<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>☁️CSP Related :: Ay Docs</title>
    <link>https://ops.docs.72602.space/csp/index.html</link>
    <description>Managed Network Topology The two k3s clusters have different trust boundaries and service roles. zjlab is the private company-network workload plane; 72602 is the public service plane. ecs-99 is the shared public relay and SSH jump host. The diagram shows stable roles and paths, not a live health status.&#xA;%%{init: {&#34;flowchart&#34;: {&#34;curve&#34;: &#34;basis&#34;, &#34;nodeSpacing&#34;: 30, &#34;rankSpacing&#34;: 45}}}%% flowchart TB users[&#34;Public users&#34;] operators[&#34;Operators&#34;] subgraph relay[&#34;Aliyun ECS ecs-99 · public relay · 47.110.67.161&#34;] direction LR web[&#34;HAProxy Web\n80 / 443&#34;] mail[&#34;HAProxy Mail\n25 / 465 / 587 / 993&#34;] sshPublic[&#34;72602 SSH\n10021 primary · 10022 backup&#34;] sshPrivate[&#34;ZJLAB ProxyJump targets\n10023 primary · 10024 backup\nloopback only&#34;] monitor[&#34;Tunnel monitors\nDingTalk alerts&#34;] end subgraph servicePlane[&#34;72602-minipc · public k3s service plane&#34;] direction LR ingress[&#34;ingress-nginx\n32080 / 32443&#34;] mailu[&#34;Mailu\n25 / 465 / 587 / 993&#34;] ssh72602[&#34;sshd\n22&#34;] end subgraph privatePlane[&#34;zjlab-ubuntu · private k3s workload plane&#34;] direction LR sshZJLAB[&#34;sshd\n22&#34;] workloads[&#34;Private workloads\nand internal data&#34;] end users --&gt;|&#34;HTTP(S)&#34;| web users --&gt;|&#34;SMTP / IMAP&#34;| mail operators --&gt;|&#34;source-restricted&#34;| sshPublic operators --&gt;|&#34;ECS SSH 22 + ProxyJump&#34;| sshPrivate web --&gt;|&#34;WireGuard UDP 51820&#34;| ingress mail --&gt;|&#34;loopback backends over 10022&#34;| mailu sshPublic --&gt;|&#34;reverse SSH tunnels&#34;| ssh72602 sshPrivate --&gt;|&#34;reverse SSH tunnels&#34;| sshZJLAB sshZJLAB --&gt; workloads monitor -.-&gt; sshPublic monitor -.-&gt; sshPrivate classDef private fill:#e9f5ee,stroke:#1f7a4d,color:#123b27; classDef public fill:#eaf2ff,stroke:#2f63a8,color:#142b4a; classDef relay fill:#fff4df,stroke:#b87916,color:#4d3208; classDef service fill:#f4efff,stroke:#7650a8,color:#2d1e4a; class sshZJLAB,workloads private; class ingress,mailu,ssh72602 public; class web,mail,sshPublic,sshPrivate,monitor relay; class users,operators service; The data-path arrows point from the client-facing listener to the destination. The reverse SSH sessions themselves are initiated outbound by 72602-minipc and zjlab-ubuntu toward ECS.</description>
    <generator>Hugo</generator>
    <language>en</language>
    <lastBuildDate>Thu, 07 Mar 2024 15:00:59 +0800</lastBuildDate>
    <atom:link href="https://ops.docs.72602.space/csp/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>72602</title>
      <link>https://ops.docs.72602.space/csp/72602/index.html</link>
      <pubDate>Thu, 07 Mar 2024 15:00:59 +0800</pubDate>
      <guid>https://ops.docs.72602.space/csp/72602/index.html</guid>
      <description>Scope This section is the single source of truth for 72602 cluster operations.&#xA;Topology Public ECS: 47.110.67.161 (2C4G, cn-hangzhou, zone cn-hangzhou-i) Active ingress domain: 72602.space; legacy .72602.online routes are retired ArgoCD host: argocd.72602.space k3s node: 72602-minipc (192.168.0.25, MiniPC N100 28G+1TB NVMe) SSH reverse tunnel: :10021 (main), :10022 (backup and Mailu loopback) Web tunnel: WireGuard UDP 51820 between ECS and minipc Ingress NodePort: 32080 (HTTP), 32443 (HTTPS) Ingress class: nginx Ingress namespace: basic-components cert-manager issuer: lets-encrypt Storage class: local-path (default, RWO) OS: Ubuntu 26.04 LTS (minipc) k3s version: v1.34.6+k3s1 (installed via install.sh) Traffic Path Web:</description>
    </item>
    <item>
      <title>Aliyun</title>
      <link>https://ops.docs.72602.space/csp/aliyun/index.html</link>
      <pubDate>Thu, 07 Mar 2024 15:00:59 +0800</pubDate>
      <guid>https://ops.docs.72602.space/csp/aliyun/index.html</guid>
      <description>OSSutil ECS DNS</description>
    </item>
    <item>
      <title>Shared Clash/Mihomo Operations</title>
      <link>https://ops.docs.72602.space/csp/clashctl/index.html</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>https://ops.docs.72602.space/csp/clashctl/index.html</guid>
      <description>zjlab-ubuntu and 72602-minipc both use nelvko/clash-for-linux-install from /home/aaron/clashctl. This page is the shared host-level proxy runbook; cluster-specific bridges and application proxy variables remain documented on their respective cluster pages.&#xA;Command Loading clashctl is a Bash function loaded by /home/aaron/.bashrc, not an executable installed in PATH. Non-interactive SSH and agent shells do not automatically load it, so command -v clashctl or a direct clashctl status can incorrectly report that the command is missing.</description>
    </item>
    <item>
      <title>Huawei</title>
      <link>https://ops.docs.72602.space/csp/huawei/index.html</link>
      <pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate>
      <guid>https://ops.docs.72602.space/csp/huawei/index.html</guid>
      <description></description>
    </item>
    <item>
      <title>Tencent</title>
      <link>https://ops.docs.72602.space/csp/tencent/index.html</link>
      <pubDate>Thu, 07 Mar 2024 15:00:59 +0800</pubDate>
      <guid>https://ops.docs.72602.space/csp/tencent/index.html</guid>
      <description></description>
    </item>
    <item>
      <title>Zhejianglab</title>
      <link>https://ops.docs.72602.space/csp/zhejianglab/index.html</link>
      <pubDate>Thu, 07 Mar 2024 15:00:59 +0800</pubDate>
      <guid>https://ops.docs.72602.space/csp/zhejianglab/index.html</guid>
      <description>👨‍💻Schedmd Slurm Build &amp; Install Install On Debian Install On Ubuntu Install From Binary Install From Helm Chart Install From K8s Operator Try OpenSCOW CheatSheet Common Environment Variables File Operations Submit Jobs Configuration Files Slurm Configuration File Slurmdbd Configuration File MPI Libs Test Intel MPI Jobs Test Open MPI Jobs Astro Code Data Warehouse Scope ZJLAB operational inventory and network details are private. Public pages contain reusable application guidance only; verify dynamic state against the live cluster before applying a runbook.</description>
    </item>
  </channel>
</rss>