ãããã€ããŒã®ãAgent Auditorãã¢ãžã¥ãŒã«ã¯ ããããã€ããŒã«çŽæ¥ã€ã³ã¹ããŒã«ãããŸãã
ãšãŒãžã§ã³ãç£æ»ã¢ãžã¥ãŒã«ã¯ãèªåã·ã¹ãã ç£æ»ïŒASç£æ»ïŒã®æ§é èŠçŽ ã§ãã ãã®ã·ã¹ãã ã¯ã2006幎7æ27æ¥ã®é£éŠæ³ç¬¬149-第149-ãæ å ±ãæ å ±æè¡ãããã³æ å ±ä¿è·ãã®æ¡é 15.1ã15.4ã§å®ããããèŠå®ã®æ å ã§ãã¢ã¯ã»ã¹å¶éã®ããéä¿¡äºæ¥è ã«ããã³ã³ãã©ã€ã¢ã³ã¹ãç£èŠããããã«èšèšãããŠããŸãã
ç£æ»ASãäœæããäž»ãªç®çã¯ãçŠæ¢ãããæ å ±ãžã®ã¢ã¯ã»ã¹ã®äºå®ã®ç¹å®ã«é¢ãã2006幎7æ27æ¥ã®é£éŠæ³ç¬¬149-FZãæ å ±ãæ å ±æè¡ãããã³æ å ±ä¿è·ãã®æ¡é 15.1-15.4ã§ç¢ºç«ãããèŠä»¶ã®éä¿¡äºæ¥è ã«ããã³ã³ãã©ã€ã¢ã³ã¹ãç£èŠããããšã§ãéåã«é¢ããè£è¶³è³æïŒããŒã¿ïŒãåãåããçŠæ¢ãããŠããæ å ±ãžã®ã¢ã¯ã»ã¹ãå¶éããŸãã
ãã¹ãŠã§ã¯ãªãã«ããŠããå€ãã®ãããã€ããŒããã®ããã€ã¹ãèªå® ã«ã€ã³ã¹ããŒã«ããããšãèãããšã RIPE Atlasãªã©ã®ãããªããŒã³ã³ãããŒãã®å€§èŠæš¡ãªãããã¯ãŒã¯ãæã£ãŠããã¯ãã§ãããã¢ã¯ã»ã¹ã¯ã¯ããŒãºãããŠããŸãã ããããç¯å°ã¯ãã¹ãŠã®æ¹åã«ä¿¡å·ãéä¿¡ããç¯å°ã§ããããããããã£ããããŠããã£ãããããã®ãšãã®æ°ã確èªãããã©ãã§ããããïŒ
ã«ãŠã³ãããåã«ããªããããå¯èœãªã®ããèŠãŠã¿ãŸãããã
çè«ã®ããã
ãšãŒãžã§ã³ãã¯ã次ã®äŸã®ãããªHTTPïŒSïŒãªã¯ãšã¹ããå«ãããªãœãŒã¹ã®å¯çšæ§ããã§ãã¯ããŸãã
TCP, 14678 > 80, "[SYN] Seq=0" TCP, 80 > 14678, "[SYN, ACK] Seq=0 Ack=1" TCP, 14678 > 80, "[ACK] Seq=1 Ack=1" HTTP, "GET /somepage HTTP/1.1" TCP, 80 > 14678, "[ACK] Seq=1 Ack=71" HTTP, "HTTP/1.1 302 Found" TCP, 14678 > 80, "[FIN, ACK] Seq=71 Ack=479" TCP, 80 > 14678, "[FIN, ACK] Seq=479 Ack=72" TCP, 14678 > 80, "[ACK] Seq=72 Ack=480"
èŠæ±ã¯ããã€ããŒãã«å ããŠãæ¥ç¶ã»ããã¢ãããã§ãŒãºïŒ
SYN
ãš
SYN-ACK
亀æãããã³æ¥ç¶å®äºãã§ãŒãºïŒ
FIN-ACK
ãŸãã
