{"id":387,"date":"2014-05-09T19:05:00","date_gmt":"2014-05-09T11:05:00","guid":{"rendered":"http:\/\/note.systw.net\/note\/?p=387"},"modified":"2023-11-01T19:07:21","modified_gmt":"2023-11-01T11:07:21","slug":"ipsec","status":"publish","type":"post","link":"https:\/\/systw.net\/note\/archives\/387","title":{"rendered":"IPSec"},"content":{"rendered":"\n<p>IPsec(IP Security):<br>\u4fdd\u8b77IP\u5354\u8b70\u5b89\u5168\u901a\u4fe1\u7684\u6a19\u6e96\uff0c\u4e3b\u8981\u5c0dIP\u9032\u884c\u52a0\u5bc6\u548c\u8a8d\u8b49\uff0c\u4ee5\u53ca\u7b2c\u4e09\u5c64\u7a7f\u96a7\u6280\u8853\u6280\u8853<br>IETF1995\u5236\u5b9a,\u7b26\u5408IPv4\u74b0\u5883\u4e5f\u662fIPv6\u6a19\u6e96\uff0c\u4e26\u5305\u542b\u4e86ah\u548cesp<br>1998\u66f4\u65b0\u5230\u7b2c2\u7248,\u589e\u52a0\u4e86\u52a0\u89e3\u5bc6\u6280\u8853,\u5bc6\u78bc\u7ba1\u7406,\u8eab\u4efd\u9a57\u8b49<br>\u4e3b\u8981\u63d0\u4f9b\u670d\u52d9\u70ba:\u8a8d\u8b49,\u52a0\u5bc6,\u91d1\u9470\u7ba1\u7406<\/p>\n\n\n\n<p>\u61c9\u7528\uff1a<br>\u53ef\u5728lan,wan,\u53cainternet\u4e0a\u9032\u884c\u5b89\u5168\u7684\u901a\u8a0a,\u5404\u5ee0\u5546\u666e\u904d\u652f\u63f4\u7684\u898f\u683c<br>\u5efa\u7acb\u7db2\u8def\u5169\u7aef\u50b3\u8f38\u8cc7\u6599\u52a0\u5bc6,\u4f46\u50b3\u8f38\u5169\u7aef\u9808\u652f\u63f4IPSec,\u53ef\u9632\u7bc4LAN\u7684\u99ed\u5ba2(Transport mode)<br>\u5efa\u7acb\u5169\u500b\u7db2\u8def\u9593\u7684\u52a0\u5bc6\u5b89\u5168\u901a\u8a0a,\u4e5f\u5c31\u662fVPN(tunnel mode)<br>\u53ef\u540c\u6642\u7528Internet\u8207VPN\u7684\u591a\u9ede\u50b3\u8f38\u529f\u80fd(\u5305\u62ecInternet\/Intranet\/Extranet\/Remote Access \u7b49)<br>ex:DMVPN,VTI<br><br>\u512a\u9ede\uff1a<br>\u56e0IP\u5c64\u6709\u5b89\u5168\u6a5f\u5236\uff0c\u6240\u4ee5\u53ef\u5411\u4e0a\u4fdd\u8b77\u61c9\u7528\u5c64\u6216\u50b3\u8f38\u5c64\u6574\u500b\u7db2\u8def\u901a\u8a0a\u7684\u5167\u5bb9<br>\u4e0d\u589e\u52a0\u984d\u5916\u8ca0\u64d4,\u53ef\u907f\u514dfirewall\u88ab\u7a7f\u900f,\u4f4d\u65bc\u50b3\u8f38\u5c64\u5e95\u90e8,\u53ef\u652f\u63f4\u8def\u5f91\u9078\u64c7\u5354\u5b9a<\/p>\n\n\n\n<p>\u529f\u80fd:<br>\u53ef\u4fdd\u8b77\u8def\u5f91,\u9632\u6b62\u88ab\u963b\u65b7\u901a\u8a0a\u7dda\u8def\u6216\u5c07\u8a0a\u606f\u5c0e\u5411\u5225\u8655<br>\u53ef\u8b93\u7cfb\u7d71\u9078\u64c7\u60f3\u8981\u7684\u7d44\u5408,\u7528\u65bc\u591a\u91cd\u670d\u52d9,\u6f14\u7b97\u6cd5,\u53ca\u55ae\u5143\u898f\u6a21\u7684\u67b6\u69cb<br>\u6f14\u7b97\u6cd5\u53ef\u9078:AES,3DES,RC5,IDEA,3IDEA,CAST,blowfish,\u9700\u652f\u63f4cbc\u6a21\u5f0f\u7684des<br>port\u5206\u914d:ike\u4f7f\u7528udp 