{"id":17185,"date":"2018-08-28T09:00:59","date_gmt":"2018-08-28T00:00:59","guid":{"rendered":"http:\/\/www.techscore.com\/blog\/?p=17185"},"modified":"2018-11-14T16:33:41","modified_gmt":"2018-11-14T07:33:41","slug":"%e3%81%8a%e3%81%86%e3%81%a1%e3%82%b5%e3%83%bc%e3%83%90%e3%83%bc%e3%81%ab%e5%a4%96%e5%87%ba%e5%85%88%e3%81%8b%e3%82%89%e3%82%a2%e3%82%af%e3%82%bb%e3%82%b9%e3%81%97%e3%81%9f%e3%81%84-%e2%86%92-ssh","status":"publish","type":"post","link":"https:\/\/www.techscore.com\/blog\/2018\/08\/28\/%e3%81%8a%e3%81%86%e3%81%a1%e3%82%b5%e3%83%bc%e3%83%90%e3%83%bc%e3%81%ab%e5%a4%96%e5%87%ba%e5%85%88%e3%81%8b%e3%82%89%e3%82%a2%e3%82%af%e3%82%bb%e3%82%b9%e3%81%97%e3%81%9f%e3%81%84-%e2%86%92-ssh\/","title":{"rendered":"\u304a\u3046\u3061\u30b5\u30fc\u30d0\u30fc\u306b\u5916\u51fa\u5148\u304b\u3089\u30a2\u30af\u30bb\u30b9\u3057\u305f\u3044 \u2192 SSH \u9006\u8ee2\u9001\u3057\u3088\u3046"},"content":{"rendered":"
\u3046\u3061\u3067\u306f\u3001IR \u30ea\u30e2\u30b3\u30f3\u30e2\u30b8\u30e5\u30fc\u30eb\u3068 Raspberry Pi \u3092\u4f7f\u3063\u305f\u7c21\u5358\u306a\u30b5\u30fc\u30d0\u30fc\u304c\u3042\u308a\u307e\u3059\u3002
\n\u30d6\u30e9\u30a6\u30b6\u3092\u4ecb\u3057\u3066\u30a8\u30a2\u30b3\u30f3\u3092\u64cd\u4f5c\u3067\u304d\u308b\u3068\u3044\u3046\u3082\u306e\u3067\u3059\u3002
\n\u30ea\u30e2\u30b3\u30f3\u304c\u4e0d\u8981\u306b\u306a\u308b\u306e\u3067\u3001\u3069\u3053\u304b\u3078\u6d88\u3048\u305f\u30ea\u30e2\u30b3\u30f3\u3092\u63a2\u3059\u5fc5\u8981\u3082\u3042\u308a\u307e\u305b\u3093\u3002
\n\u305d\u306e\u8fba\u306b\u3042\u308b\u30b9\u30de\u30fc\u30c8\u30d5\u30a9\u30f3\u306a\u3069\u3092\u4f7f\u3048\u3070\u826f\u3044\u3060\u3051\u3067\u3059\u304b\u3089\u306d\u3002<\/p>\n
\u3053\u308c\u304c\u5916\u51fa\u5148\u304b\u3089\u3067\u3082\u4f7f\u3048\u308b\u3088\u3046\u306b\u306a\u3063\u305f\u3089\u3001\u3082\u3063\u3068\u4fbf\u5229\u3002<\/p>\n
\u305d\u3053\u3067\u3001\u5916\u51fa\u5148\u304b\u3089\u898b\u3089\u308c\u308b\u30b5\u30fc\u30d0\u30fc(\u4ee5\u4e0b\u3001\ud83d\udc20\u5916\u30b5\u30d0\ud83d\udc20)\u3092\u4ecb\u3057\u3066\u5bb6\u306e\u30b5\u30fc\u30d0\u30fc(\u4ee5\u4e0b\u3001\ud83d\udc1f\u5bb6\u30b5\u30d0\ud83d\udc1f)\u3078\u30a2\u30af\u30bb\u30b9\u3067\u304d\u308b\u3088\u3046\u306b\u3057\u307e\u3057\u305f\u3002
\n\u4eca\u56de\u306f\u3001\u305d\u306e\u65b9\u6cd5\u3092\u7c21\u5358\u306b\u7d39\u4ecb\u3057\u307e\u3059\u3002<\/p>\n
