ํ”„๋กœ์ ํŠธ

์ผ๋ฐ˜

์‚ฌ์šฉ์ž์ •๋ณด

์ƒˆ๊ธฐ๋Šฅ #27

minkyu park์ด(๊ฐ€) ์•ฝ ํ•œ๋‹ฌ ์ „์— ๋ณ€๊ฒฝ

# STEP 1 โ€“ ํ•˜๋“œ์›จ์–ด ๊ตฌ์„ฑ 

 ## 1.1 ์„œ๋ฒ„ ํ˜ธ์ŠคํŠธ ๊ฐœ์š” 

 | ํ•ญ๋ชฉ | ๋‚ด์šฉ | 
 |------|------| 
 | Host | GIGABYTE G5 KD ๋…ธํŠธ๋ถ | 
 | CPU | Intel Core i5-11400H (6C/12T) | 
 | RAM | 32GB (16GB ร— 2) โ†’ ์ถ”ํ›„ 64GB(32GB ร— 2) ์—…๊ทธ๋ ˆ์ด๋“œ ์˜ˆ์ • | 
 | GPU | NVIDIA GeForce RTX 3060 Mobile | 
 | NVMe | CT500P3SSD8 500GB (Proxmox OS์šฉ) | 
 | SATA SSD 1 | 1TB (๋ฐ์ดํ„ฐ ์Šคํ† ๋ฆฌ์ง€: VM Disk / Docker / NVR ๋“ฑ) | 
 | SATA SSD 2 | 250GB (๋ฐฑ์—… ์Šคํ† ๋ฆฌ์ง€: Proxmox ๋ฐฑ์—… ๋“ฑ) | 
 | ์œ ์„  LAN | Intel I219-V (๋‚ด์žฅ, LAN ๋ธŒ๋ฆฟ์ง€์šฉ) | 
 | USB LAN | AX88179 ๊ธฐ๋ฐ˜ USB3.0 ๊ธฐ๊ฐ€๋น„ํŠธ ๋žœ์นด๋“œ (WAN์šฉ) | 
 | ๋ฌด์„  AP | ipTIME A3 (AP ๋ชจ๋“œ๋กœ ์‚ฌ์šฉ ์˜ˆ์ •) | 

 --- 

 ## 1.2 ๋„คํŠธ์›Œํฌ ๊ธฐ๋ณธ ์„ค๊ณ„ 

 ### 1.2.1 ์ตœ์ข… ๋ชฉํ‘œ ๊ตฌ์กฐ (๊ฐœ์š”) 

 - **pfSense VM** ์ด ๋ฉ”์ธ ๊ณต์œ ๊ธฐ/๋ฐฉํ™”๋ฒฝ ์—ญํ•  
 - **WAN**: USB3.0 AX88179 โ†’ ์ธํ„ฐ๋„ท ๋ชจ๋Ž€/๊ด‘๋‹จ์ž ์ง์ ‘ ์—ฐ๊ฒฐ 
 - **LAN**: ๋‚ด์žฅ LAN(I219-V) โ†’ ์Šค์œ„์น˜ or ipTIME A3(AP) ๋กœ ์—ฐ๊ฒฐ 
 - ๊ธฐ์กด 192.168.0.x ๋Œ€์—ญ์€ ์ •๋ฆฌํ•˜๊ณ , pfSense LAN ๋Œ€์—ญ์€ **192.168.10.0/24** ๋กœ ์‹ ๊ทœ ์„ค๊ณ„ ์˜ˆ์ • 

 ```mermaid 
 flowchart LR 
     ISP[์ธํ„ฐ๋„ท ํšŒ์„ /๋ชจ๋Ž€] --> WAN[USB3.0 AX88179<br>pfSense WAN] 
     WAN --> PFSENSE[pfSense VM<br>Proxmox ์œ„] 
     PFSENSE --> LAN[๋‚ด์žฅ LAN (I219-V)<br>vmbr0] 
     LAN --> SW[์Šค์œ„์น˜ or ipTIME A3(AP)] 
     SW --> DEV1[์„œ๋ฒ„/PC/๋…ธํŠธ๋ถ/RPi<br>192.168.10.x] 
 ``` 

