
GPL2ã©ã€ã»ã³ã¹ã®äžã§ãæåéãä»å¹Žã®1æã®åãã«ããã§æ¢ã«
æžãããŠããã®ã§ãéåžžã«è峿·±ãããã®æ¹æ³ã§ãŠããŒã¯ãªãããžã§ã¯ã
-SoftEther VPN-ãåæ ŒããŸãã ã ããã¯ç波倧åŠã®åŠçã«ãã£ãŠæžãããŸããã ãã®è£œåã¯ãL2TPãL2TP / IPsecãL2TPv3 / IPsecãMS-SSTPãEtherIP / IPsecãOpenVPNãSSL-VPNïŒç¬èªä»æ§ïŒãL2VPNãªã©ã®èšå€§ãªãã³ããªã³ã°ãããã³ã«ããµããŒãããVPNãµãŒããŒãšããŠäœçœ®ä»ããããŠããŸãã ICMPããã³DNSãä»ãããã³ããªã³ã°ã®ããã«ã ããã¯ã第3ã¬ãã«ãšç¬¬2ã¬ãã«ã®äž¡æ¹ã§ãã³ããªã³ã°ããµããŒãããVLANãšIPv6ãå¯èœã§ãã ã»ãšãã©ãã¹ãŠã®æ¢ç¥ã®ãã©ãããã©ãŒã ïŒARMããã³MIPSã§ãïŒã§åäœããã«ãŒãæš©éãå¿
èŠãããŸããã å®å
šãªä»æ§ã¯
ããã§èŠã€ããããšãã§ã
ãŸã ã æ£çŽãªãšããããã®ããã°ã©ã ã®æ©èœã®ãªã¹ããèŠããšããç§ã¯èªåã®ç®ãä¿¡ããããããITãããŸãããã°ããã¹ãããªããã°ãªããªãïŒã
ãã®èšäºã§ã¯ãSoftEther VPN Server for Linuxã®ã€ã³ã¹ããŒã«ãšæ§æã«ã€ããŠèª¬æããŸãã æ¬¡ã®èšäºã§ã¯ãçŸããæ¯èŒããã©ãŒãã³ã¹ã°ã©ããäœæããŠã¿ãŸãã
ãã®ãœãããŠã§ã¢ã«ã¯ãWindowsçšã®éåžžã«åªãã
ã€ã³ã¿ãŒãã§ã€ã¹ããããŸãããLinuxã§ã¯ãã¹ãŠã®æ§æã¯CLIãä»ããŠè¡ãããŸãã
ããã¥ã¢ã«ã¯ç¢ºãã«åªããŠããŸãããããšãã°ãç§ã«ã¯ããŸãã«ã詳现ã§ããŸãã°ã©ãã£ã«ã«ã€ã³ã¿ãŒãã§ã€ã¹ãšé床ã«ã«ã©ãã«ãªæ¥æ¬ã®åçã«åã£ãŠããããã«èŠããŸããã ãããã£ãŠãããããã®è±èªã®æçŽãã·ã£ãã«ããã®ãé¢åãªäººã®ããã«ãã¡ã€ã³ã®CLIã³ãã³ããã¬ã€ã¢ãŠãããããšã«ããŸããã
æå§ãã«-ãã®å¥è·¡ãã€ã³ã¹ããŒã«ããŠãã ããã 64ãããã®Debian 7ãæèŒããVPSãæå
ã«çœ®ããŠãããããéžæã¯æããã§ããã ããã«èŠåããŸãïŒ
GitHub'a ïŒçŸåšãªãªãŒã¹ãããŠããããŒãžã§ã³4.04ãã«ã9412ïŒã§ã®ã¿ã€ã³ã¹ããŒã«ããå¿
èŠããããŸãïŒ å
¬åŒ
ãµã€ãã§ã¯ãããŸããŸãªãã©ãããã©ãŒã çšã®ãœãŒã¹ãããŠã³ããŒãã§ããŸãããåŸ
ã¡äŒãã¯ãã¡ã€ã¯ãã¡ã€ã«ãäœããã®ãµãã£ã¹ãã£ãã¯ãªè¥¿æŽé¢šã®æ¹æ³ã§çæãããåºåã§ã¯ããµãŒããŒã®ãã€ããªèªäœãšãã®CLIããã¯ã¹ãšãã2ã€ã®ãã¡ã€ã«ããååŸã§ããªãããšã§ãã / usr / bin /ãä»ã®ææçãªãã®ãžã®ã³ããŒã¯ããã«ã¯æžãããŠããŸããã 察ç
