{"id":118040,"date":"2021-04-01T06:00:20","date_gmt":"2021-04-01T13:00:20","guid":{"rendered":"https:\/\/unit42.paloaltonetworks.com\/?p=118040"},"modified":"2025-08-25T04:27:59","modified_gmt":"2025-08-25T11:27:59","slug":"wireshark-tutorial-decrypting-rdp-traffic","status":"publish","type":"post","link":"https:\/\/unit42.paloaltonetworks.com\/ja\/wireshark-tutorial-decrypting-rdp-traffic\/","title":{"rendered":"Wireshark\u306b\u3088\u308b\u30d1\u30b1\u30c3\u30c8\u89e3\u6790\u8b1b\u5ea7 11: RDP\u30c8\u30e9\u30d5\u30a3\u30c3\u30af\u306e\u5fa9\u53f7"},"content":{"rendered":"<h2><a id=\"post-117982-_ljmmp7xklbud\"><\/a>\u6982\u8981<\/h2>\n<p>\u8fd1\u5e74\u3001\u653b\u6483\u8005\u304c\u30ea\u30e2\u30fc\u30c8\u30c7\u30b9\u30af\u30c8\u30c3\u30d7\u30d7\u30ed\u30c8\u30b3\u30eb\uff08RDP\uff09\u3092\u60aa\u7528\u3057\u3066\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u306e\u7518\u3044\u30b5\u30fc\u30d0\u30fc\u3084\u30a8\u30f3\u30bf\u30fc\u30d7\u30e9\u30a4\u30ba\u30cd\u30c3\u30c8\u30ef\u30fc\u30af\u306b\u30a2\u30af\u30bb\u30b9\u3059\u308b\u30b1\u30fc\u30b9\u304c\u5897\u3048\u3066\u3044\u307e\u3059\u3002\u307e\u305f2017\u5e74\u4ee5\u964dRDP\u306f\u30e9\u30f3\u30b5\u30e0\u30a6\u30a7\u30a2\u3092\u4f7f\u7528\u3059\u308b\u30de\u30eb\u30a6\u30a7\u30a2\u653b\u6483\u306e\u91cd\u8981\u306a\u653b\u6483\u30d9\u30af\u30c8\u30eb\u306b\u3082\u306a\u3063\u3066\u3044\u307e\u3059\u3002\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u5c02\u9580\u5bb6\u3082RDP\u306e\u8106\u5f31\u6027\u3092\u691c\u51fa\u3057\u3066\u653b\u6483\u3092\u9632\u3050\u305f\u3081\u306e\u30b7\u30b0\u30cd\u30c1\u30e3\u3092\u4f5c\u6210\u3057\u3066\u304a\u308a\u3001\u3053\u306e\u30d7\u30ed\u30c8\u30b3\u30eb\u306b\u306f\u591a\u304f\u306e\u6ce8\u76ee\u304c\u5411\u3051\u3089\u308c\u3066\u3044\u307e\u3059\u3002<\/p>\n<p>RDP\u306fMicrosoft\u306b\u3088\u308b\u30d7\u30ed\u30d7\u30e9\u30a8\u30bf\u30ea\u306a\u30d7\u30ed\u30c8\u30b3\u30eb\u3067\u3001\u30cd\u30c3\u30c8\u30ef\u30fc\u30af\u30c8\u30e9\u30d5\u30a3\u30c3\u30af\u3092\u6697\u53f7\u5316\u3059\u308b\u305f\u3081\u306e\u52d5\u4f5c\u30e2\u30fc\u30c9\u3092\u3044\u304f\u3064\u304b\u30b5\u30dd\u30fc\u30c8\u3057\u3066\u3044\u307e\u3059\u3002\u6b8b\u5ff5\u306a\u304c\u3089\u3001\u6697\u53f7\u5316\u3055\u308c\u3066RDP\u30b3\u30f3\u30c6\u30f3\u30c4\u304c\u975e\u8868\u793a\u306b\u306a\u308b\u3068RDP\u7528\u30b7\u30b0\u30cd\u30c1\u30e3\u306e\u4f5c\u6210\u306f\u3080\u305a\u304b\u3057\u304f\u306a\u308a\u307e\u3059\u304c\u3001\u5fa9\u53f7\u7528\u306e\u79d8\u5bc6\u9375\u30d5\u30a1\u30a4\u30eb\u3092\u7528\u610f\u3057\u305f\u30c6\u30b9\u30c8\u74b0\u5883\u304c\u3042\u308c\u3070Wireshark\u306eRDP\u30c8\u30e9\u30d5\u30a3\u30c3\u30af\u3092\u542b\u3080\u30d1\u30b1\u30c3\u30c8\u30ad\u30e3\u30d7\u30c1\u30e3\uff08pcap\uff09\u3092\u5fa9\u53f7\u3067\u304d\u308b\u3088\u3046\u306b\u306a\u308a\u307e\u3059\u3002<\/p>\n<p>\u305d\u3053\u3067\u672c\u7a3f\u3067\u306f\u3001\u30c6\u30b9\u30c8\u74b0\u5883\u3092\u7528\u610f\u3057\u3066\u5fa9\u53f7\u7528\u79d8\u5bc6\u9375\u3067RDP\u30c8\u30e9\u30d5\u30a3\u30c3\u30af\u3092\u5fa9\u53f7\u3059\u308b\u65b9\u6cd5\u306b\u3064\u3044\u3066\u89e3\u8aac\u3057\u307e\u3059\u3002<\/p>\n<h2><a id=\"post-117982-_vhv8d5hi6g31\"><\/a>\u524d\u63d0\u6761\u4ef6<\/h2>\n<p>\u672c\u8b1b\u5ea7\u306f\u4ee5\u4e0b\u306e\u6761\u4ef6\u3092\u6e80\u305f\u3057\u305f\u5834\u5408\u306b\u3082\u3063\u3068\u3082\u9ad8\u3044\u5b66\u7fd2\u52b9\u679c\u3092\u671f\u5f85\u3067\u304d\u307e\u3059\u3002<\/p>\n<ul>\n<li>VirtualBox\u3084VMware\u306a\u30692\u53f0\u306eWindows\u30db\u30b9\u30c8\u3092\u5b9f\u884c\u3067\u304d\u308b\u4eee\u60f3\u74b0\u5883\u304c\u3042\u308b\u3053\u3068<\/li>\n<li>RDP\u3092\u30bb\u30c3\u30c8\u30a2\u30c3\u30d7\u3057\u3066\u4f7f\u7528\u3059\u308b\u65b9\u6cd5\u3092\u7406\u89e3\u3057\u3066\u3044\u308b\u3053\u3068<\/li>\n<li>RDP\u30af\u30e9\u30a4\u30a2\u30f3\u30c8\u304c\u3042\u308b\u3053\u3068\uff08\u672c\u7a3f\u3067\u306fWindows 10 Professional\u3092\u5b9f\u884c\u3059\u308b\u30db\u30b9\u30c8\u3092\u4f7f\u7528\uff09<\/li>\n<li>RDP\u30b5\u30fc\u30d0\u30fc\u304c\u3042\u308b\u3053\u3068\uff08RDP\u3092\u6709\u52b9\u306b\u3057\u305f\u5225\u306eWindows\u30db\u30b9\u30c8\u304bFreeRDP\u3092\u5b9f\u884c\u3059\u308bWindows\u4ee5\u5916\u306e\u30db\u30b9\u30c8\u3092\u7528\u610f\u3059\u308b\uff09<\/li>\n<li>\u3053\u308c\u30892\u53f0\u306e\u30db\u30b9\u30c8\u9593\u306e\u30cd\u30c3\u30c8\u30ef\u30fc\u30af\u30c8\u30e9\u30d5\u30a3\u30c3\u30af\u304c\u30ad\u30e3\u30d7\u30c1\u30e3\u53ef\u80fd\u3067\u3042\u308b\u3053\u3068\uff08\u4eee\u60f3\u74b0\u5883\u5185\u3067\u3084\u308b\u306e\u304c\u3082\u3063\u3068\u3082\u5bb9\u6613\uff09<\/li>\n<li>Wireshark\u30d0\u30fc\u30b8\u30e7\u30f33.0\u307e\u305f\u306f\u305d\u308c\u4ee5\u964d\u304c\u3042\u308b\u3053\u3068<\/li>\n<li>\u30cd\u30c3\u30c8\u30ef\u30fc\u30af\u30c8\u30e9\u30d5\u30a3\u30c3\u30af\u306e\u57fa\u790e\u77e5\u8b58\u304c\u3042\u308b\u3053\u3068<\/li>\n<\/ul>\n<h2><a id=\"post-117982-_5xmjh1zlke9\"><\/a>\u5168\u4f53\u7684\u306a\u624b\u9806<\/h2>\n<p>\u5168\u4f53\u7684\u306a\u624b\u9806\u306f\u304a\u304a\u307e\u304b\u306b\u6b21\u306e7\u3064\u306b\u5206\u3051\u3089\u308c\u307e\u3059\u3002<\/p>\n<ul>\n<li>\u624b\u98061: 2\u53f0\u306e\u30db\u30b9\u30c8\u304c\u3042\u308b\u4eee\u60f3\u74b0\u5883\u3092\u30bb\u30c3\u30c8\u30a2\u30c3\u30d7\u3057\u307e\u3059\u30021\u53f0\u306fRDP\u30af\u30e9\u30a4\u30a2\u30f3\u30c8\u3068\u3057\u3066\u3001\u3082\u30461\u53f0\u306fRDP\u30b5\u30fc\u30d0\u30fc\u3068\u3057\u3066\u6a5f\u80fd\u3055\u305b\u307e\u3059\u3002<\/li>\n<li>\u624b\u98062: RDP\u30af\u30e9\u30a4\u30a2\u30f3\u30c8\u304b\u3089Forward Secrecy\u6697\u53f7\u3092\u524a\u9664\u3057\u307e\u3059\u3002<\/li>\n<li>\u624b\u98063: RDP\u30b5\u30fc\u30d0\u30fc\u306e\u79d8\u5bc6\u9375\u3092\u53d6\u5f97\u3057\u307e\u3059\u3002<\/li>\n<li>\u624b\u98064: RDP\u30b5\u30fc\u30d0\u30fc\u3068Windows\u30af\u30e9\u30a4\u30a2\u30f3\u30c8\u9593\u306eRDP\u30c8\u30e9\u30d5\u30a3\u30c3\u30af\u3092\u30ad\u30e3\u30d7\u30c1\u30e3\u3057\u307e\u3059\u3002<\/li>\n<li>\u624b\u98065: Wireshark\u3067pcap\u3092\u958b\u304d\u307e\u3059\u3002<\/li>\n<li>\u624b\u98066: Wireshark\u306b\u79d8\u5bc6\u9375\u3092\u8aad\u307f\u8fbc\u307f\u307e\u3059\u3002<\/li>\n<li>\u624b\u98067: RDP\u30c7\u30fc\u30bf\u3092\u8abf\u3079\u307e\u3059\u3002<\/li>\n<\/ul>\n<h4><a id=\"post-117982-_gs677gtz0mos\"><\/a>\u624b\u98061: \u4eee\u60f3\u74b0\u5883\u3092\u30bb\u30c3\u30c8\u30a2\u30c3\u30d7\u3059\u308b<\/h4>\n<p>\u3053\u306e\u7a2e\u306e\u5206\u6790\u3067\u6700\u3082\u4e00\u822c\u7684\u306b\u4f7f\u308f\u308c\u308b\u4eee\u60f3\u74b0\u5883\u306f<a href=\"https:\/\/www.virtualbox.org\/\">VirtualBox<\/a>\u3068Windows\/Linux\u7528VMware Workstation\u306e2\u3064\u3067\u3057\u3087\u3046\u3002Mac OS\u3067\u306fVMWare Fusion\u3082\u4f7f\u308f\u308c\u3066\u3044\u307e\u3059\u3002VirtualBox\u306f\u7121\u6599\u3067\u3059\u304c\u3001VMware\u306f\u5546\u7528\u88fd\u54c1\u3067\u3059\u3002<\/p>\n<p>\u672c\u8b1b\u5ea7\u3067\u306f\u4eee\u60f3\u74b0\u5883\u4e0a\u3067\u4eee\u60f3\u30de\u30b7\u30f3\uff08VM\uff09\u3092\u30bb\u30c3\u30c8\u30a2\u30c3\u30d7\u3059\u308b\u90e8\u5206\u306b\u3064\u3044\u3066\u306f\u3075\u308c\u307e\u305b\u3093\u3002\u672c\u7a3f\u3067\u5229\u7528\u3057\u305f\u30e9\u30dc\u74b0\u5883\u306e\u57fa\u672c\u69cb\u9020\u306f\u56f31\u306e\u901a\u308a\u3067\u3059\u3002<\/p>\n<figure id=\"attachment_118048\" aria-describedby=\"caption-attachment-118048\" style=\"width: 900px\" class=\"wp-caption aligncenter\"><a href=\"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2021\/04\/word-image-122-jp.png\" rel=\"wpdevart_lightbox\"><img  class=\"wp-image-118048 lozad\"  data-src=\"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2021\/04\/word-image-122-jp.png\" alt=\"RDP\u30c8\u30e9\u30d5\u30a3\u30c3\u30af\u306e\u5fa9\u53f7\u306b\u95a2\u3059\u308b\u672c\u8b1b\u5ea7\u3067\u4f7f\u7528\u3055\u308c\u308b\u30e9\u30dc\u306e\u30bb\u30c3\u30c8\u30a2\u30c3\u30d7\u306b\u306f\u3001\u4eee\u60f3\u5316\u74b0\u5883\u3092\u5b9f\u884c\u3059\u308b\u7269\u7406\u30db\u30b9\u30c8\u3001\u4eee\u60f3LAN\u3001RDP\u30af\u30e9\u30a4\u30a2\u30f3\u30c8\u3068\u3057\u3066\u6a5f\u80fd\u3059\u308bWindows VM\u3001\u304a\u3088\u3073RDP\u30b5\u30fc\u30d0\u30fc\u3068\u3057\u3066\u6a5f\u80fd\u3059\u308bWindows VM\u304c\u542b\u307e\u308c\u307e\u3059\u3002 \" width=\"900\" height=\"474\" \/><\/a><figcaption id=\"caption-attachment-118048\" class=\"wp-caption-text\">\u56f31 \u672c\u8b1b\u5ea7\u3067\u4f7f\u7528\u3057\u305f\u30e9\u30dc\u74b0\u5883\u306e\u57fa\u672c\u69cb\u9020<\/figcaption><\/figure>\n<p>\u4eca\u56de\u306e\u30e9\u30dc\u74b0\u5883\u306b\u306f2\u3064\u306eWindows10\u30db\u30b9\u30c8\u304c\u542b\u307e\u308c\u3066\u3044\u307e\u3059\u30021\u53f0\u306fRDP\u30af\u30e9\u30a4\u30a2\u30f3\u30c8\u3068\u3057\u3066\u3001\u3082\u30461\u53f0\u306fRDP\u30b5\u30fc\u30d0\u30fc\u3068\u3057\u3066\u6a5f\u80fd\u3059\u308b\u3082\u306e\u3067\u3059\u3002\u4eee\u60f3LAN\u4e0a\u3067\u3053\u308c\u30892\u53f0\u306e\u30db\u30b9\u30c8\u306e\u9593\u306bRDP\u30bb\u30c3\u30b7\u30e7\u30f3\u3092\u5f35\u308a\u3001\u305d\u306e\u30cd\u30c3\u30c8\u30ef\u30fc\u30af\u30c8\u30e9\u30d5\u30a3\u30c3\u30af\u3092\u30ad\u30e3\u30d7\u30c1\u30e3\u3057\u3066\u3044\u304d\u307e\u3059\u3002<\/p>\n<h4><a id=\"post-117982-_6iyvb95qe4n3\"><\/a>\u624b\u98062: RDP\u30af\u30e9\u30a4\u30a2\u30f3\u30c8\u304b\u3089Forward Secrecy\u6697\u53f7\u3092\u524a\u9664\u3059\u308b<\/h4>\n<p>\u6697\u53f7\u5316\u30a2\u30eb\u30b4\u30ea\u30ba\u30e0\u306e\u306a\u304b\u306b\u306f<a href=\"https:\/\/www.keycdn.com\/blog\/perfect-forward-secrecy\">Forward