Deleted articles cannot be recovered. Draft of this article would be also deleted. Are you sure you want to delete this article?

ã·ã§ã«ã¹ã¯ãªããã®ä¸ã§ãã¹ãã¼ã¹åºåããããã¯ã¿ãåºåãã®ã¬ã³ã¼ããæ±ããã¨ãããããã¨æãã¾ãã ãã¨ãã°ãååã®ã¨ã³ããªãAWS CLIã¨jqã使ã£ã¦ãAWSã®ELBããªã¥ã¼ã ãã¢ã¿ããããã¦ããEC2ã¤ã³ã¹ã¿ã³ã¹åãåºåããã¯ã³ã©ã¤ãã¼ãæ¸ãã - åå å·¥å ´æ¥èªãã®ã¹ã¯ãªããã®åºåã¯ä»¥ä¸ã®ããã«ãªãã¾ãã i-ec56a9f5 vol-07d00601 servername i-ec56a9f5 vol-8f550991 servername ãã®ãããªã¬ã³ã¼ãã®ç¹å®ã®åãåãåºãã¦ãå¦çããéã«ã©ãããã®ãå¹ççããã¨ããã®ããã®ã¨ã³ããªã®ãé¡ã§ãã é常ã«å¤ã話é¡ãªã®ã§ãæããã·ã§ã«ã¹ã¯ãªãããæ¸ãã¦ãã人ã«ã¯èªæãªè©±ã§ã¯ããã¾ãããæè¿ãã·ã§ã«ã®æ¨æºæ©è½ã®è©±ãèãæ©ä¼ããªãã失ããã¤ã¤ããæè¡ã«ãªã£ã¦ãã¦ããæ°ããã¦ããã®ã§ãæ¹ãã¦ç¢ºèªã¨ãããã¨ã§ã ä¾ã¨ãã¦æããã¬ã³ã¼ããã
ç±³Appleã¯29æ¥(ç¾å°æé)ãUNIXç³»OSã§ä½¿ç¨ããã¦ããã·ã§ã«Bashã®èå¼±æ§ãä¿®æ£ããããããOS X bash Update 1.0ãããªãªã¼ã¹ããããµãã¼ããµã¤ãã®ãã¦ã³ãã¼ããã¼ã¸ã§ãOS X Mavericksç¨ãOS X Mountain Lionç¨ãOS X Lionç¨ããã¦ã³ãã¼ãå¯è½ã«ãªã£ã¦ããã ãã®èå¼±æ§ã¯Bashãã°ã¨å¼ã°ãã¦ããããã®èå¼±æ§ãçã£ãæ»æè ã«ãã¼ã¿ãçã¿åãããããã·ã¹ãã ã®å¶å¾¡ã奪ãããæãããããæ·±å»ãã¤å½±é¿ãåã¶ç¯å²ãåºãèå¼±æ§ã¨ãã¦ãã»ãã¥ãªãã£ãã³ãã¼ãOSãã³ãã¼ã注æãå¼ã³ããã¦ããã OS XãBashãå«ãããMacã¦ã¼ã¶ã¼ã®éã«æ¸å¿µãåºãã£ãããOS Xã¯ããã©ã«ãã§é éããã®æ»æããã¦ã¼ã¶ã¼ãä¿è·ããããã«è¨å®ããã¦ãããAppleã¯ãã¦ã¼ã¶ã¼ãé«åº¦ãªUNIXãµã¼ãã¹ãè¨å®ãã¦ããªãéããã»ã¨ãã©ã®ã¦ã¼ã¶ã¼ã¯å®å ¨ãã¨ãã
2014/09/26ãã³ã¼ã¹ï¼å ç¥ãã£ã¦ã ãå ç¥ãã£ã¦ããè¨äºã¯ãããã¨ã¼ã¸ã§ã³ãæ§ããã°[netagent-blog.jp]ã«æ²è¼ããã¦ããè¨äºã§ãããç¾å¨ãããã¨ã¼ã¸ã§ã³ãã«å¨ç±ãã¦ããªãã©ã¤ã¿ã¼ã®è¨äºãå«ã¿ã¾ãã bashã«ãããèå¼±æ§ãShellshockãã«ã¤ã㦠LinuxãMac OS Xãªã©ã®UNIXç³»OSã§åºã使ç¨ããã¦ããbashã«è¦ã¤ãã£ãèå¼±æ§(Shellshockã¨å¼ã°ãã¦ãã¾ã)ãå æ¥ãã話é¡ã«ãªã£ã¦ãã¾ãã