´ÙÀ½ÀÇ ºÎºÐµéÀ» ¿©·¯ºÐÀÌ ½ÇÁ¦·Î ÀÚ½ÅÀÇ ³×Æ®¿öÅ©¸¦ ¼³Á¤ÇϱâÀü¿¡ ¾Ë°í ÀÌÇØÇÒ ÇÊ¿ä°¡ ÀÖ´Â °ÍµéÀÌ´Ù. À̵éÀº ¿©·¯ºÐÀÌ ¼³Ä¡ÇÏ·Á´Â ³×Æ®¿öÅ©ÀÇ Á¤È®ÇÑ Æ¯¼º¿¡ °ü°è¾øÀÌ Àû¿ëµÇ´Â ±âº»ÀûÀÎ ¿ø¸®µéÀÌ´Ù.
³×Æ®¿öÅ©¸¦ ¼³Ä¡ÇÏ°í ¼³Á¤Çϱâ Àü¿¡ ÇÊ¿äÇÑ °ÍÀÌ ¸î°¡Áö ÀÖ´Ù. °¡Àå Áß¿äÇÑ°ÍÀÌ ´ÙÀ½ÀÇ °ÍµéÀÌ´Ù.
ÇöÀç ¿©·¯ºÐÀÌ ¿î¿µÇÏ°í ÀÖ´Â Ä¿³ÎÀÌ ¿©·¯ºÐÀÌ »ç¿ëÇÏ°í ½Í¾îÇÏ´Â ³×Æ®¿öÅ© Ÿ ÀÔÀ̳ª Ä«µåµîÀ» Áö¿øÇÏÁö ¾ÊÀ»¼öµµ Àֱ⶧¹®¿¡ ÀûÀýÇÑ ¿É¼ÇÀ¸·Î Ä¿³ÎÀ» ´Ù½Ã ÄÄÆÄÀÏÇϱâ À§Çؼ Ä¿³Î ¼Ò½º°¡ ÇÊ¿äÇÏ´Ù.
¿©·¯ºÐÀº ftp.funet.fi¿¡¼ ÃֽŹöÀüÀÇ Ä¿³Î ¼Ò½º¸¦ ¾òÀ»¼ö ÀÖ´Ù. < tp.funet.fi/pub/Linux/PEOPLE/Linus/v2.0>
º¸Åë Ä¿³Î ¼Ò¼Ò´Â /usr/src/linux µð·ºÅ丮·Î tarÀ̹ÌÁö°¡ Ç®¾îÁ®¾ß ÇÑ´Ù. ¾î ¶»°Ô ÆÐÄ¡¸¦ Àû¿ëÇÏ°í Ä¿³ÎÀ» ¸¸µé°ÍÀΰ¡¿¡ ´ëÇÑ Á¤º¸¸¦ ¾Ë±â À§Çؼ´Â kernel- howto¸¦ Àоî¾ß ÇÑ´Ù. kernel-moduleÀÇ ¼³Á¤¿¡ ´ëÇØ ¾Ë°í½Í´Ù¸é module-howto¸¦ Àоî¾ß ÇÑ´Ù.
Ưº°È÷ ¾ð±ÞÇÏÁö ¾Ê´Â ÇÑ ¿©·¯ºÐÀº Ç¥ÁØÀÇ Ä¿³Î ¸±¸®Áî(¹öÀü ³Ñ¹öÀÇ µÎ¹øÀç dig itÀÌ Â¦¼ö·Î µÈ°Í)¸¦ °íÁýÇϱ⠹ٶõ´Ù. °³¹ß ¸±¸®Áî Ä¿³ÎÀº(µÎ¹ø° digitÀÌ È¦ ¼öÀÎ °Í) ½Ã½ºÅÛ»óÀÇ ´Ù¸¥ ¼ÒÇÁÆ®¿þ¾î¿Í ¹®Á¦¸¦ ÀÏÀ¸Å³¼ö ÀÖ´Â ±¸Á¶ ÀÚüÀÇ ¶Ç ´Â ´Ù¸¥ º¯È°¡ ÀÖÀ»¼ö ÀÖ´Ù. ¿©·¯ºÐÀÌ ±×·¯ÇÑ Á¾·ùÀÇ ¹®Á¦¸¦ ÇØ°ÉÇÒ¼ö ÀÖ´Ù°í È®½ÅÇÏÁö ¾Ê´ÂÇÑ, ¶Ç ÀáÀçÀûÀÎ ¼ÒÇÁÆ®¿þ¾îÀÇ ¿¡·¯¸¦ 󸮰¡ È®½ÇÇÏÁö ¾ÊÀº ÇÑ ±×°ÍÀ» »ç¿ëÇÏÁö ¸»¶ó.
³×Æ®¿öÅ© ÅøµéÀº ¸®´ª½ºÀÇ ³×Æ®¿öÅ© µð¹ÙÀ̽ºµéÀ» ¼³Á¤Çϱâ À§ÇØ »ç¿ëÇÏ´Â ÇÁ·Î ±×·¥µéÀÌ´Ù. ¿¹¸¦µé¾î ÀÌ·± ÅøµéÀº µð¹ÙÀ̽º¿¡ ÁÖ¼Ò¸¦ ÇÒ´çÇÏ°Ô ÇØÁְųª ¶ó¿ì Æ®¸¦ ¼³Á¤ÇÒ¼ö ÀÖ°Ô ÇØÁØ´Ù.
´ëºÎºÐ ÃÖ½ÅÀÇ ¸®´ª½º ¹èÆ÷º»Àº ³×Æ®¿öÅ© Åøµé°ú ÇÔ²² Á¦°øµÇ¹Ç·Î, ¿©·¯ºÐÀÌ ¹è Æ÷º»À¸·Î ºÎÅÍ ÀνºÅçÀ»ÇÏ°í, ³×Æ®¿öÅ© ÅøÀ» ÀνºÅçÇÏÁö ¾Ê¾Ò´Ù¸é ÀÌ°ÍÀ» ÇØ¾ß ¸¸ ÇÑ´Ù.
¹èÆ÷º»À¸·Î ¼³Ä¡ÇÏÁö ¾Ê¾Ò´Ù¸é ¿©·¯ºÐÀº Á÷Á¢ ¼Ò½º¸¦ ±¸Çشٰ¡ ÄÄÆÄÀÏÇØ¾ß ÇÒ ÇÊ¿ä°¡ ÀÖ´Ù. ÀÌ°ÍÀº ±×´ÙÁö ¾î·ÆÁö ¾Ê´Ù.
³×Æ®¿öÅ© ÅøÀº ÇöÀç Bernd Eckenfels¿¡ ÀÇÇØ °ü¸®µÇ¸ç, ftp.inka.de¿¡¼ ±¸ÇÒ ¼ö ÀÖ´Ù. < ftp.inka.de/pub/comp/Linux/networking/NetTools/> and are ¶Ç ´ÙÀ½¿¡ ¹Ì·¯¸µµÇ¾î ÀÖ´Ù. < ftp.linux.uk.org/pub/linux/Networking/PROGRAMS/NetTools/>. ¿©·¯ºÐÀÌ »ç¿ëÇÏ°íÀÚ ÇÏ´Â Ä¿³Î ¹öÀü°ú °¡Àå ÀûÇÕÇÑ ¹öÀüÀ» ¼±ÅÃÇØ¾ß ÇÔÀ» ¸í½É Ç϶ó. ±×¸®°í ÀνºÅçÀ» ÇÏ·Á¸é ÆÐÅ°Áö ¾ÈÀÇ Áö½Ã¸¦ µû¸£¶ó.
À̱ÛÀ» ÀÛ¼ºÇÏ´Â ¶§ÀÇ ÇöÀç¹öÀüÀ» ÀνºÅçÇÏ°í ¼³Á¤ÇÏ°íÀÚ ÇÑ´Ù¸é ´ÙÀ½°ú °°ÀÌ ÇؾßÇÑ´Ù.
# # cd /usr/src # tar xvfz net-tools-1.32-alpha.tar.gz # cd net-tools-1.32-alpha # make config # make # make install #Ãß°¡·Î, ÆÄÀÌ¾î ¿ùÀ» ¼³Á¤ÇÏ°í, IP ¸Ó½ºÄ¿·¹À̵带 »ç¿ëÇÏ°í ½Í´Ù¸é ipfwadm ¸í ·ÉÀÌ ÀÖ¾î¾ß ÇÑ´Ù. ±×°ÍÀÇ ÃÖ±Ù¹öÀüÀ» ftp.xos.nl¿¡¼ ±¸ÇÒ¼öÀÖ´Ù. < ftp.xos.nl/pub/linux/ipfwadm>.¶Ç, ±×°÷¿¡¼ ±¸ÇÒ¼öÀÖ´Â ¹öÀüÀº ¿©·¯°¡ Áö°¡ ÀÖÀ¸¹Ç·Î, ¿©·¯ºÐÀÇ Ä¿³Î°ú ¹öÀü°ú °¡Àå °¡±î¿î °ÍÀ» ¼±ÅÃÇϵµ·Ï ÇؾßÇÑ ´Ù.
ÀÌ ±ÛÀ» ÀÛ¼ºÇÏ´Â ½Ã±âÀÇ ÇöÀç¹öÀüÀ» ¼³Ä¡ÇÏ°í ¼³Á¤ÇÏ·Á¸é, ´ÙÀ½°ú °°ÀÌ Ç϶ó.
# # cd /usr/src # tar xvfz ipfwadm-2.3.0.tar.gz # cd ipfwadm-2.3.0 # make # make install #
³×Æ®¿öÅ© ÀÀ¿ë ÇÁ·Î±×·¥À̶õ telnet, ftp µîÀÇ ÇÁ·Î±×·¥°ú °¢°¢ÀÇ ¼¹ö ÇÁ·Î±× ·¥À» ¸»ÇÑ´Ù. David Holland< dholland@hcs.harvard.edu>´Â ÀÌÁ¦ À̵é ÇÁ·Î±×·¥ ÀÇ ´ëºÎºÐÀ» °ü¸®ÇÏ°í ÀÖ´Ù. ¿©·¯ºÐÀº ftp.linux.uk.org¿¡¼ ±×°ÍÀ» ±¸ÇÒ¼ö°¡ ÀÖ´Ù. < ftp.uk.linux.org/pub/linux/Networking/base>. ÀÌ ±ÛÀ» ÀÛ¼ºÇÏ´Â ½Ã±âÀÇ ÇöÀç¹öÀüÀ» ¼³Ä¡, ¼³Á¤ÇÏ·Á¸é ´ÙÀ½°ú °°ÀÌ Ç϶ó.
# # cd /usr/src # tar xvfz /pub/net/NetKit-B-0.08.tar.gz # cd NetKit-B-0.08 # more README # vi MCONFIG # make # make install #
ÀÎÅͳÝÀÇ ÇÁ·ÎÅäÄÝ ¾îµå·¹½º´Â 4 ¹ÙÀÌÆ®·Î ÀÌ·ç¾îÁø´Ù. ÀÌ°Í¿¡ ´ëÇÑ ÇÕÀÇ´Â ÁÖ ¼Ò¸¦ 'dotted decimal notation'À̶ó ºÒ¸®´Â ²Ã·Î ±â·ÏÇÏ´Â °ÍÀÌ´Ù. ÀÌ·¯ÇÑ for m¿¡¼ °¢°¢ÀÇ ¹ÙÀÌÆ®´Â 0ÀÌ ¾Æ´Ñ À̻󿡴 ¾ÕÀÇ 0À» »©¹ö¸° (0 255) 10Áø¼ö·Î º¯È¯µÇ¸ç, °¢°¢ÀÇ ¹ÙÀÌÆ®´Â '.' ¹®ÀÚ·Î ºÐ¸®µÇ¾î ¾²¿©Áø´Ù. ±×°ÍÀÇ Æí¸®ÇÔÀ¸·Î ÀÎÇØ È£½ºÆ®¿Í ¶ó¿ìÅÍÀÇ °¢°¢ÀÇ ÀÎÅÍÆäÀ̽º´Â IP ¾îµå·¹½º¸¦ °¡Áø´Ù. ¸î¸î ȯ°æ ¼Ó¿¡¼´Â ´ÜÀÏ ¸Ó½Å»óÀÇ °¢°¢ÀÇ Æ÷Æ®¿¡ ´ëÇÏ¿© °°Àº IP ¾îµå·¹½º¸¦ »ç¿ëÇÏ´Â °Í ÀÌ ÇÕ¹ýÀûÀÌÁö¸¸ º¸Åë °¢ ÀÎÅÍÆäÀ̽º´Â ÀڽŸ¸ÀÇ ÁÖ¼Ò¸¦ °®±â¸¶·ÃÀÌ´Ù.
ÀÎÅÍ³Ý ÇÁ·ÎÅäÄÝ ³×Æ®¿öÅ©´Â ÀÎÁ¢ÇØ ÀÖ´Â IP ¾îµå·¹½ºµéÀÇ ½ÃÄö½ºÀÌ´Ù. ³×Æ®¿ö Å©»óÀÇ ¸ðµç ¾îµå·¹½º´Â °øÅëÀûÀ¸·Î ¸î°³ÀÇ Á¡(digit)À» ¾îµå·¹½º³»¿¡ Æ÷ÇÔÇÏ°í ÀÖ´Ù. ÇÑ ³×Æ®¿öÅ©ÀÇ ¾îµå·¹½º¿¡¼ °øÅëÀûÀÎ ºÎºÐÀº 'network portion'À̶ó ºÒ ¸°´Ù. 'network portion'À» Á¦¿ÜÇÑ ³ª¸ÓÁö ºÎºÐÀº 'host portion'À̶ó°í ºÒ¸° ´Ù. ³×Æ®¿öÅ©ÀÇ ¸ðµç ¾îµå·¹½º¿¡ ÀÇÇØ °øÀ¯µÇ´Â bitÀº netmask¶ó ºÒ¸®´Âµ¥, ¾î ¶² ¾îµå·¹½º°¡ ±×°ÍÀÌ Àû¿ëµÈ ³×Æ®¿öÅ©¿¡ ¼ÓÇÏ´ÂÁö, ¼ÓÇÏÁö ¾Ê´ÂÁö¸¦ °áÁ¤Áþ´Â °ÍÀÌ netmaskÀÇ ¿ªÇÒÀÌ´Ù. ´ÙÀ½ÀÇ ¿¹¸¦ »ìÆ캸ÀÚ.
----------------- --------------- Host Address 192.168.110.23 Network Mask 255.255.255.0 Network Portion 192.168.110. Host portion .23 ----------------- --------------- Network Address 192.168.110.0 Broadcast Address 192.168.110.255 ----------------- ---------------netmask³»¿¡¼ 'bitwise anded'µÈ ¾îµå·¹½º´Â ÀÚ½ÅÀÌ ¼ÓÇÑ ³×Æ®¿öÅ©ÀÇ ¾îµå·¹½º ¸¦ °ø°³ÇÏ°Ô µÉ°ÍÀÌ´Ù. ±×·¯¹Ç·Î ³×Æ®¿öÅ©ÀÇ ¾îµå·¹½º ¹üÀ§Áß¿¡¼ °¡Àå ³·Àº ³Ñ ¹öÀÇ ¾îµå·¹½º´Â Ç×»ó network address°¡ µÇ´Â°ÍÀÌ´Ù. ¶ÇÇÑ Ç×»ó 0À¸·Î ÄÚµåµÈ 'host portion'À» °®°Ô µÈ´Ù.
ºê·Îµåij½ºÆ® ¾îµå·¹½º´Â ÀÚ½ÅÀÇ µ¶Æ¯ÇÑ ¾îµå·¹½º¿¡ ´õÇÏ¿© ³×Æ®¿öÅ©³»ÀÇ ¸ðµç È£½ºÆ®°¡ µè´Â Ưº°ÇÑ ¾îµå·¹½ºÀÌ´Ù. ÀÌ ¾îµå·¹½º´Â ³×Æ®¿öÅ© »óÀÇ ¸ðµç È£½ºÆ® °¡ µ¿½Ã¿¡ µè°Ô²û ÇÒ¶§ µ¥ÀÌÅͱ׷¥ÀÌ º¸³»Áö´Â ¾îµå·¹½ºÀÌ´Ù. 'ºê·Îµåij½ºÆ®¶õ ¾î¶²°ÍÀ̾î¾ß Çϴ°¡'¸¦ À§ÇØ »ç¿ëµÇ´Â °øÅëÀûÀ¸·Î »ç¿ëµÇ´Â µÎ°¡ÁöÀÇ Ç¥ÁØ»çÇ× ÀÌ ÀÖ´Ù. °¡Àå ³Î¸® ¹Þ¾Æµé¿©Áö°í Àִ°ÍÀº ÇØ´ç ³×Æ®¿öÅ©¿¡¼ °¡Àå ³ôÀº °ªÀ» Áö´Ï´Â ¾îµå·¹½º¸¦ ºê·Îµåij½ºÆ® ¾îµå·¹½º·Î »ç¿ëÇÏ´Â °ÍÀÌ´Ù. À§ÀÇ ¿¹¿¡¼ ÀÌ °ÍÀº 192.168.110.255°¡ µÈ´Ù. ´Ù¸¥ »çÀÌÆ®¿¡¼´Â ¸î°¡Áö ÀÌÀ¯·Î ³×Æ®¿öÅ© ¾îµå ·¹½º¸¦ ºê·Îµåij½ºÆ® ¾îµå·¹½º·Î »ç¿ëÇÏ´Â ¹æ¹ýÀ» äÅÃÇß´Ù. ½ÇÁ¦·Î ¾î´À°ÍÀ» »ç¿ëÇϴ°¡ Çϴ°ÍÀº º°·Î ¹®Á¦°¡ µÇÁö ¾ÊÁö¸¸ ³×Æ®¿öÅ©»óÀÇ ¸ðµç È£½ºÆ®°¡ °° Àº ºê·Îµåij½ºÆ® ¾îµå·¹½º·Î ¼³Á¤µÇ¾î Àִ°¡´Â ¹Ýµå½Ã È®ÀÎÇØ¾ß ÇÑ´Ù. IP ÇÁ·Î ÅäÄÝ °³¹ß ÃʱâÀÇ ¾ðÁ¨°¡ °ü¸®»óÀÇ ÀÌÀ¯·Î ÀÓÀÇÀÇ ±×·ìÀÇ ¾îµå·¹½º°¡ ³×Æ®¿öÅ© ¿¡ Çü¼ºµÇ¾ú°í, ÀÌ·¯ÇÑ ³×Æ®¿öÅ©´Â 'class'¶ó ºÒ¸®´Â °ÍÀ¸·Î ±×·ìȵǾú´Ù. ÀÌ Å¬·¡½º´Â ÇÒ´çÇÒ¼ö Àִ ǥÁØ »çÀÌÁî ³×Æ®¿öÅ©ÀÇ °¹¼ö¸¦ Á¦°øÇØÁØ´Ù. ÇÒ´çµÈ ¹üÀ§´Â ´ÙÀ½°ú °°´Ù.
