CN106569802A - Manufacturing method and manufacturing device of ISO installation mirror images of firewalls - Google Patents

Manufacturing method and manufacturing device of ISO installation mirror images of firewalls Download PDF

Info

Publication number
CN106569802A
CN106569802A CN201610910146.9A CN201610910146A CN106569802A CN 106569802 A CN106569802 A CN 106569802A CN 201610910146 A CN201610910146 A CN 201610910146A CN 106569802 A CN106569802 A CN 106569802A
Authority
CN
China
Prior art keywords
installation
iso
firewall
root
different
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN201610910146.9A
Other languages
Chinese (zh)
Inventor
高福亮
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Opzoon Technology Co Ltd
Original Assignee
Opzoon Technology Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Opzoon Technology Co Ltd filed Critical Opzoon Technology Co Ltd
Priority to CN201610910146.9A priority Critical patent/CN106569802A/en
Publication of CN106569802A publication Critical patent/CN106569802A/en
Pending legal-status Critical Current

Links

Classifications

    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F8/00Arrangements for software engineering
    • G06F8/30Creation or generation of source code
    • G06F8/31Programming languages or programming paradigms
    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F8/00Arrangements for software engineering
    • G06F8/40Transformation of program code
    • G06F8/41Compilation
    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F8/00Arrangements for software engineering
    • G06F8/60Software deployment
    • G06F8/61Installation

Landscapes

  • Engineering & Computer Science (AREA)
  • Software Systems (AREA)
  • General Engineering & Computer Science (AREA)
  • Theoretical Computer Science (AREA)
  • Physics & Mathematics (AREA)
  • General Physics & Mathematics (AREA)
  • Computing Systems (AREA)
  • Stored Programmes (AREA)

Abstract

本发明公开一种防火墙ISO安装镜像的制作方法及装置,能够制作出适用于服务器、虚拟机、工控机不同平台的防火墙ISO的安装镜像文件,该方法包括:S1、编写自定义编译、安装脚本,设置不同参数,适用于不同平台、不同安装方式的防火墙ISO的编译,其中,所述平台包括服务器、工控机和虚拟机,所述安装方式包括PXE、CD‑ROM和USB;S2、根据输入的编译选项参数不同编译不同安装引导内核镜像;S3、根据输入的编译选项参数不同完成不同平台、不同安装方式的防火墙安装ISO镜像文件制作。

The invention discloses a method and device for making a firewall ISO installation image, capable of making firewall ISO installation image files suitable for different platforms of servers, virtual machines, and industrial computers. The method includes: S1, writing custom compilation, and installation scripts , different parameters are set, and are suitable for compilation of firewall ISOs of different platforms and different installation methods, wherein the platform includes a server, an industrial computer and a virtual machine, and the installation method includes PXE, CD-ROM and USB; S2, according to the input The compilation option parameters are different to compile and install the boot kernel image; S3, according to the input compilation option parameters, complete the production of firewall installation ISO image files for different platforms and different installation methods.

Description

防火墙ISO安装镜像的制作方法及装置Method and device for making firewall ISO installation image

技术领域technical field

本发明涉及防火墙技术领域,具体涉及一种防火墙ISO安装镜像的制作方法及装置。The invention relates to the technical field of firewalls, in particular to a method and device for making a firewall ISO installation image.

背景技术Background technique

防火墙网络设备的升级镜像文件一般以ROM的方式对外提供,对于需要出厂的空设备一般是通过存储卡烧录的生产方式,或者在提供ISO安装镜像时可通过U盘、CD-ROM、PXE等方式进行安装,对于批量生产安装时PXE的安装方式是首选,对于单台或少量设备可选择U盘、CD-ROM的方式安装ISO镜像,同时ISO镜像文件也可对外发布,提供给用户使用。The upgrade image file of the firewall network device is generally provided externally in the form of ROM. For the empty device that needs to leave the factory, it is generally produced by burning a memory card, or when providing an ISO installation image, it can be provided through a U disk, CD-ROM, PXE, etc. For installation in mass production, the PXE installation method is the first choice. For a single or a small number of devices, you can choose U disk or CD-ROM to install the ISO image. At the same time, the ISO image file can also be released for users to use.

但是,现有的防火墙ISO安装镜像的制作方法所制作出的ISO安装镜像仅适用于某种固定的平台,比如服务器、虚拟机或工控机,而不能根据所使用平台的不同制作出对应的ISO安装镜像。However, the ISO installation image produced by the existing method for making the firewall ISO installation image is only applicable to a certain fixed platform, such as a server, a virtual machine or an industrial computer, and the corresponding ISO cannot be produced according to the different platforms used. Install the mirror.

发明内容Contents of the invention

针对现有技术存在的不足和缺陷,本发明提供一种防火墙ISO安装镜像的制作方法及装置。Aiming at the deficiencies and defects of the prior art, the present invention provides a method and device for making a firewall ISO installation image.

