æšå¹Žã
SECR-2014ã«ã³ãã¡ã¬ã³ã¹ïŒãã·ã¢ã®ãœãããŠã§ã¢ãšã³ãžãã¢ãªã³ã°ã«ã³ãã¡ã¬ã³ã¹ïŒã§ã¯ãã³ã³ãã¥ãŒã¿ãŒãµã€ãšã³ã¹ããææ°ã®IT管çãŸã§ãLinuxãã©ã€ããŒã®æ€èšŒã®åŸ®åŠãããããžãã¹åæãããã«ã¯æ³çåé¡ãŸã§ããœãããŠã§ã¢ãšã³ãžãã¢ãªã³ã°ã®ãã¹ãŠã®åéã§140ã®ã¬ããŒãããããŸããã æ
å ±ã»ãã¥ãªãã£ã¬ããŒãã«é¢ããã»ã¯ã·ã§ã³ããããŸããã
ãããªãæ®åœ±ããŠå
¬éããŸããããä»ã¯éå±ãªå€ã®ã·ãŒãºã³ã«ãæ¥çã®å°é家ãšå€§åŠã®ç 究è
ã®äž¡æ¹ãããæ
å ±ã»ãã¥ãªãã£ã®ããŸããŸãªåŽé¢ã«é¢ããSECRã¬ããŒãã®çãã¬ãã¥ãŒãæäŸããŠããŸãã ä»å¹Žã®äŒè°ã§ããªããèŠãããã¬ãã¥ãŒããããããã«ã¯è¬æŒãããããã«åæ©ä»ããŠããããå¬ããã§ãã
ãã¢ãã€ã«ãã³ãã³ã°-空äžçé£ã
ãã¢ãã€ã«ãã³ãã³ã°-空äžçé£ãã¬ããŒãã®ã¹ã©ã€ããè¿œå è³æãé£çµ¡å
70以äžã®éè¡ããã®2ã€ã®ãã©ãããã©ãŒã ïŒiOSãAndroidïŒãçŽ120ã®ã¢ããªã±ãŒã·ã§ã³ã®ã¢ãã€ã«ãã³ãã³ã°çšã®ã¢ãã€ã«ã¢ããªã±ãŒã·ã§ã³ã®ã»ãã¥ãªãã£ã«é¢ããæ°ããç¬ç«ããç 究ã玹ä»ãããŸãã
ãã®èª¿æ»ã®çŠç¹ã¯è匱æ§ã§ãããã®è匱æ§ã䜿çšãããšãMiTMïŒMan-in-The-MiddleïŒæ»æãå®è¡ããã顧客ã®ã¢ã«ãŠã³ãããè³éãçãŸããå¯èœæ§ããããŸãã
éèŠã§ãªããã€ã¯ããã€ã¡ã³ãã®ã¿ãæºåž¯é»è©±ãééããæ代-ä»ã§ã¯ã¢ãã€ã«ãã³ãã³ã°ã«å€ãã®ãéããããè匱æ§ã¯ã¯ã©ã€ã¢ã³ãã®ã¢ã«ãŠã³ããšéè¡ã®è©å€ã®æ倱ã«ã€ãªããå¯èœæ§ããããäžå€®éè¡ã®èŠ³ç¹ããã¯ãã¢ããªã±ãŒã·ã§ã³ãæèŒããæºåž¯é»è©±ããã®ã¯ã©ã€ã¢ã³ããã³ã¯ã¯äžè¬çã«åãã§ã
ã¹ããŒã«ãŒã®ããŒã ã¯ãäžéè
ãæ»æã®ã¿ã«çŠç¹ãåœãŠãŸãããã¢ãã€ã«ãã³ãã³ã°ã§ã¯ã誰ããã¬ã¹ãã£ãã«ã§ã·ãŒã«ãã±ãŒãã«ãæ¥ç¶ãããWiFiãã€ã³ããåœé ããã®ãç°¡åã ããã§ãã å°ãé£ãããªããŸãããããŒã¹ã¹ããŒã·ã§ã³ã§ããåœé ããã®ã¯æ¬ç©ïŒé$ 3000ïŒä»¥äžã§ãã ææããäŒæ¥ãããã¯ãŒã¯ã¯èšããŸã§ããªããDNSèšå®ãå€æŽããããã¹ãŠã®ãã©ãã£ãã¯ãæµåºããå¯èœæ§ããããŸãã
iOSããã³Androidçšã®100以äžã®ã¢ããªã±ãŒã·ã§ã³ïŒWinphoneãšBlackBerryã¯å°ã延æãããŸããïŒãèŠãŠãäžæçã«ç©ºæŽåãããŸãã-ãã©ã³ã¹ããŒãã¬ã€ã€ãŒã®ã»ãã¥ãªãã£ãSSL蚌ææžã®ãã§ãã¯ã®æ£ç¢ºæ§ãSSLããã³ã°ã䜿çšããªãããšã ãããŠåœŒããããã«èŠãªãã£ããã®ã
ãããŠã幞ããªããšã«ãXORãªã©ã§ã®èªäœæå·åããã¯ãã¹ãã©ãããã©ãŒã éçºãä¿é²ãããã¡ãã·ã§ããã«ãªãã«ããã©ãããã©ãŒã ãã¬ãŒã ã¯ãŒã¯ïŒTitaniumãApache CordovaïŒãªã©ãèªå®¶è£œã¢ã€ãã ã®ã»ãããæ¶æ»
ããŸãã蚌ææžãã
ãããŠãåãã©ãŠã¶ãŒãšé»è©±ã®æ³çãªããã¯ããŒã¯ãèŠããŠããå¿
èŠããããŸã-å¶ç¶ã«ãiOSã§ã¯æšãŠãããªãæ°çŸã®å®å
šã«äžå¿
èŠãªã«ãŒã蚌ææžïŒå€åœæ¿åºã®èšŒææžãå«ãïŒãããã³åºæ¬çãªãœãŒã·ã£ã«ãšã³ãžãã¢ãªã³ã°ã§ãåœã®ã蚌ææžãè¿œå ããŸãã
å€éšããŒã ã«ããéè¡åãã®Heã®éçºã¯ã建ç¯çšã¬ã¹ã±ããã®å±±ã«ãªããŸããã¢ãã¯ãäžå¿
èŠãªãããã°æ
å ±...ãããã¯ãã¹ãŠåœç¶çç£ãããŸãã ãã®çµæãFakeSSLCheckã¯ã©ã¹ã¯ã¢ããªã±ãŒã·ã§ã³ã§åäœããå
éšéè¡ã·ã¹ãã ã®å®å
šãªæ§é ãåããã®ã¬ãã€ãã¹ã¿ãã¯ã¯ãããããããããšæãèœã¡ãŸã...
