Skip to content

Cyber-security-function-class/project_tera-technology

Folders and files

NameName
Last commit message
Last commit date

Latest commit

ย 

History

2 Commits
ย 
ย 

Repository files navigation

VXLAN์„ ์ด์šฉํ•œ PXE ๊ตฌ์ถ•

ํ”„๋กœ์ ํŠธ ๊ฐœ์š”

ํŒ€์› ์—ญํ•  ๋ถ„๋‹ด

๋ฏผ์ œ๋ฏผ : VXLAN, DNS, IIS

ํ—ˆ๋ฆฐ : VXLAN, PXE, DHCP, TFTP

์‹œ๋‚˜๋ฆฌ์˜ค

๋ฏผ์ œ๋ฏผ๊ณผ ํ—ˆ๋ฆฐ์€ Tera Technology์˜ ์ธํ”„๋ผ ๋‹ด๋‹น์„ ํ•˜๊ฒŒ ๋˜์—ˆ๋‹ค.

Tera Technology์˜ ์ธํŠธ๋ผ ๋„ท์€ ๊ฐ ์ง€์  ๋ ๋ผ์šฐํ„ฐ์— ์—ฐ๊ฒฐ๋˜์–ด ์žˆ๋Š” End Device ๋“ค์„ ๋ฌถ์€ ์˜์‚ฌ ํšŒ์„ (pseudowire)์œผ๋กœ ์—ฐ๊ฒฐ ๋˜์–ด ์žˆ๊ณ , ์˜์‚ฌ ํšŒ์„ ์—๋Š” DHCP๊ฐ€ ์„ค์ • ๋˜์–ด ์žˆ์œผ๋ฉฐ, Tera Technology์˜ ํšŒ์‚ฌ ์‚ฌ๋žŒ๋“ค์€ PXE๋ฅผ ์‚ฌ์šฉํ•˜์—ฌ ๋ถ€ํŒ… ์ด๋ฏธ์ง€๋ฅผ ์„œ๋ฒ„์—์„œ ๋ฐ›์•„ ์‚ฌ์šฉํ•œ๋‹ค. (PC์— ํ•˜๋“œ๋””์Šคํฌ๊ฐ€ ์—†์Œ)

Tera Technology์˜ ํšŒ์‚ฌ ์‚ฌ๋žŒ๋“ค์€ ์„œ์šธ ๋ณธ์ ๊ณผ ๋ถ€์‚ฐ ์ง€์ ์ด ์˜์‚ฌ ํšŒ์„  ๋ง์— ์—ฐ๊ฒฐ๋˜์–ด ์žˆ์–ด ๊ฐ ์ง€์  ์‚ฌ๋žŒ๋“ค ๋ผ๋ฆฌ์˜ ํ†ต์‹ ์ด ์ž์œ ๋กญ๋‹ค.

PXE Server์˜ ์ƒํƒœ๋ฅผ ํ™•์ธํ•˜๊ธฐ ์œ„ํ•ด ์›น ์„œ๋ฒ„๋ฅผ ๊ตฌ์ธกํ•˜์˜€๊ณ , ์„œ๋ฒ„์˜ ์ ‘๊ทผ์„ฑ์„ ํ–ฅ์ƒ์‹œํ‚ค๊ธฐ ์œ„ํ•ด DNS ์„œ๋ฒ„๋ฅผ ๊ตฌ์ถ•ํ•˜์—ฌ PXE Server์˜ ๋„๋ฉ”์ธ์„ ์„ค์ •ํ•ด์ฃผ์—ˆ๋‹ค.

๋งˆ์ง€๋ง‰์œผ๋กœ, Tera Technology ํšŒ์‚ฌ๋Š” ํ˜„์žฌ 1๊ธ‰ ๊ธฐ๋ฐ€ ํ”„๋กœ์ ํŠธ๋ฅผ ์ง„ํ–‰ ํ•˜๊ณ  ์žˆ๊ธฐ ๋•Œ๋ฌธ์—, WAN ๊ณผ์˜ ์—ฐ๊ฒฐ์ด ์ œํ•œ๋˜์–ด ์žˆ๋‹ค. (Default Gateway๊ฐ€ ์—†์Œ)

ํ† ํ”Œ๋กœ์ง€

Untitled

๋„คํŠธ์›Œํฌ ์ •๋ณด

OpenWRT๋Š” ๋‹ค์–‘ํ•œ ์ž„๋ฒ ๋””๋“œ ๊ธฐ๊ธฐ๋ฅผ ์œ„ํ•œ ๋ฆฌ๋ˆ…์Šค ๋ฐฐํฌํŒ์ด๋‹ค.