一方面,本发明实施例提出一种防火墙ISO安装镜像的制作方法,包括:On the one hand, the embodiment of the present invention proposes a method for making a firewall ISO installation image, including:

S1、编写自定义编译、安装脚本,设置不同参数,适用于不同平台、不同安装方式的防火墙ISO的编译,其中,所述平台包括服务器、工控机和虚拟机,所述安装方式包括PXE、CD-ROM和USB;S1, write custom compilation, installation script, set different parameters, be applicable to the compilation of the firewall ISO of different platforms, different installation methods, wherein, described platform comprises server, industrial computer and virtual machine, described installation method comprises PXE, CD - ROM and USB;

S2、根据输入的编译选项参数不同编译不同安装引导内核镜像;S2. Compile different installation and boot kernel images according to different input compilation option parameters;

S3、根据输入的编译选项参数不同完成不同平台、不同安装方式的防火墙安装ISO镜像文件制作。S3. Complete the production of firewall installation ISO image files for different platforms and different installation methods according to the input compilation option parameters.

另一方面,本发明实施例提出一种防火墙ISO安装镜像的制作装置,包括:On the other hand, an embodiment of the present invention proposes a device for making a firewall ISO installation image, including:

设置单元,用于编写自定义编译、安装脚本,设置不同参数,适用于不同平台、不同安装方式的防火墙ISO的编译,其中,所述平台包括服务器、工控机和虚拟机,所述安装方式包括PXE、CD-ROM和USB;The setting unit is used to write custom compilation and installation scripts, and different parameters are set, which is applicable to the compilation of firewall ISOs of different platforms and different installation methods, wherein the platform includes a server, an industrial computer and a virtual machine, and the installation method includes PXE, CD-ROM and USB;

编译单元,用于根据输入的编译选项参数不同编译不同安装引导内核镜像;The compilation unit is used to compile different installation and boot kernel images according to the input compilation option parameters;

制作单元,用于根据输入的编译选项参数不同完成不同平台、不同安装方式的防火墙安装ISO镜像文件制作。The production unit is used to complete the production of firewall installation ISO image files for different platforms and different installation methods according to the input compilation option parameters.

本发明具有如下有益效果:The present invention has following beneficial effects:

通过编写自定义编译、制作脚本,制作修改内核根文件系统,根据输入编译参数的不同编译制作出适用于服务器、虚拟机、工控机不同平台的防火墙ISO的安装镜像文件,制作后的IOS安装镜像可以提供给用户使用或对外发布。By writing custom compilation and making scripts, making and modifying the kernel root file system, and compiling according to different input compilation parameters, we can produce firewall ISO installation image files suitable for different platforms of servers, virtual machines, and industrial computers, and the IOS installation image after production It can be provided to users for use or published externally.

附图说明Description of drawings

图1为本发明防火墙ISO安装镜像的制作方法一实施例的流程示意图;Fig. 1 is a schematic flow chart of an embodiment of a method for making a firewall ISO installation image of the present invention;

图2为本发明防火墙ISO安装镜像的制作装置一实施例的结构示意图。FIG. 2 is a schematic structural diagram of an embodiment of a device for making a firewall ISO installation image according to the present invention.

具体实施方式detailed description

为使本发明实施例的目的、技术方案和优点更加清楚,下面将结合本发明实施例中的附图,对本发明实施例中的技术方案进行清楚地描述,显然,所描述的实施例是本发明一部分实施例,而不是全部的实施例。基于本发明中的实施例,本领域普通技术人员在没有做出创造性劳动前提下所获得的所有其他实施例,都属于本发明保护的范围。In order to make the purpose, technical solutions and advantages of the embodiments of the present invention clearer, the technical solutions in the embodiments of the present invention will be clearly described below in conjunction with the accompanying drawings in the embodiments of the present invention. Obviously, the described embodiments are the Some, but not all, embodiments are invented. Based on the embodiments of the present invention, all other embodiments obtained by persons of ordinary skill in the art without making creative efforts belong to the protection scope of the present invention.

参看图1,本实施例公开一种防火墙ISO安装镜像的制作方法,包括:Referring to Fig. 1, the present embodiment discloses a method for making a firewall ISO installation image, including:

S1、编写自定义编译、安装脚本,设置不同参数,适用于不同平台、不同安装方式的防火墙ISO的编译;S1. Write custom compilation and installation scripts, set different parameters, and compile firewall ISOs suitable for different platforms and different installation methods;

在具体应用中,编写自定义编译、安装脚本mk.sh,设置不同参数,适用于不同平台:服务器、工控机或虚拟机,不同安装方式:PXE或CD-ROM、USB的防火墙ISO的编译,大致如下:In specific applications, write custom compilation and installation script mk.sh, set different parameters, suitable for different platforms: server, industrial computer or virtual machine, different installation methods: PXE or CD-ROM, USB firewall ISO compilation, Roughly as follows:

1)-v:虚拟机版本1)-v: virtual machine version

2)-s:服务器版本2)-s: server version

3)-c:以cd-rom或U盘方式安装3)-c: Install by cd-rom or U disk

4)-p:以pxe服务器方式安装4)-p: Install as a pxe server

为X86架构产生安装内核的引导镜像和iso文件的代码如下:The code to generate the boot image and iso file for installing the kernel for the X86 architecture is as follows:

1)./mk.sh-cv1)./mk.sh-cv

2)./mk.sh-pv2)./mk.sh-pv

3)./mk.sh-cs3). ./mk.sh-cs

4)./mk.sh-ps4). ./mk.sh-ps

S2、根据输入的编译选项参数不同编译不同安装引导内核镜像;S2. Compile different installation and boot kernel images according to different input compilation option parameters;

本实施例中,根据输入的编译选项参数不同编译不同安装引导内核镜像bzinstall_s_iso、bzinstall_v_iso、bzinstall_s_pxe、bzinstall_v_pxe,具体步骤如下:In this embodiment, different installation and boot kernel images bzinstall_s_iso, bzinstall_v_iso, bzinstall_s_pxe, bzinstall_v_pxe are compiled according to the input compilation option parameters, and the specific steps are as follows:

1)配置内核选项支持服务器、工控机或虚拟机常用的存储设备(如硬盘、CF卡)驱动、文件系统(ext3、ext4)支持、网卡设备驱动支持等;1) Configure the kernel option to support the storage device (such as hard disk, CF card) driver, file system (ext3, ext4) support, network card device driver support, etc. commonly used by servers, industrial computers or virtual machines;

2)修改内核根文件系统的passwd文件,使安装引导内核起来后直接运行防火墙安装脚本,完成防火墙的安装,修改内容如下:2) Modify the passwd file of the kernel root file system, so that after the kernel is installed and booted, the firewall installation script can be run directly to complete the installation of the firewall. The modified content is as follows:

root:x:0:0:root:/root:/bin/shroot:x:0:0:root:/root:/bin/sh

console:x:0:0:root:/root:/root/install.shconsole:x:0:0:root:/root:/root/install.sh

tty0:x:0:0:root:/root:/root/install.shtty0:x:0:0:root:/root:/root/install.sh

3)修改内核根文件系统的inittab文件,根据编译输入参数不同设置安装引导内核起来后不同的显示终端,保证安装过程能够在终端正常显示,完成与用户交互,修改内容如下:3) Modify the inittab file of the kernel root file system, and set different display terminals after the kernel is installed and booted according to different compilation input parameters, so as to ensure that the installation process can be displayed normally on the terminal and complete the interaction with the user. The modified content is as follows:

null::respawn:/sbin/agetty-a console-n 9600 tty1 vt100 虚拟终端---虚拟机null::respawn:/sbin/agetty-a console-n 9600 tty1 vt100 virtual terminal---virtual machine

null::respawn:/sbin/agetty-a tty0-n 9600 tty0 vt100 控制台终端-----服务器null::respawn:/sbin/agetty-a tty0-n 9600 tty0 vt100 console terminal -----server

null::respawn:/sbin/agetty-a console-n 9600 ttyS0 vt100 串行端口终端---工控机null::respawn:/sbin/agetty-a console-n 9600 ttyS0 vt100 serial port terminal --- industrial computer

4)将防火墙安装脚本install.sh放到/root目录下(2)中修改内核启动后运行/root/install.sh),保证防火墙安装脚本编译进安装引导内核镜像;4) Put the firewall installation script install.sh in the /root directory (2) and run /root/install.sh after modifying the kernel startup to ensure that the firewall installation script is compiled into the installation boot kernel image;

5)最后根据输入的编译选项参数不同开始编译内核并生成引导内核镜像文件bzinstall_s_iso、bzinstall_v_iso、bzinstall_s_pxe、bzinstall_v_pxe。5) Finally, start compiling the kernel according to the input compilation option parameters and generate boot kernel image files bzinstall_s_iso, bzinstall_v_iso, bzinstall_s_pxe, bzinstall_v_pxe.

S3、根据输入的编译选项参数不同完成不同平台、不同安装方式的防火墙安装ISO镜像文件制作。S3. Complete the production of firewall installation ISO image files for different platforms and different installation methods according to the input compilation option parameters.