å¼ç¤¾ã§ããã®bashã®èå¼±æ§ã«ã¤ãã¦èª¿æ»ãè¡ãã¾ããã â æ¦è¦ ç°å¢å¤æ°ã«ç¹å®ã®æååãè¨å®ããã ãã§ãã®ç°å¢å¤æ°å ã®æååãã·ã§ã«ãé¢æ°ã¨ãã¦å®è¡ãã¦ãã¾ãã¾ãã ã·ã§ã«ãéãã¦ã³ãã³ãçãå®è¡ããå¹ åºãç°å¢ã§å½±é¿ãããã¾ãããç¹ã«é¡èã«å½±é¿ãåããã®ã¯CGIçã®Webã¢ããªã±ã¼ã·ã§ã³ç°å¢ã§ãã CGIãã¯ããã¨ããWebã¢ããªã±ã¼ã·ã§ã³ã§ã¯Webãã©
bashã«èå¼±æ§ã確èªãããã¨ãã¦é¨ãã«ãªã£ã¦ãã¾ããããã§ã¯CVE-2014-6271ã«é¢ããæ å ±ãã¾ã¨ãã¾ãã #è¨è¼å 容ã«ã¤ãã¦ã誤ã£ã¦ããã追è¨ããæ¹ãããçæ å ±ããããã¾ããã@piyokangoã¾ã§ãé£çµ¡ãé¡ããã¾ãã èå¼±æ§æ å ± èå¼±æ§ã®æ称 ShellShock Bashbug CVEçªå· Bashå¨ãã§çºè¡ããã¦ããCVEã¯6ã¤ããã®å 詳細ãä¸æãªã®ã2ã¤ã(CVE-2014-6277,CVE-2014-6278) CVE çºè¦è æ³å®è å¨ ç¹è¨ CVE-2014-6271 Stephane Chazelasæ° ä»»æã®ã³ã¼ãå®è¡ ShellShockã®çºç«¯ã¨ãªã£ããã°ã CVE-2014-7169 Tavis Ormandyæ° ä»»æã®ã³ã¼ãå®è¡ CVE-2014-6271ä¿®æ£æ¼ãã«ããèå¼±æ§ CVE-2014-7186 Redhat DoS ã¡ã¢ãªç ´å£(Out-of-Bo
ç°å¢å¤æ°ã«ä»è¾¼ã¾ããã³ã¼ããå®è¡ãã¦ãã¾ãBASHã®èå¼±æ§ã CGIã¹ã¯ãªããã«å½±é¿ãä¸ããã試ãã¦ã¿ããçµæã¯æ²æ¨ãªæãã« Tweet 2014å¹´9æ25æ¥ å¶ç°å¤§è²´ ãã®è¨äºã¯2014å¹´ã®ãã®ã§ã æãã Bash specially-crafted environment variables code injection attack ãªããã®ã§é¨ãã«ãªã£ã¦ããã®ã§ããã£ããæå ã® Apacheã§è©¦ãã¦ã¿ã¾ããã /hoge.cgiã¨ããURIã§å®è¡ãããããã«ãä¸è¡ã®ã¡ãã»ã¼ã¸ãåºåããã ãã® CGIã¹ã¯ãªãããè¨ç½®ãã¾ãããã£ããããªãã®å ¥åãã¯ã©ã¤ã¢ã³ãå´ããåãä»ãã¦ããªãããå±éºã®ããããããªãè¦ãã¾ãã #!/bin/sh echo "Content-type: text/plain" echo echo "Hi! I'm an ordinary CGI script w
Browse by time: December 2018 (1) December 2016 (1) December 2015 (1) January 2015 (1) September 2014 (2) July 2014 (2) April 2014 (1) February 2014 (1) January 2014 (3) December 2013 (2) September 2013 (3) June 2013 (1) May 2013 (1) April 2013 (1) March 2013 (2) February 2013 (5) ãã£ã¨æ´æ°ããæ°ã«ãªã£ãã ããã 0. ç£æ¥ã§èª¬æ 1. çè«ç·¨ 2. æ»æç·¨ 3. ããã 4. çµè« 0. ç£æ¥ã§èª¬æ bashã ã¢ã㧠å°çãã¤ã㤠1. çè«ç·¨ bashã®é¢æ°æ©è½ã¯ãç°å¢å¤æ°ã®ä¸ã§ã使ããä»æ§ã«ãªã£ã¦ãã¾ã