์ปค์Šคํ…€ ํŽŒ์›จ์–ด๋กœ ๊ฐœ๋ฐœ์ด ์‹œ์ž‘๋˜์—ˆ๋‹ค๊ฐ€ ์ ์ฐจ ์ง€์› ๋Œ€์ƒ์ด ํ™•๋Œ€๋˜์–ด ๋‹ค์–‘ํ•œ ์ธํ„ฐ๋„ท ๊ณต์œ ๊ธฐ๋ฅผ ์ง€์›ํ•˜๋Š” ์™„์ „ํ•œ ๋ฆฌ๋ˆ…์Šค ๋ฐฐํฌํŒ์ด ๋˜์—ˆ๋‹ค.

OpenWRT๋ฅผ ์‚ฌ์šฉํ•˜๋Š” ์ด์œ ๋Š” ์ธํ„ฐ๋„ท ๊ณต์œ ๊ธฐ๋ฅผ ๋ชฉ์ ์œผ๋กœ ๋งŒ๋“  ๋ฆฌ๋ˆ…์Šค ๋ฐฐํฌํŒ์ด๊ธฐ ๋•Œ๋ฌธ์— ๋‹ค์–‘ํ•œ ๋„คํŠธ์›Œํฌ ํ”„๋กœํ† ์ฝœ๋“ค์ด OpenWRT์— ๊ตฌํ˜„๋˜์–ด ์žˆ์–ด OpenWRT๋ฅผ ์‚ฌ์šฉํ•˜๊ฒŒ ๋˜์—ˆ๋‹ค.

ํ˜ธ์ŠคํŠธ๋ช… ํ˜ธ์ŠคํŠธ ์—ญํ•  OS
VPN-Provider VXLAN OpenWRT 21.04
VPN-Customer VXLAN OpenWRT 21.04
PXE-Server DHCP, TFTP, PXE Rocky Linux 8
WEB-Server DNS, WEB Windows Server 2019
PC01~04 Client Windows 7 PE

IP ์ •๋ณด

ํ˜ธ์ŠคํŠธ๋ช… IP IP VIP
VPN-Provider 53.82.37.28/24 87.27.97.1/24
VPN-Customer 37.99.46.78/24 87.27.97.2/24
PXE-Server 89.27.97.254/24
WEB-Server 89.27.97.100/24
PC01~04 87.27.97.0/24 (DHCP)
R1 53.82.37.254/24 10.0.0.2/32
R2 10.0.0.1/32 10.0.1.2/32
R3 10.0.1.1/32 10.0.2.2/32
R4 10.0.2.1/32 10.0.3.2/32
R5 10.0.3.1/32 37.99.47.28/24

์„œ๋น„์Šค ์ •๋ณด

VXLAN(Virtual eXtensible Local Area Network)

๋ชจ๋“  IP ๋ผ์šฐํŒ… ํ”„๋กœํ† ์ฝœ์„ ์‚ฌ์šฉํ•˜์—ฌ 3๊ณ„์ธต(L3)์„ ํ†ตํ•ด ๋ฌผ๋ฆฌ์ ์ธ ํ™˜๊ฒฝ์˜ ์ œ์•ฝ ์—†์ด 2๊ณ„์ธต(L2) ๋„คํŠธ์›Œํฌ๋ฅผ ํ™•์žฅํ•  ์ˆ˜ ์žˆ๋Š” ๊ธฐ์ˆ ์ด๋‹ค.

