Services: Difference between revisions

From Hackerspace Amersfoort
Jump to navigation Jump to search
No edit summary
No edit summary
Line 1: Line 1:
= Services =
= Network services =


== shell.bitlair.nl ==
== Getting local network access ==
* hostname: shell.bitlair.nl
Inside and outside of the space we are offering wireless and wired network access. IPv4 address-assignment is done via RFC1918 and NAT, for IPv6 we are using a HE.net-tunnel to give you a publicly routable IPv6 address.
* username: <your personal one>
 
* password: <your personal one>
=== Wireless access ===
The following SSID's are available inside and outside of the space:
 
* Bitlair-2GHz (2.4GHz-only WPA2-enterprise)
* Bitlair-5GHz (5GHz-only WPA2-enterprise)
* spacenet (WPA2-enterprise federated authentication across hackerspaces)
 
General WPA2-enterprise settings for Bitlair-networks and spacenet for Bitlair members:
 
* Phase 1: EAP-TTLS or PEAP
* Phase 2: PAP or MSCHAPv2 or EAP-MSCHAPv2
* CHECK THE CERTIFICATE! Check both the CA and the subject.
** Certificate signed by CA: StartCom
** Certificate subject: radius.bitlair.nl
 
As a Bitlair-member:
 
* Bitlair networks: Use your LDAP credentials to login.
* spacenet: use your LDAP credentials with the "@bitlair.nl"-realm to login. Also use this profile to get network access at other spaces.
 
As a guest:
 
* Bitlair networks:
** Username: guest
** Password: eurosnoeren
* spacenet: if you have a spacenet account from another hackerspace you can use these credentials to login. You should have received the correct phase 1/2 settings from your hackerspace.
 
For more information about connecting check these howto's: https://spacefed.net/wiki/index.php/Category:Howto/Spacenet
 
=== Wired access ===
At many places in the space we are offering 10/100Mbit/s wired network access. Please find the nearest outlet. If your MAC-address is not known in our LDAP server you will be dropped in VLAN 10 (IPv4: 192.168.10.0/24 - DJO), otherwise you will be dropped in VLAN 89 (IPv4: 192.168.89.0/24 - Bitlair clients). VLAN 89 is the client VLAN where all of the other Bitlair clients reside.
 
We have a limited availability of GigE ports. You can request one or two if needed.
 
== shell.bitlair.nl (currently down) ==
For Bitlair members we are offering a shell server.
 
* Methods: SSH
* Hostname: shell.bitlair.nl
* Username: <your personal one>
* Password: <your personal one>


== stats.bitlair.nl ==
== stats.bitlair.nl ==
This machine is used for all statistics inside and outside the space. The machine uses Graphite, rrdtool to generate graphs.
This machine is used for all statistics inside and outside the space. The machine uses RRDTool to generate graphs.


* Power usage in the space https://stats.bitlair.nl/
* Power and gas usage in the space https://stats.bitlair.nl/
* Graphite dashboard: https://stats.bitlair.nl/dashboard/
* Weather station https://stats.bitlair.nl/weatherstation/
** Some of the information in the graphs still has some problems


== kvm.bitlair.nl ==
== kvm.bitlair.nl ==
The machine is used to run all the vm's
This machine is running all of the VM's.


* for support on this machine ask AK47, Wilco or zarya
* for support on this machine ask AK47, Wilco or zarya
Line 23: Line 60:


== service.bitlair.nl ==
== service.bitlair.nl ==
More info needed
VM running backend for spacestate and bank-system.


== aaa.bitlair.nl ==
== aaa.bitlair.nl ==
External and internal authentication machine
External and internal authentication machine running these services:
* Radius
* RADIUS
* OpenLDAP
* OpenLDAP

Revision as of 20:36, 19 January 2014

Network services

Getting local network access

Inside and outside of the space we are offering wireless and wired network access. IPv4 address-assignment is done via RFC1918 and NAT, for IPv6 we are using a HE.net-tunnel to give you a publicly routable IPv6 address.

Wireless access

The following SSID's are available inside and outside of the space:

  • Bitlair-2GHz (2.4GHz-only WPA2-enterprise)
  • Bitlair-5GHz (5GHz-only WPA2-enterprise)
  • spacenet (WPA2-enterprise federated authentication across hackerspaces)

General WPA2-enterprise settings for Bitlair-networks and spacenet for Bitlair members:

  • Phase 1: EAP-TTLS or PEAP
  • Phase 2: PAP or MSCHAPv2 or EAP-MSCHAPv2
  • CHECK THE CERTIFICATE! Check both the CA and the subject.
    • Certificate signed by CA: StartCom
    • Certificate subject: radius.bitlair.nl

As a Bitlair-member:

  • Bitlair networks: Use your LDAP credentials to login.
  • spacenet: use your LDAP credentials with the "@bitlair.nl"-realm to login. Also use this profile to get network access at other spaces.

As a guest:

  • Bitlair networks:
    • Username: guest
    • Password: eurosnoeren
  • spacenet: if you have a spacenet account from another hackerspace you can use these credentials to login. You should have received the correct phase 1/2 settings from your hackerspace.

For more information about connecting check these howto's: https://spacefed.net/wiki/index.php/Category:Howto/Spacenet

Wired access

At many places in the space we are offering 10/100Mbit/s wired network access. Please find the nearest outlet. If your MAC-address is not known in our LDAP server you will be dropped in VLAN 10 (IPv4: 192.168.10.0/24 - DJO), otherwise you will be dropped in VLAN 89 (IPv4: 192.168.89.0/24 - Bitlair clients). VLAN 89 is the client VLAN where all of the other Bitlair clients reside.

We have a limited availability of GigE ports. You can request one or two if needed.

shell.bitlair.nl (currently down)

For Bitlair members we are offering a shell server.

  • Methods: SSH
  • Hostname: shell.bitlair.nl
  • Username: <your personal one>
  • Password: <your personal one>

stats.bitlair.nl

This machine is used for all statistics inside and outside the space. The machine uses RRDTool to generate graphs.

kvm.bitlair.nl

This machine is running all of the VM's.

  • for support on this machine ask AK47, Wilco or zarya

music.bitlair.nl

see Music system

service.bitlair.nl

VM running backend for spacestate and bank-system.

aaa.bitlair.nl

External and internal authentication machine running these services:

  • RADIUS
  • OpenLDAP