Á¦ 3 ȸ ¸®´ª½º °øµ¿Ã¼ ¼¼¹Ì³ª o ¼¼¼Ç

Ãʺ¸ ¸®´ª¼­°¡ ÇÒ ¼ö ÀÖ´Â ¼³Ä¡ºÎÅÍ ¸®´ª½º º¸¾È±îÁö




¼­°­´ëÇб³ ¸®´ª½º À¯Àú ±×·ì

Ãֽ±¹ <prometheus@slug.sogang.ac.kr>

¸®´ª½ºÀÇ Ã¶Çаú ¸®´ª¼­ÀÇ ÀÚ¼¼

³×Æ®¿÷ÀÇ Àü¹ÝÀûÀÎ ÀÌÇØ

¸®´ª½º ¼³Ä¡¿Í x ¶ç¿ì±â-¸î°¡Áö tip Ȱ¿ë

¸®´ª½º¿¡¼­ÀÇ ±âº»ÀûÀÌÁö¸¸ Áß¿äÇÑ º¸¾È

±âº»ÀûÀΠȰ¿ë¹ý

linuxconfÀÇ È°¿ë

±×¿Ü¿¡ ¸î°¡Áö Àܱâ¼ú

Ãʺ¸ ¸®´ª¼­°¡ ÇÒ ¼ö ÀÖ´Â ¼³Ä¡ºÎÅÍ ¸®´ª½º º¸¾È±îÁö 483

------------------------------------------------------------------------------------------------

1. µé¾î°¡¸é¼­.

¸®´ª½º¿¡ ´ëÇÑ ³ªÀÇ ´À³¦µé.

¸®´ª½º¸¦ óÀ½ ¼Õ´í°Ô 3³âÀüÀÇ ÀÏÀÔ´Ï´Ù. ±×¶§´Â ¸®´ª½º°¡ ÀÌ·¸°Ô ±Þ¼ÓÈ÷ »ç¶÷µé ¼ÓÀ¸·Î ÆÛÁú °Í À̶õ »ý°¢À» ÇÒ ¼ö ¾ø¾ú´ø ¶§¿´´ø °Í °°½À´Ï´Ù. ¸®´©Áî Åä¹ßÁî ÀÚ½ÅÁ¶Â÷µµ ¸®´ª½º°¡ ÀÌ·¸°Ô ¼ºÀå Çϸ®¶ó°í´Â »ó»óÀ» ¸øÇß´Ù°í ÇÏ´Ï.

Ç㳪, Áö±ÝÀº ¸®´ª½ºÀÇ ¼ºÀå°ú ¹ßÀü¿¡ ÀÌÀǸ¦ ´Ù´Â »ç¶÷ÀÌ ¾ø½À´Ï´Ù. ±×¸¸Å­ ¸®´ª½º°¡ ÈûÀ» °®°Ô µÇ¾ú´Ù´Â °ÍÀÌÁÒ? ÇѸ¶µð·Î ¾öû³ª°Ô Ä¿°¡°í ÀÖ´Â ³à¼®ÀÌ ¹Ù·Î ¸®´ª½ºÀÎ °ÍÀÔ´Ï´Ù. ±×·¯³ª ¾ÆÁ÷²¯ ¸®´ª½º°¡ ³Ñ¾î¾ß ÇÒ »êÀº ³Ê¹«µµ ¸¹ÀÌ ÀÖ½À´Ï´Ù. ¾ÆÁ÷±îÁö ¸®´ª½º¿ë ¾îÇø®ÄÉÀ̼ÇÀÌ ºÎÁ·ÇÑ ½ÇÁ¤À̸ç ÀÏ¹Ý »ç¿ëÀÚµéÀÌ »ç¿ëÇϱ⿡´Â ¾î·Æ´Ù´Â °ÍÀÔ´Ï´Ù. ±×¸®°í ±â¼úÁö¿øÀ» Çϰí ÀÖ´Â ¾÷ü°¡ Àû´Ù´Â °ÍÀÔ´Ï´Ù. ¶ÇÇÑ ½Ã½ºÅÛ °ü¸®ÀÚµéÀÇ »ý°¢ÀÌ ¾ÆÁ÷²¯ ¸®´ª½º´Â ¼ÒÇü ¼­¹ö ³»Áö´Â ÆÄÀÏ,ÇÁ¸°Æ® ¼­¹ö Á¤µµ·Î¸¸ ÀνÄÇÑ´Ù´Â »ç½ÇÀÔ´Ï´Ù. ´ëÇü ³×Æ®¿÷À̳ª ´ëÇü isp¿¡¼­ ¾²´Â ¼­¹ö·Î´Â ºÎÀûÇÕ ÇÏ´Ù°í ÇÏ´Â ¼±ÀÔ°ßµéÀÌ ¹Ù·Î ±×°ÍÀÔ´Ï´Ù,

¹Ù·Î ÀÌ·¯ÇÑ ¹®Á¦µéÀ» ÇØ°áÇÏ°í ±Øº¹ÇÏ´Â °ÍÀÌ ¿ì¸®ÀÇ °úÁ¦ÀÎ °ÍÀÔ´Ï´Ù.

º¸´Ù ¸¹Àº ¾îÇø®ÄÉÀ̼ÇÀ» °³¹ßÇÏ°í º¸´Ù ¸¹Àº Å×½ºÆ®¸¦ ÅëÇØ¼­ ¸®´ª½º°¡ Áß´ëÇü ¼­¹ö¿¡¼­ÀÇ ¾ÈÁ¤¼ºÀ» °ËÁõ ¹ÞÀ»¼ö ÀÖµµ·Ï ÇØ¾ß ÇÒ °ÍÀÔ´Ï´Ù. ¶ÇÇÑ º¸´Ù ¸¹Àº À̵éÀÌ ¸®´ª½º¸¦ »ç¿ëÇÒ ¼ö ÀÖµµ·Ï ¸¹Àº ÀÚüÀÇ ³ë·ÂÀÌ ÇÊ¿äÇÒ °ÍÀÔ´Ï´Ù. À̸¦ ÅëÇØ º¸´Ù ¸¹Àº ¸®´ª¼­¸¦ ¹èÃâÇØ³»¾ß ÇÒ °ÍÀÔ´Ï´Ù.

À̰ÍÀÌ ¿ì¸®ÀÇ Á¸Àç ÀÌÀ¯ÀÌÀÚ ¿ì¸®ÀÇ »ç¸íÀÎ °ÍÀÔ´Ï´Ù.

¾Æ¿ï·¯ ¸®´ª½º´Â Çѳ¹ ±â´ÉÀûÀÎ Ãø¸éÀÇ os°¡ ¾Æ´ÔÀ» ¿ì¸®µé ÀÚ½ÅÀÌ ¸ÕÀú »ý°¢ÇØ¾ß ÇÒ°ÍÀÔ´Ï´Ù. gnu ¼±¾ð¹®,¼º´ç°ú ½ÃÀå µîÀÇ ¾ê±âµéÀÌ ³²ÀÇ À̾߱Ⱑ ¾Æ´Ñ ¿ì¸®µé ¸ðµÎÀÇ Ãâ¹ßÀÇ ÀüȯÁ¡À̱⸦ ¹Ù¶ø´Ï´Ù. ¸®´ª½º´Â ÇüÀÌ»óÇÐÀûÀ̸ç Á¤½ÅÀÌ Á¸ÀçÇÏ´Â osÀÎ °ÍÀÔ´Ï´Ù.

Áï ¸®´ª½º´Â öÇÐÀÔ´Ï´Ù.

¸®´ª¼­¶ó¸é ¸®´ª½ºÀÇ Á¤½ÅÀ» ÀÒÁö ¾Ê±â¸¦ ¹Ù¶ø´Ï´Ù. ±×¸®°í ³ª´®°ú °øÀ¯ÀÇ Á¤½ÅÀ» Ç×»ó ÀØÁö ¾Ê±â¸¦ ´õºÒ¾î ¹Ù¶ø´Ï´Ù. ¿ì¸®ÀÇ ¸¸³²°ú ¸ðÀÓÀÌ ´Ü¼øÇÑ ¸¸³²ÀÌ ¾Æ´Ñ Àΰ£ÀÇ µû¶æÇÔ°ú ´õºÒ¾î ÇÔ²² ÇÏ´Â ¸ð½ÀÀ¸·Î °Åµì³ª´Â °ü°èÀ̱⸦ ¹Ù¶ø´Ï´Ù. °³ÀÎÀÇ ¸¸Á·À̳ª °³ÀÎÀÇ ½Ç·Â Çâ»óÀ» À§ÇÑ ¿ì¸®ÀÇ ¸ðÀÓÀÌ ¾Æ´Ï¶ó´Â ¾ê±âÀÔ´Ï´Ù. ÀÌÁ¡Àº ²À²À °­Á¶¸¦ ÇÏ°í ½Í½À´Ï´Ù.

¸®´ª½ºÀÇ Á¤½Å¿¡ ³»Æ÷µÇ¾îÁø °øÀ¯¿Í ³ª´®, ´õºÒ¾î ÇÔ²²ÇÏ´Â Á¤½ÅÀ» ¸»ÀÔ´Ï´Ù.

ÀÌ ±ÛÀ» ¾²°í ÀÖ´Â ÀÌ ½Ã°£ ¸®Â÷µå ½ºÆ¼ºì½º ¾¾°¡ µ¹¾Æ°¡¼Ì´Ù´Â ¼Ò½ÄÀÌ µé¸®´Â±º¿ä À¯´Ð½º ±×¸®°í ³×Æ®¿÷À» ÇÏ´Â ºÐµéÀÌ¸é ¸ð¸¦ ¼ö°¡ ¾ø´Â ºÐ tcp/ip illustrated, apue, unp.,unpÀÇ 2ÆÇ Àüü¸¦ ¿Ï°áÁþÁö ¸øÇÏ°í ¼¼»óÀ» ¶°³µ±º¿ä ¸®Â÷µå ½ºÆ¼ºì½º ¾¾ÀÇ È¨ÆäÀÌÁö´Â http://www.kohala.com/~rstevens ÀÔ´Ï´Ù.

´Ù½ÃÇѹø °íÀÎÀÇ ¸íº¹À» º÷´Ï´Ù. ºÎµð ¾Æ¸§´Ù¿î °÷À¸·Î °¡½Ã±â¸¦ °£ÀýÈ÷ ¹Ù¶ø´Ï´Ù.

¸ðµç ¸®´ª¼­ ¿©·¯ºÐ °Ç°­À» Áöŵ½Ã´Ù. ±×·¡¾ß ´õ ¿­½ÉÈ÷ ¸®´ª½Ìµµ ÇÒ ¼ö°¡ ÀÖÀݾƿä?

ÀÚ! ÀÌÁ¦ºÎÅÍ ¿©·¯ºÐ°ú ÇÔ²² ¸®´ª½ºÀÇ ¼¼°è·Î µé¾î°©½Ã´Ù.

Æí¾ÈÇÑ °­ÀǸ¦ À§ÇÏ¿© °æ¾î¸¦ ¾²Áö ¾Ê°Ú½À´Ï´Ù. ³Î¸® ÀÌÇØ¸¦ ¹Ù¶ø´Ï´Ù.

2. ³×Æ®¿÷ÀÇ ÀÌÇØ¿Í Ȱ¿ë

world wide webÀÌ µîÀåÇÑ ÀÌÈÄ ±Þ¼ÓÈ÷ ¿ì¸®µéÀÇ ÀÏ»ó ¿ë¾î°¡ µÇ¾î¹ö¸° ÀÎÅͳÝ. ±× ÀÎÅͳÝÀ» »ç¶÷µéÀº, ¿À·ÎÁö À¥ÀÌ ÀüºÎÀÎ¾ç ¿ÀÇØÇÏ´Â °æ¿ì°¡ ¸¹ÀÌ ÀÖ´Ù. ¹°·Ð, ÀÎÅÍ³Ý ÁÖ·ùÀÇ ¼¼°è¸¦ À¥ÀÌ ¸¹Àº ºÎºÐ Àå¾ÇÇϰí ÀÖ´Â °Í ¶ÇÇÑ »ç½ÇÀÌ´Ù. ÇÏÁö¸¸ ±×·¯ÇÔ¿¡µµ ÀÎÅͳÝÀº À¥ÀÇ °ÍÀÌ ¾Æ´Ï´Ù. ±×·± »ç¶÷µé¿¡°Ô ÀÎÅͳÝÀÌ ¹«¾ùÀ̸ç ÀÎÅͳÝÀÌ ¾î¶°ÇÑ ¹æ½ÄÀ¸·Î ¿î¿µ µÇ¾îÁö°í Àִ°¡¸¦ Áú¹®ÇÒ ¶§ °ú¿¬ ¸î »ç¶÷À̳ª ±× ´äÀ» ÇÒ ¼ö ÀÖÀ»±î? ±×°Ç ¸®´ª½º,À¯´Ð½º,À©µµ¿ì,¸Æ, os2 ±×¿ÜÀÇ ´Ù¸¥ ¿î¿µÃ¼Á¦¸¦ »ç¿ëÇÏ´Â »ç¶÷µéµµ Á¤È®È÷ ¾ËÁö¸¦ ¸øÇϰí ÀÖ´Ù. ¹Ù·Î ±× Áú¹®¿¡ ´ëÇÑ ´äÀ» ¿À´Ã °­ÀÇÀÇ Ã¹ Å׸¶·Î ÇÒ±î ÇÑ´Ù..

ÀÎÅͳÝÀ̶õ ¹«¾ùÀΰ¡?

ÀÎÅͳÝÀº tcp/ip ÇÁ·ÎÅäÄÝÀ» ±â¹ÝÀ¸·Î ÇÑ ¼Ò±Ô¸ðÀÇ ³×Æ®¿÷µéÀÇ ¿¬ÇÕü¶ó°í ÇÒ ¼ö ÀÖ´Ù. Áï, Àü¼¼°è ³×Æ®¿÷ÀÇ ¿¬ÇÕü¶ó°í ¸»ÇÒ ¼ö ÀÖÀ» °ÍÀÌ´Ù. À̸¦ ³×Æ®¿÷ÀÇ °üÁ¡¿¡¼­ ¾ê±âÇÏÀÚ¸é ip address¸¦ °¡Áö°í ÀÖ´Â ¸ðµç ³×Æ®¿÷ Àåºñµé·Î ÀÌ·ç¾îÁø ip ³×Æ®¿÷ÀÇ ¿¬ÇÕü¶ó°í ¸»ÇÒ ¼ö ÀÖ´Ù.

±×·¸´Ù¸é ÀÎÅͳÝÀÇ ±Ù°£À̶ó´Â tcp/ip´Â ¹«¾ùÀΰ¡?

tcp/ip¸¦ ¾Ë±â À§Çؼ­´Â ¸ÕÀú tcp/ipÀÇ Ãâ»ý ¹è°æºÎÅÍ ¾Ë¾Æ¾ß ÇÒ °ÍÀÌ´Ù.

tcp/ipÀÇ ÃâÇö ¹è°æ

ÇöÀç, ÀÎÅͳÝÀ» ¼®±ÇÇϰí ÀÖ´Â ÇÁ·ÎÅäÄÝÀÌ ¹«¾ùÀΰ¡? ¶ó°í ¹°¾îº¸¸é ±×°¡ Àü¹®°¡ÀÌ´ø Ãʺ¸ÀÚÀÌ´ø »ó°ü¾øÀÌ ´ëºÎºÐÀÇ »ç¶÷µéÀº ÇѰᰰÀÌ tcp/ip¶ó°í ¾ê±â¸¦ ÇÒ °ÍÀÌ´Ù. ±×·³ ÀÌ·¯ÇÑ tcp/ip´Â ¾ðÁ¦ ´©±¸¿¡ ÀÇÇÏ¿© ¾î¶² ¸ñÀûÀ¸·Î ¸¸µé¾î Á³´Â°¡?

¿ø·¡ tcp/ip ÇÁ·ÎÅäÄÝÀÇ °³¹ßÀº 1969³â arpa(advanced research projects agency) Áï, ¹Ì ±¹¹æ¼ºÀÇ ÀÚ±Ý Áö¿øÀ¸·Î ½ÃÀÛµÈ ÇÁ·ÎÁ§Æ®¿¡¼­ ±× Ãâ¹ßÁ¡À» ã´Â´Ù. arpa(advanced research projects agency)´Â ½ÇÇèÀûÀÎ ÆÐŶ ±³È¯ ¹æ½ÄÀÇ ³×Æ®¿öÅ©¸¦ ¸¸µé¾î³»±â À§ÇÏ¿© arpanetÀ̶ó ºÒ¸®¿ì´Â ³×Æ®¿÷À» ¼³Ä¡ÇÏ¿´´Ù. ¹Ù·Î À̰÷À¸·ÎºÎÅÍ ÇöÀç¿¡ ¾²ÀÌ´Â ¼ö¾øÀÌ ¸¹Àº Á¤º¸±â¼úµéÀÌ ÀÌÈÄ¿¡ °³¹ßÀÌ µÇ¾ú´Ù.

arpanetÀº óÀ½ °èȹµÇ¾úÀ» ¶§ÀÇ ¿ì·Á¸¦ ¾Ä°í ¾ÈÁ¤ÀûÀÌ¸ç ¼º°øÀûÀ¸·Î Á¤º¸Åë½Å ±â¼úµé°ú Á¶È­¸¦ ÀÌ·ç°Ô µÇ¾ú´Ù. ±×°ÍÀÌ 1975³â°æÀÇ ÀÏÀ̾ú´Ù. À̸¦ °è±â·Î ½ÇÇèÀûÀÌ´ø arpanetÀÌ ½ÇÁ¦ ¿î¿µÇÏ°í »ç¿ëÇÒ¼ö ÀÖ´Â ³×Æ®¿÷À¸·Î ÀüȯÀÌ ÀÌ·ç¾î Á³À¸¸ç ±× ÀÏÀº dca(defense communication agency)¿¡°Ô ³Ñ¾î°¬´Ù. ±×ÈÄ ½ÇÁúÀûÀÎ tcp/ip°¡ °³¹ßÀÌ µÇ¾îÁ³´Ù. ±×·± tcp/ip°¡ °áÁ¤ÀûÀ¸·Î È®ÀåÀ» ÇÒ¼ö ÀÖ¾ú´ø °è±â´Â 1983³â ¹Ì±¹ÀÇ ±º»ç¿ë Ç¥ÁØ ÇÁ·ÎÅäÄݷΠäÅÃÀÌ µÇ¸é¼­ ¸ðµç ³×Æ®¿÷¿¡ ¹°·ÁÀÖ´Â ÀåºñµéÀÇ »õ·Î¿î ÇÁ·ÎÅäÄÝ·ÎÀÇ º¯È¯ÀÌ ÇÊ¿äÇѹ٠À̸¦ ¿ëÀÌÇÏ°Ô Çϱâ À§ÇÏ¿© darpa(-¹Ì±¹¹æ¼º¾ÈÀÇ ºÎ¼­·Î ±×Àü¿¡´Â arpa·Î ºÒ¸²)¿¡¼­ ¹öŬ¸®(bsd) À¯´Ð½º¿¡¼­ tcp/ip¸¦ ±¸ÇöÇϵµ·Ï bbn¿¡ ÀÚ±ÝÀ» Áö¿øÇÏ¿´À¸¸ç À̸¦ °è±â·Î ³×Æ®¿÷ÀÇ ´ëÁßÀûÀÎ ÇÁ·ÎÅäÄÝ·Î ¹ßÀüÀ» ÇÏ°Ô µÇ¾ú´Ù. ±×¸®°í ±× ÁîÀ½¿¡ ÀÎÅͳÝÀ̶õ »õ·Î¿î ÆÐ·¯´ÙÀÓÀÌ µîÀåÇϱ⠽ÃÀÛÇß´Ù.

ÀÎÅͳÝÀº, tcp/ipÀÇ °³¹æÀûÀÌ¸ç ¾î¶² È£½ºÆ®¿¡ ´ëÇØ¼­µµ ¹èŸÀûÀÌÁö ¾ÊÀº ¹ü¿ë¼º°ú ¾ÈÁ¤¼ºÀÌ ¸Å·ÂÀû ÀÌ¿´À¸¸ç ±×¸®ÇÏ¿© ¼ö¸¹Àº ¾÷üµéÀº ÀÎÅͳÝÀÇ ±âÇϱ޼öÀûÀÎ ¹ßÀü°ú ¹ßÀ» ¸ÂÃç tcp/ip¸¦ ´õ¿í´õ ¿¬±¸,°³¹ß ¹× Áö¿øÀ» ÇÏ°Ô µÇ¾ú´Ù. ¿Ö³ÄÇϸé ÀÎÅͳݿ¡ Á¢±ÙÀ» Çϱâ À§Çؼ­´Â tcp/ip°¡ ÇÊ¿äÇ߱⠶§¹®ÀÌ´Ù. ¶ÇÇÑ, ÀÎÅͳÝÀÇ ±âÇϱ޼öÀûÀÎ ¹ßÀü°ú È®»êÀº ¾÷°è·Î ÇÏ¿©±Ý tcp/ip¿¡ ¸Å·ÂÀ» °®°Ô Çϱ⿡ ÃæºÐÇÑ È¿°ú°¡ ÀÖ¾ú±â ¶§¹®ÀÌ´Ù. À̰ÍÀÌ tcp/ip°¡ ÀÎÅͳÝÀÇ ÇÙ½É ÇÁ·ÎÅäÄÝÀÌÀÚ º¸ÆíÀûÀÎ ÇÁ·ÎÅäÄÝ·Î ÀÚ¸®¸¦ ÀâÀ»¼ö ÀÖ°Ô µÇ¾ú´ø ÀÌÀ¯ÀÎ °ÍÀÌ´Ù.

ÃÖ±Ù¿¡´Â tcp/ip°¡ ÀÎÅͳÝÀº ¹°·Ð, ¼Ò±Ô¸ðÀÇ ³×Æ®¿öÅ©(lan)¿¡¼­µµ ¾öû³ª°Ô »ç¿ëµÇ¾îÁö°í ÀÖ´Â ½ÇÁ¤ÀÌ´Ù. ±×¸®°í. ÀÏ¹Ý »ç¿ëÀÚµéÀÇ pc¿¡µµ ±âº» ÇÁ·ÎÅäÄÝ·Î ÀÚ¸®ÀâÀº °ÍÀÌ tcp/ip ÀÌ´Ù. ¿À·¡ÀüºÎÅÍ ±×·¡¿ÔÁö¸¸ ÇöÀç¿¡µµ linux³ª unix ¿î¿µÃ¼Á¦¸¦ ¾²°í ÀÖ´Â ÄÄÇ»ÅÍ ½Ã½ºÅÛµé·Î ±¸¼ºµÈ ³×Æ®¿öÅ©¿¡¼­ °¡Àå ¸¹ÀÌ »ç¿ëµÇ°í ÀÖ´Â °ÍÀÌ tcp/ipÀ̸ç À̰ÍÀº »õ·Î¿î ¹Ð·¹´Ï¾ö ½Ã´ë¿¡µµ ¿©ÀüÈ÷ º¯ÇÏÁö ¾ÊÀ» °ÍÀ̶ó°í »ý°¢ÇÑ´Ù.(±× ½Ã±â¿¡ ´ëÇØ¼­´Â ±Û½ê.) ÀÎÅͳÝÀÇ ÁÖ·ù ÇÁ·ÎÅäÄݷμ­.

ÀÌ»óÀ¸·Î °£´ÜÇÏ°Ô tcp/ipÀÇ Ãâ»ý ¹è°æ¿¡ ´ëÇØ¼­ ¾Ë¾Æ º¸¾Ò´Ù. ÀÌÁ¦ºÎÅÍ´Â tcp/ip¿Í ±× ¾È¿¡ ¼û°ÜÁ® ÀÖ´Â osi 7 layer¿¡ ´ëÇØ¼­ °£·«È÷ ¾Ë¾Æ º¸°Ú´Ù.

tcp¿Í ip´Â?

tcp/ip´Â tcp¿Í ip¶ó´Â µÎ ³à¼®ÀÇ Á¶ÇÕ¿¡ ÀÇÇÏ¿© ÀÌ·ç¾îÁø ÀÎÅÍ³Ý ÇÁ·ÎÅäÄÝÀÇ Çϳª ÀÌ´Ù. tcp´Â transmission control protocolÀÇ ¾àÀڷμ­ ½Å·Ú¼º ÀÖ´Â ¿¬°á ÁöÇâ(connection-oriented) ÇÁ·ÎÅäÄݰú ¼­ºñ½º¸¦ Á¦°øÇÑ´Ù.

Áï, osi 7°èÃþ Áß »óÀ§ °èÃþ¿¡¼­ µ¥ÀÌÅÍ Àü¼Û ¿ä±¸ ¹ß»ý½Ã '3 way handshake'¸¦ ÀÌ¿ëÇØ »ó´ë ³ëµå¿ÍÀÇ »çÀÌ¿¡ ¿¬°áÀ» ¼³Á¤Çϰí, Àü¼ÛÀÌ ³¡³ª¸é ¿¬°áÀ» Àý´ÜÇØ ÀåºñµéÀÇ cpu,°¡»ó ¸Þ¸ð¸®µîÀÇ ³¶ºñ¸¦ ¸·´Â´Ù. ¶ÇÇÑ, ÇöÀçÀÇ µ¥ÀÌÅÍ Ã³¸® ¹öÆÛ ¿ë·®À» »ó´ë ³ëµå¿¡ ¾Ë·Á ÀûÀýÈ÷ µ¥ÀÌÅÍÀÇ È帧À» Á¶ÀýÇϸç, µ¥ÀÌÅÍÀÇ ¿¡·¯ °ËÃâ°ú ÀçÀü¼Û ¿ä±¸ µîÀ» ÇàÇÏ´Â ÀϵéÀ» ÇÏ´Â °ÍÀÌ tcpÀÇ ¿ªÇÒÀÌ´Ù.

(osi 7 layer °èÃþµµ)

application layer³×Æ®¿öÅ©¸¦ ÀÌ¿ëÇÏ´Â ÀÀ¿ë ÇÁ·Î±×·¥µéÀÌ À§Ä¡

host-to-host transport layer¼Û¼ö½ÅÃø ¸»´ÜÀÇ ¿¡·¯ Á¶Á¤°ú µ¥ÀÌÅÍ Àü¼Û °ü·Ã ¼­ºñ½º¸¦ Á¦°ø

internet layer µ¥ÀÌÅÍ ¶ó¿ìÆÃ°ú µ¥ÀÌÅͱ׷¥À» Á¤ÀÇ

physical layer¹°¸®Àû ³×Æ®¿÷ Á¢±Ù¿¡ ´ëÇÑ ºÎºÐÀ» ±¸¼º

ip´Â internet protocolÀÇ ¾à¾î·Î¼­ Àü¼ÛÇÏ·Á´Â packetÀÇ address¿Í µ¥ÀÌÅ͸¦ Àü¼ÛÇÏ·Á°í ÇÏ´Â ¸ñÀûÁö ÁÖ¼Ò¿¡ Á¤È®È÷ µµ´ÞÇÒ ¼ö ÀÖµµ·Ï ÃÖÀûÀÇ °æ·Î¸¦ ¼³Á¤ÇÏ´Â ¿ªÇÒÀ» ÇÑ´Ù. ¶ÇÇÑ, »óÀ§ °èÃþÀÎ transport °èÃþ¿¡ network »óÈ£°£ÀÇ µ¥ÀÌÅͱ׷¥ ¼­ºñ½º¸¦ Á¦°øÇϸç, µ¥ÀÌÅͱ׷¥À» ºÐÇØÇϰí ÇÕħÀ¸·Î½á µ¥ÀÌÅÍ ¸µÅ© °èÃþ¿¡¼­ÀÇ µ¥ÀÌÅÍ ±æÀÌ Á¦ÇÑÀ» ±Øº¹ÇØ Ä¿´Ù¶õ µ¥ÀÌÅͱ׷¥À» ÃÖ¼ÒÈ­ÇÏ¿© ³×Æ®¿öÅ©¿¡¼­ Àü¼ÛÇÒ ¼ö ÀÖ°Ô ÇÑ´Ù. À̰ÍÀÌ tcp¿Í ipÀÇ ÇÏ´Â ÀÏÀÌ´Ù. ±×·¯³ª À̰͸¸À¸·Î´Â »ç½Ç ÀÌÇØ°¡ ½±Áö ¾Ê´Ù. ÇÏ¿© ¾à°£Àº Àü¹®ÀûÀÎ Áö½ÄÀÌ ÀÖ¾î¾ß Çϳª ³×Æ®¿÷ÀÇ °¡Àå ±âº»À̶ó°í ÇÒ ¼ö ÀÖ´Â °ÍÀÌ osi 7 layer¿¡ ´ëÇØ¼­ À̾߱âÇØ º¸°íÀÚ ÇÑ´Ù.

°èÃþ

±â´É

7 °èÃþ

application layer

-³×Æ®¿öÅ© ¾ÖÇø®ÄÉÀ̼ÇÀ» Á¤ÀÇ

-ÀüÀÚ¿ìÆí ¹× ³×Æ®¿öÅ© À¯Æ¿¸®Æ¼°¡ Á¸ÀçÇÏ´Â °èÃþ

6 °èÃþ

presentation layer

-¾ÖÇø®ÄÉÀ̼ÇÀÌ ³×Æ®¿öÅ©·Î µé¾î°¡´Â ¹æ¹ý°ú ³×Æ®¿öÅ© »ó¿¡¼­ µ¥ÀÌŸ¸¦ Àü¼ÛÇϱâ À§ÇØ »ý»êµÇ°í ¼Òºñ µÇ´Â ÇüŸ¦ ¹ø¿ªÇÏ´Â ¹æ¹ý Á¤ÀÇ

5 °èÃþ

session layer

-¾ÖÇø®ÄÉÀ̼ǿ¡ ´ëÇØ 4 °èÃþ¿¡ °³³äÀûÀÎ ÀÎÅÍÆäÀ̽º Á¦°ø

-ÀåºñµéÀÌ ³×Æ®¿öÅ© ÁÖ¼Ò ´ë½Å À̸§À¸·Î Àνĵǵµ·Ï Á¦°ø

4 °èÃþ

transport layer

-³×Æ®¿öÅ© »ó¿¡¼­ ¹°¸®ÀûÀÎ À§Ä¡¸¦ ã´Â ¹æ¹ý°ú ³ëµå°£ÀÇ ¿¬°áÀ» È®¸³ÇÏ°í ²÷´Â ¹æ¹ýÀ» Á¤ÀÇ

-ÀÎÁõ°ú ÆÐŶ ¹è¿­(packet squencing)

-tcp, udp, spx ÆÐŶÀÌ ¾î´À °æ·Î·Î Àü¼ÛµÇ´ÂÁö Á¤ÀÇ(routing)

3 °èÃþ

network layer

-³×Æ®¿öÅ© »óÀÇ ³ëµå¿¡ Àü¼ÛµÇ´Â ÆÐŶ È帧À» ÅëÁ¦ÇÏ°í »óÅ ¸Þ½ÃÁö°¡ ³×Æ®¿öÅ©»ó¿¡¼­ ¾î¶»°Ô ³ëµå·Î Àü¼ÛµÇ´Â°¡¸¦ Á¤ÀÇ

-ip, ipx, appletalk, decnet, netbeui, sna,appc -media-independent

2 °èÃþ

data link layer

-ÄÄÇ»ÅͰ¡ ¸Þ½ÃÁö¸¦ ÁÖ°í ¹Þ±â À§ÇÑ ÇÁ·ÎÅäÄÝ Á¤ÀÇ

-¹°¸®ÀûÀÎ ¿¬°áÀ» ÅëÇÏ¿© µÎ ÀåÄ¡°£ÀÇ ½Å·Ú¼º ÀÖ´Â Á¤º¸ Àü¼Û-packet framing, media-level addressing

-ethernet,tokenring,fddi,atm,ppp(wan protocol)

-media-dependent

1 °èÃþ

physical layer

-±â°èÀûÀÎ Ãø¸é(ÄÉÀÌºí ¹× Á¢¼Ó ÀåÄ¡)°ú Àü±âÀûÀÎ Ãø¸é(Àü¾Ð, ½ÅÈ£¸¦ º¯Á¶ÇÏ´Â ±â¼ú)À» Æ÷ÇÔÇÑ ÄÄÇ»ÅÍ¿Í ³×Æ®¿öÅ© »çÀÌÀÇ ¹°¸®ÀûÀÎ ¿¬°á Á¤ÀÇ

-³×Æ®¿öÅ© ÅäÆú·¯Áö Á¤ÀÇ

(tcp/ip ÇÁ·ÎÅäÄÝ °èÃþµµ)

tcp/ip ±¸Á¶

* application layer : ftp, telnet, smtp

ÀÌ °èÃþÀº ³×Æ®¿öÅ©¸¦ ½ÇÁ¦·Î »ç¿ëÇÏ´Â ÀÀ¿ë ÇÁ·Î±×·¥À¸·Î ÀÌ·ç¾îÁø´Ù. ¿ì¸®°¡ ÀÌ¹Ì ¾Ë°í ÀÖ´Â ÆÄÀÏ Àü¼Û ÇÁ·Î±×·¥ µîÀÌ ÀÌ °èÃþ¿¡ ÇØ´çµÇ´Â ÇÁ·Î±×·¥ÀÌ´Ù. osi ¸ðµ¨¿¡¼­ º¸¸é ¾ÖÇø®ÄÉÀÌ¼Ç °èÃþ°ú ÇÁ¸®Á¨Å×ÀÌ¼Ç °èÃþÀÌ ¿©±â¿¡ ÇØ´çµÈ´Ù.

* host-to-host transport layer

ÀÌ °èÃþÀÇ ¿ªÇÒÀº µµÂøÇϰíÀÚ ÇÏ´Â ½Ã½ºÅÛ±îÁö µ¥ÀÌÅ͸¦ Àü¼ÛÇÏ´Â °ÍÀÌ´Ù. osi ¸ðµ¨¿¡¼­ º¸¸é ¼¼¼Ç °èÃþ°ú Æ®·£½ºÆ÷Æ® °èÃþ¿¡ ÇØ´çÇÏ´Â ¿ªÇÒÀ» ÇÑ´Ù. tcp/ip ¼ÒÄÏ ºÎºÐÀÌ osi ¸ðµ¨ÀÇ ¼¼¼Ç °èÃþ¿¡ ÇØ´çµÈ´Ù. tcp/ip¿¡¼­´Â ½Ã½ºÅÛÀÇ ÁÖ¼Ò(address)¿Í Æ÷Æ®(port)¸¦ °¡Áö°í °¢ ÇÁ·Î¼¼½º¸¦ ¿¬°áÇØ¼­ Åë½ÅÀ» ÇÑ´Ù. osi ¸ðµ¨ÀÇ Æ®·£½ºÆ÷Æ®¿¡ ÇØ´çÇÏ´Â ºÎºÐÀº tcp/ip ÇÁ·ÎÅäÄÝ¿¡¼­ tcp ÇÁ·ÎÅäÄÝ¿¡ ÇØ´çÇÑ´Ù. tcp´Â ÆÐŶ¿¡ ¿¡·¯°¡ ¾ø°í, Áߺ¹µÊÀÌ ¾øÀÌ º¸³»¾îÁø ¼ø¼­´ë·Î »ó´ëÆíÀÌ ¹ÞÀ» ¼ö ÀÖµµ·Ï ½Å·Ú¼º ÀÖ´Â µ¥ÀÌÅÍ Àü¼ÛÀ» º¸ÀåÇÏ´Â ÇÁ·ÎÅäÄÝÀÌ´Ù. tcp´Â ½Å·Ú¼ºÀÌ ÀÖ´Â ¸¸Å­ Çì´õ¿¡ °¢Á¾ ¿¡·¯ Äڵ忡 ´ëÀÀÇÒ ¼ö ÀÖ´Â °¢Á¾ Á¤º¸¸¦ °¡Áö°í ÀÖ´Ù.

* internet layer

ÀÌ °èÃþÀÇ ¿ªÇÒÀº µ¥ÀÌÅͱ׷¥À» Á¤ÀÇÇÏ°í µ¥ÀÌÅͱ׷¥À» routingÇÏ´Â ÀÏÀ» ´ã´çÇÑ´Ù. ¸»ÀÌ Á¶±Ý ¾î·Æ±ä ÇÏÁö¸¸, ÀÌ °èÃþÀÇ ¿ªÇÒÀº ¾ÆÁÖ °£´ÜÇÑ °ÍÀÌ´Ù. Áï µ¥ÀÌÅ͸¦ Á¤È®ÇÑ °÷¿¡ º¸³»±â¸¸ ÇÏ¸é µÇ´Â °ÍÀÌ´Ù. ÀÌ °èÃþ¿¡¼­´Â µ¥ÀÌÅͱ׷¥À̶ó´Â ¿ë¾î¸¦ »ç¿ëÇϴµ¥, µ¥ÀÌÅͱ׷¥À̶ó°í ÇÏ´Â °ÍÀº ip ÇÁ·ÎÅäÄÝ¿¡¼­ ´Ù·ç´Â ÆÐŶ µ¥ÀÌÅ͸¦ ¸»ÇÑ´Ù.

µ¥ÀÌÅͱ׷¥ÀÌ °¡Áö°í ÀÖ´Â ÀÚ·á´Â º¸³½ ÁÖ¼Ò(source address), ¹ÞÀ» ÁÖ¼Ò(destination address), ±×¸®°í º¸³»´Â µ¥ÀÌÅÍ, ±×¿Ü ¸î°¡Áö Á¶Àý Çʵå(control field)¸¦ °¡Áö°í ÀÖ´Ù. ¸¶Ä¡ ÆíÁö¸¦ ºÎÄ¥ ¶§ º¸³»´Â ÁÖ¼Ò, ¹ÞÀ» ÁÖ¼Ò, ¹ÞÀ» »ç¶÷, ÆíÁö ³»¿ëÀ» º¸³»´Â °Í°ú À¯»çÇÏ´Ù.

ÀÎÅÍ³Ý °èÃþ¿¡¼­´Â µ¥ÀÌÅͱ׷¥ÀÌ °¡Áö°í ÀÖ´Â ÁÖ¼Ò¸¦ ÆÇµ¶ÇÏ°í ³×Æ®¿öÅ©¿¡¼­ ÁÖ¼Ò¿¡ ¸Â´Â ³×Æ®¿öÅ©¸¦ ã¾Æ°¡¼­ ÇØ´çµÇ´Â È£½ºÆ®°¡ µ¥ÀÌÅͱ׷¥À» ¹ÞÀ» ¼ö ÀÖµµ·Ï µ¥ÀÌÅͱ׷¥À» Àü¼ÛÇÑ´Ù. osi ¸ðµ¨¿¡¼­ º¸¸é ³×Æ®¿öÅ© °èÃþ°ú µ¥ÀÌÅÍ ¸µÅ© °èÃþ¿¡ ÇØ´çÇÑ´Ù.

* physical layer

¹°¸®Àû °èÃþ¿¡ ´ëÇÏ¿© tcp/ip ÇÁ·ÎÅäÄÝ¿¡ µû·Î Á¤ÀÇÇÑ ³»¿ëÀº ¾ø´Ù. ´ÜÁö ieee°¡ Á¤ÇسõÀº ±âÁ¸ÀÇ Çϵå¿þ¾î Ç¥ÁØÀ» µû¸£°í ÀÖ´Ù. º¸ÅëÀº µ¥ÀÌÅÍ Åë½Å¿¡¼­ ÀÌ¿ëµÇ´Â (ethernet)À» ÀÌ¿ëÇÑ´Ù. tcp/ip´Â À¯´Ð½º¸¦ ºñ·ÔÇØ¼­ À©µµ¿ì 95, À©µµ¿ì nt¿¡¼­ ±âº»ÀûÀ¸·Î Á¦°øµÇ¸ç, °¡Àå ³Î¸® ¾²ÀÌ´Â ÇÁ·ÎÅäÄÝÀ̰í, ±×¸¸Å­ ´Ù¾çÇÑ ¼­ºñ½º¸¦ °¡Áö°í ÀÖ´Â ÇÁ·ÎÅäÄÝÀ̱⵵ ÇÏ´Ù. ´Ù¾çÇÑ ¼­ºñ½º¸¦ Á¦°øÇϱâ À§ÇØ ¹öŬ¸® ¼ÒÄÏ, À©µµ¿ì ¼ÒÄÏ µî tcp/ip¿¡ °üÇÑ ¸¹Àº api¸¦ ¿øÇÑ´Ù.

½ÇÁ¦·Î´Â ¹Ýµå½Ã tcp/ip ÇÁ·ÎÅäÄÝÀ» »ç¿ëÇÏ´Â °ÍÀº ¾Æ´Ï´Ù. tcp ´ë½Å udp¸¦ »ç¿ëÇÒ ¼öµµ ÀÖÀ¸´Ï±î. ±×·±µ¥ ¿Ö ±×·¸°Ô ºÎ¸£´Â °ÍÀϱî? Ưº°ÇÑ ÀÌÀ¯´Â ¾ø´Ù. ´ÜÁö tcp¿Í ip¸¦ ´ëÇ¥ÀûÀ¸·Î ¸¹ÀÌ »ç¿ëÇϱ⠶§¹®¿¡ º¸Åë tcp/ip¶ó ºÎ¸¦ »ÓÀÌ´Ù.

tcp/ip ÁÖ¼Ò Ã¼°è

tcp/ip ÇÁ·ÎÅäÄÝ·Î ³×Æ®¿öÅ©°¡ ±¸ÃàµÇ¾î ÀÖ´Ù¸é °¢ ÄÄÇ»ÅÍ´Â ÀÚ½ÅÀ» ³ªÅ¸³»´Â ÁÖ¼Ò¸¦ °¡Áö°í ÀÖ¾î¾ß ÇÑ´Ù. °¢ ÄÄÇ»ÅÍ¿¡ ÁÖ¼Ò´Â Çϳª¸¸ ÀÖ¾î¾ß Çϰí ÀÌ·¯ÇÑ ÄÄÇ»Å͵éÀÌ ¿¬°áµÇ¾î ³×Æ®¿öÅ©°¡ ±¸¼ºµÇ°í Á¡Á¡ È®ÀåµÇ¾î¼­ Àü¼¼°èÀÇ ¼ö õ°³ÀÇ ´Ù¸¥ ³×Æ®¿öÅ©¸¦ ¿¬°áÇÏ´Â ÀÎÅͳÝÀÌ ±¸¼ºµÇ¾îÁø °ÍÀÌ´Ù.

À§¿¡¼­ ¼³¸íÇßµíÀÌ tcp/ip¿¡¼­ ipÀÇ ¿ªÇÒÀº µ¥ÀÌÅ͸¦ Àü¼ÛÇÏ´Â °ÍÀÌ´Ù. µ¥ÀÌÅ͸¦ Àü¼Û½ÃŰ·Á¸é ¹«¾ùÀÌ ÇÊ¿äÇÒ±î? ¸ÕÀú »ý°¢ÇÒ ¼ö ÀÖ´Â °ÍÀÌ µµÂøÇØ¾ß ÇÒ ½Ã½ºÅÛÀÇ ÁÖ¼ÒÀÌ´Ù. µµÂøÇÒ ½Ã½ºÅÛ ÁÖ¼Ò°¡ À¯ÀÏÇÑ °ÍÀÌ ¾Æ´Ï¶ó¸é Á¤¸» ¸»µµ ¾ÈµÇ´Â ÀÏÀÌ ¹ú¾îÁú °ÍÀÌ´Ù. °¢ ÄÄÇ»ÅÍÀÇ ip ÁÖ¼Ò´Â Àüü ³×Æ®¿öÅ©¸¦ ÅëÇØ¼­ À¯ÀÏÇØ¾ß¸¸ Çϱ⠶§¹®¿¡, ÁÖ¼Ò´Â Áߺ¹µÉ ¼ö ¾ø´Â 32ºñÆ® ¼ýÀÚ·Î ³ªÅ¸³»°í ÀÖ´Ù. ip ÁÖ¼Ò°¡ °¡Áö°í ÀÖ´Â Á¤º¸´Â ³×Æ®¿öÅ©¸¦ ³ªÅ¸³¾ ¼ö ÀÖ´Â ³×Æ®¿öÅ© Á¤º¸¿Í ±× ³×Æ®¿öÅ© ³»¿¡¼­ ƯÁ¤ ÄÄÇ»Å͸¦ °¡¸®Å³ ¼ö ÀÖµµ·Ï È£½ºÆ® Á¤º¸¸¦ ³ª´©¾î »ç¿ëÇÒ ¼ö ÀÖ°Ô ±¸¼ºµÇ¾î ÀÖ´Ù.

* ³×Æ®¿öÅ© Ŭ·¡½º

class

network id

host id(»ç¿ëÀ¯Àú¼ö)

a class

126

16,777,214

b class

16,382

65,534

c class

2,097,150

254

ip ÁÖ¼Ò¸¦ ÀÌ¿ëÇÒ °æ¿ì¿¡´Â ÁÖ¼Ò°¡ °¡¸£Å°´Â ½Ã½ºÅÛ »Ó¸¸ ¾Æ´Ï¶ó ±× ÄÄÇ»ÅͰ¡ ¼ÓÇØ ÀÖ´Â ³×Æ®¿öÅ©µµ Àüü ³×Æ®¿öÅ© »ó¿¡¼­ À¯ÀÏÇÏ°Ô Ç¥ÇöµÇ¾î¾ß ÇÑ´Ù. ip ÁÖ¼Ò´Â 3°¡Áö, Áï ³×Æ®¿öÅ©¸¦ ³ªÅ¸³»´Â ºÎºÐ°ú È£½ºÆ®¸¦ ³ªÅ¸³»´Â ºÎºÐ ±×¸®°í Ŭ·¡½º ºÐ·ù Á¤º¸ÀÇ ¼¼°¡Áö·Î ³ª´©¾î Áú ¼ö ÀÖ´Ù. ¼¼°è¿¡ ÆÛÁ®ÀÖ´Â ³×Æ®¿öÅ©´Â ¸¹Àº ÇÏÀ§ ³×Æ®¿öÅ©·Î ±¸¼ºµÇ¾î ÀÖ´Ù. ÀÌ·± °ÍÀ» ¼­ºê³×Æ®¿öÅ©(subnetwork)¶ó Çϴµ¥, °¢ ¼­ºê³×Æ®¿öÅ©¿¡´Â Àû°Ô´Â Çϳª ¾Æ´Ï¸é ¾ÆÁÖ ¸¹Àº ¼öÀÇ È£½ºÆ®¸¦ °¡Áö°í ÀÖÀ» ¼öµµ ÀÖ´Ù.

³×Æ®¿öÅ©¸¶´Ù ÄÄÇ»ÅÍ ½Ã½ºÅÛÀÇ °³¼ö°¡ ´Ù¸£±â ¶§¹®¿¡ À̸¦ È¿°úÀûÀ¸·Î ÀÌ¿ëÇϱâ À§Çؼ­ ³×Æ®¿öÅ© id¿Í È£½ºÆ® id¸¦ ±¸ºÐÇÏ´Â À§Ä¡¸¦ ¹Ù²Ù¾î °¡¸é¼­ ÀνÄÇÏ´Â ¹æ¹ýÀ» »ç¿ëÇÏ°Ô µÈ´Ù. ±×·¡¼­ Ŭ·¡½º¶ó´Â °³³äÀÌ »ý°Ü³ª°Ô µÇ¾ú´Ù. ³×Æ®¿öÅ© id¿Í È£½ºÆ® id´Â »ó´ëÀûÀÎ °ªÀÌ´Ù. ³×Æ®¿öÅ© id°¡ Ä¿Áö´Â ¸¸Å­ ÁöÁ¤ÇÒ ¼ö Àִ ȣ½ºÆ®ÀÇ °³¼ö´Â ÁÙ¾îµéÁö¸¸ ÀüüÀûÀ¸·Î ¸¹Àº ³×Æ®¿öÅ© id¸¦ ºÎ¿©ÇÒ ¼ö ÀÖ´Â °ÍÀÌ´Ù. ¹Ý´ë·Î ³×Æ®¿öÅ© id°¡ ÀÛ¾ÆÁö¸é ±²ÀåÈ÷ ¸¹Àº È£½ºÆ®¸¦ °¡Áú ¼ö ÀÖ°Ô µÈ´Ù.

ÀÌ·± ±âÁØÀ¸·Î ip ÁּҴ Ŭ·¡½º·Î ºÐ·ùµÇ¾î ÀÖ°í ±× ±âÁØÀº ¸î ºñÆ®³ª ³×Æ®¿öÅ© id¿¡ ÇÒ´çÇÏ´À³Ä ¶Ç´Â È£½ºÆ® id¿¡ ÇÒ´çÇÏ´À³Ä¿¡ µû¶ó ³ª´©¾îÁø´Ù. ip ÁÖ¼Ò´Â 5°³ÀÇ Å¬·¡½º·Î ³ª´©¾îÁö°í ÀϹÝÀûÀÎ ¸ñÀûÀ¸·Î »ç¿ëÇÏ´Â °ÍÀº Ŭ·¡½º a, b, cÀ̸ç Ŭ·¡½º d, e´Â ´Ù¸¥ ¿ëµµ·Î »ç¿ëÇÒ ¸ñÀûÀ¸·Î ³²°ÜµÎ°í ÀÖ´Â °ÍÀÌ´Ù. °¢ Ŭ·¡½ºÀÇ ±¸ºÐÀº ip ÁÖ¼ÒÀÇ Ã³À½ ¸î ºñÆ®¸¸ °Ë»çÇØ º¸¸é ¾Ë ¼ö ÀÖ´Ù.

class

»óÀ§ 4 ºñÆ®

³×Æ®¿öÅ© idÀÇ ¹üÀ§

È£½ºÆ® idÀÇ ¹üÀ§


0

1

2

3

ÃÖ¼Ò°ª

ÃÖ´ë°ª

ÃÖ¼Ò°ª

ÃÖ´ë°ª

a

0

-

-

-

0.0.0.0

127.0.0.0

0.0.0

255.255.255

b

1

0

-

-

128.0.0.0

191.255.0.0

0.0

255.255

c

1

1

0

-

192.0.0.0

223.255.255.0

0

255

d

1

1

1

0

224.0.0.0

239.255.255.255

¹Ì»ç¿ë

¹Ì»ç¿ë

e

1

1

1

1

240.0.0.0

255.255.255.255

¹Ì»ç¿ë

¹Ì»ç¿ë

ÀÌ·¸°Ô ip ÁÖ¼Ò¸¦ ´Ù¾çÇÏ°Ô Á¤ÇÏ´Â °ÍÀÌ ÁÁÁö¸¸ »ç¿ëÇÒ ¶§´Â ¾î¶»°Ô ÀÌ¿ëÇÏ´ÂÁö Àǹ®ÀÌ »ý±æ °ÍÀÌ´Ù. ´©±¸µµ ÀÌ·± ÇüÅÂÀÇ ÁÖ¼Ò¸¦ ÇϳªÇϳª ±â¾ïÇÒ ¼ö ÀÖ´Â »ç¶÷Àº ¾øÀ» »Ó¸¸ ¾Æ´Ï¶ó ±×·² Çʿ䵵 ¾ø´Ù. ½ÇÁ¦·Î ip ÁÖ¼Ò´Â ÀÌ·± º¹ÀâÇÑ ºñÆ®·Î ³ªÅ¸³»´Â °ÍÀÌ ¾Æ´Ï°í °¡¿îµ¥ Á¡À» ±âÁØÀ¸·Î 4°³ÀÇ ½ÊÁø¼ö·Î ³ªÅ¸³½´Ù. ¿©±â¼­ ¸»ÇÏ´Â ½ÊÁø¼ö´Â 0~255±îÁöÀÇ ¹üÀ§¸¦ °®´Â ¼ýÀÚ, Áï, 1¹ÙÀÌÆ® °ªÀ» ¸»ÇÑ´Ù. °¢ ½ÊÁø¼ö °ªÀº ip ÁÖ¼Ò¿¡¼­ 8ºñÆ®¸¦ ³ªÅ¸³»°í, ÀÌ·± 8ºñÆ® ¼ýÀÚ 4°³ÀÇ °ªÀ» ¸ð¾Æ¼­ 32ºñÆ®ÀÇ ip ÁÖ¼Ò¸¦ ¸¸µé¾î ³»´Â °ÍÀÌ´Ù.

* ip ÁÖ¼Ò¿Í À̸§

»ç¶÷ÀÌ ip ÁÖ¼Ò ÇÑ µÎ °³¸¦ ±â¾ïÇÒ ¼ö ÀÖÀ»Áö´Â ¸ð¸£Áö¸¸ ±× ÀÌ»óÀº Èûµé´Ù. ÀÌ·¸°Ô ´ÜÁö ½ÊÁø¼ö·Î¸¸ ÀÌ·ç¾îÁø ÁÖ¼Ò Ã¼°è´Â »ç¶÷ÀÌ ±â¾ïÇϰųª ÇÑ ¹ø º¸°í ¹Ù·Î ¹Þ¾ÆµéÀ̱â Èûµç ºÎºÐÀÌ´Ù. ±×·¡¼­ ÀÌ·¯ÇÑ ¼ýÀÚ·Î ip ÁÖ¼Ò¿Í ÀǹÌÀÖ´Â ¹®ÀÚ¿­À» ¿¬°á½ÃŰ´Â ¹æ¹ýÀ» ã°Ô µÇ¾ú´Ù. ³×Æ®¿öÅ©°¡ ¿¬°áµÇ¾î ÀÖ´Â ÄÄÇ»ÅÍ¿¡´Â È£½ºÆ® ÆÄÀÏÀ» °¡Áö°í ÀÖ´Ù. ÀÌ ÆÄÀÏÀº ´Ü¼øÇÑ ÅØ½ºÆ® ÆÄÀÏ·Î ±¸¼ºµÇ¾î ÀÖ°í È£½ºÆ® ÆÄÀÏÀÇ °¢ ¶óÀÎÀ» º¸¸é ¿ÞÆí¿¡´Â Á¡À» ±âÁØÀ¸·Î ½ÊÁø¼ö·Î Ç¥½ÃµÈ ip ÁÖ¼Ò°¡ ÀÖ°í ¿À¸¥Æí¿¡´Â ¹®ÀÚ¿­ À̸§ÀÌ ÀÖ´Ù. ÀÌ ÆÄÀÏ À̸§Àº º¸Åë hosts·Î µÇ¾î ÀÖ´Ù. ÀÌ·¯ÇÑ ±¸Á¶´Â ¸î ´ë ¾ÈµÇ´Â ½Ã½ºÅÛÀ¸·Î ÀÌ·ç¾îÁø ³×Æ®¿öÅ©¿¡¼­´Â ÁÁÀ»Áö ¸ð¸£Áö¸¸ ¸¹Àº È£½ºÆ®¸¦ °¡Áö°í ÀÖÀ» °æ¿ì¿¡´Â ÀÌ ¸ðµç °ÍÀ» ÇϳªÀÇ ÆÄÀÏ·Î ´Ù·é´Ù´Â °ÍÀº ¹«¸ðÇÑ ÀÏÀÌ´Ù. ÀÌ·¯ÇÑ »óȲ¿¡¼­´Â ³×ÀÓ ¼­¹ö(name server)¸¦ ÀÌ¿ëÇÏ°Ô µÈ´Ù. ³×ÀÓ ¼­¹ö´Â È£½ºÆ® À̸§°ú ip ÁÖ¼Ò¿¡ °üÇÑ µ¥ÀÌÅͺ£À̽º¸¦ °¡Áö°í ÀÖÀ¸¸é¼­ ¿øÇÏ´Â Á¤º¸¸¦ ã¾ÆÁÖ´Â ½Ã½ºÅÛÀ̶ó ÇÒ ¼ö ÀÖ´Ù. ¿ì¸®°¡ ¾î¶² È£½ºÆ® À̸§À» ÁÖ°í ip ÁÖ¼Ò¸¦ ¾ò±â¸¦ ¿øÇÑ´Ù¸é ³×ÀÓ¼­¹ö°¡ ¹Þ¾Æ¼­ µ¥ÀÌÅͺ£À̽º¸¦ ã¾Æº¸°Ô µÈ´Ù. ¿ì¸®°¡ ÀÌ·¯ÇÑ ºÎºÐÀ» ´Ù ¾Ë¾Æ¼­ ó¸®ÇØ¾ß ÇÏ´Â °ÍÀº ¾Æ´Ï´Ù. µÚ¿¡¼­ ¼Ò°³ÇÒ À©¼Ó º¯È¯ ÇÔ¼ö¿¡¼­ ´Ù ó¸®ÇØ ÁØ´Ù.

* Æ®·£½ºÆ÷Æ® °èÃþ(transport layer)

ip°¡ µ¥ÀÌÅͱ׷¥À» ¾òÀº ÈÄ ÁÖ¼Ò¸¦ ¾ò¾î³»°í ÄÄÇ»ÅÍ¿Í ÄÄÇ»ÅÍ »çÀ̸¦ À̵¿ÇÏ´Â ¿ªÇÒÀ» ÇÑ´Ù¸é Æ®·£½ºÆ÷Æ® °èÃþÀº µ¥ÀÌÅͰ¡ µµÂøÇØ¾ß ÇÒ ÄÄÇ»ÅÍ·Î µ¥ÀÌÅ͸¦ ½ÇÁ¦·Î Àü¼ÛÇÏ´Â ¿ªÇÒÀ» ÇÑ´Ù. ÀÌ °èÃþ¿¡´Â tcp, udp¶ó´Â 2°³ÀÇ ÇÁ·ÎÅäÄÝÀ» °¡Áö°í ÀÖ´Ù. ÀÌ 2°³ÀÇ ÇÁ·ÎÅäÄÝÀÇ Â÷ÀÌ´Â udp´Â ºñ¿¬°áÇü(connectionless)À¸·Î µ¥ÀÌÅͱ׷¥À» Àü¼ÛÇϰí tcp´Â ¿¬°áÇü(connect-oriented)À» Áö¿øÇϸ鼭 ½ºÆ®¸² ÇüÅÂÀÇ µ¥ÀÌÅ͸¦ ¿¡·¯¾øÀÌ Àü¼ÛÇϵµ·Ï Áö¿øÇÑ´Ù.

tcp´Â µ¥ÀÌÅ͸¦ Áߺ¹°ú ¿¡·¯¾øÀÌ ¼ø¼­´ë·Î º¸³»µµ·Ï ÇØÁÖÁö¸¸ ÀÌ·¯ÇÑ Æ¯¼º ¶§¹®¿¡ ¸î °¡Áö Çì´õ°¡ ´õ ÇÊ¿äÇÏ°í ½Ã½ºÅÛ °£ÀÇ ¿¬°áÀ» °è¼Ó À¯ÁöÇØ¾ß ÇÏ´Â ºÎ´ãÀ» °¡Áö°í ÀÖ´Ù.

udp´Â ³×Æ®¿öÅ©¿¡¼­ ÃÖ¼ÒÀÇ ºÎ´ãÀ¸·Î µ¥ÀÌÅ͸¦ Àü¼ÛÇϴµ¥ ÀÌ¿ëµÈ´Ù. ´ë½Å tcp°¡ °¡Áö°í ÀÖ´Â ¸ðµç ½Å·Ú¼ºÀÌ ¹«³ÊÁø´Ù. Áï ÆÐŶÀÌ Àü¼ÛµÇÁö ¾Ê°Å³ª ÆÐŶÀÌ Áߺ¹µÇ¼­ Àü¼ÛµÉ ¼öµµ Àֱ⠶§¹®¿¡ ¾ÈÁ¤¼ºÀÌ ¶³¾îÁö´Â ´ÜÁ¡ÀÌ ÀÖ´Ù.

* ÀÎÅÍ³Ý °èÃþ(internet layer)

µ¥ÀÌÅͱ׷¥À» Á¤ÀÇÇϰí ÀÌ µ¥ÀÌÅ͵éÀÇ routing¸¦ ´ã´çÇÑ´Ù. ip´Â tcp/ip¿¡¼­ Áß¿äÇÑ ÇÁ·ÎÅäÄÝÀÌ´Ù. ip´Â ´Ù¸¥ tcp/ip ÇÁ·ÎÅäÄݵµ »ç¿ëÇÏ°í µ¥ÀÌÅÍÀÇ È帧À» °ü¸®ÇÏ´Â ¿ªÇÒÀ» ÇÑ´Ù.

ip´Â ºñ¿¬°áÇü(connectionless) ÇÁ·ÎÅäÄÝÀ̾ µ¥ÀÌÅÍ Àü¼Û¿¡ ½Å·Úµµ°¡ ¾ø´Ù. ±×·¡¼­ tcp¶ó´Â ´Ù¸¥ °èÃþ¿¡ µ¥ÀÌÅÍÀÇ ½Å·Úµµ¸¦ ÀÇÁ¸ÇÏ°Ô µÈ´Ù. ip¿¡¼­ ´Ù·ç°í ÀÖ´Â °ÍÀº µ¥ÀÌÅͱ׷¥À̰í ÀÌ¹Ì ¸»ÇßµíÀÌ µ¥ÀÌÅͱ׷¥Àº º¸³¾ ÁÖ¼Ò, ¹ÞÀ» ÁÖ¼Ò, µ¥ÀÌÅÍ ¹× ±âŸ Çʵ带 °¡Áö°í ÀÖ´Ù. ³×Æ®¿öÅ©¸¦ µ¹¾Æ ´Ù´Ï´Â µ¥ÀÌÅÍ´Â µ¥ÀÌÅͱ׷¥ ¼öÁØ¿¡¼­ ÀÌ·ç¾îÁø´Ù. µ¥ÀÌÅÍ´Â ¶§·Î ºÐÇÒ(fragmentation)°ú Á¶ÇÕ(resemble) °úÁ¤À» °ÅÄ¡±âµµ Çϴµ¥ ÀÌ ¿ªÇÒ ¿ª½Ã ip°¡ ÇØÁÖ¾î¾ß ÇÏ´Â ÀÏÀÌ´Ù.

arp(address resolution protocol)´Â ³×Æ®¿öÅ© Çϵå¿þ¾î°¡ ip ÁÖ¼Ò¸¦ ÀÌÇØÇÏÁö ¸øÇϱ⠶§¹®¿¡ »ý±ä ÇÁ·ÎÅäÄÝ·Î arp´Â ³í¸®ÀûÀÎ ip ÁÖ¼Ò¸¦ ¹°¸®ÀûÀÎ ÁÖ¼Ò(mac address; media access control address)¿Í ¸ÂÃß±â À§ÇÑ ÇÁ·ÎÅäÄÝÀÌ´Ù. ip ÁÖ¼Ò¸¦ ºê·Îµåij½ºÆÃ ¸Þ½ÃÁö(broadcasting message)·Î º¸³»¸é ÇØ´ç ip ÁÖ¼Ò¸¦ °¡Áö°í ÀÖ´Â ÄÄÇ»ÅÍ´Â ¹°¸®ÀûÀÎ Çϵå¿þ¾î ÁÖ¼Ò¸¦ ¸®ÅÏÇÏ°Ô µÈ´Ù. ÇØ´çµÇÁö ¾ÊÀº ÄÄÇ»ÅͰ¡ ÀÌ ¸Þ½ÃÁö¸¦ ¹Þ¾ÒÀ» °æ¿ì¿¡´Â ¸ðµÎ ¹«½ÃÇÏ°Ô µÈ´Ù.

ÀÌ·¯ÇÑ ÀÛ¾÷Àº ¸ðµÎ ·ÎÄà ³×Æ®¿öÅ©¿¡¼­¸¸ ÀÌ·ç¾îÁø´Ù. °Å²Ù·Î ã¾Æ°¡´Â ÇÁ·ÎÅäÄÝÀÎ rarp(reverse address resolution protocol)µµ ÀÖ´Ù.

* icmp(internet control message protocol)

tcp/ip¿¡¼­ µ¥ÀÌÅÍÀÇ È帧 Á¶Àý, ¿¡·¯ º¸°í, routing µî ±âŸ ´Ù¸¥ Á¤º¸¸¦ ±¸ÇÏ´Â ±â´ÉÀ» Çϴµ¥ »ç¿ëÇÑ´Ù. ÀÌ·¯ÇÑ icmp¸¦ »ç¿ëÇÏ´Â ÇÁ·Î±×·¥ Áß ´ëÇ¥ÀûÀÎ °ÍÀÌ icmpÀÇ ¿¡ÄÚ¸¦ º¸³»°í ¹ÝÀÀÀÌ ¿À´ÂÁö ¾È ¿À´ÂÁö¸¦ ÀÌ¿ëÇØ¼­ »ó´ëÆí ½Ã½ºÅÛÀÌ »ç¿ë °¡´ÉÇÑÁö ¾Ë¾Æ³»´Â ping ÇÁ·Î±×·¥ÀÌ´Ù.

* tcp/ip ÀÀ¿ë °èÃþ(application layer)

tcp/ip ÇÁ·ÎÅäÄÝÀ̶ó´Â ¸»ÀÇ Àǹ̴ ip¸¦ ºñ·ÔÇØ¼­ tcp¿Í À̵éÀ» »ç¿ëÇØ¼­ ¼­ºñ½º¸¦ Á¦°øÇÏ´Â ÀÀ¿ë °èÃþÀÇ ÇÁ·ÎÅäÄÝÀ» Æ÷ÇÔÇϰí ÀÖ´Ù. tcp/ipÀÇ ÀÀ¿ë¿¡ ÇØ´çÇÏ´Â ÇÁ·ÎÅäÄÝ¿¡´Â telnet, ftp, smtp, tftp, http µîÀÌ ÀÖ´Ù. ÀÀ¿ë ÇÁ·ÎÅäÄÝ Áß¿¡¼­ ÀÏ¹Ý »ç¿ëÀÚ°¡ °¡Àå ¸¹ÀÌ »ç¿ëÇÏ´Â °ÍÀÌ telnet, ftp, smtp ÀÏ °ÍÀÌ´Ù.

telnet ÇÁ·ÎÅäÄÝ(telnet ¸í·ÉÀ¸·Î ½ÇÇà)Àº Åë½Å¸Á¿¡¼­ ¼­·Î ´Ù¸¥ ±âÁ¾ÀÇ ÄÄÇ»ÅÍ¿¡ Á¢¼ÓÇϰí ÀÌ¿ëÇÒ ¼ö ÀÖµµ·Ï ÇØÁÖ´Â ÇÁ·ÎÅäÄÝÀÌ´Ù. ftp ÇÁ·ÎÅäÄÝ(ftp ¸í·ÉÀ¸·Î ½ÇÇà)Àº Åë½Å¸Á¿¡¼­ ¿¬°áµÈ ´Ù¸¥ ÄÄÇ»ÅÍ¿¡¼­ ÆÄÀÏÀ» ÀÐ°í ¾²´Â µî ÆÄÀÏ Àü¼Û¿¡ °üÇÑ ÇÁ·ÎÅäÄÝÀÌ´Ù. smtp(mail ¸í·ÉÀ¸·Î ½ÇÇà)´Â Åë½Å¸Á¿¡¼­ ´Ù¸¥ »ç¿ëÀÚ¿Í ÀüÀÚ ¿ìÆíÀ» ÁÖ°í ¹Þ´Âµ¥ »ç¿ëµÇ´Â ÇÁ·ÎÅäÄÝÀÌ´Ù. http´Â ³×Æ®¿÷À» ÅëÇÏ¿© À¥ ÆäÀÌÁö¸¦ Àü´ÞÇÏ´Â ÇÁ·ÎÅäÄÝÀÌ´Ù. À̿ܿ¡µµ telnet°ú ºñ½ÁÇÑ ¿ªÇÒÀ» ÇÏÁö¸¸ À¯´Ð½º ±âÁ¾ °£¿¡ »ç¿ëÇÏ´Â rloginµµ ÀÖ´Ù.

ÀÌ·± ÇÁ·ÎÅäÄÝÀ» Áö¿øÇÏ·Á¸é, ¼­¹ö ÄÄÇ»ÅÍ¿¡¼­µµ ÀÌ·± ÇÁ·ÎÅäÄÝÀ» ¼­¹ö·Î ´ëÄ¡ÇÏ´Â ÇÁ·Î±×·¥ÀÌ ÀÖ¾î¾ßÇϴµ¥, º¸Åë µ¥¸ó(daemon)À̶ó°í ÇÑ´Ù. ÀÌ ÇÁ·Î±×·¥ µÚ¿¡´Â d¸¦ µ¡ºÙ¿©¼­ telnetd, ftpd¶ó´Â À̸§À» °®´Â´Ù.

¼­ºñ½º À̸§

Æ÷Æ® ¹øÈ£

ÇÁ·ÎÅäÄÝ

º°Äª

echo

7

tcp


echo

7

udp


discard

9

tcp

sinknull

discard

9

udp

sinknull

systat

11

tcp


systat

11

tcp

users

daytime

13

tcp


daytime

13

udp


netstat

15

tcp


qotd

17

tcp

quote

qotd

17

udp

quote

chargen

19

tcp

ttytst source

chargen

19

udp

ttytst source

ftp-data

20

tcp


ftp

21

tcp


telnet

23

tcp


smtp

25

tcp

mail

ÀÌó·³ ÇϳªÀÇ ¼­ºñ½º¸¦ Á¦°øÇϱâ À§Çؼ­ Ŭ¶óÀÌ¾ðÆ®¸¦ ±â´Ù¸®°í ÀÖ´Â ¼­¹ö ÇÁ·Î±×·¥ Áï, µ¥¸óÀÌ ÇÊ¿äÇÏ´Ù. ÀÌ·¯ÇÑ °ü°è¸¦ Ŭ¶óÀ̾ðÆ®/¼­¹ö¶ó°í ÇÑ´Ù.

* tcp/ip ÇÁ·ÎÅäÄÝÀÇ ÀÌ¿ë

tcp/ip ÇÁ·ÎÅäÄÝÀ» °¡Àå Àß ÀÌ¿ëÇϰí ÀÖ´Â °÷ÀÌ ÀÎÅͳÝÀÌ´Ù. À§¿¡¼­ ÀÎÅͳÝÀÇ °³³äÀº ¿©·¯ °¡Áö Àǹ̷Π»ç¿ëµÇ°í Àִµ¥, ¾Õ¿¡¼­ ¾ð±ÞÇß´ø ¹Ù¿Í °°ÀÌ tcp/ip¸¦ ÀÌ¿ëÇØ¼­ ¿¬°áµÇ¾îÁø ³×Æ®¿öÅ©ÀÇ ¿¬ÇÕü¶ó°í Ç¥ÇöÇÏ´Â °ÍÀÌ ¸Â´Ù. ¿ì¸®´Â ÀÎÅͳݻ󿡼­ ³Ý½ºÄÉÀÌÇÁ¶óµçÁö, ftp¸¦ ÀÌ¿ëÇØ¼­ ¿©·¯ °÷À» µ¹¾Æ´Ù´Ï¸é¼­ ´Ù¾çÇÑ Á¤º¸¸¦ ¾ò¾î¿À°í ÀÖ´Ù. ÀÚ¿¬½º·´°Ô tcp/ip¸¦ ÀÌ¿ëÇϰí ÀÖ´Â °ÍÀÌ´Ù. Á¶±ÝÀº ´Ù¸¥ À̾߱Ⱑ µÉÁöµµ ¸ð¸£°ÚÁö¸¸ ÀÎÅͳݿ¡ Á¢¼ÓÇÏ´Â ¹æ¹ýÀ» Àá±ñ »ìÆìº¸ÀÚ. ´ëÇÐÀ̳ª ¿¬±¸¼Ò, ȸ»çÀÇ °æ¿ì¿¡´Â atm,fddi ,fast ethernet,ethernetµîÀÇ ´Ù¾çÇÑ ±Ù°Å¸®¸Á(lan)À» ÀÚüÀûÀ¸·Î ¹Ì¸® ±¸ÃàÇϰí Á÷Á¢ ÀÎÅͳݿ¡ ¿¬°áÇÏ¿© »ç¿ëÇÏ´Â °ÍÀÌ º¸ÅëÀÌ´Ù. ÀÚ±â pc¿¡¼­ tcp/ip¸¦ ±¸ÃàÇϰí ÀÖÀ¸¸é ppp¸¦ ÀÌ¿ëÇÏ¿© telnet, ftp¿Í °°Àº ÀÀ¿ë ÇÁ·Î±×·¥À» ÀÌ¿ëÇØ¼­ ¿ÜºÎ·Î ³ª°¥ ¼ö ÀÖÀ¸¸ç ³Ý½ºÄÉÀÌÇÁ¸¦ ÅëÇØ¼­ ´Ù¸¥ ³ª¶óÀÇ À¥ »çÀÌÆ®¸¦ ãÀ» ¼ö ÀÖ°Ô µÈ´Ù. ¸¸¾à Áý¿¡¼­ ÀüÈ­¼±°ú °°Àº ½Ã¸®¾ó ¶óÀÎÀ» ÀÌ¿ëÇØ¼­ ÀÎÅͳݿ¡ ¿¬°áÇÏ·Á¸é slip(serial line internet protocol)À» ÀÌ¿ëÇϰųª ppp(point-to-point protocol)¸¦ ÀÌ¿ëÇØ¾ß ÇÑ´Ù. À̵éÀº ½Ã¸®¾ó Åë½Å¿¡¼­ tcp/ip¸¦ »ç¿ëÇÒ ¼ö ÀÖµµ·Ï ¸¸µé¾îÁø ÇÁ·ÎÅäÄÝÀÌ´Ù. ÀÌ·¸°Ô µÇ¸é, ÀÎÅͳݿ¡ ¿¬°áÀÌ °¡´ÉÇÑ È£½ºÆ®¿Í ¿¬°áµÈ ¸ðµ©, ppp¸¸ ÀÖÀ¸¸é Áý¿¡¼­µµ ÄÄÇ»Å͸¦ ÀÌ¿ëÇØ¼­ ÀÎÅͳÝÀÇ ¼¼°è·Î Á÷Á¢ ¿¬°áÀÌ °¡´ÉÇÏ´Ù.

* Æ÷Æ® ¹øÈ£(port number)

ÀÎÅͳݿ¡¼­ µÎ °³ÀÇ ¼­·Î ´Ù¸¥ È£½ºÆ® »çÀ̸¦ ±¸ºÐÇÒ ¼ö ÀÖµµ·Ï ÇØ ÁØ °ÍÀº °¢ È£½ºÆ®°¡ °¡Áö°í ÀÖ´Â ÀÎÅÍ³Ý ÁÖ¼ÒÀÌ´Ù. ÀÌ·¸°Ô ¿øÇÏ´Â ÁÖ¼Ò·Î Àß µµÂøÇÑ µ¥ÀÌÅͰ¡ È£½ºÆ® ³»¿¡¼­ °¡¾ßÇÒ °÷À» Á¤ÇÏ´Â °ÍÀÌ ¹Ù·Î Æ÷Æ® ¹øÈ£ÀÌ´Ù. À̰ÍÀº ¹Ù·Î È£½ºÆ® ³»¿¡¼­ ´ÙÁß ÇÁ·Î¼¼½º¿¡ ´ëÇÑ Ã³¸®ÀÌ´Ù. Æ÷Æ® ¹øÈ£¸¦ »ç¿ëÇÏ´Â °÷Àº Æ®·£½ºÆ÷Æ® °èÃþÀÇ tcp ¹× udpÀÌ´Ù. tcp¿Í udp´Â Æ÷Æ® ¹øÈ£¸¦ ÀÌ¿ëÇØ¼­ Àü¼ÛµÈ µ¥ÀÌÅ͸¦ ÇØ´ç ÇÁ·Î¼¼½º¿¡ Á¤È®È÷ ³Ñ°ÜÁØ´Ù. ÇϳªÀÇ ÇÁ·Î¼¼½º´Â ¿©·¯ °³ÀÇ Æ÷Æ® ¹øÈ£¸¦ µ¿½Ã¿¡ »ç¿ëÇÒ ¼ö ÀÖ°í ¶§·Î´Â °øÀ¯Çϱ⵵ ÇÑ´Ù. Æ÷Æ® ¹øÈ£ ÇʵåÀÇ ±æÀÌ´Â 2¹ÙÀÌÆ®·Î Ç¥ÇöµÇ¸ç, 65536±îÁöÀÇ Æ÷Æ® ¹øÈ£¸¦ °¡Áö°í ÀÖ°í °°Àº Æ÷Æ® ¹øÈ£¸¦ °¡Áö°í ÀÖ´õ¶óµµ ´Ù¸¥ ¿ªÇÒÀ» ÇÑ´Ù. Àß ¾Ë·ÁÁø Æ÷Æ® ¹øÈ£´Â À§¿Í °°´Ù. ¿ì¸®°¡ ¼­¹ö¸¦ ¿î¿µÇÒ ¶§ ¾ê±âÇÏ´Â port¶ó´Â °ÍÀº ÀÌ·¸µí osi 7 layer°¡ ±× ±Ù°£À» ÀÌ·ç°í ÀÖ´Ù´Â »ç½ÇÀ» ¾Ë¾Æ¾ß ÇÒ °ÍÀÌ´Ù. ÀÌ·¸µí osi 7 layer´Â ³×Æ®¿÷ÀÇ ±âº»ÀÌÀÚ ÀÎÅͳÝÀÇ ±âº»ÀÌ¸ç ¼­¹ö ¿î¿µ¿¡ ÇÊ¿äÇÑ °¢Á¾ demonµéÀÇ ÀüÁ¦°¡ µÇ´Â ¿ä¼ÒÀÌ´Ù. ÀÌ»óÀ¸·Î °£´ÜÇÏ°Ô osi 7 layer ¿Í tcp/ipÀÇ ±¸Á¶¿¡ ´ëÇØ¼­ °£´ÜÇÏ°Ô ¾Ë¾Æ º¸¾Ò´Ù.

³×Æ®¿÷ÀÇ ÇüÅÂ

lan¿¡ ´ëÇÏ¿©

lanÀº local area networkÀÇ ¾à¾î·Î½á ÀϹÝÀûÀ¸·Î ¼Ò±Ô¸ðÀÇ ³×Æ®¿÷À» ÁöĪÇÒ ¶§ »ç¿ëÇÏ´Â ¿ë¾îÀÌ´Ù. ·£ÀÇ ÃâÇöÀº tcp/ipÀÇ ÃâÇö°ú ¸¶Âù°¡Áö·Î ±× ¿ª»ç°¡ ÀÖ´Ù. 1960,70³â´ëÀÇ ÄÄÇ»ÅÍ È¯°æÀº ´ë¿ë·®ÀÇ Àϰýó¸® ¹æ½ÄÀÌ ¾ÐµµÇÏ´Â batch processing,time sharing(´ëÈ­½Äó¸®)ÀÌ ÁÖ·ù¸¦ ÀÌ·ç¾ú´Ù. Áï, ´ëÇü ÄÄÇ»ÅͰ¡ Áß½ÉÀÌ µÇ´Â ÄÄÇ»ÅÍ È¯°æÀ̾ú´Ù. ±×·¯´ø °ÍÀÌ 70³â´ë ÈÄ¹Ý µé¾î¼­ ±Þ¼ÓÈ÷ º¸±ÞµÇ±â ½ÃÀÛÇÑ Àú°¡ÀÇ ¹Ì´Ï ÄÄÇ»ÅÍÀÇ µîÀåÀ¸·Î ÀÎÇÏ¿© ±âÁ¸ÀÇ È£½ºÆ® Áß½ÉÀÇ ¿¬±¸È¯°æÀÌ º¸´Ù ´Ù¾çÇØÁö°í »ç¿ëºÐ¾ß ¶ÇÇÑ Á¡Â÷·Î ´Ã¾î³ª°Ô µÇ¾ú´Ù. Áï, Ŭ¶óÀÌ¾ðÆ® È¯°æÀ¸·Î ±× Áß½ÉÀÌ ¼­¼­È÷ À̵¿Çϱ⠽ÃÀÛÇß´Ù.

1980³â ÀÌÈÄ ÀÌ·¯ÇÑ ¹Ì´Ï±Þ ÄÄÇ»ÅÍÀÇ ¿µ¿ªÀº »çȸ Àü ºÐ¾ß¿¡ °ÉÃļ­ È®´ëµÇ±â ½ÃÀÛÇß´Ù. ÀÏ¹Ý ±â¾÷»Ó¸¸ ¾Æ´Ï¶ó °ü°ø¼­,±º,±³À°±â°ü,ÀÏ¹Ý »ç¿ëÀڵ鿡°Ô ±× ¹üÀ§°¡ È®ÀåµÇ¾ú´ø °ÍÀÌ´Ù. À̰ÍÀº °³Àοë ÄÄÇ»ÅÍ È¯°æÀÇ »ç¿ëÀڵ鿡°Ô ¶Ç´Ù¸¥ ¿ä±¸ »çÇ×À» ¸¸µé¾î³»°Ô µÇ¾ú´Ù. ±×°ÍÀº ¹Ù·Î °øÅëÀÇ db¿¡ Á¢±ÙÇÏ¿© ¼­·ÎÀÇ Á¤º¸¸¦ °øÀ¯ÇÏ°í ³ª´­¼ö Àֱ⸦ ¹Ù·Î´Â ¿ä±¸¿´´Ù. À̰ÍÀÌ ¹Ù·Î ·£ÀÇ ÃâÇö ¹è°æÀÌ´Ù. 1982³â ieee¿¡ ÀÇÇØ ÃßÁøµÈ lan Ç¥ÁØÈ­ ¾È¿¡ ÀÇÇÏ¿© °¢ ȸ»ç¸¶´Ù Á¦°¢°¢À̾ú´ø ·£ Á¦Ç°µéÀº ȣȯ¼ºÀ» °¡Áö°Ô µÇ¾ú°í À̷κÎÅÍ ·£Àº ±Þ¼ÓÈ÷ ¹ßÀüÀ» ÇÏ°Ô µÇ¾ú´Ù.

lanÀÇ Á¾·ù¿¡ ÀÇÇÑ ºÐ·ù

1) ¸Á¿¡ ÀÇÇÑ ºÐ·ù

ethernet and ieee 802.3 -

ethernet °ú ieee 802.3Àº °ÅÀÇ µ¿ÀÏÇÑ lan protocol·Î ethernetÀ̶ó°í ºÎ¸¥´Ù. ethernetÀº »ç¹«½Ç¿¡¼­ °¡Àå ¸¹ÀÌ ¾²À̰í ÀÖ´Â lan protocol·Î µ¥ÀÌŸÀü¼Û¼Óµµ´Â 10mbps ±îÁö Áö¿øµÈ´Ù. ÀÌ·¯ÇÑ ethernetÀº 3°¡Áö ÇüÅÂÀÇ ÄÉÀÌºí¹æ½ÄÀÌ ÀÖÀ¸¸ç, ´ÙÀ½°ú °°´Ù.

o 10base2 (thin ethernet) - lanÀÇ ±æÀ̰¡ 185 meter ±îÁö µÉ ¼ö ÀÖ´Ù.

- ½Ã½ºÅÛ Á¢¼Ó½Ã bnc port¸¦ ÁÖ·Î ÀÌ¿ëÇÑ´Ù.

o 10base5 (thick ethernet) - lanÀÇ ±æÀ̰¡ 500 meter±îÁö µÉ ¼ö ÀÖ´Ù.

- ½Ã½ºÅÛ Á¢¼Ó½Ã aui port¸¦ ÁÖ·Î ÀÌ¿ëÇÑ´Ù.

o 10baset

- ½Ã½ºÅÛ Á¢¼Ó½Ã rj45 port¸¦ ÁÖ·Î ÀÌ¿ëÇÑ´Ù. hub¶ó´Â Àåºñ¿¡ 10baset pair cable·Î Á¢¼ÓÇÏ¿© ÀÌ¿ëÇϴµ¥ ÀÌ 10baset pair cableÀÇ ±æÀÌ´Â 100meter ±îÁö Áö¿øµÈ´Ù

.


¿äÁò 10base2¿Í 10base5´Â Àß ¾²Áö ¾Ê´Â´Ù. ÀÌÀ¯´Â ½Ã½ºÅÛÀ» Á¢¼ÓÇϰíÀÚ ÇÒ¶§¸¶´Ù transceiver¶ó´Â Àåºñ¸¦ ÄÉÀÌºí¿¡ ±¸¸ÛÀ» ¶Õ¾î ²È°í ±×°÷¿¡ aui cable·Î ¿¬°áÇØ¾ß ÇÏ´Â ºÒÆíÇÔ°ú, transceiver¿Í transceiver»çÀ̰¡ 3meter ÀÌ»ó(???)ÀÌ À¯ÁöµÇ¾î¾ß ÇϹǷΠªÀº cable¾È¿¡ ¸¹Àº ½Ã½ºÅÛÀ» Á¢¼ÓÇÒ ¼ö ¾ø±â ¶§¹®ÀÌ´Ù. ±×·¯³ª 10baset cableÀº hub¶ó´Â Àåºñ¿¡ ²È¾Æ ¾²±â¸¸ ÇÏ¸é µÇ¹Ç·Î ¸Å¿ì Æí¸®ÇÏ´Ù. hub´Â lanÀÇ ÁÖ¿ä ±¸¼ºÀåºñ·Î 10base2 cable³ª 10base5 cable ¿ªÇÒÀ» ´ë½ÅÇÏ´Â °ÍÀ¸·Î hub ¿©·¯°³¸¦ ¸Å´Þ¾Æ ÇϳªÀÇ hub ó·³ ÀÌ¿ëÇÒ ¼öµµ ÀÖ´Ù. ¾Æ·¡ ±×¸²Àº À§ÀÇ thin, thick cableÀ» ¾ø¾Ö°í hub¸¸À¸·Î ½Ã½ºÅÛÀ» ¿¬°áÇÑ ¿¹¸¦ º¸¿©ÁØ´Ù.

ethernet¿¡ Á¢¼ÓµÇ¾î ÀÖ´Â ½Ã½ºÅÛµéÀº µ¥ÀÌŸ¸¦ º¸³»°íÀÚ ÇÒ¶§, ¿ì¼± ´Ù¸¥ ½Ã½ºÅÛÀÌ ethernetÀ» ÅëÇØ frameÀ» º¸³»°í ÀÖ´ÂÁö È®ÀÎÇϸç, ¾î´À ½Ã½ºÅÛµµ frameÀ» º¸³»°í ÀÖÁö ¾ÊÀ¸¸é, ÀÚ½ÅÀÇ frameÀ» º¸³»´Â ¹æ½ÄÀ» ÃëÇÑ´Ù. ±×·±µ¥ µ¿½Ã¿¡ µÎ ½Ã½ºÅÛÀÌ frameÀ» º¸³»°Ô µÇ´Â °æ¿ì°¡ ¹ß»ýÇÒ ¼ö ÀÖ´Ù. ÀÌ °æ¿ì frameÀÌ ethernet ¿¡¼­ Ãæµ¹ÇÏ°Ô µÇ¸ç, frameÀ» º¸³½ ½Ã½ºÅÛÀº Ãæµ¹À» °¨ÁöÇϰí jam (Ãæµ¹) ½ÅÈ£¸¦ ¸ðµç ½Ã½ºÅÛ¿¡°Ô Àü´ÞÇÑ´Ù. ±×·¯¸é ¸ðµç ½Ã½ºÅÛµéÀº Àá½Ã ±â´Ù·È´Ù°¡, °¢°¢ ÀÓÀÇÀÇ ½Ã°£µÚ¿¡ ´Ù½Ã frameÀ» º¸³»·Á´Â ½Ãµµ¸¦ Çϱ⠽ÃÀÛÇÑ´Ù. ÀÌ·¯ÇÑ Àü¼Û¹æ½ÄÀ» csma/cd (carrier sense multiple access with collision detection) ¹æ½ÄÀ̶ó°í ÇÑ´Ù.

ethernet Àº Á¶±×¸¸ »ç¹«½Ç ȤÀº ½Ã½ºÅÛµéÀÌ Àû°Å³ª, µ¥ÀÌŸ ¼Û¼ö½ÅÀÌ ÀûÀº °æ¿ì¿¡´Â frame°£ÀÇ Ãæµ¹ÀÌ ¸¹ÀÌ ¹ß»ýÇÏÁö ¾Ê¾Æ µ¥ÀÌŸ¸¦ ºü¸¥ ½Ã°£¾È¿¡ ¼Û¼ö½ÅÇÒ ¼ö ÀÖ´Ù. ±×·¯³ª ½Ã½ºÅÛµé »çÀÌ¿¡ µ¥ÀÌŸÀÇ ¼Û¼ö½ÅÀÌ ¸¹À» °æ¿ì¿¡´Â ¸¹Àº Ãæµ¹ÀÌ ¹ß»ýÇÏ°Ô µÇ°í, µû¶ó¼­ frameÀ» ´Ù½Ã º¸³»·Á´Â ½ÅÈ£°¡ ºó¹øÇÏ°Ô µÇ¾î Àü¼ÛÈ¿À²ÀÌ ¸¹ÀÌ ÀúÇϵǴ ´ÜÁ¡ÀÌ ÀÖ´Ù.

token-ring and ieee 802.5

token ringÀº ibm¿¡¼­ ¹ßÇ¥ÇÑ lan protocol·Î ieee 802.5¿Í °ÅÀÇ µ¿ÀÏÇϸç, ÀϹÝÀûÀ¸·Î token ringÀ̶ó°í Çϸé, ibmÀÇ token ring°ú ieee 802.5¸¦ ÇÔ²² ¸»ÇÏ´Â °ÍÀÌ´Ù.

token ring¿¡ ÀÖ´Â ½Ã½ºÅÛµéÀº token 1°³¸¦ Â÷·Ê·Î Àü´ÞÇØ °¡¸ç, frameÀ» ¼Û½ÅÇÏ·Á°í Çϸé, tokenÀ» °¡Áö°í ÀÖ´Âä frameÀ» ¼Û¼öÇÑ´Ù. ±×¸®°í frame ¼Û½ÅÀ» ¸¶Ä£µÚ tokenÀ» ´ÙÀ½ ½Ã½ºÅÛÀ¸·Î Àü´ÞÇÑ´Ù. µû¶ó¼­ tokenÀ» °¡Áø ½Ã½ºÅÛ¸¸ÀÌ frameÀ» ¼Û½ÅÇϹǷΠ°áÄÚ frame ¼Û½Å½Ã Ãæµ¹ÀÌ ÀϾÁö ¾Ê´Â ÀåÁ¡ÀÌ ÀÖÀ¸¸ç, tokenÀÌ ¾ðÁ¦ ÀÚ½ÅÀÇ ½Ã½ºÅÛ¿¡ Àü´ÞµÇ´ÂÁö ÆÄ¾ÇÇÒ ¼ö ÀÖÀ¸¹Ç·Î frameÀÇ Àü¼Û¿¡ °É¸®´Â ½Ã°£À» ¿¹ÃøÇÒ ¼ö ÀÖ´Ù.

token ringÀº 16mbps ±îÁöÀÇ Àü¼Û¼Óµµ¸¦ Á¦°øÇÑ´Ù.

fddi (fiber distributed data interface)

fddi´Â ansi (american national standards institute)¿¡¼­ 1987³â ¹ßÇ¥ÇÑ °ÍÀ¸·Î ±¤ÄÉÀ̺í·Î ÀÌ·ç¾îÁø 2°³ÀÇ token ringÀ¸·Î ÀÌ·ç¾îÁø lan protocol (dual token ring protocol)ÀÌ´Ù. Áö¿øµÇ´Â ¼Óµµ´Â 100mbpsÀÌ´Ù. (ethernet ¹× token-ringÀº µ¿ÃàÄÉÀ̺íÀ» ¸Åü·Î ÇÑ´Ù) ÇöÀç ansi´Â µ¿ÃàÄÉÀ̺íÀ» ÀÌ¿ëÇØ 100mbps¸¦ Áö¿øÇÏ´Â dual token ring protocolÀ» °³¹ßÁß¿¡ ÀÖ´Ù°í ÇÑ´Ù. fddi´Â dual token ring À̹ǷΠ1°³ÀÇ ringÀÌ ²÷¾îÁú °æ¿ì ²÷¾îÁø °÷ ¿·ÀÇ ½Ã½ºÅÛµéÀÌ ³»ºÎ¿¡¼­ ¸µÀ» Çü¼ºÇÏ¿© ÀüüÀûÀ¸·Î ÇϳªÀÇ ¸µÀÌ µÇµµ·Ï ¸¸µç´Ù. µû¶ó¼­ Àå¾Ö ¹ß»ý½Ã À¯¸®ÇÑ Á¡ÀÌ À־ 90³â´ë ÃʹÝÀÌÈÄ¿¡ ±Þ¼ÓÈ÷ ÆÛÁ³À¸³ª ÃÖ±Ù¿¡´Â atm°ú fast ethernet¿¡ ¹Ð·Á¼­ ¼­¼­È÷ ±× ½ÃÀ强ÀÌ ÁÙ¾îµé°í ÀÖ´Â ½ÇÁ¤ÀÌ´Ù.

giga bit ethernet

ÇöÀçÀÇ ÀÌ´õ³Ý ³×Æ®¿÷Àº 10mbps ¶Ç´Â 100mbps¿¡¼­ »ç¿ëÇÒ ¼ö ÀÖ´Ù. ±â°¡ºñÆ® ³×Æ®¿öÅ·Àº ´ë¿ªÇ«¿¡¼­ 10¹è±îÁö Áõ´ë½Ã۸ç 1000mbpsÀÇ ¼Óµµ¸¦ ³¾ ¼ö ÀÖ´Ù. ±âÁ¸ÀÇ fast ethernet°ú´Â 100% ȣȯ¼ºÀ» °¡Áö¸ç, ½±°Ô ±â°¡ºñÆ® ³×Æ®¿÷ ¾ÆÅ°ÅØÃÄ·Î ¾÷±×·¹À̵å ÇÒ ¼öÀÖ´Ù. ÀÌ»õ·Î¿î ¾ÆÅ°ÅØÃÄ´Â csma/cs ÇÁ·ÎÅäÄÝÀ» Áö¿øÇÏ¸ç ±¤¼¶À¯,µ¿ÃàÄÉÀ̺í utp¿¡¼­µµ ÀÌ¿ë °¡´ÉÇÏ´Ù.

atm(asynchronous transfer mode)

atmÀº ±¤´ë¿ª isdn¿¡ ´ëÇÑ Åë½Å Ç¥ÁØÀ¸·Î Á¦¾È µÇ¾ú´Ù. atmÀº lan°ú wan ³×Æ®¿÷¿¡¼­ ¸ðµÎ »ç¿ëµÇ´Â ¸Å¿ì ³ôÀº ¼º´ÉÀ» °¡Áø ¼Ö·ù¼ÇÀÌ´Ù. atmÀº ±¤¼¶À¯(¼ö½Å¿ëÀ¸·Î ÇÑ ¶óÀÎ ¼Û½Å¿ë¿ì·Î ÇÑ ¶óÀÎ)¸¦ »ç¿ëÇϸç, ÄÄÇ»Å͸¦ ¼­·Î Á¢¼ÓÇÏ´Â µ¥¿¡ Ưº°ÇÑ °í¼ÓÀÇ ½ºÀ§Ä¡¸¦ ÀÌ¿ëÇÑ´Ù. atmÀº ¶ÇÇÑ À½¼º,µ¥ÀÌŸ,¿µ»óÀ» ÇϳªÀÇ ³×Æ®¿÷¿¡¼­ µ¿½Ã¿¡ Àü¼ÛÇÒ¼ö ÀÖµµ·Ï ÇØÁØ´Ù.

wan

lan protocolÀº °í¼ÓÀÇ Àü¼Û¼Óµµ¸¦ Á¦°øÇÏ´Â broadcasting ¹æ½ÄÀÇ Àü¼Û protocolÀ̳ª, wan protocolÀº »ó´ëÀûÀ¸·Î lanº¸´Ù´Â Àú¼ÓÀÇ Àü¼Û¼Óµµ¸¦ Á¦°øÇÏ¸ç µÎ ÁöÁ¡À» ÀÕ´Â protocolÀÌ´Ù. wan protocol·Î´Â sdlc, hdlc, lapb, frame relay, atm, ppp µîÀÌ ÀÖ´Ù. sdlc, lapb µîÀº 56kbps Á¤µµÀÇ Àü¼Û¼Óµµ¸¦ Á¦°øÇϰí, frame relay ´Â ¼ö½Ê mbps, atmÀº ¼ö gbps ±îÁö Áö¿øÇÑ´Ù.

ÇöÀç ÀÎÅͳݿ¡¼­ ¶ó¿ìÅÍ¿Í ¶ó¿ìÅ͸¦ Àü¿ëȸ¼±À¸·Î ¿¬°áÇÒ¶§ °¡Àå ¸¹ÀÌ ÀÌ¿ëµÇ°í ÀÖ´Â protocolÀº ppp·Î, ppp´Â ietf¿¡ ÀÇÇØ ¹ßÇ¥µÇ¾ú´Ù. frame relay ¹× atmÀº ¹éº»ÀÇ È¿À²ÀûÀÎ ÀÌ¿ë°ú, Àå°Å¸® ±¸°£ ¿¬°á½Ã ºñ¿ëÀ» Àý°¨ÇϰíÀÚ ÇÒ °æ¿ì ppp´ë½Å ¸¹ÀÌ ¾²ÀδÙ.

´ÙÀ½ÀÇ ±×¸²Àº ÀÎÅͳÝÀÌ ¾î¶°ÇÑ Çü½ÄÀ¸·Î ¿òÁ÷À̴°¡¸¦ ³ªÅ¸³»ÁÖ´Â ±×¸²ÀÌ´Ù.

¾Æ·¡ÀÇ ±×¸²Àº ÀÎÅͳÝÀÌ ¾î¶°ÇÑ ¶ó¿ìÆÃ Å×ÀÌºí ±¸Á¶¸¦ °¡Áö°í ¿òÁ÷ÀÌ´ÂÁö¸¦ Ç¥ÇöÇÑ ±×¸²



wan ±³È¯¹æ½Ä

lan + wan

isdnÀÇ Á¢¼Ó¹æ¹ý

³×Æ®¿÷ ÀåºñÀÇ Á¾·ù


À̿ܿ¡µµ ³×Æ®¿÷ÀÇ ÇüÅ¿¡ µû¸¥ ºÐ·ùµîÀÌ ÀÖÀ¸³ª Áö¸é °ü°è»ó ³×Æ®¿÷ÀÇ ÇüÅ´ ¿©±â¿¡¼­ ÁÙÀ̵µ·Ï ÇϰڴÙ. ÀÌ»óÀ¸·Î °£·«ÇϰԳª¸¶ ³×Æ®¿÷ÀÇ ±âº»ÀûÀÎ ³»¿ëÀ» ´Ù·ç¾ú´Ù. ´ÙÀ½Àº ³×Æ®¿÷À» °ü¸®ÇÏ´Â °ü¸®ÀÚÀÇ ÀÔÀå¿¡¼­ °¡Àå È¿À²ÀûÀ¸·Î ³×Æ®¿÷À» °ü¸®ÇÒ ¼ö ÀÖ´Â ¹æ¹ýÀ» ¾Ë¾Æº¸µµ·Ï ÇϰڴÙ.

±¹Á¦Ç¥ÁØÈ­±â±¸(iso: international organization for standar dization)¿¡¼­´Â ³×Æ®¿÷ °ü¸®¿¡ ´ëÇÑ ±âº»ÀûÀÎ ´Ù¼¸°¡ÁöÀÇ Á¤ÀǸ¦ Çϰí ÀÖ´Ù.

(1) ³×Æ®¿öÅ© ±¸¼º°ü¸® - ³×Æ®¿öÅ© ±¸¼ºÀÇ Çö»óŸ¦ °¨½ÃÇϰųª º¸¼ö À¯ÁöÇÏ´Â ±â´É.

(2) ³×Æ®¿öÅ© Àå¾Ö°ü¸® - ³×Æ®¿öÅ©¿¡¼­ ¹ß»ýÇÑ Àå¾Ö µîÀÇ ÀÌ»ó»óŸ¦ ¹ß°ßÇØ¼­ Àå¾Ö°¡ ¹ß»ýÇÑ Àå¼Ò¿Í ¹ß»ýÇÏÁö ¾ÊÀº Àå¼Ò¸¦ ºÐº°ÇÏ´Â ±â´É.

(3) ³×Æ®¿öÅ© º¸¾È°ü¸® - »ç¿ëÀÚ ±ÇÇÑ ¼³Á¤ µîÀÇ Á¢±Ù °ü¸®³ª Á¢±Ù ±ÇÇÑÀ» °ü¸® ÇÏ´Â ±â´É.

(4) ¼º´É°ü¸® - ³×Æ®¿öÅ© ±â±âÀÇ ¿ë·®À̳ª ºÎÇϸ¦ °¨½ÃÇØ¼­ ¼º´ÉÀ» ÀÏÁ¤ ¼öÁØ À¸·Î °ü¸®ÇÏ´Â ±â´É.

(5) °èÁ¤°ü¸® - ³×Æ®¿öÅ© »ç¿ëÀÚÀÇ ÀÚ¿øÀÌ¿ë »óȲ¿¡ °üÇÑ Á¤º¸¸¦ ¼öÁýÇØ¼­ ³×Æ®¿öÅ© »ç¿ëÀÚÀÇ »ç¿ë·á¸¦ ºÎ°úÇÏ´Â ±â´É. ÀÌ·¸°Ô ´Ù¼¸°¡Áö¸¦ ±âº» »çÇ×À¸·Î Á¤ÀǸ¦ Çϰí ÀÖ´Ù.

À̸¦ ½ÇÁ¦ÀûÀ¸·Î ³×Æ®¿÷À» °ü¸®ÇÏ´Â ÀÔÀå¿¡¼­ »ý°¢ÇØ º»´Ù¸é

1. °úÇÐÀûÀÎ ½Ã½ºÅÛÀÇ °ü¸®°¡ ÇÊ¿äÇÏ´Ù

2. ³×Æ®¿÷ÀÇ Àå¾Ö¸¦ À绡¸® ÆÄ¾ÇÇÒ ¼ö ÀÖ´Â ´Ù¾çÇÑ ÅøÀÇ È®º¸°¡ ÇÊ¿äÇÏ´Ù

ÆÐŶ ½º´ÏÆÛ s/w,nms tool....

3. Àü¹®ÀûÀÎ ³×Æ®¿÷ °ü¸®ÀÚÀÇ ¾ç¼ºÀÌ ÇÊ¿äÇÏ´Ù.

4. Á¤±âÀûÀÎ ³×Æ®¿÷ÀÇ º¸¾È ¹× ÆÐŶÀÇ È帧À» ºÐ¼®ÇÏ¿© µ¥ÀÌÅÍ º£À̽ºÈ­ ÇÑ´Ù.

5. ÃÖ¼ÒÇÑ 1´ë ÀÌ»óÀÇ ¹é¾÷ Àåºñ¸¦ °¡Áö°í ÀÖ¾î¾ß ÇÑ´Ù.

6. ¹é¾÷ÀÌ ÃÖ°í,ÃÖÈÄÀÇ ¹«±âÀÓÀ» ¸í½ÉÇØ¾ß ÇÑ´Ù.

7. ¹ö±× °ü·Ã »çÇ×ÀÌ ¹ß»ýÇÏ¸é ºü¸¥ ½Ã°£¾È¿¡ ÆÐÄ¡¸¦ ½ÃÄÑ¾ß ÇÑ´Ù.

8. Á¤±âÀûÀ¸·Î º¸¾È °ü·Ã »çÀÌÆ®ÀÇ ³»¿ëµéÀ» È®ÀÎÇÏ´Â °ÍÀ» °ÔÀ»¸® ÇÏÁö ¸»¾Æ¾ß ÇÑ´Ù.

À̿ܿ¡µµ ±â¼úÇÏÁö´Â ¸øÇßÁö¸¸ °ü¸®Àڷμ­ ì°Ü¾ß ÇÒ »çÇ×Àº ³Ê¹«³ª ¸¹ÀÌ ÀÖ´Ù. ÇÊÀÚ ¶ÇÇÑ ³×Æ®¿÷ °ü¸®ÀÚ À̸鼭µµ »ç½Ç À§ÀÇ ³»¿ëµéÀ» Ç×»ó ±×¸®°í Àß Ã¬±âÁö ¸øÇϰí ÀÖ´Â ½ÇÁ¤ÀÌ´Ù. Ç㳪 °æÇèÀûÀ¸·Î ´À³¢´Â °ÍÀε¥ ±×·² ¶§ ³×Æ®¿÷¿¡´Â ¹®Á¦°¡ ¹ß»ýÇÏ´Â °ÍÀ» ´À³¥ ¼ö ÀÖ¾ú´Ù. ³×Æ®¿÷µµ °ü½É°ú ¾ÖÁ¤ÀÌ ¸¹ÀÌ ÇÊ¿äÇÏ´Ù´Â °ÍÀÌ´Ù. ³×Æ®¿öÅ© °¨½Ã¿¡ ´ëÇÑ ³»¿ë°ú ³×Æ®¿öÅ© °ü¸® ÇÁ·ÎÅäÄÝ¿¡ ´ëÇØ »ìÆìº¸°Ú´Ù.

³×Æ®¿öÅ© °áÇÔ ¹ß°ßÇϱâ

»ç½Ç Àß ¾²´ø ³×Æ®¿öÅ©°¡ °©Àڱ⠴ٿîµÇ¾úÀ» ¶§ ±× ¿øÀÎÀ» ÆÇ´ÜÇÏ´Â °ÍÀº ±×´ÙÁö ¾î·Á¿î ÀÏÀÌ ¾Æ´Ï´Ù. ³×Æ®¿öÅ©°¡ ¿ÏÀüÈ÷ ´Ù¿îµÈ °æ¿ì´Â ´ÙÀ½ÀÇ ¸î °¡Áö ¿øÀÎÀ» ÆÄ¾ÇÇØ º¸¸é ±× ÀÌÀ¯¸¦ ¾Ë ¼ö ÀÖ´Ù.

(1) °ÔÀÌÆ®¿þÀÌ È¤Àº ¶ó¿ìÅÍ ½Ã½ºÅÛÀÌ ´Ù¿îµÈ °æ¿ì

ÀϹÝÀûÀ¸·Î ÀÌ·²°æ¿ì¿¡´Â ¶ó¿ìÅÍÀÇ Çϵå¿þ¾îÀûÀÎ ¹®Á¦¸¦ ¸ÕÀú È®ÀÎÇØ º¸¾Æ¾ß ÇÒ °ÍÀÌ´Ù. ±×¸®°í ¶óÀΰú ÇÁ·ÎÅäÄÝÀÌ Á¤»óÀûÀ¸·Î ¿î¿µÀÌ µÇ¾îÁö°í ÀÖ´ÂÁö È®ÀÎÇØ¾ß ÇÒ °ÍÀÌ´Ù. Á¾Á¾ Äڳݰú ¿¬°áµÇ¾îÁø ÀüÈ­±¹ »çÀÌ¿¡¼­ ¶óÀÎ downÀÌ ¹ß»ýÇÏ´Â °æ¿ì°¡ ÀÖ´Ù. ±×°ÍÀÌ ¾Æ´Ï¶ó¸é Äڳݿ¡¼­ ´Ù¸¥ ÀÛ¾÷À» Çϰí ÀÖ´ÂÁö È®ÀÎÀ» ÇØ¾ß ÇÑ´Ù. À̵µ ¾Æ´Ï¶ó¸é ¶ó¿ìÆÃ Á¤º¸¿¡ ¹®Á¦°¡ ÀÖ´ÂÁö È®ÀÎÀ» ÇØº¸¾Æ¾ß ÇÒ °ÍÀÌ´Ù. ¶Ç´Â csu,dsu¸¦ Ã¼Å©ÇØ º¸¾Æ¾ß ÇÒ °ÍÀÌ´Ù.

(2) µµ¸ÞÀγ×ÀÓ ½Ã½ºÅÛ(dns)ÀÌ ´Ù¿îµÈ °æ¿ì

´ëºÎºÐÀÇ À¯Àúµéµµ ¸¹ÀÌ µé¾î¼­ ¾Ë°í ÀÖ°ÚÁö¸¸ ³×ÀÓ¼­¹ö°¡ ´Ù¿îÀÌ µÇ´Â °æ¿ì¿¡ ip³ª ¶Ç´Ù¸¥ ³×ÀÓ¼­¹ö¸¦ ÅëÇÏ¿© Á¢¼ÓÀÌ °¡´ÉÇÏÁö¸¸ ³»ºÎ ³×Æ®¿÷ÀÇ ¼Óµµ ÀÚü°¡ ³Ê¹« ´À·Á¼­ »ç½Ç »ç¿ëÇÑ´Ù´Â °ÍÀÌ ¸¸¸¸Ä¡ ¾Ê´Ù, ¶ó¿ìÆÃ Å×À̺íÀÌ ²¿ÀÌ´Â °æ¿ì¿¡µµ Á¾Á¾ ÀÌ·± °æ¿ì°¡ Àִµ¥ ±×·²¶§´Â ³×ÀÓ µ¥¸óÀ» ¶³¾î¶ß·È´Ù ´Ù½Ã ¿Ã¸®´Â °ÍÀÌ ¹Ù¶÷Á÷ÇÏ´Ù.

(3) lan ¼±ÀÌ ¾îµð¼±°¡ ²÷±ä °æ¿ì

ÃÖ±Ù¿¡´Â ³×Æ®¿÷ÀÇ ÃÖÁ¾ ¸»´Ü¿¡ ÀÖ´Â Çϵå¿þ¾îµéÀÇ Áú ÀÚü°¡ ±×·¸°Ô ³ª»ÚÁö´Â ¾Ê´Ù. ±×¸¸Å­ ³Î¸® ±×¸®°í ±¤¹üÀ§ÇÏ°Ô »ç¿ëÀÌ µÇ¾îÁö°í Àֱ⠶§¹®¿¡ Å©°Ô ¹®Á¦°¡ µÇÁö´Â ¾Ê´Ù´Â °ÍÀÌ´Ù. Ç㳪 ¾ÆÁ÷±îÁö ÀÌ´õ³ÝÀ» ¾²°í ÀÖ´Â °æ¿ì¿¡´Â ÀÌ´õ³Ý¿¡ ¹°·Á ÀÖ´Â tr°ú µ¿ÃàÄÉÀÌºí ±×¸®°í ±× ±æÀÌÀÇ Á¦ÇÑÀ» ¿°µÎÇØ µÎ¾î¾ß ÇÒ °ÍÀÌ´Ù. ·£¼±ÀÇ ¹®Á¦´Â ´ëºÎºÐÀÌ ³ëÈ­¿Í ¹°¸®ÀûÀÎ Ãæ°Ý¿¡ ÀÇÇÏ¿© ¹ß»ýÇÏ´Â °æ¿ì°¡ ´ëºÎºÐÀÌ´Ù. ¶Ç, »ç¿ëÀÚÀÇ ºÎÁÖÀÇ ·£¼±ÀÌ »ì¦ ²ÅÇô Àִµ¥ ³×Æ®¿÷ÀÌ ¾ÈµÈ´Ù°í ÇÏ´Â °æ¿ì°¡ Àֱ⠶§¹®ÀÌ´Ù. ±×¿Ü¿¡´Â ·£Ä«µåÀÇ ¿¡·¯³ª ¹®Á¦°¡ ±× ¿øÀÎÀÌ µÉ ¼ö µµ ÀÖ´Ù.

³×Æ®¿÷¿¡ ¹®Á¦°¡ ¹ß»ý ÇßÀ» ¶§ ÇØ°áÇÒ ¼ö ÀÖ´Â ¹æ¹ý ¸î°¡Áö

1. ping ¸í·ÉÀ¸·Î ¿¬°á È®ÀÎ

ping ¸í·ÉÀº ÇѸ¶µð·Î ¾ê±âÇØ¼­ »ó´ë È£½ºÆ®ÀÇ up,down »óŸ¦ È®ÀÎÇÏ´Â ¸í·É¾îÀÌ´Ù. ¾ÆÁÖ °£´ÜÇÑ ¸í·ÉÀÌÁö¸¸ ¾î¶² È£½ºÆ®ÀÇ ´Ù¿î¿©ºÎ³ª ³×Æ®¿öÅ© ºÒ´É¿©ºÎ¸¦ ÆÄ¾ÇÇÏ´Â µ¥´Â ÀÌ º¸´Ù ÁÁÀº ¸í·É¾î°¡ ¾øÀ» °ÍÀÌ´Ù. pingÀº ½ÇÁúÀûÀ¸·Î icmpÀÇ echo request ±â´ÉÀ» ÀÌ¿ëÇÏ´Â °ÍÀÌ´Ù. ±×·¯³ª pingÀº ´ÜÁö ³×Æ®¿÷»ó¿¡¼­ »ó´ë È£½ºÆ®°¡ »ì¾Ò´ÂÁö Á×¾ú´ÂÁö¸¸À» È®ÀÎÇÏ´Â ¸í·É¾î À̱⿡ ÀÌ°Í ¸¸À¸·Î´Â ³×Æ®¿÷ÀÇ ¹®Á¦Á¡À» ã¾Æ ³»±â¶õ ¾î·Á¿î°Ô »ç½ÇÀÌ´Ù. ÀÌ·± °æ¿ì´Â dns ȤÀº nfs µîÀÇ ¼­ºñ½º¸¦ Å×½ºÆ®Çؼ­ ºÎ¼öÀûÀÎ Á¤º¸¸¦ ´õ ¾òÀ» Çʿ䰡 ÀÖ´Ù.

[root@slug /root]# ping ccs

ping ccs.sogang.ac.kr (163.239.1.1): 56 data bytes

64 bytes from 163.239.1.1: icmp_seq=0 ttl=255 time=0.9 ms

64 bytes from 163.239.1.1: icmp_seq=1 ttl=255 time=0.9 ms

64 bytes from 163.239.1.1: icmp_seq=2 ttl=255 time=0.9 ms

64 bytes from 163.239.1.1: icmp_seq=3 ttl=255 time=0.9 ms

64 bytes from 163.239.1.1: icmp_seq=4 ttl=255 time=0.9 ms

64 bytes from 163.239.1.1: icmp_seq=5 ttl=255 time=0.9 ms

64 bytes from 163.239.1.1: icmp_seq=6 ttl=255 time=0.9 ms

64 bytes from 163.239.1.1: icmp_seq=7 ttl=255 time=0.9 ms

2. traceroute ¸í·ÉÀÇ »ç¿ë

pingÀÌ »ó´ë È£½ºÆ®ÀÇ up,down »óŸ¦ Á¡°ËÇÏ´Â °ÍÀ̶ó¸é traceroute´Â º¸´Ù ±¸Ã¼ÀûÀ¸·Î ÆÐŶÀÇ °æ·Î¸¦ ÃßÀûÇØ ÁÖ´Â ¶È¶ÈÇÑ ³à¼®ÀÌ´Ù. Áï, ¿ÜºÎ¸ÁÀ¸·ÎÀÇ Á¢¼ÓÀÌ Â÷´ÜµÇ°Å³ª ¶ó¿ìÅÍ ´Ü¿¡¼­ ¹®Á¦°¡ ¹ß»ýÇßÀ» ¶§¿¡´Â ¶ó¿ìÆÃ °æ·Î¸¦ È®ÀÎÇϸ鼭 ¾î´À È£½ºÆ®¿¡¼­ ÆÐŶÀÌ Â÷´ÜµÇ´ÂÁö¸¦ Á¡°ËÇØ¾ß ÇÒ °ÍÀÌ´Ù.¹Ù·Î ÀÌ·¯ÇÑ ±â´ÉÀ» ÇØÁÖ´Â µµ±¸°¡ traceroute ÀÎ °ÍÀÌ´Ù. ´ÙÀ½ÀÇ ¿¹´Â Á¤»óÀûÀ¸·Î ³×Æ®¿öÅ©°¡ µ¿ÀÛÇÏ´Â °æ¿ìÀÇ °á°ú¸¦ º¸ÀÎ °ÍÀÌ´Ù. ¸ñÀûÁö±îÁö ÆÐŶÀÌ Á¦´ë·Î Àü´ÞµÊÀ» º¼ ¼ö ÀÖ´Ù. Âü°í·Î µµ¸ÞÀÎ À̸§ÀÌ ¾Æ´Ñ ipÁÖ¼Ò·Î ³ªÅ¸³­ È£½ºÆ®´Â dns¿¡ µî·ÏÀÌ µÇÁö ¾Ê¾Ò´Ù´Â ÀǹÌÀÌ´Ù.

[/slug]# traceroute www.kornet.nm.kr

traceroute to www.kornet.nm.kr (168.126.63.18), 30 hops max, 40 byte packets

1 sogang-fddi-1 (163.239.1.10) 1.044 ms 2.671 ms 1.072 ms

2 168.126.59.77 (168.126.59.77) 8.609 ms 3.248 ms 168.126.47.193 (168.126.47

.193) 3.202 ms

3 168.126.16.121 (168.126.16.121) 5.645 ms 5.053 ms 6.427 ms

4 www.kornet.nm.kr (168.126.63.18) 5.489 ms 12.361 ms 4.291 ms

ÀÌÁ¦ ´ÙÀ½ÀÇ ¿¹¸¦ º¸ÀÚ. 3¹øÂ° È£½ºÆ® ȤÀº ¶ó¿ìÅÍ¿¡ ¡®!n¡¯ÀÌ Ç¥½ÃµÈ °ÍÀ» º¼ ¼ö ÀÖÀ» °ÍÀÌ´Ù. ÀÌ´Â ¡®network unreachable¡¯À» ÀǹÌÇÏ´Â °ÍÀ¸·Î pado-inha.kreonet.re.kr È£½ºÆ®ÀÇ ¶ó¿ìÆÃ Å×ÀÌºí¿¡ ¹®Á¦°¡ ÀÖ¾î ÆÐŶÀ» Àü´Þ½ÃŰÁö ¸øÇÏ´Â °ÍÀ» ¸»ÇÑ´Ù.

[/slug]# traceroute www.lg.co.kr

traceroute to www.lg.co.kr (165.243.5.37), 30 hops max,

40 byte packets

1 165.246.10.250 (165.246.10.250) 1 ms 1 ms 1 ms

2 165.246.15.1 (165.246.15.1) 2 ms 1 ms 1 ms

3 pado-inha.kreonet.re.kr (134.75.181.1) !n !n !n

´ÙÀ½ÀÇ ¿¹´Â ±×¸® ÈçÇÑ ¿¹´Â ¾Æ´ÏÁö¸¸ ¸ÖƼÇ÷º½Ì ¶ó¿ìÅÍÀÇ ¿¹ÀÌ´Ù. Áï ¾Æ·¡ÀÇ È£½ºÆ®Áß¿¡ 5¹øÀÇ taejon-seoul-t3.kreonet.re.kr È£½ºÆ®´Â kfddi3.kreonet.re.kr°ú mix-serial4-1.sanfrancisco.mci.net µÎ±ºµ¥·Î ÆÐŶÀ» µ¿½Ã¿¡ Àü¼ÛÇÏ´Â °ÍÀÌ´Ù.

ÀϹÝÀûÀÎ °æ¿ì.

[root@slug /root]# traceroute www.oracle.com

traceroute to v-www.us.oracle.com (205.227.44.16), 30 hops max, 40 byte packets

1 sogang-fddi-1 (163.239.1.10) 2.202 ms 1.554 ms 0.930 ms

2 168.126.47.193 (168.126.47.193) 4.945 ms 168.126.59.77 (168.126.59.77) 3.4

64 ms 168.126.47.193 (168.126.47.193) 21.727 ms

3 apgateway3-noc.kornet21.net (168.126.16.75) 16.272 ms 13.969 ms 3.701 ms

4 210.183.28.65 (210.183.28.65) 4.045 ms 3.569 ms 10.228 ms

5 203.234.255.210 (203.234.255.210) 198.941 ms 193.242 ms 199.559 ms

6 main3-249-192.sjc.above.net (209.249.192.4) 197.496 ms 200.980 ms 195.862

ms

7 core1-main3.sjc.above.net (209.249.0.53) 202.879 ms 192.557 ms 193.170 ms

8 mae-west-core1-oc12.sjc.above.net (207.126.96.246) 192.456 ms 194.697 ms

195.558 ms

9 mae-west-core1-oc3-2.maew.above.net (209.133.31.182) 195.194 ms 200.176 ms

194.591 ms

10 s2-1-0.sanjose1-cr2.bbnplanet.net (4.0.85.6) 270.570 ms 266.020 ms 240.87

8 ms

11 p2-1.sanjose1-nbr2.bbnplanet.net (4.0.3.197) 228.333 ms 235.643 ms 237.29

7 ms

12 p1-0.sanjose1-nbr1.bbnplanet.net (4.0.5.85) 242.226 ms 262.068 ms 243.828

ms

13 p4-0.paloalto-nbr2.bbnplanet.net (4.0.1.1) 239.771 ms 231.898 ms 242.323

ms

14 p9-0-0.paloalto-br1.bbnplanet.net (4.0.1.221) 233.567 ms 242.865 ms 236.5

04 ms

15 f0-0.paloalto-cr11.bbnplanet.net (131.119.0.211) 271.271 ms 231.349 ms 23

2.981 ms

16 h2-0.oracle2.bbnplanet.net (4.0.43.218) 232.256 ms 237.982 ms 232.040 ms

17 v-www.us.oracle.com (205.227.44.16) 242.197 ms 233.464 ms 234.834 ms

ƯÀÌÇÑ °æ¿ì

[/slug]# traceroute www.oracle.com

traceroute to inet07-1.us.oracle.com (192.86.154.111), 30 hops max,

40 byte pacs

1 165.246.10.250 (165.246.10.250) 2 ms 2 ms 2 ms

2 165.246.15.1 (165.246.15.1) 2 ms 2 ms 1 ms

3 hongneung-nca-t3.kreonet.re.kr (134.75.27.1) 16 ms 8 ms 17 ms

4 gurum.kreonet.re.kr(134.75.28.1) 9 ms 14 ms 6 ms

5 taejon-seoul-t3.kreonet.re.kr(134.75.3.1) 10 ms 9 ms 31 ms

6 kfddi3.kreonet.re.kr (134.75.20.3) 68 ms 23 ms 16 ms

mix-serial4-1.sanfrancisco.mci.net (204.189.216.181) 298 ms

520 ms 545 ms

traceroute ¸í·ÉÀÇ °á°ú¿¡ ¡®*¡¯ Ç¥½Ã°¡ ³ªÅ¸³ª´Â °æ¿ì°¡ ÀÖ´Ù. ÀÌ´Â °ÔÀÌÆ®¿þÀ̰¡ Á¦´ë·Î µ¿ÀÛÇÏÁö ¾ÊÀ½À» ÀǹÌÇÏ´Â °ÍÀÌ´Ù. Áï ÆÐŶÀ» Á¦´ë·Î ó¸®ÇÏÁö ¸øÇÔÀ» ÀǹÌÇÑ´Ù. ÀÌ·¯ÇÑ ¡®*¡¯ Ç¥½Ã°¡ °è¼ÓÀûÀ¸·Î º¸ÀÌ¸é ±× ¶ó¿ìÅÍ¿¡ ¹®Á¦°¡ Àְųª ȸ¼±»óÀÇ ´ÜÀýÀÌ ¹ß»ýÇÑ °ÍÀÏ °ÍÀÌ´Ù.

±×¸®°í »ê¹ßÀûÀ¸·Î º¸ÀÌ´Â °æ¿ì´Â ³×Æ®¿öÅ©ÀÇ ÆÐŶ È帧¾çÀÌ ³Ê¹« ¸¹¾ÆÁ® °ÔÀÌÆ®¿þÀ̰¡ ´Ê¾îÁ®¼­ ±×·¯´Â °æ¿ì¿Í ¶ó¿ìÆÃ Å×À̺íÀÌ ²¿¿´À» °æ¿ì¿¡ »ý±â´Â °á°úÀÌ´Ù.

´ÙÀ½ÀÌ ±× ¿¹ÀÌ´Ù.

[root@slug /root]# traceroute -q 4 www.yahoo.com

traceroute: warning: www.yahoo.com has multiple addresses; using 204.71.200.67

traceroute to www.yahoo.com (204.71.200.67), 30 hops max, 40 byte packets

1 sogang-fddi-1 (163.239.1.10) 1.032 ms 0.895 ms 1.321 ms 0.889 ms

2 168.126.47.193 (168.126.47.193) 6.737 ms 168.126.59.77 (168.126.59.77) 3.7

37 ms 10.318 ms 168.126.47.193 (168.126.47.193) 40.684 ms

3 apgateway3-noc.kornet21.net (168.126.16.75) 4.758 ms 9.192 ms 6.471 ms

14.804 ms

4 210.183.28.65 (210.183.28.65) 5.724 ms 3.737 ms 3.924 ms 3.843 ms

5 203.234.255.210 (203.234.255.210) 198.024 ms 207.542 ms 192.772 ms 198.9

27 ms

6 main3-249-192.sjc.above.net (209.249.192.4) 193.939 ms 216.425 ms 192.676

ms 205.461 ms

7 core1-main3.sjc.above.net (209.249.0.53) 202.330 ms 234.493 ms 198.564 ms

194.141 ms

8 pao-sjc-oc12.pao.above.net (209.133.31.150) 198.832 ms 229.429 ms 195.057

ms 193.342 ms

9 fe1-0-0.br1.pao.globalcenter.net (206.251.8.122) 212.004 ms 195.591 ms 26

7.010 ms 214.233 ms

10 pos4-1-155m.cr2.pao.globalcenter.net (206.132.254.153) 164.988 ms 201.973

ms * 192.052 ms

11 pos5-3-155m.cr2.snv.globalcenter.net (206.132.254.213) 242.607 ms 212.896

ms 180.360 ms 202.198 ms

12 pos1-0-2488m.hr8.snv.globalcenter.net (206.132.254.41) 190.198 ms 176.827

ms 180.186 ms 223.997 ms

13 bas1r-ge3-0-hr8.snv.yahoo.com (208.178.103.62) 201.429 ms 174.161 ms 185.

353 ms 169.829 ms

14 * www2.yahoo.com (204.71.200.67) 191.594 ms 194.505 ms *

À§ÀÇ ¿¹¿¡¼­ ¿É¼Ç ¡®-q¡¯¿¡ À̾îÁö´Â 4´Â °¢ È£½ºÆ®¸¶´Ù 4°³ÀÇ ÆÐŶÀ» º¸³»¾î È®ÀÎÇ϶ó´Â ÀǹÌÀÌ´Ù. ÀÌ °æ¿ì

pos4-1-155m.cr2.pao.globalcenter.net (206.132.254.153) 164.988 ms 201.973 ms * 192.052

14 * www2.yahoo.com (204.71.200.67) 191.594 ms 194.505 ms *

»çÀÌÀÇ ³×Æ®¿öÅ© Àü¼Û ºÎÇϰ¡ Å©¸ç È£½ºÆ®´Â ¹®Á¦°¡ ÀÖ´Ù°í º¸¸é ¹«³­ÇÏ´Ù. ÇÏÁö¸¸ ´çºÎÇÏ°í ½ÍÀº °ÍÀº ¿©·¯ ÀÌÀ¯·Î ÀÎÇØ À§ÀÇ ¸®½ºÆ®¸¦ º¸°í ¿¹ÃøÇÑ °ÍÀÌ Æ²¸± ¼öµµ ÀÖ´Ù´Â Á¡ÀÌ´Ù. ±×·¯¹Ç·Î ÃÖÁ¾ÀûÀÎ È®ÀÎÀº °¢°¢ÀÇ È£½ºÆ®·ÎÀÇ ping ¸í·ÉÀ» ÅëÇØ È®ÀÎÇØ¾ß ÇÑ´Ù.

3. netstat·Î ³×Æ®¿÷ÀÇ ¹®Á¦¸¦ ÆÄ¾ÇÇÏÀÚ!!!

* netstat ¸í·É¾î

ÀϹÝÀûÀ¸·Î netstat ¸í·É¾î´Â ³×Æ®¿öÅ©¿Í °ü·ÃµÈ »óÅÂÁ¤º¸¸¦ º¸¿©ÁØ´Ù. ´ÙÀ½Àº º¸¿©ÁÙ ¼ö ÀÖ´Â »óÅÂÀÇ Á¾·ùÀÌ´Ù.

(1) ³×Æ®¿öÅ©ÀÇ ¿¬°á »óȲÀ» º¸¿©ÁØ´Ù( ¿É¼Ç ¾øÀÌ »ç¿ë ).

(2) ÀÎÅÍÆäÀ̽º ¼³Á¤ Á¤º¸¸¦ °Ë»çÇÑ´Ù( -i ¿É¼Ç ).

(3) ¶ó¿ìÆÃ Å×À̺íÀ» Á¶»çÇÑ´Ù(-n, -r ¿É¼Ç, ¿©±â¼­ -n ¿É¼ÇÀº

È£½ºÆ®ÀÇ ÁÖ¼Ò¸¦ ¼ýÀڷΠǥ½ÃÇ϶ó´Â ¿É¼Ç).

(4) ¿©·¯ ³×Æ®¿öÅ© ÇÁ·ÎÅäÄÝ¿¡ ´ëÇÑ ¿î¿ë »óÅ Á¤º¸¸¦ º¸¿©ÁØ´Ù (-s ¿É¼Ç).

[root@slug /root]# netstat

active internet connections (w/o servers)

proto recv-q send-q local address foreign address state

tcp 0 0 slug.sogang.ac.kr:www slug2.sogang.ac.kr:1307 time_wait

tcp 0 0 slug.sogang.ac.kr:www slug2.sogang.ac.kr:1306 time_wait

tcp 0 0 slug.sogang.ac.kr:www slug2.sogang.ac.kr:1305 time_wait

tcp 0 0 slug.sogang.ac.kr:www slug2.sogang.ac.kr:1304 time_wait

tcp 0 0 slug.sogang.ac.kr:www slug2.sogang.ac.kr:1303 time_wait

tcp 0 0 slug.sogang.ac.kr:www slug2.sogang.ac.kr:1302 time_wait

tcp 0 0 slug.sogang.ac.kr:www slug2.sogang.ac.kr:1301 time_wait

tcp 0 0 slug.sogang.ac.kr:www slug2.sogang.ac.kr:1300 time_wait

tcp 0 0 slug.sogang.ac.kr:www slug2.sogang.ac.kr:1299 time_wait

tcp 0 0 slug.sogang.ac.kr:www slug2.sogang.ac.kr:1298 time_wait

tcp 0 0 slug.sogang.ac.kr:www slug2.sogang.ac.kr:1297 time_wait

tcp 0 0 slug.sogang.ac.kr:www slug2.sogang.ac.kr:1296 time_wait

tcp 0 0 slug.sogang.ac.kr:www slug2.sogang.ac.kr:1295 time_wait

tcp 0 0 slug.sogang.ac.kr:www slug2.sogang.ac.kr:1294 time_wait

tcp 0 0 slug.sogang.ac.kr:www slug2.sogang.ac.kr:1293 time_wait

tcp 0 0 slug.sogang.ac.kr:www slug2.sogang.ac.kr:1292 time_wait

tcp 0 0 slug.sogang.ac.kr:www slug2.sogang.ac.kr:1291 time_wait

tcp 0 0 slug.sogang.ac.kr:www slug2.sogang.ac.kr:1290 time_wait

tcp 0 0 slug.sogang.ac.kr:www slug2.sogang.ac.kr:1289 time_wait

tcp 0 0 slug.sogang.ac.kr:www slug2.sogang.ac.kr:1288 time_wait

tcp 0 0 slug.sogang.ac.kr:www slug2.sogang.ac.kr:1287 time_wait

tcp 0 1066 slug.sogang.ac.k:telnet ccsadm25.sogang.ac:1182 established

tcp 0 0 slug.sogang.ac.k:telnet cspclab40.sogang.a:1088 established

active unix domain sockets (w/o servers)

proto refcnt flags type state i-node path

unix 1 [ ] stream connected 307684 @00016c05

unix 1 [ ] stream connected 443 @0000001d

unix 1 [ ] stream connected 306986 @00016bc9

unix 1 [ ] stream connected 307047 @00016bd2

unix 1 [ ] stream connected 736 @00000032

unix 1 [ ] stream connected 513 @00000024

unix 1 [ ] stream connected 531 @00000025

unix 0 [ ] stream connected 131 @00000014

unix 1 [ ] stream connected 307685 /dev/log

unix 1 [ ] stream connected 307048 /dev/log

unix 1 [ ] stream connected 306987 /dev/log

unix 1 [ ] stream connected 737 /dev/log

unix 1 [ ] stream connected 555 /dev/log

unix 1 [ ] stream connected 554 /dev/log

unix 1 [ ] stream connected 444 /dev/log

ÀÎÀÚ¾øÀÌ ¾²´Â °æ¿ì Ȱ¼ºÈ­µÈ tcp ¿Í udp Æ÷Æ®ÀÇ »óȲÀ» º¼ ¼ö ÀÖ´Ù. ¶ÇÇÑ -a ¿É¼ÇÀ» ¾²¸é ¿¬°áÀ» ±â´Ù¸®´Â ºñȰ¼ºÈ­ µÈ ¼­¹öµµ º¼ ¼ö ÀÖ´Ù.

* °ÔÀÌÆ®¿þÀÌ È¤Àº ¶ó¿ìÅÍ¿¡ ÀÌ»óÀÌ ¾ø´Âµ¥ ƯÀÌÇϰԵµ ƯÁ¤ ÄÄÇ»Åͳª ȤÀº ¸î°³ÀÇ ÄÄÇ»Å͸¸ÀÌ ³×Æ®¿öÅ©°¡ ¸Å¿ì ´À¸®°Å³ª ÇÏ´Â °æ¿ì°¡ ÀÖ´Ù. ÀÌ °æ¿ìnetstat ¸í·ÉÀ» ÅëÇØ È®ÀÎÇÑ´Ù.

¿ì¼±, ´ÙÀ½ÀÇ ¿¹¸¦ º¸ÀÚ. ¡®-i¡¯ ¿É¼ÇÀº ³×Æ®¿öÅ© ÀÎÅÍÆäÀ̽º(Ä«µå)ÀÇ »óŸ¦ º¸¿©ÁÖ´Â °ÍÀÌ´Ù.

[root@slug /root]# netstat -i

kernel interface table

iface mtu met rx-ok rx-err rx-drp rx-ovr tx-ok tx-err tx-drp tx-ovr flg

eth0 1500 0 20989404 614 0 630 870886 0 0 0 bru

lo 3924 0 48462 0 0 0 48462 0 0 0 lru

¾Õ¿¡¼­ º¸¸é ¡®eth0¡¯ÀÌ ¹ÞÀº ÆÐŶ ¼ö´Â 20989404 À̸ç ÀÔ·Â ¿¡·¯ ¼ö´Â 614°³, Ãâ·Â ÆÐŶ ¼ö´Â 870886°³À̸ç Ãâ·Â¿¡·¯°¡ ¾ø´Ù´Â °ÍÀ» ¾Ë ¼ö ÀÖ´Ù.

¿©±â¼­ ÀÔÃâ·Â ¿¡·¯ÀÇ ºñ°¡ Áö³ªÄ¡¸é ¾î¶°ÇÑ ¹®Á¦°¡ ÀÖ´Ù´Â ¾ê±âÀÌ´Ù. ¸¸¾à ƯÁ¤ ÄÄÇ»ÅÍ Çϳª¿¡¼­¸¸ ÀÌ·± °á°ú°¡ ³ª¿Â´Ù¸é ±× ÄÄÇ»ÅÍÀÇ ³×Æ®¿öÅ© Ä«µå¿¡ ¹®Á¦°¡ ÀÖ´Ù´Â °ÍÀ̹ǷΠ³×Æ®¿öÅ© Ä«µåÀÇ ±³Ã¼¸¦ °ËÅäÇØ¾ß ÇÒ °ÍÀÌ´Ù. ÁÖÀ§ÀÇ ´Ù¸¥ ÄÄÇ»Å͵鿡¼­µµ °°Àº °á°ú°¡ ³ª¿Â´Ù¸é ÀÌ´Â À̵é ÄÄÇ»ÅÍ »çÀÌ¿¡ ¿¬°áµÈ ¼±·Î¿¡ ¹®Á¦°¡ ÀÖ´Ù´Â °ÍÀ» ÀǹÌÇÑ´Ù. ÀÌ·± °æ¿ì ¼±·Î¸¦ ±³Ã¼ÇØ¾ß ÇÒ °ÍÀÌ´Ù. ¾Æ·¡´Â ´Ù¾çÇÑ netstat ÀÇ ¸í·É ¿É¼ÇÀÌ´Ù. ÂüÁ¶Çؼ­ Ȱ¿ëÇϱ⠹ٶõ´Ù.

[root@slug /root]# man netstat

usage: netstat [-veennccf] [<af>] -r netstat {-v|--version|-h|--help}

netstat [-vnncaeol] [<socket> ...]

netstat { [-veennac] -i | [-cnne] -m | -s }

-r, --route display routing table

-i, --interfaces display interface table

-g, --groups display multicast group memberships

-s, --statistics display networking statistics (like snmp)

-m, --masquerade display masqueraded connections

-v, --verbose be verbose

-n, --numeric dont resolve names

-n, --symbolic resolve hardware names

-e, --extend display other/more information

-p, --programs display pid/program name for sockets

-c, --continuous continuous listing

-l, --listening display listening server sockets

-a, --all, --listening display all sockets (default: connected)

-o, --timers display timers

-f, --fib display forwarding information base (default)

-c, --cache display routing cache instead of fib

<socket>={-t|--tcp} {-u|--udp} {-w|--raw} {-x|--unix} --ax25 --ipx --netrom

<af>=use '-a <af>' or '--<af>' default: inet

list of possible address families (which support routing):

inet (darpa internet) ax25 (ampr ax.25) netrom (ampr net/rom)

ipx (novell ipx) ddp (appletalk ddp)

* nslookup

ÀÌ ¸í·É¾î´Â ÀÚ½ÅÀÌ ip¸¦ ¾Ë°í Àִµ¥ µµ¸ÞÀÎÀ» ¸ð¸¦ °æ¿ì³ª ¹Ý´ë·Î µµ¸ÞÀÎÀº ¾Ë°í Àִµ¥ ip¸¦ ¸ð¸¦ °æ¿ì¿¡ »ç¿ëÇÏ´Â ¸í·É¾îÀÌ´Ù.

[root@slug /root]# nslookup

default server: ccs.sogang.ac.kr

address: 163.239.1.1

nslookupÀ» ½ÇÇà½Ã۸é À§¿Í°°Àº ²©»õ ÇÁ·ÒÇÁÆ®°¡ ¶³¾îÁø´Ù. ¿©±â¿¡´Ù ÀÚ½ÅÀÌ ±Ã±ÝÇØ ÇÏ´Â-ÀÚ½ÅÀÌ ¾Ë°í ÀÖ´Â °ÍÀÌ µµ¸ÞÀθíÀÌ°í ¾Ë°íÀÚ ÇÏ´Â °ÍÀÌ ip address¶ó¸é µµ¸ÞÀθíÀ» Ä£´Ù. ¾Æ·¡¿Í °°ÀÌ.

[root@slug /root]# yahoo.com

server: ccs.sogang.ac.kr

address: 163.239.1.1

non-authoritative answer:

name: yahoo.com

addresses: 204.71.200.245, 204.71.200.243

¹Ý´ë·Î ÀÚ½ÅÀÌ ¾Ë°íÀÚ ÇÏ´Â °ÍÀÌ µµ¸ÞÀθíÀ̶ó¸é ¾Æ·¡¿Í °°ÀÌ ip address¸¦ ÀÔ·ÂÇϸé ÀÚ½ÅÀÌ ¿øÇÏ´Â Á¤º¸¸¦ ¾òÀ»¼ö ÀÖ´Ù.

