The equality test (==) in JavaScript is notoriously confusing. Based on a table by Mr. Naohiko Mori, I added two more rows and columns for an empty array ("[]") and an array with zero in it ("[0]"). And just for comparison, here is the table with results from the more strict test (===). Note that for arrays, left hand side and right hand side are different instances. If they are the same instance,
INPUT OUTPUT FORWARD ãªã©ã¯ããåãã®ã¨ããiptablesã®ãã§ã¼ã³åã¨ãã¦æå³ã®ããåèªã§ããã ãRH-Firewall-1-INPUTãã¯ãé©å½ã«ã¤ããã©ãã«åã§ãã ãã®æååã¯ã©ããªãã®ã«å¤æ´ãã¦ã大ä¸å¤«ã§ãã ãã¨ãã° ãMY-FIREWALL-SETTINGSã ãªããã§ã大ä¸å¤«ã§ãã ã§ã¯ãªãã©ãã«åãªãããå®ç¾©ãã¦ãããã¨ããã¨ã ä¸è¬çã«ã¯INPUTãã§ã¼ã³ã¨FORWARDãã§ã¼ã³ã«ã¯ã è¨å®ã¨ãã¦å ¨ãåããã®ãå®ç¾©ãã¾ãã ãã¨ãã°ãHTTPã許å¯ããå ´åã¯ã -A INPUT -m state --state NEW -m tcp -p tcp --dport 80 -j ACCEPT -A FORWARD -m state --state NEW -m tcp -p tcp --dport 80 -j ACCEPT ã¨ããããã«ï¼ã¤åè¨è¿°ãã
GUI ãã¼ã«ã§ iptabales ã®åºæ¬è¨å®ãè¡ã æ¬é¡ã® iptables ã®è¨å®ãè¡ãã¾ããX-Window åãä»ãã®ãã¼ã«ã使ã£ã¦ããã¼ã¹ã¨ãªããã£ã«ã¿ãªã³ã°è¨å®ãè¡ãã¾ãã以ä¸ãè¨å®ã®ãã¤ã³ãã§ãã iptables ã®è¨å®æ¹æ³ . iptabals ã®è¨å®ã«ã¯å¹¾ã¤ãã®æ¹æ³ãããã¾ãã ã³ãã³ãã«ããã«ã¼ã«ã追å ããã±ã¼ã¹ iptablesã³ãã³ãã«ããããã¼ãã«ããã§ã¼ã³ããã©ã¡ã¼ã¿ã¼ã追å ãã¦ããã¾ããç¹ã«è¿½å ããã«ã¼ã«ã®é çªãæèããå¿ è¦ãããã¾ãããã®é½åº¦ kernel ã«ãã¼ãããã¡ã¢ãªå ã§ã®å®è¡ã¨ãªãã¾ãã ã¡ã¢ãå ã®ã«ã¼ã«ãä¿åã»å¾©å ããããã®ã³ãã³ããç¨æããã¦ãã¾ããåèµ·åå¾ãæå¹ã«ãããå ´åãã¡ã¢ãªå ã«ããæ å ±ãå¤é¨ãã¡ã¤ã«ã«æ¸ãåºãå¿ è¦ãããã¾ãã /etc/sysconfig/iptables ã«åºåãããiptablesèµ·åæã«ãã®ãã¡ã¤ã«ã«è¨è¼ãã
é常ã®TCPæ¥ç¶ãå·¦å´ã®ã¦ã¼ã¶ããµã¼ãã«æ¥ç¶ããå ´åã3ã¤ã®æ®µéãããªãæé ãè¸ã¾ããã SYN Flood æ»æãæ»æè 㯠SYN ãã±ããã大éã«éãããµã¼ãã®è¿çãç¡è¦ããããµã¼ãã¯è¿çãæ¥ããããããã¯ä¸å®æéãçµéããã¾ã§è¨æ¶é åãä¿æãã¤ã¥ããªããã°ãªããããã®éé常ã®ã¦ã¼ã¶ã®æ¥ç¶ã¯åããããªãã SYN floodæ»æ (ã·ã³ã»ãã©ãããããã[1][2][3]) ã¨ã¯ãã¤ã³ã¿ã¼ãããã«ãããDoSæ»æï¼ãµã¼ãã¹æå¦æ»æï¼ã®ã²ã¨ã¤ãã¤ã³ã¿ã¼ãããä¸ã«å ¬éããã¦ããã¦ã§ããµã¼ããªã©ã®è² è·ãå¢å¤§ããã対象ã¨ãªããµã¤ããä¸æçã«å©ç¨ä¸è½ã«é¥ããã¦ãã¾ãå¹æãããã ä¸è¬ã«ãã¤ã³ã¿ã¼ãããä¸ã® TCPæ¥ç¶ã¯æ¬¡ã®ãããªæé ã§è¡ããã (3ã¦ã§ã¤ã»ãã³ãã·ã§ã¤ã¯): ã¯ã©ã¤ã¢ã³ããããµã¼ãã«å¯¾ã㦠TCP SYN ãã±ãããéä¿¡ããã SYN ãã±ãããåãã¨ã£ããµã¼ãã¯ããã®ã¯ã©ã¤ã¢ã³
ã¢ã¯ãã£ãFTPã¨ããã·ãFTP [ãµã¼ãã®å®é¨å®¤ åºç¤] ä½æ : 2002/10/12 "ãµã¼ãã®å®é¨å®¤"ã®æ¤ç´¢ FTPã«ã¯ããã¼ã¿è»¢éã«ä½¿ç¨ãããã¼ãã¨æ¥ç¶æ¹æ³ã®éãã«ãã£ã¦ãã¢ã¯ãã£ãFTPã¨ããã·ãFTPã«åé¡ãããã¨ãã§ããã ã¢ã¯ãã£ãFTP æããããæ¹æ³ã§ãWindowsã®FTPã³ãã³ããªã©ãããã«ãããã FTPã®å¶å¾¡ï¼ã³ãã³ãã¨ã¬ã¹ãã³ã¹ï¼ã«21çªãã¼ãã使ç¨ããFTPã®ãã¼ã¿è»¢éï¼lsã³ãã³ãã®çµæããã¡ã¤ã«ã®ã¢ãããã¼ãã»ãã¦ã³ãã¼ãï¼ã«20çªãã¼ãã使ç¨ããã
Gitã®æ¬æ ¼å°å ¥ã®åã«ããã¼ã¸ã®ã³ã³ããªã¯ã解決ã«ä½¿ç¨ãããã¼ã¸ãã¼ã«ã«ã¤ãã¦èª¿ã¹ã¦ã¿ãã®ã§ã¡ã¢ã ã³ã³ããªã¯ãããéã«ãããã¹ãã¨ãã£ã¿ã§ç´æ¥ä¿®æ£ããã®ã¯é常ã«é¢åãããã§mergetoolã使ãã¨ãã¼ã¸ä½æ¥ãããªã楽ã«ã§ãã¾ãã ãã ãããã©ã«ãã®mergetoolã ã¨ä½¿ãã¥ãããGoogleã§è²ã 調ã¹ã¦ã¿ãã¨p4mergeããªã¹ã¹ã¡ãããªã®ã§è©¦ãã¦ã¿ã¾ããã åèãµã¤ã http://d.hatena.ne.jp/clover-leaf/20110126/1296058882 http://d.hatena.ne.jp/nakamura001/20110321/1300699836 ã¤ã³ã¹ãã¼ã«æ¹æ³ ãã¡ãããThe Perforce Visual Client (P4V)ããã¦ã³ãã¼ããã¾ããOSã«åããã¦ãã¦ã³ãã¼ãããã ãã¦ã³ãã¼ããããã¡ã¤ã«ãã¤ã³ã¹ãã¼ã«ãp4mergeã®
