±Û¾´ÀÌ: »êÀÌ ±Û¾´³¯: 2000-02-20 18:52:58 Á¦¸ñ: [ÆÁ]¾ÆÆÄÄ¡¸¦ inetd·Î ½ÇÇàÇϱâ.....(Àü¸é ¼öÁ¤) ============================================ Àü¸é ¼öÁ¤¿¡ ¾Õ¼­¼­.. ¸ÕÀú ´ñ±ÛÀ» ´Þ¾ÆÁֽŠ[±èÁ¤±Õ]´Ô, [fith]´Ô, ±×¸®°í [Á¶¼º¿Á]´Ô²² °¨»çÀÇ ¸»À» ÀüÇÕ´Ï´Ù. ¾ÆÆÄÄ¡ À¥ ¼­¹ö¸¦ inetd·Î µ¿ÀÛÇÏ·Á´Â ´ëºÎºÐÀÇ ÀÌÀ¯°¡ ½Ã½ºÅÛ »ç¾çÀÌ ³·°Å³ª(ÀÛÀº ¸Þ¸ð¸®) ºñ±³Àû Æ®·¡ÇÈÀÌ ¹ß»ýÇÏÁö ¾ÊÀº °æ¿ì¿¡ »ç¿ëÇÏ´Â ¹æ¹ýÀÔ´Ï´Ù. standalone ¸ðµå º¸´Ù ¹ÝÀÀ ¼Óµµ°¡ ´Ê´Â ´Ù´Â Á¡À» °¨¾ÈÇÏ¼Å¾ß ÇÕ´Ï´Ù. ============================================= ¾È³çÇϼ¼¿ä? ¸®´ª½º ä³ÎÀÇ »êÀÌÀÔ´Ï´Ù. ¿ø°í¸¦ ¾²´Ù°¡ ÀÏ ºÎºÐÀ» ±×´ë·Î °¡Á®¿Ô½À´Ï´Ù. Á¦°¡ Å×½ºÆ®ÇÑ ¹öÀüÀº -¾ËÂ¥¸®´ª½º 6.1 -¾ÆÆÄÄ¡ RPM 1.3.9 -¾ÆÆÄÄ¡ ¼Ò½º 1.3.11 Àü¿¡ 1.19ÀÏ [Á¶¼º¿í]´Ô²²¼­ Áú¹®Çϼ̴µ¥ Á¦°¡ ¾ÈµÈ´Ù´Â ½ÄÀ¸·Î ´äº¯À» Çß½À´Ï´Ù. Á¤Á¤ÇÕ´Ï´Ù. ¼³Á¤ÆÄÀÏ¿¡´Â À¯´Ð½º Ç÷§Æû¿¡¼­¸¸ °¡´ÉÇÏ´Ù°í ±×·¨´Âµ¥. ¸®´ª½º´Â À¯´Ð½º°¡ ¾Æ´Ñ À¯´Ð½º ȣȯÀ̱⶧¹®¿¡ °¡´ÉÇÑ°Í °°½À´Ï´Ù. ½ÇÁ¦·Î Á¢¼ÓÇØ º»°á°ú º°¹Ý Â÷À̸¦ ¸ð¸£°Ú³×¿ä... ´ë±âÇß´Ù°¡(standalone) ½ÇÇàÇÑ°ÍÇÏ°í ¿äûÀÌ ÀÖÀ»(inetd)½Ã ½ÇÇàÇÑ°Í¿Ü¿¡ º°¹Ý Â÷ÀÌ°¡...... =============================================== [RedHat 6.1¿¡¼­ ¾ÆÆÄÄ¡¸¦ Inetd ¸ðµå·Î ½ÇÇàÇϱâ] =============================================== ¾ÆÆÄÄ¡ µ¥¸óÀ» ÁßÁöÇÑ´Ù.(½Ã½ºÅÛ ºÎÆýà ÀÚµ¿ ½ÇÇàÇÏ´Â ¿É¼Çµµ ¾ø¾ÖÁØ´Ù. ntsysv) # /etc/rc.d/init.d/httpd stop ¶Ç´Â # /usr/loacl/apache/bin/apachectl stop ¾ÆÆÄÄ¡ ¼³Á¤ ÆÄÀÏ(httpd.conf)¿¡¼­, ServerTypeÀ» inetd·Î ¼³Á¤ÇÑ´Ù. ServerType inetd ¶ÇÇÑ standalone ¸ðµå¿¡¼­ »ç¿ë °¡´ÉÇÑ Áö½ÃÀÚ¿Í ³»¿ë¿¡ ¸ðµÎ ÁÖ¼®À» ó¸®ÇØ ³õ½À´Ï´Ù. PidFile, ScoreBoardFile, KeepAlive, MaxKeepAliveRequests, KeepAliveTimeout, MinSpareServers, MaxSpareServers, StartServers, MaxClients, MaxRequestsPerChild, Port, User Group /etc/services ÆÄÀÏ¿¡¼­ ´ÙÀ½°ú °°ÀÌ ¼öÁ¤ÇÕ´Ï´Ù. ¼öÁ¤ Àü : www 80/tcp http # WorldWideWeb HTTP ¼öÁ¤ ÈÄ : www 80/tcp http httpd # WorldWideWeb HTTP Âü°í 1. ¿À¸¥ÂÊ¿¡ ³ª¿À´Â "http", "httpd"´Â "www"¶ó´Â ¼­ºñ½º À̸§¿¡ ´ëÇÑ º°ÄªÀÔ´Ï´Ù. ½ÇÇà ÆÄÀÏÀÇ °æ·Î°¡ ¾Æ´ÔÀ» Á¤Á¤ÇÕ´Ï´Ù. ¶§¹®¿¡ ±»Áö httpd¸¦ Ãß°¡ÇÏÁö ¾Ê¾Æµµ °¡´ÉÇÕ´Ï´Ù. ¼öÁ¤ÇÏÁö ¾ÊÀ» °èȹÀ̶ó¸é 80/tcp¿¡ ÇØ´çÇÏ´Â ¶óÀο¡¼­ ÃÖ¼ÒÇÑ ¼­ºñ½º À̸§À» ´ÙÀ½¿¡ ³ª¿À´Â inetd.conf ÆÄÀÏ¿¡ ¼­ºñ½º À̸§À¸·Î ¼³Á¤ÇØ¾ß ÇÕ´Ï´Ù. Àú °°Àº °æ¿ì´Â httpd¸¦ Ãß°¡Çß°í inetd.conf ÆÄÀÏ¿¡ httpd·Î¼­ºñ½º À̸§À» ¼³Á¤Çß½À´Ï´Ù. Âü°í 2. man ÆäÀÌÁö¿¡ ÀÇÇϸé, Æ÷Æ® ¹øÈ£°¡ 1024º¸´Ù ÀÛÀº Æ÷Æ® ¹øÈ£´Â ¿ÀÁ÷ ·çÆ® ·¹º§¿¡¼­¸¸ Á¢±ÙÇÒ ¼ö ÀÖ´Ù°í ÇÕ´Ï´Ù. ÀÌ Æ÷Æ®¸¦ 'low numbered'·Î ºÎ¸£´õ±º¿ä /etc/inetd.conf ÆÄÀÏ¿¡¼­ ´ÙÀ½À» Ãß°¡ÇÑ´Ù. ÀÌ ÆÄÀÏ¿¡¼­ Áß¿äÇÑ Á¡Àº °¢°¢ÀÇ ¾ÆÆÄÄ¡ À¥ ¼­¹ö¸¦ ¾î¶² À¯Àú·Î ½ÇÇàÇÒ °ÍÀΰ¡ÀÔ´Ï´Ù. º¸¾È»ó µîÀÇ À¯·Î root·Î ½ÇÇàÇÏ´Â ¹æ¹ýÀº º°·Î ÁÁÁö ¾Ê´Ù°í [fith]´ÔÀÌ ÁöÀûÇØ Áּ̽À´Ï ´Ù. µû¶ó¼­ root°¡ ¾Æ´Ñ nobody³ª ´Ù¸¥ À¯Àú(ºñ±³Àû ±ÇÇÑÀÌ ³·Àº /etc/passwd ÆÄÀÏÀÇ À¯ Àú)·Î º¯°æÇØ¾ß ÇÕ´Ï´Ù. (user[.group] Çü½ÄÀÓ) Àú °°Àº °æ¿ì¿¡´Â nobody·Î ¼³Á¤Çß½À´Ï´Ù. nobody·Î ¼³Á¤Ç߱⠶§¹®¿¡ ¾ÆÆÄÄ¡ À¥ ¼­¹öÀÇ ·Î±× ÆÄÀÏÀ» nobody°¡ ¾µ ¼ö ÀÖ´Â Æ۹̼ÇÀ¸·Î Á¶Á¤ÇØ¾ß ÇÕ´Ï´Ù. ´ëºÎºÐ Àú¿¡°Ô Áú¹®ÇϽŠºÐµéÀÌ ½ÇÆÐÇÑ ÀÌÀ¯°¡ ¿©±â¿¡ ÀÖ½À´Ï´Ù. RPMÀ¸·Î ¼³Ä¡ÇßÀ» °æ¿ì¿¡´Â # chown -R nobody /var/log/httpd # chmod 755 /var/log/httpd # chmod 644 /var/log/httpd/* ·Î Á¶Á¤ÇÏ°í ¼Ò½º·Î Á÷Á¢ ÄÄÆÄÀÏÇÏ¿© ¼³Ä¡ÇßÀ» °æ¿ì¿¡´Â °°Àº ¹æ¹ýÀ¸·Î ·Î±× µð·ºÅ丮¿Í °¢°¢ÀÇ ·Î±× ÆÄÀÏÀÇ Æ۹̼ÇÀ» Á¶Á¤Çϱ⠹ٶø´Ï´Ù. /etc/inetd.conf ÆÄÀÏÀÇ ¼öÁ¤³»¿ë RPM ÆÐÅ°Áö·Î ¼³Ä¡ÇßÀ» °æ¿ì : ¹æ¹ý 1. TCP Wrapper¸¦ »ç¿ëÇÏÁö ¾ÊÀ» °æ¿ì httpd stream tcp nowait nobody /usr/sbin/httpd -f /etc/httpd/conf/httpd.conf ¹æ¹ý 2. TCP Wrapper¸¦ »ç¿ëÇÒ °æ¿ì httpd stream tcp nowait nobody /usr/sbin/tcpd /usr/sbin/httpd -f \ /etc/httpd/conf/httpd.conf Âü°í·Î ¸Ç ¿ÞÂÊÀÇ "httpd"´Â /etc/services ÆÄÀÏ¿¡ ¼³Á¤ÇÑ ¼­ºñ½º À̸§ÀÔ´Ï´Ù. ¶ÇÇÑ "\"Àº ÇÑÁÙ¿¡ °è¼Ó À̾ ¾µ ¼ö ¾øÀ» °æ¿ì¿¡ »ç¿ëÇÕ´Ï´Ù. "-f"´Â ¾ÆÆÄÄ¡ ¼³Á¤ ÆÄÀÏÀ» ÁöÁ¤ÇÏ´Â ¿É¼ÇÀÔ´Ï´Ù. ¼Ò½º·Î /usr/local/apache¿¡ ¼³Ä¡ÇßÀ» °æ¿ì : ¹æ¹ý 1. TCP Wrapper¸¦ »ç¿ëÇÏÁö ¾ÊÀ» °æ¿ì httpd stream tcp nowait nobody /usr/local/apache/bin/httpd -f \ /usr/local/apache/conf/httpd.conf ¹æ¹ý 2. TCP Wrapper¸¦ »ç¿ëÇÒ °æ¿ì httpd stream tcp nowait nobody /usr/sbin/tcpd /usr/local/apache/bin/httpd -f \ /usr/local/apache/conf/httpd.conf Inetd¸¦ Àç°¡µ¿ÇÑ´Ù. # /etc/rc.d/init.d/inet restart Stopping INET services: [ OK ] Starting INET services: [ OK ] # ¶Ç´Â # killall -HUP inetd ¸¶Áö¸·À¸·Î À¥ ºê¶ó¿ìÀú·Î Á¢¼Ó Å×½ºÆ®ÇØ º¾´Ï´Ù. ------ ÀÌ»óÀÔ´Ï´Ù.................