èŠããã«ãAndroidã¢ããªã±ãŒã·ã§ã³ã®4åã®1ã¯ééããªãå£ããŠãããiOSã®5åã®1è¿ããå£ããŠããŸãã
ã©ããã äž¡æ¹ã®ç¢ºèªãã£ãã«ãååãããããšãå€ãããã2ã¬ãã«ã®èå¥ãäžèœè¬ã§ã¯ãããŸããã ãã€ãªã¡ããªã¯ã¹ã¯ããŸã ã«æªå£ã§ã-ã¹ããŒã«ãŒã®ããŒã ã¯ãã¢ãŒããã¯ãã£ã¬ãã«ã§ããçš®ã®ãã³ããŒã³ã·ã¹ãã ãç Žããæ€èšŒã¢ã«ãŽãªãºã ã«å°éããããšããã§ããããçäœè§£å床ãã®ã¬ãã«ã«å°éããå Žæã¯ãŸã å®å
šã«ååšããŸããã
å ±åæžãã芧ãã ãããæåŸã«ãäœããã¹ããããšããæšå¥šäºé
ãããããçããã®ãæãããšããããšã¯ãããŸããã
ããœãããŠã§ã¢éçºã©ã€ããµã€ã¯ã«ã«çµ±åããããšã³ãããŒãšã³ãã®ã»ãã¥ãªãã£ããã»ã¹ã
ã¹ã©ã€ããè¿œå è³æãã¬ããŒãããœãããŠã§ã¢éçºã©ã€ããµã€ã¯ã«ã«çµ±åããããšã³ãããŒãšã³ãã®ã»ãã¥ãªãã£ããã»ã¹ãã®é£çµ¡å
ãã®ã¬ããŒãã§ã¯ãè±åœæ倧ã®é»æ°éä¿¡äºæ¥è
ã§ããEEã®ã¢ããªã±ãŒã·ã§ã³ã»ãã¥ãªãã£ã¢ãããŒãã«ã€ããŠèª¬æããŠããŸãã
éçºãµã€ã¯ã«å
šäœã網çŸ
ãããšã³ãããŒãšã³ãã®ã»ãã¥ãªãã£ããã»ã¹ã®éèŠãªåŽé¢ãšããã»ãã¥ãªãã£ãã¹ããã®ããäžè¬çãªãã©ã¯ãã£ã¹ã«å¯Ÿãããã®å©ç¹ãæ€èšããŸãã
ãã®ãããªããã»ã¹ã®ã³ã¹ãã蚱容å¯èœãªã¬ãã«ã«æžããããã®ãã¬ãŒããªãã«ã€ããŠèª¬æããŸãã
ã»ãã¥ãªãã£éšéã¯ãPCI DSSç£æ»ã®åã«é»æ°é信補åã®å
æ²¢ãæ±ãã ãã§ãªããç£æ»äººã®æèŠãæ±ã£ãŠããããšãŒãããã§ãã®ãããªéšéã®äžã§æãæåããæçšã§ãã ãããã¯ãã¹ãŠãããæåãªT-MobileãšOrangeã®æè¿ã®çµ±åã®ææã§ãã倧èŠæš¡ãªé»æ°éä¿¡EEã§å®çŸãããŠããŸãã
ãã¹ããã©ã¯ãã£ã¹ã¯ããã®ã»ãšãã©ããã¢ããªã±ãŒã·ã§ã³ã®ã»ãã¥ãªãã£ã¯äž»ã«ããã»ã¹ã§ããããšããéåžžã«äºçŽ°ãªãã©ãã§ãèããããã³ãã©ã«èŠçŽãããŸããã詳现ã¯é¢çœããªããã®ã§ã¯ãããŸããã
å®å
šãªéçºãµã€ã¯ã«ãšã®ç·å¯ãªçµ±åã ãã¬ãªãªãŒã¹ã®ã»ãã¥ãªãã£ç£æ»ã ãã§ãªãããèšèšã ãã§ãªããæåã®ããžãã¹èŠä»¶ãå€æŽããå¿
èŠããããããã§ãã ããžãã¹èŠä»¶ããå§ãŸããšã³ãããŒãšã³ãã®ããã»ã¹ãæåããã³åèªååæãå¥çŽç®¡çè
ãšã®ã»ãã¥ãªãã£ã®ããã®äœçœ®çãªæŠãïŒå¹žããªããšã«ãã»ãã¥ãªãã£ã«æ¯æããã®ã¯ãããŸãããç¶æ³ïŒã
ãªããªããçã«è±åœã®äŒæ¥ã®ããã«ãè±åœã®çµå¶è
ããããªãããã§ãã éçºãšã»ãã¥ãªãã£ç£æ»ã®äž¡æ¹-ãã¹ãŠã®ã¢ãŠããœãŒã·ã³ã°ãŸãã¯ãªãã·ã§ã¢ãªã³ã°ã ãããŠã補åã®å Žå-ã¢ãŠããœãŒã·ã³ã°ïŒã補åã®è³Œå
¥ãïŒã§ããããããŒãžã£ãŒãããã§ããããã«ãã¿ã€ãã³ã°ãšæ©èœæ§ãåªå