Secrecy<\/a>\uff08\u300c\u524d\u65b9\u79d8\u533f\u6027\u300d\u3068\u3082\u547c\u3070\u308c\u308b\u3002\u4ee5\u4e0b\u3001\u300cFS\u300d\u3068\u8868\u8a18\uff09\u3092\u63d0\u4f9b\u3059\u308b\u3082\u306e\u304c\u3042\u308a\u307e\u3059\u3002\u3053\u308c\u3089\u306e\u7a2e\u985e\u306e\u6697\u53f7\u5316\u30a2\u30eb\u30b4\u30ea\u30ba\u30e0\u306f\u3001SSL\/TLS\u63a5\u7d9a\u7528\u306b\u30bb\u30c3\u30b7\u30e7\u30f3\u9375\u3092\u8907\u6570\u4f5c\u6210\u3057\u307e\u3059\u3002\u3053\u3046\u3057\u305f\u6697\u53f7\u30a2\u30eb\u30b4\u30ea\u30ba\u30e0\u3092\u5229\u7528\u3055\u308c\u3066\u3057\u307e\u3046\u3068\u3001RDP\u30b5\u30fc\u30d0\u30fc\u304b\u30891\u3064\u79d8\u5bc6\u9375\u3092\u3082\u3089\u3063\u305f\u3060\u3051\u3067\u306fSSL\/TLS\u30c8\u30e9\u30d5\u30a3\u30c3\u30af\u3092\u5fa9\u53f7\u3067\u304d\u307e\u305b\u3093\u3002\u305d\u3053\u3067\u3001RDP\u30af\u30e9\u30a4\u30a2\u30f3\u30c8\u3067FS\u3092\u30b5\u30dd\u30fc\u30c8\u3059\u308b\u69cb\u6210\u30aa\u30d7\u30b7\u30e7\u30f3\u3092\u524a\u9664\u3057\u3066\u304a\u304f\u5fc5\u8981\u304c\u3042\u308a\u307e\u3059\u3002<\/p>\n<p>\u672c\u8b1b\u5ea7\u7528\u3067\u79c1\u305f\u3061\u304c\u7528\u610f\u3057\u305fRDP\u30af\u30e9\u30a4\u30a2\u30f3\u30c8\u306fWindows 10 Professional\u3092\u5b9f\u884c\u3059\u308b\u30db\u30b9\u30c8\u3067\u3059\u3002\u3053\u306e\u30db\u30b9\u30c8\u306b\u306f\u7d44\u307f\u8fbc\u307f\u306eRDP\u30af\u30e9\u30a4\u30a2\u30f3\u30c8\u304c\u3042\u308a\u307e\u3059\u3002<\/p>\n<p>Microsoft\u306fFS\u3092\u30b5\u30dd\u30fc\u30c8\u3059\u308b\u69cb\u6210\u30aa\u30d7\u30b7\u30e7\u30f3\u306e\u524a\u9664\u65b9\u6cd5\u306e\u8a73\u7d30\u3092\u300e<a href=\"https:\/\/docs.microsoft.com\/ja-jp\/windows-server\/security\/tls\/manage-tls\">\u30c8\u30e9\u30f3\u30b9\u30dd\u30fc\u30c8\u5c64\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3 (TLS) \u3092\u7ba1\u7406\u3059\u308b<\/a>\u300f\u3001\u300e<a href=\"https:\/\/docs.microsoft.com\/en-us\/windows\/win32\/secauthn\/prioritizing-schannel-cipher-suites\">Prioritizing Schannel Cipher Suites\uff08Schannel\u6697\u53f7\u30b9\u30a4\u30fc\u30c8\u306e\u512a\u5148\u9806\u4f4d\u4ed8\u3051\uff09<\/a>\u300f\u3068\u3044\u30462\u3064\u306e\u8a18\u4e8b\u3067\u516c\u958b\u3057\u3066\u3044\u307e\u3059\u3002\u4ee5\u4e0b\u306f\u79c1\u305f\u3061\u304c\u5b9f\u969b\u306b\u884c\u3063\u305f\u5185\u5bb9\u30921\u30b9\u30c6\u30c3\u30d7\u305a\u3064\u8aac\u660e\u3057\u305f\u3082\u306e\u3067\u3059\u3002<\/p>\n<p>Windows\u306e\u691c\u7d22\u30dc\u30c3\u30af\u30b9\u306b\u300c<strong><em>gpedit.msc<\/em><\/strong>\u300d\u3068\u8a18\u5165\u3057\u3001\u30b0\u30eb\u30fc\u30d7\u30dd\u30ea\u30b7\u30fc\u7ba1\u7406\u30b3\u30f3\u30bd\u30fc\u30eb\u3092\u691c\u7d22\u3057\u307e\u3059\u3002\u300cgpedit.msc\u300d\u304c [\u6700\u3082\u4e00\u81f4\u3059\u308b\u691c\u7d22\u7d50\u679c] \u306b\u8868\u793a\u3055\u308c\u308b\u306e\u3067\u3001\u3053\u306e\u9805\u76ee\u3092\u53f3\u30af\u30ea\u30c3\u30af\u3057\u3066\u30b3\u30f3\u30c6\u30ad\u30b9\u30c8\u30e1\u30cb\u30e5\u30fc\u304b\u3089 [\u7ba1\u7406\u8005\u3068\u3057\u3066\u5b9f\u884c] \u3092\u30af\u30ea\u30c3\u30af\u3057\u307e\u3059\uff08\u56f32\u53c2\u7167\uff09\u3002<\/p>\n<figure id=\"attachment_117986\" class=\"wp-caption aligncenter\" style=\"width: 900px;\" aria-describedby=\"caption-attachment-117986\"><figure id=\"attachment_117987\" aria-describedby=\"caption-attachment-117987\" style=\"width: 900px\" class=\"wp-caption aligncenter\"><img  class=\"wp-image-117987 lozad\"  data-src=\"https:\/\/unit42-preview.paloaltonetworks.com\/wp-content\/uploads\/2021\/03\/word-image-123.png\" alt=\"Windows\u306e\u691c\u7d22\u30dc\u30c3\u30af\u30b9\u306b\u300cgpedit.msc\u300d\u3068\u5165\u529b\u3057\u3066\u30b0\u30eb\u30fc\u30d7\u30dd\u30ea\u30b7\u30fc\u7ba1\u7406\u30b3\u30f3\u30bd\u30fc\u30eb\u3092\u691c\u7d22\u3057\u3001\u300cgpedit.msc\u300d\u304c [\u6700\u3082\u4e00\u81f4\u3059\u308b\u691c\u7d22\u7d50\u679c] \u306b\u8868\u793a\u3055\u308c\u305f\u3089\u3001\u3053\u306e\u9805\u76ee\u3092\u53f3\u30af\u30ea\u30c3\u30af\u3057\u3066\u3001\u30b3\u30f3\u30c6\u30ad\u30b9\u30c8\u30e1\u30cb\u30e5\u30fc\u304b\u3089 [\u7ba1\u7406\u8005\u3068\u3057\u3066\u5b9f\u884c] \u3092\u30af\u30ea\u30c3\u30af\u3057\u307e\u3059\u3002 \" width=\"900\" height=\"596\" \/><figcaption id=\"caption-attachment-117987\" class=\"wp-caption-text\">\u56f32 Windows 10 Professional\u3067\u7ba1\u7406\u8005\u3068\u3057\u3066\u30b0\u30eb\u30fc\u30d7\u30dd\u30ea\u30b7\u30fc\u30a8\u30c7\u30a3\u30bf\u30fc\u3092\u8d77\u52d5\u3059\u308b<\/figcaption><\/figure><\/figure>\n<p>\u30b3\u30f3\u30bd\u30fc\u30eb\u306e\u5de6\u30da\u30a4\u30f3\u3092\u6b21\u306e\u9806\u306b\u30af\u30ea\u30c3\u30af\u3057\u3066\u5c55\u958b\u3057\u307e\u3059\uff08\u30ab\u30c3\u30b3\u5185\u306f\u65e5\u672c\u8a9e\u306eUI\u8868\u8a18)\u3002<\/p>\n<ul>\n<li>Computer Configuration \uff08\u30b3\u30f3\u30d4\u30e5\u30fc\u30bf\u30fc\u306e\u69cb\u6210\uff09<\/li>\n<li>Administrative Templates\uff08\u7ba1\u7406\u7528\u30c6\u30f3\u30d7\u30ec\u30fc\u30c8\uff09<\/li>\n<li>Network\uff08\u30cd\u30c3\u30c8\u30ef\u30fc\u30af\uff09<\/li>\n<li>SSL Configuration Settings\uff08SSL \u69cb\u6210\u8a2d\u5b9a\uff09<\/li>\n<\/ul>\n<p>\u56f33\u306f\u3001[SSL Configuration Settings\uff08SSL\u69cb\u6210\u8a2d\u5b9a\uff09] \u307e\u3067\u5c55\u958b\u3057\u305f\u3068\u3053\u308d\u3092\u793a\u3057\u3066\u3044\u307e\u3059\u3002<\/p>\n<p><figure id=\"attachment_117988\" aria-describedby=\"caption-attachment-117988\" style=\"width: 900px\" class=\"wp-caption aligncenter\"><img  class=\"wp-image-117989 lozad\"  data-src=\"https:\/\/unit42-preview.paloaltonetworks.com\/wp-content\/uploads\/2021\/03\/word-image-124.png\" alt=\"\u30b9\u30af\u30ea\u30fc\u30f3\u30b7\u30e7\u30c3\u30c8\u5185\u306e\u5927\u304d\u3044\u9ed2\u77e2\u5370\u306f\u3001\u30d5\u30a1\u30a4\u30eb\u30b7\u30b9\u30c6\u30e0\u5185\u306e [SSL\u69cb\u6210\u8a2d\u5b9a] \u306e\u5834\u6240\u3092\u793a\u3057\u3066\u3044\u307e\u3059\u3002 \" width=\"900\" height=\"530\" \/><figcaption id=\"caption-attachment-117988\" class=\"wp-caption-text\">\u56f33 [SSL Configuration Settings\uff08SSL\u69cb\u6210\u8a2d\u5b9a\uff09] \u307e\u3067\u5c55\u958b\u3057\u305f\u3068\u3053\u308d<\/figcaption><\/figure>[SSL Configuration Settings\uff08SSL\u69cb\u6210\u8a2d\u5b9a\uff09] \u306e\u4e0b\u306b\u3042\u308b [SSL Cipher Suite Order\uff08<strong><em>SSL \u6697\u53f7\u306e\u9806\u4f4d\uff09<\/em><\/strong>] \u3068\u3044\u3046\u9805\u76ee\u3092\u30c0\u30d6\u30eb\u30af\u30ea\u30c3\u30af\u3057\u307e\u3059\uff08\u56f34\u53c2\u7167\uff09\u3002<\/p>\n<p><figure id=\"attachment_117990\" aria-describedby=\"caption-attachment-117990\" style=\"width: 900px\" class=\"wp-caption aligncenter\"><img  class=\"wp-image-117991 lozad\"  data-src=\"https:\/\/unit42-preview.paloaltonetworks.com\/wp-content\/uploads\/2021\/03\/word-image-125.png\" alt=\"\u56f34 [SSL\u6697\u53f7\u306e\u9806\u4f4d] \u307e\u3067\u5c55\u958b\u3057\u305f\u3068\u3053\u308d\" width=\"900\" height=\"530\" \/><figcaption id=\"caption-attachment-117990\" class=\"wp-caption-text\">\u56f34 [SSL Cipher Suite Order\uff08<strong><em>SSL \u6697\u53f7\u306e\u9806\u4f4d\uff09<\/em><\/strong>] \u307e\u3067\u5c55\u958b\u3057\u305f\u3068\u3053\u308d<\/figcaption><\/figure>[SSL Cipher Suite Order\uff08<strong><em>SSL \u6697\u53f7\u306e\u9806\u4f4d\uff09<\/em><\/strong>] \u4ee5\u4e0b\u306e [Enabled\uff08<strong><em>\u6709\u52b9\uff09<\/em><\/strong>] \u30aa\u30d7\u30b7\u30e7\u30f3\u3092\u30af\u30ea\u30c3\u30af\u3057\u307e\u3059\uff08\u56f35\u53c2\u7167\uff09\u3002<\/p>\n<figure id=\"attachment_117992\" class=\"wp-caption aligncenter\" style=\"width: 900px;\" aria-describedby=\"caption-attachment-117992\"><figure id=\"attachment_117993\" aria-describedby=\"caption-attachment-117993\" style=\"width: 900px\" class=\"wp-caption aligncenter\"><img  class=\"wp-image-117993 lozad\"  data-src=\"https:\/\/unit42-preview.paloaltonetworks.com\/wp-content\/uploads\/2021\/03\/word-image-126.png\" alt=\"\u5927\u304d\u3044\u9ed2\u77e2\u5370\u306f [SSL\u6697\u53f7\u306e\u9806\u4f4d] \u3092\u6709\u52b9\u5316\u3059\u308b\u305f\u3081\u306b\u30af\u30ea\u30c3\u30af\u3059\u308b\u5834\u6240\u3092\u793a\u3057\u3066\u3044\u307e\u3059\u3002\u30b9\u30af\u30ea\u30fc\u30f3\u30b7\u30e7\u30c3\u30c8\u306e\u4e2d\u306e\u8aac\u660e\u300c\u3053\u306e\u30dd\u30ea\u30b7\u30fc\u8a2d\u5b9a\u306f\u3001Secure Socket Layer\uff08SSL\uff09\u3067\u4f7f\u7528\u3059\u308b\u6697\u53f7\u3092\u6c7a\u5b9a\u3057\u307e\u3059\u3002\u3053\u306e\u30dd\u30ea\u30b7\u30fc\u8a2d\u5b9a\u3092\u6709\u52b9\u306b\u3057\u305f\u5834\u5408\u3001\u6307\u5b9a\u3055\u308c\u3066\u3044\u308b\u9806\u4f4d\u3067 SSL \u6697\u53f7\u304c\u512a\u5148\u3055\u308c\u307e\u3059\u3002\u300d \" width=\"900\" height=\"695\" \/><figcaption id=\"caption-attachment-117993\" class=\"wp-caption-text\">\u56f35 [SSL Cipher Suite Order\uff08SSL \u6697\u53f7\u306e\u9806\u4f4d\uff09] \u3092\u6709\u52b9\u306b\u3057\u305f\u3068\u3053\u308d<\/figcaption><\/figure><\/figure>\n<p>\u6b21\u306b\u6697\u53f7\u30ea\u30b9\u30c8\u306e\u4e0a\u306b\u30ab\u30fc\u30bd\u30eb\u3092\u7f6e\u3044\u3066\u53f3\u30af\u30ea\u30c3\u30af\u3057\u3001\u30b3\u30f3\u30c6\u30ad\u30b9\u30c8\u30e1\u30cb\u30e5\u30fc\u304b\u3089 [Select All\uff08\u3059\u3079\u3066\u9078\u629e\uff09] \u3092\u9078\u3093\u3067\u30ea\u30b9\u30c8\u5168\u4f53\u3092\u9078\u629e\u3057\u307e\u3059\uff08\u56f36\u53c2\u7167\uff09\u3002<\/p>\n<figure id=\"attachment_117994\" aria-describedby=\"caption-attachment-117994\" style=\"width: 900px\" class=\"wp-caption aligncenter\"><img  class=\"wp-image-117995 lozad\"  