1. cobbler简介
Cobbler
是一个Linux服务器安装的服务,可以通过网络启动(PXE)的方式来快速安装、重装物理服务器和虚拟机,同时还可以管理DHCP
,DNS
等。
Cobbler
可以使用命令行方式管理,也提供了基于Web的界面管理工具(cobbler-web),还提供了API接口,可以方便二次开发使用。
Cobbler
是较早前的kickstart的升级版,优点是比较容易配置,还自带web界面比较易于管理。
Cobbler
内置了一个轻量级配置管理系统,但它也支持和其它配置管理系统集成,如Puppet,暂时不支持SaltStack。
Cobbler
官网
cobbler集成的服务
- PXE服务支持
- DHCP服务管理
- DNS服务管理(可选bind,dnsmasq)
- 电源管理
- Kickstart服务支持
- YUM仓库管理
- TFTP(PXE启动时需要)
- Apache(提供kickstart的安装源,并提供定制化的kickstart配置)
cobbler配置文件详解
cobbler
配置文件目录在/etc/cobbler
配置文件 | 作用 |
---|---|
/etc/cobbler/settings | cobbler 主配置文件 |
/etc/cobbler/iso/ | iso模板配置文件 |
/etc/cobbler/pxe | pxe模板配置文件 |
/etc/cobbler/power | 电源配置文件 |
/etc/cobbler/user.conf | web服务授权配置文件 |
/etc/cobbler/users.digest | web访问的用户名密码配置文件 |
/etc/cobbler/dhcp.template | dhcp服务器的的配置模板 |
/etc/cobbler/dnsmasq.template | dns服务器的配置模板 |
/etc/cobbler/tftpd.template | tftp服务的配置模板 |
/etc/cobbler/modules.conf | 模块的配置文件 |
cobbler数据目录
目录 | 作用 |
---|---|
/var/lib/cobbler/config/ | 用于存放distros,system,profiles等信息配置文件 |
/var/lib/cobbler/triggers/ | 用于存放用户定义的cobbler命令 |
/var/lib/cobbler/kickstart/ | 默认存放kickstart文件 |
/var/lib/cobbler/loaders/ | 存放各种引导程序以及镜像目录 |
/var/www/cobbler/ks_mirror/ | 导入的发行版系统的所有数据 |
/var/www/cobbler/images/ | 导入发行版的kernel和initrd镜像用于远程网络启动 |
/var/www/cobbler/repo_mirror/ | yum仓库存储目录 |
cobbler日志文件
日志文件路径 | 说明 |
---|---|
/var/log/cobbler/installing | 客户端安装日志 |
/var/log/cobbler/cobbler.log | cobbler日志 |
cobbler
命令详解
cobbler check //核对当前设置是否有问题
cobbler list //列出所有的cobbler元素
cobbler report //列出元素的详细信息
cobbler sync //同步配置到数据目录,更改配置最好都要执行下
cobbler reposync //同步yum仓库
cobbler distro //查看导入的发行版系统信息
cobbler system //查看添加的系统信息
cobbler profile //查看配置信息
2. cobbler服务端部署
本机IP | 系统版本 |
---|---|
192.168.152.146 | centos 7 |
关闭防火墙和selinux
//下载epel源
[root@cobbler yum.repos.d]# yum -y install epel-release
[root@cobbler yum.repos.d]# ls
CentOS-Base.repo CentOS-Media.repo epel.repo
CentOS-CR.repo CentOS-Sources.repo epel-testing.repo
CentOS-Debuginfo.repo CentOS-Vault.repo
CentOS-fasttrack.repo CentOS-x86_64-kernel.repo
//建立缓存
[root@cobbler ~]# yum clean all
[root@cobbler ~]# yum makecache fast
过程略...
//安装cobbler以及相关的软件
[root@cobbler ~]# yum -y install httpd dhcp tftp python-ctypes cobbler xinetd cobbler-web pykickstart
过程略...
//启动服务并设置开机自启
[root@cobbler ~]# systemctl enable --now httpd cobblerd
Created symlink from /etc/systemd/system/multi-user.target.wants/httpd.service to /usr/lib/systemd/system/httpd.service.
Created symlink from /etc/systemd/system/multi-user.target.wants/cobblerd.service to /usr/lib/systemd/system/cobblerd.service.
