ãã¾ã¨ããã¼ã³ã®ãããããã©ã³ãã³ã°å½¢å¼ã§ç´¹ä»ï¼å社ã®é婿¯è¼ã¨å¯©æ»ã§éããããå¾åã«ã¤ãã¦ãå¾¹åºè§£èª¬
ãã¾ã¨ããã¼ã³ã®ãããããã©ã³ãã³ã°å½¢å¼ã§ç´¹ä»ï¼å社ã®é婿¯è¼ã¨å¯©æ»ã§éããããå¾åã«ã¤ãã¦ãå¾¹åºè§£èª¬
Itamaeèªåã¡ã¢[0]ãRailsï¼nginxï¼pumaï¼CentOSã®ãããã¸ã§ãã³ã°ããã¦ã¿ãã®ã§åºæ¬çãªè¨å®ã¨ãæºå ä»ã¾ã§ã¤ã³ãã©ç³»ã¯ã»ã¨ãã©ã¾ã¨ãã«åå¼·ããäºããªãã¦ãã©ã¤ãã©ãªã®ã¤ã³ã¹ãã¼ã«ãVagrantã§éçºãããã®ã«å¿ è¦ãªè¨å®ãããããç¥èããªãã£ããRailsã¨ãSinatraã®ãããã¤ã¯ç¤¾å ãµã¼ãã¼ãherokuã ããããä»ä½ã£ã¦ãã¢ããã©ããã¦ãherokuã ã¨å³ãã(ã¬ã¤ãã³ã·ã¼ã¨ããã©ã³çãªåé¡)ã®ã§ãåå¼·ãå ¼ãã¦Rails+nginx+puma+CentOSãªæ¬çªç°å¢ãä½ã£ãã¿ãð§ ã§ãããããã®ã¯æ¯æ¥ãããªãã¨å¿ãã¦ãã¾ãâ¦â¦ð» ãã¤ãã¯ã¡ã¢ãç§ä¼ã®ã¬ã·ãçãªã¢ããä½ã£ã¦ç½®ãã¦ããã®ã ãã©ããããã¸ã§ãã³ã°ãã³ã¼ãã«è½ã¨ãã¦ããã°ããã¼ã¸ã§ã³å¤ãã£ã¦åããªãããªãã¦äºããã£ã¦ãã(ããããäºorãããªãã¨ãããªãäº)ã¯åããããâã¨ããäºã§ãä¸éã
çµç·¯ ãããVPS ãæ°ãã©ã³ã«ãªã£ãããæ§ãã©ã³ããç§»è¡ããã ãã£ããã ããã¾ã ãã¾ã触ã£ã¦ãªã CentOS 7 ã«ããã ãã£ããã ããProvisioning Tool ã¨ã㦠Itamae ã使ã£ã¦ã¿ãã user ã¯ç°¡åã«ã§ããï¼ãã¦æ¬¡ã¯ iptables ãCentOS 7 ã£ã¦ firewalld ã使ãã®ã Itamae ã® iptables plugin ãªããã ã firewalld ã®æä½ã ãã³ãã³ãç´æ¸ãã¨ããæãããã execute 'firewalld-cmd --permanent --add-service my-ssh' execute 'firewalld-cmd --permanent --remove-service dhcpv6-client' ãã£ããã ããä½ãã ä½¿ãæ¹ README ã«ãããã¾ãã service 'firewalld
æè¿ã®CentOS7ãFedoraãªã©ã¯ããã©ã«ãã§firewalldãæå¹ã«ãªã£ã¦ãããåºæ¬çã«ãã¼ãã¯å¡ãã£ã¦ããã ãµã¼ãã¹ãæä¾ããã«ã¯ãé©åã«è¨å®ããããµã¼ãã¢ããªã±ã¼ã·ã§ã³ã¨é©åãªãã¼ãéæ¾ãå¿ è¦ã¨ãªããä¾ãã°webãµã¼ãã®å ´åapacheãªã©ãè¨å®ãèµ·åããã®å¾firewalldã®è¨å®ãè¡ã80çªã®ãã¼ããéæ¾ããå¿ è¦ãããã ãã®ãã¼ã¸ã§ã¯CentOSã®ãã¼ãè§£æ¾ã«ã¤ãã¦ãä¼ããããã ãããããã¼ãã¨ã¯ï¼ 念ã®ãããç´¹ä»ãã¦ãããã TCPãUDPã§éä¿¡ãè¡ãã¨ãã¯ãã³ã³ãã¥ã¼ã¿åä½ã§ã¯ãªããããã»ã¹ãã¹ã¬ããåä½ãã§éä¿¡ãè¡ãããããã®æã®éä¿¡ã®çªå£ããã¼ãã§ããã ãããã¯ã¼ã¯éã§ããåããããæ å ±ã®åºç¤ã¯ããããã³ã«ãã¨ãã¢ãã¬ã¹ãã¨ããã¼ãçªå·ããã®ä¸ã¤ã主軸ã«ãªã£ã¦ããã æ¥æ¬èªã«ãã¨ãããã¨ãã©ã®ãããªæ¹æ³ã(ãããã³ã«)ã§ãã©ãã(ã¢ãã¬ã¹)ã®ãä½å·å®¤ã(ã
ææ°çã¯ä»¥ä¸ã¨ãªãã¾ãã https://dev.classmethod.jp/etc/ec2-tcp-port-check-command-2018/ ããã«ã¡ã¯ã³ã«ã³ã¼ã©å¥½ãã®æ¢¶ã§ãã EC2ã§ã¯è²ã ãªOSãæ§ç¯ã§ãã¾ããããæ§ç¯å¾ã®é信確èªã¯ã©ã®ããã«å®æ½ãã¦ã¾ããï¼ åOSã§ä»ã®ã¤ã³ã¹ã¿ã³ã¹ã¸TCPé信確èªã®ããã«ããã¼ã«ãã¤ã³ã¹ãã¼ã«ããããICMPãªã©ã®å¥ãªãããã³ã«ã§ç¢ºèªããããã«Security Groupãä¸æè§£æ¾ãã¦ãã¾ãããï¼ æ§ç¯ç´å¾ã®ç¶æ ã§ãç°¡åã«TCPãã¼ãçé確èªå¯è½ãªã³ãã³ãããç´¹ä»ãã¾ãã Amazon Linux,Ubuntu,Windows2012R2,CentOSã«ã¤ãã¦èªåãå¿ããããã®ã§ã¾ã¨ãã¦ã¿ã¾ããã ã©ãªããã®ãå½¹ã«ç«ã¦ãã°å¹¸ãã§ãã Amazon Linux åä½ç¢ºèªAMI:amzn-ami-hvm-2014.09.2.x86_64-eb
èªåã®ãã·ã³ããã£ãããªããªã®ãã¯ãèªåã®ãã·ã³ã«èãã¨ãããããã¾ãã ã«ã¼ãã«ãCPUã®ã¢ã¼ããã¯ãã£ããã¹ãåãªã©ã¯ãã uname ãã³ãã³ãã§è¡¨ç¤ºã§ãã¾ããã¾ããã /proc ãé ä¸ã®ãã¡ã¤ã«ãããã·ã¹ãã æ å ±ã調ã¹ãäºãã§ãã¾ãã Last Update : 2006å¹´10æ29æ¥ èªåã®ãã·ã³ã®æ å ±ã調ã¹ã é ç® ã uname ãã³ãã³ãã§èª¿ã¹ã ã /proc ãé ä¸ã®ãã¡ã¤ã«ãã調ã¹ã 1.ã uname ãã³ãã³ãã§èª¿ã¹ã ã uname ãã³ãã³ãã使ç¨ããã¨ãOSãCPUã®ã¢ã¼ããã¯ãã£ããã¹ãåãã«ã¼ãã«ã®ãã¼ã¸ã§ã³ãªã©ã®ã·ã¹ãã æ å ±ã表示ããã¾ãã ã -a ããæå®ããã¨å ¨ã¦ã®æ å ±ã表示ããã¾ãã æ¸å¼ # uname ãªãã·ã§ã³ ãªãã·ã§ã³ ãªãã·ã§ã³ 説æ