[root@slug /root]# 210.120.129.180

server: ccs.sogang.ac.kr

address: 163.239.1.1

name: chollian.net

address: 210.120.129.180

°£È¤°¡´Ù ÀÌ·± °æ¿ìµµ ÀÖÀ» °ÍÀÌ´Ù. ip³ª µµ¸ÞÀθíÀ» ¿Ã¹Ù·Î ÀÔ·ÂÇߴµ¥ ã¾ÆÁÖÁö ¸øÇÏ´Â °æ¿ì°¡ ÀÖÀ» °ÍÀÌ´Ù. ÀÌ´Â ³×ÀÓ¼­¹ö³ª È£½ºÆ® È­ÀÏ¿¡ µî·ÏÀÌ µÇ¾î ÀÖÁö ¾Ê°Å³ª ¿Ã¹Ù¸¥ ÁÖ¼Ò°¡ ¾Æ´Ï±â ¶§¹®¿¡ ¹ß»ýÇÏ´Â ¿¡·¯ÀÏ °ÍÀÌ´Ù.

[root@slug /root]# 166.145.10.4

server: ccs.sogang.ac.kr

address: 163.239.1.1

*** ccs.sogang.ac.kr can't find 166.145.10.4: non-existent host/domain

nslookupÀº ¿ÜºÎ·ÎºÎÅÍ µé¾î¿À´Â ´Ù¾çÇÑ ÇüÅÂÀÇ Á¢¼Ó ½Ãµµ¸¦ È®ÀÎÇÒ ¼ö ÀÖ´Â ÁÁÀº ÇÁ·Î±×·¥ÀÌ´Ù. À̰ÍÀº /etc/resolv.conf ÀÇ ³×ÀÓ¼­¹ö¿¡¼­ ½ÃÀÛÇÑ´Ù.

³×Æ®¿÷ÀÇ °ü¸®¶õ ½Ã½ºÅÛÀÇ ÀÚ¿øÀ» ¾î¶»°Ô Àß È°¿ëÇϴ°¡¿Í ¸Æ¶ôÀÌ °°À» ¼ö À־ Áß¿äÇÑ ÇÁ·Î±×·¥ Çϳª¸¦ ¼Ò°³ÇϰíÀÚ ÇÑ´Ù. ¾Æ·¡´Â topÀ» ½ÇÇà½ÃŲ ÈÄÀÇ °á°úÄ¡ÀÌ´Ù.

[root@slug /root]# top

10:17am up 11:43, 2 users, load average: 1.01, 1.02, 1.00

65 processes: 61 sleeping, 4 running, 0 zombie, 0 stopped

cpu states: 23.3% user, 76.6% system, 0.0% nice, 0.0% idle

mem: 63200k av, 61584k used, 1616k free, 31316k shrd, 21836k buff

swap: 68508k av, 8528k used, 59980k free 17848k cached

pid user pri ni size rss share stat lib %cpu %mem time command

4872 root 15 0 12236 7756 3828 r 0 99.0 12.2 573:41 netscape-com

15451 root 2 0 1028 1028 828 r 0 0.9 1.6 0:05 top

1 root 0 0 164 116 92 s 0 0.0 0.1 0:04 init

2 root 0 0 0 0 0 sw 0 0.0 0.0 0:00 kflushd

3 root 0 0 0 0 0 sw 0 0.0 0.0 0:00 kpiod

4 root 0 0 0 0 0 sw 0 0.0 0.0 0:00 kswapd

5 root -20 -20 0 0 0 sw< 0 0.0 0.0 0:00 mdrecoveryd

111 root 0 0 68 0 0 sw 0 0.0 0.0 0:00 apmd

260 bin 0 0 244 216 160 s 0 0.0 0.3 0:03 portmap

307 root 0 0 240 172 128 s 0 0.0 0.2 0:00 syslogd

318 root 0 0 448 164 136 s 0 0.0 0.2 0:00 klogd

332 daemon 0 0 152 112 68 s 0 0.0 0.1 0:00 atd

346 root 0 0 176 120 76 s 0 0.0 0.1 0:00 crond

364 root 0 0 140 72 44 s 0 0.0 0.1 0:00 inetd

378 root 0 0 1044 464 300 s 0 0.0 0.7 0:00 named

392 root 0 0 100 0 0 sw 0 0.0 0.0 0:00 lpd

409 root 0 0 92 0 0 sw 0 0.0 0.0 0:00 rpc.statd

°¢ ÇÁ·Î¼¼½ºµéÀÇ cpu,¸Þ¸ð¸® Á¡À¯À²µîÀÌ Àϸñ ¿ä¿¬ÇÏ°Ô ³ªÅ¸³ª´Â Æí¸®ÇÑ ÇÁ·Î±×·¥ÀÌ´Ù.

³×Æ®¿öÅ© °ü¸® ÇÁ·ÎÅäÄÝ

°ú°Å ³×Æ®¿öÅ©°¡ ±×´ÙÁö º¸±ÞµÇÁö ¾ÊÀº ½ÃÀý¿¡´Â °ü¸®ÇÏ´Â ³×Æ®¿öÅ© ±â±âÀÇ ¼ö°¡ ¾ó¸¶ µÇÁö ¾Ê¾Ò´Ù. ±×·¡¼­ °ü¸®ÀÚ´Â ÀÌ ±â±âµéÀ» ÆÄ¾ÇÇÏ¿© ¹®Á¦°¡ ¹ß»ýÇÒ ¶§ °æÇè°ú Á÷°üÀ¸·Î ÇØ°áÇÏ¿´¾ú´Ù.

ÇÏÁö¸¸ ¿À´Ã³¯ ³×Æ®¿öÅ©°¡ ´ëÁßÈ­µÇ¾î ±× ±â±âÀÇ ¼ö´Â ±âÇϱ޼öÀûÀ¸·Î ´Ã¾î³µÀ» »Ó¸¸ ¾Æ´Ï¶ó ÀÌ¿¡ ´ëÇÑ °ü¸®´Â ¶§·Î´Â ±â¾÷ÀÇ ÀÌÀͰú Á÷°áµÈ´Ù°í º¸¾Æµµ Ʋ¸° ¸»Àº ¾Æ´Ò °ÍÀÌ´Ù. ÀÌ·¸°Ô ¹«¼öÈ÷ ´Ã¾î³­ ³×Æ®¿öÅ© ±â±â·Î ±¸¼ºµÈ ³×Æ®¿öÅ©ÀÇ °ü¸®´Â ÀÎÅͳÝÀÇ º»°íÀåÀÎ ¹Ì±¹¿¡¼­ tcp/ipÀÇ º¸±ÞÀÌ ±Þ¼ÓÈ÷ ÁøÀüµÇ¸é¼­ ³×Æ®¿öÅ© °ü¸® ÇÁ·ÎÅäÄÝÀÇ °³¹ß·Î À̾îÁ³´Ù. ÃÖÃÊ·Î °í¾ÈµÈ °ÍÀÌ sgmp(simple gateway monitoring protocol)ÀÌ´Ù. À̰ÍÀº À̸§ ±×´ë·Î ³×Æ®¿öÅ© ±â±â Áß¿¡¼­µµ °ÔÀÌÆ®¿þÀ̸¦ °¨½ÃÇϱâ À§ÇÑ ÇÁ·ÎÅäÄÝÀ̾ú´Ù. À̿ܿ¡µµ ¿©·¯ °¡Áö ÇÁ·ÎÅäÄݵéÀÌ °í¾ÈµÇ¾úÀ¸³ª iab(internet architecture board)°¡ ÀÌ·¯ÇÑ ¿©·¯ ÇÁ·ÎÅäÄݵéÀÇ ÀåÁ¡À» ¸ð¾Æ »õ·Î¿î ³×Æ®¿öÅ© °ü¸® ÇÁ·ÎÅäÄÝÀ» ¸¸µé¾ú´Ù. À̰ÍÀÌ tcp/ip¸¦ ±â¹ÝÀ¸·Î sgmp¸¦ °è½ÂÇÑ snmp(simple network management protocol)ÀÌ´Ù.

ÇÑÆí, ±¹Á¦Ç¥ÁØÈ­±â±¸(iso)¿¡¼­´Â osi¸¦ ±â¹ÝÀ¸·Î ÇÑ ³×Æ®¿öÅ© °ü¸® ÇÁ·ÎÅäÄÝÀÎ cmis/cmip(common mana gem ent information service/protocol)ÀÇ Ç¥ÁØÈ­¸¦ ÁøÇà½Ã۰í ÀÖ¾ú´Ù. ´çÃÊ snmp´Â osi¸¦ »ç¿ëÇÑ ³×Æ®¿öÅ© °ü¸® ÇÁ·ÎÅäÄÝÀÌ ½Ç¿ëÈ­µÇ±â Àü±îÁöÀÇ ÀáÁ¤ÀûÀÎ °ÍÀ̾úÀ¸³ª ÀåÄ¡°¡ °£´ÜÇÏ´Ù´Â ÀåÁ¡ ¶§¹®¿¡ ¸¹Àº ȸ»ç ±â±â¿¡ ÀåÂøµÇ¾î ÇöÀç¿¡ À̸£°í ÀÖ´Ù. osi ±â¹ÝÀÇ cmis/cmip´Â ½Ç¿ëÀûÀ¸·Î´Â ±×´ÙÁö º¸±ÞµÇÁö ¸øÇÑ »óȲÀ̱⿡ Çö½ÃÁ¡¿¡¼­ Ç¥ÁØÀûÀÎ ³×Æ®¿öÅ© °ü¸® ÇÁ·ÎÅäÄÝÀº snmp¶ó°í ÇÒ ¼ö ÀÖ´Ù.

(the simple network management protocol)

snmp´Â ÀÏÁ¾ÀÇ Å¬¶óÀ̾ðÆ®/¼­¹ö ¸ðµ¨ÀÎ ¸Å´ÏÀú(manager)/¿¡ÀÌÀüÆ®(agent)±¸Á¶ÀÌ´Ù. °¢°¢ÀÇ ¿¡ÀÌÀüÆ®µéÀº ³×Æ®¿öÅ© Àåºñ³ª È£½ºÆ®¸¦ ³ªÅ¸³»´Âµ¥ À̵éÀº ÀÚ½ÅÀÇ ³×Æ®¿öÅ©¿¡ ´ëÇÑ Á¤º¸¸¦ °¡Áö¸ç º¸Åë snmpd¶ó´Â µ¥¸óÀ» ¼öÇàÇÑ´Ù. ±×·¡¼­ ¸Å´ÏÀú°¡ ÀÚ½ÅÀÇ ³×Æ®¿öÅ© Á¤º¸¿¡ ´ëÇÑ ÁúÀǸ¦ ÇØ¿À¸é ÀÌ¿¡ ´ë´äÇÏ´Â ±¸Á¶¸¦ °¡Áø´Ù.

tcp/ipÀÇ ³×Æ®¿öÅ© ±¸¼º¿ä¼Ò´Â ´ÙÀ½ÀÇ ¼¼ °¡ÁöÀÌ´Ù.

(1) management information base(mib)

- ¿¡ÀÌÀüÆ®°¡ ¾î¶² Á¤º¸¸¦ °¡Á®¾ß ÇÏ´ÂÁö Á¤ÀÇ

(2) structure of management information(smi)

- mibÀÇ º¯¼ö°ªÀ» ÂüÁ¶ÇÒ ¶§ »ç¿ëµÇ´Â °èÃþ±¸Á¶

(3) simple network management protocol(snmp)

- ¸Å´ÏÀú¿Í ¿¡ÀÌÀüÆ®»çÀÌÀÇ Åë½Å ÇÁ·ÎÅäÄÝ

* »ç½Ç ³×Æ®¿÷À» À̾߱âÇϸ鼭 dns °ü·Ã »çÇ×À» ¾ê±âÇÏÁö ¾Ê´Â´Ù¸é ±×°Ç ÁøÁ¤ÇÑ ÀǹÌÀÇ ³×Æ®¿÷ °ü·Ã °­Àǰ¡ ¾Æ´Ï¶ó°í »ý°¢ÇÑ´Ù. ÀÌ ºÎºÐÀº Ãß°¡ÀûÀ¸·Î ¸®´ª½º °øµ¿Ã¼ ¼¼¹Ì³ª ÀÚ·á½Ç¿¡ Ãß°¡·Î ¿Ã¸± °ÍÀÌ´Ù. Âü°í ÇÏ½Ã°í ³×Æ®¿÷ÀÇ °øºÎ¿¡ µµ¿òÀÌ µÇ½Ã±â¸¦ ¹Ù¶ø´Ï´Ù. ÀÌ»óÀ¸·Î ³×Æ®¿÷ °ü·ÃµÈ »çÇ×Àº ¸¶Ä¡±â·Î ÇÏ°í ´ÙÀ½À¸·Î ³Ñ¾î°¥±î ÇÕ´Ï´Ù.






3. ·¹µåÇÞ ¸®´ª½º 6.0 ¼³Ä¡¿Í Ȱ¿ë

ÇöÀç ³ª¿ÍÀÖ´Â ´ëºÎºÐÀÇ ÇÑ±Û ¹èÆ÷ÆÇÀº ·¹µåÇÞ ¸®´ª½º 6.0À» ±â¹ÝÀ¸·Î Çϰí ÀÖ´Ù. ¿©±â¼­´Â ¸®´ª½º¸¦ óÀ½ ¼³Ä¡ÇϽô ºÐµéÀ» Áß½ÉÀ¸·Î °¡Àå Áß¿äÇÑ ³»¿ëµéÀ» ÁÖ·Î À̾߱â ÇϰڴÙ..

1. ¼³Ä¡Çϱâ

1) ¼³Ä¡¸¦ À§ÇÑ ºÎÆÃÇϱâ

¿©·¯ºÐÀÇ ÄÄÇ»ÅͰ¡ ºñ±³Àû ±Ù·¡¿¡ ³ª¿Â ¶Ê¶ÊÇÑ ³à¼®À̶ó¸é cd-romÀ¸·Î ºÎÆÃÀÌ °¡´ÉÇÒ °ÍÀÌ´Ù. ±×·¸´Ù¸é ¼³Ä¡¸¦ À§ÇÑ ºÎÆÃÀº ³Ê¹«µµ °£´ÜÇÏ´Ù. ÄÄÇ»Å͸¦ cd-romÀ¸·Î ºÎÆÃÀÌ °¡´ÉÇϵµ·Ï cmos¼³Á¤À» ¹Ù²ãÁֽŠÈÄ¿¡ ¸®´ª½º cd¸¦ ³Ö°í ºÎÆÃÇϱ⸸ ÇÏ¸é µÈ´Ù. ¸¸¾à cd-romºÎÆÃÀÌ ¾ÈµÇ´Â ÄÄÇ»ÅͶó¸é ºÎÆÃµð½ºÅ©¸¦ ¸¸µç´Ù.

* ºÎÆÃµð½ºÅ© ¸¸µé±â

¸®´ª½º ½ÃµðÀÇ /dosutils µð·ºÅ丮ÀÇ rawrite ÇÁ·Î±×·¥À» ÀÌ¿ëÇÑ´Ù.

µð½ºÄÏÀ» a µå¶óÀ̺꿡 ³ÖÀº ÈÄ ´ÙÀ½°ú °°ÀÌ ½ÇÇàÇÏ¸é ºÎÆÃµð½ºÅ©¸¦ ¸¸µç´Ù.

d:\dosutils>rawrite

enter disk image source file name: ..\images\boot.img ?

enter target diskette drive: a: ?

please insert a formatted diskette into drive a: and press --enter-- : ?

ºÎÆÃµð½ºÅ©°¡ ¸¸µé¾îÁ³À¸¸é a: µå¶óÀ̺꿡 ³Ö°í ºÎÆÃÀ» ÇÕ´Ï´Ù.

2) ù È­¸éÀÌ ¶ß¸é ¿µ¾î·Î ÂÞ¿í~ ÀûÈù ȯ¿µ°ú ¾È³» È­¸éÀÌ ³ª¿À°í Á¦ÀÏ ¹Ø¿¡ Æã¼ÇŰ ¸Þ´º¿Í boot: ¶ó°í ³ª¿À°í Ä¿¼­°¡ ±ô¹ÚÀδÙ. À̶§ ±×³É ¿£Å͸¦ ÃÄÁÖ¸é µÈ´Ù. ±×·³ ¹º°¡ ½ÃÀÛÇÏÁÒ?

3) µÎ ¹øÂ° È­¸é ¿ª½Ã ȯ¿µ°ú ÇÔ²² ¾È³» ¸Þ½ÃÁö´Ù.

4) ±× ´ÙÀ½Àº ¼³Ä¡½Ã »ç¿ëÇÏ´Â ¾ð¾î¸¦ °í¸£´Â È­¸éÀÌ´Ù. english¸¦ ¼±ÅÃÇÑ´Ù.

5) À̹ø¿£ Űº¸µå ¼±ÅÃÀÌ´Ù. ¿ª½Ã us¸¦ °í¸£¸é µÈ´Ù.

6) ´ÙÀ½Àº ÀνºÅç ¼ö´Ü(installation method)ÀÌ´Ù. ´ëºÎºÐÀÌ cd-rom¿¡ ´ã±ä ¸®´ª½º ¹èÆ÷ÆÇÀ» ÀÌ¿ëÇÒÅ×´Ï local cdromÀ» °í¸¥´Ù.

7) ¸®´ª½º ½Ãµð¸¦ ³ÖÀ¸¶ó³×¿ä. ÀÌ¹Ì ³Ö¾î µ×ÁÒ? ±×³É ¿£ÅÍ...o.k.

8) »õ·Î ¼³Ä¡ÇÒ °ÍÀΰ¡? ±âÁ¸¿¡ ±ò¸° ¸®´ª½º¸¦ ¾÷±×·¹À̵å ÇÒ °ÍÀΰ¡? óÀ½ ¸®´ª½º¸¦ ¼³Ä¡ÇÑ´Ù¸é ´ç¿¬È÷ »õ·Î ¼³Ä¡( install ), ±âÁ¸¿¡ ¼³Ä¡µÇ¾î ÀÖ´Â ¸®´ª½º°¡ À־ °¡±ÞÀûÀÌ¸é ±×³É »õ·Î ¼³Ä¡ÇÑ´Ù. ^^; ÀÌ¹Ì ¼³Ä¡µÇ¾î ÀÖ´Â ¸®´ª½º°¡ ¿¾³¯ ¹öÀüÀÇ ¸®´ª½ºÀÏ °æ¿ì ¶óÀ̺귯¸® ȣȯ ¹®Á¦°¡ »ý±æ ¼öµµ Àֱ⠶§¹®ÀÌ´Ù.

9) installation class¶ó°í ³ª¿ÀÁÒ? ¸®´ª½º¸¦ ¾î¶²½ÄÀ¸·Î ¼³Ä¡ÇÒ °ÍÀΰ¡¸¦ ¹¯´Â°ÍÀε¥. Àß ¸ð¸¥´Ù¸é ±×³É customÀ» ¼±ÅÃÇÒ °ÍÀ» °­Á¶ ¶Ç °­Á¶ÇÑ´Ù. workstationÀÇ °æ¿ì ±âÁ¸ÀÇ ¸®´ª½º ÆÄƼ¼ÇÀ» Áö¿ö¹ö¸®°í ½º½º·Î ¾Ë¾Æ¼­ ´Ù½Ã ³ª´©¾î ¼³Ä¡Çϰí, serverÀÇ °æ¿ì ÇÑ ÄÄÇ»Å͸¦ ¸ù¶¥ ¸®´ª½º Àü¿ë ÄÄÇ»ÅÍ·Î ¸¸µé¾î¹ö¸°´Ù.(¹°·Ð ±âÁ¸¿¡ ÀÖ´ø À©µµ¿ì98 °°Àº °Íµµ ±ú²ýÀÌ Áö¿ö ¹ö¸°´Ù. ) windows¿Í °°Àº ´Ù¸¥ ¿î¿µÃ¼Á¦¿Í °°ÀÌ ¾²·Á¸é customÀ» ¼±ÅÃÇÏ´Â °ÍÀÌ Á¤½Å°Ç°­¿¡ ÁÁ´Ù.

10) scsi ¾î´ðÅͰ¡ Àִ°¡ ¹¯°í ÀÖ´Ù. ÀÖÀ¸¸é yes, ¾øÀ¸¸é no.

11) ÀÌÁ¦ºÎÅÍ °¡Àå ¾î·Æ´Ù°í »ý°¢µÇ´Â ÆÄƼ¼ÇÀ» ³ª´©´Â ºÎºÐÀÌ´Ù.(»ç½Ç º°·Î ¾î·Á¿ï °Íµµ ¾ø

´Ù.) ¿ì¼± ¸¾¿¡µå´Â µµ±¸¸¦ ¼±ÅÃÇÑ´Ù. disk druid°¡ fdiskº¸´Ù Á¶±Ý °£ÆíÇÏ´Ù. fdisk¸¦ ¾²°í ½Í´Ù¸é ¾î¿ ¼ö ¾øÁö¸¸ ¿ì¸®´Â disk druid¸¦ ¾²±â·Î ÇÏÀÚ.

<¿©±â¼­ Àá±ñ!> ÆÄƼ¼ÇÀ» ½ÇÁ¦·Î ³ª´©±â Àü¿¡ ÆÄƼ¼Ç¿¡ °üÇÑ ²À ÇÊ¿äÇÑ ³»¿ëÀ» À̾߱âÇÏ°í °¡ÀÚ. ¾ÆÁÖ ½±°Ô ¾ê±âÇØ¼­ ÆÄƼ¼ÇÀ» ³ª´«´Ù´Â °ÍÀº ÇϳªÀÇ Çϵåµð½ºÅ©¿¡ ¿©·¯°³ÀÇ °ø°£À» ¸¸µç´Ù°í »ý°¢ÇÏ¸é µÈ´Ù. µû¶ó¼­ ¸®´ª½º ÆÄƼ¼ÇÀ» ¸¸µå´Â °ÍÀº windows¿Í´Â ´Ù¸¥ ¸®´ª½º¸¸ÀÇ °ø°£À» ¸¸µå´Â °ÍÀÌ´Ù. ¸¸ÀÏ ±âÁ¸¿¡ »ç¿ëÇϰí ÀÖ´Â windows°°Àº ¿î¿µÃ¼Á¦°¡ ÇϳªÀÇ Çϵåµð½ºÅ©¸¦ Åë°·Î »ç¿ëÇϰí ÀÖ´Ù¸é Á» ´õ ¼ö°í¸¦ ÇØ¾ßÇÑ´Ù. ±×·¸Áö ¾Ê°í ¿¹¸¦ µé¾î 6.4gÀÇ Çϵ带 4g, 2g¾¿ ³ª´©¾î »ç¿ëÇϰí ÀÖ´Ù¸é º° ¼ö°í ¾øÀÌ ¸®´ª½º¸¦ ¼³Ä¡ÇÒ ¼ö ÀÖ´Ù. Ưº°ÇÑ ¿ëµµ(¿¹¸¦ µé¸é, ¼­¹ö¿î¿µ)°¡ ¾Æ´Ï¶ó¸é 1.5gÁ¤µµÀÇ ¿ë·®ÀÌ¸é ¸®´ª½º¸¦ ¼³Ä¡Çϱ⿡ ÃæºÐÇÏ´Ù.

* À§¿¡¼­ ¾ð±ÞÇßµíÀÌ ´Ù¸¥ ¿î¿µÃ¼Á¦°¡ Çϵåµð½ºÅ©¸¦ Åë°·Î »ç¿ëÇϰí ÀÖ´Ù¸é fips¶ó´Â À¯Æ¿¸®Æ¼¸¦ ÀÌ¿ëÇÏ¿© ±âÁ¸ÀÇ Çϳª·Î µÇ¾îÀÖ´Â ÆÄƼ¼ÇÀ» ³ª´©¾î ÁÖ¾î¾ß ÇÑ´Ù. ÀÌ fips¶ó´Â À¯Æ¿¸®Æ¼´Â ¸®´ª½º ½ÃµðÀÇ /dosutils ¶ó´Â µð·ºÅ丮¿¡ ÀÖÀ¸¸ç ÀÚ¼¼ÇÑ »ç¿ë¹ýÀº /dosutils/fipsdocs ¶ó´Â µð·ºÅ丮¿¡ ÀÖ´Ù.

* ÆÄƼ¼Ç¿¡ °üÇÑ ÀÚ¼¼ÇÑ ¼³¸íÀº ¾Æ·¡ ÆäÀÌÁö¸¦ Âü°íÇϽñ⠹ٶø´Ï´Ù.

http://kldp.org/howto/mini/html/partition/partition.html

12) ÇÖ..Á» º¹ÀâÇÑ È­¸éÀÌ ¶¹ÁÒ? ÆÄƼ¼Ç¿¡ °üÇÑ Á¤º¸¸¦ º¸¿©ÁÖ°í °íÄ¡´Â ºÎºÐÀÌ´Ù.

È­¸éÀÌ À§, ¾Æ·¡ µÎºÐÀ¸·Î ³ª´©¾îÁ® ÀÖ½À´Ï´Ù. À­ºÎºÐÀº ÆÄƼ¼Ç¿¡ °üÇÑ Á¤º¸¸¦ º¸¿©ÁÖ´Â È­¸éÀÌ°í ¾Æ·§ºÎºÐÀº Çϵåµð½ºÅ©ÀÇ Á¤º¸¸¦ º¸¿©ÁÖ´Â È­¸éÀÌ´Ù. ±âº»ÀûÀÎ ¿ë¾î¸¦ Á¤¸®Çغ¸¸é

mout point : ¸¶¿îÆ®ÇÒ À§Ä¡

device : ÆÄƼ¼Ç À̸§À̶ó°í º¸¸é µÈ´Ù. hda1Àº ù ¹øÂ° Çϵåµð½ºÅ©ÀÇ 1¹ø ÆÄƼ¼ÇÀ» ¸»ÇÑ´Ù.

scsiÇϵåÀÇ °æ¿ì sda1°ú °°Àº ½ÄÀ¸·Î ³ªÅ¸³­´Ù.

requested: »ç¿ëÀÚ°¡ ¿ä±¸ÇÑ ¿ë·®

actual: ½ÇÁ¦·Î ÇÒ´çµÈ ¿ë·®

type: ÆÄÀÏ ½Ã½ºÅÛÀÇ Á¾·ù.

¿©±â¼­ ¿ì¸®°¡ ÇØ¾ßÇÒ ÀÏÀº ¸®´ª½º¸¦ ¼³Ä¡Çϱâ À§ÇØ linux native ÆÄƼ¼Ç°ú linux swap ÆÄƼ¼ÇÀ» ¸¸µé¾î ÁÖ´Â ÀÏÀÌ´Ù. ¿¹¸¦ µé¾î ¼³¸íÇϰڴÙ. ¸¸¾à ±âÁ¸¿¡ ÇϳªÀÇ Çϵåµð½ºÅ©¸¦ c¿Í d·Î ³ª´©¾î »ç¿ëÇÏ¿´´Ù¸é ¾Æ¸¶µµ È­¸éÀÇ À­ºÎºÐÀº hda1°ú hda2 µÎÁÙ·Î ÀÌ·ç¾îÁ® ÀÖÀ» °ÍÀÌ´Ù. À̶§ ±âÁ¸ÀÇ cµå¶óÀ̺꿡 windows¸¦ ±×´ë·Î µÎ°í dµå¶óÀ̺꿡 ¸®´ª½º¸¦ ¼³Ä¡ÇÏ°í ½Í´Ù¸é ÀÏ´ÜÀº hda2¿¡ ÆÄ¶õ»ö ¸·´ë(?)°¡ ¿Àµµ·Ï ÇÑ ÈÄ f4۸¦ ´­·¯(ȤÀº tabŰ·Î À̵¿Çؼ­) ÆÄƼ¼ÇÀ» »èÁ¦ÇÑ´Ù. ±× ´ÙÀ½ f1۸¦ ´­·¯¼­ ÆÄƼ¼ÇÀ» Ãß°¡ÇÑ´Ù. edit new partition À̶ó´Â »õ·Î¿î âÀÌ ¶ã °ÍÀÌ´Ù. ÀÏ´Ü ¸¶¿îÆ® Æ÷ÀÎÆ®´Â ºñ¿ö ³õÀº ÈÄ size·Î Ä¿¼­¸¦ ¿Å°Ü 100Á¤µµ·Î Àû¾îÁØ´Ù(¿Ö ²À 100À̾î¾ß Çϴ°¡? ¾Æ´Ï¾îµµ µÈ´Ù. ÇÏÁö¸¸ ÇÏµå ¿ë·®¿¡ ´Ù¼Ò ¿©À¯°¡ ÀÖ´Ù¸é 100Á¤µµ·Î ÀâÀ¸¸é µÈ´Ù.). ±× ´ÙÀ½ typeÀ¸·Î ¿Å°Ü linux swapÀ» ¼±ÅÃÇÑ´Ù. allowable drives(ÆÄƼ¼ÇÀ» ¼³Ä¡ÇÒ µå¶óÀ̺긦 ¼±ÅÃÇÏ´Â °ÍÀÌ´Ù. µÎ °³ÀÏ °æ¿ì µÎ °³´Ù * üũµÈ ä·Î µÎ¸é ½º½º·Î ¾Ë¾Æ¼­ ó¸®ÇÑ´Ù.)´Â *üũµÈä·Î µÐ´Ù. o.k. ±×·¯¸é ´Ù½Ã µ¹¾Æ¿Â È­¸é¿¡¼­ »õ·Ó°Ô »ý¼ºµÈ ÆÄƼ¼ÇÀ» º¼ ¼ö ÀÖÀ» °ÍÀÌ´Ù. Çϳª ´õ ¸¸µéÀÚ. add! À̹ø¿£ ¸¶¿îÆ® Æ÷ÀÎÆ®¿¡ / ¸¦ Àû´Â´Ù. size ³²Àº ¿ë·®À» ´ëÃæ °è»êÇØ¼­ Àû´Â´Ù. grow to fill disk? ¿©±â¿¡ * ·Î Ã¼Å©ÇØÁØ´Ù. ±×·¯¸é ³²Àº ¿ë·®À» ¾Ë¾Æ¼­ ÀüºÎ ä¿öÁØ´Ù. À̹ø¿¡´Â typeÀ» linux native·Î ¼±ÅÃÇÑ´Ù. allowable drives´Â ¿ª½Ã *·Î üũµÈä·Î µÐ´Ù. o.k. Çϳª°¡ ´õ ¸¸µé¾îÁ³ÁÒ? ÀÌÁ¦ ¸®´ª½º¸¦ À§ÇÑ °ø°£ ¸¶·ÃÀº ³¡³µ½À´Ï´Ù. o.k.·Î ³Ñ¾î°£´Ù.

13) active swap space¶ó°í ³ª¿ÀÁÒ? ½º¿Ò ÆÄƼ¼Ç¿¡ ½º¿Ò ¿µ¿ªÀ» ¸¸µé¾î ÁØ´Ù. À§¿¡¼­ ¸¸µç ½º¿Ò ÆÄƼ¼ÇÀÌ hda2¶ó¸é ´ÙÀ½°ú °°ÀÌ ³ª¿Â´Ù.

device size (k)

[*] /dev/hda2 10xxxxx

[ ] check for bad blocks during format

¾Æ·¡ ³»¿ëÀº ½º¿Ò ¿µ¿ªÀ» ¸¸µé¸é¼­ Çϵåµð½ºÅ©¿¡ ¹èµå ¼½Å͸¦ °Ë»çÇÒ °ÍÀÎÁö¸¦ ¹°¾îº¸´Â °ÍÀÌ´Ù. À­ ºÎºÐÀº ¹Ýµå½Ã * üũ ÇØÁà¾ß ÇÏ¸ç ¾Æ·§ ºÎºÐÀº ¹èµå ¼½ÅͰ¡ ¾ø´Â °Ô È®½ÇÇÏ´Ù¸é üũ ¾ÈÇØµµ µÈ´Ù.(üũÇÒ °æ¿ì ½Ã°£ÀÌ Á» ¿À·¡ °É¸°´Ù.) o.k.

14) À̹ø¿¡´Â À§¿Í ºñ½ÁÇÑ ¹æ¹ýÀ¸·Î linux native ÆÄƼ¼ÇÀ» Æ÷¸ËÇÏ´Â ºÎºÐÀÌ´Ù. ¿ª½Ã À§¿Í °°Àº ¹æ¹ýÀ¸·Î ¼³Á¤ÇÏ°í ³Ñ¾î°£´Ù.




15) ¼³Ä¡ÇÒ ÆÐŰÁö¸¦ °í¸£´Â È­¸éÀÌ´Ù. ¾î´À Á¤µµ °¢°¢ÀÇ ÆÐŰÁöÀÇ ¿ëµµ¿¡ ´ëÇÏ¿© ¾Ë°í ÀÖ°í ÇÏµå ¿ë·®ÀÌ ºÎÁ·ÇÏ´Ù¸é ÀÚ½ÅÀÌ ¿øÇÏ´Â ÆÐŰÁö¸¸À» ¼±ÅÃÇÑ´Ù. ±×·¸Áö ¾ÊÀ¸¸é Á¦ÀÏ ³¡ºÎºÐ¿¡ ÀÖ´Â everythingÀ» ¼±ÅÃÇÏ¿© ÀüºÎ ¼³Ä¡ÇÑ´Ù. ¾Æ·§ºÎºÐÀÇ select individual packages¸¦ ¼±ÅÃÇÏ¸é ´õ ÀÚ¼¼ÇÏ°Ô ¼±ÅÃÇÒ ¼ö ÀÖ´Ù. everything À¸·Î ¼±ÅÃÇß´Ù°í ÇÏ°í ±×³É ³Ñ¾î°¡±â·Î ÇÑ´Ù.


16) ¼³Ä¡°úÁ¤¿¡¼­ÀÇ ±â·ÏµéÀÌ /tmp/install.log ¿¡ ±â·ÏµÇ¾î ÀÖÀ½À» ¾È³»ÇØ ÁÖ°í ÀÖ´Ù. Çѹø Àо°í ³Ñ¾î°¡ÀÚ.



17) ¾Æ~ µåµð¾î ¸Ó¸®¾ÆÇ ½Ã°£ÀÌ °¡°í Á¶±Ý ½¯ ¿©À¯°¡ »ý°å±º¿ä. ÆÄÀϽýºÅÛÀ» ¸¸µé°í °Å±â¿¡ ÇÁ·Î±×·¥À» ¼³Ä¡Çϱ⠽ÃÀÛÇÑ´Ù.

18) º° ¹®Á¦¾øÀÌ ÆÄÀϽýºÅÛ ¸¸µé±â¿Í ÆÄÀÏ º¹»ç°¡ ³¡³µ´Ù¸é ¸¶¿ì½º ¼³Á¤ È­¸éÀÌ ³ª¿Ã °ÍÀÌ´Ù. ps/2 ¸¶¿ì½ºÀÇ °æ¿ì ´ëºÎºÐ ¾Ë¾Æ¼­ ÀνÄÇØÁØ´Ù. ¾Æ´Ï¶ó¸é È­¸é¿¡¼­ ÀÚ½ÅÀÌ °®°í ÀÖ´Â ¸¶¿ì½º Á¾·ù¸¦ ¼±ÅÃÇÑ´Ù. ½Ã¸®¾ó ¸¶¿ì½ºÀÇ °æ¿ì ¸¶¿ì½º Æ÷Æ® ¼³Á¤ È­¸éÀÌ ³ª¿Ã ¼ö ÀÖ´Ù. ¿ª½Ã ÀÚ½ÅÀÇ ¸¶¿ì½º°¡ ²ÅÇôÀÖ´Â Æ÷Æ®¸¦ È®ÀÎÇÏ°í ¼±ÅÃÇØÁØ´Ù

.

19) À̹ø¿£ ·£Ä«µåÀÇ ¼³Á¤ÀÌ´Ù. ·£Ä«µå°¡ ¾øÀ¸¸é no¸¦ ¼±ÅÃÇÏ¿© ³Ñ¾î°¡°í ·£Ä«µå°¡ ÀÖÀ¸¸é yes¸¦ ¼±ÅÃÇÑ´Ù. ·£Ä«µå°¡ ¾øÀ¸¸é 21)¹ø °úÁ¤À¸·Î ³Ñ¾î°¡ÀÚ.

20) ´ëºÎºÐÀÇ ·£Ä«µå´Â ÀÚµ¿À¸·Î ÀνÄÇÑ´Ù. ±×·¸Áö ¾ÊÀ» °æ¿ì ·£Ä«µå¿¡ ÇØ´çÇÏ´Â ¸ðµâÀ» ¼±ÅÃÇÏ´Â ¸Þ´º°¡ ³ª¿À´Âµ¥ ÀÚ½ÅÀÌ °¡Áö°í ÀÖ´Â ·£Ä«µå¸¦ °í¸£¸é µÈ´Ù. ´ÙÀ½¿¡ ³ª¿À´Â ¸ðµâ ¿É¼ÇÀº autoprobe·Î ÇÏ¸é ¹«³­ÇÏ´Ù. À̹ø¿£ boot protocolÀ» °í¸¥´Ù. ÀϹÝÀûÀÎ °æ¿ì static ip address¸¦ °í¸¥´Ù.(bootp¿Í dhcp¿¡ °üÇÑ ÀÚ¼¼ÇÑ ³»¿ëÀº °ü·Ã howto¹®¼­¸¦ ÂüÁ¶Ç϶ó.) ´ÙÀ½Àº tcp/ip¼³Á¤ÀÌ´Ù. ÀÚ½ÅÀÇ ³×Æ®¿÷¿¡ ¸Â°Ô ¼³Á¤ÇÑ´Ù. ´ÙÀ½Àº µµ¸ÞÀÎ À̸§, È£½ºÆ® À̸§, ³×ÀÓ¼­¹öÁÖ¼Ò¿Í °°Àº ³×Æ®¿÷ ÀÏ¹Ý ¼³Á¤ÀÌ´Ù. ¿ª½Ã ÀÚ½ÅÀÇ ³×Æ®¿÷¿¡ ¸Â°Ô ¼³Á¤ÇÑ´Ù. Àß ¸ð¸¦ °æ¿ì ÀÚ½ÅÀÌ ¼ÓÇØÀÖ´Â ³×Æ®¿÷ ´ã´çÀÚ¿¡°Ô ¹®ÀÇÇ϶ó.


21) ½Ã°£ ¼³Á¤ÀÌ´Ù. °ÅÀÇ ´ëºÎºÐÀÇ °æ¿ì hardware clock set to gmt´Â ¼±ÅÃÇÏÁö ¸»¾Æ¾ß ÇÑ´Ù. ½Ã°£Àº rok³ª asia/seoulÀ» ¼±ÅÃÇÑ´Ù.

22) ºÎÆÃ½Ã ÀÚµ¿À¸·Î ½ÇÇàµÇ´Â ´ë¸ó(daemon)µéÀ» °í¸¥´Ù. ¿øÇÏ´Â °Í¸¸ ¼±ÅÃÇϰí Àß ¸ð¸¦ °æ¿ì ±×´ë·Î µÎ°í ³Ñ¾î°£´Ù.o.k.

23) ÇÁ¸°ÅÍ ¼³Á¤ÀÌ´Ù. ÇÁ¸°ÅͰ¡ ÀÖÀ¸¸é yes ¾øÀ¸¸é no. ÀÖ´ÙÇÏ´õ¶óµµ ¸®´ª½º¸¦ ¼³Ä¡ÇÑ ÄÄÇ»ÅÍ¿¡ ÇÁ¸°ÅͰ¡ ¿¬°áµÇ¾î ÀÖ´Ù¸é ±âº» ¼³Á¤À» À¯ÁöÇÑä °è¼Ó ³Ñ¾î°¡¸é µÈ´Ù. ¹°·Ð ÇÁ¸°Æ® ¸ðµ¨À» °í¸£´Â ºÎºÐ¿¡¼­´Â ÀÚ½ÅÀÌ °¡Áö°í ÀÖ´Â ¸ðµ¨À» ¼±ÅÃÇÑ´Ù. ±âŸ »ï¹Ù µîÀ» ÅëÇÑ ³×Æ®¿÷ ÇÁ¸°ÅÍ ¼³Á¤¿¡ °üÇÑÇØ¼­´Â http://kldp.orgÀÇ ¹®¼­µéÀ» ÂüÁ¶Çϱ⠹ٶõ´Ù.

24) ½Ã½ºÅÛ °ü¸®ÀÚ(root)ÀÇ ÆÐ½º¿öµå¸¦ ÀÔ·ÂÇÏ´Â ºÎºÐÀÌ´Ù. º¸¾È¿¡ ½Å°æÀ» ½á¼­ Àû´çÇÑ °ÍÀ» ÀÔ·ÂÇÏ¸é µÈ´Ù.


25) À̹ø¿¡ ³ª¿À´Â È­¸éÀº network information system(nis)°ú ½¦µµ¿ì ÆÐ½º¿öµå, md5 ÆÐ½º¿öµå¿¡ °üÇÑ ¼³Á¤ÀÌ´Ù. ÀÏ¹Ý »ç¿ëÀÚµéÀº ±âº» ¼³Á¤À» À¯ÁöÇÏ°í ³Ñ¾î°£´Ù. o.k.

26) ¸®´ª½º ¹Ú½º¿¡ ¹®Á¦°¡ »ý°åÀ» ¶§ º¹±¸¸¦ À§ÇØ ºÎÆÃµð½ºÄÏÀ» ¸¸µé °ÍÀÎÁö¸¦ ¸¸µé°í ÀÖ´Ù. ¾È¸¸µé¾îµµ º° ¹®Á¦´Â ¾øÁö¸¸ Çϳª ¸¸µé¾î µÎ´Â°Íµµ ³ª»ÚÁø ¾Ê´Ù.

27) Áß¿äÇÏ´Ù!!! ºÎÆÃÀ» °ü¸®ÇØÁÖ´Â(¿©·¯ ¿î¿µÃ¼Á¦¸¦ ¼±ÅÃÇØ¼­ ºÎÆÃÇØ Áְųª, ¿©·¯ Ä¿³ÎÀ» ¼±ÅÃÀûÀ¸·Î ºÎÆÃÇØÁÖ´Â µîÀÇ ±â´ÉÀÌ ÀÖ´Ù.) lilo¸¦ ¼³Ä¡ÇÒ ¿µ¿ªÀ» ¼±ÅÃÇÑ´Ù. ¹Ýµå½Ã master boot record·Î ¼±ÅÃÀ» ÇØÁØ´Ù.

28) liloÀÇ ¿É¼ÇÀ» Àû¾îÁØ´Ù. ´ëºÎºÐÀÇ °æ¿ì ºóÄ­À¸·Î µÎ°í ³Ñ¾î°£´Ù.

29) µåµð¾î x-windowÀÇ ¼³Á¤ÀÌ´Ù. Á¦ÀÏ ¸ÕÀú ±×·¡ÇÈ Ä«µå´Ù. ÀÚµ¿À¸·Î ÀνĵǴ °æ¿ìµµ ÀÖ°í ÀÚ½ÅÀÇ Ä«µå¸¦ °ñ¶óÁà¾ß ÇÏ´Â °æ¿ìµµ ÀÖ´Ù. Ä«µå¸¦ °ñ¶óÁÖ¸é ÇØ´ç x ¼­¹ö¸¦ ¼³Ä¡ÇÑ´Ù.

30) À̹ø¿£ ¸ð´ÏÅÍ´Ù. ÀÚ½ÅÀÌ °¡Áö°í ÀÖ´Â ¸ð´ÏÅͰ¡ ¸ñ·Ï¿¡ ÀÖÀ» °æ¿ì¿£ ¼±ÅÃÇÑ´Ù. ¾ø´Ù¸é customÀ» ¼±ÅÃÇÏ¿© ÀÚ½ÅÀÇ ¸ð´ÏÅÍ¿¡ ¸Â´Â ¼³Á¤À» ÇØÁÖ¾î¾ß ÇÑ´Ù. ¸ð´ÏÅÍÀÇ »ç¾çÀº ¸ð´ÏÅÍ ¸Å´º¾óÀ» ÂüÁ¶ÇÑ´Ù. ¸ð´ÏÅ͸¦ ¼³Á¤ÇÏ¸é °Ë»ç¸¦ ÇÒ °ÍÀÎÁö¸¦ ¹¯´Â´Ù. probe¸¦ ¼±ÅÃÇÑ´Ù. µÎ¼¼¹ø ±ô¹ÚÀÌ°í °Ë»ç°¡ ³¡³ª¸é ÀûÀýÇÑ ÇØ»óµµ¿Í »ö»ó¼ö¸¦ º¸¿©ÁØ´Ù. ±×³É ÁÖ¾îÁø default °ªÀ¸·Î ¼³Á¤ÇÏ´Â °ÍÀÌ ¹«³­ÇÏ´Ù. ±×·¸Áö ¾ÊÀ» °æ¿ì ÀÚ½ÅÀÌ ¿øÇÏ´Â »ö»ó¿¡ µû¸¥ ÇØ»óµµ¸¦ °ñ¶óÁØ´Ù.

31) x ¼³Á¤ÀÌ Á¦´ë·Î µÇ¾ú³ª ½ÃÇèÀ» ÇϰڳĴ Áú¹®ÀÌ´Ù. yes¸¦ ¼±ÅÃÇϸé x ¼­¹ö¸¦ µ¿ÀÛ½Ã۰í Á¦´ë·Î È­¸éÀÌ Ãâ·ÂµÇ´ÂÁö¸¦ ¹¯´Â´Ù. ±× ´ÙÀ½ Áú¹®Àº ºÎÆÃ½Ã xȯ°æÀ¸·Î ºÎÆÃÇÒ °ÍÀÎÁö ÄܼÖȯ°æÀ¸·Î ºÎÆÃÇÒ °ÍÀÎÁö¸¦ ¹¯´Â °ÍÀÌ´Ù. ¿øÇÏ´Â ´ë·Î ¼³Á¤Ç϶ó.

32) µåµð¾î ±æ°í ±ä ¸®´ª½º ¼³Ä¡ÀÇ °úÁ¤ÀÌ ³¡³µ´Ù. ÃàÇÏ ¸Þ½ÃÁö°¡ ³ªÅ¸³­´Ù. ÀÚµ¿À¸·Î ½Ã½ºÅÛÀ» ¸®ºÎÆÃ ÇØÁØ´Ù.

2. x-window ¼³Á¤Çϱâ

ù¹øÂ°´Â, x¸¦ ¼³Á¤ÇÏ±â ÆíÇÏ°í ½Ã°¢ÀûÀ¸·Î ½±°Ô Á¢±Ù ÇÒ ¼ö ÀÖµµ·Ï xconfigurator¶ó´Â ÅøÀ» ÀÌ¿ëÇÏ¿© x¸¦ ¼³Á¤ÇÏ´Â ¹æ½Ä°ú, µÎ¹øÂ°´Â, ¿¹ÀüÀÇ ÅØ½ºÆ® ¸ðµå·Î½á º¸¿©ÁÖ´Â xf86config°¡ ÀÖ´Ù. ³ª´Â ³»°¡ ÀÚÁÖ ¾²´Â xf86config¸¸ ¼³¸íÇϰڴÙ. xconfigurator°¡ Á¶±Ý ´õ ±×·¡ÇÈÀûÀ̸ç xf86config·Î ¼³Á¤À» ÇÒ¼ö ÀÖ´Ù¸é xconfigurator·Îµµ ÃæºÐÈ÷ ÇÒ¼ö ÀÖÀ»°Å¶ó º»´Ù.

xf86config ·Î ¼³Á¤Çϱâ

ÀÌ ¹æ½ÄÀº À§¿¡¼­µµ ¾ð±ÞÇßµíÀÌ ÅØ½ºÆ® ¸ðµå·Î½á x ¸¦ ¼³Á¤ÇÏ´Â ¹æ¹ýÀÌ´Ù. Äֿܼ¡¼­³ª x interfaces¿¡¼­ ¼³Á¤ ÇÒ ¼ö ÀÖ´Â ¹æ½ÄÀÌ´Ù. ±×·³, ¾Æ¹«µ¥¼­³ª xf86config¸¦ ½ÇÇàÇϱ⠹ٶõ´Ù.

# xf86config

this program will create a basic xf86config file, based on menu selections you make.the xf86config file usually resides in /usr/x11r6/lib/x11 or /etc/x11. a sample xf86config file is supplied with xfree86; it is configured for a standard vga card and monitor with 640x480 resolution. this program will ask for a pathname when it is ready to write the file. you can either take the sample xf86config as a base and edit it for your configuration, or let this program produce a base xf86config file for your configuration and fine-tune it. refer to

/usr/x11r6/lib/x11/doc/readme.config

for a detailed overview of the configuration process.

for accelerated servers (including accelerated drivers in the svga server), there are many chipset and card-specific options and settings. this program does not know about these. on some configurations some of these settings must be specified. refer to the server man pages and chipset-specific readmes. before continuing with this program, make sure you know the chipset and amount of video memory on your video card. superprobe can help with this. it is also helpful if you know what server you want to run.

press enter to continue, or ctrl-c to abort.

xf86configÀÇ µµÀԺκÐÀÌ´Ù. °è¼ÓÇÏ·Á¸é ¿£ÅÍ, Áß´ÜÇÑ´Ù¸é ctrl-c¸¦ ´©¸£¸é µÈ´Ù. ¿£Å͸¦Ãļ­ °è¼Ó ÁøÇàÀ»Çغ¸ÀÚ.

the directory '/usr/x386/bin' exists. you probably have an old version of xfree86 installed (xfree86 3.1 installs in '/usr/x11r6' instead of '/usr/x386'). it is important that the directory '/usr/x11r6' is present in your search path, *before* any occurrence of '/usr/x386/bin'. if you have installed x program binaries that are not in the base xfree86 distribution in '/usr/x386/bin', you can keep the directory in your path as long as it is after '/usr/x11r6'. your path is currently set as follows:

/sbin:/usr/sbin:/bin:/usr/bin:/usr/x11r6/bin:/opt/kde/bin:/root/bin:/usr/x11r6/bin:/opt/kde/bin:/root/bin

note that the x binary directory in your path may be a symbolic link. in that case you could modify the symbolic link to point to the new binaries.

example: 'rm -f /usr/bin/x11; ln -s /usr/x11r6/bin /usr/bin/x11', if the link is '/usr/bin/x11'.

make sure the path is ok before continuing. press enter to continue, or ctrl-c to abort.

ÇöÀç xfree86 ¹öÀüÀÌ ¼³Ä¡µÈ ÆÐ½º¸¦ È®ÀÎÇÏ´Â ÀýÂ÷ÀÌ´Ù. ¿ª½Ã °è¼Ó ÇÏ·Á¸é ¿£Å͸¦ Ä¡°í ³Ñ¾î°¡¸é µÈ´Ù.

first specify a mouse protocol type. choose one from the following list:

1. microsoft compatible (2-button protocol)

2. mouse systems (3-button protocol)

3. bus mouse

4. ps/2 mouse

5. logitech mouse (serial, old type, logitech protocol)

6. logitech mouseman (microsoft compatible)

7. mm series

8. mm hittablet

9. microsoft intellimouse

if you have a two-button mouse, it is most likely of type 1, and if you have a three-button mouse, it can probably support both protocol 1 and 2. there are two main varieties of the latter type: mice with a switch to select the protocol, and mice that default to 1 and require a button to be held at boot-time to select protocol 2. some mice can be convinced to do 2 by sending a special sequence to the serial port (see the cleardtr/clearrts options).

enter a protocol number:

ÀÚ½ÅÀÇ ½Ã½ºÅÛ¿¡ ºÎÂøµÈ ¸¶¿ì½ºÀÇ Á¾·ù¸¦ ¼±ÅÃÇÏ´Â ºÎºÐÀÌ´Ù. ps/2 ¸¶¿ì½º´Â 4¹ø, ÀϹÝÀûÀÎ ½Ã¸®¾ó ¸¶¿ì½º¸¦ °¡Áö°í ÀÖ´Â »ç¿ëÀÚ´Â 1¹øÀ» ¼±ÅÃÇÏ°í ³Ñ¾î°¡¸é µÈ´Ù.

if your mouse has only two buttons, it is recommended that you enable emulate3buttons. please answer the following question with either 'y' or 'n'. do you want to enable emulate3buttons?

ÀϹÝÀûÀÎ 2¹öư »ç¿ëÀÚ¶óµµ ¾çÂÊ ¹öưÀ» °¡Áö°í ¸¶Ä¡ 3¹öư ¸¶¿ì½ºÃ³·³ °¡»ó ¿¡¹Ä·¹ÀÌÆ® ÇØÁÖ´Â ±â´ÉÀ» ¼±ÅÃÇÒ °ÍÀÎÁö ¹¯´Â Ç׸ñÀÌ´Ù. 2¹öư ¸¶¿ì½º¸¦ 3¹öư ¸¶¿ì½ºÃ³·³ »ç¿ëÇÏ·Á¸é yes·Î ¼³Á¤ÇÏ°í ³Ñ¾î°¡±â ¹Ù¶õ´Ù.

now give the full device name that the mouse is connected to, for example /dev/tty00. just pressing enter will use the default, /dev/mouse.

mouse device:

¸¶¿ì½ºÀÇ ½Ã½ºÅÛµð¹ÙÀ̽º¸¦ °áÁ¤ÇÏ´Â ºÎºÐÀÌ´Ù. µðÆúÆ®·Î´Â /dev/mouse·Î µÇ¾îÀÖ´Ù. ¿£Å͸¦ Ä¡°í ³Ñ¾î°¡¸é µÈ´Ù.

beginning with xfree86 3.1.2d, you can use the new x11r6.1 xkeyboard extension to manage the keyboard layout. if you answer 'n' to the following question, the server will use the old method, and you have to adjust your keyboard layout with xmodmap. please answer the following question with either 'y' or 'n'.

do you want to use xkb?

Űº¸µåÀÇ ¾ð¾î ¸ÅÇÎÀ» ÁöÁ¤ÇÏ´Â ºÎºÐÀÌ´Ù. ´ëºÎºÐ no¸¦ ¼±ÅÃÇÑ ÈÄ ´ÙÀ½ÀÇ Å°º¸µå¿¡¼­ ¼±ÅÃÇϱ⠹ٶõ´Ù.

if you want your keyboard to generate non-ascii characters in x, because you want to be able to enter language-specific characters, you can set the left alt key to meta, and the right alt key to modeshift.

please answer the following question with either 'y' or 'n'. do you want to enable these bindings for the alt keys?

À̰ÍÀº ¿ÞÂʰú ¿À¸¥ÂÊ alt ۸¦ ´Ù¸£°Ô ÁöÁ¤ ÇÒ°Í ÀÎÁö¿¡ ´ëÇÑ Ç׸ñÀÌ´Ù. »ç¿ëÀÚÀÇ ¼±Åÿ¡ ´Þ·È´Ù.

now we want to set the specifications of the monitor. the two critical parameters are the vertical refresh rate, which is the rate at which the the whole screen is refreshed, and most importantly the horizontal sync rate, which is the rate at which scanlines are displayed. the valid range for horizontal sync and vertical sync should be documented in the manual of your monitor. if in doubt, check the monitor database /usr/x11r6/lib/x11/doc/monitors to see if your monitor is there.

press enter to continue, or ctrl-c to abort.

¸ð´ÏÅÍ ¼³Á¤¿¡ ¾Õ¼­ ¸ð´ÏÅÍÀÇ ¼öÆò µ¿±â Á֯ļö¿Í ¼öÁ÷ µ¿±â Á֯ļö¸¦ È®ÀÎÇϱ⠹ٶõ´Ù. ¸ð´ÏÅ͸¦ ¼³Á¤ÇÏ·Á¸é ¿£Å͸¦ Ä¡°í ³Ñ¾î°£´Ù.

you must indicate the horizontal sync range of your monitor. you can either select one of the predefined ranges below that correspond to industry-standard monitor types, or give a specific range. it is very important that you do not specify a monitor type with a horizontal sync range that is beyond the capabilities of your monitor. if in doubt, choose a conservative setting.

hsync in khz; monitor type with characteristic modes

1 31.5; standard vga, 640x480 @ 60 hz

2 31.5 - 35.1; super vga, 800x600 @ 56 hz

3 31.5, 35.5; 8514 compatible, 1024x768 @ 87 hz interlaced (no 800x600)

4 31.5, 35.15, 35.5; super vga, 1024x768 @ 87 hz interlaced, 800x600 @ 56 hz

5 31.5 - 37.9; extended super vga, 800x600 @ 60 hz, 640x480 @ 72 hz

6 31.5 - 48.5; non-interlaced svga, 1024x768 @ 60 hz, 800x600 @ 72 hz

7 31.5 - 57.0; high frequency svga, 1024x768 @ 70 hz

8 31.5 - 64.3; monitor that can do 1280x1024 @ 60 hz

9 31.5 - 79.0; monitor that can do 1280x1024 @ 74 hz

10 31.5 - 82.0; monitor that can do 1280x1024 @ 76 hz

11 enter your own horizontal sync range

enter your choice (1-11):

ÀÌ ºÎºÐÀº ÀÚ½ÅÀÌ °¡Áö°í ÀÖ´Â ¸ð´ÏÅÍÀÇ ¼öÆò µ¿±â Á֯ļö¸¦ ¼³Á¤ÇÏ´Â ¹æ½ÄÀÌ´Ù. ¸ÕÀú, ÀÚ½ÅÀÇ ¸ð´ÏÅÍÀÇ ¸Å´º¾ó¿¡¼­ ¼öÆò µ¿±â Á֯ļö ´ë¿ªÀ» È®ÀÎÇÑ ÈÄ¿¡ ã¾Æº¸°í ¾ø´Ù¸é 11¹øÀ» ¼±ÅÃÇÏ¿© ÀÚ½ÅÀÇ Á֯ļö ´ë¿ªÀ» Àû¾îÁÖ¸é µÈ´Ù. 1-10¹ø »çÀ̸¦ ¼³Á¤ÇÑ »ç¿ëÀÚ¸¦ Á¦¿ÜÇÑ 11¹øÀ» ¼±ÅÃÇÏ¿© Á÷Á¢ ¼öÆò µ¿±â Á֯ļö¸¦ ¼³Á¤ÇÏ·Á´Â »ç¶÷Àº ´ÙÀ½ Àå¸éÀ» Àß È®ÀÎÇϱ⠹ٶõ´Ù.

please enter the horizontal sync range of your monitor, in the format used in the table of monitor types above. you can either specify one or more continuous ranges (e.g. 15-25, 30-50), or one or more fixed sync frequencies.

horizontal sync range:

11¹øÀ» ¼±ÅÃÇÏ¿© ³ªÅ¸³­ ºÎºÐÀÌ´Ù. ÀÚ½ÅÀÇ ¼öÆò µ¿±â Á֯ļö ´ë¿ªÀ» (horizontal sync range: ) ÀÌ ºÎºÐ¿¡ Àû¾îÁÖ¸éµÈ´Ù. ¿¹¸¦ µé¾î¼­ ÀÚ½ÅÀÇ ¼öÆò µ¿±â Á֯ļö ´ë¿ªÀÌ 30-65 »çÀ̶ó¸é

ex) horizontal sync range: 30-65

ÀÌ·±½ÄÀ¸·Î ¼³Á¤À» ÇØÁÖ¸é µÈ´Ù. ¼³Á¤À» ´Ù Çß´Ù¸é ´ÙÀ½ ¼öÁ÷ µ¿±â Á֯ļö¸¦ ¼³Á¤ÇÏ´Â ºÎºÐÀ¸·Î À̵¿ÇØ º¸ÀÚ.

you must indicate the vertical sync range of your monitor. you can either select one of the predefined ranges below that correspond to industry-standard monitor types, or give a specific range. for interlaced modes, the number that counts is the high one (e.g. 87 hz rather than 43 hz).

1 50-70

2 50-90

3 50-100

4 40-150

5 enter your own vertical sync range

enter your choice:

¸ð´ÏÅÍÀÇ ¼öÁ÷ µ¿±â Á֯ļö¸¦ ¼³Á¤ÇÏ´Â ºÎºÐÀ¸·Î½á, ÀÚ½ÅÀÇ ¸ð´ÏÅÍÀÇ ¸Å´º¾ó¿¡¼­ ¼öÁ÷ µ¿±â Á֯ļö ´ë¿ªÀ» È®ÀÎÀ» ÇÑ ÈÄ¿¡ ¼³Á¤Çϱ⠹ٶõ´Ù. ÀÚ½ÅÀÇ ¸ð´ÏÅÍÀÇ ¼öÁ÷ µ¿±â Á֯ļö ´ë¿ªÀ» ÀÚ¼¼È÷ ¾Æ´Â »ç¿ëÀÚ¶ó¸é 5¹ø Ç׸ñ¿¡¼­ Á¤È®ÇÑ ¸ð´ÏÅÍ Á֯ļö ´ë¿ªÀ» Àû¾îÁÖ´Â °ÍÀ» ±ÇÀåÇÑ´Ù. 5¹øÀ» ¼±ÅÃÇÑ ÈÄ¿¡ ¼öÁ÷ µ¿±â Á֯ļö ´ë¿ªÀ» ¼³Á¤ ÇÏ´Â ¹æ¹ýÀÌ´Ù.

vertical sync range: 50-110

¿©±â¼­ ¼öÁ÷ µ¿±â Á֯ļö ´ë¿ªÀ» 50-110 À̶ó°í ¼³Á¤ÇØÁÖ¾ú´Ù. ÇÊÀÚ ¸ð´ÏÅÍÀÇ ¼öÁ÷ µ¿±â Á֯ļö ´ë¿ªÀÌ´Ù. ´Ù µÇ¾úÀ¸¸é ¿£Å͸¦ Ä¡°í ´ÙÀ½À¸·Î ³Ñ¾î°¡º¸ÀÚ.

you must now enter a few identification/description strings, namely an identifier, a vendor name, and a model name. just pressing enter will fill in default names. the strings are free-form, spaces are allowed. enter an identifier for your monitor definition:

¸ð´ÏÅÍÀÇ ¸ðµ¨ À̸§À» ¹¯´Â Ç׸ñÀÌ´Ù. ÀûÁö ¾Ê¾Æµµ »ó°ü¾ø´Ù.

enter the vendor name of your monitor:

¿ª½Ã À̸§À» ¹¯´Â Ç׸ñÀÌ´Ù.

enter the model name of your monitor:

Àû¾îÁÖÁö ¾Ê¾Æµµ µÈ´Ù.

´ÙÀ½Àº ±×·¡ÇÈ Ä«µå¸¦ ¼±ÅÃÇÏ´Â ºÎºÐÀÌ´Ù.

now we must configure video card specific settings. at this point you can choose to make a selection out of a database of video card definitions. because there can be variation in ramdacs and clock generators even between cards of the same model, it is not sensible to blindly copy the settings (e.g. a device section). for this reason, after you make a selection, you will still be asked about the components of the card, with the settings from the chosen database entry presented as a strong hint. the database entries include information about the chipset, what server to run, the ramdac and clockchip, and comments that will be included in the device section. however, a lot of definitions only hint about what server to run (based on the chipset the card uses) and are untested. if you can't find your card in the database, there's nothing to worry about. you should only choose a database entry that is exactly the same model as your card; choosing one that looks similar is just a bad idea (e.g. a gemstone snail 64 may be as different from a gemstone snail 64+ in terms of hardware as can be).

do you want to look at the card database?

ÀÌ ºÎºÐÀº ±×·¡ÇÈ Ä«µå¸¦ ¼±ÅÃÇÏ´Â ºÎºÐÀÌ´Ù. yes ·Î ¼³Á¤ÇÏ°í ¿£ÅÍÇÏ°í ³Ñ¾î°¡ º¸ÀÚ.

0 2 the max maxcolor s3 trio64v+ s3 trio64v+

1 928movie s3 928

2 agx (generic) agx-014/15/16

3 alg-5434(e) cl-gd5434

4 asus 3dexplorer riva128

5 asus pci-av264ct ati-mach64

6 asus pci-v264ct ati-mach64

7 asus video magic pci v864 s3 864

8 asus video magic pci vt64 s3 trio64

9 at25 alliance at3d

10 at3d alliance at3d

11 ati 3d pro turbo ati-mach64

.

. (Áß·«)

.

412 winfast s200 et4000/w32(i/p)

413 winfast s430 s3 968

414 winfast s510 s3 968

415 xga-1 (isa bus) xga-1

416 xga-2 (isa bus) xga-2

417 miro miromedia 3d s3 virge

enter a number to choose the corresponding card definition.

press enter for the next page, q to continue configuration.

xfree86 3.3.2 ¿¡¼­´Â ¸¹Àº ºñµð¿À Ä«µå°¡ Áö¿øµÇ±â ½ÃÀÛÇß´Ù. ƯÈ÷, À̹ø ¹öÀüºÎÅÍ´Â agp ºñµð¿À Ä«µå°¡ ½ÃÇèÀûÀ¸·Î µµÀÔÀÌ µÇ¾ú´Ù. ºÎ°¡ÀûÀÎ ¼³¸íÀ» ÇÏÀÚ¸é ¿ÞÂÊ¿¡ ÀÖ´Â °ÍÀº ºñµð¿À Ä«µå ¸ðµ¨¸íÀ̰í, ¿À¸¥ÂÊ¿¡ ÀÖ´Â °ÍÀº ºñµð¿À Ä«µåÀÇ Ä¨¼ÂÀÌ´Ù. ¸®´ª½º »ó¿¡¼­ÀÇ ºñµð¿À Ä«µå´Â ºñµð¿À Ä«µå Ĩ¼Â¿¡ µû¶ó x ¼³Á¤ÀÌ ¸¹ÀÌ Á¿ìÇÏ°Ô µÈ´Ù. ¸ñ·Ï¿¡¼­ ÀÚ½ÅÀÇ ºñµð¿À Ä«µå¸¦ ¼±ÅÃÇÏ¿´´Ù¸é ´ÙÀ½°ú °°Àº ¸Þ½ÃÁö °¡ ³ªÅ¸³¯ °ÍÀÌ´Ù.

your selected card definition:

identifier: matrox mystique

chipset: mga1064sg

server: xf86_svga

do not probe clocks or use any clocks line.

press enter to continue, or ctrl-c to abort.

xfree86 3.3.2 ¿¡¼­ Ãß°¡·Î Áö¿øµÇ´Â ºñµð¿À Ä«µå ¸ñ·ÏÀº ³ªÁß¿¡ º¸¿©ÁÙ °ÍÀÌ´Ù. ¿£Å͸¦ Ä¡°í ³Ñ¾î°¡¸é ´ÙÀ½°ú °°Àº ¸Þ¼¼Áö°¡ ³ªÅ¸³¯ °ÍÀÌ´Ù.

now you must determine which server to run. refer to the manpages and other documentation. the following servers are available (they may not all be installed on your system):

1 the xf86_mono server. this a monochrome server that should work on any vga-compatible card, in 640x480 (more on some svga chipsets).

2 the xf86_vga16 server. this is a 16-color vga server that should work on any vga-compatible card.

3 the xf86_svga server. this is a 256 color svga server that supports a number of svga chipsets. on some chipsets it is accelerated or supports higher color depths.

4 the accelerated servers. these include xf86_s3, xf86_mach32, xf86_mach8, xf86_8514, xf86_p9000, xf86_agx, xf86_w32, xf86_mach64, xf86_i128 and xf86_s3v.

these four server types correspond to the four different "screen" sections in xf86config (vga2, vga16, svga, accel).

5 choose the server from the card definition, xf86_svga.

which one of these screen types do you intend to run by default (1-5)?

À§ÀÇ ºñµð¿À Ä«µå Ç׸ñ¿¡¼­ ¼±ÅÃÀ» ÇÏ¿´À¸¸é 5¹øÀ» ¼±ÅÃÇÏÁö¸¸, ¸¸¾à, ÀÚ½ÅÀÇ ºñµð¿À Ä«µå°¡ ¸ñ·Ï¿¡ ¾øÀ» °æ¿ì¿¡´Â 1-4¹ø Ç׸ñÀ» ¼±ÅÃÇÒ ¼ö ÀÖ´Ù.

1¹ø Ç׸ñÀº Èæ¹é ¸ðµå·Î x ¸¦ ¼³Á¤Çϵµ·Ï ÇÏ´Â Ç׸ñÀÌ´Ù.

2¹ø Ç׸ñÀº mono(Áï, 16Ä÷¯) ¸ðµå·Î x ¸¦ ¼³Á¤Çϵµ·Ï ÇÏ´Â Ç׸ñÀÌ´Ù.

3¹ø Ç׸ñÀº 256 Ä÷¯ svga ¸ðµå·Î x ¸¦ ¼³Á¤Çϵµ·Ï ÇÏ´Â Ç׸ñÀÌ´Ù. ½Ã½ºÅÛ¿¡ ÀÖ´Â ºñµð¿À Ä«µå°¡ ¸ñ·Ï¿¡ ¾øÀ» °æ¿ì¿¡ svga ¸ðµå·Î x ¼³Á¤ÇÒ °æ¿ìÀÌ´Ù.

4¹ø Ç׸ñÀº accelerated ±â´ÉÀÌ ÀÖ´Â ºñµð¿À Ä«µå¸¦ ¼±ÅÃÇÏ´Â Ç׸ñÀÌ´Ù. ¸®´ª½º¿¡¼­ °¡Àå x ¼³Á¤Çϱ⠽¬¿î ºñµð¿À Ä«µå¸¦ Áö¿øÇÏ´Â Ç׸ñÀÌ´Ù.

the server to run is selected by changing the symbolic link 'x'. for example,

'rm /usr/x11r6/bin/x; ln -s /usr/x11r6/bin/xf86_svga /usr/x11r6/bin/x'

selects the svga server.

please answer the following question with either 'y' or 'n'.

do you want me to set the symbolic link?

