ãããŸã§2åã«åããŠãLAN鿥ç¶ããããã¯ãªã¢ãŒãã¢ã¯ã»ã¹ã«ã€ã³ã¿ãŒãããVPNãå©çšããéã®èšå®ã«ã€ããŠè§£èª¬ããŠããããã®éã«ãè€æ°ã®ãããã³ã«ããããã¯åäžã®ãããã³ã«ã«ã€ãè€æ°ã®åäœã¢ãŒããåãäžããŠããŠããã®ã§ããã©ããã颚ã«äœ¿ãåããã°ããã®ã?ããšçåããæã¡ã«ãªã£ãæ¹ãããã£ãããããšãšæãã
ããã§ä»åã¯ãã·ãŒã³å¥ã«ãããã³ã«ãåäœã¢ãŒããã©ã䜿ãåãããã«ã€ããŠè§£èª¬ãããã
LAN鿥ç¶ã®å Žå
ãŸãLAN鿥ç¶VPNã®è©±ããå§ããã
LAN鿥ç¶VPNã§ã¯é·æéã«ããã£ãŠæ¥ç¶ãç¶æãããããå®å šæ§ã®ç¢ºä¿ãéèŠã«ãªãããŸããã€ããã«ãŒã¿ã®ä»æ§ã§ã¯PPTPã«ããVPNã¯æå€§4ã»ãã·ã§ã³ãŸã§ã«å¶çŽãããŠãããããæ ç¹æ°ãå€ããªããšPPTPã§ã¯ãã³ãã«ãè¶³ããªããªãå¯èœæ§ãããããã®ããšãèæ ®ãããšãLAN鿥ç¶ã§ã¯IPsecãå©çšããã¹ãã ããã
ãŸããå®å šæ§ãããã£ãŠãIPsecã䜿ãã¹ãã ãšããããIPsecã§ã¯åŒ·åºŠãé«ãAES(Advanced Encryption Standard)æå·åã¢ã«ãŽãªãºã ãå©çšã§ããäžæ¹åããã·ã¥é¢æ°ãçšããæ¹ç«æ€åºã®ä»çµã¿ãåãã£ãŠãããããã«ã宿çã«éµã亀æããä»çµã¿(re-key)ããããããåãéµãé·æéã«ããã£ãŠäœ¿ãç¶ããããšã«ã¯ãªããªããããããè§£èªããããªã¹ã¯ãäžããéã«ã¯éèŠãªèŠçŽ ãšãããã
IPsecãå©çšããå Žåãã¡ã€ã³ã¢ãŒããšã¢ã°ã¬ãã·ãã¢ãŒãã®éžæãå¿ èŠã«ãªããåºæ¬çãªèãæ¹ã¯ãåæ¹ãšãåºå®IPã¢ãã¬ã¹ãªãã¡ã€ã³ã¢ãŒããããçæ¹ã®ã¿åçã«å€åããIPã¢ãã¬ã¹ã䜿ããã¢ã°ã¬ãã·ãã¢ãŒãããšããéãã§ãããåºå®ã°ããŒãã«IPã¢ãã¬ã¹ãå ¥æã§ãããã©ããã§äž¡è ã䜿ãåããããšã«ãªãã ãããåœç¶ãªãããåºå®IPã¢ãã¬ã¹ãååŸããã«ã¢ã°ã¬ãã·ãã¢ãŒãã§å©çšããæ¹ãåç·ã³ã¹ããäžããããå ç¢æ§ã§ã¯ã¡ã€ã³ã¢ãŒãã®æ¹ãäžåãã
ããã§ã€ããã«ãŒã¿ã§ã¯ãåçã«å€åããIPã¢ãã¬ã¹ãçšããŠããå Žåã§ãããããã€ããç¬èªã®ãã€ãããã¯DNSãµãŒãã¹ãããããã©ã³ãDNSãµãŒãã¹ããšçµã¿åãããããšã§ãã¡ã€ã³ã¢ãŒãã«ããIPsecã®å©çšãå¯èœãšããŠãããã€ãŸããæ¬æ¥ãªãIPã¢ãã¬ã¹ãæå®ãã¹ããšããã«ãããããã©ã³ãDNSãµãŒãã¹ã«ãã£ãŠååŸãããã¹ãåã®FQDN(Fully Qualified Domain Name)ãæå®ããããã ã
