A page in your DokuWiki was added or changed. Here are the details:
Date : 2017/02/10 16:46
Browser : Mozilla/5.0 (Windows NT 6.1; WOW64; rv:45.0) Gecko/20100101 Firefox/45.0
IP-Address : 78.43.90.159
Hostname : HSI-KBW-078-043-090-159.hsi4.kabel-badenwuerttemberg.de
Old Revision: http://wiki.x2go.org/doku.php/doc:howto:x2gobroker?rev=1486745122
New Revision: http://wiki.x2go.org/doku.php/doc:howto:x2gobroker
Edit Summary: [Setting up the servers] - added download note
User : stefanbaur
@@ -50,8 +50,10 @@
* edit the list in preseed_ldap1 so names and IPs match again
* You should set up the servers in the order that they are listed here.
* Each server will power down once the installation is complete. DO NOT power any one of them up until ALL of them are completely installed and shut down!
* Once installed, power them up in exactly the same sequence - and WAIT until bootup is complete before powering up the next!
+
+ <note tip>If you click on
the name of a preseed file, like "preseed_ldap1" below, you will be offered to download it - that's easier than copy-pasting each file.</note>
==== ldap1.xgo.example.com ====
<file - preseed_ldap1>
# There are two sets of parameters you can use as the append line:
# The minimum required is:
--
This mail was generated by DokuWiki at
http://wiki.x2go.org/
A page in your DokuWiki was added or changed. Here are the details:
Date : 2017/02/10 16:45
Browser : Mozilla/5.0 (Windows NT 6.1; WOW64; rv:45.0) Gecko/20100101 Firefox/45.0
IP-Address : 78.43.90.159
Hostname : HSI-KBW-078-043-090-159.hsi4.kabel-badenwuerttemberg.de
Old Revision: http://wiki.x2go.org/doku.php/doc:howto:x2gobroker?rev=1486745035
New Revision: http://wiki.x2go.org/doku.php/doc:howto:x2gobroker
Edit Summary: [Setting up the servers] - changed info for static IP use
User : stefanbaur
@@ -44,12 +44,11 @@
* We used the Debian 8.7.1, i386, netinst image - however, any Debian 8.x image should do.
* Preseed files can be included into a custom iso image, but for beginners, this may seem rather complicated - That's why we suggest using a web server to store them instead.
* If you don't have Apache/Lighttpd, or any other web server installed, you can spawn a temporary one using python (you need to be root to run it on the default "web"
port 80):<code>cd /directory/where/you/keep/the/preseed_files && python -m SimpleHTTPServer 80</code>
* Please review the content of each preseed-file. You will have to change the IP addresses, for example.
- * If you have control over your DHCP server, we strongly suggest assigning fixed IPs to the MAC addresses of the machines you use - if you can't do that:
- * change each machine from DHCP to static IPs
- * edit /etc/hosts on ldap1.x2go.example.com so names and IPs match again
- * as root, run <code>service dnsmasq restart</code> on ldap1.x2go.example.com
+ * If you have control over your DHCP server, we strongly suggest assigning fixed IPs to the MAC addresses of the machines you use - however, if you can't do that:
+ * change each preseed file from DHCP to static IPs
+ * edit the list in preseed_ldap1 so names and IPs match again
* You should set up the servers in the order that they are listed here.
* Each server will power down once the
installation is complete. DO NOT power any one of them up until ALL of them are completely installed and shut down!
* Once installed, power them up in exactly the same sequence - and WAIT until bootup is complete before powering up the next!
==== ldap1.xgo.example.com ====
--
This mail was generated by DokuWiki at
http://wiki.x2go.org/
A page in your DokuWiki was added or changed. Here are the details:
Date : 2017/02/10 16:43
Browser : Mozilla/5.0 (Windows NT 6.1; WOW64; rv:45.0) Gecko/20100101 Firefox/45.0
IP-Address : 78.43.90.159
Hostname : HSI-KBW-078-043-090-159.hsi4.kabel-badenwuerttemberg.de
Old Revision: http://wiki.x2go.org/doku.php/doc:howto:x2gobroker?rev=1486744305
New Revision: http://wiki.x2go.org/doku.php/doc:howto:x2gobroker
Edit Summary: [Setting up the servers] - added some installation instructions
User : stefanbaur
@@ -38,8 +38,21 @@
* it will be faster to set up a new LDAP server with the proper settings for your production environment than to base your server on this demo and trying to "clean up" afterwards
* Also, no user-friendly tool to manage LDAP settings is installed by default.