data-src=\"https:\/\/unit42-preview.paloaltonetworks.com\/wp-content\/uploads\/2021\/03\/word-image-127.png\" alt=\"\u3053\u306e\u30b9\u30af\u30ea\u30fc\u30f3\u30b7\u30e7\u30c3\u30c8\u3067\u793a\u3059\u3068\u304a\u308a\u3001\u6b21\u306e\u624b\u9806\u3067\u6697\u53f7\u30ea\u30b9\u30c8\u5168\u4f53\u3092\u9078\u629e\u3057\u3066\u3044\u308b\u3002 \" width=\"900\" height=\"697\" \/><figcaption id=\"caption-attachment-117994\" class=\"wp-caption-text\">\u56f36 \u6697\u53f7\u30ea\u30b9\u30c8\u3092\u9078\u629e<\/figcaption><\/figure>\n<p>\u30ea\u30b9\u30c8\u5168\u4f53\u3092\u9078\u629e\u3057\u305f\u5f8c\u3001\u53f3\u30af\u30ea\u30c3\u30af\u3057\u3066\u30b3\u30f3\u30c6\u30ad\u30b9\u30c8\u30e1\u30cb\u30e5\u30fc\u304b\u3089 [Copy\uff08\u30b3\u30d4\u30fc\uff09] \u3092\u9078\u629e\u3057\u3001\u30ea\u30b9\u30c8\u3092\u30b3\u30d4\u30fc\u3057\u307e\u3059\uff08\u56f37\u53c2\u7167\uff09\u3002<\/p>\n<figure id=\"attachment_117996\" aria-describedby=\"caption-attachment-117996\" style=\"width: 900px\" class=\"wp-caption aligncenter\"><img  class=\"wp-image-117997 lozad\"  data-src=\"https:\/\/unit42-preview.paloaltonetworks.com\/wp-content\/uploads\/2021\/03\/word-image-128.png\" alt=\"\u56f3\u306e\u3088\u3046\u306b\u6697\u53f7\u306e\u30ea\u30b9\u30c8\u3092\u30b3\u30d4\u30fc\u3057\u307e\u3059\u3002 \" width=\"900\" height=\"694\" \/><figcaption id=\"caption-attachment-117996\" class=\"wp-caption-text\">\u56f37 \u6697\u53f7\u30ea\u30b9\u30c8\u3092\u30b3\u30d4\u30fc\u3057\u3066\u3044\u308b\u3068\u3053\u308d<\/figcaption><\/figure>\n<p>\u30b3\u30d4\u30fc\u3057\u305f\u6697\u53f7\u30ea\u30b9\u30c8\u3092\u4efb\u610f\u306e\u30c6\u30ad\u30b9\u30c8\u30a8\u30c7\u30a3\u30bf\uff08\u30e1\u30e2\u5e33\u306a\u3069\uff09\u306b\u30da\u30fc\u30b9\u30c8\u3057\u307e\u3059\u3002\u300cDiffie-Hellman Ephemeral\uff08ECDHE\uff09\u300d\u306a\u3044\u3057\u300cDigital Signature Algorithm\uff08ECDSA\uff09\u300d\u6697\u53f7\u3092\u4f7f\u3046\u3001\u6955\u5186\u66f2\u7dda\u6697\u53f7\u3092\u30b5\u30dd\u30fc\u30c8\u3057\u3066\u3044\u308b\u6697\u53f7\u30a2\u30eb\u30b4\u30ea\u30ba\u30e0\u3092\u3059\u3079\u3066\u524a\u9664\u3057\u307e\u3059\u3002\u3064\u307e\u308a\u540d\u524d\u306b\u300cECDHE\u300d\u3068\u300cECDSA\u300d\u306e\u3044\u305a\u308c\u304b\u307e\u305f\u306f\u4e21\u65b9\u3092\u542b\u3080\u30a8\u30f3\u30c8\u30ea\u3092\u3001\u3059\u3079\u3066\u524a\u9664\u3059\u308b\u5fc5\u8981\u304c\u3042\u308a\u307e\u3059\u3002\u4ee5\u4e0b\u306e\u56f38\u306e\u4f8b\u304b\u3089\u308f\u304b\u308b\u3068\u304a\u308a\u3001\u3053\u308c\u3089\u306e\u6697\u53f7\u30a2\u30eb\u30b4\u30ea\u30ba\u30e0\u306f\u3059\u3079\u3066\u9023\u306a\u3063\u3066\u914d\u7f6e\u3055\u308c\u3066\u3044\u308b\u306e\u3067\u30c6\u30ad\u30b9\u30c8\u5185\u3067\u7c21\u5358\u306b\u524a\u9664\u3067\u304d\u307e\u3059\u3002<\/p>\n<figure id=\"attachment_117998\" aria-describedby=\"caption-attachment-117998\" style=\"width: 900px\" class=\"wp-caption aligncenter\"><img  class=\"wp-image-117999 lozad\"  data-src=\"https:\/\/unit42-preview.paloaltonetworks.com\/wp-content\/uploads\/2021\/03\/word-image-129.png\" alt=\"\u540d\u524d\u306b\u300cECDHE\u300d\u307e\u305f\u306f\u300cECDSA\u300d\u306e\u3044\u305a\u308c\u304b\u307e\u305f\u306f\u4e21\u65b9\u3092\u542b\u3080\u9805\u76ee\u3092\u524a\u9664\u3057\u3066\u6955\u5186\u66f2\u7dda\u6697\u53f7\u3092\u30b5\u30dd\u30fc\u30c8\u3059\u308b\u6697\u53f7\u30a2\u30eb\u30b4\u30ea\u30ba\u30e0\u3092\u524a\u9664\u3057\u307e\u3059\u3002\u3053\u306e\u56f3\u304b\u3089\u308f\u304b\u308b\u3088\u3046\u306b\u3001\u3053\u308c\u3089\u306e\u6697\u53f7\u30a2\u30eb\u30b4\u30ea\u30ba\u30e0\u306f\u3059\u3079\u3066\u9023\u756a\u3067\u914d\u7f6e\u3055\u308c\u3066\u3044\u308b\u306e\u3067\u30c6\u30ad\u30b9\u30c8\u5185\u3067\u7c21\u5358\u306b\u524a\u9664\u3067\u304d\u307e\u3059\u3002 \" width=\"900\" height=\"693\" \/><figcaption id=\"caption-attachment-117998\" class=\"wp-caption-text\">\u56f38 \u300cECDHE\u300d\u3068\u300cECDSA\u300d\u306e\u3044\u305a\u308c\u304b\u307e\u305f\u306f\u4e21\u65b9\u3092\u542b\u3080\u30a8\u30f3\u30c8\u30ea\u3092\u524a\u9664\u3059\u308b<\/figcaption><\/figure>\n<p>\u56f38\u3067\u66f4\u65b0\u3057\u305f\u6697\u53f7\u306e\u30ea\u30b9\u30c8\u306f\u4ee5\u4e0b\u306e\u901a\u308a\u3067\u3059\uff08\u8a33\u6ce8: \u65e5\u672c\u8a9e\u74b0\u5883\u3067\u884c\u3046\u5834\u5408\u3001\u6697\u53f7\u30a2\u30eb\u30b4\u30ea\u30ba\u30e0\u306e\u533a\u5207\u308a\u306b\u306f\u30ab\u30f3\u30de\u306e\u304b\u308f\u308a\u306b\u8aad\u70b9(\u3001)\u304c\u4f7f\u7528\u3055\u308c\u307e\u3059\uff09\u3002<\/p>\n<table>\n<tbody>\n<tr>\n<td><span style=\"font-family: 'courier new', courier, monospace;\">TLS_AES_256_GCM_SHA384,TLS_AES_128_GCM_SHA256,TLS_RSA_WITH_AES_256_GCM_SHA384,TLS_RSA_WITH_AES_128_GCM_SHA256,TLS_RSA_WITH_AES_256_CBC_SHA256,TLS_RSA_WITH_AES_128_CBC_SHA256,TLS_RSA_WITH_AES_256_CBC_SHA,TLS_RSA_WITH_AES_128_CBC_SHA,TLS_RSA_WITH_3DES_EDE_CBC_SHA,TLS_RSA_WITH_NULL_SHA256,TLS_RSA_WITH_NULL_SHA,TLS_PSK_WITH_AES_256_GCM_SHA384,TLS_PSK_WITH_AES_128_GCM_SHA256,TLS_PSK_WITH_AES_256_CBC_SHA384,TLS_PSK_WITH_AES_128_CBC_SHA256,TLS_PSK_WITH_NULL_SHA384,TLS_PSK_WITH_NULL_SHA256<\/span><\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p style=\"text-align: center;\"><span style=\"font-size: 12pt;\"><sup><span style=\"color: #999999;\"><em>\u88681 FS\u6697\u53f7\u30a2\u30eb\u30b4\u30ea\u30ba\u30e0\u3092\u524a\u9664\u3057\u3066\u66f4\u65b0\u3055\u308c\u305f\u30ea\u30b9\u30c8<\/em><\/span><\/sup><\/span><\/p>\n<p>\u30c6\u30ad\u30b9\u30c8\u30a8\u30c7\u30a3\u30bf\u3067\u5909\u66f4\u5f8c\u306e\u30c6\u30ad\u30b9\u30c8\u3092\u3059\u3079\u3066\u9078\u629e\u3057\u3066\u304b\u3089\u30b3\u30d4\u30fc\u3057\u307e\u3059\u3002\u305d\u306e\u5f8c\u3001\u30b0\u30eb\u30fc\u30d7\u30dd\u30ea\u30b7\u30fc\u7ba1\u7406\u30b3\u30f3\u30bd\u30fc\u30eb\u306b\u623b\u308a\u3001\u30b3\u30d4\u30fc\u5143\u306e\u5168\u30c6\u30ad\u30b9\u30c8\u304c\u9078\u629e\u3055\u308c\u305f\u72b6\u614b\u3067\u3042\u308b\u3053\u3068\u3092\u78ba\u8a8d\u3057\u3066\u304b\u3089\u3001\u66f4\u65b0\u3057\u305f\u6697\u53f7\u30ea\u30b9\u30c8\u3092SSL\u6697\u53f7\u30b9\u30a4\u30fc\u30c8\u30d5\u30a3\u30fc\u30eb\u30c9\u306b\u8cbc\u308a\u4ed8\u3051\u3066\u5143\u306e\u30ea\u30b9\u30c8\u3092\u4e0a\u66f8\u304d\u3057\u307e\u3059\u3002[Apply\uff08\u9069\u7528\uff09] \u30dc\u30bf\u30f3\u3092\u30af\u30ea\u30c3\u30af\u3057\u3001\u7d9a\u3051\u3066 [OK] \u3092\u30af\u30ea\u30c3\u30af\u3057\u3066\u30a6\u30a3\u30f3\u30c9\u30a6\u3092\u9589\u3058\u307e\u3059\u3002\u3053\u308c\u3067\u30ea\u30b9\u30c8\u304c\u66f4\u65b0\u3055\u308c\u305f\u306e\u3067\u3001\u30b0\u30eb\u30fc\u30d7\u30dd\u30ea\u30b7\u30fc\u30a8\u30c7\u30a3\u30bf\u30fc\u3092\u9589\u3058\u307e\u3059\u3002<\/p>\n<p>\u3053\u306e\u624b\u9806\u3092\u5b9f\u884c\u3057\u305f\u3089\u3001\u6b21\u306fRDP\u30b5\u30fc\u30d0\u30fc\u306e\u79d8\u5bc6\u9375\u3092\u53d6\u5f97\u3059\u308b\u5fc5\u8981\u304c\u3042\u308a\u307e\u3059\u3002<\/p>\n<h4><a id=\"post-117982-_c8lekwbnx6b4\"><\/a>\u624b\u98063: RDP\u30b5\u30fc\u30d0\u30fc\u306e\u79d8\u5bc6\u9375\u3092\u53d6\u5f97\u3059\u308b<\/h4>\n<p>FreeRDP\u306fRDP\u30b5\u30fc\u30d0\u30fc\u3068\u3057\u3066\u4f7f\u3048\u308b\u9078\u629e\u80a2\u306e1\u3064\u3067\u3059\u3002FreeRDP\u306f<a href=\"https:\/\/github.com\/FreeRDP\">\u3053\u306eGitHub\u30ea\u30dd\u30b8\u30c8\u30ea<\/a>\u3067\u5165\u624b\u3067\u304d\u307e\u3059\u3002\u30d3\u30eb\u30c9\u624b\u9806\u306f<a href=\"https:\/\/github.com\/FreeRDP\/FreeRDP\/wiki\/Compilation\">\u3053\u3061\u3089\u304b\u3089<\/a>\u5165\u624b\u3067\u304d\u307e\u3059\u3002\u30b5\u30fc\u30d0\u30fc\u3092\u30d3\u30eb\u30c9\u3059\u308b\u3068\u304d\u306f\u5fc5\u305a<strong><em>WITH_SERVER = ON<\/em><\/strong>\u30d5\u30e9\u30b0\u3092\u8a2d\u5b9a\u3057\u3066\u304f\u3060\u3055\u3044\u3002\u30b5\u30fc\u30d0\u30fc\u3092\u30d3\u30eb\u30c9\u3057\u305f\u3089\u3001\u30b5\u30fc\u30d0\u30fc\u306b\u79d8\u5bc6\u9375\u3092\u4e0e\u3048\u308b\u304bFreeRDP\u306b\u4ed8\u5c5e\u3057\u3066\u3044\u308b\u79d8\u5bc6\u9375\u3092\u4f7f\u7528\u3059\u308b\u5fc5\u8981\u304c\u3042\u308a\u307e\u3059\u3002<\/p>\n<p>\u672c\u8b1b\u5ea7\u3067\u306f\u3001Windows 10 Professional\u3092\u5b9f\u884c\u3059\u308b\u3082\u30461\u53f0\u306e\u30db\u30b9\u30c8\u3092RDP\u30b5\u30fc\u30d0\u30fc\u3068\u3057\u3066\u4f7f\u7528\u3057\u3066\u3044\u307e\u3059\u3002\u6b21\u306b\u3001\u30db\u30b9\u30c8\u306e\u30aa\u30da\u30ec\u30fc\u30c6\u30a3\u30f3\u30b0\u30b7\u30b9\u30c6\u30e0\u304b\u3089\u79d8\u5bc6\u9375\u3092\u62bd\u51fa\u3057\u307e\u3059\u3002<\/p>\n<p>2\u53f0\u76ee\u306eWindows\u30db\u30b9\u30c8\u304cRDP\u30b5\u30fc\u30d0\u30fc\u3068\u3057\u3066\u6a5f\u80fd\u3059\u308b\u3088\u3046\u3001RDP\u3092\u6709\u52b9\u306b\u3057\u307e\u3059\u3002Windows 10 Professional\u3092\u5b9f\u884c\u3057\u3066\u3044\u308b\u30db\u30b9\u30c8\u4e0a\u3067RDP\u3092\u6709\u52b9\u306b\u3059\u308b\u306b\u306f\u3001[\u30b9\u30bf\u30fc\u30c8] \u30e1\u30cb\u30e5\u30fc\u304b\u3089Windows \u306e[Settings\uff08\u8a2d\u5b9a\uff09] \u306b\u79fb\u52d5\u3057\u3001[System\uff08<strong><em>\u30b7\u30b9\u30c6\u30e0\uff09<\/em><\/strong>] \u30a2\u30a4\u30b3\u30f3\u3092\u9078\u629e\u3057\u307e\u3059\uff08\u56f39\u53c2\u7167\uff09\u3002<\/p>\n<figure id=\"attachment_118000\" aria-describedby=\"caption-attachment-118000\" style=\"width: 900px\" class=\"wp-caption aligncenter\"><img  class=\"wp-image-118001 lozad\"  data-src=\"https:\/\/unit42-preview.paloaltonetworks.com\/wp-content\/uploads\/2021\/03\/word-image-130.png\" alt=\"\u3053\u306e\u56f3\u306e\u3088\u3046\u306b\u30012\u53f0\u76ee\u306eWindows\u30db\u30b9\u30c8\u304cRDP\u30b5\u30fc\u30d0\u30fc\u3068\u3057\u3066\u6a5f\u80fd\u3059\u308b\u3088\u3046\u306b\u30b7\u30b9\u30c6\u30e0\u30a2\u30a4\u30b3\u30f3\u3092\u9078\u629e\u3057\u3066RDP\u3092\u6709\u52b9\u306b\u3059\u308b \" width=\"900\" height=\"509\" \/><figcaption id=\"caption-attachment-118000\" class=\"wp-caption-text\">\u56f39 Windows\u306e\u30b7\u30b9\u30c6\u30e0\u8a2d\u5b9a\u306b\u30a2\u30af\u30bb\u30b9\u3057\u3066\u3044\u308b\u3068\u3053\u308d<\/figcaption><\/figure>\n<p>[System\uff08\u30b7\u30b9\u30c6\u30e0\uff09] \u3092\u958b\u3044\u305f\u3089\u3001[Remote Desktop\uff08<strong><em>\u30ea\u30e2\u30fc\u30c8\u30c7\u30b9\u30af\u30c8\u30c3\u30d7\uff09<\/em><\/strong>] \u3092\u9078\u629e\u3057\u3001[Enable Remote Desktop\uff08<strong><em>\u30ea\u30e2\u30fc\u30c8 \u30c7\u30b9\u30af\u30c8\u30c3\u30d7\u3092\u6709\u52b9\u306b\u3059\u308b\uff09<\/em><\/strong>] \u30b9\u30a4\u30c3\u30c1\u3092\u30af\u30ea\u30c3\u30af\u3057\u307e\u3059\uff08\u56f310\u53c2\u7167\uff09\u3002<\/p>\n<figure id=\"attachment_118002\" aria-describedby=\"caption-attachment-118002\" style=\"width: 900px\" class=\"wp-caption aligncenter\"><img  class=\"wp-image-118003 lozad\"  data-src=\"https:\/\/unit42-preview.paloaltonetworks.com\/wp-content\/uploads\/2021\/03\/word-image-131.png\" alt=\"\u5927\u304d\u306a\u9ed2\u77e2\u5370\u306f\u3001\u30ea\u30e2\u30fc\u30c8\u30c7\u30b9\u30af\u30c8\u30c3\u30d7\u3092\u9078\u629e\u3059\u308b\u5834\u6240\u3068\u3001\u30ea\u30e2\u30fc\u30c8\u30c7\u30b9\u30af\u30c8\u30c3\u30d7\u3092\u6709\u52b9\u306b\u3059\u308b\u30b9\u30a4\u30c3\u30c1\u3092\u30af\u30ea\u30c3\u30af\u3059\u308b\u5834\u6240\u3092\u793a\u3057\u3066\u3044\u307e\u3059\u3002 \" width=\"900\" height=\"634\" \/><figcaption id=\"caption-attachment-118002\" class=\"wp-caption-text\">\u56f310 Windows 10 Professional\u3067RDP\u3092\u6709\u52b9\u306b\u3057\u3066\u3044\u308b\u3068\u3053\u308d<\/figcaption><\/figure>\n<p>2\u53f0\u76ee\u306eWindows\u30db\u30b9\u30c8\u3092RDP\u30b5\u30fc\u30d0\u30fc\u3068\u3057\u3066\u8a2d\u5b9a\u3057\u305f\u5f8c\u306f\u3001\u30aa\u30da\u30ec\u30fc\u30c6\u30a3\u30f3\u30b0\u30b7\u30b9\u30c6\u30e0\u304b\u3089\u79d8\u5bc6\u9375\u3092\u62bd\u51fa\u3057\u307e\u3059\u3002<\/p>\n<p>\u30b5\u30fc\u30d0\u30fc\u306e\u79d8\u5bc6\u9375\u3092\u62bd\u51fa\u3059\u308b\u306b\u306f\u3001Jailbreak\u304b<a href=\"https:\/\/www.varonis.com\/blog\/what-is-mimikatz\/\">Mimikatz<\/a>\u3092\u4f7f\u3044\u307e\u3059\u3002\u4eca\u56de\u306fJailbreak\u3092\u4f7f\u3044\u307e\u3059\u3002<\/p>\n<p><a href=\"https:\/\/github.com\/iSECPartners\/jailbreak\">Jailbreak<\/a>\u306f\u3001iSECPartners\u304c\u4f5c\u6210\u3057\u305f\u3001\u30b5\u30fc\u30d0\u30fc\u306eRDP\u8a3c\u660e\u66f8\u3092\u30a8\u30af\u30b9\u30dd\u30fc\u30c8\u3067\u304d\u308b\u30c4\u30fc\u30eb\u3067\u3059\u3002\u30a8\u30af\u30b9\u30dd\u30fc\u30c8\u3055\u308c\u305f\u8a3c\u660e\u66f8\u304b\u3089\u306f\u79d8\u5bc6\u9375\u3092\u62bd\u51fa\u3067\u304d\u307e\u3059\u3002<\/p>\n<p>Jailbreak\u3092\u4f7f\u3046\u305f\u3081\u306b\u3055\u304d\u307b\u3069\u7acb\u3066\u305fRDP\u30b5\u30fc\u30d0\u30fc\u4e0a\u306b<a href=\"https:\/\/github.com\/iSECPartners\/jailbreak\/tree\/master\/binaries\">\u3053\u306eGitHub\u30ea\u30dd\u30b8\u30c8\u30ea<\/a>\u304b\u3089\u4ee5\u4e0b\u306eJailbreak\u30d0\u30a4\u30ca\u30ea\u3092\u30c0\u30a6\u30f3\u30ed\u30fc\u30c9\u3057\u3066\u304a\u304d\u307e\u3059\u3002<\/p>\n<ul>\n<li>EasyHook64.dll<\/li>\n<li>jailbreak64.exe<\/li>\n<li>jailbreakhook64.dll<\/li>\n<li>jbstore2_64.exe<\/li>\n<\/ul>\n<p>\u6ce8: \u4e0a\u8a18\u306e\u30d5\u30a1\u30a4\u30eb\u306f\u30012021\u5e743\u67084\u65e5\u6642\u70b9\u306b\u30c0\u30a6\u30f3\u30ed\u30fc\u30c9\u3057\u305f\u3082\u306e\u3092Windows 10 Professional 64\u30d3\u30c3\u30c8\u30db\u30b9\u30c8\u4e0a\u3067\u4f7f\u7528\u3057\u3066\u3044\u307e\u3059\u3002GitHub\u30da\u30fc\u30b8\u306e\u30b9\u30af\u30ea\u30fc\u30f3\u30b7\u30e7\u30c3\u30c8\u3092\u4ee5\u4e0b\u306e\u56f311\u306b\u793a\u3057\u307e\u3059\u3002<\/p>\n<figure id=\"attachment_118004\" aria-describedby=\"caption-attachment-118004\" style=\"width: 900px\" class=\"wp-caption aligncenter\"><img  class=\"wp-image-118005 lozad\"  data-src=\"https:\/\/unit42-preview.paloaltonetworks.com\/wp-content\/uploads\/2021\/03\/word-image-132.png\" alt=\"3\u67084\u65e5\u306b\u64ae\u5f71\u3055\u308c\u305fJailbreak GitHub\u30da\u30fc\u30b8\u306e\u30b9\u30af\u30ea\u30fc\u30f3\u30b7\u30e7\u30c3\u30c8\u3002\u3053\u3053\u3067\u306f\u3001\u30c0\u30a6\u30f3\u30ed\u30fc\u30c9\u3057\u305fJailbreak\u30d0\u30a4\u30ca\u30ea\u3092\u793a\u3057\u3066\u3044\u307e\u3059\u3002 \" width=\"900\" height=\"627\" \/><figcaption id=\"caption-attachment-118004\" class=\"wp-caption-text\">\u56f311 jailbreak\u30d0\u30a4\u30ca\u30ea\u306eGitHub\u30da\u30fc\u30b8<\/figcaption><\/figure>\n<p>Jailbreak\u306e\u30d0\u30a4\u30ca\u30ea\u3092\u30c0\u30a6\u30f3\u30ed\u30fc\u30c9\u3057\u305f\u3089\u3001\u56f312\u3067\u793a\u3059\u3088\u3046\u306b\u7ba1\u7406\u8005\u6a29\u9650\u3067\u30b3\u30de\u30f3\u30c9\u30d7\u30ed\u30f3\u30d7\u30c8\u3092\u958b\u304d\u307e\u3059\u3002<\/p>\n<figure id=\"attachment_118006\" aria-describedby=\"caption-attachment-118006\" style=\"width: 900px\" class=\"wp-caption aligncenter\"><img  class=\"wp-image-118007 lozad\"  data-src=\"https:\/\/unit42-preview.paloaltonetworks.com\/wp-content\/uploads\/2021\/03\/word-image-133.png\" alt=\"\u5927\u304d\u306a\u9ed2\u77e2\u5370\u306f\u3001\u7ba1\u7406\u8005\u6a29\u9650\u3067\u30b3\u30de\u30f3\u30c9\u30d7\u30ed\u30f3\u30d7\u30c8\u3092\u958b\u304f\u65b9\u6cd5\u3092\u793a\u3057\u3066\u3044\u307e\u3059\u3002 \" width=\"900\" height=\"591\" \/><figcaption id=\"caption-attachment-118006\" class=\"wp-caption-text\">\u56f312 \u30b3\u30de\u30f3\u30c9\u30d7\u30ed\u30f3\u30d7\u30c8\u3092\u7ba1\u7406\u8005\u3068\u3057\u3066\u5b9f\u884c\u3059\u308b\u3068\u3053\u308d<\/figcaption><\/figure>\n<p>\u30b3\u30de\u30f3\u30c9\u30d7\u30ed\u30f3\u30d7\u30c8\u4e0a\u3067\u30c0\u30a6\u30f3\u30ed\u30fc\u30c9\u3057\u305fJailbreak\u30d0\u30a4\u30ca\u30ea\u306e\u3042\u308b\u30c7\u30a3\u30ec\u30af\u30c8\u30ea\u306b\u79fb\u52d5\u3057\u307e\u3059\u3002\u3053\u306e\u30c7\u30a3\u30ec\u30af\u30c8\u30ea\u304b\u3089\u6b21\u306e\u30b3\u30de\u30f3\u30c9\u3092\u5b9f\u884c\u3057\u307e\u3059\u3002<\/p>\n<pre class=\"lang:default decode:true \">jailbreak64.exe %WINDIR%\\system32\\mmc.exe %WINDIR%\\system32\\certlm.msc -64<\/pre>\n<p>32\u30d3\u30c3\u30c8\u30d0\u30fc\u30b8\u30e7\u30f3\u306eWindows\u3092\u5b9f\u884c\u3057\u3066\u3044\u308b\u5834\u5408\u306f\u304b\u308f\u308a\u306b\u6b21\u306e\u30b3\u30de\u30f3\u30c9\u3092\u5b9f\u884c\u3057\u307e\u3059\u3002<\/p>\n<pre class=\"lang:default decode:true \">jailbreak32.exe %WINDIR%\\system32\\mmc.exe %WINDIR%\\system32\\certlm.msc -32<\/pre>\n<p>RDP\u30b5\u30fc\u30d0\u30fc\u3068\u3057\u3066\u6a5f\u80fd\u3059\u308bWindows\u30db\u30b9\u30c8\u306764\u30d3\u30c3\u30c8\u7528\u30b3\u30de\u30f3\u30c9\u3092\u5b9f\u884c\u3059\u308b\u4f8b\u306b\u3064\u3044\u3066\u306f\u3001\u4ee5\u4e0b\u306e\u56f313\u3092\u53c2\u7167\u3057\u3066\u304f\u3060\u3055\u3044\u3002<\/p>\n<figure id=\"attachment_118008\" aria-describedby=\"caption-attachment-118008\" style=\"width: 900px\" class=\"wp-caption aligncenter\"><img  class=\"wp-image-118009 lozad\"  data-src=\"https:\/\/unit42-preview.paloaltonetworks.com\/wp-content\/uploads\/2021\/03\/word-image-134.png\" alt=\"\u3053\u306e\u30b9\u30af\u30ea\u30fc\u30f3\u30b7\u30e7\u30c3\u30c8\u306f\u3001RDP\u30b5\u30fc\u30d0\u30fc\u3068\u3057\u3066\u6a5f\u80fd\u3059\u308bWindows\u30db\u30b9\u30c8\u306764\u30d3\u30c3\u30c8\u7528\u30b3\u30de\u30f3\u30c9\u3092\u5b9f\u884c\u3059\u308b\u4f8b\u3092\u793a\u3057\u3066\u3044\u307e\u3059\u3002 \" width=\"900\" height=\"451\" \/><figcaption id=\"caption-attachment-118008\" class=\"wp-caption-text\">\u56f313 \u30b3\u30de\u30f3\u30c9\u30d7\u30ed\u30f3\u30d7\u30c8\u304b\u3089Jailbreak\u3092\u5b9f\u884c\u3057\u3066\u3044\u308b\u3068\u3053\u308d<\/figcaption><\/figure>\n<p>\u3053\u306e\u30b3\u30de\u30f3\u30c9\u3092\u5b9f\u884c\u3059\u308b\u3068\u3001\u30ed\u30fc\u30ab\u30eb\u30de\u30b7\u30f3\u306e\u8a3c\u660e\u66f8\u30de\u30cd\u30fc\u30b8\u30e3\u30fc\u304c\u958b\u304d\u307e\u3059\u3002\u5de6\u30da\u30a4\u30f3\u304b\u3089[Remote Desktop\uff08<strong><em>\u30ea\u30e2\u30fc\u30c8\u30c7\u30b9\u30af\u30c8\u30c3\u30d7 \uff09]<\/em><\/strong>\u3001[Certificates\uff08<strong><em>\u8a3c\u660e\u66f8\uff09]<\/em><\/strong>\u30d5\u30a9\u30eb\u30c0\u306e\u9806\u306b\u5c55\u958b\u3057\u307e\u3059\u3002\u3053\u306e\u56f3\u3067\u306f\u8a3c\u660e\u66f8\u304c\u793a\u3055\u308c\u3066\u3044\u307e\u3059\u3002\u8a3c\u660e\u66f8\u304c\u8907\u6570\u3042\u308b\u5834\u5408\u306f\u6709\u52b9\u671f\u9650\u304c\u6700\u3082\u5f8c\u306e\u8a3c\u660e\u66f8\u3092\u9078\u629e\u3057\u307e\u3059\u3002\u8a3c\u660e\u66f8\u3092\u53f3\u30af\u30ea\u30c3\u30af\u3057\u3001<strong><em>[All Tasks\uff08\u3059\u3079\u3066\u306e\u30bf\u30b9\u30af\uff09] <\/em><\/strong>\u3092\u9078\u629e\u3057\u3066\u304b\u3089<strong><em> [Export\uff08\u30a8\u30af\u30b9\u30dd\u30fc\u30c8)]\u00a0<\/em><\/strong>\u3092\u5b9f\u884c\u3057\u307e\u3059\uff08\u56f314\u53c2\u7167\uff09\u3002<\/p>\n<p><figure id=\"attachment_118010\" aria-describedby=\"caption-attachment-118010\" style=\"width: 900px\" class=\"wp-caption aligncenter\"><img  class=\"wp-image-118011 lozad\"  data-src=\"https:\/\/unit42-preview.paloaltonetworks.com\/wp-content\/uploads\/2021\/03\/word-image-135.png\" alt=\"\u8a3c\u660e\u66f8\u3092\u53f3\u30af\u30ea\u30c3\u30af\u3057\u3001[\u3059\u3079\u3066\u306e\u30bf\u30b9\u30af] \u3092\u9078\u629e\u3057\u3066\u304b\u3089 [\u30a8\u30af\u30b9\u30dd\u30fc\u30c8] \u3092\u5b9f\u884c\u3057\u307e\u3059\u3002\" width=\"900\" height=\"516\" \/><figcaption id=\"caption-attachment-118010\" class=\"wp-caption-text\">\u56f314 