§çã«ãgithubã®makefileã¯ã¯ããã«äœ¿ããããã§ãïŒãšã«ããintitã¹ã¯ãªãããå®è¡ããŸããããææã§ãïŒã
ããã°ã©ã ãã€ã³ã¹ããŒã«ããåã«ã
ããã«è¡ãã圌女ãã€ã³ã¹ããŒã«ããå¿
èŠããããã®ãèŠã€ããããšããå§ãããŸãã ããšãã°ãããã€ãã®ã©ã€ãã©ãªãé
眮ããå¿
èŠããããŸããïŒãã®åŸããããã¯åãå£ãããšãã§ããŸãïŒã
# apt-get install libreadline-dev libssl-dev libncurses5-dev zlib1g-dev
ããã«ã€ã³ã¹ããŒã«ããã®ã¯ç°¡åã§ã¯ãããŸããããéåžžã«ç°¡åã§ããããmake installãã®ä»£ããã«ãcheckinstallããšæžãããšã§ãaptããã±ãŒãžãããŒãžã£ãŒãæ°ããããã°ã©ã ãèªèãããããæ£ããåé€ã§ããããšã«æ³šæããŠãã ããïŒè©³çްã¯
ãã¡ã ïŒã
# git clone github.com/SoftEtherVPN/SoftEtherVPN.git
# cd SoftEtherVPN\
# ./configure
# make
# checkinstall
ãã®éçšã§ãã€ã³ã¹ããŒã©ãŒã¯ã©ã€ã»ã³ã¹å¥çŽãèªã¿ããã©ãããã©ãŒã ãšOSã®ãããæ·±åºŠã瀺ãããã«æ±ããŸãã ãšããã§ã圌ã¯ããã°ã©ã ã/ usr / vpnserver /ã«ä»»æã®æ¹æ³ã§é
眮ãããã€ããªã/ usr / bin /ã«é
眮ããããšã«æ³šæããŠãã ããã ã€ã³ã¹ããŒã«ãã¹ãæ°ã«å
¥ããªãå Žåã¯ãã¡ã€ã¯ãã¡ã€ã«ã§æã§å€æŽã§ããŸãã ã€ã³ã¹ããŒã«ã®æåŸã«ã圌ã¯èšãã§ãããïŒ
-ã€ã³ã¹ããŒã«ãæ£åžžã«å®äºããŸããã
ãvpnserver startããå®è¡ããŠãSoftEther VPN Serverããã¯ã°ã©ãŠã³ããµãŒãã¹ãå®è¡ããŸãã
ãvpnbridge startããå®è¡ããŠãSoftEther VPN Bridgeããã¯ã°ã©ãŠã³ããµãŒãã¹ãå®è¡ããŸãã
ãvpnclient startããå®è¡ããŠãSoftEther VPN Clientããã¯ã°ã©ãŠã³ããµãŒãã¹ãå®è¡ããŸãã
ãvpncmdããå®è¡ããŠSoftEther VPNã³ãã³ãã©ã€ã³ãŠãŒãã£ãªãã£ãå®è¡ããVPNãµãŒããŒãVPNããªããžããŸãã¯VPNã¯ã©ã€ã¢ã³ããæ§æããŸãã
-------------------------------------------------- ------------------
ããããããã®éæ³ãã©ã®ããã«éå§ããã³åæ¢ããããè«ççã«çè§£ã§ããŸãã ãã®ãŸãŸã«ããŠããããšã¯ã§ããŸãããå€ããŠäœ¿ãããšãã§ããŸãã åãããšãè¡ãæ¹æ³ãããããç¥ã£ãŠãããåçŽãª
åæåã¹ã¯ãªããã
çšæããŠãã ããã
ãã®ãããVPNãµãŒããŒãã€ã³ã¹ããŒã«ãããéå§ã§ããŸãã
# vpnserver start
SoftEther VPN Server Service Started.
