Admin/Wants

List O Aims:

Task

Status

Responsible

More info

1.

convert from cvs to svn

Not Started

2.

svn for all config files

Not Started

3.

kerberos for auth

Not Started

4.

nss_mysql for user info

Not Started

5.

rt for ticketing all support issues

Not Started

6.

proper monitoring of all services

Not Started

7.

wiki for documentation, both for admin and user purposes - moinmoin

In progress

diamond

8.

central logging service

Not Started

9.

central console machine for all critical servers.

Not Started

10.

re-subnetted network to allow failover gateways

Completed

diamond

11.

cleanup of firewall rules

In progress

diamond

12.

(virtual?) machines per service

In progress

various

More Info

13.

move all lists to @lists.skynet.ie

Complete

davisc

More Info

14.

clean up dns some more

Complete

diamond/davisc

15.

serve both .csn.ul.ie and .skynet.ie from the same zone file, if possible.

Complete

diamond

16.

change from mod_php/mod_python/mod_perl to fastcgi, where possible, and use suexec.

Not Started

17.

well supported scsi card for hex.

Complete

davisc

18.

buy label-maker, label everything

In progress

davisc

19.

nothing runs as 'nobody'

Not Started

20.

ftp user and telnet go away

In progress

21.

hex to be mail only server (smtp, imap, pop)

In progress

davisc

More Info

22.

auto vhostage (VirtualDocumentRoot)

Not Started

23.

change all passwords

Complete

ikelly

24.

every service account (root@, dbadmin@, dnsadmin@ etc) should have an Access.List file, encrypted with the password of the account, listing all the people who should have access to that account.

Not Started

More Info

25.

in the root@admin homedir, there should be a file with the root passwords for all machines in the cluster stored in it, encrypted with admin's root password.

In progress

ikelly

More Info

26.

an admin blog, so people who are interested can keep up to date with what's going on without needing to be on mailing lists.

Not Started

27.

provide cgi::irc for auth'd users

Not Started

28.

provide anyterm remote terminal access over https.

Complete

diamond/davisc

subversion:

  1. All customized config files in /etc (and all config files _should_ be in /etc)

  2. All config files related to a service (dns, irc, mail, etc) in a service branch of the main svn tree.

  3. All config files specifically related to a machine (off the top of my head, this would be /etc/hostname, and very little else) in a machine branch of the main svn tree.

  4. All other config files in the trunk.

last edited 2006-02-23 20:37:44 by 87