æè¿ã Uptime.commuintyã®æ å ±ã·ã¹ãã ã®éçšãšç®¡çã«é¢ãã2åç®ã®äŒè°ãã¢ã¹ã¯ã¯ã§éå¬ãããç§ãã¡ãçµéšãå ±æããŸããã ãã€ãã®ããã«ãçã¿ã«ã€ããŠ-DDoSã«ã€ããŠã§ãã
Habrã«å¯ŸããDDoSæ»æã¯çŽ10幎åã«å§ãŸããŸããããããã§ãç§ãã¡ã«ãšã£ãŠäžå¿«ãªåé¡ã§ãã æåã¯å°ãè¿œå ããããšããtiç ãªè©Šã¿ããããŸããããä»ã§ã¯éåžžã®DDoSã¯çŽ30 Gb / sã§ãã ã¢ã¹ã¯ã¯ã®ãã¹ãŠã®ç¥æ¯ã50MBãæã£ãŠãããããããã¯é©ãããšã§ã¯ãããŸããã ãã¹ãŠã¯å€å žã«ãããšïŒ1æ³ã®å¥³æ§-50ã10æ³ã®å¥³æ§-500 ...
ãŽã¡ãã£ã ã»ãªãã«ã³ãããŒããŒ
ããã¯ãããŠããŠãç¹å¥ãªãžã§ãã€ã®ãã¯ããã¯ã«é¢ãããã®ã§ã¯ãããŸããã ãã¹ãŠãã·ã³ãã«ã§éåžžã«æ£æçã§ãããè€éãªå¹³å¡ãªè¡çæé ã®ããã§ãã ã»ãšãã©ã®ãçµéšã®ããã管çè ã¯ã次ã®ãã¹ãŠãæ¢ã«èªèããŠããŸãããèŠçŽããŠå床繰ãè¿ãããšã¯äžèŠã§ã¯ãããŸããã ç§ãã¡ã¯çµéšã«åºã¥ããŠç¬èªã«å€ãã®æ±ºå®ã«éããŸããããããã£ãŠã誰ããå°ãæéãç¯çŽããããšã«æåããå Žåãããã¯ãã§ã«æåã§ãã ããªãã¯ãŸã ããã¯ã¢ããããŸãããïŒ ããããç§ãã¡ã¯ããªãã«è¡ããŸãïŒ
ã¢ãŒããã¯ãã£ã«ã€ããŠå°ã
ã¡ã€ã³ãµã€ãã«ã¯ãç¬èªã®ããŒããŠã§ã¢ãç¬èªã®ã¹ã¿ã³ãããã¹ãŠã®ãµãŒããŒãéåžžã«åŒ·åã§ãããæ倧éã«æŽ»çšããŠããŸãã ç§ãã¡ã¯ç¬èªã®IPã·ã¥ããã¯ãæããªãããã«ããŠããããããã¹ãŠãç°è²ã®ãããã¯ãŒã¯ã«åŒã蟌ãŸããŸãã 3人ã®éä¿¡äºæ¥è ãã©ãã¯ã«é£ããŠããããããããIPã¢ãã¬ã¹ã®å°ããªãããã¯ãã¬ã³ã¿ã«ããŸãã ãããã€ããŒã«ç¬ç«ããã¢ãã¬ã¹ã§ASã䜿çšããããšãèããŸãããããã®å ŽåãããŒã€ã³ã°ã®ç¿Œã®ãããªã³ã¹ãã®æ©åšãè³Œå ¥ãã第2ã®ç¿Œã®ãããªã³ã¹ãã®ãã£ãã«ãæ¯æãå¿ èŠããããŸãã æåŸã«ãä¿è·ã®ããã«QratorãéžæããŸããã
