parents: gw-ubcece
hostgroups: layer3-infrastructure
gw-karlsruhe:
- address: 129.143.166.229
+ address: 129.143.57.177
parents: gw-ubcece
hostgroups: layer3-infrastructure
gw-man-da:
parents: gw-ubcece
hostgroups: layer3-infrastructure
gw-marist:
- address: 148.100.96.1
+ address: 148.100.88.1
parents: gw-ubcece
hostgroups: layer3-infrastructure
gw-osuosl:
address: 86.59.118.145
parents: gw-ubcece
hostgroups: layer3-infrastructure
- gw-telegraaf2:
- address: 217.196.40.15
- parents: gw-ubcece
- hostgroups: layer3-infrastructure
- contact_groups: +alioth-admins
- no-servicegroups: true
gw-ubcece:
address: 206.12.19.254
hostgroups: layer3-infrastructure
hostgroups: layer3-infrastructure
gw-ynic:
# really janet, because ynic is stupid about firewalling
- address: 146.97.42.26
+ #address: 146.97.42.26
+ address: 146.97.41.66
parents: gw-ubcece
hostgroups: layer3-infrastructure
gw-zivit:
address: 138.16.160.12
parents: gw-brown
hostgroups: computers, service, apache2-hosts, dl380, rsyncd-hosts, postgres91-hosts, spamd, heavy-exim, acpid-hosts, uploadqueue, xinetd-hosts, apache-https, hassrvfs, wheezy
- ries:
- address: 138.16.160.9
- parents: gw-brown
- hostgroups: computers, service, dl385, acpid-hosts, xinetd-hosts, hassrvfs, wheezy, postgres91-hosts
# }}}
# {{{ gw-bytemark
bm-bl1:
senfter:
address: 5.153.231.4
parents: gw-bytemark
- hostgroups: computers, service, kvmdomains, wheezy, apache2-hosts, no-bacula
+ hostgroups: computers, service, kvmdomains, wheezy, apache2-hosts, no-bacula, apache-https
adayevskaya:
address: 5.153.231.5
parents: gw-bytemark
pejacevic:
address: 5.153.231.6
parents: gw-bytemark
- hostgroups: computers, service, kvmdomains, wheezy, apache2-hosts, nfs-client, autofs
+ hostgroups: computers, service, kvmdomains, wheezy, apache2-hosts, nfs-client, autofs, apache-https
contacts: holger
piu-slave-bm-a:
address: 5.153.231.7
address: 5.153.231.11
parents: gw-bytemark
hostgroups: computers, hassrvfs, kvmdomains, wheezy, autofs, nfs-client
+ backuphost:
+ address: 5.153.231.12
+ parents: gw-bytemark
+ hostgroups: computers, hassrvfs, kvmdomains, wheezy
+ philp:
+ address: 5.153.231.13
+ parents: gw-bytemark
+ hostgroups: computers, hassrvfs, kvmdomains, wheezy, apache2-hosts
+ petrova:
+ address: 5.153.231.25
+ parents: gw-bytemark
+ hostgroups: computers, kvmdomains, wheezy, apache2-hosts
+ couper:
+ address: 5.153.231.14
+ parents: gw-bytemark
+ hostgroups: computers, hassrvfs, kvmdomains, wheezy, apache2-hosts, nfs-client, autofs
+ rainier:
+ address: 5.153.231.15
+ parents: gw-bytemark
+ hostgroups: computers, kvmdomains, wheezy, no-bacula
+ rapoport:
+ address: 5.153.231.16
+ parents: gw-bytemark
+ hostgroups: computers, kvmdomains, wheezy, no-bacula
+ delfin:
+ address: 5.153.231.17
+ parents: gw-bytemark
+ hostgroups: computers, hassrvfs, kvmdomains, wheezy, apache2-hosts
+ wuiet:
+ address: 5.153.231.18
+ parents: gw-bytemark
+ hostgroups: computers, general, kvmdomains, wheezy, service, apache-https, apache2-hosts, heavy-exim, xinetd-hosts
+ dinis:
+ address: 5.153.231.19
+ parents: gw-bytemark
+ hostgroups: computers, general, kvmdomains, wheezy
+ donizetti:
+ address: 5.153.231.20
+ parents: gw-bytemark
+ hostgroups: computers, general, kvmdomains, wheezy, nfs-client, autofs
+ dillon:
+ address: 5.153.231.22
+ parents: gw-bytemark
+ hostgroups: computers, general, kvmdomains, wheezy, nfs-client, autofs
+ ticharich:
+ address: 5.153.231.23
+ parents: gw-bytemark
+ hostgroups: computers, general, kvmdomains, wheezy, nfs-client, autofs, apache2-hosts, apache-https, service
+ diamond:
+ address: 5.153.231.24
+ parents: gw-bytemark