[root@cobbler ~]# vim /etc/cobbler/settings
//修改此两行为本机IP
server: 192.168.152.146 //修改server的ip地址为本机ip
next_server: 192.168.152.146 //设置tftp的ip地址为本机ip
//开启tftp
[root@cobbler ~]# vim /etc/xinetd.d/tftp
service tftp
{
socket_type = dgram
protocol = udp
wait = yes
user = root
server = /usr/sbin/in.tftpd
server_args = -s /var/lib/tftpboot
disable = no //此处改为NO,开启
per_source = 11
cps = 100 2
flags = IPv4
}
//下载缺失文件
[root@cobbler ~]# cobbler get-loaders
略...
path /var/lib/cobbler/loaders/menu.c32 already exists, not overwriting existing content, use --force if you wish to update
path /var/lib/cobbler/loaders/grub-x86.efi already exists, not overwriting existing content, use --force if you wish to update
path /var/lib/cobbler/loaders/grub-x86_64.efi already exists, not overwriting existing content, use --force if you wish to update
*** TASK COMPLETE ***
//启动rsync并设置开机自启
[root@cobbler ~]# systemctl enable --now rsyncd
Created symlink from /etc/systemd/system/multi-user.target.wants/rsyncd.service to /usr/lib/systemd/system/rsyncd.service.
//生成加密的密码
[root@cobbler ~]# openssl passwd -1 -salt "$RANDOM" '123456'
$1$5737$x7ovYIxKR02aelaEOFzI21 //加密后的密码
//将新生成的加密密码加入到配置文件
[root@localhost ~]# vim /etc/cobbler/settings
default_password_crypted: "$1$5737$x7ovYIxKR02aelaEOFzI21" //将加密密码写入此行
//重启cobbler
[root@cobbler ~]# systemctl restart cobblerd
[root@cobbler ~]# ss -antl
State Recv-Q Send-Q Local Address:Port Peer Address:Port
LISTEN 0 5 127.0.0.1:25151 *:*
LISTEN 0 5 *:873 *:*
LISTEN 0 128 *:22 *:*
LISTEN 0 100 127.0.0.1:25 *:*
LISTEN 0 5 [::]:873 [::]:*
LISTEN 0 128 [::]:80 [::]:*
LISTEN 0 128 [::]:22 [::]:*
LISTEN 0 100 [::1]:25 [::]:*
LISTEN 0 128 [::]:443 [::]:*
//核对当前设置是否有问题
[root@cobbler ~]# cobbler check
The following are potential configuration items that you may want to fix:
1 : debmirror package is not installed, it will be required to manage debian deployments and repositories
2 : fencing tools were not found, and are required to use the (optional) power management features. install cman or fence-agents to use them
Restart cobblerd and then run 'cobbler sync' to apply changes.
//修改cobbler配置文件,让cobbler控制dhcp
[root@cobbler ~]# sed -i '/^manage_dhcp/s/0/1/g' /etc/cobbler/settings
[root@cobbler ~]# sed -n '/^manage_dhcp/p' /etc/cobbler/settings
manage_dhcp: 1
//配置dhcp
[root@cobbler ~]# vim /etc/cobbler/dhcp.template
subnet 192.168.152.0 netmask 255.255.255.0 { //本地主机网段
option routers 192.168.152.146; //本机IP
option domain-name-servers 114.114.114.114;
option subnet-mask 255.255.255.0;
range dynamic-bootp 192.168.152.10 192.168.152.20; //要安装主机的IP
default-lease-time 21600;
max-lease-time 43200;
next-server $next_server;
class "pxeclients" {
//重启服务并同步配置,改完dhcp必须要sync同步配置
[root@cobbler ~]# systemctl restart cobblerd
[root@cobbler ~]# cobbler sync
略...