ãã®å Žåãã«ãŒã¿ã«å¯ŸããŠããããã©ã³ãDNSãµãŒãã¹ãå©çšããããã®èšå®ã远å ããå¿ èŠããããå ·äœçãªå 容ã¯ä»¥äžã®éãã ããªãã以äžã®äŸã§ã¯PPPoEæ¥ç¶ãåæãšããŠãPPPçšã®ppã€ã³ã¿ãã§ãŒã¹ã䜿çšããå 容ã«ãªã£ãŠããã
1. ãŸãã䜿çšããããã¹ãå(以äžã®äŸã§ã¯sample-02)ãåŒæ°ã«æå®ããŠãnetvolante-dnsã³ãã³ããå®è¡ããããã¹ãåã«äœ¿çšã§ããæåã¯ãåè§ã®è±æ°åãšãã€ãã³ãé·ãã¯63æå以å ã ã
------------------------------------------------
# netvolante-dns hostname pp sample-02
# netvolante-dns go pp 1
[sample-02.aa0.netvolante.jp] ãç»é²ããŸãã
æ°ããèšå®ãä¿åããŸãã? (Y/N)Y
ã»ãŒãäž... çµäº
#
------------------------------------------------
2. åèµ·åã黿ºåæã«ãã£ãŠããŠãèšå®ãå¿ããªãããã«ãèšå®ãä¿åãããããã«ãIPã¢ãã¬ã¹ã®å€åã«å¯Ÿå¿ã§ããããã«ãèªåæŽæ°ãæå¹ã«ããŠããã
------------------------------------------------
# netvolante-dns hostname host pp sample-02.aa0.netvolante.jp
# netvolante-dns use pp auto
# save
------------------------------------------------
ãªããåºå®IPã¢ãã¬ã¹ã䜿çšããŠããå Žåã«ã¯åç·ãçããŠããéãåé¡ãªãããããããã©ã³ãDNSãµãŒãã¹ãšåçã«å²ãåœãŠãããIPã¢ãã¬ã¹ã®çµã¿åããã§ã¯ãåç·ãçããŠããŠãDNSãåŒããªããªããšIPsecéä¿¡ãéçµ¶ãããªã¹ã¯ãååšããç¹ã«çæãããã
ãã¬ããã»ã°ã«ãŒãããã¬ããã»VPNã¯ã€ããå©çšããæããã
ãã®ã»ãããã€ã³ã¿ãŒãããVPNãã§ã¯ãªããæ±è¥¿NTTå°åäŒç€ŸãæäŸããŠããããã¬ããã»ã°ã«ãŒãã¢ã¯ã»ã¹ã(NTTæ±æ¥æ¬)ãããã¬ããã»ã°ã«ãŒãã(NTTè¥¿æ¥æ¬)ããããã¯ããã¬ããã»VPNã¯ã€ãã(NTTæ±æ¥æ¬ãNTTè¥¿æ¥æ¬)ãšãã£ããµãŒãã¹ãå©çšããæ¹æ³ãããããããã¯NTTã®ãããã¯ãŒã¯ãå©çšãããµãŒãã¹ã§ãããã€ã³ã¿ãŒãããã®ããã«å®å šã«ãããªãã¯ãªãããã¯ãŒã¯ã§ã¯ãªãã®ã§ããã®åã ãå®å¿æãšä¿¡é Œæ§ãé«ãã
