ãã¥ãŒããŒãã«æä»£ã®ãŒããã©ã¹ãã»ãã¥ãªãã£ââãã¯ãã«ãåºæ¬ç¥èããã³ã¢æ©èœãæé©ãœãªã¥ãŒã·ã§ã³ãŸã§ã培åºè§£èª¬
è¿å¹Žããµã€ããŒæ»æå¯Ÿçã®ããŒã¯ãŒããšããŠæ³šç®éããããŒããã©ã¹ãã»ãã¥ãªãã£ããä»åã¯ãåå°äœããããã¯ãŒã¯ããµã€ããŒã»ãã¥ãªãã£ãAI/IoTã«ãããããŒã¿ã«ãµãŒãã¹ïŒãœãªã¥ãŒã·ã§ã³ã»ãããã€ããŒã§ãããã¯ãã«ã®ãšã³ãžãã¢ãããŒããã©ã¹ãã®æŠå¿µãããããã¯ãŒã¯çš®é¡(IAPåãSASEåãSDPåãVPNå)ããã¬ã¯ãŒã¯ç°å¢ã§ã®ã»ãã¥ãªãã£å¯Ÿçãæé©ãªãœãªã¥ãŒã·ã§ã³ãªã©ã培åºè§£èª¬ããå匷äŒãéå¬ããã®æ§åãã¬ããŒããããã¢ãŒã«ã€ãåç»
ãŒããã©ã¹ããå®çŸããããã®3ã€ã®åºæ¬ååãš4ã€ã®ãã€ã³ã

æ ªåŒäŒç€Ÿãã¯ãã«ãå°æ ç乿°
æåã«ç»å£ããã®ã¯ãã¯ãã«ã®ãªã¢ãŒãã¢ã¯ã»ã¹ ãšã³ãžãã¢å°æç乿°ãå°ææ°ã¯å ¥ç€Ÿ3幎ç®ã§ãçŸåšã¯ãã¯ãã«ã®ãŒããã©ã¹ããããã§ãã·ã§ãã«ãšããŠãã³ã³ãµã«ã¿ã³ãæ¥åãè¡ã£ãŠããããŸãã¯ãŒããã©ã¹ãã®å¿ èŠãªèŠçŽ ã«ã€ããŠèª¬æããã
ããããŸã§ã®ã»ãã¥ãªãã£ã¯ã瀟å ãšç€Ÿå€ãªã©å¢çãèšããããšã§é²åŸ¡ããå¢çå éšã¯å®å šãå€éšã¯ã¢ã³ãã©ã¹ããšããèããäžè¬çã§ãããäžæ¹ããŒããã©ã¹ãã¯ããããå Žæãä¿¡é Œããªããšããèãã«åºã¥ãã»ãã¥ãªãã£ã§ããïŒå°ææ°ïŒ
ãŒããã©ã¹ããç»å Žããèæ¯ã«ã¯ãå¢çé²åŸ¡ã«ããã3ã€ã®èª²é¡ãããã1ã€ç®ã¯IDããã¹ã¯ãŒããæŒæŽ©ããããæ»æè ã«äŸµå ¥ãããŠããŸãããšã2ã€ç®ã¯å¢çå ãå®å šãšããèãæ¹ã®ãããå éšã«å ¥ãã°ã©ãã«ã§ãã¢ã¯ã»ã¹ã§ããèšèšã«ãªã£ãŠããããšã
3ã€ç®ã¯ç€Ÿå ãç£èŠããä»çµã¿ãæŽã£ãŠããªããããæ»æè ã®äŸµå ¥ã«æ°ã¥ããªããæ°ã¥ãããšããŠã察å¿ãé ãããšããããã®å¢çé²åŸ¡ã®èª²é¡ã«å¯ŸãããŒããã©ã¹ãã§ã¯ãïŒã€ã®åºæ¬ååã瀺ããŠããã
1ã€ç®ã®ãæç€ºçã«æ€èšŒãããã«é¢ããŠã¯ãåŸæ¥ã®ããã«ãããã¯ãŒã¯ïŒå ŽæïŒã§é²åŸ¡ããã®ã§ã¯ãªãããŠãŒã¶ãŒIDã»ãã¹ã¯ãŒããããã€ã¹ã§ä¿¡é Œæ§ã倿ããããšã倧åã ã
2ã€ç®ã®ãæå°éã®ã¢ã¯ã»ã¹èš±å¯ãã«ã€ããŠã¯ãæ¥åžžç掻ãäŸã«åããããã説æãããã åŸæ¥ã®å¢çé²åŸ¡ã¯å®¶ã§ããããŒããã©ã¹ãã¯ããã«ã ãšèãããšåãããããã
äžè¬çãªäœå± ã§ã¯åéšå±ã«ã¯éµãããã£ãŠããªãããšãå€ããããçé¢ã®éµãçãŸãããšãã¹ãŠã®éšå±ã䟵害ãããŠããŸããäžæ¹ãããã«ã§ã¯åéšå±ã«å°çšããŒãäžããããããããªããããšããŠã䟵害ãããã®ã¯ãã®éšå±ã ãã䟵害ç¯å²ã¯æå°éã«çãŸãã
3ã€ç®ã¯ãå¢çå éšãåžžã«äŸµå®³ãããŠããããšãåæãšããã»ãã¥ãªãã£ãèšèšããããšãããã€ã¹ç¶æ ã®åžžæ ç£èŠããã¢ã¯ã»ã¹æã¯åžžã«ãŠãŒã¶ãŒèªèšŒãè¡ãèããèšèšã§ããã
