Page MenuHomePhabricator
Paste P28365

CODFW hosts for T271143
ActivePublic

Authored by bking on May 23 2022, 6:40 PM.
Referenced Files
F35170379: CODFW hosts for T271143
May 23 2022, 6:40 PM
Subscribers
elastic2030.codfw.wmnet
elastic2031.codfw.wmnet
elastic2032.codfw.wmnet
elastic2033.codfw.wmnet
elastic2034.codfw.wmnet
elastic2035.codfw.wmnet
elastic2036.codfw.wmnet
elastic2037.codfw.wmnet
elastic2038.codfw.wmnet
elastic2039.codfw.wmnet
elastic2040.codfw.wmnet
elastic2041.codfw.wmnet
elastic2042.codfw.wmnet
elastic2043.codfw.wmnet
elastic2044.codfw.wmnet
elastic2045.codfw.wmnet
elastic2046.codfw.wmnet
elastic2047.codfw.wmnet
elastic2048.codfw.wmnet
elastic2049.codfw.wmnet
elastic2050.codfw.wmnet
elastic2051.codfw.wmnet
elastic2052.codfw.wmnet
elastic2053.codfw.wmnet
elastic2054.codfw.wmnet
elastic2055.codfw.wmnet
elastic2056.codfw.wmnet
elastic2057.codfw.wmnet
elastic2058.codfw.wmnet
elastic2059.codfw.wmnet
elastic2060.codfw.wmnet

Event Timeline

@bking FYI I'll skip elastic2035 as it's offline in Netbox and doesn't have any IP.

root@elastic2025:~# tcpdump -s1500 -X -vnnqi eno1 host 2620:0:860:103:10:192:32:49

14:44:27.872428 IP6 (flowlabel 0x3dd72, hlim 63, next-header TCP (6) payload length: 40) 2620:0:860:103:10:192:32:49.60600 > 2620:0:860:101:10:192:0:77.9200: tcp 0
	0x0000:  6003 dd72 0028 063f 2620 0000 0860 0103  `..r.(.?&....`..
	0x0010:  0010 0192 0032 0049 2620 0000 0860 0101  .....2.I&....`..
	0x0020:  0010 0192 0000 0077 ecb8 23f0 78bc 84ca  .......w..#.x...
	0x0030:  0000 0000 a002 a8c0 aa38 0000 0204 05a0  .........8......
	0x0040:  0402 080a 6254 215b 0000 0000 0103 0309  ....bT![........
14:44:27.872478 IP6 (flowlabel 0xca1e9, hlim 64, next-header TCP (6) payload length: 20) 2620:0:860:101:10:192:0:77.9200 > 2620:0:860:103:10:192:32:49.60600: tcp 0
	0x0000:  600c a1e9 0014 0640 2620 0000 0860 0101  `......@&....`..
	0x0010:  0010 0192 0000 0077 2620 0000 0860 0103  .......w&....`..
	0x0020:  0010 0192 0032 0049 23f0 ecb8 0000 0000  .....2.I#.......
	0x0030:  78bc 84cb 5014 0000 6354 0000

ip6tables -L -v -n | grep 2620:0:860 | grep 9200

looks like cumin2002 should be covered

9   720 ACCEPT     tcp      *      *       2620:0:860:103::/64  ::/0                 tcp dpt:9200

Elastic process is not listening on its public v6 port:

root@elastic2025:~# ss -l6 | grep 9200
tcp    LISTEN     0      1024   ::ffff:10.192.0.77:9200                 :::*
tcp    LISTEN     0      1024     ::ffff:10.2.1.30:9200                 :::*
tcp    LISTEN     0      1024     ::ffff:127.0.0.1:9200                 :::*
tcp    LISTEN     0      1024      ::1:9200                 :::*

Ready all EQIAD hosts that currently do not have an AAAA record:

elastic1048.eqiad.wmnet
elastic1049.eqiad.wmnet
elastic1050.eqiad.wmnet
elastic1051.eqiad.wmnet
elastic1052.eqiad.wmnet
elastic1053.eqiad.wmnet
elastic1054.eqiad.wmnet
elastic1055.eqiad.wmnet
elastic1056.eqiad.wmnet
elastic1057.eqiad.wmnet
elastic1058.eqiad.wmnet
elastic1059.eqiad.wmnet
elastic1060.eqiad.wmnet
elastic1061.eqiad.wmnet
elastic1062.eqiad.wmnet
elastic1063.eqiad.wmnet
elastic1064.eqiad.wmnet
elastic1065.eqiad.wmnet
elastic1066.eqiad.wmnet
elastic1067.eqiad.wmnet