The analytics10[28-41]28.eqiad.wmnet hosts are old hadoop nodes that are currently used as Hadoop testing cluster. This was allowed by the SRE team as a special case since testing the Kerberos authentication scheme in cloud/labs was not enough. I hope to start the decommissioning of these nodes maximum by the end of Q2.
[] - all system services confirmed offline from production use
[] - set all icinga checks to maint mode/disabled while reclaim/decommmission takes place.
[] - remove system from all lvs/pybal active configuration
[] - any service group puppet/hiera/dsh config removed
[] - remove site.pp, replace with role(spare::system)
[] - unassign service owner from this task, check off completed steps
Steps for DC-Ops:
The following steps cannot be interrupted, as it will leave the system in an unfinished state.
**Start non-interrupt steps:**
[] - disable puppet on host
[] - power down host
[] - update netbox status to Inventory (if decom) or Planned (if spare)
[] - disable switch port
[] - switch port assignment noted on this task (for later removal)
[] - remove all remaining puppet references (include role::spare)
[] - remove production dns entries
[] - puppet node clean, puppet node deactivate (handled by wmf-decommission-host)
[] - remove dbmonitor entries on neodymium/sarin: sudo curl -X DELETE https://debmonitor.discovery.wmnet/hosts/${HOST_FQDN} --cert /etc/debmonitor/ssl/cert.pem --key /etc/debmonitor/ssl/server.key (handled by wmf-decommission-host)
**End non-interrupt steps.**
[] - system disks wiped (by onsite)
[] - IF DECOM: system unracked and decommissioned (by onsite), update racktables with result
[] - IF DECOM: switch port configration removed from switch once system is unracked.
[] - IF DECOM: add system to decommission tracking google sheet
[] - IF DECOM: mgmt dns entries removed.
[] - IF RECLAIM: system added back to spares tracking (by onsite) **Steps for service owner:**
[x] - all system services confirmed offline from production use
[x] - set all icinga checks to maint mode/disabled while reclaim/decommmission takes place.
[x] - remove system from all lvs/pybal active configuration
[x] - any service group puppet/hiera/dsh config removed
[x] - remove site.pp, replace with role(spare::system) recommended to ensure services offline but not 100% required as long as the decom script is IMMEDIATELY run below.
[x] - login to cumin host and run the decom cookbook: cookbook sre.hosts.decommission <host fqdn> -t <phab task>. This does: bootloader wipe, host power down, netbox update to decommissioning status, puppet node clean, puppet node deactivate, debmonitor removal.
[x] - remove all remaining puppet references (include role::spare) and all host entries in the puppet repo
[x] - remove ALL dns entries except the asset tag mgmt entries.
[x] - reassign task from service owner to DC ops team member depending on site of server.
**End service owner steps / Begin DC-Ops team steps:**
[] - disable switch port / set to asset tag if host isn't being unracked / remove from switch if being unracked.
[] - system disks removed (by onsite)
[] - determine system age, under 5 years are reclaimed to spare, over 5 years are decommissioned.
[] - IF DECOM: system unracked and decommissioned (by onsite), update netbox with result and set state to offline
[] - IF DECOM: switch port configuration removed from switch once system is unracked.
[] - IF DECOM: mgmt dns entries removed.
[] - IF RECLAIM: set netbox state to 'inventory' and hostname to asset tag
analytics1029.eqiad.wmnet
**Steps for service owner:**
[x] - all system services confirmed offline from production use
[x] - set all icinga checks to maint mode/disabled while reclaim/decommmission takes place.
[x] - remove system from all lvs/pybal active configuration
[x] - any service group puppet/hiera/dsh config removed
[x] - remove site.pp, replace with role(spare::system) recommended to ensure services offline but not 100% required as long as the decom script is IMMEDIATELY run below.
[x] - login to cumin host and run the decom cookbook: cookbook sre.hosts.decommission <host fqdn> -t <phab task>. This does: bootloader wipe, host power down, netbox update to decommissioning status, puppet node clean, puppet node deactivate, debmonitor removal.
[x] - remove all remaining puppet references (include role::spare) and all host entries in the puppet repo
[x] - remove ALL dns entries except the asset tag mgmt entries.
[x] - reassign task from service owner to DC ops team member depending on site of server.
