Archive for June, 2007

Wins Report 6/2007

Friday, June 29th, 2007

<meta content="OpenOffice.org 2.0 (Linux)" name="GENERATOR" /> <meta content="20070629;13381800" name="CREATED" /> <meta content="20070629;13563900" name="CHANGED" /><br /> <style type="text/css"> <!-- @page { size: 8.5in 11in; margin: 0.79in } P { margin-bottom: 0.08in } --> </style> <p style="margin-bottom: 0in">Virtual Hosting Services -</p> <p style="margin-bottom: 0in">In continuing our virtual machine services, we added two new departments to the infrastructure. Vanderbilt Institute Research Group is going to host a web application server that manages their database in our virtual infrastructure. In order to get this accomplished, I had to get the new co-located server subnet trunked into the virtual infrastructure. I had to also create the VM for the OS installation as well as get them access to our bastion host and virtual infrastructure client. Blair is also going to host a file and print server in the virtual infrastructure. I also identified a need for co-located bastion hosts, to ensure the security and minimize access to our bastion hosts.</p> <p style="margin-bottom: 0in"> <p style="margin-bottom: 0in">Monitoring the Virtual Environment -</p> <p style="margin-bottom: 0in">I got SNMP enabled for our entire ESX environment. Through SNMP we are able to monitor and meter the host as well as its capacity limits and how close we are to those limits. I also enabled the ESX mibs that allow the SNMP query to get information on the Virtual machines that are running on that physical host.</p> <p style="margin-bottom: 0in"> <p style="margin-bottom: 0in">CSM Load Balancer -</p> <p style="margin-bottom: 0in">In order to stabilize the SMTP environment we began researching putting the mailgate SMTP servers and the exchange front end servers behind the CSM load balancer module. The first stages of testing this is to get physical network connectivity and IP address in the CSM space. I have already allocated the IP space. I have also made the necessary firewall adjustments for the exchange front end servers, and we are currently trying to get the exchange portion tested.</p> <p style="margin-bottom: 0in"> <p style="margin-bottom: 0in">CSM Load Balancer -</p> <p style="margin-bottom: 0in">In order to load balance the webmail environment, I had to get IP address in the CSM server and client vlans. I then switched the network connection from the actual production network to the CSM production network. At this point I could assign the IP addresses on the CSM server vlan to the webmail servers. I then had to configure a serverfarm, virtual server, and two probes (HTTP, and HTTPS) to allow clients to connect to the web server running on the webmail servers. This was our first production service being load balanced by the CSM module.</p> <p style="margin-bottom: 0in"> <p style="margin-bottom: 0in">Streaming Media Services -</p> <p style="margin-bottom: 0in">The server that serves the helix streaming media service is scheduled to be replaced by new hardware. We decided to implement this service on a virtual machine rather than on physical hardware. I built the OS and installed the application. I then took a step further and secured the administration of this service. The way administration works on a fresh install is very insecure by allowing authentication over HTTP. I protected this service by wrapping it inside of apache running mod_ssl for encrypted connections from clients to the management interface.</p> <p style="margin-bottom: 0in">It has been requested to the ITS department to include flash as a form of media we are capable of streaming over the internet. We decided to put this application on a virtual machine. I have successfully installed the OS as well as the application. I also architect ed a secure management solution over an encrypted connection.