Revisiting APAN Services #2 Yoshikata Hattori, Pensri A., Lee,

Slides:



Advertisements
Similar presentations
1 Senn, Information Technology, 3 rd Edition © 2004 Pearson Prentice Hall James A. Senns Information Technology, 3 rd Edition Chapter 7 Enterprise Databases.
Advertisements

Daves DNS Show Read at your own risk. Domain Name Service Maps IP addresses to more human readable domain names Every domain name ultimately resolves.
ITR3 lecture 7: more introduction to UNIX Thomas Krichel
Chapter 1: Introduction to Scaling Networks
Application Layer: functionality and Protocols
Sonny J Zambrana University of Pennsylvania ISC-SEO November 2008.
IP SLA with Object Tracking
Database System Concepts and Architecture
Sergei Komarov. DNS  Mechanism for IP hostname resolution  Globally distributed database  Hierarchical structure  Comprised of three components.
1 Dynamic DNS. 2 Module - Dynamic DNS ♦ Overview The domain names and IP addresses of hosts and the devices may change for many reasons. This module focuses.
Introduction to Networks
Computer Monitoring System for EE Faculty By Yaroslav Ross And Denis Zakrevsky Supervisor: Viktor Kulikov.
1 DNS. 2 BIND DNS –Resolve names to IP address –Resolve IP address to names (reverse DNS) BIND –Berkeley Internet Name Domain system Version 4 is still.
The Domain Name System. CeylonLinux DNS concepts using BIND 2 Hostnames IP Addresses are great for computers –IP address includes information used for.
EEC-484/584 Computer Networks Lecture 6 Wenbing Zhao
Lesson 18-Internet Architecture. Overview Internet services. Develop a communications architecture. Design a demilitarized zone. Understand network address.
The Internet Useful Definitions and Concepts About the Internet.
Election AlgorithmsCS-4513 D-term Election Algorithms CS-4513 Distributed Computing Systems (Slides include materials from Operating System Concepts,
Hands-On Microsoft Windows Server 2003 Networking Chapter 6 Domain Name System.
Hands-On Microsoft Windows Server 2003 Networking Chapter 7 Windows Internet Naming Service.
MCTS Guide to Microsoft Windows Server 2008 Network Infrastructure Configuration Chapter 5 Introduction to DNS in Windows Server 2008.
70-293: MCSE Guide to Planning a Microsoft Windows Server 2003 Network, Enhanced Chapter 7: Planning a DNS Strategy.
1 DNS,NFS & RPC Rizwan Rehman, CCS, DU. Netprog: DNS and name lookups 2 Hostnames IP Addresses are great for computers –IP address includes information.
© 2008 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID 1 Chapter 10: Application Layer Network Basics.
Pro Exchange SPAM Filter An Exchange 2000 based spam filtering solution.
Network File System (NFS) in AIX System COSC513 Operation Systems Instructor: Prof. Anvari Yuan Ma SID:
ABC Co. Network Implementation High reliability is primary concern – near 100% uptime required –Customer SLA has stiff penalty clauses –Everything is designed.
Hands-On Microsoft Windows Server 2008 Chapter 8 Managing Windows Server 2008 Network Services.
Hosted Exchange The purpose of this Startup Guide is to familiarize you with ExchangeDefender's Exchange and SharePoint Hosting. ExchangeDefender.
Configuring CIFS Upon completion of this module, you should be able to: Configure the Data Mover for a Windows environment Create and Join a CIFS Server.
IT 210 The Internet & World Wide Web introduction.
Deploying Global Server Load Balancing
Network Protocols. Why Protocols?  Rules and procedures to govern communication Some for transferring data Some for transferring data Some for route.
PPD Computing “Business Continuity” Windows and Mac Kevin Dunford May 17 th 2012.
Chapter 10 Intro to Routing & Switching.  Upon completion of this chapter, you should be able to:  Explain how the functions of the application layer,
Network Tools TCP/IP interface configuration query - MAC (HW) address and IP address – Linux - /sbin/ifconfig – MS Windows – ipconfig/all 1.
Tutorial 1 Getting Started with Adobe Dreamweaver CS3
Broadband Communication Lab. Asymmetric Path Detection in BGP Routing 29 January, 2004 Eun Mi, Park Korea Univ. Dept. of Electronics and Computer Engineering.
70-291: MCSE Guide to Managing a Microsoft Windows Server 2003 Network Chapter 7: Domain Name System.
CH2 System models.
KT's IPv6 status and trial service Future Technology Lab Dongjin Kwak, Jaehwa Lee Meeting 2008 at NZ.
October 8, 2015 University of Tulsa - Center for Information Security Microsoft Windows 2000 DNS October 8, 2015.
MySQL and GRID Gabriele Carcassi STAR Collaboration 6 May Proposal.
Netprog: DNS and name lookups1 Address Conversion Functions and The Domain Name System Refs: Chapter 9 RFC 1034 RFC 1035.
MCSE Guide to Microsoft Exchange Server 2003 Administration Chapter Two Installing and Configuring Exchange Server 2003.
Day 14 Introduction to Networking. Unix Networking Unix is very frequently used as a server. –Server is a machine which “serves” some function Web Server.
Application Layer Khondaker Abdullah-Al-Mamun Lecturer, CSE Instructor, CNAP AUST.
CHAPTER 3 Classes of Attack. INTRODUCTION Network attacks come from both inside and outside firewall. Kinds of attacks: 1. Denial-of-service 2. Information.
Chapter 3: Services of Network Operating Systems Maysoon AlDuwais.
Domain Name System Refs: Chapter 9 RFC 1034 RFC 1035.
2.1 © 2004 Pearson Education, Inc. Exam Designing a Microsoft ® Windows ® Server 2003 Active Directory and Network Infrastructure Lesson 2: Examining.
TCP/IP (Transmission Control Protocol / Internet Protocol)
Cisco – Chapter 15 Application Layer closest to you as an end-user, when you are interacting with software.
DNS DNS overview DNS operation DNS zones. DNS Overview Name to IP address lookup service based on Domain Names Some DNS servers hold name and address.
CERN DNS Load Balancing VladimírBahylIT-FIO NicholasGarfieldIT-CS.
CIS 192B – Lesson 2 Domain Name System. CIS 192B – Lesson 2 Types of Services Infrastructure –DHCP, DNS, NIS, AD, TIME Intranet –SSH, NFS, SAMBA Internet.
Newsgroup World Wide Web (WWW) Conservation Over the Internet e.g.ICQ File Transfer Protocol (FTP) Includes 6 main services: Electronic Mail Remote.
MySQL and GRID status Gabriele Carcassi 9 September 2002.
Linux Operations and Administration
Linux Operations and Administration
OPTION section It is the first section of the named.conf User can use only one option statement and many option-value pair under the section. Syntax is.
Computer Network Architecture Lecture 6: OSI Model Layers Examples 1 20/12/2012.
SINN01 Technical Workshop Oldenburg 5-7 Dec 2001 Technical Discussion SINN01 Technical Workshop.
Ch 2. Application Layer Myungchul Kim
Homework 5 DNS 、 HTTPD 、 SNMP. Requirements One dedicated domain name for yourself Setup DNS server with following records  SOA, NS, MX  Make them reasonable.
Using Crontab with Ubuntu
LINUX ADMINISTRATION 1
DNS and Bind Presenter David Wood
Domain Name System Refs: Chapter 9 RFC 1034 RFC 1035.
The Internet and Electronic mail
Presentation transcript:

