<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Peter Woods &#187; AppHosting</title>
	<atom:link href="http://blogs.vanderbilt.edu/~peter.woods/?feed=rss2&#038;cat=6" rel="self" type="application/rss+xml" />
	<link>http://blogs.vanderbilt.edu/~peter.woods</link>
	<description>On the web services frontier...</description>
	<lastBuildDate>Fri, 02 Oct 2009 12:59:28 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Sept MAR</title>
		<link>http://blogs.vanderbilt.edu/~peter.woods/?p=349</link>
		<comments>http://blogs.vanderbilt.edu/~peter.woods/?p=349#comments</comments>
		<pubDate>Thu, 01 Oct 2009 12:53:00 +0000</pubDate>
		<dc:creator>Peter Woods</dc:creator>
				<category><![CDATA[AppHosting]]></category>

		<guid isPermaLink="false">http://blogs.vanderbilt.edu/~peter.woods/?p=349</guid>
		<description><![CDATA[Responsibility Transfer: I have been gradually moving out of my role as Unix Team Lead and System Administrator. Almost all of the daily operational duties are being performed by the System Administration team.
Exchange Support: The vast majority of my time this month has been spent work with the ECS team to support the new Exchange [...]]]></description>
			<content:encoded><![CDATA[<p><strong>Responsibility Transfer:</strong> I have been gradually moving out of my role as Unix Team Lead and System Administrator. Almost all of the daily operational duties are being performed by the System Administration team.</p>
<p><strong>Exchange Support:</strong> The vast majority of my time this month has been spent work with the ECS team to support the new Exchange environment. The consolidation process is very complex, and it requires coordination from many people within the Vanderbilt community. The Exchange 2007 environment has been my re-introduction into the world of Microsoft Windows. I have been involved recently in monitoring server performance.</p>
<p><strong>Enterprise Linux Reference Platform:</strong> We are continuing to meet and define the base RHEL standard.</p>
]]></content:encoded>
			<wfw:commentRss>http://blogs.vanderbilt.edu/~peter.woods/?feed=rss2&amp;p=349</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Aug MAR</title>
		<link>http://blogs.vanderbilt.edu/~peter.woods/?p=337</link>
		<comments>http://blogs.vanderbilt.edu/~peter.woods/?p=337#comments</comments>
		<pubDate>Wed, 26 Aug 2009 18:36:13 +0000</pubDate>
		<dc:creator>Peter Woods</dc:creator>
				<category><![CDATA[AppHosting]]></category>

		<guid isPermaLink="false">http://blogs.vanderbilt.edu/~peter.woods/?p=337</guid>
		<description><![CDATA[New Position: I have recently been promoted to Senior System Administrator. As part of the transition, I am moving out of my operation role, and I am transferring those duties to the rest of the Unix team. I&#8217;m now supporting each of the AppHosting teams in my new role. I&#8217;m already diving into a couple [...]]]></description>
			<content:encoded><![CDATA[<p><strong>New Position:</strong> I have recently been promoted to Senior System Administrator. As part of the transition, I am moving out of my operation role, and I am transferring those duties to the rest of the Unix team. I&#8217;m now supporting each of the AppHosting teams in my new role. I&#8217;m already diving into a couple of issues on the Windows platform, which is something I&#8217;ve not been heavily involved with for a while.  As such, I&#8217;ll be trying to absorb as much information as possible in the near future.</p>
<p><strong>Exchange 2007 Support:</strong> I have been tasked with several items supporting the Exchange 2007 environment.</p>
<p><strong>Sun Identity Management [SIDM]:</strong> The new SIDM LDAP services are live, available, and in-use by the general Vanderbilt community. The team is in the process ensuring that all clients are properly migrated to the new service.  Only a few clients are still connecting to the Solaris-based service, and we are working with the owners to move them over.</p>
<p><strong>Enterprise Linux Reference Platform [ELRP]:</strong> The team has produced a server build with minimal packages to use as the base system.  We are in the process of determining the proper configuration for the installed packaging.</p>
]]></content:encoded>
			<wfw:commentRss>http://blogs.vanderbilt.edu/~peter.woods/?feed=rss2&amp;p=337</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>June MAR</title>
		<link>http://blogs.vanderbilt.edu/~peter.woods/?p=320</link>
