[文章作者:张宴 本文版本:v1.2 最后修改:2008.01.02 转载请注明出处:http://blog.zyan.cc]
我曾经写过一篇文章──《初步试用Squid的替代产品──Varnish Cache网站加速器》,但当时仅仅是用着玩,没做深入研究。
今天写的这篇关于Varnish的文章,已经是一篇可以完全替代Squid做网站缓存加速器的详细解决方案了。网上关于Varnish的资料很少,中文资料更是微乎其微,希望本文能够吸引更多的人研究、使用Varnish。
在我看来,使用Varnish代替Squid的理由有三点:
1、Varnish采用了“Visual Page Cache”技术,在内存的利用上,Varnish比Squid具有优势,它避免了Squid频繁在内存、磁盘中交换文件,性能要比Squid高。
2、Varnish的稳定性还不错,我管理的一台图片服务器运行Varnish已经有一个月,没有发生过故障,而进行相同工作的Squid服务器就倒过几次。
3、通过Varnish管理端口,可以使用正则表达式快速、批量地清除部分缓存,这一点是Squid不能具备的。
下面来安装Varnish网站缓存加速器(Linux系统):
1、创建www用户和组,以及Varnish缓存文件存放目录(/var/vcache):
2、创建Varnish日志目录(/var/logs/):
3、编译安装varnish:
4、创建Varnish配置文件:
输入以下内容:
这里,我对这段配置文件解释一下:
(1)、Varnish通过反向代理请求后端IP为192.168.0.5,端口为80的web服务器;
(2)、Varnish允许localhost、127.0.0.1、192.168.0.***三个来源IP通过PURGE方法清除缓存;
(3)、Varnish对域名为blog.zyan.cc的请求进行处理,非blog.zyan.cc域名的请求则返回“Zhang Yan Cache Server”;
(4)、Varnish对HTTP协议中的GET、HEAD请求进行缓存,对POST请求透过,让其直接访问后端Web服务器。之所以这样配置,是因为POST请求一般是发送数据给服务器的,需要服务器接收、处理,所以不缓存;
(5)、Varnish对以.txt和.js结尾的URL缓存时间设置1小时,对其他的URL缓存时间设置为30天。
5、启动Varnish
6、启动varnishncsa用来将Varnish访问日志写入日志文件:
7、配置开机自动启动Varnish
在末尾增加以下内容:
8、优化Linux内核参数
在末尾增加以下内容:
再看看如何管理Varnish:
1、查看Varnish服务器连接数与命中率:
2、通过Varnish管理端口进行管理:
用help看看可以使用哪些Varnish命令:
3、通过Varnish管理端口,使用正则表达式批量清除缓存:
(1)、例:清除类似http://blog.zyan.cc/a/zhangyan.html的URL地址):
(2)、例:清除类似http://blog.zyan.cc/tech的URL地址:
(3)、例:清除所有缓存:
4、一个清除Squid缓存的PHP函数(清除Varnish缓存同样可以使用该函数,无需作任何修改,十分方便):
附1:Varnish官方网站:http://www.varnish-cache.org/
附2:2007年12月10日,我写了一个每天0点运行,按天切割Varnish日志,生成一个压缩文件,同时删除上个月旧日志的脚本(/var/logs/cutlog.sh):
/var/logs/cutlog.sh文件内容如下:
设置在每天00:00定时执行:
我曾经写过一篇文章──《初步试用Squid的替代产品──Varnish Cache网站加速器》,但当时仅仅是用着玩,没做深入研究。
今天写的这篇关于Varnish的文章,已经是一篇可以完全替代Squid做网站缓存加速器的详细解决方案了。网上关于Varnish的资料很少,中文资料更是微乎其微,希望本文能够吸引更多的人研究、使用Varnish。
在我看来,使用Varnish代替Squid的理由有三点:
1、Varnish采用了“Visual Page Cache”技术,在内存的利用上,Varnish比Squid具有优势,它避免了Squid频繁在内存、磁盘中交换文件,性能要比Squid高。
2、Varnish的稳定性还不错,我管理的一台图片服务器运行Varnish已经有一个月,没有发生过故障,而进行相同工作的Squid服务器就倒过几次。
3、通过Varnish管理端口,可以使用正则表达式快速、批量地清除部分缓存,这一点是Squid不能具备的。
下面来安装Varnish网站缓存加速器(Linux系统):
1、创建www用户和组,以及Varnish缓存文件存放目录(/var/vcache):
/usr/sbin/groupadd www -g 48
/usr/sbin/useradd -u 48 -g www www
mkdir -p /var/vcache
chmod +w /var/vcache
chown -R www:www /var/vcache
/usr/sbin/useradd -u 48 -g www www
mkdir -p /var/vcache
chmod +w /var/vcache
chown -R www:www /var/vcache
2、创建Varnish日志目录(/var/logs/):
mkdir -p /var/logs
chmod +w /var/logs
chown -R www:www /var/logs
chmod +w /var/logs
chown -R www:www /var/logs
3、编译安装varnish:
wget http://blog.zyan.cc/soft/linux/varnish/varnish-1.1.2.tar.gz
tar zxvf varnish-1.1.2.tar.gz
cd varnish-1.1.2
./configure --prefix=/usr/local/varnish
make && make install
tar zxvf varnish-1.1.2.tar.gz
cd varnish-1.1.2
./configure --prefix=/usr/local/varnish
make && make install
4、创建Varnish配置文件:
