å€ãã®çµç¹ã¯ã¯ã©ãŠã ãµãŒãã¹ã䜿çšããããæ©åšã次ã®å Žæã«ç§»åãããããŸãã
ããŒã¿ã»ã³ã¿ãŒã ãã®ãããªç¶æ³ã§ãµãŒã㌠ã«ãŒã ã«æ®ããŠããæå³ã¯äœã§ãããã?ãŸãããã®ãããªç¶æ³ã§ãªãã£ã¹ ãããã¯ãŒã¯å¢çã®ä¿è·ãçµç¹ããæåã®æ¹æ³ã¯äœã§ãããã?
ãã€ãŠã¯ãã¹ãŠããµãŒããŒäžã«ãããŸãã
Runet ã®éçºåœåãã»ãšãã©ã®äŒæ¥ã¯ã»ãŒåãã¹ããŒã ã«åŸã£ãŠ IT ã€ã³ãã©ã¹ãã©ã¯ãã£ã®åé¡ã解決ããŸãããã€ãŸãã空調èšåãèšçœ®ããã»ãŒãã¹ãŠã®ãããã¯ãŒã¯ãšãµãŒããŒæ©åšãéäžããŠããéšå±ãå²ãåœãŠãŸããã
ã·ã¹ãã 管çè ã¯ãFreeBSDãLinuxããŸã㯠OpenSolaris ãªã©ã« XNUMX ã€ä»¥äžã®ãµãŒããŒãã»ããã¢ããããŸãããããŠããã®ããã¹ããäžã§ãWeb ãµãŒããŒãäŒæ¥ã¡ãŒã«ããã¡ã€ã« ãã¹ãã£ã³ã° ãµãŒãã¹ã«è³ããŸã§ãå¿ èŠãªãµãŒãã¹ãèµ·åããŸããã
äŒæ¥ãæé·ãçºå±ãããšãå¿ ç¶çã«ãµãŒã㌠ã«ãŒã ãèŠä»¶ãæºãããªããªãç¶æ³ã«çŽé¢ããŸãã ãéãããã°ãç¬èªã®ããŒã¿ã»ã³ã¿ãŒãæ§ç¯ã§ããŸãã åçšããŒã¿ã»ã³ã¿ãŒããã©ãã¯ãã¬ã³ã¿ã«ããæ¹ãåçæ§ãé«ãå ŽåããããŸãã DRUPSã«ããé«å質ãªé»æºãç£æ¥çšç©ºèª¿ã·ã¹ãã ãå°éæ§ã®é«ãå°éã¹ã¿ããã®å å®ãªã©ããªãã£ã¹ã®ãµãŒããŒã«ãŒã ã§ã¯ãªããªãå®çŸã§ããªããã®ã§ãã
倧äŒæ¥ã«ç¶ããäžå°äŒæ¥ã®çµå¶è ã®å¿ã®äžã«ã¯ããèªåã®ãã®ã¯ãã¹ãŠæã¡æ©ããã家ã¯èªåã®ç Šããšããå¿çããããä»äººã«è²ãã®ã§ã¯ãªããè²ããªãããšããå¿çãžã®ç§»è¡ãåŸã ã«é²ãã§ããŸããèŠããã"
äžå°äŒæ¥ã«ãšã£ãŠãã¯ã©ãŠããããã€ããŒã¯ãŸãã«ãã¢ãŠããœãŒã·ã³ã°ãã®éžæè¢ãšãªã£ãŠããŸãã åŸæ¥å¡ 40 人ã®äŒç€Ÿã«ãšã£ãŠã以åã¯ç¬èªã®ã¡ãŒã« ãµãŒããŒãæã€ã®ãåœç¶ã®ããšã ã£ãã®ã§ããã°ãçŸåšã§ã¯ãåã Google ã®ãµãŒãã¹ãã以åã¯ç¬èªã® Sendmail ãŸã㯠Postfix ãªãã§åãããšãæ³åã§ããªãã£ããã¹ãŠã®äŒæ¥ãå³æ¹ã«ä»ããŠããŸãã
ä»®æ³ã·ã¹ãã ã¯ããã®ãããªã移転ãã«å€§ããªå©ããšãªããŸããã ç»å Žåã¯ç©çãµãŒããŒå šäœã転éãããããã¹ãŠãæ°ããããŒããŠã§ã¢ã«æ§æããå¿ èŠããã£ãå Žåã§ããä»ã§ã¯ä»®æ³ãã·ã³ã®ã€ã¡ãŒãžã転éããã ãã§ååã§ãã
ãšã¢ã³ã³ã®å¹ããçãéšå±ã«ã¯äœãæ®ãã®ã§ããããïŒ
ãŸãã¯ãããã¯ãŒã¯æ©åšã§ãã ã¢ã¯ãã£ãã«ãããã·ãã«ãã å€ãã®å ŽåãããµãŒããŒããšãã倧ãããªååã®èåŸã«ãããããã¯ãŒã¯æ©åšã®æ®éªžãšã®çžäºæ¥ç¶ãç解ãããŠããŸãã ãã®ãããªå Žåã«ã¯ã匷åãªç©ºèª¿ã·ã¹ãã ãé»æºãªã©ãåããç¹å¥ãªéšå±ã¯å¿ èŠãããŸããã
ãµãŒã㌠ã«ãŒã ããã®åãå€ããäŸç¶ãšããŠé£ãã XNUMX çªç®ã®æ©åšã°ã«ãŒãã¯ã²ãŒããŠã§ã€ã§ãã
ã»ãã¥ãªãã£ã
ãããããããã®ã²ãŒããŠã§ã€ãšã¯äœã§ãããã? äžã§è¿°ã¹ãããã«ãæè¿ãŸã§ã·ã¹ãã 管çè ã XNUMX ã€ãŸãã¯è€æ°ã®ãµãŒããŒãèªç±ã«äœ¿çšããŠã奜ããªãã®ãå±éã§ãããšããããçŸåšã§ã¯ãã®ãããªèŽ æ²¢ã¯ååšããªããããããŸããã
ããããå€éšã®è
åšããä¿è·ããå¿
èŠæ§ããªããªã£ãããã§ã¯ãããŸããã ãã¡ããããã¹ãŠã®ãµãŒãã¹ãšå¿
èŠãªæ©åšãå®å
šã«ããŒã¿ã»ã³ã¿ãŒã«è»¢éããVPN ãªã©ã®å®å
šãªãã£ãã«ãä»ããŠããã®ãããªã²ãŒããŠã§ã€ãããªãã£ã¹ã®çžäºæ¥ç¶ã«ãã©ãã£ãã¯ã転éããããšãã§ããŸãã
ãã®æ¹åŒã¯ãæ¢åã®ãã£ãã«ã®è² è·ãå¢å ããªãéããäžèŠãããšé
åçã«èŠããŸãã ããåããã£ã³ãã«ã«ãéãæããããªãå Žåãããã¯ãŸãã«å¿
èŠãªãã®ã§ã¯ãããŸããã
ãã XNUMX ã€ã®ãªãã·ã§ã³ã¯ã亀éä¿è·çšã®å°çšããã€ã¹ãè³Œå ¥ããããšã§ãããã®ã¢ãŒããã¯ãã£ã§ã¯ãçŠç¹ãçµãããŠããããã匷åãªãšãã«ã®ãŒéçŽåã§çºç±ããã³ã³ããŒãã³ãã䜿çšããã«æžã¿ãŸãã
åç©åãªããŠèŠããªã
åŸæ¥ã®ãµãŒã㌠ã«ãŒã ããªãå Žåã¯ãå°ããªéšå±ãå°ããªã¯ãã¹ãªãŒã㌠ãã£ããããå ã«ãåç©åããäœæãããããããXNUMX ã€ã®ããã¯ã¹ã§ãè€æ°ã®ãµãŒãã¹ãåæã«å©çšã§ããæ¹ãã¯ããã«åªããŠããŸãã åæã«ããã®ãœãªã¥ãŒã·ã§ã³ã¯å®äŸ¡ã§å®çžŸãããããã·ã¢èªã§éåžžã®ãµããŒããæäŸãããå¿ èŠããããŸãã
泚èšã ç§ãã¡ã¯ä»ãéåžžã«å°èŠæš¡ãäžèŠæš¡ããããŠå€§èŠæš¡ãªãªãã£ã¹ã«ã€ããŠè©±ããŠããŸãã ç§ãã¡ã¯ãŸã ãç¬èªã®ããŒã¿ã»ã³ã¿ãŒãæ§ç¯ãã倧äŒæ¥ãæ€èšããŠããŸãããããèšäºã§ã¯ããã®å·šå€§ããææ¡ããããšã¯äžå¯èœã§ãããšè¿°ã¹ãŠããŸãã
ãããŠãããããã±ãŒã¹ã«å¯ŸããŠãZyxel ã¯åã補åã©ã€ã³å ã§ãã§ã«ãœãªã¥ãŒã·ã§ã³ãæã£ãŠããŸãã äžèšã§èšãã°ããåç©åãã¯å¿ èŠãããŸããã
ZyWALL ATP ã»ãã¥ãªã㣠ã²ãŒããŠã§ã€
ãã®ãããªããã€ã¹ã®åäœåçã«ã€ããŠã¯ãäŸã䜿çšããŠä»¥åã«èª¬æããŸããã
ä¿è·æ©èœã®ãªã¹ãã¯éåžžã«è±å¯ã§ã (è¡š 1 ãåç §)ãSecuReporter åæããŒã«ããããŠã³ããŒããããã³ã³ãã³ãã®äºååæçšã®ããµã³ãããã¯ã¹ãã§ãããµã³ãããã¯ã¹ãå«ãŸããŸãã
ãã®å ŽåããµãŒãã¹ãããŒã«ã« ãªãã£ã¹ããã¯ã©ãŠãã«è»¢éããŠããã ãã§ããããšãããäžåºŠåŒ·èª¿ããŠãããŸãã Zyxel Cloud ã¯ããã®ä»ãã¹ãŠãå¿åã¢ãŒãã§å®è¡ããŸãã ãã®ã¢ãããŒãã¯ãå©äŸ¿æ§ã«å ããŠãäžçäžã® ATP ã²ãŒããŠã§ã€éã®æ©æ¢°åŠç¿ãšæ å ±äº€æãéããŠããŒããã€è åšã«å¯Ÿããå¹æçãªä¿è·ãæäŸããŸãã ãã¥ãŒã©ã« ãããã¯ãŒã¯å šäœãä¿è·ã®ããã«æ§ç¯ãããŠããŸãã
è¡š 1. ZyWALL ATP 補åã©ã€ã³ã®æè¡çç¹åŸŽ.
åèïŒ
(1) å®éã®ããã©ãŒãã³ã¹ã¯ããããã¯ãŒã¯ã®ç¶æ ãšã¢ã¯ãã£ããªã¢ããªã±ãŒã·ã§ã³ã«å€§ããäŸåããŸãã
(2) æ倧ã¹ã«ãŒããã㯠RFC 2544 (1,518 ãã€ãã® UDP ãã±ãã) ã«åºã¥ããŠããŸãã
(3) VPN ã¹ã«ãŒãããã®æž¬å®å€ã¯ãRFC 2544 (1,424 ãã€ãã® UDP ãã±ãã) ã«åºã¥ããŠããŸãã
(4) AV ããã³ IDP ã®ã¹ã«ãŒããã ã¡ããªãã¯ã¯ãæ¥çæšæºã® HTTP ããã©ãŒãã³ã¹ ãã¹ã (1,460 ãã€ãã® HTTP ãã±ãã) ã䜿çšããŸãã ãã¹ãã¯ãã«ãã¹ã¬ãã ã¢ãŒãã§å®è¡ãããŸããã
(5) å¯èœãªæ倧ã»ãã·ã§ã³æ°ã枬å®ããéã«ã¯ãæ¥çæšæºããŒã«ã§ãã IXIA IxLoad ãã¹ã ããŒã«ã䜿çšãããŸããã
(6) 1Gbps WAN é床ãã¹ãã®çµæã¯ãå®éã®æ¡ä»¶äžã§å®æœããããã®ã§ããããªã³ã¯ã®å質ã«ãã£ãŠè¥å¹²ç°ãªãå ŽåããããŸãã
(7): ãŽãŒã«ã ããã¯ã®æå¹æéãåãããšã2 ã€ã® AP ã®ã¿ããµããŒããããŸãã
(8): Zyxel ãµãŒãã¹ã®è¿œå ã©ã€ã»ã³ã¹ãè³Œå ¥ããããšã§ãæ©èœãæå¹åãŸãã¯æ¡åŒµã§ããŸãã
ãµããŒããããŠãã VPN ãµãŒãã¹ã®ã»ããã«æ³šæããŠãã ããã æ¬ç€Ÿãæ¬ç€Ÿãšã®éä¿¡ã«å¿ èŠãªã»ãŒãã¹ãŠããã¯ã³ããã«ãã«å ¥ã£ãŠãããããæ¯åºã®æçµéä¿¡ããŒããšããŠããåŸæ¥å¡ã®ãªã¢ãŒãã¯ãŒã¯æ¯æŽãšããŠãå®å¿ããŠãå§ãã§ããŸãã
å°èŠæš¡ãªãã£ã¹åããœãªã¥ãŒã·ã§ã³
å°èŠæš¡ãªãã£ã¹ã¯ãç¬ç«ããäŒæ¥ãšå€§äŒæ¥ã®æ¯åºã® XNUMX ã€ã®ã°ã«ãŒãã«åé¡ã§ããŸãã
ç¬ç«ããäŒæ¥ãšã¯ãæ°ããèªçããäŒæ¥ããå°èŠæš¡ã®ãŸãŸã«çãŸãéåœã«ããäŒæ¥ã§ãã ããšãã°ãèšèšå±ã建ç¯ã¹ã¿ãžãªãå°èŠæš¡ã¡ãã£ã¢ã®ç·šéå±ãªã©ã§ãã ãã®ãããªäºæ¥éšéã§ã¯ãå°ãªããšãã¡ãŒã«ãšãã¡ã€ã«å ±æã®ã¯ã©ãŠã ãµãŒãã¹ã䜿çšããããšããããããŸãã
倧èŠæš¡çµç¹ã®æ¯åº - æ¯åºã«ãšã£ãŠéèŠãªããšã¯ãäžå€®ãªãã£ã¹ãšå®å®ããæ¥ç¶ã確ç«ããããšã§ãã ãã以å€ã¯ãã¹ãŠãäžå¿ãã«ãããŸãã
å€ãã®å Žåããã®ãããªãèµ€ã¡ãããã«ã¯ãå¶åŸ¡çšã®ã·ã³ãã«ãªã€ã³ã¿ãŒãã§ã€ã¹ãå¿
èŠã§ãã æ¬ç€Ÿã®ãããã¯ãŒã¯ç®¡çè
ã¯ãæ°ããæ¯åºã®åé¡ã解決ããããã«é ãé¢ããåå°ã«ããã«é§ãã€ããæ©äŒããªãããšããããããŸãã å°å
ã®äžå°äŒæ¥ã«ã¯ãã®ãããªæ©äŒããŸã£ãããããŸããã ç§ãã¡ã¯ãæ¥ãã¹ãããµãŒãã¹ã«é Œããªããã°ãªããŸããã
管çè
ãã ãã®ãããªå Žåã«ã¯ããã·ã³ãã«ã§ããã»ã©ä¿¡é Œæ§ãé«ãããšããååã«åºã¥ããŠå¶åŸ¡ããå¿
èŠããããŸãã
å°èŠæš¡ãªãã£ã¹ã®å Žåã¯ãZyWALL ATP100 ããã³ ZyWALL ATP200 ã¢ãã«ã䜿çšããã®ãåççã§ãã
ãããã¯ãŒã¯ã²ãŒããŠã§ã€
å
ãšã®äž»ãªéã (
å³ 1. ZyWALL ATP100ã
èšèšäžã®ç¹åŸŽ: ATP100 ããã³ ATP200 ã¯ãã¡ã³ã¬ã¹ ã¢ãã«ã§ãã ãããè¯ãçç±ã¯ã第äžã«éšé³ããªãããšã第äºã«ãã¡ã³ã亀æããå¿ èŠããªãããšã§ãã ãæ°ãã管çè ããããç¶æ³ã§ã¯ãããã¯ããªãéèŠãªææšã§ãã
å³ 2. ZyWALL ATP200ã
ATP200 ã¢ãã«ã¯ XNUMX ã€ã® WAN ããŒãããµããŒãããããšãã°ç°ãªããããã€ããŒããã® XNUMX ã€ã®ç¬ç«ããåç·ã«æ¥ç¶ã§ããŸãã
åè¿°ããããã«ãå°èŠæš¡ãªãã£ã¹ã®å Žåãé»åã®å®å®äŸçµŠã®æ¬¡ã«éèŠãªã®ã¯å®å®ããæ¥ç¶ã§ãã æ®å¿µãªãããå°å ã®ãããã€ããŒã¯åžžã«äºæ ãèµ·ãããªããšä¿èšŒããããšã¯ã§ããŸããã ããã¯ã¢ããã®ãªãã·ã§ã³ãæ¢ãå¿ èŠããããŸãã
éèŠïŒ ATP ã¢ãã«ã«ã¯ãå°çšã® WAN ããŒãã«å ããŠãUSB ã¢ãã ãæ¥ç¶ã㊠WAN ãšããŠäœ¿çšã§ãã USB ããŒãããããŸãã ãã®æ©èœã¯ãã¹ãŠã® ATP ã§å©çšã§ããŸãã
ããã€ã¹ã« SFP ããŒããããå Žåãããã WAN ãšããŠäœ¿çšããããšãã§ããŸãã ãã®æ©èœã¯ãã¹ãŠã® ATP ã§å©çšã§ããŸãã
Zyxelã®ã©ã€ãããã¯ãã玹ä»ããŸãã
äžå äŒæ¥
äžèŠæš¡äŒæ¥åãã«ãZyxel ã«ã¯ç¬èªã®åªããããŒããŠã§ã¢ããããŸã -
é²åããè åšã«å¯Ÿããé«åºŠãªä¿è·ãåãã次äžä»£ã²ãŒããŠã§ã€ã§ãã
