Difference between revisions of "Network"

2,428 bytes added ,  00:56, 13 January 2023
no edit summary
 
(85 intermediate revisions by 7 users not shown)
Line 2: Line 2:
''For more information about sudo room's systems in general, see [[Systems Administration]]''
''For more information about sudo room's systems in general, see [[Systems Administration]]''


The sudo room '''network''' provides internal networking, internet access, wireless service, and some externally accessible devices or services. Information about the various devices in use and their configuration is available below.
The sudo room '''network''' provides internal networking, internet access, wireless service, and some externally accessible devices or services.


== peoplesopen.net ==
== Main PoE ethernet switch ===


If you wish to connect to the local mesh network [https://peoplesopen.net peoplesopen.net], then you can either connect using the peoplesopen.net wifi network, or you can connect using ethernet through the D-Link DIR-601A router on the shelf next to the main switch. Use DHCP to get a 10.0.0.0/8 IP address on the mesh network. The router will handle the meshing protocol for you and also provide you with normal Internet access.
* HP ProCurve 2910al-480-PoE+ switch [https://github.com/wwwhtml/hp-2910al-switch-firmware-upgrade/ How to manage / firmware update]
* username: manager or operator
* password: Ask juul or someone on the sysadmins list
* MAC address main switch: a0:b3:cc:ac:e7:c0
* MAC address backup switch (not turned on): c0:91:34:c4:12:00
* Port 1 is VLAN 1 untagged, acting as DHCP client, is management VLAN
* Management possible via HTTP (no SSL) or SSH
* Port 1 is for management, untagged no VLAN and requests an IP using DHCP (not plugged into anything right now)
* Port 2 and 3 are for tagged access to VLANs 2 and 3 (public and private)
* Ports 4 to 24 are for untagged access to VLAN 2 (public)
* Ports 25 to 48 are for untagged access to VLAN 3 (private)


== Routing ==
== WAN ==
* [[Router/Config/Interface|Configure Interface Addresses]]
* [[Router/Config/PortForward|Open a port to the outside world]]


== Network Info ==
Internet access comes from LMI. The modem is connected through VDSL copper next to the Omni main electrical panels.
{|class="altop"
 
|
The modem is up in the rack area near '''saros''' (a desktop computer running Debian Stretch) which serves as the primary gateway router.
=== External ===
 
==== Addresses ====
Our public IP is 142.254.26.9 aka '''room.sudoroom.org'''.
 
== LAN ==
* Wifi subnet: 100.64.64.0/22
** 100.64.64.2 to 100.64.64.49: legacy static range
** 100.64.64.50 to 100.64.67.250: DHCP
* Wired subnet: 192.168.0.0/16
** 192.168.1.2 to 192.168.41.254: unused for now
** 192.168.42.2 to 192.168.49.254: self assigned static range
** 192.168.50.1 to 192.168.200.254: DHCP
 
This list of static IPs may not be complete. Before choosing a static IP, please use ping or nmap to check it first.


Our public IP is 142.254.24.110
By request, we can reserve an IP from the DHCP pool and/or forward ports for you. Please send the MAC address and/or desired ports to [mailto:sysadmins@omnicommons.org sysadmins@omnicommons.org]


