Difference between revisions of "Operations Bulletin Latest"

From GridPP Wiki
Jump to: navigation, search
()
()
Line 35: Line 35:
 
* EGI: new nagios probes appdbsync and OCCI-Categories for testing cloud services
 
* EGI: new nagios probes appdbsync and OCCI-Categories for testing cloud services
 
* Dan: cvmfs versions. It seems others are running 2.3 and 2.4 versions.
 
* Dan: cvmfs versions. It seems others are running 2.3 and 2.4 versions.
 
+
* LSST: submission from panda is now working at Lancs, Manc and RAL. The plan (only sketched for now) is to run a data challenge. GridPP is behind this and said we should give a high priority to this effort. At the moment the initial plan is to use 16,000 cores for a month. This is a significant chunk of resources and will require organisation and much testing to get it running smoothly. Though using panda LSST doesn't have all the resubmission features ATLAS has, they also use the storage tools slightly differently privileging xrootd which is not as well supported as gridftp.
 
+
  
  

Revision as of 09:09, 27 June 2017

Bulletin archive


Week commencing Monday 26th June 2017
Task Areas
General updates

Monday 26th June

  • GOCDB has received a new service type request for: ‘eu.egi.storage.accounting’: - authorising the site/SE to publish the storage accounting data - making the site/SE appear in the portal - monitoring that the accounting data are regularly published.
  • The registration to the next LHCOPN/LHCONE meeting is now open. LHCONE meeting agenda: https://indico.cern.ch/event/646629/.
  • HEPiX Fall 2017 meeting will be held at KEK, Tsukuba, Japan, from 16th to 20th October. HEPiX registration page: http://hepix-fall-2017.kek.jp/registration.html.
  • Chris B: Gotcha when upgrading ArcCEs to htcondor 8.6
  • EGI: new nagios probes appdbsync and OCCI-Categories for testing cloud services
  • Dan: cvmfs versions. It seems others are running 2.3 and 2.4 versions.
  • LSST: submission from panda is now working at Lancs, Manc and RAL. The plan (only sketched for now) is to run a data challenge. GridPP is behind this and said we should give a high priority to this effort. At the moment the initial plan is to use 16,000 cores for a month. This is a significant chunk of resources and will require organisation and much testing to get it running smoothly. Though using panda LSST doesn't have all the resubmission features ATLAS has, they also use the storage tools slightly differently privileging xrootd which is not as well supported as gridftp.


Monday 5th June

  • Migration of the UI/WN tarball repositories.
  • EGI RP/RC A/R Report available. UK is fine but dropped in April.
  • Tier-1 noted pool accounts for "quiet" VOs. The question, is it worth spending time getting the VO active:
    • camont - no. This collaboration ended some years ago.
    • cdf - no
    • dzero - no
    • esr - no, but they might.
    • magic - no, but they might
    • neiss - no
    • supernemo - They will be soon. Discussions started.
  • Winnie: Pool account UIDs/GIDs. Looks like it is best to work towards having consistent pool accounts.
  • lusc-gridpp mailing list for LSST now created. A while back Alessandra also set up a wiki page for LSST.
  • Alastair: Site feedback for network session at WLCG workshop.
  • The EMI repositories will be shut down on the 15th of June 2017. You should be on the preview repo now. h Third party repo is here.
  • 29th May: EGI Trust Anchor release 1.83-1.
  • Two WLCG ops meeting reports to review: 29th May and 5th June.


