Primary IT Infrastructure: Difference between revisions

From HackRVA
Jump to navigation Jump to search
(Page needs updates.)
 
(145 intermediate revisions by 5 users not shown)
Line 1: Line 1:
Please check back with this page, as we are in the process of populating good information, relating to how to get the most out of your HackRVA data experience.
Hack.rva provides community wifi and lan drops in all rooms, as well as a few in house hosted services. All traffic is monitored by a snorby server that checks for illegal torrents, bots and other malware.




= The primary network architecture =
----
At HackRVA Labs, Inc. we utilize a switched network with vlans and VoIP support.
We have a dedicated smart-switch, a router and a Virtulization Server which runs our web services, and groupware.


== Network Devices ==
The HackRVA Labs, Inc. network is comprised of four primary network infrastructure devices.
*SMC Cable Modem/gateway
*Cisco RV180 VPN Router
*Ubiquiti Wireless AP with PoE adaptor
*NetGear 24-port smart-switch


== Network Topology ==
[[File:serverrack.jpg]]
=== VLANs ===
At HackRVA Labs, Inc. we have a segmented network using vlans for segregation of traffic.
*VLAN-1 is the management network, and houses the management end-points for primary services.
*VLAN-100 is the voip vlan, specifically intended to have all voip traffic.
*VLAN-200 is the vlan for hackrva-wireless, and is the vlan which you will be assigned to, if access the hackrva-wireless ssid.
*VLAN-300 is the vlan for all wired network infrastructure, and is also the vlan for network services such as email, and dns, as well as network printers.
===Address Space (IPv4)===
At HackRVA Labs, Inc. we have subneting that is assigned to specific vlans.
*VLAN-1 is on subnet 192.168.10.0/24
*VLAN-100 is on subnet 192.168.100.0/24
*VLAN-200 is on subnet 192.168.200.0/24
*VLAN-300 is on subnet 192.168.30.0/24


===Address Space (IPv6)===
HackRVA Labs, Inc. does not currently utilize IPv6 address space.
==Network Services==
===DNS===
HackRVA Labs, Inc. currently hosts its own dns services, for the following domains.
====hackrva.org====
====hackrva.net====
====hackrva.us====
====hackrva.info====


===DHCP===
----
===NTP===
<blockquote><span style="color: red;">''Entire page needs to be updated''</span></blockquote>
===FTP===
===VoIP===
===www===
===EMail===
===VPN===


= Servers =
----


= Enclosures =
==About==
-more info coming-
 
(This page is somewhat out of date. The server has been upgraded.)
----
 
==Topology==
 
A crude Network topology by John V.
[[file:Net_diagram.png]]
 
----
==Network Appliances==
 
*'''Modem''' - Motorola Surfboard 575186
*'''Firewall''' - custom PFSense box
*'''Switch''' - Netgear GS724T
*'''Wifi AP''' - Ubiquity Unifi AP
 
----
==Networked Equipment==
 
*'''[[Proxmox virtualization Node]]'''
-An in house solution to keep the number of physical machines running various services down to a minimum. Rocking dual 12 thread Xeons and 48gb of ram, this thing provides all of our virtualzation needs. Runs Proxmox 4.4
*'''Networked Attached Storage'''
-The NAS was built out of spare parts donated by several members and has 4 1tb WD greens in a zfs raid 5.
*'''[[Digital Design Workstation]]'''
-Donated by Michael, the Digital Design station is rocking a q6600, 6gb of ddr2, and a Radeon HD 5770, this machine is the work horse for all of our design and manufacturing equipment. This including the CNC router, 3D printers and laser cutter.
*'''Wall of monitors machine'''
-What started off as a separate dev machine, The wall of monitors machine was Aaron's Idea because he wanted to sit in front of a machine that drove 9 screens running off of one tower.
*'''TV PC'''
A Raspberry Pi model B 1st gen, hooked to the large plasma screen display good for digital signage or just a secondary screen
*'''Chromecast'''
- simple streaming stick that stays plugged in the HDMI switch for broadcasting things wirelessly to the projector, Works best with the Chrome browser.
 