SSH \u306e\u30dd\u30fc\u30c8\u8ee2\u9001\u3092\u4f7f\u3044\u307e\u3059\u3002<\/p>\n
SSH \u306e\u30dd\u30fc\u30c8\u8ee2\u9001\u3067\u3088\u304f\u4f7f\u308f\u308c\u308b\u306e\u306f\u3001 \u3057\u304b\u3057\u3001\ud83d\udc20\u5916\u30b5\u30d0\ud83d\udc20\u306f\u56fa\u5b9a IP \u30a2\u30c9\u30ec\u30b9\u304c\u591a\u3044\u3067\u3057\u3087\u3046\u304c\u3001\ud83d\udc1f\u5bb6\u30b5\u30d0\ud83d\udc1f\u306f\u305d\u3046\u3067\u306f\u3042\u308a\u307e\u305b\u3093\u3002 \u305d\u3053\u3067\u3001\u9006\u65b9\u5411\u306e\u30dd\u30fc\u30c8\u8ee2\u9001\u3092\u4f7f\u3044\u307e\u3059\u3002<\/p>\n \ud83d\udc20\u5916\u30b5\u30d0\ud83d\udc20\u306f sshd \u304c\u8d77\u52d5\u3057\u3066\u3044\u308c\u3070\u4f55\u3067\u3082\u304b\u307e\u3044\u307e\u305b\u3093\u304c\u3001AWS \u306e EC2 \u30b5\u30fc\u30d0\u30fc\u3092\u4f7f\u3063\u3066\u8a66\u3057\u3066\u3044\u307e\u3059\u3002<\/p>\n \ud83d\udc1f\u5bb6\u30b5\u30d0\ud83d\udc1f\u306e\u30a2\u30d7\u30ea\u304c\u30dd\u30fc\u30c8 8282 \u3092\u4f7f\u7528\u3001\ud83d\udc20\u5916\u30b5\u30d0\ud83d\udc20 \u3053\u308c\u3067\u3001\ud83d\udc20\u5916\u30b5\u30d0\ud83d\udc20\u5185\u3067 4141 \u306b\u30a2\u30af\u30bb\u30b9\u3059\u308b\u3053\u3068\u3067\ud83d\udc1f\u5bb6\u30b5\u30d0\ud83d\udc1f\u306e 8282 \u306b\u30a2\u30af\u30bb\u30b9\u3067\u304d\u308b\u3088\u3046\u306b\u306a\u308a\u307e\u3059\u3002<\/p>\n \u3053\u308c\u3067\u30dd\u30fc\u30c8\u8ee2\u9001\u306f\u3067\u304d\u307e\u3059\u304c\u3001\u3044\u3061\u3044\u3061\u30b3\u30de\u30f3\u30c9\u3092\u6253\u3064\u306e\u306f\u9762\u5012\u306a\u306e\u3067 systemd \u306e \u3042\u3068\u306f\u3001 SSH \u306e\u30c7\u30d5\u30a9\u30eb\u30c8\u8a2d\u5b9a\u3067\u306f\u3001\ud83d\udc20\u5916\u30b5\u30d0\ud83d\udc20\u306e 4141 \u306b\u5916\u90e8\u304b\u3089\u76f4\u63a5\u30a2\u30af\u30bb\u30b9\u306f\u3067\u304d\u307e\u305b\u3093\u3002 \u4eca\u56de\u306e\u65b9\u6cd5\u4ee5\u5916\u3067\u3082\u3001AWS Route 53<\/a> \u306e API \u3092\u4f7f\u3046\u306e\u3082\u826f\u3044\u3068\u601d\u3044\u307e\u3059\u3002 \u30b9\u30de\u30fc\u30c8\u30db\u30f3\u304b\u3089\u5bb6\u306e\u30a8\u30a2\u30b3\u30f3\u3092\u64cd\u4f5c\u3067\u304d\u308b\u3068\u3001\u5e30\u5b85\u524d\u306b\u51b7\u623f\u3092\u3064\u3051\u305f\u308a\u3067\u304d\u307e\u3059\u3002 \u6700\u5f8c\u306b\u3001SSH \u3068\u304b\u4e00\u5207\u95a2\u4fc2\u3042\u308a\u307e\u305b\u3093\u304c\u3001\u2193\u306e\u4f53\u6bdb\u306b\u30a2\u30af\u30bb\u30b9\u3067\u304d\u308b\u3053\u3068\u3092\u5831\u544a\u3057\u307e\u3059\u3002<\/p>\n \u3046\u3061\u3067\u306f\u3001IR \u30ea\u30e2\u30b3\u30f3\u30e2\u30b8\u30e5\u30fc\u30eb\u3068 Raspberry Pi \u3092\u4f7f\u3063\u305f\u7c21\u5358\u306a\u30b5\u30fc\u30d0\u30fc\u304c\u3042\u308a\u307e\u3059\u3002ssh ... -L ...