1
RT140i #1(PPP) RT105i RTA52i R (PP#) (LAN#) [NAT] R LAN LAN 2
#2() RT300i RTW65b RT140e RT105e (LAN2) R (LAN1) RTA55i R LAN LAN 3
#3(PPPoE) R (LAN#) (PP#) (PP#) LAN ISDN/ LAN 4
RT300i RT105 #4(VPN) R (LAN#) (PP#) (TUNNEL#) LAN ISDN/ 5
LAN ISDN/ NAT (LAN#) (PP#) (TUNNEL#) + R 6
NAT #1,#2 IP incoming/unconvertible/range IP ping/traceroute/ftp/cu-seeme VPN PPTP NetMeeting 3.0 UPnPWindowsMessenger 7
NAT (NATNAT) 8
(NAT) Revision 9
NAT(Rev.1Rev.3) LAN LANprimarysecondary TUNNEL VPN 3 NAT IP NAT + IP (16) 10
NAT [NAT] < > < > NAT 11
IP(IP Masquerade) nat descriptor type <NAT> masquerade global network global network private network private network 12
NAT (Network Address Translation nat descriptor type <NAT> nat 133.176.200.1/28 133.176.200.2/28 133.176.200.3/28 NAT NAT NAT 192.168.0.1/24 192.168.0.2/24 192.168.0.3/24 192.168.0.4/24 192.168.0.5/24 13
NAT + IP nat descriptor type <NAT> nat-masquerade 133.176.200.1/28 133.176.200.2/28 133.176.200.3/28 NAT NAT IP masquerade 192.168.0.1/24 192.168.0.2/24 192.168.0.3/24 192.168.0.4/24 192.168.0.5/24 14
IP ()IP <> ()IP <> [0] [65535] [0] [65535] <> (IP) <> 15
NAT#1 R Net-A (Primary) Net-B (Secondary) PC PC primarysecondaryip () 16
NAT#2 Default-A PC -A PC PC Net-A R R Default-B Net-B PC -B PC PC 2(hot line) IP 17
IP (incoming) (through) (reject,discard) (forward DMZ) (unconvertible port) (port range) 18
DMZ PC RTA54i LAN ISDN/ADSL/CATV(LAN) / IP / 19
DMZ 20
DMZ IP <> DMZ <> [0] [65535] [0] [65535] <> DMZ <> () 21
[0] [65535] [0] [65535]. 22
IP 23
[0] [65535] [0] [65535] IP(6000064095) 24
IP(60000 64095) 25
IP IP WWW IP WWW [0] [65535] [0] [65535] WWW WWW IP(=!=). 26
IP IP 27
IP FTP FTP/ FTP FTP NetMeeting 3.0 VPN 1IP PPTP 28
#1 IP IPv4 IP TCP/UDP IP NAT IP () ftp server ftp client () ftp(port) http server http client 29
#2 server client () ftp server ftp client ftp(pasv) 30
FTP/ ftp server ftp client ftp server ftp client ftp(pasv) ftp(port) 31
FTP ftp server ftp client tcp ftp ftptcp 32
FTP [] all 33
FTP ftp server [20] [21] [*] [*] ftp client ftp ftp server [20] [8000] [*] [*] ftp client 21OK 8000NG [] ftp(listen PORT)21 NAT/IP 34
FTP 35
VPN Router VPN server Router server VPN client VPN PPTP L2TP IPsec GRE(47) TCP(6),1723 UDP(17),1701 ESP(50) AH(51) 36
PPTP PPTP PPTP PPTP PPTP Microsoft VPN(PPTPVPN) 37
PPTP 38
NetMeeting Version 3.0 PC NAT NAT RTA54i RTA54i PC PC PC PC PC PC PC PC DMZNetMeeting NetMeeting NetMeeting DMZNAT NAT(IP) 39
NetMeeting Version 3.0 NATNetMeeting DMZ NetMeeting 40
NetMeeting 3.0 () () () () () () () http://www.microsoft.com/japan/windows/netmeeting/ 41
UPnPWindowsMessenger http://www.rtpro.yamaha.co.jp/rt/faq/upnp/index.html http://www.rtpro.yamaha.co.jp/rt/faq/messenger/index.html 42
UPnP [UPnP2] UPnP UPnP UPnP UPnP [] 1) 2) / UPnP IP R UPnP() WindowsXP UPnP (WindowsMessenger) UPnP 43
Windows Messenger 44
Windows MessengerNAT#1 (UPnP) Windows Messenger [] UPnPUPnP UPnP RTA55i Windows Messenger 45
Windows MessengerNAT#2 (Windows MessengerNAT Traversal) Voice Echo Server Windows Messenger V4.6 [] voice echo server DMZ RTA55i Windows Messenger V4.6 46
Windows MessengerNAT#3 (IPSIP) Windows Messenger [] IPSIP RTA55i Windows Messenger 47
