æ³åããŠã¿ãŠãã ãããèªå®
ããä»äºçšã®ãã¡ã€ã«ã«ã¢ã¯ã»ã¹ããæºåã¯äžç«¯ãªã®ã«ãçªç¶Windows 11 ãªã¢ãŒã ãã¹ã¯ããã ãšã©ãŒ 0x204ãçºçãããŸãã§æãããã客ã®ããã«æ¥ç¶ããããã¯ãããŠããŸããŸããð© ã€ã©ã€ã©ããŸãããïŒãå¿é
ãªããããªãã¯äžäººã§ã¯ãããŸããããã®ã¬ã€ãããã¹ã ãŒãºãªè§£æ±ºãžã®éµãšãªããŸãããã®ãšã©ãŒã®æå³ããªã衚瀺ãããã®ãããããŠäœãããéèŠãªãWindows 11 ãªã¢ãŒã ãã¹ã¯ããã ãšã©ãŒ 0x204 ãã·ã³ãã«ãã€å¹æçãªæé ã§è§£æ±ºããæ¹æ³ã詳ãã解説ããŸãããã®ã¬ã€ããæåŸãŸã§èªãã°ãã·ãŒã ã¬ã¹ãªãªã¢ãŒã ã¢ã¯ã»ã¹ãåã³äœ¿ããããã«ãªããèªä¿¡ã«æºã¡æº¢ããäžæ¥ãä¹ãåãæºåãæŽãã§ãããããããå§ããŸãããïŒ
Windows 11 ã®ãªã¢ãŒã ãã¹ã¯ããã 0x204 ãšã©ãŒãšã¯äœã§ãã?
ãªã¢ãŒããã¹ã¯ããã 0x204 ãšã©ãŒïŒãšã©ãŒã³ãŒã 0x204 ãšãåŒã°ããŸãïŒã¯ãWindows 11 ã®ãªã¢ãŒããã¹ã¯ããããããã³ã«ïŒRDPïŒã§ããçºçããåé¡ã§ããéåžžããªã¢ãŒããã·ã³ã«æ¥ç¶ããããšãããšãã«ãèªèšŒãšã©ãŒãçºçããŸãããïŒãšã©ãŒã³ãŒã: 0x204ïŒããšè¡šç€ºãããŸããããã¯åãªã軜埮ãªåé¡ã§ã¯ãªããç¹ã«ãªã¢ãŒãã¯ãŒã«ãŒãæ¥åžžæ¥åã« RDP ã䜿çšããŠãã IT ãããã§ãã·ã§ãã«ã«ãšã£ãŠã¯ãã¯ãŒã¯ãããŒã忢ãããå¯èœæ§ããããŸãã
æ¬è³ªçã«ããã®ãšã©ãŒã¯ãªã¢ãŒããã¹ã¯ãããã®èªèšŒããã»ã¹ã«åé¡ãããããšã瀺ããŠããŸããã»ãã¥ãªãã£æ©èœã匷åãããWindows 11ã¯ãè³æ Œæ
å ±ã®äžäžèŽããããã¯ãŒã¯ã®åé¡ããŸãã¯å€ãèšå®ãåå ã§ãæ¥ç¶ãéå°ã«ãããã¯ããããšããããŸããæå ±ã§ããããã¯æè¡çãªå°éç¥èããªããŠã解決ã§ããŸãããã®ãŸãŸèªã¿é²ããŠãã ãããã¹ããããã€ã¹ãããã§ãã©ãã«ã·ã¥ãŒãã£ã³ã°ãè¡ããããããããã¹ãã¬ã¹ããªãŒãªè§£æ±ºæ¹æ³ãã玹ä»ããŸããâš
Windows 11 ãªã¢ãŒã ãã¹ã¯ããã 0x204 ãšã©ãŒã®äžè¬çãªåå
ä¿®æ£æ¹æ³ã«é²ãåã«ã RDPãšã©ãŒ0x204ããªãçºçããã®ããçªãæ¢ããŸããããæ ¹æ¬çãªåå ãçè§£ããããšã§ã解決çãæ©ãèŠã€ãããŸãã以äžã«ç°¡åã«èª¬æããŸãã
- ð è³æ Œæ
å ±ã»ãã¥ãªãã£ãµããŒããããã€ããŒïŒCredSSPïŒã®äžäžèŽïŒãããæå€§ã®åå ã§ããWindows 11 ã§ã¯å®å
šãªèªèšŒãå¿
