Zabbixããã¼ã¹ã¨ããã»ãã¥ãªãã£ã¬ã¤ãã©ã¤ã³æºæ ã®çµ±åã·ã¹ãã 管çã½ãªã¥ã¼ã·ã§ã³ã§ãã
CTCSã§ã¯ãã客æ§ã®ç°å¢ã«åããã¦è¨è¨ã»æ§ç¯ãå¯è½ã§ãã
OSSãæ´»ç¨ããç£è¦ã·ã¹ãã ãæ§ç¯ããããå°éã¨ã³ã¸ãã¢ããã¦ãã¦ããªã
ç£è¦ã·ã¹ãã ã«ããã¦ãNIST SP800-171ãSP800-53 ãªã©ã®ã»ãã¥ãªãã£ã¬ã¤ãã©ã¤ã³æºæ ãå¿ è¦ã¨ãªã£ã
å°å ¥æã®æè¡æ¯æ´ãéç¨éå§å¾ã®ååãçªå£ãZabbixã®ä¿®æ£å¯¾å¿ã®ãµãã¼ããå¿ è¦
MIRACLE ZBXã¨ã¯ï¼
ãªã¼ãã³ã½ã¼ã¹ã½ããã¦ã§ã¢ï¼OSSï¼ã®Zabbixããã¼ã¹ã«æ©è½å¼·åãå ããè±å¯ãªã·ã¹ãã ç£è¦æ©è½ããªã¼ã«ã¤ã³ã¯ã³ã§æä¾ãããã¨ã³ã¿ã¼ãã©ã¤ãºåãã®çµ±åã·ã¹ãã ç£è¦ã½ãªã¥ã¼ã·ã§ã³ã§ãã
ã»ãã¥ãªãã£ã®å½éæ¨æºã¨ãªãã¤ã¤ããç±³å½æ¨æºæè¡ç 究æï¼NISTï¼ã®ã»ãã¥ãªãã£ã¬ã¤ãã©ã¤ã³è¦ä»¶ã«æºæ ããã»ãã¥ãªãã£æ©è½å¼·åãå®è£
â»1ã CTCSãªãè±å¯ãªç£è¦ã·ã¹ãã å°å
¥ã»éç¨å®ç¸¾ã§ã客æ§ã®ç°å¢ã«åãããè¨è¨ã»æ§ç¯ãå¯è½ã§ãâ»2ã
ã¾ããåä¸ãã¼ã¸ã§ã³ã§æé·10å¹´ã®ã½ã¼ã¹ã³ã¼ã解æãå«ãé«å質ãªãµãã¼ããµã¼ãã¹ããæä¾ãZabbixãµã¼ãã¼æ¯ã®èª²éã¨ãªããããç£è¦å¯¾è±¡æ°ã®å¢å ã«ãã追å ã©ã¤ã»ã³ã¹è²»ç¨ã¯ãããã¾ããã
â»1.MIRACLE ZBXãã¼ã¸ã§ã³5.0.9ãã対å¿
â»2.OSSå°å
¥ã»ä¿å®ãµã¼ãã¹ããåç
§ãã ãã
ç£è¦æ©è½ï¼ã¨ã¼ã¸ã§ã³ãç£è¦ãã¨ã¼ã¸ã§ã³ãã¬ã¹ç£è¦ï¼
ç£è¦ã®æ¹æ³ã«ã¯ãã¨ã¼ã¸ã§ã³ããç¨ãããã¨ã¼ã¸ã§ã³ãç£è¦ããã¨ã¼ã¸ã§ã³ããç¨ããªããã¨ã¼ã¸ã§ã³ãã¬ã¹ç£è¦ããããã¾ãã
ã¨ã¼ã¸ã§ã³ãã¬ã¹ç£è¦ã«ã¯ãPING ã«ããæ»æ´»ç£è¦ã®ä»ãSNMPãã¹ã¯ãªããã®å®è¡ãªã©ãæ§ã
ãªæ¹æ³ãããã¾ãã
å±¥æ´ç®¡çã»è¡¨ç¤ºæ©è½ç£è¦
