Page MenuHomePhabricator

decommission es2017.codfw.wmnet
Closed, ResolvedPublicRequest

Description

This task will track the decommission-hardware of server es2017.codfw.wmnet

With the launch of updates to the decom cookbook, the majority of these steps can be handled by the service owners directly. The DC Ops team only gets involved once the system has been fully removed from service and powered down by the decommission cookbook.

es2017

Steps for service owner:

  • - all system services confirmed offline from production use
  • - set all icinga checks to maint mode/disabled while reclaim/decommmission takes place.
  • - remove system from all lvs/pybal active configuration
  • - any service group puppet/hiera/dsh config removed
  • - remove site.pp, replace with role(spare::system) recommended to ensure services offline but not 100% required as long as the decom script is IMMEDIATELY run below.
  • - login to cumin host and run the decom cookbook: cookbook sre.hosts.decommission <host fqdn> -t <phab task>. This does: bootloader wipe, host power down, netbox update to decommissioning status, puppet node clean, puppet node deactivate, debmonitor removal.
  • - remove all remaining puppet references (include role::spare) and all host entries in the puppet repo
  • - remove ALL dns entries except the asset tag mgmt entries.
  • - reassign task from service owner to DC ops team member depending on site of servee.

End service owner steps / Begin DC-Ops team steps:

  • - disable switch port / set to asset tag if host isn't being unracked / remove from switch if being unracked.
  • - system disks removed (by onsite)
  • - determine system age, under 5 years are reclaimed to spare, over 5 years are decommissioned.
  • - IF DECOM: system unracked and decommissioned (by onsite), update netbox with result and set state to offline
  • - IF DECOM: switch port configuration removed from switch once system is unracked.
  • - IF DECOM: mgmt dns entries removed.

Event Timeline

Marostegui moved this task from Triage to In progress on the DBA board.

This will be started on Monday, we don't gain anything by stopping this host for the weekend.

Change 631997 had a related patch set uploaded (by Marostegui; owner: Marostegui):
[operations/puppet@production] mariadb: es2017 disable notifications

https://gerrit.wikimedia.org/r/631997

Mentioned in SAL (#wikimedia-operations) [2020-10-05T05:06:36Z] <marostegui@cumin1001> dbctl commit (dc=all): 'Depool es2017 T264386 ', diff saved to https://phabricator.wikimedia.org/P12916 and previous config saved to /var/cache/conftool/dbconfig/20201005-050636-marostegui.json

Change 631997 merged by Marostegui:
[operations/puppet@production] mariadb: es2017 disable notifications

https://gerrit.wikimedia.org/r/631997

Change 632366 had a related patch set uploaded (by Marostegui; owner: Marostegui):
[operations/puppet@production] instances.yaml: Remove es2017 from dbctl

https://gerrit.wikimedia.org/r/632366

Change 632366 merged by Marostegui:
[operations/puppet@production] instances.yaml: Remove es2017 from dbctl

https://gerrit.wikimedia.org/r/632366

Mentioned in SAL (#wikimedia-operations) [2020-10-06T05:28:50Z] <marostegui@cumin1001> dbctl commit (dc=all): 'Remove es2017 from dbctl T264386', diff saved to https://phabricator.wikimedia.org/P12925 and previous config saved to /var/cache/conftool/dbconfig/20201006-052849-marostegui.json

Change 632428 had a related patch set uploaded (by Marostegui; owner: Marostegui):
[operations/puppet@production] mariadb: Remove es2017 puppet entries

https://gerrit.wikimedia.org/r/632428

Change 632429 had a related patch set uploaded (by Marostegui; owner: Marostegui):
[operations/dns@master] dns: Remove es2017 DNS entries

https://gerrit.wikimedia.org/r/632429

cookbooks.sre.hosts.decommission executed by marostegui@cumin1001 for hosts: es2017.codfw.wmnet

  • es2017.codfw.wmnet (PASS)
    • Downtimed host on Icinga
    • Found physical host
    • Downtimed management interface on Icinga
    • Wiped bootloaders
    • Powered off
    • Set Netbox status to Decommissioning and deleted all non-mgmt interfaces and related IPs
    • Removed from DebMonitor
    • Removed from Puppet master and PuppetDB
  • COMMON_STEPS (WARN)
    • Not all affected DC(s) have been migrated to automatic DNS, a manual patch to the operations/dns repository is required

Change 632428 merged by Marostegui:
[operations/puppet@production] mariadb: Remove es2017 puppet entries

https://gerrit.wikimedia.org/r/632428

Change 632429 merged by Marostegui:
[operations/dns@master] dns: Remove es2017 DNS entries

https://gerrit.wikimedia.org/r/632429

Marostegui removed a project: Patch-For-Review.
Marostegui edited subscribers, added: Papaul; removed: Marostegui.

@Papaul this is ready for you!

Mentioned in SAL (#wikimedia-operations) [2020-10-06T07:17:42Z] <marostegui> Remove es2015 and es2017 from tendril and zarcillo T264700 T264386

papaul@asw-a-codfw# show | compare
[edit interfaces interface-range vlan-private1-a-codfw]
-    member ge-6/0/19;
[edit interfaces interface-range disabled]
     member xe-2/0/6 { ... }
+    member ge-6/0/19;
[edit interfaces]
-   ge-6/0/19 {
-       description es2017;
-       enable;
-   }
Papaul updated the task description. (Show Details)
Papaul added a subscriber: Marostegui.
Papaul updated the task description. (Show Details)

complete