December

Tuesday 16th June

  • F Melaccio & D Crooks decided to add a FAQs section devoted to common monitoring issues under the monitoring page.
  • Feedback welcome.

Tuesday 31st March

Monday 7th December

On-duty - Dashboard ROD rota

Tuesday 16th February

  • Team membership discussed at yesterday's PMB. We will need to look to the larger GridPP sites for more support.

Tuesday 26th January

  • On Friday, one of the message brokers was in downtime and due to a bug, nagios probes were not failing over to the working one.
  • There was another issue which prevented applying a workaround in the gridppnagios server.
  • A new rota is being compiled.

Monday 11th January

  • There was a problem with the dashboard during the week, where alarms wouldn't clear even though they had cleared in the nagios. The portal people are aware of this.
  • The current alarms in Manchester (vomsserver) are thought to be fixed - the dashboard just hasn't caught up.

Rollout Status WLCG Baseline

Tuesday 7th December

  • Raul reports: validation of site BDII on Centos 7 done.

Tuesday 15th September

Tuesday 12th May

  • MW Readiness WG meeting Wed May 6th at 4pm. Attended by Raul, Matt, Sam and Jeremy.


Security - Incident Procedure Policies Rota
  • "Critical" risk glibc remote code execution SVG-CVE-2015-7547
  • IGTF has released a regular update to the trust anchor repository (1.72) - for distribution ON OR AFTER February 29th

Tuesday 16th February

  • Vulnerabilities CVE-2015-7181/2/3 in nss, nss-util, nspr libraries subject of EGI-SVG Advisory on 11-Nov-2015 rated as HIGH risk are still showing in EGI Pakiti monitoring at a number of UK sites. Please check and update as appropriate or let IanN know if this is a monitoring error.

Monday 8th February

  • EGI SVG Advisory 'HIGH' risk CVE-2016-0728 Linux Kernel vulnerability [EGI-SVG-2016-10376]
  • WLCG Collaboration Workshop: Approximate summary of security session with a ~3yr timeframe (by IanN)
    • Use of federated identity management will continue increase - more reliance/trust on home institutions and vo's to manage and trace users.
    • VMs/Containers/cgroups will replace glexec ("hurrah!") but only as appropriate accountability/traceability policy enforcement mechanisms are put in place ("aww!"). (esp. multi-user pilots etc.)
    • Changing risk assessment: more targeted phishing; incidents on commercial clouds; move to more standard software ....
    • All above drives need for improved monitoring and "intelligence" sharing (SOC model and Sirtfi collaboration etc)
      • Improve incident response support for sites lacking expertise. Perhaps looking at developing monitoring "appliance".

The EGI security dashboard.

Services - PerfSonar dashboard | GridPP VOMS

- This includes notifying of (inter)national services that will have an outage in the coming weeks or will be impacted by work elsewhere. (Cross-check the Tier-1 update).

Tuesday 8th December

  • Given the recent network issues and role of GridPP DIRAC, there are plans to have a slave DNS for gridpp.ac.uk at Imperial and hopefully the T1 too. Andrew will seek an update to the whois records and name servers once the other host sites are confirmed.
  • Looking at the network problems this week will be of interest. Duncan supplied this link and Ewan the one for the dual stack instance.

Tuesday 6th October

Tuesday 14th July

  • GridPP35 in September will have a part focus on networking and IPv6. This will include a review of where sites are with their deployment. Please try to firm up dates for your IPv6 availability between now and September. Please update the GridPP IPv6 status table.

Tools - MyEGI Nagios

Tuesday 26th Jan 2016

One of the message broker was in downtime for almost three days. Nagios probes picks up a random message broker and failover is not working so a lot of ops jobs hanged for long time. Its a known issue and unlikely to be fixed as SAM Nagios is in its last leg. Monitoring is moving to ARGO and many things are not clear at the moment.

Monday 30th November

  • The SAM/ARGO team has created a document describing Availability reliability calculation in ARGO tool.