+ hostgroups: computers, service, kvmdomains, wheezy, bind9-hosts, no-bacula
# }}}
# {{{ gw-c3sl
santoro:
address: 194.177.211.205
parents: gw-grnet
hostgroups: computers, acpid-hosts, mptraid, hassrvfs, service, squeeze
- grieg:
- address: 194.177.211.200
- parents: gw-grnet
- hostgroups: computers, apache2-hosts, acpid-hosts, megaraid, heavy-exim, postgres84-hosts, service, apache-https, squeeze
orff:
address: 194.177.211.209
parents: gw-grnet
contacts: pkern
# }}}
# {{{ gw-man-da
- agricola:
- address: 82.195.75.86
- parents: gw-man-da
- hostgroups: computers, porterbox, sw-raid, hassrvfs, wheezy
- contacts: bzed
- arcadelt:
- address: 82.195.75.87
- parents: gw-man-da
- hostgroups: computers, buildd, sw-raid, hassrvfs, wheezy
- contacts: bzed
ball:
address: 82.195.75.70
parents: gw-man-da
bendel:
address: 82.195.75.100
parents: ganeti3
- hostgroups: computers, service, hasbootfs, kvmdomains, hassrvfs, apache2-hosts, squeeze, postfix-hosts, heavy-postfix, acpid-hosts, apache-https, amavis-hosts, hasvarlogfs
+ hostgroups: computers, service, hasbootfs, kvmdomains, hassrvfs, apache2-hosts, wheezy, postfix-hosts, heavy-postfix, acpid-hosts, apache-https, amavis-hosts, hasvarlogfs
master:
address: 82.195.75.110
parents: ganeti3
vento:
address: 82.195.75.98
parents: ganeti3
- hostgroups: computers, service, kvmdomains, wheezy, hassrvfs, apache2-hosts, heavy-exim
+ hostgroups: computers, service, kvmdomains, wheezy, hassrvfs, apache2-hosts, apache-https, heavy-exim
lully:
address: 82.195.75.99
parents: ganeti3
address: 82.195.75.102
parents: gw-man-da
hostgroups: computers, service, dl360, acpid-hosts, wheezy
- diamond:
- address: 82.195.75.108
- parents: ganeti3
- hostgroups: computers, service, kvmdomains, wheezy, bind9-hosts, no-bacula
draghi:
address: 82.195.75.106
parents: ganeti3
- hostgroups: computers, service, hasbootfs, hassrvfs, apache2-hosts, bind9-hosts, spamd, heavy-exim, kvmdomains, xinetd-hosts, apache-https, wheezy
+ hostgroups: computers, service, hasbootfs, hassrvfs, apache2-hosts, spamd, heavy-exim, kvmdomains, xinetd-hosts, apache-https, wheezy
geo1:
address: 82.195.75.105
parents: ganeti3
address: 82.195.75.107
parents: ganeti3
hostgroups: computers, service, apache2-hosts, rsyncd-hosts, kvmdomains, xinetd-hosts, wheezy
+ stockhausen:
+ address: 82.195.75.108
+ parents: ganeti3
+ hostgroups: computers, service, kvmdomains, wheezy, acpid-hosts, jetty-hosts
ganeti3:
address: 82.195.75.111
parents: gw-man-da
wilder:
address: 82.195.75.112
parents: ganeti3
- hostgroups: computers, service, hassrvfs, apache2-hosts, kvmdomains, wheezy, acpid-hosts, apache2-hosts, apache-https, rsyncd-hosts, xinetd-hosts
+ hostgroups: computers, service, hassrvfs, apache2-hosts, kvmdomains, wheezy, acpid-hosts, apache-https, rsyncd-hosts, xinetd-hosts
vieuxtemps:
address: 82.195.75.113
parents: ganeti3
address: 82.195.75.114
parents: ganeti3
hostgroups: computers, service, kvmdomains, wheezy, spamd, heavy-exim, mail-relay
+ denis:
+ address: 82.195.75.91
+ parents: ganeti3
+ hostgroups: computers, service, kvmdomains, wheezy, bind9-hosts
# }}}
# {{{ gw-marist
- zappa:
- address: 148.100.96.103
+ zani:
+ address: 148.100.88.22
parents: gw-marist
- hostgroups: computers, buildd, hassrvfs, squeeze, incomingmailrelayed
+ hostgroups: computers, buildd, hassrvfs, wheezy, incomingmailrelayed
# }}}
# {{{ gw-osuosl
busoni:
address: 140.211.15.34
parents: gw-osuosl
- hostgroups: computers, service, dl360, hassrvfs, acpid-hosts, wheezy, hasvarlogfs, apache2-hosts, no-bacula
+ hostgroups: computers, service, dl360, hassrvfs, acpid-hosts, wheezy, hasvarlogfs, apache2-hosts, no-bacula, apache-https