æ§æãååŸããŸãã äžè¬ã«ãããã¥ã¢ã«ã§ã¯ãããè¡ãããã®2ã€ã®æ¹æ³ãæäŸããŠããŸãã1ã€ç®ã®æ¹æ³ãåªå
ããŠãç¬èªã®ã³ãã³ãã©ã€ã³
vpncmdã䜿çšããããæ§æãã¡ã€ã«
vpn_server.configã䜿çšããŸãã è£œé æ¥è
ã¯ãæ§æãã¡ã€ã«ã䜿çšããæäœãå±éºãªè·æ¥ãšèŠãªããããããæ¹æ³ã§ããã
æããšã©ãŸãããããšããŸãã å®éããµãŒããŒã¯ãã®ãã¡ã€ã«ãç¶ç¶çã«èªã¿åãããã®å€æŽã¯å³åº§ã«ãµãŒããŒã«åœ±é¿ããŸãã æ§æãã¡ã€ã«ããã®æ§æãæ£åœåãããå¯äžã®ã±ãŒã¹ã¯ãVPNãµãŒããŒããªãã«ãªã£ãŠããå Žåã§ãã ãªããããè¡ãããã®ãã¯ããããŸãããããããã«ããŠããèè
ã¯ããç¥ã£ãŠããŸãã ãšã«ããããã®ããã°ã©ã ã«ã¯åªããCLIããããŸããäœæ¥åŸã¯ãäžèŠãªæ§æãã¡ã€ã«ã®ååšãå¿ããŠããŸããŸãã
ãšããã§ãã€ã³ã¹ããŒã«åŸããã«ãããã°ã©ã ãäœããã®çç±ã§ã¢ãã¬ã¹130.158.6.77:80ã«ãããããããšã«æ°ä»ããŸããã çããããã®ã¯äœããªãããšã倿ããŸããããã®ããã«ããµãŒããŒã¯ããŒãã¢ã©ã€ããã±ãããWebãµã€ãïŒkeepalive.softether.org:80ïŒã«éä¿¡ãããããã¿ã€ã ã¢ãŠãã«ãã£ãŠç°ãªãPPPã»ãã·ã§ã³ãäžæããããšã¯ãããŸããã ã€ã³ã¹ããŒã«çŽåŸã«ã
KeepDisableã³ãã³ãã§ãã®æ©èœãç¡å¹ã«ããŸããã
ãããã£ãŠãèµ·åçŽåŸã«VPNãµãŒããŒã¯æ¢ã«åäœããŠãããTCPããŒã443ïŒSSL VPNïŒã992ã1194ïŒOpenVPNïŒãããã³5555ïŒããŒãçªå·ã¯
ListenerCreateããã³
ListenerDeleteã³ãã³ãã§å€æŽå¯èœïŒãžã®æ¥ç¶ãåãå
¥ããŠããŸããã䜿çšãéå§ããã«ã¯ãããã€ãã®ç°¡åãªèšå®ãè¡ãå¿
èŠããããŸãèšå®ã
vpncmdã³ãã³ãã䜿çšããŠCLIã«å
¥ããŸãã
# vpncmd
vpncmd command - SoftEther VPN Command Line Management Utility
SoftEther VPN Command Line Management Utility (vpncmd command)
Version 4.04 Build 9412 (English)
Compiled 2014/01/15 17:22:14 by yagi at pc25
Copyright (c) SoftEther VPN Project. All Rights Reserved.
