å°ãåã®ããšã§ãããç§ãã¡ã®ããã°ã§ã¯ãVPNãœãããŠã§ã¢ã®å®è£
ã®ã¬ãã¥ãŒã«é¢ãã
è³æãå
¬ââéããŸããã æ¬¡ã«ã第2éšãæºåããããšãçŽæããŸãããä»åã¯ãä»®æ³ãã©ã€ããŒããããã¯ãŒã¯ãäœæããããã®æ¬¡ã®ãœãããŠã§ã¢ãœãªã¥ãŒã·ã§ã³ãæ€èšããŸãïŒAnyConnect VPNãOpenConnect VPNãSoftEther VPNãTincã
/åçãã€ãã»ã¯ãã¹ã㌠CCã·ã¹ã³ãæäŸãã補åãæ¢çŽ¢ãããšããAny Connectããšããèšèãç¡èŠããã®ã¯éåžžã«å°é£ã§ãããã®ååã¯ããã³ããŒããæ¬¡äžä»£ãVPNã¯ã©ã€ã¢ã³ããšããŠéçºãããœãªã¥ãŒã·ã§ã³ãé ããŠããŸãã ãŸããäŒæ¥ã®ã³ã³ãã¥ãŒã¿ãŒãä¿è·ããããã®é«åºŠãªæ©èœãæäŸããŸãã
ããšãã°ããã®è£œåã¯ãSSLïŒTLSããã³DTLSïŒããã³IPsecã«åºã¥ããå®å
šãªãããã¯ãŒã¯ã¢ã¯ã»ã¹ãæäŸããŸããããã«ããããªã¢ãŒãã¯ã©ã€ã¢ã³ãã¯ã»ãšãã©ãã¹ãŠã®ã¢ããªã±ãŒã·ã§ã³ãŸãã¯ãããã¯ãŒã¯ãªãœãŒã¹ãšã®æ¥ç¶ã確ç«ã§ããŸãã
Cisco AnyConnectã»ãã¥ã¢ã¢ããªãã£ã¯ã©ã€ã¢ã³ããL2TP / IPsec VPNãããã³IPsec VPNã䜿çšããŠæ¥ç¶ããŸãã ãã®ãœãªã¥ãŒã·ã§ã³ã¯ããããã¯ãŒã¯å¶éã«åãããã«ãã³ããªã³ã°ãããã³ã«ãèªåçã«èª¿æŽããDTLSãããã³ã«ã䜿çšããŠãããšãã°ã¢ããªã±ãŒã·ã§ã³ãžã®VoIPãŸãã¯TCPã¢ã¯ã»ã¹ãééãããã©ãã£ãã¯ãæé©åããŸãã
ãã©ãŠã¶ã§äœ¿çšãããSSLæå·åã®æ®åã«ãããAnyConnectã¯ã¯ã©ã€ã¢ã³ããªãã§ãªã¢ãŒãã¢ã¯ã»ã¹ãæäŸããŸããããã«ãããå Žæã«é¢ä¿ãªããããã¯ãŒã¯ãªãœãŒã¹ãWebã¢ããªã±ãŒã·ã§ã³ãã¿ãŒããã«ãµãŒãã¹ã¢ããªã±ãŒã·ã§ã³ïŒCitrixãªã©ïŒã«ã¢ã¯ã»ã¹ã§ããŸãã
AnyConnectã¯ããªã¢ãŒãæ¥ç¶ã確ç«ããåã«ãã¯ã©ã€ã¢ã³ãã«ã€ã³ã¹ããŒã«ãããŠãããŠã€ã«ã¹å¯ŸçãœãããŠã§ã¢ããã¡ã€ã¢ãŠã©ãŒã«ãšåæ§ã«ãªãã¬ãŒãã£ã³ã°ã·ã¹ãã ãå€å¥ã§ããŸããããã¯ãã»ãã¥ãªãã£ã«ããã©ã¹ã®å¹æããããŸãã ããã«ããã¬ã¡ããªæ©èœãèšåãã䟡å€ããããŸãã ã·ã¹ãã ã¯ããŠã€ã«ã¹å¯ŸçãœãããŠã§ã¢ã«ãã£ãŠæ€åºãããæªæã®ããã³ã³ãã³ãã®çºä¿¡å
ã«é¢ããæ
å ±ãåéããŸãããã®æ
å ±ã䜿çšããŠãURLãã£ã«ã¿ãªã³ã°ã«ãŒã«ã倿Žããããšã§ãããã¯ãŒã¯ã»ãã¥ãªãã£ãæ¹åã§ããŸãã