çŠæ¢æ å ±ã¬ãžã¹ããªã«ã¯ãããã€ãã®ã¿ã€ãã®ããã¯ãå«ãŸããŠããŸãã æããã«ããªãœãŒã¹ãIPã¢ãã¬ã¹ãŸãã¯ãã¡ã€ã³åã«ãã£ãŠãããã¯ãããŠããå Žåããªã¯ãšã¹ãã¯è¡šç€ºãããŸããã ãããã¯ãæãç Žå£çãªã¿ã€ãã®ããã¯ã§ãããåãIPã¢ãã¬ã¹äžã®ãã¹ãŠã®ãªãœãŒã¹ãŸãã¯ãã¡ã€ã³äžã®ãã¹ãŠã®æ å ±ã«ã¢ã¯ã»ã¹ã§ããªããªããŸãã URLãããã¯ã¿ã€ãããããŸãã ãã®å Žåããã£ã«ã¿ãªã³ã°ã·ã¹ãã ã¯HTTPãªã¯ãšã¹ãããããŒã解æããŠããããã¯ãã察象ãæ£ç¢ºã«æ±ºå®ããå¿ èŠããããŸãã ãããŠããã®åã«ãäžèšã§èŠãããããã«ãæ¥ç¶ã»ããã¢ãããã§ãŒãºãçºçããã¯ãã§ããã»ãšãã©ã®å Žåããã£ã«ã¿ãŒãã¹ãããããããã远跡ãè©Šã¿ãããšãã§ããŸãã
ãããè¡ãã«ã¯ããby URLãããã³HTTPããããã¯ããã¿ã€ãã®é©åãªããªãŒãã¡ã€ã³ãéžæããŸããããã¯ããã£ã«ã¿ãªã³ã°ã·ã¹ãã ã®äœæ¥ãä¿é²ããã§ããã°é·æéæŸçœ®ããŠããšãŒãžã§ã³ãããã®å€éšãã©ãã£ãã¯ã®äŸµå ¥ãæå°éã«æããããã§ãã ãã®ã¿ã¹ã¯ã¯ãŸã£ããé£ãããããŸããã§ããããããã奜ã¿ã®çŠæ¢ãããæ å ±ã®ã¬ãžã¹ããªã«ã¯å€ãã®ç¡æã®ãã¡ã€ã³ããããŸãã ãã®ããããã¡ã€ã³ãååŸããã
tcpdump
å®è¡ããŠVPSã®IPã¢ãã¬ã¹ã«é¢é£ä»ããããã«ãŠã³ããéå§ãããŸããã
ãç£æ»äººãã®ç£æ»
ç§ã¯ãèŠæ±ã®åšæçãªããŒã¹ããèŠãããšãæåŸ ããŠããŸãããããã¯ãã¬ã€ãä»ãã¢ã¯ã·ã§ã³ã«ã€ããŠã®ç§ã®æèŠãè¿°ã¹ãŸãã ããã¯ãç§ãããããŸã£ããèŠãªãã£ããšèšã£ãŠããããã§ã¯ãããŸããããæ確ãªç»åã¯ãŸã£ãããããŸããã§ããã
åœç¶ã®ããšãªãããæªäœ¿çšã®IPã®äžèŠãªãã¡ã€ã³ã§ãããçŸä»£ã®ã€ã³ã¿ãŒãããã®ãããªå€§éã®æªæ¿è«Ÿæ å ±ãåãåãã ãã§ãã ããã幞ããªããšã«ãç¹å®ã®URLã«å¯ŸããèŠæ±ã ããå¿ èŠã ã£ãããããã¹ãŠã®ã¯ããŒã©ãŒãšãã¹ã¯ãŒãã®ãã«ãŒããããã«èŠã€ãããŸããã ãŸããåãã¿ã€ãã®ãªã¯ãšã¹ãã倧éã«çºçããããããã©ãããã©ãã«ããããç解ããããšã¯éåžžã«ç°¡åã§ããã 次ã«ãIPã¢ãã¬ã¹ã®çºçé »åºŠãéèšããåã®æ®µéã§ã¹ãªãããã人ãæåã§åé¢ããŠããããæ©ãåããŸããã ããã«ã1ã€ã®ããã±ãŒãžãéä¿¡ãããã¹ãŠã®ãœãŒã¹ãåãåããŸããããå€ãã¯ãããŸããã§ããã ãããŠãããã¯ãããå€æããŸããïŒ
