Chapter 9 ¥Í¥Ã¥È¥ï¡¼¥­¥ó¥°

Ìõ: ͭ¼ ¸÷À² ¡¢ ¹­À¥ ¾»°ì ¡¢ ¤Ë¤·¤« ¡¢ ¤Ï¤é¤À ¤­¤í¤¦ ¡¢ 1998 ǯ 10 ·î 4 Æü

9.1. ¥Ç¥£¥¹¥¯¥ì¥¹¥Ö¡¼¥È (diskless boot) ¤Ë´Ø¤¹¤ë¾ðÊó¤Ï¤É¤³¤ÇÆÀ¤é¤ì¤Þ¤¹¤«?
9.2. FreeBSD ¤ò¥Í¥Ã¥È¥ï¡¼¥¯¤Î¥ë¡¼¥¿ (router) ¤È¤·¤Æ»ÈÍѤ¹¤ë¤³¤È¤Ï¤Ç¤­¤Þ¤¹¤«?
9.3. Win95 ¤ÎÁö¤Ã¤Æ¤¤¤ë¥Þ¥·¥ó¤ò¡¢FreeBSD ·Ðͳ¤Ç¥¤¥ó¥¿¡¼¥Í¥Ã¥È¤ËÀܳ¤Ç¤­¤Þ¤¹¤«?
9.4. ISC ¤«¤é¥ê¥ê¡¼¥¹¤µ¤ì¤Æ¤¤¤ë BIND ¤ÎºÇ¿·ÈǤϥ³¥ó¥Ñ¥¤¥ë¤Ç¤­¤Ê¤¤¤ó¤Ç¤·¤ç¤¦¤«?
9.5. FreeBSD ¤Ç SLIP ¤È PPP ¤Ï»È¤¨¤Þ¤¹¤«?
9.6. FreeBSD ¤Ï NAT ¤« IP ¥Þ¥¹¥«¥ì¡¼¥É¤ò¥µ¥Ý¡¼¥È¤·¤Æ¤¤¤Þ¤¹¤«?
9.7. /dev/ed0 ¥Ç¥Ð¥¤¥¹¤òºîÀ®¤¹¤ë¤³¤È¤¬¤Ç¤­¤Þ¤»¤ó¡£
9.8. Ethernet ¥¢¥É¥ì¥¹¤Î¥¨¥¤¥ê¥¢¥¹ (alias) ¤Ï¤É¤Î¤è¤¦¤Ë¤·¤ÆÀßÄê¤Ç¤­¤Þ¤¹¤«?
9.9. 3C503 ¤Ç¾¤Î¥Í¥Ã¥È¥ï¡¼¥¯¥Ý¡¼¥È¤ò»ÈÍѤ¹¤ë¤Ë¤Ï¤É¤Î¤è¤¦¤Ë¤¹¤ì¤Ð¤è¤¤¤Ç¤¹¤«?
9.10. FreeBSD ¤È¤Î´Ö¤Ç NFS ¤¬¤¦¤Þ¤¯¤Ç¤­¤Þ¤»¤ó¡£
9.11. ²¿¸Î Linux ¤Î¥Ç¥£¥¹¥¯¤ò NFS ¥Þ¥¦¥ó¥È¤Ç¤­¤Ê¤¤¤Î¤Ç¤·¤ç¤¦¤«?
9.12. ²¿¸Î Sun ¤Î¥Ç¥£¥¹¥¯¤ò NFS ¥Þ¥¦¥ó¥È¤Ç¤­¤Ê¤¤¤Î¤Ç¤·¤ç¤¦¤«?
9.13. mountd ¤«¤é can't change attributes ¤È¤¤¤¦¥á¥Ã¥»¡¼¥¸¤¬¤º¤Ã¤È½Ð³¤±¤Æ¤¤¤Æ¡¢ FreeBSD ¤Î NFS ¥µ¡¼¥Ð¤Ç¤Ï bad exports list ¤Èɽ¼¨¤µ¤ì¤Þ¤¹¡£¤³¤ì¤Ï²¿¤¬¸¶°ø¤Ê¤Î¤Ç¤·¤ç¤¦?
9.14. PPP ¤Ç NeXTStep ¤ËÀܳ¤¹¤ëºÝ¤ËÌäÂ꤬¤¢¤ë¤Î¤Ç¤¹¤¬¡£
9.15. IP ¥Þ¥ë¥Á¥­¥ã¥¹¥È (multicast) ¤òÍ­¸ú¤Ë¤¹¤ë¤Ë¤Ï?
9.16. DEC ¤Î PCI ¥Á¥Ã¥×¥»¥Ã¥È¤òÍѤ¤¤Æ¤¤¤ë¥Í¥Ã¥È¥ï¡¼¥¯¥«¡¼¥É¤Ë¤Ï¡¢ ¤É¤Î¤è¤¦¤Êʪ¤¬¤¢¤ê¤Þ¤¹¤«?
9.17. ²¿¸Î¼«Ê¬¤Î¥µ¥¤¥È¤Î¥Û¥¹¥È¤ËÂФ·¤Æ FQDN ¤ò»ÈÍѤ¹¤ëɬÍפ¬¤¢¤ë¤Î¤Ç¤¹¤«?
9.18. ¤¹¤Ù¤Æ¤Î¥Í¥Ã¥È¥ï¡¼¥¯¤ÎÁàºî¤ËÂФ·¤Æ Permission denied ¤È¤¤¤¦¥á¥Ã¥»¡¼¥¸¤¬É½¼¨¤µ¤ì¤ë¤Î¤Ç¤¹¤¬¡£
9.19. IPFW ¤Î¥ª¡¼¥Ð¥Ø¥Ã¥É¤Ï¤É¤Î¤¯¤é¤¤¤Ç¤·¤ç¤¦¤«?
9.20. ipfw(8) fwd ¥ë¡¼¥ë¤ò»È¤Ã¤ÆÂ¾¤Î¥Þ¥·¥ó¤Ë¥µ¡¼¥Ó¥¹¤ò¥ê¥À¥¤¥ì¥¯¥È¤·¤¿¤Î¤Ç¤¹¤¬¡¢ ¤¦¤Þ¤¯Æ°¤¤¤Æ¤¯¤ì¤Ê¤¤¤è¤¦¤Ç¤¹¡£¤É¤¦¤·¤Æ¤Ê¤ó¤Ç¤·¤ç¤¦?
9.21. ¥µ¡¼¥Ó¥¹Í×µá¤ò¾¤Î¥Þ¥·¥ó¤Ë¥ê¥À¥¤¥ì¥¯¥È¤¹¤ë¤Ë¤Ï?
9.22. ¥Ð¥ó¥ÉÉý¤Î´ÉÍý¤ò¹Ô¤Ê¤¨¤ë¥Ä¡¼¥ë¤Ï¤É¤³¤Ç¼ê¤ËÆþ¤ì¤é¤ì¤Þ¤¹¤«?
9.23. BIND (named) ¤¬¡¢53 È֥ݡ¼¥È¤Î¤Û¤«¤Ë Â礭¤ÊÈÖ¹æ¤Î¥Ý¡¼¥È¤Ç¼õ¤±ÉÕ¤±¤Æ¤¤¤Þ¤¹¡£»ä¤Î¥Û¥¹¥È¤Ï ¾è¤Ã¼è¤é¤ì¤¿¤Î¤Ç¤·¤ç¤¦¤«¡£
9.24. ¤Ê¤¼ /dev/bpf0: device not configured ¤¬½Ð¤ë¤Î¤Ç¤·¤ç¤¦¤«?
9.25. Linux ¤Î smbmount ¤Î¤è¤¦¤Ë¡¢ ¥Í¥Ã¥È¥ï¡¼¥¯¾å¤Î Windows ¥Þ¥·¥ó¤Î¥Ç¥£¥¹¥¯¤ò¥Þ¥¦¥ó¥È¤¹¤ë¤Ë¤Ï¤É¤¦¤·¤¿¤éÎɤ¤¤Î¤Ç¤·¤ç¤¦?
9.26. icmp-response bandwidth limit 300/200 pps ¤È¤¤¤¦¥á¥Ã¥»¡¼¥¸¤¬¥í¥°¥Õ¥¡¥¤¥ë¤Ë¸½¤ì¤ë¤Î¤Ç¤¹¤¬¡¢ ¤É¤¦¤¤¤¦¤³¤È¤Ç¤·¤ç¤¦?

9.1. ¥Ç¥£¥¹¥¯¥ì¥¹¥Ö¡¼¥È (diskless boot) ¤Ë´Ø¤¹¤ë¾ðÊó¤Ï¤É¤³¤ÇÆÀ¤é¤ì¤Þ¤¹¤«?

¥Ç¥£¥¹¥¯¥ì¥¹¥Ö¡¼¥È (diskless boot) ¤È¤¤¤¦¤Î¤Ï¡¢FreeBSD ¤¬¥Í¥Ã¥È¥ï¡¼¥¯¾å¤Çµ¯Æ°¤·¡¢ ɬÍפʥե¡¥¤¥ë¤ò¼«Ê¬¤Î¥Ï¡¼¥É¥Ç¥£¥¹¥¯¤Ç¤Ï¤Ê¤¯¤Æ¥µ¡¼¥Ð¤«¤éÆÉ¤ß¹þ¤à¤â¤Î¤Ç¤¹¡£ ¾ÜºÙ¤Ë¤Ä¤¤¤Æ¤Ï FreeBSD ¥Ï¥ó¥É¥Ö¥Ã¥¯¤Î¡Ö¥Ç¥£¥¹¥¯¥ì¥¹¥Ö¡¼¥È¡×¤òÆÉ¤ó¤Ç¤¯¤À¤µ¤¤¡£