byrd:
address: 140.211.166.20
parents: gw-osuosl
rietz:
address: 140.211.166.43
parents: gw-osuosl
- hostgroups: computers, service, rsyncd-hosts, dl385, hassrvfs, acpid-hosts, xinetd-hosts, wheezy, bind9-hosts
+ hostgroups: computers, service, rsyncd-hosts, dl385, hassrvfs, acpid-hosts, xinetd-hosts, wheezy
#, bosserver
rietz2:
address: 140.211.166.44
caballero:
address: 193.201.200.200
parents: gw-rapidswitch
- hostgroups: computers, buildd, sw-raid, squeeze
+ hostgroups: computers, buildd, sw-raid, wheezy, hassrvfs, acpid-hosts
# }}}
# {{{ gw-sanger
sibelius:
address: 86.59.118.152
parents: gw-sil
hostgroups: computers, buildd, wheezy
- merikanto:
- address: 86.59.118.147
- parents: gw-sil
- hostgroups: computers, dl360, acpid-hosts, nfs-client, rsyncd-hosts, xinetd-hosts, service, squeeze, autofs
- merikanto2:
- address: 86.59.118.150
- parents: merikanto
- hostgroups: secondary-IPs
- # }}}
- # {{{ gw-telegraaf2
- vasks:
- address: 217.196.43.140
- parents: gw-telegraaf2
- hostgroups: computers, nfs-server, postgres91-hosts, apache2-hosts, acpid-hosts, apache-https, brokensamhain
- contact_groups: alioth-admins
- no-servicegroups: true
- wagner:
- address: 217.196.43.132
- parents: gw-telegraaf2
- hostgroups: computers, bind9-hosts, apache2-hosts, nfs-client, xinetd-hosts, postgres91-hosts, apache-https, dl385, brokensamhain
- contact_groups: alioth-admins
- no-servicegroups: true
- anonscm:
- address: 217.196.43.132
- parents: wagner
- contact_groups: alioth-admins
- hostgroups: secondary-IPs
- no-servicegroups: true
# }}}
# {{{ gw-ubcece
sw-ubcece:
address: 206.12.19.118
parents: ganeti2
hostgroups: computers, general, apache2-hosts, hasbootfs, kvmdomains, apache-https, wheezy
- dinis:
- address: 206.12.19.139
- parents: ganeti2
- hostgroups: computers, general, kvmdomains, wheezy
wolkenstein:
address: 206.12.19.116
parents: ganeti2
address: 206.12.19.113
parents: ganeti2
hostgroups: computers, service, bind9-hosts, kvmdomains, wheezy
- morricone:
- address: 206.12.19.9
- parents: sw-ubcece-kais
- hostgroups: computers, hasbootfs, hasvarfs, hassrvfs, aacraid, rsyncd-hosts, heavy-exim, xinetd-hosts, apache2-hosts, service, squeeze, uploadqueue
stabile:
address: 206.12.19.13
parents: sw-ubcece-kais
- hostgroups: computers, hashomefs, sw-raid, rsyncd-hosts, postgres84-hosts, apache2-hosts, xinetd-hosts, service, nfs-server, squeeze, hassrvfs
+ hostgroups: computers, hashomefs, sw-raid, rsyncd-hosts, apache2-hosts, xinetd-hosts, service, nfs-server, squeeze, hassrvfs
paganini:
address: 206.12.19.10
parents: sw-ubcece-kais
- hostgroups: computers, hasbootfs, aacraid, hassrvfs, xinetd-hosts, nfs-client, service, apache2-hosts, squeeze, autofs
+ hostgroups: computers, hasbootfs, aacraid, hassrvfs, nfs-client, service, squeeze, autofs
respighi:
address: 206.12.19.11
parents: sw-ubcece-kais
quantz:
address: 206.12.19.122
parents: traetta
- hostgroups: computers, service, hasbootfs, kvmdomains, squeeze, hassrvfs, nfs-client, xinetd-hosts, heavy-exim, apache2-hosts, autofs
+ hostgroups: computers, service, hasbootfs, kvmdomains, wheezy, hassrvfs, nfs-client, xinetd-hosts, heavy-exim, apache2-hosts, autofs
nono:
address: 206.12.19.123
parents: traetta
address: 206.12.19.126
parents: traetta
hostgroups: computers, service, kvmdomains, wheezy, apache2-hosts, nfs-client, autofs, xinetd-hosts
- dukas:
- address: 206.12.19.128
- parents: traetta
- hostgroups: computers, service, hasbootfs, kvmdomains, wheezy, heavy-exim, apache2-hosts, nfs-client, autofs, hassrvfs, apache-https
tye:
address: 206.12.19.129
parents: ganeti2
address: 206.12.19.130
parents: salieri