ã¢ã¹ã¯ã¯å·ç«å€§åŠã®æè¡ãµã€ãã§HLLãã©ã³ãã®äœæ¥ãå§ããã°ããã®é ããååãç¥ã£ãŠããŸãããã以æ¥ãäžéšã®åéã§ã®é¢ä¿ãäŒæ¥é¢ä¿ã倧ããåŒãé¢ããŠããŸããã ãã·ã¢ã§DDoSä¿è·ã«å¯ŸåŠããæåã®1ã€ã§ãããäŸç¶ãšããŠæãé©åãªãã®ã®1ã€ã§ãã ãã¡ãããç§ã¯ã€ã³ãµã€ããŒæ å ±ãå ±æããŸãããç§ã¯ãããèšããŸãïŒåœŒãã¯ãã®åžå Žã§æé«ã®1ã€ã§ãã
äž»ãªåé¡
ç§ãã¡ã¯Qratorãã©ã®ããã«æ©èœããããããç¥ã£ãŠããããã®äœæ¥ã«ã€ããŠèŠæ ã¯ãããŸããã ãããã«ã€ããŠã§ã¯ãªããååãšããŠãã®ã¿ã€ãã®DDoSã«å¯Ÿããä¿è·ã«ã€ããŠã§ãã ä¿è·ã«ã¯ã¢ãŒããã¯ãã£äžã®å¶éããããããæ»æè ã¯ãããã®å¶éã䜿çšã§ããŸãã
é²åŸ¡ãåªããŠããŠããããã¯æåã®ããã³ãã£ã¢ã«ããããé¡ãžã®æ»æããã®ã¿åœ¹ç«ã¡ãŸãã ããã¯å é§çãªããã«ãŒã®å©ãã«ãªããŸããããµã€ãããé åºä»ããããŠãããå Žåãæ»æè ã¯åã«ãã¡ã€ã³ãã¹ã¯ã€ãããããšã«å¶éããããããè匱ãªå®ãªãœãŒã¹ã¢ãã¬ã¹ãæ€çŽ¢ããããã§beatãããŸãã
æ»æè ã¯ã©ã®ããã«ããŠå®éã®ãããã¯ãŒã¯ã¢ãã¬ã¹ãèŠã€ããããšãã§ããŸããïŒ
ãããªãã¯whoisããã³Ripe DBãªã©ã®ä»ã®ããŒã¿ããŒã¹
1ã€ç®ã¯ãRIPEãªã©ã®ããŒã¿ããŒã¹ã§ãããå€ãã®å ¬éæ å ±ãå«ãŸããŠããŸãã ãã¡ã€ã³ã®ããã«ããã©ã€ãã·ãŒWHOISã«çŽæ¥é¡äŒŒãããã®ã¯ãããŸããã ããã§ã¯ã管çè ã®é£çµ¡å ãäŒç€Ÿåããã®ä»ã®æè¡ããŒã¿ãªã©ããã¹ãŠã®ããŒã¿ããã¬ãŒã³ããã¹ãã§ç€ºãããŸãã æ»æè ã«ãšã£ãŠéåžžã«åœ¹ç«ã€æ å ±ã ç§ãã¡ã¯ãHabrahabrããšåŒã°ããŠãããšããŸãããã 圌ã¯åèªãHabrããŸãã¯é¡äŒŒã®ãã®ãæ€çŽ¢ã§ããç§ãã¡ãèŠã€ããããšãã§ããŸãã ä»ã§ã¯ä»¥åã»ã©ç°¡åã§ã¯ãããŸããã ãããããã®ãããªãªãã·ã§ã³ããããŸãã
RIPE DBã«å ããŠãããšã1å°ã®ãµãŒããŒãã¬ã³ã¿ã«ãããšããŠããRIPEçšã®ç¹å¥ãªãã©ãŒã ãžã®å ¥åãåžžã«èŠæ±ãããã¹ãã£ã³ã°äºæ¥è ïŒãHetznerããªã©ïŒãååšããããšã«æ³šæããŠãã ããã ãŸããwhoisã®ã©ããã«ãªãŒã¹ãããã¢ãã¬ã¹ãããŒã¯ããããšãã§ããŸããããšãã°ããã¹ãã£ã³ã°äºæ¥è ã¯ãã¢ãã¬ã¹ãžã®ã³ã¡ã³ãã§çµç¹ã®ååã瀺ãããšãã§ããŸãã ãããŠããããã¯ãã¹ãŠéåžžã®ããŒã¿ããŒã¹è§£æã§ãèŠãããšãã§ããŸãã å°ãè³¢æãªæ»æè ã¯ã管çè ã®nic-handleãŸãã¯ã¡ã³ãããŒã«ãã£ãŠåé¡ã§ããŸãã
