ãã¡ãã¯æ¹è¨åã®æ§çã®ãã¼ã¸ã§ããæ¹é¡ç¬¬2çã®ååãã¼ã¸ãã覧ãã ãã Webã»ãã¥ãªãã£è§£èª¬ã®æ±ºå®ç "Bulletproof SSL and TLS" ã®å ¨è¨³ï¼åæ¸2017å¹´çã¸ã®ã¢ããã°ã¬ã¼ãæ¸ã¿ï¼ Ivan RistiÄ èãé½è¤åé ç£è¨³ 520ãã¼ã¸ B5å¤ ISBNï¼978-4-908686-00-9 é»åæ¸ç±ã®å½¢å¼ï¼PDF 2020å¹´7æ4æ¥ ç¬¬1ç第5å· çºè¡ï¼åæ¸2017å¹´çã¢ããã°ã¬ã¼ã対å¿æ¸ã¿ï¼ æ¬ãµã¤ãã«ã¦ã¦ã¼ã¶ç»é²ã®ããè³¼å ¥ããã ãã¨ãåèæ¹è¨ç¬¬2çã«åé²ãããTLS 1.3ã®è§£èª¬ç« ãä»é²ã¨ãã¦å«ãã ç¹å¥çPDFããèªã¿ããã ãã¾ã ç¾ä»£çæ´»ãæ¯ãããããã¯ã¼ã¯ã«ã¨ã£ã¦ãéä¿¡ã®æå·åã¯ä¸å¯æ¬ ã®æ©è½ã§ããããããå®éã®ã¤ã³ã¿ã¼ãããã§æå·åéä¿¡ãå©ç¨ã§ããããã«ããã«ã¯ãæå·åã¢ã«ã´ãªãºã ã®ç¥èã ãã§ãªããã»ãã¥ãªãã£ãããã³ã«ã¨ãã®å®è£ æè¡ãããã«ãåºç¤ã¨ãªãä¿¡
ååã¨åã åã§ã¯ãWindowsãããã¯ã¼ã¯ãæ¯ãããã©ã³ã¹ãã¼ã層ãããã³ã«ã§ããTCP/IPã¨NetBIOSï¼NetBEUIï¼ãããã³ã«ã«ã¤ãã¦è¦ã¦ãããä»åã¯Windowsãããã¯ã¼ã¯ã«ããããã¡ã¤ã«å ±æãããã³ã«ã®SMBï¼CIFSã®æ¦è¦ã«ã¤ãã¦è¦ã¦ããã Windowsãããã¯ã¼ã¯ã«ããããã¡ã¤ã«å ±æãããã³ã«ã®æ´å² Windows OSã«ããããã¡ã¤ã«å ±æãããã³ã«ã¯ãæ£å¼ã«ã¯ãSMBï¼Server Message Blockï¼ããããã¯ãCIFSï¼Common Internet File Systemï¼ãã¨ããï¼SMBã¨CIFSã®éãã«ã¤ãã¦ã¯å¾è¿°ï¼ãæ´å²çãªçµç·¯ã«ãã£ã¦SMBã¨å¼ã°ããããCIFSã¨å¼ã°ããããã¦ããããç¾å¨ã§ã¯SMBãæ£å¼ãªå称ã¨ããã¦ããã SMBã¯ããã¨ãã¨ã¯LAN Managerã¨ãããããã¯ã¼ã¯OSï¼OS/2ãã¼ã¹ã®ãã¡ã¤ã«ãµã¼ãã¼OSï¼ãªã©ã§åä½ã
2014-09-28 rsyslogã§ãªã¢ã¼ããµã¼ãã«ãã°ãéã(åºæ¬ç·¨) ãµã¼ã Linux syslog ååãrsyslogã®ç¹å¾´ãæ´çããã ä»åã¯ãããè¸ã¾ãã¦ãã°ããªã¢ã¼ããµã¼ãã«éãåºæ¬çãªè¨å®ããã¦ã¿ããã¨æãã 以ä¸ã®ãããªæ§æã§ããæ¬æ¥ã®ã´ã¼ã«ã¯ä»¥ä¸ã®2ç¹ ã¯ã©ã¤ã¢ã³ããããªã¢ã¼ããµã¼ãã¸ãã°è»¢éãã TCP,UDPã®ä¸¡ãããã³ã«ã§è»¢éãã å 容ã¨ãã¦ã¯åºæ¬çã§ãããä¸æ©ãã¤é²ããæ¹éã ãã¡ã·ãªãã£ããã©ã¤ãªãªãã£ãä¿åå ãã¡ã¤ã«ã®è¨å®ã«ã¤ãã¦ã¯ ãããã³ã«å¥ã«åãã¦ãããªãããã§ã TCP -> local1.* /var/log/local1.log UDP -> local2.* /var/log/local2.log ãµã¼ãã®è¨å®ã¾ããµã¼ãå´ã®è¨å®ã/etc/rsyslog.conf (åç¥) #### MODULES #### $ModLoad im