hostgroups: computers, service, kvmdomains, wheezy
- berlioz:
- address: 206.12.19.131
- parents: traetta
- hostgroups: computers, service, hasbootfs, kvmdomains, squeeze, apache2-hosts, hassrvfs, apache-https
gombert:
address: 206.12.19.132
parents: ganeti2
barriere:
address: 206.12.19.135
parents: ganeti2
- hostgroups: computers, service, kvmdomains, wheezy, hassrvfs
+ hostgroups: computers, service, kvmdomains, wheezy, hassrvfs, porterbox
diabelli:
address: 206.12.19.136
parents: traetta
ullmann:
address: 206.12.19.141
parents: ganeti2
- hostgroups: computers, service, kvmdomains, wheezy, postgres91-hosts, nfs-client, apache2-hosts, autofs
+ hostgroups: computers, service, kvmdomains, wheezy, postgres91-hosts, nfs-client, apache2-hosts, autofs, apache-https
sonntag:
address: 206.12.19.142
parents: ganeti2
address: 206.12.19.143
parents: ganeti2
hostgroups: computers, service, kvmdomains, wheezy, hassrvfs, apache2-hosts, apache-https
- coincy:
- address: 206.12.19.144
- parents: ganeti2
- hostgroups: computers, service, kvmdomains, wheezy
stanley:
address: 206.12.19.145
parents: ganeti2
address: 130.89.148.12
parents: klecker
hostgroups: secondary-IPs
+ klecker-archive:
+ address: 130.89.148.13
+ parents: klecker
+ hostgroups: secondary-IPs
+ klecker-static:
+ address: 130.89.148.14
+ parents: klecker
+ hostgroups: secondary-IPs
# }}}
# {{{ gw-ynic
hildegard:
zandonai:
address: 80.245.147.46
parents: gw-zivit
- hostgroups: computers, buildd, hassrvfs, squeeze
+ hostgroups: computers, buildd, hassrvfs, wheezy
zelenka:
address: 80.245.147.40
parents: gw-zivit
- hostgroups: computers, porterbox, hassrvfs, squeeze
+ hostgroups: computers, porterbox, hassrvfs, wheezy
# }}}
# }}}
apache2-hosts:
alias: hosts running apache2
private: 1
+ jetty-hosts:
+ alias: hosts running jetty
+ private: 1
varnish-hosts:
alias: hosts running varnish
private: 1
#postgres81-hosts:
# alias: hosts running postgres81
# private: 1
- postgres84-hosts:
- alias: hosts running postgres84
- private: 1
postgres91-hosts:
alias: hosts running postgres91
private: 1
alias: backup checks
kernel:
alias: kernel checks
- weaksshkeys:
- alias: weak ssh keys
apt:
alias: apt upgrade status
samhain:
alias: time stuff
security:
alias: security
- servicegroup_members: apt, weaksshkeys, kernel, samhain
+ servicegroup_members: apt, kernel, samhain
#############################
# services
-
name: disk usage - all
servicegroups: diskspace
- nrpe: "/usr/lib/nagios/plugins/check_disk -w 5% -c 2% -A -X devpts -X proc -X linprocfs -X devfs -X fdescfs -X sysfs -X nfs --ignore-eregi-path=/home/buildd/build-trees"
+ nrpe: "/usr/lib/nagios/plugins/check_disk -w 5% -c 2% -A -X devpts -X proc -X linprocfs -X devfs -X fdescfs -X sysfs -X nfs --ignore-eregi-path='/home/buildd/build-tr|/var/lib/schroot/mount'"
hostgroups: computers
excludehosts: sibelius,stabile
-
servicegroups: diskspace
nrpe: "/usr/lib/nagios/plugins/check_disk 75 90 /home"
hostgroups: hashomefs
- -
- name: disk usage on /x
- servicegroups: diskspace
- nrpe: "/usr/lib/nagios/plugins/check_disk 75 90 /x"
- hosts: caballero
-
name: disk usage on /var/lib/postgresql
servicegroups: diskspace
nrpe: "/usr/lib/nagios/plugins/check_disk 75 90 /var/lib/postgresql"
- hosts: stabile, sibelius, busoni, buxtehude
+ hosts: sibelius, busoni, buxtehude
-
name: disk usage on /var/log
servicegroups: diskspace
servicegroups: diskspace
nrpe: "/usr/lib/nagios/plugins/check_disk 75 90 /var/spool/postfix"
hosts: bendel
-
- #-
- # name: disk usage on /srv/morgue.debian.org
- # servicegroups: diskspace
- # nrpe: "/usr/lib/nagios/plugins/check_disk 90 95 /srv/morgue.debian.org"
