<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
	<id>https://lcg.in2p3.fr/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=LEROY</id>
	<title>lcgwiki - Contributions [en]</title>
	<link rel="self" type="application/atom+xml" href="https://lcg.in2p3.fr/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=LEROY"/>
	<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/Special:Contributions/LEROY"/>
	<updated>2026-04-16T22:49:20Z</updated>
	<subtitle>Contributions</subtitle>
	<generator>MediaWiki 1.43.1</generator>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=User_talk:LEROY&amp;diff=6205</id>
		<title>User talk:LEROY</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=User_talk:LEROY&amp;diff=6205"/>
		<updated>2011-08-29T14:26:05Z</updated>

		<summary type="html">&lt;p&gt;LEROY: /* 2)un des plugin (&amp;#039;/opt/lcg/libexec/lcg-info-dynamic-maui&amp;#039;) est buggé */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Mise hors service du LCG-CE (réinstallé en serveur (Maui + torque Only))  =&lt;br /&gt;
&lt;br /&gt;
Mise hors service du LCG-CE via Quattor sur un cluster avec :&lt;br /&gt;
&lt;br /&gt;
-une machine, M1 :(lcg-CE +Maui + torque)  et&lt;br /&gt;
&lt;br /&gt;
- une deuxième Machine, M2 : CREAM-CE&lt;br /&gt;
&lt;br /&gt;
La Première machine étant réinstallé en serveur (Maui + torque Only)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== 1)M1 : serveur Maui + torque Only en SL5 ==&lt;br /&gt;
=== a)Inclure un nouveau type de machine dans M1 ===&lt;br /&gt;
 &lt;br /&gt;
 include { &#039;machine-types/torque_server&#039; (a la place du glite_ce) &lt;br /&gt;
&lt;br /&gt;
=== b)Ajouter la derniere version de maui  ===&lt;br /&gt;
 &#039;/software/packages&#039;=pkg_repl(&#039;maui&#039;,&#039;3.3.1-1.sl5&#039;,&#039;x86_64&#039;);&lt;br /&gt;
 &#039;/software/packages&#039;=pkg_repl(&#039;maui-client&#039;,&#039;3.3.1-1.sl5&#039;,&#039;x86_64&#039;);&lt;br /&gt;
 &#039;/software/packages&#039;=pkg_repl(&#039;maui-server&#039;,&#039;3.3.1-1.sl5&#039;,&#039;x86_64&#039;);&lt;br /&gt;
&lt;br /&gt;
=== c) SL5 ===&lt;br /&gt;
&lt;br /&gt;
Deplacer le profile ainsi que le template &#039;pro_lcg2_config_site_maui.tpl&#039; dans le &#039;&#039;&#039;cluster glite 3.2&#039;&#039;&#039; et modifier le &#039;*nodes_properties.tpl&#039; (install SL5)&lt;br /&gt;
&lt;br /&gt;
=== d) Declarer une nouvelle variable ===&lt;br /&gt;
variable &#039;&#039;&#039;LRMS_SERVER_HOST&#039;&#039;&#039; dans &#039;pro_lcg2_config_site.tpl&#039; et &#039;pro_site_common_config.tpl&#039;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Template modifié lors de ces étapes:&lt;br /&gt;
&lt;br /&gt;
 Suppression cfg/clusters/irfu/glite-3.1/profiles/profile_node07.tpl&lt;br /&gt;
 Suppression cfg/clusters/irfu/glite-3.1/site/pro_lcg2_config_site_maui.tpl&lt;br /&gt;
 Ajout cfg/clusters/irfu/glite-3.2/profiles/profile_node07.tpl&lt;br /&gt;
 Ajout cfg/clusters/irfu/glite-3.2/site/pro_lcg2_config_site_maui.tpl&lt;br /&gt;
 Envoi cfg/sites/dapnia/site/config/dapnia_nodes_properties.tpl&lt;br /&gt;
 M cfg/clusters/irfu/test-glite-3.2/site/pro_lcg2_config_site.tpl&lt;br /&gt;
 M cfg/clusters/irfu/glite-3.1_MPI/profiles/profile_node16.tpl&lt;br /&gt;
 M cfg/clusters/irfu/glite-3.1_MPI/site/pro_lcg2_config_site.tpl&lt;br /&gt;
 M cfg/clusters/irfu/glite-3.2_MPI/site/pro_lcg2_config_site.tpl&lt;br /&gt;
 M cfg/sites/dapnia/site/pro_site_common_config.tpl&lt;br /&gt;
 M cfg/sites/dapnia/site/pro_site_ui_dapnia_users_env.tpl&lt;br /&gt;
 M cfg/sites/dapnia/site/pro_lcg2_config_site.tpl&lt;br /&gt;
&lt;br /&gt;
== 2)	Déplacer le site BDII sur une autre machine (anciennement sur M1 (le LCG-CE)) ==&lt;br /&gt;
&lt;br /&gt;
Enlever les variable de configuration de BDII sur M1 et les ajouter sur une autre machine (LFC exemple) :&lt;br /&gt;
 variable BDII_TYPE=&#039;site&#039;; # site bdii&lt;br /&gt;
 variable BDII_SUBSITE_ONLY = false;&lt;br /&gt;
 variable BDII_SUBSITE = &#039;IRFU&#039;;&lt;br /&gt;
&lt;br /&gt;
== 3)	Résoudre l’erreur : Bad UID for job execution ==&lt;br /&gt;
http://grid.pd.infn.it/cream/field.php?n=Main.ErrorMessagesReportedByCREAMToClient#badui&lt;br /&gt;
en rajoutant le fichier mentionné: /etc/hosts.equiv&lt;br /&gt;
&lt;br /&gt;
== 4)	Resoudre le probleme de ‘resource not available’ vu par les WMS : ==&lt;br /&gt;
&lt;br /&gt;
En fait le système d’information ne marchait pas bien sur M2 (node74) :&lt;br /&gt;
 $ ldapsearch -x -LLL -H ldap://egee-bdii.cnaf.infn.it:2170 -b Mds-Vo-name=GRIF-IRFU,Mds-Vo-name=GRIF,mds-vo-name=local,o=grid &#039;objectclass=GlueSubCluster&#039; | grep node74&lt;br /&gt;
 $&lt;br /&gt;
&lt;br /&gt;
Ne rendait rien….&lt;br /&gt;
Ajout de  ces 2 variables dans le profile de M2 ( CREAM CE)  :&lt;br /&gt;
&lt;br /&gt;
 variable CE_HOST ?= &#039;node74.datagrid.cea.fr&#039;;&lt;br /&gt;
 variable GIP_CLUSTER_PUBLISHER_HOST ?= CE_HOST;&lt;br /&gt;
&lt;br /&gt;
== 5)	Résoudre les problèmes de publication (4444 jobs waiting…) == &lt;br /&gt;
=== 1)Inclure le client NFS sur M1 === &lt;br /&gt;
 variable NFS_CLIENT_ENABLED ?= true;&lt;br /&gt;
&lt;br /&gt;
Car &#039;M1 renseigne le GIP de M2 dans le software area de dteam via un cron sur M1&#039;.&lt;br /&gt;
Attention malgré l’option &#039;&#039;&#039;no_root_squash&#039;&#039;&#039; dans l’export du serveur NFS, il faut que les 2 fichiers :&lt;br /&gt;
 gip-ce-dynamic-info-maui.cache&lt;br /&gt;
 gip-ce-dynamic-info-scheduler.cache&lt;br /&gt;
&lt;br /&gt;
Existent dans ce software area et appartiennent à root.&lt;br /&gt;
Faire un chmod 777 sur le serveur NFS  le temps du cron sur M1, puis refaire un chown 755 (à analyser ?)&lt;br /&gt;
&lt;br /&gt;
=== 2)un des plugin (&#039;/opt/lcg/libexec/lcg-info-dynamic-maui&#039;) est buggé ===&lt;br /&gt;
 export PYTHONPATH=/opt/lcg/lib/python:${PYTHONPATH} ; python /opt/lcg/libexec/lcg-info-dynamic-maui --host node07.datagrid.cea.fr --max-normal-slots 2236 --ce-ldif /var/glite/static-file-all-CE-pbs.ldif --diagnose-output /tmp/maui-reservations.list&lt;br /&gt;
 Traceback (most recent call last):&lt;br /&gt;
 File &amp;quot;/opt/lcg/libexec/lcg-info-dynamic-maui&amp;quot;, line 244, in ?&lt;br /&gt;
 if not queueParams:&lt;br /&gt;
 File &amp;quot;/usr/lib64/python2.4/site-packages/pbs/PBSQuery.py&amp;quot;, line 351, in __getattr__&lt;br /&gt;
 raise PBSError(error)&lt;br /&gt;
 PBSQuery.PBSError: Attribute key error: __nonzero__&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Recuperer celui de grid33.lal.in2p3.fr&#039;&#039;&#039;&lt;br /&gt;
Patch à venir....&lt;br /&gt;
&lt;br /&gt;
= FTS =&lt;br /&gt;
&lt;br /&gt;
&#039;connaitre la list des channels:&#039;&lt;br /&gt;
&lt;br /&gt;
 glite-transfer-channel-list -s cclcgftsprod.in2p3.fr IN2P3-IRFU&lt;br /&gt;
&lt;br /&gt;
&#039;reactiver un channel&#039;&lt;br /&gt;
&lt;br /&gt;
 glite-transfer-channel-setvoshare -s cclcgftsprod.in2p3.fr &amp;lt;CHANNEL_NAME&amp;gt; atlas 100&lt;br /&gt;
&lt;br /&gt;
= Installation et Configuration d&#039;une VO-BOX ALICE =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Introduction ==&lt;br /&gt;
&lt;br /&gt;
Un site grille qui souhaite supporter l&#039;expérience ALICE, doit installer une VO-BOX. ALICE utilise [http://alien.cern.ch/twiki/bin/view/AliEn/Home AliEN] (Alice ENvironment) comme plateforme logicielle pour la simulation et l&#039;analyse des données. Alien est installé sur chaque VO-BOX. C&#039;est le CE d&#039;Alien qui soumet les Job Agents (JAs) au CE du site. Les JAs vont ensuite chercher les jobs dans central Task Queue de Alien. Les jobs écrivent via xrootd (directement vers le CERN pour le moment). Comme il n&#039;y a pas encore d&#039;interface xrootd/SRM, chaque VO-BOX doit fournir un stockage xrootd qui peut être sur un disque local.&lt;br /&gt;
&lt;br /&gt;
Les documents à lire impérativement (en plus de ce guide) sont:&lt;br /&gt;
&lt;br /&gt;
 * [http://alien.cern.ch/twiki/bin/view/AliEn/HowToInstallLcgVoBox ALICE LCG VO-Box Installation Guide]&lt;br /&gt;
 * [https://twiki.cern.ch/twiki/pub/LCG/VoBoxesInfo/VO-Box-security-policy_v05.doc VOBOX Security and Operations Questionnaires]&lt;br /&gt;
&lt;br /&gt;
La VO-BOX n&#039;est pas consommatrice en CPU et RAM. N&#039;importe quel PC récent(Pentium+) avec 2GB+ de RAM peut faire l&#039;affaire. Cependant un bon hardware est recommandé pour minimiser la fréquence des pannes.&lt;br /&gt;
&lt;br /&gt;
== Ressources disques requises ==&lt;br /&gt;
&lt;br /&gt;
 * Partition / (root) : au moins 2 GB&lt;br /&gt;
 * Partition /var : y prévoir 10-15 GB d&#039;espace pour les logs d&#039;Alien&lt;br /&gt;
 * /data (ou un autre nom) : partition local pour xrootd (prévoir 3G par job slot)&lt;br /&gt;
&lt;br /&gt;
Remarques:&lt;br /&gt;
  1. xrootd: sur un site avec plus de 30 job slots, passer si possible au mode &amp;quot;head node + xrootd servers&amp;quot; pour des raisons de performances&lt;br /&gt;
  2. &amp;quot;/home&amp;quot; doit être local pour des raisons de performances et de gestion des &amp;quot;locks&amp;quot;&lt;br /&gt;
&lt;br /&gt;
== Les ports à ouvrir pour la VO-BOX au niveau du router ==&lt;br /&gt;
&lt;br /&gt;
 * 1975/tcp (gsissh): inbound from 137.138.0.0/16 and 192.16.186.192/26&lt;br /&gt;
 * 1094/tcp(xrootd)&lt;br /&gt;
 * 8082/tcp (Storage Adapter)&lt;br /&gt;
 * 8083 (FTD)&lt;br /&gt;
 * 8084/tcp (Site Proxy)&lt;br /&gt;
 * 9991/tcp (PackMan) : Inbound from 137.138.0.0/16&lt;br /&gt;
 * 1093/tcp (proofd)&lt;br /&gt;
&lt;br /&gt;
== Le profile de la VO-BOX sous Quattor ==&lt;br /&gt;
&lt;br /&gt;
Dans clusters/&amp;lt;nom_site&amp;gt;-glite-x.y.z/profiles/profile_&amp;lt;nom_vobox&amp;gt;.tpl, faire:&lt;br /&gt;
&lt;br /&gt;
 {{{&lt;br /&gt;
include pro_&amp;lt;nom_site&amp;gt;_alice_glite_vobox;&lt;br /&gt;
(voir cfg/clusters/ipno-glite-3.0.0/profiles/profile_ipnvobox.tpl)&lt;br /&gt;
 }}}&lt;br /&gt;
&lt;br /&gt;
Dans sites/&amp;lt;nom_site&amp;gt;/machine-types, créer pro_&amp;lt;nom_site&amp;gt;_alice_glite_vobox.tpl et pro_&amp;lt;nom_site&amp;gt;_alice_vobox_config.tpl&lt;br /&gt;
&lt;br /&gt;
Vous pouvez copier et adpater les templates de l&#039;IPNO ou du DAPNIA.&lt;br /&gt;
&lt;br /&gt;
== Après l&#039;installation via Quattor de la machine ==&lt;br /&gt;
&lt;br /&gt;
 * Demander et installer le certificat serveur GRID-FR de la mchine&lt;br /&gt;
 * Vérifier que les utilisateurs alis et alip existent dans /etc/passwd&lt;br /&gt;
 * Verifier que Patricia Lorenzo Mendez et Artem Trunov sont bien mappés sur&lt;br /&gt;
  alis dans /etc/grid-security/grid-mapfile et qu&#039;il y a quelqu&#039;un mappé&lt;br /&gt;
  sur alip. Question ouverte: faut-il creer les pool accounts ? Ou faut-il&lt;br /&gt;
  créer uniqument les comptes alis, alip nécessaires pour ALICE ?&lt;br /&gt;
 * Dans /etc/shadow vous devez avoir &#039;*&#039; dans le champ &#039;password&#039;, sinon le logingsissh ne marchera pas. Donc il faut remplacer &#039;!!&#039; ou &#039;!*NP*&#039; par &#039;*&#039;&lt;br /&gt;
 {{{&lt;br /&gt;
[root@ipnvobox etc]# grep alis /etc/shadow&lt;br /&gt;
alis:*:13574:0:99999:7:::&lt;br /&gt;
 }}}&lt;br /&gt;
 * Vérifier que le serveur GSISSH tourne sur la VOBOX sur le port 1975.&lt;br /&gt;
 * Vérifier que $MYPROXY_SERVER pointe bien sur myproxy.cern.ch&lt;br /&gt;
 * Vérifier que la expérimental software area ($VO_ALICE_SW_DIR) est bien accessible via NFS depuis la VO-BOX et writeable par alis. Il faut au moins 5GB d&#039;espace libre pour le soft d&#039;ALICE.&lt;br /&gt;
 * Vérifier que la partition /data pour xrootd existe et appartient à alis (/data doit être crée sous Quattor ou à la main)&lt;br /&gt;
 {{{&lt;br /&gt;
[root@ipnvobox root]# ls -ld /data&lt;br /&gt;
drwxr-xr-x   19 alis     alice        4096 Dec 14 13:22 /data&lt;br /&gt;
 }}}&lt;br /&gt;
 * Créer un directory pour les logs d&#039;Alien (ex: /var/log/alis). Il doit appartenir à alis et nécessite 10-15 GB libre.&lt;br /&gt;
 {{{&lt;br /&gt;
[root@ipnvobox root]# ls -ld /var/log/alis&lt;br /&gt;
drwxrwxrwx   10 alis     alice        4096 Mar  2 16:54 /var/log/alis&lt;br /&gt;
 }}}&lt;br /&gt;
 * Configurer le proxy-renewal service. MAIS, le script /opt/vobox/templates/voname-box-proxyrenewal n&#039;est pas encore exécuté automatiquement. Cal a prévu de corriger le probleme. Donc si après l&#039;installation de la VO-BOX, il manque alice-box-proxyrenewal dans /etc/cron.d/ et dans /etc/init.d/ ainsi que start, stop, agents et info-provider dans /opt/vobox/alice/, alors faire:&lt;br /&gt;
  1. créer /etc/cron.d/alice-box-proxyrenewal:&lt;br /&gt;
 {{{&lt;br /&gt;
[root@ipnvobox root]# cat /etc/cron.d/alice-box-proxyrenewal&lt;br /&gt;
#!/bin/sh&lt;br /&gt;
20 2,8,14,20 * * * root (PATH=/sbin:/bin:/usr/sbin:/usr/bin; /sbin/service alice-box-proxyrenewal proxy)&lt;br /&gt;
 }}}&lt;br /&gt;
  2. copier /opt/vobox/templates/voname-box-proxyrenewal dans&lt;br /&gt;
    /tmp/alice-proxy-renewal.sh, adpatez-le et exécutez-le (le script que j&#039;ai&lt;br /&gt;
    utilisé est en attachement: alice-proxy-renewal.sh).&lt;br /&gt;
  3. vous devez alors retrouver les directories qui manquaient:&lt;br /&gt;
 {{{&lt;br /&gt;
[root@ipnvobox alice]# ls -l&lt;br /&gt;
total 44&lt;br /&gt;
drwx------    2 alis     alice        4096 Jul 19  2006 agents&lt;br /&gt;
-rw-rw-rw-    1 alis     alice           0 Nov 14 09:09 edglog.log&lt;br /&gt;
drwx------    2 alis     alice        4096 Jul 19  2006 info-provider&lt;br /&gt;
drwx------    2 alis     alice        4096 Mar  1 04:02 log&lt;br /&gt;
drwx------    2 alis     alice        4096 Mar  2 17:19 proxy_repository&lt;br /&gt;
-rw-------    1 alis     alice       13750 Mar  2 17:04 _registerer_proxies.db&lt;br /&gt;
-r--------    1 alis     alice        2690 Mar  2 14:20 renewal-proxy.pem&lt;br /&gt;
drwx------    2 alis     alice        4096 Aug  6  2006 start&lt;br /&gt;
drwx------    2 alis     alice        4096 Aug  5  2006 stop&lt;br /&gt;
 }}}&lt;br /&gt;
 * Envoyer un e-mail à: Patricia.Mendez@cern.ch, latchezar.betev@cern.ch et trunov@cc.in2p3.fr :&lt;br /&gt;
1. demander que la machine soit enregistrée &#039;as trusted host&#039; dans myproxy.cern.ch dans LDAP (il faut fournir le DN de la VOBOX).&lt;br /&gt;
2. fournir les informations suivantes dans le mail:&lt;br /&gt;
  * hostname de la VO-BOX&lt;br /&gt;
  * le nom des users: alicesgm (alis dans GRIF), alip (ALICE Production)&lt;br /&gt;
  * le nom directory pour xrootd (ex: /data)&lt;br /&gt;
  * le nom du SE/DPM Server (ex: ipnsedpm.in2p3.fr)&lt;br /&gt;
  * le nom du serveur LFC (ex: grid14.lal.in2p3.fr) et le catalogue pour&lt;br /&gt;
    ALICE (/grid/alice)&lt;br /&gt;
  * le nom du RB (ex: grid09.lal.in2p3.fr)&lt;br /&gt;
  * le nom du CE et de la queue batch&lt;br /&gt;
    (ex: ipnls2001.in2p3.fr:2119/jobmanager-pbs-alice)&lt;br /&gt;
  * le path pour le experiment software area&lt;br /&gt;
    (ex:VO_ALICE_SW_DIR=/ipn/storage1/exp_soft/alis, zone &amp;quot;NFS shared&amp;quot; avec les WNs)&lt;br /&gt;
 * Installer Alien ou demander que Artem ou Patricia vous l&#039;installe.&lt;br /&gt;
 * S&#039;inscrire individullement dans le projet ALICE (voir avec un physicien d&#039;ALICE du Labo et avec le Secrétariat d&#039;ALICE) :&lt;br /&gt;
  1. demander un logon au CERN (si vous n&#039;en avez pas déjà)&lt;br /&gt;
  2. demander à être enregistré comme membre du projet ALICE&lt;br /&gt;
 * Inscrivez-vous dans AliEn en suivant les étapes sur la page http://alien.cern.ch/twiki/bin/view/Alice/UserRegistration&lt;br /&gt;
  1. Vous serez amenés à vous inscrire dans la VO ALICE (si ce n&#039;est pas déjà fait)  sur https://lcg-voms.cern.ch:8443/vo/alice/vomrs&lt;br /&gt;
  2. Ensuite vous pourrez vous inscrire dans AliEn (&amp;quot;5. Register with AliEn&amp;quot; sur&lt;br /&gt;
    https://alien.cern.ch:8443/twiki/bin/UserReg&lt;br /&gt;
 * Demander ensuite à être mapé sur &#039;alidprod&#039; si vous voulez pouvoir utiliser AliEn sous votre nom (ALIEN_USER=user_name dans ~alis/.alien/Environment) la VO-BOX (start/stop des services par exemples)&lt;br /&gt;
 * Mettre dans /etc/motd des informations utiles à afficher lors de la connexion [gsi]ssh: LFC server, catalog pour alice, zone pour xrootd, etc.&lt;br /&gt;
&lt;br /&gt;
== Durée du proxy ==&lt;br /&gt;
&lt;br /&gt;
Vérifier dans /opt/lcg/sbin/vobox-renewd qu&#039;on a &#039;-t 48&#039; :&lt;br /&gt;
&lt;br /&gt;
 {{{&lt;br /&gt;
${GLOBUS_LOCATION}/bin/myproxy-get-delegation -a ${VOBOX_PROXY_REPOSITORY}/${CERT} -d -o $TMP_PROXY -t 48 2&amp;gt;&amp;amp;1 &amp;gt; /dev/null&lt;br /&gt;
 }}}&lt;br /&gt;
&lt;br /&gt;
Il s&#039;agit d&#039;un problème qui devrait être résolu dans le futur&lt;br /&gt;
&lt;br /&gt;
== Backup ==&lt;br /&gt;
&lt;br /&gt;
Faire régulièrement des sauvegardes de ~alis, /opt/vobox et des logs d&#039;Alien (ex: /var/log/alis)&lt;br /&gt;
&lt;br /&gt;
== Se connecter à la VO-BOX depuis le UI ==&lt;br /&gt;
&lt;br /&gt;
Faire &#039;gsissh -l user -p port_GSISSH &amp;lt;vobox_name&amp;gt; &#039;&lt;br /&gt;
 {{{&lt;br /&gt;
[diarra@ipngrid01 ~]$ gsissh -l alis -p 1975 ipnvobox&lt;br /&gt;
 }}}&lt;br /&gt;
&lt;br /&gt;
== Utiliser le serveur myproxy ==&lt;br /&gt;
&lt;br /&gt;
Sur le UI:&lt;br /&gt;
&lt;br /&gt;
 {{{&lt;br /&gt;
myproxy-init -s myproxy.cern.ch -d -n -t 48 -c 720&lt;br /&gt;
gsissh -l alis -p 1975 &amp;lt;vobox_name&amp;gt;&lt;br /&gt;
 }}}&lt;br /&gt;
Sur la VO-BOX:&lt;br /&gt;
&lt;br /&gt;
 {{{&lt;br /&gt;
vobox-proxy --vo alice --proxy-safe 3600 --myproxy-safe 259200 --email &amp;lt;votre_e-mail&amp;gt; register&lt;br /&gt;
 }}}&lt;br /&gt;
Pour s&#039;assurer que le proxy est renouveler automatiquement, vérifier que vous avez dans /opt/vobox/alice/log/events.log une ligne du genre:&lt;br /&gt;
 {{{&lt;br /&gt;
9/07/06 14:35:56 : Proxy for DN  &amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=IPNO/CN=Christophe Diarra/CN=proxy/CN=proxy/CN=proxy&amp;quot; successfully renewed&lt;br /&gt;
 }}}&lt;br /&gt;
Dans /opt/vobox/alice/proxy_repository/ vous trouverez le proxy.&lt;br /&gt;
== Start/Stop des services ==&lt;br /&gt;
&lt;br /&gt;
Les services peuvent être démarrés un par un. Les services disponibles sont :&lt;br /&gt;
Monitor, SE, CE, PackMan, Monalisa.&lt;br /&gt;
&lt;br /&gt;
Un script permet de les démarrer ou de les arrêter dans le bon ordre:&lt;br /&gt;
&lt;br /&gt;
 {{{&lt;br /&gt;
$VO_ALICE_SW_DIR/alien/etc/rc.d/init.d/aliend start|stop&lt;br /&gt;
 }}}&lt;br /&gt;
Pour démarrer ou arreter un seul service :&lt;br /&gt;
&lt;br /&gt;
 {{{&lt;br /&gt;
$VO_ALICE_SW_DIR/alien/scripts/lcg/lcgAlien.sh StartServiceName|StopServiceName&lt;br /&gt;
Exemple:&lt;br /&gt;
$VO_ALICE_SW_DIR/alien/scripts/lcg/lcgAlien.sh StopCE&lt;br /&gt;
$VO_ALICE_SW_DIR/alien/scripts/lcg/lcgAlien.sh StartCE&lt;br /&gt;
 }}}&lt;br /&gt;
&lt;br /&gt;
== Expiration du proxy ==&lt;br /&gt;
&lt;br /&gt;
Quand vous recevez un mail indiquant que le proxy est sur le point d&#039;expirer&lt;br /&gt;
(3 jours avant ?), ou si les logs le signalent, il faut renouveler le proxy sur&lt;br /&gt;
le serveur myproxy depuis le UI.&lt;br /&gt;
&lt;br /&gt;
 {{{&lt;br /&gt;
[root@ipnvobox log]# more /opt/vobox/alice/log/events.log&lt;br /&gt;
...&lt;br /&gt;
11/26/06 15:03:05 : Myproxy lifetime (256228 sec) shorter than security threshol&lt;br /&gt;
d (259200 sec)&lt;br /&gt;
11/26/06 15:03:05 : ... for DN /O=GRID-FR/C=FR/O=CNRS/OU=IPNO/CN=Christophe Diar&lt;br /&gt;
ra&lt;br /&gt;
11/26/06 15:03:05 : sendind notification email to diarra@ipno.in2p3.fr. SUCCESSF&lt;br /&gt;
ULL&lt;br /&gt;
 }}}&lt;br /&gt;
Sur le UI:&lt;br /&gt;
&lt;br /&gt;
 {{{&lt;br /&gt;
[diarra@ipnls2011 my]$ myproxy-info -d -s myproxy.cern.ch&lt;br /&gt;
username: /O=GRID-FR/C=FR/O=CNRS/OU=IPNO/CN=Christophe Diarra&lt;br /&gt;
owner: /O=GRID-FR/C=FR/O=CNRS/OU=IPNO/CN=Christophe Diarra&lt;br /&gt;
  timeleft: 52:25:26  (2.2 days)&lt;br /&gt;
&lt;br /&gt;
[diarra@ipnls2011 my]$ myproxy-init -s myproxy.cern.ch -d -n -t 48 -c 720&lt;br /&gt;
Your identity: /O=GRID-FR/C=FR/O=CNRS/OU=IPNO/CN=Christophe Diarra&lt;br /&gt;
Enter GRID pass phrase for this identity:&lt;br /&gt;
Creating proxy ............................................ Done&lt;br /&gt;
Proxy Verify OK&lt;br /&gt;
Your proxy is valid until: Wed Dec 27 09:56:25 2006&lt;br /&gt;
A proxy valid for 720 hours (30.0 days) for user /O=GRID-FR/C=FR/O=CNRS/OU=IPNO/CN=Christophe Diarra now exists on myproxy.cern.ch.&lt;br /&gt;
 }}}&lt;br /&gt;
&lt;br /&gt;
== Monitoring / Accounting ==&lt;br /&gt;
&lt;br /&gt;
 * [http://pcalimonitor.cern.ch:8889/ ALICE Monitoring with MonALISA]&lt;br /&gt;
 * [http://dashb-alice.cern.ch/dashboard/request.py/jobsummary?sortby=site ALICE Dashboard : Job Summary]&lt;br /&gt;
&lt;br /&gt;
== Liens Utiles ==&lt;br /&gt;
&lt;br /&gt;
[https://alien.cern.ch:8443/twiki/bin/view/AliEn/HowToDebugLcgVoBox Debugging &amp;amp; Troubleshooting the ALICE LCG Vo-Box]&lt;br /&gt;
&lt;br /&gt;
[http://goc.grid.sinica.edu.tw/gocwiki/VO-box_HowTo VO-box HowTo - description, installation, testing]&lt;br /&gt;
&lt;br /&gt;
[http://lcg2.in2p3.fr/wiki/index.php/Alice Page Alice LCG-France]&lt;br /&gt;
&lt;br /&gt;
[https://twiki.cern.ch/twiki/pub/LCG/VoBoxesInfo/VO-Box-security-policy_v05.doc VOBOX Security and Operations Questionnaires]&lt;br /&gt;
&lt;br /&gt;
[http://www.gridpp.ac.uk/wiki/VOBox Pages sur les VOboxes]&lt;br /&gt;
&lt;br /&gt;
[https://edms.cern.ch/document/655277/ LCG VOBox Operations Recommendations and Questionnaire]&lt;br /&gt;
&lt;br /&gt;
[http://alien.cern.ch/twiki/bin/view/AliEn/HowToInstallXrootd How to install xrootd on data servers]&lt;br /&gt;
&lt;br /&gt;
[http://xrootd.slac.stanford.edu/ XROOTD]&lt;br /&gt;
&lt;br /&gt;
= LEMON : Sytème de Monitoring Client/Serveur =&lt;br /&gt;
[[TracNav]]&lt;br /&gt;
&lt;br /&gt;
http://lemon.web.cern.ch/lemon/&lt;br /&gt;
http://lemon.web.cern.ch/lemon/doc/installation/installation.html&lt;br /&gt;
&lt;br /&gt;
[[TOC(inline)]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Installation du Serveur Lemon via quattor en SL4 ==&lt;br /&gt;
&lt;br /&gt;
Utilser les 2 templates :&lt;br /&gt;
{{{&lt;br /&gt;
pro_software_lemon_server_sl4_i386;&lt;br /&gt;
pro_service_lemon_server;&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Qui vont:&lt;br /&gt;
 &#039;&#039;&#039;1) installer les RPMs necessaires&#039;&#039;&#039;&lt;br /&gt;
{{{&lt;br /&gt;
(&amp;quot;edg-fabricMonitoring-server&amp;quot;,&amp;quot;2.13.0-3&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;rrdtool&amp;quot;,&amp;quot;1.0.49-2.1.el3.rf&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;lrf&amp;quot;,&amp;quot;1.0.7-15&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;ncm-fmonagent&amp;quot;,&amp;quot;1.0.32-1&amp;quot;,&amp;quot;noarch&amp;quot;);&lt;br /&gt;
(&amp;quot;perl-TimeDate&amp;quot;,&amp;quot;2.22-1&amp;quot;,&amp;quot;noarch&amp;quot;);&lt;br /&gt;
(&amp;quot;httpd&amp;quot;,&amp;quot;2.0.52-22.ent&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;httpd-suexec&amp;quot;,&amp;quot;2.0.52-22.ent&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;system-config-httpd&amp;quot;,&amp;quot;1.3.1-1&amp;quot;,&amp;quot;noarch&amp;quot;);&lt;br /&gt;
(&amp;quot;php-ldap&amp;quot;,&amp;quot;4.3.9-3.15&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;php-gd&amp;quot;,&amp;quot;4.3.9-3.15&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;php-imap&amp;quot;,&amp;quot;4.3.9-3.15&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;php-pear&amp;quot;,&amp;quot;4.3.9-3.15&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;php&amp;quot;,&amp;quot;4.3.9-3.15&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;oracle-xe-univ&amp;quot;,&amp;quot;10.2.0.1-1.0&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;cx_Oracle&amp;quot;,&amp;quot;4.1-1&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;lemon-ora-admin&amp;quot;,&amp;quot;1.0.4-96&amp;quot;,&amp;quot;noarch&amp;quot;);&lt;br /&gt;
# lemon-OraMon probleme de dependance: l&#039;installer avec --nodeps (info from Miroslav Sicket CERN)&lt;br /&gt;
(&amp;quot;lemon-OraMon&amp;quot;,&amp;quot;1.2.0-1&amp;quot;,&amp;quot;i386&amp;quot;);}}}&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039; 2) configurer les fichiers suivant :&#039;&#039;&#039;&lt;br /&gt;
{{{&lt;br /&gt;
/etc/lemon/server/lemon-oramon-server.conf&lt;br /&gt;
/var/www/html/lrf/config.php&lt;br /&gt;
/var/spool/edg-fmon-server/nodes.map&lt;br /&gt;
/etc/lemon/lemonmrd.conf&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 &#039;&#039;&#039; 3) et demarrer les 2 demons :&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
/etc/init.d/OraMon&lt;br /&gt;
/etc/init.d/lemonmrd&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Configuration Hors Quattor ==&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;1) Configuration de la Base de Donée:&#039;&#039;&#039; &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
/etc/init.d/oracle-xe configure&lt;br /&gt;
. /usr/lib/oracle/xe/app/oracle/product/10.2.0/server/bin/oracle_env.sh&lt;br /&gt;
sqlplus system&lt;br /&gt;
 SQL&amp;gt; EXEC DBMS_XDB.SETLISTENERLOCALACCESS(FALSE);       &lt;br /&gt;
/etc/init.d/oracle-xe start&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;2) Ajouter l&#039;utilisateur lemon&#039;&#039;&#039;&lt;br /&gt;
via l&#039;interface http://ma_machine:port_choisi/apex&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;3) Configuration de Oramon :&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
lemon-ora.admin --create-schema -d xe --data-tablespace=USERS --index-tablespace=USERS&lt;br /&gt;
lemon-ora.admin --file=/etc/oramon-server.conf -d xe --all  --data-tablespace=USERS --index-tablespace=USERS&lt;br /&gt;
lemon-ora.admin --file=/etc/oramon-server.conf -d xe  -u lemon --create-las --data-tablespace=USERS --index-tablespace=USERS&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;4) exporter les variables Oracle :&#039;&#039;&#039;&lt;br /&gt;
{{{&lt;br /&gt;
export LD_LIBRARY_PATH=/usr/lib/oracle/xe/app/oracle/product/10.2.0/server/lib:/usr/lib/oracle/10.2.0.3/client/lib&lt;br /&gt;
export ORACLE_SID=XE&lt;br /&gt;
export PATH=$PATH:/usr/lib/oracle/xe/app/oracle/product/10.2.0/server/bin&lt;br /&gt;
export ORACLE_HOME=/usr/lib/oracle/xe/app/oracle/product/10.2.0/server&lt;br /&gt;
export TNS_ADMIN=/usr/lib/oracle/xe/app/oracle/product/10.2.0/server/network/admin&lt;br /&gt;
export PYTHONPATH=/usr/lib/python2.2/site-packages&lt;br /&gt;
export NLS_LANG=AMERICAN_AMERICA.AL32UTF8&lt;br /&gt;
&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
     Dans tous les fichiers de demarrage suivant :&lt;br /&gt;
   {{{&lt;br /&gt;
   /etc/init.d/lemonmrd&lt;br /&gt;
   /etc/init.d/httpd&lt;br /&gt;
   /etc/sysconfig/OraMon&lt;br /&gt;
   }}}&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;5) Et verifier ensuite les logs, et que le serveur collecte bien des données :&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
/var/log/lemonmrd.log&lt;br /&gt;
/var/www/html/lrf/data&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Ajout de nouvelles sondes/metriques ==&lt;br /&gt;
&lt;br /&gt;
I) Sur le client&lt;br /&gt;
&lt;br /&gt;
a)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node07 sensor-example]# cat /etc/lemon/agent/sensors/torque_maui.conf&lt;br /&gt;
&lt;br /&gt;
 torque_maui&lt;br /&gt;
        CommandLine /usr/bin/perl /usr/libexec/sensors/lemon-sensor.pl RunningJobs&lt;br /&gt;
        MetricClasses&lt;br /&gt;
                torque_maui.RunningJobs&lt;br /&gt;
b)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node07 sensor-example]# cat /etc/lemon/agent/metrics/torque_maui.conf&lt;br /&gt;
&lt;br /&gt;
 20047&lt;br /&gt;
        MetricName     Jobsrunning&lt;br /&gt;
        MetricClass    torque_maui.RunningJobs&lt;br /&gt;
        Timing  3600   0&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
c)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node07 sensor-example]# cat /usr/libexec/sensors/RunningJobs.pm&lt;br /&gt;
&lt;br /&gt;
 #!/usr/bin/perl -w&lt;br /&gt;
 package torque_maui;&lt;br /&gt;
 # modules&lt;br /&gt;
 use diagnostics;&lt;br /&gt;
 use strict;&lt;br /&gt;
 # the sensor API interface&lt;br /&gt;
 use sensorAPI;&lt;br /&gt;
 # register module name and version&lt;br /&gt;
 registerVersion(&amp;quot;lemon-sensor-torque_maui&amp;quot;, &amp;quot;1.0.0-1&amp;quot;);&lt;br /&gt;
 # register the sensors metric classes&lt;br /&gt;
 registerMetric(&amp;quot;torque_maui.RunningJobs&amp;quot;, &amp;quot;report the Running Jobs&amp;quot;, &amp;quot;torque_maui::RunningJobs&amp;quot;);&lt;br /&gt;
 sub RunningJobs_sample() {&lt;br /&gt;
    # All function hooks in the sensor API: _sample(), _initialise(), _periodicCheck(), _destroy()&lt;br /&gt;
    # are passed a hash as the first argument. This hash provides the function with the ability to&lt;br /&gt;
    # access the methods and variables of the metric instance/object. This is Perls implementation&lt;br /&gt;
    # of Object Orientation&lt;br /&gt;
    my $obj  = shift;&lt;br /&gt;
    # variables&lt;br /&gt;
    my $line = `/usr/bin/showq -r | echo \$((\$(wc -l)-4))`;&lt;br /&gt;
            $obj-&amp;gt;storeSample01($line);&lt;br /&gt;
    # All functions called by the sensor API must return a value&lt;br /&gt;
    #  - if the sampling was successful you the return code should be 0 and -1 on error&lt;br /&gt;
     return 0;&lt;br /&gt;
      }&lt;br /&gt;
 1;&lt;br /&gt;
 #-- End-of-File --------------------------------------------------------------------------------------#&lt;br /&gt;
&lt;br /&gt;
II) Pour le serveur&lt;br /&gt;
&lt;br /&gt;
1) Pour Oramon&lt;br /&gt;
&lt;br /&gt;
a) modifier le fichier /etc/oramon-server.conf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 ………..&lt;br /&gt;
&lt;br /&gt;
                torque_maui.RunningJobs&lt;br /&gt;
                        Description Running jobs on the CE?&lt;br /&gt;
                        Fields&lt;br /&gt;
                                Running_Jobs&lt;br /&gt;
                                        Type INTEGER&lt;br /&gt;
                                        MetricUnit count&lt;br /&gt;
                                        MetricScale 1&lt;br /&gt;
&lt;br /&gt;
 ……………..&lt;br /&gt;
&lt;br /&gt;
                20047&lt;br /&gt;
                        MetricClass torque_maui.RunningJobs&lt;br /&gt;
                        MetricName Jobsrunning&lt;br /&gt;
                        Description Running Jobs on the CE?&lt;br /&gt;
                        TableName _20047&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Metric classes part into corresponding metric class part, metric instance into metric instances (be carefull about the tabs). &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
b) sourcer laes variables d&#039;environnement oracle :&lt;br /&gt;
&lt;br /&gt;
 . /usr/lib/oracle/xe/app/oracle/product/10.2.0/server/bin/oracle_env.sh&lt;br /&gt;
&lt;br /&gt;
c) mettre a jour la Database:&lt;br /&gt;
&lt;br /&gt;
 lemon-ora.admin --file=/etc/oramon-server.conf -d xe  -u lemon --all --data-tablespace=USERS --index-tablespace=USERS&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
2) Pour LRF&lt;br /&gt;
&lt;br /&gt;
a) # tail -3 /var/spool/edg-fmon-server/metrics.map&lt;br /&gt;
&lt;br /&gt;
 182 20015     /home.use&lt;br /&gt;
 183 30050     exitCodeNFS&lt;br /&gt;
 184 20047     RunningJobs&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
b)# more /etc/lemon/lemonmrd.conf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 ……………..&lt;br /&gt;
&lt;br /&gt;
 RunningJobs=Jobsrunning:Running_Jobs&lt;br /&gt;
&lt;br /&gt;
 ……………..&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
 [node07.datagrid.cea.fr]&lt;br /&gt;
 type=host&lt;br /&gt;
 metrics=+RunningJobs&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
c) #grep -i job /var/www/html/lrf/metric_map.php&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
                   &amp;quot;RunningJobs&amp;quot;        =&amp;gt; array(&amp;quot;RunningJobs&amp;quot;,&amp;quot;Jobs   running&amp;quot;,&amp;quot;count&amp;quot;,1,0,&#039;Jobsrunning.Running_Jobs&#039;),&lt;br /&gt;
&lt;br /&gt;
                        1 =&amp;gt; array(&#039;name&#039; =&amp;gt; &#039;JOBS STATISTICS&#039;, &#039;y-axis&#039; =&amp;gt; &#039;count&#039;, &#039;stack&#039; =&amp;gt; false, &#039;base&#039; =&amp;gt; 1,&lt;br /&gt;
&lt;br /&gt;
                            &#039;metrics&#039; =&amp;gt; array( 0 =&amp;gt; array(&#039;name&#039; =&amp;gt;  &#039;RunningJobs&#039;, &#039;summary&#039; =&amp;gt; true, &#039;title&#039; =&amp;gt; &#039;Running Jobs&#039;)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Pour configurer les alarmes ==&lt;br /&gt;
&lt;br /&gt;
a) créer un fichier xml par machine:&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
# cat /tmp/my_cnf_node07.xml&lt;br /&gt;
&amp;lt;?xml version = &#039;1.0&#039;?&amp;gt;&lt;br /&gt;
&amp;lt;CDBSEARCHLIST&amp;gt;&lt;br /&gt;
&amp;lt;HOST ID=&amp;quot;node07.datagrid.cea.fr&amp;quot; CLUSTER =&amp;quot;GRID_SERVICES&amp;quot; SUBCLUSTER =&amp;quot;&amp;quot; IMPORTANCE =&amp;quot;0&amp;quot; SURESTATUS =&amp;quot;TRUE&amp;quot; NOCONTACTTIMEOUT =&amp;quot;660&amp;quot;&lt;br /&gt;
PINGTIMEOUT =&amp;quot;&amp;quot; /&amp;gt;&lt;br /&gt;
&amp;lt;/CDBSEARCHLIST&amp;gt;&lt;br /&gt;
#&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
b) mettre a jour la Database:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
# lemon-ora.entities -u lemon -d xe -c /tmp/my_cnf_node07.xml&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Problemes rencontrés ==&lt;br /&gt;
&lt;br /&gt;
ne pas oublier d&#039;exporter les variables oracles&lt;br /&gt;
&lt;br /&gt;
le fichies nodes.map ne doit pas avoir de lignes vides&lt;br /&gt;
&lt;br /&gt;
Les Symlink avec cette version d&#039;apache ne fonctionne pas (on utlisie /var/www/html/lrf/data au lieu de /var/spool/data)&lt;br /&gt;
&lt;br /&gt;
Php avec oci8 tres sensibles aux versions (plus de soucis avec les versions SL4 ci dessus)&lt;br /&gt;
&lt;br /&gt;
= Test sur le réseaux datagrid.cea.fr: Iperf =&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Le 20/03/2007&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Avec 5 threads&#039;&#039;&#039; : &lt;br /&gt;
&lt;br /&gt;
Lyon -&amp;gt; Saclay : 550Mb/s (peu variable) ; &lt;br /&gt;
&lt;br /&gt;
Saclay -&amp;gt; Lyon : 600 Mb/s (très variables de 250 Mb/s à 750 Mb/s)).&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Avec 1 thread&#039;&#039;&#039; : 300 Mb/s dans les 2 sens&lt;br /&gt;
&lt;br /&gt;
= Test sur le réseaux datagrid.cea.fr: Transfert de fichiers -1ere PHASE- =&lt;br /&gt;
&lt;br /&gt;
=== Sites impliqués ===&lt;br /&gt;
* &#039;&#039;&#039;T1 CC-IN2P3 &#039;&#039;&#039;&lt;br /&gt;
** Contacts : &amp;lt;span style=&amp;quot;color:#0000F0;&amp;quot;&amp;gt; David Bouvet, Lionel Schwarz &amp;lt;/span&amp;gt;&lt;br /&gt;
** &#039;&#039;&#039;SE : ccsrm.in2p3.fr&#039;&#039;&#039;&lt;br /&gt;
*** Endpoint transferts DAPNIA-CC : /pnfs/in2p3.fr/data/dteam/disk/dapnia/&lt;br /&gt;
* &#039;&#039;&#039;T2 GRIF&#039;&#039;&#039;   &lt;br /&gt;
** Contacts : &amp;lt;span style=&amp;quot;color:#0000F0;&amp;quot;&amp;gt; Christine Leroy&amp;lt;/span&amp;gt;&lt;br /&gt;
** &#039;&#039;&#039;SE-DAPNIA : node12.datagrid.cea.fr&#039;&#039;&#039;&lt;br /&gt;
*** GlueServiceEndpoint: httpg://node12.datagrid.cea.fr:8443/srm/managerv1&lt;br /&gt;
*** GlueSAPath: /dpm/datagrid.cea.fr/home/dteam&lt;br /&gt;
** &#039;&#039;&#039;SE-LAL : grid05.lal.in2p3.fr&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
=== conditions de transferts pour FTS===&lt;br /&gt;
&lt;br /&gt;
Les transferts sont initiés depuis node02.datagrid.cea.fr&lt;br /&gt;
&lt;br /&gt;
* Avant tout transfert, il faut un &#039;&#039;&#039;proxy valide déposé sur un serveur MyProxy&#039;&#039;&#039; pour permettre au serveur FTS de renouveler un proxy expiré en cours de transfert&lt;br /&gt;
&lt;br /&gt;
 myproxy-init -s cclcgproxli01.in2p3.fr -d&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
* [[pour connaitre la configuration du canal FTS :]]&lt;br /&gt;
 glite-transfer-channel-list -s https://cclcgftsprod01.in2p3.fr:8443/glite-data-transfer-fts/services/ChannelManagement GRIF-IN2P3&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
* [[pour modifier la configuration du canal FTS :]]&lt;br /&gt;
&lt;br /&gt;
 glite-transfer-channel-set -s https://cclcgftsprod01.in2p3.fr:8443/glite-data-transfer-fts/services/ChannelManagement -f 10 -T 1 GRIF-IN2P3&lt;br /&gt;
&lt;br /&gt;
=== Les tests de transferts ===&lt;br /&gt;
&lt;br /&gt;
* [[Source d&#039;information:]]&lt;br /&gt;
-Script de test des transferts FTS proposé par GridPP à l&#039;adresse : http://www.gridpp.ac.uk/wiki/Transfer_Test_Python_Script_HOWTO &amp;lt;br&amp;gt;&lt;br /&gt;
-Le wiki GriPP est une mine d&#039;informations : http://www.gridpp.ac.uk/wiki/Main_Page&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
* [[1er Test: Utilisation du script de GRIDPP: filetransfer.py]]&lt;br /&gt;
&lt;br /&gt;
CC-&amp;gt;DAPNIA&lt;br /&gt;
 set SourceURL=&amp;quot;srm://ccsrm.in2p3.fr:8443/&amp;quot;&lt;br /&gt;
 set DestURL=&amp;quot;srm://node12.datagrid.cea.fr:8443/dpm/datagrid.cea.fr/home/dteam/&amp;quot;&lt;br /&gt;
&lt;br /&gt;
liste des fichiers:&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00007&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00008&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00009&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00011&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00012&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00013&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00014&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00015&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00016&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00017&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00018&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00019&lt;br /&gt;
&lt;br /&gt;
DAPNIA -&amp;gt; CC&lt;br /&gt;
&lt;br /&gt;
 set SourceURL=&amp;quot;srm://node12.datagrid.cea.fr:8443/dpm/datagrid.cea.fr/home/dteam/dapnia/&amp;quot;&lt;br /&gt;
 set DestURL=&amp;quot;srm://ccsrm.in2p3.fr:8443/pnfs/in2p3.fr/data/dteam/disk/dapnia/&amp;quot;&lt;br /&gt;
&lt;br /&gt;
liste des fichiers (1 seul SE-DISK)&lt;br /&gt;
&lt;br /&gt;
 cleroy/ATLAS-file00007&lt;br /&gt;
 cleroy/ATLAS-file00008&lt;br /&gt;
 cleroy/ATLAS-file00009&lt;br /&gt;
 cleroy/ATLAS-file00011&lt;br /&gt;
 cleroy/ATLAS-file00012&lt;br /&gt;
 cleroy/ATLAS-file00013&lt;br /&gt;
 cleroy/ATLAS-file00014&lt;br /&gt;
 cleroy/ATLAS-file00015&lt;br /&gt;
 cleroy/ATLAS-file00016&lt;br /&gt;
 cleroy/ATLAS-file00017&lt;br /&gt;
 cleroy/ATLAS-file00018&lt;br /&gt;
 cleroy/ATLAS-file00019&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
en parrallele avec n=10 pour les 2 type de transfet, pour durer environ 20 minutes (1Gb/s).&lt;br /&gt;
FTS configuré avec (f6;T2). &lt;br /&gt;
&lt;br /&gt;
 ESSAI du nbre de  |&lt;br /&gt;
 (fichier;stream)  | Bande passante(Mb/s)  | &lt;br /&gt;
 ------------------+-----------------------+&lt;br /&gt;
 | (f8;T1)         | 242                   |&lt;br /&gt;
 | (f6;T1)         | 301                   |&lt;br /&gt;
 | (f3;T1)         | 302                   |&lt;br /&gt;
 | (f2;T1)         | 185                   |&lt;br /&gt;
 | (f6;T2)         | 312                   |&lt;br /&gt;
 | (f6;T6)         | 284                   |&lt;br /&gt;
 | (f6;T4)         | 280                   |&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Resultat 26/04/2007 :&lt;br /&gt;
&lt;br /&gt;
D-CC&lt;br /&gt;
 Transfer Bandwidth Report:&lt;br /&gt;
 110/120 transferred in 2668.16920614 seconds&lt;br /&gt;
 81081938300.0 bytes transferred.&lt;br /&gt;
 Bandwidth: 243.108834667Mb/s&lt;br /&gt;
&lt;br /&gt;
CC-D&lt;br /&gt;
 Transfer Bandwidth Report:&lt;br /&gt;
 120/120 transferred in 3033.88385892 seconds&lt;br /&gt;
 88453023600.0 bytes transferred.&lt;br /&gt;
 Bandwidth: 233.240368355Mb/s&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Débit réseaux pour le SE DISK du DAPNIA (derriere node12):&lt;br /&gt;
&lt;br /&gt;
http://lcg2.in2p3.fr/wiki/images/Node11_net_fts_26042007.gif&lt;br /&gt;
&lt;br /&gt;
Débit réseaux routeur datagrid.cea.fr:&lt;br /&gt;
&lt;br /&gt;
http://lcg2.in2p3.fr/wiki/images/Routeur_datagridceafr_26042007.png&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
* [[2eme test: Utilisation du script de GRIDPP (filetransfer.py) et globus_url_copy]]&lt;br /&gt;
&lt;br /&gt;
utilisation de:&lt;br /&gt;
* filetransfer.py entre DAPNIA &amp;lt;-&amp;gt; Lyon (SE &amp;lt;-&amp;gt; SE)&lt;br /&gt;
* globus_url_copy et lcg-cr entre DAPNIA &amp;lt;-&amp;gt; Orsay (UI &amp;lt;-&amp;gt; SE)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Le 02/05/2007: Meme occupation réseaux :300Mb/s&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== &#039;&#039;&#039;CONCLUSION PRELIMINIARE&#039;&#039;&#039; ===&lt;br /&gt;
&lt;br /&gt;
=&amp;gt; Ces tests avaient pour but d&#039;occuper le plus possible la bande passante de notre réseaux datagrid.cea.fr, pour s&#039;assurer que le routeur tenait bien la charge&lt;br /&gt;
&lt;br /&gt;
=&amp;gt; Nous n&#039;avons pas reussi à occuper toute la bande passante: tests à poursuivre avec plus de client/serveur =&amp;gt; Le comble de l&#039;informaticien: réussir à faire mieux que ses utilisateurs:&lt;br /&gt;
&lt;br /&gt;
One day, One atlas physicit, Many jobs:&lt;br /&gt;
&lt;br /&gt;
http://lcg2.in2p3.fr/wiki/images/Node11.datagrid.cea.fr.rrd_NUMKBREADAVG_d.gif&lt;br /&gt;
&lt;br /&gt;
Débit réseaux SE DISK, le 16/06/2006&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Test sur le réseaux datagrid.cea.fr: Transfert de fichiers &#039;&#039;&#039;-2eme PHASE (3 SE-DISK au DAPNIA et multi threading)-&#039;&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Transfert FTS: (CC-&amp;gt;DAPNIA) // (DAPNIA-&amp;gt;CC) avec plusieurs SE-DISK du DAPNIA (node11, node18, node20) ===&lt;br /&gt;
&lt;br /&gt;
=== Transfert: FTS (CC-&amp;gt;DAPNIA) // FTS (DAPNIA-&amp;gt;CC) ) // globus-url-copy (UI DAPNIA -&amp;gt; SE LAL) // globus-url-copy (SE LAL -&amp;gt; UI DAPNIA) ===&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Priorites locales Filtre TORQUE-&#039;&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
http://lcg2.in2p3.fr/wiki/images/Submit_filter.txt&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Configuration thumper&#039;&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
La DOc:&lt;br /&gt;
http://www.sun.com/products-n-solutions/hardware/docs/pdf/820-1151-10.pdf&lt;br /&gt;
&lt;br /&gt;
http://doc.fedora-fr.org/RAID_Logiciel:_Comment_Installer_et_G%C3%A9rer_un_System_Raid&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Formatage des disks: ==&lt;br /&gt;
&lt;br /&gt;
Il faut des partitions du type type Linux raid autodetect (type fd)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 for i in   &lt;br /&gt;
 /dev/sda /dev/sdaa /dev/sdab /dev/sdad /dev/sdae /dev/sdaf /dev/sdag /dev/sdah /dev/sdai /dev/sdaj /dev/sd    /dev/sdal /dev/sdam /dev/sdan /dev/sdao /dev/sdap /dev/sdaq /dev/sdar /dev/sdas /dev/sdat /dev/sdau /dev/sdav /dev/sdd /dev/sde /dev/sdf /dev/sdg /dev/sdh /dev/sdi /dev/sdj /dev/sdk /dev/sdl /dev/sdm /dev/sdn /dev/sdo &lt;br /&gt;
 /dev/sdp /dev/sdq /dev/sdr /dev/sds /dev/sdt /dev/sdu /dev/sdv /dev/sdw /dev/sdx /dev/sdz; do export  &lt;br /&gt;
 $i; /root/script_raid $i; done&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node23 ~]# more /root/script_raid&lt;br /&gt;
 sfdisk -f $1 &amp;lt;&amp;lt; EOF&lt;br /&gt;
 0 60801 fd&lt;br /&gt;
 ;&lt;br /&gt;
 ;&lt;br /&gt;
 ;&lt;br /&gt;
 EOF&lt;br /&gt;
&lt;br /&gt;
Pour verifier:&lt;br /&gt;
&lt;br /&gt;
 # for i  &lt;br /&gt;
    &lt;br /&gt;
 in  /dev/sda /dev/sdaa /dev/sdab /dev/sdad /dev/sdae /dev/sdaf /dev/sdag /dev/sdah /dev/sdai /dev/sdaj &lt;br /&gt;
 /dev/sdak /dev/sdal /dev/sdam /dev/sdan /dev/sdao /dev/sdap /dev/sdaq /dev/sdar /dev/sdas /dev/sdat /dev/sdau /dev/sdav /dev/sdd /dev/sde /dev/sdf /dev/sdg /dev/sdh /dev/sdi /dev/sdj /dev/sdk /dev/sdl /dev/sdm /dev/sdn  /dev/sdo /dev/sdp /dev/sdq /dev/sdr /dev/sds /dev/sdt /dev/sdu /dev/sdv /dev/sdw /dev/sdx /dev/sdz; do  &lt;br /&gt;
 sfdisk --list $i ; done | more&lt;br /&gt;
&lt;br /&gt;
== Creation des Raids logiciel: ==&lt;br /&gt;
&lt;br /&gt;
Conseil de SUN:&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&amp;quot;Diff Raid 5 config does not change the availability that much, Raid 5 is one way parity, if you lose two disks in the same raid group, you lose the  data. The difference is probability of losing two disks is higher when you have higher number of disks in a raid group. We usually suggest using one disk out of each controller for parity, (six controller total), 5+1 configuration, 8 raid groups. Overhead is 1/6 about 16% capacity loss. add the OS disk, 20TB.&amp;quot;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 mdadm --create /dev/md1 --level=5 --raid- &lt;br /&gt;
 devices=6 /dev/sdab1 /dev/sdt1 /dev/sdar1 /dev/sdaj1 /dev/sdl1 /dev/sdd1&lt;br /&gt;
 mdadm --create /dev/md2 --level=5 --raid- &lt;br /&gt;
 devices=6 /dev/sdaf1 /dev/sdx1 /dev/sdav1 /dev/sdan1 /dev/sdp1 /dev/sdh&lt;br /&gt;
 mdadm --create /dev/md3 --level=5 --raid- &lt;br /&gt;
 devices=6 /dev/sdaa1 /dev/sds1 /dev/sdaq1 /dev/sdai1 /dev/sdk1 /dev/sdc1&lt;br /&gt;
 mdadm --create /dev/md4 --level=5 --raid- &lt;br /&gt;
 devices=6 /dev/sdae1 /dev/sdw1 /dev/sdau1 /dev/sdam1 /dev/sdo1 /dev/sdg1&lt;br /&gt;
 mdadm --create /dev/md5 --level=5 --raid- &lt;br /&gt;
 devices=6 /dev/sdz1 /dev/sdr1 /dev/sdap1 /dev/sdah1 /dev/sdj1 /dev/sdb1&lt;br /&gt;
 mdadm --create /dev/md6 --level=5 --raid- &lt;br /&gt;
 devices=6 /dev/sdad1 /dev/sdv1 /dev/sdat1 /dev/sdal1 /dev/sdn1 /dev/sdf1&lt;br /&gt;
 mdadm --create /dev/md7 --level=5 --raid-devices=5 /dev/sdq1 /dev/sdao1 /dev/sdag1 /dev/sdi1 /dev/sda1&lt;br /&gt;
 mdadm --create /dev/md8 --level=5 --raid-devices=5 /dev/sdu1 /dev/sdas1 /dev/sdak1 /dev/sdm1 /dev/sde1&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Sinon il est possible d&#039;avoir un disk de spare pour tous les raids, cf doc :&#039;&#039;&lt;br /&gt;
[http://images.globalknowledge.com/wwwimages/whitepaperpdf/WP_RCHE_10TipsTricks1.pdf] &lt;br /&gt;
&#039;&#039;mais je n&#039;ai pas eu le temps de tester.&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Pour verifier:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 cat /proc/mdstat&lt;br /&gt;
 mdadm --query /dev/md1&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Pour supprimer:&lt;br /&gt;
&lt;br /&gt;
 mdadm /dev/md1 stop&lt;br /&gt;
 mdadm /dev/md1 --remove&lt;br /&gt;
 mdadm --zero-superblock /dev/hdxx1&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 mkfs -t ext3 /dev/md1&lt;br /&gt;
 mount /dev/md1 /scratch&lt;br /&gt;
&lt;br /&gt;
== Pour les drivers: ==&lt;br /&gt;
&lt;br /&gt;
telecharger les outils et driver linux:&lt;br /&gt;
&lt;br /&gt;
http://www.sun.com/servers/x64/x4500/downloads.jsp&lt;br /&gt;
&lt;br /&gt;
telecharger: kernel-largesmp-devel-2.6.9-42.0.3.EL.x86_64&lt;br /&gt;
&lt;br /&gt;
Par contre il crée &lt;br /&gt;
&#039;&#039;&#039;/usr/src/kernels/2.6.9-42.0.3.EL-largesmp-x86_64&#039;&#039;&#039;  &lt;br /&gt;
au lieu de &#039;&#039;&#039;/usr/src/kernels/2.6.9-42.0.3.ELlargesmp-x86_64&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
faire donc un:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 cp -r /usr/src/kernels/2.6.9-42.0.3.EL-largesmp-x86_64 /usr/src/kernels/2.6.9-42.0.3.ELlargesmp-x86_64&lt;br /&gt;
&lt;br /&gt;
Ensuite:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 rpmbuild --rebuild   mvSatalinux-3.6.3_2-2.6.9_42.ELsmp_1.src.rpm&lt;br /&gt;
 rpm -e (de tous les rpm: &amp;quot;rpm -qa | grep -i mvsata&amp;quot;)&lt;br /&gt;
 rpm -ivh /usr/src/redhat/RPMS/x86_64/mvSatalinux-3.6.3_2-2.6.9_42.0.3.ELlargesmp_1.x86_64.rpm&lt;br /&gt;
 rpm -ivh /usr/src/redhat/RPMS/x86_64/mvSatalinux-debuginfo-3.6.3_2-2.6.9_42.0.3.ELlargesmp_1.x86_64.rpm&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
verifier:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 # modinfo mv_sata&lt;br /&gt;
 filename:       /lib/modules/2.6.9-42.0.3.ELlargesmp/kernel/drivers/scsi/mv_sata.ko&lt;br /&gt;
 description:    Marvell Serial ATA PCI-X Adapter version: 3.6.3_2&lt;br /&gt;
 license:        BSD&lt;br /&gt;
 alias:          pci:v000011ABd00007042sv*sd*bc*sc*i*&lt;br /&gt;
 alias:          pci:v000011ABd00006042sv*sd*bc*sc*i*&lt;br /&gt;
 alias:          pci:v000011ABd00006041sv*sd*bc*sc*i*&lt;br /&gt;
 alias:          pci:v000011ABd00006081sv*sd*bc*sc*i*&lt;br /&gt;
 alias:          pci:v000011ABd00005041sv*sd*bc*sc*i*&lt;br /&gt;
 alias:          pci:v000011ABd00005040sv*sd*bc*sc*i*&lt;br /&gt;
 alias:          pci:v000011ABd00005081sv*sd*bc*sc*i*&lt;br /&gt;
 alias:          pci:v000011ABd00005080sv*sd*bc*sc*i*&lt;br /&gt;
 depends:        scsi_mod&lt;br /&gt;
 vermagic:       2.6.9-42.0.3.ELlargesmp SMP gcc-3.4&lt;br /&gt;
 }}}&lt;br /&gt;
&lt;br /&gt;
== Test Performance Lecture/ecriture ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 # more /proc/mdstat&lt;br /&gt;
 Personalities : [raid5]&lt;br /&gt;
 md7 : active raid5 sdao1[1] sdag1[2] sdq1[0] sdi1[3]&lt;br /&gt;
      1953535744 blocks level 5, 64k chunk, algorithm 2 [5/4] [UUUU_]&lt;br /&gt;
 md5 : active raid5 sdap1[2] sdah1[3] sdz1[0] sdr1[1] sdj1[4] sdb1[5]&lt;br /&gt;
      2441919680 blocks level 5, 64k chunk, algorithm 2 [6/6] [UUUUUU]&lt;br /&gt;
 md3 : active raid5 sdaq1[2] sdai1[3] sdaa1[0] sds1[1] sdk1[4]&lt;br /&gt;
      2441919680 blocks level 5, 64k chunk, algorithm 2 [6/5] [UUUUU_]&lt;br /&gt;
 md8 : active raid5 sdas1[1] sdak1[2] sdu1[0] sdm1[3] sde1[4]&lt;br /&gt;
      1953535744 blocks level 5, 64k chunk, algorithm 2 [5/5] [UUUUU]&lt;br /&gt;
 md6 : active raid5 sdat1[2] sdal1[3] sdad1[0] sdv1[1] sdn1[4] sdf1[5]&lt;br /&gt;
      2441919680 blocks level 5, 64k chunk, algorithm 2 [6/6] [UUUUUU]&lt;br /&gt;
 md4 : active raid5 sdau1[2] sdam1[3] sdae1[0] sdw1[1] sdo1[4] sdg1[5]&lt;br /&gt;
      2441919680 blocks level 5, 64k chunk, algorithm 2 [6/6] [UUUUUU]&lt;br /&gt;
 md2 : active raid5 sdav1[2] sdan1[3] sdaf1[0] sdx1[1] sdp1[4]&lt;br /&gt;
      2441919680 blocks level 5, 64k chunk, algorithm 2 [6/5] [UUUUU_]&lt;br /&gt;
 md1 : active raid5 sdar1[2] sdaj1[3] sdab1[0] sdt1[1] sdl1[4] sdd1[5]&lt;br /&gt;
      2441919680 blocks level 5, 64k chunk, algorithm 2 [6/6] [UUUUUU]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 en MB/s&lt;br /&gt;
 Volumétrie: 19TB utile&lt;br /&gt;
 |	   md1    md2     md3	  md4    md5   md6      md7    md8    MOY     TOT (Mb/s)   Mb/s/TB	&lt;br /&gt;
 Write//    71,22  69,31  68,13  71,26  70,14   69,56   62,56  65,89   68,50     4384,56     230,76&lt;br /&gt;
 write seq 111,01 103,42  102,24 109,77	112,58	107,02	84,61  89,6   102,53125			&lt;br /&gt;
 read //   99,62   98,75   98,22  99,78	100,93	100,01	85,7   86,69   96,2125	 6157,6	     324,08&lt;br /&gt;
 read seq  275,4  254,28  250,69 267,62	274,16	280,52	188,37 197,58 248,5775&lt;br /&gt;
&lt;br /&gt;
== Configuration Reseaux avec 2 intefaces bond ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node23 ~]# more /etc/modprobe.conf&lt;br /&gt;
 alias eth0 e1000&lt;br /&gt;
 alias eth1 e1000&lt;br /&gt;
 alias eth2 e1000&lt;br /&gt;
 alias eth3 e1000&lt;br /&gt;
 alias eth4 e1000&lt;br /&gt;
 alias eth5 e1000&lt;br /&gt;
 alias eth6 e1000&lt;br /&gt;
 alias eth7 e1000&lt;br /&gt;
 install ipw3945 /sbin/modprobe --ignore-install ipw3945 ; sleep 0.5 ; /sbin/ipw3&lt;br /&gt;
 945d --quiet&lt;br /&gt;
 remove ipw3945 /sbin/ipw3945d --kill ; /sbin/modprobe -r --ignore-remove ipw3945&lt;br /&gt;
 alias usb-controller ehci-hcd&lt;br /&gt;
 alias usb-controller1 ohci-hcd&lt;br /&gt;
 ####BONDING&lt;br /&gt;
 alias bond0 bonding&lt;br /&gt;
 alias bond1 bonding&lt;br /&gt;
 #options bond0 -o bond0 mode=0 miimon=100&lt;br /&gt;
 options bond0 mode=0 miimon=100 max_bonds=2&lt;br /&gt;
 options bond1 -o bond1 mode=0 miimon=100&lt;br /&gt;
 ####END BONDING&lt;br /&gt;
 #Added mv_sata binary driver rpm installation&lt;br /&gt;
 alias scsi_hostadapter mv_sata&lt;br /&gt;
 alias sata_mv off&lt;br /&gt;
 [root@node23 ~]#&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node23 ~]# more /etc/sysconfig/network-scripts/ifcfg-*&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-bond0&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=bond0&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=static&lt;br /&gt;
 IPADDR=192.54.208.82&lt;br /&gt;
 NETMASK=255.255.255.0&lt;br /&gt;
 BROADCAST=192.54.208.255&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-bond1&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=bond1&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=static&lt;br /&gt;
 IPADDR=192.54.208.101&lt;br /&gt;
 NETMASK=255.255.255.0&lt;br /&gt;
 BROADCAST=192.54.208.255&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-eth0&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=eth0&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=none&lt;br /&gt;
 MASTER=bond0&lt;br /&gt;
 SLAVE=yes&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-eth1&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=eth1&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=none&lt;br /&gt;
 MASTER=bond0&lt;br /&gt;
 SLAVE=yes&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-eth2&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=eth2&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=none&lt;br /&gt;
 MASTER=bond0&lt;br /&gt;
 SLAVE=yes&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-eth3&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=eth3&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=none&lt;br /&gt;
 MASTER=bond0&lt;br /&gt;
 SLAVE=yes&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-eth4&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=eth4&lt;br /&gt;
 TYPE=Ethernet &lt;br /&gt;
 BOOTPROTO=none&lt;br /&gt;
 MASTER=bond1&lt;br /&gt;
 SLAVE=yes&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-eth5&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=eth5&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=none&lt;br /&gt;
 MASTER=bond1&lt;br /&gt;
 SLAVE=yes&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-eth6&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=eth6&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=none&lt;br /&gt;
 MASTER=bond1&lt;br /&gt;
 SLAVE=yes&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-eth7&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=eth7&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=none&lt;br /&gt;
 MASTER=bond1&lt;br /&gt;
 SLAVE=yes&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 # ifconfig&lt;br /&gt;
 bond0     Link encap:Ethernet  HWaddr 00:14:4F:20:FC:B0&lt;br /&gt;
          inet addr:192.54.208.82  Bcast:192.54.208.255  Mask:255.255.255.0&lt;br /&gt;
          inet6 addr: fe80::200:ff:fe00:0/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING MASTER MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:96129841 errors:2 dropped:0 overruns:0 frame:1&lt;br /&gt;
          TX packets:86702743 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:0&lt;br /&gt;
          RX bytes:144510750072 (134.5 GiB)  TX bytes:7460167641 (6.9 GiB)&lt;br /&gt;
 bond1     Link encap:Ethernet  HWaddr 00:15:17:2A:09:A6&lt;br /&gt;
          inet addr:192.54.208.101  Bcast:192.54.208.255  Mask:255.255.255.0&lt;br /&gt;
          inet6 addr: fe80::200:ff:fe00:0/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING MASTER MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:934011 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:33 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:0&lt;br /&gt;
          RX bytes:62926730 (60.0 MiB)  TX bytes:2572 (2.5 KiB)&lt;br /&gt;
 eth0      Link encap:Ethernet  HWaddr 00:14:4F:20:FC:B0&lt;br /&gt;
          inet6 addr: fe80::214:4fff:fe20:fcb0/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING SLAVE MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:73871160 errors:2 dropped:0 overruns:0 frame:1&lt;br /&gt;
          TX packets:21675694 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:1000&lt;br /&gt;
          RX bytes:110757099435 (103.1 GiB)  TX bytes:1865279045 (1.7 GiB)&lt;br /&gt;
          Base address:0xac00 Memory:fd2e0000-fd300000&lt;br /&gt;
 eth1      Link encap:Ethernet  HWaddr 00:14:4F:20:FC:B0&lt;br /&gt;
          inet6 addr: fe80::214:4fff:fe20:fcb0/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING SLAVE MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:22109357 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:21675683 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:1000&lt;br /&gt;
          RX bytes:33554660288 (31.2 GiB)  TX bytes:1864208904 (1.7 GiB)&lt;br /&gt;
          Base address:0xa800 Memory:fd2c0000-fd2e0000&lt;br /&gt;
 eth2      Link encap:Ethernet  HWaddr 00:14:4F:20:FC:B0&lt;br /&gt;
          inet6 addr: fe80::214:4fff:fe20:fcb0/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING SLAVE MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:55195 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:21675683 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:1000&lt;br /&gt;
          RX bytes:68939873 (65.7 MiB)  TX bytes:1865275229 (1.7 GiB)&lt;br /&gt;
          Base address:0xbc00 Memory:fd3e0000-fd400000&lt;br /&gt;
 eth3      Link encap:Ethernet  HWaddr 00:14:4F:20:FC:B0&lt;br /&gt;
          inet6 addr: fe80::214:4fff:fe20:fcb0/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING SLAVE MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:94129 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:21675683 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:1000&lt;br /&gt;
          RX bytes:130050476 (124.0 MiB)  TX bytes:1865404463 (1.7 GiB)&lt;br /&gt;
          Base address:0xb800 Memory:fd3c0000-fd3e0000&lt;br /&gt;
 eth4      Link encap:Ethernet  HWaddr 00:15:17:2A:09:A6&lt;br /&gt;
          inet6 addr: fe80::215:17ff:fe2a:9a6/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING SLAVE MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:0 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:10 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:1000&lt;br /&gt;
          RX bytes:0 (0.0 b)  TX bytes:758 (758.0 b)&lt;br /&gt;
          Base address:0xec00 Memory:fe4e0000-fe500000&lt;br /&gt;
 eth5      Link encap:Ethernet  HWaddr 00:15:17:2A:09:A6&lt;br /&gt;
          inet6 addr: fe80::215:17ff:fe2a:9a6/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING SLAVE MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:5 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:9 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:1000&lt;br /&gt;
          RX bytes:390 (390.0 b)  TX bytes:714 (714.0 b)&lt;br /&gt;
          Base address:0xe800 Memory:fe4c0000-fe4e0000&lt;br /&gt;
 eth6      Link encap:Ethernet  HWaddr 00:15:17:2A:09:A6&lt;br /&gt;
          inet6 addr: fe80::215:17ff:fe2a:9a6/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING SLAVE MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:1 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:8 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:1000&lt;br /&gt;
          RX bytes:66 (66.0 b)  TX bytes:628 (628.0 b)&lt;br /&gt;
          Base address:0xfc00 Memory:fe7e0000-fe800000&lt;br /&gt;
 eth7      Link encap:Ethernet  HWaddr 00:15:17:2A:09:A6&lt;br /&gt;
          inet6 addr: fe80::215:17ff:fe2a:9a6/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING SLAVE MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:934005 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:6 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:1000&lt;br /&gt;
          RX bytes:62926274 (60.0 MiB)  TX bytes:472 (472.0 b)&lt;br /&gt;
          Base address:0xf800 Memory:fe7c0000-fe7e0000&lt;br /&gt;
 lo        Link encap:Local Loopback&lt;br /&gt;
          inet addr:127.0.0.1  Mask:255.0.0.0&lt;br /&gt;
          inet6 addr: ::1/128 Scope:Host&lt;br /&gt;
          UP LOOPBACK RUNNING  MTU:16436  Metric:1&lt;br /&gt;
          RX packets:294 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:294 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:0&lt;br /&gt;
          RX bytes:46053 (44.9 KiB)  TX bytes:46053 (44.9 KiB)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Exemple de connection avec iperf (4 client pour chacune des interfaces)&lt;br /&gt;
&lt;br /&gt;
 tcp        0      0 *:20008                     *:*                         LISTEN&lt;br /&gt;
 tcp        0      0 *:20009                     *:*                         LISTEN&lt;br /&gt;
 tcp        0      0 node23.datagrid.cea.f:20008 wn048.datagrid.cea.fr:51269 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node27.datagrid.cea.f:20009 node02.datagrid.cea.f:39957 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node23.datagrid.cea.f:20008 wn004.datagrid.cea.fr:35417 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node23.datagrid.cea.f:20008 node01.datagrid.cea.f:38544 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node27.datagrid.cea.f:20009 wn049.datagrid.cea.fr:34206 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node23.datagrid.cea.f:20008 wn005.datagrid.cea.fr:35380 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node27.datagrid.cea.f:20009 wn050.datagrid.cea.fr:34567 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node27.datagrid.cea.f:20009 wn006.datagrid.cea.fr:42137 ESTABLISHED&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Exemple de configuration pour le SE DPM&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node24 root]# dpm-qryconf&lt;br /&gt;
 POOL CMS_SC DEFSIZE 200.00M GC_START_THRESH 0 GC_STOP_THRESH 0 DEF_LIFETIME 7.0d DEFPINTIME 2.0h  &lt;br /&gt;
 MAX_LIFETIME 1.0m MAXPINTIME 12.0h FSS_POLICY maxfreespace GC_POLICY lru RS_POLICY fifo GIDS 0 S_TYPE -  &lt;br /&gt;
 MIG_POLICY none RET_POLICY R&lt;br /&gt;
                              CAPACITY 23.51T FREE 22.27T ( 94.7%)&lt;br /&gt;
  node25.datagrid.cea.fr /pool_node25 CAPACITY 4.48T FREE 4.39T ( 98.1%)&lt;br /&gt;
  node26.datagrid.cea.fr /pool_node26 CAPACITY 233.71G FREE 216.23G ( 92.5%)&lt;br /&gt;
  node26.datagrid.cea.fr /pool_node26_2 CAPACITY 1.79T FREE 1.69T ( 94.5%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam1 CAPACITY 2.24T FREE 2.09T ( 93.2%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam2 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam3 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam7 CAPACITY 1.79T FREE 1.68T ( 93.8%)&lt;br /&gt;
  node27.datagrid.cea.fr /dteam4 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node27.datagrid.cea.fr /dteam5 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node27.datagrid.cea.fr /dteam6 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node27.datagrid.cea.fr /dteam8 CAPACITY 1.79T FREE 1.68T ( 93.8%)&lt;br /&gt;
&lt;br /&gt;
== Configuration Reseaux avec 1 intefaces bond ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 # more /etc/modprobe.conf&lt;br /&gt;
 alias eth0 e1000&lt;br /&gt;
 alias eth1 e1000&lt;br /&gt;
 alias eth2 e1000&lt;br /&gt;
 alias eth3 e1000&lt;br /&gt;
 alias eth4 e1000&lt;br /&gt;
 alias eth5 e1000&lt;br /&gt;
 alias eth6 e1000&lt;br /&gt;
 alias eth7 e1000&lt;br /&gt;
 options e1000 InterruptThrottleRate=3000&lt;br /&gt;
 install ipw3945 /sbin/modprobe --ignore-install ipw3945 ; sleep 0.5 ; /sbin/ipw3&lt;br /&gt;
 945d --quiet&lt;br /&gt;
 remove ipw3945 /sbin/ipw3945d --kill ; /sbin/modprobe -r --ignore-remove ipw3945&lt;br /&gt;
 alias usb-controller ehci-hcd&lt;br /&gt;
 alias usb-controller1 ohci-hcd&lt;br /&gt;
 ####BONDING&lt;br /&gt;
 alias bond0 bonding&lt;br /&gt;
 options bond0 mode=0 miimon=100&lt;br /&gt;
 ####END BONDING&lt;br /&gt;
 #Added mv_sata binary driver rpm installation&lt;br /&gt;
 alias scsi_hostadapter mv_sata&lt;br /&gt;
 alias sata_mv off&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
recharger les modules, redemarrer le reseaux, et verifier que tout est OK:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 # more /proc/net/bonding/bond0&lt;br /&gt;
 Ethernet Channel Bonding Driver: v2.6.3 (June 8, 2005)&lt;br /&gt;
 Bonding Mode: load balancing (round-robin)&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 MII Polling Interval (ms): 100&lt;br /&gt;
 Up Delay (ms): 0&lt;br /&gt;
 Down Delay (ms): 0&lt;br /&gt;
 Slave Interface: eth0&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 Link Failure Count: 0&lt;br /&gt;
 Permanent HW addr: 00:14:4f:20:fc:b0&lt;br /&gt;
 Slave Interface: eth1&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 Link Failure Count: 0&lt;br /&gt;
 Permanent HW addr: 00:14:4f:20:fc:b1&lt;br /&gt;
 Slave Interface: eth2&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 Link Failure Count: 0&lt;br /&gt;
 Permanent HW addr: 00:14:4f:20:fc:b2&lt;br /&gt;
 Slave Interface: eth3&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 Link Failure Count: 0&lt;br /&gt;
 Permanent HW addr: 00:14:4f:20:fc:b3 &lt;br /&gt;
 Slave Interface: eth4&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 Link Failure Count: 0&lt;br /&gt;
 Permanent HW addr: 00:15:17:2a:09:a6&lt;br /&gt;
 Slave Interface: eth5&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 Link Failure Count: 0&lt;br /&gt;
 Permanent HW addr: 00:15:17:2a:09:a7&lt;br /&gt;
 Slave Interface: eth6&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 Link Failure Count: 0&lt;br /&gt;
 Permanent HW addr: 00:15:17:2a:07:8c&lt;br /&gt;
 Slave Interface: eth7&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 Link Failure Count: 0&lt;br /&gt;
 Permanent HW addr: 00:15:17:2a:07:8d&lt;br /&gt;
&lt;br /&gt;
== Probleme sur les cartes reseaux supplémentaires: ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel: e1000: eth4: e1000_clean_tx_irq: Detected Tx Unit Hang&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   Tx Queue             &amp;lt;0&amp;gt;&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   TDH                  &amp;lt;2&amp;gt;&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   TDT                  &amp;lt;2&amp;gt;&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   next_to_use          &amp;lt;2&amp;gt;&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   next_to_clean        &amp;lt;0&amp;gt;&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel: buffer_info[next_to_clean]&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   time_stamp           &amp;lt;1144b73ba&amp;gt;&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   next_to_watch        &amp;lt;0&amp;gt;&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   jiffies              &amp;lt;1144b7a09&amp;gt;&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   next_to_watch.status &amp;lt;0&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel: e1000: eth5: e1000_clean_tx_irq: Detected Tx Unit Hang&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   Tx Queue             &amp;lt;0&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   TDH                  &amp;lt;1&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   TDT                  &amp;lt;1&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   next_to_use          &amp;lt;1&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   next_to_clean        &amp;lt;0&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel: buffer_info[next_to_clean]&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   time_stamp           &amp;lt;1144b77fa&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   next_to_watch        &amp;lt;0&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   jiffies              &amp;lt;1144b817b&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   next_to_watch.status &amp;lt;0&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
on n&#039;avait pas le bon driver e1000, voir paragraphe suivant pour loader le bon driver&lt;br /&gt;
&lt;br /&gt;
== driver carte réseaux ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Pour voir le driver adapté aux cartes:&lt;br /&gt;
&lt;br /&gt;
[http://support.intel.com/support/network/sb/cs-012904.htm]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node23 ~]# lspci | tail -4&lt;br /&gt;
 0d:01.0 Ethernet controller: Intel Corporation 82546GB Gigabit Ethernet Controller (rev 03)&lt;br /&gt;
 0d:01.1 Ethernet controller: Intel Corporation 82546GB Gigabit Ethernet Controller (rev 03)&lt;br /&gt;
 0e:01.0 Ethernet controller: Intel Corporation 82546GB Gigabit Ethernet Controller (rev 03)&lt;br /&gt;
 0e:01.1 Ethernet controller: Intel Corporation 82546GB Gigabit Ethernet Controller (rev 03)&lt;br /&gt;
 [root@node23 ~]#&lt;br /&gt;
&lt;br /&gt;
telecharger le bon driver puis l&#039;installer:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 # rpmbuild -tb e1000-7.6.9.tar.gz&lt;br /&gt;
 # rpm -ivh /usr/src/redhat/RPMS/x86_64/e1000-7.6.9-1.x86_64.rpm&lt;br /&gt;
 Preparing...                ########################################### [100%]&lt;br /&gt;
   1:e1000                  ########################################### [100%]&lt;br /&gt;
 original pci.ids saved in /usr/local/share/e1000&lt;br /&gt;
 original pcitable saved in /usr/local/share/e1000&lt;br /&gt;
 [root@node23 BONDING]#&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Dans le README, il preconnise de loader le module avec l&#039;option &#039;&#039;interruptThrottleRate=3000:&#039;&#039; &lt;br /&gt;
&lt;br /&gt;
tout recharger correctement:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 ifconfig bond0 down; ifconfig bond1 down; rmmod e1000; modprobe e1000  &lt;br /&gt;
 InterruptThrottleRate=3000,3000,3000,3000,3000,3000,3000,3000 ; rmmod bond0 ; rmmod bond1; modprobe bonding &lt;br /&gt;
 -o bond0 mode=0 miimon=100; modprobe bonding -o bond1 -o bond1 mode=0 miimon=100;  &lt;br /&gt;
 /etc/init.d/network restart&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
et modifier le fichier modprobe:&lt;br /&gt;
&lt;br /&gt;
 # more /etc/modprobe.conf&lt;br /&gt;
 alias eth0 e1000&lt;br /&gt;
 alias eth1 e1000&lt;br /&gt;
 alias eth2 e1000&lt;br /&gt;
 alias eth3 e1000&lt;br /&gt;
 alias eth4 e1000&lt;br /&gt;
 alias eth5 e1000&lt;br /&gt;
 alias eth6 e1000&lt;br /&gt;
 alias eth7 e1000&lt;br /&gt;
 options e1000 InterruptThrottleRate=3000&lt;br /&gt;
 install ipw3945 /sbin/modprobe --ignore-install ipw3945 ; sleep 0.5 ; /sbin/ipw3945d --quiet&lt;br /&gt;
 remove ipw3945 /sbin/ipw3945d --kill ; /sbin/modprobe -r --ignore-remove ipw3945&lt;br /&gt;
 alias usb-controller ehci-hcd&lt;br /&gt;
 alias usb-controller1 ohci-hcd&lt;br /&gt;
 ####BONDING&lt;br /&gt;
 alias bond0 bonding&lt;br /&gt;
 alias bond1 bonding&lt;br /&gt;
 options bond0 mode=0 miimon=100 max_bonds=2&lt;br /&gt;
 options bond1 -o bond1 mode=0 miimon=100&lt;br /&gt;
 ####END BONDING&lt;br /&gt;
 #Added mv_sata binary driver rpm installation&lt;br /&gt;
 alias scsi_hostadapter mv_sata&lt;br /&gt;
 alias sata_mv off&lt;br /&gt;
&lt;br /&gt;
== Test iperf ==&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;1) 1 interface bond0 (eth0, eth1, eth2, eth3):&#039;&#039;&#039;  ~ 2,7 Gb/s&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [  4] 10.0-20.0 sec    557 MBytes    467 Mbits/sec&lt;br /&gt;
 [  5] 10.0-20.0 sec  1.10 GBytes    941 Mbits/sec&lt;br /&gt;
 [  6] 10.0-20.0 sec    976 MBytes    819 Mbits/sec&lt;br /&gt;
 [  7] 10.0-20.0 sec    567 MBytes    476 Mbits/sec&lt;br /&gt;
 [  4] 20.0-30.0 sec    564 MBytes    473 Mbits/sec&lt;br /&gt;
 [  5] 20.0-30.0 sec  1.10 GBytes    941 Mbits/sec&lt;br /&gt;
 [  6] 20.0-30.0 sec    969 MBytes    813 Mbits/sec&lt;br /&gt;
 [  7] 20.0-30.0 sec    558 MBytes    468 Mbits/sec&lt;br /&gt;
 [  4] 30.0-40.0 sec    561 MBytes    470 Mbits/sec&lt;br /&gt;
 [  5] 30.0-40.0 sec  1.10 GBytes    941 Mbits/sec&lt;br /&gt;
 [  6] 30.0-40.0 sec    986 MBytes    827 Mbits/sec&lt;br /&gt;
 [  7] 30.0-40.0 sec    550 MBytes    461 Mbits/sec&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;2) 2 interfaces : bond0 (eth0, eth1) et bond1 (eth2,eth3):&#039;&#039;&#039;  ~900 Mb/s !!&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 netstat -a | grep 200&lt;br /&gt;
 tcp        0      0 *:20008                     *:*                         LISTEN&lt;br /&gt;
 tcp        0      0 *:20010                     *:*                         LISTEN&lt;br /&gt;
 tcp        0      0 node27.datagrid.cea.f:20010 wn049.datagrid.cea.fr:41057 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node27.datagrid.cea.f:20010 wn005.datagrid.cea.fr:44065 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node23.datagrid.cea.f:20008 node01.datagrid.cea.f:34342 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node23.datagrid.cea.f:20008 wn048.datagrid.cea.fr:34032 ESTABLISHED&lt;br /&gt;
&lt;br /&gt;
sur node 23: &lt;br /&gt;
 [  4] 20.0-25.0 sec    146 MBytes    244 Mbits/sec&lt;br /&gt;
 [  5] 20.0-25.0 sec    149 MBytes    251 Mbits/sec&lt;br /&gt;
 [  4] 25.0-30.0 sec    143 MBytes    240 Mbits/sec&lt;br /&gt;
 [  5] 25.0-30.0 sec    160 MBytes    268 Mbits/sec&lt;br /&gt;
 [  4] 30.0-35.0 sec    117 MBytes    196 Mbits/sec&lt;br /&gt;
 [  5] 30.0-35.0 sec    149 MBytes    250 Mbits/sec&lt;br /&gt;
sur node27:&lt;br /&gt;
 [  4] 20.0-25.0 sec    101 MBytes    170 Mbits/sec&lt;br /&gt;
 [  5] 20.0-25.0 sec    164 MBytes    275 Mbits/sec&lt;br /&gt;
 [  4] 25.0-30.0 sec    108 MBytes    181 Mbits/sec&lt;br /&gt;
 [  5] 25.0-30.0 sec    180 MBytes    303 Mbits/sec&lt;br /&gt;
 [  4] 30.0-35.0 sec    102 MBytes    172 Mbits/sec&lt;br /&gt;
 [  5] 30.0-35.0 sec    162 MBytes    272 Mbits/sec&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;3)interfaces : bond0 (eth0, eth1, eth2,eth3) et bond1 (eth4, eth5, eth6,eth7):&#039;&#039;&#039;  ~3,8Gb/s &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
sur node27:&lt;br /&gt;
 [  4] 20.0-30.0 sec    337 MBytes    283 Mbits/sec&lt;br /&gt;
 [  5] 20.0-30.0 sec    393 MBytes    329 Mbits/sec&lt;br /&gt;
 [  6] 20.0-30.0 sec    425 MBytes    357 Mbits/sec&lt;br /&gt;
 [  7] 20.0-30.0 sec    758 MBytes    636 Mbits/sec&lt;br /&gt;
sur node23:&lt;br /&gt;
 [  4] 20.0-30.0 sec    727 MBytes    610 Mbits/sec&lt;br /&gt;
 [  5] 20.0-30.0 sec  1.10 GBytes    941 Mbits/sec&lt;br /&gt;
 [  6] 20.0-30.0 sec    360 MBytes    302 Mbits/sec&lt;br /&gt;
 [  7] 20.0-30.0 sec    359 MBytes    301 Mbits/sec&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;4) 1 interface bond0 (eth0, eth1, eth2, eth3, eth4, eth5, eth6, eth7):&#039;&#039;&#039; ~5Gb/s&lt;br /&gt;
&lt;br /&gt;
 http://lcg.in2p3.fr/wiki/images/Node23_datagrid_cea_fr_rrd_NUMKBREADAVG_d.gif&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [  4] 10.0-20.0 sec    841 MBytes    705 Mbits/sec&lt;br /&gt;
 [  5] 10.0-20.0 sec  1001 MBytes    840 Mbits/sec&lt;br /&gt;
 [  6] 10.0-20.0 sec    671 MBytes    563 Mbits/sec&lt;br /&gt;
 [  7] 10.0-20.0 sec    581 MBytes    487 Mbits/sec&lt;br /&gt;
 [  8] 10.0-20.0 sec    431 MBytes    362 Mbits/sec&lt;br /&gt;
 [  9] 10.0-20.0 sec    535 MBytes    449 Mbits/sec&lt;br /&gt;
 [ 10] 10.0-20.0 sec    986 MBytes    827 Mbits/sec&lt;br /&gt;
 [ 11] 10.0-20.0 sec    878 MBytes    736 Mbits/sec&lt;br /&gt;
 [  4] 20.0-30.0 sec    903 MBytes    758 Mbits/sec&lt;br /&gt;
 [  5] 20.0-30.0 sec  1.04 GBytes    894 Mbits/sec&lt;br /&gt;
 [  6] 20.0-30.0 sec    263 MBytes    221 Mbits/sec&lt;br /&gt;
 [  7] 20.0-30.0 sec    169 MBytes    142 Mbits/sec&lt;br /&gt;
 [  8] 20.0-30.0 sec    731 MBytes    614 Mbits/sec&lt;br /&gt;
 [  9] 20.0-30.0 sec    916 MBytes    769 Mbits/sec&lt;br /&gt;
 [ 10] 20.0-30.0 sec    922 MBytes    774 Mbits/sec&lt;br /&gt;
 [ 11] 20.0-30.0 sec    395 MBytes    332 Mbits/sec&lt;br /&gt;
&lt;br /&gt;
== Test Performance DISK+NETWORK avec DPM ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node24 root]# dpm-qryconf&lt;br /&gt;
 POOL CMS_SC DEFSIZE 200.00M GC_START_THRESH 0 GC_STOP_THRESH 0 DEF_LIFETIME 7.0d DEFPINTIME 2.0h  &lt;br /&gt;
 MAX_LIFETIME 1.0m MAXPINTIME 12.0h FSS_POLICY maxfreespace GC_POLICY lru RS_POLICY fifo GIDS 0 S_TYPE -   &lt;br /&gt;
 MIG_POLICY none RET_POLICY R&lt;br /&gt;
                              CAPACITY 17.01T FREE 15.98T ( 93.9%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam1 CAPACITY 2.24T FREE 2.09T ( 93.2%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam2 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam3 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam7 CAPACITY 1.79T FREE 1.68T ( 93.8%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam4 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam5 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam6 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam8 CAPACITY 1.79T FREE 1.68T ( 93.8%)&lt;br /&gt;
&lt;br /&gt;
sur l&#039;UI:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [cleroy@node02 2_IPbonding]$ time ./transfert_concurrent_client_node24.py&lt;br /&gt;
 globus-url-copy file:/home/cleroy/DTEAM_2004/4_Tt2t1/ATLAS_DATA &lt;br /&gt;
 gsiftp://node24.datagrid.cea.fr/dpm/datagrid.cea.fr/home/dteam/dapnia/cleroy/TO_BE_REMOVED/&lt;br /&gt;
 ATLAS_DATA_Trf00001&lt;br /&gt;
 ...&lt;br /&gt;
 ....&lt;br /&gt;
 real    2m13.017s&lt;br /&gt;
 user    1m4.270s&lt;br /&gt;
 sys     0m48.790s&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Sur le SE disk:&lt;br /&gt;
&lt;br /&gt;
 [root@node23 ~]# ll /dteam*/dteam/2007-10-10&lt;br /&gt;
 /dteam1/dteam/2007-10-10:&lt;br /&gt;
 total 1441096&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA2_Trf00001.4189.0&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA3_Trf00000.4181.0&lt;br /&gt;
 /dteam2/dteam/2007-10-10:&lt;br /&gt;
 total 1441104&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:37 ATLAS_DATA_Trf00000.4182.0&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:37 ATLAS_DATA_Trf00001.4174.0&lt;br /&gt;
 -rw-r--r--  1 root   root           5 Oct 10 17:27 essai&lt;br /&gt;
 /dteam3/dteam/2007-10-10:&lt;br /&gt;
 total 1441096&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA4_Trf00001.4175.0&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:37 ATLAS_DATA8_Trf00001.4183.0 &lt;br /&gt;
 /dteam4/dteam/2007-10-10:&lt;br /&gt;
 total 1441096&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:37 ATLAS_DATA7_Trf00001.4184.0&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA8_Trf00000.4176.0&lt;br /&gt;
 /dteam5/dteam/2007-10-10:&lt;br /&gt;
 total 1441096&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA2_Trf00000.4177.0&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:37 ATLAS_DATA7_Trf00000.4185.0&lt;br /&gt;
 /dteam6/dteam/2007-10-10:&lt;br /&gt;
 total 1441096&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA5_Trf00001.4178.0&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:37 ATLAS_DATA6_Trf00000.4188.0 &lt;br /&gt;
 /dteam7/dteam/2007-10-10:&lt;br /&gt;
 total 1441096&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA3_Trf00001.4186.0&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA6_Trf00001.4180.0&lt;br /&gt;
 /dteam8/dteam/2007-10-10:&lt;br /&gt;
 total 1441096&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA4_Trf00000.4179.0&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA5_Trf00000.4187.0&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
16 fichiers en paralleles de 737 MB: &lt;br /&gt;
11792 MB en 133 s = 88 MB/s = 709 Mb/s&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
autre test: &lt;br /&gt;
(16 * 20 = 320 )fichiers de 737MB : 235840 MB en  30m29.512s : 128 MB/s : 1024 Mb/s&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== DPM et XROOTD ==&lt;br /&gt;
&lt;br /&gt;
Ce document décrit la procédure utilisée à l&#039;IPNO pour installer xrootd sur un serveur DPM. La procédure d&#039;installation doit être effectuée sur chaque server (head node et disk servers). A l&#039;IPNO l&#039;installation a eu lieu sur un unique serveur à la fois head node et disk server.&lt;br /&gt;
&lt;br /&gt;
=== La documentation utile ===&lt;br /&gt;
Configuring &#039;xroot&#039; Protocol on DPM (Andreas Peters) [[BR]]&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/LCG/DpmXrootAccess&lt;br /&gt;
&lt;br /&gt;
How to Install and Debug Xrootd on a DPM Storage Element (Jean-Michel Barbet) [[BR]]&lt;br /&gt;
http://alien.cern.ch/twiki/bin/view/AliEn/HowToInstallXrootdAndDPM&lt;br /&gt;
&lt;br /&gt;
LCG-France T2-T3 Technical meeting : DPM/xrootd introduction (Jean-Michel Barbet)[[BR]]&lt;br /&gt;
http://indico.in2p3.fr/conferenceDisplay.py?confId=821&lt;br /&gt;
&lt;br /&gt;
Xrootd Tutorial (Artem Trunov) [[BR]]&lt;br /&gt;
http://indico.cern.ch/materialDisplay.py?contribId=8&amp;amp;sessionId=0&amp;amp;materialId=slides&amp;amp;confId=a058483&lt;br /&gt;
&lt;br /&gt;
=== Firewall: ports à ouvrir ===&lt;br /&gt;
 * Sur le xrootd Manager (DPM head node) : 1094&lt;br /&gt;
 * Sur les xrootd servers (disk servers) : 1095&lt;br /&gt;
 * Si le xrootd manager est aussi disk server : 1095 (sur le manager en plus de 1094)&lt;br /&gt;
&lt;br /&gt;
=== Installation Configuration en utilisant les scripts fournis par ALICE ===&lt;br /&gt;
&lt;br /&gt;
=== SPMA ===&lt;br /&gt;
Editer /etc/spma.conf :&lt;br /&gt;
&lt;br /&gt;
 * userpkgs = yes&lt;br /&gt;
 * userprio = yes&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
===== Non-YAIM configuration =====&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
 * # wget http://project-arda-dev.web.cern.ch/project-arda-dev/xrootd/tarballs/installbox/dpm-config.tgz&lt;br /&gt;
 * # tar zxf dpm-config.tgz&lt;br /&gt;
 * # chmod u+x ./conf.xrootd&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
Il faut commenter l&#039;appel à la fonction requires dans config_DPM_xrootd et définir la&lt;br /&gt;
variable YAIM_LOG dans conf.xrootd, sinon il y a des messages d&#039;erreur au lancement de conf.xrootd .&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
 * # cp config_DPM_xrootd config_DPM_xrootd.orig&lt;br /&gt;
 * # cp conf.xrootd conf.xrootd.orig&lt;br /&gt;
 * # vi config_DPM_xrootd ---&amp;gt; commenter l&#039;appel à requires&lt;br /&gt;
 * # vi conf.xrootd    ---&amp;gt; définir YAIM_LOG&lt;br /&gt;
&lt;br /&gt;
 * # diff config_DPM_xrootd config_DPM_xrootd.orig&lt;br /&gt;
 * 2c2&lt;br /&gt;
 * &amp;lt;   #requires $1 INSTALL_ROOT&lt;br /&gt;
 * ---&lt;br /&gt;
 * &amp;gt;   requires $1 INSTALL_ROOT&lt;br /&gt;
&lt;br /&gt;
 * # diff conf.xrootd conf.xrootd.orig&lt;br /&gt;
 * 4d3&lt;br /&gt;
 * &amp;lt; YAIM_LOG=/tmp/yaim.log&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Alice utilise l&#039;authentification TokenAuthZ. GSI n&#039;est pas encore supportée. Il faut donc éditer le fichier&lt;br /&gt;
/opt/lcg/etc/xrootd/authz.cf  (ce fichier ne sera pas utile avec GSI).&lt;br /&gt;
&lt;br /&gt;
 * # vi /opt/lcg/etc/xrootd/authz.cf :&lt;br /&gt;
 * changer /usr/local/xroot en /opt/lcg et&lt;br /&gt;
 * EXPORT PATH:/ en EXPORT PATH:/dpm/in2p3.fr/home/alice/&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Editer les scripts de lancement pour changer XRDLOCATION=&amp;quot;/usr/local/xroot&amp;quot; en XRDLOCATION=&amp;quot;/opt/lcg&amp;quot;.&lt;br /&gt;
&lt;br /&gt;
Les fichiers à éditer sont : /etc/init.d/dpm-xrd /etc/init.d/dpm-olb /etc/init.d/dpm-manager-xrd /etc/init.d/dpm-manager-olb /etc/init.d/xrdapmon&lt;br /&gt;
&lt;br /&gt;
Les scripts de démarrage regénèrent à chaque lancement le fichier /opt/lcg/etc/xrd.dpm.cf utilisé par les daemons. Ce fichier est &lt;br /&gt;
créé à partir du fichier /etc/xrd.dpm.config (ou /etc/xrd.dpm.config.gsi si avec GSI). C&#039;est donc dans /etc/sysconfig/dpm-xrd &lt;br /&gt;
qu&#039;il faut modifier la config xrootd si besoin est, avant de relancer les daemons.&lt;br /&gt;
&lt;br /&gt;
Modifier /etc/sysconfig/dpm-xrd comme indiqué ci-dessous :&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * # cp /etc/sysconfig/dpm-xrd.example /etc/sysconfig/dpm-xrd&lt;br /&gt;
 * # vi /etc/sysconfig/dpm-xrd&lt;br /&gt;
 * ...&lt;br /&gt;
 * # set the redirector host&lt;br /&gt;
 * MANAGERHOST=&amp;quot;ipnsedpm.in2p3.fr&amp;quot;&lt;br /&gt;
 * export DPM_HOST=$MANAGERHOST&lt;br /&gt;
 * export DPNS_HOST=$MANAGERHOST&lt;br /&gt;
 * ...&lt;br /&gt;
 * #############################################################################&lt;br /&gt;
 * # default authentication is with GSI authentication&lt;br /&gt;
 * #XRDCONFIG=&amp;quot;xrd.dpm.config.gsi&amp;quot;&lt;br /&gt;
 * # if you want GSI authentication disabled set&lt;br /&gt;
 * XRDCONFIG=&amp;quot;xrd.dpm.config&amp;quot;&lt;br /&gt;
 * ...&lt;br /&gt;
 * #XRDOFS=&amp;quot;Ofs&amp;quot;&lt;br /&gt;
 * # the ALICE Ofs plugin&lt;br /&gt;
 * XRDOFS=&amp;quot;TokenAuthzOfs&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * # vi /etc/shift.conf&lt;br /&gt;
 * Ajouter (à faire normalement via Quattor):&lt;br /&gt;
 * DPM PROTOCOLS rfio gsiftp xroot&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * Lancer la config :&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * # ./conf.xrootd&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * # more /tmp/yaim.log&lt;br /&gt;
 * # service dpm restart&lt;br /&gt;
 * # service dpnsdaemon restart (peut-etre pas necessaire)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
===== Les process qui tournent =====&lt;br /&gt;
Sur le manager :&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
 * dpmmgr 2816  1 0 Apr28 ? 00:00:00 /opt/lcg/bin/dpm-manager-olbd -d -b -n manager -c /opt/lcg/etc/xrd.dpm.cf -l /var/log/xroot//olblog&lt;br /&gt;
 * dpmmgr 3004  1 0 Apr28 ? 00:00:00 /opt/lcg/bin/dpm-manager-xrootd-d -b -n manager -c /opt/lcg/etc/xrd.dpm.cf -l /var/log/xroot//xrdlog&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
Sur les servers xrootd :&lt;br /&gt;
&lt;br /&gt;
 * dpmmgr 2726  1 0 Apr28 ? 00:00:00 /opt/lcg/bin/dpm-olbd -d -b -n server -c /opt/lcg/etc/xrd.dpm.cf -l /var/log/xroot//olblog&lt;br /&gt;
 * dpmmgr 2911  1 0 Apr28 ? 00:00:03 /opt/lcg/bin/dpm-xrootd -d -b -n server -c /opt/lcg/etc/xrd.dpm.cf -l /var/log/xroot//xrdlog&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==== Test ====&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * xrdcp /etc/hosts root://ipnsedpm.in2p3.fr://dpm/in2p3.fr/home/alice/test_ok.txt -v&lt;br /&gt;
 * xrdcp root://ipnsedpm.in2p3.fr://dpm/in2p3.fr/home/alice/test_ok.txt /tmp/xrd_copied_file -v&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Utiliser l&#039;option &#039;-d 1&#039; par exemple pour un mode un peu plus verbeux. &lt;br /&gt;
&lt;br /&gt;
Les fichiers peuvent être effacer par rfrm : &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * # rfrm /dpm/in2p3.fr/home/alice/test_ok.txt&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
En principe ça ne devrait pas marcher car il faut être authetifié par TokenAuthZ pour pouvoir faire des delete.&lt;br /&gt;
&lt;br /&gt;
==== Divers ====&lt;br /&gt;
&lt;br /&gt;
===== Pour arrêter / démarrer les services =====&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * service dpm-xrd restart&lt;br /&gt;
 * service dpm-olb restart&lt;br /&gt;
 * service dpm-manager-xrd restart&lt;br /&gt;
 * service dpm-manager-olb restart&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
===== L&#039;authentification =====&lt;br /&gt;
xrootd ne supporte pas encore d&#039;authentification GSI mais l&#039;authentification TokenAuthZ. &lt;br /&gt;
Le fichier d&#039;authentification est le suivant :&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * # cat /opt/lcg/etc/xrootd/authz.cf&lt;br /&gt;
 * KEY VO:*       PRIVKEY:/opt/lcg/etc/xrootd/pvkey.pem PUBKEY:/opt/lcg/etc/xrootd/pkey.pem&lt;br /&gt;
 * EXPORT PATH:/dpm/in2p3.fr/home/alice/ VO:*     ACCESS:ALLOW CERT:*&lt;br /&gt;
 * RULE PATH:/ AUTHZ:delete| NOAUTHZ:read|write|write-once| VO:* CERT:*&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
La dernière ligne signifie que tout le monde peut lire et écrire via xrootd, mais qu&#039;il faut une authentification via &lt;br /&gt;
TokenAuthZ pour pouvoir supprimer les fichiers.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Installation Configuration en utilisant Quattor ===&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==== installation RPM ====&lt;br /&gt;
RPM disponible:&lt;br /&gt;
http://project-arda-dev.web.cern.ch/project-arda-dev/alice/xrootd-dpm/&lt;br /&gt;
&lt;br /&gt;
Pour installer les bons RPM, il faut cette variable :&lt;br /&gt;
&lt;br /&gt;
 variable SEDPM_XROOTD_SERVER = true;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
pour la liste de RPMs, voir les templates:&lt;br /&gt;
&lt;br /&gt;
 cfg/grid/glite-3.1/glite/se_dpm/rpms/ « arch »/xrootd_*.tpl&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
==== configuration ====&lt;br /&gt;
Actuellement configuration à la main, voir :&lt;br /&gt;
&lt;br /&gt;
http://lcg2.in2p3.fr/wiki/index.php/User_talk:LEROY#Non-YAIM_configuration&lt;br /&gt;
&lt;br /&gt;
+ lien à créer:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 ln -s /opt/lcg/lib/libXrdSec.so /opt/lcg/lib64/libXrdSec.so&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Pour configuration via quattor:&lt;br /&gt;
Modification des templates à revoir (problemes du component):&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
Sending        cfg/clusters/dapnia-glite-3.1/lcg/source/pro_se_dpm_config.tpl&lt;br /&gt;
&lt;br /&gt;
Sending        cfg/clusters/dapnia-glite-3.1/profiles/profile_node11.tpl&lt;br /&gt;
&lt;br /&gt;
Sending        cfg/grid/glite-3.1/components/dpmlfc/schema.tpl&lt;br /&gt;
&lt;br /&gt;
Sending        cfg/grid/glite-3.1/glite/se_dpm/config.tpl&lt;br /&gt;
&lt;br /&gt;
Adding         cfg/grid/glite-3.1/glite/se_dpm/disk/xrootd.tpl&lt;br /&gt;
&lt;br /&gt;
Sending        cfg/grid/glite-3.1/glite/se_dpm/rpms/config.tpl&lt;br /&gt;
&lt;br /&gt;
Adding         cfg/grid/glite-3.1/glite/se_dpm/rpms/i386/xrootd_disk.tpl&lt;br /&gt;
&lt;br /&gt;
Adding         cfg/grid/glite-3.1/glite/se_dpm/rpms/i386/xrootd_head.tpl&lt;br /&gt;
&lt;br /&gt;
Adding         cfg/grid/glite-3.1/glite/se_dpm/rpms/x86_64/xrootd_disk.tpl&lt;br /&gt;
&lt;br /&gt;
Adding         cfg/grid/glite-3.1/glite/se_dpm/rpms/x86_64/xrootd_head.tpl&lt;br /&gt;
&lt;br /&gt;
Adding         cfg/grid/glite-3.1/glite/se_dpm/server/xrootd.tpl&lt;br /&gt;
&lt;br /&gt;
Sending        cfg/grid/glite-3.1/glite/se_dpm/service.tpl&lt;br /&gt;
&lt;br /&gt;
Sending        cfg/grid/glite-3.1/machine-types/se_dpm.tpl&lt;br /&gt;
&lt;br /&gt;
Sending        cfg/grid/glite-3.1/repository/config/glite.tpl&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
== Conclusion ==&lt;br /&gt;
Si on cumule test lecture/écriture et test iperf (avec 1 interface bond0 qui agrège les 8 Ethernet) on arrive à sortir les 230Mb/s et par TB. &lt;br /&gt;
&lt;br /&gt;
Necessite de bien maîtriser le raid logiciel et de le monitorer&lt;br /&gt;
&lt;br /&gt;
Existence des drivers pour quelques versions de Linux&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=User_talk:LEROY&amp;diff=6204</id>
		<title>User talk:LEROY</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=User_talk:LEROY&amp;diff=6204"/>
		<updated>2011-08-29T14:24:51Z</updated>

		<summary type="html">&lt;p&gt;LEROY: /* 2)	Déplacer le site BDII sur une autre machine (anciennement sur le LCG-CE) */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Mise hors service du LCG-CE (réinstallé en serveur (Maui + torque Only))  =&lt;br /&gt;
&lt;br /&gt;
Mise hors service du LCG-CE via Quattor sur un cluster avec :&lt;br /&gt;
&lt;br /&gt;
-une machine, M1 :(lcg-CE +Maui + torque)  et&lt;br /&gt;
&lt;br /&gt;
- une deuxième Machine, M2 : CREAM-CE&lt;br /&gt;
&lt;br /&gt;
La Première machine étant réinstallé en serveur (Maui + torque Only)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== 1)M1 : serveur Maui + torque Only en SL5 ==&lt;br /&gt;
=== a)Inclure un nouveau type de machine dans M1 ===&lt;br /&gt;
 &lt;br /&gt;
 include { &#039;machine-types/torque_server&#039; (a la place du glite_ce) &lt;br /&gt;
&lt;br /&gt;
=== b)Ajouter la derniere version de maui  ===&lt;br /&gt;
 &#039;/software/packages&#039;=pkg_repl(&#039;maui&#039;,&#039;3.3.1-1.sl5&#039;,&#039;x86_64&#039;);&lt;br /&gt;
 &#039;/software/packages&#039;=pkg_repl(&#039;maui-client&#039;,&#039;3.3.1-1.sl5&#039;,&#039;x86_64&#039;);&lt;br /&gt;
 &#039;/software/packages&#039;=pkg_repl(&#039;maui-server&#039;,&#039;3.3.1-1.sl5&#039;,&#039;x86_64&#039;);&lt;br /&gt;
&lt;br /&gt;
=== c) SL5 ===&lt;br /&gt;
&lt;br /&gt;
Deplacer le profile ainsi que le template &#039;pro_lcg2_config_site_maui.tpl&#039; dans le &#039;&#039;&#039;cluster glite 3.2&#039;&#039;&#039; et modifier le &#039;*nodes_properties.tpl&#039; (install SL5)&lt;br /&gt;
&lt;br /&gt;
=== d) Declarer une nouvelle variable ===&lt;br /&gt;
variable &#039;&#039;&#039;LRMS_SERVER_HOST&#039;&#039;&#039; dans &#039;pro_lcg2_config_site.tpl&#039; et &#039;pro_site_common_config.tpl&#039;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Template modifié lors de ces étapes:&lt;br /&gt;
&lt;br /&gt;
 Suppression cfg/clusters/irfu/glite-3.1/profiles/profile_node07.tpl&lt;br /&gt;
 Suppression cfg/clusters/irfu/glite-3.1/site/pro_lcg2_config_site_maui.tpl&lt;br /&gt;
 Ajout cfg/clusters/irfu/glite-3.2/profiles/profile_node07.tpl&lt;br /&gt;
 Ajout cfg/clusters/irfu/glite-3.2/site/pro_lcg2_config_site_maui.tpl&lt;br /&gt;
 Envoi cfg/sites/dapnia/site/config/dapnia_nodes_properties.tpl&lt;br /&gt;
 M cfg/clusters/irfu/test-glite-3.2/site/pro_lcg2_config_site.tpl&lt;br /&gt;
 M cfg/clusters/irfu/glite-3.1_MPI/profiles/profile_node16.tpl&lt;br /&gt;
 M cfg/clusters/irfu/glite-3.1_MPI/site/pro_lcg2_config_site.tpl&lt;br /&gt;
 M cfg/clusters/irfu/glite-3.2_MPI/site/pro_lcg2_config_site.tpl&lt;br /&gt;
 M cfg/sites/dapnia/site/pro_site_common_config.tpl&lt;br /&gt;
 M cfg/sites/dapnia/site/pro_site_ui_dapnia_users_env.tpl&lt;br /&gt;
 M cfg/sites/dapnia/site/pro_lcg2_config_site.tpl&lt;br /&gt;
&lt;br /&gt;
== 2)	Déplacer le site BDII sur une autre machine (anciennement sur M1 (le LCG-CE)) ==&lt;br /&gt;
&lt;br /&gt;
Enlever les variable de configuration de BDII sur M1 et les ajouter sur une autre machine (LFC exemple) :&lt;br /&gt;
 variable BDII_TYPE=&#039;site&#039;; # site bdii&lt;br /&gt;
 variable BDII_SUBSITE_ONLY = false;&lt;br /&gt;
 variable BDII_SUBSITE = &#039;IRFU&#039;;&lt;br /&gt;
&lt;br /&gt;
== 3)	Résoudre l’erreur : Bad UID for job execution ==&lt;br /&gt;
http://grid.pd.infn.it/cream/field.php?n=Main.ErrorMessagesReportedByCREAMToClient#badui&lt;br /&gt;
en rajoutant le fichier mentionné: /etc/hosts.equiv&lt;br /&gt;
&lt;br /&gt;
== 4)	Resoudre le probleme de ‘resource not available’ vu par les WMS : ==&lt;br /&gt;
&lt;br /&gt;
En fait le système d’information ne marchait pas bien sur M2 (node74) :&lt;br /&gt;
 $ ldapsearch -x -LLL -H ldap://egee-bdii.cnaf.infn.it:2170 -b Mds-Vo-name=GRIF-IRFU,Mds-Vo-name=GRIF,mds-vo-name=local,o=grid &#039;objectclass=GlueSubCluster&#039; | grep node74&lt;br /&gt;
 $&lt;br /&gt;
&lt;br /&gt;
Ne rendait rien….&lt;br /&gt;
Ajout de  ces 2 variables dans le profile de M2 ( CREAM CE)  :&lt;br /&gt;
&lt;br /&gt;
 variable CE_HOST ?= &#039;node74.datagrid.cea.fr&#039;;&lt;br /&gt;
 variable GIP_CLUSTER_PUBLISHER_HOST ?= CE_HOST;&lt;br /&gt;
&lt;br /&gt;
== 5)	Résoudre les problèmes de publication (4444 jobs waiting…) == &lt;br /&gt;
=== 1)Inclure le client NFS sur M1 === &lt;br /&gt;
 variable NFS_CLIENT_ENABLED ?= true;&lt;br /&gt;
&lt;br /&gt;
Car &#039;M1 renseigne le GIP de M2 dans le software area de dteam via un cron sur M1&#039;.&lt;br /&gt;
Attention malgré l’option &#039;&#039;&#039;no_root_squash&#039;&#039;&#039; dans l’export du serveur NFS, il faut que les 2 fichiers :&lt;br /&gt;
 gip-ce-dynamic-info-maui.cache&lt;br /&gt;
 gip-ce-dynamic-info-scheduler.cache&lt;br /&gt;
&lt;br /&gt;
Existent dans ce software area et appartiennent à root.&lt;br /&gt;
Faire un chmod 777 sur le serveur NFS  le temps du cron sur M1, puis refaire un chown 755 (à analyser ?)&lt;br /&gt;
&lt;br /&gt;
=== 2)un des plugin (&#039;/opt/lcg/libexec/lcg-info-dynamic-maui&#039;) est buggé ===&lt;br /&gt;
 export PYTHONPATH=/opt/lcg/lib/python:${PYTHONPATH} ; python /opt/lcg/libexec/lcg-info-dynamic-maui --host node07.datagrid.cea.fr --max-normal-slots 2236 --ce-ldif /var/glite/static-file-all-CE-pbs.ldif --diagnose-output /tmp/maui-reservations.list&lt;br /&gt;
Traceback (most recent call last):&lt;br /&gt;
File &amp;quot;/opt/lcg/libexec/lcg-info-dynamic-maui&amp;quot;, line 244, in ?&lt;br /&gt;
if not queueParams:&lt;br /&gt;
File &amp;quot;/usr/lib64/python2.4/site-packages/pbs/PBSQuery.py&amp;quot;, line 351, in __getattr__&lt;br /&gt;
raise PBSError(error)&lt;br /&gt;
PBSQuery.PBSError: Attribute key error: __nonzero__&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Recuperer celui de grid33.lal.in2p3.fr&#039;&#039;&#039;&lt;br /&gt;
Patch à venir....&lt;br /&gt;
&lt;br /&gt;
= FTS =&lt;br /&gt;
&lt;br /&gt;
&#039;connaitre la list des channels:&#039;&lt;br /&gt;
&lt;br /&gt;
 glite-transfer-channel-list -s cclcgftsprod.in2p3.fr IN2P3-IRFU&lt;br /&gt;
&lt;br /&gt;
&#039;reactiver un channel&#039;&lt;br /&gt;
&lt;br /&gt;
 glite-transfer-channel-setvoshare -s cclcgftsprod.in2p3.fr &amp;lt;CHANNEL_NAME&amp;gt; atlas 100&lt;br /&gt;
&lt;br /&gt;
= Installation et Configuration d&#039;une VO-BOX ALICE =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Introduction ==&lt;br /&gt;
&lt;br /&gt;
Un site grille qui souhaite supporter l&#039;expérience ALICE, doit installer une VO-BOX. ALICE utilise [http://alien.cern.ch/twiki/bin/view/AliEn/Home AliEN] (Alice ENvironment) comme plateforme logicielle pour la simulation et l&#039;analyse des données. Alien est installé sur chaque VO-BOX. C&#039;est le CE d&#039;Alien qui soumet les Job Agents (JAs) au CE du site. Les JAs vont ensuite chercher les jobs dans central Task Queue de Alien. Les jobs écrivent via xrootd (directement vers le CERN pour le moment). Comme il n&#039;y a pas encore d&#039;interface xrootd/SRM, chaque VO-BOX doit fournir un stockage xrootd qui peut être sur un disque local.&lt;br /&gt;
&lt;br /&gt;
Les documents à lire impérativement (en plus de ce guide) sont:&lt;br /&gt;
&lt;br /&gt;
 * [http://alien.cern.ch/twiki/bin/view/AliEn/HowToInstallLcgVoBox ALICE LCG VO-Box Installation Guide]&lt;br /&gt;
 * [https://twiki.cern.ch/twiki/pub/LCG/VoBoxesInfo/VO-Box-security-policy_v05.doc VOBOX Security and Operations Questionnaires]&lt;br /&gt;
&lt;br /&gt;
La VO-BOX n&#039;est pas consommatrice en CPU et RAM. N&#039;importe quel PC récent(Pentium+) avec 2GB+ de RAM peut faire l&#039;affaire. Cependant un bon hardware est recommandé pour minimiser la fréquence des pannes.&lt;br /&gt;
&lt;br /&gt;
== Ressources disques requises ==&lt;br /&gt;
&lt;br /&gt;
 * Partition / (root) : au moins 2 GB&lt;br /&gt;
 * Partition /var : y prévoir 10-15 GB d&#039;espace pour les logs d&#039;Alien&lt;br /&gt;
 * /data (ou un autre nom) : partition local pour xrootd (prévoir 3G par job slot)&lt;br /&gt;
&lt;br /&gt;
Remarques:&lt;br /&gt;
  1. xrootd: sur un site avec plus de 30 job slots, passer si possible au mode &amp;quot;head node + xrootd servers&amp;quot; pour des raisons de performances&lt;br /&gt;
  2. &amp;quot;/home&amp;quot; doit être local pour des raisons de performances et de gestion des &amp;quot;locks&amp;quot;&lt;br /&gt;
&lt;br /&gt;
== Les ports à ouvrir pour la VO-BOX au niveau du router ==&lt;br /&gt;
&lt;br /&gt;
 * 1975/tcp (gsissh): inbound from 137.138.0.0/16 and 192.16.186.192/26&lt;br /&gt;
 * 1094/tcp(xrootd)&lt;br /&gt;
 * 8082/tcp (Storage Adapter)&lt;br /&gt;
 * 8083 (FTD)&lt;br /&gt;
 * 8084/tcp (Site Proxy)&lt;br /&gt;
 * 9991/tcp (PackMan) : Inbound from 137.138.0.0/16&lt;br /&gt;
 * 1093/tcp (proofd)&lt;br /&gt;
&lt;br /&gt;
== Le profile de la VO-BOX sous Quattor ==&lt;br /&gt;
&lt;br /&gt;
Dans clusters/&amp;lt;nom_site&amp;gt;-glite-x.y.z/profiles/profile_&amp;lt;nom_vobox&amp;gt;.tpl, faire:&lt;br /&gt;
&lt;br /&gt;
 {{{&lt;br /&gt;
include pro_&amp;lt;nom_site&amp;gt;_alice_glite_vobox;&lt;br /&gt;
(voir cfg/clusters/ipno-glite-3.0.0/profiles/profile_ipnvobox.tpl)&lt;br /&gt;
 }}}&lt;br /&gt;
&lt;br /&gt;
Dans sites/&amp;lt;nom_site&amp;gt;/machine-types, créer pro_&amp;lt;nom_site&amp;gt;_alice_glite_vobox.tpl et pro_&amp;lt;nom_site&amp;gt;_alice_vobox_config.tpl&lt;br /&gt;
&lt;br /&gt;
Vous pouvez copier et adpater les templates de l&#039;IPNO ou du DAPNIA.&lt;br /&gt;
&lt;br /&gt;
== Après l&#039;installation via Quattor de la machine ==&lt;br /&gt;
&lt;br /&gt;
 * Demander et installer le certificat serveur GRID-FR de la mchine&lt;br /&gt;
 * Vérifier que les utilisateurs alis et alip existent dans /etc/passwd&lt;br /&gt;
 * Verifier que Patricia Lorenzo Mendez et Artem Trunov sont bien mappés sur&lt;br /&gt;
  alis dans /etc/grid-security/grid-mapfile et qu&#039;il y a quelqu&#039;un mappé&lt;br /&gt;
  sur alip. Question ouverte: faut-il creer les pool accounts ? Ou faut-il&lt;br /&gt;
  créer uniqument les comptes alis, alip nécessaires pour ALICE ?&lt;br /&gt;
 * Dans /etc/shadow vous devez avoir &#039;*&#039; dans le champ &#039;password&#039;, sinon le logingsissh ne marchera pas. Donc il faut remplacer &#039;!!&#039; ou &#039;!*NP*&#039; par &#039;*&#039;&lt;br /&gt;
 {{{&lt;br /&gt;
[root@ipnvobox etc]# grep alis /etc/shadow&lt;br /&gt;
alis:*:13574:0:99999:7:::&lt;br /&gt;
 }}}&lt;br /&gt;
 * Vérifier que le serveur GSISSH tourne sur la VOBOX sur le port 1975.&lt;br /&gt;
 * Vérifier que $MYPROXY_SERVER pointe bien sur myproxy.cern.ch&lt;br /&gt;
 * Vérifier que la expérimental software area ($VO_ALICE_SW_DIR) est bien accessible via NFS depuis la VO-BOX et writeable par alis. Il faut au moins 5GB d&#039;espace libre pour le soft d&#039;ALICE.&lt;br /&gt;
 * Vérifier que la partition /data pour xrootd existe et appartient à alis (/data doit être crée sous Quattor ou à la main)&lt;br /&gt;
 {{{&lt;br /&gt;
[root@ipnvobox root]# ls -ld /data&lt;br /&gt;
drwxr-xr-x   19 alis     alice        4096 Dec 14 13:22 /data&lt;br /&gt;
 }}}&lt;br /&gt;
 * Créer un directory pour les logs d&#039;Alien (ex: /var/log/alis). Il doit appartenir à alis et nécessite 10-15 GB libre.&lt;br /&gt;
 {{{&lt;br /&gt;
[root@ipnvobox root]# ls -ld /var/log/alis&lt;br /&gt;
drwxrwxrwx   10 alis     alice        4096 Mar  2 16:54 /var/log/alis&lt;br /&gt;
 }}}&lt;br /&gt;
 * Configurer le proxy-renewal service. MAIS, le script /opt/vobox/templates/voname-box-proxyrenewal n&#039;est pas encore exécuté automatiquement. Cal a prévu de corriger le probleme. Donc si après l&#039;installation de la VO-BOX, il manque alice-box-proxyrenewal dans /etc/cron.d/ et dans /etc/init.d/ ainsi que start, stop, agents et info-provider dans /opt/vobox/alice/, alors faire:&lt;br /&gt;
  1. créer /etc/cron.d/alice-box-proxyrenewal:&lt;br /&gt;
 {{{&lt;br /&gt;
[root@ipnvobox root]# cat /etc/cron.d/alice-box-proxyrenewal&lt;br /&gt;
#!/bin/sh&lt;br /&gt;
20 2,8,14,20 * * * root (PATH=/sbin:/bin:/usr/sbin:/usr/bin; /sbin/service alice-box-proxyrenewal proxy)&lt;br /&gt;
 }}}&lt;br /&gt;
  2. copier /opt/vobox/templates/voname-box-proxyrenewal dans&lt;br /&gt;
    /tmp/alice-proxy-renewal.sh, adpatez-le et exécutez-le (le script que j&#039;ai&lt;br /&gt;
    utilisé est en attachement: alice-proxy-renewal.sh).&lt;br /&gt;
  3. vous devez alors retrouver les directories qui manquaient:&lt;br /&gt;
 {{{&lt;br /&gt;
[root@ipnvobox alice]# ls -l&lt;br /&gt;
total 44&lt;br /&gt;
drwx------    2 alis     alice        4096 Jul 19  2006 agents&lt;br /&gt;
-rw-rw-rw-    1 alis     alice           0 Nov 14 09:09 edglog.log&lt;br /&gt;
drwx------    2 alis     alice        4096 Jul 19  2006 info-provider&lt;br /&gt;
drwx------    2 alis     alice        4096 Mar  1 04:02 log&lt;br /&gt;
drwx------    2 alis     alice        4096 Mar  2 17:19 proxy_repository&lt;br /&gt;
-rw-------    1 alis     alice       13750 Mar  2 17:04 _registerer_proxies.db&lt;br /&gt;
-r--------    1 alis     alice        2690 Mar  2 14:20 renewal-proxy.pem&lt;br /&gt;
drwx------    2 alis     alice        4096 Aug  6  2006 start&lt;br /&gt;
drwx------    2 alis     alice        4096 Aug  5  2006 stop&lt;br /&gt;
 }}}&lt;br /&gt;
 * Envoyer un e-mail à: Patricia.Mendez@cern.ch, latchezar.betev@cern.ch et trunov@cc.in2p3.fr :&lt;br /&gt;
1. demander que la machine soit enregistrée &#039;as trusted host&#039; dans myproxy.cern.ch dans LDAP (il faut fournir le DN de la VOBOX).&lt;br /&gt;
2. fournir les informations suivantes dans le mail:&lt;br /&gt;
  * hostname de la VO-BOX&lt;br /&gt;
  * le nom des users: alicesgm (alis dans GRIF), alip (ALICE Production)&lt;br /&gt;
  * le nom directory pour xrootd (ex: /data)&lt;br /&gt;
  * le nom du SE/DPM Server (ex: ipnsedpm.in2p3.fr)&lt;br /&gt;
  * le nom du serveur LFC (ex: grid14.lal.in2p3.fr) et le catalogue pour&lt;br /&gt;
    ALICE (/grid/alice)&lt;br /&gt;
  * le nom du RB (ex: grid09.lal.in2p3.fr)&lt;br /&gt;
  * le nom du CE et de la queue batch&lt;br /&gt;
    (ex: ipnls2001.in2p3.fr:2119/jobmanager-pbs-alice)&lt;br /&gt;
  * le path pour le experiment software area&lt;br /&gt;
    (ex:VO_ALICE_SW_DIR=/ipn/storage1/exp_soft/alis, zone &amp;quot;NFS shared&amp;quot; avec les WNs)&lt;br /&gt;
 * Installer Alien ou demander que Artem ou Patricia vous l&#039;installe.&lt;br /&gt;
 * S&#039;inscrire individullement dans le projet ALICE (voir avec un physicien d&#039;ALICE du Labo et avec le Secrétariat d&#039;ALICE) :&lt;br /&gt;
  1. demander un logon au CERN (si vous n&#039;en avez pas déjà)&lt;br /&gt;
  2. demander à être enregistré comme membre du projet ALICE&lt;br /&gt;
 * Inscrivez-vous dans AliEn en suivant les étapes sur la page http://alien.cern.ch/twiki/bin/view/Alice/UserRegistration&lt;br /&gt;
  1. Vous serez amenés à vous inscrire dans la VO ALICE (si ce n&#039;est pas déjà fait)  sur https://lcg-voms.cern.ch:8443/vo/alice/vomrs&lt;br /&gt;
  2. Ensuite vous pourrez vous inscrire dans AliEn (&amp;quot;5. Register with AliEn&amp;quot; sur&lt;br /&gt;
    https://alien.cern.ch:8443/twiki/bin/UserReg&lt;br /&gt;
 * Demander ensuite à être mapé sur &#039;alidprod&#039; si vous voulez pouvoir utiliser AliEn sous votre nom (ALIEN_USER=user_name dans ~alis/.alien/Environment) la VO-BOX (start/stop des services par exemples)&lt;br /&gt;
 * Mettre dans /etc/motd des informations utiles à afficher lors de la connexion [gsi]ssh: LFC server, catalog pour alice, zone pour xrootd, etc.&lt;br /&gt;
&lt;br /&gt;
== Durée du proxy ==&lt;br /&gt;
&lt;br /&gt;
Vérifier dans /opt/lcg/sbin/vobox-renewd qu&#039;on a &#039;-t 48&#039; :&lt;br /&gt;
&lt;br /&gt;
 {{{&lt;br /&gt;
${GLOBUS_LOCATION}/bin/myproxy-get-delegation -a ${VOBOX_PROXY_REPOSITORY}/${CERT} -d -o $TMP_PROXY -t 48 2&amp;gt;&amp;amp;1 &amp;gt; /dev/null&lt;br /&gt;
 }}}&lt;br /&gt;
&lt;br /&gt;
Il s&#039;agit d&#039;un problème qui devrait être résolu dans le futur&lt;br /&gt;
&lt;br /&gt;
== Backup ==&lt;br /&gt;
&lt;br /&gt;
Faire régulièrement des sauvegardes de ~alis, /opt/vobox et des logs d&#039;Alien (ex: /var/log/alis)&lt;br /&gt;
&lt;br /&gt;
== Se connecter à la VO-BOX depuis le UI ==&lt;br /&gt;
&lt;br /&gt;
Faire &#039;gsissh -l user -p port_GSISSH &amp;lt;vobox_name&amp;gt; &#039;&lt;br /&gt;
 {{{&lt;br /&gt;
[diarra@ipngrid01 ~]$ gsissh -l alis -p 1975 ipnvobox&lt;br /&gt;
 }}}&lt;br /&gt;
&lt;br /&gt;
== Utiliser le serveur myproxy ==&lt;br /&gt;
&lt;br /&gt;
Sur le UI:&lt;br /&gt;
&lt;br /&gt;
 {{{&lt;br /&gt;
myproxy-init -s myproxy.cern.ch -d -n -t 48 -c 720&lt;br /&gt;
gsissh -l alis -p 1975 &amp;lt;vobox_name&amp;gt;&lt;br /&gt;
 }}}&lt;br /&gt;
Sur la VO-BOX:&lt;br /&gt;
&lt;br /&gt;
 {{{&lt;br /&gt;
vobox-proxy --vo alice --proxy-safe 3600 --myproxy-safe 259200 --email &amp;lt;votre_e-mail&amp;gt; register&lt;br /&gt;
 }}}&lt;br /&gt;
Pour s&#039;assurer que le proxy est renouveler automatiquement, vérifier que vous avez dans /opt/vobox/alice/log/events.log une ligne du genre:&lt;br /&gt;
 {{{&lt;br /&gt;
9/07/06 14:35:56 : Proxy for DN  &amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=IPNO/CN=Christophe Diarra/CN=proxy/CN=proxy/CN=proxy&amp;quot; successfully renewed&lt;br /&gt;
 }}}&lt;br /&gt;
Dans /opt/vobox/alice/proxy_repository/ vous trouverez le proxy.&lt;br /&gt;
== Start/Stop des services ==&lt;br /&gt;
&lt;br /&gt;
Les services peuvent être démarrés un par un. Les services disponibles sont :&lt;br /&gt;
Monitor, SE, CE, PackMan, Monalisa.&lt;br /&gt;
&lt;br /&gt;
Un script permet de les démarrer ou de les arrêter dans le bon ordre:&lt;br /&gt;
&lt;br /&gt;
 {{{&lt;br /&gt;
$VO_ALICE_SW_DIR/alien/etc/rc.d/init.d/aliend start|stop&lt;br /&gt;
 }}}&lt;br /&gt;
Pour démarrer ou arreter un seul service :&lt;br /&gt;
&lt;br /&gt;
 {{{&lt;br /&gt;
$VO_ALICE_SW_DIR/alien/scripts/lcg/lcgAlien.sh StartServiceName|StopServiceName&lt;br /&gt;
Exemple:&lt;br /&gt;
$VO_ALICE_SW_DIR/alien/scripts/lcg/lcgAlien.sh StopCE&lt;br /&gt;
$VO_ALICE_SW_DIR/alien/scripts/lcg/lcgAlien.sh StartCE&lt;br /&gt;
 }}}&lt;br /&gt;
&lt;br /&gt;
== Expiration du proxy ==&lt;br /&gt;
&lt;br /&gt;
Quand vous recevez un mail indiquant que le proxy est sur le point d&#039;expirer&lt;br /&gt;
(3 jours avant ?), ou si les logs le signalent, il faut renouveler le proxy sur&lt;br /&gt;
le serveur myproxy depuis le UI.&lt;br /&gt;
&lt;br /&gt;
 {{{&lt;br /&gt;
[root@ipnvobox log]# more /opt/vobox/alice/log/events.log&lt;br /&gt;
...&lt;br /&gt;
11/26/06 15:03:05 : Myproxy lifetime (256228 sec) shorter than security threshol&lt;br /&gt;
d (259200 sec)&lt;br /&gt;
11/26/06 15:03:05 : ... for DN /O=GRID-FR/C=FR/O=CNRS/OU=IPNO/CN=Christophe Diar&lt;br /&gt;
ra&lt;br /&gt;
11/26/06 15:03:05 : sendind notification email to diarra@ipno.in2p3.fr. SUCCESSF&lt;br /&gt;
ULL&lt;br /&gt;
 }}}&lt;br /&gt;
Sur le UI:&lt;br /&gt;
&lt;br /&gt;
 {{{&lt;br /&gt;
[diarra@ipnls2011 my]$ myproxy-info -d -s myproxy.cern.ch&lt;br /&gt;
username: /O=GRID-FR/C=FR/O=CNRS/OU=IPNO/CN=Christophe Diarra&lt;br /&gt;
owner: /O=GRID-FR/C=FR/O=CNRS/OU=IPNO/CN=Christophe Diarra&lt;br /&gt;
  timeleft: 52:25:26  (2.2 days)&lt;br /&gt;
&lt;br /&gt;
[diarra@ipnls2011 my]$ myproxy-init -s myproxy.cern.ch -d -n -t 48 -c 720&lt;br /&gt;
Your identity: /O=GRID-FR/C=FR/O=CNRS/OU=IPNO/CN=Christophe Diarra&lt;br /&gt;
Enter GRID pass phrase for this identity:&lt;br /&gt;
Creating proxy ............................................ Done&lt;br /&gt;
Proxy Verify OK&lt;br /&gt;
Your proxy is valid until: Wed Dec 27 09:56:25 2006&lt;br /&gt;
A proxy valid for 720 hours (30.0 days) for user /O=GRID-FR/C=FR/O=CNRS/OU=IPNO/CN=Christophe Diarra now exists on myproxy.cern.ch.&lt;br /&gt;
 }}}&lt;br /&gt;
&lt;br /&gt;
== Monitoring / Accounting ==&lt;br /&gt;
&lt;br /&gt;
 * [http://pcalimonitor.cern.ch:8889/ ALICE Monitoring with MonALISA]&lt;br /&gt;
 * [http://dashb-alice.cern.ch/dashboard/request.py/jobsummary?sortby=site ALICE Dashboard : Job Summary]&lt;br /&gt;
&lt;br /&gt;
== Liens Utiles ==&lt;br /&gt;
&lt;br /&gt;
[https://alien.cern.ch:8443/twiki/bin/view/AliEn/HowToDebugLcgVoBox Debugging &amp;amp; Troubleshooting the ALICE LCG Vo-Box]&lt;br /&gt;
&lt;br /&gt;
[http://goc.grid.sinica.edu.tw/gocwiki/VO-box_HowTo VO-box HowTo - description, installation, testing]&lt;br /&gt;
&lt;br /&gt;
[http://lcg2.in2p3.fr/wiki/index.php/Alice Page Alice LCG-France]&lt;br /&gt;
&lt;br /&gt;
[https://twiki.cern.ch/twiki/pub/LCG/VoBoxesInfo/VO-Box-security-policy_v05.doc VOBOX Security and Operations Questionnaires]&lt;br /&gt;
&lt;br /&gt;
[http://www.gridpp.ac.uk/wiki/VOBox Pages sur les VOboxes]&lt;br /&gt;
&lt;br /&gt;
[https://edms.cern.ch/document/655277/ LCG VOBox Operations Recommendations and Questionnaire]&lt;br /&gt;
&lt;br /&gt;
[http://alien.cern.ch/twiki/bin/view/AliEn/HowToInstallXrootd How to install xrootd on data servers]&lt;br /&gt;
&lt;br /&gt;
[http://xrootd.slac.stanford.edu/ XROOTD]&lt;br /&gt;
&lt;br /&gt;
= LEMON : Sytème de Monitoring Client/Serveur =&lt;br /&gt;
[[TracNav]]&lt;br /&gt;
&lt;br /&gt;
http://lemon.web.cern.ch/lemon/&lt;br /&gt;
http://lemon.web.cern.ch/lemon/doc/installation/installation.html&lt;br /&gt;
&lt;br /&gt;
[[TOC(inline)]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Installation du Serveur Lemon via quattor en SL4 ==&lt;br /&gt;
&lt;br /&gt;
Utilser les 2 templates :&lt;br /&gt;
{{{&lt;br /&gt;
pro_software_lemon_server_sl4_i386;&lt;br /&gt;
pro_service_lemon_server;&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Qui vont:&lt;br /&gt;
 &#039;&#039;&#039;1) installer les RPMs necessaires&#039;&#039;&#039;&lt;br /&gt;
{{{&lt;br /&gt;
(&amp;quot;edg-fabricMonitoring-server&amp;quot;,&amp;quot;2.13.0-3&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;rrdtool&amp;quot;,&amp;quot;1.0.49-2.1.el3.rf&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;lrf&amp;quot;,&amp;quot;1.0.7-15&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;ncm-fmonagent&amp;quot;,&amp;quot;1.0.32-1&amp;quot;,&amp;quot;noarch&amp;quot;);&lt;br /&gt;
(&amp;quot;perl-TimeDate&amp;quot;,&amp;quot;2.22-1&amp;quot;,&amp;quot;noarch&amp;quot;);&lt;br /&gt;
(&amp;quot;httpd&amp;quot;,&amp;quot;2.0.52-22.ent&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;httpd-suexec&amp;quot;,&amp;quot;2.0.52-22.ent&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;system-config-httpd&amp;quot;,&amp;quot;1.3.1-1&amp;quot;,&amp;quot;noarch&amp;quot;);&lt;br /&gt;
(&amp;quot;php-ldap&amp;quot;,&amp;quot;4.3.9-3.15&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;php-gd&amp;quot;,&amp;quot;4.3.9-3.15&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;php-imap&amp;quot;,&amp;quot;4.3.9-3.15&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;php-pear&amp;quot;,&amp;quot;4.3.9-3.15&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;php&amp;quot;,&amp;quot;4.3.9-3.15&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;oracle-xe-univ&amp;quot;,&amp;quot;10.2.0.1-1.0&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;cx_Oracle&amp;quot;,&amp;quot;4.1-1&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;lemon-ora-admin&amp;quot;,&amp;quot;1.0.4-96&amp;quot;,&amp;quot;noarch&amp;quot;);&lt;br /&gt;
# lemon-OraMon probleme de dependance: l&#039;installer avec --nodeps (info from Miroslav Sicket CERN)&lt;br /&gt;
(&amp;quot;lemon-OraMon&amp;quot;,&amp;quot;1.2.0-1&amp;quot;,&amp;quot;i386&amp;quot;);}}}&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039; 2) configurer les fichiers suivant :&#039;&#039;&#039;&lt;br /&gt;
{{{&lt;br /&gt;
/etc/lemon/server/lemon-oramon-server.conf&lt;br /&gt;
/var/www/html/lrf/config.php&lt;br /&gt;
/var/spool/edg-fmon-server/nodes.map&lt;br /&gt;
/etc/lemon/lemonmrd.conf&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 &#039;&#039;&#039; 3) et demarrer les 2 demons :&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
/etc/init.d/OraMon&lt;br /&gt;
/etc/init.d/lemonmrd&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Configuration Hors Quattor ==&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;1) Configuration de la Base de Donée:&#039;&#039;&#039; &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
/etc/init.d/oracle-xe configure&lt;br /&gt;
. /usr/lib/oracle/xe/app/oracle/product/10.2.0/server/bin/oracle_env.sh&lt;br /&gt;
sqlplus system&lt;br /&gt;
 SQL&amp;gt; EXEC DBMS_XDB.SETLISTENERLOCALACCESS(FALSE);       &lt;br /&gt;
/etc/init.d/oracle-xe start&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;2) Ajouter l&#039;utilisateur lemon&#039;&#039;&#039;&lt;br /&gt;
via l&#039;interface http://ma_machine:port_choisi/apex&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;3) Configuration de Oramon :&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
lemon-ora.admin --create-schema -d xe --data-tablespace=USERS --index-tablespace=USERS&lt;br /&gt;
lemon-ora.admin --file=/etc/oramon-server.conf -d xe --all  --data-tablespace=USERS --index-tablespace=USERS&lt;br /&gt;
lemon-ora.admin --file=/etc/oramon-server.conf -d xe  -u lemon --create-las --data-tablespace=USERS --index-tablespace=USERS&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;4) exporter les variables Oracle :&#039;&#039;&#039;&lt;br /&gt;
{{{&lt;br /&gt;
export LD_LIBRARY_PATH=/usr/lib/oracle/xe/app/oracle/product/10.2.0/server/lib:/usr/lib/oracle/10.2.0.3/client/lib&lt;br /&gt;
export ORACLE_SID=XE&lt;br /&gt;
export PATH=$PATH:/usr/lib/oracle/xe/app/oracle/product/10.2.0/server/bin&lt;br /&gt;
export ORACLE_HOME=/usr/lib/oracle/xe/app/oracle/product/10.2.0/server&lt;br /&gt;
export TNS_ADMIN=/usr/lib/oracle/xe/app/oracle/product/10.2.0/server/network/admin&lt;br /&gt;
export PYTHONPATH=/usr/lib/python2.2/site-packages&lt;br /&gt;
export NLS_LANG=AMERICAN_AMERICA.AL32UTF8&lt;br /&gt;
&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
     Dans tous les fichiers de demarrage suivant :&lt;br /&gt;
   {{{&lt;br /&gt;
   /etc/init.d/lemonmrd&lt;br /&gt;
   /etc/init.d/httpd&lt;br /&gt;
   /etc/sysconfig/OraMon&lt;br /&gt;
   }}}&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;5) Et verifier ensuite les logs, et que le serveur collecte bien des données :&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
/var/log/lemonmrd.log&lt;br /&gt;
/var/www/html/lrf/data&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Ajout de nouvelles sondes/metriques ==&lt;br /&gt;
&lt;br /&gt;
I) Sur le client&lt;br /&gt;
&lt;br /&gt;
a)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node07 sensor-example]# cat /etc/lemon/agent/sensors/torque_maui.conf&lt;br /&gt;
&lt;br /&gt;
 torque_maui&lt;br /&gt;
        CommandLine /usr/bin/perl /usr/libexec/sensors/lemon-sensor.pl RunningJobs&lt;br /&gt;
        MetricClasses&lt;br /&gt;
                torque_maui.RunningJobs&lt;br /&gt;
b)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node07 sensor-example]# cat /etc/lemon/agent/metrics/torque_maui.conf&lt;br /&gt;
&lt;br /&gt;
 20047&lt;br /&gt;
        MetricName     Jobsrunning&lt;br /&gt;
        MetricClass    torque_maui.RunningJobs&lt;br /&gt;
        Timing  3600   0&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
c)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node07 sensor-example]# cat /usr/libexec/sensors/RunningJobs.pm&lt;br /&gt;
&lt;br /&gt;
 #!/usr/bin/perl -w&lt;br /&gt;
 package torque_maui;&lt;br /&gt;
 # modules&lt;br /&gt;
 use diagnostics;&lt;br /&gt;
 use strict;&lt;br /&gt;
 # the sensor API interface&lt;br /&gt;
 use sensorAPI;&lt;br /&gt;
 # register module name and version&lt;br /&gt;
 registerVersion(&amp;quot;lemon-sensor-torque_maui&amp;quot;, &amp;quot;1.0.0-1&amp;quot;);&lt;br /&gt;
 # register the sensors metric classes&lt;br /&gt;
 registerMetric(&amp;quot;torque_maui.RunningJobs&amp;quot;, &amp;quot;report the Running Jobs&amp;quot;, &amp;quot;torque_maui::RunningJobs&amp;quot;);&lt;br /&gt;
 sub RunningJobs_sample() {&lt;br /&gt;
    # All function hooks in the sensor API: _sample(), _initialise(), _periodicCheck(), _destroy()&lt;br /&gt;
    # are passed a hash as the first argument. This hash provides the function with the ability to&lt;br /&gt;
    # access the methods and variables of the metric instance/object. This is Perls implementation&lt;br /&gt;
    # of Object Orientation&lt;br /&gt;
    my $obj  = shift;&lt;br /&gt;
    # variables&lt;br /&gt;
    my $line = `/usr/bin/showq -r | echo \$((\$(wc -l)-4))`;&lt;br /&gt;
            $obj-&amp;gt;storeSample01($line);&lt;br /&gt;
    # All functions called by the sensor API must return a value&lt;br /&gt;
    #  - if the sampling was successful you the return code should be 0 and -1 on error&lt;br /&gt;
     return 0;&lt;br /&gt;
      }&lt;br /&gt;
 1;&lt;br /&gt;
 #-- End-of-File --------------------------------------------------------------------------------------#&lt;br /&gt;
&lt;br /&gt;
II) Pour le serveur&lt;br /&gt;
&lt;br /&gt;
1) Pour Oramon&lt;br /&gt;
&lt;br /&gt;
a) modifier le fichier /etc/oramon-server.conf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 ………..&lt;br /&gt;
&lt;br /&gt;
                torque_maui.RunningJobs&lt;br /&gt;
                        Description Running jobs on the CE?&lt;br /&gt;
                        Fields&lt;br /&gt;
                                Running_Jobs&lt;br /&gt;
                                        Type INTEGER&lt;br /&gt;
                                        MetricUnit count&lt;br /&gt;
                                        MetricScale 1&lt;br /&gt;
&lt;br /&gt;
 ……………..&lt;br /&gt;
&lt;br /&gt;
                20047&lt;br /&gt;
                        MetricClass torque_maui.RunningJobs&lt;br /&gt;
                        MetricName Jobsrunning&lt;br /&gt;
                        Description Running Jobs on the CE?&lt;br /&gt;
                        TableName _20047&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Metric classes part into corresponding metric class part, metric instance into metric instances (be carefull about the tabs). &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
b) sourcer laes variables d&#039;environnement oracle :&lt;br /&gt;
&lt;br /&gt;
 . /usr/lib/oracle/xe/app/oracle/product/10.2.0/server/bin/oracle_env.sh&lt;br /&gt;
&lt;br /&gt;
c) mettre a jour la Database:&lt;br /&gt;
&lt;br /&gt;
 lemon-ora.admin --file=/etc/oramon-server.conf -d xe  -u lemon --all --data-tablespace=USERS --index-tablespace=USERS&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
2) Pour LRF&lt;br /&gt;
&lt;br /&gt;
a) # tail -3 /var/spool/edg-fmon-server/metrics.map&lt;br /&gt;
&lt;br /&gt;
 182 20015     /home.use&lt;br /&gt;
 183 30050     exitCodeNFS&lt;br /&gt;
 184 20047     RunningJobs&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
b)# more /etc/lemon/lemonmrd.conf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 ……………..&lt;br /&gt;
&lt;br /&gt;
 RunningJobs=Jobsrunning:Running_Jobs&lt;br /&gt;
&lt;br /&gt;
 ……………..&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
 [node07.datagrid.cea.fr]&lt;br /&gt;
 type=host&lt;br /&gt;
 metrics=+RunningJobs&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
c) #grep -i job /var/www/html/lrf/metric_map.php&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
                   &amp;quot;RunningJobs&amp;quot;        =&amp;gt; array(&amp;quot;RunningJobs&amp;quot;,&amp;quot;Jobs   running&amp;quot;,&amp;quot;count&amp;quot;,1,0,&#039;Jobsrunning.Running_Jobs&#039;),&lt;br /&gt;
&lt;br /&gt;
                        1 =&amp;gt; array(&#039;name&#039; =&amp;gt; &#039;JOBS STATISTICS&#039;, &#039;y-axis&#039; =&amp;gt; &#039;count&#039;, &#039;stack&#039; =&amp;gt; false, &#039;base&#039; =&amp;gt; 1,&lt;br /&gt;
&lt;br /&gt;
                            &#039;metrics&#039; =&amp;gt; array( 0 =&amp;gt; array(&#039;name&#039; =&amp;gt;  &#039;RunningJobs&#039;, &#039;summary&#039; =&amp;gt; true, &#039;title&#039; =&amp;gt; &#039;Running Jobs&#039;)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Pour configurer les alarmes ==&lt;br /&gt;
&lt;br /&gt;
a) créer un fichier xml par machine:&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
# cat /tmp/my_cnf_node07.xml&lt;br /&gt;
&amp;lt;?xml version = &#039;1.0&#039;?&amp;gt;&lt;br /&gt;
&amp;lt;CDBSEARCHLIST&amp;gt;&lt;br /&gt;
&amp;lt;HOST ID=&amp;quot;node07.datagrid.cea.fr&amp;quot; CLUSTER =&amp;quot;GRID_SERVICES&amp;quot; SUBCLUSTER =&amp;quot;&amp;quot; IMPORTANCE =&amp;quot;0&amp;quot; SURESTATUS =&amp;quot;TRUE&amp;quot; NOCONTACTTIMEOUT =&amp;quot;660&amp;quot;&lt;br /&gt;
PINGTIMEOUT =&amp;quot;&amp;quot; /&amp;gt;&lt;br /&gt;
&amp;lt;/CDBSEARCHLIST&amp;gt;&lt;br /&gt;
#&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
b) mettre a jour la Database:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
# lemon-ora.entities -u lemon -d xe -c /tmp/my_cnf_node07.xml&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Problemes rencontrés ==&lt;br /&gt;
&lt;br /&gt;
ne pas oublier d&#039;exporter les variables oracles&lt;br /&gt;
&lt;br /&gt;
le fichies nodes.map ne doit pas avoir de lignes vides&lt;br /&gt;
&lt;br /&gt;
Les Symlink avec cette version d&#039;apache ne fonctionne pas (on utlisie /var/www/html/lrf/data au lieu de /var/spool/data)&lt;br /&gt;
&lt;br /&gt;
Php avec oci8 tres sensibles aux versions (plus de soucis avec les versions SL4 ci dessus)&lt;br /&gt;
&lt;br /&gt;
= Test sur le réseaux datagrid.cea.fr: Iperf =&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Le 20/03/2007&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Avec 5 threads&#039;&#039;&#039; : &lt;br /&gt;
&lt;br /&gt;
Lyon -&amp;gt; Saclay : 550Mb/s (peu variable) ; &lt;br /&gt;
&lt;br /&gt;
Saclay -&amp;gt; Lyon : 600 Mb/s (très variables de 250 Mb/s à 750 Mb/s)).&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Avec 1 thread&#039;&#039;&#039; : 300 Mb/s dans les 2 sens&lt;br /&gt;
&lt;br /&gt;
= Test sur le réseaux datagrid.cea.fr: Transfert de fichiers -1ere PHASE- =&lt;br /&gt;
&lt;br /&gt;
=== Sites impliqués ===&lt;br /&gt;
* &#039;&#039;&#039;T1 CC-IN2P3 &#039;&#039;&#039;&lt;br /&gt;
** Contacts : &amp;lt;span style=&amp;quot;color:#0000F0;&amp;quot;&amp;gt; David Bouvet, Lionel Schwarz &amp;lt;/span&amp;gt;&lt;br /&gt;
** &#039;&#039;&#039;SE : ccsrm.in2p3.fr&#039;&#039;&#039;&lt;br /&gt;
*** Endpoint transferts DAPNIA-CC : /pnfs/in2p3.fr/data/dteam/disk/dapnia/&lt;br /&gt;
* &#039;&#039;&#039;T2 GRIF&#039;&#039;&#039;   &lt;br /&gt;
** Contacts : &amp;lt;span style=&amp;quot;color:#0000F0;&amp;quot;&amp;gt; Christine Leroy&amp;lt;/span&amp;gt;&lt;br /&gt;
** &#039;&#039;&#039;SE-DAPNIA : node12.datagrid.cea.fr&#039;&#039;&#039;&lt;br /&gt;
*** GlueServiceEndpoint: httpg://node12.datagrid.cea.fr:8443/srm/managerv1&lt;br /&gt;
*** GlueSAPath: /dpm/datagrid.cea.fr/home/dteam&lt;br /&gt;
** &#039;&#039;&#039;SE-LAL : grid05.lal.in2p3.fr&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
=== conditions de transferts pour FTS===&lt;br /&gt;
&lt;br /&gt;
Les transferts sont initiés depuis node02.datagrid.cea.fr&lt;br /&gt;
&lt;br /&gt;
* Avant tout transfert, il faut un &#039;&#039;&#039;proxy valide déposé sur un serveur MyProxy&#039;&#039;&#039; pour permettre au serveur FTS de renouveler un proxy expiré en cours de transfert&lt;br /&gt;
&lt;br /&gt;
 myproxy-init -s cclcgproxli01.in2p3.fr -d&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
* [[pour connaitre la configuration du canal FTS :]]&lt;br /&gt;
 glite-transfer-channel-list -s https://cclcgftsprod01.in2p3.fr:8443/glite-data-transfer-fts/services/ChannelManagement GRIF-IN2P3&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
* [[pour modifier la configuration du canal FTS :]]&lt;br /&gt;
&lt;br /&gt;
 glite-transfer-channel-set -s https://cclcgftsprod01.in2p3.fr:8443/glite-data-transfer-fts/services/ChannelManagement -f 10 -T 1 GRIF-IN2P3&lt;br /&gt;
&lt;br /&gt;
=== Les tests de transferts ===&lt;br /&gt;
&lt;br /&gt;
* [[Source d&#039;information:]]&lt;br /&gt;
-Script de test des transferts FTS proposé par GridPP à l&#039;adresse : http://www.gridpp.ac.uk/wiki/Transfer_Test_Python_Script_HOWTO &amp;lt;br&amp;gt;&lt;br /&gt;
-Le wiki GriPP est une mine d&#039;informations : http://www.gridpp.ac.uk/wiki/Main_Page&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
* [[1er Test: Utilisation du script de GRIDPP: filetransfer.py]]&lt;br /&gt;
&lt;br /&gt;
CC-&amp;gt;DAPNIA&lt;br /&gt;
 set SourceURL=&amp;quot;srm://ccsrm.in2p3.fr:8443/&amp;quot;&lt;br /&gt;
 set DestURL=&amp;quot;srm://node12.datagrid.cea.fr:8443/dpm/datagrid.cea.fr/home/dteam/&amp;quot;&lt;br /&gt;
&lt;br /&gt;
liste des fichiers:&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00007&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00008&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00009&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00011&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00012&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00013&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00014&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00015&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00016&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00017&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00018&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00019&lt;br /&gt;
&lt;br /&gt;
DAPNIA -&amp;gt; CC&lt;br /&gt;
&lt;br /&gt;
 set SourceURL=&amp;quot;srm://node12.datagrid.cea.fr:8443/dpm/datagrid.cea.fr/home/dteam/dapnia/&amp;quot;&lt;br /&gt;
 set DestURL=&amp;quot;srm://ccsrm.in2p3.fr:8443/pnfs/in2p3.fr/data/dteam/disk/dapnia/&amp;quot;&lt;br /&gt;
&lt;br /&gt;
liste des fichiers (1 seul SE-DISK)&lt;br /&gt;
&lt;br /&gt;
 cleroy/ATLAS-file00007&lt;br /&gt;
 cleroy/ATLAS-file00008&lt;br /&gt;
 cleroy/ATLAS-file00009&lt;br /&gt;
 cleroy/ATLAS-file00011&lt;br /&gt;
 cleroy/ATLAS-file00012&lt;br /&gt;
 cleroy/ATLAS-file00013&lt;br /&gt;
 cleroy/ATLAS-file00014&lt;br /&gt;
 cleroy/ATLAS-file00015&lt;br /&gt;
 cleroy/ATLAS-file00016&lt;br /&gt;
 cleroy/ATLAS-file00017&lt;br /&gt;
 cleroy/ATLAS-file00018&lt;br /&gt;
 cleroy/ATLAS-file00019&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
en parrallele avec n=10 pour les 2 type de transfet, pour durer environ 20 minutes (1Gb/s).&lt;br /&gt;
FTS configuré avec (f6;T2). &lt;br /&gt;
&lt;br /&gt;
 ESSAI du nbre de  |&lt;br /&gt;
 (fichier;stream)  | Bande passante(Mb/s)  | &lt;br /&gt;
 ------------------+-----------------------+&lt;br /&gt;
 | (f8;T1)         | 242                   |&lt;br /&gt;
 | (f6;T1)         | 301                   |&lt;br /&gt;
 | (f3;T1)         | 302                   |&lt;br /&gt;
 | (f2;T1)         | 185                   |&lt;br /&gt;
 | (f6;T2)         | 312                   |&lt;br /&gt;
 | (f6;T6)         | 284                   |&lt;br /&gt;
 | (f6;T4)         | 280                   |&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Resultat 26/04/2007 :&lt;br /&gt;
&lt;br /&gt;
D-CC&lt;br /&gt;
 Transfer Bandwidth Report:&lt;br /&gt;
 110/120 transferred in 2668.16920614 seconds&lt;br /&gt;
 81081938300.0 bytes transferred.&lt;br /&gt;
 Bandwidth: 243.108834667Mb/s&lt;br /&gt;
&lt;br /&gt;
CC-D&lt;br /&gt;
 Transfer Bandwidth Report:&lt;br /&gt;
 120/120 transferred in 3033.88385892 seconds&lt;br /&gt;
 88453023600.0 bytes transferred.&lt;br /&gt;
 Bandwidth: 233.240368355Mb/s&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Débit réseaux pour le SE DISK du DAPNIA (derriere node12):&lt;br /&gt;
&lt;br /&gt;
http://lcg2.in2p3.fr/wiki/images/Node11_net_fts_26042007.gif&lt;br /&gt;
&lt;br /&gt;
Débit réseaux routeur datagrid.cea.fr:&lt;br /&gt;
&lt;br /&gt;
http://lcg2.in2p3.fr/wiki/images/Routeur_datagridceafr_26042007.png&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
* [[2eme test: Utilisation du script de GRIDPP (filetransfer.py) et globus_url_copy]]&lt;br /&gt;
&lt;br /&gt;
utilisation de:&lt;br /&gt;
* filetransfer.py entre DAPNIA &amp;lt;-&amp;gt; Lyon (SE &amp;lt;-&amp;gt; SE)&lt;br /&gt;
* globus_url_copy et lcg-cr entre DAPNIA &amp;lt;-&amp;gt; Orsay (UI &amp;lt;-&amp;gt; SE)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Le 02/05/2007: Meme occupation réseaux :300Mb/s&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== &#039;&#039;&#039;CONCLUSION PRELIMINIARE&#039;&#039;&#039; ===&lt;br /&gt;
&lt;br /&gt;
=&amp;gt; Ces tests avaient pour but d&#039;occuper le plus possible la bande passante de notre réseaux datagrid.cea.fr, pour s&#039;assurer que le routeur tenait bien la charge&lt;br /&gt;
&lt;br /&gt;
=&amp;gt; Nous n&#039;avons pas reussi à occuper toute la bande passante: tests à poursuivre avec plus de client/serveur =&amp;gt; Le comble de l&#039;informaticien: réussir à faire mieux que ses utilisateurs:&lt;br /&gt;
&lt;br /&gt;
One day, One atlas physicit, Many jobs:&lt;br /&gt;
&lt;br /&gt;
http://lcg2.in2p3.fr/wiki/images/Node11.datagrid.cea.fr.rrd_NUMKBREADAVG_d.gif&lt;br /&gt;
&lt;br /&gt;
Débit réseaux SE DISK, le 16/06/2006&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Test sur le réseaux datagrid.cea.fr: Transfert de fichiers &#039;&#039;&#039;-2eme PHASE (3 SE-DISK au DAPNIA et multi threading)-&#039;&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Transfert FTS: (CC-&amp;gt;DAPNIA) // (DAPNIA-&amp;gt;CC) avec plusieurs SE-DISK du DAPNIA (node11, node18, node20) ===&lt;br /&gt;
&lt;br /&gt;
=== Transfert: FTS (CC-&amp;gt;DAPNIA) // FTS (DAPNIA-&amp;gt;CC) ) // globus-url-copy (UI DAPNIA -&amp;gt; SE LAL) // globus-url-copy (SE LAL -&amp;gt; UI DAPNIA) ===&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Priorites locales Filtre TORQUE-&#039;&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
http://lcg2.in2p3.fr/wiki/images/Submit_filter.txt&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Configuration thumper&#039;&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
La DOc:&lt;br /&gt;
http://www.sun.com/products-n-solutions/hardware/docs/pdf/820-1151-10.pdf&lt;br /&gt;
&lt;br /&gt;
http://doc.fedora-fr.org/RAID_Logiciel:_Comment_Installer_et_G%C3%A9rer_un_System_Raid&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Formatage des disks: ==&lt;br /&gt;
&lt;br /&gt;
Il faut des partitions du type type Linux raid autodetect (type fd)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 for i in   &lt;br /&gt;
 /dev/sda /dev/sdaa /dev/sdab /dev/sdad /dev/sdae /dev/sdaf /dev/sdag /dev/sdah /dev/sdai /dev/sdaj /dev/sd    /dev/sdal /dev/sdam /dev/sdan /dev/sdao /dev/sdap /dev/sdaq /dev/sdar /dev/sdas /dev/sdat /dev/sdau /dev/sdav /dev/sdd /dev/sde /dev/sdf /dev/sdg /dev/sdh /dev/sdi /dev/sdj /dev/sdk /dev/sdl /dev/sdm /dev/sdn /dev/sdo &lt;br /&gt;
 /dev/sdp /dev/sdq /dev/sdr /dev/sds /dev/sdt /dev/sdu /dev/sdv /dev/sdw /dev/sdx /dev/sdz; do export  &lt;br /&gt;
 $i; /root/script_raid $i; done&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node23 ~]# more /root/script_raid&lt;br /&gt;
 sfdisk -f $1 &amp;lt;&amp;lt; EOF&lt;br /&gt;
 0 60801 fd&lt;br /&gt;
 ;&lt;br /&gt;
 ;&lt;br /&gt;
 ;&lt;br /&gt;
 EOF&lt;br /&gt;
&lt;br /&gt;
Pour verifier:&lt;br /&gt;
&lt;br /&gt;
 # for i  &lt;br /&gt;
    &lt;br /&gt;
 in  /dev/sda /dev/sdaa /dev/sdab /dev/sdad /dev/sdae /dev/sdaf /dev/sdag /dev/sdah /dev/sdai /dev/sdaj &lt;br /&gt;
 /dev/sdak /dev/sdal /dev/sdam /dev/sdan /dev/sdao /dev/sdap /dev/sdaq /dev/sdar /dev/sdas /dev/sdat /dev/sdau /dev/sdav /dev/sdd /dev/sde /dev/sdf /dev/sdg /dev/sdh /dev/sdi /dev/sdj /dev/sdk /dev/sdl /dev/sdm /dev/sdn  /dev/sdo /dev/sdp /dev/sdq /dev/sdr /dev/sds /dev/sdt /dev/sdu /dev/sdv /dev/sdw /dev/sdx /dev/sdz; do  &lt;br /&gt;
 sfdisk --list $i ; done | more&lt;br /&gt;
&lt;br /&gt;
== Creation des Raids logiciel: ==&lt;br /&gt;
&lt;br /&gt;
Conseil de SUN:&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&amp;quot;Diff Raid 5 config does not change the availability that much, Raid 5 is one way parity, if you lose two disks in the same raid group, you lose the  data. The difference is probability of losing two disks is higher when you have higher number of disks in a raid group. We usually suggest using one disk out of each controller for parity, (six controller total), 5+1 configuration, 8 raid groups. Overhead is 1/6 about 16% capacity loss. add the OS disk, 20TB.&amp;quot;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 mdadm --create /dev/md1 --level=5 --raid- &lt;br /&gt;
 devices=6 /dev/sdab1 /dev/sdt1 /dev/sdar1 /dev/sdaj1 /dev/sdl1 /dev/sdd1&lt;br /&gt;
 mdadm --create /dev/md2 --level=5 --raid- &lt;br /&gt;
 devices=6 /dev/sdaf1 /dev/sdx1 /dev/sdav1 /dev/sdan1 /dev/sdp1 /dev/sdh&lt;br /&gt;
 mdadm --create /dev/md3 --level=5 --raid- &lt;br /&gt;
 devices=6 /dev/sdaa1 /dev/sds1 /dev/sdaq1 /dev/sdai1 /dev/sdk1 /dev/sdc1&lt;br /&gt;
 mdadm --create /dev/md4 --level=5 --raid- &lt;br /&gt;
 devices=6 /dev/sdae1 /dev/sdw1 /dev/sdau1 /dev/sdam1 /dev/sdo1 /dev/sdg1&lt;br /&gt;
 mdadm --create /dev/md5 --level=5 --raid- &lt;br /&gt;
 devices=6 /dev/sdz1 /dev/sdr1 /dev/sdap1 /dev/sdah1 /dev/sdj1 /dev/sdb1&lt;br /&gt;
 mdadm --create /dev/md6 --level=5 --raid- &lt;br /&gt;
 devices=6 /dev/sdad1 /dev/sdv1 /dev/sdat1 /dev/sdal1 /dev/sdn1 /dev/sdf1&lt;br /&gt;
 mdadm --create /dev/md7 --level=5 --raid-devices=5 /dev/sdq1 /dev/sdao1 /dev/sdag1 /dev/sdi1 /dev/sda1&lt;br /&gt;
 mdadm --create /dev/md8 --level=5 --raid-devices=5 /dev/sdu1 /dev/sdas1 /dev/sdak1 /dev/sdm1 /dev/sde1&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Sinon il est possible d&#039;avoir un disk de spare pour tous les raids, cf doc :&#039;&#039;&lt;br /&gt;
[http://images.globalknowledge.com/wwwimages/whitepaperpdf/WP_RCHE_10TipsTricks1.pdf] &lt;br /&gt;
&#039;&#039;mais je n&#039;ai pas eu le temps de tester.&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Pour verifier:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 cat /proc/mdstat&lt;br /&gt;
 mdadm --query /dev/md1&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Pour supprimer:&lt;br /&gt;
&lt;br /&gt;
 mdadm /dev/md1 stop&lt;br /&gt;
 mdadm /dev/md1 --remove&lt;br /&gt;
 mdadm --zero-superblock /dev/hdxx1&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 mkfs -t ext3 /dev/md1&lt;br /&gt;
 mount /dev/md1 /scratch&lt;br /&gt;
&lt;br /&gt;
== Pour les drivers: ==&lt;br /&gt;
&lt;br /&gt;
telecharger les outils et driver linux:&lt;br /&gt;
&lt;br /&gt;
http://www.sun.com/servers/x64/x4500/downloads.jsp&lt;br /&gt;
&lt;br /&gt;
telecharger: kernel-largesmp-devel-2.6.9-42.0.3.EL.x86_64&lt;br /&gt;
&lt;br /&gt;
Par contre il crée &lt;br /&gt;
&#039;&#039;&#039;/usr/src/kernels/2.6.9-42.0.3.EL-largesmp-x86_64&#039;&#039;&#039;  &lt;br /&gt;
au lieu de &#039;&#039;&#039;/usr/src/kernels/2.6.9-42.0.3.ELlargesmp-x86_64&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
faire donc un:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 cp -r /usr/src/kernels/2.6.9-42.0.3.EL-largesmp-x86_64 /usr/src/kernels/2.6.9-42.0.3.ELlargesmp-x86_64&lt;br /&gt;
&lt;br /&gt;
Ensuite:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 rpmbuild --rebuild   mvSatalinux-3.6.3_2-2.6.9_42.ELsmp_1.src.rpm&lt;br /&gt;
 rpm -e (de tous les rpm: &amp;quot;rpm -qa | grep -i mvsata&amp;quot;)&lt;br /&gt;
 rpm -ivh /usr/src/redhat/RPMS/x86_64/mvSatalinux-3.6.3_2-2.6.9_42.0.3.ELlargesmp_1.x86_64.rpm&lt;br /&gt;
 rpm -ivh /usr/src/redhat/RPMS/x86_64/mvSatalinux-debuginfo-3.6.3_2-2.6.9_42.0.3.ELlargesmp_1.x86_64.rpm&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
verifier:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 # modinfo mv_sata&lt;br /&gt;
 filename:       /lib/modules/2.6.9-42.0.3.ELlargesmp/kernel/drivers/scsi/mv_sata.ko&lt;br /&gt;
 description:    Marvell Serial ATA PCI-X Adapter version: 3.6.3_2&lt;br /&gt;
 license:        BSD&lt;br /&gt;
 alias:          pci:v000011ABd00007042sv*sd*bc*sc*i*&lt;br /&gt;
 alias:          pci:v000011ABd00006042sv*sd*bc*sc*i*&lt;br /&gt;
 alias:          pci:v000011ABd00006041sv*sd*bc*sc*i*&lt;br /&gt;
 alias:          pci:v000011ABd00006081sv*sd*bc*sc*i*&lt;br /&gt;
 alias:          pci:v000011ABd00005041sv*sd*bc*sc*i*&lt;br /&gt;
 alias:          pci:v000011ABd00005040sv*sd*bc*sc*i*&lt;br /&gt;
 alias:          pci:v000011ABd00005081sv*sd*bc*sc*i*&lt;br /&gt;
 alias:          pci:v000011ABd00005080sv*sd*bc*sc*i*&lt;br /&gt;
 depends:        scsi_mod&lt;br /&gt;
 vermagic:       2.6.9-42.0.3.ELlargesmp SMP gcc-3.4&lt;br /&gt;
 }}}&lt;br /&gt;
&lt;br /&gt;
== Test Performance Lecture/ecriture ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 # more /proc/mdstat&lt;br /&gt;
 Personalities : [raid5]&lt;br /&gt;
 md7 : active raid5 sdao1[1] sdag1[2] sdq1[0] sdi1[3]&lt;br /&gt;
      1953535744 blocks level 5, 64k chunk, algorithm 2 [5/4] [UUUU_]&lt;br /&gt;
 md5 : active raid5 sdap1[2] sdah1[3] sdz1[0] sdr1[1] sdj1[4] sdb1[5]&lt;br /&gt;
      2441919680 blocks level 5, 64k chunk, algorithm 2 [6/6] [UUUUUU]&lt;br /&gt;
 md3 : active raid5 sdaq1[2] sdai1[3] sdaa1[0] sds1[1] sdk1[4]&lt;br /&gt;
      2441919680 blocks level 5, 64k chunk, algorithm 2 [6/5] [UUUUU_]&lt;br /&gt;
 md8 : active raid5 sdas1[1] sdak1[2] sdu1[0] sdm1[3] sde1[4]&lt;br /&gt;
      1953535744 blocks level 5, 64k chunk, algorithm 2 [5/5] [UUUUU]&lt;br /&gt;
 md6 : active raid5 sdat1[2] sdal1[3] sdad1[0] sdv1[1] sdn1[4] sdf1[5]&lt;br /&gt;
      2441919680 blocks level 5, 64k chunk, algorithm 2 [6/6] [UUUUUU]&lt;br /&gt;
 md4 : active raid5 sdau1[2] sdam1[3] sdae1[0] sdw1[1] sdo1[4] sdg1[5]&lt;br /&gt;
      2441919680 blocks level 5, 64k chunk, algorithm 2 [6/6] [UUUUUU]&lt;br /&gt;
 md2 : active raid5 sdav1[2] sdan1[3] sdaf1[0] sdx1[1] sdp1[4]&lt;br /&gt;
      2441919680 blocks level 5, 64k chunk, algorithm 2 [6/5] [UUUUU_]&lt;br /&gt;
 md1 : active raid5 sdar1[2] sdaj1[3] sdab1[0] sdt1[1] sdl1[4] sdd1[5]&lt;br /&gt;
      2441919680 blocks level 5, 64k chunk, algorithm 2 [6/6] [UUUUUU]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 en MB/s&lt;br /&gt;
 Volumétrie: 19TB utile&lt;br /&gt;
 |	   md1    md2     md3	  md4    md5   md6      md7    md8    MOY     TOT (Mb/s)   Mb/s/TB	&lt;br /&gt;
 Write//    71,22  69,31  68,13  71,26  70,14   69,56   62,56  65,89   68,50     4384,56     230,76&lt;br /&gt;
 write seq 111,01 103,42  102,24 109,77	112,58	107,02	84,61  89,6   102,53125			&lt;br /&gt;
 read //   99,62   98,75   98,22  99,78	100,93	100,01	85,7   86,69   96,2125	 6157,6	     324,08&lt;br /&gt;
 read seq  275,4  254,28  250,69 267,62	274,16	280,52	188,37 197,58 248,5775&lt;br /&gt;
&lt;br /&gt;
== Configuration Reseaux avec 2 intefaces bond ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node23 ~]# more /etc/modprobe.conf&lt;br /&gt;
 alias eth0 e1000&lt;br /&gt;
 alias eth1 e1000&lt;br /&gt;
 alias eth2 e1000&lt;br /&gt;
 alias eth3 e1000&lt;br /&gt;
 alias eth4 e1000&lt;br /&gt;
 alias eth5 e1000&lt;br /&gt;
 alias eth6 e1000&lt;br /&gt;
 alias eth7 e1000&lt;br /&gt;
 install ipw3945 /sbin/modprobe --ignore-install ipw3945 ; sleep 0.5 ; /sbin/ipw3&lt;br /&gt;
 945d --quiet&lt;br /&gt;
 remove ipw3945 /sbin/ipw3945d --kill ; /sbin/modprobe -r --ignore-remove ipw3945&lt;br /&gt;
 alias usb-controller ehci-hcd&lt;br /&gt;
 alias usb-controller1 ohci-hcd&lt;br /&gt;
 ####BONDING&lt;br /&gt;
 alias bond0 bonding&lt;br /&gt;
 alias bond1 bonding&lt;br /&gt;
 #options bond0 -o bond0 mode=0 miimon=100&lt;br /&gt;
 options bond0 mode=0 miimon=100 max_bonds=2&lt;br /&gt;
 options bond1 -o bond1 mode=0 miimon=100&lt;br /&gt;
 ####END BONDING&lt;br /&gt;
 #Added mv_sata binary driver rpm installation&lt;br /&gt;
 alias scsi_hostadapter mv_sata&lt;br /&gt;
 alias sata_mv off&lt;br /&gt;
 [root@node23 ~]#&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node23 ~]# more /etc/sysconfig/network-scripts/ifcfg-*&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-bond0&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=bond0&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=static&lt;br /&gt;
 IPADDR=192.54.208.82&lt;br /&gt;
 NETMASK=255.255.255.0&lt;br /&gt;
 BROADCAST=192.54.208.255&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-bond1&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=bond1&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=static&lt;br /&gt;
 IPADDR=192.54.208.101&lt;br /&gt;
 NETMASK=255.255.255.0&lt;br /&gt;
 BROADCAST=192.54.208.255&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-eth0&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=eth0&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=none&lt;br /&gt;
 MASTER=bond0&lt;br /&gt;
 SLAVE=yes&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-eth1&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=eth1&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=none&lt;br /&gt;
 MASTER=bond0&lt;br /&gt;
 SLAVE=yes&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-eth2&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=eth2&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=none&lt;br /&gt;
 MASTER=bond0&lt;br /&gt;
 SLAVE=yes&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-eth3&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=eth3&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=none&lt;br /&gt;
 MASTER=bond0&lt;br /&gt;
 SLAVE=yes&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-eth4&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=eth4&lt;br /&gt;
 TYPE=Ethernet &lt;br /&gt;
 BOOTPROTO=none&lt;br /&gt;
 MASTER=bond1&lt;br /&gt;
 SLAVE=yes&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-eth5&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=eth5&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=none&lt;br /&gt;
 MASTER=bond1&lt;br /&gt;
 SLAVE=yes&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-eth6&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=eth6&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=none&lt;br /&gt;
 MASTER=bond1&lt;br /&gt;
 SLAVE=yes&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-eth7&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=eth7&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=none&lt;br /&gt;
 MASTER=bond1&lt;br /&gt;
 SLAVE=yes&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 # ifconfig&lt;br /&gt;
 bond0     Link encap:Ethernet  HWaddr 00:14:4F:20:FC:B0&lt;br /&gt;
          inet addr:192.54.208.82  Bcast:192.54.208.255  Mask:255.255.255.0&lt;br /&gt;
          inet6 addr: fe80::200:ff:fe00:0/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING MASTER MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:96129841 errors:2 dropped:0 overruns:0 frame:1&lt;br /&gt;
          TX packets:86702743 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:0&lt;br /&gt;
          RX bytes:144510750072 (134.5 GiB)  TX bytes:7460167641 (6.9 GiB)&lt;br /&gt;
 bond1     Link encap:Ethernet  HWaddr 00:15:17:2A:09:A6&lt;br /&gt;
          inet addr:192.54.208.101  Bcast:192.54.208.255  Mask:255.255.255.0&lt;br /&gt;
          inet6 addr: fe80::200:ff:fe00:0/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING MASTER MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:934011 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:33 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:0&lt;br /&gt;
          RX bytes:62926730 (60.0 MiB)  TX bytes:2572 (2.5 KiB)&lt;br /&gt;
 eth0      Link encap:Ethernet  HWaddr 00:14:4F:20:FC:B0&lt;br /&gt;
          inet6 addr: fe80::214:4fff:fe20:fcb0/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING SLAVE MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:73871160 errors:2 dropped:0 overruns:0 frame:1&lt;br /&gt;
          TX packets:21675694 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:1000&lt;br /&gt;
          RX bytes:110757099435 (103.1 GiB)  TX bytes:1865279045 (1.7 GiB)&lt;br /&gt;
          Base address:0xac00 Memory:fd2e0000-fd300000&lt;br /&gt;
 eth1      Link encap:Ethernet  HWaddr 00:14:4F:20:FC:B0&lt;br /&gt;
          inet6 addr: fe80::214:4fff:fe20:fcb0/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING SLAVE MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:22109357 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:21675683 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:1000&lt;br /&gt;
          RX bytes:33554660288 (31.2 GiB)  TX bytes:1864208904 (1.7 GiB)&lt;br /&gt;
          Base address:0xa800 Memory:fd2c0000-fd2e0000&lt;br /&gt;
 eth2      Link encap:Ethernet  HWaddr 00:14:4F:20:FC:B0&lt;br /&gt;
          inet6 addr: fe80::214:4fff:fe20:fcb0/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING SLAVE MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:55195 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:21675683 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:1000&lt;br /&gt;
          RX bytes:68939873 (65.7 MiB)  TX bytes:1865275229 (1.7 GiB)&lt;br /&gt;
          Base address:0xbc00 Memory:fd3e0000-fd400000&lt;br /&gt;
 eth3      Link encap:Ethernet  HWaddr 00:14:4F:20:FC:B0&lt;br /&gt;
          inet6 addr: fe80::214:4fff:fe20:fcb0/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING SLAVE MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:94129 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:21675683 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:1000&lt;br /&gt;
          RX bytes:130050476 (124.0 MiB)  TX bytes:1865404463 (1.7 GiB)&lt;br /&gt;
          Base address:0xb800 Memory:fd3c0000-fd3e0000&lt;br /&gt;
 eth4      Link encap:Ethernet  HWaddr 00:15:17:2A:09:A6&lt;br /&gt;
          inet6 addr: fe80::215:17ff:fe2a:9a6/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING SLAVE MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:0 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:10 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:1000&lt;br /&gt;
          RX bytes:0 (0.0 b)  TX bytes:758 (758.0 b)&lt;br /&gt;
          Base address:0xec00 Memory:fe4e0000-fe500000&lt;br /&gt;
 eth5      Link encap:Ethernet  HWaddr 00:15:17:2A:09:A6&lt;br /&gt;
          inet6 addr: fe80::215:17ff:fe2a:9a6/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING SLAVE MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:5 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:9 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:1000&lt;br /&gt;
          RX bytes:390 (390.0 b)  TX bytes:714 (714.0 b)&lt;br /&gt;
          Base address:0xe800 Memory:fe4c0000-fe4e0000&lt;br /&gt;
 eth6      Link encap:Ethernet  HWaddr 00:15:17:2A:09:A6&lt;br /&gt;
          inet6 addr: fe80::215:17ff:fe2a:9a6/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING SLAVE MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:1 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:8 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:1000&lt;br /&gt;
          RX bytes:66 (66.0 b)  TX bytes:628 (628.0 b)&lt;br /&gt;
          Base address:0xfc00 Memory:fe7e0000-fe800000&lt;br /&gt;
 eth7      Link encap:Ethernet  HWaddr 00:15:17:2A:09:A6&lt;br /&gt;
          inet6 addr: fe80::215:17ff:fe2a:9a6/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING SLAVE MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:934005 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:6 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:1000&lt;br /&gt;
          RX bytes:62926274 (60.0 MiB)  TX bytes:472 (472.0 b)&lt;br /&gt;
          Base address:0xf800 Memory:fe7c0000-fe7e0000&lt;br /&gt;
 lo        Link encap:Local Loopback&lt;br /&gt;
          inet addr:127.0.0.1  Mask:255.0.0.0&lt;br /&gt;
          inet6 addr: ::1/128 Scope:Host&lt;br /&gt;
          UP LOOPBACK RUNNING  MTU:16436  Metric:1&lt;br /&gt;
          RX packets:294 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:294 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:0&lt;br /&gt;
          RX bytes:46053 (44.9 KiB)  TX bytes:46053 (44.9 KiB)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Exemple de connection avec iperf (4 client pour chacune des interfaces)&lt;br /&gt;
&lt;br /&gt;
 tcp        0      0 *:20008                     *:*                         LISTEN&lt;br /&gt;
 tcp        0      0 *:20009                     *:*                         LISTEN&lt;br /&gt;
 tcp        0      0 node23.datagrid.cea.f:20008 wn048.datagrid.cea.fr:51269 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node27.datagrid.cea.f:20009 node02.datagrid.cea.f:39957 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node23.datagrid.cea.f:20008 wn004.datagrid.cea.fr:35417 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node23.datagrid.cea.f:20008 node01.datagrid.cea.f:38544 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node27.datagrid.cea.f:20009 wn049.datagrid.cea.fr:34206 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node23.datagrid.cea.f:20008 wn005.datagrid.cea.fr:35380 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node27.datagrid.cea.f:20009 wn050.datagrid.cea.fr:34567 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node27.datagrid.cea.f:20009 wn006.datagrid.cea.fr:42137 ESTABLISHED&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Exemple de configuration pour le SE DPM&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node24 root]# dpm-qryconf&lt;br /&gt;
 POOL CMS_SC DEFSIZE 200.00M GC_START_THRESH 0 GC_STOP_THRESH 0 DEF_LIFETIME 7.0d DEFPINTIME 2.0h  &lt;br /&gt;
 MAX_LIFETIME 1.0m MAXPINTIME 12.0h FSS_POLICY maxfreespace GC_POLICY lru RS_POLICY fifo GIDS 0 S_TYPE -  &lt;br /&gt;
 MIG_POLICY none RET_POLICY R&lt;br /&gt;
                              CAPACITY 23.51T FREE 22.27T ( 94.7%)&lt;br /&gt;
  node25.datagrid.cea.fr /pool_node25 CAPACITY 4.48T FREE 4.39T ( 98.1%)&lt;br /&gt;
  node26.datagrid.cea.fr /pool_node26 CAPACITY 233.71G FREE 216.23G ( 92.5%)&lt;br /&gt;
  node26.datagrid.cea.fr /pool_node26_2 CAPACITY 1.79T FREE 1.69T ( 94.5%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam1 CAPACITY 2.24T FREE 2.09T ( 93.2%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam2 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam3 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam7 CAPACITY 1.79T FREE 1.68T ( 93.8%)&lt;br /&gt;
  node27.datagrid.cea.fr /dteam4 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node27.datagrid.cea.fr /dteam5 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node27.datagrid.cea.fr /dteam6 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node27.datagrid.cea.fr /dteam8 CAPACITY 1.79T FREE 1.68T ( 93.8%)&lt;br /&gt;
&lt;br /&gt;
== Configuration Reseaux avec 1 intefaces bond ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 # more /etc/modprobe.conf&lt;br /&gt;
 alias eth0 e1000&lt;br /&gt;
 alias eth1 e1000&lt;br /&gt;
 alias eth2 e1000&lt;br /&gt;
 alias eth3 e1000&lt;br /&gt;
 alias eth4 e1000&lt;br /&gt;
 alias eth5 e1000&lt;br /&gt;
 alias eth6 e1000&lt;br /&gt;
 alias eth7 e1000&lt;br /&gt;
 options e1000 InterruptThrottleRate=3000&lt;br /&gt;
 install ipw3945 /sbin/modprobe --ignore-install ipw3945 ; sleep 0.5 ; /sbin/ipw3&lt;br /&gt;
 945d --quiet&lt;br /&gt;
 remove ipw3945 /sbin/ipw3945d --kill ; /sbin/modprobe -r --ignore-remove ipw3945&lt;br /&gt;
 alias usb-controller ehci-hcd&lt;br /&gt;
 alias usb-controller1 ohci-hcd&lt;br /&gt;
 ####BONDING&lt;br /&gt;
 alias bond0 bonding&lt;br /&gt;
 options bond0 mode=0 miimon=100&lt;br /&gt;
 ####END BONDING&lt;br /&gt;
 #Added mv_sata binary driver rpm installation&lt;br /&gt;
 alias scsi_hostadapter mv_sata&lt;br /&gt;
 alias sata_mv off&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
recharger les modules, redemarrer le reseaux, et verifier que tout est OK:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 # more /proc/net/bonding/bond0&lt;br /&gt;
 Ethernet Channel Bonding Driver: v2.6.3 (June 8, 2005)&lt;br /&gt;
 Bonding Mode: load balancing (round-robin)&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 MII Polling Interval (ms): 100&lt;br /&gt;
 Up Delay (ms): 0&lt;br /&gt;
 Down Delay (ms): 0&lt;br /&gt;
 Slave Interface: eth0&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 Link Failure Count: 0&lt;br /&gt;
 Permanent HW addr: 00:14:4f:20:fc:b0&lt;br /&gt;
 Slave Interface: eth1&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 Link Failure Count: 0&lt;br /&gt;
 Permanent HW addr: 00:14:4f:20:fc:b1&lt;br /&gt;
 Slave Interface: eth2&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 Link Failure Count: 0&lt;br /&gt;
 Permanent HW addr: 00:14:4f:20:fc:b2&lt;br /&gt;
 Slave Interface: eth3&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 Link Failure Count: 0&lt;br /&gt;
 Permanent HW addr: 00:14:4f:20:fc:b3 &lt;br /&gt;
 Slave Interface: eth4&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 Link Failure Count: 0&lt;br /&gt;
 Permanent HW addr: 00:15:17:2a:09:a6&lt;br /&gt;
 Slave Interface: eth5&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 Link Failure Count: 0&lt;br /&gt;
 Permanent HW addr: 00:15:17:2a:09:a7&lt;br /&gt;
 Slave Interface: eth6&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 Link Failure Count: 0&lt;br /&gt;
 Permanent HW addr: 00:15:17:2a:07:8c&lt;br /&gt;
 Slave Interface: eth7&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 Link Failure Count: 0&lt;br /&gt;
 Permanent HW addr: 00:15:17:2a:07:8d&lt;br /&gt;
&lt;br /&gt;
== Probleme sur les cartes reseaux supplémentaires: ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel: e1000: eth4: e1000_clean_tx_irq: Detected Tx Unit Hang&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   Tx Queue             &amp;lt;0&amp;gt;&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   TDH                  &amp;lt;2&amp;gt;&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   TDT                  &amp;lt;2&amp;gt;&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   next_to_use          &amp;lt;2&amp;gt;&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   next_to_clean        &amp;lt;0&amp;gt;&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel: buffer_info[next_to_clean]&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   time_stamp           &amp;lt;1144b73ba&amp;gt;&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   next_to_watch        &amp;lt;0&amp;gt;&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   jiffies              &amp;lt;1144b7a09&amp;gt;&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   next_to_watch.status &amp;lt;0&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel: e1000: eth5: e1000_clean_tx_irq: Detected Tx Unit Hang&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   Tx Queue             &amp;lt;0&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   TDH                  &amp;lt;1&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   TDT                  &amp;lt;1&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   next_to_use          &amp;lt;1&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   next_to_clean        &amp;lt;0&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel: buffer_info[next_to_clean]&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   time_stamp           &amp;lt;1144b77fa&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   next_to_watch        &amp;lt;0&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   jiffies              &amp;lt;1144b817b&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   next_to_watch.status &amp;lt;0&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
on n&#039;avait pas le bon driver e1000, voir paragraphe suivant pour loader le bon driver&lt;br /&gt;
&lt;br /&gt;
== driver carte réseaux ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Pour voir le driver adapté aux cartes:&lt;br /&gt;
&lt;br /&gt;
[http://support.intel.com/support/network/sb/cs-012904.htm]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node23 ~]# lspci | tail -4&lt;br /&gt;
 0d:01.0 Ethernet controller: Intel Corporation 82546GB Gigabit Ethernet Controller (rev 03)&lt;br /&gt;
 0d:01.1 Ethernet controller: Intel Corporation 82546GB Gigabit Ethernet Controller (rev 03)&lt;br /&gt;
 0e:01.0 Ethernet controller: Intel Corporation 82546GB Gigabit Ethernet Controller (rev 03)&lt;br /&gt;
 0e:01.1 Ethernet controller: Intel Corporation 82546GB Gigabit Ethernet Controller (rev 03)&lt;br /&gt;
 [root@node23 ~]#&lt;br /&gt;
&lt;br /&gt;
telecharger le bon driver puis l&#039;installer:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 # rpmbuild -tb e1000-7.6.9.tar.gz&lt;br /&gt;
 # rpm -ivh /usr/src/redhat/RPMS/x86_64/e1000-7.6.9-1.x86_64.rpm&lt;br /&gt;
 Preparing...                ########################################### [100%]&lt;br /&gt;
   1:e1000                  ########################################### [100%]&lt;br /&gt;
 original pci.ids saved in /usr/local/share/e1000&lt;br /&gt;
 original pcitable saved in /usr/local/share/e1000&lt;br /&gt;
 [root@node23 BONDING]#&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Dans le README, il preconnise de loader le module avec l&#039;option &#039;&#039;interruptThrottleRate=3000:&#039;&#039; &lt;br /&gt;
&lt;br /&gt;
tout recharger correctement:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 ifconfig bond0 down; ifconfig bond1 down; rmmod e1000; modprobe e1000  &lt;br /&gt;
 InterruptThrottleRate=3000,3000,3000,3000,3000,3000,3000,3000 ; rmmod bond0 ; rmmod bond1; modprobe bonding &lt;br /&gt;
 -o bond0 mode=0 miimon=100; modprobe bonding -o bond1 -o bond1 mode=0 miimon=100;  &lt;br /&gt;
 /etc/init.d/network restart&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
et modifier le fichier modprobe:&lt;br /&gt;
&lt;br /&gt;
 # more /etc/modprobe.conf&lt;br /&gt;
 alias eth0 e1000&lt;br /&gt;
 alias eth1 e1000&lt;br /&gt;
 alias eth2 e1000&lt;br /&gt;
 alias eth3 e1000&lt;br /&gt;
 alias eth4 e1000&lt;br /&gt;
 alias eth5 e1000&lt;br /&gt;
 alias eth6 e1000&lt;br /&gt;
 alias eth7 e1000&lt;br /&gt;
 options e1000 InterruptThrottleRate=3000&lt;br /&gt;
 install ipw3945 /sbin/modprobe --ignore-install ipw3945 ; sleep 0.5 ; /sbin/ipw3945d --quiet&lt;br /&gt;
 remove ipw3945 /sbin/ipw3945d --kill ; /sbin/modprobe -r --ignore-remove ipw3945&lt;br /&gt;
 alias usb-controller ehci-hcd&lt;br /&gt;
 alias usb-controller1 ohci-hcd&lt;br /&gt;
 ####BONDING&lt;br /&gt;
 alias bond0 bonding&lt;br /&gt;
 alias bond1 bonding&lt;br /&gt;
 options bond0 mode=0 miimon=100 max_bonds=2&lt;br /&gt;
 options bond1 -o bond1 mode=0 miimon=100&lt;br /&gt;
 ####END BONDING&lt;br /&gt;
 #Added mv_sata binary driver rpm installation&lt;br /&gt;
 alias scsi_hostadapter mv_sata&lt;br /&gt;
 alias sata_mv off&lt;br /&gt;
&lt;br /&gt;
== Test iperf ==&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;1) 1 interface bond0 (eth0, eth1, eth2, eth3):&#039;&#039;&#039;  ~ 2,7 Gb/s&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [  4] 10.0-20.0 sec    557 MBytes    467 Mbits/sec&lt;br /&gt;
 [  5] 10.0-20.0 sec  1.10 GBytes    941 Mbits/sec&lt;br /&gt;
 [  6] 10.0-20.0 sec    976 MBytes    819 Mbits/sec&lt;br /&gt;
 [  7] 10.0-20.0 sec    567 MBytes    476 Mbits/sec&lt;br /&gt;
 [  4] 20.0-30.0 sec    564 MBytes    473 Mbits/sec&lt;br /&gt;
 [  5] 20.0-30.0 sec  1.10 GBytes    941 Mbits/sec&lt;br /&gt;
 [  6] 20.0-30.0 sec    969 MBytes    813 Mbits/sec&lt;br /&gt;
 [  7] 20.0-30.0 sec    558 MBytes    468 Mbits/sec&lt;br /&gt;
 [  4] 30.0-40.0 sec    561 MBytes    470 Mbits/sec&lt;br /&gt;
 [  5] 30.0-40.0 sec  1.10 GBytes    941 Mbits/sec&lt;br /&gt;
 [  6] 30.0-40.0 sec    986 MBytes    827 Mbits/sec&lt;br /&gt;
 [  7] 30.0-40.0 sec    550 MBytes    461 Mbits/sec&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;2) 2 interfaces : bond0 (eth0, eth1) et bond1 (eth2,eth3):&#039;&#039;&#039;  ~900 Mb/s !!&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 netstat -a | grep 200&lt;br /&gt;
 tcp        0      0 *:20008                     *:*                         LISTEN&lt;br /&gt;
 tcp        0      0 *:20010                     *:*                         LISTEN&lt;br /&gt;
 tcp        0      0 node27.datagrid.cea.f:20010 wn049.datagrid.cea.fr:41057 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node27.datagrid.cea.f:20010 wn005.datagrid.cea.fr:44065 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node23.datagrid.cea.f:20008 node01.datagrid.cea.f:34342 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node23.datagrid.cea.f:20008 wn048.datagrid.cea.fr:34032 ESTABLISHED&lt;br /&gt;
&lt;br /&gt;
sur node 23: &lt;br /&gt;
 [  4] 20.0-25.0 sec    146 MBytes    244 Mbits/sec&lt;br /&gt;
 [  5] 20.0-25.0 sec    149 MBytes    251 Mbits/sec&lt;br /&gt;
 [  4] 25.0-30.0 sec    143 MBytes    240 Mbits/sec&lt;br /&gt;
 [  5] 25.0-30.0 sec    160 MBytes    268 Mbits/sec&lt;br /&gt;
 [  4] 30.0-35.0 sec    117 MBytes    196 Mbits/sec&lt;br /&gt;
 [  5] 30.0-35.0 sec    149 MBytes    250 Mbits/sec&lt;br /&gt;
sur node27:&lt;br /&gt;
 [  4] 20.0-25.0 sec    101 MBytes    170 Mbits/sec&lt;br /&gt;
 [  5] 20.0-25.0 sec    164 MBytes    275 Mbits/sec&lt;br /&gt;
 [  4] 25.0-30.0 sec    108 MBytes    181 Mbits/sec&lt;br /&gt;
 [  5] 25.0-30.0 sec    180 MBytes    303 Mbits/sec&lt;br /&gt;
 [  4] 30.0-35.0 sec    102 MBytes    172 Mbits/sec&lt;br /&gt;
 [  5] 30.0-35.0 sec    162 MBytes    272 Mbits/sec&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;3)interfaces : bond0 (eth0, eth1, eth2,eth3) et bond1 (eth4, eth5, eth6,eth7):&#039;&#039;&#039;  ~3,8Gb/s &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
sur node27:&lt;br /&gt;
 [  4] 20.0-30.0 sec    337 MBytes    283 Mbits/sec&lt;br /&gt;
 [  5] 20.0-30.0 sec    393 MBytes    329 Mbits/sec&lt;br /&gt;
 [  6] 20.0-30.0 sec    425 MBytes    357 Mbits/sec&lt;br /&gt;
 [  7] 20.0-30.0 sec    758 MBytes    636 Mbits/sec&lt;br /&gt;
sur node23:&lt;br /&gt;
 [  4] 20.0-30.0 sec    727 MBytes    610 Mbits/sec&lt;br /&gt;
 [  5] 20.0-30.0 sec  1.10 GBytes    941 Mbits/sec&lt;br /&gt;
 [  6] 20.0-30.0 sec    360 MBytes    302 Mbits/sec&lt;br /&gt;
 [  7] 20.0-30.0 sec    359 MBytes    301 Mbits/sec&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;4) 1 interface bond0 (eth0, eth1, eth2, eth3, eth4, eth5, eth6, eth7):&#039;&#039;&#039; ~5Gb/s&lt;br /&gt;
&lt;br /&gt;
 http://lcg.in2p3.fr/wiki/images/Node23_datagrid_cea_fr_rrd_NUMKBREADAVG_d.gif&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [  4] 10.0-20.0 sec    841 MBytes    705 Mbits/sec&lt;br /&gt;
 [  5] 10.0-20.0 sec  1001 MBytes    840 Mbits/sec&lt;br /&gt;
 [  6] 10.0-20.0 sec    671 MBytes    563 Mbits/sec&lt;br /&gt;
 [  7] 10.0-20.0 sec    581 MBytes    487 Mbits/sec&lt;br /&gt;
 [  8] 10.0-20.0 sec    431 MBytes    362 Mbits/sec&lt;br /&gt;
 [  9] 10.0-20.0 sec    535 MBytes    449 Mbits/sec&lt;br /&gt;
 [ 10] 10.0-20.0 sec    986 MBytes    827 Mbits/sec&lt;br /&gt;
 [ 11] 10.0-20.0 sec    878 MBytes    736 Mbits/sec&lt;br /&gt;
 [  4] 20.0-30.0 sec    903 MBytes    758 Mbits/sec&lt;br /&gt;
 [  5] 20.0-30.0 sec  1.04 GBytes    894 Mbits/sec&lt;br /&gt;
 [  6] 20.0-30.0 sec    263 MBytes    221 Mbits/sec&lt;br /&gt;
 [  7] 20.0-30.0 sec    169 MBytes    142 Mbits/sec&lt;br /&gt;
 [  8] 20.0-30.0 sec    731 MBytes    614 Mbits/sec&lt;br /&gt;
 [  9] 20.0-30.0 sec    916 MBytes    769 Mbits/sec&lt;br /&gt;
 [ 10] 20.0-30.0 sec    922 MBytes    774 Mbits/sec&lt;br /&gt;
 [ 11] 20.0-30.0 sec    395 MBytes    332 Mbits/sec&lt;br /&gt;
&lt;br /&gt;
== Test Performance DISK+NETWORK avec DPM ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node24 root]# dpm-qryconf&lt;br /&gt;
 POOL CMS_SC DEFSIZE 200.00M GC_START_THRESH 0 GC_STOP_THRESH 0 DEF_LIFETIME 7.0d DEFPINTIME 2.0h  &lt;br /&gt;
 MAX_LIFETIME 1.0m MAXPINTIME 12.0h FSS_POLICY maxfreespace GC_POLICY lru RS_POLICY fifo GIDS 0 S_TYPE -   &lt;br /&gt;
 MIG_POLICY none RET_POLICY R&lt;br /&gt;
                              CAPACITY 17.01T FREE 15.98T ( 93.9%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam1 CAPACITY 2.24T FREE 2.09T ( 93.2%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam2 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam3 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam7 CAPACITY 1.79T FREE 1.68T ( 93.8%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam4 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam5 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam6 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam8 CAPACITY 1.79T FREE 1.68T ( 93.8%)&lt;br /&gt;
&lt;br /&gt;
sur l&#039;UI:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [cleroy@node02 2_IPbonding]$ time ./transfert_concurrent_client_node24.py&lt;br /&gt;
 globus-url-copy file:/home/cleroy/DTEAM_2004/4_Tt2t1/ATLAS_DATA &lt;br /&gt;
 gsiftp://node24.datagrid.cea.fr/dpm/datagrid.cea.fr/home/dteam/dapnia/cleroy/TO_BE_REMOVED/&lt;br /&gt;
 ATLAS_DATA_Trf00001&lt;br /&gt;
 ...&lt;br /&gt;
 ....&lt;br /&gt;
 real    2m13.017s&lt;br /&gt;
 user    1m4.270s&lt;br /&gt;
 sys     0m48.790s&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Sur le SE disk:&lt;br /&gt;
&lt;br /&gt;
 [root@node23 ~]# ll /dteam*/dteam/2007-10-10&lt;br /&gt;
 /dteam1/dteam/2007-10-10:&lt;br /&gt;
 total 1441096&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA2_Trf00001.4189.0&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA3_Trf00000.4181.0&lt;br /&gt;
 /dteam2/dteam/2007-10-10:&lt;br /&gt;
 total 1441104&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:37 ATLAS_DATA_Trf00000.4182.0&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:37 ATLAS_DATA_Trf00001.4174.0&lt;br /&gt;
 -rw-r--r--  1 root   root           5 Oct 10 17:27 essai&lt;br /&gt;
 /dteam3/dteam/2007-10-10:&lt;br /&gt;
 total 1441096&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA4_Trf00001.4175.0&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:37 ATLAS_DATA8_Trf00001.4183.0 &lt;br /&gt;
 /dteam4/dteam/2007-10-10:&lt;br /&gt;
 total 1441096&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:37 ATLAS_DATA7_Trf00001.4184.0&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA8_Trf00000.4176.0&lt;br /&gt;
 /dteam5/dteam/2007-10-10:&lt;br /&gt;
 total 1441096&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA2_Trf00000.4177.0&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:37 ATLAS_DATA7_Trf00000.4185.0&lt;br /&gt;
 /dteam6/dteam/2007-10-10:&lt;br /&gt;
 total 1441096&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA5_Trf00001.4178.0&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:37 ATLAS_DATA6_Trf00000.4188.0 &lt;br /&gt;
 /dteam7/dteam/2007-10-10:&lt;br /&gt;
 total 1441096&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA3_Trf00001.4186.0&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA6_Trf00001.4180.0&lt;br /&gt;
 /dteam8/dteam/2007-10-10:&lt;br /&gt;
 total 1441096&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA4_Trf00000.4179.0&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA5_Trf00000.4187.0&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
16 fichiers en paralleles de 737 MB: &lt;br /&gt;
11792 MB en 133 s = 88 MB/s = 709 Mb/s&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
autre test: &lt;br /&gt;
(16 * 20 = 320 )fichiers de 737MB : 235840 MB en  30m29.512s : 128 MB/s : 1024 Mb/s&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== DPM et XROOTD ==&lt;br /&gt;
&lt;br /&gt;
Ce document décrit la procédure utilisée à l&#039;IPNO pour installer xrootd sur un serveur DPM. La procédure d&#039;installation doit être effectuée sur chaque server (head node et disk servers). A l&#039;IPNO l&#039;installation a eu lieu sur un unique serveur à la fois head node et disk server.&lt;br /&gt;
&lt;br /&gt;
=== La documentation utile ===&lt;br /&gt;
Configuring &#039;xroot&#039; Protocol on DPM (Andreas Peters) [[BR]]&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/LCG/DpmXrootAccess&lt;br /&gt;
&lt;br /&gt;
How to Install and Debug Xrootd on a DPM Storage Element (Jean-Michel Barbet) [[BR]]&lt;br /&gt;
http://alien.cern.ch/twiki/bin/view/AliEn/HowToInstallXrootdAndDPM&lt;br /&gt;
&lt;br /&gt;
LCG-France T2-T3 Technical meeting : DPM/xrootd introduction (Jean-Michel Barbet)[[BR]]&lt;br /&gt;
http://indico.in2p3.fr/conferenceDisplay.py?confId=821&lt;br /&gt;
&lt;br /&gt;
Xrootd Tutorial (Artem Trunov) [[BR]]&lt;br /&gt;
http://indico.cern.ch/materialDisplay.py?contribId=8&amp;amp;sessionId=0&amp;amp;materialId=slides&amp;amp;confId=a058483&lt;br /&gt;
&lt;br /&gt;
=== Firewall: ports à ouvrir ===&lt;br /&gt;
 * Sur le xrootd Manager (DPM head node) : 1094&lt;br /&gt;
 * Sur les xrootd servers (disk servers) : 1095&lt;br /&gt;
 * Si le xrootd manager est aussi disk server : 1095 (sur le manager en plus de 1094)&lt;br /&gt;
&lt;br /&gt;
=== Installation Configuration en utilisant les scripts fournis par ALICE ===&lt;br /&gt;
&lt;br /&gt;
=== SPMA ===&lt;br /&gt;
Editer /etc/spma.conf :&lt;br /&gt;
&lt;br /&gt;
 * userpkgs = yes&lt;br /&gt;
 * userprio = yes&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
===== Non-YAIM configuration =====&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
 * # wget http://project-arda-dev.web.cern.ch/project-arda-dev/xrootd/tarballs/installbox/dpm-config.tgz&lt;br /&gt;
 * # tar zxf dpm-config.tgz&lt;br /&gt;
 * # chmod u+x ./conf.xrootd&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
Il faut commenter l&#039;appel à la fonction requires dans config_DPM_xrootd et définir la&lt;br /&gt;
variable YAIM_LOG dans conf.xrootd, sinon il y a des messages d&#039;erreur au lancement de conf.xrootd .&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
 * # cp config_DPM_xrootd config_DPM_xrootd.orig&lt;br /&gt;
 * # cp conf.xrootd conf.xrootd.orig&lt;br /&gt;
 * # vi config_DPM_xrootd ---&amp;gt; commenter l&#039;appel à requires&lt;br /&gt;
 * # vi conf.xrootd    ---&amp;gt; définir YAIM_LOG&lt;br /&gt;
&lt;br /&gt;
 * # diff config_DPM_xrootd config_DPM_xrootd.orig&lt;br /&gt;
 * 2c2&lt;br /&gt;
 * &amp;lt;   #requires $1 INSTALL_ROOT&lt;br /&gt;
 * ---&lt;br /&gt;
 * &amp;gt;   requires $1 INSTALL_ROOT&lt;br /&gt;
&lt;br /&gt;
 * # diff conf.xrootd conf.xrootd.orig&lt;br /&gt;
 * 4d3&lt;br /&gt;
 * &amp;lt; YAIM_LOG=/tmp/yaim.log&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Alice utilise l&#039;authentification TokenAuthZ. GSI n&#039;est pas encore supportée. Il faut donc éditer le fichier&lt;br /&gt;
/opt/lcg/etc/xrootd/authz.cf  (ce fichier ne sera pas utile avec GSI).&lt;br /&gt;
&lt;br /&gt;
 * # vi /opt/lcg/etc/xrootd/authz.cf :&lt;br /&gt;
 * changer /usr/local/xroot en /opt/lcg et&lt;br /&gt;
 * EXPORT PATH:/ en EXPORT PATH:/dpm/in2p3.fr/home/alice/&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Editer les scripts de lancement pour changer XRDLOCATION=&amp;quot;/usr/local/xroot&amp;quot; en XRDLOCATION=&amp;quot;/opt/lcg&amp;quot;.&lt;br /&gt;
&lt;br /&gt;
Les fichiers à éditer sont : /etc/init.d/dpm-xrd /etc/init.d/dpm-olb /etc/init.d/dpm-manager-xrd /etc/init.d/dpm-manager-olb /etc/init.d/xrdapmon&lt;br /&gt;
&lt;br /&gt;
Les scripts de démarrage regénèrent à chaque lancement le fichier /opt/lcg/etc/xrd.dpm.cf utilisé par les daemons. Ce fichier est &lt;br /&gt;
créé à partir du fichier /etc/xrd.dpm.config (ou /etc/xrd.dpm.config.gsi si avec GSI). C&#039;est donc dans /etc/sysconfig/dpm-xrd &lt;br /&gt;
qu&#039;il faut modifier la config xrootd si besoin est, avant de relancer les daemons.&lt;br /&gt;
&lt;br /&gt;
Modifier /etc/sysconfig/dpm-xrd comme indiqué ci-dessous :&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * # cp /etc/sysconfig/dpm-xrd.example /etc/sysconfig/dpm-xrd&lt;br /&gt;
 * # vi /etc/sysconfig/dpm-xrd&lt;br /&gt;
 * ...&lt;br /&gt;
 * # set the redirector host&lt;br /&gt;
 * MANAGERHOST=&amp;quot;ipnsedpm.in2p3.fr&amp;quot;&lt;br /&gt;
 * export DPM_HOST=$MANAGERHOST&lt;br /&gt;
 * export DPNS_HOST=$MANAGERHOST&lt;br /&gt;
 * ...&lt;br /&gt;
 * #############################################################################&lt;br /&gt;
 * # default authentication is with GSI authentication&lt;br /&gt;
 * #XRDCONFIG=&amp;quot;xrd.dpm.config.gsi&amp;quot;&lt;br /&gt;
 * # if you want GSI authentication disabled set&lt;br /&gt;
 * XRDCONFIG=&amp;quot;xrd.dpm.config&amp;quot;&lt;br /&gt;
 * ...&lt;br /&gt;
 * #XRDOFS=&amp;quot;Ofs&amp;quot;&lt;br /&gt;
 * # the ALICE Ofs plugin&lt;br /&gt;
 * XRDOFS=&amp;quot;TokenAuthzOfs&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * # vi /etc/shift.conf&lt;br /&gt;
 * Ajouter (à faire normalement via Quattor):&lt;br /&gt;
 * DPM PROTOCOLS rfio gsiftp xroot&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * Lancer la config :&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * # ./conf.xrootd&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * # more /tmp/yaim.log&lt;br /&gt;
 * # service dpm restart&lt;br /&gt;
 * # service dpnsdaemon restart (peut-etre pas necessaire)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
===== Les process qui tournent =====&lt;br /&gt;
Sur le manager :&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
 * dpmmgr 2816  1 0 Apr28 ? 00:00:00 /opt/lcg/bin/dpm-manager-olbd -d -b -n manager -c /opt/lcg/etc/xrd.dpm.cf -l /var/log/xroot//olblog&lt;br /&gt;
 * dpmmgr 3004  1 0 Apr28 ? 00:00:00 /opt/lcg/bin/dpm-manager-xrootd-d -b -n manager -c /opt/lcg/etc/xrd.dpm.cf -l /var/log/xroot//xrdlog&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
Sur les servers xrootd :&lt;br /&gt;
&lt;br /&gt;
 * dpmmgr 2726  1 0 Apr28 ? 00:00:00 /opt/lcg/bin/dpm-olbd -d -b -n server -c /opt/lcg/etc/xrd.dpm.cf -l /var/log/xroot//olblog&lt;br /&gt;
 * dpmmgr 2911  1 0 Apr28 ? 00:00:03 /opt/lcg/bin/dpm-xrootd -d -b -n server -c /opt/lcg/etc/xrd.dpm.cf -l /var/log/xroot//xrdlog&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==== Test ====&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * xrdcp /etc/hosts root://ipnsedpm.in2p3.fr://dpm/in2p3.fr/home/alice/test_ok.txt -v&lt;br /&gt;
 * xrdcp root://ipnsedpm.in2p3.fr://dpm/in2p3.fr/home/alice/test_ok.txt /tmp/xrd_copied_file -v&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Utiliser l&#039;option &#039;-d 1&#039; par exemple pour un mode un peu plus verbeux. &lt;br /&gt;
&lt;br /&gt;
Les fichiers peuvent être effacer par rfrm : &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * # rfrm /dpm/in2p3.fr/home/alice/test_ok.txt&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
En principe ça ne devrait pas marcher car il faut être authetifié par TokenAuthZ pour pouvoir faire des delete.&lt;br /&gt;
&lt;br /&gt;
==== Divers ====&lt;br /&gt;
&lt;br /&gt;
===== Pour arrêter / démarrer les services =====&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * service dpm-xrd restart&lt;br /&gt;
 * service dpm-olb restart&lt;br /&gt;
 * service dpm-manager-xrd restart&lt;br /&gt;
 * service dpm-manager-olb restart&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
===== L&#039;authentification =====&lt;br /&gt;
xrootd ne supporte pas encore d&#039;authentification GSI mais l&#039;authentification TokenAuthZ. &lt;br /&gt;
Le fichier d&#039;authentification est le suivant :&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * # cat /opt/lcg/etc/xrootd/authz.cf&lt;br /&gt;
 * KEY VO:*       PRIVKEY:/opt/lcg/etc/xrootd/pvkey.pem PUBKEY:/opt/lcg/etc/xrootd/pkey.pem&lt;br /&gt;
 * EXPORT PATH:/dpm/in2p3.fr/home/alice/ VO:*     ACCESS:ALLOW CERT:*&lt;br /&gt;
 * RULE PATH:/ AUTHZ:delete| NOAUTHZ:read|write|write-once| VO:* CERT:*&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
La dernière ligne signifie que tout le monde peut lire et écrire via xrootd, mais qu&#039;il faut une authentification via &lt;br /&gt;
TokenAuthZ pour pouvoir supprimer les fichiers.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Installation Configuration en utilisant Quattor ===&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==== installation RPM ====&lt;br /&gt;
RPM disponible:&lt;br /&gt;
http://project-arda-dev.web.cern.ch/project-arda-dev/alice/xrootd-dpm/&lt;br /&gt;
&lt;br /&gt;
Pour installer les bons RPM, il faut cette variable :&lt;br /&gt;
&lt;br /&gt;
 variable SEDPM_XROOTD_SERVER = true;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
pour la liste de RPMs, voir les templates:&lt;br /&gt;
&lt;br /&gt;
 cfg/grid/glite-3.1/glite/se_dpm/rpms/ « arch »/xrootd_*.tpl&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
==== configuration ====&lt;br /&gt;
Actuellement configuration à la main, voir :&lt;br /&gt;
&lt;br /&gt;
http://lcg2.in2p3.fr/wiki/index.php/User_talk:LEROY#Non-YAIM_configuration&lt;br /&gt;
&lt;br /&gt;
+ lien à créer:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 ln -s /opt/lcg/lib/libXrdSec.so /opt/lcg/lib64/libXrdSec.so&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Pour configuration via quattor:&lt;br /&gt;
Modification des templates à revoir (problemes du component):&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
Sending        cfg/clusters/dapnia-glite-3.1/lcg/source/pro_se_dpm_config.tpl&lt;br /&gt;
&lt;br /&gt;
Sending        cfg/clusters/dapnia-glite-3.1/profiles/profile_node11.tpl&lt;br /&gt;
&lt;br /&gt;
Sending        cfg/grid/glite-3.1/components/dpmlfc/schema.tpl&lt;br /&gt;
&lt;br /&gt;
Sending        cfg/grid/glite-3.1/glite/se_dpm/config.tpl&lt;br /&gt;
&lt;br /&gt;
Adding         cfg/grid/glite-3.1/glite/se_dpm/disk/xrootd.tpl&lt;br /&gt;
&lt;br /&gt;
Sending        cfg/grid/glite-3.1/glite/se_dpm/rpms/config.tpl&lt;br /&gt;
&lt;br /&gt;
Adding         cfg/grid/glite-3.1/glite/se_dpm/rpms/i386/xrootd_disk.tpl&lt;br /&gt;
&lt;br /&gt;
Adding         cfg/grid/glite-3.1/glite/se_dpm/rpms/i386/xrootd_head.tpl&lt;br /&gt;
&lt;br /&gt;
Adding         cfg/grid/glite-3.1/glite/se_dpm/rpms/x86_64/xrootd_disk.tpl&lt;br /&gt;
&lt;br /&gt;
Adding         cfg/grid/glite-3.1/glite/se_dpm/rpms/x86_64/xrootd_head.tpl&lt;br /&gt;
&lt;br /&gt;
Adding         cfg/grid/glite-3.1/glite/se_dpm/server/xrootd.tpl&lt;br /&gt;
&lt;br /&gt;
Sending        cfg/grid/glite-3.1/glite/se_dpm/service.tpl&lt;br /&gt;
&lt;br /&gt;
Sending        cfg/grid/glite-3.1/machine-types/se_dpm.tpl&lt;br /&gt;
&lt;br /&gt;
Sending        cfg/grid/glite-3.1/repository/config/glite.tpl&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
== Conclusion ==&lt;br /&gt;
Si on cumule test lecture/écriture et test iperf (avec 1 interface bond0 qui agrège les 8 Ethernet) on arrive à sortir les 230Mb/s et par TB. &lt;br /&gt;
&lt;br /&gt;
Necessite de bien maîtriser le raid logiciel et de le monitorer&lt;br /&gt;
&lt;br /&gt;
Existence des drivers pour quelques versions de Linux&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=User_talk:LEROY&amp;diff=6203</id>
		<title>User talk:LEROY</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=User_talk:LEROY&amp;diff=6203"/>
		<updated>2011-08-29T14:23:55Z</updated>