9.2. FreeBSD ¤ò¥Í¥Ã¥È¥ï¡¼¥¯¤Î¥ë¡¼¥¿ (router) ¤È¤·¤Æ»ÈÍѤ¹¤ë¤³¤È¤Ï¤Ç¤­¤Þ¤¹¤«?

¥¤¥ó¥¿¡¼¥Í¥Ã¥Èɸ½à¤ä¤³¤ì¤Þ¤Ç¤Î¤è¤¤·Ð¸³¤Ë¤è¤Ã¤Æ»ØÅ¦¤µ¤ì¤Æ¤¤¤ëÄ̤ꡢ FreeBSD ¤Ïɸ½à¤Ç¤Ï¥Ñ¥±¥Ã¥È¤òžÁ÷ (forward) ¤¹¤ë¤è¤¦¤ËÀßÄꤵ¤ì¤Æ¤¤¤Þ¤»¤ó¡£ ¤·¤«¤·¡¢ rc.conf(5) ¤ÎÃæ¤Ç¼¡¤ÎÊÑ¿ô¤ÎÃͤò YES ¤È¤¹¤ë»ö¤Ë¤è¤Ã¤Æ¤³¤Îµ¡Ç½¤òÍ­¸ú¤Ë¤¹¤ë¤³¤È¤¬¤Ç¤­¤Þ¤¹¡£

gateway_enable=YES          # Set to YES if this host will be a gateway

¤³¤Î¥ª¥×¥·¥ç¥ó¤Ë¤è¤Ã¤Æ sysctl(8) ¤ÎÊÑ¿ô net.inet.ip.forwarding ¤¬ 1 ¤Ë¤Ê¤ê¤Þ¤¹¡£

¤Û¤È¤ó¤É¤Î¾ì¹ç¡¢ ¥ë¡¼¥¿¤Ë¤Ä¤¤¤Æ¤Î¾ðÊó¤òƱ¤¸¥Í¥Ã¥È¥ï¡¼¥¯¤Î¾¤Î·×»»µ¡Åù¤ËÃΤ餻¤ë¤¿¤á¤Ë¡¢ ·ÐÏ©À©¸æ¤Î¤¿¤á¤Î¥×¥í¥»¥¹¤òÁö¤é¤»¤ëɬÍפ¬¤¢¤ë¤Ç¤·¤ç¤¦¡£ FreeBSD ¤Ë¤Ï BSD ¤Îɸ½à·ÐÏ©À©¸æ¥Ç¡¼¥â¥ó¤Ç¤¢¤ë routed(8) ¤¬ÉÕ°¤·¤Æ¤¤¤Þ¤¹¤¬¡¢¤è¤êÊ£»¨¤Ê¾õ¶·¤ËÂн褹¤ë¤¿¤á¤Ë¤Ï GaTeD(http://www.gated.org/ ¤«¤éÆþ¼ê²Äǽ) ¤ò»ÈÍѤ¹¤ë¤³¤È¤â¤Ç¤­¤Þ¤¹¡£ 3_5Alpha7 ¤Ë¤ª¤¤¤Æ FreeBSD ¤¬¥µ¥Ý¡¼¥È¤µ¤ì¤Æ¤¤¤Þ¤¹¡£

Ãí°Õ¤·¤Æ¤Û¤·¤¤¤Î¤Ï¡¢FreeBSD ¤ò¤³¤Î¤è¤¦¤Ë¤·¤Æ»ÈÍѤ·¤Æ¤¤¤ë¾ì¹ç¤Ç¤â¡¢ ¥ë¡¼¥¿¤Ë´Ø¤¹¤ë¥¤¥ó¥¿¡¼¥Í¥Ã¥Èɸ½à¤ÎɬÍ×¾ò·ï¤ò´°Á´¤Ë¤ÏËþ¤¿¤·¤Æ¤¤¤Ê¤¤ ¤È¤¤¤¦¤³¤È¤Ç¤¹¡£¤·¤«¤·¡¢ÉáÄ̤˻ÈÍѤ¹¤ë¾ì¹ç¤Ë¤Ï¤Û¤È¤ó¤ÉÌäÂꤢ¤ê¤Þ¤»¤ó¡£

9.3. Win95 ¤ÎÁö¤Ã¤Æ¤¤¤ë¥Þ¥·¥ó¤ò¡¢FreeBSD ·Ðͳ¤Ç¥¤¥ó¥¿¡¼¥Í¥Ã¥È¤ËÀܳ¤Ç¤­¤Þ¤¹¤«?

Ä̾¤³¤Î¼ÁÌ䤬½Ð¤Æ¤¯¤ë¾õ¶·¤Ï¼«Âð¤ËÆóÂæ¤Î PC ¤¬¤¢¤ê¡¢°ìÂæ¤Ç¤Ï FreeBSD ¤¬¡¢¤â¤¦°ìÂæ¤Ç¤Ï Win95 ¤¬Áö¤Ã¤Æ¤¤¤ë¤è¤¦¤Ê¾ì¹ç¤Ç¤¹¡£ ¤³¤³¤Ç¤ä¤í¤¦¤È¤·¤Æ¤¤¤¦»ö¤Ï FreeBSD ¤ÎÁö¤Ã¤Æ¤¤¤ë·×»»µ¡¤ò¥¤¥ó¥¿¡¼¥Í¥Ã¥È ¤ËÀܳ¤·¡¢Win95 ¤ÎÁö¤Ã¤Æ¤¤¤ë¥Þ¥·¥ó¤«¤é¤Ï FreeBSD ¤ÎÁö¤Ã¤Æ¤¤¤ë¥Þ¥·¥ó¤ò·Ðͳ¤·¤ÆÀܳ¤ò¹Ô¤Ê¤¦»ö¤Ç¤¹¡£ ¤³¤ì¤ÏÆó¤ÄÁ°¤Î¼ÁÌä¤ÎÆÃÊ̤ʾì¹ç¤ËÁêÅö¤·¤Þ¤¹¡£

¡Ä¤Ç¡¢Åú¤¨¤Ï¡Ö¤Ï¤¤¡×¤Ç¤¹¡£ FreeBSD 3.x ¤Î¥æ¡¼¥¶¥â¡¼¥É ppp ¤Ë¤Ï -nat ¥ª¥×¥·¥ç¥ó¤¬¤¢¤ê¤Þ¤¹¡£ ppp ¤ò -nat ¥ª¥×¥·¥ç¥óÉÕ¤­¤Çµ¯Æ°¤·¡¢ /etc/rc.conf ¤Ë¤¢¤ë gateway_enable ¤ò YES ¤ËÀßÄꤷ¤Þ¤¹¡£ ¤½¤·¤Æ Windows ¥Þ¥·¥ó¤òÀµ¤·¤¯ÀßÄꤹ¤ì¤Ð¡¢ ¤­¤Á¤ó¤Èưºî¤¹¤ë¤Ç¤·¤ç¤¦¡£

ÀßÄê¤Ë´Ø¤¹¤ë¤µ¤é¤Ë¾Ü¤·¤¤¾ðÊó¤Ï¡¢ Steve Sims »á¤Ë¤è¤ë Pedantic PPP Primer ¤Ë¤¢¤ê¤Þ¤¹¡£

¥«¡¼¥Í¥ë¥â¡¼¥É ppp ¤òÍøÍѤ¹¤ë¾ì¹ç¤ä¡¢ ¥¤¥ó¥¿¡¼¥Í¥Ã¥È¤È¤Î¥¤¡¼¥µ¥Í¥Ã¥ÈÀܳ¤¬ÍøÍѤǤ­¤ë¾ì¹ç¤Ï¡¢ natd ¤òÍøÍѤ¹¤ëɬÍפ¬¤¢¤ê¤Þ¤¹¡£ ¤³¤Î FAQ ¤Î natd ¤Î¥»¥¯¥·¥ç¥ó¤ò»²¾È¤·¤Æ¤¯¤À¤µ¤¤¡£

9.4. ISC ¤«¤é¥ê¥ê¡¼¥¹¤µ¤ì¤Æ¤¤¤ë BIND ¤ÎºÇ¿·ÈǤϥ³¥ó¥Ñ¥¤¥ë¤Ç¤­¤Ê¤¤¤ó¤Ç¤·¤ç¤¦¤«?

BIND ¤ÎÇÛÉÛʪ¤È FreeBSD ¤È¤Ç¤Ï cdefs.h ¤È¤¤¤¦¥Õ¥¡¥¤¥ë¤ÎÃæ¤Ç¥Ç¡¼¥¿·¿¤ÎÌ·½â¤¬¤¢¤ê¤Þ¤¹¡£ compat/include/sys/cdefs.h ¤òºï½ü¤·¤Æ¤¯¤À¤µ¤¤¡£

9.5. FreeBSD ¤Ç SLIP ¤È PPP ¤Ï»È¤¨¤Þ¤¹¤«?

»È¤¨¤Þ¤¹¡£FreeBSD ¤òÍѤ¤¤ÆÂ¾¤Î¥µ¥¤¥È¤ËÀܳ¤¹¤ë¾ì¹ç¤Ë¤Ï¡¢ slattach(8)¡¢sliplogin(8)¡¢ppp(8) ¤½¤·¤Æ pppd(8) ¤Î¥Þ¥Ë¥å¥¢¥ë¥Ú¡¼¥¸¤ò¤´Í÷¤¯¤À¤µ¤¤¡£ ppp(8) ¤È pppd(8) ¤Ï¡¢ PPP ¤Î¥µ¡¼¥Ð¡¢¥¯¥é¥¤¥¢¥ó¥ÈξÊý¤Îµ¡Ç½¤ò»ý¤Ã¤Æ¤¤¤Þ¤¹¡£ ¤½¤Î°ìÊý¤Ç¡¢sliplogin(8) ¤Ï SLIP ¤Î¥µ¡¼¥ÐÀìÍѤǡ¢ slattach(8) ¤Ï SLIP ¤Î¥¯¥é¥¤¥¢¥ó¥ÈÀìÍѤǤ¹¡£

¤³¤ì¤é¤ò»È¤¦¤¿¤á¤Î¤µ¤é¤Ê¤ë¾ðÊó¤Ë¤Ä¤¤¤Æ¤Ï¡¢¥Ï¥ó¥É¥Ö¥Ã¥¯¤Î PPP ¤È SLIP ¤Î¾Ï¤ò¤´Í÷¤¯¤À¤µ¤¤¡£

