English
¢¸¢· µÚ·Î
Ãë¾àÁ¡ID 13006
À§Çèµµ 30
Æ÷Æ®
ÇÁ·ÎÅäÄÝ IP
ºÐ·ù Protocol
»ó¼¼¼³¸í ÇØ´ç È£½ºÆ®¿¡ IP forwarding ±â´ÉÀÌ ÀÛµ¿µÇ°í ÀÖ´Ù.
IP ÀçÀü¼Û ±â´É(forwarding)Àº IP ÀçÀü¼Û ±â´ÉÀÌ ÀÛµ¿µÇ´Â ¾î¶² È£½ºÆ®¸¦ ÅëÇØ ´Ù¸¥ È£½ºÆ®·Î ÆÐŶµéÀ» ÀçÀü¼ÛÇØ ÁÖ´Â ¶ó¿ìÅÍ(router)ÀÇ ¿ªÇÒÀ» ÇÏ°Ô ÇØ ÁÖ´Â ±â´ÉÀÌ´Ù. ¸¸¾à ¸ñÇ¥ È£½ºÆ®°¡ ¹æÈ­º®ÀÇ ¿ªÇÒÀ» Çϰí ÀÖ´Ù¸é ÇÊÈ÷ IP ÀçÀü¼Û ±â´ÉÀ» ÀÛµ¿ÁßÁö ½ÃÄÑ¾ß ÇÑ´Ù. ±×·¸Áö ¾ÊÀ¸¸é °ø°ÝÀÚ´Â ´ë»ó È£½ºÆ®¸¦ ÅëÇØ ´ë»ó È£½ºÆ® µÞ´Ü¿¡ ÀÖ´Â ½Ã½ºÅÛµéÀ» Á÷Á¢ ¾×¼¼½ºÇÒ ¼ö ÀÖµµ·Ï °£´ÜÇÏ°Ô ¶ó¿ìÆ®ÇÒ ¼ö ÀÖ´Ù.

* Âü°í »çÀÌÆ®:
http://www.iss.net/security_center/static/193.php

* ¿µÇâÀ» ¹Þ´Â Ç÷§Æû:
Microsoft Windows Any version
Linux Any version
Unix Any version
ÇØ°áÃ¥ ¸¸¾à ÇØ´ç È£½ºÆ®°¡ °ÔÀÌÆ®¿þÀÌÀÇ ¿ªÇÒÀ» ÇÏÁö ¾Ê´Â´Ù¸é IP ÀçÀü¼Û (forwarding) ±â´ÉÀ» ÀÛµ¿ÁßÁö ½ÃÄÑ¾ß ÇÑ´Ù.

À©µµ¿ìÁî¿¡¼­ IP ForwardingÀ» ÁßÁö½Ã۱â À§Çؼ­´Â:

1. ·¹Áö½ºÆ®¸® ÆíÁý±â(Regedt32.exe)¸¦ »ç¿ëÇÏ¿© ´ÙÀ½°ú °°Àº ۸¦ ã´Â´Ù:
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters

2. ´ÙÀ½°ú °°ÀÌ ·¹Áö½ºÆ®¸® °ªÀ» ¼³Á¤ÇÑ´Ù:
Value Name: IPEnableRouter
Value type: REG_DWORD
Value Data: 0

3. ½Ã½ºÅÛÀ» ¸®ºÎÆÃÇÑ´Ù.

Solaris ¿¡¼­ IP ForwardingÀ» ÁßÁö½Ã۱â À§Çؼ­´Â:

# ndd /dev/ip ip_forwarding
1
# ndd -set /dev/ip ip_forwarding 0
# ndd /dev/ip ip_forwarding
0

AIX ¿¡¼­ IP ForwardingÀ» ÁßÁö½Ã۱â À§Çؼ­´Â:

# no -o ipforwarding
ipforwarding = 1
# no -o ipforwarding=0
# no -o ipforwarding
ipforwarding = 0

HP-UX ¿¡¼­ IP ForwardingÀ» ÁßÁö½Ã۱â À§Çؼ­´Â:

1. '/etc/conf/netinet/ip_var.h' ÆÄÀÏÀ» ÆíÁýÇÑ´Ù.
2. '#define IPFORWARDING 1' ¶óÀÎÀ¸·Î À̵¿ÇÑ´Ù.
3. '1'À» '0'À¸·Î ¼öÁ¤ÇÑ´Ù.
4. /stand/build µð·ºÅ丮¿¡¼­ Ä¿³ÎÀ» ('make' ¸í·É¾î¸¦ ÀÌ¿ëÇÏ¿©) ´Ù½Ã ÄÄÆÄÀÏÇÑ´Ù. ±×¸®°í³ª¼­ ¸®ºÎÆÃÇÑ´Ù.
°ü·Ã URL CVE-1999-0511 (CVE)
°ü·Ã URL (SecurityFocus)
°ü·Ã URL (ISS)