ä¸è¨ã«ã³ãã¡ã¬ã³ã¹ã§ã®çºè¡¨è³æã§ãã https://builderscon.io/builderscon/tokyo/2019/session/c9da9bfb-c97c-4f93-a496-ff83b3ca61bc
ä¸æ£ééãã¢ã«ã¦ã³ãã®ä¹ã£åããªã©ããã¹ã¯ã¼ããåå ã®äºä»¶ãå¾ã絶ã¡ã¾ãããé«é½¢è ãªã©ãIT ãªãã©ã·ã®ä½ã人ã§ãç°¡åãã¤å®å ¨ã«èªåã®ãªã³ã©ã¤ã³ã¢ã«ã¦ã³ãã管çã§ããä¸çãçæ³ã§ãããã¾ãã¯ãã¹ã¯ã¼ãã®ä¸è¦ãªä¸çãå®ç¾ããã®ãå 決ã§ãããã¨ã¯ãããã¾ã§ã®ã¤ã³ã¿ã¼ãããã®æ´å²ã§è¨¼æãããã¨è¨ããã§ããããããã¦ãããã«æ¥ã¦ãã¹ã¯ã¼ãä¸è¦ãªãã°ã¤ã³ãå®ç¾ããæè¡ã¨ãã¦æ³¨ç®ããã¦ããã®ã FIDO (= Fast IDentity Online, ããã¡ã¤ãã) ã§ããããã¦ãã® FIDO ããã©ã¦ã¶ããå©ç¨ã§ããããã«ããã®ã WebAuthn (= Web Authenticationããã¦ã§ããªã¼ã¹ã³ã)ãå ±éå 容ãªã©ãããããã¯æç´èªè¨¼ãå®ç¾ãããã®ãã¨æã£ã¦ãã人ãããã£ãããããããã¾ããããå®éã«ã¯ã¡ãã£ã¨éãã¾ãã WebAuthn ã«é¢ãã¦ã¯ããã§ã«æ°å¤ãã®è¨äºãåºã¦ãã¾ãã®ã§
WebAuthnã§ãã¹ã¯ã¼ãã¬ã¹ãªãµã¤ããä½ããå®å ¨ãªãªã³ã©ã¤ã³èªè¨¼ãå°å ¥ããFIDOã®åºæ¬ FIDOï¼Fast IDentity Onlineï¼ã¨ã¯ãå ¬ééµèªè¨¼æ¹å¼ãå¿ç¨ãããªã³ã©ã¤ã³çµç±ã§èªè¨¼ãè¡ãä»çµã¿ã§ãããã¹ã¯ã¼ãèªè¨¼ã®å®å ¨æ§ã¯éçãææããããªããWebãµã¤ãã«ããã¦ãçä½èªè¨¼ãªã©ãã¹ã¯ã¼ãã¬ã¹ãªä»çµã¿ãå°å ¥ããä¼æ¥ãå¢ãã¦ããããã®FIDOãWebAuthnã«æ³¨ç®ãéã¾ã£ã¦ãã¾ããCapyæ ªå¼ä¼ç¤¾ã§æ å ±ã»ãã¥ãªãã£ã«é¢ããç 究éçºãåæãªã©ã«æºãããæ¾æ¬æ¦å®ããã®è§£èª¬ã§ãã ããã«ã¡ã¯ãæ¾æ¬æ¦å®ï¼@ym405nmï¼ã§ãã FIDOï¼ãµããã©ï¼ã«é¢ãã¦ã¯ãæ¨å¹´ï¼2018å¹´ï¼ããå¤ãã®ã¡ãã£ã¢ãæè¡ããã°ã§åãä¸ããããå°å ¥ããWebãµã¤ããå¢ãã¦ãã¾ãã FIDO2ããã¸ã§ã¯ãã«ããã¦è©±é¡ã«ãªã£ãWebAuthnï¼Web Authentication APIï¼ã«ã¤ãã¦ãã主ãªW
ã¯ããã« å æ¥çºè¡¨ããããã¤ãã¼æ ªå¼ä¼ç¤¾ã®æç´èªè¨¼ã§ã®ãã°ã¤ã³ããMicrosoft Accountã®ã»ãã¥ãªãã£ãã¼ã§ã®ãã°ã¤ã³ãå¯è½ã«ã¨ãã£ããã¥ã¼ã¹ã«Web Authentication APIï¼ä»¥ä¸WebAuthnï¼çéã¯çãä¸ãããè¦ãã¦ãã¾ãã ãã¹ã¯ã¼ãã使ããªãä¸çãç®æããFIDO