GPN20:NOC: Unterschied zwischen den Versionen

aus dem Wiki des Entropia e.V., CCC Karlsruhe
Zeile 1: Zeile 1:
= Network=
= Network =
Ja, wir haben Internet. Alle bereitgestellten Netze sind '''ungefiltert''' und auf '''öffentlichem IP-Space''', stelle sicher, dass deine Geräte up-to-date, Dienste ordentlich konfiguriert sind. Wir raten Dir, eine Firewall zu aktivieren.
Yes, we've got internet. All provided networks are '''unfiltered''', e.g. no firewall, no NAT and use '''public IP addresses'''. Please make sure, all your devices are up-to-date and services running on your devices are configured securely. We recommend to activate a firewall.


Please bring your own network cable (3m - 5m) with you. When connecting your device to the switch, please make sure the cable does not form a tripping hazard or spans between tables.


== Wi-Fi (encrypted) ==
== Wi-Fi (encrypted) ==
Um mehr Bandbreite nutzen zu können, überlege ob du dich nicht einfach per Kabel einstecken kannst, wir haben nur begrenzte Mengen an Äther im Haus.
Please consider using a wired connecting in order to save air time. Due to a lot of access points located GPN, HfG and ZKM, air time is tight.


* SSID: GPN20
* SSID: GPN20
* Modus: WPA2-Enterprise
* Mode: WPA2-Enterprise
** TTLS/PAP or PEAP/MSCHAPv2
** TTLS/PAP or PEAP/MSCHAPv2
* Username und Passwort
* Username and Passwort
** bei PEAP/MSCHAPv2:
** for PEAP/MSCHAPv2:
*** Username: <code>gpn</code>
*** Username: <code>gpn</code>
*** Password: <code>gpn</code>
*** Password: <code>gpn</code>
** auf TTLS/PAP
** for TTLS/PAP
*** egal
*** <anything you like - we don't care>


Wenn du sicherstellen willst, dass du dich mit dem unsicheren Netzwerk ''deiner'' Wahl verbindest,
If you want to check that you really connect to the insecure network of ''your'' choice, please verify the certificate of CN <code>radius.gpn-noc.de</code> is issued by [https://letsencrypt.org/certificates/ Let's Encrypt].
prüfe das Zertfikat auf CN <code>radius.gpn-noc.de</code>, ausgestellt von [https://letsencrypt.org/certificates/ Let's Encrypt].


=== wpa_supplicant.conf ===
=== wpa_supplicant.conf ===
Zeile 51: Zeile 51:


== Colocation <tbd> ==
== Colocation <tbd> ==
Ja, es gibt wieder eine Colocation geben:
YES, we'll have a colocation again and we can provide you with:
- 10GbE SFP+ Ports sind verfügbar. Wir verleihen keine Transceiver, ohne Ausnahme.
- 10GbE SFP+ ports. We do not lend transceivers - we never have and never will - ever!!!.
- 1000Base-T (1GBE) / 10GBase-T sind ebenfalls verfügbar.
- 1000Base-T (1GBE) / 10GBase-T is available as well.


Kennzeichne deinen Server mit deinem '''Namen''', deiner '''DECT-Nummer''' und deiner '''E-Mail-Adresse''', ansonsten müssen wir ihn abstecken.
Please mark your server with your '''name''', your '''DECT-''' or '''cellphone-number''' and your '''e-mail adresse''' to get in contact with you. Otherwise we have to disconnect your server.


=== Standort der Colocation ===
=== Colocation-Location ===
Die Colo befindet sich auch dieses Jahr wieder in der Hausmeisterlounge am Eingang zur HfG.
The colocation can be found at the same location as last event: the caretakers lounge at the entrance of the HfG.


== Pixelflut <tbd> ==
== Pixelflut ==
// Pixelflut(en) -> im Ticketsystem melden
- You have built your own fancy Pixelflut and want to bring it along to GPN?
- But you don't know where to place it or connect it with enough uplink?
- Please come to the NOC Desk and ask our staff. We'll be there for you starting Thursday afternoon, e.g. after the Opening.


// Allgemeine Infos: Lan-Kabel mitbringen, nicht zwischen Tischen spannen, wie komme ich ins Wlan, ... -> bisherige Doku duchschauen


{{Navigationsleiste GPN20}}
{{Navigationsleiste GPN20}}


[[Kategorie: GPN20]]
[[Kategorie: GPN20]]

Version vom 11. Mai 2022, 20:10 Uhr

Network

Yes, we've got internet. All provided networks are unfiltered, e.g. no firewall, no NAT and use public IP addresses. Please make sure, all your devices are up-to-date and services running on your devices are configured securely. We recommend to activate a firewall.

Please bring your own network cable (3m - 5m) with you. When connecting your device to the switch, please make sure the cable does not form a tripping hazard or spans between tables.

Wi-Fi (encrypted)

Please consider using a wired connecting in order to save air time. Due to a lot of access points located GPN, HfG and ZKM, air time is tight.

  • SSID: GPN20
  • Mode: WPA2-Enterprise
    • TTLS/PAP or PEAP/MSCHAPv2
  • Username and Passwort
    • for PEAP/MSCHAPv2:
      • Username: gpn
      • Password: gpn
    • for TTLS/PAP
      • <anything you like - we don't care>

If you want to check that you really connect to the insecure network of your choice, please verify the certificate of CN radius.gpn-noc.de is issued by Let's Encrypt.

wpa_supplicant.conf

network={
    ssid="GPN20"
    key_mgmt=WPA-EAP
    eap=TTLS
    identity="wiki"
    password="binzufauldaspwzuaendern"
    # ca path on debian 7.x, modify accordingly
    ca_cert="/etc/ssl/certs/DST_Root_CA_X3.pem"
    altsubject_match="DNS:radius.gpn-noc.de"
    phase2="auth=PAP"
}

netctl

Description='GPN20 secure WPA2 802.1X config'
Interface=wlp4s0
Connection=wireless
Security=wpa-configsection
IP=dhcp
ESSID=GPN20
WPAConfigSection=(
    'ssid="GPN20"'
    'proto=RSN WPA'
    'key_mgmt=WPA-EAP'
    'eap=TTLS'
    'identity="wiki"'
    'password="binzufauldaspwzuaendern"'
    'ca_cert="/etc/ssl/certs/DST_Root_CA_X3.pem"'
    'altsubject_match="DNS:radius.gpn-noc.de"'
    'phase2="auth=PAP"'
)

Colocation <tbd>

YES, we'll have a colocation again and we can provide you with: - 10GbE SFP+ ports. We do not lend transceivers - we never have and never will - ever!!!. - 1000Base-T (1GBE) / 10GBase-T is available as well.

Please mark your server with your name, your DECT- or cellphone-number and your e-mail adresse to get in contact with you. Otherwise we have to disconnect your server.

Colocation-Location

The colocation can be found at the same location as last event: the caretakers lounge at the entrance of the HfG.

Pixelflut

- You have built your own fancy Pixelflut and want to bring it along to GPN? - But you don't know where to place it or connect it with enough uplink? - Please come to the NOC Desk and ask our staff. We'll be there for you starting Thursday afternoon, e.g. after the Opening.