500,ah\u4f7f\u7528ip portocol 51,esp\u4f7f\u7528ip protocol 50<\/p>\n\n\n\n<p>IPSec\u7684\u904b\u4f5c<br>1\u5169\u7aef\u5efa\u7acbSA(Security Associations,\u5b89\u5168\u806f\u7d50)<br>\u96d9\u65b9\u9078\u64c7\u4f7f\u7528IPSec\u7684\u65b9\u5f0f,ex:\u9078\u64c7\u4f55\u7a2e\u5b89\u5168\u529f\u80fd,\u52a0\u5bc6\u6f14\u7b97\u6cd5,\u91d1\u9470\u539f\u5247,&#8230;\u7b49<br>2\u91d1\u9470\u4ea4\u63db<br>\u7528\u975e\u5c0d\u7a31\u52a0\u5bc6,\u8b93\u96d9\u65b9\u5404\u81ea\u64c1\u6709\u76f8\u540c\u7684Secret Key<br>3\u4f7f\u7528ipsec\u50b3\u8f38\u8cc7\u8a0a<\/p>\n\n\n\n<p>&#8230;&#8230;&nbsp;<\/p>\n\n\n\n<p>\u5b89\u5168\u6027\u5354\u5b9a\u7684\u670d\u52d9(\u52a0\u5728ip\u8868\u982d\u5f8c)<br>AH(\u78ba\u8a8d\u6027\u5354\u5b9a)\uff1a\u8a8d\u8b49,\u8cc7\u6599\u5b8c\u6574\u6027<br>\u3000\u63d0\u4f9b\u5b58\u53d6\u63a7\u5236,\u78ba\u8a8d\u8cc7\u6599\u4f86\u6e90,\u62d2\u7d55\u91cd\u9001\u5c01\u5305,\u975e\u9023\u7dda\u50b3\u8f38\u5b8c\u6574\u6027<br>ESP\u52a0\u5bc6\u5354\u5b9a\uff1a\u52a0\u5bc6<br>\u3000\u63d0\u4f9b\u5b58\u53d6\u63a7\u5236,\u62d2\u7d55\u91cd\u9001\u5c01\u5305,\u4fdd\u5bc6\u6027,\u9650\u5236\u8a0a\u606f\u50b3\u8f38\u4fdd\u5bc6\u6027<br>ESP\u52a0\u5bc6\u8207AH\u78ba\u8a8d\u6027\u5354\u5b9a\uff1a\u63d0\u4f9b\u4ee5\u4e0a\u5168\u529f\u80fd,\u5148\u52a0\u5bc6\u5f8c\u78ba\u8a8d<\/p>\n\n\n\n<p>SA(security association,\u5b89\u5168\u6027\u95dc\u806f)\uff1a\u4ecb\u65bc\u5169\u7d42\u7aef\u9ede\u9593\u7684\u55ae\u5de5\u9023\u7d50,\u82e5\u8981\u96d9\u5411\u5b89\u5168\u5247\u8981\u5efa\u5169\u500bSA<br>\u8fa8\u8b58\u5b89\u5168\u9023\u7d50\u7528\u53c3\u6578\uff1a<br>\u3000SPI(\u5b89\u5168\u53c3\u6578\u7d22\u5f15)\uff1a\u5728\u67d0\u500b\u5340\u57df\u5167\u624d\u6709\u610f\u7fa9\u7684\u4e00\u4e32\u4f4d\u5143,\u7528\u65bc\u6307\u5b9aSA<br>\u3000IP\u76ee\u7684\u7aef\u4f4d\u5740\uff1a\u8a18\u9304unicast\u7684\u4f4d\u5740,SA\u76ee\u7684\u7aef<br>\u3000\u5b89\u5168\u5354\u5b9aID\uff1a\u6307\u51fa\u662fAH\u6216ESP\u7684\u5b89\u5168\u9023\u7d50<br>SA\u8cc7\u6599\u5eab\u5b9a\u7fa9\u7684\u53c3\u6578<br>\u3000sequence number counter(\u5e8f\u865f\u8a08\u6578\u5668):32bit,\u7528\u4f86\u7522\u751fah,esp\u6a19\u982d\u7684\u5e8f\u865f\u6b04\u4f4d<br>\u3000sequence counter overflow(\u5e8f\u865f\u8a08\u6578\u5668\u6ea2\u4f4d\u65d7\u6a19):<br>\u3000anti-replay