Linux/RHEL6

Top/Linux/RHEL6

RHEL6¤òÆþ¤ì¤ë

  • ´ðËÜ¥µ¡¼¥Ð¹½À®¤ËWeb¤È¤«DB¤È¤«FTP¤È¤«Æþ¤ì¤¿ÄøÅÙ

NWÀßÄê

  • ¸¶°ø¤¬¤è¤¯¤ï¤«¤é¤Ê¤¤¤±¤Éeth0¤¬Î©¤Á¾å¤¬¤Ã¤Æ¤³¤Ê¤¤¤Î¤Ç¼êÆ°¤ÇÀßÄê¤ò¤´¤ê¤´¤ê¤·¤¿
    • /etc/sysconfig/network ¤È¤« /etc/sysconfig/network-scripts/ifcfg-ethX ¤¬¤½¤â¤½¤â¤Ç¤­¤Æ¤Ê¤«¤Ã¤¿¤Î¤Çnetwork¥µ¡¼¥Ó¥¹¤¬Î©¤Á¾å¤¬¤é¤Ê¤¤¤«¤ó¤¸
  • udev¤Çhdaddr¤Ä¤«¤Ã¤¿´ÉÍý¤¬½¸Ìó¤Ç¤­¤ë¤è¤¦¤Ê¤Î¤Çifcfg¤Ë¤Ï½ñ¤«¤Ê¤¯¤Æ¤¤¤¤¤Ã¤Ý¤¤
  • NetworkManager¤È¤¤¤¦¤â¤Î¤¬¥Ç¥¹¥¯¥È¥Ã¥×´Ä¶­¤òÆþ¤ì¤ë¤ÈÆþ¤Ã¤Á¤ã¤¦¤é¤·¤¤¡£ifcfg¤Çif¤ËÂФ·¤Æ̵¸ú²½¤Ï¤Ç¤­¤ë

  1. ¤½¤â¤½¤â¥Ç¥Ð¥¤¥¹¤ÏÀ¸¤­¤Æ¤ë¤Î¡©
    cat /etc/udev/rules.d/70-persistent-net.rules
    
    • ¤³¤³¸«¤¿¤éMAC¥¢¥É¥ì¥¹¤Ï½¦¤¨¤Æ¤¿¤Î¤Ç¤É¤¦¤Ë¤«¤Ê¤ê¤½¤¦¡£Ì¾Á°¤Ïeth0¤Ë¤Ê¤Ã¤Æ¤¿
  2. ÀßÄê¥Õ¥¡¥¤¥ë¤«¤³¤¦
    • ¿·µ¬ºîÀ®¡§ /etc/sysconfig/network
       NETWORKING=yes
       HOSTNAME=mx130s1
       GATEWAY=192.168.1.1
      
    • ¿·µ¬ºîÀ®¡§ /etc/sysconfig/network-scripts/ifcfg-eth0
       DEVICE=eth0
       #NM_CONTROLLED=no
       ONBOOT=yes
       BOOTPROTO=dhcp 
       #BOOTPROTO=static
       #IPADDR=192.168.1.100
       #NETMASK=255.255.255.0
      
      • ¤Î¤Á¤Î¤Á»È¤¤¤½¤¦¤ÊÀßÄê¤â¥³¥á¥ó¥È¥¢¥¦¥È¤Ç½ñ¤¤¤Æ¤ª¤¯
  3. ºÆµ¯Æ°
     service network restart
    
  4. ¤¢¤Ã¤µ¤ê¤Ä¤Ê¤¬¤Ã¤¿¤Î¤Ç¥³¥á¥ó¥È¥¢¥¦¥È¹Ô¤ò¥³¥á¥ó¥È¤¸¤ã¤Ê¤¯¤·¤ÆBOOTPROTO¤òstatic¤Ë¤·¤Æ¤â¤¦¤¤¤Á¤ÉºÆµ¯Æ°¤·¤Æ´°Î»

̵»ö¤ËÆ°¤­½Ð¤·¤¿¤¢¤È

  • ¥æ¡¼¥¶ÄɲÃ
  • sudoers¤¤¤¸¤ë
  • ssh¤Çroot¥í¥°¥¤¥óÉԲĤË
    • /etc/ssh/sshd_config
       PermitRootLogin no
      
  • iptablesÊÔ½¸
    • 80¤È443²òÊü
  • DNSÀßÄê¡Ê¤³¤ì¼êÆ°¤Ç¤ä¤é¤Ê¤­¤ã¤À¤á¤Ê¤ó¤À¤Ã¤±¡© ̾Á°²ò·è¤¬°ìÀڤǤ­¤Ê¤«¤Ã¤¿¤Î¤ÇÄ´¤Ù¤¿¤é¤³¤ì¤¬¿¿¤ÃÇò¤À¤Ã¤¿¡Ë
    • /etc/resolv.conf
       nameserver 192.168.1.1
      
  • ntp¥¯¥é¥¤¥¢¥ó¥ÈÀßÄê
    • ¤Þ¤º¹ç¤ï¤»¤ë
       ntpdate ntp.nict.jp
      
    • /etc/ntp.conf
       server ntp.nict.jp
       server ntp.jst.mfeed.ad.jp
       server ntp-tk01.ocn.ad.jp
      
    • µ¯Æ°¤¹¤ë
       chkconfig ntpd on
       service ntpd start
      
  • httpd¤ÎÀßÄê
    • /var/www/htdocs ¤È /var/www/ssldocs ¤Ë¤·¤¿
  • squid¤¤¤ì¤¿
  • podcatcher¤òcron¤Ç¤Ö¤ó¤Þ¤ï¤¹ÀßÄê
  • DiCE¤Ë¤è¤ë¥À¥¤¥Ê¥ß¥Ã¥¯DNS¤Î¼«Æ°ÀßÄê
  • hosts¤Ë¼«Ê¬Äɲ䷤Ȥ¯
     192.168.1.100   mx130s1
    

