Out-of-band network partition in ZRH
Bant dışı yönetim — ZRH
Zaman çizelgesi
-
Çözüldü
Out-of-band access in ZRH has been stable since 08:49 UTC. Duration: 1 h 17 min. Any reinstall or power action queued during the window has been retried and completed.
-
İzleniyor
Consoles are reachable again. We are restoring the state sync between the two firewall members.
-
Neden belirlendi
The firewall pair in front of the ZRH management network lost its state synchronisation and both members went passive. We have forced one member active.
-
İnceleniyor
No IPMI or KVM console in ZRH is reachable since 07:32 UTC. Production traffic is unaffected. Reinstalls and power actions from the customer area will fail for machines in ZRH until this is fixed.
Olay sonrası inceleme ·
Ne oldu ve ne değişti
Neden
A firmware update on the management-network firewall pair in ZRH reset the state-synchronisation key on one member. When the heartbeat failed, both members concluded the other was active and went passive.
Etki
IPMI, KVM, reinstalls and remote power actions were unavailable in ZRH for 1 h 17 min. Production connectivity, workloads and data were unaffected.
Neyi değiştirdik
- Firewall firmware updates are now applied one member at a time with an explicit failover test between the two.
- The split-brain guard was changed so that a member with a healthy upstream link stays active rather than going passive.
Saatler, saat diliminizde () gösterilir.
İlgili sayfalar
- Hizmet durumugpuserver.io'nun her bileşeni ve veri merkezi, beş şehirden 60 saniyede bir yoklanır; 90 günlük kullanılabilirlik ve 2022'den beri olay logu burada yer alır.
- Olay geçmişigpuserver.io'da izlemenin başladığı Eylül 2022'den bu yana yaşanan her olay ve bakım penceresi, ay ay, zaman çizelgesi ve olay sonrası incelemesiyle birlikte.
- Hizmet seviyesi sözleşmesi%99,9 taahhüdü: neyin kesinti sayıldığı, dışarıdan nasıl ölçüldüğü, kaybedilen her dakika için beş dakika süre iadesi ve istisnaların tamamı.
- Ağ25 Gbit/s'e kadar sayaçsız portlar, site başına iki operatör ve bir IX, sürekli DDoS filtreleme, yönlendirilen IPv6 — ve baştan belirtilen, sunmadığımız dört şey.