ã¯ããã« ããã«ã¡ã¯ãAWS Analytics Specialist ãœãªã¥ãŒã·ã§ã³ã¢ãŒããã¯ãã®æ·±èŠ ã§ãã ããŒã¿ããŒã¹ã®å€æŽããªã¢ã«ã¿ã€ã ã«åæåºç€ãžåæ ããããšããããŒãºã«é«ãŸããæããŠããŸããå®éã«å€ãã®ã客æ§ããçžè«ãããã ããŠãããŸãããŸãããŒã¿ããŒã¹ã®å·®åãããšã«é£æºããããšãæãŸããå Žé¢ãå€ããããŸããããããå Žåã®éžæè¢ã®äžã€ã CDCïŒChange Data CaptureïŒãšåŒã°ãã MySQL ã® binlogãªã©ã®å€æŽå±¥æŽãããšã«ããŒã¿ã飿ºããææ³ã«ãªããŸããããããCDC ã§ã®å®è£
ã¯ãããŒã¿ååŸã»ãã£ãã·ã¥ã¬ã€ã€ãŒã»ã³ã³ã·ã¥ãŒããŒã®å®è£
ãšã³ã³ããŒãã³ããå€ããªãå Žåãå€ãæè¡çãªããŒãã«ãé«ãããœãŒã¹ããŒã¿ããŒã¹ã®ã¹ããŒãã®å€æŽãã¿ãŒã²ããã®åæåºç€ã«æ»ããªã飿ºããå¿
èŠããããªã©éçšè² è·ã倧ããã¯ãŒã¯ããŒãã«ãªããŸãã CDC ã®ã¿ãŒã²ããã®éžæè¢ã®ïŒã€ãšããŠãIceberg ãå©çšããããšã§å€æ§ãªãšã³ãžã³ããå©çšããããšãã§ãããœãŒã¹ã¹ããŒãã®å€æŽã«ãæè»ã«å¯Ÿå¿ãã§ããã³ã¹ãå¹çã®è¯ããDB ã®ããŒã¿ããœãŒã¹ã«ããããŒã¿ã¬ã€ã¯ããŠã¹ãæ§ç¯ããããšãã§ããŸãã æ¬èšäºã§ã¯ãAWS ããŒãããŒã§ãã primeNumber 瀟 ãæäŸããããŒã¿çµ±åãã©ãããã©ãŒã ãTROCCOãã® CDC æ©èœã䜿ã£ãŠãMySQL ãã AWS äžã® Apache Iceberg ããŒãã«ãžã®ãªã¢ã«ã¿ã€ã ã¬ããªã±ãŒã·ã§ã³ãå®çŸããæ¹æ³ãã玹ä»ããŸããå®éã«æ€èšŒããå
容ãããšã«ãã»ããã¢ããããéçšãŸã§è©³ãã解説ããŠãããŸãã RDB ãã Apache Iceberg ããŒãã«ãžã®ããŒã¿é£æºã®ãŠãŒã¹ã±ãŒã¹ RDB ããœãŒã¹ã« Apache Iceberg ãžããŒã¿ã飿ºãããå Žé¢ã¯ã©ã®ãããªã±ãŒã¹ãããã§ããããïŒããã€ãã®äŸãã¿ãŠã¿ãŸãããã OLTP ãš OLAP ã®åé¢ RDB ã«ããããŒã¿ãåæã«äœ¿ãããå Žåã§ããæ§ã
ãªçç±ã§çŽæ¥ RDB ã«åæã¯ãšãªãå®è¡ããããšãããããããå Žé¢ã¯ããããããšæããŸãããã®äžã§ãå€ãäžããçç±ãšããŠã¯ããœãŒã¹ DB ã®ãã©ã³ã¶ã¯ã·ã§ãã«ãªã¯ãŒã¯ããŒãã®ããã©ãŒãã³ã¹ã«åœ±é¿ãäžããããªããšãã£ãçç±ã§ããã€ã³ã¿ã©ã¯ãã£ãã«åæãããã±ãŒã¹ã§ã¯ããã®ããã ãã«ãªãŒãã¬ããªã«ãªã©ã§åæçšã®ãªãœãŒã¹ãçšæããããšãã³ã¹ãå¢å ã«ã€ãªãã£ãŠããŸããŸãããã®ããã OLTP (Online Transaction Processing) ãš OLAP(Online Analytical Processing) ãåé¢ããããšã§ãªãœãŒã¹ç®¡çã»å¹çã®åäžãã³ã¹ãæé©åãçã£ãåé¢ãè¡ãããšããããŸããApache Iceberg ãå©çšããããšã§é«ãã³ã¹ãå¹çã§ OLAP ç°å¢ãçšæããããšãå¯èœã«ãªããŸãããŸããApache Iceberg ã®ãªãŒãã³ãªãã©ãŒãããã§ããç¹åŸŽããåæãŠãŒã¶ãŒã®å¥œã¿ã®ã¯ãšãªãšã³ãžã³ãå©çšããããšãéåžžã«ç°¡åã«ãªããŸããäŸãã° AWS ã®ãšã³ãžã³ã§ããã° Athena ã Redshift ãOSS ã®ãšã³ãžã³ã§ããã° Spark ã Trino ã DuckDB ã PyIceberg ããåãããŒãã«ãåç
§ããããšãã§ããããã«ãªããŸããããã«ãããåºã掻çšã®å¹
ããã£ãããŒã¿ã¬ã€ã¯ãæ§ç¯ããããšãå¯èœã«ãªããŸãã ã¿ã€ã ãã©ãã«æ©èœãå©çšããé廿é¢ã®åç
§ ããŒã¿ããŒã¹ããŒãã«ã®éå»ã®æé¢ãåçŸããå¿
èŠã®ããå Žé¢ã¯åºŠã
èŠåããããŸããäŸãã°ãããŒãã«ã®ããŒã¿ã«äžæŽåãçºçããéã®ããŒã«ããã¯ãããã㯠ML ã AI ã®ã¢ãã«éçºæã®ã¢ãã«å€æŽã«ãã圱é¿ãéå»ã®ããŒãã«ã䜿ã£ãŠç¢ºèªããããã¯ãã¹ããšãã£ããŠãŒã¹ã±ãŒã¹ããããããŸãã ããã«é¢é£ãã Iceberg ã®å€§ããªç¹åŸŽãšããŠãã¹ãããã·ã§ãããå©çšããéå»ã®ããŒãã«ã®æé¢ãæå®ããŠã¯ãšãªãå®è¡ãã ã¿ã€ã ãã©ãã« æ©èœããããŸããRDB ãã Iceberg ããŒãã«ã«ããŒã¿ãå·®åã§é£æºããããšã§éå»ã®ããŒãã«ã®ç¶æ
ã容æã«ç¢ºèªããããšãå¯èœã§ããåŸæ¥å€æŽå·®åãããã¯ã¢ãããšããŠä¿æããããšãããšã宿çã«ãã«ã¹ãããã·ã§ãããååŸããããä¿ç®¡ããŠãããšãã£ãã³ã¹ãã®ãããæ¹æ³ãå¿
èŠã§ãããããããIceberg ã§ã¯å·®åããŒã¿ãå¹ççã«ä¿æããããšãå¯èœãªããé«ãã³ã¹ãå¹çã§ããŒãã«ã®æé¢ãä¿æããããšãå¯èœã§ãã ä»ã«ãæ§ã
ãªå Žé¢ã§ RDB ãã Iceberg ããŒãã«ãžã®ããŒã¿é£æºãæå¹ãªãœãªã¥ãŒã·ã§ã³ã«ãªãããŸãããããå®è£
ã管çã»éçšã®æéãäœãæããŠå®çŸããããšãã§ãã 1 ã€ã®ææ®µã TROCCO ã® CDC æ©èœã«ãªããŸãã TROCCO ãšã¯ TROCCO ã¯ãããŒã¿ã®åéã»å å·¥ã»è»¢éãç°¡åã«å®çŸã§ããããŒã¿åºç€æ§ç¯ã»éçšã®æ¯æŽ SaaS ã§ããããŒã³ãŒã/ããŒã³ãŒãã§ããŒã¿ãã€ãã©ã€ã³ãæ§ç¯ã§ãã倿§ãªããŒã¿ãœãŒã¹ãšãã¹ãã£ããŒã·ã§ã³ã«å¯Ÿå¿ããŠããŸãã ä»åã玹ä»ãã TROCCO ã® CDC æ©èœ ã¯ããœãŒã¹ããŒãã«ã®å€æŽïŒINSERT/UPDATE/DELETEïŒãã«ã©ã ã®è¿œå ãšãã£ãã¹ããŒãã®å€æŽããªã¢ã«ã¿ã€ã ã«æ€ç¥ããã¿ãŒã²ããã·ã¹ãã ãžèªåçã«åæ ããããšãã€ã³ãã©ã®ç®¡çãªãå®çŸããããšãã§ããæ©èœã§ãããœãŒã¹ DB ãšããŠã¯ã2025 幎 12 ææç¹ã§ MySQL ãš PostgreSQL ã«å¯Ÿå¿ããŠããŸãã(CDC æ©èœã¯ Professional ãã©ã³ã®å¥çŽãåæãšãªããŸãã) ä»åã¯ãã®äžã®ããœãŒã¹ã® MySQL ãã ã¿ãŒã²ããã® AWS äžã® Glue Data Catalog ã«ç»é²ããã Iceberg ããŒãã«ã«ããŒã¿é£æºããæ¹æ³ãã玹ä»ããŸãã ã¢ãŒããã¯ãã£æŠèŠ ä»åæ§ç¯ããã·ã¹ãã ã®ã¢ãŒããã¯ãã£ã¯ä»¥äžã®éãã§ãïŒ ãœãŒã¹ : MySQL ããŒã¿ããŒã¹(8.x ä»¥éæšå¥šïŒ CDC åŠç : TROCCO CDC æ©èœ ã¿ãŒã²ãã : Amazon S3 + AWS Glue Data CatalogïŒApache Iceberg 圢åŒïŒ ã¯ãšãªãšã³ãžã³ : Amazon Athena TROCCO ã MySQL ã®ãã€ããªãã°ãç£èŠãã倿Žãæ€ç¥ãããšããã®å€æŽã Iceberg 圢åŒã§ Amazon S3 ã«æžã蟌ã¿ãŸãã Glue Data Catalog ã«ã¡ã¿ããŒã¿ãç»é²ããããããAthena ããå³åº§ã«ã¯ãšãªå¯èœã«ãªããŸãã ã»ããã¢ããæé 1. ãããã¯ãŒã¯èšå® TROCCO ãã MySQL ãžæ¥ç¶ãããããã»ãã¥ãªãã£ã°ã«ãŒãã®èšå®ãå¿
èŠã§ããTROCCO ã®åºå® IP ã¢ãã¬ã¹ããã®æ¥ç¶ãèš±å¯ããŸãã TROCCO ã®åºå® IP ã¢ãã¬ã¹ã¯ å
¬åŒããã¥ã¡ã³ã ã§ç¢ºèªã§ããŸãããŸãããšãã§ã¡ã©ã«ããŒããšã㊠1024-65535 ã䜿çšãããããã»ãã¥ãªãã£ã°ã«ãŒãã§ãã®ç¯å²ãéæŸããå¿
èŠããããŸãã 2. IAM ããŒã«ã®äœæ TROCCO ã S3 ãš Glue Data Catalog ã«ã¢ã¯ã»ã¹ãããããé©åãªæš©éãæã€ IAM ããŒã«ãäœæããŸããCDC æ©èœã§ã¯ IAM ããŒã«ã®ã¿ããµããŒããããŠããŸãïŒIAM ãŠãŒã¶ãŒã¯äœ¿çšã§ããŸããïŒã TROCCO ã®ããã¥ã¡ã³ã ã«ããå¿
èŠãª IAM ããªã·ãŒã®äŸã¯ãã®ãããªãã®ã«ãªããŸãã { "Version": "2012-10-17", "Statement": [ { "Effect": "Allow", "Action": [ "s3:ListAllMyBuckets" ], "Resource": "*" }, { "Effect": "Allow", "Action": [ "s3:ListBucket" ], "Resource": "arn:aws:s3:::<bucket_name>" }, { "Effect": "Allow", "Action": [ "s3:GetObject", "s3:PutObject", "s3:DeleteObject" ], "Resource": "arn:aws:s3:::<bucket_name>/*" }, { "Effect": "Allow", "Action": [ "glue:GetDatabase", "glue:UpdateDatabase", "glue:CreateDatabase" ], "Resource": [ "arn:aws:glue:<aws_region>:<account_id>:catalog", "arn:aws:glue:<aws_region>:<account_id>:database/<database_name>" ] }, { "Effect": "Allow", "Action": [ "glue:GetTable", "glue:UpdateTable", "glue:CreateTable", "glue:DeleteTable" ], "Resource": [ "arn:aws:glue:<aws_region>:<account_id>:catalog", "arn:aws:glue:<aws_region>:<account_id>:database/<database_name>", "arn:aws:glue:<aws_region>:<account_id>:table/<database_name>/*" ] } ] } ã¿ãŒã²ããã® Iceberg ããŒãã«ã® Location ã§ãã S3 㚠該åœã® Glue Data Catalogãžã®ã¢ã¯ã»ã¹æš©éãå¿
èŠã«ãªããŸãã 3. TROCCO æ¥ç¶æ
å ±ã®èšå® TROCCO ã®ç®¡çç»é¢ããã以äžã®æ¥ç¶æ
å ±ãç»é²ããŸãã Amazon S3 ã®æ¥ç¶æ
å ±: IAM Role ã® ARNãS3 ãã±ããåããªãŒãžã§ã³ MySQL ã®æ¥ç¶æ
å ±: ãã¹ãåãããŒããããŒã¿ããŒã¹åããŠãŒã¶ãŒåããã¹ã¯ãŒã ãŸã㯠Amazon S3 ãžã®æ¥ç¶æ
å ±ãèšå®ããå¿
èŠããããŸãã AWS ã¢ã«ãŠã³ã IDãå
ã»ã© 2 çªã§äœæãã IAM Role ãèšå®ããŸãã ãŸããäžéšã«è¡šç€ºããã TROCCO ã® AWS ã¢ã«ãŠã³ããšå€éš ID ãå
ã»ã©äœæãã IAM Role ã«èšå®ããŸãã IAM Role ã® ä¿¡é Œããªã·ãŒã¯ä»¥äžã®ããã«ãªããŸãã { "Version": "2012-10-17", "Statement": [ { "Effect": "Allow", "Principal": { "AWS": "arn:aws:iam::{TROCCO AWS Account ID}:root" }, "Action": "sts:AssumeRole", "Condition": { "StringEquals": { "sts:ExternalId": {External ID}" } } } ] } 次ã«ãMySQL æ¥ç¶æ
å ±ãèšå®ããŸããæ¥ç¶å
DB ã®ãã¹ããããŒãããŠãŒã¶ãŒåããã¹ã¯ãŒããå¿
èŠã«ãªããŸãããã®èšå®ãããåã« ãœãŒã¹ DB åŽã§ binlogã®èšå® ãå¿
èŠã«ãªãããšã«æ³šæããŠãã ããã 4. CDC 転éèšå®ã®äœæ ä»äœæããæ¥ç¶æ
å ±ãå
ã«ãTROCCO ã®ç®¡çç»é¢ããæ°ãã CDC 転éèšå®ãäœæããŸãã ããã§ããã® CDC ããŒã¿è»¢éæ©èœã®ç¹åŸŽã§ããããŒãã«ãã«ã©ã ã®èªå远åŸã«é¢ããèšå®ãå¯èœã§ããããŒãã«ã»ã«ã©ã ã©ã¡ãã远åŸãããã«ã©ã ã®ã¿è¿œåŸããã远åŸããªãã® 3 ãã¿ãŒã³ãéžæã§ããŸãã å
ã»ã©èšå®ãã MySQL ãš S3 ã®æ¥ç¶æ
å ±ãããã§éžæããŸããS3 ã®èšå®ã«ã€ããŠã¯ Iceberg ã®ãã¬ãã£ãã¯ã¹ãã¿ãŒã²ããããŒãã«ã® Glue ããŒã¿ããŒã¹ãéžæããå¿
èŠããããŸãã èšå®ã¯ãªããšããã ãã§å®äºã§ãïŒ äž»èŠãªæ©èœ ããã§ã¯å
ã»ã©äœæãã CDC ããŒã¿è»¢éèšå®ãå®è¡ããŠã¿ãŸãã ããŒã¿é£æº ååå®è¡æã«ã¯ãã«ããŒããå®è¡ããããœãŒã¹ããŒãã«ã®æ¢åããŒã¿ããã¹ãŠ Iceberg ããŒãã«ã«è»¢éãããŸãããªããã¹ããŒãèšå®ãã飿ºããããŒãã«ã¯éžæããããšãã§ããŸãã ååã®ãã«ããŒãå®äºåŸã¯ãã¹ã±ãžã¥ãŒã«èšå®ã«åŸã£ãŠ MySQL ã®ãã€ããªãã°ãç£èŠããŠå·®åæŽæ°ãç¶ç¶çã«å®è¡ããŸããã¹ã±ãžã¥ãŒã«ã¯æç 5 åééã§èšå®å¯èœã§ãã ã¹ããŒã倿Žã®èªåè¿œåŸ TROCCO ã® CDC æ©èœã¯ããœãŒã¹ããŒã¿ããŒã¹ã®ã¹ããŒã倿Žãèªåçã«æ€ç¥ããIceberg ããŒãã«ã«åæ ããŸãã ã«ã©ã 远å ã®å Žåãæ°ããã«ã©ã ã Iceberg ããŒãã«ã«èªåçã«è¿œå ãããŸããæ¢åã¬ã³ãŒãã®æ°èŠã«ã©ã 㯠NULL ã«ãªããŸããããã¯ãã£ã«æ©èœãæå¹ã«ãããšãå
šã¬ã³ãŒããå転éã§ããŸãããIceberg ã®ã¹ãããã·ã§ããå±¥æŽã倱ãããç¹ã«æ³šæãå¿
èŠã§ãã詳现㯠ãã¡ã ãã芧ãã ããã ã«ã©ã åé€ã®å ŽåãTROCCO åŽã§ã¯è©²åœã«ã©ã ã®ããŒã¿è»¢éã忢ãããŸãããIceberg ããŒãã«ããã«ã©ã ã¯åé€ãããŸãããå¿
èŠã«å¿ããŠæåã§ã®åé€ãå¿
èŠã§ãã 飿ºããããŒãã«ã»ã«ã©ã ã®éžæ 転éããããŒãã«ããã®äžã®ã«ã©ã ãéžæã§ãããããæ©å¯æ
å ±ãå«ãã«ã©ã ãé€å€ããããäžèŠãªã«ã©ã ã転éããªãããšã§ã³ã¹ããæé©åããããšãç°¡åã«ã§ããŸãã ãã®ä»ã«ããäºåã«éç¥å
ãèšå®ããŠããããšã§ããžã§ãã®å®è¡çµæãã¹ããŒã倿Žã®éç¥ã E-mail ã Slack ã«è¡ãããšãå¯èœã§ãããŸãããžã§ãã®å±¥æŽãããããã®ãã°ã«ã€ããŠã UI äžã§ç¢ºèªãå¯èœã«ãªã£ãŠããŸãã 飿ºãã Iceberg ããŒãã«ãžã®ã¯ãšãª ãžã§ãã®å®è¡åŸã« AWS ã³ã³ãœãŒã«ããGlue ã«ã¿ãã°ã確èªããŠã¿ããšãTROCCO ã§èšå®ããããŒãã«ãé©åã«é£æºãããŠããããšãããããŸãã 飿ºå
ã® Iceberg ããŒãã«ã¯ Athena ã GlueãRedshift ãªã©ããŸããŸãªãšã³ãžã³ããã¯ãšãªããããšãå¯èœã§ããIceberg ããŒãã«ãžã®ã¯ãšãªã«å¯Ÿå¿ããŠãã 3rd party ã®è£œåããã®ã¯ãšãªããã¡ããå¯èœã§ããïŒãã ããEquality Delete File ã®èªã¿åãã«å¯Ÿå¿ããŠããå¿
èŠããããŸãã詳现㯠Apache Iceberg ã®document ããåç
§äžãããïŒ ä»åã¯ã SageMaker Unified Studio ã® AI ãšãŒãžã§ã³ããçµã¿èŸŒãŸããããŒããã㯠ããã¯ãšãªãè¡ã£ãŠã¿ãŸãããäžã®ã¹ã¯ãªãŒã³ã·ã§ããã®ããã«ã飿ºããã Iceberg ããŒãã«ãç°¡åã«ã¯ãšãªããããšãã§ããŸããã ãŸããAI ãšãŒãžã§ã³ãã«å¯ŸããŠé£æºãã Iceberg ããŒãã«ãžã®ã¯ãšãªãæç€ºããããšã§ãã¯ãšãªæãäœãããŠå®è¡ããããšãå¯èœã§ããä»åã¯ãIceberg ã®ç¹åŸŽã®äžã€ã§ããã¹ãããã·ã§ããã®å±¥æŽã確èªãããæšãæç€ºããŠã¿ãŸããã `Show me snapshots history of spark_catalog.trocco.movie_table_usecase.` å®éã«çæãããã¯ãšãªã以äžã®ç»åã§ããIceberg ç¹æã®æŠå¿µã§ã¯ãããŸãããé©åãªã¯ãšãªãçæããŠå®è¡ããŠãããŸãããçµæãã¿ããšãã®ããŒãã«ã«ã¯ïŒã€ã®ã¹ãããã·ã§ãããããããã§ãããã® ID ãæå®ããããšã§ãéå»ã®ããŒãã«æé¢ãã¯ãšãªããããšãã§ããŸãããã®ããã«ãIceberg ãšãããã®æ©èœã®æäœã«æ
£ããŠããªãå Žåã§ã AI ãšãŒãžã§ã³ãã䜿ããªããå©çšããããšãå¯èœã§ãã ãŸãšã TROCCO ã® CDC æ©èœã䜿ãããšã§ãè€é㪠CDC ãã€ãã©ã€ã³ãæ§ç¯ããããšãªãäœãå®è£
ã³ã¹ãã§ RDB ãš Apache Iceberg ã®ããŒã¿é£æºãå®çŸããããšãå¯èœã«ãªããŸããæ¬ããã°ã§èª¬æããããã« GUI ã®ã¿ã§éåžžã«ç°¡åã«èšå®ã§ããäžã«ããžã§ãããœãŒã¹ããŒãã«ã®ç£èŠãšéç¥ã®æ©èœã UI äžã§å©çšãå¯èœã§ãããéçšããäžã§ããã®è² è·ãäžããŠãããæ©èœãæã£ãŠããŸãã ããã«ãã£ãŠãç°¡åã« RDB ã®ããŒã¿ããœãŒã¹ãšãã OLAP åºç€ãæ§ç¯ããããã¿ã€ã ãã©ãã«ã«ããããã¯ã¢ããã®åœ¹å²ãæã€ããŒã¿ã¬ã€ã¯ãžã®é£æºãã€ãã©ã€ã³æ§ç¯ããããšãå¯èœã«ãªããŸãã 飿ºãã Iceberg ããŒãã«ã«ã€ããŠãæé©ãªããã©ãŒãã³ã¹ãåºããããã«ããŒã¿ãã¡ã€ã«ãµã€ãºã®ã³ã³ãã¯ã·ã§ã³ãæéåãã¹ãããã·ã§ããã®åŠçãªã©ããŒãã«ã®ã¡ã³ããã³ã¹ãéèŠã§ãããã®ããã Glue Data Catalog ã® Iceberg ããŒãã«ã®èªåã¡ã³ããã³ã¹æ©èœ ãã¯ãããšããŠãã¡ã³ããã³ã¹ãžã§ãã®å®è¡ã«ã€ããŠããæ€èšããã ãããšãããããããŸãã ãã² AWS ãš ãã®ããŒãããŒã§ãã primeNumber 瀟㮠TROCCO ãå©çšããŠå¹æçãªããŒã¿åºç€ãæ§ç¯ããŠãããŸãããã èè
ã«ã€ã㊠Shuhei Fukami : AWS Japan ã§ Analytics Specialist Solutions Architect ãšããŠããŒã¿åæãæ€çŽ¢ãªã©ããŒã¿ã«ãŸã€ããã¯ãŒã¯ããŒãã®ãæ¯æŽãããŠããŸããè¶£å³ã§ãã¶äœãã«ã¯ãŸã£ãŠããŸãã
2025 幎 12 æ 2 æ¥ã AWS ãµããŒã ãã客æ§ã®æ¯æŽæ¹æ³ãæ ¹æ¬ãã転æããäºåŸå¯Ÿå¿åã®åé¡è§£æ±ºããäºå察å¿åã®åé¡äºé²ãžãšé²åããããšãçºè¡šããŸããããã®é²åã«ãããAI ãæŽ»çšããæ©èœãš Amazon Web Services (AWS) ã®å°éç¥èãçµã¿åãããæ°ãããµããŒããã©ã³ãå°å
¥ãããŸãããæ°ãã匷åããããã©ã³ã¯ãæœåšçãªåé¡ãäºæ¥éå¶ã«åœ±é¿ããåã«ç¹å®ããŠå¯ŸåŠããã®ã«åœ¹ç«ã¡ãã¯ã©ãŠãã¯ãŒã¯ããŒãããã广çã«éçšããã³æé©åããã®ã«åœ¹ç«ã¡ãŸãã ããŒããã©ãªãªã«ã¯ãããŸããŸãªéçšããŒãºã«åãããŠèšèšããã 3 ã€ã®ãã©ã³ãå«ãŸããŠããŸããåãã©ã³ã«ã¯ç°ãªãæ©èœããããäžäœãã£ã¢ã«ã¯äžäœãã£ã¢ã®ãã¹ãŠã®æ©èœã«å ããŠãè¿œå æ©èœããµãŒãã¹ã¬ãã«ã匷åãããŠããŸãããããããèŠãŠã¿ãŸãããã æ°ãã匷åããã AWS ãµããŒãææãã©ã³ Business Support+ ã¯ãAI ãæŽ»çšããã€ã³ããªãžã§ã³ããªæ¯æŽãæäŸããããšã§ãéçºè
ãã¹ã¿ãŒãã¢ãããäžå°äŒæ¥ã®ãšã¯ã¹ããªãšã³ã¹ãå€é©ããŸããAWS ã®å°éå®¶ã«çŽæ¥åãåãããããå¿
èŠã«å¿ããŠã·ãŒã ã¬ã¹ã« AWS ã®å°éå®¶ã«ç§»è¡ãã AI ãæŽ»çšããç¶æ³ã«å¿ããæšå¥šäºé
ããå§ããããéžæã§ããŸããAWS ã®ãšãã¹ããŒãã¯ãé倧ãªã±ãŒã¹ã«ã€ã㊠30 å以å
(以åã® 2 åã®éã) ã§å¯Ÿå¿ããŸãã以åã®çµç·¯ãèžãŸããŠãããããåãããšãç¹°ãè¿ãå¿
èŠããªããªããŸãã ãã®ãã©ã³ã¯æé¡æéãå®ããããAI ãæŽ»çšããããŒã«ãš AWS ã®å°éç¥èãçµã¿åãããŠé«åºŠãªéçšæ©èœãå©çšã§ããŸãããã®ãã©ã³ã§ã¯ãã客æ§åºæã®ç°å¢ã«åºã¥ããŠã¯ãŒã¯ããŒããæé©åã§ãããããåå¥ã®æšå¥šäºé
ãæç€ºããŸãããŸããå¿
èŠã«å¿ã㊠AWS ã®å°éå®¶ã«ã·ãŒã ã¬ã¹ã«ãã¯ãã«ã«ãµããŒããåããããšãã§ããŸãã ãšã³ã¿ãŒãã©ã€ãºãµããŒã ã¯ã確ç«ããããµããŒãã¢ãã«ã«åºã¥ããŠæ§ç¯ãããŠããŸãããã®ãã£ã¢ã§ã¯ãã€ã³ããªãžã§ã³ããªéçšãš AI ãæŽ»çšããä¿¡é Œã§ãããã¥ãŒãã³ã¬ã€ãã³ã¹ãéããŠãã€ãããŒã·ã§ã³ãšã¯ã©ãŠãéçšã®æåãä¿é²ããŸããæ
åœã®ãã¯ãã«ã«ã¢ã«ãŠã³ããããŒãžã£ãŒ (TAM) ã¯ãAWS ã«é¢ããæ·±ãç¥èãšã客æ§ã®ç°å¢ããã®ããŒã¿ã«åºã¥ãã€ã³ãµã€ããçµã¿åãããŠãæé©åã®æ©äŒãšæœåšçãªãªã¹ã¯ãæ¥åã«åœ±é¿ããåã«ç¹å®ã§ããããæ¯æŽããŸãããã®ãã©ã³ã§ã¯ãè¿œå æéãªãã§ AWS Security Incident Response ãå©çšã§ããŸããããã¯ãã»ãã¥ãªãã£ã€ãã³ãã®è¿œè·¡ãä¿ç®¡ã管çãäžå
åããå
æ¬çãªãµãŒãã¹ã§ãããã»ãã¥ãªãã£äœå¶ã匷åããããã®èªåã¢ãã¿ãªã³ã°ããã³èª¿æ»æ©èœãæäŸããŸãã ãã®ãã£ã¢ã¯ãAI ãæŽ»çšããæ¯æŽãš AWS ç°å¢ã®ç¶ç¶çãªã¢ãã¿ãªã³ã°ãéããŠãéçšã®èŠæš¡ãæ°ããªã¬ãã«ã«åŒãäžããã®ã«åœ¹ç«ã¡ãŸããæ¬çªçšŒåç°å¢ã§ã®é倧ãªåé¡ãžã®å¯Ÿå¿æéã¯æå€§ 15 åã§ããµããŒããšã³ãžãã¢ã¯ AI ãšãŒãžã§ã³ãããããŒãœãã©ã€ãºãããã³ã³ããã¹ããæäŸãããããããã®ãã£ã¢ã§ã¯ããªãã¬ãŒã·ã§ãã«ãšã¯ã»ã¬ã³ã¹ãç¶æããªãããããè¿
éã§ããŒãœãã©ã€ãºããã解決ãå¯èœã«ãªããŸããããã«ãç¶ç¶çãªæè¡æé·ãä¿é²ããããã®ã€ã³ã¿ã©ã¯ãã£ããªããã°ã©ã ãå®è·µçãªã¯ãŒã¯ã·ã§ããã«ãã¢ã¯ã»ã¹ã§ããŸãã Unified Operations Support ã¯ãæ¡åŒµããã AWS å°éå®¶ããŒã ãéããŠãç¶æ³ã«å¿ããæé«ã¬ãã«ã®ãµããŒããæäŸããŸãããã¯ãã«ã«ã¢ã«ãŠã³ããããŒãžã£ãŒããã¡ã€ã³ãšã³ãžãã¢ãæå®ã®ã·ãã¢è«æ±ããã³ã¢ã«ãŠã³ãã¹ãã·ã£ãªã¹ãã§æ§æãããã³ã¢ããŒã ã¯ãç§»è¡ãã€ã³ã·ãã³ã管çãã»ãã¥ãªãã£ã«é¢ãããªã³ããã³ãã®å°éå®¶ã«ãã£ãŠè£å®ãããŸãããããã®å°ä»»ãšãã¹ããŒãã¯ãã客æ§åºæã®ç°å¢ãšéçšå±¥æŽãçè§£ããã¢ãŒããã¯ãã£ã«é¢ããç¥èãš AI ãæŽ»çšããã€ã³ãµã€ããçµã¿åãããªãããã奜ã¿ã®ã³ã©ãã¬ãŒã·ã§ã³ãã£ãã«ãéããŠã¬ã€ãã³ã¹ãæäŸããŸãã ãã®éå±€ã§ã¯ã24 æéäœå¶ã®å
æ¬çãªã¢ãã¿ãªã³ã°ãš AI ãæŽ»çšããèªååã«ãããããã¢ã¯ãã£ããªãªã¹ã¯ã®ç¹å®ãšç¶æ³ã«å¿ããã¬ã€ãã³ã¹ã«ãããããã·ã§ã³ã¯ãªãã£ã«ã«ãªæ¥åã匷åããŸããé倧ãªã€ã³ã·ãã³ããçºçãããšãã客æ§ã®ã¯ãŒã¯ããŒããçè§£ããŠãããµããŒããšã³ãžãã¢ããæè¡çãªæšå¥šäºé
ãæäŸããã5 å以å
ã«å¯Ÿå¿ã§ããŸããããŒã ã¯ãäœç³»çãªã¢ããªã±ãŒã·ã§ã³ã¬ãã¥ãŒã宿œããéçšæºåãæŽã£ãŠããããšã確èªããããžãã¹ã«äžå¯æ¬ ãªã€ãã³ãããµããŒãããŸããããã«ãããæé«ã¬ãã«ã®éçšèœåãç¶æããªãããã€ãããŒã·ã§ã³ã«éäžã§ããŸãã ã¯ã©ãŠãéçšã®å€é© AWS ãµããŒãã¯ãã¯ã©ãŠãã€ã³ãã©ã¹ãã©ã¯ãã£ããã广çã«æ§ç¯ãéçšãæé©åã§ããããã«é²åããŠããŸããã客æ§ã®ã¢ã«ãŠã³ãã®ãµããŒãå±¥æŽãšéå»ã®ã±ãŒã¹ãæ§æã以åã®ã±ãŒã¹ã®ã³ã³ããã¹ããç¶æããŠãããããAI ãæŽ»çšããæ©èœãš AWS ã®å°éå®¶ããã客æ§åºæã®ç°å¢ã«åããããããé©åã§å¹æçãªãœãªã¥ãŒã·ã§ã³ãæäŸã§ããŸãã ãµããŒããã©ã³ã®æ©èœã¯ç¶ç¶çã«é²åããã€ã³ãã©ã¹ãã©ã¯ãã£ãå
æ¬çã«å¯èŠåã§ããããã«ãªããããã©ãŒãã³ã¹ãã»ãã¥ãªãã£ãã³ã¹ãã®åŽé¢ã«ãããå®çšçãªã€ã³ãµã€ããåŸãããããžãã¹ãžã®åœ±é¿ãšã³ã¹ãé¢ã§ã®ã¡ãªãããæç¢ºã«è©äŸ¡ã§ããããã«ãªããŸãããã® AI æèŒããŒã«ãš AWS ã®å°éç¥èã®çµã¿åããã¯ãäºåŸå¯Ÿå¿åããäºå察å¿åã®éçšãžã®æ ¹æ¬çãªè»¢æãæå³ããããžãã¹ã«åœ±é¿ãåã¶åã«åé¡ãæªç¶ã«é²ãã®ã«åœ¹ç«ã¡ãŸãã AWS ããããããŒãµããŒããAWS ããžãã¹ãµããŒã (ã¯ã©ã·ãã¯)ãããã³ AWS Enterprise On-Ramp ãµããŒããã©ã³ã®ãµãã¹ã¯ã©ã€ããŒã¯ã2027 幎 1 æ 1 æ¥ãŸã§çŸåšã®ã¬ãã«ã®ãµããŒããåŒãç¶ãåããããšãã§ããŸãããããŸã§ã¯ãAWS ãããžã¡ã³ãã³ã³ãœãŒã«ã«ã¢ã¯ã»ã¹ããããAWS ã¢ã«ãŠã³ãããŒã ã«é£çµ¡ããããšã§ããã€ã§ãæ°ãããã©ã³ãæ¡åŒµãã©ã³ã®ããããã«ç§»è¡ã§ããŸããAWS ãšã³ã¿ãŒãã©ã€ãºãµããŒãã«ç»é²ããŠããã客æ§ã¯ããã€ã§ããã®ãã©ã³ã®æ°æ©èœã䜿ãå§ããããšãã§ããŸãã ç¥ã£ãŠããã¹ãããš Business Support+ãEnterprise SupportãUnified Operations ã¯ããã¹ãŠã®åçš AWS ãªãŒãžã§ã³ã§å©çšã§ããŸããæ¢åã®ã客æ§ã¯ãçŸåšã®ãã©ã³ãç¶ç¶ããããšããããã©ãŒãã³ã¹ãšå¹çãåäžãããæ°ãããµãŒãã¹ãæ€èšããããšãã§ããŸãã Business Support+ ã¯æé¡ 29 ãã«ããã§ã以åã®ããžãã¹ãµããŒãã®æé¡æäœé¡ãã 71ïŒ
ç¯çŽã§ããŸãããšã³ã¿ãŒãã©ã€ãºãµããŒãã¯æé¡ 5,000 ãã«ããã§ã以åã®ãšã³ã¿ãŒãã©ã€ãºãµããŒãã®æäœäŸ¡æ Œãã 67% ãåŸã§ããUnified Operations ã¯ãããã·ã§ã³ã¯ãªãã£ã«ã«ãªã¯ãŒã¯ããŒããæ±ããçµç¹åãã«èšèšãããå°ä»»ã® AWS å°éå®¶ããŒã ã察象ãšããŠãããæé¡ 50,000 ãã«ãããå©çšããã ããŸãããã¹ãŠã®æ°ãããµããŒããã©ã³ã§ã¯ã䜿çšéãå€ãã»ã©ãµããŒãã®éçäŸ¡æ ŒãäžããäŸ¡æ Œåž¯ãæ¡çšãããŠããŸãã é倧ãªã±ãŒã¹ã«ã€ããŠã¯ãAWS ãµããŒãã¯ãã©ã³ããšã«ç°ãªãç®æšå¿çæéãæäŸããŸããBusiness Support+ 㯠30 åãEnterprise Support 㯠15 å以å
ãUnified Operations Support 㯠5 åã§æéã®å¿çæéãæäŸããŸãã AWS ãµããŒãã®ãã©ã³ãšæ©èœã®è©³çްã«ã€ããŠã¯ã AWS ãµããŒãããŒãž ã«ã¢ã¯ã»ã¹ãããã AWS ãããžã¡ã³ãã³ã³ãœãŒã« ã«ãµã€ã³ã€ã³ããŠãã ããã AWS ãµããŒãæ©èœã«é¢ããå®è·µçãªã¬ã€ãã³ã¹ã«ã€ããŠã¯ãã¢ã«ãŠã³ãããŒã ãšã®çžè«ãã¹ã±ãžã¥ãŒã«ããŠãã ããã åæã¯ ãã¡ã ã§ãã
2025 幎 12 æ 2 æ¥ãAWS DevOps Agent ã®ãããªãã¯ãã¬ãã¥ãŒãçºè¡šããŸãããAWS DevOps Agent ã¯ãéå»ã®ã€ã³ã·ãã³ããšéçšãã¿ãŒã³ãäœç³»çã«åæããããšã§ãã€ã³ã·ãã³ããžã®å¯Ÿå¿ãæ ¹æ¬åå ã®ç¹å®ãå°æ¥ã®åé¡ã®é²æ¢ã«åœ¹ç«ã€ ããã³ãã£ã¢ãšãŒãžã§ã³ã ã§ãã ããã³ãã£ã¢ãšãŒãžã§ã³ãã¯ãèªåŸçã§éåžžã«ã¹ã±ãŒã©ãã«ã§ãçµ¶ãéãªãä»å
¥ãªãã«æ°æéãŸãã¯æ°æ¥åããæ°ããã¯ã©ã¹ã® AI ãšãŒãžã§ã³ãã§ãã æ¬çªçšŒåã®ã€ã³ã·ãã³ããçºçããå Žåããªã³ã³ãŒã«ãšã³ãžãã¢ã¯ãå©å®³é¢ä¿è
ãšã®ã³ãã¥ãã±ãŒã·ã§ã³ã管çããªããæ ¹æ¬åå ãè¿
éã«ç¹å®ããªããã°ãªããªããšãã倧ããªãã¬ãã·ã£ãŒã«çŽé¢ããŸããè€æ°ã®ã¢ãã¿ãªã³ã°ããŒã«ã«ããã£ãŠããŒã¿ãåæããæè¿ã®ãããã€ç¶æ³ã確èªãã察å¿ããŒã ã調æŽããå¿
èŠããããŸãããµãŒãã¹ã®åŸ©æ§åŸãããŒã ã¯ã€ã³ã·ãã³ãåŠç¿ãäœç³»çãªæ¹åã«å€ããã ãã®äœè£ããªãããšããããããŸãã AWS DevOps Agent ã¯ãåžžæçšŒåããŠããèªåŸçãªãªã³ã³ãŒã«ãšã³ãžãã¢ã§ããåé¡ãçºçãããšãã¡ããªã¯ã¹ããã°ãã GitHub ã GitLab ã§ã®æè¿ã®ã³ãŒããããã€ãŸã§ãéçšããŒã«ãã§ãŒã³å
šäœã®ããŒã¿ãèªåçã«é¢é£ä»ããŸããèããããæ ¹æ¬åå ãç¹å®ããçãçµã£ãç·©åçãæšå¥šããããšã§ã解決ãŸã§ã®å¹³åæéãççž®ã§ããŸãããšãŒãžã§ã³ãã¯ã€ã³ã·ãã³ãã®èª¿æŽãè¡ããSlack ãã£ã³ãã«ã䜿ã£ãŠã¹ããŒã¯ãã«ããŒã«ææ°æ
å ±ãäŒãããã詳现ãªèª¿æ»ã¹ã±ãžã¥ãŒã«ã管çãããããŠããŸãã éå§ããã«ã¯ã AWS ãããžã¡ã³ãã³ã³ãœãŒã« ã䜿çšã㊠AWS DevOps Agent ãæ¢åã®ããŒã«ã«æ¥ç¶ããŸãããã®ãšãŒãžã§ã³ãã¯ã Amazon CloudWatch ã Datadog ã Dynatrace ã New Relic ã Splunk ãªã©ã®äžè¬çãªãµãŒãã¹ãšé£æºããŠãªãã¶ãŒãããªãã£ããŒã¿ãååŸããGitHub Actions ã GitLab CI/CD ãšçµ±åããŠãããã€ãšãã®ã¯ã©ãŠããªãœãŒã¹ãžã®åœ±é¿ã远跡ããŸããBring Your Own (BYO) ã¢ãã«ã³ã³ããã¹ããããã³ã« (MCP) ãµãŒããŒæ©èœã«ãããçµç¹ã®ã«ã¹ã¿ã ããŒã«ãå°çšãã©ãããã©ãŒã ã Grafana ã Prometheus ãªã©ã®ãªãŒãã³ãœãŒã¹ã®ãªãã¶ãŒãããªãã£ãœãªã¥ãŒã·ã§ã³ãªã©ã®è¿œå ããŒã«ã調æ»ã«çµ±åããããšãã§ããŸãã ãšãŒãžã§ã³ãã¯ä»®æ³ããŒã ã¡ã³ããŒãšããŠæ©èœãããã±ããã·ã¹ãã ããã®ã€ã³ã·ãã³ãã«èªåçã«å¯Ÿå¿ããããã«èšå®ã§ããŸãã ServiceNow ã®ãµããŒããçµã¿èŸŒãŸããŠãããæ§æå¯èœãª ãŠã§ããã㯠ãéããŠã PagerDuty ãªã©ã®ä»ã®ã€ã³ã·ãã³ã管çããŒã«ã®ã€ãã³ãã«å¯Ÿå¿ã§ããŸãã調æ»ãé²ãã«ã€ããŠããšãŒãžã§ã³ãã¯ãã±ãããšé¢é£ãã Slack ãã£ã³ãã«ã«æ€åºçµæãæŽæ°ããŸãããããã¯ãã¹ãŠããšãŒãžã§ã³ããäœæããã€ã³ããªãžã§ã³ããªã¢ããªã±ãŒã·ã§ã³ããããžã«åºã¥ããŠããŸããã€ãŸãã調æ»äžã«ãããã€ã«é¢é£ããæœåšçãªåå ãç¹å®ããã®ã«åœ¹ç«ã€ãããã€å±¥æŽãå«ããã·ã¹ãã ã³ã³ããŒãã³ããšãã®çžäºäœçšã®å
æ¬çãªãããã§ãã ä»çµã¿ãèŠãŠãããŸããã ãã®ä»çµã¿ã説æããããã«ãåŒã³åºããããšãã«æå³çã«ãšã©ãŒãçæããåçŽãª AWS Lambda 颿°ããããã€ããŸããã AWS CloudFormation ã¹ã¿ãã¯ã«ãããã€ããŸããã ã¹ããã 1: ãšãŒãžã§ã³ãã¹ããŒã¹ãäœæãã ãšãŒãžã§ã³ãã¹ããŒã¹ã¯ãAWS DevOps Agent ãã¿ã¹ã¯ãå®è¡ããéã«ã¢ã¯ã»ã¹ã§ããç¯å²ãå®çŸ©ããŸãã ãšãŒãžã§ã³ãã¹ããŒã¹ã¯ãéçšã¢ãã«ã«åºã¥ããŠæŽçã§ããŸãããšãŒãžã§ã³ãã¹ããŒã¹ã 1 ã€ã®ã¢ããªã±ãŒã·ã§ã³ã«åãããããŒã ãããã°ããªã³ã³ãŒã«ããŒã ããšã« 1 ã€äœæããŠè€æ°ã®ãµãŒãã¹ã管çããããŒã ããããŸãããŸããäžå
åãããã¢ãããŒãã䜿çšããçµç¹ããããŸãããã®ãã¢ã³ã¹ãã¬ãŒã·ã§ã³ã§ã¯ã1 ã€ã®ã¢ããªã±ãŒã·ã§ã³çšã®ãšãŒãžã§ã³ãã¹ããŒã¹ãäœæããæ¹æ³ã説æããŸãããã®ã»ããã¢ããã¯ãç¹å®ã®ã¢ããªã±ãŒã·ã§ã³ã®èª¿æ»ãšãªãœãŒã¹ãåé¢ããã®ã«åœ¹ç«ã¡ããã®ã³ã³ããã¹ãå
ã§ã®ã€ã³ã·ãã³ãã®è¿œè·¡ãšåæã容æã«ãªããŸãã AWS ãããžã¡ã³ãã³ã³ãœãŒã« ã® AWS DevOps Agent ã»ã¯ã·ã§ã³ã§ã [ãšãŒãžã§ã³ãã¹ããŒã¹ã®äœæ] ãéžæãããã®ã¹ããŒã¹ã®ååãå
¥åããŠãèªåãŸãã¯ä»ã®ãŠãŒã¶ãŒã® AWS ã¢ã«ãŠã³ãã® AWS ãªãœãŒã¹ã®ã€ã³ããã¹ãã¯ã·ã§ã³ã«äœ¿çšãã AWS Identity and Access Management (IAM) ããŒã«ãäœæããŸãã ãã®ãã¢ã§ã¯ãAWS DevOps Agent ãŠã§ãã¢ããªãæå¹ã«ããŸããããã«ã€ããŠã¯åŸã§è©³ãã説æããŸããããã¯åŸã®æ®µéã§å®è¡ã§ããŸãã æºåãã§ãããã [äœæ] ãéžæããŸãã äœæåŸã [ããããž] ã¿ããéžæããŸãã ãã®ãã¥ãŒã«ã¯ãAWS DevOps Agent ãã¿ã¹ã¯ãå¹ççã«å®è¡ããåºç€ãšããŠéžæããäž»èŠãªãªãœãŒã¹ããšã³ãã£ãã£ãããã³é¢ä¿ã衚瀺ãããŸããããã¯ãAWS DevOps Agent ãã¢ã¯ã»ã¹ãŸãã¯è¡šç€ºã§ãããã¹ãŠã®æ
å ±ã衚ããŠããããã§ã¯ãªãããšãŒãžã§ã³ããçŸåšæãé¢é£æ§ãé«ããšèŠãªããŠãããã®ã ãã衚ããŠããŸããããã©ã«ãã§ã¯ãããããžã«ã¯èªåã®ã¢ã«ãŠã³ãã«ãã AWS ãªãœãŒã¹ãå«ãŸããŠããŸãããšãŒãžã§ã³ããããã«ã¿ã¹ã¯ãå®äºãããšãæ°ãããªãœãŒã¹ãèŠã€ããŠãã®ãªã¹ãã«è¿œå ããŸãã ã¹ããã 2: ãªãã¬ãŒã¿ãŒåãã« AWS DevOps ãŠã§ãã¢ããªãèšå®ãã AWS DevOps Agent ãŠã§ãã¢ããªã«ã¯ããªã³ã³ãŒã«ãšã³ãžãã¢ãæåã§èª¿æ»ãéå§ããããé¢é£ããããããžèŠçŽ ãå«ã調æ»ã®è©³çްã衚瀺ãããã調æ»ãèªå°ãããã調æ»ã«é¢ãã質åããããããããã®ãŠã§ãã€ã³ã¿ãŒãã§ã€ã¹ãçšæãããŠããŸãã ãªãã¬ãŒã¿ã¢ã¯ã»ã¹ ãªã³ã¯ãéžæãããšãAWS ã³ã³ãœãŒã«ã®ãšãŒãžã§ã³ãã¹ããŒã¹ãããŠã§ãã¢ããªã±ãŒã·ã§ã³ã«çŽæ¥ã¢ã¯ã»ã¹ã§ããŸãããŸãã¯ã AWS IAM ã¢ã€ãã³ãã£ãã£ã»ã³ã¿ãŒ ã䜿çšããŠããŒã ã®ãŠãŒã¶ãŒã¢ã¯ã»ã¹ãèšå®ããããšãã§ããŸããIAM ã¢ã€ãã³ãã£ãã£ã»ã³ã¿ãŒã§ã¯ããŠãŒã¶ãŒãã°ã«ãŒããçŽæ¥ç®¡çããããID ãããã€ã㌠(IdP) ã«æ¥ç¶ãããã§ãããããAWS DevOps Agent ãŠã§ãã¢ããªã±ãŒã·ã§ã³ã«ã¢ã¯ã»ã¹ã§ãããŠãŒã¶ãŒãäžå
çã«å¶åŸ¡ã§ããŸãã ãã®æ®µéã§ã¯ããã®ç¹å®ã®ã¢ããªã±ãŒã·ã§ã³ã®èª¿æ»ãšãªãœãŒã¹ã«éäžã§ããããã«ãšãŒãžã§ã³ãã¹ããŒã¹ããã¹ãŠã»ããã¢ãããããDevOps ããŒã ããŠã§ãã¢ããªã䜿çšããŠèª¿æ»ãéå§ã§ããããã«ãªããŸããã ãã®ã¢ããªã±ãŒã·ã§ã³ã® 1 åéãã®ã»ããã¢ãããå®äºããã®ã§ãé害ãçºçãã Lambda 颿°ãåŒã³åºããŸããåŒã³åºãã®ãã³ã«ãšã©ãŒãçæãããŸããLambda ãšã©ãŒæ°ã«é¢é£ä»ãããã CloudWatch ã¢ã©ãŒã ã ALARM ç¶æ
ã«ãªããŸããå®éã«ã¯ãServiceNow ãªã©ã®å€éšãµãŒãã¹ããã¢ã©ãŒããåãåãå ŽåããããŸãããã®ãããªã¢ã©ãŒããåãåã£ããšãã«èªåçã«èª¿æ»ãéå§ããããã« AWS DevOps Agent ãèšå®ã§ããŸãã ãã®ãã¢ã§ã¯ã [調æ»ãéå§] ãéžæããŠæåã§èª¿æ»ãéå§ããŸãã ãŸããäºåã«èšå®ãããè€æ°ã®éå§ç¹ããéžæããŠè¿
éã«èª¿æ»ãéå§ããããšãã§ããŸããããšãã°ãçŽè¿ã«ããªã¬ãŒãããã¢ã©ãŒã ã調æ»ããåºç€ãšãªãã¡ããªã¯ã¹ãšãã°ãåæããŠæ ¹æ¬åå ãç¹å®ããããã® [ææ°ã¢ã©ãŒã ]ãã³ã³ãã¥ãŒãã£ã³ã°ãªãœãŒã¹å
šäœã«ãããé«ã CPU 䜿çšçã¡ããªã¯ã¹ã調æ»ããã©ã®ããã»ã¹ãŸãã¯ãµãŒãã¹ãéå°ã«ãªãœãŒã¹ãæ¶è²»ããŠããããç¹å®ããããã® [é« CPU 䜿çšç]ãã¡ããªã¯ã¹ãã¢ããªã±ãŒã·ã§ã³ãã°ãåæããé害ã®åå ãç¹å®ããŠã¢ããªã±ãŒã·ã§ã³ãšã©ãŒçã®æè¿ã®å¢å ã調æ»ãã [ãšã©ãŒã¬ãŒãã¹ãã€ã¯] ãªã©ã§ãã [調æ»ã®è©³çް] ã [調æ»ã®éå§ç¹] ã [ã€ã³ã·ãã³ãã®æ¥ä»ãšæå»] ã [ã€ã³ã·ãã³ãã® AWS ã¢ã«ãŠã³ã ID] ãªã©ã®æ
å ±ãå
¥åããŸãã AWS DevOps Agent ãŠã§ãã¢ããªã±ãŒã·ã§ã³ã§ã¯ã調æ»ã®å±éããªã¢ã«ã¿ã€ã ã§èŠãããšãã§ããŸãããšãŒãžã§ã³ãã¯ã¢ããªã±ãŒã·ã§ã³ã¹ã¿ãã¯ãèå¥ããŸããCloudWatch ããã®ã¡ããªã¯ã¹ãçžäºã«é¢é£ä»ããCloudWatch Logs ã Splunk ãªã©ã®å€éšãœãŒã¹ããã®ãã°ã調ã¹ãGitHub ããã®æè¿ã®ã³ãŒã倿Žã確èªãã AWS X-Ray ããã®ãã¬ãŒã¹ãåæããŸãã ãšã©ãŒãã¿ãŒã³ãç¹å®ãã詳现ãªèª¿æ»æŠèŠãæäŸããŸãããã®ãã¢ã®ã³ã³ããã¹ãã§ã¯ã調æ»ã®çµæããããã¯æå³çãªãã¹ãäŸå€ã§ããããšãæããã«ãªããã¢ã©ãŒã ã«ã€ãªãã颿°åŒã³åºãã®ã¿ã€ã ã©ã€ã³ã瀺ããããšã©ãŒåŠçã«é¢ããã¢ãã¿ãªã³ã°ã®æ¹åãææ¡ãããŠããŸãã ãšãŒãžã§ã³ã㯠Slack ã®å°çšã€ã³ã·ãã³ããã£ã³ãã«ã䜿çšããå¿