---------------------------------------------------------- | Network | Netmask | Network Addresses | | Class | | | ---------------------------------------------------------- | A | 255.0.0.0 | 0.0.0.0 - 127.255.255.255 | | B | 255.255.0.0 | 128.0.0.0 - 191.255.255.255 | | C | 255.255.255.0 | 192.0.0.0 - 223.255.255.255 | |Multicast| 240.0.0.0 | 224.0.0.0 - 239.255.255.255 | ----------------------------------------------------------¾î¶² ¾îµå·¹½º¸¦ »ç¿ëÇØ¾ß Çϴ°¡´Â Á¤È®È÷ ¿©·¯ºÐÀÌ ÇؾßÇÒÀÏÀÌ ¹«¾ùÀΰ¡¿¡ µû ¶ó ´Þ¶óÁø´Ù. ÇÊ¿äÇÑ ¸ðµç ¾îµå·¹½º¸¦ ¾ò±â À§Çؼ´Â ´ÙÀ½À» Á¶ÇÕÇؼ »ç¿ëÇØ¾ß ÇÑ´Ù.
±âÁ¸ÀÇ IP ³×Æ®¿öÅ©»ó¿¡ ¸®´ª½º ¸Ó½ÅÀ» ¼³Ä¡ÇÑ´Ù. IP ³×Æ®¿öÅ©¿¡ ¸®´ª½º ¸Ó½ÅÀ» ¼³Ä¡ÇÏ°íÀÚ ÇÑ´Ù¸é ³×Æ®¿öÅ© °ü¸®ÀÚ¿Í Á¢ÃËÇÏ¿© ´ÙÀ½ÀÇ Á¤º¸¸¦ ¹°¾îºÁ¾ß ÇÑ´Ù.
ÀÎÅͳݿ¡ ¿¬°áµÇÁö ¾Ê´Â ¿ÏÀüÈ÷ »õ·Î¿î ³×Æ®¿öÅ© ¸¸µé±â ÀÎÅͳݿ¡ ¿¬°áµÇÁö ¾ÊÀ» »çÀûÀÎ ³×Æ®¿öÅ©¸¦ ¸¸µç´Ù¸é ¿©·¯ºÐÀº ¾Æ¹« ¾îµå·¹½º³ª ¼±ÅÃÇÒ¼ö ÀÖ´Ù. ±×·¯³ª ¾ÈÀü¼º°ú ÀÏ°ü¼ºÀÇ ÀÌÀ¯·Î Ưº°È÷ ¿¹¾àµÇ¾îÀÖ´Â IP ¾îµå·¹½º°¡ ÀÖ´Ù. ÀÌ°ÍÀº ´ÙÀ½°ú °°ÀÌ RFC1597¿¡ ¸í½ÃµÇ¾î ÀÖ´Ù.
----------------------------------------------------------- | RESERVED PRIVATE NETWORK ALLOCATIONS | ----------------------------------------------------------- | Network | Netmask | Network Addresses | | Class | | | ----------------------------------------------------------- | A | 255.0.0.0 | 10.0.0.0 - 10.255.255.255 | | B | 255.255.0.0 | 172.16.0.0 - 172.31.255.255 | | C | 255.255.255.0 | 192.168.0.0 - 192.168.255.255 | -----------------------------------------------------------¿ì¼± ³×Æ®¿öÅ©ÀÇ Å©±â¸¦ °áÁ¤ÇÑµÚ ¿øÇÏ´Â ¸¸ÅÀÇ ¾îµå·¹½º¸¦ ¼±ÅÃÇØ¾ß ÇÑ´Ù.
¸®´ª½º ½Ã½ºÅÛ ºÎÆ® ÇÁ·Î½ÃÁ®·ÎÀÇ ¼·Î´Ùµç Á¢±Ù¹ýÀÌ ¸î°¡Áö ÀÖ´Ù. Ä¿³ÎÀÌ ºÎÆà µÈ µÚ¿¡ ±×°ÍÀº Ç×»ó 'init'À̶ó´Â ÇÁ·Î±×·¥À» ½ÇÇàÇÑ´Ù. initÀº /etc/inittab À̶ó´Â ¼³Á¤ÆÄÀÏÀ» ÀÐ°í ºÎÆ® °úÁ¤À» ½ÃÀÛÇÑ´Ù. init¿¡´Â ¸î°³ÀÇ ´Ù¸¥ ƯÁú(fla vours)ÀÌ ÀÖÀ¸¸ç, ÀÌ·¯ÇÑ ´Ù¾ç¼ºÀº ¸®´ª½º ¹èÆ÷º»°ú ¸Ó½ÅÀÇ ´Ù¾ç¼ºÀÇ °¡Àå Å« ¿øÀÎÀÌ µÈ´Ù.
ÈçÈ÷ /etc/inittab ÆÄÀÏÀº ´ÙÀ½°ú °°Àº ¿£Æ®¸®¸¦ Æ÷ÇÔÇÏ°í ÀÖ´Ù.
si::sysinit:/etc/init.d/bootÀÌ ¶óÀÎÀº ½ÇÁ¦·Î ºÎÆ® ½ÃÄö½º¸¦ °ü¸®ÇÏ´Â shell ½ºÅ©¸³Æ®ÀÇ À̸§À» ¸í½ÃÇÑ´Ù. ÀÌ ÆÄÀÏÀº MS-DOS»óÀÇ autoexec.bat ÆÄÀÏ°ú ´Ù¼Ò À¯»çÇÏ´Ù.
ÀÌ ºÎÆ® ½ºÅ©¸³Æ®¿¡ ÀÇÇØ È£ÃâµÇ´Â ´Ù¸¥ ½ºÅ©¸³Æ®°¡ ÀÖÀ¸¸ç ³×Æ®¿öÅ©´Â À̵é¾È ¿¡¼ ¼³Á¤µÈ´Ù.
´ÙÀ½ Å×À̺íÀÌ ¿©·¯ºÐÀÇ ½Ã½ºÅÛÀÇ °¡À̵å·Î »ç¿ëµÉÁöµµ ¸ð¸£°Ú´Ù.
------------------------------------------------------------------------ |Interface Config/Routing |Server Initialisation ------------------------------------------------------------------------ |/etc/init.d/network |/etc/init.d/netbase | |/etc/init.d/netstd_init | |/etc/init.d/netstd_nfs | |/etc/init.d/netstd_misc ------------------------------------------------------------------------ |/etc/rc.d/rc.inet1 |/etc/rc.d/rc.inet2 ------------------------------------------------------------------------ |/etc/sysconfig/network-scripts/ifup-<ifname>|/etc/rc.d/init.d/network ------------------------------------------------------------------------ <¼ø¼´ë·Î Debian, Slackware, RedHat>´ë°³ÀÇ ¹èÆ÷º»Àº ¸¹Àº Á¾·ùÀÇ ÈçÈ÷ »ç¿ëµÇ´Â ³×Æ®¿öÅ© ÀÎÅÍÆäÀ̽º¸¦ ¼³Á¤ÇÒ¼ö ÀÖ´Â ÇÁ·Î±×·¥À» Æ÷ÇÔÇÏ°í ÀÖ´Ù. ÀÌ°ÍÀÌ ÀÖ´Ù¸é ¼öµ¿ ¼³Á¤À» ½ÃµµÇϱâ Àü¿¡ ÀÌ °ÍÀÌ ¿øÇÏ´Â °ÍÀ» ÇØÁÖ´ÂÁö ¾Ë¾ÆºÁ¾ß ÇÑ´Ù.
----------------------------------------- Distrib | Network configuration program ----------------------------------------- RedHat | /sbin/netcfg Slackware | /sbin/netconfig -----------------------------------------
¸¹Àº À¯´Ð½º ½Ã½ºÅÛ¿¡¼ ³×Æ®¿öÅ© µð¹ÙÀ̽º´Â /dev µð·ºÅ丮¿¡¼ º¸ÀδÙ. ±×·¯ ³ª ¸®´ª½º¿¡¼´Â ±×·¸Áö ¾Ê´Ù. ¸®´ª½ºÀÇ ³×Æ®¿öÅ© µð¹ÙÀ̽º´Â ¼ÒÇÁÆ®¿þ¾î ³»¿¡ ¼ µ¿ÀûÀ¸·Î »ý¼ºµÇ¹Ç·Î µð¹ÙÀ̽º ÆÄÀÏÀÌ Á¸ÀçÇÒ ÇÊ¿ä°¡ ¾ø´Ù.
´ë°³ÀÇ °æ¿ì ³×Æ®¿öÅ© µð¹ÙÀ̽º´Â ÃʱâÈÇÏ´Â µ¿¾È µð¹ÙÀ̽º µå¶óÀ̹ö¿¡ ÀÇÇØ ÀÚµ¿À¸·Î ¸¸µé¾îÁö°í Çϵå¿þ¾î¸¦ ¼³Ä¡ÇÑ´Ù. ¿¹¸¦µé¾î ÀÌ´õ³Ý µð¹ÙÀ̽º µå¶óÀ̹ö ´Â ¼øÂ÷ÀûÀ¸·Î eth[0...n] ÀÎÅÍÆäÀ̽º¸¦ ¸¸µé°í ÀÌ´õ³Ý Çϵå¿þ¾î¸¦ À§Ä¡½ÃŲ´Ù. ù¹ø°·Î ¹ß°ßµÇ´Â ÀÌ´õ³Ý Ä«µå´Â eth0°¡ µÎ¹ø°ÀÇ ÀÌ´õ³Ý Ä«µå´Â eth1ÀÌ µÈ´Ù.
±×·¯³ª ¸î¸îÀÇ °æ¿ì, slip ¶Ç´Â ppp¿Í °°ÀÌ, ³×Æ®¿öÅ© µð¹ÙÀ̽º´Â À¯Àú ÇÁ·Î±× ·¥ÀÇ µ¿ÀÛ¿¡ÀÇÇØ ¸¸µé¾îÁø´Ù. µð¹ÙÀ̽º¿¡ ¼øÂ÷ÀûÀ¸·Î À̸§À» ºÙÀ̴°ÍÀº Àû¿ëµÇ Áö¸¸ µð¹ÙÀ̽º°¡ ºÎÆýÿ¡ ÀÚµ¿ÀûÀ¸·Î ¸¸µé¾îÁöÁö´Â ¾Ê´Â´Ù. ÀÌ·¯ÇÑ ÀÌÀ¯´Â ÀÌ ´õ³Ý µå¶óÀ̹ö¿Í ´Þ¸® È°¼ºÈµÈ slip, ppp µð¹ÙÀ̽ºÀÇ °³¼ö´Â ¸Ó½ÅÀÇ ÀÛµ¿½Ã°£ µ¿¾È ¸Å¿ì ´Ù¾çÇÏ°Ô ´Þ¶óÁö±â ¶§¹®ÀÌ´Ù. ÀÌ·¯ÇÑ °æ¿ì´Â ´ÙÀ½ ºÎºÐ¿¡¼ ÀÚ¼¼È÷ ´Ù·ç¾îÁú °ÍÀÌ´Ù.
ÇÊ¿äÇÑ ¸ðµç ÇÁ·Î±×·¥°ú ³×Æ®¿öÅ© ¾îµå·¹½º, ³×Æ®¿öÅ© Á¤º¸¸¦ ¸ðµÎ °¡Áö°í ÀÖÀ¸ ¸é ÀÌÁ¦ ³×Æ®¿öÅ© ÀÎÅÍÆäÀ̽º¸¦ ¼³Á¤ÇÒ ¼ö ÀÖ´Ù. ³×Æ®¿öÅ© ÀÎÅÍÆäÀ̽ºÀÇ ¼³Á¤¿¡ °üÇØ ¸»ÇÒ¶§ ¿ì¸®´Â ³×Æ®¿öÅ© µð¹ÙÀ̽º·ÎÀÇ ÀûÀýÇÑ ÁÖ¼Ò ÇÒ´ç°ú ´Ù¸¥ ȯ°æ ¼³Á¤ °ªÀÇ ÀûÀýÇÑ ¼¼Æÿ¡ °üÇØ À̾߱⸦ Çϴ°ÍÀÌ´Ù. À̸¦ À§ÇØ °¡Àå ³Î¸® »ç¿ëµÇ´Â ¸í·ÉÀº ifconfig(interface configure)ÀÌ´Ù.
ÀüÇüÀûÀ¸·Î ¾Æ·¡¿Í À¯»çÇÑ ¸í·ÉÀ» »ç¿ëÇÒ °ÍÀÌ´Ù.
# ifconfig eth0 192.168.0.1 netmask 255.255.255.0 upÀÌ °æ¿ì´Â 'eth0' ÀÌ´õ³Ý ÀÎÅÍÆäÀ̽º¸¦ IP ¾îµå·¹½º '192.168.0.1'·Î netmask¸¦ 255.255.255.0À¸·Î ¼³Á¤ÇÏ´Â °ÍÀÌ´Ù. ¸í·É¾î ³¡ºÎºÐÀÇ 'up'Àº ÀÎÅÍÆäÀ̽º°¡ È° ¼ºÈ µÉ°ÍÀ» ¸»ÇÏ°í ÀÖ´Ù.
Ä¿³ÎÀº ÀÎÅÍÆäÀ̽º¸¦ ¼³Á¤ÇÒ¶§ ¸î°¡Áö µðÆúÆ®¸¦ °¡Á¤ÇÑ´Ù. ¿¹¸¦ µé¾î ³×Æ®¿öÅ© ¾îµå·¹½º¿Í ºê·Îµåij½ºÆ® ¾îµå·¹½º¸¦ ¸í½ÃÇÒ ¼öµµ ÀÖÁö¸¸, À§ÀÇ ¿¹Ã³·³ ÇÏÁö ¾Ê ´Â´Ù¸é Ä¿³ÎÀº ¼³Á¤µÇ IP ¾îµå·¹½ºÀÇ Å¬·¡½º¿¡ ±Ù°ÅÇØ ÇÕ¸®ÀûÀ¸·Î ÃßÃøÇØ ³¾°Í ÀÌ´Ù. À§ÀÇ ¿¹¿¡¼ Ä¿³ÎÀº ÀÎÅÍÆäÀ̽º¿¡ Ŭ·¡½º-CÀÇ ³×Æ®¿öÅ©°¡ ¼³Á¤µÈ´Ù°í °¡ Á¤ÇÏ°í ³×Æ®¿öÅ© ¾îµå·¹½º¸¦ '192.168.0.0'À¸·Î, ºê·Îµåij½ºÆ® ¾îµå·¹½º¸¦ '192.168.0.255'·Î ¼³Á¤ÇÑ´Ù.
ifconfig ¸í·É¿¡´Â ¸¹Àº ´Ù¸¥ ¿É¼ÇÀÌ ÀÖ´Ù. °¡Àå Áß¿äÇÑ °ÍÀº ´ÙÀ½ÀÇ °ÍÀÌ´Ù.
ÀÎÅÍÆäÀ̽º¸¦ È°¼ºÈ½ÃŲ´Ù.
ÀÎÅÍÆäÀ̽º¸¦ ºñ È°¼ºÈ½ÃŲ´Ù.
ÀÌ ÀÎÅÍÆäÀ̽º »ó¿¡¼ address resolution protocolÀ» »ç¿ë°¡´ÉÇÏ°Ô, »ç ¿ëºÒ°¡´ÉÇÏ°Ô ÇÑ´Ù.