ãã¯ãã«ã§ã¯ããã®3ååãå®çŸããããã«4ã€ã®ãã€ã³ããæèããªããé²ããŠããã
- ãŠãŒã¶ãŒã®èªèšŒã»èªå¯
- ããã€ã¹ã®ä¿¡é Œæ§ã®ç£èŠ
- ãŒããã©ã¹ããããã¯ãŒã¯ã®å®çŸ
- äŸµå®³ãæ³å®ããéçšå€é©
éåç¶²ãšNaaSãçµã¿åããããã€ããªããåæ ç¹ééä¿¡ãå¢å

æ ªåŒäŒç€Ÿãã¯ãã«ãçœç³éŒå¹³æ°
ç¶ããŠç»å£ããçœç³éŒå¹³æ°ã¯ã2021å¹Žã«æ°åå ¥ç€ŸããSASEãšã³ãžãã¢ãäžçäžã«æ ç¹ãæã€ã°ããŒãã«äŒæ¥ã«ã次äžä»£åãããã¯ãŒã¯å€é©æåã«åããæè¡çæ¯æŽã宿œããŠããã
ãŸãçœç³æ°ã¯ãäŒæ¥ãæ§ç¯ããæ ç¹éãããã¯ãŒã¯ã®å€é·ã«ã€ããŠã次ã®ããã«èª¬æããã
ãåŸæ¥ã¯éåç¶²ãå©çšããŠããã®ã§ãé«ãã»ãã¥ãªãã£ãæ ä¿ãããŠããŸãããäžæ¹ãé信垯åãåºãåããªããªã©ã®ãã¡ãªããããããŸãããããã§ãã»ãã¥ãªãã£ãæ ä¿ããªãããå©çšåž¯åãåºãåãããããã€ã³ã¿ãŒããããšéåç¶²ã䜵çšããããã«ãªããSD-WANïŒSoftware Defined-Wide Area NetworkïŒã®æè¡ãããµãŒãã¹ã浞éããŠãããŸãããïŒçœç³æ°ïŒ
çŸåšã¯äžèšã¹ã©ã€ãå³ç«¯ã®ã¬ãã«3ãã¯ã©ãŠããæŽ»çšããããšã§å°çšç·ã䜿ããã«ãããã¯ãŒã¯ç°å¢ãæ§ç¯ã§ããããã€ãããŸããŸãªãµãŒãã¹ãåããããšãå¯èœãªNaaSïŒNetwork as a ServiceïŒã®æŽ»çšãå¢å ããŠããã
åŸæ¥ã®ããã«åçš®ãããã¯ãŒã¯æ©åšãè³Œå ¥ã»éçšããå¿ èŠããªããããã³ã¹ãåæžã«ãå¯äžããããŸããå°çšããã¯ããŒã³ã䜿ã£ãŠãããããããã«ãã€ã«éä¿¡ã®é«éåãšãã£ãã¡ãªãããããã
ãªããNaaSã®å°å ¥ãé²ãã§ããã®ããçœç³æ°ã¯ãã€ã³ã¿ãŒãããã1ã€ã®ã«ãŒã¿ãšã¿ãªãããšã§çãã2ã€ã®ãã€ã³ãïŒã¡ãªããïŒãæããã1ã€ç®ã¯ãã€ã³ã¿ãŒããããã¬ã€ã¯ã¢ãŠããã ã
åŸæ¥ã®ãããã¯ãŒã¯ïŒèµ€ç·ïŒã¯MPLSïŒMulti-Protocol Label SwitchingïŒã®ä»çµã¿ã䜿ã£ãŠããããããã¹ãŠã®ããŒã¿ãããŒã¿ã»ã³ã¿ãŒãçµç±ããŠãããã ãããããåçµè·¯ã«ãããã·ãªã©ãèšçœ®ããã°ãé«ãã»ãã¥ãªãã£ãæ ä¿ã§ããŠããã
ãããæšä»Webãã©ãã£ãã¯ãå¢å€§ããããšã§ãé å»¶ãçºçãããšããåé¡ãçããããã«ãªã£ããããã§ãæ ç¹ããçŽæ¥Webãªã©ã«ã¢ã¯ã»ã¹ãããã€ã³ã¿ãŒããããã¬ã€ã¯ã¢ãŠãïŒããŒã«ã«ãã¬ã€ã¯ã¢ãŠãïŒãæ±ããããããã«ãªã£ãã
ã ããNaaSãããã¯ããŒã³ãçµç±ãããšãã¯ã©ãŠãã®åçš®ãµãŒãã¹ãåããããšãã§ããããèªç€Ÿã®ããªã·ãŒãé©çšã§ããããããšããå©ç¹ããããäŸãã°ããã°ã®åéãªã©ã ã
ãŸããéåç¶²ã®å Žåã¯äžã€äžã€ã®ãããã¯ãŒã¯ã«ãããŠãèšå®ãæ¥ç¶ãšãã£ãæ¥åãè¡ãããã«ãçŸå°ã«ãšã³ãžãã¢ãè¡ãå¿ èŠããã£ãã
