{"id":1725,"date":"2025-12-06T11:55:32","date_gmt":"2025-12-06T02:55:32","guid":{"rendered":"https:\/\/mylifeisbeautiful555.net\/?page_id=1725"},"modified":"2025-12-06T11:55:32","modified_gmt":"2025-12-06T02:55:32","slug":"%e3%82%b9%e3%83%86%e3%83%bc%e3%83%88%e3%83%95%e3%83%ab%e3%82%a4%e3%83%b3%e3%82%b9%e3%83%9a%e3%82%af%e3%82%b7%e3%83%a7%e3%83%b3","status":"publish","type":"page","link":"https:\/\/mylifeisbeautiful555.net\/?page_id=1725","title":{"rendered":"\u30b9\u30c6\u30fc\u30c8\u30d5\u30eb\u30a4\u30f3\u30b9\u30da\u30af\u30b7\u30e7\u30f3"},"content":{"rendered":"\n<p>Firewall \u3092\u7406\u89e3\u3059\u308b\u4e0a\u3067\u6700\u91cd\u8981\u3068\u3044\u3063\u3066\u3082\u3044\u3044\u6a5f\u80fd\u3002<br><strong>\u901a\u4fe1\u306e\u201c\u72b6\u614b\uff08State\uff09\u201d\u3092\u76e3\u8996\u3057\u3066\u5224\u65ad\u3059\u308b Firewall \u306e\u4ed5\u7d44\u307f<\/strong><br>\u3064\u307e\u308a FW \u304c <strong>\u30b3\u30cd\u30af\u30b7\u30e7\u30f3\u60c5\u5831\u3092\u5b66\u7fd2\u3057\u3001\u623b\u308a\u901a\u4fe1\u3092\u81ea\u52d5\u3067\u8a31\u53ef\u3059\u308b<\/strong>\u4ed5\u7d44\u307f\u3002<\/p>\n\n\n\n<p><strong><mark style=\"background-color:rgba(0, 0, 0, 0);color:#cf2e2e\" class=\"has-inline-color\">\u884c\u304d\u3068\u5e30\u308a\u306e\u30d1\u30b1\u30c3\u30c8\u304c\u540c\u3058\u7d4c\u8def\u3092\u901a\u308b\u3053\u3068\u3092\u524d\u63d0\u306b\u901a\u4fe1\u3092\u7ba1\u7406\u3057\u3066\u304a\u308a\u3001<br>\u300c\u884c\u304d\u300d\u306e\u30d1\u30b1\u30c3\u30c8\u304c\u6b63\u3057\u304f\u51e6\u7406\u3055\u308c\u306a\u3044\u3068\u3001\u300c\u5e30\u308a\u300d\u306e\u30d1\u30b1\u30c3\u30c8\u304c\u6765\u3066\u3082\u3001<br>\u305d\u306e\u901a\u4fe1\u304c\u4f55\u306b\u5bfe\u5fdc\u3059\u308b\u3082\u306e\u304b\u5224\u65ad\u3067\u304d\u305a\u3001\u30d6\u30ed\u30c3\u30af\u3059\u308b\u5834\u5408\u304c\u3042\u308a\u307e\u3059\u3002<\/mark><\/strong><\/p>\n\n\n\n<h1 class=\"wp-block-heading\">1. \u5177\u4f53\u7684\u306b\u4f55\u3092\u3057\u3066\u3044\u308b\u306e\u304b\uff1f\uff08\u4e00\u756a\u91cd\u8981\uff09<\/h1>\n\n\n\n<p>FireWall \u306f <em>\u300c\u63a5\u7d9a\u30c6\u30fc\u30d6\u30eb\u300d<\/em> \u3092\u6301\u3063\u3066\u3044\u307e\u3059\u3002<\/p>\n\n\n\n<p>\u4f8b\u3048\u3070\u5185\u90e8 \u2192 \u5916\u90e8\u3078 TCP\/80 \u306b\u30a2\u30af\u30bb\u30b9\u3059\u308b\u3068\uff1a<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">\u3010\u5185\u90e8 \u2192 \u5916\u90e8\u3011<\/h3>\n\n\n\n<pre class=\"wp-block-code\"><code>TCP SYN \u2192 \u8a31\u53ef\n<\/code><\/pre>\n\n\n\n<p>\u3053\u306e\u77ac\u9593\u306b FW \u306f\u4ee5\u4e0b\u3092\u8a18\u9332\uff08\u5b66\u7fd2\uff09\u3057\u307e\u3059\uff1a<\/p>\n\n\n\n<figure class=\"wp-block-table\"><table