๐ŸŒˆ0608 [GCP]

๋ง์ง€ยท2022๋…„ 6์›” 8์ผ
1
post-custom-banner

๐Ÿ“Œ GCP - ์ดˆ๊ธฐ ์„ค์ •

GCP ๊ณ„์ • ์ƒ์„ฑ ํ›„ ์ง„ํ–‰

๐Ÿ“— ์ƒˆ ํ”„๋กœ์ ํŠธ ์ƒ์„ฑ

โœ”๏ธ 0. ์™ผ์ชฝ ์ƒ๋‹จ - My First Project - ์ƒˆํ”„๋กœ์ ํŠธ

๐Ÿ“ข์™ผ์ชฝ ์ƒ๋‹จ์— ์—†์œผ๋ฉด, ํ™ˆ - ๋Œ€์‹œ๋ณด๋“œ ์ง„์ž…ํ•ด์„œ ์ง„ํ–‰.

โœ”๏ธ 1. ํ”„๋กœ์ ํŠธ ์ด๋ฆ„ :gcp-lovemj2022 - ์œ„์น˜ : ๊ทธ๋Œ€๋กœ - ๋งŒ๋“ค๊ธฐ ํด๋ฆญ

๐Ÿ“— root๊ถŒํ•œ์— ์ค€ํ•˜๋Š” ์ƒˆ๋กœ์šด ์‚ฌ์šฉ์ž ๋งŒ๋“ค๊ธฐ

์ƒˆ๋กœ ๋งŒ๋“ค์–ด๋‘” ๊ตฌ๊ธ€ ๊ณ„์ • ์ถ”๊ฐ€

โœ”๏ธ 0. ๋ฉ”๋‰ด - IAM ๋ฐ ๊ด€๋ฆฌ์ž - IAM - ์ƒ๋‹จ ์ถ”๊ฐ€

โœ”๏ธ 1. ์ƒˆ ์ฃผ ๊ตฌ์„ฑ์› : ๊ตฌ์„ฑ์›์œผ๋กœ ์ถ”๊ฐ€ํ•  ์ด๋ฉ”์ผ ๊ณ„์ • ์ž…๋ ฅ - ์—ญํ•  ์„ ํƒ : ๊ธฐ๋ณธ - ํŽธ์ง‘์ž

โœ”๏ธ 2. ๋‹ค๋ฅธ ๋ธŒ๋ผ์šฐ์ €์—์„œ gcp ์ ‘์†, ๊ตฌ์„ฑ์› ์ถ”๊ฐ€ํ•œ ๊ณ„์ •์œผ๋กœ ๋กœ๊ทธ์ธ - ์šฐ์ธก ์ƒ๋‹จ ์ฝ˜์†” ํด๋ฆญ

โœ”๏ธ 2-1. ๋™์˜ํ•˜๊ณ  ๊ณ„์†ํ•˜๊ธฐ

โœ”๏ธ 2-2. ์ƒ๋‹จ ํ”„๋กœ์ ํŠธ ์„ ํƒ - ์ƒ์„ฑํ•ด๋‘” ํ”„๋กœ์ ํŠธ๋กœ ์ง„์ž…

โœ”๏ธ 3. ํŽธ์ง‘์ž ๊ณ„์ • - ๊ฒฐ์ œ - ๊ฐœ์š” - ๋‚ด ๊ฒฐ์ œ ๊ณ„์ • ID , ์†Œ์œ ์ž ๊ณ„์ • - ๊ฒฐ์ œ - ๊ฐœ์š” - ๋‚ด ๊ฒฐ์ œ ๊ณ„์ • ID ์ผ์น˜์—ฌ๋ถ€ ํ™•์ธ

๐Ÿ“ข ํŽธ์ง‘์ž(์†Œ์œ ์ž ์•„๋‹Œ ์‚ฌ์šฉ์ž)๋Š” ํฌ๋ ˆ๋”ง ์ •๋ณด ํ™•์ธ ๋ถˆ๊ฐ€.