----
 
==Services==
*'''LAN games'''
-We host our own Minecraft Server @ minecraft.hackrva.org:25565
 
-Saturday nights tends to turn into Age Of Emipres 3 lan gaming
 
-Occasionally an Artemis game gets played though, not too often any more
*'''Community storage'''
-We have a 4tb NAS for community use, It holds  a fair amount of various Operating system ISOs and other wise is a hub for hackrva related files
*'''Virtualization'''
We have a in house hypervisor machine for public use after training.
*'''Cad software'''
The digital design station is full to the brim with different CAD software, the main suite being Auto desk products
 
==History==
 
 
<blockquote><span style="color: red;">''This section needs to be updated''</span></blockquote>
 
 
The network at hackrva started out as a just a WRT54GL named "robot king" and a fall back AP named "robot queen". They had to be rebooted almost weekly due to the constant traffic and numerous DHCP problems. These devices ran out of address space very quickly.
 
 
Thus a beefier network needed to be created. A more reliable network was created with enterprise grade gear and, in a lot of ways, this network became the model of what is currently in place.
 
 
Many hands are involved in maintaining the network, running network cabling throughout the space and ensuring minimal downtime. 
The equipment at the space is there to be used.  If you would like access to a VM or would like to contribute to the maintenance of the infrastructure, please email [email protected]

Latest revision as of 21:34, 4 August 2019

Hack.rva provides community wifi and lan drops in all rooms, as well as a few in house hosted services. All traffic is monitored by a snorby server that checks for illegal torrents, bots and other malware.




Serverrack.jpg



Entire page needs to be updated


About

-more info coming-

(This page is somewhat out of date. The server has been upgraded.)


Topology

A crude Network topology by John V.

Net diagram.png


Network Appliances

  • Modem - Motorola Surfboard 575186
  • Firewall - custom PFSense box
  • Switch - Netgear GS724T
  • Wifi AP - Ubiquity Unifi AP

Networked Equipment

-An in house solution to keep the number of physical machines running various services down to a minimum. Rocking dual 12 thread Xeons and 48gb of ram, this thing provides all of our virtualzation needs. Runs Proxmox 4.4

  • Networked Attached Storage

-The NAS was built out of spare parts donated by several members and has 4 1tb WD greens in a zfs raid 5.

-Donated by Michael, the Digital Design station is rocking a q6600, 6gb of ddr2, and a Radeon HD 5770, this machine is the work horse for all of our design and manufacturing equipment. This including the CNC router, 3D printers and laser cutter.

  • Wall of monitors machine

-What started off as a separate dev machine, The wall of monitors machine was Aaron's Idea because he wanted to sit in front of a machine that drove 9 screens running off of one tower.

  • TV PC

A Raspberry Pi model B 1st gen, hooked to the large plasma screen display good for digital signage or just a secondary screen

  • Chromecast

- simple streaming stick that stays plugged in the HDMI switch for broadcasting things wirelessly to the projector, Works best with the Chrome browser.


Services

  • LAN games

-We host our own Minecraft Server @ minecraft.hackrva.org:25565

-Saturday nights tends to turn into Age Of Emipres 3 lan gaming

-Occasionally an Artemis game gets played though, not too often any more

  • Community storage

-We have a 4tb NAS for community use, It holds a fair amount of various Operating system ISOs and other wise is a hub for hackrva related files

  • Virtualization

We have a in house hypervisor machine for public use after training.

  • Cad software

The digital design station is full to the brim with different CAD software, the main suite being Auto desk products

History

This section needs to be updated


The network at hackrva started out as a just a WRT54GL named "robot king" and a fall back AP named "robot queen". They had to be rebooted almost weekly due to the constant traffic and numerous DHCP problems. These devices ran out of address space very quickly.


Thus a beefier network needed to be created. A more reliable network was created with enterprise grade gear and, in a lot of ways, this network became the model of what is currently in place.


Many hands are involved in maintaining the network, running network cabling throughout the space and ensuring minimal downtime. The equipment at the space is there to be used. If you would like access to a VM or would like to contribute to the maintenance of the infrastructure, please email [email protected]