RDP\u8a3c\u660e\u66f8\u306e\u30a8\u30af\u30b9\u30dd\u30fc\u30c8<\/figcaption><\/figure>\u8a3c\u660e\u66f8\u3092\u30a8\u30af\u30b9\u30dd\u30fc\u30c8\u3059\u308b\u3068\u304d\u306f\u5fd8\u308c\u305a\u306b [Yes, export the private key\uff08\u306f\u3044\u3001\u79d8\u5bc6\u30ad\u30fc\u3092\u30a8\u30af\u30b9\u30dd\u30fc\u30c8\u3057\u307e\u3059\uff09] \u30aa\u30d7\u30b7\u30e7\u30f3\u3092\u9078\u629e\u3057\u3066\u304a\u304d\u307e\u3059\uff08\u56f315\u53c2\u7167\uff09\u3002<\/p>\n<figure id=\"attachment_118012\" class=\"wp-caption aligncenter\" style=\"width: 900px;\" aria-describedby=\"caption-attachment-118012\">\n<p><figure id=\"attachment_118013\" aria-describedby=\"caption-attachment-118013\" style=\"width: 900px\" class=\"wp-caption aligncenter\"><img  class=\"wp-image-118013 lozad\"  data-src=\"https:\/\/unit42-preview.paloaltonetworks.com\/wp-content\/uploads\/2021\/03\/word-image-136.png\" alt=\"\u30b9\u30af\u30ea\u30fc\u30f3\u30b7\u30e7\u30c3\u30c8\u306b\u306f\u6b21\u306e\u3088\u3046\u306b\u66f8\u304b\u308c\u3066\u3044\u307e\u3059\u3002\u300c\u79d8\u5bc6\u30ad\u30fc\u306e\u30a8\u30af\u30b9\u30dd\u30fc\u30c8: \u79d8\u5bc6\u30ad\u30fc\u3092\u8a3c\u660e\u66f8\u3068\u4e00\u7dd2\u306b\u30a8\u30af\u30b9\u30dd\u30fc\u30c8\u3059\u308b\u3053\u3068\u304c\u3067\u304d\u307e\u3059\u3002\u79d8\u5bc6\u30ad\u30fc\u306f\u30d1\u30b9\u30ef\u30fc\u30c9\u3067\u4fdd\u8b77\u3055\u308c\u3066\u3044\u307e\u3059\u3002\u79d8\u5bc6\u30ad\u30fc\u3092\u8a3c\u660e\u66f8\u3068\u4e00\u7dd2\u306b\u30a8\u30af\u30b9\u30dd\u30fc\u30c8\u3059\u308b\u5834\u5408\u306f\u3001\u30d1\u30b9\u30ef\u30fc\u30c9\u3092\u5165\u529b\u3059\u308b\u5fc5\u8981\u304c\u3042\u308a\u307e\u3059\u3002\u8a3c\u660e\u66f8\u3068\u4e00\u7dd2\u306b\u79d8\u5bc6\u30ad\u30fc\u3092\u30a8\u30af\u30b9\u30dd\u30fc\u30c8\u3057\u307e\u3059\u304b\uff1f\u300d\u5927\u304d\u306a\u9ed2\u77e2\u5370\u306f\u3001\u79d8\u5bc6\u9375\u304c\u8a3c\u660e\u66f8\u3068\u4e00\u7dd2\u306b\u30a8\u30af\u30b9\u30dd\u30fc\u30c8\u3055\u308c\u308b\u3088\u3046\u306b\u3059\u308b\u305f\u3081\u306b\u4f55\u3092\u9078\u629e\u3059\u3079\u304d\u304b\u3092\u793a\u3057\u3066\u3044\u307e\u3059\u3002 \" width=\"900\" height=\"803\" \/><figcaption id=\"caption-attachment-118013\" class=\"wp-caption-text\">\u56f315 \u8a3c\u660e\u66f8\u3068\u4e00\u7dd2\u306b\u5fd8\u308c\u305a\u306b\u79d8\u5bc6\u9375\u3092\u30a8\u30af\u30b9\u30dd\u30fc\u30c8\u3055\u305b\u308b<\/figcaption><\/figure><\/figure>\n<p>\u4eca\u56de\u306e\u30db\u30b9\u30c8\u306e\u5834\u5408\u3001\u8a3c\u660e\u66f8\u306e\u30a8\u30af\u30b9\u30dd\u30fc\u30c8\u5f62\u5f0f\u3068\u3057\u3066\u9078\u629e\u3067\u304d\u308b\u306e\u306fPKCS #12 (.PFX) \u30d5\u30a1\u30a4\u30eb\u5f62\u5f0f\u306e\u307f\u3067\u3057\u305f\uff08\u56f316\u53c2\u7167\uff09\u3002<\/p>\n<figure id=\"attachment_118014\" aria-describedby=\"caption-attachment-118014\" style=\"width: 900px\" class=\"wp-caption aligncenter\"><img  class=\"wp-image-118015 lozad\"  data-src=\"https:\/\/unit42-preview.paloaltonetworks.com\/wp-content\/uploads\/2021\/03\/word-image-137.png\" alt=\"Wireshark\u3067\u306eRDP\u30c8\u30e9\u30d5\u30a3\u30c3\u30af\u306e\u5fa9\u53f7\u306b\u95a2\u3059\u308b\u672c\u8b1b\u5ea7\u3067\u4f7f\u7528\u3055\u308c\u305f\u30db\u30b9\u30c8\u306e\u5834\u5408\u3001\u3053\u3053\u306b\u793a\u3055\u308c\u3066\u3044\u308b\u3088\u3046\u306b\u3001\u8a3c\u660e\u66f8\u3092PKCS\uff0312\uff08.PFX\uff09\u30d5\u30a1\u30a4\u30eb\u3068\u3057\u3066\u306e\u307f\u30a8\u30af\u30b9\u30dd\u30fc\u30c8\u3067\u304d\u305f \" width=\"900\" height=\"796\" \/><figcaption id=\"caption-attachment-118014\" class=\"wp-caption-text\">\u56f316 \u4eca\u56de\u306e\u5834\u5408\u8a3c\u660e\u66f8\u306f.pfx\u30d5\u30a1\u30a4\u30eb\u3068\u3057\u3066\u306e\u307f\u30a8\u30af\u30b9\u30dd\u30fc\u30c8\u53ef\u80fd<\/figcaption><\/figure>\n<p>\u8a3c\u660e\u66f8\u306b\u306f\u30d1\u30b9\u30ef\u30fc\u30c9\u304c\u5fc5\u8981\u3067\u3059\uff08\u56f317\u53c2\u7167\uff09\u3002\u3055\u3044\u308f\u3044\u3068\u304f\u306b\u30d1\u30b9\u30ef\u30fc\u30c9\u306e\u8907\u96d1\u6027\u306b\u3064\u3044\u3066\u306f\u8981\u4ef6\u304c\u306a\u304b\u3063\u305f\u306e\u3067\u30011\u6587\u5b57\u306e\u30d1\u30b9\u30ef\u30fc\u30c9\u3092\u4f7f\u7528\u3057\u307e\u3057\u305f\u3002<\/p>\n<figure id=\"attachment_118016\" aria-describedby=\"caption-attachment-118016\" style=\"width: 900px\" class=\"wp-caption aligncenter\"><img  class=\"wp-image-118017 lozad\"  data-src=\"https:\/\/unit42-preview.paloaltonetworks.com\/wp-content\/uploads\/2021\/03\/word-image-138.png\" alt=\"\u8a3c\u660e\u66f8\u306b\u306f\u30d1\u30b9\u30ef\u30fc\u30c9\u304c\u5fc5\u8981\u3055\u3044\u308f\u3044\u3068\u304f\u306b\u30d1\u30b9\u30ef\u30fc\u30c9\u306e\u8907\u96d1\u6027\u306b\u3064\u3044\u3066\u306f\u8981\u4ef6\u304c\u306a\u304b\u3063\u305f\u306e\u3067\u30011\u6587\u5b57\u306e\u30d1\u30b9\u30ef\u30fc\u30c9\u3092\u4f7f\u7528\u3057\u305f \" width=\"900\" height=\"801\" \/><figcaption id=\"caption-attachment-118016\" class=\"wp-caption-text\">\u56f317 \u30a8\u30af\u30b9\u30dd\u30fc\u30c8\u306b\u306f\u8a3c\u660e\u66f8\u7528\u306e\u30d1\u30b9\u30ef\u30fc\u30c9\u304c\u5fc5\u8981<\/figcaption><\/figure>\n<p>\u3053\u308c\u3067\u3088\u3046\u3084\u304f\u8a3c\u660e\u66f8\u3092\u79d8\u5bc6\u9375\u3068\u4e00\u7dd2\u306b\u30a8\u30af\u30b9\u30dd\u30fc\u30c8\u3067\u304d\u307e\u3057\u305f\uff08\u56f318\u53c2\u7167\uff09\u3002<\/p>\n<figure id=\"attachment_118018\" aria-describedby=\"caption-attachment-118018\" style=\"width: 900px\" class=\"wp-caption aligncenter\"><img  class=\"wp-image-118019 lozad\"  data-src=\"https:\/\/unit42-preview.paloaltonetworks.com\/wp-content\/uploads\/2021\/03\/word-image-139.png\" alt=\"\u56f3\u306e\u3088\u3046\u306b\u3001\u79d8\u5bc6\u9375\u3092\u4f7f\u7528\u3057\u3066\u8a3c\u660e\u66f8\u3092\u30a8\u30af\u30b9\u30dd\u30fc\u30c8\u3057\u307e\u3057\u305f\u3002 \" width=\"900\" height=\"789\" \/><figcaption id=\"caption-attachment-118018\" class=\"wp-caption-text\">\u56f318 \u8a3c\u660e\u66f8\u306e\u30a8\u30af\u30b9\u30dd\u30fc\u30c8\u3092\u5b8c\u4e86\u3057\u305f\u3068\u3053\u308d<\/figcaption><\/figure>\n<p>Jailbreak\u3092\u4f7f\u308f\u305a\u306bMimikatz\u3067\u30b5\u30fc\u30d0\u30fc\u8a3c\u660e\u66f8\u3092\u62bd\u51fa\u3059\u308b\u3053\u3068\u3082\u3067\u304d\u307e\u3059\u3002Mimikatz\u3092\u4f7f\u7528\u3057\u3066RDP\u30b5\u30fc\u30d0\u30fc\u8a3c\u660e\u66f8\u3092\u53d6\u5f97\u3059\u308b\u624b\u9806\u306f\u3001\u3053\u3061\u3089\u306e<a href=\"https:\/\/github.com\/FreeRDP\/FreeRDP\/wiki\/Mimikatz\">GitHub<\/a>\u3092\u53c2\u7167\u3057\u3066\u304f\u3060\u3055\u3044\u3002<\/p>\n<p>\u4eca\u56de\u306f\u8a3c\u660e\u66f8\u3092Jailbreak\u3067\u53d6\u5f97\u3057\u305f\u306e\u3067\u3001Linux\u30db\u30b9\u30c8\u306b\u3053\u306e\u8a3c\u660e\u66f8\u3092\u79fb\u3057\u3066OpenSSL\u3067\u79d8\u5bc6\u9375\u3092\u62bd\u51fa\u3057\u307e\u3059\u3002\u307e\u305a\u306f\u6b21\u306eOpenSSL\u30b3\u30de\u30f3\u30c9\u3067PEM\u5f62\u5f0f\u3067\u30ad\u30fc\u3092\u62bd\u51fa\u3057\u307e\u3059\u3002<\/p>\n<pre class=\"lang:default decode:true \">openssl pkcs12 -in server_certificate.pfx -nocerts -out server_key.pem -nodes<\/pre>\n<p>\u79d8\u5bc6\u9375\u304b\u3089\u30d1\u30b9\u30d5\u30ec\u30fc\u30ba\u3092\u524a\u9664\u3059\u308b\u305f\u3081\u6b21\u306e\u30b3\u30de\u30f3\u30c9\u3082\u5b9f\u884c\u3057\u307e\u3059\u3002<\/p>\n<pre class=\"lang:default decode:true \">openssl rsa -in server_key.pem -out server.key<\/pre>\n<p>\u3053\u308c\u3067RDP\u30b5\u30fc\u30d0\u30fc\u306e\u79d8\u5bc6\u9375\u3092\u5f97\u3089\u308c\u307e\u3057\u305f\uff08\u56f319\u53c2\u7167\uff09\u3002<\/p>\n<figure id=\"attachment_118020\" class=\"wp-caption aligncenter\" style=\"width: 900px;\" aria-describedby=\"caption-attachment-118020\">\n<p><figure id=\"attachment_118050\" aria-describedby=\"caption-attachment-118050\" style=\"width: 2020px\" class=\"wp-caption aligncenter\"><a href=\"https:\/\/unit42-preview.paloaltonetworks.com\/wp-content\/uploads\/2021\/04\/word-image-140-jp.png\" rel=\"wpdevart_lightbox\"><img  class=\"wp-image-118050 size-full lozad\"  data-src=\"https:\/\/unit42-preview.paloaltonetworks.com\/wp-content\/uploads\/2021\/04\/word-image-140-jp.png\" alt=\"\u9ed2\u3044\u77e2\u5370\u3068\u300c\u79d8\u5bc6\u9375\u300d\u3068\u3044\u3046\u30b3\u30fc\u30eb\u30a2\u30a6\u30c8\u3067\u30b5\u30fc\u30d0\u30fc\u306e\u8a3c\u660e\u66f8\u304b\u3089\u79d8\u5bc6\u9375\u3092\u62bd\u51fa\u3057\u305f\u5834\u6240\u3092\u793a\u3057\u3066\u3044\u307e\u3059\u3002 \" width=\"2020\" height=\"1358\" \/><\/a><figcaption id=\"caption-attachment-118050\" class=\"wp-caption-text\">\u56f319 \u8a3c\u660e\u66f8\u304b\u3089\u62bd\u51fa\u3055\u308c\u305f\u30b5\u30fc\u30d0\u30fc\u306e\u79d8\u5bc6\u9375<\/figcaption><\/figure><\/figure>\n<p>\u30b5\u30fc\u30d0\u30fc\u306e\u79d8\u5bc6\u9375\u3092\u4f7f\u7528\u3059\u308b\u524d\u306b\u30012\u53f0\u306eWindows\u30db\u30b9\u30c8\u9593\u3067RDP\u30bb\u30c3\u30b7\u30e7\u30f3\u3092\u30ad\u30e3\u30d7\u30c1\u30e3\u3057\u3001pcap\u3068\u3057\u3066\u4fdd\u5b58\u3059\u308b\u5fc5\u8981\u304c\u3042\u308a\u307e\u3059\u3002<\/p>\n<h4><a id=\"post-117982-_jgwj9sg1whrs\"><\/a>\u624b\u98064: RDP\u30c8\u30e9\u30d5\u30a3\u30c3\u30af\u3092\u30ad\u30e3\u30d7\u30c1\u30e3\u3059\u308b<\/h4>\n<p>\u540c\u3058\u4eee\u60f3\u74b0\u5883\u306b2\u53f0\u306eWindows\u30db\u30b9\u30c8\u304c\u3042\u308b\u5834\u5408\u3001<a href=\"https:\/\/www.wireshark.org\/docs\/man-pages\/dumpcap.html\">dumpcap<\/a>\u3001<a