๐Ÿ“Œ GCP-์›น์„œ๋ฒ„(web01)๋งŒ๋“ค๊ธฐ

๐Ÿ“— ์ธ์Šคํ„ด์Šค ๋งŒ๋“ค๊ธฐ

โœ”๏ธ 1. compute Engine API - ์‚ฌ์šฉ ํด๋ฆญ - ์ธ์Šคํ„ด๊ทธ ๋งŒ๋“ค๊ธฐ - ์ด๋ฆ„ : web01 -๋ฆฌ์ „ : ์„œ์šธ - ์˜์—ญ : a

โœ”๏ธ 2. ๋จธ์‹ ๊ตฌ์„ฑ - ์‹œ๋ฆฌ์ฆˆ :E2 - ๋จธ์‹ ์œ ํ˜• : e2.micro

โœ”๏ธ 3. ๋ถ€ํŒ…๋””์Šคํฌ - ๋ณ€๊ฒฝ ํด๋ฆญ - ์šด์˜์ฒด์ œ : CentOS - ๋ฒ„์ „ : CentOS 7


โœ”๏ธ 4. ID ๋ฐ ์•ก์„ธ์Šค ; ์•ก์„ธ์Šค ๋ฒ”์œ„ : ๋ชจ๋“  CloudAPI์— ๋Œ€ํ•œ ์ „์ฒด ์•ก์„ธ์Šค ํ—ˆ์šฉ

โœ”๏ธ 5. ๋ฐฉํ™”๋ฒฝ์— HTTP ์ถ”๊ฐ€

โœ”๏ธ 6. ์–ด์ œ ์ƒ์„ฑํ•œ .sshํด๋” ์ง„์ž… , ๊ณต๊ฐœํ‚ค ๋ฉ”๋ชจ์žฅ์œผ๋กœ ์—ด์–ด์„œ ๋ณต์‚ฌ - SSHํ‚ค 1 ์— ๋ถ™์—ฌ๋„ฃ๊ธฐ.

โœ”๏ธ 7. ๊ด€๋ฆฌ -์ž๋™ํ™” ์‹œ์ž‘ ์Šคํฌ๋ฆฝํŠธ์— ์•„๋ž˜ ๋ช…๋ น์–ด ์ž…๋ ฅ - ๋งŒ๋“ค๊ธฐํด๋ฆญ

#!/bin/bash
yum install -y httpd
systemctl enable --now httpd
echo "<h1>WEB01</h1>" > /var/www/html/index.html

โœ”๏ธ 8. ์›๊ฒฉ ์ ‘์† ์ง„ํ–‰ - ์™ธ๋ถ€ ip ์ž…๋ ฅ, ์œ ์ €๋„ค์ž„์€ ssh ํผ๋ธ”๋ฆญํ‚ค ๋ฉ”๋ชจ์žฅ ๋งจ ๋งˆ์ง€๋ง‰ ์ค„์— ์žˆ๋˜ @ ์•ž ์œ ์ €๋„ค์ž„ ์ž…๋ ฅ.

๐Ÿ“ข ์ฃผ์˜์‚ฌํ•ญ : ๋ฐฉํ™”๋ฒฝ ์—ด๋ ค์žˆ์ง€๋งŒ ์‹ค์ œ๋กœ๋Š” ๋™์ž‘ํ•˜์ง€ ์•Š์Œ. GCP ์ฝ˜์†”์—์„œ ์„ค์ •ํ•˜๋Š” ๊ฒƒ์œผ๋กœ ์ ์šฉ๋จ. CetnOS์— ํฌํŠธ ์—ด๋ ค์žˆ์ง€ ์•Š๋”๋ผ๋„ GCP์— 80ํฌํŠธ ์—ด๋ ค์žˆ๊ธฐ ๋•Œ๋ฌธ์— ์›น๋ธŒ๋ผ์šฐ์ €๋กœ ์ ‘์† ๊ฐ€๋Šฅ.

