<!-- 
RSS generated by JIRA (8.3.4#803005-sha1:1f96e09b3c60279a408a2ae47be3c745f571388b) at Sat Feb 10 16:21:13 JST 2024

It is possible to restrict the fields that are returned in this document by specifying the 'field' parameter in your request.
For example, to request only the issue key and summary append 'field=key&field=summary' to the URL of your request.
-->
<rss version="0.92" >
<channel>
    <title>PFS-JIRA</title>
    <link>https://pfspipe.ipmu.jp/jira</link>
    <description>This file is an XML representation of an issue</description>
    <language>en-us</language>    <build-info>
        <version>8.3.4</version>
        <build-number>803005</build-number>
        <build-date>13-09-2019</build-date>
    </build-info>


<item>
            <title>[INSTRM-71] organization of dnsmasq configuration files - both DHCP and DNS</title>
                <link>https://pfspipe.ipmu.jp/jira/browse/INSTRM-71</link>
                <project id="10300" key="INSTRM">Instrument control development</project>
                    <description>&lt;p&gt;Define organization of dnsmasq configuration files and put documents in ics_doc. ics_dnsmasq repo is designed to be mapped to /etc/dnsmasq.d/ directory, and all of non configuration lines shall start with &apos;#&apos;, which breaks rst (or markdown).&lt;br/&gt;
This document need to include:&lt;/p&gt;
&lt;ul&gt;
	&lt;li&gt;Organization of configuration files (directory and file schema/name, containts)&lt;/li&gt;
	&lt;li&gt;Service (dnsmasq) global configurations&lt;/li&gt;
	&lt;li&gt;Branch organization&lt;/li&gt;
&lt;/ul&gt;


&lt;p&gt;Operational procedures (e.g. to register new hardware, to exchange hardware for maintenance) is planned to be developed in separated ticket (ref. &lt;a href=&quot;https://pfspipe.ipmu.jp/jira/browse/INSTRM-70&quot; title=&quot;Define procedure of configuration and coordination on dnsmasq (ics_dnsmasq repo) for production and development&quot; class=&quot;issue-link&quot; data-issue-key=&quot;INSTRM-70&quot;&gt;&lt;del&gt;INSTRM-70&lt;/del&gt;&lt;/a&gt;)&lt;/p&gt;

&lt;p&gt;Based on current working configuration used in labs at JHU and LAM (#19c9f47):&lt;/p&gt;
&lt;ul&gt;
	&lt;li&gt;Store hostname to IP address bindings in hosts/ directory&lt;/li&gt;
	&lt;li&gt;Store MAC address to hostname bindings in the top directory, which will be changed on hardware exchange for maintenance&lt;/li&gt;
	&lt;li&gt;Have one set of files for above two bindings (in total two files) per one set of functional modules, e.g. BCU1, ENU1, PFI&lt;img class=&quot;emoticon&quot; src=&quot;https://pfspipe.ipmu.jp/jira/images/icons/emoticons/help_16.png&quot; height=&quot;16&quot; width=&quot;16&quot; align=&quot;absmiddle&quot; alt=&quot;&quot; border=&quot;0&quot;/&gt;&lt;/li&gt;
	&lt;li&gt;All dnsmasq global configuration (e.g. domain, log-dhcp) shall be in pfs.conf&lt;/li&gt;
	&lt;li&gt;All external configuration (e.g. external DNS server) shall be in machine.conf&lt;/li&gt;
&lt;/ul&gt;


&lt;p&gt; from &lt;span class=&quot;error&quot;&gt;&amp;#91;1&amp;#93;&lt;/span&gt;, points 1,2 of 1st section, 1,2,4 of 2nd section. (5,6 of 1st section and 3 of 2nd section need to be defined in global configuration; 3,4 of 1st section is specific to JHU/LAM branch)&lt;/p&gt;

&lt;p&gt;Also following restrictions/ways have confirmed, which need to be cared in configurations:&lt;/p&gt;
&lt;ul&gt;
	&lt;li&gt;addn-hosts=xxx is to set an additional directory for hosts files to be read by dnsmasq DNS service&lt;/li&gt;
	&lt;li&gt;hosts files in addn-hosts directory can contain normal definition lines, such like &quot;ipaddr name1 name2 ...&quot;&lt;/li&gt;
	&lt;li&gt;dhcp-host line can contain IP address, and can rely on hostname-ipaddr conversion defined in hosts files in addn-hosts&lt;/li&gt;
	&lt;li&gt;(so, seems no way to have DNS records for not leased dhcp-host entry, if we don&apos;t take a way with hosts file)&lt;/li&gt;
&lt;/ul&gt;