**End service owner steps / Begin DC-Ops team steps:**
[] - disable switch port / set to asset tag if host isn't being unracked / remove from switch if being unracked.
[] - system disks removed (by onsite)
[] - determine system age, under 5 years are reclaimed to spare, over 5 years are decommissioned.
[] - IF DECOM: system unracked and decommissioned (by onsite), update netbox with result and set state to offline
[] - IF DECOM: switch port configuration removed from switch once system is unracked.
[] - IF DECOM: mgmt dns entries removed.
[] - IF RECLAIM: set netbox state to 'inventory' and hostname to asset tag
analytics1030.eqiad.wmnet
**Steps for service owner:**
[x] - all system services confirmed offline from production use
[x] - set all icinga checks to maint mode/disabled while reclaim/decommmission takes place.
[x] - remove system from all lvs/pybal active configuration
[x] - any service group puppet/hiera/dsh config removed
[x] - remove site.pp, replace with role(spare::system) recommended to ensure services offline but not 100% required as long as the decom script is IMMEDIATELY run below.
[x] - login to cumin host and run the decom cookbook: cookbook sre.hosts.decommission <host fqdn> -t <phab task>. This does: bootloader wipe, host power down, netbox update to decommissioning status, puppet node clean, puppet node deactivate, debmonitor removal.
[x] - remove all remaining puppet references (include role::spare) and all host entries in the puppet repo
[x] - remove ALL dns entries except the asset tag mgmt entries.
[x] - reassign task from service owner to DC ops team member depending on site of server.
**End service owner steps / Begin DC-Ops team steps:**
[] - disable switch port / set to asset tag if host isn't being unracked / remove from switch if being unracked.
[] - system disks removed (by onsite)
[] - determine system age, under 5 years are reclaimed to spare, over 5 years are decommissioned.
[] - IF DECOM: system unracked and decommissioned (by onsite), update netbox with result and set state to offline
[] - IF DECOM: switch port configuration removed from switch once system is unracked.
[] - IF DECOM: mgmt dns entries removed.
[] - IF RECLAIM: set netbox state to 'inventory' and hostname to asset tag
analytics1031.eqiad.wmnet
**Steps for service owner:**
[x] - all system services confirmed offline from production use
[x] - set all icinga checks to maint mode/disabled while reclaim/decommmission takes place.
[x] - remove system from all lvs/pybal active configuration
[x] - any service group puppet/hiera/dsh config removed
[x] - remove site.pp, replace with role(spare::system) recommended to ensure services offline but not 100% required as long as the decom script is IMMEDIATELY run below.
[x] - login to cumin host and run the decom cookbook: cookbook sre.hosts.decommission <host fqdn> -t <phab task>. This does: bootloader wipe, host power down, netbox update to decommissioning status, puppet node clean, puppet node deactivate, debmonitor removal.
[x] - remove all remaining puppet references (include role::spare) and all host entries in the puppet repo
[x] - remove ALL dns entries except the asset tag mgmt entries.
[x] - reassign task from service owner to DC ops team member depending on site of server.
**End service owner steps / Begin DC-Ops team steps:**
[] - disable switch port / set to asset tag if host isn't being unracked / remove from switch if being unracked.
[] - system disks removed (by onsite)
[] - determine system age, under 5 years are reclaimed to spare, over 5 years are decommissioned.
[] - IF DECOM: system unracked and decommissioned (by onsite), update netbox with result and set state to offline
[] - IF DECOM: switch port configuration removed from switch once system is unracked.
[] - IF DECOM: mgmt dns entries removed.
[] - IF RECLAIM: set netbox state to 'inventory' and hostname to asset tag
analytics1033.eqiad.wmnet
**Steps for service owner:**
[x] - all system services confirmed offline from production use
[x] - set all icinga checks to maint mode/disabled while reclaim/decommmission takes place.
[x] - remove system from all lvs/pybal active configuration
[x] - any service group puppet/hiera/dsh config removed
[x] - remove site.pp, replace with role(spare::system) recommended to ensure services offline but not 100% required as long as the decom script is IMMEDIATELY run below.
[x] - login to cumin host and run the decom cookbook: cookbook sre.hosts.decommission <host fqdn> -t <phab task>. This does: bootloader wipe, host power down, netbox update to decommissioning status, puppet node clean, puppet node deactivate, debmonitor removal.