vi /usr/local/varnish/vcl.conf
输入以下内容:
引用
backend myblogserver {
set backend.host = "192.168.0.5";
set backend.port = "80";
}
acl purge {
"localhost";
"127.0.0.1";
"192.168.1.0"/24;
}
sub vcl_recv {
if (req.request == "PURGE") {
if (!client.ip ~ purge) {
error 405 "Not allowed.";
}
lookup;
}
if (req.http.host ~ "^blog.zyan.cc") {
set req.backend = myblogserver;
if (req.request != "GET" && req.request != "HEAD") {
pipe;
}
else {
lookup;
}
}
else {
error 404 "Zhang Yan Cache Server";
lookup;
}
}
sub vcl_hit {
if (req.request == "PURGE") {
set obj.ttl = 0s;
error 200 "Purged.";
}
}
sub vcl_miss {
if (req.request == "PURGE") {
error 404 "Not in cache.";
}
}
sub vcl_fetch {
if (req.request == "GET" && req.url ~ "\.(txt|js)$") {
set obj.ttl = 3600s;
}
else {
set obj.ttl = 30d;
}
}
set backend.host = "192.168.0.5";
set backend.port = "80";
}
acl purge {
"localhost";
"127.0.0.1";
"192.168.1.0"/24;
}
sub vcl_recv {
if (req.request == "PURGE") {
if (!client.ip ~ purge) {
error 405 "Not allowed.";
}
lookup;
}
if (req.http.host ~ "^blog.zyan.cc") {
set req.backend = myblogserver;
if (req.request != "GET" && req.request != "HEAD") {
pipe;
}
else {
lookup;
}
}
else {
error 404 "Zhang Yan Cache Server";
lookup;
}
}
sub vcl_hit {
if (req.request == "PURGE") {
set obj.ttl = 0s;
error 200 "Purged.";
}
}
sub vcl_miss {
if (req.request == "PURGE") {
error 404 "Not in cache.";
}
}
sub vcl_fetch {
if (req.request == "GET" && req.url ~ "\.(txt|js)$") {
set obj.ttl = 3600s;
}
else {
set obj.ttl = 30d;
}
}
这里,我对这段配置文件解释一下:
(1)、Varnish通过反向代理请求后端IP为192.168.0.5,端口为80的web服务器;
(2)、Varnish允许localhost、127.0.0.1、192.168.0.***三个来源IP通过PURGE方法清除缓存;
(3)、Varnish对域名为blog.zyan.cc的请求进行处理,非blog.zyan.cc域名的请求则返回“Zhang Yan Cache Server”;
(4)、Varnish对HTTP协议中的GET、HEAD请求进行缓存,对POST请求透过,让其直接访问后端Web服务器。之所以这样配置,是因为POST请求一般是发送数据给服务器的,需要服务器接收、处理,所以不缓存;
(5)、Varnish对以.txt和.js结尾的URL缓存时间设置1小时,对其他的URL缓存时间设置为30天。
5、启动Varnish
ulimit -SHn 51200
/usr/local/varnish/sbin/varnishd -n /var/vcache -f /usr/local/varnish/vcl.conf -a 0.0.0.0:80 -s file,/var/vcache/varnish_cache.data,1G -g www -u www -w 30000,51200,10 -T 127.0.0.1:3500 -p client_http11=on
/usr/local/varnish/sbin/varnishd -n /var/vcache -f /usr/local/varnish/vcl.conf -a 0.0.0.0:80 -s file,/var/vcache/varnish_cache.data,1G -g www -u www -w 30000,51200,10 -T 127.0.0.1:3500 -p client_http11=on
6、启动varnishncsa用来将Varnish访问日志写入日志文件:
/usr/local/varnish/bin/varnishncsa -n /var/vcache -w /var/logs/varnish.log &
7、配置开机自动启动Varnish
vi /etc/rc.local
在末尾增加以下内容:
引用
ulimit -SHn 51200
/usr/local/varnish/sbin/varnishd -n /var/vcache -f /usr/local/varnish/vcl.conf -a 0.0.0.0:80 -s file,/var/vcache/varnish_cache.data,1G -g www -u www -w 30000,51200,10 -T 127.0.0.1:3500 -p client_http11=on
/usr/local/varnish/bin/varnishncsa -n /var/vcache -w /var/logs/youvideo.log &