éçšåŸã®ãã©ãã«ã·ã¥ãŒãã£ã³ã°ãªã©ãåæ§ã§ãã£ãã
äžæ¹NaaSã§ããã°ã1æ ç¹ã«ããªããèšå®ããéçšã»ç®¡çãŸã§ãç®ã®åã®PCãéããŠç°¡äŸ¿ã«ã§ãããšããã¡ãªãããããã
ã§ã¯ãæ ç¹éãããã¯ãŒã¯ã¯ãã¹ãŠNaaSã«çœ®ãæããã®ããçœç³æ°ã¯æ¬¡ã®ãããªèŠè§£ãè¿°ã¹ãã
ãå°çšç·ã®éèŠã¯æžå°ããŠãããšèããããŸãããã ãããŒãã«ãªããšã¯æã£ãŠããŸãããå°çšç·ãšNaaSã䜵çšãããã€ããªãããªãããã¯ãŒã¯æ§æããããããã¯å¢å ããŠããã§ããããïŒçœç³æ°ïŒ
SWGãšã®çµã¿åããã§ãã¢ãŠãããŠã³ãã«ããããŒããã©ã¹ããå®çŸ

æ ªåŒäŒç€Ÿãã¯ãã«ãèæš 貎倧æ°
3çªç®ã«ç»å£ããèæšè²Žå€§æ°ã¯ãSWG/Isolationã®é åã§ã°ããŒãã«äŒæ¥ãå®å ¬åºãå°æ¹èªæ²»äœã«å¯ŸããŠãé«åºŠãªã»ãã¥ãªãã£èŠä»¶ã«åãããææ¡æŽ»åãè¡ã£ãŠããIsolationãšã³ãžãã¢ã ãèæšæ°ã¯ããŸã瀟å€åãéä¿¡ïŒã¢ãŠãããŠã³ãïŒã«ãããæšä»ã®ãã¬ã³ããšçŸç¶ã®èª²é¡ã«ã€ããŠèªã£ãã
ãã³ããçŠã«ãããã¬ã¯ãŒã¯ã浞éããããšã§ã2ã€ã®èª²é¡ãçããŸããã1ã€ã¯VPNïŒVirtual Private NetworkïŒã®å©çšè å¢å ã«ããåç·ã®éŒè¿«ããã1ã€ã¯VPNã瀟å ã®ãããã¯ãŒã¯ãçµç±ããªãã¢ã¯ã»ã¹ã«ããã»ãã¥ãªãã£ã¬ãã«ã®äœäžã§ããïŒèæšæ°ïŒ
SaaSã®å©çšãå¢å ããŠãããä»åŸã¯ãŸããŸãWebãã©ãã£ãã¯ã¯å¢ããŠããããšãäºæž¬ãããããã¬ã¯ãŒã¯åç·ãçã£ããµã€ããŒæ»æãå¢å åŸåã«ãããä»åŸã¯ã¯ã©ãŠãåã®ã²ãŒããŠã§ã€ïŒCloud Secure Web GatewayïŒãäž»æµã«ãªã£ãŠããã ãããšãèæšæ°ã¯è§£èª¬ããã
äŸãã°ãSWGïŒSecure Web GatewayïŒã«ã¯ãURLãã¢ããªã±ãŒã·ã§ã³ã«å¯Ÿãããã£ã«ã¿ãªã³ã°ãã¢ã³ããŠã€ã«ã¹ãªã©æ§ã ãªæ©èœãåãã£ãŠãããå°å ¥ããããšã§å©çšè ã®å Žæãåãããåãã»ãã¥ãªãã£ã¬ãã«ãæäŸã§ããã
ãŒããã©ã¹ãã®ã»ãã¥ãªãã£ã¢ãã«ãSASEïŒSecure Access Service EdgeïŒããæ§æããèŠçŽ ã®ã²ãšã€ã§ãããã
ãªã³ãã¬ãã¹è£œåã§ã¯ã«ããŒã§ããªãã£ããã¢ã€ãœã¬ãŒã·ã§ã³ãå éšäžæ£ã«ããæ å ±æŒæŽ©ãäžæ£ã¢ã¯ã»ã¹ãæªç¶ã«é²ãããšã®ã§ããCASBïŒCloud Access Security BrokerïŒæ©èœãæããŠããã
ãã¢ã€ãœã¬ãŒã·ã§ã³ã¯æªæã®ããWebãµã€ãããã¯ã©ã€ã¢ã³ãã100ïŒ å®å šã«é²åŸ¡ã§ããæè¡ã§ãããéèæ¥çãå®å ¬åºãªã©ããæ³šç®ãããŠããŸããïŒèæšæ°ïŒ
NISTã¬ããŒãã®7ååã§ãã2ã»3ã»4ãSWGã§ã«ããŒã§ãããäžæ¹ã§SWGãå°å ¥ããã ãã§ã¯ããŒããã©ã¹ããªã»ãã¥ãªãã£ãå®ç§ã§ã¯ãªããšãèæšæ°ã¯èšãã