OpenConnectã¯ãããšããšCisco AnyConnect SSL VPNç¬èªã®ã¯ã©ã€ã¢ã³ãã®ä»£ãããšããŠäœæãããããã€ã³ãããŒãã€ã³ãæ¥ç¶ãåãããªãŒãã³ãšã³ãã®ä»®æ³ãã©ã€ããŒããããã¯ãŒã¯ã¢ããªã±ãŒã·ã§ã³ã§ãã éçºã®çç±ã¯ãLinuxåãã·ã¹ã³ãœãªã¥ãŒã·ã§ã³ã§èŠã€ãã£ãäžé£ã®æ¬ ç¹ã§ãããi386以å€ã®ã¢ãŒããã¯ãã£ã®ãµããŒãã®æ¬ åŠïŒLinuxãã©ãããã©ãŒã ã®å ŽåïŒãNetworkManagerãšã®çµ±åã®æ¬ åŠãRPMããã³DEBããã±ãŒãžåœ¢åŒã®æèœãªãµããŒãã®æ¬ åŠãéç¹æš©ãŠãŒã¶ãŒãšããŠã®äœæ¥äžèœãã¯ããŒãºãã³ãŒãããã®ä»
OpenConnectïŒocservïŒã¯ãå°ããå®å
šã§é«éãªVPNãµãŒããŒãšããŠéçºãããŸããã OpenConnect SSL VPNãããã³ã«ããµããŒãããAnyConnect SSL VPNãããã³ã«ã䜿çšããã¯ã©ã€ã¢ã³ããšäºææ§ããããŸã-æšæºã®TLSããã³DTLSããŒã¿è»¢éãããã³ã«ã䜿çšããŸãã ããã«ãOpenConnectã¯ãã¥ã¢ã«TCP / UDP VPNãã£ãã«ãæäŸããæšæºã®IETFã»ãã¥ãªãã£ãããã³ã«ã§åäœããŸãã
æ¥ç¶ã¯2段éã§è¡ãããŸãã æåã«ããŠãŒã¶ãŒãèªèšŒãããåçŽãªHTTPSæ¥ç¶ã確ç«ãããŸãïŒèšŒææžããã¹ã¯ãŒãããŸãã¯SecureIDã䜿çšïŒã èªèšŒåŸããŠãŒã¶ãŒã¯VPNæ¥ç¶ã®ç¢ºç«ã«äœ¿çšãããCookieãåãåããŸãã
ocservã®äž»ãªæ©èœã®1ã€ã¯ã
ã»ãã¥ãªãã£ãšãã©ãŒã«ããã¬ã©ã³ã¹ãåäžãããããã®ãŠãŒã¶ãŒç¹æš©ã®åé¢ã§ããããã¯ãTCPãšUDPã®äœµçšã«ãã£ãŠå®çŸãããŸãã
ç»å€§åã¯ãçæ³¢å€§åŠã§ç ç©¶ãéå§ãããšãã«SoftEther VPNã®éçºãéå§ããŸããã 2003幎ã«ã圌ã¯SoftEtherã®æåã®ããŒãžã§ã³ããªãªãŒã¹ããŸãããããã¡ã€ã¢ãŠã©ãŒã«ããã€ãã¹ããèœåãããããããã®ãããžã§ã¯ãã¯ãã«ãŠã§ã¢ã®å®çŸ©ã«è©²åœãããšèããæ¥æ¬æ¿åºããèŠåãåããŸããã ãã®çµæãSoftEtherã¯ãããªãã¯ãã¡ã€ã³ããé€å€ãããŸããã
ãã°ããããŠ-2004幎4æ-äžè±ãããªã¢ã«æ ªåŒäŒç€Ÿã¯ãSoftEther 1.0ã®è³Œå
¥ãš10幎éã®å¥çŽïŒ2004幎4æãã2014幎4æïŒã«ç»bãç³ãåºãŸãããããã«ãããSoftEtherã販売ããæš©å©ãšäŒæ¥ã«ããã°ã©ã ã販売ããããšãçŠããŸããã ãã ãã2013幎3æã«Noboriã¯ãœãªã¥ãŒã·ã§ã³ã®ç¡æé
åžãéå§ãã2014幎1æã«GPLv2ã©ã€ã»ã³ã¹ã§ãœãªã¥ãŒã·ã§ã³ãéãããšãã§ããŸããã
