ืืื ืืขื ืึทืจืืืงื ืืืจ ืืืขืื ืงืืงื ืืื ืึท ื ืืืขืจ ืคืื ืึทืคึผืฉืึทื ืึทื ืึธืืขืจ ื ืืฆืืง ืกืขืืืื ืืก:
ื ืืฆื ื ืึธื ื ืขืืขื ืคึฟืึทืจ ืื ืคืึทืจืืืึทืืืขืจ ;ืงืึทื ืขืงืืื ื ืึธืืขื ืืึทืงืืืฉืึทื ืืืจื ืึทืงืืืื Directory ;ืืืืืืคึผืึทืืืื ื ;ืืึทืื ืคืึทืจืืืึทืืืื ื ;ืจืืคึผืืืืกืื ื ืกืกื ืืึทืืืืึทืื ;ืึทืจืงืืืืืื ื ;ืืึทืืขืืึธืก ืคืึทืจืืืึทืืืื ื ืฆืืืื ื (ืงืึทืงืคึผืื) ;ืืืืึทื ืก ;HPE ืกืคึผืขืฆืืคืืฉ .
ืืขืจ ืึทืจืืืงื ืืื ืึท ืงืึทื ืืื ืืืืืฉืึทื, ืืขื oVirt ืืื 2 ืฉืขื ืคึฟืึทืจ ืื ืึธื ืืืื
ืืจืืืงืืขื
ืืงืืื ืื ืกืืึทืืืจืื ื ืคืื ืื ืคืึทืจืืืึทืืืขืจ (ืึธืืืืจื-ืืึธืืึธืจ) ืืื ืืืืคึผืขืจืืืืืืขืจื (ืืื ืืช) - ื ืึธื ืกืขืืืื ืืก - ืืืจ ืืขื ืขื ืืึธ
ื ืึธื ืคืึทืจืืืึทืืืขืจ ืกืขืืืื ืืก
ืคึฟืึทืจ ืงืึทื ืืืื ืืึทื ืก, ืืืจ ืืืขืื ืื ืกืืึทืืืจื ื ืึธื ืคึผืึทืงืึทืืืฉืึทื:
$ sudo yum install bash-completion vim
ืฆื ืืขืื ืงืึทืืึทื ืื ืงืึทืืคึผืืืฉืึทื, ืืึทืฉ-ืงืึธืืคึผืืขืฉืึทื ืจืืงืืืืืขืจื ืกืืืืืฉืื ื ืฆื ืืึทืฉ.
ืึทืืื ื ื ืึธื ืื ืก ื ืขืืขื
ืืึธืก ืืืขื ืืืื ืคืืจืืื ืื ืืืขื ืืืจ ืืึทืจืคึฟื ืฆื ืคืึทืจืืื ืื ืฆื ืื ืคืึทืจืืืึทืืืขืจ ืืื ืึทื ืึธืืืขืจื ืึทืืืื ื ืึธืืขื (CNAME, ืึทืืืึทืก ืึธืืขืจ ื ืึธืจ ืึท ืงืืจืฅ ื ืึธืืขื ืึธื ืึท ืคืขืื ืกืึทืคืืงืก). ืคึฟืึทืจ ืืืืขืจืืืื ืกืืืืช, ืืขืจ ืคืึทืจืืืึทืืืขืจ ืึทืืึทืื ืงืึทื ืขืงืฉืึทื ื ืืืืื ื ืืฆื ืื ืขืจืืืืื ืจืฉืืื ืคืื ื ืขืืขื.
ืฉืึทืคึฟื ืึท ืงืึทื ืคืืืืขืจืืืฉืึทื ืืขืงืข:
$ sudo vim /etc/ovirt-engine/engine.conf.d/99-custom-sso-setup.conf
ืื ืคืืืืขื ืืข ืืื ืืึทืื:
SSO_ALTERNATE_ENGINE_FQDNS="ovirt.example.com some.alias.example.com ovirt"
ืืื ืจืืกืืึทืจื ืื ืคืึทืจืืืึทืืืขืจ:
$ sudo systemctl restart ovirt-engine
ืืึทืฉืืขืืืงื ืึธืืขื ืืึทืงืืืฉืึทื ืืืจื AD
oVirt ืืื ืึท ืืขืืืื-ืืื ืืึทื ืืฆืขืจ ืืึทืืข, ืึธืืขืจ ืคืื ืืจืืืกื ืืืง LDAP ืคึผืจืึทืืืืืืขืจื ืืขื ืขื ืืืื ืืขืฉืืืฆื, ืื ืงื. ื.ื.