window(\u9632\u6b62\u91cd\u9001\u7a97\u53e3)\uff1a\u7528\u4f86\u6c7a\u5b9aah,esp\u5c01\u5305\u662f\u5426\u70ba\u91cd\u9001\u5c01\u5305<br>\u3000AH\u8cc7\u8a0a\uff1a\u8a8d\u8b49\u6f14\u7b97\u6cd5,\u91d1\u9470,\u91d1\u9470\u751f\u547d\u9031\u671f,AH\u6240\u4f7f\u7528\u76f8\u95dc\u53c3\u6578<br>\u3000ESP\u8cc7\u8a0a\uff1a\u52a0\u5bc6\u53ca\u8a8d\u8b49\u6f14\u7b97\u6cd5,\u91d1\u9470,\u521d\u59cb\u503c,\u91d1\u9470\u751f\u547d\u9031\u671f, ESP\u76f8\u95dc\u53c3\u6578<br>\u3000lifetime of this SA(SA\u7684\u671f\u9650)\uff1a\u7d93\u904e\u6b64\u6642\u9593\u5f8c\u6703\u63db\u65b0\u7684SA\u548cSPI<br>\u3000IPsec\u5354\u5b9a\u6a21\u5f0f:\u6709tunnel,transport,wildcard\u7b49\u6a21\u5f0f<br>\u3000pathMTU(\u8def\u5f91\u6700\u5927\u50b3\u9001\u55ae\u4f4d):<br>\u6a21\u5f0f\u53ef\u5206\uff1a<br>\u3000transport mode(\u50b3\u8f38\u6a21\u5f0f)\uff1a\u4fdd\u8b77\u5c01\u5305\u5167\u8cc7\u6599\u90e8\u5206,\u5982tcp,udp,icmp,\u5e38\u88ab\u7528\u5728\u5340\u7db2\u5167\u901a\u8a0a\u5169\u7aef<br>\u3000tunnel mode(\u901a\u9053\u6a21\u5f0f)\uff1a\u4fdd\u8b77\u6574\u500b\u5c01\u5305,\u5c07\u6574\u500b\u5c01\u5305\u8b8a\u6210\u65b0\u5c01\u5305\u7684\u8cc7\u6599\u90e8\u5206,\u4e26\u7522\u751f\u65b0\u8868\u982d<br>SA bundle(\u5b89\u5168\u9023\u7d50\u675f)\uff1a\u4e00\u500b\u8a0a\u606f\u591a\u500bSA,\u6709\u5169\u7a2e\u505a\u6cd5\uff1a<br>\u3000transport adjacency(\u50b3\u8f38\u9023\u63a5):\u53ea\u80fd\u7d50\u5408\u4e00\u5c64AH,ESP\u5354\u5b9a<br>\u3000iterated tunneling(\u91cd\u8907\u958b\u555f\u901a\u9053)\uff1a\u5141\u8a31\u5de2\u72c0\u591a\u91cd\u968e\u5c64<br>\u3000\u5169\u65b9\u6cd5\u53ef\u76f8\u4e92\u904b\u7528\uff1a<br>\u3000\u3000\u78ba\u8a8d\u5728\u52a0\u5bc6\uff1a\u5167\u5c64AH\u50b3\u8f38\u6a21\u5f0f\u5916\u5c64ESP\u901a\u9053\u6a21\u5f0f(transport-tunnel bundle)<br>\u3000\u3000\u52a0\u5bc6\u5728\u78ba\u8a8d\uff1a\u5167\u5c64ESP\u50b3\u8f38\u6a21\u5f0f\u5916\u5c64AH\u50b3\u8f38\u6a21\u5f0f(\u50b3\u8f38\u9023\u63a5),ESP\u50b3\u8f38\u6a21\u5f0f\u5f8c\u5728\u52a0\u78ba\u4efb\u6b04\u4f4d,ESP\u901a\u9053\u6a21\u5f0f\u5f8c\u5728\u52a0\u78ba\u4efb\u6b04\u4f4d<\/p>\n\n\n\n<p>ps:<br>IPsec\u901a\u9053\u6a21\u5f0f<br>\u512a\u9ede:\u975e\u5e38\u4e32\u6d41\u5316,\u53ef\u8abf\u6027\u9ad8,\u76f8\u5bb9\u6027\u4f73,\u9023\u7dda\u53c3\u6578\u4e0d\u5e38\u8b8a,\u53ef\u907f\u514d\u6d41\u91cf\u5206\u6790\u653b\u64ca<br>\u7f3a\u9ede:\u4e0d\u8003\u616e\u820a\u7cfb\u7d71\u554f\u984c,\u9a57\u8b49\u6216\u8def\u7531\u89e3\u8b6f\u56f0\u96e3,\u901a\u5e38\u9700\u8981\u624b\u52d5\u9032\u884c,\u901a\u5e38\u53ea\u652f\u63f4tcp\/ip,\u589e\u5927\u5c01\u5305<br>\u61c9\u7528:\u9598\u9053\u5668\u4e4b\u9593\u9023\u7dda,\u901a\u9053\u7d42\u6b62\u65bc\u975e\u6700\u7d42\u76ee\u5730\u7aef(ex\u9632\u706b\u7246)\u6642&nbsp;<\/p>\n\n\n\n<p>&#8230;&#8230;.