ã¯ãŒã¯ã¹ã¿ã€ã«ã®å€åããã®çç±ã ãå°æ¥çã«ã¯ãäŒç€Ÿããæ¯çµŠãããããã€ã¹ã ãã§ã¯ãªããå人ã®PCãã¹ããããããããã¯ãŒã¯ã«ã¢ã¯ã»ã¹ããããšãäºæž¬ãããããã§ããã
ãã®éã¯ããããåçããªã·ãŒãšããŠããŠãŒã¶ãŒããŒã¹ã§å¶åŸ¡ããã®ã§ã¯ãªãã端æ«åäœã§ããªã·ãŒå¶åŸ¡ãããããšãçæ³ã ããå仿§ã®è£œåã¯å°ãªããçŸç¶ã§ã¯ç«¯æ«åäœã§ããªã·ãŒå¶åŸ¡ããã®ã¯é£ããã
ä»åŸã®å±æãšããŠã端æ«åäœã®åçããªã·ãŒãå¶åŸ¡ããSWGã§ã«ããŒããŠããªãé åãè£ããä»è£œåãšã®é£æºãæå¹ã ãšãèæšæ°ã¯ä»åŸã®å±æãèªã£ãã
ãŒããã©ã¹ãã»ãã¥ãªãã£ãå®çŸãããZTNAã4ã€ã®å

æ ªåŒäŒç€Ÿãã¯ãã«ãå®®ïš ç«èŒæ°
æåŸã®ãã¬ãŒã³ãè¡ã£ãã®ã¯ãå®®ïšç«èŒæ°ã顧客ãããŒãããŒäŒæ¥ã«åããSWG/ZTNAé åã®æè¡æ¯æŽãæè¡ç課é¡è§£æ±ºãè¡ãSSEãšã³ãžãã¢ã§ããã瀟å åãéä¿¡ïŒã€ã³ããŠã³ãïŒã«ããããŒããã©ã¹ãã»ãã¥ãªãã£ãå®çŸããææ³ãZTNAïŒZero Trust Network AccessïŒã«ã€ããŠèª¬æããã
ZTNAã¯ã瀟å ã®ãããã¯ãŒã¯ã«ã¯äŸµå ¥ãããã«ãç¹å®ã®ãŠãŒã¶ãŒãšã¢ããªã±ãŒã·ã§ã³ãçµã¶ããšã§ã䟵害ãæå°éã«é£ãæ¢ãããšããèãããçãŸããæè¡ã»è£œå矀ã ããVPNåããIAPåããSASEåããSDPåããšã倧ãã4ã€ã®åãããã
察å¿ããŠãããããã³ã«ãã¢ã¯ã»ã¹æš©éã®å€§å°ãéçšã³ã¹ããå°å ¥é£æåºŠãªã©ãããããåŸæåéãã«ããŒãã§ããç¯å²ãç°ãªããããèŠåã£ãåãéžå®ããå°å ¥ããããšãéèŠã ã
VPNåã¯ã瀟å€ã®å©çšè ã瀟å ã®ããŒã¿ã»ã³ã¿ãŒãIaaSã«ã²ãŒããŠã§ã€ãä»ããŠèªèšŒã®å®è¡ãè¡ããèªããããã°å®éä¿¡ã宿œãããã
ãããã€ã¹ã®ç¶æ ã«å¿ããå¶åŸ¡ãå¯èœãªããããŠã€ã«ã¹ãæœãã§ãããããªããã€ã¹ã«å¯ŸããŠã¯ã¢ã¯ã»ã¹ãèš±å¯ããªãå¶åŸ¡ãå®çŸããŸããäžæ¹ã§ããªã¢ãŒãã¯ãŒã¯ã®å¢å ã§åé¡èŠãããéä¿¡ã®éŒè¿«ããããŒãžã§ã³ç®¡çãè匱æ§ã«çŽçµãã課é¡ããããŸããïŒå®®åŽæ°ïŒ
IAPåã¯ã瀟å€ã®å©çšè ãPOPã«åããŠHTTPSã¢ã¯ã»ã¹ãè¡ãã瀟å ã®ã³ãã¯ã¿ããã®éä¿¡ãæ€ç¥ããã³ãã¯ã¿åŽããPOPã«åããŠãã³ãã«ã確ç«ããããã®ãã³ãã«ãä»ããç®çãµãŒããŒãžã®éä¿¡ãå®è¡ãããã
SASEåã¯ã瀟å€ã®å©çšè ãPOPåãã«ãã³ãã«æ¥ç¶ããã瀟å ãåæ§ã«POPã«å¯ŸããŠãã³ãã«æ¥ç¶ãè¡ããIPããŒã¹ã§éä¿¡ã宿œãããã
SDPåã¯ç€Ÿå€ã®ãŠãŒã¶ãŒãã³ã³ãããŒã©ãŒãžèªèšŒãè¡ããã³ã³ãããŒã©ãŒã瀟å ã®ã²ãŒããŠã§ã€ã«å¯ŸããŠèªèšŒç¶æ³ãåæ ããã°ãéä¿¡ã宿œãããã
å®®åŽæ°ã¯4ã€ã®åã®ç¹åŸŽãäžèЧã«ãŸãšãã衚ã玹ä»ãããSASEåã¯ãã©ã³ã¹ããšããŠããå°è±¡ãåããããããããç¹åŸŽããããç°å¢ã«å¿ããçžæ§ããããã©ã®åãã©ã®ãããªå Žé¢ã«é©ããŠãããã«ã€ããŠã¯ãåŸåã®ããã«ãã£ã¹ã«ãã·ã§ã³ã§èªãããã