ããŠã»ãã¥ãªãã£ã®ã¹ã³ã¢ãªã³ã°ãè©Šã¿ãããšãã§ããå Žåãã»ãã¥ãªãã£ããŒã ã¯ãªãã·ã§ã¢ãªã³ã°ïŒã賌å
¥ãïŒããŸãã ããã§ã¯ãç¹å®ã®äººã
ãšã®é·ãå¯ãªé¢ä¿ãå¿
èŠã§ãã ãŸããã»ãã¥ãªãã£ã®çš®é¡ã¯ãã·ã¢ãšäžåœã®å°é家ã®ååã§æ§æãããŠããããšãèæ
®ãããšã2ã€ã®æ¹æ³ã§å€æããŸãã äžæ¹ã§ãããã¯æ¿æ²»ççç±ïŒããã·ã¢-äžåœïŒæµïŒããã«ãŒïŒãïŒã§ãã³ããŠããŸããäžæ¹ã§ãããã¯æ確ãªèšç®ã§ãããªããªãããšãŒããã人ã¯å±
äœèš±å¯ãªã©ãæã£ãŠããªãããã§ãã ãŸããå
šäœäž»çŸ©ç管çïŒãã¹ããŒãç»é²ïŒã®èŠçŽ ãããåœã§ã¯ãåŸæ¥å¡ãšã®é·æçãªé¢ä¿ãæ§ç¯ããæ¹ãã¯ããã«ä¿¡é Œã§ããŸãã
ãããã£ãŠãäžè¬çã«ãããã¯ãã¹ãŠæçã§å¹æçã§ãããšæãããŸãã ãã¡ãããéæ©èœéšéãç¹ã«ãªã¹ã¯è©äŸ¡ãèšå€§ãªéãšäºæž¬äžå¯èœãªç¢ºçã§è¡ãããéšéã®æå¹æ§ã枬å®ããããšã¯éåžžã«å°é£ã§ãïŒã¹ããŒã«ãŒã¯
ãµã³ã¯ãããã«ãã«ã¯ã®ãã©ããã¯ã¹ã«èšåããŸããïŒã ããããç°¡åã«èšãã°ãæ©èœãã¹ããããã³ã¹ããããããããªãªãŒã¹ãé
ããªãããšã¯ãããŸããããµãŒãã¹ããã±ãŒãžã«ã¯ãæšå¥šäºé
ããã¬ãŒãã³ã°ãèšå®ããã»ã¹ã
OWASPæšå¥šäºé
ãå«ãã¬ããŒããå«ãŸããŸãããããžã§ã¯ãäœæ¥ã ããããäžè¬çã«ã飢starããå¿
èŠã¯ãããŸãããéä¿¡ã®äºç®ã¯èšå€§ã§ããå
éšè²»çšã®èšç®ã«ããããã¹ãŠãã»ãã¥ãªãã£ããŒã ã«æ¯ãåããããå²ãåœãŠããããéãæ倧éã«æŽ»çšããããšãã¿ã¹ã¯ã«ãªããŸãã
ãããŠäžè¬ã«ãã»ãã¥ãªãã£ããŒã ã®äœçœ®ã¯åªããŠããŸã-æçµçãªã»ãã¥ãªãã£ã«å¯ŸããŠè²¬ä»»ãè² ããããªãªãŒã¹ããããã¯ããŸããïŒé倧ãªè匱æ§ããã£ããšããŠãããªã¹ã¯ç®¡çããŒã ã責任ãè² ããããã以äžã®äººãããå ŽåããªãªãŒã¹ã¯å¯èœã§ãïŒãã»ãã¥ãªãã£äžã«ç«çœã¯æ¶ããŸãã-facapïŒå¥ã
ã®äººãããŠãfakapããããŸã-ç§ã¯ãããã°ãŒã°ã«ã§æ€çŽ¢ããããã«åºãŸãã
[1] ïŒãã€ãŸããæ zyãªQAã®ããã«ããç§ãã¡ã¯å質/å®å
šã«ã€ããŠè²¬ä»»ãè² ããŸãããããã調ã¹ãã ãã§ããç§ã¯ããªãã£ã¹ãããç§ã¯ã©ããã£ãŠããã®ïŒããšæãåºããŸãã ãç§ã¯ããã§ããç§ã¯ãããã®ããŸããŸãã人ã
ãšä»äºãããŠããŸãïŒã
ãã¡ãããå®éã®äœæ¥ããããŸã-ãã³ããŒã«ãããšãããŒã ã¯HP Fortifyãã«ãŒã«ãšèšå®ã®ã«ã¹ã¿ã ããŒã¿ããŒã¹ãšãšãã«æ·±ã䜿çšãããFortifyã®ã«ãŒã«ãæ§æã§ããäžçã§æåŸã®å Žæã®1ã€ãã«å ããŠãäžéšã®å°é家ã¯æé·ãã FortifyããŒã ã ãšããã§ãã¹ããŒã«ãŒã¯ã¯ã©ãŠããµãŒãã¹ã®åŒ·åããªã³ããã³ãã§äœ¿çšããããšã«å¯ŸããŠåŒ·ãèŠåããŸãã-ãããã¯ãã£ãªãã³ã®éåžžã«ç¡èœãªäººã
