The Answer Guy  

By James T. Dennis, answerguy@ssc.com
LinuxCare, http://www.linuxcare.com/

 

     

1. ·¹µåÇÞ¿¡ POP µ¥¸ó ¼³Ä¡Çϱâ

    ³ª´Â ÃÖ±Ù¿¡ ·¹µåÇÞ 6.0°ú 6.1À» °¢°¢ µÎ ½Ã½ºÅÛ¿¡ ¼³Ä¡ÇßÁÒ. ´Ù¸¥ °Ç ÀߵǴµ¥ »ç¿ëÀÚ°¡ Netscape Mail À̳ª  MS Outlook Express ¿¡¼­ µÎ È£½ºÆ®ÀÇ ¸ÞÀÏÀ» °¡Á®¿Ã ¼ö°¡ ¾ø³×¿ä. ¹°·Ð telnet À¸·Î µé¾î°¡ pineÀ» ¾²¸é µÇÁö¸¸ ¾Æ¹«·¡µµ POP3 µ¥¸óÀÌ ÀÛµ¿ÇÏÁö ¾Ê´Â °Í °°±º¿ä.

    ¾î¶² Ä£±¸°¡ POP3µ¥¸óÀ» IMAP ÆÐÅ°Áö¿¡¼­ ¹ÞÀ» ¼ö ÀÖ´Ù°í ¸»ÇÑ´Ù. ±×·¯³ª ³ª´Â ±×°Ô ¾îµð ÀÖ´ÂÁö ¾î¶»°Ô ÇÏ´ÂÁö ¸ð¸¥´Ù.  ³ª¸¦ µµ¿ï ¼ö Àִ°¡?

    POP3 µ¥¸óÀÌ ¼³Ä¡µÇ¾ú´ÂÁö ¶Ç ÀÛµ¿ÇÏ´ÂÁö¸¦ ¾î¶»°Ô ¾ËÁö¿ä? ¾îµð¼­ IMAP ÆÐÅ°Áö¸¦ ±¸ÇÒ ¼ö ÀÖ°í POP3 µ¥¸óÀ» »©³» ¼³Ä¡ÇÏ°í ÀÛµ¿ÇÏÁö¿ä? ¾Æ´Ï¸é ´Ù¸¥ ¹æ¹ýÀ̶óµµ..

    µµ¿ÍÁֽøé Á¤¸» °¨»ç..
    Hongwei Li

    ´ç½ÅÀÇ ¡°¾î¶² Ä£±¸¡±´Â Àß ¾Æ´Â ³à¼® °°³×¿ä.
    ±× »ç¶÷ ¸»À» Àß µéÀ¸¼¼¿ä.

    ±×·¯³ª Á¶±Ý ´õ ¹è¿ö¾ß°ÚÁö¿ä.

    - ±× Ä£±¸°¡ óÀ½ÀÇ Ãæ°í¸¦ º¸³ÂÁö¸¸ º¸´Ù ÀÚ¼¼È÷ ¹°¾îµµ ´ë´äÀÌ ¾ø³×¿ä.
       ´ç½Å µµ¿òÀÌ ¾ø´Ù¸é ´õ ÀÌ»ó ³ª°¥ ¼ö°¡ ¾ø±º¿ä.

    ·¹µåÇÞÀº ÀÌÀ¯´Â ¾Ë ¼ö ¾øÁö¸¸ POP¿Í IMAP µ¥¸óÀ» °°Àº ÆÄÀÏ¿¡ ³Ö¾úÁö¿ä. ¾Æ·¡ ÀýÂ÷¸¦ °ÅÃÄ ¼³Ä¡°¡ °¡´ÉÇÕ´Ï´Ù.