本实施例中,根据输入的编译选项参数不同完成不同平台、不同安装方式的防火墙安装ISO镜像文件制作:server_install.iso、virtual_install.iso、bzinstall_s_pxe.iso、bzinstall_v_pxe.iso,具体如下:In this embodiment, according to the different compilation option parameters input, the production of firewall installation ISO image files of different platforms and different installation methods is completed: server_install.iso, virtual_install.iso, bzinstall_s_pxe.iso, bzinstall_v_pxe.iso, specifically as follows:

1)创建防火墙安装ISO镜像文件制作的根目录process/iso、process/iso/CD_root、process/iso/CD_root/firewall;1) Create the root directory process/iso, process/iso/CD_root, process/iso/CD_root/firewall created by the firewall installation ISO image file;

2)根据输入的编译选项参数不同将对应安装引导内核镜像(bzinstall_s_iso、bzinstall_v_iso、bzinstall_s_pxe、bzinstall_v_pxe)拷贝到process/iso/CD_root/bzimage.ins;2) Copy the corresponding installation boot kernel image (bzinstall_s_iso, bzinstall_v_iso, bzinstall_s_pxe, bzinstall_v_pxe) to process/iso/CD_root/bzimage.ins according to the different parameters of the input compilation options;

3)根据输入的编译选项参数不同将对应防火墙的安装脚本(virtual_install.sh、server_install.sh)拷贝到process/iso/CD_root/install.sh;3) Copy the installation scripts (virtual_install.sh, server_install.sh) corresponding to the firewall to process/iso/CD_root/install.sh according to the different parameters of the input compilation options;

4)拷贝ISO安装所必须的引导程序isolinux.bin、isolinux.cfg到process/iso/CD_root/;4) Copy the boot programs isolinux.bin and isolinux.cfg necessary for ISO installation to process/iso/CD_root/;

5)根据输入的编译选项参数不同将对应防火墙的镜像文件拷贝到process/iso/CD_root/firewall/firewall.bin,包括防火墙启动所必须的其他文件等,如配置文件、生产文件、License等;5) Copy the image file corresponding to the firewall to process/iso/CD_root/firewall/firewall.bin according to the different parameters of the input compilation options, including other files necessary for the firewall to start, such as configuration files, production files, License, etc.;

6)最后通过mkisofs命令将防火墙安装ISO镜像文件制作的根目录CD_root打包生成ISO镜像文件,根据输入的编译选项参数不同可以生成不同平台、不同安装方式的ISO镜像文件(server_install.iso、virtual_install.iso、bzinstall_s_pxe.iso、bzinstall_v_pxe.iso),打包大致命令如下:6) Finally, use the mkisofs command to package the root directory CD_root created by the firewall installation ISO image file to generate an ISO image file. According to the input compilation option parameters, ISO image files of different platforms and different installation methods can be generated (server_install.iso, virtual_install.iso , bzinstall_s_pxe.iso, bzinstall_v_pxe.iso), the general order of packaging is as follows:

mkisofs-o virtual_install.iso-b isolinux/isolinux.bin-c isolinux/boot.cat-no-emul-boot-boot-load-size 4-boot-info-table CD_root。mkisofs -o virtual_install.iso -b isolinux/isolinux.bin -c isolinux/boot.cat -no-emul-boot-boot-load-size 4-boot-info-table CD_root.

本发明实施例提供的防火墙ISO安装镜像的制作方法,通过编写自定义编译、制作脚本,制作修改内核根文件系统,根据输入编译参数的不同编译制作出适用于服务器、虚拟机、工控机不同平台的防火墙ISO的安装镜像文件,制作后的IOS安装镜像可以提供给用户使用或对外发布。The method for making the firewall ISO installation image provided by the embodiment of the present invention is to make and modify the kernel root file system by writing custom compilation and making scripts, and according to the different compilation parameters of the input compilation, it is suitable for different platforms of servers, virtual machines, and industrial computers. The installation image file of the firewall ISO, the created IOS installation image can be provided to users or released to the outside world.

参看图2,本实施例公开一种防火墙ISO安装镜像的制作装置,包括:Referring to Fig. 2, the present embodiment discloses a device for making a firewall ISO installation image, including:

设置单元1,用于编写自定义编译、安装脚本,设置不同参数,适用于不同平台、不同安装方式的防火墙ISO的编译,其中,所述平台包括服务器、工控机和虚拟机,所述安装方式包括PXE、CD-ROM和USB;Setting unit 1 is used to write custom compilation and installation scripts, set different parameters, and is applicable to the compilation of firewall ISOs of different platforms and different installation methods, wherein the platform includes servers, industrial computers and virtual machines, and the installation methods including PXE, CD-ROM and USB;

编译单元2,用于根据输入的编译选项参数不同编译不同安装引导内核镜像;The compilation unit 2 is used to compile different installation and boot kernel images according to different input compilation option parameters;

制作单元3,用于根据输入的编译选项参数不同完成不同平台、不同安装方式的防火墙安装ISO镜像文件制作。The production unit 3 is used to complete the production of firewall installation ISO image files for different platforms and different installation methods according to the input compilation option parameters.

本发明实施例提供的防火墙ISO安装镜像的制作装置,通过编写自定义编译、制作脚本,制作修改内核根文件系统,根据输入编译参数的不同编译制作出适用于服务器、虚拟机、工控机不同平台的防火墙ISO的安装镜像文件,制作后的IOS安装镜像可以提供给用户使用或对外发布。The firewall ISO installation image production device provided by the embodiment of the present invention, by writing custom compilation and production scripts, making and modifying the kernel root file system, and compiling according to different input compilation parameters, it is suitable for different platforms of servers, virtual machines, and industrial computers The installation image file of the firewall ISO, the created IOS installation image can be provided to users or released to the outside world.