ã«ãã£ãŠè¡ãããŸããã
å
šäœãšããŠãã¹ããŒã«ãŒã®ç«å Žã¯è¯å®çã§èª¬åŸåããããŸã-ãä¿¡ããªããŠãæ©èœããŸããã圌ã¯ã圌ãæ²èŠ³è«ã§ãã¹ãŠã倱æãããªãããã«ãèªå®æã«ç
æ°äŒæããšãã®ãæåã®éçºè
ãããããšãæ£çŽã«èªããŸãããã
ãã¡ãããæçµçã«åœŒãã¯åªç§ãªã¹ãã·ã£ãªã¹ããæ¢ãã®ã¯é£ãããšäžæºãèšããŸãã-äœããã®çç±ã§ããã°ã©ãã³ã°ãéå§ããããšãçªç¶æ±ºããçµéšè±å¯ãªã¢ãŒããã¯ããæ¬åœã«å¿
èŠã ããã§ãã
ãLinuxã³ã³ããã®ããŒããŠã§ã¢ã»ãã¥ãªãã£ã¢ãžã¥ãŒã«ã®ä»®æ³åãã¯ãããžã
ã¹ã©ã€ããLinuxã³ã³ããã®ããŒããŠã§ã¢ã»ãã¥ãªãã£ã¢ãžã¥ãŒã«ã®ä»®æ³åæè¡ãã®ã¬ããŒãã®è¿œå è³æãé£çµ¡å
ãã®ã¬ããŒãã§ã¯ãLinuxã§ã®ã³ã³ãããŒã®äœ¿çšã«åºã¥ããŠãä»®æ³ã»ãã¥ãªãã£ã¢ãžã¥ãŒã«ãæ§ç¯ããããã®ãã¯ãããžãŒã«ã€ããŠèª¬æããŠããŸãã ãã®ãœãªã¥ãŒã·ã§ã³ã¯ãã¯ã©ãŠããµãŒãã¹ãèšç»ããŠããããŸãã¯ãã§ã«äœ¿çšããŠITã€ã³ãã©ã¹ãã©ã¯ãã£ãæ§ç¯ããŠãã人ã«ãšã£ãŠèå³æ·±ããã®ã§ãã
ãããã³ã°ããªãŒã¯ã«ããã»ãã¥ãªãã£ãšãããã®éèŠæ§ã«ã€ããŠã®æšæºçãªèšèãçç¥ããŠãã¢ã€ãã¢ã¯æ¬¡ã®ãšããã§ãã
- OpenSSLã¯æšæºã»ãã¥ãªãã£ã©ã€ãã©ãªã§ããOpenSSLããŒãã®æ°ã¯ãLinuxãå®è¡ã§ããã·ã¹ãã ã®æ°ã®10åãè¶
ããŠããŸãã ãããŠã圌女ã¯äœå¹ŽãèŠã€ããããªãã£ãã¯ãŒã«ãªç©Žãç¹°ãè¿ãèŠããŸããã ã¯ããä»ã¯ãã©ãŒã¯ïŒBoringSSL / LibreSSLïŒãè¡ã£ãŠããŸããããã®äººã¯åŒ±ããåžžã«ãšã©ãŒãçºçããŸãã
- ããŒããŠã§ã¢æå·åã¢ãžã¥ãŒã«-æ£ãããŠã¯ãŒã«ã ããããããŸããŸãããã©ã®ãããé«äŸ¡ã§ãã å°çã äœãæã£ãŠããã®ããäœãæã£ãŠããã®ãã
ãããŠãããã«ã¯ä»®æ³åã®ãã¬ã³ãããããŸãããã¹ãŠãã³ã³ããå
ã«ååšããŸãã
ãã¹ããã·ã³ã«é¢ãã
äžæ¹åé¢æ°ã
ååšãããšãã仮説ãç Žããæå·åå
šäœãå¥ã®ã³ã³ãããŒã«å
¥ããŠãç¹å¥ãªãã¹ãäœæããŸããAPIã¯æãäºææ§ãé«ãããã¹ãŠã®ãã®ã§ãã å©çã
OpenVZã³ã³ãããŒã§ã¢ã«ãããã¯ãªæŠå¿µå®èšŒãäœæããè² è·äžã§ã®ããã©ãŒãã³ã¹ã枬å®ããŸãã-ããã»ã©æªãã¯ãªãããã§ãïŒäžçšåºŠã§ããã察æ°ã¹ã±ãŒã«ã§ïŒã ã¹ã±ãŒã©ããªãã£ãããã°ããŸã£ããåé¡ãããŸããã ãããé¢éžãããã©ãã-誰ãç¥ã£ãŠãããã
ãããžã§ã¯ãããŒãžèªäœã¯æ²ããããªãé·ãéåããªãã£ãã
ããããã³ã°IPã¢ãã¬ã¹ã䜿çšãããããã³ã«ã®éçºã