PXE๋Š” DHCP๋ฅผ ์ด์šฉํ•ด IP๋ฅผ ํ• ๋‹น๋ฐ›์•„ TFTP์—์„œ ์ด๋ฏธ์ง€ ํŒŒ์ผ์„ ๋ฐ›์•„ ๋ถ€ํŒ… ํ•˜๋ฏ€๋กœ, ๊ฐ™์€ LAN ๋„คํŠธ์›Œํฌ๋กœ ๋ฌถ์–ด์ฃผ์–ด์•ผ ํ•˜๊ธฐ ๋•Œ๋ฌธ์— VXLAN์„ ์„ค์ •ํ•œ๋‹ค.

ํŠน์ง•

Untitled 1

MAC-in-UDP ์บก์Šํ™”๋ฅผ ์‚ฌ์šฉํ•œ๋‹ค.

3๊ณ„์ธต์˜ ์„ค๊ณ„ ์žฅ์ (ํ™•์žฅ, ๋Œ€๊ทœ๋ชจ ๋„คํŠธ์›Œํฌ ๋ฒ”์œ„, ๊ฒฐํ•จ ๋„๋ฉ”์ธ ์ตœ์†Œํ™”)๊ณผ 2๊ณ„์ธต์˜ ์œ ๋™์ ์ธ ํŠน์„ฑ(VLAN ๋ฐ MAC ์ฃผ์†Œ ์ด๋™์„ฑ)์„ ํ•จ๊ป˜ ์ œ๊ณต ํ•˜๋ฏ€๋กœ 2๊ณ„์ธต๊ณผ 3๊ณ„์ธต ์„ค๊ณ„์˜ ๋‹จ์ ์„ ๋ชจ๋‘ ๋ฐฉ์ง€ ํ•  ์ˆ˜ ์žˆ๋‹ค.

Config

  1. ํŒจํ‚ค์ง€ ์„ค์น˜

root@VPN-Provider:/# opkg install vxlan uci-proto-vxlan luci-proto-relay

Untitled 2

  1. /etc/config/netwark, /etc/config/firewall ์„ค์ •

VPN-Provider /etc/config/netwark

Untitled 3

Untitled 4

VPN-Customer /etc/config/netwark

Untitled 5

Untitled 6

/etc/config/firewall

Untitled 7

PXE(Pre-boot eXecution Environment)

๋„คํŠธ์›Œํฌ ์ธํ„ฐํŽ˜์ด์Šค๋ฅผ ํ†ตํ•ด ์ปดํ“จํ„ฐ๋ฅผ ๋ถ€ํŒ…ํ•  ์ˆ˜ ์žˆ๊ฒŒ ํ•ด์ฃผ๋Š” ํ™˜๊ฒฝ์ด๋‹ค.

๊ตฌ์„ฑ์š”์†Œ

PXE Server

  • ํด๋ผ์ด์–ธํŠธ์—๊ฒŒ ์›๊ฒฉ ๋ถ€ํŒ… ๋ฐ ์šด์˜์ฒด์ œ ์„ค์น˜ ํ™˜๊ฒฝ์„ ์ œ๊ณตํ•˜๋Š” ์„œ๋ฒ„
  • PXE Client์—๊ฒŒ DHCP๋กœ IP๋ฅผ ๋ถ€์—ฌ
  • ๋ถ€ํŠธ ์ด๋ฏธ์ง€ ํŒŒ์ผ์„ ์ „์†ก

PXE Client(PC)

  • ์šด์˜์ฒด์ œ๋ฅผ ์„ค์น˜ํ•˜๊ณ ์ž ํ•˜๋Š” ์ปดํ“จํ„ฐ. ๋ฉ”์ธ๋ณด๋“œ๊ฐ€ PXE๋ฅผ ์ง€์›ํ•ด์•ผ ํ•˜๊ณ  PXE ์ง€์› ๋„คํŠธ์›Œํฌ ์นด๋“œ๊ฐ€ ํ•„์š”ํ•จ (๋Œ€๋ถ€๋ถ„์€ ์ง€์›)