å°ãåæ çãªäœè«ã ããã1æ¥åŸããã¹ãã£ã³ã°ãããã€ããŒã¯ããªãåçåãããã¡ãã»ãŒãžãéä¿¡ããããªãã®èœåã§ã¯ILVã®çŠæ¢ãªã¹ãã«ãããªãœãŒã¹ããããããããããã¯ãããŠãããšèšããŸããã æåã¯ã圌ããç§ã®ã¢ã«ãŠã³ãããããã¯ãããšæã£ãããããã§ã¯ãªãã£ãã ããããã圌ãã¯ç§ããã§ã«ç¥ã£ãŠããããšã«ã€ããŠèŠåããŠããã ãã ãšæã£ãã ãããããã¹ãã£ã³ã°äºæ¥è ãç§ã®ãã¡ã€ã³ã®åã§ãã£ã«ã¿ãŒããªã³ã«ããããšãå€æãããã®çµæããããã€ããŒåŽââãšãã¹ãã£ã³ã°äºæ¥è åŽã§äºéã®ãã£ã«ã¿ãªã³ã°ãè¡ãããŸããã ãã£ã«ã¿ãŒã¯ãªã¯ãšã¹ãã®çµããã®ã¿ãã¹ãããããŸããïŒ
FIN-ACK
ãš
RST
ã¯çŠæ¢URLã§ãã¹ãŠã®HTTPãé®æããŸãã äžèšã®ã°ã©ããããããããã«ãæåã®æ¥ä»¥éãåä¿¡ããããŒã¿ãå°ãªããªããŸãããããªã¯ãšã¹ãã®ãœãŒã¹ãèšç®ããã¿ã¹ã¯ã«ã¯ååãªããŒã¿ãåä¿¡ããŸããã
ãã€ã³ãã«å°éããŸãã ç§ã®æèŠã§ã¯ãæ¯æ¥2ã€ã®ããŒã¹ããã¯ã£ãããšèŠããŸããæåã¯ã¢ã¹ã¯ã¯ã®çå€äžä»¥éã§ã2çªç®ã®ããŒã¹ãã¯æã®6ã«è¿ããæ倧12æ¥éå°Ÿã«ãªããŸãã ããŒã¯ãæ£ç¢ºã«åæã«çºçããããã§ã¯ãããŸããã æåã«ããšãŒãžã§ã³ããå®æçã«ãã§ãã¯ãããšããä»®å®ã«åºã¥ããŠããããã®æéããã³ãã¹ãŠã®æéã§ã®ã¿èœã¡ãIPã¢ãã¬ã¹ãå²ãåœãŠãããšæããŸããã ãããã泚ææ·±ãèŠããšãç§ã¯ããã«ã1æéããšã«æ倧1ã€ã®ãªã¯ãšã¹ããŸã§ãç°ãªãé »åºŠã§ä»ã®ééã«é¥ãæéãçºèŠããŸããã ãã®åŸãã¿ã€ã ãŸãŒã³ãšãã®ã¿ã€ã ãŸãŒã³ã«ã€ããŠèããäžè¬çã«ã·ã¹ãã ãã°ããŒãã«ã«åæãããªãå¯èœæ§ããããšèããŸããã ããã«ã確ãã«ãNATããã®åœ¹å²ãæãããåããšãŒãžã§ã³ããç°ãªããããªãã¯IPããèŠæ±ãè¡ãããšãã§ããŸãã
ç§ã®åœåã®ç®æšã¯æ£ç¢ºã§ã¯ãªãã£ãããã1é±éã§ååŸãããã¹ãŠã®ã¢ãã¬ã¹ãã«ãŠã³ãããŠ2791ãååŸããŸããã 1ã€ã®ã¢ãã¬ã¹ãã確ç«ãããTCPã»ãã·ã§ã³ã®æ°ã¯å¹³å4ã§ãäžå€®å€ã¯2ã§ããã¢ãã¬ã¹ããšã®äžäœã»ãã·ã§ã³ïŒ464ã231ã149ã83ã77ããµã³ãã«ã®æ倧95ïŒ ã¯ã¢ãã¬ã¹ããšã«8ã»ãã·ã§ã³ã§ãã äžå€®å€ã¯ããã»ã©é«ããããŸããããã¹ã±ãžã¥ãŒã«ã«ã¯æ確ãªæ¯æ¥ã®é »åºŠã瀺ãããŠããã®ã§ã7æ¥éã§4ã8ååŸãäºæ³ãããŸãã äžåºŠçºçãããã¹ãŠã®ã»ãã·ã§ã³ãç Žæ£ãããšãäžå€®å€ã¯5ã«ãªããŸãããæ確ã«é€å€ããããšã¯ã§ããŸããã§ããã ããã©ããããã¹ããããã§ãã¯ã¯ãçŠæ¢ãªãœãŒã¹ã®ãªã¯ãšã¹ãã«é¢é£ããŠããããšã瀺ããŸããã
