RTXソリューションセミナー (2002年末)

Similar documents
ヤマハ ルーター ファイアウォール機能~説明資料~

VoIPルーター ネットボランチ RTA55i ~導入資料~

ヤマハ ルーター ファイアウォール機能~説明資料~

VoIPルーター ネットボランチ RT56v ~導入資料~

2001年12月VPN&ブロードバンドソリューションフォーラム

NATディスクリプタ機能

ヤマハルーターでつくるブロードバンド企業ネットワーク

設定例集_Rev.8.03, Rev.9.00, Rev.10.01対応

帯域を測ってみよう (適応型QoS/QoS連携/帯域検出機能)

SRT/RTX/RT設定例集

LAN

橡sirahasi.PDF

設定例集

RT107e 取扱説明書

IPv4aaSを実現する技術の紹介

2 1: OSI OSI,,,,,,,,, 4 TCP/IP TCP/IP, TCP, IP 2,, IP, IP. IP, ICMP, TCP, UDP, TELNET, FTP, HTTP TCP IP

ict2-.key

Si-R30取扱説明書

RT57i 設定マニュアル

ヤマハルーターのCLI:Command Line Interface

AirMac ネットワーク構成の手引き

2004 SYN/ACK SYN Flood G01P014-6

tcp/ip.key

RT107eセミナー用資料

Si-R180 ご利用にあたって

tutorial.dvi

AirMac ネットワーク for Windows

RTV700開発コンセプト

RT58i 接続ガイド

TCP/IP Internet Week 2002 [2002/12/17] Japan Registry Service Co., Ltd. No.3 Internet Week 2002 [2002/12/17] Japan Registry Service Co., Ltd. No.4 2

2008, 2009 TOSHIBA TEC CORPORATION All rights reserved

Teradici Corporation # Canada Way, Burnaby, BC V5G 4X8 Canada p f Teradici Corporation Teradi

MR1000 コマンド設定事例集

1 Linux UNIX-PC LAN. UNIX. LAN. UNIX. 1.1 UNIX LAN. 1.2 Linux PC Linux. 1.3 studenta odd kumabari studentb even kumabari studentc odd kumabari student

MR1000 Webリファレンス

IIJ Technical WEEK SEILシリーズ開発動向:IPv6対応の現状と未来

完成卒論.PDF

VNSTProductDes3.0-1_jp.pdf

第1回 ネットワークとは

CS-SEIL-510/C ユーザーズガイド Webインターフェイス編

RTW65b 設定マニュアル

rzakg.ps

1 IPv6 WG OS SWG PCOSIPv6 Windows Vista 2 3 KAMEUSAGIMacOSX IPv6 2

Microsoft PowerPoint ppt [互換モード]

IP.dvi

untitled

RT57i 困ったときは

集中講義 インターネットテクノロジー 第5回

Win XP SP3 Japanese Ed. NCP IPSec client Hub L3 SW SRX100 Policy base VPN fe-0/0/0 vlan.0 Win 2003 SVR /

IP IPv4-IPv6

CPE9V1.0&AP615V2.0-C01说明书-电子档

SRT100 コマンド設定運用説明書

Agenda IPv4 over IPv6 MAP MAP IPv4 over IPv6 MAP packet MAP Protocol MAP domain MAP domain ASAMAP ASAMAP 2

ScreenOS 5.0 ScreenOS 5.0 Deep Inspection VLAN NetScreen-25/-50/-204/-208 HA NetScreen-25 HA Lite NetScreen-25 NetScreen-50) ALG(Application Layer Gat

2/ PPPoE AC(Access Concentrator) PPPoE PPPoE Ping FTP PP

YMS-VPN1_User_Manual

$ cal ) ( cal $ cal cal cal 1. () ( clear) 2. ( cal) 3. ( man) \() ( ) --() +()

PowerPoint プレゼンテーション

BLR3-TX4 ユーザーズガイド(3版)

I TCP 1/2 1

橡c03tcp詳説(3/24修正版).PDF

RT300/140/105シリーズ 取扱説明書

RT300i/RT140x/RT105i 取扱説明書

VoIP Broadcasting System 2/2 IP Convergence Communication Solution IP paradigm Integration & Management VoIP IP VoIP VoIP IT < >

情報通信ネットワークの基礎 サンプルページ この本の定価 判型などは, 以下の URL からご覧いただけます. このサンプルページの内容は, 初版 1 刷発行時のものです.

図解でわかるVoIPのすべて - IP電話の技術から構築まで -

GA-1190J

IPv6 トラブルシューティング ホームネットワーク/SOHO編

IPSEC-VPN IPsec(Security Architecture for Internet Protocol) IP SA(Security Association, ) SA IKE IKE 1 1 ISAKMP SA( ) IKE 2 2 IPSec SA( 1 ) IPs

Soliton Net’Attest EPS + AR router series L2TP+IPsec RADIUS 設定例

FUJITSU Network Si-R Si-Rシリーズ Si-R240B ご利用にあたって

2/ PPPoE... 9 AC(Access Concentrator) PPPoE PPPoE Ping FTP PPPoE

SR-X526R1 サーバ収容スイッチ ご利用にあたって

FUJITSU Network Si-R Si-RシリーズSi-R220C ご利用にあたって

total.dvi

R70_Software_Manual_JP1.3

ScreenOS Copyright (C) 2005 NOX Co., Ltd. All Rights Reserved. Version1.00

untitled

untitled

Transcription:

VPN RTX 200212 123 AVIT IT (mya@comm.yamaha.co.jp) 2

3

4

R ISP R User User User ISP User User User IP R R R R IX ISP R IP R R R R R R R ISP R R IP [] IP (IP) IX: Internet exchange JPIXhttp://www.jpix.ad.jp/ ISP: Internet Service Provider : Router R R R

A B IP [] 6

7

IP IX R ISP R R R User User User R R ISP R R User User User ADSL 1.5M ADSL 8M IX: Internet exchange JPIXhttp://www.jpix.ad.jp/ ISP: Internet Service Provider : Router 8

9

RT100i 1BRI RT200i 4BRI/8BRI(opt.) RT102i RT140i 2BRI,1LAN RT80i DSU, 1BRI,2TEL 2BRI,1PRI,1LAN RT140p RT140e 1BRI,2LAN RT103i RTA50i DSU, 1BRI,3TEL 4HUB RT140f 2BRI,2LAN RTA52i DSU 1BRI,3TEL 4HUB 95/3 96/10 97/2 97/10 98/5 98/10 99/2 00/3 10

RT300i 1BRI,1LAN,+ RT60w 1BRI,4SW-HUB RT105i RT52pro 1BRI,3TEL,4HUB 1BRI,3TEL,LAN RTA54i 1BRI,2TEL,2LAN RT105p RT105e RTW65b 1PRI,4SW-HUB 2LAN,4SW-HUB 1BRI,2LAN,LAN RTW65i 2LAN,LAN RTX2000 RTX1000 1BRI,2TEL,2LAN RTA55i RT56v 1PSTN,3TEL,2LAN 00/6 00/10 01/06 01/07 01/11 01/12 02/05 02/07 02/10 11

high-end mid-range 1,000,000 Low-end 500,000 200,000 100,000 SOHO 50,000 RT300 series RT140 series RT105 series NetVolante series 12

128k~ 1.5M~ 10M 50M 100M 1G Module RT300i RT200i RT140p(23B+D) RTX2000 RT140i RT140p(T1) RT140e RTX1000 RT52pro RT105i RT105p(T1) RT105e 13

RT/RTX WWW 14

1. 2. 3. 15

1) 1 2) Web 3)? 16

RT RTX RT100i 17

18

19

20

CENTER 21

ADSL (:2002.4.1) () 1 10 20 30 100 200 (/) 64k 128k 500k 1M 1.5M 8M I S D N FR DA128 IP-VPN DA128 VPN OCN DR128 IP-VPN DA1500 FR DA1500 DR1500 VPN ADSLIP VPN ADSLIP IP-VPN (4) FTTH LAN 100M

