F5 BIGIP v4.5 安装手册
 
 
 
 
 

 
本手册以BIGIP 2000做为硬件平台,安装的软件为bigip4.5.13Vmware的版本为4.5.1 build-7568
 
一、      安装BIGIP 4.5之前的准备工作
l  装有VmwarePC机一台
l  BIGIP设备一台
l  Console线,网线
 
二、      Vmware的安装及设置
安装Vmware完毕后,运行Vmware,点击“New Virtual Machine”,
 
 
 
 
 
 
 
 
 
 
 
 
点击“下一步”,
 
选择“Custom”,
 
 
选择“Linux”,
输入一个名字,比如“F5-BIGIP V4.5
 
 
 
 
Virtual Machine分配内存,该值不要超过物理内存的50%,
选择“Use bridged networking”,
 
 
 
 
选择“Buslogic”,
选择“Create a new virtual disk”,
 
 
 
 
选择“IDE”,
Virtual Server分配空间,
 
 
 
 
disk file命名,点击“完成”,
Virtual Machine的基本配置完毕,
 
 
 
点击Edit virtual machine settings,删除USB ControllerAudio
 
点击CD-ROM 1,选择Use ISO p_w_picpath,浏览选择BIGIPp_w_picpath文件,
点击“Add”,添加Floppy Drive
选择“Floppy Drive”,
选择“Create a blank floppy p_w_picpath”,
 
 
 
 
点击“完成”,
Vmware的设置全部结束。
 
 
 
点击“Start the virtual machine”,Vmware会提示如下信息,点击“OK”,
 
Vmware开始启动,
 
 
 
 
 
 
 
 
 
 
 
 
 
 
此处输入2,(Setup server to provide network installation),
此处回车,
 
 
 
 
 
 
 
确认该设定,回车,
 
启动完毕,可以进行BIGIP的网络安装了,
 
 
 
 
 
 
 
三、      BIGIP的安装
使用超级终端连接BIGIPconsole口,超级终端的设定如下:
因为需要使用网络安装,所以需要让BIGIP从网络启动,在BIGIP的面板上有2个小孔,RESETNETboot,找一个比较尖的物体轻轻按一下“RESET”,在10秒钟内再按一下“NETboot”,这样BIGIP就会从网络引导,注:或者可以通过命令让BIGIP从网络引导,命令如下: # bigpipe global net_reboot enable       # reboot
 
因为我们要重装系统,所以输入“no”不重启到现有的系统,
输入“yes”确认安装BIGIP
 
 
开始拆包,并且安装,
安装,
 
 
安装结束后,重启BIGIP
登陆,用户“root”,口令“default”,
 
 
回车确定Terminal typevt100
进入到系统,
 
 
可以通过”b self”查看目前的IP地址情况,192.168.1.245是缺省的管理口地址,
修改电脑的IP地址同192.168.1.245一个网段,打开浏览器,输入[url]https://192.168.1.245[/url],
 
 
缺省的用户名“root”,密码“default”,
进入到BIGIPConfiguration Utility
 
 
 
 
 
 
首先点击“License Agreement Utility”,
点击,Accept 完成License Agreement
 
 
点击“Setup Utility”,进入初始化设定,
点击“Continue”按钮,
 
 
 
 
Host Name:输入机器的名字,比如“test1.abc.com.cn”如果是冗余的两台设备,可以通过名字识别不同的设备;
 
Default Route/Default Gateway Pool IP Address:输入缺省路由的IP地址,点击“》”移到Current Route(s)中;
 
BIGIP is Redundant:如果是2BIGIP配置成冗余结构,那么勾选该项目,如果是单台BIGIP,不选该选项;
 
Failover Partner IP Address:输入另外一台设备的对应地址,比如自己的Failover VLAN IP20.20.20.1,对段的Failover VLAN IP20.20.20.2,那么在此处输入“20.20.20.2
 
Unit Number用来标识主备设备,如果主设备选择了1,那么备设备选择2
 
Failover Method选择Failover的方法,我们使用缺省的心跳线的方式进行Failover
 
 
 