ã¯ããã« Ruby on Rails製ã®Webã¢ããªã±ã¼ã·ã§ã³ãæ¬çªç°å¢ã§ããCentOS 7ã«ãããã¤ããã®ã§ãæ´çãå ¼ãã¦ãã®ã¨ãã®ã¢ããªã±ã¼ã·ã§ã³ãµã¼ããWebãµã¼ãã®è¨å®ã«ã¤ãã¦ã¾ã¨ãã¾ããããã®è¨äºã§ã¯Rubyã®ç°å¢æ§ç¯ã«ã¤ãã¦ã¯ä¸å触ãã¾ããã ç°å¢æ§ç¯æã®ãã¼ã¸ã§ã³ã¯ã以ä¸ã®ããã«ãªã£ã¦ãã¾ãã gem ãã¼ã¸ã§ã³ rails 5.1.4 puma 3.11.3 ã¾ãã対象ã®Webã¢ããªã±ã¼ã·ã§ã³ã developmentã¢ã¼ãã§èµ·åã§ããç¶æ ã«ãªã£ã¦ãããã¨ãåæã¨ãã¾ãã ç®æãæ§æ ã¦ã¼ã¶ã®ãªã¯ã¨ã¹ããWebãµã¼ãã®Nginxã§åãåããã¢ããªã±ã¼ã·ã§ã³ãµã¼ãã®Pumaã«æµãæ§æã«ãã¾ãã Nginx 㨠Pumaéã®æ å ±ã®ããã¨ãã¯ãUNIX Socketãå©ç¨ãã¾ãã Railsã¢ããªã±ã¼ã·ã§ã³ã¯æ¬çªç°å¢ç¨ã®è¨å®ã§èµ·åããã¾ãã Pumaã®ç¹å¾´ Puma ã¯ã¢ããªã±
wget http://springdale.math.ias.edu/data/puias/unsupported/7/x86_64/dnf-conf-0.6.4-2.sdl7.noarch.rpm wget http://springdale.math.ias.edu/data/puias/unsupported/7/x86_64/dnf-0.6.4-2.sdl7.noarch.rpm wget http://springdale.math.ias.edu/data/puias/unsupported/7/x86_64/python-dnf-0.6.4-2.sdl7.noarch.rpm yum install python-dnf-0.6.4-2.sdl7.noarch.rpm dnf-0.6.4-2.sdl7.noarch.rpm dnf-conf-0.6.4-2.sdl7.noa
SELinuxã®æå¹å ãRedmine 3.4ãCentOS 7.3ã«ã¤ã³ã¹ãã¼ã«ããæé ãã使ç¨ãã¦æ§ç¯ããç°å¢ã§ã¯SELinuxã®ç¶æ ãDisabledã«è¨å®ããã¦ãã¾ããSELinuxãDisabledã®ç¶æ ã§ä½æããããã¡ã¤ã«ã«ã¯SELinuxã®ã©ãã«ãä»ä¸ããã¾ãããSELinuxã使ç¨ããããã«ã¯å ¨ã¦ã®ãã¡ã¤ã«ã«SELinuxã®ã©ãã«ãä»ä¸ããå¿ è¦ãããã¾ããããã ãã¡ã¤ã«ã·ã¹ãã ã®åã©ãã«ä»ã ã¨å¼ã³ã¾ãã åã©ãã«ä»ãããããã¨ã§SELinuxãå©ç¨ã§ããããã«ãªãã¾ããåã©ãã«ä»ãå¾ãåãã¦ã·ã¹ãã ã«ã¢ã¯ã»ã¹ãããã¨ããªã·ã¼éåã«ãã£ã¦ããã¤ãã®å¿ è¦ãªå¦çãæå¦ãããå ´åãããã¾ããã¢ã¯ã»ã¹æå¦ãèµ·åä¸ã«çºçããã¨ã·ã¹ãã èªä½ãèµ·åã§ããªããªãå¯è½æ§ãããã¾ãããããåé¿ãããããSELinuxã®ã¢ã¼ããå¿ ã Permissive ã¢ã¼ãã«è¨å®ãã¾ããå ¨ã¦ã®è¨å®ãå®äº