๊ณผ์ •

  1. PXE Client๊ฐ€ ๋ถ€ํŒ…๋˜๋ฉด์„œ PXE Server์—๊ฒŒ DHCP๋กœ IP๋ฅผ ๋ฐ›์•„์˜ด
  2. PXE Server๋Š” ์ด์šฉ ๊ฐ€๋Šฅํ•œ ์šด์˜์ฒด๊ณ„๊ฐ€ ๋“ค์–ด์žˆ๋Š” ๋ถ€ํŠธ ์„œ๋ฒ„์˜ ๋ชฉ๋ก์„ PXE Client์—๊ฒŒ ๋ณด๋ƒ„
  3. PXE Client๋Š” ํ•„์š”ํ•œ ๋ถ€ํŠธ ์„œ๋ฒ„๋ฅผ ์ฐพ์€ ๋‹ค์Œ, ๋‹ค์šด๋กœ๋“œํ•  ํŒŒ์ผ์ด๋ฆ„์„ ๋ฐ›์Œ
  4. PXE Client๋Š” TFTP๋ฅผ ์‚ฌ์šฉํ•˜์—ฌ ํŒŒ์ผ์„ ๋‹ค์šด๋กœ๋“œํ•˜๋ฉฐ, ๊ทธ๊ฒƒ์„ ์‹คํ–‰์‹œํ‚ด์œผ๋กœ์จ OS๋ฅผ ์ ์žฌ

ํŠน์ง•

PXE์˜ ํŠน์ง•์œผ๋กœ๋Š” ์„ค์น˜ํ•จ์— ์žˆ์–ด์„œ ๊ธฐ์ˆ ์— ๋Œ€ํ•œ ์š”๊ตฌ์™€ ์„œ๋ฒ„๋‹น ์†Œ์š”๋˜๋Š” ์‹œ๊ฐ„์ด ์ค„์–ด๋“ ๋‹ค.

๋˜ํ•œ, ์ž๋™ํ™”๋กœ ์ธํ•ด์„œ ์—๋Ÿฌ๊ฐ€ ๋œ ๋ฐœ์ƒํ•˜๊ณ  OS ์„ค์น˜ ๋„๊ตฌ๋Š” ์ค‘์•™ํ™”๋˜์–ด ์—…๋ฐ์ดํŠธ๊ฐ€ ์‰ฌ์›Œ์ง„๋‹ค.

๋‹จ, ์„œ๋ฒ„ ๋˜๋Š” ๋„คํŠธ์›Œํฌ ์žฅ์• ์‹œ ์ „์ฒด ์‹œ์Šคํ…œ์ด ๋งˆ๋น„๋˜๋Š” ๋‹จ์ ์ด ์žˆ๋‹ค.

DHCP(Dynamic Host Configuration Protocol)

ํ˜ธ์ŠคํŠธ์˜ IP์ฃผ์†Œ์™€ ๊ฐ์ข… TCP/IP ํ”„๋กœํ† ์ฝœ์˜ ๊ธฐ๋ณธ ์„ค์ •์„ ํด๋ผ์ด์–ธํŠธ์—๊ฒŒ ์ž๋™์ ์œผ๋กœ ์ œ๊ณตํ•ด์ฃผ๋Š” ํ”„๋กœํ† ์ฝœ์ด๋‹ค.

Config

  1. ํŒจํ‚ค์ง€ ์„ค์น˜

[root@PXE-Server ~]# dnf install dhcp-server

Untitled 8

  1. /etc/dhcp/dhcpd.conf ์„ค์ •

Untitled 9

TFTP(Trivial File Transfer Protocol)

FTP์™€ ๋งˆ์ฐฌ๊ฐ€์ง€๋กœ ํŒŒ์ผ์„ ์ „์†กํ•˜๊ธฐ ์œ„ํ•œ ํ”„๋กœํ† ์ฝœ์ด์ง€๋งŒ, FTP๋ณด๋‹ค ๋” ๋‹จ์ˆœํ•œ ๋ฐฉ์‹์œผ๋กœ ํŒŒ์ผ์„ ์ „์†กํ•œ๋‹ค.

