Project Overview
This documentation will guide you through the necessary steps to manage and maintain the servers and infrastructure.
Servers
Server 1: Vclass
- Location: Iran
- Host: Parspack
- Purpose: Hosting BigBlueButton for virtual classes & meetings
- Specifications: Hybrid-XSSD, Disk: 800GB, Ram: 8GB, CPU: 8 cores
Server 2: Backup (Cloud Storage 1)
- Location: Iran
- Host: Parspack
- Purpose: Hosting BigBlueButton for virtual classes & meetings
- Specifications: Disk: 500GB, Supports buckets (AWS, etc.)
Management
Here are some tips for effectively managing the servers:
-
Security: Keep the servers updated with the latest security patches and software updates to prevent vulnerabilities.
-
Regular Backups: Set up automated backups to ensure data integrity and quick recovery in case of failures.
-
Monitoring: Utilize monitoring tools to track server performance, resource utilization, and potential issues.
-
User Access: Follow the principle of least privilege. Only grant necessary access rights to users based on their roles.
-
Documentation: Maintain detailed documentation for server configurations, installation steps, and troubleshooting procedures.
-
Version Control: If applicable, keep track of server configuration changes using version control tools (e.g., Git).
-
Scaling: Plan for scalability. If the project grows, you might need to add more servers or upgrade existing ones.
-
Testing: Before applying major changes, test them in a controlled environment to minimize disruptions.
SSL Renewal
To renew the certificate, please advise with SSL Renewal Guide.
Note on DNS challenge: When asked yes, copy the given dns record (acme txt challenge) and replace it in both CPanel and CloudFlare/Host then continue the renewal (Don’t need to wait much for the dns to take effect, it takes 5 minutes at most):
# method 1
certbot renew
# method 2
certbot renew --cert-name vclass2.sahostyle.com
# method 3 (Works!)
# For this a file must be created at /var/www/bigbluebutton-default/.well-known/acme-challenge/*filename* which will be given by certbot
certbot certonly --agree-tos -d vclass2.sahostyle.com --manual -m erfan226@gmail.com
# method 4 (Works!)
# This one needs change of DNS from top-level domain
certbot certonly --agree-tos -d vclass2.sahostyle.com --manual -m erfan226@gmail.com --preferred-challenges dns
# In case an error occurs, runng the following command might help:
sudo systemctl restart systemd-resolved.service
# Restart Nginx
sudo systemctl restart nginx