 
 
点击“Next Step”,设定Root Admin 帐号的密码,
 
 
 
 
 
点击“Next Step”,设定物理接口的媒体类型,
 
 
 
 
 
点击“Next Step”,进行VLAN设定,在此可以添加新的VLAN,在VLAN Name:输入新的VLAN名字,然后点击“》”把新建的VLAN加入到VLAN List里面,
点击“Next Step”,点击“admin”进行admin VLAN的设定,
 
 
 
输入相应的地址信息,Shared IP address2台设备共享的IP地址,不选中Port Lockdown,在Web Server Domain Name输入机器的名字,这样系统的WEB服务才会在该VLAN生效,如果没有输入名字,那么无法通过浏览器进行管理,
 
 
 
点击“Commit and Return to VLAN List”,点击external VLAN,进入VLAN设定页面,
设定各个地址,同样输入Web Server Domain Name
 
 
 
 
点击“Commit and Return to VLAN List”,点击internal VLAN,进入设定页面,
设定各个地址,这里同其他VLAN不同的是Actual IP address is Failover在这个VLAN 是勾选的,因为我们在前面设定Failover Partner IP的时候就是用的这个VLAN的地址,所以我们在此表明我们采用internal VLAN来作为Failover VLAN
 
 
点击“Commit and Return to VLAN List”,
点击“Next Step”,进入Web Server的设定,
 
 
 
 
点击“Next Step”,设定Access的方式,
点击“Next Step”,设定时区,GMT8
 
点击“Next Step”,因为这台BIGIP内含了3DNS,所以会出现对3DNS的设置选项,
选择“Node”,点击“Next Step”,
 
 
Enable NameSurfer,并且设定用户名和口令,
点击“Done”,系统会确认你的请求,并重起设备,
所有的初始化配置的统计,
 
窗体顶端
Configuration Status
Your configurations are now being committed. Please wait while the commit operations complete. The status will print below. When the configuration is finished, you will see a "Rebooting.." message. At that point you may review the status and close this window.
窗体底端
Writing all configurations...
 
 
Timezone set to Etc/GMT+8
 
Keyboard set to US - Standard 101 key
 
Product Selection cleared.
Authorizing system....
 
Running remotely, must reboot to fix disk mounts.
Running remotely, must reboot to complete DNS configuration.
 
Wrote  /etc/hosts
Write  /config/bigip_base.conf
Update /config/bigip.conf
Write bigdb fields
Update /etc/snmpd.conf
Running remotely.  Must reboot for changes to take effect.
 
Running remotely, must reboot for default route changes to take effect.
 
Added Administrative Host Address
Added Self Address
Added Failover Address
Running remotely.  Must reboot to restart server.
 
Telnet removed from inetd
Telnet port closed
Telnet removed from access control
Running remotely.  Must reboot to disable service.
 
FTP removed from inetd
FTP port closed
FTP removed from access control
Running remotely.  Must reboot to disable service.
 
RSH removed from inetd
RSH port closed
RSH removed from access control
Running remotely.  Must reboot to disable service.
 
Generating key for test1.abc.com.cn
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
......................................................................
.....................................................done
Added Administrative Host Address
Added Self Address
Added Failover Address
Built Webserver Configuration File.
Logging Directory Already Exists.
Created Secure Logging Directory.
Running remotely. To apply all configuration changes, reboot the system.
 
NTP configuration not changed.
 
 
Using default local LDAP authentication.
The system must be rebooted for authentication setup to complete.
Rebooting...
 
 
 
 
 
 
重起后,再次进入系统,此时要使用在初始化设定的admin用户密码,
点击“Config your BIG-IP ® using the Configuration Utility”,进入了BIGIP的配置界面,
点击“Config your 3-DNS ® using the Configuration Utility”,进入了3-DNS的配置界面,
这个时候还可以通过“Setup Utility”进行初始化设定,系统提示该操作会覆盖原来的设定,
 
 
也可以通过在命令行输入“config”进行初始化配置的修改,
选择要修改的项目,