èŠã«å¿ããŠãªã³ã³ãŒã«ããŒã ã«éç¥ããã¹ããŒã¯ãã«ããŒã«ãªã¢ã«ã¿ã€ã ã®ã¹ããŒã¿ã¹æŽæ°ãæäŸããŸãã調æ»ãã£ããã€ã³ã¿ãŒãã§ã€ã¹ãéããŠããã©ã®ãã°ãåæããŸããã?ããªã©ã®æç¢ºãªè³ªåãããããšã§ããšãŒãžã§ã³ããšçŽæ¥ããåãã§ããŸãããŸããããããã®ç¹å®ã®ãã°ã°ã«ãŒãã«çŠç¹ãçµã£ãŠåæãåå®è¡ããããªã©ã远å ã®ã³ã³ããã¹ããæäŸããŠèª¿æ»ãé²ããããšãã§ããŸãã å°éå®¶ã«ããæ¯æŽãå¿
èŠãªå Žåã¯ãã¯ã³ã¯ãªãã¯ã§ AWS ãµããŒãã±ãŒã¹ãäœæãããšãŒãžã§ã³ãã®æ€åºçµæãèªåçã«å
¥åãã調æ»ãã£ãããŠã£ã³ããŠãã AWS ãµããŒãã®å°éå®¶ã«çŽæ¥åãåãããããšãã§ããŸãã ãã®ãã¢ã§ã¯ãAWS DevOps Agent ã Lambda ã³ã³ãœãŒã«å
ã®æåã¢ã¯ãã£ããã£ãæ£ããèå¥ããŠãæå³çã«ãšã©ãŒãããªã¬ãŒãã颿°ãåŒã³åºããŸãã ã ã€ã³ã·ãã³ã察å¿ä»¥å€ã«ããAWS DevOps Agent ã¯ç§ã®æè¿ã®ã€ã³ã·ãã³ããåæããŠãå°æ¥ã®åé¡ãé²ã广ã®å€§ããæ¹åç¹ãç¹å®ããŸãã ã€ã³ã·ãã³ããé²è¡äžã®å ŽåããšãŒãžã§ã³ãã¯ã€ã³ã·ãã³ãç·©åã¿ããéããŠå³æã®ç·©åèšç»ãæç€ºãããµãŒãã¹ã®è¿
éãªåŸ©æ§ãæ¯æŽããŸããç·©åèšç»ã¯ãéçºè
ã«è©³çްãªå®è£
ã¬ã€ãã³ã¹ãæäŸãã仿§ãšã Kiro ãªã©ã®ãšãŒãžã§ã³ãã£ãã¯ãªéçºããŒã«ã§æ§æãããŠããŸãã é·æçãªã¬ãžãªãšã³ã¹ã«ã€ããŠã¯ããªãã¶ãŒãããªãã£ãã€ã³ãã©ã¹ãã©ã¯ãã£æ§æããããã€ãã€ãã©ã€ã³ã®ã®ã£ããã調ã¹ãããšã§ãæœåšçãªåŒ·åç¹ãç¹å®ããŸããããããæå³çãªãšã©ãŒãåŒãèµ·ãããåçŽãªãã¢ã§ã¯ãé¢é£ããæšå¥šäºé
ãçæããã«ã¯äžååã§ããã ããšãã°ãéèŠãªãµãŒãã¹ã«ãã«ã AZ é
眮ãå
æ¬çãªã¢ãã¿ãªã³ã°ãæ¬ ããŠããããšãæ€åºããããšããŸãããã®å ŽåããšãŒãžã§ã³ãã¯ãéçšäžã®åœ±é¿ãå®è£
ã®è€éããªã©ã®èŠçŽ ãèæ
®ããŠãå®è£
ã¬ã€ãã³ã¹ãå«ãè©³çŽ°ãªæšå¥šäºé
ãäœæããŸããä»åŸã®ã¯ã€ãã¯ãã©ããŒã¢ãããªãªãŒã¹ã§ã¯ããšãŒãžã§ã³ãã¯ã³ãŒããã°ããã¹ãã«ãã¬ããžã®æ¹åãå«ãããã«åæãæ¡å€§ããäºå®ã§ãã å¯çšæ§ ç±³åœæ±éš (ããŒãžãã¢åéš) ãªãŒãžã§ã³ã§ AWS DevOps Agent ãä»ãã詊ãããšãã§ããŸãããšãŒãžã§ã³ãèªäœã¯ç±³åœæ±éš (ããŒãžãã¢åéš) ( us-east-1 ) ã§å®è¡ãããŸãããè€æ°ã® AWS ã¢ã«ãŠã³ãã«ãããä»»æã®ãªãŒãžã§ã³ã«ãããã€ãããã¢ããªã±ãŒã·ã§ã³ãã¢ãã¿ãªã³ã°ã§ããŸãã ãã¬ãã¥ãŒæéäžã¯ AWS DevOps Agent ãç¡æã§äœ¿çšã§ããŸããã1 ãæãããã®ãšãŒãžã§ã³ãã¿ã¹ã¯æéæ°ã«ã¯å¶éããããŸãã æ¬çªçšŒåç°å¢ã®åé¡ã®ãããã°ã«æ°ãåããªãã»ã©ã®å€ãè²»ãããŠããè
ãšããŠç¹ã«è峿·±ãæããã®ã¯ãAWS DevOps Agent ãéçšäžã®æ·±ãã€ã³ãµã€ããšå®çšçã§å®çšçãªæšå¥šäºé
ãã©ã®ããã«çµã¿åãããŠããããšããç¹ã§ãããã®ãµãŒãã¹ã¯ãããŒã ãäºåŸå¯Ÿå¿åã®æ¶é²ããç©æ¥µçãªã·ã¹ãã æ¹åã«ç§»è¡ããã®ã«åœ¹ç«ã¡ãŸãã 詳现ã確èªããŠãã¬ãã¥ãŒã«ãµã€ã³ã¢ããããã«ã¯ã AWS DevOps Agent ãã芧ãã ããã AWS DevOps Agent ãã©ã®ããã«éçšå¹çã®åäžã«åœ¹ç«ã€ã®ããèãã®ã楜ãã¿ã«ããŠããŸãã â seb åæã¯ ãã¡ã ã§ãã
çŸä»£ã®ã¢ããªã±ãŒã·ã§ã³ã§ã¯ãè€æ°æ®µéã®æ¯æãåŠçãAI ãšãŒãžã§ã³ãã®ãªãŒã±ã¹ãã¬ãŒã·ã§ã³ããŸãã¯äººéã®æ±ºå®ãåŸ
ã€æ¿èªããã»ã¹ãªã©ããµãŒãã¹éã®è€éã§é·æã«ããã調æŽããŸããŸãå¿
èŠã«ãªã£ãŠããŸããåŸæ¥ãããããæ§ç¯ããã«ã¯ãç¶æ
管çãå®è£
ããé害ãåŠçããè€æ°ã®ã€ã³ãã©ã¹ãã©ã¯ãã£ãµãŒãã¹ãçµ±åããããã«å€å€§ãªåŽåãå¿
èŠã§ããã 2025 幎 12 æ 2 æ¥ããã AWS Lambda ã®èä¹
æ§ã®ãã颿° ã䜿çšããŠã䜿ãæ
£ãã AWS Lambda ãšã¯ã¹ããªãšã³ã¹å
ã§ä¿¡é Œæ§ã®é«ããã«ãã¹ãããã¢ããªã±ãŒã·ã§ã³ãçŽæ¥æ§ç¯ã§ããŸããèä¹
æ§ã®ãã颿°ãšã¯ããã§ã«ãåç¥ã®ãã®ãšåãã€ãã³ããã³ãã©ãŒãšçµ±åãåããéåžžã® Lambda 颿°ã§ããä»»æã®ããã°ã©ãã³ã°èšèªã§ã·ãŒã±ã³ã·ã£ã«ã³ãŒããèšè¿°ããã°ãèä¹
æ§ã®ãã颿°ãé²è¡ç¶æ³ã远跡ããé害çºçæã«èªåçã«å詊è¡ããå®çŸ©ãããæç¹ã§æå€§ 1 幎éå®è¡ãäžæåæ¢ããŸããåŸ
æ©äžã®ã¢ã€ãã«ã³ã³ãã¥ãŒãã£ã³ã°ã®è²»çšãæ¯æãå¿
èŠã¯ãããŸããã AWS Lambda ã®é«èä¹
颿°ã¯ãèä¹
å®è¡ãšåŒã°ãããã§ãã¯ãã€ã³ããšãªãã¬ã€ã®ã¡ã«ããºã ã䜿çšããŠãããã®æ©èœãæäŸããŸããæ°žç¶å®è¡ã®ããã®é¢æ°ãæå¹ã«ããããæ°ãããªãŒãã³ãœãŒã¹ã®æ°žç¶å®è¡ SDK ã颿°ã³ãŒãã«è¿œå ããŸããæ¬¡ã«ããstepsããªã©ã® SDK ããªããã£ãã䜿çšããŠããžãã¹ããžãã¯ã«èªåãã§ãã¯ãã€ã³ããšãªãã©ã€ã远å ãããwaitsãã䜿çšããŠèšç®æéãªãã§å®è¡ãå¹ççã«äžæããŸããå®è¡ãäºæããçµäºãããšãLambda ã¯æåŸã®ãã§ãã¯ãã€ã³ãããåéããå®äºããæäœãã¹ãããããªããã€ãã³ããã³ãã©ãŒãæåãããªãã¬ã€ããŸãã AWS Lambda é«èä¹
颿°ã®äœ¿çšéå§ èä¹
æ§ã®ãã颿°ã®äœ¿ç𿹿³ã説æããŸãã ãŸãã ã³ã³ãœãŒã«ã§ Lambda 颿° ãäœæãã [ãŒãããäœæè
] ãéžæããŸãã [æ°žç¶å®è¡] ã»ã¯ã·ã§ã³ã§ã [æå¹å] ãéžæããŸããèä¹
æ§ã®ãã颿°èšå®ã¯é¢æ°ã®äœææã«ã®ã¿èšå®ã§ããæ¢åã® Lambda 颿°ã§ã¯çŸåšå€æŽã§ããªãããšã«ã泚æãã ããã Lambda é«èä¹
颿°ãäœæããããæäŸãããŠããã³ãŒãã䜿çšããŠäœæ¥ãéå§ã§ããŸãã Lambda é«èä¹
颿°ã«ã¯ãç¶æ
管çãšå埩ãåŠçãã 2 ã€ã®ã³ã¢ããªããã£ããå°å
¥ãããŠããŸãã ã¹ããã â context.step() ã¡ãœããã¯ãããžãã¹ããžãã¯ã«èªåå詊è¡ãšãã§ãã¯ãã€ã³ãã远å ããŸããã¹ããããå®äºãããšããªãã¬ã€äžã¯ã¹ããããããŸãã åŸ
æ© â context.wait() ã¡ãœããã¯ãæå®ãããæéã ãå®è¡ãäžæåæ¢ãã颿°ãçµäºããèšç®æéãªãã§å®è¡ãäžæåæ¢ããŠåéããŸãã ããã«ãLambda ã®é«èä¹
颿°ã«ã¯ãããè€éãªãã¿ãŒã³ã«å¯Ÿå¿ãããªãã¬ãŒã·ã§ã³ãä»ã«ãçšæãããŠããŸãã create_callback() 㯠API ã¬ã¹ãã³ã¹ãäººçæ¿èªãªã©ã®å€éšã€ãã³ãã®çµæãåŸ
ã€ããã«äœ¿çšã§ããã³ãŒã«ããã¯ãäœæãã wait_for_condition() ã¯ç¹å®ã®æ¡ä»¶ãæºãããã (ããšãã° REST API ãããŒãªã³ã°ããŠããã»ã¹ãå®äºãã) ãŸã§äžæåæ¢ããŸãããŸãã parallel() ãŸã㯠map() ãªãã¬ãŒã·ã§ã³ã¯é«åºŠãªåæå®è¡ãŠãŒã¹ã±ãŒã¹ã«å©çšã§ããŸãã æ¬çªçšŒåæºåãæŽã£ã泚æåŠçã¯ãŒã¯ãããŒã®æ§ç¯ 次ã«ãããã©ã«ãã®äŸãæ¡åŒµããŠãæ¬çªçšŒåç°å¢ã§ããã«äœ¿ããæ³šæåŠçã¯ãŒã¯ãããŒãæ§ç¯ããŸããããããã¯ãå€éšæ¿èªã«ã³ãŒã«ããã¯ã䜿çšãããšã©ãŒãé©åã«åŠçããåè©Šè¡æŠç¥ãèšå®ããæ¹æ³ã瀺ããŠããŸãããããã®ã³ã¢ã³ã³ã»ããã«çŠç¹ãåœãŠãããã«ãã³ãŒãã¯æå³çã«ç°¡æœã«ããŠããŸããå®å
šã«å®è£
ãããšã Amazon Bedrock ã䜿çšããŠæ€èšŒã¹ãããã匷åããAI ãæŽ»çšããæ³šæåæã远å ããããšãã§ããŸãã æ³šæåŠçã¯ãŒã¯ãããŒã®ä»çµã¿ã¯æ¬¡ã®ãšããã§ãã æåã« validate_order() ã¯æ³šæããŒã¿ããã§ãã¯ããŠããã¹ãŠã®å¿
é ãã£ãŒã«ããååšããããšã確èªããŸãã æ¬¡ã«ã send_for_approval() ã¯å€éšããã®æ¿èªãæ±ããåœä»€ãéä¿¡ããã³ãŒã«ããã¯å¿çãåŸ
ã£ãŠãã³ã³ãã¥ãŒãã£ã³ã°æéãªãã§å®è¡ãäžæåæ¢ããŸãã ãã®åŸã process_order() ã¯æ³šæåŠçãå®äºããŸãã ã¯ãŒã¯ãããŒå
šäœãéããŠãtry-catch ãšã©ãŒåŠçã¯ãå®è¡ãããã«åæ¢ããã¿ãŒããã«ãšã©ãŒãšãèªåå詊è¡ãããªã¬ãŒããã¹ãããå
ã®å埩å¯èœãªãšã©ãŒãåºå¥ããŸãã ã¹ãããå®çŸ©ãšã¡ã€ã³ãã³ãã©ãŒãå«ãå®å
šãªæ³šæåŠçã¯ãŒã¯ãããŒã¯æ¬¡ã®ãšããã§ãã import random from aws_durable_execution_sdk_python import ( DurableContext, StepContext, durable_execution, durable_step, ) from aws_durable_execution_sdk_python.config import ( Duration, StepConfig, CallbackConfig, ) from aws_durable_execution_sdk_python.retries import ( RetryStrategyConfig, create_retry_strategy, ) @durable_step def validate_order(step_context: StepContext, order_id: str) -> dict: """Validates order data using AI.""" step_context.logger.info(f"Validating order: {order_id}") # æ¬çªçšŒå: Amazon Bedrock ãåŒã³åºããŠæ³šæã®å®å
šæ§ãšæ£ç¢ºæ§ãæ€èšŒ return {"order_id": order_id, "status": "validated"} @durable_step def send_for_approval(step_context: StepContext, callback_id: str, order_id: str) -> dict: """Sends order for approval using the provided callback token.""" step_context.logger.info(f"Sending order {order_id} for approval with callback_id: {callback_id}") # æ¬çªçšŒå: callback_id ãå€éšæ¿èªã·ã¹ãã ã«éä¿¡ # å€éšã·ã¹ãã 㯠Lambda SendDurableExecutionCallbackSuccess ãåŒã³åºãã # æ¿èªãå®äºããããã® callback_id ã䜿ã£ãŠ SendDurableExecutionCallbackFailure API ãéä¿¡ return { "order_id": order_id, "callback_id": callback_id, "status": "sent_for_approval" } @durable_step def process_order(step_context: StepContext, order_id: str) -> dict: """Processes the order with retry logic for transient failures.""" step_context.logger.info(f"Processing order: {order_id}") # æã
倱æããäžå®å®ãª API ãã·ãã¥ã¬ãŒã if random.random() > 0.4: step_context.logger.info("Processing failed, will retry") raise Exception("Processing failed") return { "order_id": order_id, "status": "processed", "timestamp": "2025-11-27T10:00:00Z", } @durable_execution def lambda_handler(event: dict, context: DurableContext) -> dict: try: order_id = event.get("order_id") # ã¹ããã 1: 泚æãæ€èšŒ validated = context.step(validate_order(order_id)) if validated["status"] != "validated": raise Exception("Validation failed") # ã¿ãŒããã«ãšã©ãŒ - å®è¡ã忢 context.logger.info(f"Order validated: {validated}") # ã¹ããã 2: ã³ãŒã«ããã¯ãäœæ callback = context.create_callback( name="awaiting-approval", config=CallbackConfig(timeout=Duration.from_minutes(3)) ) context.logger.info(f"Created callback with id: {callback.callback_id}") # ã¹ããã 3: callback_id ã䜿çšããŠæ¿èªãªã¯ãšã¹ããéä¿¡ approval_request = context.step(send_for_approval(callback.callback_id, order_id)) context.logger.info(f"Approval request sent: {approval_request}") # ã¹ããã 4: ã³ãŒã«ããã¯ã®çµæãåŸ
〠# ããã¯ãå€éšã·ã¹ãã ã SendDurableExecutionCallbackSuccess ãŸã㯠SendDurableExecutionCallbackFailure ãåŒã³åºããŸã§ãããã¯ããã approval_result = callback.result() context.logger.info(f"Approval received: {approval_result}") # ã¹ããã 5: ã«ã¹ã¿ã åè©Šè¡æŠç¥ã«ããæ³šæãåŠç retry_config = RetryStrategyConfig(max_attempts=3, backoff_rate=2.0) processed = context.step( process_order(order_id), config=StepConfig(retry_strategy=create_retry_strategy(retry_config)), ) if processed["status"] != "processed": raise Exception("Processing failed") # ã¿ãŒããã«ãšã©ãŒ context.logger.info(f"Order successfully processed: {processed}") return processed except Exception as error: context.logger.error(f"Error processing order: {error}") raise error # åçºçããŠå®è¡ã倱æããã ãã®ã³ãŒãã¯ãããã€ãã®éèŠãªæŠå¿µã瀺ããŠããŸãã ãšã©ãŒåŠç â try-catch ãããã¯ã¯ã¿ãŒããã«ãšã©ãŒãåŠçããŸããæªåŠçã®äŸå€ãã¹ãããã®å€ã«æããããå Žå (æ€èšŒãã§ãã¯ãªã©)ãå®è¡ã¯ããã«çµäºããŸããããã¯ã泚æããŒã¿ãç¡å¹ã§ãããªã©ãå詊è¡ããŠãæå³ããªãå Žåã«åœ¹ç«ã¡ãŸãã ã¹ãããåè©Šè¡ â process_order ã¹ãããå
ã§ã¯ãäŸå€ã«ãã£ãŠããã©ã«ã (ã¹ããã 1) ãŸãã¯èšå®ããã RetryStrategy (ã¹ããã 5) ã«åºã¥ããŠèªåå詊è¡ãããªã¬ãŒãããŸããããã«ãããäžæç㪠API ã䜿çšã§ããªããªããªã©ã®äžæçãªé害ãåŠçãããŸãã ãã°èšé² â ã¡ã€ã³ãã³ãã©ãŒã«ã¯ context.logger ã䜿çšããã¹ãããå
ã§ã¯ step_context.logger ã䜿çšããŸããã³ã³ããã¹ããã¬ãŒã¯åçäžã®éè€ãã°ãæå¶ããŸãã æ¬¡ã«ã order_id ã䜿çšããŠãã¹ãã€ãã³ããäœæãã颿°ãéåæã§åŒã³åºããŠæ³šæã¯ãŒã¯ãããŒãéå§ããŸãã [ãã¹ã] ã¿ãã«ç§»åãããªãã·ã§ã³ã® èä¹
æ§ã®ããå®è¡å ãå
¥åããŠããã®å®è¡ãèå¥ããŸãããªããèä¹
æ§ã®ãã颿°ã«ã¯ã¹ãçæ§ãçµã¿èŸŒãŸããŠããŸããåãå®è¡åã§é¢æ°ã 2 ååŒã³åºããšã2 åç®ã®åŒã³åºãã§ã¯è€è£œãäœæããã«æ¢åã®å®è¡çµæãè¿ãããŸãã Lambda ã³ã³ãœãŒã«ã® [Durable å®è¡] ã¿ãã«ç§»åãããšãå®è¡ç¶æ³ãã¢ãã¿ãªã³ã°ã§ããŸãã ããã§ã¯ãåã¹ãããã®ã¹ããŒã¿ã¹ãšã¿ã€ãã³ã°ã確èªã§ããŸããå®è¡ãããšã CallbackStarted ã®åŸã« InvocationCompleted ãšè¡šç€ºãããŸããããã¯ãæ¿èªã³ãŒã«ããã¯ãåŸ
ã£ãŠããéã«ã¢ã€ãã«æéãçºçããªãããã«ã颿°ãçµäºããå®è¡ãäžæåæ¢ãããããšã瀺ããŸãã ããã§ãã³ã³ãœãŒã«ãã [éä¿¡æå] ãŸã㯠[é信倱æ] ãéžæããããããã°ã©ã ã§ Lambda API ã䜿çšããŠã³ãŒã«ããã¯ãå®äºã§ããããã«ãªããŸããã [éä¿¡æå] ãéžæããŸãã ã³ãŒã«ããã¯ãå®äºãããšãå®è¡ãåéãããæ³šæãåŠçãããŸããã·ãã¥ã¬ãŒããããäžå®å®ãª API ãåå ã§ process_order ã¹ãããã倱æãããšãèšå®ããæŠç¥ã«åºã¥ããŠèªåçã«å詊è¡ãããŸãããã¹ãŠã®å詊è¡ãæåãããšãå®è¡ã¯æ£åžžã«å®äºããŸãã Amazon EventBridge ã«ããå®è¡ã®ã¢ãã¿ãªã³ã° Amazon EventBridge ã䜿çšããŠæ°žç¶çãªé¢æ°ã®å®è¡ãã¢ãã¿ãªã³ã°ããããšãã§ããŸããLambda ã¯å®è¡ã¹ããŒã¿ã¹å€æŽã€ãã³ããããã©ã«ãã®ã€ãã³ããã¹ã«èªåçã«éä¿¡ãããããããŠã³ã¹ããªãŒã ã®ã¯ãŒã¯ãããŒãæ§ç¯ããããéç¥ãéä¿¡ããããä»ã® AWS ãµãŒãã¹ãšçµ±åãããã§ããŸãã ãããã®ã€ãã³ããåä¿¡ããã«ã¯ãããã©ã«ãã®ã€ãã³ããã¹ã§æ¬¡ã®ãã¿ãŒã³ã䜿çšã㊠EventBridge ã«ãŒã«ãäœæããŸãã { "source": ["aws.lambda"], "detail-type": ["Durable Execution Status Change"] } ç¥ã£ãŠããã¹ãããš çæç¹ã¯ä»¥äžã®ãšããã§ãã å¯çšæ§ â Lambda é«èä¹
颿°ãç±³åœæ±éš (ãªãã€ãª) AWS ãªãŒãžã§ã³ã§å©çšã§ããããã«ãªããŸãããææ°ã®ãªãŒãžã§ã³ã®å¯çšæ§ã«ã€ããŠã¯ã AWS Capabilities by Region ããŒãžãã芧ãã ããã ããã°ã©ãã³ã°èšèªãµããŒã â èµ·åæãAWS Lambda é«èä¹
颿°ã¯ JavaScript/TypeScript (Node.js 22/24) ãš Python (3.13/3.14) ããµããŒãããŠããŸããã奜ã¿ã®ããã±ãŒãžãããŒãžã£ãŒã䜿çšããŠãèä¹
æ§ã®ããå®è¡ SDK ã颿°ã³ãŒãã«ãã³ãã«ããããšããå§ãããŸããSDK ã¯åããéããããæ°æ©èœãå©çšå¯èœã«ãªã£ããšãã«äŸåé¢ä¿ãç°¡åã«æŽæ°ã§ããŸãã Lambda ããŒãžã§ã³ã®äœ¿çš â èä¹
æ§ã®ãã颿°ãæ¬çªçšŒåç°å¢ã«ãããã€ããå Žåã¯ãLambda ããŒãžã§ã³ã䜿çšããŠãåžžã«åãã³ãŒãããŒãžã§ã³ã§åçãè¡ãããããã«ããŠãã ãããå®è¡ãäžæãããŠããéã«é¢æ°ã³ãŒããæŽæ°ãããšããªãã¬ã€ã§ã¯å®è¡ãéå§ããããŒãžã§ã³ã䜿çšããããããé·æéå®è¡ãããã¯ãŒã¯ãããŒã§ã®ã³ãŒã倿Žã«ããäžæŽåãé²ãããšãã§ããŸãã èä¹
æ§ã®ãã颿°ã®ãã¹ã â ããè€éãªçµ±åãã¹ãã«ã¯ãpytest çµ±åãåããåå¥ã®ãã¹ã SDK ãš AWS ãµãŒããŒã¬ã¹ã¢ããªã±ãŒã·ã§ã³ã¢ãã« (AWS SAM) ã®ã³ãã³ãã©ã€ã³ã€ã³ã¿ãŒãã§ã€ã¹ (CLI) ã䜿çšããŠãAWS èªèšŒæ
å ±ãªãã§èä¹
æ§ã®ãã颿°ãããŒã«ã«ã§ãã¹ãã§ããŸãã ãªãŒãã³ãœãŒã¹ SDK âé«èä¹
æ§ SDK ã¯ã JavaScript/TypeScript ããã³ Python åãã®ãªãŒãã³ãœãŒã¹ã§ãããœãŒã¹ã³ãŒãã確èªããããæ¹åã«è²¢ç®ããããææ°ã®æ©èœã«ã€ããŠææ°æ
å ±ãå
¥æãããã§ããŸãã æé â AWS Lambda é«èä¹
颿°ã®æéã®è©³çްã«ã€ããŠã¯ã AWS Lambda ã®æé衚 ããŒãžãåç
§ããŠãã ããã AWS Lambda ã³ã³ãœãŒã« ã«ã¢ã¯ã»ã¹ããŠãAWS Lambda é«èä¹
颿°ã䜿ãå§ããŸãã詳现ã«ã€ããŠã¯ã AWS Lambda é«èä¹
颿° ã®ããã¥ã¡ã³ãããŒãžãåç
§ããŠãã ããã æ§ç¯ãããŸããããŸãããã«! â Donnie åæã¯ ãã¡ã ã§ãã
çµç¹ã¯ãçæ AI ã®äœ¿çšãããžãã¹ã®ããããéšåã§æ¥éã«æ¡å€§ããŠããŸããæ·±ãå°éç¥èãç¹å®ã®ããžãã¹ã³ã³ããã¹ããå¿
èŠãšããã¢ããªã±ãŒã·ã§ã³ã«ã¯ãç¬èªã®ç¥èãã¯ãŒã¯ãããŒãç¬èªã®èŠä»¶ãçã«çè§£ããã¢ãã«ãå¿
èŠã§ãã ããã³ãããšã³ãžãã¢ãªã³ã° ã æ€çŽ¢æ¡åŒµçæ (RAG) ãªã©ã®ææ³ã¯å€ãã®ãŠãŒã¹ã±ãŒã¹ã§ããŸãæ©èœããŸãããã¢ãã«ã®æ žãšãªãçè§£ã«å°éç¥èãçµã¿èŸŒãããšã«é¢ããŠã¯åºæ¬çãªå¶éããããŸããæåž«ãããã¡ã€ã³ãã¥ãŒãã³ã°ãšåŒ·ååŠç¿ã¯ã¢ãã«ã®ã«ã¹ã¿ãã€ãºã«åœ¹ç«ã¡ãŸãããéçºã©ã€ããµã€ã¯ã«ã®åŸåã«ãªã£ãŠããŸããååã«ãã¬ãŒãã³ã°ãããã¢ãã«ã®äžã«ä¿®æ£ãéãããããããç¹å®ã®é¢å¿é åãžã®èªå°ãå°é£ã«ãªããŸãã çµç¹ãææããŒã¿ã®ã¿ã䜿çšã㊠ç¶ç¶çãªäºåãã¬ãŒãã³ã° (CPT) ãéããŠããæ·±ãã«ã¹ã¿ãã€ãºã詊ã¿ããšãã¢ãã«ãæ°ããã³ã³ãã³ããåŠç¿ããéçšã§åºæ¬çãªæ©èœã倱ããããšãããç Žæ»
çå¿åŽã«é¥ãããšããããããŸããåæã«ãã¢ãã«ããŒããããã¬ãŒãã³ã°ããã®ã«å¿
èŠãªããŒã¿ãã³ã³ãã¥ãŒãã£ã³ã°ãã³ã¹ãã¯ãã»ãšãã©ã®çµç¹ã«ãšã£ãŠäŸç¶ãšããŠå€§ããªéå£ãšãªã£ãŠããŸãã 2025 幎 12 æ 2 æ¥ã¯ãNova ã䜿çšããŠç¬èªã®ããã³ãã£ã¢ã¢ãã«ãæ§ç¯ããããã®æ°ãããµãŒãã¹ã Amazon Nova Forge ãã玹ä»ããŸããNova Forge ã®ã客æ§ã¯ãåæã®ã¢ãã«ãã§ãã¯ãã€ã³ãããéçºãéå§ããããŒã¿ã»ããã Amazon Nova ãåéãããã¬ãŒãã³ã°ããŒã¿ãšãã¬ã³ãããã«ã¹ã¿ã ã¢ãã«ã AWS ã§å®å
šã«ãã¹ãã§ããŸããNova Forge ã¯ãç¬èªã®ããã³ãã£ã¢ã¢ãã«ãæ§ç¯ããããã®æãç°¡åã§è²»çšå¯Ÿå¹æã®é«ãæ¹æ³ã§ãã ãŠãŒã¹ã±ãŒã¹ãšã¢ããªã±ãŒã·ã§ã³ Nova Forge ã¯ãç¬èªã®ããŒã¿ãæ¥çåºæã®ããŒã¿ã«ã¢ã¯ã»ã¹ã§ããèªç€Ÿã®é åãçã«çè§£ãã AI ãæ§ç¯ãããçµç¹åãã«èšèšãããŠããŸããããã«ã¯ä»¥äžãå«ãŸããŸãã 補é ãšèªåå â ç¹æ®ãªããã»ã¹ãæ©åšããŒã¿ãæ¥çåºæã®ã¯ãŒã¯ãããŒãçè§£ããã¢ãã«ã®æ§ç¯ ç ç©¶éçº â ç¬èªã®ç ç©¶ããŒã¿ãšãã¡ã€ã³åºæã®ç¥èã«åºã¥ããŠãã¬ãŒãã³ã°ãããã¢ãã«ã®äœæ ã³ã³ãã³ããšã¡ãã£ã¢ â ãã©ã³ããã€ã¹ãã³ã³ãã³ãåºæºãç¹å®ã®ã¢ãã¬ãŒã·ã§ã³èŠä»¶ãçè§£ããã¢ãã«ã®éçº å°éæ¥ç â æ¥çåºæã®çšèªãèŠå¶ããã¹ããã©ã¯ãã£ã¹ã«é¢ãããã¬ãŒãã³ã°ã¢ãã« ç¹å®ã®ãŠãŒã¹ã±ãŒã¹ã«ãã£ãŠã¯ãNova Forge ã䜿çšããŠå·®å¥åãããæ©èœã®è¿œå ãã¿ã¹ã¯åºæã®ç²ŸåºŠã®åäžãã³ã¹ãã®åæžãã¬ã€ãã³ã·ã®åæžãè¡ãããšãã§ããŸãã Nova Forge ã®ä»çµã¿ Nova Forge ã¯ããã¬ãŒãã³ã°åããã¬ãŒãã³ã°äžããã¬ãŒãã³ã°åŸã®åãã§ãŒãºã«ãããåæã®ãã§ãã¯ãã€ã³ãããã¢ãã«éçºãéå§ã§ããããã«ããããšã§ãçŸåšã®ã«ã¹ã¿ãã€ãºã¢ãããŒãã®å¶éã«å¯ŸåŠããŸãã Amazon SageMaker AI ã®å®å
šãããŒãžãåã€ã³ãã©ã¹ãã©ã¯ãã£ã§å®èšŒæžã¿ã®ã¬ã·ãã䜿çšããŠãã¬ãŒãã³ã°ã宿œããããšã§ããã¹ãŠã®ãã¬ãŒãã³ã°ãã§ãŒãºã§ææããŒã¿ã Amazon Nova ãåéããããŒã¿ãšçµã¿åãããããšãã§ããŸãããã®ããŒã¿ããã·ã³ã°ã¢ãããŒãã¯ãçããŒã¿ã®ã¿ã䜿ã£ããã¬ãŒãã³ã°ãšæ¯èŒããŠãç Žæ»
çå¿åŽã倧å¹
ã«æžãããå°éç¥èãåãå
¥ããªãããã³ã¢ã€ã³ããªãžã§ã³ã¹ãäžè¬çãªæç€ºã«åŸãèœåãå®å
šäžã®å©ç¹ãªã©ã®åºç€ã¹ãã«ãç¶æããã®ã«åœ¹ç«ã¡ãŸãã Nova Forge ã§ã¯ãç¬èªã®ç°å¢ã§å ±é
¬é¢æ°ã䜿çšã㊠匷ååŠç¿ (RL) ãè¡ãããšãã§ããŸããããã«ãããã¢ãã«ã¯ãŠãŒã¹ã±ãŒã¹ã代衚ããç°å¢ã§çæããããã£ãŒãããã¯ããåŠç¿ã§ããŸããåäžã¹ãããã®è©äŸ¡ã ãã§ãªããç¬èªã®ãªãŒã±ã¹ãã¬ãŒã¿ãŒã䜿çšããŠãã«ãã¿ãŒã³ã®ããŒã«ã¢ãŠãã管çããããšãã§ããŸããããã«ãããè€éãªãšãŒãžã§ã³ãã¯ãŒã¯ãããŒãäžé£ã®æææ±ºå®ã¿ã¹ã¯ã®ããã® RL ãã¬ãŒãã³ã°ãå¯èœã«ãªããŸããååŠããŒã«ã䜿çšããŠååèšèšãæ¡ç¹ããå Žåã§ããå¹ççã«ã¿ã¹ã¯ãå®äºããŠè¡çªã眰ããããããã·ãã¥ã¬ãŒã·ã§ã³ã䜿çšããå Žåã§ããç¬èªã®ç°å¢ãçŽæ¥æ¥ç¶ã§ããŸãã ãŸããNova Forge ã«çµã¿èŸŒãŸããŠãã責任ãã AI ããŒã«ããããæŽ»çšããŠãã¢ãã«ã®å®å
šæ§ãšã³ã³ãã³ãã¢ãã¬ãŒã·ã§ã³ã®èšå®ãæ§æããããšãã§ããŸããå®å
šãã»ãã¥ãªãã£ãæ©å¯ã³ã³ãã³ãã®åŠçãªã©ãç¹å®ã®ããžãã¹ããŒãºã«åãããŠèšå®ã調æŽã§ããŸãã Nova Forge ã®äœ¿çšéå§ Nova Forge ã¯æ¢åã® AWS ã¯ãŒã¯ãããŒãšã·ãŒã ã¬ã¹ã«çµ±åãããŸããAmazon SageMaker AI ã®äœ¿ãæ
£ããããŒã«ãšã€ã³ãã©ã¹ãã©ã¯ãã£ã䜿çšããŠãã¬ãŒãã³ã°ãå®è¡ããã«ã¹ã¿ã Nova ã¢ãã«ããã©ã€ããŒãã¢ãã«ãšã㊠Amazon Bedrock ã«ã€ã³ããŒãã§ããŸããããã«ãããAmazon Bedrock ã®ä»ã®ã¢ãã«ãšåãã»ãã¥ãªãã£ãäžè²«æ§ã®ãã APIãå¹
åºã AWS çµ±åãå¯èœã«ãªããŸãã Amazon SageMaker Studio ã§ã¯ãAmazon Nova ã䜿çšããŠããã³ãã£ã¢ã¢ãã«ãæ§ç¯ã§ããããã«ãªããŸããã ã¢ãã«ã®æ§ç¯ãéå§ããã«ã¯ã䜿çšãããã§ãã¯ãã€ã³ã (äºåãã¬ãŒãã³ã°æžã¿ãäžéãã¬ãŒãã³ã°æžã¿ããã¬ãŒãã³ã°åŸãã§ãã¯ãã€ã³ã) ãéžæããŸããããã«ããŒã¿ã»ãããã¢ããããŒãããããæ¢åã®ããŒã¿ã»ããã䜿çšããããšãã§ããŸãã Nova ãæäŸããå³éžãããããŒã¿ã»ãããçµã¿åãããããšã§ããã¬ãŒãã³ã°ããŒã¿ããã¬ã³ãã§ããŸãããããã®ããŒã¿ã»ããã¯ãã¡ã€ã³å¥ã«åé¡ãããŠãããããã¢ãã«ãäžè¬çãªããã©ãŒãã³ã¹ãç¶æãããªãŒããŒãã£ãããç Žæ»
çå¿åŽãé²ãã®ã«åœ¹ç«ã¡ãŸãã ãªãã·ã§ã³ã§ã匷åãã¡ã€ã³ãã¥ãŒãã³ã° (RFT) ã䜿çšããŠäºå®ã®æ£ç¢ºæ§ãé«ããç¹å®ã®é åã§ã®ãã«ã·ããŒã·ã§ã³ãæžããããšãã§ããŸãã ãã¬ãŒãã³ã°ãå®äºããããã¢ãã«ã Amazon Bedrock ã«ã€ã³ããŒãããŠãã¢ããªã±ãŒã·ã§ã³ã§äœ¿çšãéå§ããŸãã ç¥ã£ãŠããã¹ãããš Amazon Nova Forge ã¯ç±³åœæ±éš (ããŒãžãã¢åéš) AWS ãªãŒãžã§ã³ ã§ãå©çšããã ããŸãããã®ããã°ã©ã ã«ã¯ãè€æ°ã® Nova ã¢ãã«ãã§ãã¯ãã€ã³ããžã®ã¢ã¯ã»ã¹ãææããŒã¿ãš Amazon Nova ãåéãããã¬ãŒãã³ã°ããŒã¿ãçµã¿åããããã¬ãŒãã³ã°ã¬ã·ããå®èšŒæžã¿ã®ãã¬ãŒãã³ã°ã¬ã·ããAmazon SageMaker AI ãš Amazon Bedrock ãšã®çµ±åãå«ãŸããŸãã 詳现ã«ã€ããŠã¯ã Amazon Nova ãŠãŒã¶ãŒã¬ã€ã ããã芧ãã ããããŸãã Amazon SageMaker AI ã³ã³ãœãŒã« ãã Nova Forge ã詊ããŠã¿ãŠãã ããã å°éå®¶ã«ããæ¯æŽãåžæããçµç¹ã¯ã çæ AI ã€ãããŒã·ã§ã³ã»ã³ã¿ãŒ ã«é£çµ¡ããã¢ãã«éçºã€ãã·ã¢ããã«é¢ãã远å ãµããŒããåããããšãã§ããŸãã â Danilo åæã¯ ãã¡ã ã§ãã
2025 幎 12 æ 2 æ¥ã ã¹ãã¬ãŒãžã®ããã©ãŒãã³ã¹ãšäœ¿çšãã¿ãŒã³ãããæ·±ãçè§£ã§ãã Amazon S3 ã¹ãã¬ãŒãžã¬ã³ãº ã® 3 ã€ã®æ°æ©èœãçºè¡šããŸãããããã©ãŒãã³ã¹ã¡ããªã¯ã¹ã®è¿œå ãæ°ååã®ãã¬ãã£ãã¯ã¹ã®åæã®ãµããŒãã Amazon S3 Tables ãžã®çŽæ¥ãšã¯ã¹ããŒãã«ãããã¢ããªã±ãŒã·ã§ã³ããã©ãŒãã³ã¹ã®æé©åãã³ã¹ãã®åæžãAmazon S3 ã¹ãã¬ãŒãžæŠç¥ã«é¢ããããŒã¿äž»å°ã®æææ±ºå®ã«å¿
èŠãªããŒã«ãæã«å
¥ããŸãã æ°ããããã©ãŒãã³ã¹ã¡ããªã¯ã¹ã«ããŽãªãŒ S3 ã¹ãã¬ãŒãžã¬ã³ãºã«ã¯ãçµç¹å
šäœã®ããã©ãŒãã³ã¹å¶çŽã®ç¹å®ãšè§£æ±ºã«åœ¹ç«ã€ 8 ã€ã®æ°ããããã©ãŒãã³ã¹ã¡ããªã¯ã¹ã«ããŽãªãŒã远å ãããŸããããããã¯çµç¹ãã¢ã«ãŠã³ãããã±ããããã¬ãã£ãã¯ã¹ã¬ãã«ã§å©çšã§ããŸããããšãã°ããã®ãµãŒãã¹ã¯ãã¢ããªã±ãŒã·ã§ã³ã®ããã©ãŒãã³ã¹ãäœäžãããå¯èœæ§ã®ãããã±ãããŸãã¯ãã¬ãã£ãã¯ã¹å
ã®å°ããªãªããžã§ã¯ããèå¥ããã®ã«åœ¹ç«ã¡ãŸããããã¯ã Amazon S3 Express One Zone ã¹ãã¬ãŒãžã¯ã©ã¹ã䜿çšããŠã¹ã¢ãŒã«ãªããžã§ã¯ãã¯ãŒã¯ããŒãã®ããã©ãŒãã³ã¹ãåäžãããããã«ã¹ã¢ãŒã«ãªããžã§ã¯ãããããåŠçããããšã§è»œæžã§ããŸãã æ°ããããã©ãŒãã³ã¹ã¡ããªã¯ã¹ã«ã¢ã¯ã»ã¹ããã«ã¯ãæ°ããã¹ãã¬ãŒãžã¬ã³ãºããã·ã¥ããŒããäœæãããšãããŸãã¯æ¢åã®èšå®ãç·šéãããšãã«ãS3 ã¹ãã¬ãŒãžã¬ã³ãºã¢ããã³ã¹ããã£ã¢ã®ããã©ãŒãã³ã¹ã¡ããªã¯ã¹ãæå¹ã«ããå¿
èŠããããŸãã ã¡ããªã¯ã¹ã«ããŽãªãŒ 詳现 ãŠãŒã¹ã±ãŒã¹ ç·©åç èªã¿åããªã¯ãšã¹ããµã€ãº èªã¿åããªã¯ãšã¹ããµã€ãº (GET) ã®æ¥å¥ååž ããã©ãŒãã³ã¹ãäœäžãããå°ããªèªã¿åããªã¯ãšã¹ããã¿ãŒã³ãæã€ããŒã¿ã»ãããç¹å® å°èŠæš¡ãªãªã¯ãšã¹ã: å°ããªãªããžã§ã¯ãããããåŠçããããAmazon S3 Express One Zone ã䜿çšããŠé«æ§èœã®å°ããªãªããžã§ã¯ãã¯ãŒã¯ããŒãã«ãã æžã蟌ã¿ãªã¯ãšã¹ããµã€ãº æžã蟌ã¿ãªã¯ãšã¹ãã®ãµã€ãº (PUTãPOSTãCOPYãããã³ã¢ããããŒãããŒã) ã®æ¥å¥ååž ããã©ãŒãã³ã¹ãäœäžãããå°ããªæžã蟌ã¿ãªã¯ãšã¹ããã¿ãŒã³ãæã€ããŒã¿ã»ãããç¹å® å€§èŠæš¡ãªãªã¯ãšã¹ã: ãªã¯ãšã¹ãã䞊ååãMPU ã䜿çšããŸã㯠AWS CRT ãäœ¿çš ã¹ãã¬ãŒãžãµã€ãº ãªããžã§ã¯ãã¿ã°ã®ååž ããã©ãŒãã³ã¹ãäœäžãããå°ããªãªããžã§ã¯ããæã€ããŒã¿ã»ãããç¹å® å°ããªãªããžã§ã¯ãã®ãµã€ãº: å°ããªãªããžã§ã¯ãããŸãšããããšãæ€èš åæã«çºçãã PUT 503 ãšã©ãŒ åããªããžã§ã¯ãã«å¯Ÿããåæ PUT æäœã«ãã 503 ã®æ° ããã©ãŒãã³ã¹ãäœäžãããåæ PUT ã¹ããããªã³ã°ã®ãããã¬ãã£ãã¯ã¹ãç¹å® ã·ã³ã°ã«ã©ã€ã¿ãŒã®å Žåã¯ãå詊è¡ã®åäœã倿ŽããããAmazon S3 Express One Zone ã䜿çšããŸããè€æ°ã®ã©ã€ã¿ãŒã®å Žåã¯ãã³ã³ã»ã³ãµã¹ã¡ã«ããºã ã䜿çšããããAmazon S3 Express One Zone ãäœ¿çš ã¯ãã¹ãªãŒãžã§ã³ããŒã¿è»¢é ãªãŒãžã§ã³å
ã®ãªãŒãžã§ã³éã§è»¢éããããã€ãæ°ãšéä¿¡ããããªã¯ãšã¹ãæ° å°åéã®ããŒã¿ã¢ã¯ã»ã¹ã«ããæœåšçãªããã©ãŒãã³ã¹ãšã³ã¹ãã®äœäžãç¹å® ã³ã³ãã¥ãŒãã£ã³ã°ãåã AWS ãªãŒãžã§ã³ã®ããŒã¿ãšåãå Žæã«é
眮 ãŠããŒã¯ãªããžã§ã¯ããžã®ã¢ã¯ã»ã¹ 1 æ¥ãããã«ã¢ã¯ã»ã¹ããããŠããŒã¯ãªããžã§ã¯ãã®æ°ãŸãã¯å²å ãªããžã§ã¯ãã®ããäžéšãé »ç¹ã«ã¢ã¯ã»ã¹ãããããŒã¿ã»ãããç¹å®ãããããããããã©ãŒãã³ã¹ã®é«ãã¹ãã¬ãŒãžãã£ã¢ã«ç§»åããŠããã©ãŒãã³ã¹ãåäžãããããšãã§ããŸã ã¢ã¯ãã£ããªããŒã¿ã Amazon S3 Express One Zone ãŸãã¯ä»ã®ãã£ãã·ã¥ãœãªã¥ãŒã·ã§ã³ã«ç§»åããããšãæ€èš ãã¡ãŒã¹ããã€ãã®ã¬ã€ãã³ã·ãŒ (æ¢åã® Amazon CloudWatch ã¡ããªã¯ã¹) 1 ãã€ãç®ã®ã¬ã€ãã³ã·ãŒã¡ããªã¯ã¹ã®æ¥æ¬¡å¹³åå€ ãªã¯ãšã¹ããå®äºããŠããã¬ã¹ãã³ã¹ãè¿ããå§ãããŸã§ã®ãªã¯ãšã¹ãããšã®æ¥æ¬¡å¹³åæé åèšãªã¯ãšã¹ãã¬ã€ãã³ã·ãŒ (æ¢åã® Amazon CloudWatch ã¡ããªã¯ã¹) åèšãªã¯ãšã¹ãã¬ã€ãã³ã·ãŒã®æ¥æ¬¡å¹³åå€ æåã®ãã€ããåä¿¡ãããŠããæåŸã®ãã€ããéä¿¡ããããŸã§ã®ãªã¯ãšã¹ãããšã®æ¥å¹³åçµéæé ä»çµã¿ Amazon S3 ã³ã³ãœãŒã« ã§ [ã¹ãã¬ãŒãžã¬ã³ãºããã·ã¥ããŒããäœæ] ãéžæããŠæ°ããããã·ã¥ããŒããäœæããŸããæ¢åã®ããã·ã¥ããŒãèšå®ãç·šéããããšãã§ããŸããæ¬¡ã«ã ããã·ã¥ããŒãå ã ã¹ããŒã¿ã¹ ããªãã·ã§ã³ã® ã¿ã° ãæå®ãããªã©ã®äžè¬çãªèšå®ãè¡ããŸãã ãã®åŸã [次ãž] ãéžæããŸãã æ¬¡ã«ã [ãã¹ãŠã®ãªãŒãžã§ã³ãå«ãã] ãš [ãã¹ãŠã®ãã±ãããå«ãã] ãéžæããå«ãããªãŒãžã§ã³ãšãã±ãããæå®ããŠãããã·ã¥ããŒãã®ç¯å²ãå®çŸ©ããŸãã ã¹ãã¬ãŒãžã¬ã³ãºããã·ã¥ããŒãèšå®ã§ [ã¢ããã³ã¹ããã£ã¢] ãéžæãã [ããã©ãŒãã³ã¹ã¡ããªã¯ã¹] ãéžæã㊠[次ãž] ãéžæããŸãã æ¬¡ã«ã远å ã®ã¡ããªã¯ã¹éèšãšã㊠[ãã¬ãã£ãã¯ã¹éèš] ãéžæããæ®ãã®æ
å ±ã¯ããã©ã«ãã®ãŸãŸã«ããŠãã [次ãž] ãéžæããŸãã [ããã©ã«ãã¡ããªã¯ã¹ã¬ããŒã] ãéžæããæ¬¡ã«ãã±ããã¿ã€ããšã㊠[æ±çšãã±ãã] ãéžæããAWS ã¢ã«ãŠã³ãã® Amazon S3 ãã±ããã [å®å
ãã±ãã] ãšããŠéžæããŸããæ®ãã®æ
å ±ã¯ããã©ã«ãã®ãŸãŸã«ããŠã [次ãž] ãéžæããŸãã ãã¹ãŠã®æ
å ±ã確èªããŠããã [éä¿¡] ãéžæããŠããã»ã¹ãçµäºããŸãã æå¹ã«ãããšã ã¹ãã¬ãŒãžã¬ã³ãºã³ã³ãœãŒã« ã®ããã·ã¥ããŒãã«æ¯æ¥ã®ããã©ãŒãã³ã¹ã¡ããªã¯ã¹ãçŽæ¥è¡šç€ºãããŸããã¬ããŒãã CSV 圢åŒãŸã㯠Parquet 圢åŒã§ã¢ã«ãŠã³ãå
ã®ä»»æã®ãã±ããã«ãšã¯ã¹ããŒãããããAmazon CloudWatch ã«å
¬éããããéžæããããšãã§ããŸããããã©ãŒãã³ã¹ã¡ããªã¯ã¹ã¯æ¯æ¥éèšããã³å