ç£è¦æ å ±ãèç©ãããã¼ã¿ãã¼ã¹ãããã¼ã¿ãæ½åºããã°ã©ãããããã¯ã¼ã¯ããããªã©ã°ã©ãã£ã«ã«ã«è¡¨ç¤ºããæ©è½ãæãã¦ãã¾ãã Web ã¤ã³ã¿ã¼ãã§ã¤ã¹ãããã¼ã¿ãã¼ã¹ã«ç´æ¥ã¢ã¯ã»ã¹ãè¡ããããã°ã©ãã®è¡¨ç¤ºæéãå¤ããã¨ãããã«ã°ã©ãã«åæ ããã¾ãã
é害対å¿ã»éç¥æ©è½
ç£è¦ãã¦ãããã¼ã¿ãä»»æã«è¨å®ããããããå¤ãè¶
ããå ´åã«é害ã¨æ¤ç¥ãã¡ã¼ã«ãç»é¢ã§éç¥ãã¾ããã¾ããé害æ¤ç¥æã«ã¯ã¡ã¼ã«éç¥ä»¥å¤ã«ãå梱ããã¦ããå¤æ°ã® webhookâ» ãä»»æã®ã¹ã¯ãªãããå®è¡ãããã¨ãã§ãã¾ãã
â» webhook 㯠MIRACLE ZBX ãã¼ã¸ã§ã³ 5.0 系以ä¸ã®æ©è½ã§ãã
1ï¼ã»ãã¥ãªãã£æ©è½ãå¼·åããNIST SP800-171 ããã³ SP800-53 ã«æºæ â»
ç£æ»ãã°ã® syslog ã¸ã®åºåãããã¹ã¯ã¼ãããªã·ã¼è¨å®ï¼MariaDB/MySQL[MIRACLE ZBX5.0.10以é] ã§å¯¾å¿ï¼ãbcrypt ã® cost ãã©ã¡ã¼ã¿ã¼è¨å®ãè¨å®ãã¡ã¤ã«ä¸ã® DB ãã¹ã¯ã¼ãæå·åï¼RHEL8 ç³» OS ã®ã¿å¯¾å¿ï¼ãªã©è©³ç´°è¨å®ãå¯è½ã
NIST SP800-171ãSP800-53 ãªã©ã®ã»ãã¥ãªãã£ã¬ã¤ãã©ã¤ã³ã«æºæ ãããã¨ã§ãOSS ã§ãå®å¿ã®ã»ãã¥ãªãã£æ©è½ãå®è£
ãã¦ãã¾ãã
â» ã»ãã¥ãªãã£æ©è½ã®å¼·åã»NIST SP800-171 ããã³ SP800-53 ã»ãã¥ãªãã£åºæºæºæ 㯠MIRACLE ZBX ãã¼ã¸ã§ã³ 5.0.9 ãã対å¿ãã¦ãã¾ãã
Linux OS ãå«ãä»®æ³ã¢ãã©ã¤ã¢ã³ã¹è£½å MIRACLE ZBX Virtual Appliance ã§ã¯ãMIRACLE ZBX Virtual Appliance V5.0 ã対å¿ãã¦ãã¾ãã
2ï¼å®å®ããã·ã¹ãã ç£è¦ç°å¢ãå®ç¾ããè±å¯ãªæ©è½
Zabbix äºæä»®æ³ã¢ãã©ã¤ã¢ã³ã¹ã®ãMIRACLE ZBX Virtual Applianceãã¯èªåé害復æ§æ©è½ãMIRACLE FailSafeããå
èµããZabbixã®ç¨¼åç£è¦ãè¡ã£ã¦ãã¾ãã ä¸ãä¸ Zabbix ããã¦ã³ãã¦ããä»®æ³ååºç¤ããã¯æ¤ç¥ã§ããªã OS ã¬ã¤ã¤ã¼ãã¢ããªã±ã¼ã·ã§ã³ã¬ã¤ã¤ã¼ã§ã®é害ãæ¤ç¥ããèªåçã«ã¢ããªã±ã¼ã·ã§ã³åèµ·åããããªã復æ§ããã¾ãã
