Difference between revisions of "Operations Bulletin Latest"

From GridPP Wiki
Jump to: navigation, search
()
()
Line 352: Line 352:
  
 
===== =====
 
===== =====
 +
'''Tuesday 10th October'''
 +
* ...
 +
 +
 
'''Tuesday 3rd October'''
 
'''Tuesday 3rd October'''
 
* EGI SVG ADVISORY [TLP:WHITE] 'HIGH' risk Linux kernel local root vulnerability CVE-2017-1000253
 
* EGI SVG ADVISORY [TLP:WHITE] 'HIGH' risk Linux kernel local root vulnerability CVE-2017-1000253
Line 360: Line 364:
 
** November 7th: Authz pre-GDB
 
** November 7th: Authz pre-GDB
 
** December 11th/12th: SOC WG Workshop/pre-GDB (details to be confirmed)
 
** December 11th/12th: SOC WG Workshop/pre-GDB (details to be confirmed)
 
'''Monday 31st July'''
 
* Ian has now left GridPP. Please direct queries to the security team via ukngi-security at cern.ch.
 
  
 
|}
 
|}

Revision as of 08:23, 10 October 2017

Bulletin archive


Week commencing Monday 9th October 2017
Task Areas
General updates

Tuesday 10th October

  • There is a GDB this Wednesday. Agenda
  • EGI Trust Anchor 1.86-1 has just been released.


Tuesday 3rd October

  • Minutes from Monday's WLCG ops meeting.
  • EGI Broadcast:
    • Change in computing the weights for the NGIs average A/R values - some VAC concerns.
    • Campaign for upgrading cASO to version 1.1.1 (OpenStack sites)
    • CMD-ONE 1.0.0 (Could Middleware Distribution for OpenNebula 5, for CentOS7)
    • CMD-OS 1.1.3 (revision update for Could Middleware Distribution for OpenStack Mitaka on CentOS7 and Ubuntu Xenial)
  • The IGTF is about to release a regular update to the trust anchor repository (1.86) on Monday, Oct 9th 2017.
  • EGI BROADCAST - Storage accounting deployment: DPM and dCache only. (Reminder 28th September).
  • GridPP40 poll reminder.

Tuesday 26th September

WLCG Operations Coordination - AgendasWiki Page

Tuesday 10th October

  • There was an ops coordination meeting last Thursday 5th October: Agenda | Minutes.
    • There is one action for us to follow-up: "Collect plans from sites to move to EL7". We could make use of the Batch Systems table.

Tuesday 3rd October

  • The next WLCG ops coordination meeting will be on 5th October - agenda.

Tuesday 19th September

  • The agenda and minutes from the WLCG ops meeting on 14th September are now available.
  • The next meeting is planned for 5th October.
Tier-1 - Status Page

Tuesday 10th October A reminder that there is a weekly Tier-1 experiment liaison meeting. Notes from the last meeting here

  • A quiet week at the Tier1.
  • Chris has been commissioning links in CMS' PhEDEx to/from Echo. This should be completed by the time of this meeting.
Storage & Data Management - Agendas/Minutes

Tuesday 3rd October

  • Looking for small DPM ATLAS site to possibly test xrootd caching
  • Tracking upgrade of SEs to new what will be new baseline versions. (dCache sites updated; 6/14 DPM up-to-date)
  • Alastair D. to give T2 site storage evolution talk 4/10/17 at gridpp-storage meeting

Wednesday 06 Sep

Wednesday 30 Aug

  • How will experiments use object stores in the future? Could the Sept. pre-GDB clarify this?
  • Fair bit of stuff known about advantages and disadvantages of erasure coding data, compressing data, etc. prior to storing it.
  • Bristol's curious missing SE - dropped out of the information system?
Tier-2 Evolution - GridPP JIRA

Tuesday 3 Oct

  • Productions tests of Vac 03.00pre at Manchester.

Tuesday 19 Sep

  • Running LHCb production MC in Docker and Singularity containers on Vac. Since GridPP39, CPU and memory cgroups wrapper around Singularity Containers has been added.

Tuesday 5 Sep

  • Docker and Singularity container support in Vac 03.00pre

Tuesday 29 Aug

  • Prerelease of Vac-in-a-Box (i.e. GitHub master) is now running on CentOS 7, for Vac 02.01.
  • Aiming for combined Vac/Vac-in-a-Box release with CentOS 7, but with continued SL6 support for Vac.


Accounting - UK Grid Metrics HEPSPEC06 Atlas Dashboard HS06

Monday 16th January

  • The discussion topic for next week will be accounting comparisons. Please note Alessandra's comments last week.

Monday 14th November

  • Alessandra has written an FAQ to extract numbers from ATLAS and APEL avoiding the SSB.

Monday 26th September

  • A problem with the APEL Pub and Sync tests developed last Tuesday and was resolved on Wednesday. This had a temporary impact on the accounting portal.
Documentation - KeyDocs

Tuesday 26th Sept 2017

  • Safari on macOS autogenerated client certificates fix put into production last week.

Tuesday 19th Sept 2017

  • Bug in Safari on macOS causes random Apple generated client cert to be presented to www.gridpp.ac.uk using a CA we don't know about. The connection is then rejected by Apache. Other browsers ok since we request but do not require that they supply a certificate. Workaround produced by (a) installing the Apple CA root and intermediary CA and (b) whitelisting UK e-Science DNs (+ CERN? Others?) in the HTTPS Wiki plugin. Tested but not yet in production.

Tuesday 5th Sept 2017

New Approved VO. SKA European regional data centre, skatelescope.eu

https://www.gridpp.ac.uk/wiki/GridPP_approved_VOs

This VO is ramping up and has requested support. Andrew McNab is the contact person for GridPP.

General note

See the worst KeyDocs list for documents needing review now and the names of the responsible people.

Interoperation - EGI ops agendas Indico schedule

Monday 9th October

  • There was an EGO Ops meeting today: AgendaMinutes
  • (Notes in progress)
  • MW
    • UMD 4.6 in November
      • UI, CREAM, ARGUS
      • If not before in 4.5.1
    • UMD Preview update on 22/9
      • not rooted 4.7.0 has a bug, wait for update
      • CREAM version in Preview, please test if applicable (leading to release as noted above)


  • Ops
    • cASO (OpenStack Accounting extractor) update: 100%IT done (GGUS ticket 130665)
    • A/R nothing to report
    • Computation Power
      • Sites check data by end of the month
    • EMI WMS
      • mice noted as being enabled on DIRAC
    • IPv6 Readiness
      • Would be useful for us to provide a report
    • webdav probes
      • If you're advertising a webdav endpoint, make sure it's in the GOC DB
    • Storage accounting deployment
      • Enable by 30th October; tickets to follow. Note broadcast that new data currently not showing, ticket on errors only

Tuesday 29th August

  • There was an EGI Ops meeting last Monday. Agenda
  • UMD 4.5 is out with CentOS 7 WN package (see broadcast)
  • NGI_UK QoS ticket mentioned in agenda but not in meeting QoS ticket
  • Proposal: WMS will be removed from production starting from 1st January 2018
  • NGIs/ROCs please start discussing with sites and provide suggestions for the overall plan for IPv6
  • WebDAV reporting: The Operations Centres are asked to verify with their sites if the webdav protocol is really (intentional) enabled on their storage elements (if not, the information should be removed from the BDII), and report to EGI Operations
  • Next meeting 11th September https://indico.egi.eu/indico/event/3352/
Monitoring - Links MyWLCG

Tuesday 4th July

  • There were a number of useful links provided in the monitoring talks at the WLCG workshop in Manchester - especially those in the Wednesday sessions.

Monday 13th February

  • This category is pretty much inactive. Are there any topics under "monitoring" that anyone wants reported at this ops meeting? If not we will remove this section from the regular updates area of the bulletin and just leave the main links.

Tuesday 1st December


Tuesday 16th June

  • F Melaccio & D Crooks decided to add a FAQs section devoted to common monitoring issues under the monitoring page.
  • Feedback welcome.


On-duty - Dashboard ROD rota

Tuesday 3rd October

  • A new ROD rota poll needs to be circulated in the coming days.

6th June

  • There are issues with the ARC CE tests again, so the ARC sites have not have any results in days and the corresponding availability tickets are going nowhere.
  • New rota being compiled.

Tuesday 2nd May

  • Generally quiet. A few low availability tickets.
Rollout Status WLCG Baseline

Monday 13th February

  • Please can we hear something from Raul and Sam (or others contributing to the middleware readiness work) about news in this area at the ops meeting next week? Thank you.
  • Does anyone want specific questions in this area tackled in a roundtable discussion?

Tuesday 7th December

  • Raul reports: validation of site BDII on Centos 7 done.

Tuesday 15th September

Tuesday 12th May

  • MW Readiness WG meeting Wed May 6th at 4pm. Attended by Raul, Matt, Sam and Jeremy.


References


Security - Incident Procedure Policies Rota

Tuesday 10th October

  • ...