ãŒããã©ã¹ãå°å ¥ãé²ããšVPNã¯äžèŠã«ãªãã®ãïŒ
åŸåã¯4人ã®ç»å£è ãäžåã«ä»ãããŒããã©ã¹ãã«é¢ãããããã¯ã¹ã«ã€ããŠãçŸå Žã§æ¥ã å®åãè¡ã£ãŠãããããã§ãã·ã§ãã«ãšããŠã®èŠè§£ããã£ã¹ã«ãã·ã§ã³ããã
èæšïŒãŒããã©ã¹ãã®å°å ¥ãé²ããšãVPNã¯äžèŠã«ãªããšããæèŠããããŸãããå®éã©ã®ããã«èããŠããŸããã
å°æïŒãŸã£ããã®èª€è§£ã§ããæå°æš©éãæ ä¿ã§ããªãã®ã¯äºå®ã§ããããã©ãã«äºäŸãèŠããšèšå®ãç°å¢ãªã©ãå©ç𿹿³ãç¶æ³ã«åé¡ãããå Žåãå°ãªããªãããã§ãã
äŸãã°ãããèŠãããã®ããµã€ãžã³ã°ã®åé¡ã§ããVPNã¯ãªã³ãã¬å©çšãªã®ã§ãå©çšè ãå¢ããã°å¯Ÿå¿ãé£ãããªããŸãããã®ããèšè𿮵éãããå©çšè ã®ã¹ã±ãŒã«ãäºæž¬ããŠããããšãéèŠã§ãã
èæšïŒã€ãŸããVPNã¯ä»åŸã䜿ãç¶ããæ¹ããããšèããŠããããã§ããã
å°æïŒVPNã䜿ãç¶ããããšãæé©è§£ãšããããã§ã¯ãããŸãããæãéèŠãªã®ã¯ããªã¹ã¯ãèããäžã§ãå©çšããæ©åšãèããããšãéèŠã§ããäŸãã°ãVPNãäžå¿ èŠã ãšèšãããçç±ã®1ã€ã¯ãæ©åšã®ããŒãžã§ã³ãã»ãã¥ãªãã£ã®æ ä¿ã«å€§ãã圱é¿ããããšããã è£ãè¿ãã°ããã£ãããšããŒãžã§ã³ã¢ããããŠããããšã§å¯ŸåŠããããšãã§ããŸãã
çœç³ïŒVPNãæ£ãã䜿ãããšãããŒããã©ã¹ããªã»ãã¥ãªãã£ã ãšããããšã§ããã
å°æïŒäžæ¹ã§ãæãããªåŒ±ã¿ããããŸããVPNæ©åšã®ã²ãŒããŠã§ã€ã®IPããå€ã«æãããŠããç¹ã§ãããã ãäŸ¡æ Œãå®ããšãã£ãã¡ãªãããããã®ã§ãã³ã¹ããçŸå Žã®èŠæãªã©ãèæ ®ããªãã倿ããããšã倧åã§ãã
èæšïŒã§ã¯ãã©ã®ãããªèŠæš¡ã®çµç¹ã«VPNãåããŠããã®ããæ ç¹ã¯åœå ã®ã¿ã§èŠæš¡ãããã»ã©å€§ãããªãäŒæ¥ã¯ã©ãã§ãããã
å°æïŒVPNãåããŠãããšæããŸãããã çŸåšã®VPNæ©åšã䜿çšããŠããã客æ§ã®ã»ãšãã©ã¯ãç¹æš©æš©éããŠãŒã¶ãŒã«ä»äžããŠããã客æ§ãå€ããããç¶ç¶å©çšããå Žåã«ã¯ãæš©éãäžãããšãã£ããŒããã©ã¹ãã®æèãçã蟌ãããšã倧åã§ãã
èæšïŒåœå ã«æ ç¹æ°ãå€ãäŒæ¥ã¯ã©ãã§ãããã
å®®åŽïŒVPNã§ã¯ãªããSDPåãIAPåãé©ããŠãããšæããŸããVPNã¯ããŒã¿ã»ã³ã¿ãŒã«ããæ©åšãèšçœ®ã§ããªãããã仿 ç¹ã«ã¢ã¯ã»ã¹ããéã«æéãæéãèŠããããã§ãã察ããŠSDPã§ããã°ããã¹ãŠã®ç®æã«ã²ãŒããŠã§ã€ã眮ããã¯ã©ã€ã¢ã³ãã¯ãªãœãŒã¹ã«çŽ æ©ãã¢ã¯ã»ã¹ããããšãã§ããŸãã
äžæ¹ã§IPAåã®å Žåã¯ãŠãŒã¶ãŒæ å ±ãããŒã«ããŠãIDaaSçµç±ã§ä»ã®æ ç¹ã«ãã¢ã¯ã»ã¹ã§ãããããæ ç¹ãè€æ°ãã£ãŠãç¹ã«åé¡ã¯ãããŸãããã¯ã©ãŠã補åãªã®ã§ããŒãžã§ã³ã¢ããã§ã®è匱æ§ã¯ãã¡ãããéçšé¢ã楜ã§ãã匱ç¹ã¯ãªã³ãã¬ç°å¢ã«åŒ±ãç¹ã§ããã€ã³ã¿ãŒãããåãã®ã»ãã¥ãªãã£å¯ŸçãšããŠãSWGãå¿ èŠã§ããããã
