ื•ื•ื™ ืฆื• ืึทืจื™ื‘ืขืจืคื™ืจืŸ OpenVZ 6 ืงืึทื ื˜ื™ื™ื ืขืจ ืฆื• KVM ืกืขืจื•ื•ืขืจ ืึธืŸ ื›ืขื“ื™ื™ืงืก

ื•ื•ืขืจ ืขืก ื™ื– ื•ื•ืึธืก ื”ืึธื˜ ื’ืขื“ืืจืคื˜ ืึทืจื™ื‘ืขืจืคื™ืจืŸ ืึทืŸ OpenVZ ืงืึทื ื˜ื™ื™ื ืขืจ ืฆื• ืึท ืกืขืจื•ื•ืขืจ ืžื™ื˜ ืคื•ืœ KVM ื•ื•ื™ืจื˜ื•ืึทืœื™ื–ืึทื˜ื™ืึธืŸ ืื™ืŸ ืžื™ื ื“ืกื˜ืขืจ ืึทืžืึธืœ ืื™ืŸ ื–ื™ื™ืŸ ืœืขื‘ืŸ, ื”ืื˜ ื’ืขืคึผืœืึธื ื˜ืขืจื˜ ืขื˜ืœืขื›ืข ืคืจืื‘ืœืขืžืขืŸ:

  • ืจื•ื‘ึฟ ืคื•ืŸ ื“ื™ ืื™ื ืคึฟืึธืจืžืึทืฆื™ืข ืื™ื– ืคืฉื•ื˜ ืึทื•ื˜ื“ื™ื™ื˜ื™ื“ ืื•ืŸ ืื™ื– ื’ืขื•ื•ืขืŸ ื‘ืึทื˜ื™ื™ึทื˜ื™ืง ืคึฟืึทืจ ืึธืกืขืก ื•ื•ืึธืก ื”ืึธื‘ืŸ ืœืึทื ื’ ื“ื•ืจื›ื’ืขื’ืื ื’ืขืŸ ื“ื™ EOL ืฆื™ืงืœ
  • ืคืึทืจืฉื™ื“ืขื ืข ืื™ื ืคึฟืึธืจืžืึทืฆื™ืข ืื™ื– ืฉื˜ืขื ื“ื™ืง ืฆื•ื’ืขืฉื˜ืขืœื˜ ืคึฟืึทืจ ืคืึทืจืฉื™ื“ืขื ืข ืึธืคึผืขืจื™ื™ื˜ื™ื ื’ ืกื™ืกื˜ืขืžืขืŸ, ืื•ืŸ ืžืขื’ืœืขืš ืขืจืจืึธืจืก ื‘ืขืฉืึทืก ืžื™ื™ื’ืจื™ื™ืฉืึทืŸ ื–ืขื ืขืŸ ืงื™ื™ื ืžืึธืœ ืงืึทื ืกื™ื“ืขืจื“
  • ืžืืœ ืื™ืจ ื”ืึธื‘ืŸ ืฆื• ื”ืึทื ื“ืœืขืŸ ืžื™ื˜ ืงืึทื ืคื™ื’ื™ืขืจื™ื™ืฉืึทื ื– ืึทื– ื™ืขื“ืขืจ ืื™ืฆื˜ ืื•ืŸ ื“ืขืžืึธืœื˜ ื˜ืึธืŸ ื ื™ืฉื˜ ื•ื•ืขืœืŸ ืฆื• ืึทืจื‘ืขื˜ืŸ ื ืึธืš ืžื™ื™ื’ืจื™ื™ืฉืึทืŸ

ื•ื•ืขืŸ ืื™ืจ ืึทืจื™ื‘ืขืจืคื™ืจืŸ 1 ืกืขืจื•ื•ืขืจ, ืื™ืจ ืงืขื ืขืŸ ืฉื˜ืขื ื“ื™ืง ืคืึทืจืจื™ื›ื˜ืŸ ืขืคึผืขืก ืื•ื™ืฃ ื“ื™ ืคืœื™ืขืŸ, ืึธื‘ืขืจ ื•ื•ืขืŸ ืื™ืจ ืึทืจื™ื‘ืขืจืคื™ืจืŸ ืึท ื’ืึทื ืฅ ืงื ื•ื™ืœ?

ืื™ืŸ ื“ืขื ืึทืจื˜ื™ืงืœ ืื™ืš ื•ื•ืขืœ ืคึผืจื•ื‘ื™ืจืŸ ืฆื• ื–ืึธื’ืŸ ืื™ืจ ื•ื•ื™ ืฆื• ืจื™ื›ื˜ื™ืง ืžื™ื™ื’ืจื™ื™ื˜ ืึทืŸ OpenVZ ืงืึทื ื˜ื™ื™ื ืขืจ ืฆื• KVM ืžื™ื˜ ืžื™ื ื™ืžืึทืœ ื“ืึทื•ื ื˜ื™ื™ื ืื•ืŸ ืึท ืฉื ืขืœ ืœื™ื™ื–ื•ื ื’ ืฆื• ืึทืœืข ืคึผืจืึธื‘ืœืขืžืก.