æœåšçãªä¿è· ïŒIPã¢ãã¬ã¹ã®ãããã¯ãæ倧éã«éå人åããå¿ èŠããããŸãã
é解決
æ£ããPTRã¯äŸ¿å©ã§æ£ãããã®ã§ãããå¥ã®æ»æè
ã®æŠåšã§ãã ååãšããŠãå¢çãç 究ããããã®ä»ã®æ¹æ³ãšçµã¿åãããŠäœ¿çšââãããŸãã
ã¡ãŒã«ãé©åã«æ©èœããã«ã¯ãPTRãç»é²ããå¿
èŠãããããšã¯èª°ããç¥ã£ãŠããŸãã ããã«ãããšãã°ãPTRããªããšã解å床ãé·ããªãå¯èœæ§ããããŸãã ããããæè¡ãã¡ã€ã³ãPTRã«ç»é²ãããŠããå Žåãæ»æè
ã¯ãã®ãã¡ã€ã³ã®ã¹ãã£ã³ãéå§ãããµããã¡ã€ã³å
ã®èå³æ·±ããšã³ããªãèŠã€ããããšãã§ããããããããã¯éå人åããå¿
èŠããããŸãã ããšãã°ããããã€ããŒã®ãã¡ã€ã³node-0-0-0-0.yatvoidomtrubashatalisp.net
ãã¹ãŠã®ãããªãã¯node-0-0-0-0.yatvoidomtrubashatalisp.net
éããããšããå§ãããŸãã ãŸãã¯ã䟵å
¥è
ã«ãšã£ãŠè³¢æãªããšãäœãèªããªããã³ã»ã³ã¹ãæžããŸãã
æœåšçãªä¿è· ïŒãªãã¬ãŒã¿ãŒã®åŸãã§å¿ååãããPTRã䜿çšããŸãã
ã¢ãã¬ã¹ç §åãããŒãããã³ãµãŒãã¹ã®ã¹ãã£ã³
æ»æè
ã¯ãäžè¬ã«æ¯èŒçå°æ°ã§ããããã LIR ïŒãªãã¬ãŒã¿ãŒïŒå
šäœãå«ããéããŠããããŒãã®ã¢ãã¬ã¹ãããã¯ãã¹ãã£ã³ã§ããŸãã ã¢ã¯ãã£ããªWebãµãŒããŒã®ã¢ãã¬ã¹ã®ãªã¹ããåãåã£ãæ»æè
ã¯ãæ»æãããä»®æ³curl -H "host: example.com" http://INET_ADDR/
WebãµãŒããŒã®å¿çãååŸããããã«ãla curl -H "host: example.com" http://INET_ADDR/
ãè¡ãããšãã§ããŸãã HTTPSã¯ãç¹ã«ãµãŒããŒã«èšŒææžã1ã€ãããªããTLS SNIããªãå Žåã«ããã®æ»æè
ãå©ããããšãã§ããŸãã ãŸããæ»æè