Windows Messenger (SIP) MSN Messenger (SIP) (SIP) () (SIP) (RDP) (SIP) (SIP) () (SIP) UPnP UPnP() UPnP 48
WindowsMessenger (UPnP) (UPnP) (UPnP) (UPnP) (UPnP) (UPnP) (UPnP) (UPnPWindowsUpdate) 49
MSN Messenger (3.0) (UPnP) (4.6UPnP) (UPnP) (UPnP) http://messenger.microsoft.com/ja/ 50
Windows XP (UPnP) [] Windows XP IPTCP3389 http://www.microsoft.com/japan/windowsxp/pro/ business/remote/remotedesktop.asp 51
52
<IN> ----------< >---------- (b2) (a) (b1) ----------< >---------- <OUT> 53
IPv6 VPN ping IPsec PPTP ICMP (1) TCP (6) UDP (17) IPv6 (41) AH (51) ESP (50) GRE (47) IPv4 IPv6 PPP 54
<IN> ----------< >---------- ----------< >---------- <OUT> 55
<IN> ----------< >---------- ----------< >---------- <OUT> 56
57
TCPestablished telnet [TCP] <SYN> <SYN+ACK> <ACK> [TCP] established [TCP] telnet SYNACKRST established PC 58
ftp ftp(pasv) ftp(port) ftp server [*] [21] established ftp server [20] [21] [*] [*] [*] [*] ftp client ftp client [] ftp tcp established ftpestablished [] 59
UDP(DNSNTP) DNS(UDP) DNS [UDP] <> DNS <> PC NTP NTP(UDP) [UDP] <> NTP <> PC 60
61
62
VPN IPv6 IPsec PPTP ICMP (1) TCP (6) UDP (17) IPv6 (41) AH (51) ESP (50) GRE (47) IPv4 IPv6 PPP 63
TCP () <> <> <> telnet [TCP] <SYN> <SYN+ACK> <ACK> telnet PC [TCP] established [TCP] FINRST 64
UDP () NTP(UDP) NTP [UDP] <> NTP <> PC DNS DNS(UDP) [UDP] <> DNS <> PC 65
1 2 3 4 5 6 7 NetBIOS (:135,137,138,139,445) () () 66
----------< >---------- <IN> <OUT> ----------< >---------- 67
----------< >---------- <IN> <OUT> ----------< >---------- 68
----------< >---------- <IN> <OUT> ----------< >---------- 69
#1 () 70
----------< >---------- <IN> <OUT> ----------< >---------- 71
#2 () 72
73
pass/reject/restrict IP() IP() ICMP/TCP/UDP ICMP:icmp-info,icmp-error TCP:established,tcpfin,tcprst,tcpflag (TCPUDP) (TCPUDP) 74
tcp tcp tcp () udp udp udp() ftp tftp domain www smtp pop3 telnet tcp telnet netmeeting tcp udp udp(tcp) tcp tcp tcp tcp,udp tcp,udp ftp tftp DNS www () () NetMeeting 3.0 75
76
#1 Unknown IP protocol protocol101 Land atack IPIP IP Short IP header IPlength Malformed IP packet length 77
#2 IP Malformed IP opt Security IP opt Loose routing IP opt Record route IP opt Stream ID IP opt Strict routing IP opt Timestamp IP opt Security and handling restriction header Loose source routing header Record route header Stream identifier header Strict source routing header Internet timestamp header 78
#3 Fragment storm Large fragment offset offset Too many fragment Teardrop Same fragment offset teardrop offset Invalid fragment 79
#4 ICMP source quench source quench ICMP timestamp req timestamp request ICMP timestamp reply timestamp reply ICMP info request information request ICMP ICMP info reply information reply ICMP mask request address mask request ICMP mask reply address mask reply ICMP too large 1024ICMP 80
#5 UDP TCP UDP short header UDP bomb UDP port scan TCP queue overflow TCP no bits set TCP SYN and FIN TCP FIN and no ACK TCP port scan TCP SYN flooding UDPlength8 UDPlength TCP SYNFIN ACKFIN SYN 81
#6 FTP SMTP FTP improper port SMTP pipe attack SMTP decode alias SMTP DEBUG command SMTP EXPN command SMTP VRFY command SMTP WIZ command PORTPASV 102465535 From: : decode@ DEBUG EXPN VRFY WIZ 82
83
84