Difference between revisions of "Network Overview"
(43 intermediate revisions by 2 users not shown) | |||
Line 1: | Line 1: | ||
− | == Spark Makerspace Network Overview== | + | [[Category:Electronics]] |
+ | [[Category:Network]] | ||
+ | [[Category:Infrastructure]] | ||
+ | |||
+ | == Spark Makerspace Network Overview == | ||
This page is intended to give you an overview of the network at Spark Makerspace. | This page is intended to give you an overview of the network at Spark Makerspace. | ||
− | == | + | == Network Graph == |
+ | [https://www.yworks.com/yed-live/?file=https://gist.githubusercontent.com/fsckyou/392a387f55182e3491a1ae204d7b2071/raw/01056a2cc087fbc14e2f6e0212744b618edb60ce/Spark%20Network%20Diagram Editable Network Graph on yEd Live] | ||
− | + | == Domain == | |
+ | Spark is using FreeIPA to manage host and user identities. While it's not a replacement for a Microsoft Active Directory domain controller, it get us close for the low price of free! | ||
− | + | === How to Create a New User === | |
− | + | Point your browser to[https://freeipa.spark.spork https://freeipa.spark.spork] | |
− | |||
− | |||
− | + | while on the Spark network and login with administrator credentials. | |
+ | [[image:FreeIPA login.png|300p|thumb|FreeIPA Login Page]] | ||
+ | Once logged in, on the '''Identity > Users''' tab, click the '''Add''' button on the primary section. Enter the user's information. Spark uses a username format of first initial + last name. If this username is already in use, use full first name instead of first initial. | ||
− | === | + | === How to enroll a Ubuntu machine === |
+ | It's easier to just deploy a new Ubuntu machine from MAAS. See [[Computer Deployment]] | ||
− | + | 1. Set hostname | |
+ | $ sudo hostnamectl set-hostname new-host.spark.spork | ||
+ | 2. Install freeipa-client package | ||
+ | $ sudo apt install -y freeipa-client | ||
+ | 3. Edit /etc/hosts | ||
+ | <nowiki>$ sudo vim /etc/hosts | ||
+ | # Add FreeIPA Server IP and hostname | ||
+ | 10.11.12.156 freeipa.spark.spork freeipa</nowiki> | ||
+ | 4. Register host | ||
+ | <nowiki>$ sudo ipa-client-install --hostname=`hostname -f` \ | ||
+ | --mkhomedir \ | ||
+ | --server=freeipa.spark.spork \ | ||
+ | --domain spark.spork \ | ||
+ | --realm SPARK.SPORK</nowiki> | ||
+ | You can proceed with fixed values and no DNS discovery. It's also fine to not configure NTP. | ||
− | == | + | 5. Enable mkhomedir. |
+ | <nowiki>$ sudo bash -c "cat > /usr/share/pam-configs/mkhomedir" <<EOF | ||
+ | Name: activate mkhomedir | ||
+ | Default: yes | ||
+ | Priority: 900 | ||
+ | Session-Type: Additional | ||
+ | Session: | ||
+ | required pam_mkhomedir.so umask=0022 skel=/etc/skel | ||
+ | EOF</nowiki> | ||
+ | Then run | ||
+ | $ sudo pam-auth-update | ||
+ | Ensure that "activate mkhomedir" is checked and hit enter when prompted. | ||
− | |||
− | + | [[Network Goals]] | |
− | |||
− |
Latest revision as of 17:04, 29 May 2022
Spark Makerspace Network Overview
This page is intended to give you an overview of the network at Spark Makerspace.
Network Graph
Editable Network Graph on yEd Live
Domain
Spark is using FreeIPA to manage host and user identities. While it's not a replacement for a Microsoft Active Directory domain controller, it get us close for the low price of free!
How to Create a New User
Point your browser tohttps://freeipa.spark.spork
while on the Spark network and login with administrator credentials.
Once logged in, on the Identity > Users tab, click the Add button on the primary section. Enter the user's information. Spark uses a username format of first initial + last name. If this username is already in use, use full first name instead of first initial.
How to enroll a Ubuntu machine
It's easier to just deploy a new Ubuntu machine from MAAS. See Computer Deployment
1. Set hostname
$ sudo hostnamectl set-hostname new-host.spark.spork
2. Install freeipa-client package
$ sudo apt install -y freeipa-client
3. Edit /etc/hosts
$ sudo vim /etc/hosts # Add FreeIPA Server IP and hostname 10.11.12.156 freeipa.spark.spork freeipa
4. Register host
$ sudo ipa-client-install --hostname=`hostname -f` \ --mkhomedir \ --server=freeipa.spark.spork \ --domain spark.spork \ --realm SPARK.SPORK
You can proceed with fixed values and no DNS discovery. It's also fine to not configure NTP.
5. Enable mkhomedir.
$ sudo bash -c "cat > /usr/share/pam-configs/mkhomedir" <<EOF Name: activate mkhomedir Default: yes Priority: 900 Session-Type: Additional Session: required pam_mkhomedir.so umask=0022 skel=/etc/skel EOF
Then run
$ sudo pam-auth-update
Ensure that "activate mkhomedir" is checked and hit enter when prompted.