在前述装置实施例的基础上,所述装置还可以包括如下的图中未示出的结构:On the basis of the aforementioned device embodiments, the device may also include the following structures not shown in the figure:

配置单元,用于在所述编译单元工作之前配置内核选项支持服务器、工控机或虚拟机常用的存储设备驱动、文件系统支持、网卡设备驱动支持;The configuration unit is used to configure the kernel option support server, industrial computer or virtual machine commonly used storage device driver, file system support, and network card device driver support before the compilation unit works;

第一修改单元,用于修改内核根文件系统的passwd文件,使安装引导内核起来后直接运行防火墙安装脚本,完成防火墙的安装;The first modification unit is used to modify the passwd file of the kernel root file system, so that the firewall installation script can be run directly after the kernel is installed and the boot kernel gets up, to complete the installation of the firewall;

第二修改单元,用于修改内核根文件系统的inittab文件,根据编译输入参数不同设置安装引导内核起来后不同的显示终端,保证安装过程能够在终端正常显示,完成与用户交互;The second modification unit is used to modify the inittab file of the kernel root file system, and different display terminals are set after the kernel is installed and booted according to different input parameters of the compilation, so as to ensure that the installation process can be displayed normally on the terminal and complete the interaction with the user;

放置单元,用于将防火墙安装脚本install.sh放到/root目录下,保证防火墙安装脚本编译进安装引导内核镜像。The placement unit is used to put the firewall installation script install.sh in the /root directory to ensure that the firewall installation script is compiled into the installation boot kernel image.

在前述装置实施例的基础上,所述装置还可以包括如下的图中未示出的结构:On the basis of the aforementioned device embodiments, the device may also include the following structures not shown in the figure:

创建单元,用于在所述制作单元工作之前创建防火墙安装ISO镜像文件制作的根目录process/iso、process/iso/CD_root、process/iso/CD_root/firewall;Create unit, be used for creating the root directory process/iso, process/iso/CD_root, process/iso/CD_root/firewall that firewall installation ISO image file makes before described production unit work;

第一拷贝单元,用于根据输入的编译选项参数不同将对应安装引导内核镜像拷贝到process/iso/CD_root/bzimage.ins;The first copy unit is used to copy the corresponding installation and boot kernel image to process/iso/CD_root/bzimage.ins according to the different input compilation option parameters;

第二拷贝单元,用于根据输入的编译选项参数不同将对应防火墙的安装脚本拷贝到process/iso/CD_root/install.sh;The second copying unit is used to copy the installation script corresponding to the firewall to process/iso/CD_root/install.sh according to the different input compilation option parameters;

第三拷贝单元,用于拷贝ISO安装所必须的引导程序isolinux.bin、isolinux.cfg到process/iso/CD_root/;The third copying unit is used to copy the necessary boot programs isolinux.bin and isolinux.cfg for ISO installation to process/iso/CD_root/;

第四拷贝单元,用于根据输入的编译选项参数不同将对应防火墙的镜像文件拷贝到process/iso/CD_root/firewall/firewall.bin;The fourth copying unit is used to copy the image file corresponding to the firewall to process/iso/CD_root/firewall/firewall.bin according to the different input compilation option parameters;

打包单元,用于通过mkisofs命令将防火墙安装ISO镜像文件制作的根目录CD_root打包生成ISO镜像文件。The packaging unit is used to package the root directory CD_root created by the firewall installation ISO image file through the mkisofs command to generate an ISO image file.

虽然结合附图描述了本发明的实施方式,但是本领域技术人员可以在不脱离本发明的精神和范围的情况下做出各种修改和变型,这样的修改和变型均落入由所附权利要求所限定的范围之内。Although the embodiments of the present invention have been described in conjunction with the accompanying drawings, those skilled in the art can make various modifications and variations without departing from the spirit and scope of the present invention. within the bounds of the requirements.

Claims (6)