    1) ·¹µåÇÞ CD(1¹ø?)¸¦ ¸¶¿îÆ®ÇÕ´Ï´Ù.

        mount /mnt/cdrom

    2) RPM µð·ºÅ丮·Î °©´Ï´Ù.

        cd /mnt/cdrom/Redhat/RPMS

    3) imap....rpm ÆÐÅ°Áö¸¦ ¼³Ä¡Çϼ¼¿ä.

        rpm -Uvh imap*

        rpm -Uvh imap-4.5.3.i386.rpm (RH 6.0 system)

    È­¸éÀÌ ¾Æ·¡Ã³·³ º¸ÀÔ´Ï´Ù.

       imap ##....#

    ¾Æ·¡Ã³·³ Çصµ µË´Ï´Ù.

       rpm -i imap*

    ÀÌ°Ô ±âº»ÀûÀ¸·Î ÇÊ¿äÇÑ ÀüºÎÁÒ. POP ¼³Ä¡/»ç¿ë °¡´É ¿©ºÎ¸¦ ¾Æ·¡ ¸í·ÉÀ¸·Î Å×½ºÆ®ÇÕ´Ï´Ù.

       telnet $TARGET 110

    $TARGET ´Â POP ¼­¹ö¸¦ Å×½ºÆ®ÇÒ È£½ºÆ®ÀÇ È£½ºÆ®³×ÀÓÀ̳ª IP ÁÖ¼ÒÀÔ´Ï´Ù.

    ¸¸¾à ¡°connection refused¡± ¶Ç´Â ¡°connection closed by remote host¡± ¸Þ½ÃÁö¸¦ ¹ÞÀ¸¸é $TARGET¿¡  POPÀ» ¹Ù¸£°Ô ¼³Ä¡ÇÏÁö ¸øÇÑ °Ì´Ï´Ù.
    (¶Ç´Â ´ç½ÅÀº ÆÄÀ̾î¿ùÀ̳ª ÆÐŶÇÊÅÍ, ȤÀº /etc/hosts.deny ÆÄÀÏ ¼³Á¤ÀÌ ÀÖ½À´Ï´Ù.)

    ¾Æ·¡Ã³·³ ÇßÁö¿ä.

    Elyback ¹× ´Ù¸¥ ¸®´ª½º¿¡¼­ telnet elyback.wustl.edu 110 ¸í·ÉÀ» ÇßÀ¸³ª ¾Æ·¡Ã³·³ ³ª¿Ô½À´Ï´Ù.

       Trying 128.252.85.78...

       telnet: Unable to connect to remote host:
       Connection refused

    ´ç½ÅÀº º¸´Ù ±âº»ÀûÀÎ ³×Æ®¿öÅ© ¼³Á¤¿¡ ¹®Á¦°¡ ÀÖ´Ù. IP ÁÖ¼Ò¿Í ¶ó¿ìÆà Å×ÀÌºí ¼³Á¤ÀÌ ¿Ã¹Ù¸¥°¡?

    ½Ã½ºÅÛÀ» ¸®ºÎÆÃÇß´Ù.(±×·² ÇÊ¿ä´Â ¾øÁö¸¸ ´Ù¸¥ ¸í·ÉÀÌ °¡´ÉÇÑ°¡?) ´Ù½Ã À§ ¸í·ÉÀ» ÁÖ¾úÁö¸¸ °°Àº °á°ú¿´´Ù. /etc/services ÆÄÀÏÀ» Á¡°ËÇß´Ù. ¾Æ·¡¿Í °°¾Ò´Ù.
     

    pop-3    110/tcp        # POP version 3
    pop-3    110/udp

 

    /etc/hosts.deny ÆÄÀÏÀº ºñ¾î ÀÖ´Ù. ¿ì¸®´Â ÆÄÀ̾î¿ùµµ ¾ø´Ù.

    ±×·¸°Ô Á¡°ËÇß´Ù¸é Àß ÇÑ °ÍÀÌ´Ù. ¹°·Ð /etc/hosts.allow ¿¡ Á¢±Ù°ÅºÎ¸¦ ³ÖÀ» ¼öµµ ÀÖ´Ù. (¹°·Ð ¹Ý´ëµµ µÈ´Ù)
    ³ª´Â Wietse¿¡°Ô µÎ°³ÀÇ ÆÄÀÏ¿¡ ³Ö´Â °Íº¸´Ù À¯Æ¿¸®Æ¼ÀÇ À̸§À» µý /etc/tcpd.conf¸¦ »ç¿ëÇ϶ó°í ±ÇÇß´Ù.