</note>
===== Setting up the servers =====
+ * These installations use the Debian preseed mechanism.
+ * Thus, obviously, you will require a Debian ISO image.
+ *
We used the Debian 8.7.1, i386, netinst image - however, any Debian 8.x image should do.
+ * Preseed files can be included into a custom iso image, but for beginners, this may seem rather complicated - That's why we suggest using a web server to store them instead.
+ * If you don't have Apache/Lighttpd, or any other web server installed, you can spawn a temporary one using python (you need to be root to run it on the default "web" port 80):<code>cd /directory/where/you/keep/the/preseed_files && python -m SimpleHTTPServer 80</code>
+ * Please review the content of each preseed-file. You will have to change the IP addresses, for example.
+ * If you have control over your DHCP server, we strongly suggest assigning fixed IPs to the MAC addresses of the machines you use - if you can't do that:
+ * change each machine from DHCP to static IPs
+ * edit /etc/hosts on ldap1.x2go.example.com so names and IPs match again
+ * as root, run <code>service dnsmasq
restart</code> on ldap1.x2go.example.com
+ * You should set up the servers in the order that they are listed here.
+ * Each server will power down once the installation is complete. DO NOT power any one of them up until ALL of them are completely installed and shut down!
+ * Once installed, power them up in exactly the same sequence - and WAIT until bootup is complete before powering up the next!
==== ldap1.xgo.example.com ====
<file - preseed_ldap1>
# There are two sets of parameters you can use as the append line:
# The minimum required is:
--
This mail was generated by DokuWiki at
http://wiki.x2go.org/
A page in your DokuWiki was added or changed. Here are the details:
Date : 2017/02/10 16:30
Browser : Mozilla/5.0 (Windows NT 6.1; WOW64; rv:45.0) Gecko/20100101 Firefox/45.0
IP-Address : 78.43.90.159
Hostname : HSI-KBW-078-043-090-159.hsi4.kabel-badenwuerttemberg.de
Old Revision: http://wiki.x2go.org/doku.php/doc:howto:x2gobroker?rev=1486744193
New Revision: http://wiki.x2go.org/doku.php/doc:howto:x2gobroker
Edit Summary: [nfs1.xgo.example.com] closing tag was missing
User : stefanbaur
@@ -511,5 +511,5 @@
nslcd nslcd/ldap-base string dc=x2go,dc=example,dc=com
nslcd nslcd/ldap-sasl-realm string
nslcd nslcd/ldap-reqcert select
nslcd nslcd/ldap-starttls boolean false
-
+ </file>
--
This mail was generated by DokuWiki at
http://wiki.x2go.org/
A page in your DokuWiki was added or changed. Here are the details:
Date : 2017/02/10 16:22
Browser : Mozilla/5.0 (Windows NT 6.1; WOW64; rv:45.0) Gecko/20100101 Firefox/45.0
IP-Address : 78.43.90.159
Hostname : HSI-KBW-078-043-090-159.hsi4.kabel-badenwuerttemberg.de
Old Revision: http://wiki.x2go.org/doku.php/doc:howto:x2gobroker?rev=1486743671
New Revision: http://wiki.x2go.org/doku.php/doc:howto:x2gobroker
Edit Summary: [Purpose of this document] - added Broker in list of non-redundant components
User : stefanbaur
@@ -28,12 +28,13 @@
* No redundancy for critical components
* Only a single LDAP server, no replication
* Only a single NFS server
* Only a single Postgres server
+ * Only a single X2Go Session Broker server
* No backup
* No monitoring/alerting
* No easy manageability/heavy abuse of LDAP:
* LDAP settings are converted from local settings on the "ldap1" server
* what ends up in LDAP this way is not
something you want to work with in a production environment
* it will be faster to set up a new LDAP server with the proper settings for your production environment than to base your server on this demo and trying to "clean up" afterwards
* Also, no user-friendly tool to manage LDAP settings is installed by default.