		<summary type="html">&lt;p&gt;LEROY: /* Mise hors service du LCG-CE (réinstallé en serveur (Maui + torque Only)) */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Mise hors service du LCG-CE (réinstallé en serveur (Maui + torque Only))  =&lt;br /&gt;
&lt;br /&gt;
Mise hors service du LCG-CE via Quattor sur un cluster avec :&lt;br /&gt;
&lt;br /&gt;
-une machine, M1 :(lcg-CE +Maui + torque)  et&lt;br /&gt;
&lt;br /&gt;
- une deuxième Machine, M2 : CREAM-CE&lt;br /&gt;
&lt;br /&gt;
La Première machine étant réinstallé en serveur (Maui + torque Only)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== 1)M1 : serveur Maui + torque Only en SL5 ==&lt;br /&gt;
=== a)Inclure un nouveau type de machine dans M1 ===&lt;br /&gt;
 &lt;br /&gt;
 include { &#039;machine-types/torque_server&#039; (a la place du glite_ce) &lt;br /&gt;
&lt;br /&gt;
=== b)Ajouter la derniere version de maui  ===&lt;br /&gt;
 &#039;/software/packages&#039;=pkg_repl(&#039;maui&#039;,&#039;3.3.1-1.sl5&#039;,&#039;x86_64&#039;);&lt;br /&gt;
 &#039;/software/packages&#039;=pkg_repl(&#039;maui-client&#039;,&#039;3.3.1-1.sl5&#039;,&#039;x86_64&#039;);&lt;br /&gt;
 &#039;/software/packages&#039;=pkg_repl(&#039;maui-server&#039;,&#039;3.3.1-1.sl5&#039;,&#039;x86_64&#039;);&lt;br /&gt;
&lt;br /&gt;
=== c) SL5 ===&lt;br /&gt;
&lt;br /&gt;
Deplacer le profile ainsi que le template &#039;pro_lcg2_config_site_maui.tpl&#039; dans le &#039;&#039;&#039;cluster glite 3.2&#039;&#039;&#039; et modifier le &#039;*nodes_properties.tpl&#039; (install SL5)&lt;br /&gt;
&lt;br /&gt;
=== d) Declarer une nouvelle variable ===&lt;br /&gt;
variable &#039;&#039;&#039;LRMS_SERVER_HOST&#039;&#039;&#039; dans &#039;pro_lcg2_config_site.tpl&#039; et &#039;pro_site_common_config.tpl&#039;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Template modifié lors de ces étapes:&lt;br /&gt;
&lt;br /&gt;
 Suppression cfg/clusters/irfu/glite-3.1/profiles/profile_node07.tpl&lt;br /&gt;
 Suppression cfg/clusters/irfu/glite-3.1/site/pro_lcg2_config_site_maui.tpl&lt;br /&gt;
 Ajout cfg/clusters/irfu/glite-3.2/profiles/profile_node07.tpl&lt;br /&gt;
 Ajout cfg/clusters/irfu/glite-3.2/site/pro_lcg2_config_site_maui.tpl&lt;br /&gt;
 Envoi cfg/sites/dapnia/site/config/dapnia_nodes_properties.tpl&lt;br /&gt;
 M cfg/clusters/irfu/test-glite-3.2/site/pro_lcg2_config_site.tpl&lt;br /&gt;
 M cfg/clusters/irfu/glite-3.1_MPI/profiles/profile_node16.tpl&lt;br /&gt;
 M cfg/clusters/irfu/glite-3.1_MPI/site/pro_lcg2_config_site.tpl&lt;br /&gt;
 M cfg/clusters/irfu/glite-3.2_MPI/site/pro_lcg2_config_site.tpl&lt;br /&gt;
 M cfg/sites/dapnia/site/pro_site_common_config.tpl&lt;br /&gt;
 M cfg/sites/dapnia/site/pro_site_ui_dapnia_users_env.tpl&lt;br /&gt;
 M cfg/sites/dapnia/site/pro_lcg2_config_site.tpl&lt;br /&gt;
&lt;br /&gt;
== 2)	Déplacer le site BDII sur une autre machine (anciennement sur le LCG-CE) ==&lt;br /&gt;
&lt;br /&gt;
Enlever les variable de configuration de BDII sur M1 et les ajouter sur une autre machine (LFC exemple) :&lt;br /&gt;
 variable BDII_TYPE=&#039;site&#039;; # site bdii&lt;br /&gt;
 variable BDII_SUBSITE_ONLY = false;&lt;br /&gt;
 variable BDII_SUBSITE = &#039;IRFU&#039;;&lt;br /&gt;
&lt;br /&gt;
== 3)	Résoudre l’erreur : Bad UID for job execution ==&lt;br /&gt;
http://grid.pd.infn.it/cream/field.php?n=Main.ErrorMessagesReportedByCREAMToClient#badui&lt;br /&gt;
en rajoutant le fichier mentionné: /etc/hosts.equiv&lt;br /&gt;
&lt;br /&gt;
== 4)	Resoudre le probleme de ‘resource not available’ vu par les WMS : ==&lt;br /&gt;
&lt;br /&gt;
En fait le système d’information ne marchait pas bien sur M2 (node74) :&lt;br /&gt;
 $ ldapsearch -x -LLL -H ldap://egee-bdii.cnaf.infn.it:2170 -b Mds-Vo-name=GRIF-IRFU,Mds-Vo-name=GRIF,mds-vo-name=local,o=grid &#039;objectclass=GlueSubCluster&#039; | grep node74&lt;br /&gt;
 $&lt;br /&gt;
&lt;br /&gt;
Ne rendait rien….&lt;br /&gt;
Ajout de  ces 2 variables dans le profile de M2 ( CREAM CE)  :&lt;br /&gt;
&lt;br /&gt;
 variable CE_HOST ?= &#039;node74.datagrid.cea.fr&#039;;&lt;br /&gt;
 variable GIP_CLUSTER_PUBLISHER_HOST ?= CE_HOST;&lt;br /&gt;
&lt;br /&gt;
== 5)	Résoudre les problèmes de publication (4444 jobs waiting…) == &lt;br /&gt;
=== 1)Inclure le client NFS sur M1 === &lt;br /&gt;
 variable NFS_CLIENT_ENABLED ?= true;&lt;br /&gt;
&lt;br /&gt;
Car &#039;M1 renseigne le GIP de M2 dans le software area de dteam via un cron sur M1&#039;.&lt;br /&gt;
Attention malgré l’option &#039;&#039;&#039;no_root_squash&#039;&#039;&#039; dans l’export du serveur NFS, il faut que les 2 fichiers :&lt;br /&gt;
 gip-ce-dynamic-info-maui.cache&lt;br /&gt;
 gip-ce-dynamic-info-scheduler.cache&lt;br /&gt;
&lt;br /&gt;
Existent dans ce software area et appartiennent à root.&lt;br /&gt;
Faire un chmod 777 sur le serveur NFS  le temps du cron sur M1, puis refaire un chown 755 (à analyser ?)&lt;br /&gt;
&lt;br /&gt;
=== 2)un des plugin (&#039;/opt/lcg/libexec/lcg-info-dynamic-maui&#039;) est buggé ===&lt;br /&gt;
 export PYTHONPATH=/opt/lcg/lib/python:${PYTHONPATH} ; python /opt/lcg/libexec/lcg-info-dynamic-maui --host node07.datagrid.cea.fr --max-normal-slots 2236 --ce-ldif /var/glite/static-file-all-CE-pbs.ldif --diagnose-output /tmp/maui-reservations.list&lt;br /&gt;
Traceback (most recent call last):&lt;br /&gt;
File &amp;quot;/opt/lcg/libexec/lcg-info-dynamic-maui&amp;quot;, line 244, in ?&lt;br /&gt;
if not queueParams:&lt;br /&gt;
File &amp;quot;/usr/lib64/python2.4/site-packages/pbs/PBSQuery.py&amp;quot;, line 351, in __getattr__&lt;br /&gt;
raise PBSError(error)&lt;br /&gt;
PBSQuery.PBSError: Attribute key error: __nonzero__&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Recuperer celui de grid33.lal.in2p3.fr&#039;&#039;&#039;&lt;br /&gt;
Patch à venir....&lt;br /&gt;
&lt;br /&gt;
= FTS =&lt;br /&gt;
&lt;br /&gt;
&#039;connaitre la list des channels:&#039;&lt;br /&gt;
&lt;br /&gt;
 glite-transfer-channel-list -s cclcgftsprod.in2p3.fr IN2P3-IRFU&lt;br /&gt;
&lt;br /&gt;
&#039;reactiver un channel&#039;&lt;br /&gt;
&lt;br /&gt;
 glite-transfer-channel-setvoshare -s cclcgftsprod.in2p3.fr &amp;lt;CHANNEL_NAME&amp;gt; atlas 100&lt;br /&gt;
&lt;br /&gt;
= Installation et Configuration d&#039;une VO-BOX ALICE =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Introduction ==&lt;br /&gt;
&lt;br /&gt;
Un site grille qui souhaite supporter l&#039;expérience ALICE, doit installer une VO-BOX. ALICE utilise [http://alien.cern.ch/twiki/bin/view/AliEn/Home AliEN] (Alice ENvironment) comme plateforme logicielle pour la simulation et l&#039;analyse des données. Alien est installé sur chaque VO-BOX. C&#039;est le CE d&#039;Alien qui soumet les Job Agents (JAs) au CE du site. Les JAs vont ensuite chercher les jobs dans central Task Queue de Alien. Les jobs écrivent via xrootd (directement vers le CERN pour le moment). Comme il n&#039;y a pas encore d&#039;interface xrootd/SRM, chaque VO-BOX doit fournir un stockage xrootd qui peut être sur un disque local.&lt;br /&gt;
&lt;br /&gt;
Les documents à lire impérativement (en plus de ce guide) sont:&lt;br /&gt;
&lt;br /&gt;
 * [http://alien.cern.ch/twiki/bin/view/AliEn/HowToInstallLcgVoBox ALICE LCG VO-Box Installation Guide]&lt;br /&gt;
 * [https://twiki.cern.ch/twiki/pub/LCG/VoBoxesInfo/VO-Box-security-policy_v05.doc VOBOX Security and Operations Questionnaires]&lt;br /&gt;
&lt;br /&gt;
La VO-BOX n&#039;est pas consommatrice en CPU et RAM. N&#039;importe quel PC récent(Pentium+) avec 2GB+ de RAM peut faire l&#039;affaire. Cependant un bon hardware est recommandé pour minimiser la fréquence des pannes.&lt;br /&gt;
&lt;br /&gt;
== Ressources disques requises ==&lt;br /&gt;
&lt;br /&gt;
 * Partition / (root) : au moins 2 GB&lt;br /&gt;
 * Partition /var : y prévoir 10-15 GB d&#039;espace pour les logs d&#039;Alien&lt;br /&gt;
 * /data (ou un autre nom) : partition local pour xrootd (prévoir 3G par job slot)&lt;br /&gt;
&lt;br /&gt;
Remarques:&lt;br /&gt;
  1. xrootd: sur un site avec plus de 30 job slots, passer si possible au mode &amp;quot;head node + xrootd servers&amp;quot; pour des raisons de performances&lt;br /&gt;
  2. &amp;quot;/home&amp;quot; doit être local pour des raisons de performances et de gestion des &amp;quot;locks&amp;quot;&lt;br /&gt;
&lt;br /&gt;
== Les ports à ouvrir pour la VO-BOX au niveau du router ==&lt;br /&gt;
&lt;br /&gt;
 * 1975/tcp (gsissh): inbound from 137.138.0.0/16 and 192.16.186.192/26&lt;br /&gt;
 * 1094/tcp(xrootd)&lt;br /&gt;
 * 8082/tcp (Storage Adapter)&lt;br /&gt;
 * 8083 (FTD)&lt;br /&gt;
 * 8084/tcp (Site Proxy)&lt;br /&gt;
 * 9991/tcp (PackMan) : Inbound from 137.138.0.0/16&lt;br /&gt;
 * 1093/tcp (proofd)&lt;br /&gt;
&lt;br /&gt;
== Le profile de la VO-BOX sous Quattor ==&lt;br /&gt;
&lt;br /&gt;
Dans clusters/&amp;lt;nom_site&amp;gt;-glite-x.y.z/profiles/profile_&amp;lt;nom_vobox&amp;gt;.tpl, faire:&lt;br /&gt;
&lt;br /&gt;
 {{{&lt;br /&gt;
include pro_&amp;lt;nom_site&amp;gt;_alice_glite_vobox;&lt;br /&gt;
(voir cfg/clusters/ipno-glite-3.0.0/profiles/profile_ipnvobox.tpl)&lt;br /&gt;
 }}}&lt;br /&gt;
&lt;br /&gt;
Dans sites/&amp;lt;nom_site&amp;gt;/machine-types, créer pro_&amp;lt;nom_site&amp;gt;_alice_glite_vobox.tpl et pro_&amp;lt;nom_site&amp;gt;_alice_vobox_config.tpl&lt;br /&gt;
&lt;br /&gt;
Vous pouvez copier et adpater les templates de l&#039;IPNO ou du DAPNIA.&lt;br /&gt;
&lt;br /&gt;
== Après l&#039;installation via Quattor de la machine ==&lt;br /&gt;
&lt;br /&gt;
 * Demander et installer le certificat serveur GRID-FR de la mchine&lt;br /&gt;
 * Vérifier que les utilisateurs alis et alip existent dans /etc/passwd&lt;br /&gt;
 * Verifier que Patricia Lorenzo Mendez et Artem Trunov sont bien mappés sur&lt;br /&gt;
  alis dans /etc/grid-security/grid-mapfile et qu&#039;il y a quelqu&#039;un mappé&lt;br /&gt;
  sur alip. Question ouverte: faut-il creer les pool accounts ? Ou faut-il&lt;br /&gt;
  créer uniqument les comptes alis, alip nécessaires pour ALICE ?&lt;br /&gt;
 * Dans /etc/shadow vous devez avoir &#039;*&#039; dans le champ &#039;password&#039;, sinon le logingsissh ne marchera pas. Donc il faut remplacer &#039;!!&#039; ou &#039;!*NP*&#039; par &#039;*&#039;&lt;br /&gt;
 {{{&lt;br /&gt;
[root@ipnvobox etc]# grep alis /etc/shadow&lt;br /&gt;
alis:*:13574:0:99999:7:::&lt;br /&gt;
 }}}&lt;br /&gt;
 * Vérifier que le serveur GSISSH tourne sur la VOBOX sur le port 1975.&lt;br /&gt;
 * Vérifier que $MYPROXY_SERVER pointe bien sur myproxy.cern.ch&lt;br /&gt;
 * Vérifier que la expérimental software area ($VO_ALICE_SW_DIR) est bien accessible via NFS depuis la VO-BOX et writeable par alis. Il faut au moins 5GB d&#039;espace libre pour le soft d&#039;ALICE.&lt;br /&gt;
 * Vérifier que la partition /data pour xrootd existe et appartient à alis (/data doit être crée sous Quattor ou à la main)&lt;br /&gt;
 {{{&lt;br /&gt;
[root@ipnvobox root]# ls -ld /data&lt;br /&gt;
drwxr-xr-x   19 alis     alice        4096 Dec 14 13:22 /data&lt;br /&gt;
 }}}&lt;br /&gt;
 * Créer un directory pour les logs d&#039;Alien (ex: /var/log/alis). Il doit appartenir à alis et nécessite 10-15 GB libre.&lt;br /&gt;
 {{{&lt;br /&gt;
[root@ipnvobox root]# ls -ld /var/log/alis&lt;br /&gt;
drwxrwxrwx   10 alis     alice        4096 Mar  2 16:54 /var/log/alis&lt;br /&gt;
 }}}&lt;br /&gt;
 * Configurer le proxy-renewal service. MAIS, le script /opt/vobox/templates/voname-box-proxyrenewal n&#039;est pas encore exécuté automatiquement. Cal a prévu de corriger le probleme. Donc si après l&#039;installation de la VO-BOX, il manque alice-box-proxyrenewal dans /etc/cron.d/ et dans /etc/init.d/ ainsi que start, stop, agents et info-provider dans /opt/vobox/alice/, alors faire:&lt;br /&gt;
  1. créer /etc/cron.d/alice-box-proxyrenewal:&lt;br /&gt;
 {{{&lt;br /&gt;
[root@ipnvobox root]# cat /etc/cron.d/alice-box-proxyrenewal&lt;br /&gt;
#!/bin/sh&lt;br /&gt;
20 2,8,14,20 * * * root (PATH=/sbin:/bin:/usr/sbin:/usr/bin; /sbin/service alice-box-proxyrenewal proxy)&lt;br /&gt;
 }}}&lt;br /&gt;
  2. copier /opt/vobox/templates/voname-box-proxyrenewal dans&lt;br /&gt;
    /tmp/alice-proxy-renewal.sh, adpatez-le et exécutez-le (le script que j&#039;ai&lt;br /&gt;
    utilisé est en attachement: alice-proxy-renewal.sh).&lt;br /&gt;
  3. vous devez alors retrouver les directories qui manquaient:&lt;br /&gt;
 {{{&lt;br /&gt;
[root@ipnvobox alice]# ls -l&lt;br /&gt;
total 44&lt;br /&gt;
drwx------    2 alis     alice        4096 Jul 19  2006 agents&lt;br /&gt;
-rw-rw-rw-    1 alis     alice           0 Nov 14 09:09 edglog.log&lt;br /&gt;
drwx------    2 alis     alice        4096 Jul 19  2006 info-provider&lt;br /&gt;
drwx------    2 alis     alice        4096 Mar  1 04:02 log&lt;br /&gt;
drwx------    2 alis     alice        4096 Mar  2 17:19 proxy_repository&lt;br /&gt;
-rw-------    1 alis     alice       13750 Mar  2 17:04 _registerer_proxies.db&lt;br /&gt;
-r--------    1 alis     alice        2690 Mar  2 14:20 renewal-proxy.pem&lt;br /&gt;
drwx------    2 alis     alice        4096 Aug  6  2006 start&lt;br /&gt;
drwx------    2 alis     alice        4096 Aug  5  2006 stop&lt;br /&gt;
 }}}&lt;br /&gt;
 * Envoyer un e-mail à: Patricia.Mendez@cern.ch, latchezar.betev@cern.ch et trunov@cc.in2p3.fr :&lt;br /&gt;
1. demander que la machine soit enregistrée &#039;as trusted host&#039; dans myproxy.cern.ch dans LDAP (il faut fournir le DN de la VOBOX).&lt;br /&gt;
2. fournir les informations suivantes dans le mail:&lt;br /&gt;
  * hostname de la VO-BOX&lt;br /&gt;
  * le nom des users: alicesgm (alis dans GRIF), alip (ALICE Production)&lt;br /&gt;
  * le nom directory pour xrootd (ex: /data)&lt;br /&gt;
  * le nom du SE/DPM Server (ex: ipnsedpm.in2p3.fr)&lt;br /&gt;
  * le nom du serveur LFC (ex: grid14.lal.in2p3.fr) et le catalogue pour&lt;br /&gt;
    ALICE (/grid/alice)&lt;br /&gt;
  * le nom du RB (ex: grid09.lal.in2p3.fr)&lt;br /&gt;
  * le nom du CE et de la queue batch&lt;br /&gt;
    (ex: ipnls2001.in2p3.fr:2119/jobmanager-pbs-alice)&lt;br /&gt;
  * le path pour le experiment software area&lt;br /&gt;
    (ex:VO_ALICE_SW_DIR=/ipn/storage1/exp_soft/alis, zone &amp;quot;NFS shared&amp;quot; avec les WNs)&lt;br /&gt;
 * Installer Alien ou demander que Artem ou Patricia vous l&#039;installe.&lt;br /&gt;
 * S&#039;inscrire individullement dans le projet ALICE (voir avec un physicien d&#039;ALICE du Labo et avec le Secrétariat d&#039;ALICE) :&lt;br /&gt;
  1. demander un logon au CERN (si vous n&#039;en avez pas déjà)&lt;br /&gt;
  2. demander à être enregistré comme membre du projet ALICE&lt;br /&gt;
 * Inscrivez-vous dans AliEn en suivant les étapes sur la page http://alien.cern.ch/twiki/bin/view/Alice/UserRegistration&lt;br /&gt;
  1. Vous serez amenés à vous inscrire dans la VO ALICE (si ce n&#039;est pas déjà fait)  sur https://lcg-voms.cern.ch:8443/vo/alice/vomrs&lt;br /&gt;
  2. Ensuite vous pourrez vous inscrire dans AliEn (&amp;quot;5. Register with AliEn&amp;quot; sur&lt;br /&gt;
    https://alien.cern.ch:8443/twiki/bin/UserReg&lt;br /&gt;
 * Demander ensuite à être mapé sur &#039;alidprod&#039; si vous voulez pouvoir utiliser AliEn sous votre nom (ALIEN_USER=user_name dans ~alis/.alien/Environment) la VO-BOX (start/stop des services par exemples)&lt;br /&gt;
 * Mettre dans /etc/motd des informations utiles à afficher lors de la connexion [gsi]ssh: LFC server, catalog pour alice, zone pour xrootd, etc.&lt;br /&gt;
&lt;br /&gt;
== Durée du proxy ==&lt;br /&gt;
&lt;br /&gt;
Vérifier dans /opt/lcg/sbin/vobox-renewd qu&#039;on a &#039;-t 48&#039; :&lt;br /&gt;
&lt;br /&gt;
 {{{&lt;br /&gt;
${GLOBUS_LOCATION}/bin/myproxy-get-delegation -a ${VOBOX_PROXY_REPOSITORY}/${CERT} -d -o $TMP_PROXY -t 48 2&amp;gt;&amp;amp;1 &amp;gt; /dev/null&lt;br /&gt;
 }}}&lt;br /&gt;
&lt;br /&gt;
Il s&#039;agit d&#039;un problème qui devrait être résolu dans le futur&lt;br /&gt;
&lt;br /&gt;
== Backup ==&lt;br /&gt;
&lt;br /&gt;
Faire régulièrement des sauvegardes de ~alis, /opt/vobox et des logs d&#039;Alien (ex: /var/log/alis)&lt;br /&gt;
&lt;br /&gt;
== Se connecter à la VO-BOX depuis le UI ==&lt;br /&gt;
&lt;br /&gt;
Faire &#039;gsissh -l user -p port_GSISSH &amp;lt;vobox_name&amp;gt; &#039;&lt;br /&gt;
 {{{&lt;br /&gt;
[diarra@ipngrid01 ~]$ gsissh -l alis -p 1975 ipnvobox&lt;br /&gt;
 }}}&lt;br /&gt;
&lt;br /&gt;
== Utiliser le serveur myproxy ==&lt;br /&gt;
&lt;br /&gt;
Sur le UI:&lt;br /&gt;
&lt;br /&gt;
 {{{&lt;br /&gt;
myproxy-init -s myproxy.cern.ch -d -n -t 48 -c 720&lt;br /&gt;
gsissh -l alis -p 1975 &amp;lt;vobox_name&amp;gt;&lt;br /&gt;
 }}}&lt;br /&gt;
Sur la VO-BOX:&lt;br /&gt;
&lt;br /&gt;
 {{{&lt;br /&gt;
vobox-proxy --vo alice --proxy-safe 3600 --myproxy-safe 259200 --email &amp;lt;votre_e-mail&amp;gt; register&lt;br /&gt;
 }}}&lt;br /&gt;
Pour s&#039;assurer que le proxy est renouveler automatiquement, vérifier que vous avez dans /opt/vobox/alice/log/events.log une ligne du genre:&lt;br /&gt;
 {{{&lt;br /&gt;
9/07/06 14:35:56 : Proxy for DN  &amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=IPNO/CN=Christophe Diarra/CN=proxy/CN=proxy/CN=proxy&amp;quot; successfully renewed&lt;br /&gt;
 }}}&lt;br /&gt;
Dans /opt/vobox/alice/proxy_repository/ vous trouverez le proxy.&lt;br /&gt;
== Start/Stop des services ==&lt;br /&gt;
&lt;br /&gt;
Les services peuvent être démarrés un par un. Les services disponibles sont :&lt;br /&gt;
Monitor, SE, CE, PackMan, Monalisa.&lt;br /&gt;
&lt;br /&gt;
Un script permet de les démarrer ou de les arrêter dans le bon ordre:&lt;br /&gt;
&lt;br /&gt;
 {{{&lt;br /&gt;
$VO_ALICE_SW_DIR/alien/etc/rc.d/init.d/aliend start|stop&lt;br /&gt;
 }}}&lt;br /&gt;
Pour démarrer ou arreter un seul service :&lt;br /&gt;
&lt;br /&gt;
 {{{&lt;br /&gt;
$VO_ALICE_SW_DIR/alien/scripts/lcg/lcgAlien.sh StartServiceName|StopServiceName&lt;br /&gt;
Exemple:&lt;br /&gt;
$VO_ALICE_SW_DIR/alien/scripts/lcg/lcgAlien.sh StopCE&lt;br /&gt;
$VO_ALICE_SW_DIR/alien/scripts/lcg/lcgAlien.sh StartCE&lt;br /&gt;
 }}}&lt;br /&gt;
&lt;br /&gt;
== Expiration du proxy ==&lt;br /&gt;
&lt;br /&gt;
Quand vous recevez un mail indiquant que le proxy est sur le point d&#039;expirer&lt;br /&gt;
(3 jours avant ?), ou si les logs le signalent, il faut renouveler le proxy sur&lt;br /&gt;
le serveur myproxy depuis le UI.&lt;br /&gt;
&lt;br /&gt;
 {{{&lt;br /&gt;
[root@ipnvobox log]# more /opt/vobox/alice/log/events.log&lt;br /&gt;
...&lt;br /&gt;
11/26/06 15:03:05 : Myproxy lifetime (256228 sec) shorter than security threshol&lt;br /&gt;
d (259200 sec)&lt;br /&gt;
11/26/06 15:03:05 : ... for DN /O=GRID-FR/C=FR/O=CNRS/OU=IPNO/CN=Christophe Diar&lt;br /&gt;
ra&lt;br /&gt;
11/26/06 15:03:05 : sendind notification email to diarra@ipno.in2p3.fr. SUCCESSF&lt;br /&gt;
ULL&lt;br /&gt;
 }}}&lt;br /&gt;
Sur le UI:&lt;br /&gt;
&lt;br /&gt;
 {{{&lt;br /&gt;
[diarra@ipnls2011 my]$ myproxy-info -d -s myproxy.cern.ch&lt;br /&gt;
username: /O=GRID-FR/C=FR/O=CNRS/OU=IPNO/CN=Christophe Diarra&lt;br /&gt;
owner: /O=GRID-FR/C=FR/O=CNRS/OU=IPNO/CN=Christophe Diarra&lt;br /&gt;
  timeleft: 52:25:26  (2.2 days)&lt;br /&gt;
&lt;br /&gt;
[diarra@ipnls2011 my]$ myproxy-init -s myproxy.cern.ch -d -n -t 48 -c 720&lt;br /&gt;
Your identity: /O=GRID-FR/C=FR/O=CNRS/OU=IPNO/CN=Christophe Diarra&lt;br /&gt;
Enter GRID pass phrase for this identity:&lt;br /&gt;
Creating proxy ............................................ Done&lt;br /&gt;
Proxy Verify OK&lt;br /&gt;
Your proxy is valid until: Wed Dec 27 09:56:25 2006&lt;br /&gt;
A proxy valid for 720 hours (30.0 days) for user /O=GRID-FR/C=FR/O=CNRS/OU=IPNO/CN=Christophe Diarra now exists on myproxy.cern.ch.&lt;br /&gt;
 }}}&lt;br /&gt;
&lt;br /&gt;
== Monitoring / Accounting ==&lt;br /&gt;
&lt;br /&gt;
 * [http://pcalimonitor.cern.ch:8889/ ALICE Monitoring with MonALISA]&lt;br /&gt;
 * [http://dashb-alice.cern.ch/dashboard/request.py/jobsummary?sortby=site ALICE Dashboard : Job Summary]&lt;br /&gt;
&lt;br /&gt;
== Liens Utiles ==&lt;br /&gt;
&lt;br /&gt;
[https://alien.cern.ch:8443/twiki/bin/view/AliEn/HowToDebugLcgVoBox Debugging &amp;amp; Troubleshooting the ALICE LCG Vo-Box]&lt;br /&gt;
&lt;br /&gt;
[http://goc.grid.sinica.edu.tw/gocwiki/VO-box_HowTo VO-box HowTo - description, installation, testing]&lt;br /&gt;
&lt;br /&gt;
[http://lcg2.in2p3.fr/wiki/index.php/Alice Page Alice LCG-France]&lt;br /&gt;
&lt;br /&gt;
[https://twiki.cern.ch/twiki/pub/LCG/VoBoxesInfo/VO-Box-security-policy_v05.doc VOBOX Security and Operations Questionnaires]&lt;br /&gt;
&lt;br /&gt;
[http://www.gridpp.ac.uk/wiki/VOBox Pages sur les VOboxes]&lt;br /&gt;
&lt;br /&gt;
[https://edms.cern.ch/document/655277/ LCG VOBox Operations Recommendations and Questionnaire]&lt;br /&gt;
&lt;br /&gt;
[http://alien.cern.ch/twiki/bin/view/AliEn/HowToInstallXrootd How to install xrootd on data servers]&lt;br /&gt;
&lt;br /&gt;
[http://xrootd.slac.stanford.edu/ XROOTD]&lt;br /&gt;
&lt;br /&gt;
= LEMON : Sytème de Monitoring Client/Serveur =&lt;br /&gt;
[[TracNav]]&lt;br /&gt;
&lt;br /&gt;
http://lemon.web.cern.ch/lemon/&lt;br /&gt;
http://lemon.web.cern.ch/lemon/doc/installation/installation.html&lt;br /&gt;
&lt;br /&gt;
[[TOC(inline)]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Installation du Serveur Lemon via quattor en SL4 ==&lt;br /&gt;
&lt;br /&gt;
Utilser les 2 templates :&lt;br /&gt;
{{{&lt;br /&gt;
pro_software_lemon_server_sl4_i386;&lt;br /&gt;
pro_service_lemon_server;&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Qui vont:&lt;br /&gt;
 &#039;&#039;&#039;1) installer les RPMs necessaires&#039;&#039;&#039;&lt;br /&gt;
{{{&lt;br /&gt;
(&amp;quot;edg-fabricMonitoring-server&amp;quot;,&amp;quot;2.13.0-3&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;rrdtool&amp;quot;,&amp;quot;1.0.49-2.1.el3.rf&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;lrf&amp;quot;,&amp;quot;1.0.7-15&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;ncm-fmonagent&amp;quot;,&amp;quot;1.0.32-1&amp;quot;,&amp;quot;noarch&amp;quot;);&lt;br /&gt;
(&amp;quot;perl-TimeDate&amp;quot;,&amp;quot;2.22-1&amp;quot;,&amp;quot;noarch&amp;quot;);&lt;br /&gt;
(&amp;quot;httpd&amp;quot;,&amp;quot;2.0.52-22.ent&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;httpd-suexec&amp;quot;,&amp;quot;2.0.52-22.ent&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;system-config-httpd&amp;quot;,&amp;quot;1.3.1-1&amp;quot;,&amp;quot;noarch&amp;quot;);&lt;br /&gt;
(&amp;quot;php-ldap&amp;quot;,&amp;quot;4.3.9-3.15&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;php-gd&amp;quot;,&amp;quot;4.3.9-3.15&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;php-imap&amp;quot;,&amp;quot;4.3.9-3.15&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;php-pear&amp;quot;,&amp;quot;4.3.9-3.15&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;php&amp;quot;,&amp;quot;4.3.9-3.15&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;oracle-xe-univ&amp;quot;,&amp;quot;10.2.0.1-1.0&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;cx_Oracle&amp;quot;,&amp;quot;4.1-1&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;lemon-ora-admin&amp;quot;,&amp;quot;1.0.4-96&amp;quot;,&amp;quot;noarch&amp;quot;);&lt;br /&gt;
# lemon-OraMon probleme de dependance: l&#039;installer avec --nodeps (info from Miroslav Sicket CERN)&lt;br /&gt;
(&amp;quot;lemon-OraMon&amp;quot;,&amp;quot;1.2.0-1&amp;quot;,&amp;quot;i386&amp;quot;);}}}&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039; 2) configurer les fichiers suivant :&#039;&#039;&#039;&lt;br /&gt;
{{{&lt;br /&gt;
/etc/lemon/server/lemon-oramon-server.conf&lt;br /&gt;
/var/www/html/lrf/config.php&lt;br /&gt;
/var/spool/edg-fmon-server/nodes.map&lt;br /&gt;
/etc/lemon/lemonmrd.conf&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 &#039;&#039;&#039; 3) et demarrer les 2 demons :&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
/etc/init.d/OraMon&lt;br /&gt;
/etc/init.d/lemonmrd&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Configuration Hors Quattor ==&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;1) Configuration de la Base de Donée:&#039;&#039;&#039; &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
/etc/init.d/oracle-xe configure&lt;br /&gt;
. /usr/lib/oracle/xe/app/oracle/product/10.2.0/server/bin/oracle_env.sh&lt;br /&gt;
sqlplus system&lt;br /&gt;
 SQL&amp;gt; EXEC DBMS_XDB.SETLISTENERLOCALACCESS(FALSE);       &lt;br /&gt;
/etc/init.d/oracle-xe start&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;2) Ajouter l&#039;utilisateur lemon&#039;&#039;&#039;&lt;br /&gt;
via l&#039;interface http://ma_machine:port_choisi/apex&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;3) Configuration de Oramon :&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
lemon-ora.admin --create-schema -d xe --data-tablespace=USERS --index-tablespace=USERS&lt;br /&gt;
lemon-ora.admin --file=/etc/oramon-server.conf -d xe --all  --data-tablespace=USERS --index-tablespace=USERS&lt;br /&gt;
lemon-ora.admin --file=/etc/oramon-server.conf -d xe  -u lemon --create-las --data-tablespace=USERS --index-tablespace=USERS&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;4) exporter les variables Oracle :&#039;&#039;&#039;&lt;br /&gt;
{{{&lt;br /&gt;
export LD_LIBRARY_PATH=/usr/lib/oracle/xe/app/oracle/product/10.2.0/server/lib:/usr/lib/oracle/10.2.0.3/client/lib&lt;br /&gt;
export ORACLE_SID=XE&lt;br /&gt;
export PATH=$PATH:/usr/lib/oracle/xe/app/oracle/product/10.2.0/server/bin&lt;br /&gt;
export ORACLE_HOME=/usr/lib/oracle/xe/app/oracle/product/10.2.0/server&lt;br /&gt;
export TNS_ADMIN=/usr/lib/oracle/xe/app/oracle/product/10.2.0/server/network/admin&lt;br /&gt;
export PYTHONPATH=/usr/lib/python2.2/site-packages&lt;br /&gt;
export NLS_LANG=AMERICAN_AMERICA.AL32UTF8&lt;br /&gt;
&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
     Dans tous les fichiers de demarrage suivant :&lt;br /&gt;
   {{{&lt;br /&gt;
   /etc/init.d/lemonmrd&lt;br /&gt;
   /etc/init.d/httpd&lt;br /&gt;
   /etc/sysconfig/OraMon&lt;br /&gt;
   }}}&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;5) Et verifier ensuite les logs, et que le serveur collecte bien des données :&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
/var/log/lemonmrd.log&lt;br /&gt;
/var/www/html/lrf/data&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Ajout de nouvelles sondes/metriques ==&lt;br /&gt;
&lt;br /&gt;
I) Sur le client&lt;br /&gt;
&lt;br /&gt;
a)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node07 sensor-example]# cat /etc/lemon/agent/sensors/torque_maui.conf&lt;br /&gt;
&lt;br /&gt;
 torque_maui&lt;br /&gt;
        CommandLine /usr/bin/perl /usr/libexec/sensors/lemon-sensor.pl RunningJobs&lt;br /&gt;
        MetricClasses&lt;br /&gt;
                torque_maui.RunningJobs&lt;br /&gt;
b)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node07 sensor-example]# cat /etc/lemon/agent/metrics/torque_maui.conf&lt;br /&gt;
&lt;br /&gt;
 20047&lt;br /&gt;
        MetricName     Jobsrunning&lt;br /&gt;
        MetricClass    torque_maui.RunningJobs&lt;br /&gt;
        Timing  3600   0&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
c)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node07 sensor-example]# cat /usr/libexec/sensors/RunningJobs.pm&lt;br /&gt;
&lt;br /&gt;
 #!/usr/bin/perl -w&lt;br /&gt;
 package torque_maui;&lt;br /&gt;
 # modules&lt;br /&gt;
 use diagnostics;&lt;br /&gt;
 use strict;&lt;br /&gt;
 # the sensor API interface&lt;br /&gt;
 use sensorAPI;&lt;br /&gt;
 # register module name and version&lt;br /&gt;
 registerVersion(&amp;quot;lemon-sensor-torque_maui&amp;quot;, &amp;quot;1.0.0-1&amp;quot;);&lt;br /&gt;
 # register the sensors metric classes&lt;br /&gt;
 registerMetric(&amp;quot;torque_maui.RunningJobs&amp;quot;, &amp;quot;report the Running Jobs&amp;quot;, &amp;quot;torque_maui::RunningJobs&amp;quot;);&lt;br /&gt;
 sub RunningJobs_sample() {&lt;br /&gt;
    # All function hooks in the sensor API: _sample(), _initialise(), _periodicCheck(), _destroy()&lt;br /&gt;
    # are passed a hash as the first argument. This hash provides the function with the ability to&lt;br /&gt;
    # access the methods and variables of the metric instance/object. This is Perls implementation&lt;br /&gt;
    # of Object Orientation&lt;br /&gt;
    my $obj  = shift;&lt;br /&gt;
    # variables&lt;br /&gt;
    my $line = `/usr/bin/showq -r | echo \$((\$(wc -l)-4))`;&lt;br /&gt;
            $obj-&amp;gt;storeSample01($line);&lt;br /&gt;
    # All functions called by the sensor API must return a value&lt;br /&gt;
    #  - if the sampling was successful you the return code should be 0 and -1 on error&lt;br /&gt;
     return 0;&lt;br /&gt;
      }&lt;br /&gt;
 1;&lt;br /&gt;
 #-- End-of-File --------------------------------------------------------------------------------------#&lt;br /&gt;
&lt;br /&gt;
II) Pour le serveur&lt;br /&gt;
&lt;br /&gt;
1) Pour Oramon&lt;br /&gt;
&lt;br /&gt;
a) modifier le fichier /etc/oramon-server.conf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 ………..&lt;br /&gt;
&lt;br /&gt;
                torque_maui.RunningJobs&lt;br /&gt;
                        Description Running jobs on the CE?&lt;br /&gt;
                        Fields&lt;br /&gt;
                                Running_Jobs&lt;br /&gt;
                                        Type INTEGER&lt;br /&gt;
                                        MetricUnit count&lt;br /&gt;
                                        MetricScale 1&lt;br /&gt;
&lt;br /&gt;
 ……………..&lt;br /&gt;
&lt;br /&gt;
                20047&lt;br /&gt;
                        MetricClass torque_maui.RunningJobs&lt;br /&gt;
                        MetricName Jobsrunning&lt;br /&gt;
                        Description Running Jobs on the CE?&lt;br /&gt;
                        TableName _20047&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Metric classes part into corresponding metric class part, metric instance into metric instances (be carefull about the tabs). &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
b) sourcer laes variables d&#039;environnement oracle :&lt;br /&gt;
&lt;br /&gt;
 . /usr/lib/oracle/xe/app/oracle/product/10.2.0/server/bin/oracle_env.sh&lt;br /&gt;
&lt;br /&gt;
c) mettre a jour la Database:&lt;br /&gt;
&lt;br /&gt;
 lemon-ora.admin --file=/etc/oramon-server.conf -d xe  -u lemon --all --data-tablespace=USERS --index-tablespace=USERS&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
2) Pour LRF&lt;br /&gt;
&lt;br /&gt;
a) # tail -3 /var/spool/edg-fmon-server/metrics.map&lt;br /&gt;
&lt;br /&gt;
 182 20015     /home.use&lt;br /&gt;
 183 30050     exitCodeNFS&lt;br /&gt;
 184 20047     RunningJobs&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
b)# more /etc/lemon/lemonmrd.conf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 ……………..&lt;br /&gt;
&lt;br /&gt;
 RunningJobs=Jobsrunning:Running_Jobs&lt;br /&gt;
&lt;br /&gt;
 ……………..&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
 [node07.datagrid.cea.fr]&lt;br /&gt;
 type=host&lt;br /&gt;
 metrics=+RunningJobs&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
c) #grep -i job /var/www/html/lrf/metric_map.php&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
                   &amp;quot;RunningJobs&amp;quot;        =&amp;gt; array(&amp;quot;RunningJobs&amp;quot;,&amp;quot;Jobs   running&amp;quot;,&amp;quot;count&amp;quot;,1,0,&#039;Jobsrunning.Running_Jobs&#039;),&lt;br /&gt;
&lt;br /&gt;
                        1 =&amp;gt; array(&#039;name&#039; =&amp;gt; &#039;JOBS STATISTICS&#039;, &#039;y-axis&#039; =&amp;gt; &#039;count&#039;, &#039;stack&#039; =&amp;gt; false, &#039;base&#039; =&amp;gt; 1,&lt;br /&gt;
&lt;br /&gt;
                            &#039;metrics&#039; =&amp;gt; array( 0 =&amp;gt; array(&#039;name&#039; =&amp;gt;  &#039;RunningJobs&#039;, &#039;summary&#039; =&amp;gt; true, &#039;title&#039; =&amp;gt; &#039;Running Jobs&#039;)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Pour configurer les alarmes ==&lt;br /&gt;
&lt;br /&gt;
a) créer un fichier xml par machine:&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
# cat /tmp/my_cnf_node07.xml&lt;br /&gt;
&amp;lt;?xml version = &#039;1.0&#039;?&amp;gt;&lt;br /&gt;
&amp;lt;CDBSEARCHLIST&amp;gt;&lt;br /&gt;
&amp;lt;HOST ID=&amp;quot;node07.datagrid.cea.fr&amp;quot; CLUSTER =&amp;quot;GRID_SERVICES&amp;quot; SUBCLUSTER =&amp;quot;&amp;quot; IMPORTANCE =&amp;quot;0&amp;quot; SURESTATUS =&amp;quot;TRUE&amp;quot; NOCONTACTTIMEOUT =&amp;quot;660&amp;quot;&lt;br /&gt;
PINGTIMEOUT =&amp;quot;&amp;quot; /&amp;gt;&lt;br /&gt;
&amp;lt;/CDBSEARCHLIST&amp;gt;&lt;br /&gt;
#&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
b) mettre a jour la Database:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
# lemon-ora.entities -u lemon -d xe -c /tmp/my_cnf_node07.xml&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Problemes rencontrés ==&lt;br /&gt;
&lt;br /&gt;
ne pas oublier d&#039;exporter les variables oracles&lt;br /&gt;
&lt;br /&gt;
le fichies nodes.map ne doit pas avoir de lignes vides&lt;br /&gt;
&lt;br /&gt;
Les Symlink avec cette version d&#039;apache ne fonctionne pas (on utlisie /var/www/html/lrf/data au lieu de /var/spool/data)&lt;br /&gt;
&lt;br /&gt;
Php avec oci8 tres sensibles aux versions (plus de soucis avec les versions SL4 ci dessus)&lt;br /&gt;
&lt;br /&gt;
= Test sur le réseaux datagrid.cea.fr: Iperf =&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Le 20/03/2007&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Avec 5 threads&#039;&#039;&#039; : &lt;br /&gt;
&lt;br /&gt;
Lyon -&amp;gt; Saclay : 550Mb/s (peu variable) ; &lt;br /&gt;
&lt;br /&gt;
Saclay -&amp;gt; Lyon : 600 Mb/s (très variables de 250 Mb/s à 750 Mb/s)).&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Avec 1 thread&#039;&#039;&#039; : 300 Mb/s dans les 2 sens&lt;br /&gt;
&lt;br /&gt;
= Test sur le réseaux datagrid.cea.fr: Transfert de fichiers -1ere PHASE- =&lt;br /&gt;
&lt;br /&gt;
=== Sites impliqués ===&lt;br /&gt;
* &#039;&#039;&#039;T1 CC-IN2P3 &#039;&#039;&#039;&lt;br /&gt;
** Contacts : &amp;lt;span style=&amp;quot;color:#0000F0;&amp;quot;&amp;gt; David Bouvet, Lionel Schwarz &amp;lt;/span&amp;gt;&lt;br /&gt;
** &#039;&#039;&#039;SE : ccsrm.in2p3.fr&#039;&#039;&#039;&lt;br /&gt;
*** Endpoint transferts DAPNIA-CC : /pnfs/in2p3.fr/data/dteam/disk/dapnia/&lt;br /&gt;
* &#039;&#039;&#039;T2 GRIF&#039;&#039;&#039;   &lt;br /&gt;
** Contacts : &amp;lt;span style=&amp;quot;color:#0000F0;&amp;quot;&amp;gt; Christine Leroy&amp;lt;/span&amp;gt;&lt;br /&gt;
** &#039;&#039;&#039;SE-DAPNIA : node12.datagrid.cea.fr&#039;&#039;&#039;&lt;br /&gt;
*** GlueServiceEndpoint: httpg://node12.datagrid.cea.fr:8443/srm/managerv1&lt;br /&gt;
*** GlueSAPath: /dpm/datagrid.cea.fr/home/dteam&lt;br /&gt;
** &#039;&#039;&#039;SE-LAL : grid05.lal.in2p3.fr&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
=== conditions de transferts pour FTS===&lt;br /&gt;
&lt;br /&gt;
Les transferts sont initiés depuis node02.datagrid.cea.fr&lt;br /&gt;
&lt;br /&gt;
* Avant tout transfert, il faut un &#039;&#039;&#039;proxy valide déposé sur un serveur MyProxy&#039;&#039;&#039; pour permettre au serveur FTS de renouveler un proxy expiré en cours de transfert&lt;br /&gt;
&lt;br /&gt;
 myproxy-init -s cclcgproxli01.in2p3.fr -d&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
* [[pour connaitre la configuration du canal FTS :]]&lt;br /&gt;
 glite-transfer-channel-list -s https://cclcgftsprod01.in2p3.fr:8443/glite-data-transfer-fts/services/ChannelManagement GRIF-IN2P3&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
* [[pour modifier la configuration du canal FTS :]]&lt;br /&gt;
&lt;br /&gt;
 glite-transfer-channel-set -s https://cclcgftsprod01.in2p3.fr:8443/glite-data-transfer-fts/services/ChannelManagement -f 10 -T 1 GRIF-IN2P3&lt;br /&gt;
&lt;br /&gt;
=== Les tests de transferts ===&lt;br /&gt;
&lt;br /&gt;
* [[Source d&#039;information:]]&lt;br /&gt;
-Script de test des transferts FTS proposé par GridPP à l&#039;adresse : http://www.gridpp.ac.uk/wiki/Transfer_Test_Python_Script_HOWTO &amp;lt;br&amp;gt;&lt;br /&gt;
-Le wiki GriPP est une mine d&#039;informations : http://www.gridpp.ac.uk/wiki/Main_Page&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
* [[1er Test: Utilisation du script de GRIDPP: filetransfer.py]]&lt;br /&gt;
&lt;br /&gt;
CC-&amp;gt;DAPNIA&lt;br /&gt;
 set SourceURL=&amp;quot;srm://ccsrm.in2p3.fr:8443/&amp;quot;&lt;br /&gt;
 set DestURL=&amp;quot;srm://node12.datagrid.cea.fr:8443/dpm/datagrid.cea.fr/home/dteam/&amp;quot;&lt;br /&gt;
&lt;br /&gt;
liste des fichiers:&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00007&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00008&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00009&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00011&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00012&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00013&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00014&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00015&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00016&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00017&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00018&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00019&lt;br /&gt;
&lt;br /&gt;
DAPNIA -&amp;gt; CC&lt;br /&gt;
&lt;br /&gt;
 set SourceURL=&amp;quot;srm://node12.datagrid.cea.fr:8443/dpm/datagrid.cea.fr/home/dteam/dapnia/&amp;quot;&lt;br /&gt;
 set DestURL=&amp;quot;srm://ccsrm.in2p3.fr:8443/pnfs/in2p3.fr/data/dteam/disk/dapnia/&amp;quot;&lt;br /&gt;
&lt;br /&gt;
liste des fichiers (1 seul SE-DISK)&lt;br /&gt;
&lt;br /&gt;
 cleroy/ATLAS-file00007&lt;br /&gt;
 cleroy/ATLAS-file00008&lt;br /&gt;
 cleroy/ATLAS-file00009&lt;br /&gt;
 cleroy/ATLAS-file00011&lt;br /&gt;
 cleroy/ATLAS-file00012&lt;br /&gt;
 cleroy/ATLAS-file00013&lt;br /&gt;
 cleroy/ATLAS-file00014&lt;br /&gt;
 cleroy/ATLAS-file00015&lt;br /&gt;
 cleroy/ATLAS-file00016&lt;br /&gt;
 cleroy/ATLAS-file00017&lt;br /&gt;
 cleroy/ATLAS-file00018&lt;br /&gt;
 cleroy/ATLAS-file00019&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
en parrallele avec n=10 pour les 2 type de transfet, pour durer environ 20 minutes (1Gb/s).&lt;br /&gt;
FTS configuré avec (f6;T2). &lt;br /&gt;
&lt;br /&gt;
 ESSAI du nbre de  |&lt;br /&gt;
 (fichier;stream)  | Bande passante(Mb/s)  | &lt;br /&gt;
 ------------------+-----------------------+&lt;br /&gt;
 | (f8;T1)         | 242                   |&lt;br /&gt;
 | (f6;T1)         | 301                   |&lt;br /&gt;
 | (f3;T1)         | 302                   |&lt;br /&gt;
 | (f2;T1)         | 185                   |&lt;br /&gt;
 | (f6;T2)         | 312                   |&lt;br /&gt;
 | (f6;T6)         | 284                   |&lt;br /&gt;
 | (f6;T4)         | 280                   |&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Resultat 26/04/2007 :&lt;br /&gt;
&lt;br /&gt;
D-CC&lt;br /&gt;
 Transfer Bandwidth Report:&lt;br /&gt;
 110/120 transferred in 2668.16920614 seconds&lt;br /&gt;
 81081938300.0 bytes transferred.&lt;br /&gt;
 Bandwidth: 243.108834667Mb/s&lt;br /&gt;
&lt;br /&gt;
CC-D&lt;br /&gt;
 Transfer Bandwidth Report:&lt;br /&gt;
 120/120 transferred in 3033.88385892 seconds&lt;br /&gt;
 88453023600.0 bytes transferred.&lt;br /&gt;
 Bandwidth: 233.240368355Mb/s&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Débit réseaux pour le SE DISK du DAPNIA (derriere node12):&lt;br /&gt;
&lt;br /&gt;
http://lcg2.in2p3.fr/wiki/images/Node11_net_fts_26042007.gif&lt;br /&gt;
&lt;br /&gt;
Débit réseaux routeur datagrid.cea.fr:&lt;br /&gt;
&lt;br /&gt;
http://lcg2.in2p3.fr/wiki/images/Routeur_datagridceafr_26042007.png&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
* [[2eme test: Utilisation du script de GRIDPP (filetransfer.py) et globus_url_copy]]&lt;br /&gt;
&lt;br /&gt;
utilisation de:&lt;br /&gt;
* filetransfer.py entre DAPNIA &amp;lt;-&amp;gt; Lyon (SE &amp;lt;-&amp;gt; SE)&lt;br /&gt;
* globus_url_copy et lcg-cr entre DAPNIA &amp;lt;-&amp;gt; Orsay (UI &amp;lt;-&amp;gt; SE)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Le 02/05/2007: Meme occupation réseaux :300Mb/s&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== &#039;&#039;&#039;CONCLUSION PRELIMINIARE&#039;&#039;&#039; ===&lt;br /&gt;
&lt;br /&gt;
=&amp;gt; Ces tests avaient pour but d&#039;occuper le plus possible la bande passante de notre réseaux datagrid.cea.fr, pour s&#039;assurer que le routeur tenait bien la charge&lt;br /&gt;
&lt;br /&gt;
=&amp;gt; Nous n&#039;avons pas reussi à occuper toute la bande passante: tests à poursuivre avec plus de client/serveur =&amp;gt; Le comble de l&#039;informaticien: réussir à faire mieux que ses utilisateurs:&lt;br /&gt;
&lt;br /&gt;
One day, One atlas physicit, Many jobs:&lt;br /&gt;
&lt;br /&gt;
http://lcg2.in2p3.fr/wiki/images/Node11.datagrid.cea.fr.rrd_NUMKBREADAVG_d.gif&lt;br /&gt;
&lt;br /&gt;
Débit réseaux SE DISK, le 16/06/2006&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Test sur le réseaux datagrid.cea.fr: Transfert de fichiers &#039;&#039;&#039;-2eme PHASE (3 SE-DISK au DAPNIA et multi threading)-&#039;&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Transfert FTS: (CC-&amp;gt;DAPNIA) // (DAPNIA-&amp;gt;CC) avec plusieurs SE-DISK du DAPNIA (node11, node18, node20) ===&lt;br /&gt;
&lt;br /&gt;
=== Transfert: FTS (CC-&amp;gt;DAPNIA) // FTS (DAPNIA-&amp;gt;CC) ) // globus-url-copy (UI DAPNIA -&amp;gt; SE LAL) // globus-url-copy (SE LAL -&amp;gt; UI DAPNIA) ===&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Priorites locales Filtre TORQUE-&#039;&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
http://lcg2.in2p3.fr/wiki/images/Submit_filter.txt&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Configuration thumper&#039;&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
La DOc:&lt;br /&gt;
http://www.sun.com/products-n-solutions/hardware/docs/pdf/820-1151-10.pdf&lt;br /&gt;
&lt;br /&gt;
http://doc.fedora-fr.org/RAID_Logiciel:_Comment_Installer_et_G%C3%A9rer_un_System_Raid&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Formatage des disks: ==&lt;br /&gt;
&lt;br /&gt;
Il faut des partitions du type type Linux raid autodetect (type fd)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 for i in   &lt;br /&gt;
 /dev/sda /dev/sdaa /dev/sdab /dev/sdad /dev/sdae /dev/sdaf /dev/sdag /dev/sdah /dev/sdai /dev/sdaj /dev/sd    /dev/sdal /dev/sdam /dev/sdan /dev/sdao /dev/sdap /dev/sdaq /dev/sdar /dev/sdas /dev/sdat /dev/sdau /dev/sdav /dev/sdd /dev/sde /dev/sdf /dev/sdg /dev/sdh /dev/sdi /dev/sdj /dev/sdk /dev/sdl /dev/sdm /dev/sdn /dev/sdo &lt;br /&gt;
 /dev/sdp /dev/sdq /dev/sdr /dev/sds /dev/sdt /dev/sdu /dev/sdv /dev/sdw /dev/sdx /dev/sdz; do export  &lt;br /&gt;
 $i; /root/script_raid $i; done&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node23 ~]# more /root/script_raid&lt;br /&gt;
 sfdisk -f $1 &amp;lt;&amp;lt; EOF&lt;br /&gt;
 0 60801 fd&lt;br /&gt;
 ;&lt;br /&gt;
 ;&lt;br /&gt;
 ;&lt;br /&gt;
 EOF&lt;br /&gt;
&lt;br /&gt;
Pour verifier:&lt;br /&gt;
&lt;br /&gt;
 # for i  &lt;br /&gt;
    &lt;br /&gt;
 in  /dev/sda /dev/sdaa /dev/sdab /dev/sdad /dev/sdae /dev/sdaf /dev/sdag /dev/sdah /dev/sdai /dev/sdaj &lt;br /&gt;
 /dev/sdak /dev/sdal /dev/sdam /dev/sdan /dev/sdao /dev/sdap /dev/sdaq /dev/sdar /dev/sdas /dev/sdat /dev/sdau /dev/sdav /dev/sdd /dev/sde /dev/sdf /dev/sdg /dev/sdh /dev/sdi /dev/sdj /dev/sdk /dev/sdl /dev/sdm /dev/sdn  /dev/sdo /dev/sdp /dev/sdq /dev/sdr /dev/sds /dev/sdt /dev/sdu /dev/sdv /dev/sdw /dev/sdx /dev/sdz; do  &lt;br /&gt;
 sfdisk --list $i ; done | more&lt;br /&gt;
&lt;br /&gt;
== Creation des Raids logiciel: ==&lt;br /&gt;
&lt;br /&gt;
Conseil de SUN:&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&amp;quot;Diff Raid 5 config does not change the availability that much, Raid 5 is one way parity, if you lose two disks in the same raid group, you lose the  data. The difference is probability of losing two disks is higher when you have higher number of disks in a raid group. We usually suggest using one disk out of each controller for parity, (six controller total), 5+1 configuration, 8 raid groups. Overhead is 1/6 about 16% capacity loss. add the OS disk, 20TB.&amp;quot;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 mdadm --create /dev/md1 --level=5 --raid- &lt;br /&gt;
 devices=6 /dev/sdab1 /dev/sdt1 /dev/sdar1 /dev/sdaj1 /dev/sdl1 /dev/sdd1&lt;br /&gt;
 mdadm --create /dev/md2 --level=5 --raid- &lt;br /&gt;
 devices=6 /dev/sdaf1 /dev/sdx1 /dev/sdav1 /dev/sdan1 /dev/sdp1 /dev/sdh&lt;br /&gt;
 mdadm --create /dev/md3 --level=5 --raid- &lt;br /&gt;
 devices=6 /dev/sdaa1 /dev/sds1 /dev/sdaq1 /dev/sdai1 /dev/sdk1 /dev/sdc1&lt;br /&gt;
 mdadm --create /dev/md4 --level=5 --raid- &lt;br /&gt;
 devices=6 /dev/sdae1 /dev/sdw1 /dev/sdau1 /dev/sdam1 /dev/sdo1 /dev/sdg1&lt;br /&gt;
 mdadm --create /dev/md5 --level=5 --raid- &lt;br /&gt;
 devices=6 /dev/sdz1 /dev/sdr1 /dev/sdap1 /dev/sdah1 /dev/sdj1 /dev/sdb1&lt;br /&gt;
 mdadm --create /dev/md6 --level=5 --raid- &lt;br /&gt;
 devices=6 /dev/sdad1 /dev/sdv1 /dev/sdat1 /dev/sdal1 /dev/sdn1 /dev/sdf1&lt;br /&gt;
 mdadm --create /dev/md7 --level=5 --raid-devices=5 /dev/sdq1 /dev/sdao1 /dev/sdag1 /dev/sdi1 /dev/sda1&lt;br /&gt;
 mdadm --create /dev/md8 --level=5 --raid-devices=5 /dev/sdu1 /dev/sdas1 /dev/sdak1 /dev/sdm1 /dev/sde1&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Sinon il est possible d&#039;avoir un disk de spare pour tous les raids, cf doc :&#039;&#039;&lt;br /&gt;
[http://images.globalknowledge.com/wwwimages/whitepaperpdf/WP_RCHE_10TipsTricks1.pdf] &lt;br /&gt;
&#039;&#039;mais je n&#039;ai pas eu le temps de tester.&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Pour verifier:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 cat /proc/mdstat&lt;br /&gt;
 mdadm --query /dev/md1&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Pour supprimer:&lt;br /&gt;
&lt;br /&gt;
 mdadm /dev/md1 stop&lt;br /&gt;
 mdadm /dev/md1 --remove&lt;br /&gt;
 mdadm --zero-superblock /dev/hdxx1&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 mkfs -t ext3 /dev/md1&lt;br /&gt;
 mount /dev/md1 /scratch&lt;br /&gt;
&lt;br /&gt;
== Pour les drivers: ==&lt;br /&gt;
&lt;br /&gt;
telecharger les outils et driver linux:&lt;br /&gt;
&lt;br /&gt;
http://www.sun.com/servers/x64/x4500/downloads.jsp&lt;br /&gt;
&lt;br /&gt;
telecharger: kernel-largesmp-devel-2.6.9-42.0.3.EL.x86_64&lt;br /&gt;
&lt;br /&gt;
Par contre il crée &lt;br /&gt;
&#039;&#039;&#039;/usr/src/kernels/2.6.9-42.0.3.EL-largesmp-x86_64&#039;&#039;&#039;  &lt;br /&gt;
au lieu de &#039;&#039;&#039;/usr/src/kernels/2.6.9-42.0.3.ELlargesmp-x86_64&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
faire donc un:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 cp -r /usr/src/kernels/2.6.9-42.0.3.EL-largesmp-x86_64 /usr/src/kernels/2.6.9-42.0.3.ELlargesmp-x86_64&lt;br /&gt;
&lt;br /&gt;
Ensuite:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 rpmbuild --rebuild   mvSatalinux-3.6.3_2-2.6.9_42.ELsmp_1.src.rpm&lt;br /&gt;
 rpm -e (de tous les rpm: &amp;quot;rpm -qa | grep -i mvsata&amp;quot;)&lt;br /&gt;
 rpm -ivh /usr/src/redhat/RPMS/x86_64/mvSatalinux-3.6.3_2-2.6.9_42.0.3.ELlargesmp_1.x86_64.rpm&lt;br /&gt;
 rpm -ivh /usr/src/redhat/RPMS/x86_64/mvSatalinux-debuginfo-3.6.3_2-2.6.9_42.0.3.ELlargesmp_1.x86_64.rpm&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
verifier:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 # modinfo mv_sata&lt;br /&gt;
 filename:       /lib/modules/2.6.9-42.0.3.ELlargesmp/kernel/drivers/scsi/mv_sata.ko&lt;br /&gt;
 description:    Marvell Serial ATA PCI-X Adapter version: 3.6.3_2&lt;br /&gt;
 license:        BSD&lt;br /&gt;
 alias:          pci:v000011ABd00007042sv*sd*bc*sc*i*&lt;br /&gt;
 alias:          pci:v000011ABd00006042sv*sd*bc*sc*i*&lt;br /&gt;
 alias:          pci:v000011ABd00006041sv*sd*bc*sc*i*&lt;br /&gt;
 alias:          pci:v000011ABd00006081sv*sd*bc*sc*i*&lt;br /&gt;
 alias:          pci:v000011ABd00005041sv*sd*bc*sc*i*&lt;br /&gt;
 alias:          pci:v000011ABd00005040sv*sd*bc*sc*i*&lt;br /&gt;
 alias:          pci:v000011ABd00005081sv*sd*bc*sc*i*&lt;br /&gt;
 alias:          pci:v000011ABd00005080sv*sd*bc*sc*i*&lt;br /&gt;
 depends:        scsi_mod&lt;br /&gt;
 vermagic:       2.6.9-42.0.3.ELlargesmp SMP gcc-3.4&lt;br /&gt;
 }}}&lt;br /&gt;
&lt;br /&gt;
== Test Performance Lecture/ecriture ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 # more /proc/mdstat&lt;br /&gt;
 Personalities : [raid5]&lt;br /&gt;
 md7 : active raid5 sdao1[1] sdag1[2] sdq1[0] sdi1[3]&lt;br /&gt;
      1953535744 blocks level 5, 64k chunk, algorithm 2 [5/4] [UUUU_]&lt;br /&gt;
 md5 : active raid5 sdap1[2] sdah1[3] sdz1[0] sdr1[1] sdj1[4] sdb1[5]&lt;br /&gt;
      2441919680 blocks level 5, 64k chunk, algorithm 2 [6/6] [UUUUUU]&lt;br /&gt;
 md3 : active raid5 sdaq1[2] sdai1[3] sdaa1[0] sds1[1] sdk1[4]&lt;br /&gt;
      2441919680 blocks level 5, 64k chunk, algorithm 2 [6/5] [UUUUU_]&lt;br /&gt;
 md8 : active raid5 sdas1[1] sdak1[2] sdu1[0] sdm1[3] sde1[4]&lt;br /&gt;
      1953535744 blocks level 5, 64k chunk, algorithm 2 [5/5] [UUUUU]&lt;br /&gt;
 md6 : active raid5 sdat1[2] sdal1[3] sdad1[0] sdv1[1] sdn1[4] sdf1[5]&lt;br /&gt;
      2441919680 blocks level 5, 64k chunk, algorithm 2 [6/6] [UUUUUU]&lt;br /&gt;
 md4 : active raid5 sdau1[2] sdam1[3] sdae1[0] sdw1[1] sdo1[4] sdg1[5]&lt;br /&gt;
      2441919680 blocks level 5, 64k chunk, algorithm 2 [6/6] [UUUUUU]&lt;br /&gt;
 md2 : active raid5 sdav1[2] sdan1[3] sdaf1[0] sdx1[1] sdp1[4]&lt;br /&gt;
      2441919680 blocks level 5, 64k chunk, algorithm 2 [6/5] [UUUUU_]&lt;br /&gt;
 md1 : active raid5 sdar1[2] sdaj1[3] sdab1[0] sdt1[1] sdl1[4] sdd1[5]&lt;br /&gt;
      2441919680 blocks level 5, 64k chunk, algorithm 2 [6/6] [UUUUUU]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 en MB/s&lt;br /&gt;
 Volumétrie: 19TB utile&lt;br /&gt;
 |	   md1    md2     md3	  md4    md5   md6      md7    md8    MOY     TOT (Mb/s)   Mb/s/TB	&lt;br /&gt;
 Write//    71,22  69,31  68,13  71,26  70,14   69,56   62,56  65,89   68,50     4384,56     230,76&lt;br /&gt;
 write seq 111,01 103,42  102,24 109,77	112,58	107,02	84,61  89,6   102,53125			&lt;br /&gt;
 read //   99,62   98,75   98,22  99,78	100,93	100,01	85,7   86,69   96,2125	 6157,6	     324,08&lt;br /&gt;
 read seq  275,4  254,28  250,69 267,62	274,16	280,52	188,37 197,58 248,5775&lt;br /&gt;
&lt;br /&gt;
== Configuration Reseaux avec 2 intefaces bond ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node23 ~]# more /etc/modprobe.conf&lt;br /&gt;
 alias eth0 e1000&lt;br /&gt;
 alias eth1 e1000&lt;br /&gt;
 alias eth2 e1000&lt;br /&gt;
 alias eth3 e1000&lt;br /&gt;
 alias eth4 e1000&lt;br /&gt;
 alias eth5 e1000&lt;br /&gt;
 alias eth6 e1000&lt;br /&gt;
 alias eth7 e1000&lt;br /&gt;
 install ipw3945 /sbin/modprobe --ignore-install ipw3945 ; sleep 0.5 ; /sbin/ipw3&lt;br /&gt;
 945d --quiet&lt;br /&gt;
 remove ipw3945 /sbin/ipw3945d --kill ; /sbin/modprobe -r --ignore-remove ipw3945&lt;br /&gt;
 alias usb-controller ehci-hcd&lt;br /&gt;
 alias usb-controller1 ohci-hcd&lt;br /&gt;
 ####BONDING&lt;br /&gt;
 alias bond0 bonding&lt;br /&gt;
 alias bond1 bonding&lt;br /&gt;
 #options bond0 -o bond0 mode=0 miimon=100&lt;br /&gt;
 options bond0 mode=0 miimon=100 max_bonds=2&lt;br /&gt;
 options bond1 -o bond1 mode=0 miimon=100&lt;br /&gt;
 ####END BONDING&lt;br /&gt;
 #Added mv_sata binary driver rpm installation&lt;br /&gt;
 alias scsi_hostadapter mv_sata&lt;br /&gt;
 alias sata_mv off&lt;br /&gt;
 [root@node23 ~]#&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node23 ~]# more /etc/sysconfig/network-scripts/ifcfg-*&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-bond0&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=bond0&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=static&lt;br /&gt;
 IPADDR=192.54.208.82&lt;br /&gt;
 NETMASK=255.255.255.0&lt;br /&gt;
 BROADCAST=192.54.208.255&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-bond1&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=bond1&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=static&lt;br /&gt;
 IPADDR=192.54.208.101&lt;br /&gt;
 NETMASK=255.255.255.0&lt;br /&gt;
 BROADCAST=192.54.208.255&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-eth0&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=eth0&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=none&lt;br /&gt;
 MASTER=bond0&lt;br /&gt;
 SLAVE=yes&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-eth1&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=eth1&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=none&lt;br /&gt;
 MASTER=bond0&lt;br /&gt;
 SLAVE=yes&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-eth2&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=eth2&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=none&lt;br /&gt;
 MASTER=bond0&lt;br /&gt;
 SLAVE=yes&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-eth3&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=eth3&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=none&lt;br /&gt;
 MASTER=bond0&lt;br /&gt;
 SLAVE=yes&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-eth4&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=eth4&lt;br /&gt;
 TYPE=Ethernet &lt;br /&gt;
 BOOTPROTO=none&lt;br /&gt;
 MASTER=bond1&lt;br /&gt;
 SLAVE=yes&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-eth5&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=eth5&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=none&lt;br /&gt;
 MASTER=bond1&lt;br /&gt;
 SLAVE=yes&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-eth6&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=eth6&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=none&lt;br /&gt;
 MASTER=bond1&lt;br /&gt;
 SLAVE=yes&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-eth7&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=eth7&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=none&lt;br /&gt;
 MASTER=bond1&lt;br /&gt;
 SLAVE=yes&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 # ifconfig&lt;br /&gt;
 bond0     Link encap:Ethernet  HWaddr 00:14:4F:20:FC:B0&lt;br /&gt;
          inet addr:192.54.208.82  Bcast:192.54.208.255  Mask:255.255.255.0&lt;br /&gt;
          inet6 addr: fe80::200:ff:fe00:0/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING MASTER MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:96129841 errors:2 dropped:0 overruns:0 frame:1&lt;br /&gt;
          TX packets:86702743 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:0&lt;br /&gt;
          RX bytes:144510750072 (134.5 GiB)  TX bytes:7460167641 (6.9 GiB)&lt;br /&gt;
 bond1     Link encap:Ethernet  HWaddr 00:15:17:2A:09:A6&lt;br /&gt;
          inet addr:192.54.208.101  Bcast:192.54.208.255  Mask:255.255.255.0&lt;br /&gt;
          inet6 addr: fe80::200:ff:fe00:0/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING MASTER MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:934011 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:33 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:0&lt;br /&gt;
          RX bytes:62926730 (60.0 MiB)  TX bytes:2572 (2.5 KiB)&lt;br /&gt;
 eth0      Link encap:Ethernet  HWaddr 00:14:4F:20:FC:B0&lt;br /&gt;
          inet6 addr: fe80::214:4fff:fe20:fcb0/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING SLAVE MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:73871160 errors:2 dropped:0 overruns:0 frame:1&lt;br /&gt;
          TX packets:21675694 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:1000&lt;br /&gt;
          RX bytes:110757099435 (103.1 GiB)  TX bytes:1865279045 (1.7 GiB)&lt;br /&gt;
          Base address:0xac00 Memory:fd2e0000-fd300000&lt;br /&gt;
 eth1      Link encap:Ethernet  HWaddr 00:14:4F:20:FC:B0&lt;br /&gt;
          inet6 addr: fe80::214:4fff:fe20:fcb0/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING SLAVE MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:22109357 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:21675683 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:1000&lt;br /&gt;
          RX bytes:33554660288 (31.2 GiB)  TX bytes:1864208904 (1.7 GiB)&lt;br /&gt;
          Base address:0xa800 Memory:fd2c0000-fd2e0000&lt;br /&gt;
 eth2      Link encap:Ethernet  HWaddr 00:14:4F:20:FC:B0&lt;br /&gt;
          inet6 addr: fe80::214:4fff:fe20:fcb0/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING SLAVE MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:55195 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:21675683 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:1000&lt;br /&gt;
          RX bytes:68939873 (65.7 MiB)  TX bytes:1865275229 (1.7 GiB)&lt;br /&gt;
          Base address:0xbc00 Memory:fd3e0000-fd400000&lt;br /&gt;
 eth3      Link encap:Ethernet  HWaddr 00:14:4F:20:FC:B0&lt;br /&gt;
          inet6 addr: fe80::214:4fff:fe20:fcb0/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING SLAVE MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:94129 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:21675683 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:1000&lt;br /&gt;
          RX bytes:130050476 (124.0 MiB)  TX bytes:1865404463 (1.7 GiB)&lt;br /&gt;
          Base address:0xb800 Memory:fd3c0000-fd3e0000&lt;br /&gt;
 eth4      Link encap:Ethernet  HWaddr 00:15:17:2A:09:A6&lt;br /&gt;
          inet6 addr: fe80::215:17ff:fe2a:9a6/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING SLAVE MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:0 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:10 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:1000&lt;br /&gt;
          RX bytes:0 (0.0 b)  TX bytes:758 (758.0 b)&lt;br /&gt;
          Base address:0xec00 Memory:fe4e0000-fe500000&lt;br /&gt;
 eth5      Link encap:Ethernet  HWaddr 00:15:17:2A:09:A6&lt;br /&gt;
          inet6 addr: fe80::215:17ff:fe2a:9a6/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING SLAVE MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:5 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:9 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:1000&lt;br /&gt;
          RX bytes:390 (390.0 b)  TX bytes:714 (714.0 b)&lt;br /&gt;
          Base address:0xe800 Memory:fe4c0000-fe4e0000&lt;br /&gt;
 eth6      Link encap:Ethernet  HWaddr 00:15:17:2A:09:A6&lt;br /&gt;
          inet6 addr: fe80::215:17ff:fe2a:9a6/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING SLAVE MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:1 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:8 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:1000&lt;br /&gt;
          RX bytes:66 (66.0 b)  TX bytes:628 (628.0 b)&lt;br /&gt;
          Base address:0xfc00 Memory:fe7e0000-fe800000&lt;br /&gt;
 eth7      Link encap:Ethernet  HWaddr 00:15:17:2A:09:A6&lt;br /&gt;
          inet6 addr: fe80::215:17ff:fe2a:9a6/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING SLAVE MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:934005 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:6 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:1000&lt;br /&gt;
          RX bytes:62926274 (60.0 MiB)  TX bytes:472 (472.0 b)&lt;br /&gt;
          Base address:0xf800 Memory:fe7c0000-fe7e0000&lt;br /&gt;
 lo        Link encap:Local Loopback&lt;br /&gt;
          inet addr:127.0.0.1  Mask:255.0.0.0&lt;br /&gt;
          inet6 addr: ::1/128 Scope:Host&lt;br /&gt;
          UP LOOPBACK RUNNING  MTU:16436  Metric:1&lt;br /&gt;
          RX packets:294 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:294 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:0&lt;br /&gt;
          RX bytes:46053 (44.9 KiB)  TX bytes:46053 (44.9 KiB)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Exemple de connection avec iperf (4 client pour chacune des interfaces)&lt;br /&gt;
&lt;br /&gt;
 tcp        0      0 *:20008                     *:*                         LISTEN&lt;br /&gt;
 tcp        0      0 *:20009                     *:*                         LISTEN&lt;br /&gt;
 tcp        0      0 node23.datagrid.cea.f:20008 wn048.datagrid.cea.fr:51269 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node27.datagrid.cea.f:20009 node02.datagrid.cea.f:39957 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node23.datagrid.cea.f:20008 wn004.datagrid.cea.fr:35417 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node23.datagrid.cea.f:20008 node01.datagrid.cea.f:38544 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node27.datagrid.cea.f:20009 wn049.datagrid.cea.fr:34206 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node23.datagrid.cea.f:20008 wn005.datagrid.cea.fr:35380 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node27.datagrid.cea.f:20009 wn050.datagrid.cea.fr:34567 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node27.datagrid.cea.f:20009 wn006.datagrid.cea.fr:42137 ESTABLISHED&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Exemple de configuration pour le SE DPM&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node24 root]# dpm-qryconf&lt;br /&gt;
 POOL CMS_SC DEFSIZE 200.00M GC_START_THRESH 0 GC_STOP_THRESH 0 DEF_LIFETIME 7.0d DEFPINTIME 2.0h  &lt;br /&gt;
 MAX_LIFETIME 1.0m MAXPINTIME 12.0h FSS_POLICY maxfreespace GC_POLICY lru RS_POLICY fifo GIDS 0 S_TYPE -  &lt;br /&gt;
 MIG_POLICY none RET_POLICY R&lt;br /&gt;
                              CAPACITY 23.51T FREE 22.27T ( 94.7%)&lt;br /&gt;
  node25.datagrid.cea.fr /pool_node25 CAPACITY 4.48T FREE 4.39T ( 98.1%)&lt;br /&gt;
  node26.datagrid.cea.fr /pool_node26 CAPACITY 233.71G FREE 216.23G ( 92.5%)&lt;br /&gt;
  node26.datagrid.cea.fr /pool_node26_2 CAPACITY 1.79T FREE 1.69T ( 94.5%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam1 CAPACITY 2.24T FREE 2.09T ( 93.2%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam2 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam3 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam7 CAPACITY 1.79T FREE 1.68T ( 93.8%)&lt;br /&gt;
  node27.datagrid.cea.fr /dteam4 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node27.datagrid.cea.fr /dteam5 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node27.datagrid.cea.fr /dteam6 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node27.datagrid.cea.fr /dteam8 CAPACITY 1.79T FREE 1.68T ( 93.8%)&lt;br /&gt;
&lt;br /&gt;
== Configuration Reseaux avec 1 intefaces bond ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 # more /etc/modprobe.conf&lt;br /&gt;
 alias eth0 e1000&lt;br /&gt;
 alias eth1 e1000&lt;br /&gt;
 alias eth2 e1000&lt;br /&gt;
 alias eth3 e1000&lt;br /&gt;
 alias eth4 e1000&lt;br /&gt;
 alias eth5 e1000&lt;br /&gt;
 alias eth6 e1000&lt;br /&gt;
 alias eth7 e1000&lt;br /&gt;
 options e1000 InterruptThrottleRate=3000&lt;br /&gt;
 install ipw3945 /sbin/modprobe --ignore-install ipw3945 ; sleep 0.5 ; /sbin/ipw3&lt;br /&gt;
 945d --quiet&lt;br /&gt;
 remove ipw3945 /sbin/ipw3945d --kill ; /sbin/modprobe -r --ignore-remove ipw3945&lt;br /&gt;
 alias usb-controller ehci-hcd&lt;br /&gt;
 alias usb-controller1 ohci-hcd&lt;br /&gt;
 ####BONDING&lt;br /&gt;
 alias bond0 bonding&lt;br /&gt;
 options bond0 mode=0 miimon=100&lt;br /&gt;
 ####END BONDING&lt;br /&gt;
 #Added mv_sata binary driver rpm installation&lt;br /&gt;
 alias scsi_hostadapter mv_sata&lt;br /&gt;
 alias sata_mv off&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
recharger les modules, redemarrer le reseaux, et verifier que tout est OK:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 # more /proc/net/bonding/bond0&lt;br /&gt;
 Ethernet Channel Bonding Driver: v2.6.3 (June 8, 2005)&lt;br /&gt;
 Bonding Mode: load balancing (round-robin)&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 MII Polling Interval (ms): 100&lt;br /&gt;
 Up Delay (ms): 0&lt;br /&gt;
 Down Delay (ms): 0&lt;br /&gt;
 Slave Interface: eth0&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 Link Failure Count: 0&lt;br /&gt;
 Permanent HW addr: 00:14:4f:20:fc:b0&lt;br /&gt;
 Slave Interface: eth1&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 Link Failure Count: 0&lt;br /&gt;
 Permanent HW addr: 00:14:4f:20:fc:b1&lt;br /&gt;
 Slave Interface: eth2&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 Link Failure Count: 0&lt;br /&gt;
 Permanent HW addr: 00:14:4f:20:fc:b2&lt;br /&gt;
 Slave Interface: eth3&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 Link Failure Count: 0&lt;br /&gt;
 Permanent HW addr: 00:14:4f:20:fc:b3 &lt;br /&gt;
 Slave Interface: eth4&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 Link Failure Count: 0&lt;br /&gt;
 Permanent HW addr: 00:15:17:2a:09:a6&lt;br /&gt;
 Slave Interface: eth5&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 Link Failure Count: 0&lt;br /&gt;
 Permanent HW addr: 00:15:17:2a:09:a7&lt;br /&gt;
 Slave Interface: eth6&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 Link Failure Count: 0&lt;br /&gt;
 Permanent HW addr: 00:15:17:2a:07:8c&lt;br /&gt;
 Slave Interface: eth7&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 Link Failure Count: 0&lt;br /&gt;
 Permanent HW addr: 00:15:17:2a:07:8d&lt;br /&gt;
&lt;br /&gt;
== Probleme sur les cartes reseaux supplémentaires: ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel: e1000: eth4: e1000_clean_tx_irq: Detected Tx Unit Hang&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   Tx Queue             &amp;lt;0&amp;gt;&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   TDH                  &amp;lt;2&amp;gt;&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   TDT                  &amp;lt;2&amp;gt;&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   next_to_use          &amp;lt;2&amp;gt;&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   next_to_clean        &amp;lt;0&amp;gt;&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel: buffer_info[next_to_clean]&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   time_stamp           &amp;lt;1144b73ba&amp;gt;&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   next_to_watch        &amp;lt;0&amp;gt;&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   jiffies              &amp;lt;1144b7a09&amp;gt;&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   next_to_watch.status &amp;lt;0&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel: e1000: eth5: e1000_clean_tx_irq: Detected Tx Unit Hang&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   Tx Queue             &amp;lt;0&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   TDH                  &amp;lt;1&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   TDT                  &amp;lt;1&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   next_to_use          &amp;lt;1&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   next_to_clean        &amp;lt;0&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel: buffer_info[next_to_clean]&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   time_stamp           &amp;lt;1144b77fa&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   next_to_watch        &amp;lt;0&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   jiffies              &amp;lt;1144b817b&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   next_to_watch.status &amp;lt;0&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
on n&#039;avait pas le bon driver e1000, voir paragraphe suivant pour loader le bon driver&lt;br /&gt;
&lt;br /&gt;
== driver carte réseaux ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Pour voir le driver adapté aux cartes:&lt;br /&gt;
&lt;br /&gt;
[http://support.intel.com/support/network/sb/cs-012904.htm]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node23 ~]# lspci | tail -4&lt;br /&gt;
 0d:01.0 Ethernet controller: Intel Corporation 82546GB Gigabit Ethernet Controller (rev 03)&lt;br /&gt;
 0d:01.1 Ethernet controller: Intel Corporation 82546GB Gigabit Ethernet Controller (rev 03)&lt;br /&gt;
 0e:01.0 Ethernet controller: Intel Corporation 82546GB Gigabit Ethernet Controller (rev 03)&lt;br /&gt;
 0e:01.1 Ethernet controller: Intel Corporation 82546GB Gigabit Ethernet Controller (rev 03)&lt;br /&gt;
 [root@node23 ~]#&lt;br /&gt;
&lt;br /&gt;
telecharger le bon driver puis l&#039;installer:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 # rpmbuild -tb e1000-7.6.9.tar.gz&lt;br /&gt;
 # rpm -ivh /usr/src/redhat/RPMS/x86_64/e1000-7.6.9-1.x86_64.rpm&lt;br /&gt;
 Preparing...                ########################################### [100%]&lt;br /&gt;
   1:e1000                  ########################################### [100%]&lt;br /&gt;
 original pci.ids saved in /usr/local/share/e1000&lt;br /&gt;
 original pcitable saved in /usr/local/share/e1000&lt;br /&gt;
 [root@node23 BONDING]#&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Dans le README, il preconnise de loader le module avec l&#039;option &#039;&#039;interruptThrottleRate=3000:&#039;&#039; &lt;br /&gt;
&lt;br /&gt;
tout recharger correctement:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 ifconfig bond0 down; ifconfig bond1 down; rmmod e1000; modprobe e1000  &lt;br /&gt;
 InterruptThrottleRate=3000,3000,3000,3000,3000,3000,3000,3000 ; rmmod bond0 ; rmmod bond1; modprobe bonding &lt;br /&gt;
 -o bond0 mode=0 miimon=100; modprobe bonding -o bond1 -o bond1 mode=0 miimon=100;  &lt;br /&gt;
 /etc/init.d/network restart&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
et modifier le fichier modprobe:&lt;br /&gt;
&lt;br /&gt;
 # more /etc/modprobe.conf&lt;br /&gt;
 alias eth0 e1000&lt;br /&gt;
 alias eth1 e1000&lt;br /&gt;
 alias eth2 e1000&lt;br /&gt;
 alias eth3 e1000&lt;br /&gt;
 alias eth4 e1000&lt;br /&gt;
 alias eth5 e1000&lt;br /&gt;
 alias eth6 e1000&lt;br /&gt;
 alias eth7 e1000&lt;br /&gt;
 options e1000 InterruptThrottleRate=3000&lt;br /&gt;
 install ipw3945 /sbin/modprobe --ignore-install ipw3945 ; sleep 0.5 ; /sbin/ipw3945d --quiet&lt;br /&gt;
 remove ipw3945 /sbin/ipw3945d --kill ; /sbin/modprobe -r --ignore-remove ipw3945&lt;br /&gt;
 alias usb-controller ehci-hcd&lt;br /&gt;
 alias usb-controller1 ohci-hcd&lt;br /&gt;
 ####BONDING&lt;br /&gt;
 alias bond0 bonding&lt;br /&gt;
 alias bond1 bonding&lt;br /&gt;
 options bond0 mode=0 miimon=100 max_bonds=2&lt;br /&gt;
 options bond1 -o bond1 mode=0 miimon=100&lt;br /&gt;
 ####END BONDING&lt;br /&gt;
 #Added mv_sata binary driver rpm installation&lt;br /&gt;
 alias scsi_hostadapter mv_sata&lt;br /&gt;
 alias sata_mv off&lt;br /&gt;
&lt;br /&gt;
== Test iperf ==&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;1) 1 interface bond0 (eth0, eth1, eth2, eth3):&#039;&#039;&#039;  ~ 2,7 Gb/s&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [  4] 10.0-20.0 sec    557 MBytes    467 Mbits/sec&lt;br /&gt;
 [  5] 10.0-20.0 sec  1.10 GBytes    941 Mbits/sec&lt;br /&gt;
 [  6] 10.0-20.0 sec    976 MBytes    819 Mbits/sec&lt;br /&gt;
 [  7] 10.0-20.0 sec    567 MBytes    476 Mbits/sec&lt;br /&gt;
 [  4] 20.0-30.0 sec    564 MBytes    473 Mbits/sec&lt;br /&gt;
 [  5] 20.0-30.0 sec  1.10 GBytes    941 Mbits/sec&lt;br /&gt;
 [  6] 20.0-30.0 sec    969 MBytes    813 Mbits/sec&lt;br /&gt;
 [  7] 20.0-30.0 sec    558 MBytes    468 Mbits/sec&lt;br /&gt;
 [  4] 30.0-40.0 sec    561 MBytes    470 Mbits/sec&lt;br /&gt;
 [  5] 30.0-40.0 sec  1.10 GBytes    941 Mbits/sec&lt;br /&gt;
 [  6] 30.0-40.0 sec    986 MBytes    827 Mbits/sec&lt;br /&gt;
 [  7] 30.0-40.0 sec    550 MBytes    461 Mbits/sec&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;2) 2 interfaces : bond0 (eth0, eth1) et bond1 (eth2,eth3):&#039;&#039;&#039;  ~900 Mb/s !!&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 netstat -a | grep 200&lt;br /&gt;
 tcp        0      0 *:20008                     *:*                         LISTEN&lt;br /&gt;
 tcp        0      0 *:20010                     *:*                         LISTEN&lt;br /&gt;
 tcp        0      0 node27.datagrid.cea.f:20010 wn049.datagrid.cea.fr:41057 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node27.datagrid.cea.f:20010 wn005.datagrid.cea.fr:44065 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node23.datagrid.cea.f:20008 node01.datagrid.cea.f:34342 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node23.datagrid.cea.f:20008 wn048.datagrid.cea.fr:34032 ESTABLISHED&lt;br /&gt;
&lt;br /&gt;
sur node 23: &lt;br /&gt;
 [  4] 20.0-25.0 sec    146 MBytes    244 Mbits/sec&lt;br /&gt;
 [  5] 20.0-25.0 sec    149 MBytes    251 Mbits/sec&lt;br /&gt;
 [  4] 25.0-30.0 sec    143 MBytes    240 Mbits/sec&lt;br /&gt;
 [  5] 25.0-30.0 sec    160 MBytes    268 Mbits/sec&lt;br /&gt;
 [  4] 30.0-35.0 sec    117 MBytes    196 Mbits/sec&lt;br /&gt;
 [  5] 30.0-35.0 sec    149 MBytes    250 Mbits/sec&lt;br /&gt;
sur node27:&lt;br /&gt;
 [  4] 20.0-25.0 sec    101 MBytes    170 Mbits/sec&lt;br /&gt;
 [  5] 20.0-25.0 sec    164 MBytes    275 Mbits/sec&lt;br /&gt;
 [  4] 25.0-30.0 sec    108 MBytes    181 Mbits/sec&lt;br /&gt;
 [  5] 25.0-30.0 sec    180 MBytes    303 Mbits/sec&lt;br /&gt;
 [  4] 30.0-35.0 sec    102 MBytes    172 Mbits/sec&lt;br /&gt;
 [  5] 30.0-35.0 sec    162 MBytes    272 Mbits/sec&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;3)interfaces : bond0 (eth0, eth1, eth2,eth3) et bond1 (eth4, eth5, eth6,eth7):&#039;&#039;&#039;  ~3,8Gb/s &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
sur node27:&lt;br /&gt;
 [  4] 20.0-30.0 sec    337 MBytes    283 Mbits/sec&lt;br /&gt;
 [  5] 20.0-30.0 sec    393 MBytes    329 Mbits/sec&lt;br /&gt;
 [  6] 20.0-30.0 sec    425 MBytes    357 Mbits/sec&lt;br /&gt;
 [  7] 20.0-30.0 sec    758 MBytes    636 Mbits/sec&lt;br /&gt;
sur node23:&lt;br /&gt;
 [  4] 20.0-30.0 sec    727 MBytes    610 Mbits/sec&lt;br /&gt;
 [  5] 20.0-30.0 sec  1.10 GBytes    941 Mbits/sec&lt;br /&gt;
 [  6] 20.0-30.0 sec    360 MBytes    302 Mbits/sec&lt;br /&gt;
 [  7] 20.0-30.0 sec    359 MBytes    301 Mbits/sec&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;4) 1 interface bond0 (eth0, eth1, eth2, eth3, eth4, eth5, eth6, eth7):&#039;&#039;&#039; ~5Gb/s&lt;br /&gt;
&lt;br /&gt;
 http://lcg.in2p3.fr/wiki/images/Node23_datagrid_cea_fr_rrd_NUMKBREADAVG_d.gif&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [  4] 10.0-20.0 sec    841 MBytes    705 Mbits/sec&lt;br /&gt;
 [  5] 10.0-20.0 sec  1001 MBytes    840 Mbits/sec&lt;br /&gt;
 [  6] 10.0-20.0 sec    671 MBytes    563 Mbits/sec&lt;br /&gt;
 [  7] 10.0-20.0 sec    581 MBytes    487 Mbits/sec&lt;br /&gt;
 [  8] 10.0-20.0 sec    431 MBytes    362 Mbits/sec&lt;br /&gt;
 [  9] 10.0-20.0 sec    535 MBytes    449 Mbits/sec&lt;br /&gt;
 [ 10] 10.0-20.0 sec    986 MBytes    827 Mbits/sec&lt;br /&gt;
 [ 11] 10.0-20.0 sec    878 MBytes    736 Mbits/sec&lt;br /&gt;
 [  4] 20.0-30.0 sec    903 MBytes    758 Mbits/sec&lt;br /&gt;
 [  5] 20.0-30.0 sec  1.04 GBytes    894 Mbits/sec&lt;br /&gt;
 [  6] 20.0-30.0 sec    263 MBytes    221 Mbits/sec&lt;br /&gt;
 [  7] 20.0-30.0 sec    169 MBytes    142 Mbits/sec&lt;br /&gt;
 [  8] 20.0-30.0 sec    731 MBytes    614 Mbits/sec&lt;br /&gt;
 [  9] 20.0-30.0 sec    916 MBytes    769 Mbits/sec&lt;br /&gt;
 [ 10] 20.0-30.0 sec    922 MBytes    774 Mbits/sec&lt;br /&gt;
 [ 11] 20.0-30.0 sec    395 MBytes    332 Mbits/sec&lt;br /&gt;
&lt;br /&gt;
== Test Performance DISK+NETWORK avec DPM ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node24 root]# dpm-qryconf&lt;br /&gt;
 POOL CMS_SC DEFSIZE 200.00M GC_START_THRESH 0 GC_STOP_THRESH 0 DEF_LIFETIME 7.0d DEFPINTIME 2.0h  &lt;br /&gt;
 MAX_LIFETIME 1.0m MAXPINTIME 12.0h FSS_POLICY maxfreespace GC_POLICY lru RS_POLICY fifo GIDS 0 S_TYPE -   &lt;br /&gt;
 MIG_POLICY none RET_POLICY R&lt;br /&gt;
                              CAPACITY 17.01T FREE 15.98T ( 93.9%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam1 CAPACITY 2.24T FREE 2.09T ( 93.2%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam2 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam3 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam7 CAPACITY 1.79T FREE 1.68T ( 93.8%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam4 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam5 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam6 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam8 CAPACITY 1.79T FREE 1.68T ( 93.8%)&lt;br /&gt;
&lt;br /&gt;
sur l&#039;UI:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [cleroy@node02 2_IPbonding]$ time ./transfert_concurrent_client_node24.py&lt;br /&gt;
 globus-url-copy file:/home/cleroy/DTEAM_2004/4_Tt2t1/ATLAS_DATA &lt;br /&gt;
 gsiftp://node24.datagrid.cea.fr/dpm/datagrid.cea.fr/home/dteam/dapnia/cleroy/TO_BE_REMOVED/&lt;br /&gt;
 ATLAS_DATA_Trf00001&lt;br /&gt;
 ...&lt;br /&gt;
 ....&lt;br /&gt;
 real    2m13.017s&lt;br /&gt;
 user    1m4.270s&lt;br /&gt;
 sys     0m48.790s&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Sur le SE disk:&lt;br /&gt;
&lt;br /&gt;
 [root@node23 ~]# ll /dteam*/dteam/2007-10-10&lt;br /&gt;
 /dteam1/dteam/2007-10-10:&lt;br /&gt;
 total 1441096&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA2_Trf00001.4189.0&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA3_Trf00000.4181.0&lt;br /&gt;
 /dteam2/dteam/2007-10-10:&lt;br /&gt;
 total 1441104&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:37 ATLAS_DATA_Trf00000.4182.0&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:37 ATLAS_DATA_Trf00001.4174.0&lt;br /&gt;
 -rw-r--r--  1 root   root           5 Oct 10 17:27 essai&lt;br /&gt;
 /dteam3/dteam/2007-10-10:&lt;br /&gt;
 total 1441096&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA4_Trf00001.4175.0&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:37 ATLAS_DATA8_Trf00001.4183.0 &lt;br /&gt;
 /dteam4/dteam/2007-10-10:&lt;br /&gt;
 total 1441096&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:37 ATLAS_DATA7_Trf00001.4184.0&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA8_Trf00000.4176.0&lt;br /&gt;
 /dteam5/dteam/2007-10-10:&lt;br /&gt;
 total 1441096&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA2_Trf00000.4177.0&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:37 ATLAS_DATA7_Trf00000.4185.0&lt;br /&gt;
 /dteam6/dteam/2007-10-10:&lt;br /&gt;
 total 1441096&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA5_Trf00001.4178.0&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:37 ATLAS_DATA6_Trf00000.4188.0 &lt;br /&gt;
 /dteam7/dteam/2007-10-10:&lt;br /&gt;
 total 1441096&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA3_Trf00001.4186.0&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA6_Trf00001.4180.0&lt;br /&gt;
 /dteam8/dteam/2007-10-10:&lt;br /&gt;
 total 1441096&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA4_Trf00000.4179.0&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA5_Trf00000.4187.0&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
16 fichiers en paralleles de 737 MB: &lt;br /&gt;
11792 MB en 133 s = 88 MB/s = 709 Mb/s&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
autre test: &lt;br /&gt;
(16 * 20 = 320 )fichiers de 737MB : 235840 MB en  30m29.512s : 128 MB/s : 1024 Mb/s&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== DPM et XROOTD ==&lt;br /&gt;
&lt;br /&gt;
Ce document décrit la procédure utilisée à l&#039;IPNO pour installer xrootd sur un serveur DPM. La procédure d&#039;installation doit être effectuée sur chaque server (head node et disk servers). A l&#039;IPNO l&#039;installation a eu lieu sur un unique serveur à la fois head node et disk server.&lt;br /&gt;
&lt;br /&gt;
=== La documentation utile ===&lt;br /&gt;
Configuring &#039;xroot&#039; Protocol on DPM (Andreas Peters) [[BR]]&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/LCG/DpmXrootAccess&lt;br /&gt;
&lt;br /&gt;
How to Install and Debug Xrootd on a DPM Storage Element (Jean-Michel Barbet) [[BR]]&lt;br /&gt;
http://alien.cern.ch/twiki/bin/view/AliEn/HowToInstallXrootdAndDPM&lt;br /&gt;
&lt;br /&gt;
LCG-France T2-T3 Technical meeting : DPM/xrootd introduction (Jean-Michel Barbet)[[BR]]&lt;br /&gt;
http://indico.in2p3.fr/conferenceDisplay.py?confId=821&lt;br /&gt;
&lt;br /&gt;
Xrootd Tutorial (Artem Trunov) [[BR]]&lt;br /&gt;
http://indico.cern.ch/materialDisplay.py?contribId=8&amp;amp;sessionId=0&amp;amp;materialId=slides&amp;amp;confId=a058483&lt;br /&gt;
&lt;br /&gt;
=== Firewall: ports à ouvrir ===&lt;br /&gt;
 * Sur le xrootd Manager (DPM head node) : 1094&lt;br /&gt;
 * Sur les xrootd servers (disk servers) : 1095&lt;br /&gt;
 * Si le xrootd manager est aussi disk server : 1095 (sur le manager en plus de 1094)&lt;br /&gt;
&lt;br /&gt;
=== Installation Configuration en utilisant les scripts fournis par ALICE ===&lt;br /&gt;
&lt;br /&gt;
=== SPMA ===&lt;br /&gt;
Editer /etc/spma.conf :&lt;br /&gt;
&lt;br /&gt;
 * userpkgs = yes&lt;br /&gt;
 * userprio = yes&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
===== Non-YAIM configuration =====&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
 * # wget http://project-arda-dev.web.cern.ch/project-arda-dev/xrootd/tarballs/installbox/dpm-config.tgz&lt;br /&gt;
 * # tar zxf dpm-config.tgz&lt;br /&gt;
 * # chmod u+x ./conf.xrootd&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
Il faut commenter l&#039;appel à la fonction requires dans config_DPM_xrootd et définir la&lt;br /&gt;
variable YAIM_LOG dans conf.xrootd, sinon il y a des messages d&#039;erreur au lancement de conf.xrootd .&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
 * # cp config_DPM_xrootd config_DPM_xrootd.orig&lt;br /&gt;
 * # cp conf.xrootd conf.xrootd.orig&lt;br /&gt;
 * # vi config_DPM_xrootd ---&amp;gt; commenter l&#039;appel à requires&lt;br /&gt;
 * # vi conf.xrootd    ---&amp;gt; définir YAIM_LOG&lt;br /&gt;
&lt;br /&gt;
 * # diff config_DPM_xrootd config_DPM_xrootd.orig&lt;br /&gt;
 * 2c2&lt;br /&gt;
 * &amp;lt;   #requires $1 INSTALL_ROOT&lt;br /&gt;
 * ---&lt;br /&gt;
 * &amp;gt;   requires $1 INSTALL_ROOT&lt;br /&gt;
&lt;br /&gt;
 * # diff conf.xrootd conf.xrootd.orig&lt;br /&gt;
 * 4d3&lt;br /&gt;
 * &amp;lt; YAIM_LOG=/tmp/yaim.log&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Alice utilise l&#039;authentification TokenAuthZ. GSI n&#039;est pas encore supportée. Il faut donc éditer le fichier&lt;br /&gt;
/opt/lcg/etc/xrootd/authz.cf  (ce fichier ne sera pas utile avec GSI).&lt;br /&gt;
&lt;br /&gt;
 * # vi /opt/lcg/etc/xrootd/authz.cf :&lt;br /&gt;
 * changer /usr/local/xroot en /opt/lcg et&lt;br /&gt;
 * EXPORT PATH:/ en EXPORT PATH:/dpm/in2p3.fr/home/alice/&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Editer les scripts de lancement pour changer XRDLOCATION=&amp;quot;/usr/local/xroot&amp;quot; en XRDLOCATION=&amp;quot;/opt/lcg&amp;quot;.&lt;br /&gt;
&lt;br /&gt;
Les fichiers à éditer sont : /etc/init.d/dpm-xrd /etc/init.d/dpm-olb /etc/init.d/dpm-manager-xrd /etc/init.d/dpm-manager-olb /etc/init.d/xrdapmon&lt;br /&gt;
&lt;br /&gt;
Les scripts de démarrage regénèrent à chaque lancement le fichier /opt/lcg/etc/xrd.dpm.cf utilisé par les daemons. Ce fichier est &lt;br /&gt;
créé à partir du fichier /etc/xrd.dpm.config (ou /etc/xrd.dpm.config.gsi si avec GSI). C&#039;est donc dans /etc/sysconfig/dpm-xrd &lt;br /&gt;
qu&#039;il faut modifier la config xrootd si besoin est, avant de relancer les daemons.&lt;br /&gt;
&lt;br /&gt;
Modifier /etc/sysconfig/dpm-xrd comme indiqué ci-dessous :&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * # cp /etc/sysconfig/dpm-xrd.example /etc/sysconfig/dpm-xrd&lt;br /&gt;
 * # vi /etc/sysconfig/dpm-xrd&lt;br /&gt;
 * ...&lt;br /&gt;
 * # set the redirector host&lt;br /&gt;
 * MANAGERHOST=&amp;quot;ipnsedpm.in2p3.fr&amp;quot;&lt;br /&gt;
 * export DPM_HOST=$MANAGERHOST&lt;br /&gt;
 * export DPNS_HOST=$MANAGERHOST&lt;br /&gt;
 * ...&lt;br /&gt;
 * #############################################################################&lt;br /&gt;
 * # default authentication is with GSI authentication&lt;br /&gt;
 * #XRDCONFIG=&amp;quot;xrd.dpm.config.gsi&amp;quot;&lt;br /&gt;
 * # if you want GSI authentication disabled set&lt;br /&gt;
 * XRDCONFIG=&amp;quot;xrd.dpm.config&amp;quot;&lt;br /&gt;
 * ...&lt;br /&gt;
 * #XRDOFS=&amp;quot;Ofs&amp;quot;&lt;br /&gt;
 * # the ALICE Ofs plugin&lt;br /&gt;
 * XRDOFS=&amp;quot;TokenAuthzOfs&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * # vi /etc/shift.conf&lt;br /&gt;
 * Ajouter (à faire normalement via Quattor):&lt;br /&gt;
 * DPM PROTOCOLS rfio gsiftp xroot&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * Lancer la config :&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * # ./conf.xrootd&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * # more /tmp/yaim.log&lt;br /&gt;
 * # service dpm restart&lt;br /&gt;
 * # service dpnsdaemon restart (peut-etre pas necessaire)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
===== Les process qui tournent =====&lt;br /&gt;
Sur le manager :&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
 * dpmmgr 2816  1 0 Apr28 ? 00:00:00 /opt/lcg/bin/dpm-manager-olbd -d -b -n manager -c /opt/lcg/etc/xrd.dpm.cf -l /var/log/xroot//olblog&lt;br /&gt;
 * dpmmgr 3004  1 0 Apr28 ? 00:00:00 /opt/lcg/bin/dpm-manager-xrootd-d -b -n manager -c /opt/lcg/etc/xrd.dpm.cf -l /var/log/xroot//xrdlog&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
Sur les servers xrootd :&lt;br /&gt;
&lt;br /&gt;
 * dpmmgr 2726  1 0 Apr28 ? 00:00:00 /opt/lcg/bin/dpm-olbd -d -b -n server -c /opt/lcg/etc/xrd.dpm.cf -l /var/log/xroot//olblog&lt;br /&gt;
 * dpmmgr 2911  1 0 Apr28 ? 00:00:03 /opt/lcg/bin/dpm-xrootd -d -b -n server -c /opt/lcg/etc/xrd.dpm.cf -l /var/log/xroot//xrdlog&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==== Test ====&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * xrdcp /etc/hosts root://ipnsedpm.in2p3.fr://dpm/in2p3.fr/home/alice/test_ok.txt -v&lt;br /&gt;
 * xrdcp root://ipnsedpm.in2p3.fr://dpm/in2p3.fr/home/alice/test_ok.txt /tmp/xrd_copied_file -v&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Utiliser l&#039;option &#039;-d 1&#039; par exemple pour un mode un peu plus verbeux. &lt;br /&gt;
&lt;br /&gt;
Les fichiers peuvent être effacer par rfrm : &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * # rfrm /dpm/in2p3.fr/home/alice/test_ok.txt&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
En principe ça ne devrait pas marcher car il faut être authetifié par TokenAuthZ pour pouvoir faire des delete.&lt;br /&gt;
&lt;br /&gt;
==== Divers ====&lt;br /&gt;
&lt;br /&gt;
===== Pour arrêter / démarrer les services =====&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * service dpm-xrd restart&lt;br /&gt;
 * service dpm-olb restart&lt;br /&gt;
 * service dpm-manager-xrd restart&lt;br /&gt;
 * service dpm-manager-olb restart&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
===== L&#039;authentification =====&lt;br /&gt;
xrootd ne supporte pas encore d&#039;authentification GSI mais l&#039;authentification TokenAuthZ. &lt;br /&gt;
Le fichier d&#039;authentification est le suivant :&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * # cat /opt/lcg/etc/xrootd/authz.cf&lt;br /&gt;
 * KEY VO:*       PRIVKEY:/opt/lcg/etc/xrootd/pvkey.pem PUBKEY:/opt/lcg/etc/xrootd/pkey.pem&lt;br /&gt;
 * EXPORT PATH:/dpm/in2p3.fr/home/alice/ VO:*     ACCESS:ALLOW CERT:*&lt;br /&gt;
 * RULE PATH:/ AUTHZ:delete| NOAUTHZ:read|write|write-once| VO:* CERT:*&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
La dernière ligne signifie que tout le monde peut lire et écrire via xrootd, mais qu&#039;il faut une authentification via &lt;br /&gt;
TokenAuthZ pour pouvoir supprimer les fichiers.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Installation Configuration en utilisant Quattor ===&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==== installation RPM ====&lt;br /&gt;
RPM disponible:&lt;br /&gt;
http://project-arda-dev.web.cern.ch/project-arda-dev/alice/xrootd-dpm/&lt;br /&gt;
&lt;br /&gt;
Pour installer les bons RPM, il faut cette variable :&lt;br /&gt;
&lt;br /&gt;
 variable SEDPM_XROOTD_SERVER = true;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
pour la liste de RPMs, voir les templates:&lt;br /&gt;
&lt;br /&gt;
 cfg/grid/glite-3.1/glite/se_dpm/rpms/ « arch »/xrootd_*.tpl&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
==== configuration ====&lt;br /&gt;
Actuellement configuration à la main, voir :&lt;br /&gt;
&lt;br /&gt;
http://lcg2.in2p3.fr/wiki/index.php/User_talk:LEROY#Non-YAIM_configuration&lt;br /&gt;
&lt;br /&gt;
+ lien à créer:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 ln -s /opt/lcg/lib/libXrdSec.so /opt/lcg/lib64/libXrdSec.so&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Pour configuration via quattor:&lt;br /&gt;
Modification des templates à revoir (problemes du component):&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
Sending        cfg/clusters/dapnia-glite-3.1/lcg/source/pro_se_dpm_config.tpl&lt;br /&gt;
&lt;br /&gt;
Sending        cfg/clusters/dapnia-glite-3.1/profiles/profile_node11.tpl&lt;br /&gt;
&lt;br /&gt;
Sending        cfg/grid/glite-3.1/components/dpmlfc/schema.tpl&lt;br /&gt;
&lt;br /&gt;
Sending        cfg/grid/glite-3.1/glite/se_dpm/config.tpl&lt;br /&gt;
&lt;br /&gt;
Adding         cfg/grid/glite-3.1/glite/se_dpm/disk/xrootd.tpl&lt;br /&gt;
&lt;br /&gt;
Sending        cfg/grid/glite-3.1/glite/se_dpm/rpms/config.tpl&lt;br /&gt;
&lt;br /&gt;
Adding         cfg/grid/glite-3.1/glite/se_dpm/rpms/i386/xrootd_disk.tpl&lt;br /&gt;
&lt;br /&gt;
Adding         cfg/grid/glite-3.1/glite/se_dpm/rpms/i386/xrootd_head.tpl&lt;br /&gt;
&lt;br /&gt;
Adding         cfg/grid/glite-3.1/glite/se_dpm/rpms/x86_64/xrootd_disk.tpl&lt;br /&gt;
&lt;br /&gt;
Adding         cfg/grid/glite-3.1/glite/se_dpm/rpms/x86_64/xrootd_head.tpl&lt;br /&gt;
&lt;br /&gt;
Adding         cfg/grid/glite-3.1/glite/se_dpm/server/xrootd.tpl&lt;br /&gt;
&lt;br /&gt;
Sending        cfg/grid/glite-3.1/glite/se_dpm/service.tpl&lt;br /&gt;
&lt;br /&gt;
Sending        cfg/grid/glite-3.1/machine-types/se_dpm.tpl&lt;br /&gt;
&lt;br /&gt;
Sending        cfg/grid/glite-3.1/repository/config/glite.tpl&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
== Conclusion ==&lt;br /&gt;
Si on cumule test lecture/écriture et test iperf (avec 1 interface bond0 qui agrège les 8 Ethernet) on arrive à sortir les 230Mb/s et par TB. &lt;br /&gt;
&lt;br /&gt;
Necessite de bien maîtriser le raid logiciel et de le monitorer&lt;br /&gt;
&lt;br /&gt;
Existence des drivers pour quelques versions de Linux&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=User_talk:LEROY&amp;diff=6202</id>
		<title>User talk:LEROY</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=User_talk:LEROY&amp;diff=6202"/>
		<updated>2011-08-29T14:20:33Z</updated>

		<summary type="html">&lt;p&gt;LEROY: /* 1)M1 : serveur Maui + torque Only en SL5 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Mise hors service du LCG-CE (réinstallé en serveur (Maui + torque Only))  =&lt;br /&gt;
&lt;br /&gt;
Mise hors service du LCG-CE via Quattor sur un cluster avec :&lt;br /&gt;
-une machine, M1 :(lcg-CE +Maui + torque)  et&lt;br /&gt;
- une deuxième Machine, M2 : CREAM-CE&lt;br /&gt;
La Première machine étant réinstallé en serveur (Maui + torque Only)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== 1)M1 : serveur Maui + torque Only en SL5 ==&lt;br /&gt;
=== a)Inclure un nouveau type de machine dans M1 ===&lt;br /&gt;
 &lt;br /&gt;
 include { &#039;machine-types/torque_server&#039; (a la place du glite_ce) &lt;br /&gt;
&lt;br /&gt;
=== b)Ajouter la derniere version de maui  ===&lt;br /&gt;
 &#039;/software/packages&#039;=pkg_repl(&#039;maui&#039;,&#039;3.3.1-1.sl5&#039;,&#039;x86_64&#039;);&lt;br /&gt;
 &#039;/software/packages&#039;=pkg_repl(&#039;maui-client&#039;,&#039;3.3.1-1.sl5&#039;,&#039;x86_64&#039;);&lt;br /&gt;
 &#039;/software/packages&#039;=pkg_repl(&#039;maui-server&#039;,&#039;3.3.1-1.sl5&#039;,&#039;x86_64&#039;);&lt;br /&gt;
&lt;br /&gt;
=== c) SL5 ===&lt;br /&gt;
&lt;br /&gt;
Deplacer le profile ainsi que le template &#039;pro_lcg2_config_site_maui.tpl&#039; dans le &#039;&#039;&#039;cluster glite 3.2&#039;&#039;&#039; et modifier le &#039;*nodes_properties.tpl&#039; (install SL5)&lt;br /&gt;
&lt;br /&gt;
=== d) Declarer une nouvelle variable ===&lt;br /&gt;
variable &#039;&#039;&#039;LRMS_SERVER_HOST&#039;&#039;&#039; dans &#039;pro_lcg2_config_site.tpl&#039; et &#039;pro_site_common_config.tpl&#039;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Template modifié lors de ces étapes:&lt;br /&gt;
&lt;br /&gt;
 Suppression cfg/clusters/irfu/glite-3.1/profiles/profile_node07.tpl&lt;br /&gt;
 Suppression cfg/clusters/irfu/glite-3.1/site/pro_lcg2_config_site_maui.tpl&lt;br /&gt;
 Ajout cfg/clusters/irfu/glite-3.2/profiles/profile_node07.tpl&lt;br /&gt;
 Ajout cfg/clusters/irfu/glite-3.2/site/pro_lcg2_config_site_maui.tpl&lt;br /&gt;
 Envoi cfg/sites/dapnia/site/config/dapnia_nodes_properties.tpl&lt;br /&gt;
 M cfg/clusters/irfu/test-glite-3.2/site/pro_lcg2_config_site.tpl&lt;br /&gt;
 M cfg/clusters/irfu/glite-3.1_MPI/profiles/profile_node16.tpl&lt;br /&gt;
 M cfg/clusters/irfu/glite-3.1_MPI/site/pro_lcg2_config_site.tpl&lt;br /&gt;
 M cfg/clusters/irfu/glite-3.2_MPI/site/pro_lcg2_config_site.tpl&lt;br /&gt;
 M cfg/sites/dapnia/site/pro_site_common_config.tpl&lt;br /&gt;
 M cfg/sites/dapnia/site/pro_site_ui_dapnia_users_env.tpl&lt;br /&gt;
 M cfg/sites/dapnia/site/pro_lcg2_config_site.tpl&lt;br /&gt;
&lt;br /&gt;
== 2)	Déplacer le site BDII sur une autre machine (anciennement sur le LCG-CE) ==&lt;br /&gt;
&lt;br /&gt;
Enlever les variable de configuration de BDII sur M1 et les ajouter sur une autre machine (LFC exemple) :&lt;br /&gt;
variable BDII_TYPE=&#039;site&#039;; # site bdii&lt;br /&gt;
variable BDII_SUBSITE_ONLY = false;&lt;br /&gt;
variable BDII_SUBSITE = &#039;IRFU&#039;;&lt;br /&gt;
&lt;br /&gt;
3)	Résoudre l’erreur : Bad UID for job execution&lt;br /&gt;
http://grid.pd.infn.it/cream/field.php?n=Main.ErrorMessagesReportedByCREAMToClient#badui&lt;br /&gt;
en rajoutant le fichier mentionné: /etc/hosts.equiv&lt;br /&gt;
&lt;br /&gt;
4)	Resoudre le probleme de ‘resource not available’ vu par les WMS :&lt;br /&gt;
En fait le système d’information ne marchait pas bien sur M2 (node74) :&lt;br /&gt;
$ ldapsearch -x -LLL -H ldap://egee-bdii.cnaf.infn.it:2170 -b Mds-Vo-name=GRIF-IRFU,Mds-Vo-name=GRIF,mds-vo-name=local,o=grid &#039;objectclass=GlueSubCluster&#039; | grep node74&lt;br /&gt;
$&lt;br /&gt;
Ne rendait rien….&lt;br /&gt;
Ajout de  ces 2 variables dans le profile dde M2 ( CREAM CE)  :&lt;br /&gt;
variable CE_HOST ?= &#039;node74.datagrid.cea.fr&#039;;&lt;br /&gt;
variable GIP_CLUSTER_PUBLISHER_HOST ?= CE_HOST;&lt;br /&gt;
&lt;br /&gt;
5)	Résoudre les problèmes de publication (4444 jobs waiting…)&lt;br /&gt;
1)Inclure le client NFS sur M1 :&lt;br /&gt;
variable NFS_CLIENT_ENABLED ?= true;&lt;br /&gt;
Car M1 renseigne le GIP de M2 dans le software area de dteam via un cron sur M1.&lt;br /&gt;
Attention malgré l’option no_root_squash dans l’export du serveur NFS, il faut que les 2 fichiers :&lt;br /&gt;
gip-ce-dynamic-info-maui.cache&lt;br /&gt;
gip-ce-dynamic-info-scheduler.cache&lt;br /&gt;
Existent dans ce software area et appartiennent à root.&lt;br /&gt;
Faire un chmod 777 sur le serveur NFS  le temps du cron sur M1, puis refaire un chown 755 (à analyser ?)&lt;br /&gt;
&lt;br /&gt;
2)un des plugin (/opt/lcg/libexec/lcg-info-dynamic-maui) est buggé :&lt;br /&gt;
export PYTHONPATH=/opt/lcg/lib/python:${PYTHONPATH} ; python /opt/lcg/libexec/lcg-info-dynamic-maui --host node07.datagrid.cea.fr --max-normal-slots 2236 --ce-ldif /var/glite/static-file-all-CE-pbs.ldif --diagnose-output /tmp/maui-reservations.list&lt;br /&gt;
Traceback (most recent call last):&lt;br /&gt;
File &amp;quot;/opt/lcg/libexec/lcg-info-dynamic-maui&amp;quot;, line 244, in ?&lt;br /&gt;
if not queueParams:&lt;br /&gt;
File &amp;quot;/usr/lib64/python2.4/site-packages/pbs/PBSQuery.py&amp;quot;, line 351, in __getattr__&lt;br /&gt;
raise PBSError(error)&lt;br /&gt;
PBSQuery.PBSError: Attribute key error: __nonzero__&lt;br /&gt;
&lt;br /&gt;
Recuperer celui de grid33.lal.in2p3.fr&lt;br /&gt;
Patch à venir&lt;br /&gt;
&lt;br /&gt;
= FTS =&lt;br /&gt;
&lt;br /&gt;
&#039;connaitre la list des channels:&#039;&lt;br /&gt;
&lt;br /&gt;
 glite-transfer-channel-list -s cclcgftsprod.in2p3.fr IN2P3-IRFU&lt;br /&gt;
&lt;br /&gt;
&#039;reactiver un channel&#039;&lt;br /&gt;
&lt;br /&gt;
 glite-transfer-channel-setvoshare -s cclcgftsprod.in2p3.fr &amp;lt;CHANNEL_NAME&amp;gt; atlas 100&lt;br /&gt;
&lt;br /&gt;
= Installation et Configuration d&#039;une VO-BOX ALICE =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Introduction ==&lt;br /&gt;
&lt;br /&gt;
Un site grille qui souhaite supporter l&#039;expérience ALICE, doit installer une VO-BOX. ALICE utilise [http://alien.cern.ch/twiki/bin/view/AliEn/Home AliEN] (Alice ENvironment) comme plateforme logicielle pour la simulation et l&#039;analyse des données. Alien est installé sur chaque VO-BOX. C&#039;est le CE d&#039;Alien qui soumet les Job Agents (JAs) au CE du site. Les JAs vont ensuite chercher les jobs dans central Task Queue de Alien. Les jobs écrivent via xrootd (directement vers le CERN pour le moment). Comme il n&#039;y a pas encore d&#039;interface xrootd/SRM, chaque VO-BOX doit fournir un stockage xrootd qui peut être sur un disque local.&lt;br /&gt;
&lt;br /&gt;
Les documents à lire impérativement (en plus de ce guide) sont:&lt;br /&gt;
&lt;br /&gt;
 * [http://alien.cern.ch/twiki/bin/view/AliEn/HowToInstallLcgVoBox ALICE LCG VO-Box Installation Guide]&lt;br /&gt;
 * [https://twiki.cern.ch/twiki/pub/LCG/VoBoxesInfo/VO-Box-security-policy_v05.doc VOBOX Security and Operations Questionnaires]&lt;br /&gt;
&lt;br /&gt;
La VO-BOX n&#039;est pas consommatrice en CPU et RAM. N&#039;importe quel PC récent(Pentium+) avec 2GB+ de RAM peut faire l&#039;affaire. Cependant un bon hardware est recommandé pour minimiser la fréquence des pannes.&lt;br /&gt;
&lt;br /&gt;
== Ressources disques requises ==&lt;br /&gt;
&lt;br /&gt;
 * Partition / (root) : au moins 2 GB&lt;br /&gt;
 * Partition /var : y prévoir 10-15 GB d&#039;espace pour les logs d&#039;Alien&lt;br /&gt;
 * /data (ou un autre nom) : partition local pour xrootd (prévoir 3G par job slot)&lt;br /&gt;
&lt;br /&gt;
Remarques:&lt;br /&gt;
  1. xrootd: sur un site avec plus de 30 job slots, passer si possible au mode &amp;quot;head node + xrootd servers&amp;quot; pour des raisons de performances&lt;br /&gt;
  2. &amp;quot;/home&amp;quot; doit être local pour des raisons de performances et de gestion des &amp;quot;locks&amp;quot;&lt;br /&gt;
&lt;br /&gt;
== Les ports à ouvrir pour la VO-BOX au niveau du router ==&lt;br /&gt;
&lt;br /&gt;
 * 1975/tcp (gsissh): inbound from 137.138.0.0/16 and 192.16.186.192/26&lt;br /&gt;
 * 1094/tcp(xrootd)&lt;br /&gt;
 * 8082/tcp (Storage Adapter)&lt;br /&gt;
 * 8083 (FTD)&lt;br /&gt;
 * 8084/tcp (Site Proxy)&lt;br /&gt;
 * 9991/tcp (PackMan) : Inbound from 137.138.0.0/16&lt;br /&gt;
 * 1093/tcp (proofd)&lt;br /&gt;
&lt;br /&gt;
== Le profile de la VO-BOX sous Quattor ==&lt;br /&gt;
&lt;br /&gt;
Dans clusters/&amp;lt;nom_site&amp;gt;-glite-x.y.z/profiles/profile_&amp;lt;nom_vobox&amp;gt;.tpl, faire:&lt;br /&gt;
&lt;br /&gt;
 {{{&lt;br /&gt;
include pro_&amp;lt;nom_site&amp;gt;_alice_glite_vobox;&lt;br /&gt;
(voir cfg/clusters/ipno-glite-3.0.0/profiles/profile_ipnvobox.tpl)&lt;br /&gt;
 }}}&lt;br /&gt;
&lt;br /&gt;
Dans sites/&amp;lt;nom_site&amp;gt;/machine-types, créer pro_&amp;lt;nom_site&amp;gt;_alice_glite_vobox.tpl et pro_&amp;lt;nom_site&amp;gt;_alice_vobox_config.tpl&lt;br /&gt;
&lt;br /&gt;
Vous pouvez copier et adpater les templates de l&#039;IPNO ou du DAPNIA.&lt;br /&gt;
&lt;br /&gt;
== Après l&#039;installation via Quattor de la machine ==&lt;br /&gt;
&lt;br /&gt;
 * Demander et installer le certificat serveur GRID-FR de la mchine&lt;br /&gt;
 * Vérifier que les utilisateurs alis et alip existent dans /etc/passwd&lt;br /&gt;
 * Verifier que Patricia Lorenzo Mendez et Artem Trunov sont bien mappés sur&lt;br /&gt;
  alis dans /etc/grid-security/grid-mapfile et qu&#039;il y a quelqu&#039;un mappé&lt;br /&gt;
  sur alip. Question ouverte: faut-il creer les pool accounts ? Ou faut-il&lt;br /&gt;
  créer uniqument les comptes alis, alip nécessaires pour ALICE ?&lt;br /&gt;
 * Dans /etc/shadow vous devez avoir &#039;*&#039; dans le champ &#039;password&#039;, sinon le logingsissh ne marchera pas. Donc il faut remplacer &#039;!!&#039; ou &#039;!*NP*&#039; par &#039;*&#039;&lt;br /&gt;
 {{{&lt;br /&gt;
[root@ipnvobox etc]# grep alis /etc/shadow&lt;br /&gt;
alis:*:13574:0:99999:7:::&lt;br /&gt;
 }}}&lt;br /&gt;
 * Vérifier que le serveur GSISSH tourne sur la VOBOX sur le port 1975.&lt;br /&gt;
 * Vérifier que $MYPROXY_SERVER pointe bien sur myproxy.cern.ch&lt;br /&gt;
 * Vérifier que la expérimental software area ($VO_ALICE_SW_DIR) est bien accessible via NFS depuis la VO-BOX et writeable par alis. Il faut au moins 5GB d&#039;espace libre pour le soft d&#039;ALICE.&lt;br /&gt;
 * Vérifier que la partition /data pour xrootd existe et appartient à alis (/data doit être crée sous Quattor ou à la main)&lt;br /&gt;
 {{{&lt;br /&gt;
[root@ipnvobox root]# ls -ld /data&lt;br /&gt;
drwxr-xr-x   19 alis     alice        4096 Dec 14 13:22 /data&lt;br /&gt;
 }}}&lt;br /&gt;
 * Créer un directory pour les logs d&#039;Alien (ex: /var/log/alis). Il doit appartenir à alis et nécessite 10-15 GB libre.&lt;br /&gt;
 {{{&lt;br /&gt;
[root@ipnvobox root]# ls -ld /var/log/alis&lt;br /&gt;
drwxrwxrwx   10 alis     alice        4096 Mar  2 16:54 /var/log/alis&lt;br /&gt;
 }}}&lt;br /&gt;
 * Configurer le proxy-renewal service. MAIS, le script /opt/vobox/templates/voname-box-proxyrenewal n&#039;est pas encore exécuté automatiquement. Cal a prévu de corriger le probleme. Donc si après l&#039;installation de la VO-BOX, il manque alice-box-proxyrenewal dans /etc/cron.d/ et dans /etc/init.d/ ainsi que start, stop, agents et info-provider dans /opt/vobox/alice/, alors faire:&lt;br /&gt;
  1. créer /etc/cron.d/alice-box-proxyrenewal:&lt;br /&gt;
 {{{&lt;br /&gt;
[root@ipnvobox root]# cat /etc/cron.d/alice-box-proxyrenewal&lt;br /&gt;
#!/bin/sh&lt;br /&gt;
20 2,8,14,20 * * * root (PATH=/sbin:/bin:/usr/sbin:/usr/bin; /sbin/service alice-box-proxyrenewal proxy)&lt;br /&gt;
 }}}&lt;br /&gt;
  2. copier /opt/vobox/templates/voname-box-proxyrenewal dans&lt;br /&gt;
    /tmp/alice-proxy-renewal.sh, adpatez-le et exécutez-le (le script que j&#039;ai&lt;br /&gt;
    utilisé est en attachement: alice-proxy-renewal.sh).&lt;br /&gt;
  3. vous devez alors retrouver les directories qui manquaient:&lt;br /&gt;
 {{{&lt;br /&gt;
[root@ipnvobox alice]# ls -l&lt;br /&gt;
total 44&lt;br /&gt;
drwx------    2 alis     alice        4096 Jul 19  2006 agents&lt;br /&gt;
-rw-rw-rw-    1 alis     alice           0 Nov 14 09:09 edglog.log&lt;br /&gt;
drwx------    2 alis     alice        4096 Jul 19  2006 info-provider&lt;br /&gt;
drwx------    2 alis     alice        4096 Mar  1 04:02 log&lt;br /&gt;
drwx------    2 alis     alice        4096 Mar  2 17:19 proxy_repository&lt;br /&gt;
-rw-------    1 alis     alice       13750 Mar  2 17:04 _registerer_proxies.db&lt;br /&gt;
-r--------    1 alis     alice        2690 Mar  2 14:20 renewal-proxy.pem&lt;br /&gt;
drwx------    2 alis     alice        4096 Aug  6  2006 start&lt;br /&gt;
drwx------    2 alis     alice        4096 Aug  5  2006 stop&lt;br /&gt;
 }}}&lt;br /&gt;
 * Envoyer un e-mail à: Patricia.Mendez@cern.ch, latchezar.betev@cern.ch et trunov@cc.in2p3.fr :&lt;br /&gt;
1. demander que la machine soit enregistrée &#039;as trusted host&#039; dans myproxy.cern.ch dans LDAP (il faut fournir le DN de la VOBOX).&lt;br /&gt;
2. fournir les informations suivantes dans le mail:&lt;br /&gt;
  * hostname de la VO-BOX&lt;br /&gt;
  * le nom des users: alicesgm (alis dans GRIF), alip (ALICE Production)&lt;br /&gt;
  * le nom directory pour xrootd (ex: /data)&lt;br /&gt;
  * le nom du SE/DPM Server (ex: ipnsedpm.in2p3.fr)&lt;br /&gt;
  * le nom du serveur LFC (ex: grid14.lal.in2p3.fr) et le catalogue pour&lt;br /&gt;
    ALICE (/grid/alice)&lt;br /&gt;
  * le nom du RB (ex: grid09.lal.in2p3.fr)&lt;br /&gt;
  * le nom du CE et de la queue batch&lt;br /&gt;
    (ex: ipnls2001.in2p3.fr:2119/jobmanager-pbs-alice)&lt;br /&gt;
  * le path pour le experiment software area&lt;br /&gt;
    (ex:VO_ALICE_SW_DIR=/ipn/storage1/exp_soft/alis, zone &amp;quot;NFS shared&amp;quot; avec les WNs)&lt;br /&gt;
 * Installer Alien ou demander que Artem ou Patricia vous l&#039;installe.&lt;br /&gt;
 * S&#039;inscrire individullement dans le projet ALICE (voir avec un physicien d&#039;ALICE du Labo et avec le Secrétariat d&#039;ALICE) :&lt;br /&gt;
  1. demander un logon au CERN (si vous n&#039;en avez pas déjà)&lt;br /&gt;
  2. demander à être enregistré comme membre du projet ALICE&lt;br /&gt;
 * Inscrivez-vous dans AliEn en suivant les étapes sur la page http://alien.cern.ch/twiki/bin/view/Alice/UserRegistration&lt;br /&gt;
  1. Vous serez amenés à vous inscrire dans la VO ALICE (si ce n&#039;est pas déjà fait)  sur https://lcg-voms.cern.ch:8443/vo/alice/vomrs&lt;br /&gt;
  2. Ensuite vous pourrez vous inscrire dans AliEn (&amp;quot;5. Register with AliEn&amp;quot; sur&lt;br /&gt;
    https://alien.cern.ch:8443/twiki/bin/UserReg&lt;br /&gt;
 * Demander ensuite à être mapé sur &#039;alidprod&#039; si vous voulez pouvoir utiliser AliEn sous votre nom (ALIEN_USER=user_name dans ~alis/.alien/Environment) la VO-BOX (start/stop des services par exemples)&lt;br /&gt;
 * Mettre dans /etc/motd des informations utiles à afficher lors de la connexion [gsi]ssh: LFC server, catalog pour alice, zone pour xrootd, etc.&lt;br /&gt;
&lt;br /&gt;
== Durée du proxy ==&lt;br /&gt;
&lt;br /&gt;
Vérifier dans /opt/lcg/sbin/vobox-renewd qu&#039;on a &#039;-t 48&#039; :&lt;br /&gt;
&lt;br /&gt;
 {{{&lt;br /&gt;
${GLOBUS_LOCATION}/bin/myproxy-get-delegation -a ${VOBOX_PROXY_REPOSITORY}/${CERT} -d -o $TMP_PROXY -t 48 2&amp;gt;&amp;amp;1 &amp;gt; /dev/null&lt;br /&gt;
 }}}&lt;br /&gt;
&lt;br /&gt;
Il s&#039;agit d&#039;un problème qui devrait être résolu dans le futur&lt;br /&gt;
&lt;br /&gt;
== Backup ==&lt;br /&gt;
&lt;br /&gt;
Faire régulièrement des sauvegardes de ~alis, /opt/vobox et des logs d&#039;Alien (ex: /var/log/alis)&lt;br /&gt;
&lt;br /&gt;
== Se connecter à la VO-BOX depuis le UI ==&lt;br /&gt;
&lt;br /&gt;
Faire &#039;gsissh -l user -p port_GSISSH &amp;lt;vobox_name&amp;gt; &#039;&lt;br /&gt;
 {{{&lt;br /&gt;
[diarra@ipngrid01 ~]$ gsissh -l alis -p 1975 ipnvobox&lt;br /&gt;
 }}}&lt;br /&gt;
&lt;br /&gt;
== Utiliser le serveur myproxy ==&lt;br /&gt;
&lt;br /&gt;
Sur le UI:&lt;br /&gt;
&lt;br /&gt;
 {{{&lt;br /&gt;
myproxy-init -s myproxy.cern.ch -d -n -t 48 -c 720&lt;br /&gt;
gsissh -l alis -p 1975 &amp;lt;vobox_name&amp;gt;&lt;br /&gt;
 }}}&lt;br /&gt;
Sur la VO-BOX:&lt;br /&gt;
&lt;br /&gt;
 {{{&lt;br /&gt;
vobox-proxy --vo alice --proxy-safe 3600 --myproxy-safe 259200 --email &amp;lt;votre_e-mail&amp;gt; register&lt;br /&gt;
 }}}&lt;br /&gt;
Pour s&#039;assurer que le proxy est renouveler automatiquement, vérifier que vous avez dans /opt/vobox/alice/log/events.log une ligne du genre:&lt;br /&gt;
 {{{&lt;br /&gt;
9/07/06 14:35:56 : Proxy for DN  &amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=IPNO/CN=Christophe Diarra/CN=proxy/CN=proxy/CN=proxy&amp;quot; successfully renewed&lt;br /&gt;
 }}}&lt;br /&gt;
Dans /opt/vobox/alice/proxy_repository/ vous trouverez le proxy.&lt;br /&gt;
== Start/Stop des services ==&lt;br /&gt;
&lt;br /&gt;
Les services peuvent être démarrés un par un. Les services disponibles sont :&lt;br /&gt;
Monitor, SE, CE, PackMan, Monalisa.&lt;br /&gt;
&lt;br /&gt;
Un script permet de les démarrer ou de les arrêter dans le bon ordre:&lt;br /&gt;
&lt;br /&gt;
 {{{&lt;br /&gt;
$VO_ALICE_SW_DIR/alien/etc/rc.d/init.d/aliend start|stop&lt;br /&gt;
 }}}&lt;br /&gt;
Pour démarrer ou arreter un seul service :&lt;br /&gt;
&lt;br /&gt;
 {{{&lt;br /&gt;
$VO_ALICE_SW_DIR/alien/scripts/lcg/lcgAlien.sh StartServiceName|StopServiceName&lt;br /&gt;
Exemple:&lt;br /&gt;
$VO_ALICE_SW_DIR/alien/scripts/lcg/lcgAlien.sh StopCE&lt;br /&gt;
$VO_ALICE_SW_DIR/alien/scripts/lcg/lcgAlien.sh StartCE&lt;br /&gt;
 }}}&lt;br /&gt;
&lt;br /&gt;
== Expiration du proxy ==&lt;br /&gt;
&lt;br /&gt;
Quand vous recevez un mail indiquant que le proxy est sur le point d&#039;expirer&lt;br /&gt;
(3 jours avant ?), ou si les logs le signalent, il faut renouveler le proxy sur&lt;br /&gt;
le serveur myproxy depuis le UI.&lt;br /&gt;
&lt;br /&gt;
 {{{&lt;br /&gt;
[root@ipnvobox log]# more /opt/vobox/alice/log/events.log&lt;br /&gt;
...&lt;br /&gt;
11/26/06 15:03:05 : Myproxy lifetime (256228 sec) shorter than security threshol&lt;br /&gt;
d (259200 sec)&lt;br /&gt;
11/26/06 15:03:05 : ... for DN /O=GRID-FR/C=FR/O=CNRS/OU=IPNO/CN=Christophe Diar&lt;br /&gt;
ra&lt;br /&gt;
11/26/06 15:03:05 : sendind notification email to diarra@ipno.in2p3.fr. SUCCESSF&lt;br /&gt;
ULL&lt;br /&gt;
 }}}&lt;br /&gt;
Sur le UI:&lt;br /&gt;
&lt;br /&gt;
 {{{&lt;br /&gt;
[diarra@ipnls2011 my]$ myproxy-info -d -s myproxy.cern.ch&lt;br /&gt;
username: /O=GRID-FR/C=FR/O=CNRS/OU=IPNO/CN=Christophe Diarra&lt;br /&gt;
owner: /O=GRID-FR/C=FR/O=CNRS/OU=IPNO/CN=Christophe Diarra&lt;br /&gt;
  timeleft: 52:25:26  (2.2 days)&lt;br /&gt;
&lt;br /&gt;
[diarra@ipnls2011 my]$ myproxy-init -s myproxy.cern.ch -d -n -t 48 -c 720&lt;br /&gt;
Your identity: /O=GRID-FR/C=FR/O=CNRS/OU=IPNO/CN=Christophe Diarra&lt;br /&gt;
Enter GRID pass phrase for this identity:&lt;br /&gt;
Creating proxy ............................................ Done&lt;br /&gt;
Proxy Verify OK&lt;br /&gt;
Your proxy is valid until: Wed Dec 27 09:56:25 2006&lt;br /&gt;
A proxy valid for 720 hours (30.0 days) for user /O=GRID-FR/C=FR/O=CNRS/OU=IPNO/CN=Christophe Diarra now exists on myproxy.cern.ch.&lt;br /&gt;
 }}}&lt;br /&gt;
&lt;br /&gt;
== Monitoring / Accounting ==&lt;br /&gt;
&lt;br /&gt;
 * [http://pcalimonitor.cern.ch:8889/ ALICE Monitoring with MonALISA]&lt;br /&gt;
 * [http://dashb-alice.cern.ch/dashboard/request.py/jobsummary?sortby=site ALICE Dashboard : Job Summary]&lt;br /&gt;
&lt;br /&gt;
== Liens Utiles ==&lt;br /&gt;
&lt;br /&gt;
[https://alien.cern.ch:8443/twiki/bin/view/AliEn/HowToDebugLcgVoBox Debugging &amp;amp; Troubleshooting the ALICE LCG Vo-Box]&lt;br /&gt;
&lt;br /&gt;
[http://goc.grid.sinica.edu.tw/gocwiki/VO-box_HowTo VO-box HowTo - description, installation, testing]&lt;br /&gt;
&lt;br /&gt;
[http://lcg2.in2p3.fr/wiki/index.php/Alice Page Alice LCG-France]&lt;br /&gt;
&lt;br /&gt;
[https://twiki.cern.ch/twiki/pub/LCG/VoBoxesInfo/VO-Box-security-policy_v05.doc VOBOX Security and Operations Questionnaires]&lt;br /&gt;
&lt;br /&gt;
[http://www.gridpp.ac.uk/wiki/VOBox Pages sur les VOboxes]&lt;br /&gt;
&lt;br /&gt;
[https://edms.cern.ch/document/655277/ LCG VOBox Operations Recommendations and Questionnaire]&lt;br /&gt;
&lt;br /&gt;
[http://alien.cern.ch/twiki/bin/view/AliEn/HowToInstallXrootd How to install xrootd on data servers]&lt;br /&gt;
&lt;br /&gt;
[http://xrootd.slac.stanford.edu/ XROOTD]&lt;br /&gt;
&lt;br /&gt;
= LEMON : Sytème de Monitoring Client/Serveur =&lt;br /&gt;
[[TracNav]]&lt;br /&gt;
&lt;br /&gt;
http://lemon.web.cern.ch/lemon/&lt;br /&gt;
http://lemon.web.cern.ch/lemon/doc/installation/installation.html&lt;br /&gt;
&lt;br /&gt;
[[TOC(inline)]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Installation du Serveur Lemon via quattor en SL4 ==&lt;br /&gt;
&lt;br /&gt;
Utilser les 2 templates :&lt;br /&gt;
{{{&lt;br /&gt;
pro_software_lemon_server_sl4_i386;&lt;br /&gt;
pro_service_lemon_server;&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Qui vont:&lt;br /&gt;
 &#039;&#039;&#039;1) installer les RPMs necessaires&#039;&#039;&#039;&lt;br /&gt;
{{{&lt;br /&gt;
(&amp;quot;edg-fabricMonitoring-server&amp;quot;,&amp;quot;2.13.0-3&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;rrdtool&amp;quot;,&amp;quot;1.0.49-2.1.el3.rf&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;lrf&amp;quot;,&amp;quot;1.0.7-15&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;ncm-fmonagent&amp;quot;,&amp;quot;1.0.32-1&amp;quot;,&amp;quot;noarch&amp;quot;);&lt;br /&gt;
(&amp;quot;perl-TimeDate&amp;quot;,&amp;quot;2.22-1&amp;quot;,&amp;quot;noarch&amp;quot;);&lt;br /&gt;
(&amp;quot;httpd&amp;quot;,&amp;quot;2.0.52-22.ent&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;httpd-suexec&amp;quot;,&amp;quot;2.0.52-22.ent&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;system-config-httpd&amp;quot;,&amp;quot;1.3.1-1&amp;quot;,&amp;quot;noarch&amp;quot;);&lt;br /&gt;
(&amp;quot;php-ldap&amp;quot;,&amp;quot;4.3.9-3.15&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;php-gd&amp;quot;,&amp;quot;4.3.9-3.15&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;php-imap&amp;quot;,&amp;quot;4.3.9-3.15&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;php-pear&amp;quot;,&amp;quot;4.3.9-3.15&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;php&amp;quot;,&amp;quot;4.3.9-3.15&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;oracle-xe-univ&amp;quot;,&amp;quot;10.2.0.1-1.0&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;cx_Oracle&amp;quot;,&amp;quot;4.1-1&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;lemon-ora-admin&amp;quot;,&amp;quot;1.0.4-96&amp;quot;,&amp;quot;noarch&amp;quot;);&lt;br /&gt;
# lemon-OraMon probleme de dependance: l&#039;installer avec --nodeps (info from Miroslav Sicket CERN)&lt;br /&gt;
(&amp;quot;lemon-OraMon&amp;quot;,&amp;quot;1.2.0-1&amp;quot;,&amp;quot;i386&amp;quot;);}}}&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039; 2) configurer les fichiers suivant :&#039;&#039;&#039;&lt;br /&gt;
{{{&lt;br /&gt;
/etc/lemon/server/lemon-oramon-server.conf&lt;br /&gt;
/var/www/html/lrf/config.php&lt;br /&gt;
/var/spool/edg-fmon-server/nodes.map&lt;br /&gt;
/etc/lemon/lemonmrd.conf&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 &#039;&#039;&#039; 3) et demarrer les 2 demons :&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
/etc/init.d/OraMon&lt;br /&gt;
/etc/init.d/lemonmrd&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Configuration Hors Quattor ==&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;1) Configuration de la Base de Donée:&#039;&#039;&#039; &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
/etc/init.d/oracle-xe configure&lt;br /&gt;
. /usr/lib/oracle/xe/app/oracle/product/10.2.0/server/bin/oracle_env.sh&lt;br /&gt;
sqlplus system&lt;br /&gt;
 SQL&amp;gt; EXEC DBMS_XDB.SETLISTENERLOCALACCESS(FALSE);       &lt;br /&gt;
/etc/init.d/oracle-xe start&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;2) Ajouter l&#039;utilisateur lemon&#039;&#039;&#039;&lt;br /&gt;
via l&#039;interface http://ma_machine:port_choisi/apex&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;3) Configuration de Oramon :&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
lemon-ora.admin --create-schema -d xe --data-tablespace=USERS --index-tablespace=USERS&lt;br /&gt;
lemon-ora.admin --file=/etc/oramon-server.conf -d xe --all  --data-tablespace=USERS --index-tablespace=USERS&lt;br /&gt;
lemon-ora.admin --file=/etc/oramon-server.conf -d xe  -u lemon --create-las --data-tablespace=USERS --index-tablespace=USERS&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;4) exporter les variables Oracle :&#039;&#039;&#039;&lt;br /&gt;
{{{&lt;br /&gt;
export LD_LIBRARY_PATH=/usr/lib/oracle/xe/app/oracle/product/10.2.0/server/lib:/usr/lib/oracle/10.2.0.3/client/lib&lt;br /&gt;
export ORACLE_SID=XE&lt;br /&gt;
export PATH=$PATH:/usr/lib/oracle/xe/app/oracle/product/10.2.0/server/bin&lt;br /&gt;
export ORACLE_HOME=/usr/lib/oracle/xe/app/oracle/product/10.2.0/server&lt;br /&gt;
export TNS_ADMIN=/usr/lib/oracle/xe/app/oracle/product/10.2.0/server/network/admin&lt;br /&gt;
export PYTHONPATH=/usr/lib/python2.2/site-packages&lt;br /&gt;
export NLS_LANG=AMERICAN_AMERICA.AL32UTF8&lt;br /&gt;
&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
     Dans tous les fichiers de demarrage suivant :&lt;br /&gt;
   {{{&lt;br /&gt;
   /etc/init.d/lemonmrd&lt;br /&gt;
   /etc/init.d/httpd&lt;br /&gt;
   /etc/sysconfig/OraMon&lt;br /&gt;
   }}}&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;5) Et verifier ensuite les logs, et que le serveur collecte bien des données :&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
/var/log/lemonmrd.log&lt;br /&gt;
/var/www/html/lrf/data&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Ajout de nouvelles sondes/metriques ==&lt;br /&gt;
&lt;br /&gt;
I) Sur le client&lt;br /&gt;
&lt;br /&gt;
a)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node07 sensor-example]# cat /etc/lemon/agent/sensors/torque_maui.conf&lt;br /&gt;
&lt;br /&gt;
 torque_maui&lt;br /&gt;
        CommandLine /usr/bin/perl /usr/libexec/sensors/lemon-sensor.pl RunningJobs&lt;br /&gt;
        MetricClasses&lt;br /&gt;
                torque_maui.RunningJobs&lt;br /&gt;
b)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node07 sensor-example]# cat /etc/lemon/agent/metrics/torque_maui.conf&lt;br /&gt;
&lt;br /&gt;
 20047&lt;br /&gt;
        MetricName     Jobsrunning&lt;br /&gt;
        MetricClass    torque_maui.RunningJobs&lt;br /&gt;
        Timing  3600   0&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
c)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node07 sensor-example]# cat /usr/libexec/sensors/RunningJobs.pm&lt;br /&gt;
&lt;br /&gt;
 #!/usr/bin/perl -w&lt;br /&gt;
 package torque_maui;&lt;br /&gt;
 # modules&lt;br /&gt;
 use diagnostics;&lt;br /&gt;
 use strict;&lt;br /&gt;
 # the sensor API interface&lt;br /&gt;
 use sensorAPI;&lt;br /&gt;
 # register module name and version&lt;br /&gt;
 registerVersion(&amp;quot;lemon-sensor-torque_maui&amp;quot;, &amp;quot;1.0.0-1&amp;quot;);&lt;br /&gt;
 # register the sensors metric classes&lt;br /&gt;
 registerMetric(&amp;quot;torque_maui.RunningJobs&amp;quot;, &amp;quot;report the Running Jobs&amp;quot;, &amp;quot;torque_maui::RunningJobs&amp;quot;);&lt;br /&gt;
 sub RunningJobs_sample() {&lt;br /&gt;
    # All function hooks in the sensor API: _sample(), _initialise(), _periodicCheck(), _destroy()&lt;br /&gt;
    # are passed a hash as the first argument. This hash provides the function with the ability to&lt;br /&gt;
    # access the methods and variables of the metric instance/object. This is Perls implementation&lt;br /&gt;
    # of Object Orientation&lt;br /&gt;
    my $obj  = shift;&lt;br /&gt;
    # variables&lt;br /&gt;
    my $line = `/usr/bin/showq -r | echo \$((\$(wc -l)-4))`;&lt;br /&gt;
            $obj-&amp;gt;storeSample01($line);&lt;br /&gt;
    # All functions called by the sensor API must return a value&lt;br /&gt;
    #  - if the sampling was successful you the return code should be 0 and -1 on error&lt;br /&gt;
     return 0;&lt;br /&gt;
      }&lt;br /&gt;
 1;&lt;br /&gt;
 #-- End-of-File --------------------------------------------------------------------------------------#&lt;br /&gt;
&lt;br /&gt;
II) Pour le serveur&lt;br /&gt;
&lt;br /&gt;
1) Pour Oramon&lt;br /&gt;
&lt;br /&gt;
a) modifier le fichier /etc/oramon-server.conf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 ………..&lt;br /&gt;
&lt;br /&gt;
                torque_maui.RunningJobs&lt;br /&gt;
                        Description Running jobs on the CE?&lt;br /&gt;
                        Fields&lt;br /&gt;
                                Running_Jobs&lt;br /&gt;
                                        Type INTEGER&lt;br /&gt;
                                        MetricUnit count&lt;br /&gt;
                                        MetricScale 1&lt;br /&gt;
&lt;br /&gt;
 ……………..&lt;br /&gt;
&lt;br /&gt;
                20047&lt;br /&gt;
                        MetricClass torque_maui.RunningJobs&lt;br /&gt;
                        MetricName Jobsrunning&lt;br /&gt;
                        Description Running Jobs on the CE?&lt;br /&gt;
                        TableName _20047&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Metric classes part into corresponding metric class part, metric instance into metric instances (be carefull about the tabs). &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
b) sourcer laes variables d&#039;environnement oracle :&lt;br /&gt;
&lt;br /&gt;
 . /usr/lib/oracle/xe/app/oracle/product/10.2.0/server/bin/oracle_env.sh&lt;br /&gt;
&lt;br /&gt;
c) mettre a jour la Database:&lt;br /&gt;
&lt;br /&gt;
 lemon-ora.admin --file=/etc/oramon-server.conf -d xe  -u lemon --all --data-tablespace=USERS --index-tablespace=USERS&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
2) Pour LRF&lt;br /&gt;
&lt;br /&gt;
a) # tail -3 /var/spool/edg-fmon-server/metrics.map&lt;br /&gt;
&lt;br /&gt;
 182 20015     /home.use&lt;br /&gt;
 183 30050     exitCodeNFS&lt;br /&gt;
 184 20047     RunningJobs&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
b)# more /etc/lemon/lemonmrd.conf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 ……………..&lt;br /&gt;
&lt;br /&gt;
 RunningJobs=Jobsrunning:Running_Jobs&lt;br /&gt;
&lt;br /&gt;
 ……………..&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
 [node07.datagrid.cea.fr]&lt;br /&gt;
 type=host&lt;br /&gt;
 metrics=+RunningJobs&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
c) #grep -i job /var/www/html/lrf/metric_map.php&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
                   &amp;quot;RunningJobs&amp;quot;        =&amp;gt; array(&amp;quot;RunningJobs&amp;quot;,&amp;quot;Jobs   running&amp;quot;,&amp;quot;count&amp;quot;,1,0,&#039;Jobsrunning.Running_Jobs&#039;),&lt;br /&gt;
&lt;br /&gt;
                        1 =&amp;gt; array(&#039;name&#039; =&amp;gt; &#039;JOBS STATISTICS&#039;, &#039;y-axis&#039; =&amp;gt; &#039;count&#039;, &#039;stack&#039; =&amp;gt; false, &#039;base&#039; =&amp;gt; 1,&lt;br /&gt;
&lt;br /&gt;
                            &#039;metrics&#039; =&amp;gt; array( 0 =&amp;gt; array(&#039;name&#039; =&amp;gt;  &#039;RunningJobs&#039;, &#039;summary&#039; =&amp;gt; true, &#039;title&#039; =&amp;gt; &#039;Running Jobs&#039;)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Pour configurer les alarmes ==&lt;br /&gt;
&lt;br /&gt;
a) créer un fichier xml par machine:&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
# cat /tmp/my_cnf_node07.xml&lt;br /&gt;
&amp;lt;?xml version = &#039;1.0&#039;?&amp;gt;&lt;br /&gt;
&amp;lt;CDBSEARCHLIST&amp;gt;&lt;br /&gt;
&amp;lt;HOST ID=&amp;quot;node07.datagrid.cea.fr&amp;quot; CLUSTER =&amp;quot;GRID_SERVICES&amp;quot; SUBCLUSTER =&amp;quot;&amp;quot; IMPORTANCE =&amp;quot;0&amp;quot; SURESTATUS =&amp;quot;TRUE&amp;quot; NOCONTACTTIMEOUT =&amp;quot;660&amp;quot;&lt;br /&gt;
PINGTIMEOUT =&amp;quot;&amp;quot; /&amp;gt;&lt;br /&gt;
&amp;lt;/CDBSEARCHLIST&amp;gt;&lt;br /&gt;
#&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
b) mettre a jour la Database:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
# lemon-ora.entities -u lemon -d xe -c /tmp/my_cnf_node07.xml&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Problemes rencontrés ==&lt;br /&gt;
&lt;br /&gt;
ne pas oublier d&#039;exporter les variables oracles&lt;br /&gt;
&lt;br /&gt;
le fichies nodes.map ne doit pas avoir de lignes vides&lt;br /&gt;
&lt;br /&gt;
Les Symlink avec cette version d&#039;apache ne fonctionne pas (on utlisie /var/www/html/lrf/data au lieu de /var/spool/data)&lt;br /&gt;
&lt;br /&gt;
Php avec oci8 tres sensibles aux versions (plus de soucis avec les versions SL4 ci dessus)&lt;br /&gt;
&lt;br /&gt;
= Test sur le réseaux datagrid.cea.fr: Iperf =&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Le 20/03/2007&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Avec 5 threads&#039;&#039;&#039; : &lt;br /&gt;
&lt;br /&gt;
Lyon -&amp;gt; Saclay : 550Mb/s (peu variable) ; &lt;br /&gt;
&lt;br /&gt;
Saclay -&amp;gt; Lyon : 600 Mb/s (très variables de 250 Mb/s à 750 Mb/s)).&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Avec 1 thread&#039;&#039;&#039; : 300 Mb/s dans les 2 sens&lt;br /&gt;
&lt;br /&gt;
= Test sur le réseaux datagrid.cea.fr: Transfert de fichiers -1ere PHASE- =&lt;br /&gt;
&lt;br /&gt;
=== Sites impliqués ===&lt;br /&gt;
* &#039;&#039;&#039;T1 CC-IN2P3 &#039;&#039;&#039;&lt;br /&gt;
** Contacts : &amp;lt;span style=&amp;quot;color:#0000F0;&amp;quot;&amp;gt; David Bouvet, Lionel Schwarz &amp;lt;/span&amp;gt;&lt;br /&gt;
** &#039;&#039;&#039;SE : ccsrm.in2p3.fr&#039;&#039;&#039;&lt;br /&gt;
*** Endpoint transferts DAPNIA-CC : /pnfs/in2p3.fr/data/dteam/disk/dapnia/&lt;br /&gt;
* &#039;&#039;&#039;T2 GRIF&#039;&#039;&#039;   &lt;br /&gt;
** Contacts : &amp;lt;span style=&amp;quot;color:#0000F0;&amp;quot;&amp;gt; Christine Leroy&amp;lt;/span&amp;gt;&lt;br /&gt;
** &#039;&#039;&#039;SE-DAPNIA : node12.datagrid.cea.fr&#039;&#039;&#039;&lt;br /&gt;
*** GlueServiceEndpoint: httpg://node12.datagrid.cea.fr:8443/srm/managerv1&lt;br /&gt;
*** GlueSAPath: /dpm/datagrid.cea.fr/home/dteam&lt;br /&gt;
** &#039;&#039;&#039;SE-LAL : grid05.lal.in2p3.fr&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
=== conditions de transferts pour FTS===&lt;br /&gt;
&lt;br /&gt;
Les transferts sont initiés depuis node02.datagrid.cea.fr&lt;br /&gt;
&lt;br /&gt;
* Avant tout transfert, il faut un &#039;&#039;&#039;proxy valide déposé sur un serveur MyProxy&#039;&#039;&#039; pour permettre au serveur FTS de renouveler un proxy expiré en cours de transfert&lt;br /&gt;
&lt;br /&gt;
 myproxy-init -s cclcgproxli01.in2p3.fr -d&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
* [[pour connaitre la configuration du canal FTS :]]&lt;br /&gt;
 glite-transfer-channel-list -s https://cclcgftsprod01.in2p3.fr:8443/glite-data-transfer-fts/services/ChannelManagement GRIF-IN2P3&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
* [[pour modifier la configuration du canal FTS :]]&lt;br /&gt;
&lt;br /&gt;
 glite-transfer-channel-set -s https://cclcgftsprod01.in2p3.fr:8443/glite-data-transfer-fts/services/ChannelManagement -f 10 -T 1 GRIF-IN2P3&lt;br /&gt;
&lt;br /&gt;
=== Les tests de transferts ===&lt;br /&gt;
&lt;br /&gt;
* [[Source d&#039;information:]]&lt;br /&gt;
-Script de test des transferts FTS proposé par GridPP à l&#039;adresse : http://www.gridpp.ac.uk/wiki/Transfer_Test_Python_Script_HOWTO &amp;lt;br&amp;gt;&lt;br /&gt;
-Le wiki GriPP est une mine d&#039;informations : http://www.gridpp.ac.uk/wiki/Main_Page&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
* [[1er Test: Utilisation du script de GRIDPP: filetransfer.py]]&lt;br /&gt;
&lt;br /&gt;
CC-&amp;gt;DAPNIA&lt;br /&gt;
 set SourceURL=&amp;quot;srm://ccsrm.in2p3.fr:8443/&amp;quot;&lt;br /&gt;
 set DestURL=&amp;quot;srm://node12.datagrid.cea.fr:8443/dpm/datagrid.cea.fr/home/dteam/&amp;quot;&lt;br /&gt;
&lt;br /&gt;
liste des fichiers:&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00007&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00008&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00009&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00011&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00012&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00013&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00014&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00015&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00016&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00017&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00018&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00019&lt;br /&gt;
&lt;br /&gt;
DAPNIA -&amp;gt; CC&lt;br /&gt;
&lt;br /&gt;
 set SourceURL=&amp;quot;srm://node12.datagrid.cea.fr:8443/dpm/datagrid.cea.fr/home/dteam/dapnia/&amp;quot;&lt;br /&gt;
 set DestURL=&amp;quot;srm://ccsrm.in2p3.fr:8443/pnfs/in2p3.fr/data/dteam/disk/dapnia/&amp;quot;&lt;br /&gt;
&lt;br /&gt;
liste des fichiers (1 seul SE-DISK)&lt;br /&gt;
&lt;br /&gt;
 cleroy/ATLAS-file00007&lt;br /&gt;
 cleroy/ATLAS-file00008&lt;br /&gt;
 cleroy/ATLAS-file00009&lt;br /&gt;
 cleroy/ATLAS-file00011&lt;br /&gt;
 cleroy/ATLAS-file00012&lt;br /&gt;
 cleroy/ATLAS-file00013&lt;br /&gt;
 cleroy/ATLAS-file00014&lt;br /&gt;
 cleroy/ATLAS-file00015&lt;br /&gt;
 cleroy/ATLAS-file00016&lt;br /&gt;
 cleroy/ATLAS-file00017&lt;br /&gt;
 cleroy/ATLAS-file00018&lt;br /&gt;
 cleroy/ATLAS-file00019&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
en parrallele avec n=10 pour les 2 type de transfet, pour durer environ 20 minutes (1Gb/s).&lt;br /&gt;
FTS configuré avec (f6;T2). &lt;br /&gt;
&lt;br /&gt;
 ESSAI du nbre de  |&lt;br /&gt;
 (fichier;stream)  | Bande passante(Mb/s)  | &lt;br /&gt;
 ------------------+-----------------------+&lt;br /&gt;
 | (f8;T1)         | 242                   |&lt;br /&gt;
 | (f6;T1)         | 301                   |&lt;br /&gt;
 | (f3;T1)         | 302                   |&lt;br /&gt;
 | (f2;T1)         | 185                   |&lt;br /&gt;
 | (f6;T2)         | 312                   |&lt;br /&gt;
 | (f6;T6)         | 284                   |&lt;br /&gt;
 | (f6;T4)         | 280                   |&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Resultat 26/04/2007 :&lt;br /&gt;
&lt;br /&gt;
D-CC&lt;br /&gt;
 Transfer Bandwidth Report:&lt;br /&gt;
 110/120 transferred in 2668.16920614 seconds&lt;br /&gt;
 81081938300.0 bytes transferred.&lt;br /&gt;
 Bandwidth: 243.108834667Mb/s&lt;br /&gt;
&lt;br /&gt;
CC-D&lt;br /&gt;
 Transfer Bandwidth Report:&lt;br /&gt;
 120/120 transferred in 3033.88385892 seconds&lt;br /&gt;
 88453023600.0 bytes transferred.&lt;br /&gt;
 Bandwidth: 233.240368355Mb/s&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Débit réseaux pour le SE DISK du DAPNIA (derriere node12):&lt;br /&gt;
&lt;br /&gt;
http://lcg2.in2p3.fr/wiki/images/Node11_net_fts_26042007.gif&lt;br /&gt;
&lt;br /&gt;
Débit réseaux routeur datagrid.cea.fr:&lt;br /&gt;
&lt;br /&gt;
http://lcg2.in2p3.fr/wiki/images/Routeur_datagridceafr_26042007.png&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
* [[2eme test: Utilisation du script de GRIDPP (filetransfer.py) et globus_url_copy]]&lt;br /&gt;
&lt;br /&gt;
utilisation de:&lt;br /&gt;
* filetransfer.py entre DAPNIA &amp;lt;-&amp;gt; Lyon (SE &amp;lt;-&amp;gt; SE)&lt;br /&gt;
* globus_url_copy et lcg-cr entre DAPNIA &amp;lt;-&amp;gt; Orsay (UI &amp;lt;-&amp;gt; SE)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Le 02/05/2007: Meme occupation réseaux :300Mb/s&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== &#039;&#039;&#039;CONCLUSION PRELIMINIARE&#039;&#039;&#039; ===&lt;br /&gt;
&lt;br /&gt;
=&amp;gt; Ces tests avaient pour but d&#039;occuper le plus possible la bande passante de notre réseaux datagrid.cea.fr, pour s&#039;assurer que le routeur tenait bien la charge&lt;br /&gt;
&lt;br /&gt;
=&amp;gt; Nous n&#039;avons pas reussi à occuper toute la bande passante: tests à poursuivre avec plus de client/serveur =&amp;gt; Le comble de l&#039;informaticien: réussir à faire mieux que ses utilisateurs:&lt;br /&gt;
&lt;br /&gt;
One day, One atlas physicit, Many jobs:&lt;br /&gt;
&lt;br /&gt;
http://lcg2.in2p3.fr/wiki/images/Node11.datagrid.cea.fr.rrd_NUMKBREADAVG_d.gif&lt;br /&gt;
&lt;br /&gt;
Débit réseaux SE DISK, le 16/06/2006&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Test sur le réseaux datagrid.cea.fr: Transfert de fichiers &#039;&#039;&#039;-2eme PHASE (3 SE-DISK au DAPNIA et multi threading)-&#039;&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Transfert FTS: (CC-&amp;gt;DAPNIA) // (DAPNIA-&amp;gt;CC) avec plusieurs SE-DISK du DAPNIA (node11, node18, node20) ===&lt;br /&gt;
&lt;br /&gt;
=== Transfert: FTS (CC-&amp;gt;DAPNIA) // FTS (DAPNIA-&amp;gt;CC) ) // globus-url-copy (UI DAPNIA -&amp;gt; SE LAL) // globus-url-copy (SE LAL -&amp;gt; UI DAPNIA) ===&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Priorites locales Filtre TORQUE-&#039;&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
http://lcg2.in2p3.fr/wiki/images/Submit_filter.txt&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Configuration thumper&#039;&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
La DOc:&lt;br /&gt;
http://www.sun.com/products-n-solutions/hardware/docs/pdf/820-1151-10.pdf&lt;br /&gt;
&lt;br /&gt;
http://doc.fedora-fr.org/RAID_Logiciel:_Comment_Installer_et_G%C3%A9rer_un_System_Raid&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Formatage des disks: ==&lt;br /&gt;
&lt;br /&gt;
Il faut des partitions du type type Linux raid autodetect (type fd)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 for i in   &lt;br /&gt;
 /dev/sda /dev/sdaa /dev/sdab /dev/sdad /dev/sdae /dev/sdaf /dev/sdag /dev/sdah /dev/sdai /dev/sdaj /dev/sd    /dev/sdal /dev/sdam /dev/sdan /dev/sdao /dev/sdap /dev/sdaq /dev/sdar /dev/sdas /dev/sdat /dev/sdau /dev/sdav /dev/sdd /dev/sde /dev/sdf /dev/sdg /dev/sdh /dev/sdi /dev/sdj /dev/sdk /dev/sdl /dev/sdm /dev/sdn /dev/sdo &lt;br /&gt;
 /dev/sdp /dev/sdq /dev/sdr /dev/sds /dev/sdt /dev/sdu /dev/sdv /dev/sdw /dev/sdx /dev/sdz; do export  &lt;br /&gt;
 $i; /root/script_raid $i; done&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node23 ~]# more /root/script_raid&lt;br /&gt;
 sfdisk -f $1 &amp;lt;&amp;lt; EOF&lt;br /&gt;
 0 60801 fd&lt;br /&gt;
 ;&lt;br /&gt;
 ;&lt;br /&gt;
 ;&lt;br /&gt;
 EOF&lt;br /&gt;
&lt;br /&gt;
Pour verifier:&lt;br /&gt;
&lt;br /&gt;
 # for i  &lt;br /&gt;
    &lt;br /&gt;
 in  /dev/sda /dev/sdaa /dev/sdab /dev/sdad /dev/sdae /dev/sdaf /dev/sdag /dev/sdah /dev/sdai /dev/sdaj &lt;br /&gt;
 /dev/sdak /dev/sdal /dev/sdam /dev/sdan /dev/sdao /dev/sdap /dev/sdaq /dev/sdar /dev/sdas /dev/sdat /dev/sdau /dev/sdav /dev/sdd /dev/sde /dev/sdf /dev/sdg /dev/sdh /dev/sdi /dev/sdj /dev/sdk /dev/sdl /dev/sdm /dev/sdn  /dev/sdo /dev/sdp /dev/sdq /dev/sdr /dev/sds /dev/sdt /dev/sdu /dev/sdv /dev/sdw /dev/sdx /dev/sdz; do  &lt;br /&gt;
 sfdisk --list $i ; done | more&lt;br /&gt;
&lt;br /&gt;
== Creation des Raids logiciel: ==&lt;br /&gt;
&lt;br /&gt;
Conseil de SUN:&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&amp;quot;Diff Raid 5 config does not change the availability that much, Raid 5 is one way parity, if you lose two disks in the same raid group, you lose the  data. The difference is probability of losing two disks is higher when you have higher number of disks in a raid group. We usually suggest using one disk out of each controller for parity, (six controller total), 5+1 configuration, 8 raid groups. Overhead is 1/6 about 16% capacity loss. add the OS disk, 20TB.&amp;quot;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 mdadm --create /dev/md1 --level=5 --raid- &lt;br /&gt;
 devices=6 /dev/sdab1 /dev/sdt1 /dev/sdar1 /dev/sdaj1 /dev/sdl1 /dev/sdd1&lt;br /&gt;
 mdadm --create /dev/md2 --level=5 --raid- &lt;br /&gt;
 devices=6 /dev/sdaf1 /dev/sdx1 /dev/sdav1 /dev/sdan1 /dev/sdp1 /dev/sdh&lt;br /&gt;
 mdadm --create /dev/md3 --level=5 --raid- &lt;br /&gt;
 devices=6 /dev/sdaa1 /dev/sds1 /dev/sdaq1 /dev/sdai1 /dev/sdk1 /dev/sdc1&lt;br /&gt;
 mdadm --create /dev/md4 --level=5 --raid- &lt;br /&gt;
 devices=6 /dev/sdae1 /dev/sdw1 /dev/sdau1 /dev/sdam1 /dev/sdo1 /dev/sdg1&lt;br /&gt;
 mdadm --create /dev/md5 --level=5 --raid- &lt;br /&gt;
 devices=6 /dev/sdz1 /dev/sdr1 /dev/sdap1 /dev/sdah1 /dev/sdj1 /dev/sdb1&lt;br /&gt;
 mdadm --create /dev/md6 --level=5 --raid- &lt;br /&gt;
 devices=6 /dev/sdad1 /dev/sdv1 /dev/sdat1 /dev/sdal1 /dev/sdn1 /dev/sdf1&lt;br /&gt;
 mdadm --create /dev/md7 --level=5 --raid-devices=5 /dev/sdq1 /dev/sdao1 /dev/sdag1 /dev/sdi1 /dev/sda1&lt;br /&gt;
 mdadm --create /dev/md8 --level=5 --raid-devices=5 /dev/sdu1 /dev/sdas1 /dev/sdak1 /dev/sdm1 /dev/sde1&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Sinon il est possible d&#039;avoir un disk de spare pour tous les raids, cf doc :&#039;&#039;&lt;br /&gt;
[http://images.globalknowledge.com/wwwimages/whitepaperpdf/WP_RCHE_10TipsTricks1.pdf] &lt;br /&gt;
&#039;&#039;mais je n&#039;ai pas eu le temps de tester.&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Pour verifier:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 cat /proc/mdstat&lt;br /&gt;
 mdadm --query /dev/md1&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Pour supprimer:&lt;br /&gt;
&lt;br /&gt;
 mdadm /dev/md1 stop&lt;br /&gt;
 mdadm /dev/md1 --remove&lt;br /&gt;
 mdadm --zero-superblock /dev/hdxx1&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 mkfs -t ext3 /dev/md1&lt;br /&gt;
 mount /dev/md1 /scratch&lt;br /&gt;
&lt;br /&gt;
== Pour les drivers: ==&lt;br /&gt;
&lt;br /&gt;
telecharger les outils et driver linux:&lt;br /&gt;
&lt;br /&gt;
http://www.sun.com/servers/x64/x4500/downloads.jsp&lt;br /&gt;
&lt;br /&gt;
telecharger: kernel-largesmp-devel-2.6.9-42.0.3.EL.x86_64&lt;br /&gt;
&lt;br /&gt;
Par contre il crée &lt;br /&gt;
&#039;&#039;&#039;/usr/src/kernels/2.6.9-42.0.3.EL-largesmp-x86_64&#039;&#039;&#039;  &lt;br /&gt;
au lieu de &#039;&#039;&#039;/usr/src/kernels/2.6.9-42.0.3.ELlargesmp-x86_64&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
faire donc un:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 cp -r /usr/src/kernels/2.6.9-42.0.3.EL-largesmp-x86_64 /usr/src/kernels/2.6.9-42.0.3.ELlargesmp-x86_64&lt;br /&gt;
&lt;br /&gt;
Ensuite:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 rpmbuild --rebuild   mvSatalinux-3.6.3_2-2.6.9_42.ELsmp_1.src.rpm&lt;br /&gt;
 rpm -e (de tous les rpm: &amp;quot;rpm -qa | grep -i mvsata&amp;quot;)&lt;br /&gt;
 rpm -ivh /usr/src/redhat/RPMS/x86_64/mvSatalinux-3.6.3_2-2.6.9_42.0.3.ELlargesmp_1.x86_64.rpm&lt;br /&gt;
 rpm -ivh /usr/src/redhat/RPMS/x86_64/mvSatalinux-debuginfo-3.6.3_2-2.6.9_42.0.3.ELlargesmp_1.x86_64.rpm&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
verifier:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 # modinfo mv_sata&lt;br /&gt;
 filename:       /lib/modules/2.6.9-42.0.3.ELlargesmp/kernel/drivers/scsi/mv_sata.ko&lt;br /&gt;
 description:    Marvell Serial ATA PCI-X Adapter version: 3.6.3_2&lt;br /&gt;
 license:        BSD&lt;br /&gt;
 alias:          pci:v000011ABd00007042sv*sd*bc*sc*i*&lt;br /&gt;
 alias:          pci:v000011ABd00006042sv*sd*bc*sc*i*&lt;br /&gt;
 alias:          pci:v000011ABd00006041sv*sd*bc*sc*i*&lt;br /&gt;
 alias:          pci:v000011ABd00006081sv*sd*bc*sc*i*&lt;br /&gt;
 alias:          pci:v000011ABd00005041sv*sd*bc*sc*i*&lt;br /&gt;
 alias:          pci:v000011ABd00005040sv*sd*bc*sc*i*&lt;br /&gt;
 alias:          pci:v000011ABd00005081sv*sd*bc*sc*i*&lt;br /&gt;
 alias:          pci:v000011ABd00005080sv*sd*bc*sc*i*&lt;br /&gt;
 depends:        scsi_mod&lt;br /&gt;
 vermagic:       2.6.9-42.0.3.ELlargesmp SMP gcc-3.4&lt;br /&gt;
 }}}&lt;br /&gt;
&lt;br /&gt;
== Test Performance Lecture/ecriture ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 # more /proc/mdstat&lt;br /&gt;
 Personalities : [raid5]&lt;br /&gt;
 md7 : active raid5 sdao1[1] sdag1[2] sdq1[0] sdi1[3]&lt;br /&gt;
      1953535744 blocks level 5, 64k chunk, algorithm 2 [5/4] [UUUU_]&lt;br /&gt;
 md5 : active raid5 sdap1[2] sdah1[3] sdz1[0] sdr1[1] sdj1[4] sdb1[5]&lt;br /&gt;
      2441919680 blocks level 5, 64k chunk, algorithm 2 [6/6] [UUUUUU]&lt;br /&gt;
 md3 : active raid5 sdaq1[2] sdai1[3] sdaa1[0] sds1[1] sdk1[4]&lt;br /&gt;
      2441919680 blocks level 5, 64k chunk, algorithm 2 [6/5] [UUUUU_]&lt;br /&gt;
 md8 : active raid5 sdas1[1] sdak1[2] sdu1[0] sdm1[3] sde1[4]&lt;br /&gt;
      1953535744 blocks level 5, 64k chunk, algorithm 2 [5/5] [UUUUU]&lt;br /&gt;
 md6 : active raid5 sdat1[2] sdal1[3] sdad1[0] sdv1[1] sdn1[4] sdf1[5]&lt;br /&gt;
      2441919680 blocks level 5, 64k chunk, algorithm 2 [6/6] [UUUUUU]&lt;br /&gt;
 md4 : active raid5 sdau1[2] sdam1[3] sdae1[0] sdw1[1] sdo1[4] sdg1[5]&lt;br /&gt;
      2441919680 blocks level 5, 64k chunk, algorithm 2 [6/6] [UUUUUU]&lt;br /&gt;
 md2 : active raid5 sdav1[2] sdan1[3] sdaf1[0] sdx1[1] sdp1[4]&lt;br /&gt;
      2441919680 blocks level 5, 64k chunk, algorithm 2 [6/5] [UUUUU_]&lt;br /&gt;
 md1 : active raid5 sdar1[2] sdaj1[3] sdab1[0] sdt1[1] sdl1[4] sdd1[5]&lt;br /&gt;
      2441919680 blocks level 5, 64k chunk, algorithm 2 [6/6] [UUUUUU]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 en MB/s&lt;br /&gt;
 Volumétrie: 19TB utile&lt;br /&gt;
 |	   md1    md2     md3	  md4    md5   md6      md7    md8    MOY     TOT (Mb/s)   Mb/s/TB	&lt;br /&gt;
 Write//    71,22  69,31  68,13  71,26  70,14   69,56   62,56  65,89   68,50     4384,56     230,76&lt;br /&gt;
 write seq 111,01 103,42  102,24 109,77	112,58	107,02	84,61  89,6   102,53125			&lt;br /&gt;
 read //   99,62   98,75   98,22  99,78	100,93	100,01	85,7   86,69   96,2125	 6157,6	     324,08&lt;br /&gt;
 read seq  275,4  254,28  250,69 267,62	274,16	280,52	188,37 197,58 248,5775&lt;br /&gt;
&lt;br /&gt;
== Configuration Reseaux avec 2 intefaces bond ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node23 ~]# more /etc/modprobe.conf&lt;br /&gt;
 alias eth0 e1000&lt;br /&gt;
 alias eth1 e1000&lt;br /&gt;
 alias eth2 e1000&lt;br /&gt;
 alias eth3 e1000&lt;br /&gt;
 alias eth4 e1000&lt;br /&gt;
 alias eth5 e1000&lt;br /&gt;
 alias eth6 e1000&lt;br /&gt;
 alias eth7 e1000&lt;br /&gt;
 install ipw3945 /sbin/modprobe --ignore-install ipw3945 ; sleep 0.5 ; /sbin/ipw3&lt;br /&gt;
 945d --quiet&lt;br /&gt;
 remove ipw3945 /sbin/ipw3945d --kill ; /sbin/modprobe -r --ignore-remove ipw3945&lt;br /&gt;
 alias usb-controller ehci-hcd&lt;br /&gt;
 alias usb-controller1 ohci-hcd&lt;br /&gt;
 ####BONDING&lt;br /&gt;
 alias bond0 bonding&lt;br /&gt;
 alias bond1 bonding&lt;br /&gt;
 #options bond0 -o bond0 mode=0 miimon=100&lt;br /&gt;
 options bond0 mode=0 miimon=100 max_bonds=2&lt;br /&gt;
 options bond1 -o bond1 mode=0 miimon=100&lt;br /&gt;
 ####END BONDING&lt;br /&gt;
 #Added mv_sata binary driver rpm installation&lt;br /&gt;
 alias scsi_hostadapter mv_sata&lt;br /&gt;
 alias sata_mv off&lt;br /&gt;
 [root@node23 ~]#&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node23 ~]# more /etc/sysconfig/network-scripts/ifcfg-*&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-bond0&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=bond0&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=static&lt;br /&gt;
 IPADDR=192.54.208.82&lt;br /&gt;
 NETMASK=255.255.255.0&lt;br /&gt;
 BROADCAST=192.54.208.255&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-bond1&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=bond1&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=static&lt;br /&gt;
 IPADDR=192.54.208.101&lt;br /&gt;
 NETMASK=255.255.255.0&lt;br /&gt;
 BROADCAST=192.54.208.255&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-eth0&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=eth0&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=none&lt;br /&gt;
 MASTER=bond0&lt;br /&gt;
 SLAVE=yes&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-eth1&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=eth1&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=none&lt;br /&gt;
 MASTER=bond0&lt;br /&gt;
 SLAVE=yes&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-eth2&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=eth2&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=none&lt;br /&gt;
 MASTER=bond0&lt;br /&gt;
 SLAVE=yes&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-eth3&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=eth3&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=none&lt;br /&gt;
 MASTER=bond0&lt;br /&gt;
 SLAVE=yes&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-eth4&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=eth4&lt;br /&gt;
 TYPE=Ethernet &lt;br /&gt;
 BOOTPROTO=none&lt;br /&gt;
 MASTER=bond1&lt;br /&gt;
 SLAVE=yes&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-eth5&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=eth5&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=none&lt;br /&gt;
 MASTER=bond1&lt;br /&gt;
 SLAVE=yes&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-eth6&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=eth6&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=none&lt;br /&gt;
 MASTER=bond1&lt;br /&gt;
 SLAVE=yes&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-eth7&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=eth7&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=none&lt;br /&gt;
 MASTER=bond1&lt;br /&gt;
 SLAVE=yes&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 # ifconfig&lt;br /&gt;
 bond0     Link encap:Ethernet  HWaddr 00:14:4F:20:FC:B0&lt;br /&gt;
          inet addr:192.54.208.82  Bcast:192.54.208.255  Mask:255.255.255.0&lt;br /&gt;
          inet6 addr: fe80::200:ff:fe00:0/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING MASTER MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:96129841 errors:2 dropped:0 overruns:0 frame:1&lt;br /&gt;
          TX packets:86702743 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:0&lt;br /&gt;
          RX bytes:144510750072 (134.5 GiB)  TX bytes:7460167641 (6.9 GiB)&lt;br /&gt;
 bond1     Link encap:Ethernet  HWaddr 00:15:17:2A:09:A6&lt;br /&gt;
          inet addr:192.54.208.101  Bcast:192.54.208.255  Mask:255.255.255.0&lt;br /&gt;
          inet6 addr: fe80::200:ff:fe00:0/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING MASTER MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:934011 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:33 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:0&lt;br /&gt;
          RX bytes:62926730 (60.0 MiB)  TX bytes:2572 (2.5 KiB)&lt;br /&gt;
 eth0      Link encap:Ethernet  HWaddr 00:14:4F:20:FC:B0&lt;br /&gt;
          inet6 addr: fe80::214:4fff:fe20:fcb0/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING SLAVE MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:73871160 errors:2 dropped:0 overruns:0 frame:1&lt;br /&gt;
          TX packets:21675694 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:1000&lt;br /&gt;
          RX bytes:110757099435 (103.1 GiB)  TX bytes:1865279045 (1.7 GiB)&lt;br /&gt;
          Base address:0xac00 Memory:fd2e0000-fd300000&lt;br /&gt;
 eth1      Link encap:Ethernet  HWaddr 00:14:4F:20:FC:B0&lt;br /&gt;
          inet6 addr: fe80::214:4fff:fe20:fcb0/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING SLAVE MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:22109357 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:21675683 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:1000&lt;br /&gt;
          RX bytes:33554660288 (31.2 GiB)  TX bytes:1864208904 (1.7 GiB)&lt;br /&gt;
          Base address:0xa800 Memory:fd2c0000-fd2e0000&lt;br /&gt;
 eth2      Link encap:Ethernet  HWaddr 00:14:4F:20:FC:B0&lt;br /&gt;
          inet6 addr: fe80::214:4fff:fe20:fcb0/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING SLAVE MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:55195 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:21675683 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:1000&lt;br /&gt;
          RX bytes:68939873 (65.7 MiB)  TX bytes:1865275229 (1.7 GiB)&lt;br /&gt;
          Base address:0xbc00 Memory:fd3e0000-fd400000&lt;br /&gt;
 eth3      Link encap:Ethernet  HWaddr 00:14:4F:20:FC:B0&lt;br /&gt;
          inet6 addr: fe80::214:4fff:fe20:fcb0/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING SLAVE MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:94129 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:21675683 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:1000&lt;br /&gt;
          RX bytes:130050476 (124.0 MiB)  TX bytes:1865404463 (1.7 GiB)&lt;br /&gt;
          Base address:0xb800 Memory:fd3c0000-fd3e0000&lt;br /&gt;
 eth4      Link encap:Ethernet  HWaddr 00:15:17:2A:09:A6&lt;br /&gt;
          inet6 addr: fe80::215:17ff:fe2a:9a6/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING SLAVE MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:0 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:10 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:1000&lt;br /&gt;
          RX bytes:0 (0.0 b)  TX bytes:758 (758.0 b)&lt;br /&gt;
          Base address:0xec00 Memory:fe4e0000-fe500000&lt;br /&gt;
 eth5      Link encap:Ethernet  HWaddr 00:15:17:2A:09:A6&lt;br /&gt;
          inet6 addr: fe80::215:17ff:fe2a:9a6/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING SLAVE MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:5 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:9 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:1000&lt;br /&gt;
          RX bytes:390 (390.0 b)  TX bytes:714 (714.0 b)&lt;br /&gt;
          Base address:0xe800 Memory:fe4c0000-fe4e0000&lt;br /&gt;
 eth6      Link encap:Ethernet  HWaddr 00:15:17:2A:09:A6&lt;br /&gt;
          inet6 addr: fe80::215:17ff:fe2a:9a6/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING SLAVE MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:1 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:8 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:1000&lt;br /&gt;
          RX bytes:66 (66.0 b)  TX bytes:628 (628.0 b)&lt;br /&gt;
          Base address:0xfc00 Memory:fe7e0000-fe800000&lt;br /&gt;
 eth7      Link encap:Ethernet  HWaddr 00:15:17:2A:09:A6&lt;br /&gt;
          inet6 addr: fe80::215:17ff:fe2a:9a6/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING SLAVE MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:934005 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:6 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:1000&lt;br /&gt;
          RX bytes:62926274 (60.0 MiB)  TX bytes:472 (472.0 b)&lt;br /&gt;
          Base address:0xf800 Memory:fe7c0000-fe7e0000&lt;br /&gt;
 lo        Link encap:Local Loopback&lt;br /&gt;
          inet addr:127.0.0.1  Mask:255.0.0.0&lt;br /&gt;
          inet6 addr: ::1/128 Scope:Host&lt;br /&gt;
          UP LOOPBACK RUNNING  MTU:16436  Metric:1&lt;br /&gt;
          RX packets:294 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:294 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:0&lt;br /&gt;
          RX bytes:46053 (44.9 KiB)  TX bytes:46053 (44.9 KiB)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Exemple de connection avec iperf (4 client pour chacune des interfaces)&lt;br /&gt;
&lt;br /&gt;
 tcp        0      0 *:20008                     *:*                         LISTEN&lt;br /&gt;
 tcp        0      0 *:20009                     *:*                         LISTEN&lt;br /&gt;
 tcp        0      0 node23.datagrid.cea.f:20008 wn048.datagrid.cea.fr:51269 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node27.datagrid.cea.f:20009 node02.datagrid.cea.f:39957 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node23.datagrid.cea.f:20008 wn004.datagrid.cea.fr:35417 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node23.datagrid.cea.f:20008 node01.datagrid.cea.f:38544 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node27.datagrid.cea.f:20009 wn049.datagrid.cea.fr:34206 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node23.datagrid.cea.f:20008 wn005.datagrid.cea.fr:35380 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node27.datagrid.cea.f:20009 wn050.datagrid.cea.fr:34567 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node27.datagrid.cea.f:20009 wn006.datagrid.cea.fr:42137 ESTABLISHED&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Exemple de configuration pour le SE DPM&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node24 root]# dpm-qryconf&lt;br /&gt;
 POOL CMS_SC DEFSIZE 200.00M GC_START_THRESH 0 GC_STOP_THRESH 0 DEF_LIFETIME 7.0d DEFPINTIME 2.0h  &lt;br /&gt;
 MAX_LIFETIME 1.0m MAXPINTIME 12.0h FSS_POLICY maxfreespace GC_POLICY lru RS_POLICY fifo GIDS 0 S_TYPE -  &lt;br /&gt;
 MIG_POLICY none RET_POLICY R&lt;br /&gt;
                              CAPACITY 23.51T FREE 22.27T ( 94.7%)&lt;br /&gt;
  node25.datagrid.cea.fr /pool_node25 CAPACITY 4.48T FREE 4.39T ( 98.1%)&lt;br /&gt;
  node26.datagrid.cea.fr /pool_node26 CAPACITY 233.71G FREE 216.23G ( 92.5%)&lt;br /&gt;
  node26.datagrid.cea.fr /pool_node26_2 CAPACITY 1.79T FREE 1.69T ( 94.5%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam1 CAPACITY 2.24T FREE 2.09T ( 93.2%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam2 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam3 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam7 CAPACITY 1.79T FREE 1.68T ( 93.8%)&lt;br /&gt;
  node27.datagrid.cea.fr /dteam4 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node27.datagrid.cea.fr /dteam5 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node27.datagrid.cea.fr /dteam6 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node27.datagrid.cea.fr /dteam8 CAPACITY 1.79T FREE 1.68T ( 93.8%)&lt;br /&gt;
&lt;br /&gt;
== Configuration Reseaux avec 1 intefaces bond ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 # more /etc/modprobe.conf&lt;br /&gt;
 alias eth0 e1000&lt;br /&gt;
 alias eth1 e1000&lt;br /&gt;
 alias eth2 e1000&lt;br /&gt;
 alias eth3 e1000&lt;br /&gt;
 alias eth4 e1000&lt;br /&gt;
 alias eth5 e1000&lt;br /&gt;
 alias eth6 e1000&lt;br /&gt;
 alias eth7 e1000&lt;br /&gt;
 options e1000 InterruptThrottleRate=3000&lt;br /&gt;
 install ipw3945 /sbin/modprobe --ignore-install ipw3945 ; sleep 0.5 ; /sbin/ipw3&lt;br /&gt;
 945d --quiet&lt;br /&gt;
 remove ipw3945 /sbin/ipw3945d --kill ; /sbin/modprobe -r --ignore-remove ipw3945&lt;br /&gt;
 alias usb-controller ehci-hcd&lt;br /&gt;
 alias usb-controller1 ohci-hcd&lt;br /&gt;
 ####BONDING&lt;br /&gt;
 alias bond0 bonding&lt;br /&gt;
 options bond0 mode=0 miimon=100&lt;br /&gt;
 ####END BONDING&lt;br /&gt;
 #Added mv_sata binary driver rpm installation&lt;br /&gt;
 alias scsi_hostadapter mv_sata&lt;br /&gt;
 alias sata_mv off&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
recharger les modules, redemarrer le reseaux, et verifier que tout est OK:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 # more /proc/net/bonding/bond0&lt;br /&gt;
 Ethernet Channel Bonding Driver: v2.6.3 (June 8, 2005)&lt;br /&gt;
 Bonding Mode: load balancing (round-robin)&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 MII Polling Interval (ms): 100&lt;br /&gt;
 Up Delay (ms): 0&lt;br /&gt;
 Down Delay (ms): 0&lt;br /&gt;
 Slave Interface: eth0&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 Link Failure Count: 0&lt;br /&gt;
 Permanent HW addr: 00:14:4f:20:fc:b0&lt;br /&gt;
 Slave Interface: eth1&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 Link Failure Count: 0&lt;br /&gt;
 Permanent HW addr: 00:14:4f:20:fc:b1&lt;br /&gt;
 Slave Interface: eth2&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 Link Failure Count: 0&lt;br /&gt;
 Permanent HW addr: 00:14:4f:20:fc:b2&lt;br /&gt;
 Slave Interface: eth3&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 Link Failure Count: 0&lt;br /&gt;
 Permanent HW addr: 00:14:4f:20:fc:b3 &lt;br /&gt;
 Slave Interface: eth4&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 Link Failure Count: 0&lt;br /&gt;
 Permanent HW addr: 00:15:17:2a:09:a6&lt;br /&gt;
 Slave Interface: eth5&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 Link Failure Count: 0&lt;br /&gt;
 Permanent HW addr: 00:15:17:2a:09:a7&lt;br /&gt;
 Slave Interface: eth6&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 Link Failure Count: 0&lt;br /&gt;
 Permanent HW addr: 00:15:17:2a:07:8c&lt;br /&gt;
 Slave Interface: eth7&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 Link Failure Count: 0&lt;br /&gt;
 Permanent HW addr: 00:15:17:2a:07:8d&lt;br /&gt;
&lt;br /&gt;
== Probleme sur les cartes reseaux supplémentaires: ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel: e1000: eth4: e1000_clean_tx_irq: Detected Tx Unit Hang&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   Tx Queue             &amp;lt;0&amp;gt;&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   TDH                  &amp;lt;2&amp;gt;&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   TDT                  &amp;lt;2&amp;gt;&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   next_to_use          &amp;lt;2&amp;gt;&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   next_to_clean        &amp;lt;0&amp;gt;&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel: buffer_info[next_to_clean]&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   time_stamp           &amp;lt;1144b73ba&amp;gt;&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   next_to_watch        &amp;lt;0&amp;gt;&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   jiffies              &amp;lt;1144b7a09&amp;gt;&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   next_to_watch.status &amp;lt;0&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel: e1000: eth5: e1000_clean_tx_irq: Detected Tx Unit Hang&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   Tx Queue             &amp;lt;0&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   TDH                  &amp;lt;1&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   TDT                  &amp;lt;1&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   next_to_use          &amp;lt;1&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   next_to_clean        &amp;lt;0&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel: buffer_info[next_to_clean]&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   time_stamp           &amp;lt;1144b77fa&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   next_to_watch        &amp;lt;0&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   jiffies              &amp;lt;1144b817b&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   next_to_watch.status &amp;lt;0&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
on n&#039;avait pas le bon driver e1000, voir paragraphe suivant pour loader le bon driver&lt;br /&gt;
&lt;br /&gt;
== driver carte réseaux ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Pour voir le driver adapté aux cartes:&lt;br /&gt;
&lt;br /&gt;
[http://support.intel.com/support/network/sb/cs-012904.htm]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node23 ~]# lspci | tail -4&lt;br /&gt;
 0d:01.0 Ethernet controller: Intel Corporation 82546GB Gigabit Ethernet Controller (rev 03)&lt;br /&gt;
 0d:01.1 Ethernet controller: Intel Corporation 82546GB Gigabit Ethernet Controller (rev 03)&lt;br /&gt;
 0e:01.0 Ethernet controller: Intel Corporation 82546GB Gigabit Ethernet Controller (rev 03)&lt;br /&gt;
 0e:01.1 Ethernet controller: Intel Corporation 82546GB Gigabit Ethernet Controller (rev 03)&lt;br /&gt;
 [root@node23 ~]#&lt;br /&gt;
&lt;br /&gt;
telecharger le bon driver puis l&#039;installer:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 # rpmbuild -tb e1000-7.6.9.tar.gz&lt;br /&gt;
 # rpm -ivh /usr/src/redhat/RPMS/x86_64/e1000-7.6.9-1.x86_64.rpm&lt;br /&gt;
 Preparing...                ########################################### [100%]&lt;br /&gt;
   1:e1000                  ########################################### [100%]&lt;br /&gt;
 original pci.ids saved in /usr/local/share/e1000&lt;br /&gt;
 original pcitable saved in /usr/local/share/e1000&lt;br /&gt;
 [root@node23 BONDING]#&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Dans le README, il preconnise de loader le module avec l&#039;option &#039;&#039;interruptThrottleRate=3000:&#039;&#039; &lt;br /&gt;
&lt;br /&gt;
tout recharger correctement:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 ifconfig bond0 down; ifconfig bond1 down; rmmod e1000; modprobe e1000  &lt;br /&gt;
 InterruptThrottleRate=3000,3000,3000,3000,3000,3000,3000,3000 ; rmmod bond0 ; rmmod bond1; modprobe bonding &lt;br /&gt;
 -o bond0 mode=0 miimon=100; modprobe bonding -o bond1 -o bond1 mode=0 miimon=100;  &lt;br /&gt;
 /etc/init.d/network restart&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
et modifier le fichier modprobe:&lt;br /&gt;
&lt;br /&gt;
 # more /etc/modprobe.conf&lt;br /&gt;
 alias eth0 e1000&lt;br /&gt;
 alias eth1 e1000&lt;br /&gt;
 alias eth2 e1000&lt;br /&gt;
 alias eth3 e1000&lt;br /&gt;
 alias eth4 e1000&lt;br /&gt;
 alias eth5 e1000&lt;br /&gt;
 alias eth6 e1000&lt;br /&gt;
 alias eth7 e1000&lt;br /&gt;
 options e1000 InterruptThrottleRate=3000&lt;br /&gt;
 install ipw3945 /sbin/modprobe --ignore-install ipw3945 ; sleep 0.5 ; /sbin/ipw3945d --quiet&lt;br /&gt;
 remove ipw3945 /sbin/ipw3945d --kill ; /sbin/modprobe -r --ignore-remove ipw3945&lt;br /&gt;
 alias usb-controller ehci-hcd&lt;br /&gt;
 alias usb-controller1 ohci-hcd&lt;br /&gt;
 ####BONDING&lt;br /&gt;
 alias bond0 bonding&lt;br /&gt;
 alias bond1 bonding&lt;br /&gt;
 options bond0 mode=0 miimon=100 max_bonds=2&lt;br /&gt;
 options bond1 -o bond1 mode=0 miimon=100&lt;br /&gt;
 ####END BONDING&lt;br /&gt;
 #Added mv_sata binary driver rpm installation&lt;br /&gt;
 alias scsi_hostadapter mv_sata&lt;br /&gt;
 alias sata_mv off&lt;br /&gt;
&lt;br /&gt;
== Test iperf ==&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;1) 1 interface bond0 (eth0, eth1, eth2, eth3):&#039;&#039;&#039;  ~ 2,7 Gb/s&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [  4] 10.0-20.0 sec    557 MBytes    467 Mbits/sec&lt;br /&gt;
 [  5] 10.0-20.0 sec  1.10 GBytes    941 Mbits/sec&lt;br /&gt;
 [  6] 10.0-20.0 sec    976 MBytes    819 Mbits/sec&lt;br /&gt;
 [  7] 10.0-20.0 sec    567 MBytes    476 Mbits/sec&lt;br /&gt;
 [  4] 20.0-30.0 sec    564 MBytes    473 Mbits/sec&lt;br /&gt;
 [  5] 20.0-30.0 sec  1.10 GBytes    941 Mbits/sec&lt;br /&gt;
 [  6] 20.0-30.0 sec    969 MBytes    813 Mbits/sec&lt;br /&gt;
 [  7] 20.0-30.0 sec    558 MBytes    468 Mbits/sec&lt;br /&gt;
 [  4] 30.0-40.0 sec    561 MBytes    470 Mbits/sec&lt;br /&gt;
 [  5] 30.0-40.0 sec  1.10 GBytes    941 Mbits/sec&lt;br /&gt;
 [  6] 30.0-40.0 sec    986 MBytes    827 Mbits/sec&lt;br /&gt;
 [  7] 30.0-40.0 sec    550 MBytes    461 Mbits/sec&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;2) 2 interfaces : bond0 (eth0, eth1) et bond1 (eth2,eth3):&#039;&#039;&#039;  ~900 Mb/s !!&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 netstat -a | grep 200&lt;br /&gt;
 tcp        0      0 *:20008                     *:*                         LISTEN&lt;br /&gt;
 tcp        0      0 *:20010                     *:*                         LISTEN&lt;br /&gt;
 tcp        0      0 node27.datagrid.cea.f:20010 wn049.datagrid.cea.fr:41057 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node27.datagrid.cea.f:20010 wn005.datagrid.cea.fr:44065 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node23.datagrid.cea.f:20008 node01.datagrid.cea.f:34342 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node23.datagrid.cea.f:20008 wn048.datagrid.cea.fr:34032 ESTABLISHED&lt;br /&gt;
&lt;br /&gt;
sur node 23: &lt;br /&gt;
 [  4] 20.0-25.0 sec    146 MBytes    244 Mbits/sec&lt;br /&gt;
 [  5] 20.0-25.0 sec    149 MBytes    251 Mbits/sec&lt;br /&gt;
 [  4] 25.0-30.0 sec    143 MBytes    240 Mbits/sec&lt;br /&gt;
 [  5] 25.0-30.0 sec    160 MBytes    268 Mbits/sec&lt;br /&gt;
 [  4] 30.0-35.0 sec    117 MBytes    196 Mbits/sec&lt;br /&gt;
 [  5] 30.0-35.0 sec    149 MBytes    250 Mbits/sec&lt;br /&gt;
sur node27:&lt;br /&gt;
 [  4] 20.0-25.0 sec    101 MBytes    170 Mbits/sec&lt;br /&gt;
 [  5] 20.0-25.0 sec    164 MBytes    275 Mbits/sec&lt;br /&gt;
 [  4] 25.0-30.0 sec    108 MBytes    181 Mbits/sec&lt;br /&gt;
 [  5] 25.0-30.0 sec    180 MBytes    303 Mbits/sec&lt;br /&gt;
 [  4] 30.0-35.0 sec    102 MBytes    172 Mbits/sec&lt;br /&gt;
 [  5] 30.0-35.0 sec    162 MBytes    272 Mbits/sec&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;3)interfaces : bond0 (eth0, eth1, eth2,eth3) et bond1 (eth4, eth5, eth6,eth7):&#039;&#039;&#039;  ~3,8Gb/s &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
sur node27:&lt;br /&gt;
 [  4] 20.0-30.0 sec    337 MBytes    283 Mbits/sec&lt;br /&gt;
 [  5] 20.0-30.0 sec    393 MBytes    329 Mbits/sec&lt;br /&gt;
 [  6] 20.0-30.0 sec    425 MBytes    357 Mbits/sec&lt;br /&gt;
 [  7] 20.0-30.0 sec    758 MBytes    636 Mbits/sec&lt;br /&gt;
sur node23:&lt;br /&gt;
 [  4] 20.0-30.0 sec    727 MBytes    610 Mbits/sec&lt;br /&gt;
 [  5] 20.0-30.0 sec  1.10 GBytes    941 Mbits/sec&lt;br /&gt;
 [  6] 20.0-30.0 sec    360 MBytes    302 Mbits/sec&lt;br /&gt;
 [  7] 20.0-30.0 sec    359 MBytes    301 Mbits/sec&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;4) 1 interface bond0 (eth0, eth1, eth2, eth3, eth4, eth5, eth6, eth7):&#039;&#039;&#039; ~5Gb/s&lt;br /&gt;
&lt;br /&gt;
 http://lcg.in2p3.fr/wiki/images/Node23_datagrid_cea_fr_rrd_NUMKBREADAVG_d.gif&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [  4] 10.0-20.0 sec    841 MBytes    705 Mbits/sec&lt;br /&gt;
 [  5] 10.0-20.0 sec  1001 MBytes    840 Mbits/sec&lt;br /&gt;
 [  6] 10.0-20.0 sec    671 MBytes    563 Mbits/sec&lt;br /&gt;
 [  7] 10.0-20.0 sec    581 MBytes    487 Mbits/sec&lt;br /&gt;
 [  8] 10.0-20.0 sec    431 MBytes    362 Mbits/sec&lt;br /&gt;
 [  9] 10.0-20.0 sec    535 MBytes    449 Mbits/sec&lt;br /&gt;
 [ 10] 10.0-20.0 sec    986 MBytes    827 Mbits/sec&lt;br /&gt;
 [ 11] 10.0-20.0 sec    878 MBytes    736 Mbits/sec&lt;br /&gt;
 [  4] 20.0-30.0 sec    903 MBytes    758 Mbits/sec&lt;br /&gt;
 [  5] 20.0-30.0 sec  1.04 GBytes    894 Mbits/sec&lt;br /&gt;
 [  6] 20.0-30.0 sec    263 MBytes    221 Mbits/sec&lt;br /&gt;
 [  7] 20.0-30.0 sec    169 MBytes    142 Mbits/sec&lt;br /&gt;
 [  8] 20.0-30.0 sec    731 MBytes    614 Mbits/sec&lt;br /&gt;
 [  9] 20.0-30.0 sec    916 MBytes    769 Mbits/sec&lt;br /&gt;
 [ 10] 20.0-30.0 sec    922 MBytes    774 Mbits/sec&lt;br /&gt;
 [ 11] 20.0-30.0 sec    395 MBytes    332 Mbits/sec&lt;br /&gt;
&lt;br /&gt;
== Test Performance DISK+NETWORK avec DPM ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node24 root]# dpm-qryconf&lt;br /&gt;
 POOL CMS_SC DEFSIZE 200.00M GC_START_THRESH 0 GC_STOP_THRESH 0 DEF_LIFETIME 7.0d DEFPINTIME 2.0h  &lt;br /&gt;
 MAX_LIFETIME 1.0m MAXPINTIME 12.0h FSS_POLICY maxfreespace GC_POLICY lru RS_POLICY fifo GIDS 0 S_TYPE -   &lt;br /&gt;
 MIG_POLICY none RET_POLICY R&lt;br /&gt;
                              CAPACITY 17.01T FREE 15.98T ( 93.9%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam1 CAPACITY 2.24T FREE 2.09T ( 93.2%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam2 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam3 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam7 CAPACITY 1.79T FREE 1.68T ( 93.8%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam4 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam5 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam6 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam8 CAPACITY 1.79T FREE 1.68T ( 93.8%)&lt;br /&gt;
&lt;br /&gt;
sur l&#039;UI:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [cleroy@node02 2_IPbonding]$ time ./transfert_concurrent_client_node24.py&lt;br /&gt;
 globus-url-copy file:/home/cleroy/DTEAM_2004/4_Tt2t1/ATLAS_DATA &lt;br /&gt;
 gsiftp://node24.datagrid.cea.fr/dpm/datagrid.cea.fr/home/dteam/dapnia/cleroy/TO_BE_REMOVED/&lt;br /&gt;
 ATLAS_DATA_Trf00001&lt;br /&gt;
 ...&lt;br /&gt;
 ....&lt;br /&gt;
 real    2m13.017s&lt;br /&gt;
 user    1m4.270s&lt;br /&gt;
 sys     0m48.790s&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Sur le SE disk:&lt;br /&gt;
&lt;br /&gt;
 [root@node23 ~]# ll /dteam*/dteam/2007-10-10&lt;br /&gt;
 /dteam1/dteam/2007-10-10:&lt;br /&gt;
 total 1441096&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA2_Trf00001.4189.0&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA3_Trf00000.4181.0&lt;br /&gt;
 /dteam2/dteam/2007-10-10:&lt;br /&gt;
 total 1441104&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:37 ATLAS_DATA_Trf00000.4182.0&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:37 ATLAS_DATA_Trf00001.4174.0&lt;br /&gt;
 -rw-r--r--  1 root   root           5 Oct 10 17:27 essai&lt;br /&gt;
 /dteam3/dteam/2007-10-10:&lt;br /&gt;
 total 1441096&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA4_Trf00001.4175.0&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:37 ATLAS_DATA8_Trf00001.4183.0 &lt;br /&gt;
 /dteam4/dteam/2007-10-10:&lt;br /&gt;
 total 1441096&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:37 ATLAS_DATA7_Trf00001.4184.0&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA8_Trf00000.4176.0&lt;br /&gt;
 /dteam5/dteam/2007-10-10:&lt;br /&gt;
 total 1441096&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA2_Trf00000.4177.0&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:37 ATLAS_DATA7_Trf00000.4185.0&lt;br /&gt;
 /dteam6/dteam/2007-10-10:&lt;br /&gt;
 total 1441096&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA5_Trf00001.4178.0&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:37 ATLAS_DATA6_Trf00000.4188.0 &lt;br /&gt;
 /dteam7/dteam/2007-10-10:&lt;br /&gt;
 total 1441096&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA3_Trf00001.4186.0&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA6_Trf00001.4180.0&lt;br /&gt;
 /dteam8/dteam/2007-10-10:&lt;br /&gt;
 total 1441096&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA4_Trf00000.4179.0&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA5_Trf00000.4187.0&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
16 fichiers en paralleles de 737 MB: &lt;br /&gt;
11792 MB en 133 s = 88 MB/s = 709 Mb/s&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
autre test: &lt;br /&gt;
(16 * 20 = 320 )fichiers de 737MB : 235840 MB en  30m29.512s : 128 MB/s : 1024 Mb/s&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== DPM et XROOTD ==&lt;br /&gt;
&lt;br /&gt;
Ce document décrit la procédure utilisée à l&#039;IPNO pour installer xrootd sur un serveur DPM. La procédure d&#039;installation doit être effectuée sur chaque server (head node et disk servers). A l&#039;IPNO l&#039;installation a eu lieu sur un unique serveur à la fois head node et disk server.&lt;br /&gt;
&lt;br /&gt;
=== La documentation utile ===&lt;br /&gt;
Configuring &#039;xroot&#039; Protocol on DPM (Andreas Peters) [[BR]]&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/LCG/DpmXrootAccess&lt;br /&gt;
&lt;br /&gt;
How to Install and Debug Xrootd on a DPM Storage Element (Jean-Michel Barbet) [[BR]]&lt;br /&gt;
http://alien.cern.ch/twiki/bin/view/AliEn/HowToInstallXrootdAndDPM&lt;br /&gt;
&lt;br /&gt;
LCG-France T2-T3 Technical meeting : DPM/xrootd introduction (Jean-Michel Barbet)[[BR]]&lt;br /&gt;
http://indico.in2p3.fr/conferenceDisplay.py?confId=821&lt;br /&gt;
&lt;br /&gt;
Xrootd Tutorial (Artem Trunov) [[BR]]&lt;br /&gt;
http://indico.cern.ch/materialDisplay.py?contribId=8&amp;amp;sessionId=0&amp;amp;materialId=slides&amp;amp;confId=a058483&lt;br /&gt;
&lt;br /&gt;
=== Firewall: ports à ouvrir ===&lt;br /&gt;
 * Sur le xrootd Manager (DPM head node) : 1094&lt;br /&gt;
 * Sur les xrootd servers (disk servers) : 1095&lt;br /&gt;
 * Si le xrootd manager est aussi disk server : 1095 (sur le manager en plus de 1094)&lt;br /&gt;
&lt;br /&gt;
=== Installation Configuration en utilisant les scripts fournis par ALICE ===&lt;br /&gt;
&lt;br /&gt;
=== SPMA ===&lt;br /&gt;
Editer /etc/spma.conf :&lt;br /&gt;
&lt;br /&gt;
 * userpkgs = yes&lt;br /&gt;
 * userprio = yes&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
===== Non-YAIM configuration =====&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
 * # wget http://project-arda-dev.web.cern.ch/project-arda-dev/xrootd/tarballs/installbox/dpm-config.tgz&lt;br /&gt;
 * # tar zxf dpm-config.tgz&lt;br /&gt;
 * # chmod u+x ./conf.xrootd&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
Il faut commenter l&#039;appel à la fonction requires dans config_DPM_xrootd et définir la&lt;br /&gt;
variable YAIM_LOG dans conf.xrootd, sinon il y a des messages d&#039;erreur au lancement de conf.xrootd .&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
 * # cp config_DPM_xrootd config_DPM_xrootd.orig&lt;br /&gt;
 * # cp conf.xrootd conf.xrootd.orig&lt;br /&gt;
 * # vi config_DPM_xrootd ---&amp;gt; commenter l&#039;appel à requires&lt;br /&gt;
 * # vi conf.xrootd    ---&amp;gt; définir YAIM_LOG&lt;br /&gt;
&lt;br /&gt;
 * # diff config_DPM_xrootd config_DPM_xrootd.orig&lt;br /&gt;
 * 2c2&lt;br /&gt;
 * &amp;lt;   #requires $1 INSTALL_ROOT&lt;br /&gt;
 * ---&lt;br /&gt;
 * &amp;gt;   requires $1 INSTALL_ROOT&lt;br /&gt;
&lt;br /&gt;
 * # diff conf.xrootd conf.xrootd.orig&lt;br /&gt;
 * 4d3&lt;br /&gt;
 * &amp;lt; YAIM_LOG=/tmp/yaim.log&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Alice utilise l&#039;authentification TokenAuthZ. GSI n&#039;est pas encore supportée. Il faut donc éditer le fichier&lt;br /&gt;
/opt/lcg/etc/xrootd/authz.cf  (ce fichier ne sera pas utile avec GSI).&lt;br /&gt;
&lt;br /&gt;
 * # vi /opt/lcg/etc/xrootd/authz.cf :&lt;br /&gt;
 * changer /usr/local/xroot en /opt/lcg et&lt;br /&gt;
 * EXPORT PATH:/ en EXPORT PATH:/dpm/in2p3.fr/home/alice/&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Editer les scripts de lancement pour changer XRDLOCATION=&amp;quot;/usr/local/xroot&amp;quot; en XRDLOCATION=&amp;quot;/opt/lcg&amp;quot;.&lt;br /&gt;
&lt;br /&gt;
Les fichiers à éditer sont : /etc/init.d/dpm-xrd /etc/init.d/dpm-olb /etc/init.d/dpm-manager-xrd /etc/init.d/dpm-manager-olb /etc/init.d/xrdapmon&lt;br /&gt;
&lt;br /&gt;
Les scripts de démarrage regénèrent à chaque lancement le fichier /opt/lcg/etc/xrd.dpm.cf utilisé par les daemons. Ce fichier est &lt;br /&gt;
créé à partir du fichier /etc/xrd.dpm.config (ou /etc/xrd.dpm.config.gsi si avec GSI). C&#039;est donc dans /etc/sysconfig/dpm-xrd &lt;br /&gt;
qu&#039;il faut modifier la config xrootd si besoin est, avant de relancer les daemons.&lt;br /&gt;
&lt;br /&gt;
Modifier /etc/sysconfig/dpm-xrd comme indiqué ci-dessous :&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * # cp /etc/sysconfig/dpm-xrd.example /etc/sysconfig/dpm-xrd&lt;br /&gt;
 * # vi /etc/sysconfig/dpm-xrd&lt;br /&gt;
 * ...&lt;br /&gt;
 * # set the redirector host&lt;br /&gt;
 * MANAGERHOST=&amp;quot;ipnsedpm.in2p3.fr&amp;quot;&lt;br /&gt;
 * export DPM_HOST=$MANAGERHOST&lt;br /&gt;
 * export DPNS_HOST=$MANAGERHOST&lt;br /&gt;
 * ...&lt;br /&gt;
 * #############################################################################&lt;br /&gt;
 * # default authentication is with GSI authentication&lt;br /&gt;
 * #XRDCONFIG=&amp;quot;xrd.dpm.config.gsi&amp;quot;&lt;br /&gt;
 * # if you want GSI authentication disabled set&lt;br /&gt;
 * XRDCONFIG=&amp;quot;xrd.dpm.config&amp;quot;&lt;br /&gt;
 * ...&lt;br /&gt;
 * #XRDOFS=&amp;quot;Ofs&amp;quot;&lt;br /&gt;
 * # the ALICE Ofs plugin&lt;br /&gt;
 * XRDOFS=&amp;quot;TokenAuthzOfs&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * # vi /etc/shift.conf&lt;br /&gt;
 * Ajouter (à faire normalement via Quattor):&lt;br /&gt;
 * DPM PROTOCOLS rfio gsiftp xroot&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * Lancer la config :&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * # ./conf.xrootd&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * # more /tmp/yaim.log&lt;br /&gt;
 * # service dpm restart&lt;br /&gt;
 * # service dpnsdaemon restart (peut-etre pas necessaire)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
===== Les process qui tournent =====&lt;br /&gt;
Sur le manager :&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
 * dpmmgr 2816  1 0 Apr28 ? 00:00:00 /opt/lcg/bin/dpm-manager-olbd -d -b -n manager -c /opt/lcg/etc/xrd.dpm.cf -l /var/log/xroot//olblog&lt;br /&gt;
 * dpmmgr 3004  1 0 Apr28 ? 00:00:00 /opt/lcg/bin/dpm-manager-xrootd-d -b -n manager -c /opt/lcg/etc/xrd.dpm.cf -l /var/log/xroot//xrdlog&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
Sur les servers xrootd :&lt;br /&gt;
&lt;br /&gt;
 * dpmmgr 2726  1 0 Apr28 ? 00:00:00 /opt/lcg/bin/dpm-olbd -d -b -n server -c /opt/lcg/etc/xrd.dpm.cf -l /var/log/xroot//olblog&lt;br /&gt;
 * dpmmgr 2911  1 0 Apr28 ? 00:00:03 /opt/lcg/bin/dpm-xrootd -d -b -n server -c /opt/lcg/etc/xrd.dpm.cf -l /var/log/xroot//xrdlog&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==== Test ====&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * xrdcp /etc/hosts root://ipnsedpm.in2p3.fr://dpm/in2p3.fr/home/alice/test_ok.txt -v&lt;br /&gt;
 * xrdcp root://ipnsedpm.in2p3.fr://dpm/in2p3.fr/home/alice/test_ok.txt /tmp/xrd_copied_file -v&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Utiliser l&#039;option &#039;-d 1&#039; par exemple pour un mode un peu plus verbeux. &lt;br /&gt;
&lt;br /&gt;
Les fichiers peuvent être effacer par rfrm : &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * # rfrm /dpm/in2p3.fr/home/alice/test_ok.txt&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
En principe ça ne devrait pas marcher car il faut être authetifié par TokenAuthZ pour pouvoir faire des delete.&lt;br /&gt;
&lt;br /&gt;
==== Divers ====&lt;br /&gt;
&lt;br /&gt;
===== Pour arrêter / démarrer les services =====&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * service dpm-xrd restart&lt;br /&gt;
 * service dpm-olb restart&lt;br /&gt;
 * service dpm-manager-xrd restart&lt;br /&gt;
 * service dpm-manager-olb restart&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
===== L&#039;authentification =====&lt;br /&gt;
xrootd ne supporte pas encore d&#039;authentification GSI mais l&#039;authentification TokenAuthZ. &lt;br /&gt;
Le fichier d&#039;authentification est le suivant :&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * # cat /opt/lcg/etc/xrootd/authz.cf&lt;br /&gt;
 * KEY VO:*       PRIVKEY:/opt/lcg/etc/xrootd/pvkey.pem PUBKEY:/opt/lcg/etc/xrootd/pkey.pem&lt;br /&gt;
 * EXPORT PATH:/dpm/in2p3.fr/home/alice/ VO:*     ACCESS:ALLOW CERT:*&lt;br /&gt;
 * RULE PATH:/ AUTHZ:delete| NOAUTHZ:read|write|write-once| VO:* CERT:*&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
La dernière ligne signifie que tout le monde peut lire et écrire via xrootd, mais qu&#039;il faut une authentification via &lt;br /&gt;
TokenAuthZ pour pouvoir supprimer les fichiers.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Installation Configuration en utilisant Quattor ===&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==== installation RPM ====&lt;br /&gt;
RPM disponible:&lt;br /&gt;
http://project-arda-dev.web.cern.ch/project-arda-dev/alice/xrootd-dpm/&lt;br /&gt;
&lt;br /&gt;
Pour installer les bons RPM, il faut cette variable :&lt;br /&gt;
&lt;br /&gt;
 variable SEDPM_XROOTD_SERVER = true;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
pour la liste de RPMs, voir les templates:&lt;br /&gt;
&lt;br /&gt;
 cfg/grid/glite-3.1/glite/se_dpm/rpms/ « arch »/xrootd_*.tpl&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
==== configuration ====&lt;br /&gt;
Actuellement configuration à la main, voir :&lt;br /&gt;
&lt;br /&gt;
http://lcg2.in2p3.fr/wiki/index.php/User_talk:LEROY#Non-YAIM_configuration&lt;br /&gt;
&lt;br /&gt;
+ lien à créer:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 ln -s /opt/lcg/lib/libXrdSec.so /opt/lcg/lib64/libXrdSec.so&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Pour configuration via quattor:&lt;br /&gt;
Modification des templates à revoir (problemes du component):&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
Sending        cfg/clusters/dapnia-glite-3.1/lcg/source/pro_se_dpm_config.tpl&lt;br /&gt;
&lt;br /&gt;
Sending        cfg/clusters/dapnia-glite-3.1/profiles/profile_node11.tpl&lt;br /&gt;
&lt;br /&gt;
Sending        cfg/grid/glite-3.1/components/dpmlfc/schema.tpl&lt;br /&gt;
&lt;br /&gt;
Sending        cfg/grid/glite-3.1/glite/se_dpm/config.tpl&lt;br /&gt;
&lt;br /&gt;
Adding         cfg/grid/glite-3.1/glite/se_dpm/disk/xrootd.tpl&lt;br /&gt;
&lt;br /&gt;
Sending        cfg/grid/glite-3.1/glite/se_dpm/rpms/config.tpl&lt;br /&gt;
&lt;br /&gt;
Adding         cfg/grid/glite-3.1/glite/se_dpm/rpms/i386/xrootd_disk.tpl&lt;br /&gt;
&lt;br /&gt;
Adding         cfg/grid/glite-3.1/glite/se_dpm/rpms/i386/xrootd_head.tpl&lt;br /&gt;
&lt;br /&gt;
Adding         cfg/grid/glite-3.1/glite/se_dpm/rpms/x86_64/xrootd_disk.tpl&lt;br /&gt;
&lt;br /&gt;
Adding         cfg/grid/glite-3.1/glite/se_dpm/rpms/x86_64/xrootd_head.tpl&lt;br /&gt;
&lt;br /&gt;
Adding         cfg/grid/glite-3.1/glite/se_dpm/server/xrootd.tpl&lt;br /&gt;
&lt;br /&gt;
Sending        cfg/grid/glite-3.1/glite/se_dpm/service.tpl&lt;br /&gt;
&lt;br /&gt;
Sending        cfg/grid/glite-3.1/machine-types/se_dpm.tpl&lt;br /&gt;
&lt;br /&gt;
Sending        cfg/grid/glite-3.1/repository/config/glite.tpl&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
== Conclusion ==&lt;br /&gt;
Si on cumule test lecture/écriture et test iperf (avec 1 interface bond0 qui agrège les 8 Ethernet) on arrive à sortir les 230Mb/s et par TB. &lt;br /&gt;
&lt;br /&gt;
Necessite de bien maîtriser le raid logiciel et de le monitorer&lt;br /&gt;
&lt;br /&gt;
Existence des drivers pour quelques versions de Linux&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=User_talk:LEROY&amp;diff=6201</id>
		<title>User talk:LEROY</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=User_talk:LEROY&amp;diff=6201"/>
		<updated>2011-08-29T14:18:32Z</updated>

