sshuttle: where transparent proxy meets VPN meets ssh# Date: Feb 19, 2024 Version: 1.1 Contents:
sshuttle: where transparent proxy meets VPN meets ssh# Date: Feb 19, 2024 Version: 1.1 Contents:
1. ãããã®VPSã«æ¥ãæªã人 ã観å¯ãã ãã®ï¼ Security Casual Talks ãã¿ã ã»ãã¥ãªãã£åå¼·ä¼ãã®2 2013/12/07 @ozuma5119 2013-11-18 20:12:18 login attempt [root/12345] failed 2013-11-18 20:12:21 login attempt [root/1qazxsw23edc] failed 2013-11-18 20:12:25 login attempt [root/Passw0rd] failed 2013-11-18 20:12:28 login attempt [root/password0] failed 2013-11-18 20:12:32 login attempt [root/password1] failed 176.223.62.254 - - [23/No
ã¡ã¢, ããã°ã©ãã³ã°ã·ã§ã«ã¹ã¯ãªããããsshã§è¤æ°ã®ãªã¢ã¼ããã¹ãã«ã³ãã³ããæãã¤ããå¦çãæ¸ãã¦ã¦ãããããæ°ãã¤ãããã¨ãããã¨ã§èªåã§èª¿ã¹ãããããã«ã¡ã¢ãã¦ããã ã«ã¼ãããsshã§ã³ãã³ããæãã¤ããã·ã§ã«ã¹ã¯ãªããã®whileã«ã¼ãå ãããè¤æ°ã®ãã¹ãã¸é çªã«ã³ãã³ããæãã¤ããå¦çãããã¦ããã¨ãæåã®ãã¹ãã«ããã³ãã³ããé£ã°ãªãï¼ã«ã¼ãããªãï¼ããã¯ãã·ã§ã«ã¹ã¯ãªããã®whileã«ã¼ãèªä½ããæ¨æºå ¥åã®èªã¿åãã«ä¾åãã¦ããã®ã«ãsshãæ¨æºå ¥åãèªã¿åãã®ãåå ããã¨ãã°ãããªã«ã¼ãã®å ´åã«èµ·ããã somecommand | while read LINE do ssh user@hostname 'sh yourcommand /dev/null 2>&1 &' done nãªãã·ã§ã³ãä»ãããã¨ã§ãsshã®æ¨æºå ¥åã/dev/nullã«å¤ããããã¯ã°ã©ã¦ã³ã
Miscellany Top > Linux Memo > backup by rsync Backup by rsync (+ssh) 2000.12.8 updated Linux/UNIX ä¸ã®ãã¼ã¿ã¼ãï¼å¥ã® Linux/UNIX ãã·ã³ã«ï¼ããã¯ã¢ããããããï¼ã¤ã®ãã·ã³ã®ãããã£ã¬ã¯ããªã©ããã®å 容ãåæããã®ã«ãã©ããã¦ããã§ããããï¼ç§ã®å ´åã以å㯠NFS ã§ãã¦ã³ããã¦ãcp -a ï¼ã³ãã¼ï¼ããããã¦ããã®ã§ãããç°å¢ãå¤ãã£ã¦ãã NFS ãå©ç¨ã§ããªããªã£ã¦ããã¯ãrsync ã使ãããã«ãªãã¾ããã ãã® rsync ã«ããããã¯ã¢ããã¨ããã®ã¯ã使ãã¾ã§ã¯ãè¨å®ãã®ä»ãå¿ è¦ã§é¢åãã...ãã¨æã£ã¦ããã®ã§ãããå®éã«ãã£ã¦ã¿ãã¨æåã§ããã¯ã¢ããã»åæããã ããªãè¨å®ãå¿ è¦ãªãããã£ãã使ãã¾ããã ã¾ããssh ã¨ä½µç¨ãããã¨ã§ãã¼ããã©ã¯ã¼ãã£ã³ã°å ã®ã