- # hosts: stabile
-
name: disk usage on /srv/mirrors
servicegroups: diskspace
servicegroups: backup
nrpe: "sudo /usr/lib/nagios/plugins/dsa-check-dabackup"
hostgroups: computers
+ excludehosts: backuphost
normal_check_interval: 60
max_check_attempts: 2
retry_check_interval: 5
name: backup server config
servicegroups: backup
nrpe: "/usr/lib/nagios/plugins/dsa-check-dabackup-server"
- hosts: beethoven
+ hosts: beethoven, backuphost
normal_check_interval: 60
max_check_attempts: 2
retry_check_interval: 5
-
name: backup - bacula - last full backup
servicegroups: backup
- remotecheck: "/usr/lib/nagios/plugins/dsa-check-bacula -w 840 -c 1560 $HOSTNAME$.debian.org F"
+ remotecheck: "/usr/lib/nagios/plugins/dsa-check-bacula -w 1080 -c 1560 $HOSTNAME$.debian.org F"
runfrom: dinis
hostgroups: computers
excludehostgroups: buildd, porterbox, no-bacula
nrpe: "/usr/lib/nagios/plugins/check_procs -w 1:1 -c 1: -u bacula -C bacula-fd -a '/usr/sbin/bacula-fd -c /etc/bacula/bacula-fd.conf'"
hostgroups: computers
excludehostgroups: freebsd
- excludehosts: wagner, vasks
-
name: process - bacula-fd
servicegroups: backup
# name: puppet
# nrpe: "/usr/lib/nagios/plugins/dsa-check-file_age -i 540 -f /var/lib/puppet/state/state.yaml"
# hostgroups: computers
- # excludehosts: wagner, vasks
####
-
nrpe: "/usr/lib/nagios/plugins/dsa-check-file -w -f /etc/ferm/ferm.conf"
hostgroups: computers
excludehostgroups: freebsd
- excludehosts: vasks, wagner
-
name: puppetized firewall
nrpe: "/usr/lib/nagios/plugins/dsa-check-file -w -f /etc/ferm/conf.d/defs.conf"
hostgroups: computers
excludehostgroups: freebsd
- excludehosts: vasks, wagner
-
+ ####
+ - name: ganeti - job watcher paused
+ nrpe: "/usr/lib/nagios/plugins/negate /usr/lib/nagios/plugins/dsa-check-file -f /var/lib/ganeti/watcher.pause"
+ hostgroups: computers
####
-
name: process - samhain
normal_check_interval: 60
retry_check_interval: 5
excludehostgroups: brokensamhain
-
+ ####
+ -
+ name: process - acc.umu.se backup
+ nrpe: "/usr/lib/nagios/plugins/check_procs -w 1:8 -c 1: -u root -a 'dsmc'"
+ hosts: sibelius
####
-
name: users
depends: process - sshd
normal_check_interval: 60
notification_interval: 1440
-
- -
- name: ssh - weak keys
- servicegroups: weaksshkeys
- nrpe: "/usr/lib/nagios/plugins/dsa-check-statusfile /var/cache/dsa/nagios/weak-ssh-keys"
- hostgroups: computers
- excludehosts: wagner, vasks
- normal_check_interval: 60
####
-
name: network service - nrpe
nrpe: "/usr/lib/nagios/plugins/check_procs -w 1:3 -c 1: -u root -C munin-node -a '/usr/sbin/munin-node'"
hostgroups: computers
excludehostgroups: freebsd, armhf
- excludehosts: vasks, wagner
-
name: process - munin-node
nrpe: "/usr/lib/nagios/plugins/check_procs -w 1:3 -c 1: -u root -C perl -a '/usr/bin/perl -wT /usr/sbin/munin-node'"
check: check_tcp!4949
hostgroups: computers
depends: process - munin-node
- excludehosts: vasks, wagner
###
-
name: process - ntpd
nrpe: "/usr/lib/nagios/plugins/check_procs -w 1:1 -c 1: -u root -C syslog-ng -a '/sbin/syslog-ng -p /var/run/syslog-ng.pid'"
hostgroups: computers
excludehostgroups: freebsd
- excludehosts: vasks, wagner
-
name: process - syslog-ng
remotecheck: "/usr/lib/nagios/plugins/dsa-check-log-age-loghost $HOSTNAME$"
runfrom: lotti
hostgroups: computers
- excludehosts: vasks, wagner
-
name: remote logging on lully
remotecheck: "/usr/lib/nagios/plugins/dsa-check-log-age-loghost $HOSTNAME$"
runfrom: lully
hostgroups: computers
- excludehosts: vasks, wagner
### MAIL STUFF
###
-
name: process - clamav - clamd
nrpe: "/usr/lib/nagios/plugins/check_procs -w 1:2 -c 1: -u clamav -C clamd -a '/usr/sbin/clamd'"
hostgroups: heavy-exim, heavy-postfix
