一、更新系统

[root@localhost ~]# yum -y upgrade / yum -y update
yum -y upgrade :只升级所有包,不升级软件和系统内核
yum -y update : 升级所有包,同时也升级软件和系统内核(生产环境慎用)

二、安装常用工具软件

[root@localhost ~]# yum -y install wget vim unzip lrzsz net-tools epel-release lsof ntp

三、设置固定IP地址

[root@localhost ~]# cd /etc/sysconfig/network-scripts/
[root@localhost network-scripts]# cp ifcfg-ens33 ifcfg-ens33_bak
[root@localhost network-scripts]# vim ifcfg-ens33

  1. TYPE="Ethernet"
  2. BOOTPROTO="static"
  3. DEFROUTE="yes"
  4. PEERDNS="yes"
  5. PEERROUTES="yes"
  6. IPV4_FAILURE_FATAL="no"
  7. IPV6INIT="yes"
  8. IPV6_AUTOCONF="yes"
  9. IPV6_DEFROUTE="yes"
  10. IPV6_PEERDNS="yes"
  11. IPV6_PEERROUTES="yes"
  12. IPV6_FAILURE_FATAL="no"
  13. IPV6_ADDR_GEN_MODE="stable-privacy"
  14. NAME="ens33"
  15. UUID="2da5a187-5ea9-4c53-a089-dc17c5577503"
  16. DEVICE="ens33"
  17. ONBOOT="yes"
  18. IPADDR=192.168.10.3
  19. NETMASK=255.255.255.0
  20. GATEWAY=192.168.10.2
  21. DNS1=114.114.114.114
  22. DNS2=8.8.8.8
[root@localhost network-scripts]#   systemctl restart network

四、关闭Selinux

[root@localhost ~]# sestatus
image.png
修改Selinux的状态为disbale:
[root@localhost ~]# vim /etc/sysconfig/selinux (将 SELINUX=enabled 改为 SELINUX=disabled)

SELINUX=disabled
......
SELINUXTYPE=targeted
或者,使用命令修改:<br />[root@localhost ~]#  sed -i s#SELINUX=enforcing#SELINUX=disabled#  /etc/sysconfig/selinux<br />[root@localhost ~]#  sed -i s#SELINUX=enforcing#SELINUX=disabled#  /etc/selinux/config<br />[root@localhost ~]# cat /etc/sysconfig/selinux<br />![image.png](https://cdn.nlark.com/yuque/0/2021/png/667991/1634289979816-6a19728c-a5ca-41de-ae1f-0cc724bc1e3b.png#clientId=ubd0c2d04-1f3c-4&crop=0&crop=0&crop=1&crop=1&from=paste&height=211&id=ud5dc1ef2&margin=%5Bobject%20Object%5D&name=image.png&originHeight=405&originWidth=1153&originalType=binary&ratio=1&rotation=0&showTitle=false&size=51246&status=done&style=none&taskId=u530ba962-5781-4588-809d-1f361e505d7&title=&width=600)<br />[root@localhost ~]# reboot            (重启系统,使配置生效)

五、关闭防火墙

一般情况下,公司出口网络自带硬件防火墙,服务器可关闭操作系统防火墙
[root@localhost ~]# systemctl status firewalld
[root@localhost ~]# systemctl stop firewalld
[root@localhost ~]# systemctl disable firewalld