¥Í¥Ã¥È¥ï¡¼¥¯¥¹¥Ú¥·¥ã¥ê¥¹¥È - SE̼¤Î·õ -

¥Í¥Ã¥È¥ï¡¼¥¯¥¹¥Ú¥·¥ã¥ê¥¹¥È¤Î»î¸³Âкö¥µ¥¤¥È¡Êby º¸Ìç»êÊö¤Î³ô¼°²ñ¼Ò¥¨¥¹¥¨¥¹¥³¥ó¥µ¥ë¥Æ¥£¥ó¥°¡Ë¤Ç¤¹¡£¥Í¥Ã¥È¥ï¡¼¥¯¥¹¥Ú¥·¥ã¥ê¥¹¥È»î¸³¤Î
ÊÙ¶¯ÊýË¡¡¢¹ç³ÊÂθ³ÃÌ¡¢¹ç³Ê¤Î¥³¥Ä¡¢²áµîÌä²òÀâ¡¢´ðÁÃÃμ±¤Ê¤É¤Î¾ðÊó¤ò·ÇºÜ¤·¤Þ¤¹¡£»î¸³Âкö¥»¥ß¥Ê¡¼¡¦¸¦½¤¤â¹Ô¤Ã¤Æ¤ª¤ê¤Þ¤¹¡£
¥Í¥Ã¥È¥ï¡¼¥¯¥¹¥Ú¥·¥ã¥ê¥¹¥È»î¸³Âкö¡¦ÊÙ¶¯¤Ê¤éº¸Ìç»êÊö¤ÎºÇ¤â¾Ü¤·¤¤²áµîÌä²òÀâ¡Ö¥Í¥¹¥Ú¡×¥·¥ê¡¼¥º¡Êµ»½ÑɾÏÀ¼Ò¡Ë¤Ç¡ª¡ª

¥«¥Æ¥´¥ê¡§10.¥¢¥×¥ê¥±¡¼¥·¥ç¥óÁØ¡ÊL5¡ÁL7¡Ë > 10.7 ³Æ¼ï¥×¥í¥È¥³¥ë

LDAP¡ÊLightweight Directory Access Protocol¡Ë¤Ç¤¹¡£
ǧ¾Ú¤Î¥×¥í¥È¥³¥ë¤Ç¤Ï¡¢Radius¥×¥í¥È¥³¥ë¡¢ActiveDirectory¡¢LDAP¤Î3¤Ä¤¬¤è¤¯ÍøÍѤµ¤ì¤Þ¤¹¡£
¥Í¥Ã¥È¥ï¡¼¥¯¥¹¥Ú¥·¥ã¥ê¥¹¥È¤òÌܻؤ¹½÷À­SE¤¢¤ì¡©

Radius¥µ¡¼¥Ð¤âAD¥µ¡¼¥Ð¤â¡¢¤É¤Á¤é¤â¥æ¡¼¥¶¾ðÊó¤ò»ý¤Ã¤¿Ç§¾Ú¥µ¡¼¥Ð¤Ç¤¹¤è¤Í¡£
LDAP¤âƱ¤¸¤Ç¤¹¤«¡©
¤Ï¤¤¡¢¤½¤¦¹Í¤¨¤Æ¤¯¤À¤µ¤¤¡£Radius¤Ë¤·¤Æ¤â¤½¤¦¤Ç¤¹¤¬¡¢Radius¤Ï¥×¥í¥È¥³¥ë¤Ç¤¢¤ê¡¢Ç§¾Ú¥µ¡¼¥Ð¤ÏRadius¥µ¡¼¥Ð¤È¸Æ¤Ð¤ì¤Þ¤¹¡£LDAP¤âƱ¤¸¤Ç¡¢LDAP¤Ï¥×¥í¥È¥³¥ë¤Ç¤¹¤¬¡¢LDAP¥µ¡¼¥Ð¤È¤¤¤¦¤È¡¢¥æ¡¼¥¶¾ðÊó¤ò»ý¤Ã¤¿Ç§¾Ú¥µ¡¼¥Ð¤ò»Ø¤·¤Þ¤¹¡£
¢¨AD¤Ë´Ø¤·¤Æ¤Ï¡¢¥×¥í¥È¥³¥ë¤ÏNTLMv2¤Ê¤É¤ò»È¤¤¤Þ¤¹¡£
¥Í¥Ã¥È¥ï¡¼¥¯¥¹¥Ú¥·¥ã¥ê¥¹¥È¤òÌܻؤ¹½÷À­SE¥Ï¥Æ¥Ê 

RADIUS¥µ¡¼¥Ð¤ÈLDAP¥µ¡¼¥Ð¤Î»È¤¤Ê¬¤±¤Ï¤É¤¦¤¹¤ë¤Î¤Ç¤¹¤«¡©
³°Éô¤«¤é¤Î¥ê¥â¡¼¥È¥¢¥¯¥»¥¹¤ä̵ÀþLAN¤Îǧ¾Ú¤Ê¤É¤Î¥æ¡¼¥¶Ç§¾Ú¤Ç¤ÏRADIUS¤¬ÍøÍѤµ¤ì¤Þ¤¹¡£°ìÊý¡¢LDAP¥µ¡¼¥Ð¤Ï¡¢¥Ç¥£¥ì¥¯¥È¥ê¥µ¡¼¥Ó¥¹¤ÇÍøÍѤµ¤ì¤Þ¤¹¡£¥Ç¥£¥ì¥¯¥È¥ê¥µ¡¼¥Ó¥¹¤Ç¤¹¤«¤é¡¢³¬Áع½Â¤¤Ç´ÉÍý¤µ¤ì¤ë¼Ò°÷¤Î¾ðÊ󤪤è¤ÓÉô½ð¤ä¥¢¥¯¥»¥¹¸¢¤Ê¤É¡¢Â¿¤¯¤Î¾ðÊó¤ò´ÉÍý¤Ç¤­¤Þ¤¹¡£¤½¤ì¤é¤ÎÊ£»¨¤Ê¼Ò°÷¤Î°À­¾ðÊó¤ò´ÉÍý¤¹¤ë¾ì¹ç¤Ë¡¢LDAP¥µ¡¼¥Ð¤ª¤è¤ÓLDAP¤Î¥×¥í¥È¥³¥ë¤¬ÍøÍѤµ¤ì¤Þ¤¹¡£

²áµîÌä¡ÊH22½©SC¸á¸å­¶Ìä2¡Ë¤ò¤ß¤Æ¤ß¤Þ¤·¤ç¤¦¡£
 LDAP¤Î¥¢¥«¥¦¥ó¥È¾ðÊó¤Ç¤Ï,  inetOrgPerson¤È¤¤¤Ã¤¿¥ª¥Ö¥¸¥¨¥¯¥È¥¯¥é¥¹¤Ë¤è¤Ã¤ÆÁÈ¿¥¤ÎÍøÍѼԤξðÊó¤ò´ÉÍý¤¹¤ëɸ½àŪ¤Ê[¡¡b¡¡]¤òÍѤ¤¤Æ¤¤¤ë¡£Î㤨¤Ð,À½Éʳ«È¯Éô¤Î¥¹¥º¥­¥¿¥í¥¦»á¤¬¼ÒÆâ¤ÇÍøÍѤ¹¤ëLDAPÍѤΥ¢¥«¥¦¥ó¥È¾ðÊó¤ò[¡¡c¡¡]¤Ë¤è¤Ã¤Æ¥Æ¥­¥¹¥È·Á¼°¤Ç¼¨¤¹¤È,¿Þ7¤È¤Ê¤ë¡£
dn: uid=suzuki,ou=seihin-kaihatsu,dc=a-companyen: Taro Suzuki
sn: Suzuki
objectclass: top
objectclass: person
objectclass: organizationalPerson
objectclass: inetOrgPerson
ou:À½Éʳ«È¯Éô
teleDhonenumber:03-XXXX-5555
c=com
¿Þ7 LDAP¤Ë¤ª¤±¤ë¥¹¥º¥­¥¿¥í¥¦»á¤Î¥¢¥«¥¦¥ó¥È¾ðÊó(È´¿è)