 1.3 ๋””์Šคํฌ/์Šคํ† ๋ฆฌ์ง€ ์„ค๊ณ„ 
 1.3.1 ๋ฌผ๋ฆฌ ๋””์Šคํฌ ์—ญํ•  ๋ถ„๋ฆฌ 
 ๋””์Šคํฌ 	 ์šฉ๋„ 
 NVMe 500GB 	 Proxmox ์„ค์น˜, ์ผ๋ถ€ VM Disk (์†๋„ ํ•„์š”ํ•œ ๊ฒƒ) 
 SATA SSD 1TB 	 VM Data, Docker Volume, NVR ์˜์ƒ ์ €์žฅ 
 SATA SSD 250GB 	 Proxmox ๋ฐฑ์—…(vzdump), ์„ค์ • ๋ฐฑ์—… 

 ์ถ”ํ›„ Proxmox์—์„œ: 

 local-lvm โ†’ NVMe ๊ธฐ๋ฐ˜ VM ๋””์Šคํฌ 

 data-storage โ†’ 1TB SSD (LVM-thin ๋˜๋Š” Directory) 

 backup-storage โ†’ 250GB SSD 

 ์ด๋ ‡๊ฒŒ ์Šคํ† ๋ฆฌ์ง€ ๋„ค์ž„์„ ๊ตฌ๋ถ„ํ•ด์„œ ์‚ฌ์šฉํ•  ์˜ˆ์ •. 

 1.4 ๋ฌผ๋ฆฌ ์—ฐ๊ฒฐ(์ผ€์ด๋ธ”๋ง) ์„ค๊ณ„ 
 1.4.1 WAN ๊ฒฝ๋กœ 

 ๋ฒฝ/๋ชจ๋Ž€/ํ†ต์‹ ์‚ฌ ONU โ†’ 

 USB3.0 AX88179 ๋žœ์นด๋“œ (WAN ์ „์šฉ) โ†’ 

 Proxmox ํ˜ธ์ŠคํŠธ(๋…ธํŠธ๋ถ)์— USB๋กœ ์—ฐ๊ฒฐ โ†’ 

 Proxmox์—์„œ ํ•ด๋‹น NIC๋ฅผ vmbr1๋กœ ๋ฌถ๊ณ  pfSense VM์— ๋„˜๊น€ 

 1.4.2 LAN ๊ฒฝ๋กœ 

 Proxmox ํ˜ธ์ŠคํŠธ ๋‚ด์žฅ LAN (I219-V) โ†’ 

 ์Šค์œ„์น˜ or ipTIME A3(AP ๋ชจ๋“œ) LAN ํฌํŠธ โ†’ 

 NAS, RPi, ๊ธฐํƒ€ ์žฅ๋น„๋“ค ์—ฐ๊ฒฐ 

 1.5 BIOS / ํŽŒ์›จ์–ด ์„ค์ • 
 1.5.1 ๊ธฐ๋ณธ ์„ค์ • ์ฒดํฌ๋ฆฌ์ŠคํŠธ 

 UEFI ๋ชจ๋“œ ํ™œ์„ฑํ™” 

 Secure Boot ๋น„ํ™œ์„ฑํ™” (Proxmox ์„ค์น˜ ํŽธ์˜) 

 Intel VT-x / VT-d ํ™œ์„ฑํ™” (๊ฐ€์ƒํ™” + GPU/PCIe Passthrough) 

 ๋ถ€ํŒ… ์ˆœ์„œ: 

 USB (์„ค์น˜ ์‹œ) 

 NVMe (์„ค์น˜ ํ›„) 