¡Ö¥·¥§¥ë¥¢¥«¥¦¥ó¥È¡×¤òÄ̤¸¤Æ¤Î¤ß¥¤¥ó¥¿¡¼¥Í¥Ã¥È¤Ø¥¢¥¯¥»¥¹²Äǽ¤Ê¾ì¹ç¡¢ slirp package ¤ß¤¿¤¤¤Ê¤â¤Î¤¬Íߤ·¤¯¤Ê¤ë¤«¤â¤·¤ì¤Þ¤»¤ó¤Í¡£ ¤³¤ì¤ò»È¤¨¤Ð¡¢¥í¡¼¥«¥ë¥Þ¥·¥ó¤«¤éľÀÜ ftp ¤ä http ¤Î¤è¤¦¤Ê¥µ¡¼¥Ó¥¹¤Ë (¸ÂÄêŪ¤Ç¤Ï¤¢¤ê¤Þ¤¹¤¬) ¥¢¥¯¥»¥¹¤¹¤ë¤³¤È¤¬¤Ç¤­¤Þ¤¹¡£

9.6. FreeBSD ¤Ï NAT ¤« IP ¥Þ¥¹¥«¥ì¡¼¥É¤ò¥µ¥Ý¡¼¥È¤·¤Æ¤¤¤Þ¤¹¤«?

¥í¡¼¥«¥ë¤Ê¥µ¥Ö¥Í¥Ã¥È (°ìÂæ°Ê¾å¤Î¥í¡¼¥«¥ë¥Þ¥·¥ó) ¤ò»ý¤Ã¤Æ¤¤¤ë¤¬¡¢ ¥¤¥ó¥¿¡¼¥Í¥Ã¥È¥×¥í¥Ð¥¤¥À¤«¤é 1 ¤Ä¤·¤« IP ¥¢¥É¥ì¥¹¤Î³ä¤êÅö¤Æ¤ò¼õ¤±¤Æ¤¤¤Ê¤¤¾ì¹ç (¤Þ¤¿¤Ï IP ¥¢¥É¥ì¥¹¤òưŪ¤Ë³ä¤êÅö¤Æ¤é¤ì¤Æ¤¤¤ë¾ì¹ç¤Ç¤â)¡¢ natd(8) ¥×¥í¥°¥é¥à¤ò»È¤¤¤¿¤¯¤Ê¤ë¤«¤â¤·¤ì¤Þ¤»¤ó¤Í¡£ natd ¤ò»È¤¨¤Ð¡¢ 1 ¤Ä¤·¤« IP ¥¢¥É¥ì¥¹¤ò»ý¤Ã¤Æ¤¤¤Ê¤¤¾ì¹ç¤Ç¤â¡¢ ¥µ¥Ö¥Í¥Ã¥ÈÁ´ÂΤò¥¤¥ó¥¿¡¼¥Í¥Ã¥È¤ËÀܳ¤µ¤»¤ë¤³¤È¤¬¤Ç¤­¤Þ¤¹¡£

ppp(8) ¤âƱÍͤε¡Ç½¤ò»ý¤Ã¤Æ¤ª¤ê¡¢-nat ¥¹¥¤¥Ã¥Á¤ÇÍ­¸ú¤Ë¤¹¤ë¤³¤È¤¬¤Ç¤­¤Þ¤¹¡£ ¤É¤Á¤é¤Î¾ì¹ç¤â alias ¥é¥¤¥Ö¥é¥ê (libalias(3)) ¤¬»È¤ï¤ì¤Þ¤¹¡£

9.7. /dev/ed0 ¥Ç¥Ð¥¤¥¹¤òºîÀ®¤¹¤ë¤³¤È¤¬¤Ç¤­¤Þ¤»¤ó¡£

Berkeley UNIX ¤Ë¤ª¤±¤ë¥Í¥Ã¥È¥ï¡¼¥¯¤Î¹½À®¤Ë¤ª¤¤¤Æ¡¢ ¥Í¥Ã¥È¥ï¡¼¥¯¤Î¥¤¥ó¥¿¥Õ¥§¡¼¥¹¤Ï¥«¡¼¥Í¥ë¥³¡¼¥É¤«¤é¤Î¤ß¡¢ ľÀܤ¢¤Ä¤«¤¦¤³¤È¤¬¤Ç¤­¤Þ¤¹¡£ ¤è¤ê¾Ü¤·¤¯ÃΤꤿ¤¤¾ì¹ç¤Ï¡¢ /etc/rc.network ¤È¤¤¤¦¥Õ¥¡¥¤¥ë¤ä¡¢ ¤³¤Î¥Õ¥¡¥¤¥ë¤ÎÃæ¤Ë½ñ¤¤¤Æ¤¢¤ë¡¢ ¤µ¤Þ¤¶¤Þ¤Ê¥×¥í¥°¥é¥à¤Ë¤Ä¤¤¤Æ¤Î¥Þ¥Ë¥å¥¢¥ë¥Ú¡¼¥¸¤ò¸«¤Æ¤¯¤À¤µ¤¤¡£ ¤½¤ì¤Ç¤â¤Þ¤Àʬ¤«¤é¤Ê¤¤¾ì¹ç¤Ë¤Ï¡¢ ¾¤Î BSD ·Ï¤Î OS ¤Î¥Í¥Ã¥È¥ï¡¼¥¯´ÉÍý¤Ë¤Ä¤¤¤Æ¤ÎËܤòÆÉ¤à¤Ù¤­¤Ç¤·¤ç¤¦¡£ ¤´¤¯¾¯¤·¤ÎÎã³°¤ò¤Î¤¾¤¤¤Æ¤Ï¡¢FreeBSD ¤Î¥Í¥Ã¥È¥ï¡¼¥¯´ÉÍý¤Ï SunOS 4.0 ¤ä Ultrix ¤È´ðËÜŪ¤ËƱ¤¸¤Ç¤¹¡£

9.8. Ethernet ¥¢¥É¥ì¥¹¤Î¥¨¥¤¥ê¥¢¥¹ (alias) ¤Ï¤É¤Î¤è¤¦¤Ë¤·¤ÆÀßÄê¤Ç¤­¤Þ¤¹¤«?

ifconfig(8) ¤Î¥³¥Þ¥ó¥É¥é¥¤¥ó¤Ë netmask 0xffffffff ¤òÄɲ䷤ơ¢¼¡¤Î¤è¤¦¤Ë½ñ¤¤¤Æ¤¯¤À¤µ¤¤¡£

# ifconfig ed0 alias 204.141.95.2 netmask 0xffffffff

9.9. 3C503 ¤Ç¾¤Î¥Í¥Ã¥È¥ï¡¼¥¯¥Ý¡¼¥È¤ò»ÈÍѤ¹¤ë¤Ë¤Ï¤É¤Î¤è¤¦¤Ë¤¹¤ì¤Ð¤è¤¤¤Ç¤¹¤«?

¾¤Î¥Ý¡¼¥È¤ò»ÈÍѤ·¤¿¤¤¾ì¹ç¤Ë¤Ï¡¢ ifconfig(8) ¤Î¥³¥Þ¥ó¥É¥é¥¤¥ó¤Ë¥Ñ¥é¥á¡¼¥¿¤òÄɲ䷤ʤ±¤ì¤Ð¤Ê¤ê¤Þ¤»¤ó¡£ ¥Ç¥Õ¥©¥ë¥È¤Ç¤Ï link0 ¤¬ÍѤ¤¤é¤ì¤ë¤è¤¦¤Ë¤Ê¤Ã¤Æ¤¤¤Þ¤¹¡£ BNC ¤Î¤«¤ï¤ê¤Ë AUI ¥Ý¡¼¥È¤ò»ÈÍѤ·¤¿¤¤¾ì¹ç¤Ë¤Ï¡¢ link2 ¤È¤¤¤¦¥Ñ¥é¥á¡¼¥¿¤òÄɲ䷤Ƥ¯¤À¤µ¤¤¡£ ¤³¤ì¤é¤Î¥Õ¥é¥°¤Ï¡¢ /etc/rc.conf (rc.conf(5) »²¾È) ¤Ë¤¢¤ë ifconfig_* ¤ÎÊÑ¿ô¤ò»È¤Ã¤Æ»ØÄꤵ¤ì¤ë¤Ï¤º¤Ç¤¹¡£

9.10. FreeBSD ¤È¤Î´Ö¤Ç NFS ¤¬¤¦¤Þ¤¯¤Ç¤­¤Þ¤»¤ó¡£

PC ÍѤΥͥåȥ¥¯¥«¡¼¥É¤Ë¤è¤Ã¤Æ¤Ï¡¢ NFS ¤Î¤è¤¦¤Ê¡¢ ¥Í¥Ã¥È¥ï¡¼¥¯¤ò¹ó»È¤¹¤ë¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤Ë¤ª¤¤¤ÆÌäÂê¤òµ¯¤³¤¹¤â¤Î¤¬¤¢¤ê¤Þ¤¹¡£

¤³¤ÎÅÀ¤Ë´Ø¤·¤Æ¤Ï FreeBSD ¥Ï¥ó¥É¥Ö¥Ã¥¯¤Î¡ÖNFS¡×¤ò»²¾È¤·¤Æ¤¯¤À¤µ¤¤¡£

9.11. ²¿¸Î Linux ¤Î¥Ç¥£¥¹¥¯¤ò NFS ¥Þ¥¦¥ó¥È¤Ç¤­¤Ê¤¤¤Î¤Ç¤·¤ç¤¦¤«?

Linux ¤Î NFS ¤Î¥³¡¼¥É¤Ë¤Ï¡¢ µö²Ä¤µ¤ì¤¿¥Ý¡¼¥È¤«¤é¤Î¥ê¥¯¥¨¥¹¥È¤·¤«¼õ¤±¤Ä¤±¤Ê¤¤¤â¤Î¤¬¤¢¤ê¤Þ¤¹¡£ °Ê²¼¤ò»î¤·¤Æ¤ß¤Æ¤¯¤À¤µ¤¤¡£

# mount -o -P linuxbox:/blah /mnt

9.12. ²¿¸Î Sun ¤Î¥Ç¥£¥¹¥¯¤ò NFS ¥Þ¥¦¥ó¥È¤Ç¤­¤Ê¤¤¤Î¤Ç¤·¤ç¤¦¤«?