¬éãããçµç¹ãã¢ã«ãŠã³ãããã±ããããã¬ãã£ãã¯ã¹ãšãã£ãè€æ°ã®ã¬ãã«ã§å©çšã§ããŸãããã®ããããããŠã³ã¡ãã¥ãŒã§ã [ã¡ããªã¯ã¹] ã«åæ PUT 503 ãšã©ãŒç (%)ã [æ¥ä»ç¯å²] ã« [éå» 30 æ¥é]ã [äžäœ N ãã±ãã] ã« 10 ãéžæããŸãã åæ PUT 503 ãšã©ãŒæ°ã¡ããªã¯ã¹ã¯ãåããªããžã§ã¯ãã«å¯Ÿããåæ PUT æäœã«ãã£ãŠçæããã 503 ãšã©ãŒã®æ°ã远跡ããŸããã¹ããããªã³ã°ãšã©ãŒã¯ã¢ããªã±ãŒã·ã§ã³ã®ããã©ãŒãã³ã¹ãäœäžãããå¯èœæ§ããããŸããã·ã³ã°ã«ã©ã€ã¿ãŒã®å Žåã¯ãå詊è¡ã®åäœã倿ŽããããAmazon S3 Express One Zone ãªã©ã®ããããã©ãŒãã³ã¹ã®é«ãã¹ãã¬ãŒãžãã£ã¢ã䜿çšããŠãåæçºçãã PUT 503 ãšã©ãŒã軜æžããŸããè€æ°ã®ã©ã€ã¿ãŒã®ã·ããªãªã§ã¯ãã³ã³ã»ã³ãµã¹ã¡ã«ããºã ã䜿çšã㊠PUT 503 ãšã©ãŒãåæã«çºçããªãããã«ããããAmazon S3 Express One Zone ãªã©ã®ããããã©ãŒãã³ã¹ã®é«ãã¹ãã¬ãŒãžãã£ã¢ã䜿çšããŸãã S3 ãã±ããå
ã®ãã¹ãŠã®ãã¬ãã£ãã¯ã¹ã®å®å
šãªåæ S3 ã¹ãã¬ãŒãžã¬ã³ãºã¯ãæ°ãã æ¡å€§ãã¬ãã£ãã¯ã¹ã¡ããªã¯ã¹ã¬ããŒã ãéããS3 ãã±ããå
ã®ãã¹ãŠã®ãã¬ãã£ãã¯ã¹ã®åæããµããŒãããããã«ãªããŸããããã®æ©èœã«ããããµã€ãºéŸå€ 1%ãæå€§æ·±åºŠ 10 ã¬ãã«ãæºãããã¬ãã£ãã¯ã¹ã«åæãå¶éããŠãã以åã®å¶éããªããªããŸããããµã€ãºãæ·±ãã«é¢ä¿ãªãããã±ããããšã«æå€§æ°ååã®ãã¬ãã£ãã¯ã¹ã远跡ããŠãæã詳现ãªãã¬ãã£ãã¯ã¹ã¬ãã«ã§åæã§ããããã«ãªããŸããã æ¡å€§ãã¬ãã£ãã¯ã¹ã¡ããªã¯ã¹ã¬ããŒãã«ã¯ãæ¢åã® S3 ã¹ãã¬ãŒãžã¬ã³ãºã¡ããªã¯ã¹ã«ããŽãªãŒ (ã¹ãã¬ãŒãžäœ¿çšéãã¢ã¯ãã£ããã£ã¡ããªã¯ã¹ (転éããããªã¯ãšã¹ããšãã€ãæ°)ãããŒã¿ä¿è·ã¡ããªã¯ã¹ã詳现ãªã¹ããŒã¿ã¹ã³ãŒãã¡ããªã¯ã¹ãå«ãŸããŸãã éå§æ¹æ³ ã ä»çµã¿ ãã»ã¯ã·ã§ã³ã§èª¬æãããŠããã®ãšåãæé ã«åŸã£ãŠãã¹ãã¬ãŒãžã¬ã³ãºããã·ã¥ããŒããäœæãŸãã¯æŽæ°ããŸãããšã¯ã¹ããŒããªãã·ã§ã³ãéžæããã³ã³ãœãŒã«ã®ã¹ããã 4 ã§ã¯ãæ°ãã Expanded prefix ã¡ããªã¯ã¹ã¬ããŒã ãéžæã§ããŸãããã®åŸãæ¡åŒµãã¬ãã£ãã¯ã¹ã¡ããªã¯ã¹ã¬ããŒãã CSV ãŸã㯠Parquet 圢åŒã§ã¢ã«ãŠã³ãã®ä»»æã®æ±çšãã±ããã«ãšã¯ã¹ããŒãããŠãã¹ãã¬ãŒãžã¬ã³ãºããŒã¿ãå¹ççã«ã¯ãšãªã§ããŸãã ç¥ã£ãŠãããšäŸ¿å©ãªæ
å ± ãã®æ©èœåŒ·åã¯ãçµç¹ããã¬ãã£ãã¯ã¹æ§é å
šäœããã现ããå¯èŠåããå¿
èŠãããã·ããªãªã«å¯Ÿå¿ããŸããããšãã°ããã«ãããŒãã¢ããããŒããäžå®å
šãªãã¬ãã£ãã¯ã¹ãç¹å®ããŠã³ã¹ããåæžããããæå·åãšã¬ããªã±ãŒã·ã§ã³ã®èŠä»¶ã«ã€ããŠãã¬ãã£ãã¯ã¹æ§é å
šäœã®ã³ã³ãã©ã€ã¢ã³ã¹ã远跡ããããæã詳现ãªã¬ãã«ã§ããã©ãŒãã³ã¹ã®åé¡ãæ€åºãããã§ããŸãã S3 ã¹ãã¬ãŒãžã¬ã³ãºã¡ããªã¯ã¹ã S3 Tables ã«ãšã¯ã¹ããŒã S3 ã¹ãã¬ãŒãžã¬ã³ãºã¡ããªã¯ã¹ã S3 Tables ã«èªåçã«ãšã¯ã¹ããŒãã§ããããã«ãªããŸãããããã¯ãApache Iceberg ãµããŒããçµã¿èŸŒãŸãã AWS ã®ãã«ãããŒãžãæ©èœã§ãããã®çµ±åã«ãããAWS ã管çãã S3 Tablesã«ã¡ããªã¯ã¹ãæ¯æ¥èªåçã«é
ä¿¡ããã远å ã®åŠçã€ã³ãã©ã¹ãã©ã¯ãã£ãå¿
èŠãšããã«ããã«ã¯ãšãªãå®è¡ã§ããŸãã éå§æ¹æ³ ãŸããã³ã³ãœãŒã«ã§ã¹ããã 5 ã§èª¬æããããã»ã¹ã«åŸãããšã¯ã¹ããŒãå
ãéžæããŸããä»åã¯ã [æ¡åŒµãã¬ãã£ãã¯ã¹ã¡ããªã¯ã¹ã¬ããŒã] ãéžæããŸããæ±çšãã±ããã«å ããŠã [ããŒãã«ãã±ãã] ãéžæããŸãã æ°ããã¹ãã¬ãŒãžã¬ã³ãºã¡ããªã¯ã¹ã¯ AWS ãããŒãžããã±ãã aws-s3 ã®æ°ããããŒãã«ã«ãšã¯ã¹ããŒããããŸãã æ¡åŒµãã¬ãã£ãã¯ã¹ã¬ããŒãã® API 䜿çšã¡ããªã¯ã¹ã衚瀺ããã«ã¯ã expanded_prefixes_activity_metrics ããŒãã«ãéžæããŸãã Amazon S3 ã³ã³ãœãŒã«ã§ããŒãã«ããã¬ãã¥ãŒããããšãã Amazon Athena ã䜿çšããŠããŒãã«ãã¯ãšãªããããšãã§ããŸãã ç¥ã£ãŠãããšäŸ¿å©ãªæ
å ± S3 Tables ãš S3 ã¹ãã¬ãŒãžã¬ã³ãºã®çµ±åã«ãããããŒã¿ãã€ãã©ã€ã³ãå¿
èŠãšããã«ã䜿ãæ
£ãã SQL ããŒã«ãš Amazon Athenaã Amazon QuickSight ã Amazon EMR ã Amazon Redshift ãªã©ã® AWS åæãµãŒãã¹ã䜿çšããŠã¡ããªã¯ã¹åæãç°¡çŽ åã§ããŸããã¡ããªã¯ã¹ã¯èªåçã«æŽçãããŠæé©ãªã¯ãšãªãå®è¡ãããããã«ãªããå¿
èŠã«å¿ããŠä¿åãšæå·åã®ãªãã·ã§ã³ãã«ã¹ã¿ãã€ãºã§ããŸãã ãã®çµ±åã«ãããã¯ãã¹ã¢ã«ãŠã³ãããã³ã¯ãã¹ãªãŒãžã§ã³ã®åæãã«ã¹ã¿ã ããã·ã¥ããŒãã®äœæãããã³ä»ã® AWS ãµãŒãã¹ãšã®ããŒã¿çžé¢ãå¯èœã«ãªããŸããããšãã°ãã¹ãã¬ãŒãžã¬ã³ãºã¡ããªã¯ã¹ãš S3 ã¡ã¿ããŒã¿ãçµã¿åãããŠããã¬ãã£ãã¯ã¹ã¬ãã«ã®ã¢ã¯ãã£ããã£ãã¿ãŒã³ãåæããäœã³ã¹ãã®ã¹ãã¬ãŒãžãã£ã¢ãžã®ç§»è¡ã«é©æ Œãªã³ãŒã«ãããŒã¿ãå«ããã¬ãã£ãã¯ã¹å
ã®ãªããžã§ã¯ããç¹å®ã§ããŸãã ãšãŒãžã§ã³ãã£ã㯠AI ã¯ãŒã¯ãããŒã§ã¯ãèªç¶èšèªã䜿çšã㊠S3 Tables MCP ãµãŒã㌠㧠S3 Tablesã® S3 ã¹ãã¬ãŒãžã¬ã³ãºã¡ããªã¯ã¹ãã¯ãšãªã§ããŸãããšãŒãžã§ã³ãã¯ããå
ææãå¢å ãããã±ããã¯ã©ããããªã©ã®è³ªåãããããšãã§ããŸãããŸãã¯ãã¹ãã¬ãŒãžã¯ã©ã¹å¥ã®ã¹ãã¬ãŒãžã³ã¹ããèŠããŠããšããªãã¶ãŒãããªãã£ããŒã¿ããå³åº§ã«ã€ã³ãµã€ããåŸãããšãã§ããŸãã ä»ãããå©çšããã ããŸã 3 ã€ã®æ¡åŒµæ©èœã¯ãã¹ãŠãS3 ã¹ãã¬ãŒãžã¬ã³ãºãçŸåšæäŸãããŠãããã¹ãŠã® AWS ãªãŒãžã§ã³ (äžåœãªãŒãžã§ã³ãš AWS GovCloud (ç±³åœ) ãé€ã) ã§å©çšã§ããŸãã ãããã®æ©èœã¯ Amazon S3 ã¹ãã¬ãŒãžã¬ã³ãºã¢ããã³ã¹ããã£ã¢ã«å«ãŸããŠãããæšæºã¢ããã³ã¹ããã£ã¢ã®äŸ¡æ Œãè¶
ããè¿œå æéã¯ãããŸãããS3 Tables ã®ãšã¯ã¹ããŒãã§ã¯ãS3 Tables ã®ã¹ãã¬ãŒãžãã¡ã³ããã³ã¹ãã¯ãšãªã«å¯ŸããŠã®ã¿ãæ¯æãããã ããŸãããšã¯ã¹ããŒãæ©èœèªäœã«è¿œå æéã¯ããããŸããã Amazon S3 ã¹ãã¬ãŒãžã¬ã³ãºã®ããã©ãŒãã³ã¹ã¡ããªã¯ã¹ãæ°ååã®ãã¬ãã£ãã¯ã¹ã®ãµããŒããS3 Tables ãžã®ãšã¯ã¹ããŒãã®è©³çްã«ã€ããŠã¯ãã Amazon S3 ãŠãŒã¶ãŒã¬ã€ã ããåç
§ããŠãã ãããæéã®è©³çްã«ã€ããŠã¯ã Amazon S3 æé衚ããŒãž ãã芧ãã ããã Veliswa Boya ã åæã¯ ãã¡ã ã§ãã
2025 幎ã®åãã« ãNova Act ã®ãªãµãŒããã¬ãã¥ãŒããªãªãŒã¹ããŸãããããã¯ãAI ãšãŒãžã§ã³ãããŠãŒã¶ãŒã€ã³ã¿ãŒãã§ã€ã¹ãšçžäºäœçšããè€éãªã¯ãŒã¯ãããŒãèªååããå¯èœæ§ãå®èšŒãããã®ã§ããéçºè
㯠Nova Act ã詊ããŠããããã®èªååãšãŒãžã§ã³ããæ¬çªçšŒåç°å¢ã«å°å
¥ããããšç§ãã¡ã«è©±ããŸããã ãããããšãŒãžã§ã³ããæ¬çªçšŒåç°å¢ã«æã¡èŸŒãã«ã¯ãã¢ãã«ãžã®ã¢ã¯ã»ã¹ã ãã§ã¯äžååã§ãããéçºè
ã¯ãä¿¡é Œæ§ã®é«ãèªååãå®çŸããããã«ãã¯ãŒã¯ãããŒã®èª¿æŽãããã³ããã®æ¹è¯ãé©åãªããŒã«ã®éžæãããŸããŸãªã³ã³ããŒãã³ãã®çµ±åã«å€å€§ãªæéãè²»ãããŠããŸããã課é¡ã¯ã€ã³ããªãžã§ã³ã¹ã ãã§ã¯ãªããä¿¡é Œæ§ãçµ±åãæ¬çªçšŒåç°å¢ãŸã§ã®ã¹ããŒãã§ãããããã§ãæ¬çªçšŒåç°å¢ã§ããã«äœ¿ãããã©ãŠã¶èªååã®ããã®å®å
šã«çµ±åããããœãªã¥ãŒã·ã§ã³ãæ§ç¯ããŸããã 2025 幎 12 æ 2 æ¥ã Amazon Nova Act ãäžè¬å
¬éãããããšãçºè¡šããŸãããããã¯ãéçºè
ãæ¬çªçšŒå UI ã¯ãŒã¯ãããŒãèªååããããã®ä¿¡é Œæ§ã®é«ã AI ãšãŒãžã§ã³ãçŸ€ãæ§ç¯ããããã€ã管çããã®ã«åœ¹ç«ã€æ°ãã Amazon Web Services (AWS) ãµãŒãã¹ã§ããNova Act ã¯ãå€§èŠæš¡ç°å¢ã«ãã㊠90ïŒ
以äžã®ä¿¡é Œæ§ãæäŸãããšåæã«ãä»ã® AI ãã¬ãŒã ã¯ãŒã¯ãšæ¯èŒããŠã䟡å€åµåºãŸã§ã®æéãæãçããå®è£
ã容æã§ãã Nova Act ã³ã³ãœãŒã«ãç°¡åã«èŠãŠã¿ãŸãããã Nova Act ã¯ãäŒæ¥èŠæš¡ã§ä¿¡é Œæ§ã®é«ããã©ãŠã¶èªååãæ§ç¯ãããšãã課é¡ã«å¯ŸåŠããŸããã«ã¹ã¿ã Amazon Nova 2 Lite ã¢ãã«ãæèŒãã Nova Act ã¯ããã©ãŠã¶ã®æäœãAPI åŒã³åºãã®ãµããŒããå¿
èŠã«å¿ãã人ãžã®ãšã¹ã«ã¬ãŒã·ã§ã³ãšãã£ãç¹ã§åªããŠããŸãããã®ãµãŒãã¹ã«ã¯ããŠã§ãå質ä¿èšŒ (QA) ãã¹ããããŒã¿å
¥åãããŒã¿æœåºããã§ãã¯ã¢ãŠããããŒã®ã³ã¢æ©èœããããŸãã 仿¥ã®ã»ãšãã©ã®ã¢ãã«ã¯ãã¿ã¹ã¯ãå®è¡ãããªãŒã±ã¹ãã¬ãŒã¿ãŒãã¢ã¯ãã¥ãšãŒã¿ãŒãšã¯å¥ã«åå¥ã«ãã¬ãŒãã³ã°ãããŠãããããä¿¡é Œæ§ãäœäžããŸããNova Act ã¯ããšãŒãžã§ã³ããçŸå®äžçã® UI ãã·ãã¥ã¬ãŒãããã«ã¹ã¿ã åæç°å¢ (ããŠã§ããžã ã) å
ã§åäœããäžæ¹ã§ã匷ååŠç¿ã䜿çšããããšã§ããã«å¯Ÿããã¢ãããŒããç°ãªããŸããã¢ãã«ããªãŒã±ã¹ãã¬ãŒã¿ãŒãããŒã«ãSDK ããã¹ãŠäžç·ã«ãã¬ãŒãã³ã°ããŠåçŽçµ±åããããšã§ãå€§èŠæš¡ç°å¢ã§ãé«ã宿çãå®çŸã§ããŸãããã®çµæãæææ©èœããã ãã§ãªããå€åã«å¯ŸåŠããããã®æšè«ãšé©å¿æ§ãåãããå€§èŠæš¡ã§ãä¿¡é Œã§ãããšãŒãžã§ã³ãã£ãã¯ãªã·ã¹ãã ãçãŸããŸããã FortiCNP ã®äœ¿çšéå§ Nova Act ã¯ããããã¿ã€ãããæ¬çªçšŒåãŸã§æ°æéã§å®äºããçµ±åéçºãšã¯ã¹ããªãšã³ã¹ãæäŸããŸããæ¬¡ã«ããã®å·¥çšã瀺ããŸãã ãã¬ã€ã°ã©ãŠã³ãããå§ãã ãŸãã nova.amazon.com/act ã«ã¢ã¯ã»ã¹ã㊠Nova Act Playground ã«ã¢ã¯ã»ã¹ããŸããããã§ã¯ãNova Act ããã°ããå®éšããå®éã®åäœã確èªã§ããŸãã ãããã®ãã¹ãã«ã¯ãNova Act ãšãŒãžã§ã³ãã®ãã¹ãçšã«èšèšãããã·ãã¥ã¬ãŒãããããã©ãŠã¶ç°å¢ã§ãã Nova Act Gym ã䜿çšããŸãã æ¶ç©ºã®æ
è¡äºçŽãŠã§ããµã€ã ã䜿ã£ãŠãå°çå倪éœç³»å€ææã«è¡ããŸãã ããã§ã¯ãã³ãŒããèšè¿°ããªããŠããèªç¶èšèªã³ãã³ãã䜿çšããŠã¯ãŒã¯ãããŒã®ãããã¿ã€ãããã°ããäœæã§ããŸããèªååãã URL ãå
¥åããNova Act ãå®è¡ããå¿
èŠã®ããã¢ã¯ã·ã§ã³ã«ã€ããŠèª¬æããŸãã [ã¢ã¯ã·ã§ã³ã远å ] ãéžæãããšãããã«ã¢ã¯ã·ã§ã³ã远å ã§ããŸãã ã¢ã¯ã·ã§ã³ãå®çŸ©ããããã©ã€ããã©ãŠã¶ã»ãã·ã§ã³ã§ Nova Act ãšãŒãžã§ã³ããå®è¡ããŸããããã«ãããèªååã¢ãããŒããæåŸ
ã©ããã«æ©èœããããšãæ€èšŒã§ããŸãã ã¯ãŒã¯ãããŒãæ€èšŒããããããããšã¯ã¹ããŒãããŠã Visual Studio Code (VS Code) ã Kiro ã Cursor ãªã©ã® çµ±åéçºç°å¢ (IDE) ã§éçºãç¶ããããšãã§ããŸãã IDE ã§çµã蟌ã ãã®æ®µéã§ã¯ããµããŒããããŠãã IDE ã§èªååãæ¹è¯ããå¿
èŠããããŸããKiro ã䜿çšãã Nova Act æ¡åŒµæ©èœãã©ã°ã€ã³ãã€ã³ã¹ããŒã«ããŸãã ãã®æ¡åŒµã¢ãžã¥ãŒã«ã¯ãåã¹ããããåå¥ã«ãã¹ãããã³ãããã°ã§ããããŒãããã¯ã¹ã¿ã€ã«ã®ãã«ããŒã¢ãŒããæäŸããŸããã©ã€ããã©ãŠã¶ãã¥ãŒã«ã¯ãšãŒãžã§ã³ããäœãããŠããããæ£ç¢ºã«è¡šç€ºãããå®è¡ãã°ã«ã¯ã¢ãã«ã®çç±ãšã¢ã¯ã·ã§ã³ã衚瀺ãããŸããããã«ãããã¯ãŒã¯ãããŒã®æ¹åãšãšããžã±ãŒã¹ã®åŠçãç°¡åã«ãªããŸãã IDE ã§ Nova Act æ¡åŒµæ©èœã䜿çšããæ¹æ³ã«ã€ããŠã¯ã AWS ãã¥ãŒã¹ããã°ã®ãNova Act IDE æ¡åŒµæ©èœã§ AI ãšãŒãžã§ã³ãéçºãå éã ãåç
§ããŠãã ãããNova Act æ¡åŒµæ©èœã«ã¯ãäžè¬çãªã¯ãŒã¯ãããŒãã¿ãŒã³ããã°ãã䜿ãå§ããã®ã«åœ¹ç«ã€ãã³ãã¬ãŒããå«ãŸããŠããŸãã ä»åã®ãªãªãŒã¹ã§ã¯ãNova Act IDE æ¡åŒµæ©èœã«ãèªèšŒããã«ããŒã¢ãŒãããããã€ãå®è¡ã¯ãŒã¯ãããŒå°çšã®ã¿ããå°å
¥ãããéçºã©ã€ããµã€ã¯ã«å
šäœã IDE ã«åã蟌ãŸããŸãããã®æ¡åŒµæ©èœã¯æ¬çªçšŒåç°å¢ãžã®æãç°¡åãªæ¹æ³ã§ãããéçºè
㯠Nova Act ã³ãã³ãã©ã€ã³ã€ã³ã¿ãŒãã§ã€ã¹ (CLI) ãŸã㯠SDK ãçŽæ¥äœ¿çšããŠãããé«åºŠãªãããã€èšå®ãè¡ãããšãã§ããŸãã AWS ã«ããã〠ã¯ãŒã¯ãããŒã®æ¬çªçšŒåç°å¢ãæŽã£ããã [ãããã€] ã¿ãã«ç§»åã㊠AWS ã«çŽæ¥ãããã€ããŸããã¯ãŒã¯ãããŒå®çŸ©å (ã¹ã¯ãªããå
ã®ååãšäžèŽããå¿
èŠããããŸã) ãå
¥åãã AWS ãªãŒãžã§ã³ ãéžæãããªãã·ã§ã³ã§æ¢åã® AWS Identity and Access Management (IAM) ããŒã«ã® Amazon ãªãœãŒã¹ããŒã (ARN) ãæå®ããŸãããã®æ¡åŒµæ©èœã¯ãã¯ãŒã¯ãããŒã Docker ã³ã³ããã«ããã±ãŒãžåãã Amazon Elastic Container Registry (Amazon ECR) ã«ããã·ã¥ããå¿
èŠãª IAM ããŒã«ãš Amazon Simple Storage Service (Amazon S3) ãã±ãããäœæããããã Amazon Bedrock AgentCore Runtime ã«ãããã€ããŸãã ãããã€åŸã¯ãNova Act ã³ã³ãœãŒã«ã§ã¯ãŒã¯ãããŒã®å®è¡ãã¢ãã¿ãªã³ã°ã§ããŸãã [ã¯ãŒã¯ãããŒå®çŸ©] ã«ç§»åããŸããã³ã³ãœãŒã«ã«ã¯ãªãã¶ãŒãããªãã£ããã·ã¥ããŒãããããã¯ãŒã¯ãããŒã«äººéã®å
¥åãå¿
èŠãªå Žåãã¹ãŒããŒãã€ã¶ãŒãä»å
¥ããããã«éç¥ããã«ã¹ã¿ã ããã·ã¥ããŒããèšå®ããŸãã æ¬¡ã«ãã¯ãŒã¯ãããŒå®çŸ©ãéžæããã«ã¯ãäžã«ã¹ã¯ããŒã«ããŠãå®è¡ãããã¯ãŒã¯ãããŒãæ¢ããŸãã ããã§ã¯ãã¯ãŒã¯ãããŒã®å®è¡ã«é¢ãã詳现æ
å ±ã確èªã§ããŸãã ãããããã¯ãŒã¯ãããŒã®é²è¡ç¶æ³ãšå®è¡ãã°ã远跡ããŸããåã¹ãããã«ã¯ããšãŒãžã§ã³ãã®çç±ãã¢ã¯ã·ã§ã³ããã©ãŠã¶ã®ã¹ã¯ãªãŒã³ã·ã§ããã衚瀺ãããŸããIDE ã§éçºããŠãããšããšåãã¬ãã«ã®å¯èŠæ§ã§ãæ¬çªçšŒåç°å¢ã®å®è¡ãå€§èŠæš¡ã«ã¢ãã¿ãªã³ã°ã§ããããã«ãªããŸããã å®éšããæ¬çªçšŒåç°å¢ãžã®ãã®ç°¡åãªç§»è¡ã«ãããç°ãªãããŒã«ããªãŒã±ã¹ãã¬ãŒã·ã§ã³ããžãã¯ãã€ãªãåãããã®ã«éåžžäœé±éãè²»ããå¿
èŠããªããªããŸãã çµã¿åããããšãã匷å: Nova Act ãš Strands Agents ãšãŒãžã§ã³ãã·ã¹ãã ãæçããã«ã€ããå°éã®ãšãŒãžã§ã³ããã·ãŒã ã¬ã¹ã«é£æºããå¿
èŠæ§ãäžå¯æ¬ ã«ãªããŸããNova Act 㯠Strands Agents ãã¬ãŒã ã¯ãŒã¯ãšèªç¶ã«çµ±åããããããã«ã¹ã¿ã çµ±åäœæ¥ãªãã§å
æ¬çãªãã«ããšãŒãžã§ã³ãã¯ãŒã¯ãããŒãæ§ç¯ã§ããŸããStrands ã¯ãã¡ã€ã³éã®ãšãŒãžã§ã³ãã·ã¹ãã ã調æŽããããã®ãªãŒã±ã¹ãã¬ãŒã·ã§ã³å±€ãæäŸããNova Act ã¯ãã©ãŠã¶äž»äœã® UI èªååã«ç¹åããä¿¡é Œæ§ãæäŸããŸãããã®ãããªããã«äœ¿çšã§ããäºææ§ã¯ãçŸä»£ã®ãšãŒãžã§ã³ãã¢ãŒããã¯ãã£ãã€ãŸãè€éãªããžãã¹äžã®åé¡ã解決ããããã«çµ±åãããå°çšã³ã³ããŒãã³ããã©ã®ããã«æ©èœãã¹ãããåæ ããŠããŸãã éçºè
㯠Strands ã䜿çšããŠè€éãªã¯ãŒã¯ãããŒã調æŽã§ããŸããNova Act ã¯ãã©ãŠã¶èªååã³ã³ããŒãã³ããç¹æ®ãªããŒã«ãšããŠæ±ããããããä»ã®ãšãŒãžã§ã³ããšçµã¿åãããŸããããŒã ã¯ãã®ã¢ãŒããã¯ãã£ã䜿çšããŠãStrands ã«ãã£ãŠãªãŒã±ã¹ãã¬ãŒã·ã§ã³ãããããåºç¯ãªãšãŒãžã§ã³ããšã³ã·ã¹ãã å
ã§ãNova Act å°çšã® UI èªååæ©èœã掻çšã§ããŸãã ç¥ã£ãŠããã¹ãããš çæç¹ã¯ä»¥äžã®ãšããã§ãã çµ±å â Strands Agents ãã¬ãŒã ã¯ãŒã¯ãšé£æºããŠããã¡ã€ã³å
šäœã§è€éãªãã«ããšãŒãžã§ã³ãã¯ãŒã¯ãããŒãæ§ç¯ããŸãã æé â 詳现ã«ã€ããŠã¯ã Amazon Nova Act ã®æé衚ããŒãž ãã芧ãã ããã Nova Act ãšè²¬ä»»ãã AI â Nova Actã«ã¯ã 責任ãã AI ã®äœ¿çšãä¿é²ããããã®å®å
šç®¡çæ©èœãšã³ã³ãã³ãã¢ãã¬ãŒã·ã§ã³æ©èœãçµã¿èŸŒãŸããŠãããæšè«ã®é²æ©ããšãŒãžã§ã³ãã®å®å
šæ§ãæµå¯Ÿçæ»æã«å¯Ÿããå
ç¢æ§ãçµã¿èŸŒãã§ããŸãã å¯çšæ§ â Amazon Nova Act ãç±³åœæ±éš (ããŒãžãã¢åéš) AWS ãªãŒãžã§ã³ã§å©çšã§ããããã«ãªããŸãããææ°ã®ãªãŒãžã§ã³ã®å¯çšæ§ã«ã€ããŠã¯ã AWS Capabilities by Region ããŒãžãã芧ãã ããã Nova Act ã䜿ãå§ããã«ã¯ã nova.amazon.com/act ã«ã¢ã¯ã»ã¹ããAPI ããŒãå
¥æããŠãã¬ã€ã°ã©ãŠã³ããæ¢çŽ¢ããŸãã ããããŒãªãŒãã¡ãŒã·ã§ã³! â Danilo & Donnie åæã¯ ãã¡ã ã§ãã
2025 幎 12 æ 2 æ¥ã Amazon Elastic Compute Cloud (Amazon EC2) ã€ã³ã¹ã¿ã³ã¹ãš Amazon Elastic Container Service (Amazon ECS) ã¿ã¹ã¯ã® 2 ã€ã®æ»æã·ãŒã±ã³ã¹æ€åºçµæã远å ããã Amazon GuardDuty Extended Threat Detection ã®æ°ããæ¡åŒµæ©èœãçºè¡šããŸããããããã®æ°ããæ€åºçµæã¯ãæ¢åã® Extended Threat Detection æ©èœã«åºã¥ããŠããã AWS Identity and Access Management (IAM) ã®èªèšŒæ
å ±ã®æªçšãç°åžžãª Amazon Simple Storage Service (Amazon S3) ãã±ããã¢ã¯ãã£ããã£ã Amazon Elastic Kubernetes Service (Amazon EKS) ã¯ã©ã¹ã¿ãŒäŸµå®³ãªã©ã®ã·ãŒã±ã³ã¹ããã§ã«çµã¿åãããŠããŸããä»åã®çºè¡šã§ã¯ãEC2 ã€ã³ã¹ã¿ã³ã¹ã°ã«ãŒããš ECS ã¯ã©ã¹ã¿ãŒã®å¯Ÿè±¡ç¯å²ã远å ããããšã§ãåãã¢ããªã±ãŒã·ã§ã³ããµããŒãããä»®æ³ãã·ã³ãšã³ã³ããç°å¢ãžã®ã·ãŒã±ã³ã¹ã¬ãã«ã®å¯èŠæ§ãæ¡å€§ãããŸãããããã®æ©èœãçµã¿åãããããšã§ãããŸããŸãª Amazon Web Services (AWS) ã¯ãŒã¯ããŒãã«ããã倿®µéã®ã¢ã¯ãã£ããã£ãããäžè²«æ§ã®ããçµ±äžãããæ¹æ³ã§æ€åºã§ããŸãã çŸä»£ã®ã¯ã©ãŠãç°å¢ã¯åçã§åæ£ãããŠãããå€ãã®å Žåãä»®æ³ãã·ã³ãã³ã³ããããµãŒããŒã¬ã¹ã¯ãŒã¯ããŒããå€§èŠæš¡ã«å®è¡ããŠããŸããã»ãã¥ãªãã£ããŒã ã¯ããããã®ç°å¢å
šäœã®å¯èŠæ§ãç¶æããè€éã§å€æ®µéã®æ»æã·ãŒã±ã³ã¹ã瀺ãå¯èœæ§ã®ããé¢é£ã¢ã¯ãã£ããã£ãçµã³ä»ããããåªããŠããŸãããããã®ã·ãŒã±ã³ã¹ã«ã¯ãåæã¢ã¯ã»ã¹ãšæ°žç¶æ§ã®ç¢ºç«ãäžè¶³ããŠããèªèšŒæ
å ±ã®æäŸãäºæããªãããŒã¿ã¢ã¯ã»ã¹ã®å®è¡ãªã©ãè€æ°ã®ã¹ããããå«ãŸããå ŽåããããŸãããããã®ã¹ãããã¯ãæéã®çµéãšãšãã«ãããŸããŸãªãœãŒã¹ã«ããã£ãŠå±éãããŸããGuardDuty Extended Threat Detection ã¯ãAWS èŠæš¡ã§ãã¬ãŒãã³ã°ããã AI ãš æ©æ¢°åŠç¿ (ML) ã¢ãã«ã䜿çšããŠãããã®ã·ã°ãã«ãèªåçã«ãªã³ã¯ããã¢ã¯ãã£ããã£ã®å
šäœåãæ§ç¯ãã顧客ã察å¿ã¢ã¯ã·ã§ã³ã®åªå
é äœã決ããã®ã«åœ¹ç«ã€ä¿¡é Œæ§ã®é«ãã€ã³ãµã€ããæç€ºããŸãããã®åæã§ã¯ãããŸããŸãªæ
å ±æºããã®ãšããã³ã¹ãçµã¿åãããããšã«ãããåã
ã®äºè±¡ããæšæž¬ããã®ãå°é£ãªãå¿ å®åºŠã®é«ãçµ±äžãããæ€åºçµæãåŸãããŸãã ä»çµã¿ Extended Threat Detection ã¯ãã©ã³ã¿ã€ã ã¢ã¯ãã£ããã£ããã«ãŠã§ã¢æ€åºã VPC ãããŒãã° ãDNS ã¯ãšãªã AWS CloudTrail ã€ãã³ããªã©ãè€æ°ã®ã¿ã€ãã®ã»ãã¥ãªãã£ã·ã°ãã«ãåæããŠãAmazon EC2 ããã³ Amazon ECS ã¯ãŒã¯ããŒãã«ããã倿®µéæ»æã®ãã¿ãŒã³ãç¹å®ããŸããæ€åºã¯ GuardDuty åºæ¬ãã©ã³ ãšé£æºããŸããEC2 ãŸã㯠ECS ã® ã©ã³ã¿ã€ã ã¢ãã¿ãªã³ã° ãæå¹ã«ãããšãããã»ã¹ããããã¯ãŒã¯ã¬ãã«ã®ãã¬ã¡ããªãæ·±ãŸããã·ã°ãã«åæã匷åãããåæ»æã·ãŒã±ã³ã¹ã®å®å
šæ§ãåäžããŸãã æ°ããæ»æã·ãŒã±ã³ã¹ã®æ€åºçµæã¯ãã©ã³ã¿ã€ã ãšç°å¢å
šäœã§èгå¯ããããã®ä»ã®åäœã 1 ã€ã®ã¯ãªãã£ã«ã«ãªé倧床ã·ãŒã±ã³ã¹ã«ãŸãšãããã®ã§ããåã·ãŒã±ã³ã¹ã«ã¯ãã€ã³ã·ãã³ãã®æŠèŠã芳å¯ãããã€ãã³ãã®ã¿ã€ã ã©ã€ã³ããããã³ã°ããã MITRE ATT&CK® ã®æŠè¡ãšãã¯ããã¯ãããã³ã¢ã¯ãã£ããã£ãã©ã®ããã«å±éãããã©ã®ãªãœãŒã¹ã圱é¿ãåããããçè§£ããã®ã«åœ¹ç«ã€ä¿®åŸ©ã¬ã€ãã³ã¹ãå«ãŸããŠããŸãã EC2 ã€ã³ã¹ã¿ã³ã¹ãš ECS ã¿ã¹ã¯ã¯å€ãã®å ŽåãAuto Scaling ã°ã«ãŒããå
±æèµ·åãã³ãã¬ãŒãã Amazon ãã·ã³ã€ã¡ãŒãž (AMI) ãIAM ã€ã³ã¹ã¿ã³ã¹ãããã¡ã€ã«ããŸãã¯ã¯ã©ã¹ã¿ãŒã¬ãã«ã®ãããã€ã«ãã£ãŠèªåçã«äœæããã³çœ®ãæããããŸãããããã®ãªãœãŒã¹ã¯éåžžãåãã¢ããªã±ãŒã·ã§ã³ã®äžéšãšããŠåäœããããããªãœãŒã¹å
šäœã§èŠãããã¢ã¯ãã£ããã£ã¯ã1 ã€ã®æ ¹æ¬çãªã»ãã¥ãªãã£äŸµå®³ãåå ã§ããå¯èœæ§ããããŸããEC2 ãš ECS ã®æ°ããæ€åºçµæã¯ããããã®å
±æå±æ§ãåæããGuardDuty ãã°ã«ãŒãã«åœ±é¿ãåãŒããã¿ãŒã³ãæ€åºãããšãé¢é£ããã·ã°ãã«ã 1 ã€ã®ã·ãŒã±ã³ã¹ã«çµ±åããŸãã ã·ãŒã±ã³ã¹ãæ€åºããããšã GuardDuty ã³ã³ãœãŒã« ã¯ã該åœãã EC2 ã€ã³ã¹ã¿ã³ã¹ã°ã«ãŒããŸã㯠ECS ã¯ã©ã¹ã¿ãŒããã§ã«ç¹å®ãããŠããç¶æ
ã§ãé倧床ãé«ãã·ãŒã±ã³ã¹ã®æ€åºçµæã [æŠèŠ] ããŒãžã«åŒ·èª¿è¡šç€ºããŸããæ€åºçµæãéžæãããšããªãœãŒã¹ãã©ã®ããã«æ¥ç¶ãããŠããããã·ãŒã±ã³ã¹ã«å¯äžããã·ã°ãã«ãã¢ã¯ãã£ããã£ã®çµæçãªé²è¡ç¶æ³ã瀺ãçµ±åãã¥ãŒãéããä»®æ³ãã·ã³ãšã³ã³ããã®ã¯ãŒã¯ããŒãå
šäœã«ããã圱é¿ç¯å²ããã°ããææ¡ã§ããŸãã ã³ã³ãœãŒã«ã§ã·ãŒã±ã³ã¹ã衚瀺ã§ããã ãã§ãªãããããã®çµæã¯ AWS Security Hub ã§ã確èªã§ããŸããæ°ããå
¬éããã·ã¥ããŒãã«ã¯ãä»ã® GuardDuty æ€åºçµæãšäžç·ã«è¡šç€ºããããããå
šäœçãªã»ãã¥ãªãã£ãªã¹ã¯ã 1 ãæã§ææ¡ããã®ã«åœ¹ç«ã¡ãŸãããã®è©³çްãªãã¥ãŒã«ãããåæã«ãã£ãŠé¢é£ããã·ã°ãã«ãã©ã®ããã«ããŠããåºç¯ãªæ»æã·ãŒã±ã³ã¹ã«ãŸãšããããããè§£éããããã®ã³ã³ããã¹ãã確ç«ãããŸãã åæã¢ãã«ãšã°ã«ãŒãã³ã°ããžãã¯ãçµã¿åãããããšã§ãä»®æ³ãã·ã³ãšã³ã³ããã®ã¯ãŒã¯ããŒãå
šäœã®ã¢ã¯ãã£ããã£ãããæç¢ºãã€çµ±åçã«ææ¡ã§ããããã倿°ã®æ€åºçµæãåå¥ã«èª¿æ»ãã代ããã«ãéèŠãªã€ãã³ãã«éäžã§ããŸããExtended Threat Detection ã¯ãé¢é£ããè¡åã 1 ã€ã®ã·ãŒã±ã³ã¹ã«çµ±åããããšã§ãæ»æçµè·¯ã®å
šå®¹ãè©äŸ¡ããæãç·æ¥ãªä¿®åŸ©ã¢ã¯ã·ã§ã³ã«åªå
é äœãä»ããã®ã«åœ¹ç«ã¡ãŸãã ä»ãããå©çšããã ããŸã EC2 ã€ã³ã¹ã¿ã³ã¹ãš ECS ã¿ã¹ã¯ã®å¯Ÿè±¡ç¯å²ãæ¡å€§ããã Amazon GuardDuty Extended Threat Detection ããGuardDuty ãæäŸãããŠãããã¹ãŠã® AWS ãªãŒãžã§ã³ ã§å©çšã§ããããã«ãªããŸãããä»ãããã®æ©èœã䜿çšããŠãã©ã³ã¿ã€ã ã¢ã¯ãã£ããã£ããã«ãŠã§ã¢å®è¡ãAWS API ã¢ã¯ãã£ããã£ããã®ã·ã°ãã«ãçµã¿åãããããšã§ãä»®æ³ãã·ã³ãšã³ã³ããã®ã¯ãŒã¯ããŒãå
šäœã«ãããå調çãªå€æ®µéã¢ã¯ãã£ããã£ãæ€åºã§ããŸãã ãã®æ¡åŒµã«ãããAmazon EKS ã®æ¢åã® Extended Threat Detection æ©èœãè£å®ãããAWS ã³ã³ãã¥ãŒãã£ã³ã°ç°å¢å
šäœã§èª¿æŽããã倿®µéã®ã¢ã¯ãã£ããã£ãäžå
çã«å¯èŠåã§ããããã«ãªããŸãã詳现ã«ã€ããŠã¯ã Amazon GuardDuty 補åããŒãž ã«ã¢ã¯ã»ã¹ããŠãã ããã â Betty åæã¯ ãã¡ã ã§ãã
æ¬ããã°ã¯ 2025 幎 11 æ 10 æ¥ã«å
¬éããã AWS Public Sector ããã°ã Accelerating CMMC readiness: How AWS and Wiz help public sector organizations ãã翻蚳ãããã®ã§ãã ç±³åœæ¿åºã®ã³ã³ãã©ã¯ã¿ãŒããã³ãµãã³ã³ãã©ã¯ã¿ãŒã«ãšã£ãŠã Cybersecurity Maturity Model Certification (CMMC) ã®ååŸã¯çæéã«ããªããä»äºã§ã¯ãããŸããããã®èªèšŒã®ååŸã«ã¯ãªã¹ã¯ã䌎ããèŠä»¶ã¯è€éã§ããåœé²ç·ç (DoD)ïŒå¥åãæŠäºçïŒãæ°èŠå¥çŽããã³æ¢åå¥çŽã« CMMC ãæ®µéçã«å°å
¥ãããªããæ£ãã察å¿ããªããã°ãªããªããšãããã¬ãã·ã£ãŒã¯é«ãŸãç¶ããŠããŸãããã®ãããããŒã ãäºç®ã«é床ãªè² æ
ããããããšãªããCMMC è©äŸ¡ã«åããŠç°å¢ã調æ»ããå¹ççã§ã¹ã±ãŒã©ãã«ãªæ¹æ³ãããåŒ·ãæ±ããããŠããŸãã Amazon Web Services (AWS) ãš Wiz ã¯ãå¥çŽã§å®çŸ©ããã Controlled Unclassified Information (CUI) ã®æåšãçºèŠããèªèšŒå¢çãé©åãªãµã€ãºã«èšå®ããèªä¿¡ãæã£ãŠã³ã³ãã©ã€ã¢ã³ã¹ãå®èšŒããããã«å¿
èŠãªèšŒæ ãåéããããšã§ãã³ã³ãã©ã¯ã¿ãŒãããè¿
éã«æç¢ºæ§ãåŸãããããæ¯æŽããŸããAWS ãš Wiz ã¯ãããã®ããã»ã¹ãèªååããããšã§ãçµç¹ã管çãªãœãŒã¹ãçµç¹ãªãœãŒã¹ãžã®è² æ
ã軜æžããªãããCMMC å¯Ÿå¿æºåç¶æ³ãè¿
éã«è©äŸ¡ã§ããããæ¯æŽããŸãã 2024 幎 10 æ 15 æ¥ã«å
¬éããã CMMC æçµèŠå 32 CFR Part 170 ã¯ãCMMC ã³ã³ãã©ã€ã¢ã³ã¹ã 3 ã€ã®ã¬ãã«ã«åé¡ããŠãããã¬ãã« 1 ãšäžéšã®ã¬ãã« 2 ã³ã³ãã©ã€ã¢ã³ã¹ã«ã¯èªå·±è©äŸ¡ã§ååãäžéšã®ã¬ãã« 2 ãšãã¹ãŠã®ã¬ãã« 3 ã«ã¯CMMC ãµãŒãããŒãã£è©äŸ¡æ©é¢ (C3PAO) ã«ããè©äŸ¡ãå¿
èŠã§ããWiz ãš AWS ã¯ãCMMC ã«å¿
èŠãªæè¡ã€ã³ãã©ã¹ãã©ã¯ãã£ãšã»ãã¥ãªãã£ã³ã³ãããŒã«ã®å€ããæäŸããçµç¹ã CMMC è©äŸ¡ãéå§ããåã«ã»ãã¥ãªãã£ã®ã£ããã®å¯èœæ§ãããç®æãããè¿
éã«è©äŸ¡ã§ããããæ¯æŽããŸãã æ¬¡ã®è¡šã¯ã3 ã€ã®ã¬ãã«ã®ã¹ã³ãŒããèŠä»¶ãè©äŸ¡ã¢ãããŒãã®æŠèŠã瀺ããŠããŸãã å³ 1: Wiz ãš AWS ã¯ãCMMC ã¬ãã« 1ïœ3 ã«å¿
èŠãªããŸããŸãªæè¡çã³ã³ãããŒã«ã®ãµããŒããšæž¬å®ãçµç¹ãè¡ããããæ¯æŽããŸã CMMC ã倧ããªè² æ
ã§ããçç± åœå®¶ãåŸãçŸãšããè
åšã¢ã¯ã¿ãŒãé²è¡ç£æ¥åºç€ (DIB) ãæšçã«ãç¶ããäžãCMMC ãã¬ãŒã ã¯ãŒã¯ã¯éé£éŠã·ã¹ãã ã«ããã CUI ãä¿è·ããããã«äžå¯æ¬ ãªãã®ãšãªã£ãŠããŸããDoD ã¯çŸåšãé²è¡é¢é£æ¥åã«æºããããšããã³ã³ãã©ã¯ã¿ãŒã«ãšã£ãŠ CMMC ãå¿
é ãã€åŒ·å¶åã®ãããã®ãšèããŠããŸãã ããããå€ãã®çµç¹ã¯ãŸã åºæ¬çãªè³ªåãæããããŠããŸãã ã©ã®ã·ã¹ãã ã CUI ãå«ããŸãã¯åŠçããŠããã®ãïŒ èªèšŒå¢çã«äœãå«ãŸããã®ãïŒ ã³ã³ãã©ã€ã¢ã³ã¹ã確ä¿ããªãããéå°ãªç£æ»ãã©ã®ããã«é¿ããããã®ãïŒ ãããã®äžæç¹ãå
±éã®èª²é¡ã«ã€ãªãããŸãã ç°å¢ã®ç²ç¹ ãè©äŸ¡ã®ã¹ã³ãŒãã³ã°ãè€éã«ããŸãã éå°ãªç£æ» ã¯ã³ã¹ãå¢å ãšç¡é§ãªåŽåãæããŸãã ããŒã ãé©åãªææç©ãæç€ºã§ããªããš ç£æ»ã®é
å»¶ ãçºçããŸãã CUI ããŒã¿ãããŒã®ãããã³ã° ã¯æ ¹æ ã®ãªãæšæž¬äœæ¥ã«ãªããŸãã åŸæ¥ã®æè¡ãæåã®æ¹æ³è«ã«é ŒããšãCMMC ã³ã³ãã©ã€ã¢ã³ã¹ã«å¿
èŠãªè£ä»ã蚌æ ãåéããããšã¯éåžžã«å°é£ã«ãªãå¯èœæ§ããããŸããäŸãã°ãçŸåœ¹è»äººã«é«åºŠãªå»çã±ã¢ãæäŸããããã« CUI æå®ã®æ£è
ããŒã¿ãæ±ãå€§èŠæš¡ãªå»çã°ã«ãŒãã¯ãCUI ãã©ãã«ååšããã©ã®ã·ã¹ãã ãçžäºæ¥ç¶ãããŠããããåé¡ããã®ã« 2 幎ãè²»ããããšå ±åããŠããŸãããã®åãçµã¿ã¯ãå¯èŠæ§ã®æ¬ åŠã ã·ã£ã㌠IT ãã¯ã©ãŠãç°å¢ã«ãããã¯ãŒã¯ããŒãã®åæ£æææš©ã®ããã«å°é£ã§ãããWiz ã¯ããããã®ããã»ã¹ã®å€ããèªååããæåã®åŽåæéãå¿
èŠãšããã«ã·ã£ã㌠IT ãçºèŠããã®ã«åœ¹ç«ã¡ãŸããèªååãšå¯èŠæ§ã«ãããè©äŸ¡äžã«å¿
èŠãªããŒã¿ã®æååéãšé¢é£ä»ãã倧å¹
ã«åæžããããšã§ãCMMC èªèšŒæºåã«å¿
èŠãªç®¡çäœæ¥ã倧å¹
ã«åæžã§ããŸãã Wiz ãš AWS ã®å Wiz ã¯ãçµç¹ã« AWS ã¯ã©ãŠãç°å¢ãžã®å®å
šãªå¯èŠæ§ãæäŸããã¯ã©ãŠãã»ãã¥ãªãã£ãã©ãããã©ãŒã ã§ããWiz ã AWS ã«æ¥ç¶ãããšãWiz ã¯ãããªãã¯ã»ã¯ã¿ãŒããŒã ããªãœãŒã¹ïŒCUI ããŒã¿ãååšããå Žæãå«ãïŒã®æ€åºãèªååããã³ã³ããã¹ãã«åºã¥ããŠãªã¹ã¯ãè©äŸ¡ããèªå·±è©äŸ¡ãšãµãŒãããŒãã£ç£æ»ã®è² æ
ã軜æžããããã«ãé²åŸ¡å¯èœãªæ¹æ³ã§ã»ãã¥ãªãã£äœå¶ã蚌æããã®ã«åœ¹ç«ã¡ãŸãã ãšãŒãžã§ã³ããªãã§æ°åã§ AWS ç°å¢ã«æ¥ç¶ããããšã§ãWiz ã¯æ¬¡ã®ããšãç¹å®ã§ããŸãã ã©ã®ãªãœãŒã¹ã CUI ãå«ããŸã㯠CUI ã«æ¥ç¶ããŠããã ã©ã®ã¢ã€ãã³ãã£ãã£ãäœã«ã©ãããã¢ã¯ã»ã¹ã§ããã ã©ã®è匱æ§ãŸãã¯èšå®ãã¹ãã»ãã¥ãªãã£ã«åœ±é¿ãäžããã AWS å
ã«ãããã€ãããŠãããªãœãŒã¹ããããã®ãªãœãŒã¹ã®æ¥ç¶æ¹æ³ãã©ã®ã¢ã€ãã³ãã£ãã£ãã¢ã¯ã»ã¹æš©ãæã£ãŠãããã«é¢ããã³ã³ããã¹ããå«ãå®å
šãªå¯èŠæ§ãæã€ããšã¯ãCMMC ã¬ãã« 2 ãš 3 ã®éèŠãªèŠçŽ ã§ãããWiz ã§ã¯ããã«å©çšã§ããŸããAWS GovCloud (US) ã®ã»ãã¥ãªãã£æ©èœãšçµã¿åãããããšã§ãçµç¹ã¯ããã·ã§ã³ãé
ãããããšãªããã³ã³ãã©ã€ã¢ã³ã¹ã®ããã®å®å
šã§ã¹ã±ãŒã©ãã«ãªåºç€ãæ§ç¯ã§ããŸãã AWS GovCloud (US) ã¯ããã¯ãããžãŒãªãŒããŒãæ©å¯ããŒã¿ã CUI ããŒã¿ããã¹ãããããã«ä¿¡é Œãã驿°çãªã³ã³ãã©ã€ã¢ã³ã察å¿ã¯ã©ãŠããœãªã¥ãŒã·ã§ã³ã§ããããã¯ãç©ççããã³è«ççã«åé¢ããã 2 ã€ã®ç±³åœäž»æš© ãªãŒãžã§ã³ ãAWS GovCloud (ç±³åœæ±éš) ãš AWS GovCloud (ç±³åœè¥¿éš) ã§æ§æãããŠãããç±³åœå
ã§ç±³åœåžæ°ã«ãã£ãŠéçšãããŠããŸããæ¿åºæ©é¢ã®ã客æ§ããã¯ãããžãŒããŒãããŒãããã³é«åºŠã«èŠå¶ããããšã³ã¿ãŒãã©ã€ãºã¯ã©ãŠãèŠä»¶ãæã€çµç¹ã¯ã AWS GovCloud (US) ã®ã³ã³ãã©ã€ã¢ã³ã¹ããã°ã©ã ãšæ©èœã䜿çšããŠãã¯ãŒã¯ããŒããä¿è·ããéçšèš±å¯ (ATO) ãååŸããèœåãå éããŠããŸãã AWS GovCloud (US) ã¯ãé£éŠãå·ãå°æ¹ã¬ãã«ã®ç±³åœæ¿åºæ©é¢ãã¯ã©ãŠãã§æ©å¯ã¯ãŒã¯ããŒããå®è¡ããã³ã³ãã©ã¯ã¿ãŒãæè²æ©é¢ããã®ä»ã®ç±³åœã®ã客æ§ã®ç¹å®ã®èŠå¶ããã³ã³ã³ãã©ã€ã¢ã³ã¹èŠä»¶ã«å¯Ÿå¿ããããã«èšèšãããŠããŸãããã¹ãŠã® AWS ãªãŒãžã§ã³ã«é©çšãããä¿èšŒããã°ã©ã ã«å ããŠãAWS GovCloud (US) ãªãŒãžã§ã³ã¯ãã客æ§ãç±³åœæŠåšåœéååŒèŠå (ITAR)ã Federal Risk and Authorization Management Program (FedRAMP) ãããã³ DoD Cloud Computing Security Requirements Guide (SRG) Impact Levels 2ã4ã5 ã«æºæ ã§ããããã«èšèšãããŠããŸããAWS GovCloud (US) ããµããŒãããç±³åœã®ã³ã³ãã©ã€ã¢ã³ã¹åºæºã®å®å
šãªãªã¹ãã«ã€ããŠã¯ã AWS Compliance ãã芧ãã ããã èªä¿¡ãæã£ãŠ CMMC è©äŸ¡ã«èšã AWS ãš Wiz ãçµç¹ãšç·å¯ã«é£æºã㊠CMMC ç£æ»ããã»ã¹ãåçåããæ¬çªç°å¢ãžã®ç§»è¡æéãççž®ããã€ãããŒã·ã§ã³ãä¿é²ããæ¹æ³ã以äžã«ç€ºããŸãã CUI ããŒã¿ãããŒãçè§£ãã Wiz ã¯ã Data Security Posture Management (DSPM) å
ã®ã«ã¹ã¿ã ããŒã¿åé¡ã«ãŒã«ãéããŠãCUI ãã©ãã«ååšããããçè§£ãããšããäžè¬çãªèª²é¡ã«ããŒã ã察åŠã§ããããæ¯æŽããŸãããããã®ã«ãŒã«ã¯ãé²è¡å¥çŽãäœæ¥èšè¿°æž (SOW)ãæ¥çžŸäœæ¥èšè¿°æž (Performance Work Statements) å
ã§å®çŸ©ããã CUI ãæ€çŽ¢ããããã«äœ¿çšã§ããŸããã¯ã©ãŠãç°å¢å
ã§ CUI ãååšããå Žæãç¹å®ããããšã§ãçµç¹ã¯ãããã®ããŒã¿ã«å¯Ÿããé©åãªä¿è·ã宿œãããŠããããšãããç°¡åã«ç¢ºèªã§ããŸãã çµç¹ã¯ãé²è¡å¥çŽã§å®çŸ©ãããŠããããã«ãCUI ã Basic ã Specified ãã远跡ããå¿
èŠããããŸãããã®åºå¥ã¯éèŠã§ãããªããªããCUI Specified ã«ã¯ãITAR ã«ãã£ãŠçŸ©åä»ããããŠãããããªãã峿 Œãªæ³çèŠä»¶ã䌎ãããšãå€ããAWS GovCloud (US) ã Wiz for Gov ãªã©ã®ç¹æ®ãªç°å¢ã§èŠããã匷åãããä¿è·ãå¿
èŠã«ãªãããã§ãã æ¬¡ã®ã¹ã¯ãªãŒã³ã·ã§ããã¯ãData Findings ããã·ã¥ããŒãã瀺ããŠããŸãã å³ 2: Wiz ã¯ãçµ±åããã DSPM æ©èœãéããŠããŒã¿æ€åºãèªååããããŒã¿ãååšããå Žæãç¹å®ããæ€åºãããã»ãã¥ãªãã£ãªã¹ã¯ã®ä¿®åŸ©ã«åªå
