æ¬è¨äºã¯ä¸è¨URLã«ç§»åãã¾ããã
ï¼ç§å¾ã«èªåçã«ç§»åãã¾ããhttps://needlework.jp/article/needlework-firewall-policytest
ãã¡ã¤ã¢ã¦ã©ã¼ã«ã®ããªã·ã¼ãã¹ããèªååãã製åãNEEDLEWORKãã®è²©å£²éå§ããï¼å¹´ãçµéããå æ¥ã¡ã¸ã£ã¼ãã¼ã¸ã§ã³ã¢ããããããã¾ããã
Â
ãã製åã®ãã¨ãç¥ã£ã¦ãããããã«ãä½åãã«åãã¦NEEDLEWORKã®ç´¹ä»è¨äºãæ¸ãã¦ããããã¨æãã¾ãã
Â
ç®æ¬¡
- NEEDLEWORKã¨ã¯ï¼
- ä»ã¾ã§ã®ãã¹ã
- NEEDLEWORKã§ã®ãã¹ã
- æå¾ã«
- è³æãã¦ã³ãã¼ã
"); // ãªãã¤ã¬ã¯ã ããsetTimeout("redirect()", 5000);ã// 5 sec ããfunction redirect(){ ãã ãlocation.href = url; ãã} ã ã// canonical ã®æ¸ãæã ããvar link = document.getElementsByTagName("link")[0]; ããlink.href = url; -->
NEEDLEWORKã¨ã¯ï¼
ã¾ããNEEDLEWORKã¯ä½ãããããã®è£½åãã説æãã¾ãã
Â
NEEDLEWORKã¯ããã¡ã¤ã¢ã¦ã©ã¼ã«ã®ã»ãã¥ãªãã£ããªã·ã¼ãèªåã§ãã¹ããã製åã§ãã
Â
ãã¡ã¤ã¢ã¦ã©ã¼ã«ã®SIæ¡ä»¶çã§æ§ç¯ãè¡ãéã«ãã¦ã¼ã¶ã®éä¿¡è¦ä»¶ã«åãããã»ãã¥ãªãã£ããªã·ã¼ãè¨å®ãã¾ãã
ã¦ã¼ã¶æ¬çªç°å¢ã¸å°å ¥ããåã«ãæ©å¨ã»ã·ã¹ãã å ¨ä½ã§è¨å®ã«åé¡ãªããã¨ããã¹ããã¾ãã
ãã®éã«ãè¨å®ããã»ãã¥ãªãã£ããªã·ã¼ããã¦ã¼ã¶ã®è¦ä»¶éãã®è¨å®ã«ãªã£ã¦ãããã¨ã®ãã¹ããè¡ãã¾ãã
Â
NEEDLEWORKãå©ç¨ãããã¨ã§ãä¸è¨ã»ãã¥ãªãã£ããªã·ã¼ã®ãã¹ããèªåã§è¡ããã¨ãã§ãã¾ãã
Â
ä»ã¾ã§ã®ãã¹ã
ä»ã¾ã§ã¯ãè¨å®ããã¦ããã»ãã¥ãªãã£ããªã·ã¼ã«ã¤ãã¦ãï¼ã¤ï¼ã¤äººã®æã§ãã¹ããè¡ã£ã¦ãã¾ããã
Â
ä»ã¾ã§ã®ãã¹ãã¤ã¡ã¼ã¸ãã以ä¸ã®ãã¡ã¤ã¢ã¦ã©ã¼ã«ããã¹ãããå ´åãä¾ã«èª¬æãã¾ãã
Â
ä¸è¨ãã¡ã¤ã¢ã¦ã©ã¼ã«ã¯ãã¤ã³ã¿ã¼ãããã¨ã®å¢çã«è¨ç½®ããã¦ããä¸è¬çãªæ§æã®ãã¡ã¤ã¢ã¦ã©ã¼ã«ã§ãã
ã¤ã³ã¿ã¼ãããå´ã®ã»ã°ã¡ã³ãã社å ã»ã°ã¡ã³ãããµã¼ãã»ã°ã¡ã³ãã®ï¼ã¤ã®ã»ã°ã¡ã³ãã«æå±ãã¦ãã¾ãã
Â
ä»ã¾ã§ã®ãã¹ãæ§æ
人ã®æã§ï¼ã¤ï¼ã¤ãã¹ããè¡ãå ´åããã¹ãç¨ã®ç°å¢ãæ§ç¯ããå¿ è¦ãããã¾ããã
Â
社å ãããæ¤è¨¼ç¨æ©æï¼ã«ã¼ã¿ãL3/L2ã¹ã¤ããã端æ«ï¼ãããéããè«ççã«æ¬çªã¨åããããã¯ã¼ã¯æ§æãç¨æãã¦ãã¾ããã