SunOS 4.X ¤¬Áö¤Ã¤Æ¤¤¤ë Sun Workstation ¤Ï¡¢ µö²Ä¤µ¤ì¤¿¥Ý¡¼¥È¤«¤é¤Î¥Þ¥¦¥ó¥ÈÍ׵ᤷ¤«¼õ¤±¤Ä¤±¤Þ¤»¤ó¡£ °Ê²¼¤ò»î¤·¤Æ¤ß¤Æ¤¯¤À¤µ¤¤¡£

# mount -o -P sunbox:/blah /mnt

9.13. mountd ¤«¤é can't change attributes ¤È¤¤¤¦¥á¥Ã¥»¡¼¥¸¤¬¤º¤Ã¤È½Ð³¤±¤Æ¤¤¤Æ¡¢ FreeBSD ¤Î NFS ¥µ¡¼¥Ð¤Ç¤Ï bad exports list ¤Èɽ¼¨¤µ¤ì¤Þ¤¹¡£¤³¤ì¤Ï²¿¤¬¸¶°ø¤Ê¤Î¤Ç¤·¤ç¤¦?

ºÇ¤âÎɤ¯¤¢¤ëÌäÂê¤Ï¡¢exports(5) ¤Î¥Þ¥Ë¥å¥¢¥ë¥Ú¡¼¥¸¤Î°Ê²¼¤ÎÉôʬ¤òÀµ¤·¤¯Íý²ò¤·¤Æ¤¤¤Ê¤¤¤³¤È¤Ç¤¹¡£

¤³¤Î¥Õ¥¡¥¤¥ë¤Î³Æ¹Ô (# ¤Ç¤Ï¤¸¤Þ¤ë¥³¥á¥ó¥È¹Ô¤ò½ü¤¯) ¤Ï¡¢ NFS ¥µ¡¼¥Ð¤Î¥í¡¼¥«¥ë¥Õ¥¡¥¤¥ë¥·¥¹¥Æ¥à¤Ë¸ºß¤¹¤ë¡¢ ¾¤Î¥Û¥¹¥È¤Ë¥¨¥¯¥¹¥Ý¡¼¥È¤µ¤ì¤ë¥Þ¥¦¥ó¥È¥Ý¥¤¥ó¥È (Ê£¿ô²Ä) ¤È¡¢ ¤½¤ì¤ËÂФ¹¤ë¥¨¥¯¥¹¥Ý¡¼¥È¥Õ¥é¥°¤ò»ØÄꤷ¤Þ¤¹¡£ ÆÃÄê¤Î¥¨¥¯¥¹¥Ý¡¼¥ÈÀè¥Û¥¹¥È¤ª¤è¤Ó¡¢ ¤¹¤Ù¤Æ¤Î¥Û¥¹¥È¤ËŬÍѤµ¤ì¤ë¥Ç¥Õ¥©¥ë¥È¥¨¥ó¥È¥ê¤ÏξÊý¤È¤â¡¢ ¥µ¡¼¥Ð¤Î³Æ¥í¡¼¥«¥ë¥Õ¥¡¥¤¥ë¥·¥¹¥Æ¥à¤ËÂФ·¤Æ°ì²ó¤À¤±¤·¤«»ØÄê¤Ç¤­¤Þ¤»¤ó¡£

¤µ¤Æ¡¢¤¢¤ê¤¬¤Á¤Ê´Ö°ã¤¤¤ò¤´Í÷¤Ë¤Ê¤ì¤Ð¤Ï¤Ã¤­¤ê¤¹¤ë¤Ç¤·¤ç¤¦¡£ ¤â¤· /usr °Ê²¼¤¬Ã±°ì¤Î¥Õ¥¡¥¤¥ë¥·¥¹¥Æ¥à¤Ç¤¢¤ë (¤Ä¤Þ¤ê /usr ¤Ë²¿¤â¥Þ¥¦¥ó¥È¤µ¤ì¤Ê¤¤) ¾ì¹ç¡¢ ¼¡¤Î exports ¥ê¥¹¥È¤ÏÀµ¤·¤¯¤¢¤ê¤Þ¤»¤ó¡£

/usr/src   client
/usr/ports client

°ì¤Ä¤Î¥Õ¥¡¥¤¥ë¥·¥¹¥Æ¥à¤ËÂФ·¤ÆÂ°À­¤Î»ØÄ꤬Æó¹Ô¤Ë¤Ê¤Ã¤Æ¤¤¤Þ¤¹¡£ /usr ¤ÏƱ¤¸¥Û¥¹¥È client ¤Ë¥¨¥¯¥¹¥Ý¡¼¥È¤µ¤ì¤Þ¤¹¤«¤é¡¢ Àµ¤·¤¤½ñ¤­Êý¤Ï¼¡¤Î¤è¤¦¤Ë¤Ê¤ê¤Þ¤¹¡£

/usr/src /usr/ports  client

¤â¤¦°ìÅ٥ޥ˥奢¥ë¥Ú¡¼¥¸¤Îʸ¾Ï¤ò³Îǧ¤¹¤ë¤È¡¢ ¤¢¤ë¥Û¥¹¥È¤Ë¥¨¥¯¥¹¥Ý¡¼¥È¤µ¤ì¤ë³Æ¥Õ¥¡¥¤¥ë¥·¥¹¥Æ¥à¤Î°À­¤Ï ¤¹¤Ù¤Æ°ì¹Ô¤Ë½ñ¤«¤ì¤Æ¤¤¤Ê¤±¤ì¤Ð¤Ê¤é¤Ê¤¤¡¢¤È¤Ê¤Ã¤Æ¤¤¤Þ¤¹ (¤³¤³¤Ç¤Ï¡¢¡Ö¥¢¥¯¥»¥¹²Äǽ¤Ê¤¹¤Ù¤Æ¤Î¥Û¥¹¥È¡× ¤â°ì¤Ä¤ÎÆÈΩ¤·¤¿¥Û¥¹¥È¤È¤·¤Æ°·¤ï¤ì¤ë¤³¤È¤ËÃí°Õ¤·¤Æ¤¯¤À¤µ¤¤)¡£ ¤³¤Î¤³¤È¤Ï¡¢¥Õ¥¡¥¤¥ë¥·¥¹¥Æ¥à¤ò¥¨¥¯¥¹¥Ý¡¼¥È¤¹¤ë¤¿¤á¤Ë ´ñ̯¤Ê½ñ¼°¤ò»È¤ï¤Ê¤±¤ì¤Ð¤Ê¤é¤Ê¤¤¸¶°ø¤Ë¤â¤Ê¤Ã¤Æ¤¤¤ë¤Î¤Ç¤¹¤¬¡¢ ¤Û¤È¤ó¤É¤Î¿Í¤Ë¤È¤Ã¤Æ¡¢¤³¤ì¤ÏÌäÂê¤Ë¤Ï¤Ê¤é¤Ê¤¤¤Ç¤·¤ç¤¦¡£

¼¡¤Ë¼¨¤¹¤Î¤Ï¡¢Í­¸ú¤Ê exports ¥ê¥¹¥È¤ÎÎã¤Ç¤¹¡£ ¤³¤³¤Ç¤Ï¡¢/usr ¤È /exports ¤¬¥í¡¼¥«¥ë¥Õ¥¡¥¤¥ë¥·¥¹¥Æ¥à¤Ç¤¹¡£

# Export src and ports to client01 and client02, but only
# client01 has root privileges on it
/usr/src /usr/ports -maproot=0    client01
/usr/src /usr/ports               client02
# The "client" machines have root and can mount anywhere
# up /exports. The world can mount /exports/obj read-only
/exports -alldirs -maproot=0      client01 client02
/exports/obj -ro

9.14. PPP ¤Ç NeXTStep ¤ËÀܳ¤¹¤ëºÝ¤ËÌäÂ꤬¤¢¤ë¤Î¤Ç¤¹¤¬¡£

/etc/rc.conf (rc.conf(5) »²¾È) ¤ÎÃæ¤Ç¼¡¤ÎÊÑ¿ô¤ò NO ¤Ë¤·¤Æ¡¢ TCP extension ¤ò̵¸ú¤Ë¤·¤Æ¤ß¤Æ¤¯¤À¤µ¤¤¡£

tcp_extensions=NO

Xylogic ¤Î Annex ¤âƱÍͤÎÌäÂ꤬¤¢¤ê¤Þ¤¹¤Î¤Ç¡¢ Annex ·Ðͳ¤Ç PPP ¤ò¹Ô¤Ê¤¦¾ì¹ç¤Ë¤â¤³¤ÎÊѹ¹¤ò¹Ô¤Ã¤Æ¤¯¤À¤µ¤¤¡£

9.15. IP ¥Þ¥ë¥Á¥­¥ã¥¹¥È (multicast) ¤òÍ­¸ú¤Ë¤¹¤ë¤Ë¤Ï?

FreeBSD 2.0 ¤«¤½¤ì°Ê¹ß¤Ç¤Ï¡¢ ɸ½à¤Î¾õÂ֤Ǵ°Á´¤Ë¥Þ¥ë¥Á¥­¥ã¥¹¥È¤ËÂбþ¤·¤Æ¤¤¤Þ¤¹¡£ ¸½ºß»ÈÍѤ·¤Æ¤¤¤ë·×»»µ¡¤ò¥Þ¥ë¥Á¥­¥ã¥¹¥È¤Î¥ë¡¼¥¿ (router) ¤È¤·¤Æ»ÈÍѤ¹¤ë¤Ë¤Ï¡¢ MROUTING ¤È¤¤¤¦¥ª¥×¥·¥ç¥ó¤òÄêµÁ¤·¤¿¥«¡¼¥Í¥ë¤òºî¤Ã¤¿¤¦¤¨¤Ç¡¢ mrouted ¤òÁö¤é¤»¤ëɬÍפ¬¤¢¤ê¤Þ¤¹¡£2.2 ¤«¤½¤ì°Ê¹ß¤Î FreeBSD ¤Ê¤é¤Ð¡¢ /etc/rc.conf ¤Ç¥Õ¥é¥° mrouted_enable ¤ò YES ¤Ë¥»¥Ã¥È¤·¤Æ¤ª¤¯¤³¤È¤Ç¡¢ µ¯Æ°»þ¤Ë mrouted ¤òµ¯Æ°¤Ç¤­¤Þ¤¹¡£

MBONE ÍѤΥġ¼¥ë¤Ï ports Æâ¤ÎÀìÍѤΥ«¥Æ¥´¥ê¡¼ mbone ¤Ë¤¢¤ê¤Þ¤¹¡£ vic ¤ä vat ¤È¤¤¤Ã¤¿²ñµÄÍѤΥġ¼¥ë¤òõ¤·¤Æ¤¤¤ë¾ì¹ç¤Ï¡¢ ¤³¤Î¾ì½ê¤ò¸«¤Æ¤¯¤À¤µ¤¤¡£