		<comments>http://blogs.vanderbilt.edu/~peter.woods/?p=320#comments</comments>
		<pubDate>Tue, 30 Jun 2009 12:19:56 +0000</pubDate>
		<dc:creator>Peter Woods</dc:creator>
				<category><![CDATA[AppHosting]]></category>

		<guid isPermaLink="false">http://blogs.vanderbilt.edu/~peter.woods/?p=320</guid>
		<description><![CDATA[I only have one major WIN this month&#8230;
PHP5/MySQL5 Web Server Migrations: The project to upgrade all of the shared web services to RHEL5 is essentially complete. All of the content has been migrated, and the sites are running smoothly. This migration gives the web community access to PHP5 and MySQL5.  It also brings along a [...]]]></description>
			<content:encoded><![CDATA[<p>I only have one major WIN this month&#8230;</p>
<p><strong>PHP5/MySQL5 Web Server Migrations:</strong> The project to upgrade all of the shared web services to RHEL5 is essentially complete. All of the content has been migrated, and the sites are running smoothly. This migration gives the web community access to PHP5 and MySQL5.  It also brings along a much more robust ModSecurity ruleset.  So far the vast majority of the help desk tickets have been related to applications with the new ModSecurity rules.</p>
]]></content:encoded>
			<wfw:commentRss>http://blogs.vanderbilt.edu/~peter.woods/?feed=rss2&amp;p=320</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>May MAR</title>
		<link>http://blogs.vanderbilt.edu/~peter.woods/?p=312</link>
		<comments>http://blogs.vanderbilt.edu/~peter.woods/?p=312#comments</comments>
		<pubDate>Thu, 28 May 2009 17:12:34 +0000</pubDate>
		<dc:creator>Peter Woods</dc:creator>
				<category><![CDATA[AppHosting]]></category>

		<guid isPermaLink="false">http://blogs.vanderbilt.edu/~peter.woods/?p=312</guid>
		<description><![CDATA[Sun Identity Management: The networking issue for the virtual machines located in the VUH data center has been resolved. Our intermittent network issues were cause by a shared IP address between F5 LTMs and a Cisco router. This caused the VMs to lose outbound network connectivity when the IP jumped to the router. The IP [...]]]></description>
			<content:encoded><![CDATA[<p><strong>Sun Identity Management:</strong> The networking issue for the virtual machines located in the VUH data center has been resolved. Our intermittent network issues were cause by a shared IP address between F5 LTMs and a Cisco router. This caused the VMs to lose outbound network connectivity when the IP jumped to the router. The IP address was removed completely from the rouer, and network connectivity has been restored. We are moving on the final testing phase. We are working through the final steps for getting SLAMD setup.</p>
<p><strong><span style="color: #ff0000;">[WIN]</span> ITS Website Redesign:</strong> The cutover to the new ITS website is scheduled for this weekend. The change will involve exporting the test database, cleaning up all of the links, and importing the data on the production server. I&#8217;ll also need to copy the necessary files over to the production server.  The last step will involve moving the IP addresses from the old servers over to the new servers. The CSM will pass the incoming connections to the new servers.</p>
<p><strong>PHP5/MySQL5 Upgrades:</strong> The cutover deadline for the cut over of the first round of server has been extended until mid-June. This round of migration is progressing slowly. There are 58 folders left on the WWW4 servers 29 virtual hosts left on the vanity domain servers. This remaining content is under review by the site owners and awaiting migration approval.</p>
]]></content:encoded>
			<wfw:commentRss>http://blogs.vanderbilt.edu/~peter.woods/?feed=rss2&amp;p=312</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>April MAR</title>
		<link>http://blogs.vanderbilt.edu/~peter.woods/?p=305</link>
		<comments>http://blogs.vanderbilt.edu/~peter.woods/?p=305#comments</comments>
		<pubDate>Mon, 27 Apr 2009 13:49:26 +0000</pubDate>
		<dc:creator>Peter Woods</dc:creator>
				<category><![CDATA[AppHosting]]></category>

		<guid isPermaLink="false">http://blogs.vanderbilt.edu/~peter.woods/?p=305</guid>
		<description><![CDATA[[WIN] RHEL5/PHP5/MySQL5 Upgrades: The migrations for the FEVS02 (misc domains) and FEVS06 (www4) servers pairs have begun. The first attempt to do this was interrupted by another work activity, and they were rescheduled for Apr 26.  The rescheduled migrations were completed without issues.
