Public
Account provisioning with SAR
Tue, 08/18/2009 - 15:36 — jaklein.ncsu.eduSeveral of us met individually with Richard over the last couple of days to talk about using SAR (aka Sun One identify manager) for account provisioning.
SAR is used as a replacement for an earlier home made applicaiton called ASAP, and is used to provision and deprovision access to things. There are currently 36 systems in SAR, some of which don't actually do the provisioning, but handle the process flow by presenting forms for approval and sending e-mail to each party in the workflow to encourage them to fill out said forms.
Windows Terminal Server specific nagios config
Tue, 08/18/2009 - 15:20 — jaklein.ncsu.eduTo monitor Windows Terminal Server Licenses, we do the following
ACSAD reverse lookup zones
Wed, 08/12/2009 - 15:53 — jaklein.ncsu.eduSo, in order to move forward on the DNS in .acsad.ncsu.edu, I think we need to do the following
Windows license servers in Nagios
Wed, 08/12/2009 - 13:44 — jaklein.ncsu.eduThe work isn't complete, but I've got a start of the Windows plugins for Nagios packaged in the WolfTech domain.
"Soft" restart for a Novell Netware server
Tue, 08/11/2009 - 11:05 — jaklein.ncsu.eduOne should always try to do a soft restart of a Novell Server if possible, rather then a hard reset or power cycle. If a soft reset isn't possible for some reason, do a server reset with it's DRAC or ILO!
The quickest way to get a a Novell Server console is with the AdRem Remote Console program, accessible via Citrix at https://acsfuse.ncsu.edu
Reboot a server with an HP ILO
Tue, 08/11/2009 - 10:59 — jaklein.ncsu.eduIntegrated Lights Out, aka ILO, is a browser based out of band management tool for server administrators. HP ILO is accessible from the 172.17.11.x network, located behind the checkpoint firewall. Use a browser in Citrix to access if needed. The look of the ILO may vary some due to versioning, but the methods are the same.
Naming Convention:
Reboot a server with a Dell DRAC
Tue, 08/11/2009 - 10:54 — jaklein.ncsu.eduIn order to reboot a server with a DRAC card, you will need
- A web browser with Java installed
- Access to the management subnet. The Citrix servers all have this
- The fixed DRAC password. Plans are to replace this practice with your WolfTech AD credentials once we get the schema extended.
The DRAC cards are named in DNS after the servers which they control. The convention is servername-nm,oit.ncsu.edu. As an example, host fs00.unity.ncsu.edu has it's DRAC named fs00-nm.oit.ncsu.edu .
On-Call Playbook Actions
Tue, 08/11/2009 - 10:49 — jaklein.ncsu.eduHere are the actions to take given specific error conditions in Nagios
CMS container created in WolfTech
Wed, 08/05/2009 - 19:35 — jaklein.ncsu.eduDebbie talked to me and asked me to create a container for Campus Messaging Services in WolfTech. I've made some OUs, but I'm not convinced it's going to work properly with the Wolftech magic.
I think that Billy/Dan/Derek have to add the containters that get auto-populated with applications, allowed rights to link gpos, and so forth.
I've made a skeleton of ou=CMS,ou=CT,ou=OIT and assigned all rights to the group "CMS-OU Admins" right now Debbie is the only member of that group, as she's co-ordinating the DESAD migration and can add others as she needs.
Shibboleth - Attributes Provided by NCSU IdP
Thu, 07/30/2009 - 16:16 — brabec.ncsu.edu| Attribute ID | SAML1 / SAML2 Names | Description | Example Value |
|---|---|---|---|
| eduPersonPrincipalName | urn:mace:dir:attribute-def:eduPersonPrincipalName urn:oid:1.3.6.1.4.1.5923.1.1.1.6 |
unityid@ncsu.edu | jqpublic@ncsu.edu |
| campusPermanentId | (none) 1.3.6.1.4.1.32548.1.1.2 |
campus id number @ncsu.edu | 001234567@ncsu.edu |
| eduPersonTargetedID |