ã¢ãã¬ã¹ãããã³ã€ã³ã¿ãŒãããã§ã¯ãèªåŸã·ã¹ãã ã®æ¹ãéèŠã§ããASã¯1510㧠ãäžå€®å€1ã®ASã§å¹³å2ã¢ãã¬ã¹ã§ããASã®äžäœã¢ãã¬ã¹ïŒ288ã77ã66ã39ã27ããµã³ãã«ã®æ倧95ïŒ ã¯4ã¢ãã¬ã¹ã§ãã ASã ããã§ã¯äžå€®å€ãäºæ³ãããŸã-ãããã€ããŒããšã«1ã€ã®ãšãŒãžã§ã³ãã ãŸããããããæåŸ ããŠããŸã-倧èŠæš¡ãªãã¬ãŒã€ãŒãããŸãã 倧èŠæš¡ãªãããã¯ãŒã¯ã§ã¯ããšãŒãžã§ã³ãã¯ãããããªãã¬ãŒã¿ãŒã®ååšããåå°åã«ããã¯ãã§ããNATãå¿ããªãã§ãã ããã åœå¥ã®å Žåãæ倧å€ã¯1409-RUã42-UAã23-CZãRIPE NCCã§ã¯ãªããä»ã®å°åã®36ã§ãã ãã·ã¢ããã§ã¯ãªãèŠæ±ã泚ç®ãéããŠããŸãã ããã¯ãããããããŒã¿ãå ¥åããéã®äœçœ®æ å ±ãšã©ãŒãŸãã¯ã¬ãžã¹ãã©ãšã©ãŒã«ãã£ãŠèª¬æã§ããŸãã ãŸãã¯ããã·ã¢ã®äŒç€Ÿããã·ã¢ä»¥å€ã®ã«ãŒããæã£ãŠããããå€åœã®ä»£è¡šäºåæãæã£ãŠãããããããªããšããäºå®ã¯ãéåžžã«åçŽãªã®ã§ãå€åœã®çµç¹RIPE NCCã«å¯ŸåŠããã®ãèªç¶ã§ãã ééããªãäžèŠãªéšåããããŸããããªãœãŒã¹ãããã¯ç¶æ ã«ããã2æ¥ç®ããã¯ããã«ããã¯ç¶æ ã«ãããã»ãšãã©ã®ã»ãã·ã§ã³ã¯ããã€ãã®ãµãŒãã¹ããã±ãŒãžã®äº€æã«éããªãããã確å®ã«åé¢ããããšã¯å°é£ã§ãã ããã¯å°ããªéšåã§ããããšã«åæããŸãããã
ãããã®æ°å€ã¯ããã§ã«ãã·ã¢ã®ãããã€ããŒã®æ°ãšæ¯èŒã§ããŸãã ILVã«ãããš ããé³å£°ãé€ãããŒã¿éä¿¡çšã®éä¿¡ãµãŒãã¹ã ã®ã©ã€ã»ã³ã¹ã¯6387ã§ãããããã¯äžèšããéåžžã«ããããããè©äŸ¡ã§ããããããã®ã©ã€ã»ã³ã¹ã®ãã¹ãŠãããšãŒãžã§ã³ããã€ã³ã¹ããŒã«ããå¿ èŠã®ããã€ã³ã¿ãŒããããããã€ããŒå°çšã§ã¯ãããŸããã RIPE NCCãŸãŒã³ã§ã¯ããã·ã¢ã§ç»é²ãããŠããASã®åæ§ã®æ°ã¯6230ã§ããããã¹ãŠã®ãããã€ããŒã§ã¯ãããŸããã UserSideã¯ããå³å¯ãªèšç®ãè¡ãã2017幎ã«3940瀟ãåãå ¥ããŸãããããã¯ãäžèšã®æšå®å€ã§ããå¯èœæ§ãé«ãã§ãã ãããã«ãããç §ããããASã®æ°ã¯2.5åå°ãªããªããŸãã