泚é
ã€ã³ã¿ãŒãããæ¥ç¶ã®å®å®æ§ãåäžããããªãã·ã§ã³ã®1ã€ã¯ã2ã€ã®å€éšéä¿¡ãã£ãã«ã䜿çšããããšã§ããããã¯ããããã®éã®èªååãæ¿ããæå³ããŸãã ãã®èšäºã§ã¯ããã®åé¡ã解決ããããã®ããã€ãã®ãªãã·ã§ã³ã«ã€ããŠç°¡åã«èª¬æããŸãã FreeBSD OSã§bashã¹ã¯ãªããã䜿çšããŠè§£æ±ºããæ¹æ³ãææ¡ãããŠãããæçµçãªã·ã¹ãã ãšããã«å¿
èŠãªã¹ã¯ãªããã®ãœãŒã¹ã³ãŒããäœæããããã®æé ã瀺ãããŠããŸãã
ã¯ããã«
ã€ã³ã¿ãŒããããžã®æ¥ç¶ã®å®å®æ§ãåäžãããããã«ãäŒæ¥ãœãªã¥ãŒã·ã§ã³ã§ã¯2ã€ä»¥äžã®å€éšãããã¯ãŒã¯ãã£ãã«ã䜿çšããŸãã ãããã®åæïŒããšãã°ããã©ã³ã¹æ¹æ³ïŒãŸãã¯ä»£æ¿ïŒãã£ãã«éã®åãæ¿ãïŒã®äœ¿çšã¯ãããããªããšã§ã¯ãããŸããããåé¡ã«ãã£ãŠãã§ã«å€ãã®æ¹æ³ã§è§£æ±ºãããŠããŸãã ãããã®ããã€ãã次ã«ç€ºããŸãã
- å€éšãããã¯ãŒã¯ãžã®2ã€ã®åºå£ãæã€SOHOã¯ã©ã¹ã«ãŒã¿ãŒïŒä»¥äžãã€ã³ã¿ãŒããããšåŒã°ããå€éšãããã¯ãŒã¯ãããã³äŒæ¥ã®ããŒã«ã«ãããã¯ãŒã¯ãšåŒã°ããå
éšãããã¯ãŒã¯ïŒ;
- ååãšããŠãã¬ã€ã€3ã¹ã€ããã¯ãã£ãªã¢ã¯ã©ã¹ã§ãããç¹ã«å€æ°ã®å¯å€ãã©ã¡ãŒã¿ãæã¡ãäžèšã®åé¡ã解決ã§ããŸãã
- å€ãã®å Žåãçãããå質ã®ããŸããŸãªUNIXããã³Linuxã®ãããªã·ã¹ãã çšã®ãç°ãªãèšèªã®å€ãã®èªå·±èšè¿°ã¹ã¯ãªããã
- NATã«ãŒã«ã«ãããã£ãã«ãã©ã³ã·ã³ã°ã
- ãããã·ãµãŒããŒã䜿çšãããã©ã³ã·ã³ã°ãŸãã¯ã¹ã€ããã³ã°ã
äžèšã®ã¢ãããŒãã«ã¯ããããé·æãšçæããããŸãã ãªãã·ã§ã³1ãSOHOã«ãŒã¿ãŒïŒ
å©ç¹ïŒ
- äœäŸ¡æ Œ;
- ã€ã³ã¹ããŒã«ãšæ§æã®å®¹æãã
çæïŒ
- åé·æ§ã®æ¬ åŠã«ããäŒæ¥ã»ã°ã¡ã³ãã®ä¿¡é Œæ§äžè¶³ã
- æ§æã®æè»æ§ã®æ¬ åŠãäœæ©èœã ïŒéåžžããã®ãããªããã€ã¹ã¯éåžžã«éãããç¯å²ã®ã¿ã¹ã¯ã解決ã§ããŸããããäžæ©èžã¿åºããããšããŸã£ããã§ããªãããšãã§ããŸãããããã¯ããŸããŸãªå°é£ãåå ã§ããïŒ
2çªç®ã®ãªãã·ã§ã³ãã¬ã€ã€ãŒ3ã¹ã€ããïŒ
å©ç¹ïŒ
- ä¿¡é Œæ§;
- ã«ã¹ã¿ãã€ãºã®æè»æ§ã
çæïŒ
- äŸ¡æ ŒïŒéåžžããã®ãããªããã€ã¹ã®äŸ¡æ Œã¯50ãã³ãè¶
ããŠããŸããïŒ;
- ã»ããã¢ããã®è€éãïŒããã¬ãã«ã®ããã€ã¹ã«ã¯é©åãªã¢ãããŒããå¿
èŠã§ãïŒã
3çªç®ã®ãªãã·ã§ã³ãã¹ã¯ãªããã®åãæ¿ãïŒ
å©ç¹ïŒ
- äŸ¡æ ŒïŒç¡æãèšå®ããäœæ¥æéã¯ã«ãŠã³ããããŸããïŒã
çæïŒ
- äºæž¬äžå¯èœãªä¿¡é Œæ§ïŒãããã®ã¹ã¯ãªããã®äœæè
ã®å°é家ã¬ãã«ã¯å€ãã®å Žåäžæã§ããããã詳现ãªèª¿æ»ãªãã§ã¯è£œåã®åââ質ã«ã€ããŠçµè«ä»ããããšã¯å°é£ã§ãïŒã
- æè»æ§ã®æ¬ åŠãšã«ã¹ã¿ãã€ãºã®è€éãïŒéåžžããã®ãããªã¹ã¯ãªããã¯ç¹å®ã®æ¡ä»¶ã«åãããŠäœæãããŸãããŸããä»ã®äººãç解ãããããç¬èªã®ããŒãžã§ã³ãæžãæ¹ãç°¡åãªå ŽåããããŸãã
4çªç®ã®ãªãã·ã§ã³ãNATã«ãŒã«ãšã®ãã©ã³ã¹ïŒ
å©ç¹ïŒ
- äŸ¡æ ŒïŒç¡æã§ãæ§æããäœæ¥æéãã«ãŠã³ãããŸããïŒ;
- ã»ããã¢ãããæ¯èŒçç°¡åã
çæïŒ
- ã»ãŒåçã®ã¹ã«ãŒããããã£ãã«ãå¿
èŠã§ãã
å€éšãã£ãã«ã®1ã€ããèœäžãããå Žåã®é床ã«ã¯çåããããŸãã
æåŸã«ããããã·ãµãŒããŒã䜿çšãã5çªç®ã®ãªãã·ã§ã³ïŒ
å©ç¹ïŒ
- äŸ¡æ ŒïŒç¡æã§ãæ§æããäœæ¥æéãã«ãŠã³ãããŸããïŒ;
- ã«ã¹ã¿ãã€ãºã®æè»æ§ã
çæïŒ
- ããŒã¿ãããŒãé
ãããŸãã
- ãŠãŒã¶ãŒãã·ã³ã§ã®è¿œå æ§æã®å¿
èŠæ§ã
- ç°åžžãªç¶æ³ã§ã®èšå®ã®é£ããã
