Подготовка на ерик за събитието #67

Closed
opened 2016-10-20 17:19:12 +03:00 by zeridon · 3 comments
zeridon commented 2016-10-20 17:19:12 +03:00 (Migrated from github.com)

Ерик да бъде почистен преди събитието

  • snmptrapd - enable & start
  • nagios - enable & start
  • collectd - enable & start
  • carbon-cache@a - clean /opt/graphite/storage// leave db and index, enable & start
  • carbon-aggregator@top - enable & start
  • arpwatch - clean logs, /var/lib, enable & start
  • uwsgi - enable & start
  • nginx - enable & start
  • php-fpm - enable & start
  • fcgiwrapd - enable & start
  • grafana-server - enable & start, set default dashboard for Guests
  • rsyslog - clean /opt/syslog, restart
  • nagios - enable notifications, enable & start
Ерик да бъде почистен преди събитието - [x] snmptrapd - enable & start - [x] nagios - enable & start - [x] collectd - enable & start - [x] carbon-cache@a - clean /opt/graphite/storage/_/_ leave db and index, enable & start - [x] carbon-aggregator@top - enable & start - [x] arpwatch - clean logs, /var/lib, enable & start - [x] uwsgi - enable & start - [x] nginx - enable & start - [x] php-fpm - enable & start - [x] fcgiwrapd - enable & start - [x] grafana-server - enable & start, set default dashboard for Guests - [x] rsyslog - clean /opt/syslog, restart - [x] nagios - enable notifications, enable & start
robotpanic commented 2016-10-25 12:33:30 +03:00 (Migrated from github.com)

root@eric:/etc # wall
Ima li oshte neshto za konfene?
kiliev

Broadcast message from root@eric (pts/2) (Tue Oct 25 12:31:02 2016):

Тъй като гледам са запалени services :

root@eric:/var/tmp # for service in cat servicechecker.sh | cut -d \- -f 1 ; do systemctl | grep ${service} ; done
nagios3.service loaded active running LSB: nagios host/service/network monitoring and management system
collectd.service loaded active running Statistics collection and monitoring daemon
carbon-aggregator@top.service loaded active running carbon-aggregator instance top (graphite)
carbon-cache@a.service loaded active running carbon-cache instance a (graphite)
system-carbon\x2daggregator.slice loaded active active system-carbon\x2daggregator.slice
system-carbon\x2dcache.slice loaded active active system-carbon\x2dcache.slice
carbon-aggregator@top.service loaded active running carbon-aggregator instance top (graphite)
carbon-cache@a.service loaded active running carbon-cache instance a (graphite)
system-carbon\x2daggregator.slice loaded active active system-carbon\x2daggregator.slice
system-carbon\x2dcache.slice loaded active active system-carbon\x2dcache.slice
uwsgi.service loaded active running LSB: Start/stop uWSGI server instance(s)
nginx.service loaded active running LSB: starts the nginx web server
php5-fpm.service loaded active running The PHP FastCGI Process Manager
grafana-server.service loaded active running Starts and stops a single grafana instance on this system
rsyslog.service loaded active running System Logging Service
nagios3.service loaded active running LSB: nagios host/service/network monitoring and management system
root@eric:/var/tmp #

root@eric:/etc # wall Ima li oshte neshto za konfene? kiliev Broadcast message from root@eric (pts/2) (Tue Oct 25 12:31:02 2016): Тъй като гледам са запалени services : root@eric:/var/tmp # for service in `cat servicechecker.sh | cut -d \- -f 1` ; do systemctl | grep ${service} ; done nagios3.service loaded active running LSB: nagios host/service/network monitoring and management system collectd.service loaded active running Statistics collection and monitoring daemon carbon-aggregator@top.service loaded active running carbon-aggregator instance top (graphite) carbon-cache@a.service loaded active running carbon-cache instance a (graphite) system-carbon\x2daggregator.slice loaded active active system-carbon\x2daggregator.slice system-carbon\x2dcache.slice loaded active active system-carbon\x2dcache.slice carbon-aggregator@top.service loaded active running carbon-aggregator instance top (graphite) carbon-cache@a.service loaded active running carbon-cache instance a (graphite) system-carbon\x2daggregator.slice loaded active active system-carbon\x2daggregator.slice system-carbon\x2dcache.slice loaded active active system-carbon\x2dcache.slice uwsgi.service loaded active running LSB: Start/stop uWSGI server instance(s) nginx.service loaded active running LSB: starts the nginx web server php5-fpm.service loaded active running The PHP FastCGI Process Manager grafana-server.service loaded active running Starts and stops a single grafana instance on this system rsyslog.service loaded active running System Logging Service nagios3.service loaded active running LSB: nagios host/service/network monitoring and management system root@eric:/var/tmp #
zeridon commented 2016-10-25 12:56:42 +03:00 (Migrated from github.com)

@robotpanic този тикет си е за самия ден за последна проверка и почистване. Ще се прави в петък.

@robotpanic този тикет си е за самия ден за последна проверка и почистване. Ще се прави в петък.
robotpanic commented 2016-10-25 13:22:18 +03:00 (Migrated from github.com)

Сложих фейлтубан, че китайците полазиха

[1]+ Stopped less /var/log/auth.log
root@eric:/etc/fail2ban # !vim
vim jail.local
root@eric:/etc/fail2ban # /etc/init.d/fail2ban restart
[ ok ] Restarting fail2ban (via systemctl): fail2ban.service.
root@eric:/etc/fail2ban # iptables -L
Chain INPUT (policy ACCEPT)
target prot opt source destination
fail2ban-ssh tcp -- anywhere anywhere tcp dpt:ssh

Chain FORWARD (policy ACCEPT)
target prot opt source destination

Chain OUTPUT (policy ACCEPT)
target prot opt source destination

Chain fail2ban-ssh (1 references)
target prot opt source destination
REJECT all -- 116.31.116.14 anywhere reject-with icmp-port-unreachable
RETURN all -- anywhere anywhere
root@eric:/etc/fail2ban #

Сложих фейлтубан, че китайците полазиха [1]+ Stopped less /var/log/auth.log root@eric:/etc/fail2ban # !vim vim jail.local root@eric:/etc/fail2ban # /etc/init.d/fail2ban restart [ ok ] Restarting fail2ban (via systemctl): fail2ban.service. root@eric:/etc/fail2ban # iptables -L Chain INPUT (policy ACCEPT) target prot opt source destination fail2ban-ssh tcp -- anywhere anywhere tcp dpt:ssh Chain FORWARD (policy ACCEPT) target prot opt source destination Chain OUTPUT (policy ACCEPT) target prot opt source destination Chain fail2ban-ssh (1 references) target prot opt source destination REJECT all -- 116.31.116.14 anywhere reject-with icmp-port-unreachable RETURN all -- anywhere anywhere root@eric:/etc/fail2ban #
Sign in to join this conversation.
No project
No Assignees
1 Participants
Notifications
Due Date
The due date is invalid or out of range. Please use the format 'yyyy-mm-dd'.

No due date set.

Dependencies

No dependencies set.

Reference: Network/2016#67
No description provided.