
GPL2ã©ã€ã»ã³ã¹ã®äžã§ãæåéãä»å¹Žã®1æã®åãã«ããã§æ¢ã«æžãããŠããã®ã§ãéåžžã«èå³æ·±ãããã®æ¹æ³ã§ãŠããŒã¯ãªãããžã§ã¯ã-SoftEther VPN-ãåæ ŒããŸãã ã ããã¯ç波倧åŠã®åŠçã«ãã£ãŠæžãããŸããã ãã®è£œåã¯ãL2TPãL2TP / IPsecãL2TPv3 / IPsecãMS-SSTPãEtherIP / IPsecãOpenVPNãSSL-VPNïŒç¬èªä»æ§ïŒãL2VPNãªã©ã®èšå€§ãªãã³ããªã³ã°ãããã³ã«ããµããŒãããVPNãµãŒããŒãšããŠäœçœ®ä»ããããŠããŸãã ICMPããã³DNSãä»ãããã³ããªã³ã°ã®ããã«ã ããã¯ã第3ã¬ãã«ãšç¬¬2ã¬ãã«ã®äž¡æ¹ã§ãã³ããªã³ã°ããµããŒãããVLANãšIPv6ãå¯èœã§ãã ã»ãšãã©ãã¹ãŠã®æ¢ç¥ã®ãã©ãããã©ãŒã ïŒARMããã³MIPSã§ãïŒã§åäœããã«ãŒãæš©éãå¿ èŠãããŸããã å®å šãªä»æ§ã¯ããã§èŠã€ããããšãã§ããŸã ã æ£çŽãªãšããããã®ããã°ã©ã ã®æ©èœã®ãªã¹ããèŠããšããç§ã¯èªåã®ç®ãä¿¡ããããããITãããŸãããã°ããã¹ãããªããã°ãªããªãïŒã
ãã®èšäºã§ã¯ãSoftEther VPN Server for Linuxã®ã€ã³ã¹ããŒã«ãšæ§æã«ã€ããŠèª¬æããŸãã 次ã®èšäºã§ã¯ãçŸããæ¯èŒããã©ãŒãã³ã¹ã°ã©ããäœæããŠã¿ãŸãã
ãã®ãœãããŠã§ã¢ã«ã¯ãWindowsçšã®éåžžã«åªããã€ã³ã¿ãŒãã§ã€ã¹ããããŸãããLinuxã§ã¯ãã¹ãŠã®æ§æã¯CLIãä»ããŠè¡ãããŸãã ããã¥ã¢ã«ã¯ç¢ºãã«åªããŠããŸãããããšãã°ãç§ã«ã¯ããŸãã«ã詳现ã§ããŸãã°ã©ãã£ã«ã«ã€ã³ã¿ãŒãã§ã€ã¹ãšé床ã«ã«ã©ãã«ãªæ¥æ¬ã®åçã«åã£ãŠããããã«èŠããŸããã ãããã£ãŠãããããã®è±èªã®æçŽãã·ã£ãã«ããã®ãé¢åãªäººã®ããã«ãã¡ã€ã³ã®CLIã³ãã³ããã¬ã€ã¢ãŠãããããšã«ããŸããã
æå§ãã«-ãã®å¥è·¡ãã€ã³ã¹ããŒã«ããŠãã ããã 64ãããã®Debian 7ãæèŒããVPSãæå ã«çœ®ããŠãããããéžæã¯æããã§ããã ããã«èŠåããŸãïŒ GitHub'a ïŒçŸåšãªãªãŒã¹ãããŠããããŒãžã§ã³4.04ãã«ã9412ïŒã§ã®ã¿ã€ã³ã¹ããŒã«ããå¿ èŠããããŸãïŒ å ¬åŒãµã€ãã§ã¯ãããŸããŸãªãã©ãããã©ãŒã çšã®ãœãŒã¹ãããŠã³ããŒãã§ããŸãããåŸ ã¡äŒãã¯ãã¡ã€ã¯ãã¡ã€ã«ãäœããã®ãµãã£ã¹ãã£ãã¯ãªè¥¿æŽé¢šã®æ¹æ³ã§çæãããåºåã§ã¯ããµãŒããŒã®ãã€ããªèªäœãšãã®CLIããã¯ã¹ãšãã2ã€ã®ãã¡ã€ã«ããååŸã§ããªãããšã§ãã / usr / bin /ãä»ã®ææçãªãã®ãžã®ã³ããŒã¯ããã«ã¯æžãããŠããŸããã å¯Ÿç §çã«ãgithubã®makefileã¯ã¯ããã«äœ¿ããããã§ãïŒãšã«ããintitã¹ã¯ãªãããå®è¡ããŸããããææã§ãïŒã
