Services: verschil tussen versies

Uit Hackerspace Bitlair

Geen bewerkingssamenvatting
Β 
(34 tussenliggende versies door 4 gebruikers niet weergegeven)
Regel 7: Regel 7:
The following SSID's are available inside and outside of the space:
The following SSID's are available inside and outside of the space:


* Bitlair-2GHz (2.4GHz-only WPA2-enterprise)
* <s>Bitlair-2GHz (2.4GHz-only WPA2-enterprise)</s> (Niet meer actief in space4)
* Bitlair-5GHz (5GHz-only WPA2-enterprise)
* <s>Bitlair-5GHz (5GHz-only WPA2-enterprise)</s> (Niet meer actief in space4)
* Bitlair-things (2.4GHz/5GHz WPA2-PSK network for "Internet of Things"). The PSK is available in the space. Filtered.
* spacenet (WPA2-enterprise federated authentication across hackerspaces)
* spacenet (WPA2-enterprise federated authentication across hackerspaces)
* eduroam (WPA2-enterprise federated authentication for educational organisations)
* DJOAMERSFOORT (WPA2-PSK)


General WPA2-enterprise settings for Bitlair-networks and spacenet for Bitlair members:
General WPA2-enterprise settings for Bitlair-networks and spacenet for Bitlair members:


* Phase 1: EAP-TTLS or PEAP
* Phase 1: EAP-TTLS
* Phase 2: PAP or MSCHAPv2 or EAP-MSCHAPv2
* Phase 2: PAP
* CHECK THE CERTIFICATE! Check both the CA and the subject.
* CHECK THE CERTIFICATE! Check both the CA and the subject.
** Certificate signed by CA: StartCom
** Certificate signed by CA: ISRG Root X1 (Let's Encrypt!)
** Certificate subject: radius.bitlair.nl
** Certificate subject: radius.bitlair.nl


Regel 34: Regel 37:


=== Wired access ===
=== Wired access ===
At many places in the space we are offering GigE 802.3af PoE wired network access. Please find the nearest outlet. If your MAC-address is not known in our LDAP server you will be dropped in VLAN 10 (IPv4: 192.168.10.0/24 - DJO), otherwise you will be dropped in VLAN 89 (IPv4: 192.168.89.0/24 - Bitlair clients). VLAN 89 is the client VLAN where all of the other Bitlair clients reside.
At many places in the space we are offering GigE 802.3af PoE wired network access. Please find the nearest outlet or network cable.
Β 
<!--If your MAC-address is not known in our LDAP server you will be dropped in VLAN 10 (IPv4: 192.168.10.0/24 - DJO), otherwise you will be dropped in VLAN 89 (IPv4: 192.168.89.0/24 - Bitlair clients). VLAN 89 is the client VLAN where all of the other Bitlair clients reside.!-->


== shell.bitlair.nl ==
== shell.bitlair.nl ==
Regel 42: Regel 47:
* Hostname: shell.bitlair.nl
* Hostname: shell.bitlair.nl
* Username: <your nickname>
* Username: <your nickname>
* Password: <your personal password>
* Password: <your account password>
Β 
Alternatively, the shell server accepts the SSH key configured through [https://password.bitlair.nl password.bitlair.nl].


== dashboard.bitlair.nl ==
== dashboard.bitlair.nl ==
Grafana frontend for statistics of Bitlair. Running on Portal VM.
[[Dashboard]]
Β 
* For dashboard see https://dashboard.bitlair.nl/
* Grafana install is linked to LDAP. Use your LDAP credentials to login and create your own dashboards.
Β 
== kvm.bitlair.nl ==
This machine is running all of the VM's.
Β 
* for support on this machine ask AK47, Wilco or polyfloyd


== music.bitlair.nl ==
== music.bitlair.nl ==
See [[Projects/Muzieksysteem]]. https://music.bitlair.nl. Only reachable from local network.
[[Muziek]]


== service.bitlair.nl ==
== bank.bitlair.nl ==
VM running backend for spacestate. Also see [[Projects/spacestate]].
[[RevBank]]


== bank.bitlair.nl ==
== ldap.bitlair.nl ==
VM running RevBank software.
External and internal authentication machine running OpenLDAP.


== aaa.bitlair.nl ==
== aaa.bitlair.nl ==
External and internal authentication machine running these services:
FreeRADIUS (for 802.1X/spacenet) server.
* RADIUS
* OpenLDAP


== pbx.bitlair.nl ==
== pbx.bitlair.nl ==
VM running Asterisk for external phone number and connecting Cisco 79xx phones in the space.
VM running Asterisk for external phone number and connecting Cisco 79xx phones in the space.


== metrics.bitlair.nl ==
== wiki.bitlair.nl ==
VM running Graphite as backend for dashboard.bitlair.nl.
[[Wiki]]
Β 
== cyber.bitlair.nl ==
This VM hosts the public wiki (bitlair.nl).


== git.bitlair.nl ==
== git.bitlair.nl ==
Hosting https://git.bitlair.nl. This VM is used for private Git repo's. Your can login here with your LDAP credentials.
Hosting https://git.bitlair.nl. This VM is used for private Git repo's. Your can login here with your LDAP credentials.