SASEã¯ã»ãã¥ãªãã£ã«é¢ããåºæ¬èŠçŽ ããã¹ãŠæãã³ã³ããã®ãããªãã®
èæšïŒæ ç¹æ°ãå°ãªãäŒæ¥ã¯ã©ãã§ããïŒ
å°æïŒæ ç¹æ°ãå°ãªããšããSWGã¯ãã£ãæ¹ã確å®ã ãšæããŸãã
èæšïŒã§ã¯ãåœå å€ã«æ ç¹ãããäŒæ¥ã«é©ããæ§æã¯ã©ãã§ãããã
çœç³ïŒSASEåããããšæããŸããSASEã§ããã°ã€ã³ã¿ãŒãããããç¹ãã£ãŠããã°ã°ããŒãã«åå°ã®ã»ãã¥ãªãã£ã«å¯Ÿå¿ã§ããã¡ã³ããã³ã¹ã楜ã§ããéã«SASEã§ãªããšãã¡ã³ããã³ã¹ãæ ã£ãŠããç¹å®ãªãŒãžã§ã³ãã»ãã¥ãªãã£ããŒã«ã«ãªãå¯èœæ§ããããŸãã
å®®åŽïŒäžæ¹ã§ãWANããšã«å¥ã ã®ãœãªã¥ãŒã·ã§ã³ãå ¥ããã±ãŒã¹ããããŸããã
çœç³ïŒSASEã¯ãSWGãCASBãªã©ãäœã§ãæã£ãŠãããã»ãã¥ãªãã£ã®ã³ã³ããã®ãããªååšã ãšæããŸãããã å°éåºã§ã¯ãªãã®ã§ãããé«åºŠãªæ·±ãã»ãã¥ãªãã£ãæ±ããå Žåã«ã¯ãã¢ã€ãœã¬ãŒã·ã§ã³æ©èœãDLPã®å¶åŸ¡ãªã©ãäžè¶³ããæ©èœããããŸãã
ãã®éã¯ãSSEãšSD-WANãã»ããã§å©çšããããšãå€ãã§ãããã ã管çç»é¢ãç°ãªãããéçšãç ©éã«ãªããã±ãŒã¹ãã€ã±ãŒã¹ã§éžå®ããå¿ èŠããããšæããŸãã
SaaSã®å°é ã«ããã€ã³ã¿ãŒãããã»ç€Ÿå€ç£èŠã®éèŠåºŠãå¢ããŠãã
èæšïŒç€Ÿå€åãéä¿¡ã»ã¢ãŠãããŠã³ãã®ã»ãã¥ãªãã£ã«ã€ããŠã¯ãã©ã®ãããªæ©èœãå¿ èŠã§ããããã
å®®åŽïŒSaaSãããã¯ããå©çšè ã®å¢å ã«ãããšããã倧ããã§ãããäžæ¹ã§ãäŒç€ŸãèªããŠããªããµãŒãã¹ã䜿ã人ãå°ãªããããŸãããCASBã§ã»ãã¥ãªãã£å¯Ÿçãè¡ãã±ãŒã¹ãå¢ããŠããŸããããŸããŸãéèŠã¯å¢ããŠãããšæããŸããå ããŠããã匷åã«ç®¡çã»å¶åŸ¡ãããã¯ã©ã€ã¢ã³ãã¯ãDLPïŒData Loss PreventionïŒãªã©ãå°å ¥ããŠããŸãã
èæšïŒç€Ÿå€ç£èŠã«å¯ŸããSaaSãç£èŠããSSPMïŒSaaS Security Posture ManagementïŒãªã©ã¯ããŸãã«ãã¬ã³ããåæ ããŠããã»ãã¥ãªãã£ãµãŒãã¹ã ãšæããŠããŸãã
åãæ¹ã®å€åã«ããããªã³ãã¬ããã¯ã©ãŠãã«ãããã¯ãŒã¯ãç§»è¡ããŠããŸããå°æ¥çã«ç€Ÿå ãããã¯ãŒã¯ã¯ãªããªãã®ã§ããããã
çœç³ïŒæ¥çš®ã«ããã§ãããããäŸãã°éèç³»ã¯ã€ã³ã¿ãŒããããšéé¢ãããããã¯ãŒã¯ãæ§ç¯ããŠããŸããçŸæç¹ã§ã¯ã瀟å ãããã¯ãŒã¯ããŒãã«ãªãå®å šã«ã¯ã©ãŠãã«ç§»è¡ãããšã¯æããŸããã
å°æïŒã»ãã·ã§ã³ã§çœç³ããã¯ããŒã«ã«ãã¬ã€ã¯ã¢ãŠããå¿ èŠãªããšèª¬æããŠããŸãããVPNã«æºãã£ãŠããèªåãããããšãããŒã«ã«ãã¬ã€ã¯ã¢ãŠãã䜿ãã±ãŒã¹ã¯å€ããšæãã®ã§ããã