æ°å¹Žåã®éçºã®éå§æã«ã次ã®çç±ã§ç¬èªã®ã¹ã¯ãªãããäœæãããªãã·ã§ã³ãéžæãããŸããã ãŸããäŸ¡æ Œã ãã®åºæºã«ãããšãã¬ã€ã€ãŒ3ã¯2çªç®ã®æ®µèœããåãæ¿ããããããã¢ãŠãã§ãã 10å°ã®ãã·ã³ãããããŒã«ã«ãšãªã¢ãããã¯ãŒã¯ã§ã¯ããšã³ã¿ãŒãã©ã€ãºã¬ãã«ã®ãœãªã¥ãŒã·ã§ã³ã¯èŽ
æ²¢ã§ãã æ²ããããªãèè
ã¯æ±ºå®ã®æç¹ã§æåã®æ®µèœããããã€ã¹ã«ã€ããŠç¥ããŸããã§ããã ãšããã§ãä»ã§ã¯ãå®å®æ§ãé
ç®ã«é©åããŠããŸããã ãŸãã4çªç®ã®æ®µèœã®è§£æ±ºçã¯é©åããŸããã æ¢åã®ã€ã³ã¿ãŒããããã£ãã«ã¯é床ãäœååãç°ãªãããã®ãããªã¹ããŒã ã®äœ¿çšã¯ãç§ã®æèŠã§ã¯æ£åœåãããŠããŸããã ããã«ããã£ãã«ã®1ã€ããèœã¡ããå Žåã®å€éšãããã¯ãŒã¯ãšã®éä¿¡ã®å質ã«é¢ããŠçåãè¿œå ãããŸãã 5çªç®ã®ãã€ã³ãã¯ã第äžã«ãæµéãé
ãããããšã«ãã£ãŠæºããããŸããã第äºã«ããªãã·ã§ã³ã®ã³ã³ããŒãã³ãã«äŸåããªããœãªã¥ãŒã·ã§ã³ãå¿
èŠã§ãã ãããã£ãŠããã€ã³ã3ã¯æ®ããŸãããä»ã®äººã®ã¹ã¯ãªããã調æ»ããããããé©å¿ãããããšããåŸããã®ã¢ã€ãã¢ãæŸæ£ããŠç¬èªã®ã¹ã¯ãªãããäœæããããšã決å®ãããŸããã
æéã®çµéãšãšãã«ãFreeBSDã®ã¡ã€ã³ãã«ãŒã¿ãŒãã®è¿ãã«ããã¯ã¢ãããã€ã³ã¹ããŒã«ãããdnsãdhcpãnatãipfwã®èšå®ãè€æ°åå€æŽãããŸããã åè¿°ã®ã¹ã¯ãªãããé€ãããã¹ãŠãåŸã
ã«éçºããã³æ¹åãããŸããããæçµçã«ã¯ãã¢ãžã¥ãŒã«æ§ãåäžã®èšå®ãã¡ã€ã«ãUnixã©ã€ã¯ãªã·ã¹ãã ã§ã®èšå®ã®æè»æ§ãšã·ã³ãã«ããããã³æ°ããã¢ãžã¥ãŒã«ã®è¿œå ã®å®¹æããåºæ¬ãšããŠäœ¿çšããŠæžãçŽãããšã«ããŸããã
ç®æšãšç®ç
ãã®ãããžã§ã¯ãã®æçµçãªç®æšã¯äœã§ããïŒ ã¯ã©ã€ã¢ã³ããµãŒããŒã·ã¹ãã ã«åºã¥ããŠãç°¡åã«ã¹ã±ãŒã©ãã«ãªæ±çšãœãããŠã§ã¢ããã±ãŒãžãäœæããŸãïŒãã ãããšãŒãžã§ã³ããµãŒããŒãåŒã³åºãæ¹ãé©åã§ãïŒãå€éšããã³å
éšæ¥ç¶ã®åé¡ãç¹å®ããåäœäžã®æ¥ç¶ã«èªåçã«åãæ¿ããŸãã ãã®å ŽåããšãŒãžã§ã³ãã¯çŸåšã®å€éšããã³å
éšæ¥ç¶ã®ç¶æ
ã«é¢ããæ
å ±ã®ãã³ã¬ã¯ã¿ãŒãã§ããããµãŒããŒã¯ã©ã®æ¥ç¶ãåªå
ããããã決å®ããå¿
èŠã«å¿ããŠãã®æ¥ç¶ã«åãæ¿ããã³ãã³ããéä¿¡ããããã°ã©ã ã®äžéšã§ãã ããã«ããã®ã³ã³ããã¹ãã§ã¯ããµãŒããŒäžã§ãšãŒãžã§ã³ããæ©èœããªãå ŽåããããŸãã
ã ããïŒ
- ããããã«måã®å€éšãã£ãã«ãæã€nåã®ãã«ãŒã¿ãŒãããããŸãã ããã«ãnåã®ãã«ãŒã¿ãŒãã¯ãã¹ãŠå³å¯ãªéå±€ã«ãªã£ãŠããŸãã
- ãšãŒãžã§ã³ãã¯åãã·ã³äžã§ç¬ç«ããŠåäœãããã®ã¿ã¹ã¯ã¯ãå€éšãã£ãã«ã®ãã¹ãçµæãåéããŠãçŸæç¹ã§æé«ã®åªå
床ãæã€ãµãŒããŒãŸãã¯ãã«ãŒã¿ãŒãã«ãè¿œå ãããããšã§ãïŒãµãŒããŒéšåã¯ããã®æç¹ã§ãšãŒãžã§ã³ããžã®å¿
é è¿œå ã§ãããšæ³å®ãããŸããšãŒãžã§ã³ãã¯ãµãŒããŒæ©èœãå®è¡ããå¿
èŠããªãããïŒããã®ïŒãµãŒããŒïŒå¯çšæ§ãå€æããå¿
èŠããããŸãã
- 次ã«ããµãŒããŒã¯åä¿¡ããããŒã¿ãåæããçŸåšã©ã®ãã£ãã«ãšã©ã®ãã«ãŒã¿ãŒããåªå
ãããŠããããå€æããŸãã ãã®ç®çã®ããã«ããã®èšäºã§ã¯DHCPãµãŒããŒã®èšå®ã«ã€ããŠèª¬æããŸãã dhcpdèšå®ã¯ãã²ãŒããŠã§ã€ãå€æŽããããã«å€æŽãããŸãã
- ãµãŒããŒã«é害ãçºçãããšããã¹ãŠã®ãšãŒãžã§ã³ãã§ããã°ã©ã ãã¢ã¯ãã£ãã«ãªããäºåã«èšå®ãããåªå
é äœã«åŸã£ãŠãšãŒãžã§ã³ãã®äžããæ°ãããµãŒããŒãéžæããŠæå®ããå€éšæ¥ç¶ã®çŸåšã®ç¶æ
ã«é¢ããæ
å ±ãåéããåãæ¿ãã«ã€ããŠæ±ºå®ããæ©èœãå§ä»»ããŸãã æåã®ãµãŒããŒãåäœç¶æ
