infra
Differences
This shows you the differences between two versions of the page.
| Both sides previous revisionPrevious revisionNext revision | Previous revision | ||
| infra [2025/02/12 13:48] – ef2d127d-e37b-942b-aad0-6145e54b0c61 | infra [2025/10/12 21:27] (current) – ef2d127d-e37b-942b-aad0-6145e54b0c61 | ||
|---|---|---|---|
| Line 1: | Line 1: | ||
| # IT Infrastructure | # IT Infrastructure | ||
| - | |||
| - | The acting CTO is responsible for maintaining TheLab' | ||
| ---- | ---- | ||
| Line 9: | Line 7: | ||
| ---- | ---- | ||
| - | ## Network | + | ## Servers |
| - | TheLab has a MikroTik router with a handful of APs, and a Cisco switch for PoE and extra ports. | + | <nspages :servers -customTitle=" |
| - | The network is divided up into a few subnets, each on their own vlan. | + | ## Cloudflare |
| - | - Members: **10.200.1.0/24** | + | We use Cloudflare for various things including (most importantly) DNS. The account is associated with cto@thelab.ms, so new CTOs should go reset the password to get access. Things don't change often in this account but it's worth knowing that it exists. |
| - | - Members Static IPs: **10.200.0.0/ | + | |
| - | - Infrastructure: | + | |
| - | - Cameras: **10.200.20.0/ | + | |
| - | - Access Control: **10.220.4.0/ | + | |
| - | Management points: | + | Cloudflare tunnels are used for all ingress to our servers - no need to worry about rotating TLS certs, free DDoS protection, etc. |
| - | - **10.200.10.1**: | ||
| - | - **10.200.10.2**: | ||
| - | - `ssh [email protected] -c aes256-cbc -o KexAlgorithms=diffie-hellman-group-exchange-sha1 -o PubkeyAcceptedAlgorithms=+ssh-rsa -o HostKeyAlgorithms=+ssh-rsa` | ||
| - | ### Switch Ports | + | ## Github |
| - | The switch has 4 obvious bays of ports, each assigned to a VLAN like: | + | Any active members working on code-related projects can be added as a member of TheLab' |
| - | - Cameras | ||
| - | - Members | ||
| - | - Infrastructure | ||
| - | - Access Control | ||
| + | ## Monitoring | ||
| - | ## Servers | + | We have a shared [cronitor](https:// |
| - | <nspages :servers -customTitle=" | + | ## Network |
| - | ## Cloudflare | + | TheLab has a MikroTik router with a handful of APs, and a Cisco switch for PoE and extra ports. |
| - | We use Cloudflare for various things including (most importantly) DNS. The account | + | The network |
| - | Cloudflare tunnels are used for all ingress to our servers | + | - Members: **10.200.1.0/ |
| + | - Members Static IPs: **10.200.0.0/ | ||
| + | - Admin: **10.200.10.0/ | ||
| + | - IoT **10.200.20.0/ | ||
| + | Management points: | ||
| - | ## Github | + | - **10.200.10.1**: |
| - | Any active members working on code-related projects can be added as a member of TheLab' | + | ### Switch Ports |
| - | Obviously the CTO should always be an org admin. | + | TODO |
| - | ## Monitoring | ||
| - | We have a shared [cronitor](https:// | ||
infra.1739368133.txt.gz · Last modified: 2025/02/12 13:48 by ef2d127d-e37b-942b-aad0-6145e54b0c61