é äœãä»ããã®ã«åœ¹ç«ã¡ãŸã CUI ã®æ€åºãšãã©ã®ã·ã¹ãã ãšãªãœãŒã¹ãçžäºæ¥ç¶ãããŠããããèªååããããšã§ãçµç¹ã¯ CUI Specified ããŒã¿ã«å¯Ÿããé«åºŠãªã»ãã¥ãªãã£èŠæ±ãšã³ã³ãã©ã€ã¢ã³ã¹ãæºãããŠãããã©ãããããç°¡åã«è©äŸ¡ã§ããŸãã CMMC ã®ã¹ã³ãŒããæé©åãã AWS ã¯ã©ãŠãç°å¢å
šäœãèªèšŒããããšããããšã¯ãåã«é«é¡ã§ããã ãã§ãªããå€ãã®å ŽåäžèŠã§ããé©åãªå¯èŠæ§ãããã°ãçµç¹ã¯ CMMC ã«å¿
èŠãªãã®ã ããå«ãæç¢ºã§é²åŸ¡å¯èœãªå¢çãå®çŸ©ã§ããŸãã å¢çãé©åãªãµã€ãºã«èšå®ããã«ã¯ããšã³ãžãã¢ãªã³ã°ãã³ã³ãã©ã€ã¢ã³ã¹ãæ³åããŒã éã®ããŒãããŒã·ãããå¿
èŠã§ããããã¯å§åçã«æãããããããŸããããCUI ãååšããå Žæãã©ã®ãªãœãŒã¹ãšã¢ã€ãã³ãã£ãã£ãæ¥ç¶ã§ãããããããã®ã·ã¹ãã ãå€éšã«ã©ã®ããã«å
¬éãããŠãããã®æ€åºãèªååããããšã§ãå¢çãèšå®ã§ããŸãã Wiz ã¯ããã®ããã»ã¹ãå éããããã®å¯èŠæ§ãæäŸããŸããçµç¹ã® AWS ã€ã³ãã©ã¹ãã©ã¯ãã£å
šäœã«ãããã³ã³ããã¹ãã«å¯ãã ã€ã³ãµã€ãã«ãããæ¬¡ã®ããšãå¯èœã«ãªããŸãã CMMC ç°å¢ã®ã¹ã³ãŒããé©åã«å®çŸ©ãã ã©ã®ã¢ã€ãã³ãã£ãã£ãšãªãœãŒã¹ã CUI ã«ã¢ã¯ã»ã¹ã§ããããæç¢ºã«ç€ºã ç¡é¢ä¿ãªãªãœãŒã¹ã®ç£æ»ã«ãããæéãšã³ã¹ããåé¿ãã ãã®ãã©ã³ã¹ïŒã»ãã¥ãªãã£ãšä¿ææ§ïŒã¯ãå³ããäºç®ãšã¹ã±ãžã¥ãŒã«ã§äœæ¥ããæ¿åºã®ã³ã³ãã©ã¯ã¿ãŒãšãµãã³ã³ãã©ã¯ã¿ãŒã«ãšã£ãŠäžå¯æ¬ ã§ããæ¬¡ã®ãã³å³ã¯ãæå°éã®å¢çãæã€å³å¯ãªã¹ã³ãŒããšããã¹ãŠãå²ãå¢çãæã€ãã«ã¹ã³ãŒãã®äº€å·®ã瀺ããŠããŸããå³å¯ãªã¹ã³ãŒããšãã«ã¹ã³ãŒãã®éãªãã瀺ãäžå€®ã®é åã«ã¯ãCUI ãšé¢é£ã·ã¹ãã ã®åšå²ã« CMMC è©äŸ¡å¢çãé
眮ããããšã®å©ç¹ãããã€ãèšèŒãããŠããŸãã å³ 3: CMMC è©äŸ¡ã®ã¹ã³ãŒãã«äœãå«ããã¹ãããæ±ºå®ããããšã¯ãç£æ»ã®ã³ã¹ããšæéãããã³ã¹ã³ãŒããšãµãŒãã¹ãæ¡å€§ããæè»æ§ã«åœ±é¿ãäžããå¯èœæ§ããããŸã å
æ¬çãªç£æ»èšŒæ ãåéãã ç£æ»äººã¯èšŒæ ã瀺ãããããšãæåŸ
ããŸããããããè匱æ§ãèšå®ãã¢ã¯ã»ã¹ã³ã³ãããŒã«ãªã©ã«ããã£ãŠé©åãªææç©ããŸãšããããšã¯å°é£ãªå ŽåããããŸãã Wiz ã¯ãAWS ç°å¢ãç¶ç¶çã«ç£èŠããé¢é£æ§ã®ããæ€åºçµæã衚é¢åãããããšã§ããã®ããã»ã¹ãèªååããŸããWiz ã¯ã Amazon Bedrock ã AWS Certificate Manager (ACM) ã AWS CloudTrail ã AWS Key Management Service (AWS KMS) ã AWS Lambda ã AWS Network Firewall ã Amazon OpenSearch Service ã AWS Secrets Manager ãªã©ã 倿°ã® AWS ã®ãµãŒãã¹ ãæ€æ»ããŸããWiz ã¯ãæåå
¥åãå¿
èŠãšãããç£æ»èŠä»¶ããµããŒãããããã¥ã¡ã³ããè¿
éã«æäŸããããã«ãã«ã¹ã¿ãã€ãºå¯èœãªã¬ããŒããçæã§ããŸãã æ¬¡ã®ç»åã¯ãæ€åºçµæãã³ã³ãã©ã€ã¢ã³ã¹ãã€ã³ãã³ããªã¬ããŒãã瀺ã Wiz Cloud-Native Application Protection Platform (CNAPP) ã¬ããŒããŠãŒã¶ãŒã€ã³ã¿ãŒãã§ã€ã¹ã®ã¹ã¯ãªãŒã³ã·ã§ããã§ããåã¬ããŒãã«ããŽãªã®äžã«ã¯ããããã¯ãŒã¯é²åºãè匱æ§ãããŒã¿æ€åºçµæãã³ã³ãã©ã€ã¢ã³ã¹è©äŸ¡ãã³ã³ãã©ã€ã¢ã³ã¹ã®ããã®è匱æ§ãããŒã¿ã¹ãã¢ãã¯ã©ãŠããªãœãŒã¹ã€ã³ãã³ããªãªã©ãã¬ããŒããµãã«ããŽãªã®ãªãã·ã§ã³ããããŸãã å³ 4: Wiz ã¯ãCMMC ç£æ»ããµããŒãããããã«å¿
èŠãªæ
å ±ãè¿
éã«ãšã¯ã¹ããŒãããããã®ãã«ã¹ã¿ãã€ãºå¯èœãªãªãã·ã§ã³ãåããããã€ãã®ããã«äœ¿ããã¬ããŒããæäŸããŸã ç¶ç¶çãªç£èŠããã»ã¹ãè匱æ§ãšãªã¹ã¯ææšã®è¿
éãªç¹å®ããã¹ããã©ã¯ãã£ã¹ãšæè¡çãã³ãããŒã¯ãžã®æºæ ãããŒã¹ã©ã€ã³ããã®éžè±ãæ€åºããããšãã®ã¢ã©ãŒãã®èªååã®çµã¿åããã¯ãã¹ãŠãçµç¹ã NIST SP 800-171r2 ãžã®ã³ã³ãã©ã€ã¢ã³ã¹ãè¿
éã«ç€ºãã®ã«åœ¹ç«ã¡ãŸããDoD CMMC æçµèŠå 32 CFR Part 170 ã¯ãCUI ããŒã¿ã CMMC ã¬ãã« 2 (Self ããã³ C3PAO) èªèšŒã®ããã«ååã«ä¿è·ãããŠãããã©ãããè©äŸ¡ããããã®æè¡æšæºãšã㊠NIST SP 800-171r2 ãæå®ããŠããŸãã äŸãšããŠãWiz ã«ã¯ã倿°ã®æè¡çãã³ãããŒã¯ã«å¯Ÿããããã«äœ¿ããèªåè©äŸ¡ãä»å±ããŠããŸããããã«ã¯ãCenter for Internet Security (CIS) ãã¬ãŒã ã¯ãŒã¯ãš Defense Information Systems Agency (DISA) Security Technical Implementation Guides (STIGs) ãå«ãŸããŸãããããã®èªåè©äŸ¡ã¯ããµã€ããŒã»ãã¥ãªãã£ã®è
åšããã·ã¹ãã ãä¿è·ããããã®åŒ·åèŠä»¶ãæºãããŠãããã©ãããç¹å®ããããã«èšèšãããŠããŸããããã«ãããçµç¹ã¯ NIST SP 800-171r2 ã® Configuration Management ã³ã³ãããŒã«ãã¡ããªãŒå
ã®å€ãã®ã³ã³ãããŒã«ãè¿
éã«æºããããšãã§ããŸãã CMMC ã¯ã©ãŠããµãŒãã¹ãããã€ã㌠(CSP) èŠä»¶ãæºããããããè¶
ããããã«ãAWS ãš Wiz ã¯ã©ã¡ãã FedRAMP High èªå¯ç°å¢ãæäŸããŠããŸãã Wiz for Government ãš AWS GovCloud (US) ã¯ãITARãFISMAãHIPAAãFedRAMP ãå«ãå€ãã®èŠå¶ãã¬ãŒã ã¯ãŒã¯ãæºãããããããè¶
ããããã«æ§ç¯ãããŠããŸãããããã® FedRAMP High èªå¯ã¯ããããã®ç°å¢ã®ã»ãã¥ãªãã£ã蚌æããããã®è¿œå ããã¥ã¡ã³ããåæžãŸãã¯å
é€ããããšã§ãCMMC ãå«ãç£æ»ãç°¡çŽ åããã®ã«åœ¹ç«ã¡ãŸãã Wiz for Government ãæ¯æŽã§ãã CMMC ããã³ NIST SP 800-171r2 ã³ã³ãããŒã«ã®è©³çްã«ã€ããŠã¯ãWiz for CMMC Certification ããŒã¿ã·ãŒããåç
§ããŠãã ããã CMMC ã®éæ: æšæºãã»ãã¥ãªãã£ã«å€ãã CMMC ãžã®æºåã¯ãDoD ãšå¥çŽãŸãã¯ãµãã³ã³ãã©ã¯ããçµã¶å€ãã®çµç¹ã«ãšã£ãŠããã¯ãä»»æã§ã¯ãããŸãããããããé·ãå°é£ãªããã»ã¹ã§ããå¿
èŠããããŸããã AWS ã®å
ç¢ãªä¿è·ãš Wiz ã® CNAPP ã®å¯èŠæ§ãçµã¿åãããããšã§ããããªãã¯ã»ã¯ã¿ãŒããŒã ã¯ã¹ã³ãŒãã³ã°ãç°¡çŽ åããæ€åºãå éããèªä¿¡ãæã£ãŠç£æ»æºåæ
å¢ã«ç§»è¡ã§ããŸãã çµç¹ã AWS GovCloud (US) ã§æ§ç¯ããŠããå Žåã§ããæ¢åã®ç°å¢ãæ¡åŒµããŠããå Žåã§ããWiz 㯠CUI ãååšããå Žæãç¹å®ããã»ãã¥ãªãã£ã³ã³ãããŒã«ãæ€èšŒããããŒã¿ã§ã³ã³ãã©ã€ã¢ã³ã¹å¢çããµããŒãããããšã§ãæåã§çæããã³ä¿å®ãããã¹ãã¬ããã·ãŒãã®å¿
èŠæ§ãæé€ããããšããããããŸãã Wiz ã® FedRAMP High èªå¯ã AWS ã®ã客æ§ã®ã»ãã¥ãªãã£ãã©ã®ããã«åŒ·åãããã«ã€ããŠãèªã¿ãã ãã ã CMMC ãžã®åãçµã¿ãå éããæºåã¯ã§ããŠããŸãã? ä»ãã AWS Global Security & Compliance Acceleration (GSCA) ãš Wiz ã®äœ¿çšãéå§ããæ¹æ³ã®è©³çް ãã芧ãã ããã èè
ã«ã€ã㊠Varun Jasti Varun Jasti 㯠AWS ã®ãœãªã¥ãŒã·ã§ã³ã¢ãŒããã¯ãã§ãããAWS ããŒãããŒãšååããŠãã³ã³ãã©ã€ã¢ã³ã¹åºæºãæºãããããªãã¯ã»ã¯ã¿ãŒã®ãŠãŒã¹ã±ãŒã¹åãã®äººå·¥ç¥èœãœãªã¥ãŒã·ã§ã³ãèšèšããã³ã¹ã±ãŒã«ããŠããŸããã³ã³ãã¥ãŒã¿ãµã€ãšã³ã¹ã®ããã¯ã°ã©ãŠã³ããæã€åœŒã®æ¥åã¯ã䞻㫠LLM ã®ãã¬ãŒãã³ã°/æšè«ãšã³ã³ãã¥ãŒã¿ããžã§ã³ã«çŠç¹ãåœãŠãå¹
åºã ML ãŠãŒã¹ã±ãŒã¹ãã«ããŒããŠããŸããäœæã«ã¯ãããã¹ãæ°Žæ³³ãæ¥œããã§ããŸãã Bryan Rosensteel Bryan Rosensteel 㯠Wiz ã®ãããªãã¯ã»ã¯ã¿ãŒãããã¯ãããŒã±ãã£ã³ã°è²¬ä»»è
ã§ãã圌㯠20 幎以äžã®ãããªãã¯ã»ã¯ã¿ãŒã§ã®çµéšãæã£ãŠããŸãã圌ã¯ãICAM ãå«ãå€ãã®ãµã€ããŒã»ãã¥ãªãã£ã€ãã·ã¢ãã£ãã«ã€ããŠç±³åœé£éŠæ¿åºã«å©èšããNIST 1800 ã·ãªãŒãºã®ç¹å¥åè¡ç©ã«ã€ãªããè€æ°ã® NCCoE ãããžã§ã¯ãã«åãçµã¿ãATARC ãªã©ã®éå¶å©çµç¹ã§ã¯ãŒãã³ã°ã°ã«ãŒãã®åœ¢æãšéå¶ãæ¯æŽããè€æ°ã®æ¿åº IT ã¢ããã€ãŒãŒã·ã§ã³ãããžã§ã¯ãã®èšèšãšå®è£
ãæ¯æŽããŠããŸããã Greg Carpenter Greg Carpenter 㯠AWS Global Security & Compliance Acceleration Partner Team ã®ã·ãã¢ã»ãã¥ãªãã£ããŒãããŒã¹ãã©ããžã¹ãã§ãããããŒãããŒãšã客æ§ãã»ãã¥ãªãã£ãšèªå¯ã®ããŒãºãæºãããããæ¯æŽããŠããŸããããã«ã¯ãããŒã«ãšã³ã³ãããŒã«ã®ã¢ãŒããã¯ããèšå®ããããã€ãçµ±åãå«ãŸããŸãããã£ãªã¢ãéããŠãGreg ã¯ããŒãããŒããã³ã客æ§ãšã®ã³ãã¥ãã±ãŒã·ã§ã³ãã»ãã¥ãªãã£ãšã³ã³ãã©ã€ã¢ã³ã¹ã®ãµããŒãã§åªããå®çžŸãäžããŠããŸãããAWS ã«å
¥ç€ŸããåãGreg 㯠CIS ã§ 4 幎éå€åããã¡ã³ããŒãšéã¡ã³ããŒãç¬èªã®ãµã€ããŒã»ãã¥ãªãã£æŠç¥ãé²ããéã«ãã°ããŒãã«ã³ãã¥ããã£åãã®ã¯ã©ãŠããµã€ããŒã»ãã¥ãªãã£è£œåãšæŠç¥ã«çŠç¹ãåœãŠãŠæ¯æŽããŸãããGreg ã¯ãCIS BenchmarksãCIS Controls v8 Cloud Companion Guideãããã³ææ°çã® CIS Critical Security Controls ã«ãè²¢ç®ããŠããŸããã¯ã©ãŠãã«é ãæ©ãŸããŠããªããšãã¯ãå®¶æãšã®æéãããŒã¬ãŒã«ä¹ãæéãã¢ã€ã¹ããã±ãŒãé£ããããŠã³ãã³ãã€ã¯ã楜ããã§ããŸãã Greg Hewitt Greg Hewitt 㯠Wiz ã®ã°ããŒãã«ãããªãã¯ã»ã¯ã¿ãŒããžãã¹ã«ããã AWS GTM æŠç¥ãäž»å°ããŠãããæ¿åºæ©é¢ãèŠå¶ç£æ¥ãã¯ã©ãŠãå°å
¥ãå®å
šã«å éã§ããããæ¯æŽããããšã«æ³šåããŠããŸããSplunk ãš Second Front Systems ã§ã®ãªãŒããŒã·ããã®åœ¹å²ãçµãŠãGreg ã¯ã¯ã©ãŠãã»ãã¥ãªãã£ãšé²è¡ã¢ããã€ãŒãŒã·ã§ã³ã«ãããã€ãããŒã·ã§ã³ã®æšé²ã®äžå¿ã«ããŸããã圌㯠AWS ãšç·å¯ã«é£æºããŠãFedRAMPãCMMCãITAR ã³ã³ãã©ã€ã¢ã³ã¹ãå¯èœã«ããå
±åãœãªã¥ãŒã·ã§ã³ãæäŸããŠãããæ¿åºçµç¹ã«ãšã£ãŠã¯ã©ãŠããããå®å
šã§ã¢ã¯ã»ã¹ãããããã®ã«ããããšã§ãããã·ã§ã³ã¬ãžãªãšã³ã¹ãåäžãããããšã«æ
ç±ã泚ãã§ããŸãã ãã®ããã°ã¯ WWPS Proposal Writer äžææå¹žã翻蚳ããŸããã
æ¬çš¿ã¯ãæ¥æ¬ååŒæã°ã«ãŒãã® SCRIPTS Asia 瀟ã«ãããçæ AI ãæŽ»çš ããæ±ºç®èª¬æäŒçã¹ã¯ãªããã®èªå翻蚳ãã«ã€ããŠããµãŒãã¹éçºããªãŒãããã æŸç° æ¬æ²» æ§ãéªæ°ž ã¹ãã¥ã¢ãŒã æ§ãã¢ãŒããã¯ãã£ã³ã°ãšéçºããªãŒãããã å€ªå æºè²Ž æ§ã«å¯çš¿ããã ããŸããã ã€ã³ãããã¯ã·ã§ã³ SCRIPTS Asia ã¯ãäžå ŽäŒæ¥ã®æ±ºç®èª¬æäŒã IR ã€ãã³ãã®å
容ãããã¹ãåããæ©é¢æè³å®¶ãæ
å ±ãã³ããŒã«é
ä¿¡ããŠããŸããåŸæ¥ã¯ãæ¥æ¬èªã®æžãèµ·ããããã¹ãããè±èªç¿»èš³ãææç©ã®å質確èªãŸã§ããã¹ãŠäººæã§å¯Ÿå¿ããŠããŸãããããããSCRIPTS Asia ãã«ããŒããäžå ŽäŒæ¥ã®å
šã€ãã³ããè±èš³ããã«ã¯æéåã³è²»çšã®äž¡é¢ã§å€§ããªèª²é¡ããããŸããã ä»åãAWS ã® Amazon Bedrock ãæŽ»çšããçæ AI 翻蚳ãå°å
¥ããæ¥åå
šäœã®èªååãšå質åäžãå®çŸããŸããã SCRIPTS Asia ç€Ÿã®æŠèŠ SCRIPTS Asia 㯠JPX ç·ç ã®åäŒç€Ÿã§ããäžå ŽäŒæ¥ã®æ±ºç®èª¬æäŒã IR ã€ãã³ãã®é³å£°ãããã¹ãåãã話è
æ
å ±ãªã©ã®ã€ãã³ã詳现ãããŒã¿ããŒã¹åããŠãæ©é¢æè³å®¶ãéèæ©é¢ãæ
å ±ãã³ããŒã«æäŸããŠããŸãã䜵ããŠãã€ãã³ãããŒã¿ã®è±èªç¿»èš³ãè¡ã£ãŠãããã°ããŒãã«æè³å®¶ã®æè³å€æãåæã«æŽ»çšãããŠããŸãããã®ãµãŒãã¹ã¯ãåãªãæè¡å°å
¥ãæ©æ¢°ç¿»èš³ã§ã¯ãªããé·å¹Žã®æ¥çç¥èãšç¿»èš³ããŠããŠãèåããç¬èªã®äœå¶ã«ãã£ãŠæ¯ããããŠããŸããããã«ã人åãªãã¬ãŒã·ã§ã³ã«ããã©ã¹ãã¯ã³ãã€ã«ã®å質ä¿èšŒãçµã¿èŸŒãããšã§ãé«å質ãªç¿»èš³ãããŒã¿å質ã®äž¡ç«ãå®çŸããŠããŸãã èª²é¡ ã€ãã³ãããŒã¿ã®è±èš³ã«ããããSCRIPTS Asia ãçŽé¢ããŠããäž»ãªèª²é¡ã¯æ¬¡ã®ãšããã§ãã 翻蚳ã®äœæ¥éã¯èšå€§ã§ãã³ã¹ãè² æ
ã倧ãã ç¹å¿æã«ã¯ç¿»èš³äœæ¥ãè¡ã倧éã®äººå¡ãå¿
èŠïŒå£ç¯èŠå ãæ¿ããã人å¡ç¢ºä¿ãå°é£ïŒ äŒç€Ÿåºæã®å°éçšèª ãæ¥ççšèªã«å¯Ÿå¿ããé«ã粟床ã§ã®ç¿»èš³ãæ±ãããã ãœãªã¥ãŒã·ã§ã³ Amazon Bedrock ã®å°å
¥ Amazon Bedrock ãæŽ»çšããæ¥æ¬èªã¹ã¯ãªããã®è±èªç¿»èš³ããææç©åºåãŸã§ãèªååããŸãããå°å
¥ã«ããã£ãŠã¯ãBERT ã BLEU ã¹ã³ã¢ãªã©ã®è©äŸ¡ææšãçšããŠãåŸæ¥ã®äººæã§ã®ç¿»èš³çµæãçšãã粟床æ¯èŒãè¡ããæé©ãªã¢ãã«ãéžå®ããŸããã ãã¬ããžã®èå éå»ã®ç¿»èš³å±¥æŽãèŸæžã蚌åžçšèªéãšãã£ã圢åŒç¥ã«å ããç¿»èš³äœæ¥ã®ã¬ãã¥ãŒã¢ãŒã«ãããã£ãŒãããã¯è³æçãããããã¯ã·ã§ã³æ
åœè
ãæã€æé»ç¥ã«ã€ããŠãçæ AI ã§æŽçããŸãã ã ãã®æŽçããç¥èŠãããã³ãããèŸæžæ
å ±çã«åã蟌ãããšã§ãåŸæ¥ã® SCRIPTS Asia ã®ã¹ã¿ã€ã«ãç¶æãã€ã€ãé«å質ãªç¿»èš³ãå®çŸã§ããŸããã æè¡ç詳现 AWS ãµãŒãã¹ã®æŽ»çš Amazon Bedrock ïŒ Anthropic Claude Sonnet AWS Fargate ïŒ Amazon Bedrock ãšé£æºããè±èš³åŠçãæŽåœ¢åŠç Amazon EventBridge ïŒ AWS Lambda ïŒ Amazon SQS ã§ã¯ã©ãŒã¿ãè¶
ããªãããã« å¶åŸ¡ Amazon DynamoDB ïŒéå»ã®ç¿»èš³æ
å ± ãåèªæ
å ±ã®ä¿æ ããã³ãããšã³ãžãã¢ãªã³ã°ãšãã£ã³ã¯åå² é·æç¿»èš³ã§ã¯ãããã³ããã® æç€ºãåæ ããã«ãããæ°å衚çŸã®ç²ŸåºŠãäœäžããåŸåããããŸããã粟床åäžã®ãããè€æ°ã®çæ AI ã¢ãã«ãæ¯èŒããæç« ã现ãã 1 è¡ãã€ã«åå²ïŒãã£ã³ãã³ã°ïŒããŠè±èš³ããããšã§ãããã³ããã®æå³ãæ£ç¢ºã«çè§£ãããããã«å·¥å€«ããŸããããªããå
šäœçãªæç« ãšããŠã®é©åæ§ãä¿æããããã«ãååŸã®æç« ã«ã€ããŠãåèããŠèªã¿èŸŒãŸããããšã§ææãä¿ãããããã«ããŠãããŸãã ã³ã¹ããšç²ŸåºŠã®ãã©ã³ã¹ ããã³ããã®è§£é粟床åäžã®ããã«ãã£ã³ã¯åå²ã宿œããããšã«ãããçæ AI ãžã®å
¥åºååæ°ãå¢å€§ããç¿»èš³èŸæžçã®ãã¬ããžãåç
§ãã翻蚳ã«ä¿ãåŠçæéãšè²»çšé¢ã®èª²é¡ãæµ®äžããŸããããã¡ãã¯åèªåå²ãèžãŸãã€ã€èŸæžæ
å ±ã®çµã¿èŸŒã¿æ¹åŒãèŠçŽãããšã§ãããã³ããã®ããªã¥ãŒã ãå§çž®ããåŠçæéãšè²»çšã蚱容ç¯å²ã«æã蟌ã¿ãŸããã çæ AI ãæèããå¹ççãªéçšèšèš çæAIã«ãã翻蚳ãé£ããã誀蚳ãªã¹ã¯ãé«ãã±ãŒã¹ïŒé³å£°ãäžæçãªåæããããæãšããŠæç«ããªãå Žåãªã©ïŒã«ã€ããŠã¯ããããŠèªå翻蚳ãè¡ããã«ãšã©ãŒãšããŠåŠçãæ¢ãã人æã§ç¿»èš³ãããããŒã«åããŠããŸãã ããããããšã§ããèŠãç®äžã¯èš³ãããŠãããã®ã®ãæãããªèª€èš³ãããã®ãŸãŸåºããŠããŸãâã¯ãªãã£ã«ã«ãšã©ãŒâãæå°åããè±èªèªè
ã誀ã£ãçè§£ããããªã¹ã¯ãåé¿ããŠããŸãã ãã®ãããªç¿»èš³å°é£ã±ãŒã¹ã¯å
šäœã® 1 ã 3 ïŒ
çšåºŠã«åãŸãããããããããâæ¢ããã¹ãæ¡ä»¶âãšããŠå®çŸ©ããŠããã以å€ã®ç¿»èš³ã¯èªååŠçã§åããèšèšãšããŠãããHuman-in-the-loopïŒäººæãã§ãã¯ïŒãæå°éã«æãã€ã€ãå¿
èŠãªéšåã«ã¯ç¢ºå®ã«äººã®ç®ãå
¥ããããšã§ãå¹çãšå質ã®äž¡ç«ãå®çŸããŠããŸãã å¹æã»ææ 翻蚳å質ã®å€§å¹
åäž SCRIPTS Asia 瀟ã®ç¿»èš³æèè
ã«ããçžå¯Ÿçãªè©äŸ¡ã§ãåçš®ãã¥ãŒãã³ã°åŸã®æçµçãªå質㯠90 ç¹ä»¥äžãéæããåçŽãª AI ã®äžæ¬ç¿»èš³ïŒ 45 ïœ 50 ç¹è©äŸ¡ïŒãã倧å¹
ã«æ¹åããŸããããã®å質ã¯ãçæAIã®æ§èœã ãã§ãªããå°éç¥èãšäººåã«ããå質ä¿èšŒã®ç¥èŠã®çµã¿åããã«ãã£ãŠæ¯ããããŠããŸãã äœæ¥å¹çã®æ¹åãšã³ã¹ãåæž çæ AI ãå©çšãã翻蚳ã«ããã人æã§ã®ææç©äœæãšæ¯èŒããŠãæéå¹çã¯æŠã 10 å以äžãè²»çšå¹çã¯æŠç®ã§æ°ååãšãªãããããã¯ã·ã§ã³ã¢ãŠãããããå®çŸããŸããã ãã®ææã«ãããæ³šç®åºŠãäœãã€ãã³ããªã©åŸæ¥ã¯ã³ã¹ãé¢ã®åé¡ã§è±æç¿»èš³ã宿œåºæ¥ãªãã£ãã€ãã³ãã«ã€ããŠãè±æã¹ã¯ãªãããäœæãããæ¥æ¬èªãšè±èªã«å·®ãç¡ãç°å¢ãæŽããããšãã§ããŸãããçµæãšããŠãSCRIPTS Asia ã®å質ã確ä¿ããè±æå¯Ÿå¿ã®ã€ãã³ãæ°ã倧å¹
ã«å¢å ããããšã§ãã°ããŒãã«ãªæè³å®¶ããŒãºã«æŽã«å¿ããããããã«ãªããŸããã ä»åŸã®å±æ ãããªãçæAI掻çšã®æ¡å€§ ä»åã®æåçµéšã掻ããã人æã§å®æœããŠããé³å£°ã®æžãèµ·ããæ¥åã«ã€ããŠããçæAIã®é©çšãæ€èšããŠãããŸãã話è
æ
å ±ã®èå¥ãªã©çŸåšã®é«å質ãšè©äŸ¡ããã ããŠããææç©ïŒããã¹ãåã³ããŒã¿æ§é ç¹æ§ïŒãèžãŸããæžãèµ·ãããšãã課é¡ã¯ãããŸããããã®åçµã¿ã«ããããããŸã§äººæäžè¶³ãèŠå ãšããŠãªãŒãã§ããªãã£ãã€ãã³ãã«ã€ããŠã察å¿å¯èœãªç¯å²ãå¢ããããŒã¿æ¡å
ãéããŠäžçäžã®åžå Žé¢ä¿è
ã«å¯Ÿããæ°ããªäŸ¡å€åµåºãç®æããŠãããŸãã å·çè
çŽ¹ä» ïŒæŸç° æ¬æ²»ïŒå³ïŒãéªæ°ž ã¹ãã¥ã¢ãŒãïŒå·ŠïŒãå€ªå æºè²ŽïŒäžå€®ïŒïŒ æŸç° æ¬æ²» (SCRIPTS Asia æ ªåŒäŒç€Ÿ ãã¯ãããžãŒéšé·ïŒ(æ ª)JPX ç·ç IT ããžãã¹éš ãããªãã¯ã¯ã©ãŠãåºç€ çµ±æ¬èª²é·) æ±äº¬èšŒåžååŒæã«å
¥æåŸãåžå Žéå¶éšéãçµãŠãæž
ç®æ©é¢ (JSCC) èšç«æããã·ã¹ãã éšéã«åŸäºãæž
ç®ã·ã¹ãã æ§ç¯åŸãSIer åºåã»arrownet æ
åœãçµãŠã2010 幎ããæ ªåŒå£²è²·ã·ã¹ãã arrowhead ã CONNEQTOR çã®ååŒã€ã³ãã©åºç€ãéçºã2024 幎床ãã SCRIPTS Asia 瀟ã·ã¹ãã çµ±æ¬å
Œ JPX ç·ç ãæ
åœ éªæ°ž ã¹ãã¥ã¢ãŒã (æ ªåŒäŒç€Ÿ JPX ç·ç ããã³ãã£ã¢æŠç¥éš Manager) éèãå€äº€ãæ åå¶äœãªã©å€æ§ãªåéã§çµéšãç©ããååŒæå
¥æåŸã¯åºå ±æ¥åã æž
ç®æ©é¢ (JSCC) ã® OTC ããªããã£ãã®æµ·å€ã³ã³ãã©ã€ã¢ã³ã¹ãæ
ãã2025 幎ãã SCRIPTS Asia 瀟㮠IT ãµããŒãããã³ JPX ç·ç ã®ããŒã¿ãµãŒãã¹å¶æ¥ãæ
åœ å€ªå æºè²Ž (æ ªåŒäŒç€Ÿ JPX ç·ç IT ããžãã¹éš JPX çæ AI ãããžã§ã¯ã çµ±æ¬èª²é·) ååŒæå
¥æåŸã10幎以äžã«ãããäžå Žå¯©æ»ã»åžå Žç£èŠãªã©ã®äžæ žæ¥åãæ
ãã2019 幎㫠IT éšéãžç°åã2023 幎ãã JPX ã°ã«ãŒãã«ããã瀟å
ã»ç€Ÿå€åãã®çæ AI ãããžã§ã¯ãããªãŒãããæ°åä»¶ã«åã¶çæ AI é¢é£ãµãŒãã¹ã®ãªãªãŒã¹ãäž»å°
ã¿ãªãããããã«ã¡ã¯ããœãªã¥ãŒã·ã§ã³ã¢ãŒããã¯ãã®è¥¿æã§ãã ä»é±ã é±åAWS ããå±ãããŸãã ä»å¹Žãç±æ°ã«å
ãŸãã re:Invent 2025 㯠Dr. ã¯ãŒããŒã®æåŸã®ããŒããŒã ãšåãããŠå¹ãéããŸãããçŸå°ã«è¡ãããæ¹ããæ¥æ¬ãããªã³ã©ã€ã³ã§åå ãããæ¹ããåŸãåŠã³ãæŽçããŠããç¶æ³ããªãšæããŸãããµãŒãã¹ã¢ããããŒãã®çºè¡šã ãã§ãªããäŒå Žã§è¡ãããå€ãã®è¬æŒããã§ã« åç»ãšããŠã¢ããããŒã ãããŠããŸãããã²æ°ã«ãªãè¬æŒãèŠèŽããæ°ããªãæ°ã¥ããæè¡æŽçã«ã圹ç«ãŠãã ããïŒ ããã§ã¯ãå
é±ã®äž»ãªã¢ããããŒãã«ã€ããŠæ¯ãè¿ã£ãŠãããŸãããã 2025幎12æ8æ¥é±ã®äž»èŠãªã¢ããããŒã 12/8(æ) 空éããŒã¿ã®æŽå¯ãå éããã Spatial Data Management on AWS (SDMA) ã®çºè¡š AWS ã空éããŒã¿ç®¡çãœãªã¥ãŒã·ã§ã³ Spatial Data Management on AWS (SDMA) ãçºè¡šããŸãããSDMA ã¯ç©ºéããŒã¿ãå€§èŠæš¡ã«ä¿åããšã³ãªãããæ¥ç¶ããããšãå¯èœã«ãããœãªã¥ãŒã·ã§ã³ã§ãCloudFormation ãå©çšããŠã客æ§ã® AWS ã¢ã«ãŠã³ãã«ãããã€ããŠå©çšããŸããSDMA ã«ããã3D ãå°ç空éããŒã¿ãªã©ã®ãã«ãã¢ãŒãã«ç©ºéããŒã¿ãäžå
åãããã»ãã¥ã¢ãªã¯ã©ãŠãç°å¢ã«ä¿åã§ããŸããããã«ãèªç€Ÿã®ç©ºéããŒã¿ãISV SaaS ã¢ããªã±ãŒã·ã§ã³ãAWS ãµãŒãã¹éã®æ¥ç¶ãå¯èœã«ããã³ã©ãã¬ãŒã·ã§ã³ãããšããŠãæ©èœããŸãããŸããèªåçæããããã¡ã€ã«ãã¬ãã¥ãŒæ©èœã«ããã倧容éãã¡ã€ã«ãããŠã³ããŒãããã«ããŒã¿ã衚瀺ããã³æ€èšŒãå¯èœã§ããæ±äº¬ãªãŒãžã§ã³ãå«ã 9 ãªãŒãžã§ã³ã§å©çšå¯èœã§ãã詳现㯠ãã¡ãããåç
§ãã ããã Amazon Quick Suite ã§ Quick Research ãš Quick Flows ãçµ±åããã¬ããŒãçæã®èªåå Amazon Quick Suite ã§ Quick Research ãš Quick Flows ãçµ±åãããèªååã¯ãŒã¯ãããŒã®äžã§ãªãµãŒãã¬ããŒããçæã§ããããã«ãªããŸããããããŸã§æåã§è¡ã£ãŠããã Quick Research ã®äœæ¥ããã¹ã±ãžã¥ãŒã«å®è¡ãä»ã·ã¹ãã 飿ºã§èªååå¯èœã§ããäŸãã°å¶æ¥ããŒã ã®é¡§å®¢åæã¬ããŒãã宿çæããçµæã Salesforce ã«èªååæ ãããšãã£ã掻çšãå®çŸããŸããããŒãžãã¢åéšããªã¬ãŽã³ãã·ãããŒãã¢ã€ã«ã©ã³ããªãŒãžã§ã³ã§å©çšå¯èœã§ãã詳现㯠ãã¡ãã®ããã¥ã¡ã³ãããåç
§ãã ããã 12/9(ç«) Amazon GameLift Servers ã AI ãæŽ»çšãããµããŒãã§ã²ãŒã éçºè
åã AWS ã³ã³ãœãŒã«ã匷å Amazon GameLift Servers ã« Amazon Q Developer ãæŽ»çšãã AI ã¢ã·ã¹ã¿ã³ã¹æ©èœã远å ãããŸãããã²ãŒã éçºè
㯠AWS ã³ã³ãœãŒã«å
ã§ããµãŒããŒçµ±åãããªãŒãèšå®ãããã©ãŒãã³ã¹æé©åã«é¢ãã AI ã«ããå°éçãªã¬ã€ãã³ã¹ãåããããŸããåŸæ¥ã¯è€éãªèšå®ããã©ãã«ã·ã¥ãŒãã£ã³ã°ã«æéãããã£ãŠããŸãããããã®æ©èœã«ããã³ã¹ãåæžãšãã¬ã€ã€ãŒäœéšåäžãåæã«å®çŸã§ããŸãã詳现㯠ãã¡ãã®ããã¥ã¡ã³ãããåç
§ãã ããã Amazon RDS ãš Aurora ãèªåããã¯ã¢ããã®ãªãœãŒã¹ã¿ã°ä»ãã«å¯Ÿå¿ Amazon RDS ãš Aurora ã§ãèªåããã¯ã¢ããã«å¯ŸãããªãœãŒã¹ã¿ã®ã³ã°æ©èœã远å ãããŸããããããŸã§èªåããã¯ã¢ããæ©èœãå©çšããéã芪㮠DB ã€ã³ã¹ã¿ã³ã¹ãã¯ã©ã¹ã¿ãŒãšåäžã®ã¿ã°ããããã¯ã¢ããã«èªåä»äžãããŠããŸããããä»åããç¬ç«ããŠã¿ã°ãèšå®ã§ããããã«ãªããŸãããããã«ãããã¢ããªã±ãŒã·ã§ã³å¥ããããžã§ã¯ãå¥ã«ããã¯ã¢ããã®ã¢ã¯ã»ã¹å¶åŸ¡ãã³ã¹ã远跡ãå¯èœãšãªãããã现ããªãªãœãŒã¹ç®¡çãå®çŸã§ããŸãã AWS Partner Central ã«æ¡ä»¶èŠæš¡ã®ç®å®æ©èœã远å AWS Partner Central ã« AI ãæŽ»çšãã deal sizing æ©èœã远å ãããŸããããã®æ©èœã«ãããAWS ããŒãããŒã¯æ¡ä»¶ã®èŠæš¡èŠç©ããã AWS ãµãŒãã¹æšå¥šãèªååã§ããŸããAWS Pricing Calculator ã® URL ãã€ã³ããŒãããããšã§ãæåã§ã®åå
¥åäœæ¥ãäžèŠã«ãªããäŸ¡æ ŒæŠç¥ã®æé©åã Migration Acceleration Program (MAP) ã®é©æ Œæ§åæãªã©ãæäŸãããŸããæ¡ä»¶ç®¡çæ¥åã倧å¹
ã«å¹çåã§ããããã°ã©ã ç³è«ã®ããã»ã¹ã®è¿
éåã«ãã€ãªãããŸãã詳现㯠ãã¡ãã®ããã¥ã¡ã³ãããåç
§ãã ããã 12/10(æ°Ž) AWS Support Center Console ã§ãµããŒãã±ãŒã¹ã®ãã©ãã«ã·ã¥ãŒãã£ã³ã°çšç»é¢å
±æããµããŒã AWS Support Center Console ã«ã¹ã¯ãªãŒã³å
±ææ©èœã远å ãããŸããããããŸã§ãµããŒããšã®ããåãã¯é»è©±ããã£ããã®ã¿ã§ããããä»åã®ã¢ããããŒãã§ããŒãã£ã«ããŒãã£ã³ã°äžã«ã¹ã¯ãªãŒã³ãå
±æã§ããããã«ãªããŸãããã¢ã¯ãã£ããªãã£ãããé話äžã«ã¯ã³ã¯ãªãã¯ã§ããŒãã£ã³ã°ã«åå ã§ããç»é¢ãèŠããªããåé¡ã説æã§ãããããããè¿
éã§å¹æçãªãã©ãã«ã·ã¥ãŒãã£ã³ã°ãå¯èœã«ãªããŸãã詳现㯠ãã¡ãã®ããã¥ã¡ã³ãããåç
§ãã ããã Amazon EC2 C8gb ã€ã³ã¹ã¿ã³ã¹ã®äžè¬æäŸéå§ Amazon EC2 C8gb ã€ã³ã¹ã¿ã³ã¹ã®äžè¬æäŸãéå§ãããŸãããAWS Graviton4 ããã»ããµæèŒã«ãããåŸæ¥ã® Graviton3 æ¯èŒã§æå€§ 30% ã®ããã©ãŒãã³ã¹åäžãå®çŸããŸããæå€§ 150 Gbps ã® EBS 垯åå¹
ãæäŸãã髿§èœãã¡ã€ã«ã·ã¹ãã ãªã©ã®å€§å®¹éããŒã¿åŠçã¯ãŒã¯ããŒãã§ããé«ãã¹ã«ãŒããããå®çŸã§ããŸããæå€§ 24xlarge ãµã€ãºãŸã§å¯Ÿå¿ãã192 GiB ã¡ã¢ãªãš 200 Gbps ãããã¯ãŒã¯åž¯åå¹
ãæäŸããŸããçŸåšããŒãžãã¢åéšãªãŒãžã§ã³ãšãªã¬ãŽã³ãªãŒãžã§ã³ã§å©çšå¯èœã§ãã Amazon ECS ã AWS Fargate ã§ã«ã¹ã¿ã ã³ã³ãã忢ã·ã°ãã«ããµããŒã Amazon ECS ã AWS Fargate ã§ã«ã¹ã¿ã ã³ã³ãã忢ã·ã°ãã«ã«å¯Ÿå¿ããŸãããåŸæ¥ã¯åŒ·å¶çã« SIGTERM ã·ã°ãã«ãéä¿¡ãããŠããŸããããä»åãã Docker ã€ã¡ãŒãžã® STOPSIGNAL èšå®ãå°éããããã«ãªããŸããããã«ãã SIGQUIT ã SIGINT ã䜿ãã¢ããªã±ãŒã·ã§ã³ãé©åã«ã°ã¬ãŒã¹ãã«ã·ã£ããããŠã³ã§ããŸããããŒã¿ããŒã¹æ¥ç¶ã®æ£åžžåæããã¡ã€ã«ä¿ååŠçãªã©ãçµäºæã®åŠçãéèŠãªã¢ããªã±ãŒã·ã§ã³ã§ç¹ã«å¹æçã§ããå
šãªãŒãžã§ã³ã§å©çšå¯èœã§ãã詳现㯠ãã¡ãã®ããã¥ã¡ã³ãããåç
§ãã ããã 12/11(æš) Amazon Aurora PostgreSQL ã Kiro powers ãšã®çµ±åããµããŒã Amazon Aurora PostgreSQL ã Kiro powers ãšã®çµ±åãéå§ããŸããããã®çµ±åã«ãããAI ãšãŒãžã§ã³ãã®æ¯æŽãåããªãã Aurora PostgreSQL ã䜿ã£ãã¢ããªã±ãŒã·ã§ã³éçºãå¯èœã«ãªããŸããKiro powers ã¯äºåã«ããã±ãŒãžåããã MCP ãµãŒããŒãæäŸããããŒã¿ããŒã¹ã®äœæãã¹ããŒãèšèšãã¯ãšãªæé©åãªã©ã®äœæ¥ã§é©åãªã¬ã€ãã³ã¹ãèªåçã«æäŸããŸããåŸæ¥ã¯æåã§è¡ã£ãŠããããŒã¿ããŒã¹æäœãèšèšå€æã AI ããµããŒãããããšã§ãéçºå¹çã倧å¹
ã«åäžããŸãã詳现㯠ãã¡ãã® Blog èšäºããåç
§ãã ããã Amazon Cognito ã¢ã€ãã³ãã£ãã£ããŒã«ã AWS PrivateLink ã«ãããã©ã€ããŒãæ¥ç¶ããµããŒã Amazon Cognito identity pools ã AWS PrivateLink ã«å¯Ÿå¿ããŸããããããŸã§èªèšŒãã©ãã£ãã¯ã¯ãããªãã¯ã€ã³ã¿ãŒãããçµç±ã§ããæµããŸããã§ããããVPC ãšã®ãã©ã€ããŒãæ¥ç¶ãå¯èœã«ãªããã»ãã¥ãªãã£ã倧å¹
ã«åäžããŸããäŒæ¥ã®æ©å¯ããŒã¿ãæ±ãã¢ããªã±ãŒã·ã§ã³ã§ãèªèšŒåŠçãå®å
šã«ãã©ã€ããŒããããã¯ãŒã¯å
ã§å®çµã§ãããããã³ã³ãã©ã€ã¢ã³ã¹èŠä»¶ã®å³ããæ¥çã§ãå®å¿ããŠå©çšã§ããŸãã詳现㯠ãã¡ãã®ããã¥ã¡ã³ãããåç
§ãã ããã Amazon Aurora DSQL ãæ°ç§ã§ã®ã¯ã©ã¹ã¿ãŒäœæå¯èœã« Amazon Aurora DSQL ã§ã¯ã©ã¹ã¿ãŒäœæãæ°ç§ã§ã§ããããã«ãªããŸãããåŸæ¥ã¯æ°åããã£ãŠããäœæ¥ãåçã«é«éåãããå³åº§ã«å©çšã§ããŸããAWS ã³ã³ãœãŒã«ã®çµ±åã¯ãšãªãšãã£ã¿ãŒã䜿ãã°ãå€éšã¯ã©ã€ã¢ã³ãã®èšå®ãªãã§ããã«éçºãéå§ã§ããAI æ¯æŽããŒã«ãšã®é£æºãå¯èœã§ãã詳现㯠ãã¡ãã®ããã¥ã¡ã³ãããåç
§ãã ããã 12/12(é) AWS Shield ãããã¯ãŒã¯ã»ãã¥ãªãã£ãã£ã¬ã¯ã¿ãŒããã«ãã¢ã«ãŠã³ãåæããµããŒã AWS Shield ã®ãããã¯ãŒã¯ã»ãã¥ãªãã£ãã£ã¬ã¯ã¿ãŒããã«ãã¢ã«ãŠã³ãåæã«å¯Ÿå¿ããŸãããåŸæ¥ã¯åäžã¢ã«ãŠã³ãå
ã§ã®ã»ãã¥ãªãã£èšå®ãã§ãã¯ã®ã¿ã§ããããä»åã®ã¢ããããŒãã«ããè€æ°ã® AWS ã¢ã«ãŠã³ããæšªæããŠãããã¯ãŒã¯ã»ãã¥ãªãã£ã®ç¶æ³ãäžå
管çã§ããããã«ãªããŸãããå§ä»»ç®¡çè
ãèšå®ããããšã§çµç¹å
šäœã®ã»ãã¥ãªãã£èšå®äžåãæ€åºããä¿®æ£æé ãæç€ºãããŸããå€§èŠæš¡ãªçµç¹ã§ã¢ã«ãŠã³ã管çãè€éã«ãªããã¡ãªç°å¢ã§ç¹ã«æå¹ã§ãã2025幎12ææç¹ã§ã¯ãŸã Preview æäŸã§ãããä»åã®ã¢ããããŒããšåãããŠã远å ã§ïŒã€ã®ãªãŒãžã§ã³ã«ãããŠãå©çšå¯èœãšãªã£ãŠããŸããå©çšè©³çŽ°ã¯ ãã¡ãã®æŠèŠããŒãžããåç
§ãã ããã AWS DataSync ããªã³ãã¬ãã¹ãã¡ã€ã«è»¢éã®ã¹ã±ãŒã©ããªãã£ãšããã©ãŒãã³ã¹ãåäž AWS DataSync Enhanced ã¢ãŒãããªã³ãã¬ãã¹ãã¡ã€ã«ãµãŒããŒãš Amazon S3 éã®ããŒã¿è»¢éã«å¯Ÿå¿ããŸãããåŸæ¥ã¯ S3 éãšãã«ãã¯ã©ãŠã転éã®ã¿ã§ããããä»å NFS ã SMB ãã¡ã€ã«ãµãŒããŒããã®è»¢éãå¯èœã«ãªããŸããã䞊ååŠçã«ããé«é転éãå®çŸãããã¡ã€ã«æ°å¶éãæ€å»ãããŠããŸããçæ AI ã®åŠç¿ããŒã¿ã»ããç§»è¡ãããŒã¿ã¬ã€ã¯æ§ç¯ãå€§èŠæš¡ã¢ãŒã«ã€ãç§»è¡ãªã©ã«æŽ»çšã§ããŸãã詳现㯠ãã¡ãã®ããã¥ã¡ã³ãããåç
§ãã ããã ä»å¹Žã®é±åAWS ã¯æ¬¡åãæåŸã§ãïŒ ããã§ã¯ããŸãæ¥é±ïŒ èè
ã«ã€ã㊠西æ å¿ å·±(Tadami Nishimura) / @tdmnishi AWS Japan ã®ãœãªã¥ãŒã·ã§ã³ã¢ãŒããã¯ããšããŠãå°å£²ã»æ¶è²»è²¡æ¥çš®ã®ã客æ§ãæ
åœããŠããŸããããŒã¿ã¬ããã³ã¹ã®èгç¹ãããã客æ§ãããŒã¿æŽ»çšã广çã«è¡ãããããªãã¢ã³ã¹ãã¬ãŒã·ã§ã³ãªã©ãå€ãè¡ã£ãŠããŸãã奜ããªãµãŒãã¹ã¯ Amazon Aurora ãš Amazon DataZone ã§ããè¶£å³ã¯çãã¬ã§ãèªå®
ã«åŸæ©ïŒåã®ãã¬ãŒãã³ã°ã«ãŒã ãæ§ç¯ããŠãæ¥ã
å±ãã§ããŸãã
ãã®èšäºã¯ Migrating from AWS CodeDeploy to Amazon ECS for blue/green deployments (èšäºå
¬éæ¥: 2025 幎 9 æ 16 æ¥) ã翻蚳ãããã®ã§ãã ãã«ãŒ/ã°ãªãŒã³ãããã€ã¯ãåäžç°å¢ã§å®è¡ããŠãã 2 ã€ã®ç°ãªãããŒãžã§ã³ã®ã¢ããªã±ãŒã·ã§ã³éã§ãã©ãã£ãã¯ãåãæ¿ããããšã§ãæ°ãããœãããŠã§ã¢ããªãªãŒã¹ã§ããŸããããã«ãããæ°ããããŒãžã§ã³ã®ã¢ããªã±ãŒã·ã§ã³ã®å®å
šãªãã¹ããä¿é²ããã»ãŒãŒãããŠã³ã¿ã€ã ã§ã®ããŒã«ããã¯æ©èœãæäŸããããšã§ãæ°ãããœãããŠã§ã¢ãªãªãŒã¹ã®ãããã€ã«äŒŽãäžè¬çãªãªã¹ã¯ã軜æžããŸãã æè¿ãŸã§ã Amazon Elastic Container Service (Amazon ECS) ã¯ããã€ãã£ããªãããã€æŠç¥ãšããŠããŒãªã³ã°ã¢ããããŒãã®ã¿ããµããŒãããŠããŸããããã«ãŒ/ã°ãªãŒã³ãããã€ãå®è£
ãããå Žå㯠AWS CodeDeploy ã䜿çšããå¿
èŠããããŸããããæè¿ãªãªãŒã¹ããã ECS ãã«ãŒ/ã°ãªãŒã³ããã〠ã«ãããµããŒããããŸããã ECS ãã«ãŒ/ã°ãªãŒã³ãããã€ã¯ CodeDeploy ãšåæ§ã®æ©èœãæäŸããŸãããå©çšå¯èœãªæ©èœãšãã®å®è£
ã«ã¯ããã€ãã®éãããããŸãããã®èšäºã¯ãçŸåš Amazon ECS ã§ã®ãã«ãŒ/ã°ãªãŒã³ãããã€ã« CodeDeploy ã䜿çšããŠãããæ°ãã Amazon ECS ãã€ãã£ããªãããã€æŠç¥ãžã®ç§»è¡ãæ€èšããŠããã客æ§ã察象ãšããŠããŸãã (1) ç§»è¡ãèšç»ããéã«èæ
®ãã¹ãèŠå (2) CodeDeploy ã®æŠå¿µã ECS ãã«ãŒ/ã°ãªãŒã³ãããã€ã®åçæ©èœã«ãããã³ã°ããããš (3) ç§»è¡æŠç¥ã«ã€ããŠã®ã¬ã€ãã³ã¹ãæäŸããŸãã ç§»è¡ã®èšç» CodeDeploy ãã ECS ãã«ãŒ/ã°ãªãŒã³ãããã€ã«ç§»è¡ããéã¯ãèšç»ããã»ã¹ã®äžéšãšããŠä»¥äžã®ç¹ãèæ
®ããå¿
èŠããããŸãã æ°ããªå¯èœæ§ ïŒ ECS ãã«ãŒ/ã°ãªãŒã³ãããã€ã¯ã CodeDeploy ã§ã¯ãµããŒããããŠããªã倿°ã®ãŠãŒã¹ã±ãŒã¹ãå¯èœã«ããŸããããã«ã¯ä»¥äžãå«ãŸããŸãã ãµãŒãã¹ãã£ã¹ã«ããªãŒãªãã·ã§ã³ïŒCodeDeploy 㯠Elastic Load Balancing (ELB) ã®èåŸã«é
眮ããã ECS ãµãŒãã¹ã®ã¿ããµããŒãããŸãããECS ãã«ãŒ/ã°ãªãŒã³ãããã€ã¯ ELB ãš ECS Service Connect ã®äž¡æ¹ããµããŒãããŸãã ãããã¬ã¹ãµãŒãã¹ãµããŒãïŒECS ãã«ãŒ/ã°ãªãŒã³ãããã€ã¯ããã¥ãŒåŠçãµãŒãã¹ãªã©ããµãŒãã¹å
¬éãäžèŠãªç¶æ³ã§äœ¿çšã§ããŸãã Amazon EBS ãµããŒãïŒECS ãã«ãŒ/ã°ãªãŒã³ãããã€ã¯ãECS ãµãŒãã¹ã®ãããã€æã« Amazon Elastic Block Store (Amazon EBS) ããªã¥ãŒã ã®èšå®ããµããŒãããŸãã è€æ°ã®ã¿ãŒã²ããã°ã«ãŒãïŒECS ãããã€ã³ã³ãããŒã©ãŒã«ããããµãŒãã¹ãè€æ°ã®ã¿ãŒã²ããã°ã«ãŒãã«é¢é£ä»ããããšãã§ããŸããããã¯ãè€æ°ã®ããŒããã©ã³ãµãŒãéããŠåæã«ã¢ã¯ã»ã¹å¯èœã§ããããšãæå³ããŸã (äŸïŒå