/usr/local/varnish/sbin/varnishd -n /var/vcache -f /usr/local/varnish/vcl.conf -a 0.0.0.0:80 -s file,/var/vcache/varnish_cache.data,1G -g www -u www -w 30000,51200,10 -T 127.0.0.1:3500 -p client_http11=on
/usr/local/varnish/bin/varnishncsa -n /var/vcache -w /var/logs/youvideo.log &
8、优化Linux内核参数
vi /etc/sysctl.conf
在末尾增加以下内容:
引用
net.ipv4.tcp_fin_timeout = 30
net.ipv4.tcp_keepalive_time = 300
net.ipv4.tcp_syncookies = 1
net.ipv4.tcp_tw_reuse = 1
net.ipv4.tcp_tw_recycle = 1
net.ipv4.ip_local_port_range = 5000 65000
net.ipv4.tcp_keepalive_time = 300
net.ipv4.tcp_syncookies = 1
net.ipv4.tcp_tw_reuse = 1
net.ipv4.tcp_tw_recycle = 1
net.ipv4.ip_local_port_range = 5000 65000
再看看如何管理Varnish:
1、查看Varnish服务器连接数与命中率:
/usr/local/varnish/bin/varnishstat
2、通过Varnish管理端口进行管理:
用help看看可以使用哪些Varnish命令:
/usr/local/varnish/bin/varnishadm -T 127.0.0.1:3500 help
引用
Available commands:
ping [timestamp]
status
start
stop
stats
vcl.load
vcl.inline
vcl.use
vcl.discard
vcl.list
vcl.show
param.show [-l] []
param.set
help [command]
url.purge
dump.pool
ping [timestamp]
status
start
stop
stats
vcl.load
vcl.inline
vcl.use
vcl.discard
vcl.list
vcl.show
param.show [-l] []
param.set
help [command]
url.purge
dump.pool
3、通过Varnish管理端口,使用正则表达式批量清除缓存:
(1)、例:清除类似http://blog.zyan.cc/a/zhangyan.html的URL地址):
/usr/local/varnish/bin/varnishadm -T 127.0.0.1:3500 url.purge /a/
(2)、例:清除类似http://blog.zyan.cc/tech的URL地址:
/usr/local/varnish/bin/varnishadm -T 127.0.0.1:3500 url.purge w*$
(3)、例:清除所有缓存:
/usr/local/varnish/bin/varnishadm -T 127.0.0.1:3500 url.purge *$
4、一个清除Squid缓存的PHP函数(清除Varnish缓存同样可以使用该函数,无需作任何修改,十分方便):
附1:Varnish官方网站:http://www.varnish-cache.org/
附2:2007年12月10日,我写了一个每天0点运行,按天切割Varnish日志,生成一个压缩文件,同时删除上个月旧日志的脚本(/var/logs/cutlog.sh):
/var/logs/cutlog.sh文件内容如下:
引用
#!/bin/sh
# This file run at 00:00
date=$(date -d "yesterday" +"%Y-%m-%d")
pkill -9 varnishncsa
mv /var/logs/youvideo.log /var/logs/${date}.log
/usr/local/varnish/bin/varnishncsa -n /var/vcache -w /var/logs/youvideo.log &
mkdir -p /var/logs/youvideo/
gzip -c /var/logs/${date}.log > /var/logs/youvideo/${date}.log.gz
rm -f /var/logs/${date}.log
rm -f /var/logs/youvideo/$(date -d "-1 month" +"%Y-%m*").log.gz
# This file run at 00:00
date=$(date -d "yesterday" +"%Y-%m-%d")
pkill -9 varnishncsa
mv /var/logs/youvideo.log /var/logs/${date}.log
/usr/local/varnish/bin/varnishncsa -n /var/vcache -w /var/logs/youvideo.log &
mkdir -p /var/logs/youvideo/
gzip -c /var/logs/${date}.log > /var/logs/youvideo/${date}.log.gz
rm -f /var/logs/${date}.log
rm -f /var/logs/youvideo/$(date -d "-1 month" +"%Y-%m*").log.gz
设置在每天00:00定时执行:
/usr/bin/crontab -e
或者 vi /var/spool/cron/root
输入以下内容:引用
0 0 * * * /bin/sh /var/logs/cutlog.sh
Roadrunner Email
2020-3-20 16:17