FTP์ฒ˜๋Ÿผ ๋ณต์žกํ•œ ํ”„๋กœํ† ์ฝœ์„ ์‚ฌ์šฉํ•˜์ง€ ์•Š๊ธฐ ๋•Œ๋ฌธ์— ๊ตฌํ˜„์ด ๊ฐ„๋‹จํ•˜์—ฌ ์šด์˜์ฒด์ œ ์—…๋กœ๋“œ์— ์ฃผ๋กœ ์‚ฌ์šฉํ•œ๋‹ค.

Config

  1. ํŒจํ‚ค์ง€ ์„ค์น˜

[root@PXE-Server ~]# dnf install syslinux tftp-server xinetd

Untitled 10

  1. firewall ์„ค์ •
[root@PXE-Server ~]# firewall-cmd --permanent --add-service=ftp
[root@PXE-Server ~]# firewall-cmd --permanent --add-service=tftp
[root@PXE-Server ~]#firewall-cmd --permanent --add-service=dhcp
[root@PXE-Server ~]# firewall-cmd --permanent --add-service=proxy-dhcp
[root@PXE-Server ~]# firewall-cmd --add-port=69/tcp --permanent
[root@PXE-Server ~]# firewall-cmd --add-port=69/udp --permanent
[root@PXE-Server ~]# firewall-cmd --add-port=4011/udp --permanent

Untitled 11

  1. /etc/xinetd.d/tftp ์„ค์ •

disable = no, server_args= -s /tftpboot ๋กœ ๋ณ€๊ฒฝ

Untitled 12

  1. ISO syslinux ๋ถ€ํŒ…ํŒŒ์ผ ๋ณต์‚ฌ
[root@PXE-Server ~]# cp /usr/share/syslinux/ldlinux.c32 /tftpboot/
[root@PXE-Server ~]# cp /usr/share/syslinux/libuial.c32 /tftpboot/
[root@PXE-Server ~]# cp /usr/share/syslinux/memdisk /tftpboot/
[root@PXE-Server ~]# cp /usr/share/syslinux/menu.c32 /tftpboot/
[root@PXE-Server ~]# cp /usr/share/syslinux/pxelinux.0 /tftpboot/

Untitled 13

  1. ๋ถ€ํŒ… ๊ด€๋ จ ๋””๋ ‰ํ„ฐ๋ฆฌ์™€ ์„ค์ • ํŒŒ์ผ ์ƒ์„ฑ

Untitled 14

/tftpboot/pxelinux.cfg/default

Untitled 15

Untitled 16

DNS(Domain Name System)

๋„๋ฉ”์ธ ์ด๋ฆ„์„ ํ˜ธ์ŠคํŠธ์˜ ๋„คํŠธ์›Œํฌ ์ฃผ์†Œ๋กœ ๋ฐ”๊พธ๊ฑฐ๋‚˜ ๊ทธ ๋ฐ˜๋Œ€์˜ ๋ณ€ํ™˜์„ ์ˆ˜ํ–‰ํ•˜๋Š” ์‹œ์Šคํ…œ์ด๋‹ค.

ํŠน์ง•

DNS ์„œ๋ฒ„๋Š” ๊ณ„์ธต ๊ตฌ์กฐ๋กœ ์ด๋ฃจ์–ด์ ธ ์žˆ๊ณ  ๋ฃจํŠธ DNS ์„œ๋ฒ„, ์ตœ์ƒ์œ„ ๋ ˆ๋ฒจ ์„œ๋ฒ„, ์ฑ…์ž„ DNS ์„œ๋ฒ„๋กœ ๋‚˜๋ˆ„๊ณ  ์ถ”๊ฐ€๋กœ ๋กœ์ปฌ DNS ์„œ๋ฒ„๊ฐ€ ์กด์žฌํ•œ๋‹ค. ๋กœ์ปฌ DNS ์„œ๋ฒ„๋Š” ์‚ฌ์šฉ์ž์—๊ฒŒ ์ง์ ‘์ ์œผ๋กœ ๋„๋ฉ”์ธ์— ๋Œ€ํ•œ ์งˆ์˜๋ฅผ ๋ฐ›๊ณ  ๊ทธ์— ๋Œ€ํ•œ ์‘๋‹ต์„ ํ•ด์ฃผ๋Š” ์„œ๋ฒ„์˜ ์—ญํ• ์„ ์ˆ˜ํ–‰ํ•œ๋‹ค.