&lt;p&gt;*1 &lt;a href=&quot;https://github.com/Subaru-PFS/ics_dnsmasq/blob/947663ffc3c63d4a9d9392cdc279627bffab6f95/PFS.README&quot; class=&quot;external-link&quot; rel=&quot;nofollow&quot;&gt;https://github.com/Subaru-PFS/ics_dnsmasq/blob/947663ffc3c63d4a9d9392cdc279627bffab6f95/PFS.README&lt;/a&gt;&lt;/p&gt;</description>
                <environment></environment>
        <key id="11429">INSTRM-71</key>
            <summary>organization of dnsmasq configuration files - both DHCP and DNS</summary>
                <type id="3" iconUrl="https://pfspipe.ipmu.jp/jira/secure/viewavatar?size=xsmall&amp;avatarId=10518&amp;avatarType=issuetype">Task</type>
                                            <priority id="3" iconUrl="https://pfspipe.ipmu.jp/jira/images/icons/priorities/major.svg">Major</priority>
                        <status id="10002" iconUrl="https://pfspipe.ipmu.jp/jira/images/icons/statuses/generic.png" description="The issue is resolved, reviewed, and merged">Done</status>
                    <statusCategory id="3" key="done" colorName="green"/>
                                    <resolution id="10000">Done</resolution>
                                        <assignee username="atsushi.shimono">shimono</assignee>
                                    <reporter username="atsushi.shimono">shimono</reporter>
                        <labels>
                    </labels>
                <created>Wed, 11 Jan 2017 07:57:56 +0000</created>
                <updated>Wed, 21 Feb 2018 17:51:56 +0000</updated>
                            <resolved>Wed, 21 Feb 2018 17:51:56 +0000</resolved>
                                                                    <component>ics_doc</component>
                        <due></due>
                            <votes>0</votes>
                                    <watches>11</watches>
                                                                <comments>
                            <comment id="11839" author="atsushi.shimono" created="Tue, 7 Feb 2017 03:05:23 +0000"  >&lt;p&gt;addn-hosts and dhcp-hostsfile could have directory as its value.&lt;/p&gt;

&lt;div class=&quot;preformatted panel&quot; style=&quot;border-width: 1px;&quot;&gt;&lt;div class=&quot;preformattedContent panelContent&quot;&gt;
&lt;pre&gt;addn-hosts=/etc/dnsmasq.d/hosts/
dhcp-hostsfile=/etc/dnsmasq.d/dhcp/

Feb  7 09:14:31 disk-01 dnsmasq[5074]: read /etc/dnsmasq.d/hosts//hostname - 0 addresses
Feb  7 09:14:31 disk-01 dnsmasq-dhcp[5074]: read /etc/dnsmasq.d/dhcp//infra
Feb  7 09:14:31 disk-01 systemd[1]: Started dnsmasq - A lightweight DHCP and caching DNS server.

&lt;/pre&gt;
&lt;/div&gt;&lt;/div&gt;</comment>
                            <comment id="11840" author="atsushi.shimono" created="Tue, 7 Feb 2017 04:49:19 +0000"  >&lt;p&gt;as similar to conf-dir, any files whose names end in ~, start with . or start and end with # are (&lt;b&gt;seems to be&lt;/b&gt;) always skipped.&lt;/p&gt;

&lt;div class=&quot;code panel&quot; style=&quot;border-width: 1px;&quot;&gt;&lt;div class=&quot;codeContent panelContent&quot;&gt;
&lt;pre class=&quot;code-java&quot;&gt;
/etc/dnsmasq.d# ls -al dhcp hosts 
dhcp:
total 0
drwxr-xr-x 2 root root 33 Feb  7 13:46 .
drwxr-xr-x 4 root root 78 Feb  7 09:14 ..
-rw-r--r-- 1 root root  0 Feb  7 13:46 .dotfile
-rw-r--r-- 1 root root  0 Feb  7 09:14 infra

hosts:
total 0
drwxr-xr-x 2 root root 53 Feb  7 13:45 .
drwxr-xr-x 4 root root 78 Feb  7 09:14 ..
-rw-r--r-- 1 root root  0 Feb  7 13:45 .dotfile
-rw-r--r-- 1 root root  0 Feb  7 08:53 hostname
-rw-r--r-- 1 root root  0 Feb  7 13:45 no-dotfile

Feb  7 13:46:05 disk-01 dnsmasq[5227]: reading /etc/resolv.conf
Feb  7 13:46:05 disk-01 dnsmasq[5227]: using nameserver 10.100.200.1#53
Feb  7 13:46:05 disk-01 dnsmasq[5227]: read /etc/hosts - 5 addresses
Feb  7 13:46:05 disk-01 dnsmasq[5227]: read /etc/dnsmasq.d/hosts&lt;span class=&quot;code-comment&quot;&gt;//no-dotfile - 0 addresses
&lt;/span&gt;Feb  7 13:46:05 disk-01 dnsmasq[5227]: read /etc/dnsmasq.d/hosts&lt;span class=&quot;code-comment&quot;&gt;//hostname - 0 addresses
&lt;/span&gt;Feb  7 13:46:05 disk-01 dnsmasq-dhcp[5227]: read /etc/dnsmasq.d/dhcp&lt;span class=&quot;code-comment&quot;&gt;//infra
&lt;/span&gt;Feb  7 13:46:05 disk-01 systemd[1]: Started dnsmasq - A lightweight DHCP and caching DNS server.
&lt;/pre&gt;
&lt;/div&gt;&lt;/div&gt;