</p> <p style="margin-bottom: 0in"> <p style="margin-bottom: 0in"> </div> <p class="postmetadata"> Posted in <a href="http://blogs.vanderbilt.edu/~k.ewing/?cat=2" title="View all posts in AppHosting" rel="category">AppHosting</a> | <a href="http://blogs.vanderbilt.edu/~k.ewing/?p=8#respond" title="Comment on Wins Report 6/2007">No Comments »</a></p> </div> <div class="navigation"> <div class="alignleft"></div> <div class="alignright"></div> </div> </div> <div id="sidebar" role="complementary"> <ul> <li> <form method="get" id="searchform" action="http://blogs.vanderbilt.edu/~k.ewing/"> <div><input type="text" value="" name="s" id="s" /> <input type="submit" id="searchsubmit" value="Search" /> </div> </form> </li> <!-- Author information is disabled per default. Uncomment and fill in your details if you want to use it. <li><h2>Author</h2> <p>A little something about you, the author. Nothing lengthy, just an overview.</p> </li> --> <li> <p>You are currently browsing the <a href="http://blogs.vanderbilt.edu/~k.ewing/">Kenon Ewing</a> blog archives for June, 2007.</p> </li> </ul> <ul role="navigation"> <li class="pagenav"><h2>Pages</h2><ul><li class="page_item page-item-2"><a href="http://blogs.vanderbilt.edu/~k.ewing/?page_id=2" title="About">About</a></li> </ul></li> <li><h2>Archives</h2> <ul> <li><a href='http://blogs.vanderbilt.edu/~k.ewing/?m=200906' title='June 2009'>June 2009</a></li> <li><a href='http://blogs.vanderbilt.edu/~k.ewing/?m=200904' title='April 2009'>April 2009</a></li> <li><a href='http://blogs.vanderbilt.edu/~k.ewing/?m=200903' title='March 2009'>March 2009</a></li> <li><a href='http://blogs.vanderbilt.edu/~k.ewing/?m=200902' title='February 2009'>February 2009</a></li> <li><a href='http://blogs.vanderbilt.edu/~k.ewing/?m=200901' title='January 2009'>January 2009</a></li> <li><a href='http://blogs.vanderbilt.edu/~k.ewing/?m=200810' title='October 2008'>October 2008</a></li> <li><a href='http://blogs.vanderbilt.edu/~k.ewing/?m=200808' title='August 2008'>August 2008</a></li> <li><a href='http://blogs.vanderbilt.edu/~k.ewing/?m=200805' title='May 2008'>May 2008</a></li> <li><a href='http://blogs.vanderbilt.edu/~k.ewing/?m=200804' title='April 2008'>April 2008</a></li> <li><a href='http://blogs.vanderbilt.edu/~k.ewing/?m=200803' title='March 2008'>March 2008</a></li> <li><a href='http://blogs.vanderbilt.edu/~k.ewing/?m=200802' title='February 2008'>February 2008</a></li> <li><a href='http://blogs.vanderbilt.edu/~k.ewing/?m=200801' title='January 2008'>January 2008</a></li> <li><a href='http://blogs.vanderbilt.edu/~k.ewing/?m=200711' title='November 2007'>November 2007</a></li> <li><a href='http://blogs.vanderbilt.edu/~k.ewing/?m=200710' title='October 2007'>October 2007</a></li> <li><a href='http://blogs.vanderbilt.edu/~k.ewing/?m=200709' title='September 2007'>September 2007</a></li> <li><a href='http://blogs.vanderbilt.edu/~k.ewing/?m=200708' title='August 2007'>August 2007</a></li> <li><a href='http://blogs.vanderbilt.edu/~k.ewing/?m=200707' title='July 2007'>July 2007</a></li> <li><a href='http://blogs.vanderbilt.edu/~k.ewing/?m=200706' title='June 2007'>June 2007</a></li> <li><a href='http://blogs.vanderbilt.edu/~k.ewing/?m=200705' title='May 2007'>May 2007</a></li> <li><a href='http://blogs.vanderbilt.edu/~k.ewing/?m=200702' title='February 2007'>February 2007</a></li> <li><a href='http://blogs.vanderbilt.edu/~k.ewing/?m=200701' title='January 2007'>January 2007</a></li> </ul> </li> <li class="categories"><h2>Categories</h2><ul> <li class="cat-item cat-item-2"><a href="http://blogs.vanderbilt.edu/~k.ewing/?cat=2" title="Vanderbilt University - ITS Applications Hosting">AppHosting</a> (23) </li> <li class="cat-item cat-item-1"><a href="http://blogs.vanderbilt.edu/~k.ewing/?cat=1" title="View all posts filed under Uncategorized">Uncategorized</a> (3) </li> </ul></li> </ul> <ul> </ul> </div> <hr /> <div id="footer" role="contentinfo"> <!-- If you'd like to support WordPress, having the "powered by" link somewhere on your blog is the best way; it's our only promotion or advertising. --> <p> Kenon Ewing is proudly powered by <a href="http://wordpress.org/">WordPress</a> <br /><a href="http://blogs.vanderbilt.edu/~k.ewing/?feed=rss2">Entries (RSS)</a> and <a href="http://blogs.vanderbilt.edu/~k.ewing/?feed=comments-rss2">Comments (RSS)</a>. <!-- 14 queries. 0.266 seconds. --> </p> </div> </div> <!-- Gorgeous design by Michael Heilemann - http://binarybonsai.com/kubrick/ --> </body> </html>