Closed Bug 968400 Opened 12 years ago Closed 10 years ago

vSphere access to corp dmz hosts

Categories

(Infrastructure & Operations :: Virtualization, task)

x86
macOS
task
Not set
normal

Tracking

(Not tracked)

RESOLVED WORKSFORME

People

(Reporter: jen, Unassigned)

Details

Hi - Mark Jeffries and I will be managing the internal corp Windows servers listed below. Can we please get access to manage them through vSphere? Do we work with you to get login information for these servers as well? We want to log in and audit the machines. proxy3.dmz.scl3.mozilla.com webappsec2.corpdmz.scl3.mozilla.com ad3.private.corp.phx1.mozilla.com ad1.private.phx1.mozilla.com ad2.private.phx1.mozilla.com amocompat-w71.qa.phx1.mozilla.com amocompat-xp1.qa.phx1.mozilla.com symbolfetch1.dmz.phx1.mozilla.com ad4.private.scl3.mozilla.com vc1.private.scl3.mozilla.com p2v.private.scl3.mozilla.com vsphere-client1.private.scl3.mozilla.com tableau1.metrics.scl3.mozilla.com winadmin1.private.scl3.mozilla.com vc1b.private.scl3.mozilla.com winadmin1.private.phx1.mozilla.com antivirus1.corpdmz.scl3.mozilla.com winutils.private.corp.scl3.mozilla.com fuzzer-win3.sec.scl3.mozilla.com officebadging1.corpdmz.scl3.mozilla.com videomonitoring1.corpdmz.scl3.mozilla.com win12-puppet.private.scl3.mozilla.com tableau1.stage.metrics.scl3.mozilla.com tableau-portal.metrics.scl3.mozilla.com tableau1.metrics.phx1.mozilla.com p2v1.private.phx1.mozilla.com winutils1.private.scl3.mozilla.com tableau-worker1.metrics.scl3.mozilla.com tableau-worker2.metrics.scl3.mozilla.com
Couple of things here... first, please remove the following VMs from your list, as they're managed by my group and will actually be deleted soon as we move away from Windows for vSphere management: ad3.private.corp.phx1.mozilla.com ad1.private.phx1.mozilla.com ad2.private.phx1.mozilla.com ad4.private.scl3.mozilla.com vc1.private.scl3.mozilla.com p2v.private.scl3.mozilla.com vsphere-client1.private.scl3.mozilla.com vc1b.private.scl3.mozilla.com p2v1.private.phx1.mozilla.com winutils.private.corp.scl3 winutils1.private.scl3.mozilla.com Second, I can get you vSphere access for the remaining VMs, but as for logging into the VMs OS goes, you'll have to contact whoever owns a given VM, as we don't maintain logins for them.
Assignee: server-ops-virtualization → dparsons
Thanks - I'll remove those servers from the list. Part of our project is to identify the owners of these servers as no one really knows. Do you know if there's at least a normal default admin login that we could use as a starting point?
Q would be a good person to ask if there is a default admin login. We have one in our Windows templates but it usually/always gets changed.
(In reply to Jennifer Hayashi [:nej] from comment #0) > Hi - > > Mark Jeffries and I will be managing the internal corp Windows servers > listed below. Can we please get access to manage them through vSphere? Do > we work with you to get login information for these servers as well? We > want to log in and audit the machines. > > Hello Jennifer, it's so good to see an owner of the Windows hosts we have. I'm from the Operations Security group, could you find a few minutes to sit down and talk about the plans you have for our Windows infrastructure?
michal, Jen and I would be happy to meet with you to talk about our plans for managing the remaining Windows environment. At present, we do not plan on creating an AD sub-architecture if we can help it - but we do want to keep the systems patched, virus protected, define paths of escalation,etc.
Product: mozilla.org → Infrastructure & Operations
What's state-of-the-world on this bug? A lot of these boxes have died over the last year. :cknowles has a goal around finding (at least first-pass) owners, which he has in a google sheet. If there's still stuff for Virt folks to do, what is it? (And, let's reboot the host list since it's ancient now.) If there's not, where should we move the bug?
I would like to review the list, now that a lot of the systems have been retired. I'm happy to talk to michal and anyone in Ops to revise the list so we can close this bug.
Yeah, let's do something about it, like cleaning up this list, refreshing it (adding new systems), making sure there's a document which lists what each of them does, who manages them, what's the current state, etc.
So, as promised in IRC, I went through that list, removed the Vsphere related ones, then removed the ones that no longer exist, and provided what information I have as to requestor and related bug number... VM Bug Requestor webappsec2.corpdmz.scl3.mozilla.com Nothing found --- There is a 1 and a 3 of this as well amocompat-w71.qa.phx1.mozilla.com 718081 Clint Talbert amocompat-xp1.qa.phx1.mozilla.com 718081 Clint Talbert symbolfetch1.dmz.phx1.mozilla.com 722756 Ted Mielczarek antivirus1.corpdmz.scl3.mozilla.com 838661 Vien Doan officebadging1.corpdmz.scl3.mozilla.com 882406 GHuerta videomonitoring1.corpdmz.scl3.mozilla.com 1117916 Mark Jeffries win12-puppet.private.scl3.mozilla.com 802276 Justin Dow tableau1.stage.metrics.scl3.mozilla.com 1075229 Sheeri Cabral tableau-portal.metrics.scl3.mozilla.com 855357 Ben Sullins
And I've just been reminded that amocompats and the tableau-portal are in the process of being decommisioned. VM Bug Requestor webappsec2.corpdmz.scl3.mozilla.com Nothing found --- There is a 1 and a 3 of this as well symbolfetch1.dmz.phx1.mozilla.com 722756 Ted Mielczarek antivirus1.corpdmz.scl3.mozilla.com 838661 Vien Doan officebadging1.corpdmz.scl3.mozilla.com 882406 GHuerta videomonitoring1.corpdmz.scl3.mozilla.com 1117916 Mark Jeffries win12-puppet.private.scl3.mozilla.com 802276 Justin Dow tableau1.stage.metrics.scl3.mozilla.com 1075229 Sheeri Cabral
videomonitoring1.corpdmz.scl3.mozilla.com will continue to stick around, since it's the master for the Victor Security Camera system used by WPR and has heavy dependencies on Windows. officebadging1.corpdmz.scl3.mozilla.com, presently owned by ghuerta, can be moved to mjeffries. This is the master for the C•CURE employee badging system used by WPR, and also has heavy dependencies on Windows. It may be possible later this year to combine these applications on a single VM, since the vendor is moving in the direction of mating both apps under a single mondo app.
This bug has sat around too long. If you don't have console access to certain hosts and need to, let's talk. Give me people and hosts and we'll work it. If someone's got wackadoodle plans for full-blown Windows management, you're probably in the wrong queue. Closing in 1 week unless I have answers or direction.
Assignee: dparsons → server-ops-virtualization
QA Contact: dparsons → cshields
I'm going to defer to Mark.
Flags: needinfo?(mjeffries)
Let's retire this bug for now. I have access to the systems listed in comment 11, and we can revisit in 2016 if WPR wants to move to a consolidated version of Victor/CCure.
Status: NEW → RESOLVED
Closed: 10 years ago
Flags: needinfo?(mjeffries)
Resolution: --- → WORKSFORME
You need to log in before you can comment on or make changes to this bug.