çœç³ïŒãã¹ãŠã®éä¿¡ãããŒã«ã«ãã¬ã€ã¯ã¢ãŠãããŠã¯ãããªãããšããæå³ã§ã¯ãããŸãããå 容ãç£èŠã§ããªããããªæ å ±ã§ããã°ã䜿çšããŠãããšèããŠããŸããäŸãã°ãOffice365ã®éä¿¡ãã¹ãŠãããŒã«ã«ãã¬ã€ã¯ã¢ãŠããããšãªããšãããã³ãå¶åŸ¡ãã§ããŸãããå¿ èŠãªãã®ãæ®ãèšèšãå¿ èŠã ãšèšããŸãã
å®®åŽïŒããã ãSaaSãããããããã®ã«ãããã³ãå¶åŸ¡ã«å¯Ÿå¿ããŠãã補åã¯ã¡ãžã£ãŒã©ãããããªããããã³ãå¶åŸ¡ã¯æå¹ãªæ©èœã§ã¯ãªããšå人çã«ã¯æããŠããŸãã
èæšïŒããã³ãå¶åŸ¡ã®èŠæã¯å€ãã§ãããäŸãã°ããããã·ã®ããããŒã«å€ãæ¿å ¥ããŠãµãŒãã¹åŽã§ã¢ã¯ã»ã¹ãå¶åŸ¡ããããªã©ãç¹ã«èŠæã®å€ããµãŒãã¹ãOffice365ã§ãã
ããããã®æè¡ãå補åã®åŒ·ã¿ã飿ºããããšãéèŠ
å°æïŒåŸæ¥ã®å¢çé²åŸ¡ãããŒããã©ã¹ããã客æ§ã«ææ¡ã»å°å ¥ããã«ããããèŠåŽããŠããç¹ãèãããŠãã ããã
å®®åŽïŒãŒããã©ã¹ããå°å ¥ããã°ã»ãã¥ãªãã£ãæ ä¿ã§ãããšæã£ãŠããããã©ãæåŸ éãã®å¹æãåºãªããšãããçæ³ãšã®ã®ã£ããã®å£°ãèããŸããå®éãæ©èœæ¡åŒµã¯ãªã³ãã¬ãšæ¯ã¹ããšã¯ã©ãŠãã¯ãŸã å°ãªããä»åŸã®é²åãåŸ ã€ãããªãé¢ããããŸãã
ãŸãããªã³ãã¬ã«éèŠãªè³ç£ãæ®ããŠãããªã©ã®çç±ã§å€ããªãããã®ãããŒããã©ã¹ããã¯ã©ãŠããå°å ¥ãããšäºéã«ã»ãã¥ãªãã£ã³ã¹ããããããšãã声ããç¹ã«çµå¶å±€ãªã©äžäœã¬ã€ã€ãŒããèãããŸãã
å®®åŽïŒãŠãŒã¶ãŒã端æ«ç¶æ³ã®æ€èšŒã«ããããä»ã®èŠçŽ ã«ã€ããŠã¯ãããã§ãããã
çœç³ïŒã¢ã³ããŠã€ã«ã¹æ©èœã皌åããŠãããã端æ«å ã§ãã§ãã¯ãã蚌æããæ©èœããããŸããããŒããã©ã¹ããšãããããã¬ã¬ã·ãŒçãªææ³ã«æããŸãã
å°æïŒæ©åšã§èªèšŒããããããèªèšŒã¯IDaaSã«ä»»ããæ¹ããããšèããŠããŸããäžæ¹ã§ç«¯æ«ã®ç¶æ 確èªã§ã¯EDRïŒEndpoint Detection and ResponseïŒãUEMïŒUnified Endpoint ManagementïŒãšãã£ãæè¡ããµãŒãã¹ããããŸã掻çšããå¿ èŠãããã§ãããã
èæšïŒç€Ÿå ã§ãæ§ã ãªè£œåã®æ€èšŒãããŠããŸãããäŸãã°ãEDRã端æ«ã®äžå¯©ãªæåãæ€èšŒããŠSWGã«æãããã¡ã€ã«ã®ã¢ããããŒãããããã¯ãã補åã¯ãIDaaSã®é£æºãå¿ èŠã§ãããããããã®æè¡ã補åã®è¶³ããªãèŠçŽ ãä»ã§è£ãããšãéèŠã ãšæããŸãã
ãQïŒAãåå è ããå¯ãããã質åã«ç»å£è ãåç
ããã«ã»ãã·ã§ã³åŸã¯ãèŠèŽè ããã®è³ªåã«ç»å£è ãçãã質çå¿çãè¡ãããã
QïŒå®å šã«ãŒããã©ã¹ããç®æãã¹ãã
å®®åŽïŒãŒããã©ã¹ããå°å ¥ããããã»ãã¥ãªãã£ãå®ç§ã«ãªãããã§ã¯ãããŸãããéã«ãäžããããšããããŸããã»ãã¥ãªãã£ã®æ¬è³ªã¯ãããžãã¹å¶éããããã«ããã«ããŒã¿ãå®ãããçŸç¶ãã»ãšãã©ã®äŒæ¥ã¯å¢çåã§ãç§»è¡ãšãããããæ¬è³ªã念é ã«çœ®ããªããã®ãã€ããªããåã®ã»ãã¥ãªãã£ãéžæããŠããŸãã