href=\"https:\/\/www.tcpdump.org\/\">tcpdump<\/a>\u3001Wireshark\u306a\u3069\u306e\u30c4\u30fc\u30eb\u3092\u4f7f\u3063\u3066\u3001\u30d7\u30ed\u30df\u30b9\u30ad\u30e3\u30b9\u30e2\u30fc\u30c9\u3067VLAN\u5185\u306e\u30cd\u30c3\u30c8\u30ef\u30fc\u30af\u30c8\u30e9\u30d5\u30a3\u30c3\u30af\u3092\u30ad\u30e3\u30d7\u30c1\u30e3\u3059\u308b\u3053\u3068\u304c\u3067\u304d\u307e\u3059\u3002\u30ad\u30e3\u30d7\u30c1\u30e3\u3092\u958b\u59cb\u3057\u305f\u3089\u3001Windows\u30af\u30e9\u30a4\u30a2\u30f3\u30c8\u4e0a\u304b\u3089\u30ea\u30e2\u30fc\u30c8\u30c7\u30b9\u30af\u30c8\u30c3\u30d7\u63a5\u7d9a\u30a2\u30d7\u30ea\u3067RDP\u30b5\u30fc\u30d0\u30fc\u3068\u3057\u3066\u6a5f\u80fd\u3059\u308b\u3082\u30461\u53f0\u306eWindows\u30db\u30b9\u30c8\u306b\u30ed\u30b0\u30a4\u30f3\u3057\u307e\u3059\u3002\u3053\u3053\u3067\u306eRDP\u30b5\u30fc\u30d0\u30fc\u306e\u30db\u30b9\u30c8\u540d\u306f<strong><em>DESKTOP-USER1PC<\/em><\/strong>\u3067\u3059\u3002<\/p>\n<figure id=\"attachment_118022\" aria-describedby=\"caption-attachment-118022\" style=\"width: 900px\" class=\"wp-caption aligncenter\"><img  class=\"wp-image-118023 lozad\"  data-src=\"https:\/\/unit42-preview.paloaltonetworks.com\/wp-content\/uploads\/2021\/03\/word-image-141.png\" alt=\"\u3053\u306e\u56f3\u3067\u306fWindows\u30af\u30e9\u30a4\u30a2\u30f3\u30c8\u304cRDP\u306b\u3088\u308aRDP\u30b5\u30fc\u30d0\u30fc\u3068\u3057\u3066\u6a5f\u80fd\u3059\u308b\u3082\u30461\u53f0\u306eWindows\u30db\u30b9\u30c8\u306b\u30ed\u30b0\u30a4\u30f3\u3057\u3066\u3044\u307e\u3059\u3002 \" width=\"900\" height=\"550\" \/><figcaption id=\"caption-attachment-118022\" class=\"wp-caption-text\">\u56f320 \u30ea\u30e2\u30fc\u30c8\u30c7\u30b9\u30af\u30c8\u30c3\u30d7\u63a5\u7d9a\u30a2\u30d7\u30ea\u3067RDP\u30b5\u30fc\u30d0\u30fc\u306b\u30ed\u30b0\u30a4\u30f3\u3059\u308b<\/figcaption><\/figure>\n<p>pcap\u3092\u30ad\u30e3\u30d7\u30c1\u30e3\u3057\u306a\u304c\u3089\u3001<strong><em>DESKTOP-USER1PC<\/em><\/strong>\u306b\u30ed\u30b0\u30a4\u30f3\u3057\u3001\u30c9\u30ad\u30e5\u30e1\u30f3\u30c8\u3092\u958b\u3044\u305f\u308a\u3001Web\u3092\u30d6\u30e9\u30a6\u30b8\u30f3\u30b0\u3059\u308b\u306a\u3069\u306e\u4e00\u822c\u7684\u306a\u30bf\u30b9\u30af\u3092\u5b9f\u884c\u3057\u307e\u3059\u3002<\/p>\n<figure id=\"attachment_118024\" aria-describedby=\"caption-attachment-118024\" style=\"width: 900px\" class=\"wp-caption aligncenter\"><img  class=\"wp-image-118025 lozad\"  data-src=\"https:\/\/unit42-preview.paloaltonetworks.com\/wp-content\/uploads\/2021\/03\/word-image-142.png\" alt=\"pcap\u3092\u30ad\u30e3\u30d7\u30c1\u30e3\u3057\u306a\u304c\u3089\u3001DESKTOP-USER1PC\u306b\u30ed\u30b0\u30a4\u30f3\u3057\u3066\u3001\u305f\u3068\u3048\u3070\u30c9\u30ad\u30e5\u30e1\u30f3\u30c8\u3092\u958b\u304f\u3001Web\u3092\u30d6\u30e9\u30a6\u30b8\u30f3\u30b0\u3059\u308b\u306a\u3069\u306e\u57fa\u672c\u7684\u306a\u30bf\u30b9\u30af\u3092\u5b9f\u884c\u3057\u307e\u3059\u3002 \" width=\"900\" height=\"681\" \/><figcaption id=\"caption-attachment-118024\" class=\"wp-caption-text\">\u56f321 \u30ea\u30e2\u30fc\u30c8\u30c7\u30b9\u30af\u30c8\u30c3\u30d7\u63a5\u7d9a\u3057\u3066\u304b\u3089\u3044\u304f\u3064\u304b\u4e00\u822c\u7684\u306a\u30c7\u30b9\u30af\u30c8\u30c3\u30d7\u30bf\u30b9\u30af\u3092\u5b9f\u884c\u3059\u308b<\/figcaption><\/figure>\n<p>1\u5206\u307b\u3069\u305d\u3046\u3057\u3066\u30bf\u30b9\u30af\u3092\u5b9f\u884c\u3057\u305f\u5f8c\u3067\u3001\u30ea\u30e2\u30fc\u30c8\u30c7\u30b9\u30af\u30c8\u30c3\u30d7\u63a5\u7d9a\u30a2\u30d7\u30ea\u304b\u3089\u30ed\u30b0\u30aa\u30d5\u3057\u3001VLAN\u3067\u306e\u30cd\u30c3\u30c8\u30ef\u30fc\u30af\u30c8\u30e9\u30d5\u30a3\u30c3\u30af\u30ad\u30e3\u30d7\u30c1\u30e3\u3092\u505c\u6b62\u3057\u307e\u3059\u3002<\/p>\n<h4><a id=\"post-117982-_ntsbi94fzlsb\"><\/a>\u624b\u98065: Wireshark\u3067pcap\u3092\u958b\u304f<\/h4>\n<p>Wireshark\u3067RDP\u30bb\u30c3\u30b7\u30e7\u30f3\u306epcap\u3092\u958b\u304d\u307e\u3059\u3002\u3067\u3059\u304c\u3001Wireshark\u306e\u8868\u793a\u30d5\u30a3\u30eb\u30bf\u3067\u300c<strong><em>rdp\u300d<\/em><\/strong>\u3092\u30d5\u30a3\u30eb\u30bf\u30ea\u30f3\u30b0\u3057\u3066\u3082\u3001RDP\u30c8\u30e9\u30d5\u30a3\u30c3\u30af\u304c\u6697\u53f7\u5316\u3055\u308c\u3066\u3044\u308b\u305f\u3081\u306b\u4f55\u3082\u8868\u793a\u3055\u308c\u307e\u305b\u3093\u3002\u56f322\u306f\u3001pcap\u3067RDP\u3092\u30d5\u30a3\u30eb\u30bf\u30ea\u30f3\u30b0\u3057\u305f\u3068\u304d\u306b\u8868\u793a\u3055\u308c\u308b\u7a7a\u767d\u306e\u30da\u30fc\u30b8\u3092\u793a\u3057\u3066\u3044\u307e\u3059\u3002<\/p>\n<figure id=\"attachment_118026\" aria-describedby=\"caption-attachment-118026\" style=\"width: 900px\" class=\"wp-caption aligncenter\"><img  class=\"wp-image-118027 lozad\"  data-src=\"https:\/\/unit42-preview.paloaltonetworks.com\/wp-content\/uploads\/2021\/03\/word-image-143.png\" alt=\"RDP\u30c8\u30e9\u30d5\u30a3\u30c3\u30af\u306f\u6697\u53f7\u5316\u3055\u308c\u3066\u3044\u308b\u306e\u3067pcap\u3067RDP\u3092\u30d5\u30a3\u30eb\u30bf\u30ea\u30f3\u30b0\u3057\u3066\u3082\u5217\u304c\u7a7a\u767d\u306b\u306a\u308b\u3002 \" width=\"900\" height=\"417\" \/><figcaption id=\"caption-attachment-118026\" class=\"wp-caption-text\">\u56f322 RDP\u30c8\u30e9\u30d5\u30a3\u30c3\u30af\u306f\u6697\u53f7\u5316\u3055\u308c\u3066\u3044\u308b\u305f\u3081RDP\u60c5\u5831\u3092\u6c42\u3081\u3066\u30d5\u30a3\u30eb\u30bf\u30ea\u30f3\u30b0\u3057\u3066\u3082\u4f55\u3082\u8868\u793a\u3055\u308c\u306a\u3044<\/figcaption><\/figure>\n<p>\u3053\u3053\u3067\u30b5\u30fc\u30d0\u30fc\u306e\u79d8\u5bc6\u9375\u3092\u4f7f\u3063\u3066Wireshark\u306eRDP\u30c8\u30e9\u30d5\u30a3\u30c3\u30af\u3092\u5fa9\u53f7\u3057\u3066\u3084\u308b\u3068\u3053\u308c\u3068\u306f\u307e\u3063\u305f\u304f\u9055\u3046\u7d50\u679c\u306b\u306a\u308a\u307e\u3059\u3002<\/p>\n<h4><a id=\"post-117982-_suw3finnk2pe\"><\/a>\u624b\u98066: Wireshark\u306b\u79d8\u5bc6\u9375\u3092\u8aad\u307f\u8fbc\u3080<\/h4>\n<p>\u4eca\u56de\u30ad\u30e3\u30d7\u30c1\u30e3\u3057\u305fpcaps\u306e\u5834\u5408\u3001RDP\u30b5\u30fc\u30d0\u30fc\u3067\u3042\u308b<strong><em>DESKTOP-USER1PC<\/em><\/strong>\u306eIP\u30a2\u30c9\u30ec\u30b9\u306f\u300c<strong><em>10.3.4.138\u300d<\/em><\/strong>\u3067\u3001RDP\u30c8\u30e9\u30d5\u30a3\u30c3\u30af\u306f\u300c3389\/tcp\u300d\u7d4c\u7531\u3067\u767a\u751f\u3057\u3066\u3044\u307e\u3059\u3002Wireshark\u3067RDP\u30c8\u30e9\u30d5\u30a3\u30c3\u30af\u3092\u9069\u5207\u306b\u5fa9\u53f7\u3059\u308b\u306b\u306f\u3053\u306e\u60c5\u5831\u304c\u5fc5\u8981\u306b\u306a\u308a\u307e\u3059\u3002<\/p>\n<p>Windows\/Linux \u306e\u5834\u5408\u306f [\u7de8\u96c6]\u3001[\u8a2d\u5b9a] \u306e\u9806\u306b\u958b\u304d\u307e\u3059\u3002Mac OS \u306e\u5834\u5408\u306f [Wireshark]\u3001[Preferences] \u306e\u9806\u306b\u958b\u304d\u307e\u3059\u3002\u56f323\u306b\u793a\u3059\u3068\u304a\u308a\u306b<strong><em>[Protocols]<\/em><\/strong>\u30bb\u30af\u30b7\u30e7\u30f3\u3092\u5c55\u958b\u3057\u307e\u3059\u3002<\/p>\n<p><figure id=\"attachment_118028\" aria-describedby=\"caption-attachment-118028\" style=\"width: 900px\" class=\"wp-caption aligncenter\"><img  class=\"wp-image-118029 lozad\"  data-src=\"https:\/\/unit42-preview.paloaltonetworks.com\/wp-content\/uploads\/2021\/03\/word-image-144.png\" alt=\"Wireshark\u3067RDP\u30c8\u30e9\u30d5\u30a3\u30c3\u30af\u3092\u5fa9\u53f7\u3059\u308b\u306b\u306f\u3001IP\u30a2\u30c9\u30ec\u30b9\u3068\u30dd\u30fc\u30c8\u60c5\u5831\u304c\u5fc5\u8981In Wireshark, we used the Preferences window and expanded the Protocols section as shown. \" width=\"900\" height=\"555\" \/><figcaption id=\"caption-attachment-118028\" class=\"wp-caption-text\">\u56f323 Wireshark\u306e [\u8a2d\u5b9a] \u304b\u3089 [Protocols] \u30bb\u30af\u30b7\u30e7\u30f3\u306b\u79fb\u52d5\u3057\u305f\u3068\u3053\u308d<\/figcaption><\/figure>[Protocols] \u3092\u30b9\u30af\u30ed\u2015\u30eb\u3057\u3066\u3044\u304d\u3001Wireshark 3.x\u306e\u5834\u5408\u306f\u300c<strong><em>TLS<\/em><\/strong>\u300d\u3068\u3044\u3046\u9805\u76ee\u3092\u9078\u629e\u3057\u307e\u3059\uff08Wireshark 2.x\u3067\u306f\u300c<strong><em>SSL<\/em><\/strong>\u300d\u3068\u3044\u3046\u9805\u76ee\u3092\u9078\u629e\u3057\u307e\u3059\uff09\u3002<strong><em>\u00a0[RSA keys list] <\/em><\/strong>\u306e\u6a2a\u306b [Edit] \u30dc\u30bf\u30f3\u304c\u3042\u308b\u306e\u3067\u3001\u3053\u306e [Edit] \u30dc\u30bf\u30f3\u3092\u30af\u30ea\u30c3\u30af\u3057\u305f\u5f8c\u3001[+] \u30dc\u30bf\u30f3\u3092\u30af\u30ea\u30c3\u30af\u3057\u3066\u3001\u4f7f\u3063\u3066\u3044\u308bRDP\u30b5\u30fc\u30d0\u30fc\u306eIP\u30a2\u30c9\u30ec\u30b9\uff08\u4f8b: 10.3.4.138\uff09\u3001RDP\u306e\u30dd\u30fc\u30c8\uff083389\/tcp\uff09\u3001\u30d7\u30ed\u30c8\u30b3\u30eb\uff08TPKT\uff09\u3001\u79d8\u5bc6\u9375\u30d5\u30a1\u30a4\u30eb\u3092\u4fdd\u5b58\u3057\u305f\u5834\u6240\u3078\u306e\u30d5\u30a1\u30a4\u30eb\u30d1\u30b9\uff08\u4f8b: \/home\/xubuntu-user\/Desktop\/server.key\uff09\u3092\u9806\u306b\u6307\u5b9a\u3057\u307e\u3059\u3002\u3053\u3053\u3067\u306e\u4f8b\u3092\u56f324\u306b\u793a\u3057\u307e\u3059\u3002<\/p>\n<p><figure id=\"attachment_118030\" aria-describedby=\"caption-attachment-118030\" style=\"width: 900px\" class=\"wp-caption aligncenter\"><img  class=\"wp-image-118031 lozad\"  data-src=\"https:\/\/unit42-preview.paloaltonetworks.com\/wp-content\/uploads\/2021\/03\/word-image-145.png\" alt=\"\u3053\u306e [Edit] \u30dc\u30bf\u30f3\u3092\u30af\u30ea\u30c3\u30af\u3057\u305f\u5f8c\u3001[+] \u30dc\u30bf\u30f3\u3092\u30af\u30ea\u30c3\u30af\u3057\u3001\u4f7f\u3063\u3066\u3044\u308bRDP\u30b5\u30fc\u30d0\u30fc\u306eIP\u30a2\u30c9\u30ec\u30b9\uff08\u4f8b: 10.3.4.138\uff09\u3001RDP\u306e\u30dd\u30fc\u30c8\uff083389\/tcp\uff09\u3001\u30d7\u30ed\u30c8\u30b3\u30eb\uff08TPKT\uff09\u3001\u79d8\u5bc6\u9375\u30d5\u30a1\u30a4\u30eb\u3092\u4fdd\u5b58\u3057\u305f\u5834\u6240\u3078\u306e\u30d5\u30a1\u30a4\u30eb\u30d1\u30b9\uff08\u4f8b: \/home\/xubuntu-user\/Desktop\/server.key\uff09\u3092\u6307\u5b9a\u3057\u307e\u3059\u3002\" width=\"900\" height=\"533\" \/><figcaption