- hosts: wagner
-
name: service - clamav
nrpe: "/usr/lib/nagios/plugins/check_clamd -H /var/run/clamav/clamd.ctl"
hostgroups: heavy-exim, heavy-postfix
- hosts: wagner
depends: process - clamav - clamd
-
name: process - clamav - freshclam
nrpe: "/usr/lib/nagios/plugins/check_procs -w 1:1 -c 1: -u clamav -C freshclam -a '/usr/bin/freshclam -d --quiet'"
- hosts: wagner
hostgroups: heavy-exim, heavy-postfix
-
name: unwanted process - clamav
nrpe: "/usr/lib/nagios/plugins/check_procs -w 0:0 -C clamd"
hostgroups: computers
excludehostgroups: heavy-exim, heavy-postfix, deadslow
- excludehosts: wagner
-
name: unwanted process - freshclam
nrpe: "/usr/lib/nagios/plugins/check_procs -w 0:0 -C freshclam"
hostgroups: computers
excludehostgroups: heavy-exim, heavy-postfix, deadslow
- excludehosts: wagner
+ ###
-
name: process - spamd - master
nrpe: "/usr/lib/nagios/plugins/check_procs -w 1:1 -c 1: -u root -C spamd -a '/usr/sbin/spamd --create-prefs --max-children 5 --helper-home-dir -d --pidfile=/var/run/spamd.pid'"
hostgroups: spamd
- excludehosts: wagner, picconi
+ excludehosts: picconi
excludehostgroups: deadslow
-
name: process - spamd - master
nrpe: "/usr/lib/nagios/plugins/check_procs -w 1:1 -c 1: -u root -C spamd -a '/usr/sbin/spamd --create-prefs --max-children 20 --min-spare=5 --helper-home-dir -d --pidfile=/var/run/spamd.pid'"
- hosts: wagner, picconi
+ hosts: picconi
-
name: process - spamd - master
nrpe: "/usr/lib/nagios/plugins/check_procs -w 1:1 -c 1: -u root -C spamd -a '/usr/sbin/spamd --create-prefs --max-children 10 --helper-home-dir -d --pidfile=/var/run/spamd.pid'"
-
name: process - spamd - child
nrpe: "/usr/lib/nagios/plugins/check_procs -w 1:11 -c 1: -C spamd -a 'spamd child'"
- hosts: wagner, bendel
+ hosts: bendel
hostgroups: spamd
depends: process - spamd - master
#
nrpe: "/usr/lib/nagios/plugins/check_procs -w 0:0 -C spamd"
hostgroups: computers
excludehostgroups: spamd, deadslow
- excludehosts: bendel, busoni, wagner, buxtehude
+ excludehosts: bendel, busoni, buxtehude
###
#-
excludehostgroups: deadslow
###
- -
- name: process - postgrey
- nrpe: "/usr/lib/nagios/plugins/check_procs -w 1:1 -c 1: -u postgrey -C postgrey -a '/usr/sbin/postgrey --pidfile=/var/run/postgrey.pid --daemonize --unix=/var/run/postgrey/socket --retry-window=4 --auto-whitelist-clients=10 --exim'"
- hostgroups: heavy-exim
- excludehostgroups: wheezy
-
name: process - postgrey
nrpe: "/usr/lib/nagios/plugins/check_procs -w 1:1 -c 1: -u postgrey -a '/usr/sbin/postgrey --pidfile=/var/run/postgrey.pid --daemonize --unix=/var/run/postgrey/socket --retry-window=4 --auto-whitelist-clients=10 --exim'"
hostgroups: heavy-exim
- excludehostgroups: squeeze
-
name: process - postgrey
- nrpe: "/usr/lib/nagios/plugins/check_procs -w 1:1 -c 1: -u postgrey -C postgrey -a '/usr/sbin/postgrey --pidfile=/var/run/postgrey.pid --daemonize --inet=127.0.0.1:60000'"
+ nrpe: "/usr/lib/nagios/plugins/check_procs -w 1:1 -c 1: -u postgrey -a '/usr/sbin/postgrey --pidfile=/var/run/postgrey.pid --daemonize --inet=127.0.0.1:60000'"
hostgroups: heavy-postfix
#
-
###
-
name: process - amavis - master
- nrpe: "/usr/lib/nagios/plugins/check_procs -w 1:1 -c 1: -u amavis -C amavisd-new -a 'amavisd-new (master)'"
+ nrpe: "/usr/lib/nagios/plugins/check_procs -w 1:1 -c 1: -u amavis -a 'amavisd-new (master)'"
hostgroups: amavis-hosts
-
name: process - amavis - all
- nrpe: "/usr/lib/nagios/plugins/check_procs -w 1:10 -c 1:10 -u amavis -C amavisd-new -a 'amavisd-new '"
+ nrpe: "/usr/lib/nagios/plugins/check_procs -w 1:10 -c 1:10 -u amavis -a 'amavisd-new '"
hostgroups: amavis-hosts
depends: process - amavis - master