Config

  1. ํŒจํ‚ค์ง€ ์„ค์น˜

DNS, IIS ์„ค์น˜

Untitled 17

  1. DNS ์˜์—ญ ์„ค์ •

DNS ๊ด€๋ฆฌ์ž โ‡’ ์ฃผ ์˜์—ญ โ‡’ ์˜์—ญ์ด๋ฆ„ ์„ค์ • "sunrin.com" โ‡’ ์˜์—ญํŒŒ์ผ ์ƒ์„ฑ(๋‹ค์Œ ์ด๋ฆ„์œผ๋กœ ์ƒˆ ํŒŒ์ผ ๋งŒ๋“ค๊ธฐ) โ‡’ ๋™์  ์—…๋ฐ์ด๋“œ(๋™์  ์—…๋ฐ์ดํŠธ ํ—ˆ์šฉ ์•ˆํ•จ)

Untitled 18

  1. ํ˜ธ์ŠคํŠธ ์ถ”๊ฐ€

๋„๋ฉ”์ธ ์„ ํƒ ํ›„ ์šฐํด๋ฆญ โ‡’ ์ƒˆ ํ˜ธ์ŠคํŠธ(A ๋˜๋Š” AAAA) ์„ ํƒ โ‡’ ์›ํ•˜๋Š” ์ด๋ฆ„์„ ์ž…๋ ฅํ›„ IP์ฃผ์†Œ์— ์„œ๋ฒ„ IP๋ฅผ ๋„ฃ๊ณ  ํ˜ธ์ŠคํŠธ ์ถ”๊ฐ€

Untitled 19

  1. ์—ญ๋ฐฉํ–ฅ DNS ์„ค์ •

์—ญ๋ฐฉํ–ฅ DNS ์šฐํด๋ฆญํ›„ ์ƒˆ ์˜์—ญ โ‡’ ์ฃผ ์˜์—ญ ์„ ํƒ โ‡’ IPv4 ์—ญ๋ฐฉํ–ฅ ์กฐํšŒ ์˜์—ญ ์„ ํƒ โ‡’ ๋„คํŠธ์›Œํฌ id์— ํ˜„์žฌ ์„œ๋ฒ„ IP โ‡’ ๋™์  ์—…๋ฐ์ด๋“œ(๋™์  ์—…๋ฐ์ดํŠธ ํ—ˆ์šฉ ์•ˆํ•จ)

Untitled 20

  1. ์—ญ๋ฐฉํ–ฅ DNS PTR ํฌ์ธํ„ฐ ์ถ”๊ฐ€

๋„๋ฉ”์ธ ์„ ํƒ ํ›„ ์šฐํด๋ฆญ โ‡’ ์ƒˆ PTR ํฌ์ธํ„ฐโ‡’ IP์ฃผ์†Œ์— ์„œ๋ฒ„ IP, ํ˜ธ์ŠคํŠธ ์ด๋ฆ„์— www.sunrin.com ์ž…๋ ฅ

Untitled 21

IIS(Internet Information Services)

๋งˆ์ดํฌ๋กœ์†Œํ”„ํŠธ ์œˆ๋„์šฐ๋ฅผ ์‚ฌ์šฉํ•˜๋Š” ์„œ๋ฒ„๋“ค์„ ์œ„ํ•œ ์ธํ„ฐ๋„ท ๊ธฐ๋ฐ˜ ์„œ๋น„์Šค๋“ค์˜ ๋ชจ์ž„์ด๋‹ค.