ãcURLã䜿çšããŠããããŒãæã€ç¹å®ã®ãµã€ãã®ååãååŸããããšããããã«ãããŒã443ã®IPã¢ãã¬ã¹ãåçŽã«ã€ã³ã¯ããããšãèããããŸãããããŠããµã€ãåãšãã®ãã¡ã€ã³ã瀺ãããã©ã«ãã®èšŒææžãååŸã§ããŸãã
æœåšçãªä¿è· ïŒãã®ãããªèª¿æ»ã«å¯Ÿããä¿è·ã®æ¹æ³ã¯æ°å€ããããŸããäžè¬çã«ã¯ããã¡ã€ã¢ãŠã©ãŒã«ã¬ãã«ã§çä¿¡æ¥ç¶ãå¶éããã®ãæåã§ããä¿¡é Œã§ãããããã¯ãŒã¯ããã§ã¯ãªãããã©ãã£ãã¯ãã£ã«ã¿ãªã³ã°ãã€ã³ããããã¯ãŒã¯ããã§ããªããã®ã¯ãã¹ãŠå¿çããªãã§ãã ããã ããŒã¿ã¯ãªãŒãã³ã°ã»ã³ã¿ãŒã䜿çšããå Žåã¯ããã®ã¢ãã¬ã¹ã®ãªã¹ããååŸããŠãã¯ã€ããªã¹ãã«è¿œå ããä»ã®å šå¡ã®å ¥ãå£ãå®å šã«éããå¿ èŠããããŸãã ããšãã°ããã¥ââã¬ãŒã¿ãŒã¯æè¿ããã©ãã£ãã¯ã¯ãªãŒãã³ã°ãã€ã³ãã®ã¢ãã¬ã¹ããã§ã¯ãªããä¿è·ããããã¹ãã®å¯çšæ§ã®èªåãã¹ããå°å ¥ããŸããã
ãµã€ãã®Aã¬ã³ãŒãã§ããŒã¿ã»ã³ã¿ãŒã®ã¢ãã¬ã¹ãæå®ããå Žåãnginxã¯ãããæŸæ£ããªããšèããŠããå Žåã«æ³šæããŠãã ãã-ããªãã¯ééã£ãŠããŸãã ãã¡ãã圌ã¯ããããã§ãããã ç¹°ãè¿ããŸãããç¥èãªãã®ãã¹ãŠããã¡ã€ã¢ãŠã©ãŒã«ã§é ãã®ãæãç°¡åã§ãã
ã¡ãŒã©ãŒ
ãŸããã¡ãŒã«ãµãŒããŒã¯helo
ã«æè¡çãªãã¡ã€ã³ãæäŸãããããã¹ãã£ã³ã«äœ¿çšã§ããŸãã
2ã€ç®ã¯ãç§ãã¡ããã€ãŠç§ãã¡èªèº«ã§åºããããã®ã¯ã Received
ããããŒã§ãããšæãããŸããæåãéãããåãããã¯ãããããŒã§ç€ºãããšãã§ããŸãã ãããŠããã®ãããªIPãæã€ãµãŒããŒããç¹å®ã®ãããã³ã«ã«åŸã£ãŠãç¹å®ã®æéã«ãç¹å®ã®ã¬ã¿ãŒIDãæã€ãã®ãããªIPãæã€ãµãŒããŒããã¬ã¿ãŒãåãåã£ãããšã瀺ãããšãã§ããŸãã æçŽã®åºå
žãèŠãã ãã§ãIP-schnikiãèŠãããšãã§ããŸãã
ä¿è·ã®å¯èœæ§ ïŒã¡ã€ã³ã®ã€ã³ãã©ã¹ãã©ã¯ãã£ããéé¢ããããããã¯ãŒã¯ç©ºéïŒããšãã°ãã¬ã³ã¿ã«ãµãŒããŒãä»®æ³ãã·ã³ïŒã«ããå¢çã¡ãŒã©ãŒãä»ããŠã¡ãŒã«ã衚瀺ããããšããå§ãããŸãã æåã®ããããŒãå¶åŸ¡ããèªåã¢ãŒãã§åä¿¡ããåé¡ã®ããããããŒããã¹ã¯/åé€ããå¿ èŠããããŸãã ãŸãã¯ã Mailgunãªã©ã®å€éšãªãœãŒã¹ã䜿çšããŸããããã®ãããªåé¡ã¯ãããŸããïŒãã ããä»ã«ããããŸãïŒã
