ã¿ã¹ã¯ã¯ãæå°ã®VPSãªãœãŒã¹ã«ããã€ãã®ã¢ã³ããŒãããããµã€ãã®ãã¹ãã£ã³ã°ãå±éããããšã§ãã å°æ¥çã«æå°éã®åé¡ã§ãããè¿
éãã€äŸ¿å©ã«è¡ããããŒã¯è² è·ã«é¥ããªãããã«ããã
åºæ¬ååïŒ
1. OS-Centos-6 86_x64ãå®å®æ§ãããã䟿å©ã§ãæŽæ°ãç°¡åã§ãã
2.èªå·±çµç¹åãœãããŠã§ã¢ã¯ãããŸããã ãããŠåœŒããèšãããã«ããmake && make installã³ãã³ãã§ãã©ããªãã£ã¹ããªãã¥ãŒã·ã§ã³ãSlackwareã«å€ãããŸããã
çŸæç¹ã§ã¯ããã¹ãã£ã³ã°ãããã€ããŒflynet.proïŒ256MB RAMïŒã§v256ã¿ãªããã©ã³ã䜿çšããŠãããã»ãšãã©ã®äœæ¥ãæåŸ
ããªããããã»ãšãã©ã®RAMãåç
§ããŸãããäžè¬çã«ããœãªã¥ãŒã·ã§ã³ã¯å®è³ªçã«ãã¹ãŠã®ã¿ãªããã©ã³ã«ç°¡åã«ç§»æ€ã§ããŸãããŸããŸãªãã¹ãã£ã³ã°ãããã€ããŒã
ãããŠããäžã€ã®æç¢ºå-ãã¹ãã£ã³ã°ã¯ãããªãèªèº«ã®ããã«ãè¡ãããŸãã èŠç¥ãã¬äººã«ãµã€ã管çãžã®ã¢ã¯ã»ã¹ãèš±å¯ããå Žåã«èæ
®ãã¹ãååãªèª¬æãããç¬éã¯ãããŸããã
è¡ãã
1.ã¢ããããŒãã確èªããŸãã
ãã¹ãã£ã³ã°ãããã€ããŒã®ã€ã³ã¹ããŒã«ã€ã¡ãŒãžã¯ãææ°ã®ãã®ã§ã¯ãªãå ŽåããããŸãã
[root@test ~]# yum update
æŽæ°ãããã®ããããŸã-æŽæ°ããŸãã ããããç§ãã¡ã¯å¹žãã§ãã
2.äžè¶³ããŠãããœãããŠã§ã¢ãã€ã³ã¹ããŒã«ããEPELãªããžããªïŒhttp://fedoraproject.org/wiki/EPELïŒãæ¥ç¶ããŸãã
[root@test ~]# rpm -ihv download.fedora.redhat.com/pub/epel/6/x86_64/epel-release-6-5.noarch.rpm
3.å¿
èŠãªãœãããŠã§ã¢ãå
¥ããŸã
[root@test ~]# yum install httpd mysql-server php vsftpd mc phpMyAdmin php-eaccelerator sysstat crontabs tmpwatch
ãœãããŠã§ã¢ã«ã€ããŠç°¡åã«ïŒ
httpd-Centos-6ã®ApacheæšæºããŒãžã§ã³-2.2.15
mysql-server-mysql 5.1.52
php-PHP 5.3.2
vsftpd-éåžžã«äŸ¿å©ãªFTPãµãŒããŒvsftpd 2.2.2
mc-ã³ãã³ãã©ã€ã³ãããmcã®æ¹ã䟿å©ãªå ŽåããããŸãã
phpMyAdmin-mcã«äŒŒãŠããŸãã phpMyAdminã§mysqlããŒã¿ããŒã¹ã管çããæ¹ã䟿å©ã§ãã
php-eaccelerator-PHPã®ã¢ã¯ã»ã©ã¬ãŒã¿ã ã¹ã¯ãªããã®å®è¡é床ãèããåäžããããã»ããµãŒã®è² è·ã軜æžãããŸãã ã¯ãããããŠèšå¿µåãšããŠã
sysstat-ã·ã¹ãã ã®ç¶æ
ã確èªãããå Žåã
crontabs-ã¹ã±ãžã¥ãŒã«ãããã¿ã¹ã¯çšã
tmpwatchã¯ãå€ããã¡ã€ã«ãåé€ããããã®ãŠãŒãã£ãªãã£ã§ãã
å®éãããã«ããã€ãã®ããã±ãŒãžãã€ã³ã¹ããŒã«ãããŸããã€ã³ã¹ããŒã«ãèŠæ±ããããã±ãŒãžã«ã¯ããããã®æ©èœã«å¿
èŠãªãã®ããã¹ãŠè¿œå ãããŸãã
çµæã¯æ¬¡ã®ãšããã§ãã
Install 44 Package(s)
Upgrade 0 Package(s)
Total download size: 37 M
Installed size: 118 M
4. freeã³ãã³ãã䜿çšããŠãã¹ã¯ããããããã©ããã確èªãããªãå Žåã¯äœæããŠæ¥ç¶ããŸãã ããå Žåãç§ãã¡ã¯åãã§ãã®é
ç®ãã¹ãããããŸãã
ããã§éèŠãªç¹-ã¹ã¯ããã®ç©æ¥µçãªäœ¿çš-ã¯éåžžã«æªãã§ãã ã¢ã¯ãã£ããªã¹ã¯ãããããå Žåãäœããæé©åãŸãã¯ããªãã³ã°ããå¿
èŠããããŸãã æé©åããŠåæžã§ããªãå Žåã¯ãããé«äŸ¡ãªæéãã©ã³ã«åãæ¿ããå¿
èŠããããŸãã ãŸãããã¹ãã£ã³ã°ãããã€ããŒãã¹ã¯ããã®éå°ãªäœ¿çšã«ãã£ãŠæ°åã害ããå¯èœæ§ãããããšãèæ
®ãã䟡å€ããããŸãã
ããããã¹ã¯ããããªããã°ããããããŸãè¯ããããŸãã-ãªãŒã ãã©ãŒã¯æãããããšã§ãã ããã¯äžæ³šæã«mysqldã匷å¶çµäºããå¯èœæ§ããããåã«ãµã€ãã®é床ãèœãšã代ããã«å®å
