Category:Network

From Nottinghack Wiki
Jump to navigation Jump to search

Network Layout

This page will show the network topology & proposals for network expansion / modification.
This is images is outdated--'RepRap' Matt 11:21, 23 February 2012 (EST)

A
Hackspace Network

External IP address 92.27.7.173.

External domain address lspace.nottinghack.org.uk (DNS record looked after by 'RepRap' Matt)

Static & Reserved IP's

Currently there are three VLANs:

VLAN Network Description
1 192.168.1.0/24 Default
2 10.0.0.0/24 Main Hackspace network
3 192.168.0.0/24 Instrumentation projects
4 - Able / ADSL Modem (PPPoE)

The following ranges are reserved for there given purpose:

Start End Purpose
10.0.0.1 10.0.0.1 kryten The Main Router
10.0.0.2 10.0.0.19 Static Servers
10.0.0.20 10.0.0.29 Static Computers
10.0.0.40 10.0.0.49 Static Webcams
10.0.0.50 10.0.0.59 openVPN DHCP pool
10.0.0.90 10.0.0.99 Static Printers
10.0.0.100 10.0.0.254 DHCP Range
10.0.0.255 10.0.0.255 Broadcast
192.168.0.1 192.168.0.100 Static HackSpace Instrumentation

These are assigned via DHCP/MAC using Kryten or set statically on the device

VLAN IP DNS Name Notes
2
4
10.0.0.1 Kryten pfSense router on Collective
1
2
3
192.168.1.1
10.0.0.2
192.168.0.1
HollyVM Our always on server - VM running under Collective
2 10.0.0.3 Joshua Our "playful" games server
2 10.0.0.4 JARVIS Sandbox Debian VM open for all members
2 10.0.0.5 Rommie HMS Development VM
2 10.0.0.6 Workshop Workshop Wifi AP (channel 11)
2 10.0.0.7 Zyxel Additional Wifi AP (channel 1)
2 10.0.0.10 Collective ESXi Management Server
2 10.0.0.11 vCMA VMware vCenter Mobile Access runnning under Collective
10.0.0.12 HollyVM Holly VM running under Collective
1
2
192.168.1.6
10.0.0.15
Gibson Wifi RADIUS Server
2 10.0.0.21 yoocnc YooCNC desktop
2 10.0.0.40 studiocam Pan/Tilt Studio webcam
3 192.168.0.10 gatekeeper Access Control Arduino
3 192.168.0.11 MatrixMQTT BIG LED Matrix Display Arduino
3 192.168.0.12 Vending Machine RFID cashless payment nanode
3 192.168.0.13 Mini-matrix Blue room mini-matrix display nanode
3 192.168.0.14 Wall of Faces Wall of members faces
3 192.168.0.15 Studio Controller Lighting Controller (Studio)
3 192.168.0.16 Workshop Controller Lighting Controller (Workshop)
3 192.168.0.17 Studio Switch Panel Lighting Switch's (Studio)
3 192.168.0.18 Workshop Switch Panel Lighting Switch's (Workshop)
3 192.168.0.19 WorkshopMQTT Workshop Bell and Temp Node
2 10.0.0.90 marvin A4 Laser Printer
2 10.0.0.91 Clank A3 Laser Printer
2 10.0.0.92 B4 A4 InkJet with Scanner
1 192.168.1.2 ws-switch Workshop switch
1 192.168.1.3 Lore Workshop Wifi AP (channel 11)
1 192.168.1.4 st-switch Studio/BlueRoom switch
1 192.168.1.5 Data Studio/BlueRoom Wifi AP (channel 6)

(coming soon...)

External Port Routing

Service External Port Internal Port Internal IP Notes
HTTP 80 80 10.0.0.2 Webserver on Holly
HTTPS 443 443 10.0.0.2 HMS SSL Webserver on Holly
SSH 1921 22 10.0.0.2 SSH on Holly
SSH 1922 22 10.0.0.12 SSH on HollyVM

Server Naming

See here for our naming convention

Network Devices

Able

Able is Kryten's brother the Linksys ADSL2MUE modem that talks to the outside world.
Running in PPPoA bridge mode Kryten passes the talktalk login detail to Able.

Kryten

Kryten is VM on Collective running pfSense, it handles all our DHCP and routing from the external world.
It is connected to VLAN 4 for access to Able, and 2 for the main hackspace network.