ื ืงืœื™ื™ืŸ ื‘ื™ืœื“ื•ื ื’ืงืจื™ื™ื– ืคึผืจืึธื’ืจืึทื: ื•ื•ืึธืก ืื™ื– OpenVZ ืื•ืŸ ื•ื•ืึธืก ืื™ื– KVM?

ืžื™ืจ ื•ื•ืขืœืŸ ื ื™ืฉื˜ ื’ื™ื™ืŸ ื˜ื™ืฃ ืื™ืŸ ื˜ืขืจืžื™ื ืึธืœืึธื’ื™ืข, ืึธื‘ืขืจ ื–ืึธื’ืŸ ืื™ืŸ ืึทืœื’ืขืžื™ื™ืŸ ื˜ืขืจืžื™ื ืขืŸ:

OpenVZ - ื•ื•ื™ืจื˜ื•ืึทืœื™ื–ืึทื˜ื™ืึธืŸ ืื•ื™ืฃ ื“ื™ ืึทืคึผืขืจื™ื™ื˜ื™ื ื’ ืกื™ืกื˜ืขื ืžื“ืจื’ื”, ืื™ืจ ืงืขื ืขืŸ ืืคื™ืœื• ืฆืขื•ื•ื™ืงืœืขืŸ ืขืก ืื•ื™ืฃ ืึท ืžื™ื™ืงืจืึทื•ื•ื™ื™ื•ื•, ื•ื•ื™ื™ึทืœ ืขืก ืื™ื– ื ื™ื˜ ื ื•ื™ื˜ื™ืง ืคึฟืึทืจ ืงืคึผื• ื™ื ืกื˜ืจืึทืงืฉืึทื ื– ืื•ืŸ ื•ื•ื™ืจื˜ื•ืึทืœื™ื–ืึทื˜ื™ืึธืŸ ื˜ืขืงื ืึทืœืึทื“ื–ืฉื™ื– ืื•ื™ืฃ ื“ืขืจ ื‘ืึทืœืขื‘ืึธืก ืžืึทืฉื™ืŸ.

ืงื•ื•ื - ืคื•ืœ-ืคืœืขื“ื–ืฉื“ ื•ื•ื™ืจื˜ื•ืึทืœื™ื–ืึทื˜ื™ืึธืŸ, ื ื™ืฆืŸ ืึทืœืข ื“ื™ ืžืึทื›ื˜ ืคื•ืŸ ื“ื™ ืงืคึผื• ืื•ืŸ ื˜ื•ื™ื’ืขื•ื•ื“ื™ืง ืคื•ืŸ ื•ื•ื™ืจื˜ื•ืึทืœื™ื™ื–ื™ื ื’ ืขืคึผืขืก, ืงื™ื™ืŸ ื•ื•ืขื’, ืงืึทื˜ื™ื ื’ ืขืก ืœืขื ื’ื˜ืก ืื•ืŸ ืงืจืึธืกืกื•ื•ื™ื™ื–.

ืงืขื’ืŸ ื“ืขื ืคืึธืœืงืก ื’ืœื•ื™ื‘ืŸ, ืื™ืŸ ื“ืขืจ ืกื‘ื™ื‘ื” ื”ืึธืกื˜ื™ื ื’ ืคึผืจืึทื•ื•ื™ื™ื“ืขืจื– OpenVZ ืื™ื– ืื™ื‘ืขืจืคืืจืงื•ื™ืคื˜, ืื‘ืขืจ KVM ืื™ื– ื ื™ืฉื˜. ืฆื•ืž ื’ืœื™ืง ืคืืจ ื“ื™ ืœืขืฆื˜ืข, ืื™ื– KVM ื™ืขืฆื˜ ืื™ื‘ืขืจืคืืจืงื•ื™ืคื˜ ืคื•ื ืงื˜ ืื–ื•ื™ ื’ื•ื˜ ื•ื•ื™ ื–ื™ื™ืŸ ื‘ืจื•ื“ืขืจ.

ืฐืึธืก ืฐืขืœืŸ ืžื™ืจ ืื™ื‘ืขืจื˜ืจืึธื’ืŸ?

ะ’ ะบะฐั‡ะตัั‚ะฒะต ะฟะพะดะพะฟั‹ั‚ะฝั‹ั… ะดะปั ะฟะตั€ะตะฝะพัะฐ ะฟั€ะธัˆะปะพััŒ ะธัะฟะพะปัŒะทะพะฒะฐั‚ัŒ ะฒะตััŒ ะปะตั ะพะฟะตั€ะฐั†ะธะพะฝะฝั‹ั… ัะธัั‚ะตะผ, ะบะพั‚ะพั€ั‹ะต ะดะพัั‚ัƒะฟะฝั‹ ะฝะฐ OpenVZ: CentOS (6 ะธ 7 ะฒะตั€ัะธะธ), Ubuntu (14, 16 ะธ 18 LTS), Debian 7.

