芪æãªãå人ã®çããã«æ¬æãè¡šããŸãïŒ
ä»æ¥ã¯ãéåžžã®ã«ãŒã¿ãŒããæ¥ç¶ãããŠãããã¹ãŠã®ããã€ã¹ã«å¿åã®ã€ã³ã¿ãŒãããæ¥ç¶ãæäŸããã«ãŒã¿ãŒã«å€ããæ¹æ³ã«ã€ããŠèª¬æããŸãã
ããè¡ããïŒ
DNS çµç±ã§ãããã¯ãŒã¯ã«ã¢ã¯ã»ã¹ããæ¹æ³ãã€ã³ã¿ãŒããããžã®æ°žç¶çã«æå·åãããæ¥ç¶ãèšå®ããæ¹æ³ãããŒã ã«ãŒã¿ãŒãä¿è·ããæ¹æ³ãªã©ããã®ä»ã®åœ¹ç«ã€ãã³ãããã®èšäºã«èšèŒãããŠããŸãã
ã«ãŒã¿ãŒèšå®ããŠãŒã¶ãŒã® ID ã远跡ããªãããã«ããã«ã¯ãããã€ã¹ã® Web ãµãŒãã¹ãå¯èœãªéãç¡å¹ã«ããããã©ã«ãã® SSID ãå€æŽããå¿
èŠããããŸãã Zyxel ãäŸãšããŠãããè¡ãæ¹æ³ã瀺ããŸãã ä»ã®ã«ãŒã¿ãŒã§ãåäœåçã¯åæ§ã§ãã
ãã©ãŠã¶ã§ã«ãŒã¿ãŒã®èšå®ããŒãžãéããŸãã ãããè¡ãã«ã¯ãZyxel ã«ãŒã¿ãŒã®ãŠãŒã¶ãŒã¯ã¢ãã¬ã¹ ããŒã«ãmy.keenetic.netããšå ¥åããå¿ èŠããããŸãã
次ã«ãè¿œå æ©èœã®è¡šç€ºãæå¹ã«ããå¿ èŠããããŸãã ãããè¡ãã«ã¯ãWeb ã€ã³ã¿ãŒãã§ãŒã¹ã®å³äžé ã«ãã XNUMX ã€ã®ç¹ãã¯ãªãã¯ããã詳现衚瀺ããªãã·ã§ã³ã®ã¹ã€ãããã¯ãªãã¯ããŸãã
ã¡ãã¥ãŒãã¯ã€ã€ã¬ã¹ | ãã«ç§»åããŸãã ãç¡ç·ãããã¯ãŒã¯ããéžæãããç¡ç·ãããã¯ãŒã¯ãã»ã¯ã·ã§ã³ã«ãããã¯ãŒã¯ã®æ°ããååãå ¥åããŸãã 2,4 GHz åšæ³¢æ°ã®ååãšãšãã«ã5 GHz åšæ³¢æ°ã®ååãå€æŽããããšãå¿ããªãã§ãã ããã SSID ãšããŠä»»æã®æååãæå®ããŸãã
次ã«ãã¡ãã¥ãŒãã€ã³ã¿ãŒããã | ã¢ã¯ã»ã¹ãèš±å¯ããŸããã ãHTTPS çµç±ã®ã€ã³ã¿ãŒããã ã¢ã¯ã»ã¹ãæå¹ãããã³ãFTP/FTPS çµç±ã®ã¹ãã¬ãŒãž ã¡ãã£ã¢ãžã®ã€ã³ã¿ãŒããã ã¢ã¯ã»ã¹ãæå¹ããªãã·ã§ã³ã®åã«ããããã¯ã¹ã®ãã§ãã¯ãå€ããŸãã å€æŽã確èªããŸãã
DNS ä¿è·ã®æ§ç¯
ãŸãã¯ã«ãŒã¿ãŒã®SSIDãå€æŽããŸã
(1)ã 次ã«ãDNS èšå®ã§ Quad9 ãµãŒããŒãæå®ããŸãã
(2)ã ããã§ãæ¥ç¶ãããŠãããã¹ãŠã®ã¯ã©ã€ã¢ã³ãã¯å®å
šã«ãªããŸãã
ã«ãŒã¿ãŒã§ã¯ãQuad9 ãªã©ã®ä»£æ¿ DNS ãµãŒããŒã䜿çšããå¿ èŠããããŸãã å©ç¹: ãã®ãµãŒãã¹ãã«ãŒã¿ãŒäžã§çŽæ¥èšå®ãããŠããå Žåãããã«æ¥ç¶ãããŠãããã¹ãŠã®ã¯ã©ã€ã¢ã³ãã¯ããã®ãµãŒããŒãéããŠèªåçã«ã€ã³ã¿ãŒãããã«ã¢ã¯ã»ã¹ããŸãã ZyxelãäŸã«æ¹ããŠæ§æã説æããŸãã
