Page MenuHomePhabricator

Decommission dbproxy1001.eqiad.wmnet
Open, MediumPublic

Description

This task will track the decommission of server dbproxy1001.eqiad.wmnet

With the launch of updates to the decom cookbook, the majority of these steps can be handled by the service owners directly. The DC Ops team only gets involved once the system has been fully removed from service and powered down by the decommission cookbook.

dbproxy1001

Steps for service owner:

  • - Remove grants T231280
  • - all system services confirmed offline from production use
  • - set all icinga checks to maint mode/disabled while reclaim/decommmission takes place. https://gerrit.wikimedia.org/r/#/c/operations/puppet/+/570588/
  • - remove system from all lvs/pybal active configuration
  • - any service group puppet/hiera/dsh config removed
  • - remove site.pp, replace with role(spare::system) recommended to ensure services offline but not 100% required as long as the decom script is IMMEDIATELY run below.
  • - login to cumin host and run the decom cookbook: cookbook sre.hosts.decommission <host fqdn> -t <phab task>. This does: bootloader wipe, host power down, netbox update to decommissioning status, puppet node clean, puppet node deactivate, debmonitor removal.
  • - remove all remaining puppet references (include role::spare) and all host entries in the puppet repo https://gerrit.wikimedia.org/r/#/c/operations/puppet/+/571628/
  • - remove ALL dns entries except the asset tag mgmt entries. https://gerrit.wikimedia.org/r/#/c/operations/dns/+/571629/
  • - reassign task from service owner to DC ops team member depending on site of server: codfw = @Papaul, eqiad = @Jclark-ctr, all other sites = @RobH.

End service owner steps / Begin DC-Ops team steps:

  • - disable switch port / set to asset tag if host isn't being unracked / remove from switch if being unracked.
  • - system disks wiped (by onsite)
  • - determine system age, under 5 years are reclaimed to spare, over 5 years are decommissioned. If uncertain, ask @wiki_willy.
  • - IF DECOM: system unracked and decommissioned (by onsite), update netbox with result and set state to offline
  • - IF DECOM: switch port configration removed from switch once system is unracked.
  • - IF DECOM: add system to decommission tracking google sheet
  • - IF DECOM: mgmt dns entries removed.
  • - IF RECLAIM: set netbox state to 'inventory' and hostname to asset tag

Details

Related Gerrit Patches:
operations/dns : masterwmnet: Remove dbproxy1001 production DNS
operations/puppet : productionsite.pp: Remove dbproxy1001 puppet references
operations/puppet : productiondbproxy1001: Set it to spare
operations/puppet : productiondbproxy1001: Disable notifications

Event Timeline

Marostegui triaged this task as Medium priority.Thu, Feb 6, 9:20 AM
Marostegui created this task.
Marostegui moved this task from Triage to In progress on the DBA board.

Not yet ready. This host has stopped being the active m1 proxy master, so let's give it a few days before starting its decommissioning.
We should also test dbproxy1012 first to make sure it can also act as a master for m1.

Change 570588 had a related patch set uploaded (by Marostegui; owner: Marostegui):
[operations/puppet@production] dbproxy1001: Disable notifications

https://gerrit.wikimedia.org/r/570588

Change 570588 merged by Marostegui:
[operations/puppet@production] dbproxy1001: Disable notifications

https://gerrit.wikimedia.org/r/570588

Marostegui updated the task description. (Show Details)Thu, Feb 6, 9:26 AM
Marostegui removed subscribers: RobH, Papaul.
Marostegui updated the task description. (Show Details)Tue, Feb 11, 6:45 AM
Marostegui added subscribers: Papaul, RobH.
Marostegui updated the task description. (Show Details)Tue, Feb 11, 6:56 AM

Mentioned in SAL (#wikimedia-operations) [2020-02-11T06:59:55Z] <marostegui> Stop haproxy on dbproxy1001 - T244463

Change 571425 had a related patch set uploaded (by Marostegui; owner: Marostegui):
[operations/puppet@production] dbproxy1001: Set it to spare

https://gerrit.wikimedia.org/r/571425

Change 571425 merged by Marostegui:
[operations/puppet@production] dbproxy1001: Set it to spare

https://gerrit.wikimedia.org/r/571425

Marostegui updated the task description. (Show Details)Tue, Feb 11, 7:18 AM
RobH removed a subscriber: RobH.Tue, Feb 11, 4:04 PM

cookbooks.sre.hosts.decommission executed by marostegui@cumin1001 for hosts: dbproxy1001.eqiad.wmnet

  • dbproxy1001.eqiad.wmnet (FAIL)
    • Host steps raised exception: Empty Management Password

ERROR: some step on some host failed, check the bolded items above

cookbooks.sre.hosts.decommission executed by marostegui@cumin1001 for hosts: dbproxy1001.eqiad.wmnet

  • dbproxy1001.eqiad.wmnet (PASS)
    • Downtimed host on Icinga
    • Downtimed management interface on Icinga
    • Wiped bootloaders
    • Powered off
    • Set Netbox status to Decommissioning
    • Removed from DebMonitor
    • Removed from Puppet master and PuppetDB

Change 571628 had a related patch set uploaded (by Marostegui; owner: Marostegui):
[operations/puppet@production] site.pp: Remove dbproxy1001 puppet references

https://gerrit.wikimedia.org/r/571628

Change 571628 merged by Marostegui:
[operations/puppet@production] site.pp: Remove dbproxy1001 puppet references

https://gerrit.wikimedia.org/r/571628

Change 571629 had a related patch set uploaded (by Marostegui; owner: Marostegui):
[operations/dns@master] wmnet: Remove dbproxy1001 production DNS

https://gerrit.wikimedia.org/r/571629

Change 571629 merged by Marostegui:
[operations/dns@master] wmnet: Remove dbproxy1001 production DNS

https://gerrit.wikimedia.org/r/571629

Marostegui edited projects, added ops-eqiad, decommission, Operations; removed Patch-For-Review, DBA.
Marostegui updated the task description. (Show Details)
Marostegui moved this task from Backlog to pending onsite steps (eqiad) on the decommission board.
Marostegui edited subscribers, added: RobH; removed: Papaul.

Ready for DC-OPs to finish its decommissioning.

Marostegui moved this task from Backlog to Decommission on the ops-eqiad board.Tue, Feb 18, 6:58 AM
Marostegui added a subscriber: Papaul.
RobH removed a subscriber: RobH.Wed, Feb 19, 3:58 PM