ããããããã§ASã¯ãããã€ããŒãšå³å¯ã«ã¯çãããªãããšãç解ãã䟡å€ããããŸãã ç¬èªã®ASãæããªããããã€ããŒãããã°ãè€æ°ã®ãããã€ããŒãæã£ãŠãããããã€ããŒããããŸãã ãšãŒãžã§ã³ãããŸã ç«ã£ãŠãããšä»®å®ãããšã誰ããä»ã®ãšãŒãžã§ã³ããããå€ããã£ã«ã¿ãªã³ã°ããããããªã¯ãšã¹ãã¯ãã¿ãšåºå¥ã§ããŸããã ãããã倧ãŸããªè©äŸ¡ã§ã¯ãããšãç§ã®èŠèœãšããåå ã§äœãã倱ããããšããŠããããªã蚱容ç¯å²ã§ãã
DPIã«ã€ããŠ
ç§ã®ãã¹ãã£ã³ã°ãããã€ããŒã¯2æ¥ç®ãããã£ã«ã¿ãŒãæå¹ã«ããŠããã«ããããããã1æ¥ç®ã®æ å ±ã«ãããšãããã¯ã¯æ£åžžã«æ©èœããŠãããšçµè«ä»ããããšãã§ããŸãã 4ã€ã®ãœãŒã¹ã®ã¿ãçªç Žã§ããHTTPããã³TCPã»ãã·ã§ã³ãå®å šã«çµäºããŸããïŒäžèšã®äŸã®ããã«ïŒã å¥ã®460ã¯
GET
ãéä¿¡ã§ããŸãããã»ãã·ã§ã³ã¯
RST
å³åº§ã«çµäºããŸãã
TTL
泚æããŠãã ããïŒ
TTL 50, TCP, 14678 > 80, "[SYN] Seq=0" TTL 64, TCP, 80 > 14678, "[SYN, ACK] Seq=0 Ack=1" TTL 50, TCP, 14678 > 80, "[ACK] Seq=1 Ack=1" HTTP, "GET /filteredpage HTTP/1.1" TTL 64, TCP, 80 > 14678, "[ACK] Seq=1 Ack=294" # TTL 53, TCP, 14678 > 80, "[RST] Seq=3458729893" TTL 53, TCP, 14678 > 80, "[RST] Seq=3458729893" HTTP, "HTTP/1.1 302 Found" # TTL 50, TCP ACKed unseen segment, 14678 > 80, "[ACK] Seq=294 Ack=145" TTL 50, TCP, 14678 > 80, "[FIN, ACK] Seq=294 Ack=145" TTL 64, TCP, 80 > 14678, "[FIN, ACK] Seq=171 Ack=295" TTL 50, TCP Dup ACK 14678 > 80 "[ACK] Seq=295 Ack=145" # TTL 50, TCP, 14678 > 80, "[RST] Seq=294" TTL 50, TCP, 14678 > 80, "[RST] Seq=295"
ããã®ããªãšãŒã·ã§ã³ã¯ç°ãªãå ŽåããããŸã
RST
æžããããåéä¿¡ãå¢ãã-ãŸãããã£ã«ã¿ãŒããœãŒã¹ããŒãã«éä¿¡ãããã®ã«äŸåããŸãã ãããã«ãããããã¯æãä¿¡é Œã§ãããã³ãã¬ãŒãã§ãããçŠæ¢ããããªãœãŒã¹ãèŠæ±ãããããšã¯æããã§ãã ããã«ã以åããã³åŸç¶ã®ããã±ãŒãžããã倧ãã