ããã°ã©ã ãã€ã³ã¹ããŒã«ããåã«ã ããã«è¡ãã圌女ãã€ã³ã¹ããŒã«ããå¿ èŠããããã®ãèŠã€ããããšããå§ãããŸãã ããšãã°ãããã€ãã®ã©ã€ãã©ãªãé 眮ããå¿ èŠããããŸããïŒãã®åŸããããã¯åãå£ãããšãã§ããŸãïŒã
ããã«ã€ã³ã¹ããŒã«ããã®ã¯ç°¡åã§ã¯ãããŸããããéåžžã«ç°¡åã§ããããmake installãã®ä»£ããã«ãcheckinstallããšæžãããšã§ãaptããã±ãŒãžãããŒãžã£ãŒãæ°ããããã°ã©ã ãèªèãããããæ£ããåé€ã§ããããšã«æ³šæããŠãã ããïŒè©³çŽ°ã¯ãã¡ã ïŒã# apt-get install libreadline-dev libssl-dev libncurses5-dev zlib1g-dev
ãã®éçšã§ãã€ã³ã¹ããŒã©ãŒã¯ã©ã€ã»ã³ã¹å¥çŽãèªã¿ããã©ãããã©ãŒã ãšOSã®ããã深床ã瀺ãããã«æ±ããŸãã ãšããã§ã圌ã¯ããã°ã©ã ã/ usr / vpnserver /ã«ä»»æã®æ¹æ³ã§é 眮ãããã€ããªã/ usr / bin /ã«é 眮ããããšã«æ³šæããŠãã ããã ã€ã³ã¹ããŒã«ãã¹ãæ°ã«å ¥ããªãå Žåã¯ãã¡ã€ã¯ãã¡ã€ã«ã§æã§å€æŽã§ããŸãã ã€ã³ã¹ããŒã«ã®æåŸã«ã圌ã¯èšãã§ãããïŒ# git clone github.com/SoftEtherVPN/SoftEtherVPN.git
# cd SoftEtherVPN\
# ./configure
# make
# checkinstall
-ã€ã³ã¹ããŒã«ãæ£åžžã«å®äºããŸãããããããããã®éæ³ãã©ã®ããã«éå§ããã³åæ¢ããããè«ççã«ç解ã§ããŸãã ãã®ãŸãŸã«ããŠããããšã¯ã§ããŸãããå€ããŠäœ¿ãããšãã§ããŸãã åãããšãè¡ãæ¹æ³ãããããç¥ã£ãŠãããåçŽãªåæåã¹ã¯ãªãããçšæããŠãã ããã
ãvpnserver startããå®è¡ããŠãSoftEther VPN Serverããã¯ã°ã©ãŠã³ããµãŒãã¹ãå®è¡ããŸãã
ãvpnbridge startããå®è¡ããŠãSoftEther VPN Bridgeããã¯ã°ã©ãŠã³ããµãŒãã¹ãå®è¡ããŸãã
ãvpnclient startããå®è¡ããŠãSoftEther VPN Clientããã¯ã°ã©ãŠã³ããµãŒãã¹ãå®è¡ããŸãã
ãvpncmdããå®è¡ããŠSoftEther VPNã³ãã³ãã©ã€ã³ãŠãŒãã£ãªãã£ãå®è¡ããVPNãµãŒããŒãVPNããªããžããŸãã¯VPNã¯ã©ã€ã¢ã³ããæ§æããŸãã
