data:image/s3,"s3://crabby-images/ad612/ad612f94042ba4b9bf2e4c16c55f4156fd7433a7" alt=""
- [root@web1 ~]# yum -y install rpm-build
- [root@web1 ~]# rpmbuild -ba nginx.spec #会报错,没有文件或目录
- [root@web1 ~]# ls /root/rpmbuild #自动生成的目录结构
- BUILD BUILDROOT RPMS SOURCES SPECS SRPMS
- 将源码软件复制到SOURCES目录 [root@web1 ~]# cp nginx-1.22.1.tar.gz /root/rpmbuild/SOURCES/
rpmbuild创建RPM软件包
-
- [root@web1 ~]# rpmbuild -ba /root/rpmbuild/SPECS/nginx.spec
- [root@web1 ~]# ls /root/rpmbuild/RPMS/x86_64/nginx-1.22.1-1.x86_64.rpm
- [root@web1 ~]# yum install /root/rpmbuild/RPMS/x86_64/nginx-1.22.1-1.x86_64.rpm
- [root@web1 ~]# rpm -qa |grep nginx
- [root@web1 ~]# ls /usr/local/nginx/
data:image/s3,"s3://crabby-images/edce3/edce3a871967220f0efd376fa8c98de5c5c5b9cf" alt=""
VPN服务器 Linux客户端连接WireGuard
data:image/s3,"s3://crabby-images/466d4/466d489661404804a1beb67fbfbccebe5a5ba69b" alt=""
制作密钥文件
- [root@proxy ~]#cd /usr/local/nginx/html/vpn/linux
- [root@proxy linux]# wg genkey | tee private.key | wg pubkey > public.key #生成私钥存入private.key,再利用私钥生成公钥存入public.key
- [root@proxy linux]# cp public.key ../ser.txt #拷贝一份方便客户端通过浏览器查看
- [root@proxy linux]# cat public.key UygBBCi6gEX5aJ0hMpKjBXDxltsV4+yI4NQTqK1ih1k=
- [root@proxy linux]# cat private.key
- GB2NbtPoAEvNufEggKM41GNEUBlxfJfVYn4i9yJ4WlU=
编写配置文件
data:image/s3,"s3://crabby-images/45e6c/45e6c89ce7b43c6535c3162c4f1576eda56e8d93" alt=""
- [root@proxy linux]# cd /etc/wireguard
- [root@proxy wireguard]# vim wg.conf
- [Interface] #服务端配置
- PrivateKey = GB2NbtPoAEvNufEggKM41GNEUBlxfJfVYn4i9yJ4WlU= #服务器的私钥
- Address = 10.10.10.1/8 #VPN隧道里面的IP和网段
- ListenPort = 54321 #WireGuard服务监听的端口
- [Peer] #对端(客户端)配置
- PublicKey = #客户端的公钥,稍后获取
- AllowedIPs = 10.10.10.2/32 #允许哪些客户端访问VPN服务器 ,32代表ip的二进制32位必须和10.10.10.2一样,也就是ip必须为10.10.10.2的客户才能访问
启动服务,注意,该步骤必须在上述配置文件获取客户端的公钥才可进行
- [root@proxy wireguard]# wg-quick up wg #启动VPN服务,wg是之前配置文件的名称
- [root@proxy wireguard]# ss -ntulp | grep 54321 #检查端口
- [root@proxy wireguard]# systemctl stop firewalld
- [root@proxy wireguard]# ifconfig #查看
步骤二:配置客户端
首先将$教学资料目录/vpn/linux目录拷贝到虚拟机/root下
在客户端安装VPN软件
data:image/s3,"s3://crabby-images/4bf79/4bf79d37e45e51e9ab463c835ca3c5207620c04a" alt=""
data:image/s3,"s3://crabby-images/66822/6682278c3c161a1c3c34a48dc36b82c8814d87b4" alt=""
Windows客户端连接WireGuard
data:image/s3,"s3://crabby-images/f5a35/f5a35ba28612cf76e8bb3b4f10d2dcdb554670aa" alt=""
data:image/s3,"s3://crabby-images/f52ed/f52ed43c640fc6200eaf510038b6a12c2a0aabb7" alt=""
data:image/s3,"s3://crabby-images/60419/60419e03d19433231c191b21d6fc5f078b8e7a92" alt=""
data:image/s3,"s3://crabby-images/2769b/2769b3dfc3f65ef341b592001ac25d55c63f0eb3" alt=""
data:image/s3,"s3://crabby-images/4d5b5/4d5b5de3e1b6284827c269c464e43e0950cc106c" alt=""
frp连接Linux系统实现内网穿透
data:image/s3,"s3://crabby-images/06430/064302dcc85f48867fe079765ed95549913242b2" alt=""
data:image/s3,"s3://crabby-images/34543/3454385863b95740fb168f94bd035a284f6278d8" alt=""
data:image/s3,"s3://crabby-images/1253d/1253da6d49005c48c0274a6605b6a480187b4b30" alt=""
data:image/s3,"s3://crabby-images/f6c66/f6c66896a5fb9ed2152c358caf30e7065a8ad289" alt=""
- 熟悉systemctl常用命令
data:image/s3,"s3://crabby-images/061cb/061cba7f7ea389be238949d073e0c4be62350ab1" alt=""
data:image/s3,"s3://crabby-images/61892/618924f6859503942b0f4f119d0e00cda9e145b5" alt=""
data:image/s3,"s3://crabby-images/644b0/644b00d2bd9aa55702a90a9916b82bb921e534b7" alt=""