Windows2000ãèµ·åãããšãftp.exeã䜿ã£ãŠã
ftp.angelfire.comãžåæã«ã¢ã¯ã»ã¹ããããã»ã¹ã
ããã®ã§ããããã®ããã°ã©ã ãè§£é€ããããšã
ã§ããŸããã
netstat.exeã䜿ã£ãŠã確èªãããšã
ftp.angelfire.comã«ESTABLISHEDããŠããã®ãçºèŠããŸããã
äžåããftp.angelfire.comã䜿ã£ãããšããªããã
ãããªãµã€ããããã®ãããç¥ããŸããã§ããã
ã©ã®ããã°ã©ã ãããã䜿ã£ãŠããã®ããããããŸããã
Lavasoftã®Ad-ware 6.0ãã€ã³ã¹ããŒã«ããŠã
ADWAREã®æ€çŽ¢ããããã
Norton Anti Virus 2003ãã€ã³ã¹ããŒã«ããŠã
ãŠã€ã«ã¹ãã§ãã¯ãããŠããã®ã§ããã
ããããããã®ãçºèŠã§ããŸããã§ããã
è§£æ±ºæ¹æ³ããåç¥ã®æ¹ã¯ãæ
å ±æäŸãé¡ãããŸãã
--
Post2003<new...@hotmail.com>
Windows2000 Professionalã®ã»ãã§ããã°ã
Norton Internet Securityã®ãããª
Personal Firewallãå°å
¥ãããŠã¯ããã
ã§ããããïŒ
Norton Internet Securityã®å Žåãèšå®æ¬¡ç¬¬ã§
ããã°ã©ã ããããã¯ãŒã¯ãžã¢ã¯ã»ã¹ãã«è¡ã床ã«
ã¢ã¯ã»ã¹èš±å¯ãæ±ããããã«ããããšãã§ããŸãã
ãã®ãšããããã°ã©ã åãšããŒã«ã«ãšãªã¢ãŒãã®
IP address/portã衚瀺ãããŸãã
----
Yoshida Kazuhito E-mail:kazu...@super.win.ne.jp
å®éã«ã¢ã¯ã»ã¹ã«è¡ãããã°ã©ã 㯠ftp.exe ã ãšåãã£ãŠãããã
ã§ãã®ã§ããã¡ã€ã¢ãŠã©ãŒã«ã ãã§ã¯ã¢ã¯ã»ã¹ã®é»æ¢ã¯ã§ããŸãã
åé¡ã® ftp.exe ãèµ·åããŠããããã°ã©ã ã®çºèŠã¯ç¡çãããããŸããã
ã·ã¹ãã ã»ãã¥ãªãã£ç³»ã®ã¢ããªã±ãŒã·ã§ã³ã«ã¯ããã»ã¹ãä»ã®
ããã°ã©ã ãåæã«èµ·åããã®ã黿¢ã§ãããããªãã®ããããŸãã
ç§ãç¥ã£ãŠããã®ã¯ Kerio Personal Firewall (http://www.kerio.com/)
ã ãã§ãããæè¿ã®ãã¡ã€ã¢ãŠã©ãŒã«ç³»ã¢ããªã±ãŒã·ã§ã³ãªãä»ã«ã
ãã£ããããã®ã§ã¯ãªãã§ããããã
--
Ken Kato (kato....@cij.co.jp)
IEã®ã»ãã¥ãªãã£ããŒã«çªãããã¿ãŒã³ã§ã¯ãªãããšæããããã§ããã©
ã€ã³ã¿ãŒããããªãã·ã§ã³ã®[å
šè¬]-[ã€ã³ã¿ãŒãããäžæãã¡ã€ã«]-[èšå®]-
[ãªããžã§ã¯ãã®è¡šç€º]ã§ããããªç©ããªãã確èªããã°è¯ãã§ãããã
ã§ãå®éçŸåšã®æIEã䜿ãã®ã¯èªæ®ºè¡çºã§ãã
以äžã®ãµã€ãã«è©³ããæžããŠããŸãã
>IEã®ãµã€ãåœè£
åé¡ã§è¢«å®³ããããããªãããã«
http://www.zdnet.co.jp/enterprise/0312/24/epn14.html
é¢åã ããã£ã¡ã®æ¹ããããšæãã