1.一种防火墙ISO安装镜像的制作方法,其特征在于,包括:1. A method for making a firewall ISO installation image, characterized in that, comprising: S1、编写自定义编译、安装脚本,设置不同参数,适用于不同平台、不同安装方式的防火墙ISO的编译,其中,所述平台包括服务器、工控机和虚拟机,所述安装方式包括PXE、CD-ROM和USB;S1, write custom compilation, installation script, set different parameters, be applicable to the compilation of the firewall ISO of different platforms, different installation methods, wherein, described platform comprises server, industrial computer and virtual machine, described installation method comprises PXE, CD - ROM and USB; S2、根据输入的编译选项参数不同编译不同安装引导内核镜像;S2. Compile different installation and boot kernel images according to different input compilation option parameters; S3、根据输入的编译选项参数不同完成不同平台、不同安装方式的防火墙安装ISO镜像文件制作。S3. Complete the production of firewall installation ISO image files for different platforms and different installation methods according to the input compilation option parameters. 2.根据权利要求1所述的方法,其特征在于,在所述S2之前,还包括:2. The method according to claim 1, characterized in that, before the S2, further comprising: 配置内核选项支持服务器、工控机或虚拟机常用的存储设备驱动、文件系统支持、网卡设备驱动支持;Configure kernel options to support common storage device drivers, file system support, and network card device driver support for servers, industrial computers or virtual machines; 修改内核根文件系统的passwd文件,使安装引导内核起来后直接运行防火墙安装脚本,完成防火墙的安装;Modify the passwd file of the kernel root file system, so that after the kernel is installed and booted, the firewall installation script can be run directly to complete the installation of the firewall; 修改内核根文件系统的inittab文件,根据编译输入参数不同设置安装引导内核起来后不同的显示终端,保证安装过程能够在终端正常显示,完成与用户交互;Modify the inittab file of the kernel root file system, and set different display terminals after installing and booting the kernel according to different compilation input parameters, so as to ensure that the installation process can be displayed normally on the terminal and complete the interaction with the user; 将防火墙安装脚本install.sh放到/root目录下,保证防火墙安装脚本编译进安装引导内核镜像。Put the firewall installation script install.sh in the /root directory to ensure that the firewall installation script is compiled into the installation boot kernel image. 3.根据权利要求1或2所述的方法,其特征在于,在所述S3之前,还包括:3. The method according to claim 1 or 2, characterized in that, before the S3, further comprising: 创建防火墙安装ISO镜像文件制作的根目录process/iso、process/iso/CD_root、process/iso/CD_root/firewall;Create the root directory process/iso, process/iso/CD_root, process/iso/CD_root/firewall created by the firewall installation ISO image file; 根据输入的编译选项参数不同将对应安装引导内核镜像拷贝到process/iso/CD_root/bzimage.ins;Copy the corresponding installation boot kernel image to process/iso/CD_root/bzimage.ins according to the input compilation option parameters; 根据输入的编译选项参数不同将对应防火墙的安装脚本拷贝到process/iso/CD_root/install.sh;Copy the installation script corresponding to the firewall to process/iso/CD_root/install.sh according to the input compilation option parameters; 拷贝ISO安装所必须的引导程序isolinux.bin、isolinux.cfg到process/iso/CD_root/;Copy the boot programs isolinux.bin and isolinux.cfg necessary for ISO installation to process/iso/CD_root/; 根据输入的编译选项参数不同将对应防火墙的镜像文件拷贝到process/iso/CD_root/firewall/firewall.bin;Copy the image file corresponding to the firewall to process/iso/CD_root/firewall/firewall.bin according to the input compilation option parameters; 通过mkisofs命令将防火墙安装ISO镜像文件制作的根目录CD_root打包生成ISO镜像文件。Use the mkisofs command to package the root directory CD_root created by the firewall installation ISO image file to generate an ISO image file. 4.一种防火墙ISO安装镜像的制作装置,其特征在于,包括:4. A device for making a firewall ISO installation image, characterized in that, comprising: 设置单元,用于编写自定义编译、安装脚本,设置不同参数,适用于不同平台、不同安装方式的防火墙ISO的编译,其中,所述平台包括服务器、工控机和虚拟机,所述安装方式包括PXE、CD-ROM和USB;The setting unit is used to write custom compilation and installation scripts, and different parameters are set, which is applicable to the compilation of firewall ISOs of different platforms and different installation methods, wherein the platform includes a server, an industrial computer and a virtual machine, and the installation method includes PXE, CD-ROM and USB; 编译单元,用于根据输入的编译选项参数不同编译不同安装引导内核镜像;The compilation unit is used to compile different installation and boot kernel images according to the input compilation option parameters; 制作单元,用于根据输入的编译选项参数不同完成不同平台、不同安装方式的防火墙安装ISO镜像文件制作。The production unit is used to complete the production of firewall installation ISO image files for different platforms and different installation methods according to the input compilation option parameters. 5.根据权利要求4所述的装置,其特征在于,还包括:5. The device according to claim 4, further comprising: 配置单元,用于在所述编译单元工作之前配置内核选项支持服务器、工控机或虚拟机常用的存储设备驱动、文件系统支持、网卡设备驱动支持;The configuration unit is used to configure the kernel option support server, industrial computer or virtual machine commonly used storage device driver, file system support, and network card device driver support before the compilation unit works; 第一修改单元,用于修改内核根文件系统的passwd文件,使安装引导内核起来后直接运行防火墙安装脚本,完成防火墙的安装;The first modification unit is used to modify the passwd file of the kernel root file system, so that the firewall installation script can be run directly after the kernel is installed and the boot kernel gets up, to complete the installation of the firewall; 第二修改单元,用于修改内核根文件系统的inittab文件,根据编译输入参数不同设置安装引导内核起来后不同的显示终端,保证安装过程能够在终端正常显示,完成与用户交互;The second modification unit is used to modify the inittab file of the kernel root file system, and different display terminals are set after the kernel is installed and booted according to different input parameters of the compilation, so as to ensure that the installation process can be displayed normally on the terminal and complete the interaction with the user; 放置单元,用于将防火墙安装脚本install.sh放到/root目录下,保证防火墙安装脚本编译进安装引导内核镜像。The placement unit is used to put the firewall installation script install.sh in the /root directory to ensure that the firewall installation script is compiled into the installation boot kernel image. 6.根据权利要求5所述的装置,其特征在于,还包括:6. The device according to claim 5, further comprising: 创建单元,用于在所述制作单元工作之前创建防火墙安装ISO镜像文件制作的根目录process/iso、process/iso/CD_root、process/iso/CD_root/firewall;Create unit, be used for creating the root directory process/iso, process/iso/CD_root, process/iso/CD_root/firewall that firewall installation ISO image file makes before described production unit work; 第一拷贝单元,用于根据输入的编译选项参数不同将对应安装引导内核镜像拷贝到process/iso/CD_root/bzimage.ins;The first copy unit is used to copy the corresponding installation and boot kernel image to process/iso/CD_root/bzimage.ins according to the different input compilation option parameters; 第二拷贝单元,用于根据输入的编译选项参数不同将对应防火墙的安装脚本拷贝到process/iso/CD_root/install.sh;The second copying unit is used to copy the installation script corresponding to the firewall to process/iso/CD_root/install.sh according to the different input compilation option parameters; 第三拷贝单元,用于拷贝ISO安装所必须的引导程序isolinux.bin、isolinux.cfg到process/iso/CD_root/;The third copying unit is used to copy the necessary boot programs isolinux.bin and isolinux.cfg for ISO installation to process/iso/CD_root/; 第四拷贝单元,用于根据输入的编译选项参数不同将对应防火墙的镜像文件拷贝到process/iso/CD_root/firewall/firewall.bin;The fourth copying unit is used to copy the image file corresponding to the firewall to process/iso/CD_root/firewall/firewall.bin according to the different input compilation option parameters; 打包单元,用于通过mkisofs命令将防火墙安装ISO镜像文件制作的根目录CD_root打包生成ISO镜像文件。The packaging unit is used to package the root directory CD_root created by the firewall installation ISO image file through the mkisofs command to generate an ISO image file.
CN201610910146.9A 2016-10-17 2016-10-17 Manufacturing method and manufacturing device of ISO installation mirror images of firewalls Pending CN106569802A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201610910146.9A CN106569802A (en) 2016-10-17 2016-10-17 Manufacturing method and manufacturing device of ISO installation mirror images of firewalls