ããã«ãç£è¦è¨å®ããã¯ã¢ããæ©è½ããç£è¦ãã¼ã¿åºåãªã©ã®ãªãã·ã§ã³è£½åãå梱ãéç¨ã®å¹çåãå®ç¾å¯è½ã§ãã
â»ãªãã·ã§ã³æ©è½è©³ç´°ã¯ãã¡ããã覧ãã ãããï¼ãµã¤ãã¼ãã©ã¹ã社ãµã¤ãã¸é·ç§»ãã¾ãï¼
3ï¼æé·10å¹´ã®é«å質ãªãµãã¼ãä½å¶
åä¸ãã¼ã¸ã§ã³ã§æè¡ãµãã¼ã7å¹´ã延é·ãµãã¼ã3å¹´ã®åããã¦10å¹´ã®å»¶é·ãµãã¼ãããæä¾ãå®å¿ãã¦MIRACLE ZBXãã使ãé ãã¾ãã
Zabbixã»MIRACLE ZBXã®ä¸å
·åã«å¯¾ãã¦ã½ã¼ã¹ã³ã¼ã解æãè¡ããã客æ§ã¸ç¶æ³ãç確ã«ãåçãã¾ããZabbixã®æªä¿®æ£ã®ä¸å
·åã«å¯¾ããç¬èªã®ä¿®æ£ãããé©ç¨ããé害ã®å
容ã«ããnet-snmpãcurlãªã©é¢é£ããã±ã¼ã¸ã®ã½ã¼ã¹ã³ã¼ããå®æ½ãããã¨ã§ãé«å質ãªãµãã¼ãããæä¾ãã¾ãã
ã¾ãã¯ãæ°è»½ã«ãååããã ããï¼
â MIRACLE ZBX Virtual Appliance / MIRACLE ZBX Virtual Appliance Suite
製åç¹é·
ä»®æ³ã¢ãã©ã¤ã¢ã³ã¹åã®ãã¼ã·ãã¯ãªçµ±åã·ã¹ãã ç£è¦ã¢ã¸ã¥ã¼ã«ã§ããä»®æ³ç°å¢ã§ã²ã¹ã OS ã¨ãã¦åä½ãããMIRACLE LINUXãããZabbixãããã¼ã¹ã«å®å¿ãã¦ä¼æ¥ã§ãå©ç¨ã§ããããã«æ©è½æ¡å¼µãè¡ã£ãçµ±åã·ã¹ãã ç£è¦ã½ããã¦ã§ã¢ãMIRACLE ZBXãã®ä»ããã¼ã¿ãã¼ã¹ãWebãµã¼ãã¼ãä¸ä½åã«ãã¦æé©åããç¶æ
ã®ä»®æ³ã¢ãã©ã¤ã¢ã³ã¹è£½åã¨ãã¦æä¾ããã¾ãã
MIRACLE ZBX Virtual Appliance Suite ã«ã¯ããã«ãèå¼±æ§ç®¡çãã¼ã«ãMIRACLE Vul Hammerãã¨ãè¤æ°å°ã® Zabbix/MIRACLE ZBX ãµã¼ãã®æ
å ±ãã¾ã¨ãã¦é²è¦§ã§ãããçµ±åãã¥ã¼ã¢ããå梱ã大è¦æ¨¡ç°å¢ã§ã®éç¨ãæ¯æ´ãã¾ãã
â MIRACLE Vul Hammerï¼èå¼±æ§ç®¡çã½ãªã¥ã¼ã·ã§ã³ï¼
製åç¹é·
èå¼±æ§ç®¡çã½ãªã¥ã¼ã·ã§ã³ãMIRACLE Vul Hammerãã¯MIRACLE ZBXãå§ãã¨ããéç¨ç®¡çãã¼ã«ã¨é£æºãèå¼±æ§ãã¿ã¤ã ãªã¼ã«ããã·ã¥ãã¼ãã§å¯è¦åã