yum¥ê¥Ý¥¸¥È¥ê¤ÎÀßÄê¡ÊDVD¤ÎÃæ¿È¤ò»È¤¦¡Ë

  1. ŬÅö¤Ê¤È¤³¤í¤Ë/dev/dvd¤ò¥Þ¥¦¥ó¥È
  2. Ãæ¿È¤ò¥³¥Ô¡¼¡£¤É¤Îrepodata¤«¤é¤â¥Ç¥£¥¹¥¯Ä¾²¼¤ÎPackage¤Ë¥ê¥ó¥¯¤¬Å½¤é¤ì¤Æ¤ë¤À¤±¤Î¤è¤¦¤Ê¤Î¤ÇPackage¤µ¤¨¥³¥Ô¡¼¤¹¤ì¤Ðrpm¤ÏÁ´Éô¤Ï¤¤¤ë¡£»þ´Ö¤«¤«¤ë
  3. ÉÕÏ¿DVD¤ÎPackage¤ÎÃæ¤Ë¤â¾¯¤·¤¢¤ë¤Î¤Ç¤Ä¤Ã¤³¤â¤¦
  4. createrepo¤·¤Ærepodataºî¤é¤»¤Æ¡¢ÀßÄê¥Õ¥¡¥¤¥ë¤ò¤Ä¤¯¤ì¤Ð¤ª¤ï¤ê

yum¥ê¥Ý¥¸¥È¥ê¤ÎÀßÄê¡ÊCentOS¤Î¤ä¤Ä¤ò¤à¤ê¤¯¤ê¡Ë

  • ¤Þ¤È¤â¤Ë¤¤¤í¤¤¤í¥¤¥ó¥¹¥È¡¼¥ë¤·¤è¤¦¤È¤¹¤ë¤È¤³¤ì¤ä¤é¤Ê¤¤¤È¤Û¤·¤¤¤Î¤¼¤ó¤¼¤ó°ú¤ÃÄ¥¤Ã¤Æ¤³¤é¤ì¤Ê¤¤¤Î¤Ç¤ä¤ê¤Þ¤·¤ç¤¦
  • ÀßÄê¥Õ¥¡¥¤¥ë¤Ï¤³¤ó¤Ê¤ó¡£
    • /etc/yum.repo.d/CentOS-Base.repo
       [base]
       name=CentOS-6 - Base
       mirrorlist=http://mirrorlist.centos.org/?release=6&arch=$basearch&repo=os
       #baseurl=http://mirror.centos.org/centos/6/os/$basearch/
       gpgcheck=1
       gpgkey=http://mirror.centos.org/centos/RPM-GPG-KEY-CentOS-6
       
       #released updates
       [updates]
       name=CentOS-6 - Updates
       mirrorlist=http://mirrorlist.centos.org/?release=6&arch=$basearch&repo=updates
       #baseurl=http://mirror.centos.org/centos/6/updates/$basearch/
       gpgcheck=1
       gpgkey=http://mirror.centos.org/centos/RPM-GPG-KEY-CentOS-6
       
       #packages used/produced in the build but not released
       #[addons]
       #name=CentOS-6 - Addons
       #mirrorlist=http://mirrorlist.centos.org/?release=6&arch=$basearch&repo=addons
       ##baseurl=http://mirror.centos.org/centos/6/addons/$basearch/
       #gpgcheck=1
       #gpgkey=http://mirror.centos.org/centos/RPM-GPG-KEY-CentOS-6
       
       #additional packages that may be useful
       [extras]
       name=CentOS-6 - Extras
       mirrorlist=http://mirrorlist.centos.org/?release=6&arch=$basearch&repo=extras
       #baseurl=http://mirror.centos.org/centos/6/extras/$basearch/
       gpgcheck=1
       gpgkey=http://mirror.centos.org/centos/RPM-GPG-KEY-CentOS-6
      
      • ´ðËÜŪ¤Ë¤ÏCentOS¤Î¤ò¤½¤Î¤Þ¤Þ¡£¤¿¤À¤· $releasever ¤Ï¤½¤Î¤Þ¤Þ¤À¤È¡Ø6Server¡Ù¤Ã¤Æɾ²Á¤µ¤ì¤Æ¥ß¥é¡¼¥ê¥¹¥È¤¬¸«¤Ä¤«¤é¤Ê¤¯¤Ê¤ë¤Î¤Ç¡¢¤½¤³¤À¤±·è¤áÂǤÁ¡£RHEL5¤òÆþ¤ì¤¿¾ì¹ç¤Ï5¤Ë¤·¤Ê¤¤¤È¤À¤á

yum¥ê¥Ý¥¸¥È¥ê¤ÎÀßÄê¡Ê¾¤Î¥µ¡¼¥Ó¥¹¤ò»È¤¦¡Ë

  • rpmfusion¡¢epel¡¢rpmforge¤¯¤é¤¤¡©
  • ¤À¤¤¤¿¤¤¤É¤³¤Î¥ê¥Ý¥¸¥È¥ê¤â¡¢¥ê¥Ý¥¸¥È¥êÄɲÃÍѤÎrpm¤òÇÛÉÛ¤·¤Æ¤ë¤Î¤Çwget¤·¤Æ¤¯¤ë¤Ê¤ê²¿¤Ê¤ê¤¹¤ì¤Ð¤¹¤°¤Ç¤­¤ë
  • Äɲä·¤¹¤®¤ë¤È¥¢¥ì¤«¤â¡£¤³¤Î¤Ø¤ó¤Þ¤À¤è¤¯¤ï¤«¤ó¤Ê¤¤
  • epel¤ÏRedHat¤µ¤ó¤¬¤ä¤Ã¤Æ¤ë¤«¤é¤À¤¤¤¸¤ç¤¦¤Ö¤«¤Ê¡£rpmfusion¤Èrpmforge¤Ï¤É¤³¤¬¤ä¤Ã¤Æ¤ë¤Î¤«¤Á¤ã¤ó¤ÈÄ´¤Ù¤Æ¤Ê¤¤
  • ¥Þ¥Ë¥¢¥Ã¥¯¤Ê¤³¤È¤ò¤ä¤é¤Ê¤±¤ì¤Ð¤À¤¤¤¿¤¤¾å¤ÎCentOS¤Î¥ê¥Ý¥¸¥È¥ê¤ÎÃæ¿È¤Ç»ö­¤ê¤ë¤Î¤Ç¡¢Á´Éôenabled=0¤Ë¤¹¤ë¤Î¤¬¤¤¤¤¤ó¤¸¤ã¤Ê¤¤¤«¤·¤é¡£É¬ÍפʤȤ­¤Ë yum --enablerepo=hoge ¤¹¤ë¤«¤ó¤¸¤Ç

yum·Ï¤Î¤È¤ê¤¢¤¨¤º¤¤¤ì¤È¤±Åª¥¢¥ì

  • ¥ß¥é¡¼¥ê¥¹¥È¤ÇÊ£¿ô¤Î¥ß¥é¡¼¤¬¤¢¤ë¤È¤­¤Ë¤¤¤Á¤Ð¤óÁᤤ¤È¤³¤í¤«¤é¤È¤Ã¤Æ¤­¤Æ¤¯¤ì¤ë¤è¤¦¤Ë¤¹¤ë
     yum install yum-fastestmirror
    