ADSLãç»å ´ãã2000å¹´ãããããåã®ã¤ã³ã¿ã¼ãããæ¥ç¶ã¨ããã°ãèªå® ã®ã¢ãã ããå¥ç´ãã¦ãããããã¤ããç¨æãã¦ããã¢ã¯ã»ã¹ãã¤ã³ãã«ãã¤ã¤ã«ãã¦é»è©±åç·ã§æ¥ç¶ããããã¤ã¤ã«ã¢ããæ¥ç¶ããå§åçã«ä¸»æµãå ãã¦ãã¾ããããã¤ã¤ã«ã¢ããã§ã®æ¥ç¶æã«ã¢ãã ããèãããããã¼ã¼ã¼ã´ã¼ã¼ã¼ã¶ã¼ã¼ã¼ã¼ãã¨ããé³ãè¦ãã¦ãã人ãããã¨æãã¾ããããããªãã¤ã¤ã«ã¢ããæ¥ç¶é³ãã°ã©ãã§å¯è¦åããããããã®é³ã®å½¹ç®ãç®ã«è¦ããå½¢ã§è¡¨ããç»åãå ¬éããã¦ãã¾ãã absorptions: The sound of the dialup, pictured http://www.windytan.com/2012/11/the-sound-of-dialup-pictured.html ãã¤ã¤ã«ã¢ããæ¥ç¶é³ãèãããã¨ããªã人ã¯ä¸è¨ã ã¼ãã¼ãã確èªå¯è½ã§ãã The Sound of dial-up Int
2. about me ⢠æ浦é幸 ⢠ãããã¨ã¼ã¸ã§ã³ãæ ªå¼ä¼ç¤¾ä»£è¡¨åç· å½¹ 2 ⢠PacketBlackHole, OnePointWall, é²äºº, secroidã®åéçºè ⢠CTFãã£ã¬ã³ã¸ã¸ã£ãã³çµæ¸ç£æ¥ç主å¬ã®CTF(ãããã³ã°ã®æè¡å¤§ ä¼ï¼åªåã¡ã³ãã¼(Agent IV) ⢠ã»ãÃãã¦ããã«ã¼Ãã»ãã¥ãªãã£ã®ãã¦å´ ⢠Winnyã®æå·è§£èªã«åãã«æå ⢠TVãã¥ã¼ã¹çªçµã§ã®äºä»¶è§£èª¬å¤æ° ⢠第ï¼åIPAè³åè³ â¢ 2010å¹´ã«æ¿åºã®æ å ±ä¿å ¨æ¤è¨å§å¡ ⢠ãªã© 3. Agenda ⢠ãªãã¯ãã¼ãªã³ã°ãã«ããã®ã ⢠ã¯ãã¼ãªã³ã°ãã«ãããããã³ã« ⢠å¿åã¯ãã¼ãªã³ã° ⢠ã¯ãã¼ãªã³ã°ãã«ãããã¼ã¸ ⢠ã¯ãã¼ãªã³ã°å¶é ⢠éHTTPãããã³ã« å ¬éç¨ã¯ä¸é¨æ å ±ãåæ¸ãã¦ãã¾ãã 3
1. ã¯ããã«ã æ¨æ¥ OpenSSLã®ãã¼ã¸ã§ã³ã¢ãããã¢ãã¦ã³ã¹ãããï¼ã¤ã®èå¼±æ§ãå ¬éããã¾ããããã¼ã¸ã§ã³ã¢ããã®æ°æ¥åã«OpenSSLã®æ¬¡æãªãªã¼ã¹äºåãã¢ãã¦ã³ã¹ããã¦ãã¾ããããã¡ããã© BlackHat éå¬åæ¥ã«ããããã¨ãããããªããã¾ãé大ãªèå¼±æ§ã®ä¿®æ£ãå ¥ãããããªããã¨ãããããã¦ãã¾ãããèãéãã¦ã¿ãã¨HeatBleedç¨ã®å¤§äºã§ã¯ãªããããã²ã¨å®å¿ã§ãã æ¨æ¥å ¬éãããOpenSSLã®ï¼ã¤ã®èå¼±æ§ã®ãã¡ãTLS ãããã³ã«ãã¦ã³ã°ã¬ã¼ãæ»æ (CVE-2014-3511)ã®ä¿®æ£ãè¦ã¦ããã¨ãããããã¯TLSãããã³ã«ãå¦ã¶ããé¡æã«ãªããªãã¨ãµã¨æãã¤ãã試ãã«ãã®Opensslã®èå¼±æ§ã®è©³ç´°ãTLSãããã³ã«ã®åºç¤ã«åããã¦æ¸ãã¦ã¿ã¾ããã ã¡ãã£ã¨é·ãã§ãããTLSãããã³ã«ã®ä»çµã¿ï¼ã®ä¸é¨ï¼ãç¥ãããæ¹ã¯ãèªã¿ãã ããã 2. OpenSSLã®èå¼±æ§