¾Ü¤·¤¤¾ðÊó¤Ï Mbone Information Web ¤Ë¤¢¤ê¤Þ¤¹¡£

9.16. DEC ¤Î PCI ¥Á¥Ã¥×¥»¥Ã¥È¤òÍѤ¤¤Æ¤¤¤ë¥Í¥Ã¥È¥ï¡¼¥¯¥«¡¼¥É¤Ë¤Ï¡¢ ¤É¤Î¤è¤¦¤Êʪ¤¬¤¢¤ê¤Þ¤¹¤«?

Glen Foster »á¤Ë¤è¤ë°ìÍ÷¤Ë¡¢ ºÇ¶á¤ÎÀ½ÉʤòÄɲä·¤¿¤â¤Î¤ò°Ê²¼¤Ë¼¨¤·¤Þ¤¹¡£

Vendor          Model
----------------------------------------------
ASUS            PCI-L101-TB
Accton          ENI1203
Cogent          EM960PCI
Compex          ENET32-PCI
D-Link          DE-530
Dayna           DP1203, DP2100
DEC             DE435, DE450
Danpex          EN-9400P3
JCIS            Condor JC1260
Linksys         EtherPCI
Mylex           LNP101
SMC             EtherPower 10/100 (Model 9332)
SMC             EtherPower (Model 8432)
TopWare         TE-3500P
Znyx            (2.2.X) ZX312, ZX314, ZX342, ZX345, ZX346, ZX348
                (3.X) ZX345Q, ZX346Q, ZX348Q, ZX412Q, ZX414, ZX442,
                      ZX444, ZX474, ZX478, ZX212, ZX214 (10mbps/hd)

9.17. ²¿¸Î¼«Ê¬¤Î¥µ¥¤¥È¤Î¥Û¥¹¥È¤ËÂФ·¤Æ FQDN ¤ò»ÈÍѤ¹¤ëɬÍפ¬¤¢¤ë¤Î¤Ç¤¹¤«?

¼ÂºÝ¤Ë¤Ï¤½¤Î¥Û¥¹¥È¤ÏÊ̤Υɥᥤ¥ó¤Ë¤¢¤ë¤Î¤Ç¤Ï¤Ê¤¤¤Ç¤¹¤«¡£ ¤¿¤È¤¨¤Ð¡¢foo.bar.edu ¤È¤¤¤¦¥É¥á¥¤¥ó¤ÎÃæ¤«¤é¡¢ bar.edu ¥É¥á¥¤¥ó¤Ë¤¢¤ë mumble ¤È¤¤¤¦¥Û¥¹¥È¤ò»ØÄꤷ¤¿¤¤¾ì¹ç¤Ë¤Ï¡¢ mumble ¤À¤±¤Ç¤Ï¥À¥á¤Ç¡¢ mumble.bar.edu ¤È¤¤¤¦ FQDN (fully-qualified domain name) ¤Ç»ØÄꤷ¤Ê¤±¤ì¤Ð¤Ê¤ê¤Þ¤»¤ó¡£

ÅÁÅýŪ¤Ë¡¢BSD ¤Î BIND ¤Î¥ê¥¾¥ë¥Ð (resolver) ¤Ç¤Ï¤³¤Î¤è¤¦¤Ê»ö¤Ï²Äǽ¤Ç¤·¤¿¤¬¡¢ FreeBSD ¤ËÆþ¤Ã¤Æ¤¤¤ë bind (named(8) »²¾È) ¤Î¸½ºß¤Î¥Ð¡¼¥¸¥ç¥ó¤Ç¤Ï¡¢ ¼«Ê¬°Ê³°¤Î¥É¥á¥¤¥ó¤ËÂФ·¤Æ FQDN ¤Ç¤Ê¤¤ÊÌ̾¤ò¼«Æ°Åª¤Ë¤Ä¤±¤Æ¤¯¤ì¤ë¤è¤¦¤Ê»ö¤Ï¤¢¤ê¤Þ¤»¤ó¡£ ¤·¤¿¤¬¤Ã¤Æ mumble ¤È¤¤¤¦¥Û¥¹¥È̾¤Ï¡¢ mumble.foo.bar.edu ¤È¤¤¤¦Ì¾Á°¤«¡¢¤â¤·¤¯¤Ï root ¥É¥á¥¤¥óÆâ¤Ë¤¢¤ë¾ì¹ç¤Ë¤·¤«Å¬ÍѤµ¤ì¤Þ¤»¤ó¡£

¤³¤ì¤Ï¡¢ mumble.bar.edu ¤È mumble.edu ¤È¤¤¤¦¤³¤È¤Ê¤Ã¤¿¥É¥á¥¤¥ó̾¤ËÂФ·¤Æ¥Û¥¹¥È̾¤Î¥µ¡¼¥Á¤¬¹Ô¤Ê¤ï¤ì¤Æ¤¤¤¿ °ÊÁ°¤Î¿¶¤ëÉñ¤¤¤È¤Ï°Û¤Ê¤Ã¤¿¤â¤Î¤Ç¤¹¡£¤³¤Î¤è¤¦¤Ê»ö¤¬°­¤¤Îã¤â¤·¤¯¤Ï ¥»¥­¥å¥ê¥Æ¥£¥Û¡¼¥ë¤È¤ß¤Ê¤µ¤ì¤ëÍýͳ¤Ë¤Ä¤¤¤Æ¤Ï RFC 1535 ¤ò¸«¤Æ¤¯¤À¤µ¤¤¡£

/etc/resolv.conf ¥Õ¥¡¥¤¥ë (resolv.conf(5) »²¾È) ¤ÎÃæ¤Ç

domain foo.bar.edu

¤È½ñ¤¤¤Æ¤¢¤ë¹Ô¤ò¡¢ search foo.bar.edu bar.edu ¤Î¤è¤¦¤Ë½ñ¤­¤«¤¨¤ë¤³¤È¤Ç¡¢¾å¤Î¤è¤¦¤Ê»ö¤¬¤Ç¤­¤Þ¤¹¡£¤·¤«¤·¡¢ RFC 1535 ¤Ë¤¢¤ë¤è¤¦¤Ë¡¢ ¸¡º÷½ç½ø¤¬¡ÖÆâÉô (local) ¤È³°Éô (public) ¤Î´ÉÍý¤Î¶­³¦¡×¤ò¤Þ¤¿¤¬¤Ê¤¤¤è¤¦¤Ë¤·¤Æ¤¯¤À¤µ¤¤¡£

9.18. ¤¹¤Ù¤Æ¤Î¥Í¥Ã¥È¥ï¡¼¥¯¤ÎÁàºî¤ËÂФ·¤Æ Permission denied ¤È¤¤¤¦¥á¥Ã¥»¡¼¥¸¤¬É½¼¨¤µ¤ì¤ë¤Î¤Ç¤¹¤¬¡£

IPFIREWALL ¥ª¥×¥·¥ç¥ó¤òÉÕ¤±¤Æ¥«¡¼¥Í¥ë¤ò¥³¥ó¥Ñ¥¤¥ë¤·¤¿¾ì¹ç¤Ë¤Ï¡¢ 2.1-STABLE ¤Î³«È¯¤ÎÅÓÃæ¤«¤éÊѹ¹¤Ë¤Ê¤Ã¤¿ 2.1.7R ¤Îɸ½àŪ¤ÊÊý¿Ë¤È¤·¤Æ¡¢ ÌÀ¼¨Åª¤Ëµö²Ä¤µ¤ì¤Æ¤¤¤Ê¤¤¤¹¤Ù¤Æ¤Î¥Ñ¥±¥Ã¥È¤ÏÍî¤È¤µ¤ì¤ëÀßÄê ¤Ë¤Ê¤Ã¤Æ¤¤¤ë»ö¤ò³Ð¤¨¤Æ¤ª¤¤¤Æ¤¯¤À¤µ¤¤¡£

¤â¤·¥Õ¥¡¥¤¥¢¥¦¥©¡¼¥ë¤ÎÀßÄê¤ò´Ö°ã¤¨¤¿¾ì¹ç¤Ë¥Í¥Ã¥È¥ï¡¼¥¯¤ÎÁàºî¤¬ºÆ¤Ó¤Ç¤­¤ë ¤è¤¦¤Ë¤¹¤ë¤Ë¤Ï¡¢root ¤Ç¥í¥°¥¤¥ó¤·¤Æ¼¡¤Î¥³¥Þ¥ó¥É¤ò¼Â¹Ô¤·¤Æ¤¯¤À¤µ¤¤¡£

# ipfw add 65534 allow all from any to any

/etc/rc.conf ¤Ë firewall_type='open' ¤òÄɲ䷤Ƥâ¤è¤¤¤Ç¤·¤ç¤¦¡£

FreeBSD ¤Î¥Õ¥¡¥¤¥¢¥¦¥©¡¼¥ë¤ÎÀßÄê¤Ë¤Ä¤¤¤Æ¤Î¾ðÊó¤Ï FreeBSD ¥Ï¥ó¥É¥Ö¥Ã¥¯¤Î¡Ö¥Õ¥¡¥¤¥¢¥¦¥©¡¼¥ë¡×¤Ë¤¢¤ê¤Þ¤¹¡£

9.19. IPFW ¤Î¥ª¡¼¥Ð¥Ø¥Ã¥É¤Ï¤É¤Î¤¯¤é¤¤¤Ç¤·¤ç¤¦¤«?

¤³¤ÎÅú¤¨¤Ï¡¢ »È¤Ã¤Æ¤¤¤ë¥ë¡¼¥ë¥»¥Ã¥È¤È¥×¥í¥»¥Ã¥µ¤Î¥¹¥Ô¡¼¥É¤Ë¤è¤Ã¤Æ¤Û¤È¤ó¤É·è¤Þ¤ê¤Þ¤¹¡£ ¥¤¡¼¥µ¥Í¥Ã¥È¤ËÂФ·¤Æ¾¯¤·¤Î¥ë¡¼¥ë¥»¥Ã¥È¤À¤±¤ò»È¤Ã¤Æ¤¤¤ë¾ì¹ç¤Ë¤Ï¡¢ ¤Û¤È¤ó¤É¤½¤Î±Æ¶Á¤Ï̵»ë¤Ç¤­¤ëÄøÅ٤Ǥ¹¡£ ¼ÂºÝ¤Î¬ÄêÃͤò¸«¤Ê¤¤¤ÈËþ­¤Ç¤­¤Ê¤¤Êý¡¹¤Î¤¿¤á¤Ë¡¢ ¼ÂºÝ¤Î¬Äê·ë²Ì¤ò¤ª¸«¤»¤·¤Þ¤·¤ç¤¦¡£