ãã®é£è¼ã§ã¯ãFedora 17ã§ã®å®è£ ããã¼ã¹ã¨ãã¦ãsystemdã®èãæ¹ãä»çµã¿ãå©ç¨æ¹æ³ã説æãã¾ããä»å¾åºã¦ããäºå®ã®RHEL7ã§ã®å®è£ ã¨ã¯ç°ãªãé¨åãããããç¥ãã¾ãããããã®ç¹ã¯ãäºæ¿ãã ããã ä»åã¯ãserviceã¿ã¤ãã®Unitã«ã¤ãã¦ãè¨å®ãã¡ã¤ã«ã®æ¸ãæ¹ã説æãã¾ãã Unitè¨å®ãã¡ã¤ã« åèè³æ ã»systemd.unitã®manãã¼ã¸ï¼è¨å®ãã¡ã¤ã«ã®ä¸è¬çãªèª¬æ ã»systemd.serviceã®manãã¼ã¸ï¼serviceã¿ã¤ãUnitã®è¨å®ãªãã·ã§ã³ã®èª¬æ ãSystemdå ¥é(1) - Unitã®æ¦å¿µãçè§£ãããã§èª¬æããããã«ãåUnitã®è¨å®ãã¡ã¤ã«ã¯ã/usr/lib/systemd/system/以ä¸ã¨/etc/systemd/system/以ä¸ã«ããã¾ãã両æ¹ã®ãã£ã¬ã¯ããªã«ååã®è¨å®ãã¡ã¤ã«ãããå ´åã¯ãå¾è ï¼/etc/systemd/sys
ãã®ãã¼ã¸ã§ã¯CentOS6以åã®æ§ãã¼ã¸ã§ã³ã¨CentOS7ã§ã¯ä½ãéãã®ããã¾ã¨ãã¦ãä¼ãããã ããªã大ããå¤ãã£ã¦ãããããæ¸æããã¨ãå¤ãã¯ãã ãåèã«ãã¦ããã ããã°å¹¸ãã ã CentOSãã®ãã®ã®ã¢ãããã¼ã CentOSã®ç¹å¾´ã¨ãã¦é·æãµãã¼ãã¨ããç¹ããããããã 10å¹´ãã³ãã¥ããã£ã¼ã«ãããµãã¼ãæéãè¨ãããã¦ããã管çè ãå ¥éè ã®æ¹ã«ã¨ã£ã¦é·æçã§å®å®ããLinuxãã£ã¹ããªãã¥ã¼ã·ã§ã³ã¨ããã®ã¯é常ã«ãããããåå¨ã ããã ãããé·æãµãã¼ãã®æ©æµãåãã¤ã¥ãã¦ããã¨ãã¡ã¸ã£ã¼ãã¼ã¸ã§ã³ã¢ããã®éèªåãæµ¦å³¶å¤ªéã®ãããªç¶æ ã«ãªã£ã¦ãã¾ã£ã¦ãããã¨ã«æ°ã¥ããã¨ã«ãªãã ãã®ãã¼ã¸ã§ã¯CentOS6ã¨CentOS7ã®ç¸éç¹ãããããã¨ã«ãããCentOS6ã¨CentOS7ã§ã®å¤æ´ç¹ã¯é常ã«å¤ããCentOS7ã§ä¸æ°ã«ã¢ãã³ãªLinuxãã£ã¹ããªãã¥ã¼ã·ã§ã³ã¸ã¨å¤è²ã
Issue We have init scripts for versions of Red Hat Enterprise Linux 6 and earlier that we want to port to systemd unit files so that they will work on Red Hat Enterprise Linux 7 and newer. How do I convert init scripts to systemd unit files? I want to change my custom init script to be compatible with systemd Environment Red Hat Enterprise Linux 7 Red Hat Enterprise Linux 8 Red Hat Enterprise Linu