    • ¤³¤ìÆþ¤ì¤Ê¤¤¤È¤¿¤Þ¤¿¤ÞÃÙ¤¤¥ß¥é¡¼¤Ë¤¢¤¿¤Ã¤¿¤È¤­¤ËÉÔ¹¬¤Ë¤Ê¤ë

repo¤¤¤¸¤Ã¤¿¤é

  • °ì²óÁ´Éô¾Ã¤·¤Æ¤«¤éºÆ¼èÆÀ¤¹¤ë
     yum clean all
     yum list hoge
    

»²¹Í

podcatcher¤¤¤ì¤ë

  • rhel¤Î¥ê¥Ý¥¸¥È¥ê¤Ë¤¢¤ë¤È¤Ï»×¤ï¤Ê¤ó¤À
     yum install podcatcher
    
    • °ì½ï¤Ëruby¤âÆþ¤Ã¤Æ¤¯¤ë¤è

termtter¤¤¤ì¤ë¡Ê¤È¤¤¤¦¤«¤Þ¤ºgem¤òÆþ¤ì¤ë¡Ë

  • ¤É¤¦¤¤¤¦½çÈ֤Ǥ¤¤ì¤¿¤«¤ï¤¹¤ì¤¿¤±¤É¤À¤¤¤¿¤¤¤³¤ó¤Ê¤«¤ó¤¸¡£CentOS¤Î¥ê¥Ý¥¸¥È¥ê¤Á¤ã¤ó¤òÄɲúѤߤʤé°ú¤ÃÄ¥¤Ã¤Æ¤³¤é¤ì¤½¤¦¡£rhel¥ê¥Ý¥¸¥È¥ê¤Î¤ß¤Ç¤¬¤ó¤Ð¤í¤¦¤È¤·¤Ægem¤Îsetup.rbÁö¤é¤»¤ë¤È¤«¤·¤Á¤ã¤Ã¤¿¤±¤É¥ê¥Ý¥¸¥È¥êÄɲ乤ì¤ÐÂç¾æÉפǤ¹
     yum install ruby-devel #¤¤¤é¤Ê¤¤¤«¤â
     yum install irb #¤¤¤é¤Ê¤¤¤«¤â
     yum install rubygems
     gem install rdoc-data #¤¤¤é¤Ê¤¤¤«¤â 
     rdoc-data --install
     gem install termtter
    

sambaÆþ¤ì¤ë

  • ¥¤¥ó¥¹¥È¡¼¥ë¤¹¤ë
     yum install samba
    
  • ÀßÄê¥Õ¥¡¥¤¥ë¤ò¤¤¤¸¤ë
    • http://centossrv.com/samba.shtml
    • ¥Û¡¼¥à¥Ç¥£¥ì¥¯¥È¥ê¤Ø¤Î¥¹¥¯¥ê¥×¥È¤Ï¤Ü¤¯¤Î´Ä¶­¡Ê¥æ¡¼¥¶¿ô£±¡Ë¤Ç¤ÏɬÍפʤ«¤Ã¤¿¤Î¤ÇÁö¤é¤»¤Æ¤Ê¤¤
    • ¤´¤ß¤Ð¤³¤âÊ̤ËÍפé¤Ê¤¤¤ä
  • iptables¤¤¤¸¤ë¡£reject¤ÎÁ°¤ËÄɲ䷤ʤ¤¤È°ÕÌ£¤¬¤Ê¤¤¡£445¤ÏɬÍפ«ÉÔÌÀ
     -A INPUT -p udp -m udp --dport 137 -j ACCEPT
     -A INPUT -p udp -m udp --dport 138 -j ACCEPT
     -A INPUT -p tcp -m tcp --dport 139 -j ACCEPT
     -A INPUT -p tcp -m tcp --dport 445 -j ACCEPT
    
  • ¥µ¡¼¥Ó¥¹µ¯Æ°
     service smb start
    
  • windows¤«¤é¥¢¥¯¥»¥¹
     \\192.168.1.100
    
  • ¸«¤¨¤¿¤±¤É½ñ¤­¤³¤á¤Ê¤¤¡£¥Ç¥£¥ì¥¯¥È¥ê¤Ë¤è¤Ã¤Æ¤Ï³«¤±¤Ê¤¤¡Ä¡Ä
  • setenforce 0 ¤·¤Æ¤ß¤ë¤ÈÌäÂê¤Ê¤¯Æ°¤¯¡£SELinux¤«¡ª¡ª¡ª£±£± ¤³¤Î¤ä¤í¤¦¡ª¡ª£±
    • ¤Ç¤âdisabled¤Ë¤·¤Æ»È¤¦¤Î¤Ï¶þ¿«¤Ê¤Î¤ÇÀßÄê¤ò¤¬¤ó¤Ð¤ë
    • ÀßÄê¹àÌܤòį¤á¤ë
       getsebool -a | grep samba
      
    • ¤½¤ì¤Ã¤Ý¤¤¤Î¤òon¤Ë¤¹¤ë¡£-P¤Ä¤±¤Ê¤¤¤ÈºÆµ¯Æ°¤·¤¿¤È¤­¥Ç¥Õ¥©¥ë¥È¤ËÌá¤ë
       setsebool -P samba_enable_home_dirs 1
      
    • ¤³¤ì¤Ç ~/samba ¤Ø¤ÏÀµ¾ï¤Ë¥¢¥¯¥»¥¹¤Ç¤­¤¿¡£¤Ç¤â /home/samba¡Êpublic¤Î¤ä¤Ä¡Ë¤¬¤Þ¤À
    • ¥é¥Ù¥ë¤ß¤ë¡£º£¤Ï home_root_t ¤À¤Ã¤Æ¡£¤¢¤È¥Þ¥Ë¥å¥¢¥ë¤È¤«¤ß¤ë
       ls -Z /home
       man selinux
      