¼¡¤Î¬Äê¤Ï 486-66 (ÌõÃí: Intel ¼ÒÀ½ CPU i486¡¢66MHz ¤Î¤³¤È) ¾å¤Ç 2.2.5-STABLE ¤ò»ÈÍѤ·¤Æ¹Ô¤Ê¤ï¤ì¤Þ¤·¤¿¡£ IPFW ¤ÏÊѹ¹¤¬²Ã¤¨¤é¤ì¤Æ¡¢ip_fw_chk ¥ë¡¼¥Á¥óÆâ¤Ç¤«¤«¤ë»þ´Ö¤ò ¬Äꤷ¤Æ 1000 ¥Ñ¥±¥Ã¥ÈËè¤Ë·ë²Ì¤ò¥³¥ó¥½¡¼¥ë¤Ëɽ¼¨¤¹¤ë¤è¤¦¤Ë¤Ê¤Ã¤Æ¤¤¤Þ¤¹¡£

¤½¤ì¤¾¤ì 1000 ¤º¤Ä¤Î¥ë¡¼¥ë¤¬Æþ¤Ã¤Æ¤¤¤ë 2 ¤Ä¤Î¥ë¡¼¥ë¥»¥Ã¥È¤Ç¥Æ¥¹¥È¤¬¹Ô¤Ê¤ï¤ì¤Þ¤·¤¿¡£ ¤Ò¤È¤ÄÌܤΥ롼¥ë¥»¥Ã¥È¤ÏºÇ°­¤Î¥±¡¼¥¹¤ò¸«¤ë¤¿¤á¤Ë

ipfw add deny tcp from any to any 55555

¤È¤¤¤¦¥ë¡¼¥ë¤ò·«¤êÊÖ¤·¤¿¤â¤Î¤Ç¤¹¡£

IPFW ¤Î¥Ñ¥±¥Ã¥È¥Á¥§¥Ã¥¯¥ë¡¼¥Á¥ó¤Ï¡¢ ¥Ñ¥±¥Ã¥È¤¬ (¥Ý¡¼¥ÈÈÖ¹æ¤Î¤»¤¤¤Ç) ¤³¤Î¥ë¡¼¥ë¤Ë¥Þ¥Ã¥Á¤·¤Ê¤¤¤³¤È¤¬¤ï¤«¤ë¤Þ¤Ç¤Ë¡¢ ²¿ÅÙ¤â¼Â¹Ô¤µ¤ì¤Þ¤¹¡£¤½¤Î¤¿¤á¡¢¤³¤ì¤ÏºÇ°­¤Î¥±¡¼¥¹¤ò¼¨¤·¤Þ¤¹¡£ ¤³¤Î¥ë¡¼¥ë¤ò 999 ¸Ä·«¤êÊÖ¤·Ê¤٤¿¸å¤Ë

allow ip from any to any

¤¬½ñ¤«¤ì¤Æ¤¤¤Þ¤¹¡£

2¤ÄÌܤΥ롼¥ë¥»¥Ã¥È¤Ï¡¢¤Ê¤ë¤Ù¤¯Á᤯¥Á¥§¥Ã¥¯¤¬½ªÎ»¤¹¤ë¤è¤¦¤Ë½ñ¤«¤ì¤¿¤â¤Î¤Ç¤¹¡£

ipfw add deny ip from 1.2.3.4 to 1.2.3.4

¤³¤Î¥ë¡¼¥ë¤Ç¤Ï¡¢È¯¿®¸µ¤Î IP ¥¢¥É¥ì¥¹¤¬¥Þ¥Ã¥Á¤·¤Ê¤¤¤Î¤Ç¡¢ ¥Á¥§¥Ã¥¯¤Ï¤¹¤°¤Ë½ªÎ»¤·¤Þ¤¹¡£¾å¤Î¥ë¡¼¥ë¥»¥Ã¥È¤È¤ª¤Ê¤¸¤è¤¦¤Ë¡¢ 1000 ¸ÄÌܤΥ롼¥ë¤Ï

allow ip from any to any

¤Ç¤¹¡£

1 ¤ÄÌܤΥ롼¥ë¥»¥Ã¥È¤Î¾ì¹ç¡¢ ¥Ñ¥±¥Ã¥È¤¢¤¿¤ê¤Î¥ª¡¼¥Ð¥Ø¥Ã¥É¤Ï¤ª¤è¤½ 2.703ms/packet¡¢ ¤³¤ì¤Ï¤À¤¤¤¿¤¤ 1 ¤Ä¤Î¥ë¡¼¥ë¤¢¤¿¤ê 2.7 ¥Þ¥¤¥¯¥íÉ䫤«¤Ã¤Æ¤¤¤ë¤³¤È¤Ë¤Ê¤ê¤Þ¤¹¡£ ¤·¤¿¤¬¤Ã¤Æ¡¢ ¤³¤Î¥ë¡¼¥ë¤Ë¤ª¤±¤ë¥Ñ¥±¥Ã¥È½èÍý»þ´Ö¤ÎÍýÏÀŪ¤Ê¸Â³¦¤Ï¡¢ ËèÉÃÌó 370 ¥Ñ¥±¥Ã¥È¤Ç¤¹¡£ 10Mbps ¤Î¥¤¡¼¥µ¥Í¥Ã¥È¤Ç 1500 ¥Ð¥¤¥È°Ê²¼¤Î¥Ñ¥±¥Ã¥È¥µ¥¤¥º¤ò²¾Äꤹ¤ë¤È¡¢ ¥Ð¥ó¥ÉÉý¤ÎÍøÍѸúΨ¤Ï 55.5% ¤¬¸Â³¦¤È¤Ê¤ë¤³¤È¤Ë¤Ê¤ê¤Þ¤¹¡£

2 ¤ÄÌܤΥ롼¥ë¥»¥Ã¥È¤Ç¤Ï¡¢¤½¤ì¤¾¤ì¤Î¥Ñ¥±¥Ã¥È¤¬¤ª¤è¤½ 1.172ms¤Ç½èÍý¤µ¤ì¤Æ¤¤¤Þ¤¹¤Î¤Ç¡¢ ¤À¤¤¤¿¤¤ 1 ¤Ä¤Î¥ë¡¼¥ë¤¢¤¿¤ê 1.2 ¥Þ¥¤¥¯¥íÉ䫤«¤Ã¤Æ¤¤¤ë¤³¤È¤Ë¤Ê¤ê¤Þ¤¹¡£ ¥Ñ¥±¥Ã¥È½èÍý»þ´Ö¤ÎÍýÏÀŪ¤Ê¸Â³¦¤Ï¡¢ ËèÉÃÌó 853 ¥Ñ¥±¥Ã¥È¤È¤Ê¤ê¤Þ¤¹¤Î¤Ç¡¢ 10Mbps Ethernet ¤Î¥Ð¥ó¥ÉÉý¤ò»È¤¤Àڤ뤳¤È¤¬¤Ç¤­¤Þ¤¹¡£

¤³¤Î¥Æ¥¹¥È¤Ç¤Î¥ë¡¼¥ë¿ô¤Ï¿²á¤®¤ë¤¿¤á¡¢ ¼ÂºÝ¤Ë»ÈÍѤ¹¤ëºÝ¤Î·ë²Ì¤òÈ¿±Ç¤·¤Æ¤¤¤ëÌõ¤Ç¤Ï¤¢¤ê¤Þ¤»¤ó¡£ ¤³¤ì¤é¤Ï¾å¤Ë¼¨¤·¤¿¿ôÃͤò½Ð¤¹¤¿¤á¤À¤±¤ËÍѤ¤¤é¤ì¤¿¤â¤Î¤Ç¤¹¡£ ¸úΨ¤ÎÎɤ¤¥ë¡¼¥ë¥»¥Ã¥È¤òºî¤ë¤¿¤á¤Ë¤Ï¡¢ ¼¡¤Î¤è¤¦¤Ê»ö¤ò¹Í¤¨¤Æ¤ª¤±¤Ð¤è¤¤¤Ç¤·¤ç¤¦¡£

  • ¡Ö³ÎÄꤷ¤Æ¤¤¤ë¡×¥ë¡¼¥ë¤ÏÀèÆ¬¤ÎÊý¤Ë»ý¤Ã¤Æ¤­¤Æ¤¯¤À¤µ¤¤¡£ ¤³¤ì¤Ï¡¢Â¿¿ô¤Î TCP ¤Î¥È¥é¥Õ¥£¥Ã¥¯¤¬¤³¤Î¥ë¡¼¥ë¤Ç½èÍý¤µ¤ì¤ë¤¿¤á¤Ç¤¹¡£ ¤½¤·¤Æ¤³¤Î¥ë¡¼¥ë¤ÎÁ°¤Ë¤Ï allow tcp ¤È¤¤¤¦µ­½Ò¤òÃÖ¤«¤Ê¤¤¤Ç¤¯¤À¤µ¤¤¡£

  • Îɤ¯»È¤ï¤ì¤ë¥ë¡¼¥ë¤ò¡¢¤¢¤Þ¤êÎɤ¯»È¤ï¤ì¤Ê¤¤¥ë¡¼¥ë¤è¤ê¤â Á°¤ÎÊý¤Ë (¤â¤Á¤í¤ó¥Õ¥¡¥¤¥¢¥¦¥©¡¼¥ë¤Îµö²ÄÀßÄê¤òÊѤ¨¤Ê¤¤ÈϰϤÇ) »ý¤Ã¤Æ¤­¤Æ¤¯¤À¤µ¤¤¡£ ipfw -a l ¤Î¤è¤¦¤·¤Æ¥Ñ¥±¥Ã¥È¿ô¤ÎÅý·×¤ò¼è¤ë¤³¤È¤Ç¡¢ ¤É¤Î¥ë¡¼¥ë¤¬ºÇ¤â¤è¤¯»È¤ï¤ì¤Æ¤¤¤ë¤«¤òÄ´¤Ù¤ë¤³¤È¤¬¤Ç¤­¤Þ¤¹¡£

9.20. ipfw(8) fwd ¥ë¡¼¥ë¤ò»È¤Ã¤ÆÂ¾¤Î¥Þ¥·¥ó¤Ë¥µ¡¼¥Ó¥¹¤ò¥ê¥À¥¤¥ì¥¯¥È¤·¤¿¤Î¤Ç¤¹¤¬¡¢ ¤¦¤Þ¤¯Æ°¤¤¤Æ¤¯¤ì¤Ê¤¤¤è¤¦¤Ç¤¹¡£¤É¤¦¤·¤Æ¤Ê¤ó¤Ç¤·¤ç¤¦?

