Build Your Own NOC 267
Geminus writes "Ever wanted to build a cheap NOC but had difficulty explaining tech stuff to bean counting managers? Here's the basics on building one for under two grand. Makes for a pretty good dog-n-pony show, and proves useful too! Damn, I want to be an Armchair Network Operations Center General."
NOC???? (Score:0, Interesting)
Nerds on Crack...
Nice/Naughty old Chicks...
-Bill
The scary thing is.... (Score:5, Interesting)
Hard to justify higher costs when your proof of concept is some webpage discovered by your boss, we've all been there.
For a real opensource NOC (Score:5, Interesting)
1. A good network management system (Open-NMS)
2. A good systems monitoring system (MRTG+RRD Tool)
3. A good helpdesk software to follow trouble tickets.
My NOC is 66 square feet,3TB of traffic (Score:5, Interesting)
Please hook me up with your vendor! (Score:5, Interesting)
The article calls for:
1) At least three big monitors (the bigger the better), two smaller ones (17"), a KVM switch, and OOB dialup.
2) A 333Mhz system with 64MB of RAM and a 2.1GB Hard-Drive.
3) A barebones 600 Mhz system
4) A 333Mhz Windows based system.
5) A 1.2Ghz, 512MB, 20GB computer, with dual head Matrox card, with dual booting OS (Linux & Windows), Preferably Linux with a Windows VMWARE guest OS
All the above for under $2000.00? Can we also assume that the author works for free, so that setup cost is $0.00? I haven't priced VMWARE in a long time, but if memory serves, that should be near or over the 2K mark by itself. Perhaps the author meant under $20,000.00? What am I missing here folks?
WTF? (Score:2, Interesting)
WTF has Dual-Head support to do with the distribution?
The Christmas tree (Score:5, Interesting)
But onto my point.
Biggest thing about a noc, is you need to see the alarm, other than taking action, missing an alarm is the worst design flaw. Filter, Page, auto-ticket, there are many things a professional NOC can lend some experience on design. Not everything has to cost, in fact many opensource software works great. (Big Brother anyone?)
BTW, windows and vmware? Pfft.. Worst thing you want is a crash in the middle of working, Solaris and xterms. Eye-candy is the worst thing to get in the way of working outages.
Humm, also a good ticketing system is important, if you want to page out someone, you need to have enough detail for the person to do their job.
Oh yea, give me an Aeron [google.com] Chair also. I know, its
Akamai NOC Tour (Score:3, Interesting)
Pictures of Akamai's NOC also were in the Wired article about the Slammer Virus a few months ago.
You really don't want to work there... (Score:3, Interesting)
Essentially the job is: Stare at network map, wait for thingys to blink, make calls.
Yalla.
Dual-headed video (Score:5, Interesting)
In the same vein, nVidia included a really nice feature in their latest drivers (I think it's been around since the 4x.xx series, but it wasn't as refined) that lets you "throw" a window. Pure genius, whoever invented that. With 2048 pixels of desktop space, it actually takes over an entire mousepad to move a window across the desktop. With throwing, I just flick my mouse. If I have a few IM windows open, a few Putty terminals, etc etc, it's great to just get stuff out of the way real fast and put it all into a known area.
Re:Please hook me up with your vendor! (Score:5, Interesting)
Most of what he calls for can usually be gleaned from the office "PC Bone Yard". The most expensive item is the big dual head computer with associated software. Getting it all for under $2K would be a challenge, but not impossible. As for working for free - he set this up for his employer (An assumption - I'll RTFA when it's not
Sliping stuff you need in under the coprorate radar is easily done with FOSS. When setting up a NOC, if you spread any purchases you need out a bit most of them will be cheap enough that they can be bought on an expense account or with petty cash - you avoid Budget Comittees and/or the Accounting Dept. Call it a "Test Case", and use it to prove that a NOC is a good investment, not just some toy or geeky buzzword. Being able to have concrete numbers that say "See? My NOC isn't really expensive, but it adds a ton of value." will keep the bean counters happy. Once the NOC is in place and you show it has value, you will get to keep it - and sometimes expand it.
This is one of the ways that FOSS shines - you can (most times) just get the job done without getting caught up in coprorate red tape, since the inital capital outlay is usually minimal.
Soko
Worthless article.. (Score:5, Interesting)
I could just as easily post an article saying 'Get *4* Tires, *2* axells, and engine, and a few other things. Toss them all together, and you just made your own CAR!!'
I mean cripes. It's not talking about ANYTHING besides 'buy cheap puters and put neat graphics up'.
I've had bosses that could have written this article.. Heck, I bet they did. 'Whatcha wantt a fluke for? I mean, we BUILT you a NOC for a grand!!' Bear in mind, the 'NOC' was a closet with two monitors I salvaged..
I dunno, perhaps I'm just getting old but..
I fee like I just wastes a good minute of my life reading that..
Re:The article. (Score:3, Interesting)
Lol, u can't find wardrivers if they have their transmitters turned off.
lmao... red phone... a simple circuit can be used to direct dial a hard line to the boss's office or something. Hell, a VoIP setup should be ez (assuming u have real encryption goin).
BTW, I dont see anywhere to download source for Coyote (www.coyotelinux.com) (Vortech Consulting, www.vortech.net). Isnt that a GPL violation? *Sigh* Yet Another closed-source whoring of modified GPL projects for monetary gain. (YACSWOMGPFMG).
Re:The article. (Score:5, Interesting)
The idea is that whatever goes on out there will be logged/dumped, but never executed/analyzed, on this machine. And since it has no IP, it does not show and cannot be addressed. So if you have an intrusion, this machine is uncontactable, but still will hold all network traffic for you to analyze later.
Kind of like making
bash# ln -s
Pretty hard to clear up the trace now, huh ?
Re:My NOC is 66 square feet,3TB of traffic (Score:1, Interesting)
so I installed a window air conditioner through the wall behind every 2 racks, and then we walled off the front of the racks so you had 36 inches in front of them and 24 behind them. plenty of room to work, and swap out heavy equipment and servers. and my airconditioning costs $250.00 per air conditioner, and cince each unit only draws 7 amps, no wiring needed.
We have a "rogue" NOC here cine corperate is filled with prima-donnas that want it their way and not right... so we firewall off from corperate and run our own NOC.
we boast 99% uptime.. they can't. we havent had a virus infection for over 2 years in our WAN (16 offices covering 3 states) they cant keep them out for a month, we have fended off 3 break in attempts (ALL FROM THE CORPERATE FEED BTW!) they cant.
CNN (Score:5, Interesting)
Re:For a real opensource NOC (Score:2, Interesting)
(FWIW, I know of one place that uses MRTG instead of HP OpenView, for which they paid $$$$$$, because MRTG is faster and simpler and runs on a 200$ PC.)
Homegrown applications are great... when the company will allow it. Many places simply do not want the responsibility or liability of creating and maintaining their own software. If it doesn't work correctly or fails, who do they have to blame but themselves? Plus, the people who wrote the app may not be there in a year thus creating a support issue. I've created a number of homegrown apps to deal with my job, but I'm the only one who completely understands them; when I'm no longer there, that's a problem. Additionally, let's be real here. Given the quality of commercial software, just how good do you expect internally developed software from one or two programmers (who may not understand the problem they are fixing) will be? The best stuff will be coming from the grunts who have to work with and fix stuff everyday -- shell, perl, tcl, etc. scripts born out of necessity. That stuff will not be "quality" nor will it make much sense to anyone other than the author. (I've been here way too many times.)