ãšã³ããªãŒ
ä»æ¥ã¯ãMicrosoftã®hyper-vãµãŒããŒãã€ããŒãã€ã¶ãŒã®ã€ã³ã¹ããŒã«æ¹æ³ãšæ§ææ¹æ³ãããã³ããããåé¿ããããã®èœãšãç©Žãšæ¹æ³ã«ã€ããŠèª¬æããŸãã
ãã®èšäºãæžããçç±ã¯ãã®æçš¿ã®ææã§ããã ãã®æçš¿ã¯ãæ¢ã«ãã®ãã€ããŒãã€ã¶ãŒã䜿çšããããšãããå Žåã®èã®å·»ãšããŠããé©ããŠããŸãã åå¿è ã¯å€ãã®ãã¥ã¢ã³ã¹ã«çŽé¢ããéæšæºçãªè³ªåãžã®åçãæ±ããŠå€ãã®ãã©ãŒã©ã ãæãäžããå¿ èŠããããŸãã
ããã¯èšç®ããæžããããã®ã§ã-ç§èªèº«ãåæ§ã®ã€ã³ã¹ããŒã«ããã¥ã¢ã«ãèŠãããšæã£ãŠããŸããã åå¿è ã®ããã«ãç§ã¯å¯èœãªéããã¹ãŠã®è¡åãšãã®æå³ã説æããããšããã®ã§ã圌ãã¯å®éšãå§ããŠèªåã®äœããæãã€ãæ©äŒãåŸãŸããã ãã粟éããŠããæ¹ã®ããã«-å¿ èŠãªæ å ±ããã°ããèŠã€ããããããã«ãèšäºãè«çãããã¯ãšãµããããã¯ã«åããŸããã
ã«ããã®äžã§å€ãã®ããã¹ããšã¹ã¯ãªãŒã³ã·ã§ãã
説æ
MS Hyper-VãµãŒããŒã¯ãã€ã³ã¹ããŒã«ãããããŒã«Hyper-Vãåãããã³ã¢ã¢ãŒãã®MSãµãŒããŒ2008 R2ã®ç°¡æããŒãžã§ã³ïŒã€ãŸããå®éã«ã¯ã°ã©ãã£ã«ã«ã€ã³ã¿ãŒãã§ã€ã¹ããããŸããïŒã§ãã ãŠã£ãããã£ã¢ã«ãããšãhyper-vãµãŒããŒã¯ç¡æã§ãããMS補åãšã®äŸ¿å©ãªç®¡çããã³çµ±åãšçžãŸã£ãŠãéåžžã«é åçãªãã€ããŒãã€ã¶ãŒãšãªã£ãŠããŸãã ããã«ãéåžžã«é«ãããã©ãŒãã³ã¹ã€ã³ãžã±ãŒã¿ãåããŠããããããã¹ããã·ã³ã®ãªãœãŒã¹ãå¿ èŠãªãµãŒãã¹ã®äœæ¥ã«è²»ããããŸãã
èšçœ®
ã€ã³ã¹ããŒã«ãéå§ããåã«ãããã»ããµãŒãIntel VT-xãŸãã¯AMD-VããŒããŠã§ã¢ä»®æ³åãã¯ãããžãŒããµããŒãããŠããããšã確èªããå¿ èŠããããŸãã
ãŸããMicrosoft Webãµã€ãããhyper-vãµãŒããŒ2008 R2é åžããããããŠã³ããŒãããå¿ èŠããããŸãïŒç»é²ããå¿ èŠã¯ãããŸããïŒã 次ã«ãã€ã¡ãŒãžãDVD-ROMã«åãåããã ã€ã³ã¹ããŒã«ãã©ãã·ã¥ãã©ã€ããäœæããŸã ã
ãã£ã¹ã¯/ãã©ãã·ã¥ãã©ã€ããæ¿å ¥ããããããèµ·åããŸãã
Hyper-vãµãŒããŒ-ã€ã³ã¹ããŒã«ãŠã£ã¶ãŒãã®èšèªãéžæããŸã
ã€ã³ã¹ããŒã«ãŠã£ã³ããŠã§ã¯ããªãã¬ãŒãã£ã³ã°ã·ã¹ãã ã®èšèªãéžæã§ããŸãã è±èªãéžæããããããªããªã®ãã説æããŸãã
Hyper-vãµãŒããŒ-OSèšèªãšããŒããŒãã¬ã€ã¢ãŠãã®éžæ
