Future Console Servers devproj project #31. Overview ● Requirements / motivation ● Current approach ● Possible future options – KVM over IP – IPMI – Serial.

Slides:



Advertisements
Similar presentations
Integrating Opengear console servers into Zenoss monitoring.
Advertisements

Module 4 PowerEdge M-Series iDRAC and LifeCycle Controller 2 Management.
PowerEdge M-Series CMC Management
KX-NS1000 Initial Set Up For step by step : 16 May,
12-Port IP Power Manager IPM  Product Overview  Product Features  Applications  Comparison Presentation Outline 2 / 15.
DSL Access Architectures and Protocols. xDSL Architecture.
Drawer 8/16 Port Combo-Free IP KVM Console with 17" LCD Display
Firewall Security Chapter 8. Perimeter Security Devices Network devices that form the core of perimeter security include –Routers –Proxy servers –Firewalls.
Small Office Service Serial Router Connects Internal Stations to Shared Broadband Access Service Small Office Serial Router Shared Broadband Line ISP.
Lesson 17 – UNDERSTANDING OTHER NETWARE SERVICES.
Lesson 11-Virtual Private Networks. Overview Define Virtual Private Networks (VPNs). Deploy User VPNs. Deploy Site VPNs. Understand standard VPN techniques.
Implementing a Secure Console Server The Cyclades Project Co-Op Summer 2003 by Robert Perriero.
Training.
Supermicro © 2009 GPU Solutions Universal I/O Double-Sided Datacenter Optimized Twin Architecture SuperBlade ® Storage Embedded IPMI.
© 2007 Cisco Systems, Inc. All rights reserved.ICND1 v1.0—2-1 Module Summary  Ethernet cables and segments can span only a limited physical distance,
1 Remote Access July 10, What we’ll cover Remote access to NCAR’s network Remote access to Servers, Routers, Switches.
Field Proven Performance – Industrial Grade Support DATA-LINC GROUP Training: LincView OPC Released: 2012/02/04.
© 2007 Cisco Systems, Inc. All rights reserved.ICND1 v1.0—4-1 Module Summary  Cisco routers operate at Layer 3, and their function is path determination.
LION GES - Overview  Fast Ethernet Switch For easy installation of medium to large sized networks For installation of high availability networks using.
The Operator Neutral Access At KistaIP. KistaIP ? Is a student dorm with 144 apartments.
1 A web enabled compact flash card reader eeble. 2 Weeble Team Chris Foster Nicole DiGrazia Mike Kacirek Website
An Introduction to IBM Systems Director
Cisco S2 C4 Router Components. Configure a Router You can configure a router from –from the console terminal (a computer connected to the router –through.
1 NETS KVM Setup July 11, What we’ll cover Setup and configuration User Interfaces Troubleshooting Open Issues Coming attractions.
CAEN Wireless Network College of Engineering University of Michigan October 16, 2003 Dan Maletta.
LAN Switching and Wireless – Chapter 1 Vilina Hutter, Instructor
IPMI 2.0 Overview SOL-Serial redirection over Lan Management of servers and systems in a remote environment over LAN connections Allow IT managers to manage.
© 2008 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID 1 Chapter 1: Introduction to Scaling Networks Scaling Networks.
Firewall Security.
Manage Operations Lights Out Control. License our technology, an industrial strength, unifying, centralized access and power management standard to Vendors.
ITI-510 Computer Networks ITI 510 – Computer Networks Meeting 6 Rutgers University Center for Applied Computer Technologies Instructor: Chris Uriarte.
Super Micro IPMI 1.5 Solution
WEEK 11 – TOPOLOGIES, TCP/IP, SHARING & SECURITY IT1001- Personal Computer Hardware System & Operations.
Access Network Devices Remotely— Even if the Network is Down— with Out-of-Band Management.
DPM - IPMI Product Support Engineering VMware Confidential.
Update on Farm Monitor and Control Domenico Galli, Bologna RTTC meeting Genève, 14 april 2004.
Running clusters on a Shoestring Fermilab SC 2007.
© 2011 Eaton Corporation. All rights reserved. Eaton ePDU - Features overview training Advanced Monitored, Switched and Managed Increasing cost of power.
LINCWorks Mesh Networking User Guide. This user guide will give a brief overview of mesh networking followed by step by step instructions for configuring.
© 2003, Cisco Systems, Inc. All rights reserved. 2-1 Campus Network Design.
RuggedPOD O/S Deployment strategy. Disclaimers The content of this presentation is released under GPL v2 license en Creative Common Attribution-ShareAlike.
Running clusters on a Shoestring US Lattice QCD Fermilab SC 2007.
1 © 2004, Cisco Systems, Inc. All rights reserved. CCNA 2 v3.1 Module 2 Introduction to Routers.
Basic Edge Core switch Training for Summit Communication.
SECURE LAB: CREATING A CISCO 3550 VLSM NETWORK
Frequently Asked Questions (FAQ)
For Wolverhampton Linux User Group By Adam Sweet
VMware ESX and ESXi Module 3.
Building Networks for People
Instructor Materials Chapter 5: Network Security and Monitoring
COSEC ARC IP based Access Control Panel.
Maintain, Manage And Monitor Outdoor Systems Remotely
Chapter 2: Configure a Network Operating System
Serial Consoles in the age of IPMI
Barbara Martelli INFN - CNAF
High Availability Linux (HA Linux)
Embedded IPMI.
Virtualization Cloud and Fedora
Introduction to Computers
NERC CIP Implementation – Lessons Learned and Path Forward
Chapter 5: Network Security and Monitoring
Virtual Local Area Network
Chapter 2: Configure a Network Operating System
STP Enhancements for z10 EC, z10 BC, z9 EC, z9 BC
– Chapter 3 – Device Security (B)
Intel Active Management Technology
Lecture9: Embedded Network Operating System: cisco IOS
Cost Effective Network Storage Solutions
Lecture9: Embedded Network Operating System: cisco IOS
System requirements. Installation. Licensing.
Presentation transcript:

Future Console Servers devproj project #31

Overview ● Requirements / motivation ● Current approach ● Possible future options – KVM over IP – IPMI – Serial concentrator cards – Commodity solutions ● Summary / recommendations

Requirements ● Ideally, want a simple and inexpensive solution that allows us remotely to: – look at serial console output (even for dead/locked/unresponsive machines) – examine and set BIOS/bootprom values – do machine installations – power cycle machines ● Ideally, one such solution per 'bank' of racks; capable of handling up to ~80 machines

Motivation ● New building ● Some of the hardware in use in the current system is no longer obtainable ● The current approach requires a lot of serial cabling – can we rationalise this? ● Are there better/cheaper solutions?

Current Approach ● Six console servers fitted with 32-way serial cards, using conserver ( ), configured via LCFG – ssh consoles console karajan Enter password... karajan.inf.ed.ac.uk login: ● Each console server looks after its own client machines, but the entire system is federated ● But: Cyclades serial cards we use are no longer obtainable!

Option 1: KVM over IP ● AdderLink IP: – Multiple clients via KVM switch – Up to four user connections – Needs only one IP address per unit ● But: – No buffering – Messy cabling – Expensive

KVM over IP (cont) ● Lantronix Spider: – One client per unit – Multiple user connections – Neat cabling ● But: – Needs one extra IP address per target machine – Still no buffering – Still expensive

Option 2: IPMI ● IPMI - 'Intelligent Platform Management Interface' ● Defines a 'standardised message-based interface to intelligent platform management hardware.' ● Provides a standard interface to: – Environmental sensors (temperature, voltage) – Power control – Event logs ● Implemented by the Baseboard Management Controller (BMC)

IPMI (cont) ● v1.0 (1999) – Access to the BMC via system buses only ● v1.5 (2002) – Access to the BMC via serial port and LAN – the BMC has its own IP address ● v2.0 (2004) – Support for encrypted network traffic – Serial-over-Lan (SOL) – redirection of monitored system's serial port over the BMC's LAN connection

IPMI v1.5 ● Supported by 8 th generation Dell servers – e.g. PowerEdge 850, 860 and SC1425 ● SOL is implemented by some vendors, but is not standardised. Requires auxiliary s/w on the client. Not usable in practice ● Still useful though! – e.g. remote power off/on, get sensor data, etc.: ● ipmitool -I lan -H splitbmc -U root power off ipmitool [...snip...] sensor get Temp

IPMI v2.0 ● Supported by 9 th generation Dell servers e.g. PowerEdge 1950, 2950; SC1435 ● SOL is standardised: ● ipmitool -I lanplus -H pastabmc -U root sol activate ● Note that: – Still need to use conserver to get buffering of console output – Need an additional IP address per machine (but this could be on a management VLAN)

Option 3: Serial concentrator cards ● The current approach ● Requires: – Multi-port serial cards and drivers – One LCFG-configured server per 32 (or so) target machines ● Cyclades serial cards are no longer obtainable, but Perle cards are

Option 4: Commodity solutions ● Drop-in 'boxed' solutions that are functionally similar to the current conserver -based set-up: – Connected to target machines via serial ports and cables (generally: 16, 32 or 48 ports) – Remote access to target consoles via ssh – Provide buffering – Various authentication possibilities (local DB, RADIUS, Kerberos, etc.) ● Vendors: Avocent, Lantronix,...

Commodity solutions (cont) ssh access to consoles ssh kbslc [kbslc1]> connect direct deviceport 1 Fedora Core release 5 (Bordeaux) Kernel _FC5_dice_1.2 on an i686 selidor.inf.ed.ac.uk login: - or - ssh kbslc -p 3001 Fedora Core release 5 (Bordeaux) Kernel _FC5_dice_1.2 on an i686 selidor.inf.ed.ac.uk login:

Commodity solutions (cont) ● In principle, provide a low maintenance and cheap solution, but they: – Need some thought regarding integration(e.g. can we make it easy to locate the console of interest?) – May require everybody to change habits – Don't necessarily scale up neatly (i.e. it may not be possible to federate multiple boxes) – Don't address cabling concerns

Recommendations ● In the future: – IPMI SOL (v2.0 or above) + conserver ● Now: either – Continue the current scheme, or – Use commodity boxes

Open questions ● How many of our machines need remote console access? ● Of these, how many support IPMI v2.0? ● How independent of the rest of our infrastructure (DHCP, authentication etc.) should any solution be? ● How successful in practice are the commodity boxes?

What are (some) others doing? ● Ed Uni IS: “FMD UNIX are the only team to have remote console/lights out management... Primarily all our kit is SUN... we use serial management - primarily CISCO 3745 with 128 serial lines.” ● A ShefLUG contact: “We use a dual solution of IPMI for fan/temp monitoring and power control, plus KVMoIP+virtual media for remote access. It's highly reliable and wonderful to work with, but not cheap!” ● From the beowulf.org list: “... get boxes which support IPMI ”