id=\"caption-attachment-118030\" class=\"wp-caption-text\">\u56f324 TLS\u30bb\u30af\u30b7\u30e7\u30f3\u306b\u79fb\u52d5\u3057\u3001\u79d8\u5bc6\u9375\u3092RSA keys list\u306b\u8ffd\u52a0\u3059\u308b\uff08Wireshark 2.x \u306e\u5834\u5408\u306f SSL \u30bb\u30af\u30b7\u30e7\u30f3\u3068\u8aad\u307f\u66ff\u3048\u308b\uff09<\/figcaption><\/figure>Wireshark\u3067RDP\u30c8\u30e9\u30d5\u30a3\u30c3\u30af\u5fa9\u53f7\u7528\u306e\u79d8\u5bc6\u9375\u3092\u8a2d\u5b9a\u5f8c\u3001\u3082\u3046\u4e00\u5ea6pcap\u3092\u78ba\u8a8d\u3059\u308c\u3070\u3001\u4eca\u5ea6\u306f\u305a\u3063\u3068\u3088\u3044\u7d50\u679c\u304c\u5f97\u3089\u308c\u307e\u3059\u3002<\/p>\n<h4><a id=\"post-117982-_tialxfntilvj\"><\/a>\u624b\u98067: RDP\u30c7\u30fc\u30bf\u3092\u8abf\u3079\u308b<\/h4>\n<p>\u79d8\u5bc6\u9375\u3092\u8aad\u307f\u8fbc\u307e\u305b\u3066\u304b\u3089RDP\u3092\u30d5\u30a3\u30eb\u30bf\u30ea\u30f3\u30b0\u3057\u307e\u3059\u3002\u3059\u308b\u3068\u4eca\u5ea6\u306f\u5217\u306e\u8868\u793a\u304c\u7a7a\u767d\u3067\u306f\u306a\u304f\u306a\u308a\u3001\u56f325\u306b\u793a\u3059\u3088\u3046\u306b\u8907\u6570\u306e\u7d50\u679c\u304c\u5f97\u3089\u308c\u307e\u3059\u3002<\/p>\n<figure id=\"attachment_118032\" aria-describedby=\"caption-attachment-118032\" style=\"width: 900px\" class=\"wp-caption aligncenter\"><img  class=\"wp-image-118033 lozad\"  data-src=\"https:\/\/unit42-preview.paloaltonetworks.com\/wp-content\/uploads\/2021\/03\/word-image-146.png\" alt=\"\u79d8\u5bc6\u9375\u3092\u8aad\u307f\u8fbc\u3093\u3060\u306e\u3067RDP\u30c8\u30e9\u30d5\u30a3\u30c3\u30af\u306e\u5fa9\u53f7\u304c\u53ef\u80fd\u306b\u306a\u3063\u3066\u3044\u307e\u3059\u3002\u3053\u306e\u30b9\u30af\u30ea\u30fc\u30f3\u30b7\u30e7\u30c3\u30c8\u306f\u3001RDP\u3092\u30d5\u30a3\u30eb\u30bf\u30ea\u30f3\u30b0\u3057\u3066\u3082\u5217\u8868\u793a\u304c\u7a7a\u767d\u3067\u306f\u306a\u304f\u306a\u3063\u305f\u3053\u3068\u3092\u793a\u3057\u3066\u3044\u307e\u3059\u3002 \" width=\"900\" height=\"524\" \/><figcaption id=\"caption-attachment-118032\" class=\"wp-caption-text\">\u56f325 \u79d8\u5bc6\u9375\u304cWireshark\u306b\u8aad\u307f\u8fbc\u307e\u308c\u305f\u5f8c\u3067\u540c\u3058\u30d1\u30b1\u30c3\u30c8\u30ad\u30e3\u30d7\u30c1\u30e3\u306eRDP\u30a2\u30af\u30c6\u30a3\u30d3\u30c6\u30a3\u3092\u8868\u793a\u3057\u305f\u3068\u3053\u308d<\/figcaption><\/figure>\n<p>\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u5c02\u9580\u5bb6\u304cRDP\u306e\u8106\u5f31\u6027\u3084\u653b\u6483\u306e\u767a\u898b\u306e\u305f\u3081\u306b\u30b7\u30b0\u30cd\u30c1\u30e3\u3092\u66f8\u304f\u3055\u3044\u306f\u3001\u56f325\u3067\u660e\u3089\u304b\u306b\u306a\u3063\u305f\u3088\u3046\u306a\u60c5\u5831\u304c\u696d\u52d9\u4e0a\u91cd\u8981\u306b\u306a\u308a\u307e\u3059\u3002<\/p>\n<h2><a id=\"post-117982-_m1zq4rdndn98\"><\/a>\u7d50\u8ad6<\/h2>\n<p>\u672c\u7a3f\u3067\u306fRDP\u30bb\u30c3\u30b7\u30e7\u30f3\u306e\u30c8\u30e9\u30d5\u30a3\u30c3\u30af\u5fa9\u53f7\u306b\u3042\u305f\u3063\u3066\u3069\u306e\u3088\u3046\u306b\u74b0\u5883\u3092\u6574\u3048\u308c\u3070\u3088\u3044\u304b\u306b\u3064\u3044\u3066\u898b\u3066\u3044\u304d\u307e\u3057\u305f\u3002\u3053\u308c\u306b\u306fWindows 10 Professional\u3092\u5b9f\u884c\u3059\u308b\u30db\u30b9\u30c8\u30922\u53f0\u4eee\u60f3LAN\u74b0\u5883\u306b\u7528\u610f\u3059\u308b\u306e\u304c\u3044\u3061\u3070\u3093\u7c21\u5358\u3067\u3057\u3087\u3046\u3002\u30af\u30e9\u30a4\u30a2\u30f3\u30c8\u5074\u3067Forward Secrecy\u6697\u53f7\u30a2\u30eb\u30b4\u30ea\u30ba\u30e0\u3092\u524a\u9664\u3057\u3066\u304b\u3089\u3001RDP\u30b5\u30fc\u30d0\u30fc\u3068\u3057\u3066\u6a5f\u80fd\u3055\u305b\u308bWindows\u30db\u30b9\u30c8\u306e\u5074\u3067\u79d8\u5bc6\u9375\u3092\u62bd\u51fa\u3057\u3001\u30cd\u30c3\u30c8\u30ef\u30fc\u30af\u30c8\u30e9\u30d5\u30a3\u30c3\u30af\u306epcap\u3092\u30ad\u30e3\u30d7\u30c1\u30e3\u3057\u3001\u30bb\u30c3\u30b7\u30e7\u30f3\u7d42\u4e86\u5f8c\u306b\u30b5\u30fc\u30d0\u30fc\u306e\u79d8\u5bc6\u9375\u3092\u4f7f\u3063\u3066RDP\u30c8\u30e9\u30d5\u30a3\u30c3\u30af\u3092\u5fa9\u53f7\u3057\u307e\u3057\u305f\u3002<\/p>\n<p>\u3053\u3046\u3057\u305f\u74b0\u5883\u304c\u3042\u308c\u3070\u3001\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u5c02\u9580\u5bb6\u306f\u3001RDP\u306e\u8106\u5f31\u6027\u3084\u653b\u6483\u3092\u691c\u51fa\u3059\u308b\u30b7\u30b0\u30cd\u30c1\u30e3\u3092\u4f5c\u6210\u3057\u3084\u3059\u304f\u306a\u308b\u3067\u3057\u3087\u3046\u3002<\/p>\n<p>\u300eWireshark\u306b\u3088\u308b\u30d1\u30b1\u30c3\u30c8\u89e3\u6790\u8b1b\u5ea7\u300f\u30b7\u30ea\u30fc\u30ba\u306e\u4ee5\u524d\u306e\u8b1b\u5ea7\u306f\u4ee5\u4e0b\u304b\u3089\u78ba\u8a8d\u3057\u3066\u304f\u3060\u3055\u3044\u3002<\/p>\n<ul>\n<li><a href=\"https:\/\/unit42.paloaltonetworks.jp\/unit42-customizing-wireshark-changing-column-display\/\">Wireshark \u306b\u3088\u308b\u30d1\u30b1\u30c3\u30c8\u89e3\u6790\u8b1b\u5ea7 1: Wireshark\u306e\u8868\u793a\u5217\u3092\u30ab\u30b9\u30bf\u30de\u30a4\u30ba\u3059\u308b<\/a><\/li>\n<li><a href=\"https:\/\/unit42.paloaltonetworks.jp\/using-wireshark-display-filter-expressions\/\">Wireshark \u306b\u3088\u308b\u30d1\u30b1\u30c3\u30c8\u89e3\u6790\u8b1b\u5ea7 2: \u8105\u5a01\u30a4\u30f3\u30c6\u30ea\u30b8\u30a7\u30f3\u30b9\u8abf\u67fb\u306b\u5f79\u7acb\u3064\u30d5\u30a3\u30eb\u30bf\u30ea\u30f3\u30b0\u8a2d\u5b9a<\/a><\/li>\n<li><a href=\"https:\/\/unit42.paloaltonetworks.jp\/using-wireshark-identifying-hosts-and-users\/\">Wireshark \u306b\u3088\u308b\u30d1\u30b1\u30c3\u30c8\u89e3\u6790\u8b1b\u5ea7 3: \u30db\u30b9\u30c8\u3068\u30e6\u30fc\u30b6\u30fc\u3092\u7279\u5b9a\u3059\u308b<\/a><\/li>\n<li><a href=\"https:\/\/unit42.paloaltonetworks.jp\/using-wireshark-exporting-objects-from-a-pcap\/\">Wireshark \u306b\u3088\u308b\u30d1\u30b1\u30c3\u30c8\u89e3\u6790\u8b1b\u5ea7 4: Pcap\u304b\u3089\u306e\u30aa\u30d6\u30b8\u30a7\u30af\u30c8\u306e\u30a8\u30af\u30b9\u30dd\u30fc\u30c8<\/a><\/li>\n<li><a href=\"https:\/\/unit42.paloaltonetworks.jp\/wireshark-tutorial-examining-trickbot-infections\/\">Wireshark \u306b\u3088\u308b\u30d1\u30b1\u30c3\u30c8\u89e3\u6790\u8b1b\u5ea7 5: Trickbot\u611f\u67d3\u306e\u8abf\u67fb<\/a><\/li>\n<li><a href=\"https:\/\/unit42.paloaltonetworks.jp\/wireshark-tutorial-examining-ursnif-infections\/\">Wireshark \u306b\u3088\u308b\u30d1\u30b1\u30c3\u30c8\u89e3\u6790\u8b1b\u5ea7 6: Ursnif\u611f\u67d3\u306e\u8abf\u67fb<\/a><\/li>\n<li><a href=\"https:\/\/unit42.paloaltonetworks.jp\/tutorial-qakbot-infection\/\">Wireshark \u306b\u3088\u308b\u30d1\u30b1\u30c3\u30c8\u89e3\u6790\u8b1b\u5ea7 7: Qakbot\u611f\u67d3\u306e\u8abf\u67fb<\/a><\/li>\n<li><a href=\"https:\/\/unit42.paloaltonetworks.jp\/wireshark-tutorial-decrypting-https-traffic\/\">Wireshark \u306b\u3088\u308b\u30d1\u30b1\u30c3\u30c8\u89e3\u6790\u8b1b\u5ea7 8: HTTPS\u30c8\u30e9\u30d5\u30a3\u30c3\u30af\u306e\u5fa9\u53f7<\/a><\/li>\n<li><a href=\"https:\/\/unit42.paloaltonetworks.jp\/wireshark-tutorial-dridex-infection-traffic\/\">Wireshark \u306b\u3088\u308b\u30d1\u30b1\u30c3\u30c8\u89e3\u6790\u8b1b\u5ea7 9: Dridex\u611f\u67d3\u30c8\u30e9\u30d5\u30a3\u30c3\u30af\u306e\u8abf\u67fb<\/a><\/li>\n<li><a href=\"https:\/\/unit42.paloaltonetworks.com\/ja\/wireshark-tutorial-emotet-infection\/\">Wireshark \u306b\u3088\u308b\u30d1\u30b1\u30c3\u30c8\u89e3\u6790\u8b1b\u5ea7 10: Emotet \u611f\u67d3\u30c8\u30e9\u30d5\u30a3\u30c3\u30af\u306e\u8abf\u67fb<\/a><\/li>\n<\/ul>\n","protected":false},"excerpt":{"rendered":"<p>\u6982\u8981 \u8fd1\u5e74\u3001\u653b\u6483\u8005\u304c\u30ea\u30e2\u30fc\u30c8\u30c7\u30b9\u30af\u30c8\u30c3\u30d7\u30d7\u30ed\u30c8\u30b3\u30eb\uff08RDP\uff09\u3092\u60aa\u7528\u3057\u3066\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u306e\u7518\u3044\u30b5\u30fc\u30d0\u30fc\u3084\u30a8\u30f3\u30bf\u30fc\u30d7\u30e9\u30a4\u30ba\u30cd\u30c3\u30c8\u30ef\u30fc\u30af\u306b\u30a2\u30af\u30bb\u30b9\u3059\u308b\u30b1\u30fc\u30b9\u304c\u5897\u3048\u3066\u3044\u307e\u3059\u3002\u307e\u305f2017\u5e74\u4ee5\u964dRDP\u306f\u30e9\u30f3\u30b5\u30e0\u30a6\u30a7\u30a2\u3092\u4f7f\u7528\u3059\u308b\u30de\u30eb\u30a6\u30a7<\/p>\n","protected":false},"author":35,"featured_media":134402,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"inline_featured_image":false,"footnotes":""},"categories":[4438,4435],"tags":[6043,4637,4615,4617],"product_categories":[],"coauthors":[485,2718],"class_list":["post-118040","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cybersecurity-tutorials-ja","category-learning-hub-ja","tag-rdp-ja","tag-windows-ja","tag-wireshark-ja","tag-wireshark-tutorial-ja"],"yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v27.0 (Yoast SEO v27.0) - https:\/\/yoast.com\/product\/yoast-seo-premium-wordpress\/ -->\n<title>Wireshark\u306b\u3088\u308b\u30d1\u30b1\u30c3\u30c8\u89e3\u6790\u8b1b\u5ea7 11: RDP\u30c8\u30e9\u30d5\u30a3\u30c3\u30af\u306e\u5fa9\u53f7<\/title>\n<meta name=\"description\" content=\"RDP \u306e\u8106\u5f31\u6027\u3092\u691c\u77e5\u3059\u308b\u30b7\u30b0\u30cd\u30c1\u30e3\u3092\u4f5c\u6210\u3057\u3066\u653b\u6483\u3092\u963b\u6b62\u3059\u308b\u3068\u304d\u306f\u3001RDP \u901a\u4fe1\u306e\u5fa9\u53f7\u304c\u5fc5\u8981\u306b\u306a\u308b\u3053\u3068\u304c\u3042\u308a\u307e\u3059\u3002\u4eca\u56de\u306e\u300eWireshark \u306b\u3088\u308b\u30d1\u30b1\u30c3\u30c8\u89e3\u6790\u8b1b\u5ea7\u300f\u3067\u306f\u3001\u305d\u306e\u5fa9\u53f7\u65b9\u6cd5\u3092\u5b66\u3073\u307e\u3059\u3002\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/unit42.paloaltonetworks.com\/ja\/wireshark-tutorial-decrypting-rdp-traffic\/\" \/>\n<meta property=\"og:locale\" content=\"ja_JP\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Wireshark\u306b\u3088\u308b\u30d1\u30b1\u30c3\u30c8\u89e3\u6790\u8b1b\u5ea7 11: RDP\u30c8\u30e9\u30d5\u30a3\u30c3\u30af\u306e\u5fa9\u53f7\" \/>\n<meta property=\"og:description\" content=\"RDP \u306e\u8106\u5f31\u6027\u3092\u691c\u77e5\u3059\u308b\u30b7\u30b0\u30cd\u30c1\u30e3\u3092\u4f5c\u6210\u3057\u3066\u653b\u6483\u3092\u963b\u6b62\u3059\u308b\u3068\u304d\u306f\u3001RDP \u901a\u4fe1\u306e\u5fa9\u53f7\u304c\u5fc5\u8981\u306b\u306a\u308b\u3053\u3068\u304c\u3042\u308a\u307e\u3059\u3002\u4eca\u56de\u306e\u300eWireshark \u306b\u3088\u308b\u30d1\u30b1\u30c3\u30c8\u89e3\u6790\u8b1b\u5ea7\u300f\u3067\u306f\u3001\u305d\u306e\u5fa9\u53f7\u65b9\u6cd5\u3092\u5b66\u3073\u307e\u3059\u3002\" \/>\n<meta property=\"og:url\" content=\"https:\/\/unit42.paloaltonetworks.com\/ja\/wireshark-tutorial-decrypting-rdp-traffic\/\" \/>\n<meta property=\"og:site_name\" content=\"Unit 42\" \/>\n<meta property=\"article:published_time\" content=\"2021-04-01T13:00:20+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2025-08-25T11:27:59+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2024\/06\/04_Tutorial_Category_1920x900.