å¿ è¦ã«è¿«ããã¦sshãã³ããªã³ã°ãããã®ã§ã¡ã¢ã sshãã³ããªã³ã°ã使ãã¨ãã®è¦æ±ã¨ãã¦ã¯å¤å2ã¤ãã£ã¦ããsshãããã³ã«ã使ã£ã¦æå·åãããã»ãã·ã§ã³ã®ä¸ã§ä»ã®ãããã³ã«ãã»ãã¥ã¢ã«å©ç¨ããã(ã«ãã»ã«åããã)ãå ´åã¨ããããããsshãã¼ãããéãã¦ããªãå ´åã«ãã®ãã¼ããä»ã®ãããã³ã«ã®çµè·¯ã¨ãã¦ä½¿ããããå ´åãããã¨æãã ã©ã¡ãã®å ´åã§ã使ãæ¹ã¯åºæ¬çã«åãã ä¾ãã°PostgreSQLãµã¼ãã«æ¥ç¶ããpsqlã³ãã³ããsshãã³ããªã³ã°ãã¦ä½¿ãå ´åãæ³å®ãã¦ã¿ãã ãåææ¡ä»¶ã ã»ãã¼ã«ã«ãµã¼ã:localhost ã»ãªã¢ã¼ããµã¼ã:remote.com ã»ãªã¢ã¼ããµã¼ãã¦ã¼ã¶:remoteuser ã»ãªã¢ã¼ãsshãµã¼ããã¼ã:22 ã»ãªã¢ã¼ãPostgreSQLãµã¼ããã¼ã:5432 ã»ãã¼ã¿ãã¼ã¹å:testdb ã»ãã¼ã¿ãã¼ã¹ã¦ã¼ã¶:dbuser ã¾ããã¼ã«ã«ãµã¼
192.168.1.1 çµç±ã§ãããããè¦ã 192.168.10.1 ã® 8080, 80 çªãã¼ãã«ã¤ãªãã¨ãã¯ä¸¦ã¹ãã°ãkã $ ssh -L8081:192.168.10.1:8080 -L8082:192.168.10.1:80 [email protected] ãã³ããªã³ã°ã ããããªãã-N -f (ãã³ããªã³ã°ãããã¯ã°ã©ã¦ã³ãã§å®è¡) ã®ãªãã·ã§ã³ãä»ããæ¹ãè¯ãã $ ssh -N -f -L8081:192.168.10.1:8080 -L8082:192.168.10.1:80 [email protected]
ãã¦ãååã«å¼ãç¶ãMacã§ãªã¢ã¼ãã®UNIXï¼FreeBSDï¼ãã·ã³ã®Xã¢ããªã±ã¼ã·ã§ã³ã使ããããããæ¹æ³ã®ç¬¬äºå¼¾ã§ãã ååã¯ãX11 for Mac OS Xãã¤ã³ã¹ãã¼ã«ãããç¶æ ã§ãã¿ã¼ããã«ã§ /usr/X11R6/bin/X -query xxx.xxx.xxx.xxxãï¼FreeeBSDãã·ã³ã®IPã¢ãã¬ã¹ï¼ ã¨ã³ãã³ããæã£ã¦ããã°ãxdmcpã§æ¥ç¶ãããFreeeBSDã®ãã°ã¤ã³ã»ãã¤ã¢ãã°ãAquaãã¹ã¯ãããã«ç¾ããï¼FreeBSDå´ã®xdmã®è¨å®ã¯å¿ è¦ï¼ã£ã¦æãã§ããã ãã ãããã®æ¹æ³ã ã¨ãªã¢ã¼ãã®Xwindowï¼KDEï¼ããã«ã¹ã¯ãªã¼ã³ã§è¡¨ç¤ºããã¦ãã¾ãçºã è¥å¹²ä½¿ãã¥ããã ããã«ããã£ããã®Aquaã®ç¾ããç»é¢ãè¦ããªãï¼ç¬ï¼ã¨è¨ãå¼±ç¹ããã£ãã®ã§ãä»åã¯å¥ã®æ¹æ³ã使ãã¾ãã ããã¯ã»ã»ã» SSHã®ãXãã©ã¯ã¼ãæ©è½ã使ããã¨è¨ãæ¹æ³ã§ãã ã³ã¬ã使ãã°
ãªãã ãããã«é·ã説æã°ããæ¤ç´¢ã«å¼ã£ããã£ãã®ã§æ¸ãã¾ããã Linuxã®ãã¼ã«ã«ç°å¢ã§Dockerã³ã³ããå ã®Xã¢ããªï¼GUIã¢ããªï¼ãå©ç¨ããã«ã¯ $ xhost localhost + ãå®è¡ããå¾ã« $ docker run --rm --net host -e "DISPLAY" container_image_name x_app_binary_path ã¨ããã°è¯ãã§ãã ãã£ã¨èªã SSHãªã©ããç¥ããããµã¼ãã¹ãã¼ãã§ä½ã対çããã«ããã¨æ°ããããªããããã®æ»æãªã¯ã¨ã¹ããæ¥ã¾ããä¸å¿ è¦ãªãã°ãå¢ããã¦ãªã½ã¼ã¹ãç¡é§ã«ããããä¸ç¨æãªã¦ã¼ã¶ã¼ãã·ã¹ãã ãããã¨æ»æã«æåããå ´åãããã¾ãã Sshguardã¯Cä½ããã¦ãããflex/bisonã®ãã¼ãµã¼ã«ã¼ã«ã足ãã°æ¡å¼µã§ãã¾ããã«ã¹ã¿ã çãã¡ã³ããã³ã¹ããã®ãé¢åã§ããå¿ è¦ãªã«ã¼ã«ã足ãã¦ãã«ãªã¯ã¨ã¹ããéã£ã¦ããã¼