The Nottinghack VLAN has access to local resources - e.g. a samba file-share on Jarvis, a future local dropbox server for projects & collaborations, a backup of all Web / Wiki files (to allow a remote restore in the event of moving hosts / outage of services) and anything else we don't want to be web facing.

The VPN (when enabled) would allow remote management of the VLANS, which could come in handy in the event of issues with the client WiFi access point.

Router management username & password for Authorised members only. If there something you need changing ask on the google group or speak to 'RepRap' Matt or Daniel directly

Usual rules apply, as to any tool - if you don't know how to use it / don't do anything :)

OpenVPN

Kryten runs our openVPN server for access to the hackspace network from the outside world.

For more details see the VPN page

WiFi

There are three WiFi networks:

HSNOTTS

WiFi for Hackspace SSID: HSNOTTS passcode uses WPA2 protocol AES encryption. Members only, passcode on request, changes to the passcode will be emailed to members only.

HSNOTTS_GUEST

WiFi for guests is setup as HSNOTTS_GUEST and passcode can be provided and this will (possibily at some point) run on a seperate VLAN.

spacenet

Cross-hackspace wireless network, using WPA2 Enterprise. Login using:
Username: <HMS-username>@nottinghack.org.uk
Password: <HMS-password>

For more details, see spacenet.

Servers

Holly

See Holly

Collective

See Collective

Joshua

Joshua loves to play games, Tic Tac Toe, Chess, Global Thermonuclear War... all the family favourites. We've co-opted him into running Quake II, Open Arena, Unreal Tournament & Counter Strike 1.5.
The aim is to have a games server running games suitable for clients running low powered netbooks & laptops. This allows us to run LAN parties & have more people join in, without having to bring gaming rigs from home. Also QII & Open Arena have open source install paths available, with Unreal & Counter Strike available at low cost.
Joshua is running Windows XP Pro on a 1GHz PIII with 512MB RAM & a RIVA TNT2 graphics card.
Impressive I know.

There are 2 user accounts -
"David" - not password protected, but limited access - suitable for web browsing / printing etc.
"Falken" - admin account - speak to Tony_S if you need the password.

Genral Use PC

Quorra

A powerful workstation with dual heads, Quorra is available for all members to use.

Printers

Marvin

Marvin the Paranoid Android

According to Marvin, "The first ten million years were the worst, and the second ten million years, they were the worst too. The third ten million I didn't enjoy at all. After that I went into a bit of a decline." Apparently, the best conversation he'd had was over 40 million years ago, and that was with a coffee machine.

The HP Laserjet 4 Plus is set up on 10.0.0.90 as marvin.
We have a few spare toners but donations towards paper usage are more than welcome.

Clank

The HP Laserjet 5Si is set up on 10.0.0.91 as clank.
The printer feeds A4 paper from tray 2 and A3 paper from tray 3.
A duplexer is installed enabling double-sided printing.

B4

The Brother MFC-5460CN is set up on 10.0.0.92 as B4.
Printing and copying in colour, and scanning via "Control Center 3" software on quorra when running WindowsXP.

Plotter

HP DesignJet 600 Not networked, but connected via serial or parallel interface to quorra

Websites

Nottinghack.org.uk

The main Nottinghack website is run for a dedicated linux server located in Florida provided by 'RepRap' Matt

This hosts the Wordpress blog, this wiki, the Nottinghack Planet, and all the external DNS recordes for Nottinghack domains, we have nottinghack.[org.uk|co.uk|org]

The Twitterbot for @HSNOTTS is also hosted on on this server.

lspace.nottinghack.org.uk

Hosted locally at the space on Holly

Includes:

DNS record looked after by 'RepRap' Matt

cacti.nottinghack.org.uk

Also hosted locally on Holly this provides graphing of various stats and info (mostly temperature graphs) from the hackspace instrumentation

http://hollyvm/

Our intranet, only accessible from the hackspace network

HackSpace Instrumentation

The Network and Holly provide the backbone to our HackSpace Instrumentation projects.

Other Info

ADSL Connection Reboot Procedure

If for some reason the internet connection is not responding! The Kryten and Able are located on the Internet shelf on the Members Storage room On Able check if the 'DSL' and 'Internet' lights are green If not on then reboot Able by cycling power using the power switch on the back, If two minutes after doing this the 'DSL' light does not come back on then you can also cycle power on Krtyen If there's still no look, it could well be an outside issue with talktalk.

Extra Equipment

See here for a list of our other network gear

Subcategories

This category has the following 3 subcategories, out of 3 total.

Media in category "Network"

The following 5 files are in this category, out of 5 total.