class=\"has-fixed-layout\"><thead><tr><th>\u9805\u76ee<\/th><th>\u4f8b<\/th><\/tr><\/thead><tbody><tr><td>\u9001\u4fe1\u5143IP<\/td><td>192.168.1.10<\/td><\/tr><tr><td>\u9001\u4fe1\u5143\u30dd\u30fc\u30c8<\/td><td>49152\uff08\u30e9\u30f3\u30c0\u30e0\uff09<\/td><\/tr><tr><td>\u5b9b\u5148IP<\/td><td>142.250.196.14\uff08Google\uff09<\/td><\/tr><tr><td>\u5b9b\u5148\u30dd\u30fc\u30c8<\/td><td>80<\/td><\/tr><tr><td>\u72b6\u614b<\/td><td>SYN sent<\/td><\/tr><\/tbody><\/table><\/figure>\n\n\n\n<p>\u3053\u308c\u3092 \u63a5\u7d9a\u30c6\u30fc\u30d6\u30eb\u306b\u4fdd\u5b58\u3002<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">\u3010\u5916\u90e8 \u2192 \u5185\u90e8\u3011\u623b\u308a\u306e\u30d1\u30b1\u30c3\u30c8<\/h3>\n\n\n\n<p>\u623b\u308a\u306f SYN\/ACK\uff08\u5916\u2192\u5185\uff09\u3067\u3059\u304c\u3001ACL \u306b\u306a\u304f\u3066\u3082\uff1a<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">&#x2714; FW \u304c\u300c\u3053\u308c\u306f\u3055\u3063\u304d\u306e\u901a\u4fe1\u306e\u623b\u308a\u3060\u300d\u3068\u5224\u65ad\u3057\u3066\u901a\u4fe1\u3092\u8a31\u53ef\uff01<\/h3>\n\n\n\n<h1 class=\"wp-block-heading\">2. \u30b9\u30c6\u30fc\u30c8\u30d5\u30eb\u304c\u7121\u3044\u5834\u5408\u3069\u3046\u306a\u308b\u304b\uff1f<\/h1>\n\n\n\n<p><strong>\u30eb\u30fc\u30bf\u30fc\u306e ACL \u3060\u3051\u306e\u4e16\u754c<\/strong> \u3060\u3068\u3001<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>OUT \u306e\u901a\u4fe1\u8a31\u53ef<\/li>\n\n\n\n<li>\u305d\u306e\u623b\u308a\uff08IN\uff09\u3082\u5225\u9014\u8a31\u53ef\u3092\u66f8\u304b\u306a\u3051\u308c\u3070\u901a\u3089\u306a\u3044<\/li>\n<\/ul>\n\n\n\n<p>\u3064\u307e\u308a <strong>ACL \u304c 2\u500d\u5fc5\u8981<\/strong>\u3002<\/p>\n\n\n\n<pre class=\"wp-block-code\"><code>permit tcp 192.168.1.10 any \u2192 any eq 80\uff08\u5916\u306b\u51fa\u308b\uff09\npermit tcp any eq 80 \u2192 192.168.1.10 any\uff08\u623b\u308a\uff09<\/code><\/pre>\n\n\n\n<h1 class=\"wp-block-heading\">3. ASA \u306e\u30b9\u30c6\u30fc\u30c8\u30d5\u30eb\u5b9f\u969b\u306e\u30c6\u30fc\u30d6\u30eb<\/h1>\n\n\n\n<pre class=\"wp-block-code\"><code>TCP outside 203.0.113.1:443 inside 192.168.1.10:49152, idle 0:00:10, bytes 1523, flags UIO<\/code><\/pre>\n\n\n\n<p>FW \u306f\u4ee5\u4e0b\u3092\u899a\u3048\u3066\u3044\u308b\uff1a<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>inside\u2192outside \u306e\u30bb\u30c3\u30b7\u30e7\u30f3<\/li>\n\n\n\n<li>\u4f7f\u7528\u30dd\u30fc\u30c8<\/li>\n\n\n\n<li>idle \u6642\u9593<\/li>\n\n\n\n<li>\u901a\u904e\u30d0\u30a4\u30c8\u6570<\/li>\n\n\n\n<li>\u72b6\u614b\uff08flags\uff09<\/li>\n<\/ul>\n\n\n\n<p>\u3053\u308c\u306b\u3088\u308a\u3001\u623b\u308a\u306f ACL \u304c\u306a\u304f\u3066\u3082\u901a\u308b\u3002<\/p>\n\n\n\n<h1 