ืื ืกืืืคึผืืึทืกื ืืืขื ืคึฟืึทืจ ืึท ืืืคึผืืฉ ืงืึทื ืคืืืืขืจืืืฉืึทื ืืื ืฆื ืงืึทืืขืจ ืื ืืึทืืขืง ืืื ืจืืกืืึทืจื ืื ืคืึทืจืืืึทืืืขืจ:
$ sudo yum install ovirt-engine-extension-aaa-ldap-setup
$ sudo ovirt-engine-extension-aaa-ldap-setup
$ sudo systemctl restart ovirt-engine
ื ืืืืฉืคืื ืคืื ื ืืขื ืืืขืจืง
$ sudo ovirt-engine-extension-aaa-ldap-setup
ืื ืืืฆื LDAP ืืืคึผืืึทืืึทื ืฅ:
...
3 - ืึทืงืืืื Directory
...
ืืืืข ืงืืืืื ืืืืก: 3
ืืืืข ืึทืจืืึทื ืึทืงืืืื Directory ืืืึทืื ื ืึธืืขื: example.com
ืืืืข ืืืืกืงืืืึทืื ืคึผืจืึธืืึธืงืึธื ืฆื ื ืืฆื (ืกืืึทืจืืืืก, ืืืึทืคึผืก, ืงืืึธืจ) [startTLS]:
ืืืืข ืกืขืืขืงืืืจื ืืขื ืืืคึฟื ืฆื ืืึทืงืืืขื PEM ืงืึธืืขื CA ืืึทืืืืึทืื (ืืขืงืข, URL, ืื ืืื ืข, ืกืืกืืขื, ืื ืกืึทืงืืขืจ): URL
URL:
ืึทืจืืึทื ืืืื ืืึทื ืืฆืขืจ DN (ืืืฉื uid = ืืึทื ืืฆืขืจ ื ืึธืืขื, DC = ืืืึทืฉืคึผืื, DC = com ืึธืืขืจ ืืึธืื ืืืืืืง ืคึฟืึทืจ ืึทื ืึธื ืืืข ืืึทื ืืฆืขืจืก): CN=oVirt-Engine,CN=Users,DC=example,DC=com
ืึทืจืืึทื ืืืื ืืึทื ืืฆืขืจ ืคึผืึทืจืึธื: *ืฉืคึผืจืืืืืึธืจื*
[ INFO ] ืคึผืจืืืื ืฆื ืืื ืื ืืื 'CN = oVirt-Engine, CN = ืืืืขืจื, DC = ืืืืฉืคึผืื, DC = com'
ืืืขื ืืืจ ื ืืฆื ืืืื ืฆืืืื-ืืืืฃ ืคึฟืึทืจ ืืืืจืืืึทื ืืืฉืื ืขื (ืืึธ, ื ืืื) [ืื]:
ืืืืข ืกืคึผืขืฆืืคืืฆืืจื ืคึผืจืึธืคืื ื ืึธืืขื ืืืึธืก ืืืขื ืืืื ืงืขื ืืืง ืฆื ืืืืขืจื [example.com]:
ืืืืข ืฆืืฉืืขืื ืงืจืึทืืขื ืืฉืึทืื ืฆื ืคึผืจืืืืจื ืืึธืืื ืืืืคื:
ืึทืจืืึทื ืืึทื ืืฆืขืจ ื ืึธืืขื: someAnyUser
ืึทืจืืึทื ืืึทื ืืฆืขืจ ืคึผืึทืจืึธื:
...
[INFO] ืืึธืืื ืกืืงืืืึทื ืก ืขืงืกืึทืงืืืืึทื ืืฆืืื
...
ืืืืกืงืืืึทืื ืื ืคึผืจืึธืืข ืกืืงืืืึทื ืก ืฆื ืืืกืคืืจื (ืืขืืื, ืึทืืึธืจื, ืืึธืืื, ืืืื) [ืืขืืื]:
[INFO] ืกืืึทืืข: ืืจืึทื ืกืึทืงืืืึธื ืกืขืืึทืคึผ
...
ืงืึธื ืคืืืืจืึทืืืึธื ืงืืฆืขืจ
...
