Live data from Hacker News

Ask HN: Tips on Sysadmin Job

news.ycombinator.com

41–50 of 65 posts

Re: Ask HN: Tips on Sysadmin Job

#41
post #38

Earlier quoted context omitted.

7. Have a backup strategy 7.5 Test your backup strategy every now and then (nothing is more painful than data loss and dysfunctional backups) 8. "All users lie, there is no exception". Sad but true, get used to it. 9. Automate your infrastructure. If something goes down, just recreate it with Chef/Ansible/Terraform/etc. [edit: added no.9]

10. Rotate all the passwords immediately since the other guy has left the organization and have a password policy in place. 11. Understand the reason the other guy was fired make sure you are not the one holding the bag. 12. Have a issue tracking system in place, you will thank yourself later. 13. Have a change management policy in place. 14. Before you make any change full understand the consequences and have a test…

I would add 15 start keeping a physical log book to document changes.

Dependant on what you have to look after you might want more than one book.

Re: Ask HN: Tips on Sysadmin Job

#42

This is not a promotion, this is making you to do something you have no experience with and making you do the job what the fired person done besides yours. Also being responsible for the whole IT infrastructure alone is definitely what I would not do without any experience. If that’s how the company handles this, I would start to look for a new job immediately.

You now have a shitty job! I enjoy sysadmin, partly because of the variety of problems you are called-on to solve. But the fact is, if you do the job well, and everything works well, nobody gives you any credit. When things go wrong everybody will be looking at you, and if you haven't fixed it within 20 minutes, then you must be incompetent. So you're the only sysadmin in a multi-campus company? As someone noted up-t…

Re Laptop make sure you have one that has a serial port and all the custom cables to plug into the switches / routers etc. (possibly having a second laptop for redundancy)

And seconding the physical logbook.

Re: Ask HN: Tips on Sysadmin Job

#43
post #6

Here's what to do in the first few weeks: 1. Require not 1, but 2 people, for hire, right now. It will take a long time until it gets approved, HR does their thing, and you (or someone else) hire people to help you. 2. Document, as fast as you can, all of the assets in your environment. Don't waste time on looking for software. Plain text or spreadsheet will do for start. 3. Identify the most important assets (server…

A possible corollary to 2: Don't forget to document incidents as you go. You'll learn a lot in these situations and you may find resources that are handy / work for you along the way.

Keep a text file, or OneNote or whatever, open while working an incident. Don't overthink it, don't over-complicate it.

Re: Ask HN: Tips on Sysadmin Job

#44
post #6

Here's what to do in the first few weeks: 1. Require not 1, but 2 people, for hire, right now. It will take a long time until it gets approved, HR does their thing, and you (or someone else) hire people to help you. 2. Document, as fast as you can, all of the assets in your environment. Don't waste time on looking for software. Plain text or spreadsheet will do for start. 3. Identify the most important assets (server…

I agree with the rest of this, but I'm not sure about 4. If you're new to a system, you don't have a good sense of who "really needs" access, and in particular you don't have a good sense of all the terrible, awful, dangerous things that are nonetheless delivering business value.

Maybe person X built system A, and is now working on system B, but remembers a lot of details - keeping their access to system A can help you recover in an emergency. Maybe someone wrote a monitoring job (or worse, a deployment job) that runs as themselves. Maybe someone has read-only access to a system and is using it to ask occasional good questions to the team that actually runs the system. Maybe team C has a formal API but it doesn't work well so person Y informally got access to C's database and it's making system D able to run at all, and it would take a few months of effort to fix the API that's supposed to be there between C and D.

And, more frustratingly but no less impactful - maybe there's a senior person who likes still having access to system E, and making them mad will cause political problems for you and impose burdens when you you try to make any other changes, which gets in the way of your ability to solve all the other problems that you need to solve.

Your priority in the short term is to keep the business running, not to improve things. Insider threats are real, but they are much rarer than all the other reasons your business could get in trouble. If you don't have a good understanding of your tech debt and why the tech debt exists and how quickly it can be paid off, focus on that first.

Re: Ask HN: Tips on Sysadmin Job

#45
Understand and document what you are responsible for including storage,hosts,networking.

Document the dependancies of apps on the above.

Verify backups and that they are backing up the right information and that they are immutable until their lifecycle is complete.