Allianceã¨ãW3Cã®åãçµã¿ã¯å¤§ããåé²ããã¨ãããã§ãããã2018å¹´ã«ãFIDOé¢é£æè¡ãããã¾ã§çãä¸ãã£ãçç±ã¯ãééããªããã©ã¦ã¶ã¼ã®å¯¾å¿ãé²ãã ãã¨ã«ããã¨æãã¾ãã ç§ã¯YubiKeyã®è²©å£²ã»ãµãã¼ãæ¥åããã£ããã«FIDOãWebAuthnã¨ãã£ãæè¡é åã«èå³ããã¡ãä»äºã»ãã©ã¤ãã¼ãã¨ãã«èª¿æ»ãè¡ã£ã¦ãã¾ããããã¨ãã¨èªè¨¼ã«ã¤ãã¦ã®ç¥èãã¼ãã ã£ãç§ã«ã¯ã大ããªå£ãããã¤ãç«ã¡ã¯ã ããã¾ããã æ¬ç¨¿ã§ã¯ãããããWebAuthnãå¦ç¿ãããã¨ãã¦ããæ¹ã«ãèªè¨¼åå¿è
ã¤ãã¼æ ªå¼ä¼ç¤¾ã¯ã2023å¹´10æ1æ¥ã«LINEã¤ãã¼æ ªå¼ä¼ç¤¾ã«ãªãã¾ãããLINEã¤ãã¼æ ªå¼ä¼ç¤¾ã®æ°ããããã°ã¯ãã¡ãã§ããLINEã¤ãã¼ Tech Blog ç®æ¬¡ ã¯ããã« Yahoo! JAPANã対å¿ããWebAuthnã¨ã¯ WebAuthnã¨FIDOèªè¨¼ã«ã¤ã㦠WebAuthnã®å¦çã«ã¤ã㦠ç»é²ã¨èªè¨¼ã®æµã åé¤æ©è½ ãã©ã¦ã¶ã¼ã§ã®å®è£ navigator.credentials.create()ã«ã¤ã㦠navigator.credentials.get()ã«ã¤ã㦠ãµã¼ãã¼ã§ã®å®è£ ç»é²ï¼å ¬ééµã®ç»é²ï¼ /attestation/optionsã®å¦ç ãªã¯ã¨ã¹ããã©ã¡ã¼ã¿ã¼ navigator.credentials.create()ã®å¼æ°ã«å¿ è¦ãªå¤ /attestation/resultã®å¦ç CBORã«ã¤ã㦠attestationObjectã«ã¤ãã¦ å ¬ééµãä½æã
Intro Web Authentication(WebAuthN) API ã®çå®ã¨å®è£ ãé²ãã§ããã ãããç¨ããã¨ã FIDO(Fast IDentity Online) U2F(Universal Second Factor) èªè¨¼ãå¯è½ã«ãªãã ä»å㯠YubiKey èªè¨¼ã®å®è£ ãéãã¦ããã©ã¦ã¶ API ã®å¼ã³åºãã¨ããµã¼ãå´ã§å¿ è¦ãªå¦çã«ã¤ãã¦è§£èª¬ããã https://w3c.github.io/webauthn/ DEMO åä½ãããã¢ã以ä¸ã«ç¨æããã https://labs.jxck.io/webauthentication/fido-u2f/ YubiKey ã§ã®åä½ã®ã¿ç¢ºèªãã¦ããã ã³ã¼ãã¯ä»¥ä¸ã«ãããä»åã®è§£èª¬ãããããæç²ãã¦ããã (ããã¾ã§ API ã®æµãã解説ããããã®ãã®ã§ãããããé£ã°ããå¦çããããæ¬çªå©ç¨ã«èããããã®ã§ã¯ãªãã) https
ãªãªã¼ã¹ãé害æ å ±ãªã©ã®ãµã¼ãã¹ã®ãç¥ãã
ææ°ã®äººæ°ã¨ã³ããªã¼ã®é ä¿¡
å¦çãå®è¡ä¸ã§ã
j次ã®ããã¯ãã¼ã¯
kåã®ããã¯ãã¼ã¯
lãã¨ã§èªã
eã³ã¡ã³ãä¸è¦§ãéã
oãã¼ã¸ãéã
{{#tags}}- {{label}}
{{/tags}}