Dockerã§åããã¦ããã³ã³ããä¸ã§cron(ãsshd)ã使ããã¨ããã¨ãPAMã«å¼ã£ããã£ã¦ã¿ã¹ã¯ãå®è¡ããã¾ããã ãããã§èª¿ã¹ãã¨PAMã®è¨å®ãã¡ã¤ã«ã夿´ããæ¹æ³ã¯åºã¦ããã®ã§ãããããããPAMã«å¼ã£ãããçç±ã«ã¤ãã¦è¨åãã¦ããã±ã¼ã¹ããªãã£ãã®ã§ãèªåã§æ¸ãã¾ãã äºè±¡ã®å 容 ãã®ãã¼ã¸ãè¦ã¦ããæ¹ã¯æ¢ã«ãåç¥ãã¨æãã¾ãã念ã®ããã ã³ã³ããã§Cronãèµ·åããã¨ãã¿ã¹ã¯ã®å®è¡æã«ãããªã¨ã©ã¼ãåãã¦å®è¡ããã¾ããã cat /var/log/cron Jul 16 05:26:01 badc11b5db52 crond[52]: (root) FAILED to open PAM security session (Cannot make/remove an entry for the specified session) cat /var/log/secure Ju
CentOSããã±ã¼ã¸ãææ°ç¶æ ã«ãã CentOSã®ããã±ã¼ã¸ãææ°ã®ç¶æ ã«ããã«ã¯ãConsoleã§ãyum updateããå®è¡ãã¾ãããã ãããæ¯æ¥æåã§å®è¡ããã¨ãªãã¨ãããæéã«ãªãã¾ãããï¼ããã§èªåæ´æ°ããããã«ãyum-cronããå©ç¨ãã¾ãããã®ãã¼ã¸ã§ã¯ãyum updateã¨yum-cronã®ä½¿ãæ¹ã«ã¤ãã¦èª¬æãã¦ãã¾ãã é¤å¤è¨å® ãyum-cronãã§ããã¿ã«ããã±ã¼ã¸ãææ°ã®ç¶æ ã«æ´æ°ãã¦ãã¾ãã¨ãCentOSã®ãã«ã¼ãã«ï¼kernelï¼ããä¸ç·ã«ã¢ãããã¼ãããã¦ãã¾ãã¾ããã«ã¼ãã«ã®ãã¼ã¸ã§ã³ãä¸ãã£ã¦ãã¾ãã¨ãææªèµ·åããªãèªä½ãèµ·ããå¾ãã®ã§ãäºãé¤å¤è¨å®ãã¦ããã¾ãã yum.confãä¿®æ£ãã¾ãã
3. ãµã¼ãã¹ã®èµ·å ã¤ã³ã¹ãã¼ã«ã®ç¢ºèªãåãããã # systemctl start sshd.service ã§ãsshdãèµ·åãã¦ãï¼ # systemctl status sshd.service åé¡ãªãããããªï¼ 4. ãã¡ã¤ã¢ã¦ã©ã¼ã«è¨å® sshç¨ã®ãã¼ãã¯å ããéæ¾ããã¦ããããç¥ããªããã©ãä¸å¿ç¢ºèªãã¦ã¿ããã # firewall-cmd --list-all services ã®æ¬ã« ssh ãå ¥ã£ã¦ããã°å¤§ä¸å¤«ï¼ ããå ¥ã£ã¦ããªãã£ããã # firewall-cmd --permanent --add-service=ssh ã§è¿½å ãã¦ãï¼ 5. ã¦ã¼ã¶ã¼ã®ä½æ æé 2ã§rootã¦ã¼ã¶ã¼ã§ã®æ¥ç¶ãå°ããã®ã§ãSSHç¨ã®ã¦ã¼ã¶ã¼ã使ãããï¼ useraddã§æ°è¦ã¦ã¼ã¶ã¼ã使 # useradd testuser â»[testuser] ã«ã¯ä»»æã®ã¦ã¼ã¶ã¼åãæ