ÀÎÅÍÆäÀ̽º »ó¿¡¼ promiscuous ¸ðµå¸¦ °¡´É/ºÒ°¡´ÉÇÏ°Ô ÇÑ´Ù. Promoscu ous ¸ðµå¶õ ÇØ´ç µð¹ÙÀ̽º¸¦ ÇâÇÏÁö ¾ÊÀº ÆÐŶÀÌ¶óµµ ¹Þ¾ÆµéÀϼö ÀÖµµ·Ï ÇÏ´Â ¸ðµå¸¦ ¸»ÇÑ´Ù. ÀÌ°ÍÀº tcpdump³ª ´Ù¸¥ ÆÐŶ ½ºÇª³Ê ÇÁ·Î±×·¥¿¡¼ ¸Å¿ì Áß¿äÇÏ´Ù.
ÀÌ µð¹ÙÀ̽ºÀÇ MTU¸¦ ¼ÂÆÃÇÒ¼ö ÀÖ°Ô ÇØÁØ´Ù.
ÀÌ µð¹ÙÀ̽º°¡ ¼ÓÇÏ´Â ³×Æ®¿öÅ©ÀÇ netmask¸¦ ¼³Á¤ÇÏ°Ô ÇØÁØ´Ù.
ÀÌ ÆĶó¸ÞÅʹ ƯÁ¤ ŸÀÔÀÇ Çϵå¿þ¾î¿¡¼¸¸ µ¿ÀÛÇϳª, ÀÌ µð¹ÙÀ̽ºÀÇ ÇÏ µå¿þ¾î IRQ¸¦ ¼ÂÆÃÇÒ¼ö ÀÖ°Ô ÇØÁØ´Ù.
ÀÌ ÆĶó¸ÞÅÍ´Â ºê·Îµåij½ºÆ® ¾îµå·¹½º¸¦ ÇâÇÑ µ¥ÀÌÅͱ׷¥ÀÇ ¼ö¿ëÀ» °¡´É ÇÏ°Ô ¼¼ÆÃÇϰųª, ȤÀº ÀÌ µ¥ÀÌÅͱ׷¥ÀÇ ºÒ°¡´ÉÇÏ°Ô ÇÑ´Ù.
ÀÌ ÆĶó¸ÞÅÍ´Â slip, pppµîÀÇ point to point ¸µÅ©ÀÇ ¹Ý´ë³¡¿¡ ÀÖ´Â ¸Ó ½ÅÀÇ ÁÖ¼Ò¸¦ ¼³Á¤Çϵµ·Ï ÇØÁØ´Ù.
ÀÌ ÆĶó¸ÞÅÍ´Â ³×Æ®¿öÅ© µð¹ÙÀ̽ºÀÇ Æ¯Á¤ ŸÀÔÀÇ Çϵå¿þ¾î ¾îµå·¹½º¸¦ ¼³Á¤Çϵµ·Ï ÇØÁØ´Ù. ÀÌ´õ³Ý¿¡´Â ±×´ÙÁö À¯¿ëÇÏÁö ¾ÊÀ¸³ª AX.25¿Í °°Àº ´Ù¸¥ ŸÀÔÀÇ ³×Æ®¿öÅ©¿¡¼´Â À¯¿ëÇÏ´Ù.
¸í·ÉÀº ¾î´À ³×Æ®¿öÅ© ÀÎÅÍÆäÀ̽º¿¡¼³ª »ç¿ëÇÒ¼ö ÀÖÀ»°ÍÀÌ´Ù. pppd, dip °°Àº À¯Àú ÇÁ·Î±×·¥µéÀº ³×Æ®¿öÅ© µð¹ÙÀ̽º¸¦ ¸¸µé¶§ ÀÚµ¿À¸·Î ¼³Á¤ ÇϹǷΠ¼öµ¿ÀÇ ifconfig ¸í·É»ç¿ëÀº ÇÊ¿äÇÏÁö ¾Ê´Ù.
'Name Resolver'´Â Ç¥ÁØ ¸®´ª½º ¶óÀ̺귯¸®ÀÇ ÀϺÎÀÌ´Ù. ÀÌ°ÍÀÇ °¡Àå Å« ±â´ÉÀº 'ftp.funet.fi' °°ÀÌ Àΰ£¿¡°Ô Ä£¼÷ÇÑ È£½ºÆ®³×ÀÓÀ» 128.214.248.6 ó·³ ¸Ó½Å¿¡ °Ô Ä£¼÷ÇÑ IP ¾îµå·¹½º·Î º¯È¯ÇÏ´Â ¼ºñ½º¸¦ Á¦°øÇÏ´Â °ÍÀÌ´Ù.
¿©·¯ºÐÀº ÀÎÅÍ³Ý È£½ºÆ® ³×ÀÓÀÇ ¸ð½À¿¡´Â Àͼ÷Çϳª, ±×°ÍÀÌ ¾î¶»°Ô ±¸¼ºµÇ´ÂÁö ´Â ÀÌÇØÇÏÁö ¸øÇÒÁöµµ ¸ð¸¥´Ù. ÀÎÅÍ³Ý µµ¸ÞÀÎ ³×ÀÓÀº º»ÁúÀûÀ¸·Î °èÃþ±¸Á¶¸¦, ´Ù½Ã ¸»Çؼ Æ®¸® ±¸Á¶¸¦ °®´Â´Ù. 'domain'À̶ó°í Çϴ°ÍÀº °¡Á·ÀÇ ¶Ç´Â ±×·ìÀÇ À̸§ÀÌ´Ù. 'domain'Àº 'subdomain'À¸·Î ³ª´µ¾î Áú¼ö ÀÖ´Ù. 'toplevel' µµ¸ÞÀÎÀº ¼ºêµµ¸ÞÀÎÀÌ ¾Æ´Ñ µµ¸ÞÀÎÀ» ÀǹÌÇÑ´Ù. Top Level DomainÀº RFC920¿¡ ¸í½ÃµÇ¾î ÀÖ´Ù. ´ÙÀ½Àº °¡Àå ÈçÇÑ ¸î°¡Áö TOP LEVEL µµ¸ÞÀÎÀÇ ¿¹ÀÌ´Ù.
Commercial Organisations(»ó¾÷±â°ü)
Educational Organisations(±³À°±â°ü)
Government Organisations(Á¤ºÎ±â°ü)
Millitary Organisations(±º»ç±â°ü)
Other organisations(´Ù¸¥±â°ü)
these are two letters codes that represent a particular country.
´ÙÀ½ ·¹º§ÀÇ ºÐÇÒÀº ±â°üÀÇ À̸§À» ³ªÅ¸³»±â À§Çؼ »ç¿ëµÈ´Ù. Á»´õ ±íÀº ¼ºê µµ¸ÞÀÎÀº º»ÁúÀûÀ¸·Î ¸Å¿ì ´Ù¾çÇѵ¥, ´ÙÀ½ ·¹º§ÀÇ ¼ºê µµ¸ÞÀÎÀº Á¾Á¾ ±â°üÀÇ ºÎ¹®º° ±¸Á¶¿¡ ±Ù°ÅÇÏ°Ô µÈ´Ù. ±×·¯³ª ÀÌ°ÍÀº ±â°üÀÇ ³×Æ®¿öÅ© °ü¸®ÀÚ¿¡ ÀÇÇØ ÇÕ¸®ÀûÀ¸·Î ÀǹÌÀÖ°Ô °í·ÁµÈ ±âÁØ¿¡ ±â¹ÝÀ» µÎ°Ô µÈ´Ù.
³×ÀÓÀÇ °¡Àå ¿ÞÂÊ ºÎºÐÀº Ç×»ó È£½ºÆ® ¸Ó½Å¿¡ ÇÒ´çµÈ µ¶Æ¯ÇÑ À̸§À̸ç 'È£½ºÆ® ³×ÀÓ'À̶ó ºÒ¸°´Ù. ³×ÀÓ¿¡¼ È£½ºÆ®³×ÀÓÀÇ ¿À¸¥ÂÊ ºÎºÐÀº 'µµ¸ÞÀÎ ³×ÀÓ'À̶ó ºÒ ¸®¸ç ÀÌ°ÍÀÇ Ç®³×ÀÓÀº 'Fully Qualified Domain Name'ÀÌ´Ù.
³» À̸ÞÀÏ È£½ºÆ®¸¦ ÇÑ ¿¹·Î µé¸é, 'Fully Qualified Domain Name'Àº 'perf.no. itg.telstra.com.au'ÀÌ´Ù. ÀÌ°ÍÀº È£½ºÆ®³×ÀÓÀÌ 'perf' µµ¸ÞÀγ×ÀÓÀÌ 'no.itg.t elstra.com.au'ÀÓÀ» ÀǹÌÇÑ´Ù. µµ¸ÞÀÎ ³×ÀÓÀº ³ªÀÇ ±¹°¡ Australia¿¡ ±Ù°ÅÇÑ to p level µµ¸ÞÀο¡ ±â¹ÝÀ» µÎ¸ç ³» À̸ÞÀÏ ¾îµå·¹½º´Â »ó¾÷±â°ü¿¡ ¼ÓÇϹǷΠ´ÙÀ½ ·¹º§ µµ¸ÞÀÎÀ¸·Î '.com'À» °¡Áö°í ÀÖ´Ù. ȸ»çÀÇ À̸§Àº 'Telstra'ÀÌ¸ç ³»ºÎÀÇ ÀÛ¸í±¸Á¶´Â Á¶Á÷±¸Á¶¿¡ ±â¹ÝÀ» µÎ´Âµ¥, ÀÌ °æ¿ì ³» ¸Ó½ÅÀº Infomartion Technol ogy GroupÀÇ Network Operation ºÎ¼¿¡ ¼ÓÇÑ´Ù.
ÀÚ½ÅÀÇ È£½ºÆ®°¡ ¾î´À µµ¸ÞÀο¡ ¼ÓÇÏ°Ô µÇ´ÂÁö¸¦ ¾Ë¾Æ¾ß ÇÒ ÇÊ¿ä°¡ ÀÖ´Ù. Name resolver ¼ÒÇÁÆ®¿þ¾î´Â 'Domain Name Server'·ÎÀÇ ¿äóÀ» ¸¸µé¾î ³¿À¸·Î½á ÀÌ ³×ÀÓ ¹ø¿ª ¼ºñ½º¸¦ Á¦°øÇÑ´Ù. ±×·¯¹Ç·Î ÀÚ½ÅÀÌ »ç¿ëÇÒ¼ö ÀÖ´Â ·ÎÄà ³×ÀÓ¼¹öÀÇ IP ¾îµå·¹½º¸¦ ¾Ë¾Æ¾ß ÇÒ ÇÊ¿ä°¡ ÀÖ´Ù.
¼öÁ¤ÇÒ ÇÊ¿ä°¡ ÀÖ´Â ÆÄÀÏÀÌ 3°³ Àִµ¥, ÀÌ°ÍÀ» Â÷·Ê·Î ´Ù·ç¾î ³ª°¡°Ú´Ù.
/etc/resolv.conf´Â ³×ÀÓ Çؼ® Äڵ带 À§ÇÑ ¸ÞÀÎ ¼³Á¤ ÆÄÀÏÀÌ´Ù. ÀÌ°ÍÀÇ Æ÷¸ËÀº ¸Å¿ì °£´ÜÇÏ´Ù. ÇϳªÀÇ ¶óÀο¡ ÇϳªÀÇ Å°¿öµå¸¦ °®´Â ÅؽºÆ® ÆÄÀÏÀÌ´Ù. ÀüÇüÀû À¸·Î »ç¿ëµÇ´Â Å°¿öµå´Â 3°³°¡ Àִµ¥ ´ÙÀ½°ú °°´Ù.
ÀÌ Å°¿öµå´Â ·ÎÄà µµ¸ÞÀÎÀ» ¸í½ÃÇÑ´Ù.
ÀÌ Å°¿öµå´Â È£½ºÆ®³×ÀÓÀ» ã±âÀ§ÇØ ¼±ÅÃÇÒ¼ö ÀÖ´Â µµ¸ÞÀγ×ÀÓÀÇ ¸®½ºÆ® ¸¦ ¸í½ÃÇÑ´Ù.
ÀÌ Å°¿öµå´Â ¸¹ÀÌ ¾²ÀÏÅÙµ¥, ³×ÀÓ Çؼ®À» ÇÒ¶§ ÁúÀǸ¦ ÇÒ µµ¸ÞÀÎ ³×ÀÓ ¼¹öÀÇ IP ¾îµå·¹½º¸¦ ¸í½ÃÇϱâ À§ÇØ »ç¿ëµÈ´Ù.
domain maths.wu.edu.au search maths.wu.edu.au wu.edu.au nameserver 192.168.10.1 nameserver 192.168.12.1ÀÌ ¿¹´Â ºÐ·ùµÇÁö ¾ÊÀº ³×ÀÓ(µµ¸ÞÀγ×ÀÓÀ» ¾²Áö ¾ÊÀº È£½ºÆ®³×ÀÓ)¿¡ µ¡ºÙÀÏ µð ÆúÆ® µµ¸ÞÀγ×ÀÓÀÌ maths.wu.edu.auÀÓÀ» ¸í½ÃÇÏ°í, ±× È£½ºÆ®°¡ ÀÌ µµ¸ÞÀο¡¼ ¹ß°ßµÇÁö ¾ÊÀ»°æ¿ì wu.edu.au µµ¸ÞÀο¡¼ Á÷Á¢ ã¾Æº¼°ÍÀ» ¸í½ÃÇÑ´Ù. µÎ°³ÀÇ ³× ÀÓ¼¹ö ¿£Æ®¸®µµ Á¦°øµÇ´Âµ¥, ÀÌµé °¢°¢Àº ³×ÀÓÀ» Çؼ®ÇÒ¶§ »ç¿ëÇÑ´Ù.
/etc/host.conf ÆÄÀÏÀº name resolver ÄÚµåÀÇ ÇൿÀ» ÅëÁ¦ÇÏ´Â ¾ÆÀÌÅÛÀ» ¼³Á¤ÇÏ ´Â ÆÄÀÏÀÌ´Ù. ÀÌ ÆÄÀÏÀÇ Æ÷¸ËÀº 'resolv+' ¸Ç ÆäÀÌÁö¿¡ ÀÚ¼¼È÷ ±â¼úµÇ¾î ÀÖ´Ù. °ÅÀÇ ¸ðµç ȯ°æ¿¡¼ ´ÙÀ½ÀÇ ¿¹´Â Àß µ¿ÀÛÇÒ°ÍÀÌ´Ù.
order hosts,bind multi onÀÌ ¼³Á¤Àº ³×ÀÓ Çؼ®±â¿¡°Ô, ³×ÀÓ¼¹ö¿¡ ÁúÀÇÇϱâ Àü¿¡ /etc/hosts¸¦ üũÇÒ °Í °ú /etc/hosts ÆÄÀÏ¿¡¼ ¹ß°ßµÇ´Â ù¹ø° ¾îµå·¹½º »Ó¸¸¾Æ´Ï¶ó ¸ðµç À¯È¿ ¾îµå ·¹½º¸¦ ¸®ÅÏÇÒ°ÍÀ» ¸»ÇØÁØ´Ù.
/etc/hosts ÆÄÀÏÀº ·ÎÄà ȣ½ºÆ®ÀÇ ³×ÀÓ°ú IP ¾îµå·¹½º¸¦ Áý¾î³Ö´Â °÷ÀÌ´Ù. ÀÌ ÆÄÀÏ¿¡ È£½ºÆ®¸¦ Àû¾î³ÖÀ¸¸é IP ¾îµå·¹½º¸¦ ¾ò±â À§ÇØ µµ¸ÞÀÎ ³×ÀÓ ¼¹ö¿¡ ÁúÀÇ ÇÒ ÇÊ¿ä°¡ ¾ø´Ù. ÀÌ ÆÄÀÏÀ» À¯ÁöÇϴµ¥ ºÒÆíÇÑ Á¡Àº È£½ºÆ®ÀÇ IP ¾îµå·¹½º°¡ ¹Ù ²ð¶§ ÀÚ½ÅÀÌ ¾÷µ¥ÀÌÆ®¸¦ ÇؾßÇÑ´Ù´Â Á¡ÀÌ´Ù. Àß °ü¸®µÇ´Â ½Ã½ºÅÛÀÇ ÀÌ ÆÄÀÏ¿¡¼ º¸À̴ ȣ½ºÆ®³×ÀÓÀº ·çÇÁ¹é ÀÎÅÍÆäÀ̽º¿Í ·ÎÄà ȣ½ºÆ®ÀÇ ³×ÀÓÀ» À§ÇÑ ¿£Æ®¸® »ÓÀÌ´Ù.
# /etc/hosts 127.0.0.1 localhost loopback 192.168.0.1 this.host.nameù¹ø° ¿£Æ®¸®¿¡¼ º¸¿©ÁÖ´Â ¹Ù¿Í°°ÀÌ ÇÑ ¶óÀο¡ ÇÑ°³ ÀÌ»óÀÇ È£½ºÆ® ³×ÀÓÀ» ¸í ½ÃÇÒ ¼öµµ ÀÖ´Ù. À§ÀÇ Ã¹¹ø° ¿£Æ®¸®´Â ·çÇÁ¹é ÀÎÅÍÆäÀ̽º¸¦ À§ÇÑ Ç¥ÁØ ¿£Æ®¸® ÀÌ´Ù.