    /etc/hposts ¿¡ ÀûÀýÇÑ ³»¿ëÀÌ µé¾î°¬´ÂÁö¸¦ È®ÀÎÇ϶ó. ³ªÀÇ FAQ³ª ¸®´ª½º°¡Á¦Æ® ¿¡¼­ ¾Æ·¡ ½ºÆ®¸µÀ» Ž»öÇ϶ó.

       ¡°double reverse lookup¡±

    ... ¿Ö ÀÌ°Ô ÇÊ¿äÇÑÁö´Â ¸Å¿ì ±ä ¼³¸íÀÌ ÇÊ¿äÇÏ´Ù.

    (³ªÀÇ Ã¹ ¹ø ÃßÃøÀº ´ç½ÅÀÌ Àû´çÇÑ /etc/hosts³ª DNS PTR ·¹Äڵ带 °®°í ÀÖÁö ¾Ê´Ù´Â °ÍÀ̾ú´Ù. ±×¸®°í ´ç½ÅÀÇ TCP Wrapper´Â DPARANOID ¿É¼ÇÀ» ³Ö¾î ÄÄÆÄÀϵǾú°Å³ª /etc/hosts.allow °¡ PARANOID ¿É¼ÇÀ» °¡Áö°í ÀÖ´Ù´Â °ÍÀ̾ú´Ù.)

    pop3 µ¥¸óÀÌ ¾ÆÁ÷µµ ÀÛµ¿ÇÏÁö ¾Ê´Â °Í °°´Ù. À§ÀÇ  ÀýÂ÷¸¦ ´Ù °ÅÃƴµ¥µµ ´Ù¸¥ ¹æ¹ýÀÌ ¾ø³ª¿ä?
    ´Ù¸¥ Á¶¾ðÀÌ ÀÖÀ¸¸é ÁÖ¼¼¿ä.

       Hongwei

    °¡Àå ºü¸¥ ±æÀº Linuxcare¡¯s ±â¼ú Áö¿ø¿¡ ÀüÈ­ÇÏ´Â °ÍÀÌ´Ù. ±×·¯³ª ¹«·á°¡ ¾Æ´Ï´Ù. ³»°¡ ´äÀ» ÁÙ ¼ö ÀÖÀ» Á¤µµ·Î ¸¹Àº Á¤º¸¸¦ ÁÖ¾î¾ß ÇÑ´Ù. ±×·¯³ª ¿À·£ ½Ã°£ÀÌ °É¸°´Ù. ºü¸¥ ´äÀ» ±â´ëÇÑ´Ù¸é ¾Æ·¡ ¸í·ÉÀÇ °á°ú¸¦ ÇÊ¿ä·Î ÇÑ´Ù.
     

    script /tmp/answerguy.capture
    ifconfig -a
    route -n
    netstat -an --inet | grep LISTEN
    tail /var/log/messages
    exit
    cd /tmp
    col -b < answerguy.capture  > answerguy.txt

 

    Á¤È®È÷ ½ÇÇàÇß´Ù¸é ¾Æ·¡ ¸Þ½ÃÁö°¡ ³ª¿Â´Ù.
    ¡°Script done, file is /tmp/answerguy.capture¡±
    ±×¸®°í /tmp/answerguy.txt ¿¡ ±ú²ýÇÑ °á°ú¸¦ ±â´ëÇÒ ¼ö ÀÖ´Ù.
    (¡®script¡¯ ¶Ç´Â ¡°typescript¡± ¸í·ÉÀº ¸í·É ½ÇÇà ³»¿ë ¹× °á°ú¸¦ ÆÄÀÏ¿¡ ÀúÀåÇÑ´Ù. col -b ¸í·ÉÀº ¹é½ºÆäÀ̽º³ª ´Ù¸¥ ÄÜÆ®·Ñ ¹®ÀÚ¸¦ Á¦°ÅÇÑ´Ù. ´Ù¸¥ ÆÄÀÏÀº Áø´Ü°ú Á¤º¸ ¼öÁý¿ëÀÌ´Ù. ŸÀÌÇÁ½ºÅ©¸³Æ®¸¦ ³¡³»·Á¸é exit ¸í·ÉÀ» ÁÖ¶ó)

