|
NO. |
INTENTION |
COMMAND / WORK |
ETC. |
|
001 |
ROOT 계정 암호 변경
Change 'root' Account Password |
# passwd root |
|
|
002 |
기본 쉘 변경
Change the shell |
# passwd -e
(bash) ===> /usr/bin/bash |
|
|
003 |
계정 프로필 설정
Configure a profile |
# vi /.profile
|
stty erase ^H
stty erase ^?
export PS1="[\t][\u@\h:\w]\$ "
export PATH=/usr/sbin:/usr/bin:/usr/local/sbin:/usr/local/bin:/usr/sfw/bin |
|
|
|
004 |
IP Filter 구성 및 활성화
Configure and Activate IP Filter |
# vi /etc/ipf/ipf.conf
|
pass out all
block in all |
# svcadm enable ipfilter |
|
|
005 |
네트워크 설정
Configure Network & NIC |
[호스트 이름 Host Name]
# vi /etc/nodename
# chmod 644 /etc/inet/hosts
# vi /etc/inet/hosts
# chmod 444 /etc/inet/hosts
[NIC 설정 NIC Configuration]
# vi /etc/hostname.pcn0
[서브넷 설정 Netmask]
# vi /etc/netmasks
[라우터 설정 (게이트웨이) Router (Gateway) Configuration]
# vi /etc/defaultrouter
[DNS 네임서버 주소 설정 DNS Name Server Address Configuration]
# cp /etc/nsswitch.dns /etc/nsswitch.conf
# vi /etc/nsswitch.conf
# vi /etc/resolv.conf
|
nameserver [your-ISP-Network-Nameserver IP Address]
(작성 예시 Example : nameserver 168.126.63.1) | |
|
|
006 |
SSH 설정
Configure SSH |
# vi /etc/ssh/sshd_config
|
PermitRootLogin [no | yes]
(작성 예시 Example : PermitRootLogin no) |
# svcadm restart ssh
[SSH 허용을 위한 IP Filter 재구성 Reconfigure IP Filter for SSH]
# vi /etc/ipf/ipf.conf
|
pass in quick proto tcp from any to any port = 22 flags S keep state
pass in quick proto tcp from any to any port = 113 flags S keep state
pass in quick proto tcp from any port = 113 to any flags S keep state |
# svcadm restart ipfilter |
|
|
참고사항 REFERENCE |
|
R1 |
시스템 언어 / 로케일 변경
Change System Locale |
# chmod 755 /etc/default/init
# vi /etc/default/init
(작성 예시 Example)
|
TZ=ROK
CMASK=022
LANG=en
LC_COLLATE=en
LC_CTYPE=en
LC_MESSAGES=C
LC_MONETARY=en
LC_NUMERIC=en
LC_TIME=en
LC_ALL=en |
# chmod 555 /etc/default/init |
|
|
R2 |
솔라리스 10 주요 기본 번들 경로
Bundle Softwares' Path on Solaris 10 |
*Apache : /usr/apache
*Apache 2 : /usr/apache2
*Java : /usr/java
*Java JDK : /usr/jdk/j2sdk1.4.2_16
*Java JDK : /usr/jdk/jdk1.5.0_14
*Perl 5 : /usr/perl5
*SSH : /usr/bin/ssh
*Tomcat : /usr/apache/tomcat
*Other Compilers & wget : /usr/sfw/bin |
|
|
R3 |
SSH 서버 키 생성
Generate SSH Key on Server |
# cd /usr/bin/ssh
# ssh-keygen -t rsa1 -f /etc/ssh/ssh_host_key -N ""
# ssh-keygen -t dsa -f /etc/ssh/ssh_host_dsa_key -N ""
# ssh-keygen -t rsa -f /etc/ssh/ssh_host_rsa_key -N ""
# svcadm restart ssh |
|