DNS
æ»æã®æ©äŒãããããããããããã¹ãŠããªã¹ãããããšã¯ã§ããŸããã ããŒããŒãã¯ãã©ã€ããªNSã§ãããããããã¹ãŠã®ã»ã«ã³ããªã®ãã¹ãŠã®æŽæ°ã®ãœãŒã¹ã§ãã ãã©ã€ããªãèšå®ãããŠããå Žåãéåžžã®Aã¬ã³ãŒããå€æŽããæ©èœããããã¯ãããŸãã çµå±ãäœãã§ããŸãããæåã«ãä»ã®NSãµãŒããŒã«ãã¡ã€ã³ãåå§ä»»ããå¿ èŠãããããã§ãã äžè¬çã«-çŽ3幎åã«çºçããå€ãã®åé¡ã ãã®çµæããã©ã€ããªãé衚瀺ã«ããŸãã ã€ãŸããç§ãã¡ã¯ããããã©ãã«ãçºè¡šããŠããŸããã ãããã¯ãããŸãããé ãé¢ããŠããŸãã 圌ã¯äžäººã§ã¯ãªãããã®IPã¢ãã¬ã¹ãšãã¡ã€ã³åã¯ã©ãã«ã瀺ãããŠããŸããã ãã©ã€ããªã瀺ãã¯ãã®SOAã¬ã³ãŒãã§ãã»ã«ã³ããªã®1ã€ã®ã¢ãã¬ã¹ãæå®ããŸãã ãã¹ãŠãæããã§ãã ãŸããaxfrã䜿çšããŠDNSãæŽæ°ããŸããã DNSã¯ããªãåã«çºæãããããããã®æè¡ã¯ç§ãã¡ã®ã¹ããŒã ã«ã¯ããŸãé©ããŠããŸããã ãã¹ãŠã®ããŒã¿ããŒã¹ãä¿åããMySQLããã¯ãšã³ãã§PowerDNSã䜿çšããŸãã ã»ã«ã³ããªãŒã¯ãã¹ãŠãPowerDNSãåããMySQLã¹ã¬ãŒãã§ãã ãããŠãããšãDNSã®äžéšãã¹ããŒãã£ã³ã°ããããšããŠãããŸã ãããããããŸãã DNSãå«ããããã¯ããã¥ã¬ãŒã¿ãŒããã®DDoSæ»æã«å¯Ÿããä¿è·ã®å¯Ÿè±¡ã§ãã ããããã®ä»®æ³ãã·ã³ãè³Œå ¥ããŸããããæ¬åœã«ãããããããŸãã
æœåšçãªä¿è· ïŒã¡ãŒã©ãŒã®å Žåã®ããã«ãã¡ã€ã³ãšã³ãžãã¢ãšåãã€ã³ãã©ã¹ãã©ã¯ãã£ã«DNSãä¿æããªãã§ãã ããã ãã¹ã¿ãŒã¯äžè¬ã«é ããŠã¢ããŠã³ã¹ããªãæ¹ãè¯ãã§ãã SOAã¬ã³ãŒããå«ããã¡ã€ã³ãã»ã«ã³ããªã«å§ä»»ããããšããå§ãããŸãã
ASã«ã€ããŠ