-------------------------------------------------- ------------------
ãã®ãããVPNãµãŒããŒãã€ã³ã¹ããŒã«ãããéå§ã§ããŸãã
æ§æãååŸããŸãã äžè¬ã«ãããã¥ã¢ã«ã§ã¯ãããè¡ãããã®2ã€ã®æ¹æ³ãæäŸããŠããŸãã1ã€ç®ã®æ¹æ³ãåªå ããŠãç¬èªã®ã³ãã³ãã©ã€ã³vpncmdã䜿çšããããæ§æãã¡ã€ã«vpn_server.configã䜿çšããŸãã 補é æ¥è ã¯ãæ§æãã¡ã€ã«ã䜿çšããæäœãå±éºãªè·æ¥ãšèŠãªããããããæ¹æ³ã§ãããæããšã©ãŸãããããšããŸãã å®éããµãŒããŒã¯ãã®ãã¡ã€ã«ãç¶ç¶çã«èªã¿åãããã®å€æŽã¯å³åº§ã«ãµãŒããŒã«åœ±é¿ããŸãã æ§æãã¡ã€ã«ããã®æ§æãæ£åœåãããå¯äžã®ã±ãŒã¹ã¯ãVPNãµãŒããŒããªãã«ãªã£ãŠããå Žåã§ãã ãªããããè¡ãããã®ãã¯ããããŸãããããããã«ããŠããèè ã¯ããç¥ã£ãŠããŸãã ãšã«ããããã®ããã°ã©ã ã«ã¯åªããCLIããããŸããäœæ¥åŸã¯ãäžèŠãªæ§æãã¡ã€ã«ã®ååšãå¿ããŠããŸããŸãã# vpnserver start
SoftEther VPN Server Service Started.
ãšããã§ãã€ã³ã¹ããŒã«åŸããã«ãããã°ã©ã ãäœããã®çç±ã§ã¢ãã¬ã¹130.158.6.77:80ã«ãããããããšã«æ°ä»ããŸããã çããããã®ã¯äœããªãããšãå€æããŸããããã®ããã«ããµãŒããŒã¯ããŒãã¢ã©ã€ããã±ãããWebãµã€ãïŒkeepalive.softether.org:80ïŒã«éä¿¡ãããããã¿ã€ã ã¢ãŠãã«ãã£ãŠç°ãªãPPPã»ãã·ã§ã³ãäžæããããšã¯ãããŸããã ã€ã³ã¹ããŒã«çŽåŸã«ã KeepDisableã³ãã³ãã§ãã®æ©èœãç¡å¹ã«ããŸããã
ãããã£ãŠãèµ·åçŽåŸã«VPNãµãŒããŒã¯æ¢ã«åäœããŠãããTCPããŒã443ïŒSSL VPNïŒã992ã1194ïŒOpenVPNïŒãããã³5555ïŒããŒãçªå·ã¯ListenerCreateããã³ListenerDeleteã³ãã³ãã§å€æŽå¯èœïŒãžã®æ¥ç¶ãåãå ¥ããŠããŸããã䜿çšãéå§ããã«ã¯ãããã€ãã®ç°¡åãªèšå®ãè¡ãå¿ èŠããããŸãèšå®ã vpncmdã³ãã³ãã䜿çšããŠCLIã«å ¥ããŸãã
