ããŸãäŒæ¥ã«äžå¯æ¬ ãªã€ã³ãã©ãšãªã£ãç¡ç·LANãã±ãŒãã«ã«çžãããå¿«é©ãªããŒã¿éä¿¡ãå®çŸããŠãããç¡ç·LANã ãããã®èªèšŒèšå®ãééãããšåãè¿ãã®ã€ããªãäºæ ã«é¥ããååã¯ããªã·ã§ã¢ãŒãããŒ(PSK)ã®ãªã¹ã¯ãšãMACã¢ãã¬ã¹èªèšŒãç¡ç·LANã«ãããŠã¯çšããªããªãããšã説æãããä»åã¯ãäŒæ¥ç¡ç·LANã®æšæºã§ãããšã³ã¿ãŒãã©ã€ãºèªèšŒã«ã€ããŠçè§£ãæ·±ããŠããããã
äŒæ¥ç¡ç·LANã«ã¯ãWPA2ãšã³ã¿ãŒãã©ã€ãºãã
ç¡ç·LANã«ã¯ãå®¶åºåããšããŠåºãå©çšããããWPA/WPA2ããŒãœãã«ããšãäŒæ¥åãã§å©çšãæšå¥šãããŠãããWPA/WPA2ãšã³ã¿ãŒãã©ã€ãºããããããªããWPAãšWPA2ã®éãã¯æå·åã«TKIPãçšãããAESãçšãããã®éãã ãæ¬çš¿ã§ã¯AESã«ããWPA2ã®å©çšãåæãšããã
WPA2ããŒãœãã«ã¯ãæ¥ç¶å ãšãªãã¢ã¯ã»ã¹ãã€ã³ãåã瀺ããSSIDããšããPSK(Pre-Shared Key/äºåå ±æéµ)ããšåŒã°ãããã¹ãã¬ãŒãºãçšããèªèšŒæ¹åŒã ããã®æ¹åŒã§ã¯è€æ°ã®ãŠãŒã¶ãŒãäºåã«åããã¬ãŒãº(æåå)ãå ±æãããããèªèšŒæ å ±ãå€ã«æŒãããªã¹ã¯é«ãŸããããäžãäžæŒããå Žåã«ãã¹ãŠã®ãŠãŒã¶ãŒãšã¢ã¯ã»ã¹ãã€ã³ãã§ãã¹ãã¬ãŒãºãåèšå®ãããšãã£ã倧å€ãªäœæ¥ãšããã®éã®ãããã¯ãŒã¯åæ¢ãçºçããŠããŸãããŸãããããã£ãå®å šé¢ãéçšé¢ã®åŒ±ç¹ã«å¯ŸããŠããããã¯ãŒã¯æ©åšã«å²ãåœãŠãããMACã¢ãã¬ã¹ãçšããããã€ã¹èªèšŒãæå¹ã ãšèãã人ãããã
ãããå®éã«ã¯ãMACã¢ãã¬ã¹èªèšŒã¯æªæããã£ãæ»æè ã«ãšã£ãŠã¯ç¡æå³ã§ãããéä¿¡ããããã®æ å ±ã§ããMACã¢ãã¬ã¹ã¯æå·åãããŠãããããããç°¡åã«åœè£ (倿Ž)ããããšãã§ããã®ã ã
æ°äººèŠæš¡ã®äŒæ¥ã§ããã°ãå®¶åºåãã®WPA2ããŒãœãã«ã®ãªã¹ã¯ãçè§£ãã管çè² è·ã蚱容ããããã§éçšãããšããéžæè¢ããããã ããæ°åäººèŠæš¡ä»¥äžã®äŒæ¥ã§ããã°ãå±éºãšé£ãããã®WPA2ããŒãœãã«ã®æ¡çšã¯æ§ããã¹ãã ããã
ããã§ãäŒæ¥åãã®æ¹åŒãšããŠæšå¥šãããŠããã®ããWPA2ãšã³ã¿ãŒãã©ã€ãºã ãåæ¹åŒã¯ãIEEE 802.1X EAPèªèšŒããæ¡çšããŠããã倧ããåããŠäžèšã®2ã€ãããã
(1) IDãšãã¹ã¯ãŒããçšããŠèªèšŒããã¿ã€ã
(2) é»åèšŒææžãçšããŠèªèšŒããã¿ã€ã
ç¹ã«è¿å¹Žã§ã¯ãã¯ã©ã€ã¢ã³ãPCãæç·LANã§æ¥ç¶ããæ©äŒãæ¥éã«æžãäžæ¹ãç¡ç·LANã®æ®åãæ¥éã«é²ã¿ã瀟å¡ãå©çšããããã€ã¹ãã¢ãã€ã«PCãã¿ãã¬ãããã¹ããŒããã©ã³ãäž»æµã«ãªã£ãŠãããããããæµãããããWPA2ãšã³ã¿ãŒãã©ã€ãºã®ç°å¢ãæŽåãã瀟å ã®ç¡ç·LANç°å¢ã匷åºãªã»ãã¥ãªãã£ã§ä¿è·ããå¿ èŠæ§ãããã«é«ãŸã£ãŠããã