		<summary type="html">&lt;p&gt;LEROY: /* Mise hors service du LCG-CE (réinstallé en serveur (Maui + torque Only)) */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Mise hors service du LCG-CE (réinstallé en serveur (Maui + torque Only))  =&lt;br /&gt;
&lt;br /&gt;
Mise hors service du LCG-CE via Quattor sur un cluster avec :&lt;br /&gt;
-une machine, M1 :(lcg-CE +Maui + torque)  et&lt;br /&gt;
- une deuxième Machine, M2 : CREAM-CE&lt;br /&gt;
La Première machine étant réinstallé en serveur (Maui + torque Only)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== 1)M1 : serveur Maui + torque Only en SL5 ==&lt;br /&gt;
Inclure un nouveau type de machine dans M1 :&lt;br /&gt;
=== a)include { &#039;machine-types/torque_server&#039; (a la place du glite_ce) ===&lt;br /&gt;
=== b)Ajouter la derniere version de maui  ===&lt;br /&gt;
&#039;/software/packages&#039;=pkg_repl(&#039;maui&#039;,&#039;3.3.1-1.sl5&#039;,&#039;x86_64&#039;);&lt;br /&gt;
&#039;/software/packages&#039;=pkg_repl(&#039;maui-client&#039;,&#039;3.3.1-1.sl5&#039;,&#039;x86_64&#039;);&lt;br /&gt;
&#039;/software/packages&#039;=pkg_repl(&#039;maui-server&#039;,&#039;3.3.1-1.sl5&#039;,&#039;x86_64&#039;);&lt;br /&gt;
&lt;br /&gt;
=== c) SL5 ===&lt;br /&gt;
&lt;br /&gt;
Deplacer le profile ainsi que le template pro_lcg2_config_site_maui.tpl dans le cluster glite 3.2 et modifier le *nodes_properties.tpl (install SL5)&lt;br /&gt;
&lt;br /&gt;
=== d) Declarer une nouvelle variable ===&lt;br /&gt;
variable &#039;&#039;&#039;LRMS_SERVER_HOST&#039;&#039;&#039; dans &#039;pro_lcg2_config_site.tpl&#039; et &#039;pro_site_common_config.tpl&#039;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Template modifié lors de ces étapes:&lt;br /&gt;
&lt;br /&gt;
Suppression cfg/clusters/irfu/glite-3.1/profiles/profile_node07.tpl&lt;br /&gt;
Suppression cfg/clusters/irfu/glite-3.1/site/pro_lcg2_config_site_maui.tpl&lt;br /&gt;
Ajout cfg/clusters/irfu/glite-3.2/profiles/profile_node07.tpl&lt;br /&gt;
Ajout cfg/clusters/irfu/glite-3.2/site/pro_lcg2_config_site_maui.tpl&lt;br /&gt;
Envoi cfg/sites/dapnia/site/config/dapnia_nodes_properties.tpl&lt;br /&gt;
&lt;br /&gt;
M cfg/clusters/irfu/test-glite-3.2/site/pro_lcg2_config_site.tpl&lt;br /&gt;
M cfg/clusters/irfu/glite-3.1_MPI/profiles/profile_node16.tpl&lt;br /&gt;
M cfg/clusters/irfu/glite-3.1_MPI/site/pro_lcg2_config_site.tpl&lt;br /&gt;
M cfg/clusters/irfu/glite-3.2_MPI/site/pro_lcg2_config_site.tpl&lt;br /&gt;
M cfg/sites/dapnia/site/pro_site_common_config.tpl&lt;br /&gt;
M cfg/sites/dapnia/site/pro_site_ui_dapnia_users_env.tpl&lt;br /&gt;
M cfg/sites/dapnia/site/pro_lcg2_config_site.tpl&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== 2)	Déplacer le site BDII sur une autre machine (anciennement sur le LCG-CE) ==&lt;br /&gt;
&lt;br /&gt;
Enlever les variable de configuration de BDII sur M1 et les ajouter sur une autre machine (LFC exemple) :&lt;br /&gt;
variable BDII_TYPE=&#039;site&#039;; # site bdii&lt;br /&gt;
variable BDII_SUBSITE_ONLY = false;&lt;br /&gt;
variable BDII_SUBSITE = &#039;IRFU&#039;;&lt;br /&gt;
&lt;br /&gt;
3)	Résoudre l’erreur : Bad UID for job execution&lt;br /&gt;
http://grid.pd.infn.it/cream/field.php?n=Main.ErrorMessagesReportedByCREAMToClient#badui&lt;br /&gt;
en rajoutant le fichier mentionné: /etc/hosts.equiv&lt;br /&gt;
&lt;br /&gt;
4)	Resoudre le probleme de ‘resource not available’ vu par les WMS :&lt;br /&gt;
En fait le système d’information ne marchait pas bien sur M2 (node74) :&lt;br /&gt;
$ ldapsearch -x -LLL -H ldap://egee-bdii.cnaf.infn.it:2170 -b Mds-Vo-name=GRIF-IRFU,Mds-Vo-name=GRIF,mds-vo-name=local,o=grid &#039;objectclass=GlueSubCluster&#039; | grep node74&lt;br /&gt;
$&lt;br /&gt;
Ne rendait rien….&lt;br /&gt;
Ajout de  ces 2 variables dans le profile dde M2 ( CREAM CE)  :&lt;br /&gt;
variable CE_HOST ?= &#039;node74.datagrid.cea.fr&#039;;&lt;br /&gt;
variable GIP_CLUSTER_PUBLISHER_HOST ?= CE_HOST;&lt;br /&gt;
&lt;br /&gt;
5)	Résoudre les problèmes de publication (4444 jobs waiting…)&lt;br /&gt;
1)Inclure le client NFS sur M1 :&lt;br /&gt;
variable NFS_CLIENT_ENABLED ?= true;&lt;br /&gt;
Car M1 renseigne le GIP de M2 dans le software area de dteam via un cron sur M1.&lt;br /&gt;
Attention malgré l’option no_root_squash dans l’export du serveur NFS, il faut que les 2 fichiers :&lt;br /&gt;
gip-ce-dynamic-info-maui.cache&lt;br /&gt;
gip-ce-dynamic-info-scheduler.cache&lt;br /&gt;
Existent dans ce software area et appartiennent à root.&lt;br /&gt;
Faire un chmod 777 sur le serveur NFS  le temps du cron sur M1, puis refaire un chown 755 (à analyser ?)&lt;br /&gt;
&lt;br /&gt;
2)un des plugin (/opt/lcg/libexec/lcg-info-dynamic-maui) est buggé :&lt;br /&gt;
export PYTHONPATH=/opt/lcg/lib/python:${PYTHONPATH} ; python /opt/lcg/libexec/lcg-info-dynamic-maui --host node07.datagrid.cea.fr --max-normal-slots 2236 --ce-ldif /var/glite/static-file-all-CE-pbs.ldif --diagnose-output /tmp/maui-reservations.list&lt;br /&gt;
Traceback (most recent call last):&lt;br /&gt;
File &amp;quot;/opt/lcg/libexec/lcg-info-dynamic-maui&amp;quot;, line 244, in ?&lt;br /&gt;
if not queueParams:&lt;br /&gt;
File &amp;quot;/usr/lib64/python2.4/site-packages/pbs/PBSQuery.py&amp;quot;, line 351, in __getattr__&lt;br /&gt;
raise PBSError(error)&lt;br /&gt;
PBSQuery.PBSError: Attribute key error: __nonzero__&lt;br /&gt;
&lt;br /&gt;
Recuperer celui de grid33.lal.in2p3.fr&lt;br /&gt;
Patch à venir&lt;br /&gt;
&lt;br /&gt;
= FTS =&lt;br /&gt;
&lt;br /&gt;
&#039;connaitre la list des channels:&#039;&lt;br /&gt;
&lt;br /&gt;
 glite-transfer-channel-list -s cclcgftsprod.in2p3.fr IN2P3-IRFU&lt;br /&gt;
&lt;br /&gt;
&#039;reactiver un channel&#039;&lt;br /&gt;
&lt;br /&gt;
 glite-transfer-channel-setvoshare -s cclcgftsprod.in2p3.fr &amp;lt;CHANNEL_NAME&amp;gt; atlas 100&lt;br /&gt;
&lt;br /&gt;
= Installation et Configuration d&#039;une VO-BOX ALICE =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Introduction ==&lt;br /&gt;
&lt;br /&gt;
Un site grille qui souhaite supporter l&#039;expérience ALICE, doit installer une VO-BOX. ALICE utilise [http://alien.cern.ch/twiki/bin/view/AliEn/Home AliEN] (Alice ENvironment) comme plateforme logicielle pour la simulation et l&#039;analyse des données. Alien est installé sur chaque VO-BOX. C&#039;est le CE d&#039;Alien qui soumet les Job Agents (JAs) au CE du site. Les JAs vont ensuite chercher les jobs dans central Task Queue de Alien. Les jobs écrivent via xrootd (directement vers le CERN pour le moment). Comme il n&#039;y a pas encore d&#039;interface xrootd/SRM, chaque VO-BOX doit fournir un stockage xrootd qui peut être sur un disque local.&lt;br /&gt;
&lt;br /&gt;
Les documents à lire impérativement (en plus de ce guide) sont:&lt;br /&gt;
&lt;br /&gt;
 * [http://alien.cern.ch/twiki/bin/view/AliEn/HowToInstallLcgVoBox ALICE LCG VO-Box Installation Guide]&lt;br /&gt;
 * [https://twiki.cern.ch/twiki/pub/LCG/VoBoxesInfo/VO-Box-security-policy_v05.doc VOBOX Security and Operations Questionnaires]&lt;br /&gt;
&lt;br /&gt;
La VO-BOX n&#039;est pas consommatrice en CPU et RAM. N&#039;importe quel PC récent(Pentium+) avec 2GB+ de RAM peut faire l&#039;affaire. Cependant un bon hardware est recommandé pour minimiser la fréquence des pannes.&lt;br /&gt;
&lt;br /&gt;
== Ressources disques requises ==&lt;br /&gt;
&lt;br /&gt;
 * Partition / (root) : au moins 2 GB&lt;br /&gt;
 * Partition /var : y prévoir 10-15 GB d&#039;espace pour les logs d&#039;Alien&lt;br /&gt;
 * /data (ou un autre nom) : partition local pour xrootd (prévoir 3G par job slot)&lt;br /&gt;
&lt;br /&gt;
Remarques:&lt;br /&gt;
  1. xrootd: sur un site avec plus de 30 job slots, passer si possible au mode &amp;quot;head node + xrootd servers&amp;quot; pour des raisons de performances&lt;br /&gt;
  2. &amp;quot;/home&amp;quot; doit être local pour des raisons de performances et de gestion des &amp;quot;locks&amp;quot;&lt;br /&gt;
&lt;br /&gt;
== Les ports à ouvrir pour la VO-BOX au niveau du router ==&lt;br /&gt;
&lt;br /&gt;
 * 1975/tcp (gsissh): inbound from 137.138.0.0/16 and 192.16.186.192/26&lt;br /&gt;
 * 1094/tcp(xrootd)&lt;br /&gt;
 * 8082/tcp (Storage Adapter)&lt;br /&gt;
 * 8083 (FTD)&lt;br /&gt;
 * 8084/tcp (Site Proxy)&lt;br /&gt;
 * 9991/tcp (PackMan) : Inbound from 137.138.0.0/16&lt;br /&gt;
 * 1093/tcp (proofd)&lt;br /&gt;
&lt;br /&gt;
== Le profile de la VO-BOX sous Quattor ==&lt;br /&gt;
&lt;br /&gt;
Dans clusters/&amp;lt;nom_site&amp;gt;-glite-x.y.z/profiles/profile_&amp;lt;nom_vobox&amp;gt;.tpl, faire:&lt;br /&gt;
&lt;br /&gt;
 {{{&lt;br /&gt;
include pro_&amp;lt;nom_site&amp;gt;_alice_glite_vobox;&lt;br /&gt;
(voir cfg/clusters/ipno-glite-3.0.0/profiles/profile_ipnvobox.tpl)&lt;br /&gt;
 }}}&lt;br /&gt;
&lt;br /&gt;
Dans sites/&amp;lt;nom_site&amp;gt;/machine-types, créer pro_&amp;lt;nom_site&amp;gt;_alice_glite_vobox.tpl et pro_&amp;lt;nom_site&amp;gt;_alice_vobox_config.tpl&lt;br /&gt;
&lt;br /&gt;
Vous pouvez copier et adpater les templates de l&#039;IPNO ou du DAPNIA.&lt;br /&gt;
&lt;br /&gt;
== Après l&#039;installation via Quattor de la machine ==&lt;br /&gt;
&lt;br /&gt;
 * Demander et installer le certificat serveur GRID-FR de la mchine&lt;br /&gt;
 * Vérifier que les utilisateurs alis et alip existent dans /etc/passwd&lt;br /&gt;
 * Verifier que Patricia Lorenzo Mendez et Artem Trunov sont bien mappés sur&lt;br /&gt;
  alis dans /etc/grid-security/grid-mapfile et qu&#039;il y a quelqu&#039;un mappé&lt;br /&gt;
  sur alip. Question ouverte: faut-il creer les pool accounts ? Ou faut-il&lt;br /&gt;
  créer uniqument les comptes alis, alip nécessaires pour ALICE ?&lt;br /&gt;
 * Dans /etc/shadow vous devez avoir &#039;*&#039; dans le champ &#039;password&#039;, sinon le logingsissh ne marchera pas. Donc il faut remplacer &#039;!!&#039; ou &#039;!*NP*&#039; par &#039;*&#039;&lt;br /&gt;
 {{{&lt;br /&gt;
[root@ipnvobox etc]# grep alis /etc/shadow&lt;br /&gt;
alis:*:13574:0:99999:7:::&lt;br /&gt;
 }}}&lt;br /&gt;
 * Vérifier que le serveur GSISSH tourne sur la VOBOX sur le port 1975.&lt;br /&gt;
 * Vérifier que $MYPROXY_SERVER pointe bien sur myproxy.cern.ch&lt;br /&gt;
 * Vérifier que la expérimental software area ($VO_ALICE_SW_DIR) est bien accessible via NFS depuis la VO-BOX et writeable par alis. Il faut au moins 5GB d&#039;espace libre pour le soft d&#039;ALICE.&lt;br /&gt;
 * Vérifier que la partition /data pour xrootd existe et appartient à alis (/data doit être crée sous Quattor ou à la main)&lt;br /&gt;
 {{{&lt;br /&gt;
[root@ipnvobox root]# ls -ld /data&lt;br /&gt;
drwxr-xr-x   19 alis     alice        4096 Dec 14 13:22 /data&lt;br /&gt;
 }}}&lt;br /&gt;
 * Créer un directory pour les logs d&#039;Alien (ex: /var/log/alis). Il doit appartenir à alis et nécessite 10-15 GB libre.&lt;br /&gt;
 {{{&lt;br /&gt;
[root@ipnvobox root]# ls -ld /var/log/alis&lt;br /&gt;
drwxrwxrwx   10 alis     alice        4096 Mar  2 16:54 /var/log/alis&lt;br /&gt;
 }}}&lt;br /&gt;
 * Configurer le proxy-renewal service. MAIS, le script /opt/vobox/templates/voname-box-proxyrenewal n&#039;est pas encore exécuté automatiquement. Cal a prévu de corriger le probleme. Donc si après l&#039;installation de la VO-BOX, il manque alice-box-proxyrenewal dans /etc/cron.d/ et dans /etc/init.d/ ainsi que start, stop, agents et info-provider dans /opt/vobox/alice/, alors faire:&lt;br /&gt;
  1. créer /etc/cron.d/alice-box-proxyrenewal:&lt;br /&gt;
 {{{&lt;br /&gt;
[root@ipnvobox root]# cat /etc/cron.d/alice-box-proxyrenewal&lt;br /&gt;
#!/bin/sh&lt;br /&gt;
20 2,8,14,20 * * * root (PATH=/sbin:/bin:/usr/sbin:/usr/bin; /sbin/service alice-box-proxyrenewal proxy)&lt;br /&gt;
 }}}&lt;br /&gt;
  2. copier /opt/vobox/templates/voname-box-proxyrenewal dans&lt;br /&gt;
    /tmp/alice-proxy-renewal.sh, adpatez-le et exécutez-le (le script que j&#039;ai&lt;br /&gt;
    utilisé est en attachement: alice-proxy-renewal.sh).&lt;br /&gt;
  3. vous devez alors retrouver les directories qui manquaient:&lt;br /&gt;
 {{{&lt;br /&gt;
[root@ipnvobox alice]# ls -l&lt;br /&gt;
total 44&lt;br /&gt;
drwx------    2 alis     alice        4096 Jul 19  2006 agents&lt;br /&gt;
-rw-rw-rw-    1 alis     alice           0 Nov 14 09:09 edglog.log&lt;br /&gt;
drwx------    2 alis     alice        4096 Jul 19  2006 info-provider&lt;br /&gt;
drwx------    2 alis     alice        4096 Mar  1 04:02 log&lt;br /&gt;
drwx------    2 alis     alice        4096 Mar  2 17:19 proxy_repository&lt;br /&gt;
-rw-------    1 alis     alice       13750 Mar  2 17:04 _registerer_proxies.db&lt;br /&gt;
-r--------    1 alis     alice        2690 Mar  2 14:20 renewal-proxy.pem&lt;br /&gt;
drwx------    2 alis     alice        4096 Aug  6  2006 start&lt;br /&gt;
drwx------    2 alis     alice        4096 Aug  5  2006 stop&lt;br /&gt;
 }}}&lt;br /&gt;
 * Envoyer un e-mail à: Patricia.Mendez@cern.ch, latchezar.betev@cern.ch et trunov@cc.in2p3.fr :&lt;br /&gt;
1. demander que la machine soit enregistrée &#039;as trusted host&#039; dans myproxy.cern.ch dans LDAP (il faut fournir le DN de la VOBOX).&lt;br /&gt;
2. fournir les informations suivantes dans le mail:&lt;br /&gt;
  * hostname de la VO-BOX&lt;br /&gt;
  * le nom des users: alicesgm (alis dans GRIF), alip (ALICE Production)&lt;br /&gt;
  * le nom directory pour xrootd (ex: /data)&lt;br /&gt;
  * le nom du SE/DPM Server (ex: ipnsedpm.in2p3.fr)&lt;br /&gt;
  * le nom du serveur LFC (ex: grid14.lal.in2p3.fr) et le catalogue pour&lt;br /&gt;
    ALICE (/grid/alice)&lt;br /&gt;
  * le nom du RB (ex: grid09.lal.in2p3.fr)&lt;br /&gt;
  * le nom du CE et de la queue batch&lt;br /&gt;
    (ex: ipnls2001.in2p3.fr:2119/jobmanager-pbs-alice)&lt;br /&gt;
  * le path pour le experiment software area&lt;br /&gt;
    (ex:VO_ALICE_SW_DIR=/ipn/storage1/exp_soft/alis, zone &amp;quot;NFS shared&amp;quot; avec les WNs)&lt;br /&gt;
 * Installer Alien ou demander que Artem ou Patricia vous l&#039;installe.&lt;br /&gt;
 * S&#039;inscrire individullement dans le projet ALICE (voir avec un physicien d&#039;ALICE du Labo et avec le Secrétariat d&#039;ALICE) :&lt;br /&gt;
  1. demander un logon au CERN (si vous n&#039;en avez pas déjà)&lt;br /&gt;
  2. demander à être enregistré comme membre du projet ALICE&lt;br /&gt;
 * Inscrivez-vous dans AliEn en suivant les étapes sur la page http://alien.cern.ch/twiki/bin/view/Alice/UserRegistration&lt;br /&gt;
  1. Vous serez amenés à vous inscrire dans la VO ALICE (si ce n&#039;est pas déjà fait)  sur https://lcg-voms.cern.ch:8443/vo/alice/vomrs&lt;br /&gt;
  2. Ensuite vous pourrez vous inscrire dans AliEn (&amp;quot;5. Register with AliEn&amp;quot; sur&lt;br /&gt;
    https://alien.cern.ch:8443/twiki/bin/UserReg&lt;br /&gt;
 * Demander ensuite à être mapé sur &#039;alidprod&#039; si vous voulez pouvoir utiliser AliEn sous votre nom (ALIEN_USER=user_name dans ~alis/.alien/Environment) la VO-BOX (start/stop des services par exemples)&lt;br /&gt;
 * Mettre dans /etc/motd des informations utiles à afficher lors de la connexion [gsi]ssh: LFC server, catalog pour alice, zone pour xrootd, etc.&lt;br /&gt;
&lt;br /&gt;
== Durée du proxy ==&lt;br /&gt;
&lt;br /&gt;
Vérifier dans /opt/lcg/sbin/vobox-renewd qu&#039;on a &#039;-t 48&#039; :&lt;br /&gt;
&lt;br /&gt;
 {{{&lt;br /&gt;
${GLOBUS_LOCATION}/bin/myproxy-get-delegation -a ${VOBOX_PROXY_REPOSITORY}/${CERT} -d -o $TMP_PROXY -t 48 2&amp;gt;&amp;amp;1 &amp;gt; /dev/null&lt;br /&gt;
 }}}&lt;br /&gt;
&lt;br /&gt;
Il s&#039;agit d&#039;un problème qui devrait être résolu dans le futur&lt;br /&gt;
&lt;br /&gt;
== Backup ==&lt;br /&gt;
&lt;br /&gt;
Faire régulièrement des sauvegardes de ~alis, /opt/vobox et des logs d&#039;Alien (ex: /var/log/alis)&lt;br /&gt;
&lt;br /&gt;
== Se connecter à la VO-BOX depuis le UI ==&lt;br /&gt;
&lt;br /&gt;
Faire &#039;gsissh -l user -p port_GSISSH &amp;lt;vobox_name&amp;gt; &#039;&lt;br /&gt;
 {{{&lt;br /&gt;
[diarra@ipngrid01 ~]$ gsissh -l alis -p 1975 ipnvobox&lt;br /&gt;
 }}}&lt;br /&gt;
&lt;br /&gt;
== Utiliser le serveur myproxy ==&lt;br /&gt;
&lt;br /&gt;
Sur le UI:&lt;br /&gt;
&lt;br /&gt;
 {{{&lt;br /&gt;
myproxy-init -s myproxy.cern.ch -d -n -t 48 -c 720&lt;br /&gt;
gsissh -l alis -p 1975 &amp;lt;vobox_name&amp;gt;&lt;br /&gt;
 }}}&lt;br /&gt;
Sur la VO-BOX:&lt;br /&gt;
&lt;br /&gt;
 {{{&lt;br /&gt;
vobox-proxy --vo alice --proxy-safe 3600 --myproxy-safe 259200 --email &amp;lt;votre_e-mail&amp;gt; register&lt;br /&gt;
 }}}&lt;br /&gt;
Pour s&#039;assurer que le proxy est renouveler automatiquement, vérifier que vous avez dans /opt/vobox/alice/log/events.log une ligne du genre:&lt;br /&gt;
 {{{&lt;br /&gt;
9/07/06 14:35:56 : Proxy for DN  &amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=IPNO/CN=Christophe Diarra/CN=proxy/CN=proxy/CN=proxy&amp;quot; successfully renewed&lt;br /&gt;
 }}}&lt;br /&gt;
Dans /opt/vobox/alice/proxy_repository/ vous trouverez le proxy.&lt;br /&gt;
== Start/Stop des services ==&lt;br /&gt;
&lt;br /&gt;
Les services peuvent être démarrés un par un. Les services disponibles sont :&lt;br /&gt;
Monitor, SE, CE, PackMan, Monalisa.&lt;br /&gt;
&lt;br /&gt;
Un script permet de les démarrer ou de les arrêter dans le bon ordre:&lt;br /&gt;
&lt;br /&gt;
 {{{&lt;br /&gt;
$VO_ALICE_SW_DIR/alien/etc/rc.d/init.d/aliend start|stop&lt;br /&gt;
 }}}&lt;br /&gt;
Pour démarrer ou arreter un seul service :&lt;br /&gt;
&lt;br /&gt;
 {{{&lt;br /&gt;
$VO_ALICE_SW_DIR/alien/scripts/lcg/lcgAlien.sh StartServiceName|StopServiceName&lt;br /&gt;
Exemple:&lt;br /&gt;
$VO_ALICE_SW_DIR/alien/scripts/lcg/lcgAlien.sh StopCE&lt;br /&gt;
$VO_ALICE_SW_DIR/alien/scripts/lcg/lcgAlien.sh StartCE&lt;br /&gt;
 }}}&lt;br /&gt;
&lt;br /&gt;
== Expiration du proxy ==&lt;br /&gt;
&lt;br /&gt;
Quand vous recevez un mail indiquant que le proxy est sur le point d&#039;expirer&lt;br /&gt;
(3 jours avant ?), ou si les logs le signalent, il faut renouveler le proxy sur&lt;br /&gt;
le serveur myproxy depuis le UI.&lt;br /&gt;
&lt;br /&gt;
 {{{&lt;br /&gt;
[root@ipnvobox log]# more /opt/vobox/alice/log/events.log&lt;br /&gt;
...&lt;br /&gt;
11/26/06 15:03:05 : Myproxy lifetime (256228 sec) shorter than security threshol&lt;br /&gt;
d (259200 sec)&lt;br /&gt;
11/26/06 15:03:05 : ... for DN /O=GRID-FR/C=FR/O=CNRS/OU=IPNO/CN=Christophe Diar&lt;br /&gt;
ra&lt;br /&gt;
11/26/06 15:03:05 : sendind notification email to diarra@ipno.in2p3.fr. SUCCESSF&lt;br /&gt;
ULL&lt;br /&gt;
 }}}&lt;br /&gt;
Sur le UI:&lt;br /&gt;
&lt;br /&gt;
 {{{&lt;br /&gt;
[diarra@ipnls2011 my]$ myproxy-info -d -s myproxy.cern.ch&lt;br /&gt;
username: /O=GRID-FR/C=FR/O=CNRS/OU=IPNO/CN=Christophe Diarra&lt;br /&gt;
owner: /O=GRID-FR/C=FR/O=CNRS/OU=IPNO/CN=Christophe Diarra&lt;br /&gt;
  timeleft: 52:25:26  (2.2 days)&lt;br /&gt;
&lt;br /&gt;
[diarra@ipnls2011 my]$ myproxy-init -s myproxy.cern.ch -d -n -t 48 -c 720&lt;br /&gt;
Your identity: /O=GRID-FR/C=FR/O=CNRS/OU=IPNO/CN=Christophe Diarra&lt;br /&gt;
Enter GRID pass phrase for this identity:&lt;br /&gt;
Creating proxy ............................................ Done&lt;br /&gt;
Proxy Verify OK&lt;br /&gt;
Your proxy is valid until: Wed Dec 27 09:56:25 2006&lt;br /&gt;
A proxy valid for 720 hours (30.0 days) for user /O=GRID-FR/C=FR/O=CNRS/OU=IPNO/CN=Christophe Diarra now exists on myproxy.cern.ch.&lt;br /&gt;
 }}}&lt;br /&gt;
&lt;br /&gt;
== Monitoring / Accounting ==&lt;br /&gt;
&lt;br /&gt;
 * [http://pcalimonitor.cern.ch:8889/ ALICE Monitoring with MonALISA]&lt;br /&gt;
 * [http://dashb-alice.cern.ch/dashboard/request.py/jobsummary?sortby=site ALICE Dashboard : Job Summary]&lt;br /&gt;
&lt;br /&gt;
== Liens Utiles ==&lt;br /&gt;
&lt;br /&gt;
[https://alien.cern.ch:8443/twiki/bin/view/AliEn/HowToDebugLcgVoBox Debugging &amp;amp; Troubleshooting the ALICE LCG Vo-Box]&lt;br /&gt;
&lt;br /&gt;
[http://goc.grid.sinica.edu.tw/gocwiki/VO-box_HowTo VO-box HowTo - description, installation, testing]&lt;br /&gt;
&lt;br /&gt;
[http://lcg2.in2p3.fr/wiki/index.php/Alice Page Alice LCG-France]&lt;br /&gt;
&lt;br /&gt;
[https://twiki.cern.ch/twiki/pub/LCG/VoBoxesInfo/VO-Box-security-policy_v05.doc VOBOX Security and Operations Questionnaires]&lt;br /&gt;
&lt;br /&gt;
[http://www.gridpp.ac.uk/wiki/VOBox Pages sur les VOboxes]&lt;br /&gt;
&lt;br /&gt;
[https://edms.cern.ch/document/655277/ LCG VOBox Operations Recommendations and Questionnaire]&lt;br /&gt;
&lt;br /&gt;
[http://alien.cern.ch/twiki/bin/view/AliEn/HowToInstallXrootd How to install xrootd on data servers]&lt;br /&gt;
&lt;br /&gt;
[http://xrootd.slac.stanford.edu/ XROOTD]&lt;br /&gt;
&lt;br /&gt;
= LEMON : Sytème de Monitoring Client/Serveur =&lt;br /&gt;
[[TracNav]]&lt;br /&gt;
&lt;br /&gt;
http://lemon.web.cern.ch/lemon/&lt;br /&gt;
http://lemon.web.cern.ch/lemon/doc/installation/installation.html&lt;br /&gt;
&lt;br /&gt;
[[TOC(inline)]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Installation du Serveur Lemon via quattor en SL4 ==&lt;br /&gt;
&lt;br /&gt;
Utilser les 2 templates :&lt;br /&gt;
{{{&lt;br /&gt;
pro_software_lemon_server_sl4_i386;&lt;br /&gt;
pro_service_lemon_server;&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Qui vont:&lt;br /&gt;
 &#039;&#039;&#039;1) installer les RPMs necessaires&#039;&#039;&#039;&lt;br /&gt;
{{{&lt;br /&gt;
(&amp;quot;edg-fabricMonitoring-server&amp;quot;,&amp;quot;2.13.0-3&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;rrdtool&amp;quot;,&amp;quot;1.0.49-2.1.el3.rf&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;lrf&amp;quot;,&amp;quot;1.0.7-15&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;ncm-fmonagent&amp;quot;,&amp;quot;1.0.32-1&amp;quot;,&amp;quot;noarch&amp;quot;);&lt;br /&gt;
(&amp;quot;perl-TimeDate&amp;quot;,&amp;quot;2.22-1&amp;quot;,&amp;quot;noarch&amp;quot;);&lt;br /&gt;
(&amp;quot;httpd&amp;quot;,&amp;quot;2.0.52-22.ent&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;httpd-suexec&amp;quot;,&amp;quot;2.0.52-22.ent&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;system-config-httpd&amp;quot;,&amp;quot;1.3.1-1&amp;quot;,&amp;quot;noarch&amp;quot;);&lt;br /&gt;
(&amp;quot;php-ldap&amp;quot;,&amp;quot;4.3.9-3.15&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;php-gd&amp;quot;,&amp;quot;4.3.9-3.15&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;php-imap&amp;quot;,&amp;quot;4.3.9-3.15&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;php-pear&amp;quot;,&amp;quot;4.3.9-3.15&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;php&amp;quot;,&amp;quot;4.3.9-3.15&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;oracle-xe-univ&amp;quot;,&amp;quot;10.2.0.1-1.0&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;cx_Oracle&amp;quot;,&amp;quot;4.1-1&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;lemon-ora-admin&amp;quot;,&amp;quot;1.0.4-96&amp;quot;,&amp;quot;noarch&amp;quot;);&lt;br /&gt;
# lemon-OraMon probleme de dependance: l&#039;installer avec --nodeps (info from Miroslav Sicket CERN)&lt;br /&gt;
(&amp;quot;lemon-OraMon&amp;quot;,&amp;quot;1.2.0-1&amp;quot;,&amp;quot;i386&amp;quot;);}}}&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039; 2) configurer les fichiers suivant :&#039;&#039;&#039;&lt;br /&gt;
{{{&lt;br /&gt;
/etc/lemon/server/lemon-oramon-server.conf&lt;br /&gt;
/var/www/html/lrf/config.php&lt;br /&gt;
/var/spool/edg-fmon-server/nodes.map&lt;br /&gt;
/etc/lemon/lemonmrd.conf&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 &#039;&#039;&#039; 3) et demarrer les 2 demons :&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
/etc/init.d/OraMon&lt;br /&gt;
/etc/init.d/lemonmrd&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Configuration Hors Quattor ==&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;1) Configuration de la Base de Donée:&#039;&#039;&#039; &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
/etc/init.d/oracle-xe configure&lt;br /&gt;
. /usr/lib/oracle/xe/app/oracle/product/10.2.0/server/bin/oracle_env.sh&lt;br /&gt;
sqlplus system&lt;br /&gt;
 SQL&amp;gt; EXEC DBMS_XDB.SETLISTENERLOCALACCESS(FALSE);       &lt;br /&gt;
/etc/init.d/oracle-xe start&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;2) Ajouter l&#039;utilisateur lemon&#039;&#039;&#039;&lt;br /&gt;
via l&#039;interface http://ma_machine:port_choisi/apex&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;3) Configuration de Oramon :&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
lemon-ora.admin --create-schema -d xe --data-tablespace=USERS --index-tablespace=USERS&lt;br /&gt;
lemon-ora.admin --file=/etc/oramon-server.conf -d xe --all  --data-tablespace=USERS --index-tablespace=USERS&lt;br /&gt;
lemon-ora.admin --file=/etc/oramon-server.conf -d xe  -u lemon --create-las --data-tablespace=USERS --index-tablespace=USERS&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;4) exporter les variables Oracle :&#039;&#039;&#039;&lt;br /&gt;
{{{&lt;br /&gt;
export LD_LIBRARY_PATH=/usr/lib/oracle/xe/app/oracle/product/10.2.0/server/lib:/usr/lib/oracle/10.2.0.3/client/lib&lt;br /&gt;
export ORACLE_SID=XE&lt;br /&gt;
export PATH=$PATH:/usr/lib/oracle/xe/app/oracle/product/10.2.0/server/bin&lt;br /&gt;
export ORACLE_HOME=/usr/lib/oracle/xe/app/oracle/product/10.2.0/server&lt;br /&gt;
export TNS_ADMIN=/usr/lib/oracle/xe/app/oracle/product/10.2.0/server/network/admin&lt;br /&gt;
export PYTHONPATH=/usr/lib/python2.2/site-packages&lt;br /&gt;
export NLS_LANG=AMERICAN_AMERICA.AL32UTF8&lt;br /&gt;
&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
     Dans tous les fichiers de demarrage suivant :&lt;br /&gt;
   {{{&lt;br /&gt;
   /etc/init.d/lemonmrd&lt;br /&gt;
   /etc/init.d/httpd&lt;br /&gt;
   /etc/sysconfig/OraMon&lt;br /&gt;
   }}}&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;5) Et verifier ensuite les logs, et que le serveur collecte bien des données :&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
/var/log/lemonmrd.log&lt;br /&gt;
/var/www/html/lrf/data&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Ajout de nouvelles sondes/metriques ==&lt;br /&gt;
&lt;br /&gt;
I) Sur le client&lt;br /&gt;
&lt;br /&gt;
a)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node07 sensor-example]# cat /etc/lemon/agent/sensors/torque_maui.conf&lt;br /&gt;
&lt;br /&gt;
 torque_maui&lt;br /&gt;
        CommandLine /usr/bin/perl /usr/libexec/sensors/lemon-sensor.pl RunningJobs&lt;br /&gt;
        MetricClasses&lt;br /&gt;
                torque_maui.RunningJobs&lt;br /&gt;
b)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node07 sensor-example]# cat /etc/lemon/agent/metrics/torque_maui.conf&lt;br /&gt;
&lt;br /&gt;
 20047&lt;br /&gt;
        MetricName     Jobsrunning&lt;br /&gt;
        MetricClass    torque_maui.RunningJobs&lt;br /&gt;
        Timing  3600   0&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
c)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node07 sensor-example]# cat /usr/libexec/sensors/RunningJobs.pm&lt;br /&gt;
&lt;br /&gt;
 #!/usr/bin/perl -w&lt;br /&gt;
 package torque_maui;&lt;br /&gt;
 # modules&lt;br /&gt;
 use diagnostics;&lt;br /&gt;
 use strict;&lt;br /&gt;
 # the sensor API interface&lt;br /&gt;
 use sensorAPI;&lt;br /&gt;
 # register module name and version&lt;br /&gt;
 registerVersion(&amp;quot;lemon-sensor-torque_maui&amp;quot;, &amp;quot;1.0.0-1&amp;quot;);&lt;br /&gt;
 # register the sensors metric classes&lt;br /&gt;
 registerMetric(&amp;quot;torque_maui.RunningJobs&amp;quot;, &amp;quot;report the Running Jobs&amp;quot;, &amp;quot;torque_maui::RunningJobs&amp;quot;);&lt;br /&gt;
 sub RunningJobs_sample() {&lt;br /&gt;
    # All function hooks in the sensor API: _sample(), _initialise(), _periodicCheck(), _destroy()&lt;br /&gt;
    # are passed a hash as the first argument. This hash provides the function with the ability to&lt;br /&gt;
    # access the methods and variables of the metric instance/object. This is Perls implementation&lt;br /&gt;
    # of Object Orientation&lt;br /&gt;
    my $obj  = shift;&lt;br /&gt;
    # variables&lt;br /&gt;
    my $line = `/usr/bin/showq -r | echo \$((\$(wc -l)-4))`;&lt;br /&gt;
            $obj-&amp;gt;storeSample01($line);&lt;br /&gt;
    # All functions called by the sensor API must return a value&lt;br /&gt;
    #  - if the sampling was successful you the return code should be 0 and -1 on error&lt;br /&gt;
     return 0;&lt;br /&gt;
      }&lt;br /&gt;
 1;&lt;br /&gt;
 #-- End-of-File --------------------------------------------------------------------------------------#&lt;br /&gt;
&lt;br /&gt;
II) Pour le serveur&lt;br /&gt;
&lt;br /&gt;
1) Pour Oramon&lt;br /&gt;
&lt;br /&gt;
a) modifier le fichier /etc/oramon-server.conf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 ………..&lt;br /&gt;
&lt;br /&gt;
                torque_maui.RunningJobs&lt;br /&gt;
                        Description Running jobs on the CE?&lt;br /&gt;
                        Fields&lt;br /&gt;
                                Running_Jobs&lt;br /&gt;
                                        Type INTEGER&lt;br /&gt;
                                        MetricUnit count&lt;br /&gt;
                                        MetricScale 1&lt;br /&gt;
&lt;br /&gt;
 ……………..&lt;br /&gt;
&lt;br /&gt;
                20047&lt;br /&gt;
                        MetricClass torque_maui.RunningJobs&lt;br /&gt;
                        MetricName Jobsrunning&lt;br /&gt;
                        Description Running Jobs on the CE?&lt;br /&gt;
                        TableName _20047&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Metric classes part into corresponding metric class part, metric instance into metric instances (be carefull about the tabs). &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
b) sourcer laes variables d&#039;environnement oracle :&lt;br /&gt;
&lt;br /&gt;
 . /usr/lib/oracle/xe/app/oracle/product/10.2.0/server/bin/oracle_env.sh&lt;br /&gt;
&lt;br /&gt;
c) mettre a jour la Database:&lt;br /&gt;
&lt;br /&gt;
 lemon-ora.admin --file=/etc/oramon-server.conf -d xe  -u lemon --all --data-tablespace=USERS --index-tablespace=USERS&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
2) Pour LRF&lt;br /&gt;
&lt;br /&gt;
a) # tail -3 /var/spool/edg-fmon-server/metrics.map&lt;br /&gt;
&lt;br /&gt;
 182 20015     /home.use&lt;br /&gt;
 183 30050     exitCodeNFS&lt;br /&gt;
 184 20047     RunningJobs&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
b)# more /etc/lemon/lemonmrd.conf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 ……………..&lt;br /&gt;
&lt;br /&gt;
 RunningJobs=Jobsrunning:Running_Jobs&lt;br /&gt;
&lt;br /&gt;
 ……………..&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
 [node07.datagrid.cea.fr]&lt;br /&gt;
 type=host&lt;br /&gt;
 metrics=+RunningJobs&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
c) #grep -i job /var/www/html/lrf/metric_map.php&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
                   &amp;quot;RunningJobs&amp;quot;        =&amp;gt; array(&amp;quot;RunningJobs&amp;quot;,&amp;quot;Jobs   running&amp;quot;,&amp;quot;count&amp;quot;,1,0,&#039;Jobsrunning.Running_Jobs&#039;),&lt;br /&gt;
&lt;br /&gt;
                        1 =&amp;gt; array(&#039;name&#039; =&amp;gt; &#039;JOBS STATISTICS&#039;, &#039;y-axis&#039; =&amp;gt; &#039;count&#039;, &#039;stack&#039; =&amp;gt; false, &#039;base&#039; =&amp;gt; 1,&lt;br /&gt;
&lt;br /&gt;
                            &#039;metrics&#039; =&amp;gt; array( 0 =&amp;gt; array(&#039;name&#039; =&amp;gt;  &#039;RunningJobs&#039;, &#039;summary&#039; =&amp;gt; true, &#039;title&#039; =&amp;gt; &#039;Running Jobs&#039;)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Pour configurer les alarmes ==&lt;br /&gt;
&lt;br /&gt;
a) créer un fichier xml par machine:&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
# cat /tmp/my_cnf_node07.xml&lt;br /&gt;
&amp;lt;?xml version = &#039;1.0&#039;?&amp;gt;&lt;br /&gt;
&amp;lt;CDBSEARCHLIST&amp;gt;&lt;br /&gt;
&amp;lt;HOST ID=&amp;quot;node07.datagrid.cea.fr&amp;quot; CLUSTER =&amp;quot;GRID_SERVICES&amp;quot; SUBCLUSTER =&amp;quot;&amp;quot; IMPORTANCE =&amp;quot;0&amp;quot; SURESTATUS =&amp;quot;TRUE&amp;quot; NOCONTACTTIMEOUT =&amp;quot;660&amp;quot;&lt;br /&gt;
PINGTIMEOUT =&amp;quot;&amp;quot; /&amp;gt;&lt;br /&gt;
&amp;lt;/CDBSEARCHLIST&amp;gt;&lt;br /&gt;
#&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
b) mettre a jour la Database:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
# lemon-ora.entities -u lemon -d xe -c /tmp/my_cnf_node07.xml&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Problemes rencontrés ==&lt;br /&gt;
&lt;br /&gt;
ne pas oublier d&#039;exporter les variables oracles&lt;br /&gt;
&lt;br /&gt;
le fichies nodes.map ne doit pas avoir de lignes vides&lt;br /&gt;
&lt;br /&gt;
Les Symlink avec cette version d&#039;apache ne fonctionne pas (on utlisie /var/www/html/lrf/data au lieu de /var/spool/data)&lt;br /&gt;
&lt;br /&gt;
Php avec oci8 tres sensibles aux versions (plus de soucis avec les versions SL4 ci dessus)&lt;br /&gt;
&lt;br /&gt;
= Test sur le réseaux datagrid.cea.fr: Iperf =&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Le 20/03/2007&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Avec 5 threads&#039;&#039;&#039; : &lt;br /&gt;
&lt;br /&gt;
Lyon -&amp;gt; Saclay : 550Mb/s (peu variable) ; &lt;br /&gt;
&lt;br /&gt;
Saclay -&amp;gt; Lyon : 600 Mb/s (très variables de 250 Mb/s à 750 Mb/s)).&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Avec 1 thread&#039;&#039;&#039; : 300 Mb/s dans les 2 sens&lt;br /&gt;
&lt;br /&gt;
= Test sur le réseaux datagrid.cea.fr: Transfert de fichiers -1ere PHASE- =&lt;br /&gt;
&lt;br /&gt;
=== Sites impliqués ===&lt;br /&gt;
* &#039;&#039;&#039;T1 CC-IN2P3 &#039;&#039;&#039;&lt;br /&gt;
** Contacts : &amp;lt;span style=&amp;quot;color:#0000F0;&amp;quot;&amp;gt; David Bouvet, Lionel Schwarz &amp;lt;/span&amp;gt;&lt;br /&gt;
** &#039;&#039;&#039;SE : ccsrm.in2p3.fr&#039;&#039;&#039;&lt;br /&gt;
*** Endpoint transferts DAPNIA-CC : /pnfs/in2p3.fr/data/dteam/disk/dapnia/&lt;br /&gt;
* &#039;&#039;&#039;T2 GRIF&#039;&#039;&#039;   &lt;br /&gt;
** Contacts : &amp;lt;span style=&amp;quot;color:#0000F0;&amp;quot;&amp;gt; Christine Leroy&amp;lt;/span&amp;gt;&lt;br /&gt;
** &#039;&#039;&#039;SE-DAPNIA : node12.datagrid.cea.fr&#039;&#039;&#039;&lt;br /&gt;
*** GlueServiceEndpoint: httpg://node12.datagrid.cea.fr:8443/srm/managerv1&lt;br /&gt;
*** GlueSAPath: /dpm/datagrid.cea.fr/home/dteam&lt;br /&gt;
** &#039;&#039;&#039;SE-LAL : grid05.lal.in2p3.fr&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
=== conditions de transferts pour FTS===&lt;br /&gt;
&lt;br /&gt;
Les transferts sont initiés depuis node02.datagrid.cea.fr&lt;br /&gt;
&lt;br /&gt;
* Avant tout transfert, il faut un &#039;&#039;&#039;proxy valide déposé sur un serveur MyProxy&#039;&#039;&#039; pour permettre au serveur FTS de renouveler un proxy expiré en cours de transfert&lt;br /&gt;
&lt;br /&gt;
 myproxy-init -s cclcgproxli01.in2p3.fr -d&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
* [[pour connaitre la configuration du canal FTS :]]&lt;br /&gt;
 glite-transfer-channel-list -s https://cclcgftsprod01.in2p3.fr:8443/glite-data-transfer-fts/services/ChannelManagement GRIF-IN2P3&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
* [[pour modifier la configuration du canal FTS :]]&lt;br /&gt;
&lt;br /&gt;
 glite-transfer-channel-set -s https://cclcgftsprod01.in2p3.fr:8443/glite-data-transfer-fts/services/ChannelManagement -f 10 -T 1 GRIF-IN2P3&lt;br /&gt;
&lt;br /&gt;
=== Les tests de transferts ===&lt;br /&gt;
&lt;br /&gt;
* [[Source d&#039;information:]]&lt;br /&gt;
-Script de test des transferts FTS proposé par GridPP à l&#039;adresse : http://www.gridpp.ac.uk/wiki/Transfer_Test_Python_Script_HOWTO &amp;lt;br&amp;gt;&lt;br /&gt;
-Le wiki GriPP est une mine d&#039;informations : http://www.gridpp.ac.uk/wiki/Main_Page&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
* [[1er Test: Utilisation du script de GRIDPP: filetransfer.py]]&lt;br /&gt;
&lt;br /&gt;
CC-&amp;gt;DAPNIA&lt;br /&gt;
 set SourceURL=&amp;quot;srm://ccsrm.in2p3.fr:8443/&amp;quot;&lt;br /&gt;
 set DestURL=&amp;quot;srm://node12.datagrid.cea.fr:8443/dpm/datagrid.cea.fr/home/dteam/&amp;quot;&lt;br /&gt;
&lt;br /&gt;
liste des fichiers:&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00007&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00008&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00009&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00011&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00012&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00013&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00014&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00015&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00016&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00017&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00018&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00019&lt;br /&gt;
&lt;br /&gt;
DAPNIA -&amp;gt; CC&lt;br /&gt;
&lt;br /&gt;
 set SourceURL=&amp;quot;srm://node12.datagrid.cea.fr:8443/dpm/datagrid.cea.fr/home/dteam/dapnia/&amp;quot;&lt;br /&gt;
 set DestURL=&amp;quot;srm://ccsrm.in2p3.fr:8443/pnfs/in2p3.fr/data/dteam/disk/dapnia/&amp;quot;&lt;br /&gt;
&lt;br /&gt;
liste des fichiers (1 seul SE-DISK)&lt;br /&gt;
&lt;br /&gt;
 cleroy/ATLAS-file00007&lt;br /&gt;
 cleroy/ATLAS-file00008&lt;br /&gt;
 cleroy/ATLAS-file00009&lt;br /&gt;
 cleroy/ATLAS-file00011&lt;br /&gt;
 cleroy/ATLAS-file00012&lt;br /&gt;
 cleroy/ATLAS-file00013&lt;br /&gt;
 cleroy/ATLAS-file00014&lt;br /&gt;
 cleroy/ATLAS-file00015&lt;br /&gt;
 cleroy/ATLAS-file00016&lt;br /&gt;
 cleroy/ATLAS-file00017&lt;br /&gt;
 cleroy/ATLAS-file00018&lt;br /&gt;
 cleroy/ATLAS-file00019&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
en parrallele avec n=10 pour les 2 type de transfet, pour durer environ 20 minutes (1Gb/s).&lt;br /&gt;
FTS configuré avec (f6;T2). &lt;br /&gt;
&lt;br /&gt;
 ESSAI du nbre de  |&lt;br /&gt;
 (fichier;stream)  | Bande passante(Mb/s)  | &lt;br /&gt;
 ------------------+-----------------------+&lt;br /&gt;
 | (f8;T1)         | 242                   |&lt;br /&gt;
 | (f6;T1)         | 301                   |&lt;br /&gt;
 | (f3;T1)         | 302                   |&lt;br /&gt;
 | (f2;T1)         | 185                   |&lt;br /&gt;
 | (f6;T2)         | 312                   |&lt;br /&gt;
 | (f6;T6)         | 284                   |&lt;br /&gt;
 | (f6;T4)         | 280                   |&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Resultat 26/04/2007 :&lt;br /&gt;
&lt;br /&gt;
D-CC&lt;br /&gt;
 Transfer Bandwidth Report:&lt;br /&gt;
 110/120 transferred in 2668.16920614 seconds&lt;br /&gt;
 81081938300.0 bytes transferred.&lt;br /&gt;
 Bandwidth: 243.108834667Mb/s&lt;br /&gt;
&lt;br /&gt;
CC-D&lt;br /&gt;
 Transfer Bandwidth Report:&lt;br /&gt;
 120/120 transferred in 3033.88385892 seconds&lt;br /&gt;
 88453023600.0 bytes transferred.&lt;br /&gt;
 Bandwidth: 233.240368355Mb/s&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Débit réseaux pour le SE DISK du DAPNIA (derriere node12):&lt;br /&gt;
&lt;br /&gt;
http://lcg2.in2p3.fr/wiki/images/Node11_net_fts_26042007.gif&lt;br /&gt;
&lt;br /&gt;
Débit réseaux routeur datagrid.cea.fr:&lt;br /&gt;
&lt;br /&gt;
http://lcg2.in2p3.fr/wiki/images/Routeur_datagridceafr_26042007.png&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
* [[2eme test: Utilisation du script de GRIDPP (filetransfer.py) et globus_url_copy]]&lt;br /&gt;
&lt;br /&gt;
utilisation de:&lt;br /&gt;
* filetransfer.py entre DAPNIA &amp;lt;-&amp;gt; Lyon (SE &amp;lt;-&amp;gt; SE)&lt;br /&gt;
* globus_url_copy et lcg-cr entre DAPNIA &amp;lt;-&amp;gt; Orsay (UI &amp;lt;-&amp;gt; SE)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Le 02/05/2007: Meme occupation réseaux :300Mb/s&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== &#039;&#039;&#039;CONCLUSION PRELIMINIARE&#039;&#039;&#039; ===&lt;br /&gt;
&lt;br /&gt;
=&amp;gt; Ces tests avaient pour but d&#039;occuper le plus possible la bande passante de notre réseaux datagrid.cea.fr, pour s&#039;assurer que le routeur tenait bien la charge&lt;br /&gt;
&lt;br /&gt;
=&amp;gt; Nous n&#039;avons pas reussi à occuper toute la bande passante: tests à poursuivre avec plus de client/serveur =&amp;gt; Le comble de l&#039;informaticien: réussir à faire mieux que ses utilisateurs:&lt;br /&gt;
&lt;br /&gt;
One day, One atlas physicit, Many jobs:&lt;br /&gt;
&lt;br /&gt;
http://lcg2.in2p3.fr/wiki/images/Node11.datagrid.cea.fr.rrd_NUMKBREADAVG_d.gif&lt;br /&gt;
&lt;br /&gt;
Débit réseaux SE DISK, le 16/06/2006&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Test sur le réseaux datagrid.cea.fr: Transfert de fichiers &#039;&#039;&#039;-2eme PHASE (3 SE-DISK au DAPNIA et multi threading)-&#039;&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Transfert FTS: (CC-&amp;gt;DAPNIA) // (DAPNIA-&amp;gt;CC) avec plusieurs SE-DISK du DAPNIA (node11, node18, node20) ===&lt;br /&gt;
&lt;br /&gt;
=== Transfert: FTS (CC-&amp;gt;DAPNIA) // FTS (DAPNIA-&amp;gt;CC) ) // globus-url-copy (UI DAPNIA -&amp;gt; SE LAL) // globus-url-copy (SE LAL -&amp;gt; UI DAPNIA) ===&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Priorites locales Filtre TORQUE-&#039;&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
http://lcg2.in2p3.fr/wiki/images/Submit_filter.txt&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Configuration thumper&#039;&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
La DOc:&lt;br /&gt;
http://www.sun.com/products-n-solutions/hardware/docs/pdf/820-1151-10.pdf&lt;br /&gt;
&lt;br /&gt;
http://doc.fedora-fr.org/RAID_Logiciel:_Comment_Installer_et_G%C3%A9rer_un_System_Raid&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Formatage des disks: ==&lt;br /&gt;
&lt;br /&gt;
Il faut des partitions du type type Linux raid autodetect (type fd)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 for i in   &lt;br /&gt;
 /dev/sda /dev/sdaa /dev/sdab /dev/sdad /dev/sdae /dev/sdaf /dev/sdag /dev/sdah /dev/sdai /dev/sdaj /dev/sd    /dev/sdal /dev/sdam /dev/sdan /dev/sdao /dev/sdap /dev/sdaq /dev/sdar /dev/sdas /dev/sdat /dev/sdau /dev/sdav /dev/sdd /dev/sde /dev/sdf /dev/sdg /dev/sdh /dev/sdi /dev/sdj /dev/sdk /dev/sdl /dev/sdm /dev/sdn /dev/sdo &lt;br /&gt;
 /dev/sdp /dev/sdq /dev/sdr /dev/sds /dev/sdt /dev/sdu /dev/sdv /dev/sdw /dev/sdx /dev/sdz; do export  &lt;br /&gt;
 $i; /root/script_raid $i; done&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node23 ~]# more /root/script_raid&lt;br /&gt;
 sfdisk -f $1 &amp;lt;&amp;lt; EOF&lt;br /&gt;
 0 60801 fd&lt;br /&gt;
 ;&lt;br /&gt;
 ;&lt;br /&gt;
 ;&lt;br /&gt;
 EOF&lt;br /&gt;
&lt;br /&gt;
Pour verifier:&lt;br /&gt;
&lt;br /&gt;
 # for i  &lt;br /&gt;
    &lt;br /&gt;
 in  /dev/sda /dev/sdaa /dev/sdab /dev/sdad /dev/sdae /dev/sdaf /dev/sdag /dev/sdah /dev/sdai /dev/sdaj &lt;br /&gt;
 /dev/sdak /dev/sdal /dev/sdam /dev/sdan /dev/sdao /dev/sdap /dev/sdaq /dev/sdar /dev/sdas /dev/sdat /dev/sdau /dev/sdav /dev/sdd /dev/sde /dev/sdf /dev/sdg /dev/sdh /dev/sdi /dev/sdj /dev/sdk /dev/sdl /dev/sdm /dev/sdn  /dev/sdo /dev/sdp /dev/sdq /dev/sdr /dev/sds /dev/sdt /dev/sdu /dev/sdv /dev/sdw /dev/sdx /dev/sdz; do  &lt;br /&gt;
 sfdisk --list $i ; done | more&lt;br /&gt;
&lt;br /&gt;
== Creation des Raids logiciel: ==&lt;br /&gt;
&lt;br /&gt;
Conseil de SUN:&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&amp;quot;Diff Raid 5 config does not change the availability that much, Raid 5 is one way parity, if you lose two disks in the same raid group, you lose the  data. The difference is probability of losing two disks is higher when you have higher number of disks in a raid group. We usually suggest using one disk out of each controller for parity, (six controller total), 5+1 configuration, 8 raid groups. Overhead is 1/6 about 16% capacity loss. add the OS disk, 20TB.&amp;quot;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 mdadm --create /dev/md1 --level=5 --raid- &lt;br /&gt;
 devices=6 /dev/sdab1 /dev/sdt1 /dev/sdar1 /dev/sdaj1 /dev/sdl1 /dev/sdd1&lt;br /&gt;
 mdadm --create /dev/md2 --level=5 --raid- &lt;br /&gt;
 devices=6 /dev/sdaf1 /dev/sdx1 /dev/sdav1 /dev/sdan1 /dev/sdp1 /dev/sdh&lt;br /&gt;
 mdadm --create /dev/md3 --level=5 --raid- &lt;br /&gt;
 devices=6 /dev/sdaa1 /dev/sds1 /dev/sdaq1 /dev/sdai1 /dev/sdk1 /dev/sdc1&lt;br /&gt;
 mdadm --create /dev/md4 --level=5 --raid- &lt;br /&gt;
 devices=6 /dev/sdae1 /dev/sdw1 /dev/sdau1 /dev/sdam1 /dev/sdo1 /dev/sdg1&lt;br /&gt;
 mdadm --create /dev/md5 --level=5 --raid- &lt;br /&gt;
 devices=6 /dev/sdz1 /dev/sdr1 /dev/sdap1 /dev/sdah1 /dev/sdj1 /dev/sdb1&lt;br /&gt;
 mdadm --create /dev/md6 --level=5 --raid- &lt;br /&gt;
 devices=6 /dev/sdad1 /dev/sdv1 /dev/sdat1 /dev/sdal1 /dev/sdn1 /dev/sdf1&lt;br /&gt;
 mdadm --create /dev/md7 --level=5 --raid-devices=5 /dev/sdq1 /dev/sdao1 /dev/sdag1 /dev/sdi1 /dev/sda1&lt;br /&gt;
 mdadm --create /dev/md8 --level=5 --raid-devices=5 /dev/sdu1 /dev/sdas1 /dev/sdak1 /dev/sdm1 /dev/sde1&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Sinon il est possible d&#039;avoir un disk de spare pour tous les raids, cf doc :&#039;&#039;&lt;br /&gt;
[http://images.globalknowledge.com/wwwimages/whitepaperpdf/WP_RCHE_10TipsTricks1.pdf] &lt;br /&gt;
&#039;&#039;mais je n&#039;ai pas eu le temps de tester.&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Pour verifier:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 cat /proc/mdstat&lt;br /&gt;
 mdadm --query /dev/md1&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Pour supprimer:&lt;br /&gt;
&lt;br /&gt;
 mdadm /dev/md1 stop&lt;br /&gt;
 mdadm /dev/md1 --remove&lt;br /&gt;
 mdadm --zero-superblock /dev/hdxx1&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 mkfs -t ext3 /dev/md1&lt;br /&gt;
 mount /dev/md1 /scratch&lt;br /&gt;
&lt;br /&gt;
== Pour les drivers: ==&lt;br /&gt;
&lt;br /&gt;
telecharger les outils et driver linux:&lt;br /&gt;
&lt;br /&gt;
http://www.sun.com/servers/x64/x4500/downloads.jsp&lt;br /&gt;
&lt;br /&gt;
telecharger: kernel-largesmp-devel-2.6.9-42.0.3.EL.x86_64&lt;br /&gt;
&lt;br /&gt;
Par contre il crée &lt;br /&gt;
&#039;&#039;&#039;/usr/src/kernels/2.6.9-42.0.3.EL-largesmp-x86_64&#039;&#039;&#039;  &lt;br /&gt;
au lieu de &#039;&#039;&#039;/usr/src/kernels/2.6.9-42.0.3.ELlargesmp-x86_64&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
faire donc un:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 cp -r /usr/src/kernels/2.6.9-42.0.3.EL-largesmp-x86_64 /usr/src/kernels/2.6.9-42.0.3.ELlargesmp-x86_64&lt;br /&gt;
&lt;br /&gt;
Ensuite:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 rpmbuild --rebuild   mvSatalinux-3.6.3_2-2.6.9_42.ELsmp_1.src.rpm&lt;br /&gt;
 rpm -e (de tous les rpm: &amp;quot;rpm -qa | grep -i mvsata&amp;quot;)&lt;br /&gt;
 rpm -ivh /usr/src/redhat/RPMS/x86_64/mvSatalinux-3.6.3_2-2.6.9_42.0.3.ELlargesmp_1.x86_64.rpm&lt;br /&gt;
 rpm -ivh /usr/src/redhat/RPMS/x86_64/mvSatalinux-debuginfo-3.6.3_2-2.6.9_42.0.3.ELlargesmp_1.x86_64.rpm&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
verifier:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 # modinfo mv_sata&lt;br /&gt;
 filename:       /lib/modules/2.6.9-42.0.3.ELlargesmp/kernel/drivers/scsi/mv_sata.ko&lt;br /&gt;
 description:    Marvell Serial ATA PCI-X Adapter version: 3.6.3_2&lt;br /&gt;
 license:        BSD&lt;br /&gt;
 alias:          pci:v000011ABd00007042sv*sd*bc*sc*i*&lt;br /&gt;
 alias:          pci:v000011ABd00006042sv*sd*bc*sc*i*&lt;br /&gt;
 alias:          pci:v000011ABd00006041sv*sd*bc*sc*i*&lt;br /&gt;
 alias:          pci:v000011ABd00006081sv*sd*bc*sc*i*&lt;br /&gt;
 alias:          pci:v000011ABd00005041sv*sd*bc*sc*i*&lt;br /&gt;
 alias:          pci:v000011ABd00005040sv*sd*bc*sc*i*&lt;br /&gt;
 alias:          pci:v000011ABd00005081sv*sd*bc*sc*i*&lt;br /&gt;
 alias:          pci:v000011ABd00005080sv*sd*bc*sc*i*&lt;br /&gt;
 depends:        scsi_mod&lt;br /&gt;
 vermagic:       2.6.9-42.0.3.ELlargesmp SMP gcc-3.4&lt;br /&gt;
 }}}&lt;br /&gt;
&lt;br /&gt;
== Test Performance Lecture/ecriture ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 # more /proc/mdstat&lt;br /&gt;
 Personalities : [raid5]&lt;br /&gt;
 md7 : active raid5 sdao1[1] sdag1[2] sdq1[0] sdi1[3]&lt;br /&gt;
      1953535744 blocks level 5, 64k chunk, algorithm 2 [5/4] [UUUU_]&lt;br /&gt;
 md5 : active raid5 sdap1[2] sdah1[3] sdz1[0] sdr1[1] sdj1[4] sdb1[5]&lt;br /&gt;
      2441919680 blocks level 5, 64k chunk, algorithm 2 [6/6] [UUUUUU]&lt;br /&gt;
 md3 : active raid5 sdaq1[2] sdai1[3] sdaa1[0] sds1[1] sdk1[4]&lt;br /&gt;
      2441919680 blocks level 5, 64k chunk, algorithm 2 [6/5] [UUUUU_]&lt;br /&gt;
 md8 : active raid5 sdas1[1] sdak1[2] sdu1[0] sdm1[3] sde1[4]&lt;br /&gt;
      1953535744 blocks level 5, 64k chunk, algorithm 2 [5/5] [UUUUU]&lt;br /&gt;
 md6 : active raid5 sdat1[2] sdal1[3] sdad1[0] sdv1[1] sdn1[4] sdf1[5]&lt;br /&gt;
      2441919680 blocks level 5, 64k chunk, algorithm 2 [6/6] [UUUUUU]&lt;br /&gt;
 md4 : active raid5 sdau1[2] sdam1[3] sdae1[0] sdw1[1] sdo1[4] sdg1[5]&lt;br /&gt;
      2441919680 blocks level 5, 64k chunk, algorithm 2 [6/6] [UUUUUU]&lt;br /&gt;
 md2 : active raid5 sdav1[2] sdan1[3] sdaf1[0] sdx1[1] sdp1[4]&lt;br /&gt;
      2441919680 blocks level 5, 64k chunk, algorithm 2 [6/5] [UUUUU_]&lt;br /&gt;
 md1 : active raid5 sdar1[2] sdaj1[3] sdab1[0] sdt1[1] sdl1[4] sdd1[5]&lt;br /&gt;
      2441919680 blocks level 5, 64k chunk, algorithm 2 [6/6] [UUUUUU]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 en MB/s&lt;br /&gt;
 Volumétrie: 19TB utile&lt;br /&gt;
 |	   md1    md2     md3	  md4    md5   md6      md7    md8    MOY     TOT (Mb/s)   Mb/s/TB	&lt;br /&gt;
 Write//    71,22  69,31  68,13  71,26  70,14   69,56   62,56  65,89   68,50     4384,56     230,76&lt;br /&gt;
 write seq 111,01 103,42  102,24 109,77	112,58	107,02	84,61  89,6   102,53125			&lt;br /&gt;
 read //   99,62   98,75   98,22  99,78	100,93	100,01	85,7   86,69   96,2125	 6157,6	     324,08&lt;br /&gt;
 read seq  275,4  254,28  250,69 267,62	274,16	280,52	188,37 197,58 248,5775&lt;br /&gt;
&lt;br /&gt;
== Configuration Reseaux avec 2 intefaces bond ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node23 ~]# more /etc/modprobe.conf&lt;br /&gt;
 alias eth0 e1000&lt;br /&gt;
 alias eth1 e1000&lt;br /&gt;
 alias eth2 e1000&lt;br /&gt;
 alias eth3 e1000&lt;br /&gt;
 alias eth4 e1000&lt;br /&gt;
 alias eth5 e1000&lt;br /&gt;
 alias eth6 e1000&lt;br /&gt;
 alias eth7 e1000&lt;br /&gt;
 install ipw3945 /sbin/modprobe --ignore-install ipw3945 ; sleep 0.5 ; /sbin/ipw3&lt;br /&gt;
 945d --quiet&lt;br /&gt;
 remove ipw3945 /sbin/ipw3945d --kill ; /sbin/modprobe -r --ignore-remove ipw3945&lt;br /&gt;
 alias usb-controller ehci-hcd&lt;br /&gt;
 alias usb-controller1 ohci-hcd&lt;br /&gt;
 ####BONDING&lt;br /&gt;
 alias bond0 bonding&lt;br /&gt;
 alias bond1 bonding&lt;br /&gt;
 #options bond0 -o bond0 mode=0 miimon=100&lt;br /&gt;
 options bond0 mode=0 miimon=100 max_bonds=2&lt;br /&gt;
 options bond1 -o bond1 mode=0 miimon=100&lt;br /&gt;
 ####END BONDING&lt;br /&gt;
 #Added mv_sata binary driver rpm installation&lt;br /&gt;
 alias scsi_hostadapter mv_sata&lt;br /&gt;
 alias sata_mv off&lt;br /&gt;
 [root@node23 ~]#&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node23 ~]# more /etc/sysconfig/network-scripts/ifcfg-*&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-bond0&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=bond0&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=static&lt;br /&gt;
 IPADDR=192.54.208.82&lt;br /&gt;
 NETMASK=255.255.255.0&lt;br /&gt;
 BROADCAST=192.54.208.255&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-bond1&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=bond1&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=static&lt;br /&gt;
 IPADDR=192.54.208.101&lt;br /&gt;
 NETMASK=255.255.255.0&lt;br /&gt;
 BROADCAST=192.54.208.255&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-eth0&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=eth0&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=none&lt;br /&gt;
 MASTER=bond0&lt;br /&gt;
 SLAVE=yes&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-eth1&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=eth1&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=none&lt;br /&gt;
 MASTER=bond0&lt;br /&gt;
 SLAVE=yes&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-eth2&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=eth2&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=none&lt;br /&gt;
 MASTER=bond0&lt;br /&gt;
 SLAVE=yes&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-eth3&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=eth3&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=none&lt;br /&gt;
 MASTER=bond0&lt;br /&gt;
 SLAVE=yes&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-eth4&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=eth4&lt;br /&gt;
 TYPE=Ethernet &lt;br /&gt;
 BOOTPROTO=none&lt;br /&gt;
 MASTER=bond1&lt;br /&gt;
 SLAVE=yes&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-eth5&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=eth5&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=none&lt;br /&gt;
 MASTER=bond1&lt;br /&gt;
 SLAVE=yes&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-eth6&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=eth6&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=none&lt;br /&gt;
 MASTER=bond1&lt;br /&gt;
 SLAVE=yes&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-eth7&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=eth7&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=none&lt;br /&gt;
 MASTER=bond1&lt;br /&gt;
 SLAVE=yes&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 # ifconfig&lt;br /&gt;
 bond0     Link encap:Ethernet  HWaddr 00:14:4F:20:FC:B0&lt;br /&gt;
          inet addr:192.54.208.82  Bcast:192.54.208.255  Mask:255.255.255.0&lt;br /&gt;
          inet6 addr: fe80::200:ff:fe00:0/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING MASTER MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:96129841 errors:2 dropped:0 overruns:0 frame:1&lt;br /&gt;
          TX packets:86702743 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:0&lt;br /&gt;
          RX bytes:144510750072 (134.5 GiB)  TX bytes:7460167641 (6.9 GiB)&lt;br /&gt;
 bond1     Link encap:Ethernet  HWaddr 00:15:17:2A:09:A6&lt;br /&gt;
          inet addr:192.54.208.101  Bcast:192.54.208.255  Mask:255.255.255.0&lt;br /&gt;
          inet6 addr: fe80::200:ff:fe00:0/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING MASTER MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:934011 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:33 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:0&lt;br /&gt;
          RX bytes:62926730 (60.0 MiB)  TX bytes:2572 (2.5 KiB)&lt;br /&gt;
 eth0      Link encap:Ethernet  HWaddr 00:14:4F:20:FC:B0&lt;br /&gt;
          inet6 addr: fe80::214:4fff:fe20:fcb0/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING SLAVE MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:73871160 errors:2 dropped:0 overruns:0 frame:1&lt;br /&gt;
          TX packets:21675694 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:1000&lt;br /&gt;
          RX bytes:110757099435 (103.1 GiB)  TX bytes:1865279045 (1.7 GiB)&lt;br /&gt;
          Base address:0xac00 Memory:fd2e0000-fd300000&lt;br /&gt;
 eth1      Link encap:Ethernet  HWaddr 00:14:4F:20:FC:B0&lt;br /&gt;
          inet6 addr: fe80::214:4fff:fe20:fcb0/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING SLAVE MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:22109357 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:21675683 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:1000&lt;br /&gt;
          RX bytes:33554660288 (31.2 GiB)  TX bytes:1864208904 (1.7 GiB)&lt;br /&gt;
          Base address:0xa800 Memory:fd2c0000-fd2e0000&lt;br /&gt;
 eth2      Link encap:Ethernet  HWaddr 00:14:4F:20:FC:B0&lt;br /&gt;
          inet6 addr: fe80::214:4fff:fe20:fcb0/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING SLAVE MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:55195 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:21675683 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:1000&lt;br /&gt;
          RX bytes:68939873 (65.7 MiB)  TX bytes:1865275229 (1.7 GiB)&lt;br /&gt;
          Base address:0xbc00 Memory:fd3e0000-fd400000&lt;br /&gt;
 eth3      Link encap:Ethernet  HWaddr 00:14:4F:20:FC:B0&lt;br /&gt;
          inet6 addr: fe80::214:4fff:fe20:fcb0/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING SLAVE MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:94129 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:21675683 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:1000&lt;br /&gt;
          RX bytes:130050476 (124.0 MiB)  TX bytes:1865404463 (1.7 GiB)&lt;br /&gt;
          Base address:0xb800 Memory:fd3c0000-fd3e0000&lt;br /&gt;
 eth4      Link encap:Ethernet  HWaddr 00:15:17:2A:09:A6&lt;br /&gt;
          inet6 addr: fe80::215:17ff:fe2a:9a6/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING SLAVE MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:0 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:10 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:1000&lt;br /&gt;
          RX bytes:0 (0.0 b)  TX bytes:758 (758.0 b)&lt;br /&gt;
          Base address:0xec00 Memory:fe4e0000-fe500000&lt;br /&gt;
 eth5      Link encap:Ethernet  HWaddr 00:15:17:2A:09:A6&lt;br /&gt;
          inet6 addr: fe80::215:17ff:fe2a:9a6/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING SLAVE MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:5 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:9 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:1000&lt;br /&gt;
          RX bytes:390 (390.0 b)  TX bytes:714 (714.0 b)&lt;br /&gt;
          Base address:0xe800 Memory:fe4c0000-fe4e0000&lt;br /&gt;
 eth6      Link encap:Ethernet  HWaddr 00:15:17:2A:09:A6&lt;br /&gt;
          inet6 addr: fe80::215:17ff:fe2a:9a6/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING SLAVE MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:1 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:8 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:1000&lt;br /&gt;
          RX bytes:66 (66.0 b)  TX bytes:628 (628.0 b)&lt;br /&gt;
          Base address:0xfc00 Memory:fe7e0000-fe800000&lt;br /&gt;
 eth7      Link encap:Ethernet  HWaddr 00:15:17:2A:09:A6&lt;br /&gt;
          inet6 addr: fe80::215:17ff:fe2a:9a6/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING SLAVE MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:934005 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:6 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:1000&lt;br /&gt;
          RX bytes:62926274 (60.0 MiB)  TX bytes:472 (472.0 b)&lt;br /&gt;
          Base address:0xf800 Memory:fe7c0000-fe7e0000&lt;br /&gt;
 lo        Link encap:Local Loopback&lt;br /&gt;
          inet addr:127.0.0.1  Mask:255.0.0.0&lt;br /&gt;
          inet6 addr: ::1/128 Scope:Host&lt;br /&gt;
          UP LOOPBACK RUNNING  MTU:16436  Metric:1&lt;br /&gt;
          RX packets:294 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:294 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:0&lt;br /&gt;
          RX bytes:46053 (44.9 KiB)  TX bytes:46053 (44.9 KiB)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Exemple de connection avec iperf (4 client pour chacune des interfaces)&lt;br /&gt;
&lt;br /&gt;
 tcp        0      0 *:20008                     *:*                         LISTEN&lt;br /&gt;
 tcp        0      0 *:20009                     *:*                         LISTEN&lt;br /&gt;
 tcp        0      0 node23.datagrid.cea.f:20008 wn048.datagrid.cea.fr:51269 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node27.datagrid.cea.f:20009 node02.datagrid.cea.f:39957 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node23.datagrid.cea.f:20008 wn004.datagrid.cea.fr:35417 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node23.datagrid.cea.f:20008 node01.datagrid.cea.f:38544 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node27.datagrid.cea.f:20009 wn049.datagrid.cea.fr:34206 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node23.datagrid.cea.f:20008 wn005.datagrid.cea.fr:35380 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node27.datagrid.cea.f:20009 wn050.datagrid.cea.fr:34567 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node27.datagrid.cea.f:20009 wn006.datagrid.cea.fr:42137 ESTABLISHED&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Exemple de configuration pour le SE DPM&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node24 root]# dpm-qryconf&lt;br /&gt;
 POOL CMS_SC DEFSIZE 200.00M GC_START_THRESH 0 GC_STOP_THRESH 0 DEF_LIFETIME 7.0d DEFPINTIME 2.0h  &lt;br /&gt;
 MAX_LIFETIME 1.0m MAXPINTIME 12.0h FSS_POLICY maxfreespace GC_POLICY lru RS_POLICY fifo GIDS 0 S_TYPE -  &lt;br /&gt;
 MIG_POLICY none RET_POLICY R&lt;br /&gt;
                              CAPACITY 23.51T FREE 22.27T ( 94.7%)&lt;br /&gt;
  node25.datagrid.cea.fr /pool_node25 CAPACITY 4.48T FREE 4.39T ( 98.1%)&lt;br /&gt;
  node26.datagrid.cea.fr /pool_node26 CAPACITY 233.71G FREE 216.23G ( 92.5%)&lt;br /&gt;
  node26.datagrid.cea.fr /pool_node26_2 CAPACITY 1.79T FREE 1.69T ( 94.5%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam1 CAPACITY 2.24T FREE 2.09T ( 93.2%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam2 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam3 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam7 CAPACITY 1.79T FREE 1.68T ( 93.8%)&lt;br /&gt;
  node27.datagrid.cea.fr /dteam4 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node27.datagrid.cea.fr /dteam5 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node27.datagrid.cea.fr /dteam6 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node27.datagrid.cea.fr /dteam8 CAPACITY 1.79T FREE 1.68T ( 93.8%)&lt;br /&gt;
&lt;br /&gt;
== Configuration Reseaux avec 1 intefaces bond ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 # more /etc/modprobe.conf&lt;br /&gt;
 alias eth0 e1000&lt;br /&gt;
 alias eth1 e1000&lt;br /&gt;
 alias eth2 e1000&lt;br /&gt;
 alias eth3 e1000&lt;br /&gt;
 alias eth4 e1000&lt;br /&gt;
 alias eth5 e1000&lt;br /&gt;
 alias eth6 e1000&lt;br /&gt;
 alias eth7 e1000&lt;br /&gt;
 options e1000 InterruptThrottleRate=3000&lt;br /&gt;
 install ipw3945 /sbin/modprobe --ignore-install ipw3945 ; sleep 0.5 ; /sbin/ipw3&lt;br /&gt;
 945d --quiet&lt;br /&gt;
 remove ipw3945 /sbin/ipw3945d --kill ; /sbin/modprobe -r --ignore-remove ipw3945&lt;br /&gt;
 alias usb-controller ehci-hcd&lt;br /&gt;
 alias usb-controller1 ohci-hcd&lt;br /&gt;
 ####BONDING&lt;br /&gt;
 alias bond0 bonding&lt;br /&gt;
 options bond0 mode=0 miimon=100&lt;br /&gt;
 ####END BONDING&lt;br /&gt;
 #Added mv_sata binary driver rpm installation&lt;br /&gt;
 alias scsi_hostadapter mv_sata&lt;br /&gt;
 alias sata_mv off&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
recharger les modules, redemarrer le reseaux, et verifier que tout est OK:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 # more /proc/net/bonding/bond0&lt;br /&gt;
 Ethernet Channel Bonding Driver: v2.6.3 (June 8, 2005)&lt;br /&gt;
 Bonding Mode: load balancing (round-robin)&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 MII Polling Interval (ms): 100&lt;br /&gt;
 Up Delay (ms): 0&lt;br /&gt;
 Down Delay (ms): 0&lt;br /&gt;
 Slave Interface: eth0&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 Link Failure Count: 0&lt;br /&gt;
 Permanent HW addr: 00:14:4f:20:fc:b0&lt;br /&gt;
 Slave Interface: eth1&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 Link Failure Count: 0&lt;br /&gt;
 Permanent HW addr: 00:14:4f:20:fc:b1&lt;br /&gt;
 Slave Interface: eth2&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 Link Failure Count: 0&lt;br /&gt;
 Permanent HW addr: 00:14:4f:20:fc:b2&lt;br /&gt;
 Slave Interface: eth3&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 Link Failure Count: 0&lt;br /&gt;
 Permanent HW addr: 00:14:4f:20:fc:b3 &lt;br /&gt;
 Slave Interface: eth4&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 Link Failure Count: 0&lt;br /&gt;
 Permanent HW addr: 00:15:17:2a:09:a6&lt;br /&gt;
 Slave Interface: eth5&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 Link Failure Count: 0&lt;br /&gt;
 Permanent HW addr: 00:15:17:2a:09:a7&lt;br /&gt;
 Slave Interface: eth6&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 Link Failure Count: 0&lt;br /&gt;
 Permanent HW addr: 00:15:17:2a:07:8c&lt;br /&gt;
 Slave Interface: eth7&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 Link Failure Count: 0&lt;br /&gt;
 Permanent HW addr: 00:15:17:2a:07:8d&lt;br /&gt;
&lt;br /&gt;
== Probleme sur les cartes reseaux supplémentaires: ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel: e1000: eth4: e1000_clean_tx_irq: Detected Tx Unit Hang&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   Tx Queue             &amp;lt;0&amp;gt;&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   TDH                  &amp;lt;2&amp;gt;&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   TDT                  &amp;lt;2&amp;gt;&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   next_to_use          &amp;lt;2&amp;gt;&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   next_to_clean        &amp;lt;0&amp;gt;&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel: buffer_info[next_to_clean]&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   time_stamp           &amp;lt;1144b73ba&amp;gt;&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   next_to_watch        &amp;lt;0&amp;gt;&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   jiffies              &amp;lt;1144b7a09&amp;gt;&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   next_to_watch.status &amp;lt;0&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel: e1000: eth5: e1000_clean_tx_irq: Detected Tx Unit Hang&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   Tx Queue             &amp;lt;0&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   TDH                  &amp;lt;1&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   TDT                  &amp;lt;1&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   next_to_use          &amp;lt;1&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   next_to_clean        &amp;lt;0&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel: buffer_info[next_to_clean]&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   time_stamp           &amp;lt;1144b77fa&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   next_to_watch        &amp;lt;0&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   jiffies              &amp;lt;1144b817b&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   next_to_watch.status &amp;lt;0&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
on n&#039;avait pas le bon driver e1000, voir paragraphe suivant pour loader le bon driver&lt;br /&gt;
&lt;br /&gt;
== driver carte réseaux ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Pour voir le driver adapté aux cartes:&lt;br /&gt;
&lt;br /&gt;
[http://support.intel.com/support/network/sb/cs-012904.htm]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node23 ~]# lspci | tail -4&lt;br /&gt;
 0d:01.0 Ethernet controller: Intel Corporation 82546GB Gigabit Ethernet Controller (rev 03)&lt;br /&gt;
 0d:01.1 Ethernet controller: Intel Corporation 82546GB Gigabit Ethernet Controller (rev 03)&lt;br /&gt;
 0e:01.0 Ethernet controller: Intel Corporation 82546GB Gigabit Ethernet Controller (rev 03)&lt;br /&gt;
 0e:01.1 Ethernet controller: Intel Corporation 82546GB Gigabit Ethernet Controller (rev 03)&lt;br /&gt;
 [root@node23 ~]#&lt;br /&gt;
&lt;br /&gt;
telecharger le bon driver puis l&#039;installer:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 # rpmbuild -tb e1000-7.6.9.tar.gz&lt;br /&gt;
 # rpm -ivh /usr/src/redhat/RPMS/x86_64/e1000-7.6.9-1.x86_64.rpm&lt;br /&gt;
 Preparing...                ########################################### [100%]&lt;br /&gt;
   1:e1000                  ########################################### [100%]&lt;br /&gt;
 original pci.ids saved in /usr/local/share/e1000&lt;br /&gt;
 original pcitable saved in /usr/local/share/e1000&lt;br /&gt;
 [root@node23 BONDING]#&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Dans le README, il preconnise de loader le module avec l&#039;option &#039;&#039;interruptThrottleRate=3000:&#039;&#039; &lt;br /&gt;
&lt;br /&gt;
tout recharger correctement:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 ifconfig bond0 down; ifconfig bond1 down; rmmod e1000; modprobe e1000  &lt;br /&gt;
 InterruptThrottleRate=3000,3000,3000,3000,3000,3000,3000,3000 ; rmmod bond0 ; rmmod bond1; modprobe bonding &lt;br /&gt;
 -o bond0 mode=0 miimon=100; modprobe bonding -o bond1 -o bond1 mode=0 miimon=100;  &lt;br /&gt;
 /etc/init.d/network restart&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
et modifier le fichier modprobe:&lt;br /&gt;
&lt;br /&gt;
 # more /etc/modprobe.conf&lt;br /&gt;
 alias eth0 e1000&lt;br /&gt;
 alias eth1 e1000&lt;br /&gt;
 alias eth2 e1000&lt;br /&gt;
 alias eth3 e1000&lt;br /&gt;
 alias eth4 e1000&lt;br /&gt;
 alias eth5 e1000&lt;br /&gt;
 alias eth6 e1000&lt;br /&gt;
 alias eth7 e1000&lt;br /&gt;
 options e1000 InterruptThrottleRate=3000&lt;br /&gt;
 install ipw3945 /sbin/modprobe --ignore-install ipw3945 ; sleep 0.5 ; /sbin/ipw3945d --quiet&lt;br /&gt;
 remove ipw3945 /sbin/ipw3945d --kill ; /sbin/modprobe -r --ignore-remove ipw3945&lt;br /&gt;
 alias usb-controller ehci-hcd&lt;br /&gt;
 alias usb-controller1 ohci-hcd&lt;br /&gt;
 ####BONDING&lt;br /&gt;
 alias bond0 bonding&lt;br /&gt;
 alias bond1 bonding&lt;br /&gt;
 options bond0 mode=0 miimon=100 max_bonds=2&lt;br /&gt;
 options bond1 -o bond1 mode=0 miimon=100&lt;br /&gt;
 ####END BONDING&lt;br /&gt;
 #Added mv_sata binary driver rpm installation&lt;br /&gt;
 alias scsi_hostadapter mv_sata&lt;br /&gt;
 alias sata_mv off&lt;br /&gt;
&lt;br /&gt;
== Test iperf ==&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;1) 1 interface bond0 (eth0, eth1, eth2, eth3):&#039;&#039;&#039;  ~ 2,7 Gb/s&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [  4] 10.0-20.0 sec    557 MBytes    467 Mbits/sec&lt;br /&gt;
 [  5] 10.0-20.0 sec  1.10 GBytes    941 Mbits/sec&lt;br /&gt;
 [  6] 10.0-20.0 sec    976 MBytes    819 Mbits/sec&lt;br /&gt;
 [  7] 10.0-20.0 sec    567 MBytes    476 Mbits/sec&lt;br /&gt;
 [  4] 20.0-30.0 sec    564 MBytes    473 Mbits/sec&lt;br /&gt;
 [  5] 20.0-30.0 sec  1.10 GBytes    941 Mbits/sec&lt;br /&gt;
 [  6] 20.0-30.0 sec    969 MBytes    813 Mbits/sec&lt;br /&gt;
 [  7] 20.0-30.0 sec    558 MBytes    468 Mbits/sec&lt;br /&gt;
 [  4] 30.0-40.0 sec    561 MBytes    470 Mbits/sec&lt;br /&gt;
 [  5] 30.0-40.0 sec  1.10 GBytes    941 Mbits/sec&lt;br /&gt;
 [  6] 30.0-40.0 sec    986 MBytes    827 Mbits/sec&lt;br /&gt;
 [  7] 30.0-40.0 sec    550 MBytes    461 Mbits/sec&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;2) 2 interfaces : bond0 (eth0, eth1) et bond1 (eth2,eth3):&#039;&#039;&#039;  ~900 Mb/s !!&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 netstat -a | grep 200&lt;br /&gt;
 tcp        0      0 *:20008                     *:*                         LISTEN&lt;br /&gt;
 tcp        0      0 *:20010                     *:*                         LISTEN&lt;br /&gt;
 tcp        0      0 node27.datagrid.cea.f:20010 wn049.datagrid.cea.fr:41057 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node27.datagrid.cea.f:20010 wn005.datagrid.cea.fr:44065 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node23.datagrid.cea.f:20008 node01.datagrid.cea.f:34342 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node23.datagrid.cea.f:20008 wn048.datagrid.cea.fr:34032 ESTABLISHED&lt;br /&gt;
&lt;br /&gt;
sur node 23: &lt;br /&gt;
 [  4] 20.0-25.0 sec    146 MBytes    244 Mbits/sec&lt;br /&gt;
 [  5] 20.0-25.0 sec    149 MBytes    251 Mbits/sec&lt;br /&gt;
 [  4] 25.0-30.0 sec    143 MBytes    240 Mbits/sec&lt;br /&gt;
 [  5] 25.0-30.0 sec    160 MBytes    268 Mbits/sec&lt;br /&gt;
 [  4] 30.0-35.0 sec    117 MBytes    196 Mbits/sec&lt;br /&gt;
 [  5] 30.0-35.0 sec    149 MBytes    250 Mbits/sec&lt;br /&gt;
sur node27:&lt;br /&gt;
 [  4] 20.0-25.0 sec    101 MBytes    170 Mbits/sec&lt;br /&gt;
 [  5] 20.0-25.0 sec    164 MBytes    275 Mbits/sec&lt;br /&gt;
 [  4] 25.0-30.0 sec    108 MBytes    181 Mbits/sec&lt;br /&gt;
 [  5] 25.0-30.0 sec    180 MBytes    303 Mbits/sec&lt;br /&gt;
 [  4] 30.0-35.0 sec    102 MBytes    172 Mbits/sec&lt;br /&gt;
 [  5] 30.0-35.0 sec    162 MBytes    272 Mbits/sec&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;3)interfaces : bond0 (eth0, eth1, eth2,eth3) et bond1 (eth4, eth5, eth6,eth7):&#039;&#039;&#039;  ~3,8Gb/s &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
sur node27:&lt;br /&gt;
 [  4] 20.0-30.0 sec    337 MBytes    283 Mbits/sec&lt;br /&gt;
 [  5] 20.0-30.0 sec    393 MBytes    329 Mbits/sec&lt;br /&gt;
 [  6] 20.0-30.0 sec    425 MBytes    357 Mbits/sec&lt;br /&gt;
 [  7] 20.0-30.0 sec    758 MBytes    636 Mbits/sec&lt;br /&gt;
sur node23:&lt;br /&gt;
 [  4] 20.0-30.0 sec    727 MBytes    610 Mbits/sec&lt;br /&gt;
 [  5] 20.0-30.0 sec  1.10 GBytes    941 Mbits/sec&lt;br /&gt;
 [  6] 20.0-30.0 sec    360 MBytes    302 Mbits/sec&lt;br /&gt;
 [  7] 20.0-30.0 sec    359 MBytes    301 Mbits/sec&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;4) 1 interface bond0 (eth0, eth1, eth2, eth3, eth4, eth5, eth6, eth7):&#039;&#039;&#039; ~5Gb/s&lt;br /&gt;
&lt;br /&gt;
 http://lcg.in2p3.fr/wiki/images/Node23_datagrid_cea_fr_rrd_NUMKBREADAVG_d.gif&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [  4] 10.0-20.0 sec    841 MBytes    705 Mbits/sec&lt;br /&gt;
 [  5] 10.0-20.0 sec  1001 MBytes    840 Mbits/sec&lt;br /&gt;
 [  6] 10.0-20.0 sec    671 MBytes    563 Mbits/sec&lt;br /&gt;
 [  7] 10.0-20.0 sec    581 MBytes    487 Mbits/sec&lt;br /&gt;
 [  8] 10.0-20.0 sec    431 MBytes    362 Mbits/sec&lt;br /&gt;
 [  9] 10.0-20.0 sec    535 MBytes    449 Mbits/sec&lt;br /&gt;
 [ 10] 10.0-20.0 sec    986 MBytes    827 Mbits/sec&lt;br /&gt;
 [ 11] 10.0-20.0 sec    878 MBytes    736 Mbits/sec&lt;br /&gt;
 [  4] 20.0-30.0 sec    903 MBytes    758 Mbits/sec&lt;br /&gt;
 [  5] 20.0-30.0 sec  1.04 GBytes    894 Mbits/sec&lt;br /&gt;
 [  6] 20.0-30.0 sec    263 MBytes    221 Mbits/sec&lt;br /&gt;
 [  7] 20.0-30.0 sec    169 MBytes    142 Mbits/sec&lt;br /&gt;
 [  8] 20.0-30.0 sec    731 MBytes    614 Mbits/sec&lt;br /&gt;
 [  9] 20.0-30.0 sec    916 MBytes    769 Mbits/sec&lt;br /&gt;
 [ 10] 20.0-30.0 sec    922 MBytes    774 Mbits/sec&lt;br /&gt;
 [ 11] 20.0-30.0 sec    395 MBytes    332 Mbits/sec&lt;br /&gt;
&lt;br /&gt;
== Test Performance DISK+NETWORK avec DPM ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node24 root]# dpm-qryconf&lt;br /&gt;
 POOL CMS_SC DEFSIZE 200.00M GC_START_THRESH 0 GC_STOP_THRESH 0 DEF_LIFETIME 7.0d DEFPINTIME 2.0h  &lt;br /&gt;
 MAX_LIFETIME 1.0m MAXPINTIME 12.0h FSS_POLICY maxfreespace GC_POLICY lru RS_POLICY fifo GIDS 0 S_TYPE -   &lt;br /&gt;
 MIG_POLICY none RET_POLICY R&lt;br /&gt;
                              CAPACITY 17.01T FREE 15.98T ( 93.9%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam1 CAPACITY 2.24T FREE 2.09T ( 93.2%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam2 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam3 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam7 CAPACITY 1.79T FREE 1.68T ( 93.8%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam4 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam5 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam6 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam8 CAPACITY 1.79T FREE 1.68T ( 93.8%)&lt;br /&gt;
&lt;br /&gt;
sur l&#039;UI:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [cleroy@node02 2_IPbonding]$ time ./transfert_concurrent_client_node24.py&lt;br /&gt;
 globus-url-copy file:/home/cleroy/DTEAM_2004/4_Tt2t1/ATLAS_DATA &lt;br /&gt;
 gsiftp://node24.datagrid.cea.fr/dpm/datagrid.cea.fr/home/dteam/dapnia/cleroy/TO_BE_REMOVED/&lt;br /&gt;
 ATLAS_DATA_Trf00001&lt;br /&gt;
 ...&lt;br /&gt;
 ....&lt;br /&gt;
 real    2m13.017s&lt;br /&gt;
 user    1m4.270s&lt;br /&gt;
 sys     0m48.790s&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Sur le SE disk:&lt;br /&gt;
&lt;br /&gt;
 [root@node23 ~]# ll /dteam*/dteam/2007-10-10&lt;br /&gt;
 /dteam1/dteam/2007-10-10:&lt;br /&gt;
 total 1441096&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA2_Trf00001.4189.0&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA3_Trf00000.4181.0&lt;br /&gt;
 /dteam2/dteam/2007-10-10:&lt;br /&gt;
 total 1441104&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:37 ATLAS_DATA_Trf00000.4182.0&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:37 ATLAS_DATA_Trf00001.4174.0&lt;br /&gt;
 -rw-r--r--  1 root   root           5 Oct 10 17:27 essai&lt;br /&gt;
 /dteam3/dteam/2007-10-10:&lt;br /&gt;
 total 1441096&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA4_Trf00001.4175.0&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:37 ATLAS_DATA8_Trf00001.4183.0 &lt;br /&gt;
 /dteam4/dteam/2007-10-10:&lt;br /&gt;
 total 1441096&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:37 ATLAS_DATA7_Trf00001.4184.0&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA8_Trf00000.4176.0&lt;br /&gt;
 /dteam5/dteam/2007-10-10:&lt;br /&gt;
 total 1441096&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA2_Trf00000.4177.0&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:37 ATLAS_DATA7_Trf00000.4185.0&lt;br /&gt;
 /dteam6/dteam/2007-10-10:&lt;br /&gt;
 total 1441096&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA5_Trf00001.4178.0&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:37 ATLAS_DATA6_Trf00000.4188.0 &lt;br /&gt;
 /dteam7/dteam/2007-10-10:&lt;br /&gt;
 total 1441096&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA3_Trf00001.4186.0&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA6_Trf00001.4180.0&lt;br /&gt;
 /dteam8/dteam/2007-10-10:&lt;br /&gt;
 total 1441096&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA4_Trf00000.4179.0&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA5_Trf00000.4187.0&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
16 fichiers en paralleles de 737 MB: &lt;br /&gt;
11792 MB en 133 s = 88 MB/s = 709 Mb/s&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
autre test: &lt;br /&gt;
(16 * 20 = 320 )fichiers de 737MB : 235840 MB en  30m29.512s : 128 MB/s : 1024 Mb/s&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== DPM et XROOTD ==&lt;br /&gt;
&lt;br /&gt;
Ce document décrit la procédure utilisée à l&#039;IPNO pour installer xrootd sur un serveur DPM. La procédure d&#039;installation doit être effectuée sur chaque server (head node et disk servers). A l&#039;IPNO l&#039;installation a eu lieu sur un unique serveur à la fois head node et disk server.&lt;br /&gt;
&lt;br /&gt;
=== La documentation utile ===&lt;br /&gt;
Configuring &#039;xroot&#039; Protocol on DPM (Andreas Peters) [[BR]]&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/LCG/DpmXrootAccess&lt;br /&gt;
&lt;br /&gt;
How to Install and Debug Xrootd on a DPM Storage Element (Jean-Michel Barbet) [[BR]]&lt;br /&gt;
http://alien.cern.ch/twiki/bin/view/AliEn/HowToInstallXrootdAndDPM&lt;br /&gt;
&lt;br /&gt;
LCG-France T2-T3 Technical meeting : DPM/xrootd introduction (Jean-Michel Barbet)[[BR]]&lt;br /&gt;
http://indico.in2p3.fr/conferenceDisplay.py?confId=821&lt;br /&gt;
&lt;br /&gt;
Xrootd Tutorial (Artem Trunov) [[BR]]&lt;br /&gt;
http://indico.cern.ch/materialDisplay.py?contribId=8&amp;amp;sessionId=0&amp;amp;materialId=slides&amp;amp;confId=a058483&lt;br /&gt;
&lt;br /&gt;
=== Firewall: ports à ouvrir ===&lt;br /&gt;
 * Sur le xrootd Manager (DPM head node) : 1094&lt;br /&gt;
 * Sur les xrootd servers (disk servers) : 1095&lt;br /&gt;
 * Si le xrootd manager est aussi disk server : 1095 (sur le manager en plus de 1094)&lt;br /&gt;
&lt;br /&gt;
=== Installation Configuration en utilisant les scripts fournis par ALICE ===&lt;br /&gt;
&lt;br /&gt;
=== SPMA ===&lt;br /&gt;
Editer /etc/spma.conf :&lt;br /&gt;
&lt;br /&gt;
 * userpkgs = yes&lt;br /&gt;
 * userprio = yes&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
===== Non-YAIM configuration =====&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
 * # wget http://project-arda-dev.web.cern.ch/project-arda-dev/xrootd/tarballs/installbox/dpm-config.tgz&lt;br /&gt;
 * # tar zxf dpm-config.tgz&lt;br /&gt;
 * # chmod u+x ./conf.xrootd&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
Il faut commenter l&#039;appel à la fonction requires dans config_DPM_xrootd et définir la&lt;br /&gt;
variable YAIM_LOG dans conf.xrootd, sinon il y a des messages d&#039;erreur au lancement de conf.xrootd .&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
 * # cp config_DPM_xrootd config_DPM_xrootd.orig&lt;br /&gt;
 * # cp conf.xrootd conf.xrootd.orig&lt;br /&gt;
 * # vi config_DPM_xrootd ---&amp;gt; commenter l&#039;appel à requires&lt;br /&gt;
 * # vi conf.xrootd    ---&amp;gt; définir YAIM_LOG&lt;br /&gt;
&lt;br /&gt;
 * # diff config_DPM_xrootd config_DPM_xrootd.orig&lt;br /&gt;
 * 2c2&lt;br /&gt;
 * &amp;lt;   #requires $1 INSTALL_ROOT&lt;br /&gt;
 * ---&lt;br /&gt;
 * &amp;gt;   requires $1 INSTALL_ROOT&lt;br /&gt;
&lt;br /&gt;
 * # diff conf.xrootd conf.xrootd.orig&lt;br /&gt;
 * 4d3&lt;br /&gt;
 * &amp;lt; YAIM_LOG=/tmp/yaim.log&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Alice utilise l&#039;authentification TokenAuthZ. GSI n&#039;est pas encore supportée. Il faut donc éditer le fichier&lt;br /&gt;
/opt/lcg/etc/xrootd/authz.cf  (ce fichier ne sera pas utile avec GSI).&lt;br /&gt;
&lt;br /&gt;
 * # vi /opt/lcg/etc/xrootd/authz.cf :&lt;br /&gt;
 * changer /usr/local/xroot en /opt/lcg et&lt;br /&gt;
 * EXPORT PATH:/ en EXPORT PATH:/dpm/in2p3.fr/home/alice/&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Editer les scripts de lancement pour changer XRDLOCATION=&amp;quot;/usr/local/xroot&amp;quot; en XRDLOCATION=&amp;quot;/opt/lcg&amp;quot;.&lt;br /&gt;
&lt;br /&gt;
Les fichiers à éditer sont : /etc/init.d/dpm-xrd /etc/init.d/dpm-olb /etc/init.d/dpm-manager-xrd /etc/init.d/dpm-manager-olb /etc/init.d/xrdapmon&lt;br /&gt;
&lt;br /&gt;
Les scripts de démarrage regénèrent à chaque lancement le fichier /opt/lcg/etc/xrd.dpm.cf utilisé par les daemons. Ce fichier est &lt;br /&gt;
créé à partir du fichier /etc/xrd.dpm.config (ou /etc/xrd.dpm.config.gsi si avec GSI). C&#039;est donc dans /etc/sysconfig/dpm-xrd &lt;br /&gt;
qu&#039;il faut modifier la config xrootd si besoin est, avant de relancer les daemons.&lt;br /&gt;
&lt;br /&gt;
Modifier /etc/sysconfig/dpm-xrd comme indiqué ci-dessous :&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * # cp /etc/sysconfig/dpm-xrd.example /etc/sysconfig/dpm-xrd&lt;br /&gt;
 * # vi /etc/sysconfig/dpm-xrd&lt;br /&gt;
 * ...&lt;br /&gt;
 * # set the redirector host&lt;br /&gt;
 * MANAGERHOST=&amp;quot;ipnsedpm.in2p3.fr&amp;quot;&lt;br /&gt;
 * export DPM_HOST=$MANAGERHOST&lt;br /&gt;
 * export DPNS_HOST=$MANAGERHOST&lt;br /&gt;
 * ...&lt;br /&gt;
 * #############################################################################&lt;br /&gt;
 * # default authentication is with GSI authentication&lt;br /&gt;
 * #XRDCONFIG=&amp;quot;xrd.dpm.config.gsi&amp;quot;&lt;br /&gt;
 * # if you want GSI authentication disabled set&lt;br /&gt;
 * XRDCONFIG=&amp;quot;xrd.dpm.config&amp;quot;&lt;br /&gt;
 * ...&lt;br /&gt;
 * #XRDOFS=&amp;quot;Ofs&amp;quot;&lt;br /&gt;
 * # the ALICE Ofs plugin&lt;br /&gt;
 * XRDOFS=&amp;quot;TokenAuthzOfs&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * # vi /etc/shift.conf&lt;br /&gt;
 * Ajouter (à faire normalement via Quattor):&lt;br /&gt;
 * DPM PROTOCOLS rfio gsiftp xroot&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * Lancer la config :&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * # ./conf.xrootd&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * # more /tmp/yaim.log&lt;br /&gt;
 * # service dpm restart&lt;br /&gt;
 * # service dpnsdaemon restart (peut-etre pas necessaire)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
===== Les process qui tournent =====&lt;br /&gt;
Sur le manager :&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
 * dpmmgr 2816  1 0 Apr28 ? 00:00:00 /opt/lcg/bin/dpm-manager-olbd -d -b -n manager -c /opt/lcg/etc/xrd.dpm.cf -l /var/log/xroot//olblog&lt;br /&gt;
 * dpmmgr 3004  1 0 Apr28 ? 00:00:00 /opt/lcg/bin/dpm-manager-xrootd-d -b -n manager -c /opt/lcg/etc/xrd.dpm.cf -l /var/log/xroot//xrdlog&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
Sur les servers xrootd :&lt;br /&gt;
&lt;br /&gt;
 * dpmmgr 2726  1 0 Apr28 ? 00:00:00 /opt/lcg/bin/dpm-olbd -d -b -n server -c /opt/lcg/etc/xrd.dpm.cf -l /var/log/xroot//olblog&lt;br /&gt;
 * dpmmgr 2911  1 0 Apr28 ? 00:00:03 /opt/lcg/bin/dpm-xrootd -d -b -n server -c /opt/lcg/etc/xrd.dpm.cf -l /var/log/xroot//xrdlog&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==== Test ====&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * xrdcp /etc/hosts root://ipnsedpm.in2p3.fr://dpm/in2p3.fr/home/alice/test_ok.txt -v&lt;br /&gt;
 * xrdcp root://ipnsedpm.in2p3.fr://dpm/in2p3.fr/home/alice/test_ok.txt /tmp/xrd_copied_file -v&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Utiliser l&#039;option &#039;-d 1&#039; par exemple pour un mode un peu plus verbeux. &lt;br /&gt;
&lt;br /&gt;
Les fichiers peuvent être effacer par rfrm : &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * # rfrm /dpm/in2p3.fr/home/alice/test_ok.txt&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
En principe ça ne devrait pas marcher car il faut être authetifié par TokenAuthZ pour pouvoir faire des delete.&lt;br /&gt;
&lt;br /&gt;
==== Divers ====&lt;br /&gt;
&lt;br /&gt;
===== Pour arrêter / démarrer les services =====&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * service dpm-xrd restart&lt;br /&gt;
 * service dpm-olb restart&lt;br /&gt;
 * service dpm-manager-xrd restart&lt;br /&gt;
 * service dpm-manager-olb restart&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
===== L&#039;authentification =====&lt;br /&gt;
xrootd ne supporte pas encore d&#039;authentification GSI mais l&#039;authentification TokenAuthZ. &lt;br /&gt;
Le fichier d&#039;authentification est le suivant :&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * # cat /opt/lcg/etc/xrootd/authz.cf&lt;br /&gt;
 * KEY VO:*       PRIVKEY:/opt/lcg/etc/xrootd/pvkey.pem PUBKEY:/opt/lcg/etc/xrootd/pkey.pem&lt;br /&gt;
 * EXPORT PATH:/dpm/in2p3.fr/home/alice/ VO:*     ACCESS:ALLOW CERT:*&lt;br /&gt;
 * RULE PATH:/ AUTHZ:delete| NOAUTHZ:read|write|write-once| VO:* CERT:*&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
La dernière ligne signifie que tout le monde peut lire et écrire via xrootd, mais qu&#039;il faut une authentification via &lt;br /&gt;
TokenAuthZ pour pouvoir supprimer les fichiers.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Installation Configuration en utilisant Quattor ===&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==== installation RPM ====&lt;br /&gt;
RPM disponible:&lt;br /&gt;
http://project-arda-dev.web.cern.ch/project-arda-dev/alice/xrootd-dpm/&lt;br /&gt;
&lt;br /&gt;
Pour installer les bons RPM, il faut cette variable :&lt;br /&gt;
&lt;br /&gt;
 variable SEDPM_XROOTD_SERVER = true;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
pour la liste de RPMs, voir les templates:&lt;br /&gt;
&lt;br /&gt;
 cfg/grid/glite-3.1/glite/se_dpm/rpms/ « arch »/xrootd_*.tpl&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
==== configuration ====&lt;br /&gt;
Actuellement configuration à la main, voir :&lt;br /&gt;
&lt;br /&gt;
http://lcg2.in2p3.fr/wiki/index.php/User_talk:LEROY#Non-YAIM_configuration&lt;br /&gt;
&lt;br /&gt;
+ lien à créer:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 ln -s /opt/lcg/lib/libXrdSec.so /opt/lcg/lib64/libXrdSec.so&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Pour configuration via quattor:&lt;br /&gt;
Modification des templates à revoir (problemes du component):&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
Sending        cfg/clusters/dapnia-glite-3.1/lcg/source/pro_se_dpm_config.tpl&lt;br /&gt;
&lt;br /&gt;
Sending        cfg/clusters/dapnia-glite-3.1/profiles/profile_node11.tpl&lt;br /&gt;
&lt;br /&gt;
Sending        cfg/grid/glite-3.1/components/dpmlfc/schema.tpl&lt;br /&gt;
&lt;br /&gt;
Sending        cfg/grid/glite-3.1/glite/se_dpm/config.tpl&lt;br /&gt;
&lt;br /&gt;
Adding         cfg/grid/glite-3.1/glite/se_dpm/disk/xrootd.tpl&lt;br /&gt;
&lt;br /&gt;
Sending        cfg/grid/glite-3.1/glite/se_dpm/rpms/config.tpl&lt;br /&gt;
&lt;br /&gt;
Adding         cfg/grid/glite-3.1/glite/se_dpm/rpms/i386/xrootd_disk.tpl&lt;br /&gt;
&lt;br /&gt;
Adding         cfg/grid/glite-3.1/glite/se_dpm/rpms/i386/xrootd_head.tpl&lt;br /&gt;
&lt;br /&gt;
Adding         cfg/grid/glite-3.1/glite/se_dpm/rpms/x86_64/xrootd_disk.tpl&lt;br /&gt;
&lt;br /&gt;
Adding         cfg/grid/glite-3.1/glite/se_dpm/rpms/x86_64/xrootd_head.tpl&lt;br /&gt;
&lt;br /&gt;
Adding         cfg/grid/glite-3.1/glite/se_dpm/server/xrootd.tpl&lt;br /&gt;
&lt;br /&gt;
Sending        cfg/grid/glite-3.1/glite/se_dpm/service.tpl&lt;br /&gt;
&lt;br /&gt;
Sending        cfg/grid/glite-3.1/machine-types/se_dpm.tpl&lt;br /&gt;
&lt;br /&gt;
Sending        cfg/grid/glite-3.1/repository/config/glite.tpl&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
== Conclusion ==&lt;br /&gt;
Si on cumule test lecture/écriture et test iperf (avec 1 interface bond0 qui agrège les 8 Ethernet) on arrive à sortir les 230Mb/s et par TB. &lt;br /&gt;
&lt;br /&gt;
Necessite de bien maîtriser le raid logiciel et de le monitorer&lt;br /&gt;
&lt;br /&gt;
Existence des drivers pour quelques versions de Linux&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=User_talk:LEROY&amp;diff=6200</id>
		<title>User talk:LEROY</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=User_talk:LEROY&amp;diff=6200"/>
		<updated>2011-08-29T14:15:27Z</updated>