éžæè¢1ã¯ãµãŒããŒç·šéã¢ãŒãã«ãéžæè¢2ã¯ã¯ã©ã€ã¢ã³ãããããã£ç·šéã¢ãŒãã«ãéžæè¢3ã¯ãµãŒããŒèšŒææžã®ãã¹ããšäœæã®ã¢ãŒãã«ç§»è¡ããŸãã 1ãéžæãããšããµãŒããŒã¯æ¥ç¶ãããµãŒããŒã®IPã¢ãã¬ã¹ïŒå®å ã®IPã¢ãã¬ã¹ã®ãã¹ãå:)ãå ¥åããããšãææ¡ããŸãã ããŒã«ã«ãµãŒããŒãç·šéããŸãã 3åç®ãšæåŸã«ãããã°ã©ã ã¯ä»®æ³ããã®ååïŒä»®æ³ããåã®æå®:)ãå°ããŸãã ãŸã ä»®æ³ããã䜿çšããäºå®ã¯ãªãã®ã§ãããäžåºŠEnterããŒãæŒããŠããµãŒããŒèªäœã®ã³ãã³ãã©ã€ã³ã«ç§»åããŸãã# vpncmd
vpncmd command - SoftEther VPN Command Line Management Utility
SoftEther VPN Command Line Management Utility (vpncmd command)
Version 4.04 Build 9412 (English)
Compiled 2014/01/15 17:22:14 by yagi at pc25
Copyright (c) SoftEther VPN Project. All Rights Reserved.
By using vpncmd program, the following can be achieved.
1. Management of VPN Server or VPN Bridge
2. Management of VPN Client
3. Use of VPN Tools (certificate creation and Network Traffic Speed Test Tool)
Select 1, 2 or 3:
éçºè ã®çšèªã§ã¯ãä»®æ³ãããšã¯äœãã説æããå¿ èŠããããŸãã ä»®æ³ããã¯ãä»®æ³ã€ã³ã¿ãŒãã§ã€ã¹ãã»ãã¥ãªãã£ããªã·ãŒãããã³VPNãããã³ã«ã®ç¬èªã®èšå®ã»ãããæã€ãããªãç¬ç«ããVPNãµãŒããŒã€ã³ã¹ã¿ã³ã¹ã§ãã åèšã§ãæ倧4096ã®ä»®æ³ãããäœæã§ããŸããã2çªç®ãŸãã¯3çªç®ã®ã¬ãã«ã§çžäºã«äº€å·®ããããšã¯ãããŸãããã€ãŸããäºãã«å®å šã«åé¢ãããŸãã åä»®æ³ããã¯ç¬èªã®ãŠãŒã¶ãŒã»ããã§åäœããåãç©çãµãŒããŒäžã«ããã«ãããããããå¥ã®ä»®æ³ããã®ãŠãŒã¶ãŒã«ã€ããŠã¯äœãç¥ããŸããã äžæ¹ãå¿ èŠã«å¿ããŠãçžäºã®çžäºäœçšãæ§æã§ããŸããèè ã®çšèªã§ã¯ãããã¯ä»®æ³ããªããž/ã«ãŒã¿ãŒãšåŒã°ããŸãã ãããã£ãŠãç¹å®ã®ã°ããŒãã«ãµãŒããŒèšå®ãæå®ããåŸãä»®æ³ããã䜿çšããŸãã
vpncmdãå ¥åãããšãããã³ããã衚瀺ãããŸãã
ãã«ããå ¥åããŠãã³ãã³ãã®ãªã¹ããèªãããšãã§ããŸããConnection has been established with VPN Server "localhost" (port 443).
You have administrator privileges for the entire VPN Server.