'loopback' ÀÎÅÍÆäÀ̽º´Â Àڽſ¡°Ô Á¢¼ÓÇÒ¼ö ÀÖµµ·Ï ÇØÁִ Ưº°ÇÑ ÇüÅÂÀÇ ÀÎÅÍ ÆäÀ̽ºÀÌ´Ù. À̸¦ »ç¿ëÇÏ°í ½ÍÀº ÀÌÀ¯´Â ¸Å¿ì ´Ù¾çÇѵ¥, ³×Æ®¿öÅ©ÀÇ ´Ù¸¥ »ç¿ë ÀÚ¸¦ ¹æÇØÇÏÁö ¾Ê°í ³×Æ®¿öÅ© ¼ÒÇÁÆ®¿þ¾î¸¦ Å×½ºÆ®ÇÏ°í ½ÍÀ» ¶§ µî..ÀÌ ÁÁÀº ¿¹ °¡ µÈ´Ù. ¾à¼Ó¿¡ ÀÇÇØ IP ¾îµå·¹½º '127.0.0.1'Àº ·çÇÁ¹éÀ» À§ÇØ ¸í½ÃÀûÀ¸·Î ÇÒ ´çµÇ¾î ÀÖ´Ù. ±×·¯¹Ç·Î ¾î¶² ¸Ó½ÅÀ» ¿î¿µÇÏ´õ¶óµµ, 127.0.0.1ÀÇ ÅÚ³Ý Ä¿³Ø¼ÇÀ» ¿¸é ·ÎÄà ȣ½ºÆ®¿¡ µµ´ÞÇÏ°Ô µÈ´Ù.
·çÇÁ¹é ÀÎÅÍÆäÀ̽º¸¦ ¼³Á¤Çϴ°ÍÀº °£´ÜÇϸç, ´ÙÀ½Àº ºÐ¸íÈ÷ ÇØÁÖ¾î¾ß ÇÑ´Ù.
# ifconfig lo 127.0.0.1 # route add -host 127.0.0.1 lo´ÙÀ½ ºÎºÐ¿¡¼ ¿ì¸®´Â route ¸í·É¿¡ ´ëÇØ ÀÚ¼¼È÷ ´Ù·ê°ÍÀÌ´Ù.
¶ó¿ìÆÃÀº °Å´ëÇÑ ÅäÇÈÀÌ´Ù. ÀÌ°Í¿¡ °üÇؼ´Â ¾öû³ ¾çÀÇ ÅؽºÆ®¸¦ ÀÛ¼ºÇÏ´Â °Í ÀÌ °¡´ÉÇÏ´Ù. ´ëºÎºÐÀÇ »ç¶÷Àº ¶ó¿ìÆÿ¡ °üÇØ °£´ÜÇÑ ¿ä±¸¸¸À» ÇÒ°ÍÀ̳ª, ¸î¸î »ç¶÷Àº ±×·¸Áö ¾Ê´Ù. ³ª´Â ¶ó¿ìÆÃÀÇ ±âÃÊÀûÀÎ ±âº»»çÇ׸¸À» ´Ù·ê°ÍÀÌ´Ù. Á»´õ ¼¼ºÎÀûÀÎ Á¤º¸¿¡ °ü½ÉÀÌ ÀÖ´Ù¸é ÀÌ ¹®¼ÀÇ ½ÃÀۺκп¡ ÀÖ´Â ·¹ÆÛ·±½º¸¦ Âü°íÇÏ ±â ¹Ù¶õ´Ù.
Á¤ÀÇ¿Í ÇÔ²² ½ÃÀÛÇÏÀÚ. IP ¶ó¿ìÆÃÀ̶õ ´ëü ¹«¾ùÀΰ¡? ¿©±â ³»°¡ »ç¿ëÇÏ´Â Á¤ÀÇ Áß Çϳª°¡ ÀÖ´Ù.
IP ¶ó¿ìÆÃÀ̶õ È£½ºÆ®°¡ ¹ÞÀº ¸ÖƼÇà ³×Æ®¿öÅ© µ¥ÀÌÅͱ׷¥¿¡ ÀÇÇÑ ÇÁ·Î ¼¼½ºÀÌ´Ù.
¿¹¸¦ µé¾î ¼³¸íÇÏ´Â°Ô ÁÁ°Ú´Ù. ÀüÇüÀûÀÎ ¿ÀÇǽº ¶ó¿ìÅ͸¦ »ó»óÇغ¸¶ó. ±×°ÍÀº ¾Æ¸¶ ÀÎÅͳݿ¡ ¿¬°áµÇÁö ¾ÊÀº ppp ¸µÅ©, ¿öÅ©½ºÅ×À̼ǿ¡ °ø±ÞÇÏ´Â ¸î°³ÀÇ ÀÌ´õ ³Ý ¼¼±×¸ÕÆ® ´Ù¸¥ ¿ÀÇǽº·ÎÀÇ ppp ¸µÅ©µîÀ» °¡Áö°í ÀÖÀ»°ÍÀÌ´Ù. ¾î´À ³×Æ®¿öÅ© Ä¿³Ø¼ÇÀ¸·ÎºÎÅÍ ¶ó¿ìÅÍ°¡ µ¥ÀÌÅͱ׷¥À» ¹ÞÀ»¶§, ¶ó¿ìÆÃÀ̶õ ´ÙÀ½¿¡ µ¥ÀÌÅͱ׷¥ À» ¾î´À Æ÷Æ®·Î º¸³¾°ÍÀΰ¡¸¦ °áÁ¤Áþ´Â ¸ÞÄ¿´ÏÁòÀÌ´Ù. °£´ÜÇÑ È£½ºÆ®¿¡¼µµ ¶ó ¿ìÆÃÀº ÇÊ¿äÇÏ¸ç ¸ðµç ÀÎÅÍ³Ý È£½ºÆ®´Â µÎ°³ÀÇ ³×Æ®¿öÅ© µð¹ÙÀ̽º¸¦ °®´Âµ¥ ÇÏ ³ª´Â À§¿¡¼ ¾ð±ÞÇÑ ·çÇÁ¹é ÀÎÅÍÆäÀ̽ºÀÌ¸ç ´Ù¸¥ Çϳª´Â ÀÌ´õ³Ý ȤÀº PPP, SLIP µîÀÇ ³ª¸ÓÁö ³×Æ®¿öÅ©¿¡ À̾߱⸦ ÇϱâÀ§ÇØ »ç¿ëÇÏ´Â µð¹ÙÀ̽ºÀÌ´Ù.
OK, ±×·¯¸é ¶ó¿ìÆÃÀ̶õ ¾î¶»°Ô µ¿ÀÛÇÏ´Â °ÍÀΰ¡? °¢ È£½ºÆ®´Â ¶ó¿ìÆà Å×À̺íÀÌ ¶ó ºÒ¸®´Â ¶ó¿ìÆà ·êÀÇ Æ¯º°ÇÑ ¸®½ºÆ®¸¦ °¡Áö°í ÀÖ´Ù. ÀÌ Å×À̺íÀº ÃÖ¼Ò 3°³ÀÇ Çʵ带 °¡Áö´Â ÇàÀ» Æ÷ÇÔÇϴµ¥, ù° Çʵå´Â ¸ñÀûÁö ¾îµå·¹½º, µÎ¹ø° Çʵå´Â µ¥ÀÌÅͱ׷¥ÀÌ ¶ó¿ìÆÃµÉ ÀÎÅÍÆäÀ̽ºÀÇ À̸§À», ¼¼¹ø°´Â ¿É¼ÇÀ¸·Î ³×Æ®¿öÅ©¸¦ Åë ÇØ ´ÙÀ½ ½ºÅÜÀ¸·Î µ¥ÀÌÅͱ׷¥À» ¿î¹ÝÇÒ ´Ù¸¥ ¸Ó½ÅÀÇ ¾îµå·¹¸¦ °¡Áö°í ÀÖ´Ù. ´Ù À½ ¸í·ÉÀ» ÀÌ¿ëÇÏ¿© ¸®´ª½ºÀÇ ¶ó¿ìÆà Å×À̺íÀ» »ìÆ캼¼ö ÀÖ´Ù.
# cat /porc/net/route¶ó¿ìÆà ÇÁ·Î¼¼½º´Â ¸Å¿ì °£´ÜÇÏ´Ù: µé¾î¿À´Â µ¥ÀÌÅͱ׷¥Àº ¹Þ°í, ¸ñÀûÁö ¾îµå·¹ ½º¸¦ Á¶»çÇÏ¿© Å×À̺í»óÀÇ °¢ ¿£Æ®¸®¿Í ºñ±³ÇÑ´Ù. ÇØ´ç ¾îµå·¹½º¿Í °¡Àå Àß ºÎ ÇÕÇÏ´Â ¿£Æ®¸®¸¦ ¼±ÅÃÇÏ°í ¸í½ÃµÈ ÀÎÅÍÆäÀ̽º·Î µ¥ÀÌÅͱ׷¥À» Æ÷¿öµùÇÑ´Ù. °ÔÀÌ Æ®¿ö¿¡ Çʵ尡 ä¿öÁ® ÀÖ´Ù¸é µ¥ÀÌÅͱ׷¥Àº ÀÎÅÍÆäÀ̽º¸¦ °æÀ¯ÇØ ±× È£½ºÆ®·Î Æ÷¿öµùµÇ¸ç, ±×·¸Áö ¾ÊÀ¸¸é ÀÎÅÍÆäÀ̽º°¡ Áö¿øÇÏ´Â ³×Æ®¿öÅ©¿¡ ÀÖ´Ù°í °¡Á¤ÇÑ ´Ù.
¶ó¿ìÆà Å×À̺íÀ» Á¶ÀÛÇϱâ À§Çؼ´Â Ưº°ÇÑ ¸í·ÉÀ» »ç¿ëÇÑ´Ù. ÀÌ ¸í·ÉÀº Ä¿¸Çµå ¶óÀÎ º¯¼ö¸¦ ¹Þ¾Æ¼ Ä¿³ÎÀÌ Å×ÀÌºí³»ÀÇ ¿£Æ®¸®¸¦ Ãß°¡, »èÁ¦, ¼öÁ¤Çϵµ·Ï ¿äû ÇÏ´Â Ä¿³Î ½Ã½ºÅÛ ÄÝ·Î º¯È¯ÇÑ´Ù. ÀÌ ¸í·ÉÀº 'route'¶ó ºÒ¸°´Ù.
°£´ÜÇÑ ¿¹°¡ ÀÖ´Ù. ¿©·¯ºÐÀÌ ÀÌ´õ³Ý ³×Æ®¿öÅ©¸¦ °¡Áö°í ÀÖ´Ù°í »ý°¢Çغ¸ÀÚ. ±× °ÍÀÌ 192.168.1.0ÀÇ ¾îµå·¹½º¸¦ °¡Áø class-CÀÇ ³×Æ®¿öÅ©¶ó°í µé¾ú´Ù. ¶Ç ÀڽŠÀÌ »ç¿ëÇϱâ À§ÇØ 192.168.1.10À» Áö¿øÇÏ°í, 192.168.1.1ÀÌ ÀÎÅͳݿ¡ ¿¬°áµÈ ¶ó¿ìÅͶó°í µè´Â´Ù.
ù¹ø°·Î ÇÒÀÏÀº À§¿¡¼ ¼³¸íÇÑ´ë·Î ÀÎÅÍÆäÀ̽º¸¦ ¼³Á¤ÇÏ´Â ÀÏÀÌ´Ù. ´ÙÀ½°ú °° Àº ¸í·ÉÀ» »ç¿ëÇÑ´Ù.
# ifconfig eht0 192.168.1.10 netmask 255.255.255.0 up´ÙÀ½¿¡´Â 192.168.1.*¿¡ ¸ÅÄ¡µÇ´Â ¸ðµç ¾îµå·¹½º¸¦ ÇâÇÑ µ¥ÀÌÅͱ׷¥ÀÌ ÀÌ ÀÌ´õ ³Ý µð¹ÙÀ̽º·Î º¸³»Áöµµ·Ï ¶ó¿ìÆà Å×ÀÌºí¿¡ ¿£Æ®¸®¸¦ Ãß°¡ÇØ¾ß ÇÑ´Ù.
# route add -net 192.168.0.0 netmask 255.255.255.0 eth0'-net' º¯¼öÀÇ »ç¿ëÀº ÀÌ ¿£Æ®¸®°¡ ³×Æ®¿öÅ© ¿£Æ®¸®ÀÓÀ» route ÇÁ·Î±×·¥¿¡ ¾Ë·Á ÁÖ±â À§ÇؼÀÌ´Ù. ¿©±â¼ ÇÒ¼öÀÖ´Â ´Ù¸¥ ¼±ÅÃÀº 'È£½ºÆ®' ¶ó¿ìÆ®Àε¥ ÀÌ°ÍÀº ÇÏ ³ªÀÇ IP ¾îµå·¹½º·Î ¸í½ÃµÇ´Â routeÀÌ´Ù.
ÀÌ ¶ó¿ìÆ®´Â ¿©·¯ºÐÀÇ ÀÌ´õ³Ý ¼¼±×¸ÕÆ®»ó¿¡ ÀÖ´Â ¸ðµç È£½ºÆ®¿ÍÀÇ Ä¿³Ø¼Ç ¼º¸³ À» °¡´ÉÇÏ°Ô ÇØÁØ´Ù. ÇÏÁö¸¸ ÀÚ½ÅÀÇ ÀÌ´õ³Ý ¼¼±×¸ÕÆ®¿¡ ÀÖÁö ¾ÊÀº ´Ù¸¥ ¸ðµç IP È£½ºÆ®´Â ¾î¶»°Ô µÇ´Â°¡?
¸ðµç °¡´ÉÇÑ ¸ñÀûÁö ³×Æ®¿öÅ©ÀÇ route¸¦ Ãß°¡Çϴ°ÍÀº ´ë´ÜÈ÷ ¾î·Á¿î ÀÏÀ̹ǷÎ, ÀÌ ÀÛ¾÷À» °£´ÜÇÏ°Ô ÇØÁִ Ưº°ÇÑ Æ®¸¯ÀÌ ÀÖ´Ù. ÀÌ Æ®¸¯Àº 'µðÆúÆ®' ¶ó¿ìÆ®¶ó °í ºÒ¸°´Ù. µðÆúÆ® ¶ó¿ìÆ®´Â ¸ðµç °¡´ÉÇÑ ¸ñÀûÁö¿Í ¸ÅÄ¡µÇÁö¸¸ ºó¾àÇϹǷΠ¿äû ¹ÞÀº ¾îµå·¹½º¿Í ¸ÅÄ¡ÇÏ´Â ¾îµå·¹½º°¡ ÀÖ´Ù¸é µðÆúÆ® ¶ó¿ìÆ® ´ë½Å¿¡ ÀÌ°ÍÀÌ »ç ¿ëµÈ´Ù. µðÆúÆ® ¶ó¿ìÆ®ÀÇ ¾ÆÀ̵ð¾î´Â "¸ðµç°ÍÀº ÀÌ°÷À¸·Î"¶ó°í Çϴ°ÍÀ» °¡´ÉÇÏ °Ô ÇØÁØ´Ù. ÀÌ ¿¹¿¡¼´Â ´ÙÀ½°ú °°Àº ¿£Æ®¸®¸¦ »ç¿ëÇϵµ·Ï ÇÏ¿´´Ù.
# route add default gw 192.168.1.1 eth0'gw' º¯¼ö´Â ´ÙÀ½ º¯¼ö°¡ °ÔÀÌÆ®¿þÀÌ(ȤÀº ¶ó¿ìÅÍ ¸Ó½Å)ÀÇ IP ÁÖ¼Ò, ¶Ç´Â ³×ÀÓ ÀÓÀ» route ¸í·É¿¡°Ô ¾Ë·ÁÁØ´Ù. ÀÌ ¿£Æ®¸®¿¡ ¸ÅÄ¡ÇÏ´Â ¸ðµç µ¥ÀÌÅͱ׷¥Àº ´õ ¸Õ ¶ó¿ìÆÃÀ» À§ÇØ ±× °ÔÀÌÆ®¿þÀÌ·Î º¸³»Á®¾ß ÇÑ´Ù.
±×·¡¼, ¿Ï¼ºµÈ ¼³Á¤Àº ´ÙÀ½°ú °°ÀÌ º¸ÀÏ°ÍÀÌ´Ù.
# ifconfig eth0 192.168.1.10 netmask 255.255.255.0 up # route add -net 192.168.0.0 netmask 255.255.255.0 eth0 # route add default gw 192.168.1.1 eth0ÀÚ½ÅÀÇ ³×Æ®¿öÅ© 'rc' ÆÄÀÏÀ» Àß »ìÆ캻´Ù¸é ÀÌ¿Í À¯»çÇÏ°Ô º¸À̴°ÍÀ» Àû¾îµµ Çϳª´Â ¹ß°ßÇÏ°Ô µÉ°ÍÀÌ´Ù. ÀÌ°ÍÀº ¸Å¿ì ÀϹÝÀûÀÎ ¼³Á¤ÀÌ´Ù.
