一.Linux的运行级别安全
1.查看当前运行级别的命令:runlevelssh
2.每一个运行级别的做用ide
二.各运行级别下的含义svn
1.init 0(关机)post
# ls /etc/rc.d/rc0.dspa
K05wdaemon K60crond K84NetworkManager K90network
rest
K10saslauthd K73winbind K84wpa_supplicant K92ip6tablesorm
K15svnserve K74haldaemon K85mdmonitor K92iptablesdns
K25sshd K74ntpd K85messagebus K95firstboot进程
K30postfix K75netfs K87restorecond S00killall
K30spice-vdagentd K75ntpdate K88auditd S01halt
K50dnsmasq K75udev-post K88rsyslog
K50netconsole K80kdump K89rdisc
这个级别启动的只有killall和hatl服务,杀死所有进程和关机,这个级别只用做关机
2.init 1(单用户模式)
# ls /etc/rc.d/rc1.d
K05wdaemon K60crond K84wpa_supplicant K92ip6tables
K10saslauthd K73winbind K85mdmonitor K92iptables
K15svnserve K74haldaemon K85messagebus K95firstboot
K25sshd K74ntpd K87restorecond S26udev-post
K30postfix K75netfs K88auditd S99single
K30spice-vdagentd K75ntpdate K88rsyslog
K50dnsmasq K80kdump K89rdisc
K50netconsole K84NetworkManager K90network
这个级别启动的服务一样只有两个,udev相关和single(单用户模式)。只支持root单用户,不支持其 他用户使用
3.init 2(多用户模式-无fns)
# ls /etc/rc.d/rc2.d
K05wdaemon K74ntpd S08ip6tables S26udev-post
K10saslauthd K75netfs S08iptables S55sshd
K15svnserve K75ntpdate S10network S80postfix
K30spice-vdagentd K80kdump S11auditd S90crond
K50dnsmasq K84wpa_supplicant S12rsyslog S99local
K50netconsole K87restorecond S15mdmonitor
K73winbind K89rdisc S22messagebus
K74haldaemon K95firstboot S23NetworkManager
这个级别启动服务不少, 基本上须要的都有,可是nfs相关服务没有开启,这个级别不支持nfs
4.init 3(多用户模式)
# ls /etc/rc.d/rc3.d
K05wdaemon K75ntpdate S11auditd S26udev-post
K10saslauthd K84wpa_supplicant S12rsyslog S55sshd
K15svnserve K87restorecond S15mdmonitor S80postfix
K30spice-vdagentd K89rdisc S20kdump S90crond
K50dnsmasq K95firstboot S22messagebus S99local
K50netconsole S08ip6tables S23NetworkManager
K73winbind S08iptables S25netfs
K74ntpd S10network S26haldaemon
服务基本开启,nfs服务也有了,咱们平时运行虚拟机默认的启动级别也是这个级别
5.init 4(保留级别)
# ls /etc/rc.d/rc4.d
K05wdaemon K75ntpdate S11auditd S26udev-post
K10saslauthd K84wpa_supplicant S12rsyslog S55sshd
K15svnserve K87restorecond S15mdmonitor S80postfix
K30spice-vdagentd K89rdisc S20kdump S90crond
K50dnsmasq K95firstboot S22messagebus S99local
K50netconsole S08ip6tables S23NetworkManager
K73winbind S08iptables S25netfs
K74ntpd S10network S26haldaemon
开启的服务和init3是同样同样滴,因此这只是做为一个保留的级别(并非安全模式!)
6.init 5(图形界面)
# ls /etc/rc.d/rc5.d
K05wdaemon K84wpa_supplicant S12rsyslog S55sshd
K10saslauthd K87restorecond S15mdmonitor S70spice-vdagentd
K15svnserve K89rdisc S20kdump S80postfix
K50dnsmasq K95firstboot S22messagebus S90crond
K50netconsole S08ip6tables S23NetworkManager S99local
K73winbind S08iptables S25netfs
K74ntpd S10network S26haldaemon
K75ntpdate S11auditd S26udev-post
七、init 6(从新启动)
# ls /etc/rc.d/rc6.d
K05wdaemon K60crond K84NetworkManager K90network
K10saslauthd K73winbind K84wpa_supplicant K92ip6tables
K15svnserve K74haldaemon K85mdmonitor K92iptables
K25sshd K74ntpd K85messagebus K95firstboot
K30postfix K75netfs K87restorecond S00killall
K30spice-vdagentd K75ntpdate K88auditd S01reboot
K50dnsmasq K75udev-post K88rsyslog
K50netconsole K80kdump K89rdisc
只有一个killall和一个reboot reboot(从新启动)
三.安装图形界面
1.首先用yum grouplist查看可用的安装软件包;
2.由于并不支持中文(我不服),因此要转化成英文:LANG=en;
3.安装Desktop和window system;
yum grouplist -y "X Window System"
yum grouplist -y "Desktop"