This task will track the racking, setup, and installation of the replacement tor relay server for eqiad. As we've moved more hostnames with dedicated roles to role based naming, this seems a prime candidate, as it cannot do anything else but act as a tor relay.
Once this system is fully online and in service, radium will be decommissioned due to its age.
Hostname proposal: torrelay1001.wikimedia.org
Racking Proposal: This can go in any 1G rack, as the system its replacing is in our normal public subnet(s).
torrelay1001:
- - receive in system on procurement task T195417
- - rack system with proposed racking plan (see above) & update racktables (include all system info plus location)
- - bios/drac/serial setup/testing
- - mgmt dns entries added for both asset tag and hostname
- - network port setup (description, enable, vlan)
- end on-site specific steps
- - production dns entries added
- - operations/puppet update (install_server at minimum, other files if possible)
- - OS installation
- - puppet accept/initial run - as role spare
- - handoff for service implementation
- - implement service and switch over
migration plan:
goal: keep the same fingerprints
- stop tor service on radium
- rsync datadir contents (/var/lib/tor/ from radium to torrelay1001
- delete datadir and config on radium or otherwise ensure it cant come back with the same fingerprints
- start service on torrelay1001