#
nrpe: "/usr/lib/nagios/plugins/check_procs -w 2:50 -c 1: -u polw -a 'policyd-weight (child)'"
hostgroups: heavy-postfix
depends: process - weightd - master
- #
+ ###
-
name: unwanted process - policyd-weight
nrpe: "/usr/lib/nagios/plugins/check_procs -w 0:0 -C policyd-weight"
excludehostgroups: heavy-postfix, deadslow
-
###
-
name: process - postfix - master
name: setup - dsa config
nrpe: "/usr/lib/nagios/plugins/dsa-check-config"
hostgroups: computers
- excludehosts: wagner, vasks
normal_check_interval: 60
-
name: setup - local hostname etc-hosts
- nrpe: 'if getent ahosts `hostname` | grep -q 127.0; then echo "Warning: local hostname resolves to 127/8 address"; exit 1; else echo "OK: Hostname resolves to non-127/8 address."; exit 1; fi'
- #hostgroups: computers
- hosts: bm-bl7
- excludehosts: wagner, vasks
+ nrpe: 'if getent ahosts `hostname` | grep -q 127.0; then echo "Warning: local hostname resolves to 127/8 address"; exit 1; else echo "OK: Hostname resolves to non-127/8 address."; exit 0; fi'
+ hostgroups: computers
normal_check_interval: 60
-
name: setup - ud-ldap freshness
nrpe: "/usr/lib/nagios/plugins/dsa-check-udldap-freshness"
- excludehosts: wagner, vasks
hostgroups: computers
-
name: system - available entropy
nrpe: "/usr/lib/nagios/plugins/dsa-check-entropy"
event_handler: dsa_event_handler_restart_ekey
hostgroups: computers
- excludehosts: vasks, wagner
excludehostgroups: freebsd
-
name: system - filesystem check
nrpe: "/usr/bin/sudo /usr/lib/nagios/plugins/dsa-check-filesystems"
normal_check_interval: 60
retry_check_interval: 15
- excludehosts: wagner, vasks
hostgroups: computers
###
-
name: local resolver
nrpe: "/usr/lib/nagios/plugins/dsa-check-resolver www.debian.org www.google.com"
hostgroups: computers
- excludehosts: vasks, wagner
normal_check_interval: 60
-
name: process - unbound
nrpe: "/usr/lib/nagios/plugins/check_procs -w 1:1 -c 1: -u unbound -C unbound -a '/usr/sbin/unbound'"
- excludehosts: vasks, wagner
hostgroups: unbound-hosts, squeeze, wheezy
###
-
name: process - uptimed
nrpe: "/usr/lib/nagios/plugins/check_procs -w 1:1 -c 1: -u daemon -C uptimed -a '/usr/sbin/uptimed'"
hostgroups: computers
- excludehosts: vasks, wagner
###
-
name: unwanted process - irqbalance
name: unwanted process - inetd
nrpe: "/usr/lib/nagios/plugins/check_procs -w 0:0 -C inetd"
hostgroups: computers
- excludehosts: grieg, abel, alwyn, vasks
+ excludehosts: abel, alwyn
excludehostgroups: deadslow
-
name: unwanted process - snmpd
-
name: process - monit
nrpe: "/usr/lib/nagios/plugins/check_procs -w 1:1 -c 1:1 -u root -C monit -a '/usr/sbin/monit -d 300 -I -c /etc/monit/monitrc -s /var/lib/monit/monit.state'"
- hostgroups: computers
- excludehosts: vasks, wagner
- excludehostgroups: armhf
+ hostgroups: squeeze
-
name: process - monit
nrpe: "/usr/lib/nagios/plugins/check_procs -w 1:1 -c 1:1 -u root -C monit -a '/usr/bin/monit -d 300 -I -c /etc/monit/monitrc -s /var/lib/monit/monit.state'"
- hostgroups: wheezy
+ hostgroups: computers
+ excludehostgroups: squeeze
-
name: HW - hpacucli status
servicegroups: raid
nrpe: "/usr/lib/nagios/plugins/check_procs -w 1:1 -c 1: -u root -C ulogd -a '/usr/sbin/ulogd -d'"
hostgroups: computers
excludehostgroups: freebsd, sparc
- excludehosts: vasks, wagner
-
name: unexpected process - ulogd
nrpe: "/usr/lib/nagios/plugins/check_procs -w 0:0 -C ulogd"
# nrpe: "/usr/lib/nagios/plugins/check_procs -w 1:1 -c 1: -u root -C bosserver -a '/usr/sbin/bosserver'"
# hostgroups: bosserver
#
- ###
- -
- name: process - inetd
- nrpe: "/usr/lib/nagios/plugins/check_procs -w 1:1 -c 1: -u root -C inetd -a '/usr/sbin/inetd'"