		<summary type="html">&lt;p&gt;LEROY: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Mise hors service du LCG-CE (réinstallé en serveur (Maui + torque Only))  =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= FTS =&lt;br /&gt;
&lt;br /&gt;
&#039;connaitre la list des channels:&#039;&lt;br /&gt;
&lt;br /&gt;
 glite-transfer-channel-list -s cclcgftsprod.in2p3.fr IN2P3-IRFU&lt;br /&gt;
&lt;br /&gt;
&#039;reactiver un channel&#039;&lt;br /&gt;
&lt;br /&gt;
 glite-transfer-channel-setvoshare -s cclcgftsprod.in2p3.fr &amp;lt;CHANNEL_NAME&amp;gt; atlas 100&lt;br /&gt;
&lt;br /&gt;
= Installation et Configuration d&#039;une VO-BOX ALICE =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Introduction ==&lt;br /&gt;
&lt;br /&gt;
Un site grille qui souhaite supporter l&#039;expérience ALICE, doit installer une VO-BOX. ALICE utilise [http://alien.cern.ch/twiki/bin/view/AliEn/Home AliEN] (Alice ENvironment) comme plateforme logicielle pour la simulation et l&#039;analyse des données. Alien est installé sur chaque VO-BOX. C&#039;est le CE d&#039;Alien qui soumet les Job Agents (JAs) au CE du site. Les JAs vont ensuite chercher les jobs dans central Task Queue de Alien. Les jobs écrivent via xrootd (directement vers le CERN pour le moment). Comme il n&#039;y a pas encore d&#039;interface xrootd/SRM, chaque VO-BOX doit fournir un stockage xrootd qui peut être sur un disque local.&lt;br /&gt;
&lt;br /&gt;
Les documents à lire impérativement (en plus de ce guide) sont:&lt;br /&gt;
&lt;br /&gt;
 * [http://alien.cern.ch/twiki/bin/view/AliEn/HowToInstallLcgVoBox ALICE LCG VO-Box Installation Guide]&lt;br /&gt;
 * [https://twiki.cern.ch/twiki/pub/LCG/VoBoxesInfo/VO-Box-security-policy_v05.doc VOBOX Security and Operations Questionnaires]&lt;br /&gt;
&lt;br /&gt;
La VO-BOX n&#039;est pas consommatrice en CPU et RAM. N&#039;importe quel PC récent(Pentium+) avec 2GB+ de RAM peut faire l&#039;affaire. Cependant un bon hardware est recommandé pour minimiser la fréquence des pannes.&lt;br /&gt;
&lt;br /&gt;
== Ressources disques requises ==&lt;br /&gt;
&lt;br /&gt;
 * Partition / (root) : au moins 2 GB&lt;br /&gt;
 * Partition /var : y prévoir 10-15 GB d&#039;espace pour les logs d&#039;Alien&lt;br /&gt;
 * /data (ou un autre nom) : partition local pour xrootd (prévoir 3G par job slot)&lt;br /&gt;
&lt;br /&gt;
Remarques:&lt;br /&gt;
  1. xrootd: sur un site avec plus de 30 job slots, passer si possible au mode &amp;quot;head node + xrootd servers&amp;quot; pour des raisons de performances&lt;br /&gt;
  2. &amp;quot;/home&amp;quot; doit être local pour des raisons de performances et de gestion des &amp;quot;locks&amp;quot;&lt;br /&gt;
&lt;br /&gt;
== Les ports à ouvrir pour la VO-BOX au niveau du router ==&lt;br /&gt;
&lt;br /&gt;
 * 1975/tcp (gsissh): inbound from 137.138.0.0/16 and 192.16.186.192/26&lt;br /&gt;
 * 1094/tcp(xrootd)&lt;br /&gt;
 * 8082/tcp (Storage Adapter)&lt;br /&gt;
 * 8083 (FTD)&lt;br /&gt;
 * 8084/tcp (Site Proxy)&lt;br /&gt;
 * 9991/tcp (PackMan) : Inbound from 137.138.0.0/16&lt;br /&gt;
 * 1093/tcp (proofd)&lt;br /&gt;
&lt;br /&gt;
== Le profile de la VO-BOX sous Quattor ==&lt;br /&gt;
&lt;br /&gt;
Dans clusters/&amp;lt;nom_site&amp;gt;-glite-x.y.z/profiles/profile_&amp;lt;nom_vobox&amp;gt;.tpl, faire:&lt;br /&gt;
&lt;br /&gt;
 {{{&lt;br /&gt;
include pro_&amp;lt;nom_site&amp;gt;_alice_glite_vobox;&lt;br /&gt;
(voir cfg/clusters/ipno-glite-3.0.0/profiles/profile_ipnvobox.tpl)&lt;br /&gt;
 }}}&lt;br /&gt;
&lt;br /&gt;
Dans sites/&amp;lt;nom_site&amp;gt;/machine-types, créer pro_&amp;lt;nom_site&amp;gt;_alice_glite_vobox.tpl et pro_&amp;lt;nom_site&amp;gt;_alice_vobox_config.tpl&lt;br /&gt;
&lt;br /&gt;
Vous pouvez copier et adpater les templates de l&#039;IPNO ou du DAPNIA.&lt;br /&gt;
&lt;br /&gt;
== Après l&#039;installation via Quattor de la machine ==&lt;br /&gt;
&lt;br /&gt;
 * Demander et installer le certificat serveur GRID-FR de la mchine&lt;br /&gt;
 * Vérifier que les utilisateurs alis et alip existent dans /etc/passwd&lt;br /&gt;
 * Verifier que Patricia Lorenzo Mendez et Artem Trunov sont bien mappés sur&lt;br /&gt;
  alis dans /etc/grid-security/grid-mapfile et qu&#039;il y a quelqu&#039;un mappé&lt;br /&gt;
  sur alip. Question ouverte: faut-il creer les pool accounts ? Ou faut-il&lt;br /&gt;
  créer uniqument les comptes alis, alip nécessaires pour ALICE ?&lt;br /&gt;
 * Dans /etc/shadow vous devez avoir &#039;*&#039; dans le champ &#039;password&#039;, sinon le logingsissh ne marchera pas. Donc il faut remplacer &#039;!!&#039; ou &#039;!*NP*&#039; par &#039;*&#039;&lt;br /&gt;
 {{{&lt;br /&gt;
[root@ipnvobox etc]# grep alis /etc/shadow&lt;br /&gt;
alis:*:13574:0:99999:7:::&lt;br /&gt;
 }}}&lt;br /&gt;
 * Vérifier que le serveur GSISSH tourne sur la VOBOX sur le port 1975.&lt;br /&gt;
 * Vérifier que $MYPROXY_SERVER pointe bien sur myproxy.cern.ch&lt;br /&gt;
 * Vérifier que la expérimental software area ($VO_ALICE_SW_DIR) est bien accessible via NFS depuis la VO-BOX et writeable par alis. Il faut au moins 5GB d&#039;espace libre pour le soft d&#039;ALICE.&lt;br /&gt;
 * Vérifier que la partition /data pour xrootd existe et appartient à alis (/data doit être crée sous Quattor ou à la main)&lt;br /&gt;
 {{{&lt;br /&gt;
[root@ipnvobox root]# ls -ld /data&lt;br /&gt;
drwxr-xr-x   19 alis     alice        4096 Dec 14 13:22 /data&lt;br /&gt;
 }}}&lt;br /&gt;
 * Créer un directory pour les logs d&#039;Alien (ex: /var/log/alis). Il doit appartenir à alis et nécessite 10-15 GB libre.&lt;br /&gt;
 {{{&lt;br /&gt;
[root@ipnvobox root]# ls -ld /var/log/alis&lt;br /&gt;
drwxrwxrwx   10 alis     alice        4096 Mar  2 16:54 /var/log/alis&lt;br /&gt;
 }}}&lt;br /&gt;
 * Configurer le proxy-renewal service. MAIS, le script /opt/vobox/templates/voname-box-proxyrenewal n&#039;est pas encore exécuté automatiquement. Cal a prévu de corriger le probleme. Donc si après l&#039;installation de la VO-BOX, il manque alice-box-proxyrenewal dans /etc/cron.d/ et dans /etc/init.d/ ainsi que start, stop, agents et info-provider dans /opt/vobox/alice/, alors faire:&lt;br /&gt;
  1. créer /etc/cron.d/alice-box-proxyrenewal:&lt;br /&gt;
 {{{&lt;br /&gt;
[root@ipnvobox root]# cat /etc/cron.d/alice-box-proxyrenewal&lt;br /&gt;
#!/bin/sh&lt;br /&gt;
20 2,8,14,20 * * * root (PATH=/sbin:/bin:/usr/sbin:/usr/bin; /sbin/service alice-box-proxyrenewal proxy)&lt;br /&gt;
 }}}&lt;br /&gt;
  2. copier /opt/vobox/templates/voname-box-proxyrenewal dans&lt;br /&gt;
    /tmp/alice-proxy-renewal.sh, adpatez-le et exécutez-le (le script que j&#039;ai&lt;br /&gt;
    utilisé est en attachement: alice-proxy-renewal.sh).&lt;br /&gt;
  3. vous devez alors retrouver les directories qui manquaient:&lt;br /&gt;
 {{{&lt;br /&gt;
[root@ipnvobox alice]# ls -l&lt;br /&gt;
total 44&lt;br /&gt;
drwx------    2 alis     alice        4096 Jul 19  2006 agents&lt;br /&gt;
-rw-rw-rw-    1 alis     alice           0 Nov 14 09:09 edglog.log&lt;br /&gt;
drwx------    2 alis     alice        4096 Jul 19  2006 info-provider&lt;br /&gt;
drwx------    2 alis     alice        4096 Mar  1 04:02 log&lt;br /&gt;
drwx------    2 alis     alice        4096 Mar  2 17:19 proxy_repository&lt;br /&gt;
-rw-------    1 alis     alice       13750 Mar  2 17:04 _registerer_proxies.db&lt;br /&gt;
-r--------    1 alis     alice        2690 Mar  2 14:20 renewal-proxy.pem&lt;br /&gt;
drwx------    2 alis     alice        4096 Aug  6  2006 start&lt;br /&gt;
drwx------    2 alis     alice        4096 Aug  5  2006 stop&lt;br /&gt;
 }}}&lt;br /&gt;
 * Envoyer un e-mail à: Patricia.Mendez@cern.ch, latchezar.betev@cern.ch et trunov@cc.in2p3.fr :&lt;br /&gt;
1. demander que la machine soit enregistrée &#039;as trusted host&#039; dans myproxy.cern.ch dans LDAP (il faut fournir le DN de la VOBOX).&lt;br /&gt;
2. fournir les informations suivantes dans le mail:&lt;br /&gt;
  * hostname de la VO-BOX&lt;br /&gt;
  * le nom des users: alicesgm (alis dans GRIF), alip (ALICE Production)&lt;br /&gt;
  * le nom directory pour xrootd (ex: /data)&lt;br /&gt;
  * le nom du SE/DPM Server (ex: ipnsedpm.in2p3.fr)&lt;br /&gt;
  * le nom du serveur LFC (ex: grid14.lal.in2p3.fr) et le catalogue pour&lt;br /&gt;
    ALICE (/grid/alice)&lt;br /&gt;
  * le nom du RB (ex: grid09.lal.in2p3.fr)&lt;br /&gt;
  * le nom du CE et de la queue batch&lt;br /&gt;
    (ex: ipnls2001.in2p3.fr:2119/jobmanager-pbs-alice)&lt;br /&gt;
  * le path pour le experiment software area&lt;br /&gt;
    (ex:VO_ALICE_SW_DIR=/ipn/storage1/exp_soft/alis, zone &amp;quot;NFS shared&amp;quot; avec les WNs)&lt;br /&gt;
 * Installer Alien ou demander que Artem ou Patricia vous l&#039;installe.&lt;br /&gt;
 * S&#039;inscrire individullement dans le projet ALICE (voir avec un physicien d&#039;ALICE du Labo et avec le Secrétariat d&#039;ALICE) :&lt;br /&gt;
  1. demander un logon au CERN (si vous n&#039;en avez pas déjà)&lt;br /&gt;
  2. demander à être enregistré comme membre du projet ALICE&lt;br /&gt;
 * Inscrivez-vous dans AliEn en suivant les étapes sur la page http://alien.cern.ch/twiki/bin/view/Alice/UserRegistration&lt;br /&gt;
  1. Vous serez amenés à vous inscrire dans la VO ALICE (si ce n&#039;est pas déjà fait)  sur https://lcg-voms.cern.ch:8443/vo/alice/vomrs&lt;br /&gt;
  2. Ensuite vous pourrez vous inscrire dans AliEn (&amp;quot;5. Register with AliEn&amp;quot; sur&lt;br /&gt;
    https://alien.cern.ch:8443/twiki/bin/UserReg&lt;br /&gt;
 * Demander ensuite à être mapé sur &#039;alidprod&#039; si vous voulez pouvoir utiliser AliEn sous votre nom (ALIEN_USER=user_name dans ~alis/.alien/Environment) la VO-BOX (start/stop des services par exemples)&lt;br /&gt;
 * Mettre dans /etc/motd des informations utiles à afficher lors de la connexion [gsi]ssh: LFC server, catalog pour alice, zone pour xrootd, etc.&lt;br /&gt;
&lt;br /&gt;
== Durée du proxy ==&lt;br /&gt;
&lt;br /&gt;
Vérifier dans /opt/lcg/sbin/vobox-renewd qu&#039;on a &#039;-t 48&#039; :&lt;br /&gt;
&lt;br /&gt;
 {{{&lt;br /&gt;
${GLOBUS_LOCATION}/bin/myproxy-get-delegation -a ${VOBOX_PROXY_REPOSITORY}/${CERT} -d -o $TMP_PROXY -t 48 2&amp;gt;&amp;amp;1 &amp;gt; /dev/null&lt;br /&gt;
 }}}&lt;br /&gt;
&lt;br /&gt;
Il s&#039;agit d&#039;un problème qui devrait être résolu dans le futur&lt;br /&gt;
&lt;br /&gt;
== Backup ==&lt;br /&gt;
&lt;br /&gt;
Faire régulièrement des sauvegardes de ~alis, /opt/vobox et des logs d&#039;Alien (ex: /var/log/alis)&lt;br /&gt;
&lt;br /&gt;
== Se connecter à la VO-BOX depuis le UI ==&lt;br /&gt;
&lt;br /&gt;
Faire &#039;gsissh -l user -p port_GSISSH &amp;lt;vobox_name&amp;gt; &#039;&lt;br /&gt;
 {{{&lt;br /&gt;
[diarra@ipngrid01 ~]$ gsissh -l alis -p 1975 ipnvobox&lt;br /&gt;
 }}}&lt;br /&gt;
&lt;br /&gt;
== Utiliser le serveur myproxy ==&lt;br /&gt;
&lt;br /&gt;
Sur le UI:&lt;br /&gt;
&lt;br /&gt;
 {{{&lt;br /&gt;
myproxy-init -s myproxy.cern.ch -d -n -t 48 -c 720&lt;br /&gt;
gsissh -l alis -p 1975 &amp;lt;vobox_name&amp;gt;&lt;br /&gt;
 }}}&lt;br /&gt;
Sur la VO-BOX:&lt;br /&gt;
&lt;br /&gt;
 {{{&lt;br /&gt;
vobox-proxy --vo alice --proxy-safe 3600 --myproxy-safe 259200 --email &amp;lt;votre_e-mail&amp;gt; register&lt;br /&gt;
 }}}&lt;br /&gt;
Pour s&#039;assurer que le proxy est renouveler automatiquement, vérifier que vous avez dans /opt/vobox/alice/log/events.log une ligne du genre:&lt;br /&gt;
 {{{&lt;br /&gt;
9/07/06 14:35:56 : Proxy for DN  &amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=IPNO/CN=Christophe Diarra/CN=proxy/CN=proxy/CN=proxy&amp;quot; successfully renewed&lt;br /&gt;
 }}}&lt;br /&gt;
Dans /opt/vobox/alice/proxy_repository/ vous trouverez le proxy.&lt;br /&gt;
== Start/Stop des services ==&lt;br /&gt;
&lt;br /&gt;
Les services peuvent être démarrés un par un. Les services disponibles sont :&lt;br /&gt;
Monitor, SE, CE, PackMan, Monalisa.&lt;br /&gt;
&lt;br /&gt;
Un script permet de les démarrer ou de les arrêter dans le bon ordre:&lt;br /&gt;
&lt;br /&gt;
 {{{&lt;br /&gt;
$VO_ALICE_SW_DIR/alien/etc/rc.d/init.d/aliend start|stop&lt;br /&gt;
 }}}&lt;br /&gt;
Pour démarrer ou arreter un seul service :&lt;br /&gt;
&lt;br /&gt;
 {{{&lt;br /&gt;
$VO_ALICE_SW_DIR/alien/scripts/lcg/lcgAlien.sh StartServiceName|StopServiceName&lt;br /&gt;
Exemple:&lt;br /&gt;
$VO_ALICE_SW_DIR/alien/scripts/lcg/lcgAlien.sh StopCE&lt;br /&gt;
$VO_ALICE_SW_DIR/alien/scripts/lcg/lcgAlien.sh StartCE&lt;br /&gt;
 }}}&lt;br /&gt;
&lt;br /&gt;
== Expiration du proxy ==&lt;br /&gt;
&lt;br /&gt;
Quand vous recevez un mail indiquant que le proxy est sur le point d&#039;expirer&lt;br /&gt;
(3 jours avant ?), ou si les logs le signalent, il faut renouveler le proxy sur&lt;br /&gt;
le serveur myproxy depuis le UI.&lt;br /&gt;
&lt;br /&gt;
 {{{&lt;br /&gt;
[root@ipnvobox log]# more /opt/vobox/alice/log/events.log&lt;br /&gt;
...&lt;br /&gt;
11/26/06 15:03:05 : Myproxy lifetime (256228 sec) shorter than security threshol&lt;br /&gt;
d (259200 sec)&lt;br /&gt;
11/26/06 15:03:05 : ... for DN /O=GRID-FR/C=FR/O=CNRS/OU=IPNO/CN=Christophe Diar&lt;br /&gt;
ra&lt;br /&gt;
11/26/06 15:03:05 : sendind notification email to diarra@ipno.in2p3.fr. SUCCESSF&lt;br /&gt;
ULL&lt;br /&gt;
 }}}&lt;br /&gt;
Sur le UI:&lt;br /&gt;
&lt;br /&gt;
 {{{&lt;br /&gt;
[diarra@ipnls2011 my]$ myproxy-info -d -s myproxy.cern.ch&lt;br /&gt;
username: /O=GRID-FR/C=FR/O=CNRS/OU=IPNO/CN=Christophe Diarra&lt;br /&gt;
owner: /O=GRID-FR/C=FR/O=CNRS/OU=IPNO/CN=Christophe Diarra&lt;br /&gt;
  timeleft: 52:25:26  (2.2 days)&lt;br /&gt;
&lt;br /&gt;
[diarra@ipnls2011 my]$ myproxy-init -s myproxy.cern.ch -d -n -t 48 -c 720&lt;br /&gt;
Your identity: /O=GRID-FR/C=FR/O=CNRS/OU=IPNO/CN=Christophe Diarra&lt;br /&gt;
Enter GRID pass phrase for this identity:&lt;br /&gt;
Creating proxy ............................................ Done&lt;br /&gt;
Proxy Verify OK&lt;br /&gt;
Your proxy is valid until: Wed Dec 27 09:56:25 2006&lt;br /&gt;
A proxy valid for 720 hours (30.0 days) for user /O=GRID-FR/C=FR/O=CNRS/OU=IPNO/CN=Christophe Diarra now exists on myproxy.cern.ch.&lt;br /&gt;
 }}}&lt;br /&gt;
&lt;br /&gt;
== Monitoring / Accounting ==&lt;br /&gt;
&lt;br /&gt;
 * [http://pcalimonitor.cern.ch:8889/ ALICE Monitoring with MonALISA]&lt;br /&gt;
 * [http://dashb-alice.cern.ch/dashboard/request.py/jobsummary?sortby=site ALICE Dashboard : Job Summary]&lt;br /&gt;
&lt;br /&gt;
== Liens Utiles ==&lt;br /&gt;
&lt;br /&gt;
[https://alien.cern.ch:8443/twiki/bin/view/AliEn/HowToDebugLcgVoBox Debugging &amp;amp; Troubleshooting the ALICE LCG Vo-Box]&lt;br /&gt;
&lt;br /&gt;
[http://goc.grid.sinica.edu.tw/gocwiki/VO-box_HowTo VO-box HowTo - description, installation, testing]&lt;br /&gt;
&lt;br /&gt;
[http://lcg2.in2p3.fr/wiki/index.php/Alice Page Alice LCG-France]&lt;br /&gt;
&lt;br /&gt;
[https://twiki.cern.ch/twiki/pub/LCG/VoBoxesInfo/VO-Box-security-policy_v05.doc VOBOX Security and Operations Questionnaires]&lt;br /&gt;
&lt;br /&gt;
[http://www.gridpp.ac.uk/wiki/VOBox Pages sur les VOboxes]&lt;br /&gt;
&lt;br /&gt;
[https://edms.cern.ch/document/655277/ LCG VOBox Operations Recommendations and Questionnaire]&lt;br /&gt;
&lt;br /&gt;
[http://alien.cern.ch/twiki/bin/view/AliEn/HowToInstallXrootd How to install xrootd on data servers]&lt;br /&gt;
&lt;br /&gt;
[http://xrootd.slac.stanford.edu/ XROOTD]&lt;br /&gt;
&lt;br /&gt;
= LEMON : Sytème de Monitoring Client/Serveur =&lt;br /&gt;
[[TracNav]]&lt;br /&gt;
&lt;br /&gt;
http://lemon.web.cern.ch/lemon/&lt;br /&gt;
http://lemon.web.cern.ch/lemon/doc/installation/installation.html&lt;br /&gt;
&lt;br /&gt;
[[TOC(inline)]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Installation du Serveur Lemon via quattor en SL4 ==&lt;br /&gt;
&lt;br /&gt;
Utilser les 2 templates :&lt;br /&gt;
{{{&lt;br /&gt;
pro_software_lemon_server_sl4_i386;&lt;br /&gt;
pro_service_lemon_server;&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Qui vont:&lt;br /&gt;
 &#039;&#039;&#039;1) installer les RPMs necessaires&#039;&#039;&#039;&lt;br /&gt;
{{{&lt;br /&gt;
(&amp;quot;edg-fabricMonitoring-server&amp;quot;,&amp;quot;2.13.0-3&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;rrdtool&amp;quot;,&amp;quot;1.0.49-2.1.el3.rf&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;lrf&amp;quot;,&amp;quot;1.0.7-15&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;ncm-fmonagent&amp;quot;,&amp;quot;1.0.32-1&amp;quot;,&amp;quot;noarch&amp;quot;);&lt;br /&gt;
(&amp;quot;perl-TimeDate&amp;quot;,&amp;quot;2.22-1&amp;quot;,&amp;quot;noarch&amp;quot;);&lt;br /&gt;
(&amp;quot;httpd&amp;quot;,&amp;quot;2.0.52-22.ent&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;httpd-suexec&amp;quot;,&amp;quot;2.0.52-22.ent&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;system-config-httpd&amp;quot;,&amp;quot;1.3.1-1&amp;quot;,&amp;quot;noarch&amp;quot;);&lt;br /&gt;
(&amp;quot;php-ldap&amp;quot;,&amp;quot;4.3.9-3.15&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;php-gd&amp;quot;,&amp;quot;4.3.9-3.15&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;php-imap&amp;quot;,&amp;quot;4.3.9-3.15&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;php-pear&amp;quot;,&amp;quot;4.3.9-3.15&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;php&amp;quot;,&amp;quot;4.3.9-3.15&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;oracle-xe-univ&amp;quot;,&amp;quot;10.2.0.1-1.0&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;cx_Oracle&amp;quot;,&amp;quot;4.1-1&amp;quot;,&amp;quot;i386&amp;quot;);&lt;br /&gt;
(&amp;quot;lemon-ora-admin&amp;quot;,&amp;quot;1.0.4-96&amp;quot;,&amp;quot;noarch&amp;quot;);&lt;br /&gt;
# lemon-OraMon probleme de dependance: l&#039;installer avec --nodeps (info from Miroslav Sicket CERN)&lt;br /&gt;
(&amp;quot;lemon-OraMon&amp;quot;,&amp;quot;1.2.0-1&amp;quot;,&amp;quot;i386&amp;quot;);}}}&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039; 2) configurer les fichiers suivant :&#039;&#039;&#039;&lt;br /&gt;
{{{&lt;br /&gt;
/etc/lemon/server/lemon-oramon-server.conf&lt;br /&gt;
/var/www/html/lrf/config.php&lt;br /&gt;
/var/spool/edg-fmon-server/nodes.map&lt;br /&gt;
/etc/lemon/lemonmrd.conf&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 &#039;&#039;&#039; 3) et demarrer les 2 demons :&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
/etc/init.d/OraMon&lt;br /&gt;
/etc/init.d/lemonmrd&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Configuration Hors Quattor ==&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;1) Configuration de la Base de Donée:&#039;&#039;&#039; &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
/etc/init.d/oracle-xe configure&lt;br /&gt;
. /usr/lib/oracle/xe/app/oracle/product/10.2.0/server/bin/oracle_env.sh&lt;br /&gt;
sqlplus system&lt;br /&gt;
 SQL&amp;gt; EXEC DBMS_XDB.SETLISTENERLOCALACCESS(FALSE);       &lt;br /&gt;
/etc/init.d/oracle-xe start&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;2) Ajouter l&#039;utilisateur lemon&#039;&#039;&#039;&lt;br /&gt;
via l&#039;interface http://ma_machine:port_choisi/apex&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;3) Configuration de Oramon :&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
lemon-ora.admin --create-schema -d xe --data-tablespace=USERS --index-tablespace=USERS&lt;br /&gt;
lemon-ora.admin --file=/etc/oramon-server.conf -d xe --all  --data-tablespace=USERS --index-tablespace=USERS&lt;br /&gt;
lemon-ora.admin --file=/etc/oramon-server.conf -d xe  -u lemon --create-las --data-tablespace=USERS --index-tablespace=USERS&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;4) exporter les variables Oracle :&#039;&#039;&#039;&lt;br /&gt;
{{{&lt;br /&gt;
export LD_LIBRARY_PATH=/usr/lib/oracle/xe/app/oracle/product/10.2.0/server/lib:/usr/lib/oracle/10.2.0.3/client/lib&lt;br /&gt;
export ORACLE_SID=XE&lt;br /&gt;
export PATH=$PATH:/usr/lib/oracle/xe/app/oracle/product/10.2.0/server/bin&lt;br /&gt;
export ORACLE_HOME=/usr/lib/oracle/xe/app/oracle/product/10.2.0/server&lt;br /&gt;
export TNS_ADMIN=/usr/lib/oracle/xe/app/oracle/product/10.2.0/server/network/admin&lt;br /&gt;
export PYTHONPATH=/usr/lib/python2.2/site-packages&lt;br /&gt;
export NLS_LANG=AMERICAN_AMERICA.AL32UTF8&lt;br /&gt;
&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
     Dans tous les fichiers de demarrage suivant :&lt;br /&gt;
   {{{&lt;br /&gt;
   /etc/init.d/lemonmrd&lt;br /&gt;
   /etc/init.d/httpd&lt;br /&gt;
   /etc/sysconfig/OraMon&lt;br /&gt;
   }}}&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;5) Et verifier ensuite les logs, et que le serveur collecte bien des données :&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
/var/log/lemonmrd.log&lt;br /&gt;
/var/www/html/lrf/data&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Ajout de nouvelles sondes/metriques ==&lt;br /&gt;
&lt;br /&gt;
I) Sur le client&lt;br /&gt;
&lt;br /&gt;
a)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node07 sensor-example]# cat /etc/lemon/agent/sensors/torque_maui.conf&lt;br /&gt;
&lt;br /&gt;
 torque_maui&lt;br /&gt;
        CommandLine /usr/bin/perl /usr/libexec/sensors/lemon-sensor.pl RunningJobs&lt;br /&gt;
        MetricClasses&lt;br /&gt;
                torque_maui.RunningJobs&lt;br /&gt;
b)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node07 sensor-example]# cat /etc/lemon/agent/metrics/torque_maui.conf&lt;br /&gt;
&lt;br /&gt;
 20047&lt;br /&gt;
        MetricName     Jobsrunning&lt;br /&gt;
        MetricClass    torque_maui.RunningJobs&lt;br /&gt;
        Timing  3600   0&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
c)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node07 sensor-example]# cat /usr/libexec/sensors/RunningJobs.pm&lt;br /&gt;
&lt;br /&gt;
 #!/usr/bin/perl -w&lt;br /&gt;
 package torque_maui;&lt;br /&gt;
 # modules&lt;br /&gt;
 use diagnostics;&lt;br /&gt;
 use strict;&lt;br /&gt;
 # the sensor API interface&lt;br /&gt;
 use sensorAPI;&lt;br /&gt;
 # register module name and version&lt;br /&gt;
 registerVersion(&amp;quot;lemon-sensor-torque_maui&amp;quot;, &amp;quot;1.0.0-1&amp;quot;);&lt;br /&gt;
 # register the sensors metric classes&lt;br /&gt;
 registerMetric(&amp;quot;torque_maui.RunningJobs&amp;quot;, &amp;quot;report the Running Jobs&amp;quot;, &amp;quot;torque_maui::RunningJobs&amp;quot;);&lt;br /&gt;
 sub RunningJobs_sample() {&lt;br /&gt;
    # All function hooks in the sensor API: _sample(), _initialise(), _periodicCheck(), _destroy()&lt;br /&gt;
    # are passed a hash as the first argument. This hash provides the function with the ability to&lt;br /&gt;
    # access the methods and variables of the metric instance/object. This is Perls implementation&lt;br /&gt;
    # of Object Orientation&lt;br /&gt;
    my $obj  = shift;&lt;br /&gt;
    # variables&lt;br /&gt;
    my $line = `/usr/bin/showq -r | echo \$((\$(wc -l)-4))`;&lt;br /&gt;
            $obj-&amp;gt;storeSample01($line);&lt;br /&gt;
    # All functions called by the sensor API must return a value&lt;br /&gt;
    #  - if the sampling was successful you the return code should be 0 and -1 on error&lt;br /&gt;
     return 0;&lt;br /&gt;
      }&lt;br /&gt;
 1;&lt;br /&gt;
 #-- End-of-File --------------------------------------------------------------------------------------#&lt;br /&gt;
&lt;br /&gt;
II) Pour le serveur&lt;br /&gt;
&lt;br /&gt;
1) Pour Oramon&lt;br /&gt;
&lt;br /&gt;
a) modifier le fichier /etc/oramon-server.conf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 ………..&lt;br /&gt;
&lt;br /&gt;
                torque_maui.RunningJobs&lt;br /&gt;
                        Description Running jobs on the CE?&lt;br /&gt;
                        Fields&lt;br /&gt;
                                Running_Jobs&lt;br /&gt;
                                        Type INTEGER&lt;br /&gt;
                                        MetricUnit count&lt;br /&gt;
                                        MetricScale 1&lt;br /&gt;
&lt;br /&gt;
 ……………..&lt;br /&gt;
&lt;br /&gt;
                20047&lt;br /&gt;
                        MetricClass torque_maui.RunningJobs&lt;br /&gt;
                        MetricName Jobsrunning&lt;br /&gt;
                        Description Running Jobs on the CE?&lt;br /&gt;
                        TableName _20047&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Metric classes part into corresponding metric class part, metric instance into metric instances (be carefull about the tabs). &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
b) sourcer laes variables d&#039;environnement oracle :&lt;br /&gt;
&lt;br /&gt;
 . /usr/lib/oracle/xe/app/oracle/product/10.2.0/server/bin/oracle_env.sh&lt;br /&gt;
&lt;br /&gt;
c) mettre a jour la Database:&lt;br /&gt;
&lt;br /&gt;
 lemon-ora.admin --file=/etc/oramon-server.conf -d xe  -u lemon --all --data-tablespace=USERS --index-tablespace=USERS&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
2) Pour LRF&lt;br /&gt;
&lt;br /&gt;
a) # tail -3 /var/spool/edg-fmon-server/metrics.map&lt;br /&gt;
&lt;br /&gt;
 182 20015     /home.use&lt;br /&gt;
 183 30050     exitCodeNFS&lt;br /&gt;
 184 20047     RunningJobs&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
b)# more /etc/lemon/lemonmrd.conf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 ……………..&lt;br /&gt;
&lt;br /&gt;
 RunningJobs=Jobsrunning:Running_Jobs&lt;br /&gt;
&lt;br /&gt;
 ……………..&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
 [node07.datagrid.cea.fr]&lt;br /&gt;
 type=host&lt;br /&gt;
 metrics=+RunningJobs&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
c) #grep -i job /var/www/html/lrf/metric_map.php&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
                   &amp;quot;RunningJobs&amp;quot;        =&amp;gt; array(&amp;quot;RunningJobs&amp;quot;,&amp;quot;Jobs   running&amp;quot;,&amp;quot;count&amp;quot;,1,0,&#039;Jobsrunning.Running_Jobs&#039;),&lt;br /&gt;
&lt;br /&gt;
                        1 =&amp;gt; array(&#039;name&#039; =&amp;gt; &#039;JOBS STATISTICS&#039;, &#039;y-axis&#039; =&amp;gt; &#039;count&#039;, &#039;stack&#039; =&amp;gt; false, &#039;base&#039; =&amp;gt; 1,&lt;br /&gt;
&lt;br /&gt;
                            &#039;metrics&#039; =&amp;gt; array( 0 =&amp;gt; array(&#039;name&#039; =&amp;gt;  &#039;RunningJobs&#039;, &#039;summary&#039; =&amp;gt; true, &#039;title&#039; =&amp;gt; &#039;Running Jobs&#039;)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Pour configurer les alarmes ==&lt;br /&gt;
&lt;br /&gt;
a) créer un fichier xml par machine:&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
# cat /tmp/my_cnf_node07.xml&lt;br /&gt;
&amp;lt;?xml version = &#039;1.0&#039;?&amp;gt;&lt;br /&gt;
&amp;lt;CDBSEARCHLIST&amp;gt;&lt;br /&gt;
&amp;lt;HOST ID=&amp;quot;node07.datagrid.cea.fr&amp;quot; CLUSTER =&amp;quot;GRID_SERVICES&amp;quot; SUBCLUSTER =&amp;quot;&amp;quot; IMPORTANCE =&amp;quot;0&amp;quot; SURESTATUS =&amp;quot;TRUE&amp;quot; NOCONTACTTIMEOUT =&amp;quot;660&amp;quot;&lt;br /&gt;
PINGTIMEOUT =&amp;quot;&amp;quot; /&amp;gt;&lt;br /&gt;
&amp;lt;/CDBSEARCHLIST&amp;gt;&lt;br /&gt;
#&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
b) mettre a jour la Database:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
# lemon-ora.entities -u lemon -d xe -c /tmp/my_cnf_node07.xml&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Problemes rencontrés ==&lt;br /&gt;
&lt;br /&gt;
ne pas oublier d&#039;exporter les variables oracles&lt;br /&gt;
&lt;br /&gt;
le fichies nodes.map ne doit pas avoir de lignes vides&lt;br /&gt;
&lt;br /&gt;
Les Symlink avec cette version d&#039;apache ne fonctionne pas (on utlisie /var/www/html/lrf/data au lieu de /var/spool/data)&lt;br /&gt;
&lt;br /&gt;
Php avec oci8 tres sensibles aux versions (plus de soucis avec les versions SL4 ci dessus)&lt;br /&gt;
&lt;br /&gt;
= Test sur le réseaux datagrid.cea.fr: Iperf =&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Le 20/03/2007&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Avec 5 threads&#039;&#039;&#039; : &lt;br /&gt;
&lt;br /&gt;
Lyon -&amp;gt; Saclay : 550Mb/s (peu variable) ; &lt;br /&gt;
&lt;br /&gt;
Saclay -&amp;gt; Lyon : 600 Mb/s (très variables de 250 Mb/s à 750 Mb/s)).&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Avec 1 thread&#039;&#039;&#039; : 300 Mb/s dans les 2 sens&lt;br /&gt;
&lt;br /&gt;
= Test sur le réseaux datagrid.cea.fr: Transfert de fichiers -1ere PHASE- =&lt;br /&gt;
&lt;br /&gt;
=== Sites impliqués ===&lt;br /&gt;
* &#039;&#039;&#039;T1 CC-IN2P3 &#039;&#039;&#039;&lt;br /&gt;
** Contacts : &amp;lt;span style=&amp;quot;color:#0000F0;&amp;quot;&amp;gt; David Bouvet, Lionel Schwarz &amp;lt;/span&amp;gt;&lt;br /&gt;
** &#039;&#039;&#039;SE : ccsrm.in2p3.fr&#039;&#039;&#039;&lt;br /&gt;
*** Endpoint transferts DAPNIA-CC : /pnfs/in2p3.fr/data/dteam/disk/dapnia/&lt;br /&gt;
* &#039;&#039;&#039;T2 GRIF&#039;&#039;&#039;   &lt;br /&gt;
** Contacts : &amp;lt;span style=&amp;quot;color:#0000F0;&amp;quot;&amp;gt; Christine Leroy&amp;lt;/span&amp;gt;&lt;br /&gt;
** &#039;&#039;&#039;SE-DAPNIA : node12.datagrid.cea.fr&#039;&#039;&#039;&lt;br /&gt;
*** GlueServiceEndpoint: httpg://node12.datagrid.cea.fr:8443/srm/managerv1&lt;br /&gt;
*** GlueSAPath: /dpm/datagrid.cea.fr/home/dteam&lt;br /&gt;
** &#039;&#039;&#039;SE-LAL : grid05.lal.in2p3.fr&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
=== conditions de transferts pour FTS===&lt;br /&gt;
&lt;br /&gt;
Les transferts sont initiés depuis node02.datagrid.cea.fr&lt;br /&gt;
&lt;br /&gt;
* Avant tout transfert, il faut un &#039;&#039;&#039;proxy valide déposé sur un serveur MyProxy&#039;&#039;&#039; pour permettre au serveur FTS de renouveler un proxy expiré en cours de transfert&lt;br /&gt;
&lt;br /&gt;
 myproxy-init -s cclcgproxli01.in2p3.fr -d&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
* [[pour connaitre la configuration du canal FTS :]]&lt;br /&gt;
 glite-transfer-channel-list -s https://cclcgftsprod01.in2p3.fr:8443/glite-data-transfer-fts/services/ChannelManagement GRIF-IN2P3&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
* [[pour modifier la configuration du canal FTS :]]&lt;br /&gt;
&lt;br /&gt;
 glite-transfer-channel-set -s https://cclcgftsprod01.in2p3.fr:8443/glite-data-transfer-fts/services/ChannelManagement -f 10 -T 1 GRIF-IN2P3&lt;br /&gt;
&lt;br /&gt;
=== Les tests de transferts ===&lt;br /&gt;
&lt;br /&gt;
* [[Source d&#039;information:]]&lt;br /&gt;
-Script de test des transferts FTS proposé par GridPP à l&#039;adresse : http://www.gridpp.ac.uk/wiki/Transfer_Test_Python_Script_HOWTO &amp;lt;br&amp;gt;&lt;br /&gt;
-Le wiki GriPP est une mine d&#039;informations : http://www.gridpp.ac.uk/wiki/Main_Page&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
* [[1er Test: Utilisation du script de GRIDPP: filetransfer.py]]&lt;br /&gt;
&lt;br /&gt;
CC-&amp;gt;DAPNIA&lt;br /&gt;
 set SourceURL=&amp;quot;srm://ccsrm.in2p3.fr:8443/&amp;quot;&lt;br /&gt;
 set DestURL=&amp;quot;srm://node12.datagrid.cea.fr:8443/dpm/datagrid.cea.fr/home/dteam/&amp;quot;&lt;br /&gt;
&lt;br /&gt;
liste des fichiers:&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00007&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00008&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00009&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00011&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00012&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00013&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00014&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00015&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00016&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00017&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00018&lt;br /&gt;
 srm/managerv1?SFN=/pnfs/in2p3.fr/data/dteam/dapnia/cleroy/ATLAS-file00019&lt;br /&gt;
&lt;br /&gt;
DAPNIA -&amp;gt; CC&lt;br /&gt;
&lt;br /&gt;
 set SourceURL=&amp;quot;srm://node12.datagrid.cea.fr:8443/dpm/datagrid.cea.fr/home/dteam/dapnia/&amp;quot;&lt;br /&gt;
 set DestURL=&amp;quot;srm://ccsrm.in2p3.fr:8443/pnfs/in2p3.fr/data/dteam/disk/dapnia/&amp;quot;&lt;br /&gt;
&lt;br /&gt;
liste des fichiers (1 seul SE-DISK)&lt;br /&gt;
&lt;br /&gt;
 cleroy/ATLAS-file00007&lt;br /&gt;
 cleroy/ATLAS-file00008&lt;br /&gt;
 cleroy/ATLAS-file00009&lt;br /&gt;
 cleroy/ATLAS-file00011&lt;br /&gt;
 cleroy/ATLAS-file00012&lt;br /&gt;
 cleroy/ATLAS-file00013&lt;br /&gt;
 cleroy/ATLAS-file00014&lt;br /&gt;
 cleroy/ATLAS-file00015&lt;br /&gt;
 cleroy/ATLAS-file00016&lt;br /&gt;
 cleroy/ATLAS-file00017&lt;br /&gt;
 cleroy/ATLAS-file00018&lt;br /&gt;
 cleroy/ATLAS-file00019&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
en parrallele avec n=10 pour les 2 type de transfet, pour durer environ 20 minutes (1Gb/s).&lt;br /&gt;
FTS configuré avec (f6;T2). &lt;br /&gt;
&lt;br /&gt;
 ESSAI du nbre de  |&lt;br /&gt;
 (fichier;stream)  | Bande passante(Mb/s)  | &lt;br /&gt;
 ------------------+-----------------------+&lt;br /&gt;
 | (f8;T1)         | 242                   |&lt;br /&gt;
 | (f6;T1)         | 301                   |&lt;br /&gt;
 | (f3;T1)         | 302                   |&lt;br /&gt;
 | (f2;T1)         | 185                   |&lt;br /&gt;
 | (f6;T2)         | 312                   |&lt;br /&gt;
 | (f6;T6)         | 284                   |&lt;br /&gt;
 | (f6;T4)         | 280                   |&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Resultat 26/04/2007 :&lt;br /&gt;
&lt;br /&gt;
D-CC&lt;br /&gt;
 Transfer Bandwidth Report:&lt;br /&gt;
 110/120 transferred in 2668.16920614 seconds&lt;br /&gt;
 81081938300.0 bytes transferred.&lt;br /&gt;
 Bandwidth: 243.108834667Mb/s&lt;br /&gt;
&lt;br /&gt;
CC-D&lt;br /&gt;
 Transfer Bandwidth Report:&lt;br /&gt;
 120/120 transferred in 3033.88385892 seconds&lt;br /&gt;
 88453023600.0 bytes transferred.&lt;br /&gt;
 Bandwidth: 233.240368355Mb/s&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Débit réseaux pour le SE DISK du DAPNIA (derriere node12):&lt;br /&gt;
&lt;br /&gt;
http://lcg2.in2p3.fr/wiki/images/Node11_net_fts_26042007.gif&lt;br /&gt;
&lt;br /&gt;
Débit réseaux routeur datagrid.cea.fr:&lt;br /&gt;
&lt;br /&gt;
http://lcg2.in2p3.fr/wiki/images/Routeur_datagridceafr_26042007.png&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
* [[2eme test: Utilisation du script de GRIDPP (filetransfer.py) et globus_url_copy]]&lt;br /&gt;
&lt;br /&gt;
utilisation de:&lt;br /&gt;
* filetransfer.py entre DAPNIA &amp;lt;-&amp;gt; Lyon (SE &amp;lt;-&amp;gt; SE)&lt;br /&gt;
* globus_url_copy et lcg-cr entre DAPNIA &amp;lt;-&amp;gt; Orsay (UI &amp;lt;-&amp;gt; SE)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Le 02/05/2007: Meme occupation réseaux :300Mb/s&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== &#039;&#039;&#039;CONCLUSION PRELIMINIARE&#039;&#039;&#039; ===&lt;br /&gt;
&lt;br /&gt;
=&amp;gt; Ces tests avaient pour but d&#039;occuper le plus possible la bande passante de notre réseaux datagrid.cea.fr, pour s&#039;assurer que le routeur tenait bien la charge&lt;br /&gt;
&lt;br /&gt;
=&amp;gt; Nous n&#039;avons pas reussi à occuper toute la bande passante: tests à poursuivre avec plus de client/serveur =&amp;gt; Le comble de l&#039;informaticien: réussir à faire mieux que ses utilisateurs:&lt;br /&gt;
&lt;br /&gt;
One day, One atlas physicit, Many jobs:&lt;br /&gt;
&lt;br /&gt;
http://lcg2.in2p3.fr/wiki/images/Node11.datagrid.cea.fr.rrd_NUMKBREADAVG_d.gif&lt;br /&gt;
&lt;br /&gt;
Débit réseaux SE DISK, le 16/06/2006&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Test sur le réseaux datagrid.cea.fr: Transfert de fichiers &#039;&#039;&#039;-2eme PHASE (3 SE-DISK au DAPNIA et multi threading)-&#039;&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Transfert FTS: (CC-&amp;gt;DAPNIA) // (DAPNIA-&amp;gt;CC) avec plusieurs SE-DISK du DAPNIA (node11, node18, node20) ===&lt;br /&gt;
&lt;br /&gt;
=== Transfert: FTS (CC-&amp;gt;DAPNIA) // FTS (DAPNIA-&amp;gt;CC) ) // globus-url-copy (UI DAPNIA -&amp;gt; SE LAL) // globus-url-copy (SE LAL -&amp;gt; UI DAPNIA) ===&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Priorites locales Filtre TORQUE-&#039;&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
http://lcg2.in2p3.fr/wiki/images/Submit_filter.txt&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Configuration thumper&#039;&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
La DOc:&lt;br /&gt;
http://www.sun.com/products-n-solutions/hardware/docs/pdf/820-1151-10.pdf&lt;br /&gt;
&lt;br /&gt;
http://doc.fedora-fr.org/RAID_Logiciel:_Comment_Installer_et_G%C3%A9rer_un_System_Raid&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Formatage des disks: ==&lt;br /&gt;
&lt;br /&gt;
Il faut des partitions du type type Linux raid autodetect (type fd)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 for i in   &lt;br /&gt;
 /dev/sda /dev/sdaa /dev/sdab /dev/sdad /dev/sdae /dev/sdaf /dev/sdag /dev/sdah /dev/sdai /dev/sdaj /dev/sd    /dev/sdal /dev/sdam /dev/sdan /dev/sdao /dev/sdap /dev/sdaq /dev/sdar /dev/sdas /dev/sdat /dev/sdau /dev/sdav /dev/sdd /dev/sde /dev/sdf /dev/sdg /dev/sdh /dev/sdi /dev/sdj /dev/sdk /dev/sdl /dev/sdm /dev/sdn /dev/sdo &lt;br /&gt;
 /dev/sdp /dev/sdq /dev/sdr /dev/sds /dev/sdt /dev/sdu /dev/sdv /dev/sdw /dev/sdx /dev/sdz; do export  &lt;br /&gt;
 $i; /root/script_raid $i; done&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node23 ~]# more /root/script_raid&lt;br /&gt;
 sfdisk -f $1 &amp;lt;&amp;lt; EOF&lt;br /&gt;
 0 60801 fd&lt;br /&gt;
 ;&lt;br /&gt;
 ;&lt;br /&gt;
 ;&lt;br /&gt;
 EOF&lt;br /&gt;
&lt;br /&gt;
Pour verifier:&lt;br /&gt;
&lt;br /&gt;
 # for i  &lt;br /&gt;
    &lt;br /&gt;
 in  /dev/sda /dev/sdaa /dev/sdab /dev/sdad /dev/sdae /dev/sdaf /dev/sdag /dev/sdah /dev/sdai /dev/sdaj &lt;br /&gt;
 /dev/sdak /dev/sdal /dev/sdam /dev/sdan /dev/sdao /dev/sdap /dev/sdaq /dev/sdar /dev/sdas /dev/sdat /dev/sdau /dev/sdav /dev/sdd /dev/sde /dev/sdf /dev/sdg /dev/sdh /dev/sdi /dev/sdj /dev/sdk /dev/sdl /dev/sdm /dev/sdn  /dev/sdo /dev/sdp /dev/sdq /dev/sdr /dev/sds /dev/sdt /dev/sdu /dev/sdv /dev/sdw /dev/sdx /dev/sdz; do  &lt;br /&gt;
 sfdisk --list $i ; done | more&lt;br /&gt;
&lt;br /&gt;
== Creation des Raids logiciel: ==&lt;br /&gt;
&lt;br /&gt;
Conseil de SUN:&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&amp;quot;Diff Raid 5 config does not change the availability that much, Raid 5 is one way parity, if you lose two disks in the same raid group, you lose the  data. The difference is probability of losing two disks is higher when you have higher number of disks in a raid group. We usually suggest using one disk out of each controller for parity, (six controller total), 5+1 configuration, 8 raid groups. Overhead is 1/6 about 16% capacity loss. add the OS disk, 20TB.&amp;quot;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 mdadm --create /dev/md1 --level=5 --raid- &lt;br /&gt;
 devices=6 /dev/sdab1 /dev/sdt1 /dev/sdar1 /dev/sdaj1 /dev/sdl1 /dev/sdd1&lt;br /&gt;
 mdadm --create /dev/md2 --level=5 --raid- &lt;br /&gt;
 devices=6 /dev/sdaf1 /dev/sdx1 /dev/sdav1 /dev/sdan1 /dev/sdp1 /dev/sdh&lt;br /&gt;
 mdadm --create /dev/md3 --level=5 --raid- &lt;br /&gt;
 devices=6 /dev/sdaa1 /dev/sds1 /dev/sdaq1 /dev/sdai1 /dev/sdk1 /dev/sdc1&lt;br /&gt;
 mdadm --create /dev/md4 --level=5 --raid- &lt;br /&gt;
 devices=6 /dev/sdae1 /dev/sdw1 /dev/sdau1 /dev/sdam1 /dev/sdo1 /dev/sdg1&lt;br /&gt;
 mdadm --create /dev/md5 --level=5 --raid- &lt;br /&gt;
 devices=6 /dev/sdz1 /dev/sdr1 /dev/sdap1 /dev/sdah1 /dev/sdj1 /dev/sdb1&lt;br /&gt;
 mdadm --create /dev/md6 --level=5 --raid- &lt;br /&gt;
 devices=6 /dev/sdad1 /dev/sdv1 /dev/sdat1 /dev/sdal1 /dev/sdn1 /dev/sdf1&lt;br /&gt;
 mdadm --create /dev/md7 --level=5 --raid-devices=5 /dev/sdq1 /dev/sdao1 /dev/sdag1 /dev/sdi1 /dev/sda1&lt;br /&gt;
 mdadm --create /dev/md8 --level=5 --raid-devices=5 /dev/sdu1 /dev/sdas1 /dev/sdak1 /dev/sdm1 /dev/sde1&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Sinon il est possible d&#039;avoir un disk de spare pour tous les raids, cf doc :&#039;&#039;&lt;br /&gt;
[http://images.globalknowledge.com/wwwimages/whitepaperpdf/WP_RCHE_10TipsTricks1.pdf] &lt;br /&gt;
&#039;&#039;mais je n&#039;ai pas eu le temps de tester.&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Pour verifier:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 cat /proc/mdstat&lt;br /&gt;
 mdadm --query /dev/md1&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Pour supprimer:&lt;br /&gt;
&lt;br /&gt;
 mdadm /dev/md1 stop&lt;br /&gt;
 mdadm /dev/md1 --remove&lt;br /&gt;
 mdadm --zero-superblock /dev/hdxx1&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 mkfs -t ext3 /dev/md1&lt;br /&gt;
 mount /dev/md1 /scratch&lt;br /&gt;
&lt;br /&gt;
== Pour les drivers: ==&lt;br /&gt;
&lt;br /&gt;
telecharger les outils et driver linux:&lt;br /&gt;
&lt;br /&gt;
http://www.sun.com/servers/x64/x4500/downloads.jsp&lt;br /&gt;
&lt;br /&gt;
telecharger: kernel-largesmp-devel-2.6.9-42.0.3.EL.x86_64&lt;br /&gt;
&lt;br /&gt;
Par contre il crée &lt;br /&gt;
&#039;&#039;&#039;/usr/src/kernels/2.6.9-42.0.3.EL-largesmp-x86_64&#039;&#039;&#039;  &lt;br /&gt;
au lieu de &#039;&#039;&#039;/usr/src/kernels/2.6.9-42.0.3.ELlargesmp-x86_64&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
faire donc un:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 cp -r /usr/src/kernels/2.6.9-42.0.3.EL-largesmp-x86_64 /usr/src/kernels/2.6.9-42.0.3.ELlargesmp-x86_64&lt;br /&gt;
&lt;br /&gt;
Ensuite:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 rpmbuild --rebuild   mvSatalinux-3.6.3_2-2.6.9_42.ELsmp_1.src.rpm&lt;br /&gt;
 rpm -e (de tous les rpm: &amp;quot;rpm -qa | grep -i mvsata&amp;quot;)&lt;br /&gt;
 rpm -ivh /usr/src/redhat/RPMS/x86_64/mvSatalinux-3.6.3_2-2.6.9_42.0.3.ELlargesmp_1.x86_64.rpm&lt;br /&gt;
 rpm -ivh /usr/src/redhat/RPMS/x86_64/mvSatalinux-debuginfo-3.6.3_2-2.6.9_42.0.3.ELlargesmp_1.x86_64.rpm&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
verifier:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 # modinfo mv_sata&lt;br /&gt;
 filename:       /lib/modules/2.6.9-42.0.3.ELlargesmp/kernel/drivers/scsi/mv_sata.ko&lt;br /&gt;
 description:    Marvell Serial ATA PCI-X Adapter version: 3.6.3_2&lt;br /&gt;
 license:        BSD&lt;br /&gt;
 alias:          pci:v000011ABd00007042sv*sd*bc*sc*i*&lt;br /&gt;
 alias:          pci:v000011ABd00006042sv*sd*bc*sc*i*&lt;br /&gt;
 alias:          pci:v000011ABd00006041sv*sd*bc*sc*i*&lt;br /&gt;
 alias:          pci:v000011ABd00006081sv*sd*bc*sc*i*&lt;br /&gt;
 alias:          pci:v000011ABd00005041sv*sd*bc*sc*i*&lt;br /&gt;
 alias:          pci:v000011ABd00005040sv*sd*bc*sc*i*&lt;br /&gt;
 alias:          pci:v000011ABd00005081sv*sd*bc*sc*i*&lt;br /&gt;
 alias:          pci:v000011ABd00005080sv*sd*bc*sc*i*&lt;br /&gt;
 depends:        scsi_mod&lt;br /&gt;
 vermagic:       2.6.9-42.0.3.ELlargesmp SMP gcc-3.4&lt;br /&gt;
 }}}&lt;br /&gt;
&lt;br /&gt;
== Test Performance Lecture/ecriture ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 # more /proc/mdstat&lt;br /&gt;
 Personalities : [raid5]&lt;br /&gt;
 md7 : active raid5 sdao1[1] sdag1[2] sdq1[0] sdi1[3]&lt;br /&gt;
      1953535744 blocks level 5, 64k chunk, algorithm 2 [5/4] [UUUU_]&lt;br /&gt;
 md5 : active raid5 sdap1[2] sdah1[3] sdz1[0] sdr1[1] sdj1[4] sdb1[5]&lt;br /&gt;
      2441919680 blocks level 5, 64k chunk, algorithm 2 [6/6] [UUUUUU]&lt;br /&gt;
 md3 : active raid5 sdaq1[2] sdai1[3] sdaa1[0] sds1[1] sdk1[4]&lt;br /&gt;
      2441919680 blocks level 5, 64k chunk, algorithm 2 [6/5] [UUUUU_]&lt;br /&gt;
 md8 : active raid5 sdas1[1] sdak1[2] sdu1[0] sdm1[3] sde1[4]&lt;br /&gt;
      1953535744 blocks level 5, 64k chunk, algorithm 2 [5/5] [UUUUU]&lt;br /&gt;
 md6 : active raid5 sdat1[2] sdal1[3] sdad1[0] sdv1[1] sdn1[4] sdf1[5]&lt;br /&gt;
      2441919680 blocks level 5, 64k chunk, algorithm 2 [6/6] [UUUUUU]&lt;br /&gt;
 md4 : active raid5 sdau1[2] sdam1[3] sdae1[0] sdw1[1] sdo1[4] sdg1[5]&lt;br /&gt;
      2441919680 blocks level 5, 64k chunk, algorithm 2 [6/6] [UUUUUU]&lt;br /&gt;
 md2 : active raid5 sdav1[2] sdan1[3] sdaf1[0] sdx1[1] sdp1[4]&lt;br /&gt;
      2441919680 blocks level 5, 64k chunk, algorithm 2 [6/5] [UUUUU_]&lt;br /&gt;
 md1 : active raid5 sdar1[2] sdaj1[3] sdab1[0] sdt1[1] sdl1[4] sdd1[5]&lt;br /&gt;
      2441919680 blocks level 5, 64k chunk, algorithm 2 [6/6] [UUUUUU]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 en MB/s&lt;br /&gt;
 Volumétrie: 19TB utile&lt;br /&gt;
 |	   md1    md2     md3	  md4    md5   md6      md7    md8    MOY     TOT (Mb/s)   Mb/s/TB	&lt;br /&gt;
 Write//    71,22  69,31  68,13  71,26  70,14   69,56   62,56  65,89   68,50     4384,56     230,76&lt;br /&gt;
 write seq 111,01 103,42  102,24 109,77	112,58	107,02	84,61  89,6   102,53125			&lt;br /&gt;
 read //   99,62   98,75   98,22  99,78	100,93	100,01	85,7   86,69   96,2125	 6157,6	     324,08&lt;br /&gt;
 read seq  275,4  254,28  250,69 267,62	274,16	280,52	188,37 197,58 248,5775&lt;br /&gt;
&lt;br /&gt;
== Configuration Reseaux avec 2 intefaces bond ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node23 ~]# more /etc/modprobe.conf&lt;br /&gt;
 alias eth0 e1000&lt;br /&gt;
 alias eth1 e1000&lt;br /&gt;
 alias eth2 e1000&lt;br /&gt;
 alias eth3 e1000&lt;br /&gt;
 alias eth4 e1000&lt;br /&gt;
 alias eth5 e1000&lt;br /&gt;
 alias eth6 e1000&lt;br /&gt;
 alias eth7 e1000&lt;br /&gt;
 install ipw3945 /sbin/modprobe --ignore-install ipw3945 ; sleep 0.5 ; /sbin/ipw3&lt;br /&gt;
 945d --quiet&lt;br /&gt;
 remove ipw3945 /sbin/ipw3945d --kill ; /sbin/modprobe -r --ignore-remove ipw3945&lt;br /&gt;
 alias usb-controller ehci-hcd&lt;br /&gt;
 alias usb-controller1 ohci-hcd&lt;br /&gt;
 ####BONDING&lt;br /&gt;
 alias bond0 bonding&lt;br /&gt;
 alias bond1 bonding&lt;br /&gt;
 #options bond0 -o bond0 mode=0 miimon=100&lt;br /&gt;
 options bond0 mode=0 miimon=100 max_bonds=2&lt;br /&gt;
 options bond1 -o bond1 mode=0 miimon=100&lt;br /&gt;
 ####END BONDING&lt;br /&gt;
 #Added mv_sata binary driver rpm installation&lt;br /&gt;
 alias scsi_hostadapter mv_sata&lt;br /&gt;
 alias sata_mv off&lt;br /&gt;
 [root@node23 ~]#&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node23 ~]# more /etc/sysconfig/network-scripts/ifcfg-*&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-bond0&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=bond0&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=static&lt;br /&gt;
 IPADDR=192.54.208.82&lt;br /&gt;
 NETMASK=255.255.255.0&lt;br /&gt;
 BROADCAST=192.54.208.255&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-bond1&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=bond1&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=static&lt;br /&gt;
 IPADDR=192.54.208.101&lt;br /&gt;
 NETMASK=255.255.255.0&lt;br /&gt;
 BROADCAST=192.54.208.255&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-eth0&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=eth0&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=none&lt;br /&gt;
 MASTER=bond0&lt;br /&gt;
 SLAVE=yes&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-eth1&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=eth1&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=none&lt;br /&gt;
 MASTER=bond0&lt;br /&gt;
 SLAVE=yes&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-eth2&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=eth2&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=none&lt;br /&gt;
 MASTER=bond0&lt;br /&gt;
 SLAVE=yes&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-eth3&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=eth3&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=none&lt;br /&gt;
 MASTER=bond0&lt;br /&gt;
 SLAVE=yes&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-eth4&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=eth4&lt;br /&gt;
 TYPE=Ethernet &lt;br /&gt;
 BOOTPROTO=none&lt;br /&gt;
 MASTER=bond1&lt;br /&gt;
 SLAVE=yes&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-eth5&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=eth5&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=none&lt;br /&gt;
 MASTER=bond1&lt;br /&gt;
 SLAVE=yes&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-eth6&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=eth6&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=none&lt;br /&gt;
 MASTER=bond1&lt;br /&gt;
 SLAVE=yes&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 /etc/sysconfig/network-scripts/ifcfg-eth7&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
 ONBOOT=yes&lt;br /&gt;
 DEVICE=eth7&lt;br /&gt;
 TYPE=Ethernet&lt;br /&gt;
 BOOTPROTO=none&lt;br /&gt;
 MASTER=bond1&lt;br /&gt;
 SLAVE=yes&lt;br /&gt;
 ::::::::::::::&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 # ifconfig&lt;br /&gt;
 bond0     Link encap:Ethernet  HWaddr 00:14:4F:20:FC:B0&lt;br /&gt;
          inet addr:192.54.208.82  Bcast:192.54.208.255  Mask:255.255.255.0&lt;br /&gt;
          inet6 addr: fe80::200:ff:fe00:0/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING MASTER MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:96129841 errors:2 dropped:0 overruns:0 frame:1&lt;br /&gt;
          TX packets:86702743 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:0&lt;br /&gt;
          RX bytes:144510750072 (134.5 GiB)  TX bytes:7460167641 (6.9 GiB)&lt;br /&gt;
 bond1     Link encap:Ethernet  HWaddr 00:15:17:2A:09:A6&lt;br /&gt;
          inet addr:192.54.208.101  Bcast:192.54.208.255  Mask:255.255.255.0&lt;br /&gt;
          inet6 addr: fe80::200:ff:fe00:0/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING MASTER MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:934011 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:33 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:0&lt;br /&gt;
          RX bytes:62926730 (60.0 MiB)  TX bytes:2572 (2.5 KiB)&lt;br /&gt;
 eth0      Link encap:Ethernet  HWaddr 00:14:4F:20:FC:B0&lt;br /&gt;
          inet6 addr: fe80::214:4fff:fe20:fcb0/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING SLAVE MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:73871160 errors:2 dropped:0 overruns:0 frame:1&lt;br /&gt;
          TX packets:21675694 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:1000&lt;br /&gt;
          RX bytes:110757099435 (103.1 GiB)  TX bytes:1865279045 (1.7 GiB)&lt;br /&gt;
          Base address:0xac00 Memory:fd2e0000-fd300000&lt;br /&gt;
 eth1      Link encap:Ethernet  HWaddr 00:14:4F:20:FC:B0&lt;br /&gt;
          inet6 addr: fe80::214:4fff:fe20:fcb0/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING SLAVE MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:22109357 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:21675683 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:1000&lt;br /&gt;
          RX bytes:33554660288 (31.2 GiB)  TX bytes:1864208904 (1.7 GiB)&lt;br /&gt;
          Base address:0xa800 Memory:fd2c0000-fd2e0000&lt;br /&gt;
 eth2      Link encap:Ethernet  HWaddr 00:14:4F:20:FC:B0&lt;br /&gt;
          inet6 addr: fe80::214:4fff:fe20:fcb0/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING SLAVE MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:55195 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:21675683 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:1000&lt;br /&gt;
          RX bytes:68939873 (65.7 MiB)  TX bytes:1865275229 (1.7 GiB)&lt;br /&gt;
          Base address:0xbc00 Memory:fd3e0000-fd400000&lt;br /&gt;
 eth3      Link encap:Ethernet  HWaddr 00:14:4F:20:FC:B0&lt;br /&gt;
          inet6 addr: fe80::214:4fff:fe20:fcb0/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING SLAVE MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:94129 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:21675683 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:1000&lt;br /&gt;
          RX bytes:130050476 (124.0 MiB)  TX bytes:1865404463 (1.7 GiB)&lt;br /&gt;
          Base address:0xb800 Memory:fd3c0000-fd3e0000&lt;br /&gt;
 eth4      Link encap:Ethernet  HWaddr 00:15:17:2A:09:A6&lt;br /&gt;
          inet6 addr: fe80::215:17ff:fe2a:9a6/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING SLAVE MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:0 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:10 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:1000&lt;br /&gt;
          RX bytes:0 (0.0 b)  TX bytes:758 (758.0 b)&lt;br /&gt;
          Base address:0xec00 Memory:fe4e0000-fe500000&lt;br /&gt;
 eth5      Link encap:Ethernet  HWaddr 00:15:17:2A:09:A6&lt;br /&gt;
          inet6 addr: fe80::215:17ff:fe2a:9a6/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING SLAVE MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:5 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:9 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:1000&lt;br /&gt;
          RX bytes:390 (390.0 b)  TX bytes:714 (714.0 b)&lt;br /&gt;
          Base address:0xe800 Memory:fe4c0000-fe4e0000&lt;br /&gt;
 eth6      Link encap:Ethernet  HWaddr 00:15:17:2A:09:A6&lt;br /&gt;
          inet6 addr: fe80::215:17ff:fe2a:9a6/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING SLAVE MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:1 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:8 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:1000&lt;br /&gt;
          RX bytes:66 (66.0 b)  TX bytes:628 (628.0 b)&lt;br /&gt;
          Base address:0xfc00 Memory:fe7e0000-fe800000&lt;br /&gt;
 eth7      Link encap:Ethernet  HWaddr 00:15:17:2A:09:A6&lt;br /&gt;
          inet6 addr: fe80::215:17ff:fe2a:9a6/64 Scope:Link&lt;br /&gt;
          UP BROADCAST RUNNING SLAVE MULTICAST  MTU:1500  Metric:1&lt;br /&gt;
          RX packets:934005 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:6 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:1000&lt;br /&gt;
          RX bytes:62926274 (60.0 MiB)  TX bytes:472 (472.0 b)&lt;br /&gt;
          Base address:0xf800 Memory:fe7c0000-fe7e0000&lt;br /&gt;
 lo        Link encap:Local Loopback&lt;br /&gt;
          inet addr:127.0.0.1  Mask:255.0.0.0&lt;br /&gt;
          inet6 addr: ::1/128 Scope:Host&lt;br /&gt;
          UP LOOPBACK RUNNING  MTU:16436  Metric:1&lt;br /&gt;
          RX packets:294 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;
          TX packets:294 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;
          collisions:0 txqueuelen:0&lt;br /&gt;
          RX bytes:46053 (44.9 KiB)  TX bytes:46053 (44.9 KiB)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Exemple de connection avec iperf (4 client pour chacune des interfaces)&lt;br /&gt;
&lt;br /&gt;
 tcp        0      0 *:20008                     *:*                         LISTEN&lt;br /&gt;
 tcp        0      0 *:20009                     *:*                         LISTEN&lt;br /&gt;
 tcp        0      0 node23.datagrid.cea.f:20008 wn048.datagrid.cea.fr:51269 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node27.datagrid.cea.f:20009 node02.datagrid.cea.f:39957 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node23.datagrid.cea.f:20008 wn004.datagrid.cea.fr:35417 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node23.datagrid.cea.f:20008 node01.datagrid.cea.f:38544 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node27.datagrid.cea.f:20009 wn049.datagrid.cea.fr:34206 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node23.datagrid.cea.f:20008 wn005.datagrid.cea.fr:35380 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node27.datagrid.cea.f:20009 wn050.datagrid.cea.fr:34567 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node27.datagrid.cea.f:20009 wn006.datagrid.cea.fr:42137 ESTABLISHED&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Exemple de configuration pour le SE DPM&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node24 root]# dpm-qryconf&lt;br /&gt;
 POOL CMS_SC DEFSIZE 200.00M GC_START_THRESH 0 GC_STOP_THRESH 0 DEF_LIFETIME 7.0d DEFPINTIME 2.0h  &lt;br /&gt;
 MAX_LIFETIME 1.0m MAXPINTIME 12.0h FSS_POLICY maxfreespace GC_POLICY lru RS_POLICY fifo GIDS 0 S_TYPE -  &lt;br /&gt;
 MIG_POLICY none RET_POLICY R&lt;br /&gt;
                              CAPACITY 23.51T FREE 22.27T ( 94.7%)&lt;br /&gt;
  node25.datagrid.cea.fr /pool_node25 CAPACITY 4.48T FREE 4.39T ( 98.1%)&lt;br /&gt;
  node26.datagrid.cea.fr /pool_node26 CAPACITY 233.71G FREE 216.23G ( 92.5%)&lt;br /&gt;
  node26.datagrid.cea.fr /pool_node26_2 CAPACITY 1.79T FREE 1.69T ( 94.5%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam1 CAPACITY 2.24T FREE 2.09T ( 93.2%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam2 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam3 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam7 CAPACITY 1.79T FREE 1.68T ( 93.8%)&lt;br /&gt;
  node27.datagrid.cea.fr /dteam4 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node27.datagrid.cea.fr /dteam5 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node27.datagrid.cea.fr /dteam6 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node27.datagrid.cea.fr /dteam8 CAPACITY 1.79T FREE 1.68T ( 93.8%)&lt;br /&gt;
&lt;br /&gt;
== Configuration Reseaux avec 1 intefaces bond ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 # more /etc/modprobe.conf&lt;br /&gt;
 alias eth0 e1000&lt;br /&gt;
 alias eth1 e1000&lt;br /&gt;
 alias eth2 e1000&lt;br /&gt;
 alias eth3 e1000&lt;br /&gt;
 alias eth4 e1000&lt;br /&gt;
 alias eth5 e1000&lt;br /&gt;
 alias eth6 e1000&lt;br /&gt;
 alias eth7 e1000&lt;br /&gt;
 options e1000 InterruptThrottleRate=3000&lt;br /&gt;
 install ipw3945 /sbin/modprobe --ignore-install ipw3945 ; sleep 0.5 ; /sbin/ipw3&lt;br /&gt;
 945d --quiet&lt;br /&gt;
 remove ipw3945 /sbin/ipw3945d --kill ; /sbin/modprobe -r --ignore-remove ipw3945&lt;br /&gt;
 alias usb-controller ehci-hcd&lt;br /&gt;
 alias usb-controller1 ohci-hcd&lt;br /&gt;
 ####BONDING&lt;br /&gt;
 alias bond0 bonding&lt;br /&gt;
 options bond0 mode=0 miimon=100&lt;br /&gt;
 ####END BONDING&lt;br /&gt;
 #Added mv_sata binary driver rpm installation&lt;br /&gt;
 alias scsi_hostadapter mv_sata&lt;br /&gt;
 alias sata_mv off&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
recharger les modules, redemarrer le reseaux, et verifier que tout est OK:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 # more /proc/net/bonding/bond0&lt;br /&gt;
 Ethernet Channel Bonding Driver: v2.6.3 (June 8, 2005)&lt;br /&gt;
 Bonding Mode: load balancing (round-robin)&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 MII Polling Interval (ms): 100&lt;br /&gt;
 Up Delay (ms): 0&lt;br /&gt;
 Down Delay (ms): 0&lt;br /&gt;
 Slave Interface: eth0&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 Link Failure Count: 0&lt;br /&gt;
 Permanent HW addr: 00:14:4f:20:fc:b0&lt;br /&gt;
 Slave Interface: eth1&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 Link Failure Count: 0&lt;br /&gt;
 Permanent HW addr: 00:14:4f:20:fc:b1&lt;br /&gt;
 Slave Interface: eth2&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 Link Failure Count: 0&lt;br /&gt;
 Permanent HW addr: 00:14:4f:20:fc:b2&lt;br /&gt;
 Slave Interface: eth3&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 Link Failure Count: 0&lt;br /&gt;
 Permanent HW addr: 00:14:4f:20:fc:b3 &lt;br /&gt;
 Slave Interface: eth4&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 Link Failure Count: 0&lt;br /&gt;
 Permanent HW addr: 00:15:17:2a:09:a6&lt;br /&gt;
 Slave Interface: eth5&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 Link Failure Count: 0&lt;br /&gt;
 Permanent HW addr: 00:15:17:2a:09:a7&lt;br /&gt;
 Slave Interface: eth6&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 Link Failure Count: 0&lt;br /&gt;
 Permanent HW addr: 00:15:17:2a:07:8c&lt;br /&gt;
 Slave Interface: eth7&lt;br /&gt;
 MII Status: up&lt;br /&gt;
 Link Failure Count: 0&lt;br /&gt;
 Permanent HW addr: 00:15:17:2a:07:8d&lt;br /&gt;
&lt;br /&gt;
== Probleme sur les cartes reseaux supplémentaires: ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel: e1000: eth4: e1000_clean_tx_irq: Detected Tx Unit Hang&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   Tx Queue             &amp;lt;0&amp;gt;&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   TDH                  &amp;lt;2&amp;gt;&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   TDT                  &amp;lt;2&amp;gt;&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   next_to_use          &amp;lt;2&amp;gt;&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   next_to_clean        &amp;lt;0&amp;gt;&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel: buffer_info[next_to_clean]&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   time_stamp           &amp;lt;1144b73ba&amp;gt;&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   next_to_watch        &amp;lt;0&amp;gt;&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   jiffies              &amp;lt;1144b7a09&amp;gt;&lt;br /&gt;
 Oct  9 16:40:36 node23 kernel:   next_to_watch.status &amp;lt;0&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel: e1000: eth5: e1000_clean_tx_irq: Detected Tx Unit Hang&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   Tx Queue             &amp;lt;0&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   TDH                  &amp;lt;1&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   TDT                  &amp;lt;1&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   next_to_use          &amp;lt;1&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   next_to_clean        &amp;lt;0&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel: buffer_info[next_to_clean]&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   time_stamp           &amp;lt;1144b77fa&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   next_to_watch        &amp;lt;0&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   jiffies              &amp;lt;1144b817b&amp;gt;&lt;br /&gt;
 Oct  9 16:40:38 node23 kernel:   next_to_watch.status &amp;lt;0&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
on n&#039;avait pas le bon driver e1000, voir paragraphe suivant pour loader le bon driver&lt;br /&gt;
&lt;br /&gt;
== driver carte réseaux ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Pour voir le driver adapté aux cartes:&lt;br /&gt;
&lt;br /&gt;
[http://support.intel.com/support/network/sb/cs-012904.htm]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node23 ~]# lspci | tail -4&lt;br /&gt;
 0d:01.0 Ethernet controller: Intel Corporation 82546GB Gigabit Ethernet Controller (rev 03)&lt;br /&gt;
 0d:01.1 Ethernet controller: Intel Corporation 82546GB Gigabit Ethernet Controller (rev 03)&lt;br /&gt;
 0e:01.0 Ethernet controller: Intel Corporation 82546GB Gigabit Ethernet Controller (rev 03)&lt;br /&gt;
 0e:01.1 Ethernet controller: Intel Corporation 82546GB Gigabit Ethernet Controller (rev 03)&lt;br /&gt;
 [root@node23 ~]#&lt;br /&gt;
&lt;br /&gt;
telecharger le bon driver puis l&#039;installer:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 # rpmbuild -tb e1000-7.6.9.tar.gz&lt;br /&gt;
 # rpm -ivh /usr/src/redhat/RPMS/x86_64/e1000-7.6.9-1.x86_64.rpm&lt;br /&gt;
 Preparing...                ########################################### [100%]&lt;br /&gt;
   1:e1000                  ########################################### [100%]&lt;br /&gt;
 original pci.ids saved in /usr/local/share/e1000&lt;br /&gt;
 original pcitable saved in /usr/local/share/e1000&lt;br /&gt;
 [root@node23 BONDING]#&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Dans le README, il preconnise de loader le module avec l&#039;option &#039;&#039;interruptThrottleRate=3000:&#039;&#039; &lt;br /&gt;
&lt;br /&gt;
tout recharger correctement:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 ifconfig bond0 down; ifconfig bond1 down; rmmod e1000; modprobe e1000  &lt;br /&gt;
 InterruptThrottleRate=3000,3000,3000,3000,3000,3000,3000,3000 ; rmmod bond0 ; rmmod bond1; modprobe bonding &lt;br /&gt;
 -o bond0 mode=0 miimon=100; modprobe bonding -o bond1 -o bond1 mode=0 miimon=100;  &lt;br /&gt;
 /etc/init.d/network restart&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
et modifier le fichier modprobe:&lt;br /&gt;
&lt;br /&gt;
 # more /etc/modprobe.conf&lt;br /&gt;
 alias eth0 e1000&lt;br /&gt;
 alias eth1 e1000&lt;br /&gt;
 alias eth2 e1000&lt;br /&gt;
 alias eth3 e1000&lt;br /&gt;
 alias eth4 e1000&lt;br /&gt;
 alias eth5 e1000&lt;br /&gt;
 alias eth6 e1000&lt;br /&gt;
 alias eth7 e1000&lt;br /&gt;
 options e1000 InterruptThrottleRate=3000&lt;br /&gt;
 install ipw3945 /sbin/modprobe --ignore-install ipw3945 ; sleep 0.5 ; /sbin/ipw3945d --quiet&lt;br /&gt;
 remove ipw3945 /sbin/ipw3945d --kill ; /sbin/modprobe -r --ignore-remove ipw3945&lt;br /&gt;
 alias usb-controller ehci-hcd&lt;br /&gt;
 alias usb-controller1 ohci-hcd&lt;br /&gt;
 ####BONDING&lt;br /&gt;
 alias bond0 bonding&lt;br /&gt;
 alias bond1 bonding&lt;br /&gt;
 options bond0 mode=0 miimon=100 max_bonds=2&lt;br /&gt;
 options bond1 -o bond1 mode=0 miimon=100&lt;br /&gt;
 ####END BONDING&lt;br /&gt;
 #Added mv_sata binary driver rpm installation&lt;br /&gt;
 alias scsi_hostadapter mv_sata&lt;br /&gt;
 alias sata_mv off&lt;br /&gt;
&lt;br /&gt;
== Test iperf ==&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;1) 1 interface bond0 (eth0, eth1, eth2, eth3):&#039;&#039;&#039;  ~ 2,7 Gb/s&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [  4] 10.0-20.0 sec    557 MBytes    467 Mbits/sec&lt;br /&gt;
 [  5] 10.0-20.0 sec  1.10 GBytes    941 Mbits/sec&lt;br /&gt;
 [  6] 10.0-20.0 sec    976 MBytes    819 Mbits/sec&lt;br /&gt;
 [  7] 10.0-20.0 sec    567 MBytes    476 Mbits/sec&lt;br /&gt;
 [  4] 20.0-30.0 sec    564 MBytes    473 Mbits/sec&lt;br /&gt;
 [  5] 20.0-30.0 sec  1.10 GBytes    941 Mbits/sec&lt;br /&gt;
 [  6] 20.0-30.0 sec    969 MBytes    813 Mbits/sec&lt;br /&gt;
 [  7] 20.0-30.0 sec    558 MBytes    468 Mbits/sec&lt;br /&gt;
 [  4] 30.0-40.0 sec    561 MBytes    470 Mbits/sec&lt;br /&gt;
 [  5] 30.0-40.0 sec  1.10 GBytes    941 Mbits/sec&lt;br /&gt;
 [  6] 30.0-40.0 sec    986 MBytes    827 Mbits/sec&lt;br /&gt;
 [  7] 30.0-40.0 sec    550 MBytes    461 Mbits/sec&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;2) 2 interfaces : bond0 (eth0, eth1) et bond1 (eth2,eth3):&#039;&#039;&#039;  ~900 Mb/s !!&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 netstat -a | grep 200&lt;br /&gt;
 tcp        0      0 *:20008                     *:*                         LISTEN&lt;br /&gt;
 tcp        0      0 *:20010                     *:*                         LISTEN&lt;br /&gt;
 tcp        0      0 node27.datagrid.cea.f:20010 wn049.datagrid.cea.fr:41057 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node27.datagrid.cea.f:20010 wn005.datagrid.cea.fr:44065 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node23.datagrid.cea.f:20008 node01.datagrid.cea.f:34342 ESTABLISHED&lt;br /&gt;
 tcp        0      0 node23.datagrid.cea.f:20008 wn048.datagrid.cea.fr:34032 ESTABLISHED&lt;br /&gt;
&lt;br /&gt;
sur node 23: &lt;br /&gt;
 [  4] 20.0-25.0 sec    146 MBytes    244 Mbits/sec&lt;br /&gt;
 [  5] 20.0-25.0 sec    149 MBytes    251 Mbits/sec&lt;br /&gt;
 [  4] 25.0-30.0 sec    143 MBytes    240 Mbits/sec&lt;br /&gt;
 [  5] 25.0-30.0 sec    160 MBytes    268 Mbits/sec&lt;br /&gt;
 [  4] 30.0-35.0 sec    117 MBytes    196 Mbits/sec&lt;br /&gt;
 [  5] 30.0-35.0 sec    149 MBytes    250 Mbits/sec&lt;br /&gt;
sur node27:&lt;br /&gt;
 [  4] 20.0-25.0 sec    101 MBytes    170 Mbits/sec&lt;br /&gt;
 [  5] 20.0-25.0 sec    164 MBytes    275 Mbits/sec&lt;br /&gt;
 [  4] 25.0-30.0 sec    108 MBytes    181 Mbits/sec&lt;br /&gt;
 [  5] 25.0-30.0 sec    180 MBytes    303 Mbits/sec&lt;br /&gt;
 [  4] 30.0-35.0 sec    102 MBytes    172 Mbits/sec&lt;br /&gt;
 [  5] 30.0-35.0 sec    162 MBytes    272 Mbits/sec&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;3)interfaces : bond0 (eth0, eth1, eth2,eth3) et bond1 (eth4, eth5, eth6,eth7):&#039;&#039;&#039;  ~3,8Gb/s &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
sur node27:&lt;br /&gt;
 [  4] 20.0-30.0 sec    337 MBytes    283 Mbits/sec&lt;br /&gt;
 [  5] 20.0-30.0 sec    393 MBytes    329 Mbits/sec&lt;br /&gt;
 [  6] 20.0-30.0 sec    425 MBytes    357 Mbits/sec&lt;br /&gt;
 [  7] 20.0-30.0 sec    758 MBytes    636 Mbits/sec&lt;br /&gt;
sur node23:&lt;br /&gt;
 [  4] 20.0-30.0 sec    727 MBytes    610 Mbits/sec&lt;br /&gt;
 [  5] 20.0-30.0 sec  1.10 GBytes    941 Mbits/sec&lt;br /&gt;
 [  6] 20.0-30.0 sec    360 MBytes    302 Mbits/sec&lt;br /&gt;
 [  7] 20.0-30.0 sec    359 MBytes    301 Mbits/sec&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;4) 1 interface bond0 (eth0, eth1, eth2, eth3, eth4, eth5, eth6, eth7):&#039;&#039;&#039; ~5Gb/s&lt;br /&gt;
&lt;br /&gt;
 http://lcg.in2p3.fr/wiki/images/Node23_datagrid_cea_fr_rrd_NUMKBREADAVG_d.gif&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [  4] 10.0-20.0 sec    841 MBytes    705 Mbits/sec&lt;br /&gt;
 [  5] 10.0-20.0 sec  1001 MBytes    840 Mbits/sec&lt;br /&gt;
 [  6] 10.0-20.0 sec    671 MBytes    563 Mbits/sec&lt;br /&gt;
 [  7] 10.0-20.0 sec    581 MBytes    487 Mbits/sec&lt;br /&gt;
 [  8] 10.0-20.0 sec    431 MBytes    362 Mbits/sec&lt;br /&gt;
 [  9] 10.0-20.0 sec    535 MBytes    449 Mbits/sec&lt;br /&gt;
 [ 10] 10.0-20.0 sec    986 MBytes    827 Mbits/sec&lt;br /&gt;
 [ 11] 10.0-20.0 sec    878 MBytes    736 Mbits/sec&lt;br /&gt;
 [  4] 20.0-30.0 sec    903 MBytes    758 Mbits/sec&lt;br /&gt;
 [  5] 20.0-30.0 sec  1.04 GBytes    894 Mbits/sec&lt;br /&gt;
 [  6] 20.0-30.0 sec    263 MBytes    221 Mbits/sec&lt;br /&gt;
 [  7] 20.0-30.0 sec    169 MBytes    142 Mbits/sec&lt;br /&gt;
 [  8] 20.0-30.0 sec    731 MBytes    614 Mbits/sec&lt;br /&gt;
 [  9] 20.0-30.0 sec    916 MBytes    769 Mbits/sec&lt;br /&gt;
 [ 10] 20.0-30.0 sec    922 MBytes    774 Mbits/sec&lt;br /&gt;
 [ 11] 20.0-30.0 sec    395 MBytes    332 Mbits/sec&lt;br /&gt;
&lt;br /&gt;
== Test Performance DISK+NETWORK avec DPM ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [root@node24 root]# dpm-qryconf&lt;br /&gt;
 POOL CMS_SC DEFSIZE 200.00M GC_START_THRESH 0 GC_STOP_THRESH 0 DEF_LIFETIME 7.0d DEFPINTIME 2.0h  &lt;br /&gt;
 MAX_LIFETIME 1.0m MAXPINTIME 12.0h FSS_POLICY maxfreespace GC_POLICY lru RS_POLICY fifo GIDS 0 S_TYPE -   &lt;br /&gt;
 MIG_POLICY none RET_POLICY R&lt;br /&gt;
                              CAPACITY 17.01T FREE 15.98T ( 93.9%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam1 CAPACITY 2.24T FREE 2.09T ( 93.2%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam2 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam3 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam7 CAPACITY 1.79T FREE 1.68T ( 93.8%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam4 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam5 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam6 CAPACITY 2.24T FREE 2.11T ( 94.1%)&lt;br /&gt;
  node23.datagrid.cea.fr /dteam8 CAPACITY 1.79T FREE 1.68T ( 93.8%)&lt;br /&gt;
&lt;br /&gt;
sur l&#039;UI:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 [cleroy@node02 2_IPbonding]$ time ./transfert_concurrent_client_node24.py&lt;br /&gt;
 globus-url-copy file:/home/cleroy/DTEAM_2004/4_Tt2t1/ATLAS_DATA &lt;br /&gt;
 gsiftp://node24.datagrid.cea.fr/dpm/datagrid.cea.fr/home/dteam/dapnia/cleroy/TO_BE_REMOVED/&lt;br /&gt;
 ATLAS_DATA_Trf00001&lt;br /&gt;
 ...&lt;br /&gt;
 ....&lt;br /&gt;
 real    2m13.017s&lt;br /&gt;
 user    1m4.270s&lt;br /&gt;
 sys     0m48.790s&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Sur le SE disk:&lt;br /&gt;
&lt;br /&gt;
 [root@node23 ~]# ll /dteam*/dteam/2007-10-10&lt;br /&gt;
 /dteam1/dteam/2007-10-10:&lt;br /&gt;
 total 1441096&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA2_Trf00001.4189.0&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA3_Trf00000.4181.0&lt;br /&gt;
 /dteam2/dteam/2007-10-10:&lt;br /&gt;
 total 1441104&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:37 ATLAS_DATA_Trf00000.4182.0&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:37 ATLAS_DATA_Trf00001.4174.0&lt;br /&gt;
 -rw-r--r--  1 root   root           5 Oct 10 17:27 essai&lt;br /&gt;
 /dteam3/dteam/2007-10-10:&lt;br /&gt;
 total 1441096&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA4_Trf00001.4175.0&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:37 ATLAS_DATA8_Trf00001.4183.0 &lt;br /&gt;
 /dteam4/dteam/2007-10-10:&lt;br /&gt;
 total 1441096&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:37 ATLAS_DATA7_Trf00001.4184.0&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA8_Trf00000.4176.0&lt;br /&gt;
 /dteam5/dteam/2007-10-10:&lt;br /&gt;
 total 1441096&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA2_Trf00000.4177.0&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:37 ATLAS_DATA7_Trf00000.4185.0&lt;br /&gt;
 /dteam6/dteam/2007-10-10:&lt;br /&gt;
 total 1441096&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA5_Trf00001.4178.0&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:37 ATLAS_DATA6_Trf00000.4188.0 &lt;br /&gt;
 /dteam7/dteam/2007-10-10:&lt;br /&gt;
 total 1441096&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA3_Trf00001.4186.0&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA6_Trf00001.4180.0&lt;br /&gt;
 /dteam8/dteam/2007-10-10:&lt;br /&gt;
 total 1441096&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA4_Trf00000.4179.0&lt;br /&gt;
 -rw-rw----  1 dpmmgr dpmmgr 737108530 Oct 10 17:38 ATLAS_DATA5_Trf00000.4187.0&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
16 fichiers en paralleles de 737 MB: &lt;br /&gt;
11792 MB en 133 s = 88 MB/s = 709 Mb/s&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
autre test: &lt;br /&gt;
(16 * 20 = 320 )fichiers de 737MB : 235840 MB en  30m29.512s : 128 MB/s : 1024 Mb/s&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== DPM et XROOTD ==&lt;br /&gt;
&lt;br /&gt;
Ce document décrit la procédure utilisée à l&#039;IPNO pour installer xrootd sur un serveur DPM. La procédure d&#039;installation doit être effectuée sur chaque server (head node et disk servers). A l&#039;IPNO l&#039;installation a eu lieu sur un unique serveur à la fois head node et disk server.&lt;br /&gt;
&lt;br /&gt;
=== La documentation utile ===&lt;br /&gt;
Configuring &#039;xroot&#039; Protocol on DPM (Andreas Peters) [[BR]]&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/LCG/DpmXrootAccess&lt;br /&gt;
&lt;br /&gt;
How to Install and Debug Xrootd on a DPM Storage Element (Jean-Michel Barbet) [[BR]]&lt;br /&gt;
http://alien.cern.ch/twiki/bin/view/AliEn/HowToInstallXrootdAndDPM&lt;br /&gt;
&lt;br /&gt;
LCG-France T2-T3 Technical meeting : DPM/xrootd introduction (Jean-Michel Barbet)[[BR]]&lt;br /&gt;
http://indico.in2p3.fr/conferenceDisplay.py?confId=821&lt;br /&gt;
&lt;br /&gt;
Xrootd Tutorial (Artem Trunov) [[BR]]&lt;br /&gt;
http://indico.cern.ch/materialDisplay.py?contribId=8&amp;amp;sessionId=0&amp;amp;materialId=slides&amp;amp;confId=a058483&lt;br /&gt;
&lt;br /&gt;
=== Firewall: ports à ouvrir ===&lt;br /&gt;
 * Sur le xrootd Manager (DPM head node) : 1094&lt;br /&gt;
 * Sur les xrootd servers (disk servers) : 1095&lt;br /&gt;
 * Si le xrootd manager est aussi disk server : 1095 (sur le manager en plus de 1094)&lt;br /&gt;
&lt;br /&gt;
=== Installation Configuration en utilisant les scripts fournis par ALICE ===&lt;br /&gt;
&lt;br /&gt;
=== SPMA ===&lt;br /&gt;
Editer /etc/spma.conf :&lt;br /&gt;
&lt;br /&gt;
 * userpkgs = yes&lt;br /&gt;
 * userprio = yes&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
===== Non-YAIM configuration =====&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
 * # wget http://project-arda-dev.web.cern.ch/project-arda-dev/xrootd/tarballs/installbox/dpm-config.tgz&lt;br /&gt;
 * # tar zxf dpm-config.tgz&lt;br /&gt;
 * # chmod u+x ./conf.xrootd&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
Il faut commenter l&#039;appel à la fonction requires dans config_DPM_xrootd et définir la&lt;br /&gt;
variable YAIM_LOG dans conf.xrootd, sinon il y a des messages d&#039;erreur au lancement de conf.xrootd .&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
 * # cp config_DPM_xrootd config_DPM_xrootd.orig&lt;br /&gt;
 * # cp conf.xrootd conf.xrootd.orig&lt;br /&gt;
 * # vi config_DPM_xrootd ---&amp;gt; commenter l&#039;appel à requires&lt;br /&gt;
 * # vi conf.xrootd    ---&amp;gt; définir YAIM_LOG&lt;br /&gt;
&lt;br /&gt;
 * # diff config_DPM_xrootd config_DPM_xrootd.orig&lt;br /&gt;
 * 2c2&lt;br /&gt;
 * &amp;lt;   #requires $1 INSTALL_ROOT&lt;br /&gt;
 * ---&lt;br /&gt;
 * &amp;gt;   requires $1 INSTALL_ROOT&lt;br /&gt;
&lt;br /&gt;
 * # diff conf.xrootd conf.xrootd.orig&lt;br /&gt;
 * 4d3&lt;br /&gt;
 * &amp;lt; YAIM_LOG=/tmp/yaim.log&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Alice utilise l&#039;authentification TokenAuthZ. GSI n&#039;est pas encore supportée. Il faut donc éditer le fichier&lt;br /&gt;
/opt/lcg/etc/xrootd/authz.cf  (ce fichier ne sera pas utile avec GSI).&lt;br /&gt;
&lt;br /&gt;
 * # vi /opt/lcg/etc/xrootd/authz.cf :&lt;br /&gt;
 * changer /usr/local/xroot en /opt/lcg et&lt;br /&gt;
 * EXPORT PATH:/ en EXPORT PATH:/dpm/in2p3.fr/home/alice/&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Editer les scripts de lancement pour changer XRDLOCATION=&amp;quot;/usr/local/xroot&amp;quot; en XRDLOCATION=&amp;quot;/opt/lcg&amp;quot;.&lt;br /&gt;
&lt;br /&gt;
Les fichiers à éditer sont : /etc/init.d/dpm-xrd /etc/init.d/dpm-olb /etc/init.d/dpm-manager-xrd /etc/init.d/dpm-manager-olb /etc/init.d/xrdapmon&lt;br /&gt;
&lt;br /&gt;
Les scripts de démarrage regénèrent à chaque lancement le fichier /opt/lcg/etc/xrd.dpm.cf utilisé par les daemons. Ce fichier est &lt;br /&gt;
créé à partir du fichier /etc/xrd.dpm.config (ou /etc/xrd.dpm.config.gsi si avec GSI). C&#039;est donc dans /etc/sysconfig/dpm-xrd &lt;br /&gt;
qu&#039;il faut modifier la config xrootd si besoin est, avant de relancer les daemons.&lt;br /&gt;
&lt;br /&gt;
Modifier /etc/sysconfig/dpm-xrd comme indiqué ci-dessous :&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * # cp /etc/sysconfig/dpm-xrd.example /etc/sysconfig/dpm-xrd&lt;br /&gt;
 * # vi /etc/sysconfig/dpm-xrd&lt;br /&gt;
 * ...&lt;br /&gt;
 * # set the redirector host&lt;br /&gt;
 * MANAGERHOST=&amp;quot;ipnsedpm.in2p3.fr&amp;quot;&lt;br /&gt;
 * export DPM_HOST=$MANAGERHOST&lt;br /&gt;
 * export DPNS_HOST=$MANAGERHOST&lt;br /&gt;
 * ...&lt;br /&gt;
 * #############################################################################&lt;br /&gt;
 * # default authentication is with GSI authentication&lt;br /&gt;
 * #XRDCONFIG=&amp;quot;xrd.dpm.config.gsi&amp;quot;&lt;br /&gt;
 * # if you want GSI authentication disabled set&lt;br /&gt;
 * XRDCONFIG=&amp;quot;xrd.dpm.config&amp;quot;&lt;br /&gt;
 * ...&lt;br /&gt;
 * #XRDOFS=&amp;quot;Ofs&amp;quot;&lt;br /&gt;
 * # the ALICE Ofs plugin&lt;br /&gt;
 * XRDOFS=&amp;quot;TokenAuthzOfs&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * # vi /etc/shift.conf&lt;br /&gt;
 * Ajouter (à faire normalement via Quattor):&lt;br /&gt;
 * DPM PROTOCOLS rfio gsiftp xroot&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * Lancer la config :&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * # ./conf.xrootd&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * # more /tmp/yaim.log&lt;br /&gt;
 * # service dpm restart&lt;br /&gt;
 * # service dpnsdaemon restart (peut-etre pas necessaire)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
===== Les process qui tournent =====&lt;br /&gt;
Sur le manager :&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
 * dpmmgr 2816  1 0 Apr28 ? 00:00:00 /opt/lcg/bin/dpm-manager-olbd -d -b -n manager -c /opt/lcg/etc/xrd.dpm.cf -l /var/log/xroot//olblog&lt;br /&gt;
 * dpmmgr 3004  1 0 Apr28 ? 00:00:00 /opt/lcg/bin/dpm-manager-xrootd-d -b -n manager -c /opt/lcg/etc/xrd.dpm.cf -l /var/log/xroot//xrdlog&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
Sur les servers xrootd :&lt;br /&gt;
&lt;br /&gt;
 * dpmmgr 2726  1 0 Apr28 ? 00:00:00 /opt/lcg/bin/dpm-olbd -d -b -n server -c /opt/lcg/etc/xrd.dpm.cf -l /var/log/xroot//olblog&lt;br /&gt;
 * dpmmgr 2911  1 0 Apr28 ? 00:00:03 /opt/lcg/bin/dpm-xrootd -d -b -n server -c /opt/lcg/etc/xrd.dpm.cf -l /var/log/xroot//xrdlog&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==== Test ====&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * xrdcp /etc/hosts root://ipnsedpm.in2p3.fr://dpm/in2p3.fr/home/alice/test_ok.txt -v&lt;br /&gt;
 * xrdcp root://ipnsedpm.in2p3.fr://dpm/in2p3.fr/home/alice/test_ok.txt /tmp/xrd_copied_file -v&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Utiliser l&#039;option &#039;-d 1&#039; par exemple pour un mode un peu plus verbeux. &lt;br /&gt;
&lt;br /&gt;
Les fichiers peuvent être effacer par rfrm : &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * # rfrm /dpm/in2p3.fr/home/alice/test_ok.txt&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
En principe ça ne devrait pas marcher car il faut être authetifié par TokenAuthZ pour pouvoir faire des delete.&lt;br /&gt;
&lt;br /&gt;
==== Divers ====&lt;br /&gt;
&lt;br /&gt;
===== Pour arrêter / démarrer les services =====&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * service dpm-xrd restart&lt;br /&gt;
 * service dpm-olb restart&lt;br /&gt;
 * service dpm-manager-xrd restart&lt;br /&gt;
 * service dpm-manager-olb restart&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
===== L&#039;authentification =====&lt;br /&gt;
xrootd ne supporte pas encore d&#039;authentification GSI mais l&#039;authentification TokenAuthZ. &lt;br /&gt;
Le fichier d&#039;authentification est le suivant :&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 * # cat /opt/lcg/etc/xrootd/authz.cf&lt;br /&gt;
 * KEY VO:*       PRIVKEY:/opt/lcg/etc/xrootd/pvkey.pem PUBKEY:/opt/lcg/etc/xrootd/pkey.pem&lt;br /&gt;
 * EXPORT PATH:/dpm/in2p3.fr/home/alice/ VO:*     ACCESS:ALLOW CERT:*&lt;br /&gt;
 * RULE PATH:/ AUTHZ:delete| NOAUTHZ:read|write|write-once| VO:* CERT:*&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
La dernière ligne signifie que tout le monde peut lire et écrire via xrootd, mais qu&#039;il faut une authentification via &lt;br /&gt;
TokenAuthZ pour pouvoir supprimer les fichiers.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Installation Configuration en utilisant Quattor ===&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==== installation RPM ====&lt;br /&gt;
RPM disponible:&lt;br /&gt;
http://project-arda-dev.web.cern.ch/project-arda-dev/alice/xrootd-dpm/&lt;br /&gt;
&lt;br /&gt;
Pour installer les bons RPM, il faut cette variable :&lt;br /&gt;
&lt;br /&gt;
 variable SEDPM_XROOTD_SERVER = true;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
pour la liste de RPMs, voir les templates:&lt;br /&gt;
&lt;br /&gt;
 cfg/grid/glite-3.1/glite/se_dpm/rpms/ « arch »/xrootd_*.tpl&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
==== configuration ====&lt;br /&gt;
Actuellement configuration à la main, voir :&lt;br /&gt;
&lt;br /&gt;
http://lcg2.in2p3.fr/wiki/index.php/User_talk:LEROY#Non-YAIM_configuration&lt;br /&gt;
&lt;br /&gt;
+ lien à créer:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 ln -s /opt/lcg/lib/libXrdSec.so /opt/lcg/lib64/libXrdSec.so&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Pour configuration via quattor:&lt;br /&gt;
Modification des templates à revoir (problemes du component):&lt;br /&gt;
&lt;br /&gt;
{{{&lt;br /&gt;
Sending        cfg/clusters/dapnia-glite-3.1/lcg/source/pro_se_dpm_config.tpl&lt;br /&gt;
&lt;br /&gt;
Sending        cfg/clusters/dapnia-glite-3.1/profiles/profile_node11.tpl&lt;br /&gt;
&lt;br /&gt;
Sending        cfg/grid/glite-3.1/components/dpmlfc/schema.tpl&lt;br /&gt;
&lt;br /&gt;
Sending        cfg/grid/glite-3.1/glite/se_dpm/config.tpl&lt;br /&gt;
&lt;br /&gt;
Adding         cfg/grid/glite-3.1/glite/se_dpm/disk/xrootd.tpl&lt;br /&gt;
&lt;br /&gt;
Sending        cfg/grid/glite-3.1/glite/se_dpm/rpms/config.tpl&lt;br /&gt;
&lt;br /&gt;
Adding         cfg/grid/glite-3.1/glite/se_dpm/rpms/i386/xrootd_disk.tpl&lt;br /&gt;
&lt;br /&gt;
Adding         cfg/grid/glite-3.1/glite/se_dpm/rpms/i386/xrootd_head.tpl&lt;br /&gt;
&lt;br /&gt;
Adding         cfg/grid/glite-3.1/glite/se_dpm/rpms/x86_64/xrootd_disk.tpl&lt;br /&gt;
&lt;br /&gt;
Adding         cfg/grid/glite-3.1/glite/se_dpm/rpms/x86_64/xrootd_head.tpl&lt;br /&gt;
&lt;br /&gt;
Adding         cfg/grid/glite-3.1/glite/se_dpm/server/xrootd.tpl&lt;br /&gt;
&lt;br /&gt;
Sending        cfg/grid/glite-3.1/glite/se_dpm/service.tpl&lt;br /&gt;
&lt;br /&gt;
Sending        cfg/grid/glite-3.1/machine-types/se_dpm.tpl&lt;br /&gt;
&lt;br /&gt;
Sending        cfg/grid/glite-3.1/repository/config/glite.tpl&lt;br /&gt;
}}}&lt;br /&gt;
&lt;br /&gt;
== Conclusion ==&lt;br /&gt;
Si on cumule test lecture/écriture et test iperf (avec 1 interface bond0 qui agrège les 8 Ethernet) on arrive à sortir les 230Mb/s et par TB. &lt;br /&gt;
&lt;br /&gt;
Necessite de bien maîtriser le raid logiciel et de le monitorer&lt;br /&gt;
&lt;br /&gt;
Existence des drivers pour quelques versions de Linux&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=T2T3:SiteAdmins&amp;diff=6164</id>
		<title>T2T3:SiteAdmins</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=T2T3:SiteAdmins&amp;diff=6164"/>
		<updated>2011-06-08T15:26:38Z</updated>

		<summary type="html">&lt;p&gt;LEROY: /* Storage Tuning */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&#039;&#039;&#039;Trucs et Astuces des SiteAdmins - SiteAdmins HandBook&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
=== [http://lcg.in2p3.fr/wiki/index.php/EGEE_Baseline EGEE Baseline] and [https://twiki.cern.ch/twiki/bin/view/LCG/WLCGBaselineVersions WLCGBaseline]===&lt;br /&gt;
&lt;br /&gt;
=== [[Infrastructure Stockage|Stockage (infrastructure &amp;amp; configuration)]] ===&lt;br /&gt;
&lt;br /&gt;
=== [http://www.sysadmin.hep.ac.uk/wiki/Main_Page System Management WG wiki] ===&lt;br /&gt;
&lt;br /&gt;
=== GOC Wiki pages ===&lt;br /&gt;
* [http://goc.grid.sinica.edu.tw/gocwiki/FrontPage http://goc.grid.sinica.edu.tw/gocwiki/FrontPage]&lt;br /&gt;
=== Quattor ===&lt;br /&gt;
* [http://quattor.org Site Quattor]&lt;br /&gt;
* [https://trac.lal.in2p3.fr/LCGQWG LCG Quattor Working Group (QWG)]&lt;br /&gt;
* [https://trac.lal.in2p3.fr/Quattor Utilisation de Quattor dans GRIF]&lt;br /&gt;
* [http://indico.lal.in2p3.fr/conferenceDisplay.py?confId=590 Formation Quattor Avancé, 18-19 décembre 2008 au LAL, Orsay]&lt;br /&gt;
&lt;br /&gt;
=== Yaim ===&lt;br /&gt;
* [https://twiki.cern.ch/twiki/bin/view/EGEE/YAIM Wiki YAIM]&lt;br /&gt;
=== Torque/MAUI ===&lt;br /&gt;
*[http://indico.in2p3.fr/conferenceDisplay.py?confId=375   Atelier Torque/Maui au CC, Octobre 2007]&lt;br /&gt;
*[http://lcg.in2p3.fr/wiki/images/TorqueMauiTutorial-Traylen-WLCG-EGEE-OPS-January2007.ppt   Talk S.Treylen 01/2007]&lt;br /&gt;
*[http://grid-deployment.web.cern.ch/grid-deployment/documentation/Maui-Cookbook.pdf LCG Maui Cookbook 06/2005]&lt;br /&gt;
=== CREAM CE ===&lt;br /&gt;
*[https://twiki.cern.ch/twiki/bin/view/EGEE/GLiteCREAMCE  EGEE Service Ref. card / GliteCREAMCE wiki]&lt;br /&gt;
*[https://twiki.cern.ch/twiki/bin/view/EGEE/ParameterPassing  WMS - CREAM - LRMS parameter passing]&lt;br /&gt;
*[http://indico.cern.ch/getFile.py/access?sessionId=6&amp;amp;resId=0&amp;amp;materialId=0&amp;amp;confId=84636 D.H van Dock&#039;s presentation@GDB 03-2010]&lt;br /&gt;
*[http://grid.pd.infn.it/cream/field.php?n=Main.ForwardOfRequirementsToTheBatchSystem Forward Of Requirements To The BatchSystem (INFN wiki)]&lt;br /&gt;
*[http://grid.pd.infn.it/cream/ INFN wiki]&lt;br /&gt;
&lt;br /&gt;
=== SE-DPM ===&lt;br /&gt;
*[[SE-DPM-certificat|Remplacement du certificat serveur]]&lt;br /&gt;
* [http://www.sysadmin.hep.ac.uk/wiki/DatabaseBackup Backup Base de Données]&lt;br /&gt;
* DPM user forum:  dpm-users-forum AT cern.ch &lt;br /&gt;
* [http://www.gridpp.ac.uk/wiki/Disk_Pool_Manager Le wiki DPM de GridPP] est une mine !&lt;br /&gt;
&lt;br /&gt;
=== [[CPU-Benches|CPU benches]] ===&lt;br /&gt;
&lt;br /&gt;
=== [[TCP-Tuning|TCP Tuning]] ===&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Aspects techniques spécifiques par expérience ===&lt;br /&gt;
*[[AliceTechnical|Alice]]&lt;br /&gt;
 &lt;br /&gt;
=== User wiki ===&lt;br /&gt;
* [http://lcg.in2p3.fr/wiki/index.php/User_talk:LEROY Wiki C.Leroy]&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=Storage-Benches&amp;diff=6163</id>
		<title>Storage-Benches</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=Storage-Benches&amp;diff=6163"/>
		<updated>2011-06-08T15:26:22Z</updated>

		<summary type="html">&lt;p&gt;LEROY: /* DELL Systems */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Storage benchmarking and tuning depends upon several parameters like file systems, kernel parameters, RAID configuration, network parameters, etc. This page aims to provide benchmarking tools and procedures for LCG Storage Element, as well as some tuning hints for particular hardware solutions.&lt;br /&gt;
 &lt;br /&gt;
=  Benchmarking =&lt;br /&gt;
&lt;br /&gt;
= Tuning =&lt;br /&gt;
&lt;br /&gt;
== DELL Systems ==&lt;br /&gt;
=== R510 + PowerVault MD1200 ===&lt;br /&gt;
*RAID avec stripe size de 1m et règle « lecture anticipée adaptative »&lt;br /&gt;
&lt;br /&gt;
*FS xfs avec alignement des partitions et montage avec l&#039;option &amp;quot;noatime&amp;quot;&lt;br /&gt;
&lt;br /&gt;
Exemple:&lt;br /&gt;
 #parted  /dev/sdb mklabel gpt&lt;br /&gt;
 #parted /dev/sdb mkpart primary xfs 1m 50%&lt;br /&gt;
 #parted /dev/sdb mkpart primary xfs 50% 100%&lt;br /&gt;
 #######&lt;br /&gt;
 mkfs.xfs -d su=1m,sw=10 /dev/sdb1 -L R510_sdb1&lt;br /&gt;
 mkfs.xfs -d su=1m,sw=10 /dev/sdb2 -L R510_sdb2&lt;br /&gt;
 #######&lt;br /&gt;
 # cat /etc/fstab | grep noatime&lt;br /&gt;
 LABEL=R510_sdb1          /fs1                    xfs    defaults,noatime        0 0&lt;br /&gt;
 LABEL=R510_sdb2          /fs2                    xfs    defaults,noatime        0 0&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
*kernel: &lt;br /&gt;
**Utilisation du Read ahead system&lt;br /&gt;
**modif du scheduleur par défaut et du nombre de requete en queue&lt;br /&gt;
&lt;br /&gt;
 # tail -6 /etc/rc.d/rc.local&lt;br /&gt;
 blockdev --setra 16384 /dev/sdb&lt;br /&gt;
 blockdev --setra 16384 /dev/sdc&lt;br /&gt;
 echo 512 &amp;gt; /sys/block/sdb/queue/nr_requests&lt;br /&gt;
 echo 512 &amp;gt; /sys/block/sdc/queue/nr_requests&lt;br /&gt;
 echo deadline &amp;gt; /sys/block/sdb/queue/scheduler&lt;br /&gt;
 echo deadline &amp;gt; /sys/block/sdc/queue/scheduler&lt;br /&gt;
&lt;br /&gt;
== HP Systems ==&lt;br /&gt;
&lt;br /&gt;
=== MDS 600 based system ===&lt;br /&gt;
&lt;br /&gt;
In order to enhance the performance of the MDS 600 based systems, the following tunings have been applied:&lt;br /&gt;
* Upgrading the hard disk firmware (HPD3). All hard disks should have the same firmware version.&lt;br /&gt;
* Changing the power management profile (max cpu power).&lt;br /&gt;
* Using the following system parameters for each disk:&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
  echo &amp;quot;cfq&amp;quot; &amp;gt; /sys/block/cciss\!${disk}/queue/scheduler&lt;br /&gt;
  echo 256 &amp;gt; /sys/block/cciss\!${disk}/queue/nr_requests&lt;br /&gt;
  echo 4096 &amp;gt;  /sys/block/cciss\!${disk}/queue/read_ahead_kb&lt;br /&gt;
&amp;lt;/pre&amp;gt; &lt;br /&gt;
* Using XFS filesystem aligned with the RAID strip&lt;br /&gt;
* Using RAID units composed of 5 disks wisely selected on different columns.&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=T2T3:SiteAdmins&amp;diff=6162</id>
		<title>T2T3:SiteAdmins</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=T2T3:SiteAdmins&amp;diff=6162"/>
		<updated>2011-06-08T09:17:05Z</updated>

		<summary type="html">&lt;p&gt;LEROY: /* Storage Tuning */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&#039;&#039;&#039;Trucs et Astuces des SiteAdmins - SiteAdmins HandBook&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
=== [http://lcg.in2p3.fr/wiki/index.php/EGEE_Baseline EGEE Baseline] and [https://twiki.cern.ch/twiki/bin/view/LCG/WLCGBaselineVersions WLCGBaseline]===&lt;br /&gt;
&lt;br /&gt;
=== [[Infrastructure Stockage|Stockage (infrastructure &amp;amp; configuration)]] ===&lt;br /&gt;
&lt;br /&gt;
=== [http://www.sysadmin.hep.ac.uk/wiki/Main_Page System Management WG wiki] ===&lt;br /&gt;
&lt;br /&gt;
=== GOC Wiki pages ===&lt;br /&gt;
* [http://goc.grid.sinica.edu.tw/gocwiki/FrontPage http://goc.grid.sinica.edu.tw/gocwiki/FrontPage]&lt;br /&gt;
=== Quattor ===&lt;br /&gt;
* [http://quattor.org Site Quattor]&lt;br /&gt;
* [https://trac.lal.in2p3.fr/LCGQWG LCG Quattor Working Group (QWG)]&lt;br /&gt;
* [https://trac.lal.in2p3.fr/Quattor Utilisation de Quattor dans GRIF]&lt;br /&gt;
* [http://indico.lal.in2p3.fr/conferenceDisplay.py?confId=590 Formation Quattor Avancé, 18-19 décembre 2008 au LAL, Orsay]&lt;br /&gt;
&lt;br /&gt;
=== Yaim ===&lt;br /&gt;
* [https://twiki.cern.ch/twiki/bin/view/EGEE/YAIM Wiki YAIM]&lt;br /&gt;
=== Torque/MAUI ===&lt;br /&gt;
*[http://indico.in2p3.fr/conferenceDisplay.py?confId=375   Atelier Torque/Maui au CC, Octobre 2007]&lt;br /&gt;
*[http://lcg.in2p3.fr/wiki/images/TorqueMauiTutorial-Traylen-WLCG-EGEE-OPS-January2007.ppt   Talk S.Treylen 01/2007]&lt;br /&gt;
*[http://grid-deployment.web.cern.ch/grid-deployment/documentation/Maui-Cookbook.pdf LCG Maui Cookbook 06/2005]&lt;br /&gt;
=== CREAM CE ===&lt;br /&gt;
*[https://twiki.cern.ch/twiki/bin/view/EGEE/GLiteCREAMCE  EGEE Service Ref. card / GliteCREAMCE wiki]&lt;br /&gt;
*[https://twiki.cern.ch/twiki/bin/view/EGEE/ParameterPassing  WMS - CREAM - LRMS parameter passing]&lt;br /&gt;
*[http://indico.cern.ch/getFile.py/access?sessionId=6&amp;amp;resId=0&amp;amp;materialId=0&amp;amp;confId=84636 D.H van Dock&#039;s presentation@GDB 03-2010]&lt;br /&gt;
*[http://grid.pd.infn.it/cream/field.php?n=Main.ForwardOfRequirementsToTheBatchSystem Forward Of Requirements To The BatchSystem (INFN wiki)]&lt;br /&gt;
*[http://grid.pd.infn.it/cream/ INFN wiki]&lt;br /&gt;
&lt;br /&gt;
=== SE-DPM ===&lt;br /&gt;
*[[SE-DPM-certificat|Remplacement du certificat serveur]]&lt;br /&gt;
* [http://www.sysadmin.hep.ac.uk/wiki/DatabaseBackup Backup Base de Données]&lt;br /&gt;
* DPM user forum:  dpm-users-forum AT cern.ch &lt;br /&gt;
* [http://www.gridpp.ac.uk/wiki/Disk_Pool_Manager Le wiki DPM de GridPP] est une mine !&lt;br /&gt;
&lt;br /&gt;
=== [[CPU-Benches|CPU benches]] ===&lt;br /&gt;
&lt;br /&gt;
=== [[TCP-Tuning|TCP Tuning]] ===&lt;br /&gt;
&lt;br /&gt;
=== [[Storage Tuning]] ===&lt;br /&gt;
&lt;br /&gt;
*RAID avec stripe size de 1m et règle « lecture anticipée adaptative »&lt;br /&gt;
&lt;br /&gt;
*FS xfs avec alignement des partitions et montage avec l&#039;option &amp;quot;noatime&amp;quot;&lt;br /&gt;
&lt;br /&gt;
Exemple:&lt;br /&gt;
 #parted  /dev/sdb mklabel gpt&lt;br /&gt;
 #parted /dev/sdb mkpart primary xfs 1m 50%&lt;br /&gt;
 #parted /dev/sdb mkpart primary xfs 50% 100%&lt;br /&gt;
 #######&lt;br /&gt;
 mkfs.xfs -d su=1m,sw=10 /dev/sdb1 -L R510_sdb1&lt;br /&gt;
 mkfs.xfs -d su=1m,sw=10 /dev/sdb2 -L R510_sdb2&lt;br /&gt;
 #######&lt;br /&gt;
 # cat /etc/fstab | grep noatime&lt;br /&gt;
 LABEL=R510_sdb1          /fs1                    xfs    defaults,noatime        0 0&lt;br /&gt;
 LABEL=R510_sdb2          /fs2                    xfs    defaults,noatime        0 0&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
*kernel: &lt;br /&gt;
**Utilisation du Read ahead system&lt;br /&gt;
**modif du scheduleur par défaut et du nombre de requete en queue&lt;br /&gt;
&lt;br /&gt;
 # tail -6 /etc/rc.d/rc.local&lt;br /&gt;
 blockdev --setra 16384 /dev/sdb&lt;br /&gt;
 blockdev --setra 16384 /dev/sdc&lt;br /&gt;
 echo 512 &amp;gt; /sys/block/sdb/queue/nr_requests&lt;br /&gt;
 echo 512 &amp;gt; /sys/block/sdc/queue/nr_requests&lt;br /&gt;
 echo deadline &amp;gt; /sys/block/sdb/queue/scheduler&lt;br /&gt;
 echo deadline &amp;gt; /sys/block/sdc/queue/scheduler&lt;br /&gt;
&lt;br /&gt;
=== Aspects techniques spécifiques par expérience ===&lt;br /&gt;
*[[AliceTechnical|Alice]]&lt;br /&gt;
 &lt;br /&gt;
=== User wiki ===&lt;br /&gt;
* [http://lcg.in2p3.fr/wiki/index.php/User_talk:LEROY Wiki C.Leroy]&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=T2T3:SiteAdmins&amp;diff=6161</id>
		<title>T2T3:SiteAdmins</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=T2T3:SiteAdmins&amp;diff=6161"/>
		<updated>2011-06-08T09:16:01Z</updated>

		<summary type="html">&lt;p&gt;LEROY: /* Storage Tuning */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&#039;&#039;&#039;Trucs et Astuces des SiteAdmins - SiteAdmins HandBook&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
=== [http://lcg.in2p3.fr/wiki/index.php/EGEE_Baseline EGEE Baseline] and [https://twiki.cern.ch/twiki/bin/view/LCG/WLCGBaselineVersions WLCGBaseline]===&lt;br /&gt;
&lt;br /&gt;
=== [[Infrastructure Stockage|Stockage (infrastructure &amp;amp; configuration)]] ===&lt;br /&gt;
&lt;br /&gt;
=== [http://www.sysadmin.hep.ac.uk/wiki/Main_Page System Management WG wiki] ===&lt;br /&gt;
&lt;br /&gt;
=== GOC Wiki pages ===&lt;br /&gt;
* [http://goc.grid.sinica.edu.tw/gocwiki/FrontPage http://goc.grid.sinica.edu.tw/gocwiki/FrontPage]&lt;br /&gt;
=== Quattor ===&lt;br /&gt;
* [http://quattor.org Site Quattor]&lt;br /&gt;
* [https://trac.lal.in2p3.fr/LCGQWG LCG Quattor Working Group (QWG)]&lt;br /&gt;
* [https://trac.lal.in2p3.fr/Quattor Utilisation de Quattor dans GRIF]&lt;br /&gt;
* [http://indico.lal.in2p3.fr/conferenceDisplay.py?confId=590 Formation Quattor Avancé, 18-19 décembre 2008 au LAL, Orsay]&lt;br /&gt;
&lt;br /&gt;
=== Yaim ===&lt;br /&gt;
* [https://twiki.cern.ch/twiki/bin/view/EGEE/YAIM Wiki YAIM]&lt;br /&gt;
=== Torque/MAUI ===&lt;br /&gt;
*[http://indico.in2p3.fr/conferenceDisplay.py?confId=375   Atelier Torque/Maui au CC, Octobre 2007]&lt;br /&gt;
*[http://lcg.in2p3.fr/wiki/images/TorqueMauiTutorial-Traylen-WLCG-EGEE-OPS-January2007.ppt   Talk S.Treylen 01/2007]&lt;br /&gt;
*[http://grid-deployment.web.cern.ch/grid-deployment/documentation/Maui-Cookbook.pdf LCG Maui Cookbook 06/2005]&lt;br /&gt;
=== CREAM CE ===&lt;br /&gt;
*[https://twiki.cern.ch/twiki/bin/view/EGEE/GLiteCREAMCE  EGEE Service Ref. card / GliteCREAMCE wiki]&lt;br /&gt;
*[https://twiki.cern.ch/twiki/bin/view/EGEE/ParameterPassing  WMS - CREAM - LRMS parameter passing]&lt;br /&gt;
*[http://indico.cern.ch/getFile.py/access?sessionId=6&amp;amp;resId=0&amp;amp;materialId=0&amp;amp;confId=84636 D.H van Dock&#039;s presentation@GDB 03-2010]&lt;br /&gt;
*[http://grid.pd.infn.it/cream/field.php?n=Main.ForwardOfRequirementsToTheBatchSystem Forward Of Requirements To The BatchSystem (INFN wiki)]&lt;br /&gt;
*[http://grid.pd.infn.it/cream/ INFN wiki]&lt;br /&gt;
&lt;br /&gt;
=== SE-DPM ===&lt;br /&gt;
*[[SE-DPM-certificat|Remplacement du certificat serveur]]&lt;br /&gt;
* [http://www.sysadmin.hep.ac.uk/wiki/DatabaseBackup Backup Base de Données]&lt;br /&gt;
* DPM user forum:  dpm-users-forum AT cern.ch &lt;br /&gt;
* [http://www.gridpp.ac.uk/wiki/Disk_Pool_Manager Le wiki DPM de GridPP] est une mine !&lt;br /&gt;
&lt;br /&gt;
=== [[CPU-Benches|CPU benches]] ===&lt;br /&gt;
&lt;br /&gt;
=== [[TCP-Tuning|TCP Tuning]] ===&lt;br /&gt;
&lt;br /&gt;
=== [[Storage Tuning]] ===&lt;br /&gt;
&lt;br /&gt;
*RAID avec stripe size de 1m et règle « lecture anticipée adaptative »&lt;br /&gt;
&lt;br /&gt;
*FS xfs avec alignement des partitions et montage avec l&#039;option &amp;quot;noatime&amp;quot;&lt;br /&gt;
&lt;br /&gt;
Exemple:&lt;br /&gt;
 #parted  /dev/sdb mklabel gpt&lt;br /&gt;
 #parted /dev/sdb mkpart primary xfs 1m 50%&lt;br /&gt;
 #parted /dev/sdb mkpart primary xfs 50% 100%&lt;br /&gt;
 #######&lt;br /&gt;
 mkfs.xfs -d su=1m,sw=10 /dev/sdb1 -L R510_sdb1&lt;br /&gt;
 mkfs.xfs -d su=1m,sw=10 /dev/sdb2 -L R510_sdb2&lt;br /&gt;
 #######&lt;br /&gt;
 # cat /etc/fstab | grep noatime&lt;br /&gt;
 LABEL=R510_sdb1          /fs1                    xfs    defaults,noatime        0 0&lt;br /&gt;
 LABEL=R510_sdb2          /fs2                    xfs    defaults,noatime        0 0&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
*kernel: &lt;br /&gt;
 **Utilisation du Read ahead system&lt;br /&gt;
 **modif du scheduleur par défaut et du nombre de requete en queue&lt;br /&gt;
&lt;br /&gt;
 # tail -6 /etc/rc.d/rc.local&lt;br /&gt;
 blockdev --setra 16384 /dev/sdb&lt;br /&gt;
 blockdev --setra 16384 /dev/sdc&lt;br /&gt;
 echo 512 &amp;gt; /sys/block/sdb/queue/nr_requests&lt;br /&gt;
 echo 512 &amp;gt; /sys/block/sdc/queue/nr_requests&lt;br /&gt;
 echo deadline &amp;gt; /sys/block/sdb/queue/scheduler&lt;br /&gt;
 echo deadline &amp;gt; /sys/block/sdc/queue/scheduler&lt;br /&gt;
&lt;br /&gt;
=== Aspects techniques spécifiques par expérience ===&lt;br /&gt;
*[[AliceTechnical|Alice]]&lt;br /&gt;
 &lt;br /&gt;
=== User wiki ===&lt;br /&gt;
* [http://lcg.in2p3.fr/wiki/index.php/User_talk:LEROY Wiki C.Leroy]&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=T2T3:SiteAdmins&amp;diff=6160</id>
		<title>T2T3:SiteAdmins</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=T2T3:SiteAdmins&amp;diff=6160"/>
		<updated>2011-06-08T09:15:23Z</updated>

		<summary type="html">&lt;p&gt;LEROY: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&#039;&#039;&#039;Trucs et Astuces des SiteAdmins - SiteAdmins HandBook&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
=== [http://lcg.in2p3.fr/wiki/index.php/EGEE_Baseline EGEE Baseline] and [https://twiki.cern.ch/twiki/bin/view/LCG/WLCGBaselineVersions WLCGBaseline]===&lt;br /&gt;
&lt;br /&gt;
=== [[Infrastructure Stockage|Stockage (infrastructure &amp;amp; configuration)]] ===&lt;br /&gt;
&lt;br /&gt;
=== [http://www.sysadmin.hep.ac.uk/wiki/Main_Page System Management WG wiki] ===&lt;br /&gt;
&lt;br /&gt;
=== GOC Wiki pages ===&lt;br /&gt;
* [http://goc.grid.sinica.edu.tw/gocwiki/FrontPage http://goc.grid.sinica.edu.tw/gocwiki/FrontPage]&lt;br /&gt;
=== Quattor ===&lt;br /&gt;
* [http://quattor.org Site Quattor]&lt;br /&gt;
* [https://trac.lal.in2p3.fr/LCGQWG LCG Quattor Working Group (QWG)]&lt;br /&gt;
* [https://trac.lal.in2p3.fr/Quattor Utilisation de Quattor dans GRIF]&lt;br /&gt;
* [http://indico.lal.in2p3.fr/conferenceDisplay.py?confId=590 Formation Quattor Avancé, 18-19 décembre 2008 au LAL, Orsay]&lt;br /&gt;
&lt;br /&gt;
=== Yaim ===&lt;br /&gt;
* [https://twiki.cern.ch/twiki/bin/view/EGEE/YAIM Wiki YAIM]&lt;br /&gt;
=== Torque/MAUI ===&lt;br /&gt;
*[http://indico.in2p3.fr/conferenceDisplay.py?confId=375   Atelier Torque/Maui au CC, Octobre 2007]&lt;br /&gt;
*[http://lcg.in2p3.fr/wiki/images/TorqueMauiTutorial-Traylen-WLCG-EGEE-OPS-January2007.ppt   Talk S.Treylen 01/2007]&lt;br /&gt;
*[http://grid-deployment.web.cern.ch/grid-deployment/documentation/Maui-Cookbook.pdf LCG Maui Cookbook 06/2005]&lt;br /&gt;
=== CREAM CE ===&lt;br /&gt;
*[https://twiki.cern.ch/twiki/bin/view/EGEE/GLiteCREAMCE  EGEE Service Ref. card / GliteCREAMCE wiki]&lt;br /&gt;
*[https://twiki.cern.ch/twiki/bin/view/EGEE/ParameterPassing  WMS - CREAM - LRMS parameter passing]&lt;br /&gt;
*[http://indico.cern.ch/getFile.py/access?sessionId=6&amp;amp;resId=0&amp;amp;materialId=0&amp;amp;confId=84636 D.H van Dock&#039;s presentation@GDB 03-2010]&lt;br /&gt;
*[http://grid.pd.infn.it/cream/field.php?n=Main.ForwardOfRequirementsToTheBatchSystem Forward Of Requirements To The BatchSystem (INFN wiki)]&lt;br /&gt;
*[http://grid.pd.infn.it/cream/ INFN wiki]&lt;br /&gt;
&lt;br /&gt;
=== SE-DPM ===&lt;br /&gt;
*[[SE-DPM-certificat|Remplacement du certificat serveur]]&lt;br /&gt;
* [http://www.sysadmin.hep.ac.uk/wiki/DatabaseBackup Backup Base de Données]&lt;br /&gt;
* DPM user forum:  dpm-users-forum AT cern.ch &lt;br /&gt;
* [http://www.gridpp.ac.uk/wiki/Disk_Pool_Manager Le wiki DPM de GridPP] est une mine !&lt;br /&gt;
&lt;br /&gt;
=== [[CPU-Benches|CPU benches]] ===&lt;br /&gt;
&lt;br /&gt;
=== [[TCP-Tuning|TCP Tuning]] ===&lt;br /&gt;
&lt;br /&gt;
=== [[Storage Tuning]] ===&lt;br /&gt;
&lt;br /&gt;
*RAID avec stripe size de 1m et règle « lecture anticipée adaptative »&lt;br /&gt;
&lt;br /&gt;
*FS xfs avec alignement des partitions et montage avec l&#039;option &amp;quot;noatime&amp;quot;&lt;br /&gt;
&lt;br /&gt;
Exemple:&lt;br /&gt;
 #parted  /dev/sdb mklabel gpt&lt;br /&gt;
 #parted /dev/sdb mkpart primary xfs 1m 50%&lt;br /&gt;
 #parted /dev/sdb mkpart primary xfs 50% 100%&lt;br /&gt;
 #######&lt;br /&gt;
 mkfs.xfs -d su=1m,sw=10 /dev/sdb1 -L R510_sdb1&lt;br /&gt;
 mkfs.xfs -d su=1m,sw=10 /dev/sdb2 -L R510_sdb2&lt;br /&gt;
 #######&lt;br /&gt;
 # cat /etc/fstab | grep noatime&lt;br /&gt;
 LABEL=R510_sdb1          /fs1                    xfs    defaults,noatime        0 0&lt;br /&gt;
 LABEL=R510_sdb2          /fs2                    xfs    defaults,noatime        0 0&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
*kernel: &lt;br /&gt;
 ** Utilisation du Read ahead system&lt;br /&gt;
 ** modif du scheduleur par défaut et du nombre de requete en queue&lt;br /&gt;
&lt;br /&gt;
 # tail -6 /etc/rc.d/rc.local&lt;br /&gt;
 blockdev --setra 16384 /dev/sdb&lt;br /&gt;
 blockdev --setra 16384 /dev/sdc&lt;br /&gt;
 echo 512 &amp;gt; /sys/block/sdb/queue/nr_requests&lt;br /&gt;
 echo 512 &amp;gt; /sys/block/sdc/queue/nr_requests&lt;br /&gt;
 echo deadline &amp;gt; /sys/block/sdb/queue/scheduler&lt;br /&gt;
 echo deadline &amp;gt; /sys/block/sdc/queue/scheduler&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Aspects techniques spécifiques par expérience ===&lt;br /&gt;
*[[AliceTechnical|Alice]]&lt;br /&gt;
 &lt;br /&gt;
=== User wiki ===&lt;br /&gt;
* [http://lcg.in2p3.fr/wiki/index.php/User_talk:LEROY Wiki C.Leroy]&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=ARCHIVES/LCG-FR_/_SA1-FR_Monitoring_WG&amp;diff=5789</id>
		<title>ARCHIVES/LCG-FR / SA1-FR Monitoring WG</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=ARCHIVES/LCG-FR_/_SA1-FR_Monitoring_WG&amp;diff=5789"/>
		<updated>2010-04-12T12:22:44Z</updated>

		<summary type="html">&lt;p&gt;LEROY: /* Infrastructure de monitoring */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;== Contacts (Mailing list) ==&lt;br /&gt;
&amp;lt;b&amp;gt;LCG-SA1FR-MONITORING-L@IN2P3.FR mailing list&amp;lt;/b&amp;gt; : &lt;br /&gt;
List managers : Christine Leroy (Irfu/CEA)&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
les membres du groupe:&lt;br /&gt;
http://lcg.in2p3.fr/wiki/images/MembresOnly_v2.doc&lt;br /&gt;
&lt;br /&gt;
== Mandat du Groupe ==&lt;br /&gt;
&lt;br /&gt;
Document consultable:&lt;br /&gt;
https://edms.in2p3.fr/file/I-013168/2/LCG-France-SA1-FR_WGMonitoring.pdf&lt;br /&gt;
&lt;br /&gt;
Le groupe de travail se chargera dans un délai de 6 mois : &lt;br /&gt;
&lt;br /&gt;
* collecter les besoins  des responsables des sites et de services de la région,&lt;br /&gt;
&lt;br /&gt;
* recenser les pratiques des sites et les outils de monitoring utilisés, &lt;br /&gt;
&lt;br /&gt;
* représenter et défendre les intérêts de la région dans les différents groupes de travail existants au sein de WLCG-EGEE sur un sujet connexe (En cours de construction un Groupe EGEE: [https://edms.cern.ch/document/901705 OAT])&lt;br /&gt;
&lt;br /&gt;
* identifier les standards qui doivent être suivis ainsi que les outils pertinents à tous les niveaux (services, site et région), proposer aux responsables des sites, des services grid et de l’opération régionale de la grille EGEE un ensemble d&#039;outils répondant à leurs besoins,&lt;br /&gt;
&lt;br /&gt;
* proposer, si besoin, des améliorations sur les outils et procédures d’alertes au niveau des sites, au niveau de la région&lt;br /&gt;
&lt;br /&gt;
* établir, s’il y a lieu, un plan pour la poursuite de ses travaux au-delà de la période initiale des 6 premiers mois.&lt;br /&gt;
 &lt;br /&gt;
Toutes les propositions et recommandations devront a priori être cohérentes avec les orientations des projets EGEE et WLCG. &lt;br /&gt;
&lt;br /&gt;
L&#039;organisation et le mode de fonctionnement du groupe seront définis par le responsable du groupe et les membres eux-mêmes.&lt;br /&gt;
&lt;br /&gt;
== Réunions, Journées...==&lt;br /&gt;
* [http://indico.in2p3.fr/conferenceDisplay.py?confId=1403 Nagios tutorial, 22-23 January 09, CC-IN2P3, Lyon]&lt;br /&gt;
*[http://indico.in2p3.fr/conferenceDisplay.py?confId=760 Journée Monitoring Grille du 10 Avril 2008]&lt;br /&gt;
*[http://indico.cern.ch/sessionDisplay.py?sessionId=3&amp;amp;slotId=0&amp;amp;confId=6552#2008-04-24 Monitoring Tutorial held at WLCG Collaboration Workshop, CERN April 2008]&lt;br /&gt;
*[http://indico.cern.ch/conferenceDisplay.py?confId=32307 Operations Automation Team kickoff 06 May 2008]&lt;br /&gt;
*[http://indico.cern.ch/conferenceDisplay.py?confId=32306 Operations Automation Team kickoff 07 May 2008]&lt;br /&gt;
*[http://indico.cern.ch/conferenceDisplay.py?confId=35322 OAT: Describe new structure of current operational model section + Review architecture sections 05 June 2008]&lt;br /&gt;
* [http://indico.in2p3.fr/conferenceDisplay.py?confId=1000 LCG-tech-fr Sa1-fr teleconf: 1) résumé document OAT &amp;amp; 2)bilan questionnaire]&lt;br /&gt;
* [http://indico.in2p3.fr/conferenceDisplay.py?confId=927 comité de direction LCG France] /  [http://lcg.in2p3.fr/wiki/images/20080707_monitoringATCoDirLCGfr.ppt présentation]&lt;br /&gt;
* [http://indico.in2p3.fr/conferenceDisplay.py?confId=1249 LCG-tech-fr Sa1-fr teleconf: 1) Presentation ActiveMQ &amp;amp; 2)Resume reunion OAT 3)prochaines actions]&lt;br /&gt;
* [http://indico.in2p3.fr/conferenceDisplay.py?confId=1557 LCG-tech-fr Sa1-fr teleconf: 1) Presentation Cacti &amp;amp; 2)Resume reunion OAT 3)point tutorial Nagios]&lt;br /&gt;
* [http://indico.in2p3.fr/conferenceDisplay.py?confId=875 LCG T2-T3 Face to Face meeting 27/11/2008]&lt;br /&gt;
* [http://indico.in2p3.fr/conferenceDisplay.py?confId=1403 tutorial Nagios les 22 et 23 janvier]&lt;br /&gt;
* [http://indico.in2p3.fr/conferenceDisplay.py?confId=1779 LCG-tech-fr Sa1-fr teleconf; 17 Mars 2009]&lt;br /&gt;
* [http://indico.in2p3.fr/conferenceDisplay.py?confId=1986 LCG-tech-fr Sa1-fr teleconf; 25 Mai 2009]&lt;br /&gt;
* [http://indico.in2p3.fr/conferenceDisplay.py?confId=2221 LCG-tech-fr Sa1-fr teleconf; 18 Septembre 2009]&lt;br /&gt;
* [http://indico.in2p3.fr/conferenceDisplay.py?confId=2936 Nagios Regional; 12 Mars 2010]&lt;br /&gt;
&lt;br /&gt;
== Infrastructure de monitoring ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== l’infrastructure d’échange de messages pour le multi-level monitoring === &lt;br /&gt;
&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/LCG/MessagingSystemforGrid&lt;br /&gt;
&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/EGEE/MsgServerDetails&lt;br /&gt;
&lt;br /&gt;
=== Nagios et GridMonitoring ===&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Repository du Projet:&lt;br /&gt;
&lt;br /&gt;
Fabric : http://www.sysadmin.hep.ac.uk/rpms/egee-SA1/&lt;br /&gt;
&lt;br /&gt;
Grid_services: http://www.sysadmin.hep.ac.uk/rpms/egee-SA1/sl4&lt;br /&gt;
&amp;amp; external: http://linuxsoft.cern.ch/dag/redhat/el4/&lt;br /&gt;
&lt;br /&gt;
Recuperer les resultats des Tests SAM: http://www.gridpp.ac.uk/wiki/Nagios_sam-query_Plugin&lt;br /&gt;
&lt;br /&gt;
Manuel et tutorial:&lt;br /&gt;
&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/LCG/GridMonitoringNcg&lt;br /&gt;
&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/EGEE/GridMonitoringNcgYaimTutorial&lt;br /&gt;
&lt;br /&gt;
Messaging system:&lt;br /&gt;
&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/LCG/MessagingSystemforGrid&lt;br /&gt;
&lt;br /&gt;
== Information utile pour le nagios regional ==&lt;br /&gt;
&lt;br /&gt;
https://francegrid.in2p3.fr/index.php?title=MonitoringRegional&lt;br /&gt;
&lt;br /&gt;
== Information Utile pour les sites  ==&lt;br /&gt;
&lt;br /&gt;
=== Depot SVN et forge  ===&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==== la forge ====&lt;br /&gt;
&lt;br /&gt;
La forge utilisé est celle du CC: https://forge.in2p3.fr/ &lt;br /&gt;
&lt;br /&gt;
1)Il faut &#039;&#039;&#039;s&#039;enregistrer&#039;&#039;&#039; (en haut, a droite) sur https://forge.in2p3.fr/:&lt;br /&gt;
&lt;br /&gt;
https://forge.in2p3.fr/account/register&lt;br /&gt;
le nom du projet est: &#039;&#039;&#039;mon-grid-fr&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
2) Une fois enregistré pour accéder à notre projet, il faut toujours se connecter via &amp;quot;connexion&amp;quot; en haut a droite.&lt;br /&gt;
Ensuite dans la rubrique &amp;quot;Derniers projets&amp;quot; cliquer sur notre projet: &#039;&#039;&#039;mon-grid-fr&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
==== svn ====&lt;br /&gt;
&lt;br /&gt;
pour accéder a svn, les utilisateurs (hors personnel du Centre de Calcul) doivent fournir chacun une clef publique SSH à Loic Tortay [tortayatcc.in2p3.fr] &lt;br /&gt;
&lt;br /&gt;
L&#039;URL SVN générique est: &lt;br /&gt;
&lt;br /&gt;
 svn+ssh://svn.in2p3.fr/mon-grid-fr&lt;br /&gt;
 ou &lt;br /&gt;
 svn+ssh://user@svn.in2p3.fr/mon-grid-fr&lt;br /&gt;
&lt;br /&gt;
(en remplaçant &amp;quot;user&amp;quot; par le nom de compte réel, ces noms de comptes seront communiqués lorsque les clefs SSH seront transmises).&lt;br /&gt;
&lt;br /&gt;
La configuration SSH recommandée se trouve à l&#039;URL suivante : &lt;br /&gt;
&amp;quot;https://cvs.in2p3.fr/doc-fr.htmlhttps://cvs.in2p3.fr/doc-fr.html#access_ssh_config&amp;quot;.&lt;br /&gt;
&lt;br /&gt;
Il y a aussi une &amp;quot;variable d&#039;environnement&amp;quot; à définir pour SVN comme indiqué là:&lt;br /&gt;
&amp;quot;https://cvs.in2p3.fr/doc-fr.html#acces_svn_inter&amp;quot;.&lt;br /&gt;
&lt;br /&gt;
A la fin de &amp;quot;https://cvs.in2p3.fr/doc-fr.html#doc&amp;quot; il y a un lien vers le &amp;quot;SVN Book&amp;quot; qui est un guide détaillé d&#039;utilisation de SVN gratuit (et &amp;quot;libre&amp;quot;). Il y a en particulier un chapitre &amp;quot;SVN pour les utilisateurs de CVS&amp;quot;.&lt;br /&gt;
&lt;br /&gt;
==== Acces svn via le WEB (lecture seule) ====&lt;br /&gt;
&lt;br /&gt;
http://cvs.in2p3.fr/mon-grid-fr&lt;br /&gt;
&lt;br /&gt;
=== Site Monitoring ===&lt;br /&gt;
&lt;br /&gt;
==== ce qui doit être monitoré ====&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Type de Noeuds&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Type de test&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Who + link URL&lt;br /&gt;
| width=&amp;quot;10%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
WNs&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
NFS mounts failing - check that files can be written and read. In particular checking that the VO_[VONAME]_SW_DIR is readable.&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
GRIF with scripting&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Non validé&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
WNs&lt;br /&gt;
| width=&amp;quot;50%&amp;quot; |&lt;br /&gt;
ssh keys - some modes of operation require unchallenged ssh between WNs and the CE, or for MPI among the WNs. First simple check is to verify that the wn can copy back a file to the ce. &lt;br /&gt;
| width=&amp;quot;50%&amp;quot; |&lt;br /&gt;
GRIF with Nagios&lt;br /&gt;
| width=&amp;quot;50%&amp;quot; |&lt;br /&gt;
Non validé&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
WNs&lt;br /&gt;
| width=&amp;quot;50%&amp;quot; |&lt;br /&gt;
Check the processes running on each WN - that the needed processes (ntpd, pbs etc) are running, and that other things (rogue processes, stuck jobs) are not&lt;br /&gt;
| width=&amp;quot;50%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;50%&amp;quot; |&lt;br /&gt;
Non validé&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
All service nodes&lt;br /&gt;
| width=&amp;quot;50%&amp;quot; |&lt;br /&gt;
Host certificates expiring - make sure they get renewed in good time&lt;br /&gt;
| width=&amp;quot;50%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;50%&amp;quot; |&lt;br /&gt;
Non validé&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
All nodes&lt;br /&gt;
| width=&amp;quot;50%&amp;quot; |&lt;br /&gt;
CRLs expiring - this can cause failures for certificates from a single CA, which can be hard to diagnose&lt;br /&gt;
| width=&amp;quot;50%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;50%&amp;quot; |&lt;br /&gt;
Non validé&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
All nodes&lt;br /&gt;
| width=&amp;quot;50%&amp;quot; |&lt;br /&gt;
Filesystem in ReadOnly Mode&lt;br /&gt;
| width=&amp;quot;50%&amp;quot; |&lt;br /&gt;
GRIF with Nagios&lt;br /&gt;
| width=&amp;quot;50%&amp;quot; |&lt;br /&gt;
Non validé&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
All nodes&lt;br /&gt;
| width=&amp;quot;50%&amp;quot; |&lt;br /&gt;
Node crashes &lt;br /&gt;
| width=&amp;quot;50%&amp;quot; |&lt;br /&gt;
GRIF with Nagios&lt;br /&gt;
| width=&amp;quot;50%&amp;quot; |&lt;br /&gt;
Non validé&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
All nodes&lt;br /&gt;
| width=&amp;quot;50%&amp;quot; |&lt;br /&gt;
Disks becoming full, or nearly so. In particular check that jobs are not filling /tmp, the home directories or other scratch space. Also check that disks don&#039;t run out of inodes&lt;br /&gt;
| width=&amp;quot;50%&amp;quot; |&lt;br /&gt;
GRIF with Nagios&lt;br /&gt;
| width=&amp;quot;50%&amp;quot; |&lt;br /&gt;
Non validé&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
=== Nagios ===&lt;br /&gt;
pour les graphes: http://nagiosgraph.sourceforge.net/&lt;br /&gt;
&lt;br /&gt;
===== truc et astuces =====&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Installation&lt;br /&gt;
&lt;br /&gt;
Sondes nagios&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==== Lemon ====&lt;br /&gt;
&lt;br /&gt;
http://lemon.web.cern.ch/lemon/index.shtml&lt;br /&gt;
&lt;br /&gt;
Lemon avec quattor: https://trac.lal.in2p3.fr/LCGQWG/wiki/QWG_lemon&lt;br /&gt;
&lt;br /&gt;
CluMan: http://indico.twgrid.org/sessionDisplay.py?sessionId=29&amp;amp;slotId=0&amp;amp;confId=471#2008-10-21&lt;br /&gt;
&lt;br /&gt;
==== Cacti ====&lt;br /&gt;
&lt;br /&gt;
Monitoring réseau (SNMP)&lt;br /&gt;
http://lcg.in2p3.fr/wiki/index.php/LCG-FR_/_SA1-FR_Monitoring_WG_CACTI&lt;br /&gt;
&lt;br /&gt;
==== autres projets ====&lt;br /&gt;
&lt;br /&gt;
Happy Face Project: http://www-ekp.physik.uni-karlsruhe.de/~happyface/HappyFace/&lt;br /&gt;
&lt;br /&gt;
=== Gadget WEB ===&lt;br /&gt;
&lt;br /&gt;
Un certain nombre de flux RSS et widgets sont disponibles:&lt;br /&gt;
&lt;br /&gt;
[http://netvibes.com/cleroy exemple ]&lt;br /&gt;
&lt;br /&gt;
en utilisant:&lt;br /&gt;
&lt;br /&gt;
==== CMS ====&lt;br /&gt;
liste de Widgets disponible:&lt;br /&gt;
[http://iglezh.web.cern.ch/iglezh/widgets/]&lt;br /&gt;
&lt;br /&gt;
==== Alice ====&lt;br /&gt;
liste de Flux RSS, disponible:&lt;br /&gt;
[http://pcalimonitor.cern.ch/xml.jsp]&lt;br /&gt;
&lt;br /&gt;
==== Accounting ====&lt;br /&gt;
Flux RSS:&lt;br /&gt;
http://goc-accounting.grid-support.ac.uk/rss/YOUR-SITE-NAME_ApelSync.xml&lt;br /&gt;
&lt;br /&gt;
=== Monitoring de l&#039;activité des VOs orienté site ===&lt;br /&gt;
Il s&#039;agit d&#039;un outil à destination des sites permettant de suivre l&#039;état du site vis à vis de l&#039;activité des VOs supportées. L&#039;idée est de rassembler en un seul display (type Gridmap)l&#039;ensemble des informations significatives collectées auprès des différents outils de monitoring spécifiques aux différentes VOs et publiées dans une base de données communes.&lt;br /&gt;
&lt;br /&gt;
*[http://dashb-siteview.cern.ch/gridmap-vo-siteview/ Dashboard VO LHC avec une vue site (MAJ Juin 09)]&lt;br /&gt;
&lt;br /&gt;
*[http://indico.cern.ch/getFile.py/access?resId=0&amp;amp;materialId=slides&amp;amp;contribId=2&amp;amp;sessionId=4&amp;amp;subContId=0&amp;amp;confId=32660 Roadmap for site monitoring...providing a site view of VO activities] (présentation Workshop WLCG 14/11/08&lt;br /&gt;
&lt;br /&gt;
=== Services Grilles ===&lt;br /&gt;
==== FTS ====&lt;br /&gt;
[http://cctools.in2p3.fr/dcache/monitoring/ftsmonitor.php CCIN2P3]&lt;br /&gt;
[http://lcgwww.gridpp.rl.ac.uk/cgi-bin/fts-mon/fts-mon.pl?v=atlas RAL atlas]&lt;br /&gt;
[http://ganglia.gridpp.rl.ac.uk/cgi-bin/ganglia-fts/fts-page.pl RAL Ganglia]&lt;br /&gt;
&lt;br /&gt;
====GridFtp ====&lt;br /&gt;
[http://www.icepp.jp/rc/grid/lcg/monitor/gridftp2/monitor.html ICEPP ]&lt;br /&gt;
&lt;br /&gt;
==== DPM ====&lt;br /&gt;
[http://www.gridpp.ac.uk/wiki/DPM_Monitoring DPM monitoring by Gridpp ]&lt;br /&gt;
&lt;br /&gt;
==== WMS ====&lt;br /&gt;
[https://cert-wms-01.cnaf.infn.it:8443/wmsmon/details/details.php?wms=wms014.cnaf.infn.it WMS monitoring by CNAF]&lt;br /&gt;
&lt;br /&gt;
=== Services VOs ===&lt;br /&gt;
==== LHC VOs====&lt;br /&gt;
[http://dashboard.cern.ch/ Experiment Dashboard]&lt;br /&gt;
&lt;br /&gt;
==== ALICE ====&lt;br /&gt;
&lt;br /&gt;
 * Monalisa monitoring:  http://pcalimonitor.cern.ch/ &lt;br /&gt;
 * Job Monitoring:  http://dashboard.cern.ch/alice/&lt;br /&gt;
 * Daily reports:     http://dashb-alice.cern.ch/dashboard/data/&lt;br /&gt;
 * Site efficiency :  http://dboard-gr.cern.ch/dashboard/data/summaries/&lt;br /&gt;
&lt;br /&gt;
==== ATLAS ====&lt;br /&gt;
&lt;br /&gt;
 * Dashboard :  http://dashboard.cern.ch/atlas/&lt;br /&gt;
 * Installation SW : https://atlas-install.roma1.infn.it/atlas_install/&lt;br /&gt;
 * Bilan mensuel du nombre de jobs exécutés et de l&#039;efficacité par site : http://dashb-atlas-job.cern.ch/dashboard/request.py/MonthlyReportIndex&lt;br /&gt;
 * PanDA : http://gridinfo.triumf.ca/panglia. Il y a un URL par queue utilisée par les jobs de productions + 1 URL spécifique pour les queues utilisées par les jobs d&#039;analyse (ANALY_xxx). Pour les jobs de productions&lt;br /&gt;
  &lt;br /&gt;
Le dashboard a tendance à remplacer les autres (excepté pour le suivi des installations). C&#039;est le plus complet et le plus riche. Il permet en particulier d&#039;obtenir la liste des jobs en erreur avec des informations détaillées sur l&#039;erreur, le WN impliqué...&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==== CMS ====&lt;br /&gt;
 * site readiness : https://twiki.cern.ch/twiki/bin/view/CMS/PADASiteCommissioning#ScMon&lt;br /&gt;
 * Dashboard CMS (Starting Point) : http://dashboard.cern.ch/cms/&lt;br /&gt;
  See instructions from Facility Operation team : https://twiki.cern.ch/twiki/bin/view/CMS/SAMChecklist&lt;br /&gt;
 * Phedex monitoring tool for transfer activities : http://cmsweb.cern.ch/phedex/&lt;br /&gt;
 * Widget CMS: http://iglezh.web.cern.ch/iglezh/widgets/&lt;br /&gt;
 * CRAB JobRobot web page: http://jobrobot.web.cern.ch/JobRobot/&lt;br /&gt;
 * CMS SAM Visualization : http://dashb-cms-sam.cern.ch/dashboard/request.py/latestresultsview&lt;br /&gt;
 * [http://dashb-ssb.cern.ch/ssb.html CMS Site status board]&lt;br /&gt;
 * Site Commissionning board : http://dashb-ssb.cern.ch/dashboard/request.py/siteview?view=commission&lt;br /&gt;
 * Link Commissioning Status : &lt;br /&gt;
  [http://cmsdoc.cern.ch/cms/aprom/phedex/prod/Components::Links?from_filter=T1&amp;amp;andor=and&amp;amp;to_filter=T2_FR&amp;amp;Update=Update# T1-T2_FR downlinks]&lt;br /&gt;
  [http://cmsdoc.cern.ch/cms/aprom/phedex/prod/Components::Links?from_filter=T2_FR&amp;amp;andor=and&amp;amp;to_filter=T1&amp;amp;Update=Update# T2_FR-T1 uplinks]&lt;br /&gt;
&lt;br /&gt;
==== LHCb ====&lt;br /&gt;
 * Site status for LHCb usage : http://lhcb-project-dirac.web.cern.ch/lhcb-project-dirac/lhcbProdnMask.html&lt;br /&gt;
 * Dashboard : http://dashboard.cern.ch/lhcb/&lt;br /&gt;
 * Monitoring (job LHCb) : http://lhcbweb.pic.es/DIRAC/LHCb-Production/visitor/info/general/diracOverview&lt;br /&gt;
&lt;br /&gt;
=== Infrastructure Grille ===&lt;br /&gt;
====[http://gridmap.cern.ch/ GridMap Prototype] visualizing the   &amp;quot;State&amp;quot; of the Grid ====&lt;br /&gt;
==== GSTAT et monitoring TOP-BDII ====&lt;br /&gt;
&lt;br /&gt;
[http://indico.cern.ch/getFile.py/access?contribId=3&amp;amp;sessionId=10&amp;amp;resId=0&amp;amp;materialId=0&amp;amp;confId=66961 Lien sur une présentation du nouveau GSTAT]&lt;br /&gt;
&lt;br /&gt;
[http://gstat-dev.cern.ch/gstat En allant sur leur wiki vous trouverez un lien sur une version démo...]&lt;br /&gt;
&lt;br /&gt;
=== EGEE Monitoring Group (OAT) ===&lt;br /&gt;
&lt;br /&gt;
* [https://twiki.cern.ch/twiki/bin/view/EGEE/OAT_EGEE_III wiki OAT]&lt;br /&gt;
* [https://edms.cern.ch/document/901705 Mandat de l&#039;OAT (Operations-Automation-Team)]&lt;br /&gt;
* [https://edms.cern.ch/file/927171/1/EGEE-III-Activity-TEC-MSA1.1-927171-Operations-Automation-v1-0.pdf Stratégie de l&#039;OAT (Operations-Automation-Team)]&lt;br /&gt;
&lt;br /&gt;
* https://espace.cern.ch/sa1-share/oat/Shared Documents/  : Documents de l&#039;OAT&lt;br /&gt;
&lt;br /&gt;
Old one:&lt;br /&gt;
* [http://egee-docs.web.cern.ch/egee-docs/list.php?dir=./mig/&amp;amp; Link to the MIG page]&lt;br /&gt;
* [http://egee-docs.web.cern.ch/egee-docs/list.php?dir=./mig/production/&amp;amp; See the list of existing monitoring tools in production and associated metrics]&lt;br /&gt;
&lt;br /&gt;
=== WLCG Monitoring Working groups ===&lt;br /&gt;
3 groups have been created. See [https://twiki.cern.ch/twiki/bin/view/LCG/LCGMonitoringWorkingGroups https://twiki.cern.ch/twiki/bin/view/LCG/LCGMonitoringWorkingGroups]&lt;br /&gt;
&#039;&#039;The most active one is the Grid Service Monitoring group chaired by James Casey and Ian Neilson (FC)&#039;&#039;&lt;br /&gt;
* [http://www.sysadmin.hep.ac.uk/ System management] : Fabric Management, best practices, security&lt;br /&gt;
* [https://twiki.cern.ch/twiki/bin/view/LCG/GridServiceMonitoringInfo Grid service monitoring] : See the Nagios prototype for grid services monitoring   &lt;br /&gt;
* [https://twiki.cern.ch/twiki/bin/view/LCG/SystemAnalysisMonitoringInfo System analysis]: mainly focus on applications monitoring &lt;br /&gt;
*[https://twiki.cern.ch/twiki/pub/LCG/GridServiceMonitoringInfo/0702-WLCG_Monitoring_for_Managers.pdf  High Level model for WLCG Monitoring]&lt;br /&gt;
* J.Casey&#039;s Presentations@GDB 05 March 2008&lt;br /&gt;
**[http://indico.cern.ch/getFile.py/access?contribId=0&amp;amp;sessionId=1&amp;amp;resId=0&amp;amp;materialId=slides&amp;amp;confId=20227 A strategy for WLCG Monitoring]&lt;br /&gt;
**[http://indico.cern.ch/getFile.py/access?contribId=1&amp;amp;sessionId=1&amp;amp;resId=0&amp;amp;materialId=slides&amp;amp;confId=20227 Monitoring - some worked examples ]&lt;br /&gt;
&lt;br /&gt;
====[https://gus.fzk.de/ws/ticket_search.php?supportunit=ROC_France&amp;amp;status=open&amp;amp;radiotf=1&amp;amp;timeframe=no Open GGUS Tickets assigned to ROC-France]====&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=ARCHIVES/LCG-FR_/_SA1-FR_Monitoring_WG&amp;diff=5788</id>
		<title>ARCHIVES/LCG-FR / SA1-FR Monitoring WG</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=ARCHIVES/LCG-FR_/_SA1-FR_Monitoring_WG&amp;diff=5788"/>
		<updated>2010-04-12T12:19:51Z</updated>

		<summary type="html">&lt;p&gt;LEROY: /* Information Utile pour le monitoring regionnal */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;== Contacts (Mailing list) ==&lt;br /&gt;
&amp;lt;b&amp;gt;LCG-SA1FR-MONITORING-L@IN2P3.FR mailing list&amp;lt;/b&amp;gt; : &lt;br /&gt;
List managers : Christine Leroy (Irfu/CEA)&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
les membres du groupe:&lt;br /&gt;
http://lcg.in2p3.fr/wiki/images/MembresOnly_v2.doc&lt;br /&gt;
&lt;br /&gt;
== Mandat du Groupe ==&lt;br /&gt;
&lt;br /&gt;
Document consultable:&lt;br /&gt;
https://edms.in2p3.fr/file/I-013168/2/LCG-France-SA1-FR_WGMonitoring.pdf&lt;br /&gt;
&lt;br /&gt;
Le groupe de travail se chargera dans un délai de 6 mois : &lt;br /&gt;
&lt;br /&gt;
* collecter les besoins  des responsables des sites et de services de la région,&lt;br /&gt;
&lt;br /&gt;
* recenser les pratiques des sites et les outils de monitoring utilisés, &lt;br /&gt;
&lt;br /&gt;
* représenter et défendre les intérêts de la région dans les différents groupes de travail existants au sein de WLCG-EGEE sur un sujet connexe (En cours de construction un Groupe EGEE: [https://edms.cern.ch/document/901705 OAT])&lt;br /&gt;
&lt;br /&gt;
* identifier les standards qui doivent être suivis ainsi que les outils pertinents à tous les niveaux (services, site et région), proposer aux responsables des sites, des services grid et de l’opération régionale de la grille EGEE un ensemble d&#039;outils répondant à leurs besoins,&lt;br /&gt;
&lt;br /&gt;
* proposer, si besoin, des améliorations sur les outils et procédures d’alertes au niveau des sites, au niveau de la région&lt;br /&gt;
&lt;br /&gt;
* établir, s’il y a lieu, un plan pour la poursuite de ses travaux au-delà de la période initiale des 6 premiers mois.&lt;br /&gt;
 &lt;br /&gt;
Toutes les propositions et recommandations devront a priori être cohérentes avec les orientations des projets EGEE et WLCG. &lt;br /&gt;
&lt;br /&gt;
L&#039;organisation et le mode de fonctionnement du groupe seront définis par le responsable du groupe et les membres eux-mêmes.&lt;br /&gt;
&lt;br /&gt;
== Réunions, Journées...==&lt;br /&gt;
* [http://indico.in2p3.fr/conferenceDisplay.py?confId=1403 Nagios tutorial, 22-23 January 09, CC-IN2P3, Lyon]&lt;br /&gt;
*[http://indico.in2p3.fr/conferenceDisplay.py?confId=760 Journée Monitoring Grille du 10 Avril 2008]&lt;br /&gt;
*[http://indico.cern.ch/sessionDisplay.py?sessionId=3&amp;amp;slotId=0&amp;amp;confId=6552#2008-04-24 Monitoring Tutorial held at WLCG Collaboration Workshop, CERN April 2008]&lt;br /&gt;
*[http://indico.cern.ch/conferenceDisplay.py?confId=32307 Operations Automation Team kickoff 06 May 2008]&lt;br /&gt;
*[http://indico.cern.ch/conferenceDisplay.py?confId=32306 Operations Automation Team kickoff 07 May 2008]&lt;br /&gt;
*[http://indico.cern.ch/conferenceDisplay.py?confId=35322 OAT: Describe new structure of current operational model section + Review architecture sections 05 June 2008]&lt;br /&gt;
* [http://indico.in2p3.fr/conferenceDisplay.py?confId=1000 LCG-tech-fr Sa1-fr teleconf: 1) résumé document OAT &amp;amp; 2)bilan questionnaire]&lt;br /&gt;
* [http://indico.in2p3.fr/conferenceDisplay.py?confId=927 comité de direction LCG France] /  [http://lcg.in2p3.fr/wiki/images/20080707_monitoringATCoDirLCGfr.ppt présentation]&lt;br /&gt;
* [http://indico.in2p3.fr/conferenceDisplay.py?confId=1249 LCG-tech-fr Sa1-fr teleconf: 1) Presentation ActiveMQ &amp;amp; 2)Resume reunion OAT 3)prochaines actions]&lt;br /&gt;
* [http://indico.in2p3.fr/conferenceDisplay.py?confId=1557 LCG-tech-fr Sa1-fr teleconf: 1) Presentation Cacti &amp;amp; 2)Resume reunion OAT 3)point tutorial Nagios]&lt;br /&gt;
* [http://indico.in2p3.fr/conferenceDisplay.py?confId=875 LCG T2-T3 Face to Face meeting 27/11/2008]&lt;br /&gt;
* [http://indico.in2p3.fr/conferenceDisplay.py?confId=1403 tutorial Nagios les 22 et 23 janvier]&lt;br /&gt;
* [http://indico.in2p3.fr/conferenceDisplay.py?confId=1779 LCG-tech-fr Sa1-fr teleconf; 17 Mars 2009]&lt;br /&gt;
* [http://indico.in2p3.fr/conferenceDisplay.py?confId=1986 LCG-tech-fr Sa1-fr teleconf; 25 Mai 2009]&lt;br /&gt;
* [http://indico.in2p3.fr/conferenceDisplay.py?confId=2221 LCG-tech-fr Sa1-fr teleconf; 18 Septembre 2009]&lt;br /&gt;
* [http://indico.in2p3.fr/conferenceDisplay.py?confId=2936 Nagios Regional; 12 Mars 2010]&lt;br /&gt;
&lt;br /&gt;
== Infrastructure de monitoring ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== l’infrastructure d’échange de messages pour le multi-level monitoring === &lt;br /&gt;
&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/LCG/MessagingSystemforGrid&lt;br /&gt;
&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/EGEE/MsgServerDetails&lt;br /&gt;
&lt;br /&gt;
=== Nagios et GridMonitoring ===&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Repository du Projet:&lt;br /&gt;
&lt;br /&gt;
Fabric : http://www.sysadmin.hep.ac.uk/rpms/egee-SA1/&lt;br /&gt;
&lt;br /&gt;
Grid_services: http://www.sysadmin.hep.ac.uk/rpms/egee-SA1/sl4&lt;br /&gt;
&amp;amp; external: http://linuxsoft.cern.ch/dag/redhat/el4/&lt;br /&gt;
&lt;br /&gt;
Recuperer les resultats des Tests SAM: http://www.gridpp.ac.uk/wiki/Nagios_sam-query_Plugin&lt;br /&gt;
&lt;br /&gt;
Manuel et tutorial:&lt;br /&gt;
&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/LCG/GridMonitoringNcg&lt;br /&gt;
&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/EGEE/GridMonitoringNcgYaimTutorial&lt;br /&gt;
&lt;br /&gt;
Messaging system:&lt;br /&gt;
&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/LCG/MessagingSystemforGrid&lt;br /&gt;
&lt;br /&gt;
https://francegrid.in2p3.fr/index.php?title=MonitoringRegional&lt;br /&gt;
&lt;br /&gt;
== Information Utile pour les sites  ==&lt;br /&gt;
&lt;br /&gt;
=== Depot SVN et forge  ===&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==== la forge ====&lt;br /&gt;
&lt;br /&gt;
La forge utilisé est celle du CC: https://forge.in2p3.fr/ &lt;br /&gt;
&lt;br /&gt;
1)Il faut &#039;&#039;&#039;s&#039;enregistrer&#039;&#039;&#039; (en haut, a droite) sur https://forge.in2p3.fr/:&lt;br /&gt;
&lt;br /&gt;
https://forge.in2p3.fr/account/register&lt;br /&gt;
le nom du projet est: &#039;&#039;&#039;mon-grid-fr&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
2) Une fois enregistré pour accéder à notre projet, il faut toujours se connecter via &amp;quot;connexion&amp;quot; en haut a droite.&lt;br /&gt;
Ensuite dans la rubrique &amp;quot;Derniers projets&amp;quot; cliquer sur notre projet: &#039;&#039;&#039;mon-grid-fr&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
==== svn ====&lt;br /&gt;
&lt;br /&gt;
pour accéder a svn, les utilisateurs (hors personnel du Centre de Calcul) doivent fournir chacun une clef publique SSH à Loic Tortay [tortayatcc.in2p3.fr] &lt;br /&gt;
&lt;br /&gt;
L&#039;URL SVN générique est: &lt;br /&gt;
&lt;br /&gt;
 svn+ssh://svn.in2p3.fr/mon-grid-fr&lt;br /&gt;
 ou &lt;br /&gt;
 svn+ssh://user@svn.in2p3.fr/mon-grid-fr&lt;br /&gt;
&lt;br /&gt;
(en remplaçant &amp;quot;user&amp;quot; par le nom de compte réel, ces noms de comptes seront communiqués lorsque les clefs SSH seront transmises).&lt;br /&gt;
&lt;br /&gt;
La configuration SSH recommandée se trouve à l&#039;URL suivante : &lt;br /&gt;
&amp;quot;https://cvs.in2p3.fr/doc-fr.htmlhttps://cvs.in2p3.fr/doc-fr.html#access_ssh_config&amp;quot;.&lt;br /&gt;
&lt;br /&gt;
Il y a aussi une &amp;quot;variable d&#039;environnement&amp;quot; à définir pour SVN comme indiqué là:&lt;br /&gt;
&amp;quot;https://cvs.in2p3.fr/doc-fr.html#acces_svn_inter&amp;quot;.&lt;br /&gt;
&lt;br /&gt;
A la fin de &amp;quot;https://cvs.in2p3.fr/doc-fr.html#doc&amp;quot; il y a un lien vers le &amp;quot;SVN Book&amp;quot; qui est un guide détaillé d&#039;utilisation de SVN gratuit (et &amp;quot;libre&amp;quot;). Il y a en particulier un chapitre &amp;quot;SVN pour les utilisateurs de CVS&amp;quot;.&lt;br /&gt;
&lt;br /&gt;
==== Acces svn via le WEB (lecture seule) ====&lt;br /&gt;
&lt;br /&gt;
http://cvs.in2p3.fr/mon-grid-fr&lt;br /&gt;
&lt;br /&gt;
=== Site Monitoring ===&lt;br /&gt;
&lt;br /&gt;
==== ce qui doit être monitoré ====&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Type de Noeuds&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Type de test&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Who + link URL&lt;br /&gt;
| width=&amp;quot;10%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
WNs&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
NFS mounts failing - check that files can be written and read. In particular checking that the VO_[VONAME]_SW_DIR is readable.&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
GRIF with scripting&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Non validé&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
WNs&lt;br /&gt;
| width=&amp;quot;50%&amp;quot; |&lt;br /&gt;
ssh keys - some modes of operation require unchallenged ssh between WNs and the CE, or for MPI among the WNs. First simple check is to verify that the wn can copy back a file to the ce. &lt;br /&gt;
| width=&amp;quot;50%&amp;quot; |&lt;br /&gt;
GRIF with Nagios&lt;br /&gt;
| width=&amp;quot;50%&amp;quot; |&lt;br /&gt;
Non validé&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
WNs&lt;br /&gt;
| width=&amp;quot;50%&amp;quot; |&lt;br /&gt;
Check the processes running on each WN - that the needed processes (ntpd, pbs etc) are running, and that other things (rogue processes, stuck jobs) are not&lt;br /&gt;
| width=&amp;quot;50%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;50%&amp;quot; |&lt;br /&gt;
Non validé&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
All service nodes&lt;br /&gt;
| width=&amp;quot;50%&amp;quot; |&lt;br /&gt;
Host certificates expiring - make sure they get renewed in good time&lt;br /&gt;
| width=&amp;quot;50%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;50%&amp;quot; |&lt;br /&gt;
Non validé&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
All nodes&lt;br /&gt;
| width=&amp;quot;50%&amp;quot; |&lt;br /&gt;
CRLs expiring - this can cause failures for certificates from a single CA, which can be hard to diagnose&lt;br /&gt;
| width=&amp;quot;50%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;50%&amp;quot; |&lt;br /&gt;
Non validé&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
All nodes&lt;br /&gt;
| width=&amp;quot;50%&amp;quot; |&lt;br /&gt;
Filesystem in ReadOnly Mode&lt;br /&gt;
| width=&amp;quot;50%&amp;quot; |&lt;br /&gt;
GRIF with Nagios&lt;br /&gt;
| width=&amp;quot;50%&amp;quot; |&lt;br /&gt;
Non validé&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
All nodes&lt;br /&gt;
| width=&amp;quot;50%&amp;quot; |&lt;br /&gt;
Node crashes &lt;br /&gt;
| width=&amp;quot;50%&amp;quot; |&lt;br /&gt;
GRIF with Nagios&lt;br /&gt;
| width=&amp;quot;50%&amp;quot; |&lt;br /&gt;
Non validé&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
All nodes&lt;br /&gt;
| width=&amp;quot;50%&amp;quot; |&lt;br /&gt;
Disks becoming full, or nearly so. In particular check that jobs are not filling /tmp, the home directories or other scratch space. Also check that disks don&#039;t run out of inodes&lt;br /&gt;
| width=&amp;quot;50%&amp;quot; |&lt;br /&gt;
GRIF with Nagios&lt;br /&gt;
| width=&amp;quot;50%&amp;quot; |&lt;br /&gt;
Non validé&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
=== Nagios ===&lt;br /&gt;
pour les graphes: http://nagiosgraph.sourceforge.net/&lt;br /&gt;
&lt;br /&gt;
===== truc et astuces =====&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Installation&lt;br /&gt;
&lt;br /&gt;
Sondes nagios&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==== Lemon ====&lt;br /&gt;
&lt;br /&gt;
http://lemon.web.cern.ch/lemon/index.shtml&lt;br /&gt;
&lt;br /&gt;
Lemon avec quattor: https://trac.lal.in2p3.fr/LCGQWG/wiki/QWG_lemon&lt;br /&gt;
&lt;br /&gt;
CluMan: http://indico.twgrid.org/sessionDisplay.py?sessionId=29&amp;amp;slotId=0&amp;amp;confId=471#2008-10-21&lt;br /&gt;
&lt;br /&gt;
==== Cacti ====&lt;br /&gt;
&lt;br /&gt;
Monitoring réseau (SNMP)&lt;br /&gt;
http://lcg.in2p3.fr/wiki/index.php/LCG-FR_/_SA1-FR_Monitoring_WG_CACTI&lt;br /&gt;
&lt;br /&gt;
==== autres projets ====&lt;br /&gt;
&lt;br /&gt;
Happy Face Project: http://www-ekp.physik.uni-karlsruhe.de/~happyface/HappyFace/&lt;br /&gt;
&lt;br /&gt;
=== Gadget WEB ===&lt;br /&gt;
&lt;br /&gt;
Un certain nombre de flux RSS et widgets sont disponibles:&lt;br /&gt;
&lt;br /&gt;
[http://netvibes.com/cleroy exemple ]&lt;br /&gt;
&lt;br /&gt;
en utilisant:&lt;br /&gt;
&lt;br /&gt;
==== CMS ====&lt;br /&gt;
liste de Widgets disponible:&lt;br /&gt;
[http://iglezh.web.cern.ch/iglezh/widgets/]&lt;br /&gt;
&lt;br /&gt;
==== Alice ====&lt;br /&gt;
liste de Flux RSS, disponible:&lt;br /&gt;
[http://pcalimonitor.cern.ch/xml.jsp]&lt;br /&gt;
&lt;br /&gt;
==== Accounting ====&lt;br /&gt;
Flux RSS:&lt;br /&gt;
http://goc-accounting.grid-support.ac.uk/rss/YOUR-SITE-NAME_ApelSync.xml&lt;br /&gt;
&lt;br /&gt;
=== Monitoring de l&#039;activité des VOs orienté site ===&lt;br /&gt;
Il s&#039;agit d&#039;un outil à destination des sites permettant de suivre l&#039;état du site vis à vis de l&#039;activité des VOs supportées. L&#039;idée est de rassembler en un seul display (type Gridmap)l&#039;ensemble des informations significatives collectées auprès des différents outils de monitoring spécifiques aux différentes VOs et publiées dans une base de données communes.&lt;br /&gt;
&lt;br /&gt;
*[http://dashb-siteview.cern.ch/gridmap-vo-siteview/ Dashboard VO LHC avec une vue site (MAJ Juin 09)]&lt;br /&gt;
&lt;br /&gt;
*[http://indico.cern.ch/getFile.py/access?resId=0&amp;amp;materialId=slides&amp;amp;contribId=2&amp;amp;sessionId=4&amp;amp;subContId=0&amp;amp;confId=32660 Roadmap for site monitoring...providing a site view of VO activities] (présentation Workshop WLCG 14/11/08&lt;br /&gt;
&lt;br /&gt;
=== Services Grilles ===&lt;br /&gt;
==== FTS ====&lt;br /&gt;
[http://cctools.in2p3.fr/dcache/monitoring/ftsmonitor.php CCIN2P3]&lt;br /&gt;
[http://lcgwww.gridpp.rl.ac.uk/cgi-bin/fts-mon/fts-mon.pl?v=atlas RAL atlas]&lt;br /&gt;
[http://ganglia.gridpp.rl.ac.uk/cgi-bin/ganglia-fts/fts-page.pl RAL Ganglia]&lt;br /&gt;
&lt;br /&gt;
====GridFtp ====&lt;br /&gt;
[http://www.icepp.jp/rc/grid/lcg/monitor/gridftp2/monitor.html ICEPP ]&lt;br /&gt;
&lt;br /&gt;
==== DPM ====&lt;br /&gt;
[http://www.gridpp.ac.uk/wiki/DPM_Monitoring DPM monitoring by Gridpp ]&lt;br /&gt;
&lt;br /&gt;
==== WMS ====&lt;br /&gt;
[https://cert-wms-01.cnaf.infn.it:8443/wmsmon/details/details.php?wms=wms014.cnaf.infn.it WMS monitoring by CNAF]&lt;br /&gt;
&lt;br /&gt;
=== Services VOs ===&lt;br /&gt;
==== LHC VOs====&lt;br /&gt;
[http://dashboard.cern.ch/ Experiment Dashboard]&lt;br /&gt;
&lt;br /&gt;
==== ALICE ====&lt;br /&gt;
&lt;br /&gt;
 * Monalisa monitoring:  http://pcalimonitor.cern.ch/ &lt;br /&gt;
 * Job Monitoring:  http://dashboard.cern.ch/alice/&lt;br /&gt;
 * Daily reports:     http://dashb-alice.cern.ch/dashboard/data/&lt;br /&gt;
 * Site efficiency :  http://dboard-gr.cern.ch/dashboard/data/summaries/&lt;br /&gt;
&lt;br /&gt;
==== ATLAS ====&lt;br /&gt;
&lt;br /&gt;
 * Dashboard :  http://dashboard.cern.ch/atlas/&lt;br /&gt;
 * Installation SW : https://atlas-install.roma1.infn.it/atlas_install/&lt;br /&gt;
 * Bilan mensuel du nombre de jobs exécutés et de l&#039;efficacité par site : http://dashb-atlas-job.cern.ch/dashboard/request.py/MonthlyReportIndex&lt;br /&gt;
 * PanDA : http://gridinfo.triumf.ca/panglia. Il y a un URL par queue utilisée par les jobs de productions + 1 URL spécifique pour les queues utilisées par les jobs d&#039;analyse (ANALY_xxx). Pour les jobs de productions&lt;br /&gt;
  &lt;br /&gt;
Le dashboard a tendance à remplacer les autres (excepté pour le suivi des installations). C&#039;est le plus complet et le plus riche. Il permet en particulier d&#039;obtenir la liste des jobs en erreur avec des informations détaillées sur l&#039;erreur, le WN impliqué...&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==== CMS ====&lt;br /&gt;
 * site readiness : https://twiki.cern.ch/twiki/bin/view/CMS/PADASiteCommissioning#ScMon&lt;br /&gt;
 * Dashboard CMS (Starting Point) : http://dashboard.cern.ch/cms/&lt;br /&gt;
  See instructions from Facility Operation team : https://twiki.cern.ch/twiki/bin/view/CMS/SAMChecklist&lt;br /&gt;
 * Phedex monitoring tool for transfer activities : http://cmsweb.cern.ch/phedex/&lt;br /&gt;
 * Widget CMS: http://iglezh.web.cern.ch/iglezh/widgets/&lt;br /&gt;
 * CRAB JobRobot web page: http://jobrobot.web.cern.ch/JobRobot/&lt;br /&gt;
 * CMS SAM Visualization : http://dashb-cms-sam.cern.ch/dashboard/request.py/latestresultsview&lt;br /&gt;
 * [http://dashb-ssb.cern.ch/ssb.html CMS Site status board]&lt;br /&gt;
 * Site Commissionning board : http://dashb-ssb.cern.ch/dashboard/request.py/siteview?view=commission&lt;br /&gt;
 * Link Commissioning Status : &lt;br /&gt;
  [http://cmsdoc.cern.ch/cms/aprom/phedex/prod/Components::Links?from_filter=T1&amp;amp;andor=and&amp;amp;to_filter=T2_FR&amp;amp;Update=Update# T1-T2_FR downlinks]&lt;br /&gt;
  [http://cmsdoc.cern.ch/cms/aprom/phedex/prod/Components::Links?from_filter=T2_FR&amp;amp;andor=and&amp;amp;to_filter=T1&amp;amp;Update=Update# T2_FR-T1 uplinks]&lt;br /&gt;
&lt;br /&gt;
==== LHCb ====&lt;br /&gt;
 * Site status for LHCb usage : http://lhcb-project-dirac.web.cern.ch/lhcb-project-dirac/lhcbProdnMask.html&lt;br /&gt;
 * Dashboard : http://dashboard.cern.ch/lhcb/&lt;br /&gt;
 * Monitoring (job LHCb) : http://lhcbweb.pic.es/DIRAC/LHCb-Production/visitor/info/general/diracOverview&lt;br /&gt;
&lt;br /&gt;
=== Infrastructure Grille ===&lt;br /&gt;
====[http://gridmap.cern.ch/ GridMap Prototype] visualizing the   &amp;quot;State&amp;quot; of the Grid ====&lt;br /&gt;
==== GSTAT et monitoring TOP-BDII ====&lt;br /&gt;
&lt;br /&gt;
[http://indico.cern.ch/getFile.py/access?contribId=3&amp;amp;sessionId=10&amp;amp;resId=0&amp;amp;materialId=0&amp;amp;confId=66961 Lien sur une présentation du nouveau GSTAT]&lt;br /&gt;
&lt;br /&gt;
[http://gstat-dev.cern.ch/gstat En allant sur leur wiki vous trouverez un lien sur une version démo...]&lt;br /&gt;
&lt;br /&gt;
=== EGEE Monitoring Group (OAT) ===&lt;br /&gt;
&lt;br /&gt;
* [https://twiki.cern.ch/twiki/bin/view/EGEE/OAT_EGEE_III wiki OAT]&lt;br /&gt;
* [https://edms.cern.ch/document/901705 Mandat de l&#039;OAT (Operations-Automation-Team)]&lt;br /&gt;
* [https://edms.cern.ch/file/927171/1/EGEE-III-Activity-TEC-MSA1.1-927171-Operations-Automation-v1-0.pdf Stratégie de l&#039;OAT (Operations-Automation-Team)]&lt;br /&gt;
&lt;br /&gt;
* https://espace.cern.ch/sa1-share/oat/Shared Documents/  : Documents de l&#039;OAT&lt;br /&gt;
&lt;br /&gt;
Old one:&lt;br /&gt;
* [http://egee-docs.web.cern.ch/egee-docs/list.php?dir=./mig/&amp;amp; Link to the MIG page]&lt;br /&gt;
* [http://egee-docs.web.cern.ch/egee-docs/list.php?dir=./mig/production/&amp;amp; See the list of existing monitoring tools in production and associated metrics]&lt;br /&gt;
&lt;br /&gt;
=== WLCG Monitoring Working groups ===&lt;br /&gt;
3 groups have been created. See [https://twiki.cern.ch/twiki/bin/view/LCG/LCGMonitoringWorkingGroups https://twiki.cern.ch/twiki/bin/view/LCG/LCGMonitoringWorkingGroups]&lt;br /&gt;
&#039;&#039;The most active one is the Grid Service Monitoring group chaired by James Casey and Ian Neilson (FC)&#039;&#039;&lt;br /&gt;
* [http://www.sysadmin.hep.ac.uk/ System management] : Fabric Management, best practices, security&lt;br /&gt;
* [https://twiki.cern.ch/twiki/bin/view/LCG/GridServiceMonitoringInfo Grid service monitoring] : See the Nagios prototype for grid services monitoring   &lt;br /&gt;
* [https://twiki.cern.ch/twiki/bin/view/LCG/SystemAnalysisMonitoringInfo System analysis]: mainly focus on applications monitoring &lt;br /&gt;
*[https://twiki.cern.ch/twiki/pub/LCG/GridServiceMonitoringInfo/0702-WLCG_Monitoring_for_Managers.pdf  High Level model for WLCG Monitoring]&lt;br /&gt;
* J.Casey&#039;s Presentations@GDB 05 March 2008&lt;br /&gt;
**[http://indico.cern.ch/getFile.py/access?contribId=0&amp;amp;sessionId=1&amp;amp;resId=0&amp;amp;materialId=slides&amp;amp;confId=20227 A strategy for WLCG Monitoring]&lt;br /&gt;
**[http://indico.cern.ch/getFile.py/access?contribId=1&amp;amp;sessionId=1&amp;amp;resId=0&amp;amp;materialId=slides&amp;amp;confId=20227 Monitoring - some worked examples ]&lt;br /&gt;
&lt;br /&gt;
====[https://gus.fzk.de/ws/ticket_search.php?supportunit=ROC_France&amp;amp;status=open&amp;amp;radiotf=1&amp;amp;timeframe=no Open GGUS Tickets assigned to ROC-France]====&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5768</id>
		<title>Nagios regional</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5768"/>
		<updated>2010-04-06T11:34:36Z</updated>

		<summary type="html">&lt;p&gt;LEROY: /* Mise à jour */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Installation d&#039;une NOGIOS box pour le ROC France&lt;br /&gt;
&lt;br /&gt;
= 1)	Installation de base : =&lt;br /&gt;
a.	Machine installée par les sysadmin du CC : OS + VOBOX + certificat + pas dans les NIS&lt;br /&gt;
&lt;br /&gt;
b.	Accessible via gsissh (port 1975)&lt;br /&gt;
&lt;br /&gt;
= 2)	Action faite au préalable : =&lt;br /&gt;
a.	Faire la demande pour que la machine soit autorisée à récupérer les SAM tests : https://gus.fzk.de/ws/ticket_info.php?ticket=55132&lt;br /&gt;
&lt;br /&gt;
b.	Autoriser la nagios box à récupérer les proxy en mode « retrieval », et stocker un proxy depuis une UI récuperable par la nagiosBOX voir  [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe0 Annexe0]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
c.	Certificat utilisé pour :&lt;br /&gt;
&lt;br /&gt;
i.	                       Access to GOCDB PI for ROCS GOCDB PI level 2 required &lt;br /&gt;
&lt;br /&gt;
ii.	                       Recuperation de proxy pour les sondes locales&lt;br /&gt;
&lt;br /&gt;
d. s&#039;inscrire dans la mailing liste: regional-nagios-admins@cern.ch (très réactive)&lt;br /&gt;
&lt;br /&gt;
= 3)	Installation de Nagios =&lt;br /&gt;
Reference : https://twiki.cern.ch/twiki/bin/view/EGEE/GridMonitoringNcgYaim&lt;br /&gt;
== Installation des packages via yum, Ajout des repos suivant ==&lt;br /&gt;
 a.	mirrors-rpmforge (rpm rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm)&lt;br /&gt;
 b.	rpmforge-testing.repo&lt;br /&gt;
 c.	rpmforge.repo&lt;br /&gt;
 d.	glite-UI.repo&lt;br /&gt;
 e.	sa1-centos5-release.repo (rpm:  sa1-release-2-1.el5.noarch.rpm)&lt;br /&gt;
 f.	glite-BDII.repo&lt;br /&gt;
&lt;br /&gt;
Problèmes de dépendances rencontrées si besoin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe1 Annexe1] (mais j’avais dû oublier de faire un : yum install egee-NAGIOS)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Installation subversion ==&lt;br /&gt;
Certain fichier de config sont a recuperer via svn au CERN:&lt;br /&gt;
&lt;br /&gt;
 yum install subversion&lt;br /&gt;
 svn co http://svnweb.cern.ch/guest/sam/trunk/roc-config&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 cp /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm.orig&lt;br /&gt;
 cp roc-config/Hash.pm_55_ALL_CRIT /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm&lt;br /&gt;
&lt;br /&gt;
== Mysql ==&lt;br /&gt;
&lt;br /&gt;
1.	Installer la dernière version de Mysql (server + client) ; &lt;br /&gt;
&lt;br /&gt;
2.	configurer le mot de passe admin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2a] ;&lt;br /&gt;
&lt;br /&gt;
3.	Configurer les users utiles à la nagios Box se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2b] ;&lt;br /&gt;
&lt;br /&gt;
== Configuration via yaim et NCG (en 2 fois)==&lt;br /&gt;
&lt;br /&gt;
1.	Remplir /etc/ncg/ncg.localdb avec la liste des sites se referer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe3 Annexe3]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
2.	Remplir le /opt/glite/yaim/site-info.def voir [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe4 Annexe4] ;&lt;br /&gt;
&lt;br /&gt;
3.	groupadd nagios&lt;br /&gt;
&lt;br /&gt;
4.	modif des uids/gids : /opt/glite/yaim/examples/edgusers.conf [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe5 Annexe5]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
5.	lancement de la configuration automatique via yaim (All On One Box) :&lt;br /&gt;
 	&lt;br /&gt;
 	/opt/glite/yaim/bin/yaim -s /opt/glite/yaim/site-info.def -c -n glite-UI -n glite-NAGIOS&lt;br /&gt;
&lt;br /&gt;
6.	lancement de la configuration via NCG (All On One Box) :&lt;br /&gt;
&lt;br /&gt;
 /usr/sbin/ncg.pl&lt;br /&gt;
&lt;br /&gt;
.....MODIFICATION importante:: voir: https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
La partie:&lt;br /&gt;
#  Configure manually /etc/ncg/ncg.conf (Template can be found here: ncg.conf.template: )&lt;br /&gt;
- Switch off automatic generation of ncg.conf by YAIM (NAGIOS_NCG_ENABLE_CONFIG&amp;quot;=&amp;quot;false&amp;quot;)&lt;br /&gt;
- Take ncg.conf.template and copy it to /etc/ncg/ncg.conf&lt;br /&gt;
     - Set $ROC_NAME$&lt;br /&gt;
     - Set $YOUR_MYPROXY_SERVER$ (e.g. myproxy-fts.cern.ch)&lt;br /&gt;
     - Set $MYPROXY_NAME$ (e.g.: NagiosRetrieve-sam-ap-roc.cern.ch)&lt;br /&gt;
     - Set $NAGIOS_ROLE$ (e.g.: ngi, roc)&lt;br /&gt;
# Take Hash.pm file that we are currently using at the CERN ROC Nagios boxes. In this file, we have removed the metrics that do not belong to the SAM_Critical profile, so only the metrics defined at ROC_SAM_critical are configured, and not relevant services like SRMv1 are commented out. The file is located under /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm &lt;br /&gt;
&lt;br /&gt;
Pour éviter d&#039;avoir des sondes inappropriés.&lt;br /&gt;
&lt;br /&gt;
== Tuning the configuration ==&lt;br /&gt;
&lt;br /&gt;
1.	Verifier  dans /etc/sysconfig/nagios:&lt;br /&gt;
 LD_LIBRARY_PATH=/opt/classads/lib64:/opt/glite/lib64:/opt/globus/lib:/opt/c-ares/lib:/opt/classads/lib64  &lt;br /&gt;
&lt;br /&gt;
2.	Desactiver les notifications, dans les fichiers de conf: &lt;br /&gt;
 a.      /etc/nagios/nagios.cfg, désactiver les notifications:enable_notifications=0 ;log_notifications=0&lt;br /&gt;
 b.	 /etc/nagios/wlcg.d/host.templates.cfg&lt;br /&gt;
 c.	 /etc/nagios/wlcg.d/service.templates.cfg&lt;br /&gt;
&lt;br /&gt;
4.	N’autoriser que les dteam/France à visualiser notre interface nagios : modifier le fichier : &lt;br /&gt;
 /etc/voms2htpasswd.conf, avec : vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&lt;br /&gt;
Plus utile site le site-info.def est défini correctement:&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&#039;&lt;br /&gt;
&lt;br /&gt;
== ActiveMQ ==&lt;br /&gt;
 /usr/sbin/msg-to-queue --prefix /queue/grid.probe.metricOutput.EGEE.a635834332381123c8b296d02b682f8f --broker-uri stomp://prod-grid-msg.cern.ch:6163&lt;br /&gt;
 &lt;br /&gt;
[root@cclcgvmli03 cron.hourly]# cat check_msg-to-queue.sh&lt;br /&gt;
&lt;br /&gt;
Verifier les messages:&lt;br /&gt;
 /usr/libexec/grid-monitoring/plugins/nagios/recv_from_queue -v &lt;br /&gt;
&lt;br /&gt;
faire une update de perl-GridMon &lt;br /&gt;
 The problem here is in the message handler &lt;br /&gt;
 (/usr/lib/perl5/vendor_perl/5.8.8/GridMon/MsgHandler/MetricOutput.pm). &lt;br /&gt;
 Probe on WN reports hostname localhost.localdomain and serviceURI CE &lt;br /&gt;
 hostname. In the previous version message handler first checked hostname &lt;br /&gt;
 value and then serviceURI. That is the reason why Christine is seeing &lt;br /&gt;
 results for localhost.localdomain. However, we fixed this and the latest &lt;br /&gt;
 version (1.0.34) parses messages correctly.&lt;br /&gt;
&lt;br /&gt;
 yum update perl-GridMon&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== Systeme d&#039;information ==&lt;br /&gt;
La nagios Box doit etre enregistré dans la GOCDB &lt;br /&gt;
et publié dans le site-BDII:&lt;br /&gt;
 ldapsearch -x -H ldap://ccnagboxli01.in2p3.fr:2170 -b &#039;Mds-vo-name=resource,o=Grid&#039;&lt;br /&gt;
&lt;br /&gt;
= validation =&lt;br /&gt;
&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
&lt;br /&gt;
now you should publish your Nagios in your Site BDII&lt;br /&gt;
And we should declare the node in the GOCDB: Regional-NAGIOS ou National-Nagios, a determiner&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
liste des sondes a valider: d&#039;après: https://twiki.cern.ch/twiki/bin/view/LCG/SAMCriticalTestsForCODs&lt;br /&gt;
&lt;br /&gt;
== Services grilles ==&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Type de Noeuds&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Valid (Y or N)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
APEL&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Pas de métric ?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
BDII (site and TOP)&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
- Probleme identifié pour la variable LCG_GFAL_INFOSYS quand c&#039;est une liste (CE lpnce.in2p3.fr):&lt;br /&gt;
LCG_GFAL_INFOSYS=topbdii.grif.fr:2170,cclcgtopbdii01.in2p3.fr:2170,lapp-bdii01.in2p3.fr:2170&lt;br /&gt;
&lt;br /&gt;
-Tout le mecanisme de recuperation des outputs n&#039;est pas compris mais globalement on a les meme resultat que celui du CERN&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CREAMCE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: idem CERN nagiosBOX (mais sonde Brokerinfo toujours en erreur: probleme connu: https://savannah.cern.ch/bugs/?61322)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
FTS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y and NO: For the check_command those options should be added: &lt;br /&gt;
--cert /etc/nagios/globus/hostcert.pem   --key /etc/nagios/globus/hostkey.pem  -x $USER2$ (this should be fixed in the next release)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
gRB/WMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y:(certificate lifetime only)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_C&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: mais il faudrait peut etre demander au site de supporter la VO ops pour que leur LFC soit testé (lfc-ls et lfc-ping)?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_L&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: mais il faudrait peut etre demander au site de supporter la VO ops pour que leur LFC soit testé (lfc-ls et lfc-ping)?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MPI&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
em&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MyProxy&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
em&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RB&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nobody&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Service Deprecated. Does NOT apply in Nagios&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RGMA / MON&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y (certificate lifetime only)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
&lt;br /&gt;
SRMv2&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOBOX&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
em&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Services nagios BOX ==&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;7%&amp;quot; |&lt;br /&gt;
Services&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Valid (Y or N)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.CAdist-Version&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.CertLifetime&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.GridProxy-Get-ops&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.GridProxy-Valid-ops&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.ATPSync&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.CheckConfig&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.ImportGocdbDowntimes &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.MDDBSync &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.RecvFromQueue&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.SendToMetricStore&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.SendToMsg&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.nagios.DiskCheck &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.nagios.ProcessCrond &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.nagios.ProcessMsgToQueue &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.nagios.ProcessNpcd&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.sam.CE-JobMonit-ops &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.sam.CREAMCE-JobMonit-ops &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.sam.mpi.CE-JobMonit-ops&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.MyProxy-ProxyLifetime-ops&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
= Mise à jour =&lt;br /&gt;
Pour modifier la configuration (Exemple nouveau site a ajouter pour le FOC france):&lt;br /&gt;
&lt;br /&gt;
Modifier &#039;&#039;&#039;/etc/ncg/ncg.localdb&#039;&#039;&#039; en conséquence.&lt;br /&gt;
&lt;br /&gt;
Au prealablefaire une &amp;quot;sauvegarde&amp;quot; local de la config nagios:&lt;br /&gt;
 mv /etc/nagios/wlcg.d /etc/nagios/wlcg.d.old&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Puis executer le script ncg:&lt;br /&gt;
 /usr/sbin/ncg.pl&lt;br /&gt;
&lt;br /&gt;
Et redemarrer nagios avec la nouvelle configuration:&lt;br /&gt;
 /etc/init.d/nagios restart&lt;br /&gt;
&lt;br /&gt;
Verifier que la config est OK et faire un commit dans svn &#039;&#039;&#039;svn ci&#039;&#039;&#039; pour la sauvegarde de la configuration.&lt;br /&gt;
 svn ci xxxxx&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Source d&#039;information pour NCG:&lt;br /&gt;
&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/EGEE/GridMonitoringNcgOverview&lt;br /&gt;
&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/EGEE/GridMonitoringNcgRecipes&lt;br /&gt;
&lt;br /&gt;
= bascule =&lt;br /&gt;
Si probleme hardware sur la machine=&amp;gt; bascule sur la machine virtuelle de secours (Nadia ou Jacques).&lt;br /&gt;
Faire ensuite un &#039;&#039;&#039;svn co&#039;&#039;&#039; de la config nagios pour avoir la derniere config de production.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Annexes =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Annexe0 ==&lt;br /&gt;
&lt;br /&gt;
Sur le myproxyserver, il faut que le nagios server soit &amp;quot;trusted retriever&amp;quot; et &amp;quot;authorized retrievers&amp;quot;:&lt;br /&gt;
 [cleroy@grid08 ~]$ grep cclcgvmli03 /opt/glite/etc/myproxy-server.conf&lt;br /&gt;
 trusted_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 authorized_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Sur une UI:&lt;br /&gt;
&lt;br /&gt;
 voms-proxy-init -voms ops:/ops/Role=lcgadmin&lt;br /&gt;
 myproxy-init -c 336 -k nagios_roc_fr2-ops -s myproxy.grif.fr -l nagios  -x -Z &amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-IN2P3/CN=ccnagboxli01.in2p3.fr&amp;quot;&lt;br /&gt;
&lt;br /&gt;
== Annexe 1 ==&lt;br /&gt;
 rpm -ivh http://www.sysadmin.hep.ac.uk/rpms/egee-SA1/centos5/x86_64/sa1-release-2-1.el5.noarch.rpm&lt;br /&gt;
 rpm -ivh  http://packages.sw.be/rpmforge-release/rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm&lt;br /&gt;
&lt;br /&gt;
 yum install atp&lt;br /&gt;
 yum install bouncycastle&lt;br /&gt;
 yum install broker&lt;br /&gt;
 yum install broker-cache&lt;br /&gt;
 yum install dcache-srmclient&lt;br /&gt;
 yum install dummy-ca-certs&lt;br /&gt;
 yum install egee-NAGIOS&lt;br /&gt;
 yum install egee-NAGIOS egee-NRPE&lt;br /&gt;
 yum install egee-NRPE&lt;br /&gt;
 yum install fetch-crl&lt;br /&gt;
 yum install fipscheck fipscheck-lib&lt;br /&gt;
 yum install glite-UI&lt;br /&gt;
 yum install glite-security-voms-clients&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install glite-yaim-core&lt;br /&gt;
 yum install glite-yaim-nagios&lt;br /&gt;
 yum install httpd&lt;br /&gt;
 yum install jdk&lt;br /&gt;
 yum install lcg-CA&lt;br /&gt;
 yum install lcg-CA egee-NAGIOS&lt;br /&gt;
 yum install lcg_util&lt;br /&gt;
 yum install mddb&lt;br /&gt;
 yum install msg-publish-simple&lt;br /&gt;
 yum install myproxy&lt;br /&gt;
 yum install mysql-client&lt;br /&gt;
 yum install mysql-server&lt;br /&gt;
 yum install nagios-proxy-refresh&lt;br /&gt;
 yum install perl-Config-Tiny&lt;br /&gt;
 yum install perl-DBD-MySQL&lt;br /&gt;
 yum install perl-rrdtool-1.3.8-2.el5.rf.x86_64&lt;br /&gt;
 yum install python-yaml&lt;br /&gt;
 yum install sun-jaf&lt;br /&gt;
 yum install uberftp-client&lt;br /&gt;
 yum install vdt_globus_rm_client&lt;br /&gt;
&lt;br /&gt;
 yum update glite-yaim-clients&lt;br /&gt;
 yum update glite-yaim-core&lt;br /&gt;
 yum update glite-yaim-nagios&lt;br /&gt;
 yum update mysql-server&lt;br /&gt;
 yum update perl-DBI&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
== Annexe2 ==&lt;br /&gt;
a)Mot de passe admin mysql :&lt;br /&gt;
Yum pour recupérer la derniere version de Mysql :&lt;br /&gt;
&#039;&#039;MySQL-server-community&#039;&#039;, ne pas oublier le client (pas de dépendance dessus)&lt;br /&gt;
Demmarrage de mysql avec --skip-grant-tables (pour ne pas avoir de mot de passe a rentrer)&lt;br /&gt;
 mysqld_safe --skip-grant-tables &amp;amp;&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root &lt;br /&gt;
 update user set password=PASSWORD(&amp;quot;NEW-ROOT-PASSWORD&amp;quot;) where User=&#039;root&#039;;&lt;br /&gt;
&lt;br /&gt;
b)creation des users pour le nagios regional:&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root -p&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON nagios.* TO &#039;ndouser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON atp.* TO &#039;atpuser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
== Annexe 3 ==&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /etc/ncg/ncg.localdb&lt;br /&gt;
 #&lt;br /&gt;
 # Local Rules file to modify NCG configuration&lt;br /&gt;
 #&lt;br /&gt;
 SITE!AUVERGRID&lt;br /&gt;
 SITE!CGG-LCG2&lt;br /&gt;
 SITE!ESRF&lt;br /&gt;
 SITE!GRIF&lt;br /&gt;
 SITE!IBCP-GBIO&lt;br /&gt;
 SITE!IN2P3-CC&lt;br /&gt;
 SITE!IN2P3-CC-PPS&lt;br /&gt;
 SITE!IN2P3-CC-T2&lt;br /&gt;
 SITE!IN2P3-CPPM&lt;br /&gt;
 SITE!IN2P3-IPNL&lt;br /&gt;
 SITE!IN2P3-IRES&lt;br /&gt;
 SITE!IN2P3-LAPP&lt;br /&gt;
 SITE!IN2P3-LPC&lt;br /&gt;
 SITE!IN2P3-LPSC&lt;br /&gt;
 SITE!IN2P3-SUBATECH&lt;br /&gt;
 SITE!IPSL-IPGP-LCG2&lt;br /&gt;
 SITE!M3PEC&lt;br /&gt;
 SITE!MSFG&lt;br /&gt;
 SITE!MSFG-MULTI&lt;br /&gt;
 SITE!MSFG-OPEN&lt;br /&gt;
 SITE!OBSPM&lt;br /&gt;
 SITE!PARIS-UREC-IPV6&lt;br /&gt;
 SITE!SN-UCAD&lt;br /&gt;
 SITE!ROC-FR&lt;br /&gt;
 SITE!SOLEIL&lt;br /&gt;
 SITE!StratusLab&lt;br /&gt;
 [root@cclcgvmli03 ~]#&lt;br /&gt;
 &lt;br /&gt;
== Annexe 4 ==&lt;br /&gt;
&lt;br /&gt;
 SITE_EMAIL=c.leroy@cea.fr&lt;br /&gt;
 SITE_NAME=ROC-FR&lt;br /&gt;
 RB_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 WMS_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 PX_HOST=myproxy.grif.fr&lt;br /&gt;
 BDII_HOST=topbdii.grif.fr&lt;br /&gt;
 SITE_BDII_HOST=bdii.grif.fr&lt;br /&gt;
 MON_HOST=node06.datagrid.cea.fr&lt;br /&gt;
 VOS=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 DTEAM_GROUP_ENABLE=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 VO_DTEAM_SW_DIR=$VO_SW_DIR/dteam&lt;br /&gt;
 VO_DTEAM_DEFAULT_SE=$SE_HOST&lt;br /&gt;
 VO_DTEAM_STORAGE_DIR=$CLASSIC_STORAGE_DIR/dteam&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/&#039;&lt;br /&gt;
 VO_DTEAM_VOMSES=&amp;quot;&#039;dteam lcg-voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=lcg-voms.cern.ch dteam 24&#039; &#039;dteam    voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=voms.cern.ch dteam 24&#039;&amp;quot;&lt;br /&gt;
 VO_DTEAM_VOMS_CA_DN=&amp;quot;&#039;/DC=ch/DC=cern/CN=CERN Trusted Certification Authority&#039; &#039;/DC=ch/DC=cern/CN=CERN Trusted   Certification Authority&#039;&amp;quot;&lt;br /&gt;
 NAGIOS_HOST=cclcgvmli03.in2p3.fr&lt;br /&gt;
 NAGIOS_ADMIN_DNS=&amp;quot;/O=GRID-FR/C=FR/O=CEA/OU=IRFU/CN=Christine Leroy&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=Nadia Lajili&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=LPC/CN=Emmanuel Medernach&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CPPM/CN=Juan Carlos Carranza&amp;quot;&lt;br /&gt;
 NAGIOS_NCG_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_NAGIOS_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_GOCDB_ROC_NAME=France&lt;br /&gt;
 ROC_NAME=France&lt;br /&gt;
 NCG_PROBES_TYPE=remote,native,local&lt;br /&gt;
 NCG_VO=dteam&lt;br /&gt;
 NAGIOS_MYPROXY_NAME=nagios_roc_fr2&lt;br /&gt;
 NAGIOS_MYPROXY_USER=nagios&lt;br /&gt;
 MSG_BROKER_CACHE_NETWORK=PROD&lt;br /&gt;
 NAGIOS_ROLE=roc&lt;br /&gt;
 NAGIOS_HTTPD_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_SUDO_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_CGI_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_LDAP_FILTER=GlueSiteOtherInfo=EGEE_ROC=France&lt;br /&gt;
 NAGIOS_DB_PASS=x&lt;br /&gt;
 NAGIOS_NSCA_PASS=x&lt;br /&gt;
 MYSQL_ADMIN=x&lt;br /&gt;
 ATP_DB_PASS=x&lt;br /&gt;
 MDDB_DB_PASS=x&lt;br /&gt;
 MS_DB_PASS=x&lt;br /&gt;
 MYSQL_PASSWORD=x&lt;br /&gt;
 MYEGEE_DB_PASS=x&lt;br /&gt;
&lt;br /&gt;
== Annexe 5 ==&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /opt/glite/yaim/examples/edgusers.conf&lt;br /&gt;
 11151:${DPMMGR_USER}:11151:${DPMMGR_GROUP}:DPM user:&lt;br /&gt;
 11152:${EDG_USER}:11152,11156:${EDG_GROUP},${INFOSYS_GROUP}:EDG user:${EDG_HOME_DIR}&lt;br /&gt;
 11153:${EDGINFO_USER}:11153,1156:${EDGINFO_USER},${INFOSYS_GROUP}:EDG info user:${EDGINFO_HOME_DIR}&lt;br /&gt;
 11154:${RGMA_USER}:11154,1156:${RGMA_GROUP},${INFOSYS_GROUP}:RGMA user:${INSTALL_ROOT}/glite/etc/rgma&lt;br /&gt;
 11155:${GLITE_USER}:11155:${GLITE_GROUP}:gLite user:${GLITE_HOME_DIR}&lt;br /&gt;
 11156:${BDII_USER}:11158:${BDII_GROUP}:BDII user:${BDII_HOME_DIR}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Annexe 6 ==&lt;br /&gt;
&lt;br /&gt;
Probleme rencontré sur ccnagboxli01 (arret de ypbind + rpm manquant)&lt;br /&gt;
 chown -R nagios:nagios /var/spool/pnp4nagios&lt;br /&gt;
 chown -R nagios:nagios /var/spool/msg-nagios-bridge&lt;br /&gt;
 chown root:nagios /etc/atp/atp_db.conf&lt;br /&gt;
 chown root:nagios /etc/mddb/databases.yml&lt;br /&gt;
 chown nagios:apache /var/nagios/rw&lt;br /&gt;
 chown -R nagios:apache /var/nagios/rw&lt;br /&gt;
 chown root:nagios /etc/nagios/plugins/send_to_db.ini&lt;br /&gt;
 chown -R nagios:nagios /var/cache/msg/config-cache&lt;br /&gt;
 chown -R nagios:root /var/log/mddb&lt;br /&gt;
 chown -R nagios:root /var/log/pnp4nagios&lt;br /&gt;
 chown -R nagios:root /var/log/nagios&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
  useradd -g 40011 -u 10011 nagios&lt;br /&gt;
  useradd --group mysql -u 2730 mysql&lt;br /&gt;
  useradd -g mysql -u 2730 mysql&lt;br /&gt;
&lt;br /&gt;
   groupadd -g 40010 nagiosmaster&lt;br /&gt;
   groupadd -g 146 leftuser&lt;br /&gt;
&lt;br /&gt;
 yum install glite-security-voms-api-c-1.8.12-2.sl5.x86_64&lt;br /&gt;
 yum update perl-Net-SSLeay&lt;br /&gt;
 yum update perl-IO-Socket-SSL-1.01-1.fc6.noarch&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install lcg_util-1.7.6-1.sl5.x86_64&lt;br /&gt;
 yum install GFAL-client-1.11.8-2.sl5.x86_64 GFAL-client-1.11.8-2.sl5.i386&lt;br /&gt;
 yum install CGSI_gSOAP_2.7-1.3.3-1.sl5.x86_64&lt;br /&gt;
 yum install LFC-interfaces-1.7.3-1sec.sl5.x86_64 LFC-client-1.7.3-1sec.sl5.x86_64 lcg-dm-common-1.7.3-1sec.sl5.x86_64&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5767</id>
		<title>Nagios regional</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5767"/>
		<updated>2010-04-06T11:34:26Z</updated>

		<summary type="html">&lt;p&gt;LEROY: /* Mise à jour */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Installation d&#039;une NOGIOS box pour le ROC France&lt;br /&gt;
&lt;br /&gt;
= 1)	Installation de base : =&lt;br /&gt;
a.	Machine installée par les sysadmin du CC : OS + VOBOX + certificat + pas dans les NIS&lt;br /&gt;
&lt;br /&gt;
b.	Accessible via gsissh (port 1975)&lt;br /&gt;
&lt;br /&gt;
= 2)	Action faite au préalable : =&lt;br /&gt;
a.	Faire la demande pour que la machine soit autorisée à récupérer les SAM tests : https://gus.fzk.de/ws/ticket_info.php?ticket=55132&lt;br /&gt;
&lt;br /&gt;
b.	Autoriser la nagios box à récupérer les proxy en mode « retrieval », et stocker un proxy depuis une UI récuperable par la nagiosBOX voir  [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe0 Annexe0]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
c.	Certificat utilisé pour :&lt;br /&gt;
&lt;br /&gt;
i.	                       Access to GOCDB PI for ROCS GOCDB PI level 2 required &lt;br /&gt;
&lt;br /&gt;
ii.	                       Recuperation de proxy pour les sondes locales&lt;br /&gt;
&lt;br /&gt;
d. s&#039;inscrire dans la mailing liste: regional-nagios-admins@cern.ch (très réactive)&lt;br /&gt;
&lt;br /&gt;
= 3)	Installation de Nagios =&lt;br /&gt;
Reference : https://twiki.cern.ch/twiki/bin/view/EGEE/GridMonitoringNcgYaim&lt;br /&gt;
== Installation des packages via yum, Ajout des repos suivant ==&lt;br /&gt;
 a.	mirrors-rpmforge (rpm rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm)&lt;br /&gt;
 b.	rpmforge-testing.repo&lt;br /&gt;
 c.	rpmforge.repo&lt;br /&gt;
 d.	glite-UI.repo&lt;br /&gt;
 e.	sa1-centos5-release.repo (rpm:  sa1-release-2-1.el5.noarch.rpm)&lt;br /&gt;
 f.	glite-BDII.repo&lt;br /&gt;
&lt;br /&gt;
Problèmes de dépendances rencontrées si besoin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe1 Annexe1] (mais j’avais dû oublier de faire un : yum install egee-NAGIOS)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Installation subversion ==&lt;br /&gt;
Certain fichier de config sont a recuperer via svn au CERN:&lt;br /&gt;
&lt;br /&gt;
 yum install subversion&lt;br /&gt;
 svn co http://svnweb.cern.ch/guest/sam/trunk/roc-config&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 cp /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm.orig&lt;br /&gt;
 cp roc-config/Hash.pm_55_ALL_CRIT /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm&lt;br /&gt;
&lt;br /&gt;
== Mysql ==&lt;br /&gt;
&lt;br /&gt;
1.	Installer la dernière version de Mysql (server + client) ; &lt;br /&gt;
&lt;br /&gt;
2.	configurer le mot de passe admin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2a] ;&lt;br /&gt;
&lt;br /&gt;
3.	Configurer les users utiles à la nagios Box se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2b] ;&lt;br /&gt;
&lt;br /&gt;
== Configuration via yaim et NCG (en 2 fois)==&lt;br /&gt;
&lt;br /&gt;
1.	Remplir /etc/ncg/ncg.localdb avec la liste des sites se referer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe3 Annexe3]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
2.	Remplir le /opt/glite/yaim/site-info.def voir [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe4 Annexe4] ;&lt;br /&gt;
&lt;br /&gt;
3.	groupadd nagios&lt;br /&gt;
&lt;br /&gt;
4.	modif des uids/gids : /opt/glite/yaim/examples/edgusers.conf [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe5 Annexe5]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
5.	lancement de la configuration automatique via yaim (All On One Box) :&lt;br /&gt;
 	&lt;br /&gt;
 	/opt/glite/yaim/bin/yaim -s /opt/glite/yaim/site-info.def -c -n glite-UI -n glite-NAGIOS&lt;br /&gt;
&lt;br /&gt;
6.	lancement de la configuration via NCG (All On One Box) :&lt;br /&gt;
&lt;br /&gt;
 /usr/sbin/ncg.pl&lt;br /&gt;
&lt;br /&gt;
.....MODIFICATION importante:: voir: https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
La partie:&lt;br /&gt;
#  Configure manually /etc/ncg/ncg.conf (Template can be found here: ncg.conf.template: )&lt;br /&gt;
- Switch off automatic generation of ncg.conf by YAIM (NAGIOS_NCG_ENABLE_CONFIG&amp;quot;=&amp;quot;false&amp;quot;)&lt;br /&gt;
- Take ncg.conf.template and copy it to /etc/ncg/ncg.conf&lt;br /&gt;
     - Set $ROC_NAME$&lt;br /&gt;
     - Set $YOUR_MYPROXY_SERVER$ (e.g. myproxy-fts.cern.ch)&lt;br /&gt;
     - Set $MYPROXY_NAME$ (e.g.: NagiosRetrieve-sam-ap-roc.cern.ch)&lt;br /&gt;
     - Set $NAGIOS_ROLE$ (e.g.: ngi, roc)&lt;br /&gt;
# Take Hash.pm file that we are currently using at the CERN ROC Nagios boxes. In this file, we have removed the metrics that do not belong to the SAM_Critical profile, so only the metrics defined at ROC_SAM_critical are configured, and not relevant services like SRMv1 are commented out. The file is located under /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm &lt;br /&gt;
&lt;br /&gt;
Pour éviter d&#039;avoir des sondes inappropriés.&lt;br /&gt;
&lt;br /&gt;
== Tuning the configuration ==&lt;br /&gt;
&lt;br /&gt;
1.	Verifier  dans /etc/sysconfig/nagios:&lt;br /&gt;
 LD_LIBRARY_PATH=/opt/classads/lib64:/opt/glite/lib64:/opt/globus/lib:/opt/c-ares/lib:/opt/classads/lib64  &lt;br /&gt;
&lt;br /&gt;
2.	Desactiver les notifications, dans les fichiers de conf: &lt;br /&gt;
 a.      /etc/nagios/nagios.cfg, désactiver les notifications:enable_notifications=0 ;log_notifications=0&lt;br /&gt;
 b.	 /etc/nagios/wlcg.d/host.templates.cfg&lt;br /&gt;
 c.	 /etc/nagios/wlcg.d/service.templates.cfg&lt;br /&gt;
&lt;br /&gt;
4.	N’autoriser que les dteam/France à visualiser notre interface nagios : modifier le fichier : &lt;br /&gt;
 /etc/voms2htpasswd.conf, avec : vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&lt;br /&gt;
Plus utile site le site-info.def est défini correctement:&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&#039;&lt;br /&gt;
&lt;br /&gt;
== ActiveMQ ==&lt;br /&gt;
 /usr/sbin/msg-to-queue --prefix /queue/grid.probe.metricOutput.EGEE.a635834332381123c8b296d02b682f8f --broker-uri stomp://prod-grid-msg.cern.ch:6163&lt;br /&gt;
 &lt;br /&gt;
[root@cclcgvmli03 cron.hourly]# cat check_msg-to-queue.sh&lt;br /&gt;
&lt;br /&gt;
Verifier les messages:&lt;br /&gt;
 /usr/libexec/grid-monitoring/plugins/nagios/recv_from_queue -v &lt;br /&gt;
&lt;br /&gt;
faire une update de perl-GridMon &lt;br /&gt;
 The problem here is in the message handler &lt;br /&gt;
 (/usr/lib/perl5/vendor_perl/5.8.8/GridMon/MsgHandler/MetricOutput.pm). &lt;br /&gt;
 Probe on WN reports hostname localhost.localdomain and serviceURI CE &lt;br /&gt;
 hostname. In the previous version message handler first checked hostname &lt;br /&gt;
 value and then serviceURI. That is the reason why Christine is seeing &lt;br /&gt;
 results for localhost.localdomain. However, we fixed this and the latest &lt;br /&gt;
 version (1.0.34) parses messages correctly.&lt;br /&gt;
&lt;br /&gt;
 yum update perl-GridMon&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== Systeme d&#039;information ==&lt;br /&gt;
La nagios Box doit etre enregistré dans la GOCDB &lt;br /&gt;
et publié dans le site-BDII:&lt;br /&gt;
 ldapsearch -x -H ldap://ccnagboxli01.in2p3.fr:2170 -b &#039;Mds-vo-name=resource,o=Grid&#039;&lt;br /&gt;
&lt;br /&gt;
= validation =&lt;br /&gt;
&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
&lt;br /&gt;
now you should publish your Nagios in your Site BDII&lt;br /&gt;
And we should declare the node in the GOCDB: Regional-NAGIOS ou National-Nagios, a determiner&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
liste des sondes a valider: d&#039;après: https://twiki.cern.ch/twiki/bin/view/LCG/SAMCriticalTestsForCODs&lt;br /&gt;
&lt;br /&gt;
== Services grilles ==&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Type de Noeuds&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Valid (Y or N)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
APEL&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Pas de métric ?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
BDII (site and TOP)&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
- Probleme identifié pour la variable LCG_GFAL_INFOSYS quand c&#039;est une liste (CE lpnce.in2p3.fr):&lt;br /&gt;
LCG_GFAL_INFOSYS=topbdii.grif.fr:2170,cclcgtopbdii01.in2p3.fr:2170,lapp-bdii01.in2p3.fr:2170&lt;br /&gt;
&lt;br /&gt;
-Tout le mecanisme de recuperation des outputs n&#039;est pas compris mais globalement on a les meme resultat que celui du CERN&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CREAMCE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: idem CERN nagiosBOX (mais sonde Brokerinfo toujours en erreur: probleme connu: https://savannah.cern.ch/bugs/?61322)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
FTS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y and NO: For the check_command those options should be added: &lt;br /&gt;
--cert /etc/nagios/globus/hostcert.pem   --key /etc/nagios/globus/hostkey.pem  -x $USER2$ (this should be fixed in the next release)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
gRB/WMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y:(certificate lifetime only)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_C&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: mais il faudrait peut etre demander au site de supporter la VO ops pour que leur LFC soit testé (lfc-ls et lfc-ping)?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_L&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: mais il faudrait peut etre demander au site de supporter la VO ops pour que leur LFC soit testé (lfc-ls et lfc-ping)?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MPI&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
em&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MyProxy&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
em&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RB&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nobody&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Service Deprecated. Does NOT apply in Nagios&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RGMA / MON&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y (certificate lifetime only)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
&lt;br /&gt;
SRMv2&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOBOX&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
em&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Services nagios BOX ==&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;7%&amp;quot; |&lt;br /&gt;
Services&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Valid (Y or N)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.CAdist-Version&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.CertLifetime&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.GridProxy-Get-ops&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.GridProxy-Valid-ops&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.ATPSync&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.CheckConfig&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.ImportGocdbDowntimes &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.MDDBSync &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.RecvFromQueue&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.SendToMetricStore&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.SendToMsg&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.nagios.DiskCheck &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.nagios.ProcessCrond &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.nagios.ProcessMsgToQueue &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.nagios.ProcessNpcd&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.sam.CE-JobMonit-ops &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.sam.CREAMCE-JobMonit-ops &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.sam.mpi.CE-JobMonit-ops&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.MyProxy-ProxyLifetime-ops&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
= Mise à jour =&lt;br /&gt;
Pour modifier la configuration (Exemple nouveau site a ajouter pour le FOC france):&lt;br /&gt;
&lt;br /&gt;
Modifier &#039;&#039;&#039;/etc/ncg/ncg.localdb&#039;&#039;&#039; en conséquence.&lt;br /&gt;
&lt;br /&gt;
Au prealablefaire une &amp;quot;sauvegarde&amp;quot; local de la config nagios:&lt;br /&gt;
 mv /etc/nagios/wlcg.d /etc/nagios/wlcg.d.old&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Puis executer le script ncg:&lt;br /&gt;
 /usr/sbin/ncg.pl&lt;br /&gt;
&lt;br /&gt;
Et redemarrer nagios avec la nouvelle configuration:&lt;br /&gt;
 /etc/init.d/nagios restart&lt;br /&gt;
&lt;br /&gt;
Verifier que la config est OK et faire un commit dans svn &#039;&#039;&#039;svn ci&#039;&#039;&#039; pour la sauvegarde de la configuration.&lt;br /&gt;
 svn ci xxxxx&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Source d&#039;information pour NCG:&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/EGEE/GridMonitoringNcgOverview&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/EGEE/GridMonitoringNcgRecipes&lt;br /&gt;
&lt;br /&gt;
= bascule =&lt;br /&gt;
Si probleme hardware sur la machine=&amp;gt; bascule sur la machine virtuelle de secours (Nadia ou Jacques).&lt;br /&gt;
Faire ensuite un &#039;&#039;&#039;svn co&#039;&#039;&#039; de la config nagios pour avoir la derniere config de production.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Annexes =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Annexe0 ==&lt;br /&gt;
&lt;br /&gt;
Sur le myproxyserver, il faut que le nagios server soit &amp;quot;trusted retriever&amp;quot; et &amp;quot;authorized retrievers&amp;quot;:&lt;br /&gt;
 [cleroy@grid08 ~]$ grep cclcgvmli03 /opt/glite/etc/myproxy-server.conf&lt;br /&gt;
 trusted_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 authorized_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Sur une UI:&lt;br /&gt;
&lt;br /&gt;
 voms-proxy-init -voms ops:/ops/Role=lcgadmin&lt;br /&gt;
 myproxy-init -c 336 -k nagios_roc_fr2-ops -s myproxy.grif.fr -l nagios  -x -Z &amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-IN2P3/CN=ccnagboxli01.in2p3.fr&amp;quot;&lt;br /&gt;
&lt;br /&gt;
== Annexe 1 ==&lt;br /&gt;
 rpm -ivh http://www.sysadmin.hep.ac.uk/rpms/egee-SA1/centos5/x86_64/sa1-release-2-1.el5.noarch.rpm&lt;br /&gt;
 rpm -ivh  http://packages.sw.be/rpmforge-release/rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm&lt;br /&gt;
&lt;br /&gt;
 yum install atp&lt;br /&gt;
 yum install bouncycastle&lt;br /&gt;
 yum install broker&lt;br /&gt;
 yum install broker-cache&lt;br /&gt;
 yum install dcache-srmclient&lt;br /&gt;
 yum install dummy-ca-certs&lt;br /&gt;
 yum install egee-NAGIOS&lt;br /&gt;
 yum install egee-NAGIOS egee-NRPE&lt;br /&gt;
 yum install egee-NRPE&lt;br /&gt;
 yum install fetch-crl&lt;br /&gt;
 yum install fipscheck fipscheck-lib&lt;br /&gt;
 yum install glite-UI&lt;br /&gt;
 yum install glite-security-voms-clients&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install glite-yaim-core&lt;br /&gt;
 yum install glite-yaim-nagios&lt;br /&gt;
 yum install httpd&lt;br /&gt;
 yum install jdk&lt;br /&gt;
 yum install lcg-CA&lt;br /&gt;
 yum install lcg-CA egee-NAGIOS&lt;br /&gt;
 yum install lcg_util&lt;br /&gt;
 yum install mddb&lt;br /&gt;
 yum install msg-publish-simple&lt;br /&gt;
 yum install myproxy&lt;br /&gt;
 yum install mysql-client&lt;br /&gt;
 yum install mysql-server&lt;br /&gt;
 yum install nagios-proxy-refresh&lt;br /&gt;
 yum install perl-Config-Tiny&lt;br /&gt;
 yum install perl-DBD-MySQL&lt;br /&gt;
 yum install perl-rrdtool-1.3.8-2.el5.rf.x86_64&lt;br /&gt;
 yum install python-yaml&lt;br /&gt;
 yum install sun-jaf&lt;br /&gt;
 yum install uberftp-client&lt;br /&gt;
 yum install vdt_globus_rm_client&lt;br /&gt;
&lt;br /&gt;
 yum update glite-yaim-clients&lt;br /&gt;
 yum update glite-yaim-core&lt;br /&gt;
 yum update glite-yaim-nagios&lt;br /&gt;
 yum update mysql-server&lt;br /&gt;
 yum update perl-DBI&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
== Annexe2 ==&lt;br /&gt;
a)Mot de passe admin mysql :&lt;br /&gt;
Yum pour recupérer la derniere version de Mysql :&lt;br /&gt;
&#039;&#039;MySQL-server-community&#039;&#039;, ne pas oublier le client (pas de dépendance dessus)&lt;br /&gt;
Demmarrage de mysql avec --skip-grant-tables (pour ne pas avoir de mot de passe a rentrer)&lt;br /&gt;
 mysqld_safe --skip-grant-tables &amp;amp;&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root &lt;br /&gt;
 update user set password=PASSWORD(&amp;quot;NEW-ROOT-PASSWORD&amp;quot;) where User=&#039;root&#039;;&lt;br /&gt;
&lt;br /&gt;
b)creation des users pour le nagios regional:&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root -p&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON nagios.* TO &#039;ndouser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON atp.* TO &#039;atpuser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
== Annexe 3 ==&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /etc/ncg/ncg.localdb&lt;br /&gt;
 #&lt;br /&gt;
 # Local Rules file to modify NCG configuration&lt;br /&gt;
 #&lt;br /&gt;
 SITE!AUVERGRID&lt;br /&gt;
 SITE!CGG-LCG2&lt;br /&gt;
 SITE!ESRF&lt;br /&gt;
 SITE!GRIF&lt;br /&gt;
 SITE!IBCP-GBIO&lt;br /&gt;
 SITE!IN2P3-CC&lt;br /&gt;
 SITE!IN2P3-CC-PPS&lt;br /&gt;
 SITE!IN2P3-CC-T2&lt;br /&gt;
 SITE!IN2P3-CPPM&lt;br /&gt;
 SITE!IN2P3-IPNL&lt;br /&gt;
 SITE!IN2P3-IRES&lt;br /&gt;
 SITE!IN2P3-LAPP&lt;br /&gt;
 SITE!IN2P3-LPC&lt;br /&gt;
 SITE!IN2P3-LPSC&lt;br /&gt;
 SITE!IN2P3-SUBATECH&lt;br /&gt;
 SITE!IPSL-IPGP-LCG2&lt;br /&gt;
 SITE!M3PEC&lt;br /&gt;
 SITE!MSFG&lt;br /&gt;
 SITE!MSFG-MULTI&lt;br /&gt;
 SITE!MSFG-OPEN&lt;br /&gt;
 SITE!OBSPM&lt;br /&gt;
 SITE!PARIS-UREC-IPV6&lt;br /&gt;
 SITE!SN-UCAD&lt;br /&gt;
 SITE!ROC-FR&lt;br /&gt;
 SITE!SOLEIL&lt;br /&gt;
 SITE!StratusLab&lt;br /&gt;
 [root@cclcgvmli03 ~]#&lt;br /&gt;
 &lt;br /&gt;
== Annexe 4 ==&lt;br /&gt;
&lt;br /&gt;
 SITE_EMAIL=c.leroy@cea.fr&lt;br /&gt;
 SITE_NAME=ROC-FR&lt;br /&gt;
 RB_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 WMS_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 PX_HOST=myproxy.grif.fr&lt;br /&gt;
 BDII_HOST=topbdii.grif.fr&lt;br /&gt;
 SITE_BDII_HOST=bdii.grif.fr&lt;br /&gt;
 MON_HOST=node06.datagrid.cea.fr&lt;br /&gt;
 VOS=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 DTEAM_GROUP_ENABLE=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 VO_DTEAM_SW_DIR=$VO_SW_DIR/dteam&lt;br /&gt;
 VO_DTEAM_DEFAULT_SE=$SE_HOST&lt;br /&gt;
 VO_DTEAM_STORAGE_DIR=$CLASSIC_STORAGE_DIR/dteam&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/&#039;&lt;br /&gt;
 VO_DTEAM_VOMSES=&amp;quot;&#039;dteam lcg-voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=lcg-voms.cern.ch dteam 24&#039; &#039;dteam    voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=voms.cern.ch dteam 24&#039;&amp;quot;&lt;br /&gt;
 VO_DTEAM_VOMS_CA_DN=&amp;quot;&#039;/DC=ch/DC=cern/CN=CERN Trusted Certification Authority&#039; &#039;/DC=ch/DC=cern/CN=CERN Trusted   Certification Authority&#039;&amp;quot;&lt;br /&gt;
 NAGIOS_HOST=cclcgvmli03.in2p3.fr&lt;br /&gt;
 NAGIOS_ADMIN_DNS=&amp;quot;/O=GRID-FR/C=FR/O=CEA/OU=IRFU/CN=Christine Leroy&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=Nadia Lajili&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=LPC/CN=Emmanuel Medernach&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CPPM/CN=Juan Carlos Carranza&amp;quot;&lt;br /&gt;
 NAGIOS_NCG_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_NAGIOS_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_GOCDB_ROC_NAME=France&lt;br /&gt;
 ROC_NAME=France&lt;br /&gt;
 NCG_PROBES_TYPE=remote,native,local&lt;br /&gt;
 NCG_VO=dteam&lt;br /&gt;
 NAGIOS_MYPROXY_NAME=nagios_roc_fr2&lt;br /&gt;
 NAGIOS_MYPROXY_USER=nagios&lt;br /&gt;
 MSG_BROKER_CACHE_NETWORK=PROD&lt;br /&gt;
 NAGIOS_ROLE=roc&lt;br /&gt;
 NAGIOS_HTTPD_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_SUDO_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_CGI_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_LDAP_FILTER=GlueSiteOtherInfo=EGEE_ROC=France&lt;br /&gt;
 NAGIOS_DB_PASS=x&lt;br /&gt;
 NAGIOS_NSCA_PASS=x&lt;br /&gt;
 MYSQL_ADMIN=x&lt;br /&gt;
 ATP_DB_PASS=x&lt;br /&gt;
 MDDB_DB_PASS=x&lt;br /&gt;
 MS_DB_PASS=x&lt;br /&gt;
 MYSQL_PASSWORD=x&lt;br /&gt;
 MYEGEE_DB_PASS=x&lt;br /&gt;
&lt;br /&gt;
== Annexe 5 ==&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /opt/glite/yaim/examples/edgusers.conf&lt;br /&gt;
 11151:${DPMMGR_USER}:11151:${DPMMGR_GROUP}:DPM user:&lt;br /&gt;
 11152:${EDG_USER}:11152,11156:${EDG_GROUP},${INFOSYS_GROUP}:EDG user:${EDG_HOME_DIR}&lt;br /&gt;
 11153:${EDGINFO_USER}:11153,1156:${EDGINFO_USER},${INFOSYS_GROUP}:EDG info user:${EDGINFO_HOME_DIR}&lt;br /&gt;
 11154:${RGMA_USER}:11154,1156:${RGMA_GROUP},${INFOSYS_GROUP}:RGMA user:${INSTALL_ROOT}/glite/etc/rgma&lt;br /&gt;
 11155:${GLITE_USER}:11155:${GLITE_GROUP}:gLite user:${GLITE_HOME_DIR}&lt;br /&gt;
 11156:${BDII_USER}:11158:${BDII_GROUP}:BDII user:${BDII_HOME_DIR}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Annexe 6 ==&lt;br /&gt;
&lt;br /&gt;
Probleme rencontré sur ccnagboxli01 (arret de ypbind + rpm manquant)&lt;br /&gt;
 chown -R nagios:nagios /var/spool/pnp4nagios&lt;br /&gt;
 chown -R nagios:nagios /var/spool/msg-nagios-bridge&lt;br /&gt;
 chown root:nagios /etc/atp/atp_db.conf&lt;br /&gt;
 chown root:nagios /etc/mddb/databases.yml&lt;br /&gt;
 chown nagios:apache /var/nagios/rw&lt;br /&gt;
 chown -R nagios:apache /var/nagios/rw&lt;br /&gt;
 chown root:nagios /etc/nagios/plugins/send_to_db.ini&lt;br /&gt;
 chown -R nagios:nagios /var/cache/msg/config-cache&lt;br /&gt;
 chown -R nagios:root /var/log/mddb&lt;br /&gt;
 chown -R nagios:root /var/log/pnp4nagios&lt;br /&gt;
 chown -R nagios:root /var/log/nagios&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
  useradd -g 40011 -u 10011 nagios&lt;br /&gt;
  useradd --group mysql -u 2730 mysql&lt;br /&gt;
  useradd -g mysql -u 2730 mysql&lt;br /&gt;
&lt;br /&gt;
   groupadd -g 40010 nagiosmaster&lt;br /&gt;
   groupadd -g 146 leftuser&lt;br /&gt;
&lt;br /&gt;
 yum install glite-security-voms-api-c-1.8.12-2.sl5.x86_64&lt;br /&gt;
 yum update perl-Net-SSLeay&lt;br /&gt;
 yum update perl-IO-Socket-SSL-1.01-1.fc6.noarch&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install lcg_util-1.7.6-1.sl5.x86_64&lt;br /&gt;
 yum install GFAL-client-1.11.8-2.sl5.x86_64 GFAL-client-1.11.8-2.sl5.i386&lt;br /&gt;
 yum install CGSI_gSOAP_2.7-1.3.3-1.sl5.x86_64&lt;br /&gt;
 yum install LFC-interfaces-1.7.3-1sec.sl5.x86_64 LFC-client-1.7.3-1sec.sl5.x86_64 lcg-dm-common-1.7.3-1sec.sl5.x86_64&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5766</id>
		<title>Nagios regional</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5766"/>
		<updated>2010-04-06T11:29:47Z</updated>