èšèªãšããŠè±èªãéžæããŸãããæé圢åŒãšããŠãã·ã¢èªãéžæããããšããå§ãããŸããããã«ãããåŸã§ã³ãã³ãã©ã€ã³ã®èšå®ãå¿é ããå¿ èŠããªããªããŸãã
次ã«ããä»ããã€ã³ã¹ããŒã«ããã¿ã³ãã¯ãªãã¯ããŸãã ã©ã€ã»ã³ã¹å¥çŽãèªãã§åæããŸãã
Hyper-vãµãŒããŒ-ã€ã³ã¹ããŒã«ã¿ã€ãã®éžæ
å®å šã€ã³ã¹ããŒã«ïŒã«ã¹ã¿ã ïŒãéžæããŸãã
Hyper-vãµãŒããŒ-ããŒããã£ã¹ã¯èšå®ãæ§æãã
ãã®æç¹ã§ããŠã£ã¶ãŒãã¯ããŒããã£ã¹ã¯ã®ããŒãã£ã·ã§ã³ãèšå®ããããã«ä¿ããŸãã 2ã€ã®è«çãã©ã€ããäœæããããšããå§ãããŸãã æå-ãã€ããŒãã€ã¶ãŒèªäœãã€ã³ã¹ããŒã«ããã®ã«ååãª15 GBã§ãã 2ã€ç®ã¯ãä»®æ³ãã·ã³ïŒVMïŒã®ã³ã³ãããä¿åããããã®ãã®ã§ãã ãããã£ãŠãVMã管çãã€ã³ããŒããããã³ç§»è¡ããæ¹ãã¯ããã«äŸ¿å©ã§ãã
[次ãž]ãã¯ãªãã¯ããŠããè¶ã飲ã¿ãŸãã ã€ã³ã¹ããŒã«äžãã³ã³ãã¥ãŒã¿ãŒã¯æ°ååèµ·åããŸãã
ã«ã¹ã¿ãã€ãº
åºæ¬çãªã»ããã¢ãããšãªã¢ãŒãã¢ã¯ã»ã¹
åèµ·ååŸãhyper-vãµãŒããŒã¯ç®¡çè ãã¹ã¯ãŒãã®èšå®ãæ±ããŸãã ms windows 2008 server r2ã®ã°ã«ãŒãããªã·ãŒã«ã¯ããã©ã«ãã§ãã¹ã¯ãŒãã®è€éãã®èŠä»¶ãããããã6æå以äžã®é·ãã®ãã¹ã¯ãŒããèãåºãå¿ èŠããããŸããå¿ ã倧æåãšç¹æ®æåãŸãã¯æ°åïŒããšãã°ããPassword1ãïŒãå«ãŸããŸãã
以äžã®ã¹ã¯ãªãŒã³ã·ã§ããã§ãããããã«ã管çã³ã³ãœãŒã«ã¯ãã·ã¢èªã§ãããã€ã³ã¹ããŒã«äžã«è±èªãéžæãããŸããããããã¯ãããããã€ã¯ããœããã®å ¬åŒWebãµã€ããããã·ã¢èªã®ãã£ã¹ããªãã¥ãŒã·ã§ã³ãããŠã³ããŒãããããã§ãã ããã¯ããµãŒããŒã®æäœãšæ§æã«æªåœ±é¿ãäžããŸããã ããªããè±èªã®ã³ã³ãœãŒã«ãæã£ãŠãããªã-ããªãã¯é¡æšã«ãã£ãŠãããè¡ãããšãã§ããŸãããã¹ãŠã®èšå®ã¯ç解ããããã§ãããã
Hyper-vãµãŒããŒ-管çã€ã³ã¿ãŒãã§ãŒã¹
äœæ¥ç°å¢ãèªã¿èŸŒãã åŸãOSã¯2ã€ã®ç®¡çã³ã³ãœãŒã«ãæäŸããŸãã æšæºã®cmdã³ãã³ãã³ã³ãœãŒã«ããã³äºåå®çŸ©ããããªãã·ã§ã³ãåããã³ã³ãœãŒã«ã ãŸããéçIPã¢ãã¬ã¹ãèšå®ãããªã¢ãŒããµãŒããŒç®¡çãæ§æããå¿ èŠããããŸãã 管çã³ã³ãœãŒã«ã§ãé ç®8ãéžæããŸãã
Hyper-vãµãŒããŒ-ãããã¯ãŒã¯ã¢ããã¿ãŒ