Monday 22nd May

  • Issue with dirac-dms-get-file affecting vo.moedal.org.
  • HTCondor workshop in Europe 2017 6th-9th June. More information.
  • ARGO Monitoring Downtime - Tuesday, 23 May, at 7:00 AM CEST, there will be scheduled down time for approximately 6 hours.
  • 2017 WLCG Workshop: registration extended
  • Downtime declarations discussion (3days or 5 days notice....!)
  • CHEP papers - final weeks for revisions.
  • Fourth release of the Accounting Portal ready for testing. Feedback via GGUS 127920.
  • Final T2 availability & reliability - April 2017.
  • CA reminders... some observations
    • Reminders are working as well as they always have
    • Special case if you have multiple certs which expire soon after the other [which isn't actually permitted and hence not expected] the reminders come late
    • Please don't send CA tickets to TB-SUPPORT as it is a publicly visible mailing list and if things turn into non-issues then can be seen as bad advertising for no reason
    • Don't rely on the CA to remind you – setup your own reminders
    • "fixing" this issue (multiple certs) is plausible, but as it is deep within code (there are several levels of code involved here in more than 1 language) then it might be error-prone and hard to test.
  • EGI Operations Broadcast - May 2017
    • Failures with CREAM-CE JobCancel probe
    • Decommissioning of dCache 2.10
  • Notes from the May GDB are now available.


Tuesday 16th May


WLCG Operations Coordination - AgendasWiki Page

Monday 5th June

  • The next meeting in this series if 6th July (i.e. after the workshop).

Monday 22nd May

  • WLCG ops coordination took place last Thursday with a theme of "providing reliable storage" : Agenda | Minutes.


Tier-1 - Status Page

Tuesday 13th June A reminder that there is a weekly Tier-1 experiment liaison meeting. Notes from the last meeting here

  • All Castor instances have now been upgraded to version 2.1.16. Overall it is working well, but there are still some issues for CMS access - these can be seen in timeouts affecting the CMS SRM SAM tests.
  • The new version of FTS3 installed on our "test" FTS service (used by Atlas) no longer supports the SOAP API. There are still some access to our "production" FTS3 service via this API (mainly SNO+ and MICE). We will wish to upgrade the production FTS3 service - and need VOs to move to the rest API provided with the newer versions of FTS. Would will set deadline - possibly around 7th July - when we upgrade the "production" instance and hence no longer support the SOAP API.
  • An additional link to CERN has been procured and the OPN link will be upgraded to 3 * 10Gbit. Possible date for this is Wednesday 14th June. The change is expected to be transparent.
  • A start has been made on installing XRootD gateways on the worker nodes. These are needed for Echo access.
  • There will most probably NOT be a Tier1/Experiments Liaison Meeting in the next two weeks (Clashes with HEP Sysman and the WLCG Wokshop). However, a report will be produced and comments invited.
Storage & Data Management - Agendas/Minutes

Wednesday 17 May

  • Lots of opportunities to contribute to WLCG workshop (if we could finish all the stuff we've got cooking)

Wednesday 19 Apr

  • Case for (re)testing CVMFS for T2s? (and non-LHC VOs?)
  • Other storage related issues arising from use of containers?

Wednesday 12 Apr

  • Musings on the outcome of last week's GridPP meeting
  • Discussion of which of a selection of coming events to aim to do something for. If that makes sense, gramatically.

Wednesday 15 Feb

  • Space tokens! Use them!
  • Leafed through interesting topics (technology permitting) from the CS3 workshop
Tier-2 Evolution - GridPP JIRA

Tuesday 16 May

  • Updated GridPP DIRAC VMs. Passing with some tests jobs but still investigating some failures.

Tuesday 2nd May


Accounting - UK Grid Metrics HEPSPEC06 Atlas Dashboard HS06

Monday 16th January

  • The discussion topic for next week will be accounting comparisons. Please note Alessandra's comments last week.

Monday 14th November

  • Alessandra has written an FAQ to extract numbers from ATLAS and APEL avoiding the SSB.

Monday 26th September

  • A problem with the APEL Pub and Sync tests developed last Tuesday and was resolved on Wednesday. This had a temporary impact on the accounting portal.
Documentation - KeyDocs

Tue 23rd May As part of the process of moving everything to Centos7 (or some other form of RHEL7), I've written up how we build nodes at Liverpool for our ARC/Condor system.

https://www.gridpp.ac.uk/wiki/Centos7_Adoption

I hope it's also a decent cheatsheet for Puppet3/Hiera. It's a draft, and I need to put in some more details, but it should be usable.

Tue 7th Mar

I want to get rid of following stale docs...

  • Ten Easy Network Questions
  • GridPP Answers to 10 Easy Network Questions
  • SL5 status
  • Glasgow Middleware Operations Logbook
  • London Tier2 Shares
  • 23rd June 2010 Special Topic: NGS Technical Roadmap - Pete Gronbech
  • SAM availability: Monthly summary table
  • Transfer Tests Birmingham Endpoints
  • EVO Tips and Tricks
  • BaBar: bbrbsub270

Monday 13th Feb

  • Please check the keydocs page. Would all owners please review their pages and prepare a short note on how they will bring things up-to-date in the coming months. This will be discussed at a core ops meeting (poll to be circulated shortly).
  • There are several EGI operations document updates out for review. Please make comments to Jeremy by 20th Febraury for inclusion in the UK feedback:


Monday 30th January

The fusion VO has been removed from GridPP Approved VOs.

Monday 9th January

  • Tom put these together:
    • A snapshot of the GridPP UserGuide is now available as an offline document in the Zenodo repository:
    • ...and the v1.0 release of the LaTeX code used to compile it is here.
    • There are some minor differences (mainly hyperlink-related) to the online version [1], which has also had a v1.0 release here.


Tue 22nd Nov

  • More on Accounting audit tools

The process for ARC, Toque and VAC is now documented here.

https://github.com/gridpp/audit/wiki


General note

See the worst KeyDocs list for documents needing review now and the names of the responsible people.

Interoperation - EGI ops agendas

Tuesday 16th May

  • There was an EGI ops meeting yesterday. Agenda.

Tuesday 2nd May

Tuesday 21st March

Monday 13th February

  • There was an ops meeting on 13th February. Agenda
    • frontier-squid-3 in UMD 4.4.0 - changes to config
    • Assess IPv6 readiness:
      • Resource Centres: assess the IPv6 readiness of the site infrastructure (real machines, cloud managers)
      • NGIs/ROCs please start discussing with sites and provide suggestions for the overall plan
    • Decommissioning of dCache 2.10
    • Discussed stale ARGO results; being discussed with Product Teams.

Monday 16th January

  • There was an ops meeting on 9th January. Agenda.


Monitoring - Links MyWLCG

Monday 13th Febraury

  • This category is pretty much inactive. Are there any topics under "monitoring" that anyone wants reported at this ops meeting? If not we will remove this section from the regular updates area of the bulletin and just leave the main links.

Tuesday 1st December


Tuesday 16th June

  • F Melaccio & D Crooks decided to add a FAQs section devoted to common monitoring issues under the monitoring page.
  • Feedback welcome.


On-duty - Dashboard ROD rota

6th June

  • There are issues with the ARC CE tests again, so the ARC sites have not have any results in days and the corresponding availability tickets are going nowhere.
  • New rota being compiled.

Tuesday 2nd May

  • Generally quiet. A few low availability tickets.
Rollout Status WLCG Baseline

Monday 13th February

  • Please can we hear something from Raul and Sam (or others contributing to the middleware readiness work) about news in this area at the ops meeting next week? Thank you.
  • Does anyone want specific questions in this area tackled in a roundtable discussion?

Tuesday 7th December

  • Raul reports: validation of site BDII on Centos 7 done.

Tuesday 15th September

Tuesday 12th May

  • MW Readiness WG meeting Wed May 6th at 4pm. Attended by Raul, Matt, Sam and Jeremy.


References


Security - Incident Procedure Policies Rota

Monday 26th June

  • Updated IGTF distribution 1.84 certificate authorities [1]
  • EGI CSIRT Heads-Up [TLP:AMBER] security incident reported from one site concerning compromised VM in EGI Fed Cloud
  • EGI SVG Heads-Up [TLP:WHITE] Stack clash memory allocation vulnerability CVE-2017-1000364 [EGI-SVG-CVE-2017-1000364] [2]
  • EGI SVG Advisory [TLP:WHITE] 'Moderate' risk - sudo local root vulnerability CVE-2017-1000367 [3]
  • EGI SVG Advisory [TLP:WHITE] 'HIGH' risk NSS out of bounds write flaw CVE-2017-5461[4]

Tuesday 6th June

  • EGI SVG Advisory [TLP:WHITE] up to 'HIGH' risk Qemu and Xen guest escape issues CVE-2016-9603 and others [EGI-SVG-CVE-2016-9603] [5]
  • 'HEADS-UP' on the escalation of privilege vulnerability in Intel AMT [EGI-SVG-CVE-2017-5689].