SoftEther VPNã¯ãå¥ã®åŒ·åã§ã·ã³ãã«ãªVPNãœãªã¥ãŒã·ã§ã³ã§ãã SoftEther VPNã¯ãææ°ã®äžè¬çãªVPN補åãšäºææ§ããããŸãïŒOpenVPNãL2TPãIPsecãEtherIPãL2TPv3ãCisco VPNã«ãŒã¿ãŒãMS-SSTP VPNã«ã¯ãWindowsãLinuxãOS XãFreeBSDãSolarisã®ããŒãžã§ã³ããããŸãã
ãœãããŠã§ã¢ã¯ããµãŒããŒãããªããžãµãŒããŒãã¯ã©ã€ã¢ã³ããGUIãããã³ç®¡çãŠãŒãã£ãªãã£ã§æ§æãããŠããŸãã 1å°ã®ã³ã³ãã¥ãŒã¿ãŒãLANã«æ¥ç¶ããã«ã¯ã¯ã©ã€ã¢ã³ããå¿
èŠã§ïŒ
ãªã¢ãŒãã¢ã¯ã»ã¹VPN ïŒã2ã€ä»¥äžã®ãããã¯ãŒã¯ãæ¥ç¶ããã«ã¯ããªããžãµãŒããŒãå¿
èŠã§ãïŒ
ãµã€ãéVPN ïŒã 2çªç®ã®ãªãã·ã§ã³ã䜿çšãããšãç¹å®ã®ã¯ã©ã€ã¢ã³ãããã€ã¹ããšã«æ¥ç¶ãã©ã¡ãŒã¿ãŒãåå¥ã«æ§æããå¿
èŠããªããªãããšã«æ³šæããŠãã ãããæ¥ç¶ãããåãããã¯ãŒã¯ãã1ã€ã®VPNã²ãŒããŠã§ã€ãæ§æããã ãã§ååã§ãã ã¡ãªã¿ã«ããµã€ãéVPNã®ã»ããã¢ããã«é¢ããå°ããªå®çšçãªã¬ã€ããçšæã
ãŸãã ã
ãã¡ãã§èŠã€ããããšãã§ããŸãã
SoftEther VPNã§ã¯ãããŒã«ã«ããªããžæ©èœã䜿çšããŠä»®æ³ãããšç©çã€ãŒãµãããã»ã°ã¡ã³ãéã®
ããŒã«ã«ããªããžã決å®ã§ããŸããããã«ãããç©çã¢ããã¿ãŒãšä»®æ³ããéã§ãã±ããã亀æã§ããããã«ãªããŸããããã«ãããèªå®
ãŸãã¯ã¢ãã€ã«ããã€ã¹ãããªã¢ãŒããã³ãã«ãæ§æã§ããŸãã 2ã€ä»¥äžã®ã€ãŒãµãããã»ã°ã¡ã³ãã1ã€ã®ãŠãããã«çµåããããã«ã2ã€ä»¥äžã®ãªã¢ãŒãä»®æ³ããéã«
ã«ã¹ã±ãŒãæ¥ç¶ã確ç«ããããšãã§ããŸãã
æ°å¹Žåã«æ¥æ¬æ¿åºã®éã§äžæºãåŒãèµ·ãããããã£ãŒããã±ããã€ã³ã¹ãã¯ã·ã§ã³çšã®ãã¡ã€ã¢ãŠã©ãŒã«ãšã·ã¹ãã ããã€ãã¹ãã
ããŒã«ã®ãµããŒããå¿ããªãã§ãã ããã ãã³ãã«æ€åºãããå°é£ã«ããããã«ãSoftEther VPNã¯ãHTTPSãä»ããåœè£
ã€ãŒãµããã転éã®æè¡ããµããŒãããŠããŸããã¯ã©ã€ã¢ã³ãåŽã«ä»®æ³ã€ãŒãµãããã¢ããã¿ãŒãå®è£
ãããµãŒããŒåŽã«ä»®æ³ã€ãŒãµãããã¹ã€ãããå®è£
ããŸãã
SoftEther VPN Serverã®ãã€ããªããŒãžã§ã³ãå
¬éãããŠä»¥æ¥ã8äžä»¶ä»¥äžã®æåãããµãŒããŒå±éã
èšé²ãããŠããããã®ã»ãšãã©ã¯æ¥æ¬ãã¢ã¡ãªã«ãäžåœã«ãããŸãã
Tincã¯VPNããŒã¢ã³ã§ãããVPNå®è£
ã®æ§æãæãå°ãããŠç°¡åãªã¿ã€ãã«ã®åè£ã®1ã€ã§ãã ãã®ãããžã§ã¯ãã¯ããªãåã®1998幎ã«å§ãŸãã仿¥ãŸã§æŽ»çºãªéçºãé²è¡äžã§ãããããã«ãããããããtincã¯æçãã補åã®ããã«èŠããŸãã