<\/code><\/a> \u3068\u3059\u308b\u30ea\u30e2\u30fc\u30c8\u30db\u30b9\u30c8\u306e\u30dd\u30fc\u30c8\u306b\u30a2\u30af\u30bb\u30b9\u3067\u304d\u308b\u30dd\u30fc\u30c8\u3092\u30ed\u30fc\u30ab\u30eb\u30db\u30b9\u30c8\u306b\u958b\u3051\u308b<\/strong>\u3082\u306e\u3060\u3068\u601d\u3044\u307e\u3059\u3002
\n\u4eca\u56de\u306e\u8a71\u3067\u3042\u308c\u3070\u3001\ud83d\udc20\u5916\u30b5\u30d0\ud83d\udc20\u304b\u3089\u3053\u306e\u6a5f\u80fd\u3092\u4f7f\u3048\u3070 nginx \u3092\u4ecb\u3057\u3066\ud83d\udc1f\u5bb6\u30b5\u30d0\ud83d\udc1f\u3078\u30a2\u30af\u30bb\u30b9\u3067\u304d\u307e\u3059\u3002<\/p>\n
\n\u305d\u3046\u3044\u3046\u5834\u5408\u3001\u4f55\u304b\u306e\u65b9\u6cd5\u3067\ud83d\udc1f\u5bb6\u30b5\u30d0\ud83d\udc1f\u306e IP \u30a2\u30c9\u30ec\u30b9\u3092\u77e5\u308b\u5fc5\u8981\u304c\u3042\u308a\u3001\u9762\u5012\u3067\u3059\u3002<\/p>\nssh ... -R ...<\/code><\/a> \u3068\u3059\u308b\u3082\u306e\u3067\u3001\u30ed\u30fc\u30ab\u30eb\u30db\u30b9\u30c8\u306e\u30dd\u30fc\u30c8\u306b\u30a2\u30af\u30bb\u30b9\u3067\u304d\u308b\u30dd\u30fc\u30c8\u3092\u30ea\u30e2\u30fc\u30c8\u30db\u30b9\u30c8\u306b\u958b\u3051<\/strong>\u307e\u3059\u3002<\/p>\n
\u624b\u9806<\/h1>\n
SSH \u30dd\u30fc\u30c8\u8ee2\u9001<\/h2>\n
example.com<\/code> \u3067\u306f\u30dd\u30fc\u30c8 4141 \u3092\u4f7f\u7528\u3059\u308b\u3082\u306e\u3068\u3057\u307e\u3059\u3002
\n\u3053\u306e\u5834\u5408\u3001\u2193\u306e\u3088\u3046\u306b\u3057\u307e\u3059\u3002<\/p>\n$ ssh -o ExitOnForwardFailure=yes -o ServerAliveInterval=30 -o TCPKeepAlive=no -N -R '4141:localhost:8282' example.com\n<\/code><\/pre>\n
\n
ExitOnForwardFailure<\/code> \u8ee2\u9001\u5931\u6557\u6642\u306b\u7d42\u4e86\u3059\u308b<\/li>\n
ServerAliveInterval<\/code> 30 \u79d2\u6bce\u306b\u5fdc\u7b54\u78ba\u8a8d\u3059\u308b<\/li>\n
-N<\/code> \u30ea\u30e2\u30fc\u30c8\u306e\u30b3\u30de\u30f3\u30c9\u3092\u5b9f\u884c\u3057\u306a\u3044 (\u5bfe\u8a71\u30b7\u30a7\u30eb\u3092\u51fa\u3055\u306a\u3044)<\/li>\n
-R<\/code> \u9006\u30dd\u30fc\u30c8\u8ee2\u9001\u8a2d\u5b9a<\/li>\n<\/ul>\n