OpenSSLã®heatbeatãã°ã®å¯¾å¿ã®ãããOpenBSDã¯OpenSSLã®heatbeatãç¡å¹ã«ããã³ããããããããã ãã»ã»ã» src/lib/libssl/ssl/Makefile - view - 1.29 Segglemannã®RFC520 heatbeatãç¡å¹åã ãã®ã¾ã¨ããªãããã³ã«ã²ã¨ã¤å¶å®ã§ããªãIETFã®ç¡è½éå£ããè¶ éè¦ãªãããã³ã«ã§64Kã®ç©´ããããããã¨ãããã¸ã§ãããã¦ãã®ãè¨ããã¼ãã奴ãã¯ãã¸ãã®åé¡ãæ¬æ°ã§æ¤è¨¼ãã¹ãã ãããªãã§ãããªãã¨ããã§ãããã®ãããããªäºæ ãæ¿èªãã責任ããé£ä¸ãå ¨å¡ãææ決å®ããã»ã¹ããåãé¤ãå¿ è¦ããããIETFãã¦ãã¼ã¯ä¿¡ç¨ãªãããã ãã®ã³ãããã¯ãMakefileã®ä¸ã§ãOpenSSLã§heatbeatãç¡å¹ã«ãããã¯ããå®ç¾©ãããããã³ã³ãã¤ã©ã¼ãªãã·ã§ã³ãæå®ãããã®ã ããã ããç¡å¹ã«ãããã¯ãã¯ãOPE
SR-IOV (1) (2) (3) (4) InfiniBand (1) SMB Multichannel (1) (2) (3) åå ã®æå¾ã«ãå°ã触ããã¨ãããä»åã¯ãSMB ãã«ããã£ãã«ãã«ã¤ãã¦ã SMB Multichannel 㯠Windows Server 2012 ããã®æ°æ©è½ã§ã SMB ãã©ãã£ãã¯ã®ãã¼ããã©ã³ã¹ã帯åå¢å¼·ããã¹é害ã«å¯¾å¿ãããã«ããã¹æè¡ã§ããâNIC ãã¼ãã³ã°ã® SMB/CIFS ãããã³ã«éå®çâã¨è¨ãã°ã¤ã¡ã¼ã¸ããããããããã¾ããã ããã©ã«ãè¨å®ã¯ Onãã¤ã¾ããããã©ã«ãã§ã¯éä¿¡ç¸æã«å¯¾ã㦠SMB ã®éä¿¡ãã¹ãè¤æ°ããå ´åããã®ãã¹ã¦ã®ãã¹ãèªåçã«ä½¿ããã¾ãã Multichannel ã®ç¹å¾´ Multichannel 㯠SMB/CIFS ãããã³ã«ã«éå®ã§ãããããã«ããã¼ã ã æ´ã«ãã¹é害æã®åãé¢ããé ãããã è¯ã
è¥è ã®ãããã³ã«é¢ããå«ã°ãã¦ä¹ ããããæè¿ãããã³ã«ã¯é常ã«ããããªåéã§ããã ç®ã¾ããããé²åããWebã«åããããããã³ã«ã®ä¸çãçå®ã«é²åãã¦ããã ä»ã¾ã§ãã©ã¦ã¶ã§ã¯åºæ¥ãªãã£ãäºãåºæ¥ãããã«ãªããWebãµã¼ãã¹ãããå®å ¨ã«ä½¿ããããã«ãªã£ãã ããã¦Webã®ããã©ã¼ãã³ã¹ã大ããæ¹åããããã«HTTP2.0ãè°è«ããã¦ããã Webãæ¯ãããããã³ã«ã¨ãã¦ã大ããåãã¦ï¼ã¤ã«åãããããã¨æãï¼ç§ã®åæãªã¤ã¡ã¼ã¸ãæ£ç¢ºãªå³ã§ã¯ããã¾ããï¼ Webã¢ããªã±ã¼ã·ã§ã³ ãã©ã¦ã¶ãä»ã¾ã§åºæ¥ãªãã£ããã¨ãåºæ¥ãããã«ããããWebã¢ããªã±ã¼ã·ã§ã³ã®èªè¨¼ã»èªå¯ãªã©ã®æ©è½ãæä¾ãããããã³ã«ãªã©ãJSããµã¼ããµã¤ãããã°ã©ãã³ã°ã§å©ç¨ãããããã WebSocket (http://tools.ietf.org/html/rfc6455) ãã©ã¦ã¶ã¨Webãµã¼ãã®éã§ã½ã±ããéä¿¡ãè¡ã
ãªãªã¼ã¹ãé害æ å ±ãªã©ã®ãµã¼ãã¹ã®ãç¥ãã
ææ°ã®äººæ°ã¨ã³ããªã¼ã®é ä¿¡
å¦çãå®è¡ä¸ã§ã
j次ã®ããã¯ãã¼ã¯
kåã®ããã¯ãã¼ã¯
lãã¨ã§èªã
eã³ã¡ã³ãä¸è¦§ãéã
oãã¼ã¸ãéã
{{#tags}}- {{label}}
{{/tags}}