ããã¯githubãããªãã¦ã使ãããã Gitã¯ãã©ã³ã¹ãã¼ã層ãé¸æåºæ¥ãã®ã¯ç¥ã£ã¦ãããã©ãã¾ãããããªæ¸ãæ¹åºæ¥ãã¨ã¯æã£ã¦ãªãã£ãã 以åããããªè¨äºæ¸ãã¾ããã github.comã¸ã®SSHæ¥ç¶ã«ã¯ãã¹ãå"ssh.github.com"ããã¼ã"443"ã«æ¥ç¶ããæ§ã«è¨å®ãã¾ããâ»ãã®ssh.github.comãå³åã§ãã github.comã¸ã®SSHæ¥ç¶ã«ã¯ãã¹ãå"ssh.github.com"ããã¼ã"443"ã«æ¥ç¶ããæ§ã«è¨å®ãã¾ãã â»ãã®ssh.github.comãå³åã§ãã http://mattn.kaoriya.net/software/20081029172540.htm ãã以ä¸ã®1è¡ã§åºæ¥ãäºãåããã¾ããã # git clone ssh://git@ssh.github.com:443/my-name/my-repo.git ssh.git
SecureJSH Home SecureJSH SecureJSH enables server side applications writen in the Java(TM) programming language to provide secure shell access to their administrators, users, developers and service clients, where verbatim syntax of the latest Java(TM) programming language can be used - interactively. SecureJSH needs JDK 6.0 or JRE 6.0 with JAVAC on classpath to function. Security: SecureJSH implem
sshã使ãããªãã¦ããªãã²ã¨ãè¦ãã¨ã¤ã©ã£ã¨ããããã¹ã¯ã¼ãèªè¨¼å¤§å¥½ã(ãã21ä¸ç´ã§ãã)ããã¹ãã¬ã¼ãºå ¥ããã®ãé¢å(keychain使ãã)ãæ¾ã£ã¨ããsshæ¥ç¶ãåãã¦ãã¾ãåãã!ã(screen使ãã)ã¨ãã ()ã¯~/.ssh/configã«ãããåçã®è¨å®ã詳ããã¯ssh(1)ã¨ssh_config(5)ãåç §ã®ãã¨ã ä¸å®æéãã¨ã«ãã±ãããéã£ã¦ãç¡éä¿¡æéçµéã«ããã»ãã·ã§ã³ãåæãããã®ãåé¿ããã > ssh -o 'ServerAliveInterval 60' host.example.org (ServerAliveInterval 60) ssh-agentã®forwardingãæå¹ã«ãã¦ãloginå ã®ãã¹ãã§ããã¹ãã¬ã¼ãºã®å ¥åãçç¥ããã > ssh -A host.example.org (ForwardAgent yes) remoteã®ã³ã³
svn+sshã使ã£ã¦ãªã¢ã¼ãã®ã¬ãã¸ããªã使ãã¨ãã«ããã¡ãã¡ãã¹ãã¬ã¼ãºãå ¥åããã®ãé¢åã ã£ãã®ã§ãMacOS Xã§ssh-agentã使ããªããã©ãã調ã¹ã¦ã¿ãã > ssh-agent zshã¨ããã¦ssh-agentçµç±ã§shellãå®è¡ããã°ä½¿ãããã©ã2ã¤ãã®shellã¯ã©ã¼ããã ã¨ããã³ãã³ãã©ã¤ã³ä»¥å¤ããèµ·åããssh client(ãããã©ããã¯ç¥ããªã)ã¯ã©ã¼ããã ã¨ãã Xãªãããã°ã¤ã³ããã¨ãã«openssh-askpassã使ã£ã¦ãã¹ãã¬ã¼ãºã®å ¥åã¨ç°å¢å¤æ°ã®ã»ãããããã°ãããã©ãMacOS Xã ã¨ã©ããªããã ããï¼ ã¨ãã¾ãã£ã¦ããããããããªãã®ãçºè¦ã SSHKeychain ã©ããããã®ãã¨ããã¨ãkeychainã«ãã¹ãã¬ã¼ãºãä¿åãã¤ã¤ãã°ãã¼ãã«ç°å¢å¤æ°ãããã£ã¦ssh-agenté¢ä¿ã®ç°å¢å¤æ°ãã»ãããã¦ãããããã°ã¤ã³æã«èµ·åããããã«ãã¦
ã©ã³ãã³ã°
ã©ã³ãã³ã°
ã©ã³ãã³ã°
ãªãªã¼ã¹ãé害æ å ±ãªã©ã®ãµã¼ãã¹ã®ãç¥ãã
ææ°ã®äººæ°ã¨ã³ããªã¼ã®é ä¿¡
å¦çãå®è¡ä¸ã§ã
j次ã®ããã¯ãã¼ã¯
kåã®ããã¯ãã¼ã¯
lãã¨ã§èªã
eã³ã¡ã³ãä¸è¦§ãéã
oãã¼ã¸ãéã
{{#tags}}- {{label}}
{{/tags}}