include "top.php" ?>
½Ã½ºÅÛ °ü¸® ¹× ½Ç½À #15 |
1. ftp ¼ºñ½º Á¤¸® |
- FTP(File Transfer Protocol)¼ºñ½º¶õ ¹«¾ùÀΰ¡? °£´ÜÇÏ°Ô ¾ê±âÇϸé ÄÄÇ»ÅÍ ÆÄÀϵéÀ» ÀÎÅͳÝÀ» ÅëÇÏ¿© ÁÖ°í¹ÞÀ» ¶§ »ç¿ëÇÏ´Â ¼ºñ½ºÀÌ´Ù. ³»°¡ ¼ÒÀ¯ÇÏ°í ÀÖ´Â ÆÄÀÏÀ» ´Ù¸¥ ÀÎÅÍ³Ý È£½ºÆ®¿¡°Ô °Ç³×Áְųª ¹Ý´ë·Î ±× ÂÊ¿¡ ÀÖ´Â ÆÄÀÏÀ» ³» ÄÄÇ»ÅÍ ¾ÈÀ¸·Î °¡Á®¿Ã ¶§ ÀÌ ¼ºñ½º¸¦ »ç¿ëÇÑ´Ù. FTPÀÇ ÇÁ·ÎÅäÄÝÀº TCPÀÇ ¿¬°áÀÌ ÀÏ¾î³ ÈÄ¿¡ ÀÛµ¿Çϸç, TCP Åë½Å ¼¼¼ÇÀÌ ¼ö¸³µÈ ÈÄ, FTP¸¦ ÀÌ¿ëÇÏ¿© ÆÄÀϵéÀ» ÁÖ°í¹Þ´Â °ÍÀ̶ó°í ÇÒ ¼ö ÀÖ´Ù. TCP/IP¸¦ »ç¿ëÇÏ´Â FTP¼ºñ½º´Â Ŭ¶óÀ̾ðÆ®/¼¹ö Çü½ÄÀÇ ±¸¼ºÀ» ÇÏ¸ç ¼¹ö°¡ FTP ¼ºñ½º¸¦ ¿î¿µ, Ŭ¶óÀ̾ðÆ®´Â ¼¹ö¿¡¼ Çã°¡ÇÑ ÆÄÀϵéÀ» ´Ù¿î ¹ÞÀ» ¼ö ÀÖ°í, ¶ÇÇÑ ¼¹ö¿¡ µð·ºÅ丮¸¦ ¸¸µé°í ±× ¾È¿¡ ÆÄÀÏÀ» ¾÷·Îµå ½Ãų ¼öµµ ÀÖ´Â °ÍÀÌ´Ù. ¸®´ª½º »ó¿¡¼ ÇöÀç ¼ºñ½º µÇ´Â °ÍÀ» ¾Ë°í½ÍÀ» ¶§ netstat -anÀÇ ¸í·É¾î·Î TCP·Î *.33045 *.* 0 0 65536 0 BOUND *.898 *.* 0 0 65536 0 LISTEN *.5988 *.* 0 0 65536 0 LISTEN *.5987 *.* 0 0 65536 0 LISTEN *.33046 *.* 0 0 65536 0 LISTEN *.21 *.* 0 0 65536 0 LISTENftpÆ÷Æ®´Â ¹Ù²ÙÁö ¾ÊÀ¸¸é µðÆúÆ®·Î 21¹øÀ¸·Î Åë½ÅÇϹǷΠftp°¡ vsftpd³ª wftpd, proftpdµî Áß¿¡ Çϳª´Â ¿¬°áÀÌ µÇ¾îÀÖ´Ù´Â ¸»ÀÔ´Ï´Ù. ¶Ç´Â ps -ef | grep ftp ¸í·É¾î·Î ÇöÀç ÇÁ·Î¼¼½º¸¦ °Ë»öÇÒ ¼ö ÀÖ´Ù [root@maru/]$ ps -ef | grep ftp nobody 13352 1 0 18:19:38 ? 0:00 ./proftpd |
2. proftpd ¼¹ö ±¸Ãà ¹× ¼³Á¤ Á¤¸® (ÇöÀç½Ã½ºÅÛ¿¡ proftp¸¦ ¼³Ä¡Çؼ º¯°æ) |
ProFTPD´Â unix¶Ç´Â unix ȣȯ OS¸¦ À§ÇÑ FTP daemonÀÌ´Ù. ProFTPd ´Â º¸¾ÈÀûÀÌ°í ½Å·ÚÀûÀÎ FTP ¼¹ö°¡ µÇ±â¸¦ Èñ¸ÁÇÏ¸ç ¹ßÀüÀ» Çϸç, Apache web server ÀÇ ¼³Á¤ ¹æ½ÄÀ» µû¸¥´Ù. ÇöÀç unix ¶Ç´Â unix ȣȯ È£½ºÆ®¿¡¼ ÀÛµ¿ÇÏ´Â FTP server µéÀÇ ¼ýÀÚ´Â ¸Å¿ì Á¦ÇÑÀÌ µÇ¾î ÀÖ´Ù. °¡Àå ³Î¸® »ç¿ëÀÌ µÇ¾î Áö´Â °ÍÀ¸·Î´Â ¾Æ¸¶µµ wu-ftpd ÀÏ°ÍÀÌ´Ù. wu-ftpd °¡ ¾ÆÁÖ ÈǸ¢ÇÑ ¼º´ÉÀ» Á¦°øÇÏ°í ÀϹÝÀûÀ¸·Î´Â ¾ÆÁÖ ÁÁÀº daemon ÀÌÁö¸¸ »õ·Î ³ª¿À´Â Win32 FTP server ¿¡¼ Á¦°øÇÏ´Â »õ·Î¿î ¸¹Àº ±â´ÉµéÀÌ °áÇ̵Ǿî ÀÖ°í ¿ª»çÀûÀ¸·Îµµ º¸¾È¿¡ ¾ÆÁÖ Ãë¾àÇÏ¿´´Ù. ProFTPD ¸¦ °³¹ßÇÏ´Â »ç¶÷µéÀ» Æ÷ÇÔ ÇÏ´Â ¸¹Àº »ç¶÷µéÀº wu-ftpd ÀÇ ¸¸Àº ¿ä¼ÒµéÀ» ÆÄÇìÃÆ°í, ¹ö±×µéÀ» ¼öÁ¤ Çϴµ¥ ¸¹Àº ½Ã°£°ú ³ë·ÂÀ» µé¿´Áö¸¸ ºÒÇàÇÏ°Ôµµ, ½Å·Ú¼ºÀ» °¡Áö±â À§Çؼ´Â »õ·Î¿î µðÀÚÀÎÀÌ ÇÊ¿äÇÏ´Ù´Â °Í¿¡ ´Ù´Ù¸£°Ô µÇ¾ú´Ù. ProFTPD ´Â ¾î¶² ´Ù¸¥ ¼¹öÀÇ ¼Ò½º¿¡ ±â¹ÝÀ» µÐ °ÍÀÌ ¾Æ´Ï¸ç, ¿ÏÀüÈ÷ µ¶¸³ÀûÀÎ ¼Ò½ºÆ®¸®¸¦ °¡Áö°í ÀÖ´Ù. - ¼³Ä¡ proftpd ¿î¿µ ¹æ¹ýÀº 2°¡Áö ÀÔ´Ï´Ù. 1). standalone mode ·Î ¿î¿µÇÏ´Â ¹æ¹ý 2). superdaemon À¸·Î ¿î¿µÇÏ´Â ¹æ¹ý ÀϹÝÀûÀ¸·Î 1.¹øÀ¸·Î ¸¹ÀÌ ¼³Ä¡ÇϹǷΠstandalone ¹öÀüÀ¸·Î ¼³Ä¡ ------------------------------------------------------------------------------------------ proftpd.conf ¼³Á¤ ³»¿ë È®ÀÎ ------------------------------------------------------------------------------------------ # This is a basic ProFTPD configuration file (rename it to # 'proftpd.conf' for actual use. It establishes a single server # and a single anonymous login. It assumes that you have a user/group # "nobody" and "ftp" for normal operation and anon. ServerName "ProFTPD Default Installation" ServerType standalone // º¸Åë ServerType Àº standalone¹æ½Ä°ú inetd¹æ½ÄÀÌ ÀÖ½À´Ï´Ù. ftp³ª ´ëÇü¼¹ö°°Àº °æ¿ì´Â Ç×»ó ftp¸¦ ¿¾îµÖ¾ß °ÚÁö¸¸, ½ºÅ͵ð¿ë ¼¹öµîÀº ftp»ç¿ëÀÚ¸¦ ¸·¾Æ³õ°í ÇÊ¿ä½Ã¿¡¸¸ (¿äûÀÌ ÀÖÀ»½Ã¸¸) Çã¿ëÇÏ´Â xinetd·Î »ç¿ëÇÏ´Â °ÍÀÌ ¼¹ö¿¡ °úºÎÇϸ¦ ÁÙÀÏ ¼ö ÀÖ´Â ÇÑ°¡Áö ¹æ¹ýÀÌ µË´Ï´Ù. (±×·¯³ª ½ÇÁ¦·Î´Â inetd·Î »ç¿ëÇÏÁö´Â ¾Ê½À´Ï´Ù DefaultServer on # Port 21 is the standard FTP port. Port 21 # Umask 022 is a good standard umask to prevent new