>URLãåœè£
ã§ããIEã®ã»ãã¥ãªãã£ã»ããŒã«ã¯å±éºïŒãããããã£ãæ
å ±ã
>ä¿¡çšã§ããªãã
>IEã®ã»ãã¥ãªãã£èšå®ã§ã¯åé¿äžèœ
>IE ã®8çš®é¡ã®ã»ãã¥ãªãã£ã»ããŒã«ãæªä¿®æ£(ITPROç¡æäŒå¡ç»é²å¿
èŠïŒ
http://itpro.nikkeibp.co.jp/members/ITPro/SEC_CHECK/20031216/1/
åºæ¥ãã°IEã®ã³ã³ããŒãã³ãã䜿ããªãMozillaç³»ïŒNetScape7.1ã¯é€ãïŒã®æ
æ°ãOperaã®ææ°çãã¡ã€ã³ã«äœ¿ãIEã¯Updateäœã«ããæ¹ãç¡é£ã§ãã
ãã®éãJavaã¯ææ°çãåç¬ã§å
¥æããæ¹ãç¡é£ã§ãã確ãæè¿åé¡ãèŠã€
ãã£ãŠææ°çã«ãªã£ãã¯ãã
--
--------------------------------------
Y,Watanabe E./Epsilon/Yasâ圡
mailto:nex...@yahoo.co.jp
--------------------------------------
In article <bsp8dn$2b9$1...@hawaii.ykhm.cij.co.jp>
Ken Kato <kato....@cij.co.jp> writes:
> å®éã«ã¢ã¯ã»ã¹ã«è¡ãããã°ã©ã 㯠ftp.exe ã ãšåãã£ãŠãããã
> ã§ãã®ã§ããã¡ã€ã¢ãŠã©ãŒã«ã ãã§ã¯ã¢ã¯ã»ã¹ã®é»æ¢ã¯ã§ããŸãã
> åé¡ã® ftp.exe ãèµ·åããŠããããã°ã©ã ã®çºèŠã¯ç¡çãããããŸããã
ftp.exe ããç¡å®³ã§æ¢ãŸããªãããã°ã©ã ã«çœ®æããŠããŸã£ãŠã远
è·¡ããã®ã¯ã©ãã§ãããããããæ¢ãŸãããã°ã©ã ã ãšãps ããŠ
远跡ããæããããŸããã(ps ã¯ãUnix ã®ã³ãã³ãã§ Windows ã«
ã¯ãªããã©ãæ°åã¯ããããããšã§ãã)
Windows 2000 ã§ã芪ããã»ã¹ã衚瀺ããã®ã¯ãã©ããããã§ããã£ãïŒ
ããšãftp.angelfire.com ãšããã£ãŠããã®ã§ããšããããã¯ãã
ã±ããã»ãã£ã«ã¿ããããŠïŒ°ïŒ£ãã ftp.angelfire.com ã«åºãŠã
ãæ¹ã®ãã±ãããæ¢ããŠããŸããšããŠãWindows 2000 ã§ãã©ãã
ããã§ããã£ãïŒ
ïŒŒïŒŒãæ°åãéãïŒãããããããããïŒã
ãçæ³¢å€§åŠãé»åã»æ
å ±ããããããã
|Subject: Re: åæã«ftp.angelfire.comãžã¢ã¯ã»ã¹ããã°ã©ã ã«ã€ããŠ
|From: Yasushi Shinjo <y...@is.tsukuba.ac.jp>
|Date: 01 Jan 2004 18:39:19 GMT
|Message-Id: <YAS.04Ja...@kirk.is.tsukuba.ac.jp>
| ããšãftp.angelfire.com ãšããã£ãŠããã®ã§ããšããããã¯ãã
| ã±ããã»ãã£ã«ã¿ããããŠPCãã ftp.angelfire.com ã«åºãŠã
| ãæ¹ã®ãã±ãããæ¢ããŠããŸããšããŠãWindows 2000 ã§ãã©ãã
| ããã§ããã£ã?
Output ã§å¯Ÿåæå®ã£ãŠããšã§ãããã?