- hosts: grieg, vasks
###
-
name: process - xinetd
check: check_tcp!873
hostgroups: rsyncd-hosts
depends: process - xinetd
- excludehosts: merikanto, rietz
+ excludehosts: rietz
-
name: network service - rsync
check: check_tcp!873
hosts: rietz2
depends: rietz:process - xinetd
- -
- name: network service - rsync
- check: check_tcp!873
- hosts: merikanto2
- depends: merikanto:process - xinetd
-
name: network service - rsync
check: check_tcp!873
# there is always one extra process per check currently running..
nrpe: "/usr/lib/nagios/plugins/check_procs -w 1:30 -c 1: -u nagios -C icinga -a '/usr/sbin/icinga -d /etc/icinga/icinga.cfg'"
hosts: tchaikovsky
+ ###
+ -
+ name: process - jetty - master
+ nrpe: "/usr/lib/nagios/plugins/check_procs -w 1:1 -c 1:1 -u root -a 'jsvc.exec'"
+ hostgroups: jetty-hosts
+ -
+ name: process - jetty - worker
+ nrpe: "/usr/lib/nagios/plugins/check_procs -w 1:50 -c 1:100 -u jetty -a 'jsvc.exec -user jetty'"
+ hostgroups: jetty-hosts
+ depends: process - jetty - master
###
-
###
-# Alioth web URLs
-
- -
- name: network service - loggerhead
- remotecheck: "/usr/lib/nagios/plugins/check_http -H anonscm.debian.org -u /loggerhead/"
- hosts: anonscm
- runfrom: tchaikovsky
- depends: wagner:process - apache2 - master
-
####
-
name: process - named
name: unwanted process - postgresql
nrpe: "/usr/lib/nagios/plugins/check_procs -w 0 -C postgres"
hostgroups: computers
- excludehostgroups: postgres84-hosts, postgres91-hosts, deadslow
+ excludehostgroups: postgres91-hosts, deadslow
-
name: unwanted process - postgresql 9.0
nrpe: "/usr/lib/nagios/plugins/check_procs -w 0 -C postgres -a '9.0/bin/postgres'"
name: process - postgresql91 - master
nrpe: "/usr/lib/nagios/plugins/check_procs -w 1:4 -c 1: -u postgres -C postgres -a '/usr/lib/postgresql/9.1/bin/postgres'"
hostgroups: postgres91-hosts
- -
- name: process - postgresql84 - master
- nrpe: "/usr/lib/nagios/plugins/check_procs -w 1:4 -c 1: -u postgres -C postgres -a '/usr/lib/postgresql/8.4/bin/postgres'"
- hostgroups: postgres84-hosts
-
name: postgresql backups
nrpe: "/usr/bin/sudo -u debbackup /usr/lib/nagios/plugins/dsa-check-backuppg"
- hosts: beethoven
+ #hosts: beethoven
+ hosts: backuphost
####
####
-
nrpe: "/usr/lib/nagios/plugins/dsa-check-ups"
hosts: franck
depends: process - UPS - nut upsd
- -
- name: process - pglistener
- nrpe: "/usr/lib/nagios/plugins/check_procs -u pglisten -C python -a '/usr/bin/python /usr/share/pglistener/starter.py /etc/pglistener/pglistener.cfg /etc/pglistener/conf.d' -w 1: -c 1:"
- hosts: wagner, vasks
###
-
name: process - buildd
nrpe: "(/usr/lib/nagios/plugins/check_procs -a schroot -s Zs -c 0 > /dev/null || /usr/lib/nagios/plugins/check_procs -a schroot -s Zs -c 0) && /usr/lib/nagios/plugins/check_procs -a schroot -s ZNs -c 0"
hostgroups: buildd
contact_groups: +buildd
+ normal_check_interval: 5
+ max_check_attempts: 24
+ retry_check_interval: 5
-
name: processes - lvcreate
nrpe: "/usr/lib/nagios/plugins/check_procs -m 'ELAPSED' -c 500 -C lvcreate -u root -a 'lvcreate'"
check: check_tcp!6523
hosts: gombert
contact_groups: gobby
-
- ###
+ ####
#-
# name: process - tftpd
# nrpe: "/usr/lib/nagios/plugins/check_procs -w 1:1 -c 1: -u root -C in.tftpd -a '/usr/sbin/in.tftpd -l -B 1450 -s /var/lib/tftpboot'"
nrpe: "/usr/lib/nagios/plugins/check_procs -w 1:1 -c 1: -u root -C rpc.mountd -a '/sbin/rpc.mountd'"
hostgroups: nfs-server
-
- name: nfs server stabile reachable
- nrpe: "/usr/lib/nagios/plugins/check_ping -H 192.168.2.13 -w 50,10% -c 200,30%"
+ name: nfs server glinka reachable
+ nrpe: "/usr/lib/nagios/plugins/check_ping -H 192.168.2.76 -w 50,10% -c 200,30%"
hosts: quantz
#
-
retry_check_interval: 5
-
name: DNS SOA sync - debian.org
- check: "dsa_check_soas_add!draghi.debian.org!debian.org"
+ check: "dsa_check_soas_add!denis.debian.org!debian.org"
hosts: global
-
name: DNS SOA sync - debian.net
- check: "dsa_check_soas_add!draghi.debian.org!debian.net"
+ check: "dsa_check_soas_add!denis.debian.org!debian.net"
hosts: global
-
name: DNS SOA sync - debian.com
- check: "dsa_check_soas_add!draghi.debian.org!debian.com"
+ check: "dsa_check_soas_add!denis.debian.org!debian.com"
hosts: global
-
name: DNS SOA sync - mirror.debian.net
- check: "dsa_check_soas_add!draghi.debian.org!mirror.debian.net"
+ check: "dsa_check_soas_add!denis.debian.org!mirror.debian.net"
hosts: global
-
name: DNS SOA sync - 144-28.118.59.86.in-addr.arpa
- check: "dsa_check_soas_add!draghi.debian.org!144-28.118.59.86.in-addr.arpa"
+ check: "dsa_check_soas_add!denis.debian.org!144-28.118.59.86.in-addr.arpa"
hosts: global
-
name: DNS SOA sync - alioth.debian.org
check: "dsa_check_soas_add!alioth.debian.org!alioth.debian.org"
hosts: global
- -
- name: DNS SOA sync - 2.6.a.0.4.6.5.6.1.0.0.0.2.0.0.0.8.d.8.0.1.0.0.2.ip6.arpa
- check: "dsa_check_soas!2.6.a.0.4.6.5.6.1.0.0.0.2.0.0.0.8.d.8.0.1.0.0.2.ip6.arpa"
- hosts: global
-
name: DNS SEC - signature expiry
hosts: global