- cobbler简介
Cobbler是一个Linux服务器安装的服务,可以通过网络启动(PXE)的方式来快速安装、重装物理服务器和虚拟机,同时还可以管理DHCP,DNS等。
Cobbler可以使用命令行方式管理,也提供了基于Web的界面管理工具(cobbler-web),还提供了API接口,可以方便二次开发使用。
Cobbler是较早前的kickstart的升级版,优点是比较容易配置,还自带web界面比较易于管理。
Cobbler内置了一个轻量级配置管理系统,但它也支持和其它配置管理系统集成,如Puppet,暂时不支持SaltStack。
链接: Cobbler官网.
cobbler集成的服务
PXE服务支持
DHCP服务管理
DNS服务管理(可选bind,dnsmasq)
电源管理
Kickstart服务支持
YUM仓库管理
TFTP(PXE启动时需要)
Apache(提供kickstart的安装源,并提供定制化的kickstart配置)
cobbler配置文件详解
cobbler配置文件目录在/etc/cobbler
配置文件 | 作用 |
---|---|
/etc/cobbler/settings | cobbler 主配置文件 |
/etc/cobbler/iso/ | iso模板配置文件 |
/etc/cobbler/pxe | pxe模板配置文件 |
/etc/cobbler/power | 电源配置文件 |
/etc/cobbler/user.conf | web服务授权配置文件 |
/etc/cobbler/users.digest | web访问的用户名密码配置文件 |
/etc/cobbler/dhcp.template | dhcp服务器的的配置模板 |
/etc/cobbler/dnsmasq.template | dns服务器的配置模板 |
/etc/cobbler/tftpd.template | tftp服务的配置模板 |
/etc/cobbler/modules.conf | 模块的配置文件 |
cobbler数据目录
目录 | 作用 |
---|---|
/var/lib/cobbler/config/ | 用于存放distros,system,profiles等信息配置文件 |
/var/lib/cobbler/triggers/ | 用于存放用户定义的cobbler命令 |
/var/lib/cobbler/kickstart/ | 默认存放kickstart文件 |
/var/lib/cobbler/loaders/ | 存放各种引导程序以及镜像目录 |
/var/www/cobbler/ks_mirror/ | 导入的发行版系统的所有数据 |
/var/www/cobbler/images/ | 导入发行版的kernel和initrd镜像用于远程网络启动 |
/var/www/cobbler/repo_mirror/ | yum仓库存储目录 |
cobbler日志文件
日志文件路径 | 说明 |
---|---|
/var/log/cobbler/installing | 客户端安装日志 |
/var/log/cobbler/cobbler.log | cobbler日志 |
cobbler命令详解
命令 | 作用 |
---|---|
cobbler check | 核对当前设置是否有问题 |
cobbler list | 列出所有的cobbler元素 |
cobbler report | 列出元素的详细信息 |
cobbler sync | 同步配置到数据目录,更改配置最好都要执行下 |
cobbler reposync | 同步yum仓库 |
cobbler distro | 查看导入的发行版系统信息 |
cobbler system | 查看添加的系统信息 |
cobbler profile | 查看配置信息 |
- cobbler服务端部署
//配置yum源
[root@yeqixian ~]# curl -o /etc/yum.repos.d/CentOS7-Base-163.repo http://mirrors.163.com/.help/CentOS7-Base-163.repo
% Total % Received % Xferd Average Speed Time Time Time Current
Dload Upload Total Spent Left Speed
0 0 0 0 0 0 0 0 --:--:-- -- 76 1572 76 1201 0 0 1232 0 0:00:01 --100 1572 100 1572 0 0 1612 0 --:--:-- --:--:-- --:--:-- 1612
[root@yeqixian ~]# ls /etc/yum.repos.d/
CentOS7-Base-163.repo CentOS-fasttrack.repo
CentOS-Base.repo CentOS-Media.repo
CentOS-CR.repo CentOS-Sources.repo
CentOS-Debuginfo.repo CentOS-Vault.repo
[root@yeqixian ~]# cd /etc/yum.repos.d/
[root@yeqixian yum.repos.d]# mv CentOS-* /opt/
[root@yeqixian yum.repos.d]# ls
CentOS7-Base-163.repo
[root@yeqixian yum.repos.d]# sed -i 's/\$releasever/7/g' /etc/yum.repos.d/CentOS7-Base-163.repo
[root@yeqixian yum.repos.d]# sed -i 's/^enabled=.*/enabled=1/g' /etc/yum.repos.d/CentOS7-Base-163.repo(根据情况设置)
[root@yeqixian yum.repos.d]# yum -y install epel-release
[root@yeqixian yum.repos.d]# yum clean all
Loaded plugins: fastestmirror
Cleaning repos: base epel extras updates
Cleaning up everything
Maybe you want: rm -rf /var/cache/yum, to also free up space taken by orphaned data from disabled or removed repos
Cleaning up list of fastest mirrors
[root@yeqixian yum.repos.d]# yum makecache fast
//安装cobbler以及相关的软件
[root@yeqixian yum.repos.d]# yum -y install httpd dhcp tftp python-ctypes cobbler xinetd cobbler-web pykickstart vim
//启动服务并设置开机自启
[root@yeqixian yum.repos.d]# systemctl enable --now httpd
Created symlink from /etc/systemd/system/multi-user.target.wants/httpd.service to /usr/lib/systemd/system/httpd.service.