ãªã¹ãã«ã¯ããããã¯ãŒã¯ã¢ããã¿ããªã¹ããããŸãã ç®çã®ãã®ãéžæãããã®ã€ã³ããã¯ã¹ãå ¥åããŸãã 次ã«ãã1-ãããã¯ãŒã¯ã¢ããã¿ãŒã®IPã¢ãã¬ã¹ãèšå®ããããéžæããŸãã ãSããšå ¥åããŸã-ããã¯éçIPã¢ãã¬ã¹ãæå³ããŸãã äŸãšããŠããã©ã¡ãŒã¿ãŒãèšå®ããŸãã
IPã¢ãã¬ã¹-192.168.1.100
ãµãããããã¹ã¯-255.255.255.0
ããã©ã«ãã²ãŒããŠã§ã€192.168.1.1
ãã©ã¡ãŒã¿ãé©çšããåŸããµãã¡ãã¥ãŒã«æ»ãã以åã«ãªã¹ããããèšå®ããªã¹ããããŸãã ãã¹ãŠãæ£ãããã°ãã¡ã€ã³ã¡ãã¥ãŒã«æ»ããŸãã
次ã«ããªã¢ãŒãã¢ã¯ã»ã¹ãæ§æããŸãã é ç®7ãéžæããè±èªã®ãEããå ¥åããŠãªã¢ãŒããã¹ã¯ãããããªã³ã«ããŸãã å€ãããŒãžã§ã³ã®rdpã¯ã©ã€ã¢ã³ãããã®æ¥ç¶ã®å¶éã«ã€ããŠå°ããããå Žåãã2ããéžæããŸã-ä»»æã®ã¯ã©ã€ã¢ã³ãããæ¥ç¶ããŸãã
ã¡ã€ã³ã¡ãã¥ãŒã§ãé ç®9ãéžæãããµãŒããŒã®çŸåšã®æ¥ä»ãšæå»ãèšå®ããŸãã
ãµãŒããŒã®ãããã¯ãŒã¯åãšã¯ãŒã¯ã°ã«ãŒã
次ã«ãã¯ãŒã¯ã°ã«ãŒããèšå®ããŸãã Hyper-VãµãŒããŒãæ©èœããããã«ããã¡ã€ã³ã«ãããå«ããªãã£ããããã»ããã¢ãããå€å°è€éã«ãªããŸããããå®éšã«ã¯ãããçæ³çã§ãã ããŸããŸãªæ§æã®ãã¹ããšæ€èšŒäžã«ããã¹ããããã¯ãŒã¯ãã¿ãŒã²ãããããã¯ãŒã¯ããåé¢ããããšããå§ãããŸãã
ãã€ã³ã1ãéžæãããWããšå ¥åããŠãã¯ãŒãã³ã°ã°ã«ãŒãã«åå ãããŸãã 次ã«ãã¯ãŒãã³ã°ã°ã«ãŒãã®ååãããšãã°ãtestããèšå®ããŸãã Hyper-VãµãŒããŒäžã®ã¯ãŒã¯ã°ã«ãŒãã®ååãšãããã管çããäºå®ã®PCãäžèŽããããšãéåžžã«éèŠã§ãã ãã®åŸãã¡ã€ã³ã¡ãã¥ãŒã«æ»ããŸãã
ãµãŒããŒã®ãããã¯ãŒã¯åãèšå®ããé ç®2ãéžæããŠãããšãã°ãhyper-srvããªã©ã®ååãå ¥åããããšãæãŸããã§ãã ãã©ã¡ãŒã¿ãé©çšããã«ã¯ãåèµ·åããå¿ èŠããããŸããOSã®æäŸã«åæããŸãã
ããã«ããã¹ãŠã®èšå®ïŒã³ã³ãã¥ãŒã¿ãŒã®ååãã¯ãŒã¯ã°ã«ãŒãããŠãŒã¶ãŒãIPã¢ãã¬ã¹ãªã©ïŒãã€ã³ã¹ããŒã«äžã«èª¬æãããã®ããªã¹ãããŸãã ãã©ã¡ãŒã¿ãèšå®ããå Žåã¯ããããã®äœ¿çšãå¿ããªãã§ãã ããã
åèµ·ååŸããªã¢ãŒããã¹ã¯ãããã¯ã©ã€ã¢ã³ãã䜿çšããŠãµãŒããŒã«æ¥ç¶ã§ããŸãã
mstsc
>ãéžæããŠå®è¡ãã
mstsc
ãšå ¥åã
mstsc
ã æåã®ãã£ãŒã«ãã§ã¯ãIPã¢ãã¬ã¹ïŒç§ã®å Žåã¯192.168.1.100ïŒãèšå®ããæ¥ç¶ãããŠããŸãã ãµãŒããŒã¯èªèšŒããŒã¿ãèŠæ±ãããŠãŒã¶ãŒåãhyper-srv \ Administratorããšãã¹ã¯ãŒããPassword1ããå ¥åããŸãã
