Networking

From London Hackspace Wiki
Revision as of 13:05, 11 July 2018 by Sam w (talk | contribs) (Add more network L1&2 information as gathered from IRC and visit)
Jump to navigation Jump to search

This is the networking page for Ujima House the 2018-era planned location for London Hackspace. An active IT infrastructure planning document is being worked on in Google Sheets.

We want your help! Please reach out on the LHS Infrastructure IRC channel or post on the London Hackspace Infrastructure Google Group if you'd like to get involved.

For historical comparison, please refer to 447 Networking.

Our ISP

  • What is the broadband availability at the place? Is there fibre already?

According to the SamKnows broadband checker, we can get BT Openreach FTTC and FTTP service but not cable-based broadband.

An example check with BT using the address for "Honeypot Nursery, Ujima House, 388 High Road, Wembley, HA9 6AR" we see BT Infinity 2 (76Mbit/19Mbit up) is available. Honeypot Nursery formerly occupied the proposed LHS location and is about 350 feet from the LWWEM Wembley Exchange but seems to actually get service from LWNWEM instead.

  • Where do the Ethernet cables pictured in photos 21 and 'ground floor cabinet' go?

Unknown at this time - we'll need to trace where they go in our next visit.

IP's

Currently looking at getting rid of the 172.16.X.Y network and replacing it with a more flexible and expansive 10.20X.X.X IP range.

DNS

TBD -

DHCP

TBD -

IP Allocations

TBD -

TLS

Ideally we've migrated everything to LetsEncrypt unless we're doing internal network / infrastructure SSL trust/validation, but all TBD.

There is a list of our legacy certificates here Networking/TLSCerts

WiFi

We have 6 Cisco 3502 access points, awaiting better locations for Ujima House:

  • AP1 -
  • AP2 -
  • AP3 -
  • AP4 -
  • AP5 -
  • AP6 -

Due to a new version of Cisco IOS the 3502 access points won't let you log in if you present them with loads of ssh pubkeys. To force ssh to use a password use:

  ssh -o "PreferredAuthentications password" root@ap1

We have 3 SSID's:

  • LondonHackspace - Standard WPA2 auth, the password can be found on notices stuck on the walls of most rooms
  • LondonHackspace-5ghz - As above but 5ghz only
  • spacenet - part of the SpaceFED Federated inter-hackerspace wifi network, You'll need to setup your LDAP account to use it.

Layer 2

Managed Building Fibre Connection

There is a fibre provided internet connection managed by the landlord and included in our rent. Details TBD but we have been told we will have a dedicated public IPv4 address.

VDSL2 Provider

There is potential to use the wiring in the 3rd floor server room for VDSL circuits. Details TBD.

Local Network

Hopefully we'll have a consistent infrastructure - similar switches for both normal and PoE ethernet, etc.

ToDo

See Networking Todo.

Layer 1 (Physical Wiring)

Ground Floor

Patch Panel

???

First Floor

Rough diagram showing path of network cables above the ceiling of the 1st floor.
  • Two new purple jacketed cat6 cables from the ground floor cabinet to the 1st floor server room, run in on 2018-07-10. They go up a riser in the north east corner and then run above the ceiling tiles into the server room, in cable tray for some of the way. See image.
  • There are a large number of network sockets spread around the 1st floor, many (all?) of which seem to be run back via bundles of grey cat5e (?) cable to the server room, also partially in cable trays.
  • A single grey jacketed Cat5e (?) uplink cable from the first to third floor server room.

Server Room

A small room with some (?) ventilation. Area K on the floor plan.

Patch Panel

???

Third Floor

View inside the third floor server room

The server room on the third floor is the external demarcation point for the building - the building's existing internet connection is available here along with BT NTE (s?) and krone frames. The uplink cable from the 1st floor appears here.