šã«åãã€ãã§ãããã
泚-䜿çšå¯èœãªRAMãè¶
ããã¹ã¯ãããè¡ãå¿
èŠã¯ãããŸããã 圌ããã®å©çã¯ãããŸãããã圌ã¯å Žæãé£ã¹ãŸãã
次ã®ããã«ã¹ã¯ãããäœæããŸãã
[root@test /]# dd if=/dev/zero of=/swap bs=1M count=256
[root@test /]# mkswap /swap
ã€ãªã
[root@test /]# swapon /swap
æ¥ç¶ããããã«ããã®ã³ãã³ãã/etc/rc.localã«èªåçã«æžã蟌ã¿ãŸã
topãŸãã¯freeã³ãã³ãã䜿çšããŠãã¹ã¯ããã®å¯çšæ§ãšããžãŒç¶æ
ã確èªã§ããŸãã
5.ããŒã¢ã³ããªã³ã«ããŠéå§ãã
[root@test /]# chkconfig httpd on
[root@test /]# chkconfig mysqld on
[root@test /]# chkconfig crond on
[root@test /]# service httpd restart
[root@test /]# service mysqld restart
[root@test /]# service crond restart
6.ãµã€ãã®ãŠãŒã¶ãŒãäœæããŸãã ãŠãŒã¶ãŒåã¯ãµã€ãã®ãã¡ã€ã³ã«äŒŒãŠããããšã奜ã¿ãŸãã
[root@test /]# adduser testsite.ru
[root@test /]# adduser mysite.ru
[root@test /]# adduser cfg.testsite.ru
次ã«ã远å ã®ãŠãŒã¶ãŒãã£ã¬ã¯ããªãäœæããŸãã htmlïŒãµã€ââãã®ã¡ã€ã³ã³ã³ãã³ãïŒãšããã®ãµã€ãã®ãã°ãæžã蟌ãŸããæš©éãèšå®ãããã°ã æš©éãèšå®ããŸãïŒãŠãŒã¶ãŒ-ãã«ã¢ã¯ã»ã¹ãApacheã°ã«ãŒãã®èªã¿åããšãã£ã¬ã¯ããªã®ãªã¹ããæ®ã-ã€ããžã¯ã
æš©éã¯æåã§èšå®ããããå°ããªã¹ã¯ãªããã䜿çšã§ããŸãã
cd /home
for dir in `ls -1 `; do
mkdir /home/$dir/log
mkdir /home/$dir/html
chown -R $dir:apache $dir
chmod ug+rX $dir
done;
7. WebãµãŒããŒãæ§æããŸãã /etc/httpd/conf/httpd.confãç·šéããŸã
æ¬åœã«å¿
èŠãªå€æŽã®ãã¡ãpreforkã¢ãžã¥ãŒã«ãæ§æããŠãæåã«æ¶è²»ããã¡ã¢ãªãæžããã飿¬²ãå¶éããŸãã
å®éã«ã¯ãApacheã¯æåã«æå€§256åã®ã¯ãŒã¯ããã»ã¹ãå®è¡ããããã«æ§æãããŠããŸãããã1ã€ã®ã¯ãŒã¯ããã»ã¹ã¯20ã40 MBïŒ256 * 20 = 5 GBïŒãç°¡åã«æ¶è²»ããŸãããããã¯ç¹ã«256 MBã®RAMãããªãæ§ãããªVPSã§åé¡ãåŒãèµ·ããå¯èœæ§ããããŸã
ãããã£ãŠã䜿çšå¯èœãªRAMã«åºã¥ããŠããã®æ°ãé©åãªæ°ã«å¶éããŸãã ããšãã°ãå¹³åãµã€ãºã30 MBã®5ã€ã®Apacheããã»ã¹ã«ã¯çŽ150 MBãããããŸãããããã¯ãã§ã«èããããŸãã
ããã¯ïŒ
<IfModule prefork.c>
StartServers 8
MinSpareServers 5
MaxSpareServers 20
ServerLimit 256
MaxClients 256
MaxRequestsPerChild 4000
次ã®ããã«ãªããŸããïŒ
<IfModule prefork.c>
StartServers 2
MinSpareServers 2
MaxSpareServers 3
ServerLimit 5
MaxClients 5
MaxRequestsPerChild 1000
ãã®ãããªèšå®ã§ã¯ãApacheãã¡ãžã£ãŒãè¶
ããŠæ¡åŒµãããã¹ãŠã®RAMãæ¶è²»ããããšã¯ã§ããŸããã å®éã®è² è·ã«ãã£ãŠã¯ããã©ã¡ãŒã¿ãä¿®æ£ãã䟡å€ããããŸãã
ããŠãè¡ã®ã³ã¡ã³ããå€ããŸã
NameVirtualHost *:80
åãIPã¢ãã¬ã¹ã«å€ãã®ãµã€ããé
眮ããããã
次ã«ã/ etc / httpd / conf.d /ãã£ã¬ã¯ããªã«ç§»åãããµã€ããæ§æããŸãã
ããã§ã€ã³ããã¯ã¹ãç¡å¹ã«ãã代ããã«Apache 2ãã¹ãããŒãžããŒãžã衚瀺ããwelcome.confãåé€ã§ããŸãã
ãã®ãã£ã¬ã¯ããªå
ã®ä»®æ³ãã¹ãèšå®ã¯ãã¢ã«ãã¡ãããé ã«é çªã«é©çšãããããšã«æ³šæããŠãã ããã
