1、DR模式下vip不在同一网段上实现过程(跨网段)
环境准备
五台主机
Internet:192.168.1.6/24 GW:192.168.1.200 仅主机
Router:
eth1 192.168.1.200/24 仅主机
eth0 10.0.0.0.200/24 NAT
eth0:1 172.16.0.200/24
启用 IP_FORWARD
lvs:
DIP:10.0.0.8/24 GW:10.0.0.200 NAT
RS:
RS1 RIP1:10.0.0.7/24 GW:10.0.0.200 NAT
RS2 RIP2:10.0.0.17/24 GW:10.0.0.200 NAT
配置过程
#Internet 配置
[root@Internet ~]# cat /etc/sysconfig/network-scripts/ifcfg-eth0
DEVICE=eth0
NAME=eth0
TYPE=Ethernet
ONBOOT=yes
BOOTPROTO=none
IPADDR=192.168.1.6
PREFIX=24
GATEWAY=192.168.1.200
#router 配置
[root@router ~]# echo 'net.ipv4.ip_forward = 1' >> /etc/sysctl.conf
[root@router ~]# sysctl -p
[root@router network-scripts]# cat ifcfg-eth0
TYPE="Ethernet"
BOOTPROTO="none"
NAME="eth0"
DEVICE="eth0"
ONBOOT="yes"
IPADDR=10.0.0.200
PREFIX=24
[root@router network-scripts]# cat ifcfg-eth1
TYPE="Ethernet"
BOOTPROTO="none"
NAME="eth1"
DEVICE="eth1"
ONBOOT="yes"
IPADDR=192.168.1.200
PREFIX=24
[root@Internet ~]# route -n
Kernel IP routing table
Destination Gateway Genmask Flags Metric Ref Use Iface
192.168.1.0 0.0.0.0 255.255.255.0 U 0 0 0 eth0
169.254.0.0 0.0.0.0 255.255.0.0 U 1002 0 0 eth0
0.0.0.0 192.168.1.200 0.0.0.0 UG 0 0 0 eth0
#router 添加IP地址:172.16.0.200/24
#方式一
[root@Router ~]#nmcli connection modify eth0 +ipv4.addresses 172.16.0.200/24
[root@Router ~]#nmcli connection reload
[root@Router ~]#nmcli connection up eth0
#方式二
[root@router ~]# ip addr add 172.16.0.200/24 dev eth0
[root@router ~]# ip a
1: lo: <LOOPBACK,UP,LOWER_UP> mtu 65536 qdisc noqueue state UNKNOWN group default qlen 1000
link/loopback 00:00:00:00:00:00 brd 00:00:00:00:00:00
inet 127.0.0.1/8 scope host lo
valid_lft forever preferred_lft forever
inet6 ::1/128 scope host
valid_lft forever preferred_lft forever
2: eth0: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc fq_codel state UP group default qlen 1000
link/ether 00:50:56:21:5d:40 brd ff:ff:ff:ff:ff:ff
inet 10.0.0.200/24 brd 10.0.0.255 scope global noprefixroute eth0
valid_lft forever preferred_lft forever
inet 172.16.0.200/24 scope global eth0
valid_lft forever preferred_lft forever
inet6 fe80::250:56ff:fe21:5d40/64 scope link
valid_lft forever preferred_lft forever
3: eth1: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc fq_codel state UP group default qlen 1000
link/ether 00:0c:29:c4:7b:a8 brd ff:ff:ff:ff:ff:ff
inet 192.168.1.200/24 brd 192.168.1.255 scope global noprefixroute eth1
valid_lft forever preferred_lft forever
inet6 fe80::20c:29ff:fec4:7ba8/64 scope link
valid_lft forever preferred_lft forever
[root@router ~]# hostname -I
10.0.0.200 172.16.0.200 192.168.1.200
[root@lvs ~]# hostname -I
10.0.0.8
[root@lvs ~]# route -n
Kernel IP routing table
Destination Gateway Genmask Flags Metric Ref Use Iface
0.0.0.0 10.0.0.200 0.0.0.0 UG 100 0 0 eth0
10.0.0.0 0.0.0.0 255.255.255.0 U 100 0 0 eth0
#LVS增加VIP
[root@lvs ~]# ifconfig lo:1 172.16.0.100/32
[root@lvs ~]# ip a
1: lo: <LOOPBACK,UP,LOWER_UP> mtu 65536 qdisc noqueue state UNKNOWN group default qlen 1000
link/loopback 00:00:00:00:00:00 brd 00:00:00:00:00:00
inet 127.0.0.1/8 scope host lo
valid_lft forever preferred_lft forever
inet 172.16.0.100/0 scope global lo:1
valid_lft forever preferred_lft forever
inet6 ::1/128 scope host
valid_lft forever preferred_lft forever
2: eth0: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc fq_codel state UP group default qlen 1000
link/ether 00:0c:29:b9:c2:5f brd ff:ff:ff:ff:ff:ff