[root@yeqixian yum.repos.d]# systemctl enable --now cobblerd
Created symlink from /etc/systemd/system/multi-user.target.wants/cobblerd.service to /usr/lib/systemd/system/cobblerd.service.
[root@yeqixian yum.repos.d]# ss -antl
State Recv-Q Send-Q Local Address:Port Peer Address:Port
LISTEN 0 5 127.0.0.1:25151 *:*
LISTEN 0 128 *:22 *:*
LISTEN 0 100 127.0.0.1:25 *:*
LISTEN 0 128 :::80 :::*
LISTEN 0 128 :::22 :::*
LISTEN 0 100 ::1:25 :::*
LISTEN 0 128 :::443 :::*
//编辑cobbler主配置文件
[root@yeqixian yum.repos.d]# vim /etc/cobbler/settings
next_server: 192.168.116.145(本机ip)
server: 192.168.116.145
[root@yeqixian yum.repos.d]# vim /etc/xinetd.d/tftp
disable = no
//下载缺失文件
[root@yeqixian ~]# cobbler get-loaders
。。。
*** TASK COMPLETE ***
//启动rsync并设置开机自启
[root@yeqixian ~]# systemctl enable --now rsyncd
//生成加密的密码
[root@yeqixian ~]# openssl passwd -1 -salt "$RANDOM" 'yeqixian'
$1$23458$/i6mOG9jQrqVRDHqIhDpF0 //这是密码加密后的形式
//将新生成的加密密码加入到配置文件
[root@yeqixian ~]# vim /etc/cobbler/settings
default_password_crypted: "$1$23458$/i6mOG9jQrqVRDHqIhDpF0"
//重启cobbler
[root@yeqixian ~]# systemctl restart cobblerd
[root@yeqixian ~]# ss -antl
State Recv-Q Send-Q Local Address:Port Peer Address:Port
LISTEN 0 5 127.0.0.1:25151 *:*
LISTEN 0 5 *:873 *:*
LISTEN 0 128 *:22 *:*
LISTEN 0 100 127.0.0.1:25 *:*
LISTEN 0 5 :::873 :::*
LISTEN 0 128 :::80 :::*
LISTEN 0 128 :::22 :::*
LISTEN 0 100 ::1:25 :::*
LISTEN 0 128 :::443 :::*
//通过cobbler check 核对当前设置是否有问题
[root@yeqixian ~]# cobbler check
The following are potential configuration items that you may want to fix:
1 : debmirror package is not installed, it will be required to manage debian deployments and repositories
2 : fencing tools were not found, and are required to use the (optional) power management features. install cman or fence-agents to use them
Restart cobblerd and then run 'cobbler sync' to apply changes.