ä½ã®è©±ãã¨ãã㨠RHEL7/CentOS7ã§ã¯æå°æ§æã§ã¤ã³ã¹ãã¼ã«ããã¨ãifconfigãrouteãnetstatãarpãªã©ã®ãããã¯ã¼ã¯é¢é£ã®ã³ãã³ãã使ãã¾ãããããã¯ã次ã®ã³ãã³ãã§ãnet-toolsãããã±ã¼ã¸ãå°å ¥ããã¨è§£æ±ºãã¾ãã # yum -y install net-tools ããããªããï¼ RHEL7/CentOS7ã§ã¯ãnet-toolsããdeprecatedï¼å»æ¢äºå®ï¼ãã¨ãã¦ãããä»å¾ã¯ãiproute2ããã±ã¼ã¸ã«å«ã¾ãããipããssããªã©ã®ã³ãã³ãã使ç¨ãããã¨ãæ¨å¥¨ããã¦ãã¾ãã ã»ã客ããã®RHEL7ãµã¼ãã¼ã®ã¡ã³ããé ¼ã¾ãããnet-toolsãå ¥ã£ã¦ãªãã£ãï¼ ã»ããã¼ãã¾ã ifconfigã¤ãã£ã¦ãã®ã¼ããã¨è¥ãååã«å·ããç®ã§è¦ãããï¼ ã»ãªã©ãªã© ã¨ãã£ãäºæ ã«åãã¦ãRHEL7/CentOS7ãå°å ¥ããéã«ã¯ãiproute2
ApacheBench ã®ä½¿ãæ¹ãåå¼·ããããã®ãªã³ã¯ãéããã®ã§ãï¼ | oki2a24 ã§å¾ãæ å ±ãå ã« ab ã使ã£ã¦ Apache ã®è¨å®ãè¦ç´ãããã®ã§ãããããããã®è©±ã¨ãã¦ãµã¼ãã®ã¹ããã¯ã®æ å ±ã調ã¹ãå¿ è¦ãããã¨æãã¾ããã®ã§ããã®æ¹æ³ãã¾ã¨ãã¾ãã ã³ãã³ãã¾ã¨ã # ã·ã¹ãã æ å ±ã®è¡¨ç¤ºï¼-a ã³ã³ãã¥ã¼ã¿ï¼ãã¼ãã¦ã¨ã¢ï¼ã®ç¨®é¡ããããã¯ã¼ã¯ã«ããããã¹ãåãOSã®ãªãªã¼ã¹çªå·ãOSã®åç§°ãåºåããï¼ uname -a # CentOSï¼Redhatï¼ã®ãã¼ã¸ã§ã³ç¢ºèª cat /etc/redhat-release # CPUæ å ±ã®ç¢ºèª cat /proc/cpuinfo # ã¡ã¢ãªæ å ±ã®ç¢ºèª cat /proc/meminfo ã³ãã³ãå®è·µ å®éã«ãã£ã¦ã¿ã¾ããã ã·ã¹ãã æ å ± [root@oki2a24 ~]# # ã·ã¹ãã æ å ±ã®è¡¨ç¤ºï¼-a ã³ã³ãã¥ã¼ã¿ï¼ãã¼ãã¦ã¨ã¢
ã¡ã³ããã³ã¹
ã©ã³ãã³ã°
ãç¥ãã
ãªãªã¼ã¹ãé害æ å ±ãªã©ã®ãµã¼ãã¹ã®ãç¥ãã
ææ°ã®äººæ°ã¨ã³ããªã¼ã®é ä¿¡
å¦çãå®è¡ä¸ã§ã
j次ã®ããã¯ãã¼ã¯
kåã®ããã¯ãã¼ã¯
lãã¨ã§èªã
eã³ã¡ã³ãä¸è¦§ãéã
oãã¼ã¸ãéã
{{#tags}}- {{label}}
{{/tags}}