inet 10.0.0.8/24 brd 10.0.0.255 scope global noprefixroute eth0
valid_lft forever preferred_lft forever
inet6 fe80::20c:29ff:feb9:c25f/64 scope link
valid_lft forever preferred_lft forever
#LVS 增加VIP规则
[root@lvs ~]# ipvsadm -A -t 172.16.0.100:80 -s rr
[root@lvs ~]# ipvsadm -a -t 172.16.0.100:80 -r 10.0.0.7:80 -w 1
[root@lvs ~]# ipvsadm -a -t 172.16.0.100:80 -r 10.0.0.17:80 -w 1
#RS主机增加VIP
[root@rs1 ~]# echo 1 > /proc/sys/net/ipv4/conf/all/arp_ignore
[root@rs1 ~]# echo 1 > /proc/sys/net/ipv4/conf/lo/arp_ignore
[root@rs1 ~]# echo 2 > /proc/sys/net/ipv4/conf/all/arp_announce
[root@rs1 ~]# echo 2 > /proc/sys/net/ipv4/conf/lo/arp_announce
[root@rs1 ~]# ifconfig lo:1 172.16.0.100/32
[root@rs1 ~]# ip a
1: lo: <LOOPBACK,UP,LOWER_UP> mtu 65536 qdisc noqueue state UNKNOWN group default qlen 1000
link/loopback 00:00:00:00:00:00 brd 00:00:00:00:00:00
inet 127.0.0.1/8 scope host lo
valid_lft forever preferred_lft forever
inet 172.16.0.100/0 scope global lo:1
valid_lft forever preferred_lft forever
inet6 ::1/128 scope host
valid_lft forever preferred_lft forever
2: eth0: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast state UP group default qlen 1000
link/ether 00:0c:29:24:f8:b4 brd ff:ff:ff:ff:ff:ff
inet 10.0.0.7/24 brd 10.0.0.255 scope global noprefixroute eth0
valid_lft forever preferred_lft forever
inet6 fe80::20c:29ff:fe24:f8b4/64 scope link
valid_lft forever preferred_lft forever
#访问测试
[root@Internet ~]# curl 172.16.0.100
10.0.0.7 RS1
[root@Internet ~]# curl 172.16.0.100
10.0.0.17 RS2
[root@Internet ~]# curl 172.16.0.100
10.0.0.7 RS1
[root@Internet ~]# curl 172.16.0.100
10.0.0.17 RS2
2、CentOS7.6 中 nfs 客户端使用 /etc/fatab 实现开机自动挂载
[root@c8-18 ~]# vim /etc/fstab
#追加
10.0.0.18:/mnt/nfs /data/nfs nfs defaults,_netdev 0 0
3、CentOS7.6 中 nfs 客户端使用 autofs 实现使用 nfs 时实时挂载
0 案例:将NFS 的共享目录,通过autofs 发布出来,作为远程主机用户的家目录
1 环境准备
三台主机
nfs server:10.0.0.8/24
nfs client:
client1:10.0.0.7/24
client2:10.0.0.6/24
2 实现步骤
#nfs 服务器创建用户和相应的家目录,并将用户dawn 的家目录共享
[root@c8-18 ~]# mkdir -pv /data/home
mkdir: created directory '/data/home'
[root@c8-18 ~]# useradd -d /data/home/nfsuser -u 2000 nfsuser
[root@c8-18 ~]# echo "/data/home *(rw)" > /etc/exports.d/nfstest.exports
[root@c8-18 ~]# exportfs -r
[root@c8-18 ~]# systemctl start nfs-server.service
#在nfs-client1:10.0.0.7 上实现相对路径的autofs
[root@c7-7 ~]# vim /etc/auto.master
/home /etc/auto.home
#/misc /etc/auto.misc
[root@c7-7 ~]# vim /etc/auto.home
* -fstype=nfs,vers=3 10.0.0.18:/data/home/&
#检测同步
[root@c7-7 ~]# su - nfsuser
Last login: Sun Nov 8 17:15:12 CST 2020 on pts/0
[nfsuser@c7-7 ~]$ pwd
/home/nfsuser
[nfsuser@c7-7 ~]$ df /home/nfsuser -T
Filesystem Type 1K-blocks Used Available Use% Mounted on
10.0.0.18:/data/home/nfsuser nfs 31441920 252160 31189760 1% /home/nfsuser
[nfsuser@c7-7 ~]$ ls /home
nfsuser
#在nfs-client2:10.0.0.17 上实现绝对路径的autofs
#检测nfs服务是否连接上
[root@c6-6 ~]# showmount -e 10.0.0.18
Export list for 10.0.0.18:
/data/home *
#配置文件
[root@c6-6 ~]# vim /etc/auto.master
/- /etc/auto.home
#/misc /etc/auto.misc
[root@c6-6 ~]# vim /etc/auto.home
/home/nfsuser -fstype=nfs,vers=3 10.0.0.18:/data/home/nfsuser
[root@c6-6 ~]# service autofs restart
#测试
[nfsuser@c6-6 ~]$ pwd
/home/nfsuser
[nfsuser@c6-6 ~]$ df -T /home/nfsuser
Filesystem Type 1K-blocks Used Available Use% Mounted on
10.0.0.18:/data/home/nfsuser
nfs 31441920 252160 31189760 1% /home/nfsuser
[nfsuser@c6-6 ~]$ ls /home
nfsuser