ç§ãã¡ã¯ãASãåãã¹ãããšèããŸããã LIRã¹ããŒã¿ã¹ã§ã»ãŒç¡æã§æäŸããããšããææ¡ãããŸãããããŸããããã»ã©å€ãã®ã¢ãã¬ã¹ïŒ/ 23-512åïŒãå¿ èŠãšããŸããã 第äºã«ãRIPEãšéä¿¡ããå¿ èŠããããRIPEãšéä¿¡ã§ããå¿ èŠããããããããã¯è¿œå ã®è²¬ä»»ã§ãã 第äžã«ãIPã·ã¥ããã¯ã«å¯ŸããŠRIPEã®ãéãæ¯æãå¿ èŠããããŸãïŒæ£åŒã«ã¯ããã§ã¯ãããŸããïŒã ãããŠãæãéèŠãªã®ã¯ããã¹ãŠã®ããŒã¿ããã¹ãŠã®IPã·ã¥ããã¯ããã¹ãŠã®ãŠãŒã¶ãŒã«å©çšå¯èœã«ãªãããšã§ãã ãããã£ãŠãé«äŸ¡ãªéçãã€ã³ã¹ããŒã«ããå¿ èŠããããéåžžã«åªãããã£ãã«ãæã¡ãå€ãã®ã¢ãããªã³ã¯ãæã¡ããããã¯ãŒã¯ã®å¶åŸ¡ã匷åããå¿ èŠããããŸãã ããã¯ç§ãã¡ã«ãšã£ãŠã¯ãŸã£ãããããŸãããããã倧ããªäººã®éåžžã®ã¹ããŒã ã§ãã
圌ãã¯çããŠã30ã®ã°ããã£ã³ãã«ã«æ³šããŸããã æ倱ãæå°éã«æããã«ã¯ã©ãããã°ããã§ããïŒ
ç¬ç«ãã£ã³ãã«
ç¬ç«ããã«ãŒã¿ãŒãåãããç¬ç«ãããªãã¬ãŒã¿ãŒã®ããã€ãã®ç¬ç«ãããã£ãã«ããããŸãã ãªãã¬ãŒã¿ãŒã¢ãã¬ã¹ãããã¯ã®ç°ãªãéšåããã®2ã€ãŸãã¯3ã€ã®å°ããªãããã¯ã ããã«ãããnullrouteã§æ»æããããããã¯ãè¿
éãã€å®å
šã«ãããŒãžãã§ããŸãã
ããŒã¿ã¯ãªãŒãã³ã°ã»ã³ã¿ãŒãããå Žåã§ããã¢ããã¹ããªãŒã ã«ããããã€ãã®å€éšãããã€ããŒã®ã¢ãã¬ã¹ãæå®ããŸããããã«ããããããã€ããŒã®1ã€ã«åé¡ãçºçããå ŽåïŒããšãã°ããããã¯ãŒã¯æ倱ãDDoSæ»æãªã©ïŒããã¥ã¬ãŒã¿ãŒã¯è² è·å
šäœãå¥ã®ãããã€ããŒã«è»¢éã§ããŸãã ããã¯ãnginxã®ã¢ããã¹ããªãŒã ã«äŒŒãŠãããã¢ã€ãã«ã¢ããã¹ããªãŒã ãã¹ããŒããå¯èœæ§ããããŸãã
æ£æ°ãªãªãã¬ãŒã¿ãŒ
éçšãµããŒããµãŒãã¹ã®ããéåžžã®ãªãã¬ãŒã¿ãŒãšã®ã¿é£æºããããšãéåžžã«éèŠã§ãã åªãããªãã¬ãŒã¿ãŒãããŸããååãšããŠããããã¯å€§äŒæ¥ã§ã¯ãããŸããããåžå Žã§ãã£ãããšç¢ºç«ãããŠããŸãã 圌ããšäžç·ã«ãã¹ãŠãã¯ãŒã«ã§ãããªãã¯é»è©±ããŠãäœãèµ·ãã£ãŠããã®ããåé¡ãã©ã®ããã«è§£æ±ºãããŠããã®ããç解ããããšãã§ããŸãã ææ決å®ããã人ã«ãã€ã§ãé£çµ¡ãåãããšãã§ããŸãã