    • samba_selinux¤Ã¤Æ¤¤¤¦¹àÌܤ¬¤¢¤ë¤ß¤¿¤¤¤Ê¤Î¤Ç¤ß¤Æ¤ß¤ë
       man samba_selinux
      
    • If you want to share files other than home directories, those files must be labeled samba_share_t. ¤Ã¤Æ¤«¤¤¤Æ¤¢¤ë¡£¤³¤ì¤À¡³( ¡¦¢Ï¡¦)¥Î
       chcon -t samba_share_t /home/samba
      
    • ¤³¤³¤Þ¤Ç¤ÇÆ°¤¯¤è¤¦¤Ë¤Ï¤Ê¤Ã¤¿¡£man¤Ë¤Ï¤¢¤È¤¤¤í¤¤¤í¤·¤í¤ß¤¿¤¤¤Ê¤³¤È½ñ¤¤¤Æ¤¢¤ë¤±¤É¤È¤ê¤¢¤¨¤º¤³¤ì¤Ç¤¤¤¤¤ä¡£¤¿¤Ö¤ó¤¹¤Ç¤Ë¥Õ¥¡¥¤¥ë¤òÃÖ¤¤¤Æ¤¢¤ë¾ì¹ç¡¢¤³¤ì¤é¤Î¥Õ¥¡¥¤¥ë¤âƱ¤¸¥Ý¥ê¥·¤Ë¤¹¤ë¤Ë¤Ïrestorecon¤¬É¬Íפʤó¤À¤í¤¦¡£¤¿¤Ö¤ó¡£¤Ç¡¢restorecon¤Ç¸Æ¤Ð¤ì¤ë¥Ý¥ê¥·¤òÀßÄꤷ¤Æ¤ª¤«¤Ê¤¤¤È¤¤¤±¤Ê¤¤¤Ã¤Æ¤³¤È¤«¤Ê¡£
    • °ì±þ¼ê½ç¤À¤±¥á¥â¤·¤È¤¯¡£
       yum install policycoreutils-python
       #semanage¥³¥Þ¥ó¥É¤Ï¤³¤ìÆþ¤ì¤Ê¤¤¤È»È¤¨¤Ê¤«¤Ã¤¿¡£¼êÆ°¤Ç /etc/selinux/targeted/contexts/files/file_contexts.homedirs ¤ò¤¤¤¸¤Ã¤Æ¤â¤è¤µ¤½¤¦¤À¤±¤É³Ú¤½¤¦¤Ê¤Î¤Çsemanage¤òÆþ¤ì¤ë¡£
       semanage fcontext -a -t samba_share_t "/home/samba(/.*)?"
       # file_contexts.local ¤Ë /home/samba(/.*)? system_u:object_r:samba_share_t:s0 ¤¬Äɲ䵤ì¤ë
       restorecon -R -v /home/samba/
      
  • samba-swat ¤Ã¤Æ¤¤¤¦¤Î¤¬ÊØÍø¤é¤·¤¤¡£¥Ö¥é¥¦¥¶¤«¤ésamba¤ÎÀßÄꤤ¤¸¤ì¤ë¤½¤¦¤Ê¡£yum¤ÇÆþ¤ë¡£
     yum install samba-swat
    
    • ¥Ý¡¼¥È¤Ï901ÈÖ¤ò»È¤¦¤è¤¦¤Ê¤Î¤Ç¤¢¤±¤ë¡£

VNC´Ä¶­

  • ¥ê¥â¡¼¥È¤ÇGNOME¤Î¥Ç¥¹¥¯¥È¥Ã¥×´Ä¶­¤¬»È¤¨¤ë¤è¤¦¤Ë¤¹¤ë
  • °ÕÌ£¤Ï¤¢¤ë¤Î¤«¤ÏÆæ¡£¤Ç¤âKVM¤Î¥Þ¥Í¡¼¥¸¥ã¤È¤«¤ÏGUI¤Î¤¬³Ú¤½¤¦¤À¤·¡Ä¡Ä
  • ¥Ý¡¼¥È¥Õ¥©¥ï¡¼¥É¤·¤Ê¤¤¤ÈVNC¤ÎÀܳ¤Ï°Å¹æ²½¤µ¤ì¤Ê¤¤¡£¤³¤Î¤Þ¤Þ¤ÎÀßÄê¤Ç»È¤¦¤Ê¤é¥ê¥â¡¼¥È¥µ¥¤¥È¤«¤é¤Ï¤Ä¤Ê¤²¤Ê¤¤¤Û¤¦¤¬¤è¤¤
  • ¤Ò¤È¤Þ¤º¤¤¤ó¤¹¤³
     yum install vnc-server
    
  • ¥ë¡¼¥È¥æ¡¼¥¶¤ÎVNC´Ä¶­¤ò¤Ä¤¯¤ë¡Ê¤¢¤Ö¤Ê¤¤¡Ë
     su -
     vncserver
    
    • VNCÀܳÍѤΥѥ¹¥ï¡¼¥ÉÆþ¤ì¤ë
  • ¥Ý¡¼¥È¤¢¤±¤ë¡£5900+¥Ç¥£¥¹¥×¥ì¥¤Èֹ椬»ÈÍѥݡ¼¥È¡£:1¤Ê¤é5901¡£
  • SELinux¤Ï¤½¤Î¤Þ¤Þ¤ÇÊ¿µ¤¤À¤Ã¤¿
  • windows¤«¤é¤Ä¤Ê¤°
    • ¥¯¥é¥¤¥¢¥ó¥È¤Ï¤Æ¤­¤È¤¦¤Ë¤³¤ì¡§ http://www.realvnc.com/
    • ÀܳÀè¤Ï [<ip addr>:<display num>]
    • ¥Á¥§¥Ã¥¯¥Ü¥Ã¥¯¥¹¤À¤±Ê¤ó¤À¤Ø¤ó¤Ê²èÌ̤¬¤Ç¤Æ¤¯¤ì¤Ð¤È¤ê¤¢¤¨¤ºÁÂÄ̳Îǧ¤Ï´°Î»
  • GNOME¤Î¥Ç¥¹¥¯¥È¥Ã¥×´Ä¶­»È¤¨¤ë¤è¤¦¤Ë¤¹¤ë
     yum groupinstall "X Window System" "Desktop" "Japanese Support"
    