		<summary type="html">&lt;p&gt;LEROY: /* Services nagios BOX */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Installation d&#039;une NOGIOS box pour le ROC France&lt;br /&gt;
&lt;br /&gt;
= 1)	Installation de base : =&lt;br /&gt;
a.	Machine installée par les sysadmin du CC : OS + VOBOX + certificat + pas dans les NIS&lt;br /&gt;
&lt;br /&gt;
b.	Accessible via gsissh (port 1975)&lt;br /&gt;
&lt;br /&gt;
= 2)	Action faite au préalable : =&lt;br /&gt;
a.	Faire la demande pour que la machine soit autorisée à récupérer les SAM tests : https://gus.fzk.de/ws/ticket_info.php?ticket=55132&lt;br /&gt;
&lt;br /&gt;
b.	Autoriser la nagios box à récupérer les proxy en mode « retrieval », et stocker un proxy depuis une UI récuperable par la nagiosBOX voir  [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe0 Annexe0]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
c.	Certificat utilisé pour :&lt;br /&gt;
&lt;br /&gt;
i.	                       Access to GOCDB PI for ROCS GOCDB PI level 2 required &lt;br /&gt;
&lt;br /&gt;
ii.	                       Recuperation de proxy pour les sondes locales&lt;br /&gt;
&lt;br /&gt;
d. s&#039;inscrire dans la mailing liste: regional-nagios-admins@cern.ch (très réactive)&lt;br /&gt;
&lt;br /&gt;
= 3)	Installation de Nagios =&lt;br /&gt;
Reference : https://twiki.cern.ch/twiki/bin/view/EGEE/GridMonitoringNcgYaim&lt;br /&gt;
== Installation des packages via yum, Ajout des repos suivant ==&lt;br /&gt;
 a.	mirrors-rpmforge (rpm rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm)&lt;br /&gt;
 b.	rpmforge-testing.repo&lt;br /&gt;
 c.	rpmforge.repo&lt;br /&gt;
 d.	glite-UI.repo&lt;br /&gt;
 e.	sa1-centos5-release.repo (rpm:  sa1-release-2-1.el5.noarch.rpm)&lt;br /&gt;
 f.	glite-BDII.repo&lt;br /&gt;
&lt;br /&gt;
Problèmes de dépendances rencontrées si besoin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe1 Annexe1] (mais j’avais dû oublier de faire un : yum install egee-NAGIOS)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Installation subversion ==&lt;br /&gt;
Certain fichier de config sont a recuperer via svn au CERN:&lt;br /&gt;
&lt;br /&gt;
 yum install subversion&lt;br /&gt;
 svn co http://svnweb.cern.ch/guest/sam/trunk/roc-config&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 cp /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm.orig&lt;br /&gt;
 cp roc-config/Hash.pm_55_ALL_CRIT /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm&lt;br /&gt;
&lt;br /&gt;
== Mysql ==&lt;br /&gt;
&lt;br /&gt;
1.	Installer la dernière version de Mysql (server + client) ; &lt;br /&gt;
&lt;br /&gt;
2.	configurer le mot de passe admin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2a] ;&lt;br /&gt;
&lt;br /&gt;
3.	Configurer les users utiles à la nagios Box se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2b] ;&lt;br /&gt;
&lt;br /&gt;
== Configuration via yaim et NCG (en 2 fois)==&lt;br /&gt;
&lt;br /&gt;
1.	Remplir /etc/ncg/ncg.localdb avec la liste des sites se referer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe3 Annexe3]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
2.	Remplir le /opt/glite/yaim/site-info.def voir [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe4 Annexe4] ;&lt;br /&gt;
&lt;br /&gt;
3.	groupadd nagios&lt;br /&gt;
&lt;br /&gt;
4.	modif des uids/gids : /opt/glite/yaim/examples/edgusers.conf [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe5 Annexe5]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
5.	lancement de la configuration automatique via yaim (All On One Box) :&lt;br /&gt;
 	&lt;br /&gt;
 	/opt/glite/yaim/bin/yaim -s /opt/glite/yaim/site-info.def -c -n glite-UI -n glite-NAGIOS&lt;br /&gt;
&lt;br /&gt;
6.	lancement de la configuration via NCG (All On One Box) :&lt;br /&gt;
&lt;br /&gt;
 /usr/sbin/ncg.pl&lt;br /&gt;
&lt;br /&gt;
.....MODIFICATION importante:: voir: https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
La partie:&lt;br /&gt;
#  Configure manually /etc/ncg/ncg.conf (Template can be found here: ncg.conf.template: )&lt;br /&gt;
- Switch off automatic generation of ncg.conf by YAIM (NAGIOS_NCG_ENABLE_CONFIG&amp;quot;=&amp;quot;false&amp;quot;)&lt;br /&gt;
- Take ncg.conf.template and copy it to /etc/ncg/ncg.conf&lt;br /&gt;
     - Set $ROC_NAME$&lt;br /&gt;
     - Set $YOUR_MYPROXY_SERVER$ (e.g. myproxy-fts.cern.ch)&lt;br /&gt;
     - Set $MYPROXY_NAME$ (e.g.: NagiosRetrieve-sam-ap-roc.cern.ch)&lt;br /&gt;
     - Set $NAGIOS_ROLE$ (e.g.: ngi, roc)&lt;br /&gt;
# Take Hash.pm file that we are currently using at the CERN ROC Nagios boxes. In this file, we have removed the metrics that do not belong to the SAM_Critical profile, so only the metrics defined at ROC_SAM_critical are configured, and not relevant services like SRMv1 are commented out. The file is located under /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm &lt;br /&gt;
&lt;br /&gt;
Pour éviter d&#039;avoir des sondes inappropriés.&lt;br /&gt;
&lt;br /&gt;
== Tuning the configuration ==&lt;br /&gt;
&lt;br /&gt;
1.	Verifier  dans /etc/sysconfig/nagios:&lt;br /&gt;
 LD_LIBRARY_PATH=/opt/classads/lib64:/opt/glite/lib64:/opt/globus/lib:/opt/c-ares/lib:/opt/classads/lib64  &lt;br /&gt;
&lt;br /&gt;
2.	Desactiver les notifications, dans les fichiers de conf: &lt;br /&gt;
 a.      /etc/nagios/nagios.cfg, désactiver les notifications:enable_notifications=0 ;log_notifications=0&lt;br /&gt;
 b.	 /etc/nagios/wlcg.d/host.templates.cfg&lt;br /&gt;
 c.	 /etc/nagios/wlcg.d/service.templates.cfg&lt;br /&gt;
&lt;br /&gt;
4.	N’autoriser que les dteam/France à visualiser notre interface nagios : modifier le fichier : &lt;br /&gt;
 /etc/voms2htpasswd.conf, avec : vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&lt;br /&gt;
Plus utile site le site-info.def est défini correctement:&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&#039;&lt;br /&gt;
&lt;br /&gt;
== ActiveMQ ==&lt;br /&gt;
 /usr/sbin/msg-to-queue --prefix /queue/grid.probe.metricOutput.EGEE.a635834332381123c8b296d02b682f8f --broker-uri stomp://prod-grid-msg.cern.ch:6163&lt;br /&gt;
 &lt;br /&gt;
[root@cclcgvmli03 cron.hourly]# cat check_msg-to-queue.sh&lt;br /&gt;
&lt;br /&gt;
Verifier les messages:&lt;br /&gt;
 /usr/libexec/grid-monitoring/plugins/nagios/recv_from_queue -v &lt;br /&gt;
&lt;br /&gt;
faire une update de perl-GridMon &lt;br /&gt;
 The problem here is in the message handler &lt;br /&gt;
 (/usr/lib/perl5/vendor_perl/5.8.8/GridMon/MsgHandler/MetricOutput.pm). &lt;br /&gt;
 Probe on WN reports hostname localhost.localdomain and serviceURI CE &lt;br /&gt;
 hostname. In the previous version message handler first checked hostname &lt;br /&gt;
 value and then serviceURI. That is the reason why Christine is seeing &lt;br /&gt;
 results for localhost.localdomain. However, we fixed this and the latest &lt;br /&gt;
 version (1.0.34) parses messages correctly.&lt;br /&gt;
&lt;br /&gt;
 yum update perl-GridMon&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== Systeme d&#039;information ==&lt;br /&gt;
La nagios Box doit etre enregistré dans la GOCDB &lt;br /&gt;
et publié dans le site-BDII:&lt;br /&gt;
 ldapsearch -x -H ldap://ccnagboxli01.in2p3.fr:2170 -b &#039;Mds-vo-name=resource,o=Grid&#039;&lt;br /&gt;
&lt;br /&gt;
= validation =&lt;br /&gt;
&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
&lt;br /&gt;
now you should publish your Nagios in your Site BDII&lt;br /&gt;
And we should declare the node in the GOCDB: Regional-NAGIOS ou National-Nagios, a determiner&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
liste des sondes a valider: d&#039;après: https://twiki.cern.ch/twiki/bin/view/LCG/SAMCriticalTestsForCODs&lt;br /&gt;
&lt;br /&gt;
== Services grilles ==&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Type de Noeuds&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Valid (Y or N)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
APEL&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Pas de métric ?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
BDII (site and TOP)&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
- Probleme identifié pour la variable LCG_GFAL_INFOSYS quand c&#039;est une liste (CE lpnce.in2p3.fr):&lt;br /&gt;
LCG_GFAL_INFOSYS=topbdii.grif.fr:2170,cclcgtopbdii01.in2p3.fr:2170,lapp-bdii01.in2p3.fr:2170&lt;br /&gt;
&lt;br /&gt;
-Tout le mecanisme de recuperation des outputs n&#039;est pas compris mais globalement on a les meme resultat que celui du CERN&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CREAMCE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: idem CERN nagiosBOX (mais sonde Brokerinfo toujours en erreur: probleme connu: https://savannah.cern.ch/bugs/?61322)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
FTS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y and NO: For the check_command those options should be added: &lt;br /&gt;
--cert /etc/nagios/globus/hostcert.pem   --key /etc/nagios/globus/hostkey.pem  -x $USER2$ (this should be fixed in the next release)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
gRB/WMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y:(certificate lifetime only)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_C&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: mais il faudrait peut etre demander au site de supporter la VO ops pour que leur LFC soit testé (lfc-ls et lfc-ping)?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_L&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: mais il faudrait peut etre demander au site de supporter la VO ops pour que leur LFC soit testé (lfc-ls et lfc-ping)?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MPI&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
em&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MyProxy&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
em&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RB&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nobody&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Service Deprecated. Does NOT apply in Nagios&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RGMA / MON&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y (certificate lifetime only)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
&lt;br /&gt;
SRMv2&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOBOX&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
em&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Services nagios BOX ==&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;7%&amp;quot; |&lt;br /&gt;
Services&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Valid (Y or N)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.CAdist-Version&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.CertLifetime&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.GridProxy-Get-ops&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.GridProxy-Valid-ops&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.ATPSync&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.CheckConfig&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.ImportGocdbDowntimes &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.MDDBSync &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.RecvFromQueue&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.SendToMetricStore&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.SendToMsg&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.nagios.DiskCheck &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.nagios.ProcessCrond &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.nagios.ProcessMsgToQueue &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.nagios.ProcessNpcd&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.sam.CE-JobMonit-ops &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.sam.CREAMCE-JobMonit-ops &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.sam.mpi.CE-JobMonit-ops&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.MyProxy-ProxyLifetime-ops&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
= Mise à jour =&lt;br /&gt;
Pour modifier la configuration (Exemple nouveau site a ajouter pour le FOC france):&lt;br /&gt;
&lt;br /&gt;
Modifier &#039;&#039;&#039;/etc/ncg/ncg.localdb&#039;&#039;&#039; en conséquence.&lt;br /&gt;
&lt;br /&gt;
Au prealablefaire une &amp;quot;sauvegarde&amp;quot; local de la config nagios:&lt;br /&gt;
 mv /etc/nagios/wlcg.d /etc/nagios/wlcg.d.old&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Puis executer le script ncg:&lt;br /&gt;
 /usr/sbin/ncg.pl&lt;br /&gt;
&lt;br /&gt;
Et redemarrer nagios avec la nouvelle configuration:&lt;br /&gt;
 /etc/init.d/nagios restart&lt;br /&gt;
&lt;br /&gt;
Verifier que la config est OK et faire un commit dans svn &#039;&#039;&#039;svn ci&#039;&#039;&#039; pour la sauvegarde de la configuration.&lt;br /&gt;
 svn ci xxxxx&lt;br /&gt;
&lt;br /&gt;
= bascule =&lt;br /&gt;
Si probleme hardware sur la machine=&amp;gt; bascule sur la machine virtuelle de secours (Nadia ou Jacques).&lt;br /&gt;
Faire ensuite un &#039;&#039;&#039;svn co&#039;&#039;&#039; de la config nagios pour avoir la derniere config de production.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Annexes =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Annexe0 ==&lt;br /&gt;
&lt;br /&gt;
Sur le myproxyserver, il faut que le nagios server soit &amp;quot;trusted retriever&amp;quot; et &amp;quot;authorized retrievers&amp;quot;:&lt;br /&gt;
 [cleroy@grid08 ~]$ grep cclcgvmli03 /opt/glite/etc/myproxy-server.conf&lt;br /&gt;
 trusted_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 authorized_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Sur une UI:&lt;br /&gt;
&lt;br /&gt;
 voms-proxy-init -voms ops:/ops/Role=lcgadmin&lt;br /&gt;
 myproxy-init -c 336 -k nagios_roc_fr2-ops -s myproxy.grif.fr -l nagios  -x -Z &amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-IN2P3/CN=ccnagboxli01.in2p3.fr&amp;quot;&lt;br /&gt;
&lt;br /&gt;
== Annexe 1 ==&lt;br /&gt;
 rpm -ivh http://www.sysadmin.hep.ac.uk/rpms/egee-SA1/centos5/x86_64/sa1-release-2-1.el5.noarch.rpm&lt;br /&gt;
 rpm -ivh  http://packages.sw.be/rpmforge-release/rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm&lt;br /&gt;
&lt;br /&gt;
 yum install atp&lt;br /&gt;
 yum install bouncycastle&lt;br /&gt;
 yum install broker&lt;br /&gt;
 yum install broker-cache&lt;br /&gt;
 yum install dcache-srmclient&lt;br /&gt;
 yum install dummy-ca-certs&lt;br /&gt;
 yum install egee-NAGIOS&lt;br /&gt;
 yum install egee-NAGIOS egee-NRPE&lt;br /&gt;
 yum install egee-NRPE&lt;br /&gt;
 yum install fetch-crl&lt;br /&gt;
 yum install fipscheck fipscheck-lib&lt;br /&gt;
 yum install glite-UI&lt;br /&gt;
 yum install glite-security-voms-clients&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install glite-yaim-core&lt;br /&gt;
 yum install glite-yaim-nagios&lt;br /&gt;
 yum install httpd&lt;br /&gt;
 yum install jdk&lt;br /&gt;
 yum install lcg-CA&lt;br /&gt;
 yum install lcg-CA egee-NAGIOS&lt;br /&gt;
 yum install lcg_util&lt;br /&gt;
 yum install mddb&lt;br /&gt;
 yum install msg-publish-simple&lt;br /&gt;
 yum install myproxy&lt;br /&gt;
 yum install mysql-client&lt;br /&gt;
 yum install mysql-server&lt;br /&gt;
 yum install nagios-proxy-refresh&lt;br /&gt;
 yum install perl-Config-Tiny&lt;br /&gt;
 yum install perl-DBD-MySQL&lt;br /&gt;
 yum install perl-rrdtool-1.3.8-2.el5.rf.x86_64&lt;br /&gt;
 yum install python-yaml&lt;br /&gt;
 yum install sun-jaf&lt;br /&gt;
 yum install uberftp-client&lt;br /&gt;
 yum install vdt_globus_rm_client&lt;br /&gt;
&lt;br /&gt;
 yum update glite-yaim-clients&lt;br /&gt;
 yum update glite-yaim-core&lt;br /&gt;
 yum update glite-yaim-nagios&lt;br /&gt;
 yum update mysql-server&lt;br /&gt;
 yum update perl-DBI&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
== Annexe2 ==&lt;br /&gt;
a)Mot de passe admin mysql :&lt;br /&gt;
Yum pour recupérer la derniere version de Mysql :&lt;br /&gt;
&#039;&#039;MySQL-server-community&#039;&#039;, ne pas oublier le client (pas de dépendance dessus)&lt;br /&gt;
Demmarrage de mysql avec --skip-grant-tables (pour ne pas avoir de mot de passe a rentrer)&lt;br /&gt;
 mysqld_safe --skip-grant-tables &amp;amp;&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root &lt;br /&gt;
 update user set password=PASSWORD(&amp;quot;NEW-ROOT-PASSWORD&amp;quot;) where User=&#039;root&#039;;&lt;br /&gt;
&lt;br /&gt;
b)creation des users pour le nagios regional:&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root -p&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON nagios.* TO &#039;ndouser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON atp.* TO &#039;atpuser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
== Annexe 3 ==&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /etc/ncg/ncg.localdb&lt;br /&gt;
 #&lt;br /&gt;
 # Local Rules file to modify NCG configuration&lt;br /&gt;
 #&lt;br /&gt;
 SITE!AUVERGRID&lt;br /&gt;
 SITE!CGG-LCG2&lt;br /&gt;
 SITE!ESRF&lt;br /&gt;
 SITE!GRIF&lt;br /&gt;
 SITE!IBCP-GBIO&lt;br /&gt;
 SITE!IN2P3-CC&lt;br /&gt;
 SITE!IN2P3-CC-PPS&lt;br /&gt;
 SITE!IN2P3-CC-T2&lt;br /&gt;
 SITE!IN2P3-CPPM&lt;br /&gt;
 SITE!IN2P3-IPNL&lt;br /&gt;
 SITE!IN2P3-IRES&lt;br /&gt;
 SITE!IN2P3-LAPP&lt;br /&gt;
 SITE!IN2P3-LPC&lt;br /&gt;
 SITE!IN2P3-LPSC&lt;br /&gt;
 SITE!IN2P3-SUBATECH&lt;br /&gt;
 SITE!IPSL-IPGP-LCG2&lt;br /&gt;
 SITE!M3PEC&lt;br /&gt;
 SITE!MSFG&lt;br /&gt;
 SITE!MSFG-MULTI&lt;br /&gt;
 SITE!MSFG-OPEN&lt;br /&gt;
 SITE!OBSPM&lt;br /&gt;
 SITE!PARIS-UREC-IPV6&lt;br /&gt;
 SITE!SN-UCAD&lt;br /&gt;
 SITE!ROC-FR&lt;br /&gt;
 SITE!SOLEIL&lt;br /&gt;
 SITE!StratusLab&lt;br /&gt;
 [root@cclcgvmli03 ~]#&lt;br /&gt;
 &lt;br /&gt;
== Annexe 4 ==&lt;br /&gt;
&lt;br /&gt;
 SITE_EMAIL=c.leroy@cea.fr&lt;br /&gt;
 SITE_NAME=ROC-FR&lt;br /&gt;
 RB_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 WMS_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 PX_HOST=myproxy.grif.fr&lt;br /&gt;
 BDII_HOST=topbdii.grif.fr&lt;br /&gt;
 SITE_BDII_HOST=bdii.grif.fr&lt;br /&gt;
 MON_HOST=node06.datagrid.cea.fr&lt;br /&gt;
 VOS=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 DTEAM_GROUP_ENABLE=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 VO_DTEAM_SW_DIR=$VO_SW_DIR/dteam&lt;br /&gt;
 VO_DTEAM_DEFAULT_SE=$SE_HOST&lt;br /&gt;
 VO_DTEAM_STORAGE_DIR=$CLASSIC_STORAGE_DIR/dteam&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/&#039;&lt;br /&gt;
 VO_DTEAM_VOMSES=&amp;quot;&#039;dteam lcg-voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=lcg-voms.cern.ch dteam 24&#039; &#039;dteam    voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=voms.cern.ch dteam 24&#039;&amp;quot;&lt;br /&gt;
 VO_DTEAM_VOMS_CA_DN=&amp;quot;&#039;/DC=ch/DC=cern/CN=CERN Trusted Certification Authority&#039; &#039;/DC=ch/DC=cern/CN=CERN Trusted   Certification Authority&#039;&amp;quot;&lt;br /&gt;
 NAGIOS_HOST=cclcgvmli03.in2p3.fr&lt;br /&gt;
 NAGIOS_ADMIN_DNS=&amp;quot;/O=GRID-FR/C=FR/O=CEA/OU=IRFU/CN=Christine Leroy&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=Nadia Lajili&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=LPC/CN=Emmanuel Medernach&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CPPM/CN=Juan Carlos Carranza&amp;quot;&lt;br /&gt;
 NAGIOS_NCG_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_NAGIOS_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_GOCDB_ROC_NAME=France&lt;br /&gt;
 ROC_NAME=France&lt;br /&gt;
 NCG_PROBES_TYPE=remote,native,local&lt;br /&gt;
 NCG_VO=dteam&lt;br /&gt;
 NAGIOS_MYPROXY_NAME=nagios_roc_fr2&lt;br /&gt;
 NAGIOS_MYPROXY_USER=nagios&lt;br /&gt;
 MSG_BROKER_CACHE_NETWORK=PROD&lt;br /&gt;
 NAGIOS_ROLE=roc&lt;br /&gt;
 NAGIOS_HTTPD_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_SUDO_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_CGI_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_LDAP_FILTER=GlueSiteOtherInfo=EGEE_ROC=France&lt;br /&gt;
 NAGIOS_DB_PASS=x&lt;br /&gt;
 NAGIOS_NSCA_PASS=x&lt;br /&gt;
 MYSQL_ADMIN=x&lt;br /&gt;
 ATP_DB_PASS=x&lt;br /&gt;
 MDDB_DB_PASS=x&lt;br /&gt;
 MS_DB_PASS=x&lt;br /&gt;
 MYSQL_PASSWORD=x&lt;br /&gt;
 MYEGEE_DB_PASS=x&lt;br /&gt;
&lt;br /&gt;
== Annexe 5 ==&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /opt/glite/yaim/examples/edgusers.conf&lt;br /&gt;
 11151:${DPMMGR_USER}:11151:${DPMMGR_GROUP}:DPM user:&lt;br /&gt;
 11152:${EDG_USER}:11152,11156:${EDG_GROUP},${INFOSYS_GROUP}:EDG user:${EDG_HOME_DIR}&lt;br /&gt;
 11153:${EDGINFO_USER}:11153,1156:${EDGINFO_USER},${INFOSYS_GROUP}:EDG info user:${EDGINFO_HOME_DIR}&lt;br /&gt;
 11154:${RGMA_USER}:11154,1156:${RGMA_GROUP},${INFOSYS_GROUP}:RGMA user:${INSTALL_ROOT}/glite/etc/rgma&lt;br /&gt;
 11155:${GLITE_USER}:11155:${GLITE_GROUP}:gLite user:${GLITE_HOME_DIR}&lt;br /&gt;
 11156:${BDII_USER}:11158:${BDII_GROUP}:BDII user:${BDII_HOME_DIR}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Annexe 6 ==&lt;br /&gt;
&lt;br /&gt;
Probleme rencontré sur ccnagboxli01 (arret de ypbind + rpm manquant)&lt;br /&gt;
 chown -R nagios:nagios /var/spool/pnp4nagios&lt;br /&gt;
 chown -R nagios:nagios /var/spool/msg-nagios-bridge&lt;br /&gt;
 chown root:nagios /etc/atp/atp_db.conf&lt;br /&gt;
 chown root:nagios /etc/mddb/databases.yml&lt;br /&gt;
 chown nagios:apache /var/nagios/rw&lt;br /&gt;
 chown -R nagios:apache /var/nagios/rw&lt;br /&gt;
 chown root:nagios /etc/nagios/plugins/send_to_db.ini&lt;br /&gt;
 chown -R nagios:nagios /var/cache/msg/config-cache&lt;br /&gt;
 chown -R nagios:root /var/log/mddb&lt;br /&gt;
 chown -R nagios:root /var/log/pnp4nagios&lt;br /&gt;
 chown -R nagios:root /var/log/nagios&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
  useradd -g 40011 -u 10011 nagios&lt;br /&gt;
  useradd --group mysql -u 2730 mysql&lt;br /&gt;
  useradd -g mysql -u 2730 mysql&lt;br /&gt;
&lt;br /&gt;
   groupadd -g 40010 nagiosmaster&lt;br /&gt;
   groupadd -g 146 leftuser&lt;br /&gt;
&lt;br /&gt;
 yum install glite-security-voms-api-c-1.8.12-2.sl5.x86_64&lt;br /&gt;
 yum update perl-Net-SSLeay&lt;br /&gt;
 yum update perl-IO-Socket-SSL-1.01-1.fc6.noarch&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install lcg_util-1.7.6-1.sl5.x86_64&lt;br /&gt;
 yum install GFAL-client-1.11.8-2.sl5.x86_64 GFAL-client-1.11.8-2.sl5.i386&lt;br /&gt;
 yum install CGSI_gSOAP_2.7-1.3.3-1.sl5.x86_64&lt;br /&gt;
 yum install LFC-interfaces-1.7.3-1sec.sl5.x86_64 LFC-client-1.7.3-1sec.sl5.x86_64 lcg-dm-common-1.7.3-1sec.sl5.x86_64&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5765</id>
		<title>Nagios regional</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5765"/>
		<updated>2010-04-06T11:25:41Z</updated>

		<summary type="html">&lt;p&gt;LEROY: /* Mise à jour */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Installation d&#039;une NOGIOS box pour le ROC France&lt;br /&gt;
&lt;br /&gt;
= 1)	Installation de base : =&lt;br /&gt;
a.	Machine installée par les sysadmin du CC : OS + VOBOX + certificat + pas dans les NIS&lt;br /&gt;
&lt;br /&gt;
b.	Accessible via gsissh (port 1975)&lt;br /&gt;
&lt;br /&gt;
= 2)	Action faite au préalable : =&lt;br /&gt;
a.	Faire la demande pour que la machine soit autorisée à récupérer les SAM tests : https://gus.fzk.de/ws/ticket_info.php?ticket=55132&lt;br /&gt;
&lt;br /&gt;
b.	Autoriser la nagios box à récupérer les proxy en mode « retrieval », et stocker un proxy depuis une UI récuperable par la nagiosBOX voir  [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe0 Annexe0]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
c.	Certificat utilisé pour :&lt;br /&gt;
&lt;br /&gt;
i.	                       Access to GOCDB PI for ROCS GOCDB PI level 2 required &lt;br /&gt;
&lt;br /&gt;
ii.	                       Recuperation de proxy pour les sondes locales&lt;br /&gt;
&lt;br /&gt;
d. s&#039;inscrire dans la mailing liste: regional-nagios-admins@cern.ch (très réactive)&lt;br /&gt;
&lt;br /&gt;
= 3)	Installation de Nagios =&lt;br /&gt;
Reference : https://twiki.cern.ch/twiki/bin/view/EGEE/GridMonitoringNcgYaim&lt;br /&gt;
== Installation des packages via yum, Ajout des repos suivant ==&lt;br /&gt;
 a.	mirrors-rpmforge (rpm rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm)&lt;br /&gt;
 b.	rpmforge-testing.repo&lt;br /&gt;
 c.	rpmforge.repo&lt;br /&gt;
 d.	glite-UI.repo&lt;br /&gt;
 e.	sa1-centos5-release.repo (rpm:  sa1-release-2-1.el5.noarch.rpm)&lt;br /&gt;
 f.	glite-BDII.repo&lt;br /&gt;
&lt;br /&gt;
Problèmes de dépendances rencontrées si besoin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe1 Annexe1] (mais j’avais dû oublier de faire un : yum install egee-NAGIOS)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Installation subversion ==&lt;br /&gt;
Certain fichier de config sont a recuperer via svn au CERN:&lt;br /&gt;
&lt;br /&gt;
 yum install subversion&lt;br /&gt;
 svn co http://svnweb.cern.ch/guest/sam/trunk/roc-config&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 cp /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm.orig&lt;br /&gt;
 cp roc-config/Hash.pm_55_ALL_CRIT /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm&lt;br /&gt;
&lt;br /&gt;
== Mysql ==&lt;br /&gt;
&lt;br /&gt;
1.	Installer la dernière version de Mysql (server + client) ; &lt;br /&gt;
&lt;br /&gt;
2.	configurer le mot de passe admin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2a] ;&lt;br /&gt;
&lt;br /&gt;
3.	Configurer les users utiles à la nagios Box se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2b] ;&lt;br /&gt;
&lt;br /&gt;
== Configuration via yaim et NCG (en 2 fois)==&lt;br /&gt;
&lt;br /&gt;
1.	Remplir /etc/ncg/ncg.localdb avec la liste des sites se referer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe3 Annexe3]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
2.	Remplir le /opt/glite/yaim/site-info.def voir [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe4 Annexe4] ;&lt;br /&gt;
&lt;br /&gt;
3.	groupadd nagios&lt;br /&gt;
&lt;br /&gt;
4.	modif des uids/gids : /opt/glite/yaim/examples/edgusers.conf [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe5 Annexe5]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
5.	lancement de la configuration automatique via yaim (All On One Box) :&lt;br /&gt;
 	&lt;br /&gt;
 	/opt/glite/yaim/bin/yaim -s /opt/glite/yaim/site-info.def -c -n glite-UI -n glite-NAGIOS&lt;br /&gt;
&lt;br /&gt;
6.	lancement de la configuration via NCG (All On One Box) :&lt;br /&gt;
&lt;br /&gt;
 /usr/sbin/ncg.pl&lt;br /&gt;
&lt;br /&gt;
.....MODIFICATION importante:: voir: https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
La partie:&lt;br /&gt;
#  Configure manually /etc/ncg/ncg.conf (Template can be found here: ncg.conf.template: )&lt;br /&gt;
- Switch off automatic generation of ncg.conf by YAIM (NAGIOS_NCG_ENABLE_CONFIG&amp;quot;=&amp;quot;false&amp;quot;)&lt;br /&gt;
- Take ncg.conf.template and copy it to /etc/ncg/ncg.conf&lt;br /&gt;
     - Set $ROC_NAME$&lt;br /&gt;
     - Set $YOUR_MYPROXY_SERVER$ (e.g. myproxy-fts.cern.ch)&lt;br /&gt;
     - Set $MYPROXY_NAME$ (e.g.: NagiosRetrieve-sam-ap-roc.cern.ch)&lt;br /&gt;
     - Set $NAGIOS_ROLE$ (e.g.: ngi, roc)&lt;br /&gt;
# Take Hash.pm file that we are currently using at the CERN ROC Nagios boxes. In this file, we have removed the metrics that do not belong to the SAM_Critical profile, so only the metrics defined at ROC_SAM_critical are configured, and not relevant services like SRMv1 are commented out. The file is located under /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm &lt;br /&gt;
&lt;br /&gt;
Pour éviter d&#039;avoir des sondes inappropriés.&lt;br /&gt;
&lt;br /&gt;
== Tuning the configuration ==&lt;br /&gt;
&lt;br /&gt;
1.	Verifier  dans /etc/sysconfig/nagios:&lt;br /&gt;
 LD_LIBRARY_PATH=/opt/classads/lib64:/opt/glite/lib64:/opt/globus/lib:/opt/c-ares/lib:/opt/classads/lib64  &lt;br /&gt;
&lt;br /&gt;
2.	Desactiver les notifications, dans les fichiers de conf: &lt;br /&gt;
 a.      /etc/nagios/nagios.cfg, désactiver les notifications:enable_notifications=0 ;log_notifications=0&lt;br /&gt;
 b.	 /etc/nagios/wlcg.d/host.templates.cfg&lt;br /&gt;
 c.	 /etc/nagios/wlcg.d/service.templates.cfg&lt;br /&gt;
&lt;br /&gt;
4.	N’autoriser que les dteam/France à visualiser notre interface nagios : modifier le fichier : &lt;br /&gt;
 /etc/voms2htpasswd.conf, avec : vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&lt;br /&gt;
Plus utile site le site-info.def est défini correctement:&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&#039;&lt;br /&gt;
&lt;br /&gt;
== ActiveMQ ==&lt;br /&gt;
 /usr/sbin/msg-to-queue --prefix /queue/grid.probe.metricOutput.EGEE.a635834332381123c8b296d02b682f8f --broker-uri stomp://prod-grid-msg.cern.ch:6163&lt;br /&gt;
 &lt;br /&gt;
[root@cclcgvmli03 cron.hourly]# cat check_msg-to-queue.sh&lt;br /&gt;
&lt;br /&gt;
Verifier les messages:&lt;br /&gt;
 /usr/libexec/grid-monitoring/plugins/nagios/recv_from_queue -v &lt;br /&gt;
&lt;br /&gt;
faire une update de perl-GridMon &lt;br /&gt;
 The problem here is in the message handler &lt;br /&gt;
 (/usr/lib/perl5/vendor_perl/5.8.8/GridMon/MsgHandler/MetricOutput.pm). &lt;br /&gt;
 Probe on WN reports hostname localhost.localdomain and serviceURI CE &lt;br /&gt;
 hostname. In the previous version message handler first checked hostname &lt;br /&gt;
 value and then serviceURI. That is the reason why Christine is seeing &lt;br /&gt;
 results for localhost.localdomain. However, we fixed this and the latest &lt;br /&gt;
 version (1.0.34) parses messages correctly.&lt;br /&gt;
&lt;br /&gt;
 yum update perl-GridMon&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== Systeme d&#039;information ==&lt;br /&gt;
La nagios Box doit etre enregistré dans la GOCDB &lt;br /&gt;
et publié dans le site-BDII:&lt;br /&gt;
 ldapsearch -x -H ldap://ccnagboxli01.in2p3.fr:2170 -b &#039;Mds-vo-name=resource,o=Grid&#039;&lt;br /&gt;
&lt;br /&gt;
= validation =&lt;br /&gt;
&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
&lt;br /&gt;
now you should publish your Nagios in your Site BDII&lt;br /&gt;
And we should declare the node in the GOCDB: Regional-NAGIOS ou National-Nagios, a determiner&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
liste des sondes a valider: d&#039;après: https://twiki.cern.ch/twiki/bin/view/LCG/SAMCriticalTestsForCODs&lt;br /&gt;
&lt;br /&gt;
== Services grilles ==&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Type de Noeuds&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Valid (Y or N)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
APEL&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Pas de métric ?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
BDII (site and TOP)&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
- Probleme identifié pour la variable LCG_GFAL_INFOSYS quand c&#039;est une liste (CE lpnce.in2p3.fr):&lt;br /&gt;
LCG_GFAL_INFOSYS=topbdii.grif.fr:2170,cclcgtopbdii01.in2p3.fr:2170,lapp-bdii01.in2p3.fr:2170&lt;br /&gt;
&lt;br /&gt;
-Tout le mecanisme de recuperation des outputs n&#039;est pas compris mais globalement on a les meme resultat que celui du CERN&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CREAMCE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: idem CERN nagiosBOX (mais sonde Brokerinfo toujours en erreur: probleme connu: https://savannah.cern.ch/bugs/?61322)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
FTS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y and NO: For the check_command those options should be added: &lt;br /&gt;
--cert /etc/nagios/globus/hostcert.pem   --key /etc/nagios/globus/hostkey.pem  -x $USER2$ (this should be fixed in the next release)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
gRB/WMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y:(certificate lifetime only)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_C&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: mais il faudrait peut etre demander au site de supporter la VO ops pour que leur LFC soit testé (lfc-ls et lfc-ping)?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_L&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: mais il faudrait peut etre demander au site de supporter la VO ops pour que leur LFC soit testé (lfc-ls et lfc-ping)?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MPI&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
em&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MyProxy&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
em&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RB&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nobody&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Service Deprecated. Does NOT apply in Nagios&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RGMA / MON&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y (certificate lifetime only)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
&lt;br /&gt;
SRMv2&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOBOX&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
em&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Services nagios BOX ==&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Services&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Valid (Y or N)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.CAdist-Version&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.CertLifetime&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.GridProxy-Get-ops&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.GridProxy-Valid-ops&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.ATPSync&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.CheckConfig&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.ImportGocdbDowntimes &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.MDDBSync &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.RecvFromQueue&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.SendToMetricStore&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.SendToMsg&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.nagios.DiskCheck &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.nagios.ProcessCrond &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.nagios.ProcessMsgToQueue &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.nagios.ProcessNpcd&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.sam.CE-JobMonit-ops &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.sam.CREAMCE-JobMonit-ops &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.sam.mpi.CE-JobMonit-ops&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.MyProxy-ProxyLifetime-ops&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
= Mise à jour =&lt;br /&gt;
Pour modifier la configuration (Exemple nouveau site a ajouter pour le FOC france):&lt;br /&gt;
&lt;br /&gt;
Modifier &#039;&#039;&#039;/etc/ncg/ncg.localdb&#039;&#039;&#039; en conséquence.&lt;br /&gt;
&lt;br /&gt;
Au prealablefaire une &amp;quot;sauvegarde&amp;quot; local de la config nagios:&lt;br /&gt;
 mv /etc/nagios/wlcg.d /etc/nagios/wlcg.d.old&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Puis executer le script ncg:&lt;br /&gt;
 /usr/sbin/ncg.pl&lt;br /&gt;
&lt;br /&gt;
Et redemarrer nagios avec la nouvelle configuration:&lt;br /&gt;
 /etc/init.d/nagios restart&lt;br /&gt;
&lt;br /&gt;
Verifier que la config est OK et faire un commit dans svn &#039;&#039;&#039;svn ci&#039;&#039;&#039; pour la sauvegarde de la configuration.&lt;br /&gt;
 svn ci xxxxx&lt;br /&gt;
&lt;br /&gt;
= bascule =&lt;br /&gt;
Si probleme hardware sur la machine=&amp;gt; bascule sur la machine virtuelle de secours (Nadia ou Jacques).&lt;br /&gt;
Faire ensuite un &#039;&#039;&#039;svn co&#039;&#039;&#039; de la config nagios pour avoir la derniere config de production.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Annexes =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Annexe0 ==&lt;br /&gt;
&lt;br /&gt;
Sur le myproxyserver, il faut que le nagios server soit &amp;quot;trusted retriever&amp;quot; et &amp;quot;authorized retrievers&amp;quot;:&lt;br /&gt;
 [cleroy@grid08 ~]$ grep cclcgvmli03 /opt/glite/etc/myproxy-server.conf&lt;br /&gt;
 trusted_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 authorized_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Sur une UI:&lt;br /&gt;
&lt;br /&gt;
 voms-proxy-init -voms ops:/ops/Role=lcgadmin&lt;br /&gt;
 myproxy-init -c 336 -k nagios_roc_fr2-ops -s myproxy.grif.fr -l nagios  -x -Z &amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-IN2P3/CN=ccnagboxli01.in2p3.fr&amp;quot;&lt;br /&gt;
&lt;br /&gt;
== Annexe 1 ==&lt;br /&gt;
 rpm -ivh http://www.sysadmin.hep.ac.uk/rpms/egee-SA1/centos5/x86_64/sa1-release-2-1.el5.noarch.rpm&lt;br /&gt;
 rpm -ivh  http://packages.sw.be/rpmforge-release/rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm&lt;br /&gt;
&lt;br /&gt;
 yum install atp&lt;br /&gt;
 yum install bouncycastle&lt;br /&gt;
 yum install broker&lt;br /&gt;
 yum install broker-cache&lt;br /&gt;
 yum install dcache-srmclient&lt;br /&gt;
 yum install dummy-ca-certs&lt;br /&gt;
 yum install egee-NAGIOS&lt;br /&gt;
 yum install egee-NAGIOS egee-NRPE&lt;br /&gt;
 yum install egee-NRPE&lt;br /&gt;
 yum install fetch-crl&lt;br /&gt;
 yum install fipscheck fipscheck-lib&lt;br /&gt;
 yum install glite-UI&lt;br /&gt;
 yum install glite-security-voms-clients&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install glite-yaim-core&lt;br /&gt;
 yum install glite-yaim-nagios&lt;br /&gt;
 yum install httpd&lt;br /&gt;
 yum install jdk&lt;br /&gt;
 yum install lcg-CA&lt;br /&gt;
 yum install lcg-CA egee-NAGIOS&lt;br /&gt;
 yum install lcg_util&lt;br /&gt;
 yum install mddb&lt;br /&gt;
 yum install msg-publish-simple&lt;br /&gt;
 yum install myproxy&lt;br /&gt;
 yum install mysql-client&lt;br /&gt;
 yum install mysql-server&lt;br /&gt;
 yum install nagios-proxy-refresh&lt;br /&gt;
 yum install perl-Config-Tiny&lt;br /&gt;
 yum install perl-DBD-MySQL&lt;br /&gt;
 yum install perl-rrdtool-1.3.8-2.el5.rf.x86_64&lt;br /&gt;
 yum install python-yaml&lt;br /&gt;
 yum install sun-jaf&lt;br /&gt;
 yum install uberftp-client&lt;br /&gt;
 yum install vdt_globus_rm_client&lt;br /&gt;
&lt;br /&gt;
 yum update glite-yaim-clients&lt;br /&gt;
 yum update glite-yaim-core&lt;br /&gt;
 yum update glite-yaim-nagios&lt;br /&gt;
 yum update mysql-server&lt;br /&gt;
 yum update perl-DBI&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
== Annexe2 ==&lt;br /&gt;
a)Mot de passe admin mysql :&lt;br /&gt;
Yum pour recupérer la derniere version de Mysql :&lt;br /&gt;
&#039;&#039;MySQL-server-community&#039;&#039;, ne pas oublier le client (pas de dépendance dessus)&lt;br /&gt;
Demmarrage de mysql avec --skip-grant-tables (pour ne pas avoir de mot de passe a rentrer)&lt;br /&gt;
 mysqld_safe --skip-grant-tables &amp;amp;&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root &lt;br /&gt;
 update user set password=PASSWORD(&amp;quot;NEW-ROOT-PASSWORD&amp;quot;) where User=&#039;root&#039;;&lt;br /&gt;
&lt;br /&gt;
b)creation des users pour le nagios regional:&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root -p&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON nagios.* TO &#039;ndouser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON atp.* TO &#039;atpuser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
== Annexe 3 ==&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /etc/ncg/ncg.localdb&lt;br /&gt;
 #&lt;br /&gt;
 # Local Rules file to modify NCG configuration&lt;br /&gt;
 #&lt;br /&gt;
 SITE!AUVERGRID&lt;br /&gt;
 SITE!CGG-LCG2&lt;br /&gt;
 SITE!ESRF&lt;br /&gt;
 SITE!GRIF&lt;br /&gt;
 SITE!IBCP-GBIO&lt;br /&gt;
 SITE!IN2P3-CC&lt;br /&gt;
 SITE!IN2P3-CC-PPS&lt;br /&gt;
 SITE!IN2P3-CC-T2&lt;br /&gt;
 SITE!IN2P3-CPPM&lt;br /&gt;
 SITE!IN2P3-IPNL&lt;br /&gt;
 SITE!IN2P3-IRES&lt;br /&gt;
 SITE!IN2P3-LAPP&lt;br /&gt;
 SITE!IN2P3-LPC&lt;br /&gt;
 SITE!IN2P3-LPSC&lt;br /&gt;
 SITE!IN2P3-SUBATECH&lt;br /&gt;
 SITE!IPSL-IPGP-LCG2&lt;br /&gt;
 SITE!M3PEC&lt;br /&gt;
 SITE!MSFG&lt;br /&gt;
 SITE!MSFG-MULTI&lt;br /&gt;
 SITE!MSFG-OPEN&lt;br /&gt;
 SITE!OBSPM&lt;br /&gt;
 SITE!PARIS-UREC-IPV6&lt;br /&gt;
 SITE!SN-UCAD&lt;br /&gt;
 SITE!ROC-FR&lt;br /&gt;
 SITE!SOLEIL&lt;br /&gt;
 SITE!StratusLab&lt;br /&gt;
 [root@cclcgvmli03 ~]#&lt;br /&gt;
 &lt;br /&gt;
== Annexe 4 ==&lt;br /&gt;
&lt;br /&gt;
 SITE_EMAIL=c.leroy@cea.fr&lt;br /&gt;
 SITE_NAME=ROC-FR&lt;br /&gt;
 RB_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 WMS_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 PX_HOST=myproxy.grif.fr&lt;br /&gt;
 BDII_HOST=topbdii.grif.fr&lt;br /&gt;
 SITE_BDII_HOST=bdii.grif.fr&lt;br /&gt;
 MON_HOST=node06.datagrid.cea.fr&lt;br /&gt;
 VOS=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 DTEAM_GROUP_ENABLE=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 VO_DTEAM_SW_DIR=$VO_SW_DIR/dteam&lt;br /&gt;
 VO_DTEAM_DEFAULT_SE=$SE_HOST&lt;br /&gt;
 VO_DTEAM_STORAGE_DIR=$CLASSIC_STORAGE_DIR/dteam&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/&#039;&lt;br /&gt;
 VO_DTEAM_VOMSES=&amp;quot;&#039;dteam lcg-voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=lcg-voms.cern.ch dteam 24&#039; &#039;dteam    voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=voms.cern.ch dteam 24&#039;&amp;quot;&lt;br /&gt;
 VO_DTEAM_VOMS_CA_DN=&amp;quot;&#039;/DC=ch/DC=cern/CN=CERN Trusted Certification Authority&#039; &#039;/DC=ch/DC=cern/CN=CERN Trusted   Certification Authority&#039;&amp;quot;&lt;br /&gt;
 NAGIOS_HOST=cclcgvmli03.in2p3.fr&lt;br /&gt;
 NAGIOS_ADMIN_DNS=&amp;quot;/O=GRID-FR/C=FR/O=CEA/OU=IRFU/CN=Christine Leroy&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=Nadia Lajili&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=LPC/CN=Emmanuel Medernach&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CPPM/CN=Juan Carlos Carranza&amp;quot;&lt;br /&gt;
 NAGIOS_NCG_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_NAGIOS_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_GOCDB_ROC_NAME=France&lt;br /&gt;
 ROC_NAME=France&lt;br /&gt;
 NCG_PROBES_TYPE=remote,native,local&lt;br /&gt;
 NCG_VO=dteam&lt;br /&gt;
 NAGIOS_MYPROXY_NAME=nagios_roc_fr2&lt;br /&gt;
 NAGIOS_MYPROXY_USER=nagios&lt;br /&gt;
 MSG_BROKER_CACHE_NETWORK=PROD&lt;br /&gt;
 NAGIOS_ROLE=roc&lt;br /&gt;
 NAGIOS_HTTPD_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_SUDO_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_CGI_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_LDAP_FILTER=GlueSiteOtherInfo=EGEE_ROC=France&lt;br /&gt;
 NAGIOS_DB_PASS=x&lt;br /&gt;
 NAGIOS_NSCA_PASS=x&lt;br /&gt;
 MYSQL_ADMIN=x&lt;br /&gt;
 ATP_DB_PASS=x&lt;br /&gt;
 MDDB_DB_PASS=x&lt;br /&gt;
 MS_DB_PASS=x&lt;br /&gt;
 MYSQL_PASSWORD=x&lt;br /&gt;
 MYEGEE_DB_PASS=x&lt;br /&gt;
&lt;br /&gt;
== Annexe 5 ==&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /opt/glite/yaim/examples/edgusers.conf&lt;br /&gt;
 11151:${DPMMGR_USER}:11151:${DPMMGR_GROUP}:DPM user:&lt;br /&gt;
 11152:${EDG_USER}:11152,11156:${EDG_GROUP},${INFOSYS_GROUP}:EDG user:${EDG_HOME_DIR}&lt;br /&gt;
 11153:${EDGINFO_USER}:11153,1156:${EDGINFO_USER},${INFOSYS_GROUP}:EDG info user:${EDGINFO_HOME_DIR}&lt;br /&gt;
 11154:${RGMA_USER}:11154,1156:${RGMA_GROUP},${INFOSYS_GROUP}:RGMA user:${INSTALL_ROOT}/glite/etc/rgma&lt;br /&gt;
 11155:${GLITE_USER}:11155:${GLITE_GROUP}:gLite user:${GLITE_HOME_DIR}&lt;br /&gt;
 11156:${BDII_USER}:11158:${BDII_GROUP}:BDII user:${BDII_HOME_DIR}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Annexe 6 ==&lt;br /&gt;
&lt;br /&gt;
Probleme rencontré sur ccnagboxli01 (arret de ypbind + rpm manquant)&lt;br /&gt;
 chown -R nagios:nagios /var/spool/pnp4nagios&lt;br /&gt;
 chown -R nagios:nagios /var/spool/msg-nagios-bridge&lt;br /&gt;
 chown root:nagios /etc/atp/atp_db.conf&lt;br /&gt;
 chown root:nagios /etc/mddb/databases.yml&lt;br /&gt;
 chown nagios:apache /var/nagios/rw&lt;br /&gt;
 chown -R nagios:apache /var/nagios/rw&lt;br /&gt;
 chown root:nagios /etc/nagios/plugins/send_to_db.ini&lt;br /&gt;
 chown -R nagios:nagios /var/cache/msg/config-cache&lt;br /&gt;
 chown -R nagios:root /var/log/mddb&lt;br /&gt;
 chown -R nagios:root /var/log/pnp4nagios&lt;br /&gt;
 chown -R nagios:root /var/log/nagios&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
  useradd -g 40011 -u 10011 nagios&lt;br /&gt;
  useradd --group mysql -u 2730 mysql&lt;br /&gt;
  useradd -g mysql -u 2730 mysql&lt;br /&gt;
&lt;br /&gt;
   groupadd -g 40010 nagiosmaster&lt;br /&gt;
   groupadd -g 146 leftuser&lt;br /&gt;
&lt;br /&gt;
 yum install glite-security-voms-api-c-1.8.12-2.sl5.x86_64&lt;br /&gt;
 yum update perl-Net-SSLeay&lt;br /&gt;
 yum update perl-IO-Socket-SSL-1.01-1.fc6.noarch&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install lcg_util-1.7.6-1.sl5.x86_64&lt;br /&gt;
 yum install GFAL-client-1.11.8-2.sl5.x86_64 GFAL-client-1.11.8-2.sl5.i386&lt;br /&gt;
 yum install CGSI_gSOAP_2.7-1.3.3-1.sl5.x86_64&lt;br /&gt;
 yum install LFC-interfaces-1.7.3-1sec.sl5.x86_64 LFC-client-1.7.3-1sec.sl5.x86_64 lcg-dm-common-1.7.3-1sec.sl5.x86_64&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5764</id>
		<title>Nagios regional</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5764"/>
		<updated>2010-04-06T11:25:18Z</updated>

		<summary type="html">&lt;p&gt;LEROY: /* Mise à jour */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Installation d&#039;une NOGIOS box pour le ROC France&lt;br /&gt;
&lt;br /&gt;
= 1)	Installation de base : =&lt;br /&gt;
a.	Machine installée par les sysadmin du CC : OS + VOBOX + certificat + pas dans les NIS&lt;br /&gt;
&lt;br /&gt;
b.	Accessible via gsissh (port 1975)&lt;br /&gt;
&lt;br /&gt;
= 2)	Action faite au préalable : =&lt;br /&gt;
a.	Faire la demande pour que la machine soit autorisée à récupérer les SAM tests : https://gus.fzk.de/ws/ticket_info.php?ticket=55132&lt;br /&gt;
&lt;br /&gt;
b.	Autoriser la nagios box à récupérer les proxy en mode « retrieval », et stocker un proxy depuis une UI récuperable par la nagiosBOX voir  [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe0 Annexe0]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
c.	Certificat utilisé pour :&lt;br /&gt;
&lt;br /&gt;
i.	                       Access to GOCDB PI for ROCS GOCDB PI level 2 required &lt;br /&gt;
&lt;br /&gt;
ii.	                       Recuperation de proxy pour les sondes locales&lt;br /&gt;
&lt;br /&gt;
d. s&#039;inscrire dans la mailing liste: regional-nagios-admins@cern.ch (très réactive)&lt;br /&gt;
&lt;br /&gt;
= 3)	Installation de Nagios =&lt;br /&gt;
Reference : https://twiki.cern.ch/twiki/bin/view/EGEE/GridMonitoringNcgYaim&lt;br /&gt;
== Installation des packages via yum, Ajout des repos suivant ==&lt;br /&gt;
 a.	mirrors-rpmforge (rpm rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm)&lt;br /&gt;
 b.	rpmforge-testing.repo&lt;br /&gt;
 c.	rpmforge.repo&lt;br /&gt;
 d.	glite-UI.repo&lt;br /&gt;
 e.	sa1-centos5-release.repo (rpm:  sa1-release-2-1.el5.noarch.rpm)&lt;br /&gt;
 f.	glite-BDII.repo&lt;br /&gt;
&lt;br /&gt;
Problèmes de dépendances rencontrées si besoin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe1 Annexe1] (mais j’avais dû oublier de faire un : yum install egee-NAGIOS)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Installation subversion ==&lt;br /&gt;
Certain fichier de config sont a recuperer via svn au CERN:&lt;br /&gt;
&lt;br /&gt;
 yum install subversion&lt;br /&gt;
 svn co http://svnweb.cern.ch/guest/sam/trunk/roc-config&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 cp /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm.orig&lt;br /&gt;
 cp roc-config/Hash.pm_55_ALL_CRIT /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm&lt;br /&gt;
&lt;br /&gt;
== Mysql ==&lt;br /&gt;
&lt;br /&gt;
1.	Installer la dernière version de Mysql (server + client) ; &lt;br /&gt;
&lt;br /&gt;
2.	configurer le mot de passe admin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2a] ;&lt;br /&gt;
&lt;br /&gt;
3.	Configurer les users utiles à la nagios Box se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2b] ;&lt;br /&gt;
&lt;br /&gt;
== Configuration via yaim et NCG (en 2 fois)==&lt;br /&gt;
&lt;br /&gt;
1.	Remplir /etc/ncg/ncg.localdb avec la liste des sites se referer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe3 Annexe3]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
2.	Remplir le /opt/glite/yaim/site-info.def voir [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe4 Annexe4] ;&lt;br /&gt;
&lt;br /&gt;
3.	groupadd nagios&lt;br /&gt;
&lt;br /&gt;
4.	modif des uids/gids : /opt/glite/yaim/examples/edgusers.conf [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe5 Annexe5]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
5.	lancement de la configuration automatique via yaim (All On One Box) :&lt;br /&gt;
 	&lt;br /&gt;
 	/opt/glite/yaim/bin/yaim -s /opt/glite/yaim/site-info.def -c -n glite-UI -n glite-NAGIOS&lt;br /&gt;
&lt;br /&gt;
6.	lancement de la configuration via NCG (All On One Box) :&lt;br /&gt;
&lt;br /&gt;
 /usr/sbin/ncg.pl&lt;br /&gt;
&lt;br /&gt;
.....MODIFICATION importante:: voir: https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
La partie:&lt;br /&gt;
#  Configure manually /etc/ncg/ncg.conf (Template can be found here: ncg.conf.template: )&lt;br /&gt;
- Switch off automatic generation of ncg.conf by YAIM (NAGIOS_NCG_ENABLE_CONFIG&amp;quot;=&amp;quot;false&amp;quot;)&lt;br /&gt;
- Take ncg.conf.template and copy it to /etc/ncg/ncg.conf&lt;br /&gt;
     - Set $ROC_NAME$&lt;br /&gt;
     - Set $YOUR_MYPROXY_SERVER$ (e.g. myproxy-fts.cern.ch)&lt;br /&gt;
     - Set $MYPROXY_NAME$ (e.g.: NagiosRetrieve-sam-ap-roc.cern.ch)&lt;br /&gt;
     - Set $NAGIOS_ROLE$ (e.g.: ngi, roc)&lt;br /&gt;
# Take Hash.pm file that we are currently using at the CERN ROC Nagios boxes. In this file, we have removed the metrics that do not belong to the SAM_Critical profile, so only the metrics defined at ROC_SAM_critical are configured, and not relevant services like SRMv1 are commented out. The file is located under /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm &lt;br /&gt;
&lt;br /&gt;
Pour éviter d&#039;avoir des sondes inappropriés.&lt;br /&gt;
&lt;br /&gt;
== Tuning the configuration ==&lt;br /&gt;
&lt;br /&gt;
1.	Verifier  dans /etc/sysconfig/nagios:&lt;br /&gt;
 LD_LIBRARY_PATH=/opt/classads/lib64:/opt/glite/lib64:/opt/globus/lib:/opt/c-ares/lib:/opt/classads/lib64  &lt;br /&gt;
&lt;br /&gt;
2.	Desactiver les notifications, dans les fichiers de conf: &lt;br /&gt;
 a.      /etc/nagios/nagios.cfg, désactiver les notifications:enable_notifications=0 ;log_notifications=0&lt;br /&gt;
 b.	 /etc/nagios/wlcg.d/host.templates.cfg&lt;br /&gt;
 c.	 /etc/nagios/wlcg.d/service.templates.cfg&lt;br /&gt;
&lt;br /&gt;
4.	N’autoriser que les dteam/France à visualiser notre interface nagios : modifier le fichier : &lt;br /&gt;
 /etc/voms2htpasswd.conf, avec : vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&lt;br /&gt;
Plus utile site le site-info.def est défini correctement:&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&#039;&lt;br /&gt;
&lt;br /&gt;
== ActiveMQ ==&lt;br /&gt;
 /usr/sbin/msg-to-queue --prefix /queue/grid.probe.metricOutput.EGEE.a635834332381123c8b296d02b682f8f --broker-uri stomp://prod-grid-msg.cern.ch:6163&lt;br /&gt;
 &lt;br /&gt;
[root@cclcgvmli03 cron.hourly]# cat check_msg-to-queue.sh&lt;br /&gt;
&lt;br /&gt;
Verifier les messages:&lt;br /&gt;
 /usr/libexec/grid-monitoring/plugins/nagios/recv_from_queue -v &lt;br /&gt;
&lt;br /&gt;
faire une update de perl-GridMon &lt;br /&gt;
 The problem here is in the message handler &lt;br /&gt;
 (/usr/lib/perl5/vendor_perl/5.8.8/GridMon/MsgHandler/MetricOutput.pm). &lt;br /&gt;
 Probe on WN reports hostname localhost.localdomain and serviceURI CE &lt;br /&gt;
 hostname. In the previous version message handler first checked hostname &lt;br /&gt;
 value and then serviceURI. That is the reason why Christine is seeing &lt;br /&gt;
 results for localhost.localdomain. However, we fixed this and the latest &lt;br /&gt;
 version (1.0.34) parses messages correctly.&lt;br /&gt;
&lt;br /&gt;
 yum update perl-GridMon&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== Systeme d&#039;information ==&lt;br /&gt;
La nagios Box doit etre enregistré dans la GOCDB &lt;br /&gt;
et publié dans le site-BDII:&lt;br /&gt;
 ldapsearch -x -H ldap://ccnagboxli01.in2p3.fr:2170 -b &#039;Mds-vo-name=resource,o=Grid&#039;&lt;br /&gt;
&lt;br /&gt;
= validation =&lt;br /&gt;
&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
&lt;br /&gt;
now you should publish your Nagios in your Site BDII&lt;br /&gt;
And we should declare the node in the GOCDB: Regional-NAGIOS ou National-Nagios, a determiner&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
liste des sondes a valider: d&#039;après: https://twiki.cern.ch/twiki/bin/view/LCG/SAMCriticalTestsForCODs&lt;br /&gt;
&lt;br /&gt;
== Services grilles ==&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Type de Noeuds&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Valid (Y or N)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
APEL&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Pas de métric ?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
BDII (site and TOP)&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
- Probleme identifié pour la variable LCG_GFAL_INFOSYS quand c&#039;est une liste (CE lpnce.in2p3.fr):&lt;br /&gt;
LCG_GFAL_INFOSYS=topbdii.grif.fr:2170,cclcgtopbdii01.in2p3.fr:2170,lapp-bdii01.in2p3.fr:2170&lt;br /&gt;
&lt;br /&gt;
-Tout le mecanisme de recuperation des outputs n&#039;est pas compris mais globalement on a les meme resultat que celui du CERN&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CREAMCE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: idem CERN nagiosBOX (mais sonde Brokerinfo toujours en erreur: probleme connu: https://savannah.cern.ch/bugs/?61322)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
FTS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y and NO: For the check_command those options should be added: &lt;br /&gt;
--cert /etc/nagios/globus/hostcert.pem   --key /etc/nagios/globus/hostkey.pem  -x $USER2$ (this should be fixed in the next release)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
gRB/WMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y:(certificate lifetime only)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_C&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: mais il faudrait peut etre demander au site de supporter la VO ops pour que leur LFC soit testé (lfc-ls et lfc-ping)?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_L&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: mais il faudrait peut etre demander au site de supporter la VO ops pour que leur LFC soit testé (lfc-ls et lfc-ping)?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MPI&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
em&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MyProxy&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
em&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RB&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nobody&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Service Deprecated. Does NOT apply in Nagios&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RGMA / MON&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y (certificate lifetime only)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
&lt;br /&gt;
SRMv2&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOBOX&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
em&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Services nagios BOX ==&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Services&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Valid (Y or N)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.CAdist-Version&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.CertLifetime&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.GridProxy-Get-ops&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.GridProxy-Valid-ops&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.ATPSync&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.CheckConfig&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.ImportGocdbDowntimes &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.MDDBSync &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.RecvFromQueue&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.SendToMetricStore&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.SendToMsg&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.nagios.DiskCheck &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.nagios.ProcessCrond &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.nagios.ProcessMsgToQueue &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.nagios.ProcessNpcd&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.sam.CE-JobMonit-ops &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.sam.CREAMCE-JobMonit-ops &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.sam.mpi.CE-JobMonit-ops&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.MyProxy-ProxyLifetime-ops&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
= Mise à jour =&lt;br /&gt;
Pour modifier la configuration (Exemple nouveau site a ajouter pour le FOC france):&lt;br /&gt;
&lt;br /&gt;
Modifier &#039;&#039;&#039;/etc/ncg/ncg.localdb&#039;&#039;&#039; en conséquence.&lt;br /&gt;
&lt;br /&gt;
Au prealablefaire une &amp;quot;sauvegarde&amp;quot; local de la config nagios:&lt;br /&gt;
 mv /etc/nagios/wlcg.d /etc/nagios/wlcg.d.old&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Puis executer le script ncg:&lt;br /&gt;
 /usr/sbin/ncg.pl&lt;br /&gt;
&lt;br /&gt;
Et redemarrer nagios avec la nouvelle configuration:&lt;br /&gt;
 /etc/init.d/nagios restart&lt;br /&gt;
&lt;br /&gt;
Verifier que la config est OK et faire un commit dans svn &#039;&#039;&#039;svn ci&#039;&#039;&#039; pour la sauvegarde de la configuration.&lt;br /&gt;
 svn ci&lt;br /&gt;
&lt;br /&gt;
= bascule =&lt;br /&gt;
Si probleme hardware sur la machine=&amp;gt; bascule sur la machine virtuelle de secours (Nadia ou Jacques).&lt;br /&gt;
Faire ensuite un &#039;&#039;&#039;svn co&#039;&#039;&#039; de la config nagios pour avoir la derniere config de production.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Annexes =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Annexe0 ==&lt;br /&gt;
&lt;br /&gt;
Sur le myproxyserver, il faut que le nagios server soit &amp;quot;trusted retriever&amp;quot; et &amp;quot;authorized retrievers&amp;quot;:&lt;br /&gt;
 [cleroy@grid08 ~]$ grep cclcgvmli03 /opt/glite/etc/myproxy-server.conf&lt;br /&gt;
 trusted_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 authorized_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Sur une UI:&lt;br /&gt;
&lt;br /&gt;
 voms-proxy-init -voms ops:/ops/Role=lcgadmin&lt;br /&gt;
 myproxy-init -c 336 -k nagios_roc_fr2-ops -s myproxy.grif.fr -l nagios  -x -Z &amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-IN2P3/CN=ccnagboxli01.in2p3.fr&amp;quot;&lt;br /&gt;
&lt;br /&gt;
== Annexe 1 ==&lt;br /&gt;
 rpm -ivh http://www.sysadmin.hep.ac.uk/rpms/egee-SA1/centos5/x86_64/sa1-release-2-1.el5.noarch.rpm&lt;br /&gt;
 rpm -ivh  http://packages.sw.be/rpmforge-release/rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm&lt;br /&gt;
&lt;br /&gt;
 yum install atp&lt;br /&gt;
 yum install bouncycastle&lt;br /&gt;
 yum install broker&lt;br /&gt;
 yum install broker-cache&lt;br /&gt;
 yum install dcache-srmclient&lt;br /&gt;
 yum install dummy-ca-certs&lt;br /&gt;
 yum install egee-NAGIOS&lt;br /&gt;
 yum install egee-NAGIOS egee-NRPE&lt;br /&gt;
 yum install egee-NRPE&lt;br /&gt;
 yum install fetch-crl&lt;br /&gt;
 yum install fipscheck fipscheck-lib&lt;br /&gt;
 yum install glite-UI&lt;br /&gt;
 yum install glite-security-voms-clients&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install glite-yaim-core&lt;br /&gt;
 yum install glite-yaim-nagios&lt;br /&gt;
 yum install httpd&lt;br /&gt;
 yum install jdk&lt;br /&gt;
 yum install lcg-CA&lt;br /&gt;
 yum install lcg-CA egee-NAGIOS&lt;br /&gt;
 yum install lcg_util&lt;br /&gt;
 yum install mddb&lt;br /&gt;
 yum install msg-publish-simple&lt;br /&gt;
 yum install myproxy&lt;br /&gt;
 yum install mysql-client&lt;br /&gt;
 yum install mysql-server&lt;br /&gt;
 yum install nagios-proxy-refresh&lt;br /&gt;
 yum install perl-Config-Tiny&lt;br /&gt;
 yum install perl-DBD-MySQL&lt;br /&gt;
 yum install perl-rrdtool-1.3.8-2.el5.rf.x86_64&lt;br /&gt;
 yum install python-yaml&lt;br /&gt;
 yum install sun-jaf&lt;br /&gt;
 yum install uberftp-client&lt;br /&gt;
 yum install vdt_globus_rm_client&lt;br /&gt;
&lt;br /&gt;
 yum update glite-yaim-clients&lt;br /&gt;
 yum update glite-yaim-core&lt;br /&gt;
 yum update glite-yaim-nagios&lt;br /&gt;
 yum update mysql-server&lt;br /&gt;
 yum update perl-DBI&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
== Annexe2 ==&lt;br /&gt;
a)Mot de passe admin mysql :&lt;br /&gt;
Yum pour recupérer la derniere version de Mysql :&lt;br /&gt;
&#039;&#039;MySQL-server-community&#039;&#039;, ne pas oublier le client (pas de dépendance dessus)&lt;br /&gt;
Demmarrage de mysql avec --skip-grant-tables (pour ne pas avoir de mot de passe a rentrer)&lt;br /&gt;
 mysqld_safe --skip-grant-tables &amp;amp;&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root &lt;br /&gt;
 update user set password=PASSWORD(&amp;quot;NEW-ROOT-PASSWORD&amp;quot;) where User=&#039;root&#039;;&lt;br /&gt;
&lt;br /&gt;
b)creation des users pour le nagios regional:&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root -p&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON nagios.* TO &#039;ndouser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON atp.* TO &#039;atpuser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
== Annexe 3 ==&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /etc/ncg/ncg.localdb&lt;br /&gt;
 #&lt;br /&gt;
 # Local Rules file to modify NCG configuration&lt;br /&gt;
 #&lt;br /&gt;
 SITE!AUVERGRID&lt;br /&gt;
 SITE!CGG-LCG2&lt;br /&gt;
 SITE!ESRF&lt;br /&gt;
 SITE!GRIF&lt;br /&gt;
 SITE!IBCP-GBIO&lt;br /&gt;
 SITE!IN2P3-CC&lt;br /&gt;
 SITE!IN2P3-CC-PPS&lt;br /&gt;
 SITE!IN2P3-CC-T2&lt;br /&gt;
 SITE!IN2P3-CPPM&lt;br /&gt;
 SITE!IN2P3-IPNL&lt;br /&gt;
 SITE!IN2P3-IRES&lt;br /&gt;
 SITE!IN2P3-LAPP&lt;br /&gt;
 SITE!IN2P3-LPC&lt;br /&gt;
 SITE!IN2P3-LPSC&lt;br /&gt;
 SITE!IN2P3-SUBATECH&lt;br /&gt;
 SITE!IPSL-IPGP-LCG2&lt;br /&gt;
 SITE!M3PEC&lt;br /&gt;
 SITE!MSFG&lt;br /&gt;
 SITE!MSFG-MULTI&lt;br /&gt;
 SITE!MSFG-OPEN&lt;br /&gt;
 SITE!OBSPM&lt;br /&gt;
 SITE!PARIS-UREC-IPV6&lt;br /&gt;
 SITE!SN-UCAD&lt;br /&gt;
 SITE!ROC-FR&lt;br /&gt;
 SITE!SOLEIL&lt;br /&gt;
 SITE!StratusLab&lt;br /&gt;
 [root@cclcgvmli03 ~]#&lt;br /&gt;
 &lt;br /&gt;
== Annexe 4 ==&lt;br /&gt;
&lt;br /&gt;
 SITE_EMAIL=c.leroy@cea.fr&lt;br /&gt;
 SITE_NAME=ROC-FR&lt;br /&gt;
 RB_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 WMS_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 PX_HOST=myproxy.grif.fr&lt;br /&gt;
 BDII_HOST=topbdii.grif.fr&lt;br /&gt;
 SITE_BDII_HOST=bdii.grif.fr&lt;br /&gt;
 MON_HOST=node06.datagrid.cea.fr&lt;br /&gt;
 VOS=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 DTEAM_GROUP_ENABLE=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 VO_DTEAM_SW_DIR=$VO_SW_DIR/dteam&lt;br /&gt;
 VO_DTEAM_DEFAULT_SE=$SE_HOST&lt;br /&gt;
 VO_DTEAM_STORAGE_DIR=$CLASSIC_STORAGE_DIR/dteam&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/&#039;&lt;br /&gt;
 VO_DTEAM_VOMSES=&amp;quot;&#039;dteam lcg-voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=lcg-voms.cern.ch dteam 24&#039; &#039;dteam    voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=voms.cern.ch dteam 24&#039;&amp;quot;&lt;br /&gt;
 VO_DTEAM_VOMS_CA_DN=&amp;quot;&#039;/DC=ch/DC=cern/CN=CERN Trusted Certification Authority&#039; &#039;/DC=ch/DC=cern/CN=CERN Trusted   Certification Authority&#039;&amp;quot;&lt;br /&gt;
 NAGIOS_HOST=cclcgvmli03.in2p3.fr&lt;br /&gt;
 NAGIOS_ADMIN_DNS=&amp;quot;/O=GRID-FR/C=FR/O=CEA/OU=IRFU/CN=Christine Leroy&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=Nadia Lajili&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=LPC/CN=Emmanuel Medernach&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CPPM/CN=Juan Carlos Carranza&amp;quot;&lt;br /&gt;
 NAGIOS_NCG_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_NAGIOS_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_GOCDB_ROC_NAME=France&lt;br /&gt;
 ROC_NAME=France&lt;br /&gt;
 NCG_PROBES_TYPE=remote,native,local&lt;br /&gt;
 NCG_VO=dteam&lt;br /&gt;
 NAGIOS_MYPROXY_NAME=nagios_roc_fr2&lt;br /&gt;
 NAGIOS_MYPROXY_USER=nagios&lt;br /&gt;
 MSG_BROKER_CACHE_NETWORK=PROD&lt;br /&gt;
 NAGIOS_ROLE=roc&lt;br /&gt;
 NAGIOS_HTTPD_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_SUDO_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_CGI_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_LDAP_FILTER=GlueSiteOtherInfo=EGEE_ROC=France&lt;br /&gt;
 NAGIOS_DB_PASS=x&lt;br /&gt;
 NAGIOS_NSCA_PASS=x&lt;br /&gt;
 MYSQL_ADMIN=x&lt;br /&gt;
 ATP_DB_PASS=x&lt;br /&gt;
 MDDB_DB_PASS=x&lt;br /&gt;
 MS_DB_PASS=x&lt;br /&gt;
 MYSQL_PASSWORD=x&lt;br /&gt;
 MYEGEE_DB_PASS=x&lt;br /&gt;
&lt;br /&gt;
== Annexe 5 ==&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /opt/glite/yaim/examples/edgusers.conf&lt;br /&gt;
 11151:${DPMMGR_USER}:11151:${DPMMGR_GROUP}:DPM user:&lt;br /&gt;
 11152:${EDG_USER}:11152,11156:${EDG_GROUP},${INFOSYS_GROUP}:EDG user:${EDG_HOME_DIR}&lt;br /&gt;
 11153:${EDGINFO_USER}:11153,1156:${EDGINFO_USER},${INFOSYS_GROUP}:EDG info user:${EDGINFO_HOME_DIR}&lt;br /&gt;
 11154:${RGMA_USER}:11154,1156:${RGMA_GROUP},${INFOSYS_GROUP}:RGMA user:${INSTALL_ROOT}/glite/etc/rgma&lt;br /&gt;
 11155:${GLITE_USER}:11155:${GLITE_GROUP}:gLite user:${GLITE_HOME_DIR}&lt;br /&gt;
 11156:${BDII_USER}:11158:${BDII_GROUP}:BDII user:${BDII_HOME_DIR}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Annexe 6 ==&lt;br /&gt;
&lt;br /&gt;
Probleme rencontré sur ccnagboxli01 (arret de ypbind + rpm manquant)&lt;br /&gt;
 chown -R nagios:nagios /var/spool/pnp4nagios&lt;br /&gt;
 chown -R nagios:nagios /var/spool/msg-nagios-bridge&lt;br /&gt;
 chown root:nagios /etc/atp/atp_db.conf&lt;br /&gt;
 chown root:nagios /etc/mddb/databases.yml&lt;br /&gt;
 chown nagios:apache /var/nagios/rw&lt;br /&gt;
 chown -R nagios:apache /var/nagios/rw&lt;br /&gt;
 chown root:nagios /etc/nagios/plugins/send_to_db.ini&lt;br /&gt;
 chown -R nagios:nagios /var/cache/msg/config-cache&lt;br /&gt;
 chown -R nagios:root /var/log/mddb&lt;br /&gt;
 chown -R nagios:root /var/log/pnp4nagios&lt;br /&gt;
 chown -R nagios:root /var/log/nagios&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
  useradd -g 40011 -u 10011 nagios&lt;br /&gt;
  useradd --group mysql -u 2730 mysql&lt;br /&gt;
  useradd -g mysql -u 2730 mysql&lt;br /&gt;
&lt;br /&gt;
   groupadd -g 40010 nagiosmaster&lt;br /&gt;
   groupadd -g 146 leftuser&lt;br /&gt;
&lt;br /&gt;
 yum install glite-security-voms-api-c-1.8.12-2.sl5.x86_64&lt;br /&gt;
 yum update perl-Net-SSLeay&lt;br /&gt;
 yum update perl-IO-Socket-SSL-1.01-1.fc6.noarch&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install lcg_util-1.7.6-1.sl5.x86_64&lt;br /&gt;
 yum install GFAL-client-1.11.8-2.sl5.x86_64 GFAL-client-1.11.8-2.sl5.i386&lt;br /&gt;
 yum install CGSI_gSOAP_2.7-1.3.3-1.sl5.x86_64&lt;br /&gt;
 yum install LFC-interfaces-1.7.3-1sec.sl5.x86_64 LFC-client-1.7.3-1sec.sl5.x86_64 lcg-dm-common-1.7.3-1sec.sl5.x86_64&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5763</id>
		<title>Nagios regional</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5763"/>
		<updated>2010-04-06T11:17:13Z</updated>

		<summary type="html">&lt;p&gt;LEROY: /* validation */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Installation d&#039;une NOGIOS box pour le ROC France&lt;br /&gt;
&lt;br /&gt;
= 1)	Installation de base : =&lt;br /&gt;
a.	Machine installée par les sysadmin du CC : OS + VOBOX + certificat + pas dans les NIS&lt;br /&gt;
&lt;br /&gt;
b.	Accessible via gsissh (port 1975)&lt;br /&gt;
&lt;br /&gt;
= 2)	Action faite au préalable : =&lt;br /&gt;
a.	Faire la demande pour que la machine soit autorisée à récupérer les SAM tests : https://gus.fzk.de/ws/ticket_info.php?ticket=55132&lt;br /&gt;
&lt;br /&gt;
b.	Autoriser la nagios box à récupérer les proxy en mode « retrieval », et stocker un proxy depuis une UI récuperable par la nagiosBOX voir  [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe0 Annexe0]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
c.	Certificat utilisé pour :&lt;br /&gt;
&lt;br /&gt;
i.	                       Access to GOCDB PI for ROCS GOCDB PI level 2 required &lt;br /&gt;
&lt;br /&gt;
ii.	                       Recuperation de proxy pour les sondes locales&lt;br /&gt;
&lt;br /&gt;
d. s&#039;inscrire dans la mailing liste: regional-nagios-admins@cern.ch (très réactive)&lt;br /&gt;
&lt;br /&gt;
= 3)	Installation de Nagios =&lt;br /&gt;
Reference : https://twiki.cern.ch/twiki/bin/view/EGEE/GridMonitoringNcgYaim&lt;br /&gt;
== Installation des packages via yum, Ajout des repos suivant ==&lt;br /&gt;
 a.	mirrors-rpmforge (rpm rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm)&lt;br /&gt;
 b.	rpmforge-testing.repo&lt;br /&gt;
 c.	rpmforge.repo&lt;br /&gt;
 d.	glite-UI.repo&lt;br /&gt;
 e.	sa1-centos5-release.repo (rpm:  sa1-release-2-1.el5.noarch.rpm)&lt;br /&gt;
 f.	glite-BDII.repo&lt;br /&gt;
&lt;br /&gt;
Problèmes de dépendances rencontrées si besoin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe1 Annexe1] (mais j’avais dû oublier de faire un : yum install egee-NAGIOS)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Installation subversion ==&lt;br /&gt;
Certain fichier de config sont a recuperer via svn au CERN:&lt;br /&gt;
&lt;br /&gt;
 yum install subversion&lt;br /&gt;
 svn co http://svnweb.cern.ch/guest/sam/trunk/roc-config&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 cp /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm.orig&lt;br /&gt;
 cp roc-config/Hash.pm_55_ALL_CRIT /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm&lt;br /&gt;
&lt;br /&gt;
== Mysql ==&lt;br /&gt;
&lt;br /&gt;
1.	Installer la dernière version de Mysql (server + client) ; &lt;br /&gt;
&lt;br /&gt;
2.	configurer le mot de passe admin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2a] ;&lt;br /&gt;
&lt;br /&gt;
3.	Configurer les users utiles à la nagios Box se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2b] ;&lt;br /&gt;
&lt;br /&gt;
== Configuration via yaim et NCG (en 2 fois)==&lt;br /&gt;
&lt;br /&gt;
1.	Remplir /etc/ncg/ncg.localdb avec la liste des sites se referer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe3 Annexe3]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
2.	Remplir le /opt/glite/yaim/site-info.def voir [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe4 Annexe4] ;&lt;br /&gt;
&lt;br /&gt;
3.	groupadd nagios&lt;br /&gt;
&lt;br /&gt;
4.	modif des uids/gids : /opt/glite/yaim/examples/edgusers.conf [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe5 Annexe5]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
5.	lancement de la configuration automatique via yaim (All On One Box) :&lt;br /&gt;
 	&lt;br /&gt;
 	/opt/glite/yaim/bin/yaim -s /opt/glite/yaim/site-info.def -c -n glite-UI -n glite-NAGIOS&lt;br /&gt;
&lt;br /&gt;
6.	lancement de la configuration via NCG (All On One Box) :&lt;br /&gt;
&lt;br /&gt;
 /usr/sbin/ncg.pl&lt;br /&gt;
&lt;br /&gt;
.....MODIFICATION importante:: voir: https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
La partie:&lt;br /&gt;
#  Configure manually /etc/ncg/ncg.conf (Template can be found here: ncg.conf.template: )&lt;br /&gt;
- Switch off automatic generation of ncg.conf by YAIM (NAGIOS_NCG_ENABLE_CONFIG&amp;quot;=&amp;quot;false&amp;quot;)&lt;br /&gt;
- Take ncg.conf.template and copy it to /etc/ncg/ncg.conf&lt;br /&gt;
     - Set $ROC_NAME$&lt;br /&gt;
     - Set $YOUR_MYPROXY_SERVER$ (e.g. myproxy-fts.cern.ch)&lt;br /&gt;
     - Set $MYPROXY_NAME$ (e.g.: NagiosRetrieve-sam-ap-roc.cern.ch)&lt;br /&gt;
     - Set $NAGIOS_ROLE$ (e.g.: ngi, roc)&lt;br /&gt;
# Take Hash.pm file that we are currently using at the CERN ROC Nagios boxes. In this file, we have removed the metrics that do not belong to the SAM_Critical profile, so only the metrics defined at ROC_SAM_critical are configured, and not relevant services like SRMv1 are commented out. The file is located under /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm &lt;br /&gt;
&lt;br /&gt;
Pour éviter d&#039;avoir des sondes inappropriés.&lt;br /&gt;
&lt;br /&gt;
== Tuning the configuration ==&lt;br /&gt;
&lt;br /&gt;
1.	Verifier  dans /etc/sysconfig/nagios:&lt;br /&gt;
 LD_LIBRARY_PATH=/opt/classads/lib64:/opt/glite/lib64:/opt/globus/lib:/opt/c-ares/lib:/opt/classads/lib64  &lt;br /&gt;
&lt;br /&gt;
2.	Desactiver les notifications, dans les fichiers de conf: &lt;br /&gt;
 a.      /etc/nagios/nagios.cfg, désactiver les notifications:enable_notifications=0 ;log_notifications=0&lt;br /&gt;
 b.	 /etc/nagios/wlcg.d/host.templates.cfg&lt;br /&gt;
 c.	 /etc/nagios/wlcg.d/service.templates.cfg&lt;br /&gt;
&lt;br /&gt;
4.	N’autoriser que les dteam/France à visualiser notre interface nagios : modifier le fichier : &lt;br /&gt;
 /etc/voms2htpasswd.conf, avec : vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&lt;br /&gt;
Plus utile site le site-info.def est défini correctement:&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&#039;&lt;br /&gt;
&lt;br /&gt;
== ActiveMQ ==&lt;br /&gt;
 /usr/sbin/msg-to-queue --prefix /queue/grid.probe.metricOutput.EGEE.a635834332381123c8b296d02b682f8f --broker-uri stomp://prod-grid-msg.cern.ch:6163&lt;br /&gt;
 &lt;br /&gt;
[root@cclcgvmli03 cron.hourly]# cat check_msg-to-queue.sh&lt;br /&gt;
&lt;br /&gt;
Verifier les messages:&lt;br /&gt;
 /usr/libexec/grid-monitoring/plugins/nagios/recv_from_queue -v &lt;br /&gt;
&lt;br /&gt;
faire une update de perl-GridMon &lt;br /&gt;
 The problem here is in the message handler &lt;br /&gt;
 (/usr/lib/perl5/vendor_perl/5.8.8/GridMon/MsgHandler/MetricOutput.pm). &lt;br /&gt;
 Probe on WN reports hostname localhost.localdomain and serviceURI CE &lt;br /&gt;
 hostname. In the previous version message handler first checked hostname &lt;br /&gt;
 value and then serviceURI. That is the reason why Christine is seeing &lt;br /&gt;
 results for localhost.localdomain. However, we fixed this and the latest &lt;br /&gt;
 version (1.0.34) parses messages correctly.&lt;br /&gt;
&lt;br /&gt;
 yum update perl-GridMon&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== Systeme d&#039;information ==&lt;br /&gt;
La nagios Box doit etre enregistré dans la GOCDB &lt;br /&gt;
et publié dans le site-BDII:&lt;br /&gt;
 ldapsearch -x -H ldap://ccnagboxli01.in2p3.fr:2170 -b &#039;Mds-vo-name=resource,o=Grid&#039;&lt;br /&gt;
&lt;br /&gt;
= validation =&lt;br /&gt;
&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
&lt;br /&gt;
now you should publish your Nagios in your Site BDII&lt;br /&gt;
And we should declare the node in the GOCDB: Regional-NAGIOS ou National-Nagios, a determiner&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
liste des sondes a valider: d&#039;après: https://twiki.cern.ch/twiki/bin/view/LCG/SAMCriticalTestsForCODs&lt;br /&gt;
&lt;br /&gt;
== Services grilles ==&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Type de Noeuds&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Valid (Y or N)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
APEL&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Pas de métric ?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
BDII (site and TOP)&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
- Probleme identifié pour la variable LCG_GFAL_INFOSYS quand c&#039;est une liste (CE lpnce.in2p3.fr):&lt;br /&gt;
LCG_GFAL_INFOSYS=topbdii.grif.fr:2170,cclcgtopbdii01.in2p3.fr:2170,lapp-bdii01.in2p3.fr:2170&lt;br /&gt;
&lt;br /&gt;
-Tout le mecanisme de recuperation des outputs n&#039;est pas compris mais globalement on a les meme resultat que celui du CERN&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CREAMCE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: idem CERN nagiosBOX (mais sonde Brokerinfo toujours en erreur: probleme connu: https://savannah.cern.ch/bugs/?61322)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
FTS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y and NO: For the check_command those options should be added: &lt;br /&gt;
--cert /etc/nagios/globus/hostcert.pem   --key /etc/nagios/globus/hostkey.pem  -x $USER2$ (this should be fixed in the next release)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
gRB/WMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y:(certificate lifetime only)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_C&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: mais il faudrait peut etre demander au site de supporter la VO ops pour que leur LFC soit testé (lfc-ls et lfc-ping)?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_L&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: mais il faudrait peut etre demander au site de supporter la VO ops pour que leur LFC soit testé (lfc-ls et lfc-ping)?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MPI&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
em&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MyProxy&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
em&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RB&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nobody&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Service Deprecated. Does NOT apply in Nagios&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RGMA / MON&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y (certificate lifetime only)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
&lt;br /&gt;
SRMv2&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOBOX&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
em&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Services nagios BOX ==&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Services&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Valid (Y or N)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.CAdist-Version&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.CertLifetime&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.GridProxy-Get-ops&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.GridProxy-Valid-ops&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.ATPSync&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.CheckConfig&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.ImportGocdbDowntimes &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.MDDBSync &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.RecvFromQueue&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.SendToMetricStore&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.SendToMsg&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.nagios.DiskCheck &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.nagios.ProcessCrond &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.nagios.ProcessMsgToQueue &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.nagios.ProcessNpcd&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.sam.CE-JobMonit-ops &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.sam.CREAMCE-JobMonit-ops &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.sam.mpi.CE-JobMonit-ops&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.MyProxy-ProxyLifetime-ops&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
= Mise à jour =&lt;br /&gt;
Pour modifier la configuration (Exemple nouveau site a ajouter pour le FOC france):&lt;br /&gt;
Modifier &#039;&#039;&#039;/etc/ncg/ncg.localdb&#039;&#039;&#039; en conséquence.&lt;br /&gt;
Puis executer le script ncg:&lt;br /&gt;
 /usr/sbin/ncg.pl&lt;br /&gt;
Au prealablefaire une &amp;quot;sauvegarde&amp;quot; local de la config nagios:&lt;br /&gt;
 mv /etc/nagios/wlcg.d /etc/nagios/wlcg.d.old&lt;br /&gt;
&lt;br /&gt;
Verifier que la config est OK et faire un &#039;&#039;&#039;svn ci&#039;&#039;&#039; pour la sauvegarde de la configuration.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= bascule =&lt;br /&gt;
Si probleme hardware sur la machine=&amp;gt; bascule sur la machine virtuelle de secours (Nadia ou Jacques).&lt;br /&gt;
Faire ensuite un &#039;&#039;&#039;svn co&#039;&#039;&#039; de la config nagios pour avoir la derniere config de production.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Annexes =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Annexe0 ==&lt;br /&gt;
&lt;br /&gt;
Sur le myproxyserver, il faut que le nagios server soit &amp;quot;trusted retriever&amp;quot; et &amp;quot;authorized retrievers&amp;quot;:&lt;br /&gt;
 [cleroy@grid08 ~]$ grep cclcgvmli03 /opt/glite/etc/myproxy-server.conf&lt;br /&gt;
 trusted_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 authorized_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Sur une UI:&lt;br /&gt;
&lt;br /&gt;
 voms-proxy-init -voms ops:/ops/Role=lcgadmin&lt;br /&gt;
 myproxy-init -c 336 -k nagios_roc_fr2-ops -s myproxy.grif.fr -l nagios  -x -Z &amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-IN2P3/CN=ccnagboxli01.in2p3.fr&amp;quot;&lt;br /&gt;
&lt;br /&gt;
== Annexe 1 ==&lt;br /&gt;
 rpm -ivh http://www.sysadmin.hep.ac.uk/rpms/egee-SA1/centos5/x86_64/sa1-release-2-1.el5.noarch.rpm&lt;br /&gt;
 rpm -ivh  http://packages.sw.be/rpmforge-release/rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm&lt;br /&gt;
&lt;br /&gt;
 yum install atp&lt;br /&gt;
 yum install bouncycastle&lt;br /&gt;
 yum install broker&lt;br /&gt;
 yum install broker-cache&lt;br /&gt;
 yum install dcache-srmclient&lt;br /&gt;
 yum install dummy-ca-certs&lt;br /&gt;
 yum install egee-NAGIOS&lt;br /&gt;
 yum install egee-NAGIOS egee-NRPE&lt;br /&gt;
 yum install egee-NRPE&lt;br /&gt;
 yum install fetch-crl&lt;br /&gt;
 yum install fipscheck fipscheck-lib&lt;br /&gt;
 yum install glite-UI&lt;br /&gt;
 yum install glite-security-voms-clients&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install glite-yaim-core&lt;br /&gt;
 yum install glite-yaim-nagios&lt;br /&gt;
 yum install httpd&lt;br /&gt;
 yum install jdk&lt;br /&gt;
 yum install lcg-CA&lt;br /&gt;
 yum install lcg-CA egee-NAGIOS&lt;br /&gt;
 yum install lcg_util&lt;br /&gt;
 yum install mddb&lt;br /&gt;
 yum install msg-publish-simple&lt;br /&gt;
 yum install myproxy&lt;br /&gt;
 yum install mysql-client&lt;br /&gt;
 yum install mysql-server&lt;br /&gt;
 yum install nagios-proxy-refresh&lt;br /&gt;
 yum install perl-Config-Tiny&lt;br /&gt;
 yum install perl-DBD-MySQL&lt;br /&gt;
 yum install perl-rrdtool-1.3.8-2.el5.rf.x86_64&lt;br /&gt;
 yum install python-yaml&lt;br /&gt;
 yum install sun-jaf&lt;br /&gt;
 yum install uberftp-client&lt;br /&gt;
 yum install vdt_globus_rm_client&lt;br /&gt;
&lt;br /&gt;
 yum update glite-yaim-clients&lt;br /&gt;
 yum update glite-yaim-core&lt;br /&gt;
 yum update glite-yaim-nagios&lt;br /&gt;
 yum update mysql-server&lt;br /&gt;
 yum update perl-DBI&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
== Annexe2 ==&lt;br /&gt;
a)Mot de passe admin mysql :&lt;br /&gt;
Yum pour recupérer la derniere version de Mysql :&lt;br /&gt;
&#039;&#039;MySQL-server-community&#039;&#039;, ne pas oublier le client (pas de dépendance dessus)&lt;br /&gt;
Demmarrage de mysql avec --skip-grant-tables (pour ne pas avoir de mot de passe a rentrer)&lt;br /&gt;
 mysqld_safe --skip-grant-tables &amp;amp;&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root &lt;br /&gt;
 update user set password=PASSWORD(&amp;quot;NEW-ROOT-PASSWORD&amp;quot;) where User=&#039;root&#039;;&lt;br /&gt;
&lt;br /&gt;
b)creation des users pour le nagios regional:&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root -p&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON nagios.* TO &#039;ndouser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON atp.* TO &#039;atpuser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
== Annexe 3 ==&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /etc/ncg/ncg.localdb&lt;br /&gt;
 #&lt;br /&gt;
 # Local Rules file to modify NCG configuration&lt;br /&gt;
 #&lt;br /&gt;
 SITE!AUVERGRID&lt;br /&gt;
 SITE!CGG-LCG2&lt;br /&gt;
 SITE!ESRF&lt;br /&gt;
 SITE!GRIF&lt;br /&gt;
 SITE!IBCP-GBIO&lt;br /&gt;
 SITE!IN2P3-CC&lt;br /&gt;
 SITE!IN2P3-CC-PPS&lt;br /&gt;
 SITE!IN2P3-CC-T2&lt;br /&gt;
 SITE!IN2P3-CPPM&lt;br /&gt;
 SITE!IN2P3-IPNL&lt;br /&gt;
 SITE!IN2P3-IRES&lt;br /&gt;
 SITE!IN2P3-LAPP&lt;br /&gt;
 SITE!IN2P3-LPC&lt;br /&gt;
 SITE!IN2P3-LPSC&lt;br /&gt;
 SITE!IN2P3-SUBATECH&lt;br /&gt;
 SITE!IPSL-IPGP-LCG2&lt;br /&gt;
 SITE!M3PEC&lt;br /&gt;
 SITE!MSFG&lt;br /&gt;
 SITE!MSFG-MULTI&lt;br /&gt;
 SITE!MSFG-OPEN&lt;br /&gt;
 SITE!OBSPM&lt;br /&gt;
 SITE!PARIS-UREC-IPV6&lt;br /&gt;
 SITE!SN-UCAD&lt;br /&gt;
 SITE!ROC-FR&lt;br /&gt;
 SITE!SOLEIL&lt;br /&gt;
 SITE!StratusLab&lt;br /&gt;
 [root@cclcgvmli03 ~]#&lt;br /&gt;
 &lt;br /&gt;
== Annexe 4 ==&lt;br /&gt;
&lt;br /&gt;
 SITE_EMAIL=c.leroy@cea.fr&lt;br /&gt;
 SITE_NAME=ROC-FR&lt;br /&gt;
 RB_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 WMS_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 PX_HOST=myproxy.grif.fr&lt;br /&gt;
 BDII_HOST=topbdii.grif.fr&lt;br /&gt;
 SITE_BDII_HOST=bdii.grif.fr&lt;br /&gt;
 MON_HOST=node06.datagrid.cea.fr&lt;br /&gt;
 VOS=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 DTEAM_GROUP_ENABLE=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 VO_DTEAM_SW_DIR=$VO_SW_DIR/dteam&lt;br /&gt;
 VO_DTEAM_DEFAULT_SE=$SE_HOST&lt;br /&gt;
 VO_DTEAM_STORAGE_DIR=$CLASSIC_STORAGE_DIR/dteam&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/&#039;&lt;br /&gt;
 VO_DTEAM_VOMSES=&amp;quot;&#039;dteam lcg-voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=lcg-voms.cern.ch dteam 24&#039; &#039;dteam    voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=voms.cern.ch dteam 24&#039;&amp;quot;&lt;br /&gt;
 VO_DTEAM_VOMS_CA_DN=&amp;quot;&#039;/DC=ch/DC=cern/CN=CERN Trusted Certification Authority&#039; &#039;/DC=ch/DC=cern/CN=CERN Trusted   Certification Authority&#039;&amp;quot;&lt;br /&gt;
 NAGIOS_HOST=cclcgvmli03.in2p3.fr&lt;br /&gt;
 NAGIOS_ADMIN_DNS=&amp;quot;/O=GRID-FR/C=FR/O=CEA/OU=IRFU/CN=Christine Leroy&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=Nadia Lajili&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=LPC/CN=Emmanuel Medernach&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CPPM/CN=Juan Carlos Carranza&amp;quot;&lt;br /&gt;
 NAGIOS_NCG_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_NAGIOS_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_GOCDB_ROC_NAME=France&lt;br /&gt;
 ROC_NAME=France&lt;br /&gt;
 NCG_PROBES_TYPE=remote,native,local&lt;br /&gt;
 NCG_VO=dteam&lt;br /&gt;
 NAGIOS_MYPROXY_NAME=nagios_roc_fr2&lt;br /&gt;
 NAGIOS_MYPROXY_USER=nagios&lt;br /&gt;
 MSG_BROKER_CACHE_NETWORK=PROD&lt;br /&gt;
 NAGIOS_ROLE=roc&lt;br /&gt;
 NAGIOS_HTTPD_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_SUDO_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_CGI_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_LDAP_FILTER=GlueSiteOtherInfo=EGEE_ROC=France&lt;br /&gt;
 NAGIOS_DB_PASS=x&lt;br /&gt;
 NAGIOS_NSCA_PASS=x&lt;br /&gt;
 MYSQL_ADMIN=x&lt;br /&gt;
 ATP_DB_PASS=x&lt;br /&gt;
 MDDB_DB_PASS=x&lt;br /&gt;
 MS_DB_PASS=x&lt;br /&gt;
 MYSQL_PASSWORD=x&lt;br /&gt;
 MYEGEE_DB_PASS=x&lt;br /&gt;
&lt;br /&gt;
== Annexe 5 ==&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /opt/glite/yaim/examples/edgusers.conf&lt;br /&gt;
 11151:${DPMMGR_USER}:11151:${DPMMGR_GROUP}:DPM user:&lt;br /&gt;
 11152:${EDG_USER}:11152,11156:${EDG_GROUP},${INFOSYS_GROUP}:EDG user:${EDG_HOME_DIR}&lt;br /&gt;
 11153:${EDGINFO_USER}:11153,1156:${EDGINFO_USER},${INFOSYS_GROUP}:EDG info user:${EDGINFO_HOME_DIR}&lt;br /&gt;
 11154:${RGMA_USER}:11154,1156:${RGMA_GROUP},${INFOSYS_GROUP}:RGMA user:${INSTALL_ROOT}/glite/etc/rgma&lt;br /&gt;
 11155:${GLITE_USER}:11155:${GLITE_GROUP}:gLite user:${GLITE_HOME_DIR}&lt;br /&gt;
 11156:${BDII_USER}:11158:${BDII_GROUP}:BDII user:${BDII_HOME_DIR}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Annexe 6 ==&lt;br /&gt;
&lt;br /&gt;
Probleme rencontré sur ccnagboxli01 (arret de ypbind + rpm manquant)&lt;br /&gt;
 chown -R nagios:nagios /var/spool/pnp4nagios&lt;br /&gt;
 chown -R nagios:nagios /var/spool/msg-nagios-bridge&lt;br /&gt;
 chown root:nagios /etc/atp/atp_db.conf&lt;br /&gt;
 chown root:nagios /etc/mddb/databases.yml&lt;br /&gt;
 chown nagios:apache /var/nagios/rw&lt;br /&gt;
 chown -R nagios:apache /var/nagios/rw&lt;br /&gt;
 chown root:nagios /etc/nagios/plugins/send_to_db.ini&lt;br /&gt;
 chown -R nagios:nagios /var/cache/msg/config-cache&lt;br /&gt;
 chown -R nagios:root /var/log/mddb&lt;br /&gt;
 chown -R nagios:root /var/log/pnp4nagios&lt;br /&gt;
 chown -R nagios:root /var/log/nagios&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
  useradd -g 40011 -u 10011 nagios&lt;br /&gt;
  useradd --group mysql -u 2730 mysql&lt;br /&gt;
  useradd -g mysql -u 2730 mysql&lt;br /&gt;
&lt;br /&gt;
   groupadd -g 40010 nagiosmaster&lt;br /&gt;
   groupadd -g 146 leftuser&lt;br /&gt;
&lt;br /&gt;
 yum install glite-security-voms-api-c-1.8.12-2.sl5.x86_64&lt;br /&gt;
 yum update perl-Net-SSLeay&lt;br /&gt;
 yum update perl-IO-Socket-SSL-1.01-1.fc6.noarch&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install lcg_util-1.7.6-1.sl5.x86_64&lt;br /&gt;
 yum install GFAL-client-1.11.8-2.sl5.x86_64 GFAL-client-1.11.8-2.sl5.i386&lt;br /&gt;
 yum install CGSI_gSOAP_2.7-1.3.3-1.sl5.x86_64&lt;br /&gt;
 yum install LFC-interfaces-1.7.3-1sec.sl5.x86_64 LFC-client-1.7.3-1sec.sl5.x86_64 lcg-dm-common-1.7.3-1sec.sl5.x86_64&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5762</id>
		<title>Nagios regional</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5762"/>
		<updated>2010-04-06T11:16:28Z</updated>

		<summary type="html">&lt;p&gt;LEROY: /* validation */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Installation d&#039;une NOGIOS box pour le ROC France&lt;br /&gt;
&lt;br /&gt;
= 1)	Installation de base : =&lt;br /&gt;
a.	Machine installée par les sysadmin du CC : OS + VOBOX + certificat + pas dans les NIS&lt;br /&gt;
&lt;br /&gt;
b.	Accessible via gsissh (port 1975)&lt;br /&gt;
&lt;br /&gt;
= 2)	Action faite au préalable : =&lt;br /&gt;
a.	Faire la demande pour que la machine soit autorisée à récupérer les SAM tests : https://gus.fzk.de/ws/ticket_info.php?ticket=55132&lt;br /&gt;
&lt;br /&gt;
b.	Autoriser la nagios box à récupérer les proxy en mode « retrieval », et stocker un proxy depuis une UI récuperable par la nagiosBOX voir  [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe0 Annexe0]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
c.	Certificat utilisé pour :&lt;br /&gt;
&lt;br /&gt;
i.	                       Access to GOCDB PI for ROCS GOCDB PI level 2 required &lt;br /&gt;
&lt;br /&gt;
ii.	                       Recuperation de proxy pour les sondes locales&lt;br /&gt;
&lt;br /&gt;
d. s&#039;inscrire dans la mailing liste: regional-nagios-admins@cern.ch (très réactive)&lt;br /&gt;
&lt;br /&gt;
= 3)	Installation de Nagios =&lt;br /&gt;
Reference : https://twiki.cern.ch/twiki/bin/view/EGEE/GridMonitoringNcgYaim&lt;br /&gt;
== Installation des packages via yum, Ajout des repos suivant ==&lt;br /&gt;
 a.	mirrors-rpmforge (rpm rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm)&lt;br /&gt;
 b.	rpmforge-testing.repo&lt;br /&gt;
 c.	rpmforge.repo&lt;br /&gt;
 d.	glite-UI.repo&lt;br /&gt;
 e.	sa1-centos5-release.repo (rpm:  sa1-release-2-1.el5.noarch.rpm)&lt;br /&gt;
 f.	glite-BDII.repo&lt;br /&gt;
&lt;br /&gt;
Problèmes de dépendances rencontrées si besoin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe1 Annexe1] (mais j’avais dû oublier de faire un : yum install egee-NAGIOS)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Installation subversion ==&lt;br /&gt;
Certain fichier de config sont a recuperer via svn au CERN:&lt;br /&gt;
&lt;br /&gt;
 yum install subversion&lt;br /&gt;
 svn co http://svnweb.cern.ch/guest/sam/trunk/roc-config&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 cp /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm.orig&lt;br /&gt;
 cp roc-config/Hash.pm_55_ALL_CRIT /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm&lt;br /&gt;
&lt;br /&gt;
== Mysql ==&lt;br /&gt;
&lt;br /&gt;
1.	Installer la dernière version de Mysql (server + client) ; &lt;br /&gt;
&lt;br /&gt;
2.	configurer le mot de passe admin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2a] ;&lt;br /&gt;
&lt;br /&gt;
3.	Configurer les users utiles à la nagios Box se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2b] ;&lt;br /&gt;
&lt;br /&gt;
== Configuration via yaim et NCG (en 2 fois)==&lt;br /&gt;
&lt;br /&gt;
1.	Remplir /etc/ncg/ncg.localdb avec la liste des sites se referer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe3 Annexe3]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
2.	Remplir le /opt/glite/yaim/site-info.def voir [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe4 Annexe4] ;&lt;br /&gt;
&lt;br /&gt;
3.	groupadd nagios&lt;br /&gt;
&lt;br /&gt;
4.	modif des uids/gids : /opt/glite/yaim/examples/edgusers.conf [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe5 Annexe5]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
5.	lancement de la configuration automatique via yaim (All On One Box) :&lt;br /&gt;
 	&lt;br /&gt;
 	/opt/glite/yaim/bin/yaim -s /opt/glite/yaim/site-info.def -c -n glite-UI -n glite-NAGIOS&lt;br /&gt;
&lt;br /&gt;
6.	lancement de la configuration via NCG (All On One Box) :&lt;br /&gt;
&lt;br /&gt;
 /usr/sbin/ncg.pl&lt;br /&gt;
&lt;br /&gt;
.....MODIFICATION importante:: voir: https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
La partie:&lt;br /&gt;
#  Configure manually /etc/ncg/ncg.conf (Template can be found here: ncg.conf.template: )&lt;br /&gt;
- Switch off automatic generation of ncg.conf by YAIM (NAGIOS_NCG_ENABLE_CONFIG&amp;quot;=&amp;quot;false&amp;quot;)&lt;br /&gt;
- Take ncg.conf.template and copy it to /etc/ncg/ncg.conf&lt;br /&gt;
     - Set $ROC_NAME$&lt;br /&gt;
     - Set $YOUR_MYPROXY_SERVER$ (e.g. myproxy-fts.cern.ch)&lt;br /&gt;
     - Set $MYPROXY_NAME$ (e.g.: NagiosRetrieve-sam-ap-roc.cern.ch)&lt;br /&gt;
     - Set $NAGIOS_ROLE$ (e.g.: ngi, roc)&lt;br /&gt;
# Take Hash.pm file that we are currently using at the CERN ROC Nagios boxes. In this file, we have removed the metrics that do not belong to the SAM_Critical profile, so only the metrics defined at ROC_SAM_critical are configured, and not relevant services like SRMv1 are commented out. The file is located under /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm &lt;br /&gt;
&lt;br /&gt;
Pour éviter d&#039;avoir des sondes inappropriés.&lt;br /&gt;
&lt;br /&gt;
== Tuning the configuration ==&lt;br /&gt;
&lt;br /&gt;
1.	Verifier  dans /etc/sysconfig/nagios:&lt;br /&gt;
 LD_LIBRARY_PATH=/opt/classads/lib64:/opt/glite/lib64:/opt/globus/lib:/opt/c-ares/lib:/opt/classads/lib64  &lt;br /&gt;
&lt;br /&gt;
2.	Desactiver les notifications, dans les fichiers de conf: &lt;br /&gt;
 a.      /etc/nagios/nagios.cfg, désactiver les notifications:enable_notifications=0 ;log_notifications=0&lt;br /&gt;
 b.	 /etc/nagios/wlcg.d/host.templates.cfg&lt;br /&gt;
 c.	 /etc/nagios/wlcg.d/service.templates.cfg&lt;br /&gt;
&lt;br /&gt;
4.	N’autoriser que les dteam/France à visualiser notre interface nagios : modifier le fichier : &lt;br /&gt;
 /etc/voms2htpasswd.conf, avec : vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&lt;br /&gt;
Plus utile site le site-info.def est défini correctement:&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&#039;&lt;br /&gt;
&lt;br /&gt;
== ActiveMQ ==&lt;br /&gt;
 /usr/sbin/msg-to-queue --prefix /queue/grid.probe.metricOutput.EGEE.a635834332381123c8b296d02b682f8f --broker-uri stomp://prod-grid-msg.cern.ch:6163&lt;br /&gt;
 &lt;br /&gt;
[root@cclcgvmli03 cron.hourly]# cat check_msg-to-queue.sh&lt;br /&gt;
&lt;br /&gt;
Verifier les messages:&lt;br /&gt;
 /usr/libexec/grid-monitoring/plugins/nagios/recv_from_queue -v &lt;br /&gt;
&lt;br /&gt;
faire une update de perl-GridMon &lt;br /&gt;
 The problem here is in the message handler &lt;br /&gt;
 (/usr/lib/perl5/vendor_perl/5.8.8/GridMon/MsgHandler/MetricOutput.pm). &lt;br /&gt;
 Probe on WN reports hostname localhost.localdomain and serviceURI CE &lt;br /&gt;
 hostname. In the previous version message handler first checked hostname &lt;br /&gt;
 value and then serviceURI. That is the reason why Christine is seeing &lt;br /&gt;
 results for localhost.localdomain. However, we fixed this and the latest &lt;br /&gt;
 version (1.0.34) parses messages correctly.&lt;br /&gt;
&lt;br /&gt;
 yum update perl-GridMon&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== Systeme d&#039;information ==&lt;br /&gt;
La nagios Box doit etre enregistré dans la GOCDB &lt;br /&gt;
et publié dans le site-BDII:&lt;br /&gt;
 ldapsearch -x -H ldap://ccnagboxli01.in2p3.fr:2170 -b &#039;Mds-vo-name=resource,o=Grid&#039;&lt;br /&gt;
&lt;br /&gt;
= validation =&lt;br /&gt;
&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
&lt;br /&gt;
now you should publish your Nagios in your Site BDII&lt;br /&gt;
And we should declare the node in the GOCDB: Regional-NAGIOS ou National-Nagios, a determiner&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
liste des sondes a valider: d&#039;après: https://twiki.cern.ch/twiki/bin/view/LCG/SAMCriticalTestsForCODs&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Type de Noeuds&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Valid (Y or N)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
APEL&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Pas de métric ?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
BDII (site and TOP)&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
- Probleme identifié pour la variable LCG_GFAL_INFOSYS quand c&#039;est une liste (CE lpnce.in2p3.fr):&lt;br /&gt;
LCG_GFAL_INFOSYS=topbdii.grif.fr:2170,cclcgtopbdii01.in2p3.fr:2170,lapp-bdii01.in2p3.fr:2170&lt;br /&gt;
&lt;br /&gt;
-Tout le mecanisme de recuperation des outputs n&#039;est pas compris mais globalement on a les meme resultat que celui du CERN&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CREAMCE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: idem CERN nagiosBOX (mais sonde Brokerinfo toujours en erreur: probleme connu: https://savannah.cern.ch/bugs/?61322)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
FTS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y and NO: For the check_command those options should be added: &lt;br /&gt;
--cert /etc/nagios/globus/hostcert.pem   --key /etc/nagios/globus/hostkey.pem  -x $USER2$ (this should be fixed in the next release)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
gRB/WMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y:(certificate lifetime only)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_C&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: mais il faudrait peut etre demander au site de supporter la VO ops pour que leur LFC soit testé (lfc-ls et lfc-ping)?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_L&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: mais il faudrait peut etre demander au site de supporter la VO ops pour que leur LFC soit testé (lfc-ls et lfc-ping)?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MPI&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
em&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MyProxy&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
em&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RB&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nobody&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Service Deprecated. Does NOT apply in Nagios&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RGMA / MON&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y (certificate lifetime only)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
&lt;br /&gt;
SRMv2&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOBOX&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
em&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Sondes pour nagios BOX&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Services&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Valid (Y or N)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.CAdist-Version&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.CertLifetime&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.GridProxy-Get-ops&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.GridProxy-Valid-ops&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.ATPSync&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.CheckConfig&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.ImportGocdbDowntimes &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.MDDBSync &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.RecvFromQueue&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.SendToMetricStore&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.SendToMsg&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.nagios.DiskCheck &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.nagios.ProcessCrond &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.nagios.ProcessMsgToQueue &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.nagios.ProcessNpcd&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.sam.CE-JobMonit-ops &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.sam.CREAMCE-JobMonit-ops &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.sam.mpi.CE-JobMonit-ops&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.MyProxy-ProxyLifetime-ops&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
= Mise à jour =&lt;br /&gt;
Pour modifier la configuration (Exemple nouveau site a ajouter pour le FOC france):&lt;br /&gt;
Modifier &#039;&#039;&#039;/etc/ncg/ncg.localdb&#039;&#039;&#039; en conséquence.&lt;br /&gt;
Puis executer le script ncg:&lt;br /&gt;
 /usr/sbin/ncg.pl&lt;br /&gt;
Au prealablefaire une &amp;quot;sauvegarde&amp;quot; local de la config nagios:&lt;br /&gt;
 mv /etc/nagios/wlcg.d /etc/nagios/wlcg.d.old&lt;br /&gt;
&lt;br /&gt;
Verifier que la config est OK et faire un &#039;&#039;&#039;svn ci&#039;&#039;&#039; pour la sauvegarde de la configuration.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= bascule =&lt;br /&gt;
Si probleme hardware sur la machine=&amp;gt; bascule sur la machine virtuelle de secours (Nadia ou Jacques).&lt;br /&gt;
Faire ensuite un &#039;&#039;&#039;svn co&#039;&#039;&#039; de la config nagios pour avoir la derniere config de production.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Annexes =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Annexe0 ==&lt;br /&gt;
&lt;br /&gt;
Sur le myproxyserver, il faut que le nagios server soit &amp;quot;trusted retriever&amp;quot; et &amp;quot;authorized retrievers&amp;quot;:&lt;br /&gt;
 [cleroy@grid08 ~]$ grep cclcgvmli03 /opt/glite/etc/myproxy-server.conf&lt;br /&gt;
 trusted_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 authorized_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Sur une UI:&lt;br /&gt;
&lt;br /&gt;
 voms-proxy-init -voms ops:/ops/Role=lcgadmin&lt;br /&gt;
 myproxy-init -c 336 -k nagios_roc_fr2-ops -s myproxy.grif.fr -l nagios  -x -Z &amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-IN2P3/CN=ccnagboxli01.in2p3.fr&amp;quot;&lt;br /&gt;
&lt;br /&gt;
== Annexe 1 ==&lt;br /&gt;
 rpm -ivh http://www.sysadmin.hep.ac.uk/rpms/egee-SA1/centos5/x86_64/sa1-release-2-1.el5.noarch.rpm&lt;br /&gt;
 rpm -ivh  http://packages.sw.be/rpmforge-release/rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm&lt;br /&gt;
&lt;br /&gt;
 yum install atp&lt;br /&gt;
 yum install bouncycastle&lt;br /&gt;
 yum install broker&lt;br /&gt;
 yum install broker-cache&lt;br /&gt;
 yum install dcache-srmclient&lt;br /&gt;
 yum install dummy-ca-certs&lt;br /&gt;
 yum install egee-NAGIOS&lt;br /&gt;
 yum install egee-NAGIOS egee-NRPE&lt;br /&gt;
 yum install egee-NRPE&lt;br /&gt;
 yum install fetch-crl&lt;br /&gt;
 yum install fipscheck fipscheck-lib&lt;br /&gt;
 yum install glite-UI&lt;br /&gt;
 yum install glite-security-voms-clients&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install glite-yaim-core&lt;br /&gt;
 yum install glite-yaim-nagios&lt;br /&gt;
 yum install httpd&lt;br /&gt;
 yum install jdk&lt;br /&gt;
 yum install lcg-CA&lt;br /&gt;
 yum install lcg-CA egee-NAGIOS&lt;br /&gt;
 yum install lcg_util&lt;br /&gt;
 yum install mddb&lt;br /&gt;
 yum install msg-publish-simple&lt;br /&gt;
 yum install myproxy&lt;br /&gt;
 yum install mysql-client&lt;br /&gt;
 yum install mysql-server&lt;br /&gt;
 yum install nagios-proxy-refresh&lt;br /&gt;
 yum install perl-Config-Tiny&lt;br /&gt;
 yum install perl-DBD-MySQL&lt;br /&gt;
 yum install perl-rrdtool-1.3.8-2.el5.rf.x86_64&lt;br /&gt;
 yum install python-yaml&lt;br /&gt;
 yum install sun-jaf&lt;br /&gt;
 yum install uberftp-client&lt;br /&gt;
 yum install vdt_globus_rm_client&lt;br /&gt;
&lt;br /&gt;
 yum update glite-yaim-clients&lt;br /&gt;
 yum update glite-yaim-core&lt;br /&gt;
 yum update glite-yaim-nagios&lt;br /&gt;
 yum update mysql-server&lt;br /&gt;
 yum update perl-DBI&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
== Annexe2 ==&lt;br /&gt;
a)Mot de passe admin mysql :&lt;br /&gt;
Yum pour recupérer la derniere version de Mysql :&lt;br /&gt;
&#039;&#039;MySQL-server-community&#039;&#039;, ne pas oublier le client (pas de dépendance dessus)&lt;br /&gt;
Demmarrage de mysql avec --skip-grant-tables (pour ne pas avoir de mot de passe a rentrer)&lt;br /&gt;
 mysqld_safe --skip-grant-tables &amp;amp;&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root &lt;br /&gt;
 update user set password=PASSWORD(&amp;quot;NEW-ROOT-PASSWORD&amp;quot;) where User=&#039;root&#039;;&lt;br /&gt;
&lt;br /&gt;
b)creation des users pour le nagios regional:&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root -p&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON nagios.* TO &#039;ndouser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON atp.* TO &#039;atpuser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
== Annexe 3 ==&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /etc/ncg/ncg.localdb&lt;br /&gt;
 #&lt;br /&gt;
 # Local Rules file to modify NCG configuration&lt;br /&gt;
 #&lt;br /&gt;
 SITE!AUVERGRID&lt;br /&gt;
 SITE!CGG-LCG2&lt;br /&gt;
 SITE!ESRF&lt;br /&gt;
 SITE!GRIF&lt;br /&gt;
 SITE!IBCP-GBIO&lt;br /&gt;
 SITE!IN2P3-CC&lt;br /&gt;
 SITE!IN2P3-CC-PPS&lt;br /&gt;
 SITE!IN2P3-CC-T2&lt;br /&gt;
 SITE!IN2P3-CPPM&lt;br /&gt;
 SITE!IN2P3-IPNL&lt;br /&gt;
 SITE!IN2P3-IRES&lt;br /&gt;
 SITE!IN2P3-LAPP&lt;br /&gt;
 SITE!IN2P3-LPC&lt;br /&gt;
 SITE!IN2P3-LPSC&lt;br /&gt;
 SITE!IN2P3-SUBATECH&lt;br /&gt;
 SITE!IPSL-IPGP-LCG2&lt;br /&gt;
 SITE!M3PEC&lt;br /&gt;
 SITE!MSFG&lt;br /&gt;
 SITE!MSFG-MULTI&lt;br /&gt;
 SITE!MSFG-OPEN&lt;br /&gt;
 SITE!OBSPM&lt;br /&gt;
 SITE!PARIS-UREC-IPV6&lt;br /&gt;
 SITE!SN-UCAD&lt;br /&gt;
 SITE!ROC-FR&lt;br /&gt;
 SITE!SOLEIL&lt;br /&gt;
 SITE!StratusLab&lt;br /&gt;
 [root@cclcgvmli03 ~]#&lt;br /&gt;
 &lt;br /&gt;
== Annexe 4 ==&lt;br /&gt;
&lt;br /&gt;
 SITE_EMAIL=c.leroy@cea.fr&lt;br /&gt;
 SITE_NAME=ROC-FR&lt;br /&gt;
 RB_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 WMS_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 PX_HOST=myproxy.grif.fr&lt;br /&gt;
 BDII_HOST=topbdii.grif.fr&lt;br /&gt;
 SITE_BDII_HOST=bdii.grif.fr&lt;br /&gt;
 MON_HOST=node06.datagrid.cea.fr&lt;br /&gt;
 VOS=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 DTEAM_GROUP_ENABLE=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 VO_DTEAM_SW_DIR=$VO_SW_DIR/dteam&lt;br /&gt;
 VO_DTEAM_DEFAULT_SE=$SE_HOST&lt;br /&gt;
 VO_DTEAM_STORAGE_DIR=$CLASSIC_STORAGE_DIR/dteam&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/&#039;&lt;br /&gt;
 VO_DTEAM_VOMSES=&amp;quot;&#039;dteam lcg-voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=lcg-voms.cern.ch dteam 24&#039; &#039;dteam    voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=voms.cern.ch dteam 24&#039;&amp;quot;&lt;br /&gt;
 VO_DTEAM_VOMS_CA_DN=&amp;quot;&#039;/DC=ch/DC=cern/CN=CERN Trusted Certification Authority&#039; &#039;/DC=ch/DC=cern/CN=CERN Trusted   Certification Authority&#039;&amp;quot;&lt;br /&gt;
 NAGIOS_HOST=cclcgvmli03.in2p3.fr&lt;br /&gt;
 NAGIOS_ADMIN_DNS=&amp;quot;/O=GRID-FR/C=FR/O=CEA/OU=IRFU/CN=Christine Leroy&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=Nadia Lajili&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=LPC/CN=Emmanuel Medernach&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CPPM/CN=Juan Carlos Carranza&amp;quot;&lt;br /&gt;
 NAGIOS_NCG_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_NAGIOS_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_GOCDB_ROC_NAME=France&lt;br /&gt;
 ROC_NAME=France&lt;br /&gt;
 NCG_PROBES_TYPE=remote,native,local&lt;br /&gt;
 NCG_VO=dteam&lt;br /&gt;
 NAGIOS_MYPROXY_NAME=nagios_roc_fr2&lt;br /&gt;
 NAGIOS_MYPROXY_USER=nagios&lt;br /&gt;
 MSG_BROKER_CACHE_NETWORK=PROD&lt;br /&gt;
 NAGIOS_ROLE=roc&lt;br /&gt;
 NAGIOS_HTTPD_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_SUDO_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_CGI_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_LDAP_FILTER=GlueSiteOtherInfo=EGEE_ROC=France&lt;br /&gt;
 NAGIOS_DB_PASS=x&lt;br /&gt;
 NAGIOS_NSCA_PASS=x&lt;br /&gt;
 MYSQL_ADMIN=x&lt;br /&gt;
 ATP_DB_PASS=x&lt;br /&gt;
 MDDB_DB_PASS=x&lt;br /&gt;
 MS_DB_PASS=x&lt;br /&gt;
 MYSQL_PASSWORD=x&lt;br /&gt;
 MYEGEE_DB_PASS=x&lt;br /&gt;
&lt;br /&gt;
== Annexe 5 ==&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /opt/glite/yaim/examples/edgusers.conf&lt;br /&gt;
 11151:${DPMMGR_USER}:11151:${DPMMGR_GROUP}:DPM user:&lt;br /&gt;
 11152:${EDG_USER}:11152,11156:${EDG_GROUP},${INFOSYS_GROUP}:EDG user:${EDG_HOME_DIR}&lt;br /&gt;
 11153:${EDGINFO_USER}:11153,1156:${EDGINFO_USER},${INFOSYS_GROUP}:EDG info user:${EDGINFO_HOME_DIR}&lt;br /&gt;
 11154:${RGMA_USER}:11154,1156:${RGMA_GROUP},${INFOSYS_GROUP}:RGMA user:${INSTALL_ROOT}/glite/etc/rgma&lt;br /&gt;
 11155:${GLITE_USER}:11155:${GLITE_GROUP}:gLite user:${GLITE_HOME_DIR}&lt;br /&gt;
 11156:${BDII_USER}:11158:${BDII_GROUP}:BDII user:${BDII_HOME_DIR}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Annexe 6 ==&lt;br /&gt;
&lt;br /&gt;
Probleme rencontré sur ccnagboxli01 (arret de ypbind + rpm manquant)&lt;br /&gt;
 chown -R nagios:nagios /var/spool/pnp4nagios&lt;br /&gt;
 chown -R nagios:nagios /var/spool/msg-nagios-bridge&lt;br /&gt;
 chown root:nagios /etc/atp/atp_db.conf&lt;br /&gt;
 chown root:nagios /etc/mddb/databases.yml&lt;br /&gt;
 chown nagios:apache /var/nagios/rw&lt;br /&gt;
 chown -R nagios:apache /var/nagios/rw&lt;br /&gt;
 chown root:nagios /etc/nagios/plugins/send_to_db.ini&lt;br /&gt;
 chown -R nagios:nagios /var/cache/msg/config-cache&lt;br /&gt;
 chown -R nagios:root /var/log/mddb&lt;br /&gt;
 chown -R nagios:root /var/log/pnp4nagios&lt;br /&gt;
 chown -R nagios:root /var/log/nagios&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
  useradd -g 40011 -u 10011 nagios&lt;br /&gt;
  useradd --group mysql -u 2730 mysql&lt;br /&gt;
  useradd -g mysql -u 2730 mysql&lt;br /&gt;
&lt;br /&gt;
   groupadd -g 40010 nagiosmaster&lt;br /&gt;
   groupadd -g 146 leftuser&lt;br /&gt;
&lt;br /&gt;
 yum install glite-security-voms-api-c-1.8.12-2.sl5.x86_64&lt;br /&gt;
 yum update perl-Net-SSLeay&lt;br /&gt;
 yum update perl-IO-Socket-SSL-1.01-1.fc6.noarch&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install lcg_util-1.7.6-1.sl5.x86_64&lt;br /&gt;
 yum install GFAL-client-1.11.8-2.sl5.x86_64 GFAL-client-1.11.8-2.sl5.i386&lt;br /&gt;
 yum install CGSI_gSOAP_2.7-1.3.3-1.sl5.x86_64&lt;br /&gt;
 yum install LFC-interfaces-1.7.3-1sec.sl5.x86_64 LFC-client-1.7.3-1sec.sl5.x86_64 lcg-dm-common-1.7.3-1sec.sl5.x86_64&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5761</id>
		<title>Nagios regional</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5761"/>
		<updated>2010-04-06T11:15:27Z</updated>

		<summary type="html">&lt;p&gt;LEROY: /* validation */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Installation d&#039;une NOGIOS box pour le ROC France&lt;br /&gt;
&lt;br /&gt;
= 1)	Installation de base : =&lt;br /&gt;
a.	Machine installée par les sysadmin du CC : OS + VOBOX + certificat + pas dans les NIS&lt;br /&gt;
&lt;br /&gt;
b.	Accessible via gsissh (port 1975)&lt;br /&gt;
&lt;br /&gt;
= 2)	Action faite au préalable : =&lt;br /&gt;
a.	Faire la demande pour que la machine soit autorisée à récupérer les SAM tests : https://gus.fzk.de/ws/ticket_info.php?ticket=55132&lt;br /&gt;
&lt;br /&gt;
b.	Autoriser la nagios box à récupérer les proxy en mode « retrieval », et stocker un proxy depuis une UI récuperable par la nagiosBOX voir  [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe0 Annexe0]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
c.	Certificat utilisé pour :&lt;br /&gt;
&lt;br /&gt;
i.	                       Access to GOCDB PI for ROCS GOCDB PI level 2 required &lt;br /&gt;
&lt;br /&gt;
ii.	                       Recuperation de proxy pour les sondes locales&lt;br /&gt;
&lt;br /&gt;
d. s&#039;inscrire dans la mailing liste: regional-nagios-admins@cern.ch (très réactive)&lt;br /&gt;
&lt;br /&gt;
= 3)	Installation de Nagios =&lt;br /&gt;
Reference : https://twiki.cern.ch/twiki/bin/view/EGEE/GridMonitoringNcgYaim&lt;br /&gt;
== Installation des packages via yum, Ajout des repos suivant ==&lt;br /&gt;
 a.	mirrors-rpmforge (rpm rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm)&lt;br /&gt;
 b.	rpmforge-testing.repo&lt;br /&gt;
 c.	rpmforge.repo&lt;br /&gt;
 d.	glite-UI.repo&lt;br /&gt;
 e.	sa1-centos5-release.repo (rpm:  sa1-release-2-1.el5.noarch.rpm)&lt;br /&gt;
 f.	glite-BDII.repo&lt;br /&gt;
&lt;br /&gt;
Problèmes de dépendances rencontrées si besoin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe1 Annexe1] (mais j’avais dû oublier de faire un : yum install egee-NAGIOS)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Installation subversion ==&lt;br /&gt;
Certain fichier de config sont a recuperer via svn au CERN:&lt;br /&gt;
&lt;br /&gt;
 yum install subversion&lt;br /&gt;
 svn co http://svnweb.cern.ch/guest/sam/trunk/roc-config&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 cp /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm.orig&lt;br /&gt;
 cp roc-config/Hash.pm_55_ALL_CRIT /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm&lt;br /&gt;
&lt;br /&gt;
== Mysql ==&lt;br /&gt;
&lt;br /&gt;
1.	Installer la dernière version de Mysql (server + client) ; &lt;br /&gt;
&lt;br /&gt;
2.	configurer le mot de passe admin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2a] ;&lt;br /&gt;
&lt;br /&gt;
3.	Configurer les users utiles à la nagios Box se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2b] ;&lt;br /&gt;
&lt;br /&gt;
== Configuration via yaim et NCG (en 2 fois)==&lt;br /&gt;
&lt;br /&gt;
1.	Remplir /etc/ncg/ncg.localdb avec la liste des sites se referer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe3 Annexe3]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
2.	Remplir le /opt/glite/yaim/site-info.def voir [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe4 Annexe4] ;&lt;br /&gt;
&lt;br /&gt;
3.	groupadd nagios&lt;br /&gt;
&lt;br /&gt;
4.	modif des uids/gids : /opt/glite/yaim/examples/edgusers.conf [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe5 Annexe5]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
5.	lancement de la configuration automatique via yaim (All On One Box) :&lt;br /&gt;
 	&lt;br /&gt;
 	/opt/glite/yaim/bin/yaim -s /opt/glite/yaim/site-info.def -c -n glite-UI -n glite-NAGIOS&lt;br /&gt;
&lt;br /&gt;
6.	lancement de la configuration via NCG (All On One Box) :&lt;br /&gt;
&lt;br /&gt;
 /usr/sbin/ncg.pl&lt;br /&gt;
&lt;br /&gt;
.....MODIFICATION importante:: voir: https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
La partie:&lt;br /&gt;
#  Configure manually /etc/ncg/ncg.conf (Template can be found here: ncg.conf.template: )&lt;br /&gt;
- Switch off automatic generation of ncg.conf by YAIM (NAGIOS_NCG_ENABLE_CONFIG&amp;quot;=&amp;quot;false&amp;quot;)&lt;br /&gt;
- Take ncg.conf.template and copy it to /etc/ncg/ncg.conf&lt;br /&gt;
     - Set $ROC_NAME$&lt;br /&gt;
     - Set $YOUR_MYPROXY_SERVER$ (e.g. myproxy-fts.cern.ch)&lt;br /&gt;
     - Set $MYPROXY_NAME$ (e.g.: NagiosRetrieve-sam-ap-roc.cern.ch)&lt;br /&gt;
     - Set $NAGIOS_ROLE$ (e.g.: ngi, roc)&lt;br /&gt;
# Take Hash.pm file that we are currently using at the CERN ROC Nagios boxes. In this file, we have removed the metrics that do not belong to the SAM_Critical profile, so only the metrics defined at ROC_SAM_critical are configured, and not relevant services like SRMv1 are commented out. The file is located under /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm &lt;br /&gt;
&lt;br /&gt;
Pour éviter d&#039;avoir des sondes inappropriés.&lt;br /&gt;
&lt;br /&gt;
== Tuning the configuration ==&lt;br /&gt;
&lt;br /&gt;
1.	Verifier  dans /etc/sysconfig/nagios:&lt;br /&gt;
 LD_LIBRARY_PATH=/opt/classads/lib64:/opt/glite/lib64:/opt/globus/lib:/opt/c-ares/lib:/opt/classads/lib64  &lt;br /&gt;
&lt;br /&gt;
2.	Desactiver les notifications, dans les fichiers de conf: &lt;br /&gt;
 a.      /etc/nagios/nagios.cfg, désactiver les notifications:enable_notifications=0 ;log_notifications=0&lt;br /&gt;
 b.	 /etc/nagios/wlcg.d/host.templates.cfg&lt;br /&gt;
 c.	 /etc/nagios/wlcg.d/service.templates.cfg&lt;br /&gt;
&lt;br /&gt;
4.	N’autoriser que les dteam/France à visualiser notre interface nagios : modifier le fichier : &lt;br /&gt;
 /etc/voms2htpasswd.conf, avec : vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&lt;br /&gt;
Plus utile site le site-info.def est défini correctement:&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&#039;&lt;br /&gt;
&lt;br /&gt;
== ActiveMQ ==&lt;br /&gt;
 /usr/sbin/msg-to-queue --prefix /queue/grid.probe.metricOutput.EGEE.a635834332381123c8b296d02b682f8f --broker-uri stomp://prod-grid-msg.cern.ch:6163&lt;br /&gt;
 &lt;br /&gt;
[root@cclcgvmli03 cron.hourly]# cat check_msg-to-queue.sh&lt;br /&gt;
&lt;br /&gt;
Verifier les messages:&lt;br /&gt;
 /usr/libexec/grid-monitoring/plugins/nagios/recv_from_queue -v &lt;br /&gt;
&lt;br /&gt;
faire une update de perl-GridMon &lt;br /&gt;
 The problem here is in the message handler &lt;br /&gt;
 (/usr/lib/perl5/vendor_perl/5.8.8/GridMon/MsgHandler/MetricOutput.pm). &lt;br /&gt;
 Probe on WN reports hostname localhost.localdomain and serviceURI CE &lt;br /&gt;
 hostname. In the previous version message handler first checked hostname &lt;br /&gt;
 value and then serviceURI. That is the reason why Christine is seeing &lt;br /&gt;
 results for localhost.localdomain. However, we fixed this and the latest &lt;br /&gt;
 version (1.0.34) parses messages correctly.&lt;br /&gt;
&lt;br /&gt;
 yum update perl-GridMon&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== Systeme d&#039;information ==&lt;br /&gt;
La nagios Box doit etre enregistré dans la GOCDB &lt;br /&gt;
et publié dans le site-BDII:&lt;br /&gt;
 ldapsearch -x -H ldap://ccnagboxli01.in2p3.fr:2170 -b &#039;Mds-vo-name=resource,o=Grid&#039;&lt;br /&gt;
&lt;br /&gt;
= validation =&lt;br /&gt;
&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
&lt;br /&gt;
now you should publish your Nagios in your Site BDII&lt;br /&gt;
And we should declare the node in the GOCDB: Regional-NAGIOS ou National-Nagios, a determiner&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
liste des sondes a valider: d&#039;après: https://twiki.cern.ch/twiki/bin/view/LCG/SAMCriticalTestsForCODs&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Type de Noeuds&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Valid (Y or N)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
APEL&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Pas de métric ?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
BDII (site and TOP)&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
- Probleme identifié pour la variable LCG_GFAL_INFOSYS quand c&#039;est une liste (CE lpnce.in2p3.fr):&lt;br /&gt;
LCG_GFAL_INFOSYS=topbdii.grif.fr:2170,cclcgtopbdii01.in2p3.fr:2170,lapp-bdii01.in2p3.fr:2170&lt;br /&gt;
&lt;br /&gt;
-Tout le mecanisme de recuperation des outputs n&#039;est pas compris mais globalement on a les meme resultat que celui du CERN&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CREAMCE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: idem CERN nagiosBOX (mais sonde Brokerinfo toujours en erreur: probleme connu: https://savannah.cern.ch/bugs/?61322)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
FTS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y and NO: For the check_command those options should be added: &lt;br /&gt;
--cert /etc/nagios/globus/hostcert.pem   --key /etc/nagios/globus/hostkey.pem  -x $USER2$ (this should be fixed in the next release)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
gRB/WMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y:(certificate lifetime only)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_C&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: mais il faudrait peut etre demander au site de supporter la VO ops pour que leur LFC soit testé (lfc-ls et lfc-ping)?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_L&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: mais il faudrait peut etre demander au site de supporter la VO ops pour que leur LFC soit testé (lfc-ls et lfc-ping)?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MPI&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
em&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MyProxy&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
em&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RB&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nobody&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Service Deprecated. Does NOT apply in Nagios&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RGMA / MON&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y (certificate lifetime only)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
&lt;br /&gt;
SRMv2&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOBOX&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
em&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Sondes locales nagios BOX&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Type de Noeuds&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Valid (Y or N)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.CAdist-Version&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.CertLifetime&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.GridProxy-Get-ops&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.GridProxy-Valid-ops&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.ATPSync&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.CheckConfig&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.ImportGocdbDowntimes &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.MDDBSync &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.RecvFromQueue&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.SendToMetricStore&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.SendToMsg&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.nagios.DiskCheck &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.nagios.ProcessCrond &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.nagios.ProcessMsgToQueue &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.nagios.ProcessNpcd&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.sam.CE-JobMonit-ops &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.sam.CREAMCE-JobMonit-ops &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.sam.mpi.CE-JobMonit-ops&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.MyProxy-ProxyLifetime-ops&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
= Mise à jour =&lt;br /&gt;
Pour modifier la configuration (Exemple nouveau site a ajouter pour le FOC france):&lt;br /&gt;
Modifier &#039;&#039;&#039;/etc/ncg/ncg.localdb&#039;&#039;&#039; en conséquence.&lt;br /&gt;
Puis executer le script ncg:&lt;br /&gt;
 /usr/sbin/ncg.pl&lt;br /&gt;
Au prealablefaire une &amp;quot;sauvegarde&amp;quot; local de la config nagios:&lt;br /&gt;
 mv /etc/nagios/wlcg.d /etc/nagios/wlcg.d.old&lt;br /&gt;
&lt;br /&gt;
Verifier que la config est OK et faire un &#039;&#039;&#039;svn ci&#039;&#039;&#039; pour la sauvegarde de la configuration.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= bascule =&lt;br /&gt;
Si probleme hardware sur la machine=&amp;gt; bascule sur la machine virtuelle de secours (Nadia ou Jacques).&lt;br /&gt;
Faire ensuite un &#039;&#039;&#039;svn co&#039;&#039;&#039; de la config nagios pour avoir la derniere config de production.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Annexes =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Annexe0 ==&lt;br /&gt;
&lt;br /&gt;
Sur le myproxyserver, il faut que le nagios server soit &amp;quot;trusted retriever&amp;quot; et &amp;quot;authorized retrievers&amp;quot;:&lt;br /&gt;
 [cleroy@grid08 ~]$ grep cclcgvmli03 /opt/glite/etc/myproxy-server.conf&lt;br /&gt;
 trusted_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 authorized_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Sur une UI:&lt;br /&gt;
&lt;br /&gt;
 voms-proxy-init -voms ops:/ops/Role=lcgadmin&lt;br /&gt;
 myproxy-init -c 336 -k nagios_roc_fr2-ops -s myproxy.grif.fr -l nagios  -x -Z &amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-IN2P3/CN=ccnagboxli01.in2p3.fr&amp;quot;&lt;br /&gt;
&lt;br /&gt;
== Annexe 1 ==&lt;br /&gt;
 rpm -ivh http://www.sysadmin.hep.ac.uk/rpms/egee-SA1/centos5/x86_64/sa1-release-2-1.el5.noarch.rpm&lt;br /&gt;
 rpm -ivh  http://packages.sw.be/rpmforge-release/rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm&lt;br /&gt;
&lt;br /&gt;
 yum install atp&lt;br /&gt;
 yum install bouncycastle&lt;br /&gt;
 yum install broker&lt;br /&gt;
 yum install broker-cache&lt;br /&gt;
 yum install dcache-srmclient&lt;br /&gt;
 yum install dummy-ca-certs&lt;br /&gt;
 yum install egee-NAGIOS&lt;br /&gt;
 yum install egee-NAGIOS egee-NRPE&lt;br /&gt;
 yum install egee-NRPE&lt;br /&gt;
 yum install fetch-crl&lt;br /&gt;
 yum install fipscheck fipscheck-lib&lt;br /&gt;
 yum install glite-UI&lt;br /&gt;
 yum install glite-security-voms-clients&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install glite-yaim-core&lt;br /&gt;
 yum install glite-yaim-nagios&lt;br /&gt;
 yum install httpd&lt;br /&gt;
 yum install jdk&lt;br /&gt;
 yum install lcg-CA&lt;br /&gt;
 yum install lcg-CA egee-NAGIOS&lt;br /&gt;
 yum install lcg_util&lt;br /&gt;
 yum install mddb&lt;br /&gt;
 yum install msg-publish-simple&lt;br /&gt;
 yum install myproxy&lt;br /&gt;
 yum install mysql-client&lt;br /&gt;
 yum install mysql-server&lt;br /&gt;
 yum install nagios-proxy-refresh&lt;br /&gt;
 yum install perl-Config-Tiny&lt;br /&gt;
 yum install perl-DBD-MySQL&lt;br /&gt;
 yum install perl-rrdtool-1.3.8-2.el5.rf.x86_64&lt;br /&gt;
 yum install python-yaml&lt;br /&gt;
 yum install sun-jaf&lt;br /&gt;
 yum install uberftp-client&lt;br /&gt;
 yum install vdt_globus_rm_client&lt;br /&gt;
&lt;br /&gt;
 yum update glite-yaim-clients&lt;br /&gt;
 yum update glite-yaim-core&lt;br /&gt;
 yum update glite-yaim-nagios&lt;br /&gt;
 yum update mysql-server&lt;br /&gt;
 yum update perl-DBI&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
== Annexe2 ==&lt;br /&gt;
a)Mot de passe admin mysql :&lt;br /&gt;
Yum pour recupérer la derniere version de Mysql :&lt;br /&gt;
&#039;&#039;MySQL-server-community&#039;&#039;, ne pas oublier le client (pas de dépendance dessus)&lt;br /&gt;
Demmarrage de mysql avec --skip-grant-tables (pour ne pas avoir de mot de passe a rentrer)&lt;br /&gt;
 mysqld_safe --skip-grant-tables &amp;amp;&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root &lt;br /&gt;
 update user set password=PASSWORD(&amp;quot;NEW-ROOT-PASSWORD&amp;quot;) where User=&#039;root&#039;;&lt;br /&gt;
&lt;br /&gt;
b)creation des users pour le nagios regional:&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root -p&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON nagios.* TO &#039;ndouser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON atp.* TO &#039;atpuser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
== Annexe 3 ==&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /etc/ncg/ncg.localdb&lt;br /&gt;
 #&lt;br /&gt;
 # Local Rules file to modify NCG configuration&lt;br /&gt;
 #&lt;br /&gt;
 SITE!AUVERGRID&lt;br /&gt;
 SITE!CGG-LCG2&lt;br /&gt;
 SITE!ESRF&lt;br /&gt;
 SITE!GRIF&lt;br /&gt;
 SITE!IBCP-GBIO&lt;br /&gt;
 SITE!IN2P3-CC&lt;br /&gt;
 SITE!IN2P3-CC-PPS&lt;br /&gt;
 SITE!IN2P3-CC-T2&lt;br /&gt;
 SITE!IN2P3-CPPM&lt;br /&gt;
 SITE!IN2P3-IPNL&lt;br /&gt;
 SITE!IN2P3-IRES&lt;br /&gt;
 SITE!IN2P3-LAPP&lt;br /&gt;
 SITE!IN2P3-LPC&lt;br /&gt;
 SITE!IN2P3-LPSC&lt;br /&gt;
 SITE!IN2P3-SUBATECH&lt;br /&gt;
 SITE!IPSL-IPGP-LCG2&lt;br /&gt;
 SITE!M3PEC&lt;br /&gt;
 SITE!MSFG&lt;br /&gt;
 SITE!MSFG-MULTI&lt;br /&gt;
 SITE!MSFG-OPEN&lt;br /&gt;
 SITE!OBSPM&lt;br /&gt;
 SITE!PARIS-UREC-IPV6&lt;br /&gt;
 SITE!SN-UCAD&lt;br /&gt;
 SITE!ROC-FR&lt;br /&gt;
 SITE!SOLEIL&lt;br /&gt;
 SITE!StratusLab&lt;br /&gt;
 [root@cclcgvmli03 ~]#&lt;br /&gt;
 &lt;br /&gt;
== Annexe 4 ==&lt;br /&gt;
&lt;br /&gt;
 SITE_EMAIL=c.leroy@cea.fr&lt;br /&gt;
 SITE_NAME=ROC-FR&lt;br /&gt;
 RB_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 WMS_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 PX_HOST=myproxy.grif.fr&lt;br /&gt;
 BDII_HOST=topbdii.grif.fr&lt;br /&gt;
 SITE_BDII_HOST=bdii.grif.fr&lt;br /&gt;
 MON_HOST=node06.datagrid.cea.fr&lt;br /&gt;
 VOS=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 DTEAM_GROUP_ENABLE=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 VO_DTEAM_SW_DIR=$VO_SW_DIR/dteam&lt;br /&gt;
 VO_DTEAM_DEFAULT_SE=$SE_HOST&lt;br /&gt;
 VO_DTEAM_STORAGE_DIR=$CLASSIC_STORAGE_DIR/dteam&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/&#039;&lt;br /&gt;
 VO_DTEAM_VOMSES=&amp;quot;&#039;dteam lcg-voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=lcg-voms.cern.ch dteam 24&#039; &#039;dteam    voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=voms.cern.ch dteam 24&#039;&amp;quot;&lt;br /&gt;
 VO_DTEAM_VOMS_CA_DN=&amp;quot;&#039;/DC=ch/DC=cern/CN=CERN Trusted Certification Authority&#039; &#039;/DC=ch/DC=cern/CN=CERN Trusted   Certification Authority&#039;&amp;quot;&lt;br /&gt;
 NAGIOS_HOST=cclcgvmli03.in2p3.fr&lt;br /&gt;
 NAGIOS_ADMIN_DNS=&amp;quot;/O=GRID-FR/C=FR/O=CEA/OU=IRFU/CN=Christine Leroy&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=Nadia Lajili&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=LPC/CN=Emmanuel Medernach&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CPPM/CN=Juan Carlos Carranza&amp;quot;&lt;br /&gt;
 NAGIOS_NCG_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_NAGIOS_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_GOCDB_ROC_NAME=France&lt;br /&gt;
 ROC_NAME=France&lt;br /&gt;
 NCG_PROBES_TYPE=remote,native,local&lt;br /&gt;
 NCG_VO=dteam&lt;br /&gt;
 NAGIOS_MYPROXY_NAME=nagios_roc_fr2&lt;br /&gt;
 NAGIOS_MYPROXY_USER=nagios&lt;br /&gt;
 MSG_BROKER_CACHE_NETWORK=PROD&lt;br /&gt;
 NAGIOS_ROLE=roc&lt;br /&gt;
 NAGIOS_HTTPD_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_SUDO_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_CGI_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_LDAP_FILTER=GlueSiteOtherInfo=EGEE_ROC=France&lt;br /&gt;
 NAGIOS_DB_PASS=x&lt;br /&gt;
 NAGIOS_NSCA_PASS=x&lt;br /&gt;
 MYSQL_ADMIN=x&lt;br /&gt;
 ATP_DB_PASS=x&lt;br /&gt;
 MDDB_DB_PASS=x&lt;br /&gt;
 MS_DB_PASS=x&lt;br /&gt;
 MYSQL_PASSWORD=x&lt;br /&gt;
 MYEGEE_DB_PASS=x&lt;br /&gt;
&lt;br /&gt;
== Annexe 5 ==&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /opt/glite/yaim/examples/edgusers.conf&lt;br /&gt;
 11151:${DPMMGR_USER}:11151:${DPMMGR_GROUP}:DPM user:&lt;br /&gt;
 11152:${EDG_USER}:11152,11156:${EDG_GROUP},${INFOSYS_GROUP}:EDG user:${EDG_HOME_DIR}&lt;br /&gt;
 11153:${EDGINFO_USER}:11153,1156:${EDGINFO_USER},${INFOSYS_GROUP}:EDG info user:${EDGINFO_HOME_DIR}&lt;br /&gt;
 11154:${RGMA_USER}:11154,1156:${RGMA_GROUP},${INFOSYS_GROUP}:RGMA user:${INSTALL_ROOT}/glite/etc/rgma&lt;br /&gt;
 11155:${GLITE_USER}:11155:${GLITE_GROUP}:gLite user:${GLITE_HOME_DIR}&lt;br /&gt;
 11156:${BDII_USER}:11158:${BDII_GROUP}:BDII user:${BDII_HOME_DIR}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Annexe 6 ==&lt;br /&gt;
&lt;br /&gt;
Probleme rencontré sur ccnagboxli01 (arret de ypbind + rpm manquant)&lt;br /&gt;
 chown -R nagios:nagios /var/spool/pnp4nagios&lt;br /&gt;
 chown -R nagios:nagios /var/spool/msg-nagios-bridge&lt;br /&gt;
 chown root:nagios /etc/atp/atp_db.conf&lt;br /&gt;
 chown root:nagios /etc/mddb/databases.yml&lt;br /&gt;
 chown nagios:apache /var/nagios/rw&lt;br /&gt;
 chown -R nagios:apache /var/nagios/rw&lt;br /&gt;
 chown root:nagios /etc/nagios/plugins/send_to_db.ini&lt;br /&gt;
 chown -R nagios:nagios /var/cache/msg/config-cache&lt;br /&gt;
 chown -R nagios:root /var/log/mddb&lt;br /&gt;
 chown -R nagios:root /var/log/pnp4nagios&lt;br /&gt;
 chown -R nagios:root /var/log/nagios&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
  useradd -g 40011 -u 10011 nagios&lt;br /&gt;
  useradd --group mysql -u 2730 mysql&lt;br /&gt;
  useradd -g mysql -u 2730 mysql&lt;br /&gt;
&lt;br /&gt;
   groupadd -g 40010 nagiosmaster&lt;br /&gt;
   groupadd -g 146 leftuser&lt;br /&gt;
&lt;br /&gt;
 yum install glite-security-voms-api-c-1.8.12-2.sl5.x86_64&lt;br /&gt;
 yum update perl-Net-SSLeay&lt;br /&gt;
 yum update perl-IO-Socket-SSL-1.01-1.fc6.noarch&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install lcg_util-1.7.6-1.sl5.x86_64&lt;br /&gt;
 yum install GFAL-client-1.11.8-2.sl5.x86_64 GFAL-client-1.11.8-2.sl5.i386&lt;br /&gt;
 yum install CGSI_gSOAP_2.7-1.3.3-1.sl5.x86_64&lt;br /&gt;
 yum install LFC-interfaces-1.7.3-1sec.sl5.x86_64 LFC-client-1.7.3-1sec.sl5.x86_64 lcg-dm-common-1.7.3-1sec.sl5.x86_64&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5760</id>
		<title>Nagios regional</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5760"/>
		<updated>2010-04-06T11:15:00Z</updated>

		<summary type="html">&lt;p&gt;LEROY: /* validation */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Installation d&#039;une NOGIOS box pour le ROC France&lt;br /&gt;
&lt;br /&gt;
= 1)	Installation de base : =&lt;br /&gt;
a.	Machine installée par les sysadmin du CC : OS + VOBOX + certificat + pas dans les NIS&lt;br /&gt;
&lt;br /&gt;
b.	Accessible via gsissh (port 1975)&lt;br /&gt;
&lt;br /&gt;
= 2)	Action faite au préalable : =&lt;br /&gt;
a.	Faire la demande pour que la machine soit autorisée à récupérer les SAM tests : https://gus.fzk.de/ws/ticket_info.php?ticket=55132&lt;br /&gt;
&lt;br /&gt;
b.	Autoriser la nagios box à récupérer les proxy en mode « retrieval », et stocker un proxy depuis une UI récuperable par la nagiosBOX voir  [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe0 Annexe0]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
c.	Certificat utilisé pour :&lt;br /&gt;
&lt;br /&gt;
i.	                       Access to GOCDB PI for ROCS GOCDB PI level 2 required &lt;br /&gt;
&lt;br /&gt;
ii.	                       Recuperation de proxy pour les sondes locales&lt;br /&gt;
&lt;br /&gt;
d. s&#039;inscrire dans la mailing liste: regional-nagios-admins@cern.ch (très réactive)&lt;br /&gt;
&lt;br /&gt;
= 3)	Installation de Nagios =&lt;br /&gt;
Reference : https://twiki.cern.ch/twiki/bin/view/EGEE/GridMonitoringNcgYaim&lt;br /&gt;
== Installation des packages via yum, Ajout des repos suivant ==&lt;br /&gt;
 a.	mirrors-rpmforge (rpm rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm)&lt;br /&gt;
 b.	rpmforge-testing.repo&lt;br /&gt;
 c.	rpmforge.repo&lt;br /&gt;
 d.	glite-UI.repo&lt;br /&gt;
 e.	sa1-centos5-release.repo (rpm:  sa1-release-2-1.el5.noarch.rpm)&lt;br /&gt;
 f.	glite-BDII.repo&lt;br /&gt;
&lt;br /&gt;
Problèmes de dépendances rencontrées si besoin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe1 Annexe1] (mais j’avais dû oublier de faire un : yum install egee-NAGIOS)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Installation subversion ==&lt;br /&gt;
Certain fichier de config sont a recuperer via svn au CERN:&lt;br /&gt;
&lt;br /&gt;
 yum install subversion&lt;br /&gt;
 svn co http://svnweb.cern.ch/guest/sam/trunk/roc-config&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 cp /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm.orig&lt;br /&gt;
 cp roc-config/Hash.pm_55_ALL_CRIT /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm&lt;br /&gt;
&lt;br /&gt;
== Mysql ==&lt;br /&gt;
&lt;br /&gt;
1.	Installer la dernière version de Mysql (server + client) ; &lt;br /&gt;
&lt;br /&gt;
2.	configurer le mot de passe admin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2a] ;&lt;br /&gt;
&lt;br /&gt;
3.	Configurer les users utiles à la nagios Box se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2b] ;&lt;br /&gt;
&lt;br /&gt;
== Configuration via yaim et NCG (en 2 fois)==&lt;br /&gt;
&lt;br /&gt;
1.	Remplir /etc/ncg/ncg.localdb avec la liste des sites se referer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe3 Annexe3]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
2.	Remplir le /opt/glite/yaim/site-info.def voir [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe4 Annexe4] ;&lt;br /&gt;
&lt;br /&gt;
3.	groupadd nagios&lt;br /&gt;
&lt;br /&gt;
4.	modif des uids/gids : /opt/glite/yaim/examples/edgusers.conf [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe5 Annexe5]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
5.	lancement de la configuration automatique via yaim (All On One Box) :&lt;br /&gt;
 	&lt;br /&gt;
 	/opt/glite/yaim/bin/yaim -s /opt/glite/yaim/site-info.def -c -n glite-UI -n glite-NAGIOS&lt;br /&gt;
&lt;br /&gt;
6.	lancement de la configuration via NCG (All On One Box) :&lt;br /&gt;
&lt;br /&gt;
 /usr/sbin/ncg.pl&lt;br /&gt;
&lt;br /&gt;
.....MODIFICATION importante:: voir: https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
La partie:&lt;br /&gt;
#  Configure manually /etc/ncg/ncg.conf (Template can be found here: ncg.conf.template: )&lt;br /&gt;
- Switch off automatic generation of ncg.conf by YAIM (NAGIOS_NCG_ENABLE_CONFIG&amp;quot;=&amp;quot;false&amp;quot;)&lt;br /&gt;
- Take ncg.conf.template and copy it to /etc/ncg/ncg.conf&lt;br /&gt;
     - Set $ROC_NAME$&lt;br /&gt;
     - Set $YOUR_MYPROXY_SERVER$ (e.g. myproxy-fts.cern.ch)&lt;br /&gt;
     - Set $MYPROXY_NAME$ (e.g.: NagiosRetrieve-sam-ap-roc.cern.ch)&lt;br /&gt;
     - Set $NAGIOS_ROLE$ (e.g.: ngi, roc)&lt;br /&gt;
# Take Hash.pm file that we are currently using at the CERN ROC Nagios boxes. In this file, we have removed the metrics that do not belong to the SAM_Critical profile, so only the metrics defined at ROC_SAM_critical are configured, and not relevant services like SRMv1 are commented out. The file is located under /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm &lt;br /&gt;
&lt;br /&gt;
Pour éviter d&#039;avoir des sondes inappropriés.&lt;br /&gt;
&lt;br /&gt;
== Tuning the configuration ==&lt;br /&gt;
&lt;br /&gt;
1.	Verifier  dans /etc/sysconfig/nagios:&lt;br /&gt;
 LD_LIBRARY_PATH=/opt/classads/lib64:/opt/glite/lib64:/opt/globus/lib:/opt/c-ares/lib:/opt/classads/lib64  &lt;br /&gt;
&lt;br /&gt;
2.	Desactiver les notifications, dans les fichiers de conf: &lt;br /&gt;
 a.      /etc/nagios/nagios.cfg, désactiver les notifications:enable_notifications=0 ;log_notifications=0&lt;br /&gt;
 b.	 /etc/nagios/wlcg.d/host.templates.cfg&lt;br /&gt;
 c.	 /etc/nagios/wlcg.d/service.templates.cfg&lt;br /&gt;
&lt;br /&gt;
4.	N’autoriser que les dteam/France à visualiser notre interface nagios : modifier le fichier : &lt;br /&gt;
 /etc/voms2htpasswd.conf, avec : vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&lt;br /&gt;
Plus utile site le site-info.def est défini correctement:&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&#039;&lt;br /&gt;
&lt;br /&gt;
== ActiveMQ ==&lt;br /&gt;
 /usr/sbin/msg-to-queue --prefix /queue/grid.probe.metricOutput.EGEE.a635834332381123c8b296d02b682f8f --broker-uri stomp://prod-grid-msg.cern.ch:6163&lt;br /&gt;
 &lt;br /&gt;
[root@cclcgvmli03 cron.hourly]# cat check_msg-to-queue.sh&lt;br /&gt;
&lt;br /&gt;
Verifier les messages:&lt;br /&gt;
 /usr/libexec/grid-monitoring/plugins/nagios/recv_from_queue -v &lt;br /&gt;
&lt;br /&gt;
faire une update de perl-GridMon &lt;br /&gt;
 The problem here is in the message handler &lt;br /&gt;
 (/usr/lib/perl5/vendor_perl/5.8.8/GridMon/MsgHandler/MetricOutput.pm). &lt;br /&gt;
 Probe on WN reports hostname localhost.localdomain and serviceURI CE &lt;br /&gt;
 hostname. In the previous version message handler first checked hostname &lt;br /&gt;
 value and then serviceURI. That is the reason why Christine is seeing &lt;br /&gt;
 results for localhost.localdomain. However, we fixed this and the latest &lt;br /&gt;
 version (1.0.34) parses messages correctly.&lt;br /&gt;
&lt;br /&gt;
 yum update perl-GridMon&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== Systeme d&#039;information ==&lt;br /&gt;
La nagios Box doit etre enregistré dans la GOCDB &lt;br /&gt;
et publié dans le site-BDII:&lt;br /&gt;
 ldapsearch -x -H ldap://ccnagboxli01.in2p3.fr:2170 -b &#039;Mds-vo-name=resource,o=Grid&#039;&lt;br /&gt;
&lt;br /&gt;
= validation =&lt;br /&gt;
&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
&lt;br /&gt;
now you should publish your Nagios in your Site BDII&lt;br /&gt;
And we should declare the node in the GOCDB: Regional-NAGIOS ou National-Nagios, a determiner&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
liste des sondes a valider: d&#039;après: https://twiki.cern.ch/twiki/bin/view/LCG/SAMCriticalTestsForCODs&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Type de Noeuds&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Valid (Y or N)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
APEL&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Pas de métric ?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
BDII (site and TOP)&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
- Probleme identifié pour la variable LCG_GFAL_INFOSYS quand c&#039;est une liste (CE lpnce.in2p3.fr):&lt;br /&gt;
LCG_GFAL_INFOSYS=topbdii.grif.fr:2170,cclcgtopbdii01.in2p3.fr:2170,lapp-bdii01.in2p3.fr:2170&lt;br /&gt;
&lt;br /&gt;
-Tout le mecanisme de recuperation des outputs n&#039;est pas compris mais globalement on a les meme resultat que celui du CERN&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CREAMCE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: idem CERN nagiosBOX (mais sonde Brokerinfo toujours en erreur: probleme connu: https://savannah.cern.ch/bugs/?61322)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
FTS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y and NO: For the check_command those options should be added: &lt;br /&gt;
--cert /etc/nagios/globus/hostcert.pem   --key /etc/nagios/globus/hostkey.pem  -x $USER2$ (this should be fixed in the next release)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
gRB/WMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y:(certificate lifetime only)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_C&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: mais il faudrait peut etre demander au site de supporter la VO ops pour que leur LFC soit testé (lfc-ls et lfc-ping)?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_L&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: mais il faudrait peut etre demander au site de supporter la VO ops pour que leur LFC soit testé (lfc-ls et lfc-ping)?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MPI&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
em&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MyProxy&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
em&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RB&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nobody&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Service Deprecated. Does NOT apply in Nagios&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RGMA / MON&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y (certificate lifetime only)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
&lt;br /&gt;
SRMv2&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOBOX&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
em&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Sondes locales nagios BOX&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Type de Noeuds&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Valid (Y or N)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.CAdist-Version&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.CertLifetime&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.GridProxy-Get-ops&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.GridProxy-Valid-ops&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.ATPSync&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.CheckConfig&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.ImportGocdbDowntimes &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.MDDBSync &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.RecvFromQueue&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.SendToMetricStore&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.SendToMsg&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.nagios.DiskCheck &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.nagios.ProcessCrond &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.nagios.ProcessMsgToQueue &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.nagios.ProcessNpcd&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.sam.CE-JobMonit-ops &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.sam.CREAMCE-JobMonit-ops &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.sam.mpi.CE-JobMonit-ops&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.MyProxy-ProxyLifetime-ops&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
= Mise à jour =&lt;br /&gt;
Pour modifier la configuration (Exemple nouveau site a ajouter pour le FOC france):&lt;br /&gt;
Modifier &#039;&#039;&#039;/etc/ncg/ncg.localdb&#039;&#039;&#039; en conséquence.&lt;br /&gt;
Puis executer le script ncg:&lt;br /&gt;
 /usr/sbin/ncg.pl&lt;br /&gt;
Au prealablefaire une &amp;quot;sauvegarde&amp;quot; local de la config nagios:&lt;br /&gt;
 mv /etc/nagios/wlcg.d /etc/nagios/wlcg.d.old&lt;br /&gt;
&lt;br /&gt;
Verifier que la config est OK et faire un &#039;&#039;&#039;svn ci&#039;&#039;&#039; pour la sauvegarde de la configuration.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= bascule =&lt;br /&gt;
Si probleme hardware sur la machine=&amp;gt; bascule sur la machine virtuelle de secours (Nadia ou Jacques).&lt;br /&gt;
Faire ensuite un &#039;&#039;&#039;svn co&#039;&#039;&#039; de la config nagios pour avoir la derniere config de production.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Annexes =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Annexe0 ==&lt;br /&gt;
&lt;br /&gt;
Sur le myproxyserver, il faut que le nagios server soit &amp;quot;trusted retriever&amp;quot; et &amp;quot;authorized retrievers&amp;quot;:&lt;br /&gt;
 [cleroy@grid08 ~]$ grep cclcgvmli03 /opt/glite/etc/myproxy-server.conf&lt;br /&gt;
 trusted_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 authorized_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Sur une UI:&lt;br /&gt;
&lt;br /&gt;
 voms-proxy-init -voms ops:/ops/Role=lcgadmin&lt;br /&gt;
 myproxy-init -c 336 -k nagios_roc_fr2-ops -s myproxy.grif.fr -l nagios  -x -Z &amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-IN2P3/CN=ccnagboxli01.in2p3.fr&amp;quot;&lt;br /&gt;
&lt;br /&gt;
== Annexe 1 ==&lt;br /&gt;
 rpm -ivh http://www.sysadmin.hep.ac.uk/rpms/egee-SA1/centos5/x86_64/sa1-release-2-1.el5.noarch.rpm&lt;br /&gt;
 rpm -ivh  http://packages.sw.be/rpmforge-release/rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm&lt;br /&gt;
&lt;br /&gt;
 yum install atp&lt;br /&gt;
 yum install bouncycastle&lt;br /&gt;
 yum install broker&lt;br /&gt;
 yum install broker-cache&lt;br /&gt;
 yum install dcache-srmclient&lt;br /&gt;
 yum install dummy-ca-certs&lt;br /&gt;
 yum install egee-NAGIOS&lt;br /&gt;
 yum install egee-NAGIOS egee-NRPE&lt;br /&gt;
 yum install egee-NRPE&lt;br /&gt;
 yum install fetch-crl&lt;br /&gt;
 yum install fipscheck fipscheck-lib&lt;br /&gt;
 yum install glite-UI&lt;br /&gt;
 yum install glite-security-voms-clients&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install glite-yaim-core&lt;br /&gt;
 yum install glite-yaim-nagios&lt;br /&gt;
 yum install httpd&lt;br /&gt;
 yum install jdk&lt;br /&gt;
 yum install lcg-CA&lt;br /&gt;
 yum install lcg-CA egee-NAGIOS&lt;br /&gt;
 yum install lcg_util&lt;br /&gt;
 yum install mddb&lt;br /&gt;
 yum install msg-publish-simple&lt;br /&gt;
 yum install myproxy&lt;br /&gt;
 yum install mysql-client&lt;br /&gt;
 yum install mysql-server&lt;br /&gt;
 yum install nagios-proxy-refresh&lt;br /&gt;
 yum install perl-Config-Tiny&lt;br /&gt;
 yum install perl-DBD-MySQL&lt;br /&gt;
 yum install perl-rrdtool-1.3.8-2.el5.rf.x86_64&lt;br /&gt;
 yum install python-yaml&lt;br /&gt;
 yum install sun-jaf&lt;br /&gt;
 yum install uberftp-client&lt;br /&gt;
 yum install vdt_globus_rm_client&lt;br /&gt;
&lt;br /&gt;
 yum update glite-yaim-clients&lt;br /&gt;
 yum update glite-yaim-core&lt;br /&gt;
 yum update glite-yaim-nagios&lt;br /&gt;
 yum update mysql-server&lt;br /&gt;
 yum update perl-DBI&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
== Annexe2 ==&lt;br /&gt;
a)Mot de passe admin mysql :&lt;br /&gt;
Yum pour recupérer la derniere version de Mysql :&lt;br /&gt;
&#039;&#039;MySQL-server-community&#039;&#039;, ne pas oublier le client (pas de dépendance dessus)&lt;br /&gt;
Demmarrage de mysql avec --skip-grant-tables (pour ne pas avoir de mot de passe a rentrer)&lt;br /&gt;
 mysqld_safe --skip-grant-tables &amp;amp;&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root &lt;br /&gt;
 update user set password=PASSWORD(&amp;quot;NEW-ROOT-PASSWORD&amp;quot;) where User=&#039;root&#039;;&lt;br /&gt;
&lt;br /&gt;
b)creation des users pour le nagios regional:&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root -p&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON nagios.* TO &#039;ndouser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON atp.* TO &#039;atpuser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
== Annexe 3 ==&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /etc/ncg/ncg.localdb&lt;br /&gt;
 #&lt;br /&gt;
 # Local Rules file to modify NCG configuration&lt;br /&gt;
 #&lt;br /&gt;
 SITE!AUVERGRID&lt;br /&gt;
 SITE!CGG-LCG2&lt;br /&gt;
 SITE!ESRF&lt;br /&gt;
 SITE!GRIF&lt;br /&gt;
 SITE!IBCP-GBIO&lt;br /&gt;
 SITE!IN2P3-CC&lt;br /&gt;
 SITE!IN2P3-CC-PPS&lt;br /&gt;
 SITE!IN2P3-CC-T2&lt;br /&gt;
 SITE!IN2P3-CPPM&lt;br /&gt;
 SITE!IN2P3-IPNL&lt;br /&gt;
 SITE!IN2P3-IRES&lt;br /&gt;
 SITE!IN2P3-LAPP&lt;br /&gt;
 SITE!IN2P3-LPC&lt;br /&gt;
 SITE!IN2P3-LPSC&lt;br /&gt;
 SITE!IN2P3-SUBATECH&lt;br /&gt;
 SITE!IPSL-IPGP-LCG2&lt;br /&gt;
 SITE!M3PEC&lt;br /&gt;
 SITE!MSFG&lt;br /&gt;
 SITE!MSFG-MULTI&lt;br /&gt;
 SITE!MSFG-OPEN&lt;br /&gt;
 SITE!OBSPM&lt;br /&gt;
 SITE!PARIS-UREC-IPV6&lt;br /&gt;
 SITE!SN-UCAD&lt;br /&gt;
 SITE!ROC-FR&lt;br /&gt;
 SITE!SOLEIL&lt;br /&gt;
 SITE!StratusLab&lt;br /&gt;
 [root@cclcgvmli03 ~]#&lt;br /&gt;
 &lt;br /&gt;
== Annexe 4 ==&lt;br /&gt;
&lt;br /&gt;
 SITE_EMAIL=c.leroy@cea.fr&lt;br /&gt;
 SITE_NAME=ROC-FR&lt;br /&gt;
 RB_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 WMS_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 PX_HOST=myproxy.grif.fr&lt;br /&gt;
 BDII_HOST=topbdii.grif.fr&lt;br /&gt;
 SITE_BDII_HOST=bdii.grif.fr&lt;br /&gt;
 MON_HOST=node06.datagrid.cea.fr&lt;br /&gt;
 VOS=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 DTEAM_GROUP_ENABLE=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 VO_DTEAM_SW_DIR=$VO_SW_DIR/dteam&lt;br /&gt;
 VO_DTEAM_DEFAULT_SE=$SE_HOST&lt;br /&gt;
 VO_DTEAM_STORAGE_DIR=$CLASSIC_STORAGE_DIR/dteam&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/&#039;&lt;br /&gt;
 VO_DTEAM_VOMSES=&amp;quot;&#039;dteam lcg-voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=lcg-voms.cern.ch dteam 24&#039; &#039;dteam    voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=voms.cern.ch dteam 24&#039;&amp;quot;&lt;br /&gt;
 VO_DTEAM_VOMS_CA_DN=&amp;quot;&#039;/DC=ch/DC=cern/CN=CERN Trusted Certification Authority&#039; &#039;/DC=ch/DC=cern/CN=CERN Trusted   Certification Authority&#039;&amp;quot;&lt;br /&gt;
 NAGIOS_HOST=cclcgvmli03.in2p3.fr&lt;br /&gt;
 NAGIOS_ADMIN_DNS=&amp;quot;/O=GRID-FR/C=FR/O=CEA/OU=IRFU/CN=Christine Leroy&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=Nadia Lajili&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=LPC/CN=Emmanuel Medernach&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CPPM/CN=Juan Carlos Carranza&amp;quot;&lt;br /&gt;
 NAGIOS_NCG_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_NAGIOS_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_GOCDB_ROC_NAME=France&lt;br /&gt;
 ROC_NAME=France&lt;br /&gt;
 NCG_PROBES_TYPE=remote,native,local&lt;br /&gt;
 NCG_VO=dteam&lt;br /&gt;
 NAGIOS_MYPROXY_NAME=nagios_roc_fr2&lt;br /&gt;
 NAGIOS_MYPROXY_USER=nagios&lt;br /&gt;
 MSG_BROKER_CACHE_NETWORK=PROD&lt;br /&gt;
 NAGIOS_ROLE=roc&lt;br /&gt;
 NAGIOS_HTTPD_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_SUDO_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_CGI_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_LDAP_FILTER=GlueSiteOtherInfo=EGEE_ROC=France&lt;br /&gt;
 NAGIOS_DB_PASS=x&lt;br /&gt;
 NAGIOS_NSCA_PASS=x&lt;br /&gt;
 MYSQL_ADMIN=x&lt;br /&gt;
 ATP_DB_PASS=x&lt;br /&gt;
 MDDB_DB_PASS=x&lt;br /&gt;
 MS_DB_PASS=x&lt;br /&gt;
 MYSQL_PASSWORD=x&lt;br /&gt;
 MYEGEE_DB_PASS=x&lt;br /&gt;
&lt;br /&gt;
== Annexe 5 ==&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /opt/glite/yaim/examples/edgusers.conf&lt;br /&gt;
 11151:${DPMMGR_USER}:11151:${DPMMGR_GROUP}:DPM user:&lt;br /&gt;
 11152:${EDG_USER}:11152,11156:${EDG_GROUP},${INFOSYS_GROUP}:EDG user:${EDG_HOME_DIR}&lt;br /&gt;
 11153:${EDGINFO_USER}:11153,1156:${EDGINFO_USER},${INFOSYS_GROUP}:EDG info user:${EDGINFO_HOME_DIR}&lt;br /&gt;
 11154:${RGMA_USER}:11154,1156:${RGMA_GROUP},${INFOSYS_GROUP}:RGMA user:${INSTALL_ROOT}/glite/etc/rgma&lt;br /&gt;
 11155:${GLITE_USER}:11155:${GLITE_GROUP}:gLite user:${GLITE_HOME_DIR}&lt;br /&gt;
 11156:${BDII_USER}:11158:${BDII_GROUP}:BDII user:${BDII_HOME_DIR}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Annexe 6 ==&lt;br /&gt;
&lt;br /&gt;
Probleme rencontré sur ccnagboxli01 (arret de ypbind + rpm manquant)&lt;br /&gt;
 chown -R nagios:nagios /var/spool/pnp4nagios&lt;br /&gt;
 chown -R nagios:nagios /var/spool/msg-nagios-bridge&lt;br /&gt;
 chown root:nagios /etc/atp/atp_db.conf&lt;br /&gt;
 chown root:nagios /etc/mddb/databases.yml&lt;br /&gt;
 chown nagios:apache /var/nagios/rw&lt;br /&gt;
 chown -R nagios:apache /var/nagios/rw&lt;br /&gt;
 chown root:nagios /etc/nagios/plugins/send_to_db.ini&lt;br /&gt;
 chown -R nagios:nagios /var/cache/msg/config-cache&lt;br /&gt;
 chown -R nagios:root /var/log/mddb&lt;br /&gt;
 chown -R nagios:root /var/log/pnp4nagios&lt;br /&gt;
 chown -R nagios:root /var/log/nagios&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
  useradd -g 40011 -u 10011 nagios&lt;br /&gt;
  useradd --group mysql -u 2730 mysql&lt;br /&gt;
  useradd -g mysql -u 2730 mysql&lt;br /&gt;
&lt;br /&gt;
   groupadd -g 40010 nagiosmaster&lt;br /&gt;
   groupadd -g 146 leftuser&lt;br /&gt;
&lt;br /&gt;
 yum install glite-security-voms-api-c-1.8.12-2.sl5.x86_64&lt;br /&gt;
 yum update perl-Net-SSLeay&lt;br /&gt;
 yum update perl-IO-Socket-SSL-1.01-1.fc6.noarch&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install lcg_util-1.7.6-1.sl5.x86_64&lt;br /&gt;
 yum install GFAL-client-1.11.8-2.sl5.x86_64 GFAL-client-1.11.8-2.sl5.i386&lt;br /&gt;
 yum install CGSI_gSOAP_2.7-1.3.3-1.sl5.x86_64&lt;br /&gt;
 yum install LFC-interfaces-1.7.3-1sec.sl5.x86_64 LFC-client-1.7.3-1sec.sl5.x86_64 lcg-dm-common-1.7.3-1sec.sl5.x86_64&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5759</id>
		<title>Nagios regional</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5759"/>
		<updated>2010-04-06T11:13:05Z</updated>

		<summary type="html">&lt;p&gt;LEROY: /* validation */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Installation d&#039;une NOGIOS box pour le ROC France&lt;br /&gt;
&lt;br /&gt;
= 1)	Installation de base : =&lt;br /&gt;
a.	Machine installée par les sysadmin du CC : OS + VOBOX + certificat + pas dans les NIS&lt;br /&gt;
&lt;br /&gt;
b.	Accessible via gsissh (port 1975)&lt;br /&gt;
&lt;br /&gt;
= 2)	Action faite au préalable : =&lt;br /&gt;
a.	Faire la demande pour que la machine soit autorisée à récupérer les SAM tests : https://gus.fzk.de/ws/ticket_info.php?ticket=55132&lt;br /&gt;
&lt;br /&gt;
b.	Autoriser la nagios box à récupérer les proxy en mode « retrieval », et stocker un proxy depuis une UI récuperable par la nagiosBOX voir  [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe0 Annexe0]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
c.	Certificat utilisé pour :&lt;br /&gt;
&lt;br /&gt;
i.	                       Access to GOCDB PI for ROCS GOCDB PI level 2 required &lt;br /&gt;
&lt;br /&gt;
ii.	                       Recuperation de proxy pour les sondes locales&lt;br /&gt;
&lt;br /&gt;
d. s&#039;inscrire dans la mailing liste: regional-nagios-admins@cern.ch (très réactive)&lt;br /&gt;
&lt;br /&gt;
= 3)	Installation de Nagios =&lt;br /&gt;
Reference : https://twiki.cern.ch/twiki/bin/view/EGEE/GridMonitoringNcgYaim&lt;br /&gt;
== Installation des packages via yum, Ajout des repos suivant ==&lt;br /&gt;
 a.	mirrors-rpmforge (rpm rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm)&lt;br /&gt;
 b.	rpmforge-testing.repo&lt;br /&gt;
 c.	rpmforge.repo&lt;br /&gt;
 d.	glite-UI.repo&lt;br /&gt;
 e.	sa1-centos5-release.repo (rpm:  sa1-release-2-1.el5.noarch.rpm)&lt;br /&gt;
 f.	glite-BDII.repo&lt;br /&gt;
&lt;br /&gt;
Problèmes de dépendances rencontrées si besoin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe1 Annexe1] (mais j’avais dû oublier de faire un : yum install egee-NAGIOS)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Installation subversion ==&lt;br /&gt;
Certain fichier de config sont a recuperer via svn au CERN:&lt;br /&gt;
&lt;br /&gt;
 yum install subversion&lt;br /&gt;
 svn co http://svnweb.cern.ch/guest/sam/trunk/roc-config&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 cp /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm.orig&lt;br /&gt;
 cp roc-config/Hash.pm_55_ALL_CRIT /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm&lt;br /&gt;
&lt;br /&gt;
== Mysql ==&lt;br /&gt;
&lt;br /&gt;
1.	Installer la dernière version de Mysql (server + client) ; &lt;br /&gt;
&lt;br /&gt;
2.	configurer le mot de passe admin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2a] ;&lt;br /&gt;
&lt;br /&gt;
3.	Configurer les users utiles à la nagios Box se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2b] ;&lt;br /&gt;
&lt;br /&gt;
== Configuration via yaim et NCG (en 2 fois)==&lt;br /&gt;
&lt;br /&gt;
1.	Remplir /etc/ncg/ncg.localdb avec la liste des sites se referer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe3 Annexe3]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
2.	Remplir le /opt/glite/yaim/site-info.def voir [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe4 Annexe4] ;&lt;br /&gt;
&lt;br /&gt;
3.	groupadd nagios&lt;br /&gt;
&lt;br /&gt;
4.	modif des uids/gids : /opt/glite/yaim/examples/edgusers.conf [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe5 Annexe5]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
5.	lancement de la configuration automatique via yaim (All On One Box) :&lt;br /&gt;
 	&lt;br /&gt;
 	/opt/glite/yaim/bin/yaim -s /opt/glite/yaim/site-info.def -c -n glite-UI -n glite-NAGIOS&lt;br /&gt;
&lt;br /&gt;
6.	lancement de la configuration via NCG (All On One Box) :&lt;br /&gt;
&lt;br /&gt;
 /usr/sbin/ncg.pl&lt;br /&gt;
&lt;br /&gt;
.....MODIFICATION importante:: voir: https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
La partie:&lt;br /&gt;
#  Configure manually /etc/ncg/ncg.conf (Template can be found here: ncg.conf.template: )&lt;br /&gt;
- Switch off automatic generation of ncg.conf by YAIM (NAGIOS_NCG_ENABLE_CONFIG&amp;quot;=&amp;quot;false&amp;quot;)&lt;br /&gt;
- Take ncg.conf.template and copy it to /etc/ncg/ncg.conf&lt;br /&gt;
     - Set $ROC_NAME$&lt;br /&gt;
     - Set $YOUR_MYPROXY_SERVER$ (e.g. myproxy-fts.cern.ch)&lt;br /&gt;
     - Set $MYPROXY_NAME$ (e.g.: NagiosRetrieve-sam-ap-roc.cern.ch)&lt;br /&gt;
     - Set $NAGIOS_ROLE$ (e.g.: ngi, roc)&lt;br /&gt;
# Take Hash.pm file that we are currently using at the CERN ROC Nagios boxes. In this file, we have removed the metrics that do not belong to the SAM_Critical profile, so only the metrics defined at ROC_SAM_critical are configured, and not relevant services like SRMv1 are commented out. The file is located under /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm &lt;br /&gt;
&lt;br /&gt;
Pour éviter d&#039;avoir des sondes inappropriés.&lt;br /&gt;
&lt;br /&gt;
== Tuning the configuration ==&lt;br /&gt;
&lt;br /&gt;
1.	Verifier  dans /etc/sysconfig/nagios:&lt;br /&gt;
 LD_LIBRARY_PATH=/opt/classads/lib64:/opt/glite/lib64:/opt/globus/lib:/opt/c-ares/lib:/opt/classads/lib64  &lt;br /&gt;
&lt;br /&gt;
2.	Desactiver les notifications, dans les fichiers de conf: &lt;br /&gt;
 a.      /etc/nagios/nagios.cfg, désactiver les notifications:enable_notifications=0 ;log_notifications=0&lt;br /&gt;
 b.	 /etc/nagios/wlcg.d/host.templates.cfg&lt;br /&gt;
 c.	 /etc/nagios/wlcg.d/service.templates.cfg&lt;br /&gt;
&lt;br /&gt;
4.	N’autoriser que les dteam/France à visualiser notre interface nagios : modifier le fichier : &lt;br /&gt;
 /etc/voms2htpasswd.conf, avec : vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&lt;br /&gt;
Plus utile site le site-info.def est défini correctement:&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&#039;&lt;br /&gt;
&lt;br /&gt;
== ActiveMQ ==&lt;br /&gt;
 /usr/sbin/msg-to-queue --prefix /queue/grid.probe.metricOutput.EGEE.a635834332381123c8b296d02b682f8f --broker-uri stomp://prod-grid-msg.cern.ch:6163&lt;br /&gt;
 &lt;br /&gt;
[root@cclcgvmli03 cron.hourly]# cat check_msg-to-queue.sh&lt;br /&gt;
&lt;br /&gt;
Verifier les messages:&lt;br /&gt;
 /usr/libexec/grid-monitoring/plugins/nagios/recv_from_queue -v &lt;br /&gt;
&lt;br /&gt;
faire une update de perl-GridMon &lt;br /&gt;
 The problem here is in the message handler &lt;br /&gt;
 (/usr/lib/perl5/vendor_perl/5.8.8/GridMon/MsgHandler/MetricOutput.pm). &lt;br /&gt;
 Probe on WN reports hostname localhost.localdomain and serviceURI CE &lt;br /&gt;
 hostname. In the previous version message handler first checked hostname &lt;br /&gt;
 value and then serviceURI. That is the reason why Christine is seeing &lt;br /&gt;
 results for localhost.localdomain. However, we fixed this and the latest &lt;br /&gt;
 version (1.0.34) parses messages correctly.&lt;br /&gt;
&lt;br /&gt;
 yum update perl-GridMon&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== Systeme d&#039;information ==&lt;br /&gt;
La nagios Box doit etre enregistré dans la GOCDB &lt;br /&gt;
et publié dans le site-BDII:&lt;br /&gt;
 ldapsearch -x -H ldap://ccnagboxli01.in2p3.fr:2170 -b &#039;Mds-vo-name=resource,o=Grid&#039;&lt;br /&gt;
&lt;br /&gt;
= validation =&lt;br /&gt;
&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
&lt;br /&gt;
now you should publish your Nagios in your Site BDII&lt;br /&gt;
And we should declare the node in the GOCDB: Regional-NAGIOS ou National-Nagios, a determiner&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
liste des sondes a valider: d&#039;après: https://twiki.cern.ch/twiki/bin/view/LCG/SAMCriticalTestsForCODs&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Type de Noeuds&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Valid (Y or N)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
APEL&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Pas de métric ?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
BDII (site and TOP)&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
- Probleme identifié pour la variable LCG_GFAL_INFOSYS quand c&#039;est une liste (CE lpnce.in2p3.fr):&lt;br /&gt;
LCG_GFAL_INFOSYS=topbdii.grif.fr:2170,cclcgtopbdii01.in2p3.fr:2170,lapp-bdii01.in2p3.fr:2170&lt;br /&gt;
&lt;br /&gt;
-Tout le mecanisme de recuperation des outputs n&#039;est pas compris mais globalement on a les meme resultat que celui du CERN&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CREAMCE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: idem CERN nagiosBOX (mais sonde Brokerinfo toujours en erreur: probleme connu: https://savannah.cern.ch/bugs/?61322)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
FTS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y and NO: For the check_command those options should be added: &lt;br /&gt;
--cert /etc/nagios/globus/hostcert.pem   --key /etc/nagios/globus/hostkey.pem  -x $USER2$ (this should be fixed in the next release)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
gRB/WMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y:(certificate lifetime only)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_C&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: mais il faudrait peut etre demander au site de supporter la VO ops pour que leur LFC soit testé (lfc-ls et lfc-ping)?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_L&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: mais il faudrait peut etre demander au site de supporter la VO ops pour que leur LFC soit testé (lfc-ls et lfc-ping)?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MPI&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
em&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MyProxy&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
em&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RB&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nobody&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Service Deprecated. Does NOT apply in Nagios&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RGMA / MON&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y (certificate lifetime only)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
&lt;br /&gt;
SRMv2&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOBOX&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
em&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Sondes locales nagios BOX&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Type de Noeuds&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Valid (Y or N)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.CAdist-Version&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.CertLifetime&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.GridProxy-Get-ops&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.GridProxy-Valid-ops&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.ATPSync&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.CheckConfig&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.ImportGocdbDowntimes &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.MDDBSync &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.RecvFromQueue&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.SendToMetricStore&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.SendToMsg&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.nagios.DiskCheck &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.nagios.ProcessCrond &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.nagios.ProcessMsgToQueue &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.nagios.ProcessNpcd&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.sam.CE-JobMonit-ops &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.sam.CREAMCE-JobMonit-ops &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.sam.mpi.CE-JobMonit-ops&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.MyProxy-ProxyLifetime-ops&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
= Mise à jour =&lt;br /&gt;
Pour modifier la configuration (Exemple nouveau site a ajouter pour le FOC france):&lt;br /&gt;
Modifier &#039;&#039;&#039;/etc/ncg/ncg.localdb&#039;&#039;&#039; en conséquence.&lt;br /&gt;
Puis executer le script ncg:&lt;br /&gt;
 /usr/sbin/ncg.pl&lt;br /&gt;
Au prealablefaire une &amp;quot;sauvegarde&amp;quot; local de la config nagios:&lt;br /&gt;
 mv /etc/nagios/wlcg.d /etc/nagios/wlcg.d.old&lt;br /&gt;
&lt;br /&gt;
Verifier que la config est OK et faire un &#039;&#039;&#039;svn ci&#039;&#039;&#039; pour la sauvegarde de la configuration.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= bascule =&lt;br /&gt;
Si probleme hardware sur la machine=&amp;gt; bascule sur la machine virtuelle de secours (Nadia ou Jacques).&lt;br /&gt;
Faire ensuite un &#039;&#039;&#039;svn co&#039;&#039;&#039; de la config nagios pour avoir la derniere config de production.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Annexes =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Annexe0 ==&lt;br /&gt;
&lt;br /&gt;
Sur le myproxyserver, il faut que le nagios server soit &amp;quot;trusted retriever&amp;quot; et &amp;quot;authorized retrievers&amp;quot;:&lt;br /&gt;
 [cleroy@grid08 ~]$ grep cclcgvmli03 /opt/glite/etc/myproxy-server.conf&lt;br /&gt;
 trusted_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 authorized_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Sur une UI:&lt;br /&gt;
&lt;br /&gt;
 voms-proxy-init -voms ops:/ops/Role=lcgadmin&lt;br /&gt;
 myproxy-init -c 336 -k nagios_roc_fr2-ops -s myproxy.grif.fr -l nagios  -x -Z &amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-IN2P3/CN=ccnagboxli01.in2p3.fr&amp;quot;&lt;br /&gt;
&lt;br /&gt;
== Annexe 1 ==&lt;br /&gt;
 rpm -ivh http://www.sysadmin.hep.ac.uk/rpms/egee-SA1/centos5/x86_64/sa1-release-2-1.el5.noarch.rpm&lt;br /&gt;
 rpm -ivh  http://packages.sw.be/rpmforge-release/rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm&lt;br /&gt;
&lt;br /&gt;
 yum install atp&lt;br /&gt;
 yum install bouncycastle&lt;br /&gt;
 yum install broker&lt;br /&gt;
 yum install broker-cache&lt;br /&gt;
 yum install dcache-srmclient&lt;br /&gt;
 yum install dummy-ca-certs&lt;br /&gt;
 yum install egee-NAGIOS&lt;br /&gt;
 yum install egee-NAGIOS egee-NRPE&lt;br /&gt;
 yum install egee-NRPE&lt;br /&gt;
 yum install fetch-crl&lt;br /&gt;
 yum install fipscheck fipscheck-lib&lt;br /&gt;
 yum install glite-UI&lt;br /&gt;
 yum install glite-security-voms-clients&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install glite-yaim-core&lt;br /&gt;
 yum install glite-yaim-nagios&lt;br /&gt;
 yum install httpd&lt;br /&gt;
 yum install jdk&lt;br /&gt;
 yum install lcg-CA&lt;br /&gt;
 yum install lcg-CA egee-NAGIOS&lt;br /&gt;
 yum install lcg_util&lt;br /&gt;
 yum install mddb&lt;br /&gt;
 yum install msg-publish-simple&lt;br /&gt;
 yum install myproxy&lt;br /&gt;
 yum install mysql-client&lt;br /&gt;
 yum install mysql-server&lt;br /&gt;
 yum install nagios-proxy-refresh&lt;br /&gt;
 yum install perl-Config-Tiny&lt;br /&gt;
 yum install perl-DBD-MySQL&lt;br /&gt;
 yum install perl-rrdtool-1.3.8-2.el5.rf.x86_64&lt;br /&gt;
 yum install python-yaml&lt;br /&gt;
 yum install sun-jaf&lt;br /&gt;
 yum install uberftp-client&lt;br /&gt;
 yum install vdt_globus_rm_client&lt;br /&gt;
&lt;br /&gt;
 yum update glite-yaim-clients&lt;br /&gt;
 yum update glite-yaim-core&lt;br /&gt;
 yum update glite-yaim-nagios&lt;br /&gt;
 yum update mysql-server&lt;br /&gt;
 yum update perl-DBI&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
== Annexe2 ==&lt;br /&gt;
a)Mot de passe admin mysql :&lt;br /&gt;
Yum pour recupérer la derniere version de Mysql :&lt;br /&gt;
&#039;&#039;MySQL-server-community&#039;&#039;, ne pas oublier le client (pas de dépendance dessus)&lt;br /&gt;
Demmarrage de mysql avec --skip-grant-tables (pour ne pas avoir de mot de passe a rentrer)&lt;br /&gt;
 mysqld_safe --skip-grant-tables &amp;amp;&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root &lt;br /&gt;
 update user set password=PASSWORD(&amp;quot;NEW-ROOT-PASSWORD&amp;quot;) where User=&#039;root&#039;;&lt;br /&gt;
&lt;br /&gt;
b)creation des users pour le nagios regional:&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root -p&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON nagios.* TO &#039;ndouser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON atp.* TO &#039;atpuser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
== Annexe 3 ==&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /etc/ncg/ncg.localdb&lt;br /&gt;
 #&lt;br /&gt;
 # Local Rules file to modify NCG configuration&lt;br /&gt;
 #&lt;br /&gt;
 SITE!AUVERGRID&lt;br /&gt;
 SITE!CGG-LCG2&lt;br /&gt;
 SITE!ESRF&lt;br /&gt;
 SITE!GRIF&lt;br /&gt;
 SITE!IBCP-GBIO&lt;br /&gt;
 SITE!IN2P3-CC&lt;br /&gt;
 SITE!IN2P3-CC-PPS&lt;br /&gt;
 SITE!IN2P3-CC-T2&lt;br /&gt;
 SITE!IN2P3-CPPM&lt;br /&gt;
 SITE!IN2P3-IPNL&lt;br /&gt;
 SITE!IN2P3-IRES&lt;br /&gt;
 SITE!IN2P3-LAPP&lt;br /&gt;
 SITE!IN2P3-LPC&lt;br /&gt;
 SITE!IN2P3-LPSC&lt;br /&gt;
 SITE!IN2P3-SUBATECH&lt;br /&gt;
 SITE!IPSL-IPGP-LCG2&lt;br /&gt;
 SITE!M3PEC&lt;br /&gt;
 SITE!MSFG&lt;br /&gt;
 SITE!MSFG-MULTI&lt;br /&gt;
 SITE!MSFG-OPEN&lt;br /&gt;
 SITE!OBSPM&lt;br /&gt;
 SITE!PARIS-UREC-IPV6&lt;br /&gt;
 SITE!SN-UCAD&lt;br /&gt;
 SITE!ROC-FR&lt;br /&gt;
 SITE!SOLEIL&lt;br /&gt;
 SITE!StratusLab&lt;br /&gt;
 [root@cclcgvmli03 ~]#&lt;br /&gt;
 &lt;br /&gt;
== Annexe 4 ==&lt;br /&gt;
&lt;br /&gt;
 SITE_EMAIL=c.leroy@cea.fr&lt;br /&gt;
 SITE_NAME=ROC-FR&lt;br /&gt;
 RB_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 WMS_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 PX_HOST=myproxy.grif.fr&lt;br /&gt;
 BDII_HOST=topbdii.grif.fr&lt;br /&gt;
 SITE_BDII_HOST=bdii.grif.fr&lt;br /&gt;
 MON_HOST=node06.datagrid.cea.fr&lt;br /&gt;
 VOS=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 DTEAM_GROUP_ENABLE=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 VO_DTEAM_SW_DIR=$VO_SW_DIR/dteam&lt;br /&gt;
 VO_DTEAM_DEFAULT_SE=$SE_HOST&lt;br /&gt;
 VO_DTEAM_STORAGE_DIR=$CLASSIC_STORAGE_DIR/dteam&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/&#039;&lt;br /&gt;
 VO_DTEAM_VOMSES=&amp;quot;&#039;dteam lcg-voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=lcg-voms.cern.ch dteam 24&#039; &#039;dteam    voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=voms.cern.ch dteam 24&#039;&amp;quot;&lt;br /&gt;
 VO_DTEAM_VOMS_CA_DN=&amp;quot;&#039;/DC=ch/DC=cern/CN=CERN Trusted Certification Authority&#039; &#039;/DC=ch/DC=cern/CN=CERN Trusted   Certification Authority&#039;&amp;quot;&lt;br /&gt;
 NAGIOS_HOST=cclcgvmli03.in2p3.fr&lt;br /&gt;
 NAGIOS_ADMIN_DNS=&amp;quot;/O=GRID-FR/C=FR/O=CEA/OU=IRFU/CN=Christine Leroy&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=Nadia Lajili&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=LPC/CN=Emmanuel Medernach&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CPPM/CN=Juan Carlos Carranza&amp;quot;&lt;br /&gt;
 NAGIOS_NCG_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_NAGIOS_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_GOCDB_ROC_NAME=France&lt;br /&gt;
 ROC_NAME=France&lt;br /&gt;
 NCG_PROBES_TYPE=remote,native,local&lt;br /&gt;
 NCG_VO=dteam&lt;br /&gt;
 NAGIOS_MYPROXY_NAME=nagios_roc_fr2&lt;br /&gt;
 NAGIOS_MYPROXY_USER=nagios&lt;br /&gt;
 MSG_BROKER_CACHE_NETWORK=PROD&lt;br /&gt;
 NAGIOS_ROLE=roc&lt;br /&gt;
 NAGIOS_HTTPD_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_SUDO_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_CGI_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_LDAP_FILTER=GlueSiteOtherInfo=EGEE_ROC=France&lt;br /&gt;
 NAGIOS_DB_PASS=x&lt;br /&gt;
 NAGIOS_NSCA_PASS=x&lt;br /&gt;
 MYSQL_ADMIN=x&lt;br /&gt;
 ATP_DB_PASS=x&lt;br /&gt;
 MDDB_DB_PASS=x&lt;br /&gt;
 MS_DB_PASS=x&lt;br /&gt;
 MYSQL_PASSWORD=x&lt;br /&gt;
 MYEGEE_DB_PASS=x&lt;br /&gt;
&lt;br /&gt;
== Annexe 5 ==&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /opt/glite/yaim/examples/edgusers.conf&lt;br /&gt;
 11151:${DPMMGR_USER}:11151:${DPMMGR_GROUP}:DPM user:&lt;br /&gt;
 11152:${EDG_USER}:11152,11156:${EDG_GROUP},${INFOSYS_GROUP}:EDG user:${EDG_HOME_DIR}&lt;br /&gt;
 11153:${EDGINFO_USER}:11153,1156:${EDGINFO_USER},${INFOSYS_GROUP}:EDG info user:${EDGINFO_HOME_DIR}&lt;br /&gt;
 11154:${RGMA_USER}:11154,1156:${RGMA_GROUP},${INFOSYS_GROUP}:RGMA user:${INSTALL_ROOT}/glite/etc/rgma&lt;br /&gt;
 11155:${GLITE_USER}:11155:${GLITE_GROUP}:gLite user:${GLITE_HOME_DIR}&lt;br /&gt;
 11156:${BDII_USER}:11158:${BDII_GROUP}:BDII user:${BDII_HOME_DIR}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Annexe 6 ==&lt;br /&gt;
&lt;br /&gt;
Probleme rencontré sur ccnagboxli01 (arret de ypbind + rpm manquant)&lt;br /&gt;
 chown -R nagios:nagios /var/spool/pnp4nagios&lt;br /&gt;
 chown -R nagios:nagios /var/spool/msg-nagios-bridge&lt;br /&gt;
 chown root:nagios /etc/atp/atp_db.conf&lt;br /&gt;
 chown root:nagios /etc/mddb/databases.yml&lt;br /&gt;
 chown nagios:apache /var/nagios/rw&lt;br /&gt;
 chown -R nagios:apache /var/nagios/rw&lt;br /&gt;
 chown root:nagios /etc/nagios/plugins/send_to_db.ini&lt;br /&gt;
 chown -R nagios:nagios /var/cache/msg/config-cache&lt;br /&gt;
 chown -R nagios:root /var/log/mddb&lt;br /&gt;
 chown -R nagios:root /var/log/pnp4nagios&lt;br /&gt;
 chown -R nagios:root /var/log/nagios&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
  useradd -g 40011 -u 10011 nagios&lt;br /&gt;
  useradd --group mysql -u 2730 mysql&lt;br /&gt;
  useradd -g mysql -u 2730 mysql&lt;br /&gt;
&lt;br /&gt;
   groupadd -g 40010 nagiosmaster&lt;br /&gt;
   groupadd -g 146 leftuser&lt;br /&gt;
&lt;br /&gt;
 yum install glite-security-voms-api-c-1.8.12-2.sl5.x86_64&lt;br /&gt;
 yum update perl-Net-SSLeay&lt;br /&gt;
 yum update perl-IO-Socket-SSL-1.01-1.fc6.noarch&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install lcg_util-1.7.6-1.sl5.x86_64&lt;br /&gt;
 yum install GFAL-client-1.11.8-2.sl5.x86_64 GFAL-client-1.11.8-2.sl5.i386&lt;br /&gt;
 yum install CGSI_gSOAP_2.7-1.3.3-1.sl5.x86_64&lt;br /&gt;
 yum install LFC-interfaces-1.7.3-1sec.sl5.x86_64 LFC-client-1.7.3-1sec.sl5.x86_64 lcg-dm-common-1.7.3-1sec.sl5.x86_64&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5758</id>
		<title>Nagios regional</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5758"/>
		<updated>2010-04-06T10:30:35Z</updated>

