infra
Differences
This shows you the differences between two versions of the page.
Both sides previous revisionPrevious revisionNext revision | Previous revision | ||
infra [2025/01/09 23:27] – 6b86b273-ff34-fce1-9d6b-804eff5a3f57 | infra [2025/10/12 21:27] (current) – ef2d127d-e37b-942b-aad0-6145e54b0c61 | ||
---|---|---|---|
Line 1: | Line 1: | ||
# IT Infrastructure | # IT Infrastructure | ||
- | |||
- | The acting CTO is responsible for maintaining TheLab' | ||
---- | ---- | ||
Line 9: | Line 7: | ||
---- | ---- | ||
- | ## Network | + | ## Servers |
- | TheLab has a MikroTik router with a handful of APs, and a Cisco switch for PoE and extra ports. | + | <nspages :servers -customTitle=" |
- | The network is divided up into a few subnets, each on their own vlan. | + | ## Cloudflare |
- | - Members: **10.200.1.0/24** | + | We use Cloudflare for various things including (most importantly) DNS. The account is associated with cto@thelab.ms, so new CTOs should go reset the password to get access. Things don't change often in this account but it's worth knowing that it exists. |
- | - Members Static IPs: **10.200.0.0/ | + | |
- | - Infrastructure: | + | |
- | - Cameras: **10.200.20.0/ | + | |
- | - Access Control: **10.220.4.0/ | + | |
- | Management points: | + | Cloudflare tunnels are used for all ingress to our servers - no need to worry about rotating TLS certs, free DDoS protection, etc. |
- | - **10.200.10.1**: | ||
- | - **10.200.10.2**: | ||
- | - `ssh [email protected] -c aes256-cbc -o KexAlgorithms=diffie-hellman-group-exchange-sha1 -o PubkeyAcceptedAlgorithms=+ssh-rsa -o HostKeyAlgorithms=+ssh-rsa` | ||
- | ### Switch Ports | + | ## Github |
- | The switch has 4 obvious bays of ports, each assigned to a VLAN like: | + | Any active members working on code-related projects can be added as a member of TheLab' |
- | - Cameras | ||
- | - Members | ||
- | - Infrastructure | ||
- | - Access Control | ||
+ | ## Monitoring | ||
- | ## Servers | + | We have a shared [cronitor](https:// |
- | - Main cloud instance: **[[servers_foobar|foobar.thelab.ms]]** | + | ## Network |
- | - Big metal box in TheLab: **[[servers_baz|baz.thelab.ms]]** | + | |
+ | TheLab has a MikroTik router with a handful of APs, and a Cisco switch for PoE and extra ports. | ||
- | ## Cloudflare | + | The network is divided up into a few subnets, each on their own vlan. |
- | We use Cloudflare for various things including (most importantly) DNS. The account is associated with cto@thelab.ms, so new CTOs should go reset the password to get access. Things don't change often in this account but it's worth knowing that it exists. | + | - Members: **10.200.1.0/24** |
+ | - Members Static IPs: **10.200.0.0/ | ||
+ | - Admin: **10.200.10.0/ | ||
+ | - IoT **10.200.20.0/ | ||
- | Cloudflare tunnels are used for all ingress to our servers - no need to worry about rotating TLS certs, free DDoS protection, etc. | + | Management points: |
+ | - **10.200.10.1**: | ||
- | ## Github | + | ### Switch Ports |
+ | |||
+ | TODO | ||
- | Any active members working on code-related projects can be added as a member of TheLab' | ||
- | Obviously the CTO should always be an org admin. |
infra.1736465226.txt.gz · Last modified: 2025/01/09 23:27 by 6b86b273-ff34-fce1-9d6b-804eff5a3f57