&lt;p&gt;so, we may be possible to host some readme or tips file with .xxxx filename.&lt;/p&gt;</comment>
                            <comment id="11841" author="atsushi.shimono" created="Tue, 7 Feb 2017 05:42:04 +0000"  >&lt;p&gt;options we may need or may be better to have are:&lt;/p&gt;
&lt;ul&gt;
	&lt;li&gt;local-ttl: to set DNS reply TTL (default 0)&lt;/li&gt;
	&lt;li&gt;log-queries&lt;/li&gt;
	&lt;li&gt;expand-hosts&lt;/li&gt;
	&lt;li&gt;domain-needed&lt;/li&gt;
	&lt;li&gt;log-dhcp&lt;/li&gt;
&lt;/ul&gt;


&lt;p&gt;options we may be better to have, but better to think seriously on environment:&lt;/p&gt;
&lt;ul&gt;
	&lt;li&gt;bogus-priv : no reverse lookups for private IP ranges&lt;/li&gt;
	&lt;li&gt;dhcp-sequential-ip : sequential DHCP relase to clients (default hash)&lt;/li&gt;
&lt;/ul&gt;
</comment>
                            <comment id="11842" author="atsushi.shimono" created="Tue, 7 Feb 2017 06:46:40 +0000"  >&lt;p&gt;basic idea&lt;/p&gt;
&lt;ul&gt;
	&lt;li&gt;have only global configurations (dnsmasq-wide, pxe, etc.) in the top directory, one file per one (specific) group like pxe&lt;/li&gt;
	&lt;li&gt;have directories for DHCP (dhcp-hostsfile mac-hostname pair, with tag for host - e.g. pxe) and DNS (addn-hosts; hostname-IP pair)&lt;/li&gt;
	&lt;li&gt;use the same name in two directories for each group and use canonical abbreviation and cluster ID, like bcu1, pfi, mcs. (OR several files of DHCP for one DNS could be an additional option, esp. SpS)&lt;/li&gt;
&lt;/ul&gt;


&lt;p&gt;For dhcp/dns conf files,&lt;/p&gt;
&lt;ul&gt;
	&lt;li&gt;set different name for each port (MAC address) of physical host, with postfix like r410-1a&lt;/li&gt;
	&lt;li&gt;have one hostname for one physical host (like r410-1) and set all normal ethernet ports to one IP address (like &quot;10.0.0.10 r410-1 r410-1a r410-1b&quot;)&lt;/li&gt;
	&lt;li&gt;fix hostname to function, which means BEE of BCU1 shall keep the same hostname (and IP address) even if MAC address (host hardware) changed&lt;/li&gt;
&lt;/ul&gt;


&lt;p&gt;This will make:&lt;/p&gt;
&lt;ul&gt;
	&lt;li&gt;&lt;b&gt;mostly&lt;/b&gt; only files in dhcp-hostsdir will be modified/replaced on replace of broken hardware&lt;/li&gt;
	&lt;li&gt;files in root (dhcp-range etc.) and in addn-hosts (IP address) are different among branches (sites)&lt;/li&gt;
	&lt;li&gt;files in dhcp-hostsdir will be similar among branches (sites)&lt;br/&gt;
and, this leads simple merge/push among branches (even copy of selected commits) to be difficult. Also hardware replacement will happen at &lt;b&gt;one&lt;/b&gt; site, independent from other sites even which will get modified on hardware delivery.&lt;/li&gt;
&lt;/ul&gt;


&lt;p&gt;So, inter-branch management will be&lt;/p&gt;
&lt;ul&gt;
	&lt;li&gt;add/modify global configurations (e.g. dhcp-option) on demand&lt;/li&gt;
	&lt;li&gt;add/modify DNS configurations (addn-hosts) at the initial moment of hardware delivery like LAM or ASIAA to Subaru&lt;/li&gt;
	&lt;li&gt;add/modify DHCP configurations (dhcp-hostsdir) at point of delivery or hardware replacement&lt;/li&gt;
&lt;/ul&gt;


&lt;p&gt;also,&lt;/p&gt;
&lt;ul&gt;
	&lt;li&gt;set master as one at Subaru, and each site (institute) has one branch&lt;/li&gt;
	&lt;li&gt;have only already delivered hardware in master both for DNS and DHCP&lt;/li&gt;
&lt;/ul&gt;


