infrastructure

From labs.ie ~
Jump to navigation Jump to search

I run three hypervisors. Two of these run 24/7 and are based on SFF Dell R710s and the third is an LFF Dell r710. The hypervisors themselves are VMWare ESXi with licenses from VMUG. Backups are done via urbackup and backed up to my business gsuite account.

esxi1

Dual L5640 Intel CPUs and 48gb ECC ram, coupled with 8x500gb Western Digital 2.5inch hard drives in raid6. This gaves ~4tb of usable space via an H700 with the redundancy for 2 drives to fail without dataloss.

esxi2

Identical components as esxi1. This was initially a dev box where I'd frequently spin up and term VM's while testing new things. As the lab grew I've had to lean on it more and it now runs 24/7.

esxi3

Dual L5640 Intel CPUs and 24gb ECC ram. Storage here is 4x500gb SSDs in raid10 again via an H700. The primary use for this is for eventually hosting two plex servers where ram isn't as much of a concern. It also hosts vcenter and currently, is only online to periodically update Plex or move VMs between hypervisors.

opnsense

Intel X3470 CPU with 8gb ECC ram and storage via 2x 140gb SSDs in raid1. opnsense.org

other

backup hardware

I have a cache of backup CPUs and about ~72gb ram, along with spare H700s, spare drives and PSU's in case of failure which will someday come in handy.

networking

Networking is done via a 10g Mikrotik switch between the entire lab, courtesy of some 10g Mellanox networking cards.

admin

Administration is done via either LAN access & Dell iDracs or via VPN & SSH. Anything web-based (but locked to lan, such as ESXi and IDracs) are secured behind SSL certs backed by my own Certificate Authority setup within opnsense. All SSH is limited to LAN access only with key-based authentication and strict fail2ban rules.