31.12.2014 Views

Скачать - Xakep Online

Скачать - Xakep Online

Скачать - Xakep Online

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

ÊÐÅÀÒÈÔÔ ÊÎÄÈÍÃ UNIXOID ÑÖÅÍÀ [ÂÇËÎÌ] ÈÌÏËÀÍÒ PC_ZONE FERRUM<br />

ÍÜÞÑÛ<br />

ÞÍÈÒÛ<br />

Âûáèðàåì dedicated-ñåðâåð äëÿ õàêåðñêèõ ïðîäåëîê<br />

[DS è VDS — íàéäè 10 îòëè÷èé]<br />

Ïðåæäå ÷åì îáñóæäàòü ïðîáëåìû<br />

ïðèîáðåòåíèÿ ñåðâåðîâ, îïðåäåëèìñÿ<br />

ñ áàçîâûìè ïîíÿòèÿìè. Îò íà÷àëà<br />

äî êîíöà ñòàòüè ÿ áóäó ãîâîðèòü ïðî<br />

Dedicated-ñåðâåðà. Çäåñü Dedicated<br />

îçíà÷àåò «âûäåëåííûé», òî åñòü êëèåíòó<br />

âûäåëÿåòñÿ öåëûé ñåðâåð, åñòåñòâåííî,<br />

ñ ðóòîâûìè ïðàâàìè. Òóò<br />

èìåþò ìåñòî äâå ðàçíîâèäíîñòè:<br />

ëèáî ÷åëîâåêó âûäåëÿåòñÿ îòäåëüíàÿ<br />

ìàøèíà â ñåðâåðíîé ñòîéêå (DS), ëèáî<br />

ñåðâåð çàïóùåí âèðòóàëüíî, ñðîäíè<br />

VmWare (VDS). Åñòåñòâåííî, ÷òî<br />

ïî ñòîèìîñòè âèðòóàëüíûé âûäåëåííûé<br />

ñåðâåð â 5—8 ðàç äåøåâëå ðåàëüíîãî.<br />

Ýòî ïîíÿòíî — çàòðàòû íà<br />

èíñòàëëÿöèþ íàñòîÿùåé ìàøèíû êóäà<br />

áîëüøå, ÷åì çàïóñê ñêðèïòà, èíñòàëëèðóþùåãî<br />

íîâóþ OS íà óæå ñóùåñòâóþùåé<br />

ñòàíöèè. Íî ó âèðòóàëüíîãî<br />

ñåðâåðà åñòü ðÿä ñóùåñòâåííûõ<br />

íåäîñòàòêîâ, êîòîðûå îáÿçàòåëüíî<br />

ñëåäóåò ó÷èòûâàòü ïåðåä ïîêóïêîé.<br />

Íå áóäåò ëèøíèì èõ ïåðå÷èñëèòü.<br />

1 Íåñìîòðÿ íà ðóòîâûå ïðèâèëåãèè,<br />

òåáå íå óäàñòñÿ äîáàâèòü íîâîå<br />

óñòðîéñòâî èëè ïåðåñîáðàòü<br />

ÿäðî. Íà íåêîòîðûõ ìàøèíêàõ äàæå<br />

íåëüçÿ óïðàâëÿòü sysctl'îì, èñïîëüçîâàòü<br />

iptables, çàãðóæàòü ìîäóëè<br />

è ò.ï.<br />

2 Íà òàðèôíûõ ïëàíàõ ñ âèðòóàëüíûì<br />

ñåðâåðîì îáû÷íî íå ïðåäîñòàâëÿþòñÿ<br />

äîïîëíèòåëüíûå IPàäðåñà.<br />

Äàííûé íåäîñòàòîê ìîæåò<br />

áûòü êðèòè÷íûì äëÿ íåêîòîðûõ<br />

ïðîåêòîâ.<br />

3 Áåçîïàñíîñòü â VDS îñòàâëÿåò<br />

æåëàòü ëó÷øåãî. Òàê êàê ìàøèíà ñîäåðæèò<br />

íåñêîëüêî ñåðâåðîâ, àäìèíèñòðàòîð<br />

ìîæåò ëåãêî çàãëÿíóòü íà<br />

òâîé âèðòóàëüíûé æåñòêèé äèñê è<br />

ëåãêî òàì ïîøàðèòüñÿ. Ñ ðåàëüíîé<br />

ìàøèíîé òàêîå íå ïðîéäåò. ×òîáû<br />

ïîñìîòðåòü ñîäåðæèìîå âèíòà, ñëåäóåò,<br />

êàê ìèíèìóì, ñíÿòü ìàøèíó èç<br />

ñåðâåðíîé ñòîéêè (ñëóæáà ïîääåðæêè<br />

íå èìååò ïðàâà âîéòè íà ñåðâåð<br />

áåç òâîåãî ñîãëàñèÿ).<br />

Äåäèê äëÿ õàêåðà<br />

×ÀÑÒÎ ÕÀÊÅÐÀÌ ÍÅ ÕÂÀÒÀÅÒ ÑÎÁÑÒÂÅÍÍÎÃÎ ÊÎÌÏÜ-<br />