ã«åŸ©å
ãããåŸãéã®ããã»ã¹ãçºçããŸã-ãããžã®èªååãæ¿ãã
ã¢ã«ãŽãªãºã ã®è©³çŽ°ã¯éåžžã«é·ãéæãããŠããå¯èœæ§ããããŸãããäžè¬çãªæ¬è³ªã¯äžèšã®ãšããã§ãã ïŒäžèšã®äŸããïŒnãšmã®äž¡æ¹ã2ãè¶
ããå€ããšãããšã¯ãã£ãã«ãããŸããããããããèŠã€ãã£ãã®ã§ãæ®éçãªããŒã«ãäœã£ãŠã¿ãŸãããïŒ
ã¹ã¯ãªãããæžãéçšã§ãbashèšèªã®ããã€ãã®å¶éã«ééãããããçŸæç¹ã§ã¯ãäžèšã®åé¡ã«å¯Ÿãããããšã¬ã¬ã³ããªãœãªã¥ãŒã·ã§ã³ã¯éåžžã«ãããŸãã§ãã ãããŸã§ã®ãšãããæ©èœãããã«æ¡åŒµããããšã«éç¹ã眮ããŠèšèšãããã¹ã¿ã³ãã¢ãã³ã®ãã«ãŒã¿ãŒãã®ãœãªã¥ãŒã·ã§ã³ããããŸãã
解決ç
å€ãã®çç±ãããããŒã«ã«ãããã¯ãŒã¯ã®åºç€ãšããŠããŸãã€ã³ã¿ãŒããããžã®ã²ãŒããŠã§ã€ãšããŠãå€ããã·ã³ïŒPentium 3ã512 OPïŒãšFreeBSDãçŸåšããŒãžã§ã³9.2ã䜿çšããããšã決å®ãããŸããã ãã®åŸãä¿¡é Œæ§ãåäžãããããã«ãæ¢åã®ãã·ã³ãšé£æºããŠåäœãã2å°ç®ã®åæ§ã®ãã·ã³ãã€ã³ã¹ããŒã«ãããŸããã ã¡ãªã¿ã«ãéå»2幎éã§æ£ç¢ºã«2ã€ã®æ
éããããŸãã-åããŠPSUãæ
éãã2çªç®ã®ãããã¯ãŒã¯ã«ãŒããæ
éããŸããã åæã«ãé害ãçºçããå Žåã«ããã¯ã¢ãããã·ã³ãæ©èœããããã«ãªã£ããããããŒã«ã«ãããã¯ãŒã¯å
šäœãåé¡ãªãæ©èœããããšã«æ³šæããŠãã ããã ãããã£ãŠããã®ã¹ããŒã ã§å€ãéã䜿çšããŠãããããã¯ãŒã¯ã®å®å®æ§ã«ã¯ã»ãšãã©åœ±é¿ããŸããã ããŸããŸãªã€ã³ã¿ãŒããããããã€ããŒããã®2ã€ã®å€éšãã£ãã«ããããŸãã äžè¬çãªã¹ããŒã ã以äžã«ç€ºããŸãã
éãšèµ€ã®ç¢å°ã¯å€éšéä¿¡ãã£ãã«ã§ãã
é»ãç¢å°ã¯å
éšéä¿¡ãã£ãã«ã§ãã
ãã®ã·ã¹ãã ã¯æ¬¡ã®ããã«ãªããŸãã
ã¹ã€ããã¯ãvlan-sã䜿çšããŠãããã€ããŒãããã©ãã£ãã¯ãåé¢ããŸãã ç¹å®ã®ã±ãŒã¹ã§ã¯ãããã¯Cisco SF300-08ã§ãã
ãã詳现ã«ã¯ãäœãããããŠãã·ã³èªäœã§äœãæ©èœããã®ããšããå©ããåããŠïŒ
ãã¡ã€ã¢ãŠã©ãŒã«-IPFW
NAT-IPFWããã®ãã³ã¢ãNATã
DNS-ãã€ã³ã9ïŒFreeBSDã®ææ°ããŒãžã§ã³ã䜿çšïŒ
DHCP-isc-dhcpd
ToFoInã¯ããã®èšäºã®äž»ãªç¯äººã§ãã
äžè¬çã«èšãã°ãèªè
ã¯åæ§ã®ã·ã¹ãã ã«ç²ŸéããŠãããšæ³å®ãããŠããããããã®èšäºã§ã¯DNSãDHCPã®æ§æã®è€éãã«ã€ããŠã¯èª¬æããŸããã ããã«ããã®ããŒãã«é¢ããè³æã¯å€æ°ãããèšäºã®æåŸã«ããã€ãã®ãªã³ã¯ãèšèŒãããŸãã æè¡çãªéšåã«ã¯ãçŸæç¹ã§å©çšå¯èœãªã³ã¡ã³ãã®ãªãå®å
šãªãã¡ã€ã¢ãŠã©ãŒã«ããã³NATã«ãŒã«ãå«ãŸããŠããŸãïŒããã§ãããã®ãããã¯ã«é¢ããè³æãå€æ°ãããŸãïŒãã«ãŒãã«ãã©ã¡ãŒã¿ãŒãšrc.confããããŸãã
次ã«ãã¹ã¯ãªããã®åçã詳现ã«æ€èšããŸãã æå§ãã«ãã¢ãžã¥ãŒã«ãšãã®æ©èœã¯äœã§ããïŒ
Daemonã¯ããã®ååã瀺ããšãããã¿ã€ããŒã§ãã¹ãããã³ã¹ã€ããã³ã°ã¢ãžã¥ãŒã«ãå®è¡ããã¡ã€ã³ããã»ã¹ã§ãã
ãã¹ã¿ãŒ -pingã³ãã³ãã䜿çšããŠãå€éšãã£ãã«äžã®éä¿¡ã®ååšããã¹ãããŸãã
å€å® -ãã¹ãçµæã«åºã¥ããŠãã©ã®å€éšãã£ãã«ãæ©èœããããããã³åãæ¿ããå¿
èŠãã©ãããå€æããŸãã
ãã¬ãŒ -ã€ãã³ãã®ãã®ã³ã°ãæ
åœããŸãã ã€ãã³ãã«é¢ããæ
å ±ãéè€ãããéèªãèªã¿ããããªãããã«ããå¿
èŠããããŸãã
ãŠã©ããããã° -crontabããã¹ã±ãžã¥ãŒã«ã«åŸã£ãŠå®è¡ãããŸãã ãã¹ãŠã®ã¢ãžã¥ãŒã«ã®ãããªãŒãºããå€æããå¯èœãªå Žåã¯çºçããåé¡ã®è§£æ±ºãè©Šã¿ãŸãã
ã¹ã¯ãªããèªäœã«å ããŠãããã«éèŠãªãã¡ã€ã«ãæ€èšãã䟡å€ããããŸãã