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201610910146.9A CN106569802A (en) 2016-10-17 2016-10-17 Manufacturing method and manufacturing device of ISO installation mirror images of firewalls

Publications (1)

Publication Number Publication Date
CN106569802A true CN106569802A (en) 2017-04-19

Family

ID=60414310

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201610910146.9A Pending CN106569802A (en) 2016-10-17 2016-10-17 Manufacturing method and manufacturing device of ISO installation mirror images of firewalls

Country Status (1)

Country Link
CN (1) CN106569802A (en)

Cited By (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN107438102A (en) * 2017-07-31 2017-12-05 国云科技股份有限公司 A cloud platform image production system and method thereof
CN107577466A (en) * 2017-09-22 2018-01-12 郑州云海信息技术有限公司 A kind of RPM software kits Compilation Method and system based on linux system
CN109857468A (en) * 2019-01-04 2019-06-07 烽火通信科技股份有限公司 A kind of method and system for supporting more DTB in single linux system mirror image
CN110995768A (en) * 2019-12-31 2020-04-10 奇安信科技集团股份有限公司 Building and generating firewall methods, apparatus, apparatus, media and program products
CN113568628A (en) * 2021-07-16 2021-10-29 成都安恒信息技术有限公司 ISO automatic production method based on debian system
CN113590140A (en) * 2021-06-29 2021-11-02 济南浪潮数据技术有限公司 Manufacturing method and system of visual PXE system

Citations (8)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20050198628A1 (en) * 2004-03-04 2005-09-08 Graham Christoph J. Creating a platform specific software image
CN101014034A (en) * 2006-12-31 2007-08-08 武汉蓝星科技股份有限公司 U disk server-based cluster solving method
CN101859251A (en) * 2009-04-09 2010-10-13 研祥智能科技股份有限公司 Method and device for installing embedded operating system
CN103365667A (en) * 2012-03-26 2013-10-23 国际商业机器公司 Method and device for installing operating system in host system
CN103458002A (en) * 2013-08-15 2013-12-18 中电长城网际系统应用有限公司 One-key deployment method and device for cloud system
CN104394223A (en) * 2014-12-03 2015-03-04 浪潮集团有限公司 Automatic rapid deployment method for large-scale computer cluster system nodes
CN104572154A (en) * 2013-10-23 2015-04-29 北京天地超云科技有限公司 Quick deployment method for RHEL (red hat enterprise Linux) operating system and applications
CN105187245A (en) * 2015-08-25 2015-12-23 浪潮(北京)电子信息产业有限公司 Batch deployment system and method of server virtualization platform operating system