Internet Internet VPN CENTER DMZ Server 23

BRI BRI BRI RT140e RT140f CATV CATV BRI RT140e LAN VPN LAN BRI RT140e 24

Revision 25

Revision 26 IPsec Version 2 RFC:RFC2401RFC2409RFC2451

?? 27

28

29

30

31

SERIAL LAN 32

33

A B IP 34

A B IP LAN RAM CPU LAN [] 35

RS-232C 1 2 3 4 LAN2 SERIAL LANC LANC 32bits/44.44MHz (1.4Gbps) CPU (SH3/133MHz) RAM (16MB) FlashROM (2MB) RT105e 36

ISDN Server RS-232C S/T 1 2 3 4 LAN2 LAN3 SERIAL ISDN LANC LANC LANC 32bits/100MHz (3.2Gbps) CPU (MIPS32/150MHz) Security Engine (DES/3DES) RAM (16MB) FlashROM (2MB) RTX1000 37

Security Engine (DES/3DES) LANC1 LANC2 LANC3 LANC4 LANC5 LANC6 LANC7 LANC8 LANC1 LANC2 LANC3 LANC4 LANC5 LANC6 LANC7 LANC8 64bits/66MHz (4.2Gbps) CPU StrongARM (232MHz) 64bits/116MHz (7.4Gbps) FlashROM (4MB) SSRAM (4MB) Packet Engine 1 4 23 5 6 SDRAM (64MB) RTX2000 38

39

Internet Internet VPN 1.5M ADSL 8M ADSL 12M ADSL 1.5 Mbps 8 Mbps 12 Mbps 512 Kbps 1 Mbps 1 Mbps 40

MTU MTU Length Total IPv4MTU(RFC791) 65535 IPv4 576 PTMU(RFC1191) IPv4MTU(RFC791) 68 IP over ATM 9180 FDDI 4352 4500 Ethernet 1500 1518 PPP () 1500 IEEE 802.3 Ethernet 1492 1518 PPPoE(RFC2516) 1492 PPPoE() 1454 IPv6MTU(RFC2460) 1280 Ethernet PPPoE PPPoE #1 #2 41 http://rfc.netvolante.jp/rfc/rfc1191.txt (Path MTU Discovery)

Q. 100M bit/s (half) RFC2544(RFC1944) 64 64(Throughput) Throughput) pps(packets/sec) Q.RFC1242(Throughput) The maximum rate at which none of the offered frames are dropped by the device. Q.RFC1242RFC1944 RFC1242: RFC1944(RFC2544): 64k bit/s (half) 128k bit/s (half) 10M bit/s(half) http://www.rtpro.yamaha.co.jp/rt/faq/tcpip/routing-performance.html http://rfc.netvolante.jp/rfc/rfc1242.txt (Benchmarking Terminology for Network Interconnection Devices) http://rfc.netvolante.jp/rfc/rfc2544.txt (Benchmarking Methodology for Network Interconnect Devices) http://rfc.netvolante.jp/rfc/rfc2285.txt (Benchmarking Terminology for LAN Switching Devices) http://rfc.netvolante.jp/rfc/rfc2889.txt (Benchmarking Methodology for LAN Switching Devices) 95 pps 190 pps 14,881 pps 148,810 pps 42 15k pps 150k pps

Router Switch LAN1 LAN2 SmartBits (L3) SmartBits (L2) SmartBits SmartWindow SmartApplications RFC1242&RFC2544 43

SmartBits [] 1518(size)*8*8127(packet)=98,694,288 bit/s

MTU1280 Router VPN Router LAN1 LAN2 LAN1 LAN2 SmartBits (L3) 45

3DES VPN RT300i (10/100)*2 39.8M bit/s 3.0M bit/s 100 800,000 RT300i+VPN (10/100)*2 10.2M bit/s 500 1,000,000 RT140e (10/100)*2 14.2M bit/s 1.1M bit/s 20 320,000 RT105e (10/100)*2 15.5M bit/s 1.2M bit/s 30 68,000 3DES VPN CISCO 3640 F: 100M bit/s (IOS 12.0.5T) P: 21.2M bit/s 160 CISCO 2621 F: 66.9M bit/s (IOS 12.1.7) P: 15.0M bit/s 60 FITELnet-F40 (10/100)*2 9.8M bit/s 4.6M bit/s 32 118,000 SonicWall TELE3 (10/100)*2 75M bit/s 20M bit/s 5 (5u) 148,000 SonicWall PRO 200 (10/100)*3 190M bit/s 25M bit/s 500 745,000 NetScreen-5XP (10)*2 20M bit/s 13M bit/s 10 (10u) 98,000 NetScreen-5XT (10/100)*2 70M bit/s 20M bit/s 10 (10u)138,000 NetScreen-25 (10/100)*4 100M bit/s 25M bit/s 25 680,000 AR740 (10/100)*2 66M bit/s 312,900 AR740+VPN (10/100)*2 66M bit/s DES (?) 364,400 RTX 3DES VPN RTX2000 (10/100)*8 500M bit/s 398,000 RTX2000 + VPN (10/100)*8 500M bit/s 50M bit/s 500 496,000 RTX1000 (10/100)*3 100M bit/s 23M bit/s 30 118,000

: 2002.11.4P.52P.53 WAN 2 47

Rev.7.00.04 () LAN1 LAN2 SmartBits (pps: paket/second) (bit/s) (bit)*1 (1280*8)*(9107)=93255680 bit/s93.26mbit/s KM10241000() 48

Rev.7.00.04 () LAN1 LAN2 LAN2 LAN1 SmartBits (pps: paket/second) (bit/s) (bit)*1 (1280*8)*(8744)=89538560 bit/s89.54mbit/s KM10241000() 49

Rev.7.00.04 ( ) LAN1 LAN2 VPN LAN2 LAN1 SmartBits VPN(bit/s) (bit)*1 (1280*8)*(2471)=25303040 bit/s25.30mbit/s KM10241000() 50

Rev.7.00.04 ( ) 51

RTX2000 RTX2000 VPN RTX2000 1 2 1 2 SmartBits [Rev.7.00.10] 2: 641518100% (1) 8: 64280k pps (4) 8: 1518800M bps(4) SmartBits VPN [Rev.7.00.10] VPN(DES/3DES): 128070% 52

fast switching (max) 1720/1750 8.4k pps 1721 12k pps process switching (max) performance (software) performance (software) 2610-2612 15k pps 256k bps 512k bps 2620/2621 25k pps 384k bps 768k bps 2650/2651 37k pps 384k bps 768k bps 2610/2611XM 20k pps 2620/2621XM 30k pps 2650/2651XM 40k pps 2691 70k pps 3620 3040k pps 2k pps 512k bps 1024k bps 3640 5070k pps 4k pps 1024k bps 2048k bps 3660 100120k pps 1012k pps 1554k bps 3072k bps 4000 14k pps 1.8k pps 4500 45k pps 3.5k pps 4700 75k pps 4.6k pps 720x (NPE100) 100k pps 720x (NPE150) 150k pps 5k pps 7500/RSP2 220250k pps 8k pps 7500/RSP4 320350k pps 18k pps

54

MASTER BACK UP Ethernet BACK UP Internet 55

MASTER BACK UP Internet BACK UP ISDN 56

MASTER BACK UP IP-VPN GATEWAY BACK UP Internet ISDN 57

BRI RT140i BRI Multilink PPP Backup Backup RT140i BRI BRI RT140i RT140i BRI FR BRI RT140i BRI ISDN BRI BRI ISDN BRI ISDN FRISDN 58

RT/RTX R L3 floating static L2 59

Layer floating static pp backup PPP PPPoE LCP keepalive ICMP keepalive PP LAN L3 () L2 () lan backup ethernet ARP keepalive ICMP keepalive tunnel PP LAN tunnel tunnel backup IPsec IKE keepalive(heartbeat) PP ICMP keepalive LAN tunnel leased backup LCP keepalive ISDN fr backup FR PVC ISDN tunnel backup IPsec IKE keepalive(heartbeat) ISDN () VRRP : : (Rev.6.03.15) 60