๐Ÿ“— CnetOs7 ์›น์„œ๋ฒ„ ํฌํŠธ๋ฒˆํ˜ธ ๋ฐ”๊พธ๊ธฐ

โœ”๏ธ ์•„๋ž˜ ๋ช…๋ น์–ด๋กœ vi ํŽธ์ง‘๊ธฐ ์‹คํ–‰ ํ›„, listen 80 ์„ 8080์œผ๋กœ ๋ณ€๊ฒฝ - restart.



[r2com@web01 html]$ sudo vi /etc/httpd/conf/httpd.conf


 33 #
     34 # Listen: Allows you to bind Apache to specific IP addresses and/or
     35 # ports, instead of the default. See also the <VirtualHost>
     36 # directive.
     37 #
     38 # Change this to Listen on specific IP addresses as shown below to
     39 # prevent Apache from glomming onto all bound IP addresses.
     40 #
     41 #Listen 12.34.56.78:80
     42 Listen 8080

[r2com@web01 html]$ sudo systemctl restart httpd

โœ”๏ธ ํฌํŠธ๋ฒˆํ˜ธ ํ™•์ธ

[r2com@web01 html]$ ss -ant
State      Recv-Q Send-Q                     Local Address:Port                                    Peer Address:Port
LISTEN     0      128                                    *:22                                                 *:*
LISTEN     0      100                            127.0.0.1:25                                                 *:*
TIME-WAIT  0      0                             10.178.0.2:42042                                 172.217.25.170:443
ESTAB      0      0                             10.178.0.2:32784                                169.254.169.254:80
ESTAB      0      0                             10.178.0.2:22                                    123.142.252.25:64783
TIME-WAIT  0      0                             10.178.0.2:50994                                172.217.161.234:443
ESTAB      0      0                             10.178.0.2:55792                                 142.250.76.138:443
ESTAB      0      0                             10.178.0.2:35764                                172.217.161.202:443
ESTAB      0      0                             10.178.0.2:32806                                169.254.169.254:80
LISTEN     0      128                                 [::]:8080                                            [::]:*
LISTEN     0      128                                 [::]:22                                              [::]:*
LISTEN     0      100                                [::1]:25                                              [::]:*

๐Ÿ“ข ํ•˜์ง€๋งŒ, 8080์œผ๋กœ ์ง„์ž… ์•ˆ ๋จ. GCP ์ฝ˜์†”์—์„œ ๋ฐฉํ™”๋ฒฝ ์„ค์ • ํ•„์š”.

๐Ÿ“— GCP์—์„œ ๋ฐฉํ™”๋ฒฝ ๊ทœ์น™ ์ถ”๊ฐ€

โœ”๏ธ 0. ์™ผ์ชฝ ๋ฉ”๋‰ด - VPC ๋„คํŠธ์›Œํฌ - ๋ฐฉํ™”๋ฒฝ - ๋ฐฉํ™”๋ฒฝ ๊ทœ์น™ ๋งŒ๋“ค๊ธฐ

โœ”๏ธ 1. ์ด๋ฆ„ : http8080 - ์šฐ์„ ์ˆœ์œ„ : 1001

  • ํŠธ๋ž˜ํ”ฝ ๋ฐฉํ–ฅ : ์ˆ˜์‹ (inbound) - ์ผ์น˜ ์‹œ ์ž‘์—… : ํ—ˆ์šฉ - ์ง€์ •๋œ ๋Œ€์ƒ ํƒœ๊ทธ ; ๋Œ€์ƒํƒœ๊ทธ : web01(์ž์œ ) - ์†Œ์Šค IPv4๋ฒ”์œ„ : 0.0.0.0/0-์ง€์ •๋œ ํ”„๋กœํ† ์ฝœ ๋ฐ ํฌํŠธ ;tcp : 8080 -๋งŒ๋“ค๊ธฐ