Tofoin.conf-åäžã®èšå®ãã¡ã€ã«ã
Tofoin.logã¯åäžã®ã€ãã³ããã°ãã¡ã€ã«ã§ãã
Result_ <å
éšãã£ãã«çªå·
> -äœæ¥ãã¡ã€ã«ããã¹ãçµæã¯ããã«è¿œå ãããŸã
äžå®æ°ã®äœæ¥ãã¡ã€ã«ã䜿çšãããŸãããã¡ãããåã¹ã¯ãªããã¯èµ·åæã«
pidãã¡ã€ã«ãäœæããã·ã£ããããŠã³ããã»ã¹äžã«åé€ããŸãã
LoggerãšWatchdogã®äœæ¥ã«ã€ããŠã¯è©³ãã説æããŸãããèå³ã®ãã人ã¯ãå¿
èŠã«å¿ããŠæ
£ããããšãã§ããŸãã ã¡ã€ã³ã¢ãžã¥ãŒã«ã®åäœãããªãã¡ã ããŒã¢ã³ããã¹ã¿ãŒããžã£ããžã ããŒã¢ã³ã¯ãèšå®ãã¡ã€ã«ã«ä¿åãããŠããã¿ã€ããŒã§ãã¹ã¿ãŒãšãžã£ããžãèµ·åããŸãã 次ã®ããã«ãªããŸãïŒéå§æã«ãã¹ããéå§ãããã¿ã€ã ã¹ã¿ã³ããèšæ¶ãããŸãã次ã«ãæ床ã«åºã¥ããŠãnç§ããšã«æ¬¡ã®ãã¹ããéå§ããæéãè¶
éããããéä¿¡ã®çŸåšã®ã¹ããŒã¿ã¹ãè©äŸ¡ããããã©ããããã§ãã¯ãããŸãã ãããã£ãŠãããŒã¢ã³ã¯ãã¹ããšæ€èšŒã®æåŸã®ã¿ã€ã ã¹ã¿ã³ããèšæ¶ããçŸåšã®ã¿ã€ã ã¹ã¿ã³ããšæ¯èŒããŸãã æ§æãã¡ã€ã«ã«ç€ºãããŠããå€ããã倧ããå Žåããã¹ããŸãã¯ãã¹ããããããèµ·åãããã¿ã€ã ã¹ã¿ã³ããçŸåšã®ã¿ã€ã ã¹ã¿ã³ãã«çœ®ãæããããŸãã ç
ãããŸã§ã®ãšããããã¹ã¿ãŒã¯æãåçŽãªã¢ãžã¥ãŒã«ã§ãã å
¥åãšããŠ2ã€ã®å€æ°ãåãå
¥ããŸãã
./tester.sh ab
ããã§ãaã¯ã«ãŒãã£ã³ã°ããŒãã«çªå·ãbã¯ã¿ã¹ã¯ã§ãïŒéåžžã®ããŒãžã§ã³ã§ã¯ãb = 10ã§ããããã¯ãå®å
šãªãã¹ããšçµæã®èšé²ãæå³ããŸãïŒã
Testerã¢ãžã¥ãŒã«ã®è©Šçšã¢ãŒãããããŸããb= 0-æåã®ã¿ãŒã²ããã®ã¿ã«pingïŒæ§æãã¡ã€ã«ããïŒãb = 1-2çªç®ã®ã¿ãŒã²ããã«ã®ã¿pingïŒæ§æãã¡ã€ã«ããïŒãb = <destination>ãããšãã°b = habrhabrã ru-ãã®ã¢ãŒãã§ã¯ãä»»æã®ã¿ãŒã²ããã®pingãå®è¡ãããŸãã ãã®å Žåã0ã«ãŒãã£ã³ã°ããŒãã«ã®å Žåãã³ãã³ãã¯æ¬¡ã®ããã«ãªããŸãã
./tester.sh 0 habrahabr.ru
ããã°ã©ã ã®äž»èŠãªã³ã³ããŒãã³ãã¯ãæããã«è£å€å®ã¢ãžã¥ãŒã«ã§ãã äžè¬çãªçšèªã§ã®åœŒã®ä»äºã®ã¢ã«ãŽãªãºã ã¯æ¬¡ã®ãšããã§ãã
- çŸåšã®ipfwã«ãŒã«ã«åºã¥ããŠãçŸåšã®å€éšãã£ãã«ã決å®ãããŸãã
- ãµã€ã¯ã«ã¯ãå€éšãã£ãã«ã®é¢é£ããç¶æ
ããŒã¿ã®é
åãã³ã³ãã€ã«ããŸãã
- 次ã®ãµã€ã¯ã«ã§åªå
å€éšãã£ãã«ã決å®ãããŸãã
- 次ã«ããã£ãã«ãåãæ¿ããå¿
èŠããããã©ãããå€æããæ©èœãéå§ãããå¿
èŠã«å¿ããŠãåãæ¿ãæ©èœãéå§ãããããã«åãæ¿ãçšã®å
éšãã£ãã«çªå·ãéä¿¡ãããã ïŒã¡ã€ã³ãã£ãã«ãžã®åŸ©åž°ã¯ããã«ã¯è¡ãããŸãããããã«ãããã¡ã€ã³ãã£ãã«ã®åäœãäžå®å®ãªå Žåã«åŸåŸ©ãžã£ã³ããçºçãããã¡ã€ã³å€éšãã£ãã«ãå®å®ããŠåäœãå§ãããšãã«ã®ã¿åãæ¿ããè¡ãããŸãïŒã
- æåŸã«ãå¿
èŠãããå Žåãã¹ã€ããã³ã°æ©èœãèµ·åãããå¿
èŠãªipfwèšå®ã眮ãæããŠåèµ·åããå¿
èŠãªã«ãŒãã£ã³ã°ããŒãã«ã§ãã€ã³ããåèµ·åããŸãã
ãã¡ããããã¹ãŠã®äž»èŠãªã¢ã¯ã·ã§ã³ã¯ã€ãã³ããã°ã«èšé²ãããŸãããŸããç·æ¥äºæ
ãçºçããå Žåãããšã©ãŒã®åå ãèšé²ãããWatchdogãåŒã³åºãããŸãã
ããã§ãä»äºã®åºæ¬ååãèæ
®ãããŸããç§ã¯ããããã¹ãŠå®éã«å®è¡ãããæ¹æ³ãç¥ãããšãææ¡ããŸãã
æè¡éš
è£
åå
æ©åšã«ã€ããŠã¯ãã§ã«èšåããŸãããããã®ã»ã¯ã·ã§ã³ã§ã¯ãããã«è©³ãã説æããŸãã ç§ã®å ŽåïŒçŽ30å°ã®ãã·ã³ã®å