&lt;p&gt;&lt;a href=&quot;https://pfspipe.ipmu.jp/jira/secure/ViewProfile.jspa?name=fmadec&quot; class=&quot;user-hover&quot; rel=&quot;fmadec&quot;&gt;fmadec&lt;/a&gt;, &lt;a href=&quot;https://pfspipe.ipmu.jp/jira/secure/ViewProfile.jspa?name=arnaud.lefur&quot; class=&quot;user-hover&quot; rel=&quot;arnaud.lefur&quot;&gt;arnaud.lefur&lt;/a&gt;, &lt;a href=&quot;https://pfspipe.ipmu.jp/jira/secure/ViewProfile.jspa?name=cloomis&quot; class=&quot;user-hover&quot; rel=&quot;cloomis&quot;&gt;cloomis&lt;/a&gt;, &lt;a href=&quot;https://pfspipe.ipmu.jp/jira/secure/ViewProfile.jspa?name=jeg&quot; class=&quot;user-hover&quot; rel=&quot;jeg&quot;&gt;jeg&lt;/a&gt;, &lt;a href=&quot;https://pfspipe.ipmu.jp/jira/secure/ViewProfile.jspa?name=sywang&quot; class=&quot;user-hover&quot; rel=&quot;sywang&quot;&gt;sywang&lt;/a&gt;, &lt;a href=&quot;https://pfspipe.ipmu.jp/jira/secure/ViewProfile.jspa?name=chihyi&quot; class=&quot;user-hover&quot; rel=&quot;chihyi&quot;&gt;chihyi&lt;/a&gt;, &lt;a href=&quot;https://pfspipe.ipmu.jp/jira/secure/ViewProfile.jspa?name=naoyuki.tamura&quot; class=&quot;user-hover&quot; rel=&quot;naoyuki.tamura&quot;&gt;naoyuki.tamura&lt;/a&gt;, &lt;a href=&quot;https://pfspipe.ipmu.jp/jira/secure/ViewProfile.jspa?name=philip&quot; class=&quot;user-hover&quot; rel=&quot;philip&quot;&gt;philip&lt;/a&gt;&lt;br/&gt;
any comments?&lt;/p&gt;</comment>
                            <comment id="11843" author="atsushi.shimono" created="Tue, 7 Feb 2017 08:54:11 +0000"  >&lt;p&gt;Additions for system-wide items&lt;/p&gt;
&lt;ul&gt;
	&lt;li&gt;physical computer can have only one IP address from PFS dnsmasq even it is with multiple ethernet interface&lt;/li&gt;
	&lt;li&gt;system-wide shared boxes shall be configured as fixed IP address, but also entries need to be registered to dnsmasq (both DNS, DHCP)&lt;/li&gt;
	&lt;li&gt;one physical computer shall be tighten to the one IP address, with e.g. &quot;10.0.0.10 r410-1 r410-1a r410-b&quot; - host will have canonical name &quot;r410-1&quot; but interface (MAC address) to &quot;r410-1a&quot; or &quot;r410-1b&quot;&lt;/li&gt;
&lt;/ul&gt;


&lt;p&gt;If host is configured as bonding (either by LACP or rr), DHCP request will be from one of bonded interfaces, so this configuration shall be fine.&lt;/p&gt;</comment>
                            <comment id="12002" author="atsushi.shimono" created="Thu, 13 Apr 2017 19:31:54 +0000"  >&lt;p&gt;Draft of 1st version added as PR at github.&lt;br/&gt;
If any comment/suggestion/correction, comment to this ticket or PR by 2017/Apr/20 1200 UTC.&lt;/p&gt;</comment>
                            <comment id="12100" author="yuki.moritani" created="Mon, 17 Apr 2017 05:42:21 +0000"  >&lt;p&gt;Hi Atushi,&lt;/p&gt;

&lt;p&gt;Regarding the hostname, product-tree base name should be fine, but I feel that it would be better to describe guideline  &quot;hostname&quot; more specifically, to avoid confusion and/or duplication.&lt;br/&gt;
Also, are there any mechanism to check duplication before one defines a hostname?&lt;/p&gt;</comment>
                            <comment id="12108" author="atsushi.shimono" created="Mon, 17 Apr 2017 19:08:37 +0000"  >&lt;p&gt;In the current proposal, following line is included. Isn&apos;t it enough?&lt;br/&gt;
&amp;gt; Subparts of &apos;hostname&apos; is RECOMMENDED to be well defined name in the PFS product tree, such as bcu1 but not just b1, to make hostname to be self described.&lt;/p&gt;

&lt;p&gt;One point I may need to update is to define more solid way to perform merge (or copy and add) from branch to master (or even to some branch for AIT). We may need to have some review and filtering on such event to be more secure...&lt;/p&gt;</comment>
                            <comment id="12110" author="naoyuki.tamura" created="Tue, 18 Apr 2017 12:19:31 +0000"  >&lt;p&gt;Only a few comments:&lt;/p&gt;