ãŠãŒã¶ãŒãããããã®ãµã€ãã«IPã¢ãã¬ã¹ã§ã¢ã¯ã»ã¹ããå®å
šã«ç°ãªãïŒãªã¹ãã®æåã«è¡šç€ºãããïŒããã«ããªãããã«ãconf.dãã£ã¬ã¯ããªããããšãã°000-default.confãªã©ã®ååã®ãã¡ã€ã«ã«é
眮ããå¿
èŠããããŸãã
<VirtualHost *:80>
ServerName localhost.local
DocumentRoot "/var/www/html"
ãã£ã¬ã¯ããª/ var / www / html / index.htmlãã¡ã€ã«ã«åžæãå
¥ããŸãã
次ã«ãä»®æ³ãã¹ãããšã«ãããããæ¬¡ã®ãã³ãã¬ãŒãã«åŸã£ãŠæ§æãã¡ã€ã«ãäœæããŸãã
<VirtualHost *:80>
ServerName testsite.ru
ServerAlias www.testsite.ru
ServerAdmin webmaster@testsite.ru
ErrorLog /home/testsite.ru/log/error.log
CustomLog /home/testsite.ru/log/access.log combined
DocumentRoot /home/testsite.ru/html/
<Directory "/home/testsite.ru/html">
Order allow,deny
Allow from all
ãããã®ãã¡ã€ã«ã§ã¯ã奜ã¿ã«å¿ããŠãã¢ãžã¥ãŒã«ã®åã
ã®èšå®ã远å ã§ããŸãã
Apacheãåèµ·åãããã¹ãŠãæ©èœãããã©ããã確èªããŸãã
[root@test /]# service httpd restart
Apacheã¯æ£åžžã«èµ·åããã¯ãã§ãã ãã°ãµã€ãã®ãã£ã¬ã¯ããªã«ã2ã€ã®ãã°ãã¡ã€ã«ãäœæããå¿
èŠããããŸãã
IPã¢ãã¬ã¹ã§ãµãŒããŒã«ã¢ã¯ã»ã¹ããå Žåã/ var / www / html /ã«é
眮ãããã¡ã€ã«ã衚瀺ããããµã€ãåã§ã¢ã¯ã»ã¹ããå Žåãhtmlãã£ã¬ã¯ããªã®å
容ïŒã»ãšãã©ã®å Žåã¯ç©ºïŒãšã察å¿ãããµã€ãã®access.logãã¡ã€ã«ã®ãšã³ããªã衚瀺ãããŸãã
8. mysqlãæ§æããŸãã ãŸãããã¹ãããŒã¿ããŒã¹ãåé€ããmysqlã®ã«ãŒããã¹ã¯ãŒããèšå®ããŸãã
[root@test /]# mysql
mysql> DROP DATABASE test;
mysql> USE mysql;
mysql> UPDATE user SET Password=PASSWORD('MyMysqlPassword') WHERE user='root';
mysql> FLUSH PRIVILEGES;
mysql> quit
MySqlã®åé¡ã¯ãApacheã®å Žåãšã»ãŒåãã§ã-VPSã§éåžžã«é«äŸ¡ãªã¡ã¢ãªèŠä»¶ã
ãµãŒããŒã䜿çšããSQLã¡ã¢ãªã®éãæžããã«ã¯ã次ã®ããã«/etc/my.cnfãç·šéããŸãã
[mysqld]ã»ã¯ã·ã§ã³ã«æ¬¡ã远å ããŸãã
key_buffer = 16M
max_allowed_packet = 10M
table_cache = 400
sort_buffer_size = 1M
read_buffer_size = 4M
read_rnd_buffer_size = 2M
net_buffer_length = 20K
thread_stack = 640K
tmp_table_size = 10M
query_cache_limit = 1M
query_cache_size = 32M
skip-locking
skip-innodb
skip-networking
ãã¡ã€ã«ã®æåŸã«æ¬¡ã®è¡ã远å ããŸãã
[mysqldump]
quick
max_allowed_packet = 16M
[mysql]
no-auto-rehash
[isamchk]
key_buffer = 8M
sort_buffer_size = 8M
[myisamchk]
key_buffer = 8M
sort_buffer_size = 8M
[mysqlhotcopy]
interactive-timeout
mysqldãåèµ·åããŠããã¹ãŠãæ£åžžã§ããããšã確èªããŸãã
[root@test ]# service mysqld restart
ãŸãããskip-networkingããªãã·ã§ã³ã䜿çšãããšãããŒã«ã«ãã·ã³ããã®ã¿ãœã±ãããä»ããŠãµãŒããŒã«ã¢ã¯ã»ã¹ã§ããããã«ãªããŸãã ãããã¯ãŒã¯ã¢ã¯ã»ã¹ãå¿
èŠãªå Žåããã®ãªãã·ã§ã³ãæå¹ã«ããå¿
èŠã¯ãããŸããã
ãã®ãããªèšå®ã«ãããmysqlããã»ã¹ã§äœ¿çšãããã¡ã¢ãªãæå°åãããã¢ã³ããŒãããããµã€ãã§æ£åžžã«åäœããŸãã ãããããã¡ãããmysqlã®çµ±èšã確èªããå¿