=== Internal ===
{| class="wikitable sortable blue_lines"
==== Ranges ====
|+ Machines with static IPs
* 192.168.0.0/24 (Internal)
! style="width:120px;" data-sort-type="IPAddress" | IPv4 Address
==== Addresses ====
! style="width:110px;" data-sort-type="IPAddress" | IPv6 or MAC Address
{| class="wikitable blue_lines"
! style="width:110px;" | Assigned to
!style="width:100px;"| IP Address
! class="unsortable" | Notes
!style="width:200px;"| Assigned to
! Who set it up?
!Notes
|-
|-
| 192.168.1.1
| 192.168.42.1
| horchata
|
| Cisco 515 Firewall
| saros
| router
| [[User:yar|Yar]]
|-
|-
| 192.168.1.2
| 100.64.64.1
| tamale
|
| a raspberry pi on the wall
| saros
| router
| [[User:yar|Yar]]
|-
|-
| 192.168.1.3
| 192.168.42.2
| space
| fd4f:dc5d:8d1::1
| [[Space_Server|"Space"]] laptop with local DNS/music/fileserver
| [[space.local]]
| Former gateway/router. Located in the sudo room server "room".
| maxb and somebody
|-
|-
| 192.168.1.5
| 100.64.64.11
| mchawking
|
| wheelchair robot
| omnidoor
| beaglebone black controlling the door
| juul and jake
|-
|-
| 192.168.1.6
| 100.64.64.82
| sudochan1
| b8:27:eb:14:14:36
| Asus RT-N10+ Access Point (OpenWRT) on 2.4 ghz channel 1
| vending2.local
| [[Hack-o-mat| Snackshop II vending machine]]
| [[User:jake|jake]]
|-
|-
| 192.168.1.7
| 192.168.42.3
| sudochan6
| No IPv6 address
| Asus RT-N10+ Access Point (OpenWRT) on 2.4 ghz channel 6
| No host name
| Dell PowerConnect 5324 24 port gigabit switch
| juul
|-
|-
| 192.168.1.8
| 192.168.42.4
| bro
| No IPv6 address
| [[Brother_HL-2270DW]] b&w laser printer
| No host name
| Dell PowerConnect 5448 48 port gigabit switch
| juul
|-
|-
| 192.168.1.9
| 192.168.42.10
| printmagic
|  
| 3d printer desktop computer
| nodeconf.local
| The sudo mesh node configuration and build server
| Primarily [[User:Juul|juul]] and maxb
|-
|-
| 192.168.1.21
| 100.64.64.88
| datasink
| 00:21:b7:80:59:47
| The mesh storage server
| ET0021B7805947.local
| [[Lexmark T654dn | Lexmark T654dn laser printer]]
| [[User:Jerkey|jerkey]]
|-
|-
| 192.168.1.30
| 192.168.42.12
| the printer
|  
| In desperate need of a cute name.
|
| [[Brother_HL-2270DW| Brother HL-2270DW laser printer]] (wifi)
| [[User:Yar|yar]]
|-
|-
| 192.168.1.42
| 100.64.64.20
| quesa
| 00:21:9b:1d:85:c1
| the raspi controlling the door downstairs on 22nd street
| wasp.local
| [[Wasp.local| 3d printer desktop computer & giant_robot_arm serial host]]
| [[User:jake|jake]]
|-
|-
| 192.168.1.48
| 100.64.64.27
| wolfypi
| C0:3F:D5:6F:25:68
| future dns and other network services
| orangenuk.local
| [[bigtv| orange fanless PC connected to the big TV above skülgaard]]
| [[User:jake|jake]]
|-
|-
| 192.168.1.49
| 100.64.65.229
| e1000
| c0:8a:de:1d:59:b6
| Cisco E1000 AP running dd-wrt
|  
| ruckus_wifi_controller [https://github.com/sudoroom/ruckus-zonedirector1100-firmware-upgrade-process firmware upgrade process]
| daniel
|-
|-
! 192.168.1.50-254
!colspan=2| '''DHCP'''
|}
|}
|}


== Wireless Access Points ==
== Wireless Access Points ==
All of the indoor wifi is being served up by [[Mesh/OmniWifi|TP-Link N750 routers modified for PoE]] running OpenWRT and configured as bridges with static IPs.
{| class="wikitable blue_lines"
{| class="wikitable blue_lines"
!SSID
!SSID
Line 96: Line 140:
!Location
!Location
!Hardware
!Hardware
!Who set it up?
|-
|peoplesopen.net-omniroof
|open
|''n/a''
|Find Me
|100.64.64.4
|161 (5ghz)
|On flagpole on roof
|Ubiquiti NanoBeam
|[[User:Juul|juul]]
|-
|peoplesopen.net
|open
|''n/a''
|Find Me
|100.64.64.2
|11 (2.4ghz) and 36 (5ghz)
|Above entrance to CCL
|TP-Link N750
|[[User:Juul|juul]]
|-
|-
|sudoroom
|peoplesopen.net
|open
|open
|''n/a''
|''n/a''
|Find Me
|Find Me
|192.168.1.49
|100.64.64.3
|fine me
|6 (2.4ghz) and 165 (5ghz)
|Wire Rack above Teclo Closet
|middle of basement
|Linksys E1000
|TP-Link N750
|}
|[[User:Juul|juul]]
|-
|sudomesh
|open
|''n/a''
|Find Me
|192.168.42.18
|11
|zip-tied near server rack
|Ubiquiti Nanostation M2 Loco
|[[User:Juul|juul]]
|-
|Omni Ballroom
|open
|''n/a''
|Find Me
|192.168.42.19
|11
|Ballroom near stage
|Ubiquiti Picostation 2
|[[User:Maxb|maxb]]
}
 
[[Category:Network]]