Welcome to nginx!
If you see this page, the nginx web server is successfully installed and
working. Further configuration is required.
For online documentation and support please refer to
nginx.com.
Thank you for using nginx.
进入已经运行的容器中
[root@bogon ~]# docker attach mynginx
这种方法进入没有bash终端,并且输入信息其他终端也可以看见且无法直接退出,只有ctrl+p+q退出
[root@bogon ~]# docker exec -it mynginx sh 这种方式是比较推荐的,会提供一个指定的bash终端,可以做任意操作。 ls
bin boot dev etc home lib lib64 media mnt opt proc root run sbin srv sys tmp usr var
#
[root@bogon ~]# docker run -it -d --name mynginx nginx
#-d:后台运行,-d和-rm是冲突参数,只能
81a545910b0d1215fedc279ec38ff65a4a7ddbc7be1b8f37ed7b87fa8a6c244a
[root@bogon ~]# docker ps
CONTAINER ID IMAGE COMMAND CREATED STATUS PORTS NAMES
81a545910b0d nginx "nginx -g 'daemon ..." 7 seconds ago Up 6 seconds 80/tcp mynginx
查看docker里面服务的访问日志:
[root@bogon ~]# docker logs mynginx
172.17.0.1 - - [28/Aug/2018:11:43:16 +0000] "GET / HTTP/1.1" 200 612 "-" "curl/7.29.0" "-"
[root@bogon ~]# docker logs -f mynginx
172.17.0.1 - - [28/Aug/2018:11:43:16 +0000] "GET / HTTP/1.1" 200 612 "-" "curl/7.29.0" "-"
172.17.0.1 - - [28/Aug/2018:11:44:50 +0000] "GET / HTTP/1.1" 200 612 "-" "curl/7.29.0" "-"
172.17.0.1 - - [28/Aug/2018:11:44:51 +0000] "GET / HTTP/1.1" 200 612 "-" "curl/7.29.0" "-"
172.17.0.1 - - [28/Aug/2018:11:44:52 +0000] "GET / HTTP/1.1" 200 612 "-" "curl/7.29.0" "-"
#docker logs -f 类似于tailf日志追踪
3.Docker镜像制作
1.下载centos镜像:
[root@bogon ~]# docker pull centos
2.运行容器并进入容器里:
[root@bogon ~]# docker run -it centos bash
[root@0fca23e3d80d /]#
3.默认没有wget,先yum一个wget:
[root@0fca23e3d80d /]# yum install -y wget
4.切换成阿里云源
[root@0fca23e3d80d /]# cd /etc/yum
yum/ yum.conf yum.repos.d/
[root@0fca23e3d80d /]# cd /etc/yum
yum/ yum.conf yum.repos.d/
[root@0fca23e3d80d /]# cd /etc/yum.repos.d/
[root@0fca23e3d80d yum.repos.d]# ls
CentOS-Base.repo CentOS-Debuginfo.repo CentOS-Sources.repo CentOS-fasttrack.repo
CentOS-CR.repo CentOS-Media.repo CentOS-Vault.repo
[root@0fca23e3d80d yum.repos.d]# rm -f *
[root@0fca23e3d80d yum.repos.d]# wget -O /etc/yum.repos.d/CentOS-Base.repo http://mirrors.aliyun.com/repo/Centos-7.repo
阿里云epel源;
[root@0fca23e3d80d yum.repos.d]# yum install -y epel-release
[root@0fca23e3d80d yum.repos.d]# ls
CentOS-Base.repo epel-testing.repo epel.repo
5.安装nginx:
[root@0fca23e3d80d yum.repos.d]# yum install -y nginx
配置nginx
[root@0fca23e3d80d yum.repos.d]# vi /etc/nginx/nginx.conf
#添加×××部分
user nginx;
daemon off;
查看下docker commit帮助
[root@bogon ~]# docker commit --help
Usage: docker commit [OPTIONS] CONTAINER [REPOSITORY[:TAG]]
Create a new image from a container's changes
Options:
-a, --author string Author (e.g., "John Hannibal Smith ")
-c, --change list Apply Dockerfile instruction to the created image (default [])
--help Print usage
-m, --message string Commit message
-p, --pause Pause container during commit (default true)
[root@bogon ~]# docker commit -m "add nginx images" mynginx liyongli/my_nginx