TTL
æã€ã»ãã·ã§ã³ã«è¡šç€ºãããåçãåžžã«ãããŸãã
æ®ã
GET
ã§ã衚瀺ãããŸããïŒ
TTL 50, TCP, 14678 > 80, "[SYN] Seq=0" TTL 64, TCP, 80 > 14678, "[SYN, ACK] Seq=0 Ack=1" # TTL 53, TCP, 14678 > 80, "[RST] Seq=1"
ãŸãã¯ïŒ
TTL 50, TCP, 14678 > 80, "[SYN] Seq=0" TTL 64, TCP, 80 > 14678, "[SYN, ACK] Seq=0 Ack=1" TTL 50, TCP, 14678 > 80, "[ACK] Seq=1 Ack=1" # TTL 53, TCP, 14678 > 80, "[RST, PSH] Seq=1" TTL 50, TCP ACKed unseen segment, 14678 > 80, "[FIN, ACK] Seq=89 Ack=172" TTL 50, TCP ACKed unseen segment, 14678 > 80, "[FIN, ACK] Seq=89 Ack=172" # , TTL 53, TCP, 14678 > 80, "[RST, PSH] Seq=1" ...
TTL
ã®éãã¯ããã£ã«ã¿ãŒããäœããå°çããå Žåã«ç¢ºå®ã«è¡šç€ºãããŸãã ããããå€ãã®å ŽåããŸã£ããé£ã°ãªãå ŽåããããŸãã
TCP, 14678 > 80, "[SYN] Seq=0" TCP, 80 > 14678, "[SYN, ACK] Seq=0 Ack=1" TCP Retransmission, 80 > 14678, "[SYN, ACK] Seq=0 Ack=1" ...
ãŸãã¯ïŒ
TCP, 14678 > 80, "[SYN] Seq=0" TCP, 80 > 14678, "[SYN, ACK] Seq=0 Ack=1" TCP, 14678 > 80, "[ACK] Seq=1 Ack=1" # TCP, 80 > 14678, "[FIN, ACK] Seq=1 Ack=1" TCP Retransmission, 80 > 14678, "[FIN, ACK] Seq=1 Ack=1" ...
ãããŠãã°ã©ãã«èŠãããããã«ããã®ãã¹ãŠãç¹°ãè¿ãããç¹°ãè¿ãããç¹°ãè¿ãããŸãã
IPv6ã«ã€ããŠ
è¯ããã¥ãŒã¹ã¯åœŒã§ãã 5ã€ã®ç°ãªãIPv6ã¢ãã¬ã¹ãããçŠæ¢ããããªãœãŒã¹ãžã®å®æçãªèŠæ±ãã€ãŸããç§ãæåŸ ããŠãããšãŒãžã§ã³ãã®åäœã確å®ã«è¡ãããŠãããšç¢ºä¿¡ã§ããŸãã ããã«ãIPv6ã¢ãã¬ã¹ã®1ã€ããã£ã«ã¿ãªã³ã°ã«è©²åœãããå®å šãªã»ãã·ã§ã³ã衚瀺ãããŸãã ããã«2ã€ã®ã»ãã·ã§ã³ã§ã¯ãäžå®å šãªã»ãã·ã§ã³ã1ã€ããèŠãããŸããã§ããããã®ãã¡ã®1ã€ã¯ãã£ã«ã¿ãŒããã®
RST