éšããã³å€éšãµãŒãã¹å
¬éã®åé¢) ã æè»ãª ALB ãªã¹ããŒèšå®ïŒCodeDeploy ã¯ç°ãªããµãŒãã¹ãæ¬çªããã³ãã¹ããšã³ããã€ã³ãã«å¯ŸããŠå¥ã
ã®ãªã¹ããŒãå¿
èŠã§ããECS ãã«ãŒ/ã°ãªãŒã³ã¯ãªã¹ããŒã«ãŒã«ã¬ãã«ã§åäœããããããã¹ãåãHTTP ããããŒããã¹ãã¡ãœãããã¯ãšãªæååããŸãã¯ãœãŒã¹ IP ã«åºã¥ã é«åºŠãªãªã¯ãšã¹ãã«ãŒãã£ã³ã° ã䜿çšããŠåäžã®ãªã¹ããŒã掻çšã§ããŸããäŸãã°ããã¹ããŒã¹ã«ãŒãã£ã³ã°ã䜿çšããŠè€æ°ã®ãµãŒãã¹ã«å
±éã®ãªã¹ããŒããŒãã䜿çšããã¯ãšãªæååããŒã¹ã«ãŒãã£ã³ã°ã䜿çšã㊠A/B ãã¹ãããµããŒãã§ããŸããåããªã¹ããŒããŒãã§ãã«ãŒ/ã°ãªãŒã³ã®æ¬çªããã³ãã¹ããã©ãã£ãã¯ããµããŒãã§ããŸãã éçšäžã®æ¹åïŒ ECS ãã«ãŒ/ã°ãªãŒã³ãããã€ã¯ã (1) æ¢åã® Amazon ECS æ©èœ (ãµãŒããããã¬ãŒã«ãŒããããã€å±¥æŽãã©ã€ããµã€ã¯ã«ããã¯ãªã©) ãšã®æŽåæ§ã®åäžã«ãããç°ãªãAmazon ECS ãããã€æŠç¥éã®ç§»è¡ãæ¯æŽãã (2) ã©ã€ããµã€ã¯ã«ããã¯ã®å®è¡æéã®å»¶é· (CodeDeploy ã®ããã¯ã¯ 1 æéã«å¶é) ã (3) AWS CloudFormation ãµããŒãã®æ¹å (ãµãŒãã¹ãªããžã§ã³ãšã©ã€ããµã€ã¯ã«ããã¯çšã®åå¥ã® AppSpec ãã¡ã€ã«ãäžèŠ) ãæäŸããŸãã API/CLI ã®éãïŒ API (ããã³é¢é£ãã CLI ã³ãã³ã) ã«éãããããŸãããã API ããå¥ã® API ãžã®ãããã³ã°ã¯éåžžç°¡åã§ãããECS ãã«ãŒ/ã°ãªãŒã³ãããã€ã¯ãããã€ã¹ããããå¶åŸ¡ããããã«ã©ã€ããµã€ã¯ã«ããã¯ãããåºç¯å²ã«äœ¿çšããããšã«æ³šæããŠãã ãããäŸãã°ãCodeDeploy ãæ°ãããããã€ããã¹ãããããã®åŸ
æ©æéãªãã·ã§ã³ (æ¬çªãã©ãã£ãã¯ãåã«ãŒãã£ã³ã°ããå) ããµããŒãããŠããã®ã«å¯ŸããECS ãã«ãŒ/ã°ãªãŒã³ãããã€ã§ã¯ãããå®çŸããããã«ããã¯ã䜿çšããå¿
èŠããããŸãã ã³ã³ãœãŒã«ã®éãïŒ éçšã®äžéšãšã㊠CodeDeploy ã³ã³ãœãŒã«ã䜿çšããŠããå ŽåãAmazon ECS ã³ã³ãœãŒã«ããããã€ã®é²è¡ã®æåãªãŒããŒã©ã€ããªãã·ã§ã³ (äŸïŒåŒ·å¶åã«ãŒãã£ã³ã°ãŸãã¯ãã€ã¯æéã®æ©æçµäº) ãæäŸããŠããªãããšã«æ³šæããŠãã ããã代ããã«ãAmazon ECS ã©ã€ããµã€ã¯ã«ãã㯠(ããå®å
šãªã¢ãããŒããšèšãã) ãéããŠãããåºç¯ãªéçšããã»ã¹ãšçµ±åãããã«ã¹ã¿ã UI ãäœæã§ããŸãã ç§»è¡ãã¹ïŒ CodeDeploy ãã ECS ãã«ãŒ/ã°ãªãŒã³ãããã€ã«ãµãŒãã¹ãç§»è¡ããããã«å©çšå¯èœãªå€æ°ã®ãªãã·ã§ã³ããããç°å¢ã«æé©ãªãã®ãæ€èšããå¿
èŠããããŸãããããã®ãªãã·ã§ã³ãšé¢é£ããé·æãšçæã«ã€ããŠã¯ããã®èšäºã®åŸåã§ãã詳现ã«èª¬æããŸãã ãã€ãã©ã€ã³ãµããŒãïŒ æ¢åã®ãã€ãã©ã€ã³ããŒã«ã§ã¯ãECS ãã«ãŒ/ã°ãªãŒã³ãããã€ã®ãµããŒããæåã¯å¶éãããå¯èœæ§ããããŸããããé«åºŠãªãã€ãã©ã€ã³çµ±åã§ã¯ãæ«å®æéäžã«ã«ã¹ã¿ã ã¢ã¯ã·ã§ã³ã®äœ¿çšãå¿
èŠã«ãªãå ŽåããããŸãããã®èšäºã®å·çæç¹ã§ã¯ãCodePipeline Amazon ECSãæšæºãã¢ã¯ã·ã§ã³ã䜿çšããŠãECS ãã«ãŒ/ã°ãªãŒã³ãããã€ãéããŠã³ã³ããã€ã¡ãŒãžã®å€æŽããããã€ã§ããŸã (ãã ããä»ã®ãµãŒãã¹èšå®å€æŽã¯ã§ããŸãã) ã CodeDeploy ãã ECS ãã«ãŒ/ã°ãªãŒã³ãããã€ãž ECS ãã«ãŒ/ã°ãªãŒã³ãããã€ãžã®ç§»è¡ã®å®è£
ã³ã¹ããèŠç©ããéã¯ãAPIã® éããšãCodeDeploy ã®æ©èœã ECS ãã«ãŒ/ã°ãªãŒã³ãããã€ã®åçæ©èœã«ã©ã®ããã«ãããã³ã°ã§ããããçè§£ããå¿
èŠããããŸããCodeDeploy ã®ãäžæ¬ãèšå®ããéå§ããããšãåæãšããŠããã®ã»ã¯ã·ã§ã³ã§ã¯äž»èŠãªéãã«ã€ããŠèª¬æããŸãã ããŒããã©ã³ãµãŒèšå®ãš ECS ãµãŒãã¹ã®äœæ CodeDeploy ã䜿çšã㊠Amazon ECS ãµãŒãã¹ãäœæããå ŽåããŸãæ¬çªãªã¹ããŒãš (ãªãã·ã§ã³ã§) ãã¹ããªã¹ããŒãæã€ããŒããã©ã³ãµãŒãäœæããŸããåãªã¹ããŒã¯ãå³ 1 (a)ã«ç€ºãããã«ããã¹ãŠã®ãã©ãã£ãã¯ãåäžã®ã¿ãŒã²ããã°ã«ãŒã (ãã©ã€ããªã¿ãŒã²ããã°ã«ãŒã) ã«ã«ãŒãã£ã³ã°ããåäžã® (ããã©ã«ã) ã«ãŒã«ã§èšå®ãããŸããæ¬¡ã«ããªã¹ããŒãšã¿ãŒã²ããã°ã«ãŒãã䜿çšããããã«èšå®ããã Amazon ECS ãµãŒãã¹ãäœæãã ãããã€ã³ã³ãããŒã©ãŒ ã®ã¿ã€ãã CODE_DEPLOY ã«èšå®ããŸãããµãŒãã¹ã®äœæã«ãããæå®ãããã¿ãŒã²ããã°ã«ãŒãã«ç»é²ããã (ãã«ãŒ) ã¿ã¹ã¯ã»ãããäœæãããŸãã å³ 1ïŒããŒããã©ã³ãµãŒã®åæèšå® ECS ãµãŒãã¹ãäœæããããšãCodeDeploy ãããã€ã°ã«ãŒãã (CodeDeploy ã¢ããªã±ãŒã·ã§ã³ã®äžéšãšããŠ) äœæããECS ã¯ã©ã¹ã¿ãŒãECS ãµãŒãã¹åãããŒããã©ã³ãµãŒã®ãªã¹ããŒã2 ã€ã®ã¿ãŒã²ããã°ã«ãŒã (æ¬çªãªã¹ããŒã«ãŒã«ã§äœ¿çšããããã©ã€ããªã¿ãŒã²ããã°ã«ãŒããšã眮æã¿ã¹ã¯ã«äœ¿çšãããã»ã«ã³ããªã¿ãŒã²ããã°ã«ãŒã) ã AWS Identity and Access Management (IAM) ã® CodeDeploy ã« Amazon ECS ããã³ ELB ãªãœãŒã¹ãæäœããæš©éãä»äžãããµãŒãã¹ããŒã« ãããã³ãããã€åäœãå¶åŸ¡ããæ§ã
ãªãã©ã¡ãŒã¿ã®è©³çްãèšå®ããŸãã ECS ãã«ãŒ/ã°ãªãŒã³ãããã€ã¯ãAmazon ECS ãµãŒãã¹èªäœã«ãããã€èšå®ãæå®ããŸããããŒããã©ã³ãµãŒã®æ¬çªãªã¹ããŒã¯ãéã¿ 1 ãš 0 ã«èšå®ããã 2 ã€ã®ã¿ãŒã²ããã°ã«ãŒããå«ãã«ãŒã«ã§äºåèšå®ãããŠããå¿
èŠããããŸããECS ãµãŒãã¹äœæã®äžéšãšããŠããã®ãªã¹ããŒã«ãŒã«ã® Amazon Resource Name (ARN) ã2 ã€ã®ã¿ãŒã²ããã°ã«ãŒãã IAM ããŒã« (Amazon ECS ã«ãªã¹ããŒãšã¿ãŒã²ããã°ã«ãŒããæäœããæš©éãä»äžãããã) ã ãããã€ã³ã³ãããŒã©ãŒ ã®ã¿ã€ãã ECS ã«èšå®ãããã³ deploymentConfiguration.strategy ã BLUE_GREEN ã«èšå®ããŸããããã«ããããã©ã€ããªã¿ãŒã²ããã°ã«ãŒãã«ç»é²ãããã¿ã¹ã¯ãæã€ (ãã«ãŒ) ãµãŒãã¹ãªããžã§ã³ ãäœæãããŸãã äž¡æ¹ã®ã¢ãããŒããšãã¿ã¹ã¯ã®åæã»ããã®äœæãšããçµæã«ãªããŸãããåºç€ãšãªãå®è£
ã¯ãCodeDeploy ã ã¿ã¹ã¯ã»ãã ã䜿çšããã®ã«å¯ŸããAmazon ECS 㯠ãµãŒãã¹ãªããžã§ã³ ã䜿çšãããšããç¹ã§ç°ãªããŸããåŸè
㯠Amazon ECS ãµãŒãã¹ããã〠API ã®äžéšãšããŠå°å
¥ããããããã€ããã»ã¹ãšãµãŒãã¹ãããã€å±¥æŽãžã®å¯èŠæ§ãåäžãããŸãã ãµãŒãã¹ãªããžã§ã³ã®ãããã€ å³ 2 ã¯ãæ°ãããµãŒãã¹ãªããžã§ã³ãã©ã®ããã«ãããã€ããããã瀺ããŠããŸããCodeDeploy 㯠CreateDeployment() ã䜿çšããŠãµãŒãã¹ã®æ°ããããŒãžã§ã³ããããã€ããCodeDeploy ã¢ããªã±ãŒã·ã§ã³åããããã€ã°ã«ãŒãåãããã³ AppSpec ãã¡ã€ã«å
ã®ãªããžã§ã³è©³çްãæå®ããŸããããã«ã¯ãæ°ãããªããžã§ã³ã®ã¿ã¹ã¯å®çŸ©ãšã䜿çšããã³ã³ããåããã³ããŒããå«ãŸããŠããå¿
èŠããããŸããECS ãã«ãŒ/ã°ãªãŒã³ãããã€ã¯ã UpdateService() ãåŒã³åºããŠçœ®æã¿ã¹ã¯å®çŸ©ã®è©³çŽ°ãæž¡ãããšã§ãæ°ãããµãŒãã¹ãããã€ãäœæããŸãã å³ 2ïŒãµãŒãã¹ãªããžã§ã³ã®ããã〠ãªãã·ã§ã³ã§ãCodeDeploy ã® AppSpecãã¡ã€ã«ã¯ããããã¯ãŒã¯èšå®ããã£ãã·ãã£ãããã€ããŒæŠç¥ãªã©ã®ããå€ãã®ãµãŒãã¹èšå®å€æŽãæå®ããã©ã€ããµã€ã¯ã«ããã¯ãæå®ããããã«ã䜿çšã§ããŸã (次ã®ã»ã¯ã·ã§ã³ãåç
§) ãAmazon ECS ã䜿çšããå Žåã¯ã UpdateService() ã䜿çšããŠãããã®å€æŽãæå®ããŸãã å³ 3ïŒãã©ãã£ãã¯ã®åã«ãŒãã£ã³ã° å³ 3 ã¯ããã©ãã£ãã¯åã«ãŒãã£ã³ã°ãå®çŸãããæ¹æ³ã®éãã瀺ããŠããŸããCodeDeploy ã§ã¯ããããã€ã眮æ (ã°ãªãŒã³) ã¿ã¹ã¯ã»ãããäœæãããã®ã¿ã¹ã¯ãã»ã«ã³ããªã¿ãŒã²ããã°ã«ãŒãã«ç»é²ããŸãããããæ£åžžã«ãªããšããã¹ã (ãªãã·ã§ã³) ããã³æ¬çªã§å©çšå¯èœã«ãªããŸããã©ã¡ãã®å Žåããåã«ãŒãã£ã³ã°ã¯ãã°ãªãŒã³ã¿ã¹ã¯ã»ããã«é¢é£ä»ããããã»ã«ã³ããªã¿ãŒã²ããã°ã«ãŒããæãããã«åãªã¹ããŒã«ãŒã«ã倿Žããããšã§å®çŸãããŸããããŒã«ããã¯ã¯ãæ¬çªãªã¹ããŒã«ãŒã«ããã©ã€ããªã¿ãŒã²ããã°ã«ãŒãã«æ»ãããšã§å®çŸãããŸãã 察ç
§çã«ãECS ãã«ãŒ/ã°ãªãŒã³ãããã€ã§ã¯ããµãŒãã¹ãããã€ã (ã°ãªãŒã³) ã¿ã¹ã¯ãæã€æ°ãã ãµãŒãã¹ãªããžã§ã³ ãäœæããããããã»ã«ã³ããªã¿ãŒã²ããã°ã«ãŒãã«ç»é²ããŸãããã®åŸãåã«ãŒãã£ã³ã°ãšããŒã«ããã¯ã¯ããªã¹ããŒã«ãŒã«ã®éã¿ãåãæ¿ããããšã§å®çŸãããŸãã ã©ã€ããµã€ã¯ã«ãã㯠CodeDeploy ãš ECS ãã«ãŒ/ã°ãªãŒã³ãããã€ã®äž¡æ¹ãšã (ãªãã·ã§ã³ã®) ã©ã€ããµã€ã¯ã«ããã¯ããµããŒãããŠãããç¹å®ã®ã©ã€ããµã€ã¯ã«ã€ãã³ãã«ãã£ãŠ AWS Lambda 颿°ãããªã¬ãŒã§ããŸããããã¯ã¯ãã«ã¹ã¿ã ããžãã¯ã§ãããã€ã¯ãŒã¯ãããŒãæ¡åŒµããã®ã«åœ¹ç«ã¡ãŸããäŸãã°ãã©ã€ããµã€ã¯ã«ããã¯ã䜿çšããŠãæ¬çªããŒãã«ã©ã€ããã©ãã£ãã¯ãåã«ãŒãã£ã³ã°ããåã«ããã¹ãããŒãã§ã®ãã¹ããèªååã§ããŸãã CodeDeploy ãš ECS ãã«ãŒ/ã°ãªãŒã³ãããã€ã¯å€§ãŸãã«é¡äŒŒããã©ã€ããµã€ã¯ã«ã«åŸããŸãããèšå®ãªãã·ã§ã³ãšã©ã€ããµã€ã¯ã«ããã¯ã®æå®æ¹æ³ã«éãããããŸãã CodeDeploy ã¯ã CreateDeployment() ã«æäŸããã AppSpec ãã¡ã€ã«ã®äžéšãšããŠã©ã€ããµã€ã¯ã«ããã¯ãæå®ããŸããããã¯ããã¹ãŠã®ãããã€ã§ããã¯ãèšå®ããå¿
èŠãããããšãæå³ããŸããECS ãã«ãŒ/ã°ãªãŒã³ãããã€ã¯ããµãŒãã¹èšå®ã®äžéšãšããŠãã㯠( Amazon ECS ãã«ãŒ/ã°ãªãŒã³ãããã€ã® Lambda 颿°ã«å¿
èŠãšãªãã¢ã¯ã»ã¹èš±å¯ ) ãæå®ãã倿Žã«ã¯ UpdateService() åŒã³åºããå¿
èŠã«ãªããŸãã CodeDeploy ãš Amazon ECS ã®ã©ã€ããµã€ã¯ã«ã€ãã³ãã¯åçã§ããã以äžã®è¡šã«ç€ºãããã«ç°ãªãååãæã¡ãŸãã ã©ã€ããµã€ã¯ã«ã€ãã³ã CodeDeploy ECS ãã«ãŒ/ã°ãªãŒã³ æ°ããã¿ã¹ã¯ãäœæãããå BeforeInstall PRE_SCALE_UP æ°ããã¿ã¹ã¯ãæºåå®äº AfterInstall POST_SCALE_UP ãã¹ãããŒããæå¹ã«ãªãå åçã®ãã®ãªã TEST_TRAFFIC_SHIFT ãã¹ãããŒãããã©ãã£ãã¯ãåä¿¡ããæºåå®äº AfterAllowTestTraffic POST_TEST_TRAFFIC_SHIFT æ¬çªãã©ãã£ãã¯ãã°ãªãŒã³ã«åã«ãŒãã£ã³ã°ããå BeforeAllowTraffic PRODUCTION_TRAFFIC_SHIFT æ¬çªãã©ãã£ãã¯ã®ã°ãªãŒã³ãžã®åã«ãŒãã£ã³ã°ãå®äº AfterAllowTraffic POST_PRODUCTION_TRAFFIC_SHIFT CodeDeploy ãš ECS ãã«ãŒ/ã°ãªãŒã³ãããã€ã®äž¡æ¹ãšãããã¯å®è£
ã« Lambda ã䜿çšããŸãããæåŸ
ãããå
¥åãšåºåã¯ç°ãªããç¹ã« Lambda 颿°ãããã¯ã¹ããŒã¿ã¹ã®ã¬ã¹ãã³ã¹ãè¿ãæ¹æ³ãç°ãªããŸããCodeDeploy ã§ã¯ã颿°ã¯ PutLifecycleEventHookExecutionStatus() ãåŒã³åºããŠããã¯å®è¡ã¹ããŒã¿ã¹ãè¿ãå¿
èŠãããããã㯠Succeeded ãŸã㯠Failed ã®ããããã«ãªããŸããAmazon ECS ã§ã¯ãLambda ã®ã¬ã¹ãã³ã¹èªäœãããã¯å®è¡ã¹ããŒã¿ã¹ã瀺ãããã«äœ¿çšãããŸãã CodeDeploy ã¯åããã¯ã 1 åéãã®åŒã³åºããšããŠå®è¡ãã1 æé以å
ã«æçµå®è¡ã¹ããŒã¿ã¹ãè¿ãããããšãæåŸ
ããŸããAmazon ECS ããã¯ã¯ããæè»ã§ã IN_PROGRESS ã€ã³ãžã±ãŒã¿ãŒãè¿ãããšãã§ãããã㯠SUCCEEDED ãŸã㯠FAILED ã«ãªããŸã§ããã¯ãç¹°ãè¿ãåå®è¡ãããã¹ãã§ããããšã瀺ããŸããããã¯ã¯ããã©ã«ãã§ 30 ç§ããšã«å®è¡ãããŸãããã¬ã¹ãã³ã¹ã®ãã©ã¡ãŒã¿ãæž¡ãããšã§æ¬¡ã®å®è¡ã®ã¿ã€ãã³ã°ãèšå®ã§ããŸãã ãã®ä»ã®å®è£
äžã®èæ
®äºé
CodeDeploy 㯠ãããã€ã°ã«ãŒãã®è©³çްãªãã·ã§ã³ ã®èšå®ãæäŸããŠããããããã Amazon ECS ã®åçæ©èœã«ãããã³ã°ããå¿
èŠãããå ŽåããããŸããããã«ã¯ä»¥äžãå«ãŸããŸãã Amazon Simple Notification Service (Amazon SNS) ããªã¬ãŒïŒAmazon ECS ããã® Amazon EventBridge ã€ãã³ãã䜿çšããŠãç¶æ
倿Žã SNS ãããã¯ã«çºè¡ããŸãã Amazon CloudWatch ã¢ã©ãŒã æ€åºãšèªåããŒã«ããã¯ïŒ Amazon ECS ãããã€ã®å€±ææ€åº æ©èœã䜿çšããŸãã ç§»è¡ãã¹ CodeDeploy ãš ECS ãã«ãŒ/ã°ãªãŒã³ãããã€éã®å®è£
ã®éããèæ
®ããåŸãé©åãªç§»è¡ã¢ãããŒããç¹å®ããå¿
èŠããããŸããããã€ãã®ãªãã·ã§ã³ãå©çšå¯èœã§ãããã¢ãŒããã¯ãã£ãšèŠä»¶ã«æãé©åãããã®ãè©äŸ¡ããå¿
èŠããããŸããé¢äžããèŠå ã«ã¯ä»¥äžãå«ãŸããŸãã ããŠã³ã¿ã€ã ïŒããŠã³ã¿ã€ã ã¯çºçããããçºçããå Žåã¯ã©ã®çšåºŠã®æéãïŒ CodeDeploy ãžã®ããŒã«ããã¯ïŒECS ãã«ãŒ/ã°ãªãŒã³ãããã€ãžã®åãæ¿ããããŸããããªãå Žåã«ãç§»è¡ãããŒã«ããã¯ããèœåãä¿æããå¿
èŠããããïŒããã¯ããã«ãŒ/ã°ãªãŒã³ãœãªã¥ãŒã·ã§ã³ã®ããã®ãã«ãŒ/ã°ãªãŒã³æŠç¥ïŒããšèããããšãã§ããŸãã ãµãŒãã¹ãã£ã¹ã«ããªãŒïŒãµãŒãã¹ã¢ãã¬ã¹ã®å€æŽ (æ°ãã ALB ã® URI) ã«å¯Ÿå¿ã§ãããããããšãåãã¢ãã¬ã¹ãä¿æããå¿
èŠããããïŒ ããã©ãŒãã³ã¹ããã³/ãŸãã¯ãããã€ã®é床 ã³ã¹ã ããŒããã©ã³ãµãŒã®èåŸã«é
眮ããã ECS ãµãŒãã¹ãç¶ç¶ããŠäœ¿çšããå Žåã以äžã®ç§»è¡ãªãã·ã§ã³ã¯ãAmazon ECS ãµãŒãã¹èªäœãšããŒããã©ã³ãµãŒã®ãªãœãŒã¹ã®äž¡æ¹ãèæ
®ããŠãæ¢åã®ãªãœãŒã¹ãã©ã®çšåºŠåå©çšãããã«ã€ããŠã®æ§ã
ãªããªãšãŒã·ã§ã³ã瀺ããŠããŸãããã¹ãŠã®å Žåã«ãããŠãAmazon ECS ãããã€ã³ã³ãããŒã©ãŒã«æž¡ãããã® IAM ããŒã« ãäœæããå¿
èŠããããããã«ããå¿
èŠãªããŒããã©ã³ãµãŒãªãœãŒã¹ãæäœã§ããããã«ãªããŸãã ãªãã·ã§ã³ 1ïŒã€ã³ãã¬ãŒã¹æŽæ° ãã®ã¢ãããŒãã§ã¯ãæ¢åã® Amazon ECS ãµãŒãã¹ãæŽæ°ããŠãCodeDeploy ãããã€ã³ã³ãããŒã©ãŒã§ã¯ãªãããã«ãŒ/ã°ãªãŒã³ãããã€æŠç¥ãæã€ Amazon ECS ãããã€ã³ã³ãããŒã©ãŒã䜿çšããŸããCodeDeploy ã§äœ¿çšãããŠããã®ãšåãããŒããã©ã³ãµãŒãªã¹ããŒãšã¿ãŒã²ããã°ã«ãŒããåå©çšããŸããåè¿°ã®ããã«ãCodeDeploy ã¯ããµãŒãã¹ã«æ¥ç¶ãããããŒããã©ã³ãµãŒã®ãªã¹ããŒãããã¹ãŠã®ãã©ãã£ãã¯ãåäžã®ã¿ãŒã²ããã°ã«ãŒã (ãã©ã€ããªã¿ãŒã²ããã°ã«ãŒã) ã«ã«ãŒãã£ã³ã°ããåäžã® (ããã©ã«ã) ã«ãŒã«ã§èšå®ããŸããECS ãã«ãŒ/ã°ãªãŒã³ãããã€ã®å ŽåãããŒããã©ã³ãµãŒãªã¹ããŒã¯ãéã¿ 1 ãš 0 ã«èšå®ããã 2 ã€ã®ã¿ãŒã²ããã°ã«ãŒããå«ãã«ãŒã«ã§äºåèšå®ãããŠããå¿
èŠããããŸãããããã£ãŠã以äžã®ã¹ããããå¿
èŠã§ãã æ¬çª/ãã¹ããªã¹ããŒã®ããã©ã«ãã«ãŒã«ã倿ŽããŠã代æ¿ã¿ãŒã²ããã°ã«ãŒããå«ããã¿ãŒã²ããã°ã«ãŒããšä»£æ¿ã¿ãŒã²ããã°ã«ãŒãã®éã¿ããããã 1 ãš 0 ã«èšå®ããŸãã UpdateService() ãåŒã³åºããŠæ¢åã® Amazon ECS ãµãŒãã¹ãæŽæ°ãããã©ã¡ãŒã¿ deploymentController ã ECS ã«ããã©ã¡ãŒã¿ deploymentStrategy ã BLUE_GREEN ã«èšå®ããŸããIAM ããŒã«ãã¿ãŒã²ããã°ã«ãŒãã代æ¿ã¿ãŒã²ããã°ã«ãŒããæ¬çªãªã¹ããŒã«ãŒã«ãããã³ãã¹ããªã¹ããŒã«ãŒã« (ãªãã·ã§ã³) ã® ARN ãæž¡ããŸãã Amazon ECS ãããã€ã³ã³ãããŒã©ãŒã代æ¿ã¿ãŒã²ããã°ã«ãŒãã®äžã§æ°ããã¿ã¹ã¯ãæã€æ°ãããµãŒãã¹ãªããžã§ã³ãäœæããããã«ãã®ã¿ãŒã²ããã°ã«ãŒãã«ãã©ãã£ãã¯ãåã«ãŒãã£ã³ã°ããŸãããããå®äºãããŸã§åŸ
æ©ãããã®åŸãµãŒãã¹ãæåŸ
ã©ããã«åäœããŠããããšã確èªããŸãã ECS ãã«ãŒ/ã°ãªãŒã³ãããã€ã䜿çšããããã«ãªã£ããããã® Amazon ECS ãµãŒãã¹çšã® CodeDeploy ãªãœãŒã¹ãåé€ããŸãã ã€ã³ãã¬ãŒã¹æŽæ°ã¯å®å
šãªæäœã§ããã (1) æåãšã©ãŒã®å¯èœæ§ãæå°éã«æããããã«ããã»ã¹ãèªååã (ç¹ã«ãªã¹ããŒèšå®ã倿Žããå Žå) ã (2) éçºè
ããã³/ãŸã㯠UAT ç°å¢ã§ãã®ããã»ã¹ã培åºçã«ãã¹ãããããšã«æ³šæããå¿
èŠããããŸãããŸããAmazon ECS ã³ã³ãããŒã©ãŒããµãŒãã¹ãªããžã§ã³ã®åæäœæãå®äºãããšããã«ãã©ãã£ãã¯ãåã«ãŒãã£ã³ã°ãããããšãèªèããŠããå¿
èŠããããŸããããã«ãåã«ãŒãã£ã³ã°åã«ãã®ãªããžã§ã³ããã¹ããããªãã·ã§ã³ã¯ãããŸãã (ãã ããã¿ã¹ã¯ã¯ CodeDeploy ã§å®è¡ãããŠããã¿ã¹ã¯ã»ãããšåäžã§ããå¿
èŠããããŸã) ã ãªãã·ã§ã³ 2ïŒæ°ãã ECS ãµãŒãã¹ãšæ¢åã®ããŒããã©ã³ãµãŒ ãã®ã¢ãããŒãã¯ç§»è¡ã«ãã«ãŒ/ã°ãªãŒã³æŠç¥ã䜿çšããŸã (èšãæããã°ããã«ãŒ/ã°ãªãŒã³ãœãªã¥ãŒã·ã§ã³ã®ããã®ãã«ãŒ/ã°ãªãŒã³ç§»è¡ã§ã) ãECS ãã«ãŒ/ã°ãªãŒã³ãããã€ã䜿çšããŠæ°ãã䞊åãã«ãŒ/ã°ãªãŒã³ã»ããã¢ãããäœæãããããæ€èšŒããCodeDeploy ã»ããã¢ããããæ°ãã ECS ãã«ãŒ/ã°ãªãŒã³ãããã€ã»ããã¢ããã«åãæ¿ãããã®åŸ CodeDeploy ãªãœãŒã¹ãåé€ããŸãã å¿
èŠã«å¿ããŠãã®ã»ããã¢ããã«ããŒã«ããã¯ã§ããããã«ãCodeDeploy ã»ããã¢ããçšã®ãªã¹ããŒãã¿ãŒã²ããã°ã«ãŒããããã³ Amazon ECS ãµãŒãã¹ããã®ãŸãŸæ®ããŠãããŸãã æ¢åã®ããŒããã©ã³ãµãŒã®äžã«æ°ããã¿ãŒã²ããã°ã«ãŒããšæ°ãããªã¹ã㌠(å
ã®ãªã¹ããŒãšã¯ç°ãªãããŒã) ãäœæããŸãããã®åŸãæ¢åã® Amazon ECS ãµãŒãã¹ãšäžèŽããæ°ãã Amazon ECS ãµãŒãã¹ãäœæããŸããããããã€ã³ã³ãããŒã©ãŒãšã㊠ECS ã䜿çšãããããã€æŠç¥ãšã㊠BLUE_GREEN ã䜿çšããIAM ããŒã«ãæ°ããã¿ãŒã²ããã°ã«ãŒããããã³æ°ãããªã¹ããŒã«ãŒã«ã® ARN ãæž¡ããŸãã æ°ããã»ããã¢ãããæ€èšŒããŸã (æ°ãããªã¹ããŒã®ããŒãã䜿çš) ããã¹ãŠãããŸãããã°ãå
ã®ãªã¹ããŒã®ããŒããç°ãªãããŒãçªå·ã«å€æŽã (å
ã®ããŒããè§£æŸãããã) ãæ°ãããªã¹ããŒã®ããŒããå
ã®ããŒãã«åãæ¿ããŠãæ°ããã»ããã¢ããã«ãã©ãã£ãã¯ãã«ãŒãã£ã³ã°ããŸãã æ°ããã»ããã¢ããã芳å¯ãããã¹ãŠãæåŸ
ã©ããã«åäœãç¶ããããCodeDeploy ã»ããã¢ãããåé€ã§ããŸãã å³ 4 ã¯ãã®ã¢ãããŒãã瀺ããŠããŸãã å³ 4ïŒãªãã·ã§ã³ 2 â æ°ãããµãŒãã¹ãšæ¢åã®ããŒããã©ã³ãµãŒ ãªãã·ã§ã³ 3ïŒæ°ãã ECS ãµãŒãã¹ãšæ°ããããŒããã©ã³ãµãŒ åè¿°ã®ã¢ãããŒããšåæ§ã«ããã®ã¢ãããŒãã¯ç§»è¡ã«ãã«ãŒ/ã°ãªãŒã³æŠç¥ã䜿çšããŸããäž»ãªéãã¯ãCodeDeploy ã»ããã¢ãããã ECS ãã«ãŒ/ã°ãªãŒã³ãããã€ã»ããã¢ãããžã®åãæ¿ãããããŒããã©ã³ãµãŒã®äžã®å¥ã®ã«ãŒãã£ã³ã°å±€ã§è¡ãããããšã§ã (å³ 5 ã«ç€ºããšãã) ããã®å±€ã®å®è£
äŸã«ã¯ã Amazon Route 53 ã Amazon API Gateway ãããã³ Amazon CloudFront ãå«ãŸããŸãã ãã®ã¢ãããŒãã¯ããã§ã«ãã®ã«ãŒãã£ã³ã°å±€ãæã£ãŠãããŠãŒã¶ãŒã«é©ããŠãããAmazon ECS ãµãŒãã¹ãšã®ãã¹ãŠã®éä¿¡ããã®å±€ãéããŠè¡ãããŠããå Žå (ã€ãŸããããŒããã©ã³ãµãŒã¬ãã«ã§ã®çŽæ¥éä¿¡ããªãå Žå) ã«é©çšã§ããŸãããªãã·ã§ã³ 2 ãšæ¯èŒãããšããã®ãªãã·ã§ã³ã¯ãŒãããŠã³ã¿ã€ã ãšããå©ç¹ããããŸãããå°ãã³ã¹ããé«ããªããŸãã å³ 5ïŒãªãã·ã§ã³ 3 â æ°ãããµãŒãã¹ãšæ°ããããŒããã©ã³ãµãŒ ã¢ãããŒãã®æ¯èŒ 以äžã®è¡šã¯ãããã 3 ã€ã®ç§»è¡ã¢ãããŒãããããªãã«ãšã£ãŠéèŠåºŠãç°ãªãå¯èœæ§ã®ãã倿°ã®èŠå ã§æ¯èŒããŠããŸãããã®è¡šã䜿çšããŠãããªãèªèº«ã®ç¹å®ã®ç¶æ³ãšåªå
äºé
ã«æãé©ãããªãã·ã§ã³ãè©äŸ¡ã§ããŸãã ãªãã·ã§ã³ 1ïŒã€ã³ãã¬ãŒã¹æŽæ° ãªãã·ã§ã³ 2ïŒæ°ãã ECS ãµãŒãã¹ãšæ¢åã®ããŒããã©ã³ãµãŒ ãªãã·ã§ã³3ïŒæ°ãã ECS ãµãŒãã¹ãšæ°ããããŒããã©ã³ãµãŒ ç§»è¡ã®è€éã ã·ã³ãã« æ¢åã® Amazon ECS ãµãŒãã¹ã®ãããã€ã¡ã³ãã³ã³ãããŒã©ãŒãšãããã€ã¡ã³ãæŠç¥ãæŽæ° ããè€é æ°ãã Amazon ECS ãµãŒãã¹ãã¿ãŒã²ããã°ã«ãŒãããªã¹ããŒãäœæããããŒãã亀æ ããè€é æ°ãã Amazon ECS ãµãŒãã¹ãã¿ãŒã²ããã°ã«ãŒããããŒããã©ã³ãµãŒããªã¹ããŒãäœæããã«ãŒãã£ã³ã°å±€ã®èšå®ãå€æŽ ãªã¹ã¯è»œæžãªãã·ã§ã³ äžçšåºŠ ãã¹ãçšã®äžŠåãã«ãŒ/ã°ãªãŒã³ã»ããã¢ãããå©çšã§ããŸãããããã»ã¹ã®èªååãšãã¹ãã«éç¹ã眮ã 匷å 䞊åãã«ãŒ/ã°ãªãŒã³ã»ããã¢ããããã©ãã£ãã¯ãåã«ãŒãã£ã³ã°ããåã«æ°ããã»ããã¢ããããã¹ã 匷å 䞊åãã«ãŒ/ã°ãªãŒã³ã»ããã¢ããããã©ãã£ãã¯ãåã«ãŒãã£ã³ã°ããåã«æ°ããã»ããã¢ããããã¹ã ãããã€ã¡ã³ãã³ã³ãããŒã©ãŒã®ããŒã«ãã㯠ã·ã³ãã« ãµãŒãã¹ãããã€ã¡ã³ãã³ã³ãããŒã©ãŒã CODE_DEPLOY ã«æ»ã ã·ã³ãã« ããŒã亀æãå
ã«æ»ã ã·ã³ãã« ã«ãŒãã£ã³ã°å±€ã®èšå®å€æŽãããŒã«ãã㯠ããŠã³ã¿ã€ã ããŠã³ã¿ã€ã ãªã ããŒã亀æäžã®æå°éã®äžæ ããŠã³ã¿ã€ã ãªã é©çšæ§ å¶çŽãªã å¶çŽãªã 远å ã®ã«ãŒãã£ã³ã°å±€ãå¿
èŠ ã³ã¹ã 远å ã³ã¹ããªã 远å ã³ã¹ã é¢é£ããã¿ã¹ã¯ãæã€2ã€ã®å
±åãã Amazon ECS ãµãŒã㹠远å ã³ã¹ã é¢é£ããã¿ã¹ã¯ãæã€2ã€ã®å
±åãã Amazon ECS ãµãŒãã¹ãšè¿œå ã®ããŒããã©ã³ãµãŒ ãŸãšã ãã®èšäºã§ã¯ãAWS CodeDeploy ãã Amazon ECS ã®çµã¿èŸŒã¿ãã«ãŒ/ã°ãªãŒã³ãããã€ãžã®ç§»è¡ã«ã€ããŠèª¬æããŸããããã®è°è«ã«ã¯ä»¥äžãå«ãŸããŠããŸããã ç§»è¡ã決å®ããåã«èæ
®ãã¹ãèŠå äž»èŠãªã¢ãŒããã¯ãã£ã®éããšé¢é£ããå®è£
äžã®èæ
®äºé
ç§»è¡ã«ã¢ãããŒããã 3 ã€ã®ç°ãªãæ¹æ³ çŸåš CodeDeploy ã䜿çšããŠãããECS ãã«ãŒ/ã°ãªãŒã³ãããã€ãžã®ç§»è¡ãæ€èšããŠããå Žåã¯ããã®èšäºãå®çŸå¯èœæ§ãè©äŸ¡ããç§»è¡ãèšç»ããããã®ã¬ã€ããšããŠäœ¿çšã§ããŸããECS ãã«ãŒ/ã°ãªãŒã³ãããã€ã®è©³çްã«ã€ããŠã¯ã Amazon ECS ã®éçºè
ã¬ã€ã ãã確èªãã ããã 翻蚳ã¯ãœãªã¥ãŒã·ã§ã³ã¢ãŒããã¯ãã®å æ²»ãæ
åœããŸãããåæã¯ ãã¡ã ã§ãã
2025 幎 12 æ 2 æ¥ã Amazon CloudWatch ã®æ©èœãæ¡åŒµããŠãéçšãã»ãã¥ãªãã£ãã³ã³ãã©ã€ã¢ã³ã¹ã®ããŸããŸãªãŠãŒã¹ã±ãŒã¹ã§ãã°ããŒã¿ãçµ±åããŠç®¡çããæè»ã§åŒ·åãªåæã 1 ãæã§è¡ããããŒã¿ã®éè€ãšã³ã¹ããåæžããŸããã ä»åã®æ©èœåŒ·åã«ãããCloudWatch ã¯ã Open Cybersecurity Schema Framework (OCSF) ããã³ Open Telemetry (OTel) 圢åŒã®çµã¿èŸŒã¿ãµããŒãã«ããããœãŒã¹éã®äžè²«æ§ãä¿ãããããã«ããŒã¿ãèªåçã«æ£èŠåããã³åŠçã§ãããããåæãšã€ã³ãµã€ãã«éäžã§ããŸããCloudWatch ã§ã¯ã Amazon Simple Storage Service (Amazon S3) Tables ãä»ããããŒã¿ãžã®Apache Iceberg äºæã®ã¢ã¯ã»ã¹ãå°å
¥ãããŠããŸããããã«ãããããŒã«ã«ã ãã§ãªãã Amazon Athena ã Amazon SageMaker Unified Studio ããŸãã¯ãã®ä»ã® Iceberg äºæããŒã«ã䜿çšããŠåæãå®è¡ã§ããŸãã ãŸããCloudWatch ã®éçšããŒã¿ããã奜ã¿ã®ããŒã«ã®ä»ã®ããžãã¹ããŒã¿ã«é¢é£ä»ããŠãä»ã®ããŒã¿ãšçžé¢ããããšãã§ããŸãããã®çµ±äžãããã¢ãããŒãã«ããã管çãåçåãããã»ãã¥ãªãã£ãéçšãããžãã¹ã®ãŠãŒã¹ã±ãŒã¹ãå
æ¬çã«é¢é£ä»ããããšãã§ããŸãã è©³çŽ°ãªæ©èœåŒ·åã¯æ¬¡ã®ãšããã§ãã ããŒã¿ã€ã³ãžã§ã¹ããšæ£èŠåãå¹çå â CloudWatch ã¯ãè€æ°ã¢ã«ãŠã³ããè€æ°ã® AWS ãªãŒãžã§ã³ã«ããã£ãŠ AWS ãæäŸãããã°ãèªåçã«åéãã AWS Organizations ãšé£æºããŠã AWS CloudTrail ã Amazon Virtual Private Cloud (Amazon VPC) ãããŒãã°ã AWS WAF ã¢ã¯ã»ã¹ãã°ã Amazon Route 53 Resolver ãã°ãªã©ã® AWS ãµãŒãã¹ã«å¯Ÿå¿ããŸãããŸãããšã³ããã€ã³ã (CrowdStrikeãSentinelOne)ãã¢ã€ãã³ãã£ã㣠(OktaãEntra ID)ãã¯ã©ãŠãã»ãã¥ãªã㣠(Wiz)ããããã¯ãŒã¯ã»ãã¥ãªã㣠(ZscalerãPalo Alto Networks)ãçç£æ§ããã³ã³ã©ãã¬ãŒã·ã§ã³ (Microsoft Office 365ãWindows Event LogsãGitHub) ãªã©ã®ãµãŒãããŒãã£ãœãŒã¹åãã®äºåæ§ç¯æžã¿ã³ãã¯ã¿ã«å ããServiceNow CMDB ãåãã IT ãµãŒãã¹ãããŒãžã£ãŒãšã飿ºããŸããCloudWatch ã§ã¯ãåã蟌ãŸããŠããããŒã¿ãæ£èŠåããŠåŠçããããã«ãããŸããŸãª AWS ããã³ãµãŒãããŒãã£ã®ããŒã¿ãœãŒã¹ãããã³ã«ã¹ã¿ã è§£æããã£ãŒã«ãã¬ãã«ã®æäœãæååæäœãè¡ãããã® Grok ãªã©ã®ä»ã®ããã»ããµåãã®ãããŒãžã OCSF 倿ãæäŸããŠããŸãã ã³ã¹ãã®ããããã°ããŒã¿ç®¡çãåæž â CloudWatch ã¯ãã¬ããã³ã¹æ©èœãçµã¿èŸŒãŸããåäžã®ãµãŒãã¹ã«ãã°ç®¡çãçµ±åããŸããç°ãªãããŒã«ãããŒã¿ã¹ãã¢ã«åãããŒã¿ã®è€æ°ã®ã³ããŒãä¿åããŠç¶æããå¿
èŠã¯ãããŸãããCloudWatch ã®çµ±åããŒã¿ã¹ãã¢ã«ãããè€é㪠ETL ãã€ãã©ã€ã³ãäžèŠã«ãªããè€æ°ã®åå¥ã®ããŒã¿ã¹ãã¢ãããŒã«ãç¶æããããã«å¿
èŠãªéçšã³ã¹ããšç®¡çãªãŒããŒããããåæžãããŸãã ãã°ããŒã¿ããããžãã¹äžã®ã€ã³ãµã€ããåŸã â CloudWatch ã§ã¯ãèªç¶èšèªã¯ãšãªãš LogSQLãPPLãSQL ãªã©ã®äžè¬çãªã¯ãšãªèšèªã䜿çšã㊠1 ã€ã®ã€ã³ã¿ãŒãã§ã€ã¹ããã¯ãšãªãå®è¡ããããApache Iceberg äºæããŒãã«ããä»»æã®åæããŒã«ã䜿çšããŠããŒã¿ãã¯ãšãªãããã§ããŸããæ°ãããã¡ã»ããã€ã³ã¿ãŒãã§ã€ã¹ã§ã¯ããœãŒã¹ãã¢ããªã±ãŒã·ã§ã³ãã¢ã«ãŠã³ãããªãŒãžã§ã³ããã°ã¿ã€ãã§çŽæçã«ãã£ã«ã¿ãªã³ã°ã§ããŸããããã䜿çšããŠãã€ã³ããªãžã§ã³ããªãã©ã¡ãŒã¿æšè«ã«ãããè€æ°ã® AWS ã¢ã«ãŠã³ããšãªãŒãžã§ã³ã®ãã°ã°ã«ãŒãã«ããã£ãŠã¯ãšãªãå®è¡ã§ããŸãã æ¬¡ã®ã»ã¯ã·ã§ã³ã§ã¯ãCloudWatch Logs ã®æ°ãããã°ç®¡çããã³åææ©èœã«ã€ããŠèª¬æããŸãã 1.ããŒã¿ãœãŒã¹ãšã¿ã€ãã«ããããŒã¿ã®çºèŠãšç®¡ç CloudWatch ã³ã³ãœãŒã«ã®æ°ãããã°ç®¡çãã¥ãŒã§ã¯ããã°ãšãã¹ãŠã®ããŒã¿ãœãŒã¹ã®æŠèŠã確èªã§ããŸããéå§ããã«ã¯ã CloudWatch ã³ã³ãœãŒã« ã«ç§»åããå·ŠåŽã®ããã²ãŒã·ã§ã³ãã€ã³ã® [ãã°] ã¡ãã¥ãŒã§ [ãã°ç®¡ç] ãéžæããŸãã [æŠèŠ] ã¿ãã§ã¯ããã°ãããŒã¿ãœãŒã¹ãã¿ã€ããåã蟌ã¿åŸã®ãã°ã°ã«ãŒãã®ç¶æ
ã«é¢ããã€ã³ãµã€ããç°åžžã確èªã§ããŸãã [ããŒã¿ãœãŒã¹] ã¿ããéžæãããšãããŒã¿ãœãŒã¹ãã¿ã€ããããã³ãã£ãŒã«ãããšã«ãã°ããŒã¿ãæ€çŽ¢ããŠç®¡çã§ããŸããCloudWatch ã¯ãAWS ãµãŒãã¹ããµãŒãããŒãã£ããŸãã¯ã¢ããªã±ãŒã·ã§ã³ãã°ãªã©ã®ã«ã¹ã¿ã ãœãŒã¹ããšã«ããŒã¿ãœãŒã¹ãåã蟌ã¿ãèªåçã«åé¡ããŸãã S3 Tables ãçµ±åãã ããŒã¿ãœãŒã¹ã¢ã¯ã·ã§ã³ ãéžæããŠãéžæããããŒã¿ãœãŒã¹ã®ä»åŸã®ãã°ãäœæããŸããAthena ã Amazon RedshiftãSpark ãªã©ã®ä»ã®ã¯ãšãªãšã³ãžã³ãä»ããIceberg äºæã®ã¢ã¯ã»ã¹ãã¿ãŒã³ã䜿çšããŠãã°ãæè»ã«åæã§ããŸãããã®çµ±åã«ãããCloudWatch ããã®ãã°ã¯èªã¿åãå°çšã® aws-cloudwatch S3 Tables ãã±ããã§å©çšã§ããããã«ãªããŸãã CloudTrail ããŒã¿ãªã©ã®ç¹å®ã®ããŒã¿ãœãŒã¹ãéžæãããšãããŒã¿åœ¢åŒããã€ãã©ã€ã³ããã¡ã»ãã/ãã£ãŒã«ãã€ã³ããã¯ã¹ãS3 Tables ã®é¢é£ä»ãããã®ããŒã¿ãœãŒã¹ãšã®ãã°æ°ã«é¢ããæ
å ±ãå«ãããŒã¿ãœãŒã¹ã®è©³çްã衚瀺ã§ããŸãããã®ããŒã¿ãœãŒã¹ã«å«ãŸãããã¹ãŠã®ãã°ã°ã«ãŒãã確èªããæ°ããã¹ããŒããµããŒãã䜿çšããŠãœãŒã¹/ã¿ã€ããã£ãŒã«ãã€ã³ããã¯ã¹ããªã·ãŒãå
¥åããã³ç·šéã§ããŸãã ããŒã¿ãœãŒã¹ãšã€ã³ããã¯ã¹ããªã·ãŒã®ç®¡çæ¹æ³ã®è©³çްã«ã€ããŠã¯ããAmazon CloudWatch Logs ãŠãŒã¶ãŒã¬ã€ããã®ã ããŒã¿ãœãŒã¹ ããåç
§ããŠãã ããã 2.CloudWatch ãã€ãã©ã€ã³ã䜿çšããã€ã³ãžã§ã¹ããšãã©ã³ã¹ãã©ãŒã¡ãŒã·ã§ã³ ãã€ãã©ã€ã³ãäœæããŠããã¬ã¡ããªããŒã¿ãã»ãã¥ãªãã£ããŒã¿ã®åéã倿ãã«ãŒãã£ã³ã°ãå¹çåãããšåæã«ãããŒã¿åœ¢åŒãæšæºåããŠãªãã¶ãŒãããªãã£ãšã»ãã¥ãªãã£ããŒã¿ç®¡çãæé©åã§ããŸããCloudWatch ã®æ°ãããã€ãã©ã€ã³æ©èœã¯ãããŒã¿ãœãŒã¹ã®ã«ã¿ãã°ããã®ããŒã¿ãæ¥ç¶ãããããã©ã€ãã©ãªãããã€ãã©ã€ã³ããã»ããµã远å ããŠèšå®ããããŒã¿ãè§£æã匷åãæšæºåã§ããŸãã [ãã€ãã©ã€ã³] ã¿ãã§ [ãã€ãã©ã€ã³ã远å ] ãéžæããŸãããã€ãã©ã€ã³èšå®ãŠã£ã¶ãŒãã衚瀺ãããŸãããã®ãŠã£ã¶ãŒãã§ã¯ã5 ã€ã®æé ã«åŸã£ãŠããŒã¿ãœãŒã¹ãšãã®ä»ã®ãœãŒã¹ã®è©³çް (ãã°ãœãŒã¹ã¿ã€ããªã©) ãéžæããä¿åå
ãèšå®ããããŒã¿ã«å¯ŸããŠã¢ã¯ã·ã§ã³ (ãã£ã«ã¿ãªã³ã°ã倿ããšã³ãªããã³ã°ãªã©) ãå®è¡ããããã»ããµãæå€§ 19 åãŸã§èšå®ããæåŸã«ãã€ãã©ã€ã³ã確èªããŠãããã€ããããšãã§ããŸãã CloudWatch ã®æ°ãã åã蟌㿠æ©èœã䜿çšããŠãã€ãã©ã€ã³ãäœæãããªãã·ã§ã³ããããŸãããã€ãã©ã€ã³ã®èšå®ãšç®¡çæ¹æ³ã®è©³çްã«ã€ããŠã¯ããAmazon CloudWatch Logs ãŠãŒã¶ãŒã¬ã€ããã®ã ãã€ãã©ã€ã³ ããåç
§ããŠãã ããã 3.ããŒã¿ãœãŒã¹ã«åºã¥ãåæãšã¯ãšãªã®åŒ·å ãã¡ã»ãããšããŒã¿ãœãŒã¹ã«åºã¥ãã¯ãšãªããµããŒãããããšã§ãåæã匷åã§ããŸãããã¡ã»ããã䜿çšãããšããã°ãã€ã³ã¿ã©ã¯ãã£ãã«æ¢çŽ¢ãããæãäžãããã§ããŸãããã¡ã»ããã®å€ã¯ãéžæããæéã«åºã¥ããŠèªåçã«æœåºãããŸãã å·ŠåŽã®ããã²ãŒã·ã§ã³ãã€ã³ã® [ãã°] ã¡ãã¥ãŒã® [Log Insights] ã§ [ãã¡ã»ãã] ã¿ããéžæããŸããããã«ã«è¡šç€ºããã䜿çšå¯èœãªãã¡ã»ãããšå€ã衚瀺ã§ããŸãã1 ã€ãŸãã¯è€æ°ã®ãã¡ã»ãããšå€ãéžæããŠãããŒã¿ãã€ã³ã¿ã©ã¯ãã£ãã«èª¿ã¹ãããšãã§ããŸããVPC ãããŒãã°ã®ã°ã«ãŒããšã¢ã¯ã·ã§ã³ã«é¢ãããã¡ã»ãããéžæããAI ã¯ãšãªãžã§ãã¬ãŒã¿ã䜿çšã㊠VPC ãããŒãã°ã§æãé »ç¹ãª 5 ã€ã®ãã¿ãŒã³ãäžèŠ§è¡šç€ºããããã«ã¯ãšãªããçµæã®ãã¿ãŒã³ãååŸããŸãã éžæãããã¡ã»ãããšæå®ããå€ã䜿çšããŠã¯ãšãªãä¿åã§ããŸããä¿åããã¯ãšãªã次åéžæãããšãã¯ãšãªå¯Ÿè±¡ã®ãã°ã«ã¯äºåã«æå®ããããã¡ã»ãããšå€ãå«ãŸããŸãããã¡ã»ãã管çã®è©³çްã«ã€ããŠã¯ããCloudWatch Logs ãŠãŒã¶ãŒã¬ã€ããã®ã ãã¡ã»ãã ããåç
§ããŠãã ããã åã«èª¬æããããã«ãããŒã¿ãœãŒã¹ã S3 Tablesã«çµ±åãããŸãšããŠã¯ãšãªãå®è¡ã§ããŸããããšãã° Athena ã®ã¯ãšãªãšãã£ã¿ã䜿ãã°ãç¹å®ã® IP ã¬ã³ãž ( 174.163.137.* ) ããã®ãããã¯ãŒã¯ãã©ãã£ãã¯ãš AWS API ã¢ã¯ãã£ããã£ãçžé¢åæã§ããŸããããã¯ãVPC ãããŒãã°ãš CloudTrail ãã°ããéä¿¡å
IP ã¢ãã¬ã¹ã®äžèŽãåºã«çµåããããšã§å®çŸã§ããŸãã ãã®ã¿ã€ãã®çµ±åæ€çŽ¢ã¯ãã»ãã¥ãªãã£ã¢ãã¿ãªã³ã°ãã€ã³ã·ãã³ã調æ»ãçãããåäœã®æ€åºã«ç¹ã«åœ¹ç«ã¡ãŸãããããã¯ãŒã¯ã«æ¥ç¶ããŠãã IP ãããŠãŒã¶ãŒã®äœæãã»ãã¥ãªãã£ã°ã«ãŒãã®å€æŽãããŒã¿ãžã®ã¢ã¯ã»ã¹ãªã©ã®æ©å¯ãª AWS æäœãå®è¡ããŠãããã©ããã確èªã§ããŸãã 詳现ã«ã€ããŠã¯ããCloudWatch Logs ãŠãŒã¶ãŒã¬ã€ããã®ã S3 Tablesãš CloudWatch ã®çµ±å ããåç