&lt;p&gt;General:&lt;/p&gt;
&lt;ul class=&quot;alternate&quot; type=&quot;square&quot;&gt;
	&lt;li&gt;I would be happy to read this kind of a document and write comments, but should certainly not the only person to judge whether this is in a good enough shape and give it a go, due simply to my limited expertise and experiences of this kind of subject. I recommend this to be reviewed by ~1-2 more experts who could say &quot;what if he/she designs this ...&quot; type of things. Suggestions are: Lupton, Jescke, Tait, etc.  - Does this apply to virtual machine configurations? There &lt;b&gt;may&lt;/b&gt; be any other cases where it could be hard for target names to be defined from the hardware product tree e.g. since its cross-item nature?&lt;/li&gt;
	&lt;li&gt;There are a few places with &quot;SHALL not&quot;, &quot;not is REQUIRED&quot;, in which cases &quot;not&quot; is critical not to be separated from the other, so it should be tied up together with all UPPER cases.&lt;br/&gt;
o I would be happy to read this kind of a document and write comments, but am certainly not a person to judge whether this is in a good enough shape and give it a go. I recommend this to be reviewed by ~1-2 more experts who could say &quot;what if he/she designs this ...&quot; type of things. Suggestions are: Lupton, Jescke, Tait, etc.&lt;br/&gt;
o Branch management:&lt;/li&gt;
	&lt;li&gt;Merging two branches will happen only when hardware delivery happens and this delivery completes the task of one party. Is this correct? For example, JHU keeps delivering cryostats to LAM one after another, but until the last cryostat is delivered, they should need to manage their branch.&lt;/li&gt;
	&lt;li&gt;I suggest to assign a branch manager per institute, just to clarify the location of responsibility.&lt;/li&gt;
&lt;/ul&gt;
</comment>
                            <comment id="12111" author="atsushi.shimono" created="Tue, 18 Apr 2017 13:08:32 +0000"  >&lt;ul&gt;
	&lt;li&gt;review persons&lt;/li&gt;
	&lt;li&gt;due to system restriction, I could not set multiple reviewers, so I just put manager for reviewer. I shall be set as review from the wind, sorry. although I set reviewer as &lt;a href=&quot;https://pfspipe.ipmu.jp/jira/secure/ViewProfile.jspa?name=naoyuki.tamura&quot; class=&quot;user-hover&quot; rel=&quot;naoyuki.tamura&quot;&gt;naoyuki.tamura&lt;/a&gt;, all relevant persons are putted into watchers, so they should receive notification and may give review comments/suggestions.&lt;/li&gt;
	&lt;li&gt;cases&lt;/li&gt;
	&lt;li&gt;I will correct them&lt;/li&gt;
	&lt;li&gt;merging two branches&lt;/li&gt;
	&lt;li&gt;all branches shall exists over all the time and to be operated, so actual operation is similar to rebase than merge, but merging changes in some branch to another on hardware delivery could be called as &quot;merge&quot;, so I used &quot;merge&quot; but left section title as &quot;branch management&quot;&lt;/li&gt;
	&lt;li&gt;assigning branch managers&lt;/li&gt;
	&lt;li&gt;yes. as recent comment/discussions, I plan to add more solid way of branch management.&lt;/li&gt;
&lt;/ul&gt;
</comment>
                            <comment id="12125" author="atsushi.shimono" created="Thu, 27 Apr 2017 20:54:53 +0000"  >&lt;p&gt;Getting no comment from others, I&apos;ll merge this shortly, with reminding following points (mostly) to me.&lt;/p&gt;
&lt;ul&gt;
	&lt;li&gt;Need to file a ticket to add a section on branch management, to include solid way of branch management, such as to point manager(s) per each branch (incl. master) on review and approval of commit(s).&lt;/li&gt;
	&lt;li&gt;Need to work on &lt;a href=&quot;https://pfspipe.ipmu.jp/jira/browse/INSTRM-43&quot; title=&quot;[dnsmasq] Change branch from master to sites (LAM, JHU)&quot; class=&quot;issue-link&quot; data-issue-key=&quot;INSTRM-43&quot;&gt;&lt;del&gt;INSTRM-43&lt;/del&gt;&lt;/a&gt;&lt;/li&gt;
	&lt;li&gt;Need to file a ticket to add IPMU branch to try and track dnsmasq configuration in operation for pfs.ipmu.jp backend.&lt;/li&gt;
&lt;/ul&gt;
</comment>
                            <comment id="12359" author="cloomis" created="Wed, 28 Jun 2017 14:27:57 +0000"  >&lt;p&gt;Atsushi, Arnaud, and I talked a bit more, and are now proposing the following. I will convert the JHU system under this ticket as a proof-of-concept.&lt;/p&gt;

&lt;p&gt;Basically, &lt;/p&gt;
&lt;ul class=&quot;alternate&quot; type=&quot;square&quot;&gt;
	&lt;li&gt;we stick to master only&lt;/li&gt;
	&lt;li&gt;we split configuration into files in a PFS-wide directory and files in a per-site directory.&lt;/li&gt;
	&lt;li&gt;the per-site configuration goes into /etc/dnsmasq.d/$SITE directories&lt;/li&gt;
	&lt;li&gt;we make a symbolic link from site -&amp;gt; $SITE&lt;/li&gt;
	&lt;li&gt;the system-defined dnsmasq command-line arguments specify the new configuration directories.&lt;/li&gt;
&lt;/ul&gt;


&lt;p&gt;A few more details:&lt;/p&gt;

&lt;p&gt;Configuration which will be valid only at one site goes into &lt;tt&gt;/etc/dnsmasq.d/site/&lt;/tt&gt;,&lt;br/&gt;
 which is a manually maintained symbolic link to {{/etc/dnsmasq.d/(LAM,JHU,ASIAA,SUBARU) }}. As little as possible should be put here.&lt;/p&gt;