éšãããã¯ãŒã¯ïŒã§DNSãDHCPãNATãIPFWã®åäœãä¿èšŒããã«ã¯ãPentium IIIã«åºã¥ãCeleronã512 MBã®RAMã40 GBã®HDDãããã³å¯Ÿå¿ãããã¶ãŒããŒãã³ãã¯ã¿ããµããŒããã350W PSUã§ååã§ãã è¿œå ã®2ã€ã®PCIãããã¯ãŒã¯ã«ãŒããæ¥ç¶ãããŸãã é»åã«é¢ããŠã¯ãäž¡æ¹ã®ã«ãŒã¿ãŒã¯ã»ãŒåãã§ãã
äžéšã®å Žæã§ã¯å®¹éãäœåã§ããããšã«å察ãããããããŸãããããããã®ãã·ã³ã¯ç¹å¥ã«è³Œå
¥ãããã®ã§ã¯ãªãããŠãŒã¶ãŒãã·ã³ã®ããªãŒããæŽæ°ããåŸã«æ®ã£ããã®ããåéãããŸããã ãããããæäœéå¿
èŠãªãµãŒãã¹ã®ã»ããã¯ãã¯ããã«åŒ±ãããŒããŠã§ã¢äžã§èµ·åã§ããŸãã ãŸããå®å
šã«ãã¬ã€ããŠããã©ãŒåãããRAIDãæŽçããã®ãããã§ãããã æ®å¿µãªãããç§ã¯äºåã«ããã«ã€ããŠèããŠããŸããã§ããããä»ã§ã¯ããã€ãã®å°é£ã«é¢é£ããŠããŸãããããã¯ãŸã£ããç°ãªã話ã§ãã
ç§ã®æèŠã§ã¯ãããã¯å€ãäœæ¥çšã¢ã€ãã³ã®éåžžã«äŸ¡å€ã®ãã䜿çšæ¹æ³ã§ããããããªããã°å庫ã§ã»ããã£ãœããªã£ãããæšãŠããããé
åžããããããŸãã
ããªã»ãã
ãã¡ããããã®ã·ã¹ãã ãæ©èœããããã«ã¯ãäºåèšå®ãè¡ãå¿
èŠããããŸãã
æåã«ããã©ã€ããªããã³ã»ã«ã³ããªDNSãµãŒããŒãæ§æããŸãã ãã«ãŒã¿ãŒãã1ã€ãããªãå Žåã¯ããã©ã€ããªDNSãµãŒããŒã§ååã§ãã ãã®åé¡ã§ã¯ãåè¿°ã®ããã«ãã€ã³ã9ã䜿çšããŸãããèšäºã®æåŸã«ããã€ãã®ãã¥ãŒãã³ã°ãªã³ã¯ãèšèŒãããŠããŸãã ãã®å ŽåãCricket LeeãšPaul Albitzã®ãDNS and BINDããã¥ãŒããªã¢ã«ãéåžžã«åœ¹ç«ã¡ãŸãã
次ã«ãdhcpãã§ãŒã«ãªãŒããŒãã¢ãèšå®ããå¿
èŠããããŸãã ãã«ãŒã¿ãŒãã1ã€ãããªãå Žåã¯ãã¹ã¿ã³ãã¢ãã³DHCPãµãŒããŒã®éåžžã®èšå®ã§ååã§ãã ç¹°ãè¿ãã«ãªããŸããããªã³ã¯ã¯èšäºã®æåŸã«èšèŒãããŠããŸãã äœããã®çç±ã§ããªã³ã¯ã«ãããã§ãŒã«ãªãŒããŒdhcpãã¢ã®ã»ããã¢ããã«é¢ããèšäºã¯å©çšã§ããŸããïŒãããŠãããæ°ãæã§ç¶æ³ã¯ããã ãã§ãïŒãããã§èšå®ãåæããããã®ã¹ã¯ãªãããšã»ããã¢ããã®ããŒãã€ã³ããæäŸããŸãã
ãã§ãŒã«ãªãŒããŒdhcpdãæ§æãããã§ãŒã«ãªãŒããŒdhcpãã¢ãæ§æããã«ã¯ã次ã®ãã®ãå¿
èŠã§ãã
- / usr / local / etcã«ãrc.confã§åç
§ãããã¡ã€ã³æ§æãã¡ã€ã«dhcpd.confãäœæããŸãã ç§ã¯ãã®ããã«èŠããŸãïŒ
/usr/local/etc/dhcpd.conf
ããã§dns.keyã¯dnsãµãŒããŒãšã®éä¿¡ã®ããŒã§ãããããã®åé¡ã«ã€ããŠã¯ãdns + dhcpã®æ§æã«é¢ããèšäºã§è©³ãã説æãããŠããŸãã - ãã©ã«ããŒ/ usr / local / etc / dhcpdãäœæããŸãã ãã®äžã«ãããã次ã®ãã®ãå«ã次ã®ãã¡ã€ã«ãäœæããŸãã
/usr/local/etc/dhcpd/dhcpd.conf_primary
/usr/local/etc/dhcpd/dhcpd.subnet subnet 10.0.0.0 netmask 255.255.255.0 { pool { failover peer "dhcpdpeer"; range 10.0.0.15 10.0.0.240; } option subnet-mask 255.255.255.0; option routers 10.0.0.2, 10.0.0.1; option broadcast-address 10.0.0.255; option netbios-name-servers 10.0.0.3; option netbios-dd-server 10.0.0.3; option netbios-node-type 8; }
ãã®å ŽåãnetbiosããŒã ãµãŒããŒã¯winsãµãŒããŒãµãŒãã¹ãå®è¡ãããŠããWindowsãµãŒããŒã§ãããsambaããã®åœ¹å²ãæããããšãã§ããŸãã