RT/RTX ICMP reply ICMP echo R (ping) keepalive ICMP echo ICMP reply 61

RT/RTX [:] () (backup) R [backup:] () (backup) 62

RTX1000 BRI LAN ISDN BRI VPN Backup Backup Remote Access DMZ RTX1000 Server ISDN ISDN BRI LANVPN RTX1000 RTX1000 BRI Backup ISDN BRI LAN Backup RTX1000 BRI VPN ISDN 63 BRI RTX1000 RTX1000 IP-VPNVPN

Backup ISDN Backup RTX1000 BRI VPN BRI RTX1000 RTX1000 BRI BRI RTX1000 IP-VPN FR ISDN 64

RTX1000 BRI Backup VPN IP-VPN BRI RTX1000 Backup RTX1000 BRI VPN VPN BRI RTX1000 IP-VPN IP-VPNVPN 65

Backup RTX1000 BRI VPN BRI RTX1000 VPN RTX1000 BRI IP-VPN FR BRI RTX1000 VPN 66

67

LAN BRI LAN BRI RTX1000 LAN RTX1000 + RTX1000 Server +DMZ() BRI 68 RTX1000 DMZ

LAN LAN LAN LAN LAN LAN RTX1000 RTX1000 RTX1000 BRI RTX1000 VPN VPN BRI VPN 69 RTX1000

LAN ISDN BRI RTX1000 Backup Remote Access + IP-VPN FR BRI RTX1000 () LAN ISDN ISDN LAN BRI RTX1000 (ISDN,PHS,FOMA ) LAN BRI RTX1000 BRI LAN RTX1000 70 LAN

VPN VPN VPN VPN Server -A LAN Server -B LAN VPN VPN AP AP () -B LAN LAN Lobby LAN VPN AP 71

72

NHK() 73

75

76

77

78

79

80

RTX 2002.4.1 ADSL P.86P.105 2002.10.7 ADSL, P.70P.87 100VPN P.158 N+I INTERNET Guide2002.11 WAN WAN P.48P.51 2002.10.21 P.110P.125 2002.11.4 ReportWAN P.52P.53 2 81

82

LSI LSI LSI ISDN-LSI ISDN ISDN () DX7 DSP-1 9600bps FAX(QFP) LSI FDISDN-TA RT100i 83

LSI ISDNLSI IPv4/IPv6IPv6VoIPVPN VPN RT300i &VPN RT140e &VPN RT105e &ISDN RTA55i &ISDN RTW65i ISDN-LSI

RTA50i (SMTP/POP) (Rev.6) RTA52i RTA55i RT300i 85

Telnetd Httpd <> <> 86

RTA55i WWW/FTP ISP#1 1 2 3 [] ISP [] PPPPPPoE ISP#2 87

RTA55i ISP#1 2 1 3 [] ISP [] PPPPPPoE ISP#2 88

RTA55i #1 [] [] PPPPPPoE #2 89

(Rev.6/7) ISP#1 #1 RTX1000 #2 ISP#2 [] ISP [] ISP PPPPPPoE 90

VPN PN 91

GW(IPsec, PPTP, IP over IP) LAN (PP#) (LAN#) LAN R SGW (TUNNEL#) MTU1280 VPN SGW (TUNNEL#) R LAN (PP#) (LAN#) LAN RTX1000 RTX1000 92

(LANVPN) Internet VPN RTX1000 [] [] [] RTX1000 93

[] IP [] IPOK [] IPVPN IP () IP RT105 VPN IP VPN RTX2000 VPN RT105 IP RTX1000 94

Internet VPN RTX1000 RTX1000 ISDN [] [] ISDN 95

VPN(PPTPIPsec) PPTP Point to Point Tunneling Protocol PPP Windows95 VPN(MS-DUN 1.4 ) MS-CHAP/MS-CAHP v2 RC4(40bit/128bit) IPsec IP Security Architecture IPsec Version 2(RFC) IPv4IPv6 IKE(Internet Key Exchange) HMAC-MD5HMAC-SHA-1 DES-CBC3DES-CBCAES-CBC (VPN Client)(?) 96

VPN(PPTPIPsec) PPTP Windows95 Microsoft VPN (MS-DUN 1.4) :Windows98SE Mac OS X 10.2 IPsec Windows 2000 Professional () Windows XP Professional () SSH Sentinel Ver.1.3.1 IPsecVPN http://www.rtpro.yamaha.co.jp/rt/docs/example/vpnclient/vpn_client.html (:) Windows()IPsec Windows NETSCREEN http://www.rtpro.yamaha.co.jp/rt/docs/example/ns-5xp/index.html PPTPFAQ http://www.rtpro.yamaha.co.jp/rt/faq/pptp/index.html 97

VPN (DESAES) DES Data Encryption Standard - DES - - : 56bit - AES Advanced Encryption Standard -DES () 200010 RijndaelAES AES - - / - [ ] http://www.soi.wide.ad.jp/class/20010012/slides/10/ http://www.soi.wide.ad.jp/class/20010012/materials_for_student/10/netarch10-2.pdf 98

VPN(IPsec) RTX1000 RTX2000 YBB-VPN-A : AES>3DES>DES AES,DES>3DES AES AES AES AES AES 3DES,DES 3DES 3DES,DES 3DES 99

RTX2000 IP-VPN RT105 RTX1000 RTX1000 100

ISP ISP ISP ISP ISP PPPoE PPPoE 101

ISP [] (;_;) rt100i-users: 28620, ADSL B RTA55i [] PP01: ISP PP02: [()] ip route default gateway pp 1 ip route 172.26.0.0/16 gateway pp 2 dns server select 1 pp 2 any flets clear dns cache cf.ascii, NETWORK MAGAZINE, 2003/1, P.106P.107 102 http://www.rtpro.yamaha.co.jp/rt/faq/pppoe/multi-session-example.html

RT/RTX RTX2000 3264 RTX1000 12 RT300i 420 RT140fRT140eRT105e 8 RT140iRT140p 4 RT105iRT105p RTW65i RTW65b RT60w RT56v RTA55i RTA54i 2 Rev.6.02.20 LAN*4 Rev.6.02.19 2 http://www.rtpro.yamaha.co.jp/rt/faq/pppoe/concurrent-connection-number.html 103

ISP RTA55i ISDN ADSL RTX2000 [] IP-VPN [] ISDN ADSL B RTX1000 104

ISP [ ] [ ] ISDN ADSL RTA55i RTX1000 ISDN ADSL B 105

ISDN ADSL RTA55i ISP tunnel IPv4 over IPv4 VPN(PPTP) [] [] VPNLAN RTX1000 ISDN ADSL B 106

ISP ISDN ADSL B RTX1000 tunnel IPv4 over IPv4 VPN(PPTP) VPN(IPsec) ISDN ADSL B RTX1000 ISDN 107

ADSL? ADSL LAN 192.168.0.0/24 (LAN2) 192.168.0.2 192.168.1.1 (LAN1) LAN 192.168.0.1 R 192.168.1.0/24 DSLAM PPPoE (PP01) RT56v ISP [] (;_;) rt100i-users: 29193, [] 1) RT56v 2) RT56v 3) RT56vLANIPDHCP LAN1: 192.168.1.1/24 DHCP: 192.168.1.2-192.168.1.192/24 4) RT56vADSL 5) RT56v 6) WWWWANIP IP nat descriptor type 2 masquerade nat descriptor address outer 2 primary (192.168.0.2) ip lan2 address dhcp (192.168.0.2/24) ip lan2 nat descriptor 2 7) ADSLping 108 http://www.rtpro.yamaha.co.jp/rt/faq/pppoe/adsl-modem-access.html

VPN 109

199810 1989 ISDN-LSI 1997 199810 [ (G.711 -law)] ISDN [] [(IP)] ISDN-TA RT100i [RTA50i] LAN 1987 -LSI 1995 64Kbit/s 110

#0 111

#1 112

#2 113

#3 114

(VoIP) [] 200012 (MGCP)RT60w 20016 Networld + Interop Tokyo 2001 RTA54iIPv6MGCP 200112 RTA54i/RT60w/RTW65iIPv4/IPv6SIP VoIP1 20025 RTA55i RTA54i/RT60w/RTW65iIPv4/IPv6SIPVoIP 2 20027 RT56v MGCP:Media Gateway Control ProtocolRFC2705 SIP:Session Initiation ProtocolRFC2543 115

116

(VoIP) Revision 117

ISDN() ISDN ISDN Web () R TEL LAN RTA50i (13) 118

RTA50i ISDN G4-FAX G3-FAX DSU S/T S/T 1 2 3 RS232C 1X 2X 3X 3= ISDN TEL SERIAL LAN CPU (SH3/80MHz) RAM (4M) FlashROM (1M) 119

VoIP() MGCP:Media Gateway Control ProtocolRFC2705 ISDN Web ISDN VoIP R TEL LAN RT60w [] (12) RT60w 120

[] TEL ISDN (PBX) ISDNVoIP DNS / (VoIP-TA) VoIP() 121

VoIP() SIP:Session Initiation ProtocolRFC2543 WAN VoIP R TEL LAN RTA55i RT56v [] ( ) IP (13) IP 122

RTA55i ISDN G4-FAX DSU S/T 1 2 USB 1 2 3 4 WAN ISDN TEL SERIAL LAN1 LAN2 CPU (SH3/133MHz) RAM (8M) FlashROM (2M) RTA55i 123

RT56v LINE 1 2 3 1 2 3 PSTN TEL LAN1 4 WAN LAN2 CPU (SH3/133MHz) RAM (8M) FlashROM (2M) RT56v 124

WAN R TEL LAN RTA55i RT56v (13) IP 125

/ WAN R TEL LAN RTA55i RT56v (13) IP 126

(VoIP-TA,P2P) WAN VoIP R TEL LAN RTA55i RT56v (13) IP 127

P(VoIP-TA,SIP) GW WAN VoIP R TEL LAN RTA55i RT56v (13) IP 128

VoIP() WAN VoIP R TEL LAN RTA55i RT56v (13) IP 129

WAN VoIP R TEL1 TEL2 TEL3 LAN RTA55i RT56v (13) IP 130

(TEL) MGCP:Media Gateway Control ProtocolRFC2705 SIP:Session Initiation ProtocolRFC2543 ISDN ISDN RTA55i WAN WAN RT56v LINE () VoIP R R () VoIP TEL LAN LAN TEL (12) (12) () 131

DNS () ISP DNS IP RTA55i/RT56v [] 12345678.tel.netvolante.jp IP DNS [] ##12345678 DNS IP RTA55i/RT56v 132

(VoIP, MGCP, G.711) (VoIP, SIP, G.711) DNS () Windows Messenger (SIP, G.711) IP (SIP, G.711) 133

VPN (VPN) [] 19985 IPsecVPNRT VPNNAT VPN 2002 PPTPVPNRT 134

VPN [] VPNPPTP Rev.6RT(RTX1000RT300iRT105) Microsoft WindowsOS(Microsoft VPN Adapter) MacOS X 10.2() :RC4 (RSA) Microsoft WindowsOS(Microsoft VPN Adapter) DNS LANVPN VPN 135

LANVPN (PPTP+RC4) ISP Internet VPN ISP RTA55i/RT56v PPTP PPTP RTA55i/RT56v PPTPLANVPN peer to peer (P2P) 136

VPN (PPTP+RC4) ISP Internet VPN ISP RTA55i/RT56v PPTP PPTP Windows98 SE Windows Me Windows 2000 Windows XP PPTPVPN Windowspeer to peer (P2P) Windows 95/98MS-DUN 1.4 137 http://support.microsoft.com/default.aspx?scid=kb;en-us;q285189

DNS () IP ISP RTA55i/RT56v PPTP DNS Internet VPN [PPTP] IP DNS access-point.aao.netvolante.jp [PPTP] DNS access-point.aao.netvolante.jp VPN VPN ISP Windows IP PPTP 138

RT60w RTA54i RTW65b RTW65i RTA55i RT56v ISDN LINE WAN TEL 3 2 3 2 3 LAN 4 4 1 1 4(SW) 4(SW) LAN USB DNS (VoIP) VPN (PPTP+RC4)

RTA55i Rev.4.06.15 12.0Mbps 8.5Mbps RT56v Rev.4.07.08 12.0Mbps 8.5Mbps RTA54i Rev.4.03.10 5.5Mbps 4.0Mbps Rev.4.04.05 6.0Mbps 4.5Mbps RTW65b Rev.5.03.10 7.5Mbps 5.5Mbps RTW65i Rev.5.03.10 7.0Mbps 5.0Mbps 140

RTA55i/RT56v WAN ISDN CATV ADSL/ADSL FTTH/B ISDN/ISDN 128kbps OCN ISDNLAN ISDN RTA55i OK OK RT56v OK 141

142

NetVolante RTA55i RT56v RTW65b RTW65i ISDN TEL WAN 1 2 1 1 3 1 1 1 3 1 4 4 LAN 1 1 () () LAN (IEEE 802.11b) USB 1 1 1 LED 8()+4() 6()+5() 7 9 1 143 1

NetVolanteUSB RTA55i RT56v USB OK LAN ISP LAN USB(PPP) RTA55i USBLANLAN USB(PPP) RTA55i USBLAN 144

ADSL/CATV ADSL/CATV RTA55i LAN LAN RTA55i USB +LAN ADSL/CATV(LAN) ADSL/CATV(USBLAN) ADSL PPPoE RTA55i USB(PPP) TA(ADSL,USB) 145

146 (PPPoE) RTA55i ISP#1 ISP#1 LAN ISP#2 ISP#2 ADSL PPPoE RTA55i ADSL ISP#1 ISP#1 LAN ISP#2 ISP#2 PPPoE RTA55i ISP#1 ISP#1 LAN ISP#2 ISP#2 ADSL PPPoE RTA55i ISP#1 ISP#1 LAN ISP#2 ISP#2 ADSL PPPoE

(PPPoE) ADSL ADSL PPPoE PPPoE RTA55i IP RTA55i IP NAT ADSL PPPoE RTA55i IP IP IP ADSL PPPoE NAT RTA55i IP USB +LAN NAT&(primary/secondary) NAT&(USB+LAN) 147

ISDN+ ADSL/CATV ISDN RTA55i LAN ADSL/CATV RTA55i LAN ISDN + ADSL/CATV RTA55i ISDN ADSL/CATV RTA55i +LAN 148

ISDN ISDN ISDN RTA55i RTA55i TEL TEL1 TEL2 TEL/FAX USB ISDN-TA() ISDN-TA() ISDN ISDN(PPP) ISDN LAN RTA55i PPTP(PPP) LAN RTA55i USB +LAN LAN-TA (PPTP client,ms VPN Adapter) (LAN/USB) 149

150 (ISDN) RTA55i ISDN ISP#1 ISP#1 LAN ISP#2 ISP#2 RTA55i ISDN ISP#1 ISP#1 LAN ISP#2 ISP#2 RTA55i ISDN ISP#1 ISP#1 LAN ISP#2 ISP#2 RTA55i ISDN ISP#1 ISP#1 LAN ISP#2 ISP#2

ISDN RTA55i ISDN/ RTA55i RTA55i ISDN ISDN/LAN ISDN RTA55i RT 151

( ) RTA55i RTA55i IP IP NAT NAT LAN1 (IP) RTA55i LAN2 (IP) IP RTA55i IP USB +LAN NAT&(LAN1/LAN2) NAT&(USB+LAN) 152

RTA55i RT56v ISDN-TA OK LAN-TA OK TA OK IP OK OK DMZ OK OK 153

ISDN-TA() RTA55i RT56v ISDN OK USB OK ISDN RTA55i ISDN(PPP) PPP USB(PPP) PPP(PPP Adapter) 154

LAN-TA RTA55i RT56v ISDN OK ISDN LAN RTA55i ISDN(PPP) PPTP(PPP) PPP MicrosoftWindows95Windows98Microsoft (R) VPN Adapter/ (R)LAN (Windows)ISDN-TAPPP(PPP Adapter ) 155