ãããã®ãµãŒãã¹ãå©çšããå Žåãæ±è¥¿NTTå°åäŒç€Ÿã®FTTH(Fiber To The Home)ãµãŒãã¹ãç³ã蟌ãã äžã§ãåæ¹ã®æ ç¹ã«ã€ããã«ãŒã¿ãèšçœ®ããŠæèŠã®æ¥ç¶èšå®ãè¡ããããã«ãã³ããªã³ã°ã®èšå®ãè¡ã圢ã«ãªãã
ã€ã³ã¿ãŒããããšç°ãªãããã¬ããç³»ãµãŒãã¹ãå©çšãããŠãŒã¶ãŒã«éå®ããããããã¯ãŒã¯ãå©çšãããããæå·åã䜿çšããªãIPIPãã³ããªã³ã°ãå©çšããæ¹æ³ãèããããããããå®éã«ã¯å¿µã«ã¯å¿µãå ¥ããŠãã€ã³ã¿ãŒãããVPNãšåæ§ã«IPsecããã³ãã«ã¢ãŒãã§åäœãããããšãå€ãããã ã
ãªã¢ãŒãã¢ã¯ã»ã¹ã®å Žå
ãªã¢ãŒãã¢ã¯ã»ã¹ã®å Žåãã¯ã©ã€ã¢ã³ããã©ãããæ¥ç¶ããŠãããåãããªãã®ã§ãå®è³ªçã«PPTPãppæ¥ç¶ã§å©çšããäœ¿ãæ¹ã¯äœ¿ããªããã€ãŸããPPTPãanonymousã¢ãŒãã§åäœãããæ¹æ³ãåºæ¬ã«ãªãã
PPTPã§ããã°ãWindowsãMacOS XãPPTPã¯ã©ã€ã¢ã³ããæšæºè£ åããŠããã®ã§ãè²»çšãæäœéã«æããããããã ããã«ãŒã¿ã®ä»æ§ã«èµ·å ããå¶éã«ãããPPTPã®åææ¥ç¶æšå¥šæ°ã«ã€ããŠã¯NetVolanteã·ãªãŒãºãRTXã·ãªãŒãºã4ã»ãã·ã§ã³ãšãªã£ãŠããããã®ãããåæã«çä¿¡ãåãä»ããã¯ã©ã€ã¢ã³ãPCã®å°æ°ãå€ããªããšãPPTPã§ã¯å¯Ÿå¿ããããªãã
ãã®ããšãèæ ®ãããšãã¯ã©ã€ã¢ã³ãPCã®å°æ°ãå€ãå Žåããããã¯å ç¢æ§ãéèŠãããå Žåã«ã¯ãIPsecãã¢ã°ã¬ãã·ãã¢ãŒãã§åäœãããå¿ èŠãããããããªããšOSãã¯ã©ã€ã¢ã³ãæ©èœãæã£ãŠããªãã®ã§ãã€ãããæäŸããŠããIPsec察å¿ã®VPNã¯ã©ã€ã¢ã³ããœãããŠã§ã¢ãYMS-VPN7ããå©çšããå¿ èŠãããããã ãWindowsçã®ã¿ã ã
ãYMS-VPN7ããå©çšããå Žåãçä¿¡ãåãä»ããã€ããã«ãŒã¿ã®åŽã§ã¯ã¢ã°ã¬ãã·ãã¢ãŒãã®åºå®IPã¢ãã¬ã¹åŽãšåæ§ã®èšå®ãè¡ããäžæ¹ãçºä¿¡åŽãšãªããYMS-VPN7ãã§ã¯ãã¯ã©ã€ã¢ã³ãåŽã§ä»®æ³çã«äœ¿çšãããããã¯ãŒã¯ã¢ãã¬ã¹(å éšçãªåäœåœ¢æ ã¯LAN鿥ç¶ãšåãã«ãªããããå®éã«ã¯åäžã®PCã§ãã£ãŠããLANã§äœ¿çšãããããã¯ãŒã¯ã¢ãã¬ã¹ã«çžåœããå€ã®æå®ãå¿ èŠ)ãšãçä¿¡ãåãä»ããã«ãŒã¿ã«èšå®ãããã®ãšåããååããæå®ããå¿ èŠãããã
