※ http://cloud.centos.org/ 에서 배포하는 cloud 이미지를 기초로 작성되었습니다.
기본정보
CentOS release 6.8 (Final) Kernel : 2.6.32-754.17.1.el6.x86_64 Used Disk Size : 854 MB |
Installed package
libudev-147-2.73.el6_8.2.x86_64 libblkid-2.17.2-12.28.el6_9.2.x86_64 basesystem-10.0-4.el6.noarch glib2-2.28.8-10.el6.x86_64 cpio-2.10-13.el6.x86_64 upstart-0.6.5-17.el6.x86_64 device-mapper-persistent-data-0.6.2-0.2.rc7.el6.x86_64 libcap-2.16-5.5.el6.x86_64 tar-1.23-15.el6_8.x86_64 info-4.13a-8.el6.x86_64 libss-1.41.12-24.el6.x86_64 psmisc-22.6-24.el6.x86_64 net-tools-1.60-114.el6.x86_64 procps-3.2.8-45.el6_9.3.x86_64 libselinux-2.0.94-7.el6.x86_64 gmp-4.3.1-13.el6.x86_64 sed-4.2.1-10.el6.x86_64 coreutils-8.4-47.el6.x86_64 readline-6.0-4.el6.x86_64 ca-certificates-2018.2.22-65.1.el6.noarch gawk-3.1.7-10.el6_7.3.x86_64 plymouth-scripts-0.8.3-29.el6.centos.x86_64 libgpg-error-1.7-4.el6.x86_64 python-setuptools-0.6.10-4.el6_9.noarch python-backports-ssl_match_hostname-3.4.0.2-5.el6.noarch pcre-7.8-7.el6.x86_64 python-requests-2.6.0-4.el6.noarch lua-5.1.4-4.1.el6.x86_64 gzip-1.3.12-24.el6.x86_64 cyrus-sasl-lib-2.1.23-15.el6_6.2.x86_64 logrotate-3.7.8-28.el6.x86_64 nss-3.36.0-9.el6_10.x86_64 elfutils-libelf-0.164-2.el6.x86_64 libcurl-7.19.7-53.el6_9.x86_64 rpm-libs-4.8.0-59.el6.x86_64 findutils-4.4.2-9.el6.x86_64 openldap-2.4.40-16.el6.x86_64 checkpolicy-2.0.22-1.el6.x86_64 yum-plugin-fastestmirror-1.1.30-42.el6_10.noarch which-2.19-6.el6.x86_64 binutils-2.20.51.0.2-5.48.el6_10.1.x86_64 pth-2.0.7-9.3.el6.x86_64 hwdata-0.233-20.1.el6.noarch sysvinit-tools-2.87-6.dsf.el6.x86_64 plymouth-0.8.3-29.el6.centos.x86_64 libtasn1-2.3-6.el6_5.x86_64 initscripts-9.03.61-1.el6.centos.x86_64 p11-kit-trust-0.18.5-2.el6_5.2.x86_64 device-mapper-libs-1.02.117-12.el6_9.1.x86_64 device-mapper-event-libs-1.02.117-12.el6_9.1.x86_64 device-mapper-event-1.02.117-12.el6_9.1.x86_64 file-5.04-30.el6.x86_64 kpartx-0.4.9-106.el6_10.1.x86_64 dracut-004-411.el6.noarch postfix-2.6.6-8.el6.x86_64 cronie-anacron-1.4.4-16.el6_8.2.x86_64 libgcrypt-1.4.5-12.el6_8.x86_64 kernel-2.6.32-754.14.2.el6.x86_64 diffutils-2.8.1-28.el6.x86_64 lvm2-2.02.143-12.el6_9.1.x86_64 dash-0.5.5.1-4.el6.x86_64 openssh-server-5.3p1-124.el6_10.x86_64 groff-1.18.1.4-21.el6.x86_64 dhclient-4.1.1-63.P1.el6.centos.x86_64 iscsi-initiator-utils-6.2.0.873-27.el6_9.x86_64 cracklib-2.8.16-4.el6.x86_64 selinux-policy-targeted-3.7.19-312.el6.noarch python-jsonpatch-1.2-4.el6.noarch grub-0.97-99.el6.x86_64 redhat-logos-60.0.14-12.el6.centos.noarch python-prettytable-0.7.2-11.el6.noarch libpciaccess-0.13.4-1.el6.x86_64 audit-libs-python-2.4.5-6.el6.x86_64 e2fsprogs-1.41.12-24.el6.x86_64 xfsprogs-3.1.1-20.el6.x86_64 libedit-2.11-4.20080712cvs.1.el6.x86_64 efibootmgr-0.5.4-15.el6.x86_64 mingetty-1.08-5.el6.x86_64 python-2.6.6-68.el6_10.x86_64 kernel-firmware-2.6.32-754.17.1.el6.noarch tzdata-2019b-2.el6.noarch dbus-libs-1.2.24-11.el6_10.x86_64 libxml2-python-2.7.6-21.el6_8.1.x86_64 fipscheck-lib-1.2.0-7.el6.x86_64 pciutils-libs-3.1.10-4.el6.x86_64 libcap-ng-0.6.4-3.el6_0.1.x86_64 python-pycurl-7.19.0-9.el6.x86_64 pygpgme-0.1-18.20090824bzr68.el6.x86_64 python-iniparse-0.3.1-2.1.el6.noarch ustr-1.0.4-9.1.el6.x86_64 shadow-utils-4.1.5.1-5.el6.x86_64 