๐Ÿ“— ์ธ์Šคํ„ด์Šค ๋ฐฉํ™”๋ฒฝ ์„ค์ •

โœ”๏ธ 0. compute engine - vm ์ธ์Šคํ„ด์Šค - vm ์ด๋ฆ„ ํด๋ฆญ - ์ˆ˜์ •

โœ”๏ธ 1. ๋„คํŠธ์›Œํ‚น - ๋„คํŠธ์›Œํฌ ํƒœ๊ทธ- ๋ฐฉํ™”๋ฒฝ์—์„œ ์„ค์ •ํ•œ ํƒœ๊ทธ ์ด๋ฆ„ + ์—”ํ„ฐ - ์ €์žฅ

๐Ÿ“ข ์›น๋ธŒ๋ผ์šฐ์ €๋กœ ์ ‘์† ๊ฐ€๋Šฅํ•œ์ง€ ํ™•์ธ ํ•œ ํ›„, ๋‹ค์‹œ ํฌํŠธ๋ฒˆํ˜ธ 80์œผ๋กœ ์›๋ณตํ•˜์˜€์Œ.

๐Ÿ“Œ GCP-์›น์„œ๋ฒ„(web02) ๋งŒ๋“ค๊ธฐ

๐Ÿ“— ์ธ์Šคํ„ด์Šค ๋งŒ๋“ค๊ธฐ

โœ”๏ธ 0. cumpute engine - ์ž‘์—… ๋”๋ณด๊ธฐ - ์ธ์Šคํ„ด์Šค ๋งŒ๋“ค๊ธฐ

โœ”๏ธ 1. ์ด๋ฆ„ : web02 - ๋ฆฌ์ „ : ์„œ์šธ - ์˜์—ญ : a - ์‹œ๋ฆฌ์ฆˆ : E2 -๋จธ์‹  ์œ ํ˜• : e2.micro

โœ”๏ธ 1-1.๋ถ€ํŒ… ๋””์Šคํฌ : Debian

โœ”๏ธ 1-2. ID ๋ฐ API์•ก์„ธ์Šค : ๋ชจ๋“  cloud API์— ๋Œ€ํ•œ ์ „์ฒด ์•ก์„ธ์Šค ํ—ˆ์šฉ - ๋ฐฉํ™”๋ฒฝ : HTTP ํŠธ๋ž˜ํ”ฝ ํ—ˆ์šฉ - ๋„คํŠธ์›Œํ‚น, ๋””์Šคํฌ, ๋ณด์•ˆ, ๊ด€๋ฆฌ, ๋‹จ๋…ํ…Œ๋„Œ์‹œ ๋“œ๋ž๋‹ค์šด

โœ”๏ธ 1-3. ๊ด€๋ฆฌ - ์ž๋™ํ™” ์‹œ์ž‘ ์Šคํฌ๋ฆฝํŠธ : ์•„๋ž˜ ๋ช…๋ น์–ด ์ž…๋ ฅ - ๋งŒ๋“ค๊ธฐ ํด๋ฆญ

#!/bin/bash
apr update
apt install -y apache2
echo "<h1>WEB02</h1>" > /var/www/html/index.html

๐Ÿ“— ๋ฉ”ํƒ€๋ฐ์ดํ„ฐ(SSH key) ์„ค์ •

โœ”๏ธ Compute Engine - ์„ค์ • - ๋ฉ”ํƒ€๋ฐ์ดํ„ฐ - SSHํ‚ค - ssh ํ‚ค ์ถ”๊ฐ€ - ํผ๋ธ”๋ฆญ ํ‚ค ๋ฉ”๋ชจ์žฅ์œผ๋กœ ์—ด์–ด์„œ ssh ํ‚ค ์ž…๋ ฅ - ํ•˜๋‹จ ์ €์žฅ ํด๋ฆญ

โœ”๏ธ ๊ทธ ๊ฒฐ๊ณผ key์ ‘์†์œผ๋กœ ์›๊ฒฉ์ ‘์† ๊ฐ€๋Šฅ.

