无标题

许多朋友因为主机是家用主机,网卡是R8168,导致在安装时显示No Network Adapters,这里我在网上收集到一个已经注入完毕Realtek 8168网卡驱动的ISO版本,有需要的可以直接下载。资源来自网络,侵删。

附件1

考核任务一:安装部署超融合平台

要求:

  1. 使用ventoy在指定服务器上安装ESXI系统并正确设置ip地址

Esxi用户及密码:root/Network123!@#,./

  1. 在安装后的ESXI系统上部署EVE-NG

EVE-NG密码:root/eve

  1. 安装完成后使用openvpn拨入内网访问esxi并完成考核任务二

考核任务二:Nat地址转换和常用服务配置

https://cdn.nlark.com/yuque/0/2024/png/45908058/1729917721894-8400520b-9431-4920-a6ce-e9328f3ac449.png

要求:

  1. VPC6为Ubuntu 20.04 ltsc server系统,VPC7为Windows server2019系统
  2. 根据图示正确配置IP地址
  3. 配置Nat转换使inside区域的VPC6、VPC7能够访问Outside区域的任意一台主机
  4. 在VPC6上面安装Web服务(Nginx),并使用Nat地址转换为R2路由器的出口IP 80端口,使Outside区域的主机能够访问该网站服务
  5. 在VPC7 上开启ssh服务,并设置ssh登录方式为仅允许密钥登陆,开启root登录,并将ssh端口修改为2023
  6. 在VPC7 上同时开启ssh和Windows远程桌面,并使用Nat地址转换为R2路由器的出口IP 22和3389端口,使Outside区域的主机能够通过这两个端口登录VPC7服务器

可能遇到的问题:

  1. 拓扑图中的虚拟机不能联网—解决方法:在esxi中开启网卡混杂模式

注意事项:

  1. EVE-NG不能使用懒人包汉化版本,但可以自己尝试修改汉化
  2. Ubuntu和Windows系统不能使用从论坛下载的懒人包版本导入,必须从ISO开始安装
  3. 完成过程中可使用markdown编辑器记录过程和笔记,个人推荐使用joplin(支持中文)

参考资料:

EVE-NG中文论坛:https://www.emulatedlab.com/portal.php

鸟哥的Linux私房菜:http://tiramisutes.github.io/images/PDF/vbird-linux-basic-4e.pdf

EVE-NG创建自定义linux镜像:

https://www.eve-ng.net/index.php/documentation/howtos/howto-create-own-linux-host-image/

EVE-NG创建自定义windows镜像:

https://www.eve-ng.net/index.php/documentation/howtos/howto-create-own-windows-server-on-the-eve/

考核一完成步骤:

  1. 安装ESXI8.0系统

由于没设备用ventoy来制作U盘系统盘安装,所以使用VMware虚拟机安装

在读秒阶段,快速按下shift+o,调出命令行,输入autopartitionOSDataSize=20480,修改ESXI的默认空间大小,以便留下更多空间安装系统

https://cdn.nlark.com/yuque/0/2024/png/45908058/1734083798786-3685450a-f0e5-4f1c-ab3c-033ca4f94f0b.png

设置root密码为Network123!@#,./

后面默认安装即可

浏览器访问ip打开ESXI面板

https://cdn.nlark.com/yuque/0/2024/png/45908058/1734083798938-08fe850f-64f3-4293-9a40-fc8fee77fb66.png

把网卡设置为混杂模式,以便拓补图虚拟机正常上网

https://cdn.nlark.com/yuque/0/2024/png/45908058/1734083799124-7e30aba6-95fc-4048-b5ac-ec482d53a046.png

  1. 部署eve-ng系统

右键ESXI系统的虚拟机->创建/注册虚拟机->从OVF或OVA文件部署虚拟机->上传ovf文件和vmdk文件,取个名称->默认安装即可

https://cdn.nlark.com/yuque/0/2024/png/45908058/1734083799324-d54286c0-7d2c-4c10-92e0-fc5d38bf5711.png

https://cdn.nlark.com/yuque/0/2024/png/45908058/1734083799480-d35abbd0-c1d1-4cab-88e9-07d7d44d4705.png

设置密码

https://cdn.nlark.com/yuque/0/2024/png/45908058/1734083799618-064b4ba3-f341-474d-95f3-4170b55a055e.png

  1. 在eve系统用iso安装ubuntu和winserver系统

1.进入目标文件夹

cd /opt/unetlab/addons/qemu/

  1. 创建对应的镜像目录

https://cdn.nlark.com/yuque/0/2024/png/45908058/1734083799790-a3f3d4f3-6fe4-448d-b922-87ae8cfde55e.png

  1. 上传iso文件到对应文件夹,并改名为cdrom.iso,并创建虚拟磁盘(winserver同理)

https://cdn.nlark.com/yuque/0/2024/png/45908058/1734083799959-fbb3fbd1-ceb4-49c1-b31c-6d895a878ee3.png

https://cdn.nlark.com/yuque/0/2024/png/45908058/1734083800166-960fddee-4800-4366-8829-e2692d6c29bc.png

注意:winserver2019安装的时候没有盘符,需要加载驱动程序如下图选择即可

https://cdn.nlark.com/yuque/0/2024/png/45908058/1734083800356-e679becd-0348-4327-a179-b392ee7e02c3.png

https://cdn.nlark.com/yuque/0/2024/png/45908058/1734083800541-704d2c89-3747-4dd9-a4de-a2e27a6f01bf.png

验证:

https://cdn.nlark.com/yuque/0/2024/png/45908058/1734083800726-f5701795-7f01-479b-8702-2ded37268b6f.png

https://cdn.nlark.com/yuque/0/2024/png/45908058/1734083800871-fad58b43-4d49-4ca7-b96f-a9657a77846f.png

  1. 访问eve系统的拓补图,并添加node,安装系统

1.用浏览器通过IP访问,默认用户admin,默认密码eve

https://cdn.nlark.com/yuque/0/2024/png/45908058/1734083801050-9dc63991-a624-4fd2-8787-e50aea61ce74.png

2.ubuntu安装Nginx服务.winserver安装ssh服务并按要求配置,开启3389远程桌面连接服务

拓补图内连接网络:

https://cdn.nlark.com/yuque/0/2024/png/45908058/1734083801245-7e7614f5-8d24-428a-b930-f5782e7c4c70.png

Ubuntu:

https://cdn.nlark.com/yuque/0/2024/png/45908058/1734083801415-ee0e62eb-a1c8-4972-ad6e-a5680f009ca9.png

验证:

https://cdn.nlark.com/yuque/0/2024/png/45908058/1734083801676-a61d8d6c-017d-48e8-baab-ad104c8e92ec.png

Winserver2019:

安装ssh服务端

https://cdn.nlark.com/yuque/0/2024/png/45908058/1734083801895-98039248-842d-480b-9115-5e5cab0cda67.png

按要求修改配置文件:

https://cdn.nlark.com/yuque/0/2024/png/45908058/1734083802041-ccc5a8c7-b50e-4a22-8f86-d055b0859970.png

https://cdn.nlark.com/yuque/0/2024/png/45908058/1734083802211-fb5c3307-eee4-4294-b0e7-81713c02b2b3.png

https://cdn.nlark.com/yuque/0/2024/png/45908058/1734083802358-61f13934-6951-46d3-b667-c2acd8a3c5f7.png

重启服务,使配置生效

https://cdn.nlark.com/yuque/0/2024/png/45908058/1734083802559-4fa2b400-ac24-4a3d-8116-7a6307e98848.png

开启3389端口远程桌面服务:

https://cdn.nlark.com/yuque/0/2024/png/45908058/1734083802744-2d6f581b-7340-45c4-bb4d-8bd307435d56.png

验证:

https://cdn.nlark.com/yuque/0/2024/png/45908058/1734083802894-c117e604-0435-4d62-90df-66869efcf8a8.png

3.创建拓补图,并按要求配置

https://cdn.nlark.com/yuque/0/2024/png/45908058/1734083803061-f5f5ca77-8988-4c11-979e-66f312b3fb79.png

配置ip:

VPC4:

https://cdn.nlark.com/yuque/0/2024/png/45908058/1734083803236-cad1cd83-6978-4d40-a5c7-76deb89ca539.png

VPC5:

https://cdn.nlark.com/yuque/0/2024/png/45908058/1734083803378-ed8946b9-91fc-4e21-b02c-99f185b82aff.png

VPC6:

https://cdn.nlark.com/yuque/0/2024/png/45908058/1734083803572-540af5d9-88a4-4756-9b62-51d606d00bdc.png

VPC7:

https://cdn.nlark.com/yuque/0/2024/png/45908058/1734083803722-ef43cf63-a677-49a6-8250-adfbc00accfa.png

配置交换机和路由器:

Switch:

en

conf t

vlan 30

vlan 40

int gi0/0

switchport access vlan 30

no shutdown

int gi0/1

switchport access vlan 40

no shutdown

int gi0/2

switchport trunk encapsulation dot1q

switchport mode trunk

switchport trunk allowed vlan 30,40

no shutdown

R1:

en

conf t

int gi0/1

ip address 109.196.166.254 255.255.255.0

no shutdown

int gi0/2

ip address 185.6.12.254 255.255.255.0

no shutdown

int gi0/3

ip address 31.23.53.2 255.255.255.0

no shutdown

R2:

en

conf t

int gi0/0

ip nat inside

no shutdown

int gi0/0.1

encapsulation dot1Q 30

ip address 172.16.30.254 255.255.255.0

ip nat inside

no shutdown

int gi0/0.2

encapsulation dot1Q 40

ip address 172.16.40.254 255.255.255.0

ip nat inside

no shutdown

int gi0/1

ip address 31.23.53.1 255.255.255.0

ip nat outside

no shutdown

exit

ip route 0.0.0.0 0.0.0.0 31.23.53.2

acc 1 permit 172.16.0.0 0.0.255.255

ip nat inside source list 1 int gi0/1 overload

ip nat inside source static tcp 172.16.30.1 80 31.23.53.3 80

ip nat inside source static tcp 172.16.40.1 22 31.23.53.3 22

ip nat inside source static tcp 172.16.40.1 3389 31.23.53.3 3389

验证:

https://cdn.nlark.com/yuque/0/2024/png/45908058/1734083803872-db72f67f-b340-4f52-9c38-60d8392a61f8.png

https://cdn.nlark.com/yuque/0/2024/png/45908058/1734083804100-1308d879-5ccf-4cf1-99cf-8e6a5418b7cc.png

https://cdn.nlark.com/yuque/0/2024/png/45908058/1734083804237-66058270-c051-48e0-8ec1-c5796bc22c1e.png