æ¬è¨äºã¯
ãããã¯ã¼ã¯ã¦ã£ã¼ã¯
12æ¥ç®ã®è¨äºã§ãã
ð»
11æ¥ç®
â¶â¶ æ¬è¨äº â¶â¶
13æ¥ç®
ð

ããã«ã¡ã¯ã横ç°ã§ãã æ¬ããã°ã§ã¯ããããã¯ã¼ã¯ã¿ã°ãæ´»ç¨ãã¦Compute Engineã¸ã®ã¢ã¯ã»ã¹å¶å¾¡ãè¡ãæ¹æ³ã«ã¤ãã¦ã話ãã¾ãã æ³å®ããèªè 層ã¯ä»¥ä¸ã®éãã§ãã
- Google Cloudã®ãããã¯ã¼ã¯ã«èå³ããã人
- ãããã¯ã¼ã¯ã¿ã°ã使ãå§ãã人
1. ã¯ããã«
使ç¨ãããµã¼ãã¹ã¯ Virtual Private Cloudï¼ä»¥ä¸ãVPCï¼ ã¨ Compute Engineï¼ä»¥ä¸ãVMã¤ã³ã¹ã¿ã³ã¹ï¼ ã§ãã VMã¤ã³ã¹ã¿ã³ã¹ã¸ã®ã¢ã¯ã»ã¹å¶å¾¡ã«ã¯ããããã¯ã¼ã¯ã¿ã°å¶å¾¡æ¹å¼ãå©ç¨ãã¾ãããã®æ¹å¼ãå©ç¨ãããã¨ã§ãç¹å®ã®ã¿ã°ãæã¤ VM ã¤ã³ã¹ã¿ã³ã¹ç¾¤ã«å¯¾ãã¦ããã¡ã¤ã¢ã¦ã©ã¼ã«ã«ã¼ã«ï¼ä»¥ä¸ãFWã«ã¼ã«ï¼ãé©ç¨ãããã¨ãå¯è½ã«ãªãã¾ãã VMã¤ã³ã¹ã¿ã³ã¹ãåç IP ãæã£ã¦ããå ´åã忢ã»èµ·åã«ãã£ã¦ IP ã¢ãã¬ã¹ã夿´ããããã¨ãããã¾ãããããããããã¯ã¼ã¯ã¿ã°ã«ãã£ã¦ã¢ã¯ã»ã¹å¶å¾¡ãè¡ããã¨ã§ãFWã«ã¼ã«ã®å¤æ´ãä¸è¦ã¨ãªãããããã¯ã¼ã¯è¨å®ã®å¹çåãæå¾ ã§ãã¾ãã ãããã¯ã¼ã¯ã¿ã°ã¨ã¯ãVMã¤ã³ã¹ã¿ã³ã¹ã«ã©ãã«ãä»ä¸ããä»çµã¿ã§ãããFWã«ã¼ã«ãã«ã¼ãã£ã³ã°ã®é©ç¨å¯¾è±¡ãå¶å¾¡ããããã«ä½¿ç¨ããã¾ãã
æ§æå³ã¯ä»¥ä¸ã®éãã§ãã VPCã使ããã¡ã¤ã¢ã¦ã©ã¼ã«ã«ã¼ã« (AWSã§ããã»ãã¥ãªãã£ã°ã«ã¼ãã«ç¸å½)ã®è¨å®æã«ãããã¯ã¼ã¯ã¿ã°ãè¨å®ãã¾ãã FWã«ã¼ã«ã¨VMã¤ã³ã¹ã¿ã³ã¹ã«åãã¿ã°ãè¨å®ããVMã¤ã³ã¹ã¿ã³ã¹ã®å½¹å²ãã°ã«ã¼ãã«åºã¥ããã¢ã¯ã»ã¹å¶å¾¡ãå®ç¾ãã¾ãã

2 NWã¿ã°ã®è¨å®æé
æ©éãè¨å®ãã¦ããã¾ãã
2.1 FWã«ã¼ã«ã«ãããã¯ã¼ã¯ã¿ã°ãè¨å®
FWã«ã¼ã«ã¨VMã¤ã³ã¹ã¿ã³ã¹ã®é¢é£ä»ããè¡ãããã«ãFWã«ã¼ã«ã«ãããã¯ã¼ã¯ã¿ã°ãè¨å®ãã¾ãã VPCãããã¯ã¼ã¯ã®ã³ã³ã½ã¼ã«ãããµã¤ãã¡ãã¥ã¼ã®ããã¡ã¤ã¢ã¦ã©ã¼ã«ããã¯ãªãã¯ãã¾ãã

該å½ã®FWã«ã¼ã«ã鏿ãã詳細ç»é¢ãããç·¨éããã¯ãªãã¯ãã¾ãã

ãã¿ã¼ã²ãããã¨ãã¿ã¼ã²ããã¿ã°ããä¸å³ã®ããã«è¨å®ãããä¿åããã¯ãªãã¯ãã¾ãã

ããã§FWã«ã¼ã«ã¸ã®ãããã¯ã¼ã¯ã¿ã°ã®è¨å®ãå®äºãã¾ããã ä»åã¯FWã«ã¼ã«ã¨ãããã¯ã¼ã¯ã¿ã°ã«åãååã使ç¨ãã¦ãã¾ãããä»»æã®åãããããååã§åé¡ããã¾ããã
2.2 VMã¤ã³ã¹ã¿ã³ã¹ã«ãããã¯ã¼ã¯ã¿ã°ãè¨å®
次ã«ãVMã¤ã³ã¹ã¿ã³ã¹ã¸ãããã¯ã¼ã¯ã¿ã°ãè¨å®ãã¾ãã Compute Engineã®ã³ã³ã½ã¼ã«ãã該å½ã®VMã¤ã³ã¹ã¿ã³ã¹ã鏿ãããç·¨éããã¯ãªãã¯ãã¾ãã