&lt;p&gt;Configuration which will be valid in all locations goes in &lt;tt&gt;/etc/dnsmasq/PFS/&lt;/tt&gt;&lt;br/&gt;
&lt;tt&gt;dnsmasq&lt;/tt&gt; configuration location argument becomes something like &lt;tt&gt;-7 /etc/dnsmasq.d/site,&amp;#42;.conf -7 /etc/dnsmasq.d/PFS,&amp;#42;.conf&lt;/tt&gt;. As much as possible should be put here.&lt;/p&gt;

&lt;p&gt;For now, we will leave hostnames and MAC addresses in separate files. This may popup in a separate ticket.&lt;/p&gt;

&lt;p&gt;Note that the standard Debian &lt;tt&gt;/etc/default/dnsmasq&lt;/tt&gt; does not support two configure directories. But you can add arbitrary args to &lt;tt&gt;DNSMASQ_OPT&lt;/tt&gt;&lt;/p&gt;</comment>
                            <comment id="12361" author="atsushi.shimono" created="Wed, 28 Jun 2017 14:46:27 +0000"  >&lt;p&gt;I don&apos;t understand this, and I think we haven&apos;t talked as so.&lt;br/&gt;
&amp;gt; the per-site configuration goes into /etc/dnsmasq.d/$SITE directories&lt;br/&gt;
&amp;gt; we make a symbolic link from site -&amp;gt; $SITE&lt;/p&gt;</comment>
                            <comment id="12362" author="atsushi.shimono" created="Wed, 28 Jun 2017 14:51:45 +0000"  >&lt;p&gt;&amp;gt; dnsmasq configuration location argument becomes something like -7 /etc/dnsmasq.d/site,&lt;b&gt;.conf -7 /etc/dnsmasq.d/PFS,&lt;/b&gt;.conf. As much as possible should be put here.&lt;/p&gt;

&lt;p&gt;I suppose -7 with following &quot;,&quot; sections are for rejecting specific extensions. READ MAN BEFORE PROPOSING SOMETHING!&lt;br/&gt;
&amp;gt; Read all the files  in  the  given  directory  as  configuration files.  If  extension(s) are given, any files which end in those extensions are skipped.&lt;/p&gt;</comment>
                            <comment id="12363" author="rhl" created="Wed, 28 Jun 2017 15:42:59 +0000"  >&lt;p&gt;Sounds good.  Please ensure that a missing symbolic link generates useful and early error messages (and that no-one commits a link to git &amp;#8211; so it needs to go in .gitignore)&lt;/p&gt;</comment>
                            <comment id="12365" author="cloomis" created="Wed, 28 Jun 2017 18:28:24 +0000"  >&lt;p&gt;dnsmasq has countless too-cute features. This is one.&lt;/p&gt;
&lt;ul class=&quot;alternate&quot; type=&quot;square&quot;&gt;
	&lt;li&gt;&lt;tt&gt;-7 /dir/path,*.conf&lt;/tt&gt; matches all and only &lt;tt&gt;.conf&lt;/tt&gt; files.&lt;/li&gt;
	&lt;li&gt;&lt;tt&gt;-7 /dir/path,.conf&lt;/tt&gt; matches all &lt;em&gt;except&lt;/em&gt; &lt;tt&gt;.conf&lt;/tt&gt; files.&lt;/li&gt;
&lt;/ul&gt;


&lt;p&gt;If you have a better scheme than symbolic links we should use it. I can certainly see moving all the &lt;tt&gt;-7&lt;/tt&gt; args into an internal /etc/dnsmasq.d/dirs.conf file, but am stuck at that point.&lt;/p&gt;</comment>
                            <comment id="12366" author="atsushi.shimono" created="Thu, 29 Jun 2017 02:16:12 +0000"  >&lt;p&gt;I had tried that (,*.conf) at some point, but it did not work, actually. Could be some issue in configuration loading process, but not sure why. &lt;/p&gt;

&lt;p&gt;Configuration at the dhcp/dns server will be one time, and for normal operation we will just pull from git and update configurations (w/ reloading them), so both way (symlink or in upper configuration) seems fine for me as operation point of view.&lt;/p&gt;</comment>
                            <comment id="12369" author="arnaud.lefur" created="Thu, 29 Jun 2017 08:16:18 +0000"  >&lt;p&gt;FYI, (,*.conf) is what we use at LAM.&lt;/p&gt;</comment>
                            <comment id="12433" author="atsushi.shimono" created="Wed, 26 Jul 2017 13:23:08 +0000"  >&lt;p&gt;Hi &lt;a href=&quot;https://pfspipe.ipmu.jp/jira/secure/ViewProfile.jspa?name=cloomis&quot; class=&quot;user-hover&quot; rel=&quot;cloomis&quot;&gt;cloomis&lt;/a&gt;, I&apos;m quite sorry but it worked now.&lt;br/&gt;
It seems I was totally failed to pass options to command line from daemon execution configuration.&lt;/p&gt;