dirs and files # from being group and world writable. Umask 022 # To prevent DoS attacks, set the maximum number of child processes # to 30. If you need to allow more than 30 concurrent connections # at once, simply increase this value. Note that this ONLY works # in standalone mode, in inetd mode you should use an inetd server # that allows you to limit maximum number of processes per service # (such as xinetd) MaxInstances 30 # Set the user and group that the server normally runs at. User nobody Group nogroup //ÀÌ·¸°Ô µÇ¾î ÀÖÀ¸¸é nobody·Î ¹Ù²ß´Ï´Ù. # To cause every FTP user to be "jailed" (chrooted) into their home # directory, uncomment this line. #DefaultRoot ~ DefaultRoot ~ !root // root¸¦ Á¦¿ÜÇÑ Á¢¼ÓÀÚµéÀÌ »óÀ§·Î ¿Ã¶ó °¡Áö ¸øÇÏ°Ô ¸·´Â ºÎºÐÀÔ´Ï´Ù. # Normally, we want files to be overwriteable. <Directory /*> AllowOverwrite on </Directory> # A basic anonymous configuration, no upload directories. <Anonymous ~ftp> User ftp Group ftp # We want clients to be able to login with "anonymous" as well as "ftp" UserAlias anonymous ftp # Limit the maximum number of anonymous logins MaxClients 10 # We want 'welcome.msg' displayed at login, and '.message' displayed # in each newly chdired directory. DisplayLogin welcome.msg DisplayFirstChdir .message # Limit WRITE everywhere in the anonymous chroot <Limit WRITE> DenyAll </Limit> </Anonymous> //¼³Á¤³»¿ë ---------------------------- (TIP) Anonymous °èÁ¤¸¦ À§Çؼ ftp À¯Àú¸¦ »ý¼ºÇؼ °ø°³Æú´õ¸¦ »ý¼³ÇÒ¼öÀÖÀ¸³ª, ¹ÙÀÌ·¯½º³ª º¸¾È¿¡ »ó´çÇÑ ¹®Á¦°¡µÇ¹Ç·Î, read±â´É¸¸ ÁÙ¼öÀÖ´Â DENYALL¹æ½ÄÀ» Çϴ°Կùٸ£´Ù, ÇԺηΠ¼³Á¤¿¡¼ ALLOWALLÀº ÇÏÁö¾Ê´Â°Ô ÁÁ´Ù. |