== portal.bitlair.nl ==
== mqtt.bitlair.nl ==
https://portal.bitlair.nl/
[[MQTT]]
Β 
== lights.bitlair.nl ==
VM running ArtNet scripts for LED visualisation.


Bitlair member/friend portal, see [[Projects/Portal]].
== pad.bitlair.nl ==
Etherpad: collaborative text editing service.


== 3dprinter.bitlair.nl ==
== vps.bitlair.nl ==
https://3dprinter.bitlair.nl - 3D printing frontend
External VPS running several services:


== mqtt.bitlair.nl ==
* Email
VM running MQTT software for metrics of Bitlair.
* Mailing lists: https://list.bitlair.nl
Β 
== doorpi.bitlair.nl ==
OrangePi used for interfacing with Arduino's of Doorsystem.Β  (not deployed at Bitlair3)
Β 
== bank-pi.bitlair.nl ==
RaspberryPi running SSH-client to bank.bitlair.nl - frontend for RevBank.
Β 
== lasercutter.bitlair.nl (IPv4 only) ==
LAOS board controller lasercutter.


== lights.bitlair.nl ==
== lasercam.bitlair.nl ==
VM running ArtNet scripts for LED visualisation.
RaspberryPi running webcam for lasercutter.


== yolo.bitlair.nl ==
== dagobert.bitlair.nl ==
VM running several public services:
RaspberryPi running safety/accounting for lasercutter.


* https://pad.bitlair.nl
== 2D-Printer ==
* https://paste.bitlair.nl
[[Gereedschap/Laserprinter]]
* https://member.bitlair.nl (to be phased out)

Huidige versie van 23 jan 2026 09:50

Network services

Getting local network access

Inside and outside of the space we are offering wireless and wired network access. IPv4 address-assignment is done via RFC1918 and NAT, for IPv6 we are using a HE.net-tunnel to give you a publicly routable IPv6 address.

Wireless access

The following SSID's are available inside and outside of the space:

  • Bitlair-2GHz (2.4GHz-only WPA2-enterprise) (Niet meer actief in space4)
  • Bitlair-5GHz (5GHz-only WPA2-enterprise) (Niet meer actief in space4)
  • Bitlair-things (2.4GHz/5GHz WPA2-PSK network for "Internet of Things"). The PSK is available in the space. Filtered.
  • spacenet (WPA2-enterprise federated authentication across hackerspaces)
  • eduroam (WPA2-enterprise federated authentication for educational organisations)
  • DJOAMERSFOORT (WPA2-PSK)

General WPA2-enterprise settings for Bitlair-networks and spacenet for Bitlair members:

  • Phase 1: EAP-TTLS
  • Phase 2: PAP
  • CHECK THE CERTIFICATE! Check both the CA and the subject.
    • Certificate signed by CA: ISRG Root X1 (Let's Encrypt!)
    • Certificate subject: radius.bitlair.nl

As a Bitlair-member:

  • Bitlair networks: Use your LDAP credentials to login.
  • spacenet: use your LDAP credentials with the "@bitlair.nl"-realm to login. Also use this profile to get network access at other spaces.

As a guest:

  • Bitlair networks:
    • Username: guest
    • Password: eurosnoeren
  • spacenet: if you have a spacenet account from another hackerspace you can use these credentials to login. You should have received the correct phase 1/2 settings from your hackerspace.

For more information about connecting check these howto's: https://spacefed.net/wiki/index.php/Category:Howto/Spacenet

Wired access

At many places in the space we are offering GigE 802.3af PoE wired network access. Please find the nearest outlet or network cable.


shell.bitlair.nl

For Bitlair members & friends we are offering a shell server which is hosted inside Bitlair. It is reachable over IPv4 and/or IPv6.

  • Methods: SSH
  • Hostname: shell.bitlair.nl
  • Username: <your nickname>
  • Password: <your account password>

Alternatively, the shell server accepts the SSH key configured through password.bitlair.nl.

dashboard.bitlair.nl

Dashboard

music.bitlair.nl

Muziek

bank.bitlair.nl

RevBank

ldap.bitlair.nl

External and internal authentication machine running OpenLDAP.

aaa.bitlair.nl

FreeRADIUS (for 802.1X/spacenet) server.

pbx.bitlair.nl

VM running Asterisk for external phone number and connecting Cisco 79xx phones in the space.

wiki.bitlair.nl

Wiki

git.bitlair.nl

Hosting https://git.bitlair.nl. This VM is used for private Git repo's. Your can login here with your LDAP credentials.

mqtt.bitlair.nl

MQTT

lights.bitlair.nl

VM running ArtNet scripts for LED visualisation.

pad.bitlair.nl

Etherpad: collaborative text editing service.

vps.bitlair.nl

External VPS running several services:

doorpi.bitlair.nl

OrangePi used for interfacing with Arduino's of Doorsystem. (not deployed at Bitlair3)

bank-pi.bitlair.nl

RaspberryPi running SSH-client to bank.bitlair.nl - frontend for RevBank.

lasercutter.bitlair.nl (IPv4 only)

LAOS board controller lasercutter.

lasercam.bitlair.nl

RaspberryPi running webcam for lasercutter.

dagobert.bitlair.nl

RaspberryPi running safety/accounting for lasercutter.

2D-Printer

Gereedschap/Laserprinter