Page MenuHomePhabricator

decommission cloudcontrol100[34]
Closed, ResolvedPublicRequest

Description

This task will track the decommission-hardware of server <enter FQDN of server here>.

With the launch of updates to the decom cookbook, the majority of these steps can be handled by the service owners directly. The DC Ops team only gets involved once the system has been fully removed from service and powered down by the decommission cookbook.

cloudcontrol1003.wikimedia.org

Steps for service owner:

  • - all system services confirmed offline from production use
  • - set all icinga checks to maint mode/disabled while reclaim/decommmission takes place. (likely done by script)
  • - remove system from all lvs/pybal active configuration
  • - any service group puppet/hiera/dsh config removed
  • - remove site.pp, replace with role(spare::system) recommended to ensure services offline but not 100% required as long as the decom script is IMMEDIATELY run below.
  • - login to cumin host and run the decom cookbook: cookbook sre.hosts.decommission <host fqdn> -t <phab task>. This does: bootloader wipe, host power down, netbox update to decommissioning status, puppet node clean, puppet node deactivate, debmonitor removal, and run homer.
  • - remove all remaining puppet references and all host entries in the puppet repo
  • - reassign task from service owner to DC ops team member and site project (ops-sitename) depending on site of server

End service owner steps / Begin DC-Ops team steps:

  • - system disks removed (by onsite)
  • - determine system age, under 5 years are reclaimed to spare, over 5 years are decommissioned.
  • - IF DECOM: system unracked and decommissioned (by onsite), update netbox with result and set state to offline
  • - IF DECOM: mgmt dns entries removed.
  • - IF RECLAIM: set netbox state to 'inventory' and hostname to asset tag

cloudcontrol1004.wikimedia.org

Steps for service owner:

  • - all system services confirmed offline from production use
  • - set all icinga checks to maint mode/disabled while reclaim/decommmission takes place. (likely done by script)
  • - remove system from all lvs/pybal active configuration
  • - any service group puppet/hiera/dsh config removed
  • - remove site.pp, replace with role(spare::system) recommended to ensure services offline but not 100% required as long as the decom script is IMMEDIATELY run below.
  • - login to cumin host and run the decom cookbook: cookbook sre.hosts.decommission <host fqdn> -t <phab task>. This does: bootloader wipe, host power down, netbox update to decommissioning status, puppet node clean, puppet node deactivate, debmonitor removal, and run homer.
  • - remove all remaining puppet references and all host entries in the puppet repo
  • - reassign task from service owner to DC ops team member and site project (ops-sitename) depending on site of server

End service owner steps / Begin DC-Ops team steps:

  • - system disks removed (by onsite)
  • - determine system age, under 5 years are reclaimed to spare, over 5 years are decommissioned.
  • - IF DECOM: system unracked and decommissioned (by onsite), update netbox with result and set state to offline

[]x - IF DECOM: mgmt dns entries removed.

  • - IF RECLAIM: set netbox state to 'inventory' and hostname to asset tag

Related Objects

Event Timeline

Change 817878 had a related patch set uploaded (by Andrew Bogott; author: Andrew Bogott):

[operations/dns@master] wikimediacloud.org: use cloudcontrol1006 as the primary openstack endpoint

https://gerrit.wikimedia.org/r/817878

Change 817878 merged by Andrew Bogott:

[operations/dns@master] wikimediacloud.org: use cloudcontrol1006 as the primary openstack endpoint

https://gerrit.wikimedia.org/r/817878

Change 818210 had a related patch set uploaded (by Andrew Bogott; author: Andrew Bogott):

[operations/puppet@production] Reorder the list of of profile::openstack::eqiad1::openstack_controllers

https://gerrit.wikimedia.org/r/818210

Change 818210 merged by Andrew Bogott:

[operations/puppet@production] Reorder the list of of profile::openstack::eqiad1::openstack_controllers

https://gerrit.wikimedia.org/r/818210

Change 822134 had a related patch set uploaded (by Andrew Bogott; author: Andrew Bogott):

[operations/puppet@production] Make cloudcontrol1007 the primary glance server

https://gerrit.wikimedia.org/r/822134

Change 822141 had a related patch set uploaded (by Andrew Bogott; author: Andrew Bogott):

[operations/puppet@production] cloudcontrol100[34]: move to spare role

https://gerrit.wikimedia.org/r/822141

Change 822142 had a related patch set uploaded (by Andrew Bogott; author: Andrew Bogott):

[operations/puppet@production] Remove hiera refs to cloudcontrol1003 and cloudcontrol1004

https://gerrit.wikimedia.org/r/822142

Change 822134 abandoned by Andrew Bogott:

[operations/puppet@production] Make cloudcontrol1007 the primary glance server

Reason:

This is active/active and this var has been removed

https://gerrit.wikimedia.org/r/822134

Change 822141 merged by Andrew Bogott:

[operations/puppet@production] cloudcontrol100[34]: move to spare role

https://gerrit.wikimedia.org/r/822141

Change 822167 had a related patch set uploaded (by Andrew Bogott; author: Andrew Bogott):

[operations/puppet@production] Remove cloudcontrol1003/1004 as openstack nodes

https://gerrit.wikimedia.org/r/822167

Change 822167 merged by Andrew Bogott:

[operations/puppet@production] Remove cloudcontrol1003/1004 as openstack nodes

https://gerrit.wikimedia.org/r/822167

Change 822170 had a related patch set uploaded (by Andrew Bogott; author: Andrew Bogott):

[operations/puppet@production] Galera monitoring: set expected node count to 3

https://gerrit.wikimedia.org/r/822170

Change 822170 merged by Andrew Bogott:

[operations/puppet@production] Galera monitoring: set expected node count to 3

https://gerrit.wikimedia.org/r/822170

Andrew renamed this task from decommission cloudcontrol[10034] to decommission cloudcontrol100[34].Aug 11 2022, 1:54 PM

Change 822142 merged by Andrew Bogott:

[operations/puppet@production] Remove puppet refs to cloudcontrol1003 and cloudcontrol1004

https://gerrit.wikimedia.org/r/822142

cookbooks.sre.hosts.decommission executed by andrew@cumin1001 for hosts: cloudcontrol1004.wikimedia.org

  • cloudcontrol1004.wikimedia.org (PASS)
    • Downtimed host on Icinga/Alertmanager
    • Found physical host
    • Downtimed management interface on Icinga/Alertmanager
    • Wiped all swraid, partition-table and filesystem signatures
    • Powered off
    • [Netbox] Set status to Decommissioning, deleted all non-mgmt IPs, updated switch interfaces (disabled, removed vlans, etc
    • Configured the linked switch interface(s)
    • Removed from DebMonitor
    • Removed from Puppet master and PuppetDB

cookbooks.sre.hosts.decommission executed by andrew@cumin1001 for hosts: cloudcontrol1003.wikimedia.org

  • cloudcontrol1003.wikimedia.org (PASS)
    • Downtimed host on Icinga/Alertmanager
    • Found physical host
    • Downtimed management interface on Icinga/Alertmanager
    • Wiped all swraid, partition-table and filesystem signatures
    • Powered off
    • [Netbox] Set status to Decommissioning, deleted all non-mgmt IPs, updated switch interfaces (disabled, removed vlans, etc
    • Configured the linked switch interface(s)
    • Removed from DebMonitor
    • Removed from Puppet master and PuppetDB
Andrew updated the task description. (Show Details)
Andrew added a project: ops-eqiad.
Cmjohnson updated the task description. (Show Details)