running shell triggers from /var/lib/cobbler/triggers/sync/post/*
running python triggers from /var/lib/cobbler/triggers/change/*
running python trigger cobbler.modules.manage_genders
running python trigger cobbler.modules.scm_track
running shell triggers from /var/lib/cobbler/triggers/change/*
*** TASK COMPLETE ***
//检查dhcp是否正常
[root@cobbler ~]# ss -anulp| grep dhcp
UNCONN 0 0 *:67 *:* users:(("dhcpd",pid=1568,fd=7))
//导入redhat7镜像
[root@cobbler ~]# mount /dev/cdrom /mnt
mount: /dev/sr0 is write-protected, mounting read-only
[root@cobbler ~]# cobbler import --path=/mnt --name=centos-7 --arch=x86_64
task started: 2020-11-24_012042_import
task started (id=Media import, time=Tue Nov 24 01:20:42 2020)
Found a candidate signature: breed=redhat, version=rhel6
Found a candidate signature: breed=redhat, version=rhel7
Found a matching signature: breed=redhat, version=rhel7
Adding distros from path /var/www/cobbler/ks_mirror/centos-7-x86_64:
creating new distro: centos-7-x86_64
trying symlink: /var/www/cobbler/ks_mirror/centos-7-x86_64 -> /var/www/cobbler/links/centos-7-x86_64
creating new profile: centos-7-x86_64
associating repos
checking for rsync repo(s)
checking for rhn repo(s)
checking for yum repo(s)
starting descent into /var/www/cobbler/ks_mirror/centos-7-x86_64 for centos-7-x86_64
processing repo at : /var/www/cobbler/ks_mirror/centos-7-x86_64 //导入镜像的位置
need to process repo/comps: /var/www/cobbler/ks_mirror/centos-7-x86_64
looking for /var/www/cobbler/ks_mirror/centos-7-x86_64/repodata/*comps*.xml
Keeping repodata as-is :/var/www/cobbler/ks_mirror/centos-7-x86_64/repodata
*** TASK COMPLETE ***
//说明:
--path //镜像路径
--name //为安装源定义一个名字
--arch //指定安装源平台
//查看cobbler镜像列表
[root@cobbler ~]# cobbler list
distros:
centos-7-x86_64
profiles:
centos-7-x86_64
systems:
repos:
images:
mgmtclasses:
packages:
files:
//创建kickstarts自动安装脚本
[root@cobbler ~]# cat /var/lib/cobbler/kickstarts/centos-7-x86_64.ks
auth --enableshadow --passalgo=sha512
bootloader --location=mbr
clearpart --all --initlabel
part /boot --asprimary --fstype="ext4" --size=500
part swap --fstype="swap" --size=4096
part / --fstype="ext4" --grow --size=15000
text
firewall --disabled
firstboot --disable
keyboard us
lang en_US
url --url=http://192.168.152.146/cobbler/ks_mirror/centos-7-x86_64
$yum_repo_stanza
reboot
rootpw --iscrypted $6$2m2LrqxOzx7/1WCM$G2qHNyEmzYe/kVXrdz1ojrY6ckGmi/kpCxIWQSGk.IJgl6UWyLSaX08E0KTb4/4qhtV8WsfRMVUeqQ/iNa/xY. //修改为本机的root密码
selinux --disabled
skipx
timezone Asia/Shanghai --isUtc --nontp
install
zerombr
%packages
@^minimal
@core
kexec-tools
%end
%addon com_redhat_kdump --enable --reserve-mb='auto'
%end
%anaconda
pwpolicy root --minlen=6 --minquality=1 --notstrict --nochanges --notempty
pwpolicy user --minlen=6 --minquality=1 --notstrict --nochanges --emptyok
pwpolicy luks --minlen=6 --minquality=1 --notstrict --nochanges --notempty
%end
//检查ks文件语法是否有误
[root@cobbler ~]# cobbler validateks
task started: 2020-11-24_014754_validateks
task started (id=Kickstart Validation, time=Tue Nov 24 01:47:54 2020)
----------------------------
osversion: rhel7
checking url: http://192.168.152.136/cblr/svc/op/ks/profile/centos-7-x86_64
running: /usr/bin/ksvalidator -v "rhel7" "http://192.168.152.146/cblr/svc/op/ks/profile/centos-7-x86_64"
received on stdout:
received on stderr:
*** all kickstarts seem to be ok ***
*** TASK COMPLETE ***
//查看当前cobbler有哪些配置文件
[root@cobbler ~]# cobbler profile list
centos-7-x86_64
//修改profile,将我们新建的ks文件设为默认的kickstarts安装文件
[root@cobbler ~]# cobbler profile edit --name centos-7-x86_64 --kickstart=/var/lib/cobbler/kickstarts/centos-7-x86_64.ks
//配置网卡名称为传统网卡名称eth0