Revisiting APAN Services #2 Yoshikata Hattori, Pensri A., Lee, Jaehwa, APAN NOC 19 th APAN Meeting, Bangkok

What Are APAN Services? WWW –apan.net and DNS –ns.kaist.apan.net and ns.jp.apan.net /mailing lists –apan.net Distributed among/operated by APAN- KR/ANF and APAN-JP NOCs

Why Revisiting? These are the most important services for us –to get information from APAN thru WWW –to communicate with others thru /mailing lists –based on the APAN DNS So they need –correctness of information –reliability and stability of operation/monitoring And they are naturally based upon the network architecture/operation. Now APAN network architecture/operation has changed greatly which requires revisiting the services. –24x7 operation/monitoring –GbE connection between JP and KR

(Previous) Problems WWW –Contents of apan.net(KR) and have 4 hours difference -> Harmful DNS –No backup of primary database(KR) -> Dangerous /mailing lists –No backup of mailing lists(KR) -> Dangerous Operated/monitored jointly by APAN-KR/ANF and APAN-JP NOCs –No 24x7 operation/monitoring on KR side

New Scheme Servers distributed among JP and KR –Controlled/operated/monitored by APAN NOC –Redundancy/reliability Information correctness, reliability, and stability –NFS between servers for WWW –Backup of data for WWW, DNS, Mailing Lists –Servers location independence of the sec.