    • ¤É¤Î¥ê¥Ý¥¸¥È¥ê¤ò»²¾È¤¹¤ë¤«¤Ë¤â¤è¤ë¤±¤É¡¢centos¤Îmirror¤¬Í­¸ú¤Ê¾ì¹ç¤Ï¤½¤Ã¤Á¤«¤é¤È¤Ã¤Æ¤­¤Á¤ã¤¦¤Ã¤Ý¤¯¡¢ÊÉ»æ¤ä¤é¥¢¥¤¥³¥ó¤ä¤é¤¬centos»ÅÍͤˤʤë
  • °ì½ï¤Ë¥¤¥ó¥¹¥È¡¼¥ë¤µ¤ì¤ëNetworkManager¤ò»¦¤¹¡Ê¥µ¡¼¥ÐÍÑÅӤˤÏŬ¤µ¤Ê¤¤¡Ë
     service NetworkManager stop
     chkconfig NetworkManager off
    
    • /etc/resolv.conf¤¬½é´ü²½¤µ¤ì¤ë¤Ã¤Ý¤¤¤Î¤ÇnameserverºÆ»ØÄêɬÍפ«¤â
    • ifcfg-eth0¤Ë NM_CONTROLLED=no ¤òµ­½Ò¤¹¤ë¤È¥¤¥ó¥¿¥Õ¥§¥¤¥¹Ã±°Ì¤ÇNM̵¸ú²½¤Ç¤­¤ë¤±¤É¤Ê¤ó¤È¤Ê¤¯°­¤µ¤·¤½¤¦¤Ç¼ÙËâ¤Ê¤Î¤ÇÁ´Éô»¦¤¹¤³¤È¤Ë¤·¤¿
  • ÀßÄꤹ¤ë¤è¡£²òÁüÅ٤Ȥ«
    • /etc/sysconfig/vncservers
       VNCSERVERS="1:root"
       VNCSERVERARGS[1]="-geometry 1280x960"
      
  • Àܳ»þ¤ËGNOME¥Ç¥¹¥¯¥È¥Ã¥×¤¬Î©¤Á¾å¤¬¤ë¤è¤¦¤Ë¤¹¤ë¤è
    • /.vnc/xstartup

       #twm &¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡¡#¤³¤Î¹Ô¤ò¥³¥á¥ó¥È¥¢¥¦¥È
       exec gnome-session¡¡¡¡¡¡# ÄɲÃ
      
  • ÆüËܸì´Ä¶­¤Ë¤¹¤ë
    • LANG´Ä¶­ÊÑ¿ô¤Ë¤·¤¿¤¬¤Ã¤Æ¥í¡¼¥«¥é¥¤¥º¤µ¤ì¤ë¤Î¤Ç.bashrc¤¢¤¿¤ê¤ËLANG¤òÊü¤ê¹þ¤á¤ÐÎɤ¤
       export  LANG=ja_JP.UTF-8
      
    • ¤¿¤À¤·Ä̾ï¤Î´Ä¶­¤Ç¤âÆüËܸì¤Ë¤Ê¤Ã¤Á¤ã¤Ã¤Æ¡¢¥Õ¥©¥ó¥ÈÀßÄê¤òÊѤ¨¤Ê¤¤¤È²½¤±¤ë¤è¤¦¤Ë¤Ê¤ë¤è

¥Õ¥©¥ó¥È

  • /usr/share/fonts ÇÛ²¼¤ËÆþ¤Ã¤Æ¤ë
    • ¥æ¡¼¥¶Ã±°Ì¤Î¤Ï ~/.fonts ÇÛ²¼
  • ¥Õ¥©¥ó¥È¥­¥ã¥Ã¥·¥å¤Î¥¯¥ê¥¢
     fc-cache -fv
    
  • ¥µ¡¼¥Ó¥¹ºÆµ¯Æ°¤µ¤»¤ÆÀܳ³Îǧ¡£±Ñ¸ì´Ä¶­¤À¤±¤É¤Í¡ª
     service vncserver restart
    
    • ÆüËܸì¤Ë¤¹¤ë¤Ê¤éxstartup¤Ë¸À¸ì¾ðÊó¤ï¤¿¤¹
       #twm &
       LANG=ja_JP.utf-8
       export LANG
       exec gnome-session
      
