1. 关闭防火墙
1.1 关闭防火墙
**systemctl stop firewalld && systemctl disable firewalld #**关闭防火墙
1.2 关闭iptables防火墙
yum install iptables-services -y #安装iptables
service iptables stop && systemctl disable iptables #禁用iptable
iptables -F #清空防火墙规则
1.3 关闭selinux
setenforce 0
sed -i ‘s/SELINUX=enforcing/SELINUX=disabled/g’ /etc/selinux/config
#注意:修改selinux配置文件之后,重启机器,selinux才能永久生效
![image.png](https://img-blog.csdnimg.cn/img_convert/24632b84d680a458de5c6c5470dcc112.png#clientId=u331ad11b-2ebe-4&from=paste&height=77&id=u65b1f1c7&name=image.png&originHeight=154&originWidth=546&originalType=binary&ratio=1&rotation=0&showTitle=false&size=109859&status=done&style=none&taskId=u80040b7f-742d-443e-8e93-1903e6fdc19&title=&width=273)
1.4 配置时间同步
yum install -y ntp ntpdate
crontab -e #编写计划任务
** * /1 * * * /usr/sbin/ntpdate cn.pool.ntp.org #编写内容*
systemctl restart crond #重启crond服务使配置生效
![image.png](https://img-blog.csdnimg.cn/img_convert/b42573e588ba45cd60548df67145ee80.png#clientId=u331ad11b-2ebe-4&from=paste&height=225&id=u973dfb8d&name=image.png&originHeight=450&originWidth=976&originalType=binary&ratio=1&rotation=0&showTitle=false&size=525624&status=done&style=none&taskId=ub9937d27-a570-47d4-a5ca-bc5942de930&title=&width=488)
2. 安装基础软件包
2.1 常用基础软件
**yum install -y wget net-tools nfs-utils lrzsz gcc gcc-c++ **make cmake libxml2-devel openssl-devel curl curl-devel unzip sudo ntp libaio-devel wget vim ncurses-devel autoconf automake zlib-devel python-devel epel-release openssh-server socat ipvsadm conntrack yum-utils
3. 安装Docker
3.1 配置docker-ce国内yum源(阿里云)
yum-config-manager --add-repo http://mirrors.aliyun.com/docker-ce/linux/centos/docker-ce.repo
3.2 安装docker依赖包
yum install -y yum-utils device-mapper-persistent-data lvm2
3.3 安装docker-ce
yum install docker-ce -y #安装
systemctl start docker && systemctl enable docker #启动docker服务
![image.png](https://img-blog.csdnimg.cn/img_convert/d16d188887e59a1417850572b07544b1.png#clientId=u331ad11b-2ebe-4&from=paste&height=240&id=u5704c0bd&name=image.png&originHeight=480&originWidth=1346&originalType=binary&ratio=1&rotation=0&showTitle=false&size=748484&status=done&style=none&taskId=u1edb518b-861f-4eb5-bd37-c7d4b51b93f&title=&width=673)
3.4 配置docker镜像加速器
推荐阿里云镜像加速器。
https://cr.console.aliyun.com/cn-hangzhou/instances/mirrors
#让加速器生效
sudo systemctl daemon-reload
sudo systemctl restart docker
3.5 开启包转发功能和修改内核参数
内核参数修改:br_netfilter模块用于将桥接流量转发至iptables链,br_netfilter内核参数需要开启转发。
modprobe br_netfilter
cat > /etc/sysctl.d/docker.conf <<EOF
net.bridge.bridge-nf-call-ip6tables = 1
net.bridge.bridge-nf-call-iptables = 1
net.ipv4.ip_forward = 1
EOF
#配置生效
sysctl -p /etc/sysctl.d/docker.conf
docker-ce已安装OK.
4. 创建快照
创建快照是为了方便其他虚拟机克隆,以免新建的虚拟机做不必要的重复操作。