èŠããããå¿
èŠã«å¿ããŠãããã§ã®ããŒã¿å¶éãå¢ããå¿
èŠããããŸãã
mysqlã®ãããªã管çã¯ãphpMyAdminãä»ããŠè¡ãæ¹ã䟿å©ã§ãã
çŸåšã1ã€ã®èŠåããããŸã-ããã©ã«ãã§ã¯ãphpMyAdminã¯ãã¹ãŠã®ãµã€ãã®path / phpMyAdminã§å©çšå¯èœã§ãã
ãããåé¿ããããã«ã管ççšã®ç¹å¥ãªãµã€ãïŒcfg.testsite.ruãªã©ïŒãäœæããä»ã®ãµã€ããšåæ§ã«æ§æããŸãã
次ã«ã/ etc / httpd / conf.d / phpMyAdmin.confãã¡ã€ã«ã®å
容å
šäœããã®ãµã€ãã®æ§æã«è»¢éããphpMyAdmin.confãã¡ã€ã«èªäœãåé€ããããconf.dãã£ã¬ã¯ããªããã©ããã«è»¢éããŸãã
ãã®ãããªã¢ã¯ã·ã§ã³ã®åŸãphpMyAdminã¯path / phpMyAdmin /å°çšãµã€ãã§ã®ã¿å©çšå¯èœã«ãªããŸãã
ããŠããµã€ãæ§æãã¡ã€ã«ã«å
¥åã§ããããã«ã倿ŽããŸã
<Directory /usr/share/phpMyAdmin/>
Order Deny,Allow
Deny from All
Allow from 127.0.0.1
Allow from ::1
<ãã£ã¬ã¯ããª/ usr / share / phpMyAdmin / setup />
泚ææåŠãèš±å¯
ãã¹ãŠããæåŠ
127.0.0.1ããèš±å¯
ããèš±å¯:: 1
ã«
<Directory /usr/share/phpMyAdmin/>
Order Deny,Allow
Deny from All
Allow from 127.0.0.1
Allow from ...
Allow from ::1
<ãã£ã¬ã¯ããª/ usr / share / phpMyAdmin / setup />
泚ææåŠãèš±å¯
ãã¹ãŠããæåŠ
127.0.0.1ããèš±å¯
ã¡ãŒã«ã¢ãã¬ã¹ããèš±å¯ããŸãã
ããèš±å¯:: 1
ãã®åŸãphpMyAdminãIPã¢ãã¬ã¹ããå©çšå¯èœã«ãªããŸãã
èšå®ãããã¹ã¯ãŒãã䜿çšããŠãrootãŠãŒã¶ãŒãšããŠãã°ã€ã³ããŸãã
ãŠãŒã¶ãŒãäœæããã«ã¯ããç¹æš©ã-ãæ°ãããŠãŒã¶ãŒã®è¿œå ãã«é²ã¿ãŸã
ãŠãŒã¶ãŒåã¯ä»»æã§ããæ··ä¹±ãé¿ããããã«ãµã€ãåã䜿çšããããšã奜ã¿ãŸãã
ãã¹ãã¯ããŒã«ã«ã§ãïŒããã§ã¹ãã³ãããµã€ãã®ããã«ãããè¡ã£ãŠããŸããïŒïŒ
ãã¹ã¯ãŒã-çæã ïŒãã¹ã¯ãŒããå¿ããã«ã³ããŒããŠãã ããïŒ
ãã§ãã¯ããŒã¯ãä»ããŸã-ãååã«ãŠãŒã¶ãŒåã䜿çšããŠããŒã¿ããŒã¹ãäœæããããã«å®å
šãªæš©éãæäŸããŸãã
é©çšããŸãã
ãã®çµæãåãååã®ãŠãŒã¶ãŒã®ååããã¹ã¯ãŒããããã³éžæããããŒã¿ããŒã¹ãååŸããŸãã
9.å€ãã®å Žåãftpãä»ããŠãã¡ã€ã«ããã¹ãã£ã³ã°ã«ã¢ããããŒããããšäŸ¿å©ã§ãã ãã®ããã«vsftpdãã€ã³ã¹ããŒã«ããŸãã
ãã®æ§æãç·šé/etc/vsftpd/vsftpd.conf
å¿åãã°ã€ã³ããªãã«ãã倿ŽããŸã
anonymous_enable=YES
ã«
anonymous_enable=NO
ã³ã¡ã³ãè§£é€
chroot_local_user=YES
ç¹å®ã®ãµã€ãã®ftpã«ã¢ã¯ã»ã¹ã§ããããã«ããã«ã¯ã察å¿ãããŠãŒã¶ãŒããã¹ã¯ãŒããèšå®ããå¿
èŠããããŸã
[root@test /]# passwd testsite.ru
ããã©ã«ãã§ã¯ããã¹ã¯ãŒããæã€ãã®ãŠãŒã¶ãŒã¯SSHçµç±ã§ãã°ã€ã³ã§ããããšãå¿ããªãã§ãã ããã ãã®æ©èœãç¡å¹ã«ããæãç°¡åãªæ¹æ³ã¯ããŠãŒã¶ãŒã®ã·ã§ã«ã倿Žããããšã§ã
[root@test etc]# chsh -s /sbin/nologin testsite.ru
vsftpdããªã³ã«ããŠå®è¡ãã
[root@test /]# chkconfig vsftpd on
[root@test /]# service vsftpd start
ãã¹ãŠãæ©èœãããã©ããã確èªããŸãã
ãããŠæåŸã«ãéåžžã«åçŽãªãéçšããã¯ã¢ãããã ãããã¯ã¢ããã¯ããŸãèµ·ãããªãããšããååã«ãããšã
ããæ£ç¢ºãªãã®ã䜿çšããããšããå§ãããŸãããå®å
šã«äžåšã®å Žåããããããã¯ã¢ãããäžè¯ã§ããæ¹ãåªããŠããŸãã
