Unix-/Linux Netz: Unterschied zwischen den Versionen

Aus Xinux Wiki
Zur Navigation springen Zur Suche springen
Zeile 22: Zeile 22:
 
  auto lo
 
  auto lo
 
  iface lo inet loopback
 
  iface lo inet loopback
 
+
 
  auto enp0s3
 
  auto enp0s3
 
  iface enp0s3 inet static
 
  iface enp0s3 inet static
 
   address 172.22.1.1xx/16
 
   address 172.22.1.1xx/16
 
   gateway 172.22.1.1
 
   gateway 172.22.1.1
 
+
 
  auto enp0s8
 
  auto enp0s8
 
  iface enp0s8 inet static
 
  iface enp0s8 inet static
 
   address 192.168.0.1/24
 
   address 192.168.0.1/24
 
+
 
  auto enp0s9
 
  auto enp0s9
 
  iface enp0s9 inet static
 
  iface enp0s9 inet static
 
   address 10.0.1.1xx.1/24
 
   address 10.0.1.1xx.1/24
 +
 +
* Interfaces runter und wieder hochfahren, um die neue Konfiguration zu laden
 +
* '''ifdown -va'''
 +
* '''ifup -va'''
 +
* Danach sollte der Befehl '''ip address show''' (oder '''ip a''') die neuen IP Adressen anzeigen
 +
 +
1: lo: <LOOPBACK,UP,LOWER_UP> mtu 65536 qdisc noqueue state UNKNOWN group default qlen 1000
 +
    link/loopback 00:00:00:00:00:00 brd 00:00:00:00:00:00
 +
    inet 127.0.0.1/8 scope host lo
 +
        valid_lft forever preferred_lft forever
 +
    inet6 ::1/128 scope host
 +
        valid_lft forever preferred_lft forever
 +
2: enp0s3: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1456 qdisc pfifo_fast state UP group default qlen 1000
 +
    link/ether 08:00:27:9b:79:a1 brd ff:ff:ff:ff:ff:ff
 +
    inet '''172.22.1.1''xx''/16''' brd 172.22.255.255 scope global enp0s3
 +
        valid_lft forever preferred_lft forever
 +
    inet6 2003:e5:173a:c401:a00:27ff:fe9b:79a1/64 scope global dynamic mngtmpaddr
 +
        valid_lft 7134sec preferred_lft 1215sec
 +
    inet6 fe80::a00:27ff:fe9b:79a1/64 scope link
 +
        valid_lft forever preferred_lft forever
 +
3: enp0s8: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast state UP group default qlen 1000
 +
    link/ether 08:00:27:15:03:b7 brd ff:ff:ff:ff:ff:ff
 +
    inet '''192.168.0.1/24''' brd 192.168.0.255 scope global enp0s8
 +
        valid_lft forever preferred_lft forever
 +
    inet6 fe80::a00:27ff:fe15:3b7/64 scope link
 +
        valid_lft forever preferred_lft forever
 +
4: enp0s9: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast state UP group default qlen 1000
 +
    link/ether 08:00:27:31:01:09 brd ff:ff:ff:ff:ff:ff
 +
    inet '''10.0.1''xx''.1/24''' brd 10.0.100.255 scope global enp0s9
 +
        valid_lft forever preferred_lft forever
 +
    inet6 fe80::a00:27ff:fe31:109/64 scope link
 +
        valid_lft forever preferred_lft forever
  
 
= Labor Tag 2 =
 
= Labor Tag 2 =

Version vom 8. Mai 2023, 22:04 Uhr

Netzwerk der Schulung

xx in den folgenden Bildern durch die eigene Nummer ersetzen
Benutzername für virtuelle Maschinen ist xinux oder root
Passwort ist immer 123Start$

Labor Tag 1

Vorbereiten der Laborumgebung

  • Wir klonen den Rechner "debian server" und nennen ihn "Firewall"
  • Dieser braucht 3 Netzwerkadapter:
  1. Netzwerkbrücke
  2. Internes Netzwerk "LAN"
  3. Internes Netzwerk "DMZ"
  • Wir starten die Firewall und konfigurieren statische IP Adressen für alle 3 Netzwerkadapter
  • vim /etc/network/interfaces
auto lo
iface lo inet loopback

auto enp0s3
iface enp0s3 inet static
 address 172.22.1.1xx/16
 gateway 172.22.1.1

auto enp0s8
iface enp0s8 inet static
 address 192.168.0.1/24

auto enp0s9
iface enp0s9 inet static
 address 10.0.1.1xx.1/24
  • Interfaces runter und wieder hochfahren, um die neue Konfiguration zu laden
  • ifdown -va
  • ifup -va
  • Danach sollte der Befehl ip address show (oder ip a) die neuen IP Adressen anzeigen
1: lo: <LOOPBACK,UP,LOWER_UP> mtu 65536 qdisc noqueue state UNKNOWN group default qlen 1000
    link/loopback 00:00:00:00:00:00 brd 00:00:00:00:00:00
    inet 127.0.0.1/8 scope host lo
       valid_lft forever preferred_lft forever
    inet6 ::1/128 scope host 
       valid_lft forever preferred_lft forever
2: enp0s3: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1456 qdisc pfifo_fast state UP group default qlen 1000
    link/ether 08:00:27:9b:79:a1 brd ff:ff:ff:ff:ff:ff
    inet 172.22.1.1xx/16 brd 172.22.255.255 scope global enp0s3
       valid_lft forever preferred_lft forever
    inet6 2003:e5:173a:c401:a00:27ff:fe9b:79a1/64 scope global dynamic mngtmpaddr 
       valid_lft 7134sec preferred_lft 1215sec
    inet6 fe80::a00:27ff:fe9b:79a1/64 scope link 
       valid_lft forever preferred_lft forever
3: enp0s8: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast state UP group default qlen 1000
    link/ether 08:00:27:15:03:b7 brd ff:ff:ff:ff:ff:ff
    inet 192.168.0.1/24 brd 192.168.0.255 scope global enp0s8
       valid_lft forever preferred_lft forever
    inet6 fe80::a00:27ff:fe15:3b7/64 scope link 
       valid_lft forever preferred_lft forever
4: enp0s9: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast state UP group default qlen 1000
    link/ether 08:00:27:31:01:09 brd ff:ff:ff:ff:ff:ff
    inet 10.0.1xx.1/24 brd 10.0.100.255 scope global enp0s9
       valid_lft forever preferred_lft forever
    inet6 fe80::a00:27ff:fe31:109/64 scope link 
       valid_lft forever preferred_lft forever

Labor Tag 2

Labor Tag 3

Labor Tag 4

Labor Tag 5