é ã§ãããã¯ã©ã€ã¢ã³ããšãµãŒããŒã® CredSSP èšå®ãäžèŽããŠããªããšæ¥ç¶ã«å€±æããŸãã
- ãããã¯ãŒã¯ ãããã³ã«ã®åé¡:ãã¡ã€ã¢ãŠã©ãŒã«ãVPN ã®äžå
·åããŸãã¯å€ã RDP ã¯ã©ã€ã¢ã³ãã«ãããããã€ã¹éã®ãã³ãã·ã§ã€ã¯ãäžæãããå¯èœæ§ããããŸãã
- å€ã Wââindows ãŸã㯠RDP ã³ã³ããŒãã³ã:ææ°ã®æŽæ°ããã°ã©ã ãé©çšãããŠããªãå Žåã0x204 ãªã©ã®ãšã©ãŒãé²ãã»ãã¥ãªã㣠ããããé©çšãããŸããã
- ã°ã«ãŒã ããªã·ãŒã®å¶é:ãšã³ã¿ãŒãã©ã€ãºç°å¢ã§ã¯ãé©åã«èª¿æŽãããªãéã RDP ããããã¯ããããªã·ãŒãé©çšãããããšããããããŸãã
- èšŒææžãŸãã¯æå·åã®åé¡: TLS èšŒææžãç ŽæããŠãããäžèŽããªãå ŽåãèªèšŒãšã©ãŒãçºçããå¯èœæ§ããããŸãã
å¿åœããã®ããåé¡ãèŠã€ãããŸãããïŒ ããããã£ãã解決ã«åãçµã¿ãŸãããããããã®åå ã¯ãMicrosoft ã®ææ°ã® Windows 11 ãã©ãã«ã·ã¥ãŒãã£ã³ã°æ
å ±ã«åºã¥ããŠãããææ°ã®ã¢ããã€ã¹ããå±ãããŸãã
Windows 11ã§ãªã¢ãŒããã¹ã¯ãããã®0x204ãšã©ãŒã解決ããããã®ã¹ããããã€ã¹ãããã®ä¿®æ£æ¹æ³
ãšã©ãŒãè§£æ¶ããæºåã¯ã§ããŸãããïŒãŸãã¯æãç°¡åãªè§£æ±ºçããã玹ä»ããå¿
èŠã«å¿ããŠãšã¹ã«ã¬ãŒã·ã§ã³ãè¡ããŸããæé©ãªçµæãåŸãã«ã¯ãããŒã«ã«ïŒã¯ã©ã€ã¢ã³ãïŒãšãªã¢ãŒãïŒãã¹ãïŒã®äž¡æ¹ã®Windows 11ãã·ã³ã§ä»¥äžã®æé ãå®è¡ããŠãã ããããã³ãïŒèšå®ãæå¹ã«ããã«ã¯ã倧ããªå€æŽãå ãããã³ã«PCãåèµ·åããŠãã ãããããã§å®äºã§ãïŒð
1ïžâ£ Windows 11 ãšãªã¢ãŒã ãã¹ã¯ããã ã³ã³ããŒãã³ããæŽæ°ãã
å€ããœãããŠã§ã¢ã¯RDPæ¥ç¶ã«ãšã£ãŠãµã€ã¬ã³ããã©ãŒã§ãããã¹ãŠãææ°ã®ç¶æ
ã«ããããšã§ãWindows 11ã®ãªã¢ãŒããã¹ã¯ãããã®0x204ãšã©ãŒãå³åº§ã«è§£æ±ºã§ããå Žåãå€ããããŸãã
- èšå®ãéããŸãïŒWindows + I ããŒãæŒããŸãïŒã
- Windows Update >æŽæ°ããã°ã©ã ã®ç¢ºèªã«ç§»åããŸãã
- RDP ã®ãªãã·ã§ã³ã®æŽæ°ããã°ã©ã ãå«ããå©çšå¯èœãªæŽæ°ããã°ã©ã ããã¹ãŠã€ã³ã¹ããŒã«ããŸãã
- PC ãåèµ·åããŠæ¥ç¶ããã¹ãããŸãã
ãªã¢ãŒããã·ã³ã䜿çšããŠããå Žåã¯ããããç¹°ãè¿ããŠãã ãããMicrosoftã¯0x204ãªã©ã®èªèšŒãã°ã«å¯ŸåŠããããã«é »ç¹ã«ãããããªãªãŒã¹ããŠããŸããåžžã«ææ°ã®ç¶æ
ãä¿ã€ããšã§ãåžžã«ææ°ã®ç¶æ