    µÎ ½Ã½ºÅÛÀÌ ¼­·Î pingÀÌ µÇ´Â°¡ º¸¶ó. ¾Æ·¡ ¸í·ÉÀ» POP ¼­ºñ½º¸¦ Á¢±ÙÇÏ·Á°í ½ÃµµÇÏ´Â ¼­¹ö¿¡ ÁÖ¶ó.

      tcpdump -n

    ´ç½ÅÀº ¿¬°á ½Ãµµ°¡ ÀÖÀ» ¶§ÀÇ tcpdump°¡ º¸´Â ÆÐŶ Çì´õ¸¦ º¼ ¼ö ÀÖ´Ù.

    ¹°·Ð ´ç½ÅÀº ³×Æ®´º½º¿¡ °Ô½ÃÇÒ ¼ö ÀÖ´Ù(comp.os.linux.networking).
    ¶Ç´Â,  L.U.S.T.(Linux Users Support Team)¿¡ °¡ÀÔÇصµ µÈ´Ù.

    L.U.S.T. Home Page:   http://www.ch4549.org/lust

    ´Ù¸¥ Áö¿ø¿¡ °üÇؼ­´Â
     

    Netpedia Linux: Support http://smalllinux.netpedia.net/links/support.html

 

    Tim Moss ´Â /etc/inetd.conf ÀÇ pop-3¸¦ ¸¶Å©¸¦ ÇØÁ¦Ç϶ó°í Çß´Ù. ÇöÀç´Â ·¹µåÇÞÀº ¸·Çô ÀÖ´Ù.

      Hongwei wrote:

    ¹°·Ð ³ª´Â ¡°check your inetd.conf¡±¸¦ °Ë»çÇß´Ù. ³ª´Â ·¹µåÇÞÀÇ µðÆúÆ® /etc/inetd.conf¿¡ ´ëÇØ »ó¹ÝµÈ ´À³¦À» °®´Â´Ù. ¹°·Ð º¸´Ù ³ªÀº º¸¾È¿¡ ±â¿©ÇÏÁö¸¸ ¹Ù¸¥ ±æ·ÎÀÇ º¯È­°¡ ¸¹Àº ±â¼úÁö¿ø¿äûÀ» °¡Á®¿Â´Ù.

    (ÀÌÇÏ »ý·«)

     

2.  ProxyARP

    From Jinquan Luo on Mon, 31 Jan 2000

    ³ª´Â ¸®´ª½º(Red Hat 6.1)¿¡¼­ ARP ¸í·ÉÀ¸·Î Proxy ARP ¸¦ ¼Â¾÷ÇÏ·Á°í ³ë·ÂÇß´Ù. ±×·¯³ª ÀÛµ¿ÇÏÁö ¾Ê´Â °Í °°´Ù.
    ¹«½¼ ¹®Á¦Àΰ¡¿ä?
    ¾Æ·¡°¡ ÇöÀç »óȲÀÔ´Ï´Ù.

    ³ª´Â CISCO ¶ó¿ìÅÍ·Î ÀÎÅͳݰú ¿¬°áµÇ¾î ÀÖ´Ù. ¶ó¿ìÅÍ´Â Çãºê¿¡ ¿¬°áµÇ°í µÎ ÄÄÇ»ÅÍ°¡ Çãºê¿¡ ¹°·Á ÀÖ´Ù. ±× Áß Çϳª´Â º£½ºÃÅÈ£½ºÆ®(bastion host)Àε¥ À¥¼­¹ö °â ¸ÞÀϼ­¹öÀÌ´Ù. ¸ÞÀÏÀº ÆÄÀ̾î¿ùÀÎ ´Ù¸¥ ÄÄÇ»Å͸¦ ÅëÇØ ³»ºÎ ³×Æ®¿öÅ©·Î Àü´ÞµÈ´Ù.  