Patent Citations (8)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20050198628A1 (en) * 2004-03-04 2005-09-08 Graham Christoph J. Creating a platform specific software image
CN101014034A (en) * 2006-12-31 2007-08-08 武汉蓝星科技股份有限公司 U disk server-based cluster solving method
CN101859251A (en) * 2009-04-09 2010-10-13 研祥智能科技股份有限公司 Method and device for installing embedded operating system
CN103365667A (en) * 2012-03-26 2013-10-23 国际商业机器公司 Method and device for installing operating system in host system
CN103458002A (en) * 2013-08-15 2013-12-18 中电长城网际系统应用有限公司 One-key deployment method and device for cloud system
CN104572154A (en) * 2013-10-23 2015-04-29 北京天地超云科技有限公司 Quick deployment method for RHEL (red hat enterprise Linux) operating system and applications
CN104394223A (en) * 2014-12-03 2015-03-04 浪潮集团有限公司 Automatic rapid deployment method for large-scale computer cluster system nodes
CN105187245A (en) * 2015-08-25 2015-12-23 浪潮(北京)电子信息产业有限公司 Batch deployment system and method of server virtualization platform operating system

Cited By (11)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN107438102A (en) * 2017-07-31 2017-12-05 国云科技股份有限公司 A cloud platform image production system and method thereof
WO2019024122A1 (en) * 2017-07-31 2019-02-07 国云科技股份有限公司 System for producing cloud platform mirror image, and implementation method therefor
CN107438102B (en) * 2017-07-31 2020-04-03 国云科技股份有限公司 A cloud platform image making system and its realization method
CN107577466A (en) * 2017-09-22 2018-01-12 郑州云海信息技术有限公司 A kind of RPM software kits Compilation Method and system based on linux system
CN109857468A (en) * 2019-01-04 2019-06-07 烽火通信科技股份有限公司 A kind of method and system for supporting more DTB in single linux system mirror image
CN109857468B (en) * 2019-01-04 2022-03-01 烽火通信科技股份有限公司 Method and system for supporting multiple DTBs in single Linux system mirror image
CN110995768A (en) * 2019-12-31 2020-04-10 奇安信科技集团股份有限公司 Building and generating firewall methods, apparatus, apparatus, media and program products
CN113590140A (en) * 2021-06-29 2021-11-02 济南浪潮数据技术有限公司 Manufacturing method and system of visual PXE system
CN113590140B (en) * 2021-06-29 2025-03-25 济南浪潮数据技术有限公司 A method and system for making a visual PXE system
CN113568628A (en) * 2021-07-16 2021-10-29 成都安恒信息技术有限公司 ISO automatic production method based on debian system
CN113568628B (en) * 2021-07-16 2024-03-15 成都安恒信息技术有限公司 ISO automated production method based on debrian system

Similar Documents

Publication Publication Date Title
CN106569802A (en) Manufacturing method and manufacturing device of ISO installation mirror images of firewalls
CN106293781B (en) Method and device for online upgrade of machine virtualizer
CN113826072B (en) Code updates in System Management Mode
CN103914315A (en) Configuration method of drivers
CN102135893A (en) Method for integrating operating system on BIOS (Basic Input Output System) chip and starting operating system on server
CN104866324A (en) Method for constructing portable operating system and portable memorizer
CN108255574A (en) A kind of virtual machine migration method and device
CN105589699A (en) Serial number information update method, device and terminal
CN114756290A (en) Operating system installation method, device and readable storage medium
US9672047B1 (en) Systems and methods for accessing a bootable partition on a serial peripheral interface device
KR101249735B1 (en) Device and method for executing Android applications on general purpose operating systems, and computer readable recording medium for the same
CN114860268A (en) Operating system installation method and device, electronic equipment and readable storage medium
CN102023857B (en) ServiceOS-based multi-platform application program service management method and system
CN104133706A (en) Firmware modifying method and device
CN108073420A (en) A kind of system non-disk startup method and device
CN113821219A (en) Method and system for realizing application program containerization
CN106557354A (en) The method and computer equipment of the property parameters of privately owned mirror image are set
CN105549965A (en) A way to integrate drivers into different Linux kernel versions
CN106201564A (en) Online upgrading equipment based on kernel virtual machine module and method
CN101470657A (en) Verification method for BIOS refreshing content
CN119621081A (en) Method, device and readable storage medium for automatically deploying virtual machine software environment
CN113645046B (en) Network card driver installation method, main server and medium
CN116578303A (en) Component compiling method, device, computer equipment and storage medium
Ye Android System Programming: Porting, customizing, and debugging Android HAL
CN102629209B (en) Method, single board and system for realizing plug-and-play of single board

Legal Events

Date Code Title Description
PB01 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination