ããã«ã¡ã¯ãã¿ããªã ããã¯ããRedHat RHCSA RHCE 7 RedHat Enterprise Linux 7 EX200 and EX300ããšããæžç±ã®èšäºã®ç¿»èš³ã§ãã
ç§ããïŒ ãã®èšäºãåå¿è ã ãã§ãªããçµéšè±å¯ãªç®¡çè ã®ç¥èã®å¹çåã«ã圹ç«ã€ããšãé¡ã£ãŠããŸãã
ããã§ã¯è¡ããŸãããã
Linux ã§ãã¡ã€ã«ã«ã¢ã¯ã»ã¹ããã«ã¯ãã¢ã¯ã»ã¹èš±å¯ã䜿çšãããŸãã ãããã®ã¢ã¯ã»ã¹èš±å¯ã¯ããã¡ã€ã«ææè
ãã°ã«ãŒãææè
ãããã³å¥ã®ãªããžã§ã¯ã (ã€ãŸããä»ã®å
šå¡) ã® XNUMX ã€ã®ãªããžã§ã¯ãã«å²ãåœãŠãããŸãã ãã®èšäºã§ã¯ãã¢ã¯ã»ã¹èš±å¯ãé©çšããæ¹æ³ãåŠç¿ããŸãã
ãã®èšäºã§ã¯ãåºæ¬æŠå¿µã®æŠèŠããå§ãŸãããã®åŸãç¹å¥ãªã¢ã¯ã»ã¹èš±å¯ãšã¢ã¯ã»ã¹å¶åŸ¡ãªã¹ã (ACL) ã«ã€ããŠèª¬æããŸãã ãã®èšäºã®æåŸã§ã¯ãumask ã«ããããã©ã«ãã®æš©éã®èšå®ãšæ¡åŒµãŠãŒã¶ãŒå±æ§ã®ç®¡çã«ã€ããŠèª¬æããŸãã
ãã¡ã€ã«ã®ææ暩管ç
ã¢ã¯ã»ã¹èš±å¯ã«ã€ããŠèª¬æããåã«ããã¡ã€ã«ãšãã£ã¬ã¯ããªã®ææè ã®åœ¹å²ãèªèããŠããå¿ èŠããããŸãã ãã¡ã€ã«ãšãã£ã¬ã¯ããªã®æææš©ã¯ãã¢ã¯ã»ã¹èš±å¯ãåŠçããããã«äžå¯æ¬ ã§ãã ãã®ã»ã¯ã·ã§ã³ã§ã¯ããŸãææè ã確èªããæ¹æ³ãåŠã³ãŸãã 次ã«ããã¡ã€ã«ãšãã£ã¬ã¯ããªã®ã°ã«ãŒãææè ãšãŠãŒã¶ãŒãå€æŽããæ¹æ³ãåŠã³ãŸãã
ãã¡ã€ã«ãŸãã¯ãã£ã¬ã¯ããªã®ææè ã®è¡šç€º
Linux ã§ã¯ããã¹ãŠã®ãã¡ã€ã«ãšãã¹ãŠã®ãã£ã¬ã¯ããªã« XNUMX 人ã®ææè (ãŠãŒã¶ãŒãšã°ã«ãŒãææè ) ãããŸãã
ãããã®ææè ã¯ããã¡ã€ã«ãŸãã¯ãã£ã¬ã¯ããªã®äœææã«èšå®ãããŸãã ãã¡ã€ã«ãäœæãããŠãŒã¶ãŒããã®ãã¡ã€ã«ã®ææè ãšãªããåããŠãŒã¶ãŒãå±ãããã©ã€ã㪠ã°ã«ãŒãããã®ãã¡ã€ã«ã®ææè ã«ãªããŸãã ãŠãŒã¶ãŒãšããŠãã¡ã€ã«ãŸãã¯ãã£ã¬ã¯ããªã«ã¢ã¯ã»ã¹ããæš©éããããã©ãããå€æããããã«ãã·ã§ã«ã¯æææš©ããã§ãã¯ããŸãã
ããã¯æ¬¡ã®é åºã§çºçããŸãã
- ã·ã§ã«ã¯ãããªããã¢ã¯ã»ã¹ããããã¡ã€ã«ã®ææè ã§ãããã©ããã確èªããŸãã ããªããææè ã®å Žåãæš©éãååŸããã·ã§ã«ã¯ãã§ãã¯ãåæ¢ããŸãã
- ãã¡ã€ã«ã®ææè ã§ã¯ãªãå Žåãã·ã§ã«ã¯ããã®ãã¡ã€ã«ã«å¯Ÿããã¢ã¯ã»ã¹èš±å¯ãæã€ã°ã«ãŒãã®ã¡ã³ããŒã§ãããã©ããã確èªããŸãã ãã®ã°ã«ãŒãã®ã¡ã³ããŒã§ããå Žåã¯ãã°ã«ãŒããèšå®ããã¢ã¯ã»ã¹èš±å¯ã§ãã¡ã€ã«ã«ã¢ã¯ã»ã¹ããããšã«ãªããã·ã§ã«ã¯ãã§ãã¯ãåæ¢ããŸãã
- ãŠãŒã¶ãŒã§ãã°ã«ãŒãã®ææè ã§ããªãå Žåã¯ãä»ã®ãŠãŒã¶ãŒ (ãã®ä») ã®æš©éãäžããããŸãã
çŸåšã®ææè ã®å²ãåœãŠã確èªããã«ã¯ã次ã®ã³ãã³ãã䜿çšã§ããŸãã ls -lã ãã®ã³ãã³ãã¯ãã°ã«ãŒãã®ãŠãŒã¶ãŒãšææè ã衚瀺ããŸãã 以äžã«ã/home ãã£ã¬ã¯ããªå ã®ãã£ã¬ã¯ããªã®ææè ã®èšå®ã衚瀺ãããŸãã
[root@server1 home]# ls -l
total 8
drwx------. 3 bob bob 74 Feb 6 10:13 bob
drwx------. 3 caroline caroline 74 Feb 6 10:13 caroline
drwx------. 3 fozia fozia 74 Feb 6 10:13 fozia
drwx------. 3 lara lara 74 Feb 6 10:13 lara
drwx------. 5 lisa lisa 4096 Feb 6 10:12 lisa
drwx------. 14 user user 4096 Feb 5 10:35 user
ã³ãã³ã㧠ls æå®ãããã£ã¬ã¯ããªå ã®ãã¡ã€ã«ã®ææè ã衚瀺ã§ããŸãã å Žåã«ãã£ãŠã¯ãç¹å®ã®ãŠãŒã¶ãŒãŸãã¯ã°ã«ãŒããææè ã§ããã·ã¹ãã äžã®ãã¹ãŠã®ãã¡ã€ã«ã®ãªã¹ããååŸãããšäŸ¿å©ãªå ŽåããããŸãã ãã®ããã«äœ¿çšã§ããŸã findã å£è« ãŠãŒã¶ãŒã®æ€çŽ¢ ãã®ç®çã«äœ¿çšã§ããŸãã ããšãã°ã次ã®ã³ãã³ãã¯ããŠãŒã¶ãŒ linda ãææãããã¹ãŠã®ãã¡ã€ã«ãäžèŠ§è¡šç€ºããŸãã
find / -user linda
䜿çšããããšãã§ããŸã find ç¹å®ã®ã°ã«ãŒããææè ãšããŠæã€ãã¡ã€ã«ãæ€çŽ¢ããŸãã
ããšãã°ã次ã®ã³ãã³ãã¯ãã°ã«ãŒãã«å±ãããã¹ãŠã®ãã¡ã€ã«ãæ€çŽ¢ããŸãã users:
find / -group users
ææè ã®å€æŽ
é©åãªã¢ã¯ã»ã¹èš±å¯ãé©çšããã«ã¯ãæåã«æææš©ãèæ ®ããå¿ èŠããããŸãã ããã«ã¯ã³ãã³ãããããŸã chownã ãã®ã³ãã³ãã®æ§æã¯ç解ããããã§ãã
chown кÑП ÑÑП
ããšãã°ã次ã®ã³ãã³ãã¯ã/home/account ãã£ã¬ã¯ããªã®ææè ããŠãŒã¶ãŒ linda ã«å€æŽããŸãã
chown linda /home/account
ããŒã chown ããã€ãã®ãªãã·ã§ã³ããããŸããããã®ãã¡ã® XNUMX ã€ãç¹ã«äŸ¿å©ã§ãã -Rã ãã®ãªãã·ã§ã³ã¯ä»ã®å€ãã®ã³ãã³ãã§ã䜿çšã§ããããããããäœããããã¯æšæž¬ã§ããŸãã ããã«ãããææè ãååž°çã«èšå®ã§ããããã«ãªããçŸåšã®ãã£ã¬ã¯ããªãšãã®äžã«ãããã¹ãŠã®ãã£ã¬ã¯ããªã®ææè ãèšå®ã§ããããã«ãªããŸãã 次ã®ã³ãã³ãã¯ã/home ãã£ã¬ã¯ããªãšãã®äžã®ãã¹ãŠã®æææš©ã linda ãŠãŒã¶ãŒã«å€æŽããŸãã
çŸåšã®ææè ã¯æ¬¡ã®ããã«ãªããŸãã
[root@localhost ~]# ls -l /home
total 0
drwx------. 2 account account 62 Sep 25 21:41 account
drwx------. 2 lisa lisa 62 Sep 25 21:42 lisa
ãããïŒ
[root@localhost ~]# chown -R lisa /home/account
[root@localhost ~]#
ããã§ããŠãŒã¶ãŒ lisa ãã¢ã«ãŠã³ã ãã£ã¬ã¯ããªã®ææè ã«ãªããŸããã
[root@localhost ~]# ls -l /home
total 0
drwx------. 2 lisa account 62 Sep 25 21:41 account
drwx------. 2 lisa lisa 62 Sep 25 21:42 lisa
ã°ã«ãŒãã®ææè ãå€æŽãã
ã°ã«ãŒãã®æææš©ãå€æŽããã«ã¯ XNUMX ã€ã®æ¹æ³ããããŸãã ããã䜿çšããŠãããè¡ãããšãã§ããŸã chownããããããšããååã®ç¹å¥ãªã³ãã³ãããããŸã chgrpãããä»äºãããã®ã§ãã ã³ãã³ãã䜿çšãããå Žåã¯ã chownã äœ¿çš . ãŸã㯠: ã°ã«ãŒãåã®åã«ã
次ã®ã³ãã³ãã¯ã/home/account ã°ã«ãŒãã®ææè ãã¢ã«ãŠã³ã ã°ã«ãŒãã«å€æŽããŸãã
chown .account /home/account
ããªãã¯äœ¿ãããšãã§ããŸã chown ãŠãŒã¶ãŒãã°ã«ãŒãã®ææè ãå€æŽããã«ã¯ãããã€ãã®æ¹æ³ããããŸãã ããã§ã¯ããã€ãã®äŸã瀺ããŸãã
- ãã£ãŠã³ã»ãªãµ myfile1 ãŠãŒã¶ãŒ lisa ã myfile1 ã®ææè ãšããŠèšå®ããŸãã
- chown lisa.sales myfile ãŠãŒã¶ãŒ lisa ã myfile ãã¡ã€ã«ã®ææè ãšããŠèšå®ããããã« sales ã°ã«ãŒããåããã¡ã€ã«ã®ææè ãšããŠèšå®ããŸãã
- ãã£ãŠã³ã»ãªãµ:ã»ãŒã«ã¹ã»ãã€ãã¡ã€ã« åã®ã³ãã³ããšåãã§ãã
- chown .sales myfile ãŠãŒã¶ãŒã®ææè ãå€æŽããã«ãsales ã°ã«ãŒãã myfile ã®ææè ãšããŠèšå®ããŸãã
- chown :ã»ãŒã«ã¹ãã€ãã¡ã€ã« åã®ã³ãã³ããšåãã§ãã
ã³ãã³ãã䜿çšã§ããŸã chgrpã°ã«ãŒãã®ææè ãå€æŽããŸãã 次ã®äŸãèããŠã¿ãŸãããã chgrp ã¢ã«ãŠã³ã ãã£ã¬ã¯ããªã®ææè ãå¶æ¥ã°ã«ãŒãã«èšå®ããŸãã
chgrp .sales /home/account
ã®ããã« chownããªãã·ã§ã³ã䜿çšã§ããŸã -R Ñ chgrpãã°ã«ãŒãã®ææè ãååž°çã«å€æŽããã ãã§ãªãã
ããã©ã«ãã®ææè ã«ã€ããŠç解ãã
ãŠãŒã¶ãŒããã¡ã€ã«ãäœæãããšãããã©ã«ãã®æææš©ãé©çšãããããšã«æ°ã¥ãããããããŸããã
ãã¡ã€ã«ãäœæãããŠãŒã¶ãŒã¯èªåçã«ãã®ãã¡ã€ã«ã®ææè
ã«ãªãããã®ãŠãŒã¶ãŒã®ãã©ã€ã㪠ã°ã«ãŒããèªåçã«ãã®ãã¡ã€ã«ã®ææè
ã«ãªããŸãã éåžžãããã¯ããŠãŒã¶ãŒã®ãã©ã€ã㪠ã°ã«ãŒããšã㊠/etc/passwd ãã¡ã€ã«ã«ãªã¹ããããŠããã°ã«ãŒãã§ãã ãã ãããŠãŒã¶ãŒãè€æ°ã®ã°ã«ãŒãã®ã¡ã³ããŒã§ããå Žåã¯ãæå¹ãªãã©ã€ã㪠ã°ã«ãŒããå€æŽã§ããŸãã
çŸåšæå¹ãªãã©ã€ã㪠ã°ã«ãŒãã衚瀺ããã«ã¯ããŠãŒã¶ãŒã¯æ¬¡ã®ã³ãã³ãã䜿çšã§ããŸãã ã°ã«ãŒãããã:
[root@server1 ~]# groups lisa
lisa : lisa account sales
çŸåšã® linda ãŠãŒã¶ãŒãæå¹ãªãã©ã€ã㪠ã°ã«ãŒããå€æŽãããå Žåã¯ã次ã®ã³ãã³ãã䜿çšããŸãã æ°ããã°ã«ãŒããã®åŸã«ãæ°ããæå¹ãªãã©ã€ã㪠ã°ã«ãŒããšããŠèšå®ãããã°ã«ãŒãã®ååãç¶ããŸãã ã³ãã³ãã䜿çšããåŸ æ°ããã°ã«ãŒã ãã©ã€ã㪠ã°ã«ãŒãã¯ããŠãŒã¶ãŒãã³ãã³ããå ¥åãããŸã§ã¢ã¯ãã£ãã«ãªããŸãã çµäºãã ãŸãã¯ãã°ã¢ãŠãããªãã§ãã ããã
以äžã¯ããŠãŒã¶ãŒ linda ã sales ããã©ã€ã㪠ã°ã«ãŒããšããŠãã®ã³ãã³ãã䜿çšããæ¹æ³ã瀺ããŠããŸãã
lisa@server1 ~]$ groups
lisa account sales
[lisa@server1 ~]$ newgrp sales
[lisa@server1 ~]$ groups
sales lisa account
[lisa@server1 ~]$ touch file1
[lisa@server1 ~]$ ls -l
total 0
-rw-r--r--. 1 lisa sales 0 Feb 6 10:06 file1
æå¹ãªãã©ã€ã㪠ã°ã«ãŒããå€æŽããåŸããŠãŒã¶ãŒãäœæãããã¹ãŠã®æ°ãããã¡ã€ã«ã«ã¯ããã®ã°ã«ãŒããã°ã«ãŒãææè ãšããŠèšå®ãããŸããå ã®ãã©ã€ã㪠ã°ã«ãŒãèšå®ã«æ»ãã«ã¯ã次ã®ã³ãã³ãã䜿çšããŸãã çµäºãã.
ã³ãã³ãã䜿ããããã«ããã«ã¯ æ°ããã°ã«ãŒãã®å ŽåããŠãŒã¶ãŒã¯ãã©ã€ã㪠ã°ã«ãŒããšããŠäœ¿çšããã°ã«ãŒãã®ã¡ã³ããŒã§ããå¿ èŠããããŸãã ããã«ã次ã®ã³ãã³ãã䜿çšããŠãã°ã«ãŒã ãã¹ã¯ãŒããã°ã«ãŒãã«äœ¿çšã§ããŸãã gpasswdã ãŠãŒã¶ãŒãã³ãã³ãã䜿çšããå Žå æ°ããã°ã«ãŒããããã¿ãŒã²ãã ã°ã«ãŒãã®ã¡ã³ããŒã§ã¯ãªãå Žåãã·ã§ã«ã¯ã°ã«ãŒã ãã¹ã¯ãŒãã®å ¥åãæ±ããŸãã æ£ããã°ã«ãŒã ãã¹ã¯ãŒããå ¥åãããšãæ°ããæå¹ãªãã©ã€ã㪠ã°ã«ãŒããèšå®ãããŸãã
åºæ¬çãªæš©å©ã®ç®¡ç
Linux èš±å¯ã·ã¹ãã 㯠1970 幎代ã«çºæãããŸããã åœæã®ã³ã³ãã¥ãŒãã£ã³ã°ã®ããŒãºã¯éãããŠãããããåºæ¬çãªèš±å¯ã·ã¹ãã ã¯éåžžã«éãããŠããŸããã ãã®æš©éã·ã¹ãã ã¯ããã¡ã€ã«ãšãã£ã¬ã¯ããªã«é©çšã§ãã XNUMX ã€ã®æš©éã䜿çšããŸãã ãã®ã»ã¯ã·ã§ã³ã§ã¯ããããã®æš©éã䜿çšããã³å€æŽããæ¹æ³ãåŠç¿ããŸãã
èªã¿åããæžã蟌ã¿ãããã³å®è¡ã®ã¢ã¯ã»ã¹èš±å¯ã«ã€ããŠ
XNUMX ã€ã®äž»èŠãªæš©éã«ããããã¡ã€ã«ã®èªã¿åããæžã蟌ã¿ãå®è¡ãå¯èœã«ãªããŸãã ãããã®ã¢ã¯ã»ã¹èš±å¯ã®å¹æã¯ããã¡ã€ã«ãŸãã¯ãã£ã¬ã¯ããªã«é©çšãããå Žåã«ãã£ãŠç°ãªããŸãã èªã¿åãæš©éããã¡ã€ã«ã«é©çšãããšããã¡ã€ã«ãèªã¿åãçšã«éãæš©å©ãäžããããŸãã ãããã£ãŠããã®å 容ãèªã¿åãããšã¯ã§ããŸãããããã¯ãã³ã³ãã¥ãŒã¿ããã®ãã¡ã€ã«ãéããŠäœããè¡ãããšãã§ããããšãæå³ããŸãã
ããšãã°ãã©ã€ãã©ãªãžã®ã¢ã¯ã»ã¹ãå¿ èŠãªããã°ã©ã ãã¡ã€ã«ã«ã¯ããã®ã©ã€ãã©ãªãžã®èªã¿åãã¢ã¯ã»ã¹ãå¿ èŠã§ãã ãããã£ãŠãèªã¿åãæš©éã¯ããã¡ã€ã«ãæäœããããã«å¿ èŠãªæãåºæ¬çãªæš©éã§ãããšããããšã«ãªããŸãã
ãã£ã¬ã¯ããªã«é©çšãããšãèªã¿åãã«ãããã®ãã£ã¬ã¯ããªã®å 容ã衚瀺ã§ããŸãã ãã®æš©éã§ã¯ãã£ã¬ã¯ããªå ã®ãã¡ã€ã«ãèªã¿åãããšã¯ã§ããªãããšã«æ³šæããŠãã ããã Linux æš©éã·ã¹ãã ã¯ç¶æ¿ãèªèããªãããããã¡ã€ã«ãèªã¿åãå¯äžã®æ¹æ³ã¯ããã®ãã¡ã€ã«ã«å¯Ÿããèªã¿åãæš©éã䜿çšããããšã§ãã
ãããããæ³åã®ãšãããæžã蟌ã¿æš©éããã¡ã€ã«ã«é©çšãããŠããå Žåããã®ãã¡ã€ã«ãžã®æžã蟌ã¿ãèš±å¯ãããŸãã ã€ãŸããæ¢åã®ãã¡ã€ã«ã®å 容ãå€æŽã§ããŸãã ãã ããæ°ãããã¡ã€ã«ãäœæãŸãã¯åé€ãããããã¡ã€ã«ã®ã¢ã¯ã»ã¹èš±å¯ãå€æŽãããããããšã¯ã§ããŸããã ãããè¡ãã«ã¯ããã¡ã€ã«ãäœæãããã£ã¬ã¯ããªã«æžã蟌ã¿æš©éãäžããå¿ èŠããããŸãã ãã£ã¬ã¯ããªã§ã¯ããã®æš©éã«ãããæ°ãããµããã£ã¬ã¯ããªãäœæããã³åé€ããããšãã§ããŸãã
å®è¡æš©éã¯ããã¡ã€ã«ãå®è¡ããããã«å¿ èŠãªæš©éã§ãã ããã©ã«ãã§ã¯ã€ã³ã¹ããŒã«ãããªããããLinux ã¯ãŠã€ã«ã¹ã®åœ±é¿ãã»ãŒå®å šã«åããªããªããŸãã ãã£ã¬ã¯ããªã«å¯Ÿããæžã蟌ã¿æš©éãæã€ãŠãŒã¶ãŒã®ã¿ããå®è¡æš©éãé©çšã§ããŸãã
以äžã«ãåºæ¬çãªæš©éã®äœ¿çšæ³ããŸãšããŸãã
chmodã®äœ¿çš
æš©éã管çããã«ã¯ã次ã®ã³ãã³ãã䜿çšããŸã chmodã 䜿çšãã chmod ãŠãŒã¶ãŒãã°ã«ãŒããªã©ã®æš©éãèšå®ã§ããŸãã ãã®ã³ãã³ãã¯ãçžå¯Ÿã¢ãŒããšçµ¶å¯Ÿã¢ãŒãã® XNUMX ã€ã®ã¢ãŒãã§äœ¿çšã§ããŸãã 絶察ã¢ãŒãã§ã¯ãåºæ¬çãªæš©éã®èšå®ã« XNUMX æ¡ã䜿çšãããŸãã
æš©éãèšå®ãããšãã¯ãå¿
èŠãªå€ãèšç®ããŠãã ããã /somefile ã§ãŠãŒã¶ãŒã«å¯ŸããŠèªã¿åããæžã蟌ã¿ããã³å®è¡ãã°ã«ãŒãã«å¯ŸããŠèªã¿åãããã³å®è¡ããã®ä»ã«å¯ŸããŠèªã¿åãããã³å®è¡ãèšå®ããå Žåã¯ã次ã®ã³ãã³ãã䜿çšããŸãã chmod:
chmod 755 /somefile
䜿çšãããšã㯠chmod ãã®ããã«ããŠãçŸåšã®ãã¹ãŠã®æš©éããèšå®ããæš©éã«çœ®ãæããããŸãã
çŸåšã®ã¢ã¯ã»ã¹èš±å¯ã«é¢é£ããã¢ã¯ã»ã¹èš±å¯ãå€æŽãããå Žåã¯ã次ã®ããã«äœ¿çšã§ããŸãã chmod çžå¯Ÿã¢ãŒãã§ã 䜿çšãã chmod çžå¯Ÿã¢ãŒãã§ã¯ãXNUMX ã€ã®ã€ã³ãžã±ãŒã¿ãŒã䜿çšããŠãäœããããã®ãã瀺ããŸãã
- ãŸããã¢ã¯ã»ã¹èš±å¯ãå€æŽãã察象ãæå®ããŸãã ãããè¡ãã«ã¯ããŠãŒã¶ãŒ (uïŒã ã°ã«ãŒã ïŒgïŒ ãã®ä» ïŒo).
- 次ã«ãã¹ããŒãã¡ã³ãã䜿çšããŠçŸåšã®ã¢ãŒãã«ã¢ã¯ã»ã¹èš±å¯ãè¿œå ãŸãã¯åé€ãããããããã絶察ã«èšå®ããŸãã
- æåŸã«äœ¿çšããã®ã¯ r, w О xãã¯ãªãã¯ããŠãèšå®ããæš©éãæå®ããŸãã
çžå¯Ÿã¢ãŒãã§æš©éãå€æŽããå Žåããtoãéšåãã¹ãããããŠããã¹ãŠã®ãªããžã§ã¯ãã®æš©éãè¿œå ãŸãã¯åé€ã§ããŸãã ããšãã°ã次ã®ã³ãã³ãã¯ãã¹ãŠã®ãŠãŒã¶ãŒã«å®è¡æš©éãè¿œå ããŸãã
chmod +x somefile
çžå¯Ÿã¢ãŒãã§äœæ¥ããå Žåã¯ãããè€éãªã³ãã³ãã䜿çšã§ããŸãã ããšãã°ã次ã®ã³ãã³ãã¯ã°ã«ãŒãã«æžã蟌ã¿æš©éãè¿œå ããä»ã®ã°ã«ãŒãã®èªã¿åãæš©éãåé€ããŸãã
chmod g+w,o-r somefile
䜿çšããŠããå Žå chmod -R o+rx /data /data ãã£ã¬ã¯ããªå ã®ãã¹ãŠã®ãã£ã¬ã¯ããªãšãã¡ã€ã«ã«å¯ŸããŠå®è¡æš©éãèšå®ããŸãã ãã¡ã€ã«ã§ã¯ãªããã£ã¬ã¯ããªã®ã¿ã«å®è¡æš©éãèšå®ããã«ã¯ã次ã䜿çšããŸãã chmod -R o+ rX /data.
倧æåã® X ã¯ããã¡ã€ã«ãäžéšã®ãªããžã§ã¯ãã«å¯ŸããŠå®è¡æš©éãèšå®ããŠããªãéãããã¡ã€ã«ãå®è¡æš©éãååŸããªãããšãä¿èšŒããŸãã ããã«ãããX ã¯å®è¡æš©éãããè³¢ãåŠçã§ããããã«ãªããŸãã ããã«ãããå¿ èŠã®ãªããã¡ã€ã«ã«ãã®æš©éãèšå®ããããšããªããªããŸãã
æ¡åŒµãããæš©å©
Linux ã«ã¯ãå ã»ã©èª¬æããåºæ¬çãªæš©éã«å ããŠãäžé£ã®é«åºŠãªæš©éããããŸãã ãããã¯ããã©ã«ãã§èšå®ãããæš©éã§ã¯ãããŸãããã䟿å©ãªè¿œå æ©èœãæäŸããå ŽåããããŸãã ãã®ã»ã¯ã·ã§ã³ã§ã¯ãããããäœã§ãããããããŠããããèšå®ããæ¹æ³ã«ã€ããŠåŠã³ãŸãã
SUIDãGUIDãããã³ã¹ãã£ãã㌠ãããã®æ¡åŒµã¢ã¯ã»ã¹èš±å¯ã«ã€ããŠ
XNUMX ã€ã®é«åºŠãªæš©éããããŸãã XNUMX ã€ç®ã¯ããŠãŒã¶ãŒèå¥å (SUID) ãèšå®ããæš©éã§ãã äžéšã®ç¹æ®ãªã±ãŒã¹ã§ã¯ããã®ã¢ã¯ã»ã¹èš±å¯ãå®è¡å¯èœãã¡ã€ã«ã«é©çšã§ããŸãã ããã©ã«ãã§ã¯ãå®è¡å¯èœãã¡ã€ã«ãå®è¡ãããŠãŒã¶ãŒã¯ãç¬èªã®æš©éã§ãã®ãã¡ã€ã«ãå®è¡ããŸãã
äžè¬ã®ãŠãŒã¶ãŒã«ãšã£ãŠãããã¯éåžžãããã°ã©ã ã®äœ¿çšãå¶éãããŠããããšãæå³ããŸãã ãã ããå Žåã«ãã£ãŠã¯ããŠãŒã¶ãŒã¯ç¹å®ã®ã¿ã¹ã¯ãå®è¡ããããã ãã«ç¹å¥ãªæš©éãå¿ èŠãšããŸãã
ããšãã°ããŠãŒã¶ãŒããã¹ã¯ãŒããå€æŽããå¿ èŠãããç¶æ³ãèããŠã¿ãŸãããã ãããè¡ãã«ã¯ããŠãŒã¶ãŒã¯æ°ãããã¹ã¯ãŒãã /etc/shadow ãã¡ã€ã«ã«æžã蟌ãå¿ èŠããããŸãã ãã ãããã®ãã¡ã€ã«ã¯ root 以å€ã®ãŠãŒã¶ãŒã¯æžã蟌ã¿ã§ããŸããã
root@hnl ~]# ls -l /etc/shadow
----------. 1 root root 1184 Apr 30 16:54 /etc/shadow
SUID æš©éã¯ããã®åé¡ã®è§£æ±ºçãæäŸããŸãã /usr/bin/passwd ãŠãŒãã£ãªãã£ã¯ãããã©ã«ãã§ãã®æš©éã䜿çšããŸãã ã€ãŸãããã¹ã¯ãŒããå€æŽãããšããŠãŒã¶ãŒã¯äžæçã« root ã«ãªãã/etc/shadow ãã¡ã€ã«ã«æžã蟌ãããšãã§ããããã«ãªããŸãã SUID æš©éã¯æ¬¡ã®ã³ãã³ãã§ç¢ºèªã§ããŸãã ls -l æ¹æ³ s éåžžèŠãããã§ãããäœçœ®ã« x ã«ã¹ã¿ã æš©éã®å Žå:
[root@hnl ~]# ls -l /usr/bin/passwd
-rwsr-xr-x. 1 root root 32680 Jan 28 2010 /usr/bin/passwd
SUID æš©éã¯äŸ¿å©ããã«èŠããŸãã (å Žåã«ãã£ãŠã¯äŸ¿å©ã§ã)ãåæã«æœåšçã«å±éºã§ããããŸãã æ£ããé©çšãããŠããªãå Žåã誀ã£ãŠ root æš©éãè²æž¡ããŠããŸãå¯èœæ§ããããŸãã ãããã£ãŠã现å¿ã®æ³šæãæã£ãŠäœ¿çšããããšããå§ãããŸãã
ã»ãšãã©ã®ç®¡çè ã¯ããã䜿çšããå¿ èŠã¯ãããŸããã ãªãã¬ãŒãã£ã³ã° ã·ã¹ãã ãããã©ã«ãã§èšå®ããå¿ èŠãããäžéšã®ãã¡ã€ã«ã§ã®ã¿è¡šç€ºãããŸãã
XNUMX çªç®ã®ç¹å¥ãªæš©éã¯ã°ã«ãŒã ID (SGID) ã§ãã ãã®èš±å¯ã«ã¯ XNUMX ã€ã®å¹æããããŸãã å®è¡å¯èœãã¡ã€ã«ã«é©çšãããšããã¡ã€ã«ãå®è¡ãããŠãŒã¶ãŒã«ãã¡ã€ã«ã®ã°ã«ãŒãææè ã®æš©éãäžããããŸãã ãããã£ãŠãSGID 㯠SUID ãšã»ãŒåãããšãè¡ãããšãã§ããŸãã ãã ããSGID ã¯ãã®ç®çã«ã¯ã»ãšãã©äœ¿çšãããŸããã
SUID æš©éãšåæ§ã«ãSGID ã¯ããã©ã«ãèšå®ãšããŠäžéšã®ã·ã¹ãã ãã¡ã€ã«ã«é©çšãããŸãã
SGID ããã£ã¬ã¯ããªã«é©çšãããšããã®ãã£ã¬ã¯ããªå ã«äœæããããã¡ã€ã«ããã³ãµããã£ã¬ã¯ããªã®ããã©ã«ãã®ã°ã«ãŒãææè ãèšå®ããããã«äœ¿çšã§ããããã䟿å©ã§ãã ããã©ã«ãã§ã¯ããŠãŒã¶ãŒããã¡ã€ã«ãäœæãããšããã®ãŠãŒã¶ãŒã®å®å¹ãã©ã€ã㪠ã°ã«ãŒãããã®ãã¡ã€ã«ã®ã°ã«ãŒãææè ãšããŠèšå®ãããŸãã
ããã¯ãç¹ã« Red Hat/CentOS ãŠãŒã¶ãŒã®ãã©ã€ã㪠ã°ã«ãŒãããŠãŒã¶ãŒãšåãååã®ã°ã«ãŒãã«èšå®ãããŠããããã®ãŠãŒã¶ãŒãå¯äžã®ã¡ã³ããŒã§ãããããå¿ ããã䟿å©ã§ãããšã¯éããŸããã ãããã£ãŠãããã©ã«ãã§ã¯ããŠãŒã¶ãŒãäœæãããã¡ã€ã«ã¯äžæ¬ã§å ±æãããŸãã
ãŠãŒã¶ãŒã® linda ãš lori ãäŒèšã§åããŠãããã°ã«ãŒãã®ã¡ã³ããŒã§ããç¶æ³ãæ³åããŠãã ããã ã¢ã«ãŠã³ãã ããã©ã«ãã§ã¯ããããã®ãŠãŒã¶ãŒã¯ãã©ã€ããŒã ã°ã«ãŒãã®ã¡ã³ããŒã§ããããã®å¯äžã®ã¡ã³ããŒã§ãã ãã ããäž¡æ¹ã®ãŠãŒã¶ãŒã¯ã¢ã«ãŠã³ã ã°ã«ãŒãã®ã¡ã³ããŒã§ãããã»ã«ã³ã㪠ã°ã«ãŒã ãã©ã¡ãŒã¿ãŒãšããŠãæ©èœããŸãã
ããã©ã«ãã®ç¶æ³ã§ã¯ããããã®ãŠãŒã¶ãŒã®ããããããã¡ã€ã«ãäœæãããšããã©ã€ã㪠ã°ã«ãŒããææè ã«ãªããŸãã ãããã£ãŠãããã©ã«ãã§ã¯ãlinda 㯠lori ãäœæãããã¡ã€ã«ã«ã¢ã¯ã»ã¹ã§ããããã®éãåæ§ã§ãã ãã ããå ±æã°ã«ãŒã ãã£ã¬ã¯ã㪠(/groups/account ãªã©) ãäœæããSGID æš©éããã®ãã£ã¬ã¯ããªã«é©çšãããã°ã«ãŒã ã¢ã«ãŠã³ãããã®ãã£ã¬ã¯ããªã®ã°ã«ãŒãææè ã«èšå®ãããŠããããšã確èªãããšããã®ãã£ã¬ã¯ããªå ã«äœæããããã¹ãŠã®ãã¡ã€ã«ãšãã®ãã£ã¬ã¯ããªå ã®ãã¹ãŠã®ãã¡ã€ã«ããµããã£ã¬ã¯ã㪠ãããã©ã«ãã®ã°ã«ãŒãææè ãšããŠã°ã«ãŒã ã¢ã«ãŠã³ããååŸããŸãã
ãã®ãããSGID æš©éã¯ããããªã㯠ã°ã«ãŒã ãã£ã¬ã¯ããªã«èšå®ããéåžžã«äŸ¿å©ãªæš©éã§ãã
åºåã«è¡šç€ºããã SGID æš©é ls -l æ¹æ³ s éåžžãã°ã«ãŒããå®è¡ããæš©éãããäœçœ®ã«ãããŸãã
[root@hnl data]# ls -ld account
drwxr-sr-x. 2 root account 4096 Apr 30 21:28 account
ç¹å¥ãªã¢ã¯ã»ã¹èš±å¯ã® XNUMX çªç®ã¯ã¹ãã£ãã㌠ãããã§ãã ãã®æš©éã¯ãè€æ°ã®ãŠãŒã¶ãŒãåããã£ã¬ã¯ããªãžã®æžã蟌ã¿ã¢ã¯ã»ã¹æš©ãæã£ãŠããç°å¢ã§ããã¡ã€ã«ã誀ã£ãŠåé€ããªãããã«ä¿è·ããã®ã«åœ¹ç«ã¡ãŸãã ã¹ãã£ãã㌠ãããã䜿çšãããŠããå ŽåããŠãŒã¶ãŒã¯ããã®ãã¡ã€ã«ãå«ãŸãããã¡ã€ã«ãŸãã¯ãã£ã¬ã¯ããªã®ãŠãŒã¶ãŒææè ã§ããå Žåã«ã®ã¿ãã¡ã€ã«ãåé€ã§ããŸãã ãã®ããããã㯠/tmp ãã£ã¬ã¯ããªã®ããã©ã«ãã®ã¢ã¯ã»ã¹èš±å¯ãšããŠäœ¿çšããããããªã㯠ã°ã«ãŒã ãã£ã¬ã¯ããªã«ã圹ç«ã¡ãŸãã
ã¹ãã£ãã㌠ãããã䜿çšããªãå ŽåããŠãŒã¶ãŒããã£ã¬ã¯ããªå ã«ãã¡ã€ã«ãäœæã§ããå Žåã¯ããã®ãã£ã¬ã¯ããªãããã¡ã€ã«ãåé€ããããšãã§ããŸãã å ¬éã°ã«ãŒãç°å¢ã§ã¯ãããã¯ç ©ãããå ŽåããããŸãã ãŠãŒã¶ãŒ linda ãš lori ããã©ã¡ãã /data/account ãã£ã¬ã¯ããªãžã®æžã蟌ã¿æš©éãæã¡ãã¢ã«ãŠã³ã ã°ã«ãŒãã®ã¡ã³ããŒã«ãªãããšã§ãããã®æš©éãååŸããŠãããšããŸãã ãããã£ãŠãlinda 㯠lori ã«ãã£ãŠäœæããããã¡ã€ã«ãåé€ããããšãã§ãããŸããã®éãå¯èœã§ãã
ã¹ãã£ãã㌠ããããé©çšãããšããŠãŒã¶ãŒã¯æ¬¡ã®æ¡ä»¶ã®ããããã«è©²åœããå Žåã«ã®ã¿ãã¡ã€ã«ãåé€ã§ããŸãã
- ãŠãŒã¶ãŒã¯ãã¡ã€ã«ã®ææè ã§ãã
- ãŠãŒã¶ãŒã¯ããã¡ã€ã«ãé 眮ãããŠãããã£ã¬ã¯ããªã®ææè ã§ãã
䜿çšããŠããå Žå ls -lãã¹ãã£ãããŒãããã¯æ¬¡ã®ããã«è¡šç€ºãããŸã t éåžžã¯ä»ã®ãŠãŒã¶ãŒã®å®è¡èš±å¯ã衚瀺ãããäœçœ®ã«ãããŸãã
[root@hnl data]# ls -ld account/
drwxr-sr-t. 2 root account 4096 Apr 30 21:28 account/
æ¡åŒµæš©å©ã®é©çš
SUIDãSGIDãã¹ãã£ãã㌠ããããé©çšããã«ã¯ã次ã®æ¹æ³ã䜿çšã§ããŸãã chmodã SUID ã®æ°å€ã¯ 4ãSGID ã®æ°å€ã¯ 2ãã¹ãã£ãã㌠ãããã®æ°å€ã¯ 1 ã§ãã
ãããã®æš©éãé©çšãããå Žåã¯ãXNUMX æ¡ã®åŒæ°ãè¿œå ããå¿ èŠããããŸãã chmodãæåã®æ°åã¯ç¹å¥ãªæš©éãæããŸãã ããšãã°ã次ã®è¡ã¯ããã£ã¬ã¯ããªã« SGID æš©éãè¿œå ãããŠãŒã¶ãŒã« rwx ãèšå®ããã°ã«ãŒããªã©ã« rx ãèšå®ããŸãã
chmod 2755 /somedir
äœæ¥ããåã«èšå®ãããŠããçŸåšã®æš©éã確èªããå¿ èŠãããå Žåãããã¯ããªãéçŸå®çã§ãã chmod 絶察ã¢ãŒãã§ã (ããããªããšãã¢ã¯ã»ã¹èš±å¯ãäžæžããããå±éºããããŸãã) ãããã£ãŠãç¹å¥ãªã¢ã¯ã»ã¹èš±å¯ã®ãããããé©çšããå¿ èŠãããå Žåã¯ãçžå¯Ÿã¢ãŒãã§å®è¡ããããšããå§ãããŸãã
- SUIDã䜿çšããå Žå chmod u+s.
- SGIDã䜿çšããå Žå chmod g + s.
- ã¹ãã£ãããŒãããçšé chmod +tã®åŸã«ãã¢ã¯ã»ã¹èš±å¯ãèšå®ãããã¡ã€ã«ãŸãã¯ãã£ã¬ã¯ããªã®ååãç¶ããŸãã
ãã®è¡šã«ã¯ãç¹å¥ãªã¢ã¯ã»ã¹èš±å¯ã®ç®¡çã«ã€ããŠç¥ã£ãŠããå¿ èŠããããã¹ãŠããŸãšããããŠããŸãã
ç¹å¥ãªæš©éã䜿çšããäœæ¥ã®äŸ
ãã®äŸã§ã¯ãç¹å¥ãªã¢ã¯ã»ã¹èš±å¯ã䜿çšããŠãã°ã«ãŒã ã¡ã³ããŒãå ±æã°ã«ãŒã ãã£ã¬ã¯ããªå ã®ãã¡ã€ã«ãç°¡åã«å ±æã§ããããã«ããŸãã èšå®ãããã°ã«ãŒã ID ãšã¹ãã£ãã㌠ãããã« ID ããããå²ãåœãŠãŸããããããèšå®ããããšãã°ã«ãŒã ã¡ã³ããŒãå ±åäœæ¥ããããããæ©èœãè¿œå ãããããšãããããŸãã
- linda ãŠãŒã¶ãŒã§ããã¿ãŒããã«ãéããŸãã ã³ãã³ãã§ãŠãŒã¶ãŒãäœæã§ããŸã ãŠãŒã¶ãŒè¿œå ãªã³ãããã¹ã¯ãŒããè¿œå ãã¹ã¯ãŒããªã³ã.
- 次ã®ã³ãã³ãã䜿çšããŠãã«ãŒãã« /data ãã£ã¬ã¯ããªãš /data/sales ãµããã£ã¬ã¯ããªãäœæããŸãã mkdir -p /ããŒã¿/販売ã å®äº CD/ããŒã¿/販売販売ãã£ã¬ã¯ããªã«ç§»åããŸãã å®äº ãªã³ã1ã«è§ŠããŠãã ãã О ãªã³ã2ã«è§ŠããŠãã ããlinda ãææãã XNUMX ã€ã®ç©ºã®ãã¡ã€ã«ãäœæããŸãã
- å®è¡ãã ã¹ãŒãªãµ çŸåšã®ãŠãŒã¶ãŒããå¶æ¥ã°ã«ãŒãã®ã¡ã³ããŒã§ããããŠãŒã¶ãŒ lisa ã«åãæ¿ããŸãã
- å®è¡ãã CD/ããŒã¿/販売 ãããŠãã®ãã£ã¬ã¯ããªããå®è¡ããŸã ls -lã linda ãŠãŒã¶ãŒã«ãã£ãŠäœæãããlinda ã°ã«ãŒãã«å±ãã XNUMX ã€ã®ãã¡ã€ã«ã衚瀺ãããŸãã å®è¡ãã rm -f ãªã³ã*ã ããã«ãããäž¡æ¹ã®ãã¡ã€ã«ãåé€ãããŸãã
- å®è¡ãã ãªãµ1ã«è§ŠããŠãã ãã О ãªãµ2ã«è§ŠããŠãã ãããŠãŒã¶ãŒ lisa ãææãã XNUMX ã€ã®ãã¡ã€ã«ãäœæããŸãã
- å®è¡ãã ã㌠暩éã root ã«ææ ŒãããŸãã
- å®è¡ãã chmod g+s,o+t /data/saleså ±æã°ã«ãŒã ãã£ã¬ã¯ããªå ã®ã°ã«ãŒãèå¥å (GUID) ããããšã¹ãã£ãã㌠ããããèšå®ããŸãã
- å®è¡ãã ã¹ãªã³ãã ãããªããããã ãªã³ã3ã«è§ŠããŠãã ãã О ãªã³ã4ã«è§ŠããŠãã ããã äœæãã XNUMX ã€ã®ãã¡ã€ã«ã sales ã°ã«ãŒã (/data/sales ãã£ã¬ã¯ããªã®ã°ã«ãŒãææè ) ã«ãã£ãŠææãããŠããããšãããããŸãã
- å®è¡ãã rm -rf ãªãµ*ã ããªãã¯ãããã®ãã¡ã€ã«ã®ææè ã§ã¯ãªããããã¹ãã£ãã㌠ãããã«ãããlinda ãŠãŒã¶ãŒã«ä»£ãã£ãŠãããã®ãã¡ã€ã«ãåé€ãããã®ãé²ããŸãã linda ãŠãŒã¶ãŒã /data/sales ãã£ã¬ã¯ããªã®ææè ã§ããå Žåã¯ããããã®ãã¡ã€ã«ãåé€ã§ããããšã«æ³šæããŠãã ããã
Linux ã§ã® ACL 管ç (setfaclãgetfacl)
äžã§èª¬æããæ¡åŒµã¢ã¯ã»ã¹èš±å¯ã¯ãLinux ã«ããã¢ã¯ã»ã¹èš±å¯ã®åŠçæ¹æ³ã«äŸ¿å©ãªæ©èœãè¿œå ããŸãããåããã¡ã€ã«å ã§è€æ°ã®ãŠãŒã¶ãŒãŸãã¯ã°ã«ãŒãã«ã¢ã¯ã»ã¹èš±å¯ãä»äžããããšã¯ã§ããŸããã
ã¢ã¯ã»ã¹å¶åŸ¡ãªã¹ãã¯ãã®æ©èœãæäŸããŸãã ããã«ã管çè ã¯ããã©ã«ãã®ã¢ã¯ã»ã¹èš±å¯ãè€éãªæ¹æ³ã§èšå®ã§ããèšå®ãããã¢ã¯ã»ã¹èš±å¯ã¯ãã£ã¬ã¯ããªããšã«ç°ãªãå ŽåããããŸãã
ACL ã«ã€ããŠ
ACL ãµãã·ã¹ãã ã¯ãµãŒããŒã«åªããæ©èœãè¿œå ããŸããããã¹ãŠã®ãŠãŒãã£ãªãã£ãããããµããŒãããŠããããã§ã¯ãªããšããæ¬ ç¹ã XNUMX ã€ãããŸãã ãããã£ãŠããã¡ã€ã«ãã³ããŒãŸãã¯ç§»åãããš ACL èšå®ã倱ãããå¯èœæ§ããããããã¯ã¢ãã ãœãããŠã§ã¢ã ACL èšå®ã®ããã¯ã¢ããã«å€±æããå¯èœæ§ããããŸãã
tar ãŠãŒãã£ãªãã£ã¯ ACL ããµããŒãããŠããŸããã ããã¯ã¢ããã®äœææã« ACL èšå®ã倱ãããªãããã«ããã«ã¯ã次ã䜿çšããŸãã æ ã¿ãŒã«ã®ä»£ããã«ã æ tar ãšåããªãã·ã§ã³ã§åäœããŸãã ACL èšå®ã®ãµããŒããè¿œå ããã ãã§ãã
次ã䜿çšã㊠ACL ãããã¯ã¢ããããããšãã§ããŸãã getfaclããã¯ãsetfacl ã³ãã³ãã䜿çšããŠåŸ©å ã§ããŸãã ããã¯ã¢ãããäœæããã«ã¯ã次ã䜿çšããŸã getfacl -R /ãã£ã¬ã¯ã㪠> file.aclsã ããã¯ã¢ãã ãã¡ã€ã«ããèšå®ã埩å ããã«ã¯ã次ã䜿çšããŸãã setfacl --restore=file.acl.
äžéšã®ããŒã«ã«ãããµããŒãã®æ¬ åŠã¯åé¡ã«ã¯ãªããŸããã ACL ã¯ãåã
ã®ãã¡ã€ã«ã§ã¯ãªããæ§é çãªæ段ãšããŠãã£ã¬ã¯ããªã«é©çšãããããšããããããŸãã
ãããã£ãŠããã¡ã€ã« ã·ã¹ãã å
ã®é©åãªå Žæã«é©çšããããã®ã¯å€ãã¯ãããŸããããã»ãã®ãããã§ãã ãããã£ãŠãããã¯ã¢ãã ãœãããŠã§ã¢ããµããŒãããŠããªãå Žåã§ãã䜿çšããå
ã® ACL ã埩å
ããã®ã¯æ¯èŒçç°¡åã§ãã
ACL çšã®ãã¡ã€ã« ã·ã¹ãã ã®æºå
ACL ã®æäœãéå§ããåã«ãACL ããµããŒãããããã«ãã¡ã€ã« ã·ã¹ãã ãæºåããå¿ èŠãããå ŽåããããŸãã ãã¡ã€ã« ã·ã¹ãã ã®ã¡ã¿ããŒã¿ãæ¡åŒµããå¿ èŠãããããããã¡ã€ã« ã·ã¹ãã 㧠ACL ãåžžã«ããã©ã«ãã§ãµããŒããããŠããããã§ã¯ãããŸããã ãã¡ã€ã« ã·ã¹ãã ã® ACL ãèšå®ãããšãã«ãæäœã¯ãµããŒããããŠããŸããããšããã¡ãã»ãŒãžã衚瀺ãããå Žåã¯ããã¡ã€ã« ã·ã¹ãã ã ACL ããµããŒãããŠããªãå¯èœæ§ããããŸãã
ãããä¿®æ£ããã«ã¯ããªãã·ã§ã³ãè¿œå ããå¿ èŠããããŸã ACLããŠã³ã /etc/fstab ã«ããããããã¡ã€ã«ã·ã¹ãã ã¯ããã©ã«ã㧠ACL ãµããŒãã䜿çšããŠããŠã³ããããŸãã
setfacl ããã³ getfacl ã䜿çšãã ACL èšå®ã®å€æŽããã³è¡šç€º
ACL ãèšå®ããã«ã¯ã次ã®ã³ãã³ããå¿ èŠã§ãã setfaclã çŸåšå¿ èŠãª ACL èšå®ã確èªããã«ã¯ getfacl. ããŒã ls -l æ¢åã® ACL ã¯è¡šç€ºãããŸããã æš©éãªã¹ãã®åŸã« + ã衚瀺ãããã ãã§ãACL ããã¡ã€ã«ã«ãé©çšãããããšã瀺ããŸãã
ACL ãèšå®ããåã«ãçŸåšã® ACL èšå®ã衚瀺ããããšããå§ãããŸãã getfaclã 以äžã®äŸã§ã¯ã次ã®ããã«çŸåšã®æš©éã確èªã§ããŸãã ls -lããŸãã次ã®ããã« getfaclã ããèŠããšã衚瀺ãããŠããæ å ±ããŸã£ããåãã§ããããšãããããŸãã
[root@server1 /]# ls -ld /dir
drwxr-xr-x. 2 root root 6 Feb 6 11:28 /dir
[root@server1 /]# getfacl /dir
getfacl: Removing leading '/' from absolute path names
# file: dir
# owner: root
# group: root
user::rwx
group::r-x
other::r-x
ã³ãã³ããå®è¡ããçµæã getfacl 以äžã§ã¯ããŠãŒã¶ãŒãã°ã«ãŒãããã®ä»ã® XNUMX ã€ã®ç°ãªããªããžã§ã¯ãã«å¯Ÿããæš©éã衚瀺ãããŠããããšãããããŸãã 次ã«ãACL ãè¿œå ããŠãå¶æ¥ã°ã«ãŒãã«èªã¿åãããã³å®è¡æš©éãä»äžããŸãããã ãã®ããã®ã³ãã³ã setfacl -mg:sales:rx /dirã ãã®ããŒã ã§ã¯ -m çŸåšã® ACL èšå®ãå€æŽããå¿ èŠãããããšã瀺ããŸãã ãã®åŸ g:販売:rx ã³ãã³ãã«èªã¿åãå®è¡ ACL ãèšå®ããããã«æ瀺ããŸã (rx) ã°ã«ãŒã (gïŒã®è²©å£²ã 以äžã«ãã³ãã³ããã©ã®ãããªãã®ã§ããããããã³çŸåšã® ACL èšå®ãå€æŽããåŸã® getfacl ã³ãã³ãã®åºåã瀺ããŸãã
[root@server1 /]# setfacl -m g:sales:rx /dir
[root@server1 /]# getfacl /dir
getfacl: Removing leading '/' from absolute path names
# file: dir
# owner: root
# group: root
user::rwx
group::r-x
group:sales:r-x
mask::r-x
other::r-x
ã°ã«ãŒã ACL ã®èšå®æ¹æ³ãç解ããã®ã§ããŠãŒã¶ãŒãšä»ã®ãŠãŒã¶ãŒã® ACL ãç解ããã®ã¯ç°¡åã§ãã ããšãã°ã次ã®ã³ãã³ã㯠setfacl -mu:liâânda:rwx /data ãŠãŒã¶ãŒ linda ãææè ã«ããããçŸåšã®ææè ã®å²ãåœãŠãå€æŽãããããã«ã/data ãã£ã¬ã¯ããªå ã®ã¢ã¯ã»ã¹èš±å¯ããŠãŒã¶ãŒ linda ã«äžããŸãã
ããŒã setfacl å€ãã®æ©èœãšãªãã·ã§ã³ããããŸãã ç¹ã«éèŠãªãªãã·ã§ã³ã® XNUMX ã€ã§ãããã©ã¡ãŒã¿ -Rã ãã®ãªãã·ã§ã³ã䜿çšãããšãACL ãèšå®ãããã£ã¬ã¯ããªã«çŸåšååšãããã¹ãŠã®ãã¡ã€ã«ãšãµããã£ã¬ã¯ããªã« ACL ãèšå®ãããŸãã æ¢åã®ãã£ã¬ã¯ããªã® ACL ãå€æŽããå Žåã¯ãåžžã«ãã®ãªãã·ã§ã³ã䜿çšããããšããå§ãããŸãã
ããã©ã«ãACLã®æäœ
ACL ã䜿çšããå©ç¹ã® XNUMX ã€ã¯ããã£ã¬ã¯ããªå ã®è€æ°ã®ãŠãŒã¶ãŒãŸãã¯ã°ã«ãŒãã«ã¢ã¯ã»ã¹èš±å¯ãä»äžã§ããããšã§ãã ãã XNUMX ã€ã®å©ç¹ã¯ãããã©ã«ã ACL ã䜿çšããŠç¶æ¿ãæå¹ã«ã§ããããšã§ãã
ããã©ã«ãã® ACL ãèšå®ããããšã«ããããã£ã¬ã¯ããªå ã«äœæããããã¹ãŠã®æ°ããã¢ã€ãã ã«èšå®ãããã¢ã¯ã»ã¹èš±å¯ã決å®ããŸãã ããã©ã«ãã® ACL ã§ã¯ãæ¢åã®ãã¡ã€ã«ãšãµããã£ã¬ã¯ããªã®ã¢ã¯ã»ã¹èš±å¯ãå€æŽãããªãããšã«æ³šæããŠãã ããã ããããå€æŽããã«ã¯ãéåžžã® ACL ãè¿œå ããå¿ èŠããããŸãã
ããã¯ç¥ã£ãŠããããšãéèŠã§ãã ACL ã䜿çšããŠè€æ°ã®ãŠãŒã¶ãŒãŸãã¯ã°ã«ãŒããåããã£ã¬ã¯ããªã«ã¢ã¯ã»ã¹ããããã«æ§æããå Žåã¯ãACL ã XNUMX åèšå®ããå¿ èŠããããŸãã åããŠã®äœ¿çš setfacl -R -mçŸåšã®ãã¡ã€ã«ã® ACL ãå€æŽããŸãã 次ã«ã䜿çšããŸã setfacl-md:åæ§ã«äœæããããã¹ãŠã®æ°ããèŠçŽ ãåŠçããŸãã
ããã©ã«ãã® ACL ãèšå®ããã«ã¯ããªãã·ã§ã³ãè¿œå ããã ãã§ãã d ãªãã·ã§ã³åŸ -m ïŒé åºã¯éèŠã§ãïŒïŒã ããã§äœ¿çšããŠãã ãã setfacl -md:g:sales:rx /data/data ãã£ã¬ã¯ããªã«äœæããããã®ãã°ã«ãŒãå¶æ¥ã«èªã¿åã£ãŠå®è¡ããããå Žåã
ããã©ã«ãã® ACL ã䜿çšããå Žåãä»ã® ACL ãèšå®ãããšäŸ¿å©ãªå ŽåããããŸãã ã䜿çšããŠä»ã®äººã®æš©éãå€æŽããããšãã§ãããããããã¯éåžžã¯ããŸãæå³ããããŸããã chmodã ãã ããã§ããªãããšã¯ã chmodã¯ãäœæããããã¹ãŠã®æ°ãããã¡ã€ã«ã«å¯ŸããŠä»ã®ãŠãŒã¶ãŒã«ä»äžããå¿ èŠãããæš©éãæå®ããããšã§ãã /data ã§äœæããããã®ã«å¯Ÿããæš©éãä»ã®äººãååŸã§ããªãããã«ãããå Žåã¯ãããšãã°æ¬¡ã®ããã«äœ¿çšããŸãã setfacl -md:o::- /data.
ACL ãšéåžžã®ã¢ã¯ã»ã¹èš±å¯ã¯ãå¿ ãããé©åã«çµ±åãããŠããããã§ã¯ãããŸããã ããã©ã«ãã® ACL ããã£ã¬ã¯ããªã«é©çšããé ç®ããã®ãã£ã¬ã¯ããªã«è¿œå ãããŠãããéåžžã®ã¢ã¯ã»ã¹èš±å¯ãå€æŽããããšãããšãåé¡ãçºçããå¯èœæ§ããããŸãã éåžžã®ã¢ã¯ã»ã¹èš±å¯ã«é©çšãããå€æŽã¯ãACL ã®æŠèŠã«ã¯ååã«åæ ãããŸããã åé¡ãåé¿ããã«ã¯ãæåã«éåžžã®ã¢ã¯ã»ã¹èš±å¯ãèšå®ãã次ã«ããã©ã«ãã® ACL ãèšå®ããŸã (ãã®åŸãACL ãå床å€æŽããªãããã«ããŠãã ãã)ã
ACL ã䜿çšããææ Œãããæš©é管çã®äŸ
ãã®äŸã§ã¯ãåã«äœæãã /data/account ãã£ã¬ã¯ããªãš /data/sales ãã£ã¬ã¯ããªãåŒãç¶ã䜿çšããŸãã åã®äŸã§ã¯ã販売ã°ã«ãŒãã /data/sales ã«å¯Ÿããã¢ã¯ã»ã¹èš±å¯ãæã¡ãã¢ã«ãŠã³ã ã°ã«ãŒãã /data/account ã«å¯Ÿããã¢ã¯ã»ã¹èš±å¯ãæã£ãŠããããšã確èªããŸããã
ãŸããã¢ã«ãŠã³ã ã°ã«ãŒãã /data/sales ãã£ã¬ã¯ããªã«å¯Ÿããèªã¿åãæš©éãååŸããsales ã°ã«ãŒãã /data/account ãã£ã¬ã¯ããªã«å¯Ÿããèªã¿åãæš©éãååŸããŠããããšã確èªããŸãã
次ã«ãããã©ã«ãã® ACL ãèšå®ããŠããã¹ãŠã®æ°ãããã¡ã€ã«ã«ãã¹ãŠã®æ°ããã¢ã€ãã ã«å¯Ÿããã¢ã¯ã»ã¹èš±å¯ãæ£ããèšå®ãããŠããããšã確èªããŸãã
- ã¿ãŒããã«ãéããŸãã
- å®è¡ãã setfacl -mg:account:rx /data/sales О setfacl -mg:sales:rx /data/account.
- å®è¡ãã getfaclæš©éãåžæã©ããã«èšå®ãããŠããããšã確èªããŸãã
- å®è¡ãã setfacl -md:g:account:rwx,g:sales:rx /data/salessales ãã£ã¬ã¯ããªã®ããã©ã«ã ACL ãèšå®ããŸãã
- 次ã䜿çšããŠã/data/account ãã£ã¬ã¯ããªã®ããã©ã«ã ACL ãè¿œå ããŸãã setfacl -md:g:sales:rwx,g:account:rx /data/account.
- æ°ãããã¡ã€ã«ã /data/sales ã«è¿œå ããŠãACL èšå®ãæå¹ã§ããããšã確èªããŸãã å®äº touch /data/sales/newfile ãããŠããããŸã getfacl /data/sales/newfile çŸåšã®æš©éã確èªããŸãã
umask ã䜿çšããããã©ã«ãã®æš©éã®èšå®
äžèšã§ã¯ãããã©ã«ãã® ACL ã䜿çšããæ¹æ³ãåŠç¿ããŸããã ACL ã䜿çšããŠããªãå Žåã¯ãååŸããããã©ã«ãã®æš©éã決å®ããã·ã§ã« ãªãã·ã§ã³ããããŸãã umask (å転ãã¹ã¯)ã ãã®ã»ã¯ã·ã§ã³ã§ã¯ãããã©ã«ãã®æš©éãå€æŽããæ¹æ³ãåŠç¿ããŸãã umask.
æ°ãããã¡ã€ã«ãäœæãããšãããã€ãã®ããã©ã«ãã®ã¢ã¯ã»ã¹èš±å¯ãèšå®ãããããšã«æ°ã¥ãããããããŸããã ãããã®æš©éã¯èšå®ã«ãã£ãŠæ±ºãŸããŸã umaskã ãã®ã·ã§ã«èšå®ã¯ããã°ãªã³æã«ãã¹ãŠã®ãŠãŒã¶ãŒã«é©çšãããŸãã ãã©ã¡ãŒã¿å umask ãã¡ã€ã«ã«èªåçã«èšå®ã§ããæ倧暩éããæžç®ãããæ°å€ã䜿çšãããŸãã ãã¡ã€ã«ã®æ倧èšå®ã¯ 666ããã£ã¬ã¯ããªã®æ倧èšå®ã¯ 777 ã§ãã
ãã ãããã®èŠåã«ã¯ããã€ãã®äŸå€ãé©çšãããŸãã èšå®ã®å®å šãªæŠèŠã確èªã§ããŸã umask 以äžã®è¡šã«ãããŸãã
ã§äœ¿ãããŠããæ°åã®ãã¡ã umaskãã³ãã³ãã®æ°å€åŒæ°ãšåæ§ chmodãæåã®æ°åã¯ãŠãŒã¶ãŒã®æš©éãæããXNUMX çªç®ã®æ°åã¯ã°ã«ãŒãã®æš©éãæããæåŸã®æ°åã¯ä»ã®äººã«èšå®ãããŠããããã©ã«ãã®æš©éãæããŸãã æå³ umask ããã©ã«ãã® 022 ã§ã¯ããµãŒããŒäžã«äœæããããã¹ãŠã®æ°ãããã¡ã€ã«ã«ã¯ 644ããã¹ãŠã®æ°ãããã£ã¬ã¯ããªã«ã¯ 755 ãäžããããŸãã
ãã¹ãŠã®æ°å€ã®å®å šãªæŠèŠ umask ãã®çµæã以äžã®è¡šã«ç€ºããŸãã
umask èšå®ãã©ã®ããã«æ©èœãããã確èªããç°¡åãªæ¹æ³ã¯æ¬¡ã®ãšããã§ãããŸãããã¡ã€ã«ã®ããã©ã«ãã®ããŒããã·ã§ã³ã 666 ã«èšå®ããumask ãæžç®ããŠæå¹ãªããŒããã·ã§ã³ãååŸããŸãã ãã£ã¬ã¯ããªãšãã®ããã©ã«ãã®æš©é 777 ã«å¯ŸããŠãåãããšãè¡ããŸãã
umask èšå®ãå€æŽããã«ã¯ããã¹ãŠã®ãŠãŒã¶ãŒã«å¯ŸããŠè¡ãæ¹æ³ãšåå¥ã®ãŠãŒã¶ãŒã«å¯ŸããŠè¡ãæ¹æ³ã® XNUMX ã€ããããŸãã ãã¹ãŠã®ãŠãŒã¶ãŒã« umask ãèšå®ããå Žåã¯ã/etc/profile ã§æå®ãããŠããããã«ãã·ã§ã«ç°å¢ãã¡ã€ã«ãéå§ãããšãã« umask èšå®ãèæ ®ãããããã«ããå¿ èŠããããŸãã æ£ããã¢ãããŒãã¯ãumask.sh ãšããã·ã§ã« ã¹ã¯ãªããã /etc/profile.d ãã£ã¬ã¯ããªã«äœæãããã®ã·ã§ã« ã¹ã¯ãªããã§äœ¿çšãã umask ãæå®ããããšã§ãã ãã®ãã¡ã€ã«ã§ umask ãå€æŽãããšããµãŒããŒãžã®ãã°ã€ã³åŸã«ãã¹ãŠã®ãŠãŒã¶ãŒã«é©çšãããŸãã
/etc/profile ããã³é¢é£ãã¡ã€ã«ãä»ã㊠umask ãèšå®ãã代ããã«ããã°ã€ã³ããŠãããã¹ãŠã®ãŠãŒã¶ãŒã«é©çšãããŸããåãŠãŒã¶ãŒã®ããŒã ãã£ã¬ã¯ããªã«äœæããã .profile ãšãããã¡ã€ã«å ã® umask èšå®ãå€æŽããããšãã§ããŸãã
ãã®ãã¡ã€ã«ã«é©çšãããèšå®ã¯ãåã ã®ãŠãŒã¶ãŒã«ã®ã¿é©çšãããŸãã ãããã£ãŠããã詳现ãªæ å ±ãå¿ èŠãªå Žåã«ã¯ãããã¯è¯ãæ¹æ³ã§ãã å人çã«ã¯ãéåžžã®ãŠãŒã¶ãŒãããã©ã«ãã® umask 027 ã§å®è¡ããŠããéã«ãroot ãŠãŒã¶ãŒã®ããã©ã«ãã® umask ã 022 ã«å€æŽãããã®æ©èœãæ°ã«å ¥ã£ãŠããŸãã
æ¡åŒµãŠãŒã¶ãŒå±æ§ã®æäœ
ãã㯠Linux æš©éã«é¢ããæåŸã®ã»ã¯ã·ã§ã³ã§ãã
ã¢ã¯ã»ã¹èš±å¯ãæäœããå ŽåããŠãŒã¶ãŒãŸãã¯ã°ã«ãŒã ãªããžã§ã¯ããšããŠãŒã¶ãŒãŸãã¯ã°ã«ãŒã ãªããžã§ã¯ãããã¡ã€ã«ãŸãã¯ãã£ã¬ã¯ããªã«å¯ŸããŠæã€ã¢ã¯ã»ã¹èš±å¯ãšã®éã«ã¯åžžã«é¢ä¿ããããŸãã Linux ãµãŒããŒäžã®ãã¡ã€ã«ãä¿è·ããå¥ã®æ¹æ³ã¯ãå±æ§ã䜿çšããããšã§ãã
å±æ§ã¯ããã¡ã€ã«ã«ã¢ã¯ã»ã¹ãããŠãŒã¶ãŒã«é¢ä¿ãªãããã®åœ¹å²ãæãããŸãã
ACL ãšåæ§ã«ããã¡ã€ã«å±æ§ã«ã¯ãªãã·ã§ã³ãå«ããå¿ èŠãããå ŽåããããŸãã mount.
ããã¯ãªãã·ã§ã³ã§ã user_xattrã æ¡åŒµãŠãŒã¶ãŒå±æ§ã䜿çšãããšãã«ãæäœã¯ãµããŒããããŠããŸããããšããã¡ãã»ãŒãžã衚瀺ãããå Žåã¯ãå¿ ããã©ã¡ãŒã¿ãŒãèšå®ããŠãã ããã mount /etc/fstab ã«ãããŸãã
å€ãã®å±æ§ãææžåãããŠããŸãã äžéšã®å±æ§ã¯å©çšå¯èœã§ããããŸã å®è£ ãããŠããŸããã ãããã¯äœ¿çšããªãã§ãã ããã 圌ãã¯ããªãã«äœãæã£ãŠããŸããã
é©çšã§ããæã䟿å©ãªå±æ§ã¯æ¬¡ã®ãšããã§ãã
A ãã®å±æ§ã«ããããã¡ã€ã«ã®ãã¡ã€ã« ã¢ã¯ã»ã¹æéãå€æŽãããªãããšãä¿èšŒãããŸãã
éåžžããã¡ã€ã«ãéããã³ã«ããã¡ã€ã«ã®ã¢ã¯ã»ã¹æéããã¡ã€ã«ã®ã¡ã¿ããŒã¿ã«èšé²ããå¿
èŠããããŸãã ããã¯ããã©ãŒãã³ã¹ã«æªåœ±é¿ãåãŒããŸãã ãããã£ãŠãå®æçã«ã¢ã¯ã»ã¹ããããã¡ã€ã«ã®å Žåãå±æ§ A ãã®æ©èœãç¡å¹ã«ããããã«äœ¿çšã§ããŸãã
a ãã®å±æ§ã䜿çšãããšããã¡ã€ã«ã®è¿œå ã¯ã§ããŸãããåé€ã¯ã§ããŸããã
c ããªã¥ãŒã ã¬ãã«ã®å§çž®ããµããŒããããã¡ã€ã«ã·ã¹ãã ã䜿çšããŠããå Žåããã®ãã¡ã€ã«å±æ§ã«ãããå§çž®ã¡ã«ããºã ãåããŠæå¹ã«ãªã£ããšãã«ãã¡ã€ã«ã確å®ã«å§çž®ãããŸãã
D ãã®å±æ§ã«ããããã¡ã€ã«ãžã®å€æŽãæåã«ãã£ãã·ã¥ãããã®ã§ã¯ãªããããã«ãã£ã¹ã¯ã«æžã蟌ãŸããããã«ãªããŸãã ããã¯ãéèŠãªããŒã¿ããŒã¹ ãã¡ã€ã«ããã¡ã€ã« ãã£ãã·ã¥ãšããŒã ãã©ã€ãã®éã§å€±ãããªãããã«ããããã®äŸ¿å©ãªå±æ§ã§ãã
d ãã®å±æ§ã«ããããã³ã ãŠãŒãã£ãªãã£ã䜿çšãããããã¯ã¢ããã«ãã¡ã€ã«ãä¿åãããªããªããŸãã
I ãã®å±æ§ã¯ããããæå¹ã«ãªã£ãŠãããã£ã¬ã¯ããªã®ã€ã³ããã¯ã¹äœæãæå¹ã«ããŸãã ããã«ãããé«éãã¡ã€ã« ã¢ã¯ã»ã¹ã« B ããªãŒ ããŒã¿ããŒã¹ã䜿çšããªã Ext3 ã®ãããªããªããã£ã ãã¡ã€ã« ã·ã¹ãã ã®ãã¡ã€ã« ã¢ã¯ã»ã¹ãé«éã«ãªããŸãã
i ãã®å±æ§ã«ããããã¡ã€ã«ã¯äžå€ã«ãªããŸãã ãããã£ãŠããã¡ã€ã«ã«å€æŽãå ããããšã¯ã§ããŸãããããã¯ãè¿œå ã®ä¿è·ãå¿ èŠãªãã¡ã€ã«ã«åœ¹ç«ã¡ãŸãã
j ãã®å±æ§ã«ãããext3 ãã¡ã€ã« ã·ã¹ãã ã§ã¯ããã¡ã€ã«ããŸããžã£ãŒãã«ã«æžã蟌ãŸãã次ã«ããŒã ãã£ã¹ã¯äžã®ããŒã¿ ãããã¯ã«æžã蟌ãŸããŸãã
s ãã¡ã€ã«ãåé€ãããåŸããã¡ã€ã«ãä¿åãããŠãããããã¯ã 0 ç§éäžæžãããŸãã ããã«ããããã¡ã€ã«ãåé€ããããšåŸ©å ã§ããªããªããŸãã
u ãã®å±æ§ã«ã¯ãåé€ã«é¢ããæ å ±ãä¿åãããŸãã ããã«ããããã®æ å ±ã䜿çšããŠåé€ããããã¡ã€ã«ãæåºãããŠãŒãã£ãªãã£ãéçºã§ããŸãã
å±æ§ãé©çšãããå Žåã¯ã次ã®ã³ãã³ãã䜿çšã§ããŸãã ãããã¹ãã ããšãã°ã次ã®ããã«äœ¿çšããŸãã chattr +s somefileäœããã®ãã¡ã€ã«ã«å±æ§ãé©çšããŸãã å±æ§ãåé€ããå¿ èŠããããŸãã? 次ã«ã䜿çšããŸã chattr -s somefileãããŠããã¯åé€ãããŸãã çŸåšé©çšãããŠãããã¹ãŠã®å±æ§ã®æŠèŠãååŸããã«ã¯ã次ã®ã³ãã³ãã䜿çšããŸãã lsattr.
ãµããªãŒ
ãã®èšäºã§ã¯ãã¢ã¯ã»ã¹èš±å¯ãæäœããæ¹æ³ãåŠã³ãŸããã XNUMX ã€ã®åºæ¬çãªã¢ã¯ã»ã¹èš±å¯ãé«åºŠãªã¢ã¯ã»ã¹èš±å¯ãããã³ãã¡ã€ã« ã·ã¹ãã ã« ACL ãé©çšããæ¹æ³ã«ã€ããŠèª¬æããŸããã ãŸããumask ãªãã·ã§ã³ã䜿çšããŠããã©ã«ãã®æš©éãé©çšããæ¹æ³ã«ã€ããŠãåŠç¿ããŸããã ãã®èšäºã®æåŸã§ã¯ããŠãŒã¶ãŒæ¡åŒµå±æ§ã䜿çšããŠãã¡ã€ã« ã·ã¹ãã ã»ãã¥ãªãã£ã®è¿œå ã¬ã€ã€ãŒãé©çšããæ¹æ³ãåŠã³ãŸããã
ãã®ç¿»èš³ãæ°ã«å ¥ã£ãå Žåã¯ãã³ã¡ã³ãã«ããã«ã€ããŠæžããŠãã ããã 圹ç«ã€ç¿»èš³ãäœæããæ欲ãããã«é«ãŸããŸãã
èšäºå ã®ããã€ãã®ã¿ã€ããã¹ãšææ³äžã®èª€ããä¿®æ£ããŸããã èªã¿ãããããããã«ãããã€ãã®ããã°ã段èœãå°ããªæ®µèœã«çž®å°ããŸããã
ããã£ã¬ã¯ããªã«å¯Ÿãã管çè æš©éãæã€ãŠãŒã¶ãŒã®ã¿ãå®è¡æš©éãé©çšã§ãããã®ä»£ããã«ã ããã£ã¬ã¯ããªã«å¯Ÿããæžã蟌ã¿æš©éãæã€ãŠãŒã¶ãŒã®ã¿ãå®è¡æš©éãé©çšã§ãããã«ä¿®æ£ãããŸãããããã¯ããæ£ç¢ºã§ãã
ã³ã¡ã³ãããããšãããããŸã
ãã¬ã¹ .
眮ãæãããã:
ãŠãŒã¶ãŒã®ææè ã§ã¯ãªãå Žåãã·ã§ã«ã¯ãŠãŒã¶ãŒããã¡ã€ã«ã®ã°ã«ãŒããšãåŒã°ããã°ã«ãŒãã®ã¡ã³ããŒã§ãããã©ããã確èªããŸãããªã³ïŒ
ãã¡ã€ã«ã®ææè ã§ã¯ãªãå Žåãã·ã§ã«ã¯ããã®ãã¡ã€ã«ã«å¯Ÿããã¢ã¯ã»ã¹èš±å¯ãæã€ã°ã«ãŒãã®ã¡ã³ããŒã§ãããã©ããã確èªããŸãã ãã®ã°ã«ãŒãã®ã¡ã³ããŒã§ããå Žåã¯ãã°ã«ãŒããèšå®ããã¢ã¯ã»ã¹èš±å¯ã§ãã¡ã€ã«ã«ã¢ã¯ã»ã¹ããããšã«ãªããã·ã§ã«ã¯ãã§ãã¯ãåæ¢ããŸããã³ã¡ã³ãããããšãããããŸã
ã¯ãªãããã€ã¬ãŒã
åºæïŒ habr.com