ื ืืฆื ืื ืืึทืืขืง ืืื ืคึผืึทืกืืง ืคึฟืึทืจ ืจืืึฟ ืงืึทืกืขืก. ืคึฟืึทืจ ืงืึธืืคึผืืขืงืก ืงืึทื ืคืืืืขืจืืืฉืึทื ื, ืกืขืืืื ืืก ืืขื ืขื ืืึทื ืืืึทืื. ืืขืจ ืืขืืึทืืืก ืืื oVirt ืืึทืงืืืืขื ืืืืฉืึทื,
ืืืืืืคึผืึทืืืื ื
ืืื ืึท ืคึผืจืึธืืืงืฆืืข ืกืืืืืืข, ืื ืกืืึธืจืืืืฉ ืกืืกืืขื ืืืื ืืืื ืงืึธื ื ืขืงืืขื ืฆื ืืขืจ ืืึทืืขืืึธืก ืืืจื ืงืืืคื ืคืจืืึท, ืงืืืคื ื / ืึธ ืคึผืึทืืก. ืืื ืึท ืืขืจืฉื, ืืื CentOS (ืืื ืืขืจืืืขืจ oVirt) ืขืก ืืขื ืขื ืงืืื ืคืจืืืืขืืขื ืืื ืึทืกืขืืืึทืืื ื ืงืืืคื ืคึผืึทืืก ืฆื ืึท ืืืื (find_multipaths ืืึธ). ื ืึธื ืกืขืืืื ืืก ืคึฟืึทืจ FCoE ืืขื ืขื ืืขืฉืจืืื ืืื
ื ืืฆื 3PAR ืืื ืึท ืืืึทืฉืคึผืื
ืืื ืืึธืงืืืขื ื
defaults {
polling_interval 10
user_friendly_names no
find_multipaths yes
}
devices {
device {
vendor "3PARdata"
product "VV"
path_grouping_policy group_by_prio
path_selector "round-robin 0"
path_checker tur
features "0"
hardware_handler "1 alua"
prio alua
failback immediate
rr_weight uniform
no_path_retry 18
rr_min_io_rq 1
detect_prio yes
fast_io_fail_tmo 10
dev_loss_tmo "infinity"
}
}
ื ืึธื ืืืึธืก ืื ืืึทืคึฟืขื ืฆื ืจืืกืืึทืจื ืืื ืืขืืขืื:
systemctl restart multipathd
ืจืืืก. 1 ืืื ืื ืคืขืืืงืืึทื ืงืืืคื ื / ืึธ ืคึผืึธืืืืืง.
ืจืืืก. 2 - ืงืืืคื ื / ืึธ ืคึผืึธืืืืืง ื ืึธื ืึทืคึผืืืืื ื ืกืขืืืื ืืก.
ืืึทืฉืืขืืืงื ืืึทืื ืคืึทืจืืืึทืืืื ื
ืึทืืึทืื ืืืจ ืฆื ืืืจืืคืืจื, ืืืฉื, ืึท ืืึทืื ืืืึทืจื ืืึทืฉืืขืืืง ืคืื ืื ืืึทืฉืื ืืืื ืื ืืึธืืึธืจ ืงืขื ื ืืฉื ืืึทืงืืืขื ืึท ืขื ืืคืขืจ ืคืื ืืขืจ ืืึทืืขืืึธืก ืคึฟืึทืจ ืึท ืืึทื ื ืฆืืึทื. ืืืคึผืืึทืืขื ืึทื ืืืจื ืคืขื ืก ืึทืืขื ื.
ืจืขืืขื ืขื -> ืืึธืกืฅ -> ืืึทืืขืืึธืก - ืจืขืืึทืืืจื -> ืืึทืื ืืึทื ืึทืืขืืขื ื, ืืื ืืขืื "ืืขืื ืืึทืื ืืึทื ืึทืืขืืขื ื" ืืื ืืืืื ืึทื ืึทืืขื ื - "ืืืื ืคืขื ืก ืึทืืขื ื" -> +.