VPN Server>
æåã«è¡ãå¿ èŠãããã®ã¯ããµãŒããŒã®ã«ãŒããã¹ã¯ãŒããèšå®ããããšã§ãã ããã¯ã ServerPasswordSetã³ãã³ãã䜿çšããŠè¡ãããŸãã 次ã«ã KeepDisableã³ãã³ãã§æžããããã«ãããŒãã¢ã©ã€ãããã±ãŒãžãç¡å¹ã«ããŸãã
次ã«ã HubCreate <ä»®æ³ããå>ã³ãã³ãã䜿çšããŠä»®æ³ãããäœæããŸããããšãã°ã
æ°ããããã®ç®¡çè ãã¹ã¯ãŒããèšå®ãããšããã®ããã®ç®¡çãä»ã®äººã«å§ä»»ã§ããŸãã ãŸããç°¡åã«ããããã«ãEnterããŒãæŒããŠãããè¡ããªãããã«ããããšãã§ããŸãïŒãã®ãããå°æ¥çã«ã¯SetHubPasswordã³ãã³ãããããŸãïŒã ãããäœæããã ã Hub vpnã³ãã³ãã䜿çšããŠãã®ããã®ç®¡çã¢ãŒãã«å ¥ãå¿ èŠããããŸãã StatusGetã³ãã³ãã䜿çšããŠãããã®ã¹ããŒã¿ã¹ã衚瀺ã§ããŸãã ããã§ã¯ããã®ã³ãã³ãã®åºåãæäŸããŸããã ããã¯é·ããéåžžã«ç解ãããããã®ã§ãã ããã¯ã ãªãã©ã€ã³ã³ãã³ãã§ãªãã«ãã ãªã³ã©ã€ã³ã³ãã³ãã§æ»ãããšãã§ããŸããVPN Server>hubcreate vpn
HubCreate command - Create New Virtual Hub
Please enter the password. To cancel press the Ctrl+D key.
Password:
SetEnumDenyããŒã ãæ°ã«å ¥ããŸããã å®éãVPNã¯ã©ã€ã¢ã³ãã«VPNãµãŒããŒã®ã¢ãã¬ã¹ãå ¥åãããšãå³ã®ããã«ããµãŒããŒã«ç»é²ãããŠãããã¹ãŠã®ä»®æ³ããã®ååããââãã«ããããŸãã ãã®ã³ãã³ãã¯ããªã¹ãã«æå®ãããããã®ååã衚瀺ããããšãçŠæ¢ããŸãã å°ããããã§ãããã»ãã¥ãªãã£ãžã®ããŒãã¹ã§ãã

ããŠããã£ãšé¢çœãããšãããŸãããã UserCreateã³ãã³ãã§ãŠãŒã¶ãŒãäœæãã UserPasswordSetã䜿çšããŠãã¹ã¯ãŒããèšå®ããŸãã ã³ãã³ãã¯éåžžã«ã·ã³ãã«ã§ããµãŒããŒã®ãã€ã¢ãã°ã¡ãã»ãŒãžãç解ããããã®è±èªã®ç¥èã¯æå°éã§ãã ãã®æ®µéã§ã¯ãç°¡åã«ããããã«ã蚌ææžã«ã€ããŠã¯æ°ã«ããŸããããã€ã³ã¹ããŒã«æ®µéã§çæããèªå·±çœ²åãµãŒããŒèšŒææžãä¿¡é ŒããŸãã
åºæ¬çã«ã¯ããã§ãã¹ãŠã§ããæå°éã®ã€ã³ã¹ããŒã«ãå®äºãããã®IPã¢ãã¬ã¹ãšListenerListã®ããŒãã®ãããããæå®ããããšã§ãµãŒããŒã«ããã¯ã§ããŸãã ãã®ããŒãã¯ã·ã¹ãã ã®ã«ãŒãæš©éãå¿ èŠãšããªããããèè ã¯ããŒã5555ãæšå¥šããŠããŸãã ãã§ã«äžèšã®VPNã¯ã©ã€ã¢ã³ããŠã£ã³ããŠã瀺ããŸãããããã¹ãŠãçŽèŠ³çã§éåžžã«ãããã§ãã èªèšŒã«åæ ŒããVPNãã³ãã«ã確ç«ãããŸãã ãã ãããã®åœ¢åŒã§ã¯ããã³ãã«ã®ã¡ãªããã¯ã»ãšãã©ãããŸããã ãµãŒããŒèªäœã«ã®ã¿ã¢ã¯ã»ã¹ã§ããä»ã®å Žæã«ã¯ã¢ã¯ã»ã¹ã§ããŸããã