[root@cobbler ~]# cobbler profile edit --name centos-7-x86_64 --kopts='net.ifnames=0 biosdevname=0'
//检查当前系统cobbler配置文件信息
[root@cobbler ~]# cobbler profile report
Name : centos-7-x86_64
TFTP Boot Files : {}
Comment :
DHCP Tag : default
Distribution : centos-7-x86_64
Enable gPXE? : 0
Enable PXE Menu? : 1
Fetchable Files : {}
Kernel Options : {'biosdevname': '0', 'net.ifnames': '0'}
Kernel Options (Post Install) : {}
Kickstart : /var/lib/cobbler/kickstarts/centos-7-x86_64.ks
Kickstart Metadata : {}
Management Classes : []
Management Parameters : <<inherit>>
Name Servers : []
Name Servers Search Path : []
Owners : ['admin']
Parent Profile :
Internal proxy :
Red Hat Management Key : <<inherit>>
Red Hat Management Server : <<inherit>>
Repos : []
Server Override : <<inherit>>
Template Files : {}
Virt Auto Boot : 1
Virt Bridge : xenbr0
Virt CPUs : 1
Virt Disk Driver Type : raw
Virt File Size(GB) : 5
Virt Path :
Virt RAM (MB) : 512
Virt Type : kvm
//同步cobbler
[root@cobbler ~]# cobbler sync
task started: 2020-11-24_015809_sync
task started (id=Sync, time=Tue Nov 24 01:58:09 2020)
running pre-sync triggers
cleaning trees
removing: /var/www/cobbler/images/centos-7-x86_64
removing: /var/lib/tftpboot/pxelinux.cfg/default
removing: /var/lib/tftpboot/grub/images
removing: /var/lib/tftpboot/grub/grub-x86.efi
removing: /var/lib/tftpboot/grub/grub-x86_64.efi
removing: /var/lib/tftpboot/grub/efidefault
removing: /var/lib/tftpboot/images/centos-7-x86_64
removing: /var/lib/tftpboot/s390x/profile_list
copying bootloaders
trying hardlink /var/lib/cobbler/loaders/grub-x86.efi -> /var/lib/tftpboot/grub/grub-x86.efi
trying hardlink /var/lib/cobbler/loaders/grub-x86_64.efi -> /var/lib/tftpboot/grub/grub-x86_64.efi
copying distros to tftpboot
copying files for distro: centos-7-x86_64
trying hardlink /var/www/cobbler/ks_mirror/centos-7-x86_64/images/pxeboot/vmlinuz -> /var/lib/tftpboot/images/centos-7-x86_64/vmlinuz
trying hardlink /var/www/cobbler/ks_mirror/centos-7-x86_64/images/pxeboot/initrd.img -> /var/lib/tftpboot/images/centos-7-x86_64/initrd.img
copying images
generating PXE configuration files
generating PXE menu structure
copying files for distro: centos-7-x86_64
trying hardlink /var/www/cobbler/ks_mirror/centos-7-x86_64/images/pxeboot/vmlinuz -> /var/www/cobbler/images/centos-7-x86_64/vmlinuz
trying hardlink /var/www/cobbler/ks_mirror/centos-7-x86_64/images/pxeboot/initrd.img -> /var/www/cobbler/images/centos-7-x86_64/initrd.img
Writing template files for centos-7-x86_64
rendering DHCP files
generating /etc/dhcp/dhcpd.conf
rendering TFTPD files
generating /etc/xinetd.d/tftp
processing boot_files for distro: centos-7-x86_64
cleaning link caches
running post-sync triggers
running python triggers from /var/lib/cobbler/triggers/sync/post/*
running python trigger cobbler.modules.sync_post_restart_services
running: dhcpd -t -q
received on stdout:
received on stderr:
running: service dhcpd restart
received on stdout:
received on stderr: Redirecting to /bin/systemctl restart dhcpd.service
running shell triggers from /var/lib/cobbler/triggers/sync/post/*
running python triggers from /var/lib/cobbler/triggers/change/*
running python trigger cobbler.modules.manage_genders
running python trigger cobbler.modules.scm_track
running shell triggers from /var/lib/cobbler/triggers/change/*
*** TASK COMPLETE ***
//为避免发生未知问题,先把服务端所有服务重启
[root@cobbler ~]# systemctl restart cobblerd httpd xinetd
[root@cobbler ~]# ss -antl
State Recv-Q Send-Q Local Address:Port Peer Address:Port
LISTEN 0 5 127.0.0.1:25151 *:*
LISTEN 0 5 *:873 *:*
LISTEN 0 128 *:22 *:*
LISTEN 0 100 127.0.0.1:25 *:*
LISTEN 0 5 [::]:873 [::]:*
LISTEN 0 128 [::]:80 [::]:*