¤µ¤Æ¡¢¶õÍó¤Ç¤¹¤¬¡¢°Ê²¼¤¬Æþ¤ê¤Þ¤¹¡£
b¡¡¥¹¥­¡¼¥Þ
c¡¡LDIF
¥Í¥Ã¥È¥ï¡¼¥¯¥¹¥Ú¥·¥ã¥ê¥¹¥È¤òÌܻؤ¹½÷À­SE¤¢¤ì¡©¡¡

LDAP¤ÎÄÌ¿®¤Ï°Å¹æ²½¤µ¤ì¤Æ¤¤¤Þ¤¹¤«¡©




¤¤¤¨¡¢¤Ï°Å¹æ²½¤µ¤ì¤Æ¤¤¤Ê¤¤¤Î¤Ç¡¢°Å¹æ²½¤¹¤ë¤Ë¤ÏLDAP over TLS¤ò»È¤¤¤Þ¤¹¡£
²áµîÌä¡ÊH21½ÕSC¸áÁ°­¶¡Ë¤ò¤ß¤Æ¤ß¤Þ¤·¤ç¤¦¡£
Ìä10 ÄÌ¿®¤Î°Å¹æ²½¤Ë´Ø¤¹¤ëµ­½Ò¤Î¤¦¤Á,ŬÀڤʤâ¤Î¤Ï¤É¤ì¤«¡£
¥¢ IPsec¤Î¥È¥é¥ó¥¹¥Ý¡¼¥È¥â¡¼¥É¤Ç¤Ï,¥²¡¼¥È¥¦¥§¥¤´Ö¤ÎÄÌ¿®·ÐÏ©¾å¤À¤±¤Ç¤Ï¤Ê¤¯,ȯ¿®¥Û¥¹¥È¤È¼õ¿®¥Û¥¹¥È¤È¤Î´Ö¤ÎÁ´·ÐÏ©¾å¤Ç¥á¥Ã¥»¡¼¥¸¤¬°Å¹æ²½¤µ¤ì¤ë¡£
¥¤ LDAP ¥¯¥é¥¤¥¢¥ó¥È¤¬LDAP¥µ¡¼¥Ð¤ËÀÜÅý¤¹¤ë¤È¤­,¤½¤ÎÄÌ¿®ÆâÍÆ¤Ï°Å¹æ²½¤¹¤ë¤³¤È¤¬¤Ç¤­¤Ê¤¤¡£
¥¦ S/MME¤Ç°Å¹æ²½¤·¤¿ÅŻҥ᡼¥ë¤Ï,¼õ¿®Â¦¤Î¥á¡¼¥ë¥µ¡¼¥ÐÆâ¤Ë³ÊǼ¤µ¤ì¤Æ¤¤¤ë´Ö¤Ï,¥á¡¼¥ë´ÉÍý¼Ô¤¬Ê¿Ê¸¤È¤·¤Æ¸«¤ë¤³¤È¤¬¤Ç¤­¤ë¡£
¥¨ SSL¤ò»ÈÍѤ¹¤ë¤È,°Å¹æ²½¤µ¤ì¤¿HTMLʸ½ñ¤Ï¥Ö¥é¥¦¥¶¤Ç¥­¥ã¥Ã¥·¥å¤Î̵ͭ¤¬ÀßÄê¤Ç¤­¤º,¥Ç¥£¥¹¥¯Æâ¤Ëɬ¤ºÊݸ¤µ¤ì¤ë¡£
¢ÍÀµ²ò¤Ï¥¢
¥¤¤Ë´Ø¤·¤Æ¤Ï¡¢LDAP over TLS¤ò»È¤¦¤³¤È¤ÇÄÌ¿®ÆâÍÆ¤ò°Å¹æ²½¤¹¤ë¤³¤È¤¬¤Ç¤­¤Þ¤¹¡£



NWµ¡´ï¤ä¥µ¡¼¥Ð¤Ç°ìÈÌŪ¤Ë»È¤ï¤ì¤Æ¤¤¤ë¥í¥°Å¾Á÷¤Î¥×¥í¥È¥³¥ë¤Ï¡¤syslog¤Ç¤¹¡£syslog¤Ï¥µ¡¼¥Ð¤À¤±¤Ç¤Ï¤Ê¤¯¡¤¥Í¥Ã¥È¥ï¡¼¥¯µ¡´ï¤Î¥í¥°¤ò¼ý½¸¡¦Å¾Á÷¤¹¤ë¤È¤­¤Ë¤âÍøÍѤǤ­¤Þ¤¹¡£

²áµîÌä¡ÊH19½©NW¸á¸å­µ¡Ë¤Ç¤Ï¡¢¡ÖWeb¥µ¡¼¥Ð¤Ë¥¢¥¯¥»¥¹¥í¥°¤òÊݸ¤»¤º,Web¥¢¥¯¥»¥¹¤¬È¯À¸¤¹¤ë¤´¤È¤Ë, Web¥µ¡¼¥Ð¤«¤é¥í¥°²òÀÏ¥µ¡¼¥Ð¥Øsyslog¥×¥í¥È¥³¥ë¤òÍøÍѤ·¤Æ,¥¢¥¯¥»¥¹¥í¥°¤òžÁ÷¤¹¤ë¡£¡×¤È¤¢¤ê¤Þ¤¹¡£

²áµîÌä¡ÊH26½ÕSC¸á¸å­µÌä2¡Ë¤Ç¤Ï¡¢·êËä¤á¤ÇÌä¤ï¤ì¤Þ¤·¤¿¡£
¡Ö¥¤¥ó¥¿¡¼¥Í¥Ã¥ÈÀܳ¥·¥¹¥Æ¥à¤Î³Æ¥µ¡¼¥Ð¤Ç¤Ï¡¤¥µ¡¼¥Ð¥Ø¤Î¥¢¥¯¥»¥¹µÚ¤Ó¥µ¡¼¥Ð¾å¤Ç¤Î¥×¥í¥°¥é¥à¤Îưºî¤Î¥í¥°¤ò¥í¥°¥µ¡¼¥Ð¤ËÊݸ¤·¤Æ¤¤¤ë¡£¥í¥°¤ò¼ý½¸¡¤Å¾Á÷¤¹¤ëÊý¼°¤Ë¤Ï¡¤UNIX¤Ç°ìÈÌŪ¤Ë»È¤ï¤ì¤Æ¤¤¤ë[  a  ]¤È¤¤¤¦¥×¥í¥È¥³¥ë¤òÍøÍѤ·¤Æ¤¤¤ë¡£¡×

²áµîÌä¡ÊH30½©NW¸á¸å­µÌä2¡Ë¤Ç¤Ï¡¢¡ÖSYSLOG¤Ï¡¤¥È¥é¥ó¥¹¥Ý¡¼¥È¥×¥í¥È¥³¥ë¤È¤·¤ÆRFC 768¤Çµ¬Äꤵ¤ì¤Æ¤¤¤ë[¡¡¥¦¡§UDP¡¡]¤òÍѤ¤¤Æ¤¤¤ë¡£¡×¤È¤¢¤ê¤Þ¤¹¡£