ITS Website Redesign: The final cutovef date has been scheduled.
Sun Identity Management: All [...]]]></description>
			<content:encoded><![CDATA[<p><strong><span style="color: #ff0000;">[WIN]</span> RHEL5/PHP5/MySQL5 Upgrades:</strong> The migrations for the FEVS02 (misc domains) and FEVS06 (www4) servers pairs have begun. The first attempt to do this was interrupted by another work activity, and they were rescheduled for Apr 26.  The rescheduled migrations were completed without issues.</p>
<p><strong>ITS Website Redesign:</strong> The final cutovef date has been scheduled.</p>
<p><strong>Sun Identity Management:</strong> All of the LDAP virtual machines have been built and are accessible via our bastion hosts. The networking issues with the F5 LTMs have been resolved, and this appears to have revealed a possible issue with the ESX servers behind them. I have opened a ticket with the VUH helpdesk, and I am working with their staff to resolve the issue.</p>
<p><strong>Security Investigations:</strong> I spent several days working with the Network Security team to identify and mitigate a security issue.</p>
]]></content:encoded>
			<wfw:commentRss>http://blogs.vanderbilt.edu/~peter.woods/?feed=rss2&amp;p=305</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Mar MAR</title>
		<link>http://blogs.vanderbilt.edu/~peter.woods/?p=293</link>
		<comments>http://blogs.vanderbilt.edu/~peter.woods/?p=293#comments</comments>
		<pubDate>Thu, 26 Mar 2009 17:31:53 +0000</pubDate>
		<dc:creator>Peter Woods</dc:creator>
				<category><![CDATA[AppHosting]]></category>

		<guid isPermaLink="false">http://blogs.vanderbilt.edu/~peter.woods/?p=293</guid>
		<description><![CDATA[[WIN] F5 Load Balancing: All of the F5 LTMs (2 test and 5 production) are online and available for use. Mark Dycus and I spent a couple of day in the test lab trying various configurations.  We were able to duplicate the loop and broadcast/multicast storm issues that we were experiencing.  We were able to [...]]]></description>
			<content:encoded><![CDATA[<p><strong><span style="color: #ff0000;">[WIN]</span> F5 Load Balancing:</strong> All of the F5 LTMs (2 test and 5 production) are online and available for use. Mark Dycus and I spent a couple of day in the test lab trying various configurations.  We were able to duplicate the loop and broadcast/multicast storm issues that we were experiencing.  We were able to create a configuration that met are needs but also did not degrade to an unstable state if a connection dropped. The Hill and Stevenson LTMs are scheduled for a minor configuration change.</p>
<p><strong>Sun Identity Management:</strong> All of the ELDAP and CLDAP VMs are now online.  I am working through verifying connectivity to each VM and service point.  I have also been alerted to some latency issues with the LTM, and I am in the process to debugging this.  I have reconfigured the secondary LTM in a slightly different configuration for comparison testing.  The best working configuration will a synced over the the other peer.</p>
<p><strong>ITS Website Redesign:</strong> This project is on track. All of the content is being reviewed for accuracy and relevance.  Some minor presentation issues are also being addressed.</p>
<p><strong>PHP5/MySQL5 Upgrade:</strong> All of the customers for this migration have been identified. The specifications for each servers are also being collected so that each service pair is appropriately sized.</p>
<p><strong>Exchange 2007:</strong> I am working with the primary project resources to ensure that the new Exchange 2007 services are available via the LTMs.  This configuration is slightly different from our preferred architecture.  The new Exchange servers are not directly behind the LTM, and the connections are being proxied over to the servers. This implies some additional configuration to get the connection to go through.  The only deteriment to this configuration is that the source client IP address is lost due to the source NATing that takes place.</p>