ç§ãã¡ã®ã¿ã¹ã¯ãããåºç¯å²ã§ãããVPNãµãŒããŒã䜿çšããŠäŒæ¥ãããã¯ãŒã¯ã«ã¢ã¯ã»ã¹ããããšããŸãã ãããè¡ãã«ã¯ãNATãæ§æããå¿ èŠããããŸãã ããã¯ã SecureNATEnableã³ãã³ãã䜿çšããŠç°¡åã«å®è¡ã§ããŸãã NATãšãšãã«DHCPãèªåçã«æå¹ã«ãªããŸãã
äžè¬ã«ãSecureNATã¯SoftEtherVPNã®äœæè ã«ããããªãèå³æ·±ãæè¡ã§ãã ç¥ã£ãŠããããã«ã* NIXã·ã¹ãã ã§ã®ãããã¯ãŒã¯ã¢ãã¬ã¹å€æã¯ã«ãŒãã«ã§å®è¡ããããããNATãæ§æããã«ã¯ã¹ãŒããŒãŠãŒã¶ãŒæš©éãå¿ èŠã§ãã SoftEtherVPNã®äœæè ã¯ããããäœãã«ãåé·ã§ãããšå€æããç¬èªã®ã«ã¹ã¿ã TCP / IPã¹ã¿ãã¯ãäœæããŠããŠãŒã¶ãŒã¹ããŒã¹ã§ã®ãã£ã«ã¿ãªã³ã°ãšãã€ãã£ã³ã°ãå¯èœã«ããŸããã ã¯ãŒã«ãªã¢ã€ãã¢ãããã䟡å€ããããã©ããã¯ããããŸããããããŸããããŸã-ããã¯äºå®ã§ãïŒ
SecureNatHostSetã³ãã³ãïŒããã©ã«ãã§ã¯192.168.30.1/24ïŒã§SecureNATã€ã³ã¿ãŒãã§ã€ã¹ã¢ãã¬ã¹ãå€æŽã§ããŸãããŸããçºè¡ãããã¢ãã¬ã¹ã®ç¯å²ãšä»ã®DHCPãªãã·ã§ã³ïŒã¡ã€ã³ã²ãŒããŠã§ã€ãDNSãµãŒããŒãªã©ïŒãDhcpSetã³ãã³ãã§äœ¿çšã§ããŸãã 䜿ããããCLIã§ã¯ãããŸãããïŒ ããšãã°ããsecureïŒããšå ¥åããŠEnterããŒãæŒããšãå¯èœãªèªåè£å®ã®ãªã¹ãã衚瀺ãããŸãã
ããã©ã«ãã§ã¯ããã±ãããã£ã«ã¿ãªã³ã°ã¯é©çšãããŸããã VPNã¯ã©ã€ã¢ã³ãã¯ãäŒæ¥ãµããããã«ç¡æéã«ã¢ã¯ã»ã¹ããäŒæ¥ã€ã³ã¿ãŒããããããå Žåã¯ããã䜿çšã§ããŸãã ãªãã·ã§ã³ã§ã AccessAddã³ãã³ãã䜿çšããŠãã¡ã€ã¢ãŠã©ãŒã«ã«ãŒã«ãè¿œå ããŸãã ãã¡ã€ã¢ãŠã©ãŒã«ã®åºæºãšããŠããŠãŒã¶ãŒåãéä¿¡å ãšå®å ã®MACã¢ãã¬ã¹ãšIPã¢ãã¬ã¹ãããŒãããããã³ã«ãTCPãã©ã°ãæå®ã§ããŸãã ãããŠæãéèŠãªããšã¯ããããæ©èœããããšã確èªããããšã§ãïŒ ãŸããããŸããŸãªä»®æ³ããã®ãã£ã«ã¿ãªã³ã°ã«ãŒã«ãäºãã«åœ±é¿ãäžããããšã¯ãªããããäŒæ¥ç°å¢ãžã®ã¢ã¯ã»ã¹ãæè»ã«å¶åŸ¡ã§ããŸããVPN Server/vpn>secure?