		<summary type="html">&lt;p&gt;LEROY: /* validation */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Installation d&#039;une NOGIOS box pour le ROC France&lt;br /&gt;
&lt;br /&gt;
= 1)	Installation de base : =&lt;br /&gt;
a.	Machine installée par les sysadmin du CC : OS + VOBOX + certificat + pas dans les NIS&lt;br /&gt;
&lt;br /&gt;
b.	Accessible via gsissh (port 1975)&lt;br /&gt;
&lt;br /&gt;
= 2)	Action faite au préalable : =&lt;br /&gt;
a.	Faire la demande pour que la machine soit autorisée à récupérer les SAM tests : https://gus.fzk.de/ws/ticket_info.php?ticket=55132&lt;br /&gt;
&lt;br /&gt;
b.	Autoriser la nagios box à récupérer les proxy en mode « retrieval », et stocker un proxy depuis une UI récuperable par la nagiosBOX voir  [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe0 Annexe0]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
c.	Certificat utilisé pour :&lt;br /&gt;
&lt;br /&gt;
i.	                       Access to GOCDB PI for ROCS GOCDB PI level 2 required &lt;br /&gt;
&lt;br /&gt;
ii.	                       Recuperation de proxy pour les sondes locales&lt;br /&gt;
&lt;br /&gt;
d. s&#039;inscrire dans la mailing liste: regional-nagios-admins@cern.ch (très réactive)&lt;br /&gt;
&lt;br /&gt;
= 3)	Installation de Nagios =&lt;br /&gt;
Reference : https://twiki.cern.ch/twiki/bin/view/EGEE/GridMonitoringNcgYaim&lt;br /&gt;
== Installation des packages via yum, Ajout des repos suivant ==&lt;br /&gt;
 a.	mirrors-rpmforge (rpm rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm)&lt;br /&gt;
 b.	rpmforge-testing.repo&lt;br /&gt;
 c.	rpmforge.repo&lt;br /&gt;
 d.	glite-UI.repo&lt;br /&gt;
 e.	sa1-centos5-release.repo (rpm:  sa1-release-2-1.el5.noarch.rpm)&lt;br /&gt;
 f.	glite-BDII.repo&lt;br /&gt;
&lt;br /&gt;
Problèmes de dépendances rencontrées si besoin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe1 Annexe1] (mais j’avais dû oublier de faire un : yum install egee-NAGIOS)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Installation subversion ==&lt;br /&gt;
Certain fichier de config sont a recuperer via svn au CERN:&lt;br /&gt;
&lt;br /&gt;
 yum install subversion&lt;br /&gt;
 svn co http://svnweb.cern.ch/guest/sam/trunk/roc-config&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 cp /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm.orig&lt;br /&gt;
 cp roc-config/Hash.pm_55_ALL_CRIT /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm&lt;br /&gt;
&lt;br /&gt;
== Mysql ==&lt;br /&gt;
&lt;br /&gt;
1.	Installer la dernière version de Mysql (server + client) ; &lt;br /&gt;
&lt;br /&gt;
2.	configurer le mot de passe admin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2a] ;&lt;br /&gt;
&lt;br /&gt;
3.	Configurer les users utiles à la nagios Box se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2b] ;&lt;br /&gt;
&lt;br /&gt;
== Configuration via yaim et NCG (en 2 fois)==&lt;br /&gt;
&lt;br /&gt;
1.	Remplir /etc/ncg/ncg.localdb avec la liste des sites se referer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe3 Annexe3]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
2.	Remplir le /opt/glite/yaim/site-info.def voir [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe4 Annexe4] ;&lt;br /&gt;
&lt;br /&gt;
3.	groupadd nagios&lt;br /&gt;
&lt;br /&gt;
4.	modif des uids/gids : /opt/glite/yaim/examples/edgusers.conf [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe5 Annexe5]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
5.	lancement de la configuration automatique via yaim (All On One Box) :&lt;br /&gt;
 	&lt;br /&gt;
 	/opt/glite/yaim/bin/yaim -s /opt/glite/yaim/site-info.def -c -n glite-UI -n glite-NAGIOS&lt;br /&gt;
&lt;br /&gt;
6.	lancement de la configuration via NCG (All On One Box) :&lt;br /&gt;
&lt;br /&gt;
 /usr/sbin/ncg.pl&lt;br /&gt;
&lt;br /&gt;
.....MODIFICATION importante:: voir: https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
La partie:&lt;br /&gt;
#  Configure manually /etc/ncg/ncg.conf (Template can be found here: ncg.conf.template: )&lt;br /&gt;
- Switch off automatic generation of ncg.conf by YAIM (NAGIOS_NCG_ENABLE_CONFIG&amp;quot;=&amp;quot;false&amp;quot;)&lt;br /&gt;
- Take ncg.conf.template and copy it to /etc/ncg/ncg.conf&lt;br /&gt;
     - Set $ROC_NAME$&lt;br /&gt;
     - Set $YOUR_MYPROXY_SERVER$ (e.g. myproxy-fts.cern.ch)&lt;br /&gt;
     - Set $MYPROXY_NAME$ (e.g.: NagiosRetrieve-sam-ap-roc.cern.ch)&lt;br /&gt;
     - Set $NAGIOS_ROLE$ (e.g.: ngi, roc)&lt;br /&gt;
# Take Hash.pm file that we are currently using at the CERN ROC Nagios boxes. In this file, we have removed the metrics that do not belong to the SAM_Critical profile, so only the metrics defined at ROC_SAM_critical are configured, and not relevant services like SRMv1 are commented out. The file is located under /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm &lt;br /&gt;
&lt;br /&gt;
Pour éviter d&#039;avoir des sondes inappropriés.&lt;br /&gt;
&lt;br /&gt;
== Tuning the configuration ==&lt;br /&gt;
&lt;br /&gt;
1.	Verifier  dans /etc/sysconfig/nagios:&lt;br /&gt;
 LD_LIBRARY_PATH=/opt/classads/lib64:/opt/glite/lib64:/opt/globus/lib:/opt/c-ares/lib:/opt/classads/lib64  &lt;br /&gt;
&lt;br /&gt;
2.	Desactiver les notifications, dans les fichiers de conf: &lt;br /&gt;
 a.      /etc/nagios/nagios.cfg, désactiver les notifications:enable_notifications=0 ;log_notifications=0&lt;br /&gt;
 b.	 /etc/nagios/wlcg.d/host.templates.cfg&lt;br /&gt;
 c.	 /etc/nagios/wlcg.d/service.templates.cfg&lt;br /&gt;
&lt;br /&gt;
4.	N’autoriser que les dteam/France à visualiser notre interface nagios : modifier le fichier : &lt;br /&gt;
 /etc/voms2htpasswd.conf, avec : vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&lt;br /&gt;
Plus utile site le site-info.def est défini correctement:&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&#039;&lt;br /&gt;
&lt;br /&gt;
== ActiveMQ ==&lt;br /&gt;
 /usr/sbin/msg-to-queue --prefix /queue/grid.probe.metricOutput.EGEE.a635834332381123c8b296d02b682f8f --broker-uri stomp://prod-grid-msg.cern.ch:6163&lt;br /&gt;
 &lt;br /&gt;
[root@cclcgvmli03 cron.hourly]# cat check_msg-to-queue.sh&lt;br /&gt;
&lt;br /&gt;
Verifier les messages:&lt;br /&gt;
 /usr/libexec/grid-monitoring/plugins/nagios/recv_from_queue -v &lt;br /&gt;
&lt;br /&gt;
faire une update de perl-GridMon &lt;br /&gt;
 The problem here is in the message handler &lt;br /&gt;
 (/usr/lib/perl5/vendor_perl/5.8.8/GridMon/MsgHandler/MetricOutput.pm). &lt;br /&gt;
 Probe on WN reports hostname localhost.localdomain and serviceURI CE &lt;br /&gt;
 hostname. In the previous version message handler first checked hostname &lt;br /&gt;
 value and then serviceURI. That is the reason why Christine is seeing &lt;br /&gt;
 results for localhost.localdomain. However, we fixed this and the latest &lt;br /&gt;
 version (1.0.34) parses messages correctly.&lt;br /&gt;
&lt;br /&gt;
 yum update perl-GridMon&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== Systeme d&#039;information ==&lt;br /&gt;
La nagios Box doit etre enregistré dans la GOCDB &lt;br /&gt;
et publié dans le site-BDII:&lt;br /&gt;
 ldapsearch -x -H ldap://ccnagboxli01.in2p3.fr:2170 -b &#039;Mds-vo-name=resource,o=Grid&#039;&lt;br /&gt;
&lt;br /&gt;
= validation =&lt;br /&gt;
&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
&lt;br /&gt;
now you should publish your Nagios in your Site BDII&lt;br /&gt;
And we should declare the node in the GOCDB: Regional-NAGIOS ou National-Nagios, a determiner&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
liste des sondes a valider: d&#039;après: https://twiki.cern.ch/twiki/bin/view/LCG/SAMCriticalTestsForCODs&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Type de Noeuds&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Valid (Y or N)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
APEL&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Pas de métric ?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
BDII (site and TOP)&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
- Probleme identifié pour la variable LCG_GFAL_INFOSYS quand c&#039;est une liste (CE lpnce.in2p3.fr):&lt;br /&gt;
LCG_GFAL_INFOSYS=topbdii.grif.fr:2170,cclcgtopbdii01.in2p3.fr:2170,lapp-bdii01.in2p3.fr:2170&lt;br /&gt;
&lt;br /&gt;
-Tout le mecanisme de recuperation des outputs n&#039;est pas compris mais globalement on a les meme resultat que celui du CERN&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CREAMCE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: idem CERN nagiosBOX (mais sonde Brokerinfo toujours en erreur: probleme connu: https://savannah.cern.ch/bugs/?61322)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
FTS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y and NO: For the check_command those options should be added: &lt;br /&gt;
--cert /etc/nagios/globus/hostcert.pem   --key /etc/nagios/globus/hostkey.pem  -x $USER2$ (this should be fixed in the next release)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
gRB/WMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y:(certificate lifetime only)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_C&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: mais il faudrait peut etre demander au site de supporter la VO ops pour que leur LFC soit testé (lfc-ls et lfc-ping)?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_L&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: mais il faudrait peut etre demander au site de supporter la VO ops pour que leur LFC soit testé (lfc-ls et lfc-ping)?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MPI&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
em&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MyProxy&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
em&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RB&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nobody&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Service Deprecated. Does NOT apply in Nagios&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RGMA / MON&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y (certificate lifetime only)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
&lt;br /&gt;
SRMv2&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOBOX&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
em&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Sondes locales nagios BOX&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Type de Noeuds&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Valid (Y or N)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.CAdist-Version&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.CertLifetime&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.GridProxy-Get-ops&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.GridProxy-Valid-ops&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.ATPSync&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.CheckConfig&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.ImportGocdbDowntimes &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.MDDBSync &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.RecvFromQueue&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.SendToMetricStore&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.egee.SendToMsg&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.nagios.DiskCheck &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.nagios.ProcessCrond &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.nagios.ProcessMsgToQueue &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.nagios.ProcessNpcd&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.sam.CE-JobMonit-ops &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.sam.CREAMCE-JobMonit-ops &lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
org.sam.mpi.CE-JobMonit-ops&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
?&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
hr.srce.MyProxy-ProxyLifetime-ops&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
= Mise à jour =&lt;br /&gt;
Pour modifier la configuration (Exemple nouveau site a ajouter pour le FOC france):&lt;br /&gt;
Modifier &#039;&#039;&#039;/etc/ncg/ncg.localdb&#039;&#039;&#039; en conséquence.&lt;br /&gt;
Puis executer le script ncg:&lt;br /&gt;
 /usr/sbin/ncg.pl&lt;br /&gt;
Au prealablefaire une &amp;quot;sauvegarde&amp;quot; local de la config nagios:&lt;br /&gt;
 mv /etc/nagios/wlcg.d /etc/nagios/wlcg.d.old&lt;br /&gt;
&lt;br /&gt;
Verifier que la config est OK et faire un &#039;&#039;&#039;svn ci&#039;&#039;&#039; pour la sauvegarde de la configuration.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= bascule =&lt;br /&gt;
Si probleme hardware sur la machine=&amp;gt; bascule sur la machine virtuelle de secours (Nadia ou Jacques).&lt;br /&gt;
Faire ensuite un &#039;&#039;&#039;svn co&#039;&#039;&#039; de la config nagios pour avoir la derniere config de production.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Annexes =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Annexe0 ==&lt;br /&gt;
&lt;br /&gt;
Sur le myproxyserver, il faut que le nagios server soit &amp;quot;trusted retriever&amp;quot; et &amp;quot;authorized retrievers&amp;quot;:&lt;br /&gt;
 [cleroy@grid08 ~]$ grep cclcgvmli03 /opt/glite/etc/myproxy-server.conf&lt;br /&gt;
 trusted_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 authorized_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Sur une UI:&lt;br /&gt;
&lt;br /&gt;
 voms-proxy-init -voms ops:/ops/Role=lcgadmin&lt;br /&gt;
 myproxy-init -c 336 -k nagios_roc_fr2-ops -s myproxy.grif.fr -l nagios  -x -Z &amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-IN2P3/CN=ccnagboxli01.in2p3.fr&amp;quot;&lt;br /&gt;
&lt;br /&gt;
== Annexe 1 ==&lt;br /&gt;
 rpm -ivh http://www.sysadmin.hep.ac.uk/rpms/egee-SA1/centos5/x86_64/sa1-release-2-1.el5.noarch.rpm&lt;br /&gt;
 rpm -ivh  http://packages.sw.be/rpmforge-release/rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm&lt;br /&gt;
&lt;br /&gt;
 yum install atp&lt;br /&gt;
 yum install bouncycastle&lt;br /&gt;
 yum install broker&lt;br /&gt;
 yum install broker-cache&lt;br /&gt;
 yum install dcache-srmclient&lt;br /&gt;
 yum install dummy-ca-certs&lt;br /&gt;
 yum install egee-NAGIOS&lt;br /&gt;
 yum install egee-NAGIOS egee-NRPE&lt;br /&gt;
 yum install egee-NRPE&lt;br /&gt;
 yum install fetch-crl&lt;br /&gt;
 yum install fipscheck fipscheck-lib&lt;br /&gt;
 yum install glite-UI&lt;br /&gt;
 yum install glite-security-voms-clients&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install glite-yaim-core&lt;br /&gt;
 yum install glite-yaim-nagios&lt;br /&gt;
 yum install httpd&lt;br /&gt;
 yum install jdk&lt;br /&gt;
 yum install lcg-CA&lt;br /&gt;
 yum install lcg-CA egee-NAGIOS&lt;br /&gt;
 yum install lcg_util&lt;br /&gt;
 yum install mddb&lt;br /&gt;
 yum install msg-publish-simple&lt;br /&gt;
 yum install myproxy&lt;br /&gt;
 yum install mysql-client&lt;br /&gt;
 yum install mysql-server&lt;br /&gt;
 yum install nagios-proxy-refresh&lt;br /&gt;
 yum install perl-Config-Tiny&lt;br /&gt;
 yum install perl-DBD-MySQL&lt;br /&gt;
 yum install perl-rrdtool-1.3.8-2.el5.rf.x86_64&lt;br /&gt;
 yum install python-yaml&lt;br /&gt;
 yum install sun-jaf&lt;br /&gt;
 yum install uberftp-client&lt;br /&gt;
 yum install vdt_globus_rm_client&lt;br /&gt;
&lt;br /&gt;
 yum update glite-yaim-clients&lt;br /&gt;
 yum update glite-yaim-core&lt;br /&gt;
 yum update glite-yaim-nagios&lt;br /&gt;
 yum update mysql-server&lt;br /&gt;
 yum update perl-DBI&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
== Annexe2 ==&lt;br /&gt;
a)Mot de passe admin mysql :&lt;br /&gt;
Yum pour recupérer la derniere version de Mysql :&lt;br /&gt;
&#039;&#039;MySQL-server-community&#039;&#039;, ne pas oublier le client (pas de dépendance dessus)&lt;br /&gt;
Demmarrage de mysql avec --skip-grant-tables (pour ne pas avoir de mot de passe a rentrer)&lt;br /&gt;
 mysqld_safe --skip-grant-tables &amp;amp;&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root &lt;br /&gt;
 update user set password=PASSWORD(&amp;quot;NEW-ROOT-PASSWORD&amp;quot;) where User=&#039;root&#039;;&lt;br /&gt;
&lt;br /&gt;
b)creation des users pour le nagios regional:&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root -p&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON nagios.* TO &#039;ndouser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON atp.* TO &#039;atpuser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
== Annexe 3 ==&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /etc/ncg/ncg.localdb&lt;br /&gt;
 #&lt;br /&gt;
 # Local Rules file to modify NCG configuration&lt;br /&gt;
 #&lt;br /&gt;
 SITE!AUVERGRID&lt;br /&gt;
 SITE!CGG-LCG2&lt;br /&gt;
 SITE!ESRF&lt;br /&gt;
 SITE!GRIF&lt;br /&gt;
 SITE!IBCP-GBIO&lt;br /&gt;
 SITE!IN2P3-CC&lt;br /&gt;
 SITE!IN2P3-CC-PPS&lt;br /&gt;
 SITE!IN2P3-CC-T2&lt;br /&gt;
 SITE!IN2P3-CPPM&lt;br /&gt;
 SITE!IN2P3-IPNL&lt;br /&gt;
 SITE!IN2P3-IRES&lt;br /&gt;
 SITE!IN2P3-LAPP&lt;br /&gt;
 SITE!IN2P3-LPC&lt;br /&gt;
 SITE!IN2P3-LPSC&lt;br /&gt;
 SITE!IN2P3-SUBATECH&lt;br /&gt;
 SITE!IPSL-IPGP-LCG2&lt;br /&gt;
 SITE!M3PEC&lt;br /&gt;
 SITE!MSFG&lt;br /&gt;
 SITE!MSFG-MULTI&lt;br /&gt;
 SITE!MSFG-OPEN&lt;br /&gt;
 SITE!OBSPM&lt;br /&gt;
 SITE!PARIS-UREC-IPV6&lt;br /&gt;
 SITE!SN-UCAD&lt;br /&gt;
 SITE!ROC-FR&lt;br /&gt;
 SITE!SOLEIL&lt;br /&gt;
 SITE!StratusLab&lt;br /&gt;
 [root@cclcgvmli03 ~]#&lt;br /&gt;
 &lt;br /&gt;
== Annexe 4 ==&lt;br /&gt;
&lt;br /&gt;
 SITE_EMAIL=c.leroy@cea.fr&lt;br /&gt;
 SITE_NAME=ROC-FR&lt;br /&gt;
 RB_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 WMS_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 PX_HOST=myproxy.grif.fr&lt;br /&gt;
 BDII_HOST=topbdii.grif.fr&lt;br /&gt;
 SITE_BDII_HOST=bdii.grif.fr&lt;br /&gt;
 MON_HOST=node06.datagrid.cea.fr&lt;br /&gt;
 VOS=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 DTEAM_GROUP_ENABLE=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 VO_DTEAM_SW_DIR=$VO_SW_DIR/dteam&lt;br /&gt;
 VO_DTEAM_DEFAULT_SE=$SE_HOST&lt;br /&gt;
 VO_DTEAM_STORAGE_DIR=$CLASSIC_STORAGE_DIR/dteam&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/&#039;&lt;br /&gt;
 VO_DTEAM_VOMSES=&amp;quot;&#039;dteam lcg-voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=lcg-voms.cern.ch dteam 24&#039; &#039;dteam    voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=voms.cern.ch dteam 24&#039;&amp;quot;&lt;br /&gt;
 VO_DTEAM_VOMS_CA_DN=&amp;quot;&#039;/DC=ch/DC=cern/CN=CERN Trusted Certification Authority&#039; &#039;/DC=ch/DC=cern/CN=CERN Trusted   Certification Authority&#039;&amp;quot;&lt;br /&gt;
 NAGIOS_HOST=cclcgvmli03.in2p3.fr&lt;br /&gt;
 NAGIOS_ADMIN_DNS=&amp;quot;/O=GRID-FR/C=FR/O=CEA/OU=IRFU/CN=Christine Leroy&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=Nadia Lajili&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=LPC/CN=Emmanuel Medernach&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CPPM/CN=Juan Carlos Carranza&amp;quot;&lt;br /&gt;
 NAGIOS_NCG_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_NAGIOS_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_GOCDB_ROC_NAME=France&lt;br /&gt;
 ROC_NAME=France&lt;br /&gt;
 NCG_PROBES_TYPE=remote,native,local&lt;br /&gt;
 NCG_VO=dteam&lt;br /&gt;
 NAGIOS_MYPROXY_NAME=nagios_roc_fr2&lt;br /&gt;
 NAGIOS_MYPROXY_USER=nagios&lt;br /&gt;
 MSG_BROKER_CACHE_NETWORK=PROD&lt;br /&gt;
 NAGIOS_ROLE=roc&lt;br /&gt;
 NAGIOS_HTTPD_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_SUDO_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_CGI_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_LDAP_FILTER=GlueSiteOtherInfo=EGEE_ROC=France&lt;br /&gt;
 NAGIOS_DB_PASS=x&lt;br /&gt;
 NAGIOS_NSCA_PASS=x&lt;br /&gt;
 MYSQL_ADMIN=x&lt;br /&gt;
 ATP_DB_PASS=x&lt;br /&gt;
 MDDB_DB_PASS=x&lt;br /&gt;
 MS_DB_PASS=x&lt;br /&gt;
 MYSQL_PASSWORD=x&lt;br /&gt;
 MYEGEE_DB_PASS=x&lt;br /&gt;
&lt;br /&gt;
== Annexe 5 ==&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /opt/glite/yaim/examples/edgusers.conf&lt;br /&gt;
 11151:${DPMMGR_USER}:11151:${DPMMGR_GROUP}:DPM user:&lt;br /&gt;
 11152:${EDG_USER}:11152,11156:${EDG_GROUP},${INFOSYS_GROUP}:EDG user:${EDG_HOME_DIR}&lt;br /&gt;
 11153:${EDGINFO_USER}:11153,1156:${EDGINFO_USER},${INFOSYS_GROUP}:EDG info user:${EDGINFO_HOME_DIR}&lt;br /&gt;
 11154:${RGMA_USER}:11154,1156:${RGMA_GROUP},${INFOSYS_GROUP}:RGMA user:${INSTALL_ROOT}/glite/etc/rgma&lt;br /&gt;
 11155:${GLITE_USER}:11155:${GLITE_GROUP}:gLite user:${GLITE_HOME_DIR}&lt;br /&gt;
 11156:${BDII_USER}:11158:${BDII_GROUP}:BDII user:${BDII_HOME_DIR}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Annexe 6 ==&lt;br /&gt;
&lt;br /&gt;
Probleme rencontré sur ccnagboxli01 (arret de ypbind + rpm manquant)&lt;br /&gt;
 chown -R nagios:nagios /var/spool/pnp4nagios&lt;br /&gt;
 chown -R nagios:nagios /var/spool/msg-nagios-bridge&lt;br /&gt;
 chown root:nagios /etc/atp/atp_db.conf&lt;br /&gt;
 chown root:nagios /etc/mddb/databases.yml&lt;br /&gt;
 chown nagios:apache /var/nagios/rw&lt;br /&gt;
 chown -R nagios:apache /var/nagios/rw&lt;br /&gt;
 chown root:nagios /etc/nagios/plugins/send_to_db.ini&lt;br /&gt;
 chown -R nagios:nagios /var/cache/msg/config-cache&lt;br /&gt;
 chown -R nagios:root /var/log/mddb&lt;br /&gt;
 chown -R nagios:root /var/log/pnp4nagios&lt;br /&gt;
 chown -R nagios:root /var/log/nagios&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
  useradd -g 40011 -u 10011 nagios&lt;br /&gt;
  useradd --group mysql -u 2730 mysql&lt;br /&gt;
  useradd -g mysql -u 2730 mysql&lt;br /&gt;
&lt;br /&gt;
   groupadd -g 40010 nagiosmaster&lt;br /&gt;
   groupadd -g 146 leftuser&lt;br /&gt;
&lt;br /&gt;
 yum install glite-security-voms-api-c-1.8.12-2.sl5.x86_64&lt;br /&gt;
 yum update perl-Net-SSLeay&lt;br /&gt;
 yum update perl-IO-Socket-SSL-1.01-1.fc6.noarch&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install lcg_util-1.7.6-1.sl5.x86_64&lt;br /&gt;
 yum install GFAL-client-1.11.8-2.sl5.x86_64 GFAL-client-1.11.8-2.sl5.i386&lt;br /&gt;
 yum install CGSI_gSOAP_2.7-1.3.3-1.sl5.x86_64&lt;br /&gt;
 yum install LFC-interfaces-1.7.3-1sec.sl5.x86_64 LFC-client-1.7.3-1sec.sl5.x86_64 lcg-dm-common-1.7.3-1sec.sl5.x86_64&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5757</id>
		<title>Nagios regional</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5757"/>
		<updated>2010-04-06T10:19:20Z</updated>

		<summary type="html">&lt;p&gt;LEROY: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Installation d&#039;une NOGIOS box pour le ROC France&lt;br /&gt;
&lt;br /&gt;
= 1)	Installation de base : =&lt;br /&gt;
a.	Machine installée par les sysadmin du CC : OS + VOBOX + certificat + pas dans les NIS&lt;br /&gt;
&lt;br /&gt;
b.	Accessible via gsissh (port 1975)&lt;br /&gt;
&lt;br /&gt;
= 2)	Action faite au préalable : =&lt;br /&gt;
a.	Faire la demande pour que la machine soit autorisée à récupérer les SAM tests : https://gus.fzk.de/ws/ticket_info.php?ticket=55132&lt;br /&gt;
&lt;br /&gt;
b.	Autoriser la nagios box à récupérer les proxy en mode « retrieval », et stocker un proxy depuis une UI récuperable par la nagiosBOX voir  [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe0 Annexe0]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
c.	Certificat utilisé pour :&lt;br /&gt;
&lt;br /&gt;
i.	                       Access to GOCDB PI for ROCS GOCDB PI level 2 required &lt;br /&gt;
&lt;br /&gt;
ii.	                       Recuperation de proxy pour les sondes locales&lt;br /&gt;
&lt;br /&gt;
d. s&#039;inscrire dans la mailing liste: regional-nagios-admins@cern.ch (très réactive)&lt;br /&gt;
&lt;br /&gt;
= 3)	Installation de Nagios =&lt;br /&gt;
Reference : https://twiki.cern.ch/twiki/bin/view/EGEE/GridMonitoringNcgYaim&lt;br /&gt;
== Installation des packages via yum, Ajout des repos suivant ==&lt;br /&gt;
 a.	mirrors-rpmforge (rpm rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm)&lt;br /&gt;
 b.	rpmforge-testing.repo&lt;br /&gt;
 c.	rpmforge.repo&lt;br /&gt;
 d.	glite-UI.repo&lt;br /&gt;
 e.	sa1-centos5-release.repo (rpm:  sa1-release-2-1.el5.noarch.rpm)&lt;br /&gt;
 f.	glite-BDII.repo&lt;br /&gt;
&lt;br /&gt;
Problèmes de dépendances rencontrées si besoin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe1 Annexe1] (mais j’avais dû oublier de faire un : yum install egee-NAGIOS)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Installation subversion ==&lt;br /&gt;
Certain fichier de config sont a recuperer via svn au CERN:&lt;br /&gt;
&lt;br /&gt;
 yum install subversion&lt;br /&gt;
 svn co http://svnweb.cern.ch/guest/sam/trunk/roc-config&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 cp /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm.orig&lt;br /&gt;
 cp roc-config/Hash.pm_55_ALL_CRIT /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm&lt;br /&gt;
&lt;br /&gt;
== Mysql ==&lt;br /&gt;
&lt;br /&gt;
1.	Installer la dernière version de Mysql (server + client) ; &lt;br /&gt;
&lt;br /&gt;
2.	configurer le mot de passe admin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2a] ;&lt;br /&gt;
&lt;br /&gt;
3.	Configurer les users utiles à la nagios Box se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2b] ;&lt;br /&gt;
&lt;br /&gt;
== Configuration via yaim et NCG (en 2 fois)==&lt;br /&gt;
&lt;br /&gt;
1.	Remplir /etc/ncg/ncg.localdb avec la liste des sites se referer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe3 Annexe3]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
2.	Remplir le /opt/glite/yaim/site-info.def voir [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe4 Annexe4] ;&lt;br /&gt;
&lt;br /&gt;
3.	groupadd nagios&lt;br /&gt;
&lt;br /&gt;
4.	modif des uids/gids : /opt/glite/yaim/examples/edgusers.conf [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe5 Annexe5]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
5.	lancement de la configuration automatique via yaim (All On One Box) :&lt;br /&gt;
 	&lt;br /&gt;
 	/opt/glite/yaim/bin/yaim -s /opt/glite/yaim/site-info.def -c -n glite-UI -n glite-NAGIOS&lt;br /&gt;
&lt;br /&gt;
6.	lancement de la configuration via NCG (All On One Box) :&lt;br /&gt;
&lt;br /&gt;
 /usr/sbin/ncg.pl&lt;br /&gt;
&lt;br /&gt;
.....MODIFICATION importante:: voir: https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
La partie:&lt;br /&gt;
#  Configure manually /etc/ncg/ncg.conf (Template can be found here: ncg.conf.template: )&lt;br /&gt;
- Switch off automatic generation of ncg.conf by YAIM (NAGIOS_NCG_ENABLE_CONFIG&amp;quot;=&amp;quot;false&amp;quot;)&lt;br /&gt;
- Take ncg.conf.template and copy it to /etc/ncg/ncg.conf&lt;br /&gt;
     - Set $ROC_NAME$&lt;br /&gt;
     - Set $YOUR_MYPROXY_SERVER$ (e.g. myproxy-fts.cern.ch)&lt;br /&gt;
     - Set $MYPROXY_NAME$ (e.g.: NagiosRetrieve-sam-ap-roc.cern.ch)&lt;br /&gt;
     - Set $NAGIOS_ROLE$ (e.g.: ngi, roc)&lt;br /&gt;
# Take Hash.pm file that we are currently using at the CERN ROC Nagios boxes. In this file, we have removed the metrics that do not belong to the SAM_Critical profile, so only the metrics defined at ROC_SAM_critical are configured, and not relevant services like SRMv1 are commented out. The file is located under /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm &lt;br /&gt;
&lt;br /&gt;
Pour éviter d&#039;avoir des sondes inappropriés.&lt;br /&gt;
&lt;br /&gt;
== Tuning the configuration ==&lt;br /&gt;
&lt;br /&gt;
1.	Verifier  dans /etc/sysconfig/nagios:&lt;br /&gt;
 LD_LIBRARY_PATH=/opt/classads/lib64:/opt/glite/lib64:/opt/globus/lib:/opt/c-ares/lib:/opt/classads/lib64  &lt;br /&gt;
&lt;br /&gt;
2.	Desactiver les notifications, dans les fichiers de conf: &lt;br /&gt;
 a.      /etc/nagios/nagios.cfg, désactiver les notifications:enable_notifications=0 ;log_notifications=0&lt;br /&gt;
 b.	 /etc/nagios/wlcg.d/host.templates.cfg&lt;br /&gt;
 c.	 /etc/nagios/wlcg.d/service.templates.cfg&lt;br /&gt;
&lt;br /&gt;
4.	N’autoriser que les dteam/France à visualiser notre interface nagios : modifier le fichier : &lt;br /&gt;
 /etc/voms2htpasswd.conf, avec : vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&lt;br /&gt;
Plus utile site le site-info.def est défini correctement:&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&#039;&lt;br /&gt;
&lt;br /&gt;
== ActiveMQ ==&lt;br /&gt;
 /usr/sbin/msg-to-queue --prefix /queue/grid.probe.metricOutput.EGEE.a635834332381123c8b296d02b682f8f --broker-uri stomp://prod-grid-msg.cern.ch:6163&lt;br /&gt;
 &lt;br /&gt;
[root@cclcgvmli03 cron.hourly]# cat check_msg-to-queue.sh&lt;br /&gt;
&lt;br /&gt;
Verifier les messages:&lt;br /&gt;
 /usr/libexec/grid-monitoring/plugins/nagios/recv_from_queue -v &lt;br /&gt;
&lt;br /&gt;
faire une update de perl-GridMon &lt;br /&gt;
 The problem here is in the message handler &lt;br /&gt;
 (/usr/lib/perl5/vendor_perl/5.8.8/GridMon/MsgHandler/MetricOutput.pm). &lt;br /&gt;
 Probe on WN reports hostname localhost.localdomain and serviceURI CE &lt;br /&gt;
 hostname. In the previous version message handler first checked hostname &lt;br /&gt;
 value and then serviceURI. That is the reason why Christine is seeing &lt;br /&gt;
 results for localhost.localdomain. However, we fixed this and the latest &lt;br /&gt;
 version (1.0.34) parses messages correctly.&lt;br /&gt;
&lt;br /&gt;
 yum update perl-GridMon&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== Systeme d&#039;information ==&lt;br /&gt;
La nagios Box doit etre enregistré dans la GOCDB &lt;br /&gt;
et publié dans le site-BDII:&lt;br /&gt;
 ldapsearch -x -H ldap://ccnagboxli01.in2p3.fr:2170 -b &#039;Mds-vo-name=resource,o=Grid&#039;&lt;br /&gt;
&lt;br /&gt;
= validation =&lt;br /&gt;
&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
&lt;br /&gt;
now you should publish your Nagios in your Site BDII&lt;br /&gt;
And we should declare the node in the GOCDB: Regional-NAGIOS ou National-Nagios, a determiner&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
liste des sondes a valider: d&#039;après: https://twiki.cern.ch/twiki/bin/view/LCG/SAMCriticalTestsForCODs&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Type de Noeuds&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Valid (Y or N)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
APEL&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Pas de métric ?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
BDII (site and TOP)&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
- Probleme identifié pour la variable LCG_GFAL_INFOSYS quand c&#039;est une liste (CE lpnce.in2p3.fr):&lt;br /&gt;
LCG_GFAL_INFOSYS=topbdii.grif.fr:2170,cclcgtopbdii01.in2p3.fr:2170,lapp-bdii01.in2p3.fr:2170&lt;br /&gt;
&lt;br /&gt;
-Tout le mecanisme de recuperation des outputs n&#039;est pas compris mais globalement on a les meme resultat que celui du CERN&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CREAMCE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: idem CERN nagiosBOX (mais sonde Brokerinfo toujours en erreur: probleme connu: https://savannah.cern.ch/bugs/?61322)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
FTS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y and NO: For the check_command those options should be added: &lt;br /&gt;
--cert /etc/nagios/globus/hostcert.pem   --key /etc/nagios/globus/hostkey.pem  -x $USER2$ (this should be fixed in the next release)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
gRB/WMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y:(certificate lifetime only)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_C&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: mais il faudrait peut etre demander au site de supporter la VO ops pour que leur LFC soit testé (lfc-ls et lfc-ping)?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_L&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: mais il faudrait peut etre demander au site de supporter la VO ops pour que leur LFC soit testé (lfc-ls et lfc-ping)?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MPI&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
em&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MyProxy&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
em&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RB&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nobody&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Service Deprecated. Does NOT apply in Nagios&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RGMA / MON&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y (certificate lifetime only)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
&lt;br /&gt;
SRMv2&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOBOX&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
em&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Mise à jour =&lt;br /&gt;
Pour modifier la configuration (Exemple nouveau site a ajouter pour le FOC france):&lt;br /&gt;
Modifier &#039;&#039;&#039;/etc/ncg/ncg.localdb&#039;&#039;&#039; en conséquence.&lt;br /&gt;
Puis executer le script ncg:&lt;br /&gt;
 /usr/sbin/ncg.pl&lt;br /&gt;
Au prealablefaire une &amp;quot;sauvegarde&amp;quot; local de la config nagios:&lt;br /&gt;
 mv /etc/nagios/wlcg.d /etc/nagios/wlcg.d.old&lt;br /&gt;
&lt;br /&gt;
Verifier que la config est OK et faire un &#039;&#039;&#039;svn ci&#039;&#039;&#039; pour la sauvegarde de la configuration.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= bascule =&lt;br /&gt;
Si probleme hardware sur la machine=&amp;gt; bascule sur la machine virtuelle de secours (Nadia ou Jacques).&lt;br /&gt;
Faire ensuite un &#039;&#039;&#039;svn co&#039;&#039;&#039; de la config nagios pour avoir la derniere config de production.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Annexes =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Annexe0 ==&lt;br /&gt;
&lt;br /&gt;
Sur le myproxyserver, il faut que le nagios server soit &amp;quot;trusted retriever&amp;quot; et &amp;quot;authorized retrievers&amp;quot;:&lt;br /&gt;
 [cleroy@grid08 ~]$ grep cclcgvmli03 /opt/glite/etc/myproxy-server.conf&lt;br /&gt;
 trusted_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 authorized_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Sur une UI:&lt;br /&gt;
&lt;br /&gt;
 voms-proxy-init -voms ops:/ops/Role=lcgadmin&lt;br /&gt;
 myproxy-init -c 336 -k nagios_roc_fr2-ops -s myproxy.grif.fr -l nagios  -x -Z &amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-IN2P3/CN=ccnagboxli01.in2p3.fr&amp;quot;&lt;br /&gt;
&lt;br /&gt;
== Annexe 1 ==&lt;br /&gt;
 rpm -ivh http://www.sysadmin.hep.ac.uk/rpms/egee-SA1/centos5/x86_64/sa1-release-2-1.el5.noarch.rpm&lt;br /&gt;
 rpm -ivh  http://packages.sw.be/rpmforge-release/rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm&lt;br /&gt;
&lt;br /&gt;
 yum install atp&lt;br /&gt;
 yum install bouncycastle&lt;br /&gt;
 yum install broker&lt;br /&gt;
 yum install broker-cache&lt;br /&gt;
 yum install dcache-srmclient&lt;br /&gt;
 yum install dummy-ca-certs&lt;br /&gt;
 yum install egee-NAGIOS&lt;br /&gt;
 yum install egee-NAGIOS egee-NRPE&lt;br /&gt;
 yum install egee-NRPE&lt;br /&gt;
 yum install fetch-crl&lt;br /&gt;
 yum install fipscheck fipscheck-lib&lt;br /&gt;
 yum install glite-UI&lt;br /&gt;
 yum install glite-security-voms-clients&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install glite-yaim-core&lt;br /&gt;
 yum install glite-yaim-nagios&lt;br /&gt;
 yum install httpd&lt;br /&gt;
 yum install jdk&lt;br /&gt;
 yum install lcg-CA&lt;br /&gt;
 yum install lcg-CA egee-NAGIOS&lt;br /&gt;
 yum install lcg_util&lt;br /&gt;
 yum install mddb&lt;br /&gt;
 yum install msg-publish-simple&lt;br /&gt;
 yum install myproxy&lt;br /&gt;
 yum install mysql-client&lt;br /&gt;
 yum install mysql-server&lt;br /&gt;
 yum install nagios-proxy-refresh&lt;br /&gt;
 yum install perl-Config-Tiny&lt;br /&gt;
 yum install perl-DBD-MySQL&lt;br /&gt;
 yum install perl-rrdtool-1.3.8-2.el5.rf.x86_64&lt;br /&gt;
 yum install python-yaml&lt;br /&gt;
 yum install sun-jaf&lt;br /&gt;
 yum install uberftp-client&lt;br /&gt;
 yum install vdt_globus_rm_client&lt;br /&gt;
&lt;br /&gt;
 yum update glite-yaim-clients&lt;br /&gt;
 yum update glite-yaim-core&lt;br /&gt;
 yum update glite-yaim-nagios&lt;br /&gt;
 yum update mysql-server&lt;br /&gt;
 yum update perl-DBI&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
== Annexe2 ==&lt;br /&gt;
a)Mot de passe admin mysql :&lt;br /&gt;
Yum pour recupérer la derniere version de Mysql :&lt;br /&gt;
&#039;&#039;MySQL-server-community&#039;&#039;, ne pas oublier le client (pas de dépendance dessus)&lt;br /&gt;
Demmarrage de mysql avec --skip-grant-tables (pour ne pas avoir de mot de passe a rentrer)&lt;br /&gt;
 mysqld_safe --skip-grant-tables &amp;amp;&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root &lt;br /&gt;
 update user set password=PASSWORD(&amp;quot;NEW-ROOT-PASSWORD&amp;quot;) where User=&#039;root&#039;;&lt;br /&gt;
&lt;br /&gt;
b)creation des users pour le nagios regional:&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root -p&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON nagios.* TO &#039;ndouser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON atp.* TO &#039;atpuser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
== Annexe 3 ==&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /etc/ncg/ncg.localdb&lt;br /&gt;
 #&lt;br /&gt;
 # Local Rules file to modify NCG configuration&lt;br /&gt;
 #&lt;br /&gt;
 SITE!AUVERGRID&lt;br /&gt;
 SITE!CGG-LCG2&lt;br /&gt;
 SITE!ESRF&lt;br /&gt;
 SITE!GRIF&lt;br /&gt;
 SITE!IBCP-GBIO&lt;br /&gt;
 SITE!IN2P3-CC&lt;br /&gt;
 SITE!IN2P3-CC-PPS&lt;br /&gt;
 SITE!IN2P3-CC-T2&lt;br /&gt;
 SITE!IN2P3-CPPM&lt;br /&gt;
 SITE!IN2P3-IPNL&lt;br /&gt;
 SITE!IN2P3-IRES&lt;br /&gt;
 SITE!IN2P3-LAPP&lt;br /&gt;
 SITE!IN2P3-LPC&lt;br /&gt;
 SITE!IN2P3-LPSC&lt;br /&gt;
 SITE!IN2P3-SUBATECH&lt;br /&gt;
 SITE!IPSL-IPGP-LCG2&lt;br /&gt;
 SITE!M3PEC&lt;br /&gt;
 SITE!MSFG&lt;br /&gt;
 SITE!MSFG-MULTI&lt;br /&gt;
 SITE!MSFG-OPEN&lt;br /&gt;
 SITE!OBSPM&lt;br /&gt;
 SITE!PARIS-UREC-IPV6&lt;br /&gt;
 SITE!SN-UCAD&lt;br /&gt;
 SITE!ROC-FR&lt;br /&gt;
 SITE!SOLEIL&lt;br /&gt;
 SITE!StratusLab&lt;br /&gt;
 [root@cclcgvmli03 ~]#&lt;br /&gt;
 &lt;br /&gt;
== Annexe 4 ==&lt;br /&gt;
&lt;br /&gt;
 SITE_EMAIL=c.leroy@cea.fr&lt;br /&gt;
 SITE_NAME=ROC-FR&lt;br /&gt;
 RB_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 WMS_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 PX_HOST=myproxy.grif.fr&lt;br /&gt;
 BDII_HOST=topbdii.grif.fr&lt;br /&gt;
 SITE_BDII_HOST=bdii.grif.fr&lt;br /&gt;
 MON_HOST=node06.datagrid.cea.fr&lt;br /&gt;
 VOS=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 DTEAM_GROUP_ENABLE=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 VO_DTEAM_SW_DIR=$VO_SW_DIR/dteam&lt;br /&gt;
 VO_DTEAM_DEFAULT_SE=$SE_HOST&lt;br /&gt;
 VO_DTEAM_STORAGE_DIR=$CLASSIC_STORAGE_DIR/dteam&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/&#039;&lt;br /&gt;
 VO_DTEAM_VOMSES=&amp;quot;&#039;dteam lcg-voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=lcg-voms.cern.ch dteam 24&#039; &#039;dteam    voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=voms.cern.ch dteam 24&#039;&amp;quot;&lt;br /&gt;
 VO_DTEAM_VOMS_CA_DN=&amp;quot;&#039;/DC=ch/DC=cern/CN=CERN Trusted Certification Authority&#039; &#039;/DC=ch/DC=cern/CN=CERN Trusted   Certification Authority&#039;&amp;quot;&lt;br /&gt;
 NAGIOS_HOST=cclcgvmli03.in2p3.fr&lt;br /&gt;
 NAGIOS_ADMIN_DNS=&amp;quot;/O=GRID-FR/C=FR/O=CEA/OU=IRFU/CN=Christine Leroy&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=Nadia Lajili&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=LPC/CN=Emmanuel Medernach&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CPPM/CN=Juan Carlos Carranza&amp;quot;&lt;br /&gt;
 NAGIOS_NCG_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_NAGIOS_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_GOCDB_ROC_NAME=France&lt;br /&gt;
 ROC_NAME=France&lt;br /&gt;
 NCG_PROBES_TYPE=remote,native,local&lt;br /&gt;
 NCG_VO=dteam&lt;br /&gt;
 NAGIOS_MYPROXY_NAME=nagios_roc_fr2&lt;br /&gt;
 NAGIOS_MYPROXY_USER=nagios&lt;br /&gt;
 MSG_BROKER_CACHE_NETWORK=PROD&lt;br /&gt;
 NAGIOS_ROLE=roc&lt;br /&gt;
 NAGIOS_HTTPD_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_SUDO_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_CGI_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_LDAP_FILTER=GlueSiteOtherInfo=EGEE_ROC=France&lt;br /&gt;
 NAGIOS_DB_PASS=x&lt;br /&gt;
 NAGIOS_NSCA_PASS=x&lt;br /&gt;
 MYSQL_ADMIN=x&lt;br /&gt;
 ATP_DB_PASS=x&lt;br /&gt;
 MDDB_DB_PASS=x&lt;br /&gt;
 MS_DB_PASS=x&lt;br /&gt;
 MYSQL_PASSWORD=x&lt;br /&gt;
 MYEGEE_DB_PASS=x&lt;br /&gt;
&lt;br /&gt;
== Annexe 5 ==&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /opt/glite/yaim/examples/edgusers.conf&lt;br /&gt;
 11151:${DPMMGR_USER}:11151:${DPMMGR_GROUP}:DPM user:&lt;br /&gt;
 11152:${EDG_USER}:11152,11156:${EDG_GROUP},${INFOSYS_GROUP}:EDG user:${EDG_HOME_DIR}&lt;br /&gt;
 11153:${EDGINFO_USER}:11153,1156:${EDGINFO_USER},${INFOSYS_GROUP}:EDG info user:${EDGINFO_HOME_DIR}&lt;br /&gt;
 11154:${RGMA_USER}:11154,1156:${RGMA_GROUP},${INFOSYS_GROUP}:RGMA user:${INSTALL_ROOT}/glite/etc/rgma&lt;br /&gt;
 11155:${GLITE_USER}:11155:${GLITE_GROUP}:gLite user:${GLITE_HOME_DIR}&lt;br /&gt;
 11156:${BDII_USER}:11158:${BDII_GROUP}:BDII user:${BDII_HOME_DIR}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Annexe 6 ==&lt;br /&gt;
&lt;br /&gt;
Probleme rencontré sur ccnagboxli01 (arret de ypbind + rpm manquant)&lt;br /&gt;
 chown -R nagios:nagios /var/spool/pnp4nagios&lt;br /&gt;
 chown -R nagios:nagios /var/spool/msg-nagios-bridge&lt;br /&gt;
 chown root:nagios /etc/atp/atp_db.conf&lt;br /&gt;
 chown root:nagios /etc/mddb/databases.yml&lt;br /&gt;
 chown nagios:apache /var/nagios/rw&lt;br /&gt;
 chown -R nagios:apache /var/nagios/rw&lt;br /&gt;
 chown root:nagios /etc/nagios/plugins/send_to_db.ini&lt;br /&gt;
 chown -R nagios:nagios /var/cache/msg/config-cache&lt;br /&gt;
 chown -R nagios:root /var/log/mddb&lt;br /&gt;
 chown -R nagios:root /var/log/pnp4nagios&lt;br /&gt;
 chown -R nagios:root /var/log/nagios&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
  useradd -g 40011 -u 10011 nagios&lt;br /&gt;
  useradd --group mysql -u 2730 mysql&lt;br /&gt;
  useradd -g mysql -u 2730 mysql&lt;br /&gt;
&lt;br /&gt;
   groupadd -g 40010 nagiosmaster&lt;br /&gt;
   groupadd -g 146 leftuser&lt;br /&gt;
&lt;br /&gt;
 yum install glite-security-voms-api-c-1.8.12-2.sl5.x86_64&lt;br /&gt;
 yum update perl-Net-SSLeay&lt;br /&gt;
 yum update perl-IO-Socket-SSL-1.01-1.fc6.noarch&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install lcg_util-1.7.6-1.sl5.x86_64&lt;br /&gt;
 yum install GFAL-client-1.11.8-2.sl5.x86_64 GFAL-client-1.11.8-2.sl5.i386&lt;br /&gt;
 yum install CGSI_gSOAP_2.7-1.3.3-1.sl5.x86_64&lt;br /&gt;
 yum install LFC-interfaces-1.7.3-1sec.sl5.x86_64 LFC-client-1.7.3-1sec.sl5.x86_64 lcg-dm-common-1.7.3-1sec.sl5.x86_64&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5753</id>
		<title>Nagios regional</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5753"/>
		<updated>2010-03-29T10:01:15Z</updated>

		<summary type="html">&lt;p&gt;LEROY: /* validation */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Installation d&#039;une NOGIOS box pour le ROC France&lt;br /&gt;
&lt;br /&gt;
= 1)	Installation de base : =&lt;br /&gt;
a.	Machine installée par les sysadmin du CC : OS + VOBOX + certificat + pas dans les NIS&lt;br /&gt;
&lt;br /&gt;
b.	Accessible via gsissh (port 1975)&lt;br /&gt;
&lt;br /&gt;
= 2)	Action faite au préalable : =&lt;br /&gt;
a.	Faire la demande pour que la machine soit autorisée à récupérer les SAM tests : https://gus.fzk.de/ws/ticket_info.php?ticket=55132&lt;br /&gt;
&lt;br /&gt;
b.	Autoriser la nagios box à récupérer les proxy en mode « retrieval », et stocker un proxy depuis une UI récuperable par la nagiosBOX voir  [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe0 Annexe0]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
c.	Certificat utilisé pour :&lt;br /&gt;
&lt;br /&gt;
i.	                       Access to GOCDB PI for ROCS GOCDB PI level 2 required &lt;br /&gt;
&lt;br /&gt;
ii.	                       Recuperation de proxy pour les sondes locales&lt;br /&gt;
&lt;br /&gt;
d. s&#039;inscrire dans la mailing liste: regional-nagios-admins@cern.ch (très réactive)&lt;br /&gt;
&lt;br /&gt;
= 3)	Installation de Nagios =&lt;br /&gt;
Reference : https://twiki.cern.ch/twiki/bin/view/EGEE/GridMonitoringNcgYaim&lt;br /&gt;
== Installation des packages via yum, Ajout des repos suivant ==&lt;br /&gt;
 a.	mirrors-rpmforge (rpm rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm)&lt;br /&gt;
 b.	rpmforge-testing.repo&lt;br /&gt;
 c.	rpmforge.repo&lt;br /&gt;
 d.	glite-UI.repo&lt;br /&gt;
 e.	sa1-centos5-release.repo (rpm:  sa1-release-2-1.el5.noarch.rpm)&lt;br /&gt;
 f.	glite-BDII.repo&lt;br /&gt;
&lt;br /&gt;
Problèmes de dépendances rencontrées si besoin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe1 Annexe1] (mais j’avais dû oublier de faire un : yum install egee-NAGIOS)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Installation subversion ==&lt;br /&gt;
Certain fichier de config sont a recuperer via svn au CERN:&lt;br /&gt;
&lt;br /&gt;
 yum install subversion&lt;br /&gt;
 svn co http://svnweb.cern.ch/guest/sam/trunk/roc-config&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 cp /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm.orig&lt;br /&gt;
 cp roc-config/Hash.pm_55_ALL_CRIT /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm&lt;br /&gt;
&lt;br /&gt;
== Mysql ==&lt;br /&gt;
&lt;br /&gt;
1.	Installer la dernière version de Mysql (server + client) ; &lt;br /&gt;
&lt;br /&gt;
2.	configurer le mot de passe admin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2a] ;&lt;br /&gt;
&lt;br /&gt;
3.	Configurer les users utiles à la nagios Box se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2b] ;&lt;br /&gt;
&lt;br /&gt;
== Configuration via yaim et NCG (en 2 fois)==&lt;br /&gt;
&lt;br /&gt;
1.	Remplir /etc/ncg/ncg.localdb avec la liste des sites se referer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe3 Annexe3]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
2.	Remplir le /opt/glite/yaim/site-info.def voir [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe4 Annexe4] ;&lt;br /&gt;
&lt;br /&gt;
3.	groupadd nagios&lt;br /&gt;
&lt;br /&gt;
4.	modif des uids/gids : /opt/glite/yaim/examples/edgusers.conf [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe5 Annexe5]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
5.	lancement de la configuration automatique via yaim (All On One Box) :&lt;br /&gt;
 	&lt;br /&gt;
 	/opt/glite/yaim/bin/yaim -s /opt/glite/yaim/site-info.def -c -n glite-UI -n glite-NAGIOS&lt;br /&gt;
&lt;br /&gt;
6.	lancement de la configuration via NCG (All On One Box) :&lt;br /&gt;
&lt;br /&gt;
 /usr/sbin/ncg.pl&lt;br /&gt;
&lt;br /&gt;
.....MODIFICATION importante:: voir: https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
La partie:&lt;br /&gt;
#  Configure manually /etc/ncg/ncg.conf (Template can be found here: ncg.conf.template: )&lt;br /&gt;
- Switch off automatic generation of ncg.conf by YAIM (NAGIOS_NCG_ENABLE_CONFIG&amp;quot;=&amp;quot;false&amp;quot;)&lt;br /&gt;
- Take ncg.conf.template and copy it to /etc/ncg/ncg.conf&lt;br /&gt;
     - Set $ROC_NAME$&lt;br /&gt;
     - Set $YOUR_MYPROXY_SERVER$ (e.g. myproxy-fts.cern.ch)&lt;br /&gt;
     - Set $MYPROXY_NAME$ (e.g.: NagiosRetrieve-sam-ap-roc.cern.ch)&lt;br /&gt;
     - Set $NAGIOS_ROLE$ (e.g.: ngi, roc)&lt;br /&gt;
# Take Hash.pm file that we are currently using at the CERN ROC Nagios boxes. In this file, we have removed the metrics that do not belong to the SAM_Critical profile, so only the metrics defined at ROC_SAM_critical are configured, and not relevant services like SRMv1 are commented out. The file is located under /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm &lt;br /&gt;
&lt;br /&gt;
Pour éviter d&#039;avoir des sondes inappropriés.&lt;br /&gt;
&lt;br /&gt;
== Tuning the configuration ==&lt;br /&gt;
&lt;br /&gt;
1.	Verifier  dans /etc/sysconfig/nagios:&lt;br /&gt;
 LD_LIBRARY_PATH=/opt/classads/lib64:/opt/glite/lib64:/opt/globus/lib:/opt/c-ares/lib:/opt/classads/lib64  &lt;br /&gt;
&lt;br /&gt;
2.	Desactiver les notifications, dans les fichiers de conf: &lt;br /&gt;
 a.      /etc/nagios/nagios.cfg, désactiver les notifications:enable_notifications=0 ;log_notifications=0&lt;br /&gt;
 b.	 /etc/nagios/wlcg.d/host.templates.cfg&lt;br /&gt;
 c.	 /etc/nagios/wlcg.d/service.templates.cfg&lt;br /&gt;
&lt;br /&gt;
4.	N’autoriser que les dteam/France à visualiser notre interface nagios : modifier le fichier : &lt;br /&gt;
 /etc/voms2htpasswd.conf, avec : vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&lt;br /&gt;
Plus utile site le site-info.def est défini correctement:&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&#039;&lt;br /&gt;
&lt;br /&gt;
== ActiveMQ ==&lt;br /&gt;
 /usr/sbin/msg-to-queue --prefix /queue/grid.probe.metricOutput.EGEE.a635834332381123c8b296d02b682f8f --broker-uri stomp://prod-grid-msg.cern.ch:6163&lt;br /&gt;
 &lt;br /&gt;
[root@cclcgvmli03 cron.hourly]# cat check_msg-to-queue.sh&lt;br /&gt;
&lt;br /&gt;
Verifier les messages:&lt;br /&gt;
 /usr/libexec/grid-monitoring/plugins/nagios/recv_from_queue -v &lt;br /&gt;
&lt;br /&gt;
faire une update de perl-GridMon &lt;br /&gt;
 The problem here is in the message handler &lt;br /&gt;
 (/usr/lib/perl5/vendor_perl/5.8.8/GridMon/MsgHandler/MetricOutput.pm). &lt;br /&gt;
 Probe on WN reports hostname localhost.localdomain and serviceURI CE &lt;br /&gt;
 hostname. In the previous version message handler first checked hostname &lt;br /&gt;
 value and then serviceURI. That is the reason why Christine is seeing &lt;br /&gt;
 results for localhost.localdomain. However, we fixed this and the latest &lt;br /&gt;
 version (1.0.34) parses messages correctly.&lt;br /&gt;
&lt;br /&gt;
 yum update perl-GridMon&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== Systeme d&#039;information ==&lt;br /&gt;
La nagios Box doit etre enregistré dans la GOCDB &lt;br /&gt;
et publié dans le site-BDII:&lt;br /&gt;
 ldapsearch -x -H ldap://ccnagboxli01.in2p3.fr:2170 -b &#039;Mds-vo-name=resource,o=Grid&#039;&lt;br /&gt;
&lt;br /&gt;
= validation =&lt;br /&gt;
&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
&lt;br /&gt;
now you should publish your Nagios in your Site BDII&lt;br /&gt;
And we should declare the node in the GOCDB: Regional-NAGIOS ou National-Nagios, a determiner&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
liste des sondes a valider: d&#039;après: https://twiki.cern.ch/twiki/bin/view/LCG/SAMCriticalTestsForCODs&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Type de Noeuds&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Valid (Y or N)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
APEL&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Pas de métric ?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
BDII (site and TOP)&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
- Probleme identifié pour la variable LCG_GFAL_INFOSYS quand c&#039;est une liste (CE lpnce.in2p3.fr):&lt;br /&gt;
LCG_GFAL_INFOSYS=topbdii.grif.fr:2170,cclcgtopbdii01.in2p3.fr:2170,lapp-bdii01.in2p3.fr:2170&lt;br /&gt;
&lt;br /&gt;
-Tout le mecanisme de recuperation des outputs n&#039;est pas compris mais globalement on a les meme resultat que celui du CERN&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CREAMCE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: idem CERN nagiosBOX (mais sonde Brokerinfo toujours en erreur: probleme connu: https://savannah.cern.ch/bugs/?61322)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
FTS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y and NO: For the check_command those options should be added: &lt;br /&gt;
--cert /etc/nagios/globus/hostcert.pem   --key /etc/nagios/globus/hostkey.pem  -x $USER2$ (this should be fixed in the next release)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
gRB/WMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y:(certificate lifetime only)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_C&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: mais il faudrait peut etre demander au site de supporter la VO ops pour que leur LFC soit testé (lfc-ls et lfc-ping)?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_L&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: mais il faudrait peut etre demander au site de supporter la VO ops pour que leur LFC soit testé (lfc-ls et lfc-ping)?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MPI&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
em&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MyProxy&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
em&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RB&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nobody&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Service Deprecated. Does NOT apply in Nagios&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RGMA / MON&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y (certificate lifetime only)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
&lt;br /&gt;
SRMv2&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOBOX&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
em&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
= Annexe0 =&lt;br /&gt;
&lt;br /&gt;
Sur le myproxyserver, il faut que le nagios server soit &amp;quot;trusted retriever&amp;quot; et &amp;quot;authorized retrievers&amp;quot;:&lt;br /&gt;
 [cleroy@grid08 ~]$ grep cclcgvmli03 /opt/glite/etc/myproxy-server.conf&lt;br /&gt;
 trusted_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 authorized_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Sur une UI:&lt;br /&gt;
&lt;br /&gt;
 voms-proxy-init -voms ops:/ops/Role=lcgadmin&lt;br /&gt;
 myproxy-init -c 336 -k nagios_roc_fr2-ops -s myproxy.grif.fr -l nagios  -x -Z &amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-IN2P3/CN=ccnagboxli01.in2p3.fr&amp;quot;&lt;br /&gt;
&lt;br /&gt;
= Annexe 1 =&lt;br /&gt;
 rpm -ivh http://www.sysadmin.hep.ac.uk/rpms/egee-SA1/centos5/x86_64/sa1-release-2-1.el5.noarch.rpm&lt;br /&gt;
 rpm -ivh  http://packages.sw.be/rpmforge-release/rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm&lt;br /&gt;
&lt;br /&gt;
 yum install atp&lt;br /&gt;
 yum install bouncycastle&lt;br /&gt;
 yum install broker&lt;br /&gt;
 yum install broker-cache&lt;br /&gt;
 yum install dcache-srmclient&lt;br /&gt;
 yum install dummy-ca-certs&lt;br /&gt;
 yum install egee-NAGIOS&lt;br /&gt;
 yum install egee-NAGIOS egee-NRPE&lt;br /&gt;
 yum install egee-NRPE&lt;br /&gt;
 yum install fetch-crl&lt;br /&gt;
 yum install fipscheck fipscheck-lib&lt;br /&gt;
 yum install glite-UI&lt;br /&gt;
 yum install glite-security-voms-clients&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install glite-yaim-core&lt;br /&gt;
 yum install glite-yaim-nagios&lt;br /&gt;
 yum install httpd&lt;br /&gt;
 yum install jdk&lt;br /&gt;
 yum install lcg-CA&lt;br /&gt;
 yum install lcg-CA egee-NAGIOS&lt;br /&gt;
 yum install lcg_util&lt;br /&gt;
 yum install mddb&lt;br /&gt;
 yum install msg-publish-simple&lt;br /&gt;
 yum install myproxy&lt;br /&gt;
 yum install mysql-client&lt;br /&gt;
 yum install mysql-server&lt;br /&gt;
 yum install nagios-proxy-refresh&lt;br /&gt;
 yum install perl-Config-Tiny&lt;br /&gt;
 yum install perl-DBD-MySQL&lt;br /&gt;
 yum install perl-rrdtool-1.3.8-2.el5.rf.x86_64&lt;br /&gt;
 yum install python-yaml&lt;br /&gt;
 yum install sun-jaf&lt;br /&gt;
 yum install uberftp-client&lt;br /&gt;
 yum install vdt_globus_rm_client&lt;br /&gt;
&lt;br /&gt;
 yum update glite-yaim-clients&lt;br /&gt;
 yum update glite-yaim-core&lt;br /&gt;
 yum update glite-yaim-nagios&lt;br /&gt;
 yum update mysql-server&lt;br /&gt;
 yum update perl-DBI&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe2 =&lt;br /&gt;
a)Mot de passe admin mysql :&lt;br /&gt;
Yum pour recupérer la derniere version de Mysql :&lt;br /&gt;
&#039;&#039;MySQL-server-community&#039;&#039;, ne pas oublier le client (pas de dépendance dessus)&lt;br /&gt;
Demmarrage de mysql avec --skip-grant-tables (pour ne pas avoir de mot de passe a rentrer)&lt;br /&gt;
 mysqld_safe --skip-grant-tables &amp;amp;&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root &lt;br /&gt;
 update user set password=PASSWORD(&amp;quot;NEW-ROOT-PASSWORD&amp;quot;) where User=&#039;root&#039;;&lt;br /&gt;
&lt;br /&gt;
b)creation des users pour le nagios regional:&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root -p&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON nagios.* TO &#039;ndouser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON atp.* TO &#039;atpuser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe 3 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /etc/ncg/ncg.localdb&lt;br /&gt;
 #&lt;br /&gt;
 # Local Rules file to modify NCG configuration&lt;br /&gt;
 #&lt;br /&gt;
 SITE!AUVERGRID&lt;br /&gt;
 SITE!CGG-LCG2&lt;br /&gt;
 SITE!ESRF&lt;br /&gt;
 SITE!GRIF&lt;br /&gt;
 SITE!IBCP-GBIO&lt;br /&gt;
 SITE!IN2P3-CC&lt;br /&gt;
 SITE!IN2P3-CC-PPS&lt;br /&gt;
 SITE!IN2P3-CC-T2&lt;br /&gt;
 SITE!IN2P3-CPPM&lt;br /&gt;
 SITE!IN2P3-IPNL&lt;br /&gt;
 SITE!IN2P3-IRES&lt;br /&gt;
 SITE!IN2P3-LAPP&lt;br /&gt;
 SITE!IN2P3-LPC&lt;br /&gt;
 SITE!IN2P3-LPSC&lt;br /&gt;
 SITE!IN2P3-SUBATECH&lt;br /&gt;
 SITE!IPSL-IPGP-LCG2&lt;br /&gt;
 SITE!M3PEC&lt;br /&gt;
 SITE!MSFG&lt;br /&gt;
 SITE!MSFG-MULTI&lt;br /&gt;
 SITE!MSFG-OPEN&lt;br /&gt;
 SITE!OBSPM&lt;br /&gt;
 SITE!PARIS-UREC-IPV6&lt;br /&gt;
 SITE!SN-UCAD&lt;br /&gt;
 SITE!ROC-FR&lt;br /&gt;
 SITE!SOLEIL&lt;br /&gt;
 SITE!StratusLab&lt;br /&gt;
 [root@cclcgvmli03 ~]#&lt;br /&gt;
 &lt;br /&gt;
= Annexe 4 =&lt;br /&gt;
&lt;br /&gt;
 SITE_EMAIL=c.leroy@cea.fr&lt;br /&gt;
 SITE_NAME=ROC-FR&lt;br /&gt;
 RB_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 WMS_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 PX_HOST=myproxy.grif.fr&lt;br /&gt;
 BDII_HOST=topbdii.grif.fr&lt;br /&gt;
 SITE_BDII_HOST=bdii.grif.fr&lt;br /&gt;
 MON_HOST=node06.datagrid.cea.fr&lt;br /&gt;
 VOS=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 DTEAM_GROUP_ENABLE=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 VO_DTEAM_SW_DIR=$VO_SW_DIR/dteam&lt;br /&gt;
 VO_DTEAM_DEFAULT_SE=$SE_HOST&lt;br /&gt;
 VO_DTEAM_STORAGE_DIR=$CLASSIC_STORAGE_DIR/dteam&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/&#039;&lt;br /&gt;
 VO_DTEAM_VOMSES=&amp;quot;&#039;dteam lcg-voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=lcg-voms.cern.ch dteam 24&#039; &#039;dteam    voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=voms.cern.ch dteam 24&#039;&amp;quot;&lt;br /&gt;
 VO_DTEAM_VOMS_CA_DN=&amp;quot;&#039;/DC=ch/DC=cern/CN=CERN Trusted Certification Authority&#039; &#039;/DC=ch/DC=cern/CN=CERN Trusted   Certification Authority&#039;&amp;quot;&lt;br /&gt;
 NAGIOS_HOST=cclcgvmli03.in2p3.fr&lt;br /&gt;
 NAGIOS_ADMIN_DNS=&amp;quot;/O=GRID-FR/C=FR/O=CEA/OU=IRFU/CN=Christine Leroy&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=Nadia Lajili&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=LPC/CN=Emmanuel Medernach&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CPPM/CN=Juan Carlos Carranza&amp;quot;&lt;br /&gt;
 NAGIOS_NCG_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_NAGIOS_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_GOCDB_ROC_NAME=France&lt;br /&gt;
 ROC_NAME=France&lt;br /&gt;
 NCG_PROBES_TYPE=remote,native,local&lt;br /&gt;
 NCG_VO=dteam&lt;br /&gt;
 NAGIOS_MYPROXY_NAME=nagios_roc_fr2&lt;br /&gt;
 NAGIOS_MYPROXY_USER=nagios&lt;br /&gt;
 MSG_BROKER_CACHE_NETWORK=PROD&lt;br /&gt;
 NAGIOS_ROLE=roc&lt;br /&gt;
 NAGIOS_HTTPD_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_SUDO_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_CGI_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_LDAP_FILTER=GlueSiteOtherInfo=EGEE_ROC=France&lt;br /&gt;
 NAGIOS_DB_PASS=x&lt;br /&gt;
 NAGIOS_NSCA_PASS=x&lt;br /&gt;
 MYSQL_ADMIN=x&lt;br /&gt;
 ATP_DB_PASS=x&lt;br /&gt;
 MDDB_DB_PASS=x&lt;br /&gt;
 MS_DB_PASS=x&lt;br /&gt;
 MYSQL_PASSWORD=x&lt;br /&gt;
 MYEGEE_DB_PASS=x&lt;br /&gt;
&lt;br /&gt;
= Annexe 5 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /opt/glite/yaim/examples/edgusers.conf&lt;br /&gt;
 11151:${DPMMGR_USER}:11151:${DPMMGR_GROUP}:DPM user:&lt;br /&gt;
 11152:${EDG_USER}:11152,11156:${EDG_GROUP},${INFOSYS_GROUP}:EDG user:${EDG_HOME_DIR}&lt;br /&gt;
 11153:${EDGINFO_USER}:11153,1156:${EDGINFO_USER},${INFOSYS_GROUP}:EDG info user:${EDGINFO_HOME_DIR}&lt;br /&gt;
 11154:${RGMA_USER}:11154,1156:${RGMA_GROUP},${INFOSYS_GROUP}:RGMA user:${INSTALL_ROOT}/glite/etc/rgma&lt;br /&gt;
 11155:${GLITE_USER}:11155:${GLITE_GROUP}:gLite user:${GLITE_HOME_DIR}&lt;br /&gt;
 11156:${BDII_USER}:11158:${BDII_GROUP}:BDII user:${BDII_HOME_DIR}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Annexe 6 =&lt;br /&gt;
&lt;br /&gt;
Probleme rencontré sur ccnagboxli01 (arret de ypbind + rpm manquant)&lt;br /&gt;
 chown -R nagios:nagios /var/spool/pnp4nagios&lt;br /&gt;
 chown -R nagios:nagios /var/spool/msg-nagios-bridge&lt;br /&gt;
 chown root:nagios /etc/atp/atp_db.conf&lt;br /&gt;
 chown root:nagios /etc/mddb/databases.yml&lt;br /&gt;
 chown nagios:apache /var/nagios/rw&lt;br /&gt;
 chown -R nagios:apache /var/nagios/rw&lt;br /&gt;
 chown root:nagios /etc/nagios/plugins/send_to_db.ini&lt;br /&gt;
 chown -R nagios:nagios /var/cache/msg/config-cache&lt;br /&gt;
 chown -R nagios:root /var/log/mddb&lt;br /&gt;
 chown -R nagios:root /var/log/pnp4nagios&lt;br /&gt;
 chown -R nagios:root /var/log/nagios&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
  useradd -g 40011 -u 10011 nagios&lt;br /&gt;
  useradd --group mysql -u 2730 mysql&lt;br /&gt;
  useradd -g mysql -u 2730 mysql&lt;br /&gt;
&lt;br /&gt;
   groupadd -g 40010 nagiosmaster&lt;br /&gt;
   groupadd -g 146 leftuser&lt;br /&gt;
&lt;br /&gt;
 yum install glite-security-voms-api-c-1.8.12-2.sl5.x86_64&lt;br /&gt;
 yum update perl-Net-SSLeay&lt;br /&gt;
 yum update perl-IO-Socket-SSL-1.01-1.fc6.noarch&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install lcg_util-1.7.6-1.sl5.x86_64&lt;br /&gt;
 yum install GFAL-client-1.11.8-2.sl5.x86_64 GFAL-client-1.11.8-2.sl5.i386&lt;br /&gt;
 yum install CGSI_gSOAP_2.7-1.3.3-1.sl5.x86_64&lt;br /&gt;
 yum install LFC-interfaces-1.7.3-1sec.sl5.x86_64 LFC-client-1.7.3-1sec.sl5.x86_64 lcg-dm-common-1.7.3-1sec.sl5.x86_64&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5752</id>
		<title>Nagios regional</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5752"/>
		<updated>2010-03-29T09:21:05Z</updated>

		<summary type="html">&lt;p&gt;LEROY: /* validation */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Installation d&#039;une NOGIOS box pour le ROC France&lt;br /&gt;
&lt;br /&gt;
= 1)	Installation de base : =&lt;br /&gt;
a.	Machine installée par les sysadmin du CC : OS + VOBOX + certificat + pas dans les NIS&lt;br /&gt;
&lt;br /&gt;
b.	Accessible via gsissh (port 1975)&lt;br /&gt;
&lt;br /&gt;
= 2)	Action faite au préalable : =&lt;br /&gt;
a.	Faire la demande pour que la machine soit autorisée à récupérer les SAM tests : https://gus.fzk.de/ws/ticket_info.php?ticket=55132&lt;br /&gt;
&lt;br /&gt;
b.	Autoriser la nagios box à récupérer les proxy en mode « retrieval », et stocker un proxy depuis une UI récuperable par la nagiosBOX voir  [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe0 Annexe0]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
c.	Certificat utilisé pour :&lt;br /&gt;
&lt;br /&gt;
i.	                       Access to GOCDB PI for ROCS GOCDB PI level 2 required &lt;br /&gt;
&lt;br /&gt;
ii.	                       Recuperation de proxy pour les sondes locales&lt;br /&gt;
&lt;br /&gt;
d. s&#039;inscrire dans la mailing liste: regional-nagios-admins@cern.ch (très réactive)&lt;br /&gt;
&lt;br /&gt;
= 3)	Installation de Nagios =&lt;br /&gt;
Reference : https://twiki.cern.ch/twiki/bin/view/EGEE/GridMonitoringNcgYaim&lt;br /&gt;
== Installation des packages via yum, Ajout des repos suivant ==&lt;br /&gt;
 a.	mirrors-rpmforge (rpm rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm)&lt;br /&gt;
 b.	rpmforge-testing.repo&lt;br /&gt;
 c.	rpmforge.repo&lt;br /&gt;
 d.	glite-UI.repo&lt;br /&gt;
 e.	sa1-centos5-release.repo (rpm:  sa1-release-2-1.el5.noarch.rpm)&lt;br /&gt;
 f.	glite-BDII.repo&lt;br /&gt;
&lt;br /&gt;
Problèmes de dépendances rencontrées si besoin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe1 Annexe1] (mais j’avais dû oublier de faire un : yum install egee-NAGIOS)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Installation subversion ==&lt;br /&gt;
Certain fichier de config sont a recuperer via svn au CERN:&lt;br /&gt;
&lt;br /&gt;
 yum install subversion&lt;br /&gt;
 svn co http://svnweb.cern.ch/guest/sam/trunk/roc-config&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 cp /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm.orig&lt;br /&gt;
 cp roc-config/Hash.pm_55_ALL_CRIT /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm&lt;br /&gt;
&lt;br /&gt;
== Mysql ==&lt;br /&gt;
&lt;br /&gt;
1.	Installer la dernière version de Mysql (server + client) ; &lt;br /&gt;
&lt;br /&gt;
2.	configurer le mot de passe admin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2a] ;&lt;br /&gt;
&lt;br /&gt;
3.	Configurer les users utiles à la nagios Box se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2b] ;&lt;br /&gt;
&lt;br /&gt;
== Configuration via yaim et NCG (en 2 fois)==&lt;br /&gt;
&lt;br /&gt;
1.	Remplir /etc/ncg/ncg.localdb avec la liste des sites se referer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe3 Annexe3]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
2.	Remplir le /opt/glite/yaim/site-info.def voir [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe4 Annexe4] ;&lt;br /&gt;
&lt;br /&gt;
3.	groupadd nagios&lt;br /&gt;
&lt;br /&gt;
4.	modif des uids/gids : /opt/glite/yaim/examples/edgusers.conf [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe5 Annexe5]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
5.	lancement de la configuration automatique via yaim (All On One Box) :&lt;br /&gt;
 	&lt;br /&gt;
 	/opt/glite/yaim/bin/yaim -s /opt/glite/yaim/site-info.def -c -n glite-UI -n glite-NAGIOS&lt;br /&gt;
&lt;br /&gt;
6.	lancement de la configuration via NCG (All On One Box) :&lt;br /&gt;
&lt;br /&gt;
 /usr/sbin/ncg.pl&lt;br /&gt;
&lt;br /&gt;
.....MODIFICATION importante:: voir: https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
La partie:&lt;br /&gt;
#  Configure manually /etc/ncg/ncg.conf (Template can be found here: ncg.conf.template: )&lt;br /&gt;
- Switch off automatic generation of ncg.conf by YAIM (NAGIOS_NCG_ENABLE_CONFIG&amp;quot;=&amp;quot;false&amp;quot;)&lt;br /&gt;
- Take ncg.conf.template and copy it to /etc/ncg/ncg.conf&lt;br /&gt;
     - Set $ROC_NAME$&lt;br /&gt;
     - Set $YOUR_MYPROXY_SERVER$ (e.g. myproxy-fts.cern.ch)&lt;br /&gt;
     - Set $MYPROXY_NAME$ (e.g.: NagiosRetrieve-sam-ap-roc.cern.ch)&lt;br /&gt;
     - Set $NAGIOS_ROLE$ (e.g.: ngi, roc)&lt;br /&gt;
# Take Hash.pm file that we are currently using at the CERN ROC Nagios boxes. In this file, we have removed the metrics that do not belong to the SAM_Critical profile, so only the metrics defined at ROC_SAM_critical are configured, and not relevant services like SRMv1 are commented out. The file is located under /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm &lt;br /&gt;
&lt;br /&gt;
Pour éviter d&#039;avoir des sondes inappropriés.&lt;br /&gt;
&lt;br /&gt;
== Tuning the configuration ==&lt;br /&gt;
&lt;br /&gt;
1.	Verifier  dans /etc/sysconfig/nagios:&lt;br /&gt;
 LD_LIBRARY_PATH=/opt/classads/lib64:/opt/glite/lib64:/opt/globus/lib:/opt/c-ares/lib:/opt/classads/lib64  &lt;br /&gt;
&lt;br /&gt;
2.	Desactiver les notifications, dans les fichiers de conf: &lt;br /&gt;
 a.      /etc/nagios/nagios.cfg, désactiver les notifications:enable_notifications=0 ;log_notifications=0&lt;br /&gt;
 b.	 /etc/nagios/wlcg.d/host.templates.cfg&lt;br /&gt;
 c.	 /etc/nagios/wlcg.d/service.templates.cfg&lt;br /&gt;
&lt;br /&gt;
4.	N’autoriser que les dteam/France à visualiser notre interface nagios : modifier le fichier : &lt;br /&gt;
 /etc/voms2htpasswd.conf, avec : vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&lt;br /&gt;
Plus utile site le site-info.def est défini correctement:&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&#039;&lt;br /&gt;
&lt;br /&gt;
== ActiveMQ ==&lt;br /&gt;
 /usr/sbin/msg-to-queue --prefix /queue/grid.probe.metricOutput.EGEE.a635834332381123c8b296d02b682f8f --broker-uri stomp://prod-grid-msg.cern.ch:6163&lt;br /&gt;
 &lt;br /&gt;
[root@cclcgvmli03 cron.hourly]# cat check_msg-to-queue.sh&lt;br /&gt;
&lt;br /&gt;
Verifier les messages:&lt;br /&gt;
 /usr/libexec/grid-monitoring/plugins/nagios/recv_from_queue -v &lt;br /&gt;
&lt;br /&gt;
faire une update de perl-GridMon &lt;br /&gt;
 The problem here is in the message handler &lt;br /&gt;
 (/usr/lib/perl5/vendor_perl/5.8.8/GridMon/MsgHandler/MetricOutput.pm). &lt;br /&gt;
 Probe on WN reports hostname localhost.localdomain and serviceURI CE &lt;br /&gt;
 hostname. In the previous version message handler first checked hostname &lt;br /&gt;
 value and then serviceURI. That is the reason why Christine is seeing &lt;br /&gt;
 results for localhost.localdomain. However, we fixed this and the latest &lt;br /&gt;
 version (1.0.34) parses messages correctly.&lt;br /&gt;
&lt;br /&gt;
 yum update perl-GridMon&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== Systeme d&#039;information ==&lt;br /&gt;
La nagios Box doit etre enregistré dans la GOCDB &lt;br /&gt;
et publié dans le site-BDII:&lt;br /&gt;
 ldapsearch -x -H ldap://ccnagboxli01.in2p3.fr:2170 -b &#039;Mds-vo-name=resource,o=Grid&#039;&lt;br /&gt;
&lt;br /&gt;
= validation =&lt;br /&gt;
&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
&lt;br /&gt;
now you should publish your Nagios in your Site BDII&lt;br /&gt;
And we should declare the node in the GOCDB: Regional-NAGIOS ou National-Nagios, a determiner&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
liste des sondes a valider: d&#039;après: https://twiki.cern.ch/twiki/bin/view/LCG/SAMCriticalTestsForCODs&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Type de Noeuds&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Valid (Y or N)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
APEL&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Pas de métric ?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
BDII (site and TOP)&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
- Probleme identifié pour la variable LCG_GFAL_INFOSYS quand c&#039;est une liste (CE lpnce.in2p3.fr):&lt;br /&gt;
LCG_GFAL_INFOSYS=topbdii.grif.fr:2170,cclcgtopbdii01.in2p3.fr:2170,lapp-bdii01.in2p3.fr:2170&lt;br /&gt;
&lt;br /&gt;
-Tout le mecanisme de recuperation des outputs n&#039;est pas compris mais globalement on a les meme resultat que celui du CERN&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CREAMCE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: idem CERN nagiosBOX (mais sonde Brokerinfo toujours en erreur: probleme connu: https://savannah.cern.ch/bugs/?61322)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
FTS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y and NO: For the check_command those options should be added: &lt;br /&gt;
--cert /etc/nagios/globus/hostcert.pem   --key /etc/nagios/globus/hostkey.pem  -x $USER2$ (this should be fixed in the next release)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
gRB/WMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_C&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: mais il faudrait peut etre demander au site de supporter la VO ops pour que leur LFC soit testé (lfc-ls et lfc-ping)?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_L&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: mais il faudrait peut etre demander au site de supporter la VO ops pour que leur LFC soit testé (lfc-ls et lfc-ping)?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MPI&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
em&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MyProxy&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
em&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RB&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nobody&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Service Deprecated. Does NOT apply in Nagios&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RGMA / MON&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y (certificate lifetime only)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
&lt;br /&gt;
SRMv2&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOBOX&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
em&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
= Annexe0 =&lt;br /&gt;
&lt;br /&gt;
Sur le myproxyserver, il faut que le nagios server soit &amp;quot;trusted retriever&amp;quot; et &amp;quot;authorized retrievers&amp;quot;:&lt;br /&gt;
 [cleroy@grid08 ~]$ grep cclcgvmli03 /opt/glite/etc/myproxy-server.conf&lt;br /&gt;
 trusted_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 authorized_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Sur une UI:&lt;br /&gt;
&lt;br /&gt;
 voms-proxy-init -voms ops:/ops/Role=lcgadmin&lt;br /&gt;
 myproxy-init -c 336 -k nagios_roc_fr2-ops -s myproxy.grif.fr -l nagios  -x -Z &amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-IN2P3/CN=ccnagboxli01.in2p3.fr&amp;quot;&lt;br /&gt;
&lt;br /&gt;
= Annexe 1 =&lt;br /&gt;
 rpm -ivh http://www.sysadmin.hep.ac.uk/rpms/egee-SA1/centos5/x86_64/sa1-release-2-1.el5.noarch.rpm&lt;br /&gt;
 rpm -ivh  http://packages.sw.be/rpmforge-release/rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm&lt;br /&gt;
&lt;br /&gt;
 yum install atp&lt;br /&gt;
 yum install bouncycastle&lt;br /&gt;
 yum install broker&lt;br /&gt;
 yum install broker-cache&lt;br /&gt;
 yum install dcache-srmclient&lt;br /&gt;
 yum install dummy-ca-certs&lt;br /&gt;
 yum install egee-NAGIOS&lt;br /&gt;
 yum install egee-NAGIOS egee-NRPE&lt;br /&gt;
 yum install egee-NRPE&lt;br /&gt;
 yum install fetch-crl&lt;br /&gt;
 yum install fipscheck fipscheck-lib&lt;br /&gt;
 yum install glite-UI&lt;br /&gt;
 yum install glite-security-voms-clients&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install glite-yaim-core&lt;br /&gt;
 yum install glite-yaim-nagios&lt;br /&gt;
 yum install httpd&lt;br /&gt;
 yum install jdk&lt;br /&gt;
 yum install lcg-CA&lt;br /&gt;
 yum install lcg-CA egee-NAGIOS&lt;br /&gt;
 yum install lcg_util&lt;br /&gt;
 yum install mddb&lt;br /&gt;
 yum install msg-publish-simple&lt;br /&gt;
 yum install myproxy&lt;br /&gt;
 yum install mysql-client&lt;br /&gt;
 yum install mysql-server&lt;br /&gt;
 yum install nagios-proxy-refresh&lt;br /&gt;
 yum install perl-Config-Tiny&lt;br /&gt;
 yum install perl-DBD-MySQL&lt;br /&gt;
 yum install perl-rrdtool-1.3.8-2.el5.rf.x86_64&lt;br /&gt;
 yum install python-yaml&lt;br /&gt;
 yum install sun-jaf&lt;br /&gt;
 yum install uberftp-client&lt;br /&gt;
 yum install vdt_globus_rm_client&lt;br /&gt;
&lt;br /&gt;
 yum update glite-yaim-clients&lt;br /&gt;
 yum update glite-yaim-core&lt;br /&gt;
 yum update glite-yaim-nagios&lt;br /&gt;
 yum update mysql-server&lt;br /&gt;
 yum update perl-DBI&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe2 =&lt;br /&gt;
a)Mot de passe admin mysql :&lt;br /&gt;
Yum pour recupérer la derniere version de Mysql :&lt;br /&gt;
&#039;&#039;MySQL-server-community&#039;&#039;, ne pas oublier le client (pas de dépendance dessus)&lt;br /&gt;
Demmarrage de mysql avec --skip-grant-tables (pour ne pas avoir de mot de passe a rentrer)&lt;br /&gt;
 mysqld_safe --skip-grant-tables &amp;amp;&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root &lt;br /&gt;
 update user set password=PASSWORD(&amp;quot;NEW-ROOT-PASSWORD&amp;quot;) where User=&#039;root&#039;;&lt;br /&gt;
&lt;br /&gt;
b)creation des users pour le nagios regional:&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root -p&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON nagios.* TO &#039;ndouser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON atp.* TO &#039;atpuser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe 3 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /etc/ncg/ncg.localdb&lt;br /&gt;
 #&lt;br /&gt;
 # Local Rules file to modify NCG configuration&lt;br /&gt;
 #&lt;br /&gt;
 SITE!AUVERGRID&lt;br /&gt;
 SITE!CGG-LCG2&lt;br /&gt;
 SITE!ESRF&lt;br /&gt;
 SITE!GRIF&lt;br /&gt;
 SITE!IBCP-GBIO&lt;br /&gt;
 SITE!IN2P3-CC&lt;br /&gt;
 SITE!IN2P3-CC-PPS&lt;br /&gt;
 SITE!IN2P3-CC-T2&lt;br /&gt;
 SITE!IN2P3-CPPM&lt;br /&gt;
 SITE!IN2P3-IPNL&lt;br /&gt;
 SITE!IN2P3-IRES&lt;br /&gt;
 SITE!IN2P3-LAPP&lt;br /&gt;
 SITE!IN2P3-LPC&lt;br /&gt;
 SITE!IN2P3-LPSC&lt;br /&gt;
 SITE!IN2P3-SUBATECH&lt;br /&gt;
 SITE!IPSL-IPGP-LCG2&lt;br /&gt;
 SITE!M3PEC&lt;br /&gt;
 SITE!MSFG&lt;br /&gt;
 SITE!MSFG-MULTI&lt;br /&gt;
 SITE!MSFG-OPEN&lt;br /&gt;
 SITE!OBSPM&lt;br /&gt;
 SITE!PARIS-UREC-IPV6&lt;br /&gt;
 SITE!SN-UCAD&lt;br /&gt;
 SITE!ROC-FR&lt;br /&gt;
 SITE!SOLEIL&lt;br /&gt;
 SITE!StratusLab&lt;br /&gt;
 [root@cclcgvmli03 ~]#&lt;br /&gt;
 &lt;br /&gt;
= Annexe 4 =&lt;br /&gt;
&lt;br /&gt;
 SITE_EMAIL=c.leroy@cea.fr&lt;br /&gt;
 SITE_NAME=ROC-FR&lt;br /&gt;
 RB_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 WMS_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 PX_HOST=myproxy.grif.fr&lt;br /&gt;
 BDII_HOST=topbdii.grif.fr&lt;br /&gt;
 SITE_BDII_HOST=bdii.grif.fr&lt;br /&gt;
 MON_HOST=node06.datagrid.cea.fr&lt;br /&gt;
 VOS=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 DTEAM_GROUP_ENABLE=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 VO_DTEAM_SW_DIR=$VO_SW_DIR/dteam&lt;br /&gt;
 VO_DTEAM_DEFAULT_SE=$SE_HOST&lt;br /&gt;
 VO_DTEAM_STORAGE_DIR=$CLASSIC_STORAGE_DIR/dteam&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/&#039;&lt;br /&gt;
 VO_DTEAM_VOMSES=&amp;quot;&#039;dteam lcg-voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=lcg-voms.cern.ch dteam 24&#039; &#039;dteam    voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=voms.cern.ch dteam 24&#039;&amp;quot;&lt;br /&gt;
 VO_DTEAM_VOMS_CA_DN=&amp;quot;&#039;/DC=ch/DC=cern/CN=CERN Trusted Certification Authority&#039; &#039;/DC=ch/DC=cern/CN=CERN Trusted   Certification Authority&#039;&amp;quot;&lt;br /&gt;
 NAGIOS_HOST=cclcgvmli03.in2p3.fr&lt;br /&gt;
 NAGIOS_ADMIN_DNS=&amp;quot;/O=GRID-FR/C=FR/O=CEA/OU=IRFU/CN=Christine Leroy&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=Nadia Lajili&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=LPC/CN=Emmanuel Medernach&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CPPM/CN=Juan Carlos Carranza&amp;quot;&lt;br /&gt;
 NAGIOS_NCG_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_NAGIOS_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_GOCDB_ROC_NAME=France&lt;br /&gt;
 ROC_NAME=France&lt;br /&gt;
 NCG_PROBES_TYPE=remote,native,local&lt;br /&gt;
 NCG_VO=dteam&lt;br /&gt;
 NAGIOS_MYPROXY_NAME=nagios_roc_fr2&lt;br /&gt;
 NAGIOS_MYPROXY_USER=nagios&lt;br /&gt;
 MSG_BROKER_CACHE_NETWORK=PROD&lt;br /&gt;
 NAGIOS_ROLE=roc&lt;br /&gt;
 NAGIOS_HTTPD_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_SUDO_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_CGI_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_LDAP_FILTER=GlueSiteOtherInfo=EGEE_ROC=France&lt;br /&gt;
 NAGIOS_DB_PASS=x&lt;br /&gt;
 NAGIOS_NSCA_PASS=x&lt;br /&gt;
 MYSQL_ADMIN=x&lt;br /&gt;
 ATP_DB_PASS=x&lt;br /&gt;
 MDDB_DB_PASS=x&lt;br /&gt;
 MS_DB_PASS=x&lt;br /&gt;
 MYSQL_PASSWORD=x&lt;br /&gt;
 MYEGEE_DB_PASS=x&lt;br /&gt;
&lt;br /&gt;
= Annexe 5 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /opt/glite/yaim/examples/edgusers.conf&lt;br /&gt;
 11151:${DPMMGR_USER}:11151:${DPMMGR_GROUP}:DPM user:&lt;br /&gt;
 11152:${EDG_USER}:11152,11156:${EDG_GROUP},${INFOSYS_GROUP}:EDG user:${EDG_HOME_DIR}&lt;br /&gt;
 11153:${EDGINFO_USER}:11153,1156:${EDGINFO_USER},${INFOSYS_GROUP}:EDG info user:${EDGINFO_HOME_DIR}&lt;br /&gt;
 11154:${RGMA_USER}:11154,1156:${RGMA_GROUP},${INFOSYS_GROUP}:RGMA user:${INSTALL_ROOT}/glite/etc/rgma&lt;br /&gt;
 11155:${GLITE_USER}:11155:${GLITE_GROUP}:gLite user:${GLITE_HOME_DIR}&lt;br /&gt;
 11156:${BDII_USER}:11158:${BDII_GROUP}:BDII user:${BDII_HOME_DIR}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Annexe 6 =&lt;br /&gt;
&lt;br /&gt;
Probleme rencontré sur ccnagboxli01 (arret de ypbind + rpm manquant)&lt;br /&gt;
 chown -R nagios:nagios /var/spool/pnp4nagios&lt;br /&gt;
 chown -R nagios:nagios /var/spool/msg-nagios-bridge&lt;br /&gt;
 chown root:nagios /etc/atp/atp_db.conf&lt;br /&gt;
 chown root:nagios /etc/mddb/databases.yml&lt;br /&gt;
 chown nagios:apache /var/nagios/rw&lt;br /&gt;
 chown -R nagios:apache /var/nagios/rw&lt;br /&gt;
 chown root:nagios /etc/nagios/plugins/send_to_db.ini&lt;br /&gt;
 chown -R nagios:nagios /var/cache/msg/config-cache&lt;br /&gt;
 chown -R nagios:root /var/log/mddb&lt;br /&gt;
 chown -R nagios:root /var/log/pnp4nagios&lt;br /&gt;
 chown -R nagios:root /var/log/nagios&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
  useradd -g 40011 -u 10011 nagios&lt;br /&gt;
  useradd --group mysql -u 2730 mysql&lt;br /&gt;
  useradd -g mysql -u 2730 mysql&lt;br /&gt;
&lt;br /&gt;
   groupadd -g 40010 nagiosmaster&lt;br /&gt;
   groupadd -g 146 leftuser&lt;br /&gt;
&lt;br /&gt;
 yum install glite-security-voms-api-c-1.8.12-2.sl5.x86_64&lt;br /&gt;
 yum update perl-Net-SSLeay&lt;br /&gt;
 yum update perl-IO-Socket-SSL-1.01-1.fc6.noarch&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install lcg_util-1.7.6-1.sl5.x86_64&lt;br /&gt;
 yum install GFAL-client-1.11.8-2.sl5.x86_64 GFAL-client-1.11.8-2.sl5.i386&lt;br /&gt;
 yum install CGSI_gSOAP_2.7-1.3.3-1.sl5.x86_64&lt;br /&gt;
 yum install LFC-interfaces-1.7.3-1sec.sl5.x86_64 LFC-client-1.7.3-1sec.sl5.x86_64 lcg-dm-common-1.7.3-1sec.sl5.x86_64&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5751</id>
		<title>Nagios regional</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5751"/>
		<updated>2010-03-26T15:45:09Z</updated>

		<summary type="html">&lt;p&gt;LEROY: /* validation */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Installation d&#039;une NOGIOS box pour le ROC France&lt;br /&gt;
&lt;br /&gt;
= 1)	Installation de base : =&lt;br /&gt;
a.	Machine installée par les sysadmin du CC : OS + VOBOX + certificat + pas dans les NIS&lt;br /&gt;
&lt;br /&gt;
b.	Accessible via gsissh (port 1975)&lt;br /&gt;
&lt;br /&gt;
= 2)	Action faite au préalable : =&lt;br /&gt;
a.	Faire la demande pour que la machine soit autorisée à récupérer les SAM tests : https://gus.fzk.de/ws/ticket_info.php?ticket=55132&lt;br /&gt;
&lt;br /&gt;
b.	Autoriser la nagios box à récupérer les proxy en mode « retrieval », et stocker un proxy depuis une UI récuperable par la nagiosBOX voir  [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe0 Annexe0]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
c.	Certificat utilisé pour :&lt;br /&gt;
&lt;br /&gt;
i.	                       Access to GOCDB PI for ROCS GOCDB PI level 2 required &lt;br /&gt;
&lt;br /&gt;
ii.	                       Recuperation de proxy pour les sondes locales&lt;br /&gt;
&lt;br /&gt;
d. s&#039;inscrire dans la mailing liste: regional-nagios-admins@cern.ch (très réactive)&lt;br /&gt;
&lt;br /&gt;
= 3)	Installation de Nagios =&lt;br /&gt;
Reference : https://twiki.cern.ch/twiki/bin/view/EGEE/GridMonitoringNcgYaim&lt;br /&gt;
== Installation des packages via yum, Ajout des repos suivant ==&lt;br /&gt;
 a.	mirrors-rpmforge (rpm rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm)&lt;br /&gt;
 b.	rpmforge-testing.repo&lt;br /&gt;
 c.	rpmforge.repo&lt;br /&gt;
 d.	glite-UI.repo&lt;br /&gt;
 e.	sa1-centos5-release.repo (rpm:  sa1-release-2-1.el5.noarch.rpm)&lt;br /&gt;
 f.	glite-BDII.repo&lt;br /&gt;
&lt;br /&gt;
Problèmes de dépendances rencontrées si besoin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe1 Annexe1] (mais j’avais dû oublier de faire un : yum install egee-NAGIOS)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Installation subversion ==&lt;br /&gt;
Certain fichier de config sont a recuperer via svn au CERN:&lt;br /&gt;
&lt;br /&gt;
 yum install subversion&lt;br /&gt;
 svn co http://svnweb.cern.ch/guest/sam/trunk/roc-config&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 cp /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm.orig&lt;br /&gt;
 cp roc-config/Hash.pm_55_ALL_CRIT /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm&lt;br /&gt;
&lt;br /&gt;
== Mysql ==&lt;br /&gt;
&lt;br /&gt;
1.	Installer la dernière version de Mysql (server + client) ; &lt;br /&gt;
&lt;br /&gt;
2.	configurer le mot de passe admin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2a] ;&lt;br /&gt;
&lt;br /&gt;
3.	Configurer les users utiles à la nagios Box se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2b] ;&lt;br /&gt;
&lt;br /&gt;
== Configuration via yaim et NCG (en 2 fois)==&lt;br /&gt;
&lt;br /&gt;
1.	Remplir /etc/ncg/ncg.localdb avec la liste des sites se referer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe3 Annexe3]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
2.	Remplir le /opt/glite/yaim/site-info.def voir [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe4 Annexe4] ;&lt;br /&gt;
&lt;br /&gt;
3.	groupadd nagios&lt;br /&gt;
&lt;br /&gt;
4.	modif des uids/gids : /opt/glite/yaim/examples/edgusers.conf [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe5 Annexe5]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
5.	lancement de la configuration automatique via yaim (All On One Box) :&lt;br /&gt;
 	&lt;br /&gt;
 	/opt/glite/yaim/bin/yaim -s /opt/glite/yaim/site-info.def -c -n glite-UI -n glite-NAGIOS&lt;br /&gt;
&lt;br /&gt;
6.	lancement de la configuration via NCG (All On One Box) :&lt;br /&gt;
&lt;br /&gt;
 /usr/sbin/ncg.pl&lt;br /&gt;
&lt;br /&gt;
.....MODIFICATION importante:: voir: https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
La partie:&lt;br /&gt;
#  Configure manually /etc/ncg/ncg.conf (Template can be found here: ncg.conf.template: )&lt;br /&gt;
- Switch off automatic generation of ncg.conf by YAIM (NAGIOS_NCG_ENABLE_CONFIG&amp;quot;=&amp;quot;false&amp;quot;)&lt;br /&gt;
- Take ncg.conf.template and copy it to /etc/ncg/ncg.conf&lt;br /&gt;
     - Set $ROC_NAME$&lt;br /&gt;
     - Set $YOUR_MYPROXY_SERVER$ (e.g. myproxy-fts.cern.ch)&lt;br /&gt;
     - Set $MYPROXY_NAME$ (e.g.: NagiosRetrieve-sam-ap-roc.cern.ch)&lt;br /&gt;
     - Set $NAGIOS_ROLE$ (e.g.: ngi, roc)&lt;br /&gt;
# Take Hash.pm file that we are currently using at the CERN ROC Nagios boxes. In this file, we have removed the metrics that do not belong to the SAM_Critical profile, so only the metrics defined at ROC_SAM_critical are configured, and not relevant services like SRMv1 are commented out. The file is located under /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm &lt;br /&gt;
&lt;br /&gt;
Pour éviter d&#039;avoir des sondes inappropriés.&lt;br /&gt;
&lt;br /&gt;
== Tuning the configuration ==&lt;br /&gt;
&lt;br /&gt;
1.	Verifier  dans /etc/sysconfig/nagios:&lt;br /&gt;
 LD_LIBRARY_PATH=/opt/classads/lib64:/opt/glite/lib64:/opt/globus/lib:/opt/c-ares/lib:/opt/classads/lib64  &lt;br /&gt;
&lt;br /&gt;
2.	Desactiver les notifications, dans les fichiers de conf: &lt;br /&gt;
 a.      /etc/nagios/nagios.cfg, désactiver les notifications:enable_notifications=0 ;log_notifications=0&lt;br /&gt;
 b.	 /etc/nagios/wlcg.d/host.templates.cfg&lt;br /&gt;
 c.	 /etc/nagios/wlcg.d/service.templates.cfg&lt;br /&gt;
&lt;br /&gt;
4.	N’autoriser que les dteam/France à visualiser notre interface nagios : modifier le fichier : &lt;br /&gt;
 /etc/voms2htpasswd.conf, avec : vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&lt;br /&gt;
Plus utile site le site-info.def est défini correctement:&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&#039;&lt;br /&gt;
&lt;br /&gt;
== ActiveMQ ==&lt;br /&gt;
 /usr/sbin/msg-to-queue --prefix /queue/grid.probe.metricOutput.EGEE.a635834332381123c8b296d02b682f8f --broker-uri stomp://prod-grid-msg.cern.ch:6163&lt;br /&gt;
 &lt;br /&gt;
[root@cclcgvmli03 cron.hourly]# cat check_msg-to-queue.sh&lt;br /&gt;
&lt;br /&gt;
Verifier les messages:&lt;br /&gt;
 /usr/libexec/grid-monitoring/plugins/nagios/recv_from_queue -v &lt;br /&gt;
&lt;br /&gt;
faire une update de perl-GridMon &lt;br /&gt;
 The problem here is in the message handler &lt;br /&gt;
 (/usr/lib/perl5/vendor_perl/5.8.8/GridMon/MsgHandler/MetricOutput.pm). &lt;br /&gt;
 Probe on WN reports hostname localhost.localdomain and serviceURI CE &lt;br /&gt;
 hostname. In the previous version message handler first checked hostname &lt;br /&gt;
 value and then serviceURI. That is the reason why Christine is seeing &lt;br /&gt;
 results for localhost.localdomain. However, we fixed this and the latest &lt;br /&gt;
 version (1.0.34) parses messages correctly.&lt;br /&gt;
&lt;br /&gt;
 yum update perl-GridMon&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== Systeme d&#039;information ==&lt;br /&gt;
La nagios Box doit etre enregistré dans la GOCDB &lt;br /&gt;
et publié dans le site-BDII:&lt;br /&gt;
 ldapsearch -x -H ldap://ccnagboxli01.in2p3.fr:2170 -b &#039;Mds-vo-name=resource,o=Grid&#039;&lt;br /&gt;
&lt;br /&gt;
= validation =&lt;br /&gt;
&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
&lt;br /&gt;
now you should publish your Nagios in your Site BDII&lt;br /&gt;
And we should declare the node in the GOCDB: Regional-NAGIOS ou National-Nagios, a determiner&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
liste des sondes a valider: d&#039;après: https://twiki.cern.ch/twiki/bin/view/LCG/SAMCriticalTestsForCODs&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Type de Noeuds&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Valid (Y or N)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
APEL&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Pas de métric ?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
BDII (site and TOP)&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
- Probleme identifié pour la variable LCG_GFAL_INFOSYS quand c&#039;est une liste (CE lpnce.in2p3.fr):&lt;br /&gt;
LCG_GFAL_INFOSYS=topbdii.grif.fr:2170,cclcgtopbdii01.in2p3.fr:2170,lapp-bdii01.in2p3.fr:2170&lt;br /&gt;
&lt;br /&gt;
-Tout le mecanisme de recuperation des outputs n&#039;est pas compris mais globalement on a les meme resultat que celui du CERN&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CREAMCE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: idem CERN nagiosBOX (mais sonde Brokerinfo toujours en erreur: probleme connu: https://savannah.cern.ch/bugs/?61322)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
FTS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y and NO: For the check_command those options should be added: &lt;br /&gt;
--cert /etc/nagios/globus/hostcert.pem   --key /etc/nagios/globus/hostkey.pem  -x $USER2$ (this should be fixed in the next release)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
gRB/WMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_C&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: mais il faudrait peut etre demander au site de supporter la VO ops pour que leur LFC soit testé (lfc-ls et lfc-ping)?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_L&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: mais il faudrait peut etre demander au site de supporter la VO ops pour que leur LFC soit testé (lfc-ls et lfc-ping)?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MPI&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MyProxy&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RB&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nobody&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Service Deprecated. Does NOT apply in Nagios&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RGMA / MON&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y (certificate lifetime only)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
&lt;br /&gt;
SRMv2&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOBOX&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
= Annexe0 =&lt;br /&gt;
&lt;br /&gt;
Sur le myproxyserver, il faut que le nagios server soit &amp;quot;trusted retriever&amp;quot; et &amp;quot;authorized retrievers&amp;quot;:&lt;br /&gt;
 [cleroy@grid08 ~]$ grep cclcgvmli03 /opt/glite/etc/myproxy-server.conf&lt;br /&gt;
 trusted_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 authorized_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Sur une UI:&lt;br /&gt;
&lt;br /&gt;
 voms-proxy-init -voms ops:/ops/Role=lcgadmin&lt;br /&gt;
 myproxy-init -c 336 -k nagios_roc_fr2-ops -s myproxy.grif.fr -l nagios  -x -Z &amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-IN2P3/CN=ccnagboxli01.in2p3.fr&amp;quot;&lt;br /&gt;
&lt;br /&gt;
= Annexe 1 =&lt;br /&gt;
 rpm -ivh http://www.sysadmin.hep.ac.uk/rpms/egee-SA1/centos5/x86_64/sa1-release-2-1.el5.noarch.rpm&lt;br /&gt;
 rpm -ivh  http://packages.sw.be/rpmforge-release/rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm&lt;br /&gt;
&lt;br /&gt;
 yum install atp&lt;br /&gt;
 yum install bouncycastle&lt;br /&gt;
 yum install broker&lt;br /&gt;
 yum install broker-cache&lt;br /&gt;
 yum install dcache-srmclient&lt;br /&gt;
 yum install dummy-ca-certs&lt;br /&gt;
 yum install egee-NAGIOS&lt;br /&gt;
 yum install egee-NAGIOS egee-NRPE&lt;br /&gt;
 yum install egee-NRPE&lt;br /&gt;
 yum install fetch-crl&lt;br /&gt;
 yum install fipscheck fipscheck-lib&lt;br /&gt;
 yum install glite-UI&lt;br /&gt;
 yum install glite-security-voms-clients&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install glite-yaim-core&lt;br /&gt;
 yum install glite-yaim-nagios&lt;br /&gt;
 yum install httpd&lt;br /&gt;
 yum install jdk&lt;br /&gt;
 yum install lcg-CA&lt;br /&gt;
 yum install lcg-CA egee-NAGIOS&lt;br /&gt;
 yum install lcg_util&lt;br /&gt;
 yum install mddb&lt;br /&gt;
 yum install msg-publish-simple&lt;br /&gt;
 yum install myproxy&lt;br /&gt;
 yum install mysql-client&lt;br /&gt;
 yum install mysql-server&lt;br /&gt;
 yum install nagios-proxy-refresh&lt;br /&gt;
 yum install perl-Config-Tiny&lt;br /&gt;
 yum install perl-DBD-MySQL&lt;br /&gt;
 yum install perl-rrdtool-1.3.8-2.el5.rf.x86_64&lt;br /&gt;
 yum install python-yaml&lt;br /&gt;
 yum install sun-jaf&lt;br /&gt;
 yum install uberftp-client&lt;br /&gt;
 yum install vdt_globus_rm_client&lt;br /&gt;
&lt;br /&gt;
 yum update glite-yaim-clients&lt;br /&gt;
 yum update glite-yaim-core&lt;br /&gt;
 yum update glite-yaim-nagios&lt;br /&gt;
 yum update mysql-server&lt;br /&gt;
 yum update perl-DBI&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe2 =&lt;br /&gt;
a)Mot de passe admin mysql :&lt;br /&gt;
Yum pour recupérer la derniere version de Mysql :&lt;br /&gt;
&#039;&#039;MySQL-server-community&#039;&#039;, ne pas oublier le client (pas de dépendance dessus)&lt;br /&gt;
Demmarrage de mysql avec --skip-grant-tables (pour ne pas avoir de mot de passe a rentrer)&lt;br /&gt;
 mysqld_safe --skip-grant-tables &amp;amp;&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root &lt;br /&gt;
 update user set password=PASSWORD(&amp;quot;NEW-ROOT-PASSWORD&amp;quot;) where User=&#039;root&#039;;&lt;br /&gt;
&lt;br /&gt;
b)creation des users pour le nagios regional:&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root -p&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON nagios.* TO &#039;ndouser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON atp.* TO &#039;atpuser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe 3 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /etc/ncg/ncg.localdb&lt;br /&gt;
 #&lt;br /&gt;
 # Local Rules file to modify NCG configuration&lt;br /&gt;
 #&lt;br /&gt;
 SITE!AUVERGRID&lt;br /&gt;
 SITE!CGG-LCG2&lt;br /&gt;
 SITE!ESRF&lt;br /&gt;
 SITE!GRIF&lt;br /&gt;
 SITE!IBCP-GBIO&lt;br /&gt;
 SITE!IN2P3-CC&lt;br /&gt;
 SITE!IN2P3-CC-PPS&lt;br /&gt;
 SITE!IN2P3-CC-T2&lt;br /&gt;
 SITE!IN2P3-CPPM&lt;br /&gt;
 SITE!IN2P3-IPNL&lt;br /&gt;
 SITE!IN2P3-IRES&lt;br /&gt;
 SITE!IN2P3-LAPP&lt;br /&gt;
 SITE!IN2P3-LPC&lt;br /&gt;
 SITE!IN2P3-LPSC&lt;br /&gt;
 SITE!IN2P3-SUBATECH&lt;br /&gt;
 SITE!IPSL-IPGP-LCG2&lt;br /&gt;
 SITE!M3PEC&lt;br /&gt;
 SITE!MSFG&lt;br /&gt;
 SITE!MSFG-MULTI&lt;br /&gt;
 SITE!MSFG-OPEN&lt;br /&gt;
 SITE!OBSPM&lt;br /&gt;
 SITE!PARIS-UREC-IPV6&lt;br /&gt;
 SITE!SN-UCAD&lt;br /&gt;
 SITE!ROC-FR&lt;br /&gt;
 SITE!SOLEIL&lt;br /&gt;
 SITE!StratusLab&lt;br /&gt;
 [root@cclcgvmli03 ~]#&lt;br /&gt;
 &lt;br /&gt;
= Annexe 4 =&lt;br /&gt;
&lt;br /&gt;
 SITE_EMAIL=c.leroy@cea.fr&lt;br /&gt;
 SITE_NAME=ROC-FR&lt;br /&gt;
 RB_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 WMS_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 PX_HOST=myproxy.grif.fr&lt;br /&gt;
 BDII_HOST=topbdii.grif.fr&lt;br /&gt;
 SITE_BDII_HOST=bdii.grif.fr&lt;br /&gt;
 MON_HOST=node06.datagrid.cea.fr&lt;br /&gt;
 VOS=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 DTEAM_GROUP_ENABLE=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 VO_DTEAM_SW_DIR=$VO_SW_DIR/dteam&lt;br /&gt;
 VO_DTEAM_DEFAULT_SE=$SE_HOST&lt;br /&gt;
 VO_DTEAM_STORAGE_DIR=$CLASSIC_STORAGE_DIR/dteam&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/&#039;&lt;br /&gt;
 VO_DTEAM_VOMSES=&amp;quot;&#039;dteam lcg-voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=lcg-voms.cern.ch dteam 24&#039; &#039;dteam    voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=voms.cern.ch dteam 24&#039;&amp;quot;&lt;br /&gt;
 VO_DTEAM_VOMS_CA_DN=&amp;quot;&#039;/DC=ch/DC=cern/CN=CERN Trusted Certification Authority&#039; &#039;/DC=ch/DC=cern/CN=CERN Trusted   Certification Authority&#039;&amp;quot;&lt;br /&gt;
 NAGIOS_HOST=cclcgvmli03.in2p3.fr&lt;br /&gt;
 NAGIOS_ADMIN_DNS=&amp;quot;/O=GRID-FR/C=FR/O=CEA/OU=IRFU/CN=Christine Leroy&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=Nadia Lajili&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=LPC/CN=Emmanuel Medernach&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CPPM/CN=Juan Carlos Carranza&amp;quot;&lt;br /&gt;
 NAGIOS_NCG_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_NAGIOS_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_GOCDB_ROC_NAME=France&lt;br /&gt;
 ROC_NAME=France&lt;br /&gt;
 NCG_PROBES_TYPE=remote,native,local&lt;br /&gt;
 NCG_VO=dteam&lt;br /&gt;
 NAGIOS_MYPROXY_NAME=nagios_roc_fr2&lt;br /&gt;
 NAGIOS_MYPROXY_USER=nagios&lt;br /&gt;
 MSG_BROKER_CACHE_NETWORK=PROD&lt;br /&gt;
 NAGIOS_ROLE=roc&lt;br /&gt;
 NAGIOS_HTTPD_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_SUDO_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_CGI_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_LDAP_FILTER=GlueSiteOtherInfo=EGEE_ROC=France&lt;br /&gt;
 NAGIOS_DB_PASS=x&lt;br /&gt;
 NAGIOS_NSCA_PASS=x&lt;br /&gt;
 MYSQL_ADMIN=x&lt;br /&gt;
 ATP_DB_PASS=x&lt;br /&gt;
 MDDB_DB_PASS=x&lt;br /&gt;
 MS_DB_PASS=x&lt;br /&gt;
 MYSQL_PASSWORD=x&lt;br /&gt;
 MYEGEE_DB_PASS=x&lt;br /&gt;
&lt;br /&gt;
= Annexe 5 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /opt/glite/yaim/examples/edgusers.conf&lt;br /&gt;
 11151:${DPMMGR_USER}:11151:${DPMMGR_GROUP}:DPM user:&lt;br /&gt;
 11152:${EDG_USER}:11152,11156:${EDG_GROUP},${INFOSYS_GROUP}:EDG user:${EDG_HOME_DIR}&lt;br /&gt;
 11153:${EDGINFO_USER}:11153,1156:${EDGINFO_USER},${INFOSYS_GROUP}:EDG info user:${EDGINFO_HOME_DIR}&lt;br /&gt;
 11154:${RGMA_USER}:11154,1156:${RGMA_GROUP},${INFOSYS_GROUP}:RGMA user:${INSTALL_ROOT}/glite/etc/rgma&lt;br /&gt;
 11155:${GLITE_USER}:11155:${GLITE_GROUP}:gLite user:${GLITE_HOME_DIR}&lt;br /&gt;
 11156:${BDII_USER}:11158:${BDII_GROUP}:BDII user:${BDII_HOME_DIR}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Annexe 6 =&lt;br /&gt;
&lt;br /&gt;
Probleme rencontré sur ccnagboxli01 (arret de ypbind + rpm manquant)&lt;br /&gt;
 chown -R nagios:nagios /var/spool/pnp4nagios&lt;br /&gt;
 chown -R nagios:nagios /var/spool/msg-nagios-bridge&lt;br /&gt;
 chown root:nagios /etc/atp/atp_db.conf&lt;br /&gt;
 chown root:nagios /etc/mddb/databases.yml&lt;br /&gt;
 chown nagios:apache /var/nagios/rw&lt;br /&gt;
 chown -R nagios:apache /var/nagios/rw&lt;br /&gt;
 chown root:nagios /etc/nagios/plugins/send_to_db.ini&lt;br /&gt;
 chown -R nagios:nagios /var/cache/msg/config-cache&lt;br /&gt;
 chown -R nagios:root /var/log/mddb&lt;br /&gt;
 chown -R nagios:root /var/log/pnp4nagios&lt;br /&gt;
 chown -R nagios:root /var/log/nagios&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
  useradd -g 40011 -u 10011 nagios&lt;br /&gt;
  useradd --group mysql -u 2730 mysql&lt;br /&gt;
  useradd -g mysql -u 2730 mysql&lt;br /&gt;
&lt;br /&gt;
   groupadd -g 40010 nagiosmaster&lt;br /&gt;
   groupadd -g 146 leftuser&lt;br /&gt;
&lt;br /&gt;
 yum install glite-security-voms-api-c-1.8.12-2.sl5.x86_64&lt;br /&gt;
 yum update perl-Net-SSLeay&lt;br /&gt;
 yum update perl-IO-Socket-SSL-1.01-1.fc6.noarch&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install lcg_util-1.7.6-1.sl5.x86_64&lt;br /&gt;
 yum install GFAL-client-1.11.8-2.sl5.x86_64 GFAL-client-1.11.8-2.sl5.i386&lt;br /&gt;
 yum install CGSI_gSOAP_2.7-1.3.3-1.sl5.x86_64&lt;br /&gt;
 yum install LFC-interfaces-1.7.3-1sec.sl5.x86_64 LFC-client-1.7.3-1sec.sl5.x86_64 lcg-dm-common-1.7.3-1sec.sl5.x86_64&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5750</id>
		<title>Nagios regional</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5750"/>
		<updated>2010-03-26T15:33:07Z</updated>

		<summary type="html">&lt;p&gt;LEROY: /* validation */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Installation d&#039;une NOGIOS box pour le ROC France&lt;br /&gt;
&lt;br /&gt;
= 1)	Installation de base : =&lt;br /&gt;
a.	Machine installée par les sysadmin du CC : OS + VOBOX + certificat + pas dans les NIS&lt;br /&gt;
&lt;br /&gt;
b.	Accessible via gsissh (port 1975)&lt;br /&gt;
&lt;br /&gt;
= 2)	Action faite au préalable : =&lt;br /&gt;
a.	Faire la demande pour que la machine soit autorisée à récupérer les SAM tests : https://gus.fzk.de/ws/ticket_info.php?ticket=55132&lt;br /&gt;
&lt;br /&gt;
b.	Autoriser la nagios box à récupérer les proxy en mode « retrieval », et stocker un proxy depuis une UI récuperable par la nagiosBOX voir  [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe0 Annexe0]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
c.	Certificat utilisé pour :&lt;br /&gt;
&lt;br /&gt;
i.	                       Access to GOCDB PI for ROCS GOCDB PI level 2 required &lt;br /&gt;
&lt;br /&gt;
ii.	                       Recuperation de proxy pour les sondes locales&lt;br /&gt;
&lt;br /&gt;
d. s&#039;inscrire dans la mailing liste: regional-nagios-admins@cern.ch (très réactive)&lt;br /&gt;
&lt;br /&gt;
= 3)	Installation de Nagios =&lt;br /&gt;
Reference : https://twiki.cern.ch/twiki/bin/view/EGEE/GridMonitoringNcgYaim&lt;br /&gt;
== Installation des packages via yum, Ajout des repos suivant ==&lt;br /&gt;
 a.	mirrors-rpmforge (rpm rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm)&lt;br /&gt;
 b.	rpmforge-testing.repo&lt;br /&gt;
 c.	rpmforge.repo&lt;br /&gt;
 d.	glite-UI.repo&lt;br /&gt;
 e.	sa1-centos5-release.repo (rpm:  sa1-release-2-1.el5.noarch.rpm)&lt;br /&gt;
 f.	glite-BDII.repo&lt;br /&gt;
&lt;br /&gt;
Problèmes de dépendances rencontrées si besoin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe1 Annexe1] (mais j’avais dû oublier de faire un : yum install egee-NAGIOS)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Installation subversion ==&lt;br /&gt;
Certain fichier de config sont a recuperer via svn au CERN:&lt;br /&gt;
&lt;br /&gt;
 yum install subversion&lt;br /&gt;
 svn co http://svnweb.cern.ch/guest/sam/trunk/roc-config&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 cp /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm.orig&lt;br /&gt;
 cp roc-config/Hash.pm_55_ALL_CRIT /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm&lt;br /&gt;
&lt;br /&gt;
== Mysql ==&lt;br /&gt;
&lt;br /&gt;
1.	Installer la dernière version de Mysql (server + client) ; &lt;br /&gt;
&lt;br /&gt;
2.	configurer le mot de passe admin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2a] ;&lt;br /&gt;
&lt;br /&gt;
3.	Configurer les users utiles à la nagios Box se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2b] ;&lt;br /&gt;
&lt;br /&gt;
== Configuration via yaim et NCG (en 2 fois)==&lt;br /&gt;
&lt;br /&gt;
1.	Remplir /etc/ncg/ncg.localdb avec la liste des sites se referer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe3 Annexe3]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
2.	Remplir le /opt/glite/yaim/site-info.def voir [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe4 Annexe4] ;&lt;br /&gt;
&lt;br /&gt;
3.	groupadd nagios&lt;br /&gt;
&lt;br /&gt;
4.	modif des uids/gids : /opt/glite/yaim/examples/edgusers.conf [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe5 Annexe5]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
5.	lancement de la configuration automatique via yaim (All On One Box) :&lt;br /&gt;
 	&lt;br /&gt;
 	/opt/glite/yaim/bin/yaim -s /opt/glite/yaim/site-info.def -c -n glite-UI -n glite-NAGIOS&lt;br /&gt;
&lt;br /&gt;
6.	lancement de la configuration via NCG (All On One Box) :&lt;br /&gt;
&lt;br /&gt;
 /usr/sbin/ncg.pl&lt;br /&gt;
&lt;br /&gt;
.....MODIFICATION importante:: voir: https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
La partie:&lt;br /&gt;
#  Configure manually /etc/ncg/ncg.conf (Template can be found here: ncg.conf.template: )&lt;br /&gt;
- Switch off automatic generation of ncg.conf by YAIM (NAGIOS_NCG_ENABLE_CONFIG&amp;quot;=&amp;quot;false&amp;quot;)&lt;br /&gt;
- Take ncg.conf.template and copy it to /etc/ncg/ncg.conf&lt;br /&gt;
     - Set $ROC_NAME$&lt;br /&gt;
     - Set $YOUR_MYPROXY_SERVER$ (e.g. myproxy-fts.cern.ch)&lt;br /&gt;
     - Set $MYPROXY_NAME$ (e.g.: NagiosRetrieve-sam-ap-roc.cern.ch)&lt;br /&gt;
     - Set $NAGIOS_ROLE$ (e.g.: ngi, roc)&lt;br /&gt;
# Take Hash.pm file that we are currently using at the CERN ROC Nagios boxes. In this file, we have removed the metrics that do not belong to the SAM_Critical profile, so only the metrics defined at ROC_SAM_critical are configured, and not relevant services like SRMv1 are commented out. The file is located under /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm &lt;br /&gt;
&lt;br /&gt;
Pour éviter d&#039;avoir des sondes inappropriés.&lt;br /&gt;
&lt;br /&gt;
== Tuning the configuration ==&lt;br /&gt;
&lt;br /&gt;
1.	Verifier  dans /etc/sysconfig/nagios:&lt;br /&gt;
 LD_LIBRARY_PATH=/opt/classads/lib64:/opt/glite/lib64:/opt/globus/lib:/opt/c-ares/lib:/opt/classads/lib64  &lt;br /&gt;
&lt;br /&gt;
2.	Desactiver les notifications, dans les fichiers de conf: &lt;br /&gt;
 a.      /etc/nagios/nagios.cfg, désactiver les notifications:enable_notifications=0 ;log_notifications=0&lt;br /&gt;
 b.	 /etc/nagios/wlcg.d/host.templates.cfg&lt;br /&gt;
 c.	 /etc/nagios/wlcg.d/service.templates.cfg&lt;br /&gt;
&lt;br /&gt;
4.	N’autoriser que les dteam/France à visualiser notre interface nagios : modifier le fichier : &lt;br /&gt;
 /etc/voms2htpasswd.conf, avec : vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&lt;br /&gt;
Plus utile site le site-info.def est défini correctement:&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&#039;&lt;br /&gt;
&lt;br /&gt;
== ActiveMQ ==&lt;br /&gt;
 /usr/sbin/msg-to-queue --prefix /queue/grid.probe.metricOutput.EGEE.a635834332381123c8b296d02b682f8f --broker-uri stomp://prod-grid-msg.cern.ch:6163&lt;br /&gt;
 &lt;br /&gt;
[root@cclcgvmli03 cron.hourly]# cat check_msg-to-queue.sh&lt;br /&gt;
&lt;br /&gt;
Verifier les messages:&lt;br /&gt;
 /usr/libexec/grid-monitoring/plugins/nagios/recv_from_queue -v &lt;br /&gt;
&lt;br /&gt;
faire une update de perl-GridMon &lt;br /&gt;
 The problem here is in the message handler &lt;br /&gt;
 (/usr/lib/perl5/vendor_perl/5.8.8/GridMon/MsgHandler/MetricOutput.pm). &lt;br /&gt;
 Probe on WN reports hostname localhost.localdomain and serviceURI CE &lt;br /&gt;
 hostname. In the previous version message handler first checked hostname &lt;br /&gt;
 value and then serviceURI. That is the reason why Christine is seeing &lt;br /&gt;
 results for localhost.localdomain. However, we fixed this and the latest &lt;br /&gt;
 version (1.0.34) parses messages correctly.&lt;br /&gt;
&lt;br /&gt;
 yum update perl-GridMon&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== Systeme d&#039;information ==&lt;br /&gt;
La nagios Box doit etre enregistré dans la GOCDB &lt;br /&gt;
et publié dans le site-BDII:&lt;br /&gt;
 ldapsearch -x -H ldap://ccnagboxli01.in2p3.fr:2170 -b &#039;Mds-vo-name=resource,o=Grid&#039;&lt;br /&gt;
&lt;br /&gt;
= validation =&lt;br /&gt;
&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
&lt;br /&gt;
now you should publish your Nagios in your Site BDII&lt;br /&gt;
And we should declare the node in the GOCDB: Regional-NAGIOS ou National-Nagios, a determiner&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
liste des sondes a valider: d&#039;après: https://twiki.cern.ch/twiki/bin/view/LCG/SAMCriticalTestsForCODs&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Type de Noeuds&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Valid (Y or N)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
APEL&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Pas de métric ?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
BDII (site and TOP)&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
- Probleme identifié pour la variable LCG_GFAL_INFOSYS quand c&#039;est une liste (CE lpnce.in2p3.fr):&lt;br /&gt;
LCG_GFAL_INFOSYS=topbdii.grif.fr:2170,cclcgtopbdii01.in2p3.fr:2170,lapp-bdii01.in2p3.fr:2170&lt;br /&gt;
&lt;br /&gt;
-Tout le mecanisme de recuperation des outputs n&#039;est pas compris mais globalement on a les meme resultat que celui du CERN&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CREAMCE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: idem CERN nagiosBOX (mais sonde Brokerinfo toujours en erreur: besoin d&#039;investiguer)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
FTS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y and NO: For the check_command those options should be added: &lt;br /&gt;
--cert /etc/nagios/globus/hostcert.pem   --key /etc/nagios/globus/hostkey.pem  -x $USER2$ (this should be fixed in the next release)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
gRB/WMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_C&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: mais il faudrait peut etre demander au site de supporter la VO ops pour que leur LFC soit testé (lfc-ls et lfc-ping)?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_L&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: mais il faudrait peut etre demander au site de supporter la VO ops pour que leur LFC soit testé (lfc-ls et lfc-ping)?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MPI&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MyProxy&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RB&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nobody&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Service Deprecated. Does NOT apply in Nagios&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RGMA / MON&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y (certificate lifetime only)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
&lt;br /&gt;
SRMv2&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOBOX&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
= Annexe0 =&lt;br /&gt;
&lt;br /&gt;
Sur le myproxyserver, il faut que le nagios server soit &amp;quot;trusted retriever&amp;quot; et &amp;quot;authorized retrievers&amp;quot;:&lt;br /&gt;
 [cleroy@grid08 ~]$ grep cclcgvmli03 /opt/glite/etc/myproxy-server.conf&lt;br /&gt;
 trusted_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 authorized_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Sur une UI:&lt;br /&gt;
&lt;br /&gt;
 voms-proxy-init -voms ops:/ops/Role=lcgadmin&lt;br /&gt;
 myproxy-init -c 336 -k nagios_roc_fr2-ops -s myproxy.grif.fr -l nagios  -x -Z &amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-IN2P3/CN=ccnagboxli01.in2p3.fr&amp;quot;&lt;br /&gt;
&lt;br /&gt;
= Annexe 1 =&lt;br /&gt;
 rpm -ivh http://www.sysadmin.hep.ac.uk/rpms/egee-SA1/centos5/x86_64/sa1-release-2-1.el5.noarch.rpm&lt;br /&gt;
 rpm -ivh  http://packages.sw.be/rpmforge-release/rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm&lt;br /&gt;
&lt;br /&gt;
 yum install atp&lt;br /&gt;
 yum install bouncycastle&lt;br /&gt;
 yum install broker&lt;br /&gt;
 yum install broker-cache&lt;br /&gt;
 yum install dcache-srmclient&lt;br /&gt;
 yum install dummy-ca-certs&lt;br /&gt;
 yum install egee-NAGIOS&lt;br /&gt;
 yum install egee-NAGIOS egee-NRPE&lt;br /&gt;
 yum install egee-NRPE&lt;br /&gt;
 yum install fetch-crl&lt;br /&gt;
 yum install fipscheck fipscheck-lib&lt;br /&gt;
 yum install glite-UI&lt;br /&gt;
 yum install glite-security-voms-clients&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install glite-yaim-core&lt;br /&gt;
 yum install glite-yaim-nagios&lt;br /&gt;
 yum install httpd&lt;br /&gt;
 yum install jdk&lt;br /&gt;
 yum install lcg-CA&lt;br /&gt;
 yum install lcg-CA egee-NAGIOS&lt;br /&gt;
 yum install lcg_util&lt;br /&gt;
 yum install mddb&lt;br /&gt;
 yum install msg-publish-simple&lt;br /&gt;
 yum install myproxy&lt;br /&gt;
 yum install mysql-client&lt;br /&gt;
 yum install mysql-server&lt;br /&gt;
 yum install nagios-proxy-refresh&lt;br /&gt;
 yum install perl-Config-Tiny&lt;br /&gt;
 yum install perl-DBD-MySQL&lt;br /&gt;
 yum install perl-rrdtool-1.3.8-2.el5.rf.x86_64&lt;br /&gt;
 yum install python-yaml&lt;br /&gt;
 yum install sun-jaf&lt;br /&gt;
 yum install uberftp-client&lt;br /&gt;
 yum install vdt_globus_rm_client&lt;br /&gt;
&lt;br /&gt;
 yum update glite-yaim-clients&lt;br /&gt;
 yum update glite-yaim-core&lt;br /&gt;
 yum update glite-yaim-nagios&lt;br /&gt;
 yum update mysql-server&lt;br /&gt;
 yum update perl-DBI&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe2 =&lt;br /&gt;
a)Mot de passe admin mysql :&lt;br /&gt;
Yum pour recupérer la derniere version de Mysql :&lt;br /&gt;
&#039;&#039;MySQL-server-community&#039;&#039;, ne pas oublier le client (pas de dépendance dessus)&lt;br /&gt;
Demmarrage de mysql avec --skip-grant-tables (pour ne pas avoir de mot de passe a rentrer)&lt;br /&gt;
 mysqld_safe --skip-grant-tables &amp;amp;&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root &lt;br /&gt;
 update user set password=PASSWORD(&amp;quot;NEW-ROOT-PASSWORD&amp;quot;) where User=&#039;root&#039;;&lt;br /&gt;
&lt;br /&gt;
b)creation des users pour le nagios regional:&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root -p&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON nagios.* TO &#039;ndouser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON atp.* TO &#039;atpuser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe 3 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /etc/ncg/ncg.localdb&lt;br /&gt;
 #&lt;br /&gt;
 # Local Rules file to modify NCG configuration&lt;br /&gt;
 #&lt;br /&gt;
 SITE!AUVERGRID&lt;br /&gt;
 SITE!CGG-LCG2&lt;br /&gt;
 SITE!ESRF&lt;br /&gt;
 SITE!GRIF&lt;br /&gt;
 SITE!IBCP-GBIO&lt;br /&gt;
 SITE!IN2P3-CC&lt;br /&gt;
 SITE!IN2P3-CC-PPS&lt;br /&gt;
 SITE!IN2P3-CC-T2&lt;br /&gt;
 SITE!IN2P3-CPPM&lt;br /&gt;
 SITE!IN2P3-IPNL&lt;br /&gt;
 SITE!IN2P3-IRES&lt;br /&gt;
 SITE!IN2P3-LAPP&lt;br /&gt;
 SITE!IN2P3-LPC&lt;br /&gt;
 SITE!IN2P3-LPSC&lt;br /&gt;
 SITE!IN2P3-SUBATECH&lt;br /&gt;
 SITE!IPSL-IPGP-LCG2&lt;br /&gt;
 SITE!M3PEC&lt;br /&gt;
 SITE!MSFG&lt;br /&gt;
 SITE!MSFG-MULTI&lt;br /&gt;
 SITE!MSFG-OPEN&lt;br /&gt;
 SITE!OBSPM&lt;br /&gt;
 SITE!PARIS-UREC-IPV6&lt;br /&gt;
 SITE!SN-UCAD&lt;br /&gt;
 SITE!ROC-FR&lt;br /&gt;
 SITE!SOLEIL&lt;br /&gt;
 SITE!StratusLab&lt;br /&gt;
 [root@cclcgvmli03 ~]#&lt;br /&gt;
 &lt;br /&gt;
= Annexe 4 =&lt;br /&gt;
&lt;br /&gt;
 SITE_EMAIL=c.leroy@cea.fr&lt;br /&gt;
 SITE_NAME=ROC-FR&lt;br /&gt;
 RB_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 WMS_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 PX_HOST=myproxy.grif.fr&lt;br /&gt;
 BDII_HOST=topbdii.grif.fr&lt;br /&gt;
 SITE_BDII_HOST=bdii.grif.fr&lt;br /&gt;
 MON_HOST=node06.datagrid.cea.fr&lt;br /&gt;
 VOS=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 DTEAM_GROUP_ENABLE=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 VO_DTEAM_SW_DIR=$VO_SW_DIR/dteam&lt;br /&gt;
 VO_DTEAM_DEFAULT_SE=$SE_HOST&lt;br /&gt;
 VO_DTEAM_STORAGE_DIR=$CLASSIC_STORAGE_DIR/dteam&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/&#039;&lt;br /&gt;
 VO_DTEAM_VOMSES=&amp;quot;&#039;dteam lcg-voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=lcg-voms.cern.ch dteam 24&#039; &#039;dteam    voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=voms.cern.ch dteam 24&#039;&amp;quot;&lt;br /&gt;
 VO_DTEAM_VOMS_CA_DN=&amp;quot;&#039;/DC=ch/DC=cern/CN=CERN Trusted Certification Authority&#039; &#039;/DC=ch/DC=cern/CN=CERN Trusted   Certification Authority&#039;&amp;quot;&lt;br /&gt;
 NAGIOS_HOST=cclcgvmli03.in2p3.fr&lt;br /&gt;
 NAGIOS_ADMIN_DNS=&amp;quot;/O=GRID-FR/C=FR/O=CEA/OU=IRFU/CN=Christine Leroy&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=Nadia Lajili&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=LPC/CN=Emmanuel Medernach&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CPPM/CN=Juan Carlos Carranza&amp;quot;&lt;br /&gt;
 NAGIOS_NCG_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_NAGIOS_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_GOCDB_ROC_NAME=France&lt;br /&gt;
 ROC_NAME=France&lt;br /&gt;
 NCG_PROBES_TYPE=remote,native,local&lt;br /&gt;
 NCG_VO=dteam&lt;br /&gt;
 NAGIOS_MYPROXY_NAME=nagios_roc_fr2&lt;br /&gt;
 NAGIOS_MYPROXY_USER=nagios&lt;br /&gt;
 MSG_BROKER_CACHE_NETWORK=PROD&lt;br /&gt;
 NAGIOS_ROLE=roc&lt;br /&gt;
 NAGIOS_HTTPD_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_SUDO_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_CGI_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_LDAP_FILTER=GlueSiteOtherInfo=EGEE_ROC=France&lt;br /&gt;
 NAGIOS_DB_PASS=x&lt;br /&gt;
 NAGIOS_NSCA_PASS=x&lt;br /&gt;
 MYSQL_ADMIN=x&lt;br /&gt;
 ATP_DB_PASS=x&lt;br /&gt;
 MDDB_DB_PASS=x&lt;br /&gt;
 MS_DB_PASS=x&lt;br /&gt;
 MYSQL_PASSWORD=x&lt;br /&gt;
 MYEGEE_DB_PASS=x&lt;br /&gt;
&lt;br /&gt;
= Annexe 5 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /opt/glite/yaim/examples/edgusers.conf&lt;br /&gt;
 11151:${DPMMGR_USER}:11151:${DPMMGR_GROUP}:DPM user:&lt;br /&gt;
 11152:${EDG_USER}:11152,11156:${EDG_GROUP},${INFOSYS_GROUP}:EDG user:${EDG_HOME_DIR}&lt;br /&gt;
 11153:${EDGINFO_USER}:11153,1156:${EDGINFO_USER},${INFOSYS_GROUP}:EDG info user:${EDGINFO_HOME_DIR}&lt;br /&gt;
 11154:${RGMA_USER}:11154,1156:${RGMA_GROUP},${INFOSYS_GROUP}:RGMA user:${INSTALL_ROOT}/glite/etc/rgma&lt;br /&gt;
 11155:${GLITE_USER}:11155:${GLITE_GROUP}:gLite user:${GLITE_HOME_DIR}&lt;br /&gt;
 11156:${BDII_USER}:11158:${BDII_GROUP}:BDII user:${BDII_HOME_DIR}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Annexe 6 =&lt;br /&gt;
&lt;br /&gt;
Probleme rencontré sur ccnagboxli01 (arret de ypbind + rpm manquant)&lt;br /&gt;
 chown -R nagios:nagios /var/spool/pnp4nagios&lt;br /&gt;
 chown -R nagios:nagios /var/spool/msg-nagios-bridge&lt;br /&gt;
 chown root:nagios /etc/atp/atp_db.conf&lt;br /&gt;
 chown root:nagios /etc/mddb/databases.yml&lt;br /&gt;
 chown nagios:apache /var/nagios/rw&lt;br /&gt;
 chown -R nagios:apache /var/nagios/rw&lt;br /&gt;
 chown root:nagios /etc/nagios/plugins/send_to_db.ini&lt;br /&gt;
 chown -R nagios:nagios /var/cache/msg/config-cache&lt;br /&gt;
 chown -R nagios:root /var/log/mddb&lt;br /&gt;
 chown -R nagios:root /var/log/pnp4nagios&lt;br /&gt;
 chown -R nagios:root /var/log/nagios&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
  useradd -g 40011 -u 10011 nagios&lt;br /&gt;
  useradd --group mysql -u 2730 mysql&lt;br /&gt;
  useradd -g mysql -u 2730 mysql&lt;br /&gt;
&lt;br /&gt;
   groupadd -g 40010 nagiosmaster&lt;br /&gt;
   groupadd -g 146 leftuser&lt;br /&gt;
&lt;br /&gt;
 yum install glite-security-voms-api-c-1.8.12-2.sl5.x86_64&lt;br /&gt;
 yum update perl-Net-SSLeay&lt;br /&gt;
 yum update perl-IO-Socket-SSL-1.01-1.fc6.noarch&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install lcg_util-1.7.6-1.sl5.x86_64&lt;br /&gt;
 yum install GFAL-client-1.11.8-2.sl5.x86_64 GFAL-client-1.11.8-2.sl5.i386&lt;br /&gt;
 yum install CGSI_gSOAP_2.7-1.3.3-1.sl5.x86_64&lt;br /&gt;
 yum install LFC-interfaces-1.7.3-1sec.sl5.x86_64 LFC-client-1.7.3-1sec.sl5.x86_64 lcg-dm-common-1.7.3-1sec.sl5.x86_64&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5749</id>
		<title>Nagios regional</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5749"/>
		<updated>2010-03-26T13:30:13Z</updated>

		<summary type="html">&lt;p&gt;LEROY: /* validation */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Installation d&#039;une NOGIOS box pour le ROC France&lt;br /&gt;
&lt;br /&gt;
= 1)	Installation de base : =&lt;br /&gt;
a.	Machine installée par les sysadmin du CC : OS + VOBOX + certificat + pas dans les NIS&lt;br /&gt;
&lt;br /&gt;
b.	Accessible via gsissh (port 1975)&lt;br /&gt;
&lt;br /&gt;
= 2)	Action faite au préalable : =&lt;br /&gt;
a.	Faire la demande pour que la machine soit autorisée à récupérer les SAM tests : https://gus.fzk.de/ws/ticket_info.php?ticket=55132&lt;br /&gt;
&lt;br /&gt;
b.	Autoriser la nagios box à récupérer les proxy en mode « retrieval », et stocker un proxy depuis une UI récuperable par la nagiosBOX voir  [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe0 Annexe0]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
c.	Certificat utilisé pour :&lt;br /&gt;
&lt;br /&gt;
i.	                       Access to GOCDB PI for ROCS GOCDB PI level 2 required &lt;br /&gt;
&lt;br /&gt;
ii.	                       Recuperation de proxy pour les sondes locales&lt;br /&gt;
&lt;br /&gt;
d. s&#039;inscrire dans la mailing liste: regional-nagios-admins@cern.ch (très réactive)&lt;br /&gt;
&lt;br /&gt;
= 3)	Installation de Nagios =&lt;br /&gt;
Reference : https://twiki.cern.ch/twiki/bin/view/EGEE/GridMonitoringNcgYaim&lt;br /&gt;
== Installation des packages via yum, Ajout des repos suivant ==&lt;br /&gt;
 a.	mirrors-rpmforge (rpm rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm)&lt;br /&gt;
 b.	rpmforge-testing.repo&lt;br /&gt;
 c.	rpmforge.repo&lt;br /&gt;
 d.	glite-UI.repo&lt;br /&gt;
 e.	sa1-centos5-release.repo (rpm:  sa1-release-2-1.el5.noarch.rpm)&lt;br /&gt;
 f.	glite-BDII.repo&lt;br /&gt;
&lt;br /&gt;
Problèmes de dépendances rencontrées si besoin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe1 Annexe1] (mais j’avais dû oublier de faire un : yum install egee-NAGIOS)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Installation subversion ==&lt;br /&gt;
Certain fichier de config sont a recuperer via svn au CERN:&lt;br /&gt;
&lt;br /&gt;
 yum install subversion&lt;br /&gt;
 svn co http://svnweb.cern.ch/guest/sam/trunk/roc-config&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 cp /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm.orig&lt;br /&gt;
 cp roc-config/Hash.pm_55_ALL_CRIT /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm&lt;br /&gt;
&lt;br /&gt;
== Mysql ==&lt;br /&gt;
&lt;br /&gt;
1.	Installer la dernière version de Mysql (server + client) ; &lt;br /&gt;
&lt;br /&gt;
2.	configurer le mot de passe admin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2a] ;&lt;br /&gt;
&lt;br /&gt;
3.	Configurer les users utiles à la nagios Box se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2b] ;&lt;br /&gt;
&lt;br /&gt;
== Configuration via yaim et NCG (en 2 fois)==&lt;br /&gt;
&lt;br /&gt;
1.	Remplir /etc/ncg/ncg.localdb avec la liste des sites se referer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe3 Annexe3]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
2.	Remplir le /opt/glite/yaim/site-info.def voir [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe4 Annexe4] ;&lt;br /&gt;
&lt;br /&gt;
3.	groupadd nagios&lt;br /&gt;
&lt;br /&gt;
4.	modif des uids/gids : /opt/glite/yaim/examples/edgusers.conf [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe5 Annexe5]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
5.	lancement de la configuration automatique via yaim (All On One Box) :&lt;br /&gt;
 	&lt;br /&gt;
 	/opt/glite/yaim/bin/yaim -s /opt/glite/yaim/site-info.def -c -n glite-UI -n glite-NAGIOS&lt;br /&gt;
&lt;br /&gt;
6.	lancement de la configuration via NCG (All On One Box) :&lt;br /&gt;
&lt;br /&gt;
 /usr/sbin/ncg.pl&lt;br /&gt;
&lt;br /&gt;
.....MODIFICATION importante:: voir: https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
La partie:&lt;br /&gt;
#  Configure manually /etc/ncg/ncg.conf (Template can be found here: ncg.conf.template: )&lt;br /&gt;
- Switch off automatic generation of ncg.conf by YAIM (NAGIOS_NCG_ENABLE_CONFIG&amp;quot;=&amp;quot;false&amp;quot;)&lt;br /&gt;
- Take ncg.conf.template and copy it to /etc/ncg/ncg.conf&lt;br /&gt;
     - Set $ROC_NAME$&lt;br /&gt;
     - Set $YOUR_MYPROXY_SERVER$ (e.g. myproxy-fts.cern.ch)&lt;br /&gt;
     - Set $MYPROXY_NAME$ (e.g.: NagiosRetrieve-sam-ap-roc.cern.ch)&lt;br /&gt;
     - Set $NAGIOS_ROLE$ (e.g.: ngi, roc)&lt;br /&gt;
# Take Hash.pm file that we are currently using at the CERN ROC Nagios boxes. In this file, we have removed the metrics that do not belong to the SAM_Critical profile, so only the metrics defined at ROC_SAM_critical are configured, and not relevant services like SRMv1 are commented out. The file is located under /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm &lt;br /&gt;
&lt;br /&gt;
Pour éviter d&#039;avoir des sondes inappropriés.&lt;br /&gt;
&lt;br /&gt;
== Tuning the configuration ==&lt;br /&gt;
&lt;br /&gt;
1.	Verifier  dans /etc/sysconfig/nagios:&lt;br /&gt;
 LD_LIBRARY_PATH=/opt/classads/lib64:/opt/glite/lib64:/opt/globus/lib:/opt/c-ares/lib:/opt/classads/lib64  &lt;br /&gt;
&lt;br /&gt;
2.	Desactiver les notifications, dans les fichiers de conf: &lt;br /&gt;
 a.      /etc/nagios/nagios.cfg, désactiver les notifications:enable_notifications=0 ;log_notifications=0&lt;br /&gt;
 b.	 /etc/nagios/wlcg.d/host.templates.cfg&lt;br /&gt;
 c.	 /etc/nagios/wlcg.d/service.templates.cfg&lt;br /&gt;
&lt;br /&gt;
4.	N’autoriser que les dteam/France à visualiser notre interface nagios : modifier le fichier : &lt;br /&gt;
 /etc/voms2htpasswd.conf, avec : vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&lt;br /&gt;
Plus utile site le site-info.def est défini correctement:&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&#039;&lt;br /&gt;
&lt;br /&gt;
== ActiveMQ ==&lt;br /&gt;
 /usr/sbin/msg-to-queue --prefix /queue/grid.probe.metricOutput.EGEE.a635834332381123c8b296d02b682f8f --broker-uri stomp://prod-grid-msg.cern.ch:6163&lt;br /&gt;
 &lt;br /&gt;
[root@cclcgvmli03 cron.hourly]# cat check_msg-to-queue.sh&lt;br /&gt;
&lt;br /&gt;
Verifier les messages:&lt;br /&gt;
 /usr/libexec/grid-monitoring/plugins/nagios/recv_from_queue -v &lt;br /&gt;
&lt;br /&gt;
faire une update de perl-GridMon &lt;br /&gt;
 The problem here is in the message handler &lt;br /&gt;
 (/usr/lib/perl5/vendor_perl/5.8.8/GridMon/MsgHandler/MetricOutput.pm). &lt;br /&gt;
 Probe on WN reports hostname localhost.localdomain and serviceURI CE &lt;br /&gt;
 hostname. In the previous version message handler first checked hostname &lt;br /&gt;
 value and then serviceURI. That is the reason why Christine is seeing &lt;br /&gt;
 results for localhost.localdomain. However, we fixed this and the latest &lt;br /&gt;
 version (1.0.34) parses messages correctly.&lt;br /&gt;
&lt;br /&gt;
 yum update perl-GridMon&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== Systeme d&#039;information ==&lt;br /&gt;
La nagios Box doit etre enregistré dans la GOCDB &lt;br /&gt;
et publié dans le site-BDII:&lt;br /&gt;
 ldapsearch -x -H ldap://ccnagboxli01.in2p3.fr:2170 -b &#039;Mds-vo-name=resource,o=Grid&#039;&lt;br /&gt;
&lt;br /&gt;
= validation =&lt;br /&gt;
&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
&lt;br /&gt;
now you should publish your Nagios in your Site BDII&lt;br /&gt;
And we should declare the node in the GOCDB: Regional-NAGIOS ou National-Nagios, a determiner&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
liste des sondes a valider: d&#039;après: https://twiki.cern.ch/twiki/bin/view/LCG/SAMCriticalTestsForCODs&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Type de Noeuds&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Valid (Y or N)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
APEL&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Pas de métric ?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
BDII (site and TOP)&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
- Probleme identifié pour la variable LCG_GFAL_INFOSYS quand c&#039;est une liste (CE lpnce.in2p3.fr):&lt;br /&gt;
LCG_GFAL_INFOSYS=topbdii.grif.fr:2170,cclcgtopbdii01.in2p3.fr:2170,lapp-bdii01.in2p3.fr:2170&lt;br /&gt;
&lt;br /&gt;
-Tout le mecanisme de recuperation des outputs n&#039;est pas compris mais globalement on a les meme resultat que celui du CERN&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CREAMCE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
FTS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y and NO: For the check_command those options should be added: &lt;br /&gt;
--cert /etc/nagios/globus/hostcert.pem   --key /etc/nagios/globus/hostkey.pem  -x $USER2$ (this should be fixed in the next release)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
gRB/WMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_C&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: mais il faudrait peut etre demander au site de supporter la VO ops pour que leur LFC soit testé (lfc-ls et lfc-ping)?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_L&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: mais il faudrait peut etre demander au site de supporter la VO ops pour que leur LFC soit testé (lfc-ls et lfc-ping)?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MPI&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MyProxy&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RB&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nobody&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Service Deprecated. Does NOT apply in Nagios&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RGMA / MON&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y (certificate lifetime only)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
&lt;br /&gt;
SRMv2&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOBOX&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
= Annexe0 =&lt;br /&gt;
&lt;br /&gt;
Sur le myproxyserver, il faut que le nagios server soit &amp;quot;trusted retriever&amp;quot; et &amp;quot;authorized retrievers&amp;quot;:&lt;br /&gt;
 [cleroy@grid08 ~]$ grep cclcgvmli03 /opt/glite/etc/myproxy-server.conf&lt;br /&gt;
 trusted_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 authorized_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Sur une UI:&lt;br /&gt;
&lt;br /&gt;
 voms-proxy-init -voms ops:/ops/Role=lcgadmin&lt;br /&gt;
 myproxy-init -c 336 -k nagios_roc_fr2-ops -s myproxy.grif.fr -l nagios  -x -Z &amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-IN2P3/CN=ccnagboxli01.in2p3.fr&amp;quot;&lt;br /&gt;
&lt;br /&gt;
= Annexe 1 =&lt;br /&gt;
 rpm -ivh http://www.sysadmin.hep.ac.uk/rpms/egee-SA1/centos5/x86_64/sa1-release-2-1.el5.noarch.rpm&lt;br /&gt;
 rpm -ivh  http://packages.sw.be/rpmforge-release/rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm&lt;br /&gt;
&lt;br /&gt;
 yum install atp&lt;br /&gt;
 yum install bouncycastle&lt;br /&gt;
 yum install broker&lt;br /&gt;
 yum install broker-cache&lt;br /&gt;
 yum install dcache-srmclient&lt;br /&gt;
 yum install dummy-ca-certs&lt;br /&gt;
 yum install egee-NAGIOS&lt;br /&gt;
 yum install egee-NAGIOS egee-NRPE&lt;br /&gt;
 yum install egee-NRPE&lt;br /&gt;
 yum install fetch-crl&lt;br /&gt;
 yum install fipscheck fipscheck-lib&lt;br /&gt;
 yum install glite-UI&lt;br /&gt;
 yum install glite-security-voms-clients&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install glite-yaim-core&lt;br /&gt;
 yum install glite-yaim-nagios&lt;br /&gt;
 yum install httpd&lt;br /&gt;
 yum install jdk&lt;br /&gt;
 yum install lcg-CA&lt;br /&gt;
 yum install lcg-CA egee-NAGIOS&lt;br /&gt;
 yum install lcg_util&lt;br /&gt;
 yum install mddb&lt;br /&gt;
 yum install msg-publish-simple&lt;br /&gt;
 yum install myproxy&lt;br /&gt;
 yum install mysql-client&lt;br /&gt;
 yum install mysql-server&lt;br /&gt;
 yum install nagios-proxy-refresh&lt;br /&gt;
 yum install perl-Config-Tiny&lt;br /&gt;
 yum install perl-DBD-MySQL&lt;br /&gt;
 yum install perl-rrdtool-1.3.8-2.el5.rf.x86_64&lt;br /&gt;
 yum install python-yaml&lt;br /&gt;
 yum install sun-jaf&lt;br /&gt;
 yum install uberftp-client&lt;br /&gt;
 yum install vdt_globus_rm_client&lt;br /&gt;
&lt;br /&gt;
 yum update glite-yaim-clients&lt;br /&gt;
 yum update glite-yaim-core&lt;br /&gt;
 yum update glite-yaim-nagios&lt;br /&gt;
 yum update mysql-server&lt;br /&gt;
 yum update perl-DBI&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe2 =&lt;br /&gt;
a)Mot de passe admin mysql :&lt;br /&gt;
Yum pour recupérer la derniere version de Mysql :&lt;br /&gt;
&#039;&#039;MySQL-server-community&#039;&#039;, ne pas oublier le client (pas de dépendance dessus)&lt;br /&gt;
Demmarrage de mysql avec --skip-grant-tables (pour ne pas avoir de mot de passe a rentrer)&lt;br /&gt;
 mysqld_safe --skip-grant-tables &amp;amp;&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root &lt;br /&gt;
 update user set password=PASSWORD(&amp;quot;NEW-ROOT-PASSWORD&amp;quot;) where User=&#039;root&#039;;&lt;br /&gt;
&lt;br /&gt;
b)creation des users pour le nagios regional:&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root -p&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON nagios.* TO &#039;ndouser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON atp.* TO &#039;atpuser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe 3 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /etc/ncg/ncg.localdb&lt;br /&gt;
 #&lt;br /&gt;
 # Local Rules file to modify NCG configuration&lt;br /&gt;
 #&lt;br /&gt;
 SITE!AUVERGRID&lt;br /&gt;
 SITE!CGG-LCG2&lt;br /&gt;
 SITE!ESRF&lt;br /&gt;
 SITE!GRIF&lt;br /&gt;
 SITE!IBCP-GBIO&lt;br /&gt;
 SITE!IN2P3-CC&lt;br /&gt;
 SITE!IN2P3-CC-PPS&lt;br /&gt;
 SITE!IN2P3-CC-T2&lt;br /&gt;
 SITE!IN2P3-CPPM&lt;br /&gt;
 SITE!IN2P3-IPNL&lt;br /&gt;
 SITE!IN2P3-IRES&lt;br /&gt;
 SITE!IN2P3-LAPP&lt;br /&gt;
 SITE!IN2P3-LPC&lt;br /&gt;
 SITE!IN2P3-LPSC&lt;br /&gt;
 SITE!IN2P3-SUBATECH&lt;br /&gt;
 SITE!IPSL-IPGP-LCG2&lt;br /&gt;
 SITE!M3PEC&lt;br /&gt;
 SITE!MSFG&lt;br /&gt;
 SITE!MSFG-MULTI&lt;br /&gt;
 SITE!MSFG-OPEN&lt;br /&gt;
 SITE!OBSPM&lt;br /&gt;
 SITE!PARIS-UREC-IPV6&lt;br /&gt;
 SITE!SN-UCAD&lt;br /&gt;
 SITE!ROC-FR&lt;br /&gt;
 SITE!SOLEIL&lt;br /&gt;
 SITE!StratusLab&lt;br /&gt;
 [root@cclcgvmli03 ~]#&lt;br /&gt;
 &lt;br /&gt;
= Annexe 4 =&lt;br /&gt;
&lt;br /&gt;
 SITE_EMAIL=c.leroy@cea.fr&lt;br /&gt;
 SITE_NAME=ROC-FR&lt;br /&gt;
 RB_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 WMS_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 PX_HOST=myproxy.grif.fr&lt;br /&gt;
 BDII_HOST=topbdii.grif.fr&lt;br /&gt;
 SITE_BDII_HOST=bdii.grif.fr&lt;br /&gt;
 MON_HOST=node06.datagrid.cea.fr&lt;br /&gt;
 VOS=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 DTEAM_GROUP_ENABLE=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 VO_DTEAM_SW_DIR=$VO_SW_DIR/dteam&lt;br /&gt;
 VO_DTEAM_DEFAULT_SE=$SE_HOST&lt;br /&gt;
 VO_DTEAM_STORAGE_DIR=$CLASSIC_STORAGE_DIR/dteam&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/&#039;&lt;br /&gt;
 VO_DTEAM_VOMSES=&amp;quot;&#039;dteam lcg-voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=lcg-voms.cern.ch dteam 24&#039; &#039;dteam    voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=voms.cern.ch dteam 24&#039;&amp;quot;&lt;br /&gt;
 VO_DTEAM_VOMS_CA_DN=&amp;quot;&#039;/DC=ch/DC=cern/CN=CERN Trusted Certification Authority&#039; &#039;/DC=ch/DC=cern/CN=CERN Trusted   Certification Authority&#039;&amp;quot;&lt;br /&gt;
 NAGIOS_HOST=cclcgvmli03.in2p3.fr&lt;br /&gt;
 NAGIOS_ADMIN_DNS=&amp;quot;/O=GRID-FR/C=FR/O=CEA/OU=IRFU/CN=Christine Leroy&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=Nadia Lajili&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=LPC/CN=Emmanuel Medernach&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CPPM/CN=Juan Carlos Carranza&amp;quot;&lt;br /&gt;
 NAGIOS_NCG_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_NAGIOS_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_GOCDB_ROC_NAME=France&lt;br /&gt;
 ROC_NAME=France&lt;br /&gt;
 NCG_PROBES_TYPE=remote,native,local&lt;br /&gt;
 NCG_VO=dteam&lt;br /&gt;
 NAGIOS_MYPROXY_NAME=nagios_roc_fr2&lt;br /&gt;
 NAGIOS_MYPROXY_USER=nagios&lt;br /&gt;
 MSG_BROKER_CACHE_NETWORK=PROD&lt;br /&gt;
 NAGIOS_ROLE=roc&lt;br /&gt;
 NAGIOS_HTTPD_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_SUDO_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_CGI_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_LDAP_FILTER=GlueSiteOtherInfo=EGEE_ROC=France&lt;br /&gt;
 NAGIOS_DB_PASS=x&lt;br /&gt;
 NAGIOS_NSCA_PASS=x&lt;br /&gt;
 MYSQL_ADMIN=x&lt;br /&gt;
 ATP_DB_PASS=x&lt;br /&gt;
 MDDB_DB_PASS=x&lt;br /&gt;
 MS_DB_PASS=x&lt;br /&gt;
 MYSQL_PASSWORD=x&lt;br /&gt;
 MYEGEE_DB_PASS=x&lt;br /&gt;
&lt;br /&gt;
= Annexe 5 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /opt/glite/yaim/examples/edgusers.conf&lt;br /&gt;
 11151:${DPMMGR_USER}:11151:${DPMMGR_GROUP}:DPM user:&lt;br /&gt;
 11152:${EDG_USER}:11152,11156:${EDG_GROUP},${INFOSYS_GROUP}:EDG user:${EDG_HOME_DIR}&lt;br /&gt;
 11153:${EDGINFO_USER}:11153,1156:${EDGINFO_USER},${INFOSYS_GROUP}:EDG info user:${EDGINFO_HOME_DIR}&lt;br /&gt;
 11154:${RGMA_USER}:11154,1156:${RGMA_GROUP},${INFOSYS_GROUP}:RGMA user:${INSTALL_ROOT}/glite/etc/rgma&lt;br /&gt;
 11155:${GLITE_USER}:11155:${GLITE_GROUP}:gLite user:${GLITE_HOME_DIR}&lt;br /&gt;
 11156:${BDII_USER}:11158:${BDII_GROUP}:BDII user:${BDII_HOME_DIR}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Annexe 6 =&lt;br /&gt;
&lt;br /&gt;
Probleme rencontré sur ccnagboxli01 (arret de ypbind + rpm manquant)&lt;br /&gt;
 chown -R nagios:nagios /var/spool/pnp4nagios&lt;br /&gt;
 chown -R nagios:nagios /var/spool/msg-nagios-bridge&lt;br /&gt;
 chown root:nagios /etc/atp/atp_db.conf&lt;br /&gt;
 chown root:nagios /etc/mddb/databases.yml&lt;br /&gt;
 chown nagios:apache /var/nagios/rw&lt;br /&gt;
 chown -R nagios:apache /var/nagios/rw&lt;br /&gt;
 chown root:nagios /etc/nagios/plugins/send_to_db.ini&lt;br /&gt;
 chown -R nagios:nagios /var/cache/msg/config-cache&lt;br /&gt;
 chown -R nagios:root /var/log/mddb&lt;br /&gt;
 chown -R nagios:root /var/log/pnp4nagios&lt;br /&gt;
 chown -R nagios:root /var/log/nagios&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
  useradd -g 40011 -u 10011 nagios&lt;br /&gt;
  useradd --group mysql -u 2730 mysql&lt;br /&gt;
  useradd -g mysql -u 2730 mysql&lt;br /&gt;
&lt;br /&gt;
   groupadd -g 40010 nagiosmaster&lt;br /&gt;
   groupadd -g 146 leftuser&lt;br /&gt;
&lt;br /&gt;
 yum install glite-security-voms-api-c-1.8.12-2.sl5.x86_64&lt;br /&gt;
 yum update perl-Net-SSLeay&lt;br /&gt;
 yum update perl-IO-Socket-SSL-1.01-1.fc6.noarch&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install lcg_util-1.7.6-1.sl5.x86_64&lt;br /&gt;
 yum install GFAL-client-1.11.8-2.sl5.x86_64 GFAL-client-1.11.8-2.sl5.i386&lt;br /&gt;
 yum install CGSI_gSOAP_2.7-1.3.3-1.sl5.x86_64&lt;br /&gt;
 yum install LFC-interfaces-1.7.3-1sec.sl5.x86_64 LFC-client-1.7.3-1sec.sl5.x86_64 lcg-dm-common-1.7.3-1sec.sl5.x86_64&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5748</id>
		<title>Nagios regional</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5748"/>
		<updated>2010-03-26T13:29:57Z</updated>

		<summary type="html">&lt;p&gt;LEROY: /* validation */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Installation d&#039;une NOGIOS box pour le ROC France&lt;br /&gt;
&lt;br /&gt;
= 1)	Installation de base : =&lt;br /&gt;
a.	Machine installée par les sysadmin du CC : OS + VOBOX + certificat + pas dans les NIS&lt;br /&gt;
&lt;br /&gt;
b.	Accessible via gsissh (port 1975)&lt;br /&gt;
&lt;br /&gt;
= 2)	Action faite au préalable : =&lt;br /&gt;
a.	Faire la demande pour que la machine soit autorisée à récupérer les SAM tests : https://gus.fzk.de/ws/ticket_info.php?ticket=55132&lt;br /&gt;
&lt;br /&gt;
b.	Autoriser la nagios box à récupérer les proxy en mode « retrieval », et stocker un proxy depuis une UI récuperable par la nagiosBOX voir  [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe0 Annexe0]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
c.	Certificat utilisé pour :&lt;br /&gt;
&lt;br /&gt;
i.	                       Access to GOCDB PI for ROCS GOCDB PI level 2 required &lt;br /&gt;
&lt;br /&gt;
ii.	                       Recuperation de proxy pour les sondes locales&lt;br /&gt;
&lt;br /&gt;
d. s&#039;inscrire dans la mailing liste: regional-nagios-admins@cern.ch (très réactive)&lt;br /&gt;
&lt;br /&gt;
= 3)	Installation de Nagios =&lt;br /&gt;
Reference : https://twiki.cern.ch/twiki/bin/view/EGEE/GridMonitoringNcgYaim&lt;br /&gt;
== Installation des packages via yum, Ajout des repos suivant ==&lt;br /&gt;
 a.	mirrors-rpmforge (rpm rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm)&lt;br /&gt;
 b.	rpmforge-testing.repo&lt;br /&gt;
 c.	rpmforge.repo&lt;br /&gt;
 d.	glite-UI.repo&lt;br /&gt;
 e.	sa1-centos5-release.repo (rpm:  sa1-release-2-1.el5.noarch.rpm)&lt;br /&gt;
 f.	glite-BDII.repo&lt;br /&gt;
&lt;br /&gt;
Problèmes de dépendances rencontrées si besoin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe1 Annexe1] (mais j’avais dû oublier de faire un : yum install egee-NAGIOS)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Installation subversion ==&lt;br /&gt;
Certain fichier de config sont a recuperer via svn au CERN:&lt;br /&gt;
&lt;br /&gt;
 yum install subversion&lt;br /&gt;
 svn co http://svnweb.cern.ch/guest/sam/trunk/roc-config&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 cp /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm.orig&lt;br /&gt;
 cp roc-config/Hash.pm_55_ALL_CRIT /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm&lt;br /&gt;
&lt;br /&gt;
== Mysql ==&lt;br /&gt;
&lt;br /&gt;
1.	Installer la dernière version de Mysql (server + client) ; &lt;br /&gt;
&lt;br /&gt;
2.	configurer le mot de passe admin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2a] ;&lt;br /&gt;
&lt;br /&gt;
3.	Configurer les users utiles à la nagios Box se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2b] ;&lt;br /&gt;
&lt;br /&gt;
== Configuration via yaim et NCG (en 2 fois)==&lt;br /&gt;
&lt;br /&gt;
1.	Remplir /etc/ncg/ncg.localdb avec la liste des sites se referer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe3 Annexe3]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
2.	Remplir le /opt/glite/yaim/site-info.def voir [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe4 Annexe4] ;&lt;br /&gt;
&lt;br /&gt;
3.	groupadd nagios&lt;br /&gt;
&lt;br /&gt;
4.	modif des uids/gids : /opt/glite/yaim/examples/edgusers.conf [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe5 Annexe5]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
5.	lancement de la configuration automatique via yaim (All On One Box) :&lt;br /&gt;
 	&lt;br /&gt;
 	/opt/glite/yaim/bin/yaim -s /opt/glite/yaim/site-info.def -c -n glite-UI -n glite-NAGIOS&lt;br /&gt;
&lt;br /&gt;
6.	lancement de la configuration via NCG (All On One Box) :&lt;br /&gt;
&lt;br /&gt;
 /usr/sbin/ncg.pl&lt;br /&gt;
&lt;br /&gt;
.....MODIFICATION importante:: voir: https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
La partie:&lt;br /&gt;
#  Configure manually /etc/ncg/ncg.conf (Template can be found here: ncg.conf.template: )&lt;br /&gt;
- Switch off automatic generation of ncg.conf by YAIM (NAGIOS_NCG_ENABLE_CONFIG&amp;quot;=&amp;quot;false&amp;quot;)&lt;br /&gt;
- Take ncg.conf.template and copy it to /etc/ncg/ncg.conf&lt;br /&gt;
     - Set $ROC_NAME$&lt;br /&gt;
     - Set $YOUR_MYPROXY_SERVER$ (e.g. myproxy-fts.cern.ch)&lt;br /&gt;
     - Set $MYPROXY_NAME$ (e.g.: NagiosRetrieve-sam-ap-roc.cern.ch)&lt;br /&gt;
     - Set $NAGIOS_ROLE$ (e.g.: ngi, roc)&lt;br /&gt;
# Take Hash.pm file that we are currently using at the CERN ROC Nagios boxes. In this file, we have removed the metrics that do not belong to the SAM_Critical profile, so only the metrics defined at ROC_SAM_critical are configured, and not relevant services like SRMv1 are commented out. The file is located under /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm &lt;br /&gt;
&lt;br /&gt;
Pour éviter d&#039;avoir des sondes inappropriés.&lt;br /&gt;
&lt;br /&gt;
== Tuning the configuration ==&lt;br /&gt;
&lt;br /&gt;
1.	Verifier  dans /etc/sysconfig/nagios:&lt;br /&gt;
 LD_LIBRARY_PATH=/opt/classads/lib64:/opt/glite/lib64:/opt/globus/lib:/opt/c-ares/lib:/opt/classads/lib64  &lt;br /&gt;
&lt;br /&gt;
2.	Desactiver les notifications, dans les fichiers de conf: &lt;br /&gt;
 a.      /etc/nagios/nagios.cfg, désactiver les notifications:enable_notifications=0 ;log_notifications=0&lt;br /&gt;
 b.	 /etc/nagios/wlcg.d/host.templates.cfg&lt;br /&gt;
 c.	 /etc/nagios/wlcg.d/service.templates.cfg&lt;br /&gt;
&lt;br /&gt;
4.	N’autoriser que les dteam/France à visualiser notre interface nagios : modifier le fichier : &lt;br /&gt;
 /etc/voms2htpasswd.conf, avec : vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&lt;br /&gt;
Plus utile site le site-info.def est défini correctement:&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&#039;&lt;br /&gt;
&lt;br /&gt;
== ActiveMQ ==&lt;br /&gt;
 /usr/sbin/msg-to-queue --prefix /queue/grid.probe.metricOutput.EGEE.a635834332381123c8b296d02b682f8f --broker-uri stomp://prod-grid-msg.cern.ch:6163&lt;br /&gt;
 &lt;br /&gt;
[root@cclcgvmli03 cron.hourly]# cat check_msg-to-queue.sh&lt;br /&gt;
&lt;br /&gt;
Verifier les messages:&lt;br /&gt;
 /usr/libexec/grid-monitoring/plugins/nagios/recv_from_queue -v &lt;br /&gt;
&lt;br /&gt;
faire une update de perl-GridMon &lt;br /&gt;
 The problem here is in the message handler &lt;br /&gt;
 (/usr/lib/perl5/vendor_perl/5.8.8/GridMon/MsgHandler/MetricOutput.pm). &lt;br /&gt;
 Probe on WN reports hostname localhost.localdomain and serviceURI CE &lt;br /&gt;
 hostname. In the previous version message handler first checked hostname &lt;br /&gt;
 value and then serviceURI. That is the reason why Christine is seeing &lt;br /&gt;
 results for localhost.localdomain. However, we fixed this and the latest &lt;br /&gt;
 version (1.0.34) parses messages correctly.&lt;br /&gt;
&lt;br /&gt;
 yum update perl-GridMon&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== Systeme d&#039;information ==&lt;br /&gt;
La nagios Box doit etre enregistré dans la GOCDB &lt;br /&gt;
et publié dans le site-BDII:&lt;br /&gt;
 ldapsearch -x -H ldap://ccnagboxli01.in2p3.fr:2170 -b &#039;Mds-vo-name=resource,o=Grid&#039;&lt;br /&gt;
&lt;br /&gt;
= validation =&lt;br /&gt;
&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
&lt;br /&gt;
now you should publish your Nagios in your Site BDII&lt;br /&gt;
And we should declare the node in the GOCDB: Regional-NAGIOS ou National-Nagios, a determiner&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
liste des sondes a valider: d&#039;après: https://twiki.cern.ch/twiki/bin/view/LCG/SAMCriticalTestsForCODs&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Type de Noeuds&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Valid (Y or N)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
APEL&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Pas de métric ?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
BDII (site and TOP)&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
- Probleme identifié pour la variable LCG_GFAL_INFOSYS quand c&#039;est une liste (CE lpnce.in2p3.fr):&lt;br /&gt;
LCG_GFAL_INFOSYS=topbdii.grif.fr:2170,cclcgtopbdii01.in2p3.fr:2170,lapp-bdii01.in2p3.fr:2170&lt;br /&gt;
-Tout le mecanisme de recuperation des outputs n&#039;est pas compris mais globalement on a les meme resultat que celui du CERN&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CREAMCE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
FTS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y and NO: For the check_command those options should be added: &lt;br /&gt;
--cert /etc/nagios/globus/hostcert.pem   --key /etc/nagios/globus/hostkey.pem  -x $USER2$ (this should be fixed in the next release)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
gRB/WMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_C&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: mais il faudrait peut etre demander au site de supporter la VO ops pour que leur LFC soit testé (lfc-ls et lfc-ping)?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_L&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: mais il faudrait peut etre demander au site de supporter la VO ops pour que leur LFC soit testé (lfc-ls et lfc-ping)?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MPI&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MyProxy&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RB&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nobody&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Service Deprecated. Does NOT apply in Nagios&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RGMA / MON&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y (certificate lifetime only)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
&lt;br /&gt;
SRMv2&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOBOX&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
= Annexe0 =&lt;br /&gt;
&lt;br /&gt;
Sur le myproxyserver, il faut que le nagios server soit &amp;quot;trusted retriever&amp;quot; et &amp;quot;authorized retrievers&amp;quot;:&lt;br /&gt;
 [cleroy@grid08 ~]$ grep cclcgvmli03 /opt/glite/etc/myproxy-server.conf&lt;br /&gt;
 trusted_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 authorized_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Sur une UI:&lt;br /&gt;
&lt;br /&gt;
 voms-proxy-init -voms ops:/ops/Role=lcgadmin&lt;br /&gt;
 myproxy-init -c 336 -k nagios_roc_fr2-ops -s myproxy.grif.fr -l nagios  -x -Z &amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-IN2P3/CN=ccnagboxli01.in2p3.fr&amp;quot;&lt;br /&gt;
&lt;br /&gt;
= Annexe 1 =&lt;br /&gt;
 rpm -ivh http://www.sysadmin.hep.ac.uk/rpms/egee-SA1/centos5/x86_64/sa1-release-2-1.el5.noarch.rpm&lt;br /&gt;
 rpm -ivh  http://packages.sw.be/rpmforge-release/rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm&lt;br /&gt;
&lt;br /&gt;
 yum install atp&lt;br /&gt;
 yum install bouncycastle&lt;br /&gt;
 yum install broker&lt;br /&gt;
 yum install broker-cache&lt;br /&gt;
 yum install dcache-srmclient&lt;br /&gt;
 yum install dummy-ca-certs&lt;br /&gt;
 yum install egee-NAGIOS&lt;br /&gt;
 yum install egee-NAGIOS egee-NRPE&lt;br /&gt;
 yum install egee-NRPE&lt;br /&gt;
 yum install fetch-crl&lt;br /&gt;
 yum install fipscheck fipscheck-lib&lt;br /&gt;
 yum install glite-UI&lt;br /&gt;
 yum install glite-security-voms-clients&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install glite-yaim-core&lt;br /&gt;
 yum install glite-yaim-nagios&lt;br /&gt;
 yum install httpd&lt;br /&gt;
 yum install jdk&lt;br /&gt;
 yum install lcg-CA&lt;br /&gt;
 yum install lcg-CA egee-NAGIOS&lt;br /&gt;
 yum install lcg_util&lt;br /&gt;
 yum install mddb&lt;br /&gt;
 yum install msg-publish-simple&lt;br /&gt;
 yum install myproxy&lt;br /&gt;
 yum install mysql-client&lt;br /&gt;
 yum install mysql-server&lt;br /&gt;
 yum install nagios-proxy-refresh&lt;br /&gt;
 yum install perl-Config-Tiny&lt;br /&gt;
 yum install perl-DBD-MySQL&lt;br /&gt;
 yum install perl-rrdtool-1.3.8-2.el5.rf.x86_64&lt;br /&gt;
 yum install python-yaml&lt;br /&gt;
 yum install sun-jaf&lt;br /&gt;
 yum install uberftp-client&lt;br /&gt;
 yum install vdt_globus_rm_client&lt;br /&gt;
&lt;br /&gt;
 yum update glite-yaim-clients&lt;br /&gt;
 yum update glite-yaim-core&lt;br /&gt;
 yum update glite-yaim-nagios&lt;br /&gt;
 yum update mysql-server&lt;br /&gt;
 yum update perl-DBI&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe2 =&lt;br /&gt;
a)Mot de passe admin mysql :&lt;br /&gt;
Yum pour recupérer la derniere version de Mysql :&lt;br /&gt;
&#039;&#039;MySQL-server-community&#039;&#039;, ne pas oublier le client (pas de dépendance dessus)&lt;br /&gt;
Demmarrage de mysql avec --skip-grant-tables (pour ne pas avoir de mot de passe a rentrer)&lt;br /&gt;
 mysqld_safe --skip-grant-tables &amp;amp;&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root &lt;br /&gt;
 update user set password=PASSWORD(&amp;quot;NEW-ROOT-PASSWORD&amp;quot;) where User=&#039;root&#039;;&lt;br /&gt;
&lt;br /&gt;
b)creation des users pour le nagios regional:&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root -p&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON nagios.* TO &#039;ndouser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON atp.* TO &#039;atpuser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe 3 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /etc/ncg/ncg.localdb&lt;br /&gt;
 #&lt;br /&gt;
 # Local Rules file to modify NCG configuration&lt;br /&gt;
 #&lt;br /&gt;
 SITE!AUVERGRID&lt;br /&gt;
 SITE!CGG-LCG2&lt;br /&gt;
 SITE!ESRF&lt;br /&gt;
 SITE!GRIF&lt;br /&gt;
 SITE!IBCP-GBIO&lt;br /&gt;
 SITE!IN2P3-CC&lt;br /&gt;
 SITE!IN2P3-CC-PPS&lt;br /&gt;
 SITE!IN2P3-CC-T2&lt;br /&gt;
 SITE!IN2P3-CPPM&lt;br /&gt;
 SITE!IN2P3-IPNL&lt;br /&gt;
 SITE!IN2P3-IRES&lt;br /&gt;
 SITE!IN2P3-LAPP&lt;br /&gt;
 SITE!IN2P3-LPC&lt;br /&gt;
 SITE!IN2P3-LPSC&lt;br /&gt;
 SITE!IN2P3-SUBATECH&lt;br /&gt;
 SITE!IPSL-IPGP-LCG2&lt;br /&gt;
 SITE!M3PEC&lt;br /&gt;
 SITE!MSFG&lt;br /&gt;
 SITE!MSFG-MULTI&lt;br /&gt;
 SITE!MSFG-OPEN&lt;br /&gt;
 SITE!OBSPM&lt;br /&gt;
 SITE!PARIS-UREC-IPV6&lt;br /&gt;
 SITE!SN-UCAD&lt;br /&gt;
 SITE!ROC-FR&lt;br /&gt;
 SITE!SOLEIL&lt;br /&gt;
 SITE!StratusLab&lt;br /&gt;
 [root@cclcgvmli03 ~]#&lt;br /&gt;
 &lt;br /&gt;
= Annexe 4 =&lt;br /&gt;
&lt;br /&gt;
 SITE_EMAIL=c.leroy@cea.fr&lt;br /&gt;
 SITE_NAME=ROC-FR&lt;br /&gt;
 RB_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 WMS_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 PX_HOST=myproxy.grif.fr&lt;br /&gt;
 BDII_HOST=topbdii.grif.fr&lt;br /&gt;
 SITE_BDII_HOST=bdii.grif.fr&lt;br /&gt;
 MON_HOST=node06.datagrid.cea.fr&lt;br /&gt;
 VOS=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 DTEAM_GROUP_ENABLE=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 VO_DTEAM_SW_DIR=$VO_SW_DIR/dteam&lt;br /&gt;
 VO_DTEAM_DEFAULT_SE=$SE_HOST&lt;br /&gt;
 VO_DTEAM_STORAGE_DIR=$CLASSIC_STORAGE_DIR/dteam&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/&#039;&lt;br /&gt;
 VO_DTEAM_VOMSES=&amp;quot;&#039;dteam lcg-voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=lcg-voms.cern.ch dteam 24&#039; &#039;dteam    voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=voms.cern.ch dteam 24&#039;&amp;quot;&lt;br /&gt;
 VO_DTEAM_VOMS_CA_DN=&amp;quot;&#039;/DC=ch/DC=cern/CN=CERN Trusted Certification Authority&#039; &#039;/DC=ch/DC=cern/CN=CERN Trusted   Certification Authority&#039;&amp;quot;&lt;br /&gt;
 NAGIOS_HOST=cclcgvmli03.in2p3.fr&lt;br /&gt;
 NAGIOS_ADMIN_DNS=&amp;quot;/O=GRID-FR/C=FR/O=CEA/OU=IRFU/CN=Christine Leroy&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=Nadia Lajili&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=LPC/CN=Emmanuel Medernach&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CPPM/CN=Juan Carlos Carranza&amp;quot;&lt;br /&gt;
 NAGIOS_NCG_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_NAGIOS_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_GOCDB_ROC_NAME=France&lt;br /&gt;
 ROC_NAME=France&lt;br /&gt;
 NCG_PROBES_TYPE=remote,native,local&lt;br /&gt;
 NCG_VO=dteam&lt;br /&gt;
 NAGIOS_MYPROXY_NAME=nagios_roc_fr2&lt;br /&gt;
 NAGIOS_MYPROXY_USER=nagios&lt;br /&gt;
 MSG_BROKER_CACHE_NETWORK=PROD&lt;br /&gt;
 NAGIOS_ROLE=roc&lt;br /&gt;
 NAGIOS_HTTPD_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_SUDO_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_CGI_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_LDAP_FILTER=GlueSiteOtherInfo=EGEE_ROC=France&lt;br /&gt;
 NAGIOS_DB_PASS=x&lt;br /&gt;
 NAGIOS_NSCA_PASS=x&lt;br /&gt;
 MYSQL_ADMIN=x&lt;br /&gt;
 ATP_DB_PASS=x&lt;br /&gt;
 MDDB_DB_PASS=x&lt;br /&gt;
 MS_DB_PASS=x&lt;br /&gt;
 MYSQL_PASSWORD=x&lt;br /&gt;
 MYEGEE_DB_PASS=x&lt;br /&gt;
&lt;br /&gt;
= Annexe 5 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /opt/glite/yaim/examples/edgusers.conf&lt;br /&gt;
 11151:${DPMMGR_USER}:11151:${DPMMGR_GROUP}:DPM user:&lt;br /&gt;
 11152:${EDG_USER}:11152,11156:${EDG_GROUP},${INFOSYS_GROUP}:EDG user:${EDG_HOME_DIR}&lt;br /&gt;
 11153:${EDGINFO_USER}:11153,1156:${EDGINFO_USER},${INFOSYS_GROUP}:EDG info user:${EDGINFO_HOME_DIR}&lt;br /&gt;
 11154:${RGMA_USER}:11154,1156:${RGMA_GROUP},${INFOSYS_GROUP}:RGMA user:${INSTALL_ROOT}/glite/etc/rgma&lt;br /&gt;
 11155:${GLITE_USER}:11155:${GLITE_GROUP}:gLite user:${GLITE_HOME_DIR}&lt;br /&gt;
 11156:${BDII_USER}:11158:${BDII_GROUP}:BDII user:${BDII_HOME_DIR}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Annexe 6 =&lt;br /&gt;
&lt;br /&gt;
Probleme rencontré sur ccnagboxli01 (arret de ypbind + rpm manquant)&lt;br /&gt;
 chown -R nagios:nagios /var/spool/pnp4nagios&lt;br /&gt;
 chown -R nagios:nagios /var/spool/msg-nagios-bridge&lt;br /&gt;
 chown root:nagios /etc/atp/atp_db.conf&lt;br /&gt;
 chown root:nagios /etc/mddb/databases.yml&lt;br /&gt;
 chown nagios:apache /var/nagios/rw&lt;br /&gt;
 chown -R nagios:apache /var/nagios/rw&lt;br /&gt;
 chown root:nagios /etc/nagios/plugins/send_to_db.ini&lt;br /&gt;
 chown -R nagios:nagios /var/cache/msg/config-cache&lt;br /&gt;
 chown -R nagios:root /var/log/mddb&lt;br /&gt;
 chown -R nagios:root /var/log/pnp4nagios&lt;br /&gt;
 chown -R nagios:root /var/log/nagios&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
  useradd -g 40011 -u 10011 nagios&lt;br /&gt;
  useradd --group mysql -u 2730 mysql&lt;br /&gt;
  useradd -g mysql -u 2730 mysql&lt;br /&gt;
&lt;br /&gt;
   groupadd -g 40010 nagiosmaster&lt;br /&gt;
   groupadd -g 146 leftuser&lt;br /&gt;
&lt;br /&gt;
 yum install glite-security-voms-api-c-1.8.12-2.sl5.x86_64&lt;br /&gt;
 yum update perl-Net-SSLeay&lt;br /&gt;
 yum update perl-IO-Socket-SSL-1.01-1.fc6.noarch&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install lcg_util-1.7.6-1.sl5.x86_64&lt;br /&gt;
 yum install GFAL-client-1.11.8-2.sl5.x86_64 GFAL-client-1.11.8-2.sl5.i386&lt;br /&gt;
 yum install CGSI_gSOAP_2.7-1.3.3-1.sl5.x86_64&lt;br /&gt;
 yum install LFC-interfaces-1.7.3-1sec.sl5.x86_64 LFC-client-1.7.3-1sec.sl5.x86_64 lcg-dm-common-1.7.3-1sec.sl5.x86_64&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5747</id>
		<title>Nagios regional</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5747"/>
		<updated>2010-03-26T10:35:18Z</updated>

		<summary type="html">&lt;p&gt;LEROY: /* Annexe0 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Installation d&#039;une NOGIOS box pour le ROC France&lt;br /&gt;
&lt;br /&gt;
= 1)	Installation de base : =&lt;br /&gt;
a.	Machine installée par les sysadmin du CC : OS + VOBOX + certificat + pas dans les NIS&lt;br /&gt;
&lt;br /&gt;
b.	Accessible via gsissh (port 1975)&lt;br /&gt;
&lt;br /&gt;
= 2)	Action faite au préalable : =&lt;br /&gt;
a.	Faire la demande pour que la machine soit autorisée à récupérer les SAM tests : https://gus.fzk.de/ws/ticket_info.php?ticket=55132&lt;br /&gt;
&lt;br /&gt;
b.	Autoriser la nagios box à récupérer les proxy en mode « retrieval », et stocker un proxy depuis une UI récuperable par la nagiosBOX voir  [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe0 Annexe0]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
c.	Certificat utilisé pour :&lt;br /&gt;
&lt;br /&gt;
i.	                       Access to GOCDB PI for ROCS GOCDB PI level 2 required &lt;br /&gt;
&lt;br /&gt;
ii.	                       Recuperation de proxy pour les sondes locales&lt;br /&gt;
&lt;br /&gt;
d. s&#039;inscrire dans la mailing liste: regional-nagios-admins@cern.ch (très réactive)&lt;br /&gt;
&lt;br /&gt;
= 3)	Installation de Nagios =&lt;br /&gt;
Reference : https://twiki.cern.ch/twiki/bin/view/EGEE/GridMonitoringNcgYaim&lt;br /&gt;
== Installation des packages via yum, Ajout des repos suivant ==&lt;br /&gt;
 a.	mirrors-rpmforge (rpm rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm)&lt;br /&gt;
 b.	rpmforge-testing.repo&lt;br /&gt;
 c.	rpmforge.repo&lt;br /&gt;
 d.	glite-UI.repo&lt;br /&gt;
 e.	sa1-centos5-release.repo (rpm:  sa1-release-2-1.el5.noarch.rpm)&lt;br /&gt;
 f.	glite-BDII.repo&lt;br /&gt;
&lt;br /&gt;
Problèmes de dépendances rencontrées si besoin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe1 Annexe1] (mais j’avais dû oublier de faire un : yum install egee-NAGIOS)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Installation subversion ==&lt;br /&gt;
Certain fichier de config sont a recuperer via svn au CERN:&lt;br /&gt;
&lt;br /&gt;
 yum install subversion&lt;br /&gt;
 svn co http://svnweb.cern.ch/guest/sam/trunk/roc-config&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 cp /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm.orig&lt;br /&gt;
 cp roc-config/Hash.pm_55_ALL_CRIT /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm&lt;br /&gt;
&lt;br /&gt;
== Mysql ==&lt;br /&gt;
&lt;br /&gt;
1.	Installer la dernière version de Mysql (server + client) ; &lt;br /&gt;
&lt;br /&gt;
2.	configurer le mot de passe admin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2a] ;&lt;br /&gt;
&lt;br /&gt;
3.	Configurer les users utiles à la nagios Box se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2b] ;&lt;br /&gt;
&lt;br /&gt;
== Configuration via yaim et NCG (en 2 fois)==&lt;br /&gt;
&lt;br /&gt;
1.	Remplir /etc/ncg/ncg.localdb avec la liste des sites se referer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe3 Annexe3]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
2.	Remplir le /opt/glite/yaim/site-info.def voir [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe4 Annexe4] ;&lt;br /&gt;
&lt;br /&gt;
3.	groupadd nagios&lt;br /&gt;
&lt;br /&gt;
4.	modif des uids/gids : /opt/glite/yaim/examples/edgusers.conf [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe5 Annexe5]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
5.	lancement de la configuration automatique via yaim (All On One Box) :&lt;br /&gt;
 	&lt;br /&gt;
 	/opt/glite/yaim/bin/yaim -s /opt/glite/yaim/site-info.def -c -n glite-UI -n glite-NAGIOS&lt;br /&gt;
&lt;br /&gt;
6.	lancement de la configuration via NCG (All On One Box) :&lt;br /&gt;
&lt;br /&gt;
 /usr/sbin/ncg.pl&lt;br /&gt;
&lt;br /&gt;
.....MODIFICATION importante:: voir: https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
La partie:&lt;br /&gt;
#  Configure manually /etc/ncg/ncg.conf (Template can be found here: ncg.conf.template: )&lt;br /&gt;
- Switch off automatic generation of ncg.conf by YAIM (NAGIOS_NCG_ENABLE_CONFIG&amp;quot;=&amp;quot;false&amp;quot;)&lt;br /&gt;
- Take ncg.conf.template and copy it to /etc/ncg/ncg.conf&lt;br /&gt;
     - Set $ROC_NAME$&lt;br /&gt;
     - Set $YOUR_MYPROXY_SERVER$ (e.g. myproxy-fts.cern.ch)&lt;br /&gt;
     - Set $MYPROXY_NAME$ (e.g.: NagiosRetrieve-sam-ap-roc.cern.ch)&lt;br /&gt;
     - Set $NAGIOS_ROLE$ (e.g.: ngi, roc)&lt;br /&gt;
# Take Hash.pm file that we are currently using at the CERN ROC Nagios boxes. In this file, we have removed the metrics that do not belong to the SAM_Critical profile, so only the metrics defined at ROC_SAM_critical are configured, and not relevant services like SRMv1 are commented out. The file is located under /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm &lt;br /&gt;
&lt;br /&gt;
Pour éviter d&#039;avoir des sondes inappropriés.&lt;br /&gt;
&lt;br /&gt;
== Tuning the configuration ==&lt;br /&gt;
&lt;br /&gt;
1.	Verifier  dans /etc/sysconfig/nagios:&lt;br /&gt;
 LD_LIBRARY_PATH=/opt/classads/lib64:/opt/glite/lib64:/opt/globus/lib:/opt/c-ares/lib:/opt/classads/lib64  &lt;br /&gt;
&lt;br /&gt;
2.	Desactiver les notifications, dans les fichiers de conf: &lt;br /&gt;
 a.      /etc/nagios/nagios.cfg, désactiver les notifications:enable_notifications=0 ;log_notifications=0&lt;br /&gt;
 b.	 /etc/nagios/wlcg.d/host.templates.cfg&lt;br /&gt;
 c.	 /etc/nagios/wlcg.d/service.templates.cfg&lt;br /&gt;
&lt;br /&gt;
4.	N’autoriser que les dteam/France à visualiser notre interface nagios : modifier le fichier : &lt;br /&gt;
 /etc/voms2htpasswd.conf, avec : vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&lt;br /&gt;
Plus utile site le site-info.def est défini correctement:&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&#039;&lt;br /&gt;
&lt;br /&gt;
== ActiveMQ ==&lt;br /&gt;
 /usr/sbin/msg-to-queue --prefix /queue/grid.probe.metricOutput.EGEE.a635834332381123c8b296d02b682f8f --broker-uri stomp://prod-grid-msg.cern.ch:6163&lt;br /&gt;
 &lt;br /&gt;
[root@cclcgvmli03 cron.hourly]# cat check_msg-to-queue.sh&lt;br /&gt;
&lt;br /&gt;
Verifier les messages:&lt;br /&gt;
 /usr/libexec/grid-monitoring/plugins/nagios/recv_from_queue -v &lt;br /&gt;
&lt;br /&gt;
faire une update de perl-GridMon &lt;br /&gt;
 The problem here is in the message handler &lt;br /&gt;
 (/usr/lib/perl5/vendor_perl/5.8.8/GridMon/MsgHandler/MetricOutput.pm). &lt;br /&gt;
 Probe on WN reports hostname localhost.localdomain and serviceURI CE &lt;br /&gt;
 hostname. In the previous version message handler first checked hostname &lt;br /&gt;
 value and then serviceURI. That is the reason why Christine is seeing &lt;br /&gt;
 results for localhost.localdomain. However, we fixed this and the latest &lt;br /&gt;
 version (1.0.34) parses messages correctly.&lt;br /&gt;
&lt;br /&gt;
 yum update perl-GridMon&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== Systeme d&#039;information ==&lt;br /&gt;
La nagios Box doit etre enregistré dans la GOCDB &lt;br /&gt;
et publié dans le site-BDII:&lt;br /&gt;
 ldapsearch -x -H ldap://ccnagboxli01.in2p3.fr:2170 -b &#039;Mds-vo-name=resource,o=Grid&#039;&lt;br /&gt;
&lt;br /&gt;
= validation =&lt;br /&gt;
&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
&lt;br /&gt;
now you should publish your Nagios in your Site BDII&lt;br /&gt;
And we should declare the node in the GOCDB: Regional-NAGIOS ou National-Nagios, a determiner&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
liste des sondes a valider: d&#039;après: https://twiki.cern.ch/twiki/bin/view/LCG/SAMCriticalTestsForCODs&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Type de Noeuds&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Valid (Y or N)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
APEL&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Pas de métric ?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
BDII (site and TOP)&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
- Probleme identifié pour la variable LCG_GFAL_INFOSYS quand c&#039;est une liste (CE lpnce.in2p3.fr):&lt;br /&gt;
LCG_GFAL_INFOSYS=topbdii.grif.fr:2170,cclcgtopbdii01.in2p3.fr:2170,lapp-bdii01.in2p3.fr:2170&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CREAMCE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
FTS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y and NO: For the check_command those options should be added: &lt;br /&gt;
--cert /etc/nagios/globus/hostcert.pem   --key /etc/nagios/globus/hostkey.pem  -x $USER2$ (this should be fixed in the next release)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
gRB/WMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_C&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: mais il faudrait peut etre demander au site de supporter la VO ops pour que leur LFC soit testé (lfc-ls et lfc-ping)?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_L&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: mais il faudrait peut etre demander au site de supporter la VO ops pour que leur LFC soit testé (lfc-ls et lfc-ping)?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MPI&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MyProxy&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RB&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nobody&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Service Deprecated. Does NOT apply in Nagios&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RGMA / MON&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y (certificate lifetime only)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
&lt;br /&gt;
SRMv2&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOBOX&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
= Annexe0 =&lt;br /&gt;
&lt;br /&gt;
Sur le myproxyserver, il faut que le nagios server soit &amp;quot;trusted retriever&amp;quot; et &amp;quot;authorized retrievers&amp;quot;:&lt;br /&gt;
 [cleroy@grid08 ~]$ grep cclcgvmli03 /opt/glite/etc/myproxy-server.conf&lt;br /&gt;
 trusted_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 authorized_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Sur une UI:&lt;br /&gt;
&lt;br /&gt;
 voms-proxy-init -voms ops:/ops/Role=lcgadmin&lt;br /&gt;
 myproxy-init -c 336 -k nagios_roc_fr2-ops -s myproxy.grif.fr -l nagios  -x -Z &amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-IN2P3/CN=ccnagboxli01.in2p3.fr&amp;quot;&lt;br /&gt;
&lt;br /&gt;
= Annexe 1 =&lt;br /&gt;
 rpm -ivh http://www.sysadmin.hep.ac.uk/rpms/egee-SA1/centos5/x86_64/sa1-release-2-1.el5.noarch.rpm&lt;br /&gt;
 rpm -ivh  http://packages.sw.be/rpmforge-release/rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm&lt;br /&gt;
&lt;br /&gt;
 yum install atp&lt;br /&gt;
 yum install bouncycastle&lt;br /&gt;
 yum install broker&lt;br /&gt;
 yum install broker-cache&lt;br /&gt;
 yum install dcache-srmclient&lt;br /&gt;
 yum install dummy-ca-certs&lt;br /&gt;
 yum install egee-NAGIOS&lt;br /&gt;
 yum install egee-NAGIOS egee-NRPE&lt;br /&gt;
 yum install egee-NRPE&lt;br /&gt;
 yum install fetch-crl&lt;br /&gt;
 yum install fipscheck fipscheck-lib&lt;br /&gt;
 yum install glite-UI&lt;br /&gt;
 yum install glite-security-voms-clients&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install glite-yaim-core&lt;br /&gt;
 yum install glite-yaim-nagios&lt;br /&gt;
 yum install httpd&lt;br /&gt;
 yum install jdk&lt;br /&gt;
 yum install lcg-CA&lt;br /&gt;
 yum install lcg-CA egee-NAGIOS&lt;br /&gt;
 yum install lcg_util&lt;br /&gt;
 yum install mddb&lt;br /&gt;
 yum install msg-publish-simple&lt;br /&gt;
 yum install myproxy&lt;br /&gt;
 yum install mysql-client&lt;br /&gt;
 yum install mysql-server&lt;br /&gt;
 yum install nagios-proxy-refresh&lt;br /&gt;
 yum install perl-Config-Tiny&lt;br /&gt;
 yum install perl-DBD-MySQL&lt;br /&gt;
 yum install perl-rrdtool-1.3.8-2.el5.rf.x86_64&lt;br /&gt;
 yum install python-yaml&lt;br /&gt;
 yum install sun-jaf&lt;br /&gt;
 yum install uberftp-client&lt;br /&gt;
 yum install vdt_globus_rm_client&lt;br /&gt;
&lt;br /&gt;
 yum update glite-yaim-clients&lt;br /&gt;
 yum update glite-yaim-core&lt;br /&gt;
 yum update glite-yaim-nagios&lt;br /&gt;
 yum update mysql-server&lt;br /&gt;
 yum update perl-DBI&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe2 =&lt;br /&gt;
a)Mot de passe admin mysql :&lt;br /&gt;
Yum pour recupérer la derniere version de Mysql :&lt;br /&gt;
&#039;&#039;MySQL-server-community&#039;&#039;, ne pas oublier le client (pas de dépendance dessus)&lt;br /&gt;
Demmarrage de mysql avec --skip-grant-tables (pour ne pas avoir de mot de passe a rentrer)&lt;br /&gt;
 mysqld_safe --skip-grant-tables &amp;amp;&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root &lt;br /&gt;
 update user set password=PASSWORD(&amp;quot;NEW-ROOT-PASSWORD&amp;quot;) where User=&#039;root&#039;;&lt;br /&gt;
&lt;br /&gt;
b)creation des users pour le nagios regional:&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root -p&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON nagios.* TO &#039;ndouser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON atp.* TO &#039;atpuser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe 3 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /etc/ncg/ncg.localdb&lt;br /&gt;
 #&lt;br /&gt;
 # Local Rules file to modify NCG configuration&lt;br /&gt;
 #&lt;br /&gt;
 SITE!AUVERGRID&lt;br /&gt;
 SITE!CGG-LCG2&lt;br /&gt;
 SITE!ESRF&lt;br /&gt;
 SITE!GRIF&lt;br /&gt;
 SITE!IBCP-GBIO&lt;br /&gt;
 SITE!IN2P3-CC&lt;br /&gt;
 SITE!IN2P3-CC-PPS&lt;br /&gt;
 SITE!IN2P3-CC-T2&lt;br /&gt;
 SITE!IN2P3-CPPM&lt;br /&gt;
 SITE!IN2P3-IPNL&lt;br /&gt;
 SITE!IN2P3-IRES&lt;br /&gt;
 SITE!IN2P3-LAPP&lt;br /&gt;
 SITE!IN2P3-LPC&lt;br /&gt;
 SITE!IN2P3-LPSC&lt;br /&gt;
 SITE!IN2P3-SUBATECH&lt;br /&gt;
 SITE!IPSL-IPGP-LCG2&lt;br /&gt;
 SITE!M3PEC&lt;br /&gt;
 SITE!MSFG&lt;br /&gt;
 SITE!MSFG-MULTI&lt;br /&gt;
 SITE!MSFG-OPEN&lt;br /&gt;
 SITE!OBSPM&lt;br /&gt;
 SITE!PARIS-UREC-IPV6&lt;br /&gt;
 SITE!SN-UCAD&lt;br /&gt;
 SITE!ROC-FR&lt;br /&gt;
 SITE!SOLEIL&lt;br /&gt;
 SITE!StratusLab&lt;br /&gt;
 [root@cclcgvmli03 ~]#&lt;br /&gt;
 &lt;br /&gt;
= Annexe 4 =&lt;br /&gt;
&lt;br /&gt;
 SITE_EMAIL=c.leroy@cea.fr&lt;br /&gt;
 SITE_NAME=ROC-FR&lt;br /&gt;
 RB_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 WMS_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 PX_HOST=myproxy.grif.fr&lt;br /&gt;
 BDII_HOST=topbdii.grif.fr&lt;br /&gt;
 SITE_BDII_HOST=bdii.grif.fr&lt;br /&gt;
 MON_HOST=node06.datagrid.cea.fr&lt;br /&gt;
 VOS=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 DTEAM_GROUP_ENABLE=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 VO_DTEAM_SW_DIR=$VO_SW_DIR/dteam&lt;br /&gt;
 VO_DTEAM_DEFAULT_SE=$SE_HOST&lt;br /&gt;
 VO_DTEAM_STORAGE_DIR=$CLASSIC_STORAGE_DIR/dteam&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/&#039;&lt;br /&gt;
 VO_DTEAM_VOMSES=&amp;quot;&#039;dteam lcg-voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=lcg-voms.cern.ch dteam 24&#039; &#039;dteam    voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=voms.cern.ch dteam 24&#039;&amp;quot;&lt;br /&gt;
 VO_DTEAM_VOMS_CA_DN=&amp;quot;&#039;/DC=ch/DC=cern/CN=CERN Trusted Certification Authority&#039; &#039;/DC=ch/DC=cern/CN=CERN Trusted   Certification Authority&#039;&amp;quot;&lt;br /&gt;
 NAGIOS_HOST=cclcgvmli03.in2p3.fr&lt;br /&gt;
 NAGIOS_ADMIN_DNS=&amp;quot;/O=GRID-FR/C=FR/O=CEA/OU=IRFU/CN=Christine Leroy&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=Nadia Lajili&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=LPC/CN=Emmanuel Medernach&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CPPM/CN=Juan Carlos Carranza&amp;quot;&lt;br /&gt;
 NAGIOS_NCG_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_NAGIOS_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_GOCDB_ROC_NAME=France&lt;br /&gt;
 ROC_NAME=France&lt;br /&gt;
 NCG_PROBES_TYPE=remote,native,local&lt;br /&gt;
 NCG_VO=dteam&lt;br /&gt;
 NAGIOS_MYPROXY_NAME=nagios_roc_fr2&lt;br /&gt;
 NAGIOS_MYPROXY_USER=nagios&lt;br /&gt;
 MSG_BROKER_CACHE_NETWORK=PROD&lt;br /&gt;
 NAGIOS_ROLE=roc&lt;br /&gt;
 NAGIOS_HTTPD_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_SUDO_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_CGI_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_LDAP_FILTER=GlueSiteOtherInfo=EGEE_ROC=France&lt;br /&gt;
 NAGIOS_DB_PASS=x&lt;br /&gt;
 NAGIOS_NSCA_PASS=x&lt;br /&gt;
 MYSQL_ADMIN=x&lt;br /&gt;
 ATP_DB_PASS=x&lt;br /&gt;
 MDDB_DB_PASS=x&lt;br /&gt;
 MS_DB_PASS=x&lt;br /&gt;
 MYSQL_PASSWORD=x&lt;br /&gt;
 MYEGEE_DB_PASS=x&lt;br /&gt;
&lt;br /&gt;
= Annexe 5 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /opt/glite/yaim/examples/edgusers.conf&lt;br /&gt;
 11151:${DPMMGR_USER}:11151:${DPMMGR_GROUP}:DPM user:&lt;br /&gt;
 11152:${EDG_USER}:11152,11156:${EDG_GROUP},${INFOSYS_GROUP}:EDG user:${EDG_HOME_DIR}&lt;br /&gt;
 11153:${EDGINFO_USER}:11153,1156:${EDGINFO_USER},${INFOSYS_GROUP}:EDG info user:${EDGINFO_HOME_DIR}&lt;br /&gt;
 11154:${RGMA_USER}:11154,1156:${RGMA_GROUP},${INFOSYS_GROUP}:RGMA user:${INSTALL_ROOT}/glite/etc/rgma&lt;br /&gt;
 11155:${GLITE_USER}:11155:${GLITE_GROUP}:gLite user:${GLITE_HOME_DIR}&lt;br /&gt;
 11156:${BDII_USER}:11158:${BDII_GROUP}:BDII user:${BDII_HOME_DIR}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Annexe 6 =&lt;br /&gt;
&lt;br /&gt;
Probleme rencontré sur ccnagboxli01 (arret de ypbind + rpm manquant)&lt;br /&gt;
 chown -R nagios:nagios /var/spool/pnp4nagios&lt;br /&gt;
 chown -R nagios:nagios /var/spool/msg-nagios-bridge&lt;br /&gt;
 chown root:nagios /etc/atp/atp_db.conf&lt;br /&gt;
 chown root:nagios /etc/mddb/databases.yml&lt;br /&gt;
 chown nagios:apache /var/nagios/rw&lt;br /&gt;
 chown -R nagios:apache /var/nagios/rw&lt;br /&gt;
 chown root:nagios /etc/nagios/plugins/send_to_db.ini&lt;br /&gt;
 chown -R nagios:nagios /var/cache/msg/config-cache&lt;br /&gt;
 chown -R nagios:root /var/log/mddb&lt;br /&gt;
 chown -R nagios:root /var/log/pnp4nagios&lt;br /&gt;
 chown -R nagios:root /var/log/nagios&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
  useradd -g 40011 -u 10011 nagios&lt;br /&gt;
  useradd --group mysql -u 2730 mysql&lt;br /&gt;
  useradd -g mysql -u 2730 mysql&lt;br /&gt;
&lt;br /&gt;
   groupadd -g 40010 nagiosmaster&lt;br /&gt;
   groupadd -g 146 leftuser&lt;br /&gt;
&lt;br /&gt;
 yum install glite-security-voms-api-c-1.8.12-2.sl5.x86_64&lt;br /&gt;
 yum update perl-Net-SSLeay&lt;br /&gt;
 yum update perl-IO-Socket-SSL-1.01-1.fc6.noarch&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install lcg_util-1.7.6-1.sl5.x86_64&lt;br /&gt;
 yum install GFAL-client-1.11.8-2.sl5.x86_64 GFAL-client-1.11.8-2.sl5.i386&lt;br /&gt;
 yum install CGSI_gSOAP_2.7-1.3.3-1.sl5.x86_64&lt;br /&gt;
 yum install LFC-interfaces-1.7.3-1sec.sl5.x86_64 LFC-client-1.7.3-1sec.sl5.x86_64 lcg-dm-common-1.7.3-1sec.sl5.x86_64&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5745</id>
		<title>Nagios regional</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5745"/>
		<updated>2010-03-25T09:03:18Z</updated>