¤ª¤½¤é¤¯¡¢¤¢¤Ê¤¿¤¬´üÂÔ¤·¤Æ¤¤¤ëưºî¤È¤Ï¡¢ ñ¤Ê¤ë¥Ñ¥±¥Ã¥ÈžÁ÷¤Ç¤Ï¤Ê¤¯¥Í¥Ã¥È¥ï¡¼¥¯¥¢¥É¥ì¥¹ÊÑ´¹ (NAT) ¤È¸Æ¤Ð¤ì¤ë¤â¤Î¤À¤«¤é¤Ç¤·¤ç¤¦¡£ fwd ¥ë¡¼¥ë¤Ïʸ»ú¤É¤ª¤ê¡¢ËÜÅö¤ËžÁ÷¤·¤«¹Ô¤Ê¤¤¤Þ¤»¤ó¡£ ¥Ñ¥±¥Ã¥È¤ÎÃæ¿È¤Ë¤Ä¤¤¤Æ¤Ï°ìÀÚ¼ê¤ò²Ã¤¨¤Ê¤¤¤Î¤Ç¤¹¡£ ¤½¤Î¤¿¤á¡¢¼¡¤Î¤è¤¦¤Ê¥ë¡¼¥ë¤òÀßÄꤷ¤¿¤È¤¹¤ë¤È¡¢

01000 fwd 10.0.0.1 from any to foo 21

°¸À襢¥É¥ì¥¹¤Ë foo ¤È½ñ¤«¤ì¤¿¥Ñ¥±¥Ã¥È¤¬ ¤³¤Î¥ë¡¼¥ë¤òÀßÄꤷ¤¿¥Þ¥·¥ó¤ËÅþÃ夷¤¿¾ì¹ç¡¢¤½¤Î¥Ñ¥±¥Ã¥È¤Ï 10.0.0.1 ¤ËžÁ÷¤µ¤ì¤Þ¤¹¤¬¡¢°¸À襢¥É¥ì¥¹¤Ï foo ¤Î¤Þ¤Þ¤Ë¤Ê¤ê¤Þ¤¹¡£ ¤Ä¤Þ¤ê¡¢¥Ñ¥±¥Ã¥È¤Ë°¸À襢¥É¥ì¥¹¤¬ 10.0.0.1 ¤Ë½ñ¤­´¹¤¨¤é¤ì¤ë¤È¤¤¤¦¤³¤È¤Ï¤¢¤ê¤Þ¤»¤ó¡£ ¼«Ê¬°¸¤Ç¤Ê¤¤¥Ñ¥±¥Ã¥È¤ò¼õ¤±¤È¤Ã¤¿¥Þ¥·¥ó¤Ï¡¢ ¤ª¤½¤é¤¯¤Û¤È¤ó¤É¤Î¾ì¹ç¡¢¤½¤Î¥Ñ¥±¥Ã¥È¤òÇË´þ¤¹¤ë¤È»×¤¤¤Þ¤¹¡£ ¤½¤Î¤¿¤á fwd ¥ë¡¼¥ë¤Ï¡¢ ¤½¤Î¥ë¡¼¥ë¤ò½ñ¤¤¤¿¥æ¡¼¥¶¤¬°Õ¿Þ¤·¤¿¤è¤¦¤Ë¤Ïư¤«¤Ê¤¤¤³¤È¤¬Îɤ¯¤¢¤ê¤Þ¤¹¡£ ¤³¤Îưºî¤Ï¥Ð¥°¤Ç¤Ï¤Ê¤¯¡¢»ÅÍͤʤΤǤ¹¡£

¥µ¡¼¥Ó¥¹¤ÎžÁ÷¤ò¤­¤Á¤ó¤Èưºî¤µ¤»¤ëÊýË¡¤Ë¤Ä¤¤¤Æ¤Ï¡¢ ¥µ¡¼¥Ó¥¹¤Î¥ê¥À¥¤¥ì¥¯¥È¤Ë´Ø¤¹¤ë FAQ ¤ä natd(8) ¤Î¥Þ¥Ë¥å¥¢¥ë¥Ú¡¼¥¸¡¢ Ports Collection ¤Ë¤¤¤¯¤Ä¤«´Þ¤Þ¤ì¤Æ¤¤¤ë¥Ý¡¼¥ÈžÁ÷¥æ¡¼¥Æ¥£¥ê¥Æ¥£¤Ê¤É¤ò¤´Í÷¤Ë¤Ê¤ë¤ÈÎɤ¤¤Ç¤·¤ç¤¦¡£

9.21. ¥µ¡¼¥Ó¥¹Í×µá¤ò¾¤Î¥Þ¥·¥ó¤Ë¥ê¥À¥¤¥ì¥¯¥È¤¹¤ë¤Ë¤Ï?

FTP ¤Ê¤É¤Î¥µ¡¼¥Ó¥¹¤Î¥ê¥¯¥¨¥¹¥È¤Ï¡¢socket ¥Ñ¥Ã¥±¡¼¥¸¤òÍøÍѤ·¤Æ¥ê¥À¥¤¥ì¥¯¥È¤Ç¤­¤Þ¤¹¡£ socket ¥Ñ¥Ã¥±¡¼¥¸¤Ï ports ¤Î sysutils ¥«¥Æ¥´¥ê¤Ë´Þ¤Þ¤ì¤Æ¤¤¤Þ¤¹¡£ (/etc/inet.conf¤Ë½ñ¤«¤ì¤Æ¤¤¤ë) ¥³¥Þ¥ó¥É¹Ô¤ò¡¢¼¡¤Î¤è¤¦¤Ë socket ¤ò¸Æ¤Ö¤è¤¦¤ËÊѹ¹¤·¤Æ¤¯¤À¤µ¤¤¡£

ftp stream tcp nowait nobody /usr/local/bin/socket socket ftp.foo.com ftp

¤³¤³¤Ç ftp.foo.com ¤Ï¥ê¥À¥¤¥ì¥¯¥ÈÀè¤Î¥Û¥¹¥È̾¡¢ ¹Ô¤ÎºÇ¸å¤Î ftp ¤Ï¥Ý¡¼¥È̾¤Ç¤¹¡£

9.22. ¥Ð¥ó¥ÉÉý¤Î´ÉÍý¤ò¹Ô¤Ê¤¨¤ë¥Ä¡¼¥ë¤Ï¤É¤³¤Ç¼ê¤ËÆþ¤ì¤é¤ì¤Þ¤¹¤«?

FreeBSD ÍѤΥХó¥ÉÉý´ÉÍý¥Ä¡¼¥ë¤Ë¤Ï¡¢ÌµÎÁ¤Ç¼ê¤ËÆþ¤ì¤é¤ì¤ë ALTQ ¤È¡¢ Emerging Technologies ¤«¤éÆþ¼ê¤Ç¤­¤ë Bandwidth Manager ¤È¤¤¤¦»ÔÈΤΤâ¤Î¤Î 2 ¼ïÎब¤¢¤ê¤Þ¤¹¡£

9.23. BIND (named) ¤¬¡¢53 È֥ݡ¼¥È¤Î¤Û¤«¤Ë Â礭¤ÊÈÖ¹æ¤Î¥Ý¡¼¥È¤Ç¼õ¤±ÉÕ¤±¤Æ¤¤¤Þ¤¹¡£»ä¤Î¥Û¥¹¥È¤Ï ¾è¤Ã¼è¤é¤ì¤¿¤Î¤Ç¤·¤ç¤¦¤«¡£

¤ª¤½¤é¤¯°ã¤¤¤Þ¤¹¡£FreeBSD 3.0 °Ê¹ß¤Ç¤Ï¡¢³°¸þ¤±¤ÎÌä¹ç¤»¤Ë ¥é¥ó¥À¥à¤ÊÂ礭¤ÊÈÖ¹æ¤Î¥Ý¡¼¥È¤òÍѤ¤¤ë¥Ð¡¼¥¸¥ç¥ó¤Î BIND ¤ò ÍѤ¤¤Æ¤¤¤Þ¤¹¡£¥Õ¥¡¥¤¥¢¥¦¥©¡¼¥ë¤òÄ̤¹¤¿¤á¡¢¤Þ¤¿¤Ï¤¢¤Ê¤¿¤Î µ¤Ê¬¤Ç¡¢³°¸þ¤­¤ÎÌä¹ç¤»¤ò 53 È֥ݡ¼¥È¤«¤é¹Ô¤¤¤¿¤¤¤Ê¤é¤Ð¡¢ /etc/namedb/named.conf ¤Ë¼¡¤Î¤è¤¦¤Ë ÀßÄꤷ¤Æ¤ß¤Æ¤¯¤À¤µ¤¤¡£

options {
        query-source address * port 53;
};

¹¹¤Ë¸ÂÄꤷ¤¿¤±¤ì¤Ð¡¢* ¤òñ°ì¤Î IP ¥¢¥É¥ì¥¹¤ËÃÖ¤­´¹¤¨¤ë¤³¤È¤â¤Ç¤­¤Þ¤¹¡£

¤½¤ì¤Ï¤È¤â¤«¤¯¡¢¤ª¤á¤Ç¤È¤¦¤´¤µ¤¤¤Þ¤¹¡£ sockstat ¤Î½ÐÎϤò¸«¤Æ¡¢¤ª¤«¤·¤Ê¸½¾Ý¤Ë ÃíÌܤ¹¤ë¤Î¤Ï¤è¤¤½¬´·¤Ç¤¹¡£

9.24. ¤Ê¤¼ /dev/bpf0: device not configured ¤¬½Ð¤ë¤Î¤Ç¤·¤ç¤¦¤«?