<p><strong>Shibboleth Rebuild:</strong> I am working with the primary project resources to ensure that the new Shibboleth servers are available via the LTMs.  I have recommended that the recently built test Shibboleth server be moved behind the test LTMs to ensure that testing procedures are valid.</p>
<p><strong>Unix Team Cross Training:</strong> The Unix team has expanded our weekly one hour meeting from our typical status updates and info distribution. We are now attempting to work in cross training, technology demos, and team project support. During our last meeting, we covered the basic UltraSeek admin tasks, OSSEC capabilities and agent install, DiamondIP zone creation, and patch administration. This is an effort to eliminate operational bottlenecks that develop when the primary admin is the defacto expert for a particular technology.</p>
]]></content:encoded>
			<wfw:commentRss>http://blogs.vanderbilt.edu/~peter.woods/?feed=rss2&amp;p=293</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>February MAR</title>
		<link>http://blogs.vanderbilt.edu/~peter.woods/?p=286</link>
		<comments>http://blogs.vanderbilt.edu/~peter.woods/?p=286#comments</comments>
		<pubDate>Thu, 26 Feb 2009 22:43:54 +0000</pubDate>
		<dc:creator>Peter Woods</dc:creator>
				<category><![CDATA[AppHosting]]></category>

		<guid isPermaLink="false">http://blogs.vanderbilt.edu/~peter.woods/?p=286</guid>
		<description><![CDATA[Sitemason Stabilization: This month the Sitemason service grew to utilize five web servers behind the F5 LTM. The service is still suffering from intermittent issues such as intermittent login failures or XML parsing failures. This is also the first service that I have written an iRule for. The rule that I wrote will redirect the [...]]]></description>
			<content:encoded><![CDATA[<p><strong>Sitemason Stabilization:</strong> This month the Sitemason service grew to utilize five web servers behind the F5 LTM. The service is still suffering from intermittent issues such as intermittent login failures or XML parsing failures. This is also the first service that I have written an iRule for. The rule that I wrote will redirect the user to a &#8220;service not available&#8221; web page if the Sitemason pool fails as a whole. This was a learning experience, and I created the rule using various code snippets that I found on the F5 DevCentral website.</p>
<p><strong>Sun Identity Management:</strong> Both of the ESX servers are fully operational in the VUH data center, and all of the virtual machines have been configured for the new network location. Both of the F5 LTMs are online; however, I only have limited network connectivity to the VIPs that I have created. I&#8217;m working with the VUH staff to diagnose the connectivity issues.</p>
<p><strong>ITS Website Redesign:</strong> All of the virtual hosts for the miscellaneous ITS websites (except the main ITS website) have been moved to other servers in preparation for the final jump to the Drupal-based site.  The last major step is the content reviews.</p>
<p><strong>Web Service Resource Allocations:</strong> I increased the disk space allocation for the WWW and WWW4 web server pairs. Content growth has been fairly steady on both services, and the Nagios service checks were starting to alert at warning level. The MySQL server VM also received more memory and disk space.</p>
<p><strong>MySQL InnoDB Reconfiguration:</strong> The existing InnoDB tables on the shared MySQL server were stored in a single file, which made it difficult to determine which customers were consuming an inordinate amount of resources. It took about two hours to re-import all of the databases using InnoDB tables. Some of them had to be imported twice due to corruption issues from an unknown source.</p>
<p><strong>Cohosted Server Patching:</strong> The Greeklife, Honor Council, and VICC websites were upgraded to current RHEL standards. The vmware-tools were also updated.</p>
<p><strong>Exchange 2007 Deployment: </strong>I have done miscellaneous tasks in support of this project such as configuring the service point VIPs on the F5 LTM and debugging connectivity issues. The CAS VIPs also has a pair of minor iRules to forward connections.</p>