èå³æ·±ãæ©èœãšããŠã¯æ¬¡ã®ãããªãã®ããããŸãã
7 ã€ã®æ§æå¯èœãªããŒãã«ãããå éšäœ¿çšã®ããã« 2 ã€ã®åå¥ã® VLAN ãæ¥ç¶ããªããã2 ã€ã® WANã3 ã€ã® DMZãããã³ 3 ã€ã® LAN ããŒããªã©ãæè»ãªæ§æãå¯èœã«ãªããŸãã SFPããŒãã1ã€ãããŸãã
å³ 3. ZyWALL ATP500ã
500 å°ã® ZyWALL ATPXNUMX ãã Device HA Pro é«å¯çšæ§ã¯ã©ã¹ã¿ãŒ ã¢ãŒãã§åäœããããšãå¯èœã§ãã XNUMX å°ãåäœããªãå Žåã§ããXNUMX å°ç®ã¯éä¿¡ãæäŸããŸãã
ATP500ã®æ©èœããã«ã«æŽ»çšããããšã§ãæè»ãªã
ããšãã°ãå€éšã®äžçãŸãã¯å¥ã®ããŒããšã®ä¿¡é Œæ§ãé«ãå®å
šãªéä¿¡
æ¬éšã
倧èŠæš¡ãªãªãã£ã¹
圌ãã«ã¯ããã®ã©ã€ã³ã®æã匷åãªããŒãžã§ã³ã§ããATP800ãæšå¥šãããŸãã
ãã®ã¢ãã«ã«ã¯ãRJ-12 ã 45 åãš SFP ã 2 åãšããããªãã®æ°ã®ããŒããããããããã¯ãã¹ãŠ WANãLANããŸã㯠DNZ ã¢ãŒãã§æ§æã§ãããããè€æ°ã® WLAN ã䜿çšããããè€æ°ã® DMZ ãç·šæãããããããšãã§ããŸããè€éãªå éšã€ã³ãã©ã¹ãã©ã¯ãã£ã®ããã®å€éšãããã¯ãŒã¯ã ãããã¯ãŒã¯ãçºéããã»ãã¥ãªãã£ãšã¢ã¯ã»ã¹å¶åŸ¡ã«å¯Ÿããé«ãèŠä»¶ãåããããªã倧èŠæš¡ãªãªãã£ã¹ã«é©ããŠããŸãã
å³ 4. ZyWALL ATP800ã
ãŸãããã®ã¢ãã«ã¯ãæé·ãåŸåã®ããè³Œå ¥ã«æšå¥šãããããšã«ã泚ç®ããŠãã ããã ããšãã°ãå°å ã®åºèãã§ãŒã³ãéçºãããªã©ãäŒç€Ÿã®æé·ãèšç»ããŠããå Žåã¯ããéãäºéã«è²»ãããªãããã«ããã匷åãªã¢ãã«ãããã«è³Œå ¥ããã®ãçã«ããªã£ãŠããŸãã
ã芧ã®ãšãããæãè³ªçŽ ãªæ¡ä»¶äžã§ãã£ãŠããé©åãªã¬ãã«ã®ä¿è·ãèé害æ§ãããã³éçšã®æè»æ§ãæäŸããããšãå¯èœã§ãã
æè¡ãµããŒããã¢ããã€ã¹ããã£ã¹ã«ãã·ã§ã³ããã¥ãŒã¹ãããã¢ãŒã·ã§ã³ããç¥ãã -
䟿å©ãªãªã³ã¯é
-
ã³ãã±ãŒã·ã§ã³: ã©ã®ããã«ããªãããããŠãªã -
æé£ã¯èªåã§é£ã¹ãä»äºã¯ãã¯ã©ãŠããã§å ±æ -
ZyWALL ATP100 ã»ãã¥ãªã㣠ã²ãŒããŠã§ã€ ããŒãž -
ZyWALL ATP200 ã»ãã¥ãªã㣠ã²ãŒããŠã§ã€ ããŒãž -
ZyWALL ATP500 ã»ãã¥ãªã㣠ã²ãŒããŠã§ã€ ããŒãž -
ZyWALL ATP800 ã»ãã¥ãªã㣠ã²ãŒããŠã§ã€ ããŒãž -
ç§ãã¡ã®ãµãŒãã¹ã¯å±éºãã€å°é£ã§ãããŸã㯠Zyxel ATP500
åºæïŒ habr.com