Verify your critical infrastructure has two power sources. Most equipment have two power supplies and I make sure they are independently powered. (UPS and line/generator). Do not rely on just UPS because it will fail you.

Make sure your datacenter has redundant A/C. Cooling failure will kill you as certainly as power failure just more slowly.

Know your facilities contacts especially the after hours emergency numbers and make sure they are current.

Know your IT support contacts. Sysadmins are somewhat jack of all trades master of none. Call the masters and use them when needed. No shame at all in that.

Don’t be a dick. Relationships are important.

Above that go out of your way help people even if it’s not in your wheelhouse.

Be aware of your long term stress level and well being. Your responsibility is to your people and you can’t do that effectively if your are not mentally able.

Communicate with your boss and make sure you are getting the support and tools you need to do your job. If you need it ask for it.

KISS - Don’t be sucked into complexity where it’s not warranted. Simpler is more reliable than complex if you don’t understand the complex.

Don’t automate unless you completely understand the process you are automating and all the dependancies.

Don’t offhand just trust vendors or their promises. Verify.

Pay extra for good hardware.

Read HN

In no particular order.

Re: Ask HN: Tips on Sysadmin Job

#46
I'd be questioning why somebody without the proper qualifications was promoted to such a position. Have you heard of the Peter Principal? If not, go look it up. That's not a slight.

I once got "promoted" by way of the superior admin being let go. He'd set up the place so well that it maintained itself (to a point) and when he had a medical event that took him out a few weeks, things ran so well that they figured he wasn't needed anymore.

They stuck me in his position, which I was not ready for. Things got bad for me, and they tried to make it look like I was the bad guy when I quit a few months later.

Perhaps your circumstances are different, but you need to be 100% sure they're investing in you, not setting you up to be the fall guy.

Re: Ask HN: Tips on Sysadmin Job

#47
My 32-years of experience suggests:

1. Don't do anything that you cannot undo. Like, copy the /etc/passwd before running vi on it. Or yelling at a user. Or upgrading software or operating system -- have backups.

2. Have the trust and authority of your manager. This needs to be negotiated in advance. Warn management of your steep learning curve and warn them to expect outages. Ensure you can tell users to wait because you have a priority list established with your manager. Remind users, if necessary, that they are not your manager.

3. Make a note, even if just by counting, every user request. For 100 users you might expect 50 to 200 requests per month. Be sure management sees this report. It is evidence to support additional hiring.

4. Learn customer service skills. Be able to stay completely calm in the face of the CEO screaming in your face. This requires a lot of "emotional IQ" and probably training and coaching. If you can achieve this level of zen-consciousness just 80% of the time you win.

All the other advice posted here also applies. The trick is to adapt the advice to the situation you face, and, when you make a mistake, quickly reverse course.

Good luck!

Re: Ask HN: Tips on Sysadmin Job

#48
post #6

Here's what to do in the first few weeks: 1. Require not 1, but 2 people, for hire, right now. It will take a long time until it gets approved, HR does their thing, and you (or someone else) hire people to help you. 2. Document, as fast as you can, all of the assets in your environment. Don't waste time on looking for software. Plain text or spreadsheet will do for start. 3. Identify the most important assets (server…

6. Get certified. Sysadmin positions often are in the hot seat, the first to take the beating when the shit hits the fan (if that's what happened to your predecessor, it will happen to you), and a certification often helps landing a new job more than "assumed past experienced" will when it's time to pass the HR sniff test.

7. Eventually, in 5-7 years, become a consultant, either in a consultancy, or freelance.

Re: Ask HN: Tips on Sysadmin Job

#49
post #25

Op here ~~ Thank you all for the advice, I've been reading all of your comments and my heart and mind feels more light now. I would like to share some skills I do have: Programming background in C and python, also bash and powershell programming. Knowledge of networking and computers in general( I know how to fix hardware in general and know how to deal with Linux and Windows) My background is in InfoSec, so I Know h…

Be extremely aware that you may have picked up lingo and thought patterns in infosec that mean different things and act differently in your new position. Threats now no longer just mean "russian hacker guy", it also means "Tracy from accounts managed to pour her probiotic smoothie over the laptop's keyboard, and that machine has the only copy of this months employees compensation, they need the file in two hours, or noone's getting paid! If it fails, we'll tell them it's the sysadmin's fault", and "Why is it suddenly 70 degrees celsius and rising in the server room?".
Post reply on HN