ÀÌÁ¦ ¾à°£ ´õ º¹ÀâÇÑ ¶ó¿ìÆà ¼³Á¤À» »ìÆ캸ÀÚ. ÀÎÅͳÝÀ¸·ÎÀÇ PPP ¸µÅ©¿Í »ç¹«½Ç ÀÇ ¿öÅ©½ºÅ×À̼ǿ¡ ·£ ¼¼±×¸ÕÆ®¸¦ °ø±ÞÇÏ´Â ¶ó¿ìÅ͸¦ ¼³Á¤ÇÑ´Ù°í »ó»óÇغ¸ÀÚ. P PP ¸µÅ© Çϳª¿Í ÀÌ´õ³Ý ¼¼±×¸ÕÆ® 3°³¸¦ °¡Áö´Â ¶ó¿ìÅ͸¦ ¼³Á¤ÇÑ´Ù°í »ý°¢Çغ¸ ÀÚ. ¶ó¿ìÆà ¼³Á¤Àº ´ÙÀ½°ú °°ÀÌ º¸ÀÏ°ÍÀÌ´Ù.
# route add 192.168.1.0 netmask 255.255.255.0 eth0 # route add 192.168.2.0 netmask 255.255.255.0 eht1 # route add 192.168.3.0 netmask 255.255.255.0 eth2 # route add default ppp0°¢ ¿öÅ©½ºÅ×À̼ÇÀº À§¿¡ ³ªÅ¸³°Íº¸´Ù °£´ÜÇÑ °ÍÀ» »ç¿ëÇÏ°ÚÁö¸¸, ¶ó¿ìÅÍ´Â °¢ ³×Æ®¿öÅ© ·çÆ®(route)¸¦ ¸í½ÃÇÒ ÇÊ¿ä°¡ ÀÖ´Ù. ¿öÅ©½ºÅ×À̼ǿ¡ ÀÖ¾î¼ µðÆúÆ® ¸Þ Ä¿´ÏÁòÀº ¶ó¿ìÅÍ°¡ ÀûÀýÈ÷ ºÐ¸®ÇØ¾ß Çϴ°ÍÀ» ¸ðµÎ Àâ¾Æ³¾°ÍÀ̱⠶§¹®ÀÌ´Ù. ¿©·¯ºÐÀº À§¿¡ ³ªÅ¸³ µðÆúÆ® ¶ó¿ìÆ®°¡ 'gw'¸¦ ¸í½ÃÇÏÁö ¾ÊÀº ÀÌÀ¯¸¦ ±Ã±ÝÇØ ÇÒ Áöµµ ¸ð¸¥´Ù. ÀÌÀ¯´Â ¸Å¿ì °£´ÜÇѵ¥ PPP³ª SLIP °°Àº ½Ã¸®¾ó ¸µÅ© ÇÁ·ÎÅäÄÝÀº ³×Æ®¿öÅ© ¾ç´Ü¿¡ ÇѴ뾿, ´Ü µÎ´ëÀÇ È£½ºÆ®¹Û¿¡ ¾ø±â ¶§¹®ÀÌ´Ù. ¸µÅ©ÀÇ ¹Ý´ë³¡ ¿¡ Àִ ȣ½ºÆ®¸¦ °ÔÀÌÆ®¿þÀÌ·Î ¸í½ÃÇÏ´Â °ÍÀº ¹«ÀǹÌÇÏ°í °úÀ×ÀûÀÎ °ÍÀÌ´Ù. ¿Ö ³Ä¸é ´Ù¸¥ ¼±ÅÃÀÌ ÀÖÀ»¼ö ¾ø±â ¶§¹®¿¡ ÀÌ·± ŸÀÔÀÇ ³×Æ®¿öÅ© Ä¿³Ø¼Ç¿¡¼´Â °ÔÀÌ Æ®¿þÀ̸¦ ¸í½ÃÇØÁÙ ÇÊ¿ä°¡ ¾ø´Ù. ÀÌ´õ³Ý, ¾ÆÅ©³Ý(arcnet), ÅäÅ« ¸µ¿¡¼´Â °ÔÀÌ Æ®¿þÀ̸¦ ¸í½ÃÇØÁà¾ß Çϴµ¥ ÀÌµé ³×Æ®¿öÅ©¿¡´Â ¸¹Àº¼öÀÇ È£½ºÆ®°¡ Àֱ⠶§¹®ÀÌ ´Ù.
À§¿¡¼ ¾ð±ÞµÈ ¶ó¿ìÆà ¼³Á¤Àº ¸ñÀûÁö·Î °¡´Â±æÀÌ ´Ü Çϳª»ÓÀÎ °£´ÜÇÑ ³×Æ®¿öÅ© ¾î·¹ÀÎÁö¸ÕÆ®¿¡¼ °¡Àå Àß Àû¿ëµÈ´Ù. Á»´õ º¹ÀâÇÑ ³×Æ®¿öÅ©¿¡¼ ÇؾßÇÒ ÀÏÀº Á» ´õ º¹ÀâÇÏ´Ù. ´ÙÇàÀ̵µ ´ëºÎºÐÀÇ »ç¶÷µé¿¡°Ô ÀÌ°ÍÀº ÈÁ¬°Å¸®°¡ µÇÁö¾Ê´Â´Ù.
'¼öµ¿ ¶ó¿ìÆÃ'À̳ª 'Á¤Àû ¶ó¿ìÆÃ'ÀÇ °¡Àå Å« ¹®Á¦Á¡Àº ¾ð±ÞÇÑ ¹Ù¿Í °°ÀÌ, ³×Æ® ¿öÅ©ÀÇ ¸Ó½ÅÀ̳ª ¸µÅ©°¡ ¸Á°¡Á®¼ µ¥ÀÌÅͱ׷¥À» ´Ù¸¥ ±æ·Î º¸³»¾ß ÇÑ´Ù¸é(´Ù¸¥ ±æÀÌ ÀÖÀ»°æ¿ì) Á÷Á¢ À̵éÀ» Á¶Á¤ÇÏ°í ÀûÀýÇÑ ¸í·ÉÀ» ½ÇÇàÇØ¾ß ÇÑ´Ù´Â Á¡ÀÌ´Ù. ´ç¿¬È÷ ÀÌ°ÍÀº ´À¸®°í, ²Ã»ç³³°í, ºñ½Ç¿ëÀûÀÌ°í, ¹Ù¶÷Á÷ÇÏÁö ¾ÊÀº ÀÏÀÌ´Ù. ³×Æ® ¿öÅ©¿¡ ¹®Á¦°¡ »ý°åÀ» °æ¿ì °¡´ÉÇÑ ·çÆ®¸¦ ÀÚµ¿À¸·Î Àû¿ë½ÃÅ°´Â ´Ù¾çÇÑ Å×Å©´Ð µéÀÌ °³¹ßµÇ¾ú´Âµ¥, ÀÌ·¯ÇÑ ¸ðµç ±×·ìÀº '´ÙÀ̳ª¹Í ¶ó¿ìÆà ÇÁ·ÎÅäÄÝ'À̶ó´Â ¿ë ¾î·Î ´À½¼ÇÏ°Ô ¹¿©ÀÖ´Ù.
¿©·¯ºÐÀº ÀϹÝÀûÀÎ ´ÙÀ̳ª¹Í ¶ó¿ìÆà ÇÁ·ÎÅäÄÝ¿¡ °üÇØ µé¾úÀ»Áöµµ ¸ð¸¥´Ù. °¡Àå ³Î¸® ¾Ë·ÁÁø °ÍÀº ¾Æ¸¶µµ RIP(Routing Information Protocol)°ú OSPF(Open Shor test Path First Protocol)ÀÏ °ÍÀÌ´Ù. RIP´Â Áß°£ Á¤µµ »çÀÌÁî ´ÜüÀÇ ³×Æ®¿öÅ© ³ª ºôµù ³×Æ®¿öÅ© µî¿¡¼ ÈçÈ÷ »ç¿ëµÈ´Ù. OSPF´Â Á»´õ Çö´ëÀûÀÌ°í º¸´Ù Å« ³×Æ® ¿öÅ©¸¦ ´Ù·ç´Â ¼³Á¤´É·ÂÀÌ ÀÖ´Ù. ¶ÇÇÑ ³×Æ®¿öÅ©¸¦ ÅëÇØ Á»Àú ¸¹Àº ¼öÀÇ ±æ(pat h)°¡ Àִ ȯ°æ¿¡¼ ÀûÇÕÇÏ´Ù. ÀÌ ÇÁ·ÎÅäÄݵéÀÌ ÀϹÝÀûÀÎ µµ±¸´Â 'routed'-RIP, 'gated'-RIP,OSPF µîÀÌ´Ù. 'routed' ÇÁ·Î±×·¥Àº º¸Åë ¹èÆ÷º»°ú ÇÔ²² Àç°øµÇ¸ç, À§¿¡¼ ¾ð±ÞÇÑ 'NetKit' ÆÐÅ°Áö¿¡µµ Æ÷ÇԵǾî ÀÖ´Ù.
´ÙÀ̳ª¹Í ¶ó¿ìÆà ÇÁ·ÎÅäÄÝÀ» ¾îµð¼ ¾î¶»°Ô »ç¿ëÇÒ °ÍÀΰ¡ ÇÏ´Â ¿¹´Â, ´ÙÀ½Ã³·³ º¸ÀÏ°ÍÀÌ´Ù.
192.168.1.0 / 192.168.2.0 / 255.255.255.0 255.255.255.0 - - | | | /-----\ /-----\ | | | |ppp0 // ppp0| | | eth0 |---| A |------//---------| B |---| eth0 | | | // | | | | \-----/ \-----/ | | \ ppp1 ppp1 / | - \ / - \ / \ / \ / \ / \ / \ / \ / \ / ppp0\ /ppp1 /-----\ | | | C | | | \-----/ |eth0 | |---------| 192.168.3.0 / 255.255.255.0A,B,C ¼¼°³ÀÇ ¶ó¿ìÅÍ°¡ ÀÖ´Ù. °¢°¢Àº Class C IP ³×Æ®¿öÅ©(netmask 255.255.25 5.0)ÀÇ ÀÌ´õ³Ý ¼¼±×¸ÕÆ®¸¦ Áö¿øÇÑ´Ù. ¶Ç °¢ ¶ó¿ìÅÍ¿¡´Â ´Ù¸¥ ¶ó¿ìÅÍ·ÎÀÇ PPP ¸µ Å©°¡ ÀÖ´Ù. ³×Æ®¿öÅ©´Â »ï°¢ÇüÀ» ÀÌ·é´Ù.
¶ó¿ìÅÍ AÀÇ ¶ó¿ìÆà Å×À̺íÀº ´ÙÀ½Ã³·³ º¸ÀÏ°ÍÀÌ ¸í¹éÇÏ´Ù.
# route add -net 192.168.1.0 netmask 255.255.255.0 eth0 # route add -net 192.168.2.0 netmask 255.255.255.0 ppp0 # route add -net 192.168.3.0 netmask 255.255.255.0 ppp1ÀÌ°ÍÀº ¶ó¿ìÅÍ A ¿Í B »çÀÌÀÇ ¸µÅ©¿¡ ¹®Á¦°¡ »ý±â±â Àü¿¡´Â Àß µ¿ÀÛÇÒ °ÍÀÌ´Ù. ±× ¸µÅ©¿¡ ¹®Á¦°¡ »ý±â¸é À§¿¡¼ º¸¿©ÁØ ¶ó¿ìÆà ¿£Æ®¸®¸¦ °¡Áö°í´Â A ÀÌ´õ³Ý ¼¼ ±×¸ÕÆ®»óÀÇ È£½ºÆ®´Â ÀÌ´õ³Ý ¼¼±×¸ÕÆ® B ¿¡ Àִ ȣ½ºÆ®¿¡ µµ´ÞÇÏÁö ¸øÇϴµ¥, µ¥ÀÌÅͱ׷¥ÀÌ ¶ó¿ìÅÍ A ÀÇ ²÷¾îÁø ppp0·Î º¸³»Áö±â ¶§¹®ÀÌ´Ù. ±×µéÀº ¿©ÀüÈ÷ ÀÌ ´õ³Ý ¼¼±×¸ÕÆ® C ÀÇ È£½ºÆ®·Î´Â ¸»ÇÒ¼ö ÀÖÀ¸¸ç, C ÀÌ´õ³Ý ¼¼±×¸ÕÆ®ÀÇ È£½ºÆ®µµ ¿©ÀüÈ÷ B ÀÌ´õ³Ý ¼¼±×¸ÕÆ®»óÀÇ È£½ºÆ®¿Í À̾߱⸦ ÇÒ¼öÀִµ¥, B ¿Í C »çÀÌÀÇ ¸µÅ©°¡ ¿©ÀüÈ÷ ²÷¾îÁöÁö ¾Ê°í Àֱ⠶§¹®ÀÌ´Ù.
Àá±ñ, A °¡ C ·Î ¸»ÇÒ¼ö ÀÖ°í, C °¡ B ·Î ¸»ÇÒ¼ö ÀÖ´Ù¸é ¾î°¼ A ´Â C °¡ B·Î º¸³»µµ·Ï C¸¦ °æ¿ìÇÏ¿© µ¥ÀÌÅͱ׷¥À» B·Î º¸³»Áö ¾Ê´Â°¡? ÀÌ·±°ÍÀÌ ¹Ù·Î RIP °° Àº ´ÙÀ̳ª¹Í ¶ó¿ìÆà ÇÁ·ÎÅäÄÝÀÌ ÇØ°áÇϵµ·Ï ¼³°èµÈ ±×·± ¹®Á¦ÀÌ´Ù. A, B, C ¶ó ¿ìÅÍ°¡ °¢°¢ ¶ó¿ìÆà µ¥¸óÀº ¿î¿µÇÒ ¶§, ¸µÅ©Áß Çϳª¿¡ ¹®Á¦°¡ »ý±ä´Ù¸é ¶ó¿ìÆà Å×À̺íÀº »õ·Î¿î ³×Æ®¿öÅ© »óȲÀº ¹Ý¿µÇÏ¿© ÀÚµ¿À¸·Î Àû¿ëµÉ°ÍÀÌ´Ù. ÀÌ·± ³×Æ® ¿öÅ©¸¦ ¼³Á¤ÇÏ´Â °ÍÀº °£´ÜÇϸç, °¢ ¶ó¿ìÅÍ¿¡ ´ëÇØ µÎ°¡Áö¸¸ ÇØÁÖ¸é µÈ´Ù. ÀÌ °æ¿ì ¶ó¿ìÅÍ A ¿¡ ´ëÇÏ¿©,
# route add -net 192.168.1.0 netmask 255.255.255.0 eth0 # /usr/sbin/routed'routed' ¶ó¿ìÆà µ¥¸óÀº ½ÃÀÛÇÒ¶§ ÀÚµ¿À¸·Î È°¼ºÈµÈ ¸ðµç ³×Æ®¿öÅ© Æ÷Æ®¸¦ ã À¸¸ç ±× È£½ºÆ®ÀÇ ¶ó¿ìÆà Å×À̺íÀ» °áÁ¤ÇÏ°í ¾÷µ¥ÀÌÆ® ÇÒ ¼ö ÀÖµµ·Ï °¢ ³×Æ®¿ö Å© µð¹ÙÀ̽º¿¡ ¸Þ¼¼Áö¸¦ º¸³»°í ¶Ç µè´Â´Ù.
ÀÌ°ÍÀº ¿©·¯ºÐÀÌ ´ÙÀ̳ª¹Í ¶ó¿ìÆà ÇÁ·ÎÅäÄÝÀ» »ç¿ëÇÒ ¼ö ÀÖ´Â °÷¿¡ ´ëÇÑ °£´ÜÇÑ ¼³¸íÀÌ´Ù. ´õ ÀÚ¼¼ÇÑ Á¤º¸¸¦ ¿øÇÑ´Ù¸é ¹®¼ÀÇ Ã¹ºÎºÐ¿¡ Á¦½ÃµÈ Âü°í¹®ÇåÀ» º¸±â ¹Ù¶õ´Ù.
´ÙÀ̳ª¹Í ¶ó¿ìÆÿ¡ °üÇÏ¿© Áß¿äÇÑ Á¡Àº..
³×Æ®¿öÅ© ¼¹ö¿Í ¼ºñ½º´Â ¿ø°Ý »ç¿ëÀÚ°¡ ¿©·¯ºÐÀÇ ¸®´ª½º ¸Ó½ÅÀ» »ç¿ëÇÒ¼öÀÖ°Ô ÇϱâÀ§ÇÑ ÇÁ·Î±×·¥ÀÌ´Ù. ¿ø°Ý »ç¿ëÀÚ´Â ¿©·¯ºÐÀÇ ¸Ó½Å, ¼¹ö ÇÁ·Î±×·¥ ¶Ç´Â ³× Æ®¿öÅ© µ¥¸óÀ¸·Î Ä¿³Ø¼ÇÀ» ¼º¸³ÇÏ¿© ÇØ´ç Æ÷Æ®°¡ Ä¿³Ø¼ÅÀ» ¹Þ¾ÆµéÀÎÈÄ ½ÇÇàÀ» ÇÑ´Ù. ³×Æ®¿öÅ© µ¥¸óÀÌ µ¿ÀÛÇÏ´Â ¹æ¹ý¿¡´Â µÎ°¡Áö°¡ ÀÖ´Ù.