<\/p>\n\n\n\n<p>\u9470\u5319\u7ba1\u7406\uff1a<br>\u624b\u52d5\uff1a\u7528\u7cfb\u7d71\u81ea\u5df1\u7684\u91d1\u9470\u4ee5\u53ca\u5176\u4ed6\u7cfb\u7d71\u7684\u91d1\u9470,\u4ee5\u624b\u52d5\u65b9\u5f0f\u8a2d\u5b9a\u7cfb\u7d71<br>\u81ea\u52d5\uff1a\u4f7f\u7528ISAKMP\/oakley(\u5df2\u88ab\u9078\u70baIPv6\u7684IPSec\u91d1\u9470\u7ba1\u7406\u5354\u5b9a)<br>oakley\u9470\u5319\u7522\u751f\u5354\u5b9a\uff1a\u6839\u64dadiffie-hellman\u6f14\u7b97\u6cd5\u767c\u5c55\u800c\u4f86,\u4e26\u63d0\u4f9b\u5b89\u5168\u529f\u80fd<br>ISAKMP\u7db2\u8def\u5b89\u5168\u9023\u7d50\u8207\u9470\u5319\u7ba1\u7406\u5354\u5b9a\uff1a\u63d0\u4f9b\u7db2\u8def\u4e0a\u9470\u5319\u7ba1\u7406\u67b6\u69cb,\u5b9a\u7fa9\u5efa\u7acb,\u5354\u5546,\u4fee\u6539,\u522a\u9664sa\u7684\u7a0b\u5e8f\u53ca\u5c01\u5305\u683c\u5f0f<br>\u4e3b\u5354\u5b9a\u70baIKE(Internet Key Exchange),\u53ef\u7528\u5728\u9032\u884c\u9023\u7dda\u7cfb\u7d71\u9593\u7684\u4ea4\u4e92\u8a8d\u8b49\u8207\u4fdd\u5168\u806f\u7cfb,\u7531IETF\u6240\u5be6\u4f5c,\u4f46\u7f3a\u9ede\u5f88\u591a<br>1995\u516c\u4f48\u8a31\u591a\u7db2\u8def\u5b89\u5168\u76f8\u95dc\u6280\u8853\u6a19\u6e96RFC 1825,RFC 1826,RFC 1827,RFC 1828,RFC 1829,RFC 1851,RFC 2085,RFC 2104<\/p>\n\n\n\n<p>\u76ee\u524d\u4e3b\u8981\u7684\u91d1\u9470\u7ba1\u7406\u5354\u5b9a\u6709:<br>SKIP(Simple Key-management for IP)<br>\u3000\u8f03\u70ba\u7c21\u55ae,\u53ef\u61c9\u7528\u5728IPv4\u8207IPv6<br>\u3000\u7531Sun Microsystem\u6240\u767c\u5c55\uff0c\u76ee\u6709\u4e09\u7a2e\u7248\u672c:Sun\uff0c TIK\uff0c\u548cELVIS+SKIP<br>\u3000SKIP\u91d1\u9470\u7ba1\u7406\u7684\u89c0\u5ff5\u662f\u968e\u5c64\u5f0f\u7684\u91d1\u9470\u7ba1\u7406\u3002\u5229\u7528Diffie Hellman\u7684\u516c\u958b\u91d1\u9470\u5c0d\u800c\u9054\u5230\u5171\u4eab<br>\u3000\u56e0\u5b89\u5168\u8003\u91cf\uff0c\u516c\u958b\u91d1\u9470\u61c9\u81f3\u6191\u8b49\u7ba1\u7406\u4e2d\u5fc3\u7533\u8acb\u6191\u8b49,\u6240\u4ee5IPSec\u7684\u4f7f\u7528\u4e5f\u9700\u8981\u6bcf\u4e00\u570b\u5bb6\u7684PKI\u4f86\u914d\u5408\u3002<br>ISAKMP\/Oakley(Internet Security Association Key Management