ํŠน์ง•

OS ์ด์šฉ์ž์˜ ๋Œ€๋ถ€๋ถ„์ด ์œˆ๋„์šฐ๋ฅผ ์‚ฌ์šฉํ•˜์—ฌ ์‰ฝ๊ฒŒ ์„ค์น˜๊ฐ€ ๊ฐ€๋Šฅํ•˜๋ฉฐ, ์‹œ๊ฐ์ ์œผ๋กœ ์ฐฝ(Window)์—์„œ ์ž‘์—…์„ ํ•˜๋Š” ๊ฒฝ์šฐ๊ฐ€ ๋งŽ์•„ ์ผ๋ฐ˜์ ์ธ ํ…์ŠคํŠธ(Text)๋กœ ์ž‘์—…์„ ํ•  ๋•Œ ๋ณด๋‹ค๋Š” ํ›จ์”ฌ ์šฉ์ดํ•œ ์ž‘์—…์ด ๊ฐ€๋Šฅํ•˜๋‹ค. ๋˜ํ•œ ASP ์Šคํฌ๋ฆฝํŠธ ์–ธ์–ด๋ฅผ ์‚ฌ์šฉํ•  ์ˆ˜ ์žˆ๋‹ค.

Config

Untitled 22

C:\inetpub\sunrin\index.html ์„ค์ •

Untitled 23

๊ตฌ์ถ• ๊ฒฐ๊ณผ

PC๋ฅผ ํ‚ค๋ฉด ๋ฐ”์ด์˜ค์Šค๊ฐ€ DHCP ์„œ๋ฒ„์—์„œ IP๋ฅผ ํ• ๋‹น๋ฐ›๋Š”๋‹ค.

Untitled 24

IP๋ฅผ ํ• ๋‹น ๋ฐ›์€ ํ›„, ๋ถ€ํŒ… ๊ฐ€๋Šฅํ•œ OS ๋ฆฌ์ŠคํŠธ๋ฅผ ์„ ํƒํ•˜๋ฉด ๋ถ€ํŒ… ํŒŒ์ผ์„ ๋‹ค์šด๋ฐ›๋Š”๋‹ค.

Untitled 25

OS ์ด๋ฏธ์ง€๋ฅผ ๋‹ค์šด ๋ฐ›์•„ ๋ฉ”๋ชจ๋ฆฌ์— ๋กœ๋“œ ํ•œ ํ›„, ๋ถ€ํŒ… ๋œ ๋ชจ์Šต์ด๋‹ค.

Untitled 26

Untitled 27

PC01๊ณผ PC03์ด ์„œ๋กœ ํ†ต์‹ ๋œ๋‹ค.

Untitled 28

Untitled 29

๋Š๋‚€์ 

๋ฏผ์ œ๋ฏผ

OpenWRT๋ฅผ ์ฒ˜์Œ ์‚ฌ์šฉํ•ด ๋ด์„œ ์ธ์ง€ ๋งŽ์€ ๊ฒŒ ๋‚ฏ์„ค๊ณ  ์–ด๋ ค์› ๋˜ ๊ฒƒ ๊ฐ™๋‹ค. L2TPv3๋ฅผ๊ตฌ์ถ•ํ•˜๋‹ค๊ฐ€ ํ”„๋กœ์ ํŠธ ์‹œ๊ฐ„์ด ์ด‰๋ฐ•ํ•œ ๊ด€๊ณ„๋กœ VXLAN์„ ์ด์šฉํ•ด์„œ ์˜์‚ฌ ํšŒ์„ ์„ ๊ตฌ์ถ•ํ–ˆ๋Š”๋ฐ Cisco ๋ผ์šฐํ„ฐ๋ฅผ ์‚ฌ์šฉํ•˜์ง€ ๋ชปํ•ด์„œ IPSec์„ ํ†ตํ•œ ์•”ํ˜ธํ™”๋ฅผ ํ•˜์ง€ ๋ชปํ•œ ๊ฒŒ ์•„์‰ฝ๋‹ค.