语法:-m后面是描述
Mynginx:运行的容器名
liyongli/my_nginx:镜像名
查看本地镜像会发现多一个×××部分的镜像
[root@bogon ~]# docker images
REPOSITORY TAG IMAGE ID CREATED SIZE
liyongli/my_nginx latest 66ff70d8a103 22 seconds ago 408 MB
docker.io/centos latest 5182e96772bf 3 weeks ago 200 MB
docker.io/nginx latest c82521676580 5 weeks ago 109 MB
docker.io/alpine latest 11cd0b38bc3c 7 weeks ago 4.41 MB
tag号默认是latest,在上述镜像名后面加上×××部分tag就是你指定的liyongli/my_nginx:v1
[root@bogon ~]# docker commit -m "add nginx images" happy_perlman liyongli/my_nginx:v1
sha256:e6cdb103b333963c17a7ef185e0ec040b3f25c93e3aabaa152040b569cfbe804
[root@bogon ~]# docker images
REPOSITORY TAG IMAGE ID CREATED SIZE
liyongli/my_nginx v1 e6cdb103b333 4 seconds ago 408 MB
liyongli/my_nginx latest 66ff70d8a103 4 minutes ago 408 MB
docker.io/centos latest 5182e96772bf 3 weeks ago 200 MB
docker.io/nginx latest c82521676580 5 weeks ago 109 MB
docker.io/alpine latest 11cd0b38bc3c 7 weeks ago 4.41 MB
启动自己做的镜像:
[root@bogon ~]# docker run -d --name mnginx liyongli/my_nginx nginx
--name:运行容器的描述
liyongli/my_nginx:镜像名
nginx:运行的服务名
5a15d9986e8f460ff047ab716f809309a7e828218986d95df7749b1115b33953
[root@bogon ~]# docker ps
CONTAINER ID IMAGE COMMAND CREATED STATUS PORTS NAMES
5a15d9986e8f liyongli/my_nginx "nginx" 11 seconds ago Up 10 seconds mnginx
0fca23e3d80d centos "bash" About an hour ago Up About an hour happy_perlman
Docker网络
Docker端口映射:
[root@bogon ~]# docker run -d --name mnginx -P nginx
#-P:端口映射
dc1c5779e7b9f0146376da4bcad1827fe2f80c1fac39c21b7076ce65e4446d51
[root@bogon ~]# docker ps
CONTAINER ID IMAGE COMMAND CREATED STATUS PORTS NAMES
dc1c5779e7b9 nginx "nginx -g 'daemon ..." 7 seconds ago Up 6 seconds 0.0.0.0:32768->80/tcp mnginx
将随机产生一个端口映射到容器里的80
访问验证:
[root@bogon ~]# docker run --name my_nginx -d -p 80:80 liyongli/my_nginx nginx liyongli/my_nginx:镜像名 nginx:镜像里的服务
#-p:指定80端口去映射docker上的80
c826a3ea327a0f2957c9f4181af8d4408e8d7de1ebee645def8e07891afc2757
[root@bogon ~]# docker ps
CONTAINER ID IMAGE COMMAND CREATED STATUS PORTS NAMES
c826a3ea327a liyongli/my_nginx "nginx" 12 seconds ago Up 11 seconds 0.0.0.0:80->80/tcp my_nginx
访问测试:
注:默认采用tcp,想换成UDP,需要在端口后面加上协议(如下×××部分)
[root@bogon ~]# docker run --name my_nginx -d -p 80:80/udp liyongli/my_nginx nginx
46f6b91ed321ed0fd0cf2e638a68d859207e7ff4dc33c02d7d299e258200496f
[root@bogon ~]# docker ps
CONTAINER ID IMAGE COMMAND CREATED STATUS PORTS NAMES
46f6b91ed321 liyongli/my_nginx "nginx" 2 seconds ago Up 2 seconds 0.0.0.0:80->80/udp my_nginx
指定端口和IP映射:
[root@bogon ~]# docker run --name my_nginx -d -p 127.0.0.1:80:80 liyongli/my_nginx nginx
7266e28a7f4b7a1a38f41b55ccf33136f3f7867081e0d1369f662a6292d9fc0a
[root@bogon ~]# docker ps
CONTAINER ID IMAGE COMMAND CREATED STATUS PORTS NAMES
7266e28a7f4b liyongli/my_nginx "nginx" 21 seconds ago Up 21 seconds 127.0.0.1:80->80/tcp my_nginx
访问测试,外面的浏览器访问不到了:
本地curl访问:
[root@bogon ~]# curl 127.0.0.1:80
