Hosts/seed

From FGVwiki

Jump to: navigation, search

Contents

seed

Location FG Office
Status Production
Monitoring Zenoss Link

Hardware

VendorHP
ModelDL360 G3
Processor2 x Dual core Intel(R) Xeon(R) CPU 3.20GHz
GraphicsATI Rage XL
Networkbge0 (00:0b:cd:4e:56:8f), bge1 (00:0b:cd:4e:59:78), em0, em1
RAM2048MB
Drives 2x36gb in RAID 1
Other Cardsnone

Configuration

OSOpenBSD 4.9
Backup unconfigured

Network

DescriptionIPLogical IFPhysical IFMAC
Incoming Trunk none trunk0 em0 em1 00:02:a5:4d:ab:6c
Uplink DHCP from ISP/ifstated scriptvlan7 trunk0 variable
Synchronization 10.254.254.2 bge0 bge0 00:0b:cd:4e:56:8f
PF Sync pfsync0 bge0
Server specific interface 10.0.0.2 vlan1 trunk0 00:02:a5:4d:ab:6c
Failover interface for vlan1 10.0.0.1 carp1 vlan1 auto
Server specific interface 10.0.2.2 vlan2 trunk0 00:02:a5:4d:ab:6c
Failover interface for vlan2 10.0.2.1 carp2 vlan2 auto
Server specific interface 10.0.3.2 vlan3 trunk0 00:02:a5:4d:ab:6c
Failover interface for vlan3 10.0.3.1 carp3 vlan3 auto
Server specific interface 10.0.4.2 vlan4 trunk0 00:02:a5:4d:ab:6c
Failover interface for vlan4 10.0.4.1 carp4 vlan4 auto
Server specific interface 10.0.5.2 vlan5 trunk0 00:02:a5:4d:ab:6c
Failover interface for vlan5 10.0.5.1 carp5 vlan5 auto
Server specific interface 10.0.6.2 vlan6 trunk0 00:02:a5:4d:ab:6c
Failover interface for vlan6 10.0.6.1 carp6 vlan6 auto
Server specific interface 10.0.8.2 vlan8 trunk0 00:02:a5:4d:ab:6c
Failover interface for vlan8 10.0.8.1 carp8 vlan8 auto

Volumes

DescriptionDeviceMount PointFilesystemSize
Root/dev/sd0a/ffs1005M
Home/dev/sd0k/homeffs14.0G
Tmp/dev/sd0d/tmpffs2.3G
Usr/dev/sd0f/usrffs2.0G
Usr/X11R6/dev/sd0g/usr/X11R6ffs1005M
Usr/Local/dev/sd0h/usr/localffs4.6G
Usr/Obj/dev/sd0j/usr/objffs1.8G
Usr/src/dev/sd0i/usr/srcffs1.8G
Var/dev/sd0e/varffs3.6G

Services

Service Name Purpose and link to Service Page
Packet Filter See below
DHCP Provide IP auto configuration with DHCP

Packet Filter

Packet Filter is configured to perform firewall duties, NAT duties, and other stateful packet inspection. It is governed by /etc/pf.conf which is committed to subversion. Do not make any changes in this file without committing them to subversion with a message stating the change.

Exposed Services

External Port Purpose
port 22 SSH to larch
port 25 SMTP to mail
port 80 HTTP to larch (http reverse proxy)
port 143 IMAP to mail
port 443 VPN to camphor
port 587 SMTP submission to mail
port 2223 SSH to larch
port 2224 SSH to larch
port 8443 VPN to camphor
ports 5060:5090,10000:40000 Asterisk
Personal tools