ã¹ã©ã€ããè¿œå è³æãã¬ããŒãããããã³ã°IPã¢ãã¬ã¹ã䜿çšãããããã³ã«ã®éçºãã®é£çµ¡å
DDoSæ»æã¯ãäŸç¶ãšããŠInternet Northã®äž»ãªè
åšã®1ã€ã§ãã ãã®ã¬ããŒãã¯ãä¿è·ããããµãŒããŒã®å®éã®IPã¢ãã¬ã¹ããå€æ°ã®IPã¢ãã¬ã¹ã®ã¢ãã¬ã¹ãžã®æ¬äŒŒã©ã³ãã å€æŽã«åºã¥ããŠãDDoSæ»æãšãã©ãã£ãã¯ã®ååã«å¯ŸãããµãŒããŒã®åŸ©å
åãé«ãããœãããŠã§ã¢ãœãªã¥ãŒã·ã§ã³ãææ¡ããŠããŸãã
èè
ã«ãããšãäœããã®çç±ã§ããã¯ããŒã³ãããã€ããŒãç¡é¢å¿ã§ããDDOSæ»æã®å€ãè¯ãåé¡ã§ãããTileraãªã©ã®è¶
éããã£ã«ã¿ãªã³ã°ããã®ã§ã¯ãªããçŽç²ã«ãœãããŠã§ã¢ã®æ¹æ³ã§è§£æ±ºããããšãææ¡ãããŠããŸãã
äžèšã§èšãã°-ããã¯ã第äºæ¬¡äžç倧æŠäžã«ãšãã·ãŒã³ã®1人ã®å¥³åªã«ãã£ãŠçºæãããå€å
žçãªãã©ãã€ã ãåšæ³¢æ°ãããã³ã°ãã®éçºã§ãïŒç·šïŒã ããã ãããåã¯ã©ã€ã¢ã³ãã»ãã·ã§ã³ã®ãã±ããããšã«åå¥ã®IPã¢ãã¬ã¹ã䜿çšããäžçš®ã®ã¹ãŒããŒãã¹ãã³ã°ã§ãïŒïŒïŒã
ã€ãŸããDNSã¯ãã¹ãŠã®èŠæ±ãç¹å®ã®å
¥åãæ¿èªãµãŒããŒãã«ãªãã€ã¬ã¯ãããŸãããã®ãµãŒããŒã¯ãå¥å
šãªIPã¢ãã¬ã¹ã®ããŒã«ã§åäœããå·§åŠãªèŠåã«åŸã£ãŠæéå
ã«å€æŽããŸãã ã¯ã©ã€ã¢ã³ããã·ã³ã«ã¯ããããã®ã²ãŒã ããã¬ã€ãããã¹ãŠãåæçã«å€æŽã§ããç¹å¥ãªãœãããŠã§ã¢ãå¿
èŠã§ãã
ããã¯ããããŸã§ã®ãšãããnetfilterã«ãŒãã«ã¢ãžã¥ãŒã«ãè¿œå ããããšã«ãããTCPãããã³ã«ã«å¯ŸããŠã®ã¿å®è£
ãããŠããŸãã
ãã®ã¢ãããŒãã®æãããªå€ãã®ãã€ãã¹ç¹ïŒ
- èªå¯ãµãŒããŒã¯ãåäžé害ç¹ããã³æ»æã®æ°ããç¹ãšãªããåå¥ã«ä¿è·ããå¿
èŠããããŸãã
- ãããªãã¯IPã¢ãã¬ã¹ã¯ãIPv4ã®ããã«ãã£ãã«ãããŸããããšããã§ãIPv6ã¢ãã¬ã¹ã¯ç¡æã§ã¯ãããŸããã
- ããã¯ãã¹ãŠãå
Œ
±ãµãŒãã¹ïŒç¹å¥ãªã¯ã©ã€ã¢ã³ããå¿
èŠïŒã«ã¯é©ãããäŒæ¥ã®ä»äºã«ã®ã¿é©ããŠããŸãããã®å Žåãå
ç¢ãªVPNã²ãŒããŠã§ã€ã䜿çšããªãçç±ã¯æããã§ã¯ãããŸããã
ãããããããªãã¯è³åŠäž¡è«ã®ä»ã®è°è«ãèŠã€ããã§ãããã
DIYããã°ã©ãã³ã°ãšäžæ£é²æ¢
ã¹ã©ã€ããDIYããã°ã©ãã³ã°ãšäžæ£è¡çºããã®ä¿è·ãã¬ããŒãã®ã¹ã©ã€ããè¿œå è³æãé£çµ¡å
ãã®ã¹ããŒãªãŒã§ã¯ãBREã·ã¹ãã ïŒ ããžãã¹ã«ãŒã«ãšã³ãžã³ ïŒã䜿çšããçµéšã«çŠç¹ãåœãŠãŸããããã¯ãéçºè
以å€ãã³ãŒããèšè¿°ããå¿
èŠã«å¿ããŠã¢ããªã±ãŒã·ã§ã³ã®ããžãã¯ããã°ããå€æŽããæ¹æ³ã§ãã
è©æ¬ºç£èŠã·ã¹ãã ã®ã³ã³ããŒãã³ãã®1ã€ãäŸãšããŠäœ¿çšããŠãéçºæ©èœããã®ã¢ãããŒãã®å©ç¹ã察åŠããªããã°ãªããªãåé¡ãããã³å®è£
