ã»ãã¥ãªãã£ã¤ã³ã·ãã³ãã®èª¿æ»ã«ããã¦ã¤ãã³ããã°ã®åæã¯æ¬ ãããªãä½æ¥ã§ããActive Directoryï¼ä»¥ä¸ããADãã¨ãããï¼ã§ç®¡çããããããã¯ã¼ã¯ã§ã¯ãADã®ã¤ãã³ããã°ãåæãããã¨ã§ä¸æ£ä½¿ç¨ãããã¢ã«ã¦ã³ããä¾µå ¥ããããã¹ããç¥ããã¨ãã§ãã¾ããã¤ãã³ããã°ãåæããéãã¤ãã³ããã¥ã¼ã¢ã¼ã§ã¯è©³ç´°ãªåæããããã¨ãé£ãããããããã¹ãå½¢å¼ã«ã¨ã¯ã¹ãã¼ããã¦åæããããSIEMããã°ç®¡çã·ã¹ãã ã«ãã°ãã¤ã³ãã¼ããã¦åæãããããã®ãä¸è¬çã§ããããããã¤ãã³ããã°ã¯ç°å¢ã«ãã£ã¦ã¯è¨å¤§ã«ãªãããã©ãããåæãå§ãããããããã©ãã«æ³¨ç®ãã¦åæããããããåãããªãã¨ããåé¡ãããã¾ãã JPCERT/CC ã§ã¯ããã®ãããªã¤ãã³ããã°ã®åæããµãã¼ããããã¼ã«ãLogonTracerããä½æããå ¬éãã¾ãããä»åã¯ããã®ãLogonTracerãã®æ©è½ãå°å ¥æ¹æ³ã«ã¤ãã¦ç´¹ä»
{{#tags}}- {{label}}
{{/tags}}