  Domain Names and IP addresses
Services that require a static IP address have IP's assigned by AWS Elastic IP association. These services are principally the Salt Master, the LDAP directories, and the CPR machines.

The common domain is

The CPR machines answer for

The IdP machines answer for both and but currently only is routable due to Internet2 web hosting changes.

/etc/hosts is used to maintain common names for some services that have elastic IP's, such as the LDAP directories. This is necessary principally because of peculiarities of certificate validation in various pieces of software.

/etc/hosts is managed by Salt, but not through normal Salt mechanisms such as highstate. Instead, a control script located in root's home directory on the Salt Master is used to write the hosts file to various hosts through Salt. Whenever /etc/hosts needs to be changed or a new host dependent on /etc/hosts is added, this script must be run again.

Elastic IP Assignment

Machines are able to associate themselves with an elastic IP using AWS API's invoked by Salt. The following mappings are needed:


IP Address

i-ae24e19b (CommIT LDAP 3)

i-6ad3da58 (CommIT LDAP 1)

i-ac24e199 (CommIT LDAP 2)

i-ba4d4288 (Salt Master)

i-f41113c6 (CommIT CPR VM 1)

i-fa1113c8 (CommIT CPR VM 2)


