4.6 KiB
Network Solutions [🌐]
This section documents my solutions to networking scenarios, including network configuration, troubleshooting, and security.
Scenario Tags
| Tag | Description |
|---|---|
| [v1-S7] | Network Configuration - Practice Scenarios v1 |
| [v2-S7] | Network and Storage Troubleshooting - Practice Scenarios v2 |
| [v3-S7] | Network Services Configuration - Practice Scenarios v3 |
Scenario: [v1-S7] Network Interface Configuration
Original Problem
From Practice Scenarios v1, Scenario 7:
- Configure static IPv4 address: 192.168.1.100/24
- Configure static IPv6 address: 2001:db8:1234:5678::100/64
- Set hostname to 'rhcsa.example.com'
- Configure DNS resolution using /etc/resolv.conf
- Implement network access restrictions using firewalld zones
Environment
- OS Version: RHEL/Rocky Linux 8.x
- Initial State: DHCP-configured network interface
- Required Outcome: Properly configured static network settings with hostname and firewall zones
Solution Steps
-
Check Current Network Configuration
# Check network interfaces ip addr show # Check routing ip route showThe first step is to identify the current network configuration to understand what needs to be changed.
-
Configure Static IPv4 and IPv6 Addresses
# Configure static IPv4 address sudo nmcli connection modify eth0 ipv4.addresses 192.168.1.100/24 ipv4.method manual # Configure static IPv6 address sudo nmcli connection modify eth0 ipv6.addresses 2001:db8:1234:5678::100/64 ipv6.method manual # Set default gateways sudo nmcli connection modify eth0 ipv4.gateway 192.168.1.1 sudo nmcli connection modify eth0 ipv6.gateway 2001:db8:1234:5678::1This configures the static IP addresses on the network interface.
-
Set Hostname
# Set hostname sudo hostnamectl set-hostname rhcsa.example.com # Update /etc/hosts sudo echo "127.0.0.1 rhcsa.example.com rhcsa" >> /etc/hostsThis sets the system hostname and updates the hosts file.
-
Configure DNS Resolution
# Configure DNS servers sudo nmcli connection modify eth0 ipv4.dns "8.8.8.8 8.8.4.4" # Apply changes sudo nmcli connection up eth0This configures the DNS servers and applies all the network configuration changes.
-
Configure Firewall Zones
# Create a new zone for restricted access sudo firewall-cmd --permanent --new-zone=restricted # Add services to the zone sudo firewall-cmd --permanent --zone=restricted --add-service=ssh sudo firewall-cmd --permanent --zone=restricted --add-service=http # Add source network to the zone sudo firewall-cmd --permanent --zone=restricted --add-source=192.168.1.0/24 # Reload firewall sudo firewall-cmd --reloadThis sets up a new firewall zone that restricts access to only SSH and HTTP from the local network.
Verification
# Verify IP configuration
ip addr show
# Verify hostname
hostname
# Verify DNS resolution
dig google.com
# Verify firewall zones
sudo firewall-cmd --list-all-zones
Key Learnings
- Network configuration with NetworkManager
- IPv4 and IPv6
- Firewall zone management
- DNS configuration
Skills Demonstrated
- Network Configuration
- DNS Management
- Network Troubleshooting
- Network Security
Scenario: [v2-S7] Network and Storage Troubleshooting
Original Problem
From Practice Scenarios v2, Scenario 7:
- Diagnose and repair failed NFS mounts
- Recover from a failed LVM configuration
- Fix network connectivity issues
- Restore correct SELinux contexts after file restoration
- Configure autofs for user home directories
- Set up network teaming for redundancy
Environment
- OS Version: RHEL/Rocky Linux 8.x
- Initial State: System with various network and storage issues
- Required Outcome: Fully functional system with resolved issues and properly configured network
Solution Steps
[To be filled when I complete this exercise]
Scenario: [v3-S7] Network Services Configuration
Original Problem
From Practice Scenarios v3, Scenario 7:
- Configure network with:
- Bonded interface with active-backup
- VLAN configuration
- Static routes
- Set up DNS resolution with:
- Multiple DNS servers
- Search domains
- Local host entries
- Implement network security with:
- TCP Wrappers
- IPtables rules
- Fail2ban configuration
Environment
- OS Version: RHEL/Rocky Linux 8.x
- Initial State: Basic network configuration with single interface
- Required Outcome: Advanced network configuration with bonding, VLANs, and security features
Solution Steps
[To be filled when I complete this exercise]