"secure": The command-name is ambiguous.
The specified command name matches the following multiple commands.
SecureNatDisable - Disable the Virtual NAT and DHCP Server Function (SecureNat Function)
SecureNatEnable - Enable the Virtual NAT and DHCP Server Function (SecureNat Function)
SecureNatHostGet - Get Network Interface Setting of Virtual Host of SecureNAT Function
SecureNatHostSet - Change Network Interface Setting of Virtual Host of SecureNAT Function
SecureNatStatusGet - Get the Operating Status of the Virtual NAT and DHCP Server Function (SecureNat Function)
Please re-specify the command name more strictly.
çŽ æµãªããŒãã¹ãšããŠããã€ãããã¯DNSã¯softether.netããå ¥æã§ããŸãã DynamicDnsSetHostnameã³ãã³ãã䜿çšããŠãVPNãµãŒããŒãDDNSã«ç»é²ã§ããŸã ããã®åŸãå¿ èŠãªç¬¬3ã¬ãã«ã®ãã¡ã€ã³åãå ¥åããå¿ èŠããããŸãã myvpn.softether.netã®ããã«ãªããŸãã åæããŸããäºçŽ°ãªããšã§ãããçŽ æµã§ãããã«ãå®å šã«ç¡æã§ãïŒ
VPNãããã³ã«ã«ã€ããŠè©±ããŸãããã L2TP / IPsecãšOpenVPNããã¹ãããŸããã äžèŠãã®ãããªç°ãªããããã³ã«ã2ã€èšå®ããã®ã¯éåžžã«ç°¡åã§ããããšãããããŸããã OpenVPNã¯æåã¯ããŒã1194 UDPã§æå¹ã«ãªã£ãŠããŸããããããæ©èœãããã«ã¯ãã°ããŒãã«ãµãŒããŒã¢ãŒãïŒãã©ã¡ãŒã¿ãŒãªãã®Hubã³ãã³ãïŒã§IPsecEnableãå ¥åãããã¢L2TPãæå·åL2TP / IPsecãæå¹ã«ãããã©ããã«é¢ããããã€ãã®è³ªåã«çããå¿ èŠããããŸãL2TPv3 / IPsecã æãéèŠãªåé¡ã¯ãIPsecã®äºåå ±æããŒïŒPSKïŒãšããã©ã«ãããã§ãã PSKã䜿çšãããšããã¹ãŠãæ確ã«ãªããŸããããã¯ã¯ã©ã€ã¢ã³ãããã€ã¹ã§å ¥åããå¿ èŠã®ããããŒã§ãããããã©ã«ãããã«ã€ããŠè©³ãã説æããŸãã