ç§ãã¡ã®çµéšã§ã¯ã倧èŠæš¡ãªãªãã¬ãŒã¿ãŒã¯æªã§ãã ããªãã巚倧äŒæ¥ã§ã¯ãªãå Žåã圌ãã¯ããªããšæ£åžžã«åäœããŸããã ãããã«ãããäžåšçšãªå®åå¶åºŠã¯ãè¿ éãªææ決å®ãé£ããããŸããåæ©çãªæè¡ãµããŒããåããããšã¯ãã§ã«å€§ããªåé¡ã§ãã
Bfg
éåžžã®ASããã³ã¢ãã¬ã¹ãããã¯ããªãå Žåã§ããBGPãªãã¬ãŒã¿ãšã®ã€ã³ã¿ãŒãã§ã€ã¹ã§ã å€ãã®äººã«ãšã£ãŠã®BGPã¯ãç¹ã«æã森ãšåŒã°ãã3ã€ã®æãããæåã§ãããç¹å¥ã§åŒ·åãªæ§ã ãªããŒã¯ããžãã¯ãæã£ãŠããŸãã å®éãããã«ã¯ã²ã©ããã®ã¯äœããããŸããã ASããªããŠããBGPã¯é©åã§ãã éåžžã®ãªãã¬ãŒã¿ã¯ããç°è²ãã®ASã®äžã§ã¯ã©ã€ã¢ã³ãã«ãŒã¿ããèªåèªèº«ãã¢ããã¿ã€ãºããããã®å°ããªã¢ãã¬ã¹ãããã¯ãèš±å¯ã§ããããã§ãã çªç¶ç¹å®ã®ãã¬ãã£ãã¯ã¹ãå ¥åããå ŽåãããŒããŒã«ãŒã¿ãŒã®ã¢ããŠã³ã¹ãããããåé€ãããšãæ»æã¯ãªãã¬ãŒã¿ãŒåŽã§çµäºããèªåçã«ã«ãŒã¿ãŒã«å°éããŸããã å¶åŸ¡ãå°é£ãªUDPãæ³šå ¥ãããŠããå Žåã§ãããªãã¬ãŒã¿ãŒã¬ãã«ã§æ¢ã«çµäºããŠããŸãã 圌ã«ã¯è¯ããã£ã³ãã«ããããããã«èããããšãã§ããŸãã ãããŠãåœç€Ÿã®ã«ãŒã¿ãŒã¯éåžžã§ããã,çãªäŒæ¥ã§ã¯ãããŸãããããã¡ãã30ã®ã¬ãããã«ãèããããŸããã ãã®ããããããã¯ãŒã¯ã«å¯ŸåŠããããšããå§ãããŸããã°ããŒãã«ãããã¯ãŒã¯ãå«ãããã®ä»çµã¿ãã«ãŒãã£ã³ã°ã®ä»çµã¿ã å°ãªããšãäž»ãªãã®ã¯ãBGPãšã¯äœã§ããã ç¬ããªããã°ããããã¯ãŒã¯ã«é¢ããåªãããã¥ãŒããªã¢ã«ã¯Cisco CCNAã§ãã圌ãã¯ããã§Flintstoneãã¡ããªãŒã«ã€ããŠã話ããŸãã
èœã¡çããŠ
æ»æãçºçããå Žåã¯ããã¹ãŠããã£ãããšææ ®æ·±ãè¡ããŸãã æãéèŠãªã«ãŒã«ã¯ãæåã®ã«ãŒã«ãæ£ããäœæããããšã§ãã çªç¶äœããèµ·ãã£ãå Žåãé ã倱ã£ãŠã¯ãããŸããã ç¹ã«ãäžåžãäœããæ©èœããŠããªãããšã«æ¿æããŠããå Žåãæ¥ã«åãåããªãã§ãã ããã誀ã£ãŠãã¹ãŠã倱ãå¯èœæ§ããããŸãã