ืขืก ืื™ื– ื’ืขื•ื•ืขืŸ ืื ื’ืขื ื•ืžืขืŸ ืึทื– ืจื•ื‘ึฟ ืคื•ืŸ ื“ื™ OpenVZ ืงืึทื ื˜ื™ื™ื ืขืจื– ื–ืขื ืขืŸ ืฉื•ื™ืŸ ืคืœื™ืกื ื“ื™ืง ืขื˜ืœืขื›ืข ืกืึธืจื˜ ืคื•ืŸ ืœืึธืžืคึผ, ืื•ืŸ ืขื˜ืœืขื›ืข ืืคื™ืœื• ื”ืึธื‘ืŸ ืขื˜ืœืขื›ืข ื–ื™ื™ืขืจ ืกืคึผืขืฆื™ืคื™ืฉ ื•ื•ื™ื™ื›ื•ื•ืืจื’. ืจื•ื‘ึฟ ืึธืคื˜, ื“ืึธืก ื–ืขื ืขืŸ ืงืึทื ืคื™ื’ื™ืขืจื™ื™ืฉืึทื ื– ืžื™ื˜ ื“ื™ ISPmanager, VestaCP ืงืึธื ื˜ืจืึธืœ ื˜ืึทืคืœื™ืข (ืื•ืŸ ืจื•ื‘ึฟ ืึธืคื˜ ื ื™ืฉื˜ ื“ืขืจื”ื™ื™ึทื ื˜ื™ืงื˜ ืคึฟืึทืจ ื™ืึธืจืŸ). ื–ื™ื™ืขืจ ืึทืจื™ื‘ืขืจืคื™ืจืŸ ืจื™ืงื•ื•ืขืก ืžื•ื–ืŸ ืื•ื™ืš ื–ื™ื™ืŸ ื’ืขื ื•ืžืขืŸ ืื™ืŸ ื—ืฉื‘ื•ืŸ.

ืžื™ื’ืจืึทืฆื™ืข ื•ื•ืขืจื˜ ื“ื•ืจื›ื’ืขืคื™ืจื˜ ืžื™ื˜ ืคึผืจืขื–ืขืจื•ื•ืึทืฆื™ืข IP ืึทื“ืจืขืกืขืก ืคึฟืึทืจ ืึท ืคึผืึธืจื˜ืึทื˜ื™ื•ื•ืŸ ืงืึทื ื˜ื™ื™ื ืขืจ, ื•ื•ืขืœืŸ ืžื™ืจ ืึธื ื ืขืžืขืŸ ืึทื– ื“ื™ IP ืึทื“ืจืขืก ืคึฟื•ื ืขื ืงืึทื ื˜ื™ื™ื ืขืจ ื•ื•ืขืจื˜ ื’ืขื”ืึทืœื˜ืŸ ืื•ื™ืฃ ื“ืขืจ VM ืื•ืŸ ื•ื•ืขื˜ ืึทืจื‘ืขื˜ืŸ ืึธืŸ ืคึผืจืึธื‘ืœืขืžืขืŸ.

ืื™ื™ื“ืขืจ ืื™ืจ ืึทืจื™ื‘ืขืจืคื™ืจืŸ, ืœืึธื–ืŸ ืื•ื ื“ื– ืžืึทื›ืŸ ื–ื™ื›ืขืจ ืึทื– ืžื™ืจ ื”ืึธื‘ืŸ ืึทืœืฅ ืื™ืŸ ื”ืึทื ื˜:

  • OpenVZ ืกืขืจื•ื•ืขืจ, ืคื•ืœ ื•ื•ืึธืจืฆืœ ืึทืงืกืขืก ืฆื• ื“ืขืจ ื‘ืึทืœืขื‘ืึธืก ืžืึทืฉื™ืŸ, ืคื™ื™ื™ืงื™ื™ื˜ ืฆื• ื”ืึทืœื˜ืŸ / ืึธื ืงืœืึทืคึผืŸ / ืึธื ื”ื™ื™ื‘ / ื•ื™ืกืžืขืงืŸ ืงืึทื ื˜ื™ื™ื ืขืจื–
  • KVM ืกืขืจื•ื•ืขืจ, ืคื•ืœ ื•ื•ืึธืจืฆืœ ืึทืงืกืขืก ืฆื• ื“ืขืจ ื‘ืึทืœืขื‘ืึธืก ืžืึทืฉื™ืŸ, ืžื™ื˜ ืึทืœืข ื•ื•ืึธืก ืขืก ื™ืžืคึผืœื™ื™ื–. ืขืก ืื™ื– ืื ื’ืขื ื•ืžืขืŸ ืึทื– ืึทืœืฅ ืื™ื– ืฉื•ื™ืŸ ืงืึทื ืคื™ื’ื™ืขืจื“ ืื•ืŸ ื’ืจื™ื™ื˜ ืฆื• ื’ื™ื™ืŸ.