QïŒã»ãã¥ãªãã£ãšå©äŸ¿æ§ã®ãã©ã³ã¹ãåããã€ã³ã
å°æïŒçžåãããããäž¡è ã®ã°ã¬ãŒãŸãŒã³ãèšããããšããã€ã³ãã§ãã
èæšïŒã»ãã¥ãªãã£ã匷åºã«ããããšã§å©äŸ¿æ§ãäžãã£ãŠã¯ãæå³ããããŸãããã瀟å¡ã¯æ¥åãé²ããããã«æªæãªãæãéãæ¢ãã§ããããæªæããã¢ã¯ã»ã¹ãè¡ãããã±ãŒã¹ããããŸãã瀟å¡ã®å±æ§ãææ¡ããäžã§ããã©ã³ã¹ãã€ã³ããæ¢ãããšããå§ãããŸãããã ããçŸç¶ç¶æã¯éåã ãšæããæ°ããæè¡ãåŠå®ããæ€èšããå§¿å¢ã倧åã§ãã
QïŒãŒããã©ã¹ãã®æåäºäŸãæåãã€ã³ãã«ã€ããŠ
å°æïŒæ¬æ°ã§ã»ãã¥ãªãã£ãèããŠããäŒæ¥ã»ã©ã次ã ãšã»ãã¥ãªãã£ããŒã«ãèŠã€ããåŸåã«ãããããå®ç§ã«ãŒããã©ã¹ãç§»è¡ãå®çŸããäŒæ¥ã¯ã»ãšãã©ãããŸããããã å®çŸããããªäŒæ¥ã¯ããããããŠã³ã§é²ããŠããç¹åŸŽããããšæããŠããŸãã
QïŒãŒããã©ã¹ããšä»ã®ã»ãã¥ãªãã£ææ³ã®éããç¹åŸŽ
èæšïŒãã¬ã¯ãŒã¯ããããã¯ãŒã¯æ ç¹ãå°ãªãäŒæ¥ã§ã¯ãåŸæ¥ã®ãªã³ãã¬åã®ã»ãã¥ãªãã£ã®æ¹ãåªäœã ãšæããŸãã
å°æïŒåãã³ããŒãèªååãGUIãªã©ãå°å ¥ããŠããŸãããéçšè èŠç¹ã§èãããšãåŸæ¥ã®ã»ãã¥ãªãã£ãšæ¯ã¹ãŠãŒããã©ã¹ãã®æ¹ã倧å€ã§ãããã ãã䟵害ãããåŸã®å¯Ÿå¿ã¯èããŠããã¹ãã§ããŒããã©ã¹ãã®æ¹ãã»ãã¥ãªãã£å¹æã¯ééããªãé«ãã§ãã
QïŒãŒããã©ã¹ããæ€èšããåã«è°è«ããŠããã¹ãäºæ
å®®åŽïŒã€ã³ã¿ãŒãããåãã瀟å åããããããã®ãããã¯ãŒã¯ã§ã©ã®çšåºŠã®ã»ãã¥ãªãã£ãæ ä¿ãããã®ããå®éã«ãã©ããªè£œåã§å®çŸããŠããã®ããåé åã®å šäœåãææ¡ããäžã§ãæçµçãªãŽãŒã«ã決ããããšãéèŠã§ãã
QïŒZTNAã«ã€ããŠãå®éã©ã®çšåºŠã®ACLïŒAccess Control ListïŒãèšå®ã»å®è£ ããŠããã
å°æïŒäŒæ¥ã®äœåã«ãããããåç€Ÿã«æ±ºããŠããã£ãŠããŸãããéšå ããããéçãšããå°è±¡ã§ããéã«ãç¯å²ãåºããããŠããŸã£ãããšã§ç®¡çãç ©éã«ãªã£ãŠããäŒæ¥ãããã®ã§ãã§ããç¯å²ã§è¡ã£ãæ¹ãè¯ããšæããŸãã
æ ªåŒäŒç€Ÿãã¯ãã«
https://www.macnica.co.jp/
æ ªåŒäŒç€Ÿãã¯ãã«ã®æ¡çšæ
å ±
https://www.macnica.co.jp/recruit/
ããããã€ãã³ã
é¢é£ããã€ãã³ã

ãŒããã©ã¹ãã»ãã¥ãªãã£å®çŸã«äœ¿ããå ·äœç -ãããã¯ãŒã¯å°éå瀟ãçŸ...
2022幎03æ25æ¥ (é)ããããã®èšäº

ãã¯ãã«ã®ã»ãã¥ãªãã£ã³ã³ãµã«ã¿ã³ããèªããŒããã©ã¹ãã®å ¥å£ãIDã®äžçãââIAM/IGA/PAM管çã®éèŠæ§ãšã¢ãããŒãã解説

JSOLãšãã€ãã³å·¥æ¥ãèªãããŒããã©ã¹ãã»ãã¥ãªãã£ããå®çŸããããã®ãã€ã³ããšã¯ïŒ








