www.fridu.net

  • Increase font size
  • Default font size
  • Decrease font size
Hosting & sysadmin

Virtualbox network remote access

Print

While Virtuabox is mostly used as a GUI frontend to run either Windows from Linux, or Linux from Windows, with network access going from VBOX to internet, nothing enforce this behaviour. Virtualbox is a very complete virtualization tool, that can be used in a complete remote environment. Furthermore VBOX includes in its standard distribution, every necessary components to implement a fully virtualized remote hosted environment. This paper explains how to setup VBOX on a remote server [development or internet hosted] and how to expose network applications [ex: apache, tomcat, mysql, ...] hosted within those virtual machines to the external world.

Read more...
 

VM-firewall - Virtualization firewall

Print

While they are many available firewall for Linux, none of them are really designed for virtualization. Obviously it is alway possible to hack an existing one to fit your need, but VM-firewall has been designed to support virtualization in a Internet hosted environment, it runs the same rules for Xen, OpenVZ and VirtualBox. The goal of VM-Firewall if to provide to virtualization administrator the same facility has the one provided by an intelligent router in a traditional architecture, it is particularly useful for people who have multiple IP addresses that they want to forward on different virtual machines.

 

Read more...
 

OpenVZ Proxmox Virtualization

Print

Why OpenVZ and not XEN.

After one year of operation with XEN, I chosed to move Fridu from XEN paravirtualization, to OpenVZ container model. Here after some explanations on the why of this change and the description of my new architecture.

Read more...
 

Network Quality of Service

Print

This post describe how to implement network QoS (Quality of Service) on Linux. It first describes concept and then provides a QuickStart with small automation script to generate adequate "tc" and "iptables" commands. QoS is important for who ever want to avoid conflict in between log and high priority stream, typical examples are:

  • avoid to break your VO/IP quality while downloading big files.
  • make sure your interactive SSH activity got priority ever WEB browsing
  • etc ...
Read more...
 

Xen mini-ISP architecture

Print

While major ISP like Orange, Vodafone, Telfonica, ... have a numbers of independent cabinet to compartmentalize their architecture, this is not an option for small non profit or SOHO organizations that in no way justify such complex architectures and/or neither can afford it.

This note describes "Fridu-in-Xen" virtual ISP architecture, it explains how to simulate a fully compartmentalize mini ISP (Internet Service Provider) running on a unique Linux box and hosted on a cheap remote site (OVH ) leveraging XEN, VPN and QoS. It is build in such a way that anyone with an acceptable level of network and Linux knowledge should be able to replicate the architecture on its own hardware in few hours, then if you like it you may start contributing to the improvement process.

I use this architecture in real for fridu.org to support a number of non profit organizations, obviously it still lack some nice feature like redundancy, load balancing, supervision, ..., it's not that we could not extend "Fridu-in-Xen" to support it, but I have neither the time neither requirements for it. Nevertheless, in its current version it already allows you to provide for a very reduce cost of administration every typical services we expect from a good service provider Portal, Messaging, Voice/IP, ...this with an acceptable level of quality of service including security, backup, QoS, ...

Read more...
 
  • «
  •  Start 
  •  Prev 
  •  1 
  •  2 
  •  Next 
  •  End 
  • »


Page 1 of 2