Page MenuHomePhabricator

decommission dbproxy1021.eqiad.wmnet
Closed, ResolvedPublicRequest

Description

This task will track the decommission-hardware of server dbproxy1021.eqiad.wmnet

With the launch of updates to the decom cookbook, the majority of these steps can be handled by the service owners directly. The DC Ops team only gets involved once the system has been fully removed from service and powered down by the decommission cookbook.

dbproxy1021

Steps for service owner:

  • - all system services confirmed offline from production use
  • - Remove it from the report_users whitelist.
  • - set all icinga checks to maint mode/disabled while reclaim/decommmission takes place. (likely done by script)
  • - remove system from all lvs/pybal active configuration
  • - any service group puppet/hiera/dsh config removed
  • - remove site.pp, replace with role(spare::system) recommended to ensure services offline but not 100% required as long as the decom script is IMMEDIATELY run below.
  • - login to cumin host and run the decom cookbook: cookbook sre.hosts.decommission <host fqdn> -t <phab task>. This does: bootloader wipe, host power down, netbox update to decommissioning status, puppet node clean, puppet node deactivate, debmonitor removal, and run homer.
  • - remove all remaining puppet references and all host entries in the puppet repo
  • - Remove grants from m5
  • - reassign task from service owner to no owner and ensure the site project (ops-sitename depending on site of server) is assigned.

End service owner steps / Begin DC-Ops team steps:

  • - system disks removed (by onsite)
  • - determine system age, under 5 years are reclaimed to spare, over 5 years are decommissioned.
  • - IF DECOM: system unracked and decommissioned (by onsite), update netbox with result and set state to offline
  • - IF DECOM: mgmt dns entries removed.

Related Objects

StatusSubtypeAssignedTask
Resolvedjcrespo
Resolvedjcrespo
ResolvedJclark-ctr
ResolvedMarostegui
ResolvedMarostegui
ResolvedMarostegui
ResolvedMarostegui
ResolvedMarostegui
ResolvedRequestJhancock.wm
ResolvedRequestJhancock.wm
ResolvedRequestJhancock.wm
ResolvedRequestJhancock.wm
ResolvedRequestJhancock.wm
ResolvedRequestJhancock.wm
ResolvedRequestJhancock.wm
ResolvedRequestJhancock.wm
ResolvedRequestJhancock.wm
ResolvedRequestJhancock.wm
ResolvedJhancock.wm
ResolvedRequestJhancock.wm
ResolvedRequestJhancock.wm
ResolvedRequestJhancock.wm
ResolvedRequestJhancock.wm
ResolvedRequestJhancock.wm
ResolvedRequestJclark-ctr

Event Timeline

Marostegui moved this task from Triage to Blocked on the DBA board.

This is not ready yet

Marostegui added a parent task: Restricted Task.Jan 6 2025, 9:28 AM

This host is no longer a master. There are still some connections pending though

122487171	mailman3	10.64.32.180:40830	mailman3	Sleep	34		NULL	0.000
122487182	mailman3	10.64.32.180:40954	mailman3	Sleep	81		NULL	0.000
131188516	mailman3	10.64.32.180:37216	mailman3	Sleep	46		NULL	0.000
132040384	mailman3	10.64.32.180:55434	mailman3	Sleep	47		NULL	0.000
132040389	mailman3	10.64.32.180:55464	mailman3	Sleep	46		NULL	0.000
132194063	mailman3	10.64.32.180:49594	mailman3	Sleep	343		NULL	0.000
132722820	mailman3	10.64.32.180:44868	mailman3	Sleep	3		NULL	0.000
132722832	mailman3	10.64.32.180:57340	mailman3	Sleep	30		NULL	0.000
132766568	mailman3	10.64.32.180:51474	mailman3	Sleep	3476		NULL	0.000
132770773	mailman3	10.64.32.180:41502	mailman3	Sleep	1504		NULL	0.000

I will let them move smoothly

Change #1108881 had a related patch set uploaded (by Marostegui; author: Marostegui):

[operations/puppet@production] dbproxy1021: Disable notifications

https://gerrit.wikimedia.org/r/1108881

Change #1108881 merged by Marostegui:

[operations/puppet@production] dbproxy1021: Disable notifications

https://gerrit.wikimedia.org/r/1108881

IP for grants 10.64.32.180

Change #1108882 had a related patch set uploaded (by Marostegui; author: Marostegui):

[operations/puppet@production] production-m5.sql.erb: Replace dbproxy1021 with dbproxy1029

https://gerrit.wikimedia.org/r/1108882

Change #1108882 merged by Marostegui:

[operations/puppet@production] production-m5.sql.erb: Replace dbproxy1021 with dbproxy1029

https://gerrit.wikimedia.org/r/1108882

Change #1108883 had a related patch set uploaded (by Marostegui; author: Marostegui):

[operations/puppet@production] mariadb: Remove dbproxy1021

https://gerrit.wikimedia.org/r/1108883

Change #1108883 merged by Marostegui:

[operations/puppet@production] mariadb: Remove dbproxy1021

https://gerrit.wikimedia.org/r/1108883

Change #1108925 had a related patch set uploaded (by Marostegui; author: Marostegui):

[operations/software@master] report_users: Remove dbproxy1021

https://gerrit.wikimedia.org/r/1108925

Change #1108925 merged by jenkins-bot:

[operations/software@master] report_users: Remove dbproxy1021

https://gerrit.wikimedia.org/r/1108925

cookbooks.sre.hosts.decommission executed by marostegui@cumin1002 for hosts: dbproxy1021.eqiad.wmnet

  • dbproxy1021.eqiad.wmnet (PASS)
    • Downtimed host on Icinga/Alertmanager
    • Found physical host
    • Downtimed management interface on Alertmanager
    • Wiped all swraid, partition-table and filesystem signatures
    • Powered off
    • [Netbox] Set status to Decommissioning, deleted all non-mgmt IPs, updated switch interfaces (disabled, removed vlans, etc)
    • Configured the linked switch interface(s)
    • Removed from DebMonitor
    • Removed from Puppet master and PuppetDB
Marostegui updated the task description. (Show Details)
Marostegui edited projects, added ops-eqiad; removed Patch-For-Review.
Jclark-ctr claimed this task.
Jclark-ctr updated the task description. (Show Details)