</note>
--
This mail was generated by DokuWiki at
http://wiki.x2go.org/
A page in your DokuWiki was added or changed. Here are the details:
Date : 2017/02/10 16:21
Browser : Mozilla/5.0 (Windows NT 6.1; WOW64; rv:45.0) Gecko/20100101 Firefox/45.0
IP-Address : 78.43.90.159
Hostname : HSI-KBW-078-043-090-159.hsi4.kabel-badenwuerttemberg.de
Old Revision: http://wiki.x2go.org/doku.php/doc:howto:x2gobroker?rev=1486743604
New Revision: http://wiki.x2go.org/doku.php/doc:howto:x2gobroker
Edit Summary: Moved system list out of "note warning" block, added headline
User : stefanbaur
@@ -1,5 +1,6 @@
- <note warning>
+ ====== X2Go Session Broker Demo Environment Setup ======
+ ===== Purpose of this document =====
This document takes you through the steps required to set up a simple X2Go Session Broker demo environment, consisting of a test client (x2goclient1.x2go.example.com) and the following servers:
* ldap1.x2go.example.com
* nfs1.x2go.example.com
@@ -7,8 +8,9 @@
* x2gobroker1.x2go.example.com
*
x2goserver1.x2go.example.com
* x2goserver2.x2go.example.com
+ <note warning>
**DO NOT EVER USE THIS IN A PRODUCTION ENVIRONMENT!
YOU WILL HURT YOURSELF VERY BADLY IF YOU IGNORE THIS WARNING!**
--
This mail was generated by DokuWiki at
http://wiki.x2go.org/
A page in your DokuWiki was added or changed. Here are the details:
Date : 2017/02/10 16:20
Browser : Mozilla/5.0 (Windows NT 6.1; WOW64; rv:45.0) Gecko/20100101 Firefox/45.0
IP-Address : 78.43.90.159
Hostname : HSI-KBW-078-043-090-159.hsi4.kabel-badenwuerttemberg.de
Old Revision: http://wiki.x2go.org/doku.php/doc:howto:x2gobroker?rev=1486743331
New Revision: http://wiki.x2go.org/doku.php/doc:howto:x2gobroker
Edit Summary: Further Layout fixes, added backup/monitoring/alerting note, added list of systems
User : stefanbaur
@@ -1,25 +1,37 @@
<note warning>
- This document takes you through the steps required to set up a simple demo environment for the X2Go Session Broker.
+ This document takes you through the steps required to set up a simple X2Go Session Broker demo environment, consisting of a test client (x2goclient1.x2go.example.com) and the following servers:
+ * ldap1.x2go.example.com
+ * nfs1.x2go.example.com
+ * pg1.x2go.example.com
+ *
x2gobroker1.x2go.example.com
+ * x2goserver1.x2go.example.com
+ * x2goserver2.x2go.example.com
+
**DO NOT EVER USE THIS IN A PRODUCTION ENVIRONMENT!
YOU WILL HURT YOURSELF VERY BADLY IF YOU IGNORE THIS WARNING!**
These instructions violate almost every "best practice"/standard there is!
- They are meant to get an X2Go Session Broker demo enviroment set up, fast. Nothing more, nothing less.
- It has the following shortcomings:
+ They are meant to get an X2Go Session Broker demo enviroment set up, fast.
+
+ Nothing more, nothing less.
+
+ This setup has the following shortcomings:
* Massive lack of security:
* Unencrypted LDAP connections
* All passwords - users, database admin, root, are set to the value "start"
* SSH keyfile login is only enforced for the root account
* No redundancy for critical components
* Only a single LDAP server, no replication
* Only a single NFS server
* Only a single Postgres server
+ * No
backup
+ * No monitoring/alerting
* No easy manageability/heavy abuse of LDAP:
* LDAP settings are converted from local settings on the "ldap1" server
* what ends up in LDAP this way is not something you want to work with in a production environment
* it will be faster to set up a new LDAP server with the proper settings for your production environment than to base your server on this demo and trying to "clean up" afterwards
* Also, no user-friendly tool to manage LDAP settings is installed by default.
</note>
--
This mail was generated by DokuWiki at
http://wiki.x2go.org/