Tuesday 6 Oct 2015

Moved Gridppnagios instance back to Oxford from Lancaster. It was kind of double whammy as both sites went down together. Fortunately Oxford site was partially working so we managed to start SAM Nagios at Oxford. Sam tests were unavailable for few hours but no affect on egi availibilty/reliability. Sites can have a look at https://mon.egi.eu/myegi/ss/ for a/r status.

Tuesday 29 Sep 2015

Following an air-conditioning problem at machine room in Oxford Tier-2 site on 26 September, gridppnagios(OX) was shut down and gridppnagios(Lancs) became active instance. Oxford site is in downtime until 1st Oct and it may be extended depending on the situation. VO-Nagios was also unavailable for two days but we have started it yesterday as it is running on a VM. VO-nagios is using oxford SE for replication test so it is failing those tests. I am looking to change to some other SE.

VOs - GridPP VOMS VO IDs Approved VO table

Tuesday 19th May

  • There is a current priority for enabling/supporting our joining communities.

Tuesday 5th May

  • We have a number of VOs to be removed. Dedicated follow-up meeting proposed.

Tuesday 28th April

  • For SNOPLUS.SNOLAB.CA, the port numbers for voms02.gridpp.ac.uk and voms03.gridpp.ac.uk have both been updated from 15003 to 15503.

Tuesday 31st March

  • LIGO are in need of additional support for debugging some tests.
  • LSST now enabled on 3 sites. No 'own' CVMFS yet.
Site Updates

Tuesday 23rd February

  • For January:

ALICE: All okay.

RHUL 89%:89% Lancaster 0%:0%

RALPP: 80%::80%

RALPP: 77%:77%

  • Site responses:
    • RHUL: The largest problem was related to the SRM. The DPM version was upgraded and it took several weeks to get it working again (13 Jan onwards). Several short-lived occurrences of running out of space on the SRM for non-ATLAS VOs. For around 3 days (15-17 Jan) the site suffered from a DNS configuration error by their site network manager which removed their SRM from the DNS, causing external connections such as tests and transfers to fail. For one day (25 Jan) the site network was down for upgrade to the 10Gb link to JANET. Some unexpected problems occurred extending the interruption from an hour to a day. The link has been successfully commissioned.
    • Lancaster: The ASAP metric for Lancaster for January is 97.5 %. There is a particular problem with ATLAS SAM tests which doesn’t affect the site activity in production and analysis and this relates to the path name being too long. A re-calculation has been performed.
    • RALPP: Both CMS and LHCb low figures are due to specific CMS jobs overloading the site SRM head node. The jobs should have stopped now.

Meeting Summaries
Project Management Board - MembersMinutes Quarterly Reports


GridPP ops meeting - Agendas Actions Core Tasks


RAL Tier-1 Experiment Liaison Meeting (Wednesday 13:30) Agenda Meeting takes place on Vidyo.

Highlights from this meeting are now included in the Tier1 report farther up this page.

WLCG Grid Deployment Board - Agendas MB agendas


NGI UK - Homepage CA


UK ATLAS - Shifter view News & Links

Atlas S&C week 2-6 Feb 2015


• Prodsys-2 in production since Dec 1st

• Deployment has not been transparent , many issued has been solved, the grid is filled again

• MC15 is expected to start soon, waiting for physics validations, evgen testing is underway and close to finalised.. Simulation expected to be broadly similar to MC14, no blockers expected.


• Rucio in production since Dec 1st and is ready for LHC RUN-2. Some fields need improvements, including transfer and deletion agents, documentation and monitoring.

Rucio dumps available.

Dark data cleaning

files declaration . Only Only DDM ops can issue lost files declaration for now, cloud support needs to fill a ticket.

• Webdav panda functional tests with Hammercloud are ongoing


Main page

DDM Accounting




• ASAP (ATLAS Site Availability Performance) in place. Every 3 months the T2s sites performing BELOW 80% are reported to the International Computing Board.





  • N/A
To note

  • N/A