TA RTA55i RT56v USB OK ADSL RTA55i PPPoE(PPP) PPP USB(PPP) ADSLBPPPoEISDN-TA PPP(PPP Adapter) 156

MDI/MDI-X LAN(L2) MDIMDI-X RTA55i LAN [] MDI/MDI-X LAN LAN RTA55i OK LAN RT56v OK [ = X ] = : MDI X : MDI-X(Uplink) 157

RTA55i/RT56v RTA55i RTW65i RT56v WAN CATV ADSL/ADSL FTTH/B OK OK OK ISDN ISDN/ISDN 128kbps OCN OK OK 158

ADSL#1 [] PPPoE PPPoE ISP DSLAM ADSL ATM PPPoE IP Ethernet WAN R LAN RTA55i RT56v Ethernet 159 IP

ADSL#2 [] ISP DSLAM ADSL ATM PPPoA IP Ethernet WAN R LAN RTA55i RT56v Ethernet 160 IP

ADSL#3 [] ISP DSLAM ADSL ATM IPoA IP Ethernet WAN R LAN RTA55i RT56v Ethernet 161 IP

CATV [] ISP CATV WAN Ethernet IP R LAN RTA55i RT56v Ethernet 162 IP

FTTH#1 [] PPPoE PPPoE ISP Ethernet PPPoE IP WAN R LAN RTA55i RT56v Ethernet 163 IP

FTTH#2 [] ISP IP Ethernet WAN R LAN RTA55i RT56v Ethernet 164 IP

ISDN ISP ISDN [] ISDN ISDN ISDN ISDN PPP ISDN IP ISDN WAN R LAN RTA55i Ethernet 165 IP

ISP 64kbps/128kbps PPP ISDN IP ISDN WAN R LAN RTA55i Ethernet 166 IP

RTA55i/RT56v (VoIP) RTA55i RTW65i RT56v ISDN OK OK LINE OK TEL 2 3 3 167

ISP ISP 2F 1F 168

VoIP ISP GW GW ISP 2F RTA55i RT56v 1F RTA55i [] 169

Internet VPNVoIP Internet VPN RTX1000 RTX1000 RTA55i RT56v Internet VPN() 170

IP-VPNVoIP IP-VPN (/) RTX1000 GW RTX1000 RTA55i RT56v Internet VPN 171

LAN 172

RTW65iLAN LAN ISDN/ RTW65i AP LAN ADSL/CATV RTW65i AP ISDN/ ADSL/CATV LAN AP RTW65i STA RT60w LAN LAN AP RTW65i (LAN) LANLAN 173

RTW65bLAN LAN AP RTW65b LAN ADSL/CATV RTW65b AP LANLAN ADSL/CATV LAN AP RTW65b STA RTW65b LAN LAN AP RTW65b STA RT60w LAN (LAN) RT60w 174

175

56 [] () 53 [] 27 [] 176

#1 () 192.168.100.1 192.168.100.0/24 () 192.168.100.2 () 192.168.100.3 () 192.168.100.4 192.168.2.0/24 192.168.3.0/24 192.168.4.0/24 9#3# 9#2# 177

() 192.168.100.1 [] 192.168.100.0/24 () 192.168.100.2 () 192.168.100.3 192.168.2.0/24 192.168.3.0/24 9#3# 9#2# 178

#1 2 2 LAN () LAN () LAN () 179

#2 LAN () LAN () 2 LAN () 2 180

[] 192.168.100.0/24 RTA55i () 192.168.100.2 WAN R TEL 192.168.2.1 LAN 192.168.2.0/24 181

[] 192.168.100.0/24 RTA55i () 192.168.100.2 WAN VoIP R TEL 192.168.2.1 LAN 192.168.2.0/24 182

192.168.100.0/24 RTA55i () 192.168.100.2 WAN VoIP R TEL 192.168.2.1 LAN 192.168.2.0/24 sip 9#3# 3 sip:rta55i@192.168.100.3 9#4# 4 sip:rt56v@192.168.100.4 183

ISDN [] 184

2 IP() 1 185

ISDN-TA ISDN ISDN-TA A/D TEL ISDN (ISDN) ISDN D/A TEL VoIP [G.711 -law] VoIP SIP R WAN WAN R SIP RTA55i RTA55i VoIP-TA VoIP-TA 186

56 [] Windows Messenger () 27 [] 27 [] Windows Messenger 187

#2 () 192.168.100.1 192.168.100.0/24 192.168.2.0/24 () 192.168.100.2 () 192.168.100.3 () 192.168.100.4 192.168.3.0/24 192.168.4.0/24 Windows Messenger 9#3 9#4 9#2 9#4 9#2 9#3 188 http://www.rtpro.yamaha.co.jp/rt/faq/voip/winmsg/messenger.html

RTA55i 9#3# RTA54i 9#2# 2 2 LAN () LAN () LAN () MSN Messenger 189

MSN Messenger(13) http://messenger.msn.co.jp/ 190

MSN Messenger(15) http://messenger.msn.co.jp/ 191

MSN Messenger(11) 192

VPN() VPN 193

LANVPN () 192.168.100.1 192.168.100.0/24 () 192.168.100.2 () 192.168.100.3 () 192.168.100.4 VPN 192.168.2.0/24 192.168.3.0/24 192.168.4.0/24 194

VPN () 192.168.100.1 192.168.100.0/24 192.168.2.0/24 () 192.168.100.2 () 192.168.100.3 () 192.168.100.4 192.168.3.0/24 VPN 192.168.4.0/24 Microsoft VPN Adapter 195

196

197

198

RT140i #1(PPP) RT105i RTA52i R (PP#) (LAN#) [NAT] R LAN LAN 199

#2() RT300i RTW65b RT140e RT105e (LAN2) R (LAN1) RTA55i R LAN LAN 200

#3(PPPoE) R (LAN#) (PP#) (PP#) LAN ISDN/ LAN 201

RT300i RT105 #4(VPN) R (LAN#) (PP#) (TUNNEL#) LAN ISDN/ 202

LAN ISDN/ NAT (LAN#) (PP#) (TUNNEL#) + R 203

(NAT) NAT #1,#2 IP incoming/unconvertible/range IP ping/traceroute/ftp/cu-seeme VPN PPTP NetMeeting 3.0 UPnPWindowsMessenger 204

NAT (NATNAT) 205

(NAT) Revision 206

NAT(Rev.1Rev.3) LAN LANprimarysecondary TUNNEL VPN 3 NAT IP NAT + IP (16) 207

NAT [NAT] < > < > NAT 208

IP(IP Masquerade) nat descriptor type <NAT> masquerade global network global network private network private network 209

NAT (Network Address Translation nat descriptor type <NAT> nat 133.176.200.1/28 133.176.200.2/28 133.176.200.3/28 NAT NAT NAT 192.168.0.1/24 192.168.0.2/24 192.168.0.3/24 192.168.0.4/24 192.168.0.5/24 210

NAT + IP nat descriptor type <NAT> nat-masquerade 133.176.200.1/28 133.176.200.2/28 133.176.200.3/28 NAT NAT IP masquerade 192.168.0.1/24 192.168.0.2/24 192.168.0.3/24 192.168.0.4/24 192.168.0.5/24 211

IP ()IP <> ()IP <> [0] [65535] [0] [65535] <> (IP) <> 212

NAT#1 R Net-A (Primary) Net-B (Secondary) 213

NAT#2 Default-A -A Net-A R R Default-B Net-B -B 2(hot line) IP 214

IP (incoming) (through) (reject,discard) (forward DMZ) (unconvertible port) (port range) 215

DMZ RTA54i LAN ISDN/ADSL/CATV(LAN) / IP / 216

DMZ 217

DMZ IP <> DMZ <> [0] [65535] [0] [65535] <> DMZ <> () 218

[0] [65535] [0] [65535]. 219

IP 220

[0] [65535] [0] [65535] IP(6000064095) 221

IP(60000 64095) 222

IP IP WWW IP WWW [0] [65535] [0] [65535] WWW WWW IP(=!=). 223

IP IP 224

IP FTP FTP/ FTP FTP NetMeeting 3.0 VPN 1IP PPTP 225

#1 IP IPv4 IP TCP/UDP IP NAT IP () ftp server ftp client () ftp(port) http server http client 226