Tuesday 3rd October

  • EGI SVG ADVISORY [TLP:WHITE] 'HIGH' risk Linux kernel local root vulnerability CVE-2017-1000253


Services - PerfSonar production dashboard |PerfSonar development dashboard | GridPP VOMS

- This includes notifying of (inter)national services that will have an outage in the coming weeks or will be impacted by work elsewhere. (Cross-check the Tier-1 update).

Tuesday 4th July

  • Pete C is preparing another networking forward look document. Note that figures presented in the Manchester workshop were for a Tier-2 (not always a single site).

Tuesday 6th June

  • An update from the DIRAC workshop? GridPP is still the only true multi-VO instance, so we will continue to see issues with this. release quality of dirac has improved within the past year. gfal2/EL7 problems seem to be coming to an end after being cooped up with all authors for 3 days on end. The Imperial GridPP module now has integrated testing. It was also noted that every dirac instance has it's own special module to adapt to their community on top of main dira. We are trying to push as much of out special functionality back into the main dirac branch.

Tuesday 25th April

  • perfSONAR version 4 was released on 17th April. Sites with auto-update on should have been automatically upgraded. Note perfSONAR 4.0 requires more CPU than previous versions as a result of some of the increased functionality. Full details here
  • Duncan has recreated the UK perfSONAR mesh. Link here!


Tickets

Monday 9th October 2017, 15.00 BST
20 Open UK Tickets this week - focusing on stale tickets.

BRISTOL
130957 (6/10)
This CMS xroot permissions ticket was only assigned to Bristol today, so it's a bit mean of me to single it out. Assigned (9/10)

OXFORD
130032 (11/8)
This LHCB upload ticket really needs to be prodded to see if the problem persists. In progress (23/8)

CAMBRIDGE
130787 (28/9)
This other LHCB ticket has been waiting for reply for over a week. Waiting for reply (28/9)

BIRMINGHAM
129930 (4/8)
Atlas http SAM tests failing. Oxford are looking at the nuclear option for this corresponding ticket (129931), any plans for dealing with this at Birmingham? If not then the ticket will need putting on ice. In progress (16/8)

QMUL
130262 (28/8)
Biomed see problems with QM's SE publishing. The problem has been tracked to Glue 2 - perhaps it needs to be bounced to the STORM devs? (13/9)

TIER 1
130883 (2/10)
How is the digging going on this CMS transfer ticket between RAL and a Tier 3 in Florida? In progress (3/10)

130467 (10/9)
CMS SAM3 tests at RAL failing due to lack of space - at least check Chris B triggered a round of deletes - any news if that cleared things? Checking the link I see a lot of green so that's looking good. In progress (25/9)

130782 (27/9)
LHCB request to install the latest heposlibs at RAL. Any news on this? In progress (28/9)

Tools - MyEGI Nagios

Tuesday 18th July

  • Following our ops discussion last week, Steve will focus his tests on supporting the GridPP DIRAC area and decommission the other tests.


29th November 2016

LSST monitoring is available through vo-nagios

https://vo-nagios.physics.ox.ac.uk/nagios/cgi-bin/status.cgi?servicegroup=lsst&style=detail

13th September 2016


VOs - GridPP VOMS VO IDs Approved VO table
Site Updates

Date



Meeting Summaries
Project Management Board - MembersMinutes Quarterly Reports

Empty

GridPP ops meeting - Agendas Actions Core Tasks

Empty


RAL Tier-1 Experiment Liaison Meeting (Wednesday 13:30) Agenda Meeting takes place on Vidyo.

Highlights from this meeting are now included in the Tier1 report farther up this page.

WLCG Grid Deployment Board - Agendas MB agendas

Empty



NGI UK - Homepage CA

Empty

Events
UK ATLAS - Shifter view News & Links

Atlas S&C week 2-6 Feb 2015

Production

• Prodsys-2 in production since Dec 1st

• Deployment has not been transparent , many issued has been solved, the grid is filled again

• MC15 is expected to start soon, waiting for physics validations, evgen testing is underway and close to finalised.. Simulation expected to be broadly similar to MC14, no blockers expected.

Rucio

• Rucio in production since Dec 1st and is ready for LHC RUN-2. Some fields need improvements, including transfer and deletion agents, documentation and monitoring.

Rucio dumps available.

Dark data cleaning

files declaration . Only Only DDM ops can issue lost files declaration for now, cloud support needs to fill a ticket.

• Webdav panda functional tests with Hammercloud are ongoing

Monitoring

Main page

DDM Accounting

space

Deletion

ASAP

• ASAP (ATLAS Site Availability Performance) in place. Every 3 months the T2s sites performing BELOW 80% are reported to the International Computing Board.


UK CMS

Empty

UK LHCb

Empty

UK OTHER
  • N/A
To note

  • N/A