data:image/s3,"s3://crabby-images/53420/53420a9a45c5478f0a964081529504a74f936e6e" alt=""
sed -i ‘s/SELINUX=enforing/SELINUX=disabled/’ /etc/selinux/config
grep SELINUX=disabled /etc/selinux/config
setforce =0
getenforce
data:image/s3,"s3://crabby-images/7b79b/7b79b846846f2219edef041b99bf8715208a65a7" alt=""
/etc/init.d/iptables stop
/etc/init.d/iptables stop
Chkconfig iptables off
data:image/s3,"s3://crabby-images/510f4/510f41ce5421491abdc5f4ab6bf2f130f62477f6" alt=""
chkconfig |egrep -v "crond|sshd|network|rsyslog|sysstat"|awk '{print "chkconfig",$1,"off"}' |bash
chkconfig --list |grep 3:on
data:image/s3,"s3://crabby-images/119dd/119dde3914cde769cf1bfb703ed9fe75bc8784a5" alt=""
cp /etc/sudoers /etc/sudoers.ori
echo "oldboy ALL=(ALL) NOPASSWD:ALL">>/etc/sudoers
tail -l /etc/sudoers
visudo -c
data:image/s3,"s3://crabby-images/4ef05/4ef05d7d140cfb92941d2cf2d4ead797297570d2" alt=""
echo '#time sync by oldboy at 2010-2-1' >>/var/spool/cron/root
echo '*/5 * * * * /usr/sbin/ntpdate time.nist.gov >/dev/null 2&1' >>/var/spool/cron/root
crontab -l
data:image/s3,"s3://crabby-images/8adab/8adabd4c99fcefb702d9c9928c40ad513f57d996" alt=""
data:image/s3,"s3://crabby-images/13f4b/13f4b5caa2dad5e749dd36b60c430fdf9edc690f" alt=""
echo '* - nofile 65535' >>/etc/security/limits.conf
tail -l /etc/security/limits.conf
data:image/s3,"s3://crabby-images/c3479/c3479e28d4f12706272bd05aeab9fd024f19fba3" alt=""
data:image/s3,"s3://crabby-images/5fa0d/5fa0d28d2af2152e68ad8cb9c90531c1c8da941d" alt=""
cat /etc/sysctl.conf <
> net.ipv4.tcp_fin_timeout=2
> > net.ipv4.tcp_tw_reuse=1
> > net.ipv4.tcp_tw_recycle=1
> > net.ipv4.tcp_syncookies=1
> > net.ipv4.tcp_keepalive_time=600
> > net.ipv4.ip_local_port_range=4000 65000
> > net.ipv4.tcp_max_syn_backlog=16384
> > net.ipv4.tcp_max_tw_buckets=36000
> > net.ipv4.route.gc_timeout=100
> > net.ipv4.tcp_syn_retries=1
> > net.ipv4.tcp_synack_retries=1
> > net.core.somaxconn=16384
> > net.core.netdev_max_backolg=16384
> > net.ipv4.tcp_max_orphans=16384
> > net.nf_conntrack_max=25000000
> > net.netfilter.nf_conntrack_max=25000000
> net.netfilter.nf_conntrack_tcp_timeout_established=180
> net.netfilter.nf_conntrack_tcp_timeout_time_wait=120
> net.netfilter.nf_conntrack_tcp_timeout_close_wait=60
> net.netfilter.nf_conntrack_tcp_timeout_fin_wait=120
> EOF