&lt;p&gt;Also it worked with&lt;/p&gt;
&lt;blockquote&gt;&lt;p&gt;CONFIG_DIR=/etc/dnsmasq.d,*.conf&lt;/p&gt;&lt;/blockquote&gt;
&lt;p&gt;in /etc/default/dnsmasq file, and could be easier to config by script??? (sorry not sure nor tried by Ansible).&lt;/p&gt;</comment>
                            <comment id="12483" author="atsushi.shimono" created="Tue, 8 Aug 2017 07:08:39 +0000"  >&lt;p&gt;Updated proposal (from &lt;a href=&quot;https://pfspipe.ipmu.jp/jira/secure/ViewProfile.jspa?name=cloomis&quot; class=&quot;user-hover&quot; rel=&quot;cloomis&quot;&gt;cloomis&lt;/a&gt; and me):&lt;/p&gt;

&lt;ul&gt;
	&lt;li&gt;accept different IP address range per site. although we have different IP address, we would recommend to have the same range as at Subaru for final AIT sites - LAM and ASIAA&lt;/li&gt;
	&lt;li&gt;configure dnsmasq to load /etc/dnsmasq.d/*.conf by /etc/default/dnsmasq file&lt;/li&gt;
	&lt;li&gt;have two configuration files - one is globally the same (something like dnsmasq.conf to have project-wide configuration incl. mac addr to host directory, and host.conf as symlink to e.g. host.ipmu to have IP address range with host to IP address directory&lt;/li&gt;
	&lt;li&gt;have one directory to have MAC address to hostname configurations, loaded in dnsmasq.conf&lt;/li&gt;
	&lt;li&gt;have site specific directory to have hostname to IP address configurations, loaded in (e.g.) host.ipmu&lt;/li&gt;
&lt;/ul&gt;
</comment>
                            <comment id="12516" author="cloomis" created="Wed, 30 Aug 2017 20:38:54 +0000"  >&lt;p&gt;We must be getting close.&lt;/p&gt;

&lt;p&gt;I just pushed the configuration which is running at IDG, and suggest that it can be merged and run at LAM.&lt;/p&gt;

&lt;p&gt;In short:&lt;/p&gt;
&lt;ul&gt;
	&lt;li&gt;All sites have a common &lt;tt&gt;dnsmasq.conf&lt;/tt&gt;.&lt;/li&gt;
	&lt;li&gt;Each $site (JHU, LAM, ASIAA, IPMU, Subaru) has a &lt;tt&gt;dnsmasq-site.$site&lt;/tt&gt;&lt;/li&gt;
	&lt;li&gt;That file must be pointed to by the link &lt;tt&gt;dnsmasq-site.conf&lt;/tt&gt;. This is the only real manual hack.&lt;/li&gt;
	&lt;li&gt;All hostname to MAC bindings are in files in &lt;tt&gt;macs/&lt;/tt&gt; or &lt;tt&gt;macs-$site&lt;/tt&gt;/&lt;/li&gt;
	&lt;li&gt;All hostname to IP bindings are in files in &lt;tt&gt;hosts-subaru&lt;/tt&gt;/, &lt;tt&gt;hosts-10.1&lt;/tt&gt;/, or &lt;tt&gt;hosts-$site&lt;/tt&gt;/.&lt;/li&gt;
&lt;/ul&gt;


&lt;p&gt;The &lt;tt&gt;dnsmasq-site.$site&lt;/tt&gt; file contains all the configuration which is not common to all.  In particular, it gives the directories for site-specific MAC and IP binding files. For LAM, say:&lt;/p&gt;
&lt;div class=&quot;preformatted panel&quot; style=&quot;border-width: 1px;&quot;&gt;&lt;div class=&quot;preformattedContent panelContent&quot;&gt;
&lt;pre&gt;# hostname - MAC
dhcp-hostsfile=/etc/dnsmasq.d/macs-lam

# hostname - IP
addn-hosts=/etc/dnsmasq.d/hosts-10.1
addn-hosts=/etc/dnsmasq.d/hosts-lam
&lt;/pre&gt;
&lt;/div&gt;&lt;/div&gt;

&lt;p&gt;declares that there are additional LAM device files in &lt;tt&gt;macs-lam&lt;/tt&gt;/ and &lt;tt&gt;hosts-lam&lt;/tt&gt;/, and that all the common PFS hosts are in the existing &lt;tt&gt;10.1&lt;/tt&gt; network.&lt;/p&gt;

&lt;p&gt;I suspect that JHU and LAM (and ASIAA?) will switch to using the final observatory address range, as defined in &lt;tt&gt;hosts-subaru&lt;/tt&gt;. But for this ticket we are just re-organizing.&lt;/p&gt;

&lt;p&gt;One LAM-specific note. I merged in the entries in &lt;tt&gt;pfs-ait-server:/etc/hosts&lt;/tt&gt; into &lt;tt&gt;hosts-lam&lt;/tt&gt;/. You can (and should!) put &lt;tt&gt;nameserver 127.0.0.1&lt;/tt&gt; as the &lt;em&gt;first&lt;/em&gt; nameserver in &lt;tt&gt;/etc./resolv.conf&lt;/tt&gt; to have that host also use &lt;tt&gt;dnsmasq&lt;/tt&gt; to resolve names.&lt;/p&gt;