ãããªããnetsh ã³ãã³ãã§ãrouting ip ã³ã³ããã¹ãã«å
¥ã£ãŠãã
ãã£ã«ã¿æå®ãããããããã¯åæ§ã« IPSEC ã§ããã£ã«ã¿ãçµããŸã
(ãã¡ã㯠GUI ã CLI ããã£ããšæããŸããã)ã®ã§ããã¡ãã䜿ããš
ãã
以äž
å±±æ¬è¬æ¬¡ [MVP]
--
JWNTUG TechNote http://www.jwntug.or.jp/tech/technote/index-j.html
JWNTUG NT-FAQ-J http://www.jwntug.or.jp/tech/ntfaqj/index.html
Kenji Yamamoto, Microsoft MVP (Security; Windows Server Systems), MCP+I, MCSE (TCP/IP, IIS4, IEAK4)
TechNet ITPro Security Community: http://www.microsoft.com/technet/security/community/mvp/default.mspx
mailto:ethe...@jcom.home.ne.jp
In article <8MUJb.2210$vR3.1...@news1.rdc1.ky.home.ne.jp>
Kenji Yamamoto [Security MVP] <ethe...@mvps.org> writes:
> | ããšãftp.angelfire.com ãšããã£ãŠããã®ã§ããšããããã¯ãã
> | ã±ããã»ãã£ã«ã¿ããããŠPCãã ftp.angelfire.com ã«åºãŠã
> | ãæ¹ã®ãã±ãããæ¢ããŠããŸããšããŠãWindows 2000 ã§ãã©ãã
> | ããã§ããã£ã?
>
> Output ã§å¯Ÿåæå®ã£ãŠããšã§ãããã?
|ãOutput ã§å¯Ÿåæå®ãã£ãŠçšèªã¯å§ããŠèããŸããããé°å²æ°ã¯
ããã§ããæ®éã® IP ã®çšèªã ãšãoutgoing ã®ãã±ããã«å¯ŸããŠã
destination ã® ip address ãšããŒãçªå·ã§æå®ããŠæ¢ãããšãã
ãã®ã§ããDNS ãããã¯éããŠããŠãããã§ãããã
> ãããªããnetsh ã³ãã³ãã§ãrouting ip ã³ã³ããã¹ãã«å
¥ã£ãŠãã
> ãã£ã«ã¿æå®ãããããããã¯åæ§ã« IPSEC ã§ããã£ã«ã¿ãçµããŸã
> (ãã¡ã㯠GUI ã CLI ããã£ããšæããŸããã)ã®ã§ããã¡ãã䜿ããš
> ãã
ããå°ãå
·äœçã«æããŠäžããããã±ããã»ãã£ã«ã¿ãããããã
ã¯ãç§ã§ãããããŸããWindows 2000 ã¯æ®æ®µã¯äœ¿ã£ãŠããªãã®ã§ã
ãããããã
------------------------------------------------------------
W32/Blaster Recovery Tips
http://www.cert.org/tech_tips/w32_blaster.html
From Microsoft Knowledge Base Article 283673: In Control
Panel, double-click Networking and Internet Connections, and
then click Network Connections.
Right-click the connection on which you would like to enable
ICF, and then click Properties.
On the Advanced tab, click the box to select the option to
Protect my computer or network.
If you want to enable the use of some applications and
services through the firewall, you need to enable them by
clicking the Settings button, and then selecting the
programs, protocols, and services to be enabled for the ICF
configuration.
