kkumtree

Linux Runlevel - ๋Ÿฐ๋ ˆ๋ฒจ/๋ถ€ํŠธ๋ ˆ๋ฒจ

  • kkumtree

2023-06-22T16:07:05+09:00

CPU๋ฅผ 1600X์—์„œ 5700X๋กœ ์—…๊ทธ๋ ˆ์ด๋“œ๋ฅผ ์ง„ํ–‰ํ•˜๊ธฐ์— ์•ž์„œ, RunLevel(๋Ÿฐ๋ ˆ๋ฒจ/๋ถ€ํŠธ๋ ˆ๋ฒจ)์— ๋Œ€ํ•ด ํ•œ๋ฒˆ ๋ฉ”๋ชจํ•˜๊ณ ์ž ํ•จ. Runlevel 7๊ฐ€์ง€ ๋ ˆ๋ฒจ์ด ์กด์žฌ man runlevel ์ฐธ๊ณ  Level 5์„ ์ œ์™ธํ•˜๊ณ ๋Š”, cli ํ™˜๊ฒฝ์—์„œ๋งŒ ๊ตฌ๋™ Linux Standard Base ๊ธฐ์ค€ ls -l /lib/systemd/system/runlevel?.target ๋ช…๋ น์–ด๋กœ ํ™•์ธ ๊ฐ€๋Šฅ RunLevel EN ์„ค๋ช… ๋น„๊ณ  0 Power Off ์‹œ์Šคํ…œ ์ข…๋ฃŒ(์ค‘๋‹จ/Halt) 1 Rescue ์‹œ์Šคํ…œ ๋ณต๊ตฌ ๋‹จ์ผ ์‚ฌ์šฉ์ž ๋ชจ๋“œ 2 Multi-User ๋‹ค์ค‘ ์‚ฌ์šฉ์ž(ํ…์ŠคํŠธ ๋ชจ๋“œ, ๋„คํŠธ์›Œํฌ ์„œ๋น„์Šค X) ์‚ฌ์šฉ X (์‚ฌ์šฉ์ž ์ •์˜ ๊ฐ€๋Šฅ) 3 Multi-User ๋‹ค์ค‘ ์‚ฌ์šฉ์ž(ํ…์ŠคํŠธ ๋ชจ๋“œ) 4 Multi-User ์ƒ๋™ ์‚ฌ์šฉ X (์‚ฌ์šฉ์ž ์ •์˜ ๊ฐ€๋Šฅ) 5 Graphical ๋‹ค์ค‘ ์‚ฌ์šฉ์ž ๋ชจ๋“œ (๊ทธ๋ž˜ํ”ฝ ๋ชจ๋“œ) X-window ๊ธฐ๋ฐ˜ 6 Reboot ์‹œ์Šคํ…œ ๋ฆฌ๋ถ€ํŒ… ์šด์˜์ฒด์ œ(Ubuntu 22.

Vagrant ์„ค์น˜ ๋ฐ Provider ์ง€์ •

  • kkumtree

2023-06-19T11:12:47+09:00

Ubuntu 23.04 (Host OS)์—์„œ ๊ฐ„๋‹จํ•˜๊ฒŒ Vagrant ์‚ฌ์šฉ์„ ํ•ด๋ณด๊ณ , VBox๊ฐ€ ์•„๋‹Œ Docker๋ฅผ Provider๋กœ ์ง€์ •ํ•˜์—ฌ ์‚ฌ์šฉํ•ด๋ณธ๋‹ค. WSL2 ํ™˜๊ฒฝ์—์„œ๋Š” Vagrant๊ฐ€ ์˜๋„ํ•œ๋Œ€๋กœ ์ž‘๋™ํ•˜์ง€ ์•Š์œผ๋ฏ€๋กœ ์œ ์˜: ๋ณ„๋„์˜ ์„ค์ • ํ•„์š” Hashicorp Docs Vagrant ์„ค์น˜ Ubuntu 22.04 LTS ๋ฐ 23.10 ๊ธฐ์ค€, APT repo๋ฅผ ํ†ตํ•œ ์„ค์น˜ ์ง€์› sudo apt-get install vagrant VBox ์„ค์น˜(์‚ฌ์šฉ ์‹œ) CPU ๊ฐ€์ƒํ™” ๊ธฐ์ˆ  ํ™œ์„ฑํ™” ํ•„์š”(BIOS๋‹จ, AMD์˜ ๊ฒฝ์šฐ๋Š” SVM, Intel์˜ ๊ฒฝ์šฐ๋Š” VT-x) virtualbox-ext-pack(์„ ํƒ): USB 2.0/3.0 ์ง€์› ๋“ฑ์˜ ํ™•์žฅ ๊ธฐ๋Šฅ์„ ์‚ฌ์šฉํ•˜๋ ค๋ฉด ์„ค์น˜ ๊ฐœ์ธ์šฉ๋„์˜ ์ œํ•œ์  ๋ผ์ด์„ ์Šค(๋™์˜๋ฅผ ์œ„ํ•œ ๋Œ€ํ™”์ฐฝ ํ™•์ธ) ํ™•์žฅ๊ธฐ๋Šฅ์„ ์“ธ ํ•„์š”๊ฐ€ ์—†๊ธฐ ๋•Œ๋ฌธ์— ์„ค์น˜ํ•˜์ง€ ์•„๋‹ˆํ•จ sudo apt-get install virtualbox # sudo apt-get install virtualbox-ext-pack Docker ์„ค์น˜(์‚ฌ์šฉ ์‹œ) Ubuntu ๊ธฐ์ค€, ์•„๋ž˜ 3๊ฐ€์ง€ ์„ค์น˜ ๋ฐฉ๋ฒ•์ด ์žˆ์œผ๋ฏ€๋กœ, ์นœ์ˆ™ํ•œ ๋ชจ๋“œ๋กœ ์ง„ํ–‰ sudo snap install docker # ์ตœ์‹ ๋ฒ„์ „ sudo apt-get install docker.

AWS EKS ์Šคํ„ฐ๋”” 7์ฃผ์ฐจ - Automation

  • kkumtree

2023-06-10T15:13:19+09:00

EKS ์Šคํ„ฐ๋””๋„ ๋งˆ์ง€๋ง‰ 7์ฃผ์ฐจ๋ฅผ ๋งž์ดํ–ˆ์Šต๋‹ˆ๋‹ค. ์ด๋ฒˆ์—๋Š” AWS Controller for k8s(ACK)์™€ flux๋ฅผ ๊ฐ€๋ณ๊ฒŒ ์‹ค์Šตํ•ด๋ณด๊ณ  ์ž๋™ํ™”์— ๋Œ€ํ•ด ๋ง›๋ณด๊ธฐ๋ฅผ ํ•ด๋ณด์•˜์Šต๋‹ˆ๋‹ค. ์•ž์„œ ํ•™์Šตํ•ด๋ณธ IRSA ๊ฐœ๋… ์™ธ์—๋„ CRD(CustomResourceDefinition)์„ ํ™œ์šฉํ•ฉ๋‹ˆ๋‹ค. 1. ์‹ค์Šตํ™˜๊ฒฝ ๋ฐฐํฌ ์‹ค์Šต์„ ์œ„ํ•œ YAMLํŒŒ์ผ์ด ๋ณ€๊ฒฝ๋œ๊ฑฐ ๋ง๊ณ ๋Š” 6์ฃผ์ฐจ์™€ ์œ ์‚ฌํ•ฉ๋‹ˆ๋‹ค. curl -O https://s3.ap-northeast-2.amazonaws.com/cloudformation.cloudneta.net/K8S/eks-oneclick6.yaml # ์ดํ•˜ ์ค‘๋žต # CERT_ARN(ACM)์˜ ๊ฒฝ์šฐ์—๋Š” /etc/profile์— ํ™˜๊ฒฝ๋ณ€์ˆ˜ ์ €์žฅ์„ ์•ˆํ•ด๋‘ฌ์„œ # ์„ธ์…˜์ด ๋งŒ๋ฃŒ๋˜๋ฉด, ๋‹ค์‹œ ์žฌ์„ค์ • ํ•„์š” CERT_ARN=`aws acm list-certificates --query 'CertificateSummaryList[].CertificateArn[]' --output text` echo $CERT_ARN 2. ACK(AWS Controller for k8s) ์›น์ฝ˜์†”์— ์ ‘๊ทผํ•˜์ง€ ์•Š๊ณ ๋„, AWS ์„œ๋น„์Šค ๋ฆฌ์†Œ์Šค๋ฅผ ์ง์ ‘ k8s์—์„œ ์ •์˜ ๋ฐ ์‚ฌ์šฉ๊ฐ€๋Šฅ ์ˆœ์„œ: ACK ์ปจํŠธ๋กค๋Ÿฌ ์„ค์น˜ -> IRSA ์„ค์ • -> AWS ๋ฆฌ์†Œ์Šค ์ปจํŠธ๋กค ๊ฐ™์€ ํŒจํ„ด์œผ๋กœ ์ด๋ฃจ์–ด์ ธ์žˆ๋Š”๋ฐ, Cloudformation์„ ์“ฐ๋‹ค๋ณด๋‹ˆ ์ค‘๊ฐ„์ค‘๊ฐ„ ๋Œ€๊ธฐ ์‹œ๊ฐ„ ๋ฐœ์ƒ (23/05/29) GA: 17๊ฐœ ์„œ๋น„์Šค, Preview: 10๊ฐœ ์„œ๋น„์Šค 2-1.

gh-pages์— ๋Œ“๊ธ€ ๊ธฐ๋Šฅ ์ถ”๊ฐ€ํ•˜๊ธฐ(giscus/Hugo)

  • kkumtree

2023-06-04T09:15:14+09:00

์š”์•ฝ ์•ž์œผ๋กœ ๊ฐ€๊ฐ์—†๋Š” ํ”ผ๋“œ๋ฐฑ ํ™˜์˜ํ•ฉ๋‹ˆ๋‹ค. https://github.com/kkumtree/blog.minseong.xyz/commit/e17822e72e8d357dcdbda1025c5372161a7b93ff ๋ฐฐ๊ฒฝ gh-pages๋กœ ๋ธ”๋กœ๊ทธ๋ฅผ ๊ตฌ์ถ•ํ•ด์„œ, ์ฒซ ๊ฒŒ์‹œ๋ฌผ์„ ์˜ฌ๋ฆฐ ์ง€ ๋งŒ 4๊ฐœ์›”์ด ์ง€๋‚ฌ๋‹ค. ๊ตฌ์ถ•๊ธฐ๋Š” ๋‚˜์ค‘์— ์˜ฌ๋ ค์•ผ์ง€. ๊ธ‰ํžˆ ๋ฒค์น˜๋งˆํ‚นํ•ด์„œ ์˜ฌ๋ฆฐ๊ฑฐ๋ผ, ๋ถ€์กฑํ•œ ์ ์€ ๋งŽ์ง€๋งŒ ๊ฐ€์žฅ ์ค‘์š”ํ•œ ๋Œ“๊ธ€ ๊ธฐ๋Šฅ์ด ์—†์–ด์„œ ์•„์‰ฌ์› ๋‹ค. ์›๋ž˜๋Š” ๋Œ“๊ธ€์„ ๋‹ฌ์ง€ ์•Š์œผ๋ ค๊ณ  ํ–ˆ๋Š”๋ฐ, ๋ถ€์กฑํ•œ ๋ถ€๋ถ„์— ๋Œ€ํ•ด์„œ ์กฐ์–ธ๋„ ๋ฐ›์•„๋ณด๊ณ  ์‹ถ๊ณ  ์ถ”๊ฐ€๋กœ ๊ถ๊ธˆํ•œ ์ ์ด๋‚˜ ์ดํ•ด๊ฐ€ ์•ˆ๋˜๋Š” ๋ถ€๋ถ„์— ๋Œ€ํ•ด์„œ ํ”ผ๋“œ๋ฐฑ๋„ ๋ฐ›๊ณ  ์‹ถ์—ˆ๋‹ค. ๋‹ค๋ฅธ ๋ธ”๋กœ๊ทธ์—์„œ ๋‹ต์„ ์ฐพ์œผ๋ ค๊ณ  ๊ฒ€์ƒ‰์—”์ง„์„ ๋Œ๋ฆฌ๋ฉด, ๋ญ”๊ฐ€ 2% ๋ถ€์กฑํ•˜๊ฑฐ๋‚˜ / ๋‚ด๊ฐ€ ์›ํ•˜๋Š” ํ•ด๋‹ต์ด ์•„๋‹ˆ๊ฑฐ๋‚˜ / ๋งค๋ฒˆ ์ด๋ชจํ‹ฐ์ฝ˜์œผ๋กœ ๋๋‚˜๋Š” ํŠน์œ ์˜ ํ—ˆํƒˆ๊ฐ์œผ๋กœ ์งœ์ฆ์ด ๋ฐ€๋ ค์™€์„œ ๋ฒˆ์—ญ๊ธฐ ๋Œ๋ ค๊ฐ€๋ฉฐ ๊ตญ์™ธ ํฌ์ŠคํŠธ๋‚˜ ๋ฌธ์„œ๋ฅผ ๋ณด๋‹ค๋ณด๋‹ˆ, ๋ฐ˜๋Œ€๋กœ ๋‚ด ๊ธ€๋„ ํฐ ๋„์›€์ด ๋˜์ง€ ๋ชปํ•  ๊ฒฝ์šฐ๋„ ์žˆ๊ฒ ๋‹ค ์‹ถ์—ˆ๋‹ค.

AWS EKS ์Šคํ„ฐ๋”” 6์ฃผ์ฐจ - Security

  • kkumtree

2023-06-04T06:56:52+09:00

์ด๋ฒˆ์—๋Š” ๋ณด์•ˆ์„ ์œ„ํ•œ ์ธ์ฆ ๋ฐ ์ธ๊ฐ€, ๊ทธ๋ฆฌ๊ณ  IRSA๋ฅผ ์ค‘์‹ฌ์œผ๋กœ EKS์˜ ๋ณด์•ˆ์— ๋Œ€ํ•ด ํ•™์Šตํ•ด๋ณด์•˜์Šต๋‹ˆ๋‹ค. kops ์Šคํ„ฐ๋”” ๋•Œ์—๋Š” ์ž˜ ๋ชฐ๋ž๋Š”๋ฐ, RBAC ๋ฟ๋งŒ ์•„๋‹ˆ๋ผ ๋ณต๊ธฐํ•˜๋‹ค๋ณด๋‹ˆ… [4-1] projected Volume [4-2] AWS Load Balancer Controller IRSA ๋ฐ LB Pod mutating ์œ„์˜ ๋‘ ๊ฐ€์ง€๊ฐ€ ์ค‘์š”ํ•œ ํŒŒํŠธ๋ฅผ ์ฐจ์ง€ํ•˜๊ณ  ์žˆ์—ˆ์Œ์„ ์•Œ ์ˆ˜ ์žˆ์—ˆ์Šต๋‹ˆ๋‹ค. Network(2์ฃผ์ฐจ)๊ฐ€ ๋งค๋ฒˆ ๋ญ”๊ฐ€ ์ผ๋ถ€๊ฐ€ ์•„๋ฆฌ์†กํ•˜์˜€๋‹ค๋ฉด Security๋Š” ๋ณต๊ธฐํ•˜๋‹ค๊ฐ€ ์ด๋ก ์ ์œผ๋กœ๋Š” ๊ฐ„๋‹จ(๊ณผ์—ฐ?)ํ•ด๋ณด์—ฌ๋„ ์‹ค์ œ ๊ตฌ๋™๋ฐฉ์‹ ์ดํ•ด ์ž์ฒด๊ฐ€ ์ดˆ๋ฐ˜์— ์•ˆ๋˜์„œ, ์‚ฌํ˜ ๋‚จ์ง“ ๊ฑธ๋ฆฐ ๋•์— ๋” ์–ด๋ ค์› ๋˜ ๊ฒƒ ๊ฐ™์Šต๋‹ˆ๋‹ค. ๊ทธ ์™ธ myeks-bastion-2์— ์ ‘์† ์‹œ, ํ•จ๊ป˜ ์ง„ํ–‰ํ•  ๋•Œ๋Š” ssh {Public IP}๋กœ ์ž˜ ์ ‘์†๋˜๋Š” ๊ฑธ ๋ดค๋Š”๋ฐ ์ •์ž‘ ํ˜ผ์ž ํ•  ๋• ์ ‘์†์ด ๋˜์ง€์•Š์•˜์Šต๋‹ˆ๋‹ค.

  1. First page
  2. Previous page
  3. 1
  4. 2
  5. 3
  6. 4
  7. โ€ฆ
  8. 6
  9. Next page
  10. Last page