libutempter-1.1.5-4.1.el6.x86_64 gamin-0.1.10-9.el6.x86_64 shared-mime-info-0.70-6.el6.x86_64 grubby-7.0.15-7.el6.x86_64 dbus-glib-0.86-6.el6.x86_64 libdrm-2.4.65-2.el6.x86_64 cryptsetup-luks-libs-1.2.0-11.el6.x86_64 cyrus-sasl-2.1.23-15.el6_6.2.x86_64 crontabs-1.10-33.el6.noarch kbd-1.15-11.el6.x86_64 fuse-2.8.3-5.el6.x86_64 system-config-firewall-base-1.2.27-7.2.el6_6.noarch cryptsetup-luks-1.2.0-11.el6.x86_64 passwd-0.77-7.el6.x86_64 bridge-utils-1.2-10.el6.x86_64 gpg-pubkey-c105b9de-4e0fd3a3 python-oauth-1.0.1-1.el6.centos.noarch python-configobj-4.6.0-3.el6.noarch dmidecode-2.12-7.el6.x86_64 python-chardet-2.2.1-1.el6.noarch setools-libs-python-3.3.7-4.el6.x86_64 libyaml-0.1.3-4.el6_6.x86_64 python-six-1.9.0-2.el6.noarch epel-release-6-8.noarch cloud-utils-growpart-0.27-10.el6.x86_64 setup-2.8.14-23.el6.noarch bash-4.1.2-48.el6.x86_64 nss-softokn-freebl-3.14.3-23.3.el6_8.x86_64 libcom_err-1.41.12-24.el6.x86_64 libacl-2.2.49-7.el6_9.1.x86_64 nss-util-3.36.0-1.el6.x86_64 grep-2.20-6.el6.x86_64 libuuid-2.17.2-12.28.el6_9.2.x86_64 filesystem-2.4.30-3.el6.x86_64 nss-softokn-3.14.3-23.3.el6_8.x86_64 ncurses-base-5.7-4.20090207.el6.x86_64 expat-2.0.1-13.el6_8.x86_64 iptables-1.4.7-19.el6.x86_64 libnih-1.0.1-8.el6.x86_64 ncurses-libs-5.7-4.20090207.el6.x86_64 iproute-2.6.32-57.el6.x86_64 libattr-2.4.44-7.el6.x86_64 db4-utils-4.7.25-22.el6.x86_64 zlib-1.2.3-29.el6.x86_64 popt-1.13-7.el6.x86_64 e2fsprogs-libs-1.41.12-24.el6.x86_64 newt-0.52.11-4.el6.x86_64 plymouth-core-libs-0.8.3-29.el6.centos.x86_64 libsepol-2.0.41-4.el6.x86_64 libstdc++-4.4.7-23.el6.x86_64 chkconfig-1.3.49.5-1.el6.x86_64 coreutils-libs-8.4-47.el6.x86_64 pam-1.1.1-24.el6.x86_64 bzip2-libs-1.0.5-7.el6_0.x86_64 openssl-1.0.1e-57.el6.x86_64 file-libs-5.04-30.el6.x86_64 m2crypto-0.20.2-9.el6.x86_64 python-jsonpointer-1.0-4.el6.noarch python-urllib3-1.10.2-3.el6.noarch mysql-libs-5.1.73-8.el6_8.x86_64 sqlite-3.6.20-1.el6_7.2.x86_64 selinux-policy-3.7.19-312.el6.noarch libidn-1.18-2.el6.x86_64 nss-sysinit-3.36.0-9.el6_10.x86_64 xz-libs-4.999.9-0.5.beta.20091007git.el6.x86_64 nss-tools-3.36.0-9.el6_10.x86_64 curl-7.19.7-53.el6_9.x86_64 bzip2-1.0.5-7.el6_0.x86_64 rpm-4.8.0-59.el6.x86_64 libselinux-utils-2.0.94-7.el6.x86_64 rpm-python-4.8.0-59.el6.x86_64 yum-3.2.29-81.el6.centos.0.1.noarch module-init-tools-3.9-26.el6.x86_64 tcp_wrappers-libs-7.6-58.el6.x86_64 iputils-20071127-24.el6.x86_64 libaio-0.3.107-10.el6.x86_64 util-linux-ng-2.17.2-12.28.el6_9.2.x86_64 p11-kit-0.18.5-2.el6_5.2.x86_64 udev-147-2.73.el6_8.2.x86_64 device-mapper-1.02.117-12.el6_9.1.x86_64 libusb-0.1.12-23.el6.x86_64 openssh-5.3p1-124.el6_10.x86_64 lvm2-libs-2.02.143-12.el6_9.1.x86_64 pinentry-0.7.6-8.el6.x86_64 device-mapper-multipath-libs-0.4.9-106.el6_10.1.x86_64 dracut-kernel-004-411.el6.noarch rsyslog-5.8.10-12.el6.x86_64 cronie-1.4.4-16.el6_8.2.x86_64 gnupg2-2.0.14-9.el6_10.x86_64 m4-1.4.13-5.el6.x86_64 device-mapper-multipath-0.4.9-106.el6_10.1.x86_64 make-3.81-23.el6.x86_64 openssh-clients-5.3p1-124.el6_10.x86_64 ncurses-5.7-4.20090207.el6.x86_64 mdadm-3.3.4-8.el6.x86_64 less-436-13.el6.x86_64 libcgroup-0.40.rc1-27.el6_10.x86_64 sudo-1.8.6p3-29.el6_9.x86_64 cracklib-dicts-2.8.16-4.el6.x86_64 