๐Ÿ“Œ GCP - Cloud Load Balancing ๋ถ€ํ•˜๋ถ„์‚ฐ

๐Ÿ“— ์ธ์Šคํ„ด์Šค ๊ทธ๋ฃน ์ƒ์„ฑ

โœ”๏ธ compute Engine - ์ธ์Šคํ„ด์Šค ๊ทธ๋ฃน - ์ธ์Šคํ„ด์Šค ๊ทธ๋ฃน ๋งŒ๋“ค๊ธฐ - ์™ผ์ชฝ ๋งจ ๋งˆ์ง€๋ง‰ New unmanaged instance group ํด๋ฆญ

โœ”๏ธ ์ด๋ฆ„ : instance-group-1 - ์œ„์น˜; ๋ฆฌ์ „ : ์„œ์šธ - ์˜์—ญ : a

โœ”๏ธ Network : default - ์„œ๋ธŒ ๋„คํŠธ์›Œํฌ : default - VM ์ธ์Šคํ„ด์Šค :web01,02


โœ”๏ธ ํฌํŠธ ๋งคํ•‘- ํฌํŠธ์ถ”๊ฐ€ ํฌํŠธ ์ด๋ฆ„ 1: bk-port - ํฌํŠธ๋ฒˆํ˜ธ 1 : 80 - ๋งŒ๋“ค๊ธฐ

๐Ÿ“— ๋ถ€ํ•˜๋ถ„์‚ฐ๊ธฐ ๋งŒ๋“ค๊ธฐ

โœ”๏ธ 0. ๊ฒ€์ƒ‰์ฐฝ : ๋„คํŠธ์›Œํฌ ์„œ๋น„์Šค - ๋„คํŠธ์›Œํฌ ์„œ๋น„์Šค ํด๋ฆญ - ๋ถ€ํ•˜๋ถ„์‚ฐ - ๋ถ€ํ•˜๋ถ„์‚ฐ๊ธฐ - ๋ถ€ํ•˜ ๋ถ„์‚ฐ๊ธฐ ๋งŒ๋“ค๊ธฐ - HTTP ๋ถ€ํ•˜๋ถ„์‚ฐ - ๊ตฌ์„ฑ์‹œ์ž‘ ํด๋ฆญ

โœ”๏ธ 1. default check- ๊ณ„์†

โœ”๏ธ 1-1. ์ด๋ฆ„ : my -slb - ๋ฐฑ์—”๋“œ ๊ตฌ์„ฑ : ๋ฐฑ์—”๋“œ ์„œ๋น„์Šค ๋งŒ๋“ค๊ธฐ - ์ด๋ฆ„ : bk-svc - ๋ฐฑ์—”๋“œ ์œ ํ˜• : ์ธ์Šคํ„ด์Šค ๊ทธ๋ฃน

โœ”๏ธ 1-2. ๋ฐฑ์—”๋“œ - ์ธ์Šคํ„ด์Šค ๊ทธ๋ฃน : instance-group-1- ๊ธฐ์กดํฌํŠธ ์ด๋ฆ„ ์‚ฌ์šฉ - ์™„๋ฃŒ


โœ”๏ธ 1-3. ์ƒํƒœํ™•์ธ - ์ƒํƒœ ํ™•์ธ ์ƒ์„ฑ - ์ด๋ฆ„ : my-health - ํ”„๋กœํ† ์ฝœ : HTTP - ํฌํŠธ : 80-์ €์žฅ - ๋งŒ๋“ค๊ธฐ