Test Page for the Nginx HTTP Server on Fedora>/opt/hosts
bash: /opt/hosts: Read-only file system
这样会比较安全。
2.数据卷容器:
创建第一个容器:
[root@bogon ~]# docker run -it -v /opt:/opt --name node1 centos bash
[root@680e78302bb6 /]# ls /opt/
[root@680e78302bb6 opt]# mkdir ppp
[root@680e78302bb6 opt]# ls
ppp
创建第二个容器:
[root@bogon ~]# docker run -it --name node2 --volumes-from node1 centos bash
#--volumes-from ;数据卷容器来自哪里,后面跟上容器名
[root@37a43f150d4d /]# df -h
Filesystem Size Used Avail Use% Mounted on
overlay 17G 2.4G 15G 14% /
tmpfs 489M 0 489M 0% /dev
tmpfs 489M 0 489M 0% /sys/fs/cgroup
/dev/mapper/cl-root 17G 2.4G 15G 14% /opt
shm 64M 0 64M 0% /dev/shm
tmpfs 489M 0 489M 0% /proc/acpi
tmpfs 489M 0 489M 0% /proc/scsi
tmpfs 489M 0 489M 0% /sys/firmware
[root@37a43f150d4d /]# cd /opt/
[root@37a43f150d4d opt]# ls
ppp
注:即使将容器卷那个容器删除或者关闭,容器卷依然有效
[root@bogon ~]# docker rm -fv 680e78302bb6
#-v :删除容器的数据卷,不加-v只是将容器删除,容器产生的数据还在硬盘里。
6.Docker_file编写:
注:dockerfile的文件名D必须大写
[root@bogon ~]# mkdir docker
[root@bogon ~]# cd docker
[root@bogon docker]# vim Dockerfile
#This is dockerfile for nginx
#基于的镜像是什么,这里采用centos,可以是本地也可以是官网的,本地没有会从官网下载,若官网没有会失败。
FROM centos
#维护者信息
MAINTAINER zhouhao zhouhao@123.com
#相关操作,默认镜像没有epel源的,这里给安装epel
RUN rpm -ivh https://mirrors.aliyun.com/epel/7/x86_64/e/epel-release-7-9.noarch.rpm
RUN yum install -y nginx
#ENV:增加环境变量,比如JAVA,TOMCAT,都会用到此项
#添加文件,index.html要和Dockerfile在同一目录下
ADD index.html /usr/share/nginx/html/index.html
#配置文件中添加参数
RUN echo "daemon off;" >> /etc/nginx/nginx.conf
#设置开放端口
EXPOSE 80
#执行命令
CMD ["nginx"]
[root@bogon docker]# vim index.html
This is ngnix
[root@bogon docker]# docker build -t zhouhao/nginx /root/docker/
查看镜像
[root@bogon docker]# docker images
REPOSITORY TAG IMAGE ID CREATED SIZE
zhouhao/nginx latest a8ddb97e410c About an hour ago 429 MB
6ebd2e131385 About an hour ago 429 MB
liyongli/my_nginx v1 e6cdb103b333 30 hours ago 408 MB
liyongli/my_nginx latest 66ff70d8a103 30 hours ago 408 MB
docker.io/centos latest 5182e96772bf 3 weeks ago 200 MB
docker.io/nginx latest c82521676580 5 weeks ago 109 MB
docker.io/alpine latest 11cd0b38bc3c 7 weeks ago 4.41 MB
运行下制作出来的nginx镜像
[root@bogon docker]# docker run -it -d --name mnginx zhouhao/nginx
9b6d3bd599df08588ec0d77c2596932c28baaf47a9538e627f6a2e42bbcd264b
查看下容器的详细信息
[root@bogon docker]# docker inspect mnginx
。。。。。。。。。。。。。。。
"EndpointID": "14e1914c63a667e098e17ae03a2613c5df0620efceb09bf58706da89ffdeea8a",
"Gateway": "172.18.42.1",
"IPAddress": "172.18.42.2",
"IPPrefixLen": 24,
"IPv6Gateway": "",
"GlobalIPv6Address": "",
"GlobalIPv6PrefixLen": 0,
"MacAddress": "02:42:ac:12:2a:02"
}
}
}
}
]
访问测试下:
[root@bogon docker]# curl 172.18.42.2
This is ngnix
7.docker私有仓库:
生成一个认证文件
[root@localhost opt]# mkdir auth
[root@localhost opt]# cd auth/
[root@localhost auth]# cd ../
[root@localhost opt]# docker run --entrypoint htpasswd registry:2 -Bbn zhouhao 123456 > auth/htpasswd
[root@localhost opt]# cat auth/htpasswd