³×Æ®¿öÅ© µ¥¸óÀº ÁöÁ¤µÈ ³×Æ®¿öÅ© Æ÷Æ®ÀÇ ¸Þ¼¼Áö¸¦ µéÀ¸¸ç µé¾î¿À´Â Ä¿ ³Ø¼ÇÀÌ ¼º¸³µÇ¾úÀ»¶§ ³×Æ®¿öÅ© Ä¿³Ø¼ÇÀ» °ü¸®ÇÏ°í ¼ºñ½º¸¦ Á¦°øÇÑ´Ù.
inetd ¼¹ö´Â µé¾î¿À´Â Ä¿³Ø¼ÇÀ» Àü¹®À¸·Î Ãë±ÞÇϴ Ưº°ÇÑ ³×Æ®¿öÅ© µ¥ ¸ó ÇÁ·Î±×·¥ÀÌ´Ù. tcp ȤÀº udp¿Í ¼ºñ½º Æ÷Æ®ÀÇ Æ¯º°ÇÑ Á¶ÇÕÀÌ µé¾î¿Ô À»¶§, ¾î´ø ÇÁ·Î±×·¥ÀÌ ½ÇÇàµÇ¾ß Çϴ°¡¸¦ ¸»ÇØÁÖ´Â ¼³Á¤ÆÄÀÏÀ» °¡Áö°í ÀÖ´Ù. ÀÌ Æ÷Æ®´Â ´Ù¸¥ ÆÄÀÏ¿¡ ±â¼úµÇ¾î ÀÖÀ¸¸ç ÀÌ¿¡ °üÇؼµµ °ð À̾߱⠸¦ ÇÒ°ÍÀÌ´Ù.
/etc/services ÆÄÀÏÀº Àΰ£¿¡°Ô Ä£¼÷ÇÑ ¼ºñ½º ³×ÀÓ°ú ±â°è¿¡ Ä£¼÷ÇÑ Æ÷Æ®³Ñ¹ö ¿Í °ü°èÀÖ´Â °£´ÜÇÑ µ¥ÀÌÅͺ£À̽º ÆÄÀÏÀÌ´Ù. ÀÌ°ÍÀÇ Æ÷¸ËÀº ¸Å¿ì °£´ÜÇÏ´Ù. ÀÌ °ÍÀº °¢ ¶óÀÎÀÌ µ¥ÀÌÅͺ£À̽ºÀÇ ¿£Æ®¸®¸¦ ³ªÅ¸³»´Â ÅؽºÆ® ÆÄÀÏÀÌ´Ù. °¢°¢ÀÇ ¿£ Æ®¸®´Â ¸î°³ÀÇ °ø¹é ½ºÆäÀ̽º(tab ¶Ç´Â space)·Î ³ª´µ´Â ¼¼°³ÀÇ Çʵå·Î ±¸¼ºµÇ ¾î ÀÖ´Ù. ÀÌ Çʵå´Â ¾Æ·¡¿Í °°´Ù.
name port/protocol aliases #comment
±â¼úµÇ´Â ¼ºñ½º¸¦ ³ªÅ¸³»´Â °£´ÜÇÑ ´Ü¾îÀÌ´Ù.
ÀÌ Çʵå´Â µÎ°³ÀÇ ÇÏÀ§ Çʵå·Î ³ª´¶´Ù.
ÁöÁ¤µÈ ¼ºñ½º°¡ °¡´ÉÇÑ Æ÷Æ®³Ñ¹ö¸¦ ¸í½ÃÇÏ´Â ¼ýÀÚÀÌ´Ù. °øÅëÀ¸·Î »ç¿ëÇÏ´Â ¼ºñ½º¿¡´Â ÇÒ´çµÈ ¼ºñ½º ³Ñ¹ö°¡ ÀÖ´Ù. À̵éÀº RFC-1340 ¿¡ ³ª¿ÍÀÖ´Ù.
ÀÌ ¼ºêÇʵå´Â tcp³ª udp·Î ¼¼ÆõȴÙ.
18/tcp ¿Í 18/udp ¶ó´Â ¿£Æ®¸®´Â ¼·Î ´Ù¸¥°ÍÀÓÀ» ±¸ºÐÇϸç, ¿Ö °°Àº ¼ ºñ½º°¡ µÎ°÷¿¡ ¸ðµÎ Á¸ÀçÇØ¾ß ÇÏ´ÂÁö¿¡ ´ëÇÑ ±â¼úÀûÀÎ ÀÌÀ¯°¡ ¾øÀ½À» ¾Ë ¾ÆµÎ´Â°ÍÀÌ Áß¿äÇÏ´Ù. º¸Åë ÀϹÝÀûÀÎ »ý°¢ÀÌ ³Î¸® ÆÛÁ®ÀÖ°í, ƯÁ¤ ¼ºñ ½º°¡ tcp, udp ·Î ¸ðµÎ °¡´ÉÇÏ´Ù¸é ±×Àú µÑ ¸ðµÎ¿¡ ´ëÇÑ ¿£Æ®¸®¸¦ º¼¼ö ÀÖÀ» »ÓÀÌ´Ù.
ÀÌ ¼ºñ½º ¿£Æ®¸®¸¦ ³ªÅ¸³»±â À§ÇØ »ç¿ëµÇ´Â ´Ù¸¥ À̸§
¿äÁòÀÇ ¸®´ª½º ¹èÆ÷º»Àº ÈǸ¢ÇÑ /etc/services ÆÄÀÏÀ» Á¦°øÇÑ´Ù. ¿ÀÁ÷ ¿ÏÀüÈ÷ »õ·Î¿î ¸Ó½ÅÀ» ¸¸µé¾î¾ß ÇÒ¶§, µ¥ºñ¾È ¹èÆ÷º»¿¡¼ Á¦°øÇÏ´Â /etc/services ÆÄÀÏ ÀÌ ÀÖ´Ù.
# /etc/services: # $Id: services,v 1.3 1996/05/06 21:42:37 tobias Exp $ # # Network services, Internet style # # Note that it is presently the policy of IANA to assign a single well-kn own # port number for both TCP and UDP; hence, most entries here have two ent ries # even if the protocol doesn't support UDP operations. # Updated from RFC 1340, ``Assigned Numbers'' (July 1992). Not all ports # are included, only the more common ones. tcpmux 1/tcp # TCP port service multip lexer echo 7/tcp echo 7/udp discard 9/tcp sink null discard 9/udp sink null systat 11/tcp users daytime 13/tcp daytime 13/udp netstat 15/tcp qotd 17/tcp quote msp 18/tcp # message send protocol msp 18/udp # message send protocol chargen 19/tcp ttytst source chargen 19/udp ttytst source ftp-data 20/tcp ftp 21/tcp ssh 22/tcp # SSH Remote Login Protoc ol ssh 22/udp # SSH Remote Login Protoc ol telnet 23/tcp # 24 - private smtp 25/tcp mail # 26 - unassigned time 37/tcp timserver time 37/udp timserver rlp 39/udp resource # resource location nameserver 42/tcp name # IEN 116 whois 43/tcp nicname re-mail-ck 50/tcp # Remote Mail Checking Pr otocol re-mail-ck 50/udp # Remote Mail Checking Pr otocol domain 53/tcp nameserver # name-domain server domain 53/udp nameserver mtp 57/tcp # deprecated bootps 67/tcp # BOOTP server bootps 67/udp bootpc 68/tcp # BOOTP client bootpc 68/udp tftp 69/udp gopher 70/tcp # Internet Gopher gopher 70/udp rje 77/tcp netrjs finger 79/tcp www 80/tcp http # WorldWideWeb HTTP www 80/udp # HyperText Transfer Prot ocol link 87/tcp ttylink kerberos 88/tcp kerberos5 krb5 # Kerberos v5 kerberos 88/udp kerberos5 krb5 # Kerberos v5 supdup 95/tcp # 100 - reserved hostnames 101/tcp hostname # usually from sri-nic iso-tsap 102/tcp tsap # part of ISODE. csnet-ns 105/tcp cso-ns # also used by CSO name s erver csnet-ns 105/udp cso-ns rtelnet 107/tcp # Remote Telnet rtelnet 107/udp pop-2 109/tcp postoffice # POP version 2 pop-2 109/udp pop-3 110/tcp # POP version 3 pop-3 110/udp sunrpc 111/tcp portmapper # RPC 4.0 portmapper TCP sunrpc 111/udp portmapper # RPC 4.0 portmapper UDP auth 113/tcp authentication tap ident sftp 115/tcp uucp-path 117/tcp nntp 119/tcp readnews untp # USENET News Transfer Pr otocol ntp 123/tcp ntp 123/udp # Network Time Protocol netbios-ns 137/tcp # NETBIOS Name Service netbios-ns 137/udp netbios-dgm 138/tcp # NETBIOS Datagram Servic e netbios-dgm 138/udp netbios-ssn 139/tcp # NETBIOS session service netbios-ssn 139/udp imap2 143/tcp # Interim Mail Access Pro to v2 imap2 143/udp snmp 161/udp # Simple Net Mgmt Proto snmp-trap 162/udp snmptrap # Traps for SNMP cmip-man 163/tcp # ISO mgmt over IP (CMOT) cmip-man 163/udp cmip-agent 164/tcp cmip-agent 164/udp xdmcp 177/tcp # X Display Mgr. Control Proto xdmcp 177/udp nextstep 178/tcp NeXTStep NextStep # NeXTStep window nextstep 178/udp NeXTStep NextStep # server bgp 179/tcp # Border Gateway Proto. bgp 179/udp prospero 191/tcp # Cliff Neuman's Prospero prospero 191/udp irc 194/tcp # Internet Relay Chat irc 194/udp smux 199/tcp # SNMP Unix Multiplexer smux 199/udp at-rtmp 201/tcp # AppleTalk routing at-rtmp 201/udp at-nbp 202/tcp # AppleTalk name binding at-nbp 202/udp at-echo 204/tcp # AppleTalk echo at-echo 204/udp at-zis 206/tcp # AppleTalk zone informat ion at-zis 206/udp z3950 210/tcp wais # NISO Z39.50 database z3950 210/udp wais ipx 213/tcp # IPX ipx 213/udp imap3 220/tcp # Interactive Mail Access imap3 220/udp # Protocol v3 ulistserv 372/tcp # UNIX Listserv ulistserv 372/udp # # UNIX specific services # exec 512/tcp biff 512/udp comsat login 513/tcp who 513/udp whod shell 514/tcp cmd # no passwords used syslog 514/udp printer 515/tcp spooler # line printer spooler talk 517/udp ntalk 518/udp route 520/udp router routed # RIP timed 525/udp timeserver tempo 526/tcp newdate courier 530/tcp rpc conference 531/tcp chat netnews 532/tcp readnews netwall 533/udp # -for emergency broadcas ts uucp 540/tcp uucpd # uucp daemon remotefs 556/tcp rfs_server rfs # Brunhoff remote filesys tem klogin 543/tcp # Kerberized `rlogin' (v 5) kshell 544/tcp krcmd # Kerberized `rsh' (v5) kerberos-adm 749/tcp # Kerberos `kadmin' (v5) # webster 765/tcp # Network dictionary webster 765/udp # # From ``Assigned Numbers'': # #> The Registered Ports are not controlled by the IANA and on most system s #> can be used by ordinary user processes or programs executed by ordinar y #> users. # #> Ports are used in the TCP [45,106] to name the ends of logical #> connections which carry long term conversations. For the purpose of #> providing services to unknown callers, a service contact port is #> defined. This list specifies the port used by the server process as i ts #> contact port. While the IANA can not control uses of these ports it #> does register or list uses of these ports as a convienence to the #> community. # ingreslock 1524/tcp ingreslock 1524/udp prospero-np 1525/tcp # Prospero non-privileged prospero-np 1525/udp rfe 5002/tcp # Radio Free Ethernet rfe 5002/udp # Actually uses UDP only bbs 7000/tcp # BBS service # # # Kerberos (Project Athena/MIT) services # Note that these are for Kerberos v4, and are unofficial. Sites running # v4 should uncomment these and comment out the v5 entries above. # kerberos4 750/udp kdc # Kerberos (server) udp kerberos4 750/tcp kdc # Kerberos (server) tcp kerberos_master 751/udp # Kerberos authentication kerberos_master 751/tcp # Kerberos authentication passwd_server 752/udp # Kerberos passwd server krb_prop 754/tcp # Kerberos slave propagation krbupdate 760/tcp kreg # Kerberos registration kpasswd 761/tcp kpwd # Kerberos "passwd" kpop 1109/tcp # Pop with Kerberos knetd 2053/tcp # Kerberos de-multiplexor zephyr-srv 2102/udp # Zephyr server zephyr-clt 2103/udp # Zephyr serv-hm connection zephyr-hm 2104/udp # Zephyr hostmanager eklogin 2105/tcp # Kerberos encrypted rlogin # # Unofficial but necessary (for NetBSD) services # supfilesrv 871/tcp # SUP server supfiledbg 1127/tcp # SUP debugging # # Datagram Delivery Protocol services # rtmp 1/ddp # Routing Table Maintenance Proto col nbp 2/ddp # Name Binding Protocol echo 4/ddp # AppleTalk Echo Protocol zip 6/ddp # Zone Information Protocol # # Debian GNU/Linux services rmtcfg 1236/tcp # Gracilis Packeten remote config server xtel 1313/tcp # french minitel cfinger 2003/tcp # GNU Finger postgres 4321/tcp # POSTGRES mandelspawn 9359/udp mandelbrot # network mandelbrot # Local services
/etc/inetd.conf ÆÄÀÏÀº inetd ¼¹öÀÇ ¼³Á¤À» À§ÇÑ ÆÄÀÏÀÌ´Ù. ÀÌ°ÍÀÇ ±â´ÉÀº Ư Á¤ ¼ºñ½º¿¡ ´ëÇÑ Á¢¼Ó¿äûÀÌ µé¾î¿ÔÀ»¶§ ¹«¾ùÀ» ÇؾßÇÏ´ÂÁö¸¦ inetd¿¡°Ô ¾Ë·Á ÁÖ´Â °ÍÀÌ´Ù. ¹Þ¾ÆµéÀ̱⸦ ¿øÇÏ´Â °¢ ¼ºñ½º¿¡ ´ëÇØ inetd¿¡°Ô ¾î¶² ¼¹öµ¥¸ó Àº ¾î¶»°Ô ½ÇÇàÇÒ°Í ÀÎÁö¸¦ ¾Ë·ÁÁÖ¾î¾ß ÇÑ´Ù.
ÀÌ°ÍÀÇ Æ÷¸ËÀº ¸Å¿ì °£´ÜÇÏ´Ù. °¢ ¶óÀÎÀÌ Á¦°øÇÏ°íÇ ¼ºñ½º¸¦ ³ªÅ¸³»ÁÖ´Â Åؽº Æ® ÆÄÀÏÀÌ´Ù. '#' µÚÀÇ ÅؽºÆ®´Â ¹«½ÃµÇ¸ç ÁÖ¼®À¸·Î °£ÁֵȴÙ. °¢ ¶óÀÎÀº °ø¹é À¸·Î(tab ¶Ç´Â space)·Î ±¸ºÐµÇ´Â 7°³ÀÇ Çʵ带 °®´Â´Ù. ÀϹÝÀûÀÎ Æ÷¸ËÀº ´ÙÀ½ °ú °°´Ù.
service socket_type proto flags user server_path server_args
/etc/services ÆÄÀÏ¿¡¼Ã³·³ ¼³Á¤°ú °ü°èµÈ ¼ºñ½ºÀÌ´Ù.
ÀÌ Çʵå´Â ÇØ´ç ¿£Æ®¸®´Ù °ü°èµÈ´Ù°í °£ÁÖÇÒ ¼ÒÄÏÀÇ Å¸ÀÔÀ» ±â¼úÇÑ´Ù. °¡´ÉÇÑ °ªÀº stream, dgram, raw, rdw ¶Ç´Â seqpacketÀÌ´Ù. ÀÌ°ÍÀº ÀÚ¿¬ È÷ ¾à°£ ±â¼úÀûÀε¥, ù°°¡´Â ±ÔÄ¢À¸·Î °ÅÀÇ ¸ðµç tcp ±â¹ÝÀÇ ¼ºñ½º´Â streamÀ» »ç¿ëÇÏ°í °ÅÀÇ ¸ðµç udp ±â¹ÝÀÇ ¼ºñ½º´Â dgramÀ» »ç¿ëÇÑ´Ù. ´Ù¸¥ °ªÀ» »ç¿ëÇϴ°ÍÀº ¸Å¿ì Ưº°ÇÑ ÇüÅÂÀÇ ¼¹öÀ϶§ »ÓÀÌ´Ù.
ÀÌ ¿£Æ®¸®¿¡ À¯È¿ÇÏ´Ù°í °£ÁֵǴ ÇÁ·ÎÅäÄÝ. ÀÌ°ÍÀº /etc/services ÆÄÀÏ ÀÇ ÀûÀýÇÑ ¿£Æ®¸®¿Í ¸ÅÄ¡µÇ¾ß Çϸç ÀüÇüÀûÀ¸·Î tcp ¶Ç´Â udp ÁßÀÇ Çϳª ÀÌ´Ù.Sun RPC(Remote Procedure Call)±â¹ÝÀÇ ¼¹ö´Â rpc/tcp ¶Ç´Â rpc/udp¸¦ »ç¿ëÇÑ´Ù.