Protocol\/Oakley)<br>\u3000\u53ef\u61c9\u7528\u5728IPv4\u8207IPv6,\u53ef\u61c9\u7528\u65bc\u8f03\u591a\u7684\u5354\u5b9a<br>\u3000IPv6\u5df2\u6c7a\u5b9a\u4f7f\u7528ISAKMP\u8207Oakley\u91d1\u9470\u4ea4\u63db\u7684\u5408\u4f75\u5354\u5b9a<br>\u3000Oakley\u91d1\u9470\u4ea4\u63db\u5354\u5b9a\u662f\u7531\u4e9e\u5229\u6851\u90a3\u5927\u5b78\u6240\u63d0\u51fa\uff0c\u8207SEKME\u6709\u76f8\u7576\u591a\u7684\u5171\u540c\u90e8\u4efd<br>\u3000ISAKMP\u6709\u5169\u500b\u64cd\u4f5c\u968e\u6bb5<br>\u3000\u3000\u968e\u6bb5\u4e00:\u76f8\u95dc\u7684\u4e00\u4e9b\u5b89\u5168\u5c6c\u6027\u7d93\u5354\u5546\u4e26\u7522\u751f\u4e00\u4e9b\u91d1\u9470\u7b49\u3002\u9019\u4e9b\u5167\u5bb9\u69cb\u6210\u7b2c\u4e00\u500bISAKMP SA\uff0c\u8207IPSec SA\u4e0d\u4e00\u6a23\u7684\u662f\u5b83\u662f\u96d9\u5411\u7684<br>\u3000\u3000\u968e\u6bb5\u4e8c:\u5247\u662f\u4ee5ISAKMP SA\u7684\u5b89\u5168\u74b0\u5883\u4f86\u5efa\u7acbAH\u6216ESP\u7684SA\u3002<br>\u3000\u5176\u4ed6\u5982Photuris\u53caSKEME(Photuris\u5ef6\u4f38)\u7b49<br>IKE(Internet Key Exchange) ISAKMP\/Oakley\u7684\u6539\u540d<br>\u3000ISAKMP\u4f7f\u7528Oakley\u7684\u4e00\u4e9b\u6a21\u5f0f\u548cSKEME\u5feb\u901frekey\u7684\u89c0\u5ff5\u5408\u4f75\u800c\u6210<br>\u3000\u5b83\u6709(1)Main Mode (2)Aggressive Mode (3)Quick Mode(4)New group mode\u7b49\u56db\u7a2e\u6a21\u5f0f<\/p>\n\n\n\n<p>&#8230;&#8230;.<\/p>\n\n\n\n<p>ESP(Encapsulating Security Payload,\u5b89\u5168\u8ca0\u8f09\u5c01\u88dd)\u683c\u5f0f\u5982\u4e0b:<br>security parameters index(\u5b89\u5168\u53c3\u6578\u7d22\u5f15) 32bit\uff1a\u8fa8\u8b58\u4e00\u500b\u5b89\u5168\u9023\u7d50<br>sequence number(\u5e8f\u865f) 32bit\uff1a\u55ae\u7d14\u5730\u905e\u589e\u8a08\u6578\u503c,\u53ef\u9632\u91cd\u9001\u653b\u64ca<br>payload data(\u8ca0\u8f09\u8cc7\u6599) \u53ef\u8b8abit\uff1atransport mode\u70batcp\u5340\u6bb5,tunnel mode\u70ba\u4e00\u500bip\u5c01\u5305<br>padding(\u9644\u52a0\u4f4d\u5143\u7d44) 0-255bit\uff1a\u7528\u4f86\u64f4\u5145\u6210\u60f3\u8981\u7684\u9577\u5ea6,\u4ee5\u9054\u6f14\u7b97\u6cd5\u9700\u6c42\u6216\u6df7\u6dc6\u8ca0\u8f09\u9577\u5ea6<br>padlength(\u9644\u52a0\u90e8\u5206\u9577\u5ea6) 8bit\uff1a\u6307\u51fa\u9644\u52a0\u4f4d\u5143\u7d44\u500b\u6578<br>next header(\u5f8c\u7e8c\u6a19\u982d) 8bit\uff1a\u8fa8\u8b58\u8ca0\u8f09\u8cc7\u6599\u7684\u985e\u578b<br>authentication data(\u78ba\u8a8d\u6027\u8cc7\u6599)(\u9078\u64c7\u6027) 32\u500d\u6578\u53ef\u8b8abit\uff1a\u542b\u6b64\u5c01\u5305\u78ba\u8a8d\u503c,\u7bc4\u570d\u5728esp\u6a19\u982d\u5230\u5f8c\u7e8c\u6a19\u982d<\/p>\n\n\n\n<p>&#8230;&nbsp;<\/p>\n\n\n\n<p>AH(authentication header,\u78ba\u8a8d\u6027\u6a19\u982d)\u683c\u5f0f\u5982\u4e0b:<br>next header(\u5f8c\u7e8c\u6a19\u982d) 8bit:\u6307\u51fa\u63a5\u5728\u6b64\u6a19\u982d\u5f8c\u7684\u985e\u578b<br>payload length(\u8ca0\u8f09\u9577\u5ea6) 