zhouhao:$2y$05$GZ3y3GPCmp6anequ4TYh2OrJGmrnMBOmInuR1JrrxIDHf0E6myVqG
搭建仓库:
[root@localhost opt]# docker run -d -p 6000:5000 --restart=always --name registry1 -v pwd/auth:/auth -e "REGISTRY_AUTH=htpasswd" -e "REGISTRY_AUTH_HTPASSWD_REALM=Registry Realm" -e REGISTRY_AUTH_HTPASSWD_PATH=/auth/htpasswd registry
查看下仓库是否在运行:
[root@localhost opt]# docker ps
CONTAINER ID IMAGE COMMAND CREATED STATUS PORTS NAMES
559c4b6283b0 registry "/entrypoint.sh /e..." 23 minutes ago Up 22 minutes 0.0.0.0:6000->5000/tcp registry1
将镜像上传的仓库中
#先要登录
[root@localhost opt]# docker login 127.0.0.1:6000
Username: zhouhao
Password:
Login Succeeded
#登录成功后才能上传:
#打个标签
[root@localhost opt]# docker tag a8ddb97e410c 127.0.0.1:6000/zhouhao/nginx
#a8ddb97e410c:镜像的ID号
#上传
[root@localhost opt]# docker push 127.0.0.1:6000/zhouhao/nginx
验证:
#先删除上传的镜像
[root@localhost opt]# docker images
REPOSITORY TAG IMAGE ID CREATED SIZE
127.0.0.1:6000/zhouhao/nginx latest a8ddb97e410c 26 hours ago 429 MB
zhouhao/nginx latest a8ddb97e410c 26 hours ago 429 MB
6ebd2e131385 26 hours ago 429 MB
liyongli/my_nginx v1 e6cdb103b333 2 days ago 408 MB
liyongli/my_nginx latest 66ff70d8a103 2 days ago 408 MB
docker.io/centos latest 5182e96772bf 3 weeks ago 200 MB
docker.io/nginx latest c82521676580 5 weeks ago 109 MB
docker.io/registry 2 b2b03e9146e1 8 weeks ago 33.3 MB
docker.io/registry latest b2b03e9146e1 8 weeks ago 33.3 MB
docker.io/alpine latest 11cd0b38bc3c 8 weeks ago 4.41 MB
[root@localhost opt]# docker rmi -f a8ddb97e410c a8ddb97e410c
Untagged: 127.0.0.1:6000/zhouhao/nginx:latest
Untagged: 127.0.0.1:6000/zhouhao/nginx@sha256:2a1cad070e6076f26211cf421f4e602535ad2c1c9178356e5849da79f9bb9cfd
Untagged: zhouhao/nginx:latest
Deleted: sha256:a8ddb97e410ca1aa9e1a5302fcbc759da4c23175b11fe1837ccda1cc633d40f3
Deleted: sha256:f2e0a6f60b465336517be0b0a2698d208fa09162b4f3e6777efe271b4180cc72
Deleted: sha256:55525487441930ca00294e416a5ead6982b6e3e10b8c79132fe8a1cdc354fbba
Deleted: sha256:66e4a5bd55c9378bdf4ceae514f37d581e416df74853808cbf9a45b7018aafcd
Deleted: sha256:186e9eb4fe8f6df36b525a2dbe1e1141c3e2eec3a908543a685e13e6c9096b6e
Deleted: sha256:2da5317e2754c6af07a8ef8ab0bae487032abb5f204da8358cbfca4a6d9fddb1
Error response from daemon: No such image: a8ddb97e410c:latest
[root@localhost opt]# docker images
REPOSITORY TAG IMAGE ID CREATED SIZE
6ebd2e131385 26 hours ago 429 MB
liyongli/my_nginx v1 e6cdb103b333 2 days ago 408 MB
liyongli/my_nginx latest 66ff70d8a103 2 days ago 408 MB
docker.io/centos latest 5182e96772bf 3 weeks ago 200 MB
docker.io/nginx latest c82521676580 5 weeks ago 109 MB
docker.io/registry 2 b2b03e9146e1 8 weeks ago 33.3 MB
docker.io/registry latest b2b03e9146e1 8 weeks ago 33.3 MB
docker.io/alpine latest 11cd0b38bc3c 8 weeks ago 4.41 MB
#将仓库中的镜像下载下来:
[root@localhost opt]# docker pull 127.0.0.1:6000/zhouhao/nginx
Using default tag: latest
Trying to pull repository 127.0.0.1:6000/zhouhao/nginx ...