------------------------------------------------------------
ããã®ãOutput ã§å¯Ÿåæå®ãã®æ¹æ³ã§ããã§ããã°æ¥æ¬èªã§ã
> ãã£ã«ã¿æå®ãããããããã¯åæ§ã« IPSEC ã§ããã£ã«ã¿ãçµããŸã
IPsec ã¯ãé¢ä¿ãªãã¯ãã§ããIPsec ã¯ãçžæã IPsec ã§ãªããš
ã€ãªãããŸããã
|Subject: Re: åæã«ftp.angelfire.comãžã¢ã¯ã»ã¹ããã°ã©ã ã«ã€ããŠ
|From: Yasushi Shinjo <y...@is.tsukuba.ac.jp>
|Date: 04 Jan 2004 14:33:46 GMT
|Message-Id: <YAS.04Ja...@kirk.is.tsukuba.ac.jp>
| ããã®ãOutput ã§å¯Ÿåæå®ãã®æ¹æ³ã§ããã§ããã°æ¥æ¬èªã§ã
ãã¡ãã¯ã以äžã®ããŒãžãåèã«ãªããŸãã§ãããããã
http://www.port139.co.jp/ntsec_rras.htm
http://www.ipa.go.jp/security/fy10/contents/crack/research/windows2k/b.htm
Windows 2000 Professional ã§ã¯ GUI ã«ããæäœã¯å®æœã§ããŸããã
ãã㯠netsh ã«ãã ãã±ãããã£ã«ã¿ã管èœãããã«ãŒãã£ã³ã°ãšãª
ã¢ãŒãã¢ã¯ã»ã¹ã(RRAS)ãµãŒãã¹ã¯ Server ããäžã®çã§ãªããš GUI
ãã€ãã¬ããã§ãã
ä»åã®èŠä»¶ã¯ filtertype ã output ãšããŠãã«ãŒã«ã«åœãŠã¯ãŸããã®
ã ã drop ãããšããããšã§ã
netsh routing ip set filter name="ã€ã³ã¿ãŒãã§ã€ã¹å" filtertype=output action=drop
ãæå®ããããšã«ãªããŸããåå¥ã®ã«ãŒã«ã®æžãæ¹ã«ã€ããŠã¯ã倧ãŸã
ã«ã¯ Linux äžã® ipchains/iptables åæ§ã§ããã(å
šãåããããªã
ã§ããã©ã)
ãã® netsh ã³ãã³ãã«ããèšå®ã®å
šäœåã¯ãäžã«æãã Port139 æ
åšã®èšäºã®ã»ã@IT ã®ç¹éããããŸãã®ã§ããã¡ãããåç
§ãã ããã
ãã®äžã«ã«ãŒã«ã®çµã¿ç«ãŠæ¹ã§ãã£ãããèšå®æ¹æ³ã¯èšèŒãããŠããŸãã
http://www.atmarkit.co.jp/fwin2k/operation/personalsecurity2/personalsecurity1.html
ãŸããWindows 2000 Server äžã§ãRRAS ãçšã㊠GUI ã§ãã£ã«ã¿ãèš
å®ããå Žåã以äžã®ãµããŒãæè¡æ
å ± (KB) ã«èšèŒã®æ¹æ³ãåèã«ãªã
ããšæããŸãã
http://support.microsoft.com/?id=324262
| > ãã£ã«ã¿æå®ãããããããã¯åæ§ã« IPSEC ã§ããã£ã«ã¿ãçµããŸã
| IPsec ã¯ãé¢ä¿ãªãã¯ãã§ããIPsec ã¯ãçžæã IPsec ã§ãªããš
| ã€ãªãããŸããã
Windows 2000 以éã® IPSec ã®å®è£
ããæ±çšã«ããã±ãããã£ã«ã¿ãå®
æœããéã«çšããããšããã®ããã€ã¯ããœãããæå³ãããšããã®ãã
ã§ããRedmond ã®å¹Ÿã€ãã®é¢é£éšçœ²ã®äººéã«ãçŸå°ã§é¢è«ãããã
WebCast ãªã©ã質åã§ããæã«è³ªåããŠãã»ãŒåäžå
«ä¹ããã®ãããªã³
ã¡ã³ããè¿ã£ãŠããã®ã§ããã±ãããã£ã«ã¿ãé¢äžãããšããã§ã¯ã
RRAS ããã IPSec ãšããå§¿å¢ã匷ãã§ãã
ãµããŒãæè¡æ
å ±ã§è¡ããšããã®ãããªããªã·ãæç¢ºã«åæ ããŠããã
ãªã®ã¯ãã®ãžããšãã§ãããããã
IPSec ã䜿çšããŠç¹å®ã®ãããã¯ãŒã¯ ãããã³ã«ãšããŒãããããã¯
ããæ¹æ³
http://support.microsoft.com/?scid=813878
åèãŸã§ãã§ãããWindows 2000 以éã§ã® IPSec ã®åºæ¬æäœæ¹æ³ã¯ã
ãã¡ãã§åŠäœã§ãããããïŒ ALL
[HOWTO] Windows 2000 ã§ IPSec ã® IP ãã£ã«ã¿äžèЧã䜿çšããæ¹æ³
http://support.microsoft.com/default.aspx?id=313190