/usr/local/etc/dhcpd/dhcpd.static host SERVER3 { hardware ethernet 11:11:11:11:11:11; fixed-address 10.0.0.3; } host SERVER4 { hardware ethernet 22:22:22:22:22:22; fixed-address 10.0.0.4; }
ãæ³åã®ãšããããã®ãã¡ã€ã«ã¯éçã¢ãã¬ã¹çšã§ãã
- 2çªç®ã®ãã«ãŒã¿ãŒãã§ã¯ããã¡ã€ã«ã¯æ¬¡ã®ããã«ãªããŸãã
/usr/local/etc/dhcpd.conf
/usr/local/etc/dhcpd/dhcpd.conf_secondary
æ®ãã®ãã¡ã€ã«ã¯ãååãå€æŽããããšã«ãã£ãŠã®ã¿æåã®ãã«ãŒã¿ãŒãããååŸããããæåŸã«èšå®ãããšãisc-dhcpdã®åèµ·åæã«ãã¡ã€ã«ãèªåçã«ç§»åããŸãïŒæ¹æ³ã«ã€ããŠã¯ã以äžãåç
§ïŒã
- 次ã®å
容ã®å®è¡å¯èœãã¡ã€ã«ãäœæããŸãã
/ usr / local / bin / dhcpd-sync - äž¡æ¹ã®ãµãŒããŒã§é©åãªæš©éãæã€dhcp-updaterãŠãŒã¶ãŒãäœæããsudoèšå®ã«ç»é²ãããã©ã€ããªããã»ã«ã³ããªãã«ãŒã¿ãŒããžã®ããŒã«ããsshæ¥ç¶ãèšå®ãããã¹ã¯ãŒããåé€ããŸãã ãŸããäž¡æ¹ã®ãã·ã³ã§/ var / dhcp-backup /ãã©ã«ããŒãäœæããå¿
èŠãããå ŽåããããŸãã
- /usr/local/etc/rc.d/isc-dhcpdãã¡ã€ã«ã®äžéšã次ã®ããã«å€æŽããŸãã
å®å
ïŒ dhcpd_checkconfig () { local rc_flags_mod setup_flags rc_flags_mod="$rc_flags"
åŸïŒ dhcpd_checkconfig () { local rc_flags_mod setup_flags rc_flags_mod="$rc_flags"
- ãã¹ãŠã®èšå®ãæ£ããè¡ãããŠããå Žåãã¡ã€ã³ãã·ã³ã§dhcpãµãŒããŒãåèµ·åãããšãçŸåšã®æ§æãã¢ãŒã«ã€ãããã2çªç®ã®ãµãŒããŒãšåæãããäž¡æ¹ã®ãã·ã³ã§åèµ·åãè¡ãããŸãã
- 次ã®ã¿ã¹ã¯ãcrontabã«è¿œå ãããšäŸ¿å©ã§ãã
0 0 * * * root /usr/local/etc/rc.d/isc-dhcpd restart
- ããã§ããã§ãŒã«ãªãŒããŒdhcpdèšå®ãå®äºããŸããã
第äžã«ããŒãã«å ããŠã«ãŒãã£ã³ã°ããŒãã«ã衚瀺ãããæ žãnatããã³ipfwãæ©èœããããã«ã¯ã次ã®ãã©ã¡ãŒã¿ãŒã§ã«ãŒãã«ãåæ§ç¯ããå¿
èŠããããŸãïŒãã¡ããããªãã·ã§ã³ã¯å¯èœã§ãããæåŸã«ãªã³ã¯ã䜿çšããŸãïŒã
options IPFIREWALL options IPFIREWALL_VERBOSE options IPFIREWALL_VERBOSE_LIMIT=50 options IPFIREWALL_NAT options LIBALIAS options DUMMYNET options HZ=1000 options ROUTETABLES=2
2çªç®ã®ã«ãŒãã£ã³ã°ããŒãã«ïŒçªå·ã1ãã®äžãæåã®ããŒãã«ã«ã¯çªå·ã0ããããããïŒããªããŒãåŸã«æ©èœããã«ã¯ãrc.dã«äœæããå¿
èŠããããŸãïŒ/usr/local/etc/rc.dã«ãããŸãïŒ /ïŒæ¬¡ã®å
容ã®ãã¡ã€ã«ïŒ
/usr/local/etc/rc.d/setfib1 ãŸããããšãã°ããã©ã€ããªãã«ãŒã¿ãŒãã®å Žåãrc.confã«æ°è¡ãè¿œå ããŸãã
setfib1_enable="YES" setfib1_defaultrouter="2.2.2.1"
å®éããã®ããŒãã¹ã¯ãªããã¯2çªç®ã®ããŒãã«ã«ããã©ã«ãã«ãŒããšåãã ãè¿œå ããŸãã å¿
èŠã«å¿ããŠãæ倧65536ã®ã«ãŒãã£ã³ã°ããŒãã«ïŒFreeBSDããŒãžã§ã³10ïŒãå®è¡ããäžèšã®ã¹ã¯ãªãããå°ãå€æŽããŠã³ããŒããrc.confã«ãã©ã¡ãŒã¿ãŒãè¿œå ã§ããŸãã ïŒãã¡ãããã«ãŒãã«ãã©ã¡ãŒã¿ãŒã«ã¯ãæåã«ãããã®65536ããŒãã«ãå«ããå¿
èŠããããŸããïŒ
ã¡ã€ã³ã®ãã«ãŒã¿ãŒãã§ã®ç§ã®rc.confèšå®ïŒ
ããããæåã«ãããã€ãã®ã³ã¡ã³ãïŒ
Eth0ã¯ãã¡ã€ã³å€éšãã£ãã«ã®ç©çã€ã³ã¿ãŒãã§ã€ã¹ã§ãã
Eth1ã¯ãããã¯ã¢ããå€éšãã£ãã«ã®ç©çã€ã³ã¿ãŒãã§ã€ã¹ã§ãã
Eth2ã¯ãå