  • ɬÍפ˱þ¤¸¤Æchkconfig¤Ç¼«Æ°µ¯Æ°¤ËÅÐÏ¿

KVM´Ä¶­¤È¤«

  • ¥³¥Þ¥ó¥É¥é¥¤¥ó¤Ç¤ä¤ëÊýË¡¤â¤¢¤ë¤ó¤À¤í¤¦¤±¤É¤Þ¤º¤Ï¿¨¤Ã¤Æ¤ß¤ë¤³¤È¤òÌÜɸ¤ËVNC´Ä¶­¤«¤é¥Þ¥Í¡¼¥¸¥ãΩ¤Á¾å¤²¤ÆÄɲ乤ë
  • ²¾ÁÛ¥Þ¥·¥ó¤Ä¤¯¤ë¤Î¤Ï´Êñ¤Ê¤Î¤Ç³ä°¦¡£¥Í¥Ã¥È¥ï¡¼¥¯¤â¤Þ¤º¤ÏŬÅö¤Ç¤¤¤¤¤ä
  • ¤Ò¤È¤Þ¤ºUbuntu 11.04 Server¤ò¤Ö¤Á¤³¤à¡£¥¤¥ó¥¹¥È¡¼¥ë»þ¤ËOpenSSH¤À¤±¤ÏÄɲ乤ë¤è¤¦¤Ë¤·¤Ê¤¤¤ÈµÍ¤à¤Î¤ÇÃí°Õ
  • µ¯Æ°¸å¡¢ifconfig¤ÇIP¤ò¸«¤Æ¡¢¥Û¥¹¥ÈOS¤«¤éSSH¤¹¤ë
    • ¥²¥¹¥ÈOS¤òľÀÜ¿¨¤í¤¦¤È¤·¤Æ¤â¥­¡¼¥Þ¥Ã¥×¤¬¤ª¤«¤·¤¯¤Æ¥¢¥ó¥À¥¹¥³¥¢¤È¤«¥Ñ¥¤¥×¤È¤«ÂǤƤʤ¤¡£¥³¥í¥ó¤Ï¤Ê¤¼¤«Shift+7¡£¤â¤Ï¤ä±Ñ»ú¥­¡¼¥Ü¡¼¥É¤Ç¤â¤Ê¤¤¡Ä¡Ä
      • ¥­¡¼¥Þ¥Ã¥×ÊѤ¨¤ë¤Î¤Ï¤³¤ì¤Ç¤â²Äǽ¤Ê¤Ï¤º¤Ê¤ó¤À¤±¤ÉÊѹ¹¤µ¤ì¤Ê¤¤¤Î¤Ç¤¢¤­¤é¤á¤¿
         sudo apt-get console-data
         # ¤³¤Î¸å¡¢¤¤¤Á¤Ð¤ó¾å¡Ê²½¤±¤Æ¤ë¡Ë¢ªqwerty¢ªJapanese¢ªPC100¤ÈÁªÂò
         # ÀßÄê¤ä¤ê¤Ê¤ª¤¹¤È¤­¤Ï sudo dpkg-reconfigure console-data
         # dpkg-reconfigure console-setup¤Ç¥­¡¼¥Ü¡¼¥É¤ÎÀßÄê½Ð¤ë¤Ï¤º¤Ê¤ó¤À¤±¤É½Ð¤Ê¤¤¤·¡£¤Ê¤ó¤À¤³¤ì
        
      • ¤¦¤Ö¤ó¤Ä¤Ï¥¤¥ó¥¹¥È¡¼¥ë»þ¤Ë¤Ä¤¯¤Ã¤¿¥æ¡¼¥¶¤Ïsudo¤¬²¿¤â¤·¤Ê¤¯¤Æ¤â»È¤¨¤ë¤è¡Ê»ÅÍÍ¡Ë
    • ¥Ç¥Õ¥©¥ë¥È¤À¤È²¾Áۥͥåȥ¥¯¤Ï 192.168.122.0/24¤ËÆþ¤ë
  • °ìÈ̥桼¥¶¤«¤é su - ¤Ç¤­¤ë¤è¤¦¤Ëroot¤Ë¥Ñ¥¹¥ï¡¼¥ÉÀßÄꤹ¤ë¡Ê¥Ç¥Õ¥©¥ë¥È¤À¤ÈÀßÄꤵ¤ì¤Æ¤¤¤Ê¤¤¤Î¤Ç°ìÈ̥桼¥¶¤«¤é¤¤¤­¤Ê¤ê su - ¤Ç¤­¤Ê¤¤¡Ë
     sudo su -
     passwd
    
  • ¥Í¥Ã¥È¥ï¡¼¥¯ÀßÄꤤ¤¸¤ë¡£¸ÇÄêIP¤Ë¤¹¤ë
    • /etc/network/interfaces
       auto eth0
       #iface eth0 inet dhcp
       iface eth0 inet static
       address 192.168.122.100
       netmask 255.255.255.0
       gateway 192.168.122.1
      
    • ºÆµ¯Æ°
       /etc/init.d/networking restart
      
  • root¥í¥°¥¤¥ó¤ä¤á¤ë
    • /etc/ssh/sshd_config
       PermitRootLogin no #¤¹¤Ç¤Ëyes¤Î¹Ô¤¬¤¢¤ë¤Î¤Çno¤ËÊѤ¨¤ë
      
  • 192.168.122.0/24 ¤«¤é 192.168.1.0/24 ¤Ø¤Î¥ë¡¼¥Æ¥£¥ó¥°¤Ï¤É¤³¤Ç¤ä¤ë¤ó¤«¤Í¡£²¾ÁÛ¥Ö¥ê¥Ã¥¸¤È¤«»È¤¦¤Ã¤Ý¤¤¤±¤É¤Þ¤À¤è¤¯¤ï¤«¤Ã¤Æ¤Ê¤¤¤Î¤ÇÄ´¤Ù¤ë¡£192.168.1.0/24¤«¤éľÀܲ¾ÁÛ¥Þ¥·¥ó¤Ëssh¤Ï¤ì¤ë¤ÈÊØÍø¤À¤«¤é¤½¤¦¤·¤¿¤¤

NFS¤Ç¤â¤Ä¤¯¤ë

  • ¥Û¥¹¥ÈOS¤Ë¥ê¥Ý¥¸¥È¥ê¤òΩ¤Æ¤Æ¡¢¥²¥¹¥ÈOS¤«¤é¤½¤³¤Ë¥¢¥¯¥»¥¹¤µ¤»¤ë
  • rhel6¤Çcreaterepo¤·¤¿¥ê¥Ý¥¸¥È¥ê¤Ërhel5¤«¤é¥¢¥¯¥»¥¹¤·¤¿¤échecksum¥¨¥é¡¼½Ð¤¿¡£¸ß´¹À­¤ÎÌäÂ꤬¤¢¤ë¤È¤«¤¤¤¦ÏÃ
    • http¤Ç¥¢¥¯¥»¥¹¤µ¤»¤ë¤È³°Éô¤Ë¤â¸ø³«¤µ¤ì¤Á¤ã¤Ã¤Æ¥¢¥¯¥»¥¹À©¸Â¤¬¤á¤ó¤É¤¦¤¯¤µ¤¤¤·¡¢¥²¥¹¥È¦¤«¤écreaterepo¤â¤Ç¤­¤Ê¤¤
    • ²¾Á۴Ķ­¤À¤·NFS¤Ç¤âÌäÂê¤Ï¾¯¤Ê¤½¤¦¤Ê¤Î¤Ç¤½¤¦¤¹¤ë¡£¤»¤Ã¤«¤¯¤Ê¤Î¤Çv4¤òƳÆþ
  • /etc/idmapd.conf
    • NFSv4¤Î¥Ç¡¼¥â¥ó¤ÎÀßÄê¥Õ¥¡¥¤¥ë¤é¤·¤¤¡£¥µ¡¼¥Ð¦¤È¥¯¥é¥¤¥¢¥ó¥È¦¤ÇƱ¤¸ÀßÄê¤Ë¤¹¤ëɬÍפ¬¤¢¤ë¤é¤·¤¤
    • Ãæ¤Ç¤·¤«»È¤ï¤Ê¤¤¤«¤éŬÅö¤Ë¡£rhel6¦¤Ç¤Ï²¼¤ò¥³¥á¥ó¥È¥¢¥¦¥È¤·¤Æ¥É¥á¥¤¥ó¤òÊѹ¹¡£rhel5¦¤Ç¤Ï¥Ç¥Õ¥©¥ë¥È¤Ç¤¤¤í¤¤¤í½ñ¤¤¤Æ¤¢¤Ã¤¿¤Î¤Ç¤Ò¤È¤Þ¤º¤½¤Î¤Þ¤Þ¡£¥É¥á¥¤¥ó̾¤À¤±Åý°ì¤µ¤»¤ë
       Domain = local.domain.edu
       Nobody-User = nobody
       Nobody-Group = nobody
      
