<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/"><channel><title>运维 on 蓝尾蜂鸟</title><link>https://clibing.com/categories/%E8%BF%90%E7%BB%B4/</link><description>Recent content in 运维 on 蓝尾蜂鸟</description><generator>Hugo -- gohugo.io</generator><language>zh-cn</language><copyright>Copyright © 2011-2026 clibing. All Rights Reserved.</copyright><lastBuildDate>Wed, 08 May 2024 16:17:24 +0800</lastBuildDate><atom:link href="https://clibing.com/categories/%E8%BF%90%E7%BB%B4/index.xml" rel="self" type="application/rss+xml"/><item><title>僵尸进程 Zombie 排查与处理</title><link>https://clibing.com/posts/linux/zombie/</link><pubDate>Wed, 08 May 2024 16:17:24 +0800</pubDate><guid>https://clibing.com/posts/linux/zombie/</guid><description>&lt;p>zombie 僵尸进程&lt;/p></description></item><item><title>Proxmox Nat</title><link>https://clibing.com/posts/linux/proxmox/</link><pubDate>Mon, 13 Apr 2020 12:13:33 +0800</pubDate><guid>https://clibing.com/posts/linux/proxmox/</guid><description><![CDATA[<h4 id="因为环境需求只有一个ip只能做nat" data-numberify>因为环境需求，只有一个ip，只能做nat<a class="anchor ms-1" href="#因为环境需求只有一个ip只能做nat"></a></h4>
<div class="highlight"><pre tabindex="0" class="chroma"><code class="language-perl" data-lang="perl"><span class="line"><span class="ln"> 1</span><span class="cl"><span class="n">auto</span> <span class="n">lo</span>
</span></span><span class="line"><span class="ln"> 2</span><span class="cl"><span class="n">iface</span> <span class="n">lo</span> <span class="n">inet</span> <span class="n">loopback</span>
</span></span><span class="line"><span class="ln"> 3</span><span class="cl">
</span></span><span class="line"><span class="ln"> 4</span><span class="cl"><span class="n">auto</span> <span class="n">enp8s0</span>
</span></span><span class="line"><span class="ln"> 5</span><span class="cl"><span class="n">iface</span> <span class="n">enp8s0</span> <span class="n">inet</span> <span class="n">static</span>
</span></span><span class="line"><span class="ln"> 6</span><span class="cl">        <span class="n">address</span> <span class="mf">172.16.11.100</span>
</span></span><span class="line"><span class="ln"> 7</span><span class="cl">        <span class="n">netmask</span> <span class="mf">255.255.255.0</span>
</span></span><span class="line"><span class="ln"> 8</span><span class="cl">        <span class="n">gateway</span> <span class="mf">172.16.11.1</span>
</span></span><span class="line"><span class="ln"> 9</span><span class="cl">
</span></span><span class="line"><span class="ln">10</span><span class="cl"><span class="n">auto</span> <span class="n">vmbr0</span>
</span></span><span class="line"><span class="ln">11</span><span class="cl"><span class="n">iface</span> <span class="n">vmbr0</span> <span class="n">inet</span> <span class="n">static</span>
</span></span><span class="line"><span class="ln">12</span><span class="cl">        <span class="n">address</span> <span class="mf">172.16.200.1</span>
</span></span><span class="line"><span class="ln">13</span><span class="cl">        <span class="n">netmask</span> <span class="mf">255.255.255.0</span>
</span></span><span class="line"><span class="ln">14</span><span class="cl">        <span class="n">bridge_ports</span> <span class="n">none</span>
</span></span><span class="line"><span class="ln">15</span><span class="cl">        <span class="n">bridge_stp</span> <span class="n">off</span>
</span></span><span class="line"><span class="ln">16</span><span class="cl">        <span class="n">bridge_fd</span> <span class="mi">0</span>
</span></span><span class="line"><span class="ln">17</span><span class="cl">        <span class="c1"># 开启ip转发</span>
</span></span><span class="line"><span class="ln">18</span><span class="cl">        <span class="n">post</span><span class="o">-</span><span class="n">up</span> <span class="n">echo</span> <span class="mi">1</span> <span class="o">&gt;</span> <span class="sr">/proc/s</span><span class="n">ys</span><span class="sr">/net/i</span><span class="n">pv4</span><span class="o">/</span><span class="n">ip_forward</span>
</span></span><span class="line"><span class="ln">19</span><span class="cl">        <span class="c1"># 增加一条nat指令， 将请求来源172.16.200.0/24的数据从enp8s0发送出去</span>
</span></span><span class="line"><span class="ln">20</span><span class="cl">        <span class="c1"># MASQUERADE(IP地址伪装)</span>
</span></span><span class="line"><span class="ln">21</span><span class="cl">        <span class="n">post</span><span class="o">-</span><span class="n">up</span> <span class="n">iptables</span> <span class="o">-</span><span class="n">t</span> <span class="n">nat</span> <span class="o">-</span><span class="n">A</span> <span class="n">POSTROUTING</span> <span class="o">-</span><span class="n">s</span> <span class="s">&#39;172.16.200.0/24&#39;</span> <span class="o">-</span><span class="n">o</span> <span class="n">enp8s0</span> <span class="o">-</span><span class="n">j</span> <span class="n">MASQUERADE</span>
</span></span><span class="line"><span class="ln">22</span><span class="cl">        <span class="n">post</span><span class="o">-</span><span class="n">down</span> <span class="n">iptables</span> <span class="o">-</span><span class="n">t</span> <span class="n">nat</span> <span class="o">-</span><span class="n">D</span> <span class="n">POSTROUTING</span> <span class="o">-</span><span class="n">s</span> <span class="s">&#39;172.16.200.0/24&#39;</span> <span class="o">-</span><span class="n">o</span> <span class="n">enp8s0</span> <span class="o">-</span><span class="n">j</span> <span class="n">MASQUERADE</span>
</span></span></code></pre></div><ul>
<li>enp8s0: 为当前主机出口网卡</li>
<li>vmbr0: 为虚拟出来的网卡，用于设置nat</li>
<li>设置nat转发：网卡启动<code>post-up</code>加入nat命令，<code>post-down</code>关闭网卡时删除nat命令</li>
</ul>

<h4 id="openvz-设置17216200024段ip即可" data-numberify>OpenVZ 设置172.16.200.0/24段ip即可<a class="anchor ms-1" href="#openvz-设置17216200024段ip即可"></a></h4>]]></description></item></channel></rss>