3. Samba ¼¹ö °³³ä Á¤¸® |
»ï¹Ù(Samba) »ï¹Ù´Â ¸®´ª½º¿Í À©µµ¿ì°£¿¡ ÆÄÀÏ ¹× ÇÁ¸°Å͸¦ °øÀ¯ ÇÒ ¼ö ÀÖ°Ô ÇØÁÖ´Â ÇÁ·Î±×·¥ÀÌ´Ù. »ï¹Ù¸¦ ÅëÇØ ¸®´ª½º ¼¹ö¸¦ Ÿ¿î¿µÃ¼Á¦¿Í ÆÄÀÏÀ» °øÀ¯ÇÒ ¼ö ÀÖ´Â ÆÄÀϼ¹ö·Îµµ »ç¿ëÇÒ ¼ö ÀÖ´Ù. ÀÌ¿Í°°ÀÌ »ï¹Ù°¡ °øÀ¯ÇÒ ¼öÀÖ´Â ÀÌÀ¯´Â SMB(Server Message Block)/CIFS(Common Internet File System)¶ó´Â ÇÁ·ÎÅäÄÝÀ» ÀÌ¿ëÇÔÀ¸·Î½á °¡´ÉÇØÁ³´Ù. SMB ¶õ? SMB(Server Message Block)´Â ¸¶ÀÌÅ©·Î¼ÒÇÁÆ®»ç¿Í ÀÎÅÚÀÌ À©µµ¿ì ½Ã½ºÅÛÀÌ ´Ù¸¥ ½Ã½ºÅÛÀÇ µð½ºÅ©³ª ÇÁ¸°ÅÍ¿Í °°Àº ÀÚ¿øÀ» °øÀ¯ÇÒ ÀÖµµ·ÏÇϱâ À§ÇØ °³¹ßµÈ ÇÁ·ÎÅäÄÝÀÌ´Ù. TCP/IP ±â¹ÝÇÏÀÇ NetBIOS ÇÁ·ÎÅäÄÝÀ» ÀÌ¿ëÇϱ⠶§¹®¿¡ ÀÌ ÇÁ·ÎÅäÄÝÀº NFS, NIS, lpd ¿Í °°Àº À¯´Ð½ºÀÇ ºÐ»êÀÎÁõ±¸Á¶¿Í À¯»çÇÏ´Ù. µû¶ó¼ À©µµ¿ì Áß½ÉÀÇ ³×Æ®¿öÅ© ȯ°æ¿¡¼´Â ¸®´ª½º¸¦ ÀÌ¿ëÇÑ °øÀ¯½Ã½ºÅÛ¿¡¼´Â SMB°¡ ÇʼöÀûÀÌ´Ù. CIFS ¶õ? CIFS(Common Internet File System) ´Â ³×Æ®¿öÅ©¸¦ À§ÇÑ SMB ÆÄÀÏ °øÀ¯ ÇÁ·ÎÅäÄÝÀÇ È®ÀåµÈ ¹öÀüÀ̸ç, À©µµ¿ì¿Í À¯´Ð½º ȯ°æÀ» µ¿½Ã¿¡ Áö¿øÇÏ´Â ÀÎÅͳÝÀÇ Ç¥ÁØ ÆÄÀÏ ±Ô¾àÀÇ ÇÁ·ÎÅäÄÝÀÌ´Ù. CIFS´Â ÀÌÀüÀÇ Æó¼âÀûÀÎ SMB ÇÁ·ÎÅäÄÝ°ú´Â ´Þ¸® CIFS ±Ô¾à Á¤ÀÇ´Â ¿©·¯ À¯´Ð½º ¾÷üÀÇ Âü¿©ÇÏ¿© °áÁ¤µÈ ³»¿ëÀ̱⠶§¹®¿¡ »ï¹Ùµµ ¹öÀüÀÌ ¿Ã¶ó°¨¿¡ µû¶ó(»ï¹Ù ¹öÀü 2.2 ÀÌ»ó) CIFS ±Ô¾àÀ» Àß ÁؼöÇÏ¿© ¾ÈÁ¤¼ºÀÌ »ó´çÈ÷ Çâ»ó µÇ¾ú´Ù.. > º¸Åë ÇÁ¸°ÅÍ ¼¹ö·Î »ç¿ëÇϱâÀ§Çؼ ÇöÀç¿¡µµ ¸¹ÀÌ À¯¿ëÇÏ°í ÀÖ´Ù. |
4. Samba ¼³Ä¡ ¹× ¼³Á¤(µû·Î °¡Áö°íÀÖ´Â REDHAT9.0¿¡¼ ½Ç½À) |
¼³Ä¡µÇ¾îÀÖ´ÂÁö È®ÀÎÇÏ´Â ¹æ¹ý [root@maru root]# rpm -qa | grep samba samba-common-2.2.7a-7.9.0 samba-client-2.2.7a-7.9.0 samba-2.2.7a-7.9.0 redhat-config-samba-1.0.4-1 [root@maru root]# netstat -anp | grep smbd tcp 0 0 0.0.0.0:139 0.0.0.0:* LISTEN 1877/smbdÀÌ¹Ì ¶ç¿öÁ®ÀÖ´Ù. ¼³Á¤ÆÄÀÏ smb.conf ÆÄÀÏ [global] # À©µµ¿ì¿¡¼ ÀÛ¾÷±×·ì°ú °°´Ù. °øÀ¯ÇÏ°íÀÚ ÇÏ´Â ÀÛ¾÷±×·ì À̸§À» ÀÛ¼ºÇÑ´Ù. workgroup = MYGROUP # ÄÄÇ»ÅÍ ¼³¸í Çʵå¿Í °°´Ù. server string = Samba Server # »ï¹Ù¿¡ Á¢¼ÓÇϴ ȣ½ºÆ® º°·Î °³º°ÀûÀÎ ·Î±× ÆÄÀÏÀ» ¸¸µéµµ·Ï ÇÑ´Ù. log file = /var/log/samba/%m.log # »ç¿ëÀÚ ÀÎÁõÀ» °ÅÄ¡Áö ¾Ê°í °øÀ¯ ÀÚ¿ø(Æú´õ)¿¡ Á¢±ÙÇÒ ¼ö ÀÖ°Ô ÇÑ´Ù. security = user # À©µµ¿ìÀÇ ±âº» Æеå¿öµå ¸ðµå´Â encrypted ¸ðµåÀÌ´Ù. encrypt passwords = yes # »ï¹ÙÀÇ ¾ÏÈ£ ¸ðµå°¡ À©µµ¿ì¿Í ȣȯµÇµµ·Ï ¼³Á¤ÇÑ´Ù. smb passwd file = /etc/samba/smbpasswd # Çѱ¹¾î Áö¿øÀ» À§ÇÑ ¼³Á¤ unix charset = cp949 dos charset = cp949 display charset = cp949 client code page = 949 # ´ëºÎºÐÀÇ °æ¿ì ¾Æ·¡ ¿É¼ÇÀ» ÁÖ¸é ¼º´É Ç⼧ È¿°ú¸¦ º¼ ¼ö ÀÖ´Ù. socket options = TCP_NODELAY SO_RCVBUF=8192 SO_SNDBUF=8192 [homes] # °øÀ¯ ÀÚ¿øÀ» ãÀ» ¼ö ¾øÀ» ¶§ »ç¿ëÀÚ µ¥ÀÌÅͺ£À̽º¸¦ ã¾Æ¼ ÇØ´ç »ç¿ëÀÚ¿¡ ´ëÇÑ °øÀ¯ ÀÚ¿øÀ» ¸¸µé¾îÁÖ´Â ±âº» ¼½¼ÇÀÌ´Ù. # °øÀ¯ ÀÚ¿ø¿¡ ´ëÇÑ ¼³¸í Çʵå¿Í °°´Ù. comment = Home Directories # À©µµ¿ì ³×Æ®¿öÅ© ºê¶óÀÌÀú¿¡¼ µð·ºÅ丮¸¦ º¸ÀÏ °ÍÀÎÁö¸¦ °áÁ¤ÇÑ´Ù. browseable = no # »ç¿ëÀÚ¿¡°Ô ¾²±â±ÇÇÑÀ» ÁÝ´Ï´Ù. writable = yes [public] # À©µµ¿ì¿¡¼ º¸ÀÌ´Â °øÀ¯ ÀÚ¿ø(Æú´õ) À̸§ÀÌ´Ù. # °øÀ¯ÀÚ¿ø¿¡ ´ëÇÑ ¼³¸í Çʵå¿Í °°´Ù. comment = Public Stuff # »ï¹Ù ¼¹ö·Î °øÀ¯ÇÒ ½ÇÁ¦ °øÀ¯ ÀÚ¿ø(Æú´õ) ÀÌ´Ù. path = /home/public # ¼Õ´Ô»ç¿ëÀÚ¿¡°Ô Á¢±ÙÀ» Çã¿ëÇÑ´Ù. public = yes # »ç¿ëÀÚ¿¡°Ô ¾²±â±ÇÇÑÀ» ÁÝ´Ï´Ù. writable = yes < windowsȯ°æ¿¡¼ Á¢¼ÓÇϱâÀ§Çؼ´Â ¼³Á¤ÆÄÀϾÈÀÇ public ¼³Á¤À» À߸ÂÃç¾ßÇÑ´Ù.> |
5. NFS °³³äÁ¤¸® ¹× ¼³Ä¡ |