ããããã¯ã¼ã¯ ã¿ã°ãã«å ã»ã©ä½æããã¿ã°ãå ¥åãããä¿åããã¯ãªãã¯ãã¾ãã

ããã§VMã¤ã³ã¹ã¿ã³ã¹ã¸ã®ã¿ã°è¨å®ãå®äºã§ãã
2.3 SSHæ¥ç¶ç¢ºèªæ¹æ³
ä»åã¯ã³ã³ã½ã¼ã«ç»é¢ããSSHæ¥ç¶ãè¡ãåä½ç¢ºèªããã¾ãã VMã¤ã³ã¹ã¿ã³ã¹ã®ã³ã³ã½ã¼ã«ç»é¢ãããSSHããã¯ãªãã¯ãã¾ãã

ãã°ã¤ã³æã«æ¿èªç»é¢ãåºã¦ããã®ã§ãAuthorizeããã¯ãªãã¯ãã¾ãã ä¸å³ã®ç»é¢ã表示ãããã°SSHæ¥ç¶ã¯å®äºã§ãã

3 ã¢ã¯ã»ã¹å¶å¾¡ç¢ºèª
ãããã¯ã¼ã¯ã¿ã°ã®æç¡ã«ããã¢ã¯ã»ã¹å¶å¾¡ã®éãã表ã«ã¾ã¨ãã¾ããã
| FWã«ã¼ã«ã®ã¿ã° | VMã®ã¿ã° | ãããã¯ã¼ã¯ã¿ã°ã«ããé¢é£ä»ã | æ¥ç¶å¯å¦ | è£è¶³èª¬æ | |
|---|---|---|---|---|---|
| 1 | ãã | ãã | ãã(åãã¿ã°ã§é¢é£ä»ã) | ã | åããããã¯ã¼ã¯ã¿ã°ãè¨å®ããã¦ãããããFWã«ã¼ã«ã¨VMã¤ã³ã¹ã¿ã³ã¹ãé¢é£ä»ããããæ¥ç¶å¯è½ã |
| 2 | ãã | ãªã | ãªã (é¢é£ä»ãä¸å¯) | à | VMã¤ã³ã¹ã¿ã³ã¹å´ã«ã¿ã°ããªããããFWã«ã¼ã«ã¨é¢é£ä»ããã§ãããæ¥ç¶ä¸å¯ã |
| 3 | ãªã | ãã | ãªã (FWã«ã¼ã«ãªã) | ã | FWã«ã¼ã«ã«ã¿ã°ãç¡ããããFWã«ã¼ã«ããã®ã¾ã¾é©ç¨ãããæ¥ç¶å¯è½ã |
| 4 | ãªã | ãªã | ãªã (FWã«ã¼ã«ãªã) | ã | ã¿ã°è¨å®ããªãã¦ããFWã«ã¼ã«ããã®ã¾ã¾é©ç¨ãããæ¥ç¶å¯è½ã |
表ã«ã¤ãã¦å°ã説æãã¾ãã FWã«ã¼ã«ã«ã¿ã°ãä»ãã¦ããªã3ã4ã®å ´åãå°ããããããããããã¾ããã æ§æå³ã«æ»ã£ã¦ã¿ãã¨ãéä¿¡ã®çµè·¯ã¯FWã«ã¼ã«ãéã£ã¦VMã¤ã³ã¹ã¿ã³ã¹ã«å°éãã¦ãã¾ãã ãã®å ´åãFWã«ã¼ã«(ã¿ã°ãªã)ãééããå¾ã«VMã¤ã³ã¹ã¿ã³ã¹(ã¿ã°ãã)ã«å°éãã¦ãããããFWã«ã¼ã«ããã®ã¾ã¾é©ç¨ãã㦠(FWã«ã¼ã«ã«ã¿ã°ããªãç¶æ )ãVMã¤ã³ã¹ã¿ã³ã¹ã«å°éãã¾ãã ãã®ããFWã«ã¼ã«ã«ã¿ã°ãä»ãã¦ããªãå ´åãFWã«ã¼ã«ã®æ¡ä»¶(IPã¬ã³ã¸ããã¼ã)ãä¸è´ãã¦ããã°æ¥ç¶ãå¯è½ã«ãªãã¾ãã
4 ã¾ã¨ã
æ¬ããã°ã§ã¯ãããã¯ã¼ã¯ã¿ã°ã使ç¨ãã¦VMã¤ã³ã¹ã¿ã³ã¹ã¸ã®ã¢ã¯ã»ã¹å¶å¾¡ãè¡ãæ¹æ³ããç´¹ä»ãã¾ããã ãã¤ã³ããã¾ã¨ããã¨ä»¥ä¸ã«ãªãã¾ãã
- ãããã¯ã¼ã¯ã¿ã°ã使ããã¨ã§ããç´°ããªã¢ã¯ã»ã¹å¶å¾¡ãå¯è½
- FWã«ã¼ã«ã«ãããã¯ã¼ã¯ã¿ã°ãè¨å®ããã¦ããªãå ´åã¯é常ã®FWã«ã¼ã«ãé©ç¨ããã
æå¾ã¾ã§ãèªã¿ããã ããããã¨ããããã¾ããã