  • export¤µ¤»¤ë
    • /etc/exports
       /var/yum   192.168.1.1/24(rw,no_root_squash,fsid=0)
      
      • root¤Ç¤â¤¤¤¸¤ê¤¿¤«¤Ã¤¿¤Î¤Çno_root_squash
      • fsid=0¤Ïnfs4¸ÇÍ­¤Î¡£¥¯¥é¥¤¥¢¥ó¥È¤«¤é¥Þ¥¦¥ó¥È¥Ý¥¤¥ó¥È¤¬¥ë¡¼¥È¤È¤·¤Æ¸«¤¨¤ë¤è¤¦¤Ë¤Ê¤ë¡£¾å¤ÎÎã¤Ç¤Ï¡¢¥µ¡¼¥Ð¤Î/var/yum¤¬¥¯¥é¥¤¥¢¥ó¥È¤«¤é¸«¤ë¤È<server>:/ ¤ËÂбþ¤¹¤ë
    • È¿±Ç
       exportfs -r
      
  • ¥µ¡¼¥Ó¥¹¤òÁö¤é¤»¤ë
     service rpcidmapd restart
     chkconfig rpcidmapd on
     service nfs restart
     chkconfig nfs on
    
  • ¥Ý¡¼¥È¤¢¤±¤ë
    • NFSv4¤Ï»È¤¦¥Ý¡¼¥È¤¬¸ÇÄê¤ÇTCP¤Î2049
       iptables -A INPUT -p tcp --dport 2049 -j ACCEPT
      
  • ¥Þ¥¦¥ó¥È¤¹¤ë
     mkdir /var/yum
     mount -t nfs4 <server>:/ /var/yum
    

P2V ¤·¤Æ ESXi ¤Ë¾è¤»¤ë

  • Converter 5 ¤Ç³èÀ­ P2V
    • È󥵥ݡ¼¥È¤À¤· 99% ¤Ç¼ºÇÔ¤¹¤ë¤±¤Éµ¤¤Ë¤·¤Ê¤¤
      • http://kb.vmware.com/kb/2007355
      • ¤³¤ì¤Þ¤Ç¤Î Linux ¤È°ã¤Ã¤Æ /etc/modprobe.conf ¤¬¤Ê¤¤¤«¤é¥Ð¥Ã¥Á¤Ç¤¤¤¸¤ì¤Ê¤¯¤ÆÍî¤Á¤Æ¤ë
      • modprobe.conf ¤¤¤¸¤Ã¤Æ initrd ¤òºî¤ê¤Ê¤ª¤¹¡Êmkinitrd¡Ë¤Î¤¬¤³¤ì¤Þ¤Ç¤Î Linux P2V ¤ÎÄêÀС£RHEL 6 ¤Ï¤¤¤í¤¤¤í¤ª¤ê¤³¤¦¤Ë¤Ê¤Ã¤Æ¡¢¤½¤ÎɬÍפ¬¤Ê¤¯¤Ê¤Ã¤¿¡£udev ¥Ù¡¼¥¹¤Ç¾¡¼ê¤Ë¤¤¤í¤¤¤íǧ¼±¤·¤Æ¤¦¤Þ¤¤¤³¤È¤ä¤Ã¤Æ¤¯¤ì¤ë
  • P2V ¸å¤Î½èÍý
    • SELinux ¤ò̵¸ú¤Ë¤·¤Æ¤¤¤¿¾ì¹ç¤Ï²¿¤â¤·¤Ê¤¤¤Ç¤âÆ°¤¯¡Ä¡Ä ¤È»×¤¦
    • SELinux ¤¬Í­¸ú¤Ê¾ì¹ç¡¢relabel ¤·¤Ê¤¤¤È¥í¥°¥¤¥ó¤Ç¤­¤Ê¤¤¡©¡Ê¥í¥°¥¤¥ó²èÌ̤ޤǤϵ¯Æ°¤¹¤ë¤±¤É root ¤Ç¤âï¤Ç¤âÆþ¤ì¤Ê¤¤¡Ë
      • ¥·¥ó¥°¥ë¥æ¡¼¥¶¥â¡¼¥É¤Çµ¯Æ°¤·¤Æ /etc/sysconfig/selinux ¤ÎÃæ¤ò disabled ¤ËÊѹ¹¡¢ºÆµ¯Æ°¤·¤Æ¡¢Êѹ¹¤ò¸µ¤ËÌᤷ¤Æ¡¢ºÆµ¯Æ°¤·¤¿¤é¾¡¼ê¤Ë relabel ¤¬Áö¤Ã¤Æ¥í¥°¥¤¥ó¤Ç¤­¤ë¤è¤¦¤Ë¤Ê¤Ã¤¿
      • setenforce ¤Ç̵¸ú²½¤·¤ÆÍ­¸ú²½¤·¤ÆºÆµ¯Æ°¤Ç¤âÎɤ¤¤Î¤«¤â¡£fixfiles relabel ¥³¥Þ¥ó¥É¤Ç¤âÎɤ¤¤Î¤«¤â¤·¤ì¤Ê¤¤¡£»î¤·¤Æ¤Ê¤¤