ãã®ãããªããã¯ã¢ããã¯ããã¹ãã£ã³ã°ãããã€ããŒã§ã®ä»®æ³ãã·ã³ã®ãã«ããã¯ã¢ãããžã®é©åãªè¿œå ãšããŠæ©èœããŸãã ããããæ±ºããŠããã眮ãæãããã®ã§ã¯ãããŸããã
ãµã€ããšããŒã¿ããŒã¹ã®ã³ã³ãã³ããããã³/ etc /ãã£ã¬ã¯ããªã®èšå®ãããã¯ã¢ããããŸãã
ãã£ã¬ã¯ããª/ backup /ãäœæãããã®æš©å©ãã700ãã«èšå®ããŸã
[root@test /]# mkdir /backup/
[root@test /]# chmod 700 /backup/
/etc/cron.daily/ãã£ã¬ã¯ããªã§ãbackup.shãã¡ã€ã«ãäœæããã700ãæš©éãèšå®ããŸãã
[root@test /]# touch /etc/cron.daily/backup.sh
[root@test /]# chmod 700 /etc/cron.daily/backup.sh
ãã¡ã€ã«ã®å
å®¹ã¯æ¬¡ã®ãšããã§ãã
#!/bin/sh
# html
tar -cf - /home/*/html/ | gzip > /backup/sites-`date +%Y-%m-%d`.tar.gz
#
mysqldump -u root --password=MyMysqlPassword --all-databases | gzip > /backup/mysql-`date +%Y-%m-%d`.dump.gz
#
tar -cf - /etc/ | gzip > /backup/etc-`date +%Y-%m-%d`.tar.gz
# 7
tmpwatch -t -m 7d /backup/
ååãšããŠã1ã€ã®ããŒãã ãã§ããã¯ã¢ããããã®ã§ã¯ãªãããã¹ãŠãåå¥ã«ããã¯ã¢ããããæ¹ãããå ŽåããããŸãããäœãã®ããã¯ã¢ãããæ§æããããšãå¿ããŠãå¿
èŠãªãšãã«åŸæããããšãå¯èœã«ãªããŸãã
ãŸãããŸãã¯ãåå¥ã«ãããã¯ã¢ãããªãã·ã§ã³ã§ã¯ããµã€ãã®ãŠãŒã¶ãŒåãšããŒã¿ããŒã¹åãäžèŽããå¿
èŠããããŸãã
#!/bin/sh
for dir in `ls -1 /home/ `; do
tar -cf - /home/$dir/html/ | gzip > /backup/sites-$dir-`date +%Y-%m-%d`.tar.gz
mysqldump -u root --password=MyMysqlPassword $dir | gzip > /backup/mysql-$dir-`date +%Y-%m-%d`.dump.gz
done;
#
tar -cf - /etc/ | gzip > /backup/etc-`date +%Y-%m-%d`.tar.gz
# 7
tmpwatch -t -m 7d /backup/
10.ã¢ããããŒãã
æã
ã·ã¹ãã ãæŽæ°ããããšãå¿ããªãã§ãã ããã
[root@test ~]# yum update
ãœãããŠã§ã¢ã«é¢ããRHEL / Centosã®ããªã·ãŒã®ãããã§ãã¢ããã°ã¬ãŒãåŸã®ãœãããŠã§ã¢ããŒãžã§ã³ã¯åããŸãŸã§ãããæ§æå
ã§äœããã»ãšãã©å€æŽãããŠããªããšããäºå®ã«ãããäžæ³šæã§ãµãŒããŒãé
眮ããŸãã
ãã®ã¢ãããŒãã®çå®ããã€ãã¹ã§ããCentos-6ã§ã¯ã3幎éã§çŸåšãšåããœãããŠã§ã¢ããŒãžã§ã³ãæäŸãããŸãã ããããç®æšãå®å®æ§ã§ããã°ãããã¯ç§ãã¡ã«åã£ãŠããŸãã
11.ãã¹ãã
èšå®åŸã«ãµã€ãããã¹ãããããšã匷ããå§ãããŸãã
ãã¹ãã®æåã®ãã€ã³ãã¯ããµãŒããŒãåèµ·åããå¿
èŠãªãã¹ãŠã®ããŒã¢ã³ãèµ·åãããã¹ãŠãæåŸ
ã©ããã«æ©èœããããšã確èªããããšã§ãã éåžžã皌åæéã®æ°åã远ããããã®ã§ã¯ãªããèªåçã«èµ·åãããµãŒããŒãœãããŠã§ã¢ã®ããŒãžã§ã³ãã€ã³ã¹ããŒã«ãŸãã¯å€æŽããåŸã«åèµ·åããããšããå§ãããŸãã
ãã¹ãã£ã³ã°æ¥è
ã«åé¡ããããä»®æ³ãã·ã³ãåèµ·åããçµæããã®ãµã€ãããã§ã«åæ¥çšŒåããŠããããšã確èªããããããApacheãã¹ã±ãžã¥ãŒã«ãããç¬èªã®åèµ·ååŸã«èªåå®è¡ãéå§ããªãããšã確èªããæ¹ãé©åã§ãã
次ã¯ãabãŠãŒãã£ãªãã£ïŒApache HTTPãµãŒããŒãã³ãããŒã¯ããŒã«ïŒã䜿çšããè² è·ãã¹ãã§ãã
ãã®ãã¹ãã§ã¯ãè² è·ã®ããã£ããµãŒããŒã®åäœã»ã©ããªãŠã ã®æ°ã«ã¯é¢å¿ããããŸããã ããã¯æ»ã«ãããŠããããã»ã¹ãšã¢ã¯ãã£ããªã¹ã¯ãããæããªãã¯ãã§ãã
ãã¹ããè¡ãã«ã¯ã皌åç¶æ
ã®ãã®ãµãŒããŒã§ãã¹ããããŠãããµã€ããå¿
