{"id":1685,"date":"2006-01-03T20:24:37","date_gmt":"2006-01-03T11:24:37","guid":{"rendered":"https:\/\/lain.dnsalias.org\/~garry\/blog\/?p=1685"},"modified":"2006-01-03T20:24:37","modified_gmt":"2006-01-03T11:24:37","slug":"post_48","status":"publish","type":"post","link":"https:\/\/lain.dnsalias.org\/~garry\/blog\/?p=1685","title":{"rendered":"\u3084\u3063\u3068\u5fa9\u6d3b"},"content":{"rendered":"<p>\u3084\u3063\u3068\u30b5\u30fc\u30d0\u304c\u5fa9\u6d3b\u3057\u307e\u3057\u305f\u3002<\/p>\n<p>IP\u30a2\u30c9\u30ec\u30b9\u53d6\u308c\u3066\u308b\u306e\u306b\u306a\u305c\u304b\u901a\u4fe1\u3067\u304d\u306a\u304f\u3066\u8ff7\u3044\u307e\u304f\u3063\u3066\u307e\u3057\u305f\u3002<\/p>\n<p>\u3067\u3001\u7d50\u5c40\u554f\u984c\u306f\u3001natd\u3068\u304b\u306e\u8a2d\u5b9a\u3067ping\u3059\u3089\u3068\u3070\u306a\u304f\u306a\u3063\u3066\u3044\u305f\u307d\u3044\u3067\u3059\u3002<\/p>\n<p>\u539f\u56e0\u308f\u304b\u3089\u305a\u306b\u305a\u3063\u3068\u653e\u7f6e\u3057\u3066\u307e\u3057\u305f\u304c\u6b63\u6708\u4f11\u307f\u3067\u304c\u3093\u3070\u308a\u307e\u3057\u305f\u3002<\/p>\n<p>\u30fbportsnap<br \/>\n<a href=\"http:\/\/wiki.fdiary.net\/BSDmad\/?portsnap\">http:\/\/wiki.fdiary.net\/BSDmad\/?portsnap<\/a><br \/>\n\u306f\u3058\u3081\u304b\u3089\u5165\u3063\u3066\u3044\u308b\u306e\u3067\u30a4\u30f3\u30b9\u30c8\u30fc\u30eb\u306e\u5fc5\u8981\u306f\u306a\u3057\u3002<br \/>\nportsnap fetch &amp;&amp; portsnap extract &amp;&amp; portsnap<br \/>\nupdate<br \/>\n\u3092\u5165\u529b\u3059\u308b\u3060\u3051\u3002<\/p>\n<p>\u30fbsamba<br \/>\nports\u3067\u30a4\u30f3\u30b9\u30c8\u30fc\u30eb\u3002<br \/>\nsamba3\u7cfb\u3092\u5165\u308c\u305f\u3002<br \/>\n\u4eca\u307e\u3067\u306e\u65e5\u672c\u8a9e\u306b\u3059\u308b\u305f\u3081\u306b\u3001<br \/>\n\u30c7\u30d5\u30a9\u30eb\u30c8\u3068\u9055\u3046\u306e\u306f\u3001<br \/>\n\/usr\/local\/etc\/smb.conf<br \/>\ndisplay charset = CP932<br \/>\nunix charset = EUC-JP<br \/>\ndos charset = CP932<br \/>\n\u3092\u8ffd\u52a0\u3002\u3044\u308d\u3044\u308d\u898b\u308b\u3068\u3001unix charset=eucJP-ms\u3068\u306a\u3063\u3066\u3044\u308b\u304c\u3001<br \/>\n\u3053\u308c\u306b\u3059\u308b\u3068\u4eca\u307e\u3067\u306e\u304c\u898b\u3048\u306a\u3044\u306e\u3067\u3001EUC-JP\u306b\u3057\u305f\u3002<br \/>\n<a href=\"http:\/\/www.fkimura.com\/samba1.html\">http:\/\/www.fkimura.com\/samba1.html<\/a><\/p>\n<p>\u30fbbind<br \/>\nports\u3067\u30a4\u30f3\u30b9\u30c8\u30fc\u30eb\u5f8c<br \/>\n\u8a2d\u5b9a\u30d5\u30a1\u30a4\u30eb\u3092\u4f5c\u6210\u3057\u3066\u7d42\u308f\u308a\u3002<\/p>\n<p>\u30fbapache<br \/>\nPORT\u304b\u3089\u30a4\u30f3\u30b9\u30c8\u30fc\u30eb\u3057\u3066\u7d42\u4e86\u3002<br \/>\nmod_usedir\u3092\u5165\u308c\u3066\u3001USER\u306e\u30c7\u30a3\u30ec\u30af\u30c8\u30ea\u8868\u793a\u3055\u305b\u308b\u3002<\/p>\n<p>\u30fbqmail<br \/>\n<a href=\"http:\/\/www.yomaigoto.jp\/freebsd\/qmail_bsd.html\">http:\/\/www.yomaigoto.jp\/freebsd\/qmail_bsd.html<\/a><br \/>\nports:mail<br \/>\n\u307b\u307c\u3053\u308c\u3068\u540c\u3058\u3053\u3068\u3092\u5b9f\u884c\u3002<br \/>\nFreeBSD6\u3060\u3068Ports\u5b9f\u884c\u6642\u306b\u30d1\u30c3\u30c1\u304c\u9078\u3079\u308b\u306e\u3067\u3001\u30d1\u30c3\u30c1\u5b9b\u5fc5\u8981\u306a\u3057\u3002<\/p>\n<p>\u30fbpop:checkpw<br \/>\n\u30dd\u30fc\u30c8\u306b\u306f\u306a\u3044\u306e\u3067\u3001\u843d\u3068\u3057\u3066\u304f\u308b\u3057\u304b\u306a\u3044\u3002<br \/>\n<a href=\"http:\/\/checkpw.sourceforge.net\/checkpw\/\">http:\/\/checkpw.sourceforge.net\/checkpw\/<\/a><br \/>\nmake;make setup check<br \/>\n\u3067\u7d42\u4e86\u3002<br \/>\n\/usr\/local\/bin\/tcpserver 0 pop3 \/var\/qmail\/bin\/qmail-popup Wired<br \/>\n\/bin\/checkapoppw \/var\/qmail\/bin\/qmail-pop3d Maildir &amp;<\/p>\n<p>\u30fbsquid<\/p>\n<p>\u30fbdhcpd:isc-dhcp3-server<br \/>\nports:net<br \/>\n\u305d\u306e\u307e\u307e\u30a4\u30f3\u30b9\u30c8\u30fc\u30eb\u3002<br \/>\n\/etc\/dhcpd.conf<br \/>\n\u3092\u7de8\u96c6\u3002<br \/>\n<a href=\"http:\/\/www.hayagui.com\/dhcp.html\">http:\/\/www.hayagui.com\/dhcp.html<\/a><\/p>\n<p>\u30fbtcpserver<br \/>\n<a href=\"http:\/\/www.y-min.or.jp\/~nob\/qmail\/tcpserver.html\">http:\/\/www.y-min.or.jp\/~nob\/qmail\/tcpserver.html<\/a><br \/>\nports:sysutils<br \/>\n\u30eb\u30fc\u30eb\u8a2d\u5b9a<br \/>\nsmtp.data<br \/>\n192.168.:allow,RELAYCLIENT=&#8221;&#8221;<br \/>\n127.:allow,RELAYCLIENT=&#8221;&#8221;<br \/>\n:deny<\/p>\n<p>$tcprules \/etc\/smtp.cdb \/etc\/smtp.tmp &lt; \/etc\/tcp.smtp<br \/>\ntcpserver\u3092\u8d77\u52d5\u3059\u308b\u3068\u304d\u306b\u3001-x\u30b3\u30de\u30f3\u30c9\u3067\u3001smtp.cdb\u3092\u8aad\u307f\u8fbc\u3080\u3002<\/p>\n<p><a href=\"http:\/\/www.fmmc.or.jp\/~fm\/nwmg\/TL6.1Svr\/secure\/mailserver9.html\">http:\/\/www.fmmc.or.jp\/~fm\/nwmg\/TL6.1Svr\/secure\/mailserver9.html<\/a><\/p>\n<p>\u30fbmfs<br \/>\n\u30a4\u30f3\u30b9\u30c8\u30fc\u30eb\u5fc5\u8981\u306a\u3057\u3002\u5143\u304b\u3089\u306f\u3044\u3063\u3066\u3044\u308b\u3002<br \/>\nmount_mfs -s 256000 -o nodev,nosuid md \/tmp<br \/>\n## TMP\u306eRAMDISK\u4f5c\u6210\u3002<\/p>\n<p>\u30fbfirewall<br \/>\nnatd\u3068\u5e2f\u57df\u5236\u9650\u3067\u4f7f\u7528\u3067\u304d\u308b\u3088\u3046\u306b\u306a\u3063\u3066\u3044\u308b\u3002<br \/>\n\/sbin\/ipfw -f flush<br \/>\n##\u3000ipfw\u306e\u521d\u671f\u5316\u3002\u3059\u3079\u3066\u306e\u6761\u4ef6\u3092\u307e\u3063\u3055\u3089\u306b\u3059\u308b\u3002<br \/>\n\/sbin\/ipfw add 