By using vpncmd program, the following can be achieved.
1. Management of VPN Server or VPN Bridge
2. Management of VPN Client
3. Use of VPN Tools (certificate creation and Network Traffic Speed Test Tool)
Select 1, 2 or 3:
éžæè¢1ã¯ãµãŒããŒç·šéã¢ãŒãã«ãéžæè¢2ã¯ã¯ã©ã€ã¢ã³ãããããã£ç·šéã¢ãŒãã«ãéžæè¢3ã¯ãµãŒããŒèšŒææžã®ãã¹ããšäœæã®ã¢ãŒãã«ç§»è¡ããŸãã 1ãéžæãããšããµãŒããŒã¯æ¥ç¶ãããµãŒããŒã®IPã¢ãã¬ã¹ïŒå®å
ã®IPã¢ãã¬ã¹ã®ãã¹ãå:)ãå
¥åããããšãææ¡ããŸãã ããŒã«ã«ãµãŒããŒãç·šéããŸãã 3åç®ãšæåŸã«ãããã°ã©ã ã¯ä»®æ³ããã®ååïŒä»®æ³ããåã®æå®:)ãå°ããŸãã ãŸã ä»®æ³ããã䜿çšããäºå®ã¯ãªãã®ã§ãããäžåºŠEnterããŒãæŒããŠããµãŒããŒèªäœã®ã³ãã³ãã©ã€ã³ã«ç§»åããŸãã
éçºè
ã®çšèªã§ã¯ãä»®æ³ãããšã¯äœãã説æããå¿
èŠããããŸãã ä»®æ³ããã¯ãä»®æ³ã€ã³ã¿ãŒãã§ã€ã¹ãã»ãã¥ãªãã£ããªã·ãŒãããã³VPNãããã³ã«ã®ç¬èªã®èšå®ã»ãããæã€ãããªãç¬ç«ããVPNãµãŒããŒã€ã³ã¹ã¿ã³ã¹ã§ãã åèšã§ãæå€§4096ã®ä»®æ³ãããäœæã§ããŸããã2çªç®ãŸãã¯3çªç®ã®ã¬ãã«ã§çžäºã«äº€å·®ããããšã¯ãããŸãããã€ãŸããäºãã«å®å
šã«åé¢ãããŸãã åä»®æ³ããã¯ç¬èªã®ãŠãŒã¶ãŒã»ããã§åäœããåãç©çãµãŒããŒäžã«ããã«ãããããããå¥ã®ä»®æ³ããã®ãŠãŒã¶ãŒã«ã€ããŠã¯äœãç¥ããŸããã äžæ¹ãå¿
èŠã«å¿ããŠãçžäºã®çžäºäœçšãæ§æã§ããŸããèè
ã®çšèªã§ã¯ãããã¯ä»®æ³ããªããž/ã«ãŒã¿ãŒãšåŒã°ããŸãã ãããã£ãŠãç¹å®ã®ã°ããŒãã«ãµãŒããŒèšå®ãæå®ããåŸãä»®æ³ããã䜿çšããŸãã
vpncmdãå
¥åãããšãããã³ããã衚瀺ãããŸãã
Connection has been established with VPN Server "localhost" (port 443).
You have administrator privileges for the entire VPN Server.
VPN Server>
ãã«ããå
¥åããŠãã³ãã³ãã®ãªã¹ããèªãããšãã§ããŸãã
æåã«è¡ãå¿
èŠãããã®ã¯ããµãŒããŒã®ã«ãŒããã¹ã¯ãŒããèšå®ããããšã§ãã ããã¯ã
ServerPasswordSetã³ãã³ãã䜿çšããŠè¡ãããŸãã æ¬¡ã«ã
KeepDisableã³ãã³ã
ã§æžããããã«ãããŒãã¢ã©ã€ãããã±ãŒãžãç¡å¹ã«ããŸãã
次ã«ã
HubCreate <ä»®æ³ããå>ã³ãã³ãã䜿çšããŠä»®æ³ãããäœæããŸããããšãã°ã
VPN Server>hubcreate vpn
HubCreate command - Create New Virtual Hub
Please enter the password. To cancel press the Ctrl+D key.