åã®ã»ã¯ã·ã§ã³ãã«ãŒã¿ãŒåãš SSID ã®å€æŽãã§èª¬æããã®ãšåãæ¹æ³ã§ãZyxel èšå®ããŒãžã«ç§»åãããWi-Fi ãããã¯ãŒã¯ãã»ã¯ã·ã§ã³ã®ãã¢ã¯ã»ã¹ ãã€ã³ããã¿ãã«ç§»åããŸãã ããã§ãSSIDãé ããã«ãã§ãã¯ãå ¥ããŸãã
ãDNS ãµãŒããŒãã¿ãã«ç§»åãããDNS ãµãŒã㌠ã¢ãã¬ã¹ããªãã·ã§ã³ãæå¹ã«ããŸãã ãã©ã¡ãŒã¿è¡ã«ãIP ã¢ãã¬ã¹ã9.9.9.9ããå ¥åããŸãã
VPN çµç±ã®æ°žç¶çãªãªãã€ã¬ã¯ãã®èšå®
æ°žç¶ç㪠VPN æ¥ç¶ã䜿çšãããšãããã«å¿åæ§ãé«ãŸããŸãã ãã®å Žåãåã ã®ããã€ã¹äžã§ãã®ãããªæ¥ç¶ãæ§æããããšãå¿é ããå¿ èŠã¯ãªããªããŸããã«ãŒã¿ãŒã«æ¥ç¶ãããŠããåã¯ã©ã€ã¢ã³ãã¯ãå®å šãª VPN æ¥ç¶ãéããŠèªåçã«ãããã¯ãŒã¯ã«ã¢ã¯ã»ã¹ããŸãã ãã ãããã®ç®çã®ããã«ã¯ãã¡ãŒã«ãŒããã®ãã¡ãŒã ãŠã§ã¢ã®ä»£ããã«ã代æ¿ã® DD-WRT ãã¡ãŒã ãŠã§ã¢ãã«ãŒã¿ãŒã«ã€ã³ã¹ããŒã«ãããŠããå¿ èŠããããŸãã ãã®ãœãããŠã§ã¢ã¯ã»ãšãã©ã®ã«ãŒã¿ãŒãšäºææ§ããããŸãã
ããšãã°ããã¬ãã¢ã Netgear Nighthawk X10 ã«ãŒã¿ãŒã¯ DD-WRT ããµããŒãããŠããŸãã ãã ããTP-Link TL-WR940N ãªã©ã®å®äŸ¡ãªã«ãŒã¿ãŒã Wi-Fi ã¢ã¯ã»ã¹ ãã€ã³ããšããŠäœ¿çšã§ããŸãã ã«ãŒã¿ãŒãéžæããããã©ã® VPN ãµãŒãã¹ãåªå ãããã決å®ããå¿ èŠããããŸãã ç§ãã¡ã®å Žåã¯ãProtonVPN ã®ç¡æçãéžæããŸããã
代æ¿ãã¡ãŒã ãŠã§ã¢ã®ã€ã³ã¹ããŒã«
DD-WRT ãã€ã³ã¹ããŒã«ããåŸãVPN æ¥ç¶ãèšå®ããåã«ããã€ã¹ã® DNS ãµãŒããŒãå€æŽããŸãã
Netgearã«ãŒã¿ãŒãäŸã«ã€ã³ã¹ããŒã«ã説æããŸãããä»ã®ã¢ãã«ã§ãæé ã¯åæ§ã§ãã DD-WRTãã¡ãŒã ãŠã§ã¢ãããŠã³ããŒãããã¢ããããŒãæ©èœã䜿çšããŠã€ã³ã¹ããŒã«ããŸãã åèµ·ååŸãDD-WRT ã€ã³ã¿ãŒãã§ã€ã¹ã衚瀺ãããŸãã ã管ç | 管çããéžæãããšãããã°ã©ã ããã·ã¢èªã«ç¿»èš³ã§ããŸãã 管ç | èšèªããªãã·ã§ã³ããã·ã¢èªãã
ãã»ããã¢ãã | ãã«é²ã¿ãŸãã ãåºæ¬ã»ããã¢ããããéžæãããéç DNS 1ããã©ã¡ãŒã¿ã«å€ã9.9.9.9ããå ¥åããŸãã
次ã®ãªãã·ã§ã³ããã§ãã¯ããŸã: ãDHCP ã« DNSMasq ã䜿çšãããããDNS ã« DNSMasq ã䜿çšããããããã³ãDHCP-Authoritativeãã ãä¿åããã¿ã³ãã¯ãªãã¯ããŠå€æŽãä¿åããŸãã