éšãã£ãã«ã®ç©çã€ã³ã¿ãŒãã§ã€ã¹ã§ãã
Vlan1-ã¡ã€ã³å€éšãã£ãã«ã®ã€ã³ã¿ãŒãã§ãŒã¹ã
Vlan2-ããã¯ã¢ããå€éšãã£ãã«ã€ã³ã¿ãŒãã§ã€ã¹ã
vlan3ããã³vlan4-å°æ¥ã®æ©èœã®ããã«äºçŽãããŠããŸããããã«ã€ããŠã¯èšäºã®æåŸã§èª¬æããŸãã
10.0.0.1-å
éšãããã¯ãŒã¯å
ã®ãã«ãŒã¿ãŒãã®ã¢ãã¬ã¹ããããããããšãã°ã10.0.0.2ã«ãªããŸãã
1.1.1.2ããã³
1.1.1.1-ã¡ã€ã³å€éšãã£ãã«ã®IPã¢ãã¬ã¹ãšããã©ã«ãã²ãŒããŠã§ã€ã
2.2.2.2ããã³
2.2.2.1-ããã¯ã¢ããå€éšãã£ãã«ã®IPã¢ãã¬ã¹ãšããã©ã«ãã²ãŒããŠã§ã€ã
##泚æïŒ ã€ã³ã¿ãŒãã§ã€ã¹ãšIPã¢ãã¬ã¹ã®ååã¯äŸãšããŠäœ¿çšãããããããã®å Žåã«ç¬èªã®ãã®ã«ãªããŸãïŒ ##/etc/rc.conf hostname="SERVER1.companyname.local" keymap="ru.koi8-r" font8x8="cp866-8x8" font8x14="cp866-8x14" font8x16="cp866-8x16" scrnmap="koi8-r2cp866" cursor="destructive" ifconfig_eth0="up" vlans_eth0="vlan1 vlan3" create_args_vlan1="vlan 1" create_args_vlan3="vlan 3" ifconfig_eth1="up" vlans_eth1="vlan2 vlan4" create_args_vlan2="vlan 2" create_args_vlan4="vlan 4" ifconfig_eth2="inet 10.0.0.1 netmask 255.255.255.0" ifconfig_vlan1="inet 1.1.1.2/24" ifconfig_vlan3="inet 10.0.1.1/30" ifconfig_vlan2="inet 2.2.2.2/24" ifconfig_vlan4="inet 10.0.2.1/30" defaultrouter="1.1.1.1" setfib1_enable="YES" setfib1_defaultrouter="2.2.2.1" gateway_enable="YES" sshd_enable="YES" moused_enable="YES" ntpd_enable="YES" powerd_enable="YES" hald_enable="YES" dbus_enable="YES" dumpdev="AUTO" firewall_enable="YES" firewall_logging="YES" firewall_script="/etc/firewall.sh" named_enable="YES" named_program="/usr/sbin/named" named_flags="-u bind -c /etc/namedb/named.conf" dhcpd_enable="YES" dhcpd_conf="/usr/local/etc/dhcpd.conf" dhcpd_ifaces="eth2"
以äžã¯ãç§ã«ãšã£ãŠæå¹ãªNATãšãã¡ã€ã¢ãŠã©ãŒã«ã®èšå®ã§ãã
ã¡ã€ã³å€éšãã£ãã«ãä»ããŠäœæ¥ããå ŽåïŒ
ããã¯ã¢ããå€éšãã£ãã«ã䜿çšããå Žåããã¹ãŠã®èšå®ã¯åãã§ãããããŒã®ã¿ãå€æŽãããŸãã
ãŸããsshguardã¯ãã«ãŒã¿ãŒãã§æ§æãããŸãããçµéšè±å¯ãªèªè
ã§ããã°ããã®ããã°ã©ã ãèªåã§èŠã€ããŠã€ã³ã¹ããŒã«ããããšãã§ããŸãã
ã¹ã¯ãªãããœãŒã¹
ToFoIn-ã€ã³ã¿ãŒãããã®ãã§ã€ã«ãªãŒããŒãåãæ¿ããŸãã ããããããã®ååã¯éå¿çãªãã®ã§ã¯ãããŸããããæ¢åã®è£œåãããæ£ç¢ºã«è£œåã®ç¹æ§ãèãåºãããšã¯ã§ããŸããã§ããã 以äžã«ãã¹ã¯ãªãããšé¢é£ãã¡ã€ã«ã®ããã¹ããå°ã説æããŸãã
