#3056 closed task (fixed)

lnicola needs admin access to various things

Reported by: robe Owned by: sac@…
Priority: normal Milestone: Sysadmin Contract 2024-I
Component: SysAdmin Keywords: onboarding
Cc: lnicola

Description

It seems Laurențiu Nicola doesn't have access to various SAC resources like the ldap database, password store, and our hosts servers.

I think he has been helping long enough we can give him access to these.

Change History (4)

comment:1 by strk, 10 months ago

Cc: lnicola added
Keywords: onboarding added

Laurențiu: what are you missing ?

comment:2 by lnicola, 10 months ago

I don't know. I can connect to:

  • osgeo7.osgeo.org and hop.osgeo7.osgeo.org, aka "download" (with my key)
  • osgeo3-matrix (with password)
  • osgeo8-woodie-server (with my key)
  • osgeo9-wiki (with password)

I can't connect to:

  • osgeo3.osgeo.org (doesn't resolve)
  • osgeo7-tracsvn (key rejected)
  • osgeo4-ldap-web-staging (connection refused)
  • osgeo7-ldap-web (connection refused)
  • osgeo4-nginx (doesn't resolve via hop)
  • osgeo7-secure (very slow, asks for password, rejects it)
Last edited 10 months ago by lnicola (previous) (diff)

comment:3 by strk, 10 months ago

You are missing access to the real machines (what Regina called "hosts servers"). In order to get access you can file a PR against this file: https://git.osgeo.org/gitea/sac/ansible-deployment/src/branch/master/deployment/roles/lxd-host/files/home/tech_dev/dot.ssh/authorized_keys

All the hostnames you mentioned above "fake" (determined by our ~/.ssh/config). The real names of real machines are written on the wiki (ie: osgeo3.osgeo.osuosl.org)

Please feel free to improve the wiki as you move on with the onboarding experience

Starting point: https://wiki.osgeo.org/wiki/SAC_Service_Status

Last edited 10 months ago by strk (previous) (diff)

comment:4 by robe, 10 months ago

Milestone: UnplannedSysadmin Contract 2024-I
Resolution: fixed
Status: newclosed

Okay I deployed your ssh to all the hosts, so you can handle the rest of the stuff you need access too by connecting to the hosts.

Note: See TracTickets for help on using tickets.