äžã«èæ
®ããå¿
èŠãããéèŠãªãã€ã³ãã«ã€ããŠèããŠã¿ãŸãããã
ã¬ããŒãã®ååã¯ããã«ãŒã§ãããããã§ã¯Do It Youselfã§ãããè©æ¬ºè¡çºã§ã...ããããå®éã¯YandexMoneyã®ã¢ãŒããã¯ãã£ãšããã»ã¹ã«é¢ãããã®ã§ãã
èŠããã«ãäžæ£ãªè©æ¬ºã¹ããŒã ã¯ããã«è€è£œããããããæ°æéã§æ¶æ»
ããŠå¯ŸåŠããå¿
èŠããããŸã-ãã¹ãŠã®ããžãã¹ããã»ã¹ãããŒãã³ãŒãã£ã³ã°ãããŠããã°ãã€ãã¬ãŒã·ã§ã³ã®æåŸã«å±éããããã«ãã¢ããžã£ã€ã«ããªããŠã誰ããé£ãå»ãããŠããŸããŸãã ãã¡ãããBRE-
Business Rule Engineã䜿çšããå¿
èŠããããŸããããã¯ãå°çšã®ãã¡ã€ã³ã¢ãã«ãåããæèœãªã¢ãŒããã¯ãã£ã®äžã§ã¹ãã³ãããé«ã¬ãã«ã®ããžãã¹ããžãã¯ãå¥ã«çšæããŸãã
ã«ãŒã«ã¯ãDroolsïŒWebRuleãBizTalkïŒãªã©ã®äººéãèªããé«ã¬ãã«èšèªã§äœæããå¿
èŠããããŸãããã¹ãŠã«ãã°ãèšé²ããè¿
éãªã¢ã¯ã»ã¹ã®ããã«ç¹å¥ãªéãªã¬ãŒã·ã§ãã«ãªããžããªã«ç¥èã®ããã°ããŒã¿ãèç©ããå¿
èŠããããŸãã
ãããããããã«ãã-ã³ãŒãã¯ã³ãŒãã§ããããã®ãé«ã¬ãã«ããã°ã©ãã³ã°ãã«ã¯ãã¬ãã¥ãŒããã¹ããããã³ãã¹ãã®äžéšããããŸããã©ããªã«æãããèãããŠãã
ç«ãŠãŒã¶ãŒã«æž¡ãããŸã-ã€ãŸããA / Bãã¹ãã«ãã段éçãªå±é...ãéã®ãµãŒãã¹ã§ãã圌ãããããè¡ããšã¯æããŸããã§ããã
ã¹ããŒã«ãŒãåŒçšããŠ-ããã¹ãŠã®åŽé¢ã«æ·èšããå¿
èŠã®ããã¹ãããŒããããããããŸããïŒcïŒã
ãèªå·±ä¿®åŸ©ã·ã¹ãã ã
ã¬ããŒããèªå·±ä¿®åŸ©ã·ã¹ãã ãã®ã¹ã©ã€ããè¿œå è³æãé£çµ¡å
è±èªã®ãªãªãžãã«ãããªãSelf-healing Systemsãæ¥åžžç掻ã®ããããé¢ã§ã³ã³ãã¥ãŒãã£ã³ã°ã·ã¹ãã ã䜿çšãããšããœãããŠã§ã¢ãšã³ãžãã¢ãªã³ã°ã«å€ãã®åé¡ãçããŸãã ç¹ã«ãä»æ¥ã®ã·ã¹ãã ã«ãšã£ãŠæãéèŠãªèŠä»¶ã®1ã€ã¯ã誀åäœãæ»æãããã³äžå®å®ãªç°å¢ã®å±éºæ§ã«ãããããããé«å¯çšæ§ã§ãã ãããã®åé¡ã解決ããã«ã¯ãä¿¡é Œæ§ãå®å
šæ§ãæçšæ§ãããå³å¯ã«å¶åŸ¡ããã·ã¹ãã ãæ§ç¯ããçŸåšã·ã¹ãã é害ã«ã€ãªããã¿ã¹ã¯ãèªååããå°é家ãšç®¡çè
ã®æ³šæãå¿
èŠãšããŸãã ããã«ããããœãããŠã§ã¢éçºããã³èšèšã®æ°ããã»ã¯ã·ã§ã³ãåºçŸããŸããããã«ã¯ã ãªãŒããããã¯ã³ã³ãã¥ãŒãã£ã³ã° ã èªå·±ä¿®åŸ©ã·ã¹ãã ããŸãã¯èªå·±é©å¿ã·ã¹ãã ãå«ãŸããŸãã
ãã®ã¬ããŒãã§ã¯ããã®åéã®ææ°ã®ææã«ã€ããŠèª¬æããŸããããã«ããã次ã®ãããªå€ãã®ãšã³ãžãã¢ãªã³ã°äžã®åé¡ã解決ã§ããŸãã- ïŒaïŒã¢ãŒããã¯ãã£ã¢ãã«ãšå埩ã®èªååãéããŠèªå·±ä¿®åŸ©ããµããŒãããæ©èœã