OSSã®ã¹ãã£ã³ã«å¼·ã¿ãæã¡ãæ¥ã
æ´æ°ãããèå¼±æ§æ
å ±ãèªåã§åéãããã¨ã§ãã·ã¹ãã ã«å¯¾ããå½±é¿ãèªåã§ç¹å®ãã¾ãã
ã·ã¹ãã ç£è¦ãã¼ã«ã¨é£æºãããã¨ã§ã¿ã¤ã ãªã¼ãªèå¼±æ§ã®çºè¦ãå¯è½ã«ããã·ã¹ãã 管çè
ã®è¿
éãªå¯¾å¿ãæ¯æ´ãã¾ãã
主ãªæ©è½
ã»Zabbix ã¨é£æºãã CVE 管ç
ææ°CVE DBã使ç¨ããåãµã¼ãã®ãããé©ç¨ç¶æ³ã¨è¨å®ããªã·ã¼éåãZabbixã§ä¸å
管çãããã¨ã§ãã¿ã¤ã ãªã¼ãªèå¼±æ§å¯¾å¿ãå®ç¾ã
ã»è³ç£ç®¡ç
CVE 管çãè¡ãä¸ã§å¿
è¦ãªè³ç£æ
å ±ã®ç®¡çæ©è½ãæè¼ããOS/ããã±ã¼ã¸æ
å ±ãèªåæ¤åº/管çãè³ç£ãã¨ã«èå¼±æ§ã®ç¶æ³ãå¯è¦åã
ã»é©ç¨/対ç管ç (ã¿ã¹ã¯ç®¡ç)
ç·æ¥æ§ã®é«ãèå¼±æ§ã®å¯¾å¿è¨ç»/é©å¿ç¶æ³ã容æã«ç®¡çå¯è½ã
â»MIRACLE Vul Hammerã®ä¾¡æ ¼ãªã©è©³ç´°ã¯ãååããã ãã
â ãªãã·ã§ã³è£½å
製åç¹é·
MIRACLE ZBXãµã¼ãã«ç»é²ããã¦ããç£è¦è¨å®æ
å ±ãããã¯ã¢ãããä¸ä¸ã®é害ããã®å¾©æ§ããµãã¼ããããè¨å®ããã¯ã¢ãããªãã·ã§ã³ãããZabbixãã¼ã¿ãã¼ã¹å
ã«ä¿åããã¦ããå±¥æ´ãã¼ã¿(ãã¹ããª/ããªã¬ã¼/ãã¬ã³ã/ã¤ãã³ã) ãCSVãã¡ã¤ã«ã«åºåããã¼ã¿éè¨ããµãã¼ããããç£è¦ãã¼ã¿åºåãªãã·ã§ã³ããªã©ãã©ã¤ã³ããããéç¨ã®å¹çåãæ¯æ´ãã¾ãã
â»ãªãã·ã§ã³æ©è½ã®è©³ç´°ã«ã¤ãã¦ã¯ãã¡ãã®ãã¼ã¸ãã覧ãã ãããï¼ãµã¤ãã¼ãã©ã¹ãæ ªå¼ä¼ç¤¾ãµã¤ãã¸é·ç§»ãã¾ãï¼
é·å¹´ã®ITéç¨ã§å¹ã£ããã¦ãã¦ãé§ä½¿ãã¦ã客æ§ããµãã¼ã
éç¨ç®¡çã®ã¨ãã¹ãã¼ãã¨ãã¦ã30年以ä¸ç©ã¿ä¸ãã¦ãããã¦ãã¦ã§ãã客æ§ããµãã¼ããã¾ãã
æ¤è¨¼ããæ§ç¯ã»å°å ¥ãã¡ã³ããã³ã¹ã¾ã§ã¯ã³ã¹ãããã§æä¾
å°éç¥èã¨éçºè¨èªã«ç²¾éããã¨ã³ã¸ãã¢ããã客æ§ç°å¢ã«æé©ãªãã¼ã«ã®å°å ¥ããç¶æ管çã¾ã§æä¾ãã¾ãã