 1.5.2 ์ „์›/์ฟจ๋ง ๊ด€๋ จ 

 ์ „์› ์˜ต์…˜: โ€œAC ์—ฐ๊ฒฐ ์‹œ ์ž๋™ ๋ถ€ํŒ…(Always On AC)โ€ ๊ฐ€๋Šฅํ•˜๋ฉด ํ™œ์„ฑํ™” 

 ํŒฌ ๋ชจ๋“œ: Performance / Cooling ์šฐ์„  ๋ชจ๋“œ ์ถ”์ฒœ (ํ•ญ์‹œ ์„œ๋ฒ„ ์šด์šฉ์šฉ) 

 ์ ˆ์ „ ๊ธฐ๋Šฅ: S3/S4์—์„œ WOL ์ง€์› ์—ฌ๋ถ€ ํ™•์ธ (์ถ”ํ›„ pfSense WOL ์‚ฌ์šฉ ๊ฐ€๋Šฅ์„ฑ) 

 1.6 ๋„คํŠธ์›Œํฌ ์žฅ๋น„/ํด๋ผ์ด์–ธํŠธ ์ธ๋ฒคํ† ๋ฆฌ 

 ๊ธฐ์กด ๊ณต์œ ๊ธฐ์—์„œ ์‚ฌ์šฉํ•˜๋˜ ์žฅ๋น„ ๋ชฉ๋ก์€ ์ถ”ํ›„ pfSense DHCP Static Mapping์— ์‚ฌ์šฉ๋œ๋‹ค. 

 ์˜ˆ: (ip, mac, hostname) 

 IP 	 MAC 	 ์—ฐ๊ฒฐ 	 Hostname 
 192.168.0.100 	 D4:93:90:0D:C2:89 	 ์œ ์„  	 mkdev-ims-server 
 192.168.0.200 	 90:09:D0:22:FC:A7 	 ์œ ์„  	 MKs-NAS 
 192.168.0.121 	 E4:5F:01:D3:C4:E1 	 ์œ /๋ฌด์„  	 rpi4-MiniTower 
 ... 	 ... 	 ... 	 ... 

 ์ด ๋ฆฌ์ŠคํŠธ๋Š” pfSense DHCP Static Mapping ์ž‘์„ฑ์„ ์œ„ํ•œ ๊ธฐ์ค€ ๋ฐ์ดํ„ฐ๋กœ ์‚ฌ์šฉํ•œ๋‹ค. 

 1.7 ์ด ๋‹จ๊ณ„(ํ•˜๋“œ์›จ์–ด ๋‹จ๊ณ„)์˜ ์™„๋ฃŒ ๊ธฐ์ค€ 

  NVMe / SSD ๋ฌผ๋ฆฌ ์ƒํƒœ ํ™•์ธ (์ผ€์ด๋ธ”, ์žฅ์ฐฉ, BIOS ์ธ์‹ OK) 

  USB3.0 AX88179 ๋žœ์นด๋“œ ์—ฐ๊ฒฐ ๋ฐ OS์—์„œ ์ธ์‹ ํ™•์ธ (lsusb, dmesg) 

  ๋‚ด์žฅ LAN ๋™์ž‘ ํ™•์ธ (๋งํฌ LED, ethtool) 

  ipTIME A3 ์ „์›/์ดˆ๊ธฐํ™” ๋ฐ AP ๋ชจ๋“œ๋กœ ์‚ฌ์šฉํ•  ์ค€๋น„ ์™„๋ฃŒ 

  BIOS ์„ค์ •: VT-x/VT-d ON, Secure Boot OFF, ๋ถ€ํŒ… ์ˆœ์„œ ์„ค์ • ์™„๋ฃŒ 

  ํ˜„์žฌ ๋„คํŠธ์›Œํฌ(192.168.0.x) ๊ตฌ์„ฑ ๋ฐฑ์—… (์Šคํฌ๋ฆฐ์ƒท/๋ฉ”๋ชจ)

๋’ค๋กœ