ÀÌ Çʵ带 À§ÇÑ ¼¼Æÿ¡´Â µÎ°¡Áö °ª¹Û¿¡ ¾ø´Ù. ÇÁ·Î±×·¥À» ½ÇÇàÇÑµÚ ¼Ò ÄÏÀ» ³õ¾ÆÁÖ¾î ´ÙÀ½ÀÇ Ä¿³Ø¼Ç ¿äû¿¡ ´ëÇØ »õ·Î¿î°ÍÀ» ½ÃÀÛÇÏ°Ô Çϴ³Ä, ¾Æ´Ï¸é ±â´Ù¸®¸ç ´Ù¸¥ ¼¹ö°¡ ÀÌ¹Ì µ¿ÀÛÇÑ´Ù°í °¡Á¤ÇÏ¿© ´ÙÀ½ ÅͳؼÇÀ» ´Ù·ç°Ô ÇÒ°ÍÀ̳ÄÇÏ´Â µÎ°¡ÁöÀÌ´Ù. ¶Ç ÀÌ°ÍÀ» ´Ù·ç´Â °ÍÀº ¾à°£ ¾Ö¸ÅÇÏÁö ¸¸, tcp ¼¹ö´Â ÀÌ ¿£Æ®¸®¸¦ nowaitÀ¸·Î ¼³Á¤ÇÏ°í udp ¼¹ö´Â ÀÌ°ÍÀ» waitÀ¸·Î ¼³Á¤Çϴ°ÍÀÌ Ã¹Â°°¡´Â ·êÀÌ´Ù. ÀÌ°Í¿¡ ¿¹¿Ü°¡ ÀÖÀ½À» ÁÖÀÇÇÏ °í ±×·¯¹Ç·Î È®½ÇÇÏÁö ¾ÊÀ»°æ¿ì ¿¹Á¦ °¡À̵带 Âü°íÇ϶ó.
³×Æ®¿öÅ© µ¥¸óÀÌ ½ÃÀÛÇÒ¶§ /etc/passwdÀÇ ¾î´À °èÁ¤ÀÌ ÀÌ µ¥¸óÀÇ ¼ÒÀ¯ÀÚ °¡ µÉ°ÍÀΰ¡¸¦ ±â¼úÇØÁØ´Ù. ÀÌ°ÍÀº º¸¾È¹®Á¦¿¡ ´ëÇØ º¸¾ÈÀåÄ¡¸¦ ¿øÇÒ¶§ À¯¿ëÇÏ´Ù. ÀÌ ¿£Æ®¸®ÀÇ À¯Àú¸¦ nobody·Î ÇÔÀ¸·Î½á ³×Æ®¿öÅ© ¼¹öÀÇ º¸¾È ÀÌ ±úÁ³À»¶§ ÇÇÇظ¦ ÃÖ¼ÒÈ ÇÒ¼öÀÖ´Ù. ±×·¯³ª ÀÌ Çʵå´Â ÀüÇüÀûÀ¸·Î root·Î ¼³Á¤µÇ´Âµ¥ ¸¹Àº ¼¹ö°¡ ÀûÀýÈ÷ µ¿ÀÛÇϱâ À§Çؼ rootÀÇ ±ÇÇÑÀ» ¿ä±¸Çϱ⠶§¹®ÀÌ´Ù.
ÀÌ ¿£Æ®¸®¿¡ ´ëÇØ ½ÇÇàÇÒ ½ÇÁ¦ ¼¹ö ÇÁ·Î±×·¥ÀÇ °æ·ÎÀÌ´Ù.
ÀÌ Çʵå´Â ¶óÀÎÀÇ ³ª¸ÓÁö ºÎºÐÀ» ÀÌ·ç¸ç ¼±ÅÃÀûÀÌ´Ù. ÀÌ Çʵå´Â ¼¹ö µ¥¸ó ÇÁ·Î±×·¥ÀÌ ½ÇÇàµÉ¶§ ÇÁ·Î±×·¥¿¡ ³Ñ°ÜÁÖ°í½ÍÀº Ä¿¸Çµå ¶óÀÎ º¯¼ö¸¦ ³Ö¾îÁÖ´Â ºÎºÐÀÌ´Ù.
/etc/services ÆÄÀÏ¿¡ °üÇؼ ó·³ ¸ðµç Çö´ëÀÇ ¹èÆ÷º»Àº ÈǸ¢ÇÑ /etc/inetd.co nf ÆÄÀÏÀ» Æ÷ÇÔÇÏ°í ÀÖ´Ù. ¿©±â¿¡ µ¥ºñ¾È ¹èÆ÷º»¿¡ Æ÷ÇԵǾî ÀÖ´Â ¿ÏÀüÇÑ /etc/ inetd.conf ÆÄÀÏÀÇ ¿¹Á¦°¡ ÀÖ´Ù.
# /etc/inetd.conf: see inetd(8) for further informations. # # Internet server configuration database # # # Modified for Debian by Peter Tobias <<url url="mailto:tobias@et-inf.fho-emden.de" name="tobias@et-inf.fho-emden.de">> # # <service_name> <sock_type> <proto> <flags> <user> <server_path> <args> # # Internal services # #echo stream tcp nowait root internal #echo dgram udp wait root internal discard stream tcp nowait root internal discard dgram udp wait root internal daytime stream tcp nowait root internal daytime dgram udp wait root internal #chargen stream tcp nowait root internal #chargen dgram udp wait root internal time stream tcp nowait root internal time dgram udp wait root internal # # These are standard services. # telnet stream tcp nowait root /usr/sbin/tcpd /usr/sbin/in.teln etd ftp stream tcp nowait root /usr/sbin/tcpd /usr/sbin/in.ftpd #fsp dgram udp wait root /usr/sbin/tcpd /usr/sbin/in.fspd # # Shell, login, exec and talk are BSD protocols. # shell stream tcp nowait root /usr/sbin/tcpd /usr/sbin/in.rshd login stream tcp nowait root /usr/sbin/tcpd /usr/sbin/in.rlog ind #exec stream tcp nowait root /usr/sbin/tcpd /usr/sbin/in.rexe cd talk dgram udp wait root /usr/sbin/tcpd /usr/sbin/in.talk d ntalk dgram udp wait root /usr/sbin/tcpd /usr/sbin/in.ntal kd # # Mail, news and uucp services. # smtp stream tcp nowait root /usr/sbin/tcpd /usr/sbin/in.smtp d #nntp stream tcp nowait news /usr/sbin/tcpd /usr/sbin/in.nntp d #uucp stream tcp nowait uucp /usr/sbin/tcpd /usr/lib/uucp/uuc ico #comsat dgram udp wait root /usr/sbin/tcpd /usr/sbin/in.coms at # # Pop et al # #pop-2 stream tcp nowait root /usr/sbin/tcpd /usr/sbin/in.pop2 d #pop-3 stream tcp nowait root /usr/sbin/tcpd /usr/sbin/in.pop3 d # # `cfinger' is for the GNU finger server available for Debian. (NOTE: Th e # current implementation of the `finger' daemon allows it to be run as `r oot'.) # #cfinger stream tcp nowait root /usr/sbin/tcpd /usr/sbin/in.cfin gerd #finger stream tcp nowait root /usr/sbin/tcpd /usr/sbin/in.fing erd #netstat stream tcp nowait nobody /usr/sbin/tcpd /bin/nets tat #systat stream tcp nowait nobody /usr/sbin/tcpd /bin/ps -auwwx # # Tftp service is provided primarily for booting. Most sites # run this only on machines acting as "boot servers." # #tftp dgram udp wait nobody /usr/sbin/tcpd /usr/sbin/in.tftp d #tftp dgram udp wait nobody /usr/sbin/tcpd /usr/sbin/in.tftp d /boot #bootps dgram udp wait root /usr/sbin/bootpd bootpd -i -t 120 # # Kerberos authenticated services (these probably need to be corrected) # #klogin stream tcp nowait root /usr/sbin/tcpd /usr/sbin /in.rlogind -k #eklogin stream tcp nowait root /usr/sbin/tcpd /usr/sbin /in.rlogind -k -x #kshell stream tcp nowait root /usr/sbin/tcpd /usr/sbin /in.rshd -k # # Services run ONLY on the Kerberos server (these probably need to be cor rected) # #krbupdate stream tcp nowait root /usr/sbin/tcpd /usr/sbin /registerd #kpasswd stream tcp nowait root /usr/sbin/tcpd /usr/sbin /kpasswdd # # RPC based services # #mountd/1 dgram rpc/udp wait root /usr/sbin/tcpd /usr/sbin /rpc.mountd #rstatd/1-3 dgram rpc/udp wait root /usr/sbin/tcpd /usr/sbin /rpc.rstatd #rusersd/2-3 dgram rpc/udp wait root /usr/sbin/tcpd /usr/sbin /rpc.rusersd #walld/1 dgram rpc/udp wait root /usr/sbin/tcpd /usr/sbin /rpc.rwalld # # End of inetd.conf. ident stream tcp nowait nobody /usr/sbin/identd i dentd -i
/etc/protocol ÆÄÀÏÀº ÇÁ·ÎÅäÄÝ ³×ÀÓÀ» ÇÁ·ÎÅäÄÝ ¾ÆÀ̵ð·Î ¸ÊÇÎÇØÁÖ´Â µ¥ÀÌÅͺ£ À̽ºÀÌ´Ù. ÀÌ°ÍÀº ÇÁ·Î±×·¡¸Ó°¡ ÇÁ·Î±×·¥ ³»¿¡¼ ÇÁ·ÎÅäÄÝÀ» ³×ÀÓÀ¸·Î ¸í½ÃÇÒ¼ö ÀÖµµ·Ï ÇØÁÖ¸ç tcpdump °°Àº ÇÁ·Î±×·¥ÀÌ Ãâ·ÂÀ» ³Ñ¹ö´ë½Å À̸§À¸·Î Çϵµ·Ï ÇØÁØ ´Ù. ÀÌ ÆÄÀÏÀÇ ÀϹÝÀûÀÎ ½ÅÅýº´Â ´ÙÀ½°ú °°´Ù.
protocolname number aliasesµ¥ºñ¾È ¹èÆ÷º»°ú ÇÔ²² Á¦°øµÇ´Â /etc/protocols ÆÄÀÏÀº ´ÙÀ½°ú °°´Ù.
# /etc/protocols: # $Id: protocols,v 1.1 1995/02/24 01:09:41 imurdock Exp $ # # Internet (IP) protocols # # from: @(#)protocols 5.1 (Berkeley) 4/17/89 # # Updated for NetBSD based on RFC 1340, Assigned Numbers (July 1992). ip 0 IP # internet protocol, pseudo protocol numb er icmp 1 ICMP # internet control message protocol igmp 2 IGMP # Internet Group Management ggp 3 GGP # gateway-gateway protocol ipencap 4 IP-ENCAP # IP encapsulated in IP (officially ``IP '') st 5 ST # ST datagram mode tcp 6 TCP # transmission control protocol egp 8 EGP # exterior gateway protocol pup 12 PUP # PARC universal packet protocol udp 17 UDP # user datagram protocol hmp 20 HMP # host monitoring protocol xns-idp 22 XNS-IDP # Xerox NS IDP rdp 27 RDP # "reliable datagram" protocol iso-tp4 29 ISO-TP4 # ISO Transport Protocol class 4 xtp 36 XTP # Xpress Tranfer Protocol ddp 37 DDP # Datagram Delivery Protocol idpr-cmtp 39 IDPR-CMTP # IDPR Control Message Transport rspf 73 RSPF # Radio Shortest Path First. vmtp 81 VMTP # Versatile Message Transport ospf 89 OSPFIGP # Open Shortest Path First IGP ipip 94 IPIP # Yet Another IP encapsulation encap 98 ENCAP # Yet Another IP encapsulation
/etc/networks ÆÄÀÏÀº /etc/hosts ÆÄÀÏ°ú À¯»çÇÑ ±â´ÉÀ» °¡Áö°í ÀÖ´Ù. ÀÌ°ÍÀº ³×Æ®¿öÅ© ³×ÀÓ¿¡ ´ëÇÑ ¾îµå·¹½º¸¦ Á¦°øÇÏ´Â °£´ÜÇÑ µ¥ÀÌÅͺ£À̽ºÀÌ´Ù. ¶óÀÎ´ç ¿ÀÁ÷ µÎ°³ÀÇ Çʵ带 °®´Â´Ù´Â Á¡¸¸ÀÌ ´Ù¸£¸ç ÀÌ Çʵå´Â ´ÙÀ½°ú °°ÀÌ ÄÚµùµÈ´Ù.
# networkname networkaddress¿¹Á¦´Â ´ÙÀ½°ú °°´Ù:
loopnet 127.0.0.0 localnet 192.168.0.0 amprnet 44.0.0.0route¿Í °°Àº ¸í·ÉÀ» »ç¿ëÇϸé, ¸ñÀûÁö°¡ ³×Æ®¿öÅ©ÀÏ°í ±× ³×Æ®¿öÅ©°¡ /etc/net worksÀÇ ¿£Æ®¸®¿¡ ÀÖÀ»¶§ route ¸í·ÉÀº ¾îµå·¹½º ´ë½Å¿¡ ³×ÀÓÀ» µð½ºÇ÷¹ÀÌ ÇØ ÁÙ°ÍÀÌ´Ù.
¾ÇÀÇÀûÀÎ °ø°Ý¿¡ ´ëÇØ ÀÚ½ÅÀÇ ¸Ó½Å°ú ³×Æ®¿öÅ©¸¦ ÁöÅ°´Â°ÍÀº ¸Å¿ì º¹ÀâÇÑ ±â¼ú À̶ó´Â°ÍÀ» °æ°íÇϸç ÀÌ ºÎºÐÀ» ½ÃÀÛÇÏ°Ú´Ù. ³ª´Â ³ª ÀÚ½ÅÀ» ÀÌ ºÐ¾ßÀÇ Àü¹®°¡ ¶ó°í´Â »ý°¢Áö ¾Ê´Â´Ù. ¶Ç ³»°¡ ±â¼úÇÑ ´ÙÀ½ÀÇ ¸ÞÄ«´ÏÁòÀÌ µµ¿òÀÌ µÈ´Ù ÇÒÁö¶ó µµ º¸¾È¹®Á¦¿¡ ´ëÇØ ½É°¢ÇÏ´Ù¸é ¿©·¯ºÐ ½º½º·Î°¡ ¹®Á¦¿¡ ´ëÇØ ¿¬±¸ÇØ º¼°ÍÀ» Ãß ÃµÇÑ´Ù. ÀÎÅͳݿ¡ °ü·ÃµÈ ¹®¼°¡ ¸¹ÀÌ ÀÖ´Ù.
°¡Àå Áß¿äÇÑ ·êÀº '»ç¿ëÇÏÁö ¾ÊÀº ¼¹ö´Â ¿î¿µÇÏÁö ¸»¶ó!' ÀÌ´Ù. ¸¹Àº ¹èÆ÷ÆÇÀÌ ¸ðµç Á¾·ùÀÇ ¼ºñ½º°¡ ¼³Á¤µÇ°í ÀÚµ¿À¸·Î ½ÃÀÛÇϵµ·Ï µÇ¾îÀÖ´Ù. ÃÖ¼Ò·¹º§ÀÇ ¾È Àü¿¡ ´ëÇؼµµ È®½ÇÇÏ°Ô ÇÏ°í½Í´Ù¸é /etc/inetd.conf¸¦ Àß »ìÆ캸°í »ç¿ëÇÏÁö ¾ÊÀ» ¼ºñ½ºÀÇ ¿£Æ®¸®´Â ¸ðµÎ ÁÖ¼®Ã³¸®Çضó. ÁÁÀº È帰¨(?)µéÀÌ ´ÙÀ½ÀÇ ¼ºñ½º µéÀÌ´Ù.
shell, login, exec, uucp, ftp ±×¸®°í finger, netstat, systat µûÀ§ÀÇ Á¤º¸ ¼ºñ½ºÀÌ´Ù.
±×°÷¿¡´Â ¸ðµç Á¾·ùÀÇ º¸¾È°ú ¾ï¼¼½º ÄÜÆ®·Ñ ¸ÞÄ«´ÏÁòÀÌ ÀÖÀ¸¸ç ³ª´Â ±×µé ´ëºÎ ºÐÀÇ ¿ä¼Ò¿¡ ´ëÇØ ±â¼úÇÒ °ÍÀÌ´Ù.
/etc/ftpusers ÆÄÀÏÀº ƯÁ¤ À¯Àú°¡ ftp¸¦ ÅëÇØ ¸Ó½ÅÀ¸·Î µé¾î¿À´Â °ÍÀ» ¸·¾ÆÁÖ ´Â °£´ÜÇÑ ¸ÞÄ«´ÏÁòÀÌ´Ù. /etc/ftpusers ´Â µé¾î¿À´Â ftp Ä¿³Ø¼ÇÀÌ ÀÖÀ»¶§ ftp µ¥¸ó¿¡ ÀÇÇØ ÀÐÇôÁø´Ù. ÀÌ ÆÄÀÏÀº ·Î±×ÀÎÀÌ Çã¿ëµÇÁö ¾Ê´Â »ç¿ëÀÚµéÀÇ °£~Tg~PA ¸®½ºÆ®ÀÌ´Ù. ÀÌ°ÍÀº ´ÙÀ½°ú °°ÀÌ º¸ÀÏ°ÍÀÌ´Ù.