ÀÌ Ç׸ñÀº ¼±ÅÃµÈ x¼­¹ö¸¦ /usr/x11r6/bin/x ·Î ¸µÅ©¸¦ ½ÃŰ´Â Ç׸ñÀÌ´Ù. yes·Î ¼³Á¤ÇÏ°í ´ÙÀ½À¸·Î ³Ñ¾î°¡º¸ÀÚ.

now you must give information about your video card. this will be used for the "device" section of your video card in xf86config. you must indicate how much video memory you have. it is probably a good idea to use the same approximate amount as that detected by the server you intend to use. if you encounter problems that are due to the used server not supporting the amount memory you have (e.g. ati mach64 is limited to 1024k with the svga server), specify the maximum amount supported by the server.

how much video memory do you have on your video card:

1 256k

2 512k

3 1024k

4 2048k

5 4096k

6 other

enter your choice:

ÀÌ Ç׸ñÀº ½Ã½ºÅÛ¿¡ ºÎÂøµÈ ºñµð¿À Ä«µåÀÇ ¸Þ¸ð¸®¸¦ ¼±ÅÃÇÏ´Â ºÎºÐÀÌ´Ù. ÀÚ½ÅÀÇ ºñµð¿À Ä«µåÀÇ ¸Þ¸ð¸®¸¦ »ìÆìº¸±â ¹Ù¶õ´Ù.

you must now enter a few identification/description strings, namely an identifier, a vendor name, and a model name. just pressing enter will fill in default names (possibly from a card definition). your card definition is matrox mystique. the strings are free-form, spaces are allowed. enter an identifier for your video card definition:

ÀÌ Ç׸ñÀº ºñµð¿À Ä«µåÀÇ È¸»ç¸íÀ» Àû¾îÁÖ´Â °÷ÀÌ´Ù. ½áÁÖÁö ¾Ê¾Æµµ »ó°ü¾ø´Ù.

you can simply press enter here if you have a generic card, or want to describe your card with one string.

enter the vendor name of your video card:

ÀÌ Ç׸ñÀº ºñµð¿À Ä«µåÀÇ ¸ðµ¨¸íÀ» Àû¾îÁÖ´Â Ç׸ñÀÌ´Ù. ½áÁÖÁö ¾Ê¾Æµµ »ó°ü¾ø´Ù.

enter the model (board) name of your video card:

ÀÌ Ç׸ñµµ ¸¶Âù°¡ÁöÀÌ´Ù.

the ramdac setting only applies to the s3, agx, w32 servers, and some drivers in the svga servers. some ramdac's are auto-detected by the server. the detection of a ramdac is forced by using a ramdac "identifier" line in the device section. the identifiers are shown at the right of the following table of ramdac types:

1 at&t 20c490 (s3 and agx servers, ark driver) att20c490

2 at&t 20c498/21c498/22c498 (s3, autodetected) att20c498

3 at&t 20c409/20c499 (s3, autodetected) att20c409

4 at&t 20c505 (s3) att20c505

5 brooktree bt481 (agx) bt481

6 brooktree bt482 (agx) bt482

7 brooktree bt485/9485 (s3) bt485

8 sierra sc15025 (s3, agx) sc15025

9 s3 gendac (86c708) (autodetected) s3gendac

10 s3 sdac (86c716) (autodetected) s3_sdac

11 stg-1700 (s3, autodetected) stg1700

12 stg-1703 (s3, autodetected) stg1703

13 ti 3020 (s3, autodetected) ti3020

14 ti 3025 (s3, autodetected) ti3025

15 ti 3026 (s3, autodetected) ti3026

16 ibm rgb 514 (s3, autodetected) ibm_rgb514

17 ibm rgb 524 (s3, autodetected) ibm_rgb524

18 ibm rgb 525 (s3, autodetected) ibm_rgb525

19 ibm rgb 526 (s3) ibm_rgb526

20 ibm rgb 528 (s3, autodetected) ibm_rgb528

21 ics5342 (s3, ark) ics5342

22 ics5341 (w32) ics5341

23 ic works w30c516 zoomdac (ark) zoomdac

24 normal dac normal

enter a number to choose the corresponding ramdac.

press enter for the next page, q to quit without selection of a ramdac.

ºñµð¿À Ä«µåÀÇ ramdacÀ» ¼³Á¤ÇÏ´Â Ç׸ñÀÌ´Ù. ÁÖ·Î s3 °è¿­ÀÇ ºñµð¿À Ä«µå°¡ ¼±Åà Ç׸ñ¿¡ µé¾î°£´Ù. s3 °è¿­ÀÇ ºñµð¿À Ä«µå ÀÌ¿ÜÀÇ ºñµð¿À Ä«µå¶ó¸é 24¹øÀÇ normal dac À» ¼±ÅÃÇÏ´øÁö q¸¦ ¼±ÅÃÇØ¼­ ºüÁ® ³ª¿À±â ¹Ù¶õ´Ù.¸ð¸£°ÚÀ¸¸é ¹«Á¶°Ç q¸¦ ´©¸£°í ³ª¿Â´Ù.

a clockchip line in the device section forces the detection of a programmable clock device. with a clockchip enabled, any required clock can be programmed without requiring probing of clocks or a clocks line. most cards don't have a programmable clock chip.

choose from the following list:

1 chrontel 8391 ch8391

2 icd2061a and compatibles (ics9161a, dcs2824) icd2061a

3 ics2595 ics2595

4 ics5342 (similar to sdac, but not completely compatible) ics5342

5 ics5341 ics5341

6 s3 gendac (86c708) and ics5300 (autodetected) s3gendac

7 s3 sdac (86c716) s3_sdac

8 stg 1703 (autodetected) stg1703

9 sierra sc11412 sc11412

10 ti 3025 (autodetected) ti3025

11 ti 3026 (autodetected) ti3026

12 ibm rgb 51x/52x (autodetected) ibm_rgb5xx

just press enter if you don't want a clockchip setting.

what clockchip setting do you want (1-12)?

ºñµð¿À Ä«µåÀÇ Å¬·° Ĩ¼ÂÀ» ¼±ÅÃÇÏ´Â ºÎºÐÀÌ´Ù. ÁÖ·Î s3 °è¿­ÀÇ ºñµð¿À Ä«µå°¡ ÀÌ Ç׸ñ¿¡ µé¾î°£´Ù. ºñµð¿À Ä«µåÀÇ ¸Å´º¾ó À» º¸¾Æ¼­ ÀÚ½ÅÀÇ Å¬·° ĨÀÌ ¿©±â¿¡ ¾ø´Ù¸é ¿£Å͸¦ Ä¡°í ³Ñ¾î°£´Ù.

for most configurations, a clocks line is useful since it prevents the slow and nasty sounding clock probing at server start-up. probed clocks are displayed at server startup, along with other server and hardware configuration info. you can save this information in a file by running 'x -probeonly 2>output_file'. be warned that clock probing is inherently imprecise; some clocks may be slightly too high (varies per run).

at this point i can run x -probeonly, and try to extract the clock information from the output. it is recommended that you do this yourself and add a clocks line (note that the list of clocks may be split over multiple clocks lines) to your device section afterwards. be aware that a clocks line is not appropriate for drivers that have a fixed set of clocks and don't probe by default (e.g. cirrus). also, for the p9000 server you must simply specify clocks line that matches the modes you want to use. for the s3 server with a programmable clock chip you need a 'clockchip' line and no clocks line. you must be root to be able to run x -probeonly now. the card definition says to not probe clocks.

do you want me to run 'x -probeonly' now?

x ¼³Á¤¿¡ À־ ¸ð´ÏÅÍÀÇ Á֯ļö ´ë¿ªÀ» ¼±ÅÃÇÑ ºñµð¿À Ä«µåÀÇ Å¬·° Ĩ°úÀÇ »ó°ü°ü°è¸¦ ¸ÂÃß¾îÁÖ´Â ºÎºÐÀÔ´Ï´Ù. ¸¸ÀÏ ¸ÂÁö ¾Ê´Â´Ù¸é ¿¡·¯ ¸Þ½ÃÁö¸¦ º¸¿©ÁÖ°Ô µË´Ï´Ù. ÀÚ½ÅÀÇ ¸ð´ÏÅÍ ¼³Á¤°ú ºñµð¿À Ä«µå°¡ ¸Â´ÂÁö È®ÀÎÇØ º¸±â À§Çؼ­ yes ·Î ¼³Á¤ÇÏ°í ¸Â´ÂÁö È®ÀÎÇØ º¸½Ã±â ¹Ù¶ø´Ï´Ù.

the card definition says to not probe clocks. do you want me to run 'x -probeonly' now? y

it is possible that the hardware detection routines in the server will somehow cause the system to crash and the screen to remain blank. if this is the case, do not choose this option the next time. the server may need a ramdac, clockchip or special option (e.g. "nolinear" for s3) to probe and start-up correctly.

press enter to continue, or ctrl-c to abort.

yes ·Î ¼³Á¤À» ÇÏ¿´´Ù¸é ´ÙÀ½°ú °°Àº ¸Þ¼¼Áö°¡ ³ª¿Â´Ù. ¿£Å͸¦ Ä¡°í ³Ñ¾î°¡¸é ¸î ¹ø Á¤µµ È­¸éÀÌ ±ôºýÀ̸鼭 Á֯ļö ´ë¿ªÀ» ã¾Æ³»°Ô µÈ´Ù. ¸¸¾à, ¿¡·¯°¡ ³­´Ù¸é ´ÙÀ½°ú °°Àº ¸Þ¼¼Áö°¡ ³ª¿À°Ô µÈ´Ù.

running x -probeonly -pn -xf86config /tmp/xf86config.tmp. x -probeonly call failed. no clocks line inserted.

press enter to continue, or ctrl-c to abort.

¿£Å͸¦ Ãļ­ ÇØ»óµµ ¼³Á¤À» ÇØº¸ÀÚ.

for each depth, a list of modes (resolutions) is defined. the default resolution that the server will start-up with will be the first listed mode that can be supported by the monitor and card. currently it is set to:

"640x480" "800x600" "1024x768" "1280x1024" for 8bpp

"640x480" "800x600" "1024x768" "1280x1024" for 16bpp

"640x480" "800x600" "1024x768" "1280x1024" for 24bpp

"640x480" "800x600" "1024x768" for 32bpp

note that 16, 24 and 32bpp are only supported on a few configurations. modes that cannot be supported due to monitor or clock constraints will be automatically skipped by the server.

1 change the modes for 8pp (256 colors)

2 change the modes for 16bpp (32k/64k colors)

3 change the modes for 24bpp (24-bit color, packed pixel)

4 change the modes for 32bpp (24-bit color)

5 the modes are ok, continue.

enter your choice:

ÀÚ½ÅÀÌ ¿øÇÏ´Â Ä÷¯¼ö¸¦ °í¸£´Â Ç׸ñÀÌ´Ù.

select modes from the following list:

1 "640x400"

2 "640x480"

3 "800x600"

4 "1024x768"

5 "1280x1024"

6 "320x200"

7 "320x240"

8 "400x300"

9 "1152x864"

10 "1600x1200"

11 "1800x1400"

12 "512x384"

please type the digits corresponding to the modes that you want to select. for example, 432 selects "1024x768" "800x600" "640x480", with a default mode of 1024x768.

which modes?

ÀÚ½ÅÀÌ ¿øÇÏ´Â Ä÷¯¼ö¿¡ ´ëÇÑ ÇØ»óµµ¸¦ ¼³Á¤ÇÏ´Â Ç׸ñÀÌ´Ù.

you can have a virtual screen (desktop), which is screen area that is larger than the physical screen and which is panned by moving the mouse to the edge of the screen. if you don't want virtual desktop at a certain resolution, you cannot have modes listed that are larger. each color depth can have a differently-sized virtual screen please answer the following question with either 'y' or 'n'.

do you want a virtual screen that is larger than the physical screen?

x È­¸é¿¡¼­ÀÇ °¡»óÈ­¸éÀ» ¼±ÅÃÇÒ ¼ö ÀÖµµ·Ï ÇÏ´Â Ç׸ñÀÌ´Ù. °¡»óÈ­¸éÀ» »ç¿ëÇÏ°í ½ÍÀ¸¸é yes ·Î ¼³Á¤Çϰí, ÇÊ¿ä¾øÀ¸¸é no ·Î ¼³Á¤ÇÏ°í ³Ñ¾î°¡±â ¹Ù¶õ´Ù. ¸¸ÀÏ, yes ·Î ¼³Á¤À» ÇÏ¿´´Ù¸é ´ÙÀ½°ú °°Àº ¸Þ¼¼Áö°¡ ³ª¿Ã °ÍÀÌ´Ù.

for each depth, a list of modes (resolutions) is defined. the default resolution that the server will start-up with will be the first listed mode that can be supported by the monitor and card. currently it is set to:

"640x480" "800x600" "1024x768" "1280x1024" for 8bpp

"1280x1024" for 16bpp

"640x480" "800x600" "1024x768" "1280x1024" for 24bpp

"640x480" "800x600" "1024x768" for 32bpp

note that 16, 24 and 32bpp are only supported on a few configurations.

modes that cannot be supported due to monitor or clock constraints will

be automatically skipped by the server.

1 change the modes for 8pp (256 colors)

2 change the modes for 16bpp (32k/64k colors)

3 change the modes for 24bpp (24-bit color, packed pixel)

4 change the modes for 32bpp (24-bit color)

5 the modes are ok, continue.

enter your choice:

°¡»óÈ­¸éÀÇ Ä÷¯¼ö¸¦ ¼±ÅÃÇÏ´Â ºÎºÐÀε¥, ÀÚ½ÅÀÌ ¼±ÅÃÇÏ¿´´ø Ä÷¯¼ö¿Í °°Àº Ä÷¯¼ö¸¦ ¼±ÅÃÇØ¾ß¸¸ ÇÑ´Ù.

select modes from the following list:

1 "640x400"

2 "640x480"

3 "800x600"

4 "1024x768"

5 "1280x1024"

6 "320x200"

7 "320x240"

8 "400x300"

9 "1152x864"

10 "1600x1200"

11 "1800x1400"

12 "512x384"

please type the digits corresponding to the modes that you want to select.

for example, 432 selects "1024x768" "800x600" "640x480", with a

default mode of 1024x768.

which modes?

ÇØ»óµµ¸¦ ¼³Á¤ÇÏ´Â ºÎºÐÀÌ´Ù.

you can have a virtual screen (desktop), which is screen area that is larger than the physical screen and which is panned by moving the mouse to the edge of the screen. if you don't want virtual desktop at a certain resolution, you cannot have modes listed that are larger. each color depth can have a differently-sized virtual screen please answer the following question with either 'y' or 'n'.

do you want a virtual screen that is larger than the physical screen?

°¡»ó È­¸éÀ» ÀÌ¿ëÇÒ °ÍÀΰ¡¸¦ ¹¯´Â È­¸éÀÌ´Ù. °¡»óÈ­¸éÀ» »ç¿ëÇϰíÀÚ ÇÑ´Ù¸é yes·Î ¼³Á¤ÇÏ¸é µÇ°í, ±×·¸Áö ¾Ê´Ù¸é no·Î ¼³Á¤ÇÏ°í ³Ñ¾î°¡±â ¹Ù¶õ´Ù.

for each depth, a list of modes (resolutions) is defined. the default resolution that the server will start-up with will be the first listed mode that can be supported by the monitor and card.

currently it is set to:

"640x480" "800x600" "1024x768" "1280x1024" for 8bpp

"1280x1024" for 16bpp

"640x480" "800x600" "1024x768" "1280x1024" for 24bpp

"640x480" "800x600" "1024x768" for 32bpp

note that 16, 24 and 32bpp are only supported on a few configurations.

modes that cannot be supported due to monitor or clock constraints will

be automatically skipped by the server.

1 change the modes for 8pp (256 colors)

2 change the modes for 16bpp (32k/64k colors)

3 change the modes for 24bpp (24-bit color, packed pixel)

4 change the modes for 32bpp (24-bit color)

5 the modes are ok, continue.

enter your choice:

Ä÷¯¼ö¿Í ÇØ»óµµ¸¦ ´Ù ¼³Á¤ÇÑ À¯Àú´Â 5¹øÀ» ¼±ÅÃÇÏ°í ´ÙÀ½À¸·Î ³Ñ¾î°¡±â ¹Ù¶õ´Ù.

i am going to write the xf86config file now. make sure you don't accidently overwrite a previously configured one. shall i write it to /etc/x11/xf86config?

Áö±Ý±îÁöÀÇ x ¼³Á¤À» /etc/x11/xf86config ÆÄÀÏ¿¡ ÀúÀåÀ» ÇÒ °ÍÀÎÁö ¹¯´Â Ç׸ñÀÌ´Ù. yes ·Î ¼³Á¤Çϰí xf86config ¸¦ ¸¶Ä¡¸é x ¼³Á¤Àº ³¡³ª°Ô µÈ´Ù.

3. ¸®´ª½º ½Ã½ºÅÛÀÇ ±âº» Ȱ¿ë

1. ÆÄÀÏ ´Ù·ç±â

¾î¶² ¿î¿µÃ¼Á¦¸¦ »ç¿ëÇÏ´õ¶óµµ °¡Àå ¸ÕÀú ¹è¿ì°Ô µÇ´Â °ÍÀÌ ¾Æ¸¶µµ ÆÄÀÏÀÇ º¹»ç¿Í À̵¿, ÀúÀå, »ý¼º µî¿¡ °üÇÑ °ÍÀÏ °ÍÀÌ´Ù. »ç½Ç ¸®´ª½º¿¡¼­ »ç¿ëÇÏ´Â ±âº» ÆÄÀÏ¿¡ °üÇÑ ¸í·É¾îµéÀº À¯´Ð½º ½Ã½ºÅÛ¿¡¼­ »ç¿ëÇÏ´Â ¸í·É¾î¿Í °ÅÀÇ ´Ù¸¦¹Ù°¡ ¾ø±â ¶§¹®¿¡ À¯´Ð½º ½Ã½ºÅÛÀ» °æÇèÇØº» »ç¶÷À̶ó¸é ½±°Ô ÀÌ¿ëÇÒ ¼ö ÀÖÀ» °ÍÀÌ´Ù. ¿©±â¼­´Â À¯´Ð½º¸¦ °æÇèÇØº¸Áö ¸øÇÑ Ãʺ¸ »ç¿ëÀÚ¸¦ À§ÇÏ¿© ¸®´ª½º¿¡¼­ ÆÄÀÏÀ» ´Ù·ç´Â ±âº» ¸í·É¾î¸¦ °£´ÜÇÏ°Ô »ìÆìº¸°í ¸î°¡Áö Áß¿äÇÑ »çÇ×À» ¤°í ³Ñ¾î°¡°íÀÚ ÇÑ´Ù.

% cd - directory¸¦ À̵¿ÇÕ´Ï´Ù.

ex.) cd /usr/doc (Àý´ë°æ·Î)

cd usr (»ó´ë°æ·Î)

cd ~ (Ȩ µð·ºÅ丮·Î À̵¿, °£´ÜÈ÷ cd ¶ó°í¸¸ ÀÔ·ÂÇØµµ °á°ú°¡ °¥´Ù.)

cd .. (»óÀ§ µð·ºÅ丮·Î À̵¿)

cd / (·çÆ® µð·ºÅ丮·Î À̵¿)

*·çÆ® µð·ºÅ丮: /root µð·ºÅ丮°¡ ¾Æ´Ñ ÃÖ»óÀ§ µð·ºÅ丮¸¦ ¸»ÇÑ´Ù.

*Àý´ë °æ·Î: ·çÆ® µð·ºÅ丮ºÎÅÍ ½ÃÀÛÇÑ ¸ðµç °æ·Î

*»ó´ë °æ·Î: ÇöÀç µð·ºÅ丮ºÎÅÍ ½ÃÀÛÇÑ °æ·Î

ÇѰ¡Áö ÁÖÀÇÇÒ Á¡Àº ms-dos¿¡¼­´Â µð·ºÅ丮ÀÇ °æ·Î¸íÀ» ³ªÅ¸³¾ ¶§ \(¿ª½½·¡½¬)¸¦ »ç¿ëÇÏÁö¸¸ ¸®´ª½ºÀÇ °æ¿ì /(½½·¡½¬)¸¦ »ç¿ëÇÑ´Ù´Â °Í¿¡ ÁÖÀÇÇϱ⠹ٶõ´Ù.

* ±âŸ µð·ºÅ丮 °ü·Ã ¸í·É¾î

mkdir (µð·ºÅ丮¸¸µé±â), rmdir (µð·ºÅ丮Áö¿ì±â), pwd(ÇöÀç À§Ä¡¸¦ º¸¿©ÁØ´Ù.)

% ls - dosÀÇ dir°ú °°Àº ¸í·É¾î, È­ÀÏ È¤Àº µð·ºÅ丮 Á¤º¸¸¦ Ãâ·ÂÇÕ´Ï´Ù.

ex.) ls -l /usr (/usr directoryÀÇ ³»¿ëÀ» »ó¼¼È÷ Ãâ·ÂÇÕ´Ï´Ù.)

±âŸ ¿É¼Ç: -f (ÆÄÀÏÀÇ ¼Ó¼º Ãâ·Â) -a (¸ðµçÆÄÀÏÃâ·Â)

--color=yes,auto,no( Ä÷¯ »ç¿ë¿©ºÎ ¼±ÅÃ)

% cp - ÆÄÀÏÀ» º¹»çÇÕ´Ï´Ù.

ex.) cp ~/babo ~/babo2

% mv - ÆÄÀÏÀ̳ª µð·ºÅ丮¸¦ ¿Å±é´Ï´Ù. ¾Æ·¡¿Í °°ÀÌ ÆÄÀÏÀÇ À̸§À» ¹Ù²Ù±â À§Çؼ­µµ »ç¿ëÇÕ´Ï´Ù.

ex.) mv ~/babo ~/babo2

% rm - ÆÄÀÏÀ» Áö¿ó´Ï´Ù.

ex.) rm ~/babo

% more - ÁÖ¾îÁø ÆÄÀÏÀÇ ³»¿ëÀ» ÇÑ ÆäÀÌÁö¾¿ º¸¿©ÁÝ´Ï´Ù.

ex.) ls /usr | more

* more ½ÇÇà½Ã : b (ÇÑÈ­¸é µÚ·Î) space bar (ÇÑÈ­¸é ¾ÕÀ¸·Î) q (Á¾·á)

¿©±â¼­´Â ÆÄÀÌÇÁ¸¦ »ç¿ëÇÏ¿© ls¸¦ ÅëÇÑ Ç¥ÁØ Ãâ·ÂÀ» more¿¡ Ç¥ÁØ ÀÔ·ÂÀ¸·Î º¸³Â´Ù.

ÀÌó·³ ÆÄÀÌÇÁ¸¦ ÅëÇÏ¿© ¿©·¯°³ÀÇ ¸í·É¾î¸¦ Á¶ÇÕÇØ¼­ ¾²´Â °ÍÀÌ °¡´ÉÇÏ´Ù.

% cat - Ç¥ÁØÀÔ·ÂÀ¸·Î ¹Þ¾Æ Ç¥ÁØÃâ·ÂÀ¸·Î º¸³½´Ù.

ex.) cat /etc/inittab

°£´ÜÇÑ ÆÄÀÏÀ» È­¸é¿¡ Ãâ·ÂÇϰųª ÆÄÀÏ·Î ¸¸µé ¶§ ÀÚÁÖ ¾²ÀδÙ.

ex.) cat > babo.txt babo.txt¶ó´Â ÅØ½ºÆ®ÆÄÀÏ »ý¼º

cat < babo.txt babo.txt¶ó´Â ÆÄÀÏÀÇ ³»¿ëÀ» È­¸é¿¡ º¸¿©ÁØ´Ù.

% echo - ÁÖ¾îÁø Àμö¸¦ È­¸é¿¡ ±×´ë·Î º¸¿©ÁØ´Ù.

ex.) echo "hello world"

% grep - ÁÖ¾îÁø ÆÄÀÏ È¤Àº Ç¥ÁØÀԷ¿¡¼­ ƯÁ¤ ÆÐÅÏ¿¡ ¸Â´Â ÁÙÀ» Ãâ·ÂÇÕ´Ï´Ù.

ex.) rpm -qa | grep hangul

% find - ÆÄÀÏÀ» °Ë»öÇÑ´Ù.

ex.) find °æ·Î¸í -name ÆÄÀÏ À̸§

% touch - ÆÄÀÏÀÇ ¼öÁ¤ÀÏÀ» º¯°æÇÕ´Ï´Ù.

ex.) touch babo (¹Ùº¸¶ó´Â ÆÄÀÏÀÇ ³¯Â¥¸¦ ¹Ù²ß´Ï´Ù.)

% tr - ƯÁ¤ ¹®ÀÚ¿­À» ġȯ ÇÑ´Ù.

ex.) tr babo notbabo < mylife

* mylife ¶ó´Â ÆÄÀÏ¿¡ babo ¶ó´Â ±ÛÀÚ¸¦ babo2 ·Î ġȯÇÑ´Ù.

% df - ÆÄÀϽýºÅÛÀÇ Á¤º¸¸¦ º¸¿©ÁÝ´Ï´Ù. ÇöÀç ¸¶¿îÆ®µÇ¾î ÀÖ´Â ¸ðµç ½Ã½ºÅÛ¿¡ ´ëÇÑ È®ÀÎÀÌ °¡´ÉÇÕ´Ï´Ù.

* -h (¸Þ°¡¹ÙÀÌÆ® ´ÜÀ§·Î Ãâ·ÂÇÑ´Ù.)

% du - ÆÄÀÏ È¤Àº µð·ºÅ丮ÀÇ »ç¿ë °ø°£À» Ãâ·ÂÇÕ´Ï´Ù. Áï °¢°¢ÀÇ ÆÄÀϵéÀÌ Á¡À¯Çϰí ÀÖ´Â µð½ºÅ©ÀÇ ¿ë·®À» Ç¥½ÃÇÕ´Ï´Ù.

2. file permissionÀÇ º¯°æ

* ÆÄÀÏ ÆÛ¹Ì¼ÇÀÇ ÇØ¼®

---------------------------------

:¼Ó ¼º : ¼ÒÀ¯ÀÚ : ±× ·ì : Ÿ ÀÎ :

---------------------------------

: d : r w x : r w x : r w x :

---------------------------------

¼Ó¼º: d (µð·ºÅ丮), l (¸µÅ©), b (block device), c (character device)

% chmod - ÆÄÀÏ ÆÛ¹Ì¼ÇÀ» º¯°æÇÕ´Ï´Ù.

ex.) chmod u+rwx babo

chmod {a,u,g,o}{+,-}{r,w,x} ÆÄÀϸí

chmod 755 babo ( 4:read 2:write 1:excute )

3. ÆÄÀÏ ¸µÅ©Çϱâ

% ln - ÆÄÀÏÀ̳ª µð·ºÅ丮¸¦ ¸µÅ©ÇÕ´Ï´Ù.

ex.) ln -s /dev/cua2 /dev/modem

% mount - ƯÁ¤ file systemÀ» ƯÁ¤ À§Ä¡¿¡ ¸¶¿îÆ® ½Ãŵ´Ï´Ù.

ex.) mount -t iso9660 /dev/cdrom /mnt/cdrom

* umount ( ¸¶¿îÆ®¸¦ ÇØÁ¦ÇÕ´Ï´Ù. )

4. °èÁ¤(account) ¸¸µé±â

% adduser - »õ·Î¿î »ç¿ëÀÚ °èÁ¤À» ¸¸µì´Ï´Ù.

ex.) adduser altair

% passwd - ÆÐ½º¿öµå¸¦ »õ·Î ÁöÁ¤ÇÕ´Ï´Ù.

ex.) passwd altair

5. ÇÁ·Î¼¼½ºÀÇ Á¦¾î

% ps - ÀÛµ¿ÁßÀÎ ÇÁ·Î¼¼½º¸¦ Ãâ·ÂÇÕ´Ï´Ù.

ex.) ps -x

% kill - ÇÁ·Î¼¼½º¸¦ Á¾·á½Ãŵ´Ï´Ù.

ex.) kill %1

% bg, fg - ½ÇÇàÁßÀÎ ÀÛ¾÷À» °¢°¢ background, foreground·Î ÀüȯÇÕ´Ï´Ù.

ex.) bg(fg) %1

6. ÆÄÀÏ ¹­°í ¾ÐÃàÇϱâ

% tar - ¿©·¯°³ÀÇ ÆÄÀÏÀ» ¹­°í Ç®¾îÁÝ´Ï´Ù.

ex.) tar cvf backup.tar /etc

tar xvf backup.tar

tar tvf backup.tar

% gzip - ÆÄÀÏÀ» ¾ÐÃàÇϴµ¥ »ç¿ëÇÕ´Ï´Ù.

ex.) gzip -9 backup.tar

*gunzip (¾ÐÃàÀ» Ç®¾îÁÝ´Ï´Ù.)

* Á¾ÇÕ

% tar cvf - /etc | gzip -9c > backup.tar.gz

gunzip -c backup.tar.gz | tar xvf -

7. rpmÀÇ ¼³Ä¡ ¹× Á¦°Å

% rpm -ivh <ÆÐŰÁö¸í>

rpm -e <ÆÐŰÁö¸í>

rpm -qa




4. ¸®´ª½º º¸¾È¿¡ ´ëÇÏ¿©

1. µé¾î°¡¸ç

»ç¶÷Àº ±×·±°¡º¸´Ù. ÀÚ½ÅÀÌ °ü½ÉÀÌ ÀÖ´Â °ÍÀÌ ÀÖ´Ù¸é ±×°Í¿¡ ÁýÂøÀ» ´À³¢´Â °Í °°´Ù. ¿ø·¡ °­»ç½ÅûÀ» Çϸ鼭 ¸®´ª½ºÀÇ º¸¾ÈÀº ±×³É °¡º±°Ô ´Ù·ç°í ³Ñ¾î°¡·Á°í ÇÏ¿´´Ù. ±×°Íº¸´Ù ¿ÀÈ÷·Á ±âº»ÀûÀÎ ³»¿ëµé¿¡ Ãæ½ÇÇÑ °­ÀÇ ³»¿ëÀÌ º¸´Ù ¸¹Àº Ãʺ¸Àڵ鿡°Ô µµ¿òÀ» ÁÙ¼ö ÀÖÀ¸¸®¶ó´Â ¸·¿¬ÇÑ »ý°¢ ¶§¹®À̾ú´Ù.

Ç㳪, ÃÖ±Ù¿¡ ÇÊÀÚ°¡ ±Ù¹«ÇÏ´Â °÷¿¡ ¼ö¾øÀÌ ¸¹Àº ÇØÅ· ½Ãµµ¿Í ±×¿¡µû¸¥ ÀϺΠ¸®´ª½º boxÀÇ ¹®Á¦µé ±×·ÎºÎÅÍ ÀÌ·ç¾îÁø ³×Æ®¿÷ ¼ÓµµÀÇ ÀúÇÏ´Â ÇÊÀÚ·Î ÇÏ¿©±Ý ÇØÅ·¿¡ ´ëÇØ¼­ °ü½ÉÀ» °®°Ô ÇÏ¿´´Ù. ±×·¸´Ù°í Áö±Ý ÇÊÀÚ ÀÚ½ÅÀÌ Àü¹®ÀûÀ̰í Á¤È®ÇÑ º¸¾È´ëÃ¥À» °¡Áö°í ÀÖ´Ù´Â ¾ê±â´Â ¾Æ´Ï´Ù. ÇÊÀÚ ¶ÇÇÑ ÀÏ¹Ý À¯Àú µéó·³ ³ë·ÂÇÏ°í ¿­½ÉÈ÷ ÀÌÇØÇϰí ÀÖ´Â »óȲÀ̶ó°í ¸»ÇÒ ¼ö ÀÖÀ» °ÍÀÌ´Ù. »ç½ÇÀº ÇØÅ·°ú °ü·ÃÇÑ ¹®Á¦µé·Î ÀÎÇÏ¿© ¸îÁÖ¸¦ °í»ýÇß´ÂÁö ¸ð¸£°Ú´Ù. ±×·¡¼­ ¿ø°í ¸¶°¨ÀÌ ³Ñ¾î¼­¾ß ¿ø°í¸¦ ÀüÇØÁÖ´Â ½Ç¼ö¿Í ¹Ì¾ÈÇÑ ÇൿÀ» ÇÏ°Ô µÇ¾ú´ÂÁöµµ ¸ð¸£°Ú´Ù.

¾Æ¹«Æ° ÇÊÀÚ ÀÚ½ÅÀÇ °ü½É°ú ÇöÀçÀû »óȲÀ¸·Î ÀÎÇÏ¿© ±âÃÊÀûÀÎ »çÇ×À» Á¶±ÝÀº ¼ÒȦÈ÷ ´Ù·ç°Ô µÈ °Í¿¡ ´ëÇØ¼­ ¸ðµç ¸®´ª¼­¿¡°Ô »ç°úÀÇ ¸»¾¸À» ÀüÇÏ°í ½Í´Ù. Ç㳪, ¸ðµç ³ë·ÂÀ» ´ÙÇØ¼­ º¸¾È ºÎºÐ ¸¸Å­Àº È®½ÇÈ÷ ¤°í ³Ñ¾î°¥ »ý°¢ÀÌ´Ù.

ÀÚ, ±×·¯¸é °­ÀǸ¦ ½ÃÀÛÇØ º¸°Ú´Ù.

¾Õ¿¡¼­µµ ¾ð±Þ ÇÏ¿´Áö¸¸ ÃÖ±Ù¿¡ ÇÊÀÚ°¡ ±Ù¹«ÇÏ´Â Çб³¿¡¼­ ¿î¿µÁßÀÎ °¢ ¼­¹öµé¿¡ ¸¹Àº ¹«¸®µéÀÇ ÇØÅ· ½Ãµµ°¡ ÀÖ¾ú´Ù ±×·¯³ª ÇØÅ· ½Ãµµ´Â ÀÖ¾úÀ¸³ª ±× ÀÌ»óÀÇ ÀϵéÀº ÇÒ ¼ö°¡ ¾ø¾ú´Ù.(¸î¸î Ŭ¶óÀÌ¾ðÆ® ¼­¹ö´Â Á¦¿ÜÇϰí.) ±× ÀÌÀ¯´Â ¾ÆÁÖ °£´ÜÇÏ´Ù. ÇØÅ·À» ÇÒ ¼ö ¾øµµ·Ï ¹®Á¦ÀÇ ¹ß»ý ¼ÒÁö¸¦ ÃÖ´ëÇÑ ¾ïÁ¦½ÃÄÑ ³õ¾Ò±â ¶§¹®ÀÌ´Ù. ¹°·Ð, ÀÌÈÄ¿¡ ¾à°£ÀÇ ¹®Á¦°¡ ÀÖ±â´Â ÇßÁö¸¸... ±×·¸´Ù¸é ¾î¶»°Ô ÇØÅ·À» ¿øÃµ ºÀ¼â¸¦ ½Ãų¼ö ÀÖÀ¸¸ç ¾î¶»°Ô Çϸé Á»´õ Å©·¡Ä¿µéÀÇ ¸¶¼ö¿¡ °É¸®Áö ¾Ê°í ½Ã½ºÅÛÀ» ¿î¿µÇÒ ¼ö Àִ°¡? À̰ÍÀ» À̾߱â ÇϰíÀÚ ÇÑ´Ù.

ÈçÇÑ ¾ê±â·Î Çѱ¹ ´ëÇÐ »çÀÌÆ®´Â Å©·¡Ä¿µéÀÇ ³îÀÌÅͶó°í ÇÑ´Ù. ±×°Ç »ç½ÇÀÌ´Ù. ´Ù¾çÇÑ º¸¾È°ú °¨½Ã¸¦ ÇÑ´Ù ÇÒÁö¶óµµ ÇØÅ·À» ÇÏ·Á°í ³ë·ÂÇÏ´Â »ç¶÷µéÀÇ ÀÇÁö¿Í ³ë·ÂÀº Á¤¸»·Î ´ë´ÜÇÑ °ÍÀÌ´Ù. ±× ¸»Àº °á±¹ ¾ðÁ¨°¡´Â ÇØÅ·À» ´çÇÒ ¼öµµ ÀÖ´Ù´Â ¸»°ú °°´Ù. ±× ¸»¼Ó¿¡´Â ÇØÅ· ÅøÀÇ ´Ù¾çÈ­,°¢Á¾ µ¥¸óµéÀÇ »ó½ÃÀûÀÎ ¹ö±×,»ç¿ëÀÚµéÀÇ ºÎÁÖÀÇ µîÀÌ Ç׽à Á¸ÀçÇϱ⠶§¹®ÀÌ´Ù. ¿îµ¿°æ±âÀÇ Àü·« °¡¿îµ¥ °ø°ÝÀÌ ÃÖÈÄÀÇ ¹æ¾î¶ó°í ÇÏ´Â ¾ê±â°¡ ÀÖ´Ù. Áï, ¾Æ¹«¸® ¼öºñ°¡ źźÇÑ »ó´ë¶ó°í ÇÒÁö¶óµµ °ø°ÝÇÏ´Â »ç¶÷µé¿¡°Ô À־ ¼öºñÀÇ ÇѰè´Â ¾ðÁ¦³ª Á¸ÀçÇÏ´Â ¹ýÀ̶ó´Â °ÍÀÌ´Ù.

±×·¯³ª ¿ª¼³ÀûÀ¸·Î ÃÖ´ëÇÑ ¹æ¾î¸¦ ÇÏ´Ù°¡ ¿ª½ÀÀ» ³ë¸®´Â ±â½ÀÀÛÀüÀ̶ó´Â °Íµµ ÀÖ´Ù. °ß°íÇÑ ¼öºñ¸¦ ÇÏ´Â °¡¿îµ¥ »ó´ëÀÇ ÇêÁ¡À» ³ë·Á¼­ µæÁ¡À» ÇÏ´Â °ÍÀÌ´Ù. ÀüÀÚ´Â Å©·¡Ä¿À̸ç ÈÄÀÚ´Â ½Ã½ºÅÛ °ü¸®ÀÚÀÎ °ÍÀÌ´Ù. Áï ¿À´ÃÀÇ ÁÖÁ¦´Â ÈÄÀÚÀÎ ¹æ¾îÀÚÀÇ ÀÔÀå°ú ¹æ¾îÀÚÀÇ ¹æ¾î ¹«±âµéÀ» ÃÖ´ëÇÑ ¸¸µé¾î¼­ °ø°ÝÀÚÀÇ °ø°ÝÀ» Àß À̰ܳ¾ ¼ö ÀÖµµ·Ï ÇÏ´Â °ÍÀ» ÁÖÁ¦·Î ÇÒ °ÍÀÌ´Ù.

2. ¹æÈ­º®À» ÀÌ¿ëÇÏ¿© ½Ã½ºÅÛÀÇ º¸¾ÈÀ» ÃÖÀûÈ­

¹æÈ­º®À̶ó ÇÔÀº ¿ø·¡ ÀÚµ¿Â÷ÀÇ ÇÑ ºÎºÐÀ» ÁöĪÇÏ´Â ¿ë¾î·Î½á Â÷¾È°ú ¿£Áøºí·Ï »çÀ̸¦ ³ª´©±â À§ÇÑ ÀåÄ¡¸¦ ÀÏÄ´´Ù. À̰ÍÀÇ ¿ªÇÒÀº ÀÚµ¿Â÷°¡ Æø¹ßÇÒ ¶§ ½Â°´ÀÇ ¾ÈÀüÀ» º¸È£Çϱâ À§ÇØ ¸¸µé¾îÁø °ÍÀÌ´Ù. ±×·¯´ø °ÍÀÌ ÄÄÇ»ÅÍ¿¡ µµÀÔ µÇ¸é¼­´Â ¿ÜºÎ·ÎºÎÅÍ ³»ºÎ¸¦ º¸È£ÇÏ´Â Àåºñ¿Í ±â¼úÀ» ÀÏÄ´ ¸»·Î º¯È¯ÀÌ µÇ¾ú´Ù. Áï, ´Ù½Ã ¸»Çؼ­ ¹æÈ­º®À̶õ 2°³ÀÇ ³×Æ®¿öÅ© »çÀÌ¿¡¼­ Á¢±ÙÁ¦¾î Á¤Ã¥À» ±¸ÇöÇÒ ¼ö ÀÖµµ·Ï ÇÏ´Â ½Ã½ºÅÛÀ̳ª ½Ã½ºÅÛµéÀÇ ÁýÇÕÀ» ÀǹÌÇÏ´Â ¿ë¾î·Î ÀÚ¸®¸Å±è ÇÏ¿´´Ù. ÀÏ¹Ý »ç¿ëÀÚÀÇ °æ¿ì¿¡´Â ÀÌ·± °í¹Î±îÁö ÇÒ Çʿ䰡 ¾ø°ÚÁö¸¸ ´ëºÎºÐ °ü¸®ÀÚµéÀÇ °æ¿ì¿¡´Â Ç×»ó ±â°èÀûÀÎ °üÁ¡¿¡¼­ ÀÚ½ÅÀÇ ¾÷¹«¸¦ ÀÌÇØÇØ¾ß ÇÒ °ÍÀÌ´Ù.

ÀÌ·± ½Ã½ºÅÛ°ü¸®ÀÚÀÇ ÀÔÀå¿¡¼­ º»´Ù¸é, º¸¾ÈÀ̶õ ³×Æ®¿÷ »ó¿¡¼­ ¼ö½Å,¼Û½Å µÇ¾îÁö´Â ÆÐŶÀ» Â÷´ÜÇÏ´Â °Í°ú ÆÐŶÀ» Çã¿ëÇÏ´Â °Í µÎ Ãø¸éÀ» °í·ÁÇØ¾ß ÇÒ °ÍÀÌ´Ù. À̰ÍÀº ´ßÀÌ ¸ÕÀú³Ä? º´¾Æ¸®°¡ ¸ÕÀú¾ß? ¶ó´Â ´ä¾ø´Â Áú¹®°úµµ °°Àº ¾ê±âÀÏ °ÍÀÌ´Ù. Â÷´Ü¿¡ ¿ì¼± µÎ´À³Ä? Çã¿ëÇÏ´Â °Í¿¡ ¿ì¼±À» µÎ´À³Ä? »ç½Ç Á¤´äÀº ¾øÀ» °ÍÀÌ´Ù.

À̰ÍÀº º¸¾È Á¤Ã¥À» ¾î¶»°Ô ¼¼¿ì´Â°¡¿Í ¸Æ¶ôÀÌ °°±â ¶§¹®ÀÌ´Ù. Áï, ÀÚ½ÅÀÌ °ü¸®ÇÏ´Â ½Ã½ºÅÛÀÇ »óÅÂ¿Í ³»¿ëµéÀ» ¸é¹ÐÈ÷ ºÐ¼®ÇÏ¿© ³ª¸§´ë·Î º¸¾È¿¡ ÀÚ½ÅÀÌ ÀÖ´Ù¸é ÆÐŶÀ» Çã¿ëÇÏ´Â Á¤Ã¥À» ¾µ¼öµµ ÀÖ°í ±×·¸Áö ¾Ê´Ù¸é ¹Ý´ë·Î ÆÐŶÀ» Â÷´ÜÇÏ´Â °ÍÀÌ ¹Ù¶÷Á÷ ÇÒ °ÍÀÌ´Ù. Áï, º¸¾ÈÀÇ ÇÙ½ÉÀº º¸¾È Á¤Ã¥ÀÌ ¹«¾ùÀ̳Ä? ¿¡ µû¶ó ´Ù¾çÇÑ ÇüÅÂÀÇ º¸¾È ±â¹ý°ú ÀåºñµéÀÇ ¼³Á¤ÀÌ °áÁ¤µÇ¾îÁö´Â °ÍÀÌ´Ù. À̰ÍÀº °ü¸®ÀÚÀÇ ¸òÀ̶ó°í ÇÒ ¼ö ÀÖ´Ù.(ÀüÀûÀÎ °ÍÀº ¾Æ´ÏÁö¸¸.)

±×·³ º¸¾ÈÀ» À§Çؼ­´Â ¹«¾ùºÎÅÍ ¼ÕÀ» µ¨°ÍÀΰ¡? ±×°ÍÀº ¿­ÀÌ¸é ¾ÆÈ©ÀÌ ¹æÈ­º®À» À̾߱â ÇÒ °ÍÀÌ´Ù. ÇÊÀÚ ¶ÇÇÑ ±×·¸°Ô »ý°¢ÇÑ´Ù. ¹æÈ­º®À» ±¸ÃàÇϱâ À§Çؼ­´Â ¹æÈ­º®¿¡ ´ëÇÑ Á¤Ã¥À» ¸¸µé¾î ³»´Â °ÍÀÌ ¿ì¼±À̶ó°í »ý°¢ÇÑ´Ù. ¿Ö³ÄÇÏ¸é ¹æÈ­º®Àº Á¢±ÙÁ¦¾î Á¤Ã¥À» ±¸ÇöÇϱ⠶§¹®ÀÌ´Ù. ´ÙÀ½ÀåÀÇ ±×¸²Ã³·³ Áï, ¶ó¿ìÅÍ ¾Õ´Ü¿¡¼­ ¸ðµç ÆÐŶÀ» ÇÊÅ͸µ ÇÒ °ÍÀÎÁö, ±× µÚÀÇ ±×¸²Ã³·³ ¶ó¿ìÅÍÀÇ µÞ´Ü¿¡ ¹°·Á¼­ Â÷´ÜÇØ¾ßÇÒ ÆÐŶ¸¸ ÇÊÅ͸µÀ» ÇÒ °ÍÀÎÁö ¾Æ´Ï¸é Áß¿äÇÑ ¼­¹öµéÀÇ ¾Õ´Ü¿¡ ³õ¾Æ¼­ ¼­¹öµé¸¸À» ¹æ¾îÇØ ³¾ °ÍÀÎÁö µîÀÇ Àü·«À» ¸ÕÀú ±âȹÇÏ´Â °ÍÀÌ ¹æÈ­º®À» ¼³Ä¡ÇÒ ¶§ ÃÖ¿ì¼± °úÁ¦ÀÌ´Ù. db server¿Í °°Àº Áß¿äÇÑ ÀÚ·á°¡ µé¾î ÀÖ´Â ¼­¹öµéÀº ¹æÈ­º®À» ÀÌÁßÀ¸·Î Çϰųª ¾ÖÃÊ¿¡ wan ±¸°£¿¡¼­´Â Á¢±ÙÀ» ¸øÇϵµ·Ï ¸·¾Æ³»´Â °Íµµ Á¤Ã¥°ú º¸¾È¿¡ ´ëÇÑ °í¹Î¼Ó¿¡¼­ ±× ÇØ´äÀÌ ³ª¿Ã¼ö Àֱ⠶§¹®ÀÌ´Ù.

À§¿¡¼­ °£´ÜÈ÷ ¹æÈ­º®¿¡ ´ëÇÑ Á¤Ã¥°ú ±×¿Í °ü·ÃµÈ ±×¸² ÀڷḦ Âü°í»ï¾Æ ¹æÈ­º®ÀÇ ¿øÄ¢¿¡ ´ëÇØ¼­ À̾߱â ÇÏ¿´´Ù. ÀÚ, ÀÌÁ¦ºÎÅÍ´Â ±¸Ã¼ÀûÀ¸·Î ¹æÈ­º®¿¡ ´ëÇØ¼­ ¸ÕÀú ¾Ë¾Æº¸±â·Î ÇÏÀÚ.

¹æÈ­º®À̶õ ¹«¾ùÀΰ¡?

¹æÈ­º®(firewall)Àº ³×Æ®¿öÅ© ³»ºÎ ¶Ç´Â ³×Æ®¿öÅ© »óÈ£°£ÀÇ Æ¯¼öÇÑ ÀÓ¹«¸¦ ´ã´çÇÏ´Â "°æÂû°ú °°Àº Á¸Àç¶ó°í ÇÒ ¼ö ÀÖÀ» °ÍÀÌ´Ù. ¹æÈ­º®Àº ¿ÜºÎ¿¡¼­ ³»ºÎ·Î µé¾î¿À´Â Æ®·¡ÇÈ Â÷´Ü, ÆÐŶ ÇÊÅ͸µ(packet filtering) ±×¿Ü ³×Æ®¿÷ ÁÖ¼Ò º¯È¯(nat: network address translation), ÇÁ·Ï½Ã ij½¬ ¼­ºñ½º( proxy cache service) ÀÎÁõ°ú ¾Ïȣȭ¸¦ ÅëÇÑ vpn±¸Çö µîÀÇ ´Ù¾çÇÑ ±â´ÉÀ» Á¦°øÇÑ´Ù. ÀϹÝÀûÀÎ °æ¿ì´Â À§ÀÇ ±×¸²°ú ¶ó¿ìÅÍÀÇ µÞ ´Ü¿¡¼­ ¿ÜºÎ ³×Æ®¿÷°ú ³»ºÎ ³×Æ®¿÷ »çÀÌ¿¡¼­ ³»ºÎ ³×Æ®¿÷À» º¸È£ÇÏ´ÂÀÓ¹«¸¦ ¼öÇàÇÏ´Â °ÍÀÌ ´ëºÎºÐÀÌ´Ù. º¸´Ù ±¸Ã¼ÀûÀ¸·Î ¾ê±âÇÏÀÚ¸é Çб³³ª ȸ»çµî¿¡ ¼³Ä¡µÇ¾î ÀÖ´Â ³×Æ®¿÷¿¡¼­ rasµîÀ» ÅëÇÑ ÀüÈ­Á¢¼Ó , Àü¿ë¼±, ¶Ç´Â ÇÁ·¹ÀÓ ¸±·¹ÀÌµî ¿ø°Å¸® Åë½Å ¼­ºñ½º¸¦ ÅëÇÑ ÀÎÅÍ³Ý Á¢¼ÓÀ» ÅëÁ¦ÇÏ´Â °ÍÀÌ ¹æÈ­º®ÀÇ Áß¿äÇÑ ÀÏÀÌ¸ç ±×·¯Çϱ⿡ È¿°úÀûÀÎ ¹æÈ­º®Àº ³×Æ®¿÷ ¾ÈÆÆÀÇ ¸ðµç Åë½Å ³»¿ëÀ» Á¡°ËÇÏ¿© Çã¿ëµÈ Åë½Å¸¸ °¡´ÉÇϵµ·Ï ÇÏ´Â °ÍÀÌ °¡Àå ÀÌ»óÀûÀ̶ó°í ÇÒ ¼ö ÀÖ´Ù. ÀÏ´Ü, ¹æÈ­º®À» Åë°úÇÏ°Ô ÇÏ¸é ¹æÈ­º®Àº À¯¸í¹«½ÇÇÑ Á¸Àç°¡ µÇ´Â °ÍÀÌ´Ù. ¹Ù·Î À̰ÍÀÌ ¹æÈ­º®ÀÇ ¸ÍÁ¡À̶ó°í ÇÒ ¼ö ÀÖ´Ù. ¹°·Ð À̸¦ ÇØ°áÇϰíÀÚ ¹æÈ­º®À» ÀÌÁß,»ïÁßÀ¸·Î ¼³Ä¡ÇÏ´Â °÷µµ ÀÖÀ¸³ª ±×°ÍÀº Ư¼öÇÑ °æ¿ì¶ó°í »ý°¢ÇÑ´Ù. ÀϹÝÀûÀ¸·Î´Â ¹æÈ­º®Àº ¶ó¿ìÅÍ, ¹æÈ£ È£½ºÆ®, ±âŸ Çϵå¿þ¾îÀÇ Á¶ÇÕ°ú °°ÀÌ ÇϳªÀÇ ÀåÄ¡°¡ ¾Æ´Ï¶ó ¿ÏÀüÇÑ ³×Æ®¿÷ º¸¾È Á¤Ã¥ÀÇ ÀϺζó´Â Á¡À» ¸í½ÉÇØ¾ß ÇÑ´Ù.

º¸¾È Á¤Ã¥¿¡´Â ³»ºÎ »ç¿ëÀÚ¿¡ ´ëÇÑ °­·ÂÇÑ ±Ç°í»çÇ×ÀÌ ÀÖ¾î¾ß ÇÒ °ÍÀÌ´Ù. ±×¸®°í ³×Æ®¿÷ Á¢¼Ó, ´ÙÀ̾ó-Àΰú ´ÙÀ̾ó-¾Æ¿ô, µð½ºÅ© ¹× µ¥ÀÌÅÍ ¾ÏÈ£¿Í, ¹ÙÀÌ·¯½º ¹æÁö¿¡ ´ëÇÑ ´ÜüÀÇ Á¤Ã¥, ±×¸®°í ³»ºÎ Çлý,Á÷¿ø µîÀÇ ³»ºÎÀÚ¿¡ ´ëÇÑ ±³À°ÀÌ Æ÷ÇԵǾî¾ß ÇÑ´Ù. ÀÌ´Â ÇØÅ· »ç°íÀÇ ¸¹Àº °æ¿ì°¡ ³»ºÎÀÚÀÇ ½Ç¼ö·Î ±âÀÎÇÏ´Â °ÍÀÌ ¸¹ÀÌ Àֱ⠶§¹®ÀÌ´Ù. ÇöÀç ³ª¿Í ÀÖ´Â °¡Àå ºü¸¥ Àü¿ëȸ¼±Àº t3ÀÌ´Ù. À̰ÍÀº ÃÊ´ç 45mbpsÀÇ ¼Óµµ·Î µ¥ÀÌÅ͸¦ Àü¼ÛÇØ Áִ ȸ¼±ÀÌ´Ù. ppp »ç¿ëÀÚºÎÅÍ ½ÃÀÛÇØ¼­ 10m,100m »ç¿ëÀÚ ±× ´©±¸ÀÌ´ø °£¿¡ ¸ðµç »ç¿ëÀÚ´Â ¹æÈ­º®ÀÇ º¸È£ ´ë»óÀÌ °¨½Ã, ´ë»óÀÌ µÇ¾î¾ß ÇÑ´Ù. ¿µÈ­ ¸®¾ó ¸ÆÄÚÀÌ¿¡¼­µµ º¸¾ÒµíÀÌ º¸¾È¿¡´Â Ç×»ó ¾îµò°¡ ÇêÁ¡ÀÌ Àֱ⠶§¹®ÀÌ´Ù.

¿Ö ¹æÈ­º®ÀÌ ÇÊ¿äÇѰ¡?

ÀÎÅͳÝÀÇ ±âÇϱ޼öÀûÀÎ ¹ßÀüÀº ¸¹Àº ±â¾÷°ú ±â°üÀ¸·ÎºÎÅÍ ÀÎÅͳݿ¡ ¹ßÀ» µé¿©³õÁö ¾ÊÀ¸¸é ¾ÈµÇ°Ô²û ¸¸µé¾ú´Ù. ½Èµç,ÁÁµç ÀÎÅͳݿ¡ÀÇ °¡ÀÔÀº ÀÌÁ¦´Â ¸ðµÎ¿¡°Ô ÀüÁ¦°¡ µÇ¾îÁø °ÍÀÌ´Ù. ¶ÇÇÑ dbÀÇ ¹ßÀüÀº ¸¹Àº ±â¾÷°ú ´Üü¿¡ ¾÷¹«ÀÇ È¿À²¼ºÀ» ±âÇÏ°Ô ÇØÁÖ¾ú´Ù. ¹Ù·Î ÀÌ ¸ðµç °ÍÀº ÄÄÇ»ÅÍ¿¡ ÀÇÇØ¼­ °¡´ÉÇØÁø ÀϵéÀÌ´Ù. ±×·¯³ª ¿äÁòÀÇ µ¥ÀÌÅͺ£À̽º´Â ÀÎÆ®¶ó³Ý°ú ¿¬µ¿µÇ¾î¼­ ¿î¿µÀÌ µÇ¾îÁö°í ÀÖ´Ù. Áï, ±â¾÷ÀÇ °í±Þ Á¤º¸, ¿¹ÄÁ´ë ÁöÀû Àç»ê±Ç,ÀÚ±ÝÇöȲ,°Å·¡Ã³ »óȲ,°³¹ß±â¼úµîÀÌ ÀÎÅͳݿ¡ ¿¬°áÀÌ µÇ¾îÁ® ÀÖ´Ù°í »ý°¢ÇÏ¸é µÉ °ÍÀÌ´Ù. ÀÌ´Â Áö±Ýµµ Á¦ÁÖµµ¿¡ °¡¸é ÀÖ´Â ¹® ¾ø´Â ÁýµéÀÌ ÀÖ´Â °Í °ú ´Ù¸¦ °ÍÀÌ ¾ø´Ù°í »ý°¢ÇÑ´Ù. ÁÖÀÎÀÌ ¾øÀ¸¸é ¾ðÁ¦µçÁö ±× ÁýÀÇ Áß¿äÇÑ ¹°°ÇµéÀ» ÈÉÃİ¥ ¼ö ÀÖ´Â °Í°ú °°´Ù°í ÇÒ ¼ö ÀÖÀ» °ÍÀÌ´Ù.

Å©·¢Ä¿ Áß¿¡´Â ÀÚ½ÅÀÇ ´É·ÂÀ» Àç¹Ì »ï¾Æ °ú½ÃÇÏ´Â »ç¶÷µµ ÀÖÁö¸¸ ºÒ¼øÇÑ »ý°¢°ú ºÒ¼øÇÑ Àǵµ·Î Å©·¢À» ½ÃµµÇÏ´Â °æ¿ì°¡ ´ëºÎºÐÀÇ °æ¿ìÀÌ´Ù. ¸çÄ¥ Àü¿¡µµ ½Å¹®¿¡ ³ª¿ÔµíÀÌ »ó´ë ȸ»çÀÇ °í°´ Á¤º¸¸¦ À¯Ãâ½ÃÄÑ ÀÚ»çÀÇ À̵æÀ» ÃëÇÏ´Â °æ¿ì°¡ ¹Ù·Î ´ÜÆíÀûÀÎ ¿¹¶ó°í ÇÒ ¼ö ÀÖ´Ù. ¹Ù·Î À̰ÍÀÌ ¹æÈ­º®ÀÌ ÇÊ¿äÇÑ ÀÌÀ¯À̸ç À̵éÀÇ ºÒ¼øÇÑ Àǵµ·ÎºÎÅÍ ÀÚ»çÀÇ ÀÌÀÍÀ» ÁöÄѳ»´Â °ÍÀÌ ¹æÈ­º®ÀÇ Á¸Àç ÀÌÀ¯ÀÌ´Ù. ¹æÈ­º®Àº º¸¾È »Ó ¾Æ´Ï¶ó ³×Æ®¿÷ °ü¸®¿¡ ´ëÇÑ º¸Áõ ¼öÇ¥°¡ µÇ±âµµ ÇÑ´Ù.

¹æÈ­º®½Ã½ºÅÛÀº °ú¿¬ ¾ÈÀüÇÑ °ÍÀΰ¡?

ÇѸ¶µð·Î 100% ¾ÈÀüÇÑ º¸Áõ ¼öÇ¥´Â ¾Æ´Ï´Ù. ¹æÈ­º®Àº ¹æÈ­º®À» Åë°úÇÏÁö ¾Ê´Â ÆÐŶ¿¡ ´ëÇØ¼­´Â ¸·À»¼ö ÀÖ´Â ¹æ¹ýÀÌ ¾ø´Ù. ÀÎÅͳݿ¡ ¿¬°áµÈ ¸¹Àº ±â°üµéÀÌ, ´ÜüµéÀÌ ÀÎÅͳݿ¡ ¿¬°áµÈ ¼±·Î¸¦ µû¶ó À¯ÃâµÉ ¼ö ÀÖ´Â µ¥ÀÌŸÀÇ º¸È£¸¦ À§Çؼ­´Â °ü½ÉÀÌ ¸¹´Ù. ±×·¡¼­ ´ëºÎºÐÀÇ ¹æÈ­º® ½Ã½ºÅÛÀÌ ¶ó¿ìÅÍÀÇ ¾Õ´ÜÀ̳ª ¹Ù·Î µÞ´Ü¿¡ Æ÷ÁøÀ» ½ÃŰ´Â °ÍÀÌ´Ù. ÇÏÁö¸¸ ³»ºÎÀÚ¿¡ ÀÇÇÑ ºÒ¹ýÀûÀÎ Á¤º¸ À¯ÃâÀ̳ª ¸ðµ©À» ÅëÇÏ¿© ħÀÔÇØ µé¾î¿À´Â À¯Àú¿¡ ´ëÇØ¼­´Â »ó´ëÀûÀ¸·Î ±×´ÙÁö °ü½ÉÀÌ ¾ø´Ù. À̵éÀÇ Á¢±Ù¿¡ ´ëÇØ¼­µµ º¸¾ÈÀº Àý´ëÀûÀ¸·Î ÇÊ¿äÇÏ´Ù!!!. ¶Ç ±×¿¡ ´ëÇÑ Á¤Ã¥¼ö¸³ ¶ÇÇÑ ÇÊ¿äÇÏ´Ù!!!

°ªºñ½Ñ ¿Ü»êÀÇ ¹æÈ­º® Á¦Ç°À» ±¸¸ÅÇϸ鼭µµ ³»ºÎ ³×Æ®¿÷À» ÅëÇØ¼­ µé¾î¿À°í ³ª°¡´Â Á¤º¸ÀÇ À¯Ãâ¿¡ ´ëÇØ¼­´Â ½Å°æµµ ¾²Áö ¾Ê´Â °ÍÀº ºû ÁÁÀº °³»ì±¸ÀÏ µû¸§ÀÌ´Ù.. ¹æÈ­º®ÀÌ ÃÖ´ëÇÑÀÇ ¾ÈÁ¤¼º°ú ¿Ïº®ÇÔÀ» º¸Àå¹Þ±â À§Çؼ­´Â ³»ºÎ º¸¾È±¸Á¶ÀÇ ÀϺημ­ µ¿ÀÛÇÏ°Ô±Ý Àϰü¼ºÀ» °¡Áö´Â °ÍÀÌ ÁÁ´Ù. ¹°·Ð, ±×·¸´Ù°í ³»ºÎ ÆÐŶ¸¸À» ÇÊÅ͸µ ÇÏÀÚ´Â ¾ê±â´Â ¾Æ´Ï´Ù. ¹æÈ­º®¿¡ ´ëÇÑ Á¤Ã¥Àº ³ÃöÇϰí, Çö½ÇÀûÀ̾î¾ß Çϸç, Àüü ³×Æ®¿÷ÀÇ ÇöÀç »óÅÂ¿Í º¸¾È ¼öÁØÀ» Àß ÆÄ¾ÇÇϰí ÃßÁø ÇØ¾ßÇÑ´Ù.

¿¹¸¦ µé¾î ¿¹»êÀ̶óµç°¡ ȸ»çÀÇ ÀϱÞÁ¤º¸ ¶Ç´Â °³¹ß±â¼úµîÀÇ Áß¿äÇÑ µ¥ÀÌÅͰ¡ Á¸ÀçÇÏ´Â ¼­¹ö³ª Àå¼Ò´Â ³×Æ®¿÷¿¡ ¿¬°áÀ» ÇÏÁö ¸»¾Æ¾ß ÇÒ °ÍÀ̸ç, ÀÌ·± ¼­¹ö³ª Àåºñ´Â ³»ºÎ ³×Æ®¿÷À¸·ÎºÎÅ͵µ ¾ö°ÝÇÑ Â÷´ÜÀÌ ÇÊ¿äÇÏ´Ù. ´ëºÎºÐÀÇ ÀÌ·± Áß¿äÇÑ µ¥ÀÌÅ͵éÀº db ¼­¹ö¿¡ Á¸ÀçÇÒ °ÍÀÌ´Ù. db¶ÇÇÑ ÀÎÅͳÝÀÇ ¹ßÀü¿¡ ¹ß¸ÂÃç ÀÎÆ®¶ó³Ý ȯ°æÀ¸·Î º¯Çϰí ÀÖ´Â °ÍÀÌ »ç½ÇÀ̰í ÇöÀçÀÇ »óȲÀÓÀ» ¿ì¸®´Â Àß ¾Ë°í Àֱ⠶§¹®ÀÌ´Ù.

±×·¯³ª À̰ÍÀ» °ú¿¬ ¿ì¸®µé¸¸ ¾Æ´Â°¡? ±×·¸Áö ¾Ê´Ù.!!! Å©·¡Ä¿ ¶ÇÇÑ Àß ¾Ë°í ÀÖ´Ù. ¾Æ´Ï, ¿ÀÈ÷·Á ¿ì¸®µé º¸´Ù ¸î¹è´Â ´õ Àß ¾Ë°í ÀÖÀ» °ÍÀÌ´Ù. ±×·¯Çϱ⿡ db ¼­¹ö³ª ±×·ì¿þ¾î ¼­¹öµéÀº º°µµ·Î °ü¸®¸¦ ÇѴٵ簡 ¾Æ´Ï¸é ÀÌÁßÀ¸·Î ¹æÈ­º®À» ¼³Ä¡ÇÏ¿© º¸¾È¿¡ ¸¸ÀüÀ» ±âÇØ¾ß ÇÒ °ÍÀÌ´Ù.

ÇѰ¡Áö Áö³­ À̾߱⸦ ÇϰíÀÚ ÇÑ´Ù. ¸î ´ÞÀü ´ë¸¸ÀÇ ¾î´À ÇÁ·Î±×·¡¸Ó°¡ °³¹ßÇØ¼­ ³Î¸® ÆÛ¶ß·È´Ù´Â cih ¹ÙÀÌ·¯½º¸¦ ±â¾ïÇÒ °ÍÀÌ´Ù. ±×¶§ ±¹³»ÀÇ pcµé Áß ½ÇÁö·Î ÇÇÇØ¸¦ °æÇèÇß´ø °ÍµéÀº ¸î ¸¸´ë¸¦ Çì¾Æ¸°´Ù´Â ¾î´À ¹æ¼ÛÀÇ º¸µµ°¡ ÀÖ¾úÀ» °ÍÀÌ´Ù. ±× ´ç½Ã ÇÊÀÚ ¿ª½Ã ¸¹Àº ¼öÀÇ pcµéÀ» ¼ö¸®ÇÏ°í ·Ò¹ÙÀÌ¿À½º¿Í º¸µå°¡ ÀÏüÇüÀ̾ú´ø pcµéÀº ¿ë»êÀ» °¡Áö°í °¡¼­ rom bios¸¦ ±³Ã¼Çϰųª º¸µå Àüü¸¦ °¥±âµµ Çß´ø ±â¾ïÀÌ »ý°¢³­´Ù. ¿©·¯¹øÀÇ ÁÖÀÇ¿Í °ü½ÉÀ» ÁýÁß ½ÃÄ×Áö¸¸ ±×°ÍÀº ¸ðµç À̵éÀÇ »ý°¢¿¡ ÀνĵǾîÁöÁø ¸øÇß´ø °Í °°´Ù. ¾Æ¹«¸® ¹ÙÀÌ·¯½ºÀÇ ÇÇÇØ¸¦ À̾߱âÇØµµ °ü½ÉÀÌ ¾ø´Â »ç¶÷Àº ³ªÁß¿¡ ´õ¿í´õ Ȥµ¶ÇÑ °í»ýÀ» ÇØ¾ß¸¸ Çß¾úÀ» °ÍÀÌ´Ù.

»ý°¢Çغ¸¶ó!!! À©µµ¿ì¸¦ ´Ù½Ã ±ò°í ±×¿Í °ü·ÃµÈ ¼ÒÇÁÆ®¿þ¾î¸¦ »õ·Î ±ñ´Ù´Â °ÍÀ». ±×¸®°í ±×µ¿¾È °¡Áö°í ÀÖ´ø ±ÍÁßÇÑ µ¥ÀÌÅ͵éÀÇ ºÐ½ÇÀº ¶Ç ¾î¶»°Ô Ç϶õ ¸»Àΰ¡? ÀÌ´Â °ÔÀ¸¸¥ÀÚÀÇ °á°úÀÌ´Ù. ÀÌ·¸µí ¹ÙÀÌ·¯½º´Â pc¸¦ »ç¿ëÇÏ´Â ¸ðµç À̵鿡°Ô °øÆ÷ÀÇ ´ë»óÀÌ ¾Æ´Ò¼ö ¾øÀ» °ÍÀÌ´Ù. ±×·¯Çϱ⿡ ¹ÙÀÌ·¯½ºµµ öÀúÈ÷ ¿øÃµºÀ¼â ½Ãų ÇÁ·Î±×·¥ÀÇ ÇϳªÀÎ °ÍÀÌ´Ù.

»ç½Ç, ¹æÈ­º®Àº ¹ÙÀÌ·¯½º¿¡ ´ëÇØ¼­ ±×¸® ¾ÈÁ¤ÀûÀÌÁö´Â ¸øÇÏ´Ù. ¿äÁò¿¡ ¹ß»ýÇÏ´Â ´ëºÎºÐ ¹ÙÀÌ·¯½ºÀÇ °æ¿ì ³×Æ®¿÷À» ±â¹ÝÀ¸·Î ³Î¸® ÆÛ¶ß¸®´Â °ÍÀÌ º¸ÆíÀûÀ̶ó°í ÇÒ ¼ö ÀÖ´Ù. ±×·¯Çϱ⿡ ´õ¿í´õ ¹®Á¦°¡ ½É°¢ÇÏ´Ù. cih»Ó ¾Æ´Ï¶ó ¸á¸®»ç ¹ÙÀÌ·¯½º ±×¿ÜÀÇ Æ®·ÎÀ̸ñ¸¶¿Í °°Àº ÇÁ·Î±×·¥Àº ³×Æ®¿÷À» ÅëÇÏ¿© ÀüÆÄµÇ°í °¨¿°À» ½ÃŲ´Ù. ¹æÈ­º®Àº ¸¸º´ ÅëÄ¡¾àÀÌ ¾Æ´Ï´Ù.!!!

±×·¯Çϱ⿡ ¸ðµç »ç¿ëÀÚµéÀ» ´ë½ÅÇÏ¿© ¸ðµç °ÍÀ» ¸·À» ¼ö ¾øÀ¸¸ç, ³×Æ®¿öÅ©ÀÇ ÀüÀÚ¿ìÆíÀ̳ª º¹»ç¸¦ ÅëÇØ Àü´ÞµÈ ¹ÙÀÌ·¯½º¿¡ ´ëÇØ È¿°úÀûÀ¸·Î ¸·À» ¼ö ¾øÀ¸¸ç, ÀÌ·¯ÇÑ »ç·ÊµéÀº ¿©·¯°¡Áö ¹öÁ¯ÀÇ sendmail ¿¡¼­, ȤÀº ghoscript, postscript viewer,°¢Á¾ ³×Æ®¿÷À» µû¶ó ¿òÁ÷ÀÌ´Â º¯Á¾ ¹ÙÀÌ·¯½º µî¿¡¼­ ÈçÈ÷ º¼¼ö ÀÖ¾ú´Ù. ¹ÙÀÌ·¯½º¸¦ ³Ê¹« °ú¼Ò Æò°¡Çϰųª ¿ì½À°Ô »ý°¢Áö¸¦ ¸»¾Æ¾ß ÇÑ´Ù.!!! Çѹø¿¡ ¸ðµç µ¥ÀÌÅ͸¦ ÆÄ±«ÇÏ´Â °ÍÀÌ ¹ÙÀÌ·¯½ºÀ̱⠶§¹®ÀÌ´Ù. ¹ÙÀÌ·¯½º´Â ¹æÈ­º®À̳ª ½Ã½ºÅÛ °ü¸®Àڵ鵵 ¸ð¸£´Â »çÀÌ¿¡ µé¾î¿Í¼­ ¼ø½Ä°£¿¡ ³×Æ®¿÷°ú ¼ÒÁßÇÑ ÀڷḦ ¾ø¾Ö ¹ö¸®´Â ¹«¼­¿î ÀûÀ̶ó°í ÇÒ ¼ö ÀÖ´Ù. ¹ÙÀÌ·¯½º¿¡ ´ëÇÑ ´ëÃ¥ ¶ÇÇÑ º¸¾ÈÀÇ ÇÑ ºÎºÐÀ¸·Î¼­ Ãë±ÞÇÏ´Â °ÍÀÌ ¸¶¶¥ÇÏ´Ù°í »ý°¢µÇ¾î Áø´Ù.