åè¿°ã®ããã«ããã¹ã¿ãŒã¢ãžã¥ãŒã«ã«ã¯ãæåã§èµ·åããããã®æ©èœããããã«æ¡åŒµãããŠããŸããããœãªã¥ãŒã·ã§ã³ãã»ã¯ã·ã§ã³ã§ã¯ããã®æ¹æ³ã«ã€ããŠèª¬æããŸãããŸããã¹ã¯ãªããã®ããã¹ããããããããã«ããã¹ã¿ãŒã¯éåžžã®èµ·åã®å Žåã«ã®ã¿çµæããã¡ã€ã«ã«æžã蟌ã¿ãŸããè£å€å®ã¢ãžã¥ãŒã«ã«ã¯ããããªãæ¹åã®äœå°ããããŸãããäžè¬ã«é£Ÿãæ°ã¯ãããŸãããç§ã®æèŠã§ã¯ãç¥èŠã®é¢ã§æãæãããã¢ãžã¥ãŒã«ã¯ãã¬ãŒã§ããããããæ®å¿µãªãããæžãã®ã¯ç°¡åã§ã¯ãããŸããã§ãããåºæ¬çã«ãã¹ã¯ãªããã®å€§éšåã¯éè€ã¡ãã»ãŒãžã®çºçãé²ãããšã«å°å¿µããŠãããããæããã«è€éã§ãããŠã©ããããã°ã¯ãæ瀺ããããã¹ãŠã®ã¹ã¯ãªããã®äžã§æ倧ã§ãããããããææ§ãªã¹ã¯ãªããã§ããèãããããã¹ãŠã®é害ãªãã·ã§ã³ãæäŸããããšè©Šã¿ãããããã®ããã«ãªããŸããããããããããŸã§ã®ãšããããã®ã¢ãžã¥ãŒã«ã¯cronã䜿çšããŠèµ·åããããšã«ãªã£ãŠããããã/ etc / crontabã«æ¬¡ã®ãããªãã®ãè¿œå ããå¿
èŠããããŸãã 0 * * * * root /path/to/file/tofoin_watchdog.sh
ãŸãšã
ã¹ã¯ãªããã¯6ãæéãã¹ããããŸãããé倧ãªãšã©ãŒã¯èŠã€ãããŸããã§ããããã€ããŒãªãšã©ãŒã¯ä¿®æ£ãããŸããããã¹ãŠã®ã¢ãžã¥ãŒã«ã¯ãéžè±ãäºæž¬äžå¯èœãªã¢ã¯ã·ã§ã³ãªãã§ãæå®ã®ã¢ã«ãŽãªãºã ã«åŸã£ãŠåäœããŸããã€ãã³ããã°ãã¡ã€ã«ã¯éåžžã«æçã§ãããçºçããåé¡ãšãã®çºçããã³è§£æ±ºã®æéãå€æã§ããŸãããããã£ãŠãæåã®ç®æšãéæããããšçµè«ä»ããããšãã§ããŸãããããªãéçºèšç»ã®æŠèŠã以äžã«ç€ºããŸããèšç»
ã¹ã¯ãªããã®ãããªãéçºã®èšç»ïŒ- é©åãªã·ã¹ãã ãã£ã¬ã¯ããªã«ãã¡ã€ã«ãé
眮ããŸãã
- ç¹å®ã®ã¿ã¹ã¯ã®ããã«sudoã䜿çšããŠç¹å¥ãªãŠãŒã¶ãŒãšããŠå®è¡ããå¿
èŠãããããšãèæ
®ããŠãã ãããè¯å®çãªæ±ºå®ã®å Žåãã¹ã¯ãªãããé©åãããŸãã
- zabbixãšéä¿¡ããããã®ã¢ãžã¥ãŒã«ãè¿œå ããŸãã
- ã¯ã©ã€ã¢ã³ããµãŒããŒã·ã¹ãã ãäœæããŸããvlan3ãšvlan4ãæ§æãããã®ã¯ãã®ã·ã¹ãã ã®ããã§ããå
éšãã£ãã«ã®ãã«ãŒã¿ãŒãéã«æ¥ç¶ããªãå Žåã¯ãå€éšã€ã³ã¿ãŒãã§ã€ã¹ã«æ§æãããvlanãä»ããŠéä¿¡ããããšããããã§ãã
- ãããããé ãæããå°æ¥ã«ãããå€ãã®æ©èœãåããèšèªã§ã¹ã¯ãªããå
šäœãæžãçŽããŠãã ãããçŸæç¹ã§ã¯ãbashã§å¯èœãªãã¹ãŠã®ããšãçµãåºããããšããèŠæããããŸãã
ã質å
ãã¡ãããæžããšããç¹ã«ãã®åŸãå€ãã®çåãçããŸããããããã®ãã¡æãéèŠãªãã®ã¯æ¬¡ã®ãšããã§ãã次ã®å€æ°ããããŸãã a =< > HI_1=â123â HI_2=â321â
å€æ°HI_1ãšHI_2ãåŒã³åºããŠãaã®ã¿ãå€æŽããå¿
èŠããããŸããåŒã³åºãã¯æ¬¡ã®ããã«ãªããŸãã ${HI_$a}
ãŸããa = 1ãäºåã«èšå®ããå Žåããã®åŒã¯123ãæå³ããa = 2ã®å Žåã¯321ãæå³ããŸããæ®å¿µãªããããããè¡ãæ¹æ³ãèŠã€ãããŸããã§ããããã®é¢æ°ã䜿çšãããšãã¹ã¯ãªããã倧å¹
ã«ç°¡çŽ åãããæ¡åŒµã容æã«ãªããŸãããã¡ãããæ®ãã¯äžè¬çãªè³ªåã§ã-ãã®æ±ºå®ã¯ã©ã®çšåºŠé¢é£ããŠããŸããïŒã¹ã¯ãªããã§ã©ã®ãããªééãããããŸããïŒèšç»ããã³èšäºã®æ¬æã§ç¹å®ãããåé¡ã解決ããæè¯ã®æ¹æ³ã¯äœã§ããïŒããªãã®ã³ã¡ã³ã
ããªããæ¹åãæ¯æŽãããå Žåã¯ãå人çãªã¡ãã»ãŒãžãæžããŠãç§ãã¡ã¯å¯èœãªååã«ã€ããŠè°è«ããŸãããŸããã·ã¹ãã ãæ§æããŠã¹ã¯ãªãããäœæãããšãã«ãopennet.ruãlissyara.suãhabrahabr.ruãããã³ä»ã®å€ãã®ãµã€ããããä»ã®å€ãã®è³æã䜿çšãããŸãããæ®å¿µãªãããæéã®çµéãšãšãã«å€ãã®ãªã³ã¯ã倱ãããŠãããããããã®ã©ãããããã©ã°ã¡ã³ããèŠã€ããå Žåã¯ããããã«ãªã³ã¯ãè¿œå ãããŠããã ããŸããèæ¬ã®äœæãšäœæã®éçšã§ã®å°é£ã解決ããããã®ã¢ããã€ã¹ãšæ¯æŽãããŠãããAlexei EreskoãšValery Drubaã«ããããŠèšäºã®æºåãæ¯æŽããŠãããOleg Matusevichã«ç¹ã«æè¬ããŸããZ.Y.
ãã®èšäºã®è³æã䜿çšããå ŽåããœãŒã¹ãšèè
ãžã®ãªã³ã¯ã瀺ãããšã矩åä»ããããŠããŸãã