ื–ืืœ ืก ืึธื ื”ื™ื™ื‘ืŸ ื˜ืจืึทื ืกืคืขืจื™ื ื’

ืื™ื™ื“ืขืจ ืžื™ืจ ืึธื ื”ื™ื™ื‘ืŸ ื“ื™ ืึทืจื™ื‘ืขืจืคื™ืจืŸ, ืœืึธื–ืŸ ืื•ื ื“ื– ื“ืขืคื™ื ื™ืจืŸ ื˜ืขืจืžื™ื ืขืŸ ื•ื•ืึธืก ื•ื•ืขื˜ ื”ืขืœืคึฟืŸ ืื™ืจ ื•ื™ืกืžื™ื™ื“ืŸ ืฆืขืžื™ืฉื•ื ื’:

KVM_NODE - KVM ื‘ืึทืœืขื‘ืึธืก ืžืึทืฉื™ืŸ
VZ_NODE - OpenVZ ื‘ืึทืœืขื‘ืึธืก ืžืึทืฉื™ืŸ
CTID - OpenVZ ืงืึทื ื˜ื™ื™ื ืขืจ
VM - ืงื•ื•ื ื•ื•ื™ืจื˜ื•ืึทืœ ืกืขืจื•ื•ืขืจ

ืคึผืจื™ืคึผืขืจื™ื ื’ ืคึฟืึทืจ ืžื™ื™ื’ืจื™ื™ืฉืึทืŸ ืื•ืŸ ืงืจื™ื™ื™ื˜ื™ื ื’ ื•ื•ื™ืจื˜ื•ืึทืœ ืžืืฉื™ื ืขืŸ.

ืฉืจื™ื˜ ืงืกื ื•ืžืงืก

ื–ื™ื ื˜ ืžื™ืจ ื“ืึทืจืคึฟืŸ ืฆื• ืึทืจื™ื‘ืขืจืคื™ืจืŸ ื“ืขื ืงืึทื ื˜ื™ื™ื ืขืจ ืขืจื’ืขืฅ, ืžื™ืจ ื•ื•ืขืœืŸ ืžืึทื›ืŸ VM ืžื™ื˜ ืึท ืขื ืœืขืš ืงืึทื ืคื™ื’ื™ืขืจื™ื™ืฉืึทืŸ ืฆื• KVM_NODE.
ื•ื•ื™ื›ื˜ื™ืง! ะกะพะทะดะฐะฒะฐั‚ัŒ VM ะฝัƒะถะฝะพ ะธะผะตะฝะฝะพ ะฝะฐ ั‚ะพะน ะพะฟะตั€ะฐั†ะธะพะฝะฝะพะน ัะธัั‚ะตะผะต, ะบะพั‚ะพั€ะฐั ัะตะนั‡ะฐั ะบั€ัƒั‚ะธั‚ัั ะฝะฐ CTID. ะะฐะฟั€ะธะผะตั€, ะตัะปะธ ะฝะฐ CTID ัƒัั‚ะฐะฝะพะฒะปะตะฝะฐ Ubuntu 14, ั‚ะพ ะธ ะฝะฐ VM ะฝัƒะถะฝะพ ัั‚ะฐะฒะธั‚ัŒ Ubuntu 14. ะœะธะฝะพั€ะฝั‹ะต ะฒะตั€ัะธะธ ะฝะต ะฒะฐะถะฝั‹ ะธ ะธั… ะฝะตัะพะฒะฟะฐะดะตะฝะธะต ะฝะต ัั‚ะพะปัŒ ะบั€ะธั‚ะธั‡ะฝะพ, ะฐ ะฒะพั‚ ะผะฐะถะพั€ะฝั‹ะต โ€” ะดะพะปะถะฝั‹ ะฑั‹ั‚ัŒ ะพะดะธะฝะฐะบะพะฒั‹ะผะธ.

ื ืึธืš ืงืจื™ื™ื™ื˜ื™ื ื’ ื“ื™ VM, ืžื™ืจ ื•ื•ืขืœืŸ ื“ืขืจื”ื™ื™ึทื ื˜ื™ืงืŸ ื“ื™ ืคึผืึทืงืึทื“ื–ืฉืึทื– ืื•ื™ืฃ ื“ื™ CTID ืื•ืŸ ืื•ื™ืฃ ื“ื™ VM (ื ื™ื˜ ืฆื• ื–ื™ื™ืŸ ืฆืขืžื™ืฉื˜ ืžื™ื˜ ืึทืคึผื“ื™ื™ื˜ื™ื ื’ ื“ื™ ืึทืก - ืžื™ืจ ื˜ืึธืŸ ื ื™ื˜ ื“ืขืจื”ื™ื™ึทื ื˜ื™ืงืŸ ืขืก, ืžื™ืจ ื“ืขืจื”ื™ื™ึทื ื˜ื™ืงืŸ ื‘ืœื•ื™ื– ื“ื™ ืคึผืึทืงืึทื“ื–ืฉืึทื– ืื•ืŸ, ืื•ื™ื‘ ืขืก ืงื•ืžื˜, ื“ื™ ืึทืก ื•ื•ืขืจืกื™ืข ืื™ืŸ ื“ื™ ื”ื•ื™ืคึผื˜. ื•ื•ืขืจืกื™ืข).