IDãšãã¹ã¯ãŒãã«ããã»ãã¥ãªãã£ãš"éç"
ãŸãWPA2ãšã³ã¿ãŒãã©ã€ãºã®ãã¡ãEAP-PEAPã«ä»£è¡šããããIDãšãã¹ã¯ãŒããçšããŠèªèšŒããã¿ã€ãããWPA2ããŒãœãã«ãšã©ãéãã®ããæŽçããŠã¿ããã
WPA2ããŒãœãã«ã§ã¯ãå ±éã®ãã¹ãã¬ãŒãº(PSK)ã§èªèšŒãè¡ããPSKãç¥ã£ãŠãããŠãŒã¶ãŒã®ã¿ãã¢ã¯ã»ã¹ãèš±å¯ãããä»çµã¿ã¯ãã¹ã¯ãŒãèªèšŒãšåæ§ã§ããããå ±éã®ãã¬ãŒãºã䜿çšããããèªèšŒæ å ±ãå€éšã«æŒããããå Žåã®åœ±é¿ã¯å€§ãããäžæ¹ãWPA2ãšã³ã¿ãŒãã©ã€ãºã§ã¯ããŠãŒã¶ãŒããšã«ç°ãªãIDãšãã¹ã¯ãŒããçšãããèªèšŒæ å ±ãç§å¯ãšããŠç®¡çãæãããã€ãã©ã®ãŠãŒã¶ãŒãã¢ã¯ã»ã¹ããã®ããææ¡ããããšãå¯èœã ã
ãŸããéçšé¢ã§ã®ã¡ãªããã倧ãããIDãšãã¹ã¯ãŒããæŒããããå Žåã§ãã該åœãŠãŒã¶ãŒã®ã¢ã«ãŠã³ãã忢ããã ãã§æžããããWPA2ããŒãœãã«ç°å¢ã§èŠãããå šãŠã®ç«¯æ«ã»ã¢ã¯ã»ã¹ãã€ã³ãã察象ãšããåèšå®äœæ¥ã¯å¿ èŠãªããããã®éã®ãããã¯ãŒã¯åæ¢ãçºçããªãã®ã ã
äžèŠãWPA2ãšã³ã¿ãŒãã©ã€ãºã«ãããããã°æè»œã«å®å šã確ä¿ã§ããããã«æããããã»ãã¥ãªãã£èŠä»¶ã«ãã£ãŠã¯é©ããªãå Žåããããä»åŸãå°å ¥ãæ€èšããå Žåã«ã¯æ³šæããããããã¯ããIDãšãã¹ã¯ãŒããçšããŠèªèšŒããã¿ã€ããã¯ãŠãŒã¶ãŒããšã®èªèšŒã§ãããããã€ã¹ããšã®èªèšŒã¯ãªããšããããšã ã
ãã·ã£ããŒITããéæŸãã«ããŠããã®ã¯å±éº!
ãŠãŒã¶ãŒèªèšŒã峿 Œã«å®æœããŠããã«ãé¢ããããäžæ£ãªã¢ã¯ã»ã¹ãèŠéããŠããŸãã±ãŒã¹ã¯æ±ºããŠç¹ç°ãªäŸã§ã¯ãªããäŒæ¥ç¡ç·LANã§ãååã«èµ·ããããåé¡ã ããã®åå ã®ã²ãšã€ãšããŠãã·ã£ããŒITãããããã·ã£ããŒITãšã¯ã瀟å¡ãäŒç€Ÿã®èš±å¯ãåŸãã«æã¡èŸŒãã ç§ç©ã®ããã€ã¹ããããããæ¥åã§å©çšãããŠããç¶æ ãæãã管çå€ã®ããã€ã¹ãç¡ç§©åºã«ç€Ÿå LANã«æ¥ç¶ãããã€ã³ã¿ãŒããããªã©ã®å€éšãããã¯ãŒã¯ã«ã¢ã¯ã»ã¹ããããšã§ããŠã€ã«ã¹ææãæ å ±æŒãããªã©ãæãã¬ãã©ãã«ã€ãªããã®ã ã
æç·LANã䞻圹ã§ãã£ãæä»£ããæã¡èŸŒã¿PC察çããšããŠãããã¯ãŒã¯æ¥ç¶ã§ããã¯ã©ã€ã¢ã³ããå¶éããç®çã§ãäžæ£ãªPCãæ¥ç¶ãããéã«ã¯ãã¿ããã«æ€ç¥ã§ããä»çµã¿ãå°å ¥ããäŒæ¥ã¯å€ããã£ããå°åã§é«æ§èœããªãã£ã¹ã«æã¡èŸŒãŸããé »åºŠãæ¡éãã®ã¹ããŒããã©ã³ã察象ãšããç¡ç·LANã§ã¯ãããäžå±€ã®æ³šæãå¿ èŠãªã®ã§ããã