ããã§æ¥ç¶ãããŸããããªã¢ãŒãã³ã³ãããŒã«ã®è¿œå ãã©ã¡ãŒã¿ãŒãæ§æããå¿ èŠããããŸãã ãã€ã³ã4ã«é²ã¿ãŸããããã§ãé çªã«ãµããã©ã°ã©ã1ã2ãéžæããã»ããã¢ããã®çµäºãåŸ ã¡ãŸãã å®äºåŸãOSã¯åèµ·åãå床èŠæ±ããŸãã ãããã®èšå®ãå®äºãããšãmmcã³ã³ãœãŒã«ãšãªã¢ãŒããµãŒããŒç®¡çããŒã«ïŒRSATïŒããã±ãŒãžã®hyper-vãµãŒããŒãããŒãžã£ãŒã䜿çšããŠãµãŒããŒã«æ¥ç¶ã§ããããã«ãªããŸãã ããã«ã€ããŠã¯æ¬æã®åŸåã§è©³ãã説æããŸãã
RSATãšhyper-v Managerãã€ã³ã¹ããŒã«ãã
å¿«é©ãªãªã¢ãŒããµãŒããŒç®¡çïŒVMã®äœæ/åé€/ã€ã³ããŒã/æ§æãããŒããŠã§ã¢ã®è¿œå /åé€ããŠãŒã¶ãŒ/ã°ã«ãŒãããªã·ãŒã®ç®¡çãªã©ïŒãè¡ãã«ã¯ãPCã«RSATãã€ã³ã¹ããŒã«ããå¿ èŠããããŸãã Windows 7ã«ã€ã³ã¹ããŒã«ããŸãããŸãã ããããããŠã³ããŒãããŸã ã ãã®ããã±ãŒãžã«ã¯ãmmcã³ã³ãœãŒã«çšã®ã³ã³ããŒãã³ããHyper-v Managerããå¿ èŠã§ããããã¯å®éã«ã¯ãå°æ¥ã®VMã管çããããã®ã¡ã€ã³ããŒã«ã§ãã
ãã®åŸã®èšå®ã¯ããµãŒããŒïŒçæSRVã®ããïŒãšå¶åŸ¡PCïŒCCïŒã®äž¡æ¹ã§è¡ãå¿ èŠããããŸãã
ãŠãŒã¶ãŒãã«ã¹ã¿ãã€ãºãã
æåã®ã¹ãããã¯ãç§ãã¡ã管çãããŠãŒã¶ãŒãäœæããããšã§ãã ãŠãŒã¶ãŒåãšãã¹ã¯ãŒãã¯ãè±åœãšSRVã§äžèŽããå¿ èŠããããŸãïŒ
-管çã³ã³ãœãŒã«ã§ãé ç®3ïŒããŒã«ã«ç®¡çè ã®è¿œå ïŒãéžæããŸãã ååãadminããšãã¹ã¯ãŒããQwerty1ããèšå®ããŸãã æ£åžžã«è¿œå ããããã©ããã確èªããcmdã³ã³ãœãŒã«ã§
net user admin
å ¥åã
net user admin
ã ãã®ã³ãã³ãã¯ãAdministratorsã°ã«ãŒããšUsersã°ã«ãŒãã§æ§æãããŠããããšã瀺ããŸãã
åæ³ã§ã¯ãcmdã³ã³ãœãŒã«ã管çè ãšããŠèµ·åããã³ãã³ã
net user admin Qwerty1 /add
ãå ¥åããŠã
net localgroup admin /add
管çè ã°ã«ãŒãã«
net localgroup admin /add
ïŒè±èªçã®å Žåã
net localgroup Administrators admin /add
ïŒã
net user admin
çµæãå床確èªããŸãã
ãŠãŒã¶ãŒãšã»ãã¥ãªãã£ã°ã«ãŒããæ§æããããã«ãMicrosoftã®åŸæ¥å¡ã®1人ã«ãã£ãŠäœæããããã°ããããŠãŒãã£ãªãã£ãHVRemoteãããããŸãã
ãŠãŒãã£ãªãã£ãããŠã³ããŒããããHVremote.wsfããã¡ã€ã«ããµãŒããŒã«ã³ããŒããŸãã æåã«ãOSã«ã¯è±èªãéžæããå¿ èŠããããšæžããŸããã ãã®ããããHVremote.wsfãã¹ã¯ãªãããæ£ããåäœãããã«ã¯ãã»ãã¥ãªãã£ã°ã«ãŒããšãŠãŒã¶ãŒã«è±èªã®ååãä»ããå¿ èŠããããŸãã
å°ããªäœè«ïŒå ã»ã©æžããããã«ãhyper-vãµãŒããŒã«ã¯ã°ã©ãã£ã«ã«ã€ã³ã¿ãŒãã§ã€ã¹ããããŸããã ããã¯å®å šã«çå®ã§ã¯ãããŸããããã€ã¯ããœããã¯Explorerã«é¢é£ãããã¹ãŠãæ倧éã«ã«ããããŸããããã°ã©ãã£ãã¯ãŠã£ã³ããŠã䜿çšããŠã¢ããªã±ãŒã·ã§ã³ãèµ·åããããšã劚ããŸããã ããšãã°ããtotal commanderãããã°ã©ã ããµãŒããŒãã£ã¹ã¯ã«ã³ããŒããŠãã³ã³ãœãŒã«ããå®è¡ã§ããŸãã
Hyper-vãµãŒããŒ-ã¢ããªã±ãŒã·ã§ã³ã®èµ·å
åŒãç¶ããSRVã§-ã³ãã³ãã³ã³ãœãŒã«ãéããã¹ã¯ãªãããã¡ã€ã«ããããã©ã«ããŒã«ç§»åããŸãïŒCïŒãã©ã€ãã®ã«ãŒãã«ä¿åããŸããïŒã
cscript hvremote.wsf /add:domain\account
ã³ãã³ã
cscript hvremote.wsf /add:domain\account
ã¯ãµãŒããŒã®ååïŒãã¡ã€ã³ïŒãaccountã¯ç®¡çããã¢ã«ãŠã³ãã®ååã§ãã ç§ã®å Žåãã³ãã³ãã¯
cscript hvremote.wsf /add:hyper-srv\admin
ãŸãã
Hyper-vãµãŒããŒ-ã¹ã¯ãªããå®è¡
ãã®çµæãã¹ã¯ãªãŒã³ã·ã§ããã®ããã«ãªããŸãã ã¹ã¯ãªããã¯ãŠãŒã¶ãŒãå¿ èŠãªã°ã«ãŒãã«è¿œå ãããŠãŒã¶ãŒã«æš©å©ãå²ãåœãŠãŸããã
CCåŽã§ã¯ã次ã®
cscript hvremote.wsf /anondcom:grant
ãå®è¡ããå¿ èŠããã
cscript hvremote.wsf /mmc:enable
cscript hvremote.wsf /anondcom:grant
ããã³
cscript hvremote.wsf /mmc:enable
ã³ã³ãã¥ãŒã¿ãŒã®ãªã¢ãŒãã³ã³ãããŒã«ã³ã³ãœãŒã«ã®ã¹ãããã€ã³ãæ©èœããã«ã¯ããµãŒããŒãã¡ã€ã¢ãŠã©ãŒã«ã§é€å€ã«ãŒã«ãäœæããå¿ èŠããããŸãã æåã«ãè«çãã©ã€ãã管çã§ããã«ãŒã«ãäœæããŸãã
Netsh advfirewall firewall set rule group="Remote Volume Management" new enable=yes
ãä»ã®èå¥æ¡ä»¶ã§ã¯ã°ã«ãŒããæå®ã§ããŸããããªã©ã®ãšã©ãŒã衚瀺ãããå Žåã¯ãã³ããŒ/貌ãä»ãã§ã¯ãªããã³ãã³ããæåã§åå ¥åããŠãã ããã
ã³ãã³ãå®è¡ãæåããçµæïŒ
Updated 3 rule(s). Ok.