ãã»ããã¢ãã | ãIPV6ãã¯ãIPV6 ãµããŒãããç¡å¹ã«ããŸãã ããããããšã§ãIPV6 æŒæŽ©ã«ããå¿ååãé²ãããšãã§ããŸãã
äºææ§ã®ããããã€ã¹ã¯ãTP-Link TL-WR940N (çŽ 1300 ã«ãŒãã«) ãªã©ãããããäŸ¡æ Œã«ããŽãªã§èŠã€ãããŸãã
ãŸã㯠Netgear R9000 (çŽ 28 æ©æŠ)
ä»®æ³ãã©ã€ããŒã ãããã¯ãŒã¯ (VPN) ã®æ§æ
DD-WRT 㧠OpenVPN ã¯ã©ã€ã¢ã³ã (1) ãèµ·åããŸãã ãã¹ããŒã¿ã¹ãã¡ãã¥ãŒã«ã¢ã¯ã»ã¹ããŒã¿ãå
¥åãããšãããŒã¿ä¿è·ãã³ãã«ãæ§ç¯ãããŠãããã©ããã確èªã§ããŸã(2)
å®éãVPN ãã»ããã¢ããããã«ã¯ãProtonVPN ã®èšå®ãå€æŽããå¿ èŠããããŸãã æ§æã¯ç°¡åã§ã¯ãªããããæ瀺ã«æ³šææ·±ãåŸã£ãŠãã ããã ProtonVPN Web ãµã€ãã«ç»é²ããåŸãã¢ã«ãŠã³ãèšå®ã§ã䜿çšããããŒããå«ã Ovpn ãã¡ã€ã«ãããŠã³ããŒãããŸãã ãã®ãã¡ã€ã«ã«ã¯ãå¿ èŠãªã¢ã¯ã»ã¹æ å ±ããã¹ãŠå«ãŸããŠããŸãã ä»ã®ãµãŒãã¹ãããã€ããŒã®å Žåããã®æ å ±ã¯ä»ã®å Žæã«ãããŸãããã»ãšãã©ã®å Žåã¯ã¢ã«ãŠã³ãå ã«ãããŸãã
Ovpn ãã¡ã€ã«ãããã¹ã ãšãã£ã¿ã§éããŸãã 次ã«ãã«ãŒã¿ãŒèšå®ããŒãžã§ãããµãŒãã¹ | ãµãŒãã¹ããã¯ãªãã¯ããŸãã VPNããéžæãããã®ã¿ãã§ã¹ã€ããã䜿çšããŠãOpenVPN ã¯ã©ã€ã¢ã³ãããªãã·ã§ã³ãæå¹ã«ããŸãã å©çšå¯èœãªãªãã·ã§ã³ã«ã€ããŠã¯ãOvpn ãã¡ã€ã«ã®æ å ±ãå ¥åããŸãã ããšãã°ããªã©ã³ãã®ç¡æãµãŒããŒã®å Žåã¯ãããµãŒã㌠IP/ååãè¡ã«å€ãnlfree-02.protonvpn.comãã䜿çšããããŒããšããŠã1194ããæå®ããŸãã
ããã³ãã«ããã€ã¹ãããTUNãã«ããæå·åæå·ãããAES-256 CBCãã«èšå®ããŸãã
ãããã·ã¥ ã¢ã«ãŽãªãºã ãããSHA512ãã«èšå®ããããŠãŒã¶ãŒ ãã¹èªèšŒããæå¹ã«ããããŠãŒã¶ãŒããã£ãŒã«ããšããã¹ã¯ãŒãããã£ãŒã«ãã« Proton ã®ãã°ã€ã³æ
å ±ãå
¥åããŸãã
次ã«ãã詳现ãªãã·ã§ã³ãã»ã¯ã·ã§ã³ã«é²ã¿ãŸãã ãTLSæå·åããããªããããLZOå§çž®ãããã¯ããã«èšå®ããŸãã ãNATããšããã¡ã€ã¢ãŠã©ãŒã«ä¿è·ããæå¹ã«ããããã³ãã« MTU èšå®ããšããŠæ°å€ã1500ããæå®ããŸãã ãTCP-MSSããç¡å¹ã«ããå¿
èŠããããŸãã
ãTLS èªèšŒããŒããã£ãŒã«ãã§ããBEGIN OpenVPN éçã㌠V1ããšããè¡ã®äžã«ãã Ovpn ãã¡ã€ã«ããå€ãã³ããŒããŸãã