äžèšãèžãŸããŠãIDãšãã¹ã¯ãŒãã«ããèªèšŒç°å¢ãèããŠã¿ããã瀟å¡ã¯èªèº«ã®IDãšãã¹ã¯ãŒãç¥ã£ãŠããããã®ç¶æ³ã§ç€Ÿå ã€ã³ãã©äžã®æ¥åæ å ±ãä»ãã確èªããããªã£ãå Žåãæå ã«ã¯äœ¿ãæ £ããç§ç©ã®ã¹ããŒããã©ã³ãã¿ãã¬ãããããããã¹ã¯ãŒããå ¥åããã°ç°¡åã«æ¥ç¶ã§ãããšããã°ã©ãã ãããç€Ÿå¡æ¬äººã®æªæã®æç¡ãšã¯å¥ã«ããŠã瀟å ããŒã¿ãç§ç©ã®ã¹ããŒããã©ã³ãã¢ãã€ã«PCã«ã³ããŒããèªå® ã«æã¡åž°ã£ãŠäœæ¥ããããå人端æ«ããã€ã³ã¿ãŒãããäžã®ãã¡ã€ã«å ±æãµãŒãã¹ã«ããŒã¿ãã¢ããããŒãããããããšãã£ãäºæ ãèµ·ããããšã容æã«æ³åã§ããã ããã
é»åèšŒææžãçšããŠã»ãã¥ã¢ãªç¡ç· LAN ç°å¢ãå®çŸ
ç¡ç·LANèªèšŒãšãã芳ç¹ãããããããã·ã£ããŒITã®åé¡ã«å¯Ÿå¿ããã®ããEAP-TLSãšåŒã°ãããé»åèšŒææžãçšããŠèªèšŒããã¿ã€ããã ãé»åèšŒææžã¯çŸå®ã®äžçã«ãããé転å 蚱蚌ããã¹ããŒãã®ãããªãã®ã§ãå¯Ÿè±¡ãæ£ããèªèšŒã»ç¹å®ããã€ã³ã¿ãŒãããäžã®èº«åèšŒææžã ãé»åèšŒææžãå°å ¥ãã端æ«ã®ã¿ãã¢ã¯ã»ã¹ã§ããããã«ããããšã§ãã·ã£ããŒITãžã®å¯Ÿå¿ã¯ãã¡ãããããã€ã¹ã®çŽå€±ãç飿ã«ãããŠããããã€ã¹ã瀟å LANã«ã¢ã¯ã»ã¹ãããªããšãã察çãè¿ éã«ãšãããšãã§ããã
ä»åã¯ãäŒæ¥ç¡ç·LANã«ããããWPA2ãšã³ã¿ãŒãã©ã€ãºããšããã®äžã§ãç¹ã«é»åèšŒææžãçšããèªèšŒã®æçšæ§ã«ã€ããŠèª¬æããŠããã
ãã§ã«WPA2ããŒãœãã«ã§éçšããŠããå Žåã§ããæ³äººåãã¢ã¯ã»ã¹ãã€ã³ããå°å ¥ããŠããã®ã§ããã°ãWPA2ãšã³ã¿ãŒãã©ã€ãºã«ã察å¿ããŠããå¯èœæ§ãé«ãã®ã§ããã®æ©äŒã«ç¢ºèªããã ããšè¯ãã ããã
ãŸããé»åèšŒææžã䜿ã£ãç¡ç·LANèªèšŒã§ã¯ãå€éšã®èªèšŒãµãŒããªã©ãå¿ èŠã«ãªããããæ§ç¯ãéçšãé¢åã ãšæã人ãå€ããããããªããããããç¡ç·LANç°å¢ã®æ®åãšäŒæ¥ããŒãºã®é«ãŸããåããç°¡åã«ç°å¢ãæ§ç¯ã§ããããã«ãªã£ãŠããŠããããšã¯ãããå®éã«æ§ç¯ãéçšããæ®µéã§æ°ãã€ããã¹ããã€ã³ãããããããšãã°ã100å°ãè¶ ããå€çš®å€æ§ãªããã€ã¹ãå šåœåå°ã«åæ£ããŠãããããªå Žåãé»åèšŒææžãã©ãé åžããããšãã£ã課é¡ããããé»åèšŒææžãé åžããéã«éäžã§çãŸããªããããªå·¥å€«ãå¿ èŠã ã
次åã¯ãé»åèšŒææžã䜿ã£ãç¡ç·LANç°å¢ã®æ§ç¯ã®ãã€ã³ããšå¯Ÿçãå ·äœçã«ç޹ä»ããŠãããã
(ãã€ãããã¥ãŒã¹åºåäŒç»ïŒæäŸ ãœãªãã³ã·ã¹ãã ãº)
[PR]æäŸïŒãœãªãã³