์˜์‚ฌ ํšŒ์„ ๊ณผ DHCP ์„œ๋ฒ„ ๊ตฌ์ถ• ํ›„์— GNS3์—์„œ ์ œ๊ณตํ•˜๋Š” VPC๋ฅผ ํ†ตํ•ด์„œ DHCP ํ…Œ์ŠคํŠธ๋ฅผ ์ง„ํ–‰ํ–ˆ๋Š”๋ฐ VPC์˜ ๋ฌธ์ œ๋กœ DHCP Request ํŒจํ‚ท์ด ์ „์†ก๋˜์ง€ ์•Š๋Š” ๋ฌธ์ œ๊ฐ€ ์žˆ์—ˆ๋Š”๋ฐ(VPC์— ๋ฌธ์ œ๊ฐ€ ์žˆ์—ˆ๋‹ค.) ์ด๋ฅผ ๋ชจ๋ฅด๊ณ  ํŠธ๋Ÿฌ๋ธ”์ŠˆํŒ…์„ ํ•˜๋Š” ๊ณผ์ •์—์„œ MTU์˜ ์‹ฌํ™” ์ด๋ก , MSS Clamping์— ๋Œ€ํ•˜์—ฌ ๋” ์ž์„ธํ•˜๊ฒŒ ์•Œ๊ฒŒ ๋˜๋Š” ๊ณ„๊ธฐ๊ฐ€ ๋œ ๊ฒƒ ๊ฐ™๋‹ค.

ํ—ˆ๋ฆฐ

์ƒ๋‹นํžˆ ๋งŽ์€ ์‹œ๊ฐ„์„ ์Ÿ์•„ ๋ถ€์—ˆ๋‹ค. OpenWRT๋ฅผ ์‚ฌ์šฉํ•˜๊ธฐ ์ „ Rocky Linux๋กœ L2TPv3๋ฅผ ๊ตฌ์ถ•ํ•˜์—ฌ ์˜์‚ฌํšŒ์„ ์„ ๋งŒ๋“ค๋ ค ๋ณด๋ ค ํ–ˆ์ง€๋งŒ, ํ•ด๋‹น ํ”„๋กœํ† ์ฝœ์ด ์ œ๋Œ€๋กœ ๊ตฌํ˜„๋˜์–ด ์žˆ์ง€ ์•Š์•„ OpenWRT, Rocky Linux ๋‘ ์šด์˜์ฒด์ œ ๋ชจ๋‘ ์ฒ˜์Œ์— ์„ ํƒํ•œ L2TPv3๋กœ ์˜์‚ฌํšŒ์„ ์„ ๋งŒ๋“ค์ง€ ๋ชปํ•ด ์•„์‰ฌ์› ๋‹ค. (VXLAN์€ ๊ธฐ๋ณธ์ ์œผ๋กœ IPsec ํŒจํ‚ท์œผ๋กœ encapsulationํ•˜์ง€ ์•Š๊ธฐ ๋•Œ๋ฌธ์— ๋ณด์•ˆ์— ์ทจ์•ฝํ•˜๋‹ค.)

๋˜ํ•œ, GNS3์˜ ํ•œ๊ณ„๋กœ ์‹œ์Šค์ฝ” ๋ผ์šฐํ„ฐ๋ผ๋ฆฌ์˜ ํ†ต์‹ ์ด ๋งค์šฐ ๋Š๋ฆฌ๊ธฐ ๋•Œ๋ฌธ์—, PC3๊ณผ PC4์—์„œ PXE-Server๋กœ ๋ถ€ํ„ฐ์˜ ๋ถ€ํŒ… ์ด๋ฏธ์ง€ ๋‹ค์šด๋กœ๋“œ๊ฐ€ ๋งค์šฐ ๋Š๋ ธ๋‹ค. ์ด๋ถ€๋ถ„๋„ ๋งค์šฐ ์•„์‰ฌ์› ๋‹ค.

๊ทธ๋ž˜๋„ PXE๋ฅผ ์ฒ˜์Œ ์„ฑ๊ณต์ ์œผ๋กœ ๊ตฌ์ถ• ํ•œ ๊ฒƒ๊ณผ, 2๋‹ฌ ์ „๋ถ€ํ„ฐ ๋จธ๋ฆฟ์†์œผ๋กœ ๊ทธ๋ฆฐ ํ† ํ”Œ๋กœ์ง€๋ฅผ ์ด๋ฒˆ ์„œ๋ฒ„๊ตฌ์ถ• ํ”„๋กœ์ ํŠธ๋ฅผ ํ†ตํ•ด ๊ตฌ์ถ• ํ•  ์ˆ˜ ์žˆ๊ฒŒ ๋˜์–ด ํ–‰๋ณตํ–ˆ๋‹ค.

About

No description, website, or topics provided.

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published