\u30dd\u30fc\u30c8\u8ee2\u9001\u3092\u30b5\u30fc\u30d3\u30b9\u5316<\/h2>\n
*.service<\/code> \u30d5\u30a1\u30a4\u30eb\u3092\u66f8\u3044\u3066\u30b5\u30fc\u30d3\u30b9\u5316\u3057\u307e\u3059\u3002
\n\u5ff5\u306e\u305f\u3081\u3001\u4f55\u3089\u304b\u306e\u7406\u7531\u3067\u30b3\u30de\u30f3\u30c9\u304c\u7d42\u4e86\u3057\u305f\u3089\u81ea\u52d5\u3067\u518d\u8d77\u52d5\u3059\u308b\u3088\u3046\u306b\u3057\u307e\u3059\u3002
\n\u4ee5\u4e0b\u306e\u5185\u5bb9\u3092\ud83d\udc1f\u5bb6\u30b5\u30d0\ud83d\udc1f\u306e \/etc\/systemd\/system\/ec2ssh.service<\/code> \u306b\u4fdd\u5b58\u3057\u307e\u3059\u3002<\/p>\n
[Unit]\nDescription=Reverse SSH Port Forwarding to EC2\n\n[Service]\nType=simple\nUser=app\nExecStart=\/usr\/bin\/ssh -o ExitOnForwardFailure=yes -o ServerAliveInterval=30 -o TCPKeepAlive=no -N -R '4141:localhost:8282' example.com\nRestart=always\nRestartSec=30\n\n[Install]\nWantedBy=multi-user.target\n<\/code><\/pre>\n
\n
Restart<\/code> \u2192 \u30b3\u30de\u30f3\u30c9\u304c\u7d42\u4e86\u3057\u305f\u3089\u81ea\u52d5\u3067\u30ea\u30b9\u30bf\u30fc\u30c8\u3059\u308b<\/li>\n
RestartSec=30<\/code> \u2192 \u30b3\u30de\u30f3\u30c9\u7d42\u4e86\u304b\u3089 30 \u79d2\u3057\u305f\u3089\u30ea\u30b9\u30bf\u30fc\u30c8\u3059\u308b<\/li>\n<\/ul>\n
systemctl --user daemon-reload<\/code> \u3067 \u2191\u306e
ec2ssh.service<\/code> \u3092\u8aad\u307f\u8fbc\u307f\u3001
systemctl start ec2ssh<\/code> \u3067\u958b\u59cb\u3057\u307e\u3059\u3002
\n\u307e\u305f\u3001systemctl enable ec2ssh<\/code> \u3067\u4eca\u5f8c\u81ea\u52d5\u3067\u8d77\u52d5\u3059\u308b\u3088\u3046\u306b\u3082\u3057\u307e\u3059\u3002<\/p>\n
\u6ce8\u610f<\/h1>\n
\n\u5358\u7d14\u306b\u30a2\u30af\u30bb\u30b9\u3067\u304d\u308b\u3088\u3046\u306b\u3059\u308b\u306b\u306f\u3001\/etc\/ssh\/ssh_config<\/code> \u306e
GatewayPorts<\/code> \u306e\u8a2d\u5b9a\u3092
yes<\/code> \u306b\u3059\u308b\u5fc5\u8981\u304c\u3042\u308a\u307e\u3059\u3002
\n\u4ed6\u306b\u3082 nginx<\/code> \u8d8a\u3057\u306b\u30a2\u30af\u30bb\u30b9\u3059\u308b\u306a\u3069\u306e\u65b9\u6cd5\u306a\u3069\u304c\u8003\u3048\u3089\u308c\u307e\u3059\u3002<\/p>\n
\u4ed6\u306e\u65b9\u6cd5<\/h1>\n
\n\ud83d\udc1f\u5bb6\u30b5\u30d0\ud83d\udc1f\u306e IP \u30a2\u30c9\u30ec\u30b9\u304c\u5909\u308f\u308b\u5ea6\u306b\u3001\u30c9\u30e1\u30a4\u30f3\u306e A \u30ec\u30b3\u30fc\u30c9\u3092\u66f8\u304d\u63db\u3048\u308b\u3060\u3051\u3067\u3059\u3002