¥Ð¡¼¥¯¥ì¡¼¥Ñ¥±¥Ã¥È¥Õ¥£¥ë¥¿ (bpf(4)) ¥É¥é¥¤¥Ð¤Ï¡¢¤½¤ì¤òÍøÍѤ¹¤ë¥×¥í¥°¥é¥à¤ò¼Â¹Ô¤¹¤ëÁ°¤ËÍ­¸ú¤Ë¤·¤Æ¤ª¤¯É¬Íפ¬¤¢¤ê¤Þ¤¹¡£ ¥«¡¼¥Í¥ë¥³¥ó¥Õ¥£¥°¥Õ¥¡¥¤¥ë¤Ë¡¢¼¡¤Î¤è¤¦¤ËÄɲ䷤ƥ«¡¼¥Í¥ë¤ÎºÆ¹½ÃÛ¤ò¤·¤Æ¤¯¤À¤µ¤¤¡£

pseudo-device bpfilter		# Berkeley Packet Filter

¤½¤·¤ÆºÆµ¯Æ°¤·¤Æ¤«¤é¡¢¼¡¤Ë¥Ç¥Ð¥¤¥¹¥Î¡¼¥É¤òºîÀ®¤¹¤ëɬÍפ¬¤¢¤ê¤Þ¤¹¡£ ¤³¤ì¤Ï¡¢¼¡¤Î¤è¤¦¤ËÆþÎϤ·¡¢/dev ¤òÊѹ¹¤¹¤ë¤³¤È¤Ç¹Ô¤Ê¤¤¤Þ¤¹¡£

# sh MAKEDEV bpf0

¥Ç¥Ð¥¤¥¹¥Î¡¼¥É¤ÎºîÀ®¤Î¾ÜºÙ¤Ï¡¢ FreeBSD ¥Ï¥ó¥É¥Ö¥Ã¥¯¤Î¡Ö¥Ç¥Ð¥¤¥¹¥Î¡¼¥É¡×¤ò»²¾È¤·¤Æ¤¯¤À¤µ¤¤¡£

9.25. Linux ¤Î smbmount ¤Î¤è¤¦¤Ë¡¢ ¥Í¥Ã¥È¥ï¡¼¥¯¾å¤Î Windows ¥Þ¥·¥ó¤Î¥Ç¥£¥¹¥¯¤ò¥Þ¥¦¥ó¥È¤¹¤ë¤Ë¤Ï¤É¤¦¤·¤¿¤éÎɤ¤¤Î¤Ç¤·¤ç¤¦?

Ports Collection ¤Ë´Þ¤Þ¤ì¤ë sharity light ¥Ñ¥Ã¥±¡¼¥¸¤ò»È¤Ã¤Æ¤¯¤À¤µ¤¤¡¢

9.26. icmp-response bandwidth limit 300/200 pps ¤È¤¤¤¦¥á¥Ã¥»¡¼¥¸¤¬¥í¥°¥Õ¥¡¥¤¥ë¤Ë¸½¤ì¤ë¤Î¤Ç¤¹¤¬¡¢ ¤É¤¦¤¤¤¦¤³¤È¤Ç¤·¤ç¤¦?

¤³¤ì¤Ï¡¢¥«¡¼¥Í¥ë¼«¿È¤«¤é¡ÖICMP ¤ä TCP ¤Î¥ê¥»¥Ã¥È (RST) ±þÅú¤ò¡¢ÂÅÅö¤Ê¿ô¤è¤ê¤â¿¤¯Á÷¤Ã¤Æ¤¤¤ë¡×¤È¤¤¤¦¤³¤È¤ò¡¢ ¤¢¤Ê¤¿¤ËÅÁ¤¨¤ë¥á¥Ã¥»¡¼¥¸¤Ç¤¹¡£ ICMP ±þÅú¤ÏÎɤ¯¡¢»È¤ï¤ì¤Æ¤¤¤Ê¤¤ UDP ¥Ý¡¼¥È¤ËÀܳ¤·¤è¤¦¤È¤·¤¿·ë²Ì¤È¤·¤ÆÀ¸À®¤µ¤ì¤Þ¤¹¡£ ¤Þ¤¿¡¢TCP ¥ê¥»¥Ã¥È¤Ï¥ª¡¼¥×¥ó¤µ¤ì¤Æ¤¤¤Ê¤¤ TCP ¥Ý¡¼¥È¤ËÀܳ¤·¤è¤¦¤È¤·¤¿·ë²Ì¤È¤·¤ÆÀ¸À®¤µ¤ì¤Þ¤¹¡£ ¤½¤Î¾¡¢¤³¤ì¤é¤Î¥á¥Ã¥»¡¼¥¸¤¬É½¼¨¤µ¤ì¤ë¸¶°ø¤È¤Ê¤ë¾õ¶·¤È¤·¤Æ¡¢ °Ê²¼¤Î¤è¤¦¤Ê¤â¤Î¤¬¤¢¤ê¤Þ¤¹¡£

  • (ÆÃÄê¤Î¥»¥­¥å¥ê¥Æ¥£¾å¤Î¼åÅÀ¤ò°­ÍѤ·¤è¤¦¤È¤¹¤ë¹¶·â¤Ç¤Ï¤Ê¤¯) ËÄÂç¤Ê¿ô¤Î¥Ñ¥±¥Ã¥È¤ò»È¤Ã¤¿¶¯°ú¤Ê¥µ¡¼¥Ó¥¹Ë¸³² (DoS) ¹¶·â¡£

  • (°ìÉô¤Î¥¦¥§¥ë¥Î¥¦¥ó¥Ý¡¼¥È¤òÁÀ¤Ã¤¿¤â¤Î¤Ç¤Ï¤Ê¤¯) Èó¾ï¤Ë¹­¤¤ÈϰϤΥݡ¼¥È¤ËÀܳ¤ò»î¤ß¤ë¥Ý¡¼¥È¥¹¥­¥ã¥ó¡£

¥á¥Ã¥»¡¼¥¸Ãæ¤ÎºÇ½é¤Î¿ô»ú¤Ï¡¢ ¾å¸Â¤òÀßÄꤷ¤Ê¤«¤Ã¤¿¾ì¹ç¤Ë¥«¡¼¥Í¥ë¤¬Á÷¤Ã¤Æ¤¤¤¿¤Ç¤¢¤í¤¦¥Ñ¥±¥Ã¥È¤Î¿ô¤ò¼¨¤·¡¢ ÆóÈÖÌܤοô»ú¤Ï¡¢¥Ñ¥±¥Ã¥È¿ô¤Î¾å¸ÂÃͤò¼¨¤·¤Þ¤¹¡£ ¤³¤Î¾å¸ÂÃÍ¤Ï net.inet.icmp.icmplim ¤È¤¤¤¦ sysctl ÊÑ¿ô¤ò»È¤¦¤³¤È¤Ç¡¢°Ê²¼¤Î¤è¤¦¤ËÊѹ¹²Äǽ¤Ç¤¹¡£ ¤³¤³¤Ç¤Ï¾å¸Â¤ò 1 É䢤¿¤ê¤Î¥Ñ¥±¥Ã¥È¿ô¤Ç 300 ¤Ë¤·¤Æ¤¤¤Þ¤¹¡£

# sysctl -w net.inet.icmp.icmplim=300

¥«¡¼¥Í¥ë¤Î±þÅúÀ©¸Â¤ò̵¸ú¤Ë¤»¤º¡¢ ¥í¥°¥Õ¥¡¥¤¥ëÃæ¤Î¥á¥Ã¥»¡¼¥¸¤À¤±¤òÍÞÀ©¤·¤¿¤¤¾ì¹ç¡¢ net.inet.icmp.icmplim_output sysctl ÊÑ¿ô¤ò¼¡¤Î¤è¤¦¤Ë¤¹¤ë¤³¤È¤Ç½ÐÎϤò»ß¤á¤ë¤³¤È¤¬¤Ç¤­¤Þ¤¹¡£

# sysctl -w net.inet.icmp.icmplim_output=0

ºÇ¸å¤Ë¡¢¤â¤·±þÅúÀ©¸Â¤ò̵¸ú¤Ë¤·¤¿¤¤¾ì¹ç¤Ï¡¢ net.inet.icmp.icmplim sysctl ÊÑ¿ô¤Ë (¾å¤ÎÎã¤Î¤è¤¦¤Ë¤·¤Æ) 0 ¤òÀßÄꤹ¤ë¤³¤È¤Ç¼Â¸½¤Ç¤­¤Þ¤¹¡£ ¤¿¤À¤·±þÅúÀ©¸Â¤ò̵¸ú²½¤¹¤ë¤Î¤Ï¡¢¾åµ­¤ÎÍýͳ¤«¤é¤ª¤¹¤¹¤á¤·¤Þ¤»¤ó¡£

ËÜʸ½ñ¡¢¤ª¤è¤Ó¾¤Îʸ½ñ¤Ï ftp://ftp.FreeBSD.org/pub/FreeBSD/doc/ ¤«¤é¥À¥¦¥ó¥í¡¼¥É¤Ç¤­¤Þ¤¹¡£

FreeBSD ¤Ë´Ø¤¹¤ë¼ÁÌ䤬¤¢¤ë¾ì¹ç¤Ë¤Ï¡¢¥É¥­¥å¥á¥ó¥È ¤òÆÉ¤ó¤À¾å¤Ç <questions@FreeBSD.org> ¤Þ¤Ç (±Ñ¸ì¤Ç) Ï¢Íí¤·¤Æ¤¯¤À¤µ¤¤¡£
ËÜʸ½ñ¤Ë´Ø¤¹¤ë¼ÁÌä¤Ë¤Ä¤¤¤Æ¤Ï¡¢<doc@FreeBSD.org> ¤Þ¤ÇÅŻҥ᡼¥ë¤ò (±Ñ¸ì¤Ç) Á÷¤Ã¤Æ¤¯¤À¤µ¤¤¡£