Â
ä»ã¾ã§ã®ãã¹ãæ¹æ³
次ã«ã対象ã®ã»ãã¥ãªãã£ããªã·ã¼ã«åããã¦ãã¹ã端æ«ãè¨å®ãããã¹ããè¡ãã¾ãã
192.168.10.1ãâã10.1.1.1 : TCP 80 | 許å¯
ä¸è¨ã»ãã¥ãªãã£ããªã·ã¼ããã¹ãããå ´å以ä¸ã®æé ã§è¡ãã¾ãã
â ã¯ã©ã¤ã¢ã³ãã¨ãã¦ãã¹ã端æ«Aãç¨æãããµã¼ãã¨ãã¦ãã¹ã端æ«Bãç¨æãã¾ã
â¡ããããã®ç«¯æ«ã§IPã¢ãã¬ã¹ãè¨å®ãããµã¼ãå´ã§ãã¼ãéæ¾ç¨ã®ã¢ããªã±ã¼ã·ã§ã³ï¼ApacheãIperfãnmapãªã©ï¼ãèµ·åããTCP 80çªãã¼ãã§å¾ ã¡åãã¾ã
â¢ãã¹ã端æ«Aãããã¹ã端æ«Bå®ã«éä¿¡ï¼TCP 80ï¼ãçºçããã¾ã
â£éä¿¡ãéã£ããã¨ï¼ã³ãã¯ã·ã§ã³ã確ç«ãããï¼ã確èªããéä¿¡ãçµäºããã¾ã
â¤ãã¹ããè¡ã£ãã¨ããã³ã¹ï¼è¨¼è·¡ï¼ããããããã®ç«¯æ«ã§åå¾ãã¾ã
â¥ãã¡ã¤ã¢ã¦ã©ã¼ã«ã®ãã°ã証跡ã¨ãã¦åå¾ãã¾ã
Â
ä¸è¨æé ãã»ãã¥ãªãã£ããªã·ã¼ã®æ°ã ãè¡ãã¾ãã
Â
NEEDLEWORKã§ã®ãã¹ã
NEEDLEWORKã§ãã¹ããè¡ãå ´åã®æ§æããã¹ãã®æµãã説æãã¾ãã
NEEDLEWORKã§ã®ãã¹ãæ§æ
NEEDLEWORKã§åæ§ã®ãã¹ããè¡ãå ´åããã¹ãç¨ç°å¢ã®ç¨æã¯ä¸è¦ã§ãã
ãã¡ã¤ã¢ã¦ã©ã¼ã«ã¨NEEDLEWORKãæ¥ç¶ããã ãã§ãã
Â
NEEDLEWORKå é¨ã§ä»®æ³ãããã¯ã¼ã¯ãçæãããããã«ã¼ã¿çã®ã»ã°ã¡ã³ããåå²ããæ©å¨ã¯ä¸è¦ã«ãªãã¾ãã
Â
NEEDLEWORKã§ã®ãã¹ãæ¹æ³
NEEDLEWORKã§ãã¹ããè¡ãå ´åã以ä¸ã®æé ã§è¡ãã¾ãã
Â
â ãã¹ãã·ããªãªï¼CSVï¼ãä½æ
â¡ç®¡çã³ã³ã½ã¼ã«ã§ä½æããã·ããªãªãã¤ã³ãã¼ã
â¢ãã¹ãå®è¡
â£ã¨ããã³ã¹ãã¨ã¯ã¹ãã¼ã
Â
â»è©³ç´°ã¯è£½åWEBãã¼ã¸ããã¢åç»ããåç §ãã ããã
Â
ãã¹ããå®è¡ããã¨ãã·ããªãªã«è¨è¼ã®IPã¢ãã¬ã¹ãçæãéä¿¡ãè¡ãã¾ãã
ä»åã®ä¾ã§ã¯ãéä¿¡å ã¨ãã¦ã192.168.10.1ããçæããå®å ã¨ãã¦ã10.1.1.1ããçæããTCP 80ãã¼ãå®ã«éä¿¡ãè¡ãã¾ãã
Â
Â
æå¾ã«
ä»åã¯NEEDLEWORKã®è£½åæ¦è¦ã¨ãä»ã¾ã§ã®ãã¹ãæ¹æ³ã¨ã®æ¯è¼ãç°¡åã«ãç´¹ä»ãã¾ããã
次åããã¯ã詳細ãªæ©è½ã»æ´»ç¨æ¹æ³ãªã©ããç´¹ä»ãã¦ããããã¨æãã¾ãã
Â
è³æè«æ±ããä¸æãªç¹ãããã¾ãããããã¡ããããåãåãä¸ããã
è©ä¾¡æ©ã®ã貸åºãè¡ã£ã¦ãã¾ãã®ã§ããå¸æã®å ´åã¯ãã¡ããããé£çµ¡ä¸ããã
Â
Â