èå¼±æ§ã¯å¤ãã®ä¸è¬çãªè¨å®ã§ãããã¯ã¼ã¯ãä»ãã¦æªç¨ã§ããã¨ãããç¹ã«bashãã·ã¹ãã ã·ã§ã«ã¨ãã¦è¨å®ããã¦ããå ´åã¯å±éºã大ããã Linuxãªã©ã®UNIXç³»OSã§æ¨æºçã«ä½¿ããã¦ããã·ã§ã«ãbashãã«æ¥µãã¦é大ãªèå¼±æ§ãè¦ã¤ããã9æ24æ¥ã«ä¿®æ£ããããå ¬éããããæ»æè ãbashã«ã³ãã³ããéã£ã¦ä»»æã®ã³ã¼ããå®è¡ã§ããå¯è½æ§ãææããã¦ãããç±³ã»ãã¥ãªãã£æ©é¢ã®SANS Internet Storm Centerãªã©ã¯ãããé©ç¨ãæ¥ãããå¼ã³æãã¦ããã é¢ä¿å社ã®ã¢ããã¤ã¶ãªã¼ã«ããã¨ãbashã§ç¹å®ã®ç´°å·¥ãæ½ããç°å¢å¤æ°ãå¦çããæ¹æ³ã«èå¼±æ§ãåå¨ãããæªç¨ãããå ´åãæ»æè ãç°å¢å¶éããããã¦ã·ã§ã«ã³ãã³ããå®è¡ã§ãã¦ãã¾ãæãããããç¹å®ã®ãµã¼ãã¹ãã¢ããªã±ã¼ã·ã§ã³ã§ã¯ããªã¢ã¼ãã®æ»æè ãèªè¨¼ãçµããã¨ãªãç°å¢å¤æ°ãæä¾ãããã¨ãå¯è½ã«ãªãã ãã®èå¼±æ§ã¯ãå¤ãã®ä¸è¬ç
bashã®ç°å¢è¨å®ãã¡ã¤ã«ã«ã¤ã㦠æ®æ®µãã¹ãæå®ãããã¨ç¡ãã³ãã³ããå©ç¨ã§ããã®ã¯ããã°ã¤ã³æã«ã³ãã³ãã¸ã®ãã¹ãè¨è¿°ãããè¨å®ãã¡ã¤ã«ãèªã¿è¾¼ãã§ããããã§ãã 以ä¸ã®é åºã§è¨å®ãã¡ã¤ã«ãèªã¿è¾¼ãã§ãã¾ãã ãã°ã¤ã³æ 1.ã/etc/profileãã®èªã¿è¾¼ã¿ ãã®ãã¡ã¤ã«ã¯ãã°ã¤ã³æã«èªã¿è¾¼ãå ¨ã¦ã¼ã¶ã¼å ±éã®è¨å®ã§ããããã§åºæ¬çãªã³ãã³ãã«ãã¹ãéãã¦ãã¾ãã 2.ã.bash_profileãã®èªã¿è¾¼ã¿ ç¶ãã¦ã¦ã¼ã¶ã¼ã®homeãã£ã¬ã¯ããªã«ããã.bash_profileããèªã¿è¾¼ã¿ã¾ãã ããããªãå ´åã¯ã.bash_loginãã ããããªãå ´åã¯ã.profileãã ã¨ããé åºã§ã¦ã¼ã¶ã¼åå¥ã®è¨å®ãèªã¿è¾¼ã¿ã¾ãã ãªãã3ã¤ãç¨æããã¦ãã¾ããããã£ã¹ããªãã¥ã¼ã·ã§ã³ã«ãã£ã¦åªå é ä½ãæå¹ãªãã¡ã¤ã«ãéãããã使ãåããå¿ è¦ãããã¾ããCentOSã®å ´åã¯ã.bas