èŠã§ãã ãããŠããã®ãµã€ãã®ãå
žåçãªãããŒãžã ãŸãããŸãã¯å
žåçãªãã®ã§ã¯ãªããæãé£ãããã®ã䜿çšã§ããŸãã
ããšãã°ãæ°ããã€ã³ã¹ããŒã«ããDrupal 7.9ã§ãã¹ãããŠããŸã
ããŸããŸãªã³ãã³ãã©ã€ã³abãããå¿
èŠãªãã©ã¡ãŒã¿ãŒã¯2ã€ã ãã§ã-n-httpèŠæ±ã®æ°-c-åæèŠæ±ïŒã¹ã¬ããïŒã®æ°
topã䜿çšãã2çªç®ã®sshã»ãã·ã§ã³ã§ã®ãã¹ãäžã«ããµãŒããŒã®åäœã芳å¯ããŸãã
2ã¹ã¬ããã§100ãªã¯ãšã¹ãã
[root@test ~]# ab -n 100 -c 2 testsite.ru
abã®åºåããããµãŒããŒããã©ãŒãã³ã¹ã®äžè¬çãªæŠå¿µã瀺ãã1ç§ãããã®ãªã¯ãšã¹ãæ°ããããªã¯ãšã¹ããããã®æéããã倱æãããªã¯ãšã¹ããã«ç¹ã«èå³ããããŸãã
Failed requests: 0
Requests per second: 6.20 [#/sec] (mean)
Time per request: 322.788 [ms] (mean)
ãµãŒããŒã¯1ç§ããã1ãããŒã®ãªã¯ãšã¹ãã§6ãåŠçãã1ããŒãžã®çæã«322ããªç§ãè²»ãããŠããããšãããããŸãã
äžçªäžã®åºåãããã¡ã¢ãªã®å²ãåœãŠãšããã»ããµã®ããŒããè峿·±ãã§ãã
Tasks: 62 total, 3 running, 59 sleeping, 0 stopped, 0 zombie
Cpu(s): 19.9%us, 5.3%sy, 0.0%ni, 0.0%id, 0.0%wa, 0.0%hi, 0.4%si, 74.5%st
Mem: 244856k total, 151624k used, 93232k free, 3752k buffers
Swap: 262136k total, 0k used, 262136k free, 76604k cached
ã¹ã¯ããïŒ0k䜿çš-ãã£ããè¯ãã
93232kã®ç©ºã+ 76604kã®ãã£ãã·ã¥ã¯ãå®éã«ã¯170 MBã®ç©ºãã¡ã¢ãªã§ãã
100ãªã¯ãšã¹ã5ã¹ã¬ããã
[root@test ~]# ab -n 100 -c 5 testsite.ru
Failed requests: 0
Requests per second: 6.21 [#/sec] (mean)
Time per request: 804.513 [ms] (mean)
Tasks: 63 total, 5 running, 58 sleeping, 0 stopped, 0 zombie
Cpu(s): 17.5%us, 6.2%sy, 0.0%ni, 0.0%id, 0.0%wa, 0.0%hi, 0.0%si, 76.3%st
Mem: 244856k total, 159756k used, 85100k free, 3812k buffers
Swap: 262136k total, 0k used, 262136k free, 76660k cached
1ç§ãããã®ãªã¯ãšã¹ãæ°ã¯åããŸãŸã§ããããçææéã¯2å以äžå¢å ããŸãã-ããã»ããµã«å°éããŸããã
ãããŠæåŸã«ãhabraeffectãŸãã¯äœãè¿ã:-)
[root@test ~]# ab -n 500 -c 50 testsite.ru
Failed requests: 0
Requests per second: 6.45 [#/sec] (mean)
Time per request: 7749.972 [ms] (mean)
Tasks: 63 total, 6 running, 57 sleeping, 0 stopped, 0 zombie
Cpu(s): 19.1%us, 5.3%sy, 0.0%ni, 0.0%id, 0.0%wa, 0.0%hi, 0.0%si, 75.6%st
Mem: 244856k total, 162740k used, 82116k free, 3884k buffers
Swap: 262136k total, 0k used, 262136k free, 76672k cached
ç¹°ãè¿ããŸããã1ç§ãããã®ãªã¯ãšã¹ãæ°ã¯æ¯èŒçå®å®ããŠããŸãããçææéã¯éåžžã«æ²ãããªããŸããã ãã ããåæã«ã倱æãããªã¯ãšã¹ãã¯ãŒãã§ãã ã€ãŸãããã£ããã§ããããã¹ãŠãæ©èœããŸãã
ããŠãã¡ã¢ãªã«ã€ããŠ-SwapïŒ0k usedã82116k freeã76672k cached-æ¶è²»éã¯ããã»ã©å¢ããŠããããååãšããŠããã€ãã®å¶éãå¢ããããšãã§ããŸãããçŸæç¹ã§ã¯ãµã€ãã³ã³ãã³ããäžè¶³ããŠããããããããè¡ãã¹ãã§ã¯ãªããšæããŸãã ããããåŸã§å®æãããµã€ãã§ãã¹ããå®è¡ãã䟡å€ããããçµæã«å¿ããŠããã§ã«èšå®ã調æŽããŠããŸãã