LinuxãBSDãMac OS XãSolarisãWindowsãªã©ã®OSãå®è¡ããŠããIPv4 / IPv6ãããã¯ãŒã¯çµç±ã§ã³ã³ãã¥ãŒã¿ãŒãæ¥ç¶ã§ããŸãã ããã«ãiPhoneããã³iPodã§ã®äœæ¥ããµããŒãããŸãã
Tincã«ã¯ããã€ãã®è峿·±ãæ©èœããããŸãã ãã¹ãŠã®ãã©ãã£ãã¯ã¯ãªãã·ã§ã³ã§zlibãŸãã¯lzoã䜿çšããŠå§çž®ãããLibreSSLãŸãã¯OpenSSLãæå·åã«äœ¿çšãããŸã-ããã«ãããéä¿¡ãããããŒã¿ã倿Žããä¿è·ãããŸãã
è峿·±ãããšã«ãtincããŒã¢ã³ã®æ§æã«é¢ä¿ãªããå¯èœã§ããã°ãVPNãã©ãã£ãã¯ã¯ãããã¯ãããããšãªãå®å
ã«çŽæ¥éä¿¡ãããæ°ããããŒãã®å°å
¥ã¯æ§æãã¡ã€ã«ã远å ããã ãã§å®è¡ãããŸããæ°ããããŒã¢ã³ãèµ·åããããæ°ããããã€ã¹ãäœæãããããå¿
èŠã¯ãããŸããã
çŸåšãtincã¯ã»ãšãã©ã®ãã£ã¹ããªãã¥ãŒã·ã§ã³ã®ãªããžããªã§å©çšã§ããWindowsã®ã€ã³ã¹ããŒã«ããã±ãŒãžã¯å
¬åŒWebãµã€ããã
ããŠã³ããŒãã§ããŸãã éçºè
ã¯ãtincããŒã¹ã®ã·ã¹ãã ã®ã€ã³ã¹ããŒã«ãšæ§æãç°¡çŽ åããããã®ã³ãŒã¹ãè¬ããŠããã
ãµã€ãã®ããã¥ã¡ã³ãã«ã¯ãããŸããŸãªãªãã¬ãŒãã£ã³ã°ã·ã¹ãã ã®ã€ã³ã¹ããŒã«æ©èœãå«ããã¹ãŠã®éèŠãªåé¡ãåæ ãããŠããŸãã
çµè«ã®ä»£ããã«
ã€ã³ãã©ã¹ãã©ã¯ãã£ã«VPNãå±éããã«ã¯ããµãŒãããŒãã£ã®VPNãããã€ããŒã®ãµãŒãã¹ããã€ã§ã䜿çšã§ããŸãããç¹ã«å€æ°ã®ã¯ã©ã€ã¢ã³ããããã«ãããã¯ãŒã¯ã«æ¥ç¶ããå¿
èŠãããå Žåããã®ãµãŒãã¹ã¯é«äŸ¡ã§ããããšã«æ³šæããŠãã ããã åæã«ããããã€ããŒã¯äŒæ¥ããã³å人ããŒã¿ãåãåããŸã-ãã¹ãŠã®äŒæ¥ããã®ã¹ããããå®è¡ããæºåãã§ããŠããããã§ã¯ãããŸããã
ããä¿¡é Œæ§ãé«ãæè»ãªãœãªã¥ãŒã·ã§ã³ã¯ãç©çãµãŒããŒãŸãã¯ä»®æ³ãµãŒããŒïŒ
VPS / VDS ïŒäžã®ä»®æ³ãã©ã€ããŒããããã¯ãŒã¯ã®èªå·±èª¿æŽã§ãã 幞ããªããšã«ãã€ã³ã¿ãŒãããã«ã¯å€ãã®è©³çŽ°ãªæç€ºããããŸãã ãŸãã1cloudã®ã¯ã©ãŠã
VPS / VDSãµãŒããŒã䜿çšãããªãã·ã§ã³ãæäŸããŠããŸãïŒ
Windowsããã³
Linuxã®å Žå ïŒã ãã®ãœãªã¥ãŒã·ã§ã³ã¯ãä»®æ³ãã©ã€ããŒããããã¯ãŒã¯ã®çŸåšã®è² è·ã«ç°¡åã«å¯Ÿå¿ã§ããŸãã
PSèå³ããæã¡ã®å Žåã¯ã
IaaSãããã€ããŒ1cloudã®éçºã§ã®çµéšãå
±æããæºåãã§ããŠããŸãã ããã«ç§ãã¡ãçšæããããã€ãã®è峿·±ãè³æããããŸãïŒ