以上两个是关于debian系统的错误,请忽略
//配置cobbler dhcp
//修改cobbler配置文件,让cobbler控制dhcp
[root@yeqixian ~]# sed -i '/^manage_dhcp/s/0/1/g' /etc/cobbler/settings
[root@yeqixian ~]# sed -n '/^manage_dhcp/p' /etc/cobbler/settings
manage_dhcp: 1
//配置dhcp
[root@yeqixian ~]# vim /etc/cobbler/dhcp.template
subnet 192.168.116.0 netmask 255.255.255.0 {
option routers 192.168.116.145;
option domain-name-servers 114.114.114.114;
option subnet-mask 255.255.255.0;
range dynamic-bootp 192.168.116.190 192.168.116.200;(范围)
[root@yeqixian ~]# systemctl restart cobblerd
[root@yeqixian ~]# cobbler sync
。。。
*** TASK COMPLETE ***
[root@yeqixian ~]# yum -y install net-tools
[root@yeqixian ~]# netstat -anulp|grep dhcp
udp 0 0 0.0.0.0:67 0.0.0.0:* 1391/dhcpd
//导入redhat7镜像
[root@yeqixian ~]# mount /dev/cdrom /mnt
mount: /dev/sr0 is write-protected, mounting read-only
[root@yeqixian ~]# cobbler import --path=/mnt --name=rhel-7 --arch=x86_64
。。。
*** TASK COMPLETE ***
--path //镜像路径
--name //为安装源定义一个名字
--arch //指定安装源平台
[root@yeqixian ~]# cobbler list
distros:
rhel-7-x86_64
profiles:
rhel-7-x86_64
systems:
repos:
images:
mgmtclasses:
packages:
files:
//创建kickstarts自动安装脚本
[root@yeqixian ~]# vim /var/lib/cobbler/kickstarts/rhel-7-x86_64.ks
auth --enableshadow --passalgo=sha512
bootloader --location=mbr
clearpart --all --initlabel
part /boot --asprimary --fstype="ext4" --size=500
part swap --fstype="swap" --size=4096
part / --fstype="ext4" --grow --size=15000
text
firewall --disabled
firstboot --disable
keyboard us
lang en_US
url --url=http://192.168.116.145/cobbler/ks_mirror/rhel-7-x86_64
$yum_repo_stanza
reboot
rootpw --iscrypted $6$TEvqk4eyUJzyP10r$gr3tedr2.dzT6sZ0iwEcdv89VZ38.hb.fsQWXSbkVjeT7yk07V8LOQtscuTx.PgnFDoHyLqdgzjRxCfYwVCCq0
selinux --disabled
skipx
timezone Asia/Shanghai --isUtc --nontp
install
zerombr
%packages
@^minimal
@core
kexec-tools
%end
%addon com_redhat_kdump --enable --reserve-mb='auto'
%end
%anaconda
pwpolicy root --minlen=6 --minquality=1 --notstrict --nochanges --notempty
pwpolicy user --minlen=6 --minquality=1 --notstrict --nochanges --emptyok
pwpolicy luks --minlen=6 --minquality=1 --notstrict --nochanges --notempty
%end
//检查ks文件语法是否有误
[root@yeqixian ~]# cobbler validateks
//查看当前cobbler有哪些配置文件
[root@yeqixian ~]# cobbler profile list
rhel-7-x86_64
//修改profile,将我们新建的ks文件设为默认的kickstarts安装文件
[root@yeqixian ~]# cobbler profile edit --name rhel-7-x86_64 --kickstart=/var/lib/cobbler/kickstarts/rhel-7-x86_64.ks
//配置网卡名称为传统网卡名称eth0
[root@yeqixian ~]# cobbler profile edit --name rhel-7-x86_64 --kopts='net.ifnames=0 biosdevname=0'
//检查当前系统cobbler配置文件信息
[root@yeqixian ~]# cobbler profile report
//同步cobbler
[root@yeqixian ~]# cobbler sync
。。。
*** TASK COMPLETE ***
[root@yeqixian ~]# systemctl restart xinetd cobblerd httpd
[root@yeqixian ~]# ss -antl
State Recv-Q Send-Q Local Address:Port Peer Address:Port
LISTEN 0 5 127.0.0.1:25151 *:*
LISTEN 0 5 *:873 *:*
LISTEN 0 128 *:22 *:*