Password:
æ°ããããã®ç®¡çè
ãã¹ã¯ãŒããèšå®ãããšããã®ããã®ç®¡çãä»ã®äººã«å§ä»»ã§ããŸãã ãŸããç°¡åã«ããããã«ãEnterããŒãæŒããŠãããè¡ããªãããã«ããããšãã§ããŸãïŒãã®ãããå°æ¥çã«ã¯
SetHubPasswordã³ãã³ãããããŸãïŒã ãããäœæã
ãã ã
Hub vpnã³ãã³ãã䜿çšããŠãã®ããã®ç®¡çã¢ãŒãã«å
¥ãå¿
èŠããããŸãã
StatusGetã³ãã³ãã䜿çšããŠãããã®ã¹ããŒã¿ã¹ã衚瀺ã§ããŸãã ããã§ã¯ããã®ã³ãã³ãã®åºåãæäŸããŸããã ããã¯é·ããéåžžã«çè§£ãããããã®ã§ãã ããã¯ã
ãªãã©ã€ã³ã³ãã³ãã§ãªãã«ãã
ãªã³ã©ã€ã³ã³ãã³ãã§æ»ãããšãã§ããŸãã
SetEnumDenyããŒã ãæ°ã«å
¥ããŸããã å®éãVPNã¯ã©ã€ã¢ã³ãã«VPNãµãŒããŒã®ã¢ãã¬ã¹ãå
¥åãããšãå³ã®ããã«ããµãŒããŒã«ç»é²ãããŠãããã¹ãŠã®ä»®æ³ããã®ååããââãã«ããããŸãã ãã®ã³ãã³ãã¯ããªã¹ãã«æå®ãããããã®ååã衚瀺ããããšãçŠæ¢ããŸãã å°ããããã§ãããã»ãã¥ãªãã£ãžã®ããŒãã¹ã§ãã

ããŠããã£ãšé¢çœãããšãããŸãããã
UserCreateã³ãã³ãã§ãŠãŒã¶ãŒãäœæãã
UserPasswordSetã䜿çšããŠãã¹ã¯ãŒããèšå®ããŸãã ã³ãã³ãã¯éåžžã«ã·ã³ãã«ã§ããµãŒããŒã®ãã€ã¢ãã°ã¡ãã»ãŒãžãçè§£ããããã®è±èªã®ç¥èã¯æå°éã§ãã ãã®æ®µéã§ã¯ãç°¡åã«ããããã«ãèšŒææžã«ã€ããŠã¯æ°ã«ããŸããããã€ã³ã¹ããŒã«æ®µéã§çæããèªå·±çœ²åãµãŒããŒèšŒææžãä¿¡é ŒããŸãã
åºæ¬çã«ã¯ããã§ãã¹ãŠã§ããæå°éã®ã€ã³ã¹ããŒã«ãå®äºãããã®IPã¢ãã¬ã¹ãš
ListenerListã®ããŒãã®ãããããæå®ããããšã§ãµãŒããŒã«ããã¯ã§ããŸãã ãã®ããŒãã¯ã·ã¹ãã ã®ã«ãŒãæš©éãå¿
èŠãšããªããããèè
ã¯ããŒã5555ãæšå¥šããŠããŸãã ãã§ã«äžèšã®VPNã¯ã©ã€ã¢ã³ããŠã£ã³ããŠã瀺ããŸãããããã¹ãŠãçŽèгçã§éåžžã«ãããã§ãã èªèšŒã«åæ ŒããVPNãã³ãã«ã確ç«ãããŸãã ãã ãããã®åœ¢åŒã§ã¯ããã³ãã«ã®ã¡ãªããã¯ã»ãšãã©ãããŸããã ãµãŒããŒèªäœã«ã®ã¿ã¢ã¯ã»ã¹ã§ããä»ã®å Žæã«ã¯ã¢ã¯ã»ã¹ã§ããŸããã
ç§ãã¡ã®ã¿ã¹ã¯ãããåºç¯å²ã§ãããVPNãµãŒããŒã䜿çšããŠäŒæ¥ãããã¯ãŒã¯ã«ã¢ã¯ã»ã¹ããããšããŸãã ãããè¡ãã«ã¯ãNATãæ§æããå¿
