Similar documents
内閣官房情報セキュリティセンター(NISC)

AirMac ネットワーク構成の手引き

AirMac ネットワーク for Windows

untitled

Microsoft PowerPoint - 情報システム pptx

Mac OS X Server Windows NTからの移行

第2回_416.ppt

FirePass Edge Client TM Edge Client LAN Edge Client 7.0 Edge Client Edge Client Edge Client Edge Client Edge Client Edge Client LAN Edge Client VPN Wi

2006/6/ /9/1 2007/11/9 () 2011/4/ ( ()) ii

1. PKI (EDB/PKI) (Single Sign On; SSO) (PKI) ( ) Private PKI, Free Software ITRC 20th Meeting (Oct. 5, 2006) T. The University of Tokush

ERA-201D1

CPE9V1.0&AP615V2.0-C01说明书-电子档

TCP/IP Internet Week 2002 [2002/12/17] Japan Registry Service Co., Ltd. No.3 Internet Week 2002 [2002/12/17] Japan Registry Service Co., Ltd. No.4 2

untitled

情報セキュリティの現状と課題

1 Linux UNIX-PC LAN. UNIX. LAN. UNIX. 1.1 UNIX LAN. 1.2 Linux PC Linux. 1.3 studenta odd kumabari studentb even kumabari studentc odd kumabari student

Docodemo-Net (Q&A ) Web Web ( 1.1 WPA2 (WEP ) LAN WEP WPA2 WPA2 Docodemo-Net WEP 2 Docodemo-Net lab

総セク報告書(印刷発出版_.PDF

IP Windows Word Excel Web Web Word Excel XHTML CSS Web Windows Word Excel Web XHTML CSS

11 Windows XP IP WEP (Web )

Part 1 IT CPU IT IT 1998 Windows NT Server 4.0, Terminal Server Edition 1 Windows Based Terminal WBT Windows CE 1 100Mbps 1Gbps LAN OS 1 PC 1 OS 2

Mac OS X Server QuickTime Streaming Server 5.0 の管理(バージョン 10.3 以降用)

PX-K100

LAN

FileMaker Server Getting Started Guide

IPA

FileMaker Server Getting Started Guide

FileMaker Server Getting Started Guide

IP IP DHCP..

ウイルスバスター ビジネスセキュリティ インストールガイド

news71.dvi


"CAS を利用した Single Sign On 環境の構築"

1

背景

Si-R30取扱説明書

Cisco Aironet 1130AG アクセス ポイント クイック スタート ガイド

untitled

AirMac ネットワーク構成の手引き AirMac ユーティリティ編

news39-web.dvi

SRX300 Line of Services Gateways for the Branch

11 Mac OS X (IP ) (Web )

Logitec NAS シリーズ ソフトウェアマニュアル

LHD-LAN_E_G_PDF.}.j...A...p65

Epson Print Admin

EPSON PX-203 ユーザーズガイド

5 ISMS 5 4 PC PC USB PDA 2

1. 2. ( ) Secure Secure Shell ssh 5. (xinetd TCP wrappers) 6. (IPsec) 7. Firewall 2

BIG‑IP Access Policy Manager | F5 Datasheet

FileMaker Server 9 Getting Started Guide

Cisco® ASA シリーズルーター向けDigiCert® 統合ガイド


16

"CAS を利用した Single Sign On 環境の構築"

完成卒論.PDF


Microsoft Windows, Windows CE, Microsoft Corporation Citrix ICA Citrix Presentation Server Citrix Systems, Inc IBM IBM Corporation

LAN IP MAC IP MAC MAC IP IP IP IP IP IP [1][2][3] [4][5] IP IP IP IP (MARS MAC Address Reporting System) [6] IP IP MAC 2 MAC MATT MAC Address Tracing

untitled

電子マネー・システムにおけるセキュリティ対策:リスク管理に焦点を当てて

スタートアップガイド《YSシリーズ》

Logitec NAS シリーズ ソフトウェアマニュアル

橡セキュリティポリシー雛形策定に関する調査報告書

YMS-VPN1_User_Manual

Teradici Corporation # Canada Way, Burnaby, BC V5G 4X8 Canada p f Teradici Corporation Teradi

AirMac Extreme Technology Overview

untitled

LAN FTP 1 FTP 047 PC 016 FTP HTTP 024 iphone Camera Control Pro 2 ii

FileMaker Instant Web Publishing Guide

LANFTP 1 FTP 047 PC 016 FTP HTTP 024 iphone Camera Control Pro 2 ii

コロナ社

Epson Print Admin

NEC NP-P502HJD/NP-P502WJD APPS 1. APPS IMAGE EXPRESS UTILITY Miracast WEB WEB IMAGE EXPRESS UTILITY LITE 2

Mac OS X Server メールサービスの管理(バージョン 10.3 以降用)

1 1 LAN LAN LAN LAN Pre Shared Key: LAN 1. UTP 10BASE-T/100BASE-TX MDI/MDI-X 2 AT-TQ

Transcription:

2.1... 1 2.1.1.1... 1 (1). 1 (2)... 1 (3)... 1 2.1.1.2... 1 (1)... 1 (2)... 1 (3)... 1 2.1.1.3... 1 (1)... 1 (2)... 1 (3)... 1 2.1.1.4... 2 2.1.1.5... 2 2.2... 3 2.2.1... 3 2.2.1.1... 3... 3... 3 (1)... 3 2.2.1.2... 8... 8... 8 (1)... 8 (2)... 9 2.2.1.3... 9... 9... 10 (1)... 10 (2)... 10 2.2.1.4... 12... 12... 13-1

(1)... 13 (2)... 14 2.2.1.5... 15... 15... 15 (1)... 15 2.2.1.6 鍵... 16... 16... 17 (1)... 17 (2)... 18 2.2.2... 20 2.2.2.1... 20... 20... 20 (1)... 20 (2)... 20 2.2.2.2... 22... 22... 22 (1)... 22 (2)... 24 2.2.2.3... 24... 24... 25 (1)... 25 (2)... 27 2.2.2.4... 27... 27... 27 (1)... 27 (2)... 28 2.3... 29 2.3.1... 29 2.3.1.1... 29... 29-2

... 29 (1)... 29 (2)... 30 (3)... 32 (4)... 33 (5)... 34 2.3.2... 35 2.3.2.1... 35... 35... 35 (1)... 35 (2)... 36 (3)... 37 2.3.2.2... 37... 37... 37 (1)... 37 (2)... 38 2.3.2.3... 39... 39... 40 (1)... 40 (2)... 41 2.3.3... 43 2.3.3.1... 43... 43... 43 (1)... 43 (2)... 44 2.3.3.2... 45... 45... 45 (1)... 45 (2)... 46 (3)... 48 2.3.3.3 DNS... 50-3

... 50... 50 (1) DNS... 50 (2) DNS... 51 2.3.4... 53 2.3.4.1... 53... 53... 53 (1)... 53 (2)... 56 (3)... 57 2.3.4.2... 57... 57... 57 (1)... 57 (2)... 58 (3)... 58 2.3.4.3... 60... 60... 60 (1)... 60 (2)... 60 2.4... 62 2.4.1... 62 2.4.1.1 IPv6... 62... 62... 62 (1) IPv6... 62 (2) IPv6... 63 A.1 A.1.1 A.1.2 A.1.3 A.1.4-4

2.1 2.1.1.1 (1) (2) (3) 2.1.1.2 (1) (2) (3) 2.1.1.3 (1) (2) (3) 1

2.1.1.4 2.1.1.5 JPCERT multiple factors authentication PC PC PC 2

2.2 2.2.1 2.2.1.1 1.4.1.1 1.5.2.4 (1) (a) IC 3

1.5.1.1(1)(b) (b) ( ) ( ) ( ) (c) ( ) 4

( ) (d) (e) ( ) ( ) 5

(f) ( ) ( ) ( ) ( ) ( ) ( ) ( ) ( ) ( ) ( ) (g) single factor authentication / single authentication 6

(h) (i) (j) (k) (l) 7

Unix su root root 2.2.1.2 1.4.1.1 1.5.2.4 (1) (a) DAC Discretionary Access Control (b) 8

IP (c) (MAC) (2) (a) 1.3.1.3(1)(b) 2.2.1.3 9

1.4.1.1 1.5.2.4 (1) (a) (b) (c) (d) 2 (2) (a) 10

(b) (c) (d) (e) (f) 11

(g) (h) (i) ID 2.2.1.4 12

1.4.1.1 1.5.2.4 (1) (a) (b) (c) 13

(d) (e) PC (2) (a) (b) 14

(c) 2.2.1.5 1.4.1.1 1.5.2.4 (1) (a) 15

2.2.1.1 2.2.1.4 2.2.1.1 2.2.1.4 2.2.1.1 2.2.1.4 Authenticity Non-Repudiation 2.2.1.1 2.2.1.4 2.2.1.1 2.2.1.4 2.2.1.6 鍵 16

1.4.1.1 1.5.2.4 (1) (a) (b) (c) (d) (e) (f) 17

(g) 鍵 鍵 ISO/IEC 19790 鍵 鍵 鍵 (IPA) JCMVP Japan Cryptographic Module Validation Program (h) 鍵 鍵 鍵 鍵 鍵 JIS X 19790:2007 7.5 ISO/IEC 19790:2006 (2) 18