æï¼Jack Wallenï¼Special to TechRepublicï¼Â ç¿»è¨³æ ¡æ£ï¼æä¸é ç« ã»éå´è£å 2009-03-03 08:00 iptablesããã¹ã¿ã¼ããã«ã¯æéãããããã®ã®ãã»ãã¥ãªãã£ã«é¢ããåºæ¬çãªãã¼ãºãæºãããã¨ã®ã§ããããã¤ãã®ã«ã¼ã«ãç¥ã£ã¦ããã ãã§ãããªãã®Linuxã·ã¹ãã ã®ã»ãã¥ãªãã£ãåä¸ããããã¨ãã§ãããæ¬è¨äºã§ã¯ããã®æå§ãã¨ãªãéè¦ãªã«ã¼ã«ã解説ããã iptablesã¯ãLinuxãã·ã³ãã»ãã¥ã¢ã«ããããã®å¼·åãªãã¼ã«ã ãã¨ã¯è¨ããã®ã®ããã®æ©è½ã®å¤ãã«ã¯å§åããã¦ãã¾ããã¡ã§ãããããã¦ãã³ãã³ãã®æ§é ããã£ããã¨ç解ãããã·ã³ã®ã©ã®é¨åãã©ã®ããã«ã»ãã¥ã¢ã«ãã¹ãããææ¡ããå¾ã§ãã£ã¦ããããããããã¨ã«å¤ããã¯ãªããããããiptablesã®è¯ãã¨ããã¯ã極ãã¦åºããã®é©ç¨ç¯å²ã«ããããã®ãããiptablesã®ã«ã¼ã«ã®ããã¤ãã
iptablesã®è¨å® [ãµã¼ãã®å®é¨å®¤ Redhat/Fedora] ä½æ : 2005/01/27 ä¿®æ£ : 2011/05/05 "ãµã¼ãã®å®é¨å®¤"ã®æ¤ç´¢ iptables ãã±ãããã£ã«ã¿ãªã³ã°ãNA(P)Tãè¨å®ããããã®ããã±ã¼ã¸ã ç°å¢ã«ãã£ã¦ã¯ã«ã¼ãã«ã®åæ§ç¯ãå¿ è¦ã«ãªãããFedora Core 3ã§ã¯ä¸è¦ã åèã«ãªãææ¸ netfilter.orgã®ãã¥ã¼ããªã¢ã«ã ãã¨ãmanpageã ã¤ã³ã¹ãã¼ã« FTPãµã¤ãã¾ãã¯FedoraCore3 CD Disk1ããRPMããã±ã¼ã¸ãããã£ã¦ãã¦ãã¤ã³ã¹ãã¼ã«ã # rpm -Uvh iptables-1.2.11-3.1.i386.rpm yumã使ã£ã¦ãããã # yum install iptables chkconfigã¦ã¼ãã£ãªãã£ã§ããµã¼ãèµ·åæã«ãµã¼ãã¹ãéå§ããããè¨å®ããã # chkconfig i
ãµã¼ãã¼ã¯ã¹CEOããã°ã大ç³èµäººä¹å©ã®ãé²ãã¤ãããããªè©±ãã¯ã ãã¯ã¦ãªããã°ãã¸ç§»è¡è´ãã¾ããã æ§ããã°è¨äºã®URLãããè¶ãã®çæ§ã¯èªåã§æ°ããã°ã¸è»¢éããã¾ãã 転éãããªãå ´åãæãå ¥ãã¾ããä¸è¨URLãã移åããé¡ãè´ãã¾ãã æ°URLï¼https://ceo.serverworks.co.jp/ å¼ãç¶ãã大ç³èµäººä¹å©ã®ãé²ãã¤ãããããªè©±ããå®ãããé¡ããããã¾ãã
sshã§ã®ã¢ã¯ã»ã¹ããIPããã¦ã¼ã¶ãã¨ã«å¶éããããäºãã§ãã¾ãã ããã§ã¯ãpam ã¨å¼ã°ããèªè¨¼ã®ä»çµã¿ãå©ç¨ãã¾ãã Last Update : 2006å¹´09æ05æ¥ ssh ããã¦ã¼ã¶ãIPã§ã¢ã¯ã»ã¹å¶é æé åè¨å®ãã¡ã¤ã«ã®ç·¨é å¿ è¦ã§ããã°ãsshd ã®åèµ·å è¨å®ãã¡ã¤ã« /etc/security/access.conf /etc/pam.d/sshd /etc/ssh/sshd_config 1. åè¨å®ãã¡ã¤ã«ã®ç·¨é ä¸ã§ç´¹ä»ããè¨å®ãã¡ã¤ã«ã§ãããããã©ã«ãã§sshã«pamãæå¹ã«ããè¨å®ãããã¦ããå ´åãããã¾ãã ãã®å ´åã¯ã1-1ã1-2ã®è¨å®ãã¡ã¤ã«ãä¿åããç¬éããããã®å¤æ´ãæå¹ã¨ãªãã¾ãã ãããã¯ã¼ã¯ããã®å ´åã¯ãè¿ãã®ç«¯æ«ã使ã£ã¦ãã¹ããããªã©ãã¦æ°ãã¤ãã¾ãããã 1-1. /etc/security/access.confãã®ç·¨é ãã®ãã¡