ãä¿ã€ããšãã§ããŸãã
2ïžâ£ CredSSP èšå®ã調æŽããïŒã²ãŒã ãã§ã³ãžã£ãŒä¿®æ£ïŒ
0x204ãšã©ãŒã®çŽ70%ã¯CredSSPã®äžäžèŽãåå ã§ããããã§ã¯ãããããåæãããæ¹æ³ãã玹ä»ããŸããé«åºŠãªããŒã«ã¯å¿
èŠãããŸããã
ã¯ã©ã€ã¢ã³ããã·ã³ïŒããŒã«ã«PCïŒã®å ŽåïŒ
- Windows + R ãæŒããŠã
gpedit.mscãšå
¥åããEnter ããŒãæŒããŸã (Pro/Enterprise ãšãã£ã·ã§ã³ãå¿
èŠã§ããHome ã®å Žåã¯ã以äžã®ã¬ãžã¹ããªæ¹æ³ã«é²ãã§ãã ãã)ã
- [ã³ã³ãã¥ãŒã¿ãŒã®æ§æ] > [管ççšãã³ãã¬ãŒã] > [ã·ã¹ãã ] > [è³æ Œæ
å ±ã®å§ä»»]ã«ç§»åããŸãã
- ãæ°ããè³æ Œæ
å ±ã®å§ä»»ãèš±å¯ããããæå¹ã«ãããµãŒããŒã®ã¢ãã¬ã¹ã远å ããŸã (äŸ:
TERMSRV/*ãã¹ãŠã®ãµãŒããŒ)ã
- é©çšããŠåèµ·åããŸãã
ãã¹ããã·ã³ïŒãªã¢ãŒãPCïŒåŽïŒ
- åãã°ã«ãŒã ããªã·ãŒ ãšãã£ã¿ãŒãå®è¡ããŸãã
- NTLM ã®ã¿ã®ãµãŒããŒèªèšŒã§æ°ããè³æ Œæ
å ±ã®å§ä»»ãèš±å¯ãããæå¹ã«ããŠãã远å ããŸã
WSMAN/*ã
Windows 11 Home ãŠãŒã¶ãŒã®å Žåã¯ã代ããã«ã¬ãžã¹ã㪠ãšãã£ã¿ãŒã䜿çšããŸãã
- Windows + R ãæŒããŠã ãšå
¥åããŸã
regeditã
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\CredSSP\ParametersïŒããŒããªãå Žåã¯äœæããŸãïŒã«é²ã¿ãŸãã
AllowEncryptionOracleå€ 2 ã®DWORD ã远å ããŸãã
- åèµ·åããŠåæ¥ç¶ããŸãã
ãã®èª¿æŽã«ããæå·åãããã³ã«ã調æŽãããå€ãã®å Žåããšã©ãŒãå³åº§ã«ä¿®æ£ãããŸããä»ããRDPæ¥ç¶ããã¹ãããŠã¿ãŸããããããŸãããããšãç¥ã£ãŠããŸãïŒð
3ïžâ£ ãã¡ã€ã¢ãŠã©ãŒã«ãšãããã¯ãŒã¯èšå®ã確èªãã
ãã¡ã€ã¢ãŠã©ãŒã«ã¯éå°ã«ä¿è·ãããRDP ã®ããŒã 3389 ããããã¯ããããšããããŸããã²ãŒããå®å
šã«éããŸãããã
- ã¹ã¿ãŒã ã¡ãã¥ãŒã§Windows Defender ãã¡ã€ã¢ãŠã©ãŒã«ãæ€çŽ¢ããŸãã
- [Windows Defender ãã¡ã€ã¢ãŠã©ãŒã«ãä»ããã¢ããªãŸãã¯æ©èœãèš±å¯ãã]ãã¯ãªãã¯ããŸãã
- ãã©ã€ããŒã ãããã¯ãŒã¯ãšãããªã㯠ãããã¯ãŒã¯ã®äž¡æ¹ã§ãªã¢ãŒã ãã¹ã¯ãããããã§ãã¯ãããŠããããšã確èªããŸãã
- VPN ã䜿çšããŠããå Žåã¯ãäžæçã«ç¡å¹ã«ããŠãã¹ãããŠãã ãããVPN 㯠RDP ã«ãŒãã£ã³ã°ã«å¹²æžããå ŽåããããŸãã