    ¿©±â ¼Â¾÷ÀÌ ÀÖ´Ù.

    ÆÄÀ̾î¿ù IP´Â xx.xx.xx.2, MAC ¾îµå·¹½º(ÀÌ´õ³Ý) 00:20:AF:A2:9E:58 º£½ºÃŠȣ½ºÆ®(bastion host) xx.xx.xx.3

    ÆÄÀ̾î¿ùÀº µÎ °³ÀÇ ·£Ä«µå¸¦ °®°í Àִµ¥ µÎ ¹ø°´Â ³»ºÎ·£À¸·Î ¿¬°áµÈ´Ù. ¸ÞÀÏÀº ÆÄÀ̾î¿ùÀ» Åë°úÇÑ´Ù. º£½ºÃŠȣ½ºÆ®¿¡ µµ´ÞÇÑ ¸ÞÀÏÀº xx.xx.xx.149·Î Æ÷¿öµù µÇ´Âµ¥ ÀÌ´Â °¡Â¥ ÁÖ¼Ò´Ù. ±×·¡¼­ ³ª´Â .149¸¦ ÆÄÀ̾î¿ùÀÇ ¸Æ¾îµå·¹½º¿¡ arpÇÏ·Á°í Çß´Ù. Áï

      arp -i eth0 xx.xx.xx.149 00:20:AF:A2:9E:58 pub.

    * ÀÌ ¸í·ÉÀº ³»°Ô´Â ÀûÀýÄ¡ ¾Ê´Â °Í °°´Ù. ¾Æ·¡Ã³·³ ÇØ º¸¶ó.

      arp -i eth0 -Ds ${NETWORK} eth1 netmask ${NETMASK} pub

    ÀÌ ¿¹´Â ProxyARP mini-HOWTO ¿¡¼­ °¡Á®¿Ô´Ù.
    (http://www.linuxdoc.org/HOWTO/mini/Proxy-ARP-Subnet.html)

    (NOTE: the 2.2.x Ä¿³ÎÀº netmask ¿É¼ÇÀ» Çã¿ëÇÏÁö ¾Ê´Â´Ù. Arp ¸¦ ¿øÇÏ´Â °¢ ¾îµå·¹½º¸¦ °¢°¢ ¸í·ÉÀ» ÁÖ¾î¾ß ÇÑ´Ù. 2.4¿¡¼­´Â ¾îÂî µÉÁö ¸ð¸£°Ú´Ù. ´Ù¸¥ Àü¹®°¡¸¦ ¿©±â ¼Ò°³ÇÑ´Ù.).

    ±× ¸í·ÉÀº µ¿ÀÛÇÏ´Â °Í °°´Ù. Arp ¸í·ÉÀº xx.xx.xx.149 MP eth0¸¦ º¸¿© ÁØ´Ù. ÆÄÀ̾î¿ùÀº ÀÛµ¿ÇÏ°í ÀÖ°í .149¸¦ 192,168.1.52 ³»ºÎ ÁÖ¼Ò·Î º¯È¯Çϴµ¥ ÀÌ ¼­¹ö°¡ ³»ºÎ ¸ÞÀÏ ¼­¹ö´Ù. ¹®Á¦´Â ³»°¡ º£½ºÃŠȣ½ºÆ®·Î pingÀ» Çϸé ÀÌ·¸´Ù.
     

    $ ping mickey
    ¡¬PING mickey.tbc.com (xx.xx.xx.149): 56 data bytes

    --- mickey.xx.xx ping statistics ---
    3 packets transmitted, 0 packets received, 100% packet loss.