&lt;p&gt;If this is acceptable, &lt;tt&gt;ics_doc&lt;/tt&gt;&apos;s &lt;tt&gt;SSN-00028&lt;/tt&gt; will need to be updated.&lt;/p&gt;</comment>
                            <comment id="12517" author="arnaud.lefur" created="Fri, 1 Sep 2017 09:17:40 +0000"  >&lt;p&gt;Thanks, that&apos;s very clear and I&apos;m willing to test it as soon as possible.&lt;/p&gt;

&lt;blockquote&gt;&lt;p&gt;One LAM-specific note. I merged in the entries in pfs-ait-server:/etc/hosts into hosts-lam/. You can (and should!) put nameserver 127.0.0.1 as the first nameserver in /etc./resolv.conf to have that host also use dnsmasq to resolve names.&lt;/p&gt;&lt;/blockquote&gt;
&lt;p&gt;I&apos;m not against it, but I&apos;m not sure to clearly understand the benefits, can you be a bit more specific just for my own curiosity ?&lt;/p&gt;</comment>
                            <comment id="12518" author="atsushi.shimono" created="Mon, 4 Sep 2017 16:13:35 +0000"  >&lt;p&gt;It&apos;s to enable DNS name resolution on the dnsmasq host itself. If you don&apos;t run anything except dnsmasq, it is not required. But it might be useful if you are running some service on the same host.&lt;/p&gt;</comment>
                            <comment id="12520" author="atsushi.shimono" created="Mon, 4 Sep 2017 23:35:52 +0000"  >&lt;p&gt;tftp-root configuration need to be an option, or we need to add a remark to have directory specified in tftp-root. Without directory, dnsmasq service does not start with error of missing directory.&lt;/p&gt;</comment>
                            <comment id="12559" author="atsushi.shimono" created="Tue, 19 Sep 2017 17:21:25 +0000"  >&lt;p&gt;&lt;a href=&quot;https://pfspipe.ipmu.jp/jira/secure/ViewProfile.jspa?name=cloomis&quot; class=&quot;user-hover&quot; rel=&quot;cloomis&quot;&gt;cloomis&lt;/a&gt; please check updated document at&lt;br/&gt;
&lt;a href=&quot;https://github.com/Subaru-PFS/ics_doc/pull/29&quot; class=&quot;external-link&quot; rel=&quot;nofollow&quot;&gt;https://github.com/Subaru-PFS/ics_doc/pull/29&lt;/a&gt;&lt;/p&gt;</comment>
                            <comment id="12573" author="atsushi.shimono" created="Fri, 22 Sep 2017 08:53:55 +0000"  >&lt;p&gt;let&apos;s merge ics_dnsmasq side to production from migration trial branch.&lt;/p&gt;</comment>
                            <comment id="13005" author="atsushi.shimono" created="Wed, 21 Feb 2018 17:51:56 +0000"  >&lt;p&gt;merged&lt;/p&gt;</comment>
                    </comments>
                <issuelinks>
                            <issuelinktype id="10000">
                    <name>Blocks</name>
                                            <outwardlinks description="blocks">
                                        <issuelink>
            <issuekey id="12059">INSTRM-291</issuekey>
        </issuelink>
                            </outwardlinks>
                                                        </issuelinktype>
                            <issuelinktype id="10003">
                    <name>Relates</name>
                                                                <inwardlinks description="relates to">
                                        <issuelink>
            <issuekey id="11390">INSTRM-43</issuekey>
        </issuelink>
                            </inwardlinks>
                                    </issuelinktype>
                    </issuelinks>
                <attachments>
                    </attachments>
                <subtasks>
                    </subtasks>
                <customfields>
                                                <customfield id="customfield_10500" key="com.atlassian.jira.plugins.jira-development-integration-plugin:devsummary">
                        <customfieldname>Development</customfieldname>
                        <customfieldvalues>
                            
                        </customfieldvalues>
                    </customfield>
                                                                <customfield id="customfield_10006" key="com.pyxis.greenhopper.jira:gh-epic-link">
                        <customfieldname>Epic Link</customfieldname>
                        <customfieldvalues>
                            <customfieldvalue>INSTRM-70</customfieldvalue>
                        </customfieldvalues>
                    </customfield>
                                                                                                                                                                                <customfield id="customfield_10010" key="com.pyxis.greenhopper.jira:gh-lexo-rank">
                        <customfieldname>Rank</customfieldname>
                        <customfieldvalues>
                            <customfieldvalue>0|ii03b1:</customfieldvalue>

                        </customfieldvalues>
                    </customfield>
                                                                                                                        <customfield id="customfield_10005" key="com.pyxis.greenhopper.jira:gh-sprint">
                        <customfieldname>Sprint</customfieldname>
                        <customfieldvalues>
                                <customfieldvalue id="24">2017-10A</customfieldvalue>

                        </customfieldvalues>
                    </customfield>
                                                                                                                                                    </customfields>
    </item>
</channel>
</rss>