Roadrunner Email is one of the simplest email services and also won't to current personal services. This service is additionally providing to urge popular communication supported an online service provider. However, you'll determine the simplest use of roadrunner service includes the present user for roadrunner email settings which helps to very effective works. additionally, http://roadrunneremailz.com it's one of the simplest services and also available for creating the higher platform of lends to raised versatility with meet your customer requirements. Moreover, the simplest experience of some road bumps from the importance of roadrunner services and support.文字
Webroot Login
2020-3-20 16:18
Get your Webroot Login at to secure your device because nowadays most of the people from everywhere the planet are using the web from different devices like PC, Laptop or smartphone, etc. the web has born to several online crimes, referred to as cyber-crimes, created by expert hackers. As every detail folks are saved online within the sort of social media accounts, banking information also as in digitized form, http://webrootlogins.com it becomes important to possess perfect online security. webroot antivirus 2020 has accompanied the first goal of giving a user peace of mind within the context of online safety. It doesn't matter whether an individual is accessing the web for private use or big-sized business.
Norton Login
2020-3-20 16:18
Norton Login account is an ultimate tool that permits you to experience the complete potential of your Norton security products. After purchasing your subscription, you're required to line up your Norton Login Account within the very first place. https://nortonloginn.com All you would like to possess is a lively email account for this essential task. you'll easily create your Norton Login Account by following the given set of instructions.
avast login
2020-3-20 16:19
Avast Login — To affect all of your Avast programmings at one spot, the Avast offers the record administrations. you'll make another My Avast record and connect all of your items thereto account. From that time forward, you'll refresh, reestablish, and expel the membership by basically signing in to the Avast Account. http://avastlogin.ch you'll get to the My Avast record utilizing numerous gadgets, for instance, PC, Mac, and Tablet. it's various highlights for your diverse gadget, for instance, it offers an Anti-Theft include for the Android.
HP Support Assistant download
2020-3-20 16:29
Are you looking for HP Support Assistant download? Visit HP Printer online support to fix the technical error. Get support from the HP Printer Assistant. HP Support also provides an access point for software updates, product information, online classes, and provides HP contact information.