- ïŒbïŒã¢ããªã±ãŒã·ã§ã³æäœäžã®èª€åäœã蚺æããå¶åŸ¡ã·ã¹ãã ãäœæããããã®æ°ããæè¡ã
- ïŒcïŒèªå·±ä¿è·ã·ã¹ãã ã®ãµããŒãã
ããã¯ãããã«ãŒãšã®è»æ¡ç«¶äºã§ã¯ãªããæ
å ±ã»ãã¥ãªãã£ã®å¿ããããã¡ãªãã¢ã¯ã»ã·ããªãã£ãã«é¢ãããã®ã§ãã 確ãã«ãã·ã¹ãã ãããã«ãŒã®DDOSã«è©²åœããããã¯ãªã¹ãã¹/ Habr / redditã®åœ±é¿ãåãããã«å·®ã¯ãããŸããã æ
å ±ã·ã¹ãã ã¯ãåäœæ¡ä»¶ã®åå·®ãŸãã¯ããããããªãé»ãçœé³¥ããããããªãã«ã§ããªãããã«èšèšããå¿
èŠããããŸãã äžè¬çã«ããããã«ãŒã«ã€ããŠèããã®ããããŠãèªåã®ITå°é家ã«ã€ããŠèããŠãã ãããã
ææ°ã®é«è² è·ã¢ãŒããã¯ãã£ã¯ãã¹ãŠã®ã³ã¹ãã§è€è£œãšã¢ã¯ã»ã¹å¯èœæ§ã«é¢ãããã®ã§ãããšããéåžžã«æçœãªèŠ³å¯ãããïŒäŸïŒGoogleãã¡ã€ã«ã·ã¹ãã ãIBM MAPE-KïŒããã€ã¯ããµãŒãã¹ã¢ãŒããã¯ãã£ã®ãšã³ã¿ãŒãã©ã€ãºãã¬ã³ãããããŸãã
ã¹ããŒã«ãŒã¯ãŸããé©å¿å埩ã®ããã®ç¬èªã®ã¢ãã«ãšåœ¢åŒãæšé²ããŸãããããã§ã¯ãç¬ç«ããå¶åŸ¡ã«ãŒããš
Plan-Do-Check-Act Monitor-Analyze-Plan-Executeã¬ãã«æŠç¥ãåããããªããšãªãèªæãªã¢ãŒããã¯ãã£ããããŸãããã¢ãã«ç®¡çãšé©å¿ãæŠç¥ã®å®è¡ãã¢ãŒããã¯ãã£è©äŸ¡ã®å¥ã
ã®ããã»ã¹ã«åãããŸãã...ïŒç·ç§°ããŠãã¬ã€ã³ããŒã¢ãŒããã¯ãã£ãšåŒã°ããŠããŸããïŒã
ã©ã³ãã åãããé©å¿æŠç¥ãèšå®ããããã®å°éåéã«ç¹åããèšèªã¹ãã£ãããšããã¹ãã¯ãã«èª€å·®ã®å±æåãã®ããªãããŒãªã·ã¹ãã ããããŸãããããã¯ãã¹ãŠããµã ã¹ã³ã®çç£ç®¡çã·ã¹ãã ã§ããã¹ããããŸããã
ãæå³çãªã»ãã¥ãªãã£ã
ã¹ã©ã€ããè¿œå è³æãæå³çãªã»ãã¥ãªãã£ã¬ããŒãã®é£çµ¡å
è±èªã«ããèšèšã»ãã¥ãªãã£ã«ãããªãªãžãã«ã»ãã¥ãªãã£äŒæ¥ã¬ãã«ãå«ããããã°ã©ã ã®èšèšãšéçºã«ãããã»ãã¥ãªãã£èŠä»¶ãšåŸåã çµç¹å
ã®ITã·ã¹ãã ãšãµãŒãã¹ã®ã»ãã¥ãªãã£ãšåŸ©å
åãã©ã®ããã«éæã§ããŸããã
äœã欲ããã®ãïŒ- ã¯ã©ã€ã¢ã³ããšãŠãŒã¶ãŒã®èŠç¹-ããã«ã«å¯Ÿããä¿è·ããåããå®å
šãªãœãããŠã§ã¢ãäœæã§ããŸããïŒ
- ææ°ã®èŠä»¶ãšã»ãã¥ãªãã£æšæºã¯ããã¹ãŠã®ãœãããŠã§ã¢ã«å
±éããæ°ããã¿ã€ãã®è匱æ§ãäœæããã®ã«åœ¹ç«ã€ã®ã§ããããããšãäœæããã ãã§ãã
ã©ãããã°ãããéæã§ããŸããïŒ- å®å
šãªãœãããŠã§ã¢ã®éçºæ¹æ³-éçºååãç¹å¥ãªãŠãŒãã£ãªãã£ãã»ãã¥ãªãã£ãã¹ãïŒ
- éçºããŒã ã«ã¯ã©ã®ãããªäž»èŠãªã»ãã¥ãªãã£ã¹ãã«ãå¿
èŠã§ããïŒ
