Wednesday, April 6, 2011

GOC Service Update - Tuesday, April 12th at 14:00 UTC

The GOC will upgrade the following services beginning at Tuesday, April 12th, 2010 at 14:00 UTC. The GOC reserves four hours (14:00 - 18:00 UTC) in the unlikely event that unexpected problems are encountered. We encourage users to test affected services before the production release.

OIM 2.32 (https://oim.grid.iu.edu)

ITB version is now available for testing at https://oim-itb.grid.iu.edu
Made Site Form’s State field optional
Installed Capacity Report Script / Updated to include VO ownership information for more detail please see https://ticket.grid.iu.edu/goc/viewer?id=10131

MyOSG / Gip Validator Consolidator

Made changes to the top level wlcg bdii monitor script so that BDII entries are loaded one at a time in order to minimize timeout issue possibly caused during low throughput events of IU network.

Monday, April 4, 2011

DOEGrids Services Outage - Update - GOC Ticket # 10187

The DOEGrids services were restored late Friday evening. We have received confirmation that they have resumed normal operations as of Monday morning.

If you tried to submit a new certificate request or renew your certificate on Friday and received an error, please resubmit your request now.

Please see ticket 10187 at:
https://ticket.grid.iu.edu/goc/viewer?id=10187

Friday, April 1, 2011

DOEGrids Services Outage - Update - GOC Ticket # 10187

OSG Operations has been informed the DOEGrid CA Services will remain offline for an unspecified period of time, this is likely to last through the weekend of April 2nd and 3rd. During this time all requests for new certificates and certificate renewals will not be processed by DOEGrids. We will alert you on Monday April 4th how users can obtain new certificates or renew their existing certificates. We are currently working to find a back up service.

This downtime will NOT affect the grid access for the users who already have unexpired certificates. OSG Resources will continue providing access and working as usual. Resources will NOT experience any critical RSV failures due to this down time (because the CA certificate and CRL files are still available). We will continue updating you as the situation develops. If the downtime continues over 72 hours, sites may experience a NON-CRITICAL failure of RSV probes. We will inform you promptly if that happens.

Please see ticket 10187 at:
https://ticket.grid.iu.edu/goc/viewer?id=10187

DOEGrid services unavailable - Friday April 1, 2011 - GOC Ticket # 10187

DOEGrids Agent Services (https://pki1.doegrids.org:8100/ca/) is currently unavailable. A CA administrator is investigating the root cause of the issue. No further information is available as to when the service will restored.


Please see ticket 10187 at:
https://ticket.grid.iu.edu/goc/viewer?id=10187

Tuesday, March 29, 2011

OSG 1.2.19 Release Notification

OSG Operations and Integration are pleased to announce the release of OSG version 1.2.19

******************************
OSG 1.2.19 Update Notification
******************************

Affected Components

The following components are affected:

* All RSV installations
* CE installations
* GUMS installations

Summary

This release contains the following updates:

* A new version of RSV with fixes for a race condition that may cause a site to go into the unknown status on MyOSG in rare instances. There is also a fix that allows probes to run correctly if RSV is started in a directory where the RSV user doesn't have read permissions
* Security and bug fixes to Tomcat, Java, MySQL
* Updates to PHP and Apache
* Configure-osg update which allows BDII or cemon configuration to be ignored as well a minor bugfix

This release fixes all the RSV bugs that were present in the previous release and should be appropriate for sites that report to the WLCG.

Update Instructions
Update instructions can be found on the OSG Twiki under the OSG 1.2 update instructions ( https://twiki.grid.iu.edu/bin/view/ReleaseDocumentation/OSG12UpdateInstructions ).

Additional Information
The release notes for the VDT 2.0.0p26 release underlying this release can be found here ( http://vdt.cs.wisc.edu/releases/2.0.0/release-p26.html ).

New VO Package

A new VO package is now available. This package adds the CSIU VO and updates the gums.template for Engage VO and CMS VO.

A detailed list of changes is available at:
https://twiki.grid.iu.edu/bin/view/Operations/PackageV35

The GOC suggests backing up your installation before running any
update commands.

To pull the new VO Package for an OSG 1.0.x or 1.2.0 Resource please
use:
# cd $VDT_LOCATION
# source setup.sh
# pacman -update vo-package

Please remember a UNIX account for 'csiu' will need to be set up and pool accounts for engage-ucsdgrid if you plan on supporting these VOs.

To pull the new VO Package for the OSG Client 1.0.x or 1.2.0 please use:
# cd $VDT_LOCATION
# source setup.sh
# pacman -update vo-client

Tuesday, March 15, 2011

GOC Service Update - Tuesday, March 22 at 14:00 UTC

The GOC will upgrade the following services beginning at Tuesday, March 22nd, 2011 at 14:00 UTC. The GOC reserves four hours (14:00 - 18:00 UTC) in the unlikely event that unexpected problems are encountered. We encourage users to test affected services before the production release.

GOC Ticket 1.34 (https://ticket.grid.iu.edu)

ITB version is now available for testing at https://ticket-itb.grid.iu.edu


* Added a new REST interface for ticket search (used by MyOSG for now)
* Fixed the formatting of metadata.


MyOSG 1.33 (https://myosg.grid.iu.edu)

ITB version is now available for testing at https://myosg-itb.grid.iu.edu

* Added GOC Ticket for search target via GOC Ticket REST interface. Also added OIM contact's primary email for search target (only available for registered OIM users)

GOC Ticket Synchronizer 1.17 (GOC-TX)

* Added filter for RT accessor so that invalid XML character won't be introduced to GOC-TX system.

TWiki (http://twiki.grid.iu.edu)
ITB version is now available for testing at https://twiki-itb.grid.iu.edu; we encourage users to test this service before the production release.

* Increased SSL renegotiation buffer size in order to allow larger attachments.

All Services
We are making various backend changes that should make all services run more smoothly.

* Changes to Puppet server management software configuration: Puppet will no longer run as a daemon in the background but as a cron job on a similar schedule. This should free up memory for more important processes.


* Change to how GOC servers share public SSH host keys with each other: The Puppet server will generate a flat file, and Puppet clients will pull it, rather than using Puppet's 'storeconfig' database, which was losing track of keys somehow.


* New Puppet rules: Puppet will ensure that the GOC's existing nscd and sshd custom configurations are uniformly applied across all servers -- nscd restarts daily to keep it from locking up, and sshd only logs inactive users out after an extraordinarily long period of time. Note that these changes are already on most servers and have been for some time; this will simply ensure that they are on all.