12. nginxãããã³ããšã³ããšããŠã€ã³ã¹ããŒã«ããŸãã
ãªããããå¿
èŠãªã®ã§ããã
äž»ãªåé¡ã¯ãApacheãçä¿¡æ¥ç¶ãåŠçããæ¹æ³ã§ãã çä¿¡æ¥ç¶ããšã«ãæ°ããããã»ã¹ãäœæãããããéå§ãããããã»ã¹ã®1ã€ãååŸããããµãŒãã¹ã®ããã«æ¥ç¶ã転éãããŸãã æ¥ç¶ãéãããããŸã§ããã®ããã»ã¹ã¯ããã ããæ±ããŸãã
ååãšããŠãå€ãã®RAMããã³/ãŸãã¯éåžžã«é«éãªã¯ã©ã€ã¢ã³ãïŒããŒã«ã«ãã¹ããããããã®ãªãã·ã§ã³ã®ãããããå®è¡ããŠããïŒãããéãããã¹ãŠãèŠæ ããããŸãããã¯ã©ã€ã¢ã³ããé
ããã£ã³ãã«ã«åº§ã£ãŠããããæ¥ãã§ããªãå Žåã¯ãã¹ãŠãããæ²ãããªããŸãã ãã®å ŽåãèŠæ±ã®åéæã«ããã»ã¹ã®1ã€ãå®éã«ãããã¯ããŸãããã®æç¹ã§ã¯ããµãŒããŒããã¯ãªãã«ãªã£ãŠããŸãã
ãããã£ãŠãçè«çã«ã¯ã100Mbitãã£ãã«ã«ãµãŒããŒãããããªã»ããä»ãã®ãã€ã€ã«ã¢ããã«1ã€ã®æ°žç¶çãªã¯ã©ã€ã¢ã³ãããããšãDOSã®ãããªãã®ãåŸãããŸã-ããã€ãã®ã¹ã¬ããã®ã¯ã©ã€ã¢ã³ãã¯ãRAMãå°ãªãããã«èããŠããã»ãŒãã¹ãŠã®Apacheããã»ã¹ããããã¯ããŸãã
ãã®åé¡ã¯ãããã³ããšã³ãã®åœ¢åŒã§ããçš®ã®è»œéã®httpãµãŒããŒãã€ã³ã¹ããŒã«ããããšã§è§£æ±ºãããŸãã ããã³ããšã³ããããå Žåããã¹ãŠã®çä¿¡æ¥ç¶ã¯åœŒã«ãã£ãŠåãå
¥ãããããªã¯ãšã¹ãã¯apacheã«éä¿¡ãããå¿çãããã«åä¿¡ããããããæ°ãããªã¯ãšã¹ãã«å¯ŸããŠapacheããã»ã¹ãè§£æŸãããŸãã ããã³ããšã³ãã¯ãäžå¿
èŠãªãªãœãŒã¹ããã£ãããšç¡é§ã«ããã«ãæ¢ã«èŠæ±ããã¯ã©ã€ã¢ã³ãã«åä¿¡ããå¿çãæäŸããŸãã
ããã³ããšã³ãèªäœãéçã³ã³ãã³ãã«è¿œå ã®ããŒãã¹ãæäŸã§ããŸã-ããšãã°ãåçãCSSãªã©ã éãApacheã®ç·©åã
[root@test ~]# rpm -ihv centos.alt.ru/pub/repository/centos/6/x86_64/centalt-release-6-1.noarch.rpm
[root@test ~]# yum install mod_realip2 nginx-stable
Apacheãšãªã¯ãšã¹ãå
ã®ã¹ã¯ãªãããããã³ããšã³ãã¢ãã¬ã¹ã§ã¯ãªãå®éã®ã¯ã©ã€ã¢ã³ãIPã¢ãã¬ã¹ã確èªããããã«ãmod_realip2ãã€ã³ã¹ããŒã«ããŸãã
/etc/httpd/conf.d/mod_realip2.confã®ç·šéãã³ã¡ã³ãè§£é€
RealIP On
RealIPProxy 127.0.0.1
RealIPHeader X-Real-IP
httpd.confããã³/etc/httpd/conf.d/å
ã®ãã¡ã€ã«ãç·šéããŸã
ããŒã80ã®ãã¹ãŠã®è¡šç€ºãããŒã8080ã«å€æŽããŸã
åèšã§ã次ã®3ã€ã®ãã£ã¬ã¯ãã£ãã倿Žããå¿
èŠããããŸãã
Listen 127.0.0.1:8080
NameVirtualHost *:8080
<VirtualHost *:8080>
/etc/nginx/nginx.confãç·šéããŸã
user apache;
worker_processes 2;
æåã¯ãã¹ãŠã®æš©å©ãæåŸ
ããŠäžããŠãããããapacheãŠãŒã¶ãŒã®äžããnginxãèµ·åããŸãã
äºéãã®ã³ã°ãåé¿ããããã«ãnginx.confã®access_logãã£ã¬ã¯ãã£ããã³ã¡ã³ãåããããšã圹ç«ã¡ãŸãã
error_logã¯ãã®ãŸãŸã«ããŠããã®ãæåã§ã-Apacheãšnginxã®ãšã©ãŒã¯ãŸã ç°ãªããŸãã
ãµãŒããŒã»ã¯ã·ã§ã³ã§ãlistenãã£ã¬ã¯ãã£ããç·šéããŠèšå®ããŸãã
listen 80 default
倿ŽïŒ
location / {
root /usr/share/nginx/html;
index index.html index.htm;
}
ã«
location / {
proxy_pass 127.0.0.1:8080/;
}
/etc/nginx/conf.d/ãã£ã¬ã¯ããªã§ã次ã®å
容ã®proxy.confãã¡ã€ã«ãäœæããŸã
proxy_redirect off;
proxy_set_header Host $host;
proxy_set_header X-Real-IP $remote_addr;