±×¸®°í ¹ÙÀÌ·¯½º¿¡ ´ëÇÑ º¸¾È ´ëÃ¥Àº ¹ÙÀÌ·¯½º¸¦ ³×Æ®¿÷ »ó¿¡¼­ ¹ß°ßÇϰڴٴ »ý°¢º¸´Ù´Â Áß¿äÇÑ ½Ã½ºÅÛÀÌ ºÎÆÃµÉ¶§ ¸¶´Ù ¹ÙÀÌ·¯½º¸¦ ½ºÄ³´× ÇÒ ¼ö ÀÖµµ·Ï ÇÏ´Â ÆíÀÌ ÁÁ´Ù. ¹ÙÀÌ·¯½º ½ºÄ³´× µµ±¸¸¦ ÀÌ¿ëÇÏ¿© ³×Æ®¿öÅ©¸¦ º¸È£ÇÏ´Â °ÍÀº Ç÷ÎÇǵð½ºÅ©, ¸ðµ©, ÀÎÅÍ³Ý µî¿¡¼­ µé¾î¿À´Â ¹ÙÀÌ·¯½º¸¦ ¸·´Â °ÍÀÌ´Ù. ¹æÈ­º®¿¡¼­ ¹ÙÀÌ·¯½º¸¦ ¸·´Â ¹æ½ÄÀº ´ÜÁö, ÀÎÅͳݿ¡¼­ÀÇ ¹ÙÀÌ·¯½º ħÅõ¸¦ ¸·´Â °Í ¹Û¿¡ ¾ø´Ù. ´ëºÎºÐÀº Ç÷ÎÇǵð½ºÅ©¿¡ ÀÇÇØ Àü´ÞµÈ´Ù´Â »ç½ÇÀ» ¿ì¸® ¸ðµÎ ±â¾ïÇØ¾ß ÇÑ´Ù.

¹æÈ­º®ÀÇ Á¾·ù¿Í ÇüÅÂ

¹æÈ­º® ½Ã½ºÅÛÀÇ ÇüÅÂ

½ºÅ©¸®´× ¶ó¿ìÅÍ(screening router)

°£´ÜÇÑ ¹æÈ­º® ±¸¼ºÀ¸·Î¼­ Ç¥ÁØ ¶ó¿ìÅÍ(cisco, 3com, bay network)¸¦ »ç¿ëÇÑ´Ù. ÀϹÝÀûÀ¸·Î ip ÇÊÅ͸µ ±â´ÉÀÌ Ãß°¡µÈ ¶ó¿ìÅ͸¦ ÀÌ¿ëÇØ µé¾î¿À°Å³ª ³ª°¡´Â ÆÐŶ¿¡ ´ëÇÑ Á¢±ÙÀ» Á¦¾îÇÏ´Â ¹æ¹ýÀÌ´Ù. Æ÷Æ® ¹øÈ£¿Í ¼Ò½º, ¸ñÀûÁö ÁÖ¼Ò¿¡ ±Ù°ÅÇØ ´Ù¾çÇÑ ÆÐŶ ÇÊÅ͸µÀ» »ç¿ëÇÑ´Ù. ±¸ÇöÇϱⰡ ¹«Ã´ ½¬¿î ÀåÁ¡ÀÌ ÀÖ´Â ¹Ý¸é, ¸ÕÀú ·Î±× Á¤º¸¸¦ ±â·ÏÇÒ ¼ö ¾ø°í ¸¸ÀÏ Çϵå¿þ¾îÀûÀÎ ¹ö±×°¡ ÀÖ´Ù¸é ¸Á Àüü°¡ °ø°Ý´çÇÒ À§ÇèÀÌ ÀÖ´Ù. ¶ÇÇÑ ¸ðµç ¶ó¿ìÅͰ¡ ÀûÀýÇÑ ÇÊÅÍ ¸ÞÄ«´ÏÁòÀ» Á¦°øÇÏÁö ¾ÊÀ¸¸ç, ¸¶Áö¸·À¸·Î Á¢±ÙÇÑ »ç¿ëÀÚ´Â È®ÀÎÇÒ ¼ö ÀÖ´Â ÀÎÁõÀÌ ºÒ°¡´ÉÇÏ´Ù. ±×·¯³ª Ÿ ½Ã½ºÅÛ¿¡ ºñÇØ¼­ ¾ÈÁ¤ÀûÀ̰í Ç¥ÁØÈ­ µÇ¾î Àֱ⠶§¹®¿¡ ¾ÆÁ÷µµ ÀÌ·± ±¸¼ºÀ» ÀÌ¿ëÇÏ´Â °÷ÀÌ ¸¹´Ù.

º£½º¼Ç È£½ºÆ®(bastion host)

½Ã½ºÅÛ °ü¸®ÀÚ°¡ ¸Á º¸¾ÈÀÇ °¡Àå °­·ÂÇÑ Àå¼Ò·Î ÀνÄÇϸç, ³»ºÎ¸ÁÀ¸·Î ħÀÔÇÒ ¼ö ÀÖ´Â ¿µ¿ªÀ¸·Î º£½º¼Ç È£½ºÆ®¸¦ ÅëÇÏ°Ô ÇÔÀ¸·Î ½á À§Çè Áö¿ªÀÇ ¹üÀ§¸¦ ¾ÈÁ¤½ÃŰ´Â ¿ªÇÒÀ» ÇØ ÁØ´Ù. ÀϹÝÀûÀ¸·Î º£½º¼Ç È£½ºÆ®´Â ³ôÀº º¸¾È »óŸ¦ À¯ÁöÇϰí ÀÖ´Ù°í °¡Á¤Çϰí, °¨»ç(audit), ±â´É ¶Ç´Â ÃßÀû(trail)±â´ÉÀ» °®°í ÀÖÀ¸¸ç, º¸¾È À¯Áö¸¦ À§ÇÑ ÀÀ¿ë ¼ÒÇÁÆ®¿þ¾îµéÀÌ Á¸ÀçÇÑ´Ù. ´ëºÎºÐÀÌ 2°³ÀÇ ÆÐŶ ÇÊÅ͸µ ¶ó¿ìÅÍ »çÀÌÀÇ À¯´Ð½º ½Ã½ºÅÛÀ» º£½º¼Ç È£½ºÆ®¶ó°í ÇÑ´Ù. ¿ÜºÎ ¶ó¿ìÅÍ´Â ÀÎÅͳݰú º£½º¼Ç »çÀÌÀÇ Æ®·¡Çȸ¸ Çã¶ôµÈ´Ù. ³»ºÎ ¶ó¿ìÅÍ´Â ³»ºÎ ³×Æ®¿÷(¾ÈÀüÇÑ ³×Æ®¿÷)°ú º£½º¼ÇÀÇ Æ®·¡Çȸ¸ÀÌ Çã¶ôµÈ´Ù. ±×·¯³ª, º£½º¼Ç È£½ºÆ® ¹æ½ÄÀÇ ¹æÈ­º®¿¡µµ ¸¹Àº ¹®Á¦Á¡ÀÌ ÀÖ´Ù. º£½º¼ÇÈ£½ºÆ® ½Ã½ºÅÛÀÇ ¹®Á¦Á¡Àº ¾Æ·¡¿Í °°´Ù. ù°, ºñ¿ëÀÌ ¸¹ÀÌ µç´Ù´Â »ç½ÇÀÌ´Ù. ÀÌ ¹æÈ­º®ÀÇ ±¸¼ºÀº ÃÖ¼ÒÇÑ 2°³ÀÇ À¯´Ð½º ½Ã½ºÅÛ°ú 2°³ÀÇ ¶ó¿ìÅͰ¡ ÀÖ¾î¾ß ±¸ÇöÀÌ °¡´ÉÇÏ´Ù. µÑ°, À¯´Ð½º ½Ã½ºÅÛ ÀÚüÀÇ º¸¾È¹®Á¦¸¦ µé ¼ö ÀÖ´Ù. °è¼ÓÇØ¼­ ¹ß°ßµÇ´Â À¯´Ð½º º¸¾È ¹®Á¦¿¡ ´ëóÇÒ ±æÀÌ ¾ø´Ù. ´ëºÎºÐÀÇ º£½º ¼Ç È£½ºÆ® ¹æÈ­º®Àº Àü¹®°¡µéÀÇ ±â¼ú¿¡ ÀÇÁ¸Çϰí ÀÖ´Ù.

µà¾ó Ȩ °ÔÀÌÆ®¿þÀÌ

½ºÅ©¸®´× ¶ó¿ìÅÍ ¾øÀÌ ³»ºÎ¸Á°ú ¿ÜºÎ¸Á »çÀÌ¿¡ ½Ã½ºÅÛÀ» ³õ°í ½Ã½ºÅÛÀÇ tcp/ip Æ÷¿öµù(forwarding) ±â´ÉÀ» ¸·À½À¸·Î½á ±¸ÇöµÇ´Â ¹æÈ­º®À» ¸»ÇÑ´Ù. Áï, ¿ÜºÎ³ª ³»ºÎ¿¡¼­ µé¾î¿À´Â ¸ðµç ÆÐŶÀ» ip base¿¡¼­ ÇÊÅ͸µÇÏ´Â °ÍÀ» ÀǹÌÇÑ´Ù. ÀϹÝÀûÀ¸·Î ³»ºÎ¸Á°ú ¿ÜºÎ¸Á »çÀÌÀÇ Á÷Á¢ÀûÀÎ Æ®·¡ÇÈÀº ºÒ°¡´ÉÇÏ´Ù.

µû¶ó¼­ µà¾ó Ȩ °ÔÀÌÆ®¿þÀÌ(dual homed ga teway)´Â ³»ºÎ¸Á°ú ¿ÜºÎ¸ÁÀÇ µÎ °³ ÀÎÅÍÆäÀ̽º¸¦ °®°í ÀÖ¾î¾ß ÇÑ´Ù. ¿¹¸¦ µé¸é lan Ä«µå, slip ÀÎÅÍÆäÀ̽º, ÇÑ °³ÀÇ lan Ä«µå·Î ±¸¼ºµÉ ¼ö ÀÖ´Ù.


½ºÅ©¸° È£½ºÆ® °ÔÀÌÆ®¿þÀÌ

½ºÅ©¸° È£½ºÆ® °ÔÀÌÆ®¿þÀÌ(screened host gateway)´Â °¡Àå ¸¹ÀÌ »ç¿ëµÇ°í ÀÖ´Â ¹æÈ­º® ½Ã½ºÅÛÀÇ ¿¹·Î¼­, ¸ðµç µ¥ÀÌÅÍ´Â ÀÏÂ÷ÀûÀ¸·Î ¶ó¿ìÅÍ¿¡¼­ ¾î´ÀÁ¤µµ ÇÊÅ͸µÇÑ ÈÄ ³»ºÎ ¹æÈ­º® È£½ºÆ®·Î Àü¼ÛµÇ°í ±×·±ÈÄ ¹æÈ­º® È£½ºÆ®¿¡ ÀÇÇÏ¿© ³»ºÎ ³×Æ®¿÷³»ÀÇ ÇØ´ç ½Ã½ºÅÛÀ¸·Î º¸³»Áú ¿©ºÎ°¡ ÆÇº°µÈ ÈÄ Àü¼ÛµÇ¾îÁø´Ù. ½ºÅ©¸° È£½ºÆ® ¹æÈ­º®Àº ¿ÜºÎ µ¥ÀÌÅͰ¡ Á÷Á¢ÀûÀ¸·Î ³»ºÎ¸ÁÀ¸·Î Àü¼ÛµÇ±â ¶§¹®¿¡ ÀÌÁß È¨ È£½ºÆ® ¹æÈ­º®º¸´Ù´Â º¸¾È·ÂÀÌ ¹Ì¾àÇÏ´Ù. µû¶ó¼­ ½ºÅ©¸° È£½ºÆ® ½Ã½ºÅÛÀÌ ¿ÜºÎ ħÀÔÀÚ¿¡ ÀÇÇÏ¿© ¹«³ÊÁø´Ù¸é, ½ºÅ©¸° È£½ºÆ® ½Ã½ºÅÛÀÌ ³»ºÎ¸ÁÀÇ ´Ù¸¥ ½Ã½ºÅÛ°ú ¿¬°áµÇ¾î ÀÖ´Ù´ÂÁ¡ ¶§¹®¿¡ ³»ºÎ¸ÁÀÇ Àüü º¸¾ÈÁ¤Ã¥¿¡ È¥¶õÀÌ ¹ß»ýÇÑ´Ù.¾Õ¼­ ¼³¸íÇÑ ½ºÅ©¸®´× ¶ó¿ìÅÍ ¹æÈ­º®°ú º£½º¼Ç È£½ºÆ® ¹æÈ­º® ½Ã½ºÅÛÀÇ ¹®Á¦Á¡À» ÇØ°áÇϱâ À§ÇØ µÎ °³ÀÇ ¹æÈ­º® ½Ã½ºÅÛÀ» °áÇÕÇÑ °ÍÀ¸·Î ±¸¼ºµÈ´Ù.

º£½º¼Ç È£½ºÆ®´Â ³»ºÎÀÇ ¾ÈÀüÇÑ ¸Á¿¡ À§Ä¡ÇÏ°í ½ºÅ©¸° ¶ó¿ìÅÍ º£½º¼Ç È£½ºÆ®¸¦ ¿ÜºÎ¸Á¿¡¼­ Á¢±Ù °¡´ÉÇÑ À¯ÀÏÇÑ Åë·Î·Î ÇÑ´Ù. ÀÌ ¹æÈ­º®Àº º¸´Ù ¾ÈÀüÇÑ ¹æ¹ýÀ̱â´Â ÇÏÁö¸¸ ºñ¿ëÀÌ ¸¹ÀÌ µç´Ù´Â ¹®Á¦°¡ ÀÖ´Ù.

½ºÅ©¸° ¼­ºê³Ý °ÔÀÌÆ®¿þÀÌ

ÀÌ ¹æÈ­º® ½Ã½ºÅÛÀº ½ºÅ©¸° È£½ºÆ® °ÔÀÌÆ®¿þÀÌ¿Í À¯»çÇÏ´Ù. Â÷ÀÌÁ¡Àº ½ºÅ©¸° È£½ºÆ® °ÔÀÌÆ®¿þÀÌ¿¡¼­ º£½º¼Ç È£½ºÆ® ´ë½Å¿¡ µ¶¸³ µÈ ¼­ºê³ÝÀ¸·Î ¹æÈ­º® ½Ã½ºÅÛÀ» ±¸¼ºÇÑ´Ù´Â °Í ½ºÅ©¸° ¼­ºê³Ý °ÔÀÌÆ®¿þÀÌ´Â ³»ºÎ¸Á°ú ¿ÜºÎ¸Á ¾çÂÊ¿¡¼­ Á¢±ÙÇÒ ¼ö ÀÖ¾î¾ß µÇ°í, ½ºÅ©¸° ¼­ºê³ÝÀ» ÅëÇÑ Á÷Á¢ÀûÀÎ ³»ºÎ¸Á°ú ¿ÜºÎ¸Á »çÀÌÀÇ Æ®·¡ÇÈÀº ºÒ°¡´ÉÇÏ°Ô ±¸¼ºµÅ ÀÖ¾î¾ß ÇÑ´Ù.

±â¼ú¿¡ µû¸¥ ¹æÈ­º®ÀÇ À¯Çü

ÆÐŶ ÇÊÅ͸µ °ÔÀÌÆ®¿þÀÌ

ÆÐŶ ÇÊÅ͸µÀº Å©°Ô ¼­ºñ½º ÀÇÁ¸ ÆÐŶ ÇÊÅ͸µ( service dependent packet filtering)°ú ¼­ºñ½º µ¶¸³ ÆÐŶ ÇÊÅ͸µ( service independent packet filtering)À¸·Î ±¸ºÐµÈ´Ù. ¼­ºñ½º ÀÇÁ¸ ÆÐŶ ÇÊÅ͸µÀº ¶ó¿ìÅͰ¡ Ưº°ÇÑ ¼­ºñ½ºÀ» ÀÌ¿ëÇÒ °æ¿ì »ç¿ëÇÏ´Â ¼­ºñ½º Æ÷Æ®¹øÈ£¸¦ ±âÁØÀ¸·Î ÆÐŶÀ» ÇÊÅ͸µÇÏ´Â ¹æ¹ýÀÌ´Ù. ¿¹À» µé¸é, ÅÚ³Ý ¼­ºñ½º(telnet service)´Â ÀϹÝÀûÀ¸·Î tcp¼­ºñ½º Æ÷Æ®¹øÈ£¸¦ 23¹øÀ» »ç¿ëÇϱ⠶§¹®¿¡ °ü¸®ÀÚ´Â ÀÌ Æ÷Æ®¹øÈ£¸¦ ÀÌ¿ëÇÏ¿© Åڳݼ­ºñ½º Á¢¼ÓÀ» Çã¿ë ¶Ç´Â °ÅÀýÇÒ ¼ö ÀÖ´Ù. ÃÖ±Ù¿¡ ¼Ò°³µÈ ·¹À̾î4 ½ºÀ§Äª( layer 4 switching)ÀÌ ¼­ºñ½º ÀÇÁ¸ ÆÐŶ ÇÊÅ͸µÀ» ±Ù°Å·Î ÇÑ ±â¼úÀ̶ó°í º¼ ¼ö ÀÖ´Ù.

ÀϹÝÀûÀ¸·Î ½ºÀ§Ä¡µéÀº ·¹À̾î2 ½ºÀ§Äª(layer2 switching)À¸·Î ÇÁ·¹ÀÓÀÇ Çì´õÁ¤º¸ ³»ÀÇ ¸ÆÁÖ¼Ò(mac address)¸¦ °Ë»öÇÑ ÈÄ µ¥ÀÌÅ͸¦ Àü¼ÛÇϰí, ·¹À̾î3 ½ºÀ§Äª( layer3 switching)Àº osi 3°èÃþ¿¡ ÇØ´çµÇ´Â µ¥ÀÌÅÍ ÁÖ¼Ò¸¦ ÀÌ¿ëÇÑ ¶ó¿ìÆÃ ±â´ÉÀ» ÅëÇÏ¿© Àü¼ÛÇÑ´Ù. ¹Ý¸é¿¡ ·¹À̾î4 ½ºÀ§Äª( layer 4 switching)Àº osi 4 °èÃþ°ú °°ÀÌ ¼Û½Åó¿Í ¼ö½ÅóÀÇ ³ëµå°£ÀÇ Åõ¸íÇÑ Åë½Å¿¡ ´ëÇÑ ¼­ºñ½º¸¦ Á¦°øÇÑ´Ù. Áï, ·¹À̾î 4 ½ºÀ§ÄªÀº tcp( transmission control protocol)¿Í udp( user datagram procol )ÀÇ ¼­ºñ½º Æ÷Æ®¹øÈ£¸¦ ±Ù°£À¸·Î ÆÐŶµéÀ» °Ë»öÇϰí ÇÊÅ͸µ ÇÑ´Ù.

¼­ºñ½º µ¶¸³ ÆÐŶ ÇÊÅ͸µ( service independent packet filtering)Àº ƯÁ¤ ¼­ºñ½º ¶Ç´Â ¼­ºñ½º Æ÷Æ®¹øÈ£¿Í °ü°è¾øÀÌ ³×Æ®¿÷»óÀÇ ¸ðµç ÆÐŶµéÀ» ÇÊÅ͸µÇÏ´Â ¹æ¹ýÀÌ´Ù. ÀϹÝÀûÀÎ ip ÆÐŶ ÇÊÅ͸µÀÌ ÁÁÀº ¿¹Á¦ÀÌ´Ù. ÆÐŶ ÇÊÅ͸µÀº °ü¸®ÀÚÀÇ ÆÐŶ ÇÊÅ͸µ ±ÔÄ¢ ¼³Á¤¹æ¹ý¿¡ ÀÇÇÏ¿© ¼­¹ö¿Í Ŭ¶óÀÌ¾ðÆ®°£ÀÇ ¼­ºñ½º¿¡ °ü¿©µÈ ¿©·¯°¡Áö ³»ºÎ ³×Æ®¿÷ ÆÐŶµéµµ ÇÊÅ͸µ °¡´ÉÇÏ´Ù. ¶ÇÇÑ ÆÐŶ ÇÊÅ͸µÀ» ÅëÇÑ ÀÎÅÍ³Ý Á¢¼Ó Á¦ÇÑÀº ¸ðµç »ç¿ëÀڵ鿡°Ô µ¿ÀÏÇÏ°Ô Àû¿ëµÉ °ÍÀÌ´Ù.

´ÜÁ¡À̶ó¸é °æ°è¼± ¹æ¾î°¡ µÇÁö ¾Ê°í, ¿ÜºÎ¿Í ³»ºÎ ½Ã½ºÅÛÀÌ Á÷Á¢ ¿¬°áµÈ´Ù´Â °ÍÀÌ´Ù. ±×¸®°í ÇØÄ¿°¡ ¼Ò½º¿Í ¸ñÇ¥ ¾îµå·¹½º, Æ÷ Æ® µîÀ» ¸¶À½´ë·Î Á¶ÀÛÇÒ ¼ö ÀÖÀ¸¸ç, ¶ÇÇÑ »ç¿ëÀÚ ÀÎÁõ ±â´ÉÀÌ ³»ºÎ¸Á¿¡ Á¸ÀçÇÏ°Ô µÈ´Ù. Á¦Ç°À¸·Î´Â üũ Æ÷ÀÎÆ® ÆÄÀ̾î¿ù(chec k point firewall-1), sun spf-100, ³×Æ®¿÷-1, ÆÄÀ̾î¿ù/Ç÷¯½º, ¾ÖƲ·£Æ½ ½Ã½ºÅÛ ±×·ì ÀÎÅÍ³Ý ½ÃÅ¥¾î ¶ó¿ìÅÍ(atlantic system g r oup internet secure router) µîÀÌ ÀÖ´Ù.

¼­Å¶ ·¹º§ °ÔÀÌÆ®¿þÀÌ

¼­Å¶ ·¹º§ °ÔÀÌÆ®¿þÀÌ(circuit-level gateway)´Â ¹æÈ­º®À¸·Î µ¿ÀÛÇÏ´Â ½Ã½ºÅÛ¿¡ ³»ºÎ ½Ã½ºÅÛÀÌ ¿ÜºÎ¸Á°úÀÇ Á¢¼ÓÀ» ÀÇ·ÚÇϰí, ¹æÈ­º® ½Ã½ºÅÛÀº ¿ä±¸¿¡ µû¶ó ¿ÜºÎ¸Á°úÀÇ Á¢¼ÓÀ» ¼öÇàÇÑ´Ù. ¹æÈ­º®°úÀÇ Åë½ÅÀ» À§ÇØ Å¬¶óÀÌ¾ðÆ®´Â Æ¯º°ÇÑ ÇÁ·ÎÅäÄÝ (¿¹¸¦ µé¸é, s o cks)À» »ç¿ëÇØ¾ßÇÑ´Ù. Áï, tcp ¼­ºñ½º¿¡ °ü·ÃµÈ ÇÁ·Î±×·¥µéÀÌ ´Ù½Ã ÄÄÆÄÀϵžßÇϸç, º¸ÅëÀº ³»ºÎ¸Á¿¡¼­ ¿ÜºÎ¸Á Á¢¼ÓÀ» ÅëÁ¦ÇÑ´Ù.

ÀåÁ¡À̶ó¸é ³»ºÎ¸Á°ú ¿ÜºÎ¸ÁÀÇ ¿¬°áÀ» Â÷´ÜÇϰí, º¸¾È ´ã´çÀÚ°¡ °ü¸®ÇÏ´Â ÇϳªÀÇ Æ÷Æ®¸¦ ÀÌ¿ëÇØ ³»ºÎ¸Á°ú ¿ÜºÎ¸ÁÀ» ¿¬°áÇÏ´Â °Í ÀÌ´Ù. ±×·¯³ª ºñÇ¥ÁØ Æ÷Æ®·Î ftp, telnet À» »ç¿ëÇØ¼­ ¹æÈ­º®ÀÇ ¿ìȸ°¡ °¡´ÉÇϱ⠶§¹®¿¡ Á¦¾îÀÇ Á¤µµ°¡ º¸Åë ¶ó¿ìÅͺ¸´Ù ¸øÇÏ´Ù . ¶Ç ¾ÖÇø®ÄÉÀÌ¼Ç ÇÁ·ÎÅäÄÝÀ» ÀÚü·Î ¹ø¿ªÇÏÁö ¸øÇØ ¾ÖÇø®ÄÉÀÌ¼Ç ·¹º§¿¡¼­ Æ®·¡ÇÈÀ» °¨½Ã/ÅëÁ¦ÇÏÁö ¸øÇÑ´Ù. Á¦Ç°À¸·Î´Â ºí·¢È¦ ( black hole) µîÀÌ ÀÖ´Ù.

¾ÖÇø®ÄÉÀÌ¼Ç °ÔÀÌÆ®¿þÀÌ

¾ÖÇø®ÄÉÀÌ¼Ç ºÎºÐ¿¡¼­ º¸¾È ¼­ºñ½º¸¦ Á¦°øÇÑ´Ù. ³×Æ®¿÷ °£ÀÇ ¸ðµç Åë½ÅÀº ´ÜÀýµÇ°í, ÇÁ·Ï½Ã(proxy)¶ó°í ºÎ¸£´Â ¾ÖÇø®ÄÉÀÌ¼Ç µ¥ÀÌÅÍ ºê¸®Áö¸¦ ÅëÇØ¼­ ³×Æ®¿÷ ¼­ºñ½º°¡ °³º°ÀûÀ¸·Î Çã¿ëµÈ´Ù. ÀåÁ¡À¸·Î´Â °æ°è¼± ¹æ¾î¸¦ Á¦°øÇϸç, ¾ÖÇø®ÄÉÀÌ¼Ç µ¥ÀÌÅ͸¦ Á¦¿ÜÇÑ ¾î¶² ³×Æ®¿÷ ÆÐŶµµ ³×Æ®¿÷ »çÀ̸¦ Åë°úÇÒ ¼ö ¾ø°Ô ÇÑ´Ù. ÇÊ¿ä½Ã ÀÎÁõ ±â´ÉÀ» ÅëÇÕÇÒ ¼öµµ ÀÖ´Ù. ¶ÇÇÑ ¾ÖÇø®ÄÉÀÌ¼Ç ·¹º§ÀÇ ·Î±ë ¹× °¨»ç ±â´ÉÀ» Á¦°øÇÑ´Ù. ´ÜÁ¡À¸·Î´Â ºñ±³Àû ¼Óµµ°¡ ´À¸®¸ç, ÇÁ·ÎÅäÄÝÀÌ Á¦Çѵȴٴ Á¡. ÀÌ·Î ÀÎÇØ ¸í¼ºÀÌ º¸ÀåµÇÁö ¾Ê´Â´Ù. Á¦Ç°¿¡´Â tis gauntlet inte rnet firewall, raptor eagle, ans interlock, scc sidewinder µîÀÌ ÀÖ´Ù.

ÇÏÀ̺긮µå

ÇÏÀ̺긮µå(hybrid gateway)´Â ÆÐŶ ÇÊÅ͸µ ¹æ½Ä°ú ¾ÖÇø®ÄÉÀÌ¼Ç ¹æ½ÄÀ» È¥ÇÕÇÑ °ÍÀÌ´Ù. ÀåÁ¡À̶ó¸é ¼Óµµ°¡ ºü¸£°í, º¸¾È Á¤Ã¥ º¯°æÀÌ ºü¸£´Ù´Â °ÍÀ» µé ¼ö ÀÖ´Ù. ¹Ý¸é °ü¸®°¡ º¹ÀâÇÏ°í º¸¾È¿¡ ºñ·ÊÇØ º¹À⼺ÀÌ Áõ°¡ÇÑ´Ù´Â ´ÜÁ¡µµ ÀÖ´Ù. ¶Ç ÇÊÅ͸µ °ÔÀÌÆ®¿þ ÀÌ¿¡¼­ º¼ ¼ö ÀÖ´Â ¾àÁ¡µµ ¸¶Âù°¡Áö·Î °®°í ÀÖÀ¸¸ç, ¹æÈ­º®¿¡¼­ ¿î¿ëµÇ´Â ¼­¹öµéÀÌ ³ëÃâµÉ ¼ö ÀÖ´Ù´Â °Í°ú °¡°ÝÀÌ ºñ½Ñ°Íµµ ´ÜÁ¡ ÀÌ´Ù. Á¦Ç°¿¡´Â bnt º¸´õ¿þ¾î ÆÄÀ̾î¿ù ¼­¹ö(border ware firewall server), µðÁöÅÐ ÆÄÀ̾î¿ù for À¯´Ð½º, ÇØ¸®½º »çÀ̹ö°¡µå(h a rris cyberguard), ibm netsp, sos ºê¸²½ºÅæ(brimstone), üũ Æ÷ÀÎÆ® ÆÄÀ̾î¿ù-1(ÅÚ³Ý, ftp ÇÁ·Ï½Ã µµÀÔ) µîÀÌ ÀÖ´Ù

3. °¢Á¾ ¹ö±×¸¦ ÅëÇÑ Å©·¢ »ç·Ê ¿Í ´ëÀÀ¹æ¹ý

(1) sendmail daemon mode Ãë¾à¼º

sendmailÀº Ç¥ÁØ smtp Æ÷Æ®ÀÎ 25¹øÀ¸·Î µé¾î¿À´Â mail ¿¬°á¿¡ ´ëÇØ Á¢¼ÓÀ» ó¸®ÇÒ ¼ö ÀÖ´Â ¼­¹ö¸ðµå·Î ¼öÇà µÉ ¼ö ÀÖ°í ÀÌ ¼­¹ö ¸ðµå´Â ¿ÀÁ÷ root¸¸ÀÌ ¼öÇà ÇÒ ¼ö ÀÖµµ·Ï µÇ¾îÀÖ´Ù. ÇÏÁö¸¸ sendmail ¹öÀü 8.7 ~ 8.8.2 ÄÚµå ÀÛ¼º½ÃÀÇ ¿À·ù·Î ÀÎÇØ ½ÇÇàÀÚ°¡ rootÀÎÁö¸¦ °Ë»çÇÏ´Â ·çƾÀÌ ±×³É Åë°ú µÇ¾î¹ö¸®´Â ¹®Á¦Á¡ÀÌ ÀÖ´Ù. ±×·¯¹Ç·Î ÀÓÀÇÀÇ »ç¿ëÀÚµµ ¼­¹ö¸ðµå·Î sendmailÀ» ¼öÇà ÇÒ ¼ö ÀÖ°Ô µÈ´Ù.

Ãß°¡·Î sendmail 8.7ÀÇ °æ¿ì¿¡´Â sighup signalÀ» ¹ÞÀ» °æ¿ì ¼­¹öÀÚü°¡ Àç½ÃÀ۵ȴÙ. Àç½ÃÀÛÀ» À§ÇØ exec()ÇÔ¼ö°¡ »ç¿ëµÇ¸ç ÀÌ ? root ±ÇÇÑÀ¸·Î Àç½ÃÀ۵ȴÙ. µû¶ó¼­ ÀϹݻç¿ëÀÚ ±ÇÇÑÀ» °¡Áø °ø°ÝÀÚ´Â sendmail ȯ°æÀ» Á¶ÀÛÇÏ¿© ÀÓÀÇÀÇ ÇÁ·Î±×·¥À» ¼öÇà ÇÒ ¼ö ÀÖ°Ô µÈ´Ù. À̸¦ ÅëÇÏ¿© rootÀÇ ±ÇÇÑÀ¸·Î ÀÓÀÇÀÇ ÇÁ·Î±×·¥À» ¼öÇàÇÒ ¼ö ÀÖ°Ô µÈ´Ù.

* ÇØ°áÃ¥

- sendmail 8.8.3À» ¼³Ä¡ÇÑ´Ù.

ftp://ftp.sendmail.org/ucb/src/sednmail.8.8.3.tar.z

- ca-96.24¿¡ µé¾îÀÖ´Â anti-smtp ÇÁ·Î±×·¥À» ¼³Ä¡ÇÏ¿© rootÀÌ¿ÜÀÇ ±ÇÇÑÀ¸·Î sendmail À» ¼­¹ö¸ðµå·Î ¼öÇàÇÒ ¼ö ÀÖ°Ô ÇÑ´Ù.

(2) sendmail 8.7.5 Ãë¾à¼º

* ÀÚ¿ø°í°¥ ¹®Á¦

ÀüÀÚ¿ìÆíÀÌ .forward ÆÄÀÏ ¶Ç´Â .forward ¶Ç´Â alias ÆÄÀÏ ³»ÀÇ :include: ¹®Àå¿¡ ÀÇÇØ ÁöÁ¤µÈ ÇÁ·Î±×·¥¿¡ Àü´ÞµÉ °æ¿ì, ±× ÇÁ ·Î±×·¥Àº .forward ÆÄÀÏ ¶Ç´Â :include: ¹®Àå¿¡¼­ ÂüÁ¶ÇÏ´Â ÆÄÀÏÀÇ ¼ÒÀ¯ÀÚ (ÀÌ·¯ÇÑ »ç¿ëÀÚµéÀ» Á¦¾î»ç¿ëÀÚ¶ó°í ºÎ¸§) ±ÇÇÑÀ¸·Î ½ÇÇàµÇ¸ç, ÇÁ·Î±×·¥ÀÌ ¾Æ´Ñ ÆÄÀÏ¿¡ Àü´ÞµÉ °æ¿ì¿¡´Â ÇØ´ç ÆÄÀÏÀÌ Á¦¾î»ç¿ëÀÚÀÇ ±ÇÇÑÀ¸·Î ¿­·ÁÁø´Ù. ÀüÀÚ¿ìÆíÀÌ Áï½Ã Àü´ÞµÇÁö ¸øÇÑ °æ¿ì, ¸ÞÀÏ Å¥¿¡ ÀúÀåµÇ¸ç ÀûÀýÇÑ ±ÇÇÑÀ» È®º¸ÇÒ ¼ö ÀÖµµ·Ï Á¦¾î»ç¿ëÀÚÀÇ À̸§À¸·Î Å¥ ÆÄÀÏ¿¡ ±â·ÏÇØ µÐ´Ù. À̶§ getpwuid(3) ¸¦ È£ÃâÇÏ¿© ¾ò¾îÁø Á¦¾î»ç¿ëÀÚÀÇ À̸§¸¸ ±â·ÏµÇ´Âµ¥, getpwuid°¡ ½ÇÆÐÇϸé sendmail µðÆúÆ® »ç¿ëÀÚ(8.7.* ¹öÀüÀÇ defaultuser ¿É¼Ç, ÀÌÀü ¹öÀüÀÇ "u" ¹× "g" ¿É¼Ç¿¡ ÀÇÇØ ÁöÁ¤µÊ)·Î ÁöÁ¤µÈ´Ù. ¾î¶² °æ¿ì ½Ã½ºÅÛ ÀÚ¿øÀÌ °í°¥µÇ¸é /etc/passwd ÆÄÀÏ ³»¿¡ ÇØ´ç uid¿¡ ´ëÇÑ Ç׸ñÀÌ Á¸ÀçÇÏ´õ¶óµµ getpwuid(3)°¡ ½ÇÆÐÇÒ ¼ö ÀÖ´Â µ¥, getpwuid´Â "uid°¡ ¹ß°ßµÇÁö ¾ÊÀ½" °ú "½Ã½ºÅÛ ÀÚ¿øÀÌ ¾øÀ½"À» ÀǹÌÇÏ´Â ¿À·ù°ªÀ» ±¸º°ÇÏÁö ¸øÇÏ¸ç µû ¶ó¼­ sendmailµµ À̸¦ ±¸ºÐÇÏÁö ¸øÇÏ°Ô µÇ¾î µðÆúÆ® »ç¿ëÀÚ·Î ÁöÁ¤µÇ´Â °ÍÀÌ´Ù. sendmailÀÇ Æ¯Á¤ ÀÚ¿øÀÌ °í°¥µÇ¸é sendmailÀº µð ÆúÆ®»ç¿ëÀÚ ¼ÒÀ¯ÀÇ ÆÄÀÏÀ» »ý¼ºÇÏ¸ç »ý¼ºµÈ ÆÄÀϵéÀº µðÆúÆ®»ç¿ëÀÚ ¼ÒÀ¯ÀÇ ´Ù¸¥ ÆÄÀÏ¿¡ Á¢±ÙÇϴµ¥ »ç¿ëµÉ ¼ö ÀÖ°Ô µÇ°í »óÀ§ ±Ç ÇÑÀ» °®´Â ´Ù¸¥ »ç¿ëÀÚÀÇ ±ÇÇÑÀ» ȹµæÇÒ ¼öµµ ÀÖ´Ù.

* ¹öÆÛ ¿À¹ö ÇÃ·Î¿ì ¹®Á¦

sendmailÀÇ ¹öÀü 8.7.5 °ú ±× ÀÌÀüÀÇ ¹öÀü¿¡¼­ ¸î°¡ÁöÀÇ ¹öÆÛ¿À¹öÇÃ·Î¿ì ¹®Á¦°¡ ÀÖÀ¸¸ç ±¹Áö »ç¿ëÀÚ¿¡ ´ëÇØ Àΰ¡µÇÁö ¾ÊÀº °ü¸®ÀÚ ±ÇÇÑÀ» Çã¿ëÇÒ ¼öµµ ÀÖ´Ù. À̸¦ ÅëÇØ °ø°ÝÀÚ°¡ root±ÇÇÑÀ» ¾òÀ» ¼ö ÀÖ´Ù.

* ÇØ°áÃ¥

¹®Á¦µéÀ» ÇØ°áÇÏ·Á¸é ¾÷üµéÀÌ Á¦°øÇÏ´Â ÆÐÄ¡¸¦ ¼³Ä¡Çϰųª, ÃÖ½ÅÀÇ sendmail ¹öÀüÀ» ¼³Ä¡ÇØ¾ß Çϸç, ÀÚ¿ø°í°¥¿¡ ´ëÇØ¼­´Â send mailÀÇ ÀúÀÚÀÎ eric allmanÀÌ Á¦°øÇÑ ´ÙÀ½°ú °°Àº Àӽà Á¶Ä¡¸¦ ÃëÇÒ ¼ö ÀÖ´Ù.

"proc" ¸ÞÀÏ·¯·Î¼­ smrsh(sendmail restricted shell)¸¦ ÀÌ¿ëÇÏ¿© µðÆúÆ®»ç¿ëÀڷμ­ ¼öÇàµÇ´Â ÇÁ·Î±×·¥À» Á¦ÇÑÇÒ ¼ö ÀÖ´Ù. ¼Õ»óÀ» ÃÖ¼ÒÈ­½ÃŰ´Â ¹æ¹ýÀº ¹®Á¦°¡ »ý±âÁö ¾Êµµ·Ï µðÆúÆ®»ç¿ëÀÚ¸¦ ¼³Á¤ÇÏ´Â °ÍÀÌ´Ù. sendmailÀº ȣȯ¼ºÀÇ Çâ»óÀ» À§ÇØ µðÆúÆ®»ç¿ëÀÚ¸¦ 1:1(daemon)·Î ÁöÁ¤ÇÏÁö¸¸ Ưº°ÇÑ "mailnull" °èÁ¤À» ÀÌ¿ëÇϸé À§ÇèÀ» ÃÖ¼ÒÈ­½Ãų ¼ö ÀÖ´Ù. "ma ilnull" »ç¿ëÀÚ´Â ´Ù¸¥ ¾î¶°ÇÑ ÆÄÀϵµ ¼ÒÀ¯ÇÏÁö ¾Ê¾Æ¾ß Çϸç, ½ÇÁúÀûÀΠȨ µð·ºÅ丮³ª ½©À» °®Áö ¾Êµµ·Ï ÇØ¾ß Çϴµ¥, ´ÙÀ½ Àº ÆÐ½º¿öµå ÆÄÀÏ Ç׸ñ°ú /etc/group Ç׸ñÀÇ ¿¹ÀÌ´Ù.

¡Û /etc/passwd

mailnull:*:32765:32765:sendmail default user:/no/such/dir:/no/such/shell

¡Û /etc/groups

mailnull:*:32765:

ÀÌ·¸°Ô »ç¿ëÀÚ¸¦ Ãß°¡ÇÑ ÈÄ¿¡, /etc/sendmail.cfÀÇ "defaultuser=1:1" ¶óÀÎÀ»

"defaultuser=mailnull" ·Î ¹Ù²ã¾ß Çϸç, ¸¸¾à 8.6.* ¹öÀüÀ» »ç¿ëÇϰí ÀÖ´Â °æ¿ì¿¡´Â "ou1",

"og1" ¶óÀεéÀ» "ou32765"°ú "og32765"·Î ¹Ù²ã¾ß ÇÑ´Ù.

¸¶Áö¸·À¸·Î, sendmail 8.7.* ¹öÁ¯°ú ÇÔ²² Á¦°øµÈ m4(1) ±â¹ÝÀÇ sendmail ±¸¼º ¹æ½ÄÀ» »ç¿ëÇϰí ÀÖÀ» °æ¿ì, ´ÙÀ½À» m4 ÀÔ·Â ÆÄÀÏ (Åë»óÀûÀ¸·Îsendmail.mc)¿¡ Ãß°¡ÇØ ÁÖ¾î¾ß ÇÑ´Ù.

define('confdef_user_id', 32765:32765)

* ŽÁö ¹× ¿¹¹æ

ÆÐÄ¡ÀÇ ¼³Ä¡, ¾÷±×·¹À̵å, ¶Ç´Â Àӽà Á¶Ä¡¸¦ ÃëÇÑ ÀÌÈÄ¿¡¶óµµ ´ÙÀ½°ú °°Àº Á¡µé¿¡ À¯ÀÇÇØ¾ß ÇÑ´Ù.

- ¸ðµç sendmail ¹öÀü¿¡ ´ëÇØ smrsh ¸¦ »ç¿ëÇØ¾ß ÇÑ´Ù.

- /bin/mailÀ» »ç¿ëÇϰí ÀÖÀ» °æ¿ì, mail.local·Î ±³Ã¼ÇØ¾ß ÇÑ´Ù. mail.localÀº

sendmail ¹èÆ÷º»¿¡ Æ÷ÇԵǾî ÀÖÀ¸¸ç, ±âŸ ¿î¿µÃ¼Á¦¿¡µµ Æ÷ÇԵǾî ÀÖ´Ù.

(3) talkd ¹öÆÛ¿À¹öÇÃ·Î¿ì ´ëÃ¥

talk ¸í·É¿¡ »ç¿ëµÇ´Â talkd ÇÁ·Î±×·¥¿¡ Ãë¾à¼ºÀÌ ¹ß°ßµÇ¾ú´Ù. ħÀÔÀÚ°¡ ƯÁ¤ dns µ¥ÀÌÅ͸¦ ¸¸µé¾î ¿ø°ÝÁö¿¡¼­ ÀÓÀÇÀÇ ¸í·ÉÀ» °ü¸®ÀÚ(root) ±ÇÇÑÀ¸·Î ¼öÇà½Ãų ¼ö ÀÖ´Ù. talk´Â »ç¿ëÀÚ Å͹̳λóÀÇ ÅØ½ºÆ®¸¦ ´Ù¸¥ »ç¿ëÀÚÀÇ Å͹̳ηΠº¹»çÇÏ´Â Åë½Å ÇÁ·Î±×·¥À̰í talkd´Â ´Ù¸¥ »ç¿ëÀÚÀÇ talk ´ëÈ­ ¿äûÀ» °¨ÁöÇÏ´Â µ¥¸óÀÌ´Ù. talk ¿¬°áÀÇ °úÁ¤¿¡¼­ talkd ÇÁ·Î±×·¥Àº ¿¬°áÀ» ¿äûÇÑ È£½ºÆ®ÀÇ À̸§À» È®ÀÎÇϱâ À§ÇÏ¿© dns lookupÀ» ½ÇÇàÇÑ´Ù. À̶§ µÇµ¹¾Æ¿Â È£½ºÆ® À̸§ÀÌ ÀúÀåµÈ ¹öÆÛÀÇ ÇѰ踦 °Ë»çÇÏÁö¾Ê¾Æ talkdÀÇ ³»ºÎ ½ºÅà ¿µ¿ªÀ» °ãÃÄ ¾µ ¼ö ÀÖ´Ù. µû¶ó¼­, ħÀÔÀڴ ȣ½ºÆ® À̸§¿¡ ´ëÇÑ Á¤º¸¸¦ Á¶ÀÛÇÏ¿© talkd ÇÁ·Î±×·¥ÀÌ ÀÓÀÇÀÇ ¸í·ÉÀ» ½ÇÇàÇϵµ·Ï Á¶ÀÛ ÇÒ ¼ö ÀÖÀ¸¸ç, talkd´Â °ü¸®ÀÚ(root) ±ÇÇÑÀ¸·Î ½ÇÇàµÇ¹Ç·Î ħÀÔÀÚ°¡ ¼öÇà½ÃŲ ¸í·Éµµ °ü¸®ÀÚ(root)ÀÇ ±ÇÇÑÀ» °¡Áö°í ½ÇÇàµÈ´Ù.

»ç¿ëÀÚ ½Ã½ºÅÛÀÌ talk ¿¬°áÀ» Çã¿ëÇÏ´ÂÁö ¾Ë¾Æ º¸·Á¸é /etc/inetd.conf¸¦ È®ÀÎÇÏ¸é µÈ´Ù.

# grep -i "^[a-z]*talk" /etc/inetd.conf

À̸¦ ÅëÇØ¼­ ħÀÔÀÚ°¡ ¿ø°ÝÁö¿¡¼­ °ü¸®ÀÚ(root) ±ÇÇÑÀ¸·Î ÀÓÀÇÀÇ ¸í·ÉÀ» ¼öÇà½Ãų ¼ö ÀÖ´Ù. ħÀÔÀÚ´Â ½Ã½ºÅÛ¿¡ °èÁ¤À» °¡Áö°í ÀÖÀ» Çʿ䰡 ¾ø´Ù.

* ÇØ°áÃ¥

1. dns ±â¹ÝÀÇ °ø°Ýµé

bind 4.9.4 ÆÐÄ¡ ·¹º§ 1 ÀÌ»óÀÇ ¹öÀüÀ» ¼³Ä¡.

2. ´Ù¸¥ ³×Æ®¿öÅ© ÇÁ·Î±×·¥

´ÙÀ½ÀÇ À§Ä¡¿¡¼­ ¿Ã¹Ù¸¥ È£½ºÆ®À̸§/ip-ÁÖ¼Ò È®ÀÎÀ» À§ÇÑ ¼­ºê·çƾÀ»

±¸ÇØ È£½ºÆ®À̸§À» lookup ÇÏ´Â ¸ðµç ÇÁ·Î±×·¥¿¡ Æ÷ÇÔ½ÃÄѾßÇÑ´Ù.

ftp://info.cert.org/pub/tools/validatehostname/isvalid.c

3. Á¦Á¶¾÷ü·ÎºÎÅÍÀÇ ÆÐÄ¡ ¼³Ä¡

4. talkd ÇÁ·Î±×·¥À» ¾²Áö¸øÇÏ°Ô ÇÑ´Ù(inetd.conf ÆÄÀÏ ¼öÁ¤

(4) sendmail mime ¹öÆÛ¿À¹öÇÃ·Î¿ì ´ëÃ¥

sendmailÀÇ 8.8.3 °ú 8.8.4 ¹öÀü¿¡ ÀÖ´Â º¸¾È»óÀÇ Ãë¾àÁ¡À¸·Î ÀÎÇÏ¿© ¿ÜºÎ»ç¿ëÀÚ°¡ °ü¸®ÀÚ(root) ±ÇÇÑÀ» ȹµæÇÒ ¼ö ÀÖ´Ù. sendmail Àº email ¸Þ½ÃÁöÀÇ 7bitÀڷḦ 8bit mimeÀ¸·Î º¯È¯Çϴµ¥ ÀÌ º¯È¯ÀÛ¾÷½Ã ÇѰ迡 ´ëÇÑ ºÎÀûÀýÇÑ °Ë»ç·Î ÀÎÇØ sendmailÀÌ °ü¸®ÀÚ(root) ±ÇÇÑÀ¸·Î ¼öÇàµÇ´Â µ¿¾È sendmailÀÇ ³»ºÎ ½ºÅðø°£¿¡ ÀÓÀÇÀÇ Äڵ带 µ¤¾î ¾µ ¼ö°¡ ÀÖ´Ù. emailÀÇ mime º¯È¯Àº ÁÖ·Î ¸¶Áö¸· Àü´ÞÀÚ, Áï Áö¿ª È£½ºÆ®ÀÇ ¸ÞÀϹڽº ¶Ç´Â ÇÁ·Î±×·¥¿¡¼­ ÀÌ·ç¾îÁö¹Ç·Î ¹æÈ­º®ÀÌ ÀÖ´õ¶óµµ Ãë¾à¼ºÀ» °¡Áø´Ù. À̸¦ ÅëÇÏ¿© ¿ÜºÎÀÇ »ç¿ëÀÚ°¡ °ü¸®ÀÚ(root) ±ÇÇÑÀ» ȹµæÇÒ ¼ö ÀÖ´Ù.

* ÇØ°áÃ¥

ÃÖ½ÅÀÇ sendmail·Î ¾÷±×·¹À̵å(upgrade)ÇÑ´Ù.

- ftp://ftp.sendmail.org/pub/sendmail/

(5) ftpd ¿¡¼­ ½Ã±×³¯ Á¦¾î´ëÃ¥

ftpd ÇÁ·Î±×·¥ ¼³°è»ó ¹®Á¦·Î ÀÎÇÏ¿©, ƯÁ¤ ¸í·ÉÀÌ ½ÇÇàµÉ¶§ Àá½Ã ·çÆ®ÀÇ ±ÇÇÑÀ» °¡ÁøÈÄ º»·¡ÀÇ ±ÇÇÑÀ¸·Î µ¹¾Æ¿Í¾ß Çϴµ¥ À̸¦ Á¶ÀÛÇÏ¿© ´Ù¸¥ ½Ã±×³¯À» °¡·Îç ¼ö ÀÖ´Ù. ÀÌ Ãë¾à¼ºÀº ½Ã±×³¯À» Á¦¾îÇÏ´Â ·çƾÀ» ÀÌ¿ëÇÏ¿© ÇÁ·Î¼¼¼­ÀÇ ±ÇÇÑÀÌ °ü¸®ÀÚ(root)°¡ µÉ¼öÀÖÀ»¶§±îÁö ´Ù¸¥ ½Ã±×³¯À» Àâ¾Æ³½´Ù. ÀÏ¹Ý »ç¿ëÀÚ¿Í À͸íÀÇ »ç¿ëÀÚ¿¡°Ô ¼­ºñ½º°¡ Çã°¡µÈ »óȲ¿¡¼­ »ç¿ëÀÚ´Â °ü¸®ÀÚ(root)ÀÇ ±ÇÇÑÀ¸·Î ÆÄÀÏ¿¡ Á¢±ÙÇÒ ¼ö ÀÖ´Ù.

ftpd ¼­¹öÀÇ ¼³Ä¡ ÇüÅ¿¡ µû¶ó ħÀÔÀÚ´Â ¼­¹öÀÇ ÆÄÀϵéÀ» ÀÐ°í ¾µ¼ö ÀÖ°Ô ÇÑ´Ù. ÀÌ °ø°ÝÀº Ãë¾à¼ºÀÌ ÀÖ´Â ftpd ¼­¹ö°¡ ¼³Ä¡µÈ ½Ã½ºÅÛ°ú ³×Æ®¿öÅ© ¿¬°áÀ» ¸¸µé ¼ö Àִ ħÀÔÀÚ¸¸ ÀÖÀ¸¸é °ø°ÝÀÌ °¡´ÉÇÏ´Ù. À̸¦ ÅëÇÏ¿© °èÁ¤ ¼ÒÀ¯ÀÚ ±×¸®°í À͸íÀÇ »ç¿ëÀÚ´Â ftp¸¦ ÀÌ¿ëÇÒ ¶§ °ü¸®ÀÚ(root)ÀÇ ±ÇÇÑÀ¸·Î ÆÄÀϵ鿡 Á¢±ÙÇÏ¿© ÀÐ°í ¾µ¼ö ÀÖ´Ù.

* ÇØ°áÃ¥

°¢°¢ÀÇ º¥´õ¿¡¼­ Á¦°øÇÏ´Â ÆÐÄ¡¸¦ ¼³Ä¡Çϰųª, ÀÌ Ãë¾àÁ¡ÀÌ º¸°­µÈ ±âŸ ftpd ÇÁ·Î±×·¥À» ¼³Ä¡ÇÑ´Ù.

(6) inn ¹ö±×

»ç¿ëÀÚ°¡ ºÎÁ¤ÇÑ news Á¦¾î ¹®ÀÚ¸¦ inn(internetnews server)ÇÁ·Î±×·¥(¹öÀü 1.5 ÀÌÇÏ)¿¡ º¸³» ºñÀΰ¡µÈ »ç¿ëÀÚ°¡ ÀÓÀÇÀÇ ¸í·ÉÀ» ½ÇÇà½Ãų ¼ö ÀÖ´Ù. inn µ¥¸ó(innd) ÇÁ·Î±×·¥Àº "eval" shell¸í·ÉÀ» »ç¿ëÇÏ´Â shell script (parsecontrol)¿¡¼­ "newgroup"¿Í "rmgroup" Á¦¾î ¸Þ½ÃÁö¸¦ ó¸®Çϴµ¥ ÀÌ Á¦¾î ¸Þ½ÃÁöµéÀÌ eval ¸í·ÉÀ¸·Î ³Ñ°ÜÁú ¶§ shell¿¡ Ư¼öÇÑ ¹®ÀÚ(shell ¸í·É µî)µéÀ» °Ë»çÇÏÁö ¾Ê´Â´Ù. µû¶ó¼­ usenetÀ» ÀÌ¿ëÇÒ ¼ö ÀÖ´Â »ç¿ëÀÚ´Â ´©±¸³ª ±× ¼­¹ö¿¡¼­ innd°¡ °¡Áö°í ÀÖ´Â uid ±ÇÇÑÀ¸·Î ÀÓÀÇÀÇ ¸í·ÉÀ» ½ÇÇà½Ãų ¼ö ÀÖ´Ù. ¶ÇÇÑ innd ÇÁ·Î±×·¥Àº ¸Þ½ÃÁö¸¦ º¸³½ »ç¿ëÀÚ°¡ newsgroupÀ» Áö¿ì°Å³ª »ý¼ºÇÏ´Â ±ÇÇÑÀÌ Àִ°¡¸¦ °Ë»çÇϱâ Àü¿¡ "eval"À» ½ÇÇàÇϱ⠶§¹®¿¡ pgpverify¿Í °°Àº ÇÁ·Î±×·¥À» ¾²´Â °ÍÀÌ µµ¿òÀÌ µÇÁö ¸øÇÑ´Ù. ¹æÈ­º® µÚÀÇ news ¼­¹öµµ À̰ø°Ý¿¡ Ãë¾àÇÏ´Ù.

innd v1.5 ±îÁö ÀÌ °ø°Ý¿¡ Ãë¾àÇÏ¸ç ´ÙÀ½°ú °°ÀÌ inndÀÇ ¹öÀüÀ» È®ÀÎÇÑ´Ù.

% telnet news.your.site 119

connected to news.your.site...

escape character is '^]'

200 news.your.site internetnews server inn 1.4unoff4 05-mar-96 ready

À̸¦ ÅëÇØ¼­ ¿ø°ÝÁöÀÇ ºñÀΰ¡µÈ »ç¿ëÀÚ°¡ innd ÇÁ·Î¼¼½º¿Í °°Àº ±ÇÇÑÀ¸·Î ÀÓÀÇÀÇ ¸í·ÉÀ» ½ÇÇàÇÒ ¼ö ÀÖ´Ù.

* ÇØ°áÃ¥

1. inn 1.5.1 ·Î ¾÷±×·¹À̵å ÇÑ´Ù.

2. ÆÐÄ¡¸¦ ¼³Ä¡ÇÑ´Ù.

(7) x window system libxt Ãë¾àÁ¡°ú ´ëÃ¥

open group¿¡ ÀÇÇØ ¹èÆ÷µÈ xt ¶óÀ̺귯¸®¿Í xc/lib/xt/error.cÆÄÀÏ¿¡¼­ ¹öÆÛ¿À¹öÇ÷οì Ãë¾à¼ºÀÌ Á¸ÀçÇϴµ¥ ÀÌ ¶óÀ̺귯¸®¸¦ ÀÌ¿ëÇÏ¿© ¸¸µç ÇÁ·Î±×·¥¿¡ setuid³ª setgid°¡ ¼³Á¤µÈ °æ¿ì, °ø°ÝÀÚ´Â Çã¿ëµÇÁö¾ÊÀº »ç¿ëÀÚ ±ÇÇÑÀ¸·Î ÀÓÀÇÀÇ ¸í·ÉÀ» ½ÇÇà½Ãų ¼ö ÀÖ´Ù. ¸¸¾à setuid root°¡ ¼³Á¤µÇ¾î ÀÖÀ¸¸é rootÀÇ ±ÇÇÑÀ» ºÒ¹ýÀ¸·Î ȹµæÇÒ ¼ö ÀÖ´Ù.

ÀÌ·¯ÇÑ Ãë¾à¼ºÀº x11 release 6.3 ÀÌÀü ¹öÀüÀÇ ¼Ò½ºÄڵ带 ÀÌ¿ëÇÏ¿© ÀÛ¼ºµÈ ÇÁ·Î±×·¥¿¡ setuid³ª setgid¸¦ ¼³Á¤ÇÏ¿© ÀÌ¿ëÇÒ °æ¿ì ÀϾ´Âµ¥ ÀÌ·¯ÇÑ x ÀÀ¿ëÇÁ·Î±×·¥µéÀº ÁÖ·Î /xc/config/cf/site.def ÆÄÀÏÀÇ projectroot Ç׸ñ¿¡ ÁöÁ¤µÈ µð·ºÅ丮¿¡ À§Ä¡ÇÑ´Ù.

* ÇØ°áÃ¥

1. ´ÙÀ½¿¡¼­ x11 release 6.3À» °¡Á®¿Í¼­ ±³Ã¼ ¼³Ä¡ÇÑ´Ù.

ftp://ftp.x.org/pub/r6.3/tars/xc-1.tar.gz, xc-2.tar.gz, xc-3.tar.gz

2. ¶Ç´Â, ÀÚ½ÅÀÇ x window ¾÷ü·ÎºÎÅÍ Á¦°øµÇ´Â ÆÐÄ¡¸¦ ¼³Ä¡ÇÑ´Ù.

3. ¶Ç´Â, Ãë¾àÇÑ x ÀÀ¿ëÇÁ·Î±×·¥À» ã¾Æ setuid bit³ª setgid bit¸¦ Á¦°ÅÇÑ´Ù.

(8) xlock ÇÁ·Î±×·¥ Ãë¾àÁ¡°ú ´ëÃ¥

xlockÀº x Å͹̳ÎÀ» Àá±×±â À§ÇÑ ÇÁ·Î±×·¥Àε¥ ÀϺΠxlock ÇÁ·Î±×·¥ÀÌ ¹öÆÛ ¿À¹öÇÃ·Î¿ì º¸¾È¹®Á¦Á¡À» °¡Áú ¼ö ÀÖÀ¸¸ç, ¾î¶² ȯ°æ¿¡¼­ setuid ¶Ç´Â setgid ±ÇÇÑÀÌ ¼³Á¤µÇ¾î ÀÖÀ» °æ¿ì ÀÏ¹Ý »ç¿ëÀÚ°¡ ½Ã½ºÅÛ¿¡ ºÒ¹ýÀûÀ¸·Î Á¢±ÙÇÒ ¼ö ÀÖ´Ù. ´Ù¾çÇÑ ½Ã½ºÅÛ¿¡¼­ ÀÌ¿Í °°Àº Ãë¾à¼ºÀÌ ÀÖ´Â xlock ÇÁ·Î±×·¥µéÀÌ ¹ß°ßµÇ¾úÀ¸¸ç, À̸¦ ÇØ°áÇϱâ À§ÇÑ ÆÐÄ¡µéÀÌ Á¦°øµÇ°í ÀÖ´Ù.

* ÇØ°áÃ¥

1. ÆÐÄ¡¸¦ Àû¿ëÇÏ´Â ¹æ¹ý

°¢°¢ÀÇ ½Ã½ºÅÛ¿¡ ÇØ´çÇÏ´Â ÆÐÄ¡¸¦ °¡Á®¿Í¼­ ¼³Ä¡ÇÑ´Ù. ÇöÀç ÀÌ Ãë¾àÁ¡À» °¡Áö°í ÀÖ´Â ½Ã½ºÅÛµéÀº ´ÙÀ½°ú °°´Ù.

data general corporation

freebsd, inc.

hewlett-packard company

ibm corporation

linux : devian

suse

sun microsystems, inc

2. ÀÓ½ÃÀû ÇØ°á ¹æ¹ý

ÆÐÄ¡¸¦ °¡Á®¿Í¼­ ¼³Ä¡ÇÏ´Â °ÍÀÌ ºÒ°¡´ÉÇÑ °æ¿ì °ü¸®ÀÚ·Î ·Î±×ÀÎÇÑ ÈÄ ´ÙÀ½°ú °°ÀÌ Á¶Ä¡ÇÑ´Ù.

- setuid ¶Ç´Â setgid ±ÇÇÑÀ» °¡Áø xlock ½ÇÇàÀ» Á¤Áö½ÃŲ´Ù.

- xlockmore ÇÁ·Î±×·¥ÀÇ ÃֽŹöÀü(4.02)¸¦ ¼³Ä¡ÇÑ´Ù.

ftp://ftp.x.org/contrib/applications/xlockmore-4.02.tar.gz

(9)msql Ãë¾àÁ¡°ú ´ëÃ¥

ħÀÔÀÚ´Â ¼öÇàÁßÀÎ msql database ¼­¹ö½Ã½ºÅÛ¿¡ ±ÇÇѾø´Â Á¢±ÙÀ» ¾òÀ» ¼ö ÀÖ´Ù. msql¼­¹ö ¼ÒÇÁÆ®¿þ¾î msqld, msql2d´Â msql¼­¹ö¿¡¼­ Á¦°øµÈ °Íº¸´Ù Å« ½ºÆ®¸µÀ» Æ÷ÇÔÇÏ´Â ÁúÀÇ(query) »ý¼º¿¡¼­ ħÀÔÀÚ´Â ½ºÅÿ¡ µ¤¾î¾²±â¸¦ ÇÏ¿© ÀÓÀÇÀÇ ÄÚµå·Î ¼öÇàµÉ ¼ö ÀÖ´Ù.

* ÇØ°áÃ¥

´ÙÀ½À» ÂüÁ¶¹Ù¶ø´Ï´Ù(msql 2.0-rel and msql2.0.1)

ftp://ftp.secnet.com/pub/patches/msql2-patches.tar.gz

(10) samba¸¦ À§ÇÑ ¹ö±× ¼öÁ¤

ÀÌ º¸¾È Ãë¾àÁ¡Àº sambaÀÇ ¸ðµç ¹öÁ¯¿¡¼­ ¹ß°ßµÇ¾úÀ¸¸ç Á¢±ÙÀÌ Çã¿ëµÇÁö ¾ÊÀº ¿ø°Ý »ç¿ëÀÚ°¡ samba ¼­¹ö¿¡¼­ root ±ÇÇÑÀ» ȹµæÇÒ ¼ö ÀÖ´Ù. sambaÀÇ º¸¾È Ãë¾àÁ¡À¸·Î ÀÎÇØ ¿ø°Ý »ç¿ëÀÚ°¡ samba ¼­¹ö¿¡¼­ root ±ÇÇÑÀ» ȹµæÇÒ ¼ö ÀÖ´Ù. º¸¾È ÇãÁ¡¿¡ ´ëÇÑ ÀÌ·¯ÇÑ ³»¿ëÀº ÀÎÅÚ ±â¹Ý Ç÷§Æû»ó¿¡¼­ ¿î¿µµÇ´Â samba ¼­¹öµé¿¡¼­¸¸ °¡´ÉÇÏ´Ù. ÀÌ Ãë¾àÁ¡À» ÀÌ¿ëÇÏ´Â ½ÇÁ¦ÀûÀÎ ¹æ¹ýÀÌ ÀÎÅÍ³Ý»ó¿¡ °ø°³ µÇ¾îÀÖÀ¸¸ç ƯÈ÷ ÀÎÅÚ ¸®´ª½º ¼­¹ö¿¡ Àû¿ëµÉ ¼ö ÀÖ´Ù.

* ÇØ°áÃ¥

sambaÀÇ »õ·Î¿î ¹öÀü¿¡¼­´Â ÀÌ·¯ÇÑ º¸¾È ÇãÁ¡ÀÌ ¼öÁ¤µÇ¾ú´Ù. »õ·Î¿î ¹öÀüÀº 1.9.17.p2·Î¼­ ´ÙÀ½ÀÇ ftp¸¦ ÅëÇØ¼­ ¾òÀ» ¼ö ÀÖ´Ù.

ftp://samba.anu.edu.au/pub/samba/samba-1.9.17.p2.tar.tz

¶ÇÇÑ, »õ·Î¿î ¹öÀüÀº º¸¾È ÇãÁ¡À» ÀÌ¿ëÇÏ·Á´Â ¸ðµç ½Ãµµ¿¡ ´ëÇØ¼­ ¸Þ½ÃÁö ¸¦ ·Î±ëÇÏ´Â ·çƾÀ» Æ÷ÇÔÇϰí ÀÖ´Ù.

sambaÀÇ log ÆÄÀÏ¿¡ ±â·ÏµÇ´Â ³»¿ëÀº ¾Æ·¡¿Í °°´Ù.

error: invalid password length 999

your machine may be under attack by a user exploiting an old bug

attack was from ip=aaa.bbb.ccc.ddd

¿©±â¼­, aaa.bbb.ccc.ddd´Â ħÀÔÀ» ½ÃµµÇÑ ½Ã½ºÅÛÀÇ ip ÁÖ¼ÒÀÌ´Ù.

»õ·Î¿î Á¤º¸´Â samba www »çÀÌÆ®¸¦ ÂüÁ¶Çϱâ¹Ù¶÷

http://samba.anu.edu.au/samba

(11) lynx Àӽà ÆÄÀÏ Ãë¾àÁ¡°ú ´ëÃ¥

lynx´Â ÅØ½ºÆ®ÇüÅÂÀÇ À¥ºê¶ó¿ìÀú·Î¼­ À¯´Ð½º ½Ã½ºÅÛ¿¡¼­ ¼öÇàÁß¿¡ ¿µ±¸ ÀÓ½ÃÆÄÀÏÀ» /tmp¿¡ ÀúÀåÇÑ´Ù. lynx°¡ ¸¸µå´Â ÀÓ½ÃÆÄÀÏÀÇ À̸§Àº ½Ã½ºÅÛÀÇ ´Ù¸¥ »ç¿ëÀÚ°¡ ½±°Ô ÃßÃøÇÒ ¼ö ÀÖ°í, °ø°ÝÀÚ´Â race conditionÀ» ÀÌ¿ëÇÏ¿© ÀÓ½ÃÆÄÀÏ¿¡ ¸µÅ©¸¦ °É°Å³ª ´Ù¸¥ ÆÄÀÏ·Î ´ëüÇÏ´Â µîÀÇ ÇØÅ·À» ÇÒ ¼ö ÀÖ´Ù.

* ÇØ°áÃ¥

1. ¾Æ·¡¿¡¼­ fotemods ÆÐÄ¡¸¦ °¡Á®´Ù°¡ Àû¿ëÇϰí, /tmp µð·ºÅ丮¿¡ 'sticky ºñÆ®' °¡ ¼³Á¤ µÇ¾îÀÖ´ÂÁö È®ÀÎÇÑ´Ù. http://www.slcc.edu/lynx/fote/patches

drwxrwxrwt /tmp

sticky ºñÆ®°¡ ¼³Á¤µÇÁö ¾Ê¾ÒÀ¸¸é ´ÙÀ½°ú °°ÀÌ ÇÏ¿© ¼³Á¤ÇÑ´Ù.

# chmod 1777 /tmp

2. ´ÙÀ½°ú °°ÀÌ ÀÓ½ÃÆÄÀÏÀÌ ÀúÀåµÇ´Â µð·ºÅ丮¸¦ /tmp°¡ ¾Æ´Ñ ´Ù¸¥ µð·ºÅ丮·Î ÁöÁ¤ÇÑ´Ù.

°¡. lynx 2.7.1¿¡¼­ lynx2-7-1/userdefs.h ÆÄÀϳ»ÀÇ #define temp_space ºÎºÐÀ» lynx¸¦ ½ÇÇàÇÏ´Â »ç¿ëÀÚ¸¸ÀÌ ¾²±â °¡´ÉÇϵµ·Ï ¼³Á¤µÈ µð·ºÅ丮·Î ¹Ù²Û´Ù.

³ª. lynx_temp_space ȯ°æº¯¼ö¸¦ .profile, .cshrc µîÀÇ ÆÄÀÏ¿¡ ÁöÁ¤ÇØÁØ´Ù.