- ãµã€ããŒã»ãã¥ãªãã£ã«ããããããã°ããŒã¿ãã®æµå
¥ãã©ãåŠçããã-æ»æãšè
åšã«é¢ããå€æ°ã®ãœãŒã¹ããã®æ
å ±ãçµã¿åãããŠå¿çããããã«ïŒ
ãããã§ããïŒ- ã»ãã¥ãªãã£ã¯ãããã§ããïŒãŸãããã®ã³ã¹ããæé ãªäŸ¡æ Œã§ç®¡çããæ¹æ³ã¯ïŒ
- äºé²ã®äŸ¡æ Œãšçµæã®ä¿®æ£ã®äŸ¡æ Œã®æ¯èŒ
ãã£ã¹ã«ãã·ã§ã³ããã«ã®åœ¢åŒã¯ãèŽè¡ããã®è³ªåãå«ã4人ã®è±èªã¹ããŒã«ãŒã®æ··chaãšããè°è«ã§ãã
ãœãããŠã§ã¢ã¯å
šäžçã飲ã¿èŸŒãã§ããŸããŸããããç§ãã¡ã¯å®å
šã§ããïŒ ãããã¯ã«æ©èœèŠä»¶ãšãŠãŒã¶ããªãã£ã®åŸã«ã®ã¿æ³šæãæãããã»ãã¥ãªãã£ããããŸããïŒ ã»ãã¥ãªãã£ãšäœ¿ããããã®ãã©ã³ã¹ãèšç®ããæ¹æ³ã¯ïŒ
ã¯ããæ
å ±ã»ãã¥ãªãã£ã®ãã®é åå
šäœã¯ã確çãäœãæ²æšãªçµæããããããã©ãã¯ã¹ã¯ã³ã§ãã£ã±ãã§ã-æ£çŽã«èšç®ããã®ã¯å°é£ã§ãã ãã¹ãŠãçŽæã«åããŠãæ®éã®åŸæ¥å¡ã«è¡ã§æžãããèŠå¶ã®äŸ¡å€ãšäžåžã«èª¬æã§ããå³-ã»ãã¥ãªãã£ã«æè³ãã䟡å€ãç¹ã«çµå¶é£ãå®å
šã«å¹æçã§çè«ã®åºæ¬ãç¥ããªãå Žå
ãã¹ãŠãå°ããå€æŽããã«ã»ãã¥ãªãã£ãã¢ããã°ã¬ãŒãããã®ãé£ããã¬ã¬ã·ãŒã·ã¹ãã ã§äœããã¹ããïŒ
ãããžã¿ã«ã»ãã¥ãªãã£...ç®ã«èŠããªãããšããããããŸãã ãã®ãŽãŒãã¡ãŒã¯å±éºã§ããã...é©å¿ã·ã¹ãã ã«é¢ããã¬ããŒãã®èè
ã¯ãåçã·ã¹ãã ã®è匱æ§ãäœããšããèããæšé²ãããã«ãã¹ã¿ãã¯ã¢ããªã±ãŒã·ã§ã³ïŒLinuxãWindowsãããã³...ã®äžã§å®è£
ãããæ¡ä»¶ä»ãã§å®è¡ããã䞊è¡ããŠå®è¡ãããïŒã¯è匱æ§ãäœããšããéåžžã«å¥åŠãªèãã«éããŸããã ä¿¡é Œæ§ã®èŠ³ç¹ããã¯ããããããããŸããããããããŸãããšçæ°ã«ããã»ãã¥ãªãã£ããèããªããã°ãæããã«ããã«æ¯äŸããŠããå€ãã®è匱æ§ããããŸãã ä»ã®é åºãªã¢ã€ãã¢ãããšãã°ãæ»æãŠã€ã«ã¹ãããããŸããã
ã9ãä¿¡é Œæ§ã«è¿œå ããã«ã¯ã©ããããã®è²»çšãããããŸããããããç¡éã®ã»ãã¥ãªãã£ã¬ãŒã¹ã«ã€ããŠå€ãã®è°è«ããããŸããã ïŒåœéçãªåè«ã®ç²Ÿç¥ã§ãç§ã¯ãã©ããéãèµ°ãå¿
èŠã¯ãªã...ãïŒã
ãã£ãŒãããã¯ãšã³ã¡ã³ããæè¿ããŸããã¬ããŒãã§äœã圹ã«ç«ã€ãã®ãèŠã€ããŠããããããŸãã¯ããªãã®æèŠã§ããããã¹ãŠã¯ãŒã«ãªå Žåã¯ãã¬ããŒãã«æ確ã«çããŠãã-
ç»é²ããŠãã ãã ã
æ¥çã®å°é家ã倧åŠã®ç 究è
ãå°äžããŒã¿ã»ã³ã¿ãŒããã®æ²èŠ³çãªãã¥ãŒãªã³ã°-äŒè°ãããªããåŸ
ã£ãŠããŸãã
ã¯ããå
¬åŒã®æ¥ä»ã¯ããã§çµäºããŸããããããã°ã©ã å§å¡äŒã«åå ããç§ã®çµéšã§ã¯ãäœãäŒããããšãããã°ã匷åãªãããã¯ã«é¢ããã¬ããŒãã«ã¬ãã¥ãŒãè¡ãæéããããŸãã