Genxtechworld
2020-3-20 18:56
If you have Kaspersky antivirus and Kaspersky secure connection not working call Kaspersky Helpline number @ 1-888-637-8999
kaspersky-activate
2020-3-21 14:19
Install Kaspersky with activation code https://kaspersky-activate.cominstall kaspersky with activation code | How to install and activate kaspersky on multiple computers• Each copy of a multiple-device license for Kaspersky Anti-Virus 2019 (for example, a 3 PCs license) is installed and activated in the same way on all computers you want to protect.• In conclusion to activate Kaspersky Internet Security 2016 on all computers, use one and the same activation code you purchased.<a href="https://kaspersky-activate.com/">Install Kaspersky with activation code</a><a href="https://kaspersky-activate.com/activate-kaspersky-internet-security/">activate kaspersky internet security</a><a href="https://kaspersky-activate.com/kaspersky-geek-squad-download-install/">kaspersky geek squad download install</a><a href="https://kaspersky-activate.com/usa-kaspersky-com-geeksquad/">usa.kaspersky.com/geeksquad</a><a href="https://kaspersky-activate.com/activate-kaspersky-internet-security-for-mac/">Activate Kaspersky Internet Security for Mac</a><a href="https://kaspersky-activate.com/reinstall-kaspersky-total-security/">reinstall kaspersky total security</a><a href="https://kaspersky-activate.com/">kaspersky without cd</a>
esetactivate
2020-3-21 15:04
Install eset on your device and secure it from cyber threats.https://esetactivate.com/https://esetactivate.com/download-eset/https://esetactivate.com/eset-download/https://esetactiv... href="https://esetactivate.com/">install eset</a><a href="https://esetactivate.com/download-eset/">download eset</a><a href="https://esetactivate.com/eset-download/">eset download</a><a href="https://esetactivate.com/eset-login/">eset login</a>
growthagency
2020-3-22 15:13
We are a creative growth agency, that helps businesses in marketing and sales efforts bygenerating qualified leads and opportunities. We focus on digital marketing, lead generation,outbound sales, inbound marketing for B2B and B2C firms.Contact us today: hello@nexuses.cohttps://nexuses.in/
growthagency
2020-3-22 15:14
https://nexuses.in/
growthagency
2020-3-22 15:15
growth agency
JM
2020-3-23 15:44
My name is jessica miller is the manager of movierulz. Our company based on Uk.We provides new Movies information in Uk. To get best and affordable movies information.https://4movierulzz.online/https://3movierulzsx.online/https://3movierulzfree.online/https://movierulzpz.website/https:/...
digital marketing agency
2020-3-23 18:40
best digital marketing agency in delhibest digital marketing company in delhibest digital marketing company
digital marketing agency
2020-3-23 18:41
best digital marketing agency in delhibest digital marketing company in delhibest digital marketing company==
SARDAR JI FONES
2020-3-23 18:42
Samsung store in meerut|Apple Store In meerut|realme store in meerutMobile Shop In meerutSardar ji Fones
Printer help
2020-3-23 18:43
Support for 123 hp com setuphp 8710 driverhp officejet pro 8710 driverhp officejet pro 8710 driver
sdfsd
2020-3-23 18:44
<a href="https://digimexl.com/top-10-python-institute-in-delhi/">Top 10 Python Training Institute in delhi</a><a href="https://digimexl.com/top-10-graphic-design-institute-in-delhi/">Top 10 Graphic Design Institute in Delhi</a><a href="https://digimexl.com/top-10-fashion-design-institute-delhi/">Top 10 Fashion Design Institute in Delhi</a><a href="https://digimexl.com/">DIGIMEXL</a>
ssc result
2020-3-24 09:52
As per the information available, the SSC exams are over conducted from 03th to 27th of February 2020 as every year. In the same way, the ssc result 2020 is expected on 1st Week of April 2020. Ministry of Primary and Mass Education along with the officials will come up with the PSC exam result in the online.Students can check their hsc exam result. on the same day as per the latest news. After the result is briefed to the media, it will be published in the online at official websites. So, stay tuned to the JSC Result Publish Date and check your scores as soon as they are declared.
mcafee
2020-3-24 14:37
mcafee.com/activate antivirus is software which is designed to detect and remove viruses and other malware from the computer and other devices. It is the virus protection software which is used to secure your computers, laptops and other electronic devices. McAfee antivirus is a code that finds and removes all kinds of infection known as the virus. McAfee antivirus scans your device on regular basis for all viruses and malware. It’s very strong antivirus software which stops a virus from infecting the user's system.
rupayadav
2020-3-24 15:53
Are you looking for advance Digital Marketing Institute in Delhi, we are going to be the one that’s providing that Digital Marketing Course. We are providing a digital marketing Course Institute in Laxmi Nagar. We also provide SEO training course, SMO training course, and PPC marketing course.https://ekwikonline.in/digital-marketing-course-in-laxmi-nagar/https://ekwikonline.in/ppc-training/https://ekwikonline.i...
分页: 138/439 133 134 135 136 137 138 139 140 141 142