¢£SYSLOG¤ò»î¤·¤Æ¤ß¤è¤¦
SYSLOG¤Îưºî¤ò³Îǧ¤·¤Æ¤ß¤Þ¤·¤ç¤¦¡£
º£²ó¤Ï¡¢Catalyst¤Î¥¹¥¤¥Ã¥Á¤ÎIF¤ò¥À¥¦¥ó¤µ¤»¤Æ¡¢SYSLOG¥µ¡¼¥Ð¤Ë¥í¥°¤òžÁ÷¤¹¤ëÍͻҤò¤ß¤Æ¤ß¤Þ¤¹¡£
Catalyst¥¹¥¤¥Ã¥Á¤ÎÀßÄê¤Ï´Êñ¤Ç¤¹¡£
SYSLOG¥µ¡¼¥Ð¤ÎIP¥¢¥É¥ì¥¹¤ò»ØÄê¡Êº£²ó¤Ï192.168.1.1¡Ë¤¹¤ë¤À¤±¤Ç¤¹¡£

Switch#conf t
Switch(config)#logging host 192.168.1.1

¤³¤Î¾õÂ֤ǡ¢¥Ý¡¼¥È5¤òÈ´¤¯¤È¡¢SYSLOG¥µ¡¼¥Ð¤ËUDP¤ÇSYSLOG¥á¥Ã¥»¡¼¥¸¤¬Å¾Á÷¤µ¤ì¤Þ¤¹¡£
syslog
¤¿¤È¤¨¤Ð¡¢°Ê²¼¤Ï¡¢1È֥ݡ¼¥È¡ÊFastEthernet0/1¡Ë¤Î¾õÂÖ¤¬¥À¥¦¥ó¡Êdown¡Ë¤Ë¤Ê¤Ã¤¿¤È¤¤¤¦SYSLOG¥á¥Ã¥»¡¼¥¸¤Ç¤¹¡£
Message: *Mar  1 00:11:16.960: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/1, changed state to down



MQTT(Message Queuing Telemetry Transport)¤Ë¤Ä¤¤¤Æ

¢££±¡¥³µÍ×
¡¦º£¤Î»þÂå¡¢PC¤ÈPC¤ä¥µ¡¼¥Ð¤òÄÌ¿®¤¹¤ë¥×¥í¥È¥³¥ë¤ÏHTTP¡ÊHTTPS¡Ë¤¬Ãæ¿´¡£FTP¤äSMTP¡¢telnet¡¢SNMP¡¢SMB¤Ê¤É¡¢ËÜÅö¤Ï¤¤¤¯¤Ä¤«¤¢¤ë¤±¤É¤Í¡£
¡¦MQTT¤Ï¡¢PC¤ä¥¹¥Þ¥Û¤Ê¤É¤Ï¤Ê¤¯¡¢¹©¾ì¤Îµ¡³£¤ä¥»¥ó¥µ¡¼¤Ê¤É¤ÎIoTµ¡´ï¤ÎÄÌ¿®¤ËŬ¤·¤¿¥×¥í¥È¥³¥ë¡£
¡¦¥á¥Ã¥»¡¼¥¸¡ÊMessage¡Ë¤ò¡¢Á÷¿®¼Ô¤È¼õ¿®¼Ô¤Î¹Â¤òËä¤á¤ë¤¿¤á¤Ë¥­¥å¡¼¤ËÃßÀÑ¡ÊQueuing¡Ë¤·¤Ê¤¬¤é¡¢ Telemetry¡Ê±ó³Ö¬Äê¡Ë¤òTransport¡Ê±¿ÈÂ)¤¹¤ë¡£¤À¤¬¡¢¼ÂºÝ¤Ë¤ÏQueue¤Ï¤·¤Æ¤¤¤Ê¤¤¡£IBM»þÂå¤Î̾Á°¤Î̾»Ä¤Î¤è¤¦¤Ç¤¹¡£
¡¦http://mqtt.org/¡¡¤Ë¤¤¤í¤¤¤í½ñ¤¤¤Æ¤¢¤ë¡£¤¿¤È¤¨¤Ð¡¢MQTT¤Ï¡¢M2M¤äIoT¤ÎÀܳ¤ËÍøÍѤ¹¤ë·ÚÎ̤ʥץí¥È¥³¥ë¤Ç¤¹¤È¡£
¡¦HTTP¡ÊHTTPS¡Ë¤ËÈæ¤Ù¤Æ¥Ø¥Ã¥À¥µ¥¤¥º¤¬¾®¤µ¤¤¡Ê2¥Ð¥¤¥È¤·¤«¤Ê¤¤¡Ë¡£¤Ç¤â¡¢Â¾¤Î¥Ø¥Ã¥À¤ÏƱ¤¸¤À¤è¡£
[¥¤¡¼¥µ][IP][TCP][HTTP][¥Ç¡¼¥¿]
[¥¤¡¼¥µ][IP][TCP][MQTT][¥Ç¡¼¥¿]
¢¨HTTP¥Ø¥Ã¥À¤¬·ë¹½Â礭¤¤¡£

¡¦·ÚÎ̡ʤĤޤꡢ¥Ç¡¼¥¿Î̤¬¾¯¤Ê¤¯¤Æ¤¹¤à¡Ë¥×¥í¥È¥³¥ë¤Ê¤Î¤Ç¡¢ÅÅÃÓ¤ÇÆ°¤¯IoT¤Î¥»¥ó¥µ¡¼¤Ê¤É¤Ë¤È¤Ã¤Æ¡¢ÅŸ»ÍÆÎ̤¬¾¯¤Ê¤¤¤Î¤Ï˾¤Þ¤·¤¤¡£
¡¦MQTT¤Ï¥»¥­¥å¥ê¥Æ¥£µ¡Ç½¡Êǧ¾Ú¤ä°Å¹æ¡Ë¤â¤¢¤ë¢ªTLS¤ò»È¤¦¡£
¡¦Publisher¡ÊÁ÷¿®¼Ô¡Ë¤âSubscriber¡Ê¼õ¿®¼Ô¡Ë¤â¥È¥Ô¥Ã¥¯Ì¾¤òÀßÄꤷ¤Æ¥á¥Ã¥»¡¼¥¸¤òÁ÷¤Ã¤¿¤ê¡¢¼õ¤±¼è¤Ã¤¿¤ê¤¹¤ë¡£
¡¦´Ö¤Ë¥Ö¥í¡¼¥«¤¬Æþ¤ë¤³¤È¤Ç¡¢1ÂУ±¤Ç¤Ï¤Ê¤¯¡¢1Âп¤ÎÄÌ¿®¤¬´Êñ¤Ë¹Ô¤¨¤ë¡£
¡¦»ÅÁȤߤϥá¥ë¥Þ¥¬¤Ë»÷¤Æ¤¤¤ë¡£³ºÅö¤Î¥á¥ë¥Þ¥¬¤ËÅÐÏ¿¤·¤¿¿Í¤À¤±¤¬¤½¤Î¥á¥ë¥Þ¥¬¤òÆÉ¤á¤ë
¡¦MQTT¤Î¾ÜºÙ¤Ê»ÅÍͤϰʲ¼¤¬»²¹Í¤Ë¤Ê¤ê¤Þ¤¹¡£http://public.dhe.ibm.com/software/dw/jp/websphere/wmq/mqtt31_spec/mqtt-v3r1_ja.pdf