8bit:\u78ba\u8a8d\u6027\u8cc7\u6599\u70ba96bit\u5247\u503c\u70ba4(3+1)<br>reserved(\u4fdd\u7559\u90e8\u4efd) 16bit<br>SPI(\u5b89\u5168\u53c3\u6578\u7d22\u5f15) 32bit:\u8fa8\u8b58\u4e00\u500b\u5b89\u5168\u9023\u7d50<br>sequence number(\u5e8f\u865f) 32bit:\u55ae\u7d14\u5730\u905e\u589e\u8a08\u6578\u503c,\u53ef\u9632\u91cd\u9001\u653b\u64ca<br>authentication data(\u78ba\u8a8d\u6027\u8cc7\u6599) 32\u500d\u6578\u53ef\u8b8abit:\u9810\u8a2d96bit,\u542b\u8a0a\u606f\u78ba\u4efb\u78bcicv\u6216mac,\u7bc4\u570d\u9664\u4e86\u53ef\u8b8a\u6b04\u4f4d\u5916\u90fd\u78ba\u8a8d<br>mac\u6f14\u7b97\u6cd5\u6709:hmac-md5-96,hmac-sha-1-96<\/p>\n\n\n\n<p>\u53c3\u8003\u8cc7\u6599\u5305\u62ec\u4ee5\u4e0b\u4f86\u6e90<br>http:\/\/www.microsoft.com\/taiwan\/technet\/columns\/profwin\/13-IPSec-1.mspx<br>http:\/\/technet.microsoft.com\/zh-tw\/library\/dd125446.aspx&nbsp;<\/p>\n","protected":false},"excerpt":{"rendered":"<p>IPsec(IP Security):\u4fdd\u8b77IP\u5354\u8b70\u5b89\u5168\u901a\u4fe1\u7684 &#8230;<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"fifu_image_url":"","fifu_image_alt":"","_jetpack_memberships_contains_paid_content":false,"footnotes":"","jetpack_publicize_message":"","jetpack_publicize_feature_enabled":true,"jetpack_social_post_already_shared":false,"jetpack_social_options":{"image_generator_settings":{"template":"highway","default_image_id":0,"font":"","enabled":false},"version":2}},"categories":[10],"tags":[],"class_list":["post-387","post","type-post","status-publish","format-standard","hentry","category-securitysloution"],"jetpack_publicize_connections":[],"jetpack_featured_media_url":"","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/systw.net\/note\/wp-json\/wp\/v2\/posts\/387","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/systw.net\/note\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/systw.net\/note\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/systw.net\/note\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/systw.net\/note\/wp-json\/wp\/v2\/comments?post=387"}],"version-history":[{"count":0,"href":"https:\/\/systw.net\/note\/wp-json\/wp\/v2\/posts\/387\/revisions"}],"wp:attachment":[{"href":"https:\/\/systw.net\/note\/wp-json\/wp\/v2\/media?parent=387"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/systw.net\/note\/wp-json\/wp\/v2\/categories?post=387"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/systw.net\/note\/wp-json\/wp\/v2\/tags?post=387"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}