ืคืึทืจ CentOS ัั‚ะพั‚ ะฟั€ะพั†ะตัั ะฒั‹ะณะปัะดะธั‚ ะฑะตะทะพะฑะธะดะฝะพ:

# yum clean all
# yum update -y

ะ˜ ะฝะต ะผะตะฝะตะต ะฑะตะทะพะฑะธะดะฝะพ ะดะปั Ubuntu, Debian:

# apt-get update
# apt-get upgrade

ืฉืจื™ื˜ ืงืกื ื•ืžืงืก

ื™ื ืกื˜ืึทืœื™ืจืŸ ืื•ื™ืฃ CTID, VZ_NODE ะธ VM ื ื•ืฆืŸ rsync:

CentOS:

# yum install rsync -y

Debian, Ubuntu:

# apt-get install rsync -y

ืžื™ืจ ื–ืขื ืขืŸ ื ื™ืฉื˜ ื™ื ืกื˜ืึธืœื™ื ื’ ืขืคึผืขืก ืึทื ื“ืขืจืฉ ืึธื“ืขืจ ื“ืึธืจื˜ ืึธื“ืขืจ ื“ืึธืจื˜.

ืฉืจื™ื˜ ืงืกื ื•ืžืงืก

ืžื™ืจ ืžืึทื›ืŸ ืึท ื”ืึทืœื˜ืŸ CTID ืื•ื™ืฃ VZ_NODE ืžืึทื ืฉืึทืคึฟื˜

vzctl stop CTID

ืžืึทื•ื ื˜ื™ื ื’ ื“ื™ ื‘ื™ืœื“ CTID:

vzctl mount CTID

ื’ื™ื™ืŸ ืฆื• ื“ื™ /vz/root/ ื˜ืขืงืขCTID ืื•ืŸ ื•ื™ืกืคื™ืจืŸ

mount --bind /dev dev && mount --bind /sys sys && mount --bind /proc proc && chroot .

ืื•ื ื˜ืขืจ ื“ืขืจ ื•ื•ืึธืจืฆืœ, ืฉืึทืคึฟืŸ ืึท ื˜ืขืงืข /root/exclude.txt - ืขืก ื•ื•ืขื˜ ืึทื ื˜ื”ืึทืœื˜ืŸ ืึท ืจืฉื™ืžื” ืคื•ืŸ ืื•ื™ืกื ืขืžืขืŸ ื•ื•ืึธืก ื•ื•ืขื˜ ื ื™ืฉื˜ ื‘ืึทืงื•ืžืขืŸ ืฆื• ื“ื™ ื ื™ื™ึทืข ืกืขืจื•ื•ืขืจ

/boot
/proc
/sys
/tmp
/dev
/var/lock
/etc/fstab
/etc/mtab
/etc/resolv.conf
/etc/conf.d/net
/etc/network/interfaces
/etc/networks
/etc/sysconfig/network*
/etc/sysconfig/hwconf
/etc/sysconfig/ip6tables-config
/etc/sysconfig/kernel
/etc/hostname
/etc/HOSTNAME
/etc/hosts
/etc/modprobe*
/etc/modules
/net
/lib/modules
/etc/rc.conf
/usr/share/nova-agent*
/usr/sbin/nova-agent*
/etc/init.d/nova-agent*
/etc/ips
/etc/ipaddrpool
/etc/ips.dnsmaster
/etc/resolv.conf
/etc/sysconfig/network-scripts/ifcfg-eth0
/etc/sysconfig/network-scripts/ifcfg-ens3

ืžื™ืจ ืคืึทืจื‘ื™ื ื“ืŸ ืฆื• KVM_NODE ืื•ืŸ ืงืึทื˜ืขืจ ืื•ื ื“ื–ืขืจ VMืึทื–ื•ื™ ืึทื– ืขืก ืึทืจื‘ืขื˜ ืื•ืŸ ืื™ื– ืฆื•ื˜ืจื™ื˜ืœืขืš ืื™ื‘ืขืจ ื“ื™ ื ืขืฅ.

ืื™ืฆื˜ ืึทืœืฅ ืื™ื– ื’ืจื™ื™ื˜ ืคึฟืึทืจ ืึทืจื™ื‘ืขืจืคื™ืจืŸ. ื’ื™ื™!