\n\u79c1\u306b\u306f\u5e38\u6642\u8d77\u52d5\u3057\u3066\u3044\u308b EC2 \u306e\u30b5\u30fc\u30d0\u304c\u3042\u308a\u3001\u5bb6\u306e\u30cd\u30c3\u30c8\u30ef\u30fc\u30af\u6a5f\u5668\u306e\u8a2d\u5b9a\u304c\u9762\u5012\u3060\u3063\u305f\u306e\u3067\u4eca\u56de\u306e\u65b9\u6cd5\u3092\u53d6\u308a\u307e\u3057\u305f\u3002<\/p>\n\u307e\u3068\u3081<\/h1>\n
\n\u5e30\u5b85\u3057\u305f\u3089\u5bb6\u304c\u707c\u71b1\u5730\u7344\u3060\u3063\u305f\u3001\u3068\u3044\u3046\u3053\u3068\u304c\u306a\u304f\u306a\u308a\u5feb\u9069\u3067\u3059\u3002
\n\u9006\u306b\u3001\u5207\u308a\u308f\u3059\u308c\u305f\u30a8\u30a2\u30b3\u30f3\u306b\u3082\u5bfe\u5fdc\u3067\u304d\u307e\u3059\u3002
\n\u7d20\u6674\u3089\u3057\u3044\u3067\u3059\u306d\u3002<\/p>\n<\/p>\n","protected":false},"excerpt":{"rendered":"
\n\u30d6\u30e9\u30a6\u30b6\u3092\u4ecb\u3057\u3066\u30a8\u30a2\u30b3\u30f3\u3092\u64cd\u4f5c\u3067\u304d\u308b\u3068\u3044\u3046\u3082\u306e\u3067\u3059\u3002
\n\u30ea\u30e2\u30b3\u30f3\u304c\u4e0d\u8981\u306b\u306a\u308b\u306e\u3067\u3001\u3069\u3053\u304b\u3078\u6d88\u3048\u305f\u30ea\u30e2\u30b3\u30f3\u3092\u63a2\u3059\u5fc5\u8981\u3082\u3042\u308a\u307e\u305b\u3093\u3002
\u7d9a\u304d\u3092\u8aad\u3080...<\/a><\/p>\n","protected":false},"author":43,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":[],"categories":[18],"tags":[297],"_links":{"self":[{"href":"https:\/\/www.techscore.com\/blog\/wp-json\/wp\/v2\/posts\/17185"}],"collection":[{"href":"https:\/\/www.techscore.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.techscore.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.techscore.com\/blog\/wp-json\/wp\/v2\/users\/43"}],"replies":[{"embeddable":true,"href":"https:\/\/www.techscore.com\/blog\/wp-json\/wp\/v2\/comments?post=17185"}],"version-history":[{"count":5,"href":"https:\/\/www.techscore.com\/blog\/wp-json\/wp\/v2\/posts\/17185\/revisions"}],"predecessor-version":[{"id":17191,"href":"https:\/\/www.techscore.com\/blog\/wp-json\/wp\/v2\/posts\/17185\/revisions\/17191"}],"wp:attachment":[{"href":"https:\/\/www.techscore.com\/blog\/wp-json\/wp\/v2\/media?parent=17185"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.techscore.com\/blog\/wp-json\/wp\/v2\/categories?post=17185"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.techscore.com\/blog\/wp-json\/wp\/v2\/tags?post=17185"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}