èŠããããŸãã ããã¯ã
SecureNATEnableã³ãã³ãã䜿çšããŠç°¡åã«å®è¡ã§ããŸãã NATãšãšãã«DHCPãèªåçã«æå¹ã«ãªããŸãã
äžè¬ã«ãSecureNATã¯SoftEtherVPNã®äœæè
ã«ããããªãè峿·±ãæè¡ã§ãã ç¥ã£ãŠããããã«ã* NIXã·ã¹ãã ã§ã®ãããã¯ãŒã¯ã¢ãã¬ã¹å€æã¯ã«ãŒãã«ã§å®è¡ããããããNATãæ§æããã«ã¯ã¹ãŒããŒãŠãŒã¶ãŒæš©éãå¿
èŠã§ãã SoftEtherVPNã®äœæè
ã¯ããããäœãã«ãåé·ã§ãããšå€æããç¬èªã®ã«ã¹ã¿ã TCP / IPã¹ã¿ãã¯ãäœæããŠããŠãŒã¶ãŒã¹ããŒã¹ã§ã®ãã£ã«ã¿ãªã³ã°ãšãã€ãã£ã³ã°ãå¯èœã«ããŸããã ã¯ãŒã«ãªã¢ã€ãã¢ãããã䟡å€ããããã©ããã¯ããããŸããããããŸããããŸã-ããã¯äºå®ã§ãïŒ
SecureNatHostSetã³ãã³ãïŒããã©ã«ãã§ã¯192.168.30.1/24ïŒã§SecureNATã€ã³ã¿ãŒãã§ã€ã¹ã¢ãã¬ã¹ã倿Žã§ããŸãããŸããçºè¡ãããã¢ãã¬ã¹ã®ç¯å²ãšä»ã®DHCPãªãã·ã§ã³ïŒã¡ã€ã³ã²ãŒããŠã§ã€ãDNSãµãŒããŒãªã©ïŒã
DhcpSetã³ãã³ãã§äœ¿çšã§ããŸãã 䜿ããããCLIã§ã¯ãããŸãããïŒ ããšãã°ããsecureïŒããšå
¥åããŠEnterããŒãæŒããšãå¯èœãªèªåè£å®ã®ãªã¹ãã衚瀺ãããŸãã
VPN Server/vpn>secure?
"secure": The command-name is ambiguous.
The specified command name matches the following multiple commands.
SecureNatDisable - Disable the Virtual NAT and DHCP Server Function (SecureNat Function)
SecureNatEnable - Enable the Virtual NAT and DHCP Server Function (SecureNat Function)
SecureNatHostGet - Get Network Interface Setting of Virtual Host of SecureNAT Function
SecureNatHostSet - Change Network Interface Setting of Virtual Host of SecureNAT Function
SecureNatStatusGet - Get the Operating Status of the Virtual NAT and DHCP Server Function (SecureNat Function)
Please re-specify the command name more strictly.