å®éãåãOpenVPNã¯IPsecãä»ããŠã¯åäœããŸããããIPsecããã¢ã«ãŠã³ãããªã·ãŒãç¶æ¿ããŸãã ãããã£ãŠãOpenVPNãããã³ã«ã䜿çšããŠæ¥ç¶ããããšãããšããŠãŒã¶ãŒåãšãã¹ã¯ãŒããèŠæ±ãããŸãã ãŠãŒã¶ãŒåã¯ãuser @ hubãã®åœ¢åŒã§å ¥åããå¿ èŠããããŸãããããã©ã«ãã§äœ¿çšãããããæå®ããå Žåã¯ãã@ hubããçç¥ã§ããŸãã
OpenVpnMakeConfigã³ãã³ãã䜿çšããŠOpenVPNã®æ§æãã¡ã€ã«ãçæããçæããããã¡ã€ã«ãä¿åããå Žæãæå®ã§ããŸãã ãã®ãã¡ã€ã«ã¯ããã«OpenVPNã¯ã©ã€ã¢ã³ãã«éãããæ¥ç¶ãè¡ãããŸãã ãã®ãã¡ã€ã«ã¯ãLayer2VPNãšLayer3VPNã®2ã€ã®ããŒãžã§ã³ã§åæã«æäŸãããŸããã€ãŸããã¹ã€ãããšããŠã®VPNãµãŒããŒãšã«ãŒã¿ãŒãšããŠã®VPNãµãŒããŒã§ãã ãããã¯äž¡æ¹ãšãããŸãæ©èœããŸãã 䟿å©ã«ïŒ
L2TP / IPsecã®æ§æã¯äžè¬ã«ç°¡åã§ããããšãå€æããŸãããIPsecEnableã³ãã³ãã®åŸã«ãµãŒããŒã§äœãå€æŽããå¿ èŠã¯ãããŸããããWindowsãã«ãã€ã³VPNã¯ã©ã€ã¢ã³ãã®èšå®ã§ã¯ãL2TP IPsec VPNãããã³ã«ãæå®ããå¿ èŠããããŸããè¿œå ã®ãã©ã¡ãŒã¿ãŒã§ã¯ãäºåããŒïŒPSKïŒãæå®ããŸãããã¡ãããã€ã³ã¹ããŒã«æžã¿ã®å Žåã¯ãäžèšã®åœ¢åŒã§è³æ Œæ å ±ãå ¥åããŸãã
åæ§ã«ããã¹ãŠãAndroidäžã§æ§æãããŸãã 4.2.1ã§ãã§ãã¯ããããã¹ãŠãæšæºããŒã«ã®ã¿ã䜿çšããŠæ©èœããŸãã
çµè«ïŒ SoftEtherVPNã¯ãVPNãã³ãã«ãæ§ç¯ããããã®éåžžã«åŒ·åã§æãéèŠãªäŸ¿å©ãªããŒã«ã§ãã ãã¡ããããã¹ãŠã®æ©èœããã¹ãããããã§ã¯ãããŸããããã»ãšãã©ã®å Žåãäœæããæ©èœã¯ååã«ãããŸãã è¿ãå°æ¥ãæ¯èŒããã©ãŒãã³ã¹ãã¹ããããã³ICMP over DNSãDNSãªã©ã®ã°ãããããšã®ãã¹ããèšç»ããŸãã SSL VPNããã³MS SSTPãããã³ã«ãšãŸã éä¿¡ããããªãã 蚌ææžã«ç ©ããããã®ãå«ãããŸããããã«ãããŒããã©ã³ã·ã³ã°ãã¯ã©ã¹ã¿ãªã³ã°ããã©ãŒã«ããã¬ã©ã³ã¹ãRADIUSããã³ADããã®æ¿èªãVLANãã©ã³ãã³ã°ãå«ãLayer2 VPNãªã©ã®ããã°ã©ã ã®æ©èœãæ€èšããå¿ èŠããããŸãã
ã ããããœãããŠã§ã¢ã¯ãå°ãªããšããããããèŠã䟡å€ãããããã«æããŸãã 補é æ¥è ã¯ããã®è£œåãããããç¹ã§OpenVPNãããåªããŠãããšäœçœ®ä»ããŠãããã®ã¬ãããã®ã¹ã«ãŒããããçŽæããŠããŸãã äžè¬ã«ããã¹ãããå¿ èŠããããŸãïŒ ãã®æ®µéã§ã¯ãç§ã¯ãã®ãããªãã®ãæ¬åœã«å¥œãã§ãã