ืฉืจื™ื˜ ืงืกื ื•ืžืงืก

ื ืึธืš ืื•ื ื˜ืขืจ ื“ื™ ืจืขื’ืข, ืžื™ืจ ื“ื•ืจื›ืคื™ืจืŸ

rsync --exclude-from="/root/exclude.txt" --numeric-ids -avpogtStlHz --progress -e "ssh -T -o Compression=no -x" / root@KVM_NODE:/

ื“ื™ rsync ื‘ืึทืคึฟืขืœ ื•ื•ืขื˜ ื“ื•ืจื›ืคื™ืจืŸ ื“ื™ ืึทืจื™ื‘ืขืจืคื™ืจืŸ, ืžื™ืจ ื”ืึธืคืŸ ืึทื– ื“ื™ ืฉืœื™ืกืœืขืŸ ื–ืขื ืขืŸ ืงืœืึธืจ - ื“ื™ ืึทืจื™ื‘ืขืจืคื™ืจืŸ ืื™ื– ื“ื•ืจื›ื’ืขืงืึธื›ื˜ ืžื™ื˜ ื“ื™ ืคึผืจืขื–ืขืจื•ื•ื™ื™ืฉืึทืŸ ืคื•ืŸ ืกื™ืžืœื™ื ืงืก, ืึทืงืกืขืก ืจืขื›ื˜, ืึธื•ื ืขืจื– ืื•ืŸ ื’ืจื•ืคึผืขืก, ืื•ืŸ ืขื ืงืจื™ืคึผืฉืึทืŸ ืื™ื– ืคืึทืจืงืจื™ืคึผืœื˜ ืคึฟืึทืจ ืึท ื’ืจืขืกืขืจืข ื’ื™ื›ืงื™ื™ึทื˜ (ืื™ืจ ืงืขืŸ ื ื•ืฆืŸ ืขื˜ืœืขื›ืข ืคืึทืกื˜ืขืจ ืกื™ืคืขืจ, ืึธื‘ืขืจ ื“ืึธืก ืื™ื– ื ื™ืฉื˜ ืึทื–ื•ื™ ื•ื•ื™ื›ื˜ื™ืง ืคึฟืึทืจ ื“ืขื ืึทืจื‘ืขื˜), ื•ื•ื™ ื’ืขื–ื•ื ื˜ ื•ื•ื™ ืงืึทืžืคึผืจืขืฉืึทืŸ ืื™ื– ืคืึทืจืงืจื™ืคึผืœื˜.

ื ืึธืš ืงืึทืžืคึผืœื™ื˜ื™ื ื’ rsync, ืึทืจื•ื™ืกื’ืึทื ื’ ืคื•ืŸ chroot (ื“ื•ืจืš ื“ืจื™ื ื’ืœืขืš ืงื˜ืจืœ + ื“) ืื•ืŸ ื•ื™ืกืคื™ืจืŸ

umount dev && umount proc && umount sys && cd .. && vzctl umount CTID

ืฉืจื™ื˜ ืงืกื ื•ืžืงืก

ืœืึธืžื™ืจ ื“ื•ืจื›ืคื™ืจืŸ ืขื˜ืœืขื›ืข ืกื˜ืขืคึผืก ื•ื•ืึธืก ื•ื•ืขื˜ ื”ืขืœืคึฟืŸ ืื•ื ื“ื– ืงืึทื˜ืขืจ ื“ื™ VM ื ืึธืš ื˜ืจืึทื ืกืคืขืจื™ื ื’ ืคึฟื•ืŸ OpenVZ.
ืื•ื™ืฃ ืกืขืจื•ื•ืขืจืก ืžื™ื˜ Systemd ืœืึธื–ืŸ ืื•ื ื“ื– ื•ื™ืกืคื™ืจืŸ ืึท ื‘ืึทืคึฟืขืœ ื•ื•ืึธืก ื•ื•ืขื˜ ื”ืขืœืคึฟืŸ ืื•ื ื“ื– ืงืœืึธืฅ ืื™ืŸ ืฆื• ืึท ืจืขื’ื•ืœืขืจ ืงืึทื ืกืึธื•ืœ, ืœืžืฉืœ, ื“ื•ืจืš ืึท VNC ืกืขืจื•ื•ืขืจ ืคืึทืจืฉื˜ืขืœืŸ

mv /etc/systemd/system/getty.target.wants/getty@tty2.service /etc/systemd/system/getty.target.wants/getty@tty1.service

ืื•ื™ืฃ ืกืขืจื•ื•ืขืจืก CentOS 6 ะธ CentOS 7 ื–ื™ื™ื˜ ื–ื™ื›ืขืจ ืฆื• ื™ื ืกื˜ืึทืœื™ืจืŸ ืึท ืคืจื™ืฉ ืงืขืจืŸ:

yum install kernel-$(uname -r)

ื“ืขืจ ืกืขืจื•ื•ืขืจ ืงืขื ืขืŸ ื–ื™ื™ืŸ ืœืึธื•ื“ื™ื“ ืคึฟื•ืŸ ืื™ื, ืึธื‘ืขืจ ื ืึธืš ื“ื™ ืึทืจื™ื‘ืขืจืคื™ืจืŸ ืขืก ืงืขืŸ ื”ืึทืœื˜ืŸ ืืจื‘ืขื˜ืŸ ืึธื“ืขืจ ื•ื•ืขืจืŸ ืื•ื™ืกื’ืขืžืขืงื˜.