#2 server client () ftp server ftp client ftp(pasv) 227

FTP/ ftp server ftp client ftp server ftp client ftp(pasv) ftp(port) 228

FTP ftp server ftp client tcp ftp ftptcp 229

FTP [] all 230

FTP ftp server [20] [21] [*] [*] ftp client ftp ftp server [20] [8000] [*] [*] ftp client 21OK 8000NG [] ftp(listen PORT)21 NAT/IP 231

FTP 232

VPN Router VPN server Router server VPN client VPN PPTP L2TP IPsec L2TP over IPsec GRE(47) TCP(6),1723 UDP(17),1701 ESP(50) AH(51) ESP(50) 233

PPTP PPTP PPTP PPTP PPTP Microsoft VPN(PPTPVPN) 234

PPTP 235

NetMeeting Version 3.0 NAT NAT RTA54i RTA54i DMZNetMeeting NetMeeting NetMeeting DMZNAT NAT(IP) 236

NetMeeting Version 3.0 NATNetMeeting DMZ NetMeeting 237

NetMeeting 3.0 () () () () () () () 238 http://www.microsoft.com/japan/windows/netmeeting/

UPnPWindowsMessenger http://www.rtpro.yamaha.co.jp/rt/faq/upnp/index.html http://www.rtpro.yamaha.co.jp/rt/faq/messenger/index.html 239

UPnP [UPnP2] UPnP UPnP UPnP UPnP [] 1) 2) / UPnP IP R UPnP() WindowsXP UPnP (WindowsMessenger) UPnP 240

Windows Messenger 241 http://messenger.microsoft.com/ja/

Windows MessengerNAT#1 (UPnP) Windows Messenger [] UPnPUPnP UPnP RTA55i Windows Messenger 242 http://messenger.microsoft.com/ja/

Windows MessengerNAT#2 (Windows MessengerNAT Traversal) Voice Echo Server Windows Messenger V4.6 [] voice echo server DMZ RTA55i Windows Messenger V4.6 243 http://messenger.microsoft.com/ja/

Windows MessengerNAT#3 (IPSIP) Windows Messenger [] IPSIP RTA55i Windows Messenger 244 http://messenger.microsoft.com/ja/

Windows Messenger (SIP) MSN Messenger (SIP) (SIP) () (SIP) (RDP) (SIP) (SIP) () (SIP) UPnP UPnP() UPnP 245 http://messenger.microsoft.com/ja/

WindowsMessenger (UPnP) (UPnP) (UPnP) (UPnP) (UPnP) (UPnP) (UPnP) (UPnPWindowsUpdate) 246 http://messenger.microsoft.com/ja/

MSN Messenger (3.0) (UPnP) (4.6UPnP) (UPnP) (UPnP) 247 http://messenger.microsoft.com/ja/

Windows XP (UPnP) [] Windows XP IPTCP3389 http://www.microsoft.com/japan/windowsxp/pro/ business/remote/remotedesktop.asp 248

establishedftpudp (5) (7) 249

<IN> ----------< >---------- (b2) (a) (b1) ----------< >---------- <OUT> 250

IPv4 IPv6 IPv4 Tunnel IPv6 Tunnel PPTP VPN IPsec IPv4 Tunnel IPv6 Tunnel VPN IPsec ICMPv6 (58) AH (51) ESP (50) IPv6 (41) IPv4 (4) UDP (17) TCP (6) ICMPv4 (1) AH (51) ESP (50) GRE (47) IPv6 (41) IPv4 (4) UDP (17) TCP (6) ICMPv4 (1) IPv4 (0x8000) IPv6 (0x86DD) PPP http://www.iana.org/assignments/protocol-numbers 251 http://www.iana.org/assignments/port-numbers

<IN> ----------< >---------- ----------< >---------- <OUT> 252

<IN> ----------< >---------- ----------< >---------- <OUT> 253

254

TCPestablished telnet [TCP] <SYN> <SYN+ACK> <ACK> [TCP] established [TCP] telnet SYNACKRST established 255

ftp ftp(pasv) ftp(port) ftp server [*] [21] established ftp server [20] [21] [*] [*] [*] [*] ftp client ftp client [] ftp tcp established ftpestablished [] 256

UDP(DNSNTP) DNS(UDP) DNS [UDP] <> DNS <> NTP NTP(UDP) [UDP] <> NTP <> 257

pass/reject/restrict IP() IP() ICMP/TCP/UDP ICMP:icmp-info,icmp-error TCP:established,tcpfin,tcprst,tcpflag (TCPUDP) (TCPUDP) 258

259

260

VPN IPv4 IPv6 IPv4 IPv6 VPN PPTP IPv6 Tunnel IPv4 Tunnel IPsec IPv4 Tunnel IPv6 Tunnel IPsec ICMPv6 (58) AH (51) ESP (50) IPv6 (41) IPv4 (4) UDP (17) TCP (6) ICMPv4 (1) AH (51) ESP (50) GRE (47) IPv6 (41) IPv4 (4) UDP (17) TCP (6) ICMPv4 (1) IPv4 (0x8000) IPv6 (0x86DD) PPP http://www.iana.org/assignments/protocol-numbers 261 http://www.iana.org/assignments/port-numbers

tcp tcp tcp () udp udp udp() ftp tftp domain www smtp pop3 telnet tcp telnet netmeeting tcp udp udp(tcp) tcp tcp tcp tcp,udp tcp,udp ftp tftp DNS www () () NetMeeting 3.0 262

TCP () <> <> <> telnet [TCP] <SYN> <SYN+ACK> <ACK> telnet [TCP] established [TCP] FINRST 263

UDP () NTP(UDP) NTP [UDP] <> NTP <> DNS DNS(UDP) [UDP] <> DNS <> 264

1 2 3 4 5 6 NetBIOS (:135,137,138,139,445) () () 7 265

----------< >---------- <IN> <OUT> ----------< >---------- 266

----------< >---------- <IN> <OUT> ----------< >---------- 267

----------< >---------- <IN> <OUT> ----------< >---------- 268

#1 () 269

----------< >---------- <IN> <OUT> ----------< >---------- 270

#2 () 271

272

#1 Unknown IP protocol protocol101 Land atack IPIP IP Short IP header IPlength Malformed IP packet length 273

#2 IP Malformed IP opt Security IP opt Loose routing IP opt Record route IP opt Stream ID IP opt Strict routing IP opt Timestamp IP opt Security and handling restriction header Loose source routing header Record route header Stream identifier header Strict source routing header Internet timestamp header 274

#3 Fragment storm Large fragment offset offset Too many fragment Teardrop Same fragment offset teardrop offset Invalid fragment 275

#4 ICMP source quench source quench ICMP timestamp req timestamp request ICMP timestamp reply timestamp reply ICMP info request information request ICMP ICMP info reply information reply ICMP mask request address mask request ICMP mask reply address mask reply ICMP too large 1024ICMP 276

#5 UDP TCP UDP short header UDP bomb UDP port scan TCP queue overflow TCP no bits set TCP SYN and FIN TCP FIN and no ACK TCP port scan TCP SYN flooding UDPlength8 UDPlength TCP SYNFIN ACKFIN SYN 277

#6 FTP SMTP FTP improper port SMTP pipe attack SMTP decode alias SMTP DEBUG command SMTP EXPN command SMTP VRFY command SMTP WIZ command PORTPASV 102465535 From: : decode@ DEBUG EXPN VRFY WIZ 278

VoIP VoIP 279

(IP) http://www.soumu.go.jp/s-news/2002/020222_3.html 280

IP IP IP IP [] (+) (-) IP IP [] (-) (+) 281

(IP) http://www.soumu.go.jp/s-news/2002/020222_3.html 282

Phone -to- Phone [] 1994 (-) (+) Phone GW ITSP -to-phone [] 1996 (-) (+) 283

GW ITSP GW ITSP [] 1997 (-) (+) Phone-to-Phone GW ITSP [] (-) Phone-to- Phone 284