]]></content:encoded>
			<wfw:commentRss>http://blogs.vanderbilt.edu/~peter.woods/?feed=rss2&amp;p=286</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>January MAR</title>
		<link>http://blogs.vanderbilt.edu/~peter.woods/?p=278</link>
		<comments>http://blogs.vanderbilt.edu/~peter.woods/?p=278#comments</comments>
		<pubDate>Wed, 28 Jan 2009 14:33:02 +0000</pubDate>
		<dc:creator>Peter Woods</dc:creator>
				<category><![CDATA[AppHosting]]></category>

		<guid isPermaLink="false">http://blogs.vanderbilt.edu/~peter.woods/?p=278</guid>
		<description><![CDATA[Server Patching: All of the shared web servers have been patched, and the co-hosted web servers are scheduled.
Sun Identity Management: I am continuing my work to bring the VMs online  in the VUH data center, but I&#8217;m being diverted by operational events and tasks. Both ESX servers are fully online and accessible after the latest [...]]]></description>
			<content:encoded><![CDATA[<p><strong>Server Patching:</strong> All of the shared web servers have been patched, and the co-hosted web servers are scheduled.</p>
<p><strong>Sun Identity Management:</strong> I am continuing my work to bring the VMs online  in the VUH data center, but I&#8217;m being diverted by operational events and tasks. Both ESX servers are fully online and accessible after the latest network revision. We are in the process of implementing slamd to load test the new service.  The test MIS Business Objects servers are now connecting to the new service.</p>
<p><strong>ITS Website Redesign:</strong> All of the ITS-manage virtual hosts have been migrated from the old servers to the new servers, except for the main ITS website and the change management website. The Drupal-based ITS website is still undergoing content revisions. The change website will be migrated in the near future. Cutover to the Drupal-based site is pending completion of the content revision.</p>
<p><strong>Nagios Data Merge:</strong> The data from the old Nagios server has been merged into the archives on the new Nagios server. This process involved translating server and service check names between the two servers. All of the monitoring data is now on the new server.</p>
<p><strong>Sitemason Enhancements:</strong> We have put a lot of effort into identifying performance issues with the Sitemason service and implementing potential fixes. The database server has been reconfigured to handle an increased connection volume. The <em>too many clients</em> errors were somewhat sporatic and do not always coincide with the MyVU traffic. We have built and are currently testing a clustered configuration.</p>
]]></content:encoded>
			<wfw:commentRss>http://blogs.vanderbilt.edu/~peter.woods/?feed=rss2&amp;p=278</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>December MAR</title>
		<link>http://blogs.vanderbilt.edu/~peter.woods/?p=273</link>
		<comments>http://blogs.vanderbilt.edu/~peter.woods/?p=273#comments</comments>
		<pubDate>Thu, 18 Dec 2008 16:52:27 +0000</pubDate>
		<dc:creator>Peter Woods</dc:creator>
				<category><![CDATA[AppHosting]]></category>

		<guid isPermaLink="false">http://blogs.vanderbilt.edu/~peter.woods/?p=273</guid>
		<description><![CDATA[Identity Management: The F5 LTM hardware in HIll and Stevenson is in production. I was able to correct the bug in the LDAP monitor by directly modifying the LDAP configurations on LTMs. This is a correction that is not possible through the web GUI. The
ITS Server Migration: Two new RHEL5 virtual servers have been deployed, [...]]]></description>
			<content:encoded><![CDATA[<p><strong>Identity Management:</strong> The F5 LTM hardware in HIll and Stevenson is in production. I was able to correct the bug in the LDAP monitor by directly modifying the LDAP configurations on LTMs. This is a correction that is not possible through the web GUI. The</p>