P2V ¸å¤Ë¼ºÇÔ¤¹¤ë¾ì¹ç¤Î³ÎǧÉôʬ

  • grub.conf ¤Î kernel ¹Ô¤Ë rd_LVM_LV ¤Ç LVM ¤Î¥Ü¥ê¥å¡¼¥à¤¬»ØÄꤵ¤ì¤Æ¤¤¤Ê¤¤¤«
    • Converter ¤Î¾ì¹ç¤Ï LVM ¤¬¤Û¤°¤µ¤ì¤ë¤Î¤Ç»ØÄꤷ¤Æ¤¢¤ë¤Þ¤Þ¤À¤È kernel panic
  • fstab ¤Ë LVM ¤ò¥Þ¥¦¥ó¥È¤¹¤ë¹Ô¤¬»Ä¤Ã¤Æ¤¤¤Ê¤¤¤«
    • Converter ¤Î¾ì¹ç¤Ï LVM ¤¬¤Û¤°¤µ¤ì¤ë¤Î¤Ç UUID »ØÄê¡Êblkid /dev/hoge ¤Ç³Îǧ²Ä¡Ë¤ä¤é /dev/hoge ľÀÜ»ØÄê¤ä¤é¤Ë½ñ¤­´¹¤¨¤ë

NIC ¤ÎÆþ¤ìÂؤ¨

¸µ¤ÎʪÍý¥µ¡¼¥Ð¤Ç eth0 ¤¬Æ°¤¤¤Æ¤¤¤¿¤È¤·¤Æ¡¢¤½¤ì¤ò Converter ¤Î P2V ¤Ç»ý¤Ã¤Æ¤¯¤ë¤È¡¢¿·¤·¤¤²¾ÁÛ NIC ¤Ï eth1 ¤Ë¤¯¤Ã¤Ä¤¤¤Æ¤¯¤ë¡£Íפ¹¤ë¤ËʪÍý¤Î¤È¤­¤Î¥¤¥ó¥¿¥Õ¥§¥¤¥¹¤¬¥´¥ß¤Î¤Þ¤Þ»Ä¤Ã¤Æ¤­¤â¤Á¤ï¤ë¤¤¡£eth1 ¤ÎÀßÄê¥Õ¥¡¥¤¥ë¤ò½ñ¤±¤Ð¤¤¤¤¤ó¤À¤±¤É¡¢eth0 ¤ÎÀßÄê¥Õ¥¡¥¤¥ë¤ò¤½¤Î¤Þ¤ÞήÍѤ·¤¿¤¤¤Î¤Çľ¤¹¡£

RHEL 6 ¤Ï modprobe.conf ¤Ç¤Î¥â¥¸¥å¡¼¥ëÆɤ߹þ¤ß¤Ç¤Ï¤Ê¤¯¤Æ udev ¤¬¤¤¤í¤¤¤í¾¡¼ê¤Ë¤¬¤ó¤Ð¤ë¡£/etc/udev/rules.d/ ÇÛ²¼¤ÎÀßÄê¥Õ¥¡¥¤¥ë¤Ç¼«Æ°Ç§¼±¤µ¤ì¤Æ eth* ¤Ë³ä¤êÅö¤Æ¤é¤ì¤ë¤Î¤Ç¡¢¤½¤³¤ò¤¤¤¸¤ë¡£¤¤¤¸¤Ã¤¿¤é¥â¥¸¥å¡¼¥ë¤òºÆÆɤ߹þ¤ß¤µ¤»¤ë¡£

  • /etc/udev/rules.d/70-persistent-net.rules
    • Êѹ¹Á°
      # PCI device 0x14e4:0x1692 (tg3)
      SUBSYSTEM=="net", ACTION=="add", DRIVERS=="?*", ATTR{address}=="00:19:99:a4:f3:3e", ATTR{type}=="1", KERNEL=="eth*", NAME="eth0"
      
      # PCI device 0x8086:0x100f (e1000)
      SUBSYSTEM=="net", ACTION=="add", DRIVERS=="?*", ATTR{address}=="00:0c:29:ea:f1:dc", ATTR{type}=="1", KERNEL=="eth*", NAME="eth1"
      
      # PCI device 0x15ad:0x07b0 (vmxnet3)
      SUBSYSTEM=="net", ACTION=="add", DRIVERS=="?*", ATTR{address}=="00:0c:29:b3:e9:50", ATTR{type}=="1", KERNEL=="eth*", NAME="eth2"
      
  • Êѹ¹¸å
    # Íפé¤Ê¤¤¥Ç¥Ð¥¤¥¹¤ò¥³¥á¥ó¥È¥¢¥¦¥È¤«ºï½ü
    ## PCI device 0x14e4:0x1692 (tg3)
    ##SUBSYSTEM=="net", ACTION=="add", DRIVERS=="?*", ATTR{address}=="00:19:99:a4:f3:3e", ##ATTR{type}=="1", KERNEL=="eth*", NAME="eth0"
    ##
    ## PCI device 0x8086:0x100f (e1000)
    ##SUBSYSTEM=="net", ACTION=="add", DRIVERS=="?*", ATTR{address}=="00:0c:29:ea:f1:dc", ##ATTR{type}=="1", KERNEL=="eth*", NAME="eth1"
    
    # NAME ¤ò eth0 ¤Ë½ñ¤­´¹¤¨
    # PCI device 0x15ad:0x07b0 (vmxnet3)
    SUBSYSTEM=="net", ACTION=="add", DRIVERS=="?*", ATTR{address}=="00:0c:29:b3:e9:50", ATTR{type}=="1", KERNEL=="eth*", NAME="eth0"
    
  • ¥â¥¸¥å¡¼¥ë¤ÎºÆÆɤ߹þ¤ß¤È¥µ¡¼¥Ó¥¹¤ÎºÆµ¯Æ°
    # ¥µ¡¼¥Ó¥¹¤ÎÄä»ß
    service network stop
    
    # ¥â¥¸¥å¡¼¥ë¤Î¥¢¥ó¥í¡¼¥É
    rmmod vmxnet3
    
    # ¥â¥¸¥å¡¼¥ë¤Î¥í¡¼¥É
    modprobe vmxnet3
    
    # ¥µ¡¼¥Ó¥¹¤Î³«»Ï
    service netework start
    

Last-modified: 2012-06-03 (Æü) 15:43:52