(a) 鍵 鍵 鍵 鍵 (b) CRYPTREC 19

2.2.2 2.2.2.1 (1) (a) (b) (2) (a) 20

(b) ( ) ( ) ( ) ( ) ( ) ( ) ( ) ( ) (c) (d) (e) 21

(f) (g) 2.2.2.2 (1) (a) 22

(b) (c) (d) 23

(2) (a) (b) 1.5.2.7(1)(a) 2.2.2.3 24

(1) (a) 3-way handshake Flood (b) (c) (d) 25

(e) DDoS (f) (g) 26

(2) (a) 2.2.2.4 (1) (a) 27

(b) (c) (2) (a) 28

2.3 2.3.1 2.3.1.1 (1) (a) (b) 鍵 (c) 29

(d) (e) (f) (g) (h) (2) 30

(a) (b) (c) (d) (e) (f) (g) ( ) ( ) 31

(3) (a) PC 鍵 (b) (c) (d) 32

(e) (f) (4) (a) (b) (c) (d) 33

(e) (5) (a) (b) 34

2.3.2 2.3.2.1 (1) (a) (b) PC (c) 35

(d) USB (2) (a) (b) (c) 1 6 36

(3) (a) 2.3.2.2 (1) (a) (b) PC PC 37

PC PC (c) PC PC PC (d) PC PC PC PC (e) PC PC PC (f) (2) (a) 38

(b) PC PC PC (c) PC PC PC PC USB OS (d) PC (e) 2.3.2.3 39

(1) (a) (b) (c) (d) 40

(e) DNS (2) (a) (b) 1 1 (c) 41

(d) (e) (f) CPU 42

2.3.3 2.3.3.1 (1) (a) (b) SMTP (c) (SPF)DNS SPF SPF IP SPF IP IP 43

(2) (a) (b) HTML JavaScript 44

2.3.3.2 OS 2.3.2.3 2.2.2.3 (1) (a) ( ) ( ) ( ) ( ) (CMS) OS 45

( ) SSL TLS SSL TLS GPKI (b) (2) (a) ( ) URL ( ) ( ) ( ) ( ) ( ) 46

(IPA) http://www.ipa.go.jp/security/awareness/vendor/programming/index.html Web http://www.ipa.go.jp/security/vuln/websecurity.html URL ID SQL OS SQL 47

SQL HTML ID ID ID ID URL Cookie ID SSL Cookie secure (b) 2 (3) (a) 48

ActiveX JavaScript Java Cookie (b) (c) ( ) 鍵 SSL TLS ( ) (d) 49

2.3.3.3 DNS DNS Domain Name System IP DNS DNS DNS DNS DNS (1) DNS (a) DNS DNS DNS DNS ISP DNS (b) DNS DNS (c) DNS 50

DNS 3 (d) DNS DNS (e) DNS DNS DNS DNSSEC DNSSEC 鍵 DNS DNS DNS DNS DNSSEC (2) DNS (a) DNS DNS 51

TSIG (b) DNS 52

2.3.4 2.3.4.1 (1) (a) (WAF) (b) 53

(c) (d) (e) (f) IPsec SSL TLS (g) LAN LAN LAN 54

(h) (i) (j) (k) (l) 55

(2) (a) (b) (c) (d) (e) (f) 1 6 56

(g) (3) (a) 2.3.4.2 (1) (a) 57

IEEE 802.1x (2) (a) (b) (c) (3) (a) VPN ( ) ( ) ( ) ( ) ( ) VPN ( ) VPN ( ) VPN VPN 58

VPN VPN IP-VPN SSL-VPN (b) LAN LAN ( ) ( ) ( ) ( ) ( ) LAN ( ) LAN ( ) LAN ( ) LAN LAN LAN WEP Wired Equivalent Privacy TKIP Temporal Key Integrity Protocol http://www.soumu.go.jp/ main_sosiki/joho_tsusin/security/j_business/admin00.htm LAN (c) ( ) ( ) ( ) ( ) ( ) ( ) ( ) 59

2.3.4.3 (1) (a) (b) (2) (a) (b) 60

(c) (d) 61

2.4 2.4.1 2.4.1.1 IPv6 IPv6 IPv4 IPv6 IPv6 IPv6 IPv4 IPv6 IPv4 IPv6 (1) IPv6 (a) IPv6 IPv6 IPv6 IPv4 IPv6 IPv6 IPv6 IPv6 IPv6-IPv4 IPv6 IPv4 IPv6 IPv6-IPv4 62

IPv6 IPv4 IPv4 IPv6 (2) IPv6 (a) IPv6 IPv6 IPv6 IPv6 IPv6 IPv6 IPv6 IPv6 IPv4 IPv6 IPv6 IPv6 (b) IPv6 IPv6 IPv6 IPv6 IPv6 IPv6 IPv6 IPv6-IPv4 IPv6 63

IPv6 64

A.1 A.1.1 A.1.2 A.1.3 A.1.4 (MAC Mandatory Access Control) ( ) IP A.1.1

LAN LAN 802.11a 802.11b 802.11g 802.11n DNS DNS DNS IP DNS IP InterNIC Internet Network Information Center CRYPTREC Cryptography Research and Evaluation Committees IPv6 IPv4 IPv6 IPv6 IPv4 IPv6-IPv4 A.1.1