ืื•ื™ืฃ ืกืขืจื•ื•ืขืจ CentOS 7 ืื™ืจ ื“ืึทืจืคึฟืŸ ืฆื• ืฆื•ืœื™ื™ื’ืŸ ืึท ืงืœื™ื™ืŸ ืคืึทืจืจื™ื›ื˜ืŸ ืคึฟืึทืจ PolkitD, ืึทื ื“ืขืจืฉ ื“ืขืจ ืกืขืจื•ื•ืขืจ ื•ื•ืขื˜ ืงืจืึทืš ืื•ื™ืฃ ืื™ื™ื‘ื™ืง:

getent group polkitd >/dev/null && echo -e "e[1;32mpolkitd group already existse[0m" || { groupadd -r polkitd && echo -e "e[1;33mAdded missing polkitd groupe[0m" || echo -e "e[1;31mAdding polkitd group FAILEDe[0m"; }

getent passwd polkitd >/dev/null 
&& echo -e "e[1;32mpolkitd user already existse[0m" || { useradd -r -g polkitd -d / -s /sbin/nologin -c "User for polkitd" polkitd && echo -e "e[1;33mAdded missing polkitd usere[0m" || echo -e "e[1;31mAdding polkitd user FAILEDe[0m"; }

rpm -Va polkit* && echo -e "e[1;32mpolkit* rpm verification passede[0m" || { echo -e "e[1;33mResetting polkit* rpm user/group ownership & permse[0m"; rpm --setugids polkit polkit-pkla-compat; rpm --setperms polkit polkit-pkla-compat; }

ืื•ื™ืฃ ืึทืœืข ืกืขืจื•ื•ืขืจืก, ืื•ื™ื‘ mod_fcgid ืคึฟืึทืจ ืึทืคึผืึทื˜ืฉื™ ืื™ื– ืื™ื ืกื˜ืึทืœื™ืจืŸ, ืžื™ืจ ื•ื•ืขืœืŸ ื“ื•ืจื›ืคื™ืจืŸ ืึท ืงืœื™ื™ืŸ ืคืึทืจืจื™ื›ื˜ืŸ ืžื™ื˜ ืจืขื›ื˜, ืึทื ื“ืขืจืฉ ื–ื™ื™ื˜ืœืขืš ื ื™ืฆืŸ mod_fcgid ื•ื•ืขื˜ ืงืจืึทืš ืžื™ื˜ ื˜ืขื•ืช 500:

chmod +s `which suexec` && apachectl restart

ะ˜ ะฟะพัะปะตะดะฝะตะต, ะฟั€ะธะณะพะดะธั‚ัั ะดะปั Ubuntu, Debian ะดะธัั‚ั€ะธะฑัƒั‚ะธะฒะพะฒ. ะญั‚ะฐ ะžะก ะผะพะถะตั‚ ัƒะฟะฐัั‚ัŒ ะฒ ะฒะตั‡ะฝั‹ะน ะฑัƒั‚ ั ะพัˆะธะฑะบะพะน

ืœื•ืคึผื™ื ื’ ืฆื• ืฉื ืขืœ. ื’ืขืจื’ืœ ื“ื•ืจื›ืคื™ืจื•ื ื’ ืึท ื‘ื™ืกืœ

ืคึผืจื™ืงืจืข, ืึธื‘ืขืจ ืœื™ื™ื›ื˜ ืคืึทืจืคืขืกื˜ื™ืงื˜, ื“ื™ืคึผืขื ื“ื™ื ื’ ืื•ื™ืฃ ื“ื™ ืึทืก ื•ื•ืขืจืกื™ืข.

ืื•ื™ืฃ Debian 9 ื“ื™ ืคืึทืจืจื™ื›ื˜ืŸ ืงื•ืงื˜ ื•ื•ื™ ื“ืึธืก:

ืžื™ืจ ืคื™ืจืŸ ืื•ื™ืก

dbus-uuidgen

ืื•ื™ื‘ ืžื™ืจ ื‘ืึทืงื•ืžืขืŸ ืึท ื˜ืขื•ืช

/usr/local/lib/libdbus-1.so.3: ื•ื•ืขืจืกื™ืข `LIBDBUS_PRIVATE_1.10.8โ€ฒ ื ื™ื˜ ื’ืขืคึฟื•ื ืขืŸ

ืงืึธื ื˜ืจืึธืœื™ืจืŸ ื“ื™ ื‘ื™ื™ึทื–ื™ื™ึทืŸ ืคื•ืŸ LIBDBUS

ls -la /lib/x86_64-linux-gnu | grep dbus
libdbus-1.so.3 -> libdbus-1.so.3.14.15 
libdbus-1.so.3.14.15 <-- ะฝัƒะถะตะฝ ัั‚ะพั‚
libdbus-1.so.3.14.16

ืื•ื™ื‘ ืึทืœืฅ ืื™ื– ืื™ืŸ ืกื“ืจ, ืžื™ืจ ื˜ืึธืŸ ื“ืึธืก

cd /lib/x86_64-linux-gnu
rm -rf libdbus-1.so.3
ln -s libdbus-1.so.3.14.15  libdbus-1.so.3

ืื•ื™ื‘ ืขืก ืงืขืŸ ื ื™ืฉื˜ ื”ืขืœืคืŸ, ืคึผืจื•ื‘ื™ืจืŸ ื“ื™ ืจื’ืข ืึธืคึผืฆื™ืข.