ã«ãã£ãŠäžæããã2çªç®ã®ã»ãã·ã§ã³ãäžæãããŸããã åèš7 ã
äœæãå°ãªããããããããã¹ãŠã詳现ã«èª¿ã¹ããšãããããã«ã¯3ã€ã®ãããã€ããŒãããªãããšãããããŸããã å¥ã®ã¢ãã¬ã¹ã¯ãã·ã¢ã§ã®ã¯ã©ãŠããã¹ãã£ã³ã°ïŒãã£ã«ã¿ãŒãªãïŒãå¥ã®ã¢ãã¬ã¹ã¯ãã€ãã®ç 究ã»ã³ã¿ãŒã§ãïŒãã£ã«ã¿ãŒã¯ã©ãã«ãããŸããïŒïŒã ãããããªã圌ãã¯çŠæ¢ããããªãœãŒã¹ã®å©çšå¯èœæ§ãã¹ã±ãžã¥ãŒã«ã§ãã§ãã¯ããã®ã¯è¯ã質åã§ãã æ®ãã®2ã€ã¯1ã€ã®èŠæ±ãè¡ãããã·ã¢ã®åœå¢ã«ã¯ãªãããã®ãã¡ã®1ã€ã¯ãã£ã«ã¿ãªã³ã°ãããŠããŸãïŒãŸã 転éäžã§ããïŒïŒã
Locks and Agentsã¯IPv6ã«å€§ããªãã¬ãŒãããããããããã®å®è£ ã¯éåžžã«é«éã§ã¯ãããŸããã ããã¯æ²ããã§ãã ãã®ã¿ã¹ã¯ã解決ãã人ã¯ãèªåèªèº«ãå®å šã«èªãã«æã£ãŠããŸãã
çµè«ãšããŠ
ç§ã¯100ïŒ ã®æ£ç¢ºããè¿œæ±ããŸããã§ããããããèš±ããŠãã ããã誰ãããã®ä»äºãããæ£ç¢ºã«ç¹°ãè¿ããããšé¡ã£ãŠããŸãã ãã®ãããªã¢ãããŒããååãšããŠæ©èœãããã©ãããç解ããããšã¯ç§ã«ãšã£ãŠéèŠã§ããã çãã¯æ¬¡ã®ãšããã§ãã æåã®è¿äŒŒã§åŸãããæ°å€ã¯ãéåžžã«ä¿¡é Œã§ãããšæããŸãã
ä»ã«äœãã§ããç§ãæ ããŠããã®ã¯DNSã¯ãšãªãèšç®ããããšã§ããã ãããã¯ãã£ã«ã¿ãªã³ã°ãããŸããããURLå šäœã§ã¯ãªããã¡ã€ã³ã®ã¿ã§æ©èœãããããããŸãæ£ç¢ºã§ã¯ãããŸããã é »åºŠãèŠããã¯ãã§ãã ãªã¯ãšã¹ãã§çŽæ¥è¡šç€ºããããã®ãšçµã¿åããããšãäœåãªéšåãåé¢ããŠãããå€ãã®æ å ±ãååŸã§ããŸãã ãããã€ããŒãªã©ã䜿çšããŠããDNSéçºè ãç¹å®ããããšãå¯èœã§ãã
ç§ã®VPSã«ã¯ããã¹ãã£ã³ã°äºæ¥è ãç¬èªã®ãã£ã«ã¿ãŒãå«ããããšã¯çµ¶å¯Ÿã«æåŸ ããŠããŸããã§ããã ãã¶ãããã¯äžè¬çãªç¿æ £ã§ãã æçµçã«ãILVã¯ãªãœãŒã¹ãåé€ããèŠæ±ããã¹ãã«éä¿¡ããŸãã ããããããã¯ç§ãé©ãããããšã¯ãªããããã€ãã®å©ç¹ããããããŸããã ãã£ã«ã¿ãŒã¯éåžžã«å¹ççã«æ©èœããŠãçŠæ¢ãããUââRLãžã®ãã¹ãŠã®æ£ããHTTPãªã¯ãšã¹ããã«ããããŸããããåã®ãããã€ããŒã®ãã£ã«ã¿ãŒãééããæ£ããHTTPãªã¯ãšã¹ãã¯ã«ããããŸããã§ããïŒ
FIN-ACK
圢åŒïŒ
FIN-ACK
ããã³
RST