10137 deny tcp from any to any 137 via fxp1<br \/>\n137\u30dd\u30fc\u30c8\u306b\u884c\u304f\u306e\u3092\u6b62\u3081\u308b\u3002<\/p>\n<p>\u30fbnatd<br \/>\n\u5143\u304b\u3089\u5165\u3063\u3066\u3044\u308b\u3002<br \/>\n<a href=\"http:\/\/hiiro-sou.hp.infoseek.co.jp\/unix\/freebsd\/2-4.html\">http:\/\/hiiro-sou.hp.infoseek.co.jp\/unix\/freebsd\/2-4.html<\/a><br \/>\n\u30ab\u30fc\u30cd\u30eb\u518d\u69cb\u7bc9\u304c\u5fc5\u8981\u3002<br \/>\nIPFIREWALL\u306e\u95a2\u4fc2<br \/>\n\u30ab\u30fc\u30cd\u30eb\u306b\u8ffd\u52a0<br \/>\noptions IPFIREWALL<br \/>\noptions IPFIREWALL_VERBOSE<br \/>\noptions&nbsp;IPDIVERT<\/p>\n<p>\/etc\/sysctl.conf\u306b<br \/>\nnet.inet.ip.forwarding = 1<br \/>\n\/etc\/rc.conf\u306b<br \/>\ngateway_enable=&#8221;YES&#8221;<br \/>\n\u30b3\u30de\u30f3\u30c9\u30e9\u30a4\u30f3\u3067<br \/>\nnatd -dynamic -n re0<\/p>\n<p>\u30fb\u5e2f\u57df\u5236\u9650<br \/>\n<a href=\"http:\/\/infonet.cse.kyutech.ac.jp\/~nori\/memo\/dummynet.html\">http:\/\/infonet.cse.kyutech.ac.jp\/~nori\/memo\/dummynet.html<\/a><br \/>\n\u30ab\u30fc\u30cd\u30eb\u306b\u8ffd\u52a0<br \/>\noption&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; DUMMYNET<br \/>\noption&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; BRIDGE<br \/>\n\/etc\/sysctl.conf\u306b\u8ffd\u52a0<br \/>\nnet.link.ether.bridge=1<br \/>\nnet.link.ether.bridge_ipfw=1<br \/>\nnet.link.ether.bridge_cfg=(WORLD\u5074\u30a4\u30f3\u30bf\u30fc\u30d5\u30a7\u30a4\u30b9\uff09:1<\/p>\n<p>\u5e2f\u57df\u5236\u9650\u306e\u30b3\u30de\u30f3\u30c9<br \/>\n\/sbin\/ipfw add divert natd all from any to any via fxp1<br \/>\n##\u3000fxp1\u3092\u901a\u308b\u3082\u306e\u3092\u30d5\u30a3\u30eb\u30bf\u30fc\u30ea\u30f3\u30b0\u3059\u308b\u3002<br \/>\n\/sbin\/ipfw add 110 pipe 10 tcp from any 80 to any out via<br \/>\nfxp1<br \/>\n##\u3000TCP\u300080\u3092\u901a\u308b\u5916\u5411\u3051\u3092pipe\u300010\u306b\u9001\u308b\u3002<br \/>\n\/sbin\/ipfw pipe 10 config bw 100Kbyte\/s<br \/>\n##\u3000pipe\u300010\u3092\u3000100k\/S\u306b\u5236\u9650\u3059\u308b\u3002<\/p>\n<p>ssh<br \/>\n\u30db\u30fc\u30e0\u30c7\u30a3\u30ec\u30af\u30c8\u30ea\u306b.ssh\u30c7\u30a3\u30ec\u30af\u30c8\u30ea\u4f5c\u6210\u3057\u3066\u3001<br \/>\nssh-keygen -t rsa<br \/>\n\u3067\u3001\u30ad\u30fc\u3092\u4f5c\u6210\u3059\u308b\u3002<br \/>\n\u305d\u306e\u5f8c\u3001id_rsa.pub\u3092authorized_keys\u306b\u5165\u308c\u308b\u3002<br \/>\nid_rsa\u306e\u65b9\u306f\u3001\u30af\u30e9\u30a4\u30a2\u30f3\u30c8\u306b\u5165\u308c\u308b\u3002<\/p>\n<p>\u3068\u3044\u3046\u3053\u3068\u3067MEMO\u6b8b\u3057\u3002<\/p>\n<p>\u307e\u3042\u3001\u6700\u5f8c\u308f\u304b\u3089\u306a\u304f\u306a\u308b\u3068\u601d\u3044\u307e\u3059\u304c\u3001\u3068\u3044\u3046\u304b\u524d\u3068\u540c\u3058\u306b\u3084\u3063\u305f\u3089\u6b7b\u3093\u3060\u3057\u3002<\/p>\n<p>Version\u5909\u308f\u3063\u3066\u304b\u306a\u308a\u5909\u66f4\u3042\u308b\u307f\u305f\u3044\u306a\u306e\u306b\u8aad\u307e\u306a\u3044\u3067\u305d\u306e\u307e\u307e\u3084\u3063\u3061\u307e\u3063\u305f\u306e\u304c\u4eca\u56de\u306e\u539f\u56e0\u3002<\/p>\n<p>1\u6708\u8fd1\u304f\u653e\u7f6e\u72b6\u614b\u3067\u3057\u305f\u3002<\/p>\n<p>&nbsp;<\/p>\n","protected":false},"excerpt":{"rendered":"<p>\u3084\u3063\u3068\u30b5\u30fc\u30d0\u304c\u5fa9\u6d3b\u3057\u307e\u3057\u305f\u3002 IP\u30a2\u30c9\u30ec\u30b9\u53d6\u308c\u3066\u308b\u306e\u306b\u306a\u305c\u304b\u901a\u4fe1\u3067\u304d\u306a\u304f\u3066\u8ff7\u3044\u307e\u304f\u3063\u3066\u307e\u3057\u305f\u3002 \u3067\u3001\u7d50\u5c40\u554f\u984c\u306f\u3001natd\u3068\u304b\u306e\u8a2d\u5b9a\u3067ping\u3059\u3089\u3068\u3070\u306a\u304f\u306a\u3063\u3066\u3044\u305f\u307d\u3044\u3067\u3059\u3002 \u539f\u56e0\u308f\u304b\u3089\u305a\u306b\u305a\u3063\u3068\u653e\u7f6e\u3057\u3066\u307e\u3057\u305f\u304c\u6b63\u6708\u4f11\u307f\u3067\u304c\u3093\u3070\u308a\u307e\u3057\u305f\u3002 \u30fbportsnap http:\/\/wiki.fdiary.ne&#8230;<br \/>\n <a href=\"https:\/\/lain.dnsalias.org\/~garry\/blog\/?p=1685\">\u7d9a\u304d\u3092\u8aad\u3080 <span class=\"meta-nav\">&rarr;<\/span><\/a><\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[15,3],"tags":[],"class_list":["post-1685","post","type-post","status-publish","format-standard","hentry","category-freebsd","category-pc"],"_links":{"self":[{"href":"https:\/\/lain.dnsalias.org\/~garry\/blog\/index.php?rest_route=\/wp\/v2\/posts\/1685","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/lain.dnsalias.org\/~garry\/blog\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/lain.dnsalias.org\/~garry\/blog\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/lain.dnsalias.org\/~garry\/blog\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/lain.dnsalias.org\/~garry\/blog\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=1685"}],"version-history":[{"count":0,"href":"https:\/\/lain.dnsalias.org\/~garry\/blog\/index.php?rest_route=\/wp\/v2\/posts\/1685\/revisions"}],"wp:attachment":[{"href":"https:\/\/lain.dnsalias.org\/~garry\/blog\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=1685"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/lain.dnsalias.org\/~garry\/blog\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=1685"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/lain.dnsalias.org\/~garry\/blog\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=1685"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}