Tuesday 30th May

  • Updated IGTF distribution 1.83 - updated trust anchors [6]



Services - PerfSonar production dashboard |PerfSonar development dashboard | GridPP VOMS

- This includes notifying of (inter)national services that will have an outage in the coming weeks or will be impacted by work elsewhere. (Cross-check the Tier-1 update).

Tuesday 6th June

  • An update from the DIRAC workshop? GridPP is still the only true multi-VO instance, so we will continue to see issues with this. release quality of dirac has improved within the past year. gfal2/EL7 problems seem to be coming to an end after being cooped up with all authors for 3 days on end. The Imperial GridPP module now has integrated testing. It was also noted that every dirac instance has it's own special module to adapt to their community on top of main dira. We are trying to push as much of out special functionality back into the main dirac branch.

Tuesday 25th April

  • perfSONAR version 4 was released on 17th April. Sites with auto-update on should have been automatically upgraded. Note perfSONAR 4.0 requires more CPU than previous versions as a result of some of the increased functionality. Full details here

Monday 6th March

  • Last week it was noted that some ATLAS RIPE probes (the USB ones) have had hardware errors. If you need a replacement and RIPE are slow to respond then contact Jeremy.
  • Is anyone running any tests with their RIPE probe?

Tuesday 14th February

  • The development dashboard is now operational again. However the production dashboard is not currently displaying latency results (OSG ticket submitted).
  • Birmingham pS host had lost its entire network connection and both Lancaster's hosts their IPv6 connection. Durham results are incomplete, GGUS ticket submitted (#126587).

Tuesday 25th October

  • Duncan has recreated the UK perfSONAR mesh. Link here!


Tickets

Monday 12th June 2017
No update this week due to hepsysman, here's the obligatory link to the UK tickets.

Tools - MyEGI Nagios

29th November 2016

LSST monitoring is available through vo-nagios

https://vo-nagios.physics.ox.ac.uk/nagios/cgi-bin/status.cgi?servicegroup=lsst&style=detail

13th September 2016


VOs - GridPP VOMS VO IDs Approved VO table
Site Updates

Date



Meeting Summaries
Project Management Board - MembersMinutes Quarterly Reports

Empty

GridPP ops meeting - Agendas Actions Core Tasks

Empty


RAL Tier-1 Experiment Liaison Meeting (Wednesday 13:30) Agenda Meeting takes place on Vidyo.

Highlights from this meeting are now included in the Tier1 report farther up this page.

WLCG Grid Deployment Board - Agendas MB agendas

Empty



NGI UK - Homepage CA

Empty

Events
UK ATLAS - Shifter view News & Links

Atlas S&C week 2-6 Feb 2015

Production

• Prodsys-2 in production since Dec 1st

• Deployment has not been transparent , many issued has been solved, the grid is filled again

• MC15 is expected to start soon, waiting for physics validations, evgen testing is underway and close to finalised.. Simulation expected to be broadly similar to MC14, no blockers expected.

Rucio

• Rucio in production since Dec 1st and is ready for LHC RUN-2. Some fields need improvements, including transfer and deletion agents, documentation and monitoring.

Rucio dumps available.

Dark data cleaning

files declaration . Only Only DDM ops can issue lost files declaration for now, cloud support needs to fill a ticket.

• Webdav panda functional tests with Hammercloud are ongoing

Monitoring

Main page

DDM Accounting

space

Deletion

ASAP

• ASAP (ATLAS Site Availability Performance) in place. Every 3 months the T2s sites performing BELOW 80% are reported to the International Computing Board.


UK CMS

Empty

UK LHCb

Empty

UK OTHER
  • N/A
To note

  • N/A