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"1920\" \/>\n\t<meta property=\"og:image:height\" content=\"900\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Brad Duncan, Vijay Prakash\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"Wireshark\u306b\u3088\u308b\u30d1\u30b1\u30c3\u30c8\u89e3\u6790\u8b1b\u5ea7 11: RDP\u30c8\u30e9\u30d5\u30a3\u30c3\u30af\u306e\u5fa9\u53f7","description":"RDP \u306e\u8106\u5f31\u6027\u3092\u691c\u77e5\u3059\u308b\u30b7\u30b0\u30cd\u30c1\u30e3\u3092\u4f5c\u6210\u3057\u3066\u653b\u6483\u3092\u963b\u6b62\u3059\u308b\u3068\u304d\u306f\u3001RDP \u901a\u4fe1\u306e\u5fa9\u53f7\u304c\u5fc5\u8981\u306b\u306a\u308b\u3053\u3068\u304c\u3042\u308a\u307e\u3059\u3002\u4eca\u56de\u306e\u300eWireshark \u306b\u3088\u308b\u30d1\u30b1\u30c3\u30c8\u89e3\u6790\u8b1b\u5ea7\u300f\u3067\u306f\u3001\u305d\u306e\u5fa9\u53f7\u65b9\u6cd5\u3092\u5b66\u3073\u307e\u3059\u3002","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/unit42.paloaltonetworks.com\/ja\/wireshark-tutorial-decrypting-rdp-traffic\/","og_locale":"ja_JP","og_type":"article","og_title":"Wireshark\u306b\u3088\u308b\u30d1\u30b1\u30c3\u30c8\u89e3\u6790\u8b1b\u5ea7 11: RDP\u30c8\u30e9\u30d5\u30a3\u30c3\u30af\u306e\u5fa9\u53f7","og_description":"RDP \u306e\u8106\u5f31\u6027\u3092\u691c\u77e5\u3059\u308b\u30b7\u30b0\u30cd\u30c1\u30e3\u3092\u4f5c\u6210\u3057\u3066\u653b\u6483\u3092\u963b\u6b62\u3059\u308b\u3068\u304d\u306f\u3001RDP \u901a\u4fe1\u306e\u5fa9\u53f7\u304c\u5fc5\u8981\u306b\u306a\u308b\u3053\u3068\u304c\u3042\u308a\u307e\u3059\u3002\u4eca\u56de\u306e\u300eWireshark \u306b\u3088\u308b\u30d1\u30b1\u30c3\u30c8\u89e3\u6790\u8b1b\u5ea7\u300f\u3067\u306f\u3001\u305d\u306e\u5fa9\u53f7\u65b9\u6cd5\u3092\u5b66\u3073\u307e\u3059\u3002","og_url":"https:\/\/unit42.paloaltonetworks.com\/ja\/wireshark-tutorial-decrypting-rdp-traffic\/","og_site_name":"Unit 42","article_published_time":"2021-04-01T13:00:20+00:00","article_modified_time":"2025-08-25T11:27:59+00:00","og_image":[{"width":1920,"height":900,"url":"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2024\/06\/04_Tutorial_Category_1920x900.jpg","type":"image\/jpeg"}],"author":"Brad Duncan, Vijay Prakash","twitter_card":"summary_large_image","schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/unit42.paloaltonetworks.com\/ja\/wireshark-tutorial-decrypting-rdp-traffic\/#article","isPartOf":{"@id":"https:\/\/unit42.paloaltonetworks.com\/ja\/wireshark-tutorial-decrypting-rdp-traffic\/"},"author":{"name":"Brad Duncan","@id":"https:\/\/unit42.paloaltonetworks.com\/#\/schema\/person\/66a2d5ad3475220e098802b8b82a6b5b"},"headline":"Wireshark\u306b\u3088\u308b\u30d1\u30b1\u30c3\u30c8\u89e3\u6790\u8b1b\u5ea7 11: RDP\u30c8\u30e9\u30d5\u30a3\u30c3\u30af\u306e\u5fa9\u53f7","datePublished":"2021-04-01T13:00:20+00:00","dateModified":"2025-08-25T11:27:59+00:00","mainEntityOfPage":{"@id":"https:\/\/unit42.paloaltonetworks.com\/ja\/wireshark-tutorial-decrypting-rdp-traffic\/"},"wordCount":629,"commentCount":0,"image":{"@id":"https:\/\/unit42.paloaltonetworks.com\/ja\/wireshark-tutorial-decrypting-rdp-traffic\/#primaryimage"},"thumbnailUrl":"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2024\/06\/04_Tutorial_Category_1920x900.jpg","keywords":["RDP","Windows","Wireshark","Wireshark Tutorial"],"articleSection":["\u30b5\u30a4\u30d0\u30fc\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3 \u30c1\u30e5\u30fc\u30c8\u30ea\u30a2\u30eb","\u30e9\u30fc\u30cb\u30f3\u30b0 \u30cf\u30d6"],"inLanguage":"ja","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/unit42.paloaltonetworks.com\/ja\/wireshark-tutorial-decrypting-rdp-traffic\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/unit42.paloaltonetworks.com\/ja\/wireshark-tutorial-decrypting-rdp-traffic\/","url":"https:\/\/unit42.paloaltonetworks.com\/ja\/wireshark-tutorial-decrypting-rdp-traffic\/","name":"Wireshark\u306b\u3088\u308b\u30d1\u30b1\u30c3\u30c8\u89e3\u6790\u8b1b\u5ea7 11: RDP\u30c8\u30e9\u30d5\u30a3\u30c3\u30af\u306e\u5fa9\u53f7","isPartOf":{"@id":"https:\/\/unit42.paloaltonetworks.com\/#website"},"primaryImageOfPage":{"@id":"https:\/\/unit42.paloaltonetworks.com\/ja\/wireshark-tutorial-decrypting-rdp-traffic\/#primaryimage"},"image":{"@id":"https:\/\/unit42.paloaltonetworks.com\/ja\/wireshark-tutorial-decrypting-rdp-traffic\/#primaryimage"},"thumbnailUrl":"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2024\/06\/04_Tutorial_Category_1920x900.jpg","datePublished":"2021-04-01T13:00:20+00:00","dateModified":"2025-08-25T11:27:59+00:00","author":{"@id":"https:\/\/unit42.paloaltonetworks.com\/#\/schema\/person\/66a2d5ad3475220e098802b8b82a6b5b"},"description":"RDP \u306e\u8106\u5f31\u6027\u3092\u691c\u77e5\u3059\u308b\u30b7\u30b0\u30cd\u30c1\u30e3\u3092\u4f5c\u6210\u3057\u3066\u653b\u6483\u3092\u963b\u6b62\u3059\u308b\u3068\u304d\u306f\u3001RDP \u901a\u4fe1\u306e\u5fa9\u53f7\u304c\u5fc5\u8981\u306b\u306a\u308b\u3053\u3068\u304c\u3042\u308a\u307e\u3059\u3002\u4eca\u56de\u306e\u300eWireshark \u306b\u3088\u308b\u30d1\u30b1\u30c3\u30c8\u89e3\u6790\u8b1b\u5ea7\u300f\u3067\u306f\u3001\u305d\u306e\u5fa9\u53f7\u65b9\u6cd5\u3092\u5b66\u3073\u307e\u3059\u3002","breadcrumb":{"@id":"https:\/\/unit42.paloaltonetworks.com\/ja\/wireshark-tutorial-decrypting-rdp-traffic\/#breadcrumb"},"inLanguage":"ja","potentialAction":[{"@type":"ReadAction","target":["https:\/\/unit42.paloaltonetworks.com\/ja\/wireshark-tutorial-decrypting-rdp-traffic\/"]}]},{"@type":"ImageObject","inLanguage":"ja","@id":"https:\/\/unit42.paloaltonetworks.com\/ja\/wireshark-tutorial-decrypting-rdp-traffic\/#primaryimage","url":"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2024\/06\/04_Tutorial_Category_1920x900.jpg","contentUrl":"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2024\/06\/04_Tutorial_Category_1920x900.jpg","width":1920,"height":900,"caption":"A person focuses intently on a screen, with many lines of code on the monitor reflected in their glasses."},{"@type":"BreadcrumbList","@id":"https:\/\/unit42.paloaltonetworks.com\/ja\/wireshark-tutorial-decrypting-rdp-traffic\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/unit42.paloaltonetworks.com\/ja\/"},{"@type":"ListItem","position":2,"name":"Wireshark\u306b\u3088\u308b\u30d1\u30b1\u30c3\u30c8\u89e3\u6790\u8b1b\u5ea7 11: RDP\u30c8\u30e9\u30d5\u30a3\u30c3\u30af\u306e\u5fa9\u53f7"}]},{"@type":"WebSite","@id":"https:\/\/unit42.paloaltonetworks.com\/#website","url":"https:\/\/unit42.paloaltonetworks.com\/","name":"Unit 42","description":"Palo Alto Networks","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/unit42.paloaltonetworks.com\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"ja"},{"@type":"Person","@id":"https:\/\/unit42.paloaltonetworks.com\/#\/schema\/person\/66a2d5ad3475220e098802b8b82a6b5b","name":"Brad Duncan","image":{"@type":"ImageObject","inLanguage":"ja","@id":"https:\/\/unit42.paloaltonetworks.com\/#\/schema\/person\/image\/4408571da084e452077209da810f700c","url":"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2017\/09\/Duncan-bio-picture-1-copy-150x150.jpg","contentUrl":"https:\/\/unit42.paloaltonetworks.com\/wp-content\/uploads\/2017\/09\/Duncan-bio-picture-1-copy-150x150.jpg","caption":"Brad Duncan"},"url":"https:\/\/unit42.paloaltonetworks.com\/ja\/author\/bduncan\/"}]}},"_links":{"self":[{"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/posts\/118040","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/users\/35"}],"replies":[{"embeddable":true,"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/comments?post=118040"}],"version-history":[{"count":9,"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/posts\/118040\/revisions"}],"predecessor-version":[{"id":153790,"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/posts\/118040\/revisions\/153790"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/media\/134402"}],"wp:attachment":[{"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/media?parent=118040"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/categories?post=118040"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/tags?post=118040"},{"taxonomy":"product_categories","embeddable":true,"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/product_categories?post=118040"},{"taxonomy":"author","embeddable":true,"href":"https:\/\/unit42.paloaltonetworks.com\/ja\/wp-json\/wp\/v2\/coauthors?post=118040"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}