IPsec¤Ï¥È¥ó¥Í¥ë¤Ç¤Ï¤¢¤ê¤Þ¤»¤ó
IPsec¤ÏÆñ¤·¤¤¡£
Æñ¤·¤¯¤·¤Æ¤¤¤ë¤Î¤¬¡¢³Æ½ñ¤¬¡Ö¥È¥ó¥Í¥ë¡×¤È¤¤¤¦É½¸½¤ò»È¤Ã¤Æ¤¤¤ë¤«¤é¤À¡£
¥È¥ó¥Í¥ë¤È¤¤¤¦³µÇ°¤Ï¼Î¤Æ¤Þ¤·¤ç¤¦¡£¤Ê¤¼¤Ê¤é¡¢IPsec¤ÎÄÌ¿®¤Ë¤ª¤¤¤Æ¡¢¥È¥ó¥Í¥ë¤Ï
¹½ÃÛ¤µ¤ì¤Æ¤¤¤Ê¤¤¤«¤é¤Ç¤¹¡£¤½¤â¤½¤â¡¢¥¤¥ó¥¿¡¼¥Í¥Ã¥È¤ÎÀ¤³¦¤Ç¥È¥ó¥Í¥ë¤Ã¤Æ²¿¡©
¥È¥ó¥Í¥ë¤È¤¤¤¦ÀâÌÀ¤ò¤¹¤ë¤«¤é¡¢
¡Ö¥È¥ó¥Í¥ë¤òºî¤ì¤Ð¡¢¤½¤ÎÃæ¤Ï¥»¥¥å¥ê¥Æ¥£¤¬Êݤ¿¤ì¤Æ¤¤¤ë¤ó¤Ç¤¹¤è¤Í¡£¡×¡¦¡¦¡¦¥È¥ó¥Í¥ë¤ÎÃæ¤Ã¤Æ²¿¡©
¡ÖÄÌ¿®ÍѤΥե§¡¼¥º£²¤Î¥È¥ó¥Í¥ë¤ÎÃæ¤Ë¥Ç¡¼¥¿¤òÄ̤»¤Ð¤¤¤¤¤ó¤¸¤ã¤Ê¤¤¤Ç¤¹¤«¡©¡×¡¦¡¦¡¦
¥Õ¥§¡¼¥º£²¤Ë¥È¥ó¥Í¥ë¤Ï¤Ç¤¤Æ¤¤¤Þ¤»¤ó¡£
¤È¤¤¤Ã¤¿¡¢°ã¤¦µ¿Ìä¤äÌ·½â¤¬¤Ç¤Æ¤¤Þ¤¹¡£
¥È¥ó¥Í¥ë¤Ï¼Î¤Æ¤Æ¤¯¤À¤µ¤¤¡£
¢¡¼¡¤Î²òÀâ¤ÇÍý²ò¤·¤Æ¤¯¤À¤µ¤¤¡£
£±¡¥¸°¸ò´¹¡¡¡¦¡¦¡¦UDP¤ÎIKE¥Ñ¥±¥Ã¥È¤ò¸ò´¹¡£¥È¥ó¥Í¥ë¤Ï¤Ç¤¤Þ¤»¤ó¡£
¥¤¥ó¥¿¡¼¥Í¥Ã¥È¾å¤Ç°ÂÁ´¤ËÄÌ¿®¤ò¤¹¤ë¤¿¤á¤Ë¡¢¤ª¸ß¤¤¤òǧ¾Ú¤·¤¿¤ê¡¢°Å¹æÊý¼°¤ò·è¤á¤Þ¤¹¡£
¥Õ¥§¡¼¥º£±¤È¥Õ¥§¡¼¥º£²¤Ëʬ¤«¤ì¤Þ¤¹¡£
¥Õ¥§¡¼¥º¤Ï£±¤Ä¤Ç¤â¤¤¤¤¤Î¤Ç¤¹¤¬¡¢¤è¤ê¹â®¤Ë¤¹¤ë¤¿¤á¤Ëʬ¤±¤Æ¤Þ¤¹¡£¡Ê¤³¤Î¥ì¥Ù¥ë¤Ç»ß¤á¤Æ¤ª¤¤Þ¤¹¡£¡Ë