latest: Pulling from 127.0.0.1:6000/zhouhao/nginx
256b176beaff: Already exists
77b0a013ec06: Already exists
f9b1980a6dd6: Already exists
a5a9ce092668: Already exists
a24ee7e77c51: Already exists
Digest: sha256:2a1cad070e6076f26211cf421f4e602535ad2c1c9178356e5849da79f9bb9cfd
Status: Downloaded newer image for 127.0.0.1:6000/zhouhao/nginx:latest
[root@localhost opt]# docker images
REPOSITORY TAG IMAGE ID CREATED SIZE
127.0.0.1:6000/zhouhao/nginx latest a8ddb97e410c 26 hours ago 429 MB
6ebd2e131385 26 hours ago 429 MB
liyongli/my_nginx v1 e6cdb103b333 2 days ago 408 MB
liyongli/my_nginx latest 66ff70d8a103 2 days ago 408 MB
docker.io/centos latest 5182e96772bf 3 weeks ago 200 MB
docker.io/nginx latest c82521676580 5 weeks ago 109 MB
docker.io/registry 2 b2b03e9146e1 8 weeks ago 33.3 MB
docker.io/registry latest b2b03e9146e1 8 weeks ago 33.3 MB
docker.io/alpine latest 11cd0b38bc3c 8 weeks ago 4.41 MB
注意:其他docker主要要下载的话,docker要映射443端口
8Docker容器编排:
#先安装epel源:
[root@localhost ~]# yum install -y epel-release
#安装pip:
[root@localhost ~]# yum install -y python-pip
#安装编排工具
[root@localhost ~]# pip install docker-compose
#编辑docker-compose.yml文件
[root@localhost compose]# vim docker-compose.yml
web1:
image: nginx
expose:
"80:80"
#运行
[root@localhost compose]# docker-compose up
9.docker运行MySQL
1.下载mysql镜像:
docker pull mysql
2.运行mysql镜像:×××部分设置默认密码,必须设置否则会报错
docker run -it -d --name mysqlserver -e MYSQL_ROOT_PASSWORD=123456 -p 192.168.200.200:3306:3306 mysql
3.进入容器内重新授权用户密码,否则主机登录不上:
[root@bogon ~]# docker exec -it mysqlserver /bin/bash
root@d9aab9384ca6:/# mysql -uroot -p123456
mysql> ALTER USER 'root'@'%' IDENTIFIED WITH mysql_native_password BY '123456';
mysql> flush privileges;
4.主机登录验证:
[root@bogon ~]# mysql -uroot -p123456 -h 192.168.200.200
Welcome to the MariaDB monitor. Commands end with ; or \g.
Your MySQL connection id is 15
Server version: 8.0.12 MySQL Community Server - GPL
Copyright (c) 2000, 2018, Oracle, MariaDB Corporation Ab and others.
Type 'help;' or '\h' for help. Type '\c' to clear the current input statement.
MySQL [(none)]>
[root@bogon ~]# yum install -y openvswitch
[root@bogon ~]# yum install -y bridge-utils
[root@bogon ~]# systemctl start openvswitch
[root@bogon ~]# systemctl status openvswitch
● openvswitch.service - Open vSwitch
Loaded: loaded (/usr/lib/systemd/system/openvswitch.service; disabled; vendor preset: disabled)
Active: active (exited) since 二 2018-09-04 14:00:50 CST; 38s ago
Process: 3330 ExecStart=/bin/true (code=exited, status=0/SUCCESS)
Main PID: 3330 (code=exited, status=0/SUCCESS)
9月 04 14:00:50 bogon systemd[1]: Starting Open vSwitch...
9月 04 14:00:50 bogon systemd[1]: Started Open vSwitch.
[root@bogon ~]# ovs-vsctl add-br br0
[root@bogon ~]# ovs-vsctl add-port br0 gre1 -- set interface gre1 type=gre option:remove_ip=192.168.200.200
[root@bogon ~]# brctl addif docker0 br0
[root@bogon ~]# ip link set dev br0 up
[root@bogon ~]# ip link set dev docker0 up
[root@bogon ~]# iptables -F
[root@bogon ~]# ip route add 172.18.0.0/16 dev docker0