[x] - remove all remaining puppet references (include role::spare) and all host entries in the puppet repo
[x] - remove ALL dns entries except the asset tag mgmt entries.
[x] - reassign task from service owner to DC ops team member depending on site of server.
**End service owner steps / Begin DC-Ops team steps:**
[] - disable switch port / set to asset tag if host isn't being unracked / remove from switch if being unracked.
[] - system disks removed (by onsite)
[] - determine system age, under 5 years are reclaimed to spare, over 5 years are decommissioned.
[] - IF DECOM: system unracked and decommissioned (by onsite), update netbox with result and set state to offline
[] - IF DECOM: switch port configuration removed from switch once system is unracked.
[] - IF DECOM: mgmt dns entries removed.
[] - IF RECLAIM: set netbox state to 'inventory' and hostname to asset tag
analytics1034.eqiad.wmnet
**Steps for service owner:**
[x] - all system services confirmed offline from production use
[x] - set all icinga checks to maint mode/disabled while reclaim/decommmission takes place.
[x] - remove system from all lvs/pybal active configuration
[x] - any service group puppet/hiera/dsh config removed
[x] - remove site.pp, replace with role(spare::system) recommended to ensure services offline but not 100% required as long as the decom script is IMMEDIATELY run below.
[x] - login to cumin host and run the decom cookbook: cookbook sre.hosts.decommission <host fqdn> -t <phab task>. This does: bootloader wipe, host power down, netbox update to decommissioning status, puppet node clean, puppet node deactivate, debmonitor removal.
[x] - remove all remaining puppet references (include role::spare) and all host entries in the puppet repo
[x] - remove ALL dns entries except the asset tag mgmt entries.
[x] - reassign task from service owner to DC ops team member depending on site of server.
**End service owner steps / Begin DC-Ops team steps:**
[] - disable switch port / set to asset tag if host isn't being unracked / remove from switch if being unracked.
[] - system disks removed (by onsite)
[] - determine system age, under 5 years are reclaimed to spare, over 5 years are decommissioned.
[] - IF DECOM: system unracked and decommissioned (by onsite), update netbox with result and set state to offline
[] - IF DECOM: switch port configuration removed from switch once system is unracked.
[] - IF DECOM: mgmt dns entries removed.
[] - IF RECLAIM: set netbox state to 'inventory' and hostname to asset tag
analytics1035.eqiad.wmnet
**Steps for service owner:**
[x] - all system services confirmed offline from production use
[x] - set all icinga checks to maint mode/disabled while reclaim/decommmission takes place.
[x] - remove system from all lvs/pybal active configuration
[x] - any service group puppet/hiera/dsh config removed
[x] - remove site.pp, replace with role(spare::system) recommended to ensure services offline but not 100% required as long as the decom script is IMMEDIATELY run below.
[x] - login to cumin host and run the decom cookbook: cookbook sre.hosts.decommission <host fqdn> -t <phab task>. This does: bootloader wipe, host power down, netbox update to decommissioning status, puppet node clean, puppet node deactivate, debmonitor removal.
[x] - remove all remaining puppet references (include role::spare) and all host entries in the puppet repo
[x] - remove ALL dns entries except the asset tag mgmt entries.
[x] - reassign task from service owner to DC ops team member depending on site of server.
**End service owner steps / Begin DC-Ops team steps:**
[] - disable switch port / set to asset tag if host isn't being unracked / remove from switch if being unracked.
[] - system disks removed (by onsite)
[] - determine system age, under 5 years are reclaimed to spare, over 5 years are decommissioned.
[] - IF DECOM: system unracked and decommissioned (by onsite), update netbox with result and set state to offline
[] - IF DECOM: switch port configuration removed from switch once system is unracked.
[] - IF DECOM: mgmt dns entries removed.
[] - IF RECLAIM: set netbox state to 'inventory' and hostname to asset tag
analytics1036.eqiad.wmnet
**Steps for service owner:**
[x] - all system services confirmed offline from production use
[x] - set all icinga checks to maint mode/disabled while reclaim/decommmission takes place.
[x] - remove system from all lvs/pybal active configuration
[x] - any service group puppet/hiera/dsh config removed
[x] - remove site.pp, replace with role(spare::system) recommended to ensure services offline but not 100% required as long as the decom script is IMMEDIATELY run below.
[x] - login to cumin host and run the decom cookbook: cookbook sre.hosts.decommission <host fqdn> -t <phab task>. This does: bootloader wipe, host power down, netbox update to decommissioning status, puppet node clean, puppet node deactivate, debmonitor removal.
[x] - remove all remaining puppet references (include role::spare) and all host entries in the puppet repo
[x] - remove ALL dns entries except the asset tag mgmt entries.
[x] - reassign task from service owner to DC ops team member depending on site of server.
**End service owner steps / Begin DC-Ops team steps:**
[] - disable switch port / set to asset tag if host isn't being unracked / remove from switch if being unracked.
[] - system disks removed (by onsite)
[] - determine system age, under 5 years are reclaimed to spare, over 5 years are decommissioned.
[] - IF DECOM: system unracked and decommissioned (by onsite), update netbox with result and set state to offline
[] - IF DECOM: switch port configuration removed from switch once system is unracked.
[] - IF DECOM: mgmt dns entries removed.
[] - IF RECLAIM: set netbox state to 'inventory' and hostname to asset tag
analytics1037.eqiad.wmnet
**Steps for service owner:**
[x] - all system services confirmed offline from production use
[x] - set all icinga checks to maint mode/disabled while reclaim/decommmission takes place.
[x] - remove system from all lvs/pybal active configuration
[x] - any service group puppet/hiera/dsh config removed
[x] - remove site.pp, replace with role(spare::system) recommended to ensure services offline but not 100% required as long as the decom script is IMMEDIATELY run below.
[x] - login to cumin host and run the decom cookbook: cookbook sre.hosts.decommission <host fqdn> -t <phab task>. This does: bootloader wipe, host power down, netbox update to decommissioning status, puppet node clean, puppet node deactivate, debmonitor removal.
[x] - remove all remaining puppet references (include role::spare) and all host entries in the puppet repo
[x] - remove ALL dns entries except the asset tag mgmt entries.
[x] - reassign task from service owner to DC ops team member depending on site of server.
**End service owner steps / Begin DC-Ops team steps:**
[] - disable switch port / set to asset tag if host isn't being unracked / remove from switch if being unracked.
[] - system disks removed (by onsite)
[] - determine system age, under 5 years are reclaimed to spare, over 5 years are decommissioned.
[] - IF DECOM: system unracked and decommissioned (by onsite), update netbox with result and set state to offline
[] - IF DECOM: switch port configuration removed from switch once system is unracked.
[] - IF DECOM: mgmt dns entries removed.
[] - IF RECLAIM: set netbox state to 'inventory' and hostname to asset tag
analytics1038.eqiad.wmnet
**Steps for service owner:**
[x] - all system services confirmed offline from production use
[x] - set all icinga checks to maint mode/disabled while reclaim/decommmission takes place.
[x] - remove system from all lvs/pybal active configuration
[x] - any service group puppet/hiera/dsh config removed
[x] - remove site.pp, replace with role(spare::system) recommended to ensure services offline but not 100% required as long as the decom script is IMMEDIATELY run below.
[x] - login to cumin host and run the decom cookbook: cookbook sre.hosts.decommission <host fqdn> -t <phab task>. This does: bootloader wipe, host power down, netbox update to decommissioning status, puppet node clean, puppet node deactivate, debmonitor removal.
[x] - remove all remaining puppet references (include role::spare) and all host entries in the puppet repo
[x] - remove ALL dns entries except the asset tag mgmt entries.
[x] - reassign task from service owner to DC ops team member depending on site of server.
**End service owner steps / Begin DC-Ops team steps:**
[] - disable switch port / set to asset tag if host isn't being unracked / remove from switch if being unracked.
[] - system disks removed (by onsite)
[] - determine system age, under 5 years are reclaimed to spare, over 5 years are decommissioned.
[] - IF DECOM: system unracked and decommissioned (by onsite), update netbox with result and set state to offline
[] - IF DECOM: switch port configuration removed from switch once system is unracked.
[] - IF DECOM: mgmt dns entries removed.
[] - IF RECLAIM: set netbox state to 'inventory' and hostname to asset tag
analytics1039.eqiad.wmnet
**Steps for service owner:**
[x] - all system services confirmed offline from production use
[x] - set all icinga checks to maint mode/disabled while reclaim/decommmission takes place.