ÞÒÅÐÀ ÄËß ÑÂÎÈÕ ÇËÎÄÅßÍÈÉ. ÑÊÀÆÅÌ, ×ÅËÎÂÅÊ,<br />

ÓÂËÅÊÀÞÙÈÉÑß ÒÐÎßÍÀÌÈ, ÎÁßÇÀÒÅËÜÍÎ ÇÀÕÎ×ÅÒ<br />

ÈÌÅÒÜ ÍÀ ÏÎÏÅ×ÅÍÈÈ ÑÅÐÂÅÐ ÄËß ËÎÃÎÂ. ×ÓÂÀÊ,<br />

ÂÇËÀÌÛÂÀÞÙÈÉ ÁÓÐÆÓÉÑÊÈÅ ÑÀÉÒÛ, ÏÎÆÅËÀÅÒ ÊÓ-<br />

ÏÈÒÜ ÁÅÇÎÏÀÑÍÛÉ ÑÅÐÂÅÐ ÄËß VPN È PROXY. ÍÎ ÕÀ-<br />

ÊÅÐÎÂ ÌÀËÎ ÊÒÎ ËÞÁÈÒ, ÏÎÝÒÎÌÓ ÑÊÎËÜÊÎ ÏÐÎÆÈ-<br />

ÂÅÒ «×ÅÐÍÛÉ ÑÅÐÂÅл — ÍÅÈÇÂÅÑÒÍÎ. ÕÎ×ÅØÜ ÓÇ-<br />

ÍÀÒÜ, ÊÀÊ ÓÂÅËÈ×ÈÒÜ ÑÐÎÊ ÆÈÇÍÈ ÄÎ ÌÀÊÑÈÌÓÌÀ<br />

ÒÎÃÄÀ ÑËÓØÀÉ ÑÞÄÀ | Äîêó÷àåâ Äìèòðèé aka Forb (forb@real.xakep.ru)<br />

Ïåðåä ðåãèñòðàöèåé íà ñåðâåðå<br />

ñîçäàé ñåáå ÿùèê íà àìåðèêàíñêîì<br />

õîñòèíãå, íàïðèìåð<br />

íà gmail.com. Ýòî ïîìîæåò<br />

òåáå ñîçäàòü îáðàç òóïîâàòîãî<br />

áîãàòîãî àìåðà.<br />

Îáû÷íî õîñòèíãîâûå êîìïàíèè, êîòîðûå<br />

ïðåäîñòàâëÿþò ïðèâàòíûå<br />

ñåðâåðû, ïðîäàþò è ðåàëüíûå.<br />

ß ñòîðîííèê ïîëíîöåííûõ äåäèêîâ<br />

è âñåì ñîâåòóþ ïîêóïàòü òîëüêî DS,<br />

à íå ýêîíîìèòü íà ñâîåé áåçîïàñíîñòè.<br />

Íî äåëî, êàê ãîâîðèòñÿ, òâîå :).<br />

Íàïîñëåäîê óïîìÿíó, ÷òî ðåàëüíûå<br />

ìàøèíû ñòîÿò îò 40 äî 500 áàêñîâ â<br />

ìåñÿö (åñòü ýêñêëþçèâû è ïî $999,<br />

íî î íèõ ÿ ïîêà óìîë÷ó :)), öåíà âèðòóàëüíûõ<br />

ìàøèíîê êîëåáëåòñÿ îò 5<br />

äî 100 äîëëàðîâ â ìåñÿö.<br />

Àäðåñ Security-ñëóæáû ìîæíî<br />

óçíàòü ÷åðåç WHOIS-ñåðâèñ<br />

(www.nic.ru/whois/ip=ipaddress).<br />

Îáû÷íî âñå<br />

äàòàöåíòðû ïóáëèêóþò<br />

åãî â ñïåöèàëüíîì ïîëå.<br />

[êàêèì ïóòåì ïîéòè] Äîïóñòèì,<br />

òû ðåøèë ïðèîáðåñòè ñåáå<br />

ìàøèíó äëÿ ðàçíûõ õèòðûõ öåëåé.<br />

Ñïåðâà âñòàåò âîïðîñ î ïðîâåðåííûõ<br />

è íàäåæíûõ äàòàöåíòðàõ, ãäå<br />

ìîæíî êóïèòü çàâåòíûé ñåðâåð.<br />

Âçÿòü äåäèê ìîæíî äâóìÿ ñïîñîáàìè:<br />

íàïðÿìóþ, ëèáî ÷åðåç ïîñðåäíèêà.<br />

ß ðàññìîòðþ îáà ñëó÷àÿ,<br />

à òû âûáåðåøü äëÿ ñåáÿ ñàìûé<br />

îïòèìàëüíûé.<br />

Ïåðâûé ñïîñîá çàêëþ÷àåòñÿ â ïîèñêå<br />

÷åëîâåêà, òîðãóþùåãî ñåðâåðàìè.<br />

Îòûñêàòü òàêèõ ìîæíî íà ëþáûõ<br />

ôîðóìàõ ïî ñåòåâîé áåçîïàñíîñòè.<br />

Çà ïðèìåðàìè äàëåêî õîäèòü<br />

íå íàäî, â íåäàâíåì âûïóñêå<br />

Õ NSD ïèñàë ñòàòüþ ïðî ïîäîáíûå<br />

ôîðóìû. Íà êàæäîì èç íèõ òû íàéäåøü<br />

ìèíèìóì 2—3 îáúÿâëåíèÿ<br />

ñ òàêèìè óñëóãàìè. Íàðîä òàì íàâåðíÿêà<br />

ïðîâåðåííûé, íî íå ñòîèò

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!