Current Status/Follow-up WWW servers, apan.net = –2 official servers(JP and KR) with 1 hidden server(master.apan.net in Sec./TH) Sec controls the contents –Hidden server is rcynced by JP server (with a reliable backup) in every 4 hours Sec must have a way to trigger rsync –KR server NFS-mounting JP server contents KR must have a local copy : local copy of NFS-mounted contents –Need performance test for this scheme DNS servers –Primary server moved to APAN NOC from KAIST, but its hidden now –The same 2 servers(secondary) seen from outside –1 hidden server + 2 servers or just 2 servers? Mail server/mailing lists reconfiguration –Still pending Should follow WWW servers scheme – 2 official mail exchangers Sec must control ML lists Is it worth trying anycast for these services?

Current Status on KR Side KOREN/APAN-KR NOC has moved to Seoul with servers –I(JH Lee) am working for Convergence Lab., KT in Seoul Our new servers (still going on) –2 redundant 1-u servers for WWW, DNS, mail servers w/ storage servers These will host the APAN servers/services –Planning to have specialized servers for tunnel broker, AG bridge servers, SNMP servers, etc. Only in 6 years were going to have many new servers

Web Contents THJPKR noc6-5.kr.apan.net = apan.net = ns2.jp.apan.net = apan.net = master.apan.net Mounted with NFS Real-time updating can be done Synchronizing the contents by SSH-wrapped rsync every 4 hours apan.net A A www CNAME apan.net. Master: Slave: Users can access JP or KR server using or The result of DNS query determines which server will be selected. Domain Name Servers of apan.net Results of DNS query are round robin. 1 st time %nslookup apan.net Name: apan.net Addresses: , nd time %nslookup apan.net Name: apan.net Addresses: , rd time %nslookup apan.net Name: apan.net Addresses: , Secretariats can edit and update web contents on master.apan.net. This crontab with script on JP server remotely runs rsyncd command wrapped by SSH every 4 hours. Then rsync checks the updated contents on master.apan.net and transfers them to JP server. These A records and CNAME record realize round robin service. Previous rsync configuration between old KR server and JP had deleted. Old KR web server $ cat rsyncd.conf hosts allow = use chroot = no max connections = 4 syslog facility = local5 # pid file = /var/run/rsyncd.pid timeout = 6000 [www] path = /usr/local/src/www/html/apan.net lock file = /home/inetapan/rsyncd.lock uid = inetapan gid = users read only = true This rsyncd.conf on master.apan.net allows rsync accessing from JP server. Web Contents Figure of APAN Web Servers Relocation by Mr.Hattori JHLee-san sent CD-Rs to Pensri-san. They contain the whole web contents of apan.net. And Pensri-san has uploaded them on master.apan.net. %crontab –l 20 */4 * * * /usr/home/httpd/cron/wwwsync/wwwsync.sh %cat /usr/home/httpd/cron/wwwsync/wwwsync.sh #!/bin/sh /usr/local/bin/rsync -e ssh -aqz /home/httpd/ Master:

Redundancy for Web Service How to build redundancy for a nd –Synchronize contents from TH to JP and from JP to KR –Allocate 2 IP addresses (KR: and JP: ) for apan.net and –Use round robin DNS How to synchronize the web contents –The bandwidth and RTT of TH-JP and KR-JP are taken into account –KR-JP use NFS, enough bandwidth and good RTT –TH-JP use SSH-wrapped rsync because of limited bandwidt h

Building KR-JP Synchronization by NFS NFS for synchronization between KR and JP, an d he led the implementation –NFS has already showed enough performance within Korea –Fortunately, there is enough bandwidth between KR a nd JP –JP server, exports the web contents as read-only NFS server only to KR server –KR server remotely mounted them as NFS client Destination is from JP to KR Need further tests for NFS/WWW performance

New Services NTP Information/Routing Registry H.323/SIP APAN Observatory LDAP … Any services members want to have

Now comes the detailed report of the APAN services relocation by APAN/APAN- JP NOC