§ããŠãã ããã ä»ãããå©çšããã ããŸã Amazon CloudWatch ã®æ°ãããã°ç®¡çæ©èœã¯çŸåšãAWS GovCloud (ç±³åœ) ãªãŒãžã§ã³ãšäžåœãªãŒãžã§ã³ãé€ããã¹ãŠã® AWS ãªãŒãžã§ã³ã§ãå©çšããã ããŸãããªãŒãžã§ã³ããšã®æäŸç¶æ³ãä»åŸã®ããŒããããã«ã€ããŠã¯ã AWS Capabilities by Region ãã芧ãã ãããåæãã®çŸ©åãæäœæéã¯ãããŸãããããŒã¿ã€ã³ãžã§ã¹ããã¹ãã¬ãŒãžãã¯ãšãªã«æ¢åã® CloudWatch Logs ã䜿çšããåã ããæ¯æãããã ããŸãã詳现ã«ã€ããŠã¯ã CloudWatch ã®æé衚ããŒãž ãã芧ãã ããã CloudWatch ã³ã³ãœãŒã« ã§è©ŠããŠãã ããã詳现ã«ã€ããŠã¯ã CloudWatch ã®è£œåããŒãž ã«ã¢ã¯ã»ã¹ããŠãã ããããã£ãŒãããã¯ã¯ã AWS re:Post for CloudWatch Logs ããŸãã¯éåžžã® AWS ãµããŒãã®æ
åœè
ãŸã§ãå¯ããã ããã â Channy åæã¯ ãã¡ã ã§ãã
ã¿ãªãããããã«ã¡ã¯ãAWS ãœãªã¥ãŒã·ã§ã³ã¢ãŒããã¯ãã®äžåšã§ããå
é±ã® re:Invent 2025 ãã¿ãªããŸã¯ããããéããã§ãããïŒãçŸå°ã«æ¥ãŠãã ãã£ãæ¹ãããªã³ããã³ãã§èŠèŽããã ããæ¹ããäœãåŠã³ã«ãªããã®ã身ã«ã€ããŠããã ããŸãããªã幞ãã§ãã ãããŠãæ¯å¹Žããªãã¿ 1 æéã§æ¯ãè¿ã re:invent éå ±ãä»å¹Žãéå¬ããããŸãããå¿ãããŠãªããªããã£ããã¢ããã§ããªãã£ãæ¹ã ãã¡ãã®ããŒãž ãããã£ããã¢ããããé¡ãããããŸãã å
æ¥ 2ã€ã®æ°ãããã©ã³ã远å ããã AWS ãžã£ãã³çæ AI å®çšåæšé²ããã°ã©ã ããéåžžã«å€ãã®ç³ã蟌ã¿ãããã ããŠããŸããåŒãç¶ãåéäžã§ãã®ã§ãããããé¡ãããŸãã ããã§ã¯ã12 æ 08 æ¥é±ã®çæ AI with AWSçéã®ãã¥ãŒã¹ãèŠãŠãããŸããããre:Invent 2025 ã§çºè¡šãããå
容ãç¶ã
ãšæ¥æ¬èªåãããŠããŸãããã²ã圹ç«ãŠãã ããã ããŸããŸãªãã¥ãŒã¹ ã客æ§äºäŸ AWSçæAIåœå
äºäŸããã°: ãšã¹ããŒã¢ã€æ ªåŒäŒç€Ÿæ§ãKiro ãæŽ»çšããçµè²»ç²Ÿç®ã·ã¹ãã ã®è¿
éãªéçº ãšã¹ããŒã¢ã€æ ªåŒäŒç€Ÿæ§ã¯ãæç¥çã«æ¬ç€Ÿã眮ãè£œé æ¥åãã·ã¹ãã ã€ã³ãã°ã¬ãŒã·ã§ã³ãµãŒãã¹äŒæ¥ã§ããå瀟ã§ã¯ãçµå¶å±€ã AI ã³ãŒãã£ã³ã°ã®éèŠæ§ãèªèããŠãããã®ã®ãçŸå Žãšã³ãžãã¢ãæ¥ã
ã®æ¥åã«è¿œãããæ°ããæè¡ã«åãçµãäœè£ããªãç¶æ³ã§ããããã®èª²é¡ã解決ãããããAI IDEãKiroããæŽ»çšããŠåºåŒµçµè²»ç²Ÿç®ã·ã¹ãã ã®éçºã«åãçµãŸããŸãããããã©ã³ãšã³ãžãã¢ãå®åçŽ 10 æ¥éïŒ1 æ¥ 1ã2 æéã®äœæ¥ïŒã§åºæ¬æ©èœãå®è£
ããåŸæ¥ææ³ãšæ¯èŒããŠå€§å¹
ãªæéççž®ãå®çŸãããŸãããç¹ã« Kiro ã®ãVibeããšãSpecãã®äœ¿ãåãã«ãããã³ãŒãçæãšããã¥ã¡ã³ãäœæã®äž¡æ¹ãå¹çåã§ããããšãæåã®ãã€ã³ãã§ããã AWSçæAIåœå
äºäŸããã°: ææ²»ããŒã«ãã£ã³ã°ã¹æ ªåŒäŒç€Ÿæ§ãAmazon Q Developer å°å
¥ã«ãã 80-90% ã®çç£æ§åäžãå®çŸ ææ²»ããŒã«ãã£ã³ã°ã¹æ ªåŒäŒç€Ÿæ§ã®ã°ã«ãŒã DX æšé²éš AWS äºåå±ã§ã¯ã300 ãè¶
ãã AWS ã¢ã«ãŠã³ãã 20 åã®ã¡ã³ããŒã§ç®¡çããäžã§ãéçºã»éçšå¹çåã課é¡ãšãªã£ãŠããŸãããAmazon Q Developer ãæ®µéçã«å°å
¥ããããã¥ã¡ã³ãã»èšèšè³æã®èªååãInfrastructure as Code éçºã®å¹çåãéçšã»ãã©ãã«ã·ã¥ãŒãã£ã³ã°ã®é«åºŠåãçµç¹å
šäœã®ç®¡çåºç€æŽåãå®çŸãããŸããããã®çµæãAWS äºåå±å
šäœã§ 80-90% ã®çç£æ§åäžãéæãã30 åè¶
ãç¶ç¶çã«æŽ»çšãããŠããŸããç¹ã« Model Context Protocol ãµãŒãã®å©çšã«ãããçŽ æ©ãæ£ç¢ºãªæ
å ±ãžã®ã¢ã¯ã»ã¹ãšèª¿æ»ãããã¥ã¡ã³ãçæãå¯èœã«ãªããŸããã AWSçæAIåœå
äºäŸããã°: å°æ¹ç
é¢ãã·ã¹ãã ã®å
補åã«ææŠãIT ç¥èãŒãããå§ããçæ AI ã«ããæ¥åå¹çåãžã® 90 æ¥ å
µåº«çç«ãªãããªããŒã·ã§ã³äžå€®ç
颿§ãšçæ¬äžå€®ç
颿§ããANGEL Dojo 2025 ããã°ã©ã ã«åå ããIT ç¥èãŒãã®ç¶æ
ãã 90 æ¥éã§çæ AI ãæŽ»çšããã·ã¹ãã éçºã«åãçµãŸããŸãããå
µåº«çç«æ§ã¯ Amazon Bedrock ãçšãããªãããªã¹ã±ãžã¥ãŒã«èªååã§ 60% ã®èªååãå®çŸããæåœãçŽ 36 åäœïŒ88,200 åïŒã®åçå¢å ãèŠèŸŒãã§ããŸããçæ¬äžå€®ç
颿§ã¯éé¢ãµããªçã®ææžäœæã«çæ AI ãæŽ»çšããæ 800 æéã®ææžäœææéåæžã確èªãããŸãããäŒæ¥ãšããŒãããŒã«ããå
±åµåå
補åã«ãããå»çæ©é¢ã§ã AI ãæŽ»çšããã·ã¹ãã éçºãçŸå®çã«ãªãããšãå®èšŒãããŠããŸãã æè¡èšäº ããã°èšäºã Amazon Nova 2 Sonic ã®ç޹ä»: äŒè©±å AI åãã®æ°ããé³å£°å€æã¢ãã« ããå
¬é 2025 幎 12 æ 2 æ¥ã«çºè¡šããã Amazon Nova 2 Sonic ã¯ãèªç¶ã§ãªã¢ã«ã¿ã€ã ãªé³å£°å¯Ÿè©±ãã¢ããªã±ãŒã·ã§ã³ã«ããããé³å£°å€æã®åºç€ã¢ãã«ã§ãããã®èšäºã§ã¯ãæ¥çãããã¯ã©ã¹ã®äŒè©±å質ãšäŸ¡æ Œèšå®ãå®çŸãã Nova 2 Sonic ã®ç¹åŸŽã詳ãã解説ããŠããŸããå€èšèªãµããŒãã®æ¡åŒµïŒãã«ãã¬ã«èªãšãã³ãã£ãŒèªã远å ïŒãããªã°ãããé³å£°ã«ããèšèªåãæ¿ãæ©èœãèªç¶ãªã¿ãŒã³ãã€ãã³ã°ãã¯ãã¹ã¢ãŒãã«ã€ã³ã¿ã©ã¯ã·ã§ã³ãéåæããŒã«åŒã³åºããªã©ãå®çšçãªé³å£° AI ã¢ããªã±ãŒã·ã§ã³éçºã«åœ¹ç«ã€æ©èœã玹ä»ãããŠããŸãã ããã°èšäºã é«éã§è²»çšå¯Ÿå¹æã®é«ãæšè«ã¢ãã«ãAmazon Nova 2 Lite ã®çŽ¹ä» ããå
¬é Amazon Nova 2 Lite ã¯ãæ¥åžžã®ã¯ãŒã¯ããŒãã«å¯Ÿå¿ããé«éã§è²»çšå¯Ÿå¹æã®é«ãæšè«ã¢ãã«ãšã㊠12 æ 2 æ¥ã«ãªãªãŒã¹ãããŸããããã®èšäºã§ã¯ãæ¡åŒµæèïŒExtended ThinkingïŒæ©èœã«ããæ®µéçãªæšè«ã100 äžããŒã¯ã³ã®ã³ã³ããã¹ããŠã£ã³ããŠããŠã§ãã°ã©ãŠã³ãã£ã³ã°ãšã³ãŒãã€ã³ã¿ãŒããªã¿ãŒã®çµã¿èŸŒã¿ããŒã«ãªã©ãNova 2 Lite ã®ç¹åŸŽã玹ä»ããŠããŸããããžãã¹ã¢ããªã±ãŒã·ã§ã³ããœãããŠã§ã¢ãšã³ãžãã¢ãªã³ã°ãããžãã¹ã€ã³ããªãžã§ã³ã¹ãªã©å¹
åºããŠãŒã¹ã±ãŒã¹ã§ã®æŽ»ç𿹿³ã解説ãããŠããŸãã ããã°èšäºã æ°ãã AWS Security Agent ã¯ãèšèšãããããã€ãŸã§ã¢ããªã±ãŒã·ã§ã³ãããã¢ã¯ãã£ãã«ä¿è·ããŸãïŒãã¬ãã¥ãŒïŒ ããå
¬é 2025 幎 12 æ 2 æ¥ã«çºè¡šããã AWS Security Agent ã¯ãéçºã©ã€ããµã€ã¯ã«å
šäœãéããŠã¢ããªã±ãŒã·ã§ã³ãç©æ¥µçã«ä¿è·ããããã³ãã£ã¢ãšãŒãžã§ã³ãã§ãããã®èšäºã§ã¯ãèšèšã»ãã¥ãªãã£ã¬ãã¥ãŒãã³ãŒãã»ãã¥ãªãã£ã¬ãã¥ãŒããªã³ããã³ã䟵å
¥ãã¹ãæ©èœãæäŸãã AWS Security Agent ã®è©³çްã解説ããŠããŸããAI ãæŽ»çšããèªåã»ãã¥ãªãã£ã¬ãã¥ãŒãšç¶æ³ã«å¿ãã䟵å
¥ãã¹ãã«ãããéçºã®æ©ã段éã§è匱æ§ãé²ãããšãã§ããåŸæ¥ã®æåããã»ã¹ãšæ¯èŒããŠå€§å¹
ãªæéççž®ãå®çŸããŸãã ããã°èšäºã Amazon Bedrock ãæŽ»çšãã倪éœå
çºé»ããŒã¿ã®ç°åžžæ€ç¥ã»åæã·ã¹ãã ã®æ§ç¯äºäŸ ããå
¬é æ ªåŒäŒç€Ÿãšããªã¹æ§ããã³ KDDI ã¢ãžã£ã€ã«éçºã»ã³ã¿ãŒæ ªåŒäŒç€Ÿæ§ãšå
±åã§å·çãããAmazon Bedrock ãæŽ»çšãã倪éœå
çºé»ããŒã¿ã®ç°åžžæ€ç¥ã»åæã·ã¹ãã ã®æ§ç¯äºäŸã玹ä»ããŠããŸãããã®èšäºã§ã¯ãAmazon Bedrock Agents ãš Amazon Bedrock Knowledge Bases ãçµã¿åãããŠã倪éœå
çºé»èšåã®éçšããŒã¿ããç°åžžãæ€ç¥ããåæçµæãèªç¶èšèªã§æäŸããã·ã¹ãã ã®å®è£
æ¹æ³ã解説ããŠããŸããçæ AI ãæŽ»çšããããŒã¿åæã®å®è·µçãªäºäŸãšããŠåèã«ãªããŸãã ããã°èšäºã Amazon Bedrock AgentCore ã«ã¯ãä¿¡é Œã§ãã AI ãšãŒãžã§ã³ãããããã€ããããã®å質è©äŸ¡ãšããªã·ãŒã³ã³ãããŒã«ã远å ãããŸãã ããå
¬é 2025 幎 12 æ 2 æ¥ã«çºè¡šããã Amazon Bedrock AgentCore ã®æ°æ©èœã«ã€ããŠè§£èª¬ããèšäºã§ããAgentCore ã®ããªã·ãŒæ©èœã«ãããè©³çŽ°ãªæš©éãæã€ããªã·ãŒã䜿çšããŠãšãŒãžã§ã³ãã¢ã¯ã·ã§ã³ã®æç¢ºãªå¢çãå®çŸ©ã§ããŸããAgentCore Evaluations ã§ã¯ãçµã¿èŸŒã¿ãšããªã¥ãšãŒã¿ãŒã䜿çšããŠå®éã®è¡åã«åºã¥ããŠãšãŒãžã§ã³ãã®è³ªãã¢ãã¿ãªã³ã°ããŸãããŸããAgentCore Memory ã®ãšããœãŒãæ©èœã«ããããšãŒãžã§ã³ããçµéšããåŠã³ãå°æ¥ã®åæ§ã®ã¿ã¹ã¯ã®äžè²«æ§ãšããã©ãŒãã³ã¹ãåäžãããããšãã§ããŸãã ããã°èšäºã Amazon Bedrockã¯ãéçºè
ãããè³¢ããããæ£ç¢ºãªAIã¢ãã«ãæ§ç¯ããæ¹æ³ãç°¡çŽ åãã匷ååŠç¿ã«ãããã¡ã€ã³ãã¥ãŒãã³ã°ã远å ããŸãã ããå
¬é Amazon Bedrock ã«æ°ãã«è¿œå ããã匷ååŠç¿ãã¡ã€ã³ãã¥ãŒãã³ã°æ©èœã«ã€ããŠè©³ãã解説ããèšäºã§ããåŸæ¥ã®å€§èŠæš¡ãªã©ãã«ä»ãããŒã¿ã»ãããå¿
èŠãšããææ³ãšã¯ç°ãªãããã£ãŒãããã¯ããåŠç¿ããŠã¢ãã«ãæ¹åããæ°ããã¢ãããŒãã玹ä»ããŠããŸããåºæ¬ã¢ãã«ãšæ¯èŒããŠå¹³å 66% ã®ç²ŸåºŠåäžãå®çŸããæ·±ãæ©æ¢°åŠç¿ã®å°éç¥èãªãã«é«åºŠãªã¢ãã«ã«ã¹ã¿ãã€ãºãå¯èœã«ãªãããšã説æãããŠããŸãã ããã°èšäºã MCP ãçšãã Amazon Connect ã®ç£èŠéçšæºå ããå
¬é Model Context Protocol (MCP) ãšçæ AI ãæŽ»çšã㊠Amazon Connect ã®ç£èŠæ©èœã匷åããæ¹æ³ã玹ä»ããèšäºã§ããMCP ãš Amazon Connect ã®çµã¿åããã«ããããããŒå¹çã®åæãç£èŠèšå®ã®æé©åãªã©ãèªç¶èšèªã§çŽæçã«è¡ããããã«ãªããã³ã³ã¿ã¯ãã»ã³ã¿ãŒã®éçšæºåäœå¶ã®åäžã«åœ¹ç«ã€ããšã解説ãããŠããŸãã ããã°èšäºã å°å£²æ¥ã®æªæ¥ãèªã¿è§£ãïŒAI ã·ã§ããã³ã°ãšãŒãžã§ã³ãã®æŽ»çš ããå
¬é AI ãæŽ»çšããã·ã§ããã³ã°ãšãŒãžã§ã³ããå°å£²æ¥çã«äžãã圱é¿ãšãModel Context Protocol (MCP) ãæŽ»çšãã察å¿çã«ã€ããŠè§£èª¬ããèšäºã§ããAI ãšãŒãžã§ã³ããååçºèŠãšè³Œå
¥æ¹æ³ãæ ¹æ¬çã«å€é©ããäžã§ãå°å£²äŒæ¥ã AWS äžã« MCP ãµãŒããŒãæ§ç¯ããããšã§ãAI ãšãŒãžã§ã³ããšã®çŽæ¥çãªé¢ä¿ãç¯ããç«¶äºåªäœæ§ã確ä¿ããæ¹æ³ã玹ä»ããŠããŸãã ããã°èšäºã AWS Transform discovery tool ã®çŽ¹ä» ããå
¬é VMware ã€ã³ãã©ã¹ãã©ã¯ãã£ã«ãããã€ãã Open Virtual ApplianceïŒOVAïŒãšããŠæäŸããã AWS Transform discovery tool ã«ã€ããŠè§£èª¬ããèšäºã§ããã¯ã©ãŠãæ¥ç¶ãå€éšäŸåé¢ä¿ãå¿
èŠãšããã«ãªã³ãã¬ãã¹ã§ãããã€ã§ããèªå·±å®çµåã¢ããªã±ãŒã·ã§ã³ãšããŠåäœããã¯ãŒã¯ããŒãããããã©ãŒãã³ã¹ããŒã¿ãšãããã¯ãŒã¯æ¥ç¶ããŒã¿ãåéããŸãã峿 Œã«èŠå¶ãããæ¥çãã峿 ŒãªããŒã¿ã¬ããã³ã¹èŠä»¶ãæã€çµç¹ã§ã®ç§»è¡æºåã«é©ããŠããŸãã ããã°èšäºã Amazon SageMaker AI ã®æ°ãããµãŒããŒã¬ã¹ã«ã¹ã¿ãã€ãºã«ãããã¢ãã«ã®ãã¡ã€ã³ãã¥ãŒãã³ã°ãå éããŸã ããå
¬é Amazon NovaãDeepSeekãGPT-OSSãLlamaãQwen ãªã©ã®äººæ°ã® AI ã¢ãã«åãã® Amazon SageMaker AI ã®æ°ãããµãŒããŒã¬ã¹ã«ã¹ã¿ãã€ãºæ©èœã«ã€ããŠè§£èª¬ããèšäºã§ãã匷ååŠç¿ãªã©ã®ææ°ãã¡ã€ã³ãã¥ãŒãã³ã°ææ³ãç°¡åã«æäœã§ããã€ã³ã¿ãŒãã§ã€ã¹ãæäŸããAI ã¢ãã«ã®ã«ã¹ã¿ãã€ãºããã»ã¹ãæ°ãæããæ°æ¥ã«ççž®ã§ããŸããå®å
šã«ãµãŒããŒã¬ã¹ã§å®è¡ããããããã€ã³ãã©ç®¡çã§ã¯ãªãã¢ãã«ã®ãã¥ãŒãã³ã°ã«å°å¿µã§ããŸãã ããã°èšäºã Amazon SageMaker HyperPod ã§ã®ãã§ãã¯ãã€ã³ããªããã€åŒŸåçãªãã¬ãŒãã³ã°ã®çŽ¹ä» ããå
¬é Amazon SageMaker HyperPod ã«ããã 2 ã€ã®æ°ãã AI ã¢ãã«èšç·Žæ©èœã«ã€ããŠè§£èª¬ããèšäºã§ãããã§ãã¯ãã€ã³ãã¬ã¹ãã¬ãŒãã³ã°ã¯ãåŸæ¥ã®ãã§ãã¯ãã€ã³ãããŒã¹ã®ãªã«ããªãŒã®å¿
èŠæ§ã軜æžããæ°æéãããåŸ©æ§æéãæ°åã«ççž®ããŸãããšã©ã¹ãã£ãã¯ãã¬ãŒãã³ã°ã¯ããªãœãŒã¹ã®å¯çšæ§ã«åºã¥ã㊠AI ã¯ãŒã¯ããŒããèªåçã«ã¹ã±ãŒã«ãããããšãå¯èœã«ããã¯ã©ã¹ã¿ãŒã®å©çšå¹çãæå€§åããŸãã ãµãŒãã¹ã¢ããããŒã Amazon Quick Suite ã§ã¬ããŒãèªååã®ããã® Research ãš Flow ã®çµ±åæ©èœãçºè¡š Amazon Quick Suite ã«ãããŒã¿åæãšç ç©¶ã¯ãŒã¯ãããŒãèªååããæ°æ©èœã远å ãããŸããããã®æ©èœã«ãããè€éãªããŒã¿åæããã»ã¹ãèªååããã¬ããŒãçæã®å¹çåãå¯èœã«ãªããŸããçæ AI ãæŽ»çšããã€ã³ãµã€ãæœåºãšçµã¿åãããããšã§ãããé«åºŠãªããžãã¹ã€ã³ããªãžã§ã³ã¹æ©èœãæäŸããŸãã Amazon Aurora PostgreSQL ã§ Kiro powers çµ±åãçºè¡š Amazon Aurora PostgreSQL ã«ãAI éçºãã©ãããã©ãŒã Kiro ãšã®çµ±åæ©èœã远å ãããŸããããã®çµ±åã«ãããããŒã¿ããŒã¹æäœãš AI éçºã¯ãŒã¯ãããŒãã·ãŒã ã¬ã¹ã«é£æºãããããšãå¯èœã«ãªããããŒã¿ããªãã³ãª AI ã¢ããªã±ãŒã·ã§ã³ã®éçºå¹çãåäžããŸãã ä»é±ã¯ä»¥äžã§ããããã§ã¯ããŸãæ¥é±ãäŒãããŸãããïŒ èè
ã«ã€ã㊠äžåš èª (Wataru MIKURIYA) AWS Japan ã®ãœãªã¥ãŒã·ã§ã³ã¢ãŒããã¯ã (SA) ãšããŠããã«ã¹ã±ã¢ã»ãã€ãã¯è£œé æ¥ã®ã客æ§ã®ã¯ã©ãŠã掻çšãæè¡çãªåŽé¢ã»ããžãã¹çãªåŽé¢ã®åæ¹ããæ¯æŽããŠããŸããã¯ã©ãŠãã¬ããã³ã¹ã IaC åéã«èå³ããããæè¿ã¯ãããã®åéã®çæ AI å¿çšã«ãèå³ããããŸããæè¿èŠãæ ç»ã¯ãèãç·šããã§ãã
æ¬ããã°ã¯ 2025 幎 12 æ 4 æ¥ã«å
¬éããã AWS Blog â China-nexus cyber threat groups rapidly exploit React2Shell vulnerability (CVE-2025-55182) â ã翻蚳ãããã®ã§ãã 2025 幎 12 æ 12 æ¥: ReactJS ããŒãžã§ã³ã®æŽæ°ãå¿
èŠãšãªãã¿ã€ãã³ã°ãæç¢ºã«ããããããã®ããã°èšäºãæŽæ°ããŸããã 2025 幎 12 æ 3 æ¥ã« CVE-2025-55182 (React2Shell) ãå
¬éãããŠããæ°æé以å
ã«ãAmazon ã®è
åšã€ã³ããªãžã§ã³ã¹ããŒã ã¯ãEarth Lamia ã Jackpot Panda ãå«ãè€æ°ã®äžåœåœå®¶æ¯æŽåè
åšã°ã«ãŒãã«ããæŽ»çºãªæªçšè©Šè¡ã芳枬ããŸãããReact Server Components ã«ããããã®é倧ãªè匱æ§ã¯ãå
±éè匱æ§è©äŸ¡ã·ã¹ãã (CVSS) ã¹ã³ã¢ãæå€§å€ã® 10.0 ã§ãããApp Router ã䜿çšããŠãã React ããŒãžã§ã³ 19.x ããã³ Next.js ããŒãžã§ã³ 15.x ãš 16.x ã«åœ±é¿ããŸãããã®è匱æ§ã¯ AWS ãµãŒãã¹ã«ã¯åœ±é¿ããŸããããã客æ§èªèº«ã®ç°å¢ã§ React ãŸã㯠Next.js ã¢ããªã±ãŒã·ã§ã³ãå®è¡ããŠããã客æ§ãçŽã¡ã«å¯Ÿå¿ã§ããããããã®è
åšã€ã³ããªãžã§ã³ã¹ãå
±æããŸãã äžåœã¯åŒãç¶ãåœå®¶æ¯æŽåãµã€ããŒè
åšã¢ã¯ãã£ããã£ã®æã掻çºãªçºä¿¡æºã§ãããè
åšã¢ã¯ã¿ãŒã¯å
¬éãšã¯ã¹ããã€ããé瀺ããæ°æéãŸãã¯æ°æ¥ä»¥å
ã«æ¥åžžçã«å®æŠæå
¥ããŠããŸãã AWS MadPot ãããŒãããã€ã³ãã©ã¹ãã©ã¯ãã£ã§ã®ç£èŠãéããŠãAmazon ã®è
åšã€ã³ããªãžã§ã³ã¹ããŒã ã¯ãæ¢ç¥ã®ã°ã«ãŒããšãããŸã§æªç¹å®ã ã£ãè
åšã°ã«ãŒãã®äž¡æ¹ã CVE-2025-55182 ã®æªçšã詊ã¿ãŠããããšãç¹å®ããŸãããAWS ã¯ãSonaris ã¢ã¯ãã£ããã£ãã§ã³ã¹ã AWS WAF ãããŒãžãã«ãŒã« ( AWSManagedRulesKnownBadInputsRuleSet ããŒãžã§ã³ 1.24 以é)ãããã³å¢çã»ãã¥ãªãã£ã³ã³ãããŒã«ãéããŠãè€æ°å±€ã®èªåä¿è·ããããã€ããŠããŸãããã ãããããã®ä¿è·ã¯ãããé©çšã®ä»£æ¿ã«ã¯ãªããŸãããã客æ§ããã«ãããŒãžã AWS ãµãŒãã¹ã䜿çšããŠãããã©ããã«é¢ããããã客æ§ã®ç°å¢ã§åœ±é¿ãåããããŒãžã§ã³ã® React ãŸã㯠Next.js ãå®è¡ããŠããå Žåã¯ãçŽã¡ã«ææ°ã®ãããé©çšæžã¿ããŒãžã§ã³ã«æŽæ°ããå¿
èŠããããŸããã客æ§èªèº«ã®ç°å¢ ( Amazon Elastic Compute Cloud (Amazon EC2) ãã³ã³ãããªã©) ã§ React ãŸã㯠Next.js ãå®è¡ããŠããã客æ§ã¯ãè匱ãªã¢ããªã±ãŒã·ã§ã³ãçŽã¡ã«æŽæ°ããå¿
èŠããããŸãã CVE-2025-55182 (React2Shell) ã®çè§£ Lachlan Davidson ã«ãã£ãŠçºèŠããã2025 幎 11 æ 29 æ¥ã« React ããŒã ã«é瀺ããã CVE-2025-55182 ã¯ãReact Server Components ã«ãããå®å
šã§ãªããã·ãªã¢ã©ã€ãŒãŒã·ã§ã³è匱æ§ã§ãããã®è匱æ§ã¯ã»ãã¥ãªãã£ç ç©¶è
ã«ãã£ãŠ React2Shell ãšåä»ããããŸããã äž»èŠãªäºå® CVSS ã¹ã³ã¢ : 10.0 (æå€§æ·±å»åºŠ) æ»æãã¯ãã« : èªèšŒäžèŠã®ãªã¢ãŒãã³ãŒãå®è¡ 圱é¿ãåããã³ã³ããŒãã³ã : React 19.x ããã³ App Router ã䜿çšãã Next.js 15.x/16.x ã® React Server Components éèŠãªè©³çް : React Server Components ããµããŒãããŠããéãããµãŒããŒé¢æ°ãæç€ºçã«äœ¿çšããŠããªããŠãã¢ããªã±ãŒã·ã§ã³ã¯è匱ã§ã ãã®è匱æ§ã¯ Vercel ã«ãã£ãŠ Meta ããã³ AWS ãå«ãäž»èŠãªã¯ã©ãŠããããã€ããŒã«è²¬ä»»ãæã£ãŠé瀺ãããè匱æ§ã®å
¬éé瀺åã«å調çãªãããé©çšãšä¿è·ã®ãããã€ãå¯èœã«ãªããŸããã CVE-2025-55182 ãæªçšããŠããã®ã¯èª°ã AWS MadPot ãããŒãããã€ã³ãã©ã¹ãã©ã¯ãã£ã«ãããæªçšè©Šè¡ã®åæã«ãããæ¢ç¥ã®äžåœåœå®¶æ¯æŽåè
åšã¢ã¯ã¿ãŒã«æŽå²çã«é¢é£ãã IP ã¢ãã¬ã¹ãšã€ã³ãã©ã¹ãã©ã¯ãã£ããã®æªçšã¢ã¯ãã£ããã£ãç¹å®ããŸãããäžåœã®è
åšã°ã«ãŒãéã§å¿ååã€ã³ãã©ã¹ãã©ã¯ãã£ãå
±æãããŠãããããæ»æäž»äœã®æç¢ºãªç¹å®ã¯å°é£ã§ãã Earth Lamia ã«é¢é£ããã€ã³ãã©ã¹ãã©ã¯ã㣠: Earth Lamia ã¯ãã©ãã³ã¢ã¡ãªã«ãäžæ±ãæ±åã¢ãžã¢ã®çµç¹ãæšçãšããããã« Web ã¢ããªã±ãŒã·ã§ã³ã®è匱æ§ãæªçšããããšã§ç¥ãããäžåœé¢é£ã®ãµã€ããŒè
åšã¢ã¯ã¿ãŒã§ãããã®ã°ã«ãŒãã¯æŽå²çã«ãéèãµãŒãã¹ãç©æµãå°å£²ãIT äŒæ¥ã倧åŠãæ¿åºçµç¹ãªã©ã®ã»ã¯ã¿ãŒãæšçãšããŠããŸãã Jackpot Panda ã«é¢é£ããã€ã³ãã©ã¹ãã©ã¯ã㣠: Jackpot Panda ã¯ãäž»ã«æ±ã¢ãžã¢ããã³æ±åã¢ãžã¢ã®ãšã³ãã£ãã£ãæšçãšããäžåœé¢é£ã®ãµã€ããŒè
åšã¢ã¯ã¿ãŒã§ãããã®ã¢ã¯ãã£ããã£ã¯ãåœå
ã®å®å
šä¿éãšæ±è·ã«é¢ããæžå¿µã«é¢é£ããåéã®åªå
äºé
ãšäžèŽããŠããå¯èœæ§ããããŸã å
±æå¿ååã€ã³ãã©ã¹ãã©ã¯ã㣠: å€§èŠæš¡ãªå¿ååãããã¯ãŒã¯ã¯äžåœã®ãµã€ããŒäœæŠã®ç¹åŸŽãšãªã£ãŠãããæ»æå
ãé ããªããåµå¯ãæªçšãã³ãã³ã&ã³ã³ãããŒã« (C2) ã¢ã¯ãã£ããã£ãå¯èœã«ããŠããŸãããããã®ãããã¯ãŒã¯ã¯è€æ°ã®è
åšã°ã«ãŒãã«ãã£ãŠåæã«äœ¿çšããããããç¹å®ã®ã¢ã¯ãã£ããã£ãåã
ã®ã¢ã¯ã¿ãŒã«çµã³ã€ããããšãå°é£ã«ãªã£ãŠããŸã ããã¯ãäžåœé¢é£ã®ãµã€ããŒè
åšã¢ã¯ãã£ããã£ãšå
±éæ§ãæã€ä»ã®å€ãã®æ»æäž»äœäžæã®è
åšã°ã«ãŒãã«å ããŠã®ãã®ã§ããæ»æäž»äœäžæã®ã¢ã¯ãã£ããã£ã§èŠ³æž¬ãããèªåŸã·ã¹ãã çªå· (ASN) ã®å€§éšåã¯äžåœã®ã€ã³ãã©ã¹ãã©ã¯ãã£ã«é¢é£ããŠãããã»ãšãã©ã®æªçšã¢ã¯ãã£ããã£ããã®å°åããçºçããŠããããšãããã«ç¢ºèªããŠããŸãããããã®ã°ã«ãŒããå
¬éæŠå¿µå®èšŒ (PoC) ãšã¯ã¹ããã€ãã宿пå
¥ããéãã¯ãé倧ãªäºå®ãæµ®ã圫ãã«ããŠããŸããããªãã¡ãPoC ãã€ã³ã¿ãŒãããã«å
¬éããããšãé«åºŠãªè
åšã¢ã¯ã¿ãŒã¯ããããè¿
éã«æŠåšåãããšããããšã§ãã æªçšããŒã«ãšæè¡ è
åšã¢ã¯ã¿ãŒã¯ãèªåã¹ãã£ã³ããŒã«ãšåå¥ã® PoC ãšã¯ã¹ããã€ãã®äž¡æ¹ã䜿çšããŠããŸãã芳枬ãããäžéšã®èªåããŒã«ã«ã¯ããŠãŒã¶ãŒãšãŒãžã§ã³ãã®ã©ã³ãã åãªã©ã®æ€åºã黿¢ããæ©èœããããŸãããããã®ã°ã«ãŒãã¯ãCVE-2025-55182 ã«ã¢ã¯ãã£ããã£ãéå®ããŠããŸãããAmazon ã®è
åšã€ã³ããªãžã§ã³ã¹ããŒã ã¯ãCVE-2025-1338 ãå«ãä»ã®æè¿ã® N-day è匱æ§ãåæã«æªçšããŠããããšã芳枬ããŸãããããã¯äœç³»çãªã¢ãããŒãã瀺ããŠããŸããè
åšã¢ã¯ã¿ãŒã¯æ°ããè匱æ§ã®é瀺ãç£èŠããå
¬éãšã¯ã¹ããã€ããã¹ãã£ã³ã€ã³ãã©ã¹ãã©ã¯ãã£ã«è¿
éã«çµ±åããè€æ°ã® CVE ã«ããã£ãŠåºç¯ãªãã£ã³ããŒã³ãåæã«å®æœããŠãè匱ãªã¿ãŒã²ãããèŠã€ããå¯èœæ§ãæå€§åããŸãã å
¬é PoC ã®çŸå®: å質ããé 調æ»ããã®æ³šç®ãã¹ã芳å¯ã¯ãå€ãã®è
åšã¢ã¯ã¿ãŒãå®éã®ã·ããªãªã§ã¯å®éã«ã¯æ©èœããªãå
¬é PoC ã䜿çšããããšããŠããããšã§ããGitHub ã»ãã¥ãªãã£ã³ãã¥ããã£ã¯ãè匱æ§ã®ä»çµã¿ãæ£ããçè§£ããŠããªãè€æ°ã® PoC ãç¹å®ããŠããŸãã äžéšã®æªçšå¯èœãªã¢ããªã±ãŒã·ã§ã³ã®äŸã§ã¯ããµãŒããŒãããã§ã¹ãã«å±éºãªã¢ãžã¥ãŒã« ( fs ã child_process ã vm ) ãæç€ºçã«ç»é²ããŠããŸãããããã¯å®éã®ã¢ããªã±ãŒã·ã§ã³ã§ã¯æ±ºããŠè¡ãã¹ãã§ã¯ãããŸãã ããã€ãã®ãªããžããªã«ã¯ãå®å
šãªããŒãžã§ã³ã«ããããé©çšããåŸã§ãè匱ãªãŸãŸã«ãªãã³ãŒããå«ãŸããŠããŸã å€ãã®å
¬é PoC ã®æè¡çäžåã«ãããããããè
åšã¢ã¯ã¿ãŒã¯äŸç¶ãšããŠãããã䜿çšããããšããŠããŸããããã¯ããã€ãã®éèŠãªãã¿ãŒã³ã瀺ããŠããŸãã æ£ç¢ºæ§ããé床 : è
åšã¢ã¯ã¿ãŒã¯åŸ¹åºçãªãã¹ããããè¿
éãªå®æŠæå
¥ãåªå
ããå©çšå¯èœãªä»»æã®ããŒã«ã§ã¿ãŒã²ãããæªçšããããšããŸã ããªã¥ãŒã ããŒã¹ã®ã¢ãããŒã : è€æ°ã® PoC (æ©èœããªããã®ã§ã) ã§åºç¯ã«ã¹ãã£ã³ããããšã§ãã¢ã¯ã¿ãŒã¯è匱ãªèšå®ã®ããããªå²åãèŠã€ããããšãæåŸ
ããŠããŸã åå
¥éå£ã®äœã : å
¬éãšã¯ã¹ããã€ãã®å©çšå¯èœæ§ã¯ãæ¬ é¥ããã£ãŠããããæŽç·ŽãããŠããªãã¢ã¯ã¿ãŒãæªçšãã£ã³ããŒã³ã«åå ããããšãå¯èœã«ããŸã ãã€ãºã®çæ : 倱æããæªçšè©Šè¡ã¯ãã°ã«å€§éã®ãã€ãºãçæããããé«åºŠãªæ»æãé ãå¯èœæ§ããããŸã æç¶çãã€äœç³»çãªæ»æãã¿ãŒã³ MadPot ããã®ããŒã¿åæã«ããããããã®æªçšè©Šè¡ã®æç¶çãªæ§è³ªãæããã«ãªããŸãããæ³šç®ãã¹ãäŸãšããŠãIP ã¢ãã¬ã¹ 183[.]6.80.214 ã«é¢é£ããæ»æäž»äœäžæã®ã¢ã¯ãã£ããã£ã®è
åšã°ã«ãŒãããçŽ 1 æé (2025/12/4 02:30:17 ã 03:22:48 UTC) ã«ããã£ãŠäœç³»çã«æªçšè©Šè¡ã®ãã©ãã«ã·ã¥ãŒãã£ã³ã°ãè¡ããŸããã 52 åéã§åèš 116 ä»¶ã®ãªã¯ãšã¹ã è€æ°ã®ãšã¯ã¹ããã€ããã€ããŒããè©Šè¡ Linux ã³ãã³ã ( whoami ã id ) ã®å®è¡ãè©Šè¡ /tmp/pwned.txt ãžã®ãã¡ã€ã«æžã蟌ã¿ãè©Šè¡ /etc/passwd ã®èªã¿åããè©Šè¡ ãã®åäœã¯ãè
åšã¢ã¯ã¿ãŒãåã«èªåã¹ãã£ã³ãå®è¡ããŠããã ãã§ãªããå®éã®ã¿ãŒã²ããã«å¯ŸããŠæªçšæè¡ãç©æ¥µçã«ãããã°ããæ¹è¯ããŠããããšã瀺ããŠããŸãã AWS ã«ããã客æ§ã®ä¿è· AWS ã¯ãã客æ§ãä¿è·ããããã«è€æ°å±€ã®ä¿è·ããããã€ããŸããã Sonaris ã¢ã¯ãã£ããã£ãã§ã³ã¹ AWS ã® Sonaris è
åšã€ã³ããªãžã§ã³ã¹ã·ã¹ãã ã¯ããã®è匱æ§ãæšçãšããæªæã®ããã¹ãã£ã³è©Šè¡ãèªåçã«æ€åºããå¶éããŸãããSonaris ã¯æ¯å 2,000 åãè¶
ããã€ãã³ããåæããMadPot ãããŒããããããã¯ãŒã¯ããã®è
åšã€ã³ããªãžã§ã³ã¹ãçµ±åããŠãæªçšè©Šè¡ããªã¢ã«ã¿ã€ã ã§ç¹å®ããããã¯ããŸãã AWS WAF ãããŒãžãã«ãŒã« AWS WAF AWSManagedRulesKnownBadInputsRuleSet ã®ããã©ã«ãããŒãžã§ã³ (1.24 以é) ã«ã¯ãCVE-2025-55182 ã«å¯Ÿå¿ããæŽæ°ãããã«ãŒã«ãå«ãŸããŠããããããŒãžãã«ãŒã«ã»ããã§ AWS WAF ã䜿çšããŠããã客æ§ã«èªåä¿è·ãæäŸããŸãã MadPot ã€ã³ããªãžã§ã³ã¹ AWS ã®ã°ããŒãã«ãããŒãããã·ã¹ãã ã¯ãæªçšè©Šè¡ã®æ©ææ€åºãæäŸããè¿
éãªå¯Ÿå¿ãšè
åšåæãå¯èœã«ããŸããã Amazon è
åšã€ã³ããªãžã§ã³ã¹ Amazon è
åšã€ã³ããªãžã§ã³ã¹ããŒã ã¯ãAWS ã€ã³ãã©ã¹ãã©ã¯ãã£ãä¿è·ããããã« CVE-2025-55182 ã®æªçšè©Šè¡ãç©æ¥µçã«èª¿æ»ããŠããŸããã客æ§ã®ã€ã³ãã©ã¹ãã©ã¯ãã£ã䟵害ãããå
åãç¹å®ããå ŽåãAWS ãµããŒããéããŠéç¥ããŸãããã ããã¢ããªã±ãŒã·ã§ã³å±€ã®è匱æ§ã¯ããããã¯ãŒã¯ãã¬ã¡ããªã ãã§ã¯å
æ¬çã«æ€åºããããšãå°é£ã§ããAWS ããã®éç¥ãåŸ
ããªãã§ãã ããã éèŠ : ãããã®ä¿è·ã¯ãããé©çšã®ä»£æ¿ã«ã¯ãªããŸãããã客æ§èªèº«ã®ç°å¢ (Amazon EC2ãã³ã³ãããªã©) ã§ React ãŸã㯠Next.js ãå®è¡ããŠããã客æ§ã¯ãè匱ãªã¢ããªã±ãŒã·ã§ã³ãçŽã¡ã«æŽæ°ããå¿
èŠããããŸãã çŽã¡ã«æšå¥šãããå¯Ÿå¿ è匱㪠React/Next.js ã¢ããªã±ãŒã·ã§ã³ãæŽæ°ããŠãã ããã圱é¿ãåããããŒãžã§ã³ãšãããé©çšæžã¿ããŒãžã§ã³ã«ã€ããŠã¯ãAWS ã»ãã¥ãªãã£éå ± ( https://aws.amazon.com/security/security-bulletins/AWS-2025-030/ ) ãåç
§ããŠãã ãã æ«å®çãªä¿è·ãšããŠãã«ã¹ã¿ã AWS WAF ã«ãŒã«ããããã€ããŠãã ãã (ã«ãŒã«ã¯ã»ãã¥ãªãã£éå ±ã«èšèŒãããŠããŸã) ã¢ããªã±ãŒã·ã§ã³ããã³ Web ãµãŒããŒã®ãã°ã§äžå¯©ãªã¢ã¯ãã£ããã£ã確èªããŠãã ãã next-action ãŸã㯠rsc-action-id ããããŒãå«ã POST ãªã¯ãšã¹ããæ¢ããŠãã ãã ã¢ããªã±ãŒã·ã§ã³ãµãŒããŒã§äºæããªãããã»ã¹å®è¡ããã¡ã€ã«å€æŽã確èªããŠãã ãã ã¢ããªã±ãŒã·ã§ã³ã䟵害ãããå¯èœæ§ããããšæãããå Žåã¯ã ã€ã³ã·ãã³ã察å¿ã®æ¯æŽã«ã€ããŠçŽã¡ã« AWS ãµããŒãã±ãŒã¹ãéããŠãã ãã ã æ³š: ãããŒãžã AWS ãµãŒãã¹ã䜿çšããŠããã客æ§ã¯åœ±é¿ãåããã察å¿ã¯äžèŠã§ãã äŸµå®³ææš (IoC) ãããã¯ãŒã¯ææš next-action ãŸã㯠rsc-action-id ããããŒãå«ãã¢ããªã±ãŒã·ã§ã³ãšã³ããã€ã³ããžã® HTTP POST ãªã¯ãšã¹ã $@ ãã¿ãŒã³ãå«ããªã¯ãšã¹ããã㣠"status":"resolved_model" ãã¿ãŒã³ãå«ããªã¯ãšã¹ããã㣠ãã¹ãããŒã¹ææš åµå¯ã³ãã³ã ( whoami ã id ã uname ) ã®äºæããªãå®è¡ /etc/passwd ã®èªã¿åãè©Šè¡ /tmp/ ãã£ã¬ã¯ããªãžã®äžå¯©ãªãã¡ã€ã«æžã蟌㿠(äŸ: pwned.txt ) Node.js/React ã¢ããªã±ãŒã·ã§ã³ããã»ã¹ã«ãã£ãŠçæãããæ°ããããã»ã¹ è
åšã¢ã¯ã¿ãŒã®ã€ã³ãã©ã¹ãã©ã¯ã㣠IP ã¢ãã¬ã¹, ã¢ã¯ãã£ããã£æ¥, æ»æäž»äœ 206[.]237.3.150, 2025-12-04, Earth Lamia 45[.]77.33.136, 2025-12-04, Jackpot Panda 143[.]198.92.82, 2025-12-04, å¿ååãããã¯ãŒã¯ 183[.]6.80.214, 2025-12-04, æ»æäž»äœäžæã®è
åšã°ã«ãŒã 远å ãªãœãŒã¹ AWS ã»ãã¥ãªãã£éå ±: CVE-2025-55182 https://aws.amazon.com/security/security-bulletins/AWS-2025-030/ AWS WAF ããã¥ã¡ã³ã: https://docs.aws.amazon.com/waf/ React ããŒã ã»ãã¥ãªãã£ã¢ããã€ã¶ãª: https://react.dev/blog/2025/12/03/react-server-components-security-advisory ã質åãããå Žåã¯ã AWS ãµããŒãã«ãåãåãããã ãã ã CJ Moses CJ Moses 㯠Amazon Integrated Security ã® CISO ã§ããCJ 㯠Amazon å
šäœã®ã»ãã¥ãªãã£ãšã³ãžãã¢ãªã³ã°ãšéçšãçµ±æ¬ããŠããŸãã圌ã®äœ¿åœã¯ãã»ãã¥ãªãã£ãæãå°å
¥ããããéžæè¢ãšããããšã§ãAmazon ã®ããžãã¹ãæ¯æŽããããšã§ããCJ 㯠2007 幎 12 æã« Amazon ã«å
¥ç€ŸããConsumer CISOããããŠæè¿ã§ã¯ AWS CISO ãªã©ãããŸããŸãªåœ¹å²ãæ
åœããåŸã2023 幎 9 æã« Amazon Integrated Security ã® CISO ã«å°±ä»»ããŸããã Amazon ã«å
¥ç€ŸããåãCJ ã¯é£éŠææ»å± (FBI) ã®ãµã€ããŒéšéã§ã³ã³ãã¥ãŒã¿ããã³ãããã¯ãŒã¯äŸµå
¥ã¢ã¯ãã£ããã£ã®æè¡åæãäž»å°ããŠããŸãããCJ ã¯ç©ºè»ç¹å¥ææ»å± (AFOSI) ã®ç¹å¥ææ»å®ãåããŸãããCJ ã¯ã仿¥ã®ã»ãã¥ãªãã£æ¥çã®åºç€ãšãªãããã€ãã®ã³ã³ãã¥ãŒã¿äŸµå
¥èª¿æ»ãäž»å°ããŸããã CJ ã¯ã³ã³ãã¥ãŒã¿ãµã€ãšã³ã¹ãšåäºåžæ³ã®åŠäœãæã¡ãã¢ã¯ãã£ã㪠SRO GT America GT2 ã¬ãŒã¹ã«ãŒãã©ã€ããŒã§ããããŸãã æ¬ããã°ã¯ Security Solutions Architect ã® äžå³¶ ç« å ã翻蚳ããŸããã
ããã«ã¡ã¯ããããã¿ã€ãã³ã°ãœãªã¥ãŒã·ã§ã³ã¢ãŒããã¯ãã® åžå·ã§ããæ¬æ¥ã¯ AWS Summit 2025 ã IoT@Loft ã«ããç»å£ããã ãããã©ã¶ãŒå·¥æ¥æ ªåŒäŒç€Ÿã§ IoT ãã©ãããã©ãŒã ã®éçºã»éçšã«æºãã£ãŠããã£ãããP&Säºæ¥ SCéçºéšã®ç§å°» æ°ãš 墚 æ° ã«ãæéãããã ããã€ãã³ãã§ã¯èªããããªãã£ã Deep ãªè©±ã«ã€ããŠè³ªåãããŠããã ããŸããã èªå·±çŽ¹ä» åžå·: æ¬æ¥ã¯ãããããé¡ãããŸããã€ãã³ãã®åç»ãã¹ã©ã€ãã§ã玹ä»ãããŠããŸãããç°¡åã«ãäºäººã®èªå·±ç޹ä»ããé¡ãã§ããŸãã§ããããïŒ ç§å°»: æ° IoT ãã©ãããã©ãŒã éçºã®ãããã¯ããªãŒããŒãåããŸãããããŒã ã¡ã³ããŒã«æµãŸãããšãŠãå
å®ããéçºãçµéšã§ããŸãããæ°å€ãã®èšèšå€æãããŸããããâçç±ããæ®ãã°ãããšã§ããŒã ãšãšãã«ä¿®æ£ã§ããâãšããã¹ã¿ã³ã¹ã§èšã¿ãŸãããã³ãŒããããããã¥ã¡ã³ãã ADRã»Wiki ããŒãžã 10 åæžããŸããã 墚: éçºã»å®è£
æ
åœãšããŠãIoT ãã©ãããã©ãŒã ã®éçºã«æºãããŸãããéçšãã§ãŒãºã«ç§»è¡ããŠããã¯ããããã¯ããªãŒããŒãç¶æ¿ããDevOps ã«ããæ¹åãç¶ããŠããŸãããŸã ãŸã ãšã³ãžãã¢æŽã¯æµ
ãã§ããããAWS ã®ãµãŒããŒã¬ã¹ãµãŒãã¹ãçµã¿åãããã°ãæ¬çªã·ã¹ãã ã®éçºãæããªãããšæããããã«ãªããŸããã IaC ã«ããå±äººåæé€ãšãªãœãŒã¹ç®¡çã®å·¥å€« åžå·: ã»ãã·ã§ã³ã§ã®ã話ã§ç¹ã«å°è±¡çã ã£ãã®ããIaC(CDK) ã«ãããããã€ã«å¶éããããšã§å±äººåãæé€ãããŠããåãçµã¿ã§ããããã®ããã«æ±ºããçµç·¯ã«ã€ããŠæããŠããã ããŸããïŒ ç§å°»: ã€ãã£ã IoT ãã©ãããã©ãŒã ãæ§ã
ãªäºæ¥ã»çšéã§äœ¿ã£ãŠãããããã«ã¯ãã©ã®ããã«åäºæ¥ã«æäŸããã°ãããããšããããšãèããŸãããæåäœæ¥ãå€ããšå°å
¥ã®æ·å±
ãé«ããªãäžãå°å
¥å
ããšã®å·®åãäºæããªã倿ŽãçºçããŠããŸããããããããŸãããªãã¹ãã³ãã³ã1ã€ã§ãŸã£ããåãæ§æã®ãã®ãäžåŒãããã€ã§ããããšãæãŸããã§ããããã§ãCDK ãå©çšã㊠IoT ãã©ãããã©ãŒã äžåŒãæ§æããé
åžã§ããããã«ããŸãããCDK ã«ã¯ TypeScript ãæ¡çšããã®ã§ãAWS Lambda 颿°ã®å®è£
èšèªãšãçµ±äžã§ããŸããã åžå·: è€æ°ã®ç°å¢ã管çããå Žåã¯ãIaC åãããããšã§ããã©ãããã©ãŒã ããšã«å·®åãåºãã«ç®¡çãã§ããŸãããããIoT ãã©ãããã©ãŒã ã§ã¯ãå
šäœã®ã¢ãŒããã¯ãã£ã®ãããªæ¯èŒçåºå®çãªéšåãšãThing ãèšŒææžã®ããã«éæå¢ããŠãããªãœãŒã¹ããããšæããŸãããã©ã®ç¯å²ã IaC ã§ç®¡çãããå¢ããŠãããªãœãŒã¹ã¯ã©ã®ããã«ç®¡çãããŠããã®ãã詳ããæããŠããã ããŸããïŒ ç§å°»: ç§ãã¡ã¯å€§ããã³ã³ãããŒã«ãã¬ãŒã³ãšããŒã¿ãã¬ãŒã³ã«åããŠèããŠããŸãã ãŸãã³ã³ãããŒã«ãã¬ãŒã³ã«ã€ããŠã¯ã3ã€ã®ã¬ãã«ã§ç®¡çãåããŠããŸããã©ã®ãããªçšéã»ç°å¢ã§ãã£ãŠãå