(IP) http://www.soumu.go.jp/s-news/2002/020222_3.html

GW GW VoIP-TA ITSP ISP GW GW Router [] Phone-to-Phone () IP() VoIP-TA 286

Router IP Router PBX PBX VoIP IP Router IP-PBX IP Router IP-PBX IP VoIP 287

IP GW GW 288

() IP () IP IP FR ISDN ATM CATV IP-VPN LAN FTTH xdsl 90 96 97 98 99 00 01 02 (IP) (VoIP) (VoIP) (/) () H.323+(64kbps8kbps) SIP+(G.711,64kbps) + + 289

[] H.323SIP [] (G.711) 290

291

10BASE2 10BASE5 10BASE-T 185m 500m 100m 30 100 (5mm) (10mm) UTP (3~) 10BASE-F 100BAST-TX 100BAST-FX 1000m 100m 412m 2 2 (MMF) UTP/STP(5~),10BASE-T (MMF) 100BASE-T4 1000BASE-T 100m 100m UTP(3) UTP(5e~) 1000BASE-CX 25m 1000BASE-SX 220550 2 (MMF) 1000BASE-LX 550/5000 2 (MMF/SMF) 292

#1 10BASE (IEEE 802.3) 100BASE (IEEE 802.3u) 1000BASE (IEEE 802.3z, IEEE 802.3ab) (2) 1k 1024 (2^10) 1000 (10^3) 1M 1024K (2^20) 1000k (10^6) 1G 1024M (2^30) 1000M (10^9) (10) 293

#2 UTP Unshielded Twisted Pair Cable STP Shielded Twisted Pair Cable MMF Multi Mode Fiber SMF Single Mode Fiber 294

#1 () () -A -B -C CSMA/CD: Carrier Sense Multiple Access with Collision Detection (Collision) 295

#2 () HUB -A -B -C 296

#3 () () HUB R T R T R T () HUB R T R T R T T R -A T R -A T R -B 297

#4 () L2 HUB -A -B -C 298

#5 () L2 HUB -A -B -C 299

10BASE-T/100BASE-TX #1 (MDI,=) 1 2 3 4 5 6 7 8 UTP (3/5,) HUB(MDI-X,X) 1 2 3 4 5 6 7 8 300

10BASE-T/100BASE-TX #2 (MDI,=) 1 2 3 4 5 6 7 8 UTP (3/5,) (MDI,=) 1 2 3 4 5 6 7 8 301

1000BASE-T #1 (MDI,=) 1 2 UTP (5e,) HUB(MDI-X,X) 1 2 3 4 3 4 5 6 5 6 7 8 7 8 302

1000BASE-T #2 (MDI,=) 1 2 UTP (5e,) HUB(MDI-X,X) 1 2 3 4 3 4 5 6 5 6 7 8 7 8 303

Auto Negotiation() 100Mbps 100Mbps 10Mbps 10Mbps 100Mbps 100Mbps 10Mbps 100Mbps 100Mbps 100Mbps 100Mbps 100Mbps 10Mbps 10Mbps 10Mbps 10Mbps 10Mbps 304

Ethernet 0x0800 000005DC IEEE 802.3 Length Field (01500) 0800 Internet Protocol version 4 (IPv4) 0806 ARP (Address Resolution Protocol) 8035 RARP (Reverse Address Resolution Protocol) 8037 IPX (Novell NetWare) 86DD Internet Protocol version 6 (IPv6) 8863 PPPoE Discovery Stage 8864 PPPoE Session Stage () IEEE 802.3 Ethernet 305

MAC 1 2 3 24 25 48 306

LAN 307

800MHz 1.5GHz 9.6, 14.4, 28.8, 64kbps PHS 1.9GHz 32, 64, 128kbps IMT2000 2GHz 64, 384kbps Bluetooth 2.4GHz :723kbps:57kbps LAN FWA 2.4GHz 2.4GHz 5GHz() 22,26GHz 22,26,38GHz 1,2Mbps (IEEE 802.11) 1,2,5,11Mbps (IEEE 802.11b) 22Mbps (IEEE 802.11g) 654Mbps (IEEE 802.11a) 10Mbps (1, 1km) 156Mbps (11, 5km) 308

IEEE 802.11 PHY 2.4GHz 5GHz IEEE802.11b IEEE802.11g IEEE802.11a IEEE802.11h 2.4GHz 2.4GHz 5GHz IEEE802.11d IEEE802.11c MAC IEEE802.11e QoS IEEE802.11f IEEE802.11i 309

LAN (IEEE 802.11b) -A LAN -B LAN AP CSMA/CA: Carrier Sense Multiple Access with Collision Avoidance ACK 310

-A LAN -B LAN AP [] 311

ESS-ID -A ID= AP -B ID= ESS-ID= Ch#1 Ch#5 AP -C ID= ESS-ID= [] 114 ESS-ID 312

-A LAN -B LAN -B LAN / Ch#1 AP ESS-ID= Ch#5 AP ESS-ID= [] 313

WEP -A LAN -B LAN AP 64bits or 128bits WEP: Wired equivalent privacy LAN 64128 314

-A LAN AP STA -B LAN 2LANLAN WDS(wireless distribution system) 315

316

PPP PPP (cf.hdlc) 317

PPP LCP NCP (keep alive) 318

PPP R IP IP PPP ISDN 319

PPPoE Ethernet 0x8864 PPPoE 0x0021 320

PPPoE(PPPoE) (461500) IP PPP PPPoE ADSL 321

PPPoE() (461500) IP R IP PPP PPPoE ADSL 322

IPv6 323

IPv6 IPv6 IPv6 IPv6 IPv6 324

TCP (20) () TCP(61460) IPv4 (20) (TCP) () IPv4(261480) (22) (IPv4) (TCP) () FCS (4) (461500) TCP/IP 325

IPv4 IPv4 TCP/UDP 326

TCP (20) () TCP(61440) IPv6 (40) (TCP) () IPv6(61460) (22) (IPv6) (TCP) () FCS (4) (461500) TCP/IP 327

IPv6 IPv6 TCP/UDP 328

IPv4/IPv6 IPv6 VPN ping, IPsec PPTP ICMP (1) TCP (6) UDP (17) IPv6 (41) AH (51) ESP (50) GRE (47) TCP (6) UDP (17) IPv4 (0x8000) IPv6 (0x86DD) PPP 329

IPv6 0 7 8 1 1 5 6 FP TLA ID RES NLA ID #1 NLA ID #2 Interface ID #1 Interface ID #2 2 3 2 4 SLA ID 3 1 330

331 IPv6 0000000000 00000000 0010000000 0011111111 0100000000 0111111111 00000000 11111111 fe80: 1111111010 1111111010 00000000 11111111 fec0: 1111111011 1111111011 00000000 11111111 1111111100 1111111111 00000000 11111111 00000000 11111111

IPv6 IPv6 IPv6-C IPv6-D IPv6 IPv6-B IPv6-A 332

IPv6 333

Interface ID 48 bits MAC Address MAC2 24 bits 16 bits 24 bits fffe 64 bits Interface ID 12 334

0 3 4 7 8 1 1 IPv6 1 2 1 5 1 6 2 3 2 4 3 1 Version Traffic Class Flow Label Payload Length Next Header Hop Limit Source Address IP Destination Address IP Next Header Hdr Ext Len Extentions IPv6 IP 335

IPv6 IPv6 IPv4 IPv4IPv6 IPv6 IPv6 IPv6 IPv4 IPv4 IPv6 IPv6 IPv4 IPv6 IPv6 IPv6 IPv4/IPv6 IPv4 IPv4 IPv4 IPv6 IPv6 IPv4 IPv4 336