¢££²¡¥Åоì¿Íʪ
¡¦¥Ö¥í¡¼¥«¡¼¡Ê¥µ¡¼¥Ð¡Ë
¡¦Publisher¡ÊÁ÷¿®¼Ô¡Ë
¡¦Subscriber¡Ê¼õ¿®¼Ô¡Ë

¢££³¡¥ÄÌ¿®¤Îή¤ì
¡¦Á÷¿®¼Ô¤Ï¼õ¿®¼Ô¤ò°Õ¼±¤¹¤ë¤³¤È¤Ê¤¯¡¢¹¥¤­¤Ê»þ¤Ë¥Ç¡¼¥¿¤òÁ÷¤ë¤³¤È¤¬¤Ç¤­¤ë¡£¼õ¿®¼Ô¤È¤ÎÃç²ð¤ò¤¹¤ë¤Î¤¬¥Ö¥í¡¼¥«¡¼¡£
¡¦MQTT¤ÎÄÌ¿®¤ò¤¹¤ëÁ°ÃʤȤ·¤Æ¡¢Á÷¿®¼Ô¤È¼õ¿®¼Ô¤Ï¥Ö¥í¡¼¥«¡¼¤Ë¥¢¥¯¥»¥¹¤¹¤ëɬÍפ¬¤¢¤ê¤Þ¤¹¡£
¡¦°Ê²¼¤Ëή¤ì¤ò¤Þ¤È¤á¤Þ¤¹¡£
(1)Á÷¿®¼Ô
¡¡­¡¥Ö¥í¡¼¥«¤ËÀܳ¤·¤Þ¤¹¡ÊCONNECT¡Ë
¡¡­¢¥È¥Ô¥Ã¥¯Ì¾¤ò»ØÄꤷ¤Æ¡¢¥Ö¥í¡¼¥«¤ËÂФ·¤Æ¥á¥Ã¥»¡¼¥¸¤òÁ÷¿®¤·¤Þ¤¹¡ÊPUBLISH¡Ë¡¡
(2)¼õ¿®¼Ô
¡¡­¡¥Ö¥í¡¼¥«¤ËÀܳ¤·¤Þ¤¹¡ÊCONNECT¡Ë
¡¡­¢¹ØÆÉ¤·¤¿¤¤¥È¥Ô¥Ã¥¯¤Ë´Ø¤·¤Æ¡¢¥Ö¥í¡¼¥«¤ËÂФ·¤Æ¥á¥Ã¥»¡¼¥¸¤òÁ÷¿®¤·¤Þ¤¹¡£¡ÊSUBSCRIBE¡Ë
¡¡­£Á÷¿®¼Ô¤ÎPUBLISH¥á¥Ã¥»¡¼¥¸¤¬ÆÏ¤¯¤è¤¦¤Ë¤Ê¤ë¡£

¢££´¡¢¼ÂºÝ¤Ë¤ä¤Ã¤Æ¤ß¤è¤¦¡£
Windows¤Ç¤â´Êñ¤Ë¤Ç¤­¤Þ¤¹¡£
¡Ê£±¡Ë¥½¥Õ¥È¤Î¥À¥¦¥ó¥í¡¼¥É
¥½¥Õ¥È¤Ï°Ê²¼¤«¤é¥À¥¦¥ó¥í¡¼¥É¤·¤Þ¤¹¡£¥Ö¥í¡¼¥«¡¼¤È¥¯¥é¥¤¥¢¥ó¥È¥½¥Õ¥È¤ÎξÊý¤¬»È¤¨¤Þ¤¹¡£
https://mosquitto.org/

¥À¥¦¥ó¥í¡¼¥É¥Ú¡¼¥¸¤Ï°Ê²¼¤Ç¤¹¡£»ä¤Ï¡¢Windows¤Î64bitÈÇ
mosquitto-1.6.2-install-windows-x64.exe ¤ò¥À¥¦¥ó¥í¡¼¥È¤·¤Æ¥¤¥ó¥¹¥È¡¼¥ë
https://mosquitto.org/download/

¡Ê£²¡Ë¥³¥Þ¥ó¥É¥×¥í¥ó¥×¥È¤«¤é¼Â¹Ô
¥³¥Þ¥ó¥É¥×¥í¥ó¥×¥È¤Ç¡¢¥¤¥ó¥¹¥È¡¼¥ë¤µ¤ì¤¿¥Õ¥©¥ë¥À¤Ë°Üư¤·¤Þ¤¹¡£
c:\Program Files\mosquitto>

¡Ê£³¡Ë¥Ö¥í¡¼¥«¡¼¤Îµ¯Æ°
>mosquitto¡¡-v¡¡
¤Çµ¯Æ°¡£-v¤Ï¾ÜºÙ¤È¤¤¤¦°ÕÌ£¤Ê¤Î¤Ç¡¢¾Êά²Äǽ

¤¿¤À¡¢º£²ó¤Ï¡¢¥Í¥Ã¥È¾å¤Î¥Ö¥í¡¼¥«¡Êtest.mosquitto.org¡Ë¤ò»È¤¦¤Î¤Ç¡¢µ¯Æ°¤ÏÉÔÍס£

¡Ê£´¡Ë¥¯¥é¥¤¥¢¥ó¥È¡Ê¹ØÆÉ¼Ô¡Ë¤òµ¯Æ°
¤â¤¦°ì¤Ä¥³¥Þ¥ó¥É¥×¥í¥ó¥×¥È¤òΩ¤Á¾å¤²¤ë
¹ØÆÉÍ×µá¤Î¡ÊSUBSCRIBE¡Ë¤ò¼Â¹Ô¤¹¤ë¡£
>mosquitto_sub -h test.mosquitto.org -d -t msg/network
-h:¥Ö¥í¡¼¥«¡¼¤Î¥µ¡¼¥Ð¤ò»ØÄê
-d:¥Ç¥Ð¥Ã¥¯¥á¥Ã¥»¡¼¥¸¤Îɽ¼¨
-t:¹ØÆÉ¤¹¤ë¥È¥Ô¥Ã¥¯Ì¾

--------·ë²Ì¤Ï¤³¤ó¤Ê´¶¤¸
c:\Program Files\mosquitto>mosquitto_sub -h test.mosquitto.org -d -t msg/network

Client mosq/KydpkSJ1xV8n7irO7H sending CONNECT
Client mosq/KydpkSJ1xV8n7irO7H received CONNACK (0)
Client mosq/KydpkSJ1xV8n7irO7H sending SUBSCRIBE (Mid: 1, Topic: msg/network, Qo
S: 0, Options: 0x00)
Client mosq/KydpkSJ1xV8n7irO7H received SUBACK
Subscribed (mid: 1): 0
----------
¤³¤Î¤è¤¦¤Ë¡¢CONNECT¤ÈCONNACK¤Ë¤è¤ëÀܳ¤È¡¢msg/network¤ÎTopiC¤ò¹ØÆÉÍ׵ᤷ¤Æ¤¤¤Þ¤¹¡£

¡Ê£µ¡Ë¥¯¥é¥¤¥¢¥ó¥È¡ÊÇÛ¿®¼Ô¡Ë¤òµ¯Æ°
¤â¤¦°ì¤Ä¥³¥Þ¥ó¥É¥×¥í¥ó¥×¥È¤òΩ¤Á¾å¤²¤ë
¥á¥Ã¥»¡¼¥¸¤ÎÁ÷¿®¤Î¡ÊPUBLISH¡Ë¤ò¼Â¹Ô¤¹¤ë¡£
mosquitto_pub -h test.mosquitto.org -d -t msg/network -m "I am a networkspecialist!"

