Page MenuHomePhabricator

Some Analytics clusters apparently do not support IPv6
Closed, ResolvedPublic

Description

Greetings!

During importation of DNS into Netbox as part of the transition to automation, we discovered some clusters do not have IPv6 DNS entries, which we interpreted as intentional (given that this was the mechanism used to prevent potential clients from accessing the IPv6 interfaces on the machine, if a given service did not support IPv6), and prevented from being imported into automation.

We are now triaging these clusters for their potential at supporting IPv6 in the future, so below are hosts which were left out of IPv6 DNS which we think that your team is responsible for. If you could take some time to put any information you have about supporting IPv6 on these clusters, specific plans for doing so, or if it will not in the forseeable future be possible to do so, it would be greatly appreciated!

If any of these machines don't belong to you let us know on this ticket or the parent task (T253173), thanks!

cc: Foundations

  • kafka-main[2001-2005].codfw.wmnet

Event Timeline

crusnov triaged this task as Medium priority.Jan 4 2021, 6:35 PM
crusnov updated the task description. (Show Details)

The Druid nodes are part of different clusters already using ipv6, so we can add the records anytime (we'll also need to update some rules in puppet but it will be very quick). The notebook hosts are not in production anymore, we renamed them to different hostname (that should have ipv6).
The kafka-main node are all handled by infra foundations, but I think that they can work without any issue with ipv6.

What is the correct procedure to fix the records? Add them in netbox and then run the cookbook?

What is the correct procedure to fix the records? Add them in netbox and then run the cookbook?

Yes, I've added this to the docs few days ago:
DNS/Netbox#How_can_I_add_the_IPv6_AAAA/PTR_records_to_a_host_that_doesn't_have_it?

@crusnov I checked all the druid nodes and they have the AAAA records, and the notebook nodes have been repurposed, so I think that we are good from the analytics point of view. The kafka-main nodes are handled by SRE, I think that we can safely add the records incrementally as Volans pointed out.

Removed the Analytics tag since the work is done, ping me in case something is not right :)

crusnov claimed this task.

Thanks! I'm closing this ticket and updating the parent to reflect these changes.