以åã®æ稿ãsshd_configï¼PAMã®è¨å®ã®ç¶ãã®ãããªãã¿ã§ã¯ãããã sshã§ã®ã¢ã¯ã»ã¹å¶éã¯ãsshd_configã«ç´æ¥è¨è¿°ããä»ãPAMã®è¨å®ã§ãå¯è½ãï¼/etc/hosts.allowã§ãããæå³å¯è½ãªã¯ãã ããhosts.allowã¨ããã ããã£ã¦ãã¹ãåä½ã®å¶éãåºæ¬ãªã®ã§ãããã§ã¯å²æï¼ sshd_configã«è¨è¿°ããæ¹æ³ã¯ãå¤æ´ã®é½åº¦sshdãåèµ·åããªãã¦ã¯ãããªããããã§ä¸ãä¸å¤±æããã¨sshãã°ã¤ã³èªä½ãã§ããªããªã£ã¦ãã¾ããããã¢ã¯ã»ã¹å¶å¾¡ã®ããã«ã¡ããã¡ããä¸èº«ãå¤ãããããªéç¨ã¯æ¥µåé¿ãããã¨ããã§ãããã¨ããããããããããã¾ããã ã¡ãªã¿ã«ãã°ã¤ã³ä¸ã®ã¿ã¼ããã«ã«ã¯å½±é¿ã¯ãªããã§ããçªç¶ãããã¯ã¼ã¯ã®ä¸å ·åã§åæããããããããªãããããä¸ã®ä¸ä½ãèµ·ãããåãããªãã®ã ã PAMã®è¨å®ã§ããã®ã§ããã°ã以ä¸ã®ããã«ãããï¼sshd_configã«
SSHãµã¼ãã¼ã¯ãTelnetåæ§ã«ã¯ã©ã¤ã¢ã³ããããµã¼ãã¼ã¸ãªã¢ã¼ãæ¥ç¶ãã¦ãé éå°ãããµã¼ãã¼ãæä½ãããã¨ãã§ããããã«ããããã®ãµã¼ãã¼ã ãã ããTelnetãæå·åããªãã§ãã®ã¾ã¾ãã¼ã¿ãéåä¿¡ããã®ã«å¯¾ãã¦ãSSHã§ã¯éä¿¡å 容ãæå·åãããããéä¿¡å 容ãçã¿è¦ããã¦ãåé¡ãªãã ããã§ã¯ãå é¨ããã ãã§ã¯ãªãå¤é¨ãããå®å ¨ã«ãµã¼ãã¼ã«ãªã¢ã¼ãæ¥ç¶ã§ããããã«ãããããéµæ¹å¼ã«ãããã°ã¤ã³ã®ã¿ã許å¯ãããã¨ã«ãããã¯ã©ãã«ã¼ã«ãããã¹ã¯ã¼ãã¢ã¿ãã¯ã§ä¸æ£ã«SSHãµã¼ãã¼ã¸ãã°ã¤ã³ããã¦ãã¾ããªãããã«ããã ã¾ããSSHãµã¼ãã¼ã¸ã®æ¥ç¶æ¹å¼ã«ã¯SSH1ã¨SSH2ãããã(SSH1ã¨SSH2ã®éãã«ã¤ãã¦)ãããå®å ¨ãªSSH2ã«ããæ¥ç¶ã®ã¿è¨±å¯ãããã¨ã¨ããã ããã«ãSSHãã°ã¤ã³ããã¦ã¼ã¶ã¼ãèªèº«ã®ãã¼ã ãã£ã¬ã¯ããªä»¥å¤ãåç §ã§ããªãããã«ããã ãªããSSHãµã¼ãã¼ãå¤é¨ã«
[ã»ãã¥ãªãã£] iptablesã§FTPãéãã«ã¯20çªãã¼ãã¨21çªãã¼ãããããã ãã§ã¯passive modeã®FTPã¯ãã¾ãéãã¦ããã¾ãããip_conntrack_ftpã¨ip_nat_ftpäºã¤ã®ã¢ã¼ã¸ã¥ã¼ã«ããã¼ãããå¿ è¦ãããã¾ããï¼ip_nat_ftpã¯å¿ é ã§ã¯ãªãããã»ã»ã»ï¼ [root@www etc]# lsmod Module Size Used by Not tainted ip_nat_ftp 3920 0 (unused) iptable_nat 22808 1 [ip_nat_ftp] ip_conntrack_ftp 5392 1 [ip_nat_ftp] ip_conntrack 29800 2 [ip_nat_ftp iptable_nat ip_conntrack_ftp] iptable_filter 2412 0 (autoclean) (
Linuxã§ä½ããã¡ã¤ã¢ã¦ã©ã¼ã«ï¼»ãã±ãããã£ã«ã¿ãªã³ã°è¨å®ç·¨ï¼½ï¼ã¼ãããå§ããLinuxã»ãã¥ãªãã£ï¼5ï¼ï¼1/2 ãã¼ã¸ï¼ ãããããã±ãããã£ã«ã¿ãªã³ã°ã®è¨å®ãå§ããããã£ããã¨ä¸è¦ãªãã±ããããããã¯ã§ããã°ããã¡ã¤ã¢ã¦ã©ã¼ã«ã®å å´ã®å®å ¨åº¦ã¯ããåä¸ããããã±ããã®æ§è³ªãiptablesã®åä½ãããã§ãã¹ã¿ã¼ãã¦ã»ããã ååã¯NATã®è¨å®æ¹æ³ã説æãã¾ãããããã§è¦ããä¸ã®çµè·¯ãã§ãããã¨ã«ãªãã¾ããä»åã¯ãã¡ã¤ã¢ã¦ã©ã¼ã«ã®ä»ä¸ãã¨ãã¦ããã±ãããã£ã«ã¿ãªã³ã°ã®è¨å®ãè¡ãã¾ãã ãã±ãããã£ã«ã¿ãªã³ã°ã®ä»çµã¿ ãã±ãããã£ã«ã¿ãªã³ã°ã®è¨å®ã¨ã¯ãããªããã®ããç°¡åã«èª¬æããã¨ãã©ã®ãããªãã±ãããééããããããããã¯å°éã許å¯ï¼æå¦ãããããå®ç¾©ãããã¨ã§ããiptablesã§ã¯IPã¢ãã¬ã¹ããããã³ã«ããã¼ãããã©ã°ã¡ã³ããªã©ã§å¶éãããããã¨ãå¯è½ã§ããããã«ãéä¿¡å ãéä¿¡å
ãµã¼ãã¹çµäºã®ãç¥ãã ãã¤ãYahoo! JAPANã®ãµã¼ãã¹ããå©ç¨ããã ãèª ã«ãããã¨ããããã¾ãã ã客æ§ãã¢ã¯ã»ã¹ããããµã¼ãã¹ã¯æ¬æ¥ã¾ã§ã«ãµã¼ãã¹ãçµäºãããã¾ããã ä»å¾ã¨ãYahoo! JAPANã®ãµã¼ãã¹ããæ顧ãã ããã¾ãããããããããé¡ããããã¾ãã
404 - ï¾ï¾ï½²ï½»ï½µï½½ï¾ï¾ï½¼ï£²ï½»î»ï½¿ï¾ï½¼ï½¡ï½£ ï¾æ®ï½ªï½²é°ï¾ï½µï¾ï¾ï¾ï¾ï½´ï½¿ï¾ï¾ï¾ï¾ï¾ï½±ï½»ï¾ï½¾ï½³ï£±ï½£ï½¬ï¾ï¾ï½¸ï¿½ï½¸ï¾ï¾ï¨¤ï¾ï½»îï¾ï¾ï¾ï¾ï½±ï½²ï½»ï½¿ï¾ï¾ï¾ï½¡ï½£
ãµã¼ãã¹çµäºã®ãç¥ãã ãã¤ãYahoo! JAPANã®ãµã¼ãã¹ããå©ç¨ããã ãèª ã«ãããã¨ããããã¾ãã ã客æ§ãã¢ã¯ã»ã¹ããããµã¼ãã¹ã¯æ¬æ¥ã¾ã§ã«ãµã¼ãã¹ãçµäºãããã¾ããã ä»å¾ã¨ãYahoo! JAPANã®ãµã¼ãã¹ããæ顧ãã ããã¾ãããããããããé¡ããããã¾ãã
ãªãªã¼ã¹ãé害æ å ±ãªã©ã®ãµã¼ãã¹ã®ãç¥ãã
ææ°ã®äººæ°ã¨ã³ããªã¼ã®é ä¿¡
j次ã®ããã¯ãã¼ã¯
kåã®ããã¯ãã¼ã¯
lãã¨ã§èªã
eã³ã¡ã³ãä¸è¦§ãéã
oãã¼ã¸ãéã
{{#tags}}- {{label}}
{{/tags}}