# /etc/ftpusers - ftp ·Î±×ÀÎÀÌ Çã¿ë¾ÈµÇ´Â À¯Àúµé. root uucp bin mail
/etc/securetty´Â root ÀÇ ·Î±×ÀÎÀÌ Çã¿ëµÇ´Â tty µð¹ÙÀ̽º¸¦ ¸í½ÃÇϵµ·Ï ÇØÁØ ´Ù. /etc/securetty ÇÁ·Î±×·¥Àº login ÇÁ·Î±×·¥(ÈçÈ÷ /bin/login)¿¡ ÀÇÇØ ÀÐÇô Áø´Ù. ÀÌ°ÍÀÇ Æ÷¸ËÀº rootÀÇ ·Î±×ÀÎÀÌ Çã¿ëµÇ´Â tty µð¹ÙÀ̽ºÀÇ ¸®½ºÆ®ÀÌ´Ù. (ÀÌ¿ÜÀÇ tty¿¡¼´Â root login ºÒ°¡)
#/etc/securetty - tty's on which root is allowed to login tty1 tty2 tty3 tty4
/etc/inetd.conf¿¡ ¸®½ºÆ® µÈ°ÍÀ» º¸¾ÒÀ» tcpd ÇÁ·Î±×·¥Àº º¸È£Çϵµ·Ï ¼³Á¤µÈ ¼ºñ½ºÀÇ ·Î±×Àΰú ¾ï¼¼½º ÄÜÆ®·Ñ ¸ÞÄ«´ÏÁòÀ» Á¦°øÇÑ´Ù. ÀÌ°ÍÀÌ inetd ÇÁ·Î±×·¥¿¡ ÀÇÇØ È£ÃâµÇ¾úÀ»¶§, ÀÌ°ÍÀº ¾ï¼¼½º¸¦°ú ÀûÀýÈ÷ º¸È£ÇÏ °í ÀÖ´Â ¼¹ö¸¦ Çã¿ëÇÒÁö ¾Æ´ÒÁö¸¦ Æ÷ÇÔÇÏ°í ÀÖ´Â µÎ°³ÀÇ ÆÄÀÏÀ» Àд´Ù.
ÀÌ°ÍÀº ù¹ø° ¸ÅÄ¡(match)°¡ ¹ß°ßµÉ¶§ ±îÁö ·ê ÆÄÀÏÀ» ãÀ»°ÍÀÌ´Ù. ¸ÅÄ¡°¡ ¹ß °ß µÇÁö ¾ÊÀ¸¸é ¾ï¼¼½º°¡ ´©±¸¿¡°Ô³ª °¡´ÉÇÑ°ÍÀ¸·Î °£ÁÖÇÑ´Ù. ÀÌ°ÍÀÌ Ã£´Â ÆÄÀÏ Àº ¼ø¼´ë·Î /etc/hosts.allow /etc/hosts.deny ÀÌ´Ù. ³ª´Â ÀÌ°ÍÀ» Â÷·Ê·Î ¾ð±Þ ÇÏ°Ú´Ù. ÀÌ ±â¼úÀÇ ¿Ïº®ÇÑ Âü°í¸¦ À§Çؼ ¿©·¯ºÐÀº ¸ÇÆäÀÌÁö¸¦ Âü°íÇؾßÇÒ ÇÊ¿ä °¡ ÀÖ´Ù. (hosts_access(5)´Â ÁÁÀº Ãâ¹ßÁ¡ÀÌ µÈ´Ù.).
/etc/hosts.allow ÆÄÀÏÀº /usr/sbin/tcpd ÇÁ·Î±×·¥ÀÇ ¼³Á¤ÆÄÀÏÀÌ´Ù. hosts.allo w ÆÄÀÏÀº ¾î¶² È£½ºÆ®°¡ ¿©·¯ºÐ ¸Ó½Å»óÀÇ ¼ºñ½º¿¡ Çã¿ëµÇ´ÂÁö¸¦ ±â¼úÇÏ´Â ·êÀ» Æ÷ÇÔÇÏ´Â ÆÄÀÏÀÌ´Ù.
ÆÄÀÏÀÇ Æ÷¸ËÀº ¸Å¿ì °£´ÜÇÏ´Ù.
# /etc/hosts.allow # #<service list>: <host list> [: commnad]
ÀÌ ·êÀÌ Àû¿ëµÇ´Â ¼¹ö³×ÀÓÀÇ °áÁ¤µÈ ¸®½ºÆ®ÀÇ ±âÈ£ÀÌ´Ù. ¼¹ö³×ÀÓÀÇ ¿¹´Â ´ÙÀ½°ú °°´Ù: ftpd, telnetd, fingerd
È£½ºÆ® ³×ÀÓÀÇ °áÁ¤µÈ ¸®½ºÆ®ÀÇ ±âÈ£ÀÌ´Ù. ¿©±â¿¡ IP ¾îµå·¹½º¸¦ »ç¿ëÇÒ ¼öµµ ÀÖ´Ù. °Ô´Ù°¡ ±×·ìÀÇ È£½ºÆ®¸¦ ÀÌ¿ëÇϵµ·Ï È£½ºÆ®³ª IP ¾îµå·¹½º¿¡ ¿ÍÀϵå Ä«µå¸¦ ÀÌ¿ëÇÏ¿© ¸í½ÃÇÒ¼öµµ ÀÖ´Ù. ¿¹¸¦ º¸ÀÚ: gw.vk2ktj.ampr.o rg´Â ¸í½ÃµÈ È£½ºÆ® ³×ÀÓ°ú ¸ÅÄ¡µÇ°í, .uts.edu.au ´Â ÀÌ ½ºÆ®¸µÀ¸·Î ³¡³ª´Â ¾î¶² È£½ºÆ®³×ÀÓ°úµµ ¸ÅÄ¡µÉ°ÍÀ̸ç, 44. Àº ÀÌ°ÍÀ¸·Î ½ÃÀÛÇÏ´Â ¸ðµç IP¿Í ¸ÅÄ¡µÉ°ÍÀÌ´Ù. ¼³Á¤Àº °£´ÜÇÏ°Ô ÇϱâÀ§ÇÑ ¸î°¡Áö Ưº°ÇÑ Ç¥½Ã °¡ Àִµ¥, À̵éÁß ¸î°¡Áö´Â ´ÙÀ½°ú °°´Ù: ALLÀº ¸ðµç È£½ºÆ®¿Í ¸ÅÄ¡µÇ ¸ç, LOCALÀº '.'À» Æ÷ÇÔÇÏÁö ¾Ê´Â ¸ðµç È£½ºÆ®¿Í ¸ÅÄ¡µÈ´Ù. PARANOID´Â IP ¾îµå·¹½º¿Í ÀÏÄ¡ÇÏÁö ¾Ê´Â ¸ðµç È£½ºÆ®³×ÀÓ°ú ¸ÅÄ¡µÈ´Ù(name spoofi ng). ¸¶Áö¸·À¸·Î À¯¿ëÇÑ ÅäÅ«ÀÌ Çϳª ´õ ÀÖ´Ù. EXCEPT´Â ¿¹¿Ü¸¦ °®´Â ¸®½ºÆ®¸¦ Á¦°øÇÏ´Â °ÍÀ» Çã¿ëÇÒ°ÍÀÌ´Ù.
ÀÌ°ÍÀº ¿É¼Ç ÆĶó¸ÞÅÍÀÌ´Ù. ÀÌ°ÍÀº ÀÌ ·êÀÌ Àû¿ëµÉ¶§¸¶´Ù ½ÇÇàµÇ´Â ¸í·É ÀÇ Ç® Æнº³×ÀÓÀÌ´Ù. ÀÌ°ÍÀº ¿¹·Î½á È£½ºÆ®¿¡ ´©°¡ ·Î±×ÀÎÇߴ°¡¸¦ ±¸ º°ÇÏ´Â ¸í·ÉÀ» ½ÃµµÇÒ¼öµµ ÀÖ°í, ¶Ç´Â ´©±º°¡ Á¢¼ÓÀ» ½ÃµµÇÑ´Ù°í ½Ã½ºÅÛ °ü¸®ÀÚ¿¡°Ô ¸ÞÀÏÀ» º¸³»°Å³ª °æ°í¸Þ¼¼Áö¸¦ º¸³¾¼öµµ ÀÖ´Ù. ¸î°¡Áö Æ÷ÇÔ µÉ¼öÀÖ´Â È®Àå¸í·ÉÀÌ Àִµ¥, ¸î°¡Áö ÈçÇÑ ¿¹¸¦ º¸¸é: %h´Â Ä¿³ØÆà ȣ½º Æ®ÀÇ ³×ÀÓ ¶Ç´Â ³×ÀÓÀÌ ¾Æ´Ï¶ó¸é IP ¾îµå·¹½º¸¦ Ȯ¡Çϸç, %d´Â È£ÃâµÇ ´Â µ¥¸óÀÇ ³×ÀÓÀ» È®ÀåÇÑ´Ù.
#/etc/hosts.allow # # Allow mail to anyone in.smtpd: ALL # All telnet and ftp to only hosts within my domain and my host at home. telnetd, ftpd: LOCAL, myhost.athome.org.au # Allow finger anyone but keep a record of who they are. fingerd: ALL: (finger @%h | mail -s "finger from %h" root)
/etc/hosts.deny ÆÄÀÏÀº /usr/sbin/tcpd ÇÁ·Î±×·¥ÀÇ ¼³Á¤ÆÄÀÏÀÌ´Ù. hosts.deny ÆÄÀÏÀº ¿©·¯ºÐ ¸Ó½Å»óÀÇ ¼ºñ½º¿¡ ¾ï¼¼½º°¡ Çã¿ëµÇÁö ¾Ê´Â È£½ºÆ®¸¦ ±â·ÏÇÏ´Â ·êÀ» Æ÷ÇÔÇÑ´Ù.
´ÙÀ½°ú °°Àº °£´ÜÇÑ »ùÇÃÀ» º¼¼öÀÖ´Ù.
# /etc/hosts.deny # Disallow all hosts with suspect hostnames ALL: PARANOID # # Disallow all hosts. ALL: ALLÀÌ°æ¿ì ´ÙÀ½ÀÇ ¿£Æ®¸®°¡ ¸ðµç È£½ºÆ®¸¦ ¸·À¸¹Ç·Î PARANOID ¿£Æ®¸®´Â ¹«ÀǹÌÇÑ °ÍÀÌ´Ù. ÀÌÁß ÇϳªÀÇ ¿£Æ®¸®°¡ ¿©·¯ºÐÀÇ ¿ä±¸¿¡ µû¶ó ÇÕ¸®ÀûÀÎ µðÆúÆ®°¡ µÉ°ÍÀÌ ´Ù.
/etc/hosts.deny¿¡ ALL: ALL µðÆúÆ®¸¦ °®°í /etc/hosts.allow¿¡ ¿øÇÏ´Â ¼ºñ½º ¿Í È£½ºÆ®¸¦ ¸í½ÃÇϴ°ÍÀÌ °¡Àå ¾ÈÀüÇÑ ¼³Á¤ÀÌ´Ù.
hosts.equiv ÆÄÀÏÀº ƯÁ¤ È£½ºÆ®¿Í ƯÁ¤ À¯Àú¿¡°Ô Æнº¿öµå¾øÀÌ ¿©·¯ºÐ ¸Ó½Å»ó ÀÇ °èÁ¤¿¡ ¾ï¼¼½º ±ÇÇÑÀ» ÁÖ±âÀ§ÇØ »ç¿ëµÈ´Ù. ÀÌ°ÍÀº ¿©·¯ºÐÀÌ ¸ðµç ¸Ó½ÅÀ» Á¦ ¾îÇÒ¼ö ÀÖ´Â ¾ÈÀüÇÑ È¯°æ¿¡¼´Â ¸Å¿ì Æí¸®Çϳª, ±×·¸Áö ¾ÊÀº °æ¿ì º¸¾È»óÀÇ Çê Á¡ÀÌ µÈ´Ù. ¿©·¯ºÐÀÇ È£½ºÆ®´Â °¡Àå Àû°Ô ½ÅÀӹ޴ ȣ½ºÆ®¸¸Å¸¸ ¾ÈÀüÇÒ»ÓÀÌ´Ù. º¸¾ÈÀ» ÃÖ´ëÈÇϱâ À§Çؼ´Â ÀÌ ÆÄÀÏÀ» »ç¿ëÇÏÁö ¸»°í »ç¿ëÀڵ鵵 .rhosts ÆÄÀÏ À» »ç¿ëÇÏÁö ¾Êµµ·Ï ÁÖÀǸ¦ ÁÖ¾î¶ó.
¸¹Àº »çÀÌÆ®µéÀÌ »ç¶÷µé·Î ÇÏ¿©±Ý ƯÁ¤ ¾ÆÀ̵𸦠¿ä±¸ÇÏÁö ¾Ê°í ÆÄÀÏÀ» ¾÷ ¶Ç´Â ´Ù¿î·Îµå ÇÒ¼öÀÖµµ·Ï À͸í ftp¸¦ ¿î¿µÇϴµ¥ °ü½ÉÀ» µÎ°í ÀÖ´Ù. ÀÌ°ÍÀ» Á¦°øÇÏ ±â·Î °áÁ¤Çß´Ù¸é anonymous ¾ï¼¼½º¿¡ ´ëÇØ ÀûÀýÇÑ ¼³Á¤À» ÇØÁÖ¾ú´ÂÁö¸¦ È®ÀÎÇÏ ¿©¶ó. ´ëºÎºÐÀÇ fptd(8) ¸ÇÆäÀÌÁö°¡ ÀÌ°Í¿¡ °üÇØ Àû´çÈ÷ ±â¼úÇÏ°í ÀÖ´Ù. ¿©·¯ºÐ Àº Ç×»ó ÀÌ ÁÖÀǸ¦ µû¸£°í ÀÖ´ÂÁö È®ÀÎÇØ¾ß ÇÑ´Ù. °¡Àå Áß¿äÇÑ ÆÁÀº anonymous °èÁ¤ÀÇ /etc µð·ºÅ丮¿¡ /etc/passwdÀÇ º¹»çº»À» »ç¿ëÇÏÁö ¾Ê´Â°ÍÀÌ´Ù. ¹Ýµå½Ã ÇÊ¿äÇÑ °èÁ¤À» Á¦¿ÜÇÏ°í´Â ¸ðµÎ ¾ø¾Ö¹ö¸®µµ·Ï Çضó. ±×·¸Áö ¾ÊÀ¸¸é ¿©·¯ºÐÀº ÆÐ ½º¿öµå Å©·¢Å·°ø°Ý¿¡ ´ëÇØ ¸¹Àº ¾àÁ¡À» Áö´Ï°Ô µÉ°ÍÀÌ´Ù.
µ¥ÀÌÅͱ׷¥À» ¿©·¯ºÐÀÇ ¼¹ö³ª ¸Ó½Å¿¡ µµ´ÞÇÏÁö ¸øÇÏ°Ô Çϴ°ÍÀº ¶Ù¾î³ º¸¾È¼ö ´ÜÀÌ´Ù. ÀÌ°Í¿¡ °üÇÑ ÀÚ¼¼ÇÑ ³»¿ëÀº firewall-howto¿¡¼ ´Ù·ç¾îÁø´Ù.
¿©±â¿¡ ´Ù¸¥, ÀáÀçÀûÀ¸·Î ¿©·¯ºÐÀÌ ¼¼½ÉÈ÷ °í·ÁÇغÁ¾ß ÇÒ Á¦¾ÈÀÌ ÀÖ´Ù.
±×°ÍÀÇ ´ëÁß¼º¿¡µµ ºÒ±¸ÇÏ°í ¼¾µå¸ÞÀÏ µ¥¸óÀº º¸¾È °æ°í °ø°í¿¡ ´ëÇØ »ó ´çÈ÷ µÎ·Á¿öÇÏ´Â °Íó·³ º¸ÀδÙ. ±×°ÍÀº ¿©·¯ºÐ¿¡°Ô ´Þ·ÈÁö¸¸, ³ª¶ó¸é ¼¾µå¸ÞÀÏÀ» ¿î¿µÇÏÁö ¾Ê°Ú´Ù.
ÀÌ°ÍÀ» °æ°èÇ϶ó. ÀÌ ¼ºñ½º¿¡´Â ¸ðµç Á¾·ùÀÇ exploitÀÌ ÀÖ´Ù. NFS °°Àº ¼ºñ½º ¿É¼ÇÀ» ¹ß°ßÇÑ´Ù´Â °ÍÀº »ó´çÈ÷ ¾î·Æ´Ù. ±×·¯³ª ¿©·¯ºÐÀÌ ±×°ÍÀ» ¼³Á¤ÇÑ´Ù¸é ¸¶¿îÆ®ÇÒ ±Ç¸®¸¦ ´©±¸¿¡°Ô ºÎ¿©Çϴ°¡¿¡ ´ëÇØ ½ÅÁßÇ϶ó.