ãŸã åé¡ã解決ããªãå Žåã¯ãçµã¿èŸŒã¿ã®ãã©ãã«ã·ã¥ãŒãã£ã³ã°ããŒã«ãå®è¡ããŠãã ããïŒèšå® > ã·ã¹ãã > ãã©ãã«ã·ã¥ãŒãã£ã³ã° > ãã®ä»ã®ãã©ãã«ã·ã¥ãŒãã£ã³ã° >ãããã¯ãŒã¯ã¢ããã¿ãŒãšWindowsãªã¢ãŒããã¹ã¯ãããããããã®ããŒã«ã¯ã0x204ã®åå ãšãªãäžè¬çãªãããã¯ãŒã¯ã®åé¡ãèªåæ€åºããŠä¿®æ£ããŸãã
4ïžâ£ ãŠãŒã¶ãŒæš©éã確èªããRDP ãæå¹ã«ãã
ã¢ã«ãŠã³ãã«ãªã¢ãŒã ã¢ã¯ã»ã¹ã®èš±å¯ãããããšã確èªããŠãã ããã
- ãã¹ã PC ã§ã[èšå®] > [ã·ã¹ãã ] > [ãªã¢ãŒã ãã¹ã¯ããã]ã«ç§»åããŸãã
- ãªã¢ãŒã ãã¹ã¯ãããã®æå¹åããªã³ã«åãæ¿ããŸãã
- ããŠãŒã¶ãŒã®éžæããã¯ãªãã¯ãããªã¹ãã«ãªãå Žåã¯ã¢ã«ãŠã³ãã远å ããŸã (管çè
ã¯èªåçã«å«ãŸããŸã)ã
- è³æ Œæ
å ±ãå確èªããŸããæ¥ç¶ãããšãã¯ãå®å
šãªãŠãŒã¶ãŒå (äŸ: MicrosoftAccount\ [email protected] ) ã䜿çšããŸãã
ããã®ãã³ã: ãã¡ã€ã³ ã¢ã«ãŠã³ãã®å Žåã¯ãã°ã«ãŒã ããªã·ãŒã«ãã£ãŠã¢ã¯ã»ã¹ãå¶éãããŠããªãããšã IT 管çè
ã«ç¢ºèªããŠãã ããã
5ïžâ£ é«åºŠãªä¿®æ£: RDP ããªã»ããããããã³ãã³ãã©ã€ã³ããŒã«ã䜿çšãã
åºæ¬åäœã ãã§ã¯ç©è¶³ããªãå Žåã¯ããã¯ãŒã ãŒãã«ææŠããŠã¿ãŸããããå®å
šã§ãããæ³šæãå¿
èŠã§ãã
ã³ãã³ãããã³ããçµç±ã§ RDP ããªã»ããããŸãã
- ã³ãã³ãããã³ããã管çè
ãšããŠå®è¡ããŸãã
net stop termservice次ã®ããã«å
¥åããŸãnet start termserviceã
- å®å
šãªãªã»ããã®å Žå:
sfc /scannowã·ã¹ãã ãã¡ã€ã«ã修埩ãããã®åŸã« ãå®è¡ããŸãDISM /Online /Cleanup-Image /RestoreHealthã
æå·åã¬ãã«ã®èª¿æŽïŒ RDPã¯ã©ã€ã¢ã³ãèšå®ïŒmstsc.exeïŒã§ãããšã¯ã¹ããªãšã³ã¹ãã¿ãã«ç§»åãããLANïŒ10Mbps以äžïŒãã«èšå®ããããäœéãããã¯ãŒã¯ã®å Žåã¯ãã以äžã«èšå®ããŸããããã«ããã峿 ŒãªèªèšŒèŠä»¶ãåé¿ã§ããŸãã
åé¡ã解決ããªãå Žåã¯ãPowerShell ã䜿çšã㊠RDP æ©èœãåã€ã³ã¹ããŒã«ããããšãæ€èšããŠãã ããAdd-WindowsCapability -Online -Name "Microsoft-Windows-RemoteDesktop-Services~~~~0.0.1.0"ã
ãã©ãã«ã·ã¥ãŒãã£ã³ã°è¡š: 0x204 ãšã©ãŒä¿®æ£ã®ã¯ã€ãã¯ãªãã¡ã¬ã³ã¹