ื“ื™ ืจื’ืข ืœื™ื™ื–ื•ื ื’ ืฆื• ื“ืขื ืคึผืจืึธื‘ืœืขื ืžื™ื˜ ื’ืขืจื’ืœ ื“ื•ืจื›ืคื™ืจื•ื ื’ ืึท ื‘ื™ืกืœ ะฟะพะดั…ะพะดะธั‚ ะฟั€ะฐะบั‚ะธั‡ะตัะบะธ ะดะปั ะฒัะตั… Ubuntu ะธ Debian ะดะธัั‚ั€ะธะฑัƒั‚ะธะฒะพะฒ.

ืžื™ืจ ืคื™ืจืŸ ืื•ื™ืก

bash -x /var/lib/dpkg/info/dbus.postinst configure

ืื•ืŸ ืคึฟืึทืจ Ubuntu 14, Debian 7 ืื™ืŸ ื“ืขืจืฆื•, ืžื™ืจ ื“ื•ืจื›ืคื™ืจืŸ:

adduser --system --home /nonexistent --no-create-home --disabled-password --group messagebus

rm -rf /etc/init.d/modules_dep.sh 

ะงั‚ะพ ะผั‹ ัะดะตะปะฐะปะธ? ะ’ะพััั‚ะฐะฝะพะฒะธะปะธ messagebus, ะบะพั‚ะพั€ะพะณะพ ะฝะต ั…ะฒะฐั‚ะฐะปะพ ะดะปั ะทะฐะฟัƒัะบะฐ Debian/Ubuntu ะธ ัƒะดะฐะปะธะปะธ modules_dep, ะบะพั‚ะพั€ั‹ะน ะฟั€ะธัˆะตะป ะพั‚ OpenVZ ะธ ะผะตัˆะฐะป ะทะฐะณั€ัƒะทะบะธ ะผะฝะพะณะธั… ะผะพะดัƒะปะตะน ัะดั€ะฐ.

ืฉืจื™ื˜ ืงืกื ื•ืžืงืก

ืžื™ืจ ืจืขื‘ืึธืึธื˜ ื“ื™ VM, ื˜ืฉืขืง ืื™ืŸ VNC ื•ื•ื™ ื“ื™ ืœืึธื•ื“ื™ื ื’ ืื™ื– ืคึผืจืึทื’ืจืขืกื™ื ื’ ืื•ืŸ, ื™ื™ื“ื™ืœื™, ืึทืœืฅ ื•ื•ืขื˜ ืœืึธื“ืŸ ืึธืŸ ืคืจืื‘ืœืขืžืขืŸ. ื›ืึธื˜ืฉ ืขืก ืื™ื– ืžืขื’ืœืขืš ืึทื– ืขื˜ืœืขื›ืข ืกืคึผืขืฆื™ืคื™ืฉ ืคึผืจืึธื‘ืœืขืžืก ื•ื•ืขื˜ ื“ืขืจืฉื™ื™ึทื ืขืŸ ื ืึธืš ื“ื™ ืžื™ื™ื’ืจื™ื™ืฉืึทืŸ, ื–ื™ื™ ื–ืขื ืขืŸ ื•ื•ื™ื™ึทื˜ืขืจ ืคื•ืŸ ื“ืขื ืคืึทืจื ืขื ืคื•ืŸ ื“ืขื ืึทืจื˜ื™ืงืœ ืื•ืŸ ื•ื•ืขื˜ ื–ื™ื™ืŸ ืงืขืจืขืงื˜ืึทื“ ื•ื•ื™ ื–ื™ื™ ืฉื˜ื™ื™ืขืŸ.

ืื™ืš ื”ืึธืคึฟืŸ ืึทื– ื“ื™ ืื™ื ืคึฟืึธืจืžืึทืฆื™ืข ืื™ื– ื ื•ืฆื™ืง! ๐Ÿ™‚

ืžืงื•ืจ: www.habr.com

ืงื•ื™ืคืŸ ืคืึทืจืœืึธื–ืœืขืš ื”ืึธืกื˜ื™ื ื’ ืคึฟืึทืจ ื–ื™ื™ื˜ืœืขืš ืžื™ื˜ DDoS ืฉื•ืฅ, VPS VDS ืกืขืจื•ื•ืขืจืก ๐Ÿ”ฅ ืงื•ื™ืคื˜ ืคืึทืจืœืขืกืœืขื›ืข ื•ื•ืขื‘ื–ื™ื™ื˜ืœ ื”ืึธืกื˜ื™ื ื’ ืžื™ื˜ DDoS ืฉื•ืฅ, VPS VDS ืกืขืจื•ื•ืขืจืก | ProHoster