ããã©ã«ãã§ã¯ããã±ãããã£ã«ã¿ãªã³ã°ã¯é©çšãããŸããã VPNã¯ã©ã€ã¢ã³ãã¯ãäŒæ¥ãµããããã«ç¡æéã«ã¢ã¯ã»ã¹ããäŒæ¥ã€ã³ã¿ãŒããããããå Žåã¯ããã䜿çšã§ããŸãã ãªãã·ã§ã³ã§ã
AccessAddã³ãã³ãã䜿çšããŠãã¡ã€ã¢ãŠã©ãŒã«ã«ãŒã«ã远å ããŸãã ãã¡ã€ã¢ãŠã©ãŒã«ã®åºæºãšããŠããŠãŒã¶ãŒåãéä¿¡å
ãšå®å
ã®MACã¢ãã¬ã¹ãšIPã¢ãã¬ã¹ãããŒãããããã³ã«ãTCPãã©ã°ãæå®ã§ããŸãã ãããŠæãéèŠãªããšã¯ããããæ©èœããããšã確èªããããšã§ãïŒ ãŸããããŸããŸãªä»®æ³ããã®ãã£ã«ã¿ãªã³ã°ã«ãŒã«ãäºãã«åœ±é¿ãäžããããšã¯ãªããããäŒæ¥ç°å¢ãžã®ã¢ã¯ã»ã¹ãæè»ã«å¶åŸ¡ã§ããŸãã
çŽ æµãªããŒãã¹ãšããŠããã€ãããã¯DNSã¯softether.netããå
¥æã§ããŸãã
DynamicDnsSetHostnameã³ãã³ãã䜿çšããŠãVPNãµãŒããŒãDDNSã«ç»é²ã§ã
ãŸã ããã®åŸãå¿
èŠãªç¬¬3ã¬ãã«ã®ãã¡ã€ã³åãå
¥åããå¿
èŠããããŸãã myvpn.softether.netã®ããã«ãªããŸãã åæããŸããäºçްãªããšã§ãããçŽ æµã§ãããã«ãå®å
šã«ç¡æã§ãïŒ
VPNãããã³ã«ã«ã€ããŠè©±ããŸãããã L2TP / IPsecãšOpenVPNããã¹ãããŸããã äžèŠãã®ãããªç°ãªããããã³ã«ã2ã€èšå®ããã®ã¯éåžžã«ç°¡åã§ããããšãããããŸããã OpenVPNã¯æåã¯ããŒã1194 UDPã§æå¹ã«ãªã£ãŠããŸããããããæ©èœãããã«ã¯ãã°ããŒãã«ãµãŒããŒã¢ãŒãïŒãã©ã¡ãŒã¿ãŒãªãã®
Hubã³ãã³ãïŒã§
IPsecEnableãå
¥åãããã¢L2TPãæå·åL2TP / IPsecãæå¹ã«ãããã©ããã«é¢ããããã€ãã®è³ªåã«çããå¿
èŠããããŸãL2TPv3 / IPsecã æãéèŠãªåé¡ã¯ãIPsecã®äºåå
±æããŒïŒPSKïŒãšããã©ã«ãããã§ãã PSKã䜿çšãããšããã¹ãŠãæç¢ºã«ãªããŸããããã¯ã¯ã©ã€ã¢ã³ãããã€ã¹ã§å
¥åããå¿
èŠã®ããããŒã§ãããããã©ã«ãããã«ã€ããŠè©³ãã説æããŸãã
å®éãåãOpenVPNã¯IPsecãä»ããŠã¯åäœããŸããããIPsecããã¢ã«ãŠã³ãããªã·ãŒãç¶æ¿ããŸãã ãããã£ãŠãOpenVPNãããã³ã«ã䜿çšããŠæ¥ç¶ããããšãããšããŠãŒã¶ãŒåãšãã¹ã¯ãŒããèŠæ±ãããŸãã ãŠãŒã¶ãŒåã¯ãuser @ hubãã®åœ¢åŒã§å