ืืืจ ืึธื ืืืืึทืื ืืขื ืืืคึผ (ืืืฉื, ืคึฟืึทืจ iLO5 ืืืจ ืืึทืจืคึฟื ืฆื ืกืคึผืขืฆืืคืืฆืืจื ilo4), ืื ื ืึธืืขื / ืึทืืจืขืก ืคืื ืื ipmi ืฆืืืื ื, ืืื ืืขืืื ื ืืื ืื ืืึทื ืืฆืขืจ ื ืึธืืขื / ืคึผืึทืจืึธื. ืขืก ืืื ืจืขืงืึทืืขื ืืื ืฆื ืฉืึทืคึฟื ืึท ืืึทืืื ืืขืจ ืืึทื ืืฆืขืจ (ืืืฉื, oVirt-PM) ืืื, ืืื ืืขื ืคืึทื ืคืื iLO, ืืขืื ืืื ืคึผืจืืืืืืึทืืืฉืึทื:
- ืฆืืืื ืืจืืื
- ืจืืืึธืื ืงืึทื ืกืึธืื
- ืืืืจืืืึทื ืืึทืื ืืื ืืึทืฉืืขืืืง
- ืืืืจืืืึทื ืืืืืึท
- ืงืึทื ืคืืืืขืจ ืืืึธ ืกืขืืืื ืืก
- ืคืืจื ืืึทื ืืฆืขืจ ืึทืงืึทืื ืฅ
ืื ืืืืกื ื ืืฉื ืคืจืขืื ืืืึธืก ืืึธืก ืืื ืึทืืื, ืขืก ืืื ืืขืืืขื ืขืืคึผืืจืืงืื ืืืืกืืขืจืืืืืื. ืืขืจ ืงืึทื ืกืึธืื ืคืขื ืกืื ื ืึทืืขื ื ืจืืงืืืืืขืจื ืืืืื ืืงืขืจืข ืจืขืื.
ืืืขื ืืืจ ืฉืืขืื ืึทืจืืืฃ ืึทืงืกืขืก ืงืึธื ืืจืึธื ืจืฉืืืืช, ืืืจ ืืึธื ืืึทืืื ืืื ืืื ืขื ืึทื ืืขืจ ืึทืืขื ื ืืืืคื ื ืืฉื ืืืืฃ ืื ืืึธืืึธืจ, ืึธืืขืจ ืืืืฃ ืึท "ืืจืืืืืขืจ" ืืึทืืขืืึธืก (ืื ืึทืืื ืืขืจืืคืขื ืข ืืึทืื ืืึทื ืึทืืขืืขื ื ืคึผืจืึธืงืกื), ื"ื ืืืื ืขืก ืืื ืืืืื ืืืื ื ืึธืืข ืืื ืืขื ืงื ืืื, ืืึทืื ืคืึทืจืืืึทืืืื ื ืืืขื ืึทืจืืขืื ืืืขื ื ืื.
ืืึทืฉืืขืืืงื SSL
ืืึทื ืฅ ืืึทืึทืืืขืจ ืื ืกืืจืึทืงืฉืึทื ื - ืืื
ืื ืืึทืืืืึทืื ืงืขื ืขื ืืืื ืคึฟืื ืืื ืืืขืจ ืคึฟืืจืืข CA ืึธืืขืจ ืคึฟืื ืึท ืคืื ืืจืืืกื ืืืง ืืขืฉืขืคื ืืึทืืืืึทืื ืืืืืึธืจืืืขื.
ืืืืืืืง ืืึธื: ืื ืืึทืืืืึทืื ืืื ืืืขื ืคึฟืึทืจ ืงืึทื ืขืงืืื ื ืฆื ืื ืคืึทืจืืืึทืืืขืจ ืืื ืืืขื ื ืืฉื ืืืืจืงื ืงืึธืืื ืืงืึทืฆืืข ืฆืืืืฉื ืื ืืึธืืึธืจ ืืื ืื ื ืึธืืื - ืืื ืืืขืื ื ืืฆื ืืื-ืืขืืชืืขื ืกืขืจืืืคืืงืึทืฅ ืืจืืืก ืืืจื ืื ืืึธืืึธืจ.
ืจืขืงืืืืจืขืืขื ืฅ:
- ืืึทืืืืึทืื ืคืื ืื ืึทืจืืืกืืขืื CA ืืื PEM ืคึฟืึธืจืืึทื, ืืื ืื ืืื ืฆืข ืงืืื ืึทืจืืืฃ ืฆื ืื ืืืึธืจืฆื CA (ืคืื ืื ืกืึทืืึธืจืืึทื ืืื ืืฉืืื ื CA ืืื ืื ืึธื ืืืื ืฆื ืื ืืืึธืจืฆื ืืื ืื ืกืืฃ);
- ืึท ืืึทืืืืึทืื ืคึฟืึทืจ ืึทืคึผืึทืืฉื ืืจืืืก ืืืจื ืื ืึทืจืืืกืืขืื CA (ืืืื ืกืึทืคึผืืึทืืขื ืืึทื ืืืจื ืื ืืื ืฆืข ืงืืื ืคืื CA ืกืขืจืืืคืืงืึทืฅ);
- ืคึผืจืืืืึทื ืฉืืืกื ืคึฟืึทืจ ืึทืคึผืึทืืฉื, ืึธื ืคึผืึทืจืึธื.
ืืึธืืืจ ืืืขืจื ืขืืขื ืืื ืืืขืจ ืืฉืืื ื CA ืืื ืคืืืกื ืืืง CentOS, ืืขืจืืคึฟื subca.example.com, ืืื ืื ืจืืงืืืขืก, ืฉืืืกืืขื ืืื ืกืขืจืืืคืืงืึทืฅ ืืขื ืขื ืืืื ืืื ืื /etc/pki/tls/ ืืืขืืืืืึทืืขืจ.
ืืืจ ืืืจืืคืืจื ืืึทืงืึทืคึผืก ืืื ืฉืึทืคึฟื ืึท ืฆืืึทืืืืืึทืืืง ืืืขืืืืืึทืืขืจ:
$ sudo cp /etc/pki/ovirt-engine/keys/apache.key.nopass /etc/pki/ovirt-engine/keys/apache.key.nopass.`date +%F`
$ sudo cp /etc/pki/ovirt-engine/certs/apache.cer /etc/pki/ovirt-engine/certs/apache.cer.`date +%F`
$ sudo mkdir /opt/certs
$ sudo chown mgmt.mgmt /opt/certs
ืืจืืคืงืืคืืข ืกืขืจืืืคืืงืึทืฅ, ืืืจืืคืืจื ืขืก ืคึฟืื ืืืื ืืืขืจืงืกืืืืฉืึทื ืึธืืขืจ ืึทืจืืืขืจืคืืจื ืขืก ืืืืฃ ืื ืื ืืขืจ ืืึทืงืืืขื ืืืขื:
[myuser@mydesktop] $ scp -3 [email protected]:/etc/pki/tls/cachain.pem [email protected]:/opt/certs
[myuser@mydesktop] $ scp -3 [email protected]:/etc/pki/tls/private/ovirt.key [email protected]:/opt/certs
[myuser@mydesktop] $ scp -3 [email protected]/etc/pki/tls/certs/ovirt.crt [email protected]:/opt/certs
ืืื ืึท ืจืขืืืืืึทื, ืืืจ ืืึธื ืืขื ืึทืืข 3 ืืขืงืขืก:
$ ls /opt/certs
cachain.pem ovirt.crt ovirt.key
ืื ืกืืึธืืื ื ืกืขืจืืืคืืงืึทืฅ
ื ืึธืืืึทืื ืื ืืขืงืขืก ืืื ืืขืจืืืึทื ืืืงื ืื ืฆืืืจืื ืจืฉืืืืช:
$ sudo cp /opt/certs/cachain.pem /etc/pki/ca-trust/source/anchors
$ sudo update-ca-trust
$ sudo rm /etc/pki/ovirt-engine/apache-ca.pem
$ sudo cp /opt/certs/cachain.pem /etc/pki/ovirt-engine/apache-ca.pem
$ sudo cp /opt/certs/ovirt03.key /etc/pki/ovirt-engine/keys/apache.key.nopass
$ sudo cp /opt/certs/ovirt03.crt /etc/pki/ovirt-engine/certs/apache.cer
$ sudo systemctl restart httpd.service
ืืืื / ืืขืจืืืึทื ืืืงื ืงืึทื ืคืืืืขืจืืืฉืึทื ืืขืงืขืก:
$ sudo vim /etc/ovirt-engine/engine.conf.d/99-custom-truststore.conf
ENGINE_HTTPS_PKI_TRUST_STORE="/etc/pki/java/cacerts"
ENGINE_HTTPS_PKI_TRUST_STORE_PASSWORD=""
$ sudo vim /etc/ovirt-engine/ovirt-websocket-proxy.conf.d/10-setup.conf
SSL_CERTIFICATE=/etc/pki/ovirt-engine/certs/apache.cer
SSL_KEY=/etc/pki/ovirt-engine/keys/apache.key.nopass
$ sudo vim /etc/ovirt-imageio-proxy/ovirt-imageio-proxy.conf
# Key file for SSL connections
ssl_key_file = /etc/pki/ovirt-engine/keys/apache.key.nopass
# Certificate file for SSL connections
ssl_cert_file = /etc/pki/ovirt-engine/certs/apache.cer
ืืขืจื ืึธื, ืจืืกืืึทืจื ืึทืืข ืึทืคืขืงืืึทื ืืึทืืื ืื ืืก:
$ sudo systemctl restart ovirt-provider-ovn.service
$ sudo systemctl restart ovirt-imageio-proxy
$ sudo systemctl restart ovirt-websocket-proxy
$ sudo systemctl restart ovirt-engine.service
ืืจืืื! ืขืก ืืื ืฆืืื ืฆื ืคืึทืจืืื ืื ืฆื ืื ืคืึทืจืืืึทืืืขืจ ืืื ืงืึธื ืืจืึธืืืจื ืึทื ืื ืงืฉืจ ืืื ืคึผืจืึธืืขืงืืขื ืืืจื ืึท ืืขืืชืืขื ืกืกื ืืึทืืืืึทืื.
ืึทืจืืฉืืืืื ื
ืฐืึผ ืฐืึธืืื ืืืจ ืืขืฐืขื ืึธื ืืืจ? ืืื ืืขื ืึธืคึผืืืืืื ื ืืืจ ืืืขืื ืจืขืื ืืืขืื ืคืึทืจืืืึทืืืขืจ ืึทืจืืฉืืืืื ื; VM ืึทืจืงืืืืืื ื ืืื ืึท ืืึทืืื ืืขืจ ืึทืจืืืกืืขืื. ืืืจ ืืืขืื ืืึทืื ืึทืจืงืืืื ืขืงืืขืืคืืืจื ืึทืืึธื ืึท ืืึธื ืืื ืงืจืึธื ืืื ืืืจื NFS, ืืืฉื, ืืืืฃ ืืขืจ ืืขืืืืงืขืจ ืกืืกืืขื ืืื ืืืจ ืฉืืขืื ืื ISO ืืืืืขืจ - mynfs1.example.com:/exports/ovirt-backup. ืขืก ืืื ื ืืฉื ืจืขืงืึทืืขื ืืื ืฆื ืงืจืึธื ืึทืจืงืืืืื ืืืืฃ ืืขืจ ืืขืืืืงืขืจ ืืึทืฉืื ืืื ืื ืืึธืืึธืจ ืืื ืคืืืกื ืืืง.
ืื ืกืืึทืืืจื ืืื ืืขืื ืึทืืืึธืคืก:
$ sudo yum install autofs
$ sudo systemctl enable autofs
$ sudo systemctl start autofs
ืืืืืจ ืืืื ื ืฉืจืืคื:
$ sudo vim /etc/cron.daily/make.oVirt.backup.sh
ืื ืคืืืืขื ืืข ืืื ืืึทืื:
#!/bin/bash
datetime=`date +"%F.%R"`
backupdir="/net/mynfs01.example.com/exports/ovirt-backup"
filename="$backupdir/`hostname --short`.`date +"%F.%R"`"
engine-backup --mode=backup --scope=all --file=$filename.data --log=$filename.log
#uncomment next line for autodelete files older 30 days
#find $backupdir -type f -mtime +30 -exec rm -f {} ;
ืืึทืื ืื ืืขืงืข ืขืงืกืขืงืืืึทืืืข:
$ sudo chmod a+x /etc/cron.daily/make.oVirt.backup.sh
ืืืฆื ืืขืืขืจ ื ืึทืื ืืืจ ืืืขืื ืืึทืงืืืขื ืึทื ืึทืจืงืืืื ืคืื ืคืึทืจืืืึทืืืขืจ ืกืขืืืื ืืก.
ืืึธืกื ืคืึทืจืืืึทืืืื ื ืฆืืืื ื
ืจืืืก. 3 - ืืืืกืืขื ืคืื ืื ืืึทืคืืืข.
ืื ืื ืกืืึทืืืจืื ื ืืื ืืืืขืจ ืคึผืฉืื, ืืืจ ืืึทืจืคึฟื ืื ืงืึทืงืคึผืื ืคึผืึทืงืึทืืืฉืึทื ืืื ืื ืงืึทืงืคึผืื-ืึธืืืืจื-ืืึทืฉืืึธืจื ืคึผืืืืื:
$ sudo yum install cockpit cockpit-ovirt-dashboard -y
ืืขืื ืงืึทืงืคึผืื:
$ sudo systemctl enable --now cockpit.socket
Firewall ืกืขืืึทืคึผ:
sudo firewall-cmd --add-service=cockpit
sudo firewall-cmd --add-service=cockpit --permanent
ืืืฆื ืืืจ ืงืขื ืขื ืคืึทืจืืื ืื ืฆื ืืขืจ ืืึทืืขืืึธืก: https://[Host IP or FQDN]:9090
ืืืืึทื ืก
ืืืจ ืืึธื ืืืืขื ืขื ืืขืจ ืืืขืื ื ืขืืืืึธืจืงืก ืืื
ืฆื ืคืึทืจืืื ืื ืื ืืขืจืข ืกืืื ืขืฅ, ืืื ืืืื ืขืจืฉืืขืจ ืืืื ืืืกืงืจืืืื ืืื ืื ืงืึทื ืคืืืืขืจืืืฉืึทื: ื ืขืืืืึธืจืง -> ื ืขืืืืึธืจืงืก -> ื ืืึท, ืืึธ ืืืืื ืื ื ืึธืืขื ืืื ืึท ืคืืจืืื ืื ืคืขืื; ืื VM Network ืืฉืขืงืงืืึธืงืก, ืืืึธืก ืึทืืึทืื ืืืฉืื ืขื ืฆื ื ืืฆื ืืขื ื ืขืฅ, ืืื ืขื ืืืืึทืื, ืึธืืขืจ ืฆื ืคืึทืจืืื ืื ืื ืงืืืืื ืืืื ืืืื ืขื ืืืืึทืื. ืืขืื ืืืืึทื ืืึทืืื ื, ืึทืจืืึทื ืื VLAN ื ืืืขืจ ืืื ืืื OK.
ืืืฆื ืืืจ ืืึทืจืคึฟื ืฆื ืืืื ืฆื ืงืึธืืคึผืืืืข ืืึธืกืฅ -> ืืึธืกืฅ -> kvmNN -> ื ืขืืืืึธืจืง ืื ืืขืจืคืืืกืื -> ืกืขืืึทืคึผ ืืึธืกื ื ืขืืืืึธืจืงืก. ืฉืืขืคึผื ืื ืฆืืืขืืืืื ื ืขืฅ ืคืื ืื ืจืขืื ืืืึทื ืคืื ืื ืกืึทืกืืื ื ืืึทืืืฉืืงืึทื ื ืขืืืืึธืจืงืก ืฆื ืื ืืื ืงืก ืืื ืึทืกืืื ื ืืึทืืืฉืืงืึทื ื ืขืืืืึธืจืงืก:
ืจืืืก. 4 - ืืืืืขืจ ืึทืืื ื ืึท ื ืขืฅ.
ืจืืืก. 5 - ื ืึธื ืึทืืื ื ืึท ื ืขืฅ.
ืฆื ืคืึทืจืืื ืื ืงืืืคื ื ืขืืืืึธืจืงืก ืฆื ืึท ืืึทืืขืืึธืก ืืื ืคืึทืจื ืขื, ืขืก ืืื ืืึทืงืืืขื ืฆื ืืึทืฉืืืืขื ืึท ืคืืจืืข (s) ืฆื ืืื ืืืขื ืงืจืืืืืื ื ื ืขืืืืึธืจืงืก, ืืื ืืืืื ื ืขืืืืึธืจืงืก ืืืจื ืืึทืืขืืก.
ื ืึธื ืื ื ืขืฅ ืืื ืืืฉืืคื, ืื ืืื ืืช ืืืขืื ืืืื ืืื ืื ื ืื-ืึธืคึผืขืจืึทืืืืืข ืฉืืึทื ืืื ืื ื ืขืฅ ืืื ืืืกืืฃ ืฆื ืึทืืข ื ืึธืืื ืืื ืืขื ืงื ืืื. ืืขื ืึธืคึผืคืืจืื ื ืืื ืืขืคึฟืืจื ืืืจื ืื ืจืขืงืืืืจืข ืึทืืข ืคืึธื ืืืืฃ ืื ืงื ืืื ืงืืืืื ืืืขื ืงืจืืืืืื ื ืึท ื ืืึทืข ื ืขืฅ. ืืื ืืขื ืคืึทื ืืืขื ืื ื ืขืฅ ืืื ื ืื ืืืจืฃ ืืืืฃ ืึทืืข ื ืึธืืื ืคืื ืืขื ืงื ืืื, ืืขื ืคืึธื ืงืขื ืขื ืืืื ืคืึทืจืงืจืืคึผืื, ืืื ืืืขื ืื ื ืขืฅ ืืื ืืืกืืฃ ืฆื ืึท ืืึทืืขืืึธืก, ืขืก ืืืขื ืืืื ืืืืฃ ืื ืจืขืื ืืื ืื ื ืื ืคืืจืืื ืื ืึธืคึผืืืืืื ื ืืื ืืืจ ืงืขื ืขื ืงืืืึทืื ืฆื ืฆื ืคืึทืจืืื ืื ืขืก ืฆื ืึท ืกืคึผืขืฆืืคืืฉ ืืึทืืขืืึธืก.
ืจืืืก. 6 - ืืืืกืงืืืึทืื ืึท ื ืขืฅ ืคืึธืืขืจืื ื ืึทืืจืืืืื.
HPE ืกืคึผืขืฆืืคืืฉ
ืึผืืขื ืึทืืข ืืึทื ืืึทืคืึทืงืืฉืขืจืขืจื ืืึธืื ืืืฉืืจืื ืืืึธืก ืคึฟืึทืจืืขืกืขืจื ืื ืืกืึทืืืืืื ืคืื ืืืืขืจ ืคึผืจืึธืืืงืื. ื ืืฆื HPE ืืื ืึท ืืืืฉืคึผืื, AMS (ืึทืืขื ืืืขืกืก ืืึทื ืึทืืขืืขื ื ืกืขืจืืืืก, amsd ืคึฟืึทืจ iLO5, hp-ams ืคึฟืึทืจ iLO4) ืืื SSA (ืกืืึทืจื ืกืืึธืจืืืืฉ ืึทืืืื ืืกืืจืึทืืึธืจ, ืืจืืขืื ืืื ืึท ืืืกืง ืงืึธื ืืจืึธืืืขืจ), ืืื"ื ื.
ืงืึทื ืขืงืืื ื ืื HPE ืจืืคึผืึทืืึทืืึธืจื
ืืืจ ืึทืจืืึทื ืคืืจ ืืขื ืฉืืืกื ืืื ืคืึทืจืืื ืื ืื HPE ืจืืคึผืึทืืึทืืึธืจืื:
$ sudo rpm --import https://downloads.linux.hpe.com/SDR/hpePublicKey2048_key1.pub
$ sudo vim /etc/yum.repos.d/mcp.repo
ืื ืคืืืืขื ืืข ืืื ืืึทืื:
[mcp]
name=Management Component Pack
baseurl=http://downloads.linux.hpe.com/repo/mcp/centos/$releasever/$basearch/current/
enabled=1
gpgkey=file:///etc/pki/rpm-gpg/GPG-KEY-mcp
[spp]
name=Service Pack for ProLiant
baseurl=http://downloads.linux.hpe.com/SDR/repo/spp/RHEL/$releasever/$basearch/current/
enabled=1
gpgkey=file:///etc/pki/rpm-gpg/GPG-KEY-mcp
ืืขื ืจืืคึผืึทืืึทืืึธืจื ืืื ืืึทืื ืืื ืคึผืขืงื ืืื ืคึฟืึธืจืืึทืฆืืข (ืคึฟืึทืจ ืืขืจืืึธื ืขื):
$ sudo yum --disablerepo="*" --enablerepo="mcp" list available
$ yum info amsd
ืื ืกืืึทืืืจืื ื ืืื ืงืึทืืขืจ:
$ sudo yum install amsd ssacli
$ sudo systemctl start amsd
ืึท ืืืึทืฉืคึผืื ืคืื ืึท ื ืืฆื ืคึฟืึทืจ ืืจืืขืื ืืื ืึท ืืืกืง ืงืึธื ืืจืึธืืืขืจ
ืึทื ืก ืึทืืข ืคึฟืึทืจ ืืืฆื. ืืื ืื ืคืืืืขื ืืข ืึทืจืืืงืืขื ืืื ืคึผืืึทื ืฆื ืจืขืื ืืืขืื ืขืืืขืืข ืืงืขืจืืืง ืึทืคึผืขืจืืืฉืึทื ื ืืื ืึทืคึผืืึทืงืืืฉืึทื ื. ืคึฟืึทืจ ืืืึทืฉืคึผืื, ืืื ืฆื ืืึทืื VDI ืืื oVirt.
ืืงืืจ: www.habr.com