NFS(Network File System)´Â ÆÄÀϽýºÅÛÀ» ÄÄÇ»Åͳ¢¸® °øÀ¯ÇÒ ¼ö ÀÖ°Ô ÇØÁÖ´Â ¼ºñ½ºÀÌ´Ù. Áï, ¿©·¯ ´ëÀÇ ÄÄÇ»ÅÍ(NFS Ŭ¶óÀ̾ðÆ®)°¡ Å« ¿ë·®ÀÇ Çϵåµð½ºÅ©¸¦ °¡Áø ÄÄÇ»ÅÍ(NFS ¼¹ö)·ÎºÎÅÍ ¼¹öÀÇ Çϵå¿þ¾î³ª ¿î¿µÃ¼Á¦¿¡ °ü°è¾øÀÌ ÆÄÀϽýºÅÛÀ» °¡Á®´Ù ¸¶Ä¡ ÀÚ½ÅÀÇ ÆÄÀÏ ½Ã½ºÅÛÀÎ °Íó·³ »ç¿ëÇÒ ¼ö ÀÖ°Ô ÇØÁÖ´Â °ÍÀÌ NFSÀÇ ±âº» °³³äÀÌ´Ù. ³×Æ®¿þ¾î³ª NT, À©µµ¿ì 95¿¡¼ÀÇ ÆÄÀÏ °øÀ¯¸¦ Á¢Çغ» ÀÏÀÌ ÀÖ´Â »ç¶÷Àº ½±°Ô ÀÌÇØÇÒ °ÍÀÌ´Ù. ÀÌ·¯ÇÑ NFSÀÇ °³³äÀº ÀûÀº ¿ë·®ÀÇ µð½ºÅ©¸¦ °¡Áø, ¶Ç´Â ¾Æ¿¹ ±×°ÍÁ¶Â÷µµ ¾ø´Â Ŭ¶óÀ̾ðÆ®¸¦ ³ªÅ¸³ª°Ô ÇÏ¿´´Ù. ±×¸®°í À̵éÀÌ NFS ¼¹öÀÇ ´ë¿ë·® ÆÄÀÏ ½Ã½ºÅÛÀ» °øÀ¯ÇÒ ¼ö ÀÖ°Ô µÊÀ¸·Î½á ¾Æ¹«·± ºÒÆí ¾øÀÌ Àú·ÅÇÏ°Ô ½Ã½ºÅÛÀ» »ç¿ëÇÒ ¼ö ÀÖµµ·Ï ÇÏ´Â ÆÄ±Þ È¿°ú¸¦ ³º±âµµ ÇÏ¿´´Ù. NFS´Â 1985³â ½ã(Sun Microsystems)»ç°¡ µµÀÔÇß´Ù. ¿ø·¡´Â Çϵåµð½ºÅ©°¡ ¾ø´Â Ŭ¶óÀ̾ðÆ®¸¦ ±¸ÇöÇϱâ À§ÇØ µµÀÔÇß¾úÁö¸¸, Áö±ÝÀº ¸®´ª½º¸¦ Æ÷ÇÔÇÑ ´ëºÎºÐÀÇ À¯´Ð½º°¡ ¾î¶² ÇüÅ·εçÁö NFS¸¦ ±¸ÇöÇÏ°í ÀÖÀ» Á¤µµ·Î À¯´Ð½º¿¡¼ÀÇ ´ëÇ¥ÀûÀÎ ÆÄÀÏ °øÀ¯ ¹æ¹ýÀÌ µÇ¾ú´Ù. ±×¸®°í, ÀÌ·± NFSÀÇ À¯¸íÇÔ ¶§¹®¿¡ À¯´Ð½º¸¸ÀÌ ¾Æ´Ï¶ó µµ½º¸¦ ºñ·ÔÇÑ °ÅÀÇ ¸ðµç OS¿¡¼µµ NFS¸¦ ¾µ ¼ö ÀÖ´Ù ¼³Ä¡µÈ nfs [root@maru samba]# rpm -qa | grep nfs redhat-config-nfs-1.0.4-5 nfs-utils-1.0.1-2.9 ¼¹öÃø(NFS¸¦ ÅëÇØ ¼ºñ½º Á¦°ø) [root@maru /down]# wget ftp://ftp.rpmfind.net/linux/redhat/6.2/en/os/i386/RedHat/RPMS//nfs-utils-0.1.6-2.i386.rpm [root@dev2 /down]# rpm -ivh nfs-utils-0.1.6-2.i386.rpm nfs-utils ################################################## [root@maru /etc]# mount -t iso9660 /dev/cdrom /mnt/cdrom [root@dmaru /etc]# cat > /etc/exports /mnt/cdrom 211.41.23.236(ro) [root@dev2 /down]# cd /etc/rc.d [root@dev2 init.d]# ./nfs start Starting NFS services: [ OK ] Starting NFS quotas: [ OK ] Starting NFS mountd: [ OK ] Starting NFS daemon: [ OK ] Ŭ¶óÀ̾ðÆ®Ãø [root@ns /down]# mount -t nfs 211.41.23.252:/mnt/cdrom /mnt/cdrom [root@ns /down]# cd /mnt/cdrom [root@ns cdrom]# l total 82 -r--r--r-- 1 root root 926 Sep 30 1998 