IPv4IPv6(1) (dual stack) IPv4 IPv6 IPv4 IPv6 IPv4 only IPv6 only 337

IPv4IPv6(2) IPv6 IPv4 IPv6 IPv6 IPv4 (IPv6IPv4) 338

IPv4IPv6(3) IPv4 IPv6 IPv4 IPv4 IPv6 (IPv4IPv6) 339

IPv4IPv6(4) IPv4 IPv6 IPv4 IPv6 IPv4 only IPv6 only 340

IPv6 ISP IPv4 IPv4 ISP IPv6 IPv4 native IPv6 tunnel ISP IPv4 IPv6 IPv4/IPv6 dual stack ISP IPv6 IPv4 IPv4 tunnel ISP IPv6 IPv6 native 341

IPv6 342

IPv4 343

IPv4 A 0 (7 bits) (8 bits) (8 bits) (8 bits) B 1 0 (6 bits) (8 bits) (8 bits) (8 bits) C 1 1 0 (5 bits) (8 bits) (8 bits) (8 bits) D 1 1 1 0 (4 bits) (8 bits) (8 bits) (8 bits) 344

IPv4 A(10/8) 0 0 0 0 1 0 1 0 x x x x x x x x x x x x x x x x x x x x x x x x B(172.16/12) 1 0 1 0 1 1 0 0 0 0 0 1 x x x x x x x x x x x x x x x x x x x x C(192.168/16) 1 1 0 0 0 0 0 0 1 0 1 0 1 0 0 0 x x x x x x x x x x x x x x x x 345

(172.21.200.84/28) IP 172. 21. 200. 84 1 0 1 0 1 1 0 0 0 0 0 1 0 1 0 1 1 1 0 0 1 0 0 0 0 1 0 1 0 1 0 0 255. 255. 255. 192 1 1 1 1 1 1 1 1 1 1 1 1 1 1 1 1 1 1 1 1 1 1 1 1 1 1 1 1 0 0 0 0 172. 21. 200. 64 1 0 1 0 1 1 0 0 0 0 0 1 0 1 0 1 1 1 0 0 1 0 0 0 0 1 0 1 0 0 0 0 #1 172. 21. 200. 95 1 0 1 0 1 1 0 0 0 0 0 1 0 1 0 1 1 1 0 0 1 0 0 0 0 1 0 1 1 1 1 1 #2 255. 255. 255. 255 1 1 1 1 1 1 1 1 1 1 1 1 1 1 1 1 1 1 1 1 1 1 1 1 1 1 1 1 1 1 1 1 346

IPv4 0 3 4 7 8 1 1 5 6 1 8 1 9 2 3 2 4 3 1 Version IHL Type Of Service Total Length Identification Flags Flagment Offset Time To Live Protocol Header Checksum Source Address IP Destination Address IP Options Padding IP 347

ARP(Address Resolution Protocol) 0 7 8 1 1 5 6 2 3 2 4 3 1 HLEN PLEN MAC MAC() IP() IP MAC MAC() IP HLEN: MAC=6 () PLEN: IP =4 () 348

UDP 0 7 8 1 5 1 6 Source Port Length 2 3 2 4 Destination Port Checksum 3 1 Data 349

0 3 4 7 8 9 1 0 Data Offset Source Port Reserved Checksum TCP Options 1 6 Sequence Number Acknowledgement Number Control Flag 1 5 2 3 2 4 Destination Port Window U R G A C K P S H R S T Urgent Pointer Padding F I N 3 1 Data.. 350

IPv4 TCP IP IPv4 TCP IP 351

(Windows) Microsoft Windows2000 Windows![][(H)] /MS-DOS (cmd.exe) ping (ICMPIP) arp (ARP) ipconfig (IP) tracert (ICMP) netstat () route () telnet (telnet) ftp (ftp) tftp (tftp) () net NetBIOS,NetWare 352

Windows 353

MS-DOS 354

ping 355

ping -t Ctrl+C -a IPDNS -n count 4 -l size 32 -f () -i TTL () -v TOS IPTOS(type of service) -r count IP -s count -j host-list -k host-list -w timeout 356

ping 192.168.0.1 357

ping www.ocn.ne.jp 358

arp 359

arp -a 360

ipconfig 361

ipconfig /? /all /release /renew /flushdns /registerdns /displaydns /showclassid /setclassid 362

ipconfig 363

tracert 364

tracert -d IP (DNS) -h maximum_hops -j host-list () -w timeout 365

tracert www.ocn.ne.jp 366

netstat 367

netstat -a (-n) -e -n -s IP, ICMP, TCP, UDP -p proto -s [proto] -r interval [interval] 368

netsat e 369

netsat r 370

route 371

route () 372

route (192.168.0.3/24) 373

telnet 374

telnet 375

ftp 376

ftp 377

tftp 378

net 379

net view 380

() TeraTerm Pro (telnet) ethereal + WinPcap () Macintoshping,tracertoute,nslookupWhatRoute RT-Utility (RT-Tftp Clients) RT-RevUpper () 381

TeraTerm Pro http://hp.vector.co.jp/authors/va002416/ http://www.sakurachan.org/soft/teraterm-j/files/ttermp23.zip ftp://www.sakurachan.org/pub/windows/net/term/teraterm/ttermp23.zip http://www.vector.co.jp/authors/va002416/ttermp23.zip ftp://riksun.riken.go.jp/pub/pc/misc/terminal/teraterm/ttermp23.zip ftp://ftp.forest.impress.co.jp/pub/win/winsock/apps/teraterm/ttermp23.zip ftp://ftp.s.u-tokyo.ac.jp//terminal/teraterm/ttermp23.zip 382

TeraTerm Pro (telnet) 383

TeraTerm Pro () 384

TeraTerm Pro () 385

ethereal + WinPcap 386

apache C: Program Files Apache Group Apache 387

netperf ftp://ftp.cup.hp.com/dist/networking/benchmarks/netperf/ (binaries2.12.1pl1win) [] http://trylan.fc2web.com/ http://trylan.fc2web.com/tools/tools_6.html 388

Macintoshping,traceroute 389

RT-Utility 390

RT-Tftp clients #1 391

RT-Tftp clients #2 392

RT-RevUpper #1 393

RT-RevUpper #2 394

395

ethereal ping ARP request/arp reply ICMP echo request/echo reply arp DNS UDP DHCP UDP WWW TCPSYN TCP 396

ISP ISDN [] ISDN ISDN ISDN ISDN PPP ISDN IP ISDN WAN R 192.168.0.0/24 192.168.0.2 LAN 192.168.0.1 192.168.0.3 RTA54i Ethernet 397 IP

ethereal() 398

ethereal() 399

ethereal() 400

ARP LAN reply LAN request IP(ping) 401

ping 402

Pingarp 403

ARP() 404

ARP() 405

ICMP reply ICMP ping request ping 406

ICMP () 407

ICMP () 408

ping ping ping ping 192.168.0.1 ARP Request ARP Reply ICMP Echo Request ICMP Echo Reply ICMP Echo Request ICMP Echo Reply ICMP Echo Request ICMP Echo Reply ICMP Echo Request ICMP Echo Reply 409

UDP DNS 192.168.0.1 netvolante 192.168.0.2 dhcp2 192.168.0.3 dhcp3 DNS (53) reply request DNS nslookup 410

UDP(DNS) [] dhcp service server dhcp scope 1 192.168.0.2-192.168.0.254/24 dns server DNS dns private address spoof on ip host mac.hirano.com 192.168.0.100 ip host netvolante.hirano.com 192.168.0.1 ip host dhcp2.hirano.com 192.168.0.2 ip host dhcp3.hirano.com 192.168.0.3 411

UDP() 412

UDP() 413

UDP() 414

DHCP DHCP (67) DHCP (68) ipconfig /release ipconfig /renew 415

DHCP ipconfig /release ipconfig /renew 416

DHCP DHCP (68) DHCP (67) ipconfig /release ARP Request ARP Reply DHCP Release ipconfig /renew DHCP Discover ARP Request DHCP Offer DHCP Request DHCP Ack ARP Reply 417

TCP HTTP WWW Internet Exproler 418

TCP(WWW) 419

TCP() 420

TCP(IP) 421

TCP(TCP) 422

TCP(TCP) 423

?? [TCP] telnet [UDP] tftp RIP () [] RIP2 () 424