โœ”๏ธ 2. ํ”„๋ŸฐํŠธ์—”๋“œ ๊ตฌ์„ฑ ํด๋ฆญ - ์ด๋ฆ„ : frontend - ์™„๋ฃŒ - ๋งŒ๋“ค๊ธฐ

โœ”๏ธ 3. my-slbํด๋ฆญ - ํ”„๋ŸฐํŠธ์—”๋“œ IP ๋ณต์‚ฌ - ์›น ๋ธŒ๋ผ์šฐ์ €์—์„œ ๋“ค์–ด๊ฐ€๊ธฐ -> ๋ผ์šด๋“œ๋กœ๋นˆ

๐Ÿ“Œ GCP- ๊ฐ์ฒด์Šคํ† ๋ฆฌ์ง€ ; cloud storage

โœ”๏ธ 0. ๊ฒ€์ƒ‰์ฐฝ : cloud storage - ๋ฒ„ํ‚ท ๋งŒ๋“ค๊ธฐ
โœ”๏ธ 1. ๋ฒ„ํ‚ท ์ด๋ฆ„ : kosa14(์œ ๋‹ˆํฌ) - ๊ณ„์† -๋ฐ์ดํ„ฐ ์ €์žฅ ์œ„์น˜ ์„ ํƒ : ๋ฆฌ์ „ : ์„œ์šธ - ๊ณ„์†
โœ”๏ธ 2. ๋ฐ์ดํ„ฐ ๊ธฐ๋ณธ ์Šคํ† ๋ฆฌ์ง€ ํด๋ž˜์Šค ์„ ํƒ : standard - ๊ณ„์† - ๊ฐ์ฒด ์•ก์„ธ์Šค๋ฅผ ์ œ์–ดํ•˜๋Š” ๋ฐฉ์‹ ์„ ํƒ ;default - ๊ณ„์† - ๊ฐ์ฒด ๋ฐ์ดํ„ฐ๋ฅผ ๋ณดํ˜ธํ•˜๋Š” ๋ฐฉ๋ฒ• ์„ ํƒ : default - ๋งŒ๋“ค๊ธฐ

โœ”๏ธ 3. ํด๋”๋งŒ๋“ค๊ธฐ - ์ด๋ฆ„ : files- ๋งŒ๋“ค๊ธฐ

โœ”๏ธ 3-1. ํŒŒ์ผ ์—…๋กœ๋“œ - ์ค€๋น„ํ•ด๋‘” gcp.tar ์„ ํƒ

๐Ÿ“— web01์—์„œ wget์ด์šฉํ•˜์—ฌ ํŒŒ์ผ ๊ฐ€์ ธ์˜ค๊ธฐ

[r2com@web01 html]$ sudo yum install -y wget

โœ”๏ธ ๊ถŒํ•œ - ์ถ”๊ฐ€

โœ”๏ธ ๊ตฌ์„ฑ์› : allUsers, ์ €์žฅ์†Œ ๊ธฐ์กด ๊ฐœ์ฒด ๋ฆฌ๋” - ์ €์žฅ

โœ”๏ธ ๊ณต๊ฐœ ์•ก์„ธ์Šค - URL ๋ณต์‚ฌ

โœ”๏ธ tar ํŒŒ์ผ ์›น root ํด๋”์— ์••์ถ•ํ•ด์ œ.

[r2com@web01 ~]$ sudo tar -xvf gcp.tar -C /var/www/html/

๐Ÿ“Œ GCP - ๋ธ”๋ก์Šคํ† ๋ฆฌ์ง€

compute engine - ๋””์Šคํฌ -




๋งŒ๋“ค๊ธฐ ํด๋ฆญ

vm ์ธ์Šคํ„ด์Šค - web01 ์ง„์ž… - ์ƒ๋‹จ ์ˆ˜์ • ํด๋ฆญ


[r2com@web01 ~]$ lsblk

NAME   MAJ:MIN RM  SIZE RO TYPE MOUNTPOINT
sda      8:0    0   20G  0 disk
โ”œโ”€sda1   8:1    0  200M  0 part /boot/efi
โ””โ”€sda2   8:2    0 19.8G  0 part /
sdb      8:16   0   10G  0 disk