ããšãã°ãééã£ãã¢ã¯ã»ã¹ãªã¹ãã«ééã£ãIPã¢ãã¬ã¹ãç»é²ããã®ã¯é¢åã§ãã°ãªããå šäœã倱ãå¯èœæ§ããããŸãã ãŸãã¯ããµãŒããŒã暪ããã£ãŠãããšãã«ããŒã¿ããŒã¹ãæ»ãã å Žåããããä¿®æ£ããåã«ãŸãæ£ç¢ºã«æ»ãã ãã®ãç解ããå¿ èŠããããŸãã ã7å枬å®ããŠã1åã«ããããšããããšãããããã®ãäžæè°ã§ã¯ãããŸããã ããªãã¯ææ ®æ·±ããã¹ãŠãããå¿ èŠããããŸãã
ãã³ãã¹ãã泚æããããWAFã䜿çšãã
å¢çä¿è·ãå¶åŸ¡ãããæ¹æ³ã§ç Žãããšã¯æ±ºããŠæ¥ãã¹ãããšã§ã¯ãããŸããã æããããããªãã³ãã¹ãã¯ããéãã®äººãã«ãšã£ãŠã¯é«äŸ¡ãªåã³ã§ãããåžžã«ãå¯èœãªéžæè¢ãã§ãã WAFã«ã€ããŠã¯-è¯ãããšã§ãããè€åäœã§ã®ã¿ã§ãã åžå Žã«åºåã£ãŠããWAFãµãã©ã€ã€ãŒã®å€ãã¯ãå¥åŠãªã·ã£ãŒã©ã¿ã³ã®ããã«èŠããŸãã
IDDQDã¢ãŒã
äŒç€Ÿã«æ¬åœã«ããããã®ãéããããªãã ASå šäœãBGPçµç±ã§ããŒã¿ã»ã³ã¿ãŒã«ã¢ããŠã³ã¹ã§ããŸãã ããã¯éåžžã«é«äŸ¡ã§ãããã©ãã£ãã¯ã®åž¯åã§å é»ãè¡ãããããããã£ãã«ã®äœ¿çšçãè³¢æã«èšç®ããå¿ èŠãããããã§ãã 誰ãããããã®IPã·ã¥ããã¯ãéããŠäœãééã£ããã®ã泚ãå§ããå Žåã圌ã¯å€ãã®ãéã泚ãããšãã§ããŸãã ããã«-ããã¯hemoãè¿œå ããŸãããããã¯ãŒã¯æè¡ãå®å šã«ç解ãã調çã§ããããã«ããå¿ èŠãããããã§ãã ãããããããã¯ãéçºãããã€ã³ãã©ã¹ãã©ã¯ãã£ãšåœ¢æãããéçšéšéãæã€äžèŠæš¡äŒæ¥ã«ãšã£ãŠã¯çŽ æŽãããéžæè¢ã«ãªãã§ãããã
ãã¹ãŠã®éèŠäºé ãšåæ§ã«ããããã¯ãŒã¯å¢çä¿è·ã®å Žåãéã«é Œãããšã¯ããŸããããããŸããã ãéæ³ã®è¬ãã«é¢ãã声æãçå®ã§ã-ãããã¯ååšããŸããã DDoSã¯äžå¿«ãªãã®ã§ãããå¿ ãããèŽåœçã§ã¯ãããŸããã å®å šã«ãŒã«ãé å®ãã代ããã«ããªãã§ãã ããããã¹ãŠãé ãå¿ èŠããããŸã-é ãã
ç§ãã¡ã¯ãã¹ãŠã®å人ããã¹ãŠã®æ»æãããŸãæéããããšãæã¿ãæ»æè ã«ããããçš®é¡ã®å€±æãæã¿ãŸãã ãããŠãåãããªããšå ±ã«ãããŸãããã«ïŒ