¥åããå¿
èŠããããŸãããããã©ã«ãã§äœ¿çšãããããæå®ããå Žåã¯ãã@ hubããçç¥ã§ããŸãã
OpenVpnMakeConfigã³ãã³ãã䜿çšããŠOpenVPNã®æ§æãã¡ã€ã«ãçæããçæããããã¡ã€ã«ãä¿åããå Žæãæå®ã§ããŸãã ãã®ãã¡ã€ã«ã¯ããã«OpenVPNã¯ã©ã€ã¢ã³ãã«éãããæ¥ç¶ãè¡ãããŸãã ãã®ãã¡ã€ã«ã¯ãLayer2VPNãšLayer3VPNã®2ã€ã®ããŒãžã§ã³ã§åæã«æäŸãããŸããã€ãŸããã¹ã€ãããšããŠã®VPNãµãŒããŒãšã«ãŒã¿ãŒãšããŠã®VPNãµãŒããŒã§ãã ãããã¯äž¡æ¹ãšãããŸãæ©èœããŸãã 䟿å©ã«ïŒ
L2TP / IPsecã®æ§æã¯äžè¬ã«ç°¡åã§ããããšã倿ããŸãã
ãIPsecEnableã³ãã³ãã®åŸã«ãµãŒããŒã§äœã倿Žããå¿
èŠã¯ãããŸããããWindowsãã«ãã€ã³VPNã¯ã©ã€ã¢ã³ãã®èšå®ã§ã¯ãL2TP IPsec VPNãããã³ã«ãæå®ããå¿
èŠããããŸãã远å ã®ãã©ã¡ãŒã¿ãŒã§ã¯ãäºåããŒïŒPSKïŒãæå®ããŸãããã¡ãããã€ã³ã¹ããŒã«æžã¿ã®å Žåã¯ãäžèšã®åœ¢åŒã§è³æ Œæ
å ±ãå
¥åããŸãã
åæ§ã«ããã¹ãŠãAndroidäžã§æ§æãããŸãã 4.2.1ã§ãã§ãã¯ããããã¹ãŠãæšæºããŒã«ã®ã¿ã䜿çšããŠæ©èœããŸãã
çµè«ïŒ SoftEtherVPNã¯ãVPNãã³ãã«ãæ§ç¯ããããã®éåžžã«åŒ·åã§æãéèŠãªäŸ¿å©ãªããŒã«ã§ãã ãã¡ããããã¹ãŠã®æ©èœããã¹ãããããã§ã¯ãããŸããããã»ãšãã©ã®å Žåãäœæããæ©èœã¯ååã«ãããŸãã è¿ãå°æ¥ãæ¯èŒããã©ãŒãã³ã¹ãã¹ããããã³ICMP over DNSãDNSãªã©ã®ã°ãããããšã®ãã¹ããèšç»ããŸãã SSL VPNããã³MS SSTPãããã³ã«ãšãŸã éä¿¡ããããªãã èšŒææžã«ç
©ããããã®ãå«ãããŸããããã«ãããŒããã©ã³ã·ã³ã°ãã¯ã©ã¹ã¿ãªã³ã°ããã©ãŒã«ããã¬ã©ã³ã¹ãRADIUSããã³ADããã®æ¿èªãVLANãã©ã³ãã³ã°ãå«ãLayer2 VPNãªã©ã®ããã°ã©ã ã®æ©èœãæ€èšããå¿
èŠããããŸãã
ã ããããœãããŠã§ã¢ã¯ãå°ãªããšããããããèŠã䟡å€ãããããã«æããŸãã è£œé æ¥è
ã¯ããã®è£œåãããããç¹ã§OpenVPNãããåªããŠãããšäœçœ®ä»ããŠãããã®ã¬ãããã®ã¹ã«ãŒããããçŽæããŠããŸãã äžè¬ã«ããã¹ãããå¿
èŠããããŸãïŒ ãã®æ®µéã§ã¯ãç§ã¯ãã®ãããªãã®ãæ¬åœã«å¥œãã§ãã