(12) lynx ´Ù¿î·Îµå Ãë¾àÁ¡°ú ´ëÃ¥

lynx 2.7.1 ÀÌÇÏ ¹öÀüÀÌ ¼³Ä¡µÇ¾îÀÖ´Â ½Ã½ºÅÛ¿¡¼­ ÀÏ¹Ý »ç¿ëÀÚ°¡ ÀÓÀÇÀÇ ÆÄÀÏÀ» ½ÇÇàÇϰųª ÀÐÀ» ¼ö ÀÖ´Ù.

1. captive lynx installation

lynx »ç¿ëÀÚ´Â captive Á¶°ÇÇÏ¿¡¼­ ½©ÇÁ·ÒÇÁÆ® ¶Ç´Â ÀÓÀÇÀÇ ¸í·ÉÀ» ½ÇÇàÇÒ ¼ö ¾øÁö¸¸,ÀÌ Ãë¾àÁ¡À» ÀÌ¿ëÇÏ¿© ½©ÇÁ·ÒÇÁÆ®¿¡ Á¢±ÙÇÒ ¼ö ÀÖ´Ù.

2. Àüü lynx ȯ°æ

À¥°ü¸®ÀÚ°¡ ÀÚ½ÅÀÇ È¨ÆäÀÌÁö¿¡ Ưº°È÷ Á¶ÀÛµÈ urlÀ» µî·ÏÇÏ¿© lynx »ç¿ëÀÚ°¡ ÀÎÁöÇÏÁö ¸øÇÏ´Â »çÀÌ ·ÎÄà ½Ã½ºÅÛ¿¡¼­ ÀÓÀÇÀÇ ¸í·ÉÀ» ¼öÇàÇϵµ·Ï ÇÒ ¼ö ÀÖ´Ù.

* ÇØ°áÃ¥

1997-06-26 ÀÌÈÄ ¹öÀüÀÇ lynx´Â ÀÌ·¯ÇÑ Ãë¾àÁ¡ÀÌ ÇØ°áµÇ¾úÀ¸¸ç, lynx 2.7.1 ¹öÀü¿¡ ´ëÇÑ ÆÐÄ¡´Â ´ÙÀ½ »çÀÌÆ®¿¡¼­ Á¦°øµÈ´Ù.

http://www.slcc.edu/lynx/fote/patches/lynx2-7-1/src/lydownload.c

(13) ip ¼­ºñ½º °ÅºÎ°ø°Ý°ú ´ëÃ¥

ÃÖ±Ù teardrop, landÀ̶ó´Â ¼­ºñ½º °ÅºÎ°ø°Ý¿ë ÇØÅ· ÇÁ·Î±×·¥ÀÌ ÀÎÅͳݿ¡³Î¸® ÆÛÁö°í ÀÖ´Ù.

1. teardrop

¸î¸î ½Ã½ºÅÛ¿¡¼­´Â tcp/ip ´ÜÆí ÀçÁ¶ÇÕ¹æ¹ý(fragmentation re-assembly)ÀÇ ±¸Çö»óÀÇ ¹®Á¦·Î ÀÎÇÏ¿© °ãÃÄÁø(overlapped) ip´ÜÆí(fragment)À» Á¦´ë·Î ó¸®ÇÏÁö ¸øÇÏ´Â ¹®Á¦Á¡À» °¡Áø´Ù.

½Ã½ºÅÛ ³»ºÎÀûÀ¸·Î ip ´ÜÆíÀ» ¸ð¾Æ¼­ ip µ¥ÀÌŸ±×·¥À» ¸¸µå´Â ÇÔ¼ö´Â ´ÙÀ½°ú°°´Ù.

memcpy((ptr + fp->offset), fp->ptr, fp->len)

ÀÌ ÇÔ¼öÀÌÀü¿¡¼­ ´ÜÆíÀÇ ±æÀÌ(fp->len)°¡ ƯÁ¤±æÀ̸¦ ³Ñ´ÂÁöÀÇ ¿©ºÎ´Â°Ë»çÇÏÁö¸¸ ´ÜÆíÀÇ ±æÀ̰¡ 0 ÀÌÇÏ·Î ¼³Á¤µÇ¾îÀÖ´Â °æ¿ì´Â °Ë»çÇÏÁö ¾Ê´Â´Ù. Áï, 0 ÀÌÇÏÀÇ °ªÀ» °¡Áú °æ¿ì ´ÜÆíÀº ÀÌÀüÀÇ º¹»çµÈ ´ÜÆí¿¡ °ãÃÄÁö°Ô µÈ´Ù. ¸î¸î ½Ã½ºÅÛÀº ÀÌ·±¹®Á¦¿¡ ´ëÇÑ ¿¡·¯Ã³¸®¸¦ ÇÏÁö¸øÇÏ°í ¸ØÃß°Ô µÈ´Ù. °ø°ÝÀÚ°¡ ¿ø°ÝÁö¿¡¼­ ÀÌ·± ¾àÁ¡À» ÀÌ¿ëÇÑ teardropÀ» »ç¿ëÇÏ¿©°ø°ÝÇÒ °æ¿ì ½Ã½ºÅÛÀÌ ¸ØÃ߰ųª ÀçºÎÆÃµÈ´Ù.

2. land

¸î¸î ½Ã½ºÅÛ¿¡¼­´Â tcp/ip ±¸Çö»óÀÇ ¹®Á¦·Î ÀÎÇÏ¿© ¼ö½ÅÇÏ´Â syn Á¦¾îÆÐŶÀÇ Ãâ¹ßÁöÁÖ¼Ò¿Í ¸ñÀûÁö ÁÖ¼Ò°¡ ÇØ´ç ÆÐŶÀ» ¼ö½ÅÇÏ´Â ½Ã½ºÅÛÀÇ ipÁÖ¼Ò¸¦ °¡Áö´Â °æ¿ì À̸¦ Á¦´ë·Î ó¸®ÇÏÁö ¸øÇÏ°í ¸ØÃ߰ԵǴ ¹®Á¦¸¦ °¡Áø´Ù. °ø°ÝÀÚ°¡ ¿ø°ÝÁö¿¡¼­ ÀÌ·± ¾àÁ¡À» °ø°ÝÇÒ ¼ö ÀÖ´Â land¸¦ »ç¿ëÇÏ¿© °ø°ÝÇÒ °æ¿ì ½Ã½ºÅÛÀÌ ¸ØÃ߰ųª ÀçºÎÆÃµÈ´Ù.

* ÇØ°áÃ¥

1. ½Ã½ºÅÛº° ÆÐÄ¡¸¦ ¼³Ä¡ÇÑ´Ù. - ÷ºÎÂüÁ¶

2. landÀÇ °æ¿ì ³»ºÎ¸Á »ç¿ëÀÚÀÇ ¿ø°ÝÁö°ø°ÝÀ» ¸·±âÀ§ÇÏ¿© °ü¸®ÀÚ´Â ¿ÜºÎ·Î ³ª°¡´Â ¶ó¿ìÅÍ¿¡¼­ Ãâ¹ßÁöÀÇ ÁÖ¼Ò°¡ ³»ºÎ¸ÁÀÇ ÁÖ¼Ò°¡ ¾Æ´Ñ ´Ù¸¥ÁÖ¼Ò·Î ¼Ó¿©¼­ ¿ÜºÎ·Î ³ª°¡´Â ÆÐŶÀ» ÇÊÅ͸µÇÏ¿© ³»ºÎ»ç¿ëÀÚÀÇ ¿ÜºÎ¸Á°ø°ÝÀ» ¸·À» ¼ö ÀÖ´Ù.

Âü°í :

http://ds.internic.net/internet-drafts/draft-ferguson-ingress-filtering-03.txt

(14) apache À¥¼­¹ö º¸¾ÈÃë¾àÁ¡°ú ´ëÀÀÃ¥

ÀÌ Ãë¾àÁ¡À» ÀÌ¿ëÇÏ¿© ¿ÜºÎ »ç¿ëÀÚ´Â À¥¼­¹ö¸¦ ½ÇÇàÇÏ´Â »ç¿ëÀÚÀÇ ±ÇÇÑÀ¸·Î ÀÓÀÇÀÇ ¸í·ÉÀ»¼öÇàÇÒ ¼ö ÀÖ´Ù.

1. cfg_getline()¿¡¼­ÀÇ ¹öÆÛ¿À¹öÇ÷οì

cfg_getline()Àº htaccess, htpasswd, mod_imap ÆÄÀÏÀ» ÀÐÀ» ¶§ »ç¿ëÇÏ´Â ÇÔ¼ö·Î °ø°ÝÀÚ°¡ ÀÌ ÆÄÀϵ鿡 Á¢±ÙÇÒ ¼ö ÀÖ´Ù¸é ÀÌ ÆÄÀÏÀ» ¼öÁ¤ÇÏ¿© ¹öÆÛ¿À¹öÇÃ·Î¿ì °ø°Ý¿¡ ÀÌ¿ëÇÒ ¼ö ÀÖ´Ù.

2. mod_include¿¡¼­ÀÇ ÄÚµù¿¡·¯

mod_include ÄÚµù½Ã¿¡ ¹öÆÛ¿À¹öÇÃ·Î¿ì ¶Ç´Â ÀÚÇÁ·Î¼¼(child process)½º¸¦ ¹«ÇÑ·çÇÁ¿¡ ºüÁö°Ô ÇÏ´Â ¹®Á¦Á¡ÀÌ ÀÖ´Ù.

3. no2slash() ÀÇ ºñÈ¿À²¼º

ÀÌ·Î ÀÎÇØ cpu timeÀÌ Áõ°¡ÇÏ¿© ½Ã½ºÅÛ¿¡ °úºÎÇϸ¦ ÁÙ ¼ö ÀÖ´Ù.

4. logresolve ÇÁ·Î±×·¥ÀÇ ¹öÆÛ¿À¹öÇ÷οì

logresolve ÇÁ·Î±×·¥Àº ip ÁÖ¼Ò¸¦ È£½ºÆ®À̸§À¸·Î º¯È¯ÇÏ´Â ÇÁ·Î±×·¥ÀÌ´Ù. dns ¼­¹ö¸¦ Á¦¾îÇÒ ¼ö ÀÖ´Â °ø°ÝÀÚ´Â logresolveÀÇ ¹öÆÛ¿À¹öÇ÷οì Ãë¾àÁ¡À» ÀÌ¿ëÇÒ¼ö ÀÖ´Ù.

5. mod_proxyÀÇ Ãë¾àÁ¡

mod_proxyÀÇ ftp proxy ºÎºÐÀº Ŭ¶óÀÌ¾ðÆ®¿¡ Àü´ÞÇϱâ À§ÇØ ¿ø°Ý ftp ¼­¹ö·ÎºÎÅÍ µð·ºÅ丮¸®½ºÆ®¸¦ ¹Þ¾Æ¼­ À̸¦ html ÇüÅ·Πº¯È¯ÇØ ÁØ´Ù. Ãë¾àÁ¡À» ÀÌ¿ëÇÏ¿© apache ¼­¹ö¿¡ ÄÚ¾î´ýÇÁ¸¦ ¾ß±âÇÒ ¼ö ÀÖÀ¸¸ç, ÁÖ·Î ¼­ºñ½º °ÅºÎ °ø°Ý¿¡ ÀÌ¿ëµÉ ¼ö ÀÖ´Ù.

6. proxy cacheÀÇ ¹öÆÛ¿À¹öÇ÷οì

mod_proxy°¡ ¼öÇàµÇ¸é apache´Â ij½¬µÈ ÆÄÀÏÀ» À¥¼­¹ö¸¦ ¼öÇàÇÑ »ç¿ëÀÚ ±ÇÇÑÀ¸·Î µð½ºÅ©¿¡ ÀúÀåÇϴµ¥, ¸¸ÀÏ °ø°ÝÀÚ°¡ ÀÌ »ç¿ëÀÚÀÇ ±ÇÇÑÀ» °®°ÔµÇ¸é ÆÄÀÏÀ̸§À» ¼öÁ¤ÇÏ¿© ¹öÆÛ¿À¹öÇ÷ο츦 ÀÏÀ¸Å³ ¼ö ÀÖ´Ù.

7. htaccess ÆÄÀÏ

htaccess ÆÄÀÏÀ» ÀÐÀ» ¼ö ¾øÀ» ¶§ apache´Â À̸¦ ¹«½ÃÇÑ´Ù.

(15) redhat linux 4.2 lpd/printfilter/groff

redhat linux¿¡ Æ÷ÇÔµÈ ÇÁ¸°ÅÍÇÊÅÍ(printerfilter) ¼ÒÇÁÆ®¿þ¾î ÆÐŰÁö´Â ÇÁ¸°Æ®µÉ ÆÄÀÏÀÇÁ¾·ù¸¦ °áÁ¤Çϱâ À§ÇÏ¿© lpd¸¦ È£ÃâÇÑ´Ù. ±×¸®°í, ±× ÆÄÀÏÀÇ Å¸ÀÔ¿¡ ÀûÇÕÇѸ¦ ÇÊÅÍÀû¿ëÇÏ¿© ÆÄÀÏÀ» ÇÁ¸°Æ®ÇÏ°Ô µÈ´Ù. ÇÊÅÍ´Â ÀϹÝÀûÀ¸·Î Áö¿ø ¾îÇø®ÄÉÀ̼ÇÀ» È£ÃâÇϱâ À§ÇÑ ½© ½ºÅ©¸³Æ®·Î µÇ¾îÀÖ´Ù. ÀÌ ÇÊÅÍÀÇ Ã¹¹øÂ° ¹®Á¦Á¡Àº ÀϺΠÇÊÅ͵éÀÌ ,/tmp¸¦ ÇÁ¸°Æ®¸¦ À§ÇÑÀӽÿµ¿ªÀ¸·Î »ç¿ëÇÑ´Ù´Â °ÍÀÌ´Ù. À̶§, symlink¸¦ ÀÌ¿ëÇÏ¿© »õ·Î¿îÆÄÀÏÀ» »ý¼ºÇϰųª, °ãÃľµ ¼ö ÀÖ´Ù.(lpd´Â »ç¿ëÀÚ´Â binÀ¸·Î ±×·ìÀº root·Î¼öÇàµÈ´Ù.)

ù¹øÂ° ¹®Á¦Á¡Àº ¸¹Àº Áö¿ø ¾îÇø®ÄÉÀ̼ǵéÀÌ ¸ðµÎ º¸¾È¿¡ °üÇÑ ¸ðµç ¹®Á¦Á¡ÀÌ °í·ÁµÇ¾î ÀÛ¼ºµÈ°ÍÀÌ ¾Æ´Ï¶ó´Â °ÍÀÌ´Ù. ÇÑ ¿¹°¡ groff ÀÌ´Ù.troff/groff ¿äûÀ» ÀÌ¿ëÇÏ¿©¸í·ÉÀ» ¼öÇà½Ãų ¼ö ÀÖ´Ù. °á°úÀûÀ¸·Î troff¿¡ ´ëÇÑ ±âº»ÀûÀÎ Áö½ÄÀ» °¡Áø »ç¿ëÀÚ¶ó¸é troff ¹®¼­¸¦ ¿ø°Ý¼­¹ö·Î Àü´ÞÇÏ¿©¿ø°Ý ¼­¹ö¿¡¼­ »ç¿ëÀÚ bin, ±×·ì root·Î¼­ ÀÓÀÇÀÇ ¸í·É¾î¸¦ ¼öÇà½Ãų ¼ö ÀÖ´Ù.

ÇÁ¸°ÅÍ ÇÊÅ͸¦ »ç¿ëÇÏ¿© troff¿Í °°Àº ¾îÇø®ÄÉÀ̼ÇÀ» »ç¿ëÇÏ´Â ´Ù¸¥ ¿î¿µÃ¼Á¦¿¡¼­µµ µ¿ÀÏÇÑ ¹®Á¦°¡ ¹ß»ýÇÒ ¼ö ÀÖÀ¸¹Ç·Î ÁÖÀÇÇØ¾ß ÇÑ´Ù. ÀÌ ¹®Á¦Á¡À» ÀÌ¿ëÇÏ¿© ±¹Áö»ç¿ëÀÚ°¡ bin»ç¿ëÀÚ ¶Ç´Â root ±×·ì±ÇÇÑÀ¸·Î »õ·Î¿î ÆÄÀÏÀ» »ý¼ºÇϰųª ±âÁ¸ÀÇ ÆÄÀÏ¿¡ °ãÃÄ ¾µ ¼ö ÀÖ´Ù. ¶ÇÇÑ ±¹Áö¹× ¿ø°Ý»ç¿ëÀÚ°¡ bin»ç¿ëÀÚ ¶Ç´Â root ±×·ì ±ÇÇÑÀ¸·Î ÀÓÀÇÀÇ ¸í·ÉÀ» ¼öÇà ½Ãų ¼öÀÖ´Ù.

* ÇØ°áÃ¥

´ÙÀ½ÆÐÄ¡¸¦ ¼³Ä¡ÇÑ´Ù.

ftp://ftp.redhat.com/updates/4.2/i386/groff-1.10-8.1.i386.rpm

ftp://ftp.redhat.com/updates/4.2/i386/rhs-printfilters-1.41.1-1.i386.rpm

(16) xterm°ú xaw Ãë¾àÁ¡°ú ´ëÃ¥

mit x consortium, x consortium inc ¹× open group x project ÆÀÀ» ÅëÇØ ¹èÆ÷µÈ Å͹̳Π¿¡¹Ä·¹ÀÌÅÍÀÎ xterm(1)°ú xaw ¶óÀ̺귯¸®¿¡ Ãë¾àÁ¡ÀÌ Á¸ÀçÇϸç, À̸¦ ÀÌ¿ëÇÏ¿© °ø°ÝÀÚ´Â °ü¸®ÀÚ(root) ±ÇÇÑÀ» ȹµæÇÒ ¼ö ÀÖ´Ù.ÀÌÁøÄڵ带 Æ÷ÇÔÇÑ ÀÓÀÇÀÇ ±ä ¹®ÀÚ¿­À» ±³¹¦ÇÏ°Ô ±¸¼ºÇÏ¿© ÀÚ¿øÀ» ¼³Á¤Çϴµ¥ »ç¿ëÇÏ¸é ·çÆ®±ÇÇÑÀ» ȹµæÇÒ ¼ö ÀÖ´Ù. xterm(1)¿¡ setuid-root ±ÇÇÑÀÌ ¼³Á¤µÈ °æ¿ì ¶Ç´Â xaw ÅØ½ºÆ® À§Á¬ÀÌ setuid-root±ÇÇÑÀÌ ¼³Á¤µÈ ÇÁ·Î±×·¥¿¡ ÀÇÇØ¼­ »ç¿ëµÇ´Â °æ¿ì ÀÌ·¯ÇÑ Ãë¾àÁ¡¿¡ ³ëÃâµÈ´Ù.

1. xterm Ãë¾àÁ¡ÀÌ ÀÖ´Â ¹öÀü

resources release inputmethod preedittype *keymap

x11r3 no no yes

x11r4 no no yes

x11r5 no no yes

x11r6 no no yes

x11r6.1 yes yes yes

x11r6.2 yes yes yes

x11r6.3 yes yes yes

x11r6.4 yes yes yes

2. xaw ¶óÀ̺귯¸® Ãë¾àÁ¡ÀÌ ÀÖ´Â ¹öÀü

resources release inputmethod preedittype

x11r6 yes yes

x11r6.1 yes yes

x11r6.2 yes yes

x11r6.3 yes yes

x11r6.4 yes yes

* ÇØ°áÃ¥

1. ÀÓ½ÃÇØ°áÃ¥

- xtermÀ¸·ÎºÎÅÍ setuid-root ±ÇÇÑÀ» Á¦°ÅÇÑ´Ù.

# chmod 0755 <path-to-xterm>/xterm

- xaw ÅØ½ºÆ® À§Á¬À» »ç¿ëÇÏ´Â ÇÁ·Î±×·¥µéÀÇ setuid-root ±ÇÇÑÀ» Á¦°ÅÇÑ´Ù.

# chmod 0755 <setuid-root-program>

(17) kde º¸¾È Ãë¾àÁ¡°ú ´ëÃ¥

kde(k desktop environment)´Â À¯´Ð½º ¿öÅ©½ºÅ×À̼ÇÀ» À§ÇÑ ÅëÇÕµÈ ±×·¡ÇÈ µ¥½ºÅ©Å¾ ȯ°æÀ» Á¦°øÇÑ´Ù. kde´Â ÀÌ·¯ÇÑ È¯°æÀÇ ÀϺημ­, setuid root ¼³Á¤µÈ kppp¿Í ½ºÅ©¸° ¶ô ȯ°æÀÎ klockÀ» °ø±ÞÇÑ´Ù. ÇÏÁö¸¸ ÀÌ µÎ ÇÁ·Î±×·¥Àº Áö¿ª »ç¿ëÀÚ°¡ ·çÆ® ±ÇÇÑÀ» ȹµæÇÒ ¼ö ÀÖµµ·Ï ÇÏ´Â ¿©·¯°¡Áö º¸¾È Ãë¾àÁ¡ÀÌ Á¸ÀçÇÑ´Ù.

* ÇØ°áÃ¥

°ø½Ä ÆÐÄ¡¸¦ ¼³Ä¡Çϱâ Àü±îÁö klock°ú kppp ÇÁ·Î±×·¥¿¡¼­ setuid ºñÆ®¸¦ Á¦°ÅÇÑ´Ù.

chmod a-s klock kppp

(18) linux pam Ãë¾àÁ¡ ¹× ´ëÃ¥

ÃÖ±Ù¿¡ º¸±ÞµÈ linux pluggable authentication modules(pam-0.64-2°ú ±× ÀÌÇÏ ¹öÀüµé)ÀÇ pam_unix_passwd.so ¸ðµâ¿¡ ½É°¢ÇÑ º¸¾È Ãë¾àÁ¡ÀÌ ÀÖ¾î /etc/shadow ÆÄÀÏ¿¡ Àбâ/¾²±â ±ÇÇÑÀ» ȹµæÇÒ ¼ö ÀÖ´Ù. rfc/faqs¿¡ ±â¼úµÈ µ¥·Î ¼öµ¿À¸·Î ½Ã½ºÅÛ¿¡ ¸®´ª½º pamÀ» ¼³Ä¡ÇÏ¿´´Ù¸é ½Ã½ºÅÛÀº Ãë¾àÇϸç, ·¹µåÇò 5.x¸¦ ¼³Ä¡ÇÏ¿´´Ù¸é Á»´õ ¾ÈÀüÇÏ´Ù. ¿Ö³ÄÇÏ¸é ·¹µåÇò 5.x¿¡¼­´Â Ãë¾àÇÑ ¸ðµâÀ» »õ·Î¿î pam_pwdb.so·Î ´ëüÇÏ¿´±â ¶§¹®ÀÌ´Ù. ÀÌ Ãë¾àÁ¡À» È®ÀÎÇϱâ À§ÇÑ °£´ÜÇÑ Á¡°Ë ¹æ¹ýÀº ´ÙÀ½°ú °°´Ù.

$ grep pam_unix_passwd /etc/pam.conf /etc/pam.d/passwd

ÀÌ Ãë¾àÁ¡À¸·Î ÀÎÇØ /etc/shadow ÆÄÀÏ¿¡ ´ëÇÑ Àбâ/¾²±â ±ÇÇÑÀ» ¾òÀ» ¼ö ÀÖ°í, ·ÎÄÿ¡¼­ ½Ã½ºÅÛ °ü¸®ÀÚ ±ÇÇÑÀ» ȹµæÇÒ ¼ö ÀÖ´Ù.

* ÇØ°áÃ¥

¾ÆÁ÷ ÆÐÄ¡°¡ ¹ßÇ¥µÇÁö ¾ÊÀº »óÅÂÀÓ

ÀÓ½ÃÀûÀ¸·Î passwd ÇÁ·Î±×·¥ÀÇ setuid ºñÆ®¸¦ Á¦°ÅÇÑ´Ù.

chmod -s /usr/bin/passwd

(19) Æ®·ÎÀÌ ¸ñ¸¶ ¹öÀüÀÇ tcp wrapper

tcp wrappers´Â À¯´Ð½º ½Ã½ºÅÛ¿¡¼­ ³×Æ®¿öÅ© ¼­ºñ½º¸¦ ÇÊÅ͸µÇÏ°í ¸ð´ÏÅ͸µÇÒ ¼ö ÀÖ´Â µµ±¸ÀÌ´Ù. ÃÖ±Ù °ø°ÝÀÚ¿¡ ÀÇÇØ ¼Ò½º°¡ º¯°æµÇ¾î Æ®·ÎÀ̸ñ¸¶°¡ ¼û°ÜÁø tcp_wrappers_7.6.tar.gzÀÌ ¹èÆ÷µÇ°í ÀÖ´Ù. ÀÌ Æ®·ÎÀÌ ¸ñ¸¶´Â 1999³â 1¿ù 21ÀÏ ÀÌÈÄ, ¸î¸î ftp ¼­¹ö¿¡¼­ ¹ß°ßµÇ°í ÀÖ´Ù. Æ®·ÎÀ̸ñ¸¶ ¹öÀüÀÇ tcp wrapper´Â ¼Ò½º Æ÷Æ®°¡ 421¹øÀ» °¡Áö°í ÀÖ´Â Á¢¼ÓÀÌ ½ÃµµµÉ °æ¿ì root·ÎÀÇ Á¢±ÙÀ» Çã¶ôÇÑ´Ù. ¶ÇÇÑ ÀÌ Æ®·ÎÀÌ ¸ñ¸¶ ¹öÀüÀº ÄÄÆÄÀÏ µµÁß¿¡ »ç¿ëÀÚ °èÁ¤°ú ½Ã½ºÅÛÀÇ Á¤º¸¸¦ 'whoami'¿Í 'uname -a'¸¦ ÀÌ¿ëÇÏ¿© ¾òÀº ÈÄ ¿ÜºÎ¿¡ ÀüÀÚ¸ÞÀÏÀ» ÅëÇØ ¹ß¼ÛÇÑ´Ù. µû¶ó¼­ ÀÌ Æ®·ÎÀÌ ¸ñ¸¶ ¹öÀüÀÇ tcp wrapper°¡ µ¿ÀÛ ÁßÀΠȣ½ºÆ®¿¡ °ø°ÝÀÚ´Â ½Ã½ºÅÛ °ü¸®ÀÚ ±ÇÇÑÀ¸·Î ºÒ¹ý ħÀÔÀÌ °¡´ÉÇØ Áø´Ù.

* ÇØ°áÃ¥

1. tcp wrapper ¹«°á¼º °Ë»ç

1999³â 1¿ù 21ÀÏ 06:16:00(gmt) ÀÌÈÄ¿¡ tcp wrapper¸¦ ´Ù¿î·Îµå ¹Þ¾Ò´Ù¸é ¹«°á¼ºÀ» È®ÀÎÇØ º¸¾Æ¾ß¸¸ ÇÑ´Ù. md5 üũ¼¶¿¡ ÀÇÇÑ ¹«°á¼º Á¡°Ë°ªÀº ´ÙÀ½°ú °°´Ù.

Á¤»óÀûÀÎ ¹öÀüÀÏ °æ¿ì :

tcp_wrappers_7.6.tar.gz

md5 = e6fa25f71226d090f34de3f6b122fb5a

size = 99438

tcp_wrappers_7.6.tar

md5 = 5da85a422a30045a62da165404575d8e

size = 360448

Æ®·ÎÀÌ ¸ñ¸¶ ¹öÀüÀÏ °æ¿ì :

tcp_wrappers_7.6.tar.gz

md5 = af7f76fb9960a95a1341c1777b48f1df

size = 99186

2. »õ·Î¿î tcp wrapper ¼³Ä¡

tcp wrapper¸¦ °³¹ßÇÏ°í °ü¸®Çϰí ÀÖ´Â wietse venema´Â ÀÚ½ÅÀÇ pgp »çÀÎÀ» µ¡ºÙÀÎ

tcp_wrappers_7.6.tar.gzÀ» º¸±ÞÇϰí ÀÖ´Ù.

´ÙÀ½ »çÀÌÆ®¿¡¼­ tcp wrapper¸¦ ±¸ÇÒ ¼ö ÀÖ´Ù.(±âÁ¸ »çÀÌÆ®°¡ °ø°Ý´çÇØ ¿Å±è)

ftp://ftp.porcupine.org/pub/security/

¶Ç´Â cert coordination centerÀÇ tcp wrapper »ç¿ëµµ ¾ÈÀüÇÏ´Ù.

ftp://ftp.cert.org/pub/tools/tcp_wrappers/tcp_wrappers_7.6.tar.gz

md5 checksum: e6fa25f71226d090f34de3f6b122fb5a

3. ¼Ò½º Æ÷Æ® ¹øÈ£ 421ÀÎ ÆÐŶ Â÷´Ü

³×Æ®¿öÅ© Â÷¿ø(ħÀÔÂ÷´Ü½Ã½ºÅÛ, ¶ó¿ìÅÍ µî)¿¡¼­ ¼Ò½º Æ÷Æ® ¹øÈ£°¡ 421ÀÎ ÆÐŶÀ» Â÷´ÜÇÒ ¼öµµ ÀÖ´Ù. ÇÏÁö¸¸ ÀÌ·¯ÇÑ °æ¿ì ÇÕ¹ýÀûÀÎ Á¢¼ÓÀÌ 421¹ø ¼Ò½º Æ÷Æ® ¹øÈ£¸¦ »ç¿ëÇÒ °æ¿ì ¼­ºñ½º°¡ µÇÁö ¾ÊÀ» ¼öµµ ÀÖÀ¸¹Ç·Î ±ÇÀåÇÒ ¸¸ÇÑ ¹æ¹ýÀº ¾Æ´Ï´Ù.

(20) ftp serv-u 2.5 Ãë¾àÁ¡ ¹× ´ëÃ¥

ftp serv-u 2.5¿¡¼­ ÀÏ¹Ý »ç¿ëÀÚ°¡ ftp ¸í·É°ú ÇÔ²² 155¹®ÀÚ ÀÌ»óÀÇ ½ºÆ®¸µÀ» º¸³» ¼­¹ö¸¦ ´Ù¿î½Ãų ¼ö ÀÖ´Â Ãë¾àÁ¡ÀÌ ¹ß°ßµÇ¾ú´Ù.

* ÇØ°áÃ¥

´ÙÀ½ »çÀÌÆ®¿¡¼­ »õ·Î¿î º£Å¸¹öÀüÀÇ ÇÁ·Î±×·¥À» ¼³Ä¡ÇÑ´Ù.

ftp://ftp.cat-soft.com/beta

(21) Æ®·ÎÀÌ ¸ñ¸¶ »ç°í

Æ®·ÎÀ̸ñ¸¶´Â "º¸¾È À§ÇùÀ» ÀÏÀ¸Å³ ¼ö ÀÖ´Â »ç¿ëÀÚ ±ÇÇÑÀ» °ø°ÝÇÒ ¼ö ÀÖ´Â ¼û°ÜÁø ±â´ÉÀ» °¡Áø À¯¿ëÇÑ °Íó·³ °¡ÀåÇÑ ÇÁ·Î±×·¥À¸·Î Æ®·ÎÀ̸ñ¸¶´Â ÇÁ·Î±×·¥ÀÇ »ç¿ëÀÚ°¡ ÀǵµÇÏÁö ¾ÊÀº ÀϵéÀ» ÇÑ´Ù." Æ®·ÎÀ̸ñ¸¶´Â »ç¿ëÀÚ°¡ ÇÁ·Î±×·¥À» ¼³Ä¡Çϰųª ÀÌ¹Ì ´Ù¸¥ ¹æ¹ý¿¡ ÀÇÇØ¼­ ºÒ¹ýÀûÀÎ Á¢±ÙÀ» ÇÑ °ø°ÝÀÚ¿¡ ÀÇÇØ ¼³Ä¡µÉ ¼ö ÀÖ´Ù. ±×·¯¸é °ø°ÝÀÚ´Â ´Ù¸¥ »ç¿ëÀÚ°¡ Æ®·ÎÀ̸ñ¸¶¸¦ ½ÇÇàÇÏ¹Ç·Î½á ½Ã½ºÅÛÀ» ÆÄ±« ÇϰíÀÚ ÇÏ´Â ½Ãµµ¸¦ ÇÑ´Ù.

ÃÖ±Ù ´ÙÀ½°ú °°Àº Æ®·ÎÀ̸ñ¸¶ °ü·Ã »ç°íµéÀÌ ÀϾ°í ÀÖ´Ù.

1. ÀÎÅÍ³Ý ÀͽºÅ¬·Î·¯(ie)ÀÇ °ÅÁþ ¾÷±×·¹À̵å

ÃÖ±Ù¿¡ ¸¶ÀÌÅ©·Î¼ÒÇÁÆ®»çÀÇ ie À¥ºê¶ó¿ìÀú¸¦ ¹«·á·Î ¾÷±×·¹À̵åÇ϶ó´Â ÀüÀÚ ¿ìÆíÀÌ ±¤¹üÀ§ÇÏ°Ô ¹èÆ÷µÇ°í ÀÖ´Ù. ±×·¯³ª ¸¶ÀÌÅ©·Î¼ÒÇÁÆ®»ç´Â ÆÐÄ¡³ª ¾÷±×·¹À̵带 ÀüÀÚ¿ìÆíÀ» ÅëÇØ¼­ Á¦°øÇÏÁö ¾Ê°í ÀüÀÚ¿ìÆíÀ» ÅëÇØ¼­´Â º¸¾È °Ô½Ã(security bulletins)¸¸À» º¸±ÞÇÑ´Ù°í ÇÑ´Ù. ¸ÞÀÏ ¸Þ½ÃÁö¿¡´Â ie0199.exe¶ó´Â ½ÇÇà ÇÁ·Î±×·¥ÀÌ Ã·ºÎµÇ¾î ÀÖ´Ù. ¼³Ä¡ ÈÄ¿¡ ±× ÇÁ·Î±×·¥Àº ¸î¸î ½Ã½ºÅÛ¿¡ ´ëÇÑ ¼öÁ¤°ú ´Ù¸¥ ¿ø°Ý ½Ã½ºÅÛÀ¸·ÎÀÇ Á¢¼ÓÀ» ½ÃµµÇÏ°Ô µÈ´Ù.

Æ®·ÎÀ̸ñ¸¶ÀÇ ÇÑ ¹öÀüÀº ´ÙÀ½°ú °°Àº ¸Þ½ÃÁö¸¦ º¸³½´Ù.

as an user of the microsoft internet explorer, microsoft corporation provides you with this upgrade for your web browser. it will fix some bugs found in your internet explorer. to install the upgrade, please save the attached file (ie0199.exe) in some folder and run it.

À§¿Í °°Àº ¸Þ½ÃÁö´Â ½ÇÁ¦ ¸¶ÀÌÅ©·Î¼ÒÇÁÆ®»ç°¡ º¸³½ °ÍÀÌ ¾Æ´Ï´Ù. ´ÙÀ½ À§Ä¡¿¡ ÀÖ´Â ¸¶ÀÌÅ©·Î¼ÒÇÁÆ® ie À¥ »çÀÌÆ®¸¦ ÂüÁ¶ÇÒ °ÍÀ» ±ÇÀ¯ÇÑ´Ù.

http://www.microsoft.com/windows/ie/security/default.asp

2. Æ®·ÎÀÌ ¸ñ¸¶ ¹öÁ¯ÀÇ tcp wrappers

ÃÖ±Ù °ø°ÝÀÚ¿¡ ÀÇÇØ tcp wrapperÀÇ ¼Ò½ºÄڵ尡 ¼öÁ¤µÇ¾î Æ®·ÎÀ̸ñ¸¶¸¦ Æ÷ÇÔÇÑ´Ù°í ¹ßÇ¥µÇ¾ú´Ù(ca-99-01-trojan-tcp-wrappers, ka-99-9-trojan tcp wrapper ÂüÁ¶).

¿©±â¿¡ °üÇÑ ±Ç°í¹®Àº ´ÙÀ½ À§Ä¡¿¡¼­ ±¸ÇÒ ¼ö ÀÖ´Ù.

http://www.cert.org/advisories/ca-99-01-trojan-tcp-wrappers.html

http://www.certcc.or.kr/advisory/ka99/ka99-09.txt

(23) Æ®·ÎÀ̸ñ¸¶ ¹öÁ¯ÀÇ util-linux

util-linux´Â ¸®´ª½º ½Ã½ºÅÛÀ» À§ÇÑ ¸î¸î ±âº»ÀûÀÎ À¯Æ¿¸®Æ¼¸¦ Æ÷ÇÔÇÏ´Â ¹èÆ÷ÆÇÀÌ´Ù. 1999³â 1¿ù 22ÀÏ¿¡¼­ 1¿ù 24ÀÏ »çÀÌ¿¡ ÃÖ¼ÒÇÑ ÇÑ ftp ¼­¹öÀÇ util-linux-2g.tar.gz ÆÄÀÏ¿¡ Æ®·ÎÀ̸ñ¸¶°¡ ÀÖ´Ù. ÀÌ Æ®·ÎÀÌ ¸ñ¸¶´Â ¹Ì·¯ ftp »çÀÌÆ®¸¦ ÅëÇØ¼­µµ ¹èÆ÷µÉ ¼ö ÀÖ¾ú´Ù. Æ®·ÎÀ̸ñ¸¶ ¹öÀüÀÇ util-linux¿¡´Â /bin/loginÀÌ ¼öÁ¤µÇ¾î ÀÖ´Ù. ÀÌ ¼öÁ¤µÈ ÄÚµå´Â °ø°ÝÀÚ¿¡°Ô È£½ºÆ® À̸§°ú ·Î±×ÀÎÇÑ »ç¿ëÀÚÀÇ uid°¡ Æ÷ÇÔµÈ ÀüÀÚ¿ìÆíÀ» °ø°ÝÀÚ¿¡°Ô º¸³½´Ù. ¶ÇÇÑ ¾î¶² »ç¿ëÀÚ¿¡°Ô ¸í·ÉÀ» ½ÇÇà½Ãų ¼ö ÀÖ´Â ·Î±×ÀÎ ÇÁ·ÎÇÁÆ®¸¦ Á¦°øÇØ ÁÖµµ·Ï ¼öÁ¤µÇ¾ú´Ù.

Æ®·ÎÀ̸ñ¸¶°¡ ¼³Ä¡µÇ¾ú´ÂÁö È®ÀÎÇϱâ À§ÇÑ ºü¸¥ ¹æ¹ýÀº ´ÙÀ½ÀÇ ¸í·ÉÀ» ½ÇÇà½ÃÄÑ º¸´Â °ÍÀÌ´Ù.

$ strings /bin/login | grep "helo"

½ÇÇà°á°ú ¾Æ·¡ÀÇ °á°ú°¡ ³ªÅ¸³ª¸é Æ®·ÎÀÌ ¸ñ¸¶ ¹öÀüÀÇ util-linux-2.9gÀÌ ¼³Ä¡µÇ¾î ÀÖ´Â °ÍÀÌ´Ù.

helo 127.0.0.1

½ÇÇà°á°ú ¾Æ¹«·± Ãâ·ÂÀÌ ¾øÀ¸¸é Æ®·ÎÀ̸ñ¸¶°¡ ¼³Ä¡µÇÁö ¾ÊÀº °ÍÀÌ´Ù.

util-linuxÀÇ °³¹ßÀÚ¿¡ ÀÇÇØ¼­ Á¦°øµÇ´Â »çÀÌÆ®¿¡¼­ ¾ÈÀüÇÑ ÆÄÀÏÀ» ¹ÞÀ» ¼ö ÀÖ´Ù.

ftp://ftp.win.tue.nl/pub/linux/utils/util-linux/util-linux-2.9h.tar.gz

* ÀÌÀüÀÇ Æ®·ÎÀ̸ñ¸¶µé

Æ®·ÎÀ̸ñ¸¶ ÇÁ±×·¥µéÀº »õ·Î¿î °ÍÀÌ ¾Æ´Ï°í Æ®·ÎÀ̸ñ¸¶¿¡ ´ëÇÑ ¹è°æ°ú ¿ª»ç¿¡ ´ëÇØ ´ÙÀ½À» ÂüÁ¶ÇÒ ¼ö ÀÖ´Ù.

http://www.cert.org/advisories/ca-99-01-trojan-tcp-wrappers.html

http://www.cert.org/vul_notes/vn-98.07.backorifice.html

http://www.cert.org/advisories/ca-94.14.trojan.horse.in.irc.client.for.unix.html

http://www.cert.org/advisories/ca-94.07.wuarchive.ftpd.trojan.horse.html

http://www.cert.org/advisories/ca-94.05.md5.checksums.html

http://www.cert.org/advisories/ca-94.01.ongoing.network.monitoring.attacks.html

http://www.cert.org/advisories/ca-90.11.security.probes.html

»ç¿ëÀÚ°¡ Æ®·ÎÀ̸ñ¸¶¸¦ ½ÇÇàÇÏ¸é ´ÙÀ½°ú °°Àº ÇàÀ§¸¦ ÇÒ ¼ö ÀÖ´Ù.

- »ç¿ëÀÚ°¡ Áö¿ï ¼ö ÀÖ´Â ÆÄÀÏÀÇ »èÁ¦

- »ç¿ëÀÚ°¡ ÀÐÀ» ¼ö ÀÖ´Â ÆÄÀÏÀ» °ø°ÝÀÚ¿¡°Ô Àü¼Û

- »ç¿ëÀÚ°¡ ¼öÁ¤ÇÒ ¼ö ÀÖ´Â ÆÄÀÏÀÇ º¯Á¶

- ºÒ¹ýÀûÀÎ ³×Æ®¿öÅ© Á¢¼ÓÀ» °¡´ÉÇÏ°Ô ÇÏ´Â ÇÁ·Î±×·¥µî°ú °°Àº ´Ù¸¥ ÇÁ·Î±×·¥À» ¼³Ä¡

- Ãë¾àÁ¡À» °ø°ÝÇÏ¿© »óÀ§ ±ÇÇÑ È¹µæÀ» ½Ãµµ

- ¹ÙÀÌ·¯½º ¼³Ä¡

- ´Ù¸¥ Æ®·ÎÀ̸ñ¸¶ ¼³Ä¡

* ÇØ°áÃ¥

½Ã½ºÅÛ °ü¸®ÀÚ´Â ¼³Ä¡µÈ ¸ðµç ¼ÒÇÁÆ®¿þ¾î¿¡ ´ëÇØ¼­ ½Å·ÚÇÒ ¼ö ÀÖ´Â Ãâó·Î ºÎÅÍ ¹Þ¾Æ¿Â °ÍÀÎÁö, Àü¼Û Áß¿¡ ¼öÁ¤µÇÁö´Â ¾Ê¾Ò´ÂÁö¿¡ ´ëÇØ ½Å°æÀ» ½á¾ß ÇÑ´Ù. ÀüÀÚ¼­¸íÀ» »ç¿ëÇÒ ¼ö ÀÖÀ¸¸é ¼­¸í°ªÀ¸·Î °ËÁõÇϵµ·Ï ÇÑ´Ù. ¼ÒÇÁÆ®¿þ¾î °³¹ßÀÚ¿Í º¸±ÞÀÚµéÀº ¸ðµç ¼ÒÇÁÆ®¿þ¾îÀÇ »ý»ê°ú º¸±Þ¿¡¼­ °­·ÂÇÑ ¾ÏÈ£ÇÐÀû °ËÁõÀ» »ç¿ëÇÑ´Ù. ûÇÏÁö ¾ÊÀº ÀüÀÚ¿ìÆíÀ» ÅëÇØ¼­ Àü´ÞµÈ ¾î¶² ÇÁ·Î±×·¥µµ ½ÇÇàÇÏÁö ¾Ê´Â´Ù.

À¥ ÆäÀÌÁö·ÎºÎÅÍ ÀÚ¹Ù ¾ÖÇø´, ÀÚ¹Ù½ºÅ©¸³Æ®, ¾×Ƽºê ¿¢½º µî°ú °°Àº ³»¿ëÀ» ½ÇÇàÇÒ ¶§ ÁÖÀÇÇ϶ó. À¥ ºê¶ó¿ìÀú¿¡ ÀÚµ¿À¸·Î À¥ ÆäÀÌÁöÀÇ ³»¿ëÀ» ½ÇÇàÇÏÁö ¾Êµµ·Ï ¼³Á¤Çϵµ·Ï ÇÑ´Ù. ÃÖ¼ÒÇÑÀÇ ±ÇÇÑÀ¸·Î ÀÏ»óÀÇ ÀÛ¾÷À» ¼öÇàÇϵµ·Ï ÇÑ´Ù. °¡·É ÀüÀÚ¿ìÆíÀ» Àд ÀÏ»óÀûÀÎ ÀÛ¾÷À» À§ÇØ "root"³ª "administrator" µîÀÇ ±ÇÇÑÀ¸·Î ¼öÇàÇÏÁö ¾Ê´Â´Ù. ½Ã½ºÅÛ ÆÄÀÏÀÇ ¹«°á¼ºÀ» Á¡°ËÇÒ ¼ö ÀÖ´Â tripwire °°Àº µµ±¸¸¦ ¼³Ä¡ÇÏ¿© ¿î¿µÇÑ´Ù. »ç¿ëÀڵ鿡°Ô Æ®·ÎÀ̸ñ¸¶ÀÇ À§Ç輺À» ±³À°ÇÑ´Ù.

Àß ¾Ë·ÁÁø Æ®·ÎÀ̸ñ¸¶¸¦ ã¾Æ³»±â À§ÇÑ Ä§ÀÔÂ÷´Ü½Ã½ºÅÛÀ̳ª ¹ÙÀÌ·¯½º ¹é½Å Á¦Ç°À» »ç¿ëÇÑ´Ù. Å͹̳Π¿¡¹Ä·¹ÀÌÅ͸¦ À§ÇÑ ssh, À¥ ¼­¹ö¿¡¼­ÀÇ x.509 °ø°³Å° ÀÎÁõ¼­ µî°ú °°Àº ¾ÏÈ£ÇÐÀûÀ¸·Î °­·ÂÇÑ »óÈ£ ÀÎÁõ ½Ã½ºÅÛ »ç¿ëÀ» äÅÃÇ϶ó.

ÆÄÀÏ¿¡ Æ®·ÎÀ̸ñ¸¶¸¦ ÀÖ´ÂÁö È®ÀÎÇÒ ¶§, ŸÀÓ ½ºÅÆÇÁ, ÆÄÀÏ »çÀÌÁî, ȤÀº ´Ù¸¥ ÆÄÀÏ ¼Ó¼ºµé¿¡ ÀÇÁ¸ÇÏÁö ¸»¶ó.

ºñÀΰ¡µÈ ¼ÒÇÁÆ®¿þ¾î ´Ù¿î·Îµå½Ã ÁÖÀÇÇ϶ó.

¸ðµç º¸¾È ±â°ü¿¡¼­´Â ±Ç°í¹®°ú ´Ù¸¥ °æ°í¹®µé¿¡ µðÁöÅÐ ¼­¸íÀ» ÇÑ´Ù.

(24) ·¹µåÇÞ ¸®´ª½º 6.0 inn Ãë¾àÁ¡ ¹× ´ëÃ¥

·¹µåÇÞ ¸®´ª½º 6.0ÀÇ inn ÇÁ·Î±×·¥¿¡ º¸¾È ¹®Á¦Á¡ÀÌ ¹ß°ßµÇ¾ú´Ù. inn.conf ÆÄÀÏÀ̳ª innconf ȯ°æº¯¼ö¸¦ ¼öÁ¤ÇÔÀ¸·Î½á 'news' »ç¿ëÀÚ´Â ½Ã½ºÅÛ °ü¸®ÀÚ ±ÇÇÑÀ¸·Î ÀÓÀÇÀÇ ¸í·É¾î¸¦ ¼öÇàÇÒ ¼ö ÀÖ´Ù. ÀÌ Ãë¾àÁ¡Àº ·¹µåÇÞ ¸®´ª½º 6.0 ÀÌÀü ¹öÀüÀÇ inn¿¡´Â ¹ß°ßµÇÁö ¾Ê´Â´Ù.

* ÇØ°áÃ¥

·¹µåÇÞ ¸®´ª½º 6.0 »ç¿ëÀÚ´Â ¹öÀüº°·Î ´ÙÀ½°ú °°ÀÌ ÆÐÄ¡ÇÑ´Ù.

alpha:

rpm -uvh ftp://updates.redhat.com/6.0/alpha/inn-2.2-9.alpha.rpm

rpm -uvh ftp://updates.redhat.com/6.0/alpha/inn-devel-2.2-9.alpha.rpm

rpm -uvh ftp://updates.redhat.com/6.0/alpha/inews-2.2-9.alpha.rpm

i386:

rpm -uvh ftp://updates.redhat.com/6.0/i386/inn-2.2-9.i386.rpm

rpm -uvh ftp://updates.redhat.com/6.0/i386/inn-devel-2.2-9.i386.rpm

rpm -uvh ftp://updates.redhat.com/6.0/i386/inews-2.2-9.i386.rpm

sparc:

rpm -uvh ftp://updates.redhat.com/6.0/sparc/inn-2.2-9.sparc.rpm

rpm -uvh ftp://updates.redhat.com/6.0/sparc/inn-devel-2.2-9.sparc.rpm

rpm -uvh ftp://updates.redhat.com/6.0/sparc/inews-2.2-9.sparc.rpm

source rpm:

rpm -uvh ftp://updates.redhat.com/6.0/srpms/inn-2.2-9.src.rpm

(25) Á×À½ÀÇ ping

ÀÌ ³à¼®Àº ¾ó¸¶Àü¿¡ ÇÊÀÚÀÇ Çб³ ½Ã½ºÅÛ¿¡¼­ ¹ß»ýÇÑ °æ¿ìÀ̱⿡ »ó´çÈ÷ Ä¡°¡ ¶³¸®´Â ³à¼®ÀÌ´Ù. ¸ÖÂÄÇÏ´ø ³×Æ®¿÷ÀÌ ¾î´À ¼ø°£ºÎÅÍ ´À·ÁÁö±â ½ÃÀÛÇß´Ù. óÀ½¿¡´Â ´Ã ±×·¸µíÀÌ ¿ÜºÎ¸ÁÀÇ ¼Óµµ¿¡ ¹®Á¦°¡ À־ ±×·¸°ÚÁö ÇÏ°í »ý°¢À» Çϰí ÀÖ¾ú´Ù. ±×·±µ¥ ¸çÄ¥ÀÌ Áö³ªµµ ³×Æ®¿÷ÀÇ ¼Óµµ °³¼±ÀÌ À̾îÁöÁö ¾Ê¾Ò°í ³»ºÎ »ç¿ëÀڵ鿡°Ô ¹®ÀÇ ÀüÈ­°¡ °è¼Ó À̾îÁ³´Ù. ÇÏ¿© ÆÐŶ ½º´ÏÆÛ À¯Æ¿¸®Æ¼¸¦ ±¸ÇÏ¿© Çб³ ÀüüÀÇ ÆÐŶ °Ë»ç¸¦ ¸é¹ÐÈ÷ ½ÃÀÛ ÇÏ¿´´Ù. ±× ¿ÍÁß¿¡ ±âº» °ÔÀÌÆ®¿þÀÌ´Â Á¤½ÅÀ» ¸øÂ÷¸®°í ¿©·¯¹ø Á×¾ú´Ù »ì¾Ò´Ù¸¦ ¹Ýº¹À» Çß¾ú´Ù. Çб³ ÆÐŶÀ» ºÐ¼® ÇÏ´øÁß ¿©·¯±ºµ¥ÀÇ ³»ºÎ ¿ÜºÎ¿¡¼­ ¾öû³­ ¾çÀÇ ÆÐŶÀ» ¶ó¿ìÅÍ¿¡ ³¯¸®´Â °ÍÀ» ¹ß°ßÇÒ ¼ö ÀÖ¾ú´Ù. ¹Ù·Î À̰ÍÀÌ ³×Æ®¿÷ ¼Óµµ ÀúÇÏ¿Í ¶ó¿ìÅÍ ´Ù¿îÀÇ ¿øÀÎÀ̾ú´ø °ÍÀÌ´Ù.

±×·¡¼­ ¼¼¼Ç¿ù·Î ¿ÜºÎ¿¡¼­ ¸¹Àº ¾çÀÇ ÆÐŶÀ» ³¯¸®´Â »çÀÌÆ®¿Í ip¸¦ ¸·¾Æ ¹ö¸®°í ³»ºÎ¿¡¼­ ³Ñ¾î¿À´Â ÆÐŶÀº ¼­¹ö °ü¸®ÀÚ¿Í ÇùÀÇÇÏ¿© ¹®Á¦ÀÇ ¼ÒÁö¸¦ ¾ø¾Ö¸é¼­ ³×Æ®¿÷ÀÇ ¾ÈÁ¤¼ºÀ» È®º¸ ÇÒ ¼ö ÀÖ¾ú´Ù. °øÆ÷ÀÇ pingÀº ¼­¹ö°¡ Ÿ°ÙÀÌ µÇ´Â °æ¿ìµµ ÀÖÁö¸¸ ÇÊÀÚÀÇ °æ¿ìó·³ ¶ó¿ìÅͰ¡ ±× Ç¥ÀûÀÌ µÇ´Â °æ¿ìµµ ÀÖ´Ù. ±×·¸°Ô µÇ¸é ³»ºÎ ³×Æ®¿÷Àº pingÀ» ³¯¸®´Â ½Ã°£ ¸¸Å­Àº °ÅÀÇ ¸¶ºñ°¡ µÈ´Ù°í º¸¸é µÉ °ÍÀÌ´Ù.

ÀÌ°Ç ¾ÆÁÖ °£´ÜÇϰԵµ ÇÒ ¼ö°¡ ÀÖ´Ù.

ping -l 65527 xxx.com

À̸¦ Â÷´ÜÇϱâ À§Çؼ­´Â ¸ÕÀú ¾îµð¿¡¼­ ÆÐŶÀÌ ³¯¾Æ¿À´ÂÁö¸¦ È®ÀÎÇØ¾ß ÇÒ °ÍÀÌ¸ç ±×¸¦ À§Çؼ­´Â tcpdump °°Àº µµ±¸¸¦ »ç¿ëÇϱ⸦ ¹Ù¶õ´Ù. ±×¸®°í ¹®Á¦¸¦ ¿ÏÀüÈ÷ ÇØ°áÇϱâ À§ÇÏ¿© °ü¸®ÀÚ¿¡°Ô ¿¬¶ôÀ» ÃëÇÏ¿© ¶ó¿ìÅÍ ´Ü¿¡¼­ ¸·¾Æ³¾ ¼ö ÀÖµµ·Ï Á¶¾ðÀ» ÇØÁà¾ß ÇÒ °ÍÀÌ´Ù. ±×°ÍÀÌ °¡Àå È®½ÇÇϸ鼭 Á¤È®È÷ ¹®Á¦¸¦ ÇØ°áÇÒ ¼ö ÀÖ´Â ±æÀ̱⠶§¹®ÀÌ´Ù.

(26) ÆÐŶ ½º´ÏÆÛ

ÆÐŶ ½º´ÏÆÛ¸¦ ÀÌ¿ëÇÏ¿© ÇØÅ·À» ½ÃµµÇÏ´Â °ÍÀº ¾ÆÁÖ ÈçÇÑ °æ¿ìÀÇ ÇϳªÀÌ´Ù. ÇÊÀÚÀÇ °æ¿ìµµ ¸î¹ø Àΰ¡¸¦ ÆÐŶ ½º´ÏÆÛ¸¦ ÀÌ¿ëÇÑ ÇØÅ·À» °æÇèÇß´ø ±â¾ïÀÌ ÀÖ´Ù. ÆÐŶ ½º´ÏÆÛ »ç¿ëÀÚÀÇ °æ¿ì ¸ÕÀú, ¹Ì¸® È®º¸ÇØ ³õÀº id³ª Á¤º¸¸¦ ÀÌ¿ëÇÏ¿© ³»ºÎ ³×Æ®¿÷¿¡ Á¢±ÙÇÏ¿© ½º´ÏÇÎÀ» °É¾î¼­ ÆÐŶ °¡¿îµ¥ passwd,login,su µîÀÇ ´Ü¾îµéÀ» Ä³Ä¡ÇØ¼­ ±× ³»¿ëÀ» º¸°üÇÏ¿© µÐ´Ù. ±×·¸°Ô ÇØ¼­ ¶Ç´Ù¸¥ id¿Í ÆÐ½º¿öµå¸¦ ȹµæÇÏ°í ±×·±ÈÄ¿¡ ·çÆ®ÀÇ ÆÐ½º¿öµå±îÁö ¾ò¾î ³»´Â °ÍÀÌ´Ù. ssh³ª ´Ù¸¥ ¾ÏȣȭµÈ ÆÐ½º¿öµå¸¦ »ç¿ëÇϸé ÀÌ·± °ø°ÝÀ» ¹æÇØÇÒ ¼ö°¡ ÀÖ´Ù. pop °èÁ¤À» À§ÇÑ atop °°Àº °Íµµ ½º´ÏÆÛÀÇ °ø°ÝÀ» ¹æ¾îÇÒ ¼ö ÀÖ´Ù.

À§¿Í °°ÀÌ ´Ù¾çÇÑ ÇüÅÂÀÇ µ¥¸ó ¹ö±×,ÅøÀ» ÀÌ¿ëÇÑ ÇØÅ·ÀÇ ¿¹µéÀ» º¸¾Ò´Ù. ¾ÕÀÇ ¿¹¿¡¼­ ´Ù ´Ù·çÁö ¸øÇÑ ¶Ç´Ù¸¥ Çã¼úÇÔµéÀº ¾Æ¸¶µµ ÀÎÅͳݿ¡ ÀÚ½ÅÀÇ ¼­¹ö³ª Àåºñ°¡ ¿¬°áµÇ¾î ÀÖ´Ù¸é Ç׽à ¿­·Á ÀÖ´Ù°í ÇÒ ¼ö ÀÖÀ» °ÍÀÌ´Ù. ±×·¯Çϱ⿡ °ü¸®ÀÚ´Â ±× ¸ðµç °¡´É¼º¿¡ ¸¸ÀüÀ» ±âÇØ¾ß ÇÒ °ÍÀÌ´Ù. ±×°ÍÀÌ ¹Ù·Î Å©·¢À¸·ÎºÎÅÍ ±ÍÁßÇÑ ÀÚ»êÀ» º¸È£ÇÏ´Â ±æÀÏ °ÍÀÌ´Ù.

4. ¹æÈ­º® ±¸ÃàÇϱâ

±×·¸´Ù¸é ¹æÈ­º®Àº ¾î¶»°Ô ±¸ÃàÇØ¾ß ÇÒ °ÍÀΰ¡? ÀϹÝÀûÀ¸·Î ¹æÈ­º®Àº µÎ°¡ÁöÀÇ Çü½ÄÀ¸·Î ÀÌ·ç¾îÁø´Ù°í ÇÒ ¼ö ÀÖ´Ù. Çϳª´Â ±âº» °ÔÀÌÆ®¿þÀÌÀÎ ¶ó¿ìÅÍ¿¡¼­ ¹æÈ­º®À» »ç¿ëÇÏ´Â °ÍÀÌ ÀÖÀ¸¸ç ´Ù¸¥ Çϳª´Â ¶ó¿ìÅÍÀÇ ÈÄ´Ü¿¡ ¹°·Á¼­ ¿ÜºÎ¿¡¼­ µé¾î¿À´Â ÆÐŶÀ» ÇÊÅ͸µ ÇØÁÖ´Â °ÍÀÌ ÀÖ´Ù.

¹æÈ­º® ¼³Á¤Çϱâ

¹æÈ­º®À» ¼³Á¤ÇÏ´Â ¹æ¹ý¿¡´Â ±âº»ÀûÀ¸·Î µÎ °¡Áö ¹æÇâÀÌ ÀÖ´Ù. ù ¹øÂ°·Î °¡Àå ¾ÈÀüÇÑ ¼Â¾÷Àº ¡®ºÐ¸íÈ÷ Çã¿ëÇÏ´Â °Í ¿Ü¿¡´Â ¸ðµÎ °ÅºÎ¡¯ÇÏ´Â ¹æ¹ýÀÌ ÀÖ´Ù. ´ÜÁ¡Àº ¿Ö ¾ÈµÇ´Â ¼­ºñ½º°¡ ¸¹ÀºÁö ±Ã±ÝÇØÇÏ´Â »ç¿ëÀÚ°¡ ¸¹ÀÌ ÀÖÀ» ¼ö ÀÖ´Ù´Â °Í ÀÌ´Ù. ¹æÈ­º®ÀÌ Å¬¶óÀÌ¾ðÆ®´Â ¾ø°í ¼­¹ö¸¸ ÀÖ´Â ¾ÆÁÖ ÀÛÀº ¼­ºê³ÝÀ» º¸È£ÇÏ´Â °æ¿ì¿¡´Â ÀÌ·¯ÇÑ Á¢±Ù ¹æ¹ýÀÌ ÀûÀýÇÏ´Ù. ÀÌ·¯ÇÑ ¹æÈ­º®À» ¼Â¾÷ÇÏ´Â ½ºÅ©¸³Æ®´Â ¸®½ºÆ® 2¿¡¼­ º¼ ¼ö ÀÖ´Ù. ÀÌ·¯ÇÑ ÇüÅÂÀÇ ¹æÈ­º®Àº ¾î¶°ÇÑ ÇÁ·Î¼¼½º°¡ ½ÇÇàµÇ°í ÀÖ´ÂÁö¿¡ ´ëÇÏ¿© ¸¹Àº Áö½ÄÀ» ÇÊ¿ä·Î ÇÑ´Ù. Àû´çÇÑ ¹®¼­¸¦ °®ÃßÁö ¸øÇÏ¿´°Å³ª ÅõÀÚÇÒ ½Ã°£ÀÌ ÃæºÐÇÏÁö ¾Ê´Ù¸é ½ÃµµÇÏÁö ¸»¶ó.

¸®½ºÆ® 1 : ¡®ºÐ¸íÈ÷ Çã¿ëÇÏ´Â °Í ¿Ü¿¡´Â ¸ðµÎ °ÅºÎ¡¯ÇÏ´Â ¹æÈ­º®

# delete all rules

/sbin/ipfwadm ? ?

# set default policy deny

/sbin/ipfwadm ? ? deny

# allow telnets

/sbin/ipfwadm ? ? accept ? tcp ?0.0.0.0/0 \

1024:65535 ?your_server/32 23 ?

[ ....]

# last rule: match failed attempts so we can

# log the entries

/sbin/ipfwadm ? ? deny ? all ?0.0.0.0/0 ?0.0.0.0/0 ?

µÎ ¹øÂ°·Î ´õ ½¬¿î ¼Â¾÷Àº ¡®ºÐ¸íÈ÷ °ÅºÎÇÏ´Â °Í ¿Ü¿¡´Â ¸ðµÎ Çã¿ë¡¯ÇÏ´Â ¹æ¹ýÀÌ ÀÖ´Ù. À̰ÍÀº ³×Æ®¿öÅ©¸¦ ¿ÏÀüÈ÷ °³¹æÇÏÁö¸¸ À§ÇèÇϰųª ÇÊ¿ä ¾ø´Â ÇÁ·ÎÅäÄÝÀ» ÅëÁ¦ÇÑ´Ù. ¿¹¸¦ µé¾î, ¾î¶² isp´Â ¸ðµç ¡®cu-seeme¡¯ Æ®·¡ÇÈÀ» ¸·±â À§ÇØ ÀÌ·¯ÇÑ ±â´ÉÀ» »ç¿ëÇÑ´Ù. ¿Ö³ÄÇϸé, ÀÌ·¯ÇÑ Á¾·ùÀÇ Æ®·¡ÇÈÀº Àüü ³×Æ®¿öÅ©¸¦ ºÕºñ°Ô Çϱ⠶§¹®ÀÌ´Ù. ÀÌ·¯ÇÑ Á¾·ùÀÇ ¹æÈ­º®À» ¼¼ÆÃÇÏ´Â ¹æ¹ýÀº ¸®½ºÆ® 3¿¡¼­ º¼ ¼ö ÀÖ´Ù.

¸®½ºÆ® 2 : ¡®ºÐ¸íÈ÷ °ÅºÎÇÏ´Â °Í ¿Ü¿¡´Â ¸ðµÎ Çã¿ë¡¯ÇÏ´Â ¹æÈ­º®

# delete all rules

/sbin/ipfwadm ? ?

# set default policy accept

/sbin/ipfwadm ? ? accept

# unallow telnets

/sbin/ipfwadm ? ? deny ? tcp ?0.0.0.0/0 \

?your_server/32 23 ?

[ ...]

# silently allow the packet

¹«¾ùÀÌ ÀϾ°í ÀÖ´ÂÁö ¾î¶»°Ô °¨½ÃÇϴ°¡?

¾ÕÀÇ µÎ ¿¹Á¦¿¡¼­ º¸¾Æ ¿Â °Íó·³ ¸®´ª½º Ä¿³ÎÀÌ syslog ±â´ÉÀ» »ç¿ëÇØ¼­ ºÐ¸íÈ÷ °ÅºÎµÈ ÆÐŶ¿¡ ´ëÇÑ ·Î±×¸¦ ³²±âµµ·Ï Çϱâ À§ÇØ ¸ðµç °ÅºÎ ±ÔÄ¢Àº -o ¿É¼ÇÀ» °¡Áö°í ÀÖ´Ù. ±×·¯ÇÑ ·Î±×¿¡ ³²±âÁö ¾Ê°í °ÅºÎÇÏ¿´À» ¶§ ¾ðÁ¨°¡ ¿©·¯ºÐÀº ¹®Á¦°¡ ÆÐŶ ÇÊÅÍ¿¡ ÀÖÀ½À» ¾Ë±â Àü¿¡ ¸î ½Ã°£ µ¿¾È ¹ö±×¸¦ Àâ´Â Çê¼ö°í¸¦ ÇÒ Áöµµ ¸ð¸¥´Ù. ÀÌ ¸Þ½ÃÁö´Â /var/log/messages ³ª /var/log/syslog ÆÄÀÏ¿¡ ³ªÅ¸³ª´Âµ¥ syslog µ¥¸ó(/etc/syslog.conf)À» ¾î¶»°Ô ¼³Á¤Çϴ°¡¿¡ µû¶ó ´Þ·Á ÀÖ´Ù. ¿©·¯ºÐÀº Á¤±âÀûÀ¸·Î ¹æÈ­º® ½Ã½ºÅÛ¿¡ ÀÖ´Â ·Î±× ÆÄÀÏÀ» Ã¼Å©ÇØ¾ß ÇÑ´Ù. °ø°ÝÀ» ¹Þ¾Æ ¸Þ½ÃÁö°¡ ³ÑÃÄ ³ªµµ ·Î±×¸¦ ±â·ÏÇÒ ¼ö ÀÖ´Â ÃæºÐÇÑ µð½ºÅ© °ø°£ÀÌ ÀÖ´ÂÁö È®ÀÎÇϵµ·Ï ÇÑ´Ù. °¡´ÉÇÏ´Ù¸é ·Î±× ÆÄÀÏÀº µ¶¸³µÈ ÆÄƼ¼Ç¿¡ µÎµµ·Ï ÇÑ´Ù.

¿©±â¿¡´Â syslog µ¥¸óÀÌ °øÅëÀûÀÎ ¹®Á¦ÀÇ Áõ°Å¸¦ Àâ´Â ·Î±× ¿£Æ®¸®°¡ ÀÖ´Ù. ·Î±× ¿£Æ®¸®´Â ¸®´ª½º ½Ã½ºÅÛ°ú °°ÀÌ ¸®ºù½ºÅæÀÇ ¶ó¿ìÅÍ¿¡¼­ ¿Â °ÍÀÌ´Ù.

jan 2 15:17:57 unreachable.xtdnet.nl 15 deny: udp from

130.244.101.74.137 to 194.229.18.53.137

À̰ÍÀº ¾Æ¸¶µµ ¹æÈ­º®ÀÌ °ø°Ý¹ÞÀº ÈçÀû Áß¿¡¼­ °¡Àå ¸¹ÀÌ º¼ ¼ö ÀÖ´Â °ÍÀÌ´Ù.