-m:¥á¥Ã¥»¡¼¥¸¤ÎÆâÍÆ

------------·ë²Ì¤Ï¤³¤ó¤Ê´¶¤¸
c:\Program Files\mosquitto>mosquitto_pub -h test.mosquitto.org -d -t msg/network
 -m "I am a networkspecialist!"
Client mosq/DQwypOw3cVO3Cstcfi sending CONNECT
Client mosq/DQwypOw3cVO3Cstcfi received CONNACK (0)
Client mosq/DQwypOw3cVO3Cstcfi sending PUBLISH (d0, q0, r0, m1, 'msg/network', .
.. (25 bytes))
Client mosq/DQwypOw3cVO3Cstcfi sending DISCONNECT
----------
¤Þ¤¿¡¢¤µ¤­¤Û¤É¤Î¹ØÆÉ¤·¤¿¥×¥í¥ó¥×¥È¤Ë¤Ï¡¢°Ê²¼¤¬É½¼¨¤µ¤ì¤ë¡£

----------
Client mosq/KydpkSJ1xV8n7irO7H received PUBLISH (d0, q0, r0, m0, 'msg/network',
... (25 bytes))
I am a networkspecialist!
----------

¤³¤³¤Þ¤Ç¤Ç¡¢6384bit¤Ç¤·¤¿¡£¤È¤Æ¤â¾®¤µ¤¤¤Ç¤¹¤Í¡£

¢££¶¡¥¾åµ­¤Î¥Ñ¥±¥Ã¥È¤Î¥­¥ã¥×¥Á¥ã
¡Ê£±¡ËCONNECT
mqtt_connect

¡Ê£²¡ËPUBLISH¡¡Messeage
mqtt



£±¡¥NTP¤È¤Ï

NTP(Network Time Protocol)¤Ï¡¢¸ÀÍÕ¤ÎÄ̤ꡢ¥Í¥Ã¥È¥ï¡¼¥¯(Network)¾å¤Îµ¡´ï¤Î»þ¹ï(Time)¤òÀµ³Î¤Ë°Ý»ý¤¹¤ë¤¿¤á¤Î¥×¥í¥È¥³¥ë¡ÊProtocol)¤Ç¤¹¡£¡¡¤Þ¤¿¡¢TCP/IP¤Î¥×¥í¥È¥³¥ë¤ò»È¤Ã¤Æ¡¢Ã¼Ëö¡ÊNTP¥¯¥é¥¤¥¢¥ó¥È¡Ë¤Ë»þ¹ï¤òÇÛ¿®¤¹¤ë¥µ¡¼¥Ð¤òNTP¥µ¡¼¥Ð¤È¸À¤¤¤Þ¤¹¡£
;Ã̤Ǥ¹¤¬¡¢ÅìµþÅÔ¾®¶â°æ»Ô¤Ë¤¢¤ëNICT¡Ê¹ñΩ¸¦µæ³«È¯Ë¡¿Í ¾ðÊóÄÌ¿®¸¦µæµ¡¹½¡Ë¤Ç¤Ï¡¢ÆüËÜɸ½à»þ¤ò·èÄꡦ°Ý»ý¤·¤Æ¤¤¤ë¤È¤È¤â¤Ë¡¢NTP¥µ¡¼¥Ð¡Êntp.nict.jp¡Ë¤Ë¤ÆÉ¸½à»þ¤òÇÛ¿®¤·¤Æ¤¤¤Þ¤¹¡£
;Ã̤Ǥ¹¤¬¡¢´ë¶È¤Ç¤âNICT¤ÎNTP¥µ¡¼¥Ð¤ò»ØÄꤷ¤Æ¤¤¤¤¤è¤¦¤Ç¤¹¡£¿½ÀÁ¤Ê¤É¤ÏÉÔÍפǤ¹¤¬¡¢¾¯¤·¤À¤±¾ò·ï¤¬¤¢¤ë¤ß¤¿¤¤¤Ç¤¹¤¬¡¦¡¦¡¦
http://jjy.nict.go.jp/tsp/PubNtp/qa.html#q0-1

¤Þ¤º¤Ï²áµîÌä¡ÊH25½ÕSC¸á¸å­¶Ìä2¡Ë¤ò¸«¤Æ¤ß¤è¤¦¡£
³°ÉôDNS¥µ¡¼¥Ð¤Ï¡¤¥¤¥ó¥¿¡¼¥Í¥Ã¥È¾å¤Î»þ¹ï¥µ¡¼¥Ð¤È¤Î´Ö¤Ç¡¤[¡¡a¡¡]¤òÍѤ¤¤Æ»þ¹ïƱ´ü¤ò¹Ô¤Ã¤Æ¤¤¤ë¡£FWµÚ¤Ó¾ðÊó¥·¥¹¥Æ¥à¤Î³Æ¥µ¡¼¥Ð¤Ï¡¤³°ÉôDNS¥µ¡¼¥Ð¤È¤Î´Ö¤Ç¡¤[¡¡a¡¡]¤òÍѤ¤¤Æ»þ¹ïƱ´ü¤ò¹Ô¤Ã¤Æ¤¤¤ë¡£

NTP
¶õÍó¤ËÅö¤Æ¤Ï¤Þ¤ë¤Î¤¬NTP¤Ç¤¢¤ë¡£

NTP¤Ë´Ø¤·¤Æ¤Ï¡¢¥Í¥Ã¥È¥ï¡¼¥¯¥¹¥Ú¥·¥ã¥ê¥¹¥È»î¸³¤Î²áµîÌä¡ÊH19NW¸á¸å1Ìä3¡Ë¤Ç¾Ü¤·¤¯Ìä¤ï¤ì¤¿¡£¤½¤ÎÌäÂê¤ò¸«¤Æ¤ß¤è¤¦¡£
¡ÌNTP¤Î»ÅÁȤߡÍ
¥Í¥Ã¥È¥ï¡¼¥¯¾å¤Îµ¡´ï¤Î»þ¹ï¤òÀµ³Î¤Ë°Ý»ý¤¹¤ë¤¿¤á¤Ë¡¤NTP(Network TimeProtocol)¤ò»ÈÍѤ¹¤ë¡£NTP¤Ï¡¤¼¡¤Î2ÅÀ¤òÁ°Äó¤ËÀ߷פµ¤ì¤Æ¤¤¤ë¡£
¡¦¥Í¥Ã¥È¥ï¡¼¥¯¾å¤ËÀµ³Î¤Ê»þ¹ï¾ðÊó¤òÊÝ»ý¤¹¤ëµ¡´ï¤¬¤¢¤ë¡£
¡¦»þ¹ï¤òƱ´ü¤µ¤»¤ëµ¡´ï´Ö¤ÎÄÌ¿®¤Ç¡¤Í×µáÅÅʸ¤È±þÅúÅÅʸ¤¬¥Í¥Ã¥È¥ï¡¼¥¯Æâ¤ÇÃٱ䤹¤ë»þ´Ö¤¬Åù¤·¤¤¡£
¡¡NTP¤Ï¡¤stratum¤È¸Æ¤Ð¤ì¤ë³¬Áع½Â¤¤ò¤â¤Á¡¤ºÇ¾å°Ì¤Îµ¡´ï¤¬¡¤¸¶»Ò»þ·×¤äɸ½àÅÅÇÈ¡¤[¡¡a¡¡]Íѿ͹©±ÒÀ±¤Ê¤É¤ÎÀµ³Î¤Ê»þ¹ï¸»¤«¤é»þ¹ï¤ò¼èÆÀ¤·¡¤²¼°Ì¤Îµ¡´ï¤ËÄ󶡤¹¤ë¡£ÃÙ±ä»þ´Ö¤Ë¤Ð¤é¤Ä¤­¤¬¤¢¤ë¤È¡¤»þ¹ï¤ÎÀºÅ٤˱ƶÁ¤¹¤ë¤Î¤Ç¡¤»þ¹ï¤òƱ´ü¤µ¤»¤ëµ¡´ï¤Ï­¡¥Í¥Ã¥È¥ï¡¼¥¯Åª¤Ë¶á¤¤Êý¤¬¤è¤¤¡£