class=\"wp-block-heading\">4. \u30b9\u30c6\u30fc\u30c8\u30d5\u30eb\u304c\u5b9f\u73fe\u3059\u308b\u5f37\u529b\u306a\u30e1\u30ea\u30c3\u30c8<\/h1>\n\n\n\n<h2 class=\"wp-block-heading\"><strong>(1) ACL \u304c\u30b7\u30f3\u30d7\u30eb\u3067\u6e08\u3080<\/strong><\/h2>\n\n\n\n<p>LAN \u2192 WAN \u306e\u623b\u308a\u3092 ACL \u306b\u66f8\u304b\u306a\u304f\u3066\u3088\u3044\u3002<br>\u2192 \u904b\u7528\u304c\u697d\u3067\u30df\u30b9\u3082\u6e1b\u308b\u3002<\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><strong>(2) \u4e0d\u6b63\u306a\u623b\u308a\u901a\u4fe1\u3092\u81ea\u52d5\u3067\u62d2\u5426<\/strong><\/h2>\n\n\n\n<p>\u5916\u90e8\u304b\u3089\u306e\u653b\u6483\uff08SYN\/ACK, ACK \u3060\u3051\u306a\u3069\uff09\u3092\u62d2\u5426\u3067\u304d\u308b\u3002<\/p>\n\n\n\n<p>\u4f8b\uff1a<br>SYN \u3092\u9001\u3063\u3066\u3044\u306a\u3044\u306e\u306b\u3001\u5916\u90e8\u304b\u3089 ACK \u304c\u6765\u305f\u3089\uff1f<\/p>\n\n\n\n<p>\u2192 \u305d\u306e\u901a\u4fe1\u306f State Table \u306b\u5b58\u5728\u3057\u306a\u3044<br>\u2192 <strong>\u5373\u30c9\u30ed\u30c3\u30d7<\/strong><\/p>\n\n\n\n<p>\u3053\u308c\u304c FW \u306e\u672c\u5f53\u306e\u5f37\u3055\u3002<\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><strong>(3) \u30dd\u30fc\u30c8\u30b9\u30ad\u30e3\u30f3\u306b\u5f37\u3044\uff08TCP flags \u3092\u898b\u308b\uff09<\/strong><\/h2>\n\n\n\n<p>SYN \u306a\u3057\u306e ACK, FIN \u306a\u3069\u306e\u4e0d\u6b63\u30b9\u30ad\u30e3\u30f3\u3092\u62d2\u5426\u3059\u308b\u3002<br>\u30eb\u30fc\u30bf\u30fc ACL \u306b\u306f\u3067\u304d\u306a\u3044\u9632\u5fa1\u3002<\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><strong>(4) DoS \u306e\u8efd\u6e1b<\/strong><\/h2>\n\n\n\n<p>\u5927\u91cf\u306e\u7570\u5e38\u63a5\u7d9a\u306f State Table \u306b\u5165\u308c\u306a\u3044\u305f\u3081\u5b88\u308c\u308b\u3002<\/p>\n\n\n\n<h1 class=\"wp-block-heading\">7. ASA \/ Firepower \u306e\u30b9\u30c6\u30fc\u30c8\u30d5\u30eb\u7279\u6709\u306e\u52d5\u304d<\/h1>\n\n\n\n<h3 class=\"wp-block-heading\">ASA \u306f \u5b9b\u5148\u306b\u9001\u4fe1\u3057\u305f\u623b\u308a<strong>\u306e\u30d1\u30b1\u30c3\u30c8\u3092\u81ea\u52d5\u8a31\u53ef\u304c\u57fa\u672c\u65b9\u91dd<\/strong><\/h3>\n\n\n\n<p>ACL \u306b\u66f8\u304b\u308c\u3066\u3044\u306a\u304f\u3066\u3082\u901a\u308b\u3002<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">NAT \u3068\u306e\u9023\u52d5<\/h3>\n\n\n\n<p>ASA \u306e\u72b6\u614b\u7ba1\u7406\u306f NAT \u30c6\u30fc\u30d6\u30eb\u3068\u3082\u4e00\u4f53\u5316\u3057\u3066\u3044\u308b\u3002<\/p>\n\n\n\n<h1 class=\"wp-block-heading\">\uff18. \u30b9\u30c6\u30fc\u30c8\u30d5\u30eb\u3092\u4e00\u8a00\u3067\u8a00\u3046\u3068\uff1f<\/h1>\n\n\n\n<pre class=\"wp-block-code\"><code>Firewall \u306f\u63a5\u7d9a\u3092\u5b66\u7fd2\u3057\u3066\u3001\n\u201c\u95a2\u9023\u3059\u308b\u623b\u308a\u901a\u4fe1\u3060\u3051\u201d \u3092\u81ea\u52d5\u3067\u8a31\u53ef\u3059\u308b\u3002\n\u305d\u308c\u4ee5\u5916\u306e\u623b\u308a\u901a\u4fe1\u306f\u5168\u90e8\u62d2\u5426\u3059\u308b\u3002<\/code><\/pre>\n\n\n\n<p>\u3053\u308c\u304c <strong>\u30b9\u30c6\u30fc\u30c8\u30d5\u30eb\u30a4\u30f3\u30b9\u30da\u30af\u30b7\u30e7\u30f3<\/strong>\u3002<\/p>\n\n\n\n<h1 class=\"wp-block-heading\">\u30b9\u30c6\u30fc\u30c8\u30d5\u30eb\u304c\u7121\u3044\u3068\uff1f<\/h1>\n\n\n\n<pre class=\"wp-block-code\"><code>\u30eb\u30fc\u30bf\u30fcACL\u3060\u3051\u3060\u3068\u3001\u5f80\u5fa9\u901a\u4fe1\u3092\u5168\u90e8\u66f8\u304b\u306a\u3044\u3068\u52d5\u304b\u306a\u3044\u3002\n\u4e0d\u6b63\u306a\u901a\u4fe1\u3082\u5224\u65ad\u3067\u304d\u306a\u3044\u3002\n\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u304c\u5f31\u3044\u3002<\/code><\/pre>\n\n\n\n<p>\u3060\u304b\u3089\u30b9\u30c6\u30fc\u30c8\u30d5\u30eb\u306f\u5fc5\u9808\u3002<\/p>\n\n\n\n<p><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Firewall \u3092\u7406\u89e3\u3059\u308b\u4e0a\u3067\u6700\u91cd\u8981\u3068\u3044\u3063\u3066\u3082\u3044\u3044\u6a5f\u80fd\u3002\u901a\u4fe1\u306e\u201c\u72b6\u614b\uff08State\uff09\u201d\u3092\u76e3\u8996\u3057\u3066\u5224\u65ad\u3059\u308b Firewall \u306e\u4ed5\u7d44\u307f\u3064\u307e\u308a FW \u304c \u30b3\u30cd\u30af\u30b7\u30e7\u30f3\u60c5\u5831\u3092\u5b66\u7fd2\u3057\u3001\u623b\u308a\u901a\u4fe1\u3092\u81ea\u52d5\u3067\u8a31\u53ef\u3059\u308b\u4ed5\u7d44\u307f\u3002 \u884c\u304d\u3068\u5e30\u308a [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"parent":0,"menu_order":0,"comment_status":"closed","ping_status":"closed","template":"","meta":{"footnotes":""},"class_list":["post-1725","page","type-page","status-publish","hentry"],"_links":{"self":[{"href":"https:\/\/mylifeisbeautiful555.net\/index.php?rest_route=\/wp\/v2\/pages\/1725","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/mylifeisbeautiful555.net\/index.php?rest_route=\/wp\/v2\/pages"}],"about":[{"href":"https:\/\/mylifeisbeautiful555.net\/index.php?rest_route=\/wp\/v2\/types\/page"}],"author":[{"embeddable":true,"href":"https:\/\/mylifeisbeautiful555.net\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/mylifeisbeautiful555.net\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=1725"}],"version-history":[{"count":3,"href":"https:\/\/mylifeisbeautiful555.net\/index.php?rest_route=\/wp\/v2\/pages\/1725\/revisions"}],"predecessor-version":[{"id":1730,"href":"https:\/\/mylifeisbeautiful555.net\/index.php?rest_route=\/wp\/v2\/pages\/1725\/revisions\/1730"}],"wp:attachment":[{"href":"https:\/\/mylifeisbeautiful555.net\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=1725"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}