00_TRANS.TBL -rw-r--r-- 1 kang root 1257 Sep 30 1998 DST.LST -rw-r--r-- 1 kang root 32 Sep 30 1998 RELDESC.TXT drwxr-xr-x 2 kang root 10240 Sep 30 1998 bin/ drwxr-xr-x 6 kang root 2048 Sep 30 1998 jdbc/ drwxr-xr-x 2 kang root 8192 Sep 30 1998 lib/ drwxr-xr-x 8 kang root 2048 Sep 30 1998 network/ drwxr-xr-x 4 kang root 2048 Sep 30 1998 nlsrtl/ drwxr-xr-x 4 kang root 2048 Sep 30 1998 ocommon/ drwxr-xr-x 6 kang root 2048 Sep 30 1998 oemagent/ drwxr-xr-x 4 kang root 2048 Sep 30 1998 oracore/ drwxr-xr-x 4 kang root 14336 Sep 30 1998 orainst/ drwxr-xr-x 3 kang root 2048 Sep 30 1998 ord/ drwxr-xr-x 8 kang root 2048 Sep 30 1998 otrace/ drwxr-xr-x 9 kang root 2048 Sep 30 1998 plsql/ drwxr-xr-x 9 kang root 2048 Sep 30 1998 precomp/ drwxr-xr-x 10 kang root 2048 Sep 30 1998 rdbms/ drwxr-xr-x 4 kang root 2048 Sep 30 1998 slax/ drwxr-xr-x 8 kang root 2048 Sep 30 1998 sqlplus/ drwxr-xr-x 6 kang root 2048 Sep 30 1998 svrmgr/ -rw-r--r-- 1 kang root 11484 Sep 30 1998 unix.prd drwxr-xr-x 4 kang root 2048 Sep 30 1998 unixdoc/ This article comes from dbakorea.pe.kr (Leave this line as is) |
6. SSH °³³ä Á¤¸® ¹× ¼³Ä¡ |
ssh´Â Secure ShellÀÇ ¾àÀÚ·Î ½±°Ô »ý°¢Çϸé Àü¼ÛµÇ´Â ÆÐŶÀ» ¾ÏȣȽÃÄÑ ³×Æ®¿÷»ó¿¡ ¶°µ¹¾Æ ´Ù´Ï´Â ÆÐŶÀ» ¾î¶² ³ðÀÌ ½º´ÏÆÛÇÏ´õ¶óµµ ±× ³»¿ëÀÌ ¹«¾ùÀÎÁö ÆľÇÇϱ⠰ï¶õÇÏ°Ô ÇÑ´Ù. ½ÇÁ¦ TCP/IPÀÇ ÀÚü°áÇÔÀ¸·Î ÀÎÇØ ³×Æ®¿÷»óÀÇ ÆÐŶÀ» Àâ¾Æ¼ º¸´Â °ÍÀº ±×¸® ¾î·Á¿î ÀÏÀÌ ¾Æ´Ï´Ù. ±×³É ½º´ÏÆÛÅøÀ» »ç¿ëÇÏ¸é µË´Ï´Ù. SSH´Â OpenSSH(www.openssh.com)¸¦ »ç¿ëÇß´Ù. OpenSSH´Â ¼³Ä¡½Ã OpenSSL(www.openssl.org)À̳ª SSLeay¸¦ ÇÊ¿ä·Î ÇÑ´Ù. ¿©±â¼´Â OpenSSLÀ» »ç¿ëÇÏ°Ú´Ù. SSL(Secure Socket Layer)Àº ¾ÏȣȰü·Ã¶óÀ̺귯¸®¶ó°í »ý°¢ÇÏ¸é µÇ°Ú´Ù. OpenSSH¼³Ä¡ configure, make, make install·Î ³¡³´Ù. % tar xvzf openssh-2.3.0p1.tgz -C /usr/local/src % cd /usr/local/src/openssh-2.3.0p1 % ./configure --prefix=/usr/local/openssh (³ªÁß¿¡ uninstallÇϱ⠽±°Ô µð·ºÅ丮¸¦ ÁöÁ¤ÇÏÀÚ) % make % make install À§ÀÇ °úÁ¤À» °ÅÄ¡¸é /usr/local/openssh¿¡ ¸ðµç ÆÄÀÏÀÌ µé¾î°£´Ù. OpenSSH½ÇÇà ÀÏ´Ü ssh¸¦ »ç¿ëÇÏ·Á¸é ¼¹ö¿Í Ŭ¶óÀ̾ðÆ®°¡ ÀÖ´Â °ÍÀº ´ç¿¬ÇÏ´Ù. ÀÚ½ÅÀÇ ÄÄÇ»ÅÍ°¡ ¼¹ö·Î »ç¿ëµÉ °ÍÀ̶ó¸é /usr/local/openssh/sbin¿¡ ÀÖ´Â sshd¸¦ ½ÇÇà½ÃŲ´Ù. µ¥¸óÀ̹ǷΠ±×³É sshd¸¸ ÀÔ·ÂÇÏ°í ¿£ÅÍÅ°¸¦ Ä¡¸é ¾Ë¾Æ¼ ¹é±×¶ó¿îµå·Î µ¹¾Æ°£´Ù. % cd /usr/local/openssh/sbin % sshd ÀÌÁ¦ ¼¹ö°¡ ½ÇÇàÁßÀÌ´Ù. Ŭ¶óÀ̾ðÆ®·Î ÀÌ ³ðÀÇ ¼¹ö¿¡ Á¢¼ÓÇغ¸ÀÚ. Á¢¼ÓÀº °ø°³Å°¹æ½ÄÀ¸·Îµµ °¡´ÉÇϳª, º»ÀÎÀº Æнº¿öµå¹æ½ÄÀ¸·Î Á¢¼ÓÇß´Ù. »ç½Ç °ø°³Å°¹æ½ÄÀ¸·Î ÇÏ´Â ¹ýÀº ¹øÀ⽺·¯¿ö¼... Èì.. Áß¿äÇÑ »ç½ÇÀº ¸®´ª½ºÀÇ °æ¿ì ´ëºÎºÐ PAM¹æ½ÄÀ¸·Î »ç¿ëÀÚ ÀÎÁõÀ» ¹Þ´Â´Ù´Â °ÍÀÌ´Ù. µû¶ó¼ ±×³É ssh·Î ¿¬°áÇÏ¸é ½ÊÁßÆȱ¸ ÀÎÁõ½ÇÆа¡ ¹ß»ýÇÑ´Ù. ¼¹ö·Î Á¢¼ÓÇϱâ Àü¿¡, ssh¿¡¼ pamÀÎÁõÀ» »ç¿ëÇϱâ À§ÇØ ¾Æ·¡¿Í °°ÀÌ ÇØÁØ´Ù. cp /usr/local/src/openssh-2.3.0p1/contrib/sshd.pam.generic /etc/pam.d/sshd ÀÌÁ¦ ÀÎÁõ¹æ½Äµµ Á¦´ë·Î ¼³Á¤ÀÌ µÇ¾ú´Ù. ´ÙÀ½°ú °°ÀÌ ÇÏ¿© Á¢¼ÓÅ×½ºÆ® Çغ»´Ù. [root@maru samba]# ssh localhost The authenticity of host 'localhost (127.0.0.1)' can't be established. RSA key fingerprint is fa:51:c8:5c:50:2f:ae:5b:17:2d:ed:f0:84:26:c7:16. Are you sure you want to continue connecting (yes/no)? yes °³ÀÎÀûÀ¸·Î ssh´Â sshÀü¿ëÁ¢¼ÓÇÁ·Î±×·¥(Putty)¸¦ ÀÌ¿ëÇϳª, telnet¿¡¼´Â ssh -l maruni(¾ÆÀ̵ð) 163.239.17.189(IP)ÀÌ·±½ÄÀ¸·Î ÀÚÁÖ ¾´´Ù. |
¸ÇÀ§·Î |
1.ftp ¼ºñ½º |
2. proftpd ¼¹ö |
3.Samba ¼¹ö |
4.Samba ¼³Ä¡ ¹× ¼³Á¤ |
5.NFS |
6. SSH |
¸Ç¾Æ·¡·Î |
À̵¿ |