<p><strong>ITS Server Migration:</strong> Two new RHEL5 virtual servers have been deployed, and the first of the ITS websites has been moved over. <a title="Software Distribution" href="http://swdist.vanderbilt.edu" target="_blank">swdist.vanderbilt.edu</a> has been transitioned over. More websites will be transitioned over in the near future.</p>
<p><strong>Tertiary Web Presence:</strong> A <a href="http://www-dr.vanderbilt.edu/" target="_blank">business continuity website</a> has been established for the main Vanderbilt website by utilizing services from <a href="http://www.rackspace.com/" target="_blank">Rackspace</a>. This was was given to the team (aloing with business continuity DNS) as a special work effort to complete the implementation.</p>
<p><strong>Backup Client Upgrades:</strong> The Unix team has completed upgrading the Legato client on our servers. This enables for active management of the backup process for the storage team.</p>
]]></content:encoded>
			<wfw:commentRss>http://blogs.vanderbilt.edu/~peter.woods/?feed=rss2&amp;p=273</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>November MAR</title>
		<link>http://blogs.vanderbilt.edu/~peter.woods/?p=269</link>
		<comments>http://blogs.vanderbilt.edu/~peter.woods/?p=269#comments</comments>
		<pubDate>Tue, 25 Nov 2008 19:53:36 +0000</pubDate>
		<dc:creator>Peter Woods</dc:creator>
				<category><![CDATA[AppHosting]]></category>

		<guid isPermaLink="false">http://blogs.vanderbilt.edu/~peter.woods/?p=269</guid>
		<description><![CDATA[F5 LTM (WIN): The HIll and Stevenson F5 hardware is online. We are operating under a considerably stricter set of firewall rules for the networks attached to the LTMs. There are several projects lining up to utilize the LTM
Sun Identity Management: We are using a new web application to track our project tasks. This has [...]]]></description>
			<content:encoded><![CDATA[<p><strong>F5 LTM (WIN):</strong> The HIll and Stevenson F5 hardware is online. We are operating under a considerably stricter set of firewall rules for the networks attached to the LTMs. There are several projects lining up to utilize the LTM</p>
<p><strong>Sun Identity Management:</strong> We are using a new web application to track our project tasks. This has been a great help, since I now have defined goals to meet. The only drawback is that there is a bug in the application which prevents me from updating the status of my task, and I don&#8217;t really like this since it displays my stuff as <em>Not Started</em>, so I send frequent email updates. I have moved the two CLDAP virtual machines that are slated for production behind the LTMs, and tested basic network connectivity. I&#8217;m in the process of doing the same for the ELDAP virtual machines.</p>
<p><strong>NetTracker Data Archive:</strong> The NetTracker data was archived to the rolling 13 month window.</p>
<p><strong>Backup Client Upgrades:</strong> I have begun upgrading the Legato client on my systems.</p>
<p><strong>ITS Website Redesign:</strong> I have gone through two rounds of vulnerability remediation with the Network Security team. Many of the issues are false positives that are induced because of our security configuration. There were a couple of legitimate issues such a plain text authentication. This was something that our vendor was supposed to fix; however, I created some RewriteRules to remediate.</p>
<p><strong>Website Maintenance:</strong> I had to add more storage to the WWW4 server. This was a really easy change to add another virtual disk to the VMs and grow the file system. I have received multiple helpdesk tickets to disable the ModSecurity rules for several websites. Rather than disable the rules, which would have left them vulnerable to the thousands of daily hack attempts, I tested and modified several rules to relax the restrictions under certain conditions. Unfortunately, the typical web advice on most forums is to disable ModSecurity for things like WordPress and Drupal when it becomes a problem.</p>
]]></content:encoded>
			<wfw:commentRss>http://blogs.vanderbilt.edu/~peter.woods/?feed=rss2&amp;p=269</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