ããã«åãããããããããã«ãä¿®æ£å
容ããŸãšãã䟿å©ãªè¡šããçšæããŸãããä»åŸã®åèã®ããã«ããã¯ããŒã¯ããŠãããŠãã ããã
| åé¡ |
çç¶ |
ä¿®ç |
å°é£ |
| CredSSPã®äžäžèŽ |
æ¥ç¶æã®èªèšŒãšã©ãŒ |
ã°ã«ãŒãããªã·ãŒãŸãã¯ã¬ãžã¹ããªãç·šéãã |
äžããã |
| ãã¡ã€ã¢ãŠã©ãŒã«ããã㯠|
æ¥ç¶ã¿ã€ã ã¢ãŠã |
ãã¡ã€ã¢ãŠã©ãŒã«ã§RDPãèš±å¯ãã |
ç°¡å |
| æä»£é
ãã®ã·ã¹ãã |
æç¶çãªé害 |
Windows Updateãå®è¡ãã |
ç°¡å |
| èš±å¯ãæåŠãããŸãã |
ã¢ã¯ã»ã¹æåŠ |
RDPãæå¹ã«ããŠãŠãŒã¶ãŒã远å ãã |
ç°¡å |
| ãããã¯ãŒã¯ã°ãªãã |
å¿çãªã |
ãããã¯ãŒã¯ã®ãã©ãã«ã·ã¥ãŒãã£ã³ã° |
äžããã |
äºé²ã®ãã³ãïŒ0x204ãšã©ãŒãé²ã
解決ããŸãããïŒçŽ æŽãããïŒð ã§ããåçºããªãããã«æ°ãä»ããŸããããWindows 11ã宿çã«ã¢ããããŒãããRDPã«ã¯åŒ·åïŒãã€èŠããããïŒãã¹ã¯ãŒãã䜿çšããå€èŠçŽ èªèšŒãªã©ã®ããŒã«ãå°å
¥ããŠã»ãã¥ãªãã£ã匷åããŸããããè·å Žã§ã䜿ãã®å Žåã¯ãITããŒã ã«çžè«ããŠRDPã®æšæºèšå®ã«ã€ããŠçžè«ããŸããããå人ãŠãŒã¶ãŒã®å Žåã¯ãèªåæŽæ°ãæå¹ã«ããŠããã°ãããšã¯èšå®ããŠããã°ããšã¯æŸã£ãŠãããŠå€§äžå€«ã§ãã
ããäžã€æ³šæç¹ããããŸãããããã®æé ãå®è¡ããŠããšã©ãŒã解決ããªãå Žåã¯ãããŒããŠã§ã¢ã®åé¡ïŒãããã¯ãŒã¯ã«ãŒãã®æ
éãªã©ïŒãŸãã¯ã·ã¹ãã ã®ããæ·±å»ãªç ŽæãèããããŸãããã®å Žåã¯ãã»ãŒãã¢ãŒãã§èµ·åããŠRDPããã¹ãããããMicrosoftã®ãµããŒããã©ãŒã©ã ã§ãµããŒããåããŠãã ããã
æçµçãªèãïŒèªä¿¡ãåãæ»ãã
Windows 11 ãªã¢ãŒããã¹ã¯ãããã® 0x204 ãšã©ãŒãä¿®æ£ããæ¬æ¥ã®ç®çã«æ»ãããã®å®å
šãªããŒããããã宿ããŸããããããžã§ã¯ãã®ç· ããããã«ãããã¹ã¯ããããã¹ã ãŒãºã«ã¹ããªãŒãã³ã°ããã ãã®å Žåã§ãããããã®æé ã§ããã«è§£æ±ºã§ããŸãããã®ã¬ã€ãã圹ã«ç«ã£ãå Žåã¯ãäžèšã«ã³ã¡ã³ããæ®ãããåãåé¡ã«çŽé¢ããŠããå人ãšå
±æããŠãã ãããããªãã®ãæ°ã«å
¥ãã® RDP ãã¯ããã¯ã¯äœã§ããïŒãã²äŒè©±ãç¶ããŸããããããªãã®æŽå¯ã誰ãã®äžæ¥ãæããããããŸããïŒð
å
¬åŒã®ãã©ãã«ã·ã¥ãŒãã£ã³ã°ã«ã€ããŠã¯ãMicrosoft ã®ãªã¢ãŒã ãã¹ã¯ããã ã¬ã€ããåç
§ããŠãã ããã