ãè¿œå æ§æããã£ãŒã«ãã«ãããµãŒããŒåãã®äžã«ããè¡ãå
¥åããŸãã
æåŸã«ããCA 蚌ææžãã®ãBEGIN 蚌ææžãè¡ã«è¡šç€ºãããããã¹ãã貌ãä»ããŸãã ãä¿åããã¿ã³ãã¯ãªãã¯ããŠèšå®ãä¿åãããèšå®ãé©çšããã¯ãªãã¯ããŠã€ã³ã¹ããŒã«ãéå§ããŸãã åèµ·ååŸãã«ãŒã¿ãŒã¯ VPN ã«æ¥ç¶ãããŸãã ä¿¡é Œæ§ãé«ããããã«ããã¹ããŒã¿ã¹ | æ¥ç¶ãã§æ¥ç¶ã確èªããŠãã ããã OpenVPNãã
ã«ãŒã¿ãŒã«é¢ãããã³ã
ããã€ãã®ç°¡åãªããªãã¯ã䜿ãã°ãããŒã ã«ãŒã¿ãŒãå®å šãªããŒãã«å€ããããšãã§ããŸãã æ§æãéå§ããåã«ãããã€ã¹ã®ããã©ã«ãæ§æãå€æŽããå¿ èŠããããŸãã
SSID ã®å€æŽ ããã©ã«ãã®ã«ãŒã¿ãŒåããã®ãŸãŸäœ¿çšããªãã§ãã ããã ããã䜿çšãããšãæ»æè ã¯ããã€ã¹ã«é¢ããçµè«ãå°ãåºãã察å¿ããè匱æ§ã«å¯ŸããŠæšçåæ»æãå®è¡ã§ããŸãã
DNS ä¿è· èšå®ããŒãžã§ Quad9 DNS ãµãŒããŒãããã©ã«ããšããŠèšå®ããŸãã ãã®åŸãæ¥ç¶ãããŠãããã¹ãŠã®ã¯ã©ã€ã¢ã³ãã¯å®å šãª DNS ãä»ããŠãããã¯ãŒã¯ã«ã¢ã¯ã»ã¹ããŸãã ãŸããããã€ã¹ãæåã§æ§æããæéãçããŸãã
VPN ã®äœ¿çš ã»ãšãã©ã®ã«ãŒã¿ãŒ ã¢ãã«ã§å©çšå¯èœãªä»£æ¿ DD-WRT ãã¡ãŒã ãŠã§ã¢ãä»ããŠããã®ããã€ã¹ã«é¢é£ä»ããããŠãããã¹ãŠã®ã¯ã©ã€ã¢ã³ãã«å¯Ÿã㊠VPN æ¥ç¶ãæ§ç¯ã§ããŸãã ã¯ã©ã€ã¢ã³ããåå¥ã«èšå®ããå¿ èŠã¯ãããŸããã ãã¹ãŠã®æ å ±ã¯æå·åããã圢åŒã§ãããã¯ãŒã¯ã«å ¥ããŸãã Web ãµãŒãã¹ã¯ããŠãŒã¶ãŒã®å®éã® IP ã¢ãã¬ã¹ãšå Žæãææ¡ã§ããªããªããŸãã
ãã®èšäºã§æŠèª¬ãããŠãããã¹ãŠã®æšå¥šäºé ã«åŸãã°ã(å¯èœãªéã) æ倧éã®å¿åæ§ãåŸããããããããŒã¿ä¿è·ã®å°é家ã§ãæ§æã®æ¬ é¥ãèŠã€ããããšãã§ããªããªããŸãã
ç§ã®èšäºããèªã¿ããã ãããããšãããããŸãã[Telegram ãã£ã³ãã«](https://t.me/dark3idercartel) ã§ã¯ããµã€ããŒã»ãã¥ãªãã£ãã·ã£ã㊠ã€ã³ã¿ãŒãããã«é¢ããããã¥ã¢ã«ãèšäºããã®ä»å€ãã®èšäºãèŠã€ããããšãã§ããŸãã
ç§ã®èšäºãèªãã§ç¥ã£ãŠãã ãã£ãçæ§ã«æè¬ããŸããæ°ã«å
¥ã£ãŠããã ãããªã幞ãã§ãããã®ããšã«ã€ããŠã©ãæããã³ã¡ã³ãæ¬ã«æžããŠããã ããã°å¹žãã§ãã
åºæïŒ habr.com