[r2com@web01 ~]$ sudo mkfs -t ext4 /dev/sdb

mke2fs 1.42.9 (28-Dec-2013)
/dev/sdb is entire device, not just one partition!
Proceed anyway? (y,n) y
Discarding device blocks: done
Filesystem label=
OS type: Linux
Block size=4096 (log=2)
Fragment size=4096 (log=2)
Stride=0 blocks, Stripe width=0 blocks
655360 inodes, 2621440 blocks
131072 blocks (5.00%) reserved for the super user
First data block=0
Maximum filesystem blocks=2151677952
80 block groups
32768 blocks per group, 32768 fragments per group
8192 inodes per group
Superblock backups stored on blocks:
        32768, 98304, 163840, 229376, 294912, 819200, 884736, 1605632

Allocating group tables: done
Writing inode tables: done
Creating journal (32768 blocks): done
Writing superblocks and filesystem accounting information: done

[r2com@web01 ~]$ sudo mount /dev/sdb /mnt

[r2com@web01 ~]$ df -h

Filesystem      Size  Used Avail Use% Mounted on
devtmpfs        486M     0  486M   0% /dev
tmpfs           494M     0  494M   0% /dev/shm
tmpfs           494M  6.7M  488M   2% /run
tmpfs           494M     0  494M   0% /sys/fs/cgroup
/dev/sda2        20G  2.6G   18G  13% /
/dev/sda1       200M   12M  189M   6% /boot/efi
tmpfs            99M     0   99M   0% /run/user/1000
tmpfs            99M     0   99M   0% /run/user/0
/dev/sdb        9.8G   37M  9.2G   1% /mnt

[r2com@web01 ~]$ sudo cp gcp.tar /mnt
[r2com@web01 ~]$ ls /mnt
gcp.tar  lost+found

๐Ÿš€โœ”๏ธโœ๏ธ๐Ÿ“ขโญ๏ธ๐Ÿ“Œ๐Ÿ“—

๐Ÿ“Œ ๊ธฐํƒ€

โญ๏ธ provisioning

CPU, RAM, SSD, OS, NET ์„ค์ •

โญ๏ธ GCE

Google Compute Engine

โญ๏ธ ๋จธ์‹ ์œ ํ˜•

โญ๏ธ CetnOS ๋ฐฉํ™”๋ฒฝ ๋ณ€์ฒœ์‚ฌ

netfilter -> iptabled -> firewalld
์šฐ์„ ์ˆœ์œ„
1. netfilter
2. iptabled
3. firewalld
=> firewallld๊ฐ€ ๋‹ค ๋ง‰๊ณ  ์žˆ๋”๋ผ๋„ iptabled๊ฐ€ ๋‹ค ์—ด๊ณ ์žˆ์œผ๋ฉด ์—ด๊ณ  ์žˆ๋Š” ๊ฒƒ.
GCP CentOS web01 OS ์ˆ˜์ค€์˜ ๋ฐฉํ™”๋ฒฝ ALL ACCEPT ํ™•์ธ

[r2com@web01 html]$ sudo iptables -L

โญ๏ธ ์Šคํ† ๋ฆฌ์ง€ ์„œ๋น„์Šค

โœ”๏ธ ๊ฐ์ฒด์Šคํ† ๋ฆฌ์ง€ ; wget, url
aws ; s3
azure ; blob
gcp ; coloud storage

โœ”๏ธ ๋ธ”๋ก ์Šคํ† ๋ฆฌ์ง€ ; os app c:/ root
aws ; EBS
azure ; azure disk
gcp ; persistent Disk

โœ”๏ธ ํŒŒ์ผ ์Šคํ† ๋ฆฌ์ง€ ; smb :servermessage block , nfs, mount
aws ; efs
azure ; azure files
gcp ; filestore

profile
๊พธ์ค€ํžˆ, ์ฐจ๊ทผ์ฐจ๊ทผ
post-custom-banner

0๊ฐœ์˜ ๋Œ“๊ธ€