¡ÊÃæÎ¬¡Ë

¡Ì¥¿¥¤¥à¥µ¡¼¥Ð¡Í
¥¤¥ó¥¿¡¼¥Í¥Ã¥È¾å¤Ë¤Ï¥¿¥¤¥à¥µ¡¼¥Ð¤¬¸ø³«¤µ¤ì¤Æ¤¤¤ë¤Î¤Ç¡¤¤½¤³¤«¤é»þ¹ï¤ò¼èÆÀ¤¹¤ë¤³¤È¤¬²Äǽ¤Ç¤¢¤ë¡£¤½¤Î¾ì¹ç¡¤­¢»þ¹ï¤ò¼èÆÀ¤¹¤ëµ¡´ï¤ò¸ÂÄꤷ¡¤¤½¤Î¼èÆÀ¤·¤¿»þ¹ï¤òÁÈ¿¥Æâ¤ËŸ³«¤¹¤ë¹½À®¤¬¿ä¾©¤µ¤ì¤Æ¤¤¤ë¡£¤³¤Î¤è¤¦¤Ë¡¤¥¤¥ó¥¿¡¼¥Í¥Ã¥È¾å¤Î¥¿¥¤¥à¥µ¡¼¥Ð¤òÍøÍѤ·¤¿¤È¤·¤Æ¤â¡¤¼ÒÆâ¤Ë¥¿¥¤¥à¥µ¡¼¥Ð¤òÀßÃÖ¤·¤¿¤ê¡¤FW¤ÎÀßÄê¤òÊѹ¹¤·¤¿¤ê¤·¤Ê¤±¤ì¤Ð¤Ê¤é¤Ê¤¤¤Î¤Ç¡¤Àµ³Î¤Ê»þ¹ï¸»¤ÈƱ´ü¤¹¤ë¥¿¥¤¥à¥µ¡¼¥Ð¤ò¼ÒÆâ¤ËÀßÃÖ¤·¤¿Êý¤¬¤è¤¤¡£¤³¤Î·ÁÂ֤ϡ¤­£²ÄÍÑÀ­¤ÎÌ̤Ǥâ,¥¤¥ó¥¿¡¼¥Í¥Ã¥È¾å¤Î¥¿¥¤¥à¥µ¡¼¥Ð¤òÍøÍѤ¹¤ë¤è¤êÍ¥¤ì¤Æ¤¤¤ë¡£

ÀßÌä1 ËÜÊ¸Ãæ¤Î¡Î¡¡a¡¡¡Ï¤ËÆþ¤ì¤ëŬÀڤʻú¶ç¤òÅú¤¨¤è¡£
ÀßÌä2 NTP¤Ç»ÈÍѤµ¤ì¤ëɸ½à»þ¤ò²òÅú·²¤ÎÃæ¤«¤éÁª¤Ó,µ­¹æ¤ÇÅú¤¨¤è¡£
¡¡²òÅú·²
¥¢ DST    ¥¤ GMT    ¥¦ JST    ¥¨ TAI    ¥ª UTC
ÀßÌä3 NTP¤Îưºî¤Ë¤Ä¤¤¤Æ,(1)~(3)¤ËÅú¤¨¤è¡£
(1)ËÜÊ¸Ãæ¤Î²¼Àþ­¡¤Ë¼¨¤¹¡É¥Í¥Ã¥È¥ï¡¼¥¯Åª¤Ë¶á¤¤¡É¤È¤Ï¡¤¤É¤Î¤è¤¦¤Ê¾õÂÖ¤ò°ÕÌ£¤¹¤ë¤«¡£20»ú°ÊÆâ¤Ç¶ñÂÎŪ¤Ë½Ò¤Ù¤è¡£
(2)ËÜÊ¸Ãæ¤Î²¼Àþ­¢¤Ë¼¨¤¹¹½À®¤ò¤È¤ë¤³¤È¤Ç¡¤¤É¤Î¤è¤¦¤ÊÌäÂê¤ÎȯÀ¸¤ò²óÈò¤Ç¤­¤ë¤«¡£40»ú°ÊÆâ¤Ç½Ò¤Ù¤è¡£
(3)¥¤¥ó¥¿¡¼¥Í¥Ã¥È¾å¤Î¥¿¥¤¥à¥µ¡¼¥Ð¤òÍøÍѤ¹¤ë¾ì¹ç¡¤ËÜÊ¸Ãæ¤Î²¼Àþ­£¤Ë¼¨¤¹²ÄÍÑÀ­¤ÎÌ̤ǡ¤Îô¤Ã¤Æ¤·¤Þ¤¦ÅÀ¤Ï²¿¤«¡£25»ú°ÊÆâ¤Ç½Ò¤Ù¤è¡£

¤³¤ÎÌäÂê¤ÎºÎÅÀ¹Öɾ¤òÆÉ¤à¤È¡¤NTP¤ÎÌÜŪ¤Ê¤É¤¬´Êñ¤ËÍý²ò¤Ç¤­¤ë¤Î¤Ç°úÍѤ¹¤ë¡£
ÍÍ¡¹¤Ê¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤Ç¥¿¥¤¥à¥¹¥¿¥ó¥×¤¬ÍøÍѤµ¤ì¤Æ¤¤¤ë¤¬¡¤»þ¹ï¤¬¤º¤ì¤Æ¤·¤Þ¤¦¤È,¥Õ¥¡¥¤¥ë¤ä¥Ç¡¼¥¿¥Ù¡¼¥¹¤ò¶¦Í­¤·¤¿¾ì¹ç¤ËÉÔ¶ñ¹ç¤¬È¯À¸¤·¤¿¤ê¡¤¥·¥¹¥Æ¥à´ÉÍý¤Ç½ÅÍ×¤Ê¥í¥°¤¬³èÍѤǤ­¤Ê¤¯¤Ê¤Ã¤¿¤ê¤¹¤ë¡£¤½¤¦¤·¤¿¤³¤È¤«¤é¡¤Àµ³Î¤Ê»þ¹ïÀßÄê¤Ø¤ÎÍ׵᤬¹â¤Þ¤Ã¤Æ¤¤¤ë¡£
ËÜÌä¤Ç¤Ï¡¤Àµ³Î¤Ê»þ¹ï¤ò°Ý»ý¤¹¤ë¤¿¤á¤Î»ÅÁȤߤǤ¢¤ëNTP(Network Time Protocol)¤òÂêºà¤È¤·¤Æ¡¤¥Í¥Ã¥È¥ï¡¼¥¯¥¨¥ó¥¸¥Ë¥¢¤ËÃΤäƤª¤¤¤Æ¤Û¤·¤¤´ðËÜŪ¤ÊÃμ±¤È¡¤¥¿¥¤¥à¥µ¡¼¥ÐƳÆþ¤òÄ̤¸¤Æ¥Í¥Ã¥È¥ï¡¼¥¯¤ò¹½ÃÛ¤¹¤ëǽÎϤˤĤ¤¤ÆÌ䤦¡£

»î¸³¥»¥ó¥¿¡¼¤Î²òÅúÎã¤Ï°Ê²¼¤Ç¤¢¤ë¡£
ÀßÌä1  a GPS
ÀßÌä2  ¥ª
ÀßÌä3 
(1) ¡¦·Ðͳ¤¹¤ë¥Í¥Ã¥È¥ï¡¼¥¯µ¡´ï¤¬¾¯¤Ê¤¤¾õÂÖ
     ¡¦ÅÁÁ÷ÃÙ±ä»þ´Ö¤¬¾®¤µ¤¤¾õÂÖ
(2) ÆÃÄê¤Î¥µ¡¼¥Ð¤ËÉé²Ù¤¬½¸Ã椷¡¤³Î¼Â¤Ë»þ¹ï¤ò¼èÆÀ¤¹¤ë¤³¤È¤¬º¤Æñ¤Ë¤Ê¤Ã¤Æ¤·¤Þ¤¦ÌäÂê
(3) ¥¿¥¤¥à¥µ¡¼¥Ð¥Ø¤ÎÀܳÀ­¤¬Êݾڤµ¤ì¤Ê¤¤ÅÀ

