诚意
诚意如你,当一诚的态度对待

导航

 

一:基础优化

1:网络环境(双网卡)

Eth0:

nat

10.0.0.0
网关:254

 

Eht1:

LAN区段(局域网,无法连外网),仅主机

172.16.1.0

Lan

2:修改eth0的配置

TYPE=Ethernet

BOOTPROTO=none

DEFROUTE=yes

IPV6_FAILURE_FATAL=no

IPV6_ADDR_GEN_MODE=stable-privacy

NAME=eth0

UUID=3455916b-aef3-4218-89f8-c4a62e86c3f9

DEVICE=eth0

ONBOOT=yes

IPADDR=10.0.0.201

PREFIX=24

GATEWAY=10.0.0.254

 

修改eth1的配置

NAME=eth1 

DEVICE=eth1

IPADDR=172.16.1.201 

NETMASK=255.255.255.0 

BOOTPROTO=static 

ONBOOT=yes

 

[root@oldboyedu-c7 ~]# systemctl restart network

[root@oldboyedu-c7 ~]# systemctl stop NetworkManager

 

Systemctl  is-active  network

查询是否在运行

Systemctl is-enabled

查询是否开机自启动

 

[root@oldboyedu-c7 ~]# ip a

1: lo: <LOOPBACK,UP,LOWER_UP> mtu 65536 qdisc noqueue state UNKNOWN group default qlen 1000

    link/loopback 00:00:00:00:00:00 brd 00:00:00:00:00:00

    inet 127.0.0.1/8 scope host lo

2: eth0: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast state UP group default qlen 1000

    link/ether 00:0c:29:27:65:78 brd ff:ff:ff:ff:ff:ff

    inet 10.0.0.201/24 brd 10.0.0.255 scope global eth0

  3: eth1: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast state UP group default qlen 1000

    link/ether 00:0c:29:27:65:82 brd ff:ff:ff:ff:ff:ff

    inet 172.16.1.201/24 brd 172.16.1.255 scope global eth1

 

3:关闭selinux和防火墙

[root@oldboyedu-c7 ~]# grep -i selinx= /etc/selinux/config

[root@oldboyedu-c7 ~]# systemctl is-active firewalld.service

unknown

[root@oldboyedu-c7 ~]# systemctl is-enabled firewalld.service 

disabled

4:配置hosts文件

\cp /etc/hosts{,.bak}

cat >/etc/hosts<<EOF

127.0.0.1   localhost localhost.localdomain localhost4 localhost4.localdomain4

::1         localhost localhost.localdomain localhost6 localhost6.localdomain6

172.16.1.5      lb01

172.16.1.6      lb02

172.16.1.7      web01

172.16.1.8      web02

172.16.1.9      web03

172.16.1.51     db01 

db01.etiantian.org

172.16.1.31     nfs01

172.16.1.41     backup

172.16.1.61     m01

EOF

 

5:YUM模板机优化配置---更改yum源(安装base和epel源)

https://opsx.alibaba.com/

    curl -o /etc/yum.repos.d/CentOS-Base.repo http://mirrors.aliyun.com/repo/Centos-7.repo

    curl -o /etc/yum.repos.d/epel.repo http://mirrors.aliyun.com/repo/epel-7.repo

  #yum repolist

 

6:安装自动补全增加工具以及常用工具:

bash-completion(base)

bash-completion-extras(epel)

vim   tree   telnet nc  nmap  net-tools

 

二:优化

1:模板机优化配置---加大文件描述

        #加大文件描述

        echo '* - nofile 65535 ' >>/etc/security/limits.conf

[root@oldboyedu-c7 ~]# ulimit -n

1024

[root@oldboyedu-c7 ~]# ulimit -n 65535     使生效

[root@oldboyedu-c7 ~]# ulimit -n

65535 

2:模板机优化配置---安装其他小软件

yum install net-tools vim tree htop iftop \

iotop lrzsz sl wget unzip telnet nmap nc psmisc \

dos2unix bash-completion  bash-completion-extras -y

 

[root@oldboyedu-c7 ~]# sl     跑火车软件

[root@oldboyedu-c7 ~]# sl    命令

[root@oldboyedu-c7 ~]# yum install cowsay

[root@oldboyedu-c7 ~]# animalsay   "内容"      命令

2:ssh连接速度慢优化

[root@oldboyedu-c7 ~]# vim /etc/ssh/sshd_config

UseDNS no

GSSAPIAuthentication no

 

[root@oldboyedu-c7 ~]# egrep '^UseDNS|^GSSAPIAut' /etc/ssh/sshd_config

GSSAPIAuthentication no

UseDNS no

[root@oldboyedu-c7 ~]# systemctl restart sshd

三:克隆

1:克隆之前的操作

1清2删 :centos6

/etc/udev/rules.d/70-persistent-net.rules(mac地址)-----情况

删除网卡配置文件中的UUID和HWADDR这两行

2删 :centos7

删除网卡配置文件中的UUID和HWADDR这两行

[root@oldboyedu48 network-scripts]# cat ifcfg-eth0

TYPE=Ethernet

NAME=eth0

DEVICE=eth0

ONBOOT=yes

IPADDR=10.0.0.201

PREFIX=24

GATEWAY=10.0.0.254

DNS1=10.0.0.254

 

[root@oldboyedu48 network-scripts]# cat ifcfg-eth1

NAME=eth1

DEVICE=eth1

BOOTPROTO=static

IPADDR=172.16.1.201

NETMASK=255.255.255.0

ONBOOT=yes

2:修改主机名、IP

 [root@backup ~]# sed -i 's#201#31#g' /etc/sysconfig/network-scripts/ifcfg-eth*

[root@backup ~]# hostnamectl set-hostname backup

 

 

posted on 2018-08-26 23:18  诚意  阅读(285)  评论(0编辑  收藏  举报