±é IoT ãã©ãããã©ãŒã ãšããŠæ§æã匷å¶ããéšå㯠CDK ã§ç®¡çãçšéããšã«èª¿æŽå¯èœã«ãããã®ã¯ CDK + ç°å¢å€æ°ã§ç®¡çããããŠäºæ¥ãçšéã»ãããã€ããç°å¢ããšã«éçšäžç°ãªããã®ã¯ CDK å€ã§ã®æåèšå®ãšããŠããŸãããŸã AWS Organizations ã«ãã£ãŠ AWS ã¢ã«ãŠã³ãã«é©çšãããæ§æèšå®ããããŸãã äžæ¹ã®ããŒã¿ãã¬ãŒã³ã«ã€ããŠã¯ãäºæ¥ã»çšéã»ç°å¢ããšã«éçšè
ã管çãã圢ã«ããŠããŸãã å
·äœçã«ã¯ããŸã CCoE ã管çãã AWS Organizations ã«ãã AWS Security HubãAmazon GuardDuty ãAWS CloudTrail ãAmazon Inspector ãªã©ã®èšå®ã AWS ã¢ã«ãŠã³ãåäœã§é©çšãããŸãã IoT ãã©ãããã©ãŒã ãšããŠã® IaC 管çã«ã¯ã AWS IoT Core ã®ã«ãŒã«ãThing ã«ä»äžããããªã·ãŒãAmazon API GatewayãAWS Lambda ãAmazon DynamoDBãAmazon SNSãAmazon S3ãAWS Identity and Access Management (IAM)ãAWS ConfigãAmazon CloudWatch ãªã©ã®æ§æå®çŸ©ãå«ããŠããŸãã IaC 管çãã€ã€ç°å¢å€æ°ã§èª¿æŽå¯èœã«ããŠããã®ã¯ãã¹ããŒãžåãç°å¢èå¥åãã¬ãã£ã¯ã¹ãAWS Lambda ã¡ã¢ãªãµã€ãºãåºåãã°ã¬ãã«èšå®ãAmazon DynamoDB ã Amazon CloudWatch Logs ã® TTLã»ä¿ææéããããŠäžéšæ©èœã®ãªã³ãªãïŒããŒã¿åºç€é£æºããã°ãžã®æ¬æãã³ãæç¡ãªã©ïŒã§ãã IaC 管çå€ã§æåéçšãšããŠããã®ã¯ãéçºè
ã®ããŒã«ãAmazon Route53 ãã¡ã€ã³ã»ACM èšŒææžãAWS IoT Core ã«ç»é²ãã CA èšŒææžãAPI Key ãªã©ã®èªèšŒæ
å ±ãç°åžžéç¥ã®éç¥å
ãå€éšã·ã¹ãã ã Amazon SNS ãããã¯ããµãã¹ã¯ã©ã€ãããããªã·ãŒèšå®ãCost Anomaly Detection ã AWS Budgets èšå®ããã㊠Amazon CloudWatch Dashboards ãªã©ããããŸãã ããŒã¿ãã¬ãŒã³ã«ã€ããŠã¯ãéçšã«äŒŽãå¢å ã»å€åãããã®ãšããŠãThingãThingèšŒææžãDevice Shadow ã®å
容ãäžæã¯ã¬ãã³ã·ã£ã«ãããŒã¯ã³ãIoT JobãAmazon DynamoDB ã®å
容ïŒã³ãã³ãå±¥æŽãããã€ã¹ã®éç¥èšå®ãªã©ïŒãåçš®ãã°ãã¡ããªã¯ã¹å€ãªã©ããããããã㯠IaC 管çå€ãšããŠããŸãã åžå·: ãªãã»ã©ãã³ã³ãããŒã«ãã¬ãŒã³ãããŒã¿ãã¬ãŒã³ ã§åãããšãã芳ç¹ã¯è¯ãã§ãããããã«å ããŠçµç¹ãšããåäœã§ãåããããšããèãæ¹ã¯ããšãŠãåèã«ãªããŸãã äºæ¥éšã«æäŸããåŸã®éçšã¯ã©ã®ããã«è¡ãããŠããã®ã§ããããïŒ å¢š: éçºã¯ SC éçºéšã® IoT ãã©ãããã©ãŒã éçºããŒã ãå°ä»»ã§è¡ãã宿çã«ç€Ÿå
ã«ãªãªãŒã¹ããŠããŸããå°å
¥å
ã®äºæ¥ããšã«ããªãªãŒã¹ããŒãžã§ã³ãæå®ã㊠CDK äžåŒãååŸ(git clone) ããããããã® IoT ãã©ãããã©ãŒã çš AWS ã¢ã«ãŠã³ããžãããã€ããŸãããªããP&S äºæ¥çšã® IoT ãã©ãããã©ãŒã ã®éçšã¯ãDevOps ãšããŠç§ãã¡éçºããŒã ãæ
åœããŠããŸãã äºæ¥ããšã«éçºããããµãŒãã¹ãµãŒããŒãšã®ç¬ç«æ§ãä¿ã€ããã«ã1ã·ã¹ãã â 1ã¢ã«ãŠã³ãã®ååãæ¡çšããäºæ¥ããšã® IoT ãã©ãããã©ãŒã ã¯ãµãŒãã¹ãµãŒããŒãšã¯å¥ã® AWS ã¢ã«ãŠã³ãã䜿çšããŸããåå°å
¥å
ã§ã®ãIoT ãã©ãããã©ãŒã ãã®ãã®ã®æ¹é ã»å€æŽã¯çŠæ¢ããŠãããæé ã«åŸã CDK äžåŒããã®ãŸãŸãããã€ããŠããã£ãŠããŸããAWS Config ã«ãŒã«ã«ããAWS CloudFormation ã®ããªãããæ€åºããæ©æ§ã CDK ã«ããå®çŸ©ã«å«ããŠãããããæå³ãããæåã§ãªãœãŒã¹ã®èšå®ãªã©ã倿ŽããŠããŸã£ãå Žåã«ãæ°ä»ãããšãã§ããŸãã仿§ãæ©èœã®èŠæãããã°ãIoT ãã©ãããã©ãŒã éçºããŒã ã亀æµãšçºå±ã®ãã£ã³ã¹ãšã°ããã«é£ã³ã€ãã察å¿ããŠããŸãã é éããã®å°å·ãå®çŸããä»çµã¿ åžå·: IoT ãã©ãããã©ãŒã ã§æäŸãããŠããä»çµã¿ã«ã€ããŠãèããããã®ã§ãããå®ã¯æãå®¶ã§ã¯åŸ¡ç€Ÿã®ããªã³ã¿ãŒãå©çšããŠããŸããŠãåéšãæ§ããåã©ãã®åé¡éã®å°å·ãªã©ãããŸããŸãªãµã€ãºãçšéã®å°å·ã«å¯Ÿå¿ããŠããŠå€§å€éå®ããŠããŸãã課é¡ãšãã§åçã®å°å·ãå¿
èŠãªæã«ãã¹ããŒããã©ã³ããã®å°å·ãããããšãå€ãã®ã§ãããåå¿ãéåžžã«éãã®ã§ã©ã®ãããªä»çµã¿ãªã®ãæ°ã«ãªã£ãŠããŸããããã®ãããªãªã¢ãŒãå°å·ã¯ IoT@Loft ã§ç޹ä»ããã ããéçå°åã®æ°èå°å·ã®åãçµã¿ã§ã掻çšãããŠãããšã®ããšã§ãããä»ã«ããã®ä»çµã¿ã¯å©çšãããŠããã®ã§ããããïŒ å¢š: å€åºå
ãããªãã£ã¹ã®ããªã³ã¿ãŒãžã¬ããŒããéã£ãããé æ¹ã«äœããå®¶æãžåçãéãããšãã§ããŸãããŸããLINE ããå°å·ããããšãã§ããŸããããã§ã¯ã¡ãŒã«æ·»ä»å°å·ãäŸã«å
åŽãã玹ä»ããŸãã ãŸããE ã¡ãŒã«ã§éãããããŒã¿ããªã¢ãŒãå°å·ã·ã¹ãã ãåä¿¡ããIoT ãã©ãããã©ãŒã ã«å¯ŸããŠãªã¢ãŒãå°å·æç€ºãåºããŸããIoT ãã©ãããã©ãŒã ã¯ãããªã³ã¿ãŒããµãã¹ã¯ã©ã€ãããŠãã MQTT ãããã¯ãžãã®æç€ºã Publish ããŸããããªã³ã¿ãŒã¯ããã峿åä¿¡ããå°å·ããŒã¿ãããŠã³ããŒãããªããå°å·ããŸããã€ãŸãã倧ããªå°å·ããŒã¿ãå
šãŠåä¿¡ãçµããåã«åãã¯ãããŸããå°å·ãçµãããšãããªã³ã¿ãŒã¯ HTTP API ã«ãããIoT ãã©ãããã©ãŒã ãžå°å·çµæãéç¥ããŸãã ãã®ããã«ã峿æ§ãéèŠãªã¯ã©ãŠãåŽããããã€ã¹ãžã®æç€ºäŒéã«ã¯ãMQTT ã®åžžææ¥ç¶ãçšããŠããŸãã åžå·: AWS IoT Core ã察å¿ããŠãã MQTT ã¯åžžææ¥ç¶ã®ãããã³ã«ã§ãã®ã§ããã®åå¿ã®éãã«ã€ãªãã£ãŠãããã§ããããªã¢ãŒãå°å·ãšã®çžæ§ããšãŠãè¯ãããã«æããŸãã å€§èŠæš¡IoTããã€ã¹ç®¡çã«ãããã³ã¹ãæé©å åžå·: IoTã®ãŠãŒã¹ã±ãŒã¹ã§ã¯å€§éã®ããã€ã¹ãã€ãªããããšãå€ããšæããŸãããã³ã¹ãã«é¢ããŠãªã«ã工倫ããããŠããããšã¯ãããŸããïŒ å¢š: äžåºŠäœã£ãã·ã¹ãã ããã®ãŸãŸç¶æããã®ã§ã¯ãªããããæé©åã§ããªãããšããèŠç¹ãæã¡ç¶ããããã«ããŠããŸãããã®äžç°ãšããŠãAWS ã® SA ã TAM ããæ
å ±ãããã ããããAWS ã® News Update ã® RSS ã Slack ã§è³Œèªãããªã©ããŠãé¢ä¿ããããªæ°ãµãŒãã¹ã»æ°æ©èœãããŒã ã§ãŠã©ããããŠããŸãã ããã€ã¹ã® MQTT æ¥ç¶ç¶æ
ãæ£ç¢ºã«ææ¡ããããšã¯æå€ãšé£ãããåŸæ¥ã¯ããã€ã¹ã Shadow ã«æç€ºçã«ç¶æ
ãèšé²ããäžæ
®ã®åææã¯ LWT ã«ããç¶æ
ãæŽæ°ããããšããä»çµã¿ããšã£ãŠããŸããããããããã®ä»çµã¿ã®å Žåã¯ãæ¥ç¶ç¶æ
ã®æŽæ°ã®åºŠã«æ§ã
ãªåŠçãåããããã³ã¹ãã®é¢ã§ãæ°ã«ãªã£ãŠããŸããã2024/12ã« AWS IoT Core ã®æ¥ç¶ã¹ããŒã¿ã¹ã¯ãšãª API ãçºè¡šãããããã¯äœã ãããïŒãšããŒã ã§èª¿æ»ããŸãããAWS IoT Core ãããã€ã¹ã®æ£ç¢ºãª MQTT æ¥ç¶ç¶æ
ãæäŸããŠãããæ©èœã§ããããšãããããããŒã ãæããŠãããå©çšããå
éšæ§é ãžã®æ¹è¯ãè¡ããŸãããã³ã¹ãããã·ã¥ããŒãã§ãããã®ä»çµã¿ãå°å
¥ããã¿ã€ãã³ã°ã®ååŸã§ãAWS IoT Core é¢é£ã³ã¹ãã®æžå°ã芳枬ã§ããŸããã åžå·: æ°ããæ©èœãç©æ¥µçã«åã蟌ãã§ããã ãããšã«ããæ¹åãé²ãè¯ãäºäŸã§ãããã¡ãªã¿ã«ãã³ã¹ãããã·ã¥ããŒããšãã£ããããŸããããã©ã®ãããªç£èŠããããŠããã®ã§ããããïŒ ç§å°»: ã·ã¹ãã å
šäœã®ç¶æ³ã¯ AWS CloudWatch ã®ããã·ã¥ããŒãã䜿ã£ãŠç£èŠããŠããŸããäžã«ããžãã¹ã¡ããªã¯ã¹çãªã°ã©ãããäžã«ããã»ã©ã·ã¹ãã ã¡ããªã¯ã¹ãå
éšç¶æ³ã®ã°ã©ããé
眮ããŠãå
šäœãææ¡ããŠãã詳现ã確èªã§ããå°ç·ãã€ãããŸãããããã·ã¥ããŒãã«ã¯ãç»é²ããã€ã¹å°æ°ããMQTT æ¥ç¶å°æ°ããå API ãªã¯ãšã¹ãæ°ããã¬ã€ãã³ã·ããå AWS Lambda åŒã³åºãåæ°ããAWS Lambda åæå®è¡æ°ãããšã©ãŒã»Warn çºçæ°ãããåãã°ã°ã«ãŒãèšé²å®¹éããšãã£ãã¡ããªã¯ã¹ã®ã°ã©ããäœæããã¹ã¯ã©ã ã®æäŒã§äžéãçºããç¿æ
£ã«ãªã£ãŠããŸããè€æ°ç°å¢ã»ã¢ã«ãŠã³ããããŸãããAWS CloudWatch ã®ã¯ãã¹ã¢ã«ãŠã³ãæ©èœã§1ã€ã®ã¢ã«ãŠã³ãã®ããã·ã¥ããŒãã«éçŽããŸããã ã³ã¹ãããã·ã¥ããŒãã¯ãåç°å¢ã®ã³ã¹ãæšç§»ãç£èŠããããã«äœæãã AWS CloudWatch ã®ããã·ã¥ããŒãã®ããšã§ãã1æ¥ããšã®ã³ã¹ãã®æšç§»ãã³ã¹ãäžäœã®äž»èŠãªãµãŒãã¹ã®å
èš³æšç§»ãããã€ã¹1å°ãããã®æšå®å¹Žéã³ã¹ãã®æšç§»ãææ¬¡ã³ã¹ãã®æšç§»ãã°ã©ãåããŠããŸãããã¡ã㯠AWS CloudWatch æšæºã®ã¡ããªã¯ã¹ã§ãªããããGitHub Actions ã䜿ã£ãŠåç°å¢ã® AWS Cost Explorer ã®æ
å ±ãååŸããæ¯æ©éçŽã¢ã«ãŠã³ãã® AWS CloudWatch ã¡ããªã¯ã¹ã«ç»é²ãã°ã©ãåããŠããŸããIoT ãã©ãããã©ãŒã ã®èšèšæã«ç®æšãšãã1å°ãããã®å¹Žéã³ã¹ãããããŸãããåç°å¢ã皌åéå§çŽåŸã®ããã€ã¹æ°ãå°ãªãææã¯ãã¡ããªã¯ã¹ãã¢ã©ãŒã ãAmazon GuardDuty ãªã©ã®ã»ãŒåºå®è²»ãªèŠçŽ ã«ããå²é«ã«ãªããŸãããããã€ã¹æ°ã®å¢å ã«äŒŽããç®æšã³ã¹ãã®ã¬ã³ãžã«åæããŠããŸãã AWS Budgets ãçšããã³ã¹ãã¢ã©ãŒããåç°å¢ã«èšå®ããæå³ããªãã³ã¹ãå¢ããã£ãŠãããã«æ°ä»ããããã«ããŠããŸãã åžå·: ã³ã¹ããäžããåãçµã¿ã®åºç¹ãšããŠãAWS CloudWatch ã®ããã·ã¥ããŒããäœã£ãŠå¯èŠåãè¡ã£ãŠããã®ã¯ãšãŠãè¯ãåãçµã¿ã§ããããããã®ããã·ã¥ããŒããæäŒã§ãã§ãã¯ãããŠãããšã®ããšã§ãããã©ã®ãããªæ°ã¥ãããããŸãããïŒ å¢š: ããŒã ã§å®æçã«åãçµãã§ããã³ã¹ãæé©åããæ¬çªç°å¢ã«ãããã€ããååŸã®ã³ã¹ãå€åã«ã¯ãã€ãçç®ããŠãããäžãã£ãéã«ã¯çã§åã³ãŸãããŸãããªãŒãžã§ã³é害ããã®åŸã®æ®µéçãªåŸ©æ§ã®æ§åããã²ãšç®ã§ç¢ºèªã§ããŸããå ããŠãå°åããšã®ã€ãã³ããé·æäŒæã®ã·ãŒãºã³ã«ã¯ãæ¥ç¶æ°ãã¢ã¯ã»ã¹æ°ã«å€åãã¿ãããŸãã販売ã®ãã£ã³ããŒã³æéã«ã¯ãæ°èŠã®ç»é²å°æ°ãå¢å ããæ§åã確èªã§ããŸããã°ã©ãã®æéãå€ããããšã§ãçæãšé·æã®å€åãåŸåãææ¡ã§ãããã°ãã°ããŒã ã§èª²é¡æ¢çŽ¢ãå°æ¥äºæ³ã«ã掻çšããŠããŸãã ãããã« æ¬æ¥ã¯è²Žéãªã話ãããããšãããããŸãããIaC ã«ããéçšã®æšæºåãããå€§èŠæš¡ IoT ããã€ã¹ã®ç®¡çããããŠã³ã¹ãã®ç£èŠãšãéåžžã«åèã«ãªãã話ããèããããã ããŸããã ç¹ã«å°è±¡çã ã£ãã®ã¯ããã©ãããã©ãŒã ãæäŸããåŽãšããŠãããã«äºæ¥éšã䜿ããããããã€ç®¡çããããä»çµã¿ãæ§ç¯ãããŠããããšããç¹ã§ãããŸããç¶ç¶çãªæ¹åãšã³ã¹ãæé©åãžã®åçµã¿ããå€ãã® AWS å©çšè
ã«ãšã£ãŠåèã«ãªãäºäŸã ãšæããŸãã ä»åŸããã©ã¶ãŒå·¥æ¥æ§ã® IoT ãã©ãããã©ãŒã ã®é²åã«æ³šç®ããŠãããããšæããŸãã åèïŒ AWS Summit Tokyo 2025 ãªãã£ã¹æ©åšããç£æ¥æ©åšãŸã§å€æ§ãªè£œå矀ã«å¯Ÿå¿ãã IoT ãã©ãããã©ãŒã ã®æ§ç¯ïŒé·æéçšãç®æããã¢ãžã£ã€ã«ã§å°ããå§ããèšèš AWSããã° IoT@Loft #27 AIæä»£ã«IoTãèªãïŒãç¥ãAWS IoT Core 10åšå¹Žã¬ããŒããéå¬å ±åïŒè³æå
¬éã ãã©ã¶ãŒå·¥æ¥æ§ç»å£ïŒæªæ¥ãžã€ãªã IoT ïœIoT ã§ã¢ãã¯ãã£ãšäŸ¡å€ããã€ïœ
2025 幎 12 æ 2 æ¥ãèªç¶ã§ãªã¢ã«ã¿ã€ã ãªé³å£°å¯Ÿè©±ãã¢ããªã±ãŒã·ã§ã³ã«ããããé³å£°å€æã®åºç€ã¢ãã« Amazon Nova 2 Sonic ã®äžè¬æäŸéå§ãçºè¡šããŸããããã®ã¢ãã«ã¯ãæ¥çãããã¯ã©ã¹ã®äŒè©±å質ãäŸ¡æ Œèšå®ãã¯ã©ã¹æé«ã®é³å£°çè§£ãå®çŸããéçºè
ãé³å£°ã¢ããªã±ãŒã·ã§ã³ãæ§ç¯ã§ããããã«ããŸãã Amazon 㯠10 幎以äžã«ããã£ãŠé³å£°ããŒã¹ã®ãã¯ãããžãŒããªãŒãããŠããŸãããä»å¹Žã®åãã«ãçã«ã¹ã ãŒãºãªé³å£°ã€ã³ã¿ã©ã¯ã·ã§ã³ãå®çŸãããšããæ ¹æ¬çãªèª²é¡ã解決ããããã«ã 第 1 äžä»£ã® Nova Sonic ãçºè¡šããŸãã ãããã¯ãé³å£°ã³ã³ããã¹ããç¶æããŠé³å£°å¿çããŠãŒã¶ãŒã®èšã£ãããšã ãã§ãªããã©ã®ããã«èšã£ããã«é©å¿ãããããšã§ããNova 2 Sonic ã§ã¯ããã®åºç€ã®äžã«ã¢ãã«ã®æ©èœæ§ãšã¢ã¯ã»ã·ããªãã£ãé«ããã¢ãã«ã€ã³ããªãžã§ã³ã¹ãšãšãŒãžã§ã³ãã®æ©èœãæ¹åããèšèªãµããŒããæ¡å€§ããããçŽæçã§äººéã®ãããªé³å£°ã€ã³ã¿ã©ã¯ã·ã§ã³ãå®çŸããããã®å¹
åºãæ°æ©èœã远å ããŸããã Nova 2 Sonic ã¯ããã€ãã£ãã®è¡šçŸåãèªç¶ãªã¿ãŒã³ãã€ãã³ã°ããŠãŒã¶ãŒã«ããäžæãžã®ã·ãŒã ã¬ã¹ãªåŠçã«ããããµããŒããããŠããåèšèªã§ã衚çŸåè±ããªå£°ãç·æ§ã®å£°ãšå¥³æ§ã®å£°ãæäŸããŸãã人éã®å¥œã¿ã®è©äŸ¡ã«ãããšããªã¹ããŒã¯å
šäœçãªãªã¹ãã³ã°äœéšã«ãããŠãä»ã®äž»èŠã¢ãã«ãããåžžã« Nova 2 Sonic åºåã奜ãã§ããŸãã Nova 2 Sonic ã¯ãäž»èŠãªè©äŸ¡ãã³ãããŒã¯ã®æ¹åã«è£ä»ããããã匷åãªã€ã³ããªãžã§ã³ã¹ãšããä¿¡é Œæ§ã®é«ããšãŒãžã§ã³ãã£ãã¯ãªåäœãæäŸããŸãããã®ã¢ãã«ã¯ããªãŒãã£ãªå
¥åã«ããæšè«èœåãè©äŸ¡ããããã®è©äŸ¡ããŒã¿ã»ããã§ãã Big Bench Audio ã§ã¯ãä»ã®äž»èŠãªäŒè©±å AI ã¢ãã«ãããåªããŠããŸãããã® BFCL ãã³ãããŒã¯ ã¹ã³ã¢ã¯ãããæ£ç¢ºã§äžè²«æ§ã®ãã颿°åŒã³åºãã瀺ããŠããŸããã ComplexFuncBench ã®çµæã¯ããã«ãã¹ãããã§å¶çŽã®å€ãã¿ã¹ã¯ã®åŠçã®æ¹åãåæ ããŠããŸãã Common Voice ã䜿çšããŠèªåé³å£°èªè (ASR) ã®ç²ŸåºŠã®åäžãå®èšŒãã æç€ºãã©ããŒè©äŸ¡ (iFEval) ã䜿çšããŠãè©³çŽ°ã§æ§é åãããæç€ºã«åŸãéã®ç²ŸåºŠãé«ãããšã瀺ããŸããã é³å£°çè§£ã®åäž Nova 2 Sonic ã§ã¯ãåºç€ãšãªãé³å£°èªèæ©èœã倧å¹
ã«åŒ·åãããŸããããã®ã¢ãã«ã§ã¯ãè±æ°åå
¥åãçãçºè©±ã8kHz ã®ãã¬ãã©ããŒé³å£°å
¥åãããæ£ç¢ºã«åŠçã§ããããã«ãªããŸããããŸããå®éã®ãããã€ã·ããªãªã§ã¯éèŠãªãããŸããŸãªã¢ã¯ã»ã³ããããã¯ã°ã©ãŠã³ããã€ãºãåŠçããå Žåã«ãããå
ç¢ã«ãªããŸãã å€èšèªã®å£°ã«ããã°ããŒãã«ãªãŒãã®æ¡å€§ Nova 2 Sonic ã®æãéèŠãªã¢ããããŒãã® 1 ã€ã¯ãèšèªãµããŒãã®æ¡åŒµã§ããå
ã®è±èªããã©ã³ã¹èªãã€ã¿ãªã¢èªããã€ãèªãã¹ãã€ã³èªã®ä»ã«ãNova 2 Sonic ã¯ãã«ãã¬ã«èªãšãã³ãã£ãŒèªããµããŒãããããã«ãªããŸããã Nova 2 Sonic ã¯ãè€æ°ã®èšèªããµããŒãããã ãã§ãªãã(åãäŒè©±ã®äžã§èšèªãåãæ¿ããããšãã§ãããããªã°ãããé³å£°ããå°å
¥ããŠããŸããããšãã°ãTiffany ã®å£°ã¯ã1 åã®å¯Ÿè©±ã§ãµããŒããããŠãããã¹ãŠã®èšèªãæµæ¢ã«è©±ããããã«ãªããŸãããããã«ãããèšèªãæ··åšããæãèªç¶ã«åŠçããé«åºŠãª ã³ãŒãåãæ¿ã (æã®äžã§èšèªãæ··åšãããããšãæãèšèªçšèª) æ©èœãæäŸãããŸããããšãã°ãåãäŒè©±ãã€ã¢ãã°ã§ãŠãŒã¶ãŒãããã¿ãŒã³ããæ¬¡ã®ã¿ãŒã³ã«èšèªãåãæ¿ãããšãã§ãããŠãŒã¶ãŒãåžæããèšèªã§å¿çã§ããŸãã éçºè
ã«ãšã£ãŠã¯ãèšèªããšã«åå¥ã®é³å£°ã¢ãã«ãçšæããªããŠããäžçäžã®èŠèŽè
ã«ãµãŒãã¹ãæäŸããã¢ããªã±ãŒã·ã§ã³ãæ§ç¯ã§ãããšããããšã§ããã«ã¹ã¿ããŒãµããŒãã¢ããªã±ãŒã·ã§ã³ã¯ãè±èªã§å§ãŸããäŒè©±ã®éäžã§ã¹ãã€ã³èªã«åãæ¿ããäŒè©±ãåŠçããå
šäœãéããŠåããããŒãšé³å£°ç¹æ§ãç¶æã§ããŸãã èªç¶ãªã¿ãŒã³ãã€ãã³ã° é³å£°ã¢ã¯ãã£ããã£æ€åºæåºŠãèšå®ã§ããããã«ãªããã¿ãŒã³ãã€ãã³ã°æ©èœã匷åãããŸãããéçºè
ã¯ããŠãŒã¹ã±ãŒã¹ã«å¿ããŠããããé«ãäžãäœã«èšå®ã§ããŸããæåºŠãé«ããããšå¿çæéãççž®ãããæåºŠãäœããšãŠãŒã¶ãŒãèãããŸãšããŠè©±ãçµãããŸã§ã®æéãé·ããªããŸããããã¯ãæè²çšéããã³ãã¥ãã±ãŒã·ã§ã³ã®å¥œã¿ãç°ãªããŠãŒã¶ãŒã«äŒè©±å AI ãæäŸããå Žåãªã©ã«äŸ¿å©ã§ãã ã·ãŒã ã¬ã¹ãªã¯ãã¹ã¢ãŒãã«ã€ã³ã¿ã©ã¯ã·ã§ã³ ã¯ãã¹ã¢ãŒãã«ãµããŒãã«ããããŠãŒã¶ãŒã¯åãã»ãã·ã§ã³å
ã§ããã¹ãå
¥åãšé³å£°å
¥åãåãæ¿ããããšãã§ããŸããããã¯ããŠãŒã¶ãŒãããã€ãã®èŠæ±ã話ããä»ã®èŠæ±ãå
¥åãããå Žåã«åœ¹ç«ã¡ãŸããããšãã°ãç°¡åãªè³ªåãããŠãè€éãªäœæãæè¡ä»æ§ãå
¥åããå Žåãªã©ã§ãã ãã®å®è£
ã§ã¯ãã¢ããªãã£ã«é¢ä¿ãªãã³ã³ããã¹ããç¶æãããããããŠãŒã¶ãŒã¯è³ªåãå
¥åããŠäŒè©±ãå§ããé³å£°å¿çãåãåããçŸåšã®ã¹ã¬ããã倱ãããšãªãé³å£°å
¥åãç¶ããããšãã§ããŸããããã«ããããŠãŒã¶ãŒãå®éã«æãã§ããã³ãã¥ãã±ãŒã·ã§ã³æ¹æ³ã«åãããŠãããæµåçã§æè»ãªã€ã³ã¿ã©ã¯ã·ã§ã³ãå¯èœã«ãªããŸãã ã¯ãã¹ã¢ãŒãã«æ©èœã䜿çšããŠããã€ã¢ãã°ã®æåã«ããŒãœãã©ã€ãºããããŠã§ã«ã«ã ã¡ãã»ãŒãžãçºè©±ããã (æåã«è©±ããã) ããã«ããã¹ãã§ã¢ãã«ã«æç€ºããããããŒãããããŒã³ã衚ãããã¹ãã¡ã¿ããŒã¿ã䜿çšããŠã€ã³ã¿ã©ã¯ãã£ãé³å£°å¿ç (IVR) ã¢ããªã±ãŒã·ã§ã³ãæäœãããã§ããããã«ãªããŸãããããšãã°ããŠãŒã¶ãŒã«ä»£ãã£ãŠäºçŽããããããã€ã¹ã¡ãŒã«ãæ®ãããããããã«ãNova 2 Sonic ã§ã¢ãŠãããŠã³ãã³ãŒã«ãè¡ãå Žåã§ãã é«åºŠãªãã«ããšãŒãžã§ã³ãæ©èœ Nova 2 Sonic ã§ã¯ãé³å£°ããŒã¹ã®äŒè©±å AI ãè€éãªè€æ°ã¹ãããã®ã¿ã¹ã¯ãåŠçããæ¹æ³ãæ¹åããéåæããŒã«åŒã³åºããå°å
¥ãããŸãããã¢ãã«ãå€éšã®ããŒã«ããµãŒãã¹ãåŒã³åºãå¿
èŠãããå ŽåãããŒã«ãããã¯ã°ã©ãŠã³ãã§å®è¡ãããŠããéãã¢ãã«ã¯äžæåæ¢ãããæ°ãããŠãŒã¶ãŒå
¥åã«å¿çãç¶ããŸãã å®éã®åäœäŸãšããŠã¯ããŠãŒã¶ãŒãã倩æ°ã¯ã©ãã§ãã?ããšå°ãããã®çŽåŸã«ãã¿ã¹ã¯ãªã¹ãã®æ¬¡ã¯äœ?ããšè³ªåãããšãã£ãã±ãŒã¹ãèããããŸãã Nova 2 Sonic ã¯ããããã¹ãŠã®ãªã¯ãšã¹ããåŠçãã質åã«ããã«åçããããããã®ããŒã«ããçµæãè¿ã£ãŠã次第ã倩æ°ãšã¿ã¹ã¯ã®æ
å ±ãæäŸããŸãã ç§ãã¡ãäŒè©±ã®äžã§è€æ°ã®ãããã¯ãåæã«äžŠè¡ããŠåŠçããã®ãšåãããã«ããã®æ©èœã¯ãå¯Ÿè©±ã®æµããšå³å¿æ§ãç¶æããªãããè€æ°ã®ç¡é¢ä¿ãªã¿ã¹ã¯ã管çã§ããé«åºŠãªã€ã³ã¿ã©ã¯ã·ã§ã³ãå®çŸããŸãã ãã¬ãã©ããŒãšãã©ãããã©ãŒã çµ±åã®åŒ·å å€ãã®äŒè©±åAIã¢ããªã±ãŒã·ã§ã³ãããŸããŸãªéä¿¡ãã£ãã«ã§åäœããå¿
èŠãããããšãèªèããNova 2 Sonicã¯ã Amazon Connect ã Vonage ã Twilio ã Audiocodes ãªã©ã®äž»èŠãªãã¬ãã©ããŒãããã€ããŒãã LiveKit ã Pipecat ãªã©ã®ã¡ãã£ã¢ãã©ãããã©ãŒã ãšçŽæ¥çµ±åã§ããããã«ãªããŸããã ãããã®çµ±åã¯ãé³å£°ã³ãŒããã¯ã®æé©åãã»ãã·ã§ã³ã©ã€ããµã€ã¯ã«ç®¡çãåæ¹åå
¥åºåã€ãã³ãåŠçãé»è©±ã·ã¹ãã ã®é³é¿äžã®èª²é¡ãªã©ãé»è©±ããŒã¹ã®ãããšãã«äŒŽãè€éãªæè¡çèŠä»¶ã«å¯Ÿå¿ããŸããéçºè
ã«ãšã£ãŠã¯ãNova 2 Sonic æèŒã¢ããªã±ãŒã·ã§ã³ãæ¢åã®ã³ãŒã«ã»ã³ã¿ãŒã€ã³ãã©ã¹ãã©ã¯ãã£ã«çŽæ¥ãããã€ããããé»è©±ããŒã¹ã®æ°ãããµãŒãã¹ãæ§ç¯ãããããŠããæ ¹æ¬çãªãã¬ãã©ããŒã®è€éãã«å¯Ÿå¿ããå¿
èŠããªããªããŸãã Nova 2 Sonic ã®äœ¿çšéå§ Nova 2 Sonic ã¯ãã¢ãã«ID amazon.nova-2-sonic-v 1:0 ã䜿çšã㊠Amazon Bedrock ããå
¥æã§ããŸããã¢ããªã±ãŒã·ã§ã³ã§ãã§ã« Nova Sonic ã䜿çšããŠããå Žåãæ°ããããŒãžã§ã³ãžã®æŽæ°ã¯ç°¡åã§ããæ¢åã®ã³ãŒãã§ã¢ãã« ID ãæŽæ°ããã ãã§ã远å ã®èšå®ãå¿
èŠãšããªãæ¡åŒµæ©èœãã¢ããªã±ãŒã·ã§ã³ã«ããã«æŽ»çšã§ããŸãã ãã®ã¢ãã«ã¯ãªãªãžãã«ã® Nova Sonic ãšåãåæ¹åã¹ããªãŒãã³ã° API ã䜿çšããŠãããããæ¢åã®çµ±åãã¿ãŒã³ãšã€ãã³ãåŠçã³ãŒãã¯åŒãç¶ãæ©èœããŸããã¯ãã¹ã¢ãŒãã«å
¥åãèšå®å¯èœãªã¿ãŒã³ãã€ãã³ã°ãªã©ã®æ°æ©èœã¯ã段éçã«å°å
¥ã§ãããã©ã¡ãŒã¿ãŒãã€ãã³ãã远å ããããšã§å©çšã§ããŸãã è€æ°ã®ããã°ã©ãã³ã°èšèªã®ã³ãŒãäŸã䜿ãå§ããã«ã¯ã Amazon Nova Sonic é³å£°å€æã¢ãã«ã®ãµã³ãã« ãåç
§ããŠãã ããã ç¥ã£ãŠããã¹ãããš Amazon Nova 2 Sonic ã¯ãç±³åœæ±éš (ããŒãžãã¢åéš)ãç±³åœè¥¿éš (ãªã¬ãŽã³)ãã¢ãžã¢ãã·ãã£ã㯠(æ±äº¬)ãããã³æ¬§å· (ã¹ããã¯ãã«ã ) ã® AWS ãªãŒãžã§ã³ ã§ãå©çšããã ããŸãããªãŒãžã§ã³ããšã®æäŸç¶æ³ãä»åŸã®ããŒããããã«ã€ããŠã¯ã AWS Capabilities by Region ãã芧ãã ããã Nova 2 Sonic ã¯ããªãªãžãã«ã® Nova Sonic ãšåæ§ãæ¥çãããã¯ã©ã¹ã®äŸ¡æ Œããã©ãŒãã³ã¹ãšäœã¬ã€ãã³ã·ãŒãç¶æããŠããŸããæéã«ã€ããŠã®è©³çްã¯ãAmazon Bedrock ã® æéã®ããŒãž ã§ã確èªããã ããŸãã ãã®ã¢ãã«ã¯ã転éæãšä¿ç®¡æã®æå·åã VPC ãšã³ããã€ã³ã ã詳现ãªã¢ã¯ã»ã¹å¶åŸ¡ã®ããã® AWS Identity and Access Management (IAM) ãšã®çµ±åãªã©ãä»ã® Amazon Bedrock ã¢ãã«ãšåãå
ç¢ãªã»ãã¥ãªãã£ããã³ã³ã³ãã©ã€ã¢ã³ã¹æ©èœããµããŒãããŠããŸãã Nova 2 Sonic ã«ã¯ã 責任ãã AI ã®äœ¿çšãä¿é²ããããã®å®å
šã³ã³ãããŒã«ãçµã¿èŸŒãŸããŠãããå¹
åºãã¢ããªã±ãŒã·ã§ã³ã§é©åãªåºåãç¶æããã®ã«åœ¹ç«ã€ã³ã³ãã³ãã¢ãã¬ãŒã·ã§ã³ãåãã£ãŠããŸãã Amazon Nova 2 Sonic ã®è©³çްãç¥ããæ§ç¯ãéå§ããã«ã¯ã ãAmazon Nova ãŠãŒã¶ãŒã¬ã€ããã® ãNova Sonicãã»ã¯ã·ã§ã³ ã§è©³çްãªå®è£
ã¬ã€ãã³ã¹ã確èªããŠãã ããã â Danilo åæã¯ ãã¡ã ã§ãã
2025 幎 12 æ 2 æ¥ã第 5 äžä»£ AMD EPYC ããã»ããµãæèŒãããã¡ã¢ãªãæé©åããæ°ããé«é »åºŠã® Amazon Elastic Compute Cloud (Amazon EC2) x8Aedz ã€ã³ã¹ã¿ã³ã¹ãå©çšå¯èœã«ãªã£ãããšãçºè¡šããŸããããããã®ã€ã³ã¹ã¿ã³ã¹ã¯ãã¯ã©ãŠãã§æãé«ã 5GHz ã® CPU åšæ³¢æ°ãæäŸããŸããåäžä»£ã® X2IEZN ã€ã³ã¹ã¿ã³ã¹ãšæ¯èŒããŠãæå€§ 2 åã®ã³ã³ãã¥ãŒãã£ã³ã°ããã©ãŒãã³ã¹ãš 31% ã®ã³ã¹ãããã©ãŒãã³ã¹ãå®çŸããŸãã X8Aedz ã€ã³ã¹ã¿ã³ã¹ã¯ãç©çã¬ã€ã¢ãŠããç©çæ€èšŒãžã§ããªã©ã® Electronic Design Automation (EDA) ã¯ãŒã¯ããŒããããã³é«ãã·ã³ã°ã«ã¹ã¬ããããã»ããµããã©ãŒãã³ã¹ãšå€§ããªã¡ã¢ãªãããããªã³ãã®æ©æµãåãããªã¬ãŒã·ã§ãã«ããŒã¿ããŒã¹ã«æé©ã§ãã5 GHzããã»ããµãšããŒã«ã« NVMe ã¹ãã¬ãŒãžã®çµã¿åããã«ãããããã¢ãã©ã³ãã³ã°ãããžãã¯é
眮ãã¯ããã¯ããªãŒåæ (CTS)ãã«ãŒãã£ã³ã°ããã¯ãŒ/ã·ã°ãã«ã€ã³ãã°ãªãã£è§£æãªã©ãã¡ã¢ãªã倧éã«æ¶è²»ããããã¯ãšã³ã EDA ã¯ãŒã¯ããŒãã®åŠçãé«éåã§ããŸããã¡ã¢ãªãš vCPU ã®æ¯çã 32:1 ãšé«ãããããããã®ã€ã³ã¹ã¿ã³ã¹ã¯ vCPU ããŒã¹ã®ã©ã€ã»ã³ã¹ã¢ãã«ã䜿çšããã¢ããªã±ãŒã·ã§ã³ã«ç¹ã«å¹æçã§ãã ã€ã³ã¹ã¿ã³ã¹ã¿ã€ãã®ååã«ã€ããŠèª¬æããŸãããµãã£ãã¯ã¹ãaã㯠AMD ããã»ããµããeãã¯ã¡ã¢ãªæé©åã€ã³ã¹ã¿ã³ã¹ãã¡ããªãŒã®æ¡åŒµã¡ã¢ãªããdãã¯ãã¹ããµãŒããŒã«ç©ççã«æ¥ç¶ãããããŒã«ã« NVMe ããŒã¹ã® SSDããzãã¯é«åšæ³¢ããã»ããµã瀺ããŸãã x8Aedz ã€ã³ã¹ã¿ã³ã¹ X8aedz ã€ã³ã¹ã¿ã³ã¹ã¯ã2ã96 åã® vCPUã64ã3,072 GiB ã®ã¡ã¢ãªæ§æãåãã 8 ã€ã®ãµã€ãº (2 ã€ã®ãã¢ã¡ã¿ã«ãµã€ãºãå«ã) ã§æäŸãããŠããŸããX8Aedz ã€ã³ã¹ã¿ã³ã¹ã¯ã Elastic Fabric Adapter (EFA) ã®ãµããŒãã«ããæå€§ 75 Gbps ã®ãããã¯ãŒã¯åž¯åå¹
ã Amazon Elastic Block Store (Amazon EBS) ãžã®æå€§ 60 Gbps ã®ã¹ã«ãŒããããããã³æå€§ 8 TB ã®ããŒã«ã« NVMe SSD ã¹ãã¬ãŒãžãåããŠããŸãã X8aedz ã€ã³ã¹ã¿ã³ã¹ã®ä»æ§ã¯æ¬¡ã®ãšããã§ãã ã€ã³ã¹ã¿ã³ã¹å vCPU ã¡ã¢ãª (GiB) NVMe SSD ã¹ãã¬ãŒãž (GB) ãããã¯ãŒã¯åž¯åå¹
(Gbps) EBS 垯åå¹
(Gbps) x8aedz.large 2 64 158 æå€§ 18.75 æå€§ 15 x8aedz.xlarge 4 128 316 æå€§ 18.75 æå€§ 15 x8aedz.3xlarge 12 384 950 æå€§ 18.75 æå€§ 15 x8aedz.6xlarge 24 768 1,900 18.75 15 x8aedz.12xlarge 48 1,536 3,800 37.5 30 x8aedz.24xlarge 96 3,072 7,600 75 60 x8aedz.metal-12xl 48 1,536 3,800 37.5 30 x8aedz.metal-24xl 96 3,072 7,600 75 60 60 Gbps ã® Amazon EBS 垯åå¹
ãšæå€§ 8 TB ã®ããŒã«ã« NVMe SSD ã¹ãã¬ãŒãžã«ãããããŒã¿ããŒã¹å¿çæéã®ç瞮㚠EDA éçšã®ã¬ã€ãã³ã·ãŒã®ççž®ãå®çŸã§ããæçµçã«ã¯ãããèšèšã®åžå Žæå
¥ãŸã§ã®æéãççž®ã§ããŸãããããã®ã€ã³ã¹ã¿ã³ã¹ã¯ããããã¯ãŒã¯ãš EBS 垯åå¹
ã®éã§æè»ã«ãªãœãŒã¹ãå²ãåœãŠãããšãã§ããã€ã³ã¹ã¿ã³ã¹åž¯åå¹
èšå®æ©èœããµããŒãããŠããŸãããããã¯ãŒã¯ãŸã㯠EBS ã®åž¯åå¹
ã 25% ã¹ã±ãŒã«ããŠãããŒã¿ããŒã¹ (èªã¿åããšæžã蟌ã¿) ã®ããã©ãŒãã³ã¹ãã¯ãšãªåŠçãããã³ãã°èšé²é床ãåäžãããããšãã§ããŸãã X8Aedz ã€ã³ã¹ã¿ã³ã¹ã¯ç¬¬ 6 äžä»£ã® AWS Nitro Card ã䜿çšããŠãããCPU ã®ä»®æ³åãã¹ãã¬ãŒãžããããã¯ãŒãã³ã°æ©èœãå°çšã®ããŒããŠã§ã¢ãšãœãããŠã§ã¢ã«ãªãããŒãããã¯ãŒã¯ããŒãã®ããã©ãŒãã³ã¹ãšã»ãã¥ãªãã£ã匷åããŸãã ä»ãããå©çšããã ããŸã Amazon EC2 X8Aedz ã€ã³ã¹ã¿ã³ã¹ã¯çŸåšãç±³åœè¥¿éš (ãªã¬ãŽã³) ãšã¢ãžã¢ãã·ãã£ã㯠(æ±äº¬) ã® AWS ãªãŒãžã§ã³ ã§å©çšå¯èœã§ãããã®ä»ã®ãªãŒãžã§ã³ãéããªã远å ãããäºå®ã§ãããªãŒãžã§ã³ã®æäŸç¶æ³ãšä»åŸã®ããŒããããã«ã€ããŠã¯ã AWS Capabilities by Region ã® [AWS CloudFormation] ãªãœãŒã¹ã¿ãã§ã€ã³ã¹ã¿ã³ã¹ã¿ã€ããæ€çŽ¢ããŠãã ããã ãããã®ã€ã³ã¹ã¿ã³ã¹ã¯ã ãªã³ããã³ã ã Savings Plans ã ã¹ãããã€ã³ã¹ã¿ã³ã¹ ã ããŒããŠã§ã¢å°æã€ã³ã¹ã¿ã³ã¹ ãšããŠè³Œå
¥ã§ããŸãã詳现ã«ã€ããŠã¯ã Amazon EC2 ã®æéããŒãž ãã芧ãã ããã Amazon EC2 ã³ã³ãœãŒã« ã§ X8aedz ã€ã³ã¹ã¿ã³ã¹ããã²ã詊ããã ããã詳现ã«ã€ããŠã¯ã Amazon EC2 X8aedz ã€ã³ã¹ã¿ã³ã¹ããŒãž ãã芧ãã ããããã£ãŒãããã¯ã¯ã AWS re:Post for EC2 ã«éä¿¡ããããéåžžã® AWS ãµããŒãé£çµ¡å
çµç±ã§ãå¯ããã ããã â Channy åæã¯ ãã¡ã ã§ãã
2025 幎 12 æ 2 æ¥ãéçºã©ã€ããµã€ã¯ã«å
šäœãéããŠã¢ããªã±ãŒã·ã§ã³ãç©æ¥µçã«ä¿è·ããããã³ãã£ã¢ãšãŒãžã§ã³ãã§ãã AWS Security Agent ã®ãã¬ãã¥ãŒçãçºè¡šããŸãããçµç¹ã®èŠä»¶ã«åãããèªåã¢ããªã±ãŒã·ã§ã³ã»ãã¥ãªãã£ã¬ãã¥ãŒã宿œããç¶æ³ã«å¿ãã䟵å
¥ãã¹ãããªã³ããã³ãã§æäŸããŸããèšèšãããããã€ãŸã§ã¢ããªã±ãŒã·ã§ã³ã®ã»ãã¥ãªãã£ãç¶ç¶çã«æ€èšŒããããšã§ãéçºã®æ©ã段éã§è匱æ§ãé²ãã®ã«åœ¹ç«ã¡ãŸãã éçã¢ããªã±ãŒã·ã§ã³ã»ãã¥ãªãã£ãã¹ã (SAST) ããŒã«ã¯ã©ã³ã¿ã€ã ã³ã³ããã¹ããªãã§ã³ãŒããæ€æ»ããåçã¢ããªã±ãŒã·ã§ã³ã»ãã¥ãªãã£ãã¹ã (DAST) ããŒã«ã¯ã¢ããªã±ãŒã·ã§ã³ã¬ãã«ã®ã³ã³ããã¹ããªãã§å®è¡äžã®ã¢ããªã±ãŒã·ã§ã³ãè©äŸ¡ããŸããã©ã¡ãã®ã¿ã€ãã®ããŒã«ããã¢ããªã±ãŒã·ã§ã³ã®ã³ã³ããã¹ããçè§£ããªããããäžæ¬¡å
çãªãã®ã§ãã圌ãã¯ãã¢ããªã±ãŒã·ã§ã³ãã©ã®ããã«èšèšãããŠããããã©ã®ãããªã»ãã¥ãªãã£è
åšã«çŽé¢ããŠããããã©ãã§ã©ã®ããã«å®è¡ãããŠããããçè§£ããŠããŸãããããã«ãããã»ãã¥ãªãã£ããŒã ã¯ãã¹ãŠãæäœæ¥ã§ç¢ºèªããããåŸãªããªããé
å»¶ãçºçããŸãã䟵å
¥ãã¹ãã¯ããã«æéãããããŸããå€éšãã³ããŒãŸãã¯ç€Ÿå
ã®ã»ãã¥ãªãã£ããŒã ãæéãèŠã€ãããŸã§æ°é±éåŸ
ã€ãããããŸããããã¹ãŠã®ã¢ããªã±ãŒã·ã§ã³ã«æåã®ã»ãã¥ãªãã£ã¬ãã¥ãŒãšäŸµå
¥ãã¹ããå¿
èŠãªå Žåãããã¯ãã°ã¯æ¥éã«å¢ããŸããã¢ããªã±ãŒã·ã§ã³ã¯ãã»ãã¥ãªãã£æ€èšŒã®ããã«æ°é±éãŸãã¯æ°ãæåŸ
ã£ãŠããèµ·åããŸããããã«ããããœãããŠã§ã¢ãªãªãŒã¹ã®é »åºŠãšã»ãã¥ãªãã£è©äŸ¡ã®é »åºŠã®éã«ã®ã£ãããçããŸããã»ãã¥ãªãã£ã¯ã¢ããªã±ãŒã·ã§ã³ã®ããŒããã©ãªãªå
šäœã«é©çšãããªãããã顧客ã¯å±éºã«ãããããæéãå®ãããã«è匱ãªã³ãŒããæ
æã«ãªãªãŒã¹ããããšã«ãªããŸãã60% 以äžã®çµç¹ãæ¯é±ãŸãã¯ãã以äžã®é »åºŠã§ãŠã§ãã¢ããªã±ãŒã·ã§ã³ãæŽæ°ãã75ïŒ
è¿ãããŠã§ãã¢ããªã±ãŒã·ã§ã³ãæ¯æãŸãã¯ãã以äžã®é »åºŠã§ãã¹ãããŠããŸãã Checkmarx ã® 2025 幎ã®ã¬ããŒã ã«ãããšãçµç¹ã® 81% ããçŽæãå®ãããã«è匱ãªã³ãŒããæ
æã«å°å
¥ããŠããããšãããããŸããã AWS Security Agent ã¯ã³ã³ããã¹ããèªèããã¢ããªã±ãŒã·ã§ã³å
šäœãçè§£ããŸããã¢ããªã±ãŒã·ã§ã³ã®èšèšãã³ãŒããç¹å®ã®ã»ãã¥ãªãã£èŠä»¶ãçè§£ããŸããã»ãã¥ãªãã£éåãèªåçã«ç¶ç¶çã«ã¹ãã£ã³ããã¹ã±ãžã¥ãŒã«ãªãã§å³åº§ã«ãªã³ããã³ãã§äŸµå
¥ãã¹ããå®è¡ããŸãã䟵å
¥ãã¹ããšãŒãžã§ã³ãã¯ãã»ãã¥ãªãã£èŠä»¶ãèšèšææžãããã³ãœãŒã¹ã³ãŒãããåŠç¿ããã³ã³ããã¹ãã«åºã¥ããŠã«ã¹ã¿ãã€ãºãããæ»æèšç»ãäœæãããšã³ããã€ã³ããã¹ããŒã¿ã¹ã³ãŒãããšã©ãŒã³ãŒããèªèšŒæ
å ±ãªã©ãæ€åºããå
容ã«åºã¥ããŠå®è¡æã«åçã«é©å¿ããŸããããã«ãããããæ·±å»ã§é«åºŠãªè匱æ§ãæ¬çªçšŒååã«æããã«ããé
å»¶ãäžæž¬ã®äºæ
ãæãããšãªããèµ·ååã«ã¢ããªã±ãŒã·ã§ã³ã®å®å
šã確ä¿ã§ããŸãã ãSmugMug ã¯ãåœç€Ÿã®èªåã»ãã¥ãªãã£ããŒããã©ãªãªã« AWS Security Agent ã远å ã§ããããšãå¬ããæããŸããAWS Security Agent ã¯ãæäœæ¥ã«ãããã¹ãã³ã¹ãã®æ°åã® 1 ã§ãæ°æ¥ã§ã¯ãªãæ°æéã§å®äºãã䟵å
¥ãã¹ãè©äŸ¡ãå¯èœã«ããããšã§ãã»ãã¥ãªã㣠ROI ãå€ããŸãããµãŒãã¹ãããé »ç¹ã«è©äŸ¡ã§ããããã«ãªã£ãããããœãããŠã§ã¢éçºã©ã€ããµã€ã¯ã«ã®æ©ã段éã§åé¡ãç¹å®ããŠå¯ŸåŠããæéã倧å¹
ã«ççž®ãããŸããããš Erik Giberti, Sr. æ° (SmugMug ã®ãããã¯ããšã³ãžãã¢ãªã³ã°æ
åœãã£ã¬ã¯ã¿ãŒ) ã¯è¿°ã¹ãŠããŸãã AWS Security Agent ã®äœ¿çšéå§ AWS Security Agent ã¯ãèšèšã»ãã¥ãªãã£ã¬ãã¥ãŒãã³ãŒãã»ãã¥ãªãã£ã¬ãã¥ãŒãããã³ãªã³ããã³ã䟵å
¥ãã¹ãæ©èœãæäŸããŸããèšèšãšã³ãŒãã¬ãã¥ãŒã§ã¯ãå®çŸ©ããçµç¹ã®ã»ãã¥ãªãã£èŠä»¶ããã§ãã¯ãã䟵å
¥ãã¹ãã§ã¯ãœãŒã¹ã³ãŒããšä»æ§ããã¢ããªã±ãŒã·ã§ã³ã®ã³ã³ããã¹ããåŠç¿ããŠè匱æ§ãç¹å®ããŸããéå§ããã«ã¯ã AWS Security Agent ã³ã³ãœãŒã« ã«ç§»åããŸããã³ã³ãœãŒã«ã®ã©ã³ãã£ã³ã°ããŒãžã«ã¯ãAWS Security Agent ãéçºã©ã€ããµã€ã¯ã«å
šäœã§ç¶ç¶çã«ã»ãã¥ãªãã£è©äŸ¡ãè¡ãæ¹æ³ã®æŠèŠãèšèŒãããŠããŸãã ã©ã³ãã£ã³ã°ããŒãžã®å³åŽã«ãã [AWS Security Agent ã®éå§] ããã«ã§ã¯ãåæèšå®ãé ã远ã£ãŠé²ããããšãã§ããŸãã Set up AWS Security Agent ãéžæããŠæåã®ãšãŒãžã§ã³ãã¹ããŒã¹ãäœæããã¢ããªã±ãŒã·ã§ã³ã®ã»ãã¥ãªãã£ã¬ãã¥ãŒãéå§ããŸãã ããŸããŸãªã»ãã¥ãªãã£è©äŸ¡ã§ã©ã®ãšãŒãžã§ã³ããšããåãããŠããã®ããèå¥ã§ããããã«ã ãšãŒãžã§ã³ãã¹ããŒã¹å ãæå®ããŸãããšãŒãžã§ã³ãã¹ããŒã¹ã¯ãä¿è·ãããåå¥ã®ã¢ããªã±ãŒã·ã§ã³ãŸãã¯ãããžã§ã¯ãã衚ãçµç¹ã®ã³ã³ããã§ããåãšãŒãžã§ã³ãã¹ããŒã¹ã«ã¯ãç¬èªã®ãã¹ãç¯å²ãã»ãã¥ãªãã£èšå®ãããã³å°çšã®ãŠã§ãã¢ããªã±ãŒã·ã§ã³ãã¡ã€ã³ããããŸããæç¢ºãªå¢çç·ãšçµç¹çãªã»ãã¥ãªãã£è©äŸ¡ãç¶æããããã«ãã¢ããªã±ãŒã·ã§ã³ãŸãã¯ãããžã§ã¯ãããšã« 1 ã€ã®ãšãŒãžã§ã³ãã¹ããŒã¹ãäœæããããšããå§ãããŸãããªãã·ã§ã³ã§ 説æ ã远å ããŠããšãŒãžã§ã³ãã¹ããŒã¹ã®ç®çã«é¢ããã³ã³ããã¹ããä»ã®ç®¡çè