¤³¤³¤Ëʸ¾Ï¤òÆþÎÏ¡£

£²¡¥GMT¤ÈUTC

GMT¡ÊGreenwich Mean Time¡Ë¤Ï¡¢¥°¥ê¥Ë¥Ã¥¸É¸½à»þ¤Ç¤¹¤Î¤Ç¡¢·ÐÅÙ0¤Ç¤¢¤ë¥¤¥®¥ê¥¹¤Î¥°¥ê¥Ë¥Ã¥¸Å·Ê¸Âæ¤Î»þ¹ï¤ò»Ø¤·¤Þ¤¹¡£
UTC¡ÊCoordinated universal time¡Ë¤Ï¶¨ÄêÀ¤³¦»þ¤È¸À¤ï¤ì¡¢GMT¤ÎÀ¤³¦É¸½àÈǤǤ¹¡£GMT¤È¤Ï¥³¥ó¥Þ²¿ÉäΥº¥ì¤·¤«¤Ê¤¯¡¢¤Û¤ÜƱ¤¸»þ¹ï¤ò»Ø¤·¤Þ¤¹¡£Æ±¤¸¤â¤Î¤È¤·¤Æ¹Í¤¨¤Æ¤â¤¤¤¤¤Ç¤·¤ç¤¦¡£

£³¡¥Cisco¥¹¥¤¥Ã¥Á¤Ë¤ª¤±¤ë¡¢NTP¤Ë¤è¤ë»þ¹ïƱ´ü¤ÎÀßÄê

Cisco¥¹¥¤¥Ã¥Á¤Ë¤ª¤±¤ë¡¢NTP¤Ë¤è¤ë»þ¹ïƱ´ü¤ÎÀßÄê¤ò¾Ò²ð¤·¤Þ¤¹¡£
(1)¸½ºß¤Î»þ¹ï¤ò¸«¤Æ¤ß¤Þ¤·¤ç¤¦¡£
Switch#sh clock
*00:08:26.235 UTC Mon Mar 1 1993
1993ǯ¤Ã¤Æ¡¢¤¤¤Ä¤Î»þÂå¤Ç¤·¤ç¤¦¤«¡£Á´Á³°ã¤¦ÆüÉդˤʤäƤ¤¤Þ¤¹¡£

(2)NTP¥×¥í¥È¥³¥ë¤òÍѤ¤¡¢NTP¥µ¡¼¥Ð¤È»þ¹ïƱ´ü¤ò¤·¤Þ¤¹¡£
ÀܳÀè¤Ï¡¢¼ÒÆâ¤ÎNTP¥µ¡¼¥Ð¤¬¤¢¤ì¤Ð¡¢¤½¤³¤ò»ØÄꤷ¤Þ¤·¤ç¤¦¡£
»ØÄꤹ¤ëNTP¥µ¡¼¥Ð¤¬µ¡´ï¤´¤È¤Ë°Û¤Ê¤ë¤È¡¢»þ¹ï¤¬¤º¤ì¤ë
´í¸±¤¬¤¢¤ê¤Þ¤¹¡£
º£²ó¤Ï¡¢¸ø¤ÎNTP¥µ¡¼¥Ð¤È¤·¤Æ¡¢¾ðÊóÄÌ¿®¸¦µæµ¡¹½¡ÊNICT¡Ë¤ÎNTP¥µ¡¼¥Ð¡Êntp.nict.jp¡Ë¤ËÀܳ¤·¤Æ¤ß¤Þ¤·¤ç¤¦¡£
¢¨http://jjy.nict.go.jp/ntp/

(3)¤½¤ÎÁ°¤Ë¡¢IP¥¢¥É¥ì¥¹¤ÎÀßÄê
NTP¥µ¡¼¥Ð¤ÈÄÌ¿®¤¹¤ë¤Î¤Ç¡¢IP¥¢¥É¥ì¥¹¤òÀßÄꤷ¤Þ¤¹¡£
¥Ç¥Õ¥©¥ë¥È¥²¡¼¥È¥¦¥§¥¤¤È¡¢Ì¾Á°²ò·è¤Î¤¿¤á¤ËDNS¤âÀßÄꤷ¤Æ¤ª¤­¤Þ¤·¤ç¤¦¡£

Switch(config)#int vlan 1
Switch(config-if)#ip address 100.64.1.33 255.255.255.0
Switch(config-if)#no shutdown
Switch(config-if)#exit
Switch(config)#ip default-gateway 100.64.1.1
Switch(config)#ip name-server 8.8.8.8

(4)NTP¥µ¡¼¥Ð¤Î»ØÄê
NTP¥µ¡¼¥Ð¤È¤·¤Æ¡¢NICT¤Î¥µ¡¼¥Ð¤ò»ØÄꤷ¤Þ¤¹¡£
Switch(config)#ntp server ntp.nict.jp
Switch(config)#end
¤·¤Ð¤é¤¯¤·¤Æ¡¢»þ¹ï¤ò³Îǧ¤¹¤ë¤È¡¢Àµ¤·¤¤»þ´Ö¤ËÀßÄꤵ¤ì¤Æ¤¤¤Þ¤¹¡£

Switch#sh clock
00:04:31: %SYS-5-CONFIG_I: Configured from console by console
00:04:41.571 UTC Sun Jul 14 2019



RADIUS¡ÊRemote Authentication Dial In User Service¡Ë¤È¤Ï
ǧ¾Ú¥µ¡¼¥Ð¤Ëǧ¾Ú¾ðÊó¤òÌ䤤¹ç¤ï¤»¤ë¤È¤­¤ËÍøÍѤ¹¤ë¥×¥í¥È¥³¥ë¤Ç¤¹¡£
ÍøÍÑ¥·¡¼¥ó¤È¤·¤Æ¤Ï¡¢¥À¥¤¥ä¥ë¥¢¥Ã¥×¤Îǧ¾Ú¡¢ÌµÀþLAN¤Îǧ¾Ú¥µ¡¼¥Ð¡¢SSL-VPNÁõÃÖ¡¢¤Ê¤É¤¬¤¢¤ê¤Þ¤¹¡£

¹½À®Îã
Åоì¿Íʪ¤Ï°Ê²¼¤Î3¤Ä¤Ç¤¢¤ë¡£
ÍøÍѼÔ
RADIUS¥¯¥é¥¤¥¢¥ó¥È
RADIUS¥µ¡¼¥Ð

Îã¤È¤·¤Æ¡¢°Ê²¼¤Î¤è¤¦¤Ë¤Ê¤ë
PC¡¡----¢ª¡¡SSLVPNÁõÃÖ¡¡----¢ª¡¡RADIUS¥µ¡¼¥Ð
PC¡¡----¢ª¡¡AP¡¡-----¢ª¡¡RADIUS¥µ¡¼¥Ð

SSL-VPNÁõÃÖ¤äAP¤ÏNAS¡ÊNetwork Access Server¡Ë¤È¸Æ¤Ð¤ì¤ë¡£
¤Þ¤¿¡¢RADIUS¥µ¡¼¥Ð¤ËÂФ·¤ÆRADIUS¥¯¥é¥¤¥¢¥ó¥È¤È¤·¤ÆÆ¯¤¯¡£
¤Ä¤Þ¤ê¡¢RADIUS¥µ¡¼¥Ð¤ËÂФ·¤Æ¡¢ID¤ä¥Ñ¥¹¥ï¡¼¥É¾ðÊó¤òÁ÷¿®¤¹¤ë¡£

¤½¤â¤½¤â¡¢¤Ê¤¼RADIUS¤¬É¬ÍפʤΤ«
1 
¤¿¤È¤¨¤Ð¡¢SSL-VPNÁõÃ֤ˤª¤¤¤Æ¡¢RADIUS¤ò»È¤ï¤Ê¤¯¤Æ¤âǧ¾Ú¤Ï¤Ç¤­¤ë¡£SSL-VPNÁõÃ֤˥桼¥¶¾ðÊó¤òÅÐÏ¿¤¹¤ì¤Ð¤¤¤«¤é¤Ç¤¹¡£