LISTEN 0 100 127.0.0.1:25 *:*
LISTEN 0 5 :::873 :::*
LISTEN 0 128 :::80 :::*
LISTEN 0 128 :::22 :::*
LISTEN 0 100 ::1:25 :::*
LISTEN 0 128 :::443 :::*
//导入rhel-8.2-x86_64镜像
[root@yeqixian ~]# mount /dev/cdrom /mnt
mount: /dev/sr0 is write-protected, mounting read-only
[root@yeqixian ~]# cobbler import --path=/mnt --name=rhel-8 --arch=x86_64
。。。
*** TASK COMPLETE ***
--path //镜像路径
--name //为安装源定义一个名字
--arch //指定安装源平台
[root@yeqixian ~]# cobbler list
distros:
rhel-7-x86_64
rhel-8-x86_64
profiles:
rhel-7-x86_64
rhel-8-x86_64
//创建kickstarts自动安装脚本
[root@yeqixian ~]# vim /var/lib/cobbler/kickstarts/rhel-8-x86_64.ks
[root@yeqixian ~]# cat /var/lib/cobbler/kickstarts/rhel-8-x86_64.ks
bootloader --location=mbr
clearpart --all --initlabel
part /boot --asprimary --fstype="ext4" --size=500
part swap --fstype="swap" --size=4096
part / --fstype="ext4" --grow --size=15000
text
firewall --disabled
autopart --type=lvm
clearpart --all --initlabel --drives=sda
keyboard us
lang en_US
url --url=http://192.168.116.145/cobbler/ks_mirror/rhel-8-x86_64
$yum_repo_stanza
reboot
repo --name="AppStream" --baseurl=file:///run/install/repo/AppStream
rootpw --iscrypted $6$QAJxLT6fRrjNUlY7$NsZ/fWBu6sRLPjJRPqIPMnSgHUppFL7bQ7jFQERbNBDtIYdcSp3udY3vhf9hVHJIKAtPYp7R02isfiyiLffEG/
selinux --disabled
firstboot --disable
skipx
services --disabled="chronyd"
timezone Asia/Shanghai --isUtc –nontp
install
zerombr
%packages
@^minimal-environment
kexec-tools
%end
%addon com_redhat_kdump --enable --reserve-mb='auto'
%end
%anaconda
pwpolicy root --minlen=6 --minquality=1 --notstrict --nochanges --notempty
pwpolicy user --minlen=6 --minquality=1 --notstrict --nochanges --emptyok
pwpolicy luks --minlen=6 --minquality=1 --notstrict --nochanges --notempty
%end
//检查ks文件语法是否有误
[root@yeqixian ~]# cobbler validateks
received on stdout: The version rhel8 is not supported by
received on stderr:
*** potential errors detected in kickstarts ***
!!! TASK FAILED !!!
查看当前cobbler有哪些配置文件
[root@yeqixian ~]# cobbler profile list
rhel-7-x86_64
rhel-8-x86_64
//修改profile,将我们新建的ks文件设为默认的kickstarts安装文件
[root@yeqixian ~]# cobbler profile edit --name rhel-8-x86_64 --kickstart=/var/lib/cobbler/kickstarts/rhel-8-x86_64.ks
//配置网卡名称为传统网卡名称eth0
[root@yeqixian ~]# cobbler profile edit --name rhel-8-x86_64 --kopts='net.ifnames=0 biosdevname=0'
//检查当前系统cobbler配置文件信息
[root@yeqixian ~]# cobbler profile report
//同步cobbler
[root@yeqixian ~]# cobbler sync
。。。
*** TASK COMPLETE ***
[root@yeqixian ~]# systemctl restart xinetd cobblerd httpd
[root@yeqixian ~]# ss -antl
State Recv-Q Send-Q Local Address:Port Peer Address:Port
LISTEN 0 5 127.0.0.1:25151 *:*
LISTEN 0 5 *:873 *:*
LISTEN 0 128 *:22 *:*
LISTEN 0 100 127.0.0.1:25 *:*
LISTEN 0 5 :::873 :::*
LISTEN 0 128 :::80 :::*
LISTEN 0 128 :::22 :::*
LISTEN 0 100 ::1:25 :::*
LISTEN 0 128 :::443 :::*
- 客户端安装
- 定制安装
[root@yeqixian ~]# cobbler sync
[root@yeqixian ~]# systemctl restart xinetd cobblerd httpd