137¹ø Æ÷Æ®´Â ms À©µµ ½Ã½ºÅÛÀÌ ÀÚ½ÅÀÇ ·ÎÄà ³×Æ®¿öÅ©¿¡¼­ À̸§À» ã´Â netbios ³×ÀÓ-¼­ºñ½º Æ÷Æ®ÀÌ´Ù. ±×·¯³ª, Á¤È®È÷ ¼³Á¤ÇÏÁö ¸øÇϸé À©µµ ½Ã½ºÅÛÀº netbios ¿äûÀ» ´Ù¸¥ ½Ã½ºÅÛÀÌ Çϵµ·Ï À̲ö´Ù. ÀÌ·¯ÇÑ ¿äûÀº ÇÑ »ç¿ëÀÚÀÇ telnet, ftp, www ¿äû¿¡¼­ ¹ß»ýµÉ ¼öµµ ÀÖ´Ù. ·Î±× ÆÄÀÏ¿¡ ÀÌ·¸°Ô Æò¹üÇÑ ¿À·ù·Î °¡µæ Â÷Áö ¾Êµµ·Ï Çϱâ À§Çؼ­ °ÅºÎ ±ÔÁ¤À» -o Ç÷¡±× ¾øÀÌ »ç¿ëÇØµµ ÁÁ´Ù. ¹æ¹®ÀÚ Áß Çϳª°¡ ·çÆ® ÆÄƼ¼ÇÀ» netbios ·Î±×·Î °¡µæ ä¿ì¸é ½ÇÁ¦ ·Î±×ÀÎÀº ¼öÇàÀ» ¸ØÃß°Ô µÇ°í º¸ÅëÀº ¼­¹ö¸¦ ´Ù¿î½ÃŰ°Ô µÈ´Ù.

jan 2 17:12:34 unreachable.xtdnet.nl 2 deny: udp from

10.0.3.1.61107 to 194.229.18.29.80 seq 1471cb0, ack 0x0, win 8192, syn

ÀÌ ¸Þ½ÃÁö´Â À߸ø ¼³Á¤µÈ È£½ºÆ®¿¡ ¿øÀÎÀÌ ÀÖ´Ù. 10.*.*.* ³»ÀÇ ip ¹øÈ£´Â lan¿¡¼­ »ç¿ëÇϵµ·Ï ¿¹¾àµÈ °ÍÀÌ´Ù. ¿ì¸®´Â ÀÌ È£½ºÆ®°¡ À߸ø ¼³Á¤µÈ ÀÎÅÍ³Ý masquerading È£½ºÆ®ÀÓÀ» ¾Ë¾Æ³Â´Ù. ±×°ÍÀº ½ÇÁ¦ ip ¹øÈ£ ´ë½Å masqueraded ³×Æ®¿öÅ©¿¡¼­ ¿Â ip ¹øÈ£¸¦ »ç¿ëÇϰí ÀÖ´Ù. À߸ø ¼³Á¤ÇÏ°Ô µÇ¸é ÆÐŶÀº ¹æÈ­º®ÀÌ Àâ¾Æ³»±â Àü¿¡ ´Ù¸¥ ¸¹Àº ¶ó¿ìÅ͸¦ ÅëÇÏ¿© ¶°µ¹¾Æ´Ù´Ï°Ô µÈ´Ù. ´ëÇü ¹éº» isp´Â ¾µ¸ð ¾ø´Â ÆÐŶÀ» °É·¯ ³»Áö ¾Ê´Âµ¥ °É·¯ ¹ö¸®°Ô µÇ¸é ÀÎÅÍ³Ý ¾î´À °÷¿¡¼­³ª ip ½ºÇªÇÎÀ» ½±°Ô ½Ãµµ ÇÒ ¼ö ÀÖ°Ô Çϱ⠶§¹®ÀÌ´Ù. ±×·¯ÇÑ ÆÐŶÀ» ÀüºÎ´Ù °É·¯ ¹ö¸®´Â isp¸¦ Àý´ë·Î ½Å·ÚÇÏÁö ¾Êµµ·Ï ÇÑ´Ù. ¿©·¯ºÐ ÀÚ½ÅÀÌ Á÷Á¢ ÇØ°áÇϵµ·Ï ÇÑ´Ù.

jan 20 06:57:33 unreachable.xtdnet.nl 14 deny: udp from

xx.yy.zz.aa.904 to 194.229.18.27.111

¹æÈ­º®ÀÌ °ø°Ý¹Þ¾Ò´Ù´Â °ÍÀ» À§¿¡¼­ Áõ¸íÇÒ ¼ö ÀÖ´Ù. ´©±º°¡°¡ rpc µ¥¸ó(udp Æ÷Æ®¹øÈ£ 111)¿¡ ¾î¶°ÇÑ µ¥¸óÀÌ ½ÇÇàµÇ°í ÀÖ´ÂÁö ¿äûÇÏ·Á°í ÇÑ´Ù. ÇØÄ¿°¡ ¸ðµç Æ÷Æ®¸¦ ½ºÄµÇÏ¿© ´ëºÎºÐÀÇ rpc ¼­ºñ½º¸¦ ã´õ¶óµµ ±×µé¿¡°Ô Á¤º¸¸¦ ¹Ù·Î ÁÖÁö ¾Ê´Â °ÍÀÌ ÁÁÀº ¾ÆÀ̵ð¾îÀÌ´Ù. ÀϹÝÀûÀ¸·Î ÀÎÅͳÝÀÇ ¼­¹ö¿Í ÁÖ°í¹Þ´Â rpc ¼­ºñ½º´Â °ÅÀÇ Çʿ䰡 ¾ø´Ù. ÇØÄ¿µéÀÌ ½ºÄµÇÏ´Â Æ÷Æ®´Â ½±°Ô ¹ß°ßµÈ´Ù. ¿Ö³ÄÇÏ¸é ¿©·¯ºÐÀÇ ·Î±× ÆÄÀÏ ¾È¿¡ ÀÖ´Â ÇÊÅÍ ±ÔÄ¢¿¡¼­ ÃßÀûÇÒ ¼ö ÀÖ´Â ¹æ¹ýÀ» ³²°Ü µÎ¾ú±â ¶§¹®ÀÌ´Ù.

jan 3 22:16:55 unreachable.xtdnet.nl 44 deny: tcp from

xx.yy.zz.aa.17231 to 194.229.18.27.23 seq 1473731d0, ack 0x0, win 49152,

syn

À̰ÍÀº ¹æÈ­º®ÀÌ °ø°Ý¹Þ¾Ò´Ù´Â ¶Ç´Ù¸¥ »ç½ÇÀ» º¸¿©ÁØ´Ù. rpc¼­¹ö¿¡¼­ À§¿Í °°Àº °ø°ÝÀ» ¹ÞÀº ÈÄ¿¡ ¿ì¸®´Â ÀÌ È£½ºÆ®¸¦ ¸·¾Æ µÎ¾ú´Ù. ÀÌ »çÀÌÆ®ÀÇ ¸ÞÀÏ °ü¸®ÀÚ¿¡°Ô ÀÀ´äÀÌ ¾ø±â ¶§¹®¿¡ ¿ì¸®´Â È£½ºÆ®ÀÇ ¸ðµç Æ÷Æ®¿¡ Á¢±ÙÀ» ±ÝÁöÇÏ¿´´Ù.

fab 4 09:10:17 polly.xtdnet.nl kernel: ip fw-in deny eth1 tcp

0.0.0.0:68 255.255.255.255.:67 l=328 s=0x00 i=4 f=0x0000 t=60

68¹ø Æ÷Æ®´Â bootp(dhpc) Æ÷Æ®ÀÌ´Ù. ¾î¶² ½Ã½ºÅÛÀº bootp ¼­¹ö¿¡ ¿äû ½ÅÈ£¸¦ ¸¶±¸ º¸³½´Ù. ÀÌ´Â À©µµ 95¸¦ ¿î¿µÇÏ´Â ÄÄÇ»Åͳª ¶Ç´Â snmp¸¦ Áö¿øÇϴµ¥ ip ¹øÈ£¸¦ ÇÊ¿ä·Î ÇÏ´Â Áö´ÉÇü Çãºê°¡ µÉ ¼öµµ ÀÖ´Ù(ÀÌ ¹®Á¦´Â ¿ì¸® Áß ÇÑ»ç¶÷ÀÌ ¸î ´Þ¿¡ °ÉÃÄ Ç®¾î³Â´Ù).

jan 27 09:47:00 masq.xtdnet.nl kernel: ip fw-in deny eth1 tcp

10.0.4.6:1992 204.162.96.21:80 l=48 s=0x00 l=2993 f=0x0000 t=63

ÀÌ ½Ã½ºÅÛÀº masquerading È£½ºÆ®¸¦ ¶ó¿ìÅÍ·Î Á¤ÀÇÇÏÁö ¾Ê¾Ò´Ù, µû¶ó¼­ Áö´ÉÀûÀ¸·Î µ¿ÀÛÇϵµ·Ï ½ÃµµÇÑ´Ù. ±×·¯³ª ¾ÆÁ÷µµ Á¤È®ÇÑ °ÔÀÌÆ®¿þÀ̸¦ ãÁö ¸øÇÑ´Ù.

jan 28 09:10:17 masq.xtdnet.nl kernel: ip fw-in deny eth1 tcp

194.229.18.2:3128 194.229.18.36.2049 l=44 s=0x00 l=23859

f=0x0000 t=63

¹«½¼ ÀÏÀÌ ÀϾ´ÂÁö ÀÌÇØÇÏ·Á¸é ¿ì¸®´Â tcp/ipÀÇ ³»ºÎÀûÀÎ µ¿ÀÛÀ» Á¶±Ý ÀÚ¼¼È÷ ¾Ë¾Æº¼ Çʿ䰡 ÀÖ´Ù. ¸ðµç ¿¬°áÀº Ãâ¹ßÁö ip, Ãâ¹ßÁö Æ÷Æ®, µµÂøÁö ip¿Í µµÂøÁö Æ÷Æ®°¡ ƯÁ¤ÇÏ°Ô °áÇÕµÊÀ» È®ÀÎÇÒ ¼ö ÀÖ´Ù. telnet, www ¶Ç´Â ij½Ã¿Í °°ÀÌ Àß ¾Ë·ÁÁø ¼­ºñ½º¸¦ ã´Â °ÍÀº ƯÁ¤ÇÑ Æ÷Æ®¸¦ »ç¿ëÇϱâ À§ÇÏ¿© ´Ã ÀÖ´Â ÀÏÀÌ´Ù. Àß ¾Ë·ÁÁø ¼­ºñ½º¿¡ ¿¬°áÀ» È®ÀÎÇϱâ À§Çؼ­ ·ÎÄà ½Ã½ºÅÛ¿¡ ÀÓÀÇ·Î Á¤ÇÑ Æ¯Á¤ÇÑ Æ÷Æ®°¡ ÇÒ´çµÈ´Ù. ÀÌ ½Ã½ºÅÛÀÌ ´Ù¸¥ ½Ã½ºÅÛ¿¡ Àß ¾Ë·ÁÁø ¼­ºñ½ºÀÇ Á¢¼ÓÀ» ½ÃµµÇÑ´Ù¸é tcp/ip ¿¬°áÀ» ¼­ºñ½º¿¡ µû¶ó ±¸ºÐÇÒ ¼ö ÀÖ¾î¾ß ÇÑ´Ù.

1024¹ø ¾Æ·¡ÀÇ Æ÷Æ® ¹øÈ£´Â ÀÓÀÇÀÇ Æ÷Æ®·Î Á¤ÀÇÇÒ ¼ö ¾ø´Âµ¥ ¿Ö³ÄÇϸé À̵éÀº ÀÚÁÖ ¾²À̰ųª Àß ¾Ë·ÁÁø ¼­ºñ½º¿¡ ¿¹¾àµÇ¾î Àֱ⠶§¹®ÀÌ´Ù.

ÀÌÁ¦, ·Î±× ¿£Æ®¸®¸¦ ´Ù½Ã »ìÆìº¸ÀÚ. 194.229.18.36 ÄÄÇ»ÅÍ´Â 194.229.18.2ÀÇ 3128¹ø Æ÷Æ®(ij½Ã ¼­¹ö)¿¡ ¿¬°áÇϰíÀÚ ¼Â¾÷Çϱ⸦ ¿øÇÑ´Ù. ¿©±â¼­ ¿î¿µÃ¼°è°¡ ÀÓÀǷΠƯÁ¤ÇÑ Æ÷Æ®¸¦ ¿äûÇϰí 2049¹ø Æ÷Æ®°¡ ÇÒ´çµÈ´Ù. ±× ´ÙÀ½ ij½Ã ¼­¹öÀÇ ¿¬°áÀ» ÃʱâÈ­ÇÑ´Ù. 194.228.18.36ÀÇ Æ÷Æ® 2049¹ø¿¡ ÆÐŶ¿¡ ´ë´äÀ» º¸³¿À¸·Î½á (194.229.18.2ÀÇ 3128¹ø Æ÷Æ®) ij½Ã ¼­¹ö°¡ ÀÀ´äÇÑ´Ù.

±×·¯³ª 194.229.18.36 ¿ª½Ã ¹æÈ­º® ±ÔÄ¢À» »ç¿ëÇϰí Àִµ¥ ÀÌ ±ÔÄ¢¿¡¼­´Â nfs¸¦ ¸·°í ÀÖ´Ù. ÀÌ´Â ´Ù¸¥ Àß ¾Ë·ÁÁø ¼­ºñ½º¿Í´Â ´Þ¸® 1024¹ø Æ÷Æ® ¾Æ·¡¿¡ À§Ä¡ÇÏÁö ¾Ê°í 2049¹ø Æ÷Æ®¸¦ »ç¿ëÇÑ´Ù. µû¶ó¼­ ij½Ã ¼­¹öÀÇ ÀÀ´äÀ» °É·¯ ¹ö¸®°Ô µÈ´Ù. ¿©·¯ºÐÀº À̰ÍÀÌ ³»ºÎ ³×Æ®¿öÅ©¿¡¼­ »ý±ä °ÍÀÎÁö ¾Æ´ÑÁö Á¢¼ÓÀ» ±¸ºÐÇÔÀ¸·Î½á ¹®Á¦¸¦ ÇØ°áÇÒ ¼ö ÀÖ´Ù. tcp Çì´õÀÇ syn¶Ç´Â ack Ç÷¡±×°¡ ¼³Á¤µÇ¾î ÀÖ´ÂÁö Á¡°ËÇØ º¸¸é ¿¬°á½ÃÀÛÁ¡À» °áÁ¤ÇÒ ¼ö ÀÖ´Ù. 2049¹ø Æ÷Æ®¿¡ Á¢¼ÓÇÏ´Â °ÍÀ» °É·¯ ³»´Â ¿Ã¹Ù¸¥ ¹æ¹ýÀº Á¢¼ÓÀ» Çã¿ëÇϸ鼭 ÃʱâÈ­ µÉ ¶§ ´ÙÀ½°ú °°ÀÌ ÇÑ´Ù.

/sbin/ipfwadm -l -i deny -s 0.0.0.0/0 \

-d 0.0.0.0/0 2049 -p tcp -y -weth0 -o

jan 2 11:22:58 unreachable.xtdnet.nl 38 deny: tcp from

193.78.240.90.8080 to 194.229.18.2.1642 seq f72da7c6, ack

0xed8fdea1, win 31744, syn ack

ºñ½ÁÇÑ »óȲÀÌ ¿©±â¿¡µµ ÀÖ´Ù. ¾î¶°ÇÑ ½Ã½ºÅÛ¿¡¼­ ÀÓÀÇ·Î ¼³Á¤ÇÑ Æ¯Á¤ Æ÷Æ®·Î 1642¹øÀ» ¼±ÅÃÇÏ¿´´Ù. ±×·¯³ª ¹æÈ­º®Àº 1642¹ø Æ÷Æ®°¡ ¾ÈÀüÇÏÁö ¸øÇÏ´Ù°í °áÁ¤ÇÏ°í ¸·¾Æ µÎ¾ú´Ù. livingstone postmaster ¼ÒÇÁÆ®¿þ¾î »ç´Â À¯´Ð½º È£½ºÆ®¿Í ¶ó¿ìÅÍ/¹æÈ­º® »çÀÌ¿¡ ÀÌ Æ÷Æ®¸¦ »ç¿ëÇϱ⠶§¹®¿¡ ¹Û¿¡¼­ ÀÌ Æ÷Æ®¿¡ Àü´ÞÇÏ´Â µ¥ÀÌÅ͸¦ °É·¯ ¹ö¸°´Ù. ÀϹÝÀûÀ¸·Î ³ôÀº ¹øÈ£ÀÇ Æ÷Æ®´Â ¸·Áö ¾Ê´Â °ÍÀÌ ¹Ù¶÷Á÷ ÇÏÁö¸¸ ¸·¾Æ µÎ¾ú´Ù¸é º¸È£°¡ ÇÊ¿äÇÑ ½Ã½ºÅÛÀÇ Æ÷Æ®¸¸ ¸·µµ·Ï ÇÑ´Ù. ¿¹¸¦ µé¾î, ¿©·¯ºÐÀÇ ¶ó¿ìÅÍ¿Í Å͹̳Π¼­¹ö¸¸ 1642¹ø Æ÷Æ®¸¦ ¸·°í À¯´Ð½º ¼­¹ö¸¦ À§Çؼ­´Â °³¹æµÈ »óÅ·Π³²°Ü µÐ´Ù.

´ÙÀ½, ¶ó¿ìÅÍ/¹æÈ­º®Àº ³»ºÎ ½Ã½ºÅÛÀÇ 1642¹ø Æ÷Æ®¿¡¼­ µµÂøÇÏ´Â ÆÐŶÀ» ¹Þ´Â´Ù. ÀÌ·¸°Ô µÇ¸é ¶ó¿ìÅÍÀÇ 1642¹ø Æ÷Æ®°¡ ¸·Çô ÀÖ´õ¶óµµ ÆÐŶÀ» ³×Æ®¿öÅ© ³»ºÎÀÇ ½Ã½ºÅÛ¿¡ Àü´ÞÇÒ ¼ö ÀÖ´Ù. ÀÛÀº °áÁ¡ÀÌ ÀÖ´Ù¸é ¶Ù¾î³­ ÇØÄ¿¿¡°Ô Á¤º¸¸¦ À¯ÃâÇÒ °¡´É¼ºÀÌ ÀÖ´Ù´Â °ÍÀÌ´Ù.

±×µéÀº ¾î´À °ÍÀÌ ¶ó¿ìÅÍ, ¹æÈ­º®, ¶ó¿ìÅÍ ¶Ç´Â ¹æÈ­º®°ú ±³½ÅÇÏ´Â À¯´Ð½º È£½ºÆ®ÀÎÁö ¾Ë±â À§ÇÏ¿© ¸ðµç ip ¹øÈ£¸¦ üũÇÒ ¼ö ÀÖ´Ù. ±×·¯³ª, ±×µéÀº ´Ù¸¥ ¹æ¹ýÀ» ÅëÇØ¼­µµ °°Àº Á¤º¸¸¦ ãÀ» ¼ö ÀÖÀ» °ÍÀÌ´Ù. ¿¹¸¦ µé¸é, traceroute ¸í·ÉÀº ¾î¶°ÇÑ ½Ã½ºÅÛÀÌ ÆÐŶ Àü¼Û¿¡ »ç¿ëµÇ°í ÀÖ´ÂÁö, ±×¸®°í ±×°ÍÀÌ ¶ó¿ìÅÍÀÎÁö, ¹æÈ­º®ÀÎÁö ¾Æ´Ï¸é µÎ °¡Áö ¿ªÇÒÀ» ¸ðµÎ ÇÏ´ÂÁö¿¡ ´ëÇÑ ¸¹Àº Á¤º¸¸¦ Á¦°øÇÑ´Ù. ¿©·¯ºÐÀº À§ÀÇ ¿¹Á¦¿¡¼­ ¼³¸íÇÑ -y ¿É¼ÇÀ» »ç¿ëÇÒ ¼ö ÀÖ´Ù. ¸ðµç ¶ó¿ìÅÍ/¹æÈ­º®ÀÌ ÀÌ·¯ÇÑ ¿É¼ÇÀ» Á¦°øÇÏ´Â °ÍÀº ¾Æ´Ï´Ù.

random notes

¿©·¯ºÐÀÇ ¹æÈ­º®À» °ø°ÝÇÏ´Â °ÍÀº ´ëºÎºÐ °£´ÜÇÑ Å½»ö ½ÅÈ£ÀÌ´Ù. ÀÌ´Â ¿©·¯ºÐÀÇ ¹®ÀÌ Àá°å´ÂÁö È®ÀÎÇÏ´Â ³¸¼± »ç¶÷°ú ºñ½ÁÇÏ´Ù. À§¿¡¼­ »ç¿ëÇÑ ¹æÈ­º® ±ÔÄ¢Àº ¸¹Àº ¹®Á¦¸¦ °ÞÁö ¾Ê°í À̵éÀ» ¹æ¾îÇÒ ¼ö ÀÖ¾î¾ß ÇÑ´Ù.

´©±º°¡°¡ ¹®ÀÌ Àá°Ü ÀÖ´Â °Í ÀÌ»óÀÇ »ç½ÇÀ» ¾Ë¾Æ³»·Á ÇÑ´Ù¸é ¾î¶»°Ô µÉ±î? ´©±º°¡°¡ Á¤¸» ´ç½Å¿¡°Ô °ü½ÉÀ» °¡Áö°í ÀÖ´Ù´Â °Ô ¹àÇôÁö¸é ¾î¶»°Ô µÉ±î? À̰ÍÀÇ Ã¹ ¹øÂ° ¡Èķδ ¹æÈ­º®¿¡¼­ È÷Æ®¼ö°¡ ³î¶ö ¸¸Å­ Áõ°¡ÇÑ´Ù´Â °ÍÀÌ´Ù. ¿©·¯ºÐÀÌ ÃëÇØ¾ß ÇÒ Ã¹ ¹øÂ° ´Ü°è´Â ½Ã½ºÅÛ °ü¸®ÀÚ¿¡°Ô ¿¬¶ôÇÏ´Â °ÍÀÌ´Ù. ¸¸¾à ¿©·¯ºÐÀÌ ÀÌ·¯ÇÑ ´Ü°è¿¡¼­ Á¤¸»·Î ¾Æ¹«µµ ¹ÏÀ» ¼ö ¾ø´Ù¸é ¸ÞÀÏ °ü¸®ÀÚ¿¡°Ô ¸ÞÀÏÀ» º¸³»Áö ¸»°í ±×µéÀÌ ¾Ë·ÁÁÖ´Â ±â¼ú Áö¿ø ÀüÈ­ ¹øÈ£µµ ¹ÏÁö ¸»¾Æ¾ß ÇÑ´Ù. ÀüÈ­¹øÈ£ºÎ¿¡¼­ °í°´Áö¿øºÎ ÀüÈ­¹øÈ£¸¦ ã¾Æ¶ó. ±× ȸ»ç¿Í ÅëÈ­°¡ µÇ¸é ¹«½¼ ÀÏÀÌ ÀϾ´ÂÁö °¡´ÉÇÑ ÇÑ ¸¹Àº Á¤º¸¸¦ Á¦°øÇϵµ·Ï ÇÑ´Ù. ¿©·¯ºÐÀÌ »çÀÌÆ®ÀÇ °ü¸®¸¦ ¹ÏÀ» ¼ö ÀÖ´Ù¸é °ø°ÝÀº ¸ØÃâ °ÍÀ̶ó°í È®½ÅÇÒ ¼ö ÀÖ´Ù. °¡²û ÀÌ·¯ÇÑ Á¢±ÙÀÌ ½ÇÆÐÇÏ´Â °æ¿ì°¡ ÀÖ´Ù. °£È¤ ȸ»çÀÇ °ü¸®ÀÚ°¡ °ø°Ý¿¡ °áŹÇϰųª »ç¿ëÀڵ鿡°Ô À¯´Ð½º ¼ÐÀ» Á¦°øÇÏ´Â isp·ÎºÎÅÍ °ø°Ý¹Þ´Â °æ¿ì°¡ ÀÖ´Ù. ÀÌ·¯ÇÑ isp´Â ±× ½Ã°£¿¡ ´ë´ÜÈ÷ ¸¹Àº »ç¶÷µéÀÌ ¿¬°áÀÌ µÇ¾î ÀÖÀ» °ÍÀ̹ǷΠ¹æÈ­º® ·Î±×ÀÇ ½Ã°£ ±â·Ï¿¡¼­ ¾Ç¿ëÇÏ´Â »ç¶÷À» ÃßÀûÇÑ´Ù´Â °ÍÀÌ °ÅÀÇ ºÒ°¡´ÉÇÏ´Ù.

5. ÃÖÀûÀÇ º¸¾È ÀÛ¾÷À» À§Çؼ­

tcp wrapperÀº È£±¸Àΰ¡?

tcp_wrapper´Â ¹«¾ùÀ̸ç, ¾î¶»°Ô µ¿ÀÛÇϴ°¡? tcp_wrapper´Â localhost·Î µé¾î¿À´Â systat, finger, ftp, telnet, rlogin, rsh, exec, tftp, talk µîÀÇ ¿©·¯ ÀÎÅÍ³Ý ¼­ºñ½º¿¡ ´ëÇÑ ¿äû(request)À» °üÂûÇϰí ÇÊÅ͸µ ÇÏ´Â ¿ªÇÒÀ» ÇÑ´Ù.

wrapperÀÇ ÀÛµ¿¿ø¸®

client program(telnet)-----server(in.telnetd)-----application(remote login)

client program(ftp)-----server(in.ftpd)-----application(file transfer)

À§¿Í °°ÀÌ telnetd³ª ftpd¿Í °°Àº ÇÁ·Î±×·¥ÀÌ telnet¶Ç´Â ftp¿Í °°Àº ÇÁ·ÎÅäÄÝ(protocol)ÀÇ ¿äûÀ» ¹Þ¾Æµé¿© ½ÇÁ¦ ÀÛ¾÷À» ¼öÇàÇÏ´Â °ÍÀÌ ÀÎÅÍ³Ý ¼­ºñ½ºÀÇ ¿ø¸®ÀÌ´Ù. tcp wrapper´Â client¿Í server»çÀÌ¿¡ À§Ä¡ÇÏ¸ç ¾î¶² ÇÁ·ÎÅäÄÝ¿¡ ´ëÇØ¼­ ¾î¶² È£½ºÆ®ÀÇ ¾î¶² »ç¿ëÀÚ°¡ ¿äûÀ» ÇÏ¿´´Â°¡¸¦ üũÇÏ¿© Çã¿ëµÇ´Â °æ¿ì¿¡´Â ½ÇÁ¦ server¸¦ ºÒ·¯ÁÖ°í, ±×·¸Áö ¸øÇÑ °æ¿ì¿¡´Â ÀÌ·± Á¤º¸µéÀ» log·Î ³²±ä´Ù. ÀÌ·± ÀÌÀ¯·Î ÇØ¼­ tcpd(½ÇÁ¦ wrapper)ÀÇ »ç¿ë¿¡´Â overhead°¡ °É¸®Áö ¾Ê´Â´Ù.

client(ftp)-----tcp wrapper(tcpd)-----server(in.ftpd)

°áÁ¡

tcpdÀÇ °æ¿ì¿¡´Â °¡Àå óÀ½¿¡ ¿À´Â clientÀÇ ¿äû¿¡¸¸ ¹ÝÀÀÇϱ⠶§¹®¿¡ ¿©·¯°¡Áö ¼­ºñ½º¸¦ ¿ä±¸ÇÏ´Â nfs¼­ºñ½º¿¡ ´ëÇØ¼­´Â »ç¿ëÀÌ ½±Áö ¾Ê´Ù. ÀÌ ¹®Á¦´Â °ü·ÃµÈ ¼­ºñ½º¿¡ °üÇÑ ¹®¼­¸¦ Âü°íÇϵµ·Ï ÇÑ´Ù.

½ÇÇà¹æ¹ý

½ÇÁ¦ ¹®¼­¿¡´Â ½¬¿î ¹æ¹ý°ú ¾î·Á¿î ¹æ¹ýÀ» ¸ðµÎ ¼³¸íÇÏ¿´À¸³ª, ¼³Ä¡¿Í °ü·ÃµÇ¾î¼­´Â ¸¶Âù°¡ÁöÀÎ °ü°è·Î ¾î·Æ´Ù´Â ¹æ¹ýÀ» ¼³¸íÇϰڴÙ. ÀüÇô ¾î·ÆÁö ¾Ê´Ù.

/etc/inetd.confÀÇ Ç׸ñ¿¡ ´ëÇØ¼­ ù¹øÂ° ÁÙÀ» µÎ¹øÂ° ÁÙ·Î ¹Ù²Ù´Â ¹æ½Äó·³ ¹Ù²Û´Ù.

tftp dgram udp wait root /usr/sbin/in.tftpd in.tftpd -s /tftpboot

tftp dgram udp wait root /usr/sbin/tcpd in.tftpd -s /tftpboot

ÀÚ ¿©±â¿¡ ÁÖ¸ñÇ϶ó. /usr/sbinó·³ ½ÇÁ¦ µ¥¸óÀÌ À§Ä¡ÇÑ µð·ºÅ丮´Â ´ÙÀ½ Àå¿¡¼­ real_daemon_dir·Î »ç¿ëµÇ°Ô µÈ´Ù. ÀÌ µð·ºÅ丮´Â inetd.conf¸¦ º¸°í ¾Ë ¼öµµ ÀÖ°í, which in.telnetd¶ó°í ÇØµµ ¾Ë ¼ö ÀÖ´Ù.

tcpdÀÇ ·Î±×´Â syslogd¿¡ ÀÇÇØ °áÁ¤µÈ´Ù. ½ÇÁ¦ log°¡ ³²´Â À§Ä¡´Â /etc/syslog.conf¸¦ Âü°íÇ϶ó. ¸Þ½ÃÁö´Â logÆÄÀÏ¿¡ Ãß°¡µÇ°í, console·Î º¸³»Áö°Å³ª ¾Æ´Ï¸é @loghost·Î mailÇüÅ·Πº¸³»Áø´Ù.

Âü°í¹®¼­

readme file ftp.win.tue.nl:/pub/security/tcp_wrapper.ps.z (postscript)

ftp.win.tue.nl:/pub/security/tcp_wrapper.txt.z (flat text)

¹ö±×

irix´Â ¸¹Àº ¹ö±×¸¦ °¡Áö°í ÀÖÀ¸¸ç ¿À·¡µÈ convexos¶Ç´Â sunos5¿¡´Â Á¶±×¸¸ ¹ö±×°¡ ÀÖ´Ù.

¼³Ä¡¿¡ ÇÊ¿äÇÑ ÆÄÀϵé

tcp_wrappers-7.6.tar.gz

hosts.allow

hosts.deny

rfinger

¾ÐÃà ÇØÁ¦

´ÙÀ½ ¸í·ÉÀ» ÀÌ¿ëÇÏ¿© ¾ÐÃàÀ» ÇØÁ¦ÇÑ´Ù.

gzip -cd tcp_wrappers-7.6.tar.gz | tar xvf -

ÄÄÆÄÀÏ

¿ì¼± make ¸¸ Çϸé,

% make

usage: edit the real_daemon_dir definition in the makefile then:

make sys-type

if you are in a hurry you can try instead:

make real_daemon_dir=/foo/bar sys-type

and for a version with language extensions enabled:

make real_daemon_dir=/foo/bar style=-dprocess_options sys-type

this makefile knows about the following sys-types:

generic (most bsd-ish systems with sys5 compatibility)

386bsd aix alpha apollo bsdos convex-ultranet dell-gcc dgux dgux543

dynix epix esix freebsd hpux irix4 irix5 irix6 isc iunix

linux machten mips(untested) ncrsvr4 netbsd next osf power_unix_211

ptx-2.x ptx-generic pyramid sco sco-nis sco-od2 sco-os5 sinix sunos4

sunos40 sunos5 sysv4 tandem ultrix unicos7 unicos8 unixware1 unixware2

uts215 uxp

if none of these match your environment, edit the system

dependencies sections in the makefile and do a 'make other'.

ÀÌ·¸°Ô ³ª¿À°í, ¿©±â¼­ ¿ì¼± real_daemon_dir °ú sys-typeÀ» ¾Ë ¼ö ÀÖ´Ù.

real_daemon_dirÀº /etc/inetd.conf ÆÄÀÏ ³»¿¡¼­ inetdµéÀÌ Á¸ÀçÇÏ´Â µð·ºÅ丮¸¦ ãÀ½À¸·Î¼­ ¾Ë ¼ö ÀÖ´Ù. ´ÙÀ½Àº /etc/inetd.conf ÆÄÀÏÀÇ ÀϺÎÀÌ´Ù.

ftp stream tcp nowait root /usr/sbin/ftpd

telnet stream tcp nowait root /usr/sbin/telnetd

shell stream tcp nowait root /usr/sbin/rshd

login stream tcp nowait root /usr/sbin/rlogind

exec stream tcp nowait root /usr/sbin/rexecd

ÀÌ ºÎºÐ¿¡¼­ daemonµéÀÌ /usr/sbin¿¡ ÀÖÀ½À» ¾Ë ¼ö ÀÖ´Ù. µû¶ó¼­ real_daemon_dirÀº /usr/sbinÀÌ´Ù.

sys-typeÀº ´ÙÀ½ ¸í·ÉÀ¸·Î È®ÀÎÇÑ´Ù.

% uname -a

osf1 foo.snu.ac.kr v4.0 564 alpha

ÀÌ ¿¹¿¡¼­ sys-type Àº osfÀÓÀ» È®ÀÎÇÒ ¼ö ÀÖ´Ù.

ÀÌÁ¦´Â make ¸í·ÉÀ¸·Î ÄÄÆÄÀÏÀ» ÇÑ´Ù.

% make real_daemon_dir=/usr/sbin osf

ÀÌ ¶§, ¿¡·¯ ¶Ç´Â °æ°í ¸Þ¼¼Áö¸¦ ¹Ýµå½Ã È®ÀÎÇϵµ·Ï ÇÑ´Ù.

½ÇÇà ÆÄÀÏÀÇ º¹»ç

ÄÄÆÄÀÏÀÌ ´Ù µÇ¾úÀ¸¸é tcpd, tcpdmatch, tcpdchk, safe_finger, try-from ÆÄÀÏÀÌ »ý¼ºµÇ¾úÀ» °ÍÀÌ´Ù. tcpd ¸¦ real_daemon_dir¿¡ º¹»çÇÑ´Ù. ³ª¸ÓÁö ½ÇÇàÆÄÀÏÀº /usr/local/bin°ú °°Àº Àû´çÇÑ °÷¿¡ º¹»çÇÑ´Ù.

# cp tcpd /usr/sbin

# cp tcpdmatch tcpdchk safe_finger try-from /usr/local/bin

hosts.allow, hosts.denyÀÇ ¼öÁ¤°ú º¹»ç

ÀÌÁ¦´Â °¢ ¼­ºñ½º º°·Î ¼­ºñ½º¸¦ ¿­°í ´ÝÀ» È£½ºÆ®¸¦ Á¤ÇØÁØ´Ù. ÀÌ´Â hosts.allow¿Í hosts.deny¸¦ ¼öÁ¤ÇÏ¸é µÈ´Ù. ÆÄÀÏÀ» ¼öÁ¤ÇÏ´Â ¹æ¹ýÀº ´ÙÀ½°ú°°´Ù.

% vi hosts.allow

/etc/inetd.conf¿¡¼­ ÇöÀç ½Ã½ºÅÛ¿¡¼­ ÀÛµ¿ ÁßÀÎ ÀÎÅÍ³Ý ¼­ºñ½º¸¦ È®ÀÎÇÏ°í ±× µ¥¸óµéÀÇ À̸§À» È®ÀÎÇÑ´Ù. ½Ã½ºÅÛ¿¡¼­ »ç¿ëÇÏÁö ¾ÊÀº µ¥¸óÀÌ ÀÖÀ» °æ¿ì´Â hosts.allow ÆÄÀÏ¿¡¼­ # ¸¦ ºÙÀδÙ.±×¸®°í, °¢ µ¥¸óÀÇ À̸§À» /etc/inetd.conf¿¡¼­ È®ÀÎÇÏ¿© Á¤È®È÷ ¹Ù²Ù¾î ÁØ´Ù. ´ÙÀ½Àº ¼­ºñ½ºº°·Î deny ÇÒ È£½ºÆ®¸¦ ÁöÁ¤ÇÑ´Ù. ±âº»ÀûÀ¸·Î all ·Î¼­ allowÇϰí, denyÇÒ È£½ºÆ®¸¦ expect ´ÙÀ½¿¡ ÁöÁ¤ÇÑ´Ù. ÀÌ ¶§, dns nameº¸´Ù´Â ip address¸¦ »ç¿ëÇϱ⸦ ±ÇÀåÇÑ´Ù.

¿¹)

rlogind: all \

except 147.46.67. \

147.46.10.10 \

147.46.82.242 \

147.46.80.220

hosts.allowÀÇ ¼öÁ¤ÀÌ ³¡³ª¸é, hosts.deny¸¦ ¼öÁ¤Çϴµ¥, hosts.allow¿¡¼­ except¸¦ ÅëÇØ ÁöÁ¤ÇßÀ¸¹Ç·Î ´ÙÀ½°ú °°ÀÌ ¼³Á¤ÇÑ´Ù.

% cat hosts.deny

all: all : (/usr/local/etc/rfinger %h %a %d >> /var/log/rfingerlog)¦

hosts.allow¿Í hosts.denyÀÇ ¼öÁ¤ÀÌ ³¡³µÀ¸¸é /etc µð·ºÅ丮¿¡ º¹»ç¸¦ ÇÑ´Ù.

% cp hosts.allow /etc

% cp hosts.deny /etc

rfingerÀÇ º¹»ç

rfinger´Â deny µÈ host Á¢±ÙÀ» logÇϱâ À§ÇÑ shell scriptÀÌ´Ù. ÆÄÀÏÀº /usr/local/etc¿¡ º¹»çÇϵµ·ÏÇÑ´Ù. ±×¸®°í ½ÇÇà°¡´ÉÇϵµ·Ï ±ÇÇÑÀ» ¼öÁ¤ ÇÑ´Ù.

% cp rfinger /usr/local/etc

% chmod a+x /usr/local/etc/rfinger

inetd.confÀÇ ¼öÁ¤

ÀÌÁ¦´Â inetd.conf ¸¦ ¼öÁ¤ÇÒ Â÷·ÊÀÌ´Ù.

#############

# tcp wrapper

#

#ftp stream tcp nowait root /usr/sbin/ftpd ftpd

#telnet stream tcp nowait root /usr/sbin/telnetd telnetd

#shell stream tcp nowait root /usr/sbin/rshd rshd

#login stream tcp nowait root /usr/sbin/rlogind rlogind

#exec stream tcp nowait root /usr/sbin/rexecd rexecd

#

ftp stream tcp nowait root /usr/sbin/tcpd /usr/sbin/ftpd

telnet stream tcp nowait root /usr/sbin/tcpd /usr/sbin/telnetd

shell stream tcp nowait root /usr/sbin/tcpd /usr/sbin/rshd

login stream tcp nowait root /usr/sbin/tcpd /usr/sbin/rlogind

exec stream tcp nowait root /usr/sbin/tcpd /usr/sbin/rexecd

wrapper¸¦ ÅëÇÑ ¼­ºñ½º¸¸À» ¼öÁ¤Çϴµ¥, ¿ø·¡ÀÇ ¼³Á¤À» ±×´ë·Î º¹»çÇÑ ÈÄ, #±âÈ£¸¦ ºÙÀ̰í /usr/sbin/ftpd µîÀÇ °¢ ¼­ºñ½º¸¦ /usr/sbin/tcpd - µð·ºÅ丮´Â ÇØ´ç µð·ºÅ丮ÀÓ - ·Î ¹Ù²Û´Ù. ±×¸®°í, ¸¶Áö¸·¿¡ ±× Àü¿¡ ÀÖ´ø ¼­ºñ½º¸¦ ±âÀÔÇÑ´Ù. À§ÀÇ ¿¹¸¦ Àß Âü°íÇÏÀÚ.

tcpdchk¸¦ ÀÌ¿ëÇÑ configuration È®ÀÎ

¿©±â±îÁö°¡ wrapperÀÇ ¼³Á¤Àº ³¡³µ´Ù. ÀÌÁ¦´Â tcpdchk¸¦ ÅëÇØ¼­ Á¦´ë·Î ¼³Á¤ÀÌ µÇ¾ú´ÂÁö¸¦ È®ÀÎÇÑ´Ù.

% tcpdchk

ÀÌ ¶§ ¿¡·¯°¡ ³ª¿À¸é ÇØ´ç configuration¸¦ ¼öÁ¤ÇÑ´Ù.

tcpdmatch¸¦ ÀÌ¿ëÇÑ configuration È®ÀÎ

¼³Á¤ÀÌ Á¦´ë·Î µÇ¾úÀ¸¸é tcpdmatch ¸¦ ÅëÇØ ¼³Á¤ÇÑ È£½ºÆ®¿¡¼­ µé¾î ¿ÔÀ» ¶§ deny µÇ´ÂÁö allow µÇ´ÂÁö ¿©ºÎ¸¦ È®ÀÎÇÑ´Ù.

usage: tcpdmatch [-d] [-i inet_conf] daemon[@host] [user@]host

-d: use allow/deny files in current directory

-i: location of inetd.conf file

% tcpdmatch ftpd yahanbi

warning: yahanbi: hostname alias

warning: (official name: yahanbi.snu.ac.kr)

client: hostname yahanbi.snu.ac.kr

client: address 147.46.102.22

server: process ftpd

matched: /etc/hosts.allow line 39

access: granted

%tcpdmatch telnetd plaza.snu.ac.kr

client: hostname plaza.snu.ac.kr

client: address 147.46.80.220

server: process telnetd

matched: /etc/hosts.deny line 17

command: (/usr/local/etc/rfinger plaza.snu.ac.kr 147.46.80.220 telnetd >> /var/log/rfingerlog)

access: denied

inetdÀÇ Àç½Ãµ¿

¿©±â±îÁö ÀÌ»óÀÌ ¾øÀÌ µÇ¾úÀ¸¸é ÀÌÁ¦´Â inetd¸¦ Àç½Ãµ¿ÇÏ¿© wrapper°¡ ÀÛµ¿Çϵµ·Ï ÇÑ´Ù. ¿ì¼± ps ¸í·ÉÀ¸·Î pid¸¦ ã¾Æ³½´Ù.

% ps -u root | grep inetd

388 ?? i 0:08.56 /usr/sbin/inetd

±×¸®°í hup¸¦ ÅëÇØ ÀÛµ¿½ÃŲ´Ù.

% kill -hup 388

¼³Ä¡ È®ÀÎ

ccs.sogang.ac.kr µî denyµÈ È£½ºÆ®¿¡¼­ Á¢±Ù ÇßÀ» ¶§, deny°¡ µÇ°í, log°¡ /var/log/rfingerlog ¿¡ ³²¾Æ ÀÖ´ÂÁö È®ÀÎÇÑ´Ù. ¿ì¼±, ¿ì¸®´Â Åڳݿ¡¼­ ó·³ Àü¼Û Á¦¾î ÇÁ·ÎÅäÄÝ(tcp)ÀÇ ¿¬°áÀÌ ¾î¶»°Ô ÀÌ·ç¾îÁö´ÂÁö ¾Ë Çʿ䰡 ÀÖ´Ù. tcp ³×Æ®¿öÅ© ¿¬°áÀº ¡®Å¬¶óÀ̾ðÆ®/¼­¹ö¡¯ ¸ðµ¨¿¡ ±â¹ÝÀ» µÐ´Ù. ÅÚ³Ý ÇÁ·Î±×·¥Àº ¼­¹ö ÇÁ·Î±×·¥ ¶Ç´Â telnetd ¶Ç´Â in.teln etd(½Ã½ºÅÛ ¼³Á¤¿¡ µû¶ó ´Ù¸£´Ù)¶ó ºÒ¸®´Â µ¥¸ó°ú Åë½ÅÇÏ´Â ÇϳªÀÇ Å¬¶óÀ̾ðÆ®ÀÌ´Ù. ´ëºÎºÐÀÇ ¸®´ª½º ¹èÆ÷º»µéÀº ³×Æ®¿öÅ© µ¥¸óÀ¸·Î /usr/sbin µð·ºÅ͸®¿¡¼­ in.[serv ice]d¶ó´Â À̸§À» »ç¿ëÇϱ⠶§¹®¿¡ ÇÊÀÚ´Â ¿©±â¼­ºÎÅÍ À̸§À» Á¤ÇÏ´Â °ü·Ê¸¦ µû¸¦ °ÍÀÌ´Ù.

¸ðµç ³×Æ®¿öÅ© ¼­ºñ½º¿¡ ´ëÇÑ ¿äûÀº °¡Àå ¸ÕÀú ÀÎÅÍ³Ý µ¥¸ó, inetd ÅëÇÏ¿© ÀÌ·ç¾îÁø´Ù(¼¼»ó»ìÀ̰¡ ´Ù ±×·¸Áö¸¸ ÀÌ ±ÔÄ¢¿¡µµ ¿¹¿Ü°¡ ÀÖ´Ù. µÚ¿¡¼­ ¾Ë¾Æº¸°Ú´Ù). µ¥¸óÀº ³×Æ®¿öÅ© ¿¬°á ¿äû¿¡ ´ëÇØ¼­ ¾î¶»°Ô ÀÀ´äÇÒ °ÍÀÎÁö °áÁ¤Çϱâ À§ÇÏ¿© µÎ°³ÀÇ ¼³Á¤ ÆÄÀÏÀ» »ç¿ëÇÑ´Ù. /etc/servi ces¿¡´Â °¢°¢ÀÇ ¼­ºñ½º À̸§°ú ±× Æ÷Æ® ¹øÈ£°¡ ³ª¿­µÇ¾î ÀÖ´Ù. /etc/inetd.conf¿¡´Â ¼­ºñ½º À̸§, ÇÁ·Î±×·¥ À̸§, ¼­ºñ½º¸¦ Á¦°øÇÏ´Â µ¥¸óÀÇ À̸§ÀÌ ³ª¿Í ÀÖ´Ù. ¸®½ºÆ® 1°ú 2´Â /etc/services¿Í /etc/inetd.conf ÆÄÀÏÀÇ ÀϺÎÀÌ´Ù. ³» ½Ã½ºÅÛÀÇ ÀÎÅÍ³Ý ÁÖ¼Ò¸¦ my.linux-box.comÀÌ¶ó °¡Á¤ÇÏ°í ´ÙÀ½°ú °°ÀÌ ÀÔ·ÂÇÏ¿´´Ù¸é,

telnet your.machine.com

ÅÚ³Ý Å¬¶óÀÌ¾ðÆ®´Â Ãâ¹ßÁöÀÇ ÀÎÅÍ³Ý ÁÖ¼Ò my.linux-box.com°ú µµÂøÁöÀÇ ÀÎÅÍ³Ý ÁÖ¼Ò your.machine.com¿Í Æ÷Æ® ¹øÈ£¸¦ ´ãÀº ÆÐŶÀ»(´Ù¸¥ °Íµé°ú ÇÔ²²) º¸³½´Ù. ÅÚ³ÝÀÇ Æ÷Æ® ¹øÈ£´Â 23¹øÀÌ´Ù. inetd´Â /etc/services¿¡¼­ 23¹ø Æ÷Æ®¸¦ ã°í ¼­ºñ½º À̸§ÀÌ ÅÚ³ÝÀ̶ó´Â °ÍÀ» ¾Ë°Ô µÈ´Ù.

±× ´ÙÀ½ ÅÚ³ÝÀ» /etc/inetd.conf¿¡¼­ ã°í in.teln etd¶ó ºÒ¸®´Â µ¥¸óÀ» ½ÇÇàÇÒ Çʿ䰡 ÀÖ´ÂÁö ¾Ë¾Æº»´Ù. ¸®½ºÆ® 2ÀÇ °¡Àå ¿À¸¥ÂÊ Ä÷³¿¡¼­ º¼ ¼ö ÀÖ´Ù. inetd´Â in.telnetd¸¦ Æ÷Æ® 23À» ¿¬°áÇϱâ À§ÇÏ¿© in.telnetd¸¦ ½ÇÇàÇÑ´Ù. ±× ´ÙÀ½ ¶Ç Á¢¼ÓÇÏ´Â ¿ä±¸°¡ ÀÖ´ÂÁö °¨½ÃÇÏ´Â ÀÏÀ» ÇÑ´Ù. in.telnetd°¡ Ŭ¶óÀÌ¾ðÆ®¿¡ ÀÀ´äÇÏ¸é »ç¿ëÀÚ À̸§°ú ÆÐ½º¿öµå¸¦ ¹¯°í ÅÚ³Ý ¼¼¼ÇÀ» ½ÃÀÛÇÑ´Ù.

¸¸¾à ¿©·¯ºÐÀÇ ½Ã½ºÅÛÀ¸·Î ´©±¸µµ ÅÚ³Ý Á¢¼ÓÀ» ÇÏÁö ¸øÇϵµ·Ï ÇÏ°í ½Í´Ù¸é ¾î¶»°Ô ÇÒ±î? Á¢¼ÓÀ» ¿äûÇÏ´Â Ãâ¹ßÁö ÁÖ¼Ò¸¦ º¸°Å³ª ¶Ç´Â ½Ã½ºÅÛÀ̳ª µµ¸ÞÀÎ ¹ÛÀÇ ¸ðµç ÁÖ¼Ò¸¦ °ÅºÎÇϱâ À§Çؼ­ in.telnetdÀÇ Äڵ带 ¼öÁ¤ÇÒ ¼ö ÀÖ´Ù.

¸¸¾à ÅÚ³ÝÀÌ À¯ÀÏÇÑ ³×Æ®¿öÅ© ¼­ºñ½º¶ó¸é ÀÌ ¹®Á¦´Â ¹«Ã´ ½±Áö¸¸ ¼ö¸¹Àº ³×Æ®¿öÅ© ¼­ºñ½º°¡ Á¸ÀçÇϱ⠶§¹®¿¡ ½Ã½ºÅÛ¿¡¼­ ¸ðµç µ¥¸ó¸¶´Ù Á¢±ÙÀ» Á¦ÇÑÇϵµ·Ï ¼öÁ¤ÇÏ´Â °ÍÀº ²ûÁ÷ÇÑ ÀÏÀÌ´Ù.

¸®½ºÆ® 1£º/etc/servicesÀÇ ¿¹

ftp-data 20/tcp

ftp 21/tcp

telnet 23/tcp

smtp 25/tcp mail

exec 512/tcp # bsd rexecd(8)

login 513/tcp # bsd rlogind(8)

shell 514/tcp cmd # bsd rshd(8)

¸®½ºÆ® 2£º/etc/inetd.confÀÇ ¿¹

ftp stream tcp nowait root in.ftpd

telnet stream tcp nowait root in.telnetd

#smtp stream tcp nowait root smtpd

shell stream tcp nowait root in.rshd

login stream tcp nowait root in.rlogind

exec stream tcp nowait root in.rexecd

¿©±â¼­ tcp_wrappers°¡ ÀÌ·¯ÇÑ ²ûÁ÷ÇÑ ÀÏ¿¡¼­ ±¸ÇØ ÁÙ °ÍÀÌ´Ù. wrappers ÇÁ·Î±×·¥Àº inetd¿Í in.telnetd, in.ftpd¿Í °°Àº ³×Æ®¿öÅ© µ¥¸ó »çÀÌ¿¡ ÀÖ´Â ÀÛÀº µ¥¸óÀÌ´Ù. ¸ðµç tcp Á¢¼ÓÀº ½ÃÀÛµÉ ¶§ ±âº»ÀûÀ¸·Î °°Àº ¹æ½ÄÀ» µû¸£°Ô µÇ¹Ç·Î wrappers ÇÁ·Î±×·¥Àº °ÅÀÇ ¸ðµç tcp ³×Æ®¿öÅ© ¼­ºñ½º¿¡ ´ëÇÑ Á¢±ÙÀ» Á¦¾îÇϴµ¥ »ç¿ëÇÒ ¼ö ÀÖ´Ù.

wrappers°¡ ¼³Ä¡µÇ¸é ÀÎÅÍ³Ý µ¥¸óÀº º¸Åë ³×Æ®¿öÅ© µ¥¸ó ´ë½Å wrappers¸¦ ½ÇÇàÇϱâ À§ÇÏ¿© ´Ù½Ã ¼³Á¤µÈ´Ù. wrappers´Â Á¢¼ÓµÈ Ãâ¹ßÁö ÁÖ¼Ò¿Í ¼­ºñ½º¸¦ üũÇϰí Á¢¼ÓÀ» Çã°¡ÇÒ °ÍÀÎÁö °áÁ¤ÇÑ´Ù. ¸¸¾à your.machine.comÀÌ ³»°¡ º¸³½ ÅÚ³Ý ¼¼¼ÇÀÇ ¿äûÀ» °ÅºÎÇÑ´Ù¸é Á¢¼ÓÀ» ²÷´Â ±æ¹Û¿¡ ¾ø´Ù. Á¢¼ÓÀÌ Çã¿ëµÇ¸é ¸ðµç °ÍÀº Á¤»óÀûÀ¸·Î 󸮵Ǵµ¥ wrappers´Â ½ÇÁ¦·Î ³» ÅÚ³Ý Å¬¶óÀÌ¾ðÆ®¿¡¼­¸¸ ÀÛµ¿ÇÏ´Â °ÍÀº ¾Æ´Ï´Ù. ¾î´À ÂÊ¿¡³ª wrappers´Â ½Ã½ºÅÛ¿¡ ¼º°øÀûÀ¸·Î ¿¬°áµÇ¾ú´ÂÁö ¾Ë ¼ö ÀÖµµ·Ï Çϱâ À§Çؼ­ ½Ã½ºÅÛ ·Î±×¿¡ ±â·ÏÇÑ´Ù.

º¸¾È°ü·Ã °¢Á¾ tool

1. ÀüÀÚ¿ìÆí - pgp:Åë½Å»ó¿¡¼­ ÀüÀÚ¸ÞÀÏÀ» º¸È£ÇϱâÀ§ÇÑ ¾Ïȣȭ Åø·Î °¡Àå ¸¹À̾²À̰íÀÖ´Ù.

2. ¹æÈ­º® - tcp-wrapperÁ¢±Ù Á¦¾î ¸®½ºÆ®¸¦ ÅëÇÏ¿© °ü¸®ÀÚ°¡ ³×Æ®¿öÅ© Á¢±ÙÀ» ÇÊÅ͸µÇÏ°í ±â·ÏÇÏ´Â À¯´Ð½º ±â¹ÝÀÇ ¹æÈ­º® Åø.

3. xinetd - tcp-wrapper¿Í ºñ½ÁÇÑ ±â´ÉÀ» Á¦°øÇÏ´Â º¸´Ù º¸¾ÈÀÌ °­È­µÈ inetd ¹öÀüÀ¸·Î ½Ã°£¿¡ µû¶ó ¼­ºñ½º¸¦ Á¦ÇÑÇÏ´Â ±â´Éµµ °¡Áö°í ÀÖ´Ù.

4. drawbridge - pc ±â¹ÝÀÇ ÆÐŶ ÇÊÅ͸µ Åø

5. tis firewall toolkit - ÀÎÅÍ³Ý ¹æÈ­º® ±¸Ãà¿ë °ø°³ ¼ÒÇÁÆ®¿þ¾î

6. tcpr - ¹æÈ­º®À» ÅëÇÏ¿© ³ª°¡´Â telnet°ú ftp¿¡ Åõ¸í¼º ÀÖ´Â ÇÁ¶ô½Ã ±â´ÉÀ» Á¦°øÇÏ´Â ÆÞ·Î ÀÛ¼ºµÈ Åø

7. º¸¾È½ºÄ³³Ê ħÀÔŽÁö

satan(system administrator tool for analyzing networks)

º¸¾È ½ºÄ³³Ê·Î ³×Æ®¿öÅ©¸¦ ÅëÇÏ¿© ½Ã½ºÅÛÀÇ Ãë¾àÁ¡À» Á¶»çÇÏ¿© ºÐ¼®ÇÑ´Ù.

8. iss - ¶Ç ´Ù¸¥ º¸¾È ½ºÄ³³Ê·Î ³×Æ®¿öÅ©¸¦ ÅëÇÏ¿© ½Ã½ºÅÛÀÇ Ãë¾àÁ¡À» Á¶»çÇÏ¿© ºÐ¼®ÇÑ´Ù.

10. courtney - ³×Æ®¿öÅ©¸¦ °¨½ÃÇÏ¿© »çź °ø°Ý½Ãµµ¸¦ ŽÁöÇÏ´Â Åø·Î tcpdump·ÎºÎÅÍ ÀÔ·ÂÀ» ¹Þ¾Æ ÁÖ¾îÁø ½Ã°£³»¿¡ ƯÁ¤ È£½ºÆ® ·ÎºÎÅÍÀÇ »õ·Î¿î ¼­ºñ½º ¿äû ¼ö¸¦ °¨½ÃÇÑ´Ù.

11. gabriel - ¶Ç ´Ù¸¥ »çź °ø°Ý °¨Áö Åø

12. ³×Æ®¿öÅ© argus - ip °èÃþ¿¡¼­ µ¥ÀÌÅͱ׷¥À» Àâ¾Æ ±â·ÏÇÏ´Â Åø·Î »ç¿ëÀÚ°¡ Á¤ÀÇÇÑ »ç°ÇÀ» ŽÁöÇÏ°í º¸°íÇÒ ¼ö µµ ÀÖ´Ù.

13. arpwatch - Çϵå¿þ¾î ÀÌÅÍ³Ý ÁÖ¼Ò¿Í ip ÁÖ¼Ò ½ÖÀ» ¸ð´ÏÅ͸µÇÏ´Â Åø·Î ·ÎÄà ³×Æ®¿öÅ©¿¡¼­ À§Àå ip¸¦ ŽÁöÇÒ ¼ö ÀÖ´Ù.

14. nfswatch - ·ÎÄà ³×Æ®¿öÅ©ÀÇ ¸ðµç nfs ¼­¹ö·ÎÀÇ Å¬¶óÀÌ¾ðÆ® ¿äûÀ» ¸ð´ÏÅ͸µÇÏ´ÂÅø.

15. netlog - ¸ðµç tcp¿Í udp °ü·Ã ÆÐŶÀ» ±â·ÏÇÏ°í ºÐ¼®ÇÏ´Â Åø.

16. portmap - Ç¥ÁØ portmapÀÇ ´ëü ÇÁ·Î±×·¥À¸·Î¼­ portmap¿¡ ´ëÇØ ¾Ë·ÁÁø ´ëºÎºÐÀÇ º¸¾È ÇãÁ¡À» ¼öÁ¤ÇÑ portmap. nis ÆÐ½º¿öµå ÆÄÀÏÀÇ µµ¿ë, ÀÎÁõµÇÁö ¾ÊÀº ypset ¸í·É ¹× nfs ÆÄÀÏÇÚµéÀÇ µµ¿ëÀ» ¹æÁö

17. rpcbind - sun rpcbindÀÇ ´ëüÇÁ·Î±×·¥À¸·Î¼­ tcp-wrapper ÇüÅÂÀÇ Á¢±ÙÁ¦¾î ¹× dzºÎÇÑ ·Î±ëÀ» Á¦°øÇÔ

18. cpm - ³×Æ®¿öÅ© ÀÎÅÍÆäÀ̽º°¡ promiscuous mode·Î µÇ¾îÀÖ´ÂÁö °Ë»ç.

19. ½Ã½ºÅÛ tripwire - °¢ ÆÄÀÏÀÇ µðÁöÅÐ ¼­¸íÀ» ÀÛ¼ºÇÏ¿© Áß¿ä ½Ã½ºÅÛ ÆÄÀϵéÀÇ º¯Á¶À¯¹«¸¦ °Ë»çÇÏ´Â µµ±¸

20. cops - unix ½Ã½ºÅÛÀÇ º¸¾È»ó ¹®Á¦Á¡À» °Ë»çÇÏ´Â Åø

21. tiger - cops¿Í ºñ½ÁÇÑ Åø·Î »ç¿ëÀÌ ´õ Æí¸®ÇÏ°í ÆÄÀÏ º¯Á¶À¯¹«¸¦ °Ë»çÇÏ´Â ±â´Éµµ °¡Áö°í ÀÖ´Ù.

22, npasswd - ÃßÃø °¡´ÉÇÑ ÆÐ½º¿öµå¸¦ °Ë»çÇÏ´Â ÆÐ½º¿öµå º¯È¯ Åø·Î sunÀÇ nisµµ Áö¿øÇÑ´Ù.

23. passwd+ - ¶Ç ´Ù¸¥ ÆÐ½º¿öµå º¯È¯ Åø

24. opie(one time password in everything) - s/key¸¦ ±â¹ÝÀ¸·Î °³¹ßµÈ ÀÏȸ¿ë ÆÐ½º¿öµå¸¦ ±¸Çö

25. merlin - ´Ù¸¥ º¸¾ÈÅøµé(cops, tamu tiger, crack, tripwire, spiµî)À» ÆÐŰÁöÈ­ÇÏ¿© °ü¸®ÇÏ´Â Åø

26. lsof - ½Ã½ºÅÛ ³»ÀÇ ¸ðµç ¿­·ÁÀÖ´Â ÆÄÀϵéÀ» ³ª¿­ÇÏ´Â Åø·Î ³×Æ®¿öÅ© ¿¬°á¿¡ ´ëÇØ À̸¦ »ç¿ëÇÏ´Â ÇÁ·Î¼¼½ºÀÇ ÃßÀû µî¿¡ À¯¿ëÇÏ°Ô »ç¿ëµÊ

±×¿ÜÀÇ º¸¾ÈÀ» À§ÇÑ ´Ù¾çÇÑ ¹æ¹ýµé...

ÇÊ¿ä¾ø´Â ¼­¹ö µ¥¸óÀ» Á×ÀδÙ. ¸®´ª½º¸¦ ¼³Ä¡ÇÒ ¶§ ´ëºÎºÐÀÇ µ¥¸óÀÌ ÆÐŰÁö¿Í ÇÔ²² ¿Ã¶ó°£´Ù. ½áºñ½º ÇÏÁö¾Ê´Â µ¥¸óÀº È®ÀÎÇÏ¿© ºÎÆÃ½Ã ±âº»ÀûÀ¸·Î ¿Ã¶ó°¡Áö ¾Êµµ·Ï ÇØ¾ß ÇÑ´Ù.

±×·³ ù ¹øÂ°·Î inted ¼öÆÛ ¼­¹ö¿¡ ÀÇÇØ ÀÚµ¿ °ü¸®µÇ´Â ³à¼®À» °Çµå·Á º¸±â·Î ÇϰڴÙ.

[root@slug /etc]# cat inetd.conf |more

# inetd.conf this file describes the services that will be available

# through the inetd tcp/ip super server. to re-configure

# the running inetd process, edit this file, then send the

# inetd process a sighup signal.

#

# version: @(#)/etc/inetd.conf 3.10 05/27/93

#

# authors: original taken from bsd unix 4.3/tahoe.

# fred n. van kempen, <waltje@uwalt.nl.mugnet.org>

#

# modified for debian linux by ian a. murdock <imurdock@shell.portal.com>

#

# modified for rhs linux by marc ewing <marc@redhat.com>

#

# <service_name> <sock_type> <proto> <flags> <user> <server_path> <args>

#

# echo, discard, daytime, and chargen are used primarily for testing.

#

# to re-read this file after changes, just do a 'killall -hup inetd'

#

#echo stream tcp nowait root internal

# echo, discard, daytime, and chargen are used primarily for testing.

#

# to re-read this file after changes, just do a 'killall -hup inetd'

#

#echo stream tcp nowait root internal

#echo dgram udp wait root internal

#discard stream tcp nowait root internal

#discard dgram udp wait root internal

#daytime stream tcp nowait root internal

#daytime dgram udp wait root internal

#chargen stream tcp nowait root internal

#chargen dgram udp wait root internal

#time stream tcp nowait root internal

#time dgram udp wait root internal

#

# these are standard services.

#

ftp stream tcp nowait root /usr/sbin/tcpd in.ftpd -l -a

telnet stream tcp nowait root /usr/sbin/tcpd in.telnetd

#

¿©·¯ºÐµéµµ ´Ù ¾Æ½Ã´Ù½ÃÇÇ ftp,telnetµîÀº ±âº»ÀûÀÎ ¼­ºñ½ºÀ̱⠶§¹®¿¡ ±×°ÍÀ» ¸·±â¿¡´Â ¾à°£ ÂòÂòÇÑ ±¸¼®ÀÌ ÀÖ´Ù. ±×·¯³ª ÇØÅ·À» ´çÇßÀ» °æ¿ì¿¡´Â Ãß°¡ÀûÀÎ ÇØÅ·ÀÇ ¿ì·Á¸¦ ¹æÁöÇϱâ À§ÇÏ¿© °ú°¨ÇÏ°Ô ÀÌ µÎ°¡ÁöÀÇ ¼­ºñ½ºµµ ¸·À»¼ö ÀÖ´Ù. telnet¸¦ ´ë½ÅÇÏ¿© ssh¸¦ »ç¿ëÇѴٰųª ftp,telnetÀ» µ¶¸³ÀûÀÎ µ¥¸óÀ¸·Î ¼­ºñ½º ÇÏ´Â ¹æ¹ýµµ ½Ã½ºÅÛÀÇ ¾ÈÁ¤¿¡´Â ÁÁÀº ¹æ¹ýÀ̶ó°í »ý°¢ÇÑ´Ù.(¹°·Ð, Á¶±Ý ±ÍÂú±â´Â ÇÏÁö¸¸...)

# shell, login, exec, comsat and talk are bsd protocols.

#

#shell stream tcp nowait root /usr/sbin/tcpd in.rshd

#login stream tcp nowait root /usr/sbin/tcpd in.rlogind

#exec stream tcp nowait root /usr/sbin/tcpd in.rexecd

#comsat dgram udp nowait root /usr/sbin/tcpd in.comsat

#talk dgram udp nowait nobody /usr/sbin/tcpd in.talkd

#shell stream tcp nowait root /usr/sbin/tcpd in.rshd

#login stream tcp nowait root /usr/sbin/tcpd in.rlogind

#exec stream tcp nowait root /usr/sbin/tcpd in.rexecd

#comsat dgram udp nowait root /usr/sbin/tcpd in.comsat

#talk dgram udp nowait nobody /usr/sbin/tcpd in.talkd

#ntalk dgram udp wait nobody /usr/sbin/tcpd in.ntalkd

#dtalk stream tcp wait nobody /usr/sbin/tcpd in.dtalkd

#

À§ÀÇ ¼­ºñ½ºµéÀº ¹ö±×¿Í ¿ø°Ý ·Î±×ÀÎÀ̶ó´Â º¸¾ÈÀÇ Ä¡¸íÀûÀÎ ¾àÁ¡µéÀ» °¡Áö°í ÀÖ´Â ¼­ºñ½º µéÀÌ´Ù. ¹°·Ð, talk°¡ ²À ÇÊ¿äÇÏ´Ù¸é ¾î¿¼ö°¡ ¾ø°ÚÁö¸¸ ±×·² °æ¿ì °¡´ÉÇϸé À¥Ã¤ÆÃ°ú °°Àº ÇüÅÂÀÇ Á¶±Ý ¾ÈÀüÇÑ ¹æ¹ýÀ» ÃßõÇÏ°í ½Í´Ù.

# pop and imap mail services et al

#

#pop-2 stream tcp nowait root /usr/sbin/tcpd ipop2d

pop-3 stream tcp nowait root /usr/sbin/tcpd ipop3d

imap stream tcp nowait root /usr/sbin/tcpd imapd

#

pop3´Â À̸ÞÀÏÀ» »ç¿ëÇϱâ À§Çؼ­ ÇÊ¿äÇÑ ¼­ºñ½ºÀÌÁö¸¸ imap °°Àº ³à¼®Àº ÁÖ¼® 󸮸¦ Çϱ⠹ٶõ´Ù.ÃÖ±Ù¿¡ imap¸¦ ÀÌ¿ëÇÑ ÇØÅ· »ç°í°¡ ¸¹ÀÌ º¸°í µÇ°í Àֱ⠶§¹®ÀÌ´Ù.

# the internet uucp service.

#

#uucp stream tcp nowait uucp /usr/sbin/tcpd /usr/lib/uucp/uucico

-l

#

# tftp service is provided primarily for booting. most sites

# run this only on machines acting as "boot servers." do not uncomment

# this unless you *need* it.

#

#tftp dgram udp wait root /usr/sbin/tcpd in.tftpd

#bootps dgram udp wait root /usr/sbin/tcpd bootpd

#

# finger, systat and netstat give out user information which may be

#

# tftp service is provided primarily for booting. most sites

# run this only on machines acting as "boot servers." do not uncomment

# this unless you *need* it.

#

#tftp dgram udp wait root /usr/sbin/tcpd in.tftpd

#bootps dgram udp wait root /usr/sbin/tcpd bootpd

#

# finger, systat and netstat give out user information which may be

# valuable to potential "system crackers." many sites choose to disable

# some or all of these services to improve security.

#

#finger stream tcp nowait root /usr/sbin/tcpd in.fingerd

#cfinger stream tcp nowait root /usr/sbin/tcpd in.cfingerd

#systat stream tcp nowait guest /usr/sbin/tcpd /bin/ps -auwwx

#netstat stream tcp nowait guest /usr/sbin/tcpd /bin/netstat

-f inet

#

À§ÀÇ ¼­ºñ½ºµéÀº ³×Æ®¿÷ »ç¿ëÀÇ ÆíÀǼºÀ» Á¦°øÇϱâ À§Çؼ­ Á¸ÀçÇÏ´Â ¼­ºñ½ºµéÀÌ´Ù. Áï, fingerµîÀÇ Á¤º¸´Â ³»ºÎ ³×Æ®¿÷ ¹× ±× »ç¿ëÀÚµéÀÇ ÇöȲÀ» ¿ÜºÎ ¼¼°è¿¡ ÀÖ´Â »ç¶÷µé¿¡°Ô ÈÍÈ÷ µé¾î³» º¸ÀÌ´Â °á°ú¸¦ ÃÊ·¡ÇÏ´Â °ÍÀÌ´Ù. ±×·¯ÇϰԿ¡ °¡´ÉÇÏ¸é °ø°³ÀûÀ¸·Î ¿î¿µµÇ¾îÁö´Â ¼­¹öÀÇ °æ¿ì¿¡´Â À̵éÀ» ÁÖ¼®Ã³¸®ÇÏ´Â °ÍÀÌ ¹Ù¶÷Á÷ÇÏ´Ù°í »ý°¢µÇ¾îÁø´Ù.

# authentication

#

auth stream tcp nowait nobody /usr/sbin/in.identd in.identd -l -e -o

#

# end of inetd.conf

linuxconf stream tcp wait root /bin/linuxconf linuxconf --http

#swat stream tcp nowait.400 root /usr/sbin/swat swat

ÀÌ»óÀ¸·Î·Î inted.confÀÇ ¼³Á¤ ÆÄÀϵ鿡 ´ëÇØ¼­ ¾Ë¾Æ º¸¾Ò´Ù.

±×¿Ü¿¡ ¸î°¡Áö º¸¾È°ú °ü·ÃÇØ¼­ ½Å°æÀ» ½á¾ßÇÒ ÆÄÀÏÀ» È®ÀÎÇØ º¸°Ú´Ù.

¾Æ·¡ÀÇ ÆÄÀÏÀº ftp Á¢¼ÓÀ» Á¦ÇÑÇÏ´Â À¯ÀúµéÀÇ idÀÌ´Ù.

[root@slug /etc]# cat ftpusers |more

root

bin

daemon

adm

lp

sync

shutdown

halt

mail

news

uucp

operator

games

nobody

ÇÊ¿ä¾ø´Â À¯ÀúÀÇ Çã°¡´Â »ï°¡Çϱ⠹ٶõ´Ù.