ãã€ãã¹ãã€ãã¹ããã³ã»ãŒãã©ã¹ ãšããã§ãIPv6ãã¹ãã£ã³ã°äºæ¥è ã¯ãã£ã«ã¿ãªã³ã°ãããŸããã§ããã ãã¡ãããããã¯åéãããçŽ æã®å質ã«åœ±é¿ããŸããããããã§ãé »åºŠã確èªããããšã¯å¯èœã«ãªããŸããã ããã¯ããªãœãŒã¹ãé 眮ãããµã€ããéžæããéã®éèŠãªãã€ã³ãã§ããããšãå€æããŸãããILVããã®çŠæ¢ãµã€ããšåãåããã®ãªã¹ãã§äœæ¥ãæŽçããåé¡ã«é¢å¿ãããããšãå¿ããªãã§ãã ããã
æåã¯ãACãç£æ»äººããšRIPE Atlasãæ¯èŒããŸããã ãã®æ¯èŒã¯æ£åœåããããšãŒãžã§ã³ãã®å€§èŠæš¡ãªãããã¯ãŒã¯ãæçã«ãªãå¯èœæ§ããããŸãã ããšãã°ãåœã®ããŸããŸãªå°åã®ããŸããŸãªãããã€ããŒããã®ãªãœãŒã¹ã®å¯çšæ§ã®å質ã決å®ããŸãã é 延ãèšç®ããããã°ã©ããäœæãããããã¹ãŠãåæããããããŒã«ã«ãšã°ããŒãã«ã®äž¡æ¹ã§çºçããå€æŽã確èªãããã§ããŸãã ããã¯æãçŽæ¥çãªæ¹æ³ã§ã¯ãããŸãããã倩æåŠè ã¯ãæšæºçãªãããããã䜿çšããŸãããªããšãŒãžã§ã³ãã䜿çšããªãã®ã§ããïŒ ãããã®æšæºçãªåäœãç¥ã£ãŠããïŒèŠã€ããïŒããšã§ããããã®åšèŸºã§çºçããå€æŽãšããããæäŸããããµãŒãã¹ã®å質ã«ã©ã®ããã«åœ±é¿ããããå€æã§ããŸãã åæã«ããããã¯ãŒã¯ã«ãããŒããåå¥ã«ã€ã³ã¹ããŒã«ããå¿ èŠã¯ãããŸããããããŒãã¯ãã§ã«RoskomnadzorããæäŸãããŠããŸãã
ç§ã觊ãããããäžã€ã®ãã€ã³ãã¯ããã¹ãŠã®ããŒã«ãæŠåšã«ãªãããšãã§ãããšããããšã§ãã ASãã€ã³ã¹ãã¯ã¿ãŒãã¯ééããããããã¯ãŒã¯ã§ããããšãŒãžã§ã³ãã¯çŠæ¢ãªã¹ããããã¹ãŠã®ãªãœãŒã¹ãžã®ãªã¯ãšã¹ããéä¿¡ããããšã«ãããå šå¡ããžãã«ã§æŸæ£ããŸãã ãã®ãããªãªãœãŒã¹ãæã«å ¥ããããšã¯ã絶察ã«åé¡ãè¡šããã®ã§ã¯ãããŸããã åèšã§ããšãŒãžã§ã³ããä»ãããããã€ããŒã¯ãèªåã®ãããã¯ãŒã¯ã«ã€ããŠäŸ¡å€ã®ããããšãããäžæ¬æãªããèšã£ãŠããŸãïŒDPIãšDNSã®çš®é¡ããšãŒãžã§ã³ãã®å ŽæïŒäžå€®ããŒããšãµãŒãã¹ãããã¯ãŒã¯ïŒïŒãé 延ãšæ倱ã®ãããã¯ãŒã¯ããŒã«ãŒ-ããã¯æãæçœãªããšã§ãã 誰ãããšãŒãžã§ã³ãã®ã¢ã¯ã·ã§ã³ãç£èŠããŠãªãœãŒã¹ã®å¯çšæ§ãæ¹åã§ããããã«ã誰ããä»ã®ç®çã§ãããè¡ãããšãã§ããé害ã¯ãããŸããã äž¡åã®éåžžã«å€é¢çãªæ¥œåšã§ããããšãå€æãã誰ããããã確信ã§ããŸãã