ã«æäŸã§ããŸãã AWS ãããžã¡ã³ãã³ã³ãœãŒã«ã§æåã®ãšãŒãžã§ã³ãã¹ããŒã¹ãäœæãããšãAWS ã¯ã»ãã¥ãªãã£ãšãŒãžã§ã³ããŠã§ãã¢ããªã±ãŒã·ã§ã³ãäœæããŸããã»ãã¥ãªãã£ãšãŒãžã§ã³ããŠã§ãã¢ããªã±ãŒã·ã§ã³ã§ã¯ã管çè
ãã³ã³ãœãŒã«ã§èšå®ããç¯å²å
ã§ãŠãŒã¶ãŒãèšèšã¬ãã¥ãŒãè¡ãã䟵å
¥ãã¹ããå®è¡ããŸãããŠãŒã¶ãŒã¯ãèšèšã¬ãã¥ãŒã䟵å
¥ãã¹ãã宿œããéã«ãã©ã®ãšãŒãžã§ã³ãã¹ããŒã¹ã§äœæ¥ããããéžæããŸãã ã»ããã¢ããããã»ã¹äžãAWS Security Agent ã«ã¯ã»ãã¥ãªãã£ãšãŒãžã§ã³ããŠã§ãã¢ããªã±ãŒã·ã§ã³ãžã®ãŠãŒã¶ãŒã¢ã¯ã»ã¹ã管çããããã® 2 ã€ã®ãªãã·ã§ã³ãçšæãããŠããŸãã1 ã€ã¯ã AWS IAM ã¢ã€ãã³ãã£ãã£ã»ã³ã¿ãŒ ãšçµ±åããããšã§ããŒã å
šäœã® SSO ã¢ã¯ã»ã¹ãå¯èœã«ãã IAM ã¢ã€ãã³ãã£ãã£ã»ã³ã¿ãŒã«ããã·ã³ã°ã«ãµã€ã³ãªã³ (SSO) ããã 1 ã€ã¯ IAM ãŠãŒã¶ãŒ (ãã® AWS ã¢ã«ãŠã³ãã® AWS Identity and Access Management (IAM) ãŠãŒã¶ãŒã®ã¿ãã³ã³ãœãŒã«ããã»ãã¥ãªãã£ãšãŒãžã§ã³ããŠã§ãã¢ããªã±ãŒã·ã§ã³ã«çŽæ¥ã¢ã¯ã»ã¹ã§ããããã«ãããã®ã§ãã¯ã€ãã¯ã»ããã¢ããã«æé©ã§ããSSO èšå®ãªãã§ã¢ã¯ã»ã¹ããŸããSSO ãªãã·ã§ã³ãéžæãããšãAWS Security Agent 㯠IAM ã¢ã€ãã³ãã£ãã£ã»ã³ã¿ãŒã€ã³ã¹ã¿ã³ã¹ãäœæããŠãã»ãã¥ãªãã£ãšãŒãžã§ã³ããŠã§ãã¢ããªã±ãŒã·ã§ã³ãéããŠèšèšã¬ãã¥ãŒãã³ãŒãã¬ãã¥ãŒãããã³äŸµå
¥ãã¹ãæ©èœã«ã¢ã¯ã»ã¹ãã AppSec ããŒã ã¡ã³ããŒã«äžå
çãªèªèšŒãšãŠãŒã¶ãŒç®¡çãæäŸããŸãã æš©éèšå®ã»ã¯ã·ã§ã³ã¯ãAWS Security Agent ãä»ã® AWS ãµãŒãã¹ãAPIãããã³ã¢ã«ãŠã³ãã«ã¢ã¯ã»ã¹ããæ¹æ³ãå¶åŸ¡ããã®ã«åœ¹ç«ã¡ãŸããAWS Security Agent ããªãœãŒã¹ãžã®ã¢ã¯ã»ã¹ã«äœ¿çšããããã©ã«ãã® IAM ããŒã«ãäœæããããé©åãªæš©éãæã€æ¢åã®ããŒã«ãéžæã§ããŸãã åæèšå®ãå®äºãããã [AWS Security Agentã®ã»ããã¢ãã] ãéžæããŠãšãŒãžã§ã³ããäœæããŸãã ãšãŒãžã§ã³ãã¹ããŒã¹ãäœæãããšããšãŒãžã§ã³ãèšå®ããŒãžã«ãèšèšã¬ãã¥ãŒãã³ãŒãã¬ãã¥ãŒã䟵å
¥ãã¹ãã® 3 ã€ã®æ©èœã«ãŒãã衚瀺ãããŸãã䟵å
¥ãã¹ãã®éçšã«ã¯å¿
é ã§ã¯ãããŸããããèšèšã¬ãã¥ãŒãŸãã¯ã³ãŒãã¬ãã¥ãŒæ©èœã䜿çšããäºå®ã®å Žåã¯ããããã®è©äŸ¡ã®æéãšãªãã»ãã¥ãªãã£èŠä»¶ãèšå®ã§ããŸããAWS Security Agent ã«ã¯ AWS 管çèŠä»¶ãå«ãŸããŠããããªãã·ã§ã³ã§çµç¹ã«åãããã«ã¹ã¿ã èŠä»¶ãå®çŸ©ã§ããŸãããŸããã©ã®ããŒã ã¡ã³ããŒããšãŒãžã§ã³ãã«ã¢ã¯ã»ã¹ã§ãããã管çããããšãã§ããŸãã ã»ãã¥ãªãã£èŠä»¶ AWS Security Agent ã¯ãã¢ããªã±ãŒã·ã§ã³ãããŒã ã®ããªã·ãŒãšæšæºã«æºæ ããããã«ããŠãŒã¶ãŒãå®çŸ©ããçµç¹ã®ã»ãã¥ãªãã£èŠä»¶ãé©çšããŸããã»ãã¥ãªãã£èŠä»¶ã¯ãèšè𿮵éãšã³ãŒãã¬ãã¥ãŒæ®µéã®äž¡æ¹ã§ã¢ããªã±ãŒã·ã§ã³ãåŸããªããã°ãªããªãå¶åŸ¡ãšããªã·ãŒãæå®ããŸãã ã»ãã¥ãªãã£èŠä»¶ã管çããã«ã¯ãããã²ãŒã·ã§ã³ãã€ã³ã® [ã»ãã¥ãªãã£èŠä»¶] ã«ç§»åããŸãããããã®èŠä»¶ã¯ãã¹ãŠã®ãšãŒãžã§ã³ãã¹ããŒã¹ã§å
±æãããŠãããèšèšã¬ãã¥ãŒãšã³ãŒãã¬ãã¥ãŒã®äž¡æ¹ã«é©çšãããŸãã ãããŒãžãã»ãã¥ãªãã£èŠä»¶ ã¯æ¥çæšæºãšãã¹ããã©ã¯ãã£ã¹ã«åºã¥ããŠããŸãããããã®èŠä»¶ã¯ããã«äœ¿çšã§ããAWS ã«ãã£ãŠç®¡çãããŠãããèšå®ããªããŠãããã«æå¹åã§ããŸãã ã«ã¹ã¿ã ã»ãã¥ãªãã£èŠä»¶ãäœæãããšãã¯ãããªã·ãŒãå®çŸ©ããã³ã³ãããŒã«åãšèª¬æãæå®ããŸããããšãã°ã Network Segmentation Strategy Defined ãšããèŠä»¶ãäœæããããŒã¿ã®æ©å¯æ§ã«åºã¥ããŠã¯ãŒã¯ããŒãã³ã³ããŒãã³ããè«çå±€ã«åé¢ããæç¢ºãªãããã¯ãŒã¯ã»ã°ã¡ã³ããŒã·ã§ã³ãèšèšã§å®çŸ©ãããªã©ã®äœ¿ãæ¹ããããŸãããŸãã¯ã Short Session Timeouts for Privileged and PII Access ãå®çŸ©ãã管çã¢ã¯ã»ã¹ããã³å人ãç¹å®ã§ããæ
å ± (PII) ãžã®ã¢ã¯ã»ã¹ã«ç¹å®ã®ã¿ã€ã ã¢ãŠãæéã矩åä»ããããšãã§ããŸãããã 1 ã€ã®äŸãšããŠã Customer-Managed Encryption Keys Required ããããŸãããã®å Žåãä¿ç®¡äžã®æ©å¯ããŒã¿ãæå·åããããã«ãAWS ãããŒãžãããŒã§ã¯ãªããã客æ§ã管çãã AWS Key Management Service (AWS KMS) ããŒãæå®ããããã«èšèšããŸããAWS Security Agent ã¯ããããã®æå¹ãªèŠä»¶ã«ç
§ãããŠèšèšãšã³ãŒããè©äŸ¡ããããªã·ãŒéåãç¹å®ããŸãã èšèšã»ãã¥ãªãã£ã¬ãã¥ãŒ èšèšã¬ãã¥ãŒæ©èœã§ã¯ãã³ãŒããèšè¿°ãããåã«ã¢ãŒããã¯ãã£ææžãšè£œå仿§ãåæããŠã»ãã¥ãªãã£ãªã¹ã¯ãç¹å®ããŸããAppSec ããŒã ã¯ãAWS Security Agent ã³ã³ãœãŒã«ããèšèšææžãã¢ããããŒãããããS3 ããã®ä»ã®æ¥ç¶ãµãŒãã¹ããèšèšææžãåã蟌ã¿ãŸããAWS Security Agent ã¯ãçµç¹ã®ã»ãã¥ãªãã£èŠä»¶ãžã®ã³ã³ãã©ã€ã¢ã³ã¹ãè©äŸ¡ããæ¯æ£ã¬ã€ãã³ã¹ãæäŸããŸãã èšèšã¬ãã¥ãŒãè¡ãåã«ãAWS Security Agent ããã§ãã¯ããã»ãã¥ãªãã£èŠä»¶ãèšå®ããŠããããšã確èªããŠãã ãããã ã»ãã¥ãªãã£èŠä»¶ ãã»ã¯ã·ã§ã³ã§èª¬æãããŠããããã«ãAWS ãããŒãžãã»ãã¥ãªãã£èŠä»¶ããå§ããããšããçµç¹ã«åãããã«ã¹ã¿ã èŠä»¶ãå®çŸ©ããããšãã§ããŸãã èšèšã¬ãã¥ãŒ ãéå§ããã«ã¯ã [ãŠã§ãã¢ããªã¢ã¯ã»ã¹] ã§ [管çè
ã¢ã¯ã»ã¹] ãéžæããŠãŠã§ãã¢ããªã€ã³ã¿ãŒãã§ã€ã¹ã«ã¢ã¯ã»ã¹ããŸãããã°ã€ã³ãããã [èšèšã¬ãã¥ãŒãäœæ] ãéžæããŸããããšãã°ãã¢ããªã±ãŒã·ã§ã³ãæ¡åŒµããæ°æ©èœã®èšèšãè©äŸ¡ããå Žåãªã©ã«ãè©äŸ¡ãèå¥ããããã® èšèšã¬ãã¥ãŒå ãå
¥åããæå€§ 5 ã€ã®èšèšãã¡ã€ã«ãã¢ããããŒãããŸãã [èšèšã¬ãã¥ãŒãéå§] ãéžæããŠãæå¹åãããŠããã»ãã¥ãªãã£èŠä»¶ã«å¯Ÿããè©äŸ¡ãéå§ããŸãã èšèšã¬ãã¥ãŒãå®äºãããšãèšèšã¬ãã¥ãŒã®è©³çްããŒãžã® [詳现] ã»ã¯ã·ã§ã³ã«ã¬ãã¥ãŒã¹ããŒã¿ã¹ãå®äºæ¥ãã¬ãã¥ãŒããããã¡ã€ã«ã衚瀺ãããŸãã [æ€åºçµæã®æŠèŠ] ã«ã¯ã次㮠4 ã€ã®ã³ã³ãã©ã€ã¢ã³ã¹ã¹ããŒã¿ã¹ã«ããŽãªãŒã«ãããæ€åºçµæã®æ°ã衚瀺ãããŸãã [éæºæ ] â èšèšãã»ãã¥ãªãã£èŠä»¶ã«éåããŠãããã察å¿ãäžååã§ãã [ããŒã¿äžè¶³] â ã¢ããããŒãããããã¡ã€ã«ã«ã¯ãã³ã³ãã©ã€ã¢ã³ã¹ã倿ããããã®ååãªæ
å ±ãå«ãŸããŠããŸããã [æºæ ] â ãã¶ã€ã³ã¯ãã¢ããããŒããããããã¥ã¡ã³ãã«åºã¥ãã»ãã¥ãªãã£èŠä»¶ãæºãããŠããŸãã [該åœãªã] â ã»ãã¥ãªãã£èŠä»¶ã®é¢é£æ§åºæºããããã®ã·ã¹ãã èšèšã«ã¯é©çšãããªãããšã瀺ãããŠããŸãã [æ€åºçµæã®æŠèŠ] ã»ã¯ã·ã§ã³ã¯ã泚æãå¿
èŠãªã»ãã¥ãªãã£èŠä»¶ããã°ããè©äŸ¡ããã®ã«åœ¹ç«ã¡ãŸããéæºæ ã®æ€åºçµæã§ã¯èšèšããã¥ã¡ã³ããæŽæ°ããå¿
èŠããããŸãããããŒã¿ãäžååãªå Žåã¯ããã¥ã¡ã³ãã«ã®ã£ãããããããšã瀺ããŠãããããã»ãã¥ãªãã£ããŒã ã¯ã¢ããªã±ãŒã·ã§ã³ããŒã ãšååããŠãAWS Security Agent ãè©äŸ¡ãå®äºããåã«ããã«æç¢ºã«ããå¿
èŠããããŸãã [ã¬ãã¥ãŒããããã¡ã€ã«] ã»ã¯ã·ã§ã³ã«ã¯ãã¢ããããŒãããããã¹ãŠã®ããã¥ã¡ã³ãã衚瀺ãããå
ã®ãã¡ã€ã«ãæ€çŽ¢ããŠããŠã³ããŒããããªãã·ã§ã³ã衚瀺ãããŸãã [ã¬ãã¥ãŒã®æ€åºçµæ] ã»ã¯ã·ã§ã³ã«ã¯ãã¬ãã¥ãŒäžã«è©äŸ¡ãããåã»ãã¥ãªãã£èŠä»¶ãšãã®ã³ã³ãã©ã€ã¢ã³ã¹ç¶æ³ãäžèŠ§è¡šç€ºãããŸãããã®äŸã§ã¯ãæ€åºçµæã«ã¯ã Network Segmentation Strategy Defined ã Customer-Managed Encryption Keys Required ã Short Session Timeouts for Privileged and PII Access ãå«ãŸããŸãããããã¯ã [ã»ãã¥ãªãã£èŠä»¶] ã»ã¯ã·ã§ã³ã§åè¿°ããã«ã¹ã¿ã ã»ãã¥ãªãã£èŠä»¶ã§ããç¹å®ã®ã»ãã¥ãªãã£èŠä»¶ãæ€çŽ¢ããããã³ã³ãã©ã€ã¢ã³ã¹ã¹ããŒã¿ã¹ã§æ€åºçµæããã£ã«ã¿ãªã³ã°ãããããŠãã¢ã¯ã·ã§ã³ãå¿
èŠãªé
ç®ã«çŠç¹ãåœãŠãããšãã§ããŸãã ç¹å®ã®æ€åºçµæãéžæãããšãAWS Security Agent ã¯ã³ã³ãã©ã€ã¢ã³ã¹ç¶æ³ã説æãã詳现ãªçç±ã衚瀺ããæšå¥šãããæ¯æ£æé ãæç€ºããŸãããã®ã³ã³ããã¹ãèªèååæã¯ãäžè¬çãªã»ãã¥ãªãã£ã¬ã€ãã³ã¹ã§ã¯ãªããèšèšåºæã®ã»ãã¥ãªãã£äžã®æžå¿µäºé
ãçè§£ããã®ã«åœ¹ç«ã¡ãŸããéæºæ ã®æ€åºçµæãèŠã€ãã£ãèšèšã«ã€ããŠã¯ãã»ãã¥ãªãã£èŠä»¶ã«å¯Ÿå¿ããããã«ææžãæŽæ°ããæ°ããèšèšã¬ãã¥ãŒãäœæããŠæ¹åç¹ãæ€èšŒã§ããŸãããŸãã [ãã®èšèšã¬ãã¥ãŒãè€è£œ] ãéžæããŠçŸåšã®æ§æã«åºã¥ããŠæ°ããè©äŸ¡ãäœæããããšããããŒã ãšå
±æããããã« [ã¬ããŒããããŠã³ããŒã] ãéžæããŠãã¹ãŠã®æ€åºçµæããšã¯ã¹ããŒãããããšãã§ããŸãã ã¢ããªã±ãŒã·ã§ã³èšèšãçµç¹ã®ã»ãã¥ãªãã£èŠä»¶ãæºãããŠããããšã確èªããããæ¬¡ã®ã¹ãããã¯ãéçºè
ãã³ãŒããæžãã®ãšåãèŠä»¶ãé©çšããããšã§ãã ã³ãŒãã»ãã¥ãªãã£ã¬ãã¥ãŒ ã³ãŒãã¬ãã¥ãŒæ©èœã¯ãGitHub ã®ãã«ãªã¯ãšã¹ããåæããŠãã»ãã¥ãªãã£ã®è匱æ§ãšçµç¹ã®ããªã·ãŒéåãç¹å®ããŸããAWS Security Agent ã¯ãSQL ã€ã³ãžã§ã¯ã·ã§ã³ãã¯ãã¹ãµã€ãã¹ã¯ãªããã£ã³ã°ãäžé©åãªå
¥åæ€èšŒãªã©ã OWASP Top Ten ã®äžè¬çãªè匱æ§ãæ€åºããŸãããŸããèšèšã¬ãã¥ãŒã§äœ¿çšãããã®ãšåãçµç¹ã®ã»ãã¥ãªãã£èŠä»¶ãé©çšããäžè¬çãªè匱æ§ãè¶
ããŠããŒã ã®ããªã·ãŒã«ã³ãŒãã³ã³ãã©ã€ã¢ã³ã¹ãå®è£
ããŸãã ã¢ããªã±ãŒã·ã§ã³ãæ°ããã³ãŒãããã§ãã¯ã€ã³ãããšãAWS Security Agent ã¯äžè¬çãªè匱æ§ãè¶
ããçµç¹ã®ã»ãã¥ãªãã£èŠä»¶ãžã®æºæ ãæ€èšŒããŸããããšãã°ãçµç¹ãç£æ»ãã°ã 90 æ¥éã ãä¿æããããšã矩åä»ããŠããå ŽåãAWS Security Agent ã¯ãã³ãŒãã 365 æ¥ã®ä¿ææéãèšå®ããŠããã¿ã€ãã³ã°ãç¹å®ããç¹å®ã®éåãå«ããã«ãªã¯ãšã¹ãã«ã³ã¡ã³ãããŸããããã«ãããã³ãŒããæè¡çã«æ©èœçã§å®å
šã§ããããã«åŸæ¥ã®ã»ãã¥ãªãã£ããŒã«ãèŠéããŠããããªã·ãŒéåãæ€åºã§ããŸãã ã³ãŒãã¬ãã¥ãŒãæå¹ã«ããã«ã¯ããšãŒãžã§ã³ãèšå®ããŒãžã§ [ã³ãŒãã¬ãã¥ãŒãæå¹ã«ãã] ãéžæããGitHub ãªããžããªã«æ¥ç¶ããŸããç¹å®ã®ãªããžããªã®ã³ãŒãã¬ãã¥ãŒãæå¹ã«ãããã代ããã«äŸµå
¥ãã¹ãã®ã³ã³ããã¹ãã«äœ¿çšãããå Žåã¯ãã³ãŒãã¬ãã¥ãŒãæå¹ã«ããã«ãªããžããªãæ¥ç¶ãããã§ããŸãã 詳现ãªã»ããã¢ããæé ã«ã€ããŠã¯ã AWS Security Agentã®ããã¥ã¡ã³ã ãåç
§ããŠãã ããã ãªã³ããã³ã䟵å
¥ãã¹ã ãªã³ããã³ãã®äŸµå
¥ãã¹ãæ©èœã¯ãå
æ¬çãªã»ãã¥ãªãã£ãã¹ããå®è¡ããŠã倿®µéã®æ»æã·ããªãªãéããŠè匱æ§ãçºèŠããã³æ€èšŒããŸããAWS Security Agent ã¯ãåµå¯ãšãšã³ããã€ã³ãã®åæãéããŠã¢ããªã±ãŒã·ã§ã³ã®ã¢ã¿ãã¯ãµãŒãã§ã¹ãäœç³»çã«æ€åºãããã®åŸãå°çšã®ãšãŒãžã§ã³ãããããã€ããŠãèªèšŒãæ¿èªãã€ã³ãžã§ã¯ã·ã§ã³æ»æãå«ã 13 ã®ãªã¹ã¯ã«ããŽãªãŒã«ãããã»ãã¥ãªãã£ãã¹ããå®è¡ããŸãããœãŒã¹ã³ãŒããAPI 仿§ãããžãã¹ããã¥ã¡ã³ããæäŸããããšãAWS Security Agent ã¯ã¢ããªã±ãŒã·ã§ã³ã®ã¢ãŒããã¯ãã£ãšããžãã¹ã«ãŒã«ã«é¢ããããæ·±ãã³ã³ããã¹ããæ§ç¯ããããçãçµã£ããã¹ãã±ãŒã¹ãçæããŸããã¢ããªã±ãŒã·ã§ã³ã®å¿çã«åºã¥ããŠãã¹ãã調æŽããè©äŸ¡äžã«æ°ããæ
å ±ãçºèŠããæç¹ã§æ»ææŠç¥ã調æŽããŸãã AWS Security Agent ã¯ããŠã§ãã¢ããªã±ãŒã·ã§ã³ãš API ã OWASP Top Ten ã®è匱æ§ã¿ã€ãã«å¯ŸããŠãã¹ãã宿œããéçåæããŒã«ãèŠéãæªçšå¯èœãªåé¡ãç¹å®ããŸããããšãã°ãåçã¢ããªã±ãŒã·ã§ã³ã»ãã¥ãªãã£ãã¹ã (DAST) ããŒã«ã¯ãµãŒããŒåŽãã³ãã¬ãŒãã€ã³ãžã§ã¯ã·ã§ã³ (SSTI) ã®ãã€ããŒããçŽæ¥æ¢ããŸãããAWS Security Agent 㯠SSTI æ»æãšãšã©ãŒåŒ·å¶ããã³ãããã°åºååæãçµã¿åãããŠãããè€éãªãšã¯ã¹ããã€ããå®è¡ã§ããŸããAppSec ããŒã ã¯ã人éã®äŸµå
¥ãã¹ãå®è¡è
ã«èª¬æããã®ãšåãããã«ããã¹ãç¯å² (ã¿ãŒã²ãã URLãèªèšŒã®è©³çްãè
åšã¢ãã«ãææž) ãå®çŸ©ããŸãããã®çè§£ã«åºã¥ããŠãAWS Security Agent ã¯ã¢ããªã±ãŒã·ã§ã³ã³ã³ããã¹ããéçºããé«åºŠãªæ»æãã§ãŒã³ãèªåŸçã«å®è¡ããŠè匱æ§ãçºèŠããã³æ€èšŒããŸããããã«ããã䟵å
¥ãã¹ãã宿çãªããã«ããã¯ããç¶ç¶çãªã»ãã¥ãªãã£ãã©ã¯ãã£ã¹ã«å€ããããªã¹ã¯ã«ããããããªã¹ã¯ã軜æžãããŸãã 䟵å
¥ãã¹ããæå¹ã«ããã«ã¯ããšãŒãžã§ã³ãèšå®ããŒãžã§ [䟵å
¥ãã¹ããæå¹ã«ãã] ãéžæããŸããã¿ãŒã²ãããã¡ã€ã³ããã©ã€ããŒããšã³ããã€ã³ãã® VPC èšå®ãèªèšŒæ
å ±ãããã³ GitHub ãªããžããªã S3 ãã±ãããªã©ã®è¿œå ã®ã³ã³ããã¹ããœãŒã¹ãèšå®ã§ããŸããAWS Security Agent ã䟵å
¥ãã¹ããå®è¡ããåã«ãåãã¡ã€ã³ã®æææš©ã確èªããå¿
èŠããããŸãã æ©èœãæå¹ã«ããããAWS Security Agent ãŠã§ãã¢ããªã±ãŒã·ã§ã³ã䜿çšããŠäŸµå
¥ãã¹ããäœæããŠå®è¡ããŸãã 詳现ãªã»ããã¢ãããšèšå®ã®æé ã«ã€ããŠã¯ã AWS Security Agentã®ããã¥ã¡ã³ã ãåç
§ããŠãã ããã 䟵å
¥ãã¹ããäœæããŠå®è¡ãããšã詳现ããŒãžã«ãã¹ãã®å®è¡ãšçµæã®æŠèŠã衚瀺ãããŸãããã®ããŒãžãããæ°ãããã¹ããå®è¡ããããæ§æã倿Žãããã§ããŸãããã®ããŒãžã«ã¯ãéå§æéãã¹ããŒã¿ã¹ãæéãæ€åºãããè匱æ§ã®æŠèŠãªã©ãææ°ã®å®è¡ã«é¢ããæ
å ±ãé倧床å¥ã«è¡šç€ºãããŸãããŸãã以åã®ãã¹ãŠã®ãã¹ãå®è¡ã®å±¥æŽãšãã®æ€åºçµæã®æŠèŠã衚瀺ããããšãã§ããŸãã åå®è¡ã«ã€ããŠã詳现ããŒãžã«ã¯ 3 ã€ã®ã¿ãã衚瀺ãããŸãã [䟵å
¥ãã¹ãå®è¡ã®æŠèŠ] ã¿ãã«ã¯ãæéãå
šäœçãªã¹ããŒã¿ã¹ãªã©ãå®è¡ã«é¢ãã倧ãŸããªæ
å ±ã衚瀺ãããŸãã [䟵å
¥ãã¹ããã°] ã¿ãã«ã¯ã䟵å
¥ãã¹ãäžã«å®è¡ããããã¹ãŠã®ã¿ã¹ã¯ãäžèŠ§è¡šç€ºãããå®è¡ãããã»ãã¥ãªãã£ãã¹ãã¢ã¯ã·ã§ã³ãã¢ããªã±ãŒã·ã§ã³å¿çãåãã¹ãã®èåŸã«ããçç±ãªã©ãAWS Security Agent ãã©ã®ããã«è匱æ§ãæ€åºããããããããŸãã [æ€åºçµæ] ã¿ãã«ã¯ãæ€åºããããã¹ãŠã®è匱æ§ãã説æãæ»æã®çç±ãåçŸæé ã圱é¿ã修埩ã¬ã€ãã³ã¹ãªã©ã®è©³çްãšãšãã«è¡šç€ºãããŸãã ãã¬ãã¥ãŒã«åå AWS Security Agent ã®äœ¿çšãéå§ããã«ã¯ãAWS Security Agent ã³ã³ãœãŒã«ã«ã¢ã¯ã»ã¹ããŠæåã®ãšãŒãžã§ã³ããäœæããéçºã©ã€ããµã€ã¯ã«å
šäœã«ãããèšèšã¬ãã¥ãŒãã³ãŒãã¬ãã¥ãŒã䟵å
¥ãã¹ãã®èªååãéå§ããŠãã ããããã¬ãã¥ãŒæéäžã¯ãAWS Security Agent ã¯ç¡æã§ãã AWS Security Agent ã¯ç±³åœæ±éš (ããŒãžãã¢åéš) ãªãŒãžã§ã³ã§ãå©çšããã ããŸãã 詳现ã«ã€ããŠã¯ãAWS Security Agent 㮠補åããŒãž ãš æè¡ææž ãã芧ãã ããã â Esra åæã¯ ãã¡ã ã§ãã
æ¬ããã°ã¯ãæ ªåŒäŒç€Ÿãšããªã¹ æé åå® æ°ãKDDI ã¢ãžã£ã€ã«éçºã»ã³ã¿ãŒæ ªåŒäŒç€Ÿ åŸ¡ç° çš æ°ãã¢ããŸã³ ãŠã§ã ãµãŒãã¹ ãžã£ãã³ååäŒç€Ÿ ãœãªã¥ãŒã·ã§ã³ã¢ãŒããã¯ã å®è€ ãå
±åã§å·çããŸããã ã¿ãªãããããã«ã¡ã¯ãAWS ãœãªã¥ãŒã·ã§ã³ã¢ãŒããã¯ãã®å®è€ã§ãã é»ååéãç¹ã«åçå¯èœãšãã«ã®ãŒã®æ®åãé²ãäžã§ãæ£ç¢ºãªçºé»äºæž¬ã¯é»å系統ã®å®å®éçšã«æ¬ ãããŸãããä»åã¯ã æ ªåŒäŒç€Ÿãšããªã¹ ïŒä»¥äžããšããªã¹ïŒãš KDDI ã¢ãžã£ã€ã«éçºã»ã³ã¿ãŒæ ªåŒäŒç€Ÿ ïŒä»¥äžãKAGïŒãå
±åã§åãçµãã倪éœå
çºé»ããŒã¿ã®ç°åžžæ€ç¥ã·ã¹ãã ã«ã€ããŠã玹ä»ããŸãããã®ã·ã¹ãã ã¯çæ AI ã®æŽ»çšãšäººéã®ç¥èŠãçµã¿åããã HCAIïŒHuman-Centered AIïŒã¢ãããŒããæ¡çšããŠããã Amazon Bedrock ãäžå¿ãšããã¢ãŒããã¯ãã£ã§æ§ç¯ãããŠããŸããHCAI ã¯ã人éã®èœåã眮ãæããã®ã§ã¯ãªãå¢åŒ·ã»æ¡åŒµãã AI ã·ã¹ãã ã®æ§ç¯ãç®æãæ°ããåéã§ãéææ§ãå
¬å¹³æ§ããã©ã€ãã·ãŒãéèŠããç¹ã«éèŠãªæææ±ºå®ã§ã¯äººéãäž»å°æš©ãä¿æããããšãéèŠããŠããŸããä»åã®ã·ã¹ãã ã§ã¯ãAI ã®åºåçµæãå¥ã® AI ãè©äŸ¡ããæçµçã«äººéããã£ãŒãããã¯ããããšã§ AI ã®ç²ŸåºŠãç¶ç¶çã«åäžãããã¢ãããŒããå®çŸããŠããŸãã å°å
¥èæ¯ é»åã¯è²¯èµãå°é£ãªãšãã«ã®ãŒã§ãããäŸçµŠãšéèŠãåžžã«ãã©ã³ã¹ãããå¿
èŠããããŸããç¹ã«å€ªéœå
çºé»ãªã©ã®åçå¯èœãšãã«ã®ãŒã¯æ°è±¡ç¶æ
ã«äŸåããŠå€åãããããæ£ç¢ºãªçºé»éäºæž¬ã¯é»å系統ã®å®å®éçšã«ãããŠéèŠãªèŠçŽ ã§ãããšããªã¹ã¯é»åéçµŠç®¡çæ¥åã嵿¥äºæ¥ãšããæ©ããã AI ãæŽ»çšããçºé»éäºæž¬ã«åãçµãã§ããŸãããå瀟ã§ã¯ Amazon SageMaker AI ã§æ§ç¯ããç¬èªã® AI ã¢ãã«ãçšããŠãæç³»åäºæž¬ã«ãã倪éœå
çºé»éäºæž¬ãè¡ã£ãŠããŸãã ãããã倩忥å€ãçœå®³ãèšåæ
éãªã©äºæž¬å°é£ãªèŠçŽ ã«ãããå®çžŸå€ãšäºæž¬å€ã«å€§ããªä¹é¢ãçããã±ãŒã¹ãçºçããŠããŸããããã®ãããªç°åžžå€ãæ€åºãããå ŽåãããŒã¿æ¬ æã®ç¢ºèªãåå åæã人æã§ãã§ãã¯ããå¿
èŠããããçžå¿ã®å·¥æ°ãèŠããããšããå±äººåã課é¡ãšãªã£ãŠããŸããã ãããã®èª²é¡è§£æ±ºã«åããŠçæ AI ã®æŽ»çšãæ€èšããäžã§ãããã«ã·ããŒã·ã§ã³ããå€ææ ¹æ ã®äžéææ§ãšãã£ã課é¡ãæµ®äžããŸããã瀟äŒã€ã³ãã©ãæ¯ãããšãã«ã®ãŒåéã§ã¯ AI ã®åºåçµæã«å¯Ÿããä¿¡é Œæ§ãšèª¬æå¯èœæ§ãéèŠã§ãããæ
éãªã¢ãããŒããæ±ããããŠããŸããã ãœãªã¥ãŒã·ã§ã³ïŒHCAI ã«ããç°åžžæ€ç¥ã·ã¹ãã ãšããªã¹ãš KAG ã¯ãAI ã®èœåãæŽ»çšããªããã人éã®å€æãéèŠãã HCAIïŒHuman-Centered AIïŒã¢ãããŒãã«çç®ããAI ã®åºåçµæãå¥ã® AI ãåæã»è©äŸ¡ãããããããã«äººéãè©äŸ¡ããŠæ¹åæç€ºãããµã€ã¯ã«ãåãç°åžžæ€ç¥ã·ã¹ãã ã®æ§ç¯ã«çæããŸããããã®ã¢ãããŒãã«ãããAI ã®ç²ŸåºŠãç¶ç¶çã«åäžãããªãããå®å¿ããŠæŽ»çšã§ããã·ã¹ãã ã®å®çŸãç®æããŠããŸãã ã·ã¹ãã ã¢ãŒããã¯ãã£ã®å€é·ãšç¹åŸŽèŠçŽ ãã¹ããã 1ïŒAmazon Bedrock APIïŒClaudeïŒããŒã¹ã®ã·ã³ãã«ã·ã¹ãã ã æåã«æ§ç¯ããã·ã¹ãã ã¯ãAmazon Bedrock ã® Claude ã¢ãã«ã䜿çšããŠå®çžŸ/äºæž¬ããŒã¿ãåæããç°åžžã®æç¡ãå€å®ããŠããã¹ããšããŠç»é¢ã«åºåãã Web ã¢ããªã±ãŒã·ã§ã³ã§ãããã·ã¹ãã æ§æã¯ãããã³ããšã³ãã« Vue.js on AWS AmplifyïŒGen 2ïŒ ãããã¯ãšã³ãã« AWS Lambda ã䜿çšããŠããŸãã ãã®ã¹ãããã§ã¯ãããŒã¿åŠçã®åºç€ãšããŠä»¥äžã® Lambda ãæ§ç¯ããŠããŸãïŒ ä¹é¢æ€ç¥ Lambda: å®çžŸçºé»ããŒã¿ãšäºæž¬çºé»ããŒã¿ãæ¯èŒããŠä¹é¢ãæ€ç¥ ç°åžžæ€ç¥ Lambda: äºæž¬çºé»ããŒã¿ãšãã¹ã¿ãŒããŒã¿ã䜿çšããŠç°åžžãæ€ç¥ ãããã® Lambda ã§æ€ç¥ãããçµæã¯ Amazon Redshift Serverless ã«æ ŒçŽãããŸããAmazon Bedrock ã¯ããã®ããŒã¿ãå
ã«ç°åžžã®åå åæã察å¿çã®ææ¡ãè¡ããŸããããŒã¿ååŸã«ã¯ Amazon Bedrock Knowledge Base ã® Text-to-SQL æ©èœ ã䜿çšããAmazon Redshift Serverless ã«æ ŒçŽãããæ€ç¥çµæããå¿
èŠãªã¬ã³ãŒãã®ã¿ãèªç¶èšèªãã SQL ã§ååŸããŠããŸããäžè¬çãªãã¯ãã«æ€çŽ¢ã® RAGïŒRetrieval Augmented GenerationïŒã§åŠçãããšããŒã¿ãæçåãããŠããŸããããæ§é åããŒã¿ã¯ SQL ã§çŽæ¥ååŸããæ¹éãæ¡çšããŸããã ã¢ãŒããã¯ãã£å³_ã¹ããã1 ãã®ãããªæ§æã§éå§ããŸãããã倧éã®å
ããŒã¿ãå¹çããåŠçããæ¹æ³ããWeb æ
å ±ãªã©å€éšã®æ
å ±ãããã«åã蟌ããããŸãè€æ°ã®ãšãŒãžã§ã³ããå調ãããæ¹æ³ãšãã£ã課é¡ããããŸããã ãã¹ããã 2ïŒAmazon Bedrock Agents ãã«ããšãŒãžã§ã³ãã³ã©ãã¬ãŒã·ã§ã³ã ã¹ããã 1 ã®èª²é¡ã解決ãããããAmazon Bedrock Agents ãçšããŠå€§å¹
ã«ã¢ãŒããã¯ãã£ãæ¹è¯ããŸãããAmazon Bedrock Agents ã¯ãèªåŸç㪠AI ãšãŒãžã§ã³ããæ§ç¯ã»èšå®ã§ãããµãŒãã¹ã§ããä»å㯠Amazon Bedrock Agents ã®ãã«ããšãŒãžã§ã³ãã³ã©ãã¬ãŒã·ã§ã³ã掻çšããŠãè€æ°ã®ãšãŒãžã§ã³ããå調ããŠåäœããæ§æãå®è£
ããŸããã ã¹ããã 1 ã§æ§ç¯ããä¹é¢æ€ç¥ã»ç°åžžæ€ç¥ Lambda ãã Amazon Redshift Serverless ãžã®ããŒã¿æ ŒçŽãŸã§ã®åºç€ã¯ãã®ãŸãŸæŽ»çšãããã®ã¹ãããã§ã¯ãã«ããšãŒãžã§ã³ãã·ã¹ãã ãæ§ç¯ããŸããã åãšãŒãžã§ã³ãã®åœ¹å²ã¯ä»¥äžã®ãšããã§ãã ç£ç£è
ãšãŒãžã§ã³ãïŒã¹ãŒããŒãã€ã¶ãŒãšãŒãžã§ã³ããšããŠæ©èœããåãµããšãŒãžã§ã³ãã®çµæãåããŸãšããŸãããŸãããŒã«ãšããŠã¯åœè©²å°ç¹ã®å€©åæ
å ±ãªã©ãååŸãã Lambda function ãæ§ç¯ããAmazon Bedrock Agents ã®ã¢ã¯ã·ã§ã³ã°ã«ãŒãã«çŽä»ããŸããã æ€ç¥çµæååŸãšãŒãžã§ã³ãïŒã¹ããã 1 ã§å®è£
ãã Amazon Bedrock Knowledge Base ã® Text-to-SQL æ©èœã掻çšããŠãAmazon Redshift Serverless ã«æ ŒçŽãããæ€ç¥çµæããå¿
èŠãªã¬ã³ãŒãã®ã¿ãèªç¶èšèªãã SQL ã§ååŸããŸãã éå»ãã¬ããžæ€çŽ¢ãšãŒãžã§ã³ãïŒãã¡ã㯠Amazon S3 ãš Amazon OpenSearch Serverless ãçµã¿åããã Knowledge Base ã®ãã¯ãã«æ€çŽ¢ã§ç€Ÿå
ã®ãã¬ããžããã¥ã¡ã³ããæ€çŽ¢ããã©ããã£ãå Žåã«ã©ã®ãããªæäººå¯Ÿå¿ãå¿
èŠãšãªããã®ã¢ããã€ã¹ããŠãŒã¶ãŒã«æç€ºããŸããéå»ã®å¯Ÿå¿çãèšèŒããããã¡ã€ã«ã Amazon S3 ã«æ ŒçŽããAmazon OpenSearch Serverless ããã¯ã¿ãŒã¹ãã¢ãšããŠæŽ»çšããŠããŸãã ã·ã¹ãã ã®å®éã®åäœãããŒã¯ä»¥äžã®ãšããã§ãããŠãŒã¶ãŒãå
¥åããæ¥ä»ã®åæçµæãã¡ã€ã«ãæ€çŽ¢ãããã¡ã€ã«ãååšããªãå Žåã¯ç£ç£è
ãšãŒãžã§ã³ããèµ·åããŠåæçšã³ã³ããã¹ããåéããŸãããã®éãå€éšã®æ°è±¡æ
å ±ãååŸããŠå€©åç¹åŸŽãæœåºãããããã®ã³ã³ããã¹ããå©çšã㊠LLM ãåæçµæãã¡ã€ã«ãåºåããŸããäžæ¹ãåæçµæãã¡ã€ã«ãæ¢ã«ååšããå Žåã¯ããã®ãã¡ã€ã«å
容ãååŸããŠããã³ããšã³ãã«é£æºããŸãã ãŸããLLM-as-a-Judge æ©èœãå®è£
ããåæçµæã®ç¢ºããããã LLM èªèº«ã«è©äŸ¡ãããŠã©ã³ã¯ä»ãããŠç»é¢ã«è¡šç€ºããããšã«ããããŠãŒã¶ãŒãã©ããçã£ãŠèŠãã¹ããã®ç€ºåãäžããŸããLLM-as-a-Judge ãšã¯ãLLM èªèº«ãçæããçµæã®å質ãä¿¡é Œæ§ãè©äŸ¡ããææ³ã§ãä»å㯠RAG ã·ã¹ãã ã®å質ãå®éçã«è©äŸ¡ããããã®ãªãŒãã³ãœãŒã¹ãã¬ãŒã ã¯ãŒã¯ã§ãã RAGAS ãæŽ»çšããŠããŸãã ã¢ãŒããã¯ãã£å³_ã¹ããã2 ãã¹ããã 3ïŒçŸåšïŒïŒAWS Step Functions ã¯ãŒã¯ãããŒã ã¹ããã 2 ã®éçšãé²ããäžã§ããAI ãéåºŠã«æ±åããŠè©äŸ¡ã®ç²ŸåºŠãäœäžããããšãã課é¡ã倿ããŸãããããã§ RAGAS ã®è©äŸ¡ç²ŸåºŠãåäžããããããè©äŸ¡å¯Ÿè±¡ã®åŠçåºéãäžéããŒã¿ãæ±ãããããããAmazon Bedrock Agents ã䜿çšããã« AWS Step Functions ã§ AWS Lambda ãçŽæ¥å¶åŸ¡ããã«ã¹ã¿ã ã¯ãŒã¯ãããŒã«å€æŽããŸãããAWS Step Functions ã¯ã忣ã¢ããªã±ãŒã·ã§ã³ã®ã¯ãŒã¯ãããŒãèŠèŠçã«æ§ç¯ã»ç®¡çãããµãŒãã¹ã§ãã ã¹ããã 2 ã§å®çŸããåçš®æ
å ±åéæ©èœïŒå€©åæ
å ±ååŸãæ€ç¥çµæååŸãéå»ãã¬ããžæ€çŽ¢ïŒãåºç€ãšããŠæŽ»çšããAWS Step Functions ã§ AWS Lambda ãçŽæ¥å¶åŸ¡ããã«ã¹ã¿ã ã¯ãŒã¯ãããŒã§ä»¥äžã®æ
å ±åéã»è©äŸ¡ Lambda ãé æ¬¡å®è¡ããŸãã ç°åžžä¹é¢æ€ç¥çµæååŸ Lambda: Amazon Bedrock Knowledge Base ã® Text-to-SQL æ©èœã§ Amazon Redshift Serverless ã«æ ŒçŽãããæ€ç¥çµæãååŸãããã®ããŒã¿ãå
ã« Amazon Bedrock ãçæããåæçµæã RAGAS ã§è©äŸ¡ã㊠Amazon DynamoDB ã«ä¿åããŸãã åœæã®å€©åæ
å ±ååŸ Lambda: Tavily Search API ã§å€©åæ
å ±ãååŸããAmazon S3 ã®ãã¹ã¿ãŒããŒã¿ããããã€ã¹ã®äœçœ®æ
å ±ãååŸããããããã³ã³ããã¹ããšã㊠Amazon Bedrock ã§ç°åžžå€ã®çºçåå ãåæããRAGAS ã§è©äŸ¡ã㊠Amazon DynamoDB ã«ä¿åããŸãã 察å¿çååŸ Lambda: Amazon S3 ãš Amazon OpenSearch Serverless ãçµã¿åããããã¯ã¿ãŒæ€çŽ¢ã§éå»ã®ãã¬ããžãååŸããRAGAS ã§è©äŸ¡ã㊠Amazon DynamoDB ã«ä¿åããŸãã åæã¬ããŒãäœæ: äžèš 3 ã€ã® Lambda ããåéããæ
å ±ãçµ±åããAWS Lambda ãš Amazon Bedrock ã§ç·åçãªåæã¬ããŒããäœæããAmazon S3 ã«æ ŒçŽããŸãã æçµçã«ãAmazon S3 ã«ä¿åãããåæçµæãš Amazon DynamoDB ã«ä¿åããã RAGAS è©äŸ¡çµæãçµã¿åãããŠããã³ããšã³ãã«åºåããŸããAWS Step Functions ãžã®å€æŽã«ãããååŠç段éããã现ããå¶åŸ¡ã§ããããã«ãªããäžéããŒã¿ã®å¯èŠåããããã°æ§ãåäžããŸããã ãŸããHCAI ã¢ãããŒãã®æ žå¿ã§ãã人éã®ãã£ãŒãããã¯ã«ãŒããå®è£
ããŠããŸãããŠãŒã¶ãŒã¯åºåãããåææ
å ±ã確èªãã察å¿ã決å®ããŠããã®å¯Ÿå¿çµæãå
¥åããŸãããã®å¯Ÿå¿çµæã¯éå»ã®å¯Ÿå¿çãã¡ã€ã«ãšã㊠Amazon S3 ã«æ ŒçŽãããäžè¿°ãã察å¿çååŸ Lambda ã§æŽ»çšãããç¶ç¶çãªåŠç¿ãµã€ã¯ã«ã圢æããŠããŸãã ã¢ãŒããã¯ãã£å³_ã¹ããã3 ã·ã¹ãã ã¢ãŒããã¯ãã£ã®ç¶ç¶çãªæ¹åãšããŠããã¯ã¿ãŒã¹ãã¢ã®éžæã«ã€ããŠãæ€èšãé²ããŠããŸããçŸåšã¯Amazon OpenSearch Serverless ã䜿çšããŠããŸãããããã³ã¹ãæé©åã§ããéžæè¢ãšã㊠2025 幎 12 æã«äžè¬æäŸãéå§ããã Amazon S3 Vectors ãæ€èšããŠããŸããAmazon S3 Vectors 㯠S3 ãã±ããå
ã§ãã¯ã¿ãŒããŒã¿ãçŽæ¥æ ŒçŽã»æ€çŽ¢ã§ããæ°æ©èœã§ãåŸæ¥ã®ãã¯ã¿ãŒããŒã¿ããŒã¹ãšæ¯èŒããŠã³ã¹ãå¹çã«åªããŠãããå€§èŠæš¡ãªéå»ãã¬ããžããŒã¿ã®ç®¡çã«ãããŠéçšã³ã¹ãã®åæžãæåŸ
ã§ããŸãã ã·ã¹ãã ã®å®è¡çµæ 以äžã¯ãå®éã«ã·ã¹ãã ãåäœãããéã®ç»é¢äŸã§ããç°åžžæ€ç¥ã®çµæãšLLM-as-a-Judge æ©èœã«ããè©äŸ¡çµæãçµ±åãããããã·ã¥ããŒãã§ç¢ºèªã§ããŸããå·ŠåŽã«ã¯æ€ç¥ãããç°åžžããŒã¿ã®è©³çްïŒããã€ã¹ IDãæå»ãå®çžŸå€ãäºæž¬å€ã誀差çãªã©ïŒã衚瀺ãããå³åŽã«ã¯ç°åžžå€åæãšä¹é¢å€åæããããã«ã€ã㊠AãC è©äŸ¡ãšã¹ã³ã¢ã衚瀺ãããŸãã ãŸããRAGAS è©äŸ¡ã®è©³çްç»é¢ã§ã¯ãå¿ å®åºŠãã³ã³ããã¹ã粟床ãåçé¢é£æ§ãªã©ã®åè©äŸ¡ææšã«ã€ããŠãéèŠåºŠãšã¹ã³ã¢ãå¯èŠåãããŠããããŠãŒã¶ãŒã¯åæçµæã®ã©ã®éšåãéç¹çã«ç¢ºèªãã¹ãããææ¡ã§ããŸããRAGAS è©äŸ¡ã§ã¯ãå Lambda ãããããç°ãªã質åïŒç°åžžå€æœåºã察å¿çæ€èšãåå åæïŒã LLM ã« 2 åæãã1 åç®ã®åçã Ground TruthïŒæ³å®åçïŒãšãã2 åç®ã®åçãšæ¯èŒããããšã§è©äŸ¡ã宿œããŠããŸããéåžžãRAGAS è©äŸ¡ã§ã¯äººéãäœæããæ£è§£ããŒã¿ã Ground Truth ãšããŠäœ¿çšããŸããã倪éœå
çºé»ç°åžžåæã®ãããªå°éæ§ã®é«ãé åã§ã¯ãäºåã«æ±ºãŸããã£ãæ£è§£ãçšæããããšãå°é£ãªãããLLM èªèº«ã« Ground Truth ãçæãããææ³ãæ¡çšããŸãããããã«ãããã³ã³ããã¹ã粟床ïŒé©åãªè³æãååŸã§ãããïŒãå¿ å®åºŠïŒååŸããæ
å ±ã«åºã¥ããŠåçããŠãããïŒãåçé¢é£æ§ïŒè³ªåã«é©åã«çããŠãããïŒãªã©ã®ææšãå®éçã«æž¬å®ããRAG ã·ã¹ãã ã®æ€çŽ¢ç²ŸåºŠãšçæå質ã客芳çã«è©äŸ¡ã§ããŠããŸãããªããæçµçãªå質ä¿èšŒã¯äººéã«ãã確èªãšçµã¿åãããããšã§ä¿¡é Œæ§ãæ
ä¿ããŠããŸãã ã·ã¹ãã ç»é¢ 1 ã·ã¹ãã ç»é¢ 2 æåŸ
ããã广ãšä»åŸã®å±æ ãã®ã·ã¹ãã ã®å°å
¥ã«ãã£ãŠã以äžã®å¹æãæåŸ
ã§ããŸãã 人éã®ãã£ãŒãããã¯ãç¶ç¶çã«åŠç¿ããŒã¿ã«åæ ããããšã§ã倪éœå
çºé»éã®äºæž¬ç²ŸåºŠã段éçã«æ¹å åŸæ¥ã®æäœæ¥ã«ãã調æ»ã»åæäœæ¥ããAI ã AI ãè©äŸ¡ããä»çµã¿ïŒLLM-as-a-JudgeïŒã®æŽ»çšã«ããè¿
éåã»å¹çåããç°åžžåå ã®ç¹å®æéãççž® HCAI ã¢ãããŒãã«ãã AI åºåã®ä¿¡é Œæ§ãå¯èŠåãããšãã«ã®ãŒåéã§ã®çæ AI 掻çšãä¿é² äºæž¬ç²ŸåºŠåäžã«ããé»åé絊ã®ãã¹ããããåæžããã€ã³ãã©ã³ã¹æéã®çºçãæå¶ çŸåšã¯ PoCïŒæŠå¿µå®èšŒïŒç°å¢ã®æ§ç¯ãå®äºãããã¥ãŒãã³ã°ã®ãã§ãŒãºã«å
¥ã£ãŠããŸããä»åŸã®æ¬æ ŒéçšãèŠéã«å
¥ããŠããŸãããçŸç¶ã§ã¯ãåã蟌ãã³ã³ããã¹ãéã®åé¡ããLLM ã® API å©çšã«ãããåŠçé床ãåæ°ã®å¶çŽãšãã£ã倧éããŒã¿åŠçã®å°é£ãããŸããé»åããŒã¿èªäœããªã¢ã«ã¿ã€ã ã§ååŸã§ããªãããšã«ãããªã¢ã«ã¿ã€ã åŠçã®é£ãããšãã£ãæè¡ç課é¡ãæ®ã£ãŠããŸãããã®ããããŸãã¯ãããã®èª²é¡è§£æ±ºãåªå
ããå°æ°ã®ããã€ã¹ããŒã¿ãéžå®éçšããããšããå§ããŸãããã®æå°æ§æã§ã®éçšãéããŠã·ã¹ãã ã®ç²ŸåºŠåäžãå³ãããã®äžã§å°æ¥çãªæ¬æ Œéçšãæ€èšããŠããäºå®ã§ãã ãŸããä»åã®ãã£ãŒã«ãã¯å€ªéœå
çºé»éäºæž¬ã§ãããä»åŸã¯ãã® HCAI ã¢ãããŒããããšããªã¹ãæšé²ããé»åãããžã¡ã³ããµãŒãã¹ã®å質ãäžæ¯ãããä»çµã¿ãšããŠæšªæçã«æŽ»çšããŠãããŸããå
·äœçã«ã¯ã嵿¥ä»¥æ¥ã®åŒ·ã¿ã§ããéçµŠç®¡çæ¥åã«é¢é£ããçºé»éãéèŠéã®äºæž¬ç²ŸåºŠåäžããµããŒããããšãšãã«ãäŒæ¥ã® CO2 æåºéåæžãåãšãå°å
¥ãå€è§çã«æ¯æŽããè±ççŽ ãœãªã¥ãŒã·ã§ã³ãã¯ãããšããèªç€Ÿã®å€æ§ãªãµãŒãã¹ãžæšªå±éããäºæ¥å
šäœã®é«åºŠåãå³ã£ãŠããããšãç®æããŠããŸãã ãŸãšã ãšããªã¹ãš KAG ã«ããæ¬åãçµã¿ã¯ããšãã«ã®ãŒåéã«ãããçæ AI ã®å®çšåã«åããéèŠãªäžæ©ã§ããç¹ã«ãAI ã®åºåçµæãå¥ã® AI ãè©äŸ¡ããæçµçã«äººéããã£ãŒãããã¯ãã HCAI ã®ã¢ãããŒãã¯ãçæ AI ã®ä¿¡é Œæ§åäžãšå®çšåã®äž¡ç«ãç®æãåãçµã¿ãšãããŸãã ã¹ããã 1 ã®ã·ã³ãã«ãª Amazon Bedrock API ããŒã¹ã®ã·ã¹ãã ãããã¹ããã 2 ã®ãã«ããšãŒãžã§ã³ãã·ã¹ãã ããããŠã¹ããã 3 ã® AWS Step Functions ã¯ãŒã¯ãããŒãžãšãå®éã®éçšããåŸãããç¥èŠã«åºã¥ããŠæ®µéçã«é²åãããŠããéçšã¯ãå€ãã®äŒæ¥ã«ãšã£ãŠåèã«ãªãã§ããããä»åŸã®å±éãšææã«æ³šç®ããŠãããããšæããŸãã èè
æé åå® æ ªåŒäŒç€Ÿãšããªã¹ äºæ¥äŒç»æ¬éš ã¿ããç ç©¶æ æè¡éçºéšé åŸ¡ç° çš KDDI ã¢ãžã£ã€ã«éçºã»ã³ã¿ãŒæ ªåŒäŒç€Ÿ ããã¯ãšãã³ãžã§ãªã¹ã å®è€ 麻衣 ã¢ããŸã³ ãŠã§ã ãµãŒãã¹ ãžã£ãã³ååäŒç€Ÿ æè¡çµ±æ¬æ¬éš ã¹ãã©ããžãã¯ã€ã³ãã¹ããªãŒæè¡æ¬éš éä¿¡ã°ã«ãŒã ãœãªã¥ãŒã·ã§ã³ã¢ãŒããã¯ã