		<summary type="html">&lt;p&gt;LEROY: /* validation */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Installation d&#039;une NOGIOS box pour le ROC France&lt;br /&gt;
&lt;br /&gt;
= 1)	Installation de base : =&lt;br /&gt;
a.	Machine installée par les sysadmin du CC : OS + VOBOX + certificat + pas dans les NIS&lt;br /&gt;
&lt;br /&gt;
b.	Accessible via gsissh (port 1975)&lt;br /&gt;
&lt;br /&gt;
= 2)	Action faite au préalable : =&lt;br /&gt;
a.	Faire la demande pour que la machine soit autorisée à récupérer les SAM tests : https://gus.fzk.de/ws/ticket_info.php?ticket=55132&lt;br /&gt;
&lt;br /&gt;
b.	Autoriser la nagios box à récupérer les proxy en mode « retrieval », et stocker un proxy depuis une UI récuperable par la nagiosBOX voir  [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe0 Annexe0]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
c.	Certificat utilisé pour :&lt;br /&gt;
&lt;br /&gt;
i.	                       Access to GOCDB PI for ROCS GOCDB PI level 2 required &lt;br /&gt;
&lt;br /&gt;
ii.	                       Recuperation de proxy pour les sondes locales&lt;br /&gt;
&lt;br /&gt;
d. s&#039;inscrire dans la mailing liste: regional-nagios-admins@cern.ch (très réactive)&lt;br /&gt;
&lt;br /&gt;
= 3)	Installation de Nagios =&lt;br /&gt;
Reference : https://twiki.cern.ch/twiki/bin/view/EGEE/GridMonitoringNcgYaim&lt;br /&gt;
== Installation des packages via yum, Ajout des repos suivant ==&lt;br /&gt;
 a.	mirrors-rpmforge (rpm rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm)&lt;br /&gt;
 b.	rpmforge-testing.repo&lt;br /&gt;
 c.	rpmforge.repo&lt;br /&gt;
 d.	glite-UI.repo&lt;br /&gt;
 e.	sa1-centos5-release.repo (rpm:  sa1-release-2-1.el5.noarch.rpm)&lt;br /&gt;
 f.	glite-BDII.repo&lt;br /&gt;
&lt;br /&gt;
Problèmes de dépendances rencontrées si besoin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe1 Annexe1] (mais j’avais dû oublier de faire un : yum install egee-NAGIOS)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Installation subversion ==&lt;br /&gt;
Certain fichier de config sont a recuperer via svn au CERN:&lt;br /&gt;
&lt;br /&gt;
 yum install subversion&lt;br /&gt;
 svn co http://svnweb.cern.ch/guest/sam/trunk/roc-config&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 cp /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm.orig&lt;br /&gt;
 cp roc-config/Hash.pm_55_ALL_CRIT /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm&lt;br /&gt;
&lt;br /&gt;
== Mysql ==&lt;br /&gt;
&lt;br /&gt;
1.	Installer la dernière version de Mysql (server + client) ; &lt;br /&gt;
&lt;br /&gt;
2.	configurer le mot de passe admin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2a] ;&lt;br /&gt;
&lt;br /&gt;
3.	Configurer les users utiles à la nagios Box se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2b] ;&lt;br /&gt;
&lt;br /&gt;
== Configuration via yaim et NCG (en 2 fois)==&lt;br /&gt;
&lt;br /&gt;
1.	Remplir /etc/ncg/ncg.localdb avec la liste des sites se referer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe3 Annexe3]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
2.	Remplir le /opt/glite/yaim/site-info.def voir [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe4 Annexe4] ;&lt;br /&gt;
&lt;br /&gt;
3.	groupadd nagios&lt;br /&gt;
&lt;br /&gt;
4.	modif des uids/gids : /opt/glite/yaim/examples/edgusers.conf [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe5 Annexe5]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
5.	lancement de la configuration automatique via yaim (All On One Box) :&lt;br /&gt;
 	&lt;br /&gt;
 	/opt/glite/yaim/bin/yaim -s /opt/glite/yaim/site-info.def -c -n glite-UI -n glite-NAGIOS&lt;br /&gt;
&lt;br /&gt;
6.	lancement de la configuration via NCG (All On One Box) :&lt;br /&gt;
&lt;br /&gt;
 /usr/sbin/ncg.pl&lt;br /&gt;
&lt;br /&gt;
.....MODIFICATION importante:: voir: https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
La partie:&lt;br /&gt;
#  Configure manually /etc/ncg/ncg.conf (Template can be found here: ncg.conf.template: )&lt;br /&gt;
- Switch off automatic generation of ncg.conf by YAIM (NAGIOS_NCG_ENABLE_CONFIG&amp;quot;=&amp;quot;false&amp;quot;)&lt;br /&gt;
- Take ncg.conf.template and copy it to /etc/ncg/ncg.conf&lt;br /&gt;
     - Set $ROC_NAME$&lt;br /&gt;
     - Set $YOUR_MYPROXY_SERVER$ (e.g. myproxy-fts.cern.ch)&lt;br /&gt;
     - Set $MYPROXY_NAME$ (e.g.: NagiosRetrieve-sam-ap-roc.cern.ch)&lt;br /&gt;
     - Set $NAGIOS_ROLE$ (e.g.: ngi, roc)&lt;br /&gt;
# Take Hash.pm file that we are currently using at the CERN ROC Nagios boxes. In this file, we have removed the metrics that do not belong to the SAM_Critical profile, so only the metrics defined at ROC_SAM_critical are configured, and not relevant services like SRMv1 are commented out. The file is located under /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm &lt;br /&gt;
&lt;br /&gt;
Pour éviter d&#039;avoir des sondes inappropriés.&lt;br /&gt;
&lt;br /&gt;
== Tuning the configuration ==&lt;br /&gt;
&lt;br /&gt;
1.	Verifier  dans /etc/sysconfig/nagios:&lt;br /&gt;
 LD_LIBRARY_PATH=/opt/classads/lib64:/opt/glite/lib64:/opt/globus/lib:/opt/c-ares/lib:/opt/classads/lib64  &lt;br /&gt;
&lt;br /&gt;
2.	Desactiver les notifications, dans les fichiers de conf: &lt;br /&gt;
 a.      /etc/nagios/nagios.cfg, désactiver les notifications:enable_notifications=0 ;log_notifications=0&lt;br /&gt;
 b.	 /etc/nagios/wlcg.d/host.templates.cfg&lt;br /&gt;
 c.	 /etc/nagios/wlcg.d/service.templates.cfg&lt;br /&gt;
&lt;br /&gt;
4.	N’autoriser que les dteam/France à visualiser notre interface nagios : modifier le fichier : &lt;br /&gt;
 /etc/voms2htpasswd.conf, avec : vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&lt;br /&gt;
Plus utile site le site-info.def est défini correctement:&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&#039;&lt;br /&gt;
&lt;br /&gt;
== ActiveMQ ==&lt;br /&gt;
 /usr/sbin/msg-to-queue --prefix /queue/grid.probe.metricOutput.EGEE.a635834332381123c8b296d02b682f8f --broker-uri stomp://prod-grid-msg.cern.ch:6163&lt;br /&gt;
 &lt;br /&gt;
[root@cclcgvmli03 cron.hourly]# cat check_msg-to-queue.sh&lt;br /&gt;
&lt;br /&gt;
Verifier les messages:&lt;br /&gt;
 /usr/libexec/grid-monitoring/plugins/nagios/recv_from_queue -v &lt;br /&gt;
&lt;br /&gt;
faire une update de perl-GridMon &lt;br /&gt;
 The problem here is in the message handler &lt;br /&gt;
 (/usr/lib/perl5/vendor_perl/5.8.8/GridMon/MsgHandler/MetricOutput.pm). &lt;br /&gt;
 Probe on WN reports hostname localhost.localdomain and serviceURI CE &lt;br /&gt;
 hostname. In the previous version message handler first checked hostname &lt;br /&gt;
 value and then serviceURI. That is the reason why Christine is seeing &lt;br /&gt;
 results for localhost.localdomain. However, we fixed this and the latest &lt;br /&gt;
 version (1.0.34) parses messages correctly.&lt;br /&gt;
&lt;br /&gt;
 yum update perl-GridMon&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== Systeme d&#039;information ==&lt;br /&gt;
La nagios Box doit etre enregistré dans la GOCDB &lt;br /&gt;
et publié dans le site-BDII:&lt;br /&gt;
 ldapsearch -x -H ldap://ccnagboxli01.in2p3.fr:2170 -b &#039;Mds-vo-name=resource,o=Grid&#039;&lt;br /&gt;
&lt;br /&gt;
= validation =&lt;br /&gt;
&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
&lt;br /&gt;
now you should publish your Nagios in your Site BDII&lt;br /&gt;
And we should declare the node in the GOCDB: Regional-NAGIOS ou National-Nagios, a determiner&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
liste des sondes a valider: d&#039;après: https://twiki.cern.ch/twiki/bin/view/LCG/SAMCriticalTestsForCODs&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Type de Noeuds&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Valid (Y or N)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
APEL&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Pas de métric ?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
BDII (site and TOP)&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
- Probleme identifié pour la variable LCG_GFAL_INFOSYS quand c&#039;est une liste (CE lpnce.in2p3.fr):&lt;br /&gt;
LCG_GFAL_INFOSYS=topbdii.grif.fr:2170,cclcgtopbdii01.in2p3.fr:2170,lapp-bdii01.in2p3.fr:2170&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CREAMCE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
FTS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y and NO: For the check_command those options should be added: &lt;br /&gt;
--cert /etc/nagios/globus/hostcert.pem   --key /etc/nagios/globus/hostkey.pem  -x $USER2$ (this should be fixed in the next release)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
gRB/WMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_C&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: mais il faudrait peut etre demander au site de supporter la VO ops pour que leur LFC soit testé (lfc-ls et lfc-ping)?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_L&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: mais il faudrait peut etre demander au site de supporter la VO ops pour que leur LFC soit testé (lfc-ls et lfc-ping)?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MPI&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MyProxy&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RB&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nobody&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Service Deprecated. Does NOT apply in Nagios&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RGMA / MON&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y (certificate lifetime only)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
&lt;br /&gt;
SRMv2&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOBOX&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
= Annexe0 =&lt;br /&gt;
&lt;br /&gt;
Sur le myproxyserver, il faut que le nagios server soit &amp;quot;trusted retriever&amp;quot; et &amp;quot;authorized retrievers&amp;quot;:&lt;br /&gt;
 [cleroy@grid08 ~]$ grep cclcgvmli03 /opt/glite/etc/myproxy-server.conf&lt;br /&gt;
 trusted_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 authorized_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Sur une UI:&lt;br /&gt;
&lt;br /&gt;
 voms-proxy-init -voms ops:/ops/Role=lcgadmin&lt;br /&gt;
 myproxy-init -c 336 -k nagios_roc_fr2-ops -s myproxy.grif.fr -l nagios  -x -Z &amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&amp;quot;&lt;br /&gt;
&lt;br /&gt;
= Annexe 1 =&lt;br /&gt;
 rpm -ivh http://www.sysadmin.hep.ac.uk/rpms/egee-SA1/centos5/x86_64/sa1-release-2-1.el5.noarch.rpm&lt;br /&gt;
 rpm -ivh  http://packages.sw.be/rpmforge-release/rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm&lt;br /&gt;
&lt;br /&gt;
 yum install atp&lt;br /&gt;
 yum install bouncycastle&lt;br /&gt;
 yum install broker&lt;br /&gt;
 yum install broker-cache&lt;br /&gt;
 yum install dcache-srmclient&lt;br /&gt;
 yum install dummy-ca-certs&lt;br /&gt;
 yum install egee-NAGIOS&lt;br /&gt;
 yum install egee-NAGIOS egee-NRPE&lt;br /&gt;
 yum install egee-NRPE&lt;br /&gt;
 yum install fetch-crl&lt;br /&gt;
 yum install fipscheck fipscheck-lib&lt;br /&gt;
 yum install glite-UI&lt;br /&gt;
 yum install glite-security-voms-clients&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install glite-yaim-core&lt;br /&gt;
 yum install glite-yaim-nagios&lt;br /&gt;
 yum install httpd&lt;br /&gt;
 yum install jdk&lt;br /&gt;
 yum install lcg-CA&lt;br /&gt;
 yum install lcg-CA egee-NAGIOS&lt;br /&gt;
 yum install lcg_util&lt;br /&gt;
 yum install mddb&lt;br /&gt;
 yum install msg-publish-simple&lt;br /&gt;
 yum install myproxy&lt;br /&gt;
 yum install mysql-client&lt;br /&gt;
 yum install mysql-server&lt;br /&gt;
 yum install nagios-proxy-refresh&lt;br /&gt;
 yum install perl-Config-Tiny&lt;br /&gt;
 yum install perl-DBD-MySQL&lt;br /&gt;
 yum install perl-rrdtool-1.3.8-2.el5.rf.x86_64&lt;br /&gt;
 yum install python-yaml&lt;br /&gt;
 yum install sun-jaf&lt;br /&gt;
 yum install uberftp-client&lt;br /&gt;
 yum install vdt_globus_rm_client&lt;br /&gt;
&lt;br /&gt;
 yum update glite-yaim-clients&lt;br /&gt;
 yum update glite-yaim-core&lt;br /&gt;
 yum update glite-yaim-nagios&lt;br /&gt;
 yum update mysql-server&lt;br /&gt;
 yum update perl-DBI&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe2 =&lt;br /&gt;
a)Mot de passe admin mysql :&lt;br /&gt;
Yum pour recupérer la derniere version de Mysql :&lt;br /&gt;
&#039;&#039;MySQL-server-community&#039;&#039;, ne pas oublier le client (pas de dépendance dessus)&lt;br /&gt;
Demmarrage de mysql avec --skip-grant-tables (pour ne pas avoir de mot de passe a rentrer)&lt;br /&gt;
 mysqld_safe --skip-grant-tables &amp;amp;&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root &lt;br /&gt;
 update user set password=PASSWORD(&amp;quot;NEW-ROOT-PASSWORD&amp;quot;) where User=&#039;root&#039;;&lt;br /&gt;
&lt;br /&gt;
b)creation des users pour le nagios regional:&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root -p&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON nagios.* TO &#039;ndouser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON atp.* TO &#039;atpuser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe 3 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /etc/ncg/ncg.localdb&lt;br /&gt;
 #&lt;br /&gt;
 # Local Rules file to modify NCG configuration&lt;br /&gt;
 #&lt;br /&gt;
 SITE!AUVERGRID&lt;br /&gt;
 SITE!CGG-LCG2&lt;br /&gt;
 SITE!ESRF&lt;br /&gt;
 SITE!GRIF&lt;br /&gt;
 SITE!IBCP-GBIO&lt;br /&gt;
 SITE!IN2P3-CC&lt;br /&gt;
 SITE!IN2P3-CC-PPS&lt;br /&gt;
 SITE!IN2P3-CC-T2&lt;br /&gt;
 SITE!IN2P3-CPPM&lt;br /&gt;
 SITE!IN2P3-IPNL&lt;br /&gt;
 SITE!IN2P3-IRES&lt;br /&gt;
 SITE!IN2P3-LAPP&lt;br /&gt;
 SITE!IN2P3-LPC&lt;br /&gt;
 SITE!IN2P3-LPSC&lt;br /&gt;
 SITE!IN2P3-SUBATECH&lt;br /&gt;
 SITE!IPSL-IPGP-LCG2&lt;br /&gt;
 SITE!M3PEC&lt;br /&gt;
 SITE!MSFG&lt;br /&gt;
 SITE!MSFG-MULTI&lt;br /&gt;
 SITE!MSFG-OPEN&lt;br /&gt;
 SITE!OBSPM&lt;br /&gt;
 SITE!PARIS-UREC-IPV6&lt;br /&gt;
 SITE!SN-UCAD&lt;br /&gt;
 SITE!ROC-FR&lt;br /&gt;
 SITE!SOLEIL&lt;br /&gt;
 SITE!StratusLab&lt;br /&gt;
 [root@cclcgvmli03 ~]#&lt;br /&gt;
 &lt;br /&gt;
= Annexe 4 =&lt;br /&gt;
&lt;br /&gt;
 SITE_EMAIL=c.leroy@cea.fr&lt;br /&gt;
 SITE_NAME=ROC-FR&lt;br /&gt;
 RB_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 WMS_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 PX_HOST=myproxy.grif.fr&lt;br /&gt;
 BDII_HOST=topbdii.grif.fr&lt;br /&gt;
 SITE_BDII_HOST=bdii.grif.fr&lt;br /&gt;
 MON_HOST=node06.datagrid.cea.fr&lt;br /&gt;
 VOS=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 DTEAM_GROUP_ENABLE=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 VO_DTEAM_SW_DIR=$VO_SW_DIR/dteam&lt;br /&gt;
 VO_DTEAM_DEFAULT_SE=$SE_HOST&lt;br /&gt;
 VO_DTEAM_STORAGE_DIR=$CLASSIC_STORAGE_DIR/dteam&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/&#039;&lt;br /&gt;
 VO_DTEAM_VOMSES=&amp;quot;&#039;dteam lcg-voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=lcg-voms.cern.ch dteam 24&#039; &#039;dteam    voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=voms.cern.ch dteam 24&#039;&amp;quot;&lt;br /&gt;
 VO_DTEAM_VOMS_CA_DN=&amp;quot;&#039;/DC=ch/DC=cern/CN=CERN Trusted Certification Authority&#039; &#039;/DC=ch/DC=cern/CN=CERN Trusted   Certification Authority&#039;&amp;quot;&lt;br /&gt;
 NAGIOS_HOST=cclcgvmli03.in2p3.fr&lt;br /&gt;
 NAGIOS_ADMIN_DNS=&amp;quot;/O=GRID-FR/C=FR/O=CEA/OU=IRFU/CN=Christine Leroy&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=Nadia Lajili&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=LPC/CN=Emmanuel Medernach&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CPPM/CN=Juan Carlos Carranza&amp;quot;&lt;br /&gt;
 NAGIOS_NCG_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_NAGIOS_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_GOCDB_ROC_NAME=France&lt;br /&gt;
 ROC_NAME=France&lt;br /&gt;
 NCG_PROBES_TYPE=remote,native,local&lt;br /&gt;
 NCG_VO=dteam&lt;br /&gt;
 NAGIOS_MYPROXY_NAME=nagios_roc_fr2&lt;br /&gt;
 NAGIOS_MYPROXY_USER=nagios&lt;br /&gt;
 MSG_BROKER_CACHE_NETWORK=PROD&lt;br /&gt;
 NAGIOS_ROLE=roc&lt;br /&gt;
 NAGIOS_HTTPD_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_SUDO_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_CGI_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_LDAP_FILTER=GlueSiteOtherInfo=EGEE_ROC=France&lt;br /&gt;
 NAGIOS_DB_PASS=x&lt;br /&gt;
 NAGIOS_NSCA_PASS=x&lt;br /&gt;
 MYSQL_ADMIN=x&lt;br /&gt;
 ATP_DB_PASS=x&lt;br /&gt;
 MDDB_DB_PASS=x&lt;br /&gt;
 MS_DB_PASS=x&lt;br /&gt;
 MYSQL_PASSWORD=x&lt;br /&gt;
 MYEGEE_DB_PASS=x&lt;br /&gt;
&lt;br /&gt;
= Annexe 5 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /opt/glite/yaim/examples/edgusers.conf&lt;br /&gt;
 11151:${DPMMGR_USER}:11151:${DPMMGR_GROUP}:DPM user:&lt;br /&gt;
 11152:${EDG_USER}:11152,11156:${EDG_GROUP},${INFOSYS_GROUP}:EDG user:${EDG_HOME_DIR}&lt;br /&gt;
 11153:${EDGINFO_USER}:11153,1156:${EDGINFO_USER},${INFOSYS_GROUP}:EDG info user:${EDGINFO_HOME_DIR}&lt;br /&gt;
 11154:${RGMA_USER}:11154,1156:${RGMA_GROUP},${INFOSYS_GROUP}:RGMA user:${INSTALL_ROOT}/glite/etc/rgma&lt;br /&gt;
 11155:${GLITE_USER}:11155:${GLITE_GROUP}:gLite user:${GLITE_HOME_DIR}&lt;br /&gt;
 11156:${BDII_USER}:11158:${BDII_GROUP}:BDII user:${BDII_HOME_DIR}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Annexe 6 =&lt;br /&gt;
&lt;br /&gt;
Probleme rencontré sur ccnagboxli01 (arret de ypbind + rpm manquant)&lt;br /&gt;
 chown -R nagios:nagios /var/spool/pnp4nagios&lt;br /&gt;
 chown -R nagios:nagios /var/spool/msg-nagios-bridge&lt;br /&gt;
 chown root:nagios /etc/atp/atp_db.conf&lt;br /&gt;
 chown root:nagios /etc/mddb/databases.yml&lt;br /&gt;
 chown nagios:apache /var/nagios/rw&lt;br /&gt;
 chown -R nagios:apache /var/nagios/rw&lt;br /&gt;
 chown root:nagios /etc/nagios/plugins/send_to_db.ini&lt;br /&gt;
 chown -R nagios:nagios /var/cache/msg/config-cache&lt;br /&gt;
 chown -R nagios:root /var/log/mddb&lt;br /&gt;
 chown -R nagios:root /var/log/pnp4nagios&lt;br /&gt;
 chown -R nagios:root /var/log/nagios&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
  useradd -g 40011 -u 10011 nagios&lt;br /&gt;
  useradd --group mysql -u 2730 mysql&lt;br /&gt;
  useradd -g mysql -u 2730 mysql&lt;br /&gt;
&lt;br /&gt;
   groupadd -g 40010 nagiosmaster&lt;br /&gt;
   groupadd -g 146 leftuser&lt;br /&gt;
&lt;br /&gt;
 yum install glite-security-voms-api-c-1.8.12-2.sl5.x86_64&lt;br /&gt;
 yum update perl-Net-SSLeay&lt;br /&gt;
 yum update perl-IO-Socket-SSL-1.01-1.fc6.noarch&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install lcg_util-1.7.6-1.sl5.x86_64&lt;br /&gt;
 yum install GFAL-client-1.11.8-2.sl5.x86_64 GFAL-client-1.11.8-2.sl5.i386&lt;br /&gt;
 yum install CGSI_gSOAP_2.7-1.3.3-1.sl5.x86_64&lt;br /&gt;
 yum install LFC-interfaces-1.7.3-1sec.sl5.x86_64 LFC-client-1.7.3-1sec.sl5.x86_64 lcg-dm-common-1.7.3-1sec.sl5.x86_64&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5744</id>
		<title>Nagios regional</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5744"/>
		<updated>2010-03-25T09:02:38Z</updated>

		<summary type="html">&lt;p&gt;LEROY: /* validation */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Installation d&#039;une NOGIOS box pour le ROC France&lt;br /&gt;
&lt;br /&gt;
= 1)	Installation de base : =&lt;br /&gt;
a.	Machine installée par les sysadmin du CC : OS + VOBOX + certificat + pas dans les NIS&lt;br /&gt;
&lt;br /&gt;
b.	Accessible via gsissh (port 1975)&lt;br /&gt;
&lt;br /&gt;
= 2)	Action faite au préalable : =&lt;br /&gt;
a.	Faire la demande pour que la machine soit autorisée à récupérer les SAM tests : https://gus.fzk.de/ws/ticket_info.php?ticket=55132&lt;br /&gt;
&lt;br /&gt;
b.	Autoriser la nagios box à récupérer les proxy en mode « retrieval », et stocker un proxy depuis une UI récuperable par la nagiosBOX voir  [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe0 Annexe0]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
c.	Certificat utilisé pour :&lt;br /&gt;
&lt;br /&gt;
i.	                       Access to GOCDB PI for ROCS GOCDB PI level 2 required &lt;br /&gt;
&lt;br /&gt;
ii.	                       Recuperation de proxy pour les sondes locales&lt;br /&gt;
&lt;br /&gt;
d. s&#039;inscrire dans la mailing liste: regional-nagios-admins@cern.ch (très réactive)&lt;br /&gt;
&lt;br /&gt;
= 3)	Installation de Nagios =&lt;br /&gt;
Reference : https://twiki.cern.ch/twiki/bin/view/EGEE/GridMonitoringNcgYaim&lt;br /&gt;
== Installation des packages via yum, Ajout des repos suivant ==&lt;br /&gt;
 a.	mirrors-rpmforge (rpm rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm)&lt;br /&gt;
 b.	rpmforge-testing.repo&lt;br /&gt;
 c.	rpmforge.repo&lt;br /&gt;
 d.	glite-UI.repo&lt;br /&gt;
 e.	sa1-centos5-release.repo (rpm:  sa1-release-2-1.el5.noarch.rpm)&lt;br /&gt;
 f.	glite-BDII.repo&lt;br /&gt;
&lt;br /&gt;
Problèmes de dépendances rencontrées si besoin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe1 Annexe1] (mais j’avais dû oublier de faire un : yum install egee-NAGIOS)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Installation subversion ==&lt;br /&gt;
Certain fichier de config sont a recuperer via svn au CERN:&lt;br /&gt;
&lt;br /&gt;
 yum install subversion&lt;br /&gt;
 svn co http://svnweb.cern.ch/guest/sam/trunk/roc-config&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 cp /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm.orig&lt;br /&gt;
 cp roc-config/Hash.pm_55_ALL_CRIT /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm&lt;br /&gt;
&lt;br /&gt;
== Mysql ==&lt;br /&gt;
&lt;br /&gt;
1.	Installer la dernière version de Mysql (server + client) ; &lt;br /&gt;
&lt;br /&gt;
2.	configurer le mot de passe admin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2a] ;&lt;br /&gt;
&lt;br /&gt;
3.	Configurer les users utiles à la nagios Box se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2b] ;&lt;br /&gt;
&lt;br /&gt;
== Configuration via yaim et NCG (en 2 fois)==&lt;br /&gt;
&lt;br /&gt;
1.	Remplir /etc/ncg/ncg.localdb avec la liste des sites se referer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe3 Annexe3]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
2.	Remplir le /opt/glite/yaim/site-info.def voir [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe4 Annexe4] ;&lt;br /&gt;
&lt;br /&gt;
3.	groupadd nagios&lt;br /&gt;
&lt;br /&gt;
4.	modif des uids/gids : /opt/glite/yaim/examples/edgusers.conf [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe5 Annexe5]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
5.	lancement de la configuration automatique via yaim (All On One Box) :&lt;br /&gt;
 	&lt;br /&gt;
 	/opt/glite/yaim/bin/yaim -s /opt/glite/yaim/site-info.def -c -n glite-UI -n glite-NAGIOS&lt;br /&gt;
&lt;br /&gt;
6.	lancement de la configuration via NCG (All On One Box) :&lt;br /&gt;
&lt;br /&gt;
 /usr/sbin/ncg.pl&lt;br /&gt;
&lt;br /&gt;
.....MODIFICATION importante:: voir: https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
La partie:&lt;br /&gt;
#  Configure manually /etc/ncg/ncg.conf (Template can be found here: ncg.conf.template: )&lt;br /&gt;
- Switch off automatic generation of ncg.conf by YAIM (NAGIOS_NCG_ENABLE_CONFIG&amp;quot;=&amp;quot;false&amp;quot;)&lt;br /&gt;
- Take ncg.conf.template and copy it to /etc/ncg/ncg.conf&lt;br /&gt;
     - Set $ROC_NAME$&lt;br /&gt;
     - Set $YOUR_MYPROXY_SERVER$ (e.g. myproxy-fts.cern.ch)&lt;br /&gt;
     - Set $MYPROXY_NAME$ (e.g.: NagiosRetrieve-sam-ap-roc.cern.ch)&lt;br /&gt;
     - Set $NAGIOS_ROLE$ (e.g.: ngi, roc)&lt;br /&gt;
# Take Hash.pm file that we are currently using at the CERN ROC Nagios boxes. In this file, we have removed the metrics that do not belong to the SAM_Critical profile, so only the metrics defined at ROC_SAM_critical are configured, and not relevant services like SRMv1 are commented out. The file is located under /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm &lt;br /&gt;
&lt;br /&gt;
Pour éviter d&#039;avoir des sondes inappropriés.&lt;br /&gt;
&lt;br /&gt;
== Tuning the configuration ==&lt;br /&gt;
&lt;br /&gt;
1.	Verifier  dans /etc/sysconfig/nagios:&lt;br /&gt;
 LD_LIBRARY_PATH=/opt/classads/lib64:/opt/glite/lib64:/opt/globus/lib:/opt/c-ares/lib:/opt/classads/lib64  &lt;br /&gt;
&lt;br /&gt;
2.	Desactiver les notifications, dans les fichiers de conf: &lt;br /&gt;
 a.      /etc/nagios/nagios.cfg, désactiver les notifications:enable_notifications=0 ;log_notifications=0&lt;br /&gt;
 b.	 /etc/nagios/wlcg.d/host.templates.cfg&lt;br /&gt;
 c.	 /etc/nagios/wlcg.d/service.templates.cfg&lt;br /&gt;
&lt;br /&gt;
4.	N’autoriser que les dteam/France à visualiser notre interface nagios : modifier le fichier : &lt;br /&gt;
 /etc/voms2htpasswd.conf, avec : vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&lt;br /&gt;
Plus utile site le site-info.def est défini correctement:&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&#039;&lt;br /&gt;
&lt;br /&gt;
== ActiveMQ ==&lt;br /&gt;
 /usr/sbin/msg-to-queue --prefix /queue/grid.probe.metricOutput.EGEE.a635834332381123c8b296d02b682f8f --broker-uri stomp://prod-grid-msg.cern.ch:6163&lt;br /&gt;
 &lt;br /&gt;
[root@cclcgvmli03 cron.hourly]# cat check_msg-to-queue.sh&lt;br /&gt;
&lt;br /&gt;
Verifier les messages:&lt;br /&gt;
 /usr/libexec/grid-monitoring/plugins/nagios/recv_from_queue -v &lt;br /&gt;
&lt;br /&gt;
faire une update de perl-GridMon &lt;br /&gt;
 The problem here is in the message handler &lt;br /&gt;
 (/usr/lib/perl5/vendor_perl/5.8.8/GridMon/MsgHandler/MetricOutput.pm). &lt;br /&gt;
 Probe on WN reports hostname localhost.localdomain and serviceURI CE &lt;br /&gt;
 hostname. In the previous version message handler first checked hostname &lt;br /&gt;
 value and then serviceURI. That is the reason why Christine is seeing &lt;br /&gt;
 results for localhost.localdomain. However, we fixed this and the latest &lt;br /&gt;
 version (1.0.34) parses messages correctly.&lt;br /&gt;
&lt;br /&gt;
 yum update perl-GridMon&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== Systeme d&#039;information ==&lt;br /&gt;
La nagios Box doit etre enregistré dans la GOCDB &lt;br /&gt;
et publié dans le site-BDII:&lt;br /&gt;
 ldapsearch -x -H ldap://ccnagboxli01.in2p3.fr:2170 -b &#039;Mds-vo-name=resource,o=Grid&#039;&lt;br /&gt;
&lt;br /&gt;
= validation =&lt;br /&gt;
&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
&lt;br /&gt;
now you should publish your Nagios in your Site BDII&lt;br /&gt;
And we should declare the node in the GOCDB: Regional-NAGIOS ou National-Nagios, a determiner&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
liste des sondes a valider: d&#039;après: https://twiki.cern.ch/twiki/bin/view/LCG/SAMCriticalTestsForCODs&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Type de Noeuds&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Valid (Y or N)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
APEL&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Pas de métric ?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
BDII (site and TOP)&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
- Probleme identifié pour la variable LCG_GFAL_INFOSYS quand c&#039;est une liste (CE lpnce.in2p3.fr):&lt;br /&gt;
LCG_GFAL_INFOSYS=topbdii.grif.fr:2170,cclcgtopbdii01.in2p3.fr:2170,lapp-bdii01.in2p3.fr:2170&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CREAMCE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
FTS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y and NO: For the check_command those options should be added: &lt;br /&gt;
--cert /etc/nagios/globus/hostcert.pem   --key /etc/nagios/globus/hostkey.pem  -x $USER2$ (this should be fixed in the next release)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
gRB/WMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_C&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: mais il faudrait peut etre demander au site de supporter la VO ops pour que leur LFC soit testé (lfc-ls et lfc-ping)?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_L&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y: mais il faudrait peut etre demander au site de supporter la VO ops pour que leur LFC soit testé (lfc-ls et lfc-ping)?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MPI&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MyProxy&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RB&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nobody&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Service Deprecated. Does NOT apply in Nagios&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RGMA / MON&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y (certificate lifetime only)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
&lt;br /&gt;
SRMv2&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOBOX&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
3 sites should open port 1975 to ccnagboxli01; mail sent the 23/03/2010&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
= Annexe0 =&lt;br /&gt;
&lt;br /&gt;
Sur le myproxyserver, il faut que le nagios server soit &amp;quot;trusted retriever&amp;quot; et &amp;quot;authorized retrievers&amp;quot;:&lt;br /&gt;
 [cleroy@grid08 ~]$ grep cclcgvmli03 /opt/glite/etc/myproxy-server.conf&lt;br /&gt;
 trusted_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 authorized_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Sur une UI:&lt;br /&gt;
&lt;br /&gt;
 voms-proxy-init -voms ops:/ops/Role=lcgadmin&lt;br /&gt;
 myproxy-init -c 336 -k nagios_roc_fr2-ops -s myproxy.grif.fr -l nagios  -x -Z &amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&amp;quot;&lt;br /&gt;
&lt;br /&gt;
= Annexe 1 =&lt;br /&gt;
 rpm -ivh http://www.sysadmin.hep.ac.uk/rpms/egee-SA1/centos5/x86_64/sa1-release-2-1.el5.noarch.rpm&lt;br /&gt;
 rpm -ivh  http://packages.sw.be/rpmforge-release/rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm&lt;br /&gt;
&lt;br /&gt;
 yum install atp&lt;br /&gt;
 yum install bouncycastle&lt;br /&gt;
 yum install broker&lt;br /&gt;
 yum install broker-cache&lt;br /&gt;
 yum install dcache-srmclient&lt;br /&gt;
 yum install dummy-ca-certs&lt;br /&gt;
 yum install egee-NAGIOS&lt;br /&gt;
 yum install egee-NAGIOS egee-NRPE&lt;br /&gt;
 yum install egee-NRPE&lt;br /&gt;
 yum install fetch-crl&lt;br /&gt;
 yum install fipscheck fipscheck-lib&lt;br /&gt;
 yum install glite-UI&lt;br /&gt;
 yum install glite-security-voms-clients&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install glite-yaim-core&lt;br /&gt;
 yum install glite-yaim-nagios&lt;br /&gt;
 yum install httpd&lt;br /&gt;
 yum install jdk&lt;br /&gt;
 yum install lcg-CA&lt;br /&gt;
 yum install lcg-CA egee-NAGIOS&lt;br /&gt;
 yum install lcg_util&lt;br /&gt;
 yum install mddb&lt;br /&gt;
 yum install msg-publish-simple&lt;br /&gt;
 yum install myproxy&lt;br /&gt;
 yum install mysql-client&lt;br /&gt;
 yum install mysql-server&lt;br /&gt;
 yum install nagios-proxy-refresh&lt;br /&gt;
 yum install perl-Config-Tiny&lt;br /&gt;
 yum install perl-DBD-MySQL&lt;br /&gt;
 yum install perl-rrdtool-1.3.8-2.el5.rf.x86_64&lt;br /&gt;
 yum install python-yaml&lt;br /&gt;
 yum install sun-jaf&lt;br /&gt;
 yum install uberftp-client&lt;br /&gt;
 yum install vdt_globus_rm_client&lt;br /&gt;
&lt;br /&gt;
 yum update glite-yaim-clients&lt;br /&gt;
 yum update glite-yaim-core&lt;br /&gt;
 yum update glite-yaim-nagios&lt;br /&gt;
 yum update mysql-server&lt;br /&gt;
 yum update perl-DBI&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe2 =&lt;br /&gt;
a)Mot de passe admin mysql :&lt;br /&gt;
Yum pour recupérer la derniere version de Mysql :&lt;br /&gt;
&#039;&#039;MySQL-server-community&#039;&#039;, ne pas oublier le client (pas de dépendance dessus)&lt;br /&gt;
Demmarrage de mysql avec --skip-grant-tables (pour ne pas avoir de mot de passe a rentrer)&lt;br /&gt;
 mysqld_safe --skip-grant-tables &amp;amp;&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root &lt;br /&gt;
 update user set password=PASSWORD(&amp;quot;NEW-ROOT-PASSWORD&amp;quot;) where User=&#039;root&#039;;&lt;br /&gt;
&lt;br /&gt;
b)creation des users pour le nagios regional:&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root -p&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON nagios.* TO &#039;ndouser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON atp.* TO &#039;atpuser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe 3 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /etc/ncg/ncg.localdb&lt;br /&gt;
 #&lt;br /&gt;
 # Local Rules file to modify NCG configuration&lt;br /&gt;
 #&lt;br /&gt;
 SITE!AUVERGRID&lt;br /&gt;
 SITE!CGG-LCG2&lt;br /&gt;
 SITE!ESRF&lt;br /&gt;
 SITE!GRIF&lt;br /&gt;
 SITE!IBCP-GBIO&lt;br /&gt;
 SITE!IN2P3-CC&lt;br /&gt;
 SITE!IN2P3-CC-PPS&lt;br /&gt;
 SITE!IN2P3-CC-T2&lt;br /&gt;
 SITE!IN2P3-CPPM&lt;br /&gt;
 SITE!IN2P3-IPNL&lt;br /&gt;
 SITE!IN2P3-IRES&lt;br /&gt;
 SITE!IN2P3-LAPP&lt;br /&gt;
 SITE!IN2P3-LPC&lt;br /&gt;
 SITE!IN2P3-LPSC&lt;br /&gt;
 SITE!IN2P3-SUBATECH&lt;br /&gt;
 SITE!IPSL-IPGP-LCG2&lt;br /&gt;
 SITE!M3PEC&lt;br /&gt;
 SITE!MSFG&lt;br /&gt;
 SITE!MSFG-MULTI&lt;br /&gt;
 SITE!MSFG-OPEN&lt;br /&gt;
 SITE!OBSPM&lt;br /&gt;
 SITE!PARIS-UREC-IPV6&lt;br /&gt;
 SITE!SN-UCAD&lt;br /&gt;
 SITE!ROC-FR&lt;br /&gt;
 SITE!SOLEIL&lt;br /&gt;
 SITE!StratusLab&lt;br /&gt;
 [root@cclcgvmli03 ~]#&lt;br /&gt;
 &lt;br /&gt;
= Annexe 4 =&lt;br /&gt;
&lt;br /&gt;
 SITE_EMAIL=c.leroy@cea.fr&lt;br /&gt;
 SITE_NAME=ROC-FR&lt;br /&gt;
 RB_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 WMS_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 PX_HOST=myproxy.grif.fr&lt;br /&gt;
 BDII_HOST=topbdii.grif.fr&lt;br /&gt;
 SITE_BDII_HOST=bdii.grif.fr&lt;br /&gt;
 MON_HOST=node06.datagrid.cea.fr&lt;br /&gt;
 VOS=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 DTEAM_GROUP_ENABLE=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 VO_DTEAM_SW_DIR=$VO_SW_DIR/dteam&lt;br /&gt;
 VO_DTEAM_DEFAULT_SE=$SE_HOST&lt;br /&gt;
 VO_DTEAM_STORAGE_DIR=$CLASSIC_STORAGE_DIR/dteam&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/&#039;&lt;br /&gt;
 VO_DTEAM_VOMSES=&amp;quot;&#039;dteam lcg-voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=lcg-voms.cern.ch dteam 24&#039; &#039;dteam    voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=voms.cern.ch dteam 24&#039;&amp;quot;&lt;br /&gt;
 VO_DTEAM_VOMS_CA_DN=&amp;quot;&#039;/DC=ch/DC=cern/CN=CERN Trusted Certification Authority&#039; &#039;/DC=ch/DC=cern/CN=CERN Trusted   Certification Authority&#039;&amp;quot;&lt;br /&gt;
 NAGIOS_HOST=cclcgvmli03.in2p3.fr&lt;br /&gt;
 NAGIOS_ADMIN_DNS=&amp;quot;/O=GRID-FR/C=FR/O=CEA/OU=IRFU/CN=Christine Leroy&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=Nadia Lajili&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=LPC/CN=Emmanuel Medernach&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CPPM/CN=Juan Carlos Carranza&amp;quot;&lt;br /&gt;
 NAGIOS_NCG_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_NAGIOS_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_GOCDB_ROC_NAME=France&lt;br /&gt;
 ROC_NAME=France&lt;br /&gt;
 NCG_PROBES_TYPE=remote,native,local&lt;br /&gt;
 NCG_VO=dteam&lt;br /&gt;
 NAGIOS_MYPROXY_NAME=nagios_roc_fr2&lt;br /&gt;
 NAGIOS_MYPROXY_USER=nagios&lt;br /&gt;
 MSG_BROKER_CACHE_NETWORK=PROD&lt;br /&gt;
 NAGIOS_ROLE=roc&lt;br /&gt;
 NAGIOS_HTTPD_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_SUDO_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_CGI_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_LDAP_FILTER=GlueSiteOtherInfo=EGEE_ROC=France&lt;br /&gt;
 NAGIOS_DB_PASS=x&lt;br /&gt;
 NAGIOS_NSCA_PASS=x&lt;br /&gt;
 MYSQL_ADMIN=x&lt;br /&gt;
 ATP_DB_PASS=x&lt;br /&gt;
 MDDB_DB_PASS=x&lt;br /&gt;
 MS_DB_PASS=x&lt;br /&gt;
 MYSQL_PASSWORD=x&lt;br /&gt;
 MYEGEE_DB_PASS=x&lt;br /&gt;
&lt;br /&gt;
= Annexe 5 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /opt/glite/yaim/examples/edgusers.conf&lt;br /&gt;
 11151:${DPMMGR_USER}:11151:${DPMMGR_GROUP}:DPM user:&lt;br /&gt;
 11152:${EDG_USER}:11152,11156:${EDG_GROUP},${INFOSYS_GROUP}:EDG user:${EDG_HOME_DIR}&lt;br /&gt;
 11153:${EDGINFO_USER}:11153,1156:${EDGINFO_USER},${INFOSYS_GROUP}:EDG info user:${EDGINFO_HOME_DIR}&lt;br /&gt;
 11154:${RGMA_USER}:11154,1156:${RGMA_GROUP},${INFOSYS_GROUP}:RGMA user:${INSTALL_ROOT}/glite/etc/rgma&lt;br /&gt;
 11155:${GLITE_USER}:11155:${GLITE_GROUP}:gLite user:${GLITE_HOME_DIR}&lt;br /&gt;
 11156:${BDII_USER}:11158:${BDII_GROUP}:BDII user:${BDII_HOME_DIR}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Annexe 6 =&lt;br /&gt;
&lt;br /&gt;
Probleme rencontré sur ccnagboxli01 (arret de ypbind + rpm manquant)&lt;br /&gt;
 chown -R nagios:nagios /var/spool/pnp4nagios&lt;br /&gt;
 chown -R nagios:nagios /var/spool/msg-nagios-bridge&lt;br /&gt;
 chown root:nagios /etc/atp/atp_db.conf&lt;br /&gt;
 chown root:nagios /etc/mddb/databases.yml&lt;br /&gt;
 chown nagios:apache /var/nagios/rw&lt;br /&gt;
 chown -R nagios:apache /var/nagios/rw&lt;br /&gt;
 chown root:nagios /etc/nagios/plugins/send_to_db.ini&lt;br /&gt;
 chown -R nagios:nagios /var/cache/msg/config-cache&lt;br /&gt;
 chown -R nagios:root /var/log/mddb&lt;br /&gt;
 chown -R nagios:root /var/log/pnp4nagios&lt;br /&gt;
 chown -R nagios:root /var/log/nagios&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
  useradd -g 40011 -u 10011 nagios&lt;br /&gt;
  useradd --group mysql -u 2730 mysql&lt;br /&gt;
  useradd -g mysql -u 2730 mysql&lt;br /&gt;
&lt;br /&gt;
   groupadd -g 40010 nagiosmaster&lt;br /&gt;
   groupadd -g 146 leftuser&lt;br /&gt;
&lt;br /&gt;
 yum install glite-security-voms-api-c-1.8.12-2.sl5.x86_64&lt;br /&gt;
 yum update perl-Net-SSLeay&lt;br /&gt;
 yum update perl-IO-Socket-SSL-1.01-1.fc6.noarch&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install lcg_util-1.7.6-1.sl5.x86_64&lt;br /&gt;
 yum install GFAL-client-1.11.8-2.sl5.x86_64 GFAL-client-1.11.8-2.sl5.i386&lt;br /&gt;
 yum install CGSI_gSOAP_2.7-1.3.3-1.sl5.x86_64&lt;br /&gt;
 yum install LFC-interfaces-1.7.3-1sec.sl5.x86_64 LFC-client-1.7.3-1sec.sl5.x86_64 lcg-dm-common-1.7.3-1sec.sl5.x86_64&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5743</id>
		<title>Nagios regional</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5743"/>
		<updated>2010-03-23T16:12:18Z</updated>

		<summary type="html">&lt;p&gt;LEROY: /* validation */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Installation d&#039;une NOGIOS box pour le ROC France&lt;br /&gt;
&lt;br /&gt;
= 1)	Installation de base : =&lt;br /&gt;
a.	Machine installée par les sysadmin du CC : OS + VOBOX + certificat + pas dans les NIS&lt;br /&gt;
&lt;br /&gt;
b.	Accessible via gsissh (port 1975)&lt;br /&gt;
&lt;br /&gt;
= 2)	Action faite au préalable : =&lt;br /&gt;
a.	Faire la demande pour que la machine soit autorisée à récupérer les SAM tests : https://gus.fzk.de/ws/ticket_info.php?ticket=55132&lt;br /&gt;
&lt;br /&gt;
b.	Autoriser la nagios box à récupérer les proxy en mode « retrieval », et stocker un proxy depuis une UI récuperable par la nagiosBOX voir  [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe0 Annexe0]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
c.	Certificat utilisé pour :&lt;br /&gt;
&lt;br /&gt;
i.	                       Access to GOCDB PI for ROCS GOCDB PI level 2 required &lt;br /&gt;
&lt;br /&gt;
ii.	                       Recuperation de proxy pour les sondes locales&lt;br /&gt;
&lt;br /&gt;
d. s&#039;inscrire dans la mailing liste: regional-nagios-admins@cern.ch (très réactive)&lt;br /&gt;
&lt;br /&gt;
= 3)	Installation de Nagios =&lt;br /&gt;
Reference : https://twiki.cern.ch/twiki/bin/view/EGEE/GridMonitoringNcgYaim&lt;br /&gt;
== Installation des packages via yum, Ajout des repos suivant ==&lt;br /&gt;
 a.	mirrors-rpmforge (rpm rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm)&lt;br /&gt;
 b.	rpmforge-testing.repo&lt;br /&gt;
 c.	rpmforge.repo&lt;br /&gt;
 d.	glite-UI.repo&lt;br /&gt;
 e.	sa1-centos5-release.repo (rpm:  sa1-release-2-1.el5.noarch.rpm)&lt;br /&gt;
 f.	glite-BDII.repo&lt;br /&gt;
&lt;br /&gt;
Problèmes de dépendances rencontrées si besoin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe1 Annexe1] (mais j’avais dû oublier de faire un : yum install egee-NAGIOS)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Installation subversion ==&lt;br /&gt;
Certain fichier de config sont a recuperer via svn au CERN:&lt;br /&gt;
&lt;br /&gt;
 yum install subversion&lt;br /&gt;
 svn co http://svnweb.cern.ch/guest/sam/trunk/roc-config&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 cp /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm.orig&lt;br /&gt;
 cp roc-config/Hash.pm_55_ALL_CRIT /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm&lt;br /&gt;
&lt;br /&gt;
== Mysql ==&lt;br /&gt;
&lt;br /&gt;
1.	Installer la dernière version de Mysql (server + client) ; &lt;br /&gt;
&lt;br /&gt;
2.	configurer le mot de passe admin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2a] ;&lt;br /&gt;
&lt;br /&gt;
3.	Configurer les users utiles à la nagios Box se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2b] ;&lt;br /&gt;
&lt;br /&gt;
== Configuration via yaim et NCG (en 2 fois)==&lt;br /&gt;
&lt;br /&gt;
1.	Remplir /etc/ncg/ncg.localdb avec la liste des sites se referer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe3 Annexe3]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
2.	Remplir le /opt/glite/yaim/site-info.def voir [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe4 Annexe4] ;&lt;br /&gt;
&lt;br /&gt;
3.	groupadd nagios&lt;br /&gt;
&lt;br /&gt;
4.	modif des uids/gids : /opt/glite/yaim/examples/edgusers.conf [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe5 Annexe5]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
5.	lancement de la configuration automatique via yaim (All On One Box) :&lt;br /&gt;
 	&lt;br /&gt;
 	/opt/glite/yaim/bin/yaim -s /opt/glite/yaim/site-info.def -c -n glite-UI -n glite-NAGIOS&lt;br /&gt;
&lt;br /&gt;
6.	lancement de la configuration via NCG (All On One Box) :&lt;br /&gt;
&lt;br /&gt;
 /usr/sbin/ncg.pl&lt;br /&gt;
&lt;br /&gt;
.....MODIFICATION importante:: voir: https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
La partie:&lt;br /&gt;
#  Configure manually /etc/ncg/ncg.conf (Template can be found here: ncg.conf.template: )&lt;br /&gt;
- Switch off automatic generation of ncg.conf by YAIM (NAGIOS_NCG_ENABLE_CONFIG&amp;quot;=&amp;quot;false&amp;quot;)&lt;br /&gt;
- Take ncg.conf.template and copy it to /etc/ncg/ncg.conf&lt;br /&gt;
     - Set $ROC_NAME$&lt;br /&gt;
     - Set $YOUR_MYPROXY_SERVER$ (e.g. myproxy-fts.cern.ch)&lt;br /&gt;
     - Set $MYPROXY_NAME$ (e.g.: NagiosRetrieve-sam-ap-roc.cern.ch)&lt;br /&gt;
     - Set $NAGIOS_ROLE$ (e.g.: ngi, roc)&lt;br /&gt;
# Take Hash.pm file that we are currently using at the CERN ROC Nagios boxes. In this file, we have removed the metrics that do not belong to the SAM_Critical profile, so only the metrics defined at ROC_SAM_critical are configured, and not relevant services like SRMv1 are commented out. The file is located under /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm &lt;br /&gt;
&lt;br /&gt;
Pour éviter d&#039;avoir des sondes inappropriés.&lt;br /&gt;
&lt;br /&gt;
== Tuning the configuration ==&lt;br /&gt;
&lt;br /&gt;
1.	Verifier  dans /etc/sysconfig/nagios:&lt;br /&gt;
 LD_LIBRARY_PATH=/opt/classads/lib64:/opt/glite/lib64:/opt/globus/lib:/opt/c-ares/lib:/opt/classads/lib64  &lt;br /&gt;
&lt;br /&gt;
2.	Desactiver les notifications, dans les fichiers de conf: &lt;br /&gt;
 a.      /etc/nagios/nagios.cfg, désactiver les notifications:enable_notifications=0 ;log_notifications=0&lt;br /&gt;
 b.	 /etc/nagios/wlcg.d/host.templates.cfg&lt;br /&gt;
 c.	 /etc/nagios/wlcg.d/service.templates.cfg&lt;br /&gt;
&lt;br /&gt;
4.	N’autoriser que les dteam/France à visualiser notre interface nagios : modifier le fichier : &lt;br /&gt;
 /etc/voms2htpasswd.conf, avec : vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&lt;br /&gt;
Plus utile site le site-info.def est défini correctement:&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&#039;&lt;br /&gt;
&lt;br /&gt;
== ActiveMQ ==&lt;br /&gt;
 /usr/sbin/msg-to-queue --prefix /queue/grid.probe.metricOutput.EGEE.a635834332381123c8b296d02b682f8f --broker-uri stomp://prod-grid-msg.cern.ch:6163&lt;br /&gt;
 &lt;br /&gt;
[root@cclcgvmli03 cron.hourly]# cat check_msg-to-queue.sh&lt;br /&gt;
&lt;br /&gt;
Verifier les messages:&lt;br /&gt;
 /usr/libexec/grid-monitoring/plugins/nagios/recv_from_queue -v &lt;br /&gt;
&lt;br /&gt;
faire une update de perl-GridMon &lt;br /&gt;
 The problem here is in the message handler &lt;br /&gt;
 (/usr/lib/perl5/vendor_perl/5.8.8/GridMon/MsgHandler/MetricOutput.pm). &lt;br /&gt;
 Probe on WN reports hostname localhost.localdomain and serviceURI CE &lt;br /&gt;
 hostname. In the previous version message handler first checked hostname &lt;br /&gt;
 value and then serviceURI. That is the reason why Christine is seeing &lt;br /&gt;
 results for localhost.localdomain. However, we fixed this and the latest &lt;br /&gt;
 version (1.0.34) parses messages correctly.&lt;br /&gt;
&lt;br /&gt;
 yum update perl-GridMon&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== Systeme d&#039;information ==&lt;br /&gt;
La nagios Box doit etre enregistré dans la GOCDB &lt;br /&gt;
et publié dans le site-BDII:&lt;br /&gt;
 ldapsearch -x -H ldap://ccnagboxli01.in2p3.fr:2170 -b &#039;Mds-vo-name=resource,o=Grid&#039;&lt;br /&gt;
&lt;br /&gt;
= validation =&lt;br /&gt;
&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
&lt;br /&gt;
now you should publish your Nagios in your Site BDII&lt;br /&gt;
And we should declare the node in the GOCDB: Regional-NAGIOS ou National-Nagios, a determiner&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
liste des sondes a valider: d&#039;après: https://twiki.cern.ch/twiki/bin/view/LCG/SAMCriticalTestsForCODs&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Type de Noeuds&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Valid (Y or N)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
APEL&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Pas de métric ?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
BDII (site and TOP)&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
- Probleme identifié pour la variable LCG_GFAL_INFOSYS quand c&#039;est une liste (CE lpnce.in2p3.fr):&lt;br /&gt;
LCG_GFAL_INFOSYS=topbdii.grif.fr:2170,cclcgtopbdii01.in2p3.fr:2170,lapp-bdii01.in2p3.fr:2170&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CREAMCE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
FTS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y and NO: For the check_command those options should be added: &lt;br /&gt;
--cert /etc/nagios/globus/hostcert.pem   --key /etc/nagios/globus/hostkey.pem  -x $USER2$ (this should be fixed in the next release)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
gRB/WMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_C&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: idem nagios at CERN mais il manque des sondes: mail envoyé a OAT 23/03/2010&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_L&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: idem nagios at CERN mais il manque des sondes: mail envoyé a OAT 23/03/2010&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MPI&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MyProxy&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RB&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nobody&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Service Deprecated. Does NOT apply in Nagios&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RGMA / MON&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y (certificate lifetime only)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
&lt;br /&gt;
SRMv2&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOBOX&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
3 sites should open port 1975 to ccnagboxli01; mail sent the 23/03/2010&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
= Annexe0 =&lt;br /&gt;
&lt;br /&gt;
Sur le myproxyserver, il faut que le nagios server soit &amp;quot;trusted retriever&amp;quot; et &amp;quot;authorized retrievers&amp;quot;:&lt;br /&gt;
 [cleroy@grid08 ~]$ grep cclcgvmli03 /opt/glite/etc/myproxy-server.conf&lt;br /&gt;
 trusted_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 authorized_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Sur une UI:&lt;br /&gt;
&lt;br /&gt;
 voms-proxy-init -voms ops:/ops/Role=lcgadmin&lt;br /&gt;
 myproxy-init -c 336 -k nagios_roc_fr2-ops -s myproxy.grif.fr -l nagios  -x -Z &amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&amp;quot;&lt;br /&gt;
&lt;br /&gt;
= Annexe 1 =&lt;br /&gt;
 rpm -ivh http://www.sysadmin.hep.ac.uk/rpms/egee-SA1/centos5/x86_64/sa1-release-2-1.el5.noarch.rpm&lt;br /&gt;
 rpm -ivh  http://packages.sw.be/rpmforge-release/rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm&lt;br /&gt;
&lt;br /&gt;
 yum install atp&lt;br /&gt;
 yum install bouncycastle&lt;br /&gt;
 yum install broker&lt;br /&gt;
 yum install broker-cache&lt;br /&gt;
 yum install dcache-srmclient&lt;br /&gt;
 yum install dummy-ca-certs&lt;br /&gt;
 yum install egee-NAGIOS&lt;br /&gt;
 yum install egee-NAGIOS egee-NRPE&lt;br /&gt;
 yum install egee-NRPE&lt;br /&gt;
 yum install fetch-crl&lt;br /&gt;
 yum install fipscheck fipscheck-lib&lt;br /&gt;
 yum install glite-UI&lt;br /&gt;
 yum install glite-security-voms-clients&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install glite-yaim-core&lt;br /&gt;
 yum install glite-yaim-nagios&lt;br /&gt;
 yum install httpd&lt;br /&gt;
 yum install jdk&lt;br /&gt;
 yum install lcg-CA&lt;br /&gt;
 yum install lcg-CA egee-NAGIOS&lt;br /&gt;
 yum install lcg_util&lt;br /&gt;
 yum install mddb&lt;br /&gt;
 yum install msg-publish-simple&lt;br /&gt;
 yum install myproxy&lt;br /&gt;
 yum install mysql-client&lt;br /&gt;
 yum install mysql-server&lt;br /&gt;
 yum install nagios-proxy-refresh&lt;br /&gt;
 yum install perl-Config-Tiny&lt;br /&gt;
 yum install perl-DBD-MySQL&lt;br /&gt;
 yum install perl-rrdtool-1.3.8-2.el5.rf.x86_64&lt;br /&gt;
 yum install python-yaml&lt;br /&gt;
 yum install sun-jaf&lt;br /&gt;
 yum install uberftp-client&lt;br /&gt;
 yum install vdt_globus_rm_client&lt;br /&gt;
&lt;br /&gt;
 yum update glite-yaim-clients&lt;br /&gt;
 yum update glite-yaim-core&lt;br /&gt;
 yum update glite-yaim-nagios&lt;br /&gt;
 yum update mysql-server&lt;br /&gt;
 yum update perl-DBI&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe2 =&lt;br /&gt;
a)Mot de passe admin mysql :&lt;br /&gt;
Yum pour recupérer la derniere version de Mysql :&lt;br /&gt;
&#039;&#039;MySQL-server-community&#039;&#039;, ne pas oublier le client (pas de dépendance dessus)&lt;br /&gt;
Demmarrage de mysql avec --skip-grant-tables (pour ne pas avoir de mot de passe a rentrer)&lt;br /&gt;
 mysqld_safe --skip-grant-tables &amp;amp;&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root &lt;br /&gt;
 update user set password=PASSWORD(&amp;quot;NEW-ROOT-PASSWORD&amp;quot;) where User=&#039;root&#039;;&lt;br /&gt;
&lt;br /&gt;
b)creation des users pour le nagios regional:&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root -p&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON nagios.* TO &#039;ndouser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON atp.* TO &#039;atpuser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe 3 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /etc/ncg/ncg.localdb&lt;br /&gt;
 #&lt;br /&gt;
 # Local Rules file to modify NCG configuration&lt;br /&gt;
 #&lt;br /&gt;
 SITE!AUVERGRID&lt;br /&gt;
 SITE!CGG-LCG2&lt;br /&gt;
 SITE!ESRF&lt;br /&gt;
 SITE!GRIF&lt;br /&gt;
 SITE!IBCP-GBIO&lt;br /&gt;
 SITE!IN2P3-CC&lt;br /&gt;
 SITE!IN2P3-CC-PPS&lt;br /&gt;
 SITE!IN2P3-CC-T2&lt;br /&gt;
 SITE!IN2P3-CPPM&lt;br /&gt;
 SITE!IN2P3-IPNL&lt;br /&gt;
 SITE!IN2P3-IRES&lt;br /&gt;
 SITE!IN2P3-LAPP&lt;br /&gt;
 SITE!IN2P3-LPC&lt;br /&gt;
 SITE!IN2P3-LPSC&lt;br /&gt;
 SITE!IN2P3-SUBATECH&lt;br /&gt;
 SITE!IPSL-IPGP-LCG2&lt;br /&gt;
 SITE!M3PEC&lt;br /&gt;
 SITE!MSFG&lt;br /&gt;
 SITE!MSFG-MULTI&lt;br /&gt;
 SITE!MSFG-OPEN&lt;br /&gt;
 SITE!OBSPM&lt;br /&gt;
 SITE!PARIS-UREC-IPV6&lt;br /&gt;
 SITE!SN-UCAD&lt;br /&gt;
 SITE!ROC-FR&lt;br /&gt;
 SITE!SOLEIL&lt;br /&gt;
 SITE!StratusLab&lt;br /&gt;
 [root@cclcgvmli03 ~]#&lt;br /&gt;
 &lt;br /&gt;
= Annexe 4 =&lt;br /&gt;
&lt;br /&gt;
 SITE_EMAIL=c.leroy@cea.fr&lt;br /&gt;
 SITE_NAME=ROC-FR&lt;br /&gt;
 RB_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 WMS_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 PX_HOST=myproxy.grif.fr&lt;br /&gt;
 BDII_HOST=topbdii.grif.fr&lt;br /&gt;
 SITE_BDII_HOST=bdii.grif.fr&lt;br /&gt;
 MON_HOST=node06.datagrid.cea.fr&lt;br /&gt;
 VOS=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 DTEAM_GROUP_ENABLE=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 VO_DTEAM_SW_DIR=$VO_SW_DIR/dteam&lt;br /&gt;
 VO_DTEAM_DEFAULT_SE=$SE_HOST&lt;br /&gt;
 VO_DTEAM_STORAGE_DIR=$CLASSIC_STORAGE_DIR/dteam&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/&#039;&lt;br /&gt;
 VO_DTEAM_VOMSES=&amp;quot;&#039;dteam lcg-voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=lcg-voms.cern.ch dteam 24&#039; &#039;dteam    voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=voms.cern.ch dteam 24&#039;&amp;quot;&lt;br /&gt;
 VO_DTEAM_VOMS_CA_DN=&amp;quot;&#039;/DC=ch/DC=cern/CN=CERN Trusted Certification Authority&#039; &#039;/DC=ch/DC=cern/CN=CERN Trusted   Certification Authority&#039;&amp;quot;&lt;br /&gt;
 NAGIOS_HOST=cclcgvmli03.in2p3.fr&lt;br /&gt;
 NAGIOS_ADMIN_DNS=&amp;quot;/O=GRID-FR/C=FR/O=CEA/OU=IRFU/CN=Christine Leroy&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=Nadia Lajili&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=LPC/CN=Emmanuel Medernach&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CPPM/CN=Juan Carlos Carranza&amp;quot;&lt;br /&gt;
 NAGIOS_NCG_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_NAGIOS_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_GOCDB_ROC_NAME=France&lt;br /&gt;
 ROC_NAME=France&lt;br /&gt;
 NCG_PROBES_TYPE=remote,native,local&lt;br /&gt;
 NCG_VO=dteam&lt;br /&gt;
 NAGIOS_MYPROXY_NAME=nagios_roc_fr2&lt;br /&gt;
 NAGIOS_MYPROXY_USER=nagios&lt;br /&gt;
 MSG_BROKER_CACHE_NETWORK=PROD&lt;br /&gt;
 NAGIOS_ROLE=roc&lt;br /&gt;
 NAGIOS_HTTPD_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_SUDO_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_CGI_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_LDAP_FILTER=GlueSiteOtherInfo=EGEE_ROC=France&lt;br /&gt;
 NAGIOS_DB_PASS=x&lt;br /&gt;
 NAGIOS_NSCA_PASS=x&lt;br /&gt;
 MYSQL_ADMIN=x&lt;br /&gt;
 ATP_DB_PASS=x&lt;br /&gt;
 MDDB_DB_PASS=x&lt;br /&gt;
 MS_DB_PASS=x&lt;br /&gt;
 MYSQL_PASSWORD=x&lt;br /&gt;
 MYEGEE_DB_PASS=x&lt;br /&gt;
&lt;br /&gt;
= Annexe 5 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /opt/glite/yaim/examples/edgusers.conf&lt;br /&gt;
 11151:${DPMMGR_USER}:11151:${DPMMGR_GROUP}:DPM user:&lt;br /&gt;
 11152:${EDG_USER}:11152,11156:${EDG_GROUP},${INFOSYS_GROUP}:EDG user:${EDG_HOME_DIR}&lt;br /&gt;
 11153:${EDGINFO_USER}:11153,1156:${EDGINFO_USER},${INFOSYS_GROUP}:EDG info user:${EDGINFO_HOME_DIR}&lt;br /&gt;
 11154:${RGMA_USER}:11154,1156:${RGMA_GROUP},${INFOSYS_GROUP}:RGMA user:${INSTALL_ROOT}/glite/etc/rgma&lt;br /&gt;
 11155:${GLITE_USER}:11155:${GLITE_GROUP}:gLite user:${GLITE_HOME_DIR}&lt;br /&gt;
 11156:${BDII_USER}:11158:${BDII_GROUP}:BDII user:${BDII_HOME_DIR}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Annexe 6 =&lt;br /&gt;
&lt;br /&gt;
Probleme rencontré sur ccnagboxli01 (arret de ypbind + rpm manquant)&lt;br /&gt;
 chown -R nagios:nagios /var/spool/pnp4nagios&lt;br /&gt;
 chown -R nagios:nagios /var/spool/msg-nagios-bridge&lt;br /&gt;
 chown root:nagios /etc/atp/atp_db.conf&lt;br /&gt;
 chown root:nagios /etc/mddb/databases.yml&lt;br /&gt;
 chown nagios:apache /var/nagios/rw&lt;br /&gt;
 chown -R nagios:apache /var/nagios/rw&lt;br /&gt;
 chown root:nagios /etc/nagios/plugins/send_to_db.ini&lt;br /&gt;
 chown -R nagios:nagios /var/cache/msg/config-cache&lt;br /&gt;
 chown -R nagios:root /var/log/mddb&lt;br /&gt;
 chown -R nagios:root /var/log/pnp4nagios&lt;br /&gt;
 chown -R nagios:root /var/log/nagios&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
  useradd -g 40011 -u 10011 nagios&lt;br /&gt;
  useradd --group mysql -u 2730 mysql&lt;br /&gt;
  useradd -g mysql -u 2730 mysql&lt;br /&gt;
&lt;br /&gt;
   groupadd -g 40010 nagiosmaster&lt;br /&gt;
   groupadd -g 146 leftuser&lt;br /&gt;
&lt;br /&gt;
 yum install glite-security-voms-api-c-1.8.12-2.sl5.x86_64&lt;br /&gt;
 yum update perl-Net-SSLeay&lt;br /&gt;
 yum update perl-IO-Socket-SSL-1.01-1.fc6.noarch&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install lcg_util-1.7.6-1.sl5.x86_64&lt;br /&gt;
 yum install GFAL-client-1.11.8-2.sl5.x86_64 GFAL-client-1.11.8-2.sl5.i386&lt;br /&gt;
 yum install CGSI_gSOAP_2.7-1.3.3-1.sl5.x86_64&lt;br /&gt;
 yum install LFC-interfaces-1.7.3-1sec.sl5.x86_64 LFC-client-1.7.3-1sec.sl5.x86_64 lcg-dm-common-1.7.3-1sec.sl5.x86_64&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5742</id>
		<title>Nagios regional</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5742"/>
		<updated>2010-03-23T15:51:03Z</updated>

		<summary type="html">&lt;p&gt;LEROY: /* validation */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Installation d&#039;une NOGIOS box pour le ROC France&lt;br /&gt;
&lt;br /&gt;
= 1)	Installation de base : =&lt;br /&gt;
a.	Machine installée par les sysadmin du CC : OS + VOBOX + certificat + pas dans les NIS&lt;br /&gt;
&lt;br /&gt;
b.	Accessible via gsissh (port 1975)&lt;br /&gt;
&lt;br /&gt;
= 2)	Action faite au préalable : =&lt;br /&gt;
a.	Faire la demande pour que la machine soit autorisée à récupérer les SAM tests : https://gus.fzk.de/ws/ticket_info.php?ticket=55132&lt;br /&gt;
&lt;br /&gt;
b.	Autoriser la nagios box à récupérer les proxy en mode « retrieval », et stocker un proxy depuis une UI récuperable par la nagiosBOX voir  [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe0 Annexe0]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
c.	Certificat utilisé pour :&lt;br /&gt;
&lt;br /&gt;
i.	                       Access to GOCDB PI for ROCS GOCDB PI level 2 required &lt;br /&gt;
&lt;br /&gt;
ii.	                       Recuperation de proxy pour les sondes locales&lt;br /&gt;
&lt;br /&gt;
d. s&#039;inscrire dans la mailing liste: regional-nagios-admins@cern.ch (très réactive)&lt;br /&gt;
&lt;br /&gt;
= 3)	Installation de Nagios =&lt;br /&gt;
Reference : https://twiki.cern.ch/twiki/bin/view/EGEE/GridMonitoringNcgYaim&lt;br /&gt;
== Installation des packages via yum, Ajout des repos suivant ==&lt;br /&gt;
 a.	mirrors-rpmforge (rpm rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm)&lt;br /&gt;
 b.	rpmforge-testing.repo&lt;br /&gt;
 c.	rpmforge.repo&lt;br /&gt;
 d.	glite-UI.repo&lt;br /&gt;
 e.	sa1-centos5-release.repo (rpm:  sa1-release-2-1.el5.noarch.rpm)&lt;br /&gt;
 f.	glite-BDII.repo&lt;br /&gt;
&lt;br /&gt;
Problèmes de dépendances rencontrées si besoin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe1 Annexe1] (mais j’avais dû oublier de faire un : yum install egee-NAGIOS)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Installation subversion ==&lt;br /&gt;
Certain fichier de config sont a recuperer via svn au CERN:&lt;br /&gt;
&lt;br /&gt;
 yum install subversion&lt;br /&gt;
 svn co http://svnweb.cern.ch/guest/sam/trunk/roc-config&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 cp /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm.orig&lt;br /&gt;
 cp roc-config/Hash.pm_55_ALL_CRIT /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm&lt;br /&gt;
&lt;br /&gt;
== Mysql ==&lt;br /&gt;
&lt;br /&gt;
1.	Installer la dernière version de Mysql (server + client) ; &lt;br /&gt;
&lt;br /&gt;
2.	configurer le mot de passe admin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2a] ;&lt;br /&gt;
&lt;br /&gt;
3.	Configurer les users utiles à la nagios Box se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2b] ;&lt;br /&gt;
&lt;br /&gt;
== Configuration via yaim et NCG (en 2 fois)==&lt;br /&gt;
&lt;br /&gt;
1.	Remplir /etc/ncg/ncg.localdb avec la liste des sites se referer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe3 Annexe3]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
2.	Remplir le /opt/glite/yaim/site-info.def voir [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe4 Annexe4] ;&lt;br /&gt;
&lt;br /&gt;
3.	groupadd nagios&lt;br /&gt;
&lt;br /&gt;
4.	modif des uids/gids : /opt/glite/yaim/examples/edgusers.conf [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe5 Annexe5]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
5.	lancement de la configuration automatique via yaim (All On One Box) :&lt;br /&gt;
 	&lt;br /&gt;
 	/opt/glite/yaim/bin/yaim -s /opt/glite/yaim/site-info.def -c -n glite-UI -n glite-NAGIOS&lt;br /&gt;
&lt;br /&gt;
6.	lancement de la configuration via NCG (All On One Box) :&lt;br /&gt;
&lt;br /&gt;
 /usr/sbin/ncg.pl&lt;br /&gt;
&lt;br /&gt;
.....MODIFICATION importante:: voir: https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
La partie:&lt;br /&gt;
#  Configure manually /etc/ncg/ncg.conf (Template can be found here: ncg.conf.template: )&lt;br /&gt;
- Switch off automatic generation of ncg.conf by YAIM (NAGIOS_NCG_ENABLE_CONFIG&amp;quot;=&amp;quot;false&amp;quot;)&lt;br /&gt;
- Take ncg.conf.template and copy it to /etc/ncg/ncg.conf&lt;br /&gt;
     - Set $ROC_NAME$&lt;br /&gt;
     - Set $YOUR_MYPROXY_SERVER$ (e.g. myproxy-fts.cern.ch)&lt;br /&gt;
     - Set $MYPROXY_NAME$ (e.g.: NagiosRetrieve-sam-ap-roc.cern.ch)&lt;br /&gt;
     - Set $NAGIOS_ROLE$ (e.g.: ngi, roc)&lt;br /&gt;
# Take Hash.pm file that we are currently using at the CERN ROC Nagios boxes. In this file, we have removed the metrics that do not belong to the SAM_Critical profile, so only the metrics defined at ROC_SAM_critical are configured, and not relevant services like SRMv1 are commented out. The file is located under /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm &lt;br /&gt;
&lt;br /&gt;
Pour éviter d&#039;avoir des sondes inappropriés.&lt;br /&gt;
&lt;br /&gt;
== Tuning the configuration ==&lt;br /&gt;
&lt;br /&gt;
1.	Verifier  dans /etc/sysconfig/nagios:&lt;br /&gt;
 LD_LIBRARY_PATH=/opt/classads/lib64:/opt/glite/lib64:/opt/globus/lib:/opt/c-ares/lib:/opt/classads/lib64  &lt;br /&gt;
&lt;br /&gt;
2.	Desactiver les notifications, dans les fichiers de conf: &lt;br /&gt;
 a.      /etc/nagios/nagios.cfg, désactiver les notifications:enable_notifications=0 ;log_notifications=0&lt;br /&gt;
 b.	 /etc/nagios/wlcg.d/host.templates.cfg&lt;br /&gt;
 c.	 /etc/nagios/wlcg.d/service.templates.cfg&lt;br /&gt;
&lt;br /&gt;
4.	N’autoriser que les dteam/France à visualiser notre interface nagios : modifier le fichier : &lt;br /&gt;
 /etc/voms2htpasswd.conf, avec : vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&lt;br /&gt;
Plus utile site le site-info.def est défini correctement:&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&#039;&lt;br /&gt;
&lt;br /&gt;
== ActiveMQ ==&lt;br /&gt;
 /usr/sbin/msg-to-queue --prefix /queue/grid.probe.metricOutput.EGEE.a635834332381123c8b296d02b682f8f --broker-uri stomp://prod-grid-msg.cern.ch:6163&lt;br /&gt;
 &lt;br /&gt;
[root@cclcgvmli03 cron.hourly]# cat check_msg-to-queue.sh&lt;br /&gt;
&lt;br /&gt;
Verifier les messages:&lt;br /&gt;
 /usr/libexec/grid-monitoring/plugins/nagios/recv_from_queue -v &lt;br /&gt;
&lt;br /&gt;
faire une update de perl-GridMon &lt;br /&gt;
 The problem here is in the message handler &lt;br /&gt;
 (/usr/lib/perl5/vendor_perl/5.8.8/GridMon/MsgHandler/MetricOutput.pm). &lt;br /&gt;
 Probe on WN reports hostname localhost.localdomain and serviceURI CE &lt;br /&gt;
 hostname. In the previous version message handler first checked hostname &lt;br /&gt;
 value and then serviceURI. That is the reason why Christine is seeing &lt;br /&gt;
 results for localhost.localdomain. However, we fixed this and the latest &lt;br /&gt;
 version (1.0.34) parses messages correctly.&lt;br /&gt;
&lt;br /&gt;
 yum update perl-GridMon&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== Systeme d&#039;information ==&lt;br /&gt;
La nagios Box doit etre enregistré dans la GOCDB &lt;br /&gt;
et publié dans le site-BDII:&lt;br /&gt;
 ldapsearch -x -H ldap://ccnagboxli01.in2p3.fr:2170 -b &#039;Mds-vo-name=resource,o=Grid&#039;&lt;br /&gt;
&lt;br /&gt;
= validation =&lt;br /&gt;
&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
&lt;br /&gt;
now you should publish your Nagios in your Site BDII&lt;br /&gt;
And we should declare the node in the GOCDB: Regional-NAGIOS ou National-Nagios, a determiner&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
liste des sondes a valider: d&#039;après: https://twiki.cern.ch/twiki/bin/view/LCG/SAMCriticalTestsForCODs&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Type de Noeuds&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Valid (Y or N)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
APEL&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Pas de métric ?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
BDII (site and TOP)&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
- Probleme identifié pour la variable LCG_GFAL_INFOSYS quand c&#039;est une liste (CE lpnce.in2p3.fr):&lt;br /&gt;
LCG_GFAL_INFOSYS=topbdii.grif.fr:2170,cclcgtopbdii01.in2p3.fr:2170,lapp-bdii01.in2p3.fr:2170&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CREAMCE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
FTS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y and NO: For the check_command those options should be added: &lt;br /&gt;
--cert /etc/nagios/globus/hostcert.pem   --key /etc/nagios/globus/hostkey.pem  -x $USER2$ (this should be fixed in the next release)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
gRB/WMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_C&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_L&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MPI&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MyProxy&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RB&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nobody&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Service Deprecated. Does NOT apply in Nagios&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RGMA / MON&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y (certificate lifetime only)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
&lt;br /&gt;
SRMv2&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOBOX&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
3 sites should open port 1975 to ccnagboxli01; mail sent the 23/03/2010&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
= Annexe0 =&lt;br /&gt;
&lt;br /&gt;
Sur le myproxyserver, il faut que le nagios server soit &amp;quot;trusted retriever&amp;quot; et &amp;quot;authorized retrievers&amp;quot;:&lt;br /&gt;
 [cleroy@grid08 ~]$ grep cclcgvmli03 /opt/glite/etc/myproxy-server.conf&lt;br /&gt;
 trusted_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 authorized_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Sur une UI:&lt;br /&gt;
&lt;br /&gt;
 voms-proxy-init -voms ops:/ops/Role=lcgadmin&lt;br /&gt;
 myproxy-init -c 336 -k nagios_roc_fr2-ops -s myproxy.grif.fr -l nagios  -x -Z &amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&amp;quot;&lt;br /&gt;
&lt;br /&gt;
= Annexe 1 =&lt;br /&gt;
 rpm -ivh http://www.sysadmin.hep.ac.uk/rpms/egee-SA1/centos5/x86_64/sa1-release-2-1.el5.noarch.rpm&lt;br /&gt;
 rpm -ivh  http://packages.sw.be/rpmforge-release/rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm&lt;br /&gt;
&lt;br /&gt;
 yum install atp&lt;br /&gt;
 yum install bouncycastle&lt;br /&gt;
 yum install broker&lt;br /&gt;
 yum install broker-cache&lt;br /&gt;
 yum install dcache-srmclient&lt;br /&gt;
 yum install dummy-ca-certs&lt;br /&gt;
 yum install egee-NAGIOS&lt;br /&gt;
 yum install egee-NAGIOS egee-NRPE&lt;br /&gt;
 yum install egee-NRPE&lt;br /&gt;
 yum install fetch-crl&lt;br /&gt;
 yum install fipscheck fipscheck-lib&lt;br /&gt;
 yum install glite-UI&lt;br /&gt;
 yum install glite-security-voms-clients&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install glite-yaim-core&lt;br /&gt;
 yum install glite-yaim-nagios&lt;br /&gt;
 yum install httpd&lt;br /&gt;
 yum install jdk&lt;br /&gt;
 yum install lcg-CA&lt;br /&gt;
 yum install lcg-CA egee-NAGIOS&lt;br /&gt;
 yum install lcg_util&lt;br /&gt;
 yum install mddb&lt;br /&gt;
 yum install msg-publish-simple&lt;br /&gt;
 yum install myproxy&lt;br /&gt;
 yum install mysql-client&lt;br /&gt;
 yum install mysql-server&lt;br /&gt;
 yum install nagios-proxy-refresh&lt;br /&gt;
 yum install perl-Config-Tiny&lt;br /&gt;
 yum install perl-DBD-MySQL&lt;br /&gt;
 yum install perl-rrdtool-1.3.8-2.el5.rf.x86_64&lt;br /&gt;
 yum install python-yaml&lt;br /&gt;
 yum install sun-jaf&lt;br /&gt;
 yum install uberftp-client&lt;br /&gt;
 yum install vdt_globus_rm_client&lt;br /&gt;
&lt;br /&gt;
 yum update glite-yaim-clients&lt;br /&gt;
 yum update glite-yaim-core&lt;br /&gt;
 yum update glite-yaim-nagios&lt;br /&gt;
 yum update mysql-server&lt;br /&gt;
 yum update perl-DBI&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe2 =&lt;br /&gt;
a)Mot de passe admin mysql :&lt;br /&gt;
Yum pour recupérer la derniere version de Mysql :&lt;br /&gt;
&#039;&#039;MySQL-server-community&#039;&#039;, ne pas oublier le client (pas de dépendance dessus)&lt;br /&gt;
Demmarrage de mysql avec --skip-grant-tables (pour ne pas avoir de mot de passe a rentrer)&lt;br /&gt;
 mysqld_safe --skip-grant-tables &amp;amp;&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root &lt;br /&gt;
 update user set password=PASSWORD(&amp;quot;NEW-ROOT-PASSWORD&amp;quot;) where User=&#039;root&#039;;&lt;br /&gt;
&lt;br /&gt;
b)creation des users pour le nagios regional:&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root -p&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON nagios.* TO &#039;ndouser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON atp.* TO &#039;atpuser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe 3 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /etc/ncg/ncg.localdb&lt;br /&gt;
 #&lt;br /&gt;
 # Local Rules file to modify NCG configuration&lt;br /&gt;
 #&lt;br /&gt;
 SITE!AUVERGRID&lt;br /&gt;
 SITE!CGG-LCG2&lt;br /&gt;
 SITE!ESRF&lt;br /&gt;
 SITE!GRIF&lt;br /&gt;
 SITE!IBCP-GBIO&lt;br /&gt;
 SITE!IN2P3-CC&lt;br /&gt;
 SITE!IN2P3-CC-PPS&lt;br /&gt;
 SITE!IN2P3-CC-T2&lt;br /&gt;
 SITE!IN2P3-CPPM&lt;br /&gt;
 SITE!IN2P3-IPNL&lt;br /&gt;
 SITE!IN2P3-IRES&lt;br /&gt;
 SITE!IN2P3-LAPP&lt;br /&gt;
 SITE!IN2P3-LPC&lt;br /&gt;
 SITE!IN2P3-LPSC&lt;br /&gt;
 SITE!IN2P3-SUBATECH&lt;br /&gt;
 SITE!IPSL-IPGP-LCG2&lt;br /&gt;
 SITE!M3PEC&lt;br /&gt;
 SITE!MSFG&lt;br /&gt;
 SITE!MSFG-MULTI&lt;br /&gt;
 SITE!MSFG-OPEN&lt;br /&gt;
 SITE!OBSPM&lt;br /&gt;
 SITE!PARIS-UREC-IPV6&lt;br /&gt;
 SITE!SN-UCAD&lt;br /&gt;
 SITE!ROC-FR&lt;br /&gt;
 SITE!SOLEIL&lt;br /&gt;
 SITE!StratusLab&lt;br /&gt;
 [root@cclcgvmli03 ~]#&lt;br /&gt;
 &lt;br /&gt;
= Annexe 4 =&lt;br /&gt;
&lt;br /&gt;
 SITE_EMAIL=c.leroy@cea.fr&lt;br /&gt;
 SITE_NAME=ROC-FR&lt;br /&gt;
 RB_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 WMS_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 PX_HOST=myproxy.grif.fr&lt;br /&gt;
 BDII_HOST=topbdii.grif.fr&lt;br /&gt;
 SITE_BDII_HOST=bdii.grif.fr&lt;br /&gt;
 MON_HOST=node06.datagrid.cea.fr&lt;br /&gt;
 VOS=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 DTEAM_GROUP_ENABLE=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 VO_DTEAM_SW_DIR=$VO_SW_DIR/dteam&lt;br /&gt;
 VO_DTEAM_DEFAULT_SE=$SE_HOST&lt;br /&gt;
 VO_DTEAM_STORAGE_DIR=$CLASSIC_STORAGE_DIR/dteam&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/&#039;&lt;br /&gt;
 VO_DTEAM_VOMSES=&amp;quot;&#039;dteam lcg-voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=lcg-voms.cern.ch dteam 24&#039; &#039;dteam    voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=voms.cern.ch dteam 24&#039;&amp;quot;&lt;br /&gt;
 VO_DTEAM_VOMS_CA_DN=&amp;quot;&#039;/DC=ch/DC=cern/CN=CERN Trusted Certification Authority&#039; &#039;/DC=ch/DC=cern/CN=CERN Trusted   Certification Authority&#039;&amp;quot;&lt;br /&gt;
 NAGIOS_HOST=cclcgvmli03.in2p3.fr&lt;br /&gt;
 NAGIOS_ADMIN_DNS=&amp;quot;/O=GRID-FR/C=FR/O=CEA/OU=IRFU/CN=Christine Leroy&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=Nadia Lajili&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=LPC/CN=Emmanuel Medernach&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CPPM/CN=Juan Carlos Carranza&amp;quot;&lt;br /&gt;
 NAGIOS_NCG_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_NAGIOS_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_GOCDB_ROC_NAME=France&lt;br /&gt;
 ROC_NAME=France&lt;br /&gt;
 NCG_PROBES_TYPE=remote,native,local&lt;br /&gt;
 NCG_VO=dteam&lt;br /&gt;
 NAGIOS_MYPROXY_NAME=nagios_roc_fr2&lt;br /&gt;
 NAGIOS_MYPROXY_USER=nagios&lt;br /&gt;
 MSG_BROKER_CACHE_NETWORK=PROD&lt;br /&gt;
 NAGIOS_ROLE=roc&lt;br /&gt;
 NAGIOS_HTTPD_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_SUDO_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_CGI_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_LDAP_FILTER=GlueSiteOtherInfo=EGEE_ROC=France&lt;br /&gt;
 NAGIOS_DB_PASS=x&lt;br /&gt;
 NAGIOS_NSCA_PASS=x&lt;br /&gt;
 MYSQL_ADMIN=x&lt;br /&gt;
 ATP_DB_PASS=x&lt;br /&gt;
 MDDB_DB_PASS=x&lt;br /&gt;
 MS_DB_PASS=x&lt;br /&gt;
 MYSQL_PASSWORD=x&lt;br /&gt;
 MYEGEE_DB_PASS=x&lt;br /&gt;
&lt;br /&gt;
= Annexe 5 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /opt/glite/yaim/examples/edgusers.conf&lt;br /&gt;
 11151:${DPMMGR_USER}:11151:${DPMMGR_GROUP}:DPM user:&lt;br /&gt;
 11152:${EDG_USER}:11152,11156:${EDG_GROUP},${INFOSYS_GROUP}:EDG user:${EDG_HOME_DIR}&lt;br /&gt;
 11153:${EDGINFO_USER}:11153,1156:${EDGINFO_USER},${INFOSYS_GROUP}:EDG info user:${EDGINFO_HOME_DIR}&lt;br /&gt;
 11154:${RGMA_USER}:11154,1156:${RGMA_GROUP},${INFOSYS_GROUP}:RGMA user:${INSTALL_ROOT}/glite/etc/rgma&lt;br /&gt;
 11155:${GLITE_USER}:11155:${GLITE_GROUP}:gLite user:${GLITE_HOME_DIR}&lt;br /&gt;
 11156:${BDII_USER}:11158:${BDII_GROUP}:BDII user:${BDII_HOME_DIR}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Annexe 6 =&lt;br /&gt;
&lt;br /&gt;
Probleme rencontré sur ccnagboxli01 (arret de ypbind + rpm manquant)&lt;br /&gt;
 chown -R nagios:nagios /var/spool/pnp4nagios&lt;br /&gt;
 chown -R nagios:nagios /var/spool/msg-nagios-bridge&lt;br /&gt;
 chown root:nagios /etc/atp/atp_db.conf&lt;br /&gt;
 chown root:nagios /etc/mddb/databases.yml&lt;br /&gt;
 chown nagios:apache /var/nagios/rw&lt;br /&gt;
 chown -R nagios:apache /var/nagios/rw&lt;br /&gt;
 chown root:nagios /etc/nagios/plugins/send_to_db.ini&lt;br /&gt;
 chown -R nagios:nagios /var/cache/msg/config-cache&lt;br /&gt;
 chown -R nagios:root /var/log/mddb&lt;br /&gt;
 chown -R nagios:root /var/log/pnp4nagios&lt;br /&gt;
 chown -R nagios:root /var/log/nagios&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
  useradd -g 40011 -u 10011 nagios&lt;br /&gt;
  useradd --group mysql -u 2730 mysql&lt;br /&gt;
  useradd -g mysql -u 2730 mysql&lt;br /&gt;
&lt;br /&gt;
   groupadd -g 40010 nagiosmaster&lt;br /&gt;
   groupadd -g 146 leftuser&lt;br /&gt;
&lt;br /&gt;
 yum install glite-security-voms-api-c-1.8.12-2.sl5.x86_64&lt;br /&gt;
 yum update perl-Net-SSLeay&lt;br /&gt;
 yum update perl-IO-Socket-SSL-1.01-1.fc6.noarch&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install lcg_util-1.7.6-1.sl5.x86_64&lt;br /&gt;
 yum install GFAL-client-1.11.8-2.sl5.x86_64 GFAL-client-1.11.8-2.sl5.i386&lt;br /&gt;
 yum install CGSI_gSOAP_2.7-1.3.3-1.sl5.x86_64&lt;br /&gt;
 yum install LFC-interfaces-1.7.3-1sec.sl5.x86_64 LFC-client-1.7.3-1sec.sl5.x86_64 lcg-dm-common-1.7.3-1sec.sl5.x86_64&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5741</id>
		<title>Nagios regional</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5741"/>
		<updated>2010-03-23T15:50:43Z</updated>

		<summary type="html">&lt;p&gt;LEROY: /* validation */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Installation d&#039;une NOGIOS box pour le ROC France&lt;br /&gt;
&lt;br /&gt;
= 1)	Installation de base : =&lt;br /&gt;
a.	Machine installée par les sysadmin du CC : OS + VOBOX + certificat + pas dans les NIS&lt;br /&gt;
&lt;br /&gt;
b.	Accessible via gsissh (port 1975)&lt;br /&gt;
&lt;br /&gt;
= 2)	Action faite au préalable : =&lt;br /&gt;
a.	Faire la demande pour que la machine soit autorisée à récupérer les SAM tests : https://gus.fzk.de/ws/ticket_info.php?ticket=55132&lt;br /&gt;
&lt;br /&gt;
b.	Autoriser la nagios box à récupérer les proxy en mode « retrieval », et stocker un proxy depuis une UI récuperable par la nagiosBOX voir  [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe0 Annexe0]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
c.	Certificat utilisé pour :&lt;br /&gt;
&lt;br /&gt;
i.	                       Access to GOCDB PI for ROCS GOCDB PI level 2 required &lt;br /&gt;
&lt;br /&gt;
ii.	                       Recuperation de proxy pour les sondes locales&lt;br /&gt;
&lt;br /&gt;
d. s&#039;inscrire dans la mailing liste: regional-nagios-admins@cern.ch (très réactive)&lt;br /&gt;
&lt;br /&gt;
= 3)	Installation de Nagios =&lt;br /&gt;
Reference : https://twiki.cern.ch/twiki/bin/view/EGEE/GridMonitoringNcgYaim&lt;br /&gt;
== Installation des packages via yum, Ajout des repos suivant ==&lt;br /&gt;
 a.	mirrors-rpmforge (rpm rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm)&lt;br /&gt;
 b.	rpmforge-testing.repo&lt;br /&gt;
 c.	rpmforge.repo&lt;br /&gt;
 d.	glite-UI.repo&lt;br /&gt;
 e.	sa1-centos5-release.repo (rpm:  sa1-release-2-1.el5.noarch.rpm)&lt;br /&gt;
 f.	glite-BDII.repo&lt;br /&gt;
&lt;br /&gt;
Problèmes de dépendances rencontrées si besoin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe1 Annexe1] (mais j’avais dû oublier de faire un : yum install egee-NAGIOS)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Installation subversion ==&lt;br /&gt;
Certain fichier de config sont a recuperer via svn au CERN:&lt;br /&gt;
&lt;br /&gt;
 yum install subversion&lt;br /&gt;
 svn co http://svnweb.cern.ch/guest/sam/trunk/roc-config&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 cp /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm.orig&lt;br /&gt;
 cp roc-config/Hash.pm_55_ALL_CRIT /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm&lt;br /&gt;
&lt;br /&gt;
== Mysql ==&lt;br /&gt;
&lt;br /&gt;
1.	Installer la dernière version de Mysql (server + client) ; &lt;br /&gt;
&lt;br /&gt;
2.	configurer le mot de passe admin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2a] ;&lt;br /&gt;
&lt;br /&gt;
3.	Configurer les users utiles à la nagios Box se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2b] ;&lt;br /&gt;
&lt;br /&gt;
== Configuration via yaim et NCG (en 2 fois)==&lt;br /&gt;
&lt;br /&gt;
1.	Remplir /etc/ncg/ncg.localdb avec la liste des sites se referer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe3 Annexe3]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
2.	Remplir le /opt/glite/yaim/site-info.def voir [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe4 Annexe4] ;&lt;br /&gt;
&lt;br /&gt;
3.	groupadd nagios&lt;br /&gt;
&lt;br /&gt;
4.	modif des uids/gids : /opt/glite/yaim/examples/edgusers.conf [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe5 Annexe5]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
5.	lancement de la configuration automatique via yaim (All On One Box) :&lt;br /&gt;
 	&lt;br /&gt;
 	/opt/glite/yaim/bin/yaim -s /opt/glite/yaim/site-info.def -c -n glite-UI -n glite-NAGIOS&lt;br /&gt;
&lt;br /&gt;
6.	lancement de la configuration via NCG (All On One Box) :&lt;br /&gt;
&lt;br /&gt;
 /usr/sbin/ncg.pl&lt;br /&gt;
&lt;br /&gt;
.....MODIFICATION importante:: voir: https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
La partie:&lt;br /&gt;
#  Configure manually /etc/ncg/ncg.conf (Template can be found here: ncg.conf.template: )&lt;br /&gt;
- Switch off automatic generation of ncg.conf by YAIM (NAGIOS_NCG_ENABLE_CONFIG&amp;quot;=&amp;quot;false&amp;quot;)&lt;br /&gt;
- Take ncg.conf.template and copy it to /etc/ncg/ncg.conf&lt;br /&gt;
     - Set $ROC_NAME$&lt;br /&gt;
     - Set $YOUR_MYPROXY_SERVER$ (e.g. myproxy-fts.cern.ch)&lt;br /&gt;
     - Set $MYPROXY_NAME$ (e.g.: NagiosRetrieve-sam-ap-roc.cern.ch)&lt;br /&gt;
     - Set $NAGIOS_ROLE$ (e.g.: ngi, roc)&lt;br /&gt;
# Take Hash.pm file that we are currently using at the CERN ROC Nagios boxes. In this file, we have removed the metrics that do not belong to the SAM_Critical profile, so only the metrics defined at ROC_SAM_critical are configured, and not relevant services like SRMv1 are commented out. The file is located under /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm &lt;br /&gt;
&lt;br /&gt;
Pour éviter d&#039;avoir des sondes inappropriés.&lt;br /&gt;
&lt;br /&gt;
== Tuning the configuration ==&lt;br /&gt;
&lt;br /&gt;
1.	Verifier  dans /etc/sysconfig/nagios:&lt;br /&gt;
 LD_LIBRARY_PATH=/opt/classads/lib64:/opt/glite/lib64:/opt/globus/lib:/opt/c-ares/lib:/opt/classads/lib64  &lt;br /&gt;
&lt;br /&gt;
2.	Desactiver les notifications, dans les fichiers de conf: &lt;br /&gt;
 a.      /etc/nagios/nagios.cfg, désactiver les notifications:enable_notifications=0 ;log_notifications=0&lt;br /&gt;
 b.	 /etc/nagios/wlcg.d/host.templates.cfg&lt;br /&gt;
 c.	 /etc/nagios/wlcg.d/service.templates.cfg&lt;br /&gt;
&lt;br /&gt;
4.	N’autoriser que les dteam/France à visualiser notre interface nagios : modifier le fichier : &lt;br /&gt;
 /etc/voms2htpasswd.conf, avec : vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&lt;br /&gt;
Plus utile site le site-info.def est défini correctement:&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&#039;&lt;br /&gt;
&lt;br /&gt;
== ActiveMQ ==&lt;br /&gt;
 /usr/sbin/msg-to-queue --prefix /queue/grid.probe.metricOutput.EGEE.a635834332381123c8b296d02b682f8f --broker-uri stomp://prod-grid-msg.cern.ch:6163&lt;br /&gt;
 &lt;br /&gt;
[root@cclcgvmli03 cron.hourly]# cat check_msg-to-queue.sh&lt;br /&gt;
&lt;br /&gt;
Verifier les messages:&lt;br /&gt;
 /usr/libexec/grid-monitoring/plugins/nagios/recv_from_queue -v &lt;br /&gt;
&lt;br /&gt;
faire une update de perl-GridMon &lt;br /&gt;
 The problem here is in the message handler &lt;br /&gt;
 (/usr/lib/perl5/vendor_perl/5.8.8/GridMon/MsgHandler/MetricOutput.pm). &lt;br /&gt;
 Probe on WN reports hostname localhost.localdomain and serviceURI CE &lt;br /&gt;
 hostname. In the previous version message handler first checked hostname &lt;br /&gt;
 value and then serviceURI. That is the reason why Christine is seeing &lt;br /&gt;
 results for localhost.localdomain. However, we fixed this and the latest &lt;br /&gt;
 version (1.0.34) parses messages correctly.&lt;br /&gt;
&lt;br /&gt;
 yum update perl-GridMon&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== Systeme d&#039;information ==&lt;br /&gt;
La nagios Box doit etre enregistré dans la GOCDB &lt;br /&gt;
et publié dans le site-BDII:&lt;br /&gt;
 ldapsearch -x -H ldap://ccnagboxli01.in2p3.fr:2170 -b &#039;Mds-vo-name=resource,o=Grid&#039;&lt;br /&gt;
&lt;br /&gt;
= validation =&lt;br /&gt;
&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
&lt;br /&gt;
now you should publish your Nagios in your Site BDII&lt;br /&gt;
And we should declare the node in the GOCDB: Regional-NAGIOS ou National-Nagios, a determiner&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
liste des sondes a valider: d&#039;après: https://twiki.cern.ch/twiki/bin/view/LCG/SAMCriticalTestsForCODs&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Type de Noeuds&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Valid (Y or N)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
APEL&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Pas de métric ?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
BDII (site and TOP)&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
- Probleme identifié pour la variable LCG_GFAL_INFOSYS quand c&#039;est une liste (CE lpnce.in2p3.fr):&lt;br /&gt;
LCG_GFAL_INFOSYS=topbdii.grif.fr:2170,cclcgtopbdii01.in2p3.fr:2170,lapp-bdii01.in2p3.fr:2170&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CREAMCE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
FTS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y and NO: For the check_command those options should be added: &lt;br /&gt;
--cert /etc/nagios/globus/hostcert.pem   --key /etc/nagios/globus/hostkey.pem  -x $USER2$ (this should be fixed in the next release)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
gRB/WMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_C&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_L&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MPI&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MyProxy&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RB&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Service Deprecated. Does NOT apply in Nagios&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RGMA / MON&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y (certificate lifetime only)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
&lt;br /&gt;
SRMv2&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOBOX&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
3 sites should open port 1975 to ccnagboxli01; mail sent the 23/03/2010&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
= Annexe0 =&lt;br /&gt;
&lt;br /&gt;
Sur le myproxyserver, il faut que le nagios server soit &amp;quot;trusted retriever&amp;quot; et &amp;quot;authorized retrievers&amp;quot;:&lt;br /&gt;
 [cleroy@grid08 ~]$ grep cclcgvmli03 /opt/glite/etc/myproxy-server.conf&lt;br /&gt;
 trusted_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 authorized_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Sur une UI:&lt;br /&gt;
&lt;br /&gt;
 voms-proxy-init -voms ops:/ops/Role=lcgadmin&lt;br /&gt;
 myproxy-init -c 336 -k nagios_roc_fr2-ops -s myproxy.grif.fr -l nagios  -x -Z &amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&amp;quot;&lt;br /&gt;
&lt;br /&gt;
= Annexe 1 =&lt;br /&gt;
 rpm -ivh http://www.sysadmin.hep.ac.uk/rpms/egee-SA1/centos5/x86_64/sa1-release-2-1.el5.noarch.rpm&lt;br /&gt;
 rpm -ivh  http://packages.sw.be/rpmforge-release/rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm&lt;br /&gt;
&lt;br /&gt;
 yum install atp&lt;br /&gt;
 yum install bouncycastle&lt;br /&gt;
 yum install broker&lt;br /&gt;
 yum install broker-cache&lt;br /&gt;
 yum install dcache-srmclient&lt;br /&gt;
 yum install dummy-ca-certs&lt;br /&gt;
 yum install egee-NAGIOS&lt;br /&gt;
 yum install egee-NAGIOS egee-NRPE&lt;br /&gt;
 yum install egee-NRPE&lt;br /&gt;
 yum install fetch-crl&lt;br /&gt;
 yum install fipscheck fipscheck-lib&lt;br /&gt;
 yum install glite-UI&lt;br /&gt;
 yum install glite-security-voms-clients&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install glite-yaim-core&lt;br /&gt;
 yum install glite-yaim-nagios&lt;br /&gt;
 yum install httpd&lt;br /&gt;
 yum install jdk&lt;br /&gt;
 yum install lcg-CA&lt;br /&gt;
 yum install lcg-CA egee-NAGIOS&lt;br /&gt;
 yum install lcg_util&lt;br /&gt;
 yum install mddb&lt;br /&gt;
 yum install msg-publish-simple&lt;br /&gt;
 yum install myproxy&lt;br /&gt;
 yum install mysql-client&lt;br /&gt;
 yum install mysql-server&lt;br /&gt;
 yum install nagios-proxy-refresh&lt;br /&gt;
 yum install perl-Config-Tiny&lt;br /&gt;
 yum install perl-DBD-MySQL&lt;br /&gt;
 yum install perl-rrdtool-1.3.8-2.el5.rf.x86_64&lt;br /&gt;
 yum install python-yaml&lt;br /&gt;
 yum install sun-jaf&lt;br /&gt;
 yum install uberftp-client&lt;br /&gt;
 yum install vdt_globus_rm_client&lt;br /&gt;
&lt;br /&gt;
 yum update glite-yaim-clients&lt;br /&gt;
 yum update glite-yaim-core&lt;br /&gt;
 yum update glite-yaim-nagios&lt;br /&gt;
 yum update mysql-server&lt;br /&gt;
 yum update perl-DBI&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe2 =&lt;br /&gt;
a)Mot de passe admin mysql :&lt;br /&gt;
Yum pour recupérer la derniere version de Mysql :&lt;br /&gt;
&#039;&#039;MySQL-server-community&#039;&#039;, ne pas oublier le client (pas de dépendance dessus)&lt;br /&gt;
Demmarrage de mysql avec --skip-grant-tables (pour ne pas avoir de mot de passe a rentrer)&lt;br /&gt;
 mysqld_safe --skip-grant-tables &amp;amp;&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root &lt;br /&gt;
 update user set password=PASSWORD(&amp;quot;NEW-ROOT-PASSWORD&amp;quot;) where User=&#039;root&#039;;&lt;br /&gt;
&lt;br /&gt;
b)creation des users pour le nagios regional:&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root -p&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON nagios.* TO &#039;ndouser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON atp.* TO &#039;atpuser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe 3 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /etc/ncg/ncg.localdb&lt;br /&gt;
 #&lt;br /&gt;
 # Local Rules file to modify NCG configuration&lt;br /&gt;
 #&lt;br /&gt;
 SITE!AUVERGRID&lt;br /&gt;
 SITE!CGG-LCG2&lt;br /&gt;
 SITE!ESRF&lt;br /&gt;
 SITE!GRIF&lt;br /&gt;
 SITE!IBCP-GBIO&lt;br /&gt;
 SITE!IN2P3-CC&lt;br /&gt;
 SITE!IN2P3-CC-PPS&lt;br /&gt;
 SITE!IN2P3-CC-T2&lt;br /&gt;
 SITE!IN2P3-CPPM&lt;br /&gt;
 SITE!IN2P3-IPNL&lt;br /&gt;
 SITE!IN2P3-IRES&lt;br /&gt;
 SITE!IN2P3-LAPP&lt;br /&gt;
 SITE!IN2P3-LPC&lt;br /&gt;
 SITE!IN2P3-LPSC&lt;br /&gt;
 SITE!IN2P3-SUBATECH&lt;br /&gt;
 SITE!IPSL-IPGP-LCG2&lt;br /&gt;
 SITE!M3PEC&lt;br /&gt;
 SITE!MSFG&lt;br /&gt;
 SITE!MSFG-MULTI&lt;br /&gt;
 SITE!MSFG-OPEN&lt;br /&gt;
 SITE!OBSPM&lt;br /&gt;
 SITE!PARIS-UREC-IPV6&lt;br /&gt;
 SITE!SN-UCAD&lt;br /&gt;
 SITE!ROC-FR&lt;br /&gt;
 SITE!SOLEIL&lt;br /&gt;
 SITE!StratusLab&lt;br /&gt;
 [root@cclcgvmli03 ~]#&lt;br /&gt;
 &lt;br /&gt;
= Annexe 4 =&lt;br /&gt;
&lt;br /&gt;
 SITE_EMAIL=c.leroy@cea.fr&lt;br /&gt;
 SITE_NAME=ROC-FR&lt;br /&gt;
 RB_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 WMS_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 PX_HOST=myproxy.grif.fr&lt;br /&gt;
 BDII_HOST=topbdii.grif.fr&lt;br /&gt;
 SITE_BDII_HOST=bdii.grif.fr&lt;br /&gt;
 MON_HOST=node06.datagrid.cea.fr&lt;br /&gt;
 VOS=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 DTEAM_GROUP_ENABLE=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 VO_DTEAM_SW_DIR=$VO_SW_DIR/dteam&lt;br /&gt;
 VO_DTEAM_DEFAULT_SE=$SE_HOST&lt;br /&gt;
 VO_DTEAM_STORAGE_DIR=$CLASSIC_STORAGE_DIR/dteam&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/&#039;&lt;br /&gt;
 VO_DTEAM_VOMSES=&amp;quot;&#039;dteam lcg-voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=lcg-voms.cern.ch dteam 24&#039; &#039;dteam    voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=voms.cern.ch dteam 24&#039;&amp;quot;&lt;br /&gt;
 VO_DTEAM_VOMS_CA_DN=&amp;quot;&#039;/DC=ch/DC=cern/CN=CERN Trusted Certification Authority&#039; &#039;/DC=ch/DC=cern/CN=CERN Trusted   Certification Authority&#039;&amp;quot;&lt;br /&gt;
 NAGIOS_HOST=cclcgvmli03.in2p3.fr&lt;br /&gt;
 NAGIOS_ADMIN_DNS=&amp;quot;/O=GRID-FR/C=FR/O=CEA/OU=IRFU/CN=Christine Leroy&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=Nadia Lajili&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=LPC/CN=Emmanuel Medernach&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CPPM/CN=Juan Carlos Carranza&amp;quot;&lt;br /&gt;
 NAGIOS_NCG_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_NAGIOS_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_GOCDB_ROC_NAME=France&lt;br /&gt;
 ROC_NAME=France&lt;br /&gt;
 NCG_PROBES_TYPE=remote,native,local&lt;br /&gt;
 NCG_VO=dteam&lt;br /&gt;
 NAGIOS_MYPROXY_NAME=nagios_roc_fr2&lt;br /&gt;
 NAGIOS_MYPROXY_USER=nagios&lt;br /&gt;
 MSG_BROKER_CACHE_NETWORK=PROD&lt;br /&gt;
 NAGIOS_ROLE=roc&lt;br /&gt;
 NAGIOS_HTTPD_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_SUDO_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_CGI_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_LDAP_FILTER=GlueSiteOtherInfo=EGEE_ROC=France&lt;br /&gt;
 NAGIOS_DB_PASS=x&lt;br /&gt;
 NAGIOS_NSCA_PASS=x&lt;br /&gt;
 MYSQL_ADMIN=x&lt;br /&gt;
 ATP_DB_PASS=x&lt;br /&gt;
 MDDB_DB_PASS=x&lt;br /&gt;
 MS_DB_PASS=x&lt;br /&gt;
 MYSQL_PASSWORD=x&lt;br /&gt;
 MYEGEE_DB_PASS=x&lt;br /&gt;
&lt;br /&gt;
= Annexe 5 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /opt/glite/yaim/examples/edgusers.conf&lt;br /&gt;
 11151:${DPMMGR_USER}:11151:${DPMMGR_GROUP}:DPM user:&lt;br /&gt;
 11152:${EDG_USER}:11152,11156:${EDG_GROUP},${INFOSYS_GROUP}:EDG user:${EDG_HOME_DIR}&lt;br /&gt;
 11153:${EDGINFO_USER}:11153,1156:${EDGINFO_USER},${INFOSYS_GROUP}:EDG info user:${EDGINFO_HOME_DIR}&lt;br /&gt;
 11154:${RGMA_USER}:11154,1156:${RGMA_GROUP},${INFOSYS_GROUP}:RGMA user:${INSTALL_ROOT}/glite/etc/rgma&lt;br /&gt;
 11155:${GLITE_USER}:11155:${GLITE_GROUP}:gLite user:${GLITE_HOME_DIR}&lt;br /&gt;
 11156:${BDII_USER}:11158:${BDII_GROUP}:BDII user:${BDII_HOME_DIR}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Annexe 6 =&lt;br /&gt;
&lt;br /&gt;
Probleme rencontré sur ccnagboxli01 (arret de ypbind + rpm manquant)&lt;br /&gt;
 chown -R nagios:nagios /var/spool/pnp4nagios&lt;br /&gt;
 chown -R nagios:nagios /var/spool/msg-nagios-bridge&lt;br /&gt;
 chown root:nagios /etc/atp/atp_db.conf&lt;br /&gt;
 chown root:nagios /etc/mddb/databases.yml&lt;br /&gt;
 chown nagios:apache /var/nagios/rw&lt;br /&gt;
 chown -R nagios:apache /var/nagios/rw&lt;br /&gt;
 chown root:nagios /etc/nagios/plugins/send_to_db.ini&lt;br /&gt;
 chown -R nagios:nagios /var/cache/msg/config-cache&lt;br /&gt;
 chown -R nagios:root /var/log/mddb&lt;br /&gt;
 chown -R nagios:root /var/log/pnp4nagios&lt;br /&gt;
 chown -R nagios:root /var/log/nagios&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
  useradd -g 40011 -u 10011 nagios&lt;br /&gt;
  useradd --group mysql -u 2730 mysql&lt;br /&gt;
  useradd -g mysql -u 2730 mysql&lt;br /&gt;
&lt;br /&gt;
   groupadd -g 40010 nagiosmaster&lt;br /&gt;
   groupadd -g 146 leftuser&lt;br /&gt;
&lt;br /&gt;
 yum install glite-security-voms-api-c-1.8.12-2.sl5.x86_64&lt;br /&gt;
 yum update perl-Net-SSLeay&lt;br /&gt;
 yum update perl-IO-Socket-SSL-1.01-1.fc6.noarch&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install lcg_util-1.7.6-1.sl5.x86_64&lt;br /&gt;
 yum install GFAL-client-1.11.8-2.sl5.x86_64 GFAL-client-1.11.8-2.sl5.i386&lt;br /&gt;
 yum install CGSI_gSOAP_2.7-1.3.3-1.sl5.x86_64&lt;br /&gt;
 yum install LFC-interfaces-1.7.3-1sec.sl5.x86_64 LFC-client-1.7.3-1sec.sl5.x86_64 lcg-dm-common-1.7.3-1sec.sl5.x86_64&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5740</id>
		<title>Nagios regional</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5740"/>
		<updated>2010-03-23T15:49:51Z</updated>

		<summary type="html">&lt;p&gt;LEROY: /* validation */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Installation d&#039;une NOGIOS box pour le ROC France&lt;br /&gt;
&lt;br /&gt;
= 1)	Installation de base : =&lt;br /&gt;
a.	Machine installée par les sysadmin du CC : OS + VOBOX + certificat + pas dans les NIS&lt;br /&gt;
&lt;br /&gt;
b.	Accessible via gsissh (port 1975)&lt;br /&gt;
&lt;br /&gt;
= 2)	Action faite au préalable : =&lt;br /&gt;
a.	Faire la demande pour que la machine soit autorisée à récupérer les SAM tests : https://gus.fzk.de/ws/ticket_info.php?ticket=55132&lt;br /&gt;
&lt;br /&gt;
b.	Autoriser la nagios box à récupérer les proxy en mode « retrieval », et stocker un proxy depuis une UI récuperable par la nagiosBOX voir  [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe0 Annexe0]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
c.	Certificat utilisé pour :&lt;br /&gt;
&lt;br /&gt;
i.	                       Access to GOCDB PI for ROCS GOCDB PI level 2 required &lt;br /&gt;
&lt;br /&gt;
ii.	                       Recuperation de proxy pour les sondes locales&lt;br /&gt;
&lt;br /&gt;
d. s&#039;inscrire dans la mailing liste: regional-nagios-admins@cern.ch (très réactive)&lt;br /&gt;
&lt;br /&gt;
= 3)	Installation de Nagios =&lt;br /&gt;
Reference : https://twiki.cern.ch/twiki/bin/view/EGEE/GridMonitoringNcgYaim&lt;br /&gt;
== Installation des packages via yum, Ajout des repos suivant ==&lt;br /&gt;
 a.	mirrors-rpmforge (rpm rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm)&lt;br /&gt;
 b.	rpmforge-testing.repo&lt;br /&gt;
 c.	rpmforge.repo&lt;br /&gt;
 d.	glite-UI.repo&lt;br /&gt;
 e.	sa1-centos5-release.repo (rpm:  sa1-release-2-1.el5.noarch.rpm)&lt;br /&gt;
 f.	glite-BDII.repo&lt;br /&gt;
&lt;br /&gt;
Problèmes de dépendances rencontrées si besoin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe1 Annexe1] (mais j’avais dû oublier de faire un : yum install egee-NAGIOS)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Installation subversion ==&lt;br /&gt;
Certain fichier de config sont a recuperer via svn au CERN:&lt;br /&gt;
&lt;br /&gt;
 yum install subversion&lt;br /&gt;
 svn co http://svnweb.cern.ch/guest/sam/trunk/roc-config&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 cp /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm.orig&lt;br /&gt;
 cp roc-config/Hash.pm_55_ALL_CRIT /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm&lt;br /&gt;
&lt;br /&gt;
== Mysql ==&lt;br /&gt;
&lt;br /&gt;
1.	Installer la dernière version de Mysql (server + client) ; &lt;br /&gt;
&lt;br /&gt;
2.	configurer le mot de passe admin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2a] ;&lt;br /&gt;
&lt;br /&gt;
3.	Configurer les users utiles à la nagios Box se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2b] ;&lt;br /&gt;
&lt;br /&gt;
== Configuration via yaim et NCG (en 2 fois)==&lt;br /&gt;
&lt;br /&gt;
1.	Remplir /etc/ncg/ncg.localdb avec la liste des sites se referer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe3 Annexe3]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
2.	Remplir le /opt/glite/yaim/site-info.def voir [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe4 Annexe4] ;&lt;br /&gt;
&lt;br /&gt;
3.	groupadd nagios&lt;br /&gt;
&lt;br /&gt;
4.	modif des uids/gids : /opt/glite/yaim/examples/edgusers.conf [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe5 Annexe5]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
5.	lancement de la configuration automatique via yaim (All On One Box) :&lt;br /&gt;
 	&lt;br /&gt;
 	/opt/glite/yaim/bin/yaim -s /opt/glite/yaim/site-info.def -c -n glite-UI -n glite-NAGIOS&lt;br /&gt;
&lt;br /&gt;
6.	lancement de la configuration via NCG (All On One Box) :&lt;br /&gt;
&lt;br /&gt;
 /usr/sbin/ncg.pl&lt;br /&gt;
&lt;br /&gt;
.....MODIFICATION importante:: voir: https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
La partie:&lt;br /&gt;
#  Configure manually /etc/ncg/ncg.conf (Template can be found here: ncg.conf.template: )&lt;br /&gt;
- Switch off automatic generation of ncg.conf by YAIM (NAGIOS_NCG_ENABLE_CONFIG&amp;quot;=&amp;quot;false&amp;quot;)&lt;br /&gt;
- Take ncg.conf.template and copy it to /etc/ncg/ncg.conf&lt;br /&gt;
     - Set $ROC_NAME$&lt;br /&gt;
     - Set $YOUR_MYPROXY_SERVER$ (e.g. myproxy-fts.cern.ch)&lt;br /&gt;
     - Set $MYPROXY_NAME$ (e.g.: NagiosRetrieve-sam-ap-roc.cern.ch)&lt;br /&gt;
     - Set $NAGIOS_ROLE$ (e.g.: ngi, roc)&lt;br /&gt;
# Take Hash.pm file that we are currently using at the CERN ROC Nagios boxes. In this file, we have removed the metrics that do not belong to the SAM_Critical profile, so only the metrics defined at ROC_SAM_critical are configured, and not relevant services like SRMv1 are commented out. The file is located under /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm &lt;br /&gt;
&lt;br /&gt;
Pour éviter d&#039;avoir des sondes inappropriés.&lt;br /&gt;
&lt;br /&gt;
== Tuning the configuration ==&lt;br /&gt;
&lt;br /&gt;
1.	Verifier  dans /etc/sysconfig/nagios:&lt;br /&gt;
 LD_LIBRARY_PATH=/opt/classads/lib64:/opt/glite/lib64:/opt/globus/lib:/opt/c-ares/lib:/opt/classads/lib64  &lt;br /&gt;
&lt;br /&gt;
2.	Desactiver les notifications, dans les fichiers de conf: &lt;br /&gt;
 a.      /etc/nagios/nagios.cfg, désactiver les notifications:enable_notifications=0 ;log_notifications=0&lt;br /&gt;
 b.	 /etc/nagios/wlcg.d/host.templates.cfg&lt;br /&gt;
 c.	 /etc/nagios/wlcg.d/service.templates.cfg&lt;br /&gt;
&lt;br /&gt;
4.	N’autoriser que les dteam/France à visualiser notre interface nagios : modifier le fichier : &lt;br /&gt;
 /etc/voms2htpasswd.conf, avec : vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&lt;br /&gt;
Plus utile site le site-info.def est défini correctement:&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&#039;&lt;br /&gt;
&lt;br /&gt;
== ActiveMQ ==&lt;br /&gt;
 /usr/sbin/msg-to-queue --prefix /queue/grid.probe.metricOutput.EGEE.a635834332381123c8b296d02b682f8f --broker-uri stomp://prod-grid-msg.cern.ch:6163&lt;br /&gt;
 &lt;br /&gt;
[root@cclcgvmli03 cron.hourly]# cat check_msg-to-queue.sh&lt;br /&gt;
&lt;br /&gt;
Verifier les messages:&lt;br /&gt;
 /usr/libexec/grid-monitoring/plugins/nagios/recv_from_queue -v &lt;br /&gt;
&lt;br /&gt;
faire une update de perl-GridMon &lt;br /&gt;
 The problem here is in the message handler &lt;br /&gt;
 (/usr/lib/perl5/vendor_perl/5.8.8/GridMon/MsgHandler/MetricOutput.pm). &lt;br /&gt;
 Probe on WN reports hostname localhost.localdomain and serviceURI CE &lt;br /&gt;
 hostname. In the previous version message handler first checked hostname &lt;br /&gt;
 value and then serviceURI. That is the reason why Christine is seeing &lt;br /&gt;
 results for localhost.localdomain. However, we fixed this and the latest &lt;br /&gt;
 version (1.0.34) parses messages correctly.&lt;br /&gt;
&lt;br /&gt;
 yum update perl-GridMon&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== Systeme d&#039;information ==&lt;br /&gt;
La nagios Box doit etre enregistré dans la GOCDB &lt;br /&gt;
et publié dans le site-BDII:&lt;br /&gt;
 ldapsearch -x -H ldap://ccnagboxli01.in2p3.fr:2170 -b &#039;Mds-vo-name=resource,o=Grid&#039;&lt;br /&gt;
&lt;br /&gt;
= validation =&lt;br /&gt;
&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
&lt;br /&gt;
now you should publish your Nagios in your Site BDII&lt;br /&gt;
And we should declare the node in the GOCDB: Regional-NAGIOS ou National-Nagios, a determiner&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
liste des sondes a valider: d&#039;après: https://twiki.cern.ch/twiki/bin/view/LCG/SAMCriticalTestsForCODs&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Type de Noeuds&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Valid (Y or N)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
APEL&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Pas de métric ?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
BDII (site and TOP)&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
- Probleme identifié pour la variable LCG_GFAL_INFOSYS quand c&#039;est une liste (CE lpnce.in2p3.fr):&lt;br /&gt;
LCG_GFAL_INFOSYS=topbdii.grif.fr:2170,cclcgtopbdii01.in2p3.fr:2170,lapp-bdii01.in2p3.fr:2170&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CREAMCE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
FTS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y and NO: For the check_command those options should be added: &lt;br /&gt;
--cert /etc/nagios/globus/hostcert.pem   --key /etc/nagios/globus/hostkey.pem  -x $USER2$ (this should be fixed in the next release)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
gRB/WMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_C&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_L&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MPI&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MyProxy&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RB&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Service Deprecated. Does NOT apply in Nagios&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RGMA / MON&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
&lt;br /&gt;
SRMv2&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOBOX&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
3 sites should open port 1975 to ccnagboxli01; mail sent the 23/03/2010&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
= Annexe0 =&lt;br /&gt;
&lt;br /&gt;
Sur le myproxyserver, il faut que le nagios server soit &amp;quot;trusted retriever&amp;quot; et &amp;quot;authorized retrievers&amp;quot;:&lt;br /&gt;
 [cleroy@grid08 ~]$ grep cclcgvmli03 /opt/glite/etc/myproxy-server.conf&lt;br /&gt;
 trusted_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 authorized_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Sur une UI:&lt;br /&gt;
&lt;br /&gt;
 voms-proxy-init -voms ops:/ops/Role=lcgadmin&lt;br /&gt;
 myproxy-init -c 336 -k nagios_roc_fr2-ops -s myproxy.grif.fr -l nagios  -x -Z &amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&amp;quot;&lt;br /&gt;
&lt;br /&gt;
= Annexe 1 =&lt;br /&gt;
 rpm -ivh http://www.sysadmin.hep.ac.uk/rpms/egee-SA1/centos5/x86_64/sa1-release-2-1.el5.noarch.rpm&lt;br /&gt;
 rpm -ivh  http://packages.sw.be/rpmforge-release/rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm&lt;br /&gt;
&lt;br /&gt;
 yum install atp&lt;br /&gt;
 yum install bouncycastle&lt;br /&gt;
 yum install broker&lt;br /&gt;
 yum install broker-cache&lt;br /&gt;
 yum install dcache-srmclient&lt;br /&gt;
 yum install dummy-ca-certs&lt;br /&gt;
 yum install egee-NAGIOS&lt;br /&gt;
 yum install egee-NAGIOS egee-NRPE&lt;br /&gt;
 yum install egee-NRPE&lt;br /&gt;
 yum install fetch-crl&lt;br /&gt;
 yum install fipscheck fipscheck-lib&lt;br /&gt;
 yum install glite-UI&lt;br /&gt;
 yum install glite-security-voms-clients&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install glite-yaim-core&lt;br /&gt;
 yum install glite-yaim-nagios&lt;br /&gt;
 yum install httpd&lt;br /&gt;
 yum install jdk&lt;br /&gt;
 yum install lcg-CA&lt;br /&gt;
 yum install lcg-CA egee-NAGIOS&lt;br /&gt;
 yum install lcg_util&lt;br /&gt;
 yum install mddb&lt;br /&gt;
 yum install msg-publish-simple&lt;br /&gt;
 yum install myproxy&lt;br /&gt;
 yum install mysql-client&lt;br /&gt;
 yum install mysql-server&lt;br /&gt;
 yum install nagios-proxy-refresh&lt;br /&gt;
 yum install perl-Config-Tiny&lt;br /&gt;
 yum install perl-DBD-MySQL&lt;br /&gt;
 yum install perl-rrdtool-1.3.8-2.el5.rf.x86_64&lt;br /&gt;
 yum install python-yaml&lt;br /&gt;
 yum install sun-jaf&lt;br /&gt;
 yum install uberftp-client&lt;br /&gt;
 yum install vdt_globus_rm_client&lt;br /&gt;
&lt;br /&gt;
 yum update glite-yaim-clients&lt;br /&gt;
 yum update glite-yaim-core&lt;br /&gt;
 yum update glite-yaim-nagios&lt;br /&gt;
 yum update mysql-server&lt;br /&gt;
 yum update perl-DBI&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe2 =&lt;br /&gt;
a)Mot de passe admin mysql :&lt;br /&gt;
Yum pour recupérer la derniere version de Mysql :&lt;br /&gt;
&#039;&#039;MySQL-server-community&#039;&#039;, ne pas oublier le client (pas de dépendance dessus)&lt;br /&gt;
Demmarrage de mysql avec --skip-grant-tables (pour ne pas avoir de mot de passe a rentrer)&lt;br /&gt;
 mysqld_safe --skip-grant-tables &amp;amp;&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root &lt;br /&gt;
 update user set password=PASSWORD(&amp;quot;NEW-ROOT-PASSWORD&amp;quot;) where User=&#039;root&#039;;&lt;br /&gt;
&lt;br /&gt;
b)creation des users pour le nagios regional:&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root -p&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON nagios.* TO &#039;ndouser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON atp.* TO &#039;atpuser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe 3 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /etc/ncg/ncg.localdb&lt;br /&gt;
 #&lt;br /&gt;
 # Local Rules file to modify NCG configuration&lt;br /&gt;
 #&lt;br /&gt;
 SITE!AUVERGRID&lt;br /&gt;
 SITE!CGG-LCG2&lt;br /&gt;
 SITE!ESRF&lt;br /&gt;
 SITE!GRIF&lt;br /&gt;
 SITE!IBCP-GBIO&lt;br /&gt;
 SITE!IN2P3-CC&lt;br /&gt;
 SITE!IN2P3-CC-PPS&lt;br /&gt;
 SITE!IN2P3-CC-T2&lt;br /&gt;
 SITE!IN2P3-CPPM&lt;br /&gt;
 SITE!IN2P3-IPNL&lt;br /&gt;
 SITE!IN2P3-IRES&lt;br /&gt;
 SITE!IN2P3-LAPP&lt;br /&gt;
 SITE!IN2P3-LPC&lt;br /&gt;
 SITE!IN2P3-LPSC&lt;br /&gt;
 SITE!IN2P3-SUBATECH&lt;br /&gt;
 SITE!IPSL-IPGP-LCG2&lt;br /&gt;
 SITE!M3PEC&lt;br /&gt;
 SITE!MSFG&lt;br /&gt;
 SITE!MSFG-MULTI&lt;br /&gt;
 SITE!MSFG-OPEN&lt;br /&gt;
 SITE!OBSPM&lt;br /&gt;
 SITE!PARIS-UREC-IPV6&lt;br /&gt;
 SITE!SN-UCAD&lt;br /&gt;
 SITE!ROC-FR&lt;br /&gt;
 SITE!SOLEIL&lt;br /&gt;
 SITE!StratusLab&lt;br /&gt;
 [root@cclcgvmli03 ~]#&lt;br /&gt;
 &lt;br /&gt;
= Annexe 4 =&lt;br /&gt;
&lt;br /&gt;
 SITE_EMAIL=c.leroy@cea.fr&lt;br /&gt;
 SITE_NAME=ROC-FR&lt;br /&gt;
 RB_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 WMS_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 PX_HOST=myproxy.grif.fr&lt;br /&gt;
 BDII_HOST=topbdii.grif.fr&lt;br /&gt;
 SITE_BDII_HOST=bdii.grif.fr&lt;br /&gt;
 MON_HOST=node06.datagrid.cea.fr&lt;br /&gt;
 VOS=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 DTEAM_GROUP_ENABLE=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 VO_DTEAM_SW_DIR=$VO_SW_DIR/dteam&lt;br /&gt;
 VO_DTEAM_DEFAULT_SE=$SE_HOST&lt;br /&gt;
 VO_DTEAM_STORAGE_DIR=$CLASSIC_STORAGE_DIR/dteam&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/&#039;&lt;br /&gt;
 VO_DTEAM_VOMSES=&amp;quot;&#039;dteam lcg-voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=lcg-voms.cern.ch dteam 24&#039; &#039;dteam    voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=voms.cern.ch dteam 24&#039;&amp;quot;&lt;br /&gt;
 VO_DTEAM_VOMS_CA_DN=&amp;quot;&#039;/DC=ch/DC=cern/CN=CERN Trusted Certification Authority&#039; &#039;/DC=ch/DC=cern/CN=CERN Trusted   Certification Authority&#039;&amp;quot;&lt;br /&gt;
 NAGIOS_HOST=cclcgvmli03.in2p3.fr&lt;br /&gt;
 NAGIOS_ADMIN_DNS=&amp;quot;/O=GRID-FR/C=FR/O=CEA/OU=IRFU/CN=Christine Leroy&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=Nadia Lajili&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=LPC/CN=Emmanuel Medernach&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CPPM/CN=Juan Carlos Carranza&amp;quot;&lt;br /&gt;
 NAGIOS_NCG_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_NAGIOS_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_GOCDB_ROC_NAME=France&lt;br /&gt;
 ROC_NAME=France&lt;br /&gt;
 NCG_PROBES_TYPE=remote,native,local&lt;br /&gt;
 NCG_VO=dteam&lt;br /&gt;
 NAGIOS_MYPROXY_NAME=nagios_roc_fr2&lt;br /&gt;
 NAGIOS_MYPROXY_USER=nagios&lt;br /&gt;
 MSG_BROKER_CACHE_NETWORK=PROD&lt;br /&gt;
 NAGIOS_ROLE=roc&lt;br /&gt;
 NAGIOS_HTTPD_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_SUDO_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_CGI_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_LDAP_FILTER=GlueSiteOtherInfo=EGEE_ROC=France&lt;br /&gt;
 NAGIOS_DB_PASS=x&lt;br /&gt;
 NAGIOS_NSCA_PASS=x&lt;br /&gt;
 MYSQL_ADMIN=x&lt;br /&gt;
 ATP_DB_PASS=x&lt;br /&gt;
 MDDB_DB_PASS=x&lt;br /&gt;
 MS_DB_PASS=x&lt;br /&gt;
 MYSQL_PASSWORD=x&lt;br /&gt;
 MYEGEE_DB_PASS=x&lt;br /&gt;
&lt;br /&gt;
= Annexe 5 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /opt/glite/yaim/examples/edgusers.conf&lt;br /&gt;
 11151:${DPMMGR_USER}:11151:${DPMMGR_GROUP}:DPM user:&lt;br /&gt;
 11152:${EDG_USER}:11152,11156:${EDG_GROUP},${INFOSYS_GROUP}:EDG user:${EDG_HOME_DIR}&lt;br /&gt;
 11153:${EDGINFO_USER}:11153,1156:${EDGINFO_USER},${INFOSYS_GROUP}:EDG info user:${EDGINFO_HOME_DIR}&lt;br /&gt;
 11154:${RGMA_USER}:11154,1156:${RGMA_GROUP},${INFOSYS_GROUP}:RGMA user:${INSTALL_ROOT}/glite/etc/rgma&lt;br /&gt;
 11155:${GLITE_USER}:11155:${GLITE_GROUP}:gLite user:${GLITE_HOME_DIR}&lt;br /&gt;
 11156:${BDII_USER}:11158:${BDII_GROUP}:BDII user:${BDII_HOME_DIR}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Annexe 6 =&lt;br /&gt;
&lt;br /&gt;
Probleme rencontré sur ccnagboxli01 (arret de ypbind + rpm manquant)&lt;br /&gt;
 chown -R nagios:nagios /var/spool/pnp4nagios&lt;br /&gt;
 chown -R nagios:nagios /var/spool/msg-nagios-bridge&lt;br /&gt;
 chown root:nagios /etc/atp/atp_db.conf&lt;br /&gt;
 chown root:nagios /etc/mddb/databases.yml&lt;br /&gt;
 chown nagios:apache /var/nagios/rw&lt;br /&gt;
 chown -R nagios:apache /var/nagios/rw&lt;br /&gt;
 chown root:nagios /etc/nagios/plugins/send_to_db.ini&lt;br /&gt;
 chown -R nagios:nagios /var/cache/msg/config-cache&lt;br /&gt;
 chown -R nagios:root /var/log/mddb&lt;br /&gt;
 chown -R nagios:root /var/log/pnp4nagios&lt;br /&gt;
 chown -R nagios:root /var/log/nagios&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
  useradd -g 40011 -u 10011 nagios&lt;br /&gt;
  useradd --group mysql -u 2730 mysql&lt;br /&gt;
  useradd -g mysql -u 2730 mysql&lt;br /&gt;
&lt;br /&gt;
   groupadd -g 40010 nagiosmaster&lt;br /&gt;
   groupadd -g 146 leftuser&lt;br /&gt;
&lt;br /&gt;
 yum install glite-security-voms-api-c-1.8.12-2.sl5.x86_64&lt;br /&gt;
 yum update perl-Net-SSLeay&lt;br /&gt;
 yum update perl-IO-Socket-SSL-1.01-1.fc6.noarch&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install lcg_util-1.7.6-1.sl5.x86_64&lt;br /&gt;
 yum install GFAL-client-1.11.8-2.sl5.x86_64 GFAL-client-1.11.8-2.sl5.i386&lt;br /&gt;
 yum install CGSI_gSOAP_2.7-1.3.3-1.sl5.x86_64&lt;br /&gt;
 yum install LFC-interfaces-1.7.3-1sec.sl5.x86_64 LFC-client-1.7.3-1sec.sl5.x86_64 lcg-dm-common-1.7.3-1sec.sl5.x86_64&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5739</id>
		<title>Nagios regional</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5739"/>
		<updated>2010-03-23T15:47:01Z</updated>

		<summary type="html">&lt;p&gt;LEROY: /* validation */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Installation d&#039;une NOGIOS box pour le ROC France&lt;br /&gt;
&lt;br /&gt;
= 1)	Installation de base : =&lt;br /&gt;
a.	Machine installée par les sysadmin du CC : OS + VOBOX + certificat + pas dans les NIS&lt;br /&gt;
&lt;br /&gt;
b.	Accessible via gsissh (port 1975)&lt;br /&gt;
&lt;br /&gt;
= 2)	Action faite au préalable : =&lt;br /&gt;
a.	Faire la demande pour que la machine soit autorisée à récupérer les SAM tests : https://gus.fzk.de/ws/ticket_info.php?ticket=55132&lt;br /&gt;
&lt;br /&gt;
b.	Autoriser la nagios box à récupérer les proxy en mode « retrieval », et stocker un proxy depuis une UI récuperable par la nagiosBOX voir  [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe0 Annexe0]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
c.	Certificat utilisé pour :&lt;br /&gt;
&lt;br /&gt;
i.	                       Access to GOCDB PI for ROCS GOCDB PI level 2 required &lt;br /&gt;
&lt;br /&gt;
ii.	                       Recuperation de proxy pour les sondes locales&lt;br /&gt;
&lt;br /&gt;
d. s&#039;inscrire dans la mailing liste: regional-nagios-admins@cern.ch (très réactive)&lt;br /&gt;
&lt;br /&gt;
= 3)	Installation de Nagios =&lt;br /&gt;
Reference : https://twiki.cern.ch/twiki/bin/view/EGEE/GridMonitoringNcgYaim&lt;br /&gt;
== Installation des packages via yum, Ajout des repos suivant ==&lt;br /&gt;
 a.	mirrors-rpmforge (rpm rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm)&lt;br /&gt;
 b.	rpmforge-testing.repo&lt;br /&gt;
 c.	rpmforge.repo&lt;br /&gt;
 d.	glite-UI.repo&lt;br /&gt;
 e.	sa1-centos5-release.repo (rpm:  sa1-release-2-1.el5.noarch.rpm)&lt;br /&gt;
 f.	glite-BDII.repo&lt;br /&gt;
&lt;br /&gt;
Problèmes de dépendances rencontrées si besoin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe1 Annexe1] (mais j’avais dû oublier de faire un : yum install egee-NAGIOS)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Installation subversion ==&lt;br /&gt;
Certain fichier de config sont a recuperer via svn au CERN:&lt;br /&gt;
&lt;br /&gt;
 yum install subversion&lt;br /&gt;
 svn co http://svnweb.cern.ch/guest/sam/trunk/roc-config&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 cp /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm.orig&lt;br /&gt;
 cp roc-config/Hash.pm_55_ALL_CRIT /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm&lt;br /&gt;
&lt;br /&gt;
== Mysql ==&lt;br /&gt;
&lt;br /&gt;
1.	Installer la dernière version de Mysql (server + client) ; &lt;br /&gt;
&lt;br /&gt;
2.	configurer le mot de passe admin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2a] ;&lt;br /&gt;
&lt;br /&gt;
3.	Configurer les users utiles à la nagios Box se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2b] ;&lt;br /&gt;
&lt;br /&gt;
== Configuration via yaim et NCG (en 2 fois)==&lt;br /&gt;
&lt;br /&gt;
1.	Remplir /etc/ncg/ncg.localdb avec la liste des sites se referer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe3 Annexe3]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
2.	Remplir le /opt/glite/yaim/site-info.def voir [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe4 Annexe4] ;&lt;br /&gt;
&lt;br /&gt;
3.	groupadd nagios&lt;br /&gt;
&lt;br /&gt;
4.	modif des uids/gids : /opt/glite/yaim/examples/edgusers.conf [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe5 Annexe5]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
5.	lancement de la configuration automatique via yaim (All On One Box) :&lt;br /&gt;
 	&lt;br /&gt;
 	/opt/glite/yaim/bin/yaim -s /opt/glite/yaim/site-info.def -c -n glite-UI -n glite-NAGIOS&lt;br /&gt;
&lt;br /&gt;
6.	lancement de la configuration via NCG (All On One Box) :&lt;br /&gt;
&lt;br /&gt;
 /usr/sbin/ncg.pl&lt;br /&gt;
&lt;br /&gt;
.....MODIFICATION importante:: voir: https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
La partie:&lt;br /&gt;
#  Configure manually /etc/ncg/ncg.conf (Template can be found here: ncg.conf.template: )&lt;br /&gt;
- Switch off automatic generation of ncg.conf by YAIM (NAGIOS_NCG_ENABLE_CONFIG&amp;quot;=&amp;quot;false&amp;quot;)&lt;br /&gt;
- Take ncg.conf.template and copy it to /etc/ncg/ncg.conf&lt;br /&gt;
     - Set $ROC_NAME$&lt;br /&gt;
     - Set $YOUR_MYPROXY_SERVER$ (e.g. myproxy-fts.cern.ch)&lt;br /&gt;
     - Set $MYPROXY_NAME$ (e.g.: NagiosRetrieve-sam-ap-roc.cern.ch)&lt;br /&gt;
     - Set $NAGIOS_ROLE$ (e.g.: ngi, roc)&lt;br /&gt;
# Take Hash.pm file that we are currently using at the CERN ROC Nagios boxes. In this file, we have removed the metrics that do not belong to the SAM_Critical profile, so only the metrics defined at ROC_SAM_critical are configured, and not relevant services like SRMv1 are commented out. The file is located under /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm &lt;br /&gt;
&lt;br /&gt;
Pour éviter d&#039;avoir des sondes inappropriés.&lt;br /&gt;
&lt;br /&gt;
== Tuning the configuration ==&lt;br /&gt;
&lt;br /&gt;
1.	Verifier  dans /etc/sysconfig/nagios:&lt;br /&gt;
 LD_LIBRARY_PATH=/opt/classads/lib64:/opt/glite/lib64:/opt/globus/lib:/opt/c-ares/lib:/opt/classads/lib64  &lt;br /&gt;
&lt;br /&gt;
2.	Desactiver les notifications, dans les fichiers de conf: &lt;br /&gt;
 a.      /etc/nagios/nagios.cfg, désactiver les notifications:enable_notifications=0 ;log_notifications=0&lt;br /&gt;
 b.	 /etc/nagios/wlcg.d/host.templates.cfg&lt;br /&gt;
 c.	 /etc/nagios/wlcg.d/service.templates.cfg&lt;br /&gt;
&lt;br /&gt;
4.	N’autoriser que les dteam/France à visualiser notre interface nagios : modifier le fichier : &lt;br /&gt;
 /etc/voms2htpasswd.conf, avec : vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&lt;br /&gt;
Plus utile site le site-info.def est défini correctement:&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&#039;&lt;br /&gt;
&lt;br /&gt;
== ActiveMQ ==&lt;br /&gt;
 /usr/sbin/msg-to-queue --prefix /queue/grid.probe.metricOutput.EGEE.a635834332381123c8b296d02b682f8f --broker-uri stomp://prod-grid-msg.cern.ch:6163&lt;br /&gt;
 &lt;br /&gt;
[root@cclcgvmli03 cron.hourly]# cat check_msg-to-queue.sh&lt;br /&gt;
&lt;br /&gt;
Verifier les messages:&lt;br /&gt;
 /usr/libexec/grid-monitoring/plugins/nagios/recv_from_queue -v &lt;br /&gt;
&lt;br /&gt;
faire une update de perl-GridMon &lt;br /&gt;
 The problem here is in the message handler &lt;br /&gt;
 (/usr/lib/perl5/vendor_perl/5.8.8/GridMon/MsgHandler/MetricOutput.pm). &lt;br /&gt;
 Probe on WN reports hostname localhost.localdomain and serviceURI CE &lt;br /&gt;
 hostname. In the previous version message handler first checked hostname &lt;br /&gt;
 value and then serviceURI. That is the reason why Christine is seeing &lt;br /&gt;
 results for localhost.localdomain. However, we fixed this and the latest &lt;br /&gt;
 version (1.0.34) parses messages correctly.&lt;br /&gt;
&lt;br /&gt;
 yum update perl-GridMon&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== Systeme d&#039;information ==&lt;br /&gt;
La nagios Box doit etre enregistré dans la GOCDB &lt;br /&gt;
et publié dans le site-BDII:&lt;br /&gt;
 ldapsearch -x -H ldap://ccnagboxli01.in2p3.fr:2170 -b &#039;Mds-vo-name=resource,o=Grid&#039;&lt;br /&gt;
&lt;br /&gt;
= validation =&lt;br /&gt;
&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
&lt;br /&gt;
now you should publish your Nagios in your Site BDII&lt;br /&gt;
And we should declare the node in the GOCDB: Regional-NAGIOS ou National-Nagios, a determiner&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
liste des sondes a valider: d&#039;après: https://twiki.cern.ch/twiki/bin/view/LCG/SAMCriticalTestsForCODs&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Type de Noeuds&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Valid (Y or N)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
APEL&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Pas de métric ?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
BDII (site and TOP)&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
- Probleme identifié pour la variable LCG_GFAL_INFOSYS quand c&#039;est une liste (CE lpnce.in2p3.fr):&lt;br /&gt;
LCG_GFAL_INFOSYS=topbdii.grif.fr:2170,cclcgtopbdii01.in2p3.fr:2170,lapp-bdii01.in2p3.fr:2170&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CREAMCE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
FTS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y and NO: For the check_command those options should be added: &lt;br /&gt;
--cert /etc/nagios/globus/hostcert.pem   --key /etc/nagios/globus/hostkey.pem  -x $USER2$ (this should be fixed in the next release)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
gRB/WMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_C&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_L&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MPI&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MyProxy&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RB&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RGMA / MON&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
&lt;br /&gt;
SRMv2&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOBOX&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
3 sites should open port 1975 to ccnagboxli01; mail sent the 23/03/2010&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
= Annexe0 =&lt;br /&gt;
&lt;br /&gt;
Sur le myproxyserver, il faut que le nagios server soit &amp;quot;trusted retriever&amp;quot; et &amp;quot;authorized retrievers&amp;quot;:&lt;br /&gt;
 [cleroy@grid08 ~]$ grep cclcgvmli03 /opt/glite/etc/myproxy-server.conf&lt;br /&gt;
 trusted_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 authorized_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Sur une UI:&lt;br /&gt;
&lt;br /&gt;
 voms-proxy-init -voms ops:/ops/Role=lcgadmin&lt;br /&gt;
 myproxy-init -c 336 -k nagios_roc_fr2-ops -s myproxy.grif.fr -l nagios  -x -Z &amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&amp;quot;&lt;br /&gt;
&lt;br /&gt;
= Annexe 1 =&lt;br /&gt;
 rpm -ivh http://www.sysadmin.hep.ac.uk/rpms/egee-SA1/centos5/x86_64/sa1-release-2-1.el5.noarch.rpm&lt;br /&gt;
 rpm -ivh  http://packages.sw.be/rpmforge-release/rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm&lt;br /&gt;
&lt;br /&gt;
 yum install atp&lt;br /&gt;
 yum install bouncycastle&lt;br /&gt;
 yum install broker&lt;br /&gt;
 yum install broker-cache&lt;br /&gt;
 yum install dcache-srmclient&lt;br /&gt;
 yum install dummy-ca-certs&lt;br /&gt;
 yum install egee-NAGIOS&lt;br /&gt;
 yum install egee-NAGIOS egee-NRPE&lt;br /&gt;
 yum install egee-NRPE&lt;br /&gt;
 yum install fetch-crl&lt;br /&gt;
 yum install fipscheck fipscheck-lib&lt;br /&gt;
 yum install glite-UI&lt;br /&gt;
 yum install glite-security-voms-clients&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install glite-yaim-core&lt;br /&gt;
 yum install glite-yaim-nagios&lt;br /&gt;
 yum install httpd&lt;br /&gt;
 yum install jdk&lt;br /&gt;
 yum install lcg-CA&lt;br /&gt;
 yum install lcg-CA egee-NAGIOS&lt;br /&gt;
 yum install lcg_util&lt;br /&gt;
 yum install mddb&lt;br /&gt;
 yum install msg-publish-simple&lt;br /&gt;
 yum install myproxy&lt;br /&gt;
 yum install mysql-client&lt;br /&gt;
 yum install mysql-server&lt;br /&gt;
 yum install nagios-proxy-refresh&lt;br /&gt;
 yum install perl-Config-Tiny&lt;br /&gt;
 yum install perl-DBD-MySQL&lt;br /&gt;
 yum install perl-rrdtool-1.3.8-2.el5.rf.x86_64&lt;br /&gt;
 yum install python-yaml&lt;br /&gt;
 yum install sun-jaf&lt;br /&gt;
 yum install uberftp-client&lt;br /&gt;
 yum install vdt_globus_rm_client&lt;br /&gt;
&lt;br /&gt;
 yum update glite-yaim-clients&lt;br /&gt;
 yum update glite-yaim-core&lt;br /&gt;
 yum update glite-yaim-nagios&lt;br /&gt;
 yum update mysql-server&lt;br /&gt;
 yum update perl-DBI&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe2 =&lt;br /&gt;
a)Mot de passe admin mysql :&lt;br /&gt;
Yum pour recupérer la derniere version de Mysql :&lt;br /&gt;
&#039;&#039;MySQL-server-community&#039;&#039;, ne pas oublier le client (pas de dépendance dessus)&lt;br /&gt;
Demmarrage de mysql avec --skip-grant-tables (pour ne pas avoir de mot de passe a rentrer)&lt;br /&gt;
 mysqld_safe --skip-grant-tables &amp;amp;&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root &lt;br /&gt;
 update user set password=PASSWORD(&amp;quot;NEW-ROOT-PASSWORD&amp;quot;) where User=&#039;root&#039;;&lt;br /&gt;
&lt;br /&gt;
b)creation des users pour le nagios regional:&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root -p&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON nagios.* TO &#039;ndouser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON atp.* TO &#039;atpuser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe 3 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /etc/ncg/ncg.localdb&lt;br /&gt;
 #&lt;br /&gt;
 # Local Rules file to modify NCG configuration&lt;br /&gt;
 #&lt;br /&gt;
 SITE!AUVERGRID&lt;br /&gt;
 SITE!CGG-LCG2&lt;br /&gt;
 SITE!ESRF&lt;br /&gt;
 SITE!GRIF&lt;br /&gt;
 SITE!IBCP-GBIO&lt;br /&gt;
 SITE!IN2P3-CC&lt;br /&gt;
 SITE!IN2P3-CC-PPS&lt;br /&gt;
 SITE!IN2P3-CC-T2&lt;br /&gt;
 SITE!IN2P3-CPPM&lt;br /&gt;
 SITE!IN2P3-IPNL&lt;br /&gt;
 SITE!IN2P3-IRES&lt;br /&gt;
 SITE!IN2P3-LAPP&lt;br /&gt;
 SITE!IN2P3-LPC&lt;br /&gt;
 SITE!IN2P3-LPSC&lt;br /&gt;
 SITE!IN2P3-SUBATECH&lt;br /&gt;
 SITE!IPSL-IPGP-LCG2&lt;br /&gt;
 SITE!M3PEC&lt;br /&gt;
 SITE!MSFG&lt;br /&gt;
 SITE!MSFG-MULTI&lt;br /&gt;
 SITE!MSFG-OPEN&lt;br /&gt;
 SITE!OBSPM&lt;br /&gt;
 SITE!PARIS-UREC-IPV6&lt;br /&gt;
 SITE!SN-UCAD&lt;br /&gt;
 SITE!ROC-FR&lt;br /&gt;
 SITE!SOLEIL&lt;br /&gt;
 SITE!StratusLab&lt;br /&gt;
 [root@cclcgvmli03 ~]#&lt;br /&gt;
 &lt;br /&gt;
= Annexe 4 =&lt;br /&gt;
&lt;br /&gt;
 SITE_EMAIL=c.leroy@cea.fr&lt;br /&gt;
 SITE_NAME=ROC-FR&lt;br /&gt;
 RB_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 WMS_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 PX_HOST=myproxy.grif.fr&lt;br /&gt;
 BDII_HOST=topbdii.grif.fr&lt;br /&gt;
 SITE_BDII_HOST=bdii.grif.fr&lt;br /&gt;
 MON_HOST=node06.datagrid.cea.fr&lt;br /&gt;
 VOS=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 DTEAM_GROUP_ENABLE=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 VO_DTEAM_SW_DIR=$VO_SW_DIR/dteam&lt;br /&gt;
 VO_DTEAM_DEFAULT_SE=$SE_HOST&lt;br /&gt;
 VO_DTEAM_STORAGE_DIR=$CLASSIC_STORAGE_DIR/dteam&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/&#039;&lt;br /&gt;
 VO_DTEAM_VOMSES=&amp;quot;&#039;dteam lcg-voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=lcg-voms.cern.ch dteam 24&#039; &#039;dteam    voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=voms.cern.ch dteam 24&#039;&amp;quot;&lt;br /&gt;
 VO_DTEAM_VOMS_CA_DN=&amp;quot;&#039;/DC=ch/DC=cern/CN=CERN Trusted Certification Authority&#039; &#039;/DC=ch/DC=cern/CN=CERN Trusted   Certification Authority&#039;&amp;quot;&lt;br /&gt;
 NAGIOS_HOST=cclcgvmli03.in2p3.fr&lt;br /&gt;
 NAGIOS_ADMIN_DNS=&amp;quot;/O=GRID-FR/C=FR/O=CEA/OU=IRFU/CN=Christine Leroy&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=Nadia Lajili&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=LPC/CN=Emmanuel Medernach&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CPPM/CN=Juan Carlos Carranza&amp;quot;&lt;br /&gt;
 NAGIOS_NCG_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_NAGIOS_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_GOCDB_ROC_NAME=France&lt;br /&gt;
 ROC_NAME=France&lt;br /&gt;
 NCG_PROBES_TYPE=remote,native,local&lt;br /&gt;
 NCG_VO=dteam&lt;br /&gt;
 NAGIOS_MYPROXY_NAME=nagios_roc_fr2&lt;br /&gt;
 NAGIOS_MYPROXY_USER=nagios&lt;br /&gt;
 MSG_BROKER_CACHE_NETWORK=PROD&lt;br /&gt;
 NAGIOS_ROLE=roc&lt;br /&gt;
 NAGIOS_HTTPD_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_SUDO_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_CGI_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_LDAP_FILTER=GlueSiteOtherInfo=EGEE_ROC=France&lt;br /&gt;
 NAGIOS_DB_PASS=x&lt;br /&gt;
 NAGIOS_NSCA_PASS=x&lt;br /&gt;
 MYSQL_ADMIN=x&lt;br /&gt;
 ATP_DB_PASS=x&lt;br /&gt;
 MDDB_DB_PASS=x&lt;br /&gt;
 MS_DB_PASS=x&lt;br /&gt;
 MYSQL_PASSWORD=x&lt;br /&gt;
 MYEGEE_DB_PASS=x&lt;br /&gt;
&lt;br /&gt;
= Annexe 5 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /opt/glite/yaim/examples/edgusers.conf&lt;br /&gt;
 11151:${DPMMGR_USER}:11151:${DPMMGR_GROUP}:DPM user:&lt;br /&gt;
 11152:${EDG_USER}:11152,11156:${EDG_GROUP},${INFOSYS_GROUP}:EDG user:${EDG_HOME_DIR}&lt;br /&gt;
 11153:${EDGINFO_USER}:11153,1156:${EDGINFO_USER},${INFOSYS_GROUP}:EDG info user:${EDGINFO_HOME_DIR}&lt;br /&gt;
 11154:${RGMA_USER}:11154,1156:${RGMA_GROUP},${INFOSYS_GROUP}:RGMA user:${INSTALL_ROOT}/glite/etc/rgma&lt;br /&gt;
 11155:${GLITE_USER}:11155:${GLITE_GROUP}:gLite user:${GLITE_HOME_DIR}&lt;br /&gt;
 11156:${BDII_USER}:11158:${BDII_GROUP}:BDII user:${BDII_HOME_DIR}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Annexe 6 =&lt;br /&gt;
&lt;br /&gt;
Probleme rencontré sur ccnagboxli01 (arret de ypbind + rpm manquant)&lt;br /&gt;
 chown -R nagios:nagios /var/spool/pnp4nagios&lt;br /&gt;
 chown -R nagios:nagios /var/spool/msg-nagios-bridge&lt;br /&gt;
 chown root:nagios /etc/atp/atp_db.conf&lt;br /&gt;
 chown root:nagios /etc/mddb/databases.yml&lt;br /&gt;
 chown nagios:apache /var/nagios/rw&lt;br /&gt;
 chown -R nagios:apache /var/nagios/rw&lt;br /&gt;
 chown root:nagios /etc/nagios/plugins/send_to_db.ini&lt;br /&gt;
 chown -R nagios:nagios /var/cache/msg/config-cache&lt;br /&gt;
 chown -R nagios:root /var/log/mddb&lt;br /&gt;
 chown -R nagios:root /var/log/pnp4nagios&lt;br /&gt;
 chown -R nagios:root /var/log/nagios&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
  useradd -g 40011 -u 10011 nagios&lt;br /&gt;
  useradd --group mysql -u 2730 mysql&lt;br /&gt;
  useradd -g mysql -u 2730 mysql&lt;br /&gt;
&lt;br /&gt;
   groupadd -g 40010 nagiosmaster&lt;br /&gt;
   groupadd -g 146 leftuser&lt;br /&gt;
&lt;br /&gt;
 yum install glite-security-voms-api-c-1.8.12-2.sl5.x86_64&lt;br /&gt;
 yum update perl-Net-SSLeay&lt;br /&gt;
 yum update perl-IO-Socket-SSL-1.01-1.fc6.noarch&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install lcg_util-1.7.6-1.sl5.x86_64&lt;br /&gt;
 yum install GFAL-client-1.11.8-2.sl5.x86_64 GFAL-client-1.11.8-2.sl5.i386&lt;br /&gt;
 yum install CGSI_gSOAP_2.7-1.3.3-1.sl5.x86_64&lt;br /&gt;
 yum install LFC-interfaces-1.7.3-1sec.sl5.x86_64 LFC-client-1.7.3-1sec.sl5.x86_64 lcg-dm-common-1.7.3-1sec.sl5.x86_64&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5738</id>
		<title>Nagios regional</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5738"/>
		<updated>2010-03-23T15:44:38Z</updated>

		<summary type="html">&lt;p&gt;LEROY: /* validation */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Installation d&#039;une NOGIOS box pour le ROC France&lt;br /&gt;
&lt;br /&gt;
= 1)	Installation de base : =&lt;br /&gt;
a.	Machine installée par les sysadmin du CC : OS + VOBOX + certificat + pas dans les NIS&lt;br /&gt;
&lt;br /&gt;
b.	Accessible via gsissh (port 1975)&lt;br /&gt;
&lt;br /&gt;
= 2)	Action faite au préalable : =&lt;br /&gt;
a.	Faire la demande pour que la machine soit autorisée à récupérer les SAM tests : https://gus.fzk.de/ws/ticket_info.php?ticket=55132&lt;br /&gt;
&lt;br /&gt;
b.	Autoriser la nagios box à récupérer les proxy en mode « retrieval », et stocker un proxy depuis une UI récuperable par la nagiosBOX voir  [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe0 Annexe0]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
c.	Certificat utilisé pour :&lt;br /&gt;
&lt;br /&gt;
i.	                       Access to GOCDB PI for ROCS GOCDB PI level 2 required &lt;br /&gt;
&lt;br /&gt;
ii.	                       Recuperation de proxy pour les sondes locales&lt;br /&gt;
&lt;br /&gt;
d. s&#039;inscrire dans la mailing liste: regional-nagios-admins@cern.ch (très réactive)&lt;br /&gt;
&lt;br /&gt;
= 3)	Installation de Nagios =&lt;br /&gt;
Reference : https://twiki.cern.ch/twiki/bin/view/EGEE/GridMonitoringNcgYaim&lt;br /&gt;
== Installation des packages via yum, Ajout des repos suivant ==&lt;br /&gt;
 a.	mirrors-rpmforge (rpm rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm)&lt;br /&gt;
 b.	rpmforge-testing.repo&lt;br /&gt;
 c.	rpmforge.repo&lt;br /&gt;
 d.	glite-UI.repo&lt;br /&gt;
 e.	sa1-centos5-release.repo (rpm:  sa1-release-2-1.el5.noarch.rpm)&lt;br /&gt;
 f.	glite-BDII.repo&lt;br /&gt;
&lt;br /&gt;
Problèmes de dépendances rencontrées si besoin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe1 Annexe1] (mais j’avais dû oublier de faire un : yum install egee-NAGIOS)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Installation subversion ==&lt;br /&gt;
Certain fichier de config sont a recuperer via svn au CERN:&lt;br /&gt;
&lt;br /&gt;
 yum install subversion&lt;br /&gt;
 svn co http://svnweb.cern.ch/guest/sam/trunk/roc-config&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 cp /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm.orig&lt;br /&gt;
 cp roc-config/Hash.pm_55_ALL_CRIT /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm&lt;br /&gt;
&lt;br /&gt;
== Mysql ==&lt;br /&gt;
&lt;br /&gt;
1.	Installer la dernière version de Mysql (server + client) ; &lt;br /&gt;
&lt;br /&gt;
2.	configurer le mot de passe admin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2a] ;&lt;br /&gt;
&lt;br /&gt;
3.	Configurer les users utiles à la nagios Box se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2b] ;&lt;br /&gt;
&lt;br /&gt;
== Configuration via yaim et NCG (en 2 fois)==&lt;br /&gt;
&lt;br /&gt;
1.	Remplir /etc/ncg/ncg.localdb avec la liste des sites se referer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe3 Annexe3]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
2.	Remplir le /opt/glite/yaim/site-info.def voir [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe4 Annexe4] ;&lt;br /&gt;
&lt;br /&gt;
3.	groupadd nagios&lt;br /&gt;
&lt;br /&gt;
4.	modif des uids/gids : /opt/glite/yaim/examples/edgusers.conf [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe5 Annexe5]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
5.	lancement de la configuration automatique via yaim (All On One Box) :&lt;br /&gt;
 	&lt;br /&gt;
 	/opt/glite/yaim/bin/yaim -s /opt/glite/yaim/site-info.def -c -n glite-UI -n glite-NAGIOS&lt;br /&gt;
&lt;br /&gt;
6.	lancement de la configuration via NCG (All On One Box) :&lt;br /&gt;
&lt;br /&gt;
 /usr/sbin/ncg.pl&lt;br /&gt;
&lt;br /&gt;
.....MODIFICATION importante:: voir: https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
La partie:&lt;br /&gt;
#  Configure manually /etc/ncg/ncg.conf (Template can be found here: ncg.conf.template: )&lt;br /&gt;
- Switch off automatic generation of ncg.conf by YAIM (NAGIOS_NCG_ENABLE_CONFIG&amp;quot;=&amp;quot;false&amp;quot;)&lt;br /&gt;
- Take ncg.conf.template and copy it to /etc/ncg/ncg.conf&lt;br /&gt;
     - Set $ROC_NAME$&lt;br /&gt;
     - Set $YOUR_MYPROXY_SERVER$ (e.g. myproxy-fts.cern.ch)&lt;br /&gt;
     - Set $MYPROXY_NAME$ (e.g.: NagiosRetrieve-sam-ap-roc.cern.ch)&lt;br /&gt;
     - Set $NAGIOS_ROLE$ (e.g.: ngi, roc)&lt;br /&gt;
# Take Hash.pm file that we are currently using at the CERN ROC Nagios boxes. In this file, we have removed the metrics that do not belong to the SAM_Critical profile, so only the metrics defined at ROC_SAM_critical are configured, and not relevant services like SRMv1 are commented out. The file is located under /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm &lt;br /&gt;
&lt;br /&gt;
Pour éviter d&#039;avoir des sondes inappropriés.&lt;br /&gt;
&lt;br /&gt;
== Tuning the configuration ==&lt;br /&gt;
&lt;br /&gt;
1.	Verifier  dans /etc/sysconfig/nagios:&lt;br /&gt;
 LD_LIBRARY_PATH=/opt/classads/lib64:/opt/glite/lib64:/opt/globus/lib:/opt/c-ares/lib:/opt/classads/lib64  &lt;br /&gt;
&lt;br /&gt;
2.	Desactiver les notifications, dans les fichiers de conf: &lt;br /&gt;
 a.      /etc/nagios/nagios.cfg, désactiver les notifications:enable_notifications=0 ;log_notifications=0&lt;br /&gt;
 b.	 /etc/nagios/wlcg.d/host.templates.cfg&lt;br /&gt;
 c.	 /etc/nagios/wlcg.d/service.templates.cfg&lt;br /&gt;
&lt;br /&gt;
4.	N’autoriser que les dteam/France à visualiser notre interface nagios : modifier le fichier : &lt;br /&gt;
 /etc/voms2htpasswd.conf, avec : vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&lt;br /&gt;
Plus utile site le site-info.def est défini correctement:&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&#039;&lt;br /&gt;
&lt;br /&gt;
== ActiveMQ ==&lt;br /&gt;
 /usr/sbin/msg-to-queue --prefix /queue/grid.probe.metricOutput.EGEE.a635834332381123c8b296d02b682f8f --broker-uri stomp://prod-grid-msg.cern.ch:6163&lt;br /&gt;
 &lt;br /&gt;
[root@cclcgvmli03 cron.hourly]# cat check_msg-to-queue.sh&lt;br /&gt;
&lt;br /&gt;
Verifier les messages:&lt;br /&gt;
 /usr/libexec/grid-monitoring/plugins/nagios/recv_from_queue -v &lt;br /&gt;
&lt;br /&gt;
faire une update de perl-GridMon &lt;br /&gt;
 The problem here is in the message handler &lt;br /&gt;
 (/usr/lib/perl5/vendor_perl/5.8.8/GridMon/MsgHandler/MetricOutput.pm). &lt;br /&gt;
 Probe on WN reports hostname localhost.localdomain and serviceURI CE &lt;br /&gt;
 hostname. In the previous version message handler first checked hostname &lt;br /&gt;
 value and then serviceURI. That is the reason why Christine is seeing &lt;br /&gt;
 results for localhost.localdomain. However, we fixed this and the latest &lt;br /&gt;
 version (1.0.34) parses messages correctly.&lt;br /&gt;
&lt;br /&gt;
 yum update perl-GridMon&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== Systeme d&#039;information ==&lt;br /&gt;
La nagios Box doit etre enregistré dans la GOCDB &lt;br /&gt;
et publié dans le site-BDII:&lt;br /&gt;
 ldapsearch -x -H ldap://ccnagboxli01.in2p3.fr:2170 -b &#039;Mds-vo-name=resource,o=Grid&#039;&lt;br /&gt;
&lt;br /&gt;
= validation =&lt;br /&gt;
&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
&lt;br /&gt;
now you should publish your Nagios in your Site BDII&lt;br /&gt;
And we should declare the node in the GOCDB: Regional-NAGIOS ou National-Nagios, a determiner&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
liste des sondes a valider: d&#039;après: https://twiki.cern.ch/twiki/bin/view/LCG/SAMCriticalTestsForCODs&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Type de Noeuds&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Valid (Y or N)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
APEL&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
N: Pas de métric ?&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
BDII&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
- Probleme identifié pour la variable LCG_GFAL_INFOSYS quand c&#039;est une liste (CE lpnce.in2p3.fr):&lt;br /&gt;
LCG_GFAL_INFOSYS=topbdii.grif.fr:2170,cclcgtopbdii01.in2p3.fr:2170,lapp-bdii01.in2p3.fr:2170&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CREAMCE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
FTS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y and NO: For the check_command those options should be added: &lt;br /&gt;
--cert /etc/nagios/globus/hostcert.pem   --key /etc/nagios/globus/hostkey.pem  -x $USER2$ (this should be fixed in the next release)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
gRB/WMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_C&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_L&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MPI&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MyProxy&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RB&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RGMA / MON&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
sBDII&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
SRMv2&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOBOX&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
3 sites should open port 1975 to ccnagboxli01; mail sent the 23/03/2010&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
= Annexe0 =&lt;br /&gt;
&lt;br /&gt;
Sur le myproxyserver, il faut que le nagios server soit &amp;quot;trusted retriever&amp;quot; et &amp;quot;authorized retrievers&amp;quot;:&lt;br /&gt;
 [cleroy@grid08 ~]$ grep cclcgvmli03 /opt/glite/etc/myproxy-server.conf&lt;br /&gt;
 trusted_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 authorized_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Sur une UI:&lt;br /&gt;
&lt;br /&gt;
 voms-proxy-init -voms ops:/ops/Role=lcgadmin&lt;br /&gt;
 myproxy-init -c 336 -k nagios_roc_fr2-ops -s myproxy.grif.fr -l nagios  -x -Z &amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&amp;quot;&lt;br /&gt;
&lt;br /&gt;
= Annexe 1 =&lt;br /&gt;
 rpm -ivh http://www.sysadmin.hep.ac.uk/rpms/egee-SA1/centos5/x86_64/sa1-release-2-1.el5.noarch.rpm&lt;br /&gt;
 rpm -ivh  http://packages.sw.be/rpmforge-release/rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm&lt;br /&gt;
&lt;br /&gt;
 yum install atp&lt;br /&gt;
 yum install bouncycastle&lt;br /&gt;
 yum install broker&lt;br /&gt;
 yum install broker-cache&lt;br /&gt;
 yum install dcache-srmclient&lt;br /&gt;
 yum install dummy-ca-certs&lt;br /&gt;
 yum install egee-NAGIOS&lt;br /&gt;
 yum install egee-NAGIOS egee-NRPE&lt;br /&gt;
 yum install egee-NRPE&lt;br /&gt;
 yum install fetch-crl&lt;br /&gt;
 yum install fipscheck fipscheck-lib&lt;br /&gt;
 yum install glite-UI&lt;br /&gt;
 yum install glite-security-voms-clients&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install glite-yaim-core&lt;br /&gt;
 yum install glite-yaim-nagios&lt;br /&gt;
 yum install httpd&lt;br /&gt;
 yum install jdk&lt;br /&gt;
 yum install lcg-CA&lt;br /&gt;
 yum install lcg-CA egee-NAGIOS&lt;br /&gt;
 yum install lcg_util&lt;br /&gt;
 yum install mddb&lt;br /&gt;
 yum install msg-publish-simple&lt;br /&gt;
 yum install myproxy&lt;br /&gt;
 yum install mysql-client&lt;br /&gt;
 yum install mysql-server&lt;br /&gt;
 yum install nagios-proxy-refresh&lt;br /&gt;
 yum install perl-Config-Tiny&lt;br /&gt;
 yum install perl-DBD-MySQL&lt;br /&gt;
 yum install perl-rrdtool-1.3.8-2.el5.rf.x86_64&lt;br /&gt;
 yum install python-yaml&lt;br /&gt;
 yum install sun-jaf&lt;br /&gt;
 yum install uberftp-client&lt;br /&gt;
 yum install vdt_globus_rm_client&lt;br /&gt;
&lt;br /&gt;
 yum update glite-yaim-clients&lt;br /&gt;
 yum update glite-yaim-core&lt;br /&gt;
 yum update glite-yaim-nagios&lt;br /&gt;
 yum update mysql-server&lt;br /&gt;
 yum update perl-DBI&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe2 =&lt;br /&gt;
a)Mot de passe admin mysql :&lt;br /&gt;
Yum pour recupérer la derniere version de Mysql :&lt;br /&gt;
&#039;&#039;MySQL-server-community&#039;&#039;, ne pas oublier le client (pas de dépendance dessus)&lt;br /&gt;
Demmarrage de mysql avec --skip-grant-tables (pour ne pas avoir de mot de passe a rentrer)&lt;br /&gt;
 mysqld_safe --skip-grant-tables &amp;amp;&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root &lt;br /&gt;
 update user set password=PASSWORD(&amp;quot;NEW-ROOT-PASSWORD&amp;quot;) where User=&#039;root&#039;;&lt;br /&gt;
&lt;br /&gt;
b)creation des users pour le nagios regional:&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root -p&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON nagios.* TO &#039;ndouser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON atp.* TO &#039;atpuser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe 3 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /etc/ncg/ncg.localdb&lt;br /&gt;
 #&lt;br /&gt;
 # Local Rules file to modify NCG configuration&lt;br /&gt;
 #&lt;br /&gt;
 SITE!AUVERGRID&lt;br /&gt;
 SITE!CGG-LCG2&lt;br /&gt;
 SITE!ESRF&lt;br /&gt;
 SITE!GRIF&lt;br /&gt;
 SITE!IBCP-GBIO&lt;br /&gt;
 SITE!IN2P3-CC&lt;br /&gt;
 SITE!IN2P3-CC-PPS&lt;br /&gt;
 SITE!IN2P3-CC-T2&lt;br /&gt;
 SITE!IN2P3-CPPM&lt;br /&gt;
 SITE!IN2P3-IPNL&lt;br /&gt;
 SITE!IN2P3-IRES&lt;br /&gt;
 SITE!IN2P3-LAPP&lt;br /&gt;
 SITE!IN2P3-LPC&lt;br /&gt;
 SITE!IN2P3-LPSC&lt;br /&gt;
 SITE!IN2P3-SUBATECH&lt;br /&gt;
 SITE!IPSL-IPGP-LCG2&lt;br /&gt;
 SITE!M3PEC&lt;br /&gt;
 SITE!MSFG&lt;br /&gt;
 SITE!MSFG-MULTI&lt;br /&gt;
 SITE!MSFG-OPEN&lt;br /&gt;
 SITE!OBSPM&lt;br /&gt;
 SITE!PARIS-UREC-IPV6&lt;br /&gt;
 SITE!SN-UCAD&lt;br /&gt;
 SITE!ROC-FR&lt;br /&gt;
 SITE!SOLEIL&lt;br /&gt;
 SITE!StratusLab&lt;br /&gt;
 [root@cclcgvmli03 ~]#&lt;br /&gt;
 &lt;br /&gt;
= Annexe 4 =&lt;br /&gt;
&lt;br /&gt;
 SITE_EMAIL=c.leroy@cea.fr&lt;br /&gt;
 SITE_NAME=ROC-FR&lt;br /&gt;
 RB_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 WMS_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 PX_HOST=myproxy.grif.fr&lt;br /&gt;
 BDII_HOST=topbdii.grif.fr&lt;br /&gt;
 SITE_BDII_HOST=bdii.grif.fr&lt;br /&gt;
 MON_HOST=node06.datagrid.cea.fr&lt;br /&gt;
 VOS=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 DTEAM_GROUP_ENABLE=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 VO_DTEAM_SW_DIR=$VO_SW_DIR/dteam&lt;br /&gt;
 VO_DTEAM_DEFAULT_SE=$SE_HOST&lt;br /&gt;
 VO_DTEAM_STORAGE_DIR=$CLASSIC_STORAGE_DIR/dteam&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/&#039;&lt;br /&gt;
 VO_DTEAM_VOMSES=&amp;quot;&#039;dteam lcg-voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=lcg-voms.cern.ch dteam 24&#039; &#039;dteam    voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=voms.cern.ch dteam 24&#039;&amp;quot;&lt;br /&gt;
 VO_DTEAM_VOMS_CA_DN=&amp;quot;&#039;/DC=ch/DC=cern/CN=CERN Trusted Certification Authority&#039; &#039;/DC=ch/DC=cern/CN=CERN Trusted   Certification Authority&#039;&amp;quot;&lt;br /&gt;
 NAGIOS_HOST=cclcgvmli03.in2p3.fr&lt;br /&gt;
 NAGIOS_ADMIN_DNS=&amp;quot;/O=GRID-FR/C=FR/O=CEA/OU=IRFU/CN=Christine Leroy&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=Nadia Lajili&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=LPC/CN=Emmanuel Medernach&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CPPM/CN=Juan Carlos Carranza&amp;quot;&lt;br /&gt;
 NAGIOS_NCG_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_NAGIOS_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_GOCDB_ROC_NAME=France&lt;br /&gt;
 ROC_NAME=France&lt;br /&gt;
 NCG_PROBES_TYPE=remote,native,local&lt;br /&gt;
 NCG_VO=dteam&lt;br /&gt;
 NAGIOS_MYPROXY_NAME=nagios_roc_fr2&lt;br /&gt;
 NAGIOS_MYPROXY_USER=nagios&lt;br /&gt;
 MSG_BROKER_CACHE_NETWORK=PROD&lt;br /&gt;
 NAGIOS_ROLE=roc&lt;br /&gt;
 NAGIOS_HTTPD_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_SUDO_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_CGI_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_LDAP_FILTER=GlueSiteOtherInfo=EGEE_ROC=France&lt;br /&gt;
 NAGIOS_DB_PASS=x&lt;br /&gt;
 NAGIOS_NSCA_PASS=x&lt;br /&gt;
 MYSQL_ADMIN=x&lt;br /&gt;
 ATP_DB_PASS=x&lt;br /&gt;
 MDDB_DB_PASS=x&lt;br /&gt;
 MS_DB_PASS=x&lt;br /&gt;
 MYSQL_PASSWORD=x&lt;br /&gt;
 MYEGEE_DB_PASS=x&lt;br /&gt;
&lt;br /&gt;
= Annexe 5 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /opt/glite/yaim/examples/edgusers.conf&lt;br /&gt;
 11151:${DPMMGR_USER}:11151:${DPMMGR_GROUP}:DPM user:&lt;br /&gt;
 11152:${EDG_USER}:11152,11156:${EDG_GROUP},${INFOSYS_GROUP}:EDG user:${EDG_HOME_DIR}&lt;br /&gt;
 11153:${EDGINFO_USER}:11153,1156:${EDGINFO_USER},${INFOSYS_GROUP}:EDG info user:${EDGINFO_HOME_DIR}&lt;br /&gt;
 11154:${RGMA_USER}:11154,1156:${RGMA_GROUP},${INFOSYS_GROUP}:RGMA user:${INSTALL_ROOT}/glite/etc/rgma&lt;br /&gt;
 11155:${GLITE_USER}:11155:${GLITE_GROUP}:gLite user:${GLITE_HOME_DIR}&lt;br /&gt;
 11156:${BDII_USER}:11158:${BDII_GROUP}:BDII user:${BDII_HOME_DIR}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Annexe 6 =&lt;br /&gt;
&lt;br /&gt;
Probleme rencontré sur ccnagboxli01 (arret de ypbind + rpm manquant)&lt;br /&gt;
 chown -R nagios:nagios /var/spool/pnp4nagios&lt;br /&gt;
 chown -R nagios:nagios /var/spool/msg-nagios-bridge&lt;br /&gt;
 chown root:nagios /etc/atp/atp_db.conf&lt;br /&gt;
 chown root:nagios /etc/mddb/databases.yml&lt;br /&gt;
 chown nagios:apache /var/nagios/rw&lt;br /&gt;
 chown -R nagios:apache /var/nagios/rw&lt;br /&gt;
 chown root:nagios /etc/nagios/plugins/send_to_db.ini&lt;br /&gt;
 chown -R nagios:nagios /var/cache/msg/config-cache&lt;br /&gt;
 chown -R nagios:root /var/log/mddb&lt;br /&gt;
 chown -R nagios:root /var/log/pnp4nagios&lt;br /&gt;
 chown -R nagios:root /var/log/nagios&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
  useradd -g 40011 -u 10011 nagios&lt;br /&gt;
  useradd --group mysql -u 2730 mysql&lt;br /&gt;
  useradd -g mysql -u 2730 mysql&lt;br /&gt;
&lt;br /&gt;
   groupadd -g 40010 nagiosmaster&lt;br /&gt;
   groupadd -g 146 leftuser&lt;br /&gt;
&lt;br /&gt;
 yum install glite-security-voms-api-c-1.8.12-2.sl5.x86_64&lt;br /&gt;
 yum update perl-Net-SSLeay&lt;br /&gt;
 yum update perl-IO-Socket-SSL-1.01-1.fc6.noarch&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install lcg_util-1.7.6-1.sl5.x86_64&lt;br /&gt;
 yum install GFAL-client-1.11.8-2.sl5.x86_64 GFAL-client-1.11.8-2.sl5.i386&lt;br /&gt;
 yum install CGSI_gSOAP_2.7-1.3.3-1.sl5.x86_64&lt;br /&gt;
 yum install LFC-interfaces-1.7.3-1sec.sl5.x86_64 LFC-client-1.7.3-1sec.sl5.x86_64 lcg-dm-common-1.7.3-1sec.sl5.x86_64&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5737</id>
		<title>Nagios regional</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5737"/>
		<updated>2010-03-23T15:36:35Z</updated>

		<summary type="html">&lt;p&gt;LEROY: /* validation */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Installation d&#039;une NOGIOS box pour le ROC France&lt;br /&gt;
&lt;br /&gt;
= 1)	Installation de base : =&lt;br /&gt;
a.	Machine installée par les sysadmin du CC : OS + VOBOX + certificat + pas dans les NIS&lt;br /&gt;
&lt;br /&gt;
b.	Accessible via gsissh (port 1975)&lt;br /&gt;
&lt;br /&gt;
= 2)	Action faite au préalable : =&lt;br /&gt;
a.	Faire la demande pour que la machine soit autorisée à récupérer les SAM tests : https://gus.fzk.de/ws/ticket_info.php?ticket=55132&lt;br /&gt;
&lt;br /&gt;
b.	Autoriser la nagios box à récupérer les proxy en mode « retrieval », et stocker un proxy depuis une UI récuperable par la nagiosBOX voir  [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe0 Annexe0]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
c.	Certificat utilisé pour :&lt;br /&gt;
&lt;br /&gt;
i.	                       Access to GOCDB PI for ROCS GOCDB PI level 2 required &lt;br /&gt;
&lt;br /&gt;
ii.	                       Recuperation de proxy pour les sondes locales&lt;br /&gt;
&lt;br /&gt;
d. s&#039;inscrire dans la mailing liste: regional-nagios-admins@cern.ch (très réactive)&lt;br /&gt;
&lt;br /&gt;
= 3)	Installation de Nagios =&lt;br /&gt;
Reference : https://twiki.cern.ch/twiki/bin/view/EGEE/GridMonitoringNcgYaim&lt;br /&gt;
== Installation des packages via yum, Ajout des repos suivant ==&lt;br /&gt;
 a.	mirrors-rpmforge (rpm rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm)&lt;br /&gt;
 b.	rpmforge-testing.repo&lt;br /&gt;
 c.	rpmforge.repo&lt;br /&gt;
 d.	glite-UI.repo&lt;br /&gt;
 e.	sa1-centos5-release.repo (rpm:  sa1-release-2-1.el5.noarch.rpm)&lt;br /&gt;
 f.	glite-BDII.repo&lt;br /&gt;
&lt;br /&gt;
Problèmes de dépendances rencontrées si besoin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe1 Annexe1] (mais j’avais dû oublier de faire un : yum install egee-NAGIOS)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Installation subversion ==&lt;br /&gt;
Certain fichier de config sont a recuperer via svn au CERN:&lt;br /&gt;
&lt;br /&gt;
 yum install subversion&lt;br /&gt;
 svn co http://svnweb.cern.ch/guest/sam/trunk/roc-config&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 cp /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm.orig&lt;br /&gt;
 cp roc-config/Hash.pm_55_ALL_CRIT /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm&lt;br /&gt;
&lt;br /&gt;
== Mysql ==&lt;br /&gt;
&lt;br /&gt;
1.	Installer la dernière version de Mysql (server + client) ; &lt;br /&gt;
&lt;br /&gt;
2.	configurer le mot de passe admin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2a] ;&lt;br /&gt;
&lt;br /&gt;
3.	Configurer les users utiles à la nagios Box se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2b] ;&lt;br /&gt;
&lt;br /&gt;
== Configuration via yaim et NCG (en 2 fois)==&lt;br /&gt;
&lt;br /&gt;
1.	Remplir /etc/ncg/ncg.localdb avec la liste des sites se referer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe3 Annexe3]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
2.	Remplir le /opt/glite/yaim/site-info.def voir [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe4 Annexe4] ;&lt;br /&gt;
&lt;br /&gt;
3.	groupadd nagios&lt;br /&gt;
&lt;br /&gt;
4.	modif des uids/gids : /opt/glite/yaim/examples/edgusers.conf [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe5 Annexe5]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
5.	lancement de la configuration automatique via yaim (All On One Box) :&lt;br /&gt;
 	&lt;br /&gt;
 	/opt/glite/yaim/bin/yaim -s /opt/glite/yaim/site-info.def -c -n glite-UI -n glite-NAGIOS&lt;br /&gt;
&lt;br /&gt;
6.	lancement de la configuration via NCG (All On One Box) :&lt;br /&gt;
&lt;br /&gt;
 /usr/sbin/ncg.pl&lt;br /&gt;
&lt;br /&gt;
.....MODIFICATION importante:: voir: https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
La partie:&lt;br /&gt;
#  Configure manually /etc/ncg/ncg.conf (Template can be found here: ncg.conf.template: )&lt;br /&gt;
- Switch off automatic generation of ncg.conf by YAIM (NAGIOS_NCG_ENABLE_CONFIG&amp;quot;=&amp;quot;false&amp;quot;)&lt;br /&gt;
- Take ncg.conf.template and copy it to /etc/ncg/ncg.conf&lt;br /&gt;
     - Set $ROC_NAME$&lt;br /&gt;
     - Set $YOUR_MYPROXY_SERVER$ (e.g. myproxy-fts.cern.ch)&lt;br /&gt;
     - Set $MYPROXY_NAME$ (e.g.: NagiosRetrieve-sam-ap-roc.cern.ch)&lt;br /&gt;
     - Set $NAGIOS_ROLE$ (e.g.: ngi, roc)&lt;br /&gt;
# Take Hash.pm file that we are currently using at the CERN ROC Nagios boxes. In this file, we have removed the metrics that do not belong to the SAM_Critical profile, so only the metrics defined at ROC_SAM_critical are configured, and not relevant services like SRMv1 are commented out. The file is located under /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm &lt;br /&gt;
&lt;br /&gt;
Pour éviter d&#039;avoir des sondes inappropriés.&lt;br /&gt;
&lt;br /&gt;
== Tuning the configuration ==&lt;br /&gt;
&lt;br /&gt;
1.	Verifier  dans /etc/sysconfig/nagios:&lt;br /&gt;
 LD_LIBRARY_PATH=/opt/classads/lib64:/opt/glite/lib64:/opt/globus/lib:/opt/c-ares/lib:/opt/classads/lib64  &lt;br /&gt;
&lt;br /&gt;
2.	Desactiver les notifications, dans les fichiers de conf: &lt;br /&gt;
 a.      /etc/nagios/nagios.cfg, désactiver les notifications:enable_notifications=0 ;log_notifications=0&lt;br /&gt;
 b.	 /etc/nagios/wlcg.d/host.templates.cfg&lt;br /&gt;
 c.	 /etc/nagios/wlcg.d/service.templates.cfg&lt;br /&gt;
&lt;br /&gt;
4.	N’autoriser que les dteam/France à visualiser notre interface nagios : modifier le fichier : &lt;br /&gt;
 /etc/voms2htpasswd.conf, avec : vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&lt;br /&gt;
Plus utile site le site-info.def est défini correctement:&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&#039;&lt;br /&gt;
&lt;br /&gt;
== ActiveMQ ==&lt;br /&gt;
 /usr/sbin/msg-to-queue --prefix /queue/grid.probe.metricOutput.EGEE.a635834332381123c8b296d02b682f8f --broker-uri stomp://prod-grid-msg.cern.ch:6163&lt;br /&gt;
 &lt;br /&gt;
[root@cclcgvmli03 cron.hourly]# cat check_msg-to-queue.sh&lt;br /&gt;
&lt;br /&gt;
Verifier les messages:&lt;br /&gt;
 /usr/libexec/grid-monitoring/plugins/nagios/recv_from_queue -v &lt;br /&gt;
&lt;br /&gt;
faire une update de perl-GridMon &lt;br /&gt;
 The problem here is in the message handler &lt;br /&gt;
 (/usr/lib/perl5/vendor_perl/5.8.8/GridMon/MsgHandler/MetricOutput.pm). &lt;br /&gt;
 Probe on WN reports hostname localhost.localdomain and serviceURI CE &lt;br /&gt;
 hostname. In the previous version message handler first checked hostname &lt;br /&gt;
 value and then serviceURI. That is the reason why Christine is seeing &lt;br /&gt;
 results for localhost.localdomain. However, we fixed this and the latest &lt;br /&gt;
 version (1.0.34) parses messages correctly.&lt;br /&gt;
&lt;br /&gt;
 yum update perl-GridMon&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== Systeme d&#039;information ==&lt;br /&gt;
La nagios Box doit etre enregistré dans la GOCDB &lt;br /&gt;
et publié dans le site-BDII:&lt;br /&gt;
 ldapsearch -x -H ldap://ccnagboxli01.in2p3.fr:2170 -b &#039;Mds-vo-name=resource,o=Grid&#039;&lt;br /&gt;
&lt;br /&gt;
= validation =&lt;br /&gt;
&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
&lt;br /&gt;
now you should publish your Nagios in your Site BDII&lt;br /&gt;
And we should declare the node in the GOCDB: Regional-NAGIOS ou National-Nagios, a determiner&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
liste des sondes a valider: d&#039;après: https://twiki.cern.ch/twiki/bin/view/LCG/SAMCriticalTestsForCODs&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Type de Noeuds&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Valid (Y or N)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
APEL&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
BDII&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
- Probleme identifié pour la variable LCG_GFAL_INFOSYS quand c&#039;est une liste (CE lpnce.in2p3.fr):&lt;br /&gt;
LCG_GFAL_INFOSYS=topbdii.grif.fr:2170,cclcgtopbdii01.in2p3.fr:2170,lapp-bdii01.in2p3.fr:2170&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CREAMCE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
FTS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y and NO: For the check_command those options should be added: &lt;br /&gt;
--cert /etc/nagios/globus/hostcert.pem   --key /etc/nagios/globus/hostkey.pem  -x $USER2$ (this should be fixed in the next release)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
gRB/WMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_C&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_L&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MPI&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MyProxy&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RB&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RGMA / MON&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
sBDII&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
SRMv2&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOBOX&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
3 sites should open port 1975 to ccnagboxli01; mail sent the 23/03/2010&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
= Annexe0 =&lt;br /&gt;
&lt;br /&gt;
Sur le myproxyserver, il faut que le nagios server soit &amp;quot;trusted retriever&amp;quot; et &amp;quot;authorized retrievers&amp;quot;:&lt;br /&gt;
 [cleroy@grid08 ~]$ grep cclcgvmli03 /opt/glite/etc/myproxy-server.conf&lt;br /&gt;
 trusted_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 authorized_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Sur une UI:&lt;br /&gt;
&lt;br /&gt;
 voms-proxy-init -voms ops:/ops/Role=lcgadmin&lt;br /&gt;
 myproxy-init -c 336 -k nagios_roc_fr2-ops -s myproxy.grif.fr -l nagios  -x -Z &amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&amp;quot;&lt;br /&gt;
&lt;br /&gt;
= Annexe 1 =&lt;br /&gt;
 rpm -ivh http://www.sysadmin.hep.ac.uk/rpms/egee-SA1/centos5/x86_64/sa1-release-2-1.el5.noarch.rpm&lt;br /&gt;
 rpm -ivh  http://packages.sw.be/rpmforge-release/rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm&lt;br /&gt;
&lt;br /&gt;
 yum install atp&lt;br /&gt;
 yum install bouncycastle&lt;br /&gt;
 yum install broker&lt;br /&gt;
 yum install broker-cache&lt;br /&gt;
 yum install dcache-srmclient&lt;br /&gt;
 yum install dummy-ca-certs&lt;br /&gt;
 yum install egee-NAGIOS&lt;br /&gt;
 yum install egee-NAGIOS egee-NRPE&lt;br /&gt;
 yum install egee-NRPE&lt;br /&gt;
 yum install fetch-crl&lt;br /&gt;
 yum install fipscheck fipscheck-lib&lt;br /&gt;
 yum install glite-UI&lt;br /&gt;
 yum install glite-security-voms-clients&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install glite-yaim-core&lt;br /&gt;
 yum install glite-yaim-nagios&lt;br /&gt;
 yum install httpd&lt;br /&gt;
 yum install jdk&lt;br /&gt;
 yum install lcg-CA&lt;br /&gt;
 yum install lcg-CA egee-NAGIOS&lt;br /&gt;
 yum install lcg_util&lt;br /&gt;
 yum install mddb&lt;br /&gt;
 yum install msg-publish-simple&lt;br /&gt;
 yum install myproxy&lt;br /&gt;
 yum install mysql-client&lt;br /&gt;
 yum install mysql-server&lt;br /&gt;
 yum install nagios-proxy-refresh&lt;br /&gt;
 yum install perl-Config-Tiny&lt;br /&gt;
 yum install perl-DBD-MySQL&lt;br /&gt;
 yum install perl-rrdtool-1.3.8-2.el5.rf.x86_64&lt;br /&gt;
 yum install python-yaml&lt;br /&gt;
 yum install sun-jaf&lt;br /&gt;
 yum install uberftp-client&lt;br /&gt;
 yum install vdt_globus_rm_client&lt;br /&gt;
&lt;br /&gt;
 yum update glite-yaim-clients&lt;br /&gt;
 yum update glite-yaim-core&lt;br /&gt;
 yum update glite-yaim-nagios&lt;br /&gt;
 yum update mysql-server&lt;br /&gt;
 yum update perl-DBI&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe2 =&lt;br /&gt;
a)Mot de passe admin mysql :&lt;br /&gt;
Yum pour recupérer la derniere version de Mysql :&lt;br /&gt;
&#039;&#039;MySQL-server-community&#039;&#039;, ne pas oublier le client (pas de dépendance dessus)&lt;br /&gt;
Demmarrage de mysql avec --skip-grant-tables (pour ne pas avoir de mot de passe a rentrer)&lt;br /&gt;
 mysqld_safe --skip-grant-tables &amp;amp;&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root &lt;br /&gt;
 update user set password=PASSWORD(&amp;quot;NEW-ROOT-PASSWORD&amp;quot;) where User=&#039;root&#039;;&lt;br /&gt;
&lt;br /&gt;
b)creation des users pour le nagios regional:&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root -p&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON nagios.* TO &#039;ndouser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON atp.* TO &#039;atpuser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe 3 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /etc/ncg/ncg.localdb&lt;br /&gt;
 #&lt;br /&gt;
 # Local Rules file to modify NCG configuration&lt;br /&gt;
 #&lt;br /&gt;
 SITE!AUVERGRID&lt;br /&gt;
 SITE!CGG-LCG2&lt;br /&gt;
 SITE!ESRF&lt;br /&gt;
 SITE!GRIF&lt;br /&gt;
 SITE!IBCP-GBIO&lt;br /&gt;
 SITE!IN2P3-CC&lt;br /&gt;
 SITE!IN2P3-CC-PPS&lt;br /&gt;
 SITE!IN2P3-CC-T2&lt;br /&gt;
 SITE!IN2P3-CPPM&lt;br /&gt;
 SITE!IN2P3-IPNL&lt;br /&gt;
 SITE!IN2P3-IRES&lt;br /&gt;
 SITE!IN2P3-LAPP&lt;br /&gt;
 SITE!IN2P3-LPC&lt;br /&gt;
 SITE!IN2P3-LPSC&lt;br /&gt;
 SITE!IN2P3-SUBATECH&lt;br /&gt;
 SITE!IPSL-IPGP-LCG2&lt;br /&gt;
 SITE!M3PEC&lt;br /&gt;
 SITE!MSFG&lt;br /&gt;
 SITE!MSFG-MULTI&lt;br /&gt;
 SITE!MSFG-OPEN&lt;br /&gt;
 SITE!OBSPM&lt;br /&gt;
 SITE!PARIS-UREC-IPV6&lt;br /&gt;
 SITE!SN-UCAD&lt;br /&gt;
 SITE!ROC-FR&lt;br /&gt;
 SITE!SOLEIL&lt;br /&gt;
 SITE!StratusLab&lt;br /&gt;
 [root@cclcgvmli03 ~]#&lt;br /&gt;
 &lt;br /&gt;
= Annexe 4 =&lt;br /&gt;
&lt;br /&gt;
 SITE_EMAIL=c.leroy@cea.fr&lt;br /&gt;
 SITE_NAME=ROC-FR&lt;br /&gt;
 RB_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 WMS_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 PX_HOST=myproxy.grif.fr&lt;br /&gt;
 BDII_HOST=topbdii.grif.fr&lt;br /&gt;
 SITE_BDII_HOST=bdii.grif.fr&lt;br /&gt;
 MON_HOST=node06.datagrid.cea.fr&lt;br /&gt;
 VOS=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 DTEAM_GROUP_ENABLE=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 VO_DTEAM_SW_DIR=$VO_SW_DIR/dteam&lt;br /&gt;
 VO_DTEAM_DEFAULT_SE=$SE_HOST&lt;br /&gt;
 VO_DTEAM_STORAGE_DIR=$CLASSIC_STORAGE_DIR/dteam&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/&#039;&lt;br /&gt;
 VO_DTEAM_VOMSES=&amp;quot;&#039;dteam lcg-voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=lcg-voms.cern.ch dteam 24&#039; &#039;dteam    voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=voms.cern.ch dteam 24&#039;&amp;quot;&lt;br /&gt;
 VO_DTEAM_VOMS_CA_DN=&amp;quot;&#039;/DC=ch/DC=cern/CN=CERN Trusted Certification Authority&#039; &#039;/DC=ch/DC=cern/CN=CERN Trusted   Certification Authority&#039;&amp;quot;&lt;br /&gt;
 NAGIOS_HOST=cclcgvmli03.in2p3.fr&lt;br /&gt;
 NAGIOS_ADMIN_DNS=&amp;quot;/O=GRID-FR/C=FR/O=CEA/OU=IRFU/CN=Christine Leroy&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=Nadia Lajili&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=LPC/CN=Emmanuel Medernach&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CPPM/CN=Juan Carlos Carranza&amp;quot;&lt;br /&gt;
 NAGIOS_NCG_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_NAGIOS_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_GOCDB_ROC_NAME=France&lt;br /&gt;
 ROC_NAME=France&lt;br /&gt;
 NCG_PROBES_TYPE=remote,native,local&lt;br /&gt;
 NCG_VO=dteam&lt;br /&gt;
 NAGIOS_MYPROXY_NAME=nagios_roc_fr2&lt;br /&gt;
 NAGIOS_MYPROXY_USER=nagios&lt;br /&gt;
 MSG_BROKER_CACHE_NETWORK=PROD&lt;br /&gt;
 NAGIOS_ROLE=roc&lt;br /&gt;
 NAGIOS_HTTPD_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_SUDO_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_CGI_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_LDAP_FILTER=GlueSiteOtherInfo=EGEE_ROC=France&lt;br /&gt;
 NAGIOS_DB_PASS=x&lt;br /&gt;
 NAGIOS_NSCA_PASS=x&lt;br /&gt;
 MYSQL_ADMIN=x&lt;br /&gt;
 ATP_DB_PASS=x&lt;br /&gt;
 MDDB_DB_PASS=x&lt;br /&gt;
 MS_DB_PASS=x&lt;br /&gt;
 MYSQL_PASSWORD=x&lt;br /&gt;
 MYEGEE_DB_PASS=x&lt;br /&gt;
&lt;br /&gt;
= Annexe 5 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /opt/glite/yaim/examples/edgusers.conf&lt;br /&gt;
 11151:${DPMMGR_USER}:11151:${DPMMGR_GROUP}:DPM user:&lt;br /&gt;
 11152:${EDG_USER}:11152,11156:${EDG_GROUP},${INFOSYS_GROUP}:EDG user:${EDG_HOME_DIR}&lt;br /&gt;
 11153:${EDGINFO_USER}:11153,1156:${EDGINFO_USER},${INFOSYS_GROUP}:EDG info user:${EDGINFO_HOME_DIR}&lt;br /&gt;
 11154:${RGMA_USER}:11154,1156:${RGMA_GROUP},${INFOSYS_GROUP}:RGMA user:${INSTALL_ROOT}/glite/etc/rgma&lt;br /&gt;
 11155:${GLITE_USER}:11155:${GLITE_GROUP}:gLite user:${GLITE_HOME_DIR}&lt;br /&gt;
 11156:${BDII_USER}:11158:${BDII_GROUP}:BDII user:${BDII_HOME_DIR}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Annexe 6 =&lt;br /&gt;
&lt;br /&gt;
Probleme rencontré sur ccnagboxli01 (arret de ypbind + rpm manquant)&lt;br /&gt;
 chown -R nagios:nagios /var/spool/pnp4nagios&lt;br /&gt;
 chown -R nagios:nagios /var/spool/msg-nagios-bridge&lt;br /&gt;
 chown root:nagios /etc/atp/atp_db.conf&lt;br /&gt;
 chown root:nagios /etc/mddb/databases.yml&lt;br /&gt;
 chown nagios:apache /var/nagios/rw&lt;br /&gt;
 chown -R nagios:apache /var/nagios/rw&lt;br /&gt;
 chown root:nagios /etc/nagios/plugins/send_to_db.ini&lt;br /&gt;
 chown -R nagios:nagios /var/cache/msg/config-cache&lt;br /&gt;
 chown -R nagios:root /var/log/mddb&lt;br /&gt;
 chown -R nagios:root /var/log/pnp4nagios&lt;br /&gt;
 chown -R nagios:root /var/log/nagios&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
  useradd -g 40011 -u 10011 nagios&lt;br /&gt;
  useradd --group mysql -u 2730 mysql&lt;br /&gt;
  useradd -g mysql -u 2730 mysql&lt;br /&gt;
&lt;br /&gt;
   groupadd -g 40010 nagiosmaster&lt;br /&gt;
   groupadd -g 146 leftuser&lt;br /&gt;
&lt;br /&gt;
 yum install glite-security-voms-api-c-1.8.12-2.sl5.x86_64&lt;br /&gt;
 yum update perl-Net-SSLeay&lt;br /&gt;
 yum update perl-IO-Socket-SSL-1.01-1.fc6.noarch&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install lcg_util-1.7.6-1.sl5.x86_64&lt;br /&gt;
 yum install GFAL-client-1.11.8-2.sl5.x86_64 GFAL-client-1.11.8-2.sl5.i386&lt;br /&gt;
 yum install CGSI_gSOAP_2.7-1.3.3-1.sl5.x86_64&lt;br /&gt;
 yum install LFC-interfaces-1.7.3-1sec.sl5.x86_64 LFC-client-1.7.3-1sec.sl5.x86_64 lcg-dm-common-1.7.3-1sec.sl5.x86_64&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5736</id>
		<title>Nagios regional</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5736"/>
		<updated>2010-03-23T15:35:11Z</updated>