[x] - remove system from all lvs/pybal active configuration
[x] - any service group puppet/hiera/dsh config removed
[x] - remove site.pp, replace with role(spare::system) recommended to ensure services offline but not 100% required as long as the decom script is IMMEDIATELY run below.
[x] - login to cumin host and run the decom cookbook: cookbook sre.hosts.decommission <host fqdn> -t <phab task>. This does: bootloader wipe, host power down, netbox update to decommissioning status, puppet node clean, puppet node deactivate, debmonitor removal.
[x] - remove all remaining puppet references (include role::spare) and all host entries in the puppet repo
[x] - remove ALL dns entries except the asset tag mgmt entries.
[x] - reassign task from service owner to DC ops team member depending on site of server.
**End service owner steps / Begin DC-Ops team steps:**
[] - disable switch port / set to asset tag if host isn't being unracked / remove from switch if being unracked.
[] - system disks removed (by onsite)
[] - determine system age, under 5 years are reclaimed to spare, over 5 years are decommissioned.
[] - IF DECOM: system unracked and decommissioned (by onsite), update netbox with result and set state to offline
[] - IF DECOM: switch port configuration removed from switch once system is unracked.
[] - IF DECOM: mgmt dns entries removed.
[] - IF RECLAIM: set netbox state to 'inventory' and hostname to asset tag
analytics1040.eqiad.wmnet
**Steps for service owner:**
[x] - all system services confirmed offline from production use
[x] - set all icinga checks to maint mode/disabled while reclaim/decommmission takes place.
[x] - remove system from all lvs/pybal active configuration
[x] - any service group puppet/hiera/dsh config removed
[x] - remove site.pp, replace with role(spare::system) recommended to ensure services offline but not 100% required as long as the decom script is IMMEDIATELY run below.
[x] - login to cumin host and run the decom cookbook: cookbook sre.hosts.decommission <host fqdn> -t <phab task>. This does: bootloader wipe, host power down, netbox update to decommissioning status, puppet node clean, puppet node deactivate, debmonitor removal.
[x] - remove all remaining puppet references (include role::spare) and all host entries in the puppet repo
[x] - remove ALL dns entries except the asset tag mgmt entries.
[x] - reassign task from service owner to DC ops team member depending on site of server.
**End service owner steps / Begin DC-Ops team steps:**
[] - disable switch port / set to asset tag if host isn't being unracked / remove from switch if being unracked.
[] - system disks removed (by onsite)
[] - determine system age, under 5 years are reclaimed to spare, over 5 years are decommissioned.
[] - IF DECOM: system unracked and decommissioned (by onsite), update netbox with result and set state to offline
[] - IF DECOM: switch port configuration removed from switch once system is unracked.
[] - IF DECOM: mgmt dns entries removed.
[] - IF RECLAIM: set netbox state to 'inventory' and hostname to asset tag
analytics1041.eqiad.wmnet
**Steps for service owner:**
[x] - all system services confirmed offline from production use
[x] - set all icinga checks to maint mode/disabled while reclaim/decommmission takes place.
[x] - remove system from all lvs/pybal active configuration
[x] - any service group puppet/hiera/dsh config removed
[x] - remove site.pp, replace with role(spare::system) recommended to ensure services offline but not 100% required as long as the decom script is IMMEDIATELY run below.
[x] - login to cumin host and run the decom cookbook: cookbook sre.hosts.decommission <host fqdn> -t <phab task>. This does: bootloader wipe, host power down, netbox update to decommissioning status, puppet node clean, puppet node deactivate, debmonitor removal.
[x] - remove all remaining puppet references (include role::spare) and all host entries in the puppet repo
[x] - remove ALL dns entries except the asset tag mgmt entries.
[x] - reassign task from service owner to DC ops team member depending on site of server.
**End service owner steps / Begin DC-Ops team steps:**
[] - disable switch port / set to asset tag if host isn't being unracked / remove from switch if being unracked.
[] - system disks removed (by onsite)
[] - determine system age, under 5 years are reclaimed to spare, over 5 years are decommissioned.
[] - IF DECOM: system unracked and decommissioned (by onsite), update netbox with result and set state to offline
[] - IF DECOM: switch port configuration removed from switch once system is unracked.
[] - IF DECOM: mgmt dns entries removed.
[] - IF RECLAIM: set netbox state to 'inventory' and hostname to asset tag