LISTEN 0 128 [::]:22 [::]:*
LISTEN 0 100 [::1]:25 [::]:*
LISTEN 0 128 [::]:443 [::]:*
3. 客户端安装
- 新建虚拟机,点击开机,看到此画面表示成功
- 按centos-7-x86_64回车安装
4. 定制安装
定制安装步骤:
- 统计服务器
- mac地址配置
- cobbler安装
//同步配置,重启相关服务
[root@cobbler ~]# cobbler sync
[root@cobbler ~]# systemctl restart cobblerd httpd xinetd
- 开启虚拟机验证,自动安装,登录成功
5. 用脚本自动创建虚拟机
//查看vm8的位置
[root@cobbler ~]# find / -name centos-7*
/var/lib/tftpboot/images/centos-7-x86_64
/var/lib/cobbler/config/distros.d/centos-7-x86_64.json
/var/lib/cobbler/config/profiles.d/centos-7-x86_64.json
/var/lib/cobbler/kickstarts/centos-7-x86_64.ks
/var/www/cobbler/images/centos-7-x86_64
/var/www/cobbler/ks_mirror/config/centos-7-x86_64.repo
/var/www/cobbler/ks_mirror/centos-7-x86_64
/var/www/cobbler/links/centos-7-x86_64
[root@cobbler ~]# cd /var/lib/cobbler/config/
[root@cobbler config]# ls
distros.d images.d packages.d repos.d
files.d mgmtclasses.d profiles.d systems.d
[root@cobbler config]# ls systems.d/
vm8.json
[root@cobbler systems.d]# cat vm8.json //查看vm8的配置
略... //把配置转换成json格式
//创建目录,编写安装脚本
[root@cobbler ~]# mkdir /scripts
[root@cobbler ~]# cd /scripts/
[root@cobbler scripts]# vim create_cobbler_system.sh
[root@cobbler scripts]# vim create_cobbler_system.sh
[root@cobbler scripts]# ls
create_cobbler_system.sh
//把vm8.json配置文件转换成json格式复制到脚本里
[root@cobbler scripts]# cat create_cobbler_system.sh
#!/bin/bash
cat > /var/lib/cobbler/config/systems.d/vm9.json <<EOF
{
"comment": "",
"status": "production",
"kickstart": "/var/lib/cobbler/kickstarts/centos-7-x86_64.ks",
"name_servers_search": [],
"ks_meta": {},
"kernel_options_post": {},
"image": "",
"redhat_management_key": "<<inherit>>",
"virt_path": "<<inherit>>",
"power_user": "",
"kernel_options": {
"biosdevname": "0",
"net.ifnames": "0"
},
"ctime": 1606225389.045344,
"name_servers": ["114.114.114.114"],
"mtime": 1606225389.045344,
"enable_gpxe": false,
"template_files": {},
"gateway": "192.168.152.2",
"uid": "MTYwNjIyNTM4OS4wNTQ2ODc0NDcuOTAzMTc",
"virt_auto_boot": 0,
"power_type": "ipmitool",
"virt_cpus": "<<inherit>>",
"mgmt_parameters": "<<inherit>>",
"boot_files": {},
"hostname": "node9.example.com", //修改名字为9
"repos_enabled": false,
"mgmt_classes": [],
"power_pass": "",
"netboot_enabled": true,
"ipv6_autoconfiguration": false,
"profile": "centos-7-x86_64",
"virt_type": "xenpv",
"interfaces": {
"eth0": {
"ipv6_address": "",
"interface_type": "",
"static": true,
"cnames": [],
"mtu": "192.168.152.222",
"management": false,
"interface_master": "",
"mac_address": "00:50:56:2F:65:CA", //写入新创建虚拟机MAC地址
"ipv6_prefix": "",
"virt_bridge": "xenbr0",
"netmask": "255.255.255.0",
"bonding_opts": "",
"ip_address": "192.168.152.233", //添加新IP
"dhcp_tag": "",
"static_routes": [],
"ipv6_mtu": "",
"ipv6_static_routes": [],
"if_gateway": "",
"dns_name": "",
"bridge_opts": "",
"connected_mode": false,
"ipv6_secondaries": [],
"ipv6_default_gateway": ""
}
},
"power_address": "",
"proxy": "<<inherit>>",
"fetchable_files": {},
"virt_file_size": "<<inherit>>",
"ldap_enabled": false,
"monit_enabled": false,
"ipv6_default_device": "",
"virt_pxe_boot": 0,
"virt_disk_driver": "<<inherit>>",
"owners": "<<inherit>>",
"name": "vm9", //修改虚拟机名字
"virt_ram": "<<inherit>>",
"power_id": "",
"server": "<<inherit>>",
"redhat_management_server": "<<inherit>>",
"depth": 2,
"ldap_type": "authconfig",
"template_remote_kickstarts": 0
}
EOF
//执行脚本
[root@cobbler scripts]# bash create_cobbler_system.sh
//生产新配置文件
[root@cobbler systems.d]# ls
vm8.json vm9.json
[root@cobbler systems.d]# rm -rf vm8.json
[root@cobbler systems.d]# ls
vm9.json
//重启和同步服务
[root@cobbler scripts]# systemctl restart cobblerd
[root@cobbler scripts]# cobbler sync
- 验证虚拟机