		<summary type="html">&lt;p&gt;LEROY: /* validation */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Installation d&#039;une NOGIOS box pour le ROC France&lt;br /&gt;
&lt;br /&gt;
= 1)	Installation de base : =&lt;br /&gt;
a.	Machine installée par les sysadmin du CC : OS + VOBOX + certificat + pas dans les NIS&lt;br /&gt;
&lt;br /&gt;
b.	Accessible via gsissh (port 1975)&lt;br /&gt;
&lt;br /&gt;
= 2)	Action faite au préalable : =&lt;br /&gt;
a.	Faire la demande pour que la machine soit autorisée à récupérer les SAM tests : https://gus.fzk.de/ws/ticket_info.php?ticket=55132&lt;br /&gt;
&lt;br /&gt;
b.	Autoriser la nagios box à récupérer les proxy en mode « retrieval », et stocker un proxy depuis une UI récuperable par la nagiosBOX voir  [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe0 Annexe0]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
c.	Certificat utilisé pour :&lt;br /&gt;
&lt;br /&gt;
i.	                       Access to GOCDB PI for ROCS GOCDB PI level 2 required &lt;br /&gt;
&lt;br /&gt;
ii.	                       Recuperation de proxy pour les sondes locales&lt;br /&gt;
&lt;br /&gt;
d. s&#039;inscrire dans la mailing liste: regional-nagios-admins@cern.ch (très réactive)&lt;br /&gt;
&lt;br /&gt;
= 3)	Installation de Nagios =&lt;br /&gt;
Reference : https://twiki.cern.ch/twiki/bin/view/EGEE/GridMonitoringNcgYaim&lt;br /&gt;
== Installation des packages via yum, Ajout des repos suivant ==&lt;br /&gt;
 a.	mirrors-rpmforge (rpm rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm)&lt;br /&gt;
 b.	rpmforge-testing.repo&lt;br /&gt;
 c.	rpmforge.repo&lt;br /&gt;
 d.	glite-UI.repo&lt;br /&gt;
 e.	sa1-centos5-release.repo (rpm:  sa1-release-2-1.el5.noarch.rpm)&lt;br /&gt;
 f.	glite-BDII.repo&lt;br /&gt;
&lt;br /&gt;
Problèmes de dépendances rencontrées si besoin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe1 Annexe1] (mais j’avais dû oublier de faire un : yum install egee-NAGIOS)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Installation subversion ==&lt;br /&gt;
Certain fichier de config sont a recuperer via svn au CERN:&lt;br /&gt;
&lt;br /&gt;
 yum install subversion&lt;br /&gt;
 svn co http://svnweb.cern.ch/guest/sam/trunk/roc-config&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 cp /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm.orig&lt;br /&gt;
 cp roc-config/Hash.pm_55_ALL_CRIT /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm&lt;br /&gt;
&lt;br /&gt;
== Mysql ==&lt;br /&gt;
&lt;br /&gt;
1.	Installer la dernière version de Mysql (server + client) ; &lt;br /&gt;
&lt;br /&gt;
2.	configurer le mot de passe admin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2a] ;&lt;br /&gt;
&lt;br /&gt;
3.	Configurer les users utiles à la nagios Box se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2b] ;&lt;br /&gt;
&lt;br /&gt;
== Configuration via yaim et NCG (en 2 fois)==&lt;br /&gt;
&lt;br /&gt;
1.	Remplir /etc/ncg/ncg.localdb avec la liste des sites se referer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe3 Annexe3]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
2.	Remplir le /opt/glite/yaim/site-info.def voir [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe4 Annexe4] ;&lt;br /&gt;
&lt;br /&gt;
3.	groupadd nagios&lt;br /&gt;
&lt;br /&gt;
4.	modif des uids/gids : /opt/glite/yaim/examples/edgusers.conf [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe5 Annexe5]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
5.	lancement de la configuration automatique via yaim (All On One Box) :&lt;br /&gt;
 	&lt;br /&gt;
 	/opt/glite/yaim/bin/yaim -s /opt/glite/yaim/site-info.def -c -n glite-UI -n glite-NAGIOS&lt;br /&gt;
&lt;br /&gt;
6.	lancement de la configuration via NCG (All On One Box) :&lt;br /&gt;
&lt;br /&gt;
 /usr/sbin/ncg.pl&lt;br /&gt;
&lt;br /&gt;
.....MODIFICATION importante:: voir: https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
La partie:&lt;br /&gt;
#  Configure manually /etc/ncg/ncg.conf (Template can be found here: ncg.conf.template: )&lt;br /&gt;
- Switch off automatic generation of ncg.conf by YAIM (NAGIOS_NCG_ENABLE_CONFIG&amp;quot;=&amp;quot;false&amp;quot;)&lt;br /&gt;
- Take ncg.conf.template and copy it to /etc/ncg/ncg.conf&lt;br /&gt;
     - Set $ROC_NAME$&lt;br /&gt;
     - Set $YOUR_MYPROXY_SERVER$ (e.g. myproxy-fts.cern.ch)&lt;br /&gt;
     - Set $MYPROXY_NAME$ (e.g.: NagiosRetrieve-sam-ap-roc.cern.ch)&lt;br /&gt;
     - Set $NAGIOS_ROLE$ (e.g.: ngi, roc)&lt;br /&gt;
# Take Hash.pm file that we are currently using at the CERN ROC Nagios boxes. In this file, we have removed the metrics that do not belong to the SAM_Critical profile, so only the metrics defined at ROC_SAM_critical are configured, and not relevant services like SRMv1 are commented out. The file is located under /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm &lt;br /&gt;
&lt;br /&gt;
Pour éviter d&#039;avoir des sondes inappropriés.&lt;br /&gt;
&lt;br /&gt;
== Tuning the configuration ==&lt;br /&gt;
&lt;br /&gt;
1.	Verifier  dans /etc/sysconfig/nagios:&lt;br /&gt;
 LD_LIBRARY_PATH=/opt/classads/lib64:/opt/glite/lib64:/opt/globus/lib:/opt/c-ares/lib:/opt/classads/lib64  &lt;br /&gt;
&lt;br /&gt;
2.	Desactiver les notifications, dans les fichiers de conf: &lt;br /&gt;
 a.      /etc/nagios/nagios.cfg, désactiver les notifications:enable_notifications=0 ;log_notifications=0&lt;br /&gt;
 b.	 /etc/nagios/wlcg.d/host.templates.cfg&lt;br /&gt;
 c.	 /etc/nagios/wlcg.d/service.templates.cfg&lt;br /&gt;
&lt;br /&gt;
4.	N’autoriser que les dteam/France à visualiser notre interface nagios : modifier le fichier : &lt;br /&gt;
 /etc/voms2htpasswd.conf, avec : vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&lt;br /&gt;
Plus utile site le site-info.def est défini correctement:&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&#039;&lt;br /&gt;
&lt;br /&gt;
== ActiveMQ ==&lt;br /&gt;
 /usr/sbin/msg-to-queue --prefix /queue/grid.probe.metricOutput.EGEE.a635834332381123c8b296d02b682f8f --broker-uri stomp://prod-grid-msg.cern.ch:6163&lt;br /&gt;
 &lt;br /&gt;
[root@cclcgvmli03 cron.hourly]# cat check_msg-to-queue.sh&lt;br /&gt;
&lt;br /&gt;
Verifier les messages:&lt;br /&gt;
 /usr/libexec/grid-monitoring/plugins/nagios/recv_from_queue -v &lt;br /&gt;
&lt;br /&gt;
faire une update de perl-GridMon &lt;br /&gt;
 The problem here is in the message handler &lt;br /&gt;
 (/usr/lib/perl5/vendor_perl/5.8.8/GridMon/MsgHandler/MetricOutput.pm). &lt;br /&gt;
 Probe on WN reports hostname localhost.localdomain and serviceURI CE &lt;br /&gt;
 hostname. In the previous version message handler first checked hostname &lt;br /&gt;
 value and then serviceURI. That is the reason why Christine is seeing &lt;br /&gt;
 results for localhost.localdomain. However, we fixed this and the latest &lt;br /&gt;
 version (1.0.34) parses messages correctly.&lt;br /&gt;
&lt;br /&gt;
 yum update perl-GridMon&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== Systeme d&#039;information ==&lt;br /&gt;
La nagios Box doit etre enregistré dans la GOCDB &lt;br /&gt;
et publié dans le site-BDII:&lt;br /&gt;
 ldapsearch -x -H ldap://ccnagboxli01.in2p3.fr:2170 -b &#039;Mds-vo-name=resource,o=Grid&#039;&lt;br /&gt;
&lt;br /&gt;
= validation =&lt;br /&gt;
&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
&lt;br /&gt;
now you should publish your Nagios in your Site BDII&lt;br /&gt;
And we should declare the node in the GOCDB: Regional-NAGIOS ou National-Nagios, a determiner&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
liste des sondes a valider: d&#039;après: https://twiki.cern.ch/twiki/bin/view/LCG/SAMCriticalTestsForCODs&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Type de Noeuds&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Valid (Y or N)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
APEL&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
BDII&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
- Probleme identifié pour la variable LCG_GFAL_INFOSYS quand c&#039;est une liste (CE lpnce.in2p3.fr):&lt;br /&gt;
LCG_GFAL_INFOSYS=topbdii.grif.fr:2170,cclcgtopbdii01.in2p3.fr:2170,lapp-bdii01.in2p3.fr:2170&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CREAMCE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
FTS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y and NO: For the check_command those options should be added: &lt;br /&gt;
--cert /etc/nagios/globus/hostcert.pem   --key /etc/nagios/globus/hostkey.pem  -x $USER2$ (this should be fixed in the next release)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
gRB/WMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_C&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_L&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MPI&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MyProxy&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RB&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RGMA / MON&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
sBDII&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
SRMv2&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOBOX&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
= Annexe0 =&lt;br /&gt;
&lt;br /&gt;
Sur le myproxyserver, il faut que le nagios server soit &amp;quot;trusted retriever&amp;quot; et &amp;quot;authorized retrievers&amp;quot;:&lt;br /&gt;
 [cleroy@grid08 ~]$ grep cclcgvmli03 /opt/glite/etc/myproxy-server.conf&lt;br /&gt;
 trusted_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 authorized_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Sur une UI:&lt;br /&gt;
&lt;br /&gt;
 voms-proxy-init -voms ops:/ops/Role=lcgadmin&lt;br /&gt;
 myproxy-init -c 336 -k nagios_roc_fr2-ops -s myproxy.grif.fr -l nagios  -x -Z &amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&amp;quot;&lt;br /&gt;
&lt;br /&gt;
= Annexe 1 =&lt;br /&gt;
 rpm -ivh http://www.sysadmin.hep.ac.uk/rpms/egee-SA1/centos5/x86_64/sa1-release-2-1.el5.noarch.rpm&lt;br /&gt;
 rpm -ivh  http://packages.sw.be/rpmforge-release/rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm&lt;br /&gt;
&lt;br /&gt;
 yum install atp&lt;br /&gt;
 yum install bouncycastle&lt;br /&gt;
 yum install broker&lt;br /&gt;
 yum install broker-cache&lt;br /&gt;
 yum install dcache-srmclient&lt;br /&gt;
 yum install dummy-ca-certs&lt;br /&gt;
 yum install egee-NAGIOS&lt;br /&gt;
 yum install egee-NAGIOS egee-NRPE&lt;br /&gt;
 yum install egee-NRPE&lt;br /&gt;
 yum install fetch-crl&lt;br /&gt;
 yum install fipscheck fipscheck-lib&lt;br /&gt;
 yum install glite-UI&lt;br /&gt;
 yum install glite-security-voms-clients&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install glite-yaim-core&lt;br /&gt;
 yum install glite-yaim-nagios&lt;br /&gt;
 yum install httpd&lt;br /&gt;
 yum install jdk&lt;br /&gt;
 yum install lcg-CA&lt;br /&gt;
 yum install lcg-CA egee-NAGIOS&lt;br /&gt;
 yum install lcg_util&lt;br /&gt;
 yum install mddb&lt;br /&gt;
 yum install msg-publish-simple&lt;br /&gt;
 yum install myproxy&lt;br /&gt;
 yum install mysql-client&lt;br /&gt;
 yum install mysql-server&lt;br /&gt;
 yum install nagios-proxy-refresh&lt;br /&gt;
 yum install perl-Config-Tiny&lt;br /&gt;
 yum install perl-DBD-MySQL&lt;br /&gt;
 yum install perl-rrdtool-1.3.8-2.el5.rf.x86_64&lt;br /&gt;
 yum install python-yaml&lt;br /&gt;
 yum install sun-jaf&lt;br /&gt;
 yum install uberftp-client&lt;br /&gt;
 yum install vdt_globus_rm_client&lt;br /&gt;
&lt;br /&gt;
 yum update glite-yaim-clients&lt;br /&gt;
 yum update glite-yaim-core&lt;br /&gt;
 yum update glite-yaim-nagios&lt;br /&gt;
 yum update mysql-server&lt;br /&gt;
 yum update perl-DBI&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe2 =&lt;br /&gt;
a)Mot de passe admin mysql :&lt;br /&gt;
Yum pour recupérer la derniere version de Mysql :&lt;br /&gt;
&#039;&#039;MySQL-server-community&#039;&#039;, ne pas oublier le client (pas de dépendance dessus)&lt;br /&gt;
Demmarrage de mysql avec --skip-grant-tables (pour ne pas avoir de mot de passe a rentrer)&lt;br /&gt;
 mysqld_safe --skip-grant-tables &amp;amp;&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root &lt;br /&gt;
 update user set password=PASSWORD(&amp;quot;NEW-ROOT-PASSWORD&amp;quot;) where User=&#039;root&#039;;&lt;br /&gt;
&lt;br /&gt;
b)creation des users pour le nagios regional:&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root -p&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON nagios.* TO &#039;ndouser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON atp.* TO &#039;atpuser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe 3 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /etc/ncg/ncg.localdb&lt;br /&gt;
 #&lt;br /&gt;
 # Local Rules file to modify NCG configuration&lt;br /&gt;
 #&lt;br /&gt;
 SITE!AUVERGRID&lt;br /&gt;
 SITE!CGG-LCG2&lt;br /&gt;
 SITE!ESRF&lt;br /&gt;
 SITE!GRIF&lt;br /&gt;
 SITE!IBCP-GBIO&lt;br /&gt;
 SITE!IN2P3-CC&lt;br /&gt;
 SITE!IN2P3-CC-PPS&lt;br /&gt;
 SITE!IN2P3-CC-T2&lt;br /&gt;
 SITE!IN2P3-CPPM&lt;br /&gt;
 SITE!IN2P3-IPNL&lt;br /&gt;
 SITE!IN2P3-IRES&lt;br /&gt;
 SITE!IN2P3-LAPP&lt;br /&gt;
 SITE!IN2P3-LPC&lt;br /&gt;
 SITE!IN2P3-LPSC&lt;br /&gt;
 SITE!IN2P3-SUBATECH&lt;br /&gt;
 SITE!IPSL-IPGP-LCG2&lt;br /&gt;
 SITE!M3PEC&lt;br /&gt;
 SITE!MSFG&lt;br /&gt;
 SITE!MSFG-MULTI&lt;br /&gt;
 SITE!MSFG-OPEN&lt;br /&gt;
 SITE!OBSPM&lt;br /&gt;
 SITE!PARIS-UREC-IPV6&lt;br /&gt;
 SITE!SN-UCAD&lt;br /&gt;
 SITE!ROC-FR&lt;br /&gt;
 SITE!SOLEIL&lt;br /&gt;
 SITE!StratusLab&lt;br /&gt;
 [root@cclcgvmli03 ~]#&lt;br /&gt;
 &lt;br /&gt;
= Annexe 4 =&lt;br /&gt;
&lt;br /&gt;
 SITE_EMAIL=c.leroy@cea.fr&lt;br /&gt;
 SITE_NAME=ROC-FR&lt;br /&gt;
 RB_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 WMS_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 PX_HOST=myproxy.grif.fr&lt;br /&gt;
 BDII_HOST=topbdii.grif.fr&lt;br /&gt;
 SITE_BDII_HOST=bdii.grif.fr&lt;br /&gt;
 MON_HOST=node06.datagrid.cea.fr&lt;br /&gt;
 VOS=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 DTEAM_GROUP_ENABLE=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 VO_DTEAM_SW_DIR=$VO_SW_DIR/dteam&lt;br /&gt;
 VO_DTEAM_DEFAULT_SE=$SE_HOST&lt;br /&gt;
 VO_DTEAM_STORAGE_DIR=$CLASSIC_STORAGE_DIR/dteam&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/&#039;&lt;br /&gt;
 VO_DTEAM_VOMSES=&amp;quot;&#039;dteam lcg-voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=lcg-voms.cern.ch dteam 24&#039; &#039;dteam    voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=voms.cern.ch dteam 24&#039;&amp;quot;&lt;br /&gt;
 VO_DTEAM_VOMS_CA_DN=&amp;quot;&#039;/DC=ch/DC=cern/CN=CERN Trusted Certification Authority&#039; &#039;/DC=ch/DC=cern/CN=CERN Trusted   Certification Authority&#039;&amp;quot;&lt;br /&gt;
 NAGIOS_HOST=cclcgvmli03.in2p3.fr&lt;br /&gt;
 NAGIOS_ADMIN_DNS=&amp;quot;/O=GRID-FR/C=FR/O=CEA/OU=IRFU/CN=Christine Leroy&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=Nadia Lajili&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=LPC/CN=Emmanuel Medernach&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CPPM/CN=Juan Carlos Carranza&amp;quot;&lt;br /&gt;
 NAGIOS_NCG_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_NAGIOS_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_GOCDB_ROC_NAME=France&lt;br /&gt;
 ROC_NAME=France&lt;br /&gt;
 NCG_PROBES_TYPE=remote,native,local&lt;br /&gt;
 NCG_VO=dteam&lt;br /&gt;
 NAGIOS_MYPROXY_NAME=nagios_roc_fr2&lt;br /&gt;
 NAGIOS_MYPROXY_USER=nagios&lt;br /&gt;
 MSG_BROKER_CACHE_NETWORK=PROD&lt;br /&gt;
 NAGIOS_ROLE=roc&lt;br /&gt;
 NAGIOS_HTTPD_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_SUDO_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_CGI_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_LDAP_FILTER=GlueSiteOtherInfo=EGEE_ROC=France&lt;br /&gt;
 NAGIOS_DB_PASS=x&lt;br /&gt;
 NAGIOS_NSCA_PASS=x&lt;br /&gt;
 MYSQL_ADMIN=x&lt;br /&gt;
 ATP_DB_PASS=x&lt;br /&gt;
 MDDB_DB_PASS=x&lt;br /&gt;
 MS_DB_PASS=x&lt;br /&gt;
 MYSQL_PASSWORD=x&lt;br /&gt;
 MYEGEE_DB_PASS=x&lt;br /&gt;
&lt;br /&gt;
= Annexe 5 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /opt/glite/yaim/examples/edgusers.conf&lt;br /&gt;
 11151:${DPMMGR_USER}:11151:${DPMMGR_GROUP}:DPM user:&lt;br /&gt;
 11152:${EDG_USER}:11152,11156:${EDG_GROUP},${INFOSYS_GROUP}:EDG user:${EDG_HOME_DIR}&lt;br /&gt;
 11153:${EDGINFO_USER}:11153,1156:${EDGINFO_USER},${INFOSYS_GROUP}:EDG info user:${EDGINFO_HOME_DIR}&lt;br /&gt;
 11154:${RGMA_USER}:11154,1156:${RGMA_GROUP},${INFOSYS_GROUP}:RGMA user:${INSTALL_ROOT}/glite/etc/rgma&lt;br /&gt;
 11155:${GLITE_USER}:11155:${GLITE_GROUP}:gLite user:${GLITE_HOME_DIR}&lt;br /&gt;
 11156:${BDII_USER}:11158:${BDII_GROUP}:BDII user:${BDII_HOME_DIR}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Annexe 6 =&lt;br /&gt;
&lt;br /&gt;
Probleme rencontré sur ccnagboxli01 (arret de ypbind + rpm manquant)&lt;br /&gt;
 chown -R nagios:nagios /var/spool/pnp4nagios&lt;br /&gt;
 chown -R nagios:nagios /var/spool/msg-nagios-bridge&lt;br /&gt;
 chown root:nagios /etc/atp/atp_db.conf&lt;br /&gt;
 chown root:nagios /etc/mddb/databases.yml&lt;br /&gt;
 chown nagios:apache /var/nagios/rw&lt;br /&gt;
 chown -R nagios:apache /var/nagios/rw&lt;br /&gt;
 chown root:nagios /etc/nagios/plugins/send_to_db.ini&lt;br /&gt;
 chown -R nagios:nagios /var/cache/msg/config-cache&lt;br /&gt;
 chown -R nagios:root /var/log/mddb&lt;br /&gt;
 chown -R nagios:root /var/log/pnp4nagios&lt;br /&gt;
 chown -R nagios:root /var/log/nagios&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
  useradd -g 40011 -u 10011 nagios&lt;br /&gt;
  useradd --group mysql -u 2730 mysql&lt;br /&gt;
  useradd -g mysql -u 2730 mysql&lt;br /&gt;
&lt;br /&gt;
   groupadd -g 40010 nagiosmaster&lt;br /&gt;
   groupadd -g 146 leftuser&lt;br /&gt;
&lt;br /&gt;
 yum install glite-security-voms-api-c-1.8.12-2.sl5.x86_64&lt;br /&gt;
 yum update perl-Net-SSLeay&lt;br /&gt;
 yum update perl-IO-Socket-SSL-1.01-1.fc6.noarch&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install lcg_util-1.7.6-1.sl5.x86_64&lt;br /&gt;
 yum install GFAL-client-1.11.8-2.sl5.x86_64 GFAL-client-1.11.8-2.sl5.i386&lt;br /&gt;
 yum install CGSI_gSOAP_2.7-1.3.3-1.sl5.x86_64&lt;br /&gt;
 yum install LFC-interfaces-1.7.3-1sec.sl5.x86_64 LFC-client-1.7.3-1sec.sl5.x86_64 lcg-dm-common-1.7.3-1sec.sl5.x86_64&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5735</id>
		<title>Nagios regional</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5735"/>
		<updated>2010-03-23T15:34:49Z</updated>

		<summary type="html">&lt;p&gt;LEROY: /* validation */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Installation d&#039;une NOGIOS box pour le ROC France&lt;br /&gt;
&lt;br /&gt;
= 1)	Installation de base : =&lt;br /&gt;
a.	Machine installée par les sysadmin du CC : OS + VOBOX + certificat + pas dans les NIS&lt;br /&gt;
&lt;br /&gt;
b.	Accessible via gsissh (port 1975)&lt;br /&gt;
&lt;br /&gt;
= 2)	Action faite au préalable : =&lt;br /&gt;
a.	Faire la demande pour que la machine soit autorisée à récupérer les SAM tests : https://gus.fzk.de/ws/ticket_info.php?ticket=55132&lt;br /&gt;
&lt;br /&gt;
b.	Autoriser la nagios box à récupérer les proxy en mode « retrieval », et stocker un proxy depuis une UI récuperable par la nagiosBOX voir  [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe0 Annexe0]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
c.	Certificat utilisé pour :&lt;br /&gt;
&lt;br /&gt;
i.	                       Access to GOCDB PI for ROCS GOCDB PI level 2 required &lt;br /&gt;
&lt;br /&gt;
ii.	                       Recuperation de proxy pour les sondes locales&lt;br /&gt;
&lt;br /&gt;
d. s&#039;inscrire dans la mailing liste: regional-nagios-admins@cern.ch (très réactive)&lt;br /&gt;
&lt;br /&gt;
= 3)	Installation de Nagios =&lt;br /&gt;
Reference : https://twiki.cern.ch/twiki/bin/view/EGEE/GridMonitoringNcgYaim&lt;br /&gt;
== Installation des packages via yum, Ajout des repos suivant ==&lt;br /&gt;
 a.	mirrors-rpmforge (rpm rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm)&lt;br /&gt;
 b.	rpmforge-testing.repo&lt;br /&gt;
 c.	rpmforge.repo&lt;br /&gt;
 d.	glite-UI.repo&lt;br /&gt;
 e.	sa1-centos5-release.repo (rpm:  sa1-release-2-1.el5.noarch.rpm)&lt;br /&gt;
 f.	glite-BDII.repo&lt;br /&gt;
&lt;br /&gt;
Problèmes de dépendances rencontrées si besoin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe1 Annexe1] (mais j’avais dû oublier de faire un : yum install egee-NAGIOS)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Installation subversion ==&lt;br /&gt;
Certain fichier de config sont a recuperer via svn au CERN:&lt;br /&gt;
&lt;br /&gt;
 yum install subversion&lt;br /&gt;
 svn co http://svnweb.cern.ch/guest/sam/trunk/roc-config&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 cp /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm.orig&lt;br /&gt;
 cp roc-config/Hash.pm_55_ALL_CRIT /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm&lt;br /&gt;
&lt;br /&gt;
== Mysql ==&lt;br /&gt;
&lt;br /&gt;
1.	Installer la dernière version de Mysql (server + client) ; &lt;br /&gt;
&lt;br /&gt;
2.	configurer le mot de passe admin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2a] ;&lt;br /&gt;
&lt;br /&gt;
3.	Configurer les users utiles à la nagios Box se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2b] ;&lt;br /&gt;
&lt;br /&gt;
== Configuration via yaim et NCG (en 2 fois)==&lt;br /&gt;
&lt;br /&gt;
1.	Remplir /etc/ncg/ncg.localdb avec la liste des sites se referer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe3 Annexe3]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
2.	Remplir le /opt/glite/yaim/site-info.def voir [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe4 Annexe4] ;&lt;br /&gt;
&lt;br /&gt;
3.	groupadd nagios&lt;br /&gt;
&lt;br /&gt;
4.	modif des uids/gids : /opt/glite/yaim/examples/edgusers.conf [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe5 Annexe5]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
5.	lancement de la configuration automatique via yaim (All On One Box) :&lt;br /&gt;
 	&lt;br /&gt;
 	/opt/glite/yaim/bin/yaim -s /opt/glite/yaim/site-info.def -c -n glite-UI -n glite-NAGIOS&lt;br /&gt;
&lt;br /&gt;
6.	lancement de la configuration via NCG (All On One Box) :&lt;br /&gt;
&lt;br /&gt;
 /usr/sbin/ncg.pl&lt;br /&gt;
&lt;br /&gt;
.....MODIFICATION importante:: voir: https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
La partie:&lt;br /&gt;
#  Configure manually /etc/ncg/ncg.conf (Template can be found here: ncg.conf.template: )&lt;br /&gt;
- Switch off automatic generation of ncg.conf by YAIM (NAGIOS_NCG_ENABLE_CONFIG&amp;quot;=&amp;quot;false&amp;quot;)&lt;br /&gt;
- Take ncg.conf.template and copy it to /etc/ncg/ncg.conf&lt;br /&gt;
     - Set $ROC_NAME$&lt;br /&gt;
     - Set $YOUR_MYPROXY_SERVER$ (e.g. myproxy-fts.cern.ch)&lt;br /&gt;
     - Set $MYPROXY_NAME$ (e.g.: NagiosRetrieve-sam-ap-roc.cern.ch)&lt;br /&gt;
     - Set $NAGIOS_ROLE$ (e.g.: ngi, roc)&lt;br /&gt;
# Take Hash.pm file that we are currently using at the CERN ROC Nagios boxes. In this file, we have removed the metrics that do not belong to the SAM_Critical profile, so only the metrics defined at ROC_SAM_critical are configured, and not relevant services like SRMv1 are commented out. The file is located under /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm &lt;br /&gt;
&lt;br /&gt;
Pour éviter d&#039;avoir des sondes inappropriés.&lt;br /&gt;
&lt;br /&gt;
== Tuning the configuration ==&lt;br /&gt;
&lt;br /&gt;
1.	Verifier  dans /etc/sysconfig/nagios:&lt;br /&gt;
 LD_LIBRARY_PATH=/opt/classads/lib64:/opt/glite/lib64:/opt/globus/lib:/opt/c-ares/lib:/opt/classads/lib64  &lt;br /&gt;
&lt;br /&gt;
2.	Desactiver les notifications, dans les fichiers de conf: &lt;br /&gt;
 a.      /etc/nagios/nagios.cfg, désactiver les notifications:enable_notifications=0 ;log_notifications=0&lt;br /&gt;
 b.	 /etc/nagios/wlcg.d/host.templates.cfg&lt;br /&gt;
 c.	 /etc/nagios/wlcg.d/service.templates.cfg&lt;br /&gt;
&lt;br /&gt;
4.	N’autoriser que les dteam/France à visualiser notre interface nagios : modifier le fichier : &lt;br /&gt;
 /etc/voms2htpasswd.conf, avec : vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&lt;br /&gt;
Plus utile site le site-info.def est défini correctement:&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&#039;&lt;br /&gt;
&lt;br /&gt;
== ActiveMQ ==&lt;br /&gt;
 /usr/sbin/msg-to-queue --prefix /queue/grid.probe.metricOutput.EGEE.a635834332381123c8b296d02b682f8f --broker-uri stomp://prod-grid-msg.cern.ch:6163&lt;br /&gt;
 &lt;br /&gt;
[root@cclcgvmli03 cron.hourly]# cat check_msg-to-queue.sh&lt;br /&gt;
&lt;br /&gt;
Verifier les messages:&lt;br /&gt;
 /usr/libexec/grid-monitoring/plugins/nagios/recv_from_queue -v &lt;br /&gt;
&lt;br /&gt;
faire une update de perl-GridMon &lt;br /&gt;
 The problem here is in the message handler &lt;br /&gt;
 (/usr/lib/perl5/vendor_perl/5.8.8/GridMon/MsgHandler/MetricOutput.pm). &lt;br /&gt;
 Probe on WN reports hostname localhost.localdomain and serviceURI CE &lt;br /&gt;
 hostname. In the previous version message handler first checked hostname &lt;br /&gt;
 value and then serviceURI. That is the reason why Christine is seeing &lt;br /&gt;
 results for localhost.localdomain. However, we fixed this and the latest &lt;br /&gt;
 version (1.0.34) parses messages correctly.&lt;br /&gt;
&lt;br /&gt;
 yum update perl-GridMon&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== Systeme d&#039;information ==&lt;br /&gt;
La nagios Box doit etre enregistré dans la GOCDB &lt;br /&gt;
et publié dans le site-BDII:&lt;br /&gt;
 ldapsearch -x -H ldap://ccnagboxli01.in2p3.fr:2170 -b &#039;Mds-vo-name=resource,o=Grid&#039;&lt;br /&gt;
&lt;br /&gt;
= validation =&lt;br /&gt;
&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
&lt;br /&gt;
now you should publish your Nagios in your Site BDII&lt;br /&gt;
And we should declare the node in the GOCDB: Regional-NAGIOS ou National-Nagios, a determiner&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
liste des sondes a valider: d&#039;après: https://twiki.cern.ch/twiki/bin/view/LCG/SAMCriticalTestsForCODs&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Type de Noeuds&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Valid (Y or N)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
APEL&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
BDII&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
- Probleme identifié pour la variable LCG_GFAL_INFOSYS quand c&#039;est une liste (CE lpnce.in2p3.fr):&lt;br /&gt;
LCG_GFAL_INFOSYS=topbdii.grif.fr:2170,cclcgtopbdii01.in2p3.fr:2170,lapp-bdii01.in2p3.fr:2170&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CREAMCE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
FTS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y and NO: For the check_command those options should be added: &lt;br /&gt;
--cert /etc/nagios/globus/hostcert.pem   --key /etc/nagios/globus/hostkey.pem  -x $USER2$ (this should be fixed in the next release)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
gRB/WMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_C&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_L&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MPI&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MyProxy&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RB&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RGMA / MON&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
sBDII&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
SRMv2&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOBOX&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
= Annexe0 =&lt;br /&gt;
&lt;br /&gt;
Sur le myproxyserver, il faut que le nagios server soit &amp;quot;trusted retriever&amp;quot; et &amp;quot;authorized retrievers&amp;quot;:&lt;br /&gt;
 [cleroy@grid08 ~]$ grep cclcgvmli03 /opt/glite/etc/myproxy-server.conf&lt;br /&gt;
 trusted_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 authorized_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Sur une UI:&lt;br /&gt;
&lt;br /&gt;
 voms-proxy-init -voms ops:/ops/Role=lcgadmin&lt;br /&gt;
 myproxy-init -c 336 -k nagios_roc_fr2-ops -s myproxy.grif.fr -l nagios  -x -Z &amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&amp;quot;&lt;br /&gt;
&lt;br /&gt;
= Annexe 1 =&lt;br /&gt;
 rpm -ivh http://www.sysadmin.hep.ac.uk/rpms/egee-SA1/centos5/x86_64/sa1-release-2-1.el5.noarch.rpm&lt;br /&gt;
 rpm -ivh  http://packages.sw.be/rpmforge-release/rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm&lt;br /&gt;
&lt;br /&gt;
 yum install atp&lt;br /&gt;
 yum install bouncycastle&lt;br /&gt;
 yum install broker&lt;br /&gt;
 yum install broker-cache&lt;br /&gt;
 yum install dcache-srmclient&lt;br /&gt;
 yum install dummy-ca-certs&lt;br /&gt;
 yum install egee-NAGIOS&lt;br /&gt;
 yum install egee-NAGIOS egee-NRPE&lt;br /&gt;
 yum install egee-NRPE&lt;br /&gt;
 yum install fetch-crl&lt;br /&gt;
 yum install fipscheck fipscheck-lib&lt;br /&gt;
 yum install glite-UI&lt;br /&gt;
 yum install glite-security-voms-clients&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install glite-yaim-core&lt;br /&gt;
 yum install glite-yaim-nagios&lt;br /&gt;
 yum install httpd&lt;br /&gt;
 yum install jdk&lt;br /&gt;
 yum install lcg-CA&lt;br /&gt;
 yum install lcg-CA egee-NAGIOS&lt;br /&gt;
 yum install lcg_util&lt;br /&gt;
 yum install mddb&lt;br /&gt;
 yum install msg-publish-simple&lt;br /&gt;
 yum install myproxy&lt;br /&gt;
 yum install mysql-client&lt;br /&gt;
 yum install mysql-server&lt;br /&gt;
 yum install nagios-proxy-refresh&lt;br /&gt;
 yum install perl-Config-Tiny&lt;br /&gt;
 yum install perl-DBD-MySQL&lt;br /&gt;
 yum install perl-rrdtool-1.3.8-2.el5.rf.x86_64&lt;br /&gt;
 yum install python-yaml&lt;br /&gt;
 yum install sun-jaf&lt;br /&gt;
 yum install uberftp-client&lt;br /&gt;
 yum install vdt_globus_rm_client&lt;br /&gt;
&lt;br /&gt;
 yum update glite-yaim-clients&lt;br /&gt;
 yum update glite-yaim-core&lt;br /&gt;
 yum update glite-yaim-nagios&lt;br /&gt;
 yum update mysql-server&lt;br /&gt;
 yum update perl-DBI&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe2 =&lt;br /&gt;
a)Mot de passe admin mysql :&lt;br /&gt;
Yum pour recupérer la derniere version de Mysql :&lt;br /&gt;
&#039;&#039;MySQL-server-community&#039;&#039;, ne pas oublier le client (pas de dépendance dessus)&lt;br /&gt;
Demmarrage de mysql avec --skip-grant-tables (pour ne pas avoir de mot de passe a rentrer)&lt;br /&gt;
 mysqld_safe --skip-grant-tables &amp;amp;&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root &lt;br /&gt;
 update user set password=PASSWORD(&amp;quot;NEW-ROOT-PASSWORD&amp;quot;) where User=&#039;root&#039;;&lt;br /&gt;
&lt;br /&gt;
b)creation des users pour le nagios regional:&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root -p&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON nagios.* TO &#039;ndouser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON atp.* TO &#039;atpuser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe 3 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /etc/ncg/ncg.localdb&lt;br /&gt;
 #&lt;br /&gt;
 # Local Rules file to modify NCG configuration&lt;br /&gt;
 #&lt;br /&gt;
 SITE!AUVERGRID&lt;br /&gt;
 SITE!CGG-LCG2&lt;br /&gt;
 SITE!ESRF&lt;br /&gt;
 SITE!GRIF&lt;br /&gt;
 SITE!IBCP-GBIO&lt;br /&gt;
 SITE!IN2P3-CC&lt;br /&gt;
 SITE!IN2P3-CC-PPS&lt;br /&gt;
 SITE!IN2P3-CC-T2&lt;br /&gt;
 SITE!IN2P3-CPPM&lt;br /&gt;
 SITE!IN2P3-IPNL&lt;br /&gt;
 SITE!IN2P3-IRES&lt;br /&gt;
 SITE!IN2P3-LAPP&lt;br /&gt;
 SITE!IN2P3-LPC&lt;br /&gt;
 SITE!IN2P3-LPSC&lt;br /&gt;
 SITE!IN2P3-SUBATECH&lt;br /&gt;
 SITE!IPSL-IPGP-LCG2&lt;br /&gt;
 SITE!M3PEC&lt;br /&gt;
 SITE!MSFG&lt;br /&gt;
 SITE!MSFG-MULTI&lt;br /&gt;
 SITE!MSFG-OPEN&lt;br /&gt;
 SITE!OBSPM&lt;br /&gt;
 SITE!PARIS-UREC-IPV6&lt;br /&gt;
 SITE!SN-UCAD&lt;br /&gt;
 SITE!ROC-FR&lt;br /&gt;
 SITE!SOLEIL&lt;br /&gt;
 SITE!StratusLab&lt;br /&gt;
 [root@cclcgvmli03 ~]#&lt;br /&gt;
 &lt;br /&gt;
= Annexe 4 =&lt;br /&gt;
&lt;br /&gt;
 SITE_EMAIL=c.leroy@cea.fr&lt;br /&gt;
 SITE_NAME=ROC-FR&lt;br /&gt;
 RB_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 WMS_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 PX_HOST=myproxy.grif.fr&lt;br /&gt;
 BDII_HOST=topbdii.grif.fr&lt;br /&gt;
 SITE_BDII_HOST=bdii.grif.fr&lt;br /&gt;
 MON_HOST=node06.datagrid.cea.fr&lt;br /&gt;
 VOS=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 DTEAM_GROUP_ENABLE=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 VO_DTEAM_SW_DIR=$VO_SW_DIR/dteam&lt;br /&gt;
 VO_DTEAM_DEFAULT_SE=$SE_HOST&lt;br /&gt;
 VO_DTEAM_STORAGE_DIR=$CLASSIC_STORAGE_DIR/dteam&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/&#039;&lt;br /&gt;
 VO_DTEAM_VOMSES=&amp;quot;&#039;dteam lcg-voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=lcg-voms.cern.ch dteam 24&#039; &#039;dteam    voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=voms.cern.ch dteam 24&#039;&amp;quot;&lt;br /&gt;
 VO_DTEAM_VOMS_CA_DN=&amp;quot;&#039;/DC=ch/DC=cern/CN=CERN Trusted Certification Authority&#039; &#039;/DC=ch/DC=cern/CN=CERN Trusted   Certification Authority&#039;&amp;quot;&lt;br /&gt;
 NAGIOS_HOST=cclcgvmli03.in2p3.fr&lt;br /&gt;
 NAGIOS_ADMIN_DNS=&amp;quot;/O=GRID-FR/C=FR/O=CEA/OU=IRFU/CN=Christine Leroy&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=Nadia Lajili&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=LPC/CN=Emmanuel Medernach&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CPPM/CN=Juan Carlos Carranza&amp;quot;&lt;br /&gt;
 NAGIOS_NCG_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_NAGIOS_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_GOCDB_ROC_NAME=France&lt;br /&gt;
 ROC_NAME=France&lt;br /&gt;
 NCG_PROBES_TYPE=remote,native,local&lt;br /&gt;
 NCG_VO=dteam&lt;br /&gt;
 NAGIOS_MYPROXY_NAME=nagios_roc_fr2&lt;br /&gt;
 NAGIOS_MYPROXY_USER=nagios&lt;br /&gt;
 MSG_BROKER_CACHE_NETWORK=PROD&lt;br /&gt;
 NAGIOS_ROLE=roc&lt;br /&gt;
 NAGIOS_HTTPD_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_SUDO_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_CGI_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_LDAP_FILTER=GlueSiteOtherInfo=EGEE_ROC=France&lt;br /&gt;
 NAGIOS_DB_PASS=x&lt;br /&gt;
 NAGIOS_NSCA_PASS=x&lt;br /&gt;
 MYSQL_ADMIN=x&lt;br /&gt;
 ATP_DB_PASS=x&lt;br /&gt;
 MDDB_DB_PASS=x&lt;br /&gt;
 MS_DB_PASS=x&lt;br /&gt;
 MYSQL_PASSWORD=x&lt;br /&gt;
 MYEGEE_DB_PASS=x&lt;br /&gt;
&lt;br /&gt;
= Annexe 5 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /opt/glite/yaim/examples/edgusers.conf&lt;br /&gt;
 11151:${DPMMGR_USER}:11151:${DPMMGR_GROUP}:DPM user:&lt;br /&gt;
 11152:${EDG_USER}:11152,11156:${EDG_GROUP},${INFOSYS_GROUP}:EDG user:${EDG_HOME_DIR}&lt;br /&gt;
 11153:${EDGINFO_USER}:11153,1156:${EDGINFO_USER},${INFOSYS_GROUP}:EDG info user:${EDGINFO_HOME_DIR}&lt;br /&gt;
 11154:${RGMA_USER}:11154,1156:${RGMA_GROUP},${INFOSYS_GROUP}:RGMA user:${INSTALL_ROOT}/glite/etc/rgma&lt;br /&gt;
 11155:${GLITE_USER}:11155:${GLITE_GROUP}:gLite user:${GLITE_HOME_DIR}&lt;br /&gt;
 11156:${BDII_USER}:11158:${BDII_GROUP}:BDII user:${BDII_HOME_DIR}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Annexe 6 =&lt;br /&gt;
&lt;br /&gt;
Probleme rencontré sur ccnagboxli01 (arret de ypbind + rpm manquant)&lt;br /&gt;
 chown -R nagios:nagios /var/spool/pnp4nagios&lt;br /&gt;
 chown -R nagios:nagios /var/spool/msg-nagios-bridge&lt;br /&gt;
 chown root:nagios /etc/atp/atp_db.conf&lt;br /&gt;
 chown root:nagios /etc/mddb/databases.yml&lt;br /&gt;
 chown nagios:apache /var/nagios/rw&lt;br /&gt;
 chown -R nagios:apache /var/nagios/rw&lt;br /&gt;
 chown root:nagios /etc/nagios/plugins/send_to_db.ini&lt;br /&gt;
 chown -R nagios:nagios /var/cache/msg/config-cache&lt;br /&gt;
 chown -R nagios:root /var/log/mddb&lt;br /&gt;
 chown -R nagios:root /var/log/pnp4nagios&lt;br /&gt;
 chown -R nagios:root /var/log/nagios&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
  useradd -g 40011 -u 10011 nagios&lt;br /&gt;
  useradd --group mysql -u 2730 mysql&lt;br /&gt;
  useradd -g mysql -u 2730 mysql&lt;br /&gt;
&lt;br /&gt;
   groupadd -g 40010 nagiosmaster&lt;br /&gt;
   groupadd -g 146 leftuser&lt;br /&gt;
&lt;br /&gt;
 yum install glite-security-voms-api-c-1.8.12-2.sl5.x86_64&lt;br /&gt;
 yum update perl-Net-SSLeay&lt;br /&gt;
 yum update perl-IO-Socket-SSL-1.01-1.fc6.noarch&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install lcg_util-1.7.6-1.sl5.x86_64&lt;br /&gt;
 yum install GFAL-client-1.11.8-2.sl5.x86_64 GFAL-client-1.11.8-2.sl5.i386&lt;br /&gt;
 yum install CGSI_gSOAP_2.7-1.3.3-1.sl5.x86_64&lt;br /&gt;
 yum install LFC-interfaces-1.7.3-1sec.sl5.x86_64 LFC-client-1.7.3-1sec.sl5.x86_64 lcg-dm-common-1.7.3-1sec.sl5.x86_64&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5734</id>
		<title>Nagios regional</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5734"/>
		<updated>2010-03-23T15:30:16Z</updated>

		<summary type="html">&lt;p&gt;LEROY: /* validation */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Installation d&#039;une NOGIOS box pour le ROC France&lt;br /&gt;
&lt;br /&gt;
= 1)	Installation de base : =&lt;br /&gt;
a.	Machine installée par les sysadmin du CC : OS + VOBOX + certificat + pas dans les NIS&lt;br /&gt;
&lt;br /&gt;
b.	Accessible via gsissh (port 1975)&lt;br /&gt;
&lt;br /&gt;
= 2)	Action faite au préalable : =&lt;br /&gt;
a.	Faire la demande pour que la machine soit autorisée à récupérer les SAM tests : https://gus.fzk.de/ws/ticket_info.php?ticket=55132&lt;br /&gt;
&lt;br /&gt;
b.	Autoriser la nagios box à récupérer les proxy en mode « retrieval », et stocker un proxy depuis une UI récuperable par la nagiosBOX voir  [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe0 Annexe0]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
c.	Certificat utilisé pour :&lt;br /&gt;
&lt;br /&gt;
i.	                       Access to GOCDB PI for ROCS GOCDB PI level 2 required &lt;br /&gt;
&lt;br /&gt;
ii.	                       Recuperation de proxy pour les sondes locales&lt;br /&gt;
&lt;br /&gt;
d. s&#039;inscrire dans la mailing liste: regional-nagios-admins@cern.ch (très réactive)&lt;br /&gt;
&lt;br /&gt;
= 3)	Installation de Nagios =&lt;br /&gt;
Reference : https://twiki.cern.ch/twiki/bin/view/EGEE/GridMonitoringNcgYaim&lt;br /&gt;
== Installation des packages via yum, Ajout des repos suivant ==&lt;br /&gt;
 a.	mirrors-rpmforge (rpm rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm)&lt;br /&gt;
 b.	rpmforge-testing.repo&lt;br /&gt;
 c.	rpmforge.repo&lt;br /&gt;
 d.	glite-UI.repo&lt;br /&gt;
 e.	sa1-centos5-release.repo (rpm:  sa1-release-2-1.el5.noarch.rpm)&lt;br /&gt;
 f.	glite-BDII.repo&lt;br /&gt;
&lt;br /&gt;
Problèmes de dépendances rencontrées si besoin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe1 Annexe1] (mais j’avais dû oublier de faire un : yum install egee-NAGIOS)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Installation subversion ==&lt;br /&gt;
Certain fichier de config sont a recuperer via svn au CERN:&lt;br /&gt;
&lt;br /&gt;
 yum install subversion&lt;br /&gt;
 svn co http://svnweb.cern.ch/guest/sam/trunk/roc-config&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 cp /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm.orig&lt;br /&gt;
 cp roc-config/Hash.pm_55_ALL_CRIT /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm&lt;br /&gt;
&lt;br /&gt;
== Mysql ==&lt;br /&gt;
&lt;br /&gt;
1.	Installer la dernière version de Mysql (server + client) ; &lt;br /&gt;
&lt;br /&gt;
2.	configurer le mot de passe admin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2a] ;&lt;br /&gt;
&lt;br /&gt;
3.	Configurer les users utiles à la nagios Box se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2b] ;&lt;br /&gt;
&lt;br /&gt;
== Configuration via yaim et NCG (en 2 fois)==&lt;br /&gt;
&lt;br /&gt;
1.	Remplir /etc/ncg/ncg.localdb avec la liste des sites se referer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe3 Annexe3]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
2.	Remplir le /opt/glite/yaim/site-info.def voir [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe4 Annexe4] ;&lt;br /&gt;
&lt;br /&gt;
3.	groupadd nagios&lt;br /&gt;
&lt;br /&gt;
4.	modif des uids/gids : /opt/glite/yaim/examples/edgusers.conf [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe5 Annexe5]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
5.	lancement de la configuration automatique via yaim (All On One Box) :&lt;br /&gt;
 	&lt;br /&gt;
 	/opt/glite/yaim/bin/yaim -s /opt/glite/yaim/site-info.def -c -n glite-UI -n glite-NAGIOS&lt;br /&gt;
&lt;br /&gt;
6.	lancement de la configuration via NCG (All On One Box) :&lt;br /&gt;
&lt;br /&gt;
 /usr/sbin/ncg.pl&lt;br /&gt;
&lt;br /&gt;
.....MODIFICATION importante:: voir: https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
La partie:&lt;br /&gt;
#  Configure manually /etc/ncg/ncg.conf (Template can be found here: ncg.conf.template: )&lt;br /&gt;
- Switch off automatic generation of ncg.conf by YAIM (NAGIOS_NCG_ENABLE_CONFIG&amp;quot;=&amp;quot;false&amp;quot;)&lt;br /&gt;
- Take ncg.conf.template and copy it to /etc/ncg/ncg.conf&lt;br /&gt;
     - Set $ROC_NAME$&lt;br /&gt;
     - Set $YOUR_MYPROXY_SERVER$ (e.g. myproxy-fts.cern.ch)&lt;br /&gt;
     - Set $MYPROXY_NAME$ (e.g.: NagiosRetrieve-sam-ap-roc.cern.ch)&lt;br /&gt;
     - Set $NAGIOS_ROLE$ (e.g.: ngi, roc)&lt;br /&gt;
# Take Hash.pm file that we are currently using at the CERN ROC Nagios boxes. In this file, we have removed the metrics that do not belong to the SAM_Critical profile, so only the metrics defined at ROC_SAM_critical are configured, and not relevant services like SRMv1 are commented out. The file is located under /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm &lt;br /&gt;
&lt;br /&gt;
Pour éviter d&#039;avoir des sondes inappropriés.&lt;br /&gt;
&lt;br /&gt;
== Tuning the configuration ==&lt;br /&gt;
&lt;br /&gt;
1.	Verifier  dans /etc/sysconfig/nagios:&lt;br /&gt;
 LD_LIBRARY_PATH=/opt/classads/lib64:/opt/glite/lib64:/opt/globus/lib:/opt/c-ares/lib:/opt/classads/lib64  &lt;br /&gt;
&lt;br /&gt;
2.	Desactiver les notifications, dans les fichiers de conf: &lt;br /&gt;
 a.      /etc/nagios/nagios.cfg, désactiver les notifications:enable_notifications=0 ;log_notifications=0&lt;br /&gt;
 b.	 /etc/nagios/wlcg.d/host.templates.cfg&lt;br /&gt;
 c.	 /etc/nagios/wlcg.d/service.templates.cfg&lt;br /&gt;
&lt;br /&gt;
4.	N’autoriser que les dteam/France à visualiser notre interface nagios : modifier le fichier : &lt;br /&gt;
 /etc/voms2htpasswd.conf, avec : vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&lt;br /&gt;
Plus utile site le site-info.def est défini correctement:&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&#039;&lt;br /&gt;
&lt;br /&gt;
== ActiveMQ ==&lt;br /&gt;
 /usr/sbin/msg-to-queue --prefix /queue/grid.probe.metricOutput.EGEE.a635834332381123c8b296d02b682f8f --broker-uri stomp://prod-grid-msg.cern.ch:6163&lt;br /&gt;
 &lt;br /&gt;
[root@cclcgvmli03 cron.hourly]# cat check_msg-to-queue.sh&lt;br /&gt;
&lt;br /&gt;
Verifier les messages:&lt;br /&gt;
 /usr/libexec/grid-monitoring/plugins/nagios/recv_from_queue -v &lt;br /&gt;
&lt;br /&gt;
faire une update de perl-GridMon &lt;br /&gt;
 The problem here is in the message handler &lt;br /&gt;
 (/usr/lib/perl5/vendor_perl/5.8.8/GridMon/MsgHandler/MetricOutput.pm). &lt;br /&gt;
 Probe on WN reports hostname localhost.localdomain and serviceURI CE &lt;br /&gt;
 hostname. In the previous version message handler first checked hostname &lt;br /&gt;
 value and then serviceURI. That is the reason why Christine is seeing &lt;br /&gt;
 results for localhost.localdomain. However, we fixed this and the latest &lt;br /&gt;
 version (1.0.34) parses messages correctly.&lt;br /&gt;
&lt;br /&gt;
 yum update perl-GridMon&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== Systeme d&#039;information ==&lt;br /&gt;
La nagios Box doit etre enregistré dans la GOCDB &lt;br /&gt;
et publié dans le site-BDII:&lt;br /&gt;
 ldapsearch -x -H ldap://ccnagboxli01.in2p3.fr:2170 -b &#039;Mds-vo-name=resource,o=Grid&#039;&lt;br /&gt;
&lt;br /&gt;
= validation =&lt;br /&gt;
&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
&lt;br /&gt;
now you should publish your Nagios in your Site BDII&lt;br /&gt;
And we should declare the node in the GOCDB: Regional-NAGIOS ou National-Nagios, a determiner&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
liste des sondes a valider: d&#039;après: https://twiki.cern.ch/twiki/bin/view/LCG/SAMCriticalTestsForCODs&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Type de Noeuds&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Valid (Y or N)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
APEL&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
BDII&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CREAMCE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
FTS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Y and NO: For the check_command those options should be added: &lt;br /&gt;
--cert /etc/nagios/globus/hostcert.pem   --key /etc/nagios/globus/hostkey.pem  -x $USER2$ (this should be fixed in the next release)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
gRB/WMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_C&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_L&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MPI&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MyProxy&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RB&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RGMA / MON&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
sBDII&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
SRMv2&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOBOX&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
= Annexe0 =&lt;br /&gt;
&lt;br /&gt;
Sur le myproxyserver, il faut que le nagios server soit &amp;quot;trusted retriever&amp;quot; et &amp;quot;authorized retrievers&amp;quot;:&lt;br /&gt;
 [cleroy@grid08 ~]$ grep cclcgvmli03 /opt/glite/etc/myproxy-server.conf&lt;br /&gt;
 trusted_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 authorized_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Sur une UI:&lt;br /&gt;
&lt;br /&gt;
 voms-proxy-init -voms ops:/ops/Role=lcgadmin&lt;br /&gt;
 myproxy-init -c 336 -k nagios_roc_fr2-ops -s myproxy.grif.fr -l nagios  -x -Z &amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&amp;quot;&lt;br /&gt;
&lt;br /&gt;
= Annexe 1 =&lt;br /&gt;
 rpm -ivh http://www.sysadmin.hep.ac.uk/rpms/egee-SA1/centos5/x86_64/sa1-release-2-1.el5.noarch.rpm&lt;br /&gt;
 rpm -ivh  http://packages.sw.be/rpmforge-release/rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm&lt;br /&gt;
&lt;br /&gt;
 yum install atp&lt;br /&gt;
 yum install bouncycastle&lt;br /&gt;
 yum install broker&lt;br /&gt;
 yum install broker-cache&lt;br /&gt;
 yum install dcache-srmclient&lt;br /&gt;
 yum install dummy-ca-certs&lt;br /&gt;
 yum install egee-NAGIOS&lt;br /&gt;
 yum install egee-NAGIOS egee-NRPE&lt;br /&gt;
 yum install egee-NRPE&lt;br /&gt;
 yum install fetch-crl&lt;br /&gt;
 yum install fipscheck fipscheck-lib&lt;br /&gt;
 yum install glite-UI&lt;br /&gt;
 yum install glite-security-voms-clients&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install glite-yaim-core&lt;br /&gt;
 yum install glite-yaim-nagios&lt;br /&gt;
 yum install httpd&lt;br /&gt;
 yum install jdk&lt;br /&gt;
 yum install lcg-CA&lt;br /&gt;
 yum install lcg-CA egee-NAGIOS&lt;br /&gt;
 yum install lcg_util&lt;br /&gt;
 yum install mddb&lt;br /&gt;
 yum install msg-publish-simple&lt;br /&gt;
 yum install myproxy&lt;br /&gt;
 yum install mysql-client&lt;br /&gt;
 yum install mysql-server&lt;br /&gt;
 yum install nagios-proxy-refresh&lt;br /&gt;
 yum install perl-Config-Tiny&lt;br /&gt;
 yum install perl-DBD-MySQL&lt;br /&gt;
 yum install perl-rrdtool-1.3.8-2.el5.rf.x86_64&lt;br /&gt;
 yum install python-yaml&lt;br /&gt;
 yum install sun-jaf&lt;br /&gt;
 yum install uberftp-client&lt;br /&gt;
 yum install vdt_globus_rm_client&lt;br /&gt;
&lt;br /&gt;
 yum update glite-yaim-clients&lt;br /&gt;
 yum update glite-yaim-core&lt;br /&gt;
 yum update glite-yaim-nagios&lt;br /&gt;
 yum update mysql-server&lt;br /&gt;
 yum update perl-DBI&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe2 =&lt;br /&gt;
a)Mot de passe admin mysql :&lt;br /&gt;
Yum pour recupérer la derniere version de Mysql :&lt;br /&gt;
&#039;&#039;MySQL-server-community&#039;&#039;, ne pas oublier le client (pas de dépendance dessus)&lt;br /&gt;
Demmarrage de mysql avec --skip-grant-tables (pour ne pas avoir de mot de passe a rentrer)&lt;br /&gt;
 mysqld_safe --skip-grant-tables &amp;amp;&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root &lt;br /&gt;
 update user set password=PASSWORD(&amp;quot;NEW-ROOT-PASSWORD&amp;quot;) where User=&#039;root&#039;;&lt;br /&gt;
&lt;br /&gt;
b)creation des users pour le nagios regional:&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root -p&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON nagios.* TO &#039;ndouser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON atp.* TO &#039;atpuser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe 3 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /etc/ncg/ncg.localdb&lt;br /&gt;
 #&lt;br /&gt;
 # Local Rules file to modify NCG configuration&lt;br /&gt;
 #&lt;br /&gt;
 SITE!AUVERGRID&lt;br /&gt;
 SITE!CGG-LCG2&lt;br /&gt;
 SITE!ESRF&lt;br /&gt;
 SITE!GRIF&lt;br /&gt;
 SITE!IBCP-GBIO&lt;br /&gt;
 SITE!IN2P3-CC&lt;br /&gt;
 SITE!IN2P3-CC-PPS&lt;br /&gt;
 SITE!IN2P3-CC-T2&lt;br /&gt;
 SITE!IN2P3-CPPM&lt;br /&gt;
 SITE!IN2P3-IPNL&lt;br /&gt;
 SITE!IN2P3-IRES&lt;br /&gt;
 SITE!IN2P3-LAPP&lt;br /&gt;
 SITE!IN2P3-LPC&lt;br /&gt;
 SITE!IN2P3-LPSC&lt;br /&gt;
 SITE!IN2P3-SUBATECH&lt;br /&gt;
 SITE!IPSL-IPGP-LCG2&lt;br /&gt;
 SITE!M3PEC&lt;br /&gt;
 SITE!MSFG&lt;br /&gt;
 SITE!MSFG-MULTI&lt;br /&gt;
 SITE!MSFG-OPEN&lt;br /&gt;
 SITE!OBSPM&lt;br /&gt;
 SITE!PARIS-UREC-IPV6&lt;br /&gt;
 SITE!SN-UCAD&lt;br /&gt;
 SITE!ROC-FR&lt;br /&gt;
 SITE!SOLEIL&lt;br /&gt;
 SITE!StratusLab&lt;br /&gt;
 [root@cclcgvmli03 ~]#&lt;br /&gt;
 &lt;br /&gt;
= Annexe 4 =&lt;br /&gt;
&lt;br /&gt;
 SITE_EMAIL=c.leroy@cea.fr&lt;br /&gt;
 SITE_NAME=ROC-FR&lt;br /&gt;
 RB_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 WMS_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 PX_HOST=myproxy.grif.fr&lt;br /&gt;
 BDII_HOST=topbdii.grif.fr&lt;br /&gt;
 SITE_BDII_HOST=bdii.grif.fr&lt;br /&gt;
 MON_HOST=node06.datagrid.cea.fr&lt;br /&gt;
 VOS=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 DTEAM_GROUP_ENABLE=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 VO_DTEAM_SW_DIR=$VO_SW_DIR/dteam&lt;br /&gt;
 VO_DTEAM_DEFAULT_SE=$SE_HOST&lt;br /&gt;
 VO_DTEAM_STORAGE_DIR=$CLASSIC_STORAGE_DIR/dteam&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/&#039;&lt;br /&gt;
 VO_DTEAM_VOMSES=&amp;quot;&#039;dteam lcg-voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=lcg-voms.cern.ch dteam 24&#039; &#039;dteam    voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=voms.cern.ch dteam 24&#039;&amp;quot;&lt;br /&gt;
 VO_DTEAM_VOMS_CA_DN=&amp;quot;&#039;/DC=ch/DC=cern/CN=CERN Trusted Certification Authority&#039; &#039;/DC=ch/DC=cern/CN=CERN Trusted   Certification Authority&#039;&amp;quot;&lt;br /&gt;
 NAGIOS_HOST=cclcgvmli03.in2p3.fr&lt;br /&gt;
 NAGIOS_ADMIN_DNS=&amp;quot;/O=GRID-FR/C=FR/O=CEA/OU=IRFU/CN=Christine Leroy&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=Nadia Lajili&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=LPC/CN=Emmanuel Medernach&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CPPM/CN=Juan Carlos Carranza&amp;quot;&lt;br /&gt;
 NAGIOS_NCG_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_NAGIOS_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_GOCDB_ROC_NAME=France&lt;br /&gt;
 ROC_NAME=France&lt;br /&gt;
 NCG_PROBES_TYPE=remote,native,local&lt;br /&gt;
 NCG_VO=dteam&lt;br /&gt;
 NAGIOS_MYPROXY_NAME=nagios_roc_fr2&lt;br /&gt;
 NAGIOS_MYPROXY_USER=nagios&lt;br /&gt;
 MSG_BROKER_CACHE_NETWORK=PROD&lt;br /&gt;
 NAGIOS_ROLE=roc&lt;br /&gt;
 NAGIOS_HTTPD_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_SUDO_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_CGI_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_LDAP_FILTER=GlueSiteOtherInfo=EGEE_ROC=France&lt;br /&gt;
 NAGIOS_DB_PASS=x&lt;br /&gt;
 NAGIOS_NSCA_PASS=x&lt;br /&gt;
 MYSQL_ADMIN=x&lt;br /&gt;
 ATP_DB_PASS=x&lt;br /&gt;
 MDDB_DB_PASS=x&lt;br /&gt;
 MS_DB_PASS=x&lt;br /&gt;
 MYSQL_PASSWORD=x&lt;br /&gt;
 MYEGEE_DB_PASS=x&lt;br /&gt;
&lt;br /&gt;
= Annexe 5 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /opt/glite/yaim/examples/edgusers.conf&lt;br /&gt;
 11151:${DPMMGR_USER}:11151:${DPMMGR_GROUP}:DPM user:&lt;br /&gt;
 11152:${EDG_USER}:11152,11156:${EDG_GROUP},${INFOSYS_GROUP}:EDG user:${EDG_HOME_DIR}&lt;br /&gt;
 11153:${EDGINFO_USER}:11153,1156:${EDGINFO_USER},${INFOSYS_GROUP}:EDG info user:${EDGINFO_HOME_DIR}&lt;br /&gt;
 11154:${RGMA_USER}:11154,1156:${RGMA_GROUP},${INFOSYS_GROUP}:RGMA user:${INSTALL_ROOT}/glite/etc/rgma&lt;br /&gt;
 11155:${GLITE_USER}:11155:${GLITE_GROUP}:gLite user:${GLITE_HOME_DIR}&lt;br /&gt;
 11156:${BDII_USER}:11158:${BDII_GROUP}:BDII user:${BDII_HOME_DIR}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Annexe 6 =&lt;br /&gt;
&lt;br /&gt;
Probleme rencontré sur ccnagboxli01 (arret de ypbind + rpm manquant)&lt;br /&gt;
 chown -R nagios:nagios /var/spool/pnp4nagios&lt;br /&gt;
 chown -R nagios:nagios /var/spool/msg-nagios-bridge&lt;br /&gt;
 chown root:nagios /etc/atp/atp_db.conf&lt;br /&gt;
 chown root:nagios /etc/mddb/databases.yml&lt;br /&gt;
 chown nagios:apache /var/nagios/rw&lt;br /&gt;
 chown -R nagios:apache /var/nagios/rw&lt;br /&gt;
 chown root:nagios /etc/nagios/plugins/send_to_db.ini&lt;br /&gt;
 chown -R nagios:nagios /var/cache/msg/config-cache&lt;br /&gt;
 chown -R nagios:root /var/log/mddb&lt;br /&gt;
 chown -R nagios:root /var/log/pnp4nagios&lt;br /&gt;
 chown -R nagios:root /var/log/nagios&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
  useradd -g 40011 -u 10011 nagios&lt;br /&gt;
  useradd --group mysql -u 2730 mysql&lt;br /&gt;
  useradd -g mysql -u 2730 mysql&lt;br /&gt;
&lt;br /&gt;
   groupadd -g 40010 nagiosmaster&lt;br /&gt;
   groupadd -g 146 leftuser&lt;br /&gt;
&lt;br /&gt;
 yum install glite-security-voms-api-c-1.8.12-2.sl5.x86_64&lt;br /&gt;
 yum update perl-Net-SSLeay&lt;br /&gt;
 yum update perl-IO-Socket-SSL-1.01-1.fc6.noarch&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install lcg_util-1.7.6-1.sl5.x86_64&lt;br /&gt;
 yum install GFAL-client-1.11.8-2.sl5.x86_64 GFAL-client-1.11.8-2.sl5.i386&lt;br /&gt;
 yum install CGSI_gSOAP_2.7-1.3.3-1.sl5.x86_64&lt;br /&gt;
 yum install LFC-interfaces-1.7.3-1sec.sl5.x86_64 LFC-client-1.7.3-1sec.sl5.x86_64 lcg-dm-common-1.7.3-1sec.sl5.x86_64&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5733</id>
		<title>Nagios regional</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5733"/>
		<updated>2010-03-23T14:33:32Z</updated>

		<summary type="html">&lt;p&gt;LEROY: /* validation */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Installation d&#039;une NOGIOS box pour le ROC France&lt;br /&gt;
&lt;br /&gt;
= 1)	Installation de base : =&lt;br /&gt;
a.	Machine installée par les sysadmin du CC : OS + VOBOX + certificat + pas dans les NIS&lt;br /&gt;
&lt;br /&gt;
b.	Accessible via gsissh (port 1975)&lt;br /&gt;
&lt;br /&gt;
= 2)	Action faite au préalable : =&lt;br /&gt;
a.	Faire la demande pour que la machine soit autorisée à récupérer les SAM tests : https://gus.fzk.de/ws/ticket_info.php?ticket=55132&lt;br /&gt;
&lt;br /&gt;
b.	Autoriser la nagios box à récupérer les proxy en mode « retrieval », et stocker un proxy depuis une UI récuperable par la nagiosBOX voir  [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe0 Annexe0]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
c.	Certificat utilisé pour :&lt;br /&gt;
&lt;br /&gt;
i.	                       Access to GOCDB PI for ROCS GOCDB PI level 2 required &lt;br /&gt;
&lt;br /&gt;
ii.	                       Recuperation de proxy pour les sondes locales&lt;br /&gt;
&lt;br /&gt;
d. s&#039;inscrire dans la mailing liste: regional-nagios-admins@cern.ch (très réactive)&lt;br /&gt;
&lt;br /&gt;
= 3)	Installation de Nagios =&lt;br /&gt;
Reference : https://twiki.cern.ch/twiki/bin/view/EGEE/GridMonitoringNcgYaim&lt;br /&gt;
== Installation des packages via yum, Ajout des repos suivant ==&lt;br /&gt;
 a.	mirrors-rpmforge (rpm rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm)&lt;br /&gt;
 b.	rpmforge-testing.repo&lt;br /&gt;
 c.	rpmforge.repo&lt;br /&gt;
 d.	glite-UI.repo&lt;br /&gt;
 e.	sa1-centos5-release.repo (rpm:  sa1-release-2-1.el5.noarch.rpm)&lt;br /&gt;
 f.	glite-BDII.repo&lt;br /&gt;
&lt;br /&gt;
Problèmes de dépendances rencontrées si besoin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe1 Annexe1] (mais j’avais dû oublier de faire un : yum install egee-NAGIOS)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Installation subversion ==&lt;br /&gt;
Certain fichier de config sont a recuperer via svn au CERN:&lt;br /&gt;
&lt;br /&gt;
 yum install subversion&lt;br /&gt;
 svn co http://svnweb.cern.ch/guest/sam/trunk/roc-config&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 cp /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm.orig&lt;br /&gt;
 cp roc-config/Hash.pm_55_ALL_CRIT /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm&lt;br /&gt;
&lt;br /&gt;
== Mysql ==&lt;br /&gt;
&lt;br /&gt;
1.	Installer la dernière version de Mysql (server + client) ; &lt;br /&gt;
&lt;br /&gt;
2.	configurer le mot de passe admin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2a] ;&lt;br /&gt;
&lt;br /&gt;
3.	Configurer les users utiles à la nagios Box se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2b] ;&lt;br /&gt;
&lt;br /&gt;
== Configuration via yaim et NCG (en 2 fois)==&lt;br /&gt;
&lt;br /&gt;
1.	Remplir /etc/ncg/ncg.localdb avec la liste des sites se referer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe3 Annexe3]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
2.	Remplir le /opt/glite/yaim/site-info.def voir [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe4 Annexe4] ;&lt;br /&gt;
&lt;br /&gt;
3.	groupadd nagios&lt;br /&gt;
&lt;br /&gt;
4.	modif des uids/gids : /opt/glite/yaim/examples/edgusers.conf [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe5 Annexe5]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
5.	lancement de la configuration automatique via yaim (All On One Box) :&lt;br /&gt;
 	&lt;br /&gt;
 	/opt/glite/yaim/bin/yaim -s /opt/glite/yaim/site-info.def -c -n glite-UI -n glite-NAGIOS&lt;br /&gt;
&lt;br /&gt;
6.	lancement de la configuration via NCG (All On One Box) :&lt;br /&gt;
&lt;br /&gt;
 /usr/sbin/ncg.pl&lt;br /&gt;
&lt;br /&gt;
.....MODIFICATION importante:: voir: https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
La partie:&lt;br /&gt;
#  Configure manually /etc/ncg/ncg.conf (Template can be found here: ncg.conf.template: )&lt;br /&gt;
- Switch off automatic generation of ncg.conf by YAIM (NAGIOS_NCG_ENABLE_CONFIG&amp;quot;=&amp;quot;false&amp;quot;)&lt;br /&gt;
- Take ncg.conf.template and copy it to /etc/ncg/ncg.conf&lt;br /&gt;
     - Set $ROC_NAME$&lt;br /&gt;
     - Set $YOUR_MYPROXY_SERVER$ (e.g. myproxy-fts.cern.ch)&lt;br /&gt;
     - Set $MYPROXY_NAME$ (e.g.: NagiosRetrieve-sam-ap-roc.cern.ch)&lt;br /&gt;
     - Set $NAGIOS_ROLE$ (e.g.: ngi, roc)&lt;br /&gt;
# Take Hash.pm file that we are currently using at the CERN ROC Nagios boxes. In this file, we have removed the metrics that do not belong to the SAM_Critical profile, so only the metrics defined at ROC_SAM_critical are configured, and not relevant services like SRMv1 are commented out. The file is located under /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm &lt;br /&gt;
&lt;br /&gt;
Pour éviter d&#039;avoir des sondes inappropriés.&lt;br /&gt;
&lt;br /&gt;
== Tuning the configuration ==&lt;br /&gt;
&lt;br /&gt;
1.	Verifier  dans /etc/sysconfig/nagios:&lt;br /&gt;
 LD_LIBRARY_PATH=/opt/classads/lib64:/opt/glite/lib64:/opt/globus/lib:/opt/c-ares/lib:/opt/classads/lib64  &lt;br /&gt;
&lt;br /&gt;
2.	Desactiver les notifications, dans les fichiers de conf: &lt;br /&gt;
 a.      /etc/nagios/nagios.cfg, désactiver les notifications:enable_notifications=0 ;log_notifications=0&lt;br /&gt;
 b.	 /etc/nagios/wlcg.d/host.templates.cfg&lt;br /&gt;
 c.	 /etc/nagios/wlcg.d/service.templates.cfg&lt;br /&gt;
&lt;br /&gt;
4.	N’autoriser que les dteam/France à visualiser notre interface nagios : modifier le fichier : &lt;br /&gt;
 /etc/voms2htpasswd.conf, avec : vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&lt;br /&gt;
Plus utile site le site-info.def est défini correctement:&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&#039;&lt;br /&gt;
&lt;br /&gt;
== ActiveMQ ==&lt;br /&gt;
 /usr/sbin/msg-to-queue --prefix /queue/grid.probe.metricOutput.EGEE.a635834332381123c8b296d02b682f8f --broker-uri stomp://prod-grid-msg.cern.ch:6163&lt;br /&gt;
 &lt;br /&gt;
[root@cclcgvmli03 cron.hourly]# cat check_msg-to-queue.sh&lt;br /&gt;
&lt;br /&gt;
Verifier les messages:&lt;br /&gt;
 /usr/libexec/grid-monitoring/plugins/nagios/recv_from_queue -v &lt;br /&gt;
&lt;br /&gt;
faire une update de perl-GridMon &lt;br /&gt;
 The problem here is in the message handler &lt;br /&gt;
 (/usr/lib/perl5/vendor_perl/5.8.8/GridMon/MsgHandler/MetricOutput.pm). &lt;br /&gt;
 Probe on WN reports hostname localhost.localdomain and serviceURI CE &lt;br /&gt;
 hostname. In the previous version message handler first checked hostname &lt;br /&gt;
 value and then serviceURI. That is the reason why Christine is seeing &lt;br /&gt;
 results for localhost.localdomain. However, we fixed this and the latest &lt;br /&gt;
 version (1.0.34) parses messages correctly.&lt;br /&gt;
&lt;br /&gt;
 yum update perl-GridMon&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== Systeme d&#039;information ==&lt;br /&gt;
La nagios Box doit etre enregistré dans la GOCDB &lt;br /&gt;
et publié dans le site-BDII:&lt;br /&gt;
 ldapsearch -x -H ldap://ccnagboxli01.in2p3.fr:2170 -b &#039;Mds-vo-name=resource,o=Grid&#039;&lt;br /&gt;
&lt;br /&gt;
= validation =&lt;br /&gt;
&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
&lt;br /&gt;
now you should publish your Nagios in your Site BDII&lt;br /&gt;
And we should declare the node in the GOCDB: Regional-NAGIOS ou National-Nagios, a determiner&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
liste des sondes a valider: d&#039;après: https://twiki.cern.ch/twiki/bin/view/LCG/SAMCriticalTestsForCODs&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Type de Noeuds&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Valid (Y or N)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
APEL&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
BDII&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CREAMCE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
FTS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
gRB/WMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_C&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_L&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MPI&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MyProxy&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RB&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RGMA / MON&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
sBDII&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
SRMv2&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOBOX&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
nl&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
= Annexe0 =&lt;br /&gt;
&lt;br /&gt;
Sur le myproxyserver, il faut que le nagios server soit &amp;quot;trusted retriever&amp;quot; et &amp;quot;authorized retrievers&amp;quot;:&lt;br /&gt;
 [cleroy@grid08 ~]$ grep cclcgvmli03 /opt/glite/etc/myproxy-server.conf&lt;br /&gt;
 trusted_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 authorized_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Sur une UI:&lt;br /&gt;
&lt;br /&gt;
 voms-proxy-init -voms ops:/ops/Role=lcgadmin&lt;br /&gt;
 myproxy-init -c 336 -k nagios_roc_fr2-ops -s myproxy.grif.fr -l nagios  -x -Z &amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&amp;quot;&lt;br /&gt;
&lt;br /&gt;
= Annexe 1 =&lt;br /&gt;
 rpm -ivh http://www.sysadmin.hep.ac.uk/rpms/egee-SA1/centos5/x86_64/sa1-release-2-1.el5.noarch.rpm&lt;br /&gt;
 rpm -ivh  http://packages.sw.be/rpmforge-release/rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm&lt;br /&gt;
&lt;br /&gt;
 yum install atp&lt;br /&gt;
 yum install bouncycastle&lt;br /&gt;
 yum install broker&lt;br /&gt;
 yum install broker-cache&lt;br /&gt;
 yum install dcache-srmclient&lt;br /&gt;
 yum install dummy-ca-certs&lt;br /&gt;
 yum install egee-NAGIOS&lt;br /&gt;
 yum install egee-NAGIOS egee-NRPE&lt;br /&gt;
 yum install egee-NRPE&lt;br /&gt;
 yum install fetch-crl&lt;br /&gt;
 yum install fipscheck fipscheck-lib&lt;br /&gt;
 yum install glite-UI&lt;br /&gt;
 yum install glite-security-voms-clients&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install glite-yaim-core&lt;br /&gt;
 yum install glite-yaim-nagios&lt;br /&gt;
 yum install httpd&lt;br /&gt;
 yum install jdk&lt;br /&gt;
 yum install lcg-CA&lt;br /&gt;
 yum install lcg-CA egee-NAGIOS&lt;br /&gt;
 yum install lcg_util&lt;br /&gt;
 yum install mddb&lt;br /&gt;
 yum install msg-publish-simple&lt;br /&gt;
 yum install myproxy&lt;br /&gt;
 yum install mysql-client&lt;br /&gt;
 yum install mysql-server&lt;br /&gt;
 yum install nagios-proxy-refresh&lt;br /&gt;
 yum install perl-Config-Tiny&lt;br /&gt;
 yum install perl-DBD-MySQL&lt;br /&gt;
 yum install perl-rrdtool-1.3.8-2.el5.rf.x86_64&lt;br /&gt;
 yum install python-yaml&lt;br /&gt;
 yum install sun-jaf&lt;br /&gt;
 yum install uberftp-client&lt;br /&gt;
 yum install vdt_globus_rm_client&lt;br /&gt;
&lt;br /&gt;
 yum update glite-yaim-clients&lt;br /&gt;
 yum update glite-yaim-core&lt;br /&gt;
 yum update glite-yaim-nagios&lt;br /&gt;
 yum update mysql-server&lt;br /&gt;
 yum update perl-DBI&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe2 =&lt;br /&gt;
a)Mot de passe admin mysql :&lt;br /&gt;
Yum pour recupérer la derniere version de Mysql :&lt;br /&gt;
&#039;&#039;MySQL-server-community&#039;&#039;, ne pas oublier le client (pas de dépendance dessus)&lt;br /&gt;
Demmarrage de mysql avec --skip-grant-tables (pour ne pas avoir de mot de passe a rentrer)&lt;br /&gt;
 mysqld_safe --skip-grant-tables &amp;amp;&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root &lt;br /&gt;
 update user set password=PASSWORD(&amp;quot;NEW-ROOT-PASSWORD&amp;quot;) where User=&#039;root&#039;;&lt;br /&gt;
&lt;br /&gt;
b)creation des users pour le nagios regional:&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root -p&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON nagios.* TO &#039;ndouser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON atp.* TO &#039;atpuser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe 3 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /etc/ncg/ncg.localdb&lt;br /&gt;
 #&lt;br /&gt;
 # Local Rules file to modify NCG configuration&lt;br /&gt;
 #&lt;br /&gt;
 SITE!AUVERGRID&lt;br /&gt;
 SITE!CGG-LCG2&lt;br /&gt;
 SITE!ESRF&lt;br /&gt;
 SITE!GRIF&lt;br /&gt;
 SITE!IBCP-GBIO&lt;br /&gt;
 SITE!IN2P3-CC&lt;br /&gt;
 SITE!IN2P3-CC-PPS&lt;br /&gt;
 SITE!IN2P3-CC-T2&lt;br /&gt;
 SITE!IN2P3-CPPM&lt;br /&gt;
 SITE!IN2P3-IPNL&lt;br /&gt;
 SITE!IN2P3-IRES&lt;br /&gt;
 SITE!IN2P3-LAPP&lt;br /&gt;
 SITE!IN2P3-LPC&lt;br /&gt;
 SITE!IN2P3-LPSC&lt;br /&gt;
 SITE!IN2P3-SUBATECH&lt;br /&gt;
 SITE!IPSL-IPGP-LCG2&lt;br /&gt;
 SITE!M3PEC&lt;br /&gt;
 SITE!MSFG&lt;br /&gt;
 SITE!MSFG-MULTI&lt;br /&gt;
 SITE!MSFG-OPEN&lt;br /&gt;
 SITE!OBSPM&lt;br /&gt;
 SITE!PARIS-UREC-IPV6&lt;br /&gt;
 SITE!SN-UCAD&lt;br /&gt;
 SITE!ROC-FR&lt;br /&gt;
 SITE!SOLEIL&lt;br /&gt;
 SITE!StratusLab&lt;br /&gt;
 [root@cclcgvmli03 ~]#&lt;br /&gt;
 &lt;br /&gt;
= Annexe 4 =&lt;br /&gt;
&lt;br /&gt;
 SITE_EMAIL=c.leroy@cea.fr&lt;br /&gt;
 SITE_NAME=ROC-FR&lt;br /&gt;
 RB_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 WMS_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 PX_HOST=myproxy.grif.fr&lt;br /&gt;
 BDII_HOST=topbdii.grif.fr&lt;br /&gt;
 SITE_BDII_HOST=bdii.grif.fr&lt;br /&gt;
 MON_HOST=node06.datagrid.cea.fr&lt;br /&gt;
 VOS=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 DTEAM_GROUP_ENABLE=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 VO_DTEAM_SW_DIR=$VO_SW_DIR/dteam&lt;br /&gt;
 VO_DTEAM_DEFAULT_SE=$SE_HOST&lt;br /&gt;
 VO_DTEAM_STORAGE_DIR=$CLASSIC_STORAGE_DIR/dteam&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/&#039;&lt;br /&gt;
 VO_DTEAM_VOMSES=&amp;quot;&#039;dteam lcg-voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=lcg-voms.cern.ch dteam 24&#039; &#039;dteam    voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=voms.cern.ch dteam 24&#039;&amp;quot;&lt;br /&gt;
 VO_DTEAM_VOMS_CA_DN=&amp;quot;&#039;/DC=ch/DC=cern/CN=CERN Trusted Certification Authority&#039; &#039;/DC=ch/DC=cern/CN=CERN Trusted   Certification Authority&#039;&amp;quot;&lt;br /&gt;
 NAGIOS_HOST=cclcgvmli03.in2p3.fr&lt;br /&gt;
 NAGIOS_ADMIN_DNS=&amp;quot;/O=GRID-FR/C=FR/O=CEA/OU=IRFU/CN=Christine Leroy&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=Nadia Lajili&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=LPC/CN=Emmanuel Medernach&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CPPM/CN=Juan Carlos Carranza&amp;quot;&lt;br /&gt;
 NAGIOS_NCG_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_NAGIOS_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_GOCDB_ROC_NAME=France&lt;br /&gt;
 ROC_NAME=France&lt;br /&gt;
 NCG_PROBES_TYPE=remote,native,local&lt;br /&gt;
 NCG_VO=dteam&lt;br /&gt;
 NAGIOS_MYPROXY_NAME=nagios_roc_fr2&lt;br /&gt;
 NAGIOS_MYPROXY_USER=nagios&lt;br /&gt;
 MSG_BROKER_CACHE_NETWORK=PROD&lt;br /&gt;
 NAGIOS_ROLE=roc&lt;br /&gt;
 NAGIOS_HTTPD_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_SUDO_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_CGI_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_LDAP_FILTER=GlueSiteOtherInfo=EGEE_ROC=France&lt;br /&gt;
 NAGIOS_DB_PASS=x&lt;br /&gt;
 NAGIOS_NSCA_PASS=x&lt;br /&gt;
 MYSQL_ADMIN=x&lt;br /&gt;
 ATP_DB_PASS=x&lt;br /&gt;
 MDDB_DB_PASS=x&lt;br /&gt;
 MS_DB_PASS=x&lt;br /&gt;
 MYSQL_PASSWORD=x&lt;br /&gt;
 MYEGEE_DB_PASS=x&lt;br /&gt;
&lt;br /&gt;
= Annexe 5 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /opt/glite/yaim/examples/edgusers.conf&lt;br /&gt;
 11151:${DPMMGR_USER}:11151:${DPMMGR_GROUP}:DPM user:&lt;br /&gt;
 11152:${EDG_USER}:11152,11156:${EDG_GROUP},${INFOSYS_GROUP}:EDG user:${EDG_HOME_DIR}&lt;br /&gt;
 11153:${EDGINFO_USER}:11153,1156:${EDGINFO_USER},${INFOSYS_GROUP}:EDG info user:${EDGINFO_HOME_DIR}&lt;br /&gt;
 11154:${RGMA_USER}:11154,1156:${RGMA_GROUP},${INFOSYS_GROUP}:RGMA user:${INSTALL_ROOT}/glite/etc/rgma&lt;br /&gt;
 11155:${GLITE_USER}:11155:${GLITE_GROUP}:gLite user:${GLITE_HOME_DIR}&lt;br /&gt;
 11156:${BDII_USER}:11158:${BDII_GROUP}:BDII user:${BDII_HOME_DIR}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Annexe 6 =&lt;br /&gt;
&lt;br /&gt;
Probleme rencontré sur ccnagboxli01 (arret de ypbind + rpm manquant)&lt;br /&gt;
 chown -R nagios:nagios /var/spool/pnp4nagios&lt;br /&gt;
 chown -R nagios:nagios /var/spool/msg-nagios-bridge&lt;br /&gt;
 chown root:nagios /etc/atp/atp_db.conf&lt;br /&gt;
 chown root:nagios /etc/mddb/databases.yml&lt;br /&gt;
 chown nagios:apache /var/nagios/rw&lt;br /&gt;
 chown -R nagios:apache /var/nagios/rw&lt;br /&gt;
 chown root:nagios /etc/nagios/plugins/send_to_db.ini&lt;br /&gt;
 chown -R nagios:nagios /var/cache/msg/config-cache&lt;br /&gt;
 chown -R nagios:root /var/log/mddb&lt;br /&gt;
 chown -R nagios:root /var/log/pnp4nagios&lt;br /&gt;
 chown -R nagios:root /var/log/nagios&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
  useradd -g 40011 -u 10011 nagios&lt;br /&gt;
  useradd --group mysql -u 2730 mysql&lt;br /&gt;
  useradd -g mysql -u 2730 mysql&lt;br /&gt;
&lt;br /&gt;
   groupadd -g 40010 nagiosmaster&lt;br /&gt;
   groupadd -g 146 leftuser&lt;br /&gt;
&lt;br /&gt;
 yum install glite-security-voms-api-c-1.8.12-2.sl5.x86_64&lt;br /&gt;
 yum update perl-Net-SSLeay&lt;br /&gt;
 yum update perl-IO-Socket-SSL-1.01-1.fc6.noarch&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install lcg_util-1.7.6-1.sl5.x86_64&lt;br /&gt;
 yum install GFAL-client-1.11.8-2.sl5.x86_64 GFAL-client-1.11.8-2.sl5.i386&lt;br /&gt;
 yum install CGSI_gSOAP_2.7-1.3.3-1.sl5.x86_64&lt;br /&gt;
 yum install LFC-interfaces-1.7.3-1sec.sl5.x86_64 LFC-client-1.7.3-1sec.sl5.x86_64 lcg-dm-common-1.7.3-1sec.sl5.x86_64&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5732</id>
		<title>Nagios regional</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5732"/>
		<updated>2010-03-23T14:30:52Z</updated>

		<summary type="html">&lt;p&gt;LEROY: /* validation */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Installation d&#039;une NOGIOS box pour le ROC France&lt;br /&gt;
&lt;br /&gt;
= 1)	Installation de base : =&lt;br /&gt;
a.	Machine installée par les sysadmin du CC : OS + VOBOX + certificat + pas dans les NIS&lt;br /&gt;
&lt;br /&gt;
b.	Accessible via gsissh (port 1975)&lt;br /&gt;
&lt;br /&gt;
= 2)	Action faite au préalable : =&lt;br /&gt;
a.	Faire la demande pour que la machine soit autorisée à récupérer les SAM tests : https://gus.fzk.de/ws/ticket_info.php?ticket=55132&lt;br /&gt;
&lt;br /&gt;
b.	Autoriser la nagios box à récupérer les proxy en mode « retrieval », et stocker un proxy depuis une UI récuperable par la nagiosBOX voir  [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe0 Annexe0]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
c.	Certificat utilisé pour :&lt;br /&gt;
&lt;br /&gt;
i.	                       Access to GOCDB PI for ROCS GOCDB PI level 2 required &lt;br /&gt;
&lt;br /&gt;
ii.	                       Recuperation de proxy pour les sondes locales&lt;br /&gt;
&lt;br /&gt;
d. s&#039;inscrire dans la mailing liste: regional-nagios-admins@cern.ch (très réactive)&lt;br /&gt;
&lt;br /&gt;
= 3)	Installation de Nagios =&lt;br /&gt;
Reference : https://twiki.cern.ch/twiki/bin/view/EGEE/GridMonitoringNcgYaim&lt;br /&gt;
== Installation des packages via yum, Ajout des repos suivant ==&lt;br /&gt;
 a.	mirrors-rpmforge (rpm rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm)&lt;br /&gt;
 b.	rpmforge-testing.repo&lt;br /&gt;
 c.	rpmforge.repo&lt;br /&gt;
 d.	glite-UI.repo&lt;br /&gt;
 e.	sa1-centos5-release.repo (rpm:  sa1-release-2-1.el5.noarch.rpm)&lt;br /&gt;
 f.	glite-BDII.repo&lt;br /&gt;
&lt;br /&gt;
Problèmes de dépendances rencontrées si besoin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe1 Annexe1] (mais j’avais dû oublier de faire un : yum install egee-NAGIOS)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Installation subversion ==&lt;br /&gt;
Certain fichier de config sont a recuperer via svn au CERN:&lt;br /&gt;
&lt;br /&gt;
 yum install subversion&lt;br /&gt;
 svn co http://svnweb.cern.ch/guest/sam/trunk/roc-config&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 cp /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm.orig&lt;br /&gt;
 cp roc-config/Hash.pm_55_ALL_CRIT /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm&lt;br /&gt;
&lt;br /&gt;
== Mysql ==&lt;br /&gt;
&lt;br /&gt;
1.	Installer la dernière version de Mysql (server + client) ; &lt;br /&gt;
&lt;br /&gt;
2.	configurer le mot de passe admin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2a] ;&lt;br /&gt;
&lt;br /&gt;
3.	Configurer les users utiles à la nagios Box se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2b] ;&lt;br /&gt;
&lt;br /&gt;
== Configuration via yaim et NCG (en 2 fois)==&lt;br /&gt;
&lt;br /&gt;
1.	Remplir /etc/ncg/ncg.localdb avec la liste des sites se referer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe3 Annexe3]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
2.	Remplir le /opt/glite/yaim/site-info.def voir [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe4 Annexe4] ;&lt;br /&gt;
&lt;br /&gt;
3.	groupadd nagios&lt;br /&gt;
&lt;br /&gt;
4.	modif des uids/gids : /opt/glite/yaim/examples/edgusers.conf [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe5 Annexe5]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
5.	lancement de la configuration automatique via yaim (All On One Box) :&lt;br /&gt;
 	&lt;br /&gt;
 	/opt/glite/yaim/bin/yaim -s /opt/glite/yaim/site-info.def -c -n glite-UI -n glite-NAGIOS&lt;br /&gt;
&lt;br /&gt;
6.	lancement de la configuration via NCG (All On One Box) :&lt;br /&gt;
&lt;br /&gt;
 /usr/sbin/ncg.pl&lt;br /&gt;
&lt;br /&gt;
.....MODIFICATION importante:: voir: https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
La partie:&lt;br /&gt;
#  Configure manually /etc/ncg/ncg.conf (Template can be found here: ncg.conf.template: )&lt;br /&gt;
- Switch off automatic generation of ncg.conf by YAIM (NAGIOS_NCG_ENABLE_CONFIG&amp;quot;=&amp;quot;false&amp;quot;)&lt;br /&gt;
- Take ncg.conf.template and copy it to /etc/ncg/ncg.conf&lt;br /&gt;
     - Set $ROC_NAME$&lt;br /&gt;
     - Set $YOUR_MYPROXY_SERVER$ (e.g. myproxy-fts.cern.ch)&lt;br /&gt;
     - Set $MYPROXY_NAME$ (e.g.: NagiosRetrieve-sam-ap-roc.cern.ch)&lt;br /&gt;
     - Set $NAGIOS_ROLE$ (e.g.: ngi, roc)&lt;br /&gt;
# Take Hash.pm file that we are currently using at the CERN ROC Nagios boxes. In this file, we have removed the metrics that do not belong to the SAM_Critical profile, so only the metrics defined at ROC_SAM_critical are configured, and not relevant services like SRMv1 are commented out. The file is located under /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm &lt;br /&gt;
&lt;br /&gt;
Pour éviter d&#039;avoir des sondes inappropriés.&lt;br /&gt;
&lt;br /&gt;
== Tuning the configuration ==&lt;br /&gt;
&lt;br /&gt;
1.	Verifier  dans /etc/sysconfig/nagios:&lt;br /&gt;
 LD_LIBRARY_PATH=/opt/classads/lib64:/opt/glite/lib64:/opt/globus/lib:/opt/c-ares/lib:/opt/classads/lib64  &lt;br /&gt;
&lt;br /&gt;
2.	Desactiver les notifications, dans les fichiers de conf: &lt;br /&gt;
 a.      /etc/nagios/nagios.cfg, désactiver les notifications:enable_notifications=0 ;log_notifications=0&lt;br /&gt;
 b.	 /etc/nagios/wlcg.d/host.templates.cfg&lt;br /&gt;
 c.	 /etc/nagios/wlcg.d/service.templates.cfg&lt;br /&gt;
&lt;br /&gt;
4.	N’autoriser que les dteam/France à visualiser notre interface nagios : modifier le fichier : &lt;br /&gt;
 /etc/voms2htpasswd.conf, avec : vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&lt;br /&gt;
Plus utile site le site-info.def est défini correctement:&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&#039;&lt;br /&gt;
&lt;br /&gt;
== ActiveMQ ==&lt;br /&gt;
 /usr/sbin/msg-to-queue --prefix /queue/grid.probe.metricOutput.EGEE.a635834332381123c8b296d02b682f8f --broker-uri stomp://prod-grid-msg.cern.ch:6163&lt;br /&gt;
 &lt;br /&gt;
[root@cclcgvmli03 cron.hourly]# cat check_msg-to-queue.sh&lt;br /&gt;
&lt;br /&gt;
Verifier les messages:&lt;br /&gt;
 /usr/libexec/grid-monitoring/plugins/nagios/recv_from_queue -v &lt;br /&gt;
&lt;br /&gt;
faire une update de perl-GridMon &lt;br /&gt;
 The problem here is in the message handler &lt;br /&gt;
 (/usr/lib/perl5/vendor_perl/5.8.8/GridMon/MsgHandler/MetricOutput.pm). &lt;br /&gt;
 Probe on WN reports hostname localhost.localdomain and serviceURI CE &lt;br /&gt;
 hostname. In the previous version message handler first checked hostname &lt;br /&gt;
 value and then serviceURI. That is the reason why Christine is seeing &lt;br /&gt;
 results for localhost.localdomain. However, we fixed this and the latest &lt;br /&gt;
 version (1.0.34) parses messages correctly.&lt;br /&gt;
&lt;br /&gt;
 yum update perl-GridMon&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== Systeme d&#039;information ==&lt;br /&gt;
La nagios Box doit etre enregistré dans la GOCDB &lt;br /&gt;
et publié dans le site-BDII:&lt;br /&gt;
 ldapsearch -x -H ldap://ccnagboxli01.in2p3.fr:2170 -b &#039;Mds-vo-name=resource,o=Grid&#039;&lt;br /&gt;
&lt;br /&gt;
= validation =&lt;br /&gt;
&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
&lt;br /&gt;
now you should publish your Nagios in your Site BDII&lt;br /&gt;
And we should declare the node in the GOCDB: Regional-NAGIOS ou National-Nagios, a determiner&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
liste des sondes a valider: d&#039;après: https://twiki.cern.ch/twiki/bin/view/LCG/SAMCriticalTestsForCODs&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Type de Noeuds&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Valid (Y or N)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
APEL&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
BDII&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
cc&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CREAMCE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
FTS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
gRB/WMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_C&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_L&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MPI&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MyProxy&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RB&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RGMA / MON&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
sBDII&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
SRMv2&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOBOX&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
= Annexe0 =&lt;br /&gt;
&lt;br /&gt;
Sur le myproxyserver, il faut que le nagios server soit &amp;quot;trusted retriever&amp;quot; et &amp;quot;authorized retrievers&amp;quot;:&lt;br /&gt;
 [cleroy@grid08 ~]$ grep cclcgvmli03 /opt/glite/etc/myproxy-server.conf&lt;br /&gt;
 trusted_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 authorized_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Sur une UI:&lt;br /&gt;
&lt;br /&gt;
 voms-proxy-init -voms ops:/ops/Role=lcgadmin&lt;br /&gt;
 myproxy-init -c 336 -k nagios_roc_fr2-ops -s myproxy.grif.fr -l nagios  -x -Z &amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&amp;quot;&lt;br /&gt;
&lt;br /&gt;
= Annexe 1 =&lt;br /&gt;
 rpm -ivh http://www.sysadmin.hep.ac.uk/rpms/egee-SA1/centos5/x86_64/sa1-release-2-1.el5.noarch.rpm&lt;br /&gt;
 rpm -ivh  http://packages.sw.be/rpmforge-release/rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm&lt;br /&gt;
&lt;br /&gt;
 yum install atp&lt;br /&gt;
 yum install bouncycastle&lt;br /&gt;
 yum install broker&lt;br /&gt;
 yum install broker-cache&lt;br /&gt;
 yum install dcache-srmclient&lt;br /&gt;
 yum install dummy-ca-certs&lt;br /&gt;
 yum install egee-NAGIOS&lt;br /&gt;
 yum install egee-NAGIOS egee-NRPE&lt;br /&gt;
 yum install egee-NRPE&lt;br /&gt;
 yum install fetch-crl&lt;br /&gt;
 yum install fipscheck fipscheck-lib&lt;br /&gt;
 yum install glite-UI&lt;br /&gt;
 yum install glite-security-voms-clients&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install glite-yaim-core&lt;br /&gt;
 yum install glite-yaim-nagios&lt;br /&gt;
 yum install httpd&lt;br /&gt;
 yum install jdk&lt;br /&gt;
 yum install lcg-CA&lt;br /&gt;
 yum install lcg-CA egee-NAGIOS&lt;br /&gt;
 yum install lcg_util&lt;br /&gt;
 yum install mddb&lt;br /&gt;
 yum install msg-publish-simple&lt;br /&gt;
 yum install myproxy&lt;br /&gt;
 yum install mysql-client&lt;br /&gt;
 yum install mysql-server&lt;br /&gt;
 yum install nagios-proxy-refresh&lt;br /&gt;
 yum install perl-Config-Tiny&lt;br /&gt;
 yum install perl-DBD-MySQL&lt;br /&gt;
 yum install perl-rrdtool-1.3.8-2.el5.rf.x86_64&lt;br /&gt;
 yum install python-yaml&lt;br /&gt;
 yum install sun-jaf&lt;br /&gt;
 yum install uberftp-client&lt;br /&gt;
 yum install vdt_globus_rm_client&lt;br /&gt;
&lt;br /&gt;
 yum update glite-yaim-clients&lt;br /&gt;
 yum update glite-yaim-core&lt;br /&gt;
 yum update glite-yaim-nagios&lt;br /&gt;
 yum update mysql-server&lt;br /&gt;
 yum update perl-DBI&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe2 =&lt;br /&gt;
a)Mot de passe admin mysql :&lt;br /&gt;
Yum pour recupérer la derniere version de Mysql :&lt;br /&gt;
&#039;&#039;MySQL-server-community&#039;&#039;, ne pas oublier le client (pas de dépendance dessus)&lt;br /&gt;
Demmarrage de mysql avec --skip-grant-tables (pour ne pas avoir de mot de passe a rentrer)&lt;br /&gt;
 mysqld_safe --skip-grant-tables &amp;amp;&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root &lt;br /&gt;
 update user set password=PASSWORD(&amp;quot;NEW-ROOT-PASSWORD&amp;quot;) where User=&#039;root&#039;;&lt;br /&gt;
&lt;br /&gt;
b)creation des users pour le nagios regional:&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root -p&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON nagios.* TO &#039;ndouser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON atp.* TO &#039;atpuser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe 3 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /etc/ncg/ncg.localdb&lt;br /&gt;
 #&lt;br /&gt;
 # Local Rules file to modify NCG configuration&lt;br /&gt;
 #&lt;br /&gt;
 SITE!AUVERGRID&lt;br /&gt;
 SITE!CGG-LCG2&lt;br /&gt;
 SITE!ESRF&lt;br /&gt;
 SITE!GRIF&lt;br /&gt;
 SITE!IBCP-GBIO&lt;br /&gt;
 SITE!IN2P3-CC&lt;br /&gt;
 SITE!IN2P3-CC-PPS&lt;br /&gt;
 SITE!IN2P3-CC-T2&lt;br /&gt;
 SITE!IN2P3-CPPM&lt;br /&gt;
 SITE!IN2P3-IPNL&lt;br /&gt;
 SITE!IN2P3-IRES&lt;br /&gt;
 SITE!IN2P3-LAPP&lt;br /&gt;
 SITE!IN2P3-LPC&lt;br /&gt;
 SITE!IN2P3-LPSC&lt;br /&gt;
 SITE!IN2P3-SUBATECH&lt;br /&gt;
 SITE!IPSL-IPGP-LCG2&lt;br /&gt;
 SITE!M3PEC&lt;br /&gt;
 SITE!MSFG&lt;br /&gt;
 SITE!MSFG-MULTI&lt;br /&gt;
 SITE!MSFG-OPEN&lt;br /&gt;
 SITE!OBSPM&lt;br /&gt;
 SITE!PARIS-UREC-IPV6&lt;br /&gt;
 SITE!SN-UCAD&lt;br /&gt;
 SITE!ROC-FR&lt;br /&gt;
 SITE!SOLEIL&lt;br /&gt;
 SITE!StratusLab&lt;br /&gt;
 [root@cclcgvmli03 ~]#&lt;br /&gt;
 &lt;br /&gt;
= Annexe 4 =&lt;br /&gt;
&lt;br /&gt;
 SITE_EMAIL=c.leroy@cea.fr&lt;br /&gt;
 SITE_NAME=ROC-FR&lt;br /&gt;
 RB_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 WMS_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 PX_HOST=myproxy.grif.fr&lt;br /&gt;
 BDII_HOST=topbdii.grif.fr&lt;br /&gt;
 SITE_BDII_HOST=bdii.grif.fr&lt;br /&gt;
 MON_HOST=node06.datagrid.cea.fr&lt;br /&gt;
 VOS=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 DTEAM_GROUP_ENABLE=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 VO_DTEAM_SW_DIR=$VO_SW_DIR/dteam&lt;br /&gt;
 VO_DTEAM_DEFAULT_SE=$SE_HOST&lt;br /&gt;
 VO_DTEAM_STORAGE_DIR=$CLASSIC_STORAGE_DIR/dteam&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/&#039;&lt;br /&gt;
 VO_DTEAM_VOMSES=&amp;quot;&#039;dteam lcg-voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=lcg-voms.cern.ch dteam 24&#039; &#039;dteam    voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=voms.cern.ch dteam 24&#039;&amp;quot;&lt;br /&gt;
 VO_DTEAM_VOMS_CA_DN=&amp;quot;&#039;/DC=ch/DC=cern/CN=CERN Trusted Certification Authority&#039; &#039;/DC=ch/DC=cern/CN=CERN Trusted   Certification Authority&#039;&amp;quot;&lt;br /&gt;
 NAGIOS_HOST=cclcgvmli03.in2p3.fr&lt;br /&gt;
 NAGIOS_ADMIN_DNS=&amp;quot;/O=GRID-FR/C=FR/O=CEA/OU=IRFU/CN=Christine Leroy&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=Nadia Lajili&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=LPC/CN=Emmanuel Medernach&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CPPM/CN=Juan Carlos Carranza&amp;quot;&lt;br /&gt;
 NAGIOS_NCG_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_NAGIOS_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_GOCDB_ROC_NAME=France&lt;br /&gt;
 ROC_NAME=France&lt;br /&gt;
 NCG_PROBES_TYPE=remote,native,local&lt;br /&gt;
 NCG_VO=dteam&lt;br /&gt;
 NAGIOS_MYPROXY_NAME=nagios_roc_fr2&lt;br /&gt;
 NAGIOS_MYPROXY_USER=nagios&lt;br /&gt;
 MSG_BROKER_CACHE_NETWORK=PROD&lt;br /&gt;
 NAGIOS_ROLE=roc&lt;br /&gt;
 NAGIOS_HTTPD_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_SUDO_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_CGI_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_LDAP_FILTER=GlueSiteOtherInfo=EGEE_ROC=France&lt;br /&gt;
 NAGIOS_DB_PASS=x&lt;br /&gt;
 NAGIOS_NSCA_PASS=x&lt;br /&gt;
 MYSQL_ADMIN=x&lt;br /&gt;
 ATP_DB_PASS=x&lt;br /&gt;
 MDDB_DB_PASS=x&lt;br /&gt;
 MS_DB_PASS=x&lt;br /&gt;
 MYSQL_PASSWORD=x&lt;br /&gt;
 MYEGEE_DB_PASS=x&lt;br /&gt;
&lt;br /&gt;
= Annexe 5 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /opt/glite/yaim/examples/edgusers.conf&lt;br /&gt;
 11151:${DPMMGR_USER}:11151:${DPMMGR_GROUP}:DPM user:&lt;br /&gt;
 11152:${EDG_USER}:11152,11156:${EDG_GROUP},${INFOSYS_GROUP}:EDG user:${EDG_HOME_DIR}&lt;br /&gt;
 11153:${EDGINFO_USER}:11153,1156:${EDGINFO_USER},${INFOSYS_GROUP}:EDG info user:${EDGINFO_HOME_DIR}&lt;br /&gt;
 11154:${RGMA_USER}:11154,1156:${RGMA_GROUP},${INFOSYS_GROUP}:RGMA user:${INSTALL_ROOT}/glite/etc/rgma&lt;br /&gt;
 11155:${GLITE_USER}:11155:${GLITE_GROUP}:gLite user:${GLITE_HOME_DIR}&lt;br /&gt;
 11156:${BDII_USER}:11158:${BDII_GROUP}:BDII user:${BDII_HOME_DIR}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Annexe 6 =&lt;br /&gt;
&lt;br /&gt;
Probleme rencontré sur ccnagboxli01 (arret de ypbind + rpm manquant)&lt;br /&gt;
 chown -R nagios:nagios /var/spool/pnp4nagios&lt;br /&gt;
 chown -R nagios:nagios /var/spool/msg-nagios-bridge&lt;br /&gt;
 chown root:nagios /etc/atp/atp_db.conf&lt;br /&gt;
 chown root:nagios /etc/mddb/databases.yml&lt;br /&gt;
 chown nagios:apache /var/nagios/rw&lt;br /&gt;
 chown -R nagios:apache /var/nagios/rw&lt;br /&gt;
 chown root:nagios /etc/nagios/plugins/send_to_db.ini&lt;br /&gt;
 chown -R nagios:nagios /var/cache/msg/config-cache&lt;br /&gt;
 chown -R nagios:root /var/log/mddb&lt;br /&gt;
 chown -R nagios:root /var/log/pnp4nagios&lt;br /&gt;
 chown -R nagios:root /var/log/nagios&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
  useradd -g 40011 -u 10011 nagios&lt;br /&gt;
  useradd --group mysql -u 2730 mysql&lt;br /&gt;
  useradd -g mysql -u 2730 mysql&lt;br /&gt;
&lt;br /&gt;
   groupadd -g 40010 nagiosmaster&lt;br /&gt;
   groupadd -g 146 leftuser&lt;br /&gt;
&lt;br /&gt;
 yum install glite-security-voms-api-c-1.8.12-2.sl5.x86_64&lt;br /&gt;
 yum update perl-Net-SSLeay&lt;br /&gt;
 yum update perl-IO-Socket-SSL-1.01-1.fc6.noarch&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install lcg_util-1.7.6-1.sl5.x86_64&lt;br /&gt;
 yum install GFAL-client-1.11.8-2.sl5.x86_64 GFAL-client-1.11.8-2.sl5.i386&lt;br /&gt;
 yum install CGSI_gSOAP_2.7-1.3.3-1.sl5.x86_64&lt;br /&gt;
 yum install LFC-interfaces-1.7.3-1sec.sl5.x86_64 LFC-client-1.7.3-1sec.sl5.x86_64 lcg-dm-common-1.7.3-1sec.sl5.x86_64&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5731</id>
		<title>Nagios regional</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5731"/>
		<updated>2010-03-23T14:29:30Z</updated>

		<summary type="html">&lt;p&gt;LEROY: /* validation */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Installation d&#039;une NOGIOS box pour le ROC France&lt;br /&gt;
&lt;br /&gt;
= 1)	Installation de base : =&lt;br /&gt;
a.	Machine installée par les sysadmin du CC : OS + VOBOX + certificat + pas dans les NIS&lt;br /&gt;
&lt;br /&gt;
b.	Accessible via gsissh (port 1975)&lt;br /&gt;
&lt;br /&gt;
= 2)	Action faite au préalable : =&lt;br /&gt;
a.	Faire la demande pour que la machine soit autorisée à récupérer les SAM tests : https://gus.fzk.de/ws/ticket_info.php?ticket=55132&lt;br /&gt;
&lt;br /&gt;
b.	Autoriser la nagios box à récupérer les proxy en mode « retrieval », et stocker un proxy depuis une UI récuperable par la nagiosBOX voir  [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe0 Annexe0]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
c.	Certificat utilisé pour :&lt;br /&gt;
&lt;br /&gt;
i.	                       Access to GOCDB PI for ROCS GOCDB PI level 2 required &lt;br /&gt;
&lt;br /&gt;
ii.	                       Recuperation de proxy pour les sondes locales&lt;br /&gt;
&lt;br /&gt;
d. s&#039;inscrire dans la mailing liste: regional-nagios-admins@cern.ch (très réactive)&lt;br /&gt;
&lt;br /&gt;
= 3)	Installation de Nagios =&lt;br /&gt;
Reference : https://twiki.cern.ch/twiki/bin/view/EGEE/GridMonitoringNcgYaim&lt;br /&gt;
== Installation des packages via yum, Ajout des repos suivant ==&lt;br /&gt;
 a.	mirrors-rpmforge (rpm rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm)&lt;br /&gt;
 b.	rpmforge-testing.repo&lt;br /&gt;
 c.	rpmforge.repo&lt;br /&gt;
 d.	glite-UI.repo&lt;br /&gt;
 e.	sa1-centos5-release.repo (rpm:  sa1-release-2-1.el5.noarch.rpm)&lt;br /&gt;
 f.	glite-BDII.repo&lt;br /&gt;
&lt;br /&gt;
Problèmes de dépendances rencontrées si besoin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe1 Annexe1] (mais j’avais dû oublier de faire un : yum install egee-NAGIOS)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Installation subversion ==&lt;br /&gt;
Certain fichier de config sont a recuperer via svn au CERN:&lt;br /&gt;
&lt;br /&gt;
 yum install subversion&lt;br /&gt;
 svn co http://svnweb.cern.ch/guest/sam/trunk/roc-config&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 cp /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm.orig&lt;br /&gt;
 cp roc-config/Hash.pm_55_ALL_CRIT /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm&lt;br /&gt;
&lt;br /&gt;
== Mysql ==&lt;br /&gt;
&lt;br /&gt;
1.	Installer la dernière version de Mysql (server + client) ; &lt;br /&gt;
&lt;br /&gt;
2.	configurer le mot de passe admin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2a] ;&lt;br /&gt;
&lt;br /&gt;
3.	Configurer les users utiles à la nagios Box se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2b] ;&lt;br /&gt;
&lt;br /&gt;
== Configuration via yaim et NCG (en 2 fois)==&lt;br /&gt;
&lt;br /&gt;
1.	Remplir /etc/ncg/ncg.localdb avec la liste des sites se referer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe3 Annexe3]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
2.	Remplir le /opt/glite/yaim/site-info.def voir [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe4 Annexe4] ;&lt;br /&gt;
&lt;br /&gt;
3.	groupadd nagios&lt;br /&gt;
&lt;br /&gt;
4.	modif des uids/gids : /opt/glite/yaim/examples/edgusers.conf [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe5 Annexe5]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
5.	lancement de la configuration automatique via yaim (All On One Box) :&lt;br /&gt;
 	&lt;br /&gt;
 	/opt/glite/yaim/bin/yaim -s /opt/glite/yaim/site-info.def -c -n glite-UI -n glite-NAGIOS&lt;br /&gt;
&lt;br /&gt;
6.	lancement de la configuration via NCG (All On One Box) :&lt;br /&gt;
&lt;br /&gt;
 /usr/sbin/ncg.pl&lt;br /&gt;
&lt;br /&gt;
.....MODIFICATION importante:: voir: https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
La partie:&lt;br /&gt;
#  Configure manually /etc/ncg/ncg.conf (Template can be found here: ncg.conf.template: )&lt;br /&gt;
- Switch off automatic generation of ncg.conf by YAIM (NAGIOS_NCG_ENABLE_CONFIG&amp;quot;=&amp;quot;false&amp;quot;)&lt;br /&gt;
- Take ncg.conf.template and copy it to /etc/ncg/ncg.conf&lt;br /&gt;
     - Set $ROC_NAME$&lt;br /&gt;
     - Set $YOUR_MYPROXY_SERVER$ (e.g. myproxy-fts.cern.ch)&lt;br /&gt;
     - Set $MYPROXY_NAME$ (e.g.: NagiosRetrieve-sam-ap-roc.cern.ch)&lt;br /&gt;
     - Set $NAGIOS_ROLE$ (e.g.: ngi, roc)&lt;br /&gt;
# Take Hash.pm file that we are currently using at the CERN ROC Nagios boxes. In this file, we have removed the metrics that do not belong to the SAM_Critical profile, so only the metrics defined at ROC_SAM_critical are configured, and not relevant services like SRMv1 are commented out. The file is located under /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm &lt;br /&gt;
&lt;br /&gt;
Pour éviter d&#039;avoir des sondes inappropriés.&lt;br /&gt;
&lt;br /&gt;
== Tuning the configuration ==&lt;br /&gt;
&lt;br /&gt;
1.	Verifier  dans /etc/sysconfig/nagios:&lt;br /&gt;
 LD_LIBRARY_PATH=/opt/classads/lib64:/opt/glite/lib64:/opt/globus/lib:/opt/c-ares/lib:/opt/classads/lib64  &lt;br /&gt;
&lt;br /&gt;
2.	Desactiver les notifications, dans les fichiers de conf: &lt;br /&gt;
 a.      /etc/nagios/nagios.cfg, désactiver les notifications:enable_notifications=0 ;log_notifications=0&lt;br /&gt;
 b.	 /etc/nagios/wlcg.d/host.templates.cfg&lt;br /&gt;
 c.	 /etc/nagios/wlcg.d/service.templates.cfg&lt;br /&gt;
&lt;br /&gt;
4.	N’autoriser que les dteam/France à visualiser notre interface nagios : modifier le fichier : &lt;br /&gt;
 /etc/voms2htpasswd.conf, avec : vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&lt;br /&gt;
Plus utile site le site-info.def est défini correctement:&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&#039;&lt;br /&gt;
&lt;br /&gt;
== ActiveMQ ==&lt;br /&gt;
 /usr/sbin/msg-to-queue --prefix /queue/grid.probe.metricOutput.EGEE.a635834332381123c8b296d02b682f8f --broker-uri stomp://prod-grid-msg.cern.ch:6163&lt;br /&gt;
 &lt;br /&gt;
[root@cclcgvmli03 cron.hourly]# cat check_msg-to-queue.sh&lt;br /&gt;
&lt;br /&gt;
Verifier les messages:&lt;br /&gt;
 /usr/libexec/grid-monitoring/plugins/nagios/recv_from_queue -v &lt;br /&gt;
&lt;br /&gt;
faire une update de perl-GridMon &lt;br /&gt;
 The problem here is in the message handler &lt;br /&gt;
 (/usr/lib/perl5/vendor_perl/5.8.8/GridMon/MsgHandler/MetricOutput.pm). &lt;br /&gt;
 Probe on WN reports hostname localhost.localdomain and serviceURI CE &lt;br /&gt;
 hostname. In the previous version message handler first checked hostname &lt;br /&gt;
 value and then serviceURI. That is the reason why Christine is seeing &lt;br /&gt;
 results for localhost.localdomain. However, we fixed this and the latest &lt;br /&gt;
 version (1.0.34) parses messages correctly.&lt;br /&gt;
&lt;br /&gt;
 yum update perl-GridMon&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== Systeme d&#039;information ==&lt;br /&gt;
La nagios Box doit etre enregistré dans la GOCDB &lt;br /&gt;
et publié dans le site-BDII:&lt;br /&gt;
 ldapsearch -x -H ldap://ccnagboxli01.in2p3.fr:2170 -b &#039;Mds-vo-name=resource,o=Grid&#039;&lt;br /&gt;
&lt;br /&gt;
= validation =&lt;br /&gt;
&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
&lt;br /&gt;
now you should publish your Nagios in your Site BDII&lt;br /&gt;
And we should declare the node in the GOCDB: Regional-NAGIOS ou National-Nagios, a determiner&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
liste des sondes a valider: d&#039;après: https://twiki.cern.ch/twiki/bin/view/LCG/SAMCriticalTestsForCODs&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Type de Noeuds&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Valid (Y or N)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
APEL&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
BDII&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CREAMCE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
FTS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
gRB/WMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_C&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_L&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MPI&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MyProxy&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RB&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RGMA / MON&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
sBDII&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
SRMv2&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOBOX&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
= Annexe0 =&lt;br /&gt;
&lt;br /&gt;
Sur le myproxyserver, il faut que le nagios server soit &amp;quot;trusted retriever&amp;quot; et &amp;quot;authorized retrievers&amp;quot;:&lt;br /&gt;
 [cleroy@grid08 ~]$ grep cclcgvmli03 /opt/glite/etc/myproxy-server.conf&lt;br /&gt;
 trusted_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 authorized_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Sur une UI:&lt;br /&gt;
&lt;br /&gt;
 voms-proxy-init -voms ops:/ops/Role=lcgadmin&lt;br /&gt;
 myproxy-init -c 336 -k nagios_roc_fr2-ops -s myproxy.grif.fr -l nagios  -x -Z &amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&amp;quot;&lt;br /&gt;
&lt;br /&gt;
= Annexe 1 =&lt;br /&gt;
 rpm -ivh http://www.sysadmin.hep.ac.uk/rpms/egee-SA1/centos5/x86_64/sa1-release-2-1.el5.noarch.rpm&lt;br /&gt;
 rpm -ivh  http://packages.sw.be/rpmforge-release/rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm&lt;br /&gt;
&lt;br /&gt;
 yum install atp&lt;br /&gt;
 yum install bouncycastle&lt;br /&gt;
 yum install broker&lt;br /&gt;
 yum install broker-cache&lt;br /&gt;
 yum install dcache-srmclient&lt;br /&gt;
 yum install dummy-ca-certs&lt;br /&gt;
 yum install egee-NAGIOS&lt;br /&gt;
 yum install egee-NAGIOS egee-NRPE&lt;br /&gt;
 yum install egee-NRPE&lt;br /&gt;
 yum install fetch-crl&lt;br /&gt;
 yum install fipscheck fipscheck-lib&lt;br /&gt;
 yum install glite-UI&lt;br /&gt;
 yum install glite-security-voms-clients&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install glite-yaim-core&lt;br /&gt;
 yum install glite-yaim-nagios&lt;br /&gt;
 yum install httpd&lt;br /&gt;
 yum install jdk&lt;br /&gt;
 yum install lcg-CA&lt;br /&gt;
 yum install lcg-CA egee-NAGIOS&lt;br /&gt;
 yum install lcg_util&lt;br /&gt;
 yum install mddb&lt;br /&gt;
 yum install msg-publish-simple&lt;br /&gt;
 yum install myproxy&lt;br /&gt;
 yum install mysql-client&lt;br /&gt;
 yum install mysql-server&lt;br /&gt;
 yum install nagios-proxy-refresh&lt;br /&gt;
 yum install perl-Config-Tiny&lt;br /&gt;
 yum install perl-DBD-MySQL&lt;br /&gt;
 yum install perl-rrdtool-1.3.8-2.el5.rf.x86_64&lt;br /&gt;
 yum install python-yaml&lt;br /&gt;
 yum install sun-jaf&lt;br /&gt;
 yum install uberftp-client&lt;br /&gt;
 yum install vdt_globus_rm_client&lt;br /&gt;
&lt;br /&gt;
 yum update glite-yaim-clients&lt;br /&gt;
 yum update glite-yaim-core&lt;br /&gt;
 yum update glite-yaim-nagios&lt;br /&gt;
 yum update mysql-server&lt;br /&gt;
 yum update perl-DBI&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe2 =&lt;br /&gt;
a)Mot de passe admin mysql :&lt;br /&gt;
Yum pour recupérer la derniere version de Mysql :&lt;br /&gt;
&#039;&#039;MySQL-server-community&#039;&#039;, ne pas oublier le client (pas de dépendance dessus)&lt;br /&gt;
Demmarrage de mysql avec --skip-grant-tables (pour ne pas avoir de mot de passe a rentrer)&lt;br /&gt;
 mysqld_safe --skip-grant-tables &amp;amp;&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root &lt;br /&gt;
 update user set password=PASSWORD(&amp;quot;NEW-ROOT-PASSWORD&amp;quot;) where User=&#039;root&#039;;&lt;br /&gt;
&lt;br /&gt;
b)creation des users pour le nagios regional:&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root -p&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON nagios.* TO &#039;ndouser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON atp.* TO &#039;atpuser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe 3 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /etc/ncg/ncg.localdb&lt;br /&gt;
 #&lt;br /&gt;
 # Local Rules file to modify NCG configuration&lt;br /&gt;
 #&lt;br /&gt;
 SITE!AUVERGRID&lt;br /&gt;
 SITE!CGG-LCG2&lt;br /&gt;
 SITE!ESRF&lt;br /&gt;
 SITE!GRIF&lt;br /&gt;
 SITE!IBCP-GBIO&lt;br /&gt;
 SITE!IN2P3-CC&lt;br /&gt;
 SITE!IN2P3-CC-PPS&lt;br /&gt;
 SITE!IN2P3-CC-T2&lt;br /&gt;
 SITE!IN2P3-CPPM&lt;br /&gt;
 SITE!IN2P3-IPNL&lt;br /&gt;
 SITE!IN2P3-IRES&lt;br /&gt;
 SITE!IN2P3-LAPP&lt;br /&gt;
 SITE!IN2P3-LPC&lt;br /&gt;
 SITE!IN2P3-LPSC&lt;br /&gt;
 SITE!IN2P3-SUBATECH&lt;br /&gt;
 SITE!IPSL-IPGP-LCG2&lt;br /&gt;
 SITE!M3PEC&lt;br /&gt;
 SITE!MSFG&lt;br /&gt;
 SITE!MSFG-MULTI&lt;br /&gt;
 SITE!MSFG-OPEN&lt;br /&gt;
 SITE!OBSPM&lt;br /&gt;
 SITE!PARIS-UREC-IPV6&lt;br /&gt;
 SITE!SN-UCAD&lt;br /&gt;
 SITE!ROC-FR&lt;br /&gt;
 SITE!SOLEIL&lt;br /&gt;
 SITE!StratusLab&lt;br /&gt;
 [root@cclcgvmli03 ~]#&lt;br /&gt;
 &lt;br /&gt;
= Annexe 4 =&lt;br /&gt;
&lt;br /&gt;
 SITE_EMAIL=c.leroy@cea.fr&lt;br /&gt;
 SITE_NAME=ROC-FR&lt;br /&gt;
 RB_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 WMS_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 PX_HOST=myproxy.grif.fr&lt;br /&gt;
 BDII_HOST=topbdii.grif.fr&lt;br /&gt;
 SITE_BDII_HOST=bdii.grif.fr&lt;br /&gt;
 MON_HOST=node06.datagrid.cea.fr&lt;br /&gt;
 VOS=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 DTEAM_GROUP_ENABLE=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 VO_DTEAM_SW_DIR=$VO_SW_DIR/dteam&lt;br /&gt;
 VO_DTEAM_DEFAULT_SE=$SE_HOST&lt;br /&gt;
 VO_DTEAM_STORAGE_DIR=$CLASSIC_STORAGE_DIR/dteam&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/&#039;&lt;br /&gt;
 VO_DTEAM_VOMSES=&amp;quot;&#039;dteam lcg-voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=lcg-voms.cern.ch dteam 24&#039; &#039;dteam    voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=voms.cern.ch dteam 24&#039;&amp;quot;&lt;br /&gt;
 VO_DTEAM_VOMS_CA_DN=&amp;quot;&#039;/DC=ch/DC=cern/CN=CERN Trusted Certification Authority&#039; &#039;/DC=ch/DC=cern/CN=CERN Trusted   Certification Authority&#039;&amp;quot;&lt;br /&gt;
 NAGIOS_HOST=cclcgvmli03.in2p3.fr&lt;br /&gt;
 NAGIOS_ADMIN_DNS=&amp;quot;/O=GRID-FR/C=FR/O=CEA/OU=IRFU/CN=Christine Leroy&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=Nadia Lajili&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=LPC/CN=Emmanuel Medernach&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CPPM/CN=Juan Carlos Carranza&amp;quot;&lt;br /&gt;
 NAGIOS_NCG_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_NAGIOS_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_GOCDB_ROC_NAME=France&lt;br /&gt;
 ROC_NAME=France&lt;br /&gt;
 NCG_PROBES_TYPE=remote,native,local&lt;br /&gt;
 NCG_VO=dteam&lt;br /&gt;
 NAGIOS_MYPROXY_NAME=nagios_roc_fr2&lt;br /&gt;
 NAGIOS_MYPROXY_USER=nagios&lt;br /&gt;
 MSG_BROKER_CACHE_NETWORK=PROD&lt;br /&gt;
 NAGIOS_ROLE=roc&lt;br /&gt;
 NAGIOS_HTTPD_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_SUDO_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_CGI_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_LDAP_FILTER=GlueSiteOtherInfo=EGEE_ROC=France&lt;br /&gt;
 NAGIOS_DB_PASS=x&lt;br /&gt;
 NAGIOS_NSCA_PASS=x&lt;br /&gt;
 MYSQL_ADMIN=x&lt;br /&gt;
 ATP_DB_PASS=x&lt;br /&gt;
 MDDB_DB_PASS=x&lt;br /&gt;
 MS_DB_PASS=x&lt;br /&gt;
 MYSQL_PASSWORD=x&lt;br /&gt;
 MYEGEE_DB_PASS=x&lt;br /&gt;
&lt;br /&gt;
= Annexe 5 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /opt/glite/yaim/examples/edgusers.conf&lt;br /&gt;
 11151:${DPMMGR_USER}:11151:${DPMMGR_GROUP}:DPM user:&lt;br /&gt;
 11152:${EDG_USER}:11152,11156:${EDG_GROUP},${INFOSYS_GROUP}:EDG user:${EDG_HOME_DIR}&lt;br /&gt;
 11153:${EDGINFO_USER}:11153,1156:${EDGINFO_USER},${INFOSYS_GROUP}:EDG info user:${EDGINFO_HOME_DIR}&lt;br /&gt;
 11154:${RGMA_USER}:11154,1156:${RGMA_GROUP},${INFOSYS_GROUP}:RGMA user:${INSTALL_ROOT}/glite/etc/rgma&lt;br /&gt;
 11155:${GLITE_USER}:11155:${GLITE_GROUP}:gLite user:${GLITE_HOME_DIR}&lt;br /&gt;
 11156:${BDII_USER}:11158:${BDII_GROUP}:BDII user:${BDII_HOME_DIR}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Annexe 6 =&lt;br /&gt;
&lt;br /&gt;
Probleme rencontré sur ccnagboxli01 (arret de ypbind + rpm manquant)&lt;br /&gt;
 chown -R nagios:nagios /var/spool/pnp4nagios&lt;br /&gt;
 chown -R nagios:nagios /var/spool/msg-nagios-bridge&lt;br /&gt;
 chown root:nagios /etc/atp/atp_db.conf&lt;br /&gt;
 chown root:nagios /etc/mddb/databases.yml&lt;br /&gt;
 chown nagios:apache /var/nagios/rw&lt;br /&gt;
 chown -R nagios:apache /var/nagios/rw&lt;br /&gt;
 chown root:nagios /etc/nagios/plugins/send_to_db.ini&lt;br /&gt;
 chown -R nagios:nagios /var/cache/msg/config-cache&lt;br /&gt;
 chown -R nagios:root /var/log/mddb&lt;br /&gt;
 chown -R nagios:root /var/log/pnp4nagios&lt;br /&gt;
 chown -R nagios:root /var/log/nagios&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
  useradd -g 40011 -u 10011 nagios&lt;br /&gt;
  useradd --group mysql -u 2730 mysql&lt;br /&gt;
  useradd -g mysql -u 2730 mysql&lt;br /&gt;
&lt;br /&gt;
   groupadd -g 40010 nagiosmaster&lt;br /&gt;
   groupadd -g 146 leftuser&lt;br /&gt;
&lt;br /&gt;
 yum install glite-security-voms-api-c-1.8.12-2.sl5.x86_64&lt;br /&gt;
 yum update perl-Net-SSLeay&lt;br /&gt;
 yum update perl-IO-Socket-SSL-1.01-1.fc6.noarch&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install lcg_util-1.7.6-1.sl5.x86_64&lt;br /&gt;
 yum install GFAL-client-1.11.8-2.sl5.x86_64 GFAL-client-1.11.8-2.sl5.i386&lt;br /&gt;
 yum install CGSI_gSOAP_2.7-1.3.3-1.sl5.x86_64&lt;br /&gt;
 yum install LFC-interfaces-1.7.3-1sec.sl5.x86_64 LFC-client-1.7.3-1sec.sl5.x86_64 lcg-dm-common-1.7.3-1sec.sl5.x86_64&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5730</id>
		<title>Nagios regional</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5730"/>
		<updated>2010-03-23T14:27:36Z</updated>

		<summary type="html">&lt;p&gt;LEROY: /* validation */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Installation d&#039;une NOGIOS box pour le ROC France&lt;br /&gt;
&lt;br /&gt;
= 1)	Installation de base : =&lt;br /&gt;
a.	Machine installée par les sysadmin du CC : OS + VOBOX + certificat + pas dans les NIS&lt;br /&gt;
&lt;br /&gt;
b.	Accessible via gsissh (port 1975)&lt;br /&gt;
&lt;br /&gt;
= 2)	Action faite au préalable : =&lt;br /&gt;
a.	Faire la demande pour que la machine soit autorisée à récupérer les SAM tests : https://gus.fzk.de/ws/ticket_info.php?ticket=55132&lt;br /&gt;
&lt;br /&gt;
b.	Autoriser la nagios box à récupérer les proxy en mode « retrieval », et stocker un proxy depuis une UI récuperable par la nagiosBOX voir  [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe0 Annexe0]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
c.	Certificat utilisé pour :&lt;br /&gt;
&lt;br /&gt;
i.	                       Access to GOCDB PI for ROCS GOCDB PI level 2 required &lt;br /&gt;
&lt;br /&gt;
ii.	                       Recuperation de proxy pour les sondes locales&lt;br /&gt;
&lt;br /&gt;
d. s&#039;inscrire dans la mailing liste: regional-nagios-admins@cern.ch (très réactive)&lt;br /&gt;
&lt;br /&gt;
= 3)	Installation de Nagios =&lt;br /&gt;
Reference : https://twiki.cern.ch/twiki/bin/view/EGEE/GridMonitoringNcgYaim&lt;br /&gt;
== Installation des packages via yum, Ajout des repos suivant ==&lt;br /&gt;
 a.	mirrors-rpmforge (rpm rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm)&lt;br /&gt;
 b.	rpmforge-testing.repo&lt;br /&gt;
 c.	rpmforge.repo&lt;br /&gt;
 d.	glite-UI.repo&lt;br /&gt;
 e.	sa1-centos5-release.repo (rpm:  sa1-release-2-1.el5.noarch.rpm)&lt;br /&gt;
 f.	glite-BDII.repo&lt;br /&gt;
&lt;br /&gt;
Problèmes de dépendances rencontrées si besoin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe1 Annexe1] (mais j’avais dû oublier de faire un : yum install egee-NAGIOS)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Installation subversion ==&lt;br /&gt;
Certain fichier de config sont a recuperer via svn au CERN:&lt;br /&gt;
&lt;br /&gt;
 yum install subversion&lt;br /&gt;
 svn co http://svnweb.cern.ch/guest/sam/trunk/roc-config&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 cp /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm.orig&lt;br /&gt;
 cp roc-config/Hash.pm_55_ALL_CRIT /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm&lt;br /&gt;
&lt;br /&gt;
== Mysql ==&lt;br /&gt;
&lt;br /&gt;
1.	Installer la dernière version de Mysql (server + client) ; &lt;br /&gt;
&lt;br /&gt;
2.	configurer le mot de passe admin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2a] ;&lt;br /&gt;
&lt;br /&gt;
3.	Configurer les users utiles à la nagios Box se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2b] ;&lt;br /&gt;
&lt;br /&gt;
== Configuration via yaim et NCG (en 2 fois)==&lt;br /&gt;
&lt;br /&gt;
1.	Remplir /etc/ncg/ncg.localdb avec la liste des sites se referer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe3 Annexe3]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
2.	Remplir le /opt/glite/yaim/site-info.def voir [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe4 Annexe4] ;&lt;br /&gt;
&lt;br /&gt;
3.	groupadd nagios&lt;br /&gt;
&lt;br /&gt;
4.	modif des uids/gids : /opt/glite/yaim/examples/edgusers.conf [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe5 Annexe5]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
5.	lancement de la configuration automatique via yaim (All On One Box) :&lt;br /&gt;
 	&lt;br /&gt;
 	/opt/glite/yaim/bin/yaim -s /opt/glite/yaim/site-info.def -c -n glite-UI -n glite-NAGIOS&lt;br /&gt;
&lt;br /&gt;
6.	lancement de la configuration via NCG (All On One Box) :&lt;br /&gt;
&lt;br /&gt;
 /usr/sbin/ncg.pl&lt;br /&gt;
&lt;br /&gt;
.....MODIFICATION importante:: voir: https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
La partie:&lt;br /&gt;
#  Configure manually /etc/ncg/ncg.conf (Template can be found here: ncg.conf.template: )&lt;br /&gt;
- Switch off automatic generation of ncg.conf by YAIM (NAGIOS_NCG_ENABLE_CONFIG&amp;quot;=&amp;quot;false&amp;quot;)&lt;br /&gt;
- Take ncg.conf.template and copy it to /etc/ncg/ncg.conf&lt;br /&gt;
     - Set $ROC_NAME$&lt;br /&gt;
     - Set $YOUR_MYPROXY_SERVER$ (e.g. myproxy-fts.cern.ch)&lt;br /&gt;
     - Set $MYPROXY_NAME$ (e.g.: NagiosRetrieve-sam-ap-roc.cern.ch)&lt;br /&gt;
     - Set $NAGIOS_ROLE$ (e.g.: ngi, roc)&lt;br /&gt;
# Take Hash.pm file that we are currently using at the CERN ROC Nagios boxes. In this file, we have removed the metrics that do not belong to the SAM_Critical profile, so only the metrics defined at ROC_SAM_critical are configured, and not relevant services like SRMv1 are commented out. The file is located under /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm &lt;br /&gt;
&lt;br /&gt;
Pour éviter d&#039;avoir des sondes inappropriés.&lt;br /&gt;
&lt;br /&gt;
== Tuning the configuration ==&lt;br /&gt;
&lt;br /&gt;
1.	Verifier  dans /etc/sysconfig/nagios:&lt;br /&gt;
 LD_LIBRARY_PATH=/opt/classads/lib64:/opt/glite/lib64:/opt/globus/lib:/opt/c-ares/lib:/opt/classads/lib64  &lt;br /&gt;
&lt;br /&gt;
2.	Desactiver les notifications, dans les fichiers de conf: &lt;br /&gt;
 a.      /etc/nagios/nagios.cfg, désactiver les notifications:enable_notifications=0 ;log_notifications=0&lt;br /&gt;
 b.	 /etc/nagios/wlcg.d/host.templates.cfg&lt;br /&gt;
 c.	 /etc/nagios/wlcg.d/service.templates.cfg&lt;br /&gt;
&lt;br /&gt;
4.	N’autoriser que les dteam/France à visualiser notre interface nagios : modifier le fichier : &lt;br /&gt;
 /etc/voms2htpasswd.conf, avec : vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&lt;br /&gt;
Plus utile site le site-info.def est défini correctement:&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&#039;&lt;br /&gt;
&lt;br /&gt;
== ActiveMQ ==&lt;br /&gt;
 /usr/sbin/msg-to-queue --prefix /queue/grid.probe.metricOutput.EGEE.a635834332381123c8b296d02b682f8f --broker-uri stomp://prod-grid-msg.cern.ch:6163&lt;br /&gt;
 &lt;br /&gt;
[root@cclcgvmli03 cron.hourly]# cat check_msg-to-queue.sh&lt;br /&gt;
&lt;br /&gt;
Verifier les messages:&lt;br /&gt;
 /usr/libexec/grid-monitoring/plugins/nagios/recv_from_queue -v &lt;br /&gt;
&lt;br /&gt;
faire une update de perl-GridMon &lt;br /&gt;
 The problem here is in the message handler &lt;br /&gt;
 (/usr/lib/perl5/vendor_perl/5.8.8/GridMon/MsgHandler/MetricOutput.pm). &lt;br /&gt;
 Probe on WN reports hostname localhost.localdomain and serviceURI CE &lt;br /&gt;
 hostname. In the previous version message handler first checked hostname &lt;br /&gt;
 value and then serviceURI. That is the reason why Christine is seeing &lt;br /&gt;
 results for localhost.localdomain. However, we fixed this and the latest &lt;br /&gt;
 version (1.0.34) parses messages correctly.&lt;br /&gt;
&lt;br /&gt;
 yum update perl-GridMon&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== Systeme d&#039;information ==&lt;br /&gt;
La nagios Box doit etre enregistré dans la GOCDB &lt;br /&gt;
et publié dans le site-BDII:&lt;br /&gt;
 ldapsearch -x -H ldap://ccnagboxli01.in2p3.fr:2170 -b &#039;Mds-vo-name=resource,o=Grid&#039;&lt;br /&gt;
&lt;br /&gt;
= validation =&lt;br /&gt;
&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
&lt;br /&gt;
now you should publish your Nagios in your Site BDII&lt;br /&gt;
And we should declare the node in the GOCDB: Regional-NAGIOS ou National-Nagios, a determiner&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
liste des sondes a valider: d&#039;après: https://twiki.cern.ch/twiki/bin/view/LCG/SAMCriticalTestsForCODs&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Type de Noeuds&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Valid (Y or N)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
APEL&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
BDII&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CREAMCE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
FTS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
gRB&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
WMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_C&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_L&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MPI&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MyProxy&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RB&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RGMA&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MON&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
sBDII&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
SRMv2&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOBOX&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
= Annexe0 =&lt;br /&gt;
&lt;br /&gt;
Sur le myproxyserver, il faut que le nagios server soit &amp;quot;trusted retriever&amp;quot; et &amp;quot;authorized retrievers&amp;quot;:&lt;br /&gt;
 [cleroy@grid08 ~]$ grep cclcgvmli03 /opt/glite/etc/myproxy-server.conf&lt;br /&gt;
 trusted_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 authorized_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Sur une UI:&lt;br /&gt;
&lt;br /&gt;
 voms-proxy-init -voms ops:/ops/Role=lcgadmin&lt;br /&gt;
 myproxy-init -c 336 -k nagios_roc_fr2-ops -s myproxy.grif.fr -l nagios  -x -Z &amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&amp;quot;&lt;br /&gt;
&lt;br /&gt;
= Annexe 1 =&lt;br /&gt;
 rpm -ivh http://www.sysadmin.hep.ac.uk/rpms/egee-SA1/centos5/x86_64/sa1-release-2-1.el5.noarch.rpm&lt;br /&gt;
 rpm -ivh  http://packages.sw.be/rpmforge-release/rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm&lt;br /&gt;
&lt;br /&gt;
 yum install atp&lt;br /&gt;
 yum install bouncycastle&lt;br /&gt;
 yum install broker&lt;br /&gt;
 yum install broker-cache&lt;br /&gt;
 yum install dcache-srmclient&lt;br /&gt;
 yum install dummy-ca-certs&lt;br /&gt;
 yum install egee-NAGIOS&lt;br /&gt;
 yum install egee-NAGIOS egee-NRPE&lt;br /&gt;
 yum install egee-NRPE&lt;br /&gt;
 yum install fetch-crl&lt;br /&gt;
 yum install fipscheck fipscheck-lib&lt;br /&gt;
 yum install glite-UI&lt;br /&gt;
 yum install glite-security-voms-clients&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install glite-yaim-core&lt;br /&gt;
 yum install glite-yaim-nagios&lt;br /&gt;
 yum install httpd&lt;br /&gt;
 yum install jdk&lt;br /&gt;
 yum install lcg-CA&lt;br /&gt;
 yum install lcg-CA egee-NAGIOS&lt;br /&gt;
 yum install lcg_util&lt;br /&gt;
 yum install mddb&lt;br /&gt;
 yum install msg-publish-simple&lt;br /&gt;
 yum install myproxy&lt;br /&gt;
 yum install mysql-client&lt;br /&gt;
 yum install mysql-server&lt;br /&gt;
 yum install nagios-proxy-refresh&lt;br /&gt;
 yum install perl-Config-Tiny&lt;br /&gt;
 yum install perl-DBD-MySQL&lt;br /&gt;
 yum install perl-rrdtool-1.3.8-2.el5.rf.x86_64&lt;br /&gt;
 yum install python-yaml&lt;br /&gt;
 yum install sun-jaf&lt;br /&gt;
 yum install uberftp-client&lt;br /&gt;
 yum install vdt_globus_rm_client&lt;br /&gt;
&lt;br /&gt;
 yum update glite-yaim-clients&lt;br /&gt;
 yum update glite-yaim-core&lt;br /&gt;
 yum update glite-yaim-nagios&lt;br /&gt;
 yum update mysql-server&lt;br /&gt;
 yum update perl-DBI&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe2 =&lt;br /&gt;
a)Mot de passe admin mysql :&lt;br /&gt;
Yum pour recupérer la derniere version de Mysql :&lt;br /&gt;
&#039;&#039;MySQL-server-community&#039;&#039;, ne pas oublier le client (pas de dépendance dessus)&lt;br /&gt;
Demmarrage de mysql avec --skip-grant-tables (pour ne pas avoir de mot de passe a rentrer)&lt;br /&gt;
 mysqld_safe --skip-grant-tables &amp;amp;&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root &lt;br /&gt;
 update user set password=PASSWORD(&amp;quot;NEW-ROOT-PASSWORD&amp;quot;) where User=&#039;root&#039;;&lt;br /&gt;
&lt;br /&gt;
b)creation des users pour le nagios regional:&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root -p&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON nagios.* TO &#039;ndouser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON atp.* TO &#039;atpuser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe 3 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /etc/ncg/ncg.localdb&lt;br /&gt;
 #&lt;br /&gt;
 # Local Rules file to modify NCG configuration&lt;br /&gt;
 #&lt;br /&gt;
 SITE!AUVERGRID&lt;br /&gt;
 SITE!CGG-LCG2&lt;br /&gt;
 SITE!ESRF&lt;br /&gt;
 SITE!GRIF&lt;br /&gt;
 SITE!IBCP-GBIO&lt;br /&gt;
 SITE!IN2P3-CC&lt;br /&gt;
 SITE!IN2P3-CC-PPS&lt;br /&gt;
 SITE!IN2P3-CC-T2&lt;br /&gt;
 SITE!IN2P3-CPPM&lt;br /&gt;
 SITE!IN2P3-IPNL&lt;br /&gt;
 SITE!IN2P3-IRES&lt;br /&gt;
 SITE!IN2P3-LAPP&lt;br /&gt;
 SITE!IN2P3-LPC&lt;br /&gt;
 SITE!IN2P3-LPSC&lt;br /&gt;
 SITE!IN2P3-SUBATECH&lt;br /&gt;
 SITE!IPSL-IPGP-LCG2&lt;br /&gt;
 SITE!M3PEC&lt;br /&gt;
 SITE!MSFG&lt;br /&gt;
 SITE!MSFG-MULTI&lt;br /&gt;
 SITE!MSFG-OPEN&lt;br /&gt;
 SITE!OBSPM&lt;br /&gt;
 SITE!PARIS-UREC-IPV6&lt;br /&gt;
 SITE!SN-UCAD&lt;br /&gt;
 SITE!ROC-FR&lt;br /&gt;
 SITE!SOLEIL&lt;br /&gt;
 SITE!StratusLab&lt;br /&gt;
 [root@cclcgvmli03 ~]#&lt;br /&gt;
 &lt;br /&gt;
= Annexe 4 =&lt;br /&gt;
&lt;br /&gt;
 SITE_EMAIL=c.leroy@cea.fr&lt;br /&gt;
 SITE_NAME=ROC-FR&lt;br /&gt;
 RB_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 WMS_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 PX_HOST=myproxy.grif.fr&lt;br /&gt;
 BDII_HOST=topbdii.grif.fr&lt;br /&gt;
 SITE_BDII_HOST=bdii.grif.fr&lt;br /&gt;
 MON_HOST=node06.datagrid.cea.fr&lt;br /&gt;
 VOS=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 DTEAM_GROUP_ENABLE=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 VO_DTEAM_SW_DIR=$VO_SW_DIR/dteam&lt;br /&gt;
 VO_DTEAM_DEFAULT_SE=$SE_HOST&lt;br /&gt;
 VO_DTEAM_STORAGE_DIR=$CLASSIC_STORAGE_DIR/dteam&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/&#039;&lt;br /&gt;
 VO_DTEAM_VOMSES=&amp;quot;&#039;dteam lcg-voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=lcg-voms.cern.ch dteam 24&#039; &#039;dteam    voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=voms.cern.ch dteam 24&#039;&amp;quot;&lt;br /&gt;
 VO_DTEAM_VOMS_CA_DN=&amp;quot;&#039;/DC=ch/DC=cern/CN=CERN Trusted Certification Authority&#039; &#039;/DC=ch/DC=cern/CN=CERN Trusted   Certification Authority&#039;&amp;quot;&lt;br /&gt;
 NAGIOS_HOST=cclcgvmli03.in2p3.fr&lt;br /&gt;
 NAGIOS_ADMIN_DNS=&amp;quot;/O=GRID-FR/C=FR/O=CEA/OU=IRFU/CN=Christine Leroy&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=Nadia Lajili&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=LPC/CN=Emmanuel Medernach&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CPPM/CN=Juan Carlos Carranza&amp;quot;&lt;br /&gt;
 NAGIOS_NCG_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_NAGIOS_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_GOCDB_ROC_NAME=France&lt;br /&gt;
 ROC_NAME=France&lt;br /&gt;
 NCG_PROBES_TYPE=remote,native,local&lt;br /&gt;
 NCG_VO=dteam&lt;br /&gt;
 NAGIOS_MYPROXY_NAME=nagios_roc_fr2&lt;br /&gt;
 NAGIOS_MYPROXY_USER=nagios&lt;br /&gt;
 MSG_BROKER_CACHE_NETWORK=PROD&lt;br /&gt;
 NAGIOS_ROLE=roc&lt;br /&gt;
 NAGIOS_HTTPD_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_SUDO_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_CGI_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_LDAP_FILTER=GlueSiteOtherInfo=EGEE_ROC=France&lt;br /&gt;
 NAGIOS_DB_PASS=x&lt;br /&gt;
 NAGIOS_NSCA_PASS=x&lt;br /&gt;
 MYSQL_ADMIN=x&lt;br /&gt;
 ATP_DB_PASS=x&lt;br /&gt;
 MDDB_DB_PASS=x&lt;br /&gt;
 MS_DB_PASS=x&lt;br /&gt;
 MYSQL_PASSWORD=x&lt;br /&gt;
 MYEGEE_DB_PASS=x&lt;br /&gt;
&lt;br /&gt;
= Annexe 5 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /opt/glite/yaim/examples/edgusers.conf&lt;br /&gt;
 11151:${DPMMGR_USER}:11151:${DPMMGR_GROUP}:DPM user:&lt;br /&gt;
 11152:${EDG_USER}:11152,11156:${EDG_GROUP},${INFOSYS_GROUP}:EDG user:${EDG_HOME_DIR}&lt;br /&gt;
 11153:${EDGINFO_USER}:11153,1156:${EDGINFO_USER},${INFOSYS_GROUP}:EDG info user:${EDGINFO_HOME_DIR}&lt;br /&gt;
 11154:${RGMA_USER}:11154,1156:${RGMA_GROUP},${INFOSYS_GROUP}:RGMA user:${INSTALL_ROOT}/glite/etc/rgma&lt;br /&gt;
 11155:${GLITE_USER}:11155:${GLITE_GROUP}:gLite user:${GLITE_HOME_DIR}&lt;br /&gt;
 11156:${BDII_USER}:11158:${BDII_GROUP}:BDII user:${BDII_HOME_DIR}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Annexe 6 =&lt;br /&gt;
&lt;br /&gt;
Probleme rencontré sur ccnagboxli01 (arret de ypbind + rpm manquant)&lt;br /&gt;
 chown -R nagios:nagios /var/spool/pnp4nagios&lt;br /&gt;
 chown -R nagios:nagios /var/spool/msg-nagios-bridge&lt;br /&gt;
 chown root:nagios /etc/atp/atp_db.conf&lt;br /&gt;
 chown root:nagios /etc/mddb/databases.yml&lt;br /&gt;
 chown nagios:apache /var/nagios/rw&lt;br /&gt;
 chown -R nagios:apache /var/nagios/rw&lt;br /&gt;
 chown root:nagios /etc/nagios/plugins/send_to_db.ini&lt;br /&gt;
 chown -R nagios:nagios /var/cache/msg/config-cache&lt;br /&gt;
 chown -R nagios:root /var/log/mddb&lt;br /&gt;
 chown -R nagios:root /var/log/pnp4nagios&lt;br /&gt;
 chown -R nagios:root /var/log/nagios&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
  useradd -g 40011 -u 10011 nagios&lt;br /&gt;
  useradd --group mysql -u 2730 mysql&lt;br /&gt;
  useradd -g mysql -u 2730 mysql&lt;br /&gt;
&lt;br /&gt;
   groupadd -g 40010 nagiosmaster&lt;br /&gt;
   groupadd -g 146 leftuser&lt;br /&gt;
&lt;br /&gt;
 yum install glite-security-voms-api-c-1.8.12-2.sl5.x86_64&lt;br /&gt;
 yum update perl-Net-SSLeay&lt;br /&gt;
 yum update perl-IO-Socket-SSL-1.01-1.fc6.noarch&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install lcg_util-1.7.6-1.sl5.x86_64&lt;br /&gt;
 yum install GFAL-client-1.11.8-2.sl5.x86_64 GFAL-client-1.11.8-2.sl5.i386&lt;br /&gt;
 yum install CGSI_gSOAP_2.7-1.3.3-1.sl5.x86_64&lt;br /&gt;
 yum install LFC-interfaces-1.7.3-1sec.sl5.x86_64 LFC-client-1.7.3-1sec.sl5.x86_64 lcg-dm-common-1.7.3-1sec.sl5.x86_64&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5729</id>
		<title>Nagios regional</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5729"/>
		<updated>2010-03-23T14:26:24Z</updated>

		<summary type="html">&lt;p&gt;LEROY: /* validation */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Installation d&#039;une NOGIOS box pour le ROC France&lt;br /&gt;
&lt;br /&gt;
= 1)	Installation de base : =&lt;br /&gt;
a.	Machine installée par les sysadmin du CC : OS + VOBOX + certificat + pas dans les NIS&lt;br /&gt;
&lt;br /&gt;
b.	Accessible via gsissh (port 1975)&lt;br /&gt;
&lt;br /&gt;
= 2)	Action faite au préalable : =&lt;br /&gt;
a.	Faire la demande pour que la machine soit autorisée à récupérer les SAM tests : https://gus.fzk.de/ws/ticket_info.php?ticket=55132&lt;br /&gt;
&lt;br /&gt;
b.	Autoriser la nagios box à récupérer les proxy en mode « retrieval », et stocker un proxy depuis une UI récuperable par la nagiosBOX voir  [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe0 Annexe0]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
c.	Certificat utilisé pour :&lt;br /&gt;
&lt;br /&gt;
i.	                       Access to GOCDB PI for ROCS GOCDB PI level 2 required &lt;br /&gt;
&lt;br /&gt;
ii.	                       Recuperation de proxy pour les sondes locales&lt;br /&gt;
&lt;br /&gt;
d. s&#039;inscrire dans la mailing liste: regional-nagios-admins@cern.ch (très réactive)&lt;br /&gt;
&lt;br /&gt;
= 3)	Installation de Nagios =&lt;br /&gt;
Reference : https://twiki.cern.ch/twiki/bin/view/EGEE/GridMonitoringNcgYaim&lt;br /&gt;
== Installation des packages via yum, Ajout des repos suivant ==&lt;br /&gt;
 a.	mirrors-rpmforge (rpm rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm)&lt;br /&gt;
 b.	rpmforge-testing.repo&lt;br /&gt;
 c.	rpmforge.repo&lt;br /&gt;
 d.	glite-UI.repo&lt;br /&gt;
 e.	sa1-centos5-release.repo (rpm:  sa1-release-2-1.el5.noarch.rpm)&lt;br /&gt;
 f.	glite-BDII.repo&lt;br /&gt;
&lt;br /&gt;
Problèmes de dépendances rencontrées si besoin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe1 Annexe1] (mais j’avais dû oublier de faire un : yum install egee-NAGIOS)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Installation subversion ==&lt;br /&gt;
Certain fichier de config sont a recuperer via svn au CERN:&lt;br /&gt;
&lt;br /&gt;
 yum install subversion&lt;br /&gt;
 svn co http://svnweb.cern.ch/guest/sam/trunk/roc-config&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 cp /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm.orig&lt;br /&gt;
 cp roc-config/Hash.pm_55_ALL_CRIT /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm&lt;br /&gt;
&lt;br /&gt;
== Mysql ==&lt;br /&gt;
&lt;br /&gt;
1.	Installer la dernière version de Mysql (server + client) ; &lt;br /&gt;
&lt;br /&gt;
2.	configurer le mot de passe admin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2a] ;&lt;br /&gt;
&lt;br /&gt;
3.	Configurer les users utiles à la nagios Box se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2b] ;&lt;br /&gt;
&lt;br /&gt;
== Configuration via yaim et NCG (en 2 fois)==&lt;br /&gt;
&lt;br /&gt;
1.	Remplir /etc/ncg/ncg.localdb avec la liste des sites se referer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe3 Annexe3]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
2.	Remplir le /opt/glite/yaim/site-info.def voir [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe4 Annexe4] ;&lt;br /&gt;
&lt;br /&gt;
3.	groupadd nagios&lt;br /&gt;
&lt;br /&gt;
4.	modif des uids/gids : /opt/glite/yaim/examples/edgusers.conf [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe5 Annexe5]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
5.	lancement de la configuration automatique via yaim (All On One Box) :&lt;br /&gt;
 	&lt;br /&gt;
 	/opt/glite/yaim/bin/yaim -s /opt/glite/yaim/site-info.def -c -n glite-UI -n glite-NAGIOS&lt;br /&gt;
&lt;br /&gt;
6.	lancement de la configuration via NCG (All On One Box) :&lt;br /&gt;
&lt;br /&gt;
 /usr/sbin/ncg.pl&lt;br /&gt;
&lt;br /&gt;
.....MODIFICATION importante:: voir: https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
La partie:&lt;br /&gt;
#  Configure manually /etc/ncg/ncg.conf (Template can be found here: ncg.conf.template: )&lt;br /&gt;
- Switch off automatic generation of ncg.conf by YAIM (NAGIOS_NCG_ENABLE_CONFIG&amp;quot;=&amp;quot;false&amp;quot;)&lt;br /&gt;
- Take ncg.conf.template and copy it to /etc/ncg/ncg.conf&lt;br /&gt;
     - Set $ROC_NAME$&lt;br /&gt;
     - Set $YOUR_MYPROXY_SERVER$ (e.g. myproxy-fts.cern.ch)&lt;br /&gt;
     - Set $MYPROXY_NAME$ (e.g.: NagiosRetrieve-sam-ap-roc.cern.ch)&lt;br /&gt;
     - Set $NAGIOS_ROLE$ (e.g.: ngi, roc)&lt;br /&gt;
# Take Hash.pm file that we are currently using at the CERN ROC Nagios boxes. In this file, we have removed the metrics that do not belong to the SAM_Critical profile, so only the metrics defined at ROC_SAM_critical are configured, and not relevant services like SRMv1 are commented out. The file is located under /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm &lt;br /&gt;
&lt;br /&gt;
Pour éviter d&#039;avoir des sondes inappropriés.&lt;br /&gt;
&lt;br /&gt;
== Tuning the configuration ==&lt;br /&gt;
&lt;br /&gt;
1.	Verifier  dans /etc/sysconfig/nagios:&lt;br /&gt;
 LD_LIBRARY_PATH=/opt/classads/lib64:/opt/glite/lib64:/opt/globus/lib:/opt/c-ares/lib:/opt/classads/lib64  &lt;br /&gt;
&lt;br /&gt;
2.	Desactiver les notifications, dans les fichiers de conf: &lt;br /&gt;
 a.      /etc/nagios/nagios.cfg, désactiver les notifications:enable_notifications=0 ;log_notifications=0&lt;br /&gt;
 b.	 /etc/nagios/wlcg.d/host.templates.cfg&lt;br /&gt;
 c.	 /etc/nagios/wlcg.d/service.templates.cfg&lt;br /&gt;
&lt;br /&gt;
4.	N’autoriser que les dteam/France à visualiser notre interface nagios : modifier le fichier : &lt;br /&gt;
 /etc/voms2htpasswd.conf, avec : vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&lt;br /&gt;
Plus utile site le site-info.def est défini correctement:&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&#039;&lt;br /&gt;
&lt;br /&gt;
== ActiveMQ ==&lt;br /&gt;
 /usr/sbin/msg-to-queue --prefix /queue/grid.probe.metricOutput.EGEE.a635834332381123c8b296d02b682f8f --broker-uri stomp://prod-grid-msg.cern.ch:6163&lt;br /&gt;
 &lt;br /&gt;
[root@cclcgvmli03 cron.hourly]# cat check_msg-to-queue.sh&lt;br /&gt;
&lt;br /&gt;
Verifier les messages:&lt;br /&gt;
 /usr/libexec/grid-monitoring/plugins/nagios/recv_from_queue -v &lt;br /&gt;
&lt;br /&gt;
faire une update de perl-GridMon &lt;br /&gt;
 The problem here is in the message handler &lt;br /&gt;
 (/usr/lib/perl5/vendor_perl/5.8.8/GridMon/MsgHandler/MetricOutput.pm). &lt;br /&gt;
 Probe on WN reports hostname localhost.localdomain and serviceURI CE &lt;br /&gt;
 hostname. In the previous version message handler first checked hostname &lt;br /&gt;
 value and then serviceURI. That is the reason why Christine is seeing &lt;br /&gt;
 results for localhost.localdomain. However, we fixed this and the latest &lt;br /&gt;
 version (1.0.34) parses messages correctly.&lt;br /&gt;
&lt;br /&gt;
 yum update perl-GridMon&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== Systeme d&#039;information ==&lt;br /&gt;
La nagios Box doit etre enregistré dans la GOCDB &lt;br /&gt;
et publié dans le site-BDII:&lt;br /&gt;
 ldapsearch -x -H ldap://ccnagboxli01.in2p3.fr:2170 -b &#039;Mds-vo-name=resource,o=Grid&#039;&lt;br /&gt;
&lt;br /&gt;
= validation =&lt;br /&gt;
&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
&lt;br /&gt;
now you should publish your Nagios in your Site BDII&lt;br /&gt;
And we should declare the node in the GOCDB: Regional-NAGIOS ou National-Nagios, a determiner&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
liste des sondes a valider: d&#039;après: https://twiki.cern.ch/twiki/bin/view/LCG/SAMCriticalTestsForCODs&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Type de Noeuds&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Valid (Y or N)&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
APEL&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
-&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
BDII&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CREAMCE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
FTS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
gRB&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
WMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_C&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_L&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MPI&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MyProxy&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RB&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RGMA&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
/&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MON&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
sBDII&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
SRMv2&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOBOX&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
= Annexe0 =&lt;br /&gt;
&lt;br /&gt;
Sur le myproxyserver, il faut que le nagios server soit &amp;quot;trusted retriever&amp;quot; et &amp;quot;authorized retrievers&amp;quot;:&lt;br /&gt;
 [cleroy@grid08 ~]$ grep cclcgvmli03 /opt/glite/etc/myproxy-server.conf&lt;br /&gt;
 trusted_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 authorized_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Sur une UI:&lt;br /&gt;
&lt;br /&gt;
 voms-proxy-init -voms ops:/ops/Role=lcgadmin&lt;br /&gt;
 myproxy-init -c 336 -k nagios_roc_fr2-ops -s myproxy.grif.fr -l nagios  -x -Z &amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&amp;quot;&lt;br /&gt;
&lt;br /&gt;
= Annexe 1 =&lt;br /&gt;
 rpm -ivh http://www.sysadmin.hep.ac.uk/rpms/egee-SA1/centos5/x86_64/sa1-release-2-1.el5.noarch.rpm&lt;br /&gt;
 rpm -ivh  http://packages.sw.be/rpmforge-release/rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm&lt;br /&gt;
&lt;br /&gt;
 yum install atp&lt;br /&gt;
 yum install bouncycastle&lt;br /&gt;
 yum install broker&lt;br /&gt;
 yum install broker-cache&lt;br /&gt;
 yum install dcache-srmclient&lt;br /&gt;
 yum install dummy-ca-certs&lt;br /&gt;
 yum install egee-NAGIOS&lt;br /&gt;
 yum install egee-NAGIOS egee-NRPE&lt;br /&gt;
 yum install egee-NRPE&lt;br /&gt;
 yum install fetch-crl&lt;br /&gt;
 yum install fipscheck fipscheck-lib&lt;br /&gt;
 yum install glite-UI&lt;br /&gt;
 yum install glite-security-voms-clients&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install glite-yaim-core&lt;br /&gt;
 yum install glite-yaim-nagios&lt;br /&gt;
 yum install httpd&lt;br /&gt;
 yum install jdk&lt;br /&gt;
 yum install lcg-CA&lt;br /&gt;
 yum install lcg-CA egee-NAGIOS&lt;br /&gt;
 yum install lcg_util&lt;br /&gt;
 yum install mddb&lt;br /&gt;
 yum install msg-publish-simple&lt;br /&gt;
 yum install myproxy&lt;br /&gt;
 yum install mysql-client&lt;br /&gt;
 yum install mysql-server&lt;br /&gt;
 yum install nagios-proxy-refresh&lt;br /&gt;
 yum install perl-Config-Tiny&lt;br /&gt;
 yum install perl-DBD-MySQL&lt;br /&gt;
 yum install perl-rrdtool-1.3.8-2.el5.rf.x86_64&lt;br /&gt;
 yum install python-yaml&lt;br /&gt;
 yum install sun-jaf&lt;br /&gt;
 yum install uberftp-client&lt;br /&gt;
 yum install vdt_globus_rm_client&lt;br /&gt;
&lt;br /&gt;
 yum update glite-yaim-clients&lt;br /&gt;
 yum update glite-yaim-core&lt;br /&gt;
 yum update glite-yaim-nagios&lt;br /&gt;
 yum update mysql-server&lt;br /&gt;
 yum update perl-DBI&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe2 =&lt;br /&gt;
a)Mot de passe admin mysql :&lt;br /&gt;
Yum pour recupérer la derniere version de Mysql :&lt;br /&gt;
&#039;&#039;MySQL-server-community&#039;&#039;, ne pas oublier le client (pas de dépendance dessus)&lt;br /&gt;
Demmarrage de mysql avec --skip-grant-tables (pour ne pas avoir de mot de passe a rentrer)&lt;br /&gt;
 mysqld_safe --skip-grant-tables &amp;amp;&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root &lt;br /&gt;
 update user set password=PASSWORD(&amp;quot;NEW-ROOT-PASSWORD&amp;quot;) where User=&#039;root&#039;;&lt;br /&gt;
&lt;br /&gt;
b)creation des users pour le nagios regional:&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root -p&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON nagios.* TO &#039;ndouser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON atp.* TO &#039;atpuser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe 3 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /etc/ncg/ncg.localdb&lt;br /&gt;
 #&lt;br /&gt;
 # Local Rules file to modify NCG configuration&lt;br /&gt;
 #&lt;br /&gt;
 SITE!AUVERGRID&lt;br /&gt;
 SITE!CGG-LCG2&lt;br /&gt;
 SITE!ESRF&lt;br /&gt;
 SITE!GRIF&lt;br /&gt;
 SITE!IBCP-GBIO&lt;br /&gt;
 SITE!IN2P3-CC&lt;br /&gt;
 SITE!IN2P3-CC-PPS&lt;br /&gt;
 SITE!IN2P3-CC-T2&lt;br /&gt;
 SITE!IN2P3-CPPM&lt;br /&gt;
 SITE!IN2P3-IPNL&lt;br /&gt;
 SITE!IN2P3-IRES&lt;br /&gt;
 SITE!IN2P3-LAPP&lt;br /&gt;
 SITE!IN2P3-LPC&lt;br /&gt;
 SITE!IN2P3-LPSC&lt;br /&gt;
 SITE!IN2P3-SUBATECH&lt;br /&gt;
 SITE!IPSL-IPGP-LCG2&lt;br /&gt;
 SITE!M3PEC&lt;br /&gt;
 SITE!MSFG&lt;br /&gt;
 SITE!MSFG-MULTI&lt;br /&gt;
 SITE!MSFG-OPEN&lt;br /&gt;
 SITE!OBSPM&lt;br /&gt;
 SITE!PARIS-UREC-IPV6&lt;br /&gt;
 SITE!SN-UCAD&lt;br /&gt;
 SITE!ROC-FR&lt;br /&gt;
 SITE!SOLEIL&lt;br /&gt;
 SITE!StratusLab&lt;br /&gt;
 [root@cclcgvmli03 ~]#&lt;br /&gt;
 &lt;br /&gt;
= Annexe 4 =&lt;br /&gt;
&lt;br /&gt;
 SITE_EMAIL=c.leroy@cea.fr&lt;br /&gt;
 SITE_NAME=ROC-FR&lt;br /&gt;
 RB_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 WMS_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 PX_HOST=myproxy.grif.fr&lt;br /&gt;
 BDII_HOST=topbdii.grif.fr&lt;br /&gt;
 SITE_BDII_HOST=bdii.grif.fr&lt;br /&gt;
 MON_HOST=node06.datagrid.cea.fr&lt;br /&gt;
 VOS=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 DTEAM_GROUP_ENABLE=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 VO_DTEAM_SW_DIR=$VO_SW_DIR/dteam&lt;br /&gt;
 VO_DTEAM_DEFAULT_SE=$SE_HOST&lt;br /&gt;
 VO_DTEAM_STORAGE_DIR=$CLASSIC_STORAGE_DIR/dteam&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/&#039;&lt;br /&gt;
 VO_DTEAM_VOMSES=&amp;quot;&#039;dteam lcg-voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=lcg-voms.cern.ch dteam 24&#039; &#039;dteam    voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=voms.cern.ch dteam 24&#039;&amp;quot;&lt;br /&gt;
 VO_DTEAM_VOMS_CA_DN=&amp;quot;&#039;/DC=ch/DC=cern/CN=CERN Trusted Certification Authority&#039; &#039;/DC=ch/DC=cern/CN=CERN Trusted   Certification Authority&#039;&amp;quot;&lt;br /&gt;
 NAGIOS_HOST=cclcgvmli03.in2p3.fr&lt;br /&gt;
 NAGIOS_ADMIN_DNS=&amp;quot;/O=GRID-FR/C=FR/O=CEA/OU=IRFU/CN=Christine Leroy&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=Nadia Lajili&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=LPC/CN=Emmanuel Medernach&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CPPM/CN=Juan Carlos Carranza&amp;quot;&lt;br /&gt;
 NAGIOS_NCG_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_NAGIOS_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_GOCDB_ROC_NAME=France&lt;br /&gt;
 ROC_NAME=France&lt;br /&gt;
 NCG_PROBES_TYPE=remote,native,local&lt;br /&gt;
 NCG_VO=dteam&lt;br /&gt;
 NAGIOS_MYPROXY_NAME=nagios_roc_fr2&lt;br /&gt;
 NAGIOS_MYPROXY_USER=nagios&lt;br /&gt;
 MSG_BROKER_CACHE_NETWORK=PROD&lt;br /&gt;
 NAGIOS_ROLE=roc&lt;br /&gt;
 NAGIOS_HTTPD_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_SUDO_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_CGI_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_LDAP_FILTER=GlueSiteOtherInfo=EGEE_ROC=France&lt;br /&gt;
 NAGIOS_DB_PASS=x&lt;br /&gt;
 NAGIOS_NSCA_PASS=x&lt;br /&gt;
 MYSQL_ADMIN=x&lt;br /&gt;
 ATP_DB_PASS=x&lt;br /&gt;
 MDDB_DB_PASS=x&lt;br /&gt;
 MS_DB_PASS=x&lt;br /&gt;
 MYSQL_PASSWORD=x&lt;br /&gt;
 MYEGEE_DB_PASS=x&lt;br /&gt;
&lt;br /&gt;
= Annexe 5 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /opt/glite/yaim/examples/edgusers.conf&lt;br /&gt;
 11151:${DPMMGR_USER}:11151:${DPMMGR_GROUP}:DPM user:&lt;br /&gt;
 11152:${EDG_USER}:11152,11156:${EDG_GROUP},${INFOSYS_GROUP}:EDG user:${EDG_HOME_DIR}&lt;br /&gt;
 11153:${EDGINFO_USER}:11153,1156:${EDGINFO_USER},${INFOSYS_GROUP}:EDG info user:${EDGINFO_HOME_DIR}&lt;br /&gt;
 11154:${RGMA_USER}:11154,1156:${RGMA_GROUP},${INFOSYS_GROUP}:RGMA user:${INSTALL_ROOT}/glite/etc/rgma&lt;br /&gt;
 11155:${GLITE_USER}:11155:${GLITE_GROUP}:gLite user:${GLITE_HOME_DIR}&lt;br /&gt;
 11156:${BDII_USER}:11158:${BDII_GROUP}:BDII user:${BDII_HOME_DIR}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Annexe 6 =&lt;br /&gt;
&lt;br /&gt;
Probleme rencontré sur ccnagboxli01 (arret de ypbind + rpm manquant)&lt;br /&gt;
 chown -R nagios:nagios /var/spool/pnp4nagios&lt;br /&gt;
 chown -R nagios:nagios /var/spool/msg-nagios-bridge&lt;br /&gt;
 chown root:nagios /etc/atp/atp_db.conf&lt;br /&gt;
 chown root:nagios /etc/mddb/databases.yml&lt;br /&gt;
 chown nagios:apache /var/nagios/rw&lt;br /&gt;
 chown -R nagios:apache /var/nagios/rw&lt;br /&gt;
 chown root:nagios /etc/nagios/plugins/send_to_db.ini&lt;br /&gt;
 chown -R nagios:nagios /var/cache/msg/config-cache&lt;br /&gt;
 chown -R nagios:root /var/log/mddb&lt;br /&gt;
 chown -R nagios:root /var/log/pnp4nagios&lt;br /&gt;
 chown -R nagios:root /var/log/nagios&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
  useradd -g 40011 -u 10011 nagios&lt;br /&gt;
  useradd --group mysql -u 2730 mysql&lt;br /&gt;
  useradd -g mysql -u 2730 mysql&lt;br /&gt;
&lt;br /&gt;
   groupadd -g 40010 nagiosmaster&lt;br /&gt;
   groupadd -g 146 leftuser&lt;br /&gt;
&lt;br /&gt;
 yum install glite-security-voms-api-c-1.8.12-2.sl5.x86_64&lt;br /&gt;
 yum update perl-Net-SSLeay&lt;br /&gt;
 yum update perl-IO-Socket-SSL-1.01-1.fc6.noarch&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install lcg_util-1.7.6-1.sl5.x86_64&lt;br /&gt;
 yum install GFAL-client-1.11.8-2.sl5.x86_64 GFAL-client-1.11.8-2.sl5.i386&lt;br /&gt;
 yum install CGSI_gSOAP_2.7-1.3.3-1.sl5.x86_64&lt;br /&gt;
 yum install LFC-interfaces-1.7.3-1sec.sl5.x86_64 LFC-client-1.7.3-1sec.sl5.x86_64 lcg-dm-common-1.7.3-1sec.sl5.x86_64&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
	<entry>
		<id>https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5728</id>
		<title>Nagios regional</title>
		<link rel="alternate" type="text/html" href="https://lcg.in2p3.fr/index.php?title=Nagios_regional&amp;diff=5728"/>
		<updated>2010-03-23T14:25:41Z</updated>

		<summary type="html">&lt;p&gt;LEROY: /* validation */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Installation d&#039;une NOGIOS box pour le ROC France&lt;br /&gt;
&lt;br /&gt;
= 1)	Installation de base : =&lt;br /&gt;
a.	Machine installée par les sysadmin du CC : OS + VOBOX + certificat + pas dans les NIS&lt;br /&gt;
&lt;br /&gt;
b.	Accessible via gsissh (port 1975)&lt;br /&gt;
&lt;br /&gt;
= 2)	Action faite au préalable : =&lt;br /&gt;
a.	Faire la demande pour que la machine soit autorisée à récupérer les SAM tests : https://gus.fzk.de/ws/ticket_info.php?ticket=55132&lt;br /&gt;
&lt;br /&gt;
b.	Autoriser la nagios box à récupérer les proxy en mode « retrieval », et stocker un proxy depuis une UI récuperable par la nagiosBOX voir  [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe0 Annexe0]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
c.	Certificat utilisé pour :&lt;br /&gt;
&lt;br /&gt;
i.	                       Access to GOCDB PI for ROCS GOCDB PI level 2 required &lt;br /&gt;
&lt;br /&gt;
ii.	                       Recuperation de proxy pour les sondes locales&lt;br /&gt;
&lt;br /&gt;
d. s&#039;inscrire dans la mailing liste: regional-nagios-admins@cern.ch (très réactive)&lt;br /&gt;
&lt;br /&gt;
= 3)	Installation de Nagios =&lt;br /&gt;
Reference : https://twiki.cern.ch/twiki/bin/view/EGEE/GridMonitoringNcgYaim&lt;br /&gt;
== Installation des packages via yum, Ajout des repos suivant ==&lt;br /&gt;
 a.	mirrors-rpmforge (rpm rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm)&lt;br /&gt;
 b.	rpmforge-testing.repo&lt;br /&gt;
 c.	rpmforge.repo&lt;br /&gt;
 d.	glite-UI.repo&lt;br /&gt;
 e.	sa1-centos5-release.repo (rpm:  sa1-release-2-1.el5.noarch.rpm)&lt;br /&gt;
 f.	glite-BDII.repo&lt;br /&gt;
&lt;br /&gt;
Problèmes de dépendances rencontrées si besoin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe1 Annexe1] (mais j’avais dû oublier de faire un : yum install egee-NAGIOS)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Installation subversion ==&lt;br /&gt;
Certain fichier de config sont a recuperer via svn au CERN:&lt;br /&gt;
&lt;br /&gt;
 yum install subversion&lt;br /&gt;
 svn co http://svnweb.cern.ch/guest/sam/trunk/roc-config&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 cp /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm.orig&lt;br /&gt;
 cp roc-config/Hash.pm_55_ALL_CRIT /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm&lt;br /&gt;
&lt;br /&gt;
== Mysql ==&lt;br /&gt;
&lt;br /&gt;
1.	Installer la dernière version de Mysql (server + client) ; &lt;br /&gt;
&lt;br /&gt;
2.	configurer le mot de passe admin se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2a] ;&lt;br /&gt;
&lt;br /&gt;
3.	Configurer les users utiles à la nagios Box se référer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe2 Annexe2b] ;&lt;br /&gt;
&lt;br /&gt;
== Configuration via yaim et NCG (en 2 fois)==&lt;br /&gt;
&lt;br /&gt;
1.	Remplir /etc/ncg/ncg.localdb avec la liste des sites se referer [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe3 Annexe3]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
2.	Remplir le /opt/glite/yaim/site-info.def voir [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe4 Annexe4] ;&lt;br /&gt;
&lt;br /&gt;
3.	groupadd nagios&lt;br /&gt;
&lt;br /&gt;
4.	modif des uids/gids : /opt/glite/yaim/examples/edgusers.conf [http://lcg.in2p3.fr/wiki/index.php/Nagios_regional#Annexe5 Annexe5]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
5.	lancement de la configuration automatique via yaim (All On One Box) :&lt;br /&gt;
 	&lt;br /&gt;
 	/opt/glite/yaim/bin/yaim -s /opt/glite/yaim/site-info.def -c -n glite-UI -n glite-NAGIOS&lt;br /&gt;
&lt;br /&gt;
6.	lancement de la configuration via NCG (All On One Box) :&lt;br /&gt;
&lt;br /&gt;
 /usr/sbin/ncg.pl&lt;br /&gt;
&lt;br /&gt;
.....MODIFICATION importante:: voir: https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
La partie:&lt;br /&gt;
#  Configure manually /etc/ncg/ncg.conf (Template can be found here: ncg.conf.template: )&lt;br /&gt;
- Switch off automatic generation of ncg.conf by YAIM (NAGIOS_NCG_ENABLE_CONFIG&amp;quot;=&amp;quot;false&amp;quot;)&lt;br /&gt;
- Take ncg.conf.template and copy it to /etc/ncg/ncg.conf&lt;br /&gt;
     - Set $ROC_NAME$&lt;br /&gt;
     - Set $YOUR_MYPROXY_SERVER$ (e.g. myproxy-fts.cern.ch)&lt;br /&gt;
     - Set $MYPROXY_NAME$ (e.g.: NagiosRetrieve-sam-ap-roc.cern.ch)&lt;br /&gt;
     - Set $NAGIOS_ROLE$ (e.g.: ngi, roc)&lt;br /&gt;
# Take Hash.pm file that we are currently using at the CERN ROC Nagios boxes. In this file, we have removed the metrics that do not belong to the SAM_Critical profile, so only the metrics defined at ROC_SAM_critical are configured, and not relevant services like SRMv1 are commented out. The file is located under /usr/lib/perl5/vendor_perl/5.8.5/NCG/LocalMetrics/Hash.pm &lt;br /&gt;
&lt;br /&gt;
Pour éviter d&#039;avoir des sondes inappropriés.&lt;br /&gt;
&lt;br /&gt;
== Tuning the configuration ==&lt;br /&gt;
&lt;br /&gt;
1.	Verifier  dans /etc/sysconfig/nagios:&lt;br /&gt;
 LD_LIBRARY_PATH=/opt/classads/lib64:/opt/glite/lib64:/opt/globus/lib:/opt/c-ares/lib:/opt/classads/lib64  &lt;br /&gt;
&lt;br /&gt;
2.	Desactiver les notifications, dans les fichiers de conf: &lt;br /&gt;
 a.      /etc/nagios/nagios.cfg, désactiver les notifications:enable_notifications=0 ;log_notifications=0&lt;br /&gt;
 b.	 /etc/nagios/wlcg.d/host.templates.cfg&lt;br /&gt;
 c.	 /etc/nagios/wlcg.d/service.templates.cfg&lt;br /&gt;
&lt;br /&gt;
4.	N’autoriser que les dteam/France à visualiser notre interface nagios : modifier le fichier : &lt;br /&gt;
 /etc/voms2htpasswd.conf, avec : vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&lt;br /&gt;
Plus utile site le site-info.def est défini correctement:&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/france&#039;&lt;br /&gt;
&lt;br /&gt;
== ActiveMQ ==&lt;br /&gt;
 /usr/sbin/msg-to-queue --prefix /queue/grid.probe.metricOutput.EGEE.a635834332381123c8b296d02b682f8f --broker-uri stomp://prod-grid-msg.cern.ch:6163&lt;br /&gt;
 &lt;br /&gt;
[root@cclcgvmli03 cron.hourly]# cat check_msg-to-queue.sh&lt;br /&gt;
&lt;br /&gt;
Verifier les messages:&lt;br /&gt;
 /usr/libexec/grid-monitoring/plugins/nagios/recv_from_queue -v &lt;br /&gt;
&lt;br /&gt;
faire une update de perl-GridMon &lt;br /&gt;
 The problem here is in the message handler &lt;br /&gt;
 (/usr/lib/perl5/vendor_perl/5.8.8/GridMon/MsgHandler/MetricOutput.pm). &lt;br /&gt;
 Probe on WN reports hostname localhost.localdomain and serviceURI CE &lt;br /&gt;
 hostname. In the previous version message handler first checked hostname &lt;br /&gt;
 value and then serviceURI. That is the reason why Christine is seeing &lt;br /&gt;
 results for localhost.localdomain. However, we fixed this and the latest &lt;br /&gt;
 version (1.0.34) parses messages correctly.&lt;br /&gt;
&lt;br /&gt;
 yum update perl-GridMon&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== Systeme d&#039;information ==&lt;br /&gt;
La nagios Box doit etre enregistré dans la GOCDB &lt;br /&gt;
et publié dans le site-BDII:&lt;br /&gt;
 ldapsearch -x -H ldap://ccnagboxli01.in2p3.fr:2170 -b &#039;Mds-vo-name=resource,o=Grid&#039;&lt;br /&gt;
&lt;br /&gt;
= validation =&lt;br /&gt;
&lt;br /&gt;
https://twiki.cern.ch/twiki/bin/view/EGEE/ValidateROCNagios&lt;br /&gt;
&lt;br /&gt;
now you should publish your Nagios in your Site BDII&lt;br /&gt;
And we should declare the node in the GOCDB: Regional-NAGIOS ou National-Nagios, a determiner&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
liste des sondes a valider: d&#039;après: https://twiki.cern.ch/twiki/bin/view/LCG/SAMCriticalTestsForCODs&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;1&amp;quot; width=&amp;quot;100%&amp;quot;&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
Type de Noeuds&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
Validé par&lt;br /&gt;
| width=&amp;quot;20%&amp;quot; |&lt;br /&gt;
Valid (Y or N)&lt;br /&gt;
|----&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
APEL&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
-&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
BDII&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
CREAMCE&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
FTS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
gRB&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
/&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
WMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_C&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
LFC_L&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MPI&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MyProxy&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RB&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
RGMA&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
/&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
MON&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
sBDII&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
SRMv2&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOBOX&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|&lt;br /&gt;
VOMS&lt;br /&gt;
| width=&amp;quot;5%&amp;quot; |&lt;br /&gt;
| width=&amp;quot;30%&amp;quot; |&lt;br /&gt;
n&lt;br /&gt;
|----&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
= Annexe0 =&lt;br /&gt;
&lt;br /&gt;
Sur le myproxyserver, il faut que le nagios server soit &amp;quot;trusted retriever&amp;quot; et &amp;quot;authorized retrievers&amp;quot;:&lt;br /&gt;
 [cleroy@grid08 ~]$ grep cclcgvmli03 /opt/glite/etc/myproxy-server.conf&lt;br /&gt;
 trusted_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 authorized_retrievers /O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Sur une UI:&lt;br /&gt;
&lt;br /&gt;
 voms-proxy-init -voms ops:/ops/Role=lcgadmin&lt;br /&gt;
 myproxy-init -c 336 -k nagios_roc_fr2-ops -s myproxy.grif.fr -l nagios  -x -Z &amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=cclcgvmli03.in2p3.fr&amp;quot;&lt;br /&gt;
&lt;br /&gt;
= Annexe 1 =&lt;br /&gt;
 rpm -ivh http://www.sysadmin.hep.ac.uk/rpms/egee-SA1/centos5/x86_64/sa1-release-2-1.el5.noarch.rpm&lt;br /&gt;
 rpm -ivh  http://packages.sw.be/rpmforge-release/rpmforge-release-0.5.1-1.el5.rf.x86_64.rpm&lt;br /&gt;
&lt;br /&gt;
 yum install atp&lt;br /&gt;
 yum install bouncycastle&lt;br /&gt;
 yum install broker&lt;br /&gt;
 yum install broker-cache&lt;br /&gt;
 yum install dcache-srmclient&lt;br /&gt;
 yum install dummy-ca-certs&lt;br /&gt;
 yum install egee-NAGIOS&lt;br /&gt;
 yum install egee-NAGIOS egee-NRPE&lt;br /&gt;
 yum install egee-NRPE&lt;br /&gt;
 yum install fetch-crl&lt;br /&gt;
 yum install fipscheck fipscheck-lib&lt;br /&gt;
 yum install glite-UI&lt;br /&gt;
 yum install glite-security-voms-clients&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install glite-yaim-core&lt;br /&gt;
 yum install glite-yaim-nagios&lt;br /&gt;
 yum install httpd&lt;br /&gt;
 yum install jdk&lt;br /&gt;
 yum install lcg-CA&lt;br /&gt;
 yum install lcg-CA egee-NAGIOS&lt;br /&gt;
 yum install lcg_util&lt;br /&gt;
 yum install mddb&lt;br /&gt;
 yum install msg-publish-simple&lt;br /&gt;
 yum install myproxy&lt;br /&gt;
 yum install mysql-client&lt;br /&gt;
 yum install mysql-server&lt;br /&gt;
 yum install nagios-proxy-refresh&lt;br /&gt;
 yum install perl-Config-Tiny&lt;br /&gt;
 yum install perl-DBD-MySQL&lt;br /&gt;
 yum install perl-rrdtool-1.3.8-2.el5.rf.x86_64&lt;br /&gt;
 yum install python-yaml&lt;br /&gt;
 yum install sun-jaf&lt;br /&gt;
 yum install uberftp-client&lt;br /&gt;
 yum install vdt_globus_rm_client&lt;br /&gt;
&lt;br /&gt;
 yum update glite-yaim-clients&lt;br /&gt;
 yum update glite-yaim-core&lt;br /&gt;
 yum update glite-yaim-nagios&lt;br /&gt;
 yum update mysql-server&lt;br /&gt;
 yum update perl-DBI&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe2 =&lt;br /&gt;
a)Mot de passe admin mysql :&lt;br /&gt;
Yum pour recupérer la derniere version de Mysql :&lt;br /&gt;
&#039;&#039;MySQL-server-community&#039;&#039;, ne pas oublier le client (pas de dépendance dessus)&lt;br /&gt;
Demmarrage de mysql avec --skip-grant-tables (pour ne pas avoir de mot de passe a rentrer)&lt;br /&gt;
 mysqld_safe --skip-grant-tables &amp;amp;&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root &lt;br /&gt;
 update user set password=PASSWORD(&amp;quot;NEW-ROOT-PASSWORD&amp;quot;) where User=&#039;root&#039;;&lt;br /&gt;
&lt;br /&gt;
b)creation des users pour le nagios regional:&lt;br /&gt;
 [root@cclcgvmli03 ~]# mysql -u root -p&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON nagios.* TO &#039;ndouser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 mysql&amp;gt; GRANT SELECT, INSERT, UPDATE, DELETE ON atp.* TO &#039;atpuser&#039;@&#039;localhost&#039; IDENTIFIED by &#039;ROCfr2009&#039;;&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
= Annexe 3 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /etc/ncg/ncg.localdb&lt;br /&gt;
 #&lt;br /&gt;
 # Local Rules file to modify NCG configuration&lt;br /&gt;
 #&lt;br /&gt;
 SITE!AUVERGRID&lt;br /&gt;
 SITE!CGG-LCG2&lt;br /&gt;
 SITE!ESRF&lt;br /&gt;
 SITE!GRIF&lt;br /&gt;
 SITE!IBCP-GBIO&lt;br /&gt;
 SITE!IN2P3-CC&lt;br /&gt;
 SITE!IN2P3-CC-PPS&lt;br /&gt;
 SITE!IN2P3-CC-T2&lt;br /&gt;
 SITE!IN2P3-CPPM&lt;br /&gt;
 SITE!IN2P3-IPNL&lt;br /&gt;
 SITE!IN2P3-IRES&lt;br /&gt;
 SITE!IN2P3-LAPP&lt;br /&gt;
 SITE!IN2P3-LPC&lt;br /&gt;
 SITE!IN2P3-LPSC&lt;br /&gt;
 SITE!IN2P3-SUBATECH&lt;br /&gt;
 SITE!IPSL-IPGP-LCG2&lt;br /&gt;
 SITE!M3PEC&lt;br /&gt;
 SITE!MSFG&lt;br /&gt;
 SITE!MSFG-MULTI&lt;br /&gt;
 SITE!MSFG-OPEN&lt;br /&gt;
 SITE!OBSPM&lt;br /&gt;
 SITE!PARIS-UREC-IPV6&lt;br /&gt;
 SITE!SN-UCAD&lt;br /&gt;
 SITE!ROC-FR&lt;br /&gt;
 SITE!SOLEIL&lt;br /&gt;
 SITE!StratusLab&lt;br /&gt;
 [root@cclcgvmli03 ~]#&lt;br /&gt;
 &lt;br /&gt;
= Annexe 4 =&lt;br /&gt;
&lt;br /&gt;
 SITE_EMAIL=c.leroy@cea.fr&lt;br /&gt;
 SITE_NAME=ROC-FR&lt;br /&gt;
 RB_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 WMS_HOST=node04.datagrid.cea.fr&lt;br /&gt;
 PX_HOST=myproxy.grif.fr&lt;br /&gt;
 BDII_HOST=topbdii.grif.fr&lt;br /&gt;
 SITE_BDII_HOST=bdii.grif.fr&lt;br /&gt;
 MON_HOST=node06.datagrid.cea.fr&lt;br /&gt;
 VOS=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 DTEAM_GROUP_ENABLE=&amp;quot;dteam&amp;quot;&lt;br /&gt;
 VO_DTEAM_SW_DIR=$VO_SW_DIR/dteam&lt;br /&gt;
 VO_DTEAM_DEFAULT_SE=$SE_HOST&lt;br /&gt;
 VO_DTEAM_STORAGE_DIR=$CLASSIC_STORAGE_DIR/dteam&lt;br /&gt;
 VO_DTEAM_VOMS_SERVERS=&#039;vomss://voms.cern.ch:8443/voms/dteam?/dteam/&#039;&lt;br /&gt;
 VO_DTEAM_VOMSES=&amp;quot;&#039;dteam lcg-voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=lcg-voms.cern.ch dteam 24&#039; &#039;dteam    voms.cern.ch 15004 /DC=ch/DC=cern/OU=computers/CN=voms.cern.ch dteam 24&#039;&amp;quot;&lt;br /&gt;
 VO_DTEAM_VOMS_CA_DN=&amp;quot;&#039;/DC=ch/DC=cern/CN=CERN Trusted Certification Authority&#039; &#039;/DC=ch/DC=cern/CN=CERN Trusted   Certification Authority&#039;&amp;quot;&lt;br /&gt;
 NAGIOS_HOST=cclcgvmli03.in2p3.fr&lt;br /&gt;
 NAGIOS_ADMIN_DNS=&amp;quot;/O=GRID-FR/C=FR/O=CEA/OU=IRFU/CN=Christine Leroy&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CC-LYON/CN=Nadia Lajili&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=LPC/CN=Emmanuel Medernach&amp;quot;,&amp;quot;/O=GRID-FR/C=FR/O=CNRS/OU=CPPM/CN=Juan Carlos Carranza&amp;quot;&lt;br /&gt;
 NAGIOS_NCG_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_NAGIOS_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_GOCDB_ROC_NAME=France&lt;br /&gt;
 ROC_NAME=France&lt;br /&gt;
 NCG_PROBES_TYPE=remote,native,local&lt;br /&gt;
 NCG_VO=dteam&lt;br /&gt;
 NAGIOS_MYPROXY_NAME=nagios_roc_fr2&lt;br /&gt;
 NAGIOS_MYPROXY_USER=nagios&lt;br /&gt;
 MSG_BROKER_CACHE_NETWORK=PROD&lt;br /&gt;
 NAGIOS_ROLE=roc&lt;br /&gt;
 NAGIOS_HTTPD_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_SUDO_ENABLE_CONFIG=true&lt;br /&gt;
 NAGIOS_CGI_ENABLE_CONFIG=true&lt;br /&gt;
 NCG_LDAP_FILTER=GlueSiteOtherInfo=EGEE_ROC=France&lt;br /&gt;
 NAGIOS_DB_PASS=x&lt;br /&gt;
 NAGIOS_NSCA_PASS=x&lt;br /&gt;
 MYSQL_ADMIN=x&lt;br /&gt;
 ATP_DB_PASS=x&lt;br /&gt;
 MDDB_DB_PASS=x&lt;br /&gt;
 MS_DB_PASS=x&lt;br /&gt;
 MYSQL_PASSWORD=x&lt;br /&gt;
 MYEGEE_DB_PASS=x&lt;br /&gt;
&lt;br /&gt;
= Annexe 5 =&lt;br /&gt;
&lt;br /&gt;
 [root@cclcgvmli03 ~]# cat /opt/glite/yaim/examples/edgusers.conf&lt;br /&gt;
 11151:${DPMMGR_USER}:11151:${DPMMGR_GROUP}:DPM user:&lt;br /&gt;
 11152:${EDG_USER}:11152,11156:${EDG_GROUP},${INFOSYS_GROUP}:EDG user:${EDG_HOME_DIR}&lt;br /&gt;
 11153:${EDGINFO_USER}:11153,1156:${EDGINFO_USER},${INFOSYS_GROUP}:EDG info user:${EDGINFO_HOME_DIR}&lt;br /&gt;
 11154:${RGMA_USER}:11154,1156:${RGMA_GROUP},${INFOSYS_GROUP}:RGMA user:${INSTALL_ROOT}/glite/etc/rgma&lt;br /&gt;
 11155:${GLITE_USER}:11155:${GLITE_GROUP}:gLite user:${GLITE_HOME_DIR}&lt;br /&gt;
 11156:${BDII_USER}:11158:${BDII_GROUP}:BDII user:${BDII_HOME_DIR}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Annexe 6 =&lt;br /&gt;
&lt;br /&gt;
Probleme rencontré sur ccnagboxli01 (arret de ypbind + rpm manquant)&lt;br /&gt;
 chown -R nagios:nagios /var/spool/pnp4nagios&lt;br /&gt;
 chown -R nagios:nagios /var/spool/msg-nagios-bridge&lt;br /&gt;
 chown root:nagios /etc/atp/atp_db.conf&lt;br /&gt;
 chown root:nagios /etc/mddb/databases.yml&lt;br /&gt;
 chown nagios:apache /var/nagios/rw&lt;br /&gt;
 chown -R nagios:apache /var/nagios/rw&lt;br /&gt;
 chown root:nagios /etc/nagios/plugins/send_to_db.ini&lt;br /&gt;
 chown -R nagios:nagios /var/cache/msg/config-cache&lt;br /&gt;
 chown -R nagios:root /var/log/mddb&lt;br /&gt;
 chown -R nagios:root /var/log/pnp4nagios&lt;br /&gt;
 chown -R nagios:root /var/log/nagios&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
  useradd -g 40011 -u 10011 nagios&lt;br /&gt;
  useradd --group mysql -u 2730 mysql&lt;br /&gt;
  useradd -g mysql -u 2730 mysql&lt;br /&gt;
&lt;br /&gt;
   groupadd -g 40010 nagiosmaster&lt;br /&gt;
   groupadd -g 146 leftuser&lt;br /&gt;
&lt;br /&gt;
 yum install glite-security-voms-api-c-1.8.12-2.sl5.x86_64&lt;br /&gt;
 yum update perl-Net-SSLeay&lt;br /&gt;
 yum update perl-IO-Socket-SSL-1.01-1.fc6.noarch&lt;br /&gt;
 yum install glite-wms-ui-commands&lt;br /&gt;
 yum install lcg_util-1.7.6-1.sl5.x86_64&lt;br /&gt;
 yum install GFAL-client-1.11.8-2.sl5.x86_64 GFAL-client-1.11.8-2.sl5.i386&lt;br /&gt;
 yum install CGSI_gSOAP_2.7-1.3.3-1.sl5.x86_64&lt;br /&gt;
 yum install LFC-interfaces-1.7.3-1sec.sl5.x86_64 LFC-client-1.7.3-1sec.sl5.x86_64 lcg-dm-common-1.7.3-1sec.sl5.x86_64&lt;/div&gt;</summary>
		<author><name>LEROY</name></author>
	</entry>
</feed>