£²¡¥IPsec¤ÎÄÌ¿®¡¦¡¦¡¦ESP¤Î¥Ñ¥±¥Ã¥È¡£Ä̾ï¤Î¥×¥í¥È¥³¥ë¤¬TCP¤äUDP¤Ç¤Ï¤Ê¤¯ESP¤Î¥Ñ¥±¥Ã¥È¤Ç¤¹¡£
ÅöÁ³¡¢¥È¥ó¥Í¥ë¤Ï¤Ç¤¤Þ¤»¤ó¡£
¸°¸ò´¹¤Î¥Õ¥§¡¼¥º£²¤Ç·è¤á¤¿°Å¹æ²½¤äǧ¾Ú¤ÎÊý¼°¤ÇIPsec¤ÎÄÌ¿®¤ò¤·¤Þ¤¹¡£
¢¡ÍѸì
»î¸³Âкö¤È¤·¤Æ¡¢¤¤¤¯¤Ä¤«³Ð¤¨¤Þ¤·¤ç¤¦¡£
¡Ê£±¡ËSA¡ÊSecurity Assosiation)
¥Õ¥§¡¼¥º£±¡§ISAKMP¡¡SA¡¢¤Ä¤Þ¤êÀ©¸æÍѤÎSA¤òºî¤ë¡£¡¦¡¦¡¦¤³¤ÎSA¤ò¥Õ¥§¡¼¥º£²¤¬ÍøÍѤ¹¤ë¡£
¥Õ¥§¡¼¥º£²¡§IPsec¡¡SA¡¢¤Ä¤Þ¤êÄÌ¿®ÍѤÎSA¤òºî¤ë¡£¡¦¡¦¡¦¤³¤ÎSA¤òIPsecÄÌ¿®¤¬»ÈÍѤ¹¤ë¡£
¡Ê£²¡ËIKE(Internet Key Excange)
IKE¤Ïɬ¿Ü¤Ç¤Ï¤Ê¤¤¡£¤·¤«¤·¡¢»È¤¦¾ì¹ç¤¬Â¿¤¤¡£
Íפϡ¢IPsecÄÌ¿®¤Î¤¿¤á¤Î¸°¤¬Å¬Àڤˤʤµ¤ì¤ì¤Ð¤è¤¤¡£
£²¤Ä¤Î¥Õ¥§¡¼¥º¤Ç¥«¥®¸ò´¹¤ò¤¹¤ë¡£
¡Ê£³¡Ë¥×¥í¥È¥³¥ë
¡ESP(Encapsulating Security Payload)¡§°Å¹æ²½¡Üǧ¾Ú¡¦¡¦¡¦¤³¤Ã¤Á¤ò³Ð¤¨¤ì¤Ð¤è¤¤¡£
¢AH(Authentication Header)¡§Ç§¾Ú¤Î¤ß¡¦¡¦¡¦¤³¤Ã¤Á¤Ï»È¤ï¤ì¤Ê¤¤¡£
¡Ê£´¡Ë¥â¡¼¥É
¡¥È¥é¥ó¥¹¥Ý¡¼¥È¥â¡¼¥É¡§Ã¼Ëö´Ö
¢¥È¥ó¥Í¥ë¥â¡¼¥É¡§VPNÁõÃÖ´Ö¡¦¡¦¡¦¤³¤Ã¤Á¤¬¼çή¡£¤Ê¤¼¤«¡£
¥ë¡¼¥¿¤ËÀßÄꤹ¤ì¤Ð¡¢PC¤¹¤Ù¤Æ¤ËÀßÄꤹ¤ëɬÍפ¬¤Ê¤¤¤«¤é¡£