¾Æ·¡ÀÇ ³»¿ëÀº ·çÆ®°¡ »ç¿ë °¡´ÉÇÑ °¡»ó ÄÜ¼Ö tty1-8¹ø ±îÁö ±âº»ÀûÀ¸·Î µé¾î ÀÖ´Â ÆÄÀÏÀÌ´Ù. ¿ø°ÝÀ¸·Î rootÀÇ Á¢±ÙÀº ¹Ýµå½Ã ºÒÇãÇØ¾ß ÇÑ´Ù. su¸¦ ÀÌ¿ëÇÏ¿© ·çÆ®·Î loginÇϱ⸦ ±ÇÀåÇÑ´Ù.

[root@slug /etc]# cat securetty |more

tty1

tty2

tty3

½¦µµ¿ì ÆÐ½º¿öµå¸¦ »ç¿ëÇÏÀÚ!!!

¿Ö? ÇѸ¶µð·Î º¸¾ÈÀ» À§Çؼ­.... ¿Ö /etc/passwd ÆÄÀÏÀ» ¼û°Ü¾ß Çϴ°¡? ÀϹÝÀûÀ¸·Î password¸¦ Æ÷ÇÔÇÑ ´ëºÎºÐÀÇ »ç¿ëÀÚ Á¤º¸´Â /etc/passwd¿¡ º¸°üµÇ¾î ÀÖ´Ù. password´Â ¾Ïȣȭ µÇ¾î¼­ encrypted ÀúÀåµÈ´Ù. password´Â encodeµÈ Çü½ÄÀ¸·Î Á¸ÀçÇÑ´Ù. ÀÌÀ¯´Â crypt¸¦ Àû¿ëÇÒ ¶§ text´Â null·Î Çϰí password¸¦ key·Î »ç¿ëÇϱ⠶§¹®ÀÌ´Ù.

password¸¦ encode Çϴµ¥ »ç¿ëÇÏ´Â ¿¬»ê¹æ½ÄÀº ±â¼úÀûÀ¸·Î´Â ´Ü¹æÇâ hash function °ú °°Àº ¹æ¹ýÀ¸·Î °£Áֵǰí ÀÖ´Ù. À̰ÍÀº ¼ø¹æÇâÀ¸·Î´Â °è»êÇÏ±â ÆíÇÏ°Ô µÇ¾î ÀÖÁö¸¸ ¿ª¹æÇâÀº ¿¬»êÀÌ ¸Å¿ì Èûµé°Ô µÇ¾î ÀÖ´Â ±¸Á¶¸¦ °¡Áö°í ÀÖ´Ù. ¹«Áú¼­ÇÏ°Ô encodeµÈ password¸¦ ȹµæÇؼ­ ¿ø·¡ÀÇ password¸¦ Á¶ÇÕÇÏ´Â °ÍÀº »ç½Ç ¾î·Á¿î ÀÏÀÌ´Ù, ±×·¯³ª ¼ö¸¹Àº »ç¶÷µéÀÌ »ç¿ëÇÏ´Â ¼­¹ö¿¡¼­´Â Çѵΰ³ÀÇ password´Â ÀÏ»ó´Ü¾î·Î ÀÌ·ç¾îÁ® ÀÖÀ» °ÍÀÌ´Ù ¹Ù·Î ÀÌ·± ÇêÁ¡À» Å©·¢Ä¿µéÀº ³ë¸®°í ÀÖ´Â °ÍÀÌ´Ù.

Áï, ÈçÈ÷ »ç¿ëÇÏ´Â password¿Í ´Ü¾î¸¦ °¡´ÉÇÑ °¡´ÉÇÑ 4096°¡Áö salt °ªÀ» »ç¿ëÇØ¼­ encryptÀ» ½ÇÇàÇÒ °ÍÀÌ´Ù. ±× ´ÙÀ½¿¡ db¿¡ ÀÖ´Â password¿Í encodeehls password¸¦ ºñ±³ÇÒ °ÍÀÌ´Ù. ±×´ÙÀ½Àº ¿©·¯ºÐÀÇ »ó»ó¿¡ ¸Ã±â±â·Î ÇϰڴÙ.À̰ÍÀ» ÀϹÝÀûÀ¸·Î dictionary attackÀ̶ó°í ÇÑ´Ù.

shadow suite´Â password¸¦ ´Ù¸¥ ÆÄÀÏ¿¡ À§Ä¡½ÃÅ´À¸·Î½á À̹®Á¦¿¡¼­ ÀÚÀ¯·Î¿ï¼ö ÀÖ´Ù. ´Ù½Ã ¸»Çؼ­ /etc/shadow µð·ºÅ丮¿¡ À§Ä¡½ÃÅ´À¸·Î¼­ ¸ðµç À¯Àú°¡ ÆÄÀÏ¿¡ ´ëÇÑ Á¢±ÙÀ» ÇÒ ¼ö ¾ø°Ô ¸¸µå´Â °ÍÀÌ´Ù. ¿À·ÎÁö root¸¸ÀÌ ÀÌÈ­ÀÏÀ» º¸°í ¾µ¼ö°¡ ÀÖ´Ù. À̸¦ ÅëÇÏ¿© dictionary attackÀ» °¨ÇàÇÏ´Â Å©·¢Ä¿µé·ÎºÎÅÍ Áß¿äÇÑ ½Ã½ºÅÛÀ» º¸È£ÇÒ ¼ö ÀÖ´Â °ÍÀÌ´Ù. À̰ÍÀÌ ½¦µµ¿ì ÆÐ½º¿öµå »ç¿ëÀÇ ¸ñÀûÀ̶ó°í ÇÒ ¼ö ÀÖ´Ù.

³»ºÎ »ç¿ëÀÚµéÀ» ÁÖÀÇÇ϶ó!!!

¸¹Àº Å©·¢Å·ÀÌ ¿ÜºÎ¿¡¼­ ÀÌ·ç¾îÁö´Â °ÍÀ¸·Î ¿ÀÀÎÇÏ´Â °æ¿ì°¡ Á¾Á¾ ÀÖ´Ù. ±×·¯³ª Ç×»ó ±×·¯ÇÏÁö´Â ¾Ê´Ù. ³»ºÎ »ç¿ëÀÚ¿¡ ÀÇÇÑ °ø°Ý ¶ÇÇÑ ÁÖÀÇÇØ¼­ °üÂûÇØ¾ß ÇÒ ´ë¸ñÀÌ´Ù. ±×°ÍÀÌ ¾Æ´Ï´õ¶óµµ ¿ÜºÎ¿¡¼­ ³»ºÎ »ç¿ëÀÚÀÇ id¸¦ ¾ò´Â °Í À̾߸»·Î °¡Àå ÈçÇÑ Å©·¡Å·ÀÇ °æ¿ìÀÌ´Ù. ³»ºÎ »ç¿ëÀڵ鿡 ´ëÇÑ º¸¾ÈÀÌ ´À½¼ÇØÁö¸é ħÀÔÀÚµéÀº ¿©·¯ ¹ö±×µé°ú ½Ã½ºÅÛÀÇ ¾àÁ¡À» ÀÌ¿ëÇØ¼­ ÀÏ¹Ý id¸¦ ȹµæÇÏ¿© °ü¸®ÀÚÀÇ id¸¦ ȹµæÇÒ ¼öÀÖ´Ù.

±×·¯Çϱ⿡ Ç×»ó °ü¸®ÀÚ´Â ÁÖÀÇÇØ¾ß ÇÒ °ÍÀÌ ÆÛ¹Ì¼Ç¿¡ °ü°èµÈ ¹®Á¦¸¦ ¼ÒȦÈ÷ ´Ù·ç¾î¼­´Â ¾ÈµÈ´Ù´Â °ÍÀÌ´Ù. ÀϹÝÀ¯Àúµé¿¡°Ô´Â ÃÖ¼ÒÇÑÀÇ ±ÇÇѸ¸À» ºÎ¿©ÇÏ°í »ç¿ëÀÚÀÇ ·Î±×¸¦ Àß ºÐ¼® ÇØ¾ßÇϸç ÇÊ¿äÇÏ´Ù¸é °ú°¨È÷ °èÁ¤À» ¸·¾Æ¾ß ÇÒ °ÍÀÌ´Ù. Áï, ³»ºÎ »ç¿ëÀÚ°¡ ´Ù¸¥ »çÀÌÆ®¸¦ ÅëÇÏ¿© ÅÚ³Ý Á¢¼ÓÀ» ÇØ¿Ã °æ¿ì Çã°¡¸¦ ¹Þ¾Æ¼­ »ç¿ëÇÒ¼ö ÀÖµµ·Ï ÇÑ´Ù´ø°¡ »ç¿ëÀÚÀÇ ÄùÅ͸¦ Á¦ÇÑ µÐ´Ù´ø°¡ ÇÏ´Â ³ª¸§´ë·ÎÀÇ ·êÀ» Á¤ÇÏ¿© °Å±â¿¡ À§¹ÝÀÌ µÇÁö ¾Êµµ·Ï ÇÏ´Â ¹æ½ÄµîÀ» ÅëÇØ¼­ ³»ºÎ »ç¿ëÀÚ¿¡ ´ëÇÑ ¹æ¾î¸¦ ÇØ¾ß ÇÒ °ÍÀÌ´Ù.

log ºÐ¼®À» °ÔÀ»¸® ÇÏÁö ¸¶¶ó.

/var/log ¿¡ lastlog,message ÆÄÀÏÀÇ ºÐ¼®À» Á¤±âÀûÀ¸·Î ºÐ¼®Çϱ⠹ٶõ´Ù. Ȥ½Ã ÀüÇô ¾Ë ¼ö ¾ø´Â »çÀÌÆ®·ÎºÎÅÍ Á¢¼Ó ½Ãµµ³ª loginÀÌ ÀÌ·ç¾î Á³´Ù¸é ¹Ýµå½Ã È®ÀÎ ÀÛ¾÷À» Çϱ⠹ٶõ´Ù. ±×µéÀº ¿©·¯ºÐÀÇ ¼­¹ö¿¡ ½ºÅ©¸³Æ® Çϳª¸¦ ±ò¾Æ¼­ Àüü ³×Æ®¿÷À» ½ºÄµÇÏ°í ±×¸¦ ÅëÇÏ¿© ´Ù¸¥ ¼­¹öÀÇ Á¢¼ÓÀ» ½ÃµµÇÒ °ÍÀÌ¸ç ±×¸¦ ÅëÇØ¼­ ³×Æ®¿÷¿¡ Àå³­À» Ä¥ °ÍÀÌ´Ù. óÀ½º¸´Â ÆÄÀÏÀ̳ª µð·ºÅ丮, Ưº°È÷ µî·ÏÀÌ ¾ÈµÇ¾î ÀÖ´Â À¯Àú°¡ ¸¸µé¾îÁ® ÀÖ´Ù¸é ±×°ÍÀº ´ëºÎºÐÀÌ Å©·¢Ä¿ÀÇ Àå³­ÀÏ ¼ö°¡ ÀÖ´Ù. ±×·²¶§´Â ÀÏ´Ü ¾ËÁö ¸øÇÏ´Â À¯ÀúÀÇ id´Â Á×À̰í log¸¦ ºÐ¼®ÇÏ¿© ·¦ÆÛ·Î »ó´ë È£½ºÆ®ÀÇip¿Í µµ¸ÞÀÎÀ» ¸·¾Æ¾ß ÇÒ °ÍÀÌ´Ù. ¿Ö³ÄÇϸé, ÇϳªÀÇ ¼­¹ö°¡ ¶Õ·È´Ù¸é ±× ´ÙÀ½Àº ¾ÆÁÖ ¿ì½À°Ô ·çÆ® ±ÇÇÑÀ» ȹµæÇÒ ¼ö Àֱ⠶§¹®ÀÌ´Ù.

±×·¯Çϱ⿡ ½Ã½ºÅÛ °ü¸®ÀÚ°¡ ¾Æ´Ï¶óµµ ÀÚ½ÅÀÇ ¼­¹ö°¡ ³×Æ®¿÷¿¡ ¹°·Á ÀÖ´Ù¸é ÀÚ½ÅÀÇ ¼­¹ö¸¦ »ç¶ûÇÏ°í °ü½ÉÀ» °¡Á®Áà¾ß ÇÒ °ÍÀÌ´Ù. À̿ܿ¡µµ º¸¾ÈÀ» ¾ê±âÇϸé Çѵµ ³¡µµ ¾øÀ» °Í °°´Ù. ±×¿ÜÀÇ ºÎºÐÀº ¼¼¹Ì³ª ȨÀ̳ª °Ô½ÃÆÇ¿¡ ÀڷḦ ¿Ã¸± °ÍÀÌ´Ù. ±×°ÍÀ» Âü°íÇÏ¿© º¸´Ù È¿À²ÀûÀ¸·Î º¸¾ÈÀ» °øºÎÇϱ⠹ٶõ´Ù.

º¸¾ÈÀÌ ÀüÇô Áß¿äÇÏÁö ¾Ê´Ù°í »ý°¢ÇÏ´Â ¸®´ª¼­°¡ Ȥ¿©¶óµµ ÀÖÀ»Áö ¸ð¸£°Ú´Ù. Ŭ¶óÀÌ¾ðÆ® »ç¿ëÀÚ¿¡°Ô ¹«½¼ º¸¾È?

Ç㳪, º¸¾È ¹®Á¦´Â ½Ã½ºÅÛ °ü¸®ÀÚ¸¸ÀÇ °ÍÀÌ ¾Æ´Ï´Ù. ¿©·¯ºÐÀÇ pc°¡ ³×Æ®¿÷¿¡ ¿¬°áÀÌ µÇ¾î ÀÖ´Ù¸é ±×°ÍÀº ¹Ù·Î ÇØÄ¿ÀÇ ¸ÔÀ̰¡ µÉ ¼ö ÀÖ´Ù´Â »ç½ÇÀ» ¸í½ÉÇϱ⠹ٶõ´Ù. ÇÊÀÚ°¡ ³×Æ®¿÷ °ü¸®ÀÚÀ̱⿡ ±³³»ÀÇ ¸®´ª½º ¹Ú½º°¡ ºÎ¼­Áö°í ±ú¾îÁö´Â ¸ð½ÀÀ» ¸¹ÀÌ º¸¾Æ¿Ô´Ù. Á¶±Ý¸¸ º¸¾È¿¡ ½Å°æÀ» ¾²¸é µÆÀ» °ÍÀ» ³ªÁß¿¡ µ¥ÀÌÅͰ¡ ±úÁö°í ½Ã½ºÅÛÀÌ ¸Á°¡Áö°í ³­ ´ÙÀ½¿¡ ÈÄȸÇÏ´Â ¸ð½ÀÀ» ¸¹ÀÌ º¸¾Æ¿Ô´Ù ±×·¡¼­ º¸¾ÈÀº ÀüÁ¦ÀÎ °ÍÀÌ´Ù. ¹Ù»Ú´õ¶óµµ ÃÖ¼ÒÇÑ ·¦ÆÛ¿Í ÇÊ¿ä¾ø´Â µ¥¸óµéÀº Á×ÀÌ°í »ç¿ëÇϽñ⸦ °£ÀýÈ÷ ºÎʵ台´Ù. ±×¸®°í ¹®Á¦°¡ »ý±â¸é °ü¸®ÀÚ¿¡°Ô ²À²À ¿¬¶ôÇÏ´Â ½À°üÀ» °¡Áö±â ¹Ù¶õ´Ù. ÀÌ»óÀ¸·Î Á¶±ÝÀº Áö·çÇÑ º¸¾ÈÀ» ¾ê±â Çß´Ù.

³»°Ô ÇÒ´çµÇ¾îÁø ¿ø°í¸¦ ³ÑÀºÁöµµ ¹ú½á ¾öû Èê·¶´Ù. ´Ê°Ô ¿ø°í¸¦ º¸³½°Íµµ ¹Ì¾ÈÇѵ¥ ÀÌ·¸°Ô ¹ÎÆó±îÁö ³¢Ä¡´Ù´Ï Á¤¸» ¹Ì¾ÈÇÒ µû¸§ÀÌ´Ù. Ç㳪, ¸ðµÎ¸¦ À§ÇÑ ÀÏÀ̶ó´Â ¹ÏÀ½À¸·Î ÀÌÇØÇØ ÁÖ¸®¶ó ¹Ï´Â´Ù.
























5. play with linuxconf !!! - ¼­°­¸®´ª½º À¯Àú±×·ì ³ëÅ¿µ

ÀÌ ¹®¼­¿¡ ´ëÇÑ Áú¹®Àº teguri@slug.sogang.ac.kr ·Î ÇØÁֽñæ... ÀÌ ¹®¼­´Â ¾ËÂ¥ 6.0 ¹èÆ÷ÆÇ¿¡ ±ò·Á ÀÖ´Â gnome-linuxconf 1.14 ¸¦ ±âÁØÀ¸·Î ¼³¸íÇÕ´Ï´Ù.

1. µé¾î°¡¸ç - linuxconf ¶õ?

linuxconf ´Â ¸®´ª½º ¿î¿µÃ¼°èÀÇ º¹ÀâÇÑ ¼³Á¤ÆÄÀϵéÀ» ÇÑ °÷¿¡ ¸ð¾Æ, ½Ã½ºÅÛ °ü¸®ÀÚµéÀÌ ½±°í ºü¸£°Ô ¼­¹öÀÇ Àüü ¼³Á¤À» ÇÒ ¼ö ÀÖ°Ô Çϱâ À§ÇÏ¿© ¸¸µé¾îÁø ÇÁ·Î±×·¥ÀÌ´Ù. ±×·¯³ª ¸®´ª½ºÀÇ »ç¿ëÀÚ°¡ Áõ°¡ÇÏ°í »ç¿ëÀÚÃþÀÌ ½Ã½ºÅÛ °ü¸®ÀÚ »Ó ¾Æ´Ï¶ó ÀϹݻç¿ëÀÚµé±îÁö È®´ëµÊ¿¡ µû¶ó, ÁÖ¿äÇÑ À¯Æ¿¸®Æ¼·Î ÀÚ¸®¸Å±èÇÒ Àü¸ÁÀÌ´Ù.

¾ËÂ¥ ·¹µåÇÞ 6.0 ÆÇ¿¡ Æ÷ÇÔµÈ ¹öÀüÀº 1.14À̰í ÃֽйöÀüÀº 1.16r3 ·Î ´Ù¿î·Îµå ÇÏ·Á¸é

http://www.solucorp.qc.ca/linuxconf/download.hc ·Î °¡¸é µÈ´Ù.

2. linuxconf ÀÇ ÀÎÅÍÆäÀ̽º :

linuxconf ÀÇ user interface ¿¡´Â 4°¡Áö°¡ ÀÖ°í ÀÌÁß 3°¡Áö´Â ¿Ï·áµÈ »óÅÂÀÌ´Ù.

- ÅýºÆ® ±â¹Ý

: x À©µµ¿ì ½Ã½ºÅÛ Çϰ¡ ¾Æ´Ò ¶§ ÄÜ¼Ö »ó¿¡¼­ µ¿ÀÛÇÏ´Â ÀÎÅÍ ÆäÀ̽ºÀÌ´Ù. ¿ÜºÎ¿¡¼­ telnet µîÀ¸·Î Á¢¼ÓÇßÀ»½Ã À¯¿ëÇÏ°Ô »ç¿ëÇÒ ¼ö ÀÖ´Ù.

- À¥ ÀÎÅÍÆäÀ̽º

: °ü¸®ÀÚ°¡ À¥À» ÅëÇØ¼­ ¿ø°ÝÀ¸·Î ¼­¹ö °ü¸®¸¦ ÇÒ ¼ö ÀÖµµ·Ï ¸¸µç ÀÎÅÍÆäÀ̽ºÀÌ´Ù. ÀÚ¼¼ÇÑ °ÍÀº linuxconfȨÆäÀÌÁö (http://www.solucorp.qc.ca/linuxconf/) ¸¦ ÂüÁ¶Ç϶ó.

- ±×·¡ÇÈ ÀÎÅÍÆäÀ̽º

: gui ´Â µÎ°¡Áö ¹æ½ÄÀ¸·Î ¸¸µé¾îÁ³´Âµ¥ Çϳª´Â ÀÚ¹Ù ¾ð¾î·Î ¾º¿©Á® ºê¶ó¿ìÀú¿¡¼­ »ç¿ëµÇ´Â °ÍÀ̰í Çϳª´Â x À©µµ¿ì ½Ã½ºÅÛ¿¡¼­ µ¿ÀÛÇϵµ·Ï ¸¸µé¾îÁø °ÍÀÌ´Ù. ¿ì¸®°¡ ¿À´Ã °øºÎÇϰíÀÚ ÇÏ´Â gnome linuxconf°¡ ÈÄÀÚ¿¡ ¼ÓÇÑ´Ù.

- ¸í·É¾î ¹æ½Ä

: Äֻܼ󿡼­ ¸í·É¾î·Î ÀԷµȴÙ.

linuxconf --help ÇØº¸¸é ±× Àü¸ð¸¦ ¾Ë ¼ö ÀÖ´Ù.

3. linuxconf Ȱ¿ë

linuxconf´Â ¿À¸¥ÂÊ ±×¸²°ú °°Àº ¸Þ´ºµéÀ» °¡Áö°í ÀÖ´Ù.

±×·¯³ª ÀÌ Áß¿¡¼­ Ãʺ¸ÀÚµéÀÌ ÀÚÁÖ ¾µ¸¸ÇÑ °ÍÀº ¸¹Áö°¡ ¾Ê´Ù. ¾Æ·¡¿¡¼­´Â Áö¸é°ü°è»ó ¸ðµç ¸Þ´ºµéÀ» ¼³¸íÇÒ ¼ö ¾ø±â ¶§¹®¿¡, Ãʺ¸Àڵ鿡 ¸Â´Â ¸Þ´º¸¸À» Áß½ÉÀ¸·Î ¼³¸íÇϵµ·Ï ÇϰڴÙ.

3.1. ³×Æ®¿÷ °ü·Ã ¼³Á¤

¸ÕÀú ¸®´ª½º ¹Ú½º·Î ÇÒ ¼ö ÀÖ´Â ÀÏÁß °¡Àå Èï¹Ì·Î¿î ºÎºÐÀÎ ³×Æ®¿öÅ© °ü·Ã ¼³Á¤ÀÌ ´«¿¡ ¶è´Ù. ³×Æ®¿÷ °ü·Ã ¼³Á¤Àº Ŭ¶óÀ̾ðÆ®ÂÊÀÇ ¼³Á¤°ú ¼­¹öÂÊÀÇ ¼³Á¤ µÎ°¡Áö·Î ³ª´µ¾î ÀÖ´Ù.

3.1.1. tcp/ip °ü·Ã ¼³Á¤ (config-networking-clienttask-basichostinformation)

- ¿ÞÂÊÀÇ ±×¸²°ú °°ÀÌ ÀÚ½ÅÀÇ ½Ã½ºÅÛ¿¡ ¸Â´Â È£½ºÆ® ³×ÀÓÀ» ÀÔ·ÂÇÑ ÈÄ,

- adoptor ÅÃÀ» ¼±ÅÃÇÏ¿©

 

 

,

- °¢°¢ÀÇ ·£Ä«µå¿¡ ¸Â´Â ip ¼³Á¤À» ÇØÁØ´Ù.

(·£Ä«µå´Â ³× °³±îÁö ¼³Á¤ÀÌ °¡´ÉÇÏ´Ù. )

- enabled ¿¡ üũµÇ¾î ÀÖ´ÂÁö È®ÀÎ Çϰí,

- config mode¸¦ ¼±ÅÃÇϰí

(°ÅÀÇ ´ëºÎºÐÀÇ °æ¿ì manualÀ» ¼±ÅÃÇØ¾ß ÇÑ´Ù. dhcp¿Í bootp´Â ¼­·Î ¦ÀÌµÇ¾î ¼­¹ö°¡ Ŭ¶óÀÌ¾ðÆ®¿¡ µ¿ÀûÀ¸·Î ip¸¦ ÇÒ´çÇØÁÖ´Â ÇÁ·ÎÅäÄÝÀÌ´Ù. ÀÌ¿¡ ´ëÇØ ÀÚ¼¼ÇÑ °ÍÀº kldp »çÀÌÆ®ÀÇ ³×Æ®¿öÅ© ºÎºÐÀ» ÂüÁ¶Ç϶ó.)

- ±×¸®°í primary name + domain¿¡ È£½ºÆ®³×ÀÓÀ» ½á ÁÖ°í,

- ip ¾îµå·¹½º¸¦ ÀÔ·ÂÇϰí

- µð¹ÙÀ̽º¸íÀ» ¼±ÅÃÇϰí (·£Ä«µå°¡ ÇϳªÀÎ ½Ã½ºÅÛÀÇ °æ¿ì, eth0 ¶ó°í ÇÏ¸é ¹«¹æÇÏ´Ù.)

- kernel module ºÎºÐÀº ³×Æ®¿÷ µð¹ÙÀ̽ºÀÇ Á¦Ç°¸í°ú µ¿ÀÏÇÑ, ȤÀº ȣȯµÇ´Â ¸ðµâ¸íÀ» ¼±ÅÃÇØ ÁÖ¸é µÈ´Ù.

<À§ÀÇ ¼³Á¤Àº kernelcfg·Î ·»Ä«µå¸¦ ÀνĽÃ۰í netcfg·Î ³×Æ®¿÷ °ü·Ã ¼³Á¤À» ÇÏ´Â °Í°ú µ¿ÀÏÇÑ È¿°ú¸¦ ³¾¼ö ÀÖ´Ù.>

[ °ü·Ã ¼³Á¤ ÆÄÀÏ : /etc/hostname , /etc/hosts , /etc/sysconfig/network ]

3.1.2. µµ¸ÞÀÎ ³×ÀÓ¼­¹ö ¼³Á¤

(config-networking-clienttask-nameserverspecification)

- µµ¸ÞÀÎ ³×ÀÓ ¼­¹ö¶õ ±ÛÀÚ·Î µÇ¾îÀÖ´Â µµ¸ÞÀÎ ³×ÀÓÀ¸·Î ¿ø·¡ÀÇ ip ³Ñ¹ö¸¦ ã¾Æ³»¾î ±ä ¼ýÀÚ¸¦ ÀÔ·ÂÇÏÁö ¾Ê°íµµ ¿øÇÏ´Â °÷¿¡ ¿¬°áÇÒ ¼ö ÀÖµµ·Ï ÇØÁØ´Ù.

- ±×·¯¹Ç·Î ÀÚ½ÅÀÌ °¡ÀÔÇÑ isp ÀÇ µµ¸ÞÀÎ ³×ÀÓ¼­¹öÀÇ ÁÖ¼Ò¸¦ ¾Ë¾Æ¼­ ÀÔ·ÂÇØ µÎ¾î¾ß¸¸ ±ä ip ³Ñ¹ö¸¦ ±â¾ïÇØ¾ß ÇÏ´Â ¼ö°í¸¦ ´ú ¼ö ÀÖ´Ù.

- ½Ã½ºÅÛÀÌ ¹°·ÁÀÖ´Â ispÀÇ µµ¸ÞÀμ­¹öÀÇ ip number¸¦ ¿ÞÂÊÀÇ ±×¸²°ú °°ÀÌ ½áÁÖ¸é µÈ´Ù.

<ÀÌ ºÎºÐµµ netcfg/names·Î °¡´ÉÇÏ´Ù.>

[ °ü·Ã ¼³Á¤ ÆÄÀÏ /etc/resolv.conf ]

 

 

 

3.1.3. ¶ó¿ìÆÃ ¼³Á¤

¶ó¿ìÆÃ¿¡´Â 5°¡Áö ¸Þ´º°¡ ÀÖÁö¸¸ °íÃÄ ÁÖ¾î¾ßÇÒ ºÎºÐÀº ¸¹Áö ¾Ê´Ù. °ÔÀÌÆ®¿þÀ̸¸ ¼³Á¤ÇÏ¸é µÈ´Ù. ¹°·Ð Ãʺ¸ÀÚ°¡ ¾Æ´Ñ °ü¸®ÀÚÀÇ °æ¿ì´Â ¾Ë¾Æ¾ß ÇϰÚÁö¸¸ ...

°ÔÀÌÆ®¿þÀÌ ¼³Á¤Àº

network-clienttask-routingandgateway-default ºÎºÐ¿¡¼­ ÇÒ ¼ö ÀÖ´Ù.

- ¿À¸¥ÂÊ À§±×¸²¿¡¼­ defaultgateway¿¡ ¾Ë¸Â´Â °ÔÀÌÆ®¿þÀÌ ÁÖ¼Ò¸¦ Àû¾îÁÖ°í ¶ó¿ìÆÃ °¡´É ¿É¼ÇÀº ±×´ë·Î µÐ´Ù.

<¸¶Âù°¡Áö·Î À̺κеµ netcfg·Î ÇÒ ¼ö ÀÖ´Ù.>

3.1.4. nis(network information system)

nis´Â ³×Æ®¿öÅ©¿¡ ¹°¸° ½Ã½ºÅÛµé »çÀÌ¿¡ Á¤º¸¸¦ °øÀ¯Çϱâ À§ÇÑ ½Ã½ºÅÛÀÌ´Ù. nis server¿¡¼­ »ç¿ëÀÚ °èÁ¤/ÆÐ½º¿öµå/Ȩµð·ºÅ丮/±×·ìÁ¤º¸ µîÀ» °¡Áö°í ÀÖÀ¸¸é nis client¼³Á¤ÀÌ µÇ¾î ÀÖ´Â ÄÄÇ»ÅÍ¿¡¼­ ¶È°°Àº °èÁ¤°ú ÆÐ½º¿öµå·Î ·Î±×ÀÎ ÇÒ ¼ö ÀÖ°í server¿Í µ¿ÀÏÇÑ Á¤º¸¸¦ °øÀ¯ÇÒ ¼ö ÀÖ´Ù. ÀÌ´Â ¼­¹öÀÇ µ¥ÀÌÅͺ£À̽º¿¡ ´ã°Ü ÀÖ´Â Á¤º¸¸¦ Ŭ¶óÀÌ¾ðÆ®µéÀÌ °è¼ÓÇØ¼­ °¡Á®¿À°í °»½ÅÇÔÀ¸·Î½á °¡´ÉÇØÁø´Ù. linuxconf¿¡¼­ nis ¼³Á¤À» ÇÏ·Á¸é

network-clienttask-networkinformationsystem¿¡¼­ ÇϸéµÈ´Ù.

ÇÊÀÚµµ nis¸¦ Á÷Á¢ ÇØº» ÀûÀÌ ¾ø¾î¼­ »ó¼¼ÇÑ ¼³¸íÀ» Àû°í ½ÍÁö¸¸ ¿©±â¼­... Á˼Û...

[ °ü·Ã ¼³Á¤ ÆÄÀÏ : /etc/yp.conf , /etc/ypserv.conf ]

3.1.5. ppp ¿¬°á ¼³Á¤

Ŭ¶óÀÌ¾ðÆ®¿¡¼­ ÀüÈ­Á¢¼ÓÀ» ÅëÇØ °¡»óÀûÀ¸·Î tcp/ip ¿¬°áÀÌ °¡´ÉÇÏ°Ô ÇØ ÁØ´Ù. ¿©·¯ºÐÀÌ ppp ¼­ºñ½º¸¦ Á¦°øÇÏ´Â isp¸¦ ÀÌ¿ëÇϰí ÀÖ´Ù¸é linuxconf¿¡¼­ ´ÙÀ½ÀÇ ¸Þ´º¸¦ Á¶Á¤ÇÏ¿© ppp ¿¬°áÀ» ÀÚµ¿È­ ÇÒ ¼ö ÀÖ´Ù.

network-clienttask-ppp/slip/plip ¸Þ´º·ê ½ÇÇàÇÏ¸é ´ÙÀ½°ú °°Àº ¸Þ´º°¡ ¶á´Ù.

- ¾Æ¹« ¼³Á¤µµ ÇÏÁö ¾ÊÀº »óÅ¿¡¼± ´ç¿¬È÷ ºñ¾î ÀÖ´Ù.

- add¸¦ ´©¸£¸é, ¿À¸¥ÂÊÀÇ ¼±ÅÃÈ­¸éÀÌ ³ªÅ¸³­´Ù.

- ppp¸¦ ¼±ÅÃÇϰí accept ÇÏ¸é ¾Æ·¡ÀÇ È­¸éÀÌ ³ªÅ¸³ª´Âµ¥, ¿¬°áÇÒ ÀüÈ­¹øÈ£¿Í ¸ðµ© Æ÷Æ®¸¦ Àû¾î ³Ö°í,

- ±× ¾Æ·¡ ÀÖ´Â pap authentification Ç׸ñÀº ¾ÆÀ̵ð¿Í ÆÐ½º¿öµå¸¦ ¿¬°á½Ã¿¡ ¹¯Áö¾Ê°í ÀÚµ¿ÀûÀ¸·Î ó¸®ÇØ ÁÖ´Â ¹æ½ÄÀÌ´Ù.

- costomize¸¦ ¼±ÅÃÇÏ¸é ¸ðµ©°ú °ü·ÃÇÑ ÀÚ¼¼ÇÑ ¼³Á¤À» ÇÒ ¼ö ÀÖ´Ù. ¸ðµç ¼³Á¤ÀÌ ³¡³ª¸é accept¸¦ ´©¸¥´Ù.

<ppp ¼³Á¤µµ netcfg ¸í·ÉÀ¸·Î µ¿ÀÏÇÏ°Ô ½ÇÇàÇÒ ¼ö ÀÖ´Ù.>

[ °ü·Ã ¼³Á¤ ÆÄÀÏ : /etc/ppp/* ]

Áö±Ý ºÎÅÍ´Â ¼­¹ö Ãø¸éÀÇ ³×Æ®¿öÆ® ¼³Á¤ ¸Þ´ºµéÀÌ´Ù. ¾ÆÁ÷±îÁö ¸¹Àº ºÎºÐ¿¡ À־ ¿Ï¼ºµÇÁö ¾ÊÀº ¸Þ´ºµéÀ» °¡Áö°í ÀÖÁö¸¸ ¼­¹ö¸¦ ¿î¿µÇÏ´Â °ü¸®ÀÚ¶ó¸é °ü½ÉÀ» °¡Áö°í ÁöÄѺ¼¸¸ÇÏ´Ù.

3.1.6. dns server ¿î¿µ (network-servertask-domainnameserver)

dns´Â ¾Õ¼­ ¸»ÇÑ ¹Ù¿Í °°ÀÌ µµ¸ÞÀγ×ÀÓ°ú ip ³Ñ¹ö¸¦ À̾îÁÖ´Â ¿ªÇÒÀ» ÇÏ´Â ¼­¹öÀÌ´Ù. ±×·¯³ª ¸¹Àº ¼öÀÇ Å¬¶óÀÌ¾ðÆ®¸¦ °¡Áø ³×Æ®¿öÅ© ¿î¿µÀÚ°¡ ¾Æ´Ï¶ó¸é »ç½Ç dns¸¦ ¿î¿µÇÒ ÀÌÀ¯°¡ ¾øÀ» °ÍÀÌ´Ù. isp³ª ´ëÇÐ, ´ë±â¾÷ µîÀÇ ´ë±Ô¸ð ³×Æ®¿öÅ©ÀÇ dns¸¦ ÀÌ¿ëÇÏ¸é µÇ±â ¶§¹®ÀÌ´Ù. ±×·¯³ª Ȥ½Ã µµÀüÇØ º¸°íÇ ¸¶À½ÀÌ »ý±â´Â ºÐÀÌ ÀÖ´Ù¸é dns howto µîÀÇ ¹®¼­¸¦ »ìÆìº» ÈÄ, linuxconf¸¦ ÀÌ¿ëÇÒ ¼ö ÀÖ´Ù. linuxconf¿¡ ¸¹Àº °ü·Ã ¸Þ´º¸¦ ã¾Æº¼ ¼ö ÀÖÀ» °ÍÀÌ´Ù.

3.1.7. nfs server

À©µµ¿ì¿¡ Àͼ÷ÇÑ »ç¿ëÀÚ¶ó¸é "°øÀ¯"¶ó°í ¼³¸íÇÒ ¼ö ÀÖ´Â °ÍÀ̰ڴÙ. ÇÑ ½Ã½ºÅÛÀÇ ÆÄÀÏÀ» ´Ù¸¥ ½Ã½ºÅÛ¿¡¼­ ¸¶¿îÆ®ÇÏ¿© »ç¿ëÇÒ ¼ö ÀÖµµ·Ï ¸¸µé¾î ÁØ´Ù.

¾Æ·¡ÀÇ ±×¸²Àº network-servertask-exportedfilesystemÀ» ¼±ÅÃÇÑ ÈÄ, add¸¦ Ŭ¸¯ÇÏ¸é ³ª¿À´Â »óÀÚ·Î °øÀ¯ÇÒ ¼­¹ö¿Í Ŭ¶óÀ̾ðÆ®, ±×¸®°í ±ÇÇÑÀ» ¼³Á¤ÇÒ ¼ö ÀÖ´Â ¸Þ´º°¡ ÀÖ´Ù.

- path to export¿¡ °øÀ¯ÇÒ µð·ºÅ丮¸íÀ» Àû°í,

- client name¿¡ Ŭ¶óÀ̾ðÆ®ÀÇ ÁÖ¼Ò¸¦ ½áÁØ ÈÄ,

- ¾²±â, root ±ÇÇѵîÀÇ ¿É¼ÇÀ» Ã¼Å©ÇØ ÁØ´ÙÀ½

- ½Ã½ºÅÛÀ» ÀçºÎÆÃÇϰųª nfs ¼­¹öµ¥¸óÀÎ rcp.nfsd ¿Í rcp.mountd¸¦ Àç½ÇÇàÇÑ´Ù.

- ±×¸²¿¡´Â ÇϳªÀÇ Å¬¶óÀÌ¾ðÆ®¸¸À» Á¤ÇØÁÖ´Â °Íó·³ º¸ÀÌÁö¸¸ ¿©·¯°³¸¦ ¼³Á¤ÇÒ ¼ö°¡ ÀÖ´Ù.

- ±×¸®°í ³ª¼­ À§¿¡ Á¤ÇØÁØ Å¬¶óÀÌ¾ðÆ®¿¡¼­ mount -t nfs slug3:/home /mountpoint ¿Í °°ÀÌ ÇÏ¸é µÈ´Ù.

[ °ü·Ã ¼³Á¤ ÆÄÀÏ : /etc/exports ]

3.1.8. ip aliasing(network-servertask-ipaliasesforvirtualhost)

ÇϳªÀÇ ·»Ä«µå°¡ ¼³Ä¡µÈ ½Ã½ºÅÛ¿¡¼­ ¿©·¯°³ÀÇ ip¸¦ ½á¼­ virtual hostingÀ» ÇÏ°í ½ÍÀ» ¶§ »ç¿ëÇÑ´Ù.

3.1.9. apache web server ¿î¿µ

¾ÆÆÄÄ¡ ¼­¹ö ¼³Á¤ ¸Þ´º¸¦ ½ÇÇàÇÏ¸é ¸î°¡Áö ¿¡·¯°¡ ¹ß»ýÇÏ´Â °ÍÀ» º¼¼ö ÀÖ´Ù. °ÆÁ¤ÇÏÁö´Â ¸»¶ó. ¿©·¯ºÐÀÇ ¹®Á¦°¡ ¾Æ´Ï¶ó ¾Æ¸¶µµ ¾ÆÁ÷±îÁö ¾ÆÆÄÄ¡ ¼­¹öÀÇ ¼³Á¤ÆÄÀÏÀ» ¿Ïº®È÷ linuxconf¿¡¼­ ÀоÁö ¸øÇÏ´Â ¶§¹®À¸·Î º¸ÀδÙ.

±×·¯³ª ±×·± ¿¡·¯¸Þ¼¼Áö¿¡ ´ëÇØ ok ¹öưÀ¸·Î ¸î¹ø¸¸ ÀÀ¼öÇØ ÁÖ¸é, ¾ÆÆÄÄ¡ ¼³Á¤ÆÄÀÏÀ» ±×´ë·Î ¿Å°Ü ³õÀº linuxconfÀÇ ¸ð¾çÀ» º¼¼ö ÀÖ´Ù. ¹°·Ð ¸î°¡Áö ºüÁø °ÍµéÀÌ ÀÖ±â´Â ÇÏ´Ù. ¾ÆÆÄÄ¡ ¼³Á¤¿¡ °üÇØ ¿©±â¼­ ±í°Ô ´Ù·ç´Â °ÍÀº °­ÀÇÀÇ ¸ñÀû¿¡ ¸ÂÁö ¾ÊÀ»Áöµµ ¸ð¸£³ª, ±âº»ÀûÀÎ °Íµé¿¡ ´ëÇØ ¼Ò°³ÇÏ¸é ´ÙÀ½°ú °°´Ù.

- listen on port: À¥¼­¹öÀÇ Æ÷Æ® ¹øÈ£¸¦ ¼³Á¤ÇÑ´Ù.

- hostname lookups: ¼±ÅÃµÈ °æ¿ì, n ·Î±×ÆÄÀÏ¿¡ dns lookup ÇÏ¿© È£½ºÆ®³×ÀÓÀ¸·Î ±â·ÏÇÑ´Ù.

- administrator email : À¥¼­¹ö °ü¸®ÀÚ e-mail ÁÖ¼Ò ±âÀÔ

- errorlog: error ·Î±×°¡ ±â·ÏµÉ ÆÄÀÏÀÇ °æ·Î

- transferlog: À¥¼­¹ö Á¢±Ù¿¡ ´ëÇÑ ¸ðµç ±â·ÏÀ» ³²±æ °æ·Î

- pidfile: ¼­¹öÀÇ process id ¸¦ ±â·ÏÇÒ ÆÄÀÏ

- timeout: Ŭ¶óÀÌ¾ðÆ® ¿äû¿¡ ¼­¹ö°¡ ±â´Ù·Á¾ß ÇÒ ½Ã°£ (ÃÊ´ÜÀ§)

- minimum(maximum) of spare servers: °¢ Ŭ¶óÀ̾ðÆ®ÀÇ Á¢¼Ó¿¡ ´ëÇØ »ý¼ºµÇ´Â ¼­¹öÀÇ ÃÖ¼Ò¼ö¿Í ÃÖ´ë¼ö

- startservers: ¼­¹ö ½ÃÀ۽ÿ¡ µ¿ÀÛÇÒ ¼­¹öÀÇ °³¼ö¸¦ ³ªÅ¸³½´Ù.

- maxclients: À¥ ¼­¹ö¿¡ Á¢±ÙÇÒ¼ö Àִ Ŭ¶óÀÌ¾ðÆ® °³¼ö¸¦ Á¦ÇÑ

- cgi script alias: cgi ½ºÅ©¸³Æ®°¡ ÀÖÀ» µð·ºÅ丮 °æ·Î

- serversideincludes: üũÇϸé ssi ½ÇÇàÀÌ Çã¿ëµÈ´Ù.

- includesnoexec: ssi ¸í·É Áß ¸î°¡Áö¸¦ Á¦¿ÜÇϰí Çã¿ë.

- may excute cgi: cgi ½ÇÇàÀ» °¡´ÉÇÏ°Ô ÇÑ´Ù.

- may follow symlinks: ½Éº¼¸¯ ¸µÅ©¸¦ °¡´ÉÇÏ°Ô ÇÑ´Ù.

linuxconf ¿¡¼­´Â virtual web server ¼³Á¤µµ ÇÒ ¼ö ÀÖÀ¸¸ç, °¢ µð·ºÅ丮¸¶´Ù ´Ù¸¥ ¿É¼ÇÀ» Àû¿ëÇØ ÁÙ ¼öµµ ÀÖ´Ù.

< comanche¶ó´Â ¾ÆÁÖ ÀëÀÖ´Â gui ¾ÆÆÄÄ¡ ¼³Á¤ ÆÄÀϵµ ³ª¿Í ÀÖÀ¸´Ï ²À »ìÆìº¸µµ·Ï ÇÏÀÚ. >

[ ½ÇÁ¦ ¾ÆÆÄÄ¡ ¼­¹ö ¼³Á¤ÆÄÀÏ¿¡´Â À̺¸´Ù ´õ ¸¹Àº ¿É¼ÇµéÀ» Á¤ÇØÁÙ ¼ö ÀÖ´Ù.

¾ÆÆÄÄ¡ ¼­¹ö ¼³Á¤ ÆÄÀÏÀº ¾ËÂ¥ 6.0 ¹èÆ÷ÆÇ ±âÁØÀ¸·Î

/etc/httpd/conf/httpd.conf ¿¡ Çϳª·Î ÇÕÃÄÁ® ÀÖ´Ù. ]

3.2 »ç¿ëÀÚ °èÁ¤ ¼³Á¤

»ç¿ëÀÚ °èÁ¤ ¼³Á¤Àº ³×ºÎºÐÀ¸·Î ÀÌ·ç¾îÁ® Àִµ¥, ±âº» »ç¿ëÀÚ¼³Á¤, Ư¼ö»ç¿ëÀÚ¼³Á¤, À̸ÞÀÏ alias, »ç¿ëÀÚ Á¤Ã¥ÀÌ ±×°ÍÀÌ´Ù.

3.2.1. ±âº» »ç¿ëÀÚ¼³Á¤ (config-useraccount-normal)

±âº» »ç¿ëÀÚ ¼³Á¤¿¡¼­´Â »ç¿ëÀÚµéÀÇ Á¤º¸, ±ÇÇÑ, ¸ÞÀÏ alias µîÀ» º¯°æÇϰųª, »ç¿ëÀÚ¸¦ Ãß°¡/»èÁ¦ ÇÏ°í ·çÆ®¾ÆÀ̵ðÀÇ ÆÐ½º¿öµå¸¦ º¯°æÇÏ´Â ºÎºÐÀÌ ÀÖ´Ù. ÀÌ ºÎºÐÀº »ó´çÈ÷ Á÷°üÀûÀ¸·Î µÇ¾î ÀÖÀ¸¹Ç·Î ÀÚ¼¼ÇÑ ¼³¸íÀº ÇÏÁö ¾Ê°Ú´Ù.

 

 

 

 

 

 

 

 

´Ù¸¸ ¹¹°¡ ÀÖ´ÂÁö¸¸ º¸ÀÚ.

- ¿ÞÂÊÀÇ ±×¸²Àº ÇöÀç »ç¿ëÀÚµéÀÇ ¸®½ºÆ®ÀÌ´Ù.

- °¢°¢ÀÇ »ç¿ëÀÚ¸¦ Ŭ¸¯ÇÏ¸é »ó¼¼Á¤º¸¸¦ º¼ ¼ö ÀÖ°í

- add¸¦ Ŭ¸¯ÇÏ¸é »õ·Î¿î »ç¿ëÀÚ¸¦ µî·ÏÇÒ ¼ö ÀÖ´Â ÆûÀÌ »ý±ä´Ù.

- ¿ÞÂʱ׸²Àº »ç¿ëÀÚ »ó¼¼Á¤º¸ÀÌ´Ù. < comanche¶ó´Â ¾ÆÁÖ ÀëÀÖ´Â gui ¾ÆÆÄÄ¡ ¼³Á¤ ÆÄÀϵµ ³ª¿Í ÀÖÀ¸´Ï ²À »ìÆìº¸µµ·Ï ÇÏÀÚ. >

- base info¿£ ¾ÆÀ̵ð¿Í ±×·ì, Ȩµð·ºÅ丮, ¼Ð Á¾·ùµîÀÌ ¼±ÅõȴÙ.

- param¿£ »ç¿ëÀÚ °èÁ¤ ¸¸±â ÀÏÀÚ µîÀ» Á¤ÇÒ ¼ö Àմµ¥.. Ư¼öÇÑ °æ¿ì ¾Æ´Ï¸é °Çµé Çʿ䰡 ¾ø´Ù.

- mail aliases¿¡¼­´Â ¸ÞÀÏ Æ÷¿öµù°ú aliasingÀ» ÇÒ ¼ö ÀÖ´Ù.

- privileges ¿¡¼­´Â ±âº» »ç¿ëÀÚ¿¡°Ô ÁÖ¾îÁöÁö ¾Ê´Â Ư¼öÇÑ ±ÇÇÑÀ» ÁöÁ¤ÇÒ ¼ö°¡ ÀÖ´Ù.

- ¸¶Âù°¡Áö·Î ±×·ìÁ¤º¸µµ ¿ÞÂʰú °°Àº È­¸éÀ¸·Î º¼¼ö°¡ ÀÖ°í »ó¼¼Á¤º¸¿Í Ãß°¡, »èÁ¦°¡ °¡´ÉÇÏ´Ù.

¸¶Áö¸·À¸·Î ¾Æ·¡±×¸²°ú °°ÀÌ ·çÆ® ÆÐ½º¿öµåµµ °íÄ¥ ¼ö ÀÖ´Ù.




[ °ü·Ã ¼³Á¤ ÆÄÀÏ : /etc/passwd , /etc/shadow ]

3.2.2. Ư¼ö »ç¿ëÀÚ¼³Á¤ (config-useraccount-specialaccounts)

±âº» »ç¿ëÀÚ À̿ܿ¡ ppp, slip, uucp, pop3(mail only) »ç¿ëÀÚ¸¦ ¼³Á¤ÇØ ÁÙ ¼ö°¡ ÀÖ´Ù.

3.2.3. email aliases

(config-useraccount-emailaliases)

ÀÌ ±â´ÉÀº ¸ÞÀϸµ ¸®½ºÆ®¸¦ ¸¸µé°íÀÚ ÇÒ ¶§ À¯¿ëÇÏ°Ô ÀÌ¿ëµÉ ¼ö ÀÖ´Ù.

add¸¦ Ŭ¸¯ÇÏ¸é ¿À¸¥Âʰú °°ÀÌ ³ª¿À´Âµ¥, alias À̸§À» Àû°í ¸®½ºÆ®ÆÄÀÏÀ» Àû¾îÁØ´Ù. ±×¸®°í ³ª¼­ slug-list ¾ÕÀ¸·Î ¸ÞÀÏÀ» º¸³»¸é, ¸®½ºÆ® ÆÄÀÏ¿¡ ÀûÇô ÀÖ´Â ¸ÞÀÏ ÁÖ¼Òµé·Î °¢°¢ ¸ÞÀÏÀÌ º¸³»Áø´Ù.

[ °ü·Ã ¼³Á¤ ÆÄÀÏ : /etc/aliases ]

3.2.4. »ç¿ëÀÚ Á¤Ã¥ (config-useraccount-policies)

´ÙÁß »ç¿ëÀÚ°¡ °¡´ÉÇÑ ¸®´ª½º¿¡¼­ °øÅëÀûÀ¸·Î Àû¿ëµÇ´Â »ç¿ëÀÚ Á¤Ã¥ÀÌ ÇÊ¿äÇÏ´Ù. ÀÌ ¸Þ´º¿¡¼­´Â ÆÐ½º¿öµå °ü·Ã Á¤Ã¥, »ç¿ëÀÚ È¨ µð·ºÅ丮, ÆÛ¹Ì¼Ç, ¼Ð Ãß°¡ µîµîÀ» ÇÒ ¼ö°¡ ÀÖ´Ù. message of the day Ç׸ñÀ» °Çµå·Á º¸¶ó... ·Î±×ÀÎ ÇÒ ¶§ ¸Þ½ÃÁö¸¦ ¶ç¿ï¼ö ÀÖ´Ù.

[ °ü·Ã ¼³Á¤ ÆÄÀÏ : /etc/shells , /etc/motd , /etc/default/useradd ]

3.3. file system (config-filesystem)

ÆÄÀϽýºÅÛ°ú °ü·ÃµÈ ºÎºÐÀÌ´Ù. ÀåÄ¡¸¦ ¸¶¿îÆ® ÇÒ ¼ö ÀÖÀ¸¸ç °¢°¢ÀÇ ÀåÄ¡¿¡ µû¶ó ¿É¼ÇÀ» ºÎ¿©ÇÒ ¼ö ÀÖ´Ù.

°¢°¢ÀÇ µå¶óÀ̺긦 ¼±ÅÃÇÏ¸é ¼¼ºÎ»çÇ×ÀÌ ³ªÅ¸³ª°í ¿É¼ÇÀ» ¹Ù²Ü ¼ö ÀÖ´Ù. ¹°·Ð Ãß°¡µµ °¡´ÉÇÏ´Ù. nfs µå¸®À̺굵 ¸¶¿îÆ®½ÃŰ´Â ¸Þ´º°¡ ÀÖ´Ù. set qouta default ¸Þ´º¿¡¼­´Â »ç¿ëÀÚ°èÁ¤ °ø°£ÀÇ ÇѰ踦 ¼³Á¤ÇÒ ¼öµµ ÀÖ´Ù.

[ °ü·Ã ¼³Á¤ ÆÄÀÏ : /etc/fstab, /etc/mtab ]

3.4. Ãʱâ run level ¼³Á¤ (config-miscellaneousservices-initialsystemservice)

¸®´ª½º¿¡´Â run levelÀÌ Àϰö °¡Áö°¡ Àִµ¥, °¢°¢Àº ´ÙÀ½°ú °°´Ù.

0 - halt

1 - ´ÜÀÏ»ç¿ëÀÚ¸ðµå

2 - nfs¸¦ Á¦¿ÜÇÑ ´ÙÁß»ç¿ëÀÚ¸ðµå

3 - ¿ÏÀüÇÑ ´ÙÁß»ç¿ëÀÚ¸ðµå

4 - »ç¿ëµÇÁö ¾ÊÀ½

5 - x À©µµ¿ì

6 - reboot

ÀÌ Àϰö°¡ÁöÁß ´Ù¼¸±îÁö(1-5)¸¦ µðÆúÆ®·Î »ç¿ëÇÒ ¼ö Àִµ¥, ±× ¼±ÅÃÀ» linuxconf¿¡¼­ ÇÒ ¼ö ÀÖ´Ù.

< tksysv ¶ó´Â ¸í·ÉÀ¸·Î run levelÀ» ´õ¿í ÀÚ¼¼ÇÏ°Ô ÆíÁýÇÒ ¼ö ÀÖ´Ù. >

[ °ü·Ã ¼³Á¤ ÆÄÀÏ : /etc/inittab ]

3.5. lilo °ü·Ã ¼³Á¤ (config-bootmode-lilo)

¿ÞÂÊ ±×¸²¿¡¼­ º¸À̵íÀÌ, lilo °ü·Ã ¼³Á¤À» ÇÒ ¼ö ÀÖ´Ù. ºÎÆÃ ½ÃÀÇ ¿É¼Ç º¯°æ°ú ºÎÆ® ¼½ÅÍ, ¾ÏÈ£°É±â µîÀÌ °¡´ÉÇÏ´Ù.

ÀÌ°Í ¿Ü¿¡µµ ´Ù¸¥ ÆÄƼ¼Ç¿¡ À©µµ¿ì¸¦ ¼³Ä¡ÇßÀ» ¶§ÀÇ ¼³Á¤ ¸Þ´º¿Í »õ·Î¿î Ä¿³ÎÀ» ÄÄÆÄÀÏÇÏ¿© ±× Ä¿³Î·Î ºÎÆÃ ½ÃŰ´Â ¸Þ´ºµµ ÀÖ´Ù.

[ °ü·Ã¼³Á¤ ÆÄÀÏ : /etc/lilo.conf ]

3.6. ±×¿ÜÀÇ °Íµé

³ª¸ÓÁö °ÍµéÀº ´Ù ÀÚÀßÇÑ ¸Þ´ºµéÀÌ´Ù. Çѹø Âß Æ¦¾î º¸±â¸¸ ÇÑ´Ù.

3.6.1. shutdown/reboot (control-controlpanel-shutdown/reboot)

linuxconf¿¡¼­ shutdown °ú rebootÀ» ½ÇÇàÇÒ ¼ö°¡ ÀÖ´Ù. ±×·¯³ª º° ¾µ¸ð°¡ ÀÖ³ª ½Í´Ù.

3.6.2. cron µî·Ï (control-controlpanel-configuresuperuserschedule)

ÀÏÁ¤ÇÑ ½Ã°£¸¶´Ù ¹é¾÷ µîÀÇ ÀÛ¾÷À» ÀÚµ¿À¸·Î ½ÇÇàÇϵµ·Ï ÇØ³õ´Â °ÍÀÌ cronÀÌ´Ù.

[ °ü·Ã ¼³Á¤ ÆÄÀÏ : /etc/crontab ]

3.6.3. ¸®´ª½º ¼³Á¤ÆÄÀÏ ¸®½ºÆ®¸¦ º¸°í ½Í´Ù¸é

(control-controlfilesandsystem-configureallconfigurationfile)

3.6.4. ¿©·¯°³ÀÇ ½Ã½ºÅÛ ¼³Á¤À» ¸¸µé¾î µÎ°íÇÁ´Ù¸é ?

(control-controlfilesandsystem-configuresystemprofile)

3.6.5. ½Ã°£°ú ³¯Â¥ °íÄ¡±â (control-dateandtime) ^^;

< timetool À̶ó´Â °ÍÀ» ½áµµ µ¿ÀÏÇÑ ±â´ÉÀ» ÇÒ ¼ö ÀÖ´Ù. >

3.6.6. Űº¸µå ¼Â°ú »ö±ò... (control-features)

[ °ü·Ã ¼³Á¤ ÆÄÀÏ : /etc/sysconfig/keyboard ]

ÀÌ»óÀ¸·Î linuxconf ÀÇ ¸Þ´ºµéÀ» »ìÆìº¸¾Ò´Ù. ¾ÆÁ÷Àº ÀÛ¼ºµÇÁö ¾ÊÀºÃ¤·Î ³²¾Æ ÀÖ´Â ºÎºÐµµ ÀÖ°í, ºÒ¾ÈÁ¤ÇÑ ºÎºÐµéµµ ÀÖÁö¸¸, ¸Å·ÂÀûÀÎ ÇÁ·Î±×·¥ÀÓ¿¡´Â Ʋ¸²ÀÌ ¾ø´Â °Í °°´Ù. Á»´õ »ç¿ëÀÚ¿¡°Ô ÇÊ¿äÇÑ ±â´ÉµéÀ» Ãß°¡½Ã۰í, ¼º´ÉÀ» °³¼± ½ÃŲ´Ù¸é ÇÏ´Â ¸¶À½À¸·Î ÃֽйöÀüÀ» ´Ù¿î ¹Þ¾Æ ¼³Ä¡Çغ¸°í ¹ßÀüÇÑ Á¡À» ¼Ò°³ÇÏ´Â °ÍÀ¸·Î ÀÌ °­ÀÇ·ÏÀ» ¸¶Ä¥±î ÇÑ´Ù.

4. linuxconf ÃֽŹöÀü ¸Àº¸±â

4.1. ±¸Çϱâ : linuxconf ÃֽйöÀüÀº 1.16r3 ·Î ´Ù¿î·Îµå ÇÏ·Á¸é

http://www.solucorp.qc.ca/linuxconf/download.hc ¿¡ °¡¸é µÈ´Ù.

±×°÷¿¡¼­ redhat 6.0À» Ŭ¸¯Çϰí rpm ÆÄÀÏÀ» ´Ù¿î ¹ÞÀÚ.

4.2. ¼³Ä¡Çϱâ : ¼³Ä¡ °úÁ¤Àº ¸Å¿ì ½±´Ù.

rpm -uvh linuxconf-1.16r3-1.i386.rpm ¸í·ÉÀ¸·Î ¼³Ä¡Ç϶ó.

4.3. »ìÆìº¸±â

- ¾Ç !!! ÇѱÛÈ­°¡ µÇ¾ú´Ù... ¾à°£ ¾î¼³ÇÁ±ä ÇÏÁö¸¸ µµ¿ò¸» ÆÄÀϱîÁö ÇѱÛÈ­°¡ µÇ¾ú´Ù.

- ³×Æ®¿öÅ© ¼­¹öŽºÅ©¿¡ »ï¹Ù¿Í ¼¾µå¸ÞÀÏ °ü·Ã ¼³Á¤ÀÌ ¿Ï¼ºµÇ¾ú´Ù.

(½ºÆÔ¸ÞÀÏ ¹æÁö ¼³Á¤µµ Àֳ׿ä.)

- ¾ÆÆÄÄ¡ °ü·Ã ¸Þ´º°¡ ´õ ´Ã¾ú´Ù. (¸ðµâ°ú ssi °ü·Ã)

- ¹æÈ­º® °ü·Ã ¼³Á¤ÀÌ »ý°å´Ù.

- ½Ã½ºÅÛ »óȲº¸±â ¸Þ´º°¡ »ý°å´Ù.

- À̿ܿ¡µµ ¸¹Àº ºÎºÐÀÇ ¼Ò¼ÒÇÑ °ÍµéÀÌ °íÃÄÁ³´Ù.

- ±Ùµ¥ ¾Æ¹«·¡µµ Àüº¸´Ù ½Ã½ºÅÛ ÀÚ¿øÀ» ¸¹ÀÌ ¸Ô´Â´Ù.

4.4. ¸¶Áö¸·À¸·Î ±×¸²À» º¸¸é¼­ ÀÌ °­ÀÇ·ÏÀ» ¸¶Ä¥±î ÇÕ´Ï´Ù

´ÙÀ½ÀåÀº linuxconf ÃֽŹöÀü ĸÃÄÈ­¸éÀÔ´Ï´Ù.




±×·³ À̸¸ °­ÀǸ¦ ¸¶Ä¨´Ï´Ù. ³¡±îÁö µé¾îÁּż­ °¨»çÇÕ´Ï´Ù. ´ÙÀ½¹ø °øµ¿Ã¼ ¼¼¹Ì³ª¶§µµ ´Ù½Ã linuxconf¸¦ ºÙÀâ°Ô µÉ °Í °°´Ù´Â °­ ÇÑ ¿¹°¨À» ´À³¢¸é¼­...




6. Âü°íÀÚ·á

½Ö¿ëÁ¤º¸Åë½Å ³×Æ®¿÷ ÀÚ·á

Çѱ¹Á¤º¸º¸È£¼¾Å¸ »ç·ÊÁý

7. Èıâ.

óÀ½¿¡ °èȹÇÏ¿´´ø Ãʺ¸ÀÚ¸¦ À§ÇÑ °­Àǰ¡ ¿ø°í¸¦ ¾²´Ùº¸´Ï ³×Æ®¿÷°ú º¸¾È¿¡ ³Ê¹« ¸¹ÀÌ ÇҾֵǾ °á·ÐÀûÀ¸·Î Á¦´ë·Î ±â¼úÇÏÁöµµ ¸øÇß´Ù.(Áö¸éÀÇ ¹®Á¦µµ ¸¹ÀÌ ÀÖ¾úÁö¸¸.). Ȥ, ±×·± °­ÀǸ¦ µè°íÀÚ ¿Ô´ø ¸®´ª¼­ ¿´´Ù¸é ÀÌ ÀÚ¸®¿¡¼­ Á¤¸» ¹Ì¾ÈÇÔÀ» ÀüÇÏ°í ½Í´Ù.

±×·¯³ª Á¶¸¸°£ ÁغñÇß´ø ³ª¸ÓÁö ÀÚ·áµéµµ ¼¼¹Ì³ª Ȩ¿¡ µî·ÏÀ» ÇÒÅ×´Ï ±× Á¡À» °¨¾ÈÇÏ½Ã°í ³Ê±×·´°Ô ÀÌÇØÇØ Áֽñ⸦ ¹Ù¶õ´Ù. Áú¹® ¶ÇÇÑ ¾ðÁ¦µçÁö ±â²¨¿î ¸¶À½À¸·Î ÀÀÇÒ ¿ëÀǰ¡ ÀÖÀ¸´Ï±î.

°©ÀÚ±â ÇѲ¨¹ø¿¡ ¿©·¯ °¡ÁöÀÇ ÀϵéÀÌ °ãÄ¡´Â ¹Ù¶÷¿¡ ¿ø°í¸¦ ¾µ ½Ã°£ÀÌ ³Ê¹« ¾ø¾ú´Ù. ±×·¡¼­ ¸çÄ¥À» ¹ã»õ°í ÀÌÁ¦¼­¾ß ¿ø°í¸¦ ¸¶¹«¸®ÇÑ´Ù. ÀÌ°Ç ´Ù °ÔÀ¸¸§¿¡ ´ëÇÑ ´ë°¡¶ó°í »ý°¢ÇÑ´Ù.

´ÙÀ½¹ø ¼¼¹Ì³ª¶§´Â Á¤¸» ¹Ì¸®¹Ì¸® Áغñ¸¦ ÇÒ ¼ö ÀÖµµ·Ï ÇØ¾ß ÇÒ °Í °°´Ù. ±×¸®°í ³»¿ë ¶ÇÇÑ º¸´Ù ¸®´ª½ºÀûÀÎ °ÍÀ» °¡Áö°í °­ÀǸ¦ ÇÒ »ý°¢ÀÌ´Ù. Áö±Ýó·³ µüµüÇϰí Àç¹Ì¾ø´Â ¾ê±âµéÀÌ ¾Æ´Ï¶ó.

º°°ÍÀÌ ¾Æ´Ñ ³»¿ëÀ» ¾²¸é¼­ ³Ê¹« ¸»ÀÌ ¸¹Àº °Í °°Áö¸¸ ±×·¡µµ ³ªÀÇ ÀÌ ÀÛ¾÷¿¡ µµ¿òÀ» ÁØ ¸¹Àº »ç¶ûÇÏ´Â À̵éÀÌ ÀÖ´Ù. ±×µé¿¡°Ô °í¸¶¿òÀ» ÀüÇÏ°í ½Í´Ù. ^.^ ............

½½·¯±×ÀÇ ´ëÇ¥ÀÌÀÚ ·¹µåÇÞ ¸®´ª½º ¿Ïº®°¡À̵åÀÇ ÀúÀÚÀÎ »ç¶ûÇÏ´Â ¾Æ¿ì Ã¢ÈÆÀÌ¿Í ÀÌ»Û À¥ÆÀÀÇ ±âµÕ ű¸¸®(°í¸¿´Ù ű¸¶ó!) ±×¸®°í ¼³Ä¡¿¡ ´ëÇÑ ºÎºÐÀ» ÀÛ¾÷ÇØÁØ ÂøÇÑ Çö¹Ì³ìÂ÷ Á¾±ÙÀÌ, ·¦°ú À¯¸Ó°¡ °¡µæÇÑ ÇÏ¿öµå Çü±¹,»ýȰ Àü¼±¿¡¼­ ¿­½ÉÈ÷ »ì°í ÀÖ´Â È«±ÇÀÌ,µµ±Õ ¼¼¹Ì³ª Àå¼Ò °ü°è·Î °í»ýÇÑ °æÈ£ ±×¸®°í º¸±â¸¸ ÇØµµ µçµçÇÑ È£¹Î,À̻ۻÇ,¹ö±×Á¾¹Î,¿í±Ô,ȣö,Áö¿õ,¿µ±Ù,¿ëÈ£,¼­¿µ,±ÙÈ£,ÁØÇü ±×¿ÜÀÇ ¿ì¸® ÀÌ»Û ½½·¯±×ÀÇ ¾Æ¿ìµé°ú soluxÀÇ ¼º¹Ì,°æ¶õ,½Â¹Ì,¹Ì°æ,¿µ³²,°æÈ­,È¿Á¤ ±×¿ÜÀÇ ¼÷´ë Ä£±¸µé ¸ðµÎ¿¡°Ô °í¸¶¿òÀ» ÀüÇÑ´Ù.

±×¸®°í ¾ðÁ¦³ª °í¸¶¿î ³ªÀÇ »ç¼öÀÌÀÚ ½Ã½ºÅÛ °ü¸®ÀÚÀÇ ÀÚ¼¼¸¦ Àϱú¿öÁØ ±èÃß°ï ¼±»ý´Ô°ú »ç¼ö¸¦ À߸ø ¸¸³­ ´ö¿¡ °í»ý¸¸ Çϴ ȿö°ú ½Åȯ¿¡°Ôµµ °í¸¶¿òÀ» ÀüÇÑ´Ù.-ö¾Æ Áø½ÉÀ¸·Î °áÈ¥ ÃàÇÏÇÑ´Ù. ÇູÇÏ°Ô »ì¾Æ¶ó!!! ^.^.............

¾ðÁ¦³ª µçµçÇÑ ³ªÀÇ µ¿·á Á¦Èƾ¾¿Í ºÒ¶õ¼­¿¡¼­ ¼öµµ »ýȰÀ» ÇÏ°í °è½Ç ²Ãº£ ¼ö»ç´Ô¿¡°Ôµµ ¾ÈºÎ¿Í ÇÔ²² °í¸¶¿òÀ» ÀüÇÏ°í ½Í´Ù.

¾Æ¿ï·¯ ³¡±îÁö ¿ø°í¸¦ ±â´Ù·ÁÁØ ³Ê¹«³ª ÂøÇÏ°í ¼øÁøÇÑ Ã»³â ¾ÆÆ®½Ç¸® »óÇöÀÌ¿Í ³«¿± »ó¿Ï, ÀÌÀüµµ»ç´Ô,°øµ¿Ã¼ ȸÀå ¼Û¿µÈÞ¾¾,°í»ýÇÏ°í °è½Ç ±è±âž¾¿¡°Ôµµ ÁøÁ¤ °í¸¶¿òÀ» ÀüÇÑ´Ù.

³¡À¸·Î ³»°¡ Á¤¸» »ç¶ûÇÏ´Â À̼¼»ó ¹«¾ù°úµµ ¹Ù²Ü¼ö ¾ø´Â ³ªÀÇ ¾Æ³» ±Ý¿ø°ú ¿ø°í ¾´´Ù°í Á¦´ë·Î ³î¾ÆÁÖÁöµµ ¸øÇÑ ³ªÀÇ »ç¶ûÇÏ´Â ¾Æµé ÃÖ¿µ°ú ¼¼¸°ÀÌ¿¡°Ô ¾ÆºüÀÇ »ç¶ûÀ» ÀüÇÑ´Ù.

ÃÖÈÄ·Î ³ª¸¦ »õ·Î¿î ¼¼»óÀ¸·Î À̲ö ¸®´ª½º¿Í ¸®´ª½º¸¦ »ç¶ûÇÏ°Ô ¸¸µç gnu Á¤½ÅÀÇ ¹ß¿øÁöÀÎ ÀÚÀ¯¼ÒÇÁÆ®¿þ¾î Àç´Ü¿¡°Ô °¨»ç¸¦ µå¸°´Ù.