¤Ê¤¼RADIUS¤¬É¬Íפʤó¤Ç¤¹¤«?
ÌÜŪ¤Ï°Ê²¼¤Ç¤¢¤ë¡£
­¡¥æ¡¼¥¶¤Î°ì¸µ´ÉÍý¤Î¤¿¤á¡£Ê£¿ô¤Îǧ¾Ú¤ò¤¹¤ë¾ì¹ç¡¢¤½¤ì¤¾¤ì¤ÎÁõÃ֤ǥ桼¥¶¤ò´ÉÍý¤¹¤ëɬÍפ¬¤¢¤ë¡£
­¢¾åµ­¤Ë´ØÏ¢¤¹¤ë¤¬¡¢´ÉÍý¤ÎÍÆ°×À­¡£°ì¸µ´ÉÍý¤Ê¤Î¤Ç¥í¥°¤Î½¸Ìó¡¢ÍøÍѾõ¶·¤Î´ÉÍý¤Ê¤É¤¬¹Ô¤¤¤ä¤¹¤¤¡£
­£¹âÅ٤ʵ¡Ç½¤ò»ý¤Ä¤³¤È¤¬Â¿¤¤¡£¤¿¤È¤¨¤Ð¡¢EAP-TLSÂбþ¤Ê¤É

²áµîÌä¡ÊH25SC½Õ¸áÁ°2Ìä7¡Ë¤ò²ò¤¤¤Æ¤ß¤è¤¦
Ìä7¡¡ÌµÀþLAN´Ä¶­¤ËÊ£¿ôÂæ¤ÎPC,Ê£¿ô¤Î¥¢¥¯¥»¥¹¥Ý¥¤¥ó¥ÈµÚ¤ÓÍøÍѼÔǧ¾Ú¾ðÊó¤ò´ÉÍý¤¹¤ë1Âæ¤Î¥µ¡¼¥Ð¤¬¤¢¤ë¡£ÍøÍѼÔǧ¾Ú¤È¥¢¥¯¥»¥¹À©¸æ¤ËIEEE 802.1X¤ÈRADIUS¤òÍøÍѤ¹¤ë¾ì¹ç¤Î¼ÂÁõÊýË¡¤Ï¤É¤ì¤«¡£
¥¢¡¡PC¤Ë¤ÏIEEE 802.1X¤Î¥µ¥×¥ê¥«¥ó¥È¤ò¼ÂÁõ¤·, RADIUS¥¯¥é¥¤¥¢¥ó¥È¤Îµ¡Ç½¤ò¤â¤¿¤»¤ë¡£
¥¤¡¡¥¢¥¯¥»¥¹¥Ý¥¤¥ó¥È¤Ë¤ÏIEEE 802.1X¤Î¥ª¡¼¥»¥ó¥Æ¥£¥±¡¼¥¿¤ò¼ÂÁõ¤·¡¤RADIUS¥¯¥é¥¤¥¢¥ó¥È¤Îµ¡Ç½¤ò¤â¤¿¤»¤ë¡£
¥¦¡¡¥¢¥¯¥»¥¹¥Ý¥¤¥ó¥È¤Ë¤ÏIEEE 802.1X¤Î¥µ¥×¥ê¥«¥ó¥È¤ò¼ÂÁõ¤·,RADIUS¥µ¡¼¥Ð¤Îµ¡Ç½¤ò¤â¤¿¤»¤ë¡£
¥¨¡¡¥µ¡¼¥Ð¤Ë¤ÏIEEE 802.1X¤Î¥ª¡¼¥»¥ó¥Æ¥£¥±¡¼¥¿¤ò¼ÂÁõ¤·, RADIUS¥µ¡¼¥Ð¤Îµ¡Ç½¤ò¤â¤¿¤»¤ë¡£

Àµ²ò¤Ï¥¤¤Ç¤¢¤ë¡£



H28ǯ½©NW¸á¸å­¶Ì䣱¤Ç¤Ï¡¢STUN(Session Traversal Utilities for NAT) ¤Î»ÅÁȤߤˤĤ¤¤ÆÌä¤ï¤ì¤Þ¤·¤¿¡£
STUN¤Ï¥Ó¥Ç¥ª¥Á¥ã¥Ã¥È¤Ê¤É¤ÎWebRTC¡ÊWeb Real-Time Communication¡Ë¤Ê¤É¤ÇÍøÍѤµ¤ì¤ëµ»½Ñ¤Ç¤¹¡£
¥¤¥ó¥¿¡¼¥Í¥Ã¥È¤Ë½Ð¤ë¤È¤­¤Ï¥°¥í¡¼¥Ð¥ëIP¥¢¥É¥ì¥¹¤ò»È¤¤¤Þ¤¹¤¬¡¢ÄÌ¿®¤ò¤·¤è¤¦¤È¤¹¤ëPC¤Ï¡¢¼«Ê¬¤Î¥°¥í¡¼¥Ð¥ëIP¥¢¥É¥ì¥¹¤¬²¿¤«¤òÃΤé¤Ê¤¤¤â¤Î¤Ç¤¹¡£¤Ç¤â¡¢ÄÌ¿®Áê¼ê¤ÈÄÌ¿®¤ò¤¹¤ë¤¿¤á¤Ë¤Ï¥×¥é¥¤¥Ù¡¼¥ÈIP¥¢¥É¥ì¥¹¤Ç¤ÏÄÌ¿®¤Ç¤­¤Þ¤»¤ó¡£¤½¤³¤Ç¡¢¼«Ê¬¤Î¥°¥í¡¼¥Ð¥ë£É£Ð¥¢¥É¥ì¥¹¤òÃΤë»ÅÁȤߤ¬É¬Íפǡ¢¤½¤ì¤¬STUN¤Î»ÅÁȤߤǤ¹¡£¶ñÂÎŪ¤Ë¤Ï¡¢STUN¥µ¡¼¥Ð¤Ë¡¢¶µ¤¨¤Æ¤â¤é¤¤¤Þ¤¹¡£

°Ê²¼¤Ï¡¢²áµîÌä¤Ç¤¹¡£¤³¤ì¤ò¤¤¤­¤Ê¤êÆÉ¤à¤È¡¢Æñ¤·¤¤¤Ç¤¹¤è¤Í¡£
-----------
¿Þ4¤ÎÎã¤Ç¤Ï¡¤¥Ö¥é¥¦¥¶2¾å¤ÎAP¤¬STUN¥×¥í¥È¥³¥ë¤òÍѤ¤¤ÆSTUN¥µ¡¼¥Ð1,2¤«¤é¡Òg2¡Ó¤òÆÀ¤Æ¡¤¤½¤ì¤ò¥Ö¥é¥¦¥¶1¾å¤ÎAP¤ËÄÌÃΤ¹¤ë¡£
¡¡STUN¥×¥í¥È¥³¥ë¤Î³µÍפϼ¡¤Î¤È¤ª¤ê¤Ç¤¢¤ë¡£
¡¦STUN¥¯¥é¥¤¥¢¥ó¥È¤Ï, STUN¥µ¡¼¥Ð¥ØBinding¥ê¥¯¥¨¥¹¥È¤òÁ÷¤ë¡£
¡¦ STUN¥µ¡¼¥Ð¤Ï¡¤¼õ¤±¼è¤Ã¤¿IP¥Ñ¥±¥Ã¥È¤Î¥Ø¥Ã¥À¤«¤éÁ÷¿®¸µ¤ÎIP¥¢¥É¥ì¥¹¤È¥Ý¡¼¥ÈÈÖ¹æ¤ò¼è¤ê½Ð¤·,Binding¥ì¥¹¥Ý¥ó¥¹Ãæ¤Î¥Ç¡¼¥¿¤Ë³ÊǼ¤·¤ÆÊÖ¤¹¡£




¥¹¥Ý¥ó¥µ¡¼¥É¥ê¥ó¥¯

¢¬¤³¤Î¥Ú¡¼¥¸¤Î¥È¥Ã¥×¥Ø