ãªã¢ãŒãã¢ã¯ã»ã¹VPNãå©çšã§ãããã©ããã¯é次第
ãšããã§ããªã¢ãŒãã¢ã¯ã»ã¹ãè¡ãå Žé¢ãšããŠèããããã®ã¯ãèªå® ããäŒç€Ÿã®LANã«æ¥ç¶ããå Žé¢ã°ãããšã¯éããªããç¡ç·LANã䜿ã£ãŠã€ã³ã¿ãŒãããæ¥ç¶ãè¡ãã飲é£åºãå ¬å ±æœèšãªã©ããããã¯åºåŒµå ã»æ è¡å ã®å®¿æ³æœèšããå©çšããå¯èœæ§ãèããããã
ãšãããããããå Žæã§ã¯ãããŠããã¯ã©ã€ã¢ã³ãPCã«ã°ããŒãã«IPã¢ãã¬ã¹ãå²ãåœãŠãããšã¯ããã«ãå®¶åºå ããããã¯ãªãã£ã¹å ãšåæ§ã«ããã©ã€ããŒãIPã¢ãã¬ã¹ãå²ãåœãŠãäžã§ãã€ã³ã¿ãŒããããšã®å¢çã«äœçœ®ããã«ãŒã¿ãIPãã¹ã«ã¬ãŒãã«ããã¢ãã¬ã¹å€æãè¡ã£ãŠããã
ããããå Žé¢ã§ã¯åŸã ã«ããŠãå©çšå¯èœãªãããã³ã«ã«å¶çŽãå ãã£ãŠããå Žåããããå®éãçè ã¯æ å ã®å®¿ã§ã€ã³ã¿ãŒãããæ¥ç¶ãå¯èœã§ããã°ãå¿ ãèªå® ãžã®VPNæ¥ç¶(PPTPãå©çš)ãå¯èœãã©ããã詊ããŠã¿ãç¿æ £ã ããæ¥ç¶ã§ããªãå Žé¢ãå°ãªããªãã
ãŸããããæç¹ã§ã¯VPNãå©çšå¯èœã ã£ãæœèšã§ãåŸã«ãªã£ãŠå©çšã§ããªããªã£ãŠãããããã®éã ã£ããããšãã£ãããšãèµ·ããããã®ãããé«éãªã€ã³ã¿ãŒãããæ¥ç¶ãå¯èœã§ãã£ãŠããå¿ ããããªã¢ãŒãã¢ã¯ã»ã¹VPNãå©çšã§ãããšã¯éããªãç¹ã«çæããŠãããããSSL-VPNãªããããããåé¡ã¯èµ·ãã«ããã®ã ãã
ã€ããã«ãŒã¿ã§ã€ããã€ã³ã¿ãŒãããVPN 第3ç
èè :äºäžååžãåå:ã€ãããäŸ¡æ Œ:4,515å
æ¬æžã¯ãã€ãã瀟ã®VPNã«ãŒã¿ NetVolante/RT/RTXã·ãªãŒãºã察象ã«ãã»ãã¥ãªãã£ã®é«ãVPNç°å¢ãæ§ç¯ããææ³ã解説ãVPNãIPsecå©çšç°å¢ã®åºç€ç¥èãã宿§ç¯ã»æå¹æŽ»çšãŸã§ããã€ããã«ãŒã¿ãã®æ©èœã掻çšãããããŸããŸãªVPNã®æå¹æŽ»çšããã®1åã§ã§ããããã«ãªãããŸããQoSãããã¯ã¢ããæ©èœããã«ãŒã¿ã®ç®¡çã»ã¡ã³ããã³ã¹ããããããã解説ããã