次ã«ã
Netsh advfirewall firewall set rule group="Windows Firewall Remote Management" new enable=yes
ã
Updated 2 rule(s). Ok.
mmc
netsh advfirewall firewall set rule group="Remote Administration" new enable=yes
console
netsh advfirewall firewall set rule group="Remote Administration" new enable=yes
ã¹ãããã€ã³ãžã®ã¢ã¯ã»ã¹ãèš±å¯ããŸãããã
Updated 3 rule(s). Ok.
次ã®ã³ãã³ãã§ãWindows Management InstrumentationïŒWMIïŒãã䜿çšããŠã¿ãŸããã
netsh advfirewall firewall set rule group="windows management instrumentation (wmi)" new enable=yes
ã
Updated 4 rule(s). Ok.
icmpãããã³ã«ã
netsh firewall set icmpsetting 8
å ±æãã¡ã€ã«ãšãã©ã«ããŒãžã®ã¢ã¯ã»ã¹ãèš±å¯ããŸããã
netsh firewall set service type=fileandprint scope=subnet
ã
äœããã®çç±ã§ãµãŒããŒã«æ¥ç¶ã§ããªãå Žåã¯ã
netsh firewall set opmode disable
䜿çšããŠãã¡ã€ã¢ãŠã©ãŒã«ãç¡å¹ã«ããŠã¿ãŠãã ããã è¿œå ã®ã¢ã¯ã»ã¹ã«ãŒã«ãäœæããå¿ èŠãããå ŽåããããŸãã
ããã§ãmmcã¹ãããã€ã³ã䜿çšããŠãµãŒããŒïŒãµãŒãã¹ããŠãŒã¶ãŒãããªã·ãŒãªã©ã®ç®¡çïŒããããŠæãéèŠãªããšãšããŠhyper-vãããŒãžã£ãŒã管çã§ããŸãã éããŠã¿ãŸãããïŒmmcã³ã³ãœãŒã«ãèµ·å->ãã¡ã€ã«->ã¹ãããã€ã³ã®è¿œå ãŸãã¯åé€-> hyper-vãããŒãžã£ãŒ ã¡ãã¥ãŒã¢ã¯ã·ã§ã³->ãµãŒããŒãžã®æ¥ç¶->å¥ã®ã³ã³ãã¥ãŒã¿ãŒãéžæããŸãã ãã£ãŒã«ãã«ããµãŒããŒã®ãããã¯ãŒã¯åïŒhyper-srvïŒãå ¥åããŠæ¥ç¶ããŸãã
Hyper-vãµãŒããŒ-VM管çãããŒãžã£ãŒ
以äžã§ãhyper-vãµãŒããŒãæ£åžžã«ã€ã³ã¹ããŒã«ããã³æ§æãããŸããã ããã§ãä»®æ³ãã·ã³ãšããŸããŸãªãµãŒãã¹ãå®å šã«å±éã§ããŸãã
ããã¯Habréã«é¢ããç§ã®æåã®èšäºã§ãã®ã§ãã¢ããã€ã¹ãšå»ºèšçãªæ¹å€ãåŸ ã£ãŠããŸã
æ å ±ãªãœãŒã¹ãžã®ãªã³ã¯ïŒ
ãŠã£ãããã£ã¢-Hyper-vãµãŒããŒ
䟿å©ãªã³ã³ãœãŒã«ã³ãã³ã