python-boto-2.34.0-6.el6.noarch python-pygments-1.1.1-2.el6.noarch python-markdown-2.0.1-4.el6.noarch newt-python-0.52.11-4.el6.x86_64 audit-2.4.5-6.el6.x86_64 iptables-ipv6-1.4.7-19.el6.x86_64 acl-2.2.49-7.el6_9.1.x86_64 gdbm-1.8.0-39.el6.x86_64 libxml2-2.7.6-21.el6_8.1.x86_64 keyutils-libs-1.4-5.el6.x86_64 python-libs-2.6.6-68.el6_10.x86_64 kernel-2.6.32-754.17.1.el6.x86_64 libssh2-1.4.2-3.el6_10.1.x86_64 vim-minimal-7.4.629-5.el6_10.2.x86_64 yum-utils-1.1.30-42.el6_10.noarch gpgme-1.1.8-3.el6.x86_64 fipscheck-1.2.0-7.el6.x86_64 ethtool-3.5-6.el6.x86_64 libffi-3.0.5-3.2.el6.x86_64 python-urlgrabber-3.9.1-11.el6.noarch slang-2.2.1-1.el6.x86_64 libsemanage-2.0.43-5.1.el6.x86_64 MAKEDEV-3.24-6.el6.x86_64 pkgconfig-0.23-9.1.el6.x86_64 libuser-0.56.13-8.el6_7.x86_64 yum-metadata-parser-1.1.2-16.el6.x86_64 kbd-misc-1.15-11.el6.noarch b43-openfwwf-5.2-10.el6.noarch authconfig-6.1.12-23.el6.x86_64 attr-2.4.44-7.el6.x86_64 rootfiles-8.1-6.1.el6.noarch libselinux-python-2.0.94-7.el6.x86_64 policycoreutils-2.0.83-30.1.el6_8.x86_64 python-argparse-1.2.1-2.1.el6.noarch python-cheetah-2.4.1-1.el6.x86_64 libsemanage-python-2.0.43-5.1.el6.x86_64 python-backports-1.0-5.el6.x86_64 setools-libs-3.3.7-4.el6.x86_64 policycoreutils-python-2.0.83-30.1.el6_8.x86_64 PyYAML-3.10-3.1.el6.x86_64 cloud-init-0.7.5-10.el6.centos.2.x86_64 gpg-pubkey-0608b895-4bd22942 libgcc-4.4.7-23.el6.x86_64 centos-release-6-10.el6.centos.12.3.x86_64 dhcp-common-4.1.1-63.P1.el6.centos.x86_64 glibc-common-2.12-1.212.el6_10.3.x86_64 glibc-2.12-1.212.el6_10.3.x86_64 nspr-4.19.0-1.el6.x86_64 audit-libs-2.4.5-6.el6.x86_64 db4-4.7.25-22.el6.x86_64 krb5-libs-1.10.3-65.el6.x86_64
|
기본방화벽 정책
Chain INPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 268 27072 RH-Firewall-1-INPUT all -- * * 0.0.0.0/0 0.0.0.0/0
Chain FORWARD (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination 0 0 RH-Firewall-1-INPUT all -- * * 0.0.0.0/0 0.0.0.0/0
Chain OUTPUT (policy ACCEPT 287 packets, 25609 bytes) pkts bytes target prot opt in out source destination
Chain RH-Firewall-1-INPUT (2 references) pkts bytes target prot opt in out source destination 0 0 ACCEPT all -- lo * 0.0.0.0/0 0.0.0.0/0 22 1848 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0 icmptype 255 231 24344 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 state RELATED,ESTABLISHED 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 state NEW tcp dpt:20 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 state NEW tcp dpt:21 1 60 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 state NEW tcp dpt:22 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 state NEW tcp dpt:25 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 state NEW tcp dpt:80 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 state NEW tcp dpt:110 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 state NEW tcp dpt:143 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 state NEW tcp dpt:443 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 state NEW tcp dpts:50001:50005 14 820 REJECT all -- * * 0.0.0.0/0 0.0.0.0/0 reject-with icmp-host-prohibited
|
※ 해당 이미지는 아래 메뉴얼을 참고로 작성되었으니 자세한 사항은 링크를 참고하시기 바랍니다.
http://idchowto.com/?p=32280