Objectifs 2. Environnement: Shared Ethernet Bridged Ethernet
Objectifs 2. Environnement: Shared Ethernet Bridged Ethernet
Environnement
Choix du matriel Choix du systme dexploitation Virtualisation Network Shared Ethernet Bridged Ethernet Host-Only Disque de 16 GB + Disque supplmentaire de 8 GB Ram 1024 MB 2 CPUs
3. Installation
Type dinstallation Automatisation kickstart Language English - discussion Keyboard be-latin1 Disk / 1.0 GB disk1 /usr 8.0 GB disk1 /usr/local remaining disk1 /var 2.0 GB disk1 swap 2.0 GB disk1 /disks/home 2.0 GB disk2 /disks/share remaining disk2 Choix des packages logiciels Ajout des outils de dveloppements
4. Program
1 Basic installation 2 Local system Users - Management 3 Systems in network - NFS 4 Network directories 5 - Windows 6 Security - Web servers
5. Post installation
No user added SELinux enabled (mode enforcing) anaconda-ks.cfg (for further reinstallation) run level : switch from 5 to 3 /etc/inittab telinit 3
6. Disk/Partition Management
fdisk, mke2fs, mount Policies Data separated from systems /disks/home, /disks/share, /usr/local Filesystem Hierarchy Standard / /bin /boot /dev /lib /usr /etc /var /tmp /sbin
/opt
7. User Management
Policy for user directories useradd, userdel, groupadd, groupdel su ; sudo ; visudo Disk space management du, df quota usrquota, grpquota (/etc/fstab) (need to remount) quotacheck cug filesystem repquota a edquota [-p] user
9. Client system
Iplclnt01 installation Fedora Core 13 Avoid express installation (keyboard) Create local login mandatory
Master Slave Client Specialized server : files, authentification Domaine # domainname ipl # /etc/sysconfig/network Server iplsrv01 Software package # yum install ypserv Initialization # /usr/lib64/yp/ypinit m dbm files in /var/yp/(domainname) /etc/init.d/ypserv start chkconfig --level 345 ypserv on /etc/init.d/ypbind start chkconfig --level 345 ypbind on Update /etc/hosts Update dbm files from /var/yp (make) Firewall issues Bind ypserv on port 714 /etc/sysconfig/network YPSERV_ARGS=-p 714 Update /etc/sysconfig/iptables Client iplclnt01 Domainname /etc/sysconfig/network /etc/yp.conf # /etc/init.d/iptables stop /etc/nsswitch.conf
13. Samba
Implmentation open source des protocoles MS /etc/samba/smb.conf Share : secretariat Discussion sur permissions du rpertoire Authentification windows : smbpasswd (-a) /etc/sysconfig/iptables : tcp/udp portes 137:139 et 445 nmblookup A 10.0.0.192 smbclient L 10.0.0.192 U titane smbclient //10.0.0.192/secretariat U titane Montage depuis un poste windows