 

    ´Ù¸¥ â¿¡¼­´Â
     

     $ tcpdump -n arp
     12:33:06.979376 arp who-has xx.xx.xx.149 tell xx.xx.xx.3
     12:33:07.969471 arp who-has xx.xx.xx.149 tell xx.xx.xx.3
     12:33:08.969470 arp who-has xx.xx.xx.149 tell xx.xx.xx.3

     3 packets received by filter
     0 packets dropped by kernel.

 

    ÀÌ·¸°Ô ¿µ¿øÈ÷ °è¼ÓÇÑ´Ù.

    Ä¿³Î ¶ó¿ìÆà ¼ÂÆÃÀº ¾Æ·¡¿Í °°´Ù.
     

    bash# route -n
    Kernel IP routing table
    Destination  Gateway     Genmask             Flags   Metric  Ref    Use   Iface
    xx.xx.xx.3    0.0.0.0      255.255.255.255     UH        0       0       0       eth0
    xx.xx.xx.0    0.0.0.0      255.255.255.0         U         0        0       0       eth0
    127.0.0.0    0.0.0.0      255.0.0.0                U          0       0       0        lo
    0.0.0.0      xx.xx.xx.1    0.0.0.0                   UG        0       0       0       eth0

 

    ¾Æ¹«·¡µµ arp°¡ ÀûÀýÇÑ ¸µÅ© ÁÖ¼Ò¸¦ Á¦°øÇÏÁö ¾Ê´Â °Í °°´Ù.
    arp ¸í·ÉÀº ¶ó¿ìÆà Å×ÀÌºí¿¡°Ô ¿µÇâÀ» ÁÖÁö ¾Ê´Â´Ù. ³»°¡ ¾Æ·¡Ã³·³ ·çÆ®¸¦ Ãß°¡Çصµ
     

    route add -net xx.xx.xx.0 netmask 255.255.255.0 gw xx.xx.xx.2
                     [xx.xx.xx.2 is the firewall]

     

    tcpdump ´Â ÀÌó·³ º¸¿© ÁØ´Ù.

     

    12:40:52.120385 arp who-has xx.xx.xx.149 tell xx.xx.xx.2.

 

    ¸í¹éÇÏ°Ô PROXY ARP ´Â ÀÛµ¿ÇÏÁö ¾Ê°í ÀÖ´Ù. Áï ¿¬°á ½Ãµµ¿¡ ÀÀ´äÇÏÁö ¾ÊÀ¸¹Ç·Î. ProxyARP mini-HOWTO ¸¦ ÀÐ°í ¿¹Á¦¿¡ ³ª¿Â °Í°ú ºñ½ÁÇÏ°Ô Çغ¸¶ó. ´ç½ÅÀº proxyarp È£½ºÆ®¿¡¼­ ¶ó¿ìÆà Å×À̺íÀÌ ¾çÂÊ ´Ù ¼³Á¤µÇ¾ú´ÂÁö º¸¶ó.

    ³ª´Â ³ªÀÇ ¼Â¾÷ ¾îµð°¡ ¹®Á¦ÀÎÁö ¸ð¸£°Ú´Ù. °ËÅ並  ÇØ ´Þ¶ó.

    Jinquan

    À§ÀÇ ´äÀ¸·Î ¾ÈµÇ¸é ASCII ±×¸²À¸·Î ±×·Á ´Þ¶ó. ¹®¼­·Î¸¸ º¸¾Æ¼­´Â ÃßÃøÀÌ ¾î·Æ´Ù. ¾çÂÊÀÇ ¶ó¿ìÆà Å×À̺íÀ» ³Ö¾î ´Þ¶ó. ±×¸²À» ±×¸®´Â °ÍÀ¸·Î ¹®Á¦°¡ ¸í¹éÇØ Áú °ÍÀÌ´Ù.

     

    Copyright (c) 2000, James T. Dennis
    Published in The Linux Gazette Issue 51 March 2000




¡ã top

homeÀ¸·Î...