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
client_max_body_size 10m;
client_body_buffer_size 128k;
proxy_connect_timeout 90;
proxy_send_timeout 90;
proxy_read_timeout 90;
proxy_buffer_size 4k;
proxy_buffers 4 32k;
proxy_busy_buffers_size 64k;
proxy_temp_file_write_size 64k;
Apacheãšnginxãåèµ·åããŸã
service httpd restart
service nginx restart
ãã¹ãŠãæ©èœãããã©ããã確èªããŸãã
äžè¬çã«ããã¹ãŠã çŸåšãnginxã¯ããã³ããšã³ããšããŠæ©èœãããã¹ãŠã®çä¿¡æ¥ç¶ãåãå
¥ããApacheããããã·ãåŠçããŠããããåŠçããããã«å¿çãnginxã«è¿ããæ°ãããªã¯ãšã¹ãã®ããã«ããã»ã¹ãè§£æŸããŸãã
ããã©ãŒãã³ã¹ãåäžããããªãœãŒã¹æ¶è²»ãåæžããããã®æ¬¡ã®ã¹ãããã¯ãnginxããçŽæ¥éçã³ã³ãã³ããè¿ãããšã§ãã
ãããè¡ãã«ã¯ãApacheä»®æ³ãã¹ãã«å ããŠãnginxä»®æ³ãã¹ããäœæããé
åžãããã®ãæå®ããå¿
èŠããããŸãã
ãããè¡ãã«ã¯ã/ etc / nginx / conf.d /ãã£ã¬ã¯ããªã«ããµã€ãã®ååãšæ¡åŒµå.confãæã€ãã¡ã€ã«ãäœæããæ¬¡ã®å
容ã远å ããŸãã
server {
listen 80;
server_name testsite.ru www.testsite.ru;
location / {
proxy_pass 127.0.0.1:8080/;
}
location ~ /\.ht {
deny all;
}
location /sites/default/files {
root /home/testsite.ru/html;
access_log /home/testsite.ru/log/access_static.log combined;
}
}
ãã®äŸã§ã¯ãCMS Drupalã®ãµã€ãã®å Žåã/ sites / default / filesãã£ã¬ã¯ããªã®éçã³ã³ãã³ãã¯nginxãä»ããŠé
åžãããŸãããä»ã®ãã¹ãŠã«ã€ããŠã¯ããã§ã«Apacheã«ã¢ã¯ã»ã¹ããŠããŸãã
å¥ã®ãªãã·ã§ã³ã¯ãlocationãã£ã¬ã¯ãã£ããæ¬¡ã®ãã®ã«çœ®ãæããããšã§ãã
location ~ \.(jpg|gif|png|css|js|ico)$ {
root /home/testsite.ru/html;
access_log /home/testsite.ru/log/access_static.log combined;
}
ãã®å Žåã察å¿ããæ¡åŒµåãæã€ãã¹ãŠã®ãã¡ã€ã«ã¯nginxã«ãã£ãŠæäŸãããŸãã ãããããã®ããŒãžã§ã³ã«ã¯å°ããªãã€ãã¹ããããŸã-nginxã¯.htaccessãã¡ã€ã«ã®æäœæ¹æ³ãç¥ããªãããã.htaccessã衚瀺ã§ããªãã³ã³ãã³ããããå Žåã¯ããã®ãªãã·ã§ã³ã®äœ¿çšãæ§ããŠãã ããã
ãã®ç¶æ³ã§ã¯ã1ã€ã®ãµã€ãã§2ã€ã®ãã°ãååŸããããšã«ã泚æããŠãã ããã åå¥ã«ãApacheãåäœãããªã¯ãšã¹ããã°ãšãnginxãã°ã®å
容ãåå¥ã«ã
ãŸãã¯ãaccess_logãã£ã¬ã¯ãã£ããlocationã»ã¯ã·ã§ã³ããserverã»ã¯ã·ã§ã³ã«è»¢éããApacheä»®æ³ãã¹ãã§access_logãç¡å¹ã«ããŸãã ãã®å Žåãnginxã®ã¿ããã°ã«èšé²ããŸãã
ããããããããã©ã®ããã«æ©èœãããããèŠãããã«ãäºéãã°ã¯è峿·±ãããšããããŸã-圌ãã¯ããã«è² è·ãã©ãã ã誰ã«ããã£ãŠãããã瀺ããŸãã
ãããªãæé©åã«ã€ããŠã¯ãç¹å®ã®ã³ã³ããŒãã³ããæ¢ã«æé©åããçŸåšã®ç¶æ³ãèæ
®ããŠãããè¡ãããšã«é¢ããããã¥ã¢ã«ãèªã䟡å€ããããŸãã
UPDïŒããã€ãã®ã¿ã€ããã¹ãä¿®æ£
UPDïŒã¹ã¯ããæ¥ç¶ãä¿®æ£ã
AngryAnonymousã«æè¬
UPDïŒ nginxã®ã€ã³ã¹ããŒã«ãšèšå®ã«é¢ãã説æã远å ããŸãããæ£ããæ¹åãžã®ããã¯ã«masterboã«æè¬ããŸãã
odmin4egã®ããã¯ã¢ããã¹ã¯ãªããã®å¥ã®ããŒãžã§ã³ïŒ
habrahabr.ru/blogs/s_admin/132302/#comment_4391784æ¹å€ãåŸ
ã£ãŠããŸãã