Tweet ãã£ãã®ã¨ã³ããªã§ãforæ使ã£ãããã¤ãã«æ¸¡ããããªæ¸ãæ¹ãã¡ãã£ããã©ã æ©é @chonan ãããã ããã³ã ãã»ã»ã»(ï¼ï¾Ðï¾) $ date --date="`date +%d` days ago" +%Y%m01 20110201 $ date --date="`date +%d` days ago" +%Y%m%d 20110228 $ date --date="`date +%d` days ago" +%Y/%m/01 2011/02/01 $ date --date="`date +%d` days ago" +%Y/%m/%d 2011/02/28 ãããã·ã³ãã«ã«ã§ãã¾ãã(ï¼ï¾Ðï¾) ï¾ï½¯ï¾ï½ºï¾ï¾ï¾ï½¹ ã¼ãããã£ã³ã°ã®å½±é¿ã極åæé¤ããããªã $ date --date="`date +%e` days ago" +%Y/%m/%d 2011/02
å æ¥æ¸ããã·ã§ã«ã¹ã¯ãªããã§ããã»ã¹ãç£è¦ãèªåå®è¡ï¼èªåkillã®ã·ã§ã«ã¹ã¯ãªããã¯ããã®å¾çµå±ä½¿ãããããã«ç°¡æçãªã³ã¼ãã§æ¸ã¾ãã¾ããã ã¯ã¨ãªã¼ãµã¼ãã®ãã§ãã¯ã¹ã¯ãªãã scheckp.sh #!/usr/bin/sh while true do isAliveSev=`ps -ef | grep "/server" | grep -v grep | wc -l` if [ $isAliveSev = 1 ]; then echo "o:server process" else echo "x:server process" /ret/sev/server & fi sleep 300 # ã¢ãã¿ã¼éé(ç§åä½) done ã¨ã³ã¸ã³ãµã¼ãã®ãã§ãã¯ã¹ã¯ãªãã echeckp.sh #!/usr/bin/sh while true do isAliveEng=`ps -ef | g
å æããããããåå.comã®VPSãµã¼ãã¹ã§åæã«å種ãµã¼ãã¹ãè½ã¡ã¦ããäºãæ°åãã£ãã ããã§ãããã»ã¹ã®åå¨ã確èªãããã»ã¹ãæ»ãã§ãããèµ·åããã·ã§ã«ãä½æããã â»ã¨ã©ã¼å¦çããã¦ããªãã®ã§å®ç¨æ§ã¯ä½ãã§ãã ##2010/03/13追å amavisdã®ããã»ã¹ã確èªããããã«ããã amavisdããã¦ã³ãã¦ããã¨éåä¿¡ã¡ã¼ã«ã®ã¦ã£ã«ã¹ãã§ãã¯ãã§ãããããã§ã¡ã¼ã«ãæ¢ã¾ã£ã¦ãã¾ãã ï¼ãã°ï¼ connect to 127.0.0.1[127.0.0.1]:10024: Connection refused $ vi process_chk.sh #!/bin/sh message="" #amavisd amavisd=`ps ax | grep '^.* amavisd (master)$' 2>/dev/null` if [ -z "${amavisd}"
å ¬éä¸ã®Linuxã§ããã»ã¹ãç£è¦ãããå ´åããããã»ã¹ãçãã¦ãããããæ»ãã§ããããããã§ãã¯ããå¿ è¦ãããã ä¾ãã°cronã使ã£ã¦ãã·ã§ã«ãå®è¡ã§ããã¹ã¯ãªããã使ã£ã¦å®æçã«ãã§ãã¯ããæ¹æ³ããããã©ãç´æ¥ã·ã§ã«ã使ã£ã¦ããã»ã¹ã®ç£è¦ãè¡ãã ããã»ã¹ãã¦ã³æã¯ãããã»ã¹ã®åèµ·åãå®è¡ããã¦ãä¸ãä¸ã®å ´åã¯ãµã¼ãã¼ç®¡çè ã¸ã¡ã¼ã«é信・・・・ã¨ãã£ãå ·åã ã¨ãããããéçºæ©ä¸ã§ä½¿ç¨ãã¦ããshellã ããã»ã¹ã®ç£è¦ã«ã¯æã£ã¦æ¥ãã ãã©ãæå³çã«ããã»ã¹ãæ¢ãããå ´åã¯ãã®shellãkillããå¿ è¦ãããã $ vim #!/usr/bin/sh while true do #ããã§ã¯ftpdã®ããã»ã¹ç£è¦ isAlive=`ps -ef | grep " ftpd " | \ grep -v grep | wc -l` if [ $isAlive = 1 ]; then ec
追è¨ï¼ããã»ã¹ã®ç£è¦ï¼èªå復æ§(ç°¡æç) ä»ããæ¤ç´¢ã¨ã³ã¸ã³ã®ãããã°ãè¡ã£ã¦ãã¾ãããäºæ ã«ããçæéã§ããã¯ãã¼ãºããªç°å¢ã§éç¨ããããã¨ã«ãªãã¾ãããæ§æã¯å¤§ããåãã¦ã¨ã³ã¸ã³ã¢ã¸ã¥ã¼ã«ãµã¼ããã¯ã¨ãªã¼ã¢ã¸ã¥ã¼ã«ãµã¼ãã®äºã¤ã®ãµã¼ããããªã£ã¦ãã¾ãã ãããã°ã¯ã¾ã éä¸ãªã®ã§ãéç¨ä¸ã«ã¯ã¨ãªã¼ãµã¼ãorã¨ã³ã¸ã³ãµã¼ãã®ã©ã¡ããããããã¯ä¸¡æ¹ãè½ã¡ãå¯è½æ§ãããã¾ããè½ã¡ãå ´åã¯ãæåã§èµ·åããªãããã¨ã«ãªã£ã¦ãã¾ããããã£ãããªã®ã§èªååããããã¨ãèãã¾ãããæåã¯cronãã¼ã¢ã³ãç¨ãããã¨æãã¾ããããããã»ã¹ã®ç£è¦(dead or alive)ã®ä»æ¹ãåããã(調ã¹ããã)ãã·ã§ã«ã¹ã¯ãªãããç¨ãããã¨ã«ãã¾ãã(ã¨ã¯è¨ããã®ã®ã·ã§ã«ã¹ã¯ãªããã使ãã®ãåãã¦ã§ãã)ã ã¯ã¨ãªã¼ãµã¼ã&ã¨ã³ã¸ã³ãµã¼ãã®ããã»ã¹ãä¸å®ã®ééã§ç£è¦ããä¸æ¹ãä½ããã®åå ã§è½ã¡ãéã¯ãåã³äºã¤ã®ã
ç®æ¬¡ å½ãµã¤ãã«ã¤ã㦠bash ã·ã§ã«ã¹ã¯ãªããå ¥é -ã·ã§ã«ã¹ã¯ãªããã®ããã¯- ã³ãã³ã Tips ã·ã§ã«ã¹ã¯ãªãã Tips å¤æ°ã使ç¨ãã é åã使ç¨ãã å ¥åã¨åºå if æ㨠test ã³ãã³ã for æã®ä½¿ç¨æ¹æ³ while æã®ä½¿ç¨æ¹æ³ case æã®ä½¿ç¨æ¹æ³ é¢æ°ã®ä½¿ç¨æ¹æ³ å¼æ°ãå¦çãã çµäºã¹ãã¼ã¿ã¹ ã·ã°ãã«ã¨ trap ã³ãã³ã ãã£ã«ã¿ã使ç¨ããæååæä½ 1 ãã£ã«ã¿ã使ç¨ããæååæä½ 2 æ¥ä»ãåå¾ãã æåã³ã¼ãã¨æ¹è¡ã³ã¼ã ã·ã§ã«ã¹ã¯ãªããã®ãããã° AWK ãªãã¡ã¬ã³ã¹ (Deprecated) ã·ã§ã«ã¹ã¯ãªãã ã©ã¤ãã©ãª ãether.shã ãç¥ãã Bluesky ãå§ãã¾ãã @sunone.me å¤æ´å±¥æ´ 2023.10.07 ãã¼ã¸å ãªã³ã¯ãä¿®æ£ããã 2021.02.01 ãã®ãµã¤ãã«ããã 1 ãã¼ã¸è¿½å ããããã¨æã£ã¦ãããã
ãªãªã¼ã¹ãé害æ å ±ãªã©ã®ãµã¼ãã¹ã®ãç¥ãã
ææ°ã®äººæ°ã¨ã³ããªã¼ã®é ä¿¡
å¦çãå®è¡ä¸ã§ã
j次ã®ããã¯ãã¼ã¯
kåã®ããã¯ãã¼ã¯
lãã¨ã§èªã
eã³ã¡ã³ãä¸è¦§ãéã
oãã¼ã¸ãéã
{{#tags}}- {{label}}
{{/tags}}