Ukukhishwa kwe-Proxmox VE 7.0, ikhithi yokusabalalisa yokuhlela umsebenzi wamaseva abonakalayo

Ukukhishwa kwe-Proxmox Virtual Environment 7.0 kushicilelwe, ukusatshalaliswa kwe-Linux okukhethekile okusekelwe ku-Debian GNU/Linux, okuhloswe ngayo ukufaka nokugcina amaseva abonakalayo kusetshenziswa i-LXC ne-KVM, futhi ekwazi ukusebenza njengemiselela yemikhiqizo efana ne-VMware vSphere, i-Microsoft Hyper. -V kanye ne-Citrix Hypervisor. Usayizi wesithombe sokufakwa kwe-iso ngu-1 GB.

I-Proxmox VE ihlinzeka ngezindlela zokusebenzisa isistimu yeseva ye-turnkey, esekelwe kuwebhu, yezinga lezimboni eklanyelwe ukuphatha amakhulu noma izinkulungwane zemishini ebonakalayo. Ukusabalalisa kunamathuluzi akhelwe ngaphakathi okuhlela izipele zezindawo ezibonakalayo kanye nosekelo lokuhlanganisa olutholakala ngaphandle kwebhokisi, okuhlanganisa ikhono lokuthutha izindawo ezibonakalayo ukusuka endaweni eyodwa kuya kwenye ngaphandle kokumisa umsebenzi. Phakathi kwezici zesixhumi esibonakalayo sewebhu: ukusekelwa kwekhonsoli ye-VNC evikelekile; lawula ukufinyelela kuzo zonke izinto ezitholakalayo (i-VM, isitoreji, ama-node, njll.) ngokusekelwe ezindimeni; ukusekelwa kwezindlela ezihlukahlukene zokuqinisekisa (MS ADS, LDAP, Linux PAM, Proxmox VE ubuqiniso).

Ekukhishweni okusha:

  • Ukushintshela kusisekelo sephakheji ye-Debian 11 (Bullseye) kuqediwe. I-Linux kernel ibuyekezelwe enguqulweni engu-5.11. Izinguqulo ezibuyekeziwe ze-LXC 4.0, i-QEMU 6.0 (esekelwa i-io_uring i-asynchronous I/O interface yezivakashi) kanye ne-OpenZFS 2.0.4.
  • Ukukhishwa okuzenzakalelayo yi-Ceph 16.2 (ukusekelwa kwe-Ceph 15.2 kugcinwa njengenketho). Kumaqoqo amasha, imojuli yebhalansi inikwa amandla ngokuzenzakalela ukuze kusatshalaliswe kangcono amaqembu kuyo yonke i-OSD.
  • Usekelo olungeziwe lwesistimu yefayela ye-Btrfs, okuhlanganisa nokuhlukaniswa kwezimpande. Isekela ukusetshenziswa kwezifinyezo zezingxenye ezingaphansi, i-RAID eyakhelwe ngaphakathi, nokuqinisekiswa kokulunga kwedatha nemethadatha kusetshenziswa amasheke.
  • Iphaneli "yamakhosombe" yengezwe kusixhumi esibonakalayo sewebhu, okwenza kube lula ukuphatha izinqolobane zephakeji ye-APT, imininingwane mayelana nayo manje esiqoqwe endaweni eyodwa (isibonelo, ungazama ukukhishwa kwe-Ceph okusha ngokwenza kusebenze inqolobane yokuhlola, bese uvala ukuze ibuyele emaphaketheni azinzile). Iphaneli yamanothi yengeze ikhono lokusebenzisa umaka we-Markdown kumanothi futhi ilibonise kusixhumi esibonakalayo ngefomu le-HTML. Umsebenzi wokuhlanza idiski nge-GUI uhlongoziwe. Kunikezwe ukusekelwa kwamathokheni (afana ne-YubiKey) njengokhiye be-SSH lapho udala iziqukathi nalapho ulungiselela izithombe nge-cloud-init.
  • Kungezwe usekelo lwe-Single Sign-On (SSO) lokuhlela indawo eyodwa yokungena kusetshenziswa i-OpenID Connect.
  • Indawo yesifaki iklanywe kabusha, lapho kusetshenziswa i-switch_root esikhundleni se-chroot, ukutholwa okuzenzakalelayo kwezikrini ze-HiDPI zokukhetha usayizi wefonti kunikezwe, futhi ukutholwa kwezithombe ze-iso kuye kwathuthukiswa. I-algorithm ye-zstd isetshenziselwa ukucindezela izithombe ze-initrd ne-squashfs.
  • Kwengezwe i-plugin ehlukile ye-ACME (esetshenziselwa ukuthola izitifiketi ze-Let's Encrypt) ngosekelo oluthuthukisiwe lwezindawo ezinoxhumano nge-IPv4 ne-IPv6.
  • Ekufakeni okusha, imenenja yokuxhumana kwenethiwekhi